Monday, May 20, 2019

Cisco Integrated Services Router, Lambda Cloud Feature, StarWind HyperConverged Appliance

Future-proof your Internet of Things deployments
Optimize your IoT deployments
The modularity and expansion capabilities of the IR1101 Integrated Services Router Rugged can help extend product lifetime. Its compact, modular, ruggedized design is excellent for mission-critical cases. It offers stronger industrial router security and simplified management with SD-WAN architecture, edge compute, and IOS XE.

Features and capabilities
Modularity and investment protection
The IR1101 has highly modular and expandable hardware designed to extend product lifetime. Internal and expansion modules give you the flexibility to add or upgrade WAN and storage components as technologies and your needs evolve.

Dual WAN gigabit router. 5G ready.
A 5G-ready, dual WAN gigabit router
When provisioned with two cellular modules, the IR1101 enables concurrent connectivity to two cellular networks for WAN redundancy, enhanced data throughputs, load balancing, and differentiated services. The hardware is future-proofed to handle 5G.

Lambda Cloud Feature Overview

Cutting-edge hardware
Get access to fast GPUs for Deep Learning

Save weeks of setup time
You can start training in minutes instead of days.

Secure and reliable
After your instance is shut down, the data and code is destroyed, leaving nothing behind.

Save hundreds of thousands
Our instances are 50% of the cost of AWS p3 instances for the same performance. Switch over and save tens of thousands per month.

Simple and scalable
Spin up hundreds of GPUs to scale out your hyper parameter search. Spin them down after you're done.

StarWind HyperConverged Appliance

For organizations who are looking to minimize application downtime but are limited on IT team resources and/or budgets, we offer the StarWind HyperConverged Appliance (HCA). StarWind HCA is a 100% software-defined hyperconverged platform built with Dell® OEM or StarWind-branded server platform. There’s a lot we offload from customer’s shoulders: picking the right hardware and software, migrating the applications, and integrating the HCA in your datacenter.

Our engineering team does it all for you at no extra cost! It's also the only solution on the market that offers true HA with just a single onsite node. The days when you had to chase support when something breaks are gone: HCA ProActive Support monitors the cluster 24/7, predicts failures and reacts to them before things go South. Thereby, we minimize downtime and management efforts even further.

PAINS
GAINS
Strict budgets
Fits strictest budget requirements with a 2-node cluster priced 2x lower than a Tesla Model 3
No overpaying for unnecessary or proprietary hardware – HCA is 100% software-defined and requires as little as one node to make your applications Highly Available.
Limited IT team resources
Zero Configuration, Migration, and Integration efforts since everything is done by StarWind Engineers at no extra cost.
Zero time spent on fixing broken systems- StarWind ProActive Support AI monitors all cluster components 24/7/365 to prevent breaks.
High downtime costs
High fault tolerance rate: 2-node system can lose 1 node + 1 disk and keep going.
Constant uptime thanks to synchronous failover clustering between on-premises and public cloud with StarWind Hybrid Cloud.
Explore hybrid cloud with StarWind
StarWind HCA provides businesses with a non-stop applications availability and unbeatable data security thanks to Hybrid Cloud support. Now, companies can flexibly migrate virtualized workloads between their on-premises environment and AWS, Azure, Google Cloud, and Oracle Cloud with zero downtime.

High availability with a single node on-prem?
With HCA companies can achieve High Availability for their ROBO and Edge locations with just one onsite physical node. StarWind ensures application uptime and data security with minimum possible hardware footprint by clustering remote HCA nodes with public cloud, main Datacenter, or even both.

Pay-as-You-Go
For SMB and ROBO bounded with limited Capital Expenses and IT team resources, StarWind offers a flexible Equipment Financing plan. Organizations can start using StarWind HCA from the day one with a convenient zero payment plan, broken down into the OPEX.

A Support Plan Ticking All The Boxes?
"Less is more" is a key rule for business success. Providing uninterrupted operation of the company’s IT infrastructure and saving time on having no downtime, the organization receives a strategic resource for the implementation of future business projects. StarWind Support offers three levels of HCA support designed to meet specific technical requirements and business needs, saving your time and maximizing your IT infrastructure performance.

HCA Models
With StarWind HCA there is a model line for every workload and performance requirement.

