build 7bbbddf7 | content blog-content@c8490fa · 338 posts | profiles 20 · corpus 267 | 0 skipped | | format
apiVersion: soultec.ch/v1kind: Solutionmetadata: name: vmware/vmware-secure-access-service-edge locale: en labels: vendor: VMware Secure Access Service Edge capability/network: 2.16 capability/security: 2.16 vendor/vmware: 0.88 annotations: source: src/content/solutions/en/vmware/vmware-secure-access-service-edge.md route: /en/solutions/vmware/vmware-secure-access-service-edge/ schema: /nerd/schema/solutions.json markdown: /en/solutions/vmware/vmware-secure-access-service-edge.mdspec: title: SASE tags: [network, security] vendors: [vmware] summary: >- WAN and security as one architecture. Access depends on identity and context rather than on a tunnel into the company network. photoNeed: >- A vSphere or VCF console on a real screen at soulTec: a cluster view, a running task, an inventory tree, so the reader should recognise the UI stub: false draft: false kind: product addon: false vendorName: VMware Secure Access Service Edge status: current sections: - heading:

What it is

body: | SASE delivers WAN services and security functions as one cloud-based architecture. Instead of hauling traffic back to the datacentre, identity- and context-based access replaces the classic VPN. The services run across a global network of points of presence. It includes SD-WAN, Cloud Web Security, Secure Access and Edge Network Intelligence, managed from one console, and can be run as a managed service or yourself. - heading:

The problem it solves

body: | Work is distributed and applications live in the cloud. A model that forces every request through the company network creates a bottleneck exactly where it costs most: bandwidth runs short, connections drop, and application performance is better in the office than at home even though both are using the same SaaS application. - heading:

What to watch

body: | SASE replaces the VPN organisationally as well as technically. Where decisions used to be made at the perimeter, they now get made per user, per device and per application, and somebody has to write those policies. That is where the effort sits, not in the setup.status: corpus: 267 services: - {ref: services/network, score: 1.00} - {ref: services/modern-workplace, score: 0.45} - {ref: services/security, score: 0.44} - {ref: services/cloud, score: 0.42} posts: - {ref: posts/distributed-network-security-services, score: 1.00} - {ref: posts/nsx-free-nsx-ebooks-to-download, score: 1.00} - {ref: posts/antrea-nsx-integration, score: 0.75} - {ref: posts/vsphere-with-tanzu-und-nsx-advanced-load-balancer-avi-secret-not-found, score: 0.75} - {ref: posts/lessons-learned-vsphere-with-tanzu-und-nsx-advanced-load-balancer-integration-mit-private-ca, score: 0.75} - {ref: posts/iaas-control-plane-wrong-nsx-edge-cluster-for-t1-placement, score: 0.65} experts: - {ref: experts/marco-betschart, score: 0.49} - {ref: experts/matthias-frech, score: 0.49} - {ref: experts/rico-lenherr, score: 0.49} neighbours: - {ref: solutions/vmware/vmware-cloud-foundation/addon/advanced-security, score: 1.00} - {ref: solutions/vmware/vmware-cloud-foundation/nsx, score: 0.83} - {ref: solutions/vmware/vmware-cloud-foundation/addon/advanced-cyber-compliance, score: 0.57}
{ "apiVersion": "soultec.ch/v1", "kind": "Solution", "metadata": { "name": "vmware/vmware-secure-access-service-edge", "locale": "en", "labels": { "vendor": "VMware Secure Access Service Edge", "capability/network": "2.16", "capability/security": "2.16", "vendor/vmware": "0.88" }, "annotations": { "source": "src/content/solutions/en/vmware/vmware-secure-access-service-edge.md", "route": "/en/solutions/vmware/vmware-secure-access-service-edge/", "schema": "/nerd/schema/solutions.json", "markdown": "/en/solutions/vmware/vmware-secure-access-service-edge.md" } }, "spec": { "title": "SASE", "tags": [ "network", "security" ], "vendors": [ "vmware" ], "summary": "WAN and security as one architecture. Access depends on identity and context rather than on a tunnel into the company network.", "photoNeed": "A vSphere or VCF console on a real screen at soulTec: a cluster view, a running task, an inventory tree, so the reader should recognise the UI", "stub": false, "draft": false, "kind": "product", "addon": false, "vendorName": "VMware Secure Access Service Edge", "status": "current" }, "sections": [ { "heading": "

