Hewlett Packard Enterprise Company (HPE) Earnings Call Transcript & Summary
January 24, 2024
Earnings Call Speaker Segments
Alex Barbieri
executiveHello, everyone, and welcome to our Annual Predictions Webinar. My name's Alex Barbieri. I'm the Marketing Manager for HPE Aruba Networking in South Pacific, and I'm really happy to have you along with us today. Today, we're going to hear from our Chief Product Officer, David Hughes; and Vice President of Industry Strategy, James Robertson, as they talk about their top networking and security predictions for 2024. We also have with us today Elissa McCormick, who is the APJ Solution Advocacy Lead, who will be joining us live and sharing tips on how you can accelerate your network performance. She will host a live Q&A, together with our Product Management Lead for APJ, Siok Been Yeo, and then we'll be ready to answer all your questions. [Operator Instructions] Now we are having a little bit of trouble with our simultaneous interpretation software today. So unfortunately, we are only live in English. However, for the on-demand version, we will make sure it gets sent out in English, Chinese, Japanese, Korean and Thai. Without further ado, let's roll and see what's in store for us in 2024.
James Robertson
executiveWelcome, everyone. My name is James Robertson, part of the CTO team here at HPE Aruba Networking, and I'm pleased to have with me today David Hughes, our Chief Product Officer. Hello, David.
David Hughes
executiveHey, James. Great to be here.
James Robertson
executiveOkay. David, so if you kind of like look at what's happened in 2023 and going into 2024, really, we've seen, I would say, 3 large trends continue to play out. The first one that has really dominated the headlines globally has been AI adoption, right? I don't think you can pick up a newspaper or turn on a news show without hearing about AI and the impact it's going to have on our lives and the way we do business, the way we work and whether our jobs are at risk because of it. The second one really is kind of a tie-in to that, right? Staffing is -- continues to be a problem. It continues to be hard to find the right people at the right level to do the right kind of job within most businesses. And then I think the third one that really ties all of this together is we still have a lot of geopolitical uncertainty in this world. And so this is really kind of -- demands a business to look at how they build infrastructure and maintain a level of flexibility and agility because we're not really sure what's going to happen in 2024.
David Hughes
executiveYes. I think that's right, a lot of change.
James Robertson
executiveSo David, right, as we did last year, it's time again to lay out some predictions based on what we're seeing. So what is our first prediction for 2024?
David Hughes
executiveThe first prediction is really around the death of the firewall. We're already witnessing it. So you look at the market trends. There's deteriorating business there for the stand-alone firewall. And when you peel the onion, when you think about what's going on, first of all, there's the whole impact of COVID work from home, remote work and along with that, the proliferation of devices for surveillance cameras, for every kind of IoT. And what this is doing is really eroding the perimeter. The idea that you could have an enterprise with a good inside, a trusted inside to keep away the bad outside and you could protect this core with a perimeter or a ring of firewalls has really become obsolete. And so what we're seeing is that functionality that used to be in that ring of firewalls is migrating. First off, it's migrating into the cloud. So you're seeing cloud-delivered security services, often called SSE or Secure Service Edge, where the -- if the users are remote, they're outside that ring, you want them to be protected the same way as if they were on-prem, on campus, inside the ring. And really, one way to do that, one very effective way to do that is to deliver that security functionality from the cloud as their data transits to the apps that they're using, which are almost certainly hosted in the cloud. And when they're not, there's great ways using ZTNA to make those on-prem-hosted apps appear like cloud apps. The -- on the other side, the stand-alone firewall is being replaced by built-in security and built-in firewalls in most devices. So whether it's APs or it's switches or it's SD-WAN gateways, all of those devices today are incorporating firewalling capabilities. If you kind of think back to the router, the stand-alone router got eaten really in the enterprise by the L3 switch. And I think we're seeing the same thing with firewall. So it's not -- you need -- you don't need a ring of firewalls or one big east -- north-south firewall in and out of your data center. In order to segment, you need firewalls everywhere, and so the obvious thing is implement those in the devices. And that's what we see happening. So between the built-in firewalling and the secure SSE cloud-based services, that need for the stand-alone firewall is diminishing. It's not going to disappear completely overnight, but the trend has started. That downturn started, and it's going to accelerate in 2024.
James Robertson
executiveI think that's just a really interesting kind of reflection. If you think about firewalls, to your point, right, rather kind of started this, became a Layer 3 switch. And we got that functionality into a different product set. And now we inserted maybe 25, 30 years ago, these firewalling devices to kind of go up the Layer 7 stack, the ISO stack and kind of unpack at a protocol level what was happening from our packets. But at the end of the day, a firewall really just became almost like a passport control, right? It's like I can go from one side to the other side, and then I can do whatever I want to do, to your point, once I'm in the other side. So you're saying, by basically seeing all of the network elements, all of the infrastructure elements start to play together to add to the security fabric, that's a good thing. That's going to enhance security across the entire organization.
David Hughes
executiveYes. I mean absolutely because there is no perimeter, but you also want to have strong segmentation to make sure you don't have east-west escalation of any kind of breach, where someone comes in, breaks into a surveillance camera and from there, is able to move to the point of sale. You want to have very strong segmentation on-prem. So that requires built-in security in those on-prem devices. And honestly, that can't be done from the cloud. That needs to be done on-prem. But yes, generally, people want to complement that when you're thinking about people accessing applications. That's something where you can deliver a lot of those capabilities most effectively from the cloud.
James Robertson
executiveRight. And really goes -- yes, really goes back to this idea that our teams are everywhere, right? They're no longer just within our walled garden buildings. They're now everywhere. They're being productive from anywhere and everywhere that they need to on a daily basis in order to drive business forward. So it makes a lot of sense to make sure the security is following them rather than us implementing security that surrounds them.
David Hughes
executiveYes, absolutely.
James Robertson
executiveOkay. David, so that really leads into your prediction #2. So what's that one about?
