Is SD-WAN Enough for Global Organizations?

The Dark Side of SD-WAN
The Dark Side of SD-WAN
Listen to post:
Getting your Trinity Audio player ready...

SD-WAN networks provide multiple benefits to organizations, especially when compared to MPLS. SD-WAN improves cloud application performance, reduces WAN costs and increases business agility. However, SD-WAN also has some downsides, which modern organizations should take into consideration when choosing SD-WAN or planning its implementation.
This blog post lists the top considerations for enterprises that are evaluating and deploying SD-WAN. It is based on the e-book “The Dark Side of SD-WAN”.

Last Mile Considerations

SD-WAN provides organizations with flexibility and cost-efficiency compared to MPLS. For the last mile, SD-WAN users can choose their preferred service, be it MPLS or last-mile services like fiber, broadband, LTE/4G, or others.
When deciding which last-mile solution to choose, we recommend taking the following criterion into consideration:

  • Costs
  • Redundancy (to ensure availability)
  • Reliability

Learn more about optimizing the last mile.

Last Mile Considerations

Middle Mile Considerations

MPLS provides predictability and stability throughout the middle mile. When designing the SD-WAN middle mile, organizations need to find a solution that provides the same capabilities.

Relying on the Internet is not recommended, since it is unpredictable. The routers are stateless and control plane intelligence is limited, which means routing decisions aren’t based on application requirements or current network levels. Instead, providers’ commercial preferences often take priority.

Learn more about reliable global connectivity.

Middle Mile Considerations

Security Considerations

Distributed architectures require security solutions that can support multiple edges and datacenters. The four main options enterprises have today are:

  1. The SD-WAN Firewall
    – Built into the SD-WAN appliance
    – Do not inspect user traffic
  2. Purchasing a Unified Threat Management Device
    – Inspects user traffic
    – Requires a device for each location, which is costly and complex
  3. Cloud-based Security
    – Eliminated firewalls at every edge
    – Based on multiple devices – the datacenter firewall, the SD-WAN and the cloud security device. This is also costly and complex.
  4. A Converged Solution
    SASE (Secure Access Service Edge) – converges SD-WAN at the edge and security in the middle, with one single location for policy management and analytics.

Security Considerations

Cloud Access Optimization Considerations

In a modern network, external datacenters and cloud applications need to be accessed by the organization’s users, branches and datacenters. Relying on the Internet is too risky in terms of performance and availability.

It is recommended to choose a solution that offers premium connectivity or to choose a cloud network that egresses traffic from edges as close as possible to the target cloud instance.

The Dark Side of SD-WAN | Read The eBook

Cloud Access Optimization

Network Monitoring Considerations

When monitoring the network, enterprises need to be able to identify issues in a timely manner, open tickets with ISPs and work with them until the issue is resolved.

It is recommended to set up 24/7 support and monitoring to orchestrate this and prevent outages that could impact the business.

Network Monitoring

Considerations When Managing the SD-WAN

Transitioning to SD-WAN requires deciding how to manage relationships with all the last-mile ISPs, as well as the network itself. You can manage these internally or outsource to providers.
Ask yourself the following questions:

  • Is it easier to manage multiple providers directly or through a single external aggregator?
  • How much control do you need over deployment and integrations?
  • What are your priorities for your internal talent’s time and resources?


Organizations today need to shift to support the growing use of cloud-based applications and mobile users. SD-WAN is considered a viable option by many. But is it enough? Use this blog post to evaluate if and how to implement SD-WAN. To get more details, read the complete e-book.

To learn more about SASE, let’s talk.



Related Topics