Book Image

Diving into Secure Access Service Edge

By : Jeremiah
Book Image

Diving into Secure Access Service Edge

By: Jeremiah

Overview of this book

The SASE concept was coined by Gartner after seeing a pattern emerge in cloud and SD-WAN projects where full security integration was needed. The market behavior lately has sparked something like a "space race" for all technology manufacturers and cloud service providers to offer a "SASE" solution. The current training available in the market is minimal and manufacturer-oriented, with new services being released every few weeks. Professional architects and engineers trying to implement SASE need to take a manufacturer-neutral approach. This guide provides a foundation for understanding SASE, but it also has a lasting impact because it not only addresses the problems that existed at the time of publication, but also provides a continual learning approach to successfully lead in a market that evolves every few weeks. Technology teams need a tool that provides a model to keep up with new information as it becomes available and stay ahead of market hype. With this book, you’ll learn about crucial models for SASE success in designing, building, deploying, and supporting operations to ensure the most positive user experience (UX). In addition to SASE, you’ll gain insight into SD-WAN design, DevOps, zero trust, and next-generation technical education methods.
Table of Contents (28 chapters)
1
Part 1 – SASE Market Perspective
7
Part 2 – SASE Technical Perspective
15
Part 3 – SASE Success Perspective
20
Part 4 – SASE Bonus Perspective
Appendix: SASE Terms

SASE UNI

The User Network Interface (UNI) is where the service provider’s network touches the customer’s network. This is typically on the provider’s router. With the SASE UNI, the touchpoint is per service and is generally a logical construct, though it might be a physical interface since the SASE UNI lies on another service, such as SD-WAN, and the underlay UNI may be provided via MPLS or another service for the physical touchpoint.

The underlay is the actual circuit from the service provider, such as MPLS, Switched Ethernet, LTE, 5G, or other circuit types. The UNI for the underlay is the handoff point from the Provider Edge (PE) to the Customer Edge (CE). This leverages the Permanent Virtual Connection (PVC), as established for the subscriber organization.

The SASE UNI is a logical point of demarcation from the overlay service, such as SD-WAN, when connecting to the customer’s SASE Edge, which may be physical or virtual. The SASE UNI provides much...