Securing hybrid networks: A critical aerospace services example (COP104)

Hybrid Networks and Aerospace Industry: Iridium's Unique Requirements

Introduction

  • Iridium is a satellite company that provides critical communication services in remote and challenging environments.
  • The session features three distinguished members from Iridium and a representative from Fortinet's Cloud Consulting Services.
  • The discussion focuses on Iridium's hybrid network architecture, the unique requirements of the aerospace industry, and how they address these challenges.

Iridium's Network Architecture

  • Iridium operates in remote locations where traditional satellite signals are not available, offering a critical service for its customer base.
  • Iridium's network is designed to be highly reliable and resilient, with features like:
    • Using L-band frequency that is resistant to rain and moisture attenuation
    • Dynamic routing and rerouting capabilities to handle weather-related disruptions
    • Seamless integration of on-premises and cloud-based components to maintain high availability

Unique Technical Requirements

  • Iridium's network has unique technical requirements that differentiate it from a typical cloud-based system:
    • Extensive use of UDP multicast and non-HTTP-based protocols that are not cloud-friendly
    • Extremely stringent reliability and low-latency requirements (e.g., less than 1 second convergence time)
    • Need to handle two types of traffic: critical real-time traffic and management/monitoring traffic

Architectural Considerations

  • The team explored various AWS services and solutions, such as AWS Cloud WAN, to address Iridium's unique requirements.
  • Key considerations include:
    • Leveraging dynamic routing capabilities while mitigating the limitations of protocols like BGP
    • Ensuring seamless integration between on-premises and cloud-based components
    • Maintaining high reliability and fast convergence times for critical real-time traffic

Operational Excellence and Observability

  • Visibility and monitoring are crucial for Iridium's complex hybrid network.
    • The team discussed the use of solutions like FortiAnalyzer and FortiManager to provide centralized logging, alerting, and management capabilities.
    • Importance of proactive monitoring, testing, and documentation to ensure operational excellence.

Cost Optimization

  • Controlling costs is a significant consideration, given the complexity of Iridium's network.
    • The team discussed the use of AWS cost management tools and Fortinet's Flex licensing model to optimize costs.

Conclusion

  • Iridium's unique requirements and the complexity of their hybrid network present significant challenges.
  • Addressing these challenges requires a collaborative approach, leveraging expertise from both Iridium and external partners like Fortinet.
  • The team emphasized the importance of an iterative process, starting small, testing, and gradually expanding the solution to meet Iridium's stringent requirements.

Your Digital Journey deserves a great story.

Build one with us.

Cookies Icon

These cookies are used to collect information about how you interact with this website and allow us to remember you. We use this information to improve and customize your browsing experience, as well as for analytics.

If you decline, your information won’t be tracked when you visit this website. A single cookie will be used in your browser to remember your preference.

Talk to us