tailieunhanh - Infrastructure Protection and Security Service Integration Design for the Next Generation WAN Edge v2.0

Modern WAN architectures require additional network capabilities to support current higher bandwidth and mission-critical applications. Requirements for deploying voice over IP (VoIP) and video conferencing include high availability, IP multicast, and quality of service (QoS). Today, most enterprises rely on private WAN connections such as Frame Relay, ATM, or leased-line services to connect their businesses. When deploying a traditional Frame Relay or ATM-based private WAN, however, network operations must implement point-to-point or hub-and-spoke architectures that make provisioning and management of moves, adds, or changes on the network complex. Also, the operational expense for a private WAN can sometimes be higher. | Infrastructure Protection and Security Service Integration Design for the Next Generation WAN Edge Modern WAN architectures require additional network capabilities to support current higher bandwidth and mission-critical applications. Requirements for deploying voice over IP VoIP and video conferencing include high availability IP multicast and quality of service QoS . Today most enterprises rely on private WAN connections such as Frame Relay ATM or leased-line services to connect their businesses. When deploying a traditional Frame Relay or ATM-based private WAN however network operations must implement point-to-point or hub-and-spoke architectures that make provisioning and management of moves adds or changes on the network complex. Also the operational expense for a private WAN can sometimes be higher than IP-based WAN technologies. The goal is to have reliable connectivity that is secure can be easily updated and can scale to meet evolving business needs. To address these needs Cisco provides validated extensible network architectures that are underpinned by a comprehensive line of services aggregation routers. The portfolio of WAN solutions enables an enterprise to rapidly introduce new business applications and services from the branch office through the campus to the data center while reducing operating costs and network complexity. This design guide extends the portfolio of WAN solutions to provide a highly available secure network design to the WAN edge. Providing the WAN architecture with security from outside attacks as well as protecting the traffic entering or exiting the WAN network is the focus of this design guide. This design guide defines the comprehensive functional components required to secure the infrastructure and data paths for an enterprise WAN edge. Cisco Enterprise Systems Engineering ESE is dedicated to producing high-quality tested design guides that are intended to help deploy the system of solutions more confidently and safely. .