Close

HPE Aruba Networking Blogs

A smarter evolution of SASE

By Scott Raynovich, Founder and Chief Analyst, Futuriom

For enterprise end users, navigating through vendor acronyms and technology can be difficult, especially in the evolving market known as Secure Access Service Edge (SASE). But the important thing to remember about SASE is that it is bringing value to the customer with more streamlined integration and management of many different cybersecurity and networking functions.

Often in the industry, cyber and networking operations (NetOps) are two different buckets, managed by different teams. But one of the large benefits that SASE has brought to the table is an integration of these operations and to deliver an improved, converged architecture for implementing networking  and security at the same time.

From Secure SD-WAN to SASE: Integration is the Key

For example, SASE means that enterprise edge networking services and connections to the wide-area network (WAN) can be managed from the cloud using software-defined WAN (SD-WAN). And just as SD-WAN brought a more agile platform for managing networking connections to the WAN, SASE uses the same paradigm for managing security functions such as firewalls, intrusion detection services/intrusion prevention systems (IDS/IPS), secure web gateway (SWG), cloud access service broker (CASB), and Zero Trust network access.

To put it simply: SASE means that networking and network security can be managed together. Another way to think of SASE is as a best-of-breed approach to networking and security that addresses many different needs and scenarios, whether it’s security connecting a remote users over the WAN or providing enforcement across an enterprise wireless and wired network.

Yes – it’s more acronyms, but at least they come in one package!

As networking practitioners and cybersecurity pros look at combining these functions and expertise, it helps to have vendors that understand both elements and have experience in integrating these functions.

One of the more powerful combinations in the industry has been Aruba’s integration of the Silver Peak EdgeConnect SD-WAN/SASE acquisition with Aruba Edge Services Portfolio (ESP), which yields natural benefits. Aruba has a strong enterprise networking heritage and industry-leading wireless portfolio. Now a variety of networking elements via ESP, bringing the benefit of SASE,  Zero Trust security, and policy enforcement across the entire enterprise network, from WAN to the edge.

Policy Across the Network

In the SASE market, Aruba has a clear vision for integrating its networking, SD-WAN, and SASE offerings with centralized management via Aruba Central. The most important aspect of this vision is the idea that policy and networking can be managed together. Additional SASE security functions can be added as needed.

It never really made sense to have separate management of policy, networking, and security in different areas of the network. Aruba has followed this thread, adding centralized policy enforcement across the wired, wireless, and WAN network domains to ClearPass Policy Manager.

Aruba’s recent addition of security improvements such as east-west IDS/IDP, integration of Aruba Threat Defense with EdgeConnect, as well as tiered service pricing for firewall and security SD-WAN mean services can be added in modular fashion for a variety of customers with different needs. The EdgeConnect SD-WAN platform can be considered a secure SD-WAN platform, and is certified by ICSA Labs as a secure SD-WAN vendor.

These enhancements mean that customers can add streamlined, secure enterprise networks while maintaining policy control with role-based users, device, and application policy enforcement across all of the network segments. It also supports third-party security tools – it providers integrations with Check Point McAfee, Lookout, Netskope, Palo Alto, Symantec, Zscaler, and others. The important thing is that everything can still be managed with one cloud-based platform.

Aruba’s moves demonstrate the clear benefit to end users within the SASE movement. Practitioners no longer have to install multiple platforms and management for the many networking and security functions available in the SASE world. This is the true value that SASE is bringing to market, by converging acronyms and making it easier on the end users.

Learn more about Aruba solutions at:

Aruba EdgeConnect SD-WAN solution

Aruba EdgeConnect Secure SD-WAN and Next-Generation Firewall