Академический Документы
Профессиональный Документы
Культура Документы
Application Services
(WAAS)
Technical Overview
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1
Agenda
Mobile
User
WAN Optimization
§Bandwidth optimization
§Latency mitigation
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 3
Application Delivery Challenges
• Low latency
• Reliability
• Round Trip Time ~ Many Many
mili - Seconds
§ Applications perform
poorly in WAN Client
LAN
Switch WAN LAN Server
switch
• Already congested
• Low bandwidth
• Latency
• Packet Loss
•
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 4
Agenda
Branch IT consolidation
Application acceleration WAN bandwidth optimization
Public and Private Cloud Acceleration Best mix of centralized and distributed IT
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 6
Cisco WAAS: WAN optimization
solution
Backup
WAAS Data Center
Appliances
WAAS
Appliance
Branch Office
WAAS Mobile
WAAS Server
VPN
WAAS
Service
Branch Office Module WAN
WAAS
Appliance Internet
Domestic
Mobile User WAAS Mobile
Software
International Over VPN
Mobile User
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 7
Application Performance Improvements
Category Applications 2X 5X 10X 25X 50X 100X+
CIFS
File Sharing NFS
2-20X Avg >100X Peak
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 8
Seamless and Transparent Integration
§ Security
§ Optimized Routing WAN
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 9
Agenda
Virtu Virtu
al al
CIFS MAPI HTTP SSL Video NFS
WoW Blad Blad Configuration
AO AO AO AO AO AO
e e Management
#2 #3 System
(CMS)
TCP Proxy with Scheduler Optimizer (SO) Embedded
DRE, LZ, TFO virtualization
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 11
WAAS Overview
Session and Transport Layer Optimization
Host A Host B
Application Application
WAN
BRKAPP-2005
Presentation_ID
14633_05_2008_c1 © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 12
Cisco WAAS Auto-Discovery
Solutions
WCCPv2 WCCPv2
A WAN or PBR
B
or PBR
(marked)
(marked)
ACCELERATION
CONFIRMED!
Need to accelerate II know
Acknowledge
know WAE1
WAE1 is is
WAE1 this connection! WAE2 in
in the
Acceleration!
the path,
path, let’s
let’s
Here are my details Here are my details
accelerate!
accelerate!
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 13
Advanced Compression
Solutions
Benefits
ØData Redundancy Elimination (DRE)
Ø •Application-agnostic compression
ØPersistent LZ compression •Up to 100:1 compression
•
•Session-based compression
•Up to an additional 10:1
compression even after DRE
•
WAN
LZ LZ
DRE DRE
Synchronized
Compression
History
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 14
TCP Performance Challenges
cwnd
TCP
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 15
WAAS TFO Solution
Cisco TFO Provides Significant Throughput
Improvements over Standard TCP Implementations
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 16
TCP Flow Optimization (TFO) Benefits
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 17
Application-Specific Acceleration
§ Application and Protocol Awareness
• Minimize chatter
• Safe caching
• Scheduled File preposition
Servers
Data
Center
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 19
Network-Integrated Off-path
Interception
• load redistribution
• fail-over
• and fail-through operation
• Near-linear scalability and Interceptio
Interceptio
nn
Optimized
Optimized
performance improvement when Redirection
Redirection
Flow
Flow
adding devices Monitoring
Monitoring
WAN
Optimized
Optimized
Flow
Flow
Data Center
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 21
Cisco WAE Disk Encryption
• WAN
•
Fetch Disk Encryption
Key and Store in RAM
Remote Office Disk
Data Center
Disk Disk
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 22
Secure WAN Optimization from Cisco
Cisco Integrated Services Router (ISR) - Integrated Security and WAN Optimization
Ingress Egress
Security, Intercept Security,
Route
LAN Control, and and Control, and WAN
Selection
Visibility Optimize Visibility
Benefit
ØReduced send/receive time – key for Outlook 2000 users
ØCleans up the outbox faster – important for cached mode users
ØFaster downloads of OAB, while significantly reducing BW consumption
ØOptimizes native Outlook 2007 operations (disable encryption on server)
ØTransparent, automatic optimization
ØNo reverse engineering (MSFT licensing)
ØNo security hole of keeping sessions open even after users have logged
out
Client SERVER
WAN
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 25
MAPI AO Read Ahead
WAN
6
Local Read
& 7
Responses
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 26
MAPI AO - Asynchronous Write
WAN
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 27
CIFS Application Optimizer: CIFS AO
Challenge
Ø"chatty" protocols
Ø
ØWAN’s high latency, packet loss, and
bandwidth constraints significantly
diminishes Server access
Solution
ØFile and Metadata caching
ØRead-ahead
•2MBWord document open, ØMessage pipelining
results in over 1000 message
exchanges. ØScheduled preposition to pre-populate
•40ms RTT WAN, equates to more ØTransparent integration
than 52 seconds of wait time ØDedicated CIFS cache
before the document is usable
WAN Benefit
ØEnable consolidation of distributed file
Files
and print resources into the data center
without compromising performance
FILE.DOC CACHE
Ø
ØOffload of Data Center Servers
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 28
CIFS AO Read Ahead
WAN
6
Local Read
& 7
Responses
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 29
CIFS AO - Asynchronous Write
WAN
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 30
Windows Printing Application Optimizer
Branch Office Challenge
Local Printer
ØMS Print protocol uses RPC - very “chatty”
ØAs A result over WAN it degrades exponentially
as latency increases
Benefit
ØUsers print at near-LAN speeds
ØNo need for Network IT group to manage Branch Print
ØNo configuration on WAAS – just turn it on!