ALL FLASH
StarWind HyperConverged Appliance - pic 2
HCA All Flash packs most powerful compute and high-performance storage, granting uncompromised performance for IOPS-hungry applications.

HYBRID
StarWind HyperConverged Appliance - pic 3
HCA Hybrid provides balanced compute and capacity ratio for your applications. Tiered storage effectively addresses both capacity and performance requirements of your applications.

DISK
StarWind HyperConverged Appliance - pic 4
HCA Disk is designed for applications with moderate compute and high storage requirements. It can also be added as a capacity or DR node to the existing cluster.

Features

StarWind NVMe over Fabrics (NVMe-oF)
StarWind’s NVMe-oF protocol implementation allows maximum PCIe SSD utilization in Hyper-V environments. With this protocol in place, the difference between a locally connected NVMe drive and one presented over the network vanishes.

StarWind iSER
StarWind iSER, a protocol designed to improve iSCSI, completely eliminates the problem of network bottlenecks and latency issues providing higher bandwidth for block storage transfers. It allows achieving maximum performance in cluster systems, which makes VM migration, data and VM replication even faster and easier to implement.

Log-structured Write-Back Cache (LSWBC)
Log-structured Write-Back Cache is a caching technology tailored for intense virtualized workloads. By effectively combining the fast memory like flash or RAM and a tiny portion of your storage, this feature optimizes the way data is written to the underlying storage. As a result, all your applications always get the resiliency and performance that they need.

Backup and Replication Powered by Cloud solution VEEAM

BlueBridge Networks is partnered with Veeam and is also a Cloud Connect provider. Allow us to architect and maintain a backup and replication strategy.  The partnership enables us to provide optimal solutions.

BlueVault managed storage is optimized for both Windows and Linux physical and virtual environments and is a cost-effective backup and replication archive solution. BlueBridge offers a cloud-based, disk-to-disk product for on- and off-premise customers.

All data is stored on a highly reliable enterprise-class infrastructure, making it available when you need it most.

Every organization has its own IT requirements and pain points, thus the need for a custom technology solution. Cloud hosting services add additional flexibilities and make it easier for businesses to scale their IT infrastructure efficiently over time. It’s why many of them are now pursuing cloud computing as a way to take advantage of the affordable, managed IT services in the market. BlueBridge Networks helps our Columbus area customers create sustainable IT infrastructure in the cloud through a host of cloud computing solutions, including:

Virtual Data Center Services
Utility Computing
Utility Storage and Backup
Cloud Migration Capabilities (Anything to Anywhere)
BlueBridge Cloud Solution
Classified as Infrastructure as a Service (IaaS), cloud computing leverages the efficient pooling of an on-demand, self-managed virtual infrastructure. At BlueBridge, we’ve developed an innovative enterprise cloud-based solution for companies looking to save cost and improve IT efficiencies through cloud computing.

Our BlueBridge Cloud solution allows companies to turn their resources up or down as demand fluctuates while accessing storage space, bandwidth, application and software capabilities they need to run their business efficiently. Whether our customers are looking for a turn-key virtual data center replacement, a Disaster Recovery / Business Continuity platform in the cloud, or simply project based compute and storage, we have a solution to fit their needs.

Benefits of BlueVault Backup and Replication: 

Onsite/offsite backup service
Fast and reliable
Backup seeding for larger data sets
Data encrypted at rest and in transit for maximum data security
HIPAA/PCI compliance with encryption and segregation of data
WAN-optimized replication minimizes bandwidth needs
Optional offsite backup replication available
Flexible restore options for recovering to physical or virtual environments
Bare metal restore capability
Compatible with broad range of operating systems, database platforms and business applications
Runs on Linux & Windows

Virtual Data Center
To help our customers reclaim their resources and achieve savings, BlueBridge Networks offers our data center in the cloud.

Utilizing various cloud platforms and rich feature sets, BlueBridge makes data management simple and cost effective for our customers. We know that IT departments would rather focus on their company’s innovation than spend time on IT upkeep and updates. By moving their data to the cloud, we help our customers save money on utilities, maintenance and their physical infrastructure, while shrinking deployment windows and virtual machine downtime.

