Cloud-Ready WAN For IAAS & SaaS With Cisco s Next- Gen SD-WAN

Similar documents
Serviceability of SD-WAN

Cisco SD-WAN (Viptela) Migration, QoS and Advanced Policies Hands-on Lab

Introduction to Cisco SD- WAN (Viptela)

Best Practices for Extending the WAN into AWS (IaaS) with SD-WAN

Delivering Cisco Next Generation SD-WAN with Viptela

Intelligent WAN: Leveraging the Internet Secure WAN Transport and Internet Access

Cisco SD-WAN Application Acceleration

Cisco SD-WAN and DNA-C

Cisco Multicloud Portfolio: Cloud Connect

Implementing and Configuring Cisco SDWAN (ICSDWAN-CT)

SD-WAN: Cloud onramp for SaaS Deployment Guide

Cisco SD-WAN. Securely connect any user to any application across any platform, all with a consistent user experience.

Fundamentals and Deployment of Cisco SD-WAN Duration: 3 Days (24 hours) Prerequisites

Deploying Cisco SD-WAN on AWS

Enterprise SD-WAN Financial Profile (Hybrid WAN, Segmentation, Quality of Service, Centralized Policies)

Cisco Container Platform

Cisco SD-WAN. Intent-based networking for the branch and WAN. Carlos Infante PSS EN Spain March 2018

CTO PoV: Enterprise Networks (Part 2) Security for IoT & Cloud

SD-WAN Advanced Operations & Troubleshooting Bootcamp (SDWOTS)

Cisco SD WAN for Service Providers

Secure Extensible Network. Solution and Technology Introduction

VeloCloud Cloud-Delivered WAN Fast. Simple. Secure. KUHN CONSULTING GmbH

CVP Enterprise Cisco SD-WAN Retail Profile (Hybrid WAN, Segmentation, Zone-Based Firewall, Quality of Service, and Centralized Policies)

Advanced CSR Lab with High Availability and Transit VPC

NXOS in the Real World Using NX-API REST

Cisco SD-Access Building the Routed Underlay

Next generation branch with SD-WAN and NFV

Live Demo: Top Deployed SD-WAN Use Cases

CloudCenter for Developers

PSOACI Why ACI: An overview and a customer (BBVA) perspective. Technology Officer DC EMEAR Cisco

Cisco SD-Access Hands-on Lab

LTRDCN-2100 Cloud networking solutions with Cisco Cloud Services Router (CSR 1000V) on AWS and Azure

Voice of the Customer First American Title SD-WAN Transformation

Extending Enterprise Security to Multicloud and Public Cloud

Routing Underlay and NFV Automation with DNA Center

I D C T E C H N O L O G Y S P O T L I G H T. SD- W AN : M o m e n t u m B u i l d s as Early Ad o p t e r s

SteelConnect. The Future of Networking is here. It s Application- Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN

SD-WAN on Cisco IOS XE Routers: An End-to-End View

Intelligent WAN Sumanth Kakaraparthi Principal Product Manager PSOCRS-2010

NetBrain Technologies: Achieving Agile Network Operations: How Automation Can Improve Visibility Across Hybrid Infrastructures

SteelConnect. The Future of Networking is here. It s Application-Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN

The Transformation of Media & Broadcast Video Production to a Professional Media Network

Orange: Cisco & Orange: a human touch for a digital experience

Resilient WAN and Security for Distributed Networks with Cisco Meraki MX

ANIKET DAPTARI & RANJINI RAJENDRAN CONTRAIL TEAM

Transit Network VPC. AWS Reference Deployment Guide. Last updated: May 10, Aviatrix Systems, Inc. 411 High Street Palo Alto, CA USA

SECURING THE MULTICLOUD

Cloud-Managed Security for Distributed Networks with Cisco Meraki MX

SOLUTION BRIEF Enterprise WAN Agility, Simplicity and Performance with Software-Defined WAN

