Section 16.153 SD-WAN and SASE Flashcards

Objective 3.2 Given a scenario, you must be able to apply security principles to secure enterprise architecture. Objective 4.5 Given a scenario, you must be able to modify enterprise capabilities to enhance security

1
Q

SD-WAN (Software-Defined Wide Area Network)

A

A virtualized approach to managing and optimizing wide area network connections to efficiently route traffic between remote sites, data centers, and cloud environments

● Software-based architecture with control extracted from underlying
hardware

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

SD-WAN (Software-Defined Wide Area Network)

Benefits

A

Increased agility, security, and efficiency for geographically distributed workforces

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

SD-WAN (Software-Defined Wide Area Network)

Transport Services

A

Allows the use of various transport services:

○ MPLS
○ Cellular
○ Microwave links
○ Broadband internet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

SD-WAN (Software-Defined Wide Area Network)

Centralised Control

A

Utilises centralised control function for intelligent traffic routing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

SD-WAN (Software-Defined Wide Area Network)

Traditional WAN vs. SD-WAN

A

Traditional WANs: Cannot efficiently integrate cloud services

SD-WAN: Enables dynamic and efficient routing, improving visibility, performance, and manageability

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

SD-WAN (Software-Defined Wide Area Network)

Use Cases

A

Ideal for enterprises with multiple branch offices moving towards
cloud-based services:

○ IaaS
○ PaaS
○ SaaS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

SASE (Secure Access Service Edge)

A

A network architecture combining network security and WAN capabilities in a single cloud-based service/solution

● Addresses challenges of securing and connecting users and data across distributed locations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

SASE (Secure Access Service Edge)

Key Technology

A

Utilises software-defined networking (SDN) for security and networking
services from the cloud rather than traditional based network solution

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

SASE (Secure Access Service Edge)

Components/Security Services

A

● Firewalls
● VPNs
● Zero-trust network access
● Cloud Access Security Brokers (CASBs)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

SASE (Secure Access Service Edge)

Policy and Management

A

Delivered through a common set of policy and management platforms

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

SASE (Secure Access Service Edge)

Cloud Providers

A

Major cloud providers offer services aligned with SASE: they will call it something esle

○ AWS = Virtual Private Cloud (VPC)
○ Azure Virtual WAN
○ Azure ExpressRoutes
○ Google Cloud Interconnect
○ Google Cloud VPN

These cloud services offer secure, flexible, and global networking capabilities, aligning with SASE principles

How well did you know this?
1
Not at all
2
3
4
5
Perfectly