Our platform specifications include:

Support for various OS’s
Full 24-7 virtual layer monitoring
Connectivity to multiple carriers
Managed and dedicated firewalls
A secure dedicated environment
Enterprise-class servers
High-performance storage
Proven SLA

Disaster Recovery
What keeps IT managers up at night is not, “Is the system working?“

It’s “What happens if the system goes down?” and “What’s the contingency plan?”

BlueBridge Networks ensures that our customers’ critical applications and data are protected, so that they can stay focused on their business instead of their worst case scenarios. Our business continuance (BC) solutions keep their key systems up and running so that they can stay highly available, whether it’s during normal operations or in the face of an environmental hazard. And if a power outage or natural disaster does occur, we’ll put in place the disaster recovery (DR) plans and protocols  to minimize the impact on their business critical operations.

Solving for the X-factor…
When disaster strikes, how long can operations stay down before business is adversely affected? That answer is different for every company, which is why BlueBridge develops BC/DR solutions tailored for each client’s specific business environment. Our trained engineers will work towards a solution that is defined around each customers’ recovery point objectives and recovery time objectives for getting their business back up and running.

… to achieve the best BC/DR Solution
Peace of mind isn’t a pre-packaged solution, which is why we customize it for each business and bottom line. Our unique blend of offerings and expertise allow us to offer complete BC/DR solutions to fit any budget or recovery goals. Whether its on-premise, off site or in the cloud, we can design the customized solution that meets their needs. BlueBridge areas of expertise include:

Application-side Replication
Server-side Replication
Storage-side Replication
High Availability Clustering
Disaster Contingency Planning and Testing
Workgroup Recovery
With tailored business continuance and disaster recovery solutions in place, our customers feel secure knowing that they’re ready for whatever comes.

Centrally Managed Security for AWS Controlling Outbound VPC Traffic

Bring your own firewall to the cloud — Palo Alto Networks, Checkpoint, Fortinet and more. Enterprises have grown their cloud environment to a degree that Cloud network traffic requires in-line firewalling. There is a growing requirement for inserting services like IDS/IPS, layer 7 (application layer) filtering and malware detection in cloud networks.

Aviatrix Transit DMZ allows you to bring your own trusted firewall solution and easily build out a Cloud Transit DMZ. This Aviatrix solution supports next-generation firewalls for inspection of all traffic flows: on-premise to/from Cloud, Egress to Internet, Ingress from Internet and VPC to VPC/VNET traffic.

Learn more about the joint Palo Alto Networks and Aviatrix solution here.


Transit DMZ is different from the traditional cloud firewall deployments.

Traditionally, instance based firewall appliances require IPSEC tunnels (or ECMP) to send traffic from VPCs to these appliances. This increases the complexity of managing the firewalls and reduces performances for the security features that you want them to perform.

Transit DMZ decouples networking functions and security functions. There is no IPSEC tunnels between the Aviatrix Transit GW and the firewall appliances, thus simplifying firewall deployment, maximizing firewall appliance performance and allowing them to scale independently.

Aviatrix Next Gen Transit Network provides a DMZ architecture in the public cloud that allows firewall instances to be inserted inline for traffic inspection.

Advantages include:

Maximizes firewall performance. This architecture eliminates the performance burden of IPSec tunnels and routing functions on the firewall instances. So, each firewall instance can perform security operations at maximum throughput. Aviatrix transit DMZ also allows you to scale-out your firewall instances.
Inspect all traffic flows: The solution allows inspection of all traffic flows: on-premise to and from the Cloud, between cloud networks, internet ingress and internet egress. Get full visibility in your cloud by eliminating need for source NAT (SNAT).
Built-in High Availability: Aviatrix Controller manages the HA and failover of firewalls by monitoring the health of the instances. When a failure is detected, the controller reprograms cloud infrastructure route entry to avoid the defective instance.
How does Aviatrix DMZ compare to virtual firewall-only implementation?

Controlling Outbound VPC Traffic

An important security measure for your VPCs is to effectively control outbound network traffic (egress), delineating legitimate from illegitimate requests. If internal users or cloud instances are compromised, they can pose a significant threat if attackers are able to exfiltrate data. Many compliance frameworks like PCI DSS and HIPPA require egress security controls.That said, there are many reasons why cloud users or instances within VPCs need Internet access.

