Download as pdf or txt
Download as pdf or txt
You are on page 1of 133

Arista Cognitive Campus

Terry Jenkins
Senior Training Manager
terryjenkins@arista.com

Confidential. Copyright © Arista 2019. All rights reserved.


Agenda
• Campus Architecture
• Building Blocks of a Cognitive Campus
- Leaf-Spine in the Campus
- PoE
- WiFi for Campus
- Campus Platforms
- WiFi Security
- CloudVision for Campus
• Managing the Customer Conversation
- Identifying Opportunities
- Competitive Comparision
- Handling Objections
• Design Resources
• Arista TAC and Professional Services
2 Confidential. Copyright © Arista 2019. All rights reserved.
Questions and Follow up

• Send me an email at terryjenkins@arista.com


• Include your name, email and phone contact info
• Include partner name, your location and your city/territory
• If customer specific include customer name

3 Confidential. Copyright © Arista 2019. All rights reserved.


Campus Architectures

Confidential. Copyright © Arista 2019. All rights reserved.


The Arista Way
Focus on solving our customer’s problems while maintaining the highest
level of quality in the market.
---------------
What are the problems our customers are seeing in the Campus?
• Device Count and Traffic Explosions
- Rapid increase in wireless connections, smartphone and wearables, IoT
- Increase began 10 years ago and shows no signs of slowing
• Traffic pattern changes
- No longer simple client to server based
- Voice and video now merged into data (Skype, FaceTime, WiFi assist cell phone calls, Zoom, etc.)
• Highly Mobile Workforce
- Campus no longer houses wired users, users are on 3-4 devices and constantly moving
- Need for large, stable Layer 2 domains for roaming and connectivity
• Need for highly automated, consistent and secure infrastructure
- Ability to Scale-out while reducing OPEX costs
- More change with less FTE and outage expenses

5 Confidential. Copyright © Arista 2019. All rights reserved.


This is NOT a new problem
• These business drivers are not new, they were essentially the same root drivers for
datacenter and cloud 10 years ago.

• Arista solved these issues for our customers there, now we are bringing in this
expertise and experience into the Campus and Enterprise networks.

• 10 years ago Leaf - Spine was new, today we are able to solve these problems in a
new area of the network with a vast amount of lessons learned.

• If the major Cloud Titans solve these problems with Arista you can feel confident
we can help you solve them with your customers.

Cloud-Grade: We are not turning the campus into a cloud we are bringing lessons
learned from the cloud into your campus

6 Confidential. Copyright © Arista 2019. All rights reserved.


Cloud Networking Evolution from Legacy
Simplified for Simplified for
Complex Hierarchy Unified Cloud Networking Places In Cloud
2000 Era 2015+ 2020+
Internet DCI
Campus
Internet/ Spline®
DCI

Spine
Optical Secure Segmentation
Leaf Cognitive Actions
Legacy Core
Routing Device & Diversity-driven
Core
Switching Open Standards-based, Scale
Controlled & Uniform
Distribution
Workloads, VMS, Containers Any Edge for Diverse Devices

Access

Generic 3 Tier Model Datacenter Focus Wholistic Network Focus

Improving Scale while Reducing OpEx


7 Confidential. Copyright © Arista 2019. All rights reserved.
Cloud2020 Vision: Connecting Any Workload, Any Office

Enterprise
DC1
• Public Cloud
Azure
West

Amazon
• Private Cloud/DC
East
Amazon
West
• Colo/Exchanges

• Any Office, Branch


Azure
Enterprise
DC2
East
• Cognitive Campus

Equinix
Private Cloud
Cloud Exchange

Any Site

Confidential. Copyright © Arista 2019. All rights reserved.


From Silo Networks to Places in The Cloud

We are here! Lets get here!

Multi-Silo DC Island

Branch / Campus Island Cloud Island

DMZ Island

Confidential. Copyright © Arista 2019. All rights reserved.


Arista Guiding Principles
Not just a Vision its how we build, deploy and support

Universal Simple Open Programmable Visible

No unnecessary Standards based


Common complexity Automation... Full state
architecture your way telemetry
Non-proprietary
Single operating Easy data
system Data driven capture/flow
Any application Adapts to new cognitive
requirements information
Flexible hardware networking
Relevant
Scale-out from choices No vendor performance
small to huge Easy to
lock-in use/access APIs metrics

Confidential. Copyright © Arista 2019. All rights reserved.


We are not a ‘me too’ vendor.
We only build and recommend solutions that meet our guiding principles.

Guiding Principle Competitors’ Campus Solutions

Controllers Stacking 3-Tier Design


Is it…
…Universal? Q Q Q
…Simple? Q ? Q
…Open? Q Q ?
…Programmable? ? ? Q
…Visible? Q ? ?
11 Confidential. Copyright © Arista 2019. All rights reserved.
Arista Architectural Components & Building Blocks
Foundation Technologies Core Building Blocks
• Extensible Operating System • Layer 3 Leaf & Spine Topologies
• CloudVision • Standard Routing Protocols (MP-BGP etc.)
• Streaming Telemetry • Multi-chassis Link AGgregation (MLAG)
• Merchant Silicon • Virtual Address Resolution Protocol (vARP)
• Open, Standards based protocols • Virtual eXtensible Local Area Network (VXLAN)
• Application Programming Interfaces • Ethernet Virtual Private Networks (EVPN)

Edge Network WAN Campus Data Center Cloud Native Private Cloud Public Cloud
Network Network

Confidential. Copyright © Arista 2019. All rights reserved.


Operational Benefits of Consistent Architecture
Ops teams can implement a single

Public Cloud
Edge Routing
Data Center

operating model and ITIL runbook for:

Campus
• Upgrade procedures
… • Certification efforts
• Lifecycle management
• Vulnerability management
EOS + CloudVision • Network designs
Operating Model
• Troubleshooting approaches
• Automation techniques
Network Ops
Cloud Ops
NPM/APM

• Feature discrepancies
DevOps

IAM

• Management platforms
• Ecosystem integration
• And more…

Confidential. Copyright © Arista 2019. All rights reserved.


TCO Savings with a Programmable Universal Architecture
Legacy Arista
Environment Environment
2 hours/switch Change Control window ~10 minutes

2 Weeks Time to install new OS ~10 minutes

$32K for FTE 1 Month Full DC Deployment 8 Hours $1K for FTE

2 Months Bug Scrubs Automated via CloudVision

10 engineers ($3.5M) Ongoing Network FTE 3 engineers ($1.1M)

Operating Arista is 1/3 the cost of competing solutions


Source: Arista Customer

Confidential. Copyright © Arista 2019. All rights reserved.


Campus to Cloud with Arista’s UCN
Cognitive Management Plane

Orchestration Operations Telemetry In-house Tools Cognitive Management Plane


& Provisioning & Maintenance & Analytics & 3rd party integration

End to End Telemetry

Universal EOS

UCN Blueprint Universal Overlay


Campus
End to End Segmentation

Consistent Operations

Campus
Services Any Application Readiness
Secure Campus, Rich Media,
Collaboration, IOT
Physical, Virtual, Container Workloads
Corporate WAN
Public Networks Distributed Storage, Security and VNFs
& Branch

Confidential. Copyright © Arista 2019. All rights reserved.


Arista UCN for Campus Overview

The power of EOS and CloudVision across the PICs


16 Confidential. Copyright © Arista 2019. All rights reserved.
Building Blocks for a Cognitive Campus

17 Confidential. Copyright © Arista 2019. All rights reserved.


Leaf Spine in Campus

Confidential. Copyright © Arista 2019. All rights reserved.


