VMware SD-WAN -

Transcription

D ATA S H E E TVMware SD-WANVMware SD-WAN Edge platform specificationsAT A GLANCEVMware SD-WAN enables enterprisesto securely support application growth,network agility, and simplified branchimplementations while deliveringhigh-performance, reliable branch accessto cloud services, private data centers,and SaaS-based enterprise applications.VMware SD-WAN is built onsoftware-defined networking principles toaddress end-to-end automation, applicationcontinuity, branch transformation, andsecurity from the data center and cloud tothe edge.KEY BENEFITS Simplified WAN management: Zero touchdeployments, simplified operations,one-click service insertion Assured application performance:Transport-independent performancefor the most demanding applications,leveraging economical bandwidth Managed on-ramp to the cloud: Directcloud access with performance, reliability,and securityIntroductionVMware SD-WAN by VeloCloud is a cloud-delivered solution for networkoperators and application owners who want to ensure high application performanceand availability for their end users while lowering networking costs. VMware SD-WANensures a reliable and resilient wide area network (WAN), with a choice of connectiontypes, including Multiprotocol Label Switching (MPLS), LTE, Wi-Fi, and broadband.VMware SD-WAN combines multiple links and uses traffic steering technology toselect the best path for each application to ensure consistent performance andovercome quality issues and outages. It can detect slight degradation that wouldaffect application performance, improve performance over a single link usingcongestion mitigation technology, and adapt without any noticeable impact on theuser experience.VMware SD-WAN componentsThe VMware SD-WAN solution consists of hosted or on-premises cloud gateways;branch office appliances and data center appliances; a central orchestrator toautomate policies; and virtual services insertion capabilities.VMware SD-WAN EdgeEnterprise-class appliances that provide secure, optimized connectivity to applicationsin any location, including private data centers, public clouds, and hybrid deployments. VMware SD-WAN Edge software is zero touch provisioned from the cloud forsecure, optimized connectivity to applications and data. The VMware SD-WAN Edge with VMware SD-WAN Dynamic MultipathOptimization (DMPO) and deep application recognition aggregates multiple links(e.g., Private, Cable, DSL, 4G-LTE) and steers traffic over optimal links to otheron-premises VMware SD-WAN Edges in branch offices, private data centers,campuses, and headquarters. They can easily integrate with the existing network via routing protocols and benefitfrom dynamic learning and automation. VMware SD-WAN Edges deliver highlyavailable deployment with a redundancy protocol. They can host virtual network function (VNF) services simplifying branch officedeployments of network services.The VMware SD-WAN Edge is available as a hardware-based appliance, a virtualappliance, and on the cloud marketplace on Amazon Web Services (AWS) and Azure.It can also be loaded in a virtual machine (VM) on a server or as a VNF.1

VMware SD-WAN Edge Platform SpecificationsVMware SD-WAN GatewaysVMware SD-WAN Gateways optimize data paths to all applications, branches, and data centers along with the ability todeliver network services to and from the cloud. A distributed network of gateways, deployed around the world oron-premises at service providers, provide scalability, redundancy, and on-demand flexibility.VMware SD-WAN Gateways implement DMPO, cloud virtual private network (VPN), and VMware SD-WAN MultisourceInbound Quality of Service between global cloud services (software as a service (Saas), infrastructure as a service (IaaS),network services) and each VMware SD-WAN Edge, enabling multiple broadband and private leased lines to appear as asingle, high-performance WAN.VMware SD-WAN OrchestratorA cloud-hosted or on-premises secure and scalable web-based central management tool provides simplified configuration,provisioning, monitoring, fault management, logging, and reporting. The VMware SD-WAN Orchestrator enables the simpleimplementation of business-based policies for application delivery, simplifying application traffic management.Using VMware SD-WAN’s zero touch deployment capability, VMware SD-WAN can be quickly installed. The VMwareSD-WAN Edge is shipped to the branch office where non-IT personnel can plug in power and a few cables. Activation,configuration, and ongoing management are all handled in the VMware SD-WAN Orchestrator.FIGURE 1: VMware SD-WANSoftware featuresCategoryFeaturesAAARADIUS, local authentication and authorization, multitenant 3 Tier role-based access control (RBAC)architecture, auditing, roles and privilegesAvailabilityHigh availability for VMware SD-WAN Edge, disaster recovery for VMware SD-WAN Orchestrator,multilink for high availability of WAN, VMware SD-WAN Edge clusteringConfiguration andmonitoringREST API, SDK (Java and Python), Syslog, SNMP, NetFlow, 3000 applications/categories, ANPM,application usage, device identification, live mode, zero IT touch activationDeployment flexibilityEliminate pre-stage, no CLI, group policies, consolidated ICOM and end customer dashboard, VNFform-factor, multitenant stateless headend, transport group for business policy abstraction,application-aware service insertion on premises or in cloud, RMA workflow, customized applicationmapsDMPOApplication and network condition aware sub-second steering, jitter/loss correction, fast intelligentrouting, intelligent gateway selection, link aggregation, TCP flow optimization, uni-directional linkmeasurements, bandwidth detectionD ATA S H E E T 2