The reasons range from getting basic software updates from Microsoft, Google or Ubuntu, to needing application access to another third party or SaaS service over the Internet. If you have more than a handful of VPCs, management of whitelists on a per-VPC basis can become a major source of pain. Also, it can be cost prohibitive to deploy next generation firewall solutions per VPC. What’s needed is centrally managed, scalable, cost-effective solution.

Begin quotationSquid jerky is too tough to chew.End quotation
—CHARLIE, CLOUD OPS
Open source project Squid is just hard to manage and limited for cloud VPCs:

Manual admin of policies, per VPC
Tedious config of each new instance to use Squid, new instances can appear without reconfig’ing Squid = big security risk
Troubleshooting and debugging Squid will make you salty
Limited protocol support — example: Squid doesn’t handle SFTP so someone could easily export data!
THE AVIATRIX SOLUTION
VPC Egress Security
Aviatrix VPC Egress Security
The Aviatrix solution provides inline AVX Gateways with egress firewall functions in each VPC with centralized management of policies in the AVX Controller. It blocks all outbound internet traffic except specific whitelisted domain names (FQDN). This solution directs the outbound traffic through the AVX filtering and monitoring instance on a per VPC basis. The inline Gateways are highly available, designed to leverage Availability Zones (AZs) and automatic failover.

The Controller provides CloudOps teams with centralized policy management, from the ability to tag VPCs and assign policies to tags. The Controller also provides centralized audit logs. Finally, using AVX Cloud Formation Templates, CloudOps teams can automate the deployment of VPC egress security with new VPCs. This is a cost-effective solution, priced at a fraction of other popular solutions.

How AVX stacks up to other popular solutions.

AVIATRIX SQUID + NAT INSTANCE(S) AWS NAT GATEWAY
Highly Available; Fault Tolerant Automatic Use a script and custom monitoring code Automatic
Filter Traffic by IP Address Yes Yes Partial: must update security group of each instance (maximum 50 IPs)
Filter Traffic by FQDN Yes Yes No
FQDN filtering Using Wildcards Yes Yes No
Supports HTTP/HTTPS Protocols Yes Yes No
Supports Additional Protocols (sftp, ftp, icmp, etc.) Yes No No
Central Management Console Yes No: must manage each VPC separately Yes
Integrated Audit Logging Yes Yes Partial: must use VPC flow logs
Non-Networking Engineer Friendly Yes No Yes
HOW WE’RE DIFFERENT
Centrally Managed Security for AWS

Cloud Native Design
Push policies instantly to one VPC or hundreds of VPCs.

Reduces AWS Costs
AVX Gateways run on t2.micro instances. Per-hour metering on your cloud bill.

Centralized Management Console
Click and done. With AVX point-and-click interface, configuring and monitoring of all policies and traffic can be administered centrally by both engineers and non-engineers.

FQDN Discovery
Discover what Internet sites your apps visit before you configure.

Security Policy Tagging
Create tags for different policies like “dev” and “prod.” Apply those tags to VPCs.

Easily Audit Security Events
Everything is logged – including the packets. View in AVX or export logs to Splunk, Sumologic, Datadog and other tools to standardize reporting and event correlation.

LEARN MORE
What is VPC Egress Filtering & Security?

When businesses consider their network traffic security measures for AWS VPCs, they need to ensure that outbound network traffic is recognized alongside inbound network traffic. Egress is the outbound network traffic that originates from internally networked instances in your AWS VPC to another network. In the case of servers and VPCs, this is generally internet bound egress.

It is important that outbound network traffic is effectively controlled, characterizing allowed requests from prohibited requests. If internal users or cloud instances in VPCs are compromised, they can pose a significant threat if attackers are able to exfiltrate data or use your outbound network traffic for their malicious activities. Learn more about VPC Egress Filtering.

Secure, Automated Routing for the Cloud Era

The AVX Controller and Gateway provide an easy way to setup and manage all your cloud network use cases.

In a few minutes you can subscribe and start building cloud network connections with a browser-based, centralized Aviatrix Controller to easily build your use cases including transit network, VPC egress filtering, user VPN and more. With Aviatrix, you pay as you go and can include the charges on the same metered, usage-based monthly billing as your AWS bill.