What it is

",
"body": "SASE delivers WAN services and security functions as one cloud-based architecture. Instead\nof hauling traffic back to the datacentre, identity- and context-based access replaces the\nclassic VPN. The services run across a global network of points of presence.\n\nIt includes SD-WAN, Cloud Web Security, Secure Access and Edge Network Intelligence, managed\nfrom one console, and can be run as a managed service or yourself." }, { "heading": "

The problem it solves

",
"body": "Work is distributed and applications live in the cloud. A model that forces every request\nthrough the company network creates a bottleneck exactly where it costs most: bandwidth\nruns short, connections drop, and application performance is better in the office than at\nhome even though both are using the same SaaS application." }, { "heading": "

What to watch

",
"body": "SASE replaces the VPN organisationally as well as technically. Where decisions used to be\nmade at the perimeter, they now get made per user, per device and per application, and\nsomebody has to write those policies. That is where the effort sits, not in the setup." } ], "status": { "corpus": 267, "services": [ { "ref": "services/network", "score": "1.00" }, { "ref": "services/modern-workplace", "score": "0.45" }, { "ref": "services/security", "score": "0.44" }, { "ref": "services/cloud", "score": "0.42" } ], "posts": [ { "ref": "posts/distributed-network-security-services", "score": "1.00" }, { "ref": "posts/nsx-free-nsx-ebooks-to-download", "score": "1.00" }, { "ref": "posts/antrea-nsx-integration", "score": "0.75" }, { "ref": "posts/vsphere-with-tanzu-und-nsx-advanced-load-balancer-avi-secret-not-found", "score": "0.75" }, { "ref": "posts/lessons-learned-vsphere-with-tanzu-und-nsx-advanced-load-balancer-integration-mit-private-ca", "score": "0.75" }, { "ref": "posts/iaas-control-plane-wrong-nsx-edge-cluster-for-t1-placement", "score": "0.65" } ], "experts": [ { "ref": "experts/marco-betschart", "score": "0.49" }, { "ref": "experts/matthias-frech", "score": "0.49" }, { "ref": "experts/rico-lenherr", "score": "0.49" } ], "neighbours": [ { "ref": "solutions/vmware/vmware-cloud-foundation/addon/advanced-security", "score": "1.00" }, { "ref": "solutions/vmware/vmware-cloud-foundation/nsx", "score": "0.83" }, { "ref": "solutions/vmware/vmware-cloud-foundation/addon/advanced-cyber-compliance", "score": "0.57" } ] }}
apiVersion = "soultec.ch/v1"kind = "Solution"[metadata]name = "vmware/vmware-secure-access-service-edge"locale = "en"[metadata.labels]vendor = "VMware Secure Access Service Edge""capability/network" = "2.16""capability/security" = "2.16""vendor/vmware" = "0.88"[metadata.annotations]source = "src/content/solutions/en/vmware/vmware-secure-access-service-edge.md"route = "/en/solutions/vmware/vmware-secure-access-service-edge/"schema = "/nerd/schema/solutions.json"markdown = "/en/solutions/vmware/vmware-secure-access-service-edge.md"[spec]title = "SASE"tags = ["network", "security"]vendors = ["vmware"]summary = "WAN and security as one architecture. Access depends on identity and context rather than on a tunnel into the company network."photoNeed = "A vSphere or VCF console on a real screen at soulTec: a cluster view, a running task, an inventory tree, so the reader should recognise the UI"stub = falsedraft = falsekind = "product"addon = falsevendorName = "VMware Secure Access Service Edge"status = "current"[[sections]]heading = "

What it is

"
body = '''SASE delivers WAN services and security functions as one cloud-based architecture. Insteadof hauling traffic back to the datacentre, identity- and context-based access replaces theclassic VPN. The services run across a global network of points of presence.It includes SD-WAN, Cloud Web Security, Secure Access and Edge Network Intelligence, managedfrom one console, and can be run as a managed service or yourself.'''[[sections]]heading = "

The problem it solves

"
body = '''Work is distributed and applications live in the cloud. A model that forces every requestthrough the company network creates a bottleneck exactly where it costs most: bandwidthruns short, connections drop, and application performance is better in the office than athome even though both are using the same SaaS application.'''[[sections]]heading = "

