HPE Aruba Networking EdgeConnect SD-WANs are a solid SD-WAN solution with a single bigger flaw
Rating: 8 out of 10
IncentivizedUse Cases and Deployment Scope
We currently use HPE Aruba Networking EdgeConnect SD-WAN solution as our method for connecting our sites via SD-WAN. Primarily our environment is a fully meshed environment, which is an easy to configure option with the HPE Aruba Networking EdgeConnect SD-WAN solution. It's a very reliable product which allows for our high uptime demands that has come with an amazing customer vendor relationship.
Pros
- Linking multiple sites quickly and efficiently
- High uptime
- HA Configurations with active active load balancing
- Fully SaaS controller that is only dependent upon WAN devices having internet access (which they should be plugged into)
Cons
- There are a lot of menus for items to hide under
- Often there are alarms that are false positives due to bugs in the code - these are usually rectified in the next patch but that seems to be a common occurrence with updates
- Can only have 7 "BIOs" - which are effectively policies that you use to choose how traffic is handled in terms of routing and QoS
- Devices throughput is capped by Aruba licensing meaning that's an additional concern you'll have to monitor and take into consideration when choosing ISPs.
- Alerts sometimes don't tell you things you'd like to know (like when a site is nearing its bandwidth cap)
Likelihood to Recommend
The HPE Aruba Networking EdgeConnect SD-WAN excel in environments where you do a lot of your East - West segmentation is done by another device. While these devices can do basic firewall functions, it's their not true intent. If you can group what you want your traffic to do into a few basic groups, this product will work great (think all Guest Traffic gets low priority and sent directly to the internet, VoIP gets sent directly out but high priority, and most internal traffic gets medium throughput). There are ways to really tinker reach the desired goals but this can be a double-edged sword of those configurations being forgotten about. There is also the use of templating which if you have a larger environment, this product will make some normal configs (think SNMP) more streamlined. The units are also highly reliable, built with HA in mind - our company has only experienced a single version that had a memory leak that we just needed to remember to reboot every 90 days while we waited for the next update (which came in like 4 months).