The Aviatrix AVX Software-Defined Cloud Router establishes an abstraction layer between the public cloud provider’s networking primitives and the application to simplify the creation of logical cloud networks and services for hybrid connectivity, data security, multicloud connectivity, monitoring and troubleshooting. The solution consists of two components: Aviatrix Controller; and the Aviatrix Gateways, all of which are deployed in your VPCs or on-premises environment.

Aviatrix Components
The Aviatrix solution is based on the AVX Controller which orchestrates and manages the cloud network. AVX Controller seamlessly blends native components like Transit Gateways and instance-based components like AVX Gateways. The AVX Gateways can be deployed for extending your network in the cloud, to multiple clouds, and to on-premises environments.
AVX Controller
The AVX Controller is the central orchestration and management console. The Controller centralizes cloud network operations for the cloud and to the edge of on-premises sites. It is the single pane of glass for secure networking and compliance, using dynamic route propagation, visualization, monitoring and troubleshooting.

Benefits of the AVX Controller include:

Single pane of glass for orchestration and automation
Central orchestration and provisioning
Extensive access logging and monitoring for compliance and audit
Multi-region, multi-cloud encrypted peering
Flexible Pay-As-You-Go licensing, billed to your AWS Account
AVX Gateway
The AVX Gateway is a cloud scale out and load balanced solution that allows direct VPN access to VPCs. Built for cloud deployments with multiple VPCs/VNets, the Gateway is architected to support a distributed cloud-based deployment across multiple regions. It can be installed on-premises or in the cloud to connect, manage, and secure cloud networks.

Benefits of the AVX Gateway include:

Multi-region, multi-cloud encrypted peering
Scale-out cloud VPN that auto scales to users and load
Multifactor authentication—Active Directory/LDAP, DUO, Google and Okta
User profile-based access and consistent security policies
Deployed on-prem ESX/HyperV/ KVM or in AWS, Azure, and Google
Environmental stamping to create cloud networks at scale

Connecting your customers to cloud-hosted apps.
Setting up dedicated private IP addressing on the per VPC basis poses many design and access constraints. Planning, maintaining, and providing access to hundreds or thousands of customer VPCs could become an impossible task for CloudOps and Network Planning teams.
Enterprise apps are increasingly being hosted in the cloud from organizations such as Informatica, SAP and others. These ISVs are now leveraging many of the public cloud network, compute, and storage services for global reach and rapid scaling. Their enterprise customers require dedicated single tenant stacks for data privacy and loss prevention without compromising access and security.

Public cloud providers such as AWS offer networking services such as VPC (Virtual Public Cloud) for creating private logically isolated network environments for segmenting the cloud and launching resources and applications with complete control over the IP addressing and dedicated access.

Using VPCs to isolate customer dedicated single tenant applications stacks is now becoming the new deployment architectural paradigm. While customer dedicated VPCs solve for many of the requirements posed by enterprises for data isolation, leakage, security and access, it also creates numerous challenges for CloudOps and Productions engineering teams to setup, scale and maintain the customer dedicated VPCs.

THE AVIATRIX SOLUTION
Secure Access to Cloud-hosted Applications
Aviatrix has a feature called Environmental Stamping, which takes advantage of the unique nature of Virtual Private Clouds and offers a deployment architecture that is secure, identical, and infinitely repeatable. It helps Cloud hosted app providers to automate on-boarding of networks and customers by avoiding repeat tasks of cloud operations and production engineers.

Environmental Stamping provides a deployment solution that lets you create identical environments with identical or overlapping VPC CIDRs, instances and security policies. Yet it allows you to access instances in VPCs seamlessly and securely.

Networking in the cloud should be as dynamic and scalable as compute and storage.

Aviatrix, an AWS recommended partner, provides native cloud networking that is purpose-built for AWS public cloud. Aviatrix automates connectivity and security for site to AWS cloud, user to AWS cloud and cloud to cloud – deploying in minutes with centralized control and no hardware.

Aviatrix for AWS
Aviatrix Cloud Networking solutions empower CloudOps and infrastructure engineers to easily manage cloud network infrastructure and network security. The product is fully integrated with GCP IAAS Networking Layer to enable scaling of their Hybrid or All-in-Cloud environments on GCP.

Aviatrix for GCP
Aviatrix radically simplifies cloud networking to make Azure Cloud Services easily consumable. As IT organizations are transforming their traditional datacenters to hybrid cloud environments Aviatrix has become the preferred way to network VNETs in Azure through both dedicated and enhanced ExpressRoute solutions.