DevNet Workshop-Hands-on with CloudCenter and Jenkins

AWS Networking & Hybrid Cloud Connectivity

SD-WAN 101. November 3 rd 2016 Rob McBride Marketing

Deploying Cloud-Agnostic Applications with Cisco CloudCenter

Multicloud Networking: An Overview. Shannon McFarland CCIE #5245 Distinguished

Disclaimer This presentation may contain product features that are currently under development. This overview of new technology represents no commitme

Cisco WAN Automation Engine (WAE) Network Programmability with Segment Routing

Unity EdgeConnect SP SD-WAN Solution

Cloud Mobility: Meraki Wireless & EMM

Introducing Cisco Network Assurance Engine

Agenda. This Session: Azure Networking Basics, On-prem connectivity options DEMO Create VNET/Gateway Cost-estimation for VNET/Gateways

Using Workload Automation to Optimize Hybrid Cloud Estates

Simplifying the Branch Network

Transform your network and your customer experience. Introducing SD-WAN Concierge

Cloud Intelligent Network

Network Automation and Branch Agility The Network Helps Enable Digital Business. Rajinder Singh Product Sales Specialist June 2016

Tetration Hands-on Lab from Deployment to Operations Support

Cisco UCS Director and ACI Advanced Deployment Lab

PSOACI Tetration Overview. Mike Herbert

Enterprise WAN Agility.

Intelligent WAN (IWAN) Design and Deployment

APIC-EM / EasyQoS - End to End Orchestration of QoS in Enterprise Networks

Hybrid Cloud Automation using Cisco CloudCenter API

SteelConnect. The Future of Networking is here. It s Application-Defined for the Cloud Era. SD-WAN Cloud Networks Branch LAN/WLAN

Cato Cloud. Software-defined and cloud-based secure enterprise network. Solution Brief

Transform your network and your customer experience. Introducing SD-WAN Concierge

Get Hands On With DNA Center APIs for Managing Intent

Simplifying WAN Architecture

BGP in the Enterprise for Fun and (fake) Profit: A Hands-On Lab

Our Virtual Intelligent Network Overlay (VINO) solutions bring next-generation performance and efficiency to business networks throughout North

2018 Cisco and/or its affiliates. All rights reserved. Cisco Public

TRex Realistic Traffic Generator

Contrail SD-WAN Design & Architecture Guide

Customer s journey into the private cloud with Cisco Enterprise Cloud Suite

Faster, Better, and Cheaper? Building the SD-WAN Business Case

How SD-WAN Makes UC Apps Dance. The Leader in Failsafe SD-WANs. May 17, Top 10 Coolest SDN Technologies

Making Enterprise Branches Agile and Efficient with Software-defined WAN (SD-WAN)

Peering as a Cloud enabler for Enterprises

SD-WAN / Hybrid WAN : Leveraging SDN-NFV for Networks Agility

What To Ask Your SD-WAN Vendor

Intelligent WAN : CVU update

MASERGY S MANAGED SD-WAN

ETSI FUTURE Network SDN and NFV for Carriers MP Odini HP CMS CT Office April 2013

INTERCONNECTING MULTICLOUD WITH VMX

Enterprise. Nexus 1000V. L2/L3 Fabric WAN/PE. Customer VRF. MPLS Backbone. Service Provider Data Center-1 Customer VRF WAN/PE OTV OTV.

AT&T SD-WAN Network Based service quick start guide

DevOps CICD for VNF a NetOps Approach

Cisco Enterprise Agreement

Cisco Cloud Architecture with Microsoft Cloud Platform Peter Lackey Technical Solutions Architect PSOSPG-1002

Ipswitch: The New way of Network Monitoring and how to provide managed services to its customers

An Introduction to Developing for Cisco Kinetic

Transcription:

BRKCRS-2113 Cloud-Ready WAN For IAAS & SaaS With Cisco s Next- Gen SD-WAN Sumanth Kakaraparthi Product Leader SD-WAN Manan Shah Director Of Product Management

Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco Live Mobile App 2. Click Join the Discussion 3. Install Spark or go directly to the space 4. Enter messages/questions in the space cs.co/ciscolivebot#brkcrs-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public

Cisco SD-WAN = Viptela BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 4

Session Objectives By end of this session you will learn how to address the challenges for SaaS and IaaS deployments. You will also learn how to configure, monitor and troubleshoot SaaS & IaaS use cases using Cisco SD-WAN software.

