Fundamentals and Deployment of Cisco SD-WAN Duration: 3 Days (24 hours) Prerequisites

Similar documents
Implementing and Configuring Cisco SDWAN (ICSDWAN-CT)

Intelligent WAN: Leveraging the Internet Secure WAN Transport and Internet Access

SD-WAN Advanced Operations & Troubleshooting Bootcamp (SDWOTS)

Secure Extensible Network. Solution and Technology Introduction

Cisco SD-WAN (Viptela) Migration, QoS and Advanced Policies Hands-on Lab

SD-WAN: Cloud onramp for SaaS Deployment Guide

Cisco SD-WAN and DNA-C

Introduction to Cisco SD- WAN (Viptela)

CVP Enterprise Cisco SD-WAN Retail Profile (Hybrid WAN, Segmentation, Zone-Based Firewall, Quality of Service, and Centralized Policies)

CTO PoV: Enterprise Networks (Part 2) Security for IoT & Cloud

Serviceability of SD-WAN

Cisco SD-WAN. Intent-based networking for the branch and WAN. Carlos Infante PSS EN Spain March 2018

Cisco Multicloud Portfolio: Cloud Connect

Enterprise SD-WAN Financial Profile (Hybrid WAN, Segmentation, Quality of Service, Centralized Policies)

Cloud-Ready WAN For IAAS & SaaS With Cisco s Next- Gen SD-WAN

Cisco SD-WAN. Securely connect any user to any application across any platform, all with a consistent user experience.

Deploying and Administering Cisco s Digital Network Architecture (DNA) and Intelligent WAN (IWAN) (DNADDC)

SD-WAN on Cisco IOS XE Routers: An End-to-End View

Cisco Group Encrypted Transport VPN

Delivering Cisco Next Generation SD-WAN with Viptela

Live Demo: Top Deployed SD-WAN Use Cases

SD-WAN 101. November 3 rd 2016 Rob McBride Marketing

Deploying Cisco SD-WAN on AWS

Network Automation and Branch Agility The Network Helps Enable Digital Business. Rajinder Singh Product Sales Specialist June 2016

Voice of the Customer First American Title SD-WAN Transformation

vedge Cloud Datasheet PRODUCT OVERVIEW DEPLOYMENT USE CASES EXTEND VIPTELA OVERLAY INTO PUBLIC CLOUD ENVIRONMENTS

Best Practices for Extending the WAN into AWS (IaaS) with SD-WAN

CCIE Routing & Switching

Managing Site-to-Site VPNs: The Basics

Managing Site-to-Site VPNs

Cisco CCNP ROUTE: Implementing Cisco IP Routing (ROUTE) 2.0. Upcoming Dates. Course Description. Course Outline

"Charting the Course... Interconnecting Cisco Networking Devices Accelerated 3.0 (CCNAX) Course Summary

Transforming the Network for the Digital Business

The vedge Cloud router targets the follow ing main deployment use cases: 1. Extend SD-WAN Overlay into Public Cloud Environments

Configuring Cisco Nexus 7000 Series Switches

PREREQUISITES TARGET AUDIENCE. Length Days: 5

Transform your network and your customer experience. Introducing SD-WAN Concierge

The Top 10 Reasons to Replace Your Branch Router with SD-WAN. An ebook presented by Silver Peak Systems

Cisco SD-WAN Application Acceleration

Cisco Cloud Services Router 1000V with Cisco IOS XE Software Release 3.13

Managing Site-to-Site VPNs: The Basics

Multicloud Networking: An Overview. Shannon McFarland CCIE #5245 Distinguished

CCIE ROUTING & SWITCHING V5.0

Implementing Cisco Network Security (IINS) 3.0

How SD-WAN will Transform the Network. And lead to innovative, profitable business outcomes

SteelConnect. The Future of Networking is here. It s Application- Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN

Implementing Cisco IP Routing (ROUTE)

Network Services. Elite IT Experts. About Us. ieofit.com/service

EdgeConnectSP The Premier SD-WAN Solution

Deploying IWAN Routers

MASERGY S MANAGED SD-WAN

IOS/CCP: Dynamic Multipoint VPN using Cisco Configuration Professional Configuration Example

VeloCloud Cloud-Delivered WAN Fast. Simple. Secure. KUHN CONSULTING GmbH

Cisco Dynamic Multipoint VPN: Simple and Secure Branch-to-Branch Communications

SteelConnect. The Future of Networking is here. It s Application-Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN

Cisco SD WAN for Service Providers

From Zero Touch Provisioning to Secure Business Intent

Hillstone IPSec VPN Solution

SOLUTION BRIEF Enterprise WAN Agility, Simplicity and Performance with Software-Defined WAN

