LTRCRS-2810 Cisco SD-Access Hands-on Lab Larissa Overbey - Technical Marketing Engineer, Cisco Derek Huckaby - Technical Marketing Engineer, Cisco https://cisco.box.com/v/ltrcrs-2810-bcn2018 Password: ciscolive
Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco Live Mobile App 2. Click Join the Discussion 3. Install Spark or go directly to the space 4. Enter messages/questions in the space cs.co/ciscolivebot#session ID 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco s Intent-based Networking Learning DNA Center The Network. Intuitive. Policy Automation Analytics Powered by Intent. Informed by Context. Intent Context Network Infrastructure Switching Routers Wireless Security LTRCRS-2810 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 4
Software Defined Access Networking at the speed of Software! Policy DNA Center Automation Analytics Identity-Based Policy & Segmentation Decoupled security policy from VLAN and IP Address B B C Outside Automated Network Fabric Single Fabric for Wired & Wireless with workflow Automation SDA Extension User Mobility Policy stays with user Insights & Telemetry Analytics and Insights into User and Application behavior IoT Network Employee Network 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 5
Software Defined Access Cisco Live Barcelona - Session Map Missed One? Sessions are available online @ CiscoLive.com You Are Here Tuesday (Jan 30) Wednesday (Jan 31) Thursday (Feb 01) Friday (Feb 02) 08:00-11:00 11:00-13:00 13:00-15:00 15:00-18:00 08:00-11:00 11:00-13:00 13:00-15:00 15:00-18:00 08:00-11:00 11:00-13:00 13:00-15:00 15:00-18:00 08:00-11:00 11:00-13:00 13:00-15:00 15:00-18:00 BRKEWN-2021 SDA Wireless Setup BRKEWN-2020 Wireless Overview BRKDCN-2489 DC Integration BRKCRS-3811 Policy Management BRKCRS-2810 Solution Overview BRKCRS-2816 Routed Underlay BRKCRS-2814 Assurance BRKCRS-2811 External Connect BRKCRS-2815 Design & Scale BRKCRS-2812 Migration LTRCRS-2810 (1) Hands-On Lab LTRCRS-2810 (2) Hands-On Lab 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
What exactly is a Fabric? Separates the Forwarding Plane from the Services Plane Benefits of Flexible Overlay Mobility Track end-points at edges Scale Reduce core state Overlay Network Overlay Control Plane Distribute and partition state to network edge Flexibility & Programmability Reduced number of touch points Edge Device Encapsulation Edge Devices Hosts (End-Points) Underlay Network Underlay Control Plane LTRCRS-2810 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 7
Cisco SD Access Roles & Responsibilities AAA Server Fabric Border Node Intermediate Nodes (Underlay) DHCP ISE B Automation DNA Center Non-Fabric SD-Access Fabric Assurance C DNA Controller Analytics Engine Fabric Enabled WLC Fabric APs Control-Plane Node Fabric Edge Nodes DNA Controller Enterprise SDN Controller provides GUI management and abstraction via multiple Service Apps, that share information Group Repository External ID System(s) (ISE) are leveraged for authentication, authorization and dynamic Endpoint to Group mapping and Policy definition Analytics Engine External Data Collector is leveraged to analyze User or Device to App flows and monitor fabric status Control-Plane Nodes Map System that manages Endpoint ID to Device relationships Border Nodes A Fabric device (e.g. Core) that connects External L3 network(s) to the SDA Fabric Edge Nodes A Fabric device (e.g. Access or Distribution) that connects Wired Endpoints to the SDA Fabric Fabric Wireless Controller A Fabric device (WLC) that connects Wireless Endpoints to the SDA Fabric LTRCRS-2810 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 8
Campus VRF Guest VRF INFRA_VN (Global Routing) Shared Services 10.172.99.0/24 DHCP DNS Fusion Router (ASR) WLC 10.172.120.0/24 WLC 10.172.120.2 Border (C6807) B C Control Plane (C3850-1) Campus 172.16.101.0/24 172.16.201.0/24 172.16.222.0/24 (DHCP Wifi Clients) Guest 172.16.250.0/24 Wave2 APs 172.16.112.0/24 C3850-2 Edges C3850-3 Wave2 AP LTRCRS-2810 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 9
SD-Access Lab Internet DHCP on ASR 172.26.204.121 AP ISE Infoblox 172.26.204.200 Wave1 network 172.16.112.0 255.255.255.0 network 172.16.222.0 255.255.255.0 Int Loopback 99: 10.172.99.11 1/8 172.26.204.254 ASR 1001x lo 192.168.105.1 Fusion 1/1-2 192.168.0.x G0/0/5 10.172.120.254/24 T0/0/1 192.168.0.22/30 DNA Center 172.26.205.100 1/11 192.168.0.21/30 1/9 172.26.205.254 Default C6807 Border 192.168.100.1 1/4 192.168.0.10/30 10.172.120.2 SFP1 C3850-1 192.168.100.100 Control Plane 1/1-2 C3850-2 192.168.120.2 2/1-2 192.168.1.x 2/7-8 192.168.2.x C3850-3 192.168.120.3 C4500 Edge1 1/0/47-48 1/0/47-48 Edge2 1/0/1 192.168.110.1 1/0/20 1/0/3 1/0/1 1/0/24 172.16.101.x 172.16.201.x 172.16.250.x WLC 5520 Port 1 AP Wave2 Jump Host PC-Wired-2 172.16.101.100 Faculty / Student PCI_Server 172.16.101.201 Wireless 172.16.222.101 PC-Wired-3 172.16.201.100 Employee Guest_Linux 172.16.250.251 LTRCRS-2810 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 10
SD-Access Support Fabric ready platforms for your digital ready network Switching Routing Wireless Extended NEW Catalyst 9400 NEW Catalyst 9300 ASR-1000-X AIR-CT5520 NEW NEW ASR-1000-HX AIR-CT8540 NEW CDB Catalyst 9500 ISR 4430 AIR-CT3504 NEW 3560-CX Catalyst 4500E Catalyst 6800 Nexus 7700 ISR 4450 Wave 2 APs (1800,2800,3800) NEW Catalyst 3650 and 3850 ISRv/CSRv Wave 1 APs * (1700,2700,3700) IE (2K/3K/4K/5K) * with Caveats LTRCRS-2810 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 11
What to Do Next? SD-Access Capable DNA Center Cisco Services Refresh your Hardware & Software Deploy the DNA Center Engage with Cisco Services Get SD-Access Capable Devices with DNA Advantage OS License Get DNA Center Appliances with DNA Center Software Cisco Services can help you to Test - Migrate - Deploy LTRCRS-2810 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 12
The First Step #NewEra #CiscoDNA #NetworkIntuitive 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco Live Mobile App 2. Click Join the Discussion 3. Install Spark or go directly to the space 4. Enter messages/questions in the space cs.co/ciscolivebot#session ID 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Please complete your Online Session Evaluations after each session Complete 4 Session Evaluations & the Overall Conference Evaluation (available from Thursday) to receive your Cisco Live T-shirt All surveys can be completed via the Cisco Live Mobile App or the Communication Stations Complete Your Online Session Evaluation Don t forget: Cisco Live sessions will be available for viewing on-demand after the event at www.ciscolive.com/global/on-demand-library/. 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Continue Your Education Demos in the Cisco campus Walk-in Self-Paced Labs Tech Circle Meet the Engineer 1:1 meetings Related sessions LTRCRS-2810 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 16
Thank you