VMware SD-WAN Edge Platform SpecificationsMultitenancyVMware SD-WAN Controller, VMware SD-WAN Gateway, VMware SD-WAN OrchestratorNetwork servicesIPv4, DNS, DHCP client, DHCP server, DHCP relay, NATQoSShaping, policing, per-flow queueing, tunnel shaper, multi-source inbound QoS, rate-limiter, COSaware, outer/inner DSCP tagging, smart defaults, MPLS COSRemote troubleshootingLive mode, alerts, events, remote diagnostics (examples: DNS test, ping test, flush active flows, listactive flows, paths, VPN tests, packet capture, etc.), PKI infrastructure with certificate managementworkflows, diagnostic bundlesRoutingOSPF, BGP, static, connected, ICMP probes/responders, overlay flow control, per-packet applicationaware steering, route filter, route redistributionSaaS/IaaSImproved performance for cloud apps, supports well-known IaaS (e.g., AWS, Azure, GCP), CloudWeb Security (e.g., Check Point, Zscaler, Palo Alto Networks, Netskope, Menlo Security, Websense,OpenDNS)SecurityAES256/128, SHA1/SHA2, IKEv2, VPNC compliant IPSec, PKI, segmentation, TLS1.2, SCEP, firewallL2-7, 1:1 NAT, port forwarding, dynamic branch to branch, MAC filteringsecurity service Insertion capabilities: simplified service insertion of third-party NGFW VNF runninglocally on Edge simplified cloud-based NGFW, AV, IPS/IDS, threat-detection service insertionVLAN tagging802.1Q, 802.1ad, QinQ (0x8100), QinQ (0x9100), nativeWAN overlay supportPublic/private/hybrid transport, cloud and on-premisesSoftware subscriptions editionsVMware SD-WAN software is based on different subscription editions with differentfeatures designed for a wide variety of use cases. They are listed ptionPremiumSubscriptionVMware SD-WAN Orchestrator DMPO Max number of data segments11616Max number of edges supported50UnlimitedUnlimitedPartner gateway support (service provider only; SaaS access only in Premium) Direct Tunnel from Branch to Cloud Security Service Advanced features: dynamic routing (multicast/Open Shortest Path First(OSPF)/Border Gateway Protocol (BGP), dynamic mesh VPN, hub clustering,customizable business policy Virtual services orchestration for next generation firewall deployments on theVMware SD-WAN Edges D ATA S H E E T 3

VMware SD-WAN Edge Platform SpecificationsSeparate lower-bandwidth tier of 10, 30, 50, and 100 Mbps VMware SD-WAN Gateway services Cloud Gateway Service for SaaS, IaaS Cloud Scale VPN (Branch Edge, Gateway, Branch Edge) Cloud Gateway Service using IPSec to Cloud Security ServiceCloud Gateway Service for Non-VeloCloud Site (Branch, Gateway, NVS)Add-on PCI certified serviceAdd-onAdd-onSoftware upgrade Upgradeable to a higher edition N/A (withpremium) (withenterprise)Mixed editionsVMware SD-WAN is also licensed by bandwidth tier; please see bandwidth tier to platform table below.Edge/BW10 M30 M50 M100 M200 MEdge 510 Edge 510-LTE Edge 520 Edge 520v Edge 540350 M500 M750 M1G 2G5G Edge 620 Edge 640 Edge 680 Edge 840 1 Edge 610 Edge 2000Edge 3400Edge 3800 10 G 1. Maximum SD-WAN performance without VNF on Edge 840 is 4 Gbps; however, the maximum allowed bandwidth license is 2 GbpsD ATA S H E E T 4

