Cisco SD-WAN (Viptela) Migration, QoS and Advanced Policies Hands-on Lab
|
|
- Eustace Watkins
- 6 years ago
- Views:
Transcription
1
2 Cisco SD-WAN (Viptela) Migration, QoS and Advanced Policies Hands-on Lab Ali Shaikh Technical Leader Faraz Shamim Sr. Technical Leader Mossaddaq Turabi Distinguished ENgineer
3 Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco Live Mobile App 2. Click Join the Discussion 3. Install Spark or go directly to the space 4. Enter messages/questions in the space cs.co/ciscolivebot#
4 Agenda Introduction Migration Strategies Templates + Zero Touch Provisioning Policy Overview Hub & Spoke Topology + Preferential DataCenters Service Chaining Cloud Express for SaaS Application Aware Routing
5 Introduction
6 Introduction Cisco SD-WAN is the next generation software defined architecture for the WAN. It is a controller based architecture leveraging centralized policies. This lab assumes an understanding of the Cisco SD-WAN components and how they construct overlay communication between them: vmanage The overlay management appliance vsmart The overlay policy and routing enforcement appliance vbond The overlay orchestrator appliances vedge The network routing edge appliance The goal of this lab is to learn to manipulate the overlay beyond a basic setup to achieve different topologies and network functions. 6
7 Cisco SD-WAN Architecture vorchestrator Service Orchestration vmanage vanalytics APIs 3 rd Party Automation Management Plane vbond vsmart Controllers Control Plane MPLS INET 4G vedge Routers Data Plane Cloud Data Center Campus Branch SOHO 7
8 Cisco SD-WAN Elements and Functions vbond orchestrator First point of authentication (white-list model) Orchestrates control and management plane Facilitates NAT traversal vmanage is the NMS system (a single pane of glass), for the entire SD-WAN fabric vsmart controllers: Distribute reachability and security information between the vedge routers Distribute data and app-route policies to vedges Enforce control policies vedge routers WAN Edge Routers Establishes OMP session with vsmart for overlay routing Supports legacy protocols for LAN BGP, OSPF, VRRP Establishes a secured data plane between sites Available as HW appliance or as a softaware-only virtual machine (VM) 8
9 Secure Segmentation - VPNs IF VPN10 IF MPLS Service (VPNn) Transport (VPN0) IF VPN20 IF INET Management (VPN512) VPNs are isolated from each other, each VPN has its own forwarding table IF vedge router allocates label to each of it s service VPNs and advertises it as route attribute in OMP updates - Labels are used to identify VPN in the incoming packets 9
10 Fabric Operation Reachability, Security/TLOCs and Policies OMP vsmart DTLS/TLS Tunnel IPSec Tunnel BFD OMP Update OMP Update Policies OMP Update OMP Update BGP, OSPF, Connected, Static vedge1 VPN1 A VPN2 B T1 TLOCs Transport1 Transport2 TLOCs VPN1 C vedge2 T3 T4 T1 T2 T4 T2 T3 VPN2 D BGP, OSPF, Connected, Static Subnets Subnets
11 Configurations and Zero Touch Provisioning (ZTP)
12 Configuration and Policy Framework vmanage NETCONF/YANG Device Configuration Device Configuration Centralized Control Policy (Fabric Routing) Centralized Data Policy (Fabric Data Plane) Centralized Policies Localized Policies Local Control Policy (OSPF/BGP) Local Data Policy (QoS/Mirror/ACL) Centralized App-Aware Policy (Application SLA) OMP vsmart Centralized Data Policy (Fabric Data Plane) Centralized App-Aware Policy (Application SLA) vedge 12
13 Zero Touch Provisioning - Overview The Zero Touch Provisioning service relies on: A license file provided by Cisco for the overlay. Explicitly marking a device as valid or staging. A configuration template for the device. A device configuration template consists of Basic Information Device identifiers (Hostname,, Site-ID) Transport & Management VPN The VPNs for circuits and out-of-band management Service VPN The LAN side at the branch or datacenter Additional Templates Miscellaneous items such as Banners Each section is made of independent modules called Features. A full device template is made up of combining all the Features into the relevant Device Sections to create a Device Template. 13
14 GUI based Templates / Feature Templates 14
15 QoS/SNMP/Banner Templates 15
16 QoS Configurations policy app-visibility flow-visibility class-map class VOICE queue 0 class VIDEO queue 1 class BIZ-DATA queue 2 class BEST-EFFORT queue 3 qos-scheduler besteffort_scheduler class BEST-EFFORT bandwidth-percent 5 buffer-percent 5 drops red-drop qos-scheduler bizdata_scheduler class BIZ-DATA bandwidth-percent 50 buffer-percent 50 drops red-drop qos-scheduler video_scheduler class VIDEO bandwidth-percent 30 buffer-percent 30 qos-scheduler voice_scheduler class VOICE bandwidth-percent 15 buffer-percent 15 scheduling llq qos-map WAN-QOS qos-scheduler besteffort_scheduler qos-scheduler bizdata_scheduler qos-scheduler video_scheduler qos-scheduler voice_scheduler access-list GuestWiFi sequence 10 action accept class BEST-EFFORT default-action accept 16
17 CLI based Device Configuration Template Take the CLI based configuration of the device Create a Device template Highlight the text and create a device specific variable Policy definition is part of the device template Used for Branch 1 devices 17
18 CLI based Device Configuration Template 18
19 Zero Touch Provisioning - Workflow Zero Touch Provisioning Server Control and Policy Elements Assumption: DHCP on Transport Side (WAN) DNS to resolve ztp.viptela.com 1 2 vedge Full Registration and Configuration 19
20 Migration Step 1 DC Deployment