Agenda Introduction to Viptela design principle & architecture Challenges with SaaS deployments How to address these challenges with CloudExpress Key challenges with hybrid cloud deployments How to simplify hybrid cloud deployments with Cloud onramp

Evolution of WAN 4 End-point flexibility: Physical or virtual Rich services or lite Branch, Agg, Cloud Cloud Delivered Analytics 1 Cloud delivered WAN with operational simplicity & analytics 3 Application QOE USERS SD-WAN 5 Cloud Use-Cases WAN LEA R N I N G DC DNA Center DEVICES IaaS Apps Policy Automation Analytics INT EN T CON T EX T SaaS Intent- based Network Infrastructure vdc THINGS 0 SEC U R I TY Transport Independent WAN Fabric 2 Superior security architecture cloud based & on-prem BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 7

Cisco SD-WAN: Components Orchestration Plane Management Plane (Multi-tenant or Dedicated) On-boarding, life cycle management ORCHESTRATION vorchestrator vmonitor MANAGEMENT API ANALYTICS vmanage vsmart vbond vedge ISR4k ASR1k ENCS Control Plane (Containers or VMs) CONTROL Policy, Security, Routing INTERNET MPLS 4G Data Plane (Physical or Virtual) Data Center Campus Branch Home Office BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 8

SaaS Adoption & Key Challenges SaaS Adoption SaaS adoption in eneterprise is growing at higher than expected rate Secuirty Enterprise customers highlighted security as a top roadblock for SaaS adoption Performance Enterprise customers highlighted application performance & latency as second roadblock for SaaS adoption SaaS spend in 2018 will grow by 21% 30% of enterprise customers 25% of enterprise customers BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 9

How are customers accessing SaaS today No DIA Users have to back-haul for internet access Single DIA SaaS applications can take the DIA path from branch Dual DIA Dual DIA paths for SaaS, providing additional bandwidth and availability BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 10

Optimize SaaS with SD-WAN for No DIA Best Performing SD-WAN solutions can leverage the best path for SaaS from branch to datacenter based performance metrics such as loss, jitter and delay ISP2 Regional Hub Sub-optimal optimization as it wont address the performance issues from datacenter to SaaS MPLS MPLS INET 4G BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 11

What is CloudExpress? CloudExpress is the Cisco s SD-WAN capability which delivers best application experience for SaaS applications BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 12

Optimize SaaS with Cloud-Express for dual DIA One of the recommended designs, for vqoe deployments Loss/ Latency Best Performing CloudExpress continuously monitors the edge to SaaS performance on both the DIA paths ISP1 ISP2 Regional Hub MPLS 4G CloudExpress picks the best performing path based on the performance metrics (jitter, loss & delay) Remote Site INET BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 13

How does CloudExpress work for SaaS Performance visibility DNS resolution Path selection BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 14

Performance visibility for dual DIA DNS Server(s) DNS servers are defined in VPN0, vedge performs DNS resolution for the configured SaaS application on each DIA circuits Vedge router initiates periodic HTTP pings toward the configured cloud onramp SaaS application on each DIA circuits ISP1 IF ISP2 IF Vedge router determines best performing DIA circuit based on loss and latency characteristics reported by the HTTP pings vedge Router (remote site) BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 15

SaaS applications & vqoe scores The vqoe value ranges from 0 to 10, with 0 being the worst quality and 10 being the best. vqoe = desired metrics / actual metrics * 10 vqoe score is computed for each remote site application and per path BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 16

