• Welcome to TechPowerUp Forums, Guest! Please check out our forum guidelines for info related to our community.

Your thoughts on VPN vs SD-WAN

Joined
Aug 19, 2024
Messages
580 (2.78/day)
Location
Texas, USA
System Name Obliterator
Processor Ryzen 7 7700x PBO
Motherboard ASRock x670e Steel Legend
Cooling Noctua NH-D15 G2 LBC
Memory G.skill Trident Z5 Neo 6000@CL30
Video Card(s) ASRock rx7900 GRE Steel Legend
Storage 2 x 2TB Samsung 990 pro nmve ssd 2 X 4TB Samsung 870 evo sata ssd 1 X 18TB WD Gold sata hdd
Display(s) LG 27GN750-B
Case Fractal Torrent
Audio Device(s) Klipsch promedia heritage 2.1
Power Supply FSP Hydro TI 1000w
Mouse SteelSeries Prime+
Keyboard Lenovo SK-8825 (L)
Software Windows 10 Enterprise LTSC 21H2 / Windows 11 Enterprise LTSC 24H2 with multiple flavors of VM
I've a client with multiple branches and i'm thinking about switching from VPN to SD-WAN for the 2 remote sites. It isn't really so much a necessity, as it performs well enough as is, but it will make the insurance/risk management folks happy. I have managed gateways at the sites, so i really don't have to do much. What am i really gaining? I've done it some, and am confident in making it work, I just thought I would get some input from the other network folks out there.

So, your thoughts on VPN vs SD-WAN?
 
Last edited:
Joined
Jul 25, 2006
Messages
13,787 (2.02/day)
Location
Nebraska, USA
System Name Brightworks Systems BWS-6 E-IV
Processor Intel Core i5-6600 @ 3.9GHz
Motherboard Gigabyte GA-Z170-HD3 Rev 1.0
Cooling Quality case, 2 x Fractal Design 140mm fans, stock CPU HSF
Memory 32GB (4 x 8GB) DDR4 3000 Corsair Vengeance
Video Card(s) EVGA GEForce GTX 1050Ti 4Gb GDDR5
Storage Samsung 850 Pro 256GB SSD, Samsung 860 Evo 500GB SSD
Display(s) Samsung S24E650BW LED x 2
Case Fractal Design Define R4
Power Supply EVGA Supernova 550W G2 Gold
Mouse Logitech M190
Keyboard Microsoft Wireless Comfort 5050
Software W10 Pro 64-bit
I recently had a similar conversation with a colleague. Much came down to size of the organization, future expansion plans, and, of course, money.

From a IT manager's perspective, I would prefer SD-WAN because of its centralized network management capability and better security. Latency issues were another issue, but we decided in most cases, those are much less significant - but depending on client demands and expectations, may move up in priority.

However, SD-WAN is more expensive to set up and, sadly, many bean-counters are unwilling or incapable of looking past today. The big challenge in many companies is convincing those holding the purse-strings to spend money on things that NEVER bring money back into their purses. There is no profit in having a secure, easy to manage network. To them, every dollar spent is a lost dollar. They don't see the value in preventing $1000s ($millions!!!) of lost dollars down the road.

So your challenge then is to convince the bean-counters/C-level executives to think strategically - that is, past today and out into tomorrow and even years down the road. That's where investing in SD-WAN today will pay good dividends (or at least prevent major losses) tomorrow.

Good luck with that! At least it appears convincing your insurance/risk management folks will not be an issue as they tend to be strategic thinkers. :) Now if they control the purse-strings, you are in!

I found this article that makes for pretty good reading, explaining pretty well the terms lay-people may [hopefully] understand.
 
Joined
Aug 19, 2024
Messages
580 (2.78/day)
Location
Texas, USA
System Name Obliterator
Processor Ryzen 7 7700x PBO
Motherboard ASRock x670e Steel Legend
Cooling Noctua NH-D15 G2 LBC
Memory G.skill Trident Z5 Neo 6000@CL30
Video Card(s) ASRock rx7900 GRE Steel Legend
Storage 2 x 2TB Samsung 990 pro nmve ssd 2 X 4TB Samsung 870 evo sata ssd 1 X 18TB WD Gold sata hdd
Display(s) LG 27GN750-B
Case Fractal Torrent
Audio Device(s) Klipsch promedia heritage 2.1
Power Supply FSP Hydro TI 1000w
Mouse SteelSeries Prime+
Keyboard Lenovo SK-8825 (L)
Software Windows 10 Enterprise LTSC 21H2 / Windows 11 Enterprise LTSC 24H2 with multiple flavors of VM
Fortunately, I can bypass the bean-counters in this instance. The owner Ok'd it, so now i just need to get the equipment lined up with the MSSP (which is Nuspire). By my calculations, the insurance discount will mostly offset the cost. Guess I'm putting in SD-WAN. As much as anything, I was looking for unseen downsides, but the consensus from you and other colleagues is that there aren't any besides cost. Thank you for the input Bill.
 
