// Be connected
It’s all about SD-WAN
Never change a running system?
Is not always the best solution – as we see with site networking!
SD-WAN products from conventional providers are quickly reaching their limits – measured against the requirements of today’s companies: Not only is there room for improvement in terms of security and performance, but the issue of flexibility in particular is becoming increasingly important. Companies are scaling, opening new locations, requiring mobile workstations and using cloud connections.
The problem with SD-WAN products from other manufacturers is quickly found: Site networks are still based on IPSec technology, which was introduced in 1995. You can probably guess that a 25-year-old encryption technique cannot be the ideal answer to today’s challenges and has many drawbacks. And these problems could not be more different: Inadequate performance, network outages, entrenched structures, lack of visibility, underutilized bandwidth. The list of issues is quite long.
After numerous implemented customer projects as operators of the largest „Session Smart Routing“ network structure, we can say: Juniper’s routing technology is the answer to our customers‘ network problems!
Junipers 128 Technology has rethought the topic of networking and SD-WAN from the ground up. Started on a „greenfield“ site, so to speak, the company’s founders asked themselves the question: How would you design a network today without regard to legacy? What functionalities and features must today’s network offer in order to guarantee performance, flexibility and security – without having to make compromises?
While conventional (IPSec-based) VPNs build tunnels for data transmission, the „Session Smart Routing“ (SSR) technology relies on so-called sessions. Above all, this leads to more flexibility and less overhead, and offers many other advantages that make working in the company more efficient.
Major customers around the world are already relying on SSR because it is possible to connect numerous sites securely, quickly and flexibly with thousands of SSR routers. With Session Smart Routing, we can take your network to a whole new level!
May we introduce: nocware®
Create your own network
Based on our many years of experience and always keeping in mind the increasing demands of our customers and the market, we have developed a product that is so versatile and extensive in its functions that we can design a tailor-made network for any company.
We have closed some gaps with our enhancements and developed automations and functionalities that make networks easy to set up and manage in no time.
There are six modules, each of which can be a potential networking solution for you both as a stand-alone or in combination with others. This enables us to respond individually to the requirements of companies from a wide range of industries.
Here we show you the six modules. Find your suitable ones and we will design or optimize your network together!
The heart of nocware® with the management and monitoring tool that allows you to control and monitor your network.
Basis of an SD-WAN solution. The software determines how data is sent so that it arrives at its destination quickly and securely.
All services to network locations worldwide securely and flexibly – from planning to the rollout process and support.
Choose from different categories the box that suits your needs. Each box of course supports all nocware® functions.
In our training environment with various focal points, we make you, your sales staff and technicians fit for the network of the future.
All services to securely and flexibly network your locations worldwide – from planning to the rollout process and support.
nocware® is for everyone
The ambiFOX nocware® portal can be restricted individually depending on the user via the authorization control.
In the portal, roles can be created and distributed quite individually, defining exactly which user can read out which data and operate which functions.
Each role therefore has its own view of the portal. This means, for example, that access can be granted to providers as well as customers and resellers.
Innovative SD-WAN solution
Juniper’s Session Smart Routing
Juniper’s 128 Technology has taken on the task of developing a completely rethought routing software that not only replaces today’s network technology, but takes it to a new level. But how does it all work?
The setup of a network based on Session Smart Routing looks at first like common VPNs of today. Two sites use the Internet as a transport medium and an SSR router is used between the Internet and each site to encrypt and decrypt the data. The routers can be used in any network topology and replace your old, inflexible routers and firewall installations.
Instead of reading on, you can also watch our video on SSR. But beware: it gets technical!
The main advantage of SSR is that the additional information that each individual data packet receives during transmission is significantly smaller. For secure sending, the packages must of course be encrypted. Unlike IPSec, for example (where all data is sent through a tunnel), SSR works with so-called sessions. A session with a unique session ID is created for each data transmission. Only the first packet of a session is then supplemented by the important metadata such as sequence numbers, security parameters or authenticity data and all further packets only receive the session ID as additional info. This saves me up to 30% overhead compared to the IPSec protocol. This leaves more space in each packet for the payload (the actual data to be sent) and I need fewer packets overall for a transmission.
Another great advantage of SVR is the ability to prioritize. This way I can give each packet an additional „label“ that specifies the importance of this data transmission. This makes it possible to define precisely which applications have priority in data traffic and, in the event of a disruption, only less important data transmissions are delayed. This prioritization is not easily possible with IPSec.
With SSR we have the decisive advantage that for the first time we can use several lines in parallel. This is also not possible with IPSec. All connections to an endpoint can only be sent via the line over which the current tunnel is established. In the event of a fault, a new tunnel must first be set up and it is not possible to switch over without further ado.
Thanks to SSR, on the other hand, the individual sessions can be distributed over several connected lines as required and, in the event of a fault, the session is simply moved to the next free line.
Example: We’re in the middle of a video conference and there’s a network glitch. If I use IPSec, the connection would simply drop, whereas with SSR the transmission continues almost without interference, as it is automatically redirected to another available line.
Juniper’s 128T technology is designed to be flexible so that new sites can be easily and quickly integrated into the network. The entire network is controlled and configured via the so-called Conductor. Settings and sessions can be created globally and transferred to each site, whereas with IPSec, new tunnels must first be set up with a great deal of effort.
With Our claim is to provide you with fail-safe systems to ensure trouble-free operation. Through extensive monitoring, which means up to 3500 tests on a permanent basis, we can eliminate faults even before they become noticeable to you. We always keep an eye on jitter and latency and can therefore react to bottlenecks even before they occur, for example by rerouting the data traffic to another free line (multi-line management).