What to watch

"
body = '''SASE replaces the VPN organisationally as well as technically. Where decisions used to bemade at the perimeter, they now get made per user, per device and per application, andsomebody has to write those policies. That is where the effort sits, not in the setup.'''[status]corpus = 267[[status.services]]ref = "services/network"score = "1.00"[[status.services]]ref = "services/modern-workplace"score = "0.45"[[status.services]]ref = "services/security"score = "0.44"[[status.services]]ref = "services/cloud"score = "0.42"[[status.posts]]ref = "posts/distributed-network-security-services"score = "1.00"[[status.posts]]ref = "posts/nsx-free-nsx-ebooks-to-download"score = "1.00"[[status.posts]]ref = "posts/antrea-nsx-integration"score = "0.75"[[status.posts]]ref = "posts/vsphere-with-tanzu-und-nsx-advanced-load-balancer-avi-secret-not-found"score = "0.75"[[status.posts]]ref = "posts/lessons-learned-vsphere-with-tanzu-und-nsx-advanced-load-balancer-integration-mit-private-ca"score = "0.75"[[status.posts]]ref = "posts/iaas-control-plane-wrong-nsx-edge-cluster-for-t1-placement"score = "0.65"[[status.experts]]ref = "experts/marco-betschart"score = "0.49"[[status.experts]]ref = "experts/matthias-frech"score = "0.49"[[status.experts]]ref = "experts/rico-lenherr"score = "0.49"[[status.neighbours]]ref = "solutions/vmware/vmware-cloud-foundation/addon/advanced-security"score = "1.00"[[status.neighbours]]ref = "solutions/vmware/vmware-cloud-foundation/nsx"score = "0.83"[[status.neighbours]]ref = "solutions/vmware/vmware-cloud-foundation/addon/advanced-cyber-compliance"score = "0.57"
<?xml version="1.0" encoding="UTF-8"?><manifest kind="Solution"> <apiVersion>soultec.ch/v1</apiVersion> <metadata> <name>vmware/vmware-secure-access-service-edge</name> <locale>en</locale> <labels> <vendor>VMware Secure Access Service Edge</vendor> <entry key="capability/network">2.16</entry> <entry key="capability/security">2.16</entry> <entry key="vendor/vmware">0.88</entry> </labels> <annotations> <source>src/content/solutions/en/vmware/vmware-secure-access-service-edge.md</source> <route>/en/solutions/vmware/vmware-secure-access-service-edge/</route> <schema>/nerd/schema/solutions.json</schema> <markdown>/en/solutions/vmware/vmware-secure-access-service-edge.md</markdown> </annotations> </metadata> <spec> <title>SASE</title> <tags> <item>network</item> <item>security</item> </tags> <vendors> <item>vmware</item> </vendors> <summary>WAN and security as one architecture. Access depends on identity and context rather than on a tunnel into the company network.</summary> <photoNeed>A vSphere or VCF console on a real screen at soulTec: a cluster view, a running task, an inventory tree, so the reader should recognise the UI</photoNeed> <stub>false</stub> <draft>false</draft> <kind>product</kind> <addon>false</addon> <vendorName>VMware Secure Access Service Edge</vendorName> <status>current</status> </spec> <sections> <section> <heading>

What it is

</heading>
<body>SASE delivers WAN services and security functions as one cloud-based architecture. Insteadof hauling traffic back to the datacentre, identity- and context-based access replaces theclassic VPN. The services run across a global network of points of presence.It includes SD-WAN, Cloud Web Security, Secure Access and Edge Network Intelligence, managedfrom one console, and can be run as a managed service or yourself. </body> </section> <section> <heading>

The problem it solves

</heading>
<body>Work is distributed and applications live in the cloud. A model that forces every requestthrough the company network creates a bottleneck exactly where it costs most: bandwidthruns short, connections drop, and application performance is better in the office than athome even though both are using the same SaaS application. </body> </section> <section> <heading>