ØEnable scalable centralized Windows Print services
Windows ØFully Transparent to Windows AD Management
Print Servers Data Center ØEasy server migration from branch to datacenter
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 31
NFSv3 Application Optimizer
Solution Challenge
ØIn Unix, NFS protocol is used for large file exchange such as
ØRead-Ahead
software builds, CAD applications and large directory access
ØAsynchronous write
ØNFSv3 is a “chatty” RPC protocol
ØDRE hints
ØClients cannot efficiently operate on high-latency/high-
ØMeta-data caching
bandwidth WANs
Benefit
ØCan fill high-bandwidth links regardless of latency
ØTransparent to client and server. No configuration required.
ØTested for compliance with IBM AIX, Linux and
Solaris clients + Leading NAS vendors!
A B C D
WAN
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 32
HTTP Application Optimizer
Solution Challenge
ØFast Connection Reuse
ØProxy Connect to SSL Servers ØSlow page load on Interactive Web applications
ØLocal HTTP responses through Metadata cache ØBrowsers serially open and close connections to
ØContent-aware optimization fetch small objects (e.g graphics)
ØDRE hints ØLatency due to HTTP request/response
ØServer compression offload
Benefit
WAN
Connect
HTTP Request
HTTP Response
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 33
HTTP AO - Building Blocks
WAAS
4.2
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 34
Mitigate Latency using Local Response
WAAS
for Content Freshness Validation 4.2
WAN
gninraeL : ssaP tsriF
1 GET logo.gif
Expiry time cached by WAAS 2
3 200 OK Etag: version1
Expires: 1 day
4 GET logo.gif
Metadata Cache Hit!
WAN RTT Savings for subsequent
304 Not-Modified 5 requests
Improved Application
stseuqeR tneuqesbuS
Etag: version1
Response Time
Local Response: across all clients
Freshness Info Browser Reload / Refresh
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 35
Mitigate Latency using Local Response
WAAS
for URL Redirect 4.2
WAN
gninraeL : ssaP tsriF
1 GET www.cco.cisco.com
2
3 301 Moved Permanently
Location: www.cisco-
Old URL: www.cco.cisco.com cco.com
New URL: : www.cisco-cco.com
4 GET www.cco.cisco.com
Metadata Cache Hit! WAN RTT Savings for subsequent
requests
5
stseuqeR tneuqesbuS
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 36
Mitigate Latency using Local Auth-Needed
WAAS
Response for URLs needing Authorization 4 . 2
Branch Office Data Center
WAN
gninraeL : ssaP tsriF
1 Get Object # 1
3 401 Authorization
Required … 2
Notes authorization is required
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 37
The Need for SSL Acceleration
§ WAN
§
SSL Handshake
§
§
§ “session key” derived
§
Encrypted Data Exchange
•
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 38
Cisco WAAS SSL Optimization Solution
§ Core WAE acts as a Trusted Intermediary Node for SSL requests by client
§ Private Key and Server Certificate are stored on the Core WAE device
§ Core WAE participates in SSL Handshake to derive “session key”
§ Distributes the “session key” securely in-band to the Edge WAE over the
established connection between the Edge WAE and Core WAE
Transparent
Secure Channel
Client Server
SSL Handshake SSL Handshake
WAN
Original Data - Encrypted Optimized & Encrypted Original Data - Encrypted
SSL Session Client to Core WAE (WAAS) SSL Session Core WAE to Server
- Core WAE: Server Private Key
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 39
Cisco WAAS SSL
Feature Description
Online Certificate Status Protocol Real-time check whether SSL certificates are valid
(OCSP) and/or revoked
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 40
Live Video Streaming for Windows Media
Environment
BRANCH OFFICE DATA CENTER
1Uncompressed Video
WAN
Bottlen Encoder
eck
BRANCH OFFICE
BRANCH OFFICE
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 41
Live Video Streaming with WAAS
