MPLS for the masses

EVPN/VXLAN Group Based Policy

How to integrate and distribute security functions in EVPN/VxLAN fabric

Every year I look forward to itnog, as an opportunity to share new ideas and experiences on new technologies, and how I’ve found ways to use them, and this year was no different. In my presentation “Group Based Policy - How to integrate security functions in EVPN/VxLAN” at ITNOG-10, I demonstrated how to distribute the networking and secuity (up to layer 4) functions directly into the fabric, transforming the entire EVPN/VxLAN fabric into a single, highly scalable and flexible distributed system that integrates all switching, routing, and security features.