DNS resolution for dual DIA DNS Server(s) Host performs DNS resolution for SaaS apps, Vedge router dpi engine intercepts user dns query ISP2 ISP1 IF IF If host dns query is for SaaS, vedge router forwards it to the dns server defined under vpn0 over best performing dia circuit overriding user dns settings Dns queries for non-saas are forwarded according to the routing table, user dns settings are preserved Host Salesforce.c om Cisco.co m VPN0 DPI DNS Query Intercepted vedge Router MPLS INET 4G BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 17

Path selection first flow vedge router may choose sub-performing DIA circuit for the initial application flow as vedge DPI engine had not yet identified the SaaS application Initial application flow is not rerouted, even if using sub-optimal DIA circuit as NAT changes will break TCP flow Host B Host A Best Performing First Flow For O365 1 NAT1 ISP2 IF VPN0 DPI NAT2 ISP1 IF vedge Router AppQoE (3) Classified as Unknown BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 18

Path selection subsequent flow Once vedge router DPI engine identifies cloud SaaS application, cache table is populated and all subsequent application flows are routed over best performing DIA circuit overriding routing decision If the performance of isp2 degrades & isp1 gets better, existing flows continue on the current path as NAT changes will break TCP flow New flows will select isp1 as appqoe score is better on isp1 Subsequent Flows - O365 Host B Best Performing 2 NAT1 ISP2 IF VPN0 DPI NAT2 ISP1 IF dstip/dstport SaaS App (ISP1 IF) vedge Router BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 19

Demo

Configure settings for CloudExpress Enable CloudExpress Enable NAT Set DNS on VPN 0 BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 21

Select SaaS applications and vpn STEP 1: Service VPN In Which Application Runs BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 22

Identify the DIA sites STEP 2: Identify The DIA Sites BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 23

Monitor SaaS performance Sites Experiencing Bad Quality Sites Experiencing Average Quality Sites Experiencing Good Quality BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 24

AppQoE BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 25

Optimize SaaS with cloud-express for single DIA & gateway

Optimize SaaS with cloud-express single DIA One of the recommended designs, for SaaS deployments CloudExpress continuously monitors the edge to SaaS performance on both DIA path and the back-haul path Loss/ Latency ISP1 ISP2 Best Performing Regional Hub CloudExpress picks the best performing based on the performance metrics (jitter, loss & delay) MPLS MPLS INET 4G BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 27

Performance visibility for single DIA DNS Server(s) ISP2 Vedge at the remote site and the gateway perform DNS resolution for the configured cloud onramp SaaS application DNS Server(s) HTTP ping IF 1 Both vedge routers initiate periodic HTTP pings toward the configured cloud onramp SaaS application Vedge router at the remote site determines best performing path toward the SaaS application based on loss and latency characteristics Vedge compares SLA between local DIA and composite metric of HTTP ping + BFD through the gateway vedge 1 ISP1 IF VPN0 vedge (remote site) 3 2 BFD MPLS 4G INET VPN0 vedge (gateway) BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 28

SaaS applications & vqoe scores The vqoe value ranges from 0 to 10, with 0 being the worst quality and 10 being the best. vqoe = desired metrics / actual metrics * 10 vqoe score is computed for each remote site application and per path BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 29

DNS resolution for single DIA If local DIA circuit is the best path, vedge router forwards DNS query to the DNS server defined under VPN0 over local DIA circuit If gateway vedge router is the best path, local vedge router forwards DNS query to the gateway vedge router, which in turn forwards it to the DNS server defined under VPN0 over it s local DIA circuit. Gateway vedge router dpi engine intercepts dns query for SaaS applications only, dns queries for non-cloud applications are forwarded according to the routing table 1 Host DNS Query for Cloud onramp SaaS application 2 DNS Query for application 1 2 Loss/ Latency ISP1 IF VPN0 DPI DNS Query Intercepted vedge Router (remote site) DNS Server(s) MPLS INET ISP2 IF VPN0 DPI DNS Query Intercepted 4G Best Performing vedge Router (gateway) BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 30