Leaf and Spine

• Its not a radical change


- Many customers already leverage a collapsed core and TOR instead of 3-Tier
• More efficient
- Equal Cost paths with MLAG/ECMP - NO Layer 2 Loops or STP convergence
issues
• Ability to automate and manage holistically
- Treat networking as a single system rather than a hop-by-hop solution
• More predictable and scalable
- Scale-out vs Scale-up
- Choose the right product for the right size
- Single EOS image
- Automation at every level

19 Confidential. Copyright © Arista 2019. All rights reserved.


The Universal Cloud Network (UCN)

Layer 2 Leaf + Spine Layer 3 Leaf + Spine


(Open Standards Protocols)
(Open Standards Protocols)

Consistent Leaf Design Consistent Leaf Design - Simple


- Scalable
- Standards Based
Solution
• not a series of
architectures
VTEP VTEP VTEP VTEP VTEP VTEP

20 Confidential. Copyright © Arista 2019. All rights reserved.


Arista Solutions Overview – L2LS
L2LS MLAG Spine Design
- Ease of Workload
Mobility
- Segmentation via
Layer 2 Leaf + Spine VLANs
(Open Standards Protocols)
- Simple design to
provision and manage
WAN - All Active links
MLAG
Consistent Leaf Design IoT - Leverage Standards
based protocols
Data Center Leaf
- Consistent Leaf designs
Routing Leaf
Campus Spline
(Dual-Homed) (Cloud/WAN) - Deployed and Managed
by CloudVision
21 Confidential. Copyright © Arista 2019. All rights reserved.
Arista Solutions Overview – L3LS
L3LS ECMP Spine Design
- Spine redundancy
- Grow/scale from 2 to
128 way
Layer 3 Leaf + Spine - Minimal fault domains
(Open Standards Protocols)
- Deterministic failover
and simpler
troubleshooting
WAN - Readily available
Consistent
MLAG Leaf Design operational expertise
IoT - Consistent Leaf Designs
- Deployed and Managed
Data Center Leaf Routing Leaf by CloudVision
Campus Spline
(Dual-Homed) (Cloud/WAN)

22 Confidential. Copyright © Arista 2019. All rights reserved.


L3LS-Virtualized
L3LS-V Use Case
• Network Based Overlay
• Physical Virtual Tunnel
End Points (VTEP’s)
• Overlay network with
underlay integration
• Enable Macro-
Segmentation Services
with VXLAN
VTEP VTEP VTEP VTEP VTEP VTEP • CloudVision
Data Center Routing Cognitive Campus Orchestration,
Management, and
Learning
IoT

23 Confidential. Copyright © Arista 2019. All rights reserved.


AnyCloud Design
AnyCloud Use Case
• Consistent OS between
Public Cloud Data Center
Public Cloud Providers
• Advanced Telemetry
and Orchestration with
CloudTracer
Customer On-Premise Campus Cognitive Management Plane • Horizontal Scale with
throughput needs
• Leverages the same
EOS binary and
Campus Spline Campus Spline Campus Spline Campus Spline capability
L3 ECMP L2 MLAG L3 ECMP L2 MLAG

IoT IoT
IoT IoT

PoE PoE PoE PoE

24 Confidential. Copyright © Arista 2019. All rights reserved.


Consistent Leaf Designs
Dual-Homed Leaf Single-Homed Leaf Storage Leaf Services Leaf
Deep
Buffers

MLAG MLAG MLAG


Firewalls
NAS
Services
SLB
IP Storage
WAAS

Internet Transit/DMZ Management Leaf IP Peering Legacy DC Interconnect

MLAG
MLAG
Web Servers

MLAG
External
Network MPLS Metro A CORE
App Delivery
Controllers
CloudVision
Firewalls

MLAG DHCP

ZTP/ZTR
Existing
Telemetry Network

2525 Confidential. Copyright © Arista 2019. All rights reserved.


Consistent Leaf Designs

Campus Spline Campus Spline

Access L2 MLAG L3 ECMP


Points

CloudVision

DHCP

ZTP/ZTR

PoE PoE
Telemetry

VDI Mobile Desktop

26 Confidential. Copyright © Arista 2019. All rights reserved.


Stacking Approaches

1990s Era Stacking Arista

Disruptive upgrades, stack members must be Hitless and non-disruptive expansion, no model/vendor
Expansion same vendor & model, co-located members limitations, members up to 10km apart

Merged control planes provide aggregate uplinks MLAG for L2 and ECMP for n-way L3. No Spanning Tree.
Uplinks to the Distribution Distributed control plane highly reliable.

Split brain risk, merged fate-sharing control Standards-based and highly scalable. Proven
Maintainability planes architecture in largest data centers

Single point management for just the stack CloudVision for Enterprise-wide management: change
Management management, compliance, visibility, upgrades

A modern cognitive approach to wiring closet design


27 Confidential. Copyright © Arista 2019. All rights reserved.
Comparing Wiring Closet Designs
2 x 25G
2 x 25G 2 x 25G

StackWise 480
720XP-48ZC2
2 x 25G

720XP-48ZC2
720XP-48Y6
2 x 25G

Example BOM C9300-48UXM with NM-2Y modules x 8 CCS-720XP-48ZC2 x 8

384 PoE ports + 12 1/10/25G ports 384 PoE ports + 16 1/10/25G ports + 12 QSFP100
Host facing ports
(288 100M - 2.5G, 96 100M - 5G) (320 100M - 2.5G, 64 100M - 5G)

Fabric Capacity Actual / 120Gbps / 240-480Gbps 350Gbps / 700Gbps


Aggregate Math (Proprietary Ring - Unpredictable)

Typical Uplink Capacity 100G (2 x 25G per uplink switch) 100G (2 x 25G per uplink switch)

Distance between any 2 0.5-3m (using proprietary stack) 0.5-30m (DAC/AOC) / 70m - 10km with SFP
connected devices

28 Confidential. Copyright © Arista 2019. All rights reserved.


Constructing the Enterprise Universal Cloud Network
Foundation - Leaf & Spine for the East-West traffic workflows

Industry consensus on the right physical


topology… coming from large cloud providers
• Simplification
• Physical Architecture = Clos AKA “Leaf & Spine”
• Consistent any-to-any latency/throughput
• Consistent performance for all nodes
• Fully non-blocking architecture if required
• Simple scaling of new PoDs
• Foundation for automation
• Total hardware flexibility
• Fully standards based – interop with anyone!

The very nature of an IP fabric is based on equal cost multipath (ECMP) and control plane stability

Confidential. Copyright © Arista 2019. All rights reserved.


Constructing the Enterprise Universal Cloud Network
Flexible - Full freedom to choose switching platform

Spine Options:
• Modular or fixed configuration switches
• Select for buffering, latency, port count, link speed etc.

Leaf Options:
• Modular or fixed configuration switches
• Select for buffering, latency, port count & link speed
- Large buffers ideal for IP storage, big data, edge nodes etc.
- PoE capable switches for the campus etc.
• Comprehensive choice of media types – UTP, DAC,
optical etc.

Confidential. Copyright © Arista 2019. All rights reserved.


Constructing the Enterprise Universal Cloud Network
Flexible - Full freedom to choose interconnections
Interconnect Options:
• Scale bandwidth as required – 10-400Gbps (and all
stops in between!)
• Selectively scale bandwidth for “hot-spots” e.g.
Storage, edge or services pods
• Extensive range of standards based fibre optic
transceivers and cable types, including:
- Single mode fibre transceivers
- Duplex and parallel multi-mode fibre transceivers
- Universal and Bi-Directional Transceivers
- Active Optical Cables (AOC)
- Even DAC!
• Use ECMP to scale bandwidth as required

Confidential. Copyright © Arista 2019. All rights reserved.


Constructing the Enterprise Universal Cloud Network
Scalable - Build a spine for the future – add leaves as needed
Build a spine fit for purpose:
• Scale spine “width” as require – odd or even!
• Factor in desired level of redundancy
• Arista ECMP supports up to 128-way
• Modular chassis for simple and rapid expansion of
capacity and full interface flexibility

Easily add and deploy Leaves:


• Automate with CV, ZTP or DevOps tools
• At deployment, systematically verify and
ensure compliance with CV

Confidential. Copyright © Arista 2019. All rights reserved.


Constructing the Enterprise Universal Cloud Network
High Availability - Delivering a robust, standards based DC fabric
Layer 3 Options:
• Use standards based routing protocol, e.g.
• Use eBGP for optimal efficiency, flexibility, stability and
fault recovery…
- Single private spine AS
- Common* or POD specific private leaf AS (*allow-as-in)
- Automate addition of new leaf switches with BGP dynamic
neighbors (e.g. bgp listen)
- Maintenance mode (using standard GSHUT community) for
graceful removal and insertion of port, module or switch
• Use iBGP or IGP (OSPF, IS-IS) if your skills dictate
• Granular and wide ECMP for efficient load-balancing
• No vendor or architecture lock-in! 100% standards
based design.