Joined
Jul 25, 2006
Messages
13,787 (2.02/day)
Location
Nebraska, USA
System Name Brightworks Systems BWS-6 E-IV
Processor Intel Core i5-6600 @ 3.9GHz
Motherboard Gigabyte GA-Z170-HD3 Rev 1.0
Cooling Quality case, 2 x Fractal Design 140mm fans, stock CPU HSF
Memory 32GB (4 x 8GB) DDR4 3000 Corsair Vengeance
Video Card(s) EVGA GEForce GTX 1050Ti 4Gb GDDR5
Storage Samsung 850 Pro 256GB SSD, Samsung 860 Evo 500GB SSD
Display(s) Samsung S24E650BW LED x 2
Case Fractal Design Define R4
Power Supply EVGA Supernova 550W G2 Gold
Mouse Logitech M190
Keyboard Microsoft Wireless Comfort 5050
Software W10 Pro 64-bit
I learned the hard way years ago that "bypassing" bean-counters can backfire when seeking funds for future projects "IF" they feel slighted because you did a "runaround" on them this time. I obviously don't know the "atmosphere" (office politics) in your organization so this may be a non-issue. I am just saying, if the bean-counters suddenly get an order they were not expecting (or budgeted for) to cough up money for a project they didn't know about, hard-feelings may ensue.

I would give them a heads-up and keep them in the loop. And if you learn they were not aware of the project already, blame the owner for keeping them in the dark! ;)

Good luck!
 
Joined
Aug 19, 2024
Messages
580 (2.78/day)
Location
Texas, USA
System Name Obliterator
Processor Ryzen 7 7700x PBO
Motherboard ASRock x670e Steel Legend
Cooling Noctua NH-D15 G2 LBC
Memory G.skill Trident Z5 Neo 6000@CL30
Video Card(s) ASRock rx7900 GRE Steel Legend
Storage 2 x 2TB Samsung 990 pro nmve ssd 2 X 4TB Samsung 870 evo sata ssd 1 X 18TB WD Gold sata hdd
Display(s) LG 27GN750-B
Case Fractal Torrent
Audio Device(s) Klipsch promedia heritage 2.1
Power Supply FSP Hydro TI 1000w
Mouse SteelSeries Prime+
Keyboard Lenovo SK-8825 (L)
Software Windows 10 Enterprise LTSC 21H2 / Windows 11 Enterprise LTSC 24H2 with multiple flavors of VM
An update.

Got my SD-wan running. works great. Going from main site to remotes via primary fiber links and wireless secondaries. just a couple router swaps, not too big a deal really.

Cisco catalyst 8300s.....can barely even put a load on them.

Everything is cloud, so entire network is pretty flat. Simple NAT. Runs good....totally transparent to the users.
 
Last edited:
Joined
Apr 3, 2012
Messages
4,378 (0.93/day)
Location
St. Paul, MN
System Name Bay2- Lowerbay/ HP 3770/T3500-2+T3500-3+T3500-4/ Opti-Con/Orange/White/Grey
Processor i3 2120's/ i7 3770/ x5670's/ i5 2400/Ryzen 2700/Ryzen 2700/R7 3700x
Motherboard HP UltraSlim's/ HP mid size/ Dell T3500 workstation's/ Dell 390/B450 AorusM/B450 AorusM/B550 AorusM
Cooling All stock coolers/Grey has an H-60
Memory 2GB/ 4GB/ 12 GB 3 chan/ 4GB sammy/T-Force 16GB 3200/XPG 16GB 3000/Ballistic 3600 16GB
Video Card(s) HD2000's/ HD 2000/ 1 MSI GT710,2x MSI R7 240's/ HD4000/ Red Dragon 580/Sapphire 580/Sapphire 580
Storage ?HDD's/ 500 GB-er's/ 500 GB/2.5 Samsung 500GB HDD+WD Black 1TB/ WD Black 500GB M.2/Corsair MP600 M.2
Display(s) 1920x1080/ ViewSonic VX24568 between the rest/1080p TV-Grey
Case HP 8200 UltraSlim's/ HP 8200 mid tower/Dell T3500's/ Dell 390/SilverStone Kublai KL06/NZXT H510 W x2
Audio Device(s) Sonic Master/ onboard's/ Beeper's!
Power Supply 19.5 volt bricks/ Dell PSU/ 525W sumptin/ same/Seasonic 750 80+Gold/EVGA 500 80+/Antec 650 80+Gold
Mouse cheap GigaWire930, CMStorm Havoc + Logitech M510 wireless/iGear usb x2/MX 900 wireless kit 4 Grey
Keyboard Dynex, 2 no name, SYX and a Logitech. All full sized and USB. MX900 kit for Grey
Software Mint 18 Sylvia/ Opti-Con Mint KDE/ T3500's on Kubuntu/HP 3770 is Win 10/Win 10 Pro/Win 10 Pro/Win10
Benchmark Scores World Community Grid is my benchmark!!
I found this article that makes for pretty good reading, explaining pretty well the terms lay-people may [hopefully] understand.
That article was a good one. I am not a network guy but, I feel I learned some more about it. I love TPU for just this reason. Picking up knowledge, without even trying to! LOL.
 
Top