David Hughes
executiveSecond prediction is really about the application of zero trust principles accelerating the alignment between networking and security. If you look at most enterprises, the way they're organized is they -- in IT, they have a security team and a networking team. And they each have their own specialization and their own objectives. On the one hand, you've got the networking team who's really focused on delivering always-on, very reliable, high-performing connectivity. And on the other side with security, you are looking at how do you minimize risk, how do you reduce exposure, how do you make sure that you're compliant. And on the face of it, those objectives are somewhat intentioned. And as a typical user, you often end up somewhere in between the 2. So in the case where you maybe have a security team that's overzealous, you end up not being able to reach the applications you need or you end up having to log in or re-log in every 5 minutes, not a good experience; or in other cases, the networking team's all about making people happy and set up some things that bypass some of those security applications. Either intentionally or accidentally, you can end up in an even worse situation where you have a ransomware attack. And obviously, that's another kind of bad experience for the user. And so I think most organizations are looking at how do we bring security and networking together, perhaps not from an organizational point of view, but how do we get these 2 teams aligned and working together. And the teams themselves, I think, absolutely do want to work together. But how do we get the goals to be more closely aligned?
James Robertson
executiveThat makes a lot of sense, right? So I mean, if you think about it, just from an alignment standpoint, I think you're completely spot on, right? I run networking and security teams in my career, and it's always that balancing act between the 2 as to what you want to enable, what you can enable, right, and what they want to disable, what they can't enable and bringing that together but also making sure that there is kind of still that separate line of reporting for audit, compliance, governance, whatever it might be. So there is that checks and balances. Makes a lot of sense.
David Hughes
executiveYes, absolutely. I think the checks and balances are important. I think that for those governance reasons, there will tend to be 2 separate teams for that reason. But what I think is really exciting and what I see happening in 2024 is more companies moving kind of beyond zero trust as a buzzword to actually applying zero trust principles in the way they architect and build out their networks. So that means that you're thinking about the networking team's job not as being -- connecting everything to everything as -- in as high-performance way as possible but rather connecting devices and users just to the destinations that they need to be connected to, to get the job done. And if you redefine the role of the networking team in terms of implementing that prescribed connectivity and the interface with the security team being -- having them being responsible for setting the policy about what can connect to what and having their network team implement that, I think you end up in a situation where the networking team and security team can work much more seamlessly together. And it also sets things up where the 2 teams are able to share infrastructure. So when you think about the way that things have been done historically, there's often the network ran by the networking team, and then as we talked about the ring of firewalls or those firewalls sprinkled throughout that network, which are operated by the security team. And then when there's a problem, it's difficult to identify is it a problem in the network, is it a problem because of a firewall policy and why are you waiting to resolve that. The users are not having a great experience. With -- when you have a network that implements zero trust principles, the networking team is actually able to implement the policies. You're able to use those built-in firewalls that we talked about. You're able to leverage cloud-delivered security, and you can have common shared knowledge, visibility that's shared between the networking team and security team. You have a policy that's controlled by security implemented by networking. I think it's going to really revolutionize the way networking and security come together and how the teams work together.
James Robertson
executiveRight. So you've got -- if you kind of summarize that really quickly, it's the policy and the topology finally working together in unison to drive an overarching infrastructure strategy that really enables security to be paramount across everything, right?
David Hughes
executiveThat's right.
James Robertson
executiveIt is completely built in across the entire stack but also giving those teams, to some extent, a single kind of point of truth, right? So the telemetry that they're gaining from the infrastructure is enabling security to do their job but also enabling the networking team to do their job at the same time.
David Hughes
executiveAbsolutely.
James Robertson
executiveAll right. So David, you're saying that we're experiencing the near death of the firewall, right, and that the next generation of firewalls that we've had for the last 10 years really is becoming the last generation of firewalls. And then we're starting to see network and security teams come together and truly create a single kind of place of truth about what's going on within the infrastructure using policy and topology to really enable kind of the experience. So what's prediction 3 about?
David Hughes
executivePrediction 3 is about measuring user experience. And I believe that in 2024, we're going to see measuring user experience become a must for enterprises and organizations that want to deliver operational excellence. Why? Ultimately, the IT's job, the networking team's job is to deliver great user experiences. And whether those users are employees or contractors or it's the indirect people associated with the business like students in a school or patients in a hospital, guests in a hotel, customers in a retailer, in every case, the kind of end job is delivering great experience. And what we really need to do as an industry is move our SLAs and SLOs and objectives to be more tightly coupled to that experience. So measuring experience becomes more important or essential versus just, say, measuring uptime. If you think about traditional network management, you're looking at are my devices up, have I got active standby, is it failing over correctly, are my links available. You're kind of measuring everything in terms of availability. But users really don't care what -- when something is broken, what's broken. What they care about is can they get to their app or not? Is -- are things slower? Are they working well? And so what we need to measure is measure that. And we can measure it from the end point with digital experience management in a client like an SSE client. We can measure it synthetically using devices sprinkled around an organization that are acting like end points, probing with synthetic probes against the apps that, that organization depends on so that you're continually measuring not just the uptime of devices, but you're measuring the experience of a service. And obviously, what you want to be able to do in addition to that is when something is going wrong or off track, you want to be able to really quickly identify where the problem is so that you can pinpoint it, if possible, automatically remediate it but minimize the time to finding out where the problem is and to resolving it.
James Robertson
executiveRight. So obviously, that's gathering a lot of telemetry, right? The more you understand about the network, right, the more you understand about what the users are doing on the infrastructure, the better understanding you have on how you're going to remediate problems quickly, right, because you're going to have that data at your disposal in order to truly react to a situation as quick as possible and hopefully mitigate any issues that are happening for the user. And you're right, right? I mean, for years, we measured networks in terms of 5 9s and 6 9s, right? And I always thought it was kind of funny because half the time, you would say, well, my network's 5 9s, but I've got something out there in the chain that's probably a 1 9 or a 2 9. And that's the thing that's going to cause you the headache, right? So not necessarily doing red light, kind of green light network management anymore but truly kind of looking at it in this kind of broad array of understanding as to what the user is truly experiencing makes a lot of sense and makes a lot of sense on delivering services just like you said.