Confidential. Copyright © Arista 2019. All rights reserved.


Constructing the Enterprise Universal Cloud Network
Leaf High Availability - Delivering robust, standards based access

Leaf High Availability:


• Use standards based Multi-chassis Link Aggregation
(MLAG)
- Active-active server connectivity and high availability
- LACP based and fully interoperable
- Automatic fallback to Spanning Tree to avoid split-brain
loops
• First Hop Router Redundancy (FHRP options)
- Virtual ARP (vARP) for standards based active-active load-
balancing
- VRRP if you prefer
• MLAG ISSU or Smart SSU for hitless upgrades

Confidential. Copyright © Arista 2019. All rights reserved.


Campus POD (Access) Design
Flexible L2 and L3 Standards-based
Campus Spline migration from legacy
options

Open-standard
MLAG (LACP)

Small scale starting point with


two switches with up 96 Scale out with MLAG-
copper ports (today) and in attached switches.
the future 192 ports within a Standards-based migration
pair of switches path or expansion

Scale-out Campus POD with open standards


35 Confidential. Copyright © Arista 2019. All rights reserved.
Campus POD Design Elements
Features of Campus POD Design
• Open standard approach - eases migration and
no lock-in scale out (possible to have third party
access nodes)
• MLAG used to provide easy scale-out and
active/active upstream connectivity
• Uplinks to Campus Spline with two or more links
• MLAG combined with VARP for anycast gateway
• Optional EVPN VXLAN for secure segmentation
or tunneling for guest traffic
• Single-homed or dual-homed endpoint
connectivity
• Simple VLAN configuration for access ports
across Campus POD
• Extend access VLANs across Campus PODs
with VXLAN
• Layer 3 connectivity within the Campus POD is
an option. This may introduce additional
complexity with routing and VXLAN configuration
(could be automated from CloudVision though)

36 Confidential. Copyright © Arista 2019. All rights reserved.


Campus POD Layer 3 Designs

37 Confidential. Copyright © Arista 2019. All rights reserved.


End-to-End Secure Segmentation

Standards-based segmentation from Campus to DC to Public Cloud


38 Confidential. Copyright © Arista 2019. All rights reserved.
Power Over Ethernet (POE)

Confidential. Copyright © Arista 2019. All rights reserved.


Network Convergence Driving Next Wave of Network Needs
Edge Access Aggregation/Core

2.5G/5G 40G/100G

3- Tier architecture to 2-Tier architecture


Confidential. Copyright © Arista 2019. All rights reserved.
Arista X-Series Family

7300X3 7050X3 720XP 720XP


10G - 100G Spine 10G – 100G Leaf PoE 2.5G - Leaf PoE 1G - Leaf
2018 2019

Trident-3 X7 X5 X3 X2

200G to 3.2T 2018


3.2T 2T 540G 200G
1G to 100G – From Wiring Closet to Spine – Flexible Configurations
High Performance – Consistent Features – Enhancements & Innovations
Single EOS Image – Comprehensive L2/L3 Solution – Open, Programmable, Resilient

Confidential. Copyright © Arista 2019. All rights reserved.


Campus Spline - Arista X3 Series:

Flow Tracer

Dynamic Path Selection

7300X3 7050X3
Dynamic Shared Buffer
High Density Modular Fixed 100G & 25G
100G/25G for Campus Spline for Campus Spline Smart Software Upgrade
Two Chassis: 32 x 100G and 48 x 25G with
4 and 8 slot 100G uplinks
with 50Tbps Fabric Unified Forwarding Table
10G to 100G port flexibility
Linecards:
Industry-leading Power
32x100G QSFP Remote Monitoring
Efficiency
48xSFP-25G & 4x100G
Large scale L2/L3 Tables
Macro Segmentation

Single EOS image with CloudVision & Cognitive Features


Confidential. Copyright © Arista 2019. All rights reserved.
M

Cognitive Campus Spline Enhancements

Flow Tracer Trace flows through the network and detect anomalies

Dynamic Path Selection Self-correcting hashing based on real-time traffic

Dynamic Shared Buffer Voice, Video and Data to IOT, WLAN and Sensors

Smart Software Upgrade EOS SSU for hitless operations

Unified Forwarding Table Access Edge, L2/L3 Spine, Balanced deployments

Remote Monitoring GRE Encapsulated Mirroring to Server/Tools in DC

Macro Segmentation Dynamic security policy insertion

Confidential. Copyright © Arista 2019. All rights reserved.


Why Are Arista Campus Platforms a Better Choice?
Results in lower power consumption, faster
Highest Density SOC Design convergence, higher reliability and MTBFs

Trident3 family offers sufficient scale for Larger tables and 128-way ECMP - suitable for
DC and Campus use cases all environments not PIN-point use-cases

No hard partitioning of buffers across pipes on


All Platforms offer Fully Shared Buffering the ASIC or low density chips

Real state and packet streaming


No reliance on proprietary streaming models
telemetry

A single operating system to certify One image across the whole Campus and DC

Confidential. Copyright © Arista 2019. All rights reserved.


PoE Overview

● Multiple IEEE standards over the years:


○ 802.3af-2003 - up to 15 W per port
○ 802.3at-2009 - up to 30 W per port
○ 802.3bt-2018 - up to 90 W per port (we only support up to 60 W)
○ Each standard is backwards-compatible with the previous standards

● The power limits mentioned are specified at the switch (power sourcing
equipment or PSE)
○ Cat 3 or better cable required for 802.3af (up to 15 W)
○ Cat 5 or better cable required for 802.3at and 802.3bt (above 15 W)
○ PoE power is specified for a maximum cable length of 100 m

45 Confidential. Copyright © Arista 2019. All rights reserved.


Introducing Arista Campus Switches
• 802.3at & 802.3bt standards-based PoE
-se ries Ports
• Combinations of 30W & 60W ports Z dge
G E
• Multi-Gigabit Ethernet (2.5/5G) ports &5
2.5G
• Redundant PSU & Fans
• Rich EOS Automation & Telemetry
720XP-48ZC2
40 10M-2.5G PoE Copper Ports
8 100M-5G PoE Copper Ports
ries
Y-se Ports
4 25G SFP25
720XP-24ZY4
dge
2 100G QSFP100
1G E 16 100M-2.5G PoE Copper Ports
8 100M-5G PoE Copper Ports
4 25G SFP25
720XP-48Y6
48 10M-1G PoE Copper Ports
6 25G SFP25
720XP-24Y6
24 10M-1G PoE Copper Ports
6 25G SFP25

1RU PoE Systems for Campus Access


Confidential. Copyright © Arista 2019. All rights reserved.
Arista 720XP Series – 10M-5G Systems
mGig PoE Campus Access Layer
• High Performance mGig platforms with campus features
- High Performance with up to 560Gbps throughput
- Real-time flow telemetry with IPFIX
- Shared 8MB Smart-buffer and monitoring with LANZ
40 10M-2.5G 30W PoE+ Ports
• Campus Access Optimized 8 100M-5G 60W 4PPoE Ports
- Wiring closet access layer switching 4 25G 25G SFP
- PoE+ (802.3at) & 4PPoE (802.3bt) standards-based PoE up to 60W 2 100G 100G QSFP
- Redundant fans and power supplies
- Default single PSU, optional additional PSU for redundancy or
increased power budget

• Campus networking scalability


- OSPF, BGP, Multicast, MLAG, VXLAN & EVPN
- 802.1X Enhancements and MAC Authentication Bypass
16 100M-2.5G PoE 30W PoE+ Ports
8 100M-5G PoE 60W 4PPoE Ports
- PoE system controls
4 25G 25G SFP

