📘 Case Study

Multi-Region Arista EVPN/VXLAN Fabric with SilverPeak SD-WAN & Cloud Connectivity via Equinix

👤 Client Profile

A global enterprise expanding its hybrid cloud and data center presence, requiring a high-speed, scalable infrastructure across five Equinix regions to support multi-cloud workloads and secure edge-to-cloud connectivity.

⚠️ Challenges

• Needed seamless interconnectivity between five Equinix data centers and public cloud providers (AWS, Azure, GCP)
• Required high-throughput, non-blocking EVPN/VXLAN fabric for data-heavy workloads
• Demanded application-aware SD-WAN with multi-tenant support and dynamic path control
• Sought dynamic failover and DR across regions for business continuity
• Needed cloud onramps via Equinix Cloud Exchange with dedicated bandwidth
• Required automation for rapid deployment across multiple global sites

Solutions Delivered

• Deployed fully automated EVPN/VXLAN Clos fabric using Arista 7K switches with 400G non-blocking uplinks
• Integrated Juniper MX480 edge routers for full BGP route tables, traffic engineering, and public IP advertisement
• Installed Palo Alto 7K-Series firewalls for multi-tenant segmentation, policy enforcement, and secure DIA
• Provisioned direct cloud connectivity via Equinix Cloud Exchange:
  – 100G to Azure
  – 100G to AWS
  – 50G to GCP
• Implemented SilverPeak SD-WAN overlays across dual MPLS and dual 10G DIA at each site for intelligent app routing
• Leveraged Equinix Connect for 100G Data Center Interconnect (DCI), enabling replication and failover between sites
• Deployed dedicated DMZ and OOB switch pods for security segmentation and operational resiliency
• Automated device provisioning and config templates using Ansible and Jinja2 across all five data centers

🚀 Results & Impact

🌐 Enabled seamless high-speed connectivity between cloud and data centers across five regions
Reduced provisioning time by 70% with Ansible-based automation and reusable templates
🧭 Optimized internet routing and failover with full BGP tables and SD-WAN dynamic path control
🛡️ Enhanced security posture with next-gen firewalling and dedicated DMZ architecture
🏢 Supported true multi-tenant edge and WAN integration with segmentation from core to cloud
🔄 Delivered resilient disaster recovery architecture using BGP, SD-WAN, and DCI for regional failover

🛠️ Technologies Used

Network Fabric: Arista 7K (EVPN/VXLAN, 400G Nonblocking Leaf-Spine)
Edge Routing: Juniper MX480 (Full BGP Tables, Public Prefix Advertisement)
Security: Palo Alto 7K-Series NGFW (Segmentation, Threat Prevention, DIA Protection)
Cloud Connectivity: Equinix Cloud Exchange (100G to Azure & AWS, 50G to GCP)
SD-WAN & WAN: SilverPeak SD-WAN, Dual MPLS Providers, Dual 10G DIA per Region
Data Center Interconnect (DCI): Equinix Connect 100G, DR Design with SD-WAN Failover
Automation: Ansible & Jinja2 for rapid provisioning and config templating

Previous
Previous

Global Azure VWAN & SD-WAN Architecture

Next
Next

Juniper Multi-Tenant EVPN/VXLAN Spine-Leaf