David Hughes
executiveYes. I think -- you talked about the red light, green light, and I think the problem with just measuring the uptime or operation of devices is you can have a situation where everything is green from the point of view of the devices, but you've got users calling in with lots of problems. And the users don't care that your charts is all green. The problem is their app is not working. And as an operator of the network, you need to be aware of that before people call you. You need to understand what's the experience of the users and be remediating that before it's becoming annoying enough for them to reach out to you.
James Robertson
executiveI like to say mean time to innocence, right? How quickly can I actually prove that the infrastructure isn't having a problem, all right? And having all that telemetry at my disposal, understanding what the user's truly experiencing helps me justify what the mean time to innocence really is.
David Hughes
executiveYes. Maybe that's a good thing for the networking guy, but for the CIO, he's really responsible for the whole thing, right? So he needs to make sure the app's working as well. So I think that, yes, it's good in that you can -- with these user experience, digital experience monitoring functionality or solutions, you can identify where along a path between the user and application are things going awry and direct it to the right team to go resolve that as quickly as possible. And so really, I think this is the new frontier. You're aligning IT with the user and what they're experiencing. And a lot of it, as you said, revolves around collecting enormous amounts of telemetry and then using AI and automation to process that so that it's -- you're getting the insights and giving humans, the admins, the ability to be able to be in front of those user problems. And we'll actually get to that a little bit later.
James Robertson
executiveRight. And ultimately, tying it back to business expectations, right? They're expecting their infrastructure to be up and functioning and running. So that's the business outcome that they desire from IT, and this is actually helping tell that story to make sure that that's truly the case. All right. David, so let's dive into what the next prediction is.
David Hughes
executiveYes. The fourth prediction is in the area of WiFi. I think in 2024, we are going to see a huge acceleration in the deployment of WiFi in the 6 gigahertz band. As you know, a few years ago with the WiFi 6E standard, WiFi more than doubled the amount of spectrum available. First, many years ago, just 2.5 gigs and 5 gigs. Now in 6 gig, there's a huge amount of spectrum available, and that lets enterprises, a, support higher speeds; but more importantly, higher density, so you're going to have more people in the same space working more effectively. And the technology is seeing different levels of adoption in different places around the world. So depending on what country you're in, the regulators have either moved towards opening up the whole of the 6 gigahertz spectrum, which is the best outcome. In some jurisdictions, they've opened about half of that spectrum, and then there's a few countries where they're still looking at it. But for most of the world, 6 gigahertz is open and ready for action, and you can take advantage of that today with WiFi 6E. We're seeing an enormous uptake in our WiFi 6E APs. I think we've shipped more than any other vendor at this point. And then later in 2024, we'll see WiFi 7 coming on stage. And one of the great things about Wi-Fi 7 is it's completely backwards compatible with Wi-Fi 6E. They both use that 6 gigahertz spectrum in a compatible way. And so people that have been kind of sitting on the sidelines wondering, do I wait for 7 or do I deploy now, it's really clear. You can deploy now with 6E knowing that you're protected with that interoperability. And if the timing works out better, you've got 7 coming just around the corner.
James Robertson
executiveRight. And we're now starting to see an abundance of kind of devices, right? Most of the major manufacturers now have 6E built into their end points that we're carrying in our pockets. So it makes sense to start to utilize that additional space and freeing up some of those airwaves, so to speak, for things that can't exist in the 6 gigahertz band while still giving those devices potentially greater performance and connectivity.
David Hughes
executiveThat's right. I mean I think that's one of the things why wouldn't this have happened in 2022 or 2023, 6E existed. But the uptake really gets accelerated when phones and other devices support the standards. So today, where 6E getting more and more broadly supported, we do expect that to accelerate. And Wi-Fi 7 devices on the horizon, things will only -- that will only accelerate things further. So it's great. I think when -- there's a little bit more complication when people want to use 6 gigahertz outdoors, but there's also been tremendous progress in many countries in terms of the infrastructure to mediate the use of 6 gigahertz outdoors. So that's another kind of game changer that's going to drive this growth in 2024.
James Robertson
executiveYes. Truly opening up this kind of clean spectrum for use on these devices is going to enable so many different new devices to come to market that potentially would have had to have been on a wide network because of their performance needs and now potentially there can be wireless.
David Hughes
executiveYes, that's right. I mean when you think about the demands of users but also the demands of all those devices and oftentimes, like when you're in a hospital, you've got 30 devices per patient, so you have to think about having that connectivity. And that's where what you mentioned about often those devices aren't going to be the earliest adopter of a new Wi-Fi standard, but by adopting 6E or 7, you can take your users, your kind of most advanced end points, move them on to 6 gigahertz, which frees up more bandwidth for all of those legacy but extremely important devices that aren't operating on that same high-velocity consumer refresh cycle.
James Robertson
executiveYes. So that's really fantastic news and just, I would say, just proves that WiFi still has a lot of legs to run.
David Hughes
executiveAbsolutely.
James Robertson
executiveGood stuff. Okay, David. So that brings us to our last prediction for the year. So tell us a little bit about that one.
David Hughes
executiveWell, it comes back around to what you talked about at the top. AI is obviously a huge topic. But I think in IT, AI really has the ability to liberate the IT admin, to turn them into a super admin. And I think -- and most organizations really need this because if you look at the demands on the IT organization, whether it's networking or perhaps, more importantly, cybersecurity, the workload keeps going up and up. The expectations go up and up. But in most organizations, the team is either the same size or perhaps shrinking. And so the workload on admins is unsustainably high, and so we have to find ways to make it easier. And obviously, automation is important, but coupling automation and AI together is one way that we can really give a force multiplier to the IT organization to enable them to do a lot more.
James Robertson
executiveRight. So this really isn't -- everyone worries that AI is going to take away jobs, right? This is really augmenting the job.
