Monday, May 20, 2019

Secure, Automated Routing for the Cloud Era

The AVX Controller and Gateway provide an easy way to setup and manage all your cloud network use cases.

In a few minutes you can subscribe and start building cloud network connections with a browser-based, centralized Aviatrix Controller to easily build your use cases including transit network, VPC egress filtering, user VPN and more. With Aviatrix, you pay as you go and can include the charges on the same metered, usage-based monthly billing as your AWS bill.

The Aviatrix AVX Software-Defined Cloud Router establishes an abstraction layer between the public cloud provider’s networking primitives and the application to simplify the creation of logical cloud networks and services for hybrid connectivity, data security, multicloud connectivity, monitoring and troubleshooting. The solution consists of two components: Aviatrix Controller; and the Aviatrix Gateways, all of which are deployed in your VPCs or on-premises environment.

Aviatrix Components
The Aviatrix solution is based on the AVX Controller which orchestrates and manages the cloud network. AVX Controller seamlessly blends native components like Transit Gateways and instance-based components like AVX Gateways. The AVX Gateways can be deployed for extending your network in the cloud, to multiple clouds, and to on-premises environments.
AVX Controller
The AVX Controller is the central orchestration and management console. The Controller centralizes cloud network operations for the cloud and to the edge of on-premises sites. It is the single pane of glass for secure networking and compliance, using dynamic route propagation, visualization, monitoring and troubleshooting.

Benefits of the AVX Controller include:

Single pane of glass for orchestration and automation
Central orchestration and provisioning
Extensive access logging and monitoring for compliance and audit
Multi-region, multi-cloud encrypted peering
Flexible Pay-As-You-Go licensing, billed to your AWS Account
AVX Gateway
The AVX Gateway is a cloud scale out and load balanced solution that allows direct VPN access to VPCs. Built for cloud deployments with multiple VPCs/VNets, the Gateway is architected to support a distributed cloud-based deployment across multiple regions. It can be installed on-premises or in the cloud to connect, manage, and secure cloud networks.

Benefits of the AVX Gateway include:

Multi-region, multi-cloud encrypted peering
Scale-out cloud VPN that auto scales to users and load
Multifactor authentication—Active Directory/LDAP, DUO, Google and Okta
User profile-based access and consistent security policies
Deployed on-prem ESX/HyperV/ KVM or in AWS, Azure, and Google
Environmental stamping to create cloud networks at scale

Connecting your customers to cloud-hosted apps.
Setting up dedicated private IP addressing on the per VPC basis poses many design and access constraints. Planning, maintaining, and providing access to hundreds or thousands of customer VPCs could become an impossible task for CloudOps and Network Planning teams.
Enterprise apps are increasingly being hosted in the cloud from organizations such as Informatica, SAP and others. These ISVs are now leveraging many of the public cloud network, compute, and storage services for global reach and rapid scaling. Their enterprise customers require dedicated single tenant stacks for data privacy and loss prevention without compromising access and security.

Public cloud providers such as AWS offer networking services such as VPC (Virtual Public Cloud) for creating private logically isolated network environments for segmenting the cloud and launching resources and applications with complete control over the IP addressing and dedicated access.

Using VPCs to isolate customer dedicated single tenant applications stacks is now becoming the new deployment architectural paradigm. While customer dedicated VPCs solve for many of the requirements posed by enterprises for data isolation, leakage, security and access, it also creates numerous challenges for CloudOps and Productions engineering teams to setup, scale and maintain the customer dedicated VPCs.

THE AVIATRIX SOLUTION
Secure Access to Cloud-hosted Applications
Aviatrix has a feature called Environmental Stamping, which takes advantage of the unique nature of Virtual Private Clouds and offers a deployment architecture that is secure, identical, and infinitely repeatable. It helps Cloud hosted app providers to automate on-boarding of networks and customers by avoiding repeat tasks of cloud operations and production engineers.

Environmental Stamping provides a deployment solution that lets you create identical environments with identical or overlapping VPC CIDRs, instances and security policies. Yet it allows you to access instances in VPCs seamlessly and securely.

No comments:

Post a Comment

Search This Blog