21 Baseline Topology and Configuration DC1 San Jose Wkst-1 Host FW Host FW DC2 Chicago / /24 BGP AS DC1-MPLS-CE OSPF OSPF DC2-MPLS-CE BGP AS MPLS Transport AS 100 BGP AS BR1-MPLS-CE / BR2-MPLS-CE / BGP AS OSPF Los Angeles Branch Type 1.10 Test Host Dallas Branch Type /24.10 Test Host 21
22 Cisco SD-WAN Site Brownfield Deployment Gateway/DC Site Deployment DC/Gateway Site BGP/OSPF Identify Gateway/DC Sites providing connectivity between SD-WAN and legacy sites Legacy sites talk to each other directly SD-WAN sites talk to each other directly Internet OMP SD-WAN Overlay MPLS Legacy router/connectivity is dropped in the DC/Gateway sites once migration is complete Legacy/MPLS Sites SD-WAN Sites 22
23 Step 1 : Deploy vedges in the DC New capabilities and enhancements Bandwidth Augmentation and Hybrid Transport (MPLS + Internet) VPN Segmentation (Corporate-10, PCI/IOT-20, Guest WiFi-40) 23
24 Deploy DC vedges along with existing MPLS CPEs DC1 Site ID 100 San Jose Wkst-1 Host FW Host FW DC2 Site ID 200 Chicago / OSPF DC1 DC1 VEDGE OSPF.212 DC2 DC2 VEDGE / Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP /24 Los Angeles BR1 Site ID Test Host Dallas BR2 Site ID / / Test Host OSPF
25 Zero Touch Provisioning Step 2 Deploy vedge in BR2 using ZTP
26 Zero Touch Provisioning Lab Notes In this lab, a number of device templates have been created. In this lab, the features that will be used for all the sites have also been created. We will manipulate the values and fields already set in the features in this lab to modify the environment. We will use the device templates to push configuration to devices at the data center and at the branch. Once the configuration has been setup for the devices, we will observe the Zero Touch Provisioning process by which devices that have not become part of the network are brought in to the environment. 26
27 Replace Existing MPLS CE with vegde in Branch 2 DC1 Site ID 100 San Jose Wkst-1 Host FW Host FW DC2 Site ID 200 Chicago / OSPF DC1 DC1 VEDGE OSPF.212 DC2 DC2 VEDGE / Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP /24 Los Angeles BR1 Site ID Test Host Dallas BR2 Site ID / /24 BR2 Test Host OSPF
28 Traffic flow between Migrated and non-migrated Sites DC1 Site ID 100 San Jose Wkst-1 Host FW Host FW DC2 Site ID 200 Chicago / OSPF DC1 DC1 VEDGE OSPF.212 DC2 DC2 VEDGE / Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP /24 Los Angeles BR1 Site ID Test Host Dallas BR2 Site ID / /24 BR2 Test Host OSPF
29 Migration Step 3 Deploy vedges in BR1 with TLOC Extension
30 TLOC Extension and Configuration vpn 0 interface ge0/0 description MPLS tunnel ip address /30 tunnel-interface encapsulation ipsec color mpls restrict max-control-connections 1 [service list] interface ge0/2 description INET tunnel ip address /24 tunnel-interface encapsulation ipsec preference 100 color biz-internet restrict max-control-connections 1 [service list] interface ge0/3 ip address /24 tloc-extension ge0/0 no shutdown ip route / ip route / MPLS br1-vedge1 ip route / ge0/ /24 ge0/ /24 ge0/ /24 Add route to reach br1-vedge2 mpls tunnel end-point ge0/0 dhcp ge0/ /24 ge0/ /24 INET br1-vedge2 vpn 0 interface ge0/0 description INET tunnel ip dhcp-client nat Do not forget NAT tunnel-interface encapsulation ipsec color biz-internet restrict max-control-connections 1 [service list] interface ge0/2 ip address /24 tloc-extension ge0/0 no shutdown interface ge0/3 description MPLS tunnel ip address /24 tunnel-interface encapsulation ipsec color mpls restrict max-control-connections 1 [service list] ip route /
31 Replace Existing MPLS CE with vegdes in Branch 1 DC1 Site ID 100 San Jose Wkst-1 Host FW Host FW DC2 Site ID 200 Chicago X / OSPF DC1 DC1 VEDGE OSPF.212 DC2 DC2 VEDGE / X Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP BR VRRP.2.3 BR1 VEDGE BR / OSPF /24 Los Angeles BR1 Site ID Test Host Dallas BR2 Site ID /24 Test Host.21
32 VPN 20 IOT/PCI VPN Segment DC1 Site ID 100 San Jose Test Host Test Host DC2 Site ID 200 Chicago / /24.2 VRRP.3.2 VRRP DC1 DC1 VEDGE DC2 DC2 VEDGE Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP BR /24 Los Angeles BR1 Site ID 300 VRRP Test Host BR1 VEDGE /24 Dallas BR1 Site ID 400 BR2 Test Host
33 VPN 40 GuestWiFi VPN Segment DC1 Site ID 100 San Jose DC1 DC1 VEDGE DC2 DC2 VEDGE Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP BR /24 Los Angeles BR1 Site ID 300 VRRP Test Host BR1 VEDGE /24 Dallas BR1 Site ID 400 BR2 Test Host
34 Policy
35 Policy - Overview The SD-WAN overlay is controlled by centralized policies. The policies that dictate the network topology are called Control Policies. These policies manipulate the advertisement of routes and TLOCs (Transport Location) information. The policies are configured via the vmanage GUI. The policies are applied to the vsmart controller. The vsmart controller propagates the necessary information to the vedge routers as per the policy directives. 35
36 Policy - Workflow Inbound Policy: determines which routes are installed in the local routing database of the vsmart controller. Outbound Policy: applied AFTER a route is retrieved from routing database, but BEFORE the vsmart controller advertises it. 36
37 Hub & Spoke Topology
38 Hub & Spoke Topology By default SDWAN solution supports full mesh To make the solution more scalable, hub and spoke topology can be created In our example, we will create hub and spoke for VPN 10 and 20 VPN 40 will be restricted using VPN-Membership policy Currently, Branch 1 can directly talk to Branch 2 because of the full mesh topology After applying StrictHub-n-Spoke policy, Branch 1 can talk to Branch 2 via hub on 38