Consistent certification, knowledge, sparing, and architecture


Confidential. Copyright © Arista 2019. All rights reserved.
Arista 720XP Series – 10M-1G Systems
Gig PoE Campus Access Layer
• High Performance platforms with campus features
- High Performance with up to 198Gbps throughput
- Real-time flow telemetry with IPFIX
- Shared 8MB Smart-buffer and monitoring with LANZ
48 10M-1G 30W PoE+ Ports
• Campus Access Optimized 6 25G 25G SFP
- Wiring closet access layer switching
- PoE+ (802.3at) standards-based PoE up to 30W
- Redundant fans and power supplies
- Default single PSU, optional additional PSU for redundancy or
increased power budget

• Campus networking scalability


- OSPF, BGP, Multicast, MLAG, VXLAN & EVPN
- 802.1X Enhancements and MAC Authentication Bypass
24 10M-1G 30W PoE+ Ports
6 25G 25G SFP
- PoE system controls
Imagery may change

Consistent certification, knowledge, sparing, and architecture


Confidential. Copyright © Arista 2019. All rights reserved.
Port Speed Quick Reference
10M 100M 1G 2.5G 5G 10G 25G 40G 100G
Y Series
1G RJ45 ports NA NA
30W PoE

Y Series
2.5G mGig ports NA NA
Copper

30W PoE

Z Series
2.5G mGig ports NA NA
60W

Z Series
5G mGig ports NA NA
60W

Y and Z Series
SFP NA NA
SFP

QSFP with with


720XP-48ZC2 breakout breakout

* Y series includes: 720XP-48Y6, 720XP-24Y6


* Z series includes: 720XP-48ZC2, 720XP-24ZY4

Confidential. Copyright © Arista 2019. All rights reserved.


Power Options
Product PoE Ports Power Capability Av. Power Per PoE Power Budget Bundled PSU
(802.3at & 2 x PSU Port (W) (x1)***
802.3bt)** (Non-Redundant) w/ 2 x Stock PSU 2 x Stock PSU
(1+1) (Max / 1+1)

CCS-720XP-48ZC2-F* 40 x 30W All ports full stated 16.7W/port 1800 / 800 1050W
8 x 60W power

CCS-720XP-24ZY4-F* 16 x 30W All ports full stated 20.7W/port 1100 / 500 650W
8 x 60W power

CCS-720XP-48Y6-F* 48 x 30W All ports full stated 16.7W/port 1800 / 800 1050W
power

CCS-720XP-24Y6-F* 24 x 30W All ports full stated 20.7W/port 1100 / 500 650W
power
* Front to Rear airflow is the only available configuration due to cooling constraints.
** PoE follows the 802.3bt standard up to Type 3 (60W / 51W at the PD) on 5G ports.
*** Devices ship with a single PSU - PSUs are compatible with all switches. While mixed PSU sizes will operate, matching PSUs are recommended

80+ Platinum Rated power for >90% Efficiency


50 Confidential. Copyright © Arista 2019. All rights reserved.
PoE Devices Architected for High Performance Campus

Low Power Consumption

• 802.3at & 802.3bt standards-based PoE


Redundant Hot-Swap Fans
• Redundant, hot-swap power and cooling supported
• Energy efficient power supplies
Compact 12.5" (31.75cm) deep
• Front-to-back cooling

Optionally Redundant PSUs

AC Power Only

Dual Core CPU & 8GB DRAM

51 Confidential. Copyright
Confidential.
© Arista
Copyright
2019. All©rights
Aristareserved.
2019. All rights reserved.
Power Supplies with PoE for Campus Platforms
Model Number Airflow Input Voltage Default Power Output
Direction Cable *

PWR1021-AC-RED F-to-R Auto-ranging C14-C15 1050W


100-270V AC

PWR-621-AC-RED F-to-R Auto-ranging C14-C15 650W


100-270V AC PSU-XXX-1050W

● Power supplies are hot-swappable


● Mix-and-match of PSU is supported within a single system
● Need to be aware of power budget available to PoE ports
● Note the ‘notched’ C15 connector to support a higher temperature rating
of 120C vs 65C of the regular C13 connectors
Placeholder Image

Notch PSU-XXX-650W
C15
connector * No power cord by default

80+ Platinum Rated power for >90% Efficiency


Confidential. Copyright © Arista 2019. All rights reserved.
Power Budgeting
• Low priority ports are automatically powered off when power drawing
from PoE plus the power consumed by other part of the switch
exceeds the power supplies capacity.

• Happens when one or more power supplies are removed.

• The PoE port should stop sending power to prevent the whole switch
going down.

Confidential. Copyright © Arista 2019. All rights reserved.


PoE Config CLI Commands
• PoE is configured on a per-interface basis and is enabled by default
• In the interface config, the following commands are defined:
• poe [disable]
• [enables] disables poe on a port
• [no] poe limit { class class<0-6> | <0-60> watts }
• Allows the user to define the power class or actual power limit (in watts) on a
port
• Useful when the negotiated class is inaccurate or non-optimal (e.g., PD is
class 4 but only consumes 5 W max)
• The class variant of this command just maps directly to the associated power
limit
• [no] poe legacy detect
• This [disables] enables detection of legacy devices (having a capacitive
signature). This may cause us to think some devices are PDs which are
actually not, which is why this is disabled by default.

Confidential. Copyright © Arista 2019. All rights reserved.


PoE Show Commands

● show poe [interface <intf-range>]


○ Show customer-facing information about the PoE ports
○ Sample output:
bri204#show poe interface ethernet 46
PSE LLDP Power Granted Port
Port Enabled Enabled Limit Power State Class Power Current Voltage Temperature
---- ------- ------- ------ ------- ------- ------ ----- ------- ------- -----------
46 True True 15.40W 15.40W powered class0 1.40W 27.00mA 55.04V 41.25C

Confidential. Copyright © Arista 2019. All rights reserved.


WiFi for Campus

Confidential. Copyright © Arista 2019. All rights reserved.


Is Arista NEW to WiFi?

We announced an acquisition of Mojo Networks last year BUT this does


not mean we are not competitive in the WiFi space with our competitors.

57 Confidential. Copyright © Arista 2019. All rights reserved.


Renowned Best WiFi Security for 10+ Years

#1 32+ Patents
Marketscope for Wireless LAN Intrusion
Prevention Systems

1000+ WIPS
Customers Marketscape

Confidential.Copyright
Confidential. Copyright © Arista
© Arista 2019.
2019. All rights
All rights reserved.
reserved.
Arista Cognitive WiFi Customers
Large Enterprise Distributed Enterprise Education Service Providers & Federal
OEMS

59 Confidential. Copyright © Arista 2019. All rights reserved.


Largest WiFi Deployment in the Industry

• What would be the world’s single, largest and


unified Cloud-managed Wi-Fi network? There is a
very good chance that Reliance Jio’s gigantic pan-
Indian Wi-Fi footprint of 200,000+ access points –
supplied and managed by Arista – is it.

• …it only takes a handful of engineers to manage it


with the aim of delivering the right quality of
experience.

• …One million active clients a day…

• The network is even managed from a single


location, Nadeem Akhtar says. “The resilience is a
result of decoupling the management plane from
https://wifinowevents.com/news-and-blog/arista- the data plane – and of course from the
scaling-cloud-based-cognitive-wi-fi-to-200000- intelligence in the Cloud. It’s equivalent to running
aps-and-beyond/ a network on autopilot,” he says.

60 Confidential. Copyright © Arista 2019. All rights reserved.


Arista Cognitive WiFi
Most Modern and Advanced WiFi Technology Available

Cognitive WiFi™
Born in the cloud

Legacy Controller First Generation Cloud Arista WiFi


• Controller Based • Still Controller Based but moved to • Distributed Control Plane
• Additional components and licensing for
Cloud • Cloud Platform
redundancy • Additional licensing for redundancy • Cognitive WiFi
• 3 Radio APs
• Multiple portals for management • Additional Products for Security
• WIPS (Security)
• Scale by adding layers of controllers and and Analytics
• APIs
even more components • Multiple SKUs to purchase (Cloud
• Additional annual support costs License, AP, Maintenance, Add-on
products)

Confidential. Copyright © Arista 2019. All rights reserved.


