EdgeConnect SD-WAN with SWG: building a SASE foundation
In this blog, we’ll explore the benefits of integrating SWG into a secure SD-WAN for a unified, efficient, and comprehensive approach to network security.
Understanding SWG and secure SD-WAN
A secure web gateway (SWG) stands as a frontline defense against web-based threats, including malware, phishing attacks, and malicious websites. It conducts several security inspections, encompassing URL filtering, malicious code detection, and web access control. With a three-layer protection system—DNS filtering, URL filtering, and content filtering—SWG effectively blocks domains and IPs, and filters web access and content, based on policies. Advanced SWG solutions can even prevent unauthorized transmission of sensitive data through data loss prevention (DLP).
Secure SD-WAN revolutionizes network connectivity and security by seamlessly protecting local branches with a built-in next-generation firewall and connecting branch locations to the data center and multi-cloud environments through internet links or using a combination of multiple links (MPLS, Internet, 4G/5G, satcom).
The need for protecting all devices, managed and unmanaged
Standalone SWG solutions often fall short in providing comprehensive security for both managed devices and unmanaged devices in the enterprise network. Even if managed devices running an SSE agent are generally well protected, unmanaged devices remain unprotected, leading to increased security risks.
Unmanaged devices such as guests, third-party contractors, or BYODs can reach malicious websites as they connect to the enterprise network, introducing new threats in the organization. IoT devices are also prone to web-based threats as they generate web traffic when they communicate with cloud services for updates, telemetry, or other purposes. And because managed and unmanaged devices share the same enterprise network, enterprises face additional cybersecurity risks by not protecting unmanaged devices.
Comprehensive security with secure SD-WAN and SWG integration
The integration of SWG to a secure SD-WAN ensures consistent and comprehensive protection for all devices on the enterprise network. As devices connect to the enterprise network, secure SD-WAN automatically directs the traffic to an SWG through dedicated tunnels without requiring an SSE agent.
Unmanaged devices, often challenging to secure, receive the same level of protection as managed devices. Whether they are guest devices, third-party contractors, or IoT devices, the integrated solution fortifies the network against potential vulnerabilities.
Additionally, the secure SD-WAN’s built-in next-generation firewall adds an additional layer of security by providing advanced security features such as IDS/IPS, DDoS defense and Zero Trust segmentation. Regardless of the device type or managed status, every user or device connecting to the enterprise network benefits from advanced threat detection and prevention capabilities.
To fortify security and align with evolving digital needs, the integrated SWG and SD-WAN solution can seamlessly extend capabilities to include Zero Trust Network Access (ZTNA) and Cloud Access Security Broker (CASB). ZTNA ensures a Zero Trust-centric model, rigorously verifying every user, device, or application attempting to access the enterprise network. CASB protects sensitive data hosted in SaaS applications and prevents data loss, while enforcing policies related to access controls. This comprehensive integration transforms the solution into a robust SASE architecture, securing the entire spectrum of data access and usage.
HPE Aruba Networking secure SD-WAN augmented with SWG
The HPE Aruba Networking EdgeConnect SD-WAN family (EdgeConnect SD-WAN, EdgeConnect SD-Branch and EdgeConnect Microbranch) now integrates SWG, part of HPE Aruba Networking SSE through a SASE SWG site license. The solution offers comprehensive protection to all users and things on the network. It is easy to deploy and doesn’t require an agent installed on each device. To do so, EdgeConnect SD-WAN forms a bandwidth-licensed tunnel between SD-WAN and HPE Aruba Networking SWG, while the traffic from managed devices (with an HPE Aruba Networking SSE user-based license) is sent directly to HPE Aruba Networking SSE, bypassing this tunnel.

Protect all devices with integrated SWG in the EdgeConnect SD-WAN fabric
In addition, HPE Aruba Networking can protect devices for organizations with third-party SD-WANs by establishing an IPsec bandwidth-licensed tunnel from the SD-WAN solution to HPE Aruba Networking SWG. It enables organizations to easily protect all devices but also fills the gap of unprotected devices (guests, third-party contractors, IoT).