39 Strict Hub and Spoke Before Policy Application DC1 Site ID 100 San Jose Wkst-1 Host FW Host FW DC2 Site ID 200 Chicago X / OSPF DC1 DC1 VEDGE OSPF.212 DC2 DC2 VEDGE / X Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP BR VRRP.2.3 BR1 VEDGE BR / OSPF /24 Los Angeles BR1 Site ID Test Host Dallas BR2 Site ID /24 Test Host.21
40 Policy Definition vpn-membership vpnmembership_ sequence 10 match vpn-list corpvpn action accept sequence 20 match vpn-list pcivpn action accept default-action reject control-policy Hub-n-SpokeALLVPN sequence 1 match tloc site-list AllDC action accept sequence 11 match tloc action reject sequence 21 match route site-list AllBranches vpn-list corpvpn action reject sequence 31 match route site-list AllBranches vpn-list pcivpn action accept set tloc-list DC-TLOCS default-action accept 40
41 Strict Hub and Spoke After Policy Application DC1 Site ID 100 San Jose Wkst-1 Host FW Host FW DC2 Site ID 200 Chicago X / OSPF DC1 DC1 VEDGE OSPF.212 DC2 DC2 VEDGE / X Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP BR VRRP.2.3 BR1 VEDGE BR / OSPF /24 Los Angeles BR1 Site ID Test Host Dallas BR2 Site ID /24 Test Host.21
42 Preferential Data Centers
43 Preferential Data Centers By default vedge will perform load balancing for all routes coming via the DC There are situations when a certain site may want to prefer one DC over the other In our example, there are 4 vedges in the DC advertising DC routes These DC are also advertising default route ( ) for the Internet The goal: Branch 1 should prefer DC1 for default routes and Branch 2 should prefer DC2 for the default route 43
44 DC Preference Before policy application DC1 Site ID 100 San Jose Wkst-1 Host FW Host FW DC2 Site ID 200 Chicago X / OSPF DC1 DC1 VEDGE OSPF.212 DC2 DC2 VEDGE / X Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP BR VRRP.2.3 BR1 VEDGE BR / OSPF /24 Los Angeles BR1 Site ID Test Host Dallas BR2 Site ID /24 Test Host.21
45 DC Preference Policy control-policy PreferDC1 sequence 1 match route site-list DC1 action accept set preference 100 sequence 11 match route site-list AllBranches vpn-list pcivpn action accept set tloc-list DC-TLOCS default-action accept control-policy PreferDC2 sequence 1 match route site-list DC2 action accept set preference 100 sequence 11 match route site-list AllBranches vpn-list pcivpn action accept set tloc-list DC-TLOCS default-action accept 45
46 DC Preference After policy application DC1 Site ID 100 San Jose Wkst-1 Host FW Host FW DC2 Site ID 200 Chicago X / OSPF DC1 DC1 VEDGE OSPF.212 DC2 DC2 VEDGE / X Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP BR VRRP.2.3 BR1 VEDGE BR / OSPF /24 Los Angeles BR1 Site ID Test Host Dallas BR2 Site ID /24 Test Host.21
47 Service Insertion
48 Service Insertion Workflow VPN1 Traffic Path Control Plane Remote Office vsmart FW VPN1 Regional Hub MPLS INET 4G Policy Advertisement Service Advertisement VPN1 Data Center vedge router with connected service makes advertisement - Service route - Service VPN label Service is advertised in the VPN Service can be singly or dually connected (Firewall trust zones) to the advertising vedge Policies are used to insert the service into the matching traffic forwarding path - Match on 6-tuple or DPI signature - Applied on ingress/egress vedge 48
49 DC Preference Policy control-policy MultiTopologyFWInsertion sequence 1 match route site-list AllBranches vpn-list pcivpn action accept set tloc-list DC-TLOCS sequence 11 match route site-list AllBranches vpn-list corpvpn action accept set service FW vpn 10 default-action accept DC vedges Configuration vpn 10 service FW address
50 Service Insertion Traffic Flow after policy Activation DC1 Site ID 100 San Jose Wkst-1 Host FW Host FW DC2 Site ID 200 Chicago X / OSPF DC1 DC1 VEDGE OSPF.212 DC2 DC2 VEDGE / X Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP BR VRRP.2.3 BR1 VEDGE BR / OSPF /24 Los Angeles BR1 Site ID Test Host Dallas BR2 Site ID /24 Test Host.21
51 Application-Aware Routing
52 Application Aware Routing - Overview Cisco SD-WAN provides the ability to use multiple transports in more than just an active-active fashion. It provides the ability to use intelligent decision making for application steering on different transports. App-Aware Routing leverages the following logic: Measure loss, latency, jitter characteristics on all active tunnels. Network administrator defines a central policy that specifies SLAs for applications. The SD-WAN solution steers application traffic onto the paths that satisfy the SLAs. Traffic can be steered on any best path, or provided hierarchy in terms of what preferred path to be taken for a given application. 52
53 Application Aware Routing - Workflow vedges measure path liveliness and quality vmanage App Aware Routing Policy App A path must have: Latency < 150ms Loss < 2% Jitter < 10ms Remote Site Internet Path1: 10ms, 0% loss, 5ms jitter Path2: 200ms, 3% loss, 10ms jitter Path3: 140ms, 1% loss, 10ms jitter Path 2 MPLS 4G LTE Regional Data Center IPSec Tunnel 53
54 Application Aware Routing Lab Notes In this lab, you will: Learn to use the Simulate Flows to observe behavior in default state. Learn to view and modify SLAs for applications. Use a policy that steers DSCP 46 traffic onto MPLS as its preferred path. Observe via using the Simulate Flows capability that traffic steering takes effect. Inject latency into the environment. Observe via using the Simulate Flows that traffic is steered onto a path that satisfies the SLA. 54
55 CloudExpress
56 CloudExpress Overview SD-WAN Fabric 3 a b Direct Connect Cloud Exchange INET MPLS Carrier-Neutral Facility (CNF) Branch 4G 2 Regional Facility (Data Center/Colo) INET 1 Direct Internet Access (DIA) 56
