Enterprise Network WAN Interconnection Overview
Enterprise Network WAN Interconnection Overview
Enterprise Network WAN Interconnection Overview
Overview
Foreword
After years of development and evolution, the Internet has undergone significant changes. In the past, the
Internet was centered on networks, and there were few Internet applications. As a major part of the
network, the WAN takes the most important position on networks. However, the rise of cloud computing
fully unleashes the potential of applications, and the Internet gradually becomes application-centric.
Traditional WAN interconnection focuses on connectivity, and there is no strict requirement for QoS or
SLA. How can WANs evolve to meet requirements of the application-centric Internet?
After completing this course, you will be able to understand the development trend of WAN technologies
and how to cope with the application-centric Internet.
2 Huawei Confidential
Objectives
3 Huawei Confidential
Contents
4 Huawei Confidential
What Is a WAN?
Wide Area Network (WAN) provides interconnection services between different regions, cities, and countries. A WAN usually spans
a long distance (dozens of kilometers to thousands of kilometers). To meet long-distance transmission requirements of a WAN,
optical fibers are often used as the interconnection media.
DC
Branch
ISP
Headquarters Residents
5 Huawei Confidential
WAN and Enterprise WAN Interconnection
Enterprise WAN interconnection refers to the interconnection between nodes at different levels, such as the headquarters, data
centers (DCs), branches, fixed offices, and mobile offices.
Generally, enterprise WAN interconnection depends on a WAN built by a carrier or the self-built WAN.
Branch site
Branch site
HQ
Branch site
Enterprise WAN
interconnection
Carrier network/Self-
built network
WAN
6 Huawei Confidential
Main Enterprise WAN Interconnection Modes
Generally, enterprise WANs can be interconnected in the following Enterprise WAN interconnection
modes:
Carriers' MPLS or private lines are used to connect regional networks. This
mode is applicable to enterprises with high SLA requirements and is expensive. HQ HQ
The carrier Internet + VPN technology is used for connection. This mode is
applicable to small- and medium-sized branches that do not have high SLA
requirements.
7 Huawei Confidential
Enterprise WAN Interconnection Technologies - MPLS and Private
Line Private Line and MPLS Technologies
To ensure network reliability and security, enterprises lease MPLS or
private lines from carriers when constructing enterprise WANs.
Private lines are expensive, but data is carried on dedicated lines, ensuring HQ HQ
service quality and security.
Leasing MPLS lines from carriers is cheaper than private lines and can ensure
service security. However, service reliability is not as good as that of private
lines.
A small number of enterprises (such as transportation and electric power MPLS MPLS
enterprises) have the capability of deploying optical fibers and can build their Optical fiber/SDH/MSTP/WDM MPLS L2VPN/L3VPN
own backbone networks. For these enterprises, the cost of using MPLS or
private lines is very low.
8 Huawei Confidential
Enterprise WAN Interconnection Technologies - Internet and VPN
Internet and VPN technologies
With the development of the Internet, some enterprise services can be carried over
the Internet.
The Internet is open, so VPN technology is used to provide secure and reliable HQ HQ
connections.
9 Huawei Confidential
Common Application Scenarios of Enterprise WAN Interconnection
Enterprise WAN interconnection needs to be deployed based on enterprise requirements. For example, in the financial industry, most enterprises lease
private lines or MPLS lines to ensure reliability and security. Considering network costs, other enterprises usually lease MPLS lines as primary lines
and Internet+VPN lines as backup lines.
WAN interconnection in the financial industry WAN Interconnection for a wine enterprise
SDH/MSTP/MPLS
10 Huawei Confidential
Contents
11 Huawei Confidential
Challenges to Enterprise WAN Interconnection Brought by Cloud
Computing
Before cloud computing is introduced, there are a few network applications, and the network service quality can be ensured only by expanding the bandwidth. Service traffic
does not need to be managed in a refined manner. The Internet is mainly built based on the network.
With the advent of cloud computing, the number of network applications is greatly increased. As a result, it is difficult for enterprises to strike a balance between line prices and
service quality in the face of soaring traffic.
HQ
WAN
12 Huawei Confidential
Challenges to Enterprise WAN Interconnection Brought by Multiple
Services
Enterprises have poor service traffic awareness capabilities and cannot effectively guarantee key services. In addition, the monitoring capability of
service traffic is insufficient, and service traffic cannot be quickly adjusted.
No application visibility; difficult traffic scheduling Key services such as voice, video, and SaaS are difficult to manage.
