IP Network Security

“With the technology of Juniper Networks and the knowhow of Cypress Consulting we now have a reliable, high-performance network, operational simplicity with central management and control, and a clear growth path which gives us full confidence that wherever the business takes us, our network will follow.”

Overview

For our customer, which specializes in advanced network and cybersecurity solutions, helping organizations protect their critical network infrastructure from new and advanced threats. Our customer  provides a range of managed services, professional services, and software development solutions.

Business Challenge

Since no two organizations are alike, our customer found itself having to build custom solutions for clients. This was taxing, and the company wanted to find a way to standardize processes and automate solutions to reduce time and effort while giving customers better than a one-size-fits-all solution.

Technology Solution

To help its customers thwart malware and advanced threats, our customer leverages Juniper’s high-performance, scalable, and intelligent security solutions, including Juniper Networks® Spotlight Secure, vSRX Services Gateway, SRX Series Services Gateways, and Junos® Space Security Director. With Juniper’s advanced security solutions and the skilled people of Cypress Consulting, our customer  can provide their customers with rapid, coordinated protection against advanced threats from its network operations centers.

Business Results

Juniper’s powerful, open, scalable, and intelligent security solution and the excellent services of Cypress Consulting has given our customer the foundation it needs to provide an agile response to the rising volume and sophistication of cyberthreats.

Business Challenge

Customer requested a scalable, agile and flexible automation solution for generating network wide configurations as well as deployment of these configuration for more than 1500 juniper devices (MX/SRX routers and firewalls) in a green field network environment.

Technology Solution

Cypress Consulting helped the customer create modular device configuration templates based on device functionality using the modern and designer-friendly templating language Jinja2 and used Python scripts to automate the generation of these configuration. In addition, Cypress Consulting provided an automation solution for the rollout of these configurations, performing health and compliance checks using Ansible and Jsnapy tools once the provided configurations were deployed.

Business Results

The following goals were achieved by customer as the result of using the automation solution provided by Cypress:

  • Agility and flexibility: By using configuration automation tools provided by Cypress, any changes to network topology or design were applied to all affected devices in an automated way which decreased network downtime usually caused by operator errors. Configuration changes could be applied in a control manner using Ansible playbooks automating repetitive tasks that generally were very labor intensive.
  • Cost savings: Using automation helped customer achieve their deployment timelines as well as save on operational expenses by 50% due to less amount of manual labor required to perform the configuration and roll-out tasks.

A large, low-latency connectivity provider that also provides IP address and routing management services. As customer’s traffic increased, the company sought a way to improve rerouting performance if a link were to fail.

Business Challenge

Customers demand high levels of stability and rapid convergence at an affordable price. Under the weight of business growth, network performance was straining to keep pace. To maintain its low-latency performance, our customer needed quicker routing table convergence, network automation, and a simpler way to implement IPv6 solutions.

Technology Solution

The customer installed vMX virtual routing from Juniper Networks. Cypress Consulting did the design and implementation. The carrier-grade vMX router has separate control, forwarding, and management planes and runs the Juniper Networks Junos® operating system on standard servers using x86 chipsets. The customer runs the vMX on an open-source hypervisor supported on a dedicated bare-metal server running the Linux Ubuntu operating system.

Business Results

Now the customer can converge a full routing table in 3 to 4 seconds, improving performance such that it is noticeable by customers. The customer reports even faster convergence than with a dedicated hardware system, because it can scale routing table convergence independently from the underlying hardware platform.

Our customer set out to build a scalable, agile cloud data center solution to help clients move quickly to public or private clouds.

Overview

Our Customer delivers highly-efficient private cloud infrastructure with a patented cloud operating system, a converged infrastructure fabric, a cloud resource management tool, and a green power and cooling system. With the solution our customer provides, service provider, enterprise, and public-sector customers can move to cloud services faster and at a lower cost.

Business Challenge

The goal was to deploy a flat network architecture that ensured a greatly simplified and extremely fast data path, provided any-to-any connectivity, minimized latency, eliminated congestion, and ensured optimal network performance with a powerful, easy to implement, scalable, and cost-effective solution.

Business Solution

Juniper’s MetaFabric™ Architecture is the foundation of customers converged infrastructure fabric. Delivered through a combination of high-performance switching, routing, and security platforms including EX Series Switches, SRX Series Services Gateways, and Junos Space, this solution enables a simple, open, and smart data center that accelerates the deployment and delivery of applications within and across multiple sites and clouds.

Business Results

With Juniper at the core of its cloud-based data centers and the excellent services of Cypress Consulting, our customer can provide a quick migration to the cloud, improving client confidence in cloud computing through secure and open MetaFabric architecture. Automation has yielded faster service delivery, greater agility, and significant cost savings.

“We were familiar with the capabilities of the Juniper routers acting as BGP route reflectors (RRs), and once we’d seen the virtual RR in the lab, we decided it was exactly what we needed in order to cut costs and speed up our deployment times. Cypress Consulting helped us with the design and implementation of the vRR as well the routing design that vRRs required. Cypress enabled us to access all the features and the stability of the Junos operating system in a state-of-the-art virtual package.”

Business Challenge

Customer demanded a new cost effective, scalable solution to scale their existing physical route reflectors running Junos operating system.

Technology Solution

Cypress Consulting examined multiple available control plane only solutions in the market on behalf of the customer and recommended Juniper’s vRR solution.

The virtual Route Reflector (vRR) feature allowed the client to implement route reflector capability using a general purpose virtual machine that could be run on a 64-bit Intel-based blade server or appliance. Because a route reflector works in the control plane, it could run completely in a virtualized environment. A virtual route reflector on an Intel-based blade server or appliance works the same as a route reflector on a router, providing a scalable alternative to full mesh internal BGP peering. The vRR solution is very lightweight and can be deployed in a very little memory space. Since the solution is completely virtual based on KVM virtualization, the deployment and scaling of the solution was fully automated.

Business Results

Customer reports the following results as a direct result of the successful implementation of the vRR project:

– Scalability: By implementing the vRR solution, customer gained scalability improvements and was able to implement virtual route reflectors at multiple locations in the network quickly and in a cost effective manner.

– Faster and more flexible deployment: Through installing the vRR feature on an Intel servers and by using open source tools customer reduced software and router maintenance costs.

– Space savings: Hardware-based route reflectors required central office space. The vRR was enabled on an existing server infrastructure in the Telco’s data centers, which saved space as well as reducing power and cooling costs.