57 CloudExpress Lab Implementation DC1 Site ID 100 San Jose Wkst-1 Host FW Host FW DC2 Site ID 200 Chicago CXP Gateway / OSPF DC1 DC1 VEDGE OSPF.212 DC2 DC2 VEDGE / CXP Gateway Controllers MPLS Transport AS 100 Internet Transport AS 200 ZTP CXP DIA BR VRRP.2.3 BR1 VEDGE BR / OSPF CXP DIA /24 Los Angeles BR1 Site ID Test Host Dallas BR2 Site ID /24 Test Host.21
58 CloudExpress Lab Notes In this lab, you will: Add in a new application to Cloud Express Learn how to add a new DIA Site Monitor vqoe scores for different applications and sites 58
59 Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco Live Mobile App 2. Click Join the Discussion 3. Install Spark or go directly to the space 4. Enter messages/questions in the space cs.co/ciscolivebot#
60 Please complete your Online Session Evaluations after each session Complete 4 Session Evaluations & the Overall Conference Evaluation (available from Thursday) to receive your Cisco Live T-shirt All surveys can be completed via the Cisco Live Mobile App or the Communication Stations Complete Your Online Session Evaluation Don t forget: Cisco Live sessions will be available for viewing on-demand after the event at
61 Continue Your Education Demos in the Cisco campus Walk-in Self-Paced Labs Tech Circle Meet the Engineer 1:1 meetings Related sessions 61
62 Thank you
63
Serviceability of SD-WAN
BRKCRS-2112 Serviceability of SD-WAN Chandrabalaji Rajaram & Ali Shaikh Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco Live
More informationIntroduction to Cisco SD- WAN (Viptela)
LTRCRS-2005 Introduction to Cisco SD- WAN (Viptela) Brad Edgeworth, Systems Engineer, CCIE#31574 Dustin Schuemann, Solutions Architect Madhavan Aruanchalam, Technical Marketing Engineer Cisco Spark How
More informationCloud-Ready WAN For IAAS & SaaS With Cisco s Next- Gen SD-WAN
BRKCRS-2113 Cloud-Ready WAN For IAAS & SaaS With Cisco s Next- Gen SD-WAN Sumanth Kakaraparthi Product Leader SD-WAN Manan Shah Director Of Product Management Cisco Spark How Questions? Use Cisco Spark
More informationEnterprise SD-WAN Financial Profile (Hybrid WAN, Segmentation, Quality of Service, Centralized Policies)
CVP CVP Enterprise SD-WAN Financial Profile (Hybrid WAN, Segmentation, Quality of Service, Centralized Policies) 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information.
More informationCVP Enterprise Cisco SD-WAN Retail Profile (Hybrid WAN, Segmentation, Zone-Based Firewall, Quality of Service, and Centralized Policies)
CVP CVP Enterprise Cisco SD-WAN Retail Profile (Hybrid WAN, Segmentation, Zone-Based Firewall, Quality of Service, and Centralized Policies) 2018 Cisco and/or its affiliates. All rights reserved. This
More informationIntelligent WAN: Leveraging the Internet Secure WAN Transport and Internet Access
Now a part of Cisco We bought Viptela Intelligent WAN: Leveraging the Internet Secure WAN Transport and Internet Access Branch Hybrid WAN Transport IPsec Secure MPLS (IP-VPN) Private Cloud Virtual Private
More informationCisco SD-WAN and DNA-C
Cisco SD-WAN and DNA-C SD-WAN Cisco SD-WAN Intent-based networking for the branch and WAN 4x Improved application experience Better user experience Deploy applications in minutes on any platform with consistent
More informationSD-WAN: Cloud onramp for SaaS Deployment Guide
CISCO VALIDATED DESIGN SD-WAN: Cloud onramp for SaaS Deployment Guide July 2018 Table of Contents Table of Contents Introduction... 1 Cloud onramp for SaaS feature overview... 2 Use cases...2 Application
More informationSD-WAN Advanced Operations & Troubleshooting Bootcamp (SDWOTS)
SD-WAN Advanced Operations & Troubleshooting Bootcamp (SDWOTS) COURSE OVERVIEW: SD-WAN: Advanced Operations & Troubleshooting Bootcamp (SDWOTS) v1.0 is a five-day course. We will cover Cisco Software-Defined
More informationFundamentals and Deployment of Cisco SD-WAN Duration: 3 Days (24 hours) Prerequisites
Fundamentals and Deployment of Cisco SD-WAN Duration: 3 Days (24 hours) Prerequisites The recommended knowledge and skills that a learner must have before attending this course are as follows: Knowledge
More informationDelivering Cisco Next Generation SD-WAN with Viptela
BRKCRS-2110 Delivering Cisco Next Generation SD-WAN with Viptela David Klebanov, Engineer, Technical Marketing Nikolai Pitaev, Engineer, Technical Marketing Cisco Spark How Questions? Use Cisco Spark to
More informationCisco SD-WAN Application Acceleration
BRKRST-2514 Cisco SD-WAN Application Acceleration Sukruth Srikantha, Technical Marketing Engineer Hamzah Kardame, Technical Marketing Engineer Atif Khan, Sr. Director Enterprise Routing Cisco Spark How
More informationCisco Multicloud Portfolio: Cloud Connect
Deployment Guide Cisco Multicloud Portfolio: Cloud Connect Deployment Guide for Cisco SD-WAN Cloud onramp for SaaS August 2018 2018 Cisco and/or its affiliates. All rights reserved. This document is Cisco
More informationSecure Extensible Network. Solution and Technology Introduction
Secure Extensible Network Solution and Technology Introduction Agenda Company Overview Current WAN Challenges Viptela Solution Migration Strategy Product Lineup 2 Viptela At A Glance $110M VC funding:
More informationSD-WAN on Cisco IOS XE Routers: An End-to-End View
SD-WAN on Cisco IOS XE Routers: An End-to-End View Summary This white paper presents an overview of the Cisco Software-Defined WAN (SD-WAN) solution on Cisco IOS XE routers. It is a good introduction for
More informationImplementing and Configuring Cisco SDWAN (ICSDWAN-CT)
Implementing and Configuring Cisco SDWAN (ICSDWAN-CT) COURSE OVERVIEW: This course discusses the Cisco s SDWAN solution using Viptela. In this class, students will configure and manage the Viptela Fabric.