Aviatrix for Azure
Aviatrix and Nutanix partner to deliver a joint solution that allows enterprises to automate connectivity between hyperconverged private cloud environments and popular public clouds using Nutanix Calm — creating a unified, secure network available on demand for both public and private clouds.

Aviatrix for Nutanix
Hyatt
Hyatt leverages Aviatrix and Microsoft Azure for faster global expansion and improved end-user experience.
“Aviatrix radically simplified cloud networking and made Azure more easily consumable. The combination of Aviatrix and Azure cloud services has enabled our rapid global expansion plans, vastly improved user experience and signicantly reduced our costs.”

—Art Chernobrov, Manager, Identity & Access, Hyatt

Take a closer look at Aviatrix hybrid cloud solutions.

Simplify Workload Migration with Hybrid Cloud Networking
ANALYST REPORT
BY ENTERPRISE STRATEGY GROUP
Download this free analyst report and learn to solve application migration challenges with Hybrid Cloud Networking.

Quantifying Business Benefits of Aviatrix Hybrid Cloud Networking
WHITE PAPER
Leveraging in-depth customer interviews, this paper identifies use cases enterprises can pursue with the Avaitrix hybrid cloud networking solution.

Next Generation Cloud-Native Networking
WHITE PAPER
Cloud teams are transforming VPC networking — all driven by automation instead of manual interfaces — to take a more strategic approach to cloud connectivity.

Lab Review: Networking Integration with Amazon Web Services — Aviatrix
ANALYST REPORT
BY ENTERPRISE STRATEGY GROUP
This ESG Lab Review documents hands-on testing of the Aviatrix solution and how it integrates with AWS.

CloudSquad™ supports for all things cloud networking.

And yeah, we can migrate you from CSR to Transit Gateway.
Extend your operations team with our networking experts.
New to Transit Gateway? No problem, we’re here to lend you a hand. Don’t let staffing constraints impact your transformation to cloud. Our team will build the AWS, Azure and Google cloud networking use cases you need, and maintain it too.

Get more while spending less.
Our proven technology — deployed in hundreds of customers worldwide — is highly automated. We know how to efficiently apply the automation to your environment. This means you get experienced staff who have seen all the corner cases without paying exorbitant managed services prices.

Become an expert yourself, or not.
We’ll get you trained up to handle your cloud networking operations on your own. Or, you can rely on us to perform ongoing maintenance, configuration and troubleshooting..

NO ONE STANDS BEHIND YOUR CLOUD NETWORK LIKE CLOUDSQUAD
PROVISION
We’ll architect a solution to meet your use case and actually deploy it for you.

CONFIGURE
We’ll understand your business and implement the policies you need on the network.

SECURE
We’ll help you evaluate your security posture and implement best practice policies to minimize risk.

MAINTAIN
When you have additional use cases or add more VPCs, we’ll be there to Implement the required connectivity.

SUPPORT
If a problem occurs or troubleshooting is required, we’ll be available 24 x 7.


Aviatrix CloudSquad™ Service is what you need when:
You understand IP addressing but not clear how to deal with overlapping or conflicting addresses
You need to meet network uptime and availability SLAs for your team
You are struggling with provisioning IPSec tunnels to encrypt data-in-motion
You want better visibility, monitoring and status of your cloud network
You’ve been burned by public cloud limitations on route table entries, IP address filtering and others.
You are challenged dealing with Access Control Lists and/or Security Groups

CloudSquad provides the following:
Cloud Routing Design & Architecture to Meet Your Requirements
Trusted Linking between AWS account(s) and Aviatrix
Provisioning and Configuration of network use cases
Automate the network as code using Terraform or CloudFormation templates
Trouble ticket resolution and remediation
Networking status alerts, analytics and health reports
Compliance reporting (for Internet egress traffic)
Operational training & Dashboard Management

CloudSquad™ supports your single use case deployed in one cloud, or several use cases across a multicloud environment.

Next-Gen Global Transit Network
Simplify connectivity for your growing VPC environment by implementing a Next-Gen Transit Network that is software defined, centrally managed and sanctioned by AWS.