Cloud
Unknown Cloud
application
13 Huawei Confidential
Challenges to Enterprise WAN Interconnection Brought by a Large
Number of Branches
With the development of companies, there will be more and more cross-city, cross-province, and cross-border branches. As a result, companies face
the following problems in branch network management:
Too many branches result in high O&M costs.
Business
Network consideration and Process Hardware Hardware Software
planning device selection approval Site survey transportation installation commissioning
(2–5 days) (1–3 days) (2–5 days) (1–3 days) (2–5 days) (1–3 days) (1–3 weeks)
Branch 1
Branch site
Branch site
Branch site
Branch 2
… Branch site
Branch 3
14 Huawei Confidential
Contents
15 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
What Is SDN?
SDN decouples the forwarding plane, control plane, and service applications, allowing networks to be quickly
adjusted and new services to be quickly deployed in the same way as IT applications.
Service
applications
SDN controller
Unified
management
Branch
site
Branch
site
ISP HQ
network/Enterprise-
built network
Branch
site
Forwarding plane
16 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
SDN Advantages
SDN reconstructs the network architecture, and is not a new feature or function.
SDN overcomes the disadvantages of traditional networks.
The network architecture is distributed. A network device is a SDN provides a new network architecture that separates the
closed system consisting of hardware, an operating system, and network control function from the forwarding function and
network applications, and control and data forwarding functions implements programmable control.
are tightly coupled. Advantages:
Disadvantages: Network virtualization
Low network flexibility Network automation
Complex network protocols Rapid service provisioning
Heavy dependency on network device vendors Openness and programmability
Difficult O&M management
17 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
SDN Architecture
Service layer
The service layer is the interaction interface at the top of the SDN
Service layer
architecture. It consists of various network application services and is Service applications
API
API
API
Control layer
The control layer is the brain of SDN. It opens abstracted network
Control layer Network services
functions and services to the application layer through northbound
SDN controller
interfaces and controls the forwarding behavior of underlying network
devices through southbound interfaces. Control/Forwarding
communication interface
Infrastructure layer
Network device Network device Network device
The infrastructure layer can be regarded as the core of the SDN Infrastructure layer
Network device Network device
architecture and consists of various common network devices. These
network devices forward traffic based on the policies delivered by the
control layer.
18 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
Emergence of SD-WAN
Software-defined WAN (SD-WAN) integrates SDN and WAN. It applies the SDN architecture and concepts to WANs and reshapes
WANs with SDN.
SD-WAN characteristics
Uses Zero Touch Provisioning (ZTP) to implement fast deployment and
ONU
rollout of branches, improving deployment efficiency.
19 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
HQ HQ
Virtual network 1 Virtual network 2
HQ Branch
edge MPLS edge
Branch Branch
Branch Internet Branch
edge edge
Traditional WAN Hybrid WAN Physical network (underlay network)
21 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
Plug-and-play implemented in
multiple modes
22 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
n
n
Dyn stment
iden licatio
atio
modes
adju
600
QoS
amic
tific
500
App
FPI
&
400
En
ent
adju
link
L3-L7
&
t er 300
em
DPI
st
pri
ment
nag
se 200 Application
ma
pri 100
VPVP
all
Qo QoS
M ew
ffic
0
v
L1-L3
N N
on i r
ate
S
rin N WO
lin
WAN Si g P
V &
Package m S
e
pl VA
Routing
After SD-WAN is enabled,
80%
the forwarding performance deteriorates
ifi
ed
O
& &
m ult
i-
Routing sharply. M N
WAN interconnection VP
23 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
Traditional network
Traditional network service provisioning requires iMaster NCE-WAN
Propose
professional network engineers to perform planning, requirements Enterprise
IP
ov
e rla
y
Branch site
tu
IP ove
n
rlay tu
ne
The SDN network uses a centralized network control system nnel
l
to abstract, orchestrate, and automatically provision network HQ
l
services on demand. It shields technical implementation la y tunne
IP over
details of the network and opens only service-oriented Branch site
24 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
A cloud site requires an NFV-based device as a gateway to connect Enterprises can access remote SaaS applications on the cloud through
enterprise branches to the public cloud. Devices on the cloud remotely the WAN in the following ways: 1. Internet 2. Direct access through
schedule public cloud APIs and resources through the centralized MPLS 3. Headquarters
network control system to connect devices on the cloud to the branch
network.