More informationLive Demo: Top Deployed SD-WAN Use Cases
#FutureWAN Live Demo: Top Deployed SD-WAN Use Cases David Klebanov @DavidKlebanov david@viptela.com Demonstration Topology and Customer Journey Internet Palo Alto Firewall Hub 1 Snort IDS Cloud From MPLS
More informationCTO PoV: Enterprise Networks (Part 2) Security for IoT & Cloud
CTO PoV: Enterprise Networks (Part 2) Security for IoT & Cloud Khalid Raza CTO & Co-Founder Viptela khalid@viptela.com Danny Johnson Director, Product Marketing Verizon daniel.johnson@verizonwireless.com
More informationCisco SD-WAN. Securely connect any user to any application across any platform, all with a consistent user experience.
Cisco Securely connect any user to any application across any platform, all with a consistent user experience. Introduction Moving applications to the cloud requires faster, more reliable connectivity.
More informationFrom Zero Touch Provisioning to Secure Business Intent
From Zero Touch Provisioning to Secure Business Intent Flexible Orchestration with Silver Peak s EdgeConnect SD-WAN Solution From Zero Touch Provisioning to Secure Business Intent Flexible Orchestration
More informationRouting Underlay and NFV Automation with DNA Center
BRKRST-1888 Routing Underlay and NFV Automation with DNA Center Prakash Rajamani, Director, Product Management Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session
More informationSD-WAN Deployment Guide (CVD)
SD-WAN Deployment Guide (CVD) All Cisco Meraki security appliances are equipped with SD-WAN capabilities that enable administrators to maximize network resiliency and bandwidth efficiency. This guide introduces
More informationBest Practices for Extending the WAN into AWS (IaaS) with SD-WAN
Best Practices for Extending the WAN into AWS (IaaS) with SD-WAN Ariful Huq Product Management @arifulhuq & Rob McBride Marketing @digitalmcb Industry trends impacting networking Cloud Mobile Social 2
More informationVeloCloud Cloud-Delivered WAN Fast. Simple. Secure. KUHN CONSULTING GmbH
VeloCloud Cloud-Delivered WAN Fast. Simple. Secure. 1 Agenda 1. Overview and company presentation 2. Solution presentation 3. Main benefits to show to customers 4. Deployment models 2 VeloCloud Company
More informationNXOS in the Real World Using NX-API REST
NXOS in the Real World Using NX-API REST Adrian Iliesiu Corporate Development Engineer Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session
More informationCisco SD WAN for Service Providers
PSOSPG-2048 Cisco SD WAN for Service Providers Chandrodaya Prasad, Senior Director Product Management Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find
More informationVoice of the Customer First American Title SD-WAN Transformation
Voice of the Customer First American Title SD-WAN Transformation CJ Metz First American - Senior IT Manager, Network Eng Archish Dalal Viptela Senior Systems Engineer #FutureWAN First American Financial
More informationQUESTION: 1 You have been asked to establish a design that will allow your company to migrate from a WAN service to a Layer 3 VPN service. In your des
Vendor: Cisco Exam Code: 352-001 Exam Name: ADVDESIGN Version: Demo www.dumpspdf.com QUESTION: 1 You have been asked to establish a design that will allow your company to migrate from a WAN service to
More informationNetBrain Technologies: Achieving Agile Network Operations: How Automation Can Improve Visibility Across Hybrid Infrastructures
BRKPAR - 2509 NetBrain Technologies: Achieving Agile Network Operations: How Automation Can Improve Visibility Across Hybrid Infrastructures Jason Baudreau Achieving Agile Network Operations How Automation
More informationResilient WAN and Security for Distributed Networks with Cisco Meraki MX
Resilient WAN and Security for Distributed Networks with Cisco Meraki MX Daghan Altas, Director of Product Management BRKSEC-2900 Agenda Problem Cisco CNG Live network creation demo (45m) Product Brief
More informationCisco SD-Access Hands-on Lab
LTRCRS-2810 Cisco SD-Access Hands-on Lab Larissa Overbey - Technical Marketing Engineer, Cisco Derek Huckaby - Technical Marketing Engineer, Cisco https://cisco.box.com/v/ltrcrs-2810-bcn2018 Password:
More informationvedge Cloud Datasheet PRODUCT OVERVIEW DEPLOYMENT USE CASES EXTEND VIPTELA OVERLAY INTO PUBLIC CLOUD ENVIRONMENTS
vedge Cloud Datasheet PRODUCT OVERVIEW Viptela vedge Cloud is a software router platform that supports entire range of capabilities available on the physical vedge-100, vedge-1000 and vedge-2000 router
More informationCloud-Managed Security for Distributed Networks with Cisco Meraki MX
Cloud-Managed Security for Distributed Networks with Cisco Meraki MX Joe Aronow, Product Architect Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this
More informationDeploying Cisco SD-WAN on AWS
How to Guide Deploying Cisco SD-WAN on AWS Introduction: Why use an SD-WAN solution for the cloud? Organizations leveraging branch office locations, IoT devices, and distributed network devices face a
More informationWHITE PAPER ARUBA SD-BRANCH OVERVIEW
WHITE PAPER ARUBA SD-BRANCH OVERVIEW June 2018 Table of Contents Overview of the Traditional Branch...1 Adoption of Cloud Services...1 Shift to the Internet as a Business Transport Medium...1 Increasing
More informationCisco SD-WAN. Intent-based networking for the branch and WAN. Carlos Infante PSS EN Spain March 2018
Cisco SD-WAN Intent-based networking for the branch and WAN Carlos Infante PSS EN Spain March 2018 Aug-12 Oct-12 Dec-12 Feb-13 Apr-13 Jun-13 Aug-13 Oct-13 Dec-13 Feb-14 Apr-14 Jun-14 Aug-14 Oct-14 Dec-14
More informationCloud Mobility: Meraki Wireless & EMM
BRKEWN-2002 Cloud Mobility: Meraki Wireless & EMM Emily Sporl Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco Live Mobile