VPC Egress
Security
Control VPC traffic outbound to the Internet with powerful Layer 7 filtering that enables organizations to allow or deny access based on policies using highly available, inline gateways.

Remote
User VPN
Secure remote access for developers, employees and partners to VPCs and cloud services using a cloud native solution based on OpenVPN®.

Multicloud
Peering
Simplify networking between AWS, Azure and GCP by using a native, API-based approach to centrally manage connectivity and eliminate complexity for implementations spanning multiple cloud services.

Encrypted
Peering
Meet corporate and regulatory compliance requirements by encrypting data-in-motion. Using IPsec between any two VPCs, organizations can centrally manage secure peering across accounts and clouds.

Site-to-Cloud
VPN
Quickly create secure connections from on premise datacenters, sites or branch locations to cloud resources using existing on premise hardware and internet infrastructure to minimize costs.

Begin quotationWe wanted to get our architecture design correct. Our new environment (with Aviatrix) now provides a centralized point of control making our user experience much simpler.End quotation

Aviatrix Hybrid Cloud Networking Solutions & Management NaaS

Secure, Automated Routing for the Cloud Era
Orchestrate and manage your VPC infrastructure.


Eliminate network
complexity in the cloud.
Create simplicity.
API-driven automation.
Easy to troubleshoot.
Multi-account and multi-cloud.
Pay-as-you-go pricing.

Centralized
Controller
Networking VPCs doesn’t have to be complex. Take full control of your cloud network. No knowledge of networking command line interfaces (CLIs) needed.

Browser-based, point-and-click management console
Orchestrates AWS Transit Gateway for your AWS VPCs
Aviatrix Gateway instances for direct connect, multicloud, and edge connectivity
Makes complex networking easy for your use cases

Multiple Accounts and Clouds
Get the most out of the public cloud. Most virtual routers are from the datacenter era, forcing you to uniquely build every point-to-point connection. Operate with a network-centric platform for all your cloud accounts and VPCs.

Manage multiple accounts in one place
Network cloud regions from a global view, not point-to-point
Interconnect AWS, Azure, and Google Cloud with the same point & click flow

Visibility and Monitoring
It’s hard to “see” your network in the cloud. Our Controller shows you and informs you when your cloud network has issues.

Get a complete picture of your cloud network
Visualize all connectivity status, performance, and latency in real-time
Call up monitoring, displays and alerts
Make informed VPC connectivity decisions


Security
Handle your part of the cloud Shared Responsibility Model. Achieve your regulatory compliance requirements. Implement VPC network segmentation and isolation to reduce your blast radius.

Easily managed Security Domains (e.g. groups of Dev, Prod, Shared Services VPCs)
VPC connectivity is allowed by Connection Policy
User friendly tags to specify network ranges for your security rules
Easily apply firewall filters based on tags or specific address ranges, protocols, and ports CIDR, protocol and port.
Control outbound traffic from your VPCs with egress filtering
Make audits easier as security policy events (and packets) can be logged to Splunk, SumoLogic, Syslog, ELK and Datadog.
Integration with AWS GuardDuty to block malicious activity automatically at the VPC network level

Automation
Automate your cloud networking by delivering the network as code, rather than as a series of manually configured virtual routers. With Aviatrix, networking functionality easily becomes part of your DevOps stack. Automated networking for everyone. No CCIE. No problem.

Orchestrate your network in the same way as your compute
Leverage DevOps processes using change and revision control
Controller has fully documented REST APIs
Easily leverage our Terraform provider and CloudFormation templates

Troubleshooting
Easily handle your daily calls to fix problems. Usually the network is blamed, even when it’s not the culprit. Quickly determine if networking is the issue. Minimize downtime with faster troubleshooting.

Integrated diagnostic tools for easier troubleshooting
Limited use of Border Gateway Protocol (BGP)
Automated EC2 FlightPath tool helps identify EC2 instance Connectivity problems
Move at the pace of the cloud, not the datacenter networking team

Integrated
Analytics
Drive your cloud networking decisions with intuitive, meaningful, real-time reports. Plug in your modern tool stack for an integrated view of all your infrastructure.

Integrated monitoring, alerting and troubleshooting
API integration with modern cloud tools: Splunk, SumoLogic, Syslog, ELK and Datadog.
Robust API to easily integrate with other systems

Search This Blog