VMware SD-WAN Edge Platform SpecificationsSoftware support levelsSoftware Support PlansVeloCloud BasicVeloCloud ProductionVeloCloud PremierCall center24x7 (Sev1)24x7 (Sev1)24x7 (Sev1, Sev2)12x5 (Sev2, Sev3, Sev4)12x5 (Sev2, Sev3,Sev4)12x5 (Sev3, Sev4)Sev1: within 1 hourSev1: within 30 minsSev1: within 30 minsSev2: within 6 hoursSev2: within 4 hoursSev2: within 2 hoursSev3: within 12 hoursSev3: within 8 hoursSev3: within 4 hoursSev4: not applicableSev4: within 24 hoursSev4: within 12 hoursResponse timeSev5: per scheduleSoftware maintenanceYesYesYesFederal support-YesYesHardware replacement servicesHardware Support PlansVeloCloud Return (RTR)VeloCloud Next Day(NBD)VeloCloud Same Day (SBD)Replacement shipmentservice-level agreement(SLA)Ships next business day afterRMA unit returned to factoryAdvanced replacement.Ships next business day ifRMA request is receivedby 20:00 UTCAdvanced replacement. Ships same day if RMArequest is received by 18:00 UTCPhysical edge specifications (1/2)Performance and scaleVMware SD-WAN Edges510510-LTE520520v540610620Maximum throughput(1300-byte)2200 Mbps200 Mbps200 Mbps200 Mbps1 Gbps350 Mbps1.5 GbpsMaximum throughput(IMIX)3100 Mbps100 Mbps100 Mbps100 Mbps500 Mbps200 Mbps750 MbpsSmall (64-byte)430 Mbps30 Mbps30 Mbps30 Mbps150 Mbps40 Mbps200 MbpsMaximum tunnel scale2525505010050100Flow per second2,4002,4002,4002,4004,8002,4004,800Max concurrent flows240K240K240K240K480K240K480KMax number of routes100K100K100K100K100K100K100KMaximum segments16161616161616D ATA S H E E T 5

VMware SD-WAN Edge Platform SpecificationsConnectivityVMware SD-WAN Edges510510-LTE520520v540610620LAN / WAN 1G RJ-454422266LAN / WAN 1G SFP222225L2 Switching Only RJ-45888YesYesYesYesYes2 (2.0) 2(3.0)2 (2.0) 2 (3.0)2 (2.0) 2 (3.0)2 (3.0)2 (3.0)Integrated Wi-FiYesIntegrated LTEUSB ports (3G/4G LTE)YesYes62 (2.0)2 (2.0)Memory, storage, and third party VNFsVMware SD-WAN Edges510510-LTE520520v540610620System memory (RAM)4 GB4 GB4 GB8 GB8 GB4 GB8 GBSystem flash8 GB8 GB8 GB8 GB8 GB16 GB16 GBSystem storage64 GB(SSD)120 GB(SSD)VNF capableYesYesDimension, power, environment, and reliabilityVMware SD-WAN lessFan-lesswith Fanwith FanFan-lesswith FanMountingDesktop / Wall-mount / 19-inch rackmountSize (W x D x H) in mm206 x 180 x 39.7 mm206 x 180 x 51 mm206 x 200 x 52 mmWeight in lbs.2.0 lbs.2.6 lbs.2.9 lbs.3.1 lbs.Power SupplyExternal: ACAC inputVoltage: 100v to 240v auto-ranging, Frequency: 50Hz to 60HzPower Load (Typical / Max)15W / 40W16W/26W20W/30WOperating conditionsTemperature (0 C to 40 C), Humidity (5% to 85%), Altitude (5,000 m)Non-operating conditionsTemperature (-40 C to 70 C), Humidity (5% to 95%), Altitude (5,000 m)MTBF (25 C ambient temperature)740.6 yrs.15W / 40W40.6 yrs.25W/45W22.9 yrs.30W/45W22.8 yrs.30W/50W22.8 yrs.22.8 years2. Maximum performance based on large packet (1300-byte) payload with AES-128 encryption and DPI turned on3. Internet traffic (IMIX) performance based on average packet size of 417-byte payload with AES-128 encryption and DPI turned on4. Small packet performance based on 64-byte packet size payload with AES-128 encryption and DPI turned on5. 620 supports SFP 1/10Ge modules6. 510-LTE supports additional 2 LTE interfaces through USB for 3 concurrent active interfaces7. MTBF based on Telcordia SR-332 methodology; excludes system fans in the calculationD ATA S H E E T 6