More informationSimplifying WAN Architecture
Simplifying WAN Architecture Migrating without a network forklift upgrade Phased approach with existing environment Architecture and management complexity Automation of deployment, management and maintenance
More informationAruba SD-WAN. John Schaap 25 October #ArubaAirheads
Aruba SD-WAN John Schaap john.schaap@hpe.com 25 October 2018 Aruba Distributed Architectures SD-WAN MicroBranch (IAP-VPN) On the road (VIA) Enterprise DC 2 SD-WAN solution Overview 3 Overview Architecture
More informationSOLUTION BRIEF Enterprise WAN Agility, Simplicity and Performance with Software-Defined WAN
S O L U T I O N O V E R V I E W SOLUTION BRIEF Enterprise WAN Agility, Simplicity and Performance with Software-Defined WAN Today s branch office users are consuming more wide area network (WAN) bandwidth
More informationCisco WAN Automation Engine (WAE) Network Programmability with Segment Routing
LTRMPL-2104 Cisco WAN Automation Engine (WAE) Network Programmability with Segment Routing Josh Peters Technical Marketing Engineer Derek Tay Technical Marketing Engineer Cisco Spark How Questions? Use
More informationSILVER PEAK EDGECONNECT SD-WAN SOLUTION OVERVIEW FOR SERVICE PROVIDERS
SILVER PEAK EDGECONNECT SD-WAN SOLUTION OVERVIEW FOR SERVICE PROVIDERS November 2017 www.silver-peak.com Contents 1 Introduction: SD-WAN Market Drivers... 3 2 Silver Peak SD-WAN architecture... 4 2.1 Unity
More informationSD-WAN 101. November 3 rd 2016 Rob McBride Marketing
SD-WAN 101 November 3 rd 2016 Rob McBride Marketing Email: rob@viptela.com Twitter: @digitalmcb Industry trends impacting networking Cloud Mobile Social 2 Today s WAN is challenged to keep up Complex Operations
More informationVXLAN EVPN Fabric and automation using Ansible
VXLAN EVPN Fabric and automation using Ansible Faisal Chaudhry, Principal Architect Umair Arshad, Sr Network Consulting Engineer Lei Tian, Solution Architecture Cisco Spark How Questions? Use Cisco Spark
More informationWhat To Ask Your SD-WAN Vendor
#FutureWAN What To Ask Your SD-WAN Vendor Ramesh Prabagaran, VP of Product Management Twitter: @ramsba Motivation & Rationale Marketing vs Reality Network auto provisions, auto corrects, auto everything
More informationThe Transformation of Media & Broadcast Video Production to a Professional Media Network
The Transformation of Media & Broadcast Video Production to a Professional Media Network Subha Dhesikan, Principal Engineer Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after
More informationSteelConnect. The Future of Networking is here. It s Application-Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN
Data Sheet SteelConnect The Future of Networking is here. It s Application-Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN The Business Challenge Delivery of applications is becoming more
More informationVirtual Private Cloud. User Guide. Issue 03 Date
Issue 03 Date 2016-10-19 Change History Change History Release Date What's New 2016-10-19 This issue is the third official release. Modified the following content: Help Center URL 2016-07-15 This issue
More informationDeploying Cloud-Agnostic Applications with Cisco CloudCenter
LTRCLD-2303 Deploying Cloud-Agnostic Applications with Cisco CloudCenter Zack Kielich CloudCenter Product Manager Vince Motto Sr. Technical Leader Andrew Horrigan Consulting Engineer Matt Tarkington Consulting
More informationDevNet Workshop-Hands-on with CloudCenter and Jenkins
DevNet Workshop-Hands-on with CloudCenter and Jenkins Tuan Nguyen, Technical Marketing Engineer, CPSG Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find
More informationContrail SD-WAN Design & Architecture Guide
2018 Juniper Networks, Inc. 1 Juniper Networks, the Juniper Networks logo, Juniper, and Junos are registered trademarks of Juniper Networks, Inc. and/or its affiliates in the United States and other countries.
More informationPSOACI Why ACI: An overview and a customer (BBVA) perspective. Technology Officer DC EMEAR Cisco
PSOACI-4592 Why ACI: An overview and a customer (BBVA) perspective TJ Bijlsma César Martinez Joaquin Crespo Technology Officer DC EMEAR Cisco Lead Architect BBVA Lead Architect BBVA Cisco Spark How Questions?
More informationSimplifying the Branch Network
Simplifying the Branch Network By: Lee Doyle, Principal Analyst at Doyle Research Sponsored by Aruba, a Hewlett Packard Enterprise company Executive Summary A majority of IT organizations are experiencing
More informationManaging Site-to-Site VPNs: The Basics
CHAPTER 23 A virtual private network (VPN) consists of multiple remote peers transmitting private data securely to one another over an unsecured network, such as the Internet. Site-to-site VPNs use tunnels
More informationPassTorrent. Pass your actual test with our latest and valid practice torrent at once
PassTorrent http://www.passtorrent.com Pass your actual test with our latest and valid practice torrent at once Exam : 352-011 Title : Cisco Certified Design Expert Practical Exam Vendor : Cisco Version
More informationCisco Cisco ADVDESIGN. Download Full Version :
Cisco 352-001 Cisco ADVDESIGN Download Full Version : http://killexams.com/pass4sure/exam-detail/352-001 C. Your neighbors will drop immediately. D. Your neighbors will drop and EIGRP will begin the query
More informationManaging Site-to-Site VPNs
CHAPTER 21 A virtual private network (VPN) consists of multiple remote peers transmitting private data securely to one another over an unsecured network, such as the Internet. Site-to-site VPNs use tunnels
More informationCiprian Stroe Senior Presales Consultant, CCIE# Cisco and/or its affiliates. All rights reserved.