David Hughes
executiveThat's right.
James Robertson
executiveAugmenting the capabilities of an engineer or an operator to do more with what they've been given and obviously make better use of the time that they have to do it.
David Hughes
executiveYes. There's a quote I heard, and I don't know who to attribute it to. But it was along the lines of you won't lose your job to AI. You're going to lose your job to somebody who's more effectively using AI. So I think it's really important for CEOs to invest in enabling their organization with technology that's leveraging AI. And I think at HPE Aruba Networking, we've invested a lot into innovating in this area. You often hear that with artificial intelligence, it's only as good as the amount of data that you have because if you want to learn, you need to learn from a lot of examples. And in Aruba Central, we are now managing on order of 3.5 million devices, so -- and all of those devices are streaming telemetry day in, day out. And so we have a wealth of data. And that's a huge advantage as we train our artificial intelligence to derive insights for those admins where we can recommend, based on what we are seeing, ways that they could improve the configuration of the network, improve the reliability of the network. And obviously, at this point, a lot of customers are more comfortable being kind of in the loop of deciding, yes, I want to accept that recommendation. But we've also added the ability to have a check box of if you find the situation in the future, have the AI remediate it automatically. And so...
James Robertson
executiveIt's to truly get to kind of the closed loop.
David Hughes
executiveYes.
James Robertson
executiveThat's just fantastic. So that's taking all of that data, right, all that telemetry, obviously using a model and allowing it to learn about all of the different permutations and then feeding back true intelligence that's going to help enable the network engineer and eventually get to a level of trust between that artificial and the human in order to actually say, yes, I trust you. Go ahead and do that. Change on my behalf.
David Hughes
executiveYes. That's right. And then another -- while we're on AI, another whole -- there's so many kinds of AI, right? But this year has really been the year of GenAI. And I think in networking and security, where you're really seeing that emerge in 2024 is in improvements and advancements in the natural language interfaces. I mean I think most people these days already have a natural language interface, but there's always room to improve. And being able to allow the admin to ask very simple questions and get instant answers that are super targeted at what they're looking for is going to make it much easier for them. They're not having to screen through tons and tons of tables of information or go through extensive documentation doing Google searches, which may or may not yield a relevant answer. They're able to get that answer in the console that they're using with the full context of the situation, all of the metadata as well as documentation, coupled together with generative AI-powered back-end is, I think, what we're looking forward to.
James Robertson
executiveRight. I mean it's just like having another team member, right? And that team member is artificial, but you're able to communicate with that team member and actually get the answer just like I would if I was reaching over the cube wall and talking to one of my colleagues. It's just a case of, hey, what are we seeing right now in this particular situation and here comes the data stream of what it's seeing so that you can then react to it.
David Hughes
executiveYes. Yes. So I think this is going to be a great thing for the IT admin. It will make them more effective in their job. And make it less frustrating, less time doing tedious things and more time doing those interesting things that help move the business forward.
James Robertson
executiveAnd that's really the key point, right? Everything we want to do with this -- the whole predictions really is how do we move the business forward. How do we make it have that agility and flexibility that it needs in order to do whatever is coming next for them?
David Hughes
executiveYes.
James Robertson
executiveSo with that, David, I say, thank you very much for joining me today.
David Hughes
executiveWell, thanks, James. It's been great to go through these predictions with you.
Alex Barbieri
executiveWell, there you go. There is 5 networking predictions to look out for and to help you prepare for 2024. Now before we move on to the next segment, the live translation is online. So select your local language from the drop-down box, and make sure you mute the original audio so you can hear it in your preferred language. Okay. So moving forward now, we're going to introduce Elissa McCormick, our Solutions Advocacy Lead for APJ, who's going to talk through the more relevant opportunities for you to accelerate your network transformation. So let's hand over to Elissa. But just one quick -- one more reminder. [Operator Instructions] But without further ado, let's hand it over to Elissa.
Elissa McCormick
executiveThank you, Alex, and welcome, everyone. And yes, I am looking forward to seeing your questions into the Q&A. David has certainly shared some bold predictions for 2024, and I'd like to take the next 20 minutes or so to explore how HPE Aruba Networking can help you and your organizations prepare for and, in some cases, take advantage of what comes next. Next, there's been a fundamental shift in how and where we're working. We're working from anywhere, and the applications that we're accessing are everywhere. Consider, just for a moment, how many SaaS applications your teams are consuming today. These applications and services are being consumed from both the cloud and also from the Internet in some cases. And in that instance, it is absolutely imperative that security also follows that trend. So it is in this context that we're starting to see organizations rethinking their investment and also sizing of dedicated firewall appliances. Next slide. So over the past -- sort of recognizing this need to move security into the cloud, probably about the middle of last year, we extended our portfolio to include some Secure Services Edge solutions or SSE solutions. And the intent here is to enable your organization to secure the connectivity or the access between the end user, the employee and the application whether that application is in your data center, whether it's in the cloud, co-hosted or somewhere out on the Internet. This concept includes a number of capabilities, and I'll just touch on a couple here. The first one is what you see, ZTNA, and that is Zero Trust Network Access. And this offers secure connectivity to internal applications. So just imagine for a minute that you have the ability to keep contractors off your internal network while providing them with secure access to applications that are hosted in your data center. The other one that I just wanted to touch on, you see the term SWG, S-W-G, or Secure Web Gateway. This is really centered on protecting employees from Internet-based threats. So again, consider an educational environment. Okay? Whilst the student is at school, they are -- there is a duty of care. Their access to the Internet is highly controlled. With the SWG, the Secure Web Gateway, we're able to extend that duty of care to the students as they're working outside of the school premises. So the next section to touch on is the -- what we're doing from a location-based perspective. Okay? So we've secured the connectivity between the end users and the applications. The next step is to secure and optimize connectivity between locations. These locations could be remote workers. They could be branch offices and also even between data centers. So when we -- the objective here from an SD-WAN perspective is really to modernize the network edge. We're replacing those traditional single-purpose appliances and incorporating routing, firewalling, WAN optimization and visibility into that secure appliance to