Protect all devices with third-Party SD-WAN integrated with SWG, without the need for an SSE agent
Advanced threat protection with HPE Aruba Networking SD-WAN
EdgeConnect SD-WAN’s built-in next-generation firewall enables organizations to go beyond web content filtering and malware protection. The solution provides IDS/IPS, DDoS defense and role-based segmentation, enforcing Zero Trust in the organization. IDS/IPS operates on a signature-based system, actively monitoring network traffic to identify patterns indicative of specific attack signatures. For immediate response, an IDS/IPS inline mode is available, swiftly blocking traffic upon intrusion detection. In addition, the DDoS defense mechanism identifies and thwarts various attacks, including protocol attacks, SYN floods, IP spoofing attacks, and more. EdgeConnect SD-WAN also includes robust support for role-based segmentation, aligning with Zero Trust principles to minimize lateral movements. This approach adheres to the principles of least privilege access, ensuring that both users and IoT devices establish communications solely with destinations consistent with their roles in the business.
EdgeConnect SD-WAN also securely breaks out internet traffic by identifying and classifying applications and web domains based on the first packet, enabling automatic traffic steering to HPE Aruba Networking SSE. Using multiple techniques, the solution can identify more than 10,000 applications and more than 300 million web domains.
EdgeConnect SD-WAN also monitors and optimizes network performance with AppExpress. The feature leverages synthetic polling and real-time user traffic observations to steer traffic to the closest SSE Point of Presence (PoP) while selecting the best path across multi-cloud environments.
Expanding SD-WAN and SWG to HPE Aruba Networking unified SASE
By implementing a secure SD-WAN solution augmented with SWG capabilities, organizations can seamlessly transition to HPE Aruba Networking unified SASE by including ZTNA and CASB capabilities. This integrated approach streamlines the security framework, enabling organizations to consolidate their diverse security services into a cohesive platform. This platform not only accelerates deployment, but also ensures unified security policies, centralized management, consistent Zero Trust access, and the ability to adapt seamlessly to the evolving threat landscape. With EdgeConnect SD-WAN and HPE Aruba Networking SWG as the foundation of HPE Aruba Networking unified SASE, enterprises can adopt a future-proof strategy for their security.

Deploy EdgeConnect SD-WAN with the cloud-native HPE Aruba Networking SSE solution for a unified SASE platform
- Published in Infobahn
Futureproofing your retail business with digital solutions
As they anticipate consumer behavior, the future of the retail industry is moving away from a reactive approach to a proactive one: “How do we create a connected shopping experience?”
Digital solutions allow retailers to present information to customers in new, engaging ways, bringing the power of e-commerce and omnichannel branding into brick-and-mortar stores. At the National Retail Federation (NRF) conference in January 2023, Samsung will showcase the latest retail technology innovations that let retailers future-proof their business for years to come.
Data, AI and sensors personalize the customer experience
There’s no better way to understand consumer trends than to collect and analyze real-time data. In retail, first-party consumer data is the holy grail of brand marketing. With this valuable information, retailers can accurately identify customer preferences and create personalized in-store messaging, similar to the customized messaging and offers they employ online.
Another innovative source of real-time data, heat mapping technology such as FastSensor lets retailers see how customers move throughout the store — without collecting any personal information about individual people. These sensors use radio frequency to document where shoppers linger and for how long, so retailers can adjust the store layout and promotional displays more effectively. Similar to the data retailers collect on their website, FastSensor provides information on movement throughout the store — and what messages at what time spur purchases. Stores can use this data to strategically add digital signage to attract shoppers to less busy areas of the store, then optimize content on screens to increase sales and improve traffic flow. This integrated retail technology helps connect the customer journey while showing retailers the ROI of their digital investment.
The future of retail is digital
Get your free guide to growing your retail business by adopting future-proof ecommerce technology. Download Now
Retailers can also leverage real-time data to create spot offers, delivered with on-shelf digital signage. If a customer lingers in front of a particular product, the display might share a message about a relevant deal or discount. And when the customer walks away from the display, the promotion disappears, so it isn’t automatically shown to the next shopper who’s just passing by. Harnessing the power of social media, on-shelf digital signage can also display image-driven posts with curated user testimonials.
All of this data can be organized with software like BlueForce, which visualizes data in custom dashboards, and can connect in-store traffic data to external factors like weather and time of day.
Kiosks and QR codes streamline operations
Today, most people want to be able to shop on their own. These independent shopping experiences should be unique as well as satisfying.
Consider QR codes: The technology wasn’t ubiquitous until 2020, but they provide a simple and effective way to make shopping more immersive and operations more efficient. In home improvement stores, for example, QR codes can show shoppers all of the necessary materials they need for their DIY project, consolidated onto one digital page alongside the location of each of those items. The future of retail is all about shopping efficiently and avoiding return trips to dramatically increase customer satisfaction.
As for managing returns, self-service kiosks allow customers to complete the process themselves, rather than wait in line for a cashier. They simply scan the barcode at the kiosk, drop the item in the return bin and take their return receipt. These same kiosks also help free retail associates to focus on more pressing tasks.
EV charging stations attract in-person customers
As electric vehicles (EVs) continue to gain momentum, store-adjacent charging stations can ease drivers’ anxiety about their car batteries. And equipped with state-of-the-art outdoor digital signage, these charging stations are another opportunity to engage with passersby, providing information about promotional sales and limited-time offers (LTOs). To offset the cost of installation, retailers can opt to sell ad space to partner brands. These displays can also be integrated with a retail loyalty app to notify customers when their car is fully charged and ready to roll.
Preparing for what’s ahead
On the other side of the digital metamorphosis that retailers were forced to undergo the past few years are opportunities to better engage with people, make their lives easier and create more enjoyable shopping experiences. Digital signage offers endless possibilities to communicate with customers in the moment. The stores of the future will be truly immersive, offering customers information and opportunities that are specifically relevant to them.
Discover the full range of Samsung’s retail display solutions, each designed for cost-effective impact and versatility. And get your free guide to growing your retail business by adopting future-proof, e-commerce technology.
- Published in Infobahn