SaaS applications on
the cloud
MPLS
Branch
HQ/DC
Internet
MPLS
Internet
25 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
5 4
The introduction of hybrid WAN provides multiple
WAN links for enterprise service traffic. CPE CPE
Different WAN links have different network quality. Before switching
CPE CPE
5 4
After switching
26 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
VoIP traffic
Internet
Original
packet Branch HQ/DC
Enable WAN
optimization.
When the quality of a WAN link deteriorates, for example, packet loss or long delay occurs, WAN optimization technologies need to
be used to improve network fault tolerance and ensure data transmission quality. Common WAN optimization technologies include
transmission optimization, data optimization, and packet loss concealment optimization.
27 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
HQ GUI
OSS/BSS Analysis system Third-party Other
VAS applications
Northbound
RESTful API
interface
Encryption channel
SD-WAN
Controller
SD-WAN
Network SD-WAN
Controller
NETCONF/SSH
Centralized
Southbound Performance data management and
BGP/DTLS
interface control
HTTP/2
Branch site
CPE vCPE IWG
CPE vCPE IWG
• SD-WAN must provide system and service security. The network • In the northbound direction, the network controller • In the network control system, the central dashboard
devices, control system, and services transmitted in SD-WAN must provides open and programmable RESTful interfaces to displays key network performance data, bandwidth
have basic security protection capabilities such as attack defense. implement SD-WAN integration and customization by proportion of key applications, and application health
third parties. scores.
28 Huawei Confidential
SD-WAN Core Values of SD-
SDN Overview
Characteristics WAN
Flexible networking for on- Application-based traffic High-performance branch Intent-driven simplified branch
demand interconnection of steering and optimization devices build a new forwarding network O&M
multiple clouds and multiple ensure key application engine • Automatic orchestration and
as Ethernet, LTE, 5G, and DSL selection software functions, from L1-L3 • Visualized O&M, reducing
• Interworking between the • QoS to L1-L7, and have higher labor costs
The core of SD-WAN is to help enterprises flexibly and conveniently obtain a high-quality WAN network with powerful
interconnection, optimal experience, high performance, and easy O&M anytime and anywhere. SD-WAN is a good solution to the
problems faced by enterprise WANs.
29 Huawei Confidential
30 Huawei Confidential
Contents
31 Huawei Confidential
Solution Architecture Solution Highlights
32 Huawei Confidential
Solution Architecture Solution Highlights
Interlink
Dual-CPE & multi-link CPE CPE
Tunnel
One logical CPE
Multi-PoP E2E overlay
Dual-CPE & multi-link
33 Huawei Confidential
Solution Architecture Solution Highlights
MPLS Internet
Route switching
34 Huawei Confidential
Solution Architecture Solution Highlights
35 Huawei Confidential
Solution Architecture Solution Highlights
Branch 1 Original Redundancy Branch 2 A-FEC: The FEC protection window and protection mode are automatically
packet packet and dynamically adjusted based on the link quality.
Detect link quality in real time Packet loss Enable FEC on the receive
and adjust the FEC protection during device
window as required. transmission and restore the original
video packet. Huawei 20%packet loss, no frame Third party:3% packet loss and
freezing, no artifact
artifact
Intelligent A-FEC, Low Overhead, and High-quality Experience
• Redundancy coding is performed on historical frame information. After normal frames are sent, the corresponding redundancy frame is forwarded. The receive end can
use the received redundancy frame to restore the lost packet.
• Huawei adaptive-FEC (A-FEC) uses the intelligent data analysis engine to adjust the FEC protection window and protection mode based on the link quality to achieve
high recovery and low redundancy.
36 Huawei Confidential
Solution Architecture Solution Highlights
Full-Process Automation
vCPE acquisition
Hub
vCPE deployment
Spoke
Spoke
IaaS/SaaS Spoke
… connection Overlay tunnel
CPE deployment Cloud interconnection Overlay tunnel automation Automated service chain
Dynamic tunnel orchestration based O&M automation
automation automation orchestration for VNFs Network-wide visualized and
Automatic IaaS/SaaS interconnection on traffic policies
ZTP VAS provisioning in minutes automatic O&M
configuration
37 Huawei Confidential
Solution Architecture Solution Highlights
Visualized O&M
Quickly obtain abnormal Quickly locate faulty devices or Optimize WAN investment and
traffic sites configuration policies
38 Huawei Confidential
Quiz
D. Difficult O&M
39 Huawei Confidential
Summary
40 Huawei Confidential
Thank you. 把数字世界带入每个人、每个家庭、
每个组织,构建万物互联的智能世界。
Bring digital to every person, home, and
organization for a fully connected,
intelligent world.