IWAN APIC-EM Application Cisco Intelligent WAN

Simplifying the Branch Network

GRE and DM VPNs. Understanding the GRE Modes Page CHAPTER

Cisco Dynamic Multipoint VPN: Simple and Secure Branch-to-Branch Communications

Technology Brief. VeloCloud Dynamic. Multipath Optimization. Page 1 TECHNOLOGY BRIEF

Simplifying WAN Architecture

Delivering the Wireless Software-Defined Branch

Cisco Implementing Cisco IP Routing v2.0 (ROUTE)

Our Virtual Intelligent Network Overlay (VINO) solutions bring next-generation performance and efficiency to business networks throughout North

Cisco Virtual Managed Services

CCNA Routing and Switching Study Guide Chapters 7 & 21: Wide Area Networks

IP & DCN Planning for Microwave Networks

Implementing Cisco Quality of Service 2.5 (QOS)

"Charting the Course... Implementing Cisco Quality of Service (QOS) Course Summary

WHITE PAPER ARUBA SD-BRANCH OVERVIEW

One Platform Kit: The Power to Innovate

MPLS vs SDWAN.

WAN Optimization. Overview KNOW YOUR NETWORK

SD-WAN Deployment Guide (CVD)

Intelligent WAN Multiple VRFs Deployment Guide

90 % of WAN decision makers cite their

Chapter 10: Review and Preparation for Troubleshooting Complex Enterprise Networks

SD-WAN Transform Your Agency

ONBOARDING GUIDE GLOBALPROTECT CLOUD SERVICE FOR REMOTE NETWORKS

Transform your network and your customer experience. Introducing SD-WAN Concierge

SteelConnect. The Future of Networking is here. It s Application-Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN

Overcoming Business Challenges in WAN infrastructure

Network Performance and Analytics Platform

Introducing Cisco Cloud Administration CLDADM v1.0; 5 Days; Instructor-led

Introduction. Hardware and Software. Test Highlights

SD-WAN. The CIO s guide to. Why it s time for a new kind of network

Cisco Exam Questions & Answers

Unified Monitoring for Cisco SD-WAN

Next generation branch with SD-WAN and NFV

Cato Cloud. Software-defined and cloud-based secure enterprise network. Solution Brief

I D C T E C H N O L O G Y S P O T L I G H T. SD- W AN : M o m e n t u m B u i l d s as Early Ad o p t e r s

Why the Cloud is the Network

Versa Software-Defined Solutions for Service Providers

PASS4TEST. IT Certification Guaranteed, The Easy Way! We offer free update service for one year

Cisco ISR G2 Management Overview

Joel Obstfeld Director of Engineering SP CTO team November Cisco and/or its affiliates. All rights reserved. 1

Transcription:

Fundamentals and Deployment of Cisco SD-WAN Duration: 3 Days (24 hours) Prerequisites The recommended knowledge and skills that a learner must have before attending this course are as follows: Knowledge level equivalent to Cisco CCNA Routing&Switching and CCNA SP Intermediate to advanced knowledge of OSPF and BGP Routing Protocols Basic knowledge of Software Defined Networks and Digital Network Architecture Basic knowledge and experience with Cisco IOS and CLI Course Content & Objectives There are many challenges today in managing the network because of manual configuration and fragmented tool offerings. Manual operations are slow and error-prone, and these issues will be exacerbated due to the constantly changing environment with more remote locations, users, devices and applications. With an increasing number of remote locations and centralization and consolidation of IT infrastructures assets in enterprise data center or public clouds, is evident the need for optimizing and improving efficiency in the use and administration of WAN connectivity. Independent of network topology, complexity increases exponentially when we have many locations and more than one transport network for connectivity, like MPLS and Internet Public network, and use them to stablish a VPN connectivity model like DMVPN using IPSec. The full mesh nature of DMVPN and the need to configure each router individually for tunneling and routing makes this model not scalable. The bottom line is that the networks of today do not address today s network needs. Cisco SD-WAN lays foundation for connecting users, devices and things to the applications residing in private, public and hybrid cloud environments. Powered by Viptela technology, it is a secure, scalable and open fabric, which caters to the variety of use cases around SD-WAN, cloud onramp, IoT etc. Its cloud delivered control, management and analytics elements can be easily consumed by the enterprises and they can also be offered as-a-service by the service providers. The high degree of automation allows zero touch operation without compromising on security or feature richness. Cisco SD-WAN architecture applies the principles of SDN onto the wide area network environment. By clearly separating control plane, data plane and management plane functions, Cisco SD-WAN fabric achieves high degree of modularity and scalability. Key elements of the Cisco SD-WAN solution are covered in this course.