The way its always been done

• Numerous Wireless LAN


Controllers
• ALL traffic {Data and Control
Plane} must traverse CAPWAP
tunnel between WLC and AP
- Limited security, traffic
engineering (QoS), etc for traffic
as it traverses CAPWAP. Can
only be done at WLC.
• Sperate OS and commands for
WLC from other platforms in
network.
• HA, roaming, etc all dependent https://www.cisco.com/c/dam/en/us/td/docs/solutions/CVD/Campus/CVD-
on WLC Campus-LAN-WLAN-Design-Guide-2018JAN.pdf

62 Confidential. Copyright © Arista 2019. All rights reserved.


Legacy Data Plane WiFi
Internet • Data Plane has to follow the same
Guest path of the Control Plane
Termination
Wireless • All traffic has to be passed to the
Controller
controller for conversion from
Proprietary 802.11 to 802.3
Tunnel
• Guests, BYOD, all bypass valuable
switches via tunneling
• What about remote locations?
- Deploy a WLC in each location
- Tunnel back to HQ / central location
BYOD Corp Guest

63 Confidential. Copyright © Arista 2019. All rights reserved.


Most Resilient and Scalable Architecture
Management Plane – Centralized
Centrally
Arista Campus Switches Cloud - Provision and Configure Managed
Arista Fixed
Spline
NOT
Centrally
Controlled
Data tunnel
(VxLAN, EoGRE)
Standards Based
Local Security and Traffic
Engineering
Cloud Integration
Arista Modular Point
Spline

Local Network
• NMS
• SIEM
• Syslog
Local VLAN bridging Data Plane - Flexible Control Plane - Distributed

64 Confidential. Copyright © Arista 2019. All rights reserved.


Arista Cognitive WiFi Control-Plane Architecture
Management Plane (Cloud or On-Premises)

CloudVision
Arista Platforms WiFi
720XP (PoE) 7050X3 7300X3

Cloud Integration
Point

Data tunnel

Local Network
Local VLAN • NMS
bridging and breakout • SIEM
• Syslog

Data Plane - Flexible Control Plane - Distributed

65 Confidential. Copyright © Arista 2019. All rights reserved.


Arista WiFi Data Plane
• VXLAN or EoGRE support from the AP,
Internet
optionally to Arista switches
Guest
Termination • Send non-Corp traffic to a remote destination
without WLC
• APs send 802.3 frames or VXLAN based on
requirement
Standard VxLAN or
EoGRE Tunnel - VLAN forwarding happens closest to the AP
- Or sent in VXLAN for service elsewhere
VLAN - Tunnel over legacy devices
Forwarding • Standard protocols, easy to understand and
troubleshoot
• EVPN deals with learning, ARP suppression,
etc.
• Removes complex “L3 roaming”
Guest BYOD Corp • Easily migrate to Arista WiFi in hardware via
VXLAN
66 Confidential. Copyright © Arista 2019. All rights reserved.
Massive Scale @ Lower Cost – Even Across 1M APs

53 12
Racks

200
Controllers

Zero
Cisco Prime
Appliances

100 Zero

200 Zero
Appliances
MSE

Small Central Team


Many field teams needed to support
Team

distributed physical deployments

67 Confidential. Copyright © Arista 2019. All rights reserved.


User Experience is What Matters Most!

Can your
network
figure it out?

Other Client And then fix it


automatically?

Access Point ! Good Experience


or
☹ Bad Experience?

68 Confidential. Copyright © Arista 2019. All rights reserved.


Arista Access Point Family
WiFi6

O-105 / O-105E C-100 C-110 C-130 / C-130E W-118 C-250


• 2x2:2 MU-MIMO • 4x4:4 MU-MIMO
• 2x2:2 MU-MIMO • 2x2:2 MU-MIMO • WiFi6 8x8:8 5GHz,
• 2x2:2 MIMO 802.11ac 802.11ac 802.11ac
802.11ac • Wave 2 4x4:4 2.4GHZ radios
• Wave 2 • Wave 2 • Wave 2
• Wave 2 • Tri-Radio Wallplate • Tri-Radio
• Tri-Radio • Tri-Radio

1x GigE Uplink
2x 2.5 GigE Uplink with
1x Gigabit Ethernet Port 1 x Gigabit Ethernet Ports 1 x Gigabit Ethernet Ports 2x Gigabit Ethernet Ports 3x GigE Wired ports
power failover
1x Passthrough port

• Internal & external antenna • Low cost Wave-2 • Low cost Wave-2 • Latest QCA ac chipset • 2x2 ac 3rd radio for • OFDMA and MU-MIMO
options • Best for medium density, • Best for medium density • 2x2 ac 3rd radio for dedicated WIPS/RF • 2x2:2 scanning radio
• Integrated BLE SMB, Retail, K-12 SMB, Retail, K12 dedicated WIPS/RF monitoring • Integrated BLE
• Best for stadiums, outdoor Schools, Enterprise monitoring • Integrated BLE • FIPS 2 certification
spaces, weather-affected • Integrated BLE • Internal and External • Best for conference • All .11ax features at
environments antenna options rooms, classrooms, 802.3at with 4x4 5GHz
• Best for high density, hospitality, dormitories, • Full Feature set at
enterprise, classroom etc. 802.3bt (<40W)
and auditoriums

69 Confidential. Copyright © Arista 2019. All rights reserved.


WiFi 6 802.11ax, C-260 Access Point
Gen 2 Advantages
• Higher performance
- OFDMA and MU-MIMO
- 8x8:8 5GHz, 4x4:4 2.4GHZ radios
- 2x2:2 scanning radio
- BLE
- Dual 5 Gigabit Ethernet ports with power failover
• Better more secure AP
- FIPS 2 certification
- Conformant to new NIST standard for hardware-
based key gen
• Most efficient power consumption
- All .11ax features at 802.3at with 4x4 5GHz
- Full Feature set at 802.3bt (<40W)

Confidential. Copyright © Arista 2019. All rights reserved.


Upcoming – Mid-spec WiFi 6 802.11ax, C-230 Access Point
Q1 2020

Gen 2 Advantages
• Higher performance
- OFDMA and MU-MIMO
- 4x4:4 5GHz, 4x4:4 2.4GHZ radios
- 2x2:2 scanning radio
- BLE
- Dual 5 Gigabit Ethernet ports with power failover
• Better more secure AP
- FIPS 2 certification
- Conformant to new NIST standard for hardware-
based key gen
• Most efficient power consumption
- Full Feature set at 802.3at

Confidential. Copyright © Arista 2019. All rights reserved.


Ready for Campus Interoperability

• VoIP Phones
- Cisco, Avaya, Polycom, Siemens
- Testing includes PC connected to phones
• NAC solutions
- ISE, ClearPass, FreeRADIUS, Microsoft NPS, and Forescout
- 802.1x and MBA (MAC-Based AUTH)
- Dynamic VLAN assignment, CoA, Dynamic ACL
- Device classification including VoIP phone AUTH
• PoE
- APs, Phones, Cameras
- UNH-IOL PoE certification and inter-op
- 802.3af, 802.3at, and 802.3bt

Confidential. Copyright © Arista 2019. All rights reserved.


WiFi Security

73 Confidential. Copyright © Arista 2019. All rights reserved.


Would you rely on anything but the best for security?

• 36 granted US and international


patents

• The only WIPS ever to be rated: *


- ‘Strong Positive’ (highest ranking)
- At the top in all six Gartner
MarketScope reports on WLAN
*Arista Networks acquired Mojo Networks (erstwhile AirTight
IPS Networks).