Edge stream splitting
BRANCH OFFICE DATA CENTER
Microsoft
Windows Media
WAAS Server (WMS)
3 Windows Media Player
Opens
WAAS
1Uncompressed Video
WAN
Encoder
WAAS
BRANCH OFFICE
Note: Separate WAAS license for Windows Media Live
Streaming required per contract w/Microsoft BRANCH OFFICE
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 42
Video Application Optimizer
Solution
ØWindows Media Stream Splitting - Each new client request (over LAN) will reuse existing incoming
stream (over WAN) for the same stream URL
ØData-reduction and optimization for non-WMT/RTSP video – WAN optimization and bandwidth
reduction for other video formats including video over HTTP, Flash, QuickTime, RealVideo, and any
other video protocol that uses TCP as a transport
ØIntelligent video server offload – Cisco WAAS video delivery services minimize the burden placed
on the origin video server by intelligently
ØRTSP/TCP rollover - Client requests over RTSP/UDP automatically rolled over to RTSP/TCP
Benefit
ØWAN Bandwidth Savings
ØOne video stream per remote site per webcast
ØEdge-stream splitting serves users at site
ØLeverage existing IP infrastructure
ØMulticast enabled networks not required
ØDefer requirement for bandwidth upgrades
ØLower TCO
ØReduce IT coordination needed for video apps (e.g. webcasting)
ØServer Offload: Fewer Streaming Servers required in Data Center
ØLower Op-Ex: No configuration required (auto-detect live RTSP traffic)
Ø
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 43
Agenda
Throughput
WAN Solution
LAN
LAN like
like
throughput
throughput ØDevice Mode purposely designed for DC-to-DC
Bandwidth
Bandwidth savings
savings
Fewer
Fewer round
round trips
trips replication and backup optimization
ØOptimized for High Speed Links, Low
Connection Count, and Low Fan-out
ØSupported on DC devices WAE-73x1
Ø Branch/DC and DC/DC managed from same
WAAS Central Manager (CM)
Ø3rd party data replication solutions support
ØEMC SRDF/A, NetApp SnapMirror
ØSolution does not preclude acceleration of
other replication protocols
No WAAS
Benefit
Deployment flexibility §WAE devices can be deployed in either Inline or WCCP mode
into existing data center
networks §
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 47
Agenda
Cisco WAAS
Backup
Users
VB Microsoft
System Center
Windows Server 2008 R2
Storage Backup
Remote WAAS
Office Appliance
Data V
WAAS
Appliances
Center
Remote WAAS
Office Appliance
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 50
Virtual Blade Offerings
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 52
Windows Virtualization - Enabling Virtual
WAAS
On-Demand Service at the Branch 4.2
Transfer
image
§ WAAS VB has a PXE
once
WAAS
Driver D
§ PV driver delivers Service PV-aware
A
Virtualization Layer
efficient hardware (PV-enabled)
T
A
access to Physical Cisco WAAS OS
WAVE Appliance
NIC, that improves Physical NIC
Paravirtualization
Multi CPU
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 54
Cisco WAAS NAM VB
§ Available on WAVE 574 and WAE 674 appliances
§ NAM software resides in a virtual environment within WAAS
§ WAAS Flow Agent flows and Netflow available as data sources
§ Sized for small data centers (4000 flows) and proof-of-concept
environments
§ Best location to install the NAM VB is on the Data Center WAE
§ If DC WAE does not support VB technology, the NAM VB can be installed
on any of the Branch WAEs that do support VB technology
Client
Server
Cisco NAM VB in
DC WAAS
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Central Manager
Cisco Confidential 55
Cisco ACNS-VB Solution
§Shared WAAS device for WAN Optimization and ACNS Media Services
§Allows customers with ACNS EOL platforms to migrate to new
WAE/WAVE platforms while maintaining ACNS licenses
§Allows customers with combined Wan Optimization and non-standard
digital media needs to reduce hardware footprint, CapEx and OpEx.
