Sunday, December 23, 2018

Local Internet breakout for SaaS (+++) only

Hi there

We can get really cheap high quality internet circuits locally on the west coast of Norway with the best peerings for low latency cloud access. Instead we transport our data to our main DC somewhere else through our expensive managed WAN and security boxes, and doubling - quadroupling latency to say O365...

Wouldn't it be better to put one of those software defined-X appliances locally at this location and allow outbound access to certain SaaS, PaaS and even IaaS services locally while tunneling Reddit-traffic back to main DC? Had a look at Viptela with Cloud OnRamp, but it seems its not straightforward if your WAN isn't already on the "fabric".

Anyone have any experience with this kind of scenario? Better off with some other approach such as filtering BGP routes or doing routing based on app-ID on a PaloAlto?

Regards



No comments:

Post a Comment