• Federal and DoD approved


- FIPS 140-2
- Common Criteria
- DoD Unified Capabilities
Approved Product List

74 Confidential. Copyright © Arista 2019. All rights reserved.


Arista WiFi WIPS

• Proprietary “Marker Packet”


technique uses behaviour analysis
rather than signature to increase
accuracy

• Arista APs send out bursts of


Layer-2 broadcast traffic on wire;
scans for presence in the air to
confirm origin of every visible SSID

• Classification is highly reliable


allowing automated containment
without worry

75 Confidential. Copyright © Arista 2019. All rights reserved.


Arista WIPS Protects Against All WiFi Threats

76 Confidential. Copyright © Arista 2019. All rights reserved.


Open and Rich Web APIs & OpenConfig

Management Plane - Centralized


Rest
APIs

• OpenConfig for WiFi Support


• Smart APs
• Analytics data
• Scalable to millions of devices
77 Confidential. Copyright © Arista 2019. All rights reserved.
Enterprise WiFi security landscape is continuously evolving

• Ever increasing volume and types of WiFi devices


entering the enterprise airspace
- Threats hidden in large volume of legitimate traffic
- WiFi signal is not contained within or by physical barriers

• Off-the-shelf hacking tools have lowered the bar on


attacker sophistication

• WiFi presents a continually evolving threat


landscape
- The last major vulnerability, called KRACK (Key
Reinstallation AttaCK), published in Oct 16, 2019

78 Confidential. Copyright © Arista 2019. All rights reserved.


WIPS protects against security threats not addressed by
WPA2/WPA3
BYOD

WPA2/WPA3 (802.11i)
Inline authentication and
encryption for WiFi devices that
are managed by enterprise IT
and properly configured.
WPA2/WPA3

WIP
S
Overlay protection against security
threats from WiFi devices that are
not managed by enterprise IT
and/or are misconfigured.

79 Confidential. Copyright © Arista 2019. All rights reserved.


Arista WIPS takes a fundamentally different approach

Prevalent WIDS Approach


Cat and mouse chase of
exploits, signatures, and
tools

Arista WIPS Approach


Protects against the basic building
blocks that enable WiFi attacks

80 Confidential. Copyright © Arista 2019. All rights reserved.


The key is to accurately classify WiFi devices visible in the
enterprise airspace
APs visible in the
enterprise airspace
(The list varies over
APs not managed by enterprise IT
time)
(Dynamic list)

APs managed
by enterprise IT
(Static list)

APs not connected to APs connected to


the enterprise network the enterprise
network

Authorized APs External APs Rogue APs

81 Confidential. Copyright © Arista 2019. All rights reserved.


Arista WIPS automates accurate WiFi device classification
Arista WIPS Competition
Rogue AP? (Vendor)
Authorized 30% Rogue AP? Rogue AP? (SSIDs)

External Rogue 70% Rogue AP?


Rogue AP
(on wire?)
Rogue AP? Undetected
(High RSSI) Rogue APs
• Works “out of the box” using patented active on-
wire/off-wire detection • Customers need to configure complex rules
• Takes the guess work out of your WiFi security • Marred with false positives and negatives
• Enables automatic prevention and policy • Cannot automate prevention and policy
enforcement enforcement

82 Confidential. Copyright © Arista 2019. All rights reserved.


Automated policy enforcement with Arista WIPS

Block Detect
Misconfigured DoS

AP CLASSIFCATION POLICY CLIENT CLASSIFICATION

Authorized ALLOW Authorized


APs Clients

BLOCK

Rogue APs Rogue


BLOCK
(On Network) Clients

Neighborhood Neighborhood
APs IGNORE Clients

83 Confidential. Copyright © Arista 2019. All rights reserved.


Arista WIPS precisely blocks all the “red paths” with a variety
of tailored methods
• One size doesn’t fit all for intrusion prevention
- Many permutations and combinations of connection types and WiFi
interface hardware and software demand different prevention
techniques

• Arista’s patented intrusion prevention comprises a bag


of tricks for comprehensive threat coverage
- Deauth, timed deauth, client chasing, ARP manipulation, cell
splitting, wireless side, wired side

• Simultaneously blocks different types of threats across


multiple WiFi channels, including those not used by the
enterprise WiFi network

• No liability or risk of disrupting neighboring WiFi


networks

84 Confidential. Copyright © Arista 2019. All rights reserved.


Benefits of Arista WIPS
Arista WIPS Competition
Automatic, accurate classification that works reliably Involves significant human intervention; users required
out-of-the-box with minimal human intervention. to configure classification rules and thresholds.

Accurately detects most types of Rogue APs without Prone to false positives and negatives and can load the
relying on switch infrastructure. switch infrastructure.

A fundamentally different approach that provides most Prone to the typical problems, such as blind spots and
comprehensive WiFi threat protection. flood of false alarms, with a signature-based approach.

Reliable automatic prevention without the risk of Cannot be relied for automatic prevention; liability of
disrupting neighborhood WiFi networks. disrupting neighborhood WiFi networks.

Can effectively prevent simultaneous threats across


Limited and ineffective prevention.
multiple channels.
Dedicated scanning using the third radio for full-time Very basic with background scanning or requires
protection. dedicated sensors for full-time monitoring.
Works reliably even if APs or sensors lose connectivity Very restricted if APs or sensors lose connectivity to
to the management server or Cloud. the controller or Cloud.
Included, at no additional cost, with Cognitive WiFi. Often licensed separately.

85 Confidential. Copyright © Arista 2019. All rights reserved.


CloudVision for Campus

Confidential. Copyright © Arista 2019. All rights reserved.


CVP overview

• Present overall capability


• Automation not management
• No special knowledge, tools or proprietary hooks
- Any switch not just one that has chip to support (ACI)
• ZTP, configlets = lower FTE costs
• Telemetry = end to end view campus to DC to hybrid cloud

87 Confidential. Copyright © Arista 2019. All rights reserved.


JR

Arista CloudVision’s Value in the Campus

Change Wired +
Compliance Security Visibility
Management Wireless

Reduce Faster Mean


Assess Understand Break down
Maintenance Time To Root
Risk Threat Vectors boundaries
Window Time Cause
Change Control Compliance Consistent CloudVision
Device Analyzer
Workflows Dashboard Dashboards WiFi

Break down PIN boundaries with Consistent End-to-End Operations


Confidential. Copyright © Arista 2019. All rights reserved.
Campus Use-case: PoE Management

Interface Summary
Easy access to
device summaries Power Usage
Monitor aggregate
and individual
summaries

Customizable
Dashboards
Create your own view

State-Streaming Extended to Campus Use-cases


89 Confidential. Copyright
Confidential.
© Arista
Copyright
2019. All©rights
Aristareserved.
2019. All rights reserved.
Campus Use-case: Automated NetOps for the Campus

Orchestrate Checks + Balances


Changes Monitor health, exit
Config, Software criteria, alerts as
Upgrades, Patches changes rollout

Continuous
Snapshots
Granular network
state is captured
automatically -
reduces manual CLI
burden

Maintenance windows from Weekends to Hours


Confidential. Copyright
Confidential.
© Arista
Copyright
2019. All©rights
Aristareserved.
2019. All rights reserved.
Campus Use-case: Device Analyzer

Behavior
Modeling Flow Tracker
Understand Visualization and
endpoints trend analysis

Broad
Visibility
Correlations
extend to DC

Improved Security with Endpoint Visibility


Confidential. Copyright © Arista 2019. All rights reserved.
CloudVision Device Analyzer for Traffic
Drill to view
Filtering: Connected iMacs and Flows connections for
selected device.

Drill for specific flows

92 Confidential. Copyright
Confidential.
© Arista
Copyright
2019. All©rights
Aristareserved.
2019. All rights reserved.
Campus Use-case: Client-to-Cloud Visibility
State Streaming-based
Modern, granular,
complete. (No Polling - at
all!)

Single Management View


Overlay Telemetry Views Consolidation of
Performance, Events, DC + Campus + Cloud
Segmentation and more

Common Dashboard
Starting Point... for Visibility
For diving deeper into Wired and Wireless
control, data, mgmt plane 3rd Party devices

CloudVision: Improved Visibility by Breaking down Silos


Confidential. Copyright © Arista 2019. All rights reserved.
Arista Cognitive WiFi
• Leads you to what matters most - how
many clients are impacted and what is
causing their problem

• Presents complete analysis instead of


simple charts or graphs, eliminating the
need for manual correlation

• Powered by the cloud, Cognitive WiFi


performs ongoing algorithmic analysis
that updates you in real-time as you fix
issues

94 Confidential. Copyright © Arista 2019. All rights reserved.


Cognitive WiFi: Using AI for a Better User Experience
Client Journey
WIPS

Application Health

95 Confidential. Copyright © Arista 2019. All rights reserved.


Client Journey

96 Confidential. Copyright © Arista 2019. All rights reserved.


Automated Packet Captures and Graphical Analysis

Auto packet captures inline and in real time, stored Visual packet trace analysis and auto diagnosis simplifies
in the context of specific client failures debugging.