VMware SD-WAN Edge Platform SpecificationsPhysical edge specifications (2/2)Performance and scale8VMware SD-WAN Edges640680840200034003800Maximum throughput(1300-byte)93 Gbps6 Gbps4 Gbps10 Gbps7 Gbps10 GbpsMaximum throughput(IMIX)101 Gbps2 Gbps1.5 Gbps5 Gbps2.5 Gbps5 GbpsSmall (64-byte)11250 Mbps500 Mbps400 Mbps1 Gbps650 Mbps1 GbpsMaximum tunnel scale4008004006,0004,0006,000Flow per second19,20019,20019,20038,40038,40038,400Max concurrent flows1.9M1.9M1.9M1.9M1.9M1.9MMax number of routes100K100K100K100K100K100KMaximum segments161616161616Note: The Edges have a maximum throughput when a firewall VNF is actively service chained:VMware SD-WAN Edges520v620640680840Max. throughput with FW VNF100 Mbps100 Mbps350 Mbps500 Mbps500 MbpsConnectivityVMware SD-WAN Edges640680840200034003800LAN / WAN 1G RJ-45666666LAN / WAN 1G/10G SFP 222244Integrated Wi-FiYesYesUSB ports (3G/4G LTE)2 (3.0)2 (3.0)2 (3.0)2 (2.0) 2 (3.0)2 (3.0)2 (3.0)Memory, storage, and third party VNFsVMware SD-WAN Edges640680840200034003800System memory (RAM)32GB32GB32GB32GB32GB32GBSystem flash16GB16GBn/an/an/an/aSystem GB (SSD)256GB(SSD)VNF capableYesYesYesD ATA S H E E T 7

VMware SD-WAN Edge Platform SpecificationsDimension, power, environment, and reliabilityVMware SD-WAN MK1RU Rack MountsSize (W x D x H) in mm206 x 180 x 51Weight in lbs.437 x 249 x 43437 x 650 x 43434 x 381 x 446.0 lbs.12 lbs.23.5 lbs.13.75 lbs.15.74 lbs.Power supplyExternal: ACInternal: ACRedundant power supplyNoYes (1 1)Yes (1 1)Yes (1 1)AC inputVoltage: 100v to 240v auto-ranging, Frequency: 50Hz to 60HzPower load (Typical / Max)35W / 120W200W/400WOperating temperatureNoNo40W /120W40W/70W150W/200W165W/400W10 C to 40 C10 C to 40 C10 C to 35 C0 C to 45 COperating humidity5% to 85%5% to 85%5% to 85%5% to 85%Operating altitude5,000m5,000m5,000m3,048mNon-operating conditions40 C to 70 C-40 C to 70 C-40 C to 70 C-40 C to 70 CNon-operating humidity5% to 95%5% to 95%5% to 95%5% to 95%Non-operating altitude5,000m5,000m5,000m10,688mMTBF (25 C ambient temperature)22.8 years11.5 years7.0 years17.1 years3800Wireless specificationsWireless LAN (Wi-Fi) specificationsWi-Fi Capabilities510 / 510-LTE520 / 520v / 5406X0Wi-Fi standards802.11 a/b/g/n/ac802.11 a/b/g/n/ac802.11 a/b/g/n/acFrequency bands (GHz)2.400-2.4835, 5.150-5.250, 5.725-5.850Antenna (max data rate)2x2 MIMO3x3 MIMO2x2 MIMOMax simultaneous SSIDs888Max transit power23dBm/chain for 2.4GHz, 19dBm/chain for 5GHzD ATA S H E E T 8