Edge WAE WAAS ACNS
Core WAE Root CE
VB
Web / Media
Clients Server
WAN
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 56
Recommend the Right Video Solution
Existing ACNS Customer Needs Platform for Digital
Customer Media Delivery
•New platform/better performance for ACNS •
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 57
Agenda
Lowest TCO •Best reliability, stability and troubleshooting tools reduce cost of support
•Centralized policy based management reduces deployment and support cost
•Integration with software distribution tools reduces deployment costs
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 59
Cisco WAAS Mobile Architecture Overview
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 60
Cisco WAAS Mobile Acceleration Matrix
Acceleration Feature Supported
Application Windows Client
App . Transport Delta Persisten Signed Window 7 Vista XP
Protocol Optimizati Compressio t SMB (Platforms
64 / 32 - bit ) ( 64 /
Optimizatio on n Sessions 32 - bit )
n
Web Browsing ( HTTP )
Outlook / Exchange
( MAPI )
FTP
Other Network
Applications
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 61
Cisco WAAS Mobile Networking:
Deployment Topology
Mobile users
connect through Small Office
VPN aggregation Internet
point to multiple
Cisco WAAS Mobile Cisco WAAS
Cisco WAAS Mobile Clients
Servers Mobile Client Workers in small offices
may connect to multiple
Cisco WAAS Mobile
Servers
File Servers
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 63
63
Agenda
§ Centralized Management
• Robust management, monitoring, and reporting for up to 2000 nodes
• Device grouping for simplified rollout of configuration changes
• Device and system alarms, as well as integration with SNMP and syslog
§ SOA-ready Monitoring
• Standard XML Web Service (SOAP)
• Integration with external reporting and monitoring portals
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 65
Secure Management & High Availability
Secure Management
• High Availability
§ SSL-encrypted HTTP GUI § Active/standby
and intra-device deployments with
communication automatic failover,
§ Roles-based Access § Configuration is replicated
Control (RBAC) to isolate from the primary CM to
users to specific the standby CMs
capabilities and domains
of management § Information is exchanged
using the same CM to
§ Integrated IOS-like CLI Cisco WAE
accessible via SSH (also communication that
telnet, serial) occurs between every
Cisco WAEand the CM.
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 66
Configurable Comprehensive Reporting
§ Device Dashboard
• Configurable list of reports
to display on a device or
device-group homepage
•
§ Customizable, schedulable
reports
• Device and system health,
WAN optimization
performance, application
acceleration performance,
and traffic statistics
§ Traffic Statistics
• Optimized vs pass-through
traffic mix including pass-
through reason
§ Per-Connection Statistics
• Connection monitoring
shows near real-time view
of optimized connections
and details
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 67
Bandwidth Savings Reports
§ Compression Statistics
• Bandwidth savings per
application over time
(hr/day/wk/mo/custom)
§ Acceleration Statistics
• Examine accelerated
connections, open files,
cached resources, cache hit
ratio, and average
throughput
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 68
Enterprise Performance Monitoring
Integration
§ Transparent Integration Without Flow Export Flow Export Agent
No optimization Agent (Inaccurate) Enabled (Accurate)
• Packet header preservation ensures
compliance with enterprise performance
monitoring systems
• Enables visibility to end-nodes involved in
performance data collection
§ Flow Export Agent
• Transmit connection data to monitoring
systems to ensure correct response time
analysis
• Eliminates WOC distortion of TCP RTT
analysis caused by TCP proxy
architectures
•
Exported through NAM to 3rd Parties
§ Central Manager API Optimization Enabled
• Single view of Application Performance
Management and Optimization
§
Cisco NAM
WAN
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 70
WAAS
Cisco WAAS Router Modules 4.2
NME-WAE SRE-SM
Services Ready Engine (SRE)
Router-Integrated Network Module
Service Modules (SM)
for the Cisco First Generation
Integrated Services Router for the Integrated Services Router G2
3925, 3945
2901, 2911,
2921, 2951
Enhances
Reduce Branch Lowers Operational
IT
Footprint Expenses
agility
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 71
WAAS Virtual Blades-Capable Branch
Appliances
WAE-674 Appliance
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 72
Cisco WAAS Branch Platforms
Hardware Max Opt Inline cards Number of Drive (GB) RAID Memory (GB) WAN Capacity
Configuration TCP Conn Virtual (Mbps)
Blades
* Final recommendations requires a detailed sizing exercise that include application traffic mix, traffic characteristics, application load and other factors
mentioned in the sizing guidelines.
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 73
Cisco WAE Family
Data Center Platforms
Hardware Max Opt Inline cards Drive (GB) RAID Fan-Out Memory WAN Capacity
Configuration TCP Conn (GB) (Mbps)
Replicator Mode
* Final recommendations requires a detailed sizing exercise that include application traffic mix, traffic characteristics, application load and other factors
mentioned in the sizing guidelines.
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 74
Cisco WAAS Mobile and UCS WAAS
Mobile
•Industry’s Most Scalable Mobile Acceleration 3.5
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 75
75
WAAS Mobile Client & Server
Configurations
Server
CPU
WAAS Mobile Server Windows server 2003, 2003 R2, 2008, 2008 R2 with Internet
SystemMemory (RAM)
Information Server (IIS) version 6 or higher.
ASP.NET v2.0 & v1.1Framework. , SQLite
Client
Hard Drive
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 76
Agenda
3 1
INLINE INLINE 2 INLINE INLINE
Central
LAN WAN LAN WAN Manager
Emulated
WAN
Inline branch Inline DC
Client Cisco WAE Cisco WAE 4 server
Verify operation/performance
through WEB UICisco Confidential
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. 78
Agenda
Presentation_ID © 2010 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 80
Agenda