Path selection first flow Host initiates communication with the SaaS application NAT1 NAT2 Best Performing ISP2 IF VPN0 Local site vedge router may choose subperforming path for the initial application flow as vedge DPI engine had not yet identified the SaaS application Initial application flow is not rerouted, even if using sub-optimal path as NAT changes will break TCP flow Host A 1 ISP1 IF VPN0 DPI vedge Router (remote site) MPLS INET DPI 4G BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 31

Path selection subsequent flow Host initiates communication for subsequent flows to SaaS application, as the cache table is already populated and application flows are routed over best performing path, overriding the routing decision. If the performance of chosen path degrades while the flow is still active, existing flows continue on the current path, as nat changes will break tcp flow New flows will select, new optimal path based on the appqoe score for that particular application 2 NAT1 ISP1 IF VPN0 DPI dstip/dstport SaaS App (ISP1 IF) vedge Router (remote site) NAT2 Best Performing vedge Router (gateway) IF VPN0 DPI dstip/dstport -> SaaS App (ISP2 IF) MPLS INET ISP2 4G BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 32

Configuration

Identify the SaaS applications STEP 1: Service VPN In Which Application Runs BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 34

Identify client sites for CloudExpress STEP 2: Identify Sites That You Want SaaS Optimization Enabled BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 35

Identify sites that will be used as gateways STEP 3: Identify Sites That You Want SaaS Optimization Enabled BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 36

Troubleshooting

Troubleshooting application metrics Local /Gateway End To End Metrics BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 38

Troubleshooting OMP metrics Metrics From Gateway To SaaS BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 39

Troubleshooting CloudExpress on local exit Metrics To SaaS From Local Exit BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 40

Troubleshooting CloudExpress on gateway exit Remote Exit Information BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 41

Demo

Hybrid Cloud & SD-WAN

IaaS Adoption & Key Trends New use cases accelerate adoption Multi-Cloud adoption Container-based applications Serverless Compute Machine learning / AI IoT IaaS spend in 2018 will grow by 22% CAGR BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 44

Hybrid Cloud Connectivity - Today IaaS instance Inet Public Cloud Provider 1 Region 1 IaaS instance Inet Internet DC MPLS/Internet Branch Public Cloud Provider 1 Region 2 IaaS instance Inet DC Branch Public Cloud Provider 2 Region 1 BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 45

Challenges with Hybrid Cloud Migrations User experience Branch to cloud connectivity Traffic trombones through DC IaaS is extension of DC Cisco Cloud ready WAN Cloud connectivity consumable through a single pane Transport independent anyto-any connectivity Resiliency Multi-Transport access End-to-end VPN segmentation/isolation Security Operational model DIA : Protecting branch users & branch router Consistency across multicloud deployments Visibility into IaaS application usage Consistent policy across branch, DC and Cloud sites BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 46

What is Cloud onramp? Cloud onramp is Cisco s SD-WAN capability to simplify hybrid cloud connectivity, by extending WAN fabric to public cloud BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 47

Public Cloud Providers - Terminology Description AWS Azure Virtual Private Cloud/IaaS instance Virtual Private Cloud (VPC) VNET Redundancy construct Availability Zone Availability set Private Circuit Direct Connect Express Route Internet Gateway IGW Internet Gateway IPSec VPN Gateway VGW VPN Gateway Security Security Groups / ACLs Network Security Groups (NSG) BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 48

Public Cloud Connectivity Options Option 1: Internet connection to Public cloud Option 2: Direct Connect to Public Cloud through SP Option 3: Direct Connect to Public Cloud through meet-me locations vedge vedge vedge Internet SP Internet MPLS Carrier PE Colo vedge Public Cloud Provider IaaS/PaaS Public Cloud Provider IaaS/PaaS Public Cloud Provider IaaS/PaaS Internet only for connectivity. MPLS carrier (ATT & Verizon) offers direct connect into public cloud provider Enterprise collocated with public cloud carriers in meet me locations BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 49