View Packet Trace

97 Confidential. Copyright © Arista 2019. All rights reserved.


Client journey through to packet capture/visualization

98 Confidential. Copyright © Arista 2019. All rights reserved.


Cognitive WiFi: ML/AI at work in Real Time

Know WiFi clients that fail to connect


or experience poor performance

Monitor network latencies (AAA,


Know the exact reason for every
DHCP, DNS, WAN) that affect
WiFi client failure, WiFi or wired,
client experience
and automatically remediate
WiFi problems

Troubleshoot in no time
user-reported “WiFi issues”

99 Confidential. Copyright © Arista 2019. All rights reserved.


100 Confidential. Copyright © Arista 2019. All rights reserved.
Application Experience
• Most WiFi users complaints come from Multimedia Applications
• Cognitive WiFi also measures “Application Experience” using Machine Learning algorithms
• Multimedia traffic is examined in chunks of 30s and classified using ML trained models

101 Confidential. Copyright © Arista 2019. All rights reserved.


102 Confidential. Copyright © Arista 2019. All rights reserved.
Innovative Tri-Radio AP Enables Cognitive WiFi
• Most tricky client issues require sending a field engineer onsite to take a packet capture
• The integrated 3rd radio in Arista APs can:
- Take packet captures anytime, without affecting active clients
- Simulate a client, to uncover issues before they happen
Scanning Radio
2x2 802.11ac/bgn

5 GHz Access Radio


2.4 GHz Access Radio

Imagine embedding a field engineer inside the AP

The Third radio – Your network’s ears


103 Confidential. Copyright © Arista 2019. All rights reserved.
Client Simulation Test
Experience your network before your users do
• The 3rd radio can be turned in client mode and connect to neighbouring APs
• Proactively test your network’s readiness - Several test profiles can be defined to simulate
real client traffic
• Tests can be scheduled at convenient time to uncover issues before they affect users

104 Confidential. Copyright © Arista 2019. All rights reserved.


Client Simulation Test - Results
• Different test profiles can be set, including different Applications, VoIP calls and
Throughput tests.
• Use WiFi to uncover non-WiFi issues before users even notice

105 Confidential. Copyright © Arista 2019. All rights reserved.


Confidential. Copyright © Arista 2019. All rights reserved.
Video: Client emulation testing

107 Confidential. Copyright © Arista 2019. All rights reserved.


Video: Client emulation testing

108 Confidential. Copyright © Arista 2019. All rights reserved.


Cloud Vision Strategy Simplified

• Arista divides Cloud Vision into two deployment models:


- CVP deployed on-prem for UCN (DC, Campus, AnyCloud)
≫ Switch Provisioning, Automation and Management
- CV-Cognitive Campus cloud Hosted
≫ WiFI user and application driven AI/ML platform for Provisioning, Automation and Management
• Currently CV-Coginitive Campus can be deployed as on-prem and
integrated within on-prem CVP with some limitations.
• Currently CVP is not a hosted/managed cloud platform.

109 Confidential. Copyright © Arista 2019. All rights reserved.


Managing the Customer Conversation

110 Confidential. Copyright © Arista 2019. All rights reserved.


Why Arista?
Architecture – for now and for the future

ur ,
ct ed
e

ite fix
Split planes - management, control and data
- Delivers unparalleled flexibility in deployment and management

ch r
ar d o
• Arista’s Distributed Control Plane

fix dde
- Provides truly limitless scale architecture - impossible in a controller model

ot a
• Uptime Assurance

nn be
- Survivability across multiple network conditions

ca an
• Most flexible deployment options

ou s c
- Cloud and On-prem (appliance and virtualized)

t y re

bu atu
Zero touch deployments
- True plug and play means absolutely no local configuration required at the AP

Fe
World’s best WIPS
• Industry leading Wireless IPS
- Built into the system – enhanced if you use 3 Radio models Detailed battle-cards available at
https://arista.app.box.com/folder/52715763773

Confidential. Copyright © Arista 2019. All rights reserved.


Why Arista?
CloudVision WiFi – network administrator’s panacea

ad ;
lo ce

’s ien
Client Journey – view into WiFi users’ experience
- Takes you to the areas that need attention

or r
at xpe
• Performance and application dashboards

is r e
- View into the WiFi network’s heath

in e
tr
m us
• True Network Assurance using the innovative 3rd radio

ad iFi
- Behaves as a client to test your network (on demand and scheduled)

th t W
- Reports what real clients will experience

se len
• Inference Engine

e
Ea cel
- Root cause analysis provides options to address issues observed

Ex
• Broad spectrum troubleshooting assistance
- From bird’s eye view (Client Journey) to microscopic details (packet trace)
- Automatic packet captures when issues are observed
- Allows administrators to did as deep or as little to address the issues
Detailed battle-cards available at
https://arista.app.box.com/folder/52715763773

Confidential. Copyright © Arista 2019. All rights reserved.


Why Arista
Fit into any network ecosystem
• Full spectrum APIs
- Arista CloudVision WiFi runs off the same APIs available to customers
- Allows integration with third party applications

• Standards based – no proprietary lock-in

d
an
- Work with all standards based network elements

ey
-

lu ble sed
Reporting and logging using SNMP, Syslog, SMTP

on
rM
Va ra ba
Best value for money

fo
st pe s
Be tero ard

e
• Lowest capex & opex across all competition

in and
• Transparent licensing

St
- Single license provides all features
- Unlike competition that has complicated licenses for platforms,
features, etc.
Detailed battle-cards available at
https://arista.app.box.com/folder/52715763773

Confidential. Copyright © Arista 2019. All rights reserved.


Objection Handling
Objection Response
We feel uncomfortable about placing ANY of our information Only management traffic is sent to the cloud. No user traffic is
in the cloud. sent to the cloud. The Arista cloud platform is highly
redundant to 99.99% uptime SLA. Arista data centers are all
SSAE 16 SOC 2 certified. Customer specific data, that is
stored in the cloud, is contained in a secure tenant instances.

Can we use Cisco (or other vendor) for WiFi and use Arista for Yes - we have customers that deploy Arista as a pure WIPS.
analytics or security (WIPS) only? Typically in a 4:1 ratio (4 Cisco APs to 1 of our security
sensors). However, many of those customers have migrated
from WIPS only to our full cloud-managed wireless solution
because of the breadth of functionality available using the
same APs for WIPS and access.

Confidential.Copyright
Confidential. Copyright © Arista
© Arista 2019.
2019. All rights
All rights reserved.
reserved.
Objection Handling

Objection Response
What if your cloud management console goes down? The Arista cloud platform is highly redundant with a 99.99%
uptime SLA. APs continue to function normally, even in the
unlikely scenario the cloud is not available.

We are a Cisco shop and not interested in changing vendor. The Arista solution can bring real savings (CapEx and OpEx) -
no expensive onsite controllers or management platforms - no
AP HW markups, etc. The Arista solution is much easier to
manage, which makes management accessible to more
members of your organization.
Do you offer an on-prem option? Yes. The on-prem offering includes everything excluding
Guest Manager and inference diagnostics.

Confidential.Copyright
Confidential. Copyright © Arista
© Arista 2019.
2019. All rights
All rights reserved.
reserved.
Objection Handling
Objection Response
Arista has nothing like ISE in their portfolio. Arista integrates seamlessly with 3rd party AAA, NAC and
device onboarding solutions including ISE.

What happens if my internet connection goes down? Will my APs continue to function normally on the LAN. APs will
APs continue to function? continue to provide access for WiFi clients as well as continue
to detect/prevent security threats and store security events
locally on the AP until connection the the internet is restored.
We are uncomfortable with your recurring cloud licensing fee. There is a grace period and ample notification of expiration to
What happens if our cloud licensing expires? give your organization time to renew cloud licenses.

Confidential.Copyright
Confidential. Copyright © Arista
© Arista 2019.
2019. All rights
All rights reserved.
reserved.
Objection Handling
Objection Response

Customers require SNMP integration. The Arista Cloud Integration Point (CIP) enables integration of
local NMS and SIEM systems with the Arista cloud.