Objectives Upon completing this course, the learner will be able to meet these overall objectives: Know and understand Cisco s SD-WAN concepts, features, benefits, terminology and the way this approachinnovates common administrative tasks on today s networks. Differentiate and explain each of the building blocks of SD-WAN Solution Explain the concept of Fabric and the different node types that conform it (Fabric Edge Nodes, ControlPlane Nodes, Management Nodes and Orchestration Nodes) Identify the roles and functions of vedge, vsmart, vmanage and vbond entities Know and understand the Zero Touch Provisioning Model Know and understand the Zero Trust Provisioning Model Identify Overlay Management Protocol (OMP) as a key element of the SD-WAN solution and the role itplays for Control Plane setup Understand segmentation of SD-WAN fabric, through the use of VPN s (VRF s) Understand the role that templates have in SD-WAN solution, differentiate the kid of templates and knowhow to apply them Differentiate Control, Data and Application Route Policies and know how they are used in SD-WAN Identify and apply QoS mechanisms to SD-WAN fabric Discuss Use Cases for SD-WAN Course Outline Module 1: SD-WAN Solution Overview Traditional WAN - Challenges SD-WAN Overview and definitions SD-WAN Benefits SD-WAN Key Concepts SD-WAN Main Componentsov o Edge o vsmart o vmanage o vbond On-Premise vs. Cloud-based Control Plane Module 2: SD-WAN Licensing Model Pricing Model License Options by Features

License Options by Bandwidth capacity Module 3: Secure Control Plane Bring-Up Zero Trust Security Principles Secure Control Channels Establishing vedge Router Identity Establishing Control Elements Identities (vbond, vsmart, vedge) Secure Control Channel between vedge Router and vbond Secure Control Channel between vedge Router and vsmart/vmanage Module 4: Secure Data Plane Bring-Up Limitations of traditional key exchange mechanisms (IKE) SD-WAN new centralized Encryption key distribution Traffic Encryption for data privacy Authentication Header for Data Plane Integrity Anti-Replay Protection (man-in-the-middle) Role of Bidirectional Forwarding Detection (BFD) Considerations about MTU and MSS End to End Segmentation (VPN s) Role of Application Visibility and Recognition Infrastructure DDoS Mitigation Security Policies and Services Cloud Security: Secure Direct Internet Access Module 5: Overlay Management Protocol (OMP) Definition of overlay routing Role and characteristics of Overlay Management Protocol (OMP) OMP Advertised Routes Route Redistribution (edge routing protocol to OMP and vice versa) Best Path Algorithm Module 6: Using Templates Basic Elements in the configuration for any device Need for Templates Options to Apply Templates to Devices

Overview of Feature Templates Categories of Feature Templates Workflow for Applying Templates to Devices Module 7: Using Policies Policy Architecture Application Aware Routing Policies Control Policies Data Policies VPN Membership Policies Routing Policies Cflowd Templates Module 8: Quality of Service (QoS) QoS Pipeline vedge Router Data Packet Flow Queueing Management Control Traffic Prioritization Random Early Detection (RED) Traffic Policing Traffic Shaping Marking and Remarking Class-Map QoS Scheduler QoS Map Applying QoS policies Module 9: Basic Troubleshooting Troubleshooting Control Plane Bring Upo o o GUI validation in vmanage CLI validation with Show commands in vedge Router Troubleshooting Data Plane Troubleshooting OMP

Module 10: Additional Topics Solution Redundancy Control Policies Route Filtering TLOC Direct Internet Access (DIA) BFD Contrasting Cisco IWAN with Viptela SD-WAN approach Comparing Cisco s SD-WAN with other vendors solutions Module 11: Use case 1 - Guest Wi-Fi Module 12: Use case 2 - Bandwidth Augmentation Module 13: Use case 3 - Cloud onramp for SAAS Module 14: Use case 4- Critical Applications SLA Module 15: Use case 5- Regional Secure Perimeter

Lab Outline Lab 1: Accessing the Lab Devices Lab 2: Reset vedge Cloud Router Lab 3: Remove vedge Router from vmanage Inventory Lab 4: Add vedge Router to vmanage Inventory Lab 5: Configure and Deploy Control-Plane Connectivity Lab 6: Configure and Deploy an Overlay Network Lab 7: Provision and Deploy vmanage Templates Lab 8: Provision and Deploy vmanage Policies Lab 9: Troubleshooting Control Plane bring up Who Should Attend Engineering and Planning team evaluating WAN evolution Personnel involved in SD-WAN Design and Implementation Network Operations team with SD-WAN solution Cisco partners who sell and support SD-WAN solutions