VMware SD-WAN Edge Platform SpecificationsWireless WAN (3G / 4G / LTE) specifications3G / 4G / LTE Capabilities510-LTE-NAEU510-LTE-APModemSierra Wireless EM7455Sierra Wireless EM7430GeographyNorth America & EuropeAsia, ANZ, LATAMLTE categoryCat-6Cat-6Carrier aggregationYesYes3G fallbackHSPA HSPA SIM slots2 (only 1 active)2 (only 1 active)LTE bands1, 2, 3, 4, 5, 7, 8, 12, 13, 20, 25, 26,29, 30, 411, 3, 5, 7, 8, 11, 18, 19, 21, 28, 38,39, 40, 41AntennasMain and AUX (via SMA connectors)Theoretical speeds12300 M Down / 50 Up300 M Down / 50 UpVirtual edge specifications2 vCPU4 vCPU8 vCPU10 vCPUMaximum performance250 Mbps1 Gbps4 Gbps4 GbpsMaximum tunnel scale504008002000Minimum memory (DRAM)4 GB8 GB8 GB8 GBMinimum storage8 GB8 GB8 GB8 GBSupported hypervisorsESXi 6.0, 6.5U1, 6.7U1, KVM Ubuntu 14.04 LTS or 16.04Supported public cloudAWS, Azure, GCPSupport network I/OSR-IOV, VirtIO, VMXNET3Recommended host settings CPUs at 2.0 GHz or higher CPU support for AES-NI, SSE3, SSE4, and RDTSC instruction sets Hyper-threading disabledNote: Performance was obtained using an Intel Xeon CPU E5-2683 v4 @ 2.10 GHz (AES-NI) and SR-IOV enabled network adapterusing large packet payload (1300-byte).8. VMware SD-WAN Edges support clustering for multi-gigabit performance9. Maximum performance based on large packet (1300-byte) payload with AES-128 encryption and DPI turned on10. Internet traffic (IMIX) performance based on average packet size of 417-byte payload with AES-128 encryption and DPI turned on11. Small packet performance based on 64-byte packet size payload with AES-128 encryption and DPI turned on12. The 510 platform is limited to maximum 200 Mbps of aggregate throughputD ATA S H E E T 9

VMware SD-WAN Edge Platform SpecificationsVMware SD-WAN Edge platform and software release 0Edge520vEdge540 3.2.x 3.3.x 3.4.0 0 (3.2.1) Edge3400Edge3800 Regulatory and compliance certificationsEMCFCC (US)CE (Europe)R-Mark (Japan)SRRC (China)13EN32032 (HK)KCC (Korea)NCC (Taiwan)47 CFR, Part 15ICES-003 Class AEN 55022 Class ACISPR 22 Class AAS/NZS 3548 Class AVCCICNS 13438EN 300-386EN 61000 (Immunity)EN 55024CISPR 24EN 50082-1SafetyUL 60950-1CAN/CSA C22.2EN 60950-1AS/NZS 60950-1IEC 60950-1GB-4943RoHSCompliant13. Not applicable for 2000, 3400, 3800. Also 6x0s series not certified for SRRC China as of today.VMware, Inc. 3401 Hillview Avenue Palo Alto CA 94304 USA Tel 877-486-9273 Fax 650-427-5001 vmware.com Copyright 2020 VMware, Inc.All rights reserved. This product is protected by U.S. and international copyright and intellectual property laws. VMware products are covered by one or more patentslisted at vmware.com/go/patents. VMware is a registered trademark or trademark of VMware, Inc. and its subsidiaries in the United States and other jurisdictions.All other marks and names mentioned herein may be trademarks of their respective companies. Item No: sdwan-712-edge-platform-spec-ds-0420 5/19

VMware SD-WAN is built on software-defined networking principles to address end-to-end automation, application continuity, branch transformation, and . Memory, storage, and third party VNFs VMware SD-WAN Edges 510 510-LTE 520 520v 540 610 620 System memory (RAM) 4 GB 4 GB 4 GB 8 GB 8 GB 4 GB 8 GB .