Cloud WLAN providers like Arista require that networks be Long ago this was true but now Arista offers a number of
designed/re-designed such that all VLANs are brought to the solutions for tunneling data traffic back to the network core
edge of the network where cloud APs connect to the network. (e.g. VxLAN) so customers’ underlying L2/L3 networks can
remain as is.

Confidential.Copyright
Confidential. Copyright © Arista
© Arista 2019.
2019. All rights
All rights reserved.
reserved.
Objection Handling - Meraki
Objection Response
No full stack management in Arista cloud management Arista already offers full stack management with the on-prem
offering. management solution. Full stack management via the cloud is
expected in the 1st half 2020.
Arista WiFi does not support L3 roaming. When you properly do your WiFi subnets (using larger
address blocks) the need for L3 roaming goes away as the
area being covered by the WiFi is covered by a larger
subnet…thus no “L3 roaming”.

This is quite common even in large campuses across multiple


buildings. To do this, you have to enable broadcast and
multicast control, supported by all Arista APs, on the APs to
prevent superfluous transmissions to preserve the spectrum,
etc.

Furthermore, current L3 roaming offerings do not scale as


they require tunnel creation back to home APs or home
controllers. Most WLAN vendors that do offer L3 roaming
recommend leaving this feature disabled as they know that
their implementations are riddled with issues.

Confidential.Copyright
Confidential. Copyright © Arista
© Arista 2019.
2019. All rights
All rights reserved.
reserved.
Objection Handling - Meraki
Objection Response

Meraki’s management solution includes an MDM offering. While Arista WiFi does not include MDM the Arista solution
can easily interoperate with leading 3rd party MDM solutions.

Meraki is much easier to configure than competitor solutions. Meraki does have fewer knobs but that does not mean that it
easier to deploy. Fewer knobs often means less ability to
customize configurations which leads to more compromises,
particularly in challenging RF environments.

The Arista solution strikes a balance between simplicity and


sophistication, making it suitable for all manner of
environments while remaining easy to deploy and manage.
Arista WiFi solution does not have ability to detect malware Arista partners with leading security solution providers to
threats. protect our customers’ networks from malware threats and
other types of cyber-attacks.

Confidential.Copyright
Confidential. Copyright © Arista
© Arista 2019.
2019. All rights
All rights reserved.
reserved.
Design Resources

120 Confidential. Copyright © Arista 2019. All rights reserved.


Universal Cloud Network for Campus
Design Guide NOW Available
121 Confidential. Copyright © Arista 2019. All rights reserved.
Training

• Currently offer several courses that cover general Arista Knowledge and
CloudVision
• New program being developed to cover full certification from beginner to
expert - 8 levels
- Will cover in-depth training on VXLAN, EVPN, BGP, MPLS, WIFI, Cloud Vision, etc.
- Roadmap for launch early 2020
• WiFi specific specialization training
• Partner hosted Arista specific CWNP WiFi training

122 Confidential. Copyright © Arista 2019. All rights reserved.


Test Drives, Demos and POCs

• We have numerous hands-on Test Drives available through your Channel


SE to host guided labs for your own knowledge and customer demos.

• Proof of Concept capabilities available through Channel SE.

123 Confidential. Copyright © Arista 2019. All rights reserved.


Arista TAC and Professional Services

124 Confidential. Copyright © Arista 2019. All rights reserved.


Arista Differentiator: Arista’s NPS - World Class Rating!

Arista NPS Arista’s Overall Cisco NPS


https://npsbenchmarks.com/c
Rating ompanies/cisco

+76 9.1/10 +38

Net Promoter Score (NPS):


NPS Scale: -100 to +100
Scores above 0 are considered good
Scores above 50 are considered excellent
Scores above 70 is considered World Class support

Confidential. Copyright © Arista 2019. All rights reserved.


Arista Differentiator: Not all TAC support is the same...
Arista A-Care Cisco Smart-Net

Single touch access with TAC SMEs ✘

Root Cause Analysis ✘

Proactive software escalation ✘

Proactive support case ✘

Tiered structure ✘

Outsourced support ✘

24x7 P1/2 response 1 minute* 60 minutes**

24x7 P3/4 response 15 minutes* 24 hours**

Support via Email or Phone

Software downloads & RMA


* Measured over last 36 months
**Target time - https://www.cisco.com/c/dam/global/th_th/assets/docs/seminar/advantnow10_SmartService_Boot_Camp_Myanmar.pdf

126 Confidential. Copyright © Arista 2019. All rights reserved.


Arista Differentiator: Support Quality
Avg. frequency
(Based on ~500k IB)
What level of support
General questions ~1-2 per yr
customers can expect
Software defects ~1 every 2 yrs when they move to
Arista?
Hardware RMAs ~1 replacement per yr
Compare these stats with
TOTAL < 4 per yr your incumbent vendor!

Drastically lower impact on


customer Net Ops teams

Key takeaway:
If network uptime is important to your business Arista is the ONLY choice
Confidential. Copyright © Arista 2018. All rights reserved.
Arista Differentiator: Arista TAC Escalation Process

Customers TAC Dev. Engr.


(No tiered TAC)

Engage TAC
via email or phone If TAC can’t resolve issue, it gets
escalated to:

‘The person who wrote the code’


As needed,
communication to → This dramatically reduces MTTR for
execs customers

Customer Exec TAC Mngt.

Confidential. Copyright © Arista 2019. All rights reserved.


Arista Differentiator: Arista’s TAC Single Tier Support
24x7x365
Vancouver

Shannon
Nashua,NH Korea
China
Pune Japan[*Hiring in progress]
Santa Clara Cary,NC

Bangalore

Sydney

Contact us:
Phone: 1866 476 0000
Global locations All products ~19s to respond to calls
Email: support@arista.com
support-wifi@arista.com for round the supported by single ~10min. TSE assignment
Forum: https://eos.arista.com/forum/ clock coverage tier, all employee TAC for email cases
Confidential. Copyright © Arista 2018. All rights reserved.
Arista Differentiator: Customer Feedback
"I work with many, many vendors, and Arista has, by far, the best TAC in the Industry!"

“I was expecting an old-school TAC experience: call, get


“Very knowledgeable and they reply triaged, get someone junior to look at the case, explain
quickly. Arista support is superior to both the whole thing to them, get escalation, explain it all
Cisco and HPE support.” again, get resolution. Instead, Arista TSE answered my
phone call on like the first or second ring, stayed on the
phone with me for almost three hours, and ended up
“I must say Arista’s support is excellent. solving both problems.”
It is far better than Cisco’s or HPE’s
support. For support with Cisco, we pay
thousands of dollars. CCIE’s eventually ATAC has excellent knowledge of
reply to my questions, but their answers
hardware and software, is moving fast to
are not as good as yours. I appreciate it”
troubleshoot/lab and makes fast and
good answers

How are we doing?


tac-feedback@arista.com direct link for customers to provide feedback to TAC
Arista Update: Arista RMA Depots
Global depots, similar setup and reach as alternate vendors

Emergency stock at international locations

IB must be up-to-date for “installed at” site info for proper depot stocking. Recommend
quarterly IB true-ups

Confidential. Copyright © Arista 2019. All rights reserved.


Arista Update: TAC 2020+ Strategic Roadmap

Break-Fix
Forum
CVaaS
Reduce MTTD by 80%
TAC (Mean Time To Detect)
Design
Articles Chat Bots Reduce MTTR by 50%
Operations (Mean Time To Respond)

CVaaS & AS
Design Webinars
Admin

1. Self 2. Guided 3. Active

1. Speed Using AI & ML create Intelligent, contextually aware with immediate engagement and faster response

2. Support Model Proactive detection of issues and mitigations

3. Knowledge Knowledge database with guided & self help options

Confidential. Copyright © Arista 2019. All rights reserved.


Go to the below link to take short exam to get your

ATS-Cognitive Campus Specialization

http://bit.ly/ATS-Campus
Link will be active for 1 week and you will receive a confirmation email once graded.

Confidential. Copyright © Arista 2018.


2019. All rights reserved.

You might also like