allow for that end-to-end connectivity. Now when we bring both SD-WAN capabilities and SSE capabilities, the result is a unified approach to SASE, Secure Access Service Edge. Next. Now whilst we've spoken about the move to cloud and the need to secure connectivity to cloud-based applications, we also need to consider those applications and devices that are still on-prem. So to this, we have invested heavily in a capability called Aruba Central NetConductor. And here, we're giving organizations the ability to centrally define and deploy policies across their entire organization. So the end result is a single policy framework. The value add for Aruba customers is the ability to bring to life the in-built security capabilities within your existing switching gateways and access points. We know that traditional networking technologies such as VLANs and ACLs are inadequate today to segment different types of traffic. So we've introduced this concept of roles, so being able to profile what is connecting to the network, classify it, authenticate it and then give at least privilege access to the resources it needs based on roles. So this type of segmentation, while -- is really built for those devices that communicate on-premise. So it's focused on reducing the proliferation of any security breaches in the east-west direction. The Aruba Central NetConductor is a full-stack cloud-native security solution that, as I've mentioned, automates the configuration of your wired, wireless and WAN infrastructure. Now being able to secure or essentially define and deploy policies is one aspect. The second area that David mentioned was the ability to recognize applications and also control them, so understanding what applications are traversing the network, having visibility into those applications and then being able to optimize those that are critical for the organization. The second prediction was that Zero Trust principles accelerate the alignment of security and networking objectives. David touched on the contentious objectives that -- between the security team and the networking team. And if we think about their fundamental roles, the security team -- sorry, the networking team is really about enabling devices and things to connect to applications and services. The security team has very much a focus on risk mitigation, compliance. And in many cases, a poor user experience can be the result of an accidental denial of access to particular services. So we've taken a slightly different approach, next slide, to bring about a common architecture that is designed to align these 2 teams, being your security team and your networking team. With a security-first approach to networking that's built on Zero Trust principles within security that is embedded into the network fabric. So let's just build out this slide a little bit and take a look at some of the key components of this architecture. So Zero Trust is underpinning this architecture. It is a concept, as I've mentioned, of providing least privileged access for employees to be productive or for a device to securely communicate with its respective application. Based on the -- for Zero Trust to be effective, it must be applied consistently at every point in the network. And it's really focused on those devices or things that data needs -- their data needs to remain on-premise. And in this context, the security capabilities need to be embedded into the networking infrastructure, be it the gateway, the access point and also the switching fabric. The outcomes of this security-first approach to networking are comprehensive visibility. The IT team and the security team have access to the same insights. They see the same telemetry that's coming in from the infrastructure. I've touched on the need and the value of a global policy, being able to define policies -- security policies centrally and then have them deployed across the organization and enacted or executed on the network fabric. It realizes that edge-to-cloud environment that we're operating in. So we've touched on how we are securing the connectivity between end users and cloud applications. This is really extending that so that we're now looking at securing the connectivity between the devices and things on the network that need to communicate with each other, maybe devices in the data center or, again, with services in the cloud, and of course, leveraging AI operations to automate this entire policy execution. So one example around AI automation is the ability to classify -- visualize and classify and profile the devices that are coming into the network, being able to provide visibility if there are increasing threats, being able to provide IT with insights that alert them to potential security risks. So next slide, how do we put this all together? Okay. On a security-first networking approach encompasses all of the people and things that are connecting to the network. It's not specific to one type of access. It's not specific to those that are coming in via VPN or those that are only connecting via wireless. It is across any type of access. So regardless how that device or thing actually connects to the network, a security policy is implemented. And the enforcement, as I've mentioned, is done on the existing infrastructure. So taking this conversation, going beyond the edge and into the cloud is where we start looking at the SSE cloud enforcement. So leveraging security capabilities in the cloud, leveraging the ability to set standard security policies across the organization regarding how clients and users access applications that are in the cloud. And of course, we have all of those different sources of data and applications that clients and things are trying to connect to. Now if we go to the next slide, we can quickly see just how this is being put together. So on the far left-hand side, again, it's looking at the various options around how devices and things are connecting to the network. We want to be able to visualize everything that is coming into the network. Once we've visualized it, we then look at segmenting it. So being able to segment your guest traffic from your POS traffic. And not just in one branch, not just if that device is connecting on a switch, but end-to-end, across the entire organization. And then finally, looking or leveraging our extensive ecosystem partners to integrate their security solutions into your fabric. So you're starting to get that end-to-end security from the networking perspective. There could be MDM integrations. It could be integrations with firewalls such as Palo Alto or even some application visibility solutions as well in the data center. So really looking at not only what are we doing from an Aruba perspective, but how we are extending security by working with a number of these integration partners. Next slide, please. So the next prediction from David is the need to measure end users' experience and how it is becoming a driving force for operational excellence. So next slide, let's just take a look at what we mean by this sort of digital experience, okay. Today, there is a continued trend for enterprises and organizations to digitize manual processes. We saw a huge uptick of this trend around the COVID time when the -- many organizations were forced to make this change. So we need to now catch up on how are we measuring the end users experiencing accessing these digital resources. So one example that I'd like to give is think of a warehousing. A person is scanning in inventory, okay? They're no longer writing it down, but they're using scanners to scan it in. If those scans don't go through, that is, a, productivity impacting; and b, a poor end user experience for the pickup. So when we're thinking of digital experience and measuring digital experience, it's really around 3 key areas. The first one is the ability to measure the end users. So what is the network? What is the application like for the end user? And to this, we have a number of sensors, which I'll touch on. The ability to do synthetic transaction monitoring. So rather than running agents across the entire organization, rather