It is hard to have a software defined networking (SDN) conversation without discussing Software-Defined WAN (SD-WAN). SD-WAN is the leading SDN use case for businesses breaking free from the chains of traditional Wide Area Networks (WANs) from the likes of Cisco Systems or Riverbed Technology. A WAN is a connection between two networks and an SD-WAN is an overlay on top to better manage that connection. The promise of SDN is to remove networking barriers which still create a highly manual, complex process. The complexity of networking and network security leads to deployment delays, holding your company back while trying to move quickly to take advantage of new opportunities. With virtualization, servers can be deployed in minutes, but the network and security then takes weeks, if not months. This limits business opportunity and puts a clamp down on profit upside from new ideas.
SDN gets a lot of press time because it’s sexy (or as sexy as IT can be). But all of that attention does not translate into a lot of deployments yet, because SDN deals with the network which is mesh of thousands of endpoints; touching that mesh impacts everything. WAN connections, on the other hand, are point-to-point connections between two networks (usually the HQ and remote offices or cloud providers), making them easier to change because they are a single connection. As companies look for more agility through modernizing their network, this is an easy place to start. Thus all of the SDN focus on SD-WAN as it is easier and can bring more immediate benefits to the business.
One of the first things that every SD-WAN brings is connection diversity: the ability to add another connection (like broadband internet or cellular) to supplement the traditional multiprotocol label switching (MPLS) circuits. Diversity reduces costs and brings failover capabilities. Typically, a WAN is connecting two networks, and you will have a router on each end—usually manually configured (which is why it always seems to take so long for your IT department to bring a remote location online). By definition the WAN is running over some outside connection, meaning security is paramount as this is an entrance point to your network not only by the remote office but also by potential hackers.
SD-WANs can be deployed in a variety of ways.
(Image Source: John Fruehe)
(Image Source: John Fruehe)
- Traditionally routed: An overlay to your existing WAN connection (i.e. the plumbing remains and the software sits on top to manage that circuit)
- Appliance-based: A dedicated device or appliance on each end from your SD-WAN provider connects both ends
- Virtualized: A virtualized function runs in a VM on a host server at each end
- Network as a Service (NaaS): Routing is connected through a cloud-based service
- John Fruehe