3
SECURE WEB GATEWAY SERVICES For a Wireless Network Service Provider Service: Security OVERVIEW Headquartered in Sunnyvale, California, the Client is a $500mn company and a wired and wireless networking equipment and software provider, developing cloud based Secure web gateway services. The key areas worked upon include: Google cloud enabled IP Sec VPN Gateway Firewall as a services and Centralized Policy management Device Monitoring and Device profiling

Secure Web Gateway Services - ACL Digital · SECURE WEB GATEWAY SERVICES For a Wireless Network Service Provider Service: Security OVERVIEW Headquartered in Sunnyvale, California,

  • Upload
    others

  • View
    10

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Secure Web Gateway Services - ACL Digital · SECURE WEB GATEWAY SERVICES For a Wireless Network Service Provider Service: Security OVERVIEW Headquartered in Sunnyvale, California,

SECURE WEB GATEWAY SERVICES For a Wireless Network Service Provider

Service: Security

OVERVIEWHeadquartered in Sunnyvale, California, the Client is a $500mn company and a wired and wireless networking equipment and software provider, developing cloud based Secure web gateway services.

The key areas worked upon include:

Google cloud enabled IP Sec VPN Gateway

Firewall as a services and Centralized Policy management

Device Monitoring and Device profiling

Page 2: Secure Web Gateway Services - ACL Digital · SECURE WEB GATEWAY SERVICES For a Wireless Network Service Provider Service: Security OVERVIEW Headquartered in Sunnyvale, California,

CHALLENGES

Proprietary content. No content of this document can be reproduced without the prior written agreement of ACL Digital. 2

Enable authentication and authorization for VPN users from Google cloud

Client develops Secure Gateway solution in Google cloud platform and needed secure web gateway services

Establish secure connectivity at small cell location to VPN Gateway at GCP cloud

SOLUTION

Secure IP Sec VPN tunnel between the Small cell locations and GCP 1

Highly available Multi cluster VPN gateway instances at Google Cloud2

Layer 3 IPsec VPN connection establishment for a road warrior scenario3

Auto scaling of Secure Gateway clusters for capacity management4

Management and monitoring of IP Sec VPN tunnels and VNF instances5

Auto discovery of Small cell eNodeB assets and registration5

Solution Overview

Stand alone mode deployment as VMs on Google Public cloud environment

IPsec Fast path can scale from one core to Multiple cores based on the requirement and performance needs

DPDK optimized platform for scale and performance

Location 1 Location 2 Location 3

VPN Client 1

IPsec Tunnel IPsec Tunnel

VPN Client 2 VPN Client 3

SASE PLATFORM

vCPE IPSEC VPN

vFirewall SWG

Firewall

Small Cell eNB

Local DHCP

Firewall

Small Cell eNB

Local DHCP

Firewall

Small Cell eNB

Local DHCP

Page 3: Secure Web Gateway Services - ACL Digital · SECURE WEB GATEWAY SERVICES For a Wireless Network Service Provider Service: Security OVERVIEW Headquartered in Sunnyvale, California,

www.acldigital.com USA | UK | France | India

To know more about how ACL can partner with you to help create Digital Transformation, connect with: [email protected]

ACL Digital is a design led Digital Experience, Product Innovation, Engineering and Enterprise IT offerings leader. From strategy, to design, implementation and management we help accelerate innovation and transform businesses.

ACL Digital is a part of ALTEN group, a leader in technology consulting and engineering services.

Proprietary content. No content of this document can be reproduced without the prior written agreement of ACL Digital.

OUTCOME

Plug and Play configuration of Small Cell eNodeB across the locations

IPsec Fast path for scalability and performance

Porting and Optimization of platform using DPDK

HIGHLIGHTS

Cloud-delivered Secure Web Gateway framework to deploy a future proof, scalable, carrier-grade IPsec VPN Gateway infrastructure

Breakthrough performance on industry standard X86 hardware and as a VNF

Customization of the Secure VPN framework to cater to all the client’s requirements in time