than having some script tests running, being able to synthetically recreate the workflows that the employees are enacting to access applications and be productive within the organization. And then, of course, there's endpoint monitoring. And it is in this context that agents really come to the forefront. So we'll just build this slide out. Okay. So the solution to do that is our user experience insight. We have dedicated hardware sensors that act like an IT person sitting in your organization, testing connectivity to your network services and also your critical applications, whether they be internal or cloud-hosted 24 hours a day, 7 days a week. It reports the results of those applications to the dashboard that you see. The smiley face representation gives you at-a-glance notification of if all is good within that branch, floor, hallway, foyer, or whether there are issues that IT needs to start doing some triage. Leveraging one of our strategic partnerships with Zebra, we've jointly collaborated on an agent for Zebra handhelds because we know that, that scenario that I gave previously about the scanners not scanning through consistently and impacting productivity, that's a challenge. So we want to be able to provide visibility into, well, what is the performance of the network when I am standing in aisle 3 on warehouse 2. When I'm on the phone, what is the performance of my voice call as I'm walking around the warehouse? So giving those sorts of insights to those organizations who have adopted Zebra as their preferred handheld provider, and then, of course, having the ability to run agents on Android devices. So a bit of a sneak peak. You'll see us continue to release some new agents in a few months' time that will start giving us some more insights into what's happening on your employee and corporate-issued devices. So when we think about this user experience insight, how does it actually work? So we have these sensors, and they can either be dedicated sensors that you see there in white or they could be agents running on devices, and they onboard to any network. So just like your phone connects to any vendor's wireless network, these devices also connect to any vendor's wired or wireless network. It tests the critical applications, so those applications that are absolutely priority for your organization. And then as I've mentioned, it reports on the status of those applications and also the availability and performance or reachability of those applications as well. And it offers a number of outcomes, particularly around change management. So for those of you who are on the call with an IT role, being able to understand the impact of changes that you might have made to AP configuration or firmware upgrades, has that had a positive or a negative impact on your end user constituency. Now the opportunity for our Aruba customers is to have this end-to-end visibility -- next slide, please, where we're able to provide the end user's perspective using the UXI and also the performance and availability of the networking infrastructure with HPE Aruba networking Aruba Central. So having these 2 forms of visibility and insights coming in gives IT the ability to see end to end. So what is the experience like for an end user? And how is my network performing? Are there any trends that I need to be made aware of? Being able to base line and then give examples or alerts where there's been a high deviation from what is considered normal. So in summary, given that end-to-end visibility is available with UXI and also with Aruba Central. Next slide, please. The next prediction is that 6 gigahertz Wi-Fi adoption is skyrocketing and will continue to be the biggest feature of Wi-Fi 7. And this is quite an interesting prediction. And I think to help us get a little bit more context around sort of what David is inferring here, we should take a look at the overall Wi-Fi 7 adoption across the world. Next slide, please. So what you'll see here is from the Wi-Fi org. And it is indicating the availability of the 7,000 megahertz, which is what is required for Wi-Fi 7, across the globe. And I'd like to draw your attention, those countries that are in green, they have -- or that has already been adopted. From a regulatory perspective, that spectrum is available. Just have a glance at the Asia Pacific region. So you'll notice that there are a few countries who have sort of a striped coloring. Those are countries that have adopted or allowed for the Wi-Fi 6E spectrum but have -- still considering the 7,000 megahertz that's required for Wi-Fi 7. Now what are some of the sort of considerations as organizations or enterprises that we need to think about. Firstly, the fact that there's limited Wi-Fi 7 spectrum approved across the globe. It uses very large channels, which means that there are less overlapping channels available for us to use across the enterprise. The third is their built-in features that require the end client's support in order to take advantage of them, and also, there are new power requirements for the access points. So that is the reason why Wi-Fi 6E is -- still remains the leading feature of Wi-Fi 7. So if we look at some of the use cases that we have there that are available today with Wi-Fi 6E being the ability to do low latency calling, next-generation experiences, having the throughput, the capacity to be able to use things like AR and VR and also multi-gig capacity for larger environments. Think of the lecture theaters at universities. So today, with Wi-Fi 6E, we're able to address the majority of the enterprise requirements. Next slide, please. In doing so, we have a comprehensive portfolio. Starting from the left -- far left-hand side with a very compact access point that I think is great for those pop-up scenarios. Think of instances where you need Wi-Fi connectivity on demand. It could be that there is a team of students going out to do some research and they need some Wi-Fi connectivity to be able to collaborate, to be able to then send information back to the university. Pop-up stores also need Wi-Fi connectivity or POS terminals, handheld devices, et cetera. So being able to have that capability to add in a SIM card and then have Wi-Fi connectivity on demand, all the way through to enterprise-grade Wi-Fi 6E cable access points. So you'll notice that the entire portfolio has been certified. So you have assurance that the Wi-Fi standards has been adhered to across the Aruba range. So if we go to the next slide, we're really starting to extend connectivity capabilities. Gone are the days where access points are just used to connect Wi-Fi-based devices. Where we are heading and what is available today is the ability to connect non-Wi-Fi devices to your IT infrastructure. So these could be your BLE sensors. They could be Zigbee door locks or they could have specific use cases like air monitoring, as an example, via a USB connection. So the value proposition of having this capability is twofold. One, it is an investment protection because we're leveraging the capabilities of the Aruba infrastructure for more use cases. Secondly, there is a security benefit as well. So without this capability, there would be gateways deployed. And these gateways are typically deployed by the line of business. In many cases, IT don't see them. They don't have visibility. They don't manage them yet they're connected to the network. So what happens is we end up with these shadow networks. When there are shadow networks, we know that there is an opportunity for security breaches. So being able to bring all of that sensor traffic, whether it be BLE, Zigbee, via a USB or Wi-Fi onto the network, we can visualize it. Once we visualize it, we can secure it. Now you may be thinking, okay, well, that's fantastic. But what is Aruba doing to help me manage this sea of sensors. So if we go to the next slide, we have brought about an IT operations dashboard. So the left-hand side is the app store. So this is where you would go as an enterprise to download, deploy, purchase the application that you are interested in. Think of the App Store that you have on