Cloud onramp Key Components vedge Cloud Router: A virtualized version of the vedge router. Available on the AWS and Azure marketplace. SD-WAN Fabric vmanage Cloud onramp for IaaS: vmanage application that orchestrates connectivity to IaaS instances across multiple cloud and multiple regions. Provides visibility into cloud instances. BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 50

Cloud onramp 3 Simple Steps 1 2 3 Discover Applications Provide GW Information Map Applications to Segments BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 51

Cloud onramp for IaaS How it works Public Cloud (AWS & Azure) connectivity solution consumable through the vmanage platform IaaS instances are discovered from users account in a region. User selects instances to operate on User defines vedge gateway parameters and maps IaaS instances to VPN segments in the overlay vmanage Platform Public cloud credentials added to vmanage vmanage invokes instantiation of vedge instances in users accounts & connects IaaS instances to vedge GW VPN segments IaaS instances IaaS instances vedge GW MPLS Branch New instances can be discovered and mapped to VPN segments later Public Cloud Provider 1 Region 1 Internet DC BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 52

Cloud onramp for IaaS AWS solution detail AZ1 R Standard IPSec overlay + BGP to vedge GW Architectural advantages Cloud onramp Share transport (Direct connect and Internet) & vedge Gateways across multiple spoke VPCs in a region AZ2 VGW IGW Share one gateway VPC for all host VPCs in a region. AWS Region Host VPC AZ1 vedge GW Leverage AWS components (IGW, VGW, VPC router) for redundancy. Host VPC AZ2 vedge GW VGW Direct Connect Utilize dynamic routing for fast failover times. AZ1 R Transit VPC Gateway VPC can host firewall for security compliance. AZ2 VGW vmanage instantiated and managed End End security and segmentation BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 53

Demo

Configuration

Applications Cloud onramp Discover Applications BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 56

Cloud onramp GW Information BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 57

Cloud onramp Map Application to Segments BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 58

Cloud onramp Dashboard BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 59

Monitoring & Troubleshooting

Cloud onramp Monitoring & Troubleshooting BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 61

Cloud onramp Monitoring & Troubleshooting BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 62

Cloud onramp Monitoring & Troubleshooting BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 63

Cloud onramp for IaaS SD-WAN value proposition IaaS instances IaaS instances vedge GW 1. Direct branch to cloud connectivity 2. Consistent Policy management & network visibility for branch & cloud Branch Public Cloud Provider 1 Region 1 MPLS IaaS instances Branch IaaS instances vedge GW 5. Multi-cloud solution Public Cloud Provider 1 Region 2 Internet DC IaaS instances IaaS instances vedge GW 3. Resilient & hybrid access from cloud 4. Application steering DC Public Cloud Provider 2 Region 1 BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 64

Cisco Spark How Questions? Use Cisco Spark to communicate with the speaker after the session 1. Find this session in the Cisco Live Mobile App 2. Click Join the Discussion 3. Install Spark or go directly to the space 4. Enter messages/questions in the space cs.co/ciscolivebot#brkcrs-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public

Please complete your Online Session Evaluations after each session Complete 4 Session Evaluations & the Overall Conference Evaluation (available from Thursday) to receive your Cisco Live T-shirt All surveys can be completed via the Cisco Live Mobile App or the Communication Stations Complete Your Online Session Evaluation Don t forget: Cisco Live sessions will be available for viewing on-demand after the event at www.ciscolive.com/global/on-demand-library/. 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public

Continue Your Education Demos in the Cisco campus Walk-in Self-Paced Labs Tech Circle Meet the Engineer 1:1 meetings Related sessions BRKCRS-2113 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 67

Thank you