Skip Links

Network World

Jon Oltsik

Data Center Network Security: Will Anyone Discuss This at RSA?

Critical topic, big opportunity but lack of "buzz factor" will limit visibility

By joltsik on Wed, 02/22/12 - 9:24am.

Less than a week before the RSA Conference in San Francisco and my telephones are ringing off the hook.  People want to discuss a variety of topics including APTs, mobile security, cloud security, big data analytics, and so on. 

Funny, but no one has mentioned data center network security.  Yes but with the rich assortment of buzz-worthy topics, why discuss something as boring as data center network security?  Because it is a real problem.  In a recent ESG Research survey, networking professionals were asked to identify their top data center networking challenges.  Network security was the top challenge (51%), followed by network performance (44%), and network management (37%).

Data centers are gaining massive scale as large enterprises work through data center consolidation projects and embrace server virtualization.  Unfortunately, growing data center scale and complexity is no match for physical security devices, manual processes, and limited skills.  ESG calls this phenomenon, "data center networking discontinuity."  This discontinuity is forcing changes in the physical network (i.e. fabric architectures, SDN, network convergence), and it will force changes with network security.

Some specific issues include:

1.  Data center network security scale.  ESG sees standardization of 10gbE at the network access layer and interest in 40/100gbE for the network core.  This will require a new generation of high performance/low latency network security equipment from Check Point, Cisco, Crossbeam, Fortinet, HP, IBM, Juniper, McAfee, and Sourcefire.  It also presents another opportunity for F5 to work its security/network/application aggregation play. 

2.  Server virtualization security remains a mystery.  Yes I know that everyone and his brother offers security tools as virtual appliances and that VMware has been very active with vSafe and vSheld.  What security vendors fail to realize however is that large organizations have no clue as to how to build a physical/virtual security architecture.  Enterprises need more education and less bits and bytes.  

3.  What about compliance?  Even if we can create a high performance physical/virtual security architecture, will compliance auditors approve it?  When I ask vendors this question, I generally get a tilted head/strange noise dog look in return.      

Data center networks are going through a profound transformation and this will be a major point of discussion a few months from now at Interop.  Surprisingly, it will be a minor topic at the RSA conference next week.  Hmm, where is all the talk about high performance firewalls, virtual/physical controls, new processes, user education, and regulatory compliance concerns?   To paraphrase an old Forrester colleague of mine, the security industry seems to "tripping over the dollars and picking up the pennies." 

What is Tech Briefcase?
TechBriefcase is a new, free service where IT Professionals can Search, Store and Share IT white papers and content like this. Learn more
Bookmark content
Speed up your research efforts with content across the web.
Search and Store
Find the white papers you need. Create folders for any topic.
View Anywhere
Open your briefcase on your iPhone, tablet or desktop. Share with colleagues.
Don't have an account yet?
About Networking Nuggets and Security Snippets
Jon Oltsik is a principal analyst at Enterprise Strategy Group responsible for the networking and security services at ESG. Prior to joining ESG, Jon was the founder and principal of Hype-Free Consulting. Mr. Oltsik previously served as VP of Marketing & Strategy at GiantLoop Network where he managed all marketing activities and defined the company’s strategic vision. Jon was also a Senior Analyst at Forrester Research where he covered a wide range of infrastructure and IT topics. In this role, he was frequently quoted in business journals, including the Wall Street Journal, Business Week, and the New York Times, and was also the recipient of a prestigious "best research" award for his breakthrough report, "The Internet Computing Voyage."
 

Most Discussed Posts