
Discover Cisco SD-WAN with cloud-based management, zero-touch provisioning, and centralized control plane for secure, scalable, multi-link networks. Apply application-aware policies, DPI, and VPN segmentation to isolate traffic and optimize performance.
Explore the Cisco sd-wan architecture, detailing the orchestration, management, control, and data planes, including vbond, vmanage, vsmart, and vedge components, and how OMP underpins the fabric.
Learn how to securely establish the Cisco SD-WAN control plane with Vmanage, vbond, vSmart, and vEdge using zero touch provisioning, digital certificates, and templates.
Explore how the sd-wan data plane uses vSmart-mediated key exchanges to securely establish per-site ipsec tunnels, rotate keys, and isolate traffic with segmentation, while continuous bfd monitoring evaluates path performance.
Explore how OMP powers the sd-wan overlay by connecting vsmart controllers and edges via transport locators, VPN services, and service routes, with route learning and graceful restart.
Explore how Vmanage templates empower zero-touch provisioning of large Cisco sd-wan deployments by using CLI and feature templates, CSV-driven device configuration, and chassis-based settings.
Learn how to design centralized and local vSmart policies to control routing and data, implement application aware routing, VPN membership, and C flow templates for traffic capture across edges.
Explore Cisco SD-WAN policies, including centralized policies advertised via OMP from vsmart, localized edge policies, hub-and-spoke topology design, and app-aware QoS and firewall service examples using Netconf and Yang.
Explore monitoring and troubleshooting Cisco SD-WAN (Viptela) networks using alarms, audit logs, and CLI tools to diagnose vbond, vedge, vsmart, vmanage, omp, netconf, IPsec, and routing.
Learn to use the vmanage rest api to automate and monitor sd-wan environments with get, post, put, and delete operations, real-time monitoring, swagger exploration, and postman or python sdk support.
Explore the Vmanage rest api to programmatically configure and monitor sd-wan using http rest operations and authentication, with admin, configuration, monitoring, and troubleshooting endpoints.
Bring up a zero touch site by using vmanage templates and a CSV file to auto discover, attach, and configure edge devices, verify control connections, and monitor status.
Explain quality of service in Cisco SD-WAN, covering policing vs shaping, eight queues with weighted round robin, red, and tcp optimization for congestion on high-latency links.
Explore the sd-wan architecture and concepts behind Viptela, including centralized management with Vmanage, control plane and data plane separation, zero touch provisioning, and application centric routing.
Learn about the four components of Cisco SD-WAN: the bond, be smart controllers, be managed, and edge devices, and how discovery, authentication, and the overlay management protocol secure the fabric.
Course Description
This course covers Cisco Software-Defined WAN (SD-WAN) which is an overlay architecture that overcomes the biggest drawbacks of traditional WAN. Students will be able to deploy a Cisco SD-WAN over any transport (MPLS, Broadband, LTE, VSAT etc.) and provide management, policy control and application visibility across the enterprise. This hands-on Course covers the Cisco SD-WAN product and contains extensive labs to reinforce the knowledge learned
Prerequisites
· Familiarity with WAN Networks
Course Objectives
After completing this course, you will be able to:
· Describe how to deploy SD-WAN
· Configure SD-WAN environment
· Deploy Zero-Touch Provisioning
· Implement SD-WAN Security
· Configure SD-WAN Policies
Course Overview
Module 1: Cisco SD-WAN Introduction
· High-level Cisco SD-WAN Deployment models
· Application level SD-WAN solution
· Cisco SDWAN high availability solution
· Cisco SD-WAN Scalability
· Cisco SD-WAN Solution Benefits
Module 2: Cisco SD-WAN Orchestration
· Introduction
· vManage NMS
· vSmart Controller
· vBond Orchestrator
· Controller Resiliency Architecture
Module 3: Site Architecture and Deployment Models
· Site Capabilities
· vEdge Router
· vEdge form factors
Module 4: Zero Touch Provisioning
· Overview
· User Input Required for the ZTP Automatic Authentication Process
· Authentication between the vBond Orchestrator and a vEdge Router
· Authentication between the vEdge Router and the vManage NMS
· Authentication between the vSmart Controller and the vEdge Router
Module 5: Cisco SD-WAN Solution
· Overlay Management Protocol (OMP)
· Cisco SDWAN Circuit Aggregation Capabilities
· Secure Connectivity in Cisco SD-WAN
· Performance Tracking Mechanisms
· Application Discovery
· Dynamic Path Selection
· Performance Based Routing
· Dynamic Cloud Access
Module 6: Cisco SDWAN Security Aspects
· Role-based Security
· Control Plane
· Data Plane
· Controller Protection
· vEdge Protection
· Segmentation
· Application Blocking
· Zone-based Firewall
Module 7: Application Monitoring
· vManage
· vAnalytics
· Ecosystem Partner Solutions
Module 8: Multi-Tenancy
· Multi-Tenant Mode
· Creating Tenants
· Adding Controller
· Adding Vedges
· RBAC