Ciprian Stroe Senior Presales Consultant, CCIE#45766 2015 Cisco and/or its affiliates. All rights reserved. Complete cloud-managed networking solution Wireless, switching, security, MDM Integrated hardware,
More informationWAN Edge MPLSoL2 Service
4 CHAPTER While Layer 3 VPN services are becoming increasing popular as a primary connection for the WAN, there are a much larger percentage of customers still using Layer 2 services such Frame-Relay (FR).
More informationCisco Container Platform
Cisco Container Platform Pradnesh Patil Suhail Syed Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco Live Mobile App 2. Click
More informationCloudCenter for Developers
DEVNET-1198 CloudCenter for Developers Conor Murphy, Systems Engineer Data Centre Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the
More informationManaging Site-to-Site VPNs: The Basics
CHAPTER 21 A virtual private network (VPN) consists of multiple remote peers transmitting private data securely to one another over an unsecured network, such as the Internet. Site-to-site VPNs use tunnels
More informationVersa Software-Defined Solutions for Service Providers
PRODUCT BRIEF Software-Defined Solutions for Service Providers Transformative solutions to increase growth and value The Service Provider industry has seen an incredible amount of disruption due to NFV
More informationCisco SD-Access Building the Routed Underlay
Cisco SD-Access Building the Routed Underlay Rahul Kachalia Sr. Technical Leader Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the
More informationSD-WAN AND BEYOND: DELIVERING VIRTUAL NETWORK SERVICES
SD-WAN AND BEYOND: DELIVERING VIRTUAL NETWORK SERVICES A Technical Paper prepared for SCTE/ISBE by Ralph Santitoro Head of SDN/NFV/SD-WAN Solutions Fujitsu Network Communications (805) 791-0711 ralph.santitoro@us.fujitsu.com
More information90 % of WAN decision makers cite their
WHITEPAPER So many ways to WAN How the most essential technology for distributed enterprises has evolved and where it s headed One of the most critical components to the success of any growth-oriented
More informationStateless Multicast with Bit Indexed Explicit Replication
Stateless Multicast with Bit Indexed Explicit Replication IJsbrand Wijnands, Distinguished Engineer Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find
More informationWelcome to. Brad Wood. Deputy Chief Technology Officer Riverbed Technology. All rights reserved.
Welcome to Brad Wood Deputy Chief Technology Officer GRAB YOUR PHONE www.menti.com 87 35 41 Cloud Networking: The Future of Networking is Power AND Simplicity Brad Wood Deputy Chief Technology Officer
More informationMulticloud Networking: An Overview. Shannon McFarland CCIE #5245 Distinguished
Multicloud Networking: An Overview Shannon McFarland CCIE #5245 Distinguished Engineer @eyepv6 Agenda Hybrid Cloud Networking vs Multicloud Networking - A Level Set Extending on-premises private cloud
More informationIntelligent WAN Multiple VRFs Deployment Guide
Cisco Validated design Intelligent WAN Multiple VRFs Deployment Guide September 2017 Table of Contents Table of Contents Deploying the Cisco Intelligent WAN... 1 Deploying the Cisco IWAN Multiple VRFs...
More informationEdgeConnect for Amazon Web Services (AWS)
Silver Peak Systems EdgeConnect for Amazon Web Services (AWS) Dinesh Fernando 2-22-2018 Contents EdgeConnect for Amazon Web Services (AWS) Overview... 1 Deploying EC-V Router Mode... 2 Topology... 2 Assumptions
More informationJuniper SD-WAN Alexandre Cezar Consulting Systems Engineer, Security/Cloud
Juniper SD-WAN Alexandre Cezar Consulting Systems Engineer, Security/Cloud acezar@juniper.net MARKET DYNAMICS Branch/WAN Evolution: PMO FMO Bring Agility and Enhanced Customer Experience Utilizing Cloud
More informationCisco Tetration Analytics
Cisco Tetration Analytics Real-time application visibility and policy management using advanced analytics Yogesh Kaushik, Sr. Director Product Management PSOACI-2100 Agenda Market context Introduction:
More informationNext generation branch with SD-WAN and NFV
Next generation branch with SD-WAN and NFV Kiran Ghodgaonkar, Senior Manager, Enterprise Marketing Mani Ganeson, Senior Product Manager PSOCRS-2004 @ghodgaonkar Cisco Spark How Questions? Use Cisco Spark
More informationONBOARDING GUIDE GLOBALPROTECT CLOUD SERVICE FOR REMOTE NETWORKS
ONBOARDING GUIDE GLOBALPROTECT CLOUD SERVICE FOR REMOTE NETWORKS GlobalProtect cloud service extends Palo Alto Networks Next-Generation Security Platform to your remote networks and mobile users. It operationalizes
More informationHow SD-WAN Makes UC Apps Dance. The Leader in Failsafe SD-WANs. May 17, Top 10 Coolest SDN Technologies
How SD-WAN Makes UC Apps Dance The Leader in Failsafe SD-WANs May 17, 2018 @AtchisonFrazer 1 Top 10 Coolest SDN Technologies Cloud is Changing Enterprise IT Traditional WAN solutions + WAN Opt no longer
More informationIntroduction. Hardware and Software. Test Highlights
Introduction Nuage Networks, a Nokia business, commissioned EANTC to conduct an independent test of the vendor s SD-WAN solution. The tests were executed at Nuage Networks headquarters in Mountain View,
More informationCisco Group Encrypted Transport VPN
Cisco Group Encrypted Transport VPN Q. What is Cisco Group Encrypted Transport VPN? A. Cisco Group Encrypted Transport is a next-generation WAN VPN solution that defines a new category of VPN, one that
More informationHow SD-WAN will Transform the Network. And lead to innovative, profitable business outcomes
How SD-WAN will Transform the Network And lead to innovative, profitable business outcomes By 2020, more than 50 percent of WAN edge infrastructure refresh initiatives will be based on SD-WAN versus traditional
More informationTechnology Brief. VeloCloud Dynamic. Multipath Optimization. Page 1 TECHNOLOGY BRIEF