your iPhone or the Play Store for Google, okay? Same concept. You select the app. It downloads to your phone. In this instance, we're selecting the application and it's being downloaded on to the network. On the right-hand side is the visibility. So giving visibility into those non-IP things that are connecting to your network, understanding the battery life of those sensors, being able to help with that life cycle management because in many instances, it's not 1 or 2 sensors, it's thousands and tens of thousands that end up being deployed. So the few key capabilities to consider when exploring what is available with Wi-Fi 6E today. Moving on to our next prediction. AI will liberate IT admins. I have to say, this is probably one of my favorites. Being able to use artificial intelligence to augment, not to replace, augment IT; being able to automate processes. One process being the ability to capture the necessary logs in the event of an outage and raise a TAC [ case ] with -- automatically within the platform. So rather than sending an engineer out at 2:00 in the morning, being able to have that peace of mind that the Aruba Central platform along with the Aruba infrastructure understands where the problem is and then captures the necessary logs so that they can be transferred to TAC in order to start troubleshooting. So that's just sort of one of the examples of where we're leveraging some artificial intelligence to augment IT admins. Now how are we doing this? Next slide. We have invested very heavily in building the industry's largest data lake. So we are consuming the telemetry, not the data, just the telemetry from the Aruba infrastructure. So what is the Wi-Fi coverage? What is the power? And what sort of resources are the access points using at the moment? What is the S&R? All of that information is being captured into a data lake. We are collecting that from the wireless network, the switching fabric and also the wide area network. With this information, we can then start doing some peer comparisons. We can then start looking at the organization to understand, well, what does normal look like for your organization versus my organization? What does normal look for your organization during Christmas time versus my organization around tax time. So being able to understand what's normal and then report on any trends, as I've mentioned, any deviations from what's considered normal so that IT can start to be proactive rather than reactive. So if we look at the next slide, this is just some of the capabilities that are realized with AI Ops. So I'll just fill this slide out. Okay. So the ability to provide a way to proactively warn IT if we see anomalies on the network. Okay? So rather than waiting until it becomes service impacting and help desk is phoned, bring those up, bring those to IT's attention so that they can then start taking action and, where possible, provide the root cause and also the remediation. So what do I need to take as the next step? Being able to, as I've mentioned, accurately profile IoT clients and devices that are connecting to the network. And I'll take a look at an example of that in a minute -- and having visibility into the performance of applications from the end users' experience. So we did some research with our customers, and asked them the value that Aruba Central provides to their organizations. And it was very interesting to see some of the results that came back being -- using AIOps capabilities, augmenting IT delivered them a faster mean time to resolution. Having that ability to prevent, to be alerted proactively to issues before they become service impacting resulted in a significant drop of trouble tickets. So just a couple of points of value around the AIOps capabilities that is available within Aruba Central. Now I did touch on -- if we go to the next slide, this concept of client insights. So being able to use machine learning to visualize what's connected to the network. How do we do that? Let's take a scenario. So we have 2 iPads. And to the network, they look exactly the same. They present the same. They had the same operating system. They have the same Wi-Fi connectivity. Yet one iPad is being used to visit management, and one iPad is being used as a meeting room booking. They have very different roles on the network. So being able to visualize the fact that there are these 2 devices, but then going deeper. So what is that device's behavior on the network? Is it static? Does it come on and off the network in regular intervals? Or does it roam continuously? Also, what applications is it using? So if we're looking at the visitor iPad, it's accessing the visitor service. If we're looking at the meeting room iPad, it's accessing the meeting room service. Understanding how these devices are using the network, what applications they're using, we can use that to help us classify those devices. Once we've classified them as a visitor iPad, meeting room iPad, we can assign security policies. So that is compelling. Being able to go beyond assigning security policies to corporate devices, but looking at IoT and things that are connecting to the network. So next slide. In summary, David has touched on 5 key points, okay? The death of the stand-alone firewall. We know that we're using cloud applications. Security needs to follow where we're consuming those applications. So it makes sense to start moving some security functionality to the cloud. Zero Trust principles accelerate the alignment of IT and security networking objectives. Being able to have a common visibility, being able to have the network start to play a much greater role in the security framework by virtue brings these 2 teams together with a common objective. Measuring the end-user experience becomes a must for driving operational excellence. We know that many things are digitized now and that is only going to continue. So we need to be able to have the tools to be able to measure the end user's experience as they're using these digital resources. 6 gigahertz Wi-Fi adoption skyrockets, and Wi-Fi 6 will continue to be the biggest feature for Wi-Fi 7. We've seen the availability of the spectrum. We've spoken about some of the future capabilities and the need for new clients, increased power and careful consideration around how we design wireless networks using Wi-Fi 7. In contrast, Wi-Fi 6E is readily available today. We -- there are multiple enterprise use cases. And if you're thinking about investment protection, that is certainly the direction that I would encourage today in order to start realizing return on investment immediately. And we touched on the way AI will augment the operations team and make them more efficient, allow them to work on higher-value items than the break/fix that can tend to happen. So with that, Alex, I'm hoping that we have time for a couple of questions.
Alex Barbieri
executiveWe do. So thank you for that, Elissa. Let's welcome Siok Been to the Q&A section as well. Siok Been, welcome. And we'll go through a couple of questions that we have here. We have some very, very eagle-eyed attendees in the audience who noticed a couple of things on slides. So let's dig into that first. The first one of those is we have noticed a slide that says New Central. Has it been released?
Siok Been Yeo
executiveMaybe I can take that? So we are in the process of running beta in APJ. Right now, we have multiple customers that has opt to be in the beta. So we were still in the rollout in the whole APJ region. That said, I think some of the functionality that Elissa has mentioned in the call, the AI functionality are available in our existing Central platform. So do not wait. If you want, you can try that in terms of like getting to know a little bit more about the AI functionality in that way.
Elissa McCormick
executiveIf I can add to that, Siok Been, if you're interested in a demo of the New Central, please reach out to us. So we're more than happy to start demonstrating some of the capabilities. But it's also a great opportunity, as Siok Been mentioned, to leverage the AI capabilities that are available today.