What to watch

</heading>
<body>SASE replaces the VPN organisationally as well as technically. Where decisions used to bemade at the perimeter, they now get made per user, per device and per application, andsomebody has to write those policies. That is where the effort sits, not in the setup. </body> </section> </sections> <status> <corpus>267</corpus> <services> <item> <ref>services/network</ref> <score>1.00</score> </item> <item> <ref>services/modern-workplace</ref> <score>0.45</score> </item> <item> <ref>services/security</ref> <score>0.44</score> </item> <item> <ref>services/cloud</ref> <score>0.42</score> </item> </services> <posts> <item> <ref>posts/distributed-network-security-services</ref> <score>1.00</score> </item> <item> <ref>posts/nsx-free-nsx-ebooks-to-download</ref> <score>1.00</score> </item> <item> <ref>posts/antrea-nsx-integration</ref> <score>0.75</score> </item> <item> <ref>posts/vsphere-with-tanzu-und-nsx-advanced-load-balancer-avi-secret-not-found</ref> <score>0.75</score> </item> <item> <ref>posts/lessons-learned-vsphere-with-tanzu-und-nsx-advanced-load-balancer-integration-mit-private-ca</ref> <score>0.75</score> </item> <item> <ref>posts/iaas-control-plane-wrong-nsx-edge-cluster-for-t1-placement</ref> <score>0.65</score> </item> </posts> <experts> <item> <ref>experts/marco-betschart</ref> <score>0.49</score> </item> <item> <ref>experts/matthias-frech</ref> <score>0.49</score> </item> <item> <ref>experts/rico-lenherr</ref> <score>0.49</score> </item> </experts> <neighbours> <item> <ref>solutions/vmware/vmware-cloud-foundation/addon/advanced-security</ref> <score>1.00</score> </item> <item> <ref>solutions/vmware/vmware-cloud-foundation/nsx</ref> <score>0.83</score> </item> <item> <ref>solutions/vmware/vmware-cloud-foundation/addon/advanced-cyber-compliance</ref> <score>0.57</score> </item> </neighbours> </status></manifest>
Solution · VMware

SASE

VMware Secure Access Service Edge

The vendor calls it: VMware Secure Access Service Edge

WAN and security as one architecture. Access depends on identity and context rather than on a tunnel into the company network.

VMware Pinnacle Partner

Topics Network 2.16 Security 2.16
Vendors VMware 0.88
04Services
06Posts
02Capabilities
267Corpus

What it is

SASE delivers WAN services and security functions as one cloud-based architecture. Instead of hauling traffic back to the datacentre, identity- and context-based access replaces the classic VPN. The services run across a global network of points of presence.

It includes SD-WAN, Cloud Web Security, Secure Access and Edge Network Intelligence, managed from one console, and can be run as a managed service or yourself.

The problem it solves

Work is distributed and applications live in the cloud. A model that forces every request through the company network creates a bottleneck exactly where it costs most: bandwidth runs short, connections drop, and application performance is better in the office than at home even though both are using the same SaaS application.

What to watch

SASE replaces the VPN organisationally as well as technically. Where decisions used to be made at the perimeter, they now get made per user, per device and per application, and somebody has to write those policies. That is where the effort sits, not in the setup.

Posts about it

Distributed Network & Security Services

Virtualised networks have been running on hypervisor platforms in data centres for more than 20 years. What has changed is what they now have to cover: automation and security together.

Network 2.16 Security 2.16

9 Free NSX eBooks to download

Last year I was fortunate enough to go to VMworld in Barcelona. One of the coolest “goodies” that I brought back was a small NSX book about automating NSX using PowerNSX.

Network 2.16 Security 2.16

Integrating Antrea into NSX

Registering a Kubernetes cluster running Antrea with the NSX management and central control plane, so groups, policies and trace flows are managed in one place.

Network 2.16 Security 2.16 +1

vSphere with Tanzu and NSX Advanced Load Balancer – avi-secret not found

An interesting behaviour turned up during a functional test of a vSphere with Tanzu container runtime platform combined with the VMware NSX Advanced Load Balancer.

Network 2.16 Security 2.16 +1

vSphere with Tanzu and NSX Advanced Load Balancer with a private CA

From vSphere 8.0 Update 2 you can deploy vSphere with Tanzu using NSX as the networking stack and NSX Advanced Load Balancer as the integrated L4 load balancer. With a private CA it fails.

Network 2.16 Security 2.16 +1

IaaS Control Plane – wrong NSX edge cluster for T1 placement

After upgrading an IaaS Control Plane environment to vSphere 8.0.3, the T1 SR instances of the vSphere namespaces stopped landing on the edge cluster they were meant to.

Network 2.16 Security 2.16 +2

Who works with it

Do you work with this? Take a look at our open roles.