Technology Brief Page 1 This document discusses the key functionalities and benefits of (DMPO) that assures enterprise and cloud application performance over Internet and hybrid WAN. Contents Page 2 Introduction
More informationMPLS VPN Inter-AS Option AB
First Published: December 17, 2007 Last Updated: September 21, 2011 The feature combines the best functionality of an Inter-AS Option (10) A and Inter-AS Option (10) B network to allow a Multiprotocol
More informationSilver Peak EC-V and Microsoft Azure Deployment Guide
Silver Peak EC-V and Microsoft Azure Deployment Guide How to deploy an EC-V in Microsoft Azure 201422-001 Rev. A September 2018 2 Table of Contents Table of Contents 3 Copyright and Trademarks 5 Support
More informationCisco Meraki Cloud Managed IT Solution Derrick Phua. May 12, 2017
Cisco Meraki Cloud Managed IT Solution Derrick Phua May 12, 2017 Why cloud managed IT? On-Demand scalability The cloud increases IT efficiency Manageability Scalability Cost Savings Turnkey installation
More informationIntelligent WAN Multiple Data Center Deployment Guide
Cisco Validated design Intelligent WAN Multiple Data Center Deployment Guide September 2017 Table of Contents Table of Contents Deploying the Cisco Intelligent WAN... 1 Deployment Details...1 Deploying
More informationOur Virtual Intelligent Network Overlay (VINO) solutions bring next-generation performance and efficiency to business networks throughout North
Our Virtual Intelligent Network Overlay (VINO) solutions bring next-generation performance and efficiency to business networks throughout North America TELoIP Simplifies Public And Private Cloud Access
More informationThe Top 10 Reasons to Replace Your Branch Router with SD-WAN. An ebook presented by Silver Peak Systems
The Top 10 Reasons to Replace Your Branch Router with SD-WAN An ebook presented by Silver Peak Systems MODERN ENTERPRISES RUN IN THE CLOUD. TRADITIONAL ROUTER-CENTRIC WAN ARCHITECTURES WEREN T DESIGNED
More informationSD-WAN / Hybrid WAN : Leveraging SDN-NFV for Networks Agility
SD-WAN / Hybrid WAN : Leveraging SDN-NFV for Networks Agility Laurent Perrin, Director International Product Management, Orange Business Services Sylvain Quartier, SVP Enterprise Products Strategy & Alliances
More informationThe vedge Cloud router targets the follow ing main deployment use cases: 1. Extend SD-WAN Overlay into Public Cloud Environments
Data Sheet Cisco vedge Cloud Product Overview Cisco vedge Cloud is a softw are router platform that supports an entire range of capabilities available on the physical vedgerouter platforms. The vedge Cloud
More informationIntroducing Cisco Network Assurance Engine
BRKACI-2403 Introducing Cisco Network Assurance Engine Intent Based Networking for Data Centers Sundar Iyer, Distinguished Engineer Head Cisco Network Assurance Engine Team Dhruv Jain, Director of Product
More informationAPIC-EM / EasyQoS - End to End Orchestration of QoS in Enterprise Networks
APIC-EM / EasyQoS - End to End Orchestration of QoS in Enterprise Networks Saurav Prasad Technical Marketing Engineer CTHNMS-1002 Cisco Spark How Questions? Use Cisco Spark to chat with the speaker after
More informationSteelConnect. The Future of Networking is here. It s Application- Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN
Data Sheet SteelConnect The Future of Networking is here. It s Application- Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN The Business Challenge Delivery of applications is becoming
More informationQuestion No : 1 Which three options are basic design principles of the Cisco Nexus 7000 Series for data center virtualization? (Choose three.
Volume: 162 Questions Question No : 1 Which three options are basic design principles of the Cisco Nexus 7000 Series for data center virtualization? (Choose three.) A. easy management B. infrastructure
More informationPSOACI Tetration Overview. Mike Herbert
Tetration Overview Mike Herbert Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco Live Mobile App 2. Click Join the Discussion
More informationEdgeConnectSP The Premier SD-WAN Solution
SERVICE PROVIDER EdgeConnectSP The Premier SD-WAN Solution Build High-Performance Managed SD-WAN Services Challenges with Legacy WANs Significant shifts in application and traffic patterns, including the
More informationVeloCloud SD-WAN Subscription
Enterprise/Premium Subscription Datasheet VeloCloud SD-WAN Subscription VeloCloud Cloud Delivered SD-WAN assures enterprise and cloud application performance over Internet and hybrid WAN while simplifying
More informationGet Hands On With DNA Center APIs for Managing Intent
DEVNET-3620 Get Hands On With DNA Center APIs for Managing Intent Adam Radford Distinguished Systems Engineer Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session
More informationCisco Dynamic Multipoint VPN: Simple and Secure Branch-to-Branch Communications
Cisco Dynamic Multipoint VPN: Simple and Secure Branch-to-Branch Communications Product Overview Cisco Dynamic Multipoint VPN (DMVPN) is a Cisco IOS Software-based security solution for building scalable
More informationMaking Enterprise Branches Agile and Efficient with Software-defined WAN (SD-WAN)
Making Enterprise Branches Agile and Efficient with Software-defined WAN (SD-WAN) Simplify your branch office network with assured application performance with clouddelivered SD-WAN. EXECUTIVE SUMMARY
More informationTRex Realistic Traffic Generator
DEVNET-1120 TRex Realistic Traffic Generator Hanoch Haim, Principal Engineer Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco
More informationIWAN APIC-EM Application Cisco Intelligent WAN
IWAN APIC-EM Application Cisco Intelligent WAN René og Per Cisco DK SE s Feb 23 th 2016 AVC MPLS Private Cloud 3G/4G-LTE Virtual Private Cloud Branch WAAS PfR Internet Public Cloud Control, Management,
More information