Alex Barbieri
executiveThank you both. The other thing that was noticed is that HPE is actually not in the SSE Magic Quadrant. So Siok Been, do you want to talk a little bit about why that's the case?
Siok Been Yeo
executiveYes. During the -- I mean, in the past, [indiscernible] has a separate Magic Quadrant, SSE as well as SD-WAN, right? So when they were actually evaluating like the combined Magic Quadrants, right, we are in the process of acquiring [ FCs ]. So unfortunately, we did not make the cut. But we do have a very strong portfolio right now with the SSE with the acquiring of the [ FC solution ]. And on part of that, as you know, that we are in 7 years in a magic leader quadrant for the wired and wireless. So be sure that -- be confident that you have a strong portfolio to go with Aruba.
Alex Barbieri
executiveFantastic, and looking forward to seeing that quadrant next year and seeing how we're placed. Next question is, can the UXI center dashboard integrate with our network monitoring system so we can get notified if an agreed threshold is breached?
Elissa McCormick
executiveSo do you want to take that, Siok Been?
Siok Been Yeo
executiveYes, let me go to jump in. Yes, we do have hopes right, to help in the integration. And also one thing we want to bring up the UXI solutions is not only designed for Aruba network environment, right? So if you are not Aruba Network environment, we also get into -- leverage on the UXI to understand user experience. And hopefully, one day, you can upgrade your infrastructures to Aruba Networking Solution so that you will enjoy the greater user experience with that.
Alex Barbieri
executiveFantastic. Now picking up on the AI liberating IT admins, Elissa, can you talk a little bit about the security side of that? And what can the current AI solutions enable when it comes to security that Aruba has?
Elissa McCormick
executiveSo from a security approach, really being focused around the visibility and then in order to profile and classify devices. Once we've classified them, we can then start assigning security policies to those particular devices. Looking at ways to also optimize the network performance as well, being able to pinpoint if there are sort of deviations from what's normal in the network, so really around making IT a lot more proactive than reactive.
Alex Barbieri
executiveFantastic. Now one of the other big headlines that came in these predictions is the death of the stand-alone firewall. So Elissa, can you -- it is a big headline and it's a good headline. But there's a little bit more to it in terms of how the firewall actually plays in the environment. Do you want to chat a little bit more about the role of the firewall and go to a bit more detail on what David was talking about?
Elissa McCormick
executiveCertainly. So David was being very prescriptive when he was talking about a stand-alone firewall. And that is an appliance that is dedicated to just a firewalling function. If we think about the branch environment in particular, what we have seen in branches, WAN optimization, routers, firewalling, IDS, IPS. We're really focused on consolidating all of those capabilities into a single appliance. It doesn't mean that the firewalling function itself is going away. What David is referring is that the appliance itself in branch instances, it can be consolidated with other functions. In large campus environments, depending on where the applications are sitting, there may be opportunities to reduce investments in those firewalls, especially if you're delivering a secure connection directly from the end user to the application that they're accessing. It bypasses the network that forms a secure tunnel end-to-end. So again, it's just probably not the death of firewall function, but the appliance itself.
Siok Been Yeo
executiveI would like to add on to that, yes. On top of that, like, we can see that today we are working everywhere and anywhere, right? So it can be from home or remote areas. So what David has also mentioned about in the session is the fact that every touch point where we connect to the network, right, itself has to be the passport checkpoint, right? So where is enforcement going to be at. So that's why we call it a security that built it into the networking infrastructure. And today, we support that.
Alex Barbieri
executiveFantastic. And we will go with the final question for the day. I am currently an Aruba customer. How do I adopt AIOps? Is there any hardware replacement required?
Siok Been Yeo
executiveSo I can -- Elissa, how about you take that?
Elissa McCormick
executiveGo ahead, Siok Been.
Siok Been Yeo
executiveRight. So okay. Yes. So if you are existing Aruba customer, all you need to do is just firstly get onto the Aruba cloud platform, which is Central. All the capability is built in on this central platform, right? So it were [ FC ] infrastructure, be it AP or switch [indiscernible] we start running on enjoy the features that you have on this network infrastructure. Elissa, you want to jump in more?
Elissa McCormick
executiveYes. So what Siok Been mentioned is absolutely correct. By virtue of being an Aruba customer, moving to Aruba Central to give you that end-to-end visibility and control in [ X ] AI capabilities. So we're collecting telemetry from your devices, looking at how they're performing, identifying any trends. And all of that comes with Aruba Central.
Alex Barbieri
executiveFantastic. So I think we will leave it there for today. Thank you everyone for joining and spending the time with us. We appreciate that you do take time out of your day to spend it with us and hear all about these predictions of what's to come. We trust that you found it insightful and useful. If you have any questions at all, please don't hesitate. Reach out to your Aruba account manager or hit arubanetworks.com to get all your questions answered. And we will follow this up with a recording. So if you want to play any of this back, you'll have a link for that soon enough. And before you do drop off, if you could spend a few moments -- sorry -- to fill out the post webinar questionnaire, it would be much appreciated. Other than that, thank you very much. Stay safe, stay healthy, and we'll see you again very soon.
Elissa McCormick
executiveThanks, everyone. Bye.
Siok Been Yeo
executiveBye.
Read the full transcript via the API
You're viewing the first half of this call. Get the complete Hewlett Packard Enterprise Company transcript — plus 251,000+ transcripts from 12,000+ companies, speaker segments, AI summaries and full-text search — through the EarningsCalls.dev API.
Get the API View API docs →This call discussed
For developers and AI pipelines
Programmatic access to Hewlett Packard Enterprise Company earnings transcripts and 251,000+ others is available through the
EarningsCalls.dev REST API. Plans from $24.99/month — full transcripts, speaker segments,
full-text search, and the recently-added /api/v1/transcripts/recent polling endpoint for ETL pipelines.