
Section 1:
Introduction
Lecture 1:
Introduction of the Course
Section 2:
Cisco SD-WAN Overlay Network
Lecture 2:
Examining Cisco SD-WAN Architecture
Lecture 3:
Examining the Cisco SD-WAN Architecture – OMP
Section 3:
Cisco SD-WAN Deployment
Lecture 4:
Examining Cisco SD-WAN Deployment Options
Lecture 5:
Examining Cisco SD-WAN Deployment On-Premises
Lecture 6:
Examining Cisco SD-WAN Deployment Using Enterprise CA
Lecture 7:
Examining Cisco SD-WAN Controller Placement and Challenges
Lecture 8:
Deploying the vEdge Devices
Lecture 9:
Deploying the cEdge Devices
Lecture 10:
Deploying Edge Devices – Working with NAT
Lecture 11:
Deploying Edge Devices with Zero-Touch Provisioning – Part 1
Lecture 12:
Deploying Edge Devices with Zero-Touch Provisioning – Part 2
Lecture 13:
Device Configuration Templates – Part-1
Lecture 14:
Device Configuration Templates – Part-2
Lecture 15:
Redundancy, High Availability, and Scalability
Section 4:
Cisco SD-WAN Routing Options
Lecture 16:
Cisco SD-WAN Routing Options - Overview
Lecture 17:
Using Dynamic Routing – Part 1
Lecture 18:
Using Dynamic Routing – Part 1
Lecture 19:
Providing Site Redundancy & High Availability
Lecture 20:
Configuring Transport-Side Connectivity
Lecture 21:
Bidirectional Forwarding Detection (BFD)
Lecture 22:
Implementing TLOC Extensions – Path Redundancy
Section 5:
Cisco SD-WAN Policy Configuration
Lecture 23:
Cisco SD-WAN Policy Overview
Lecture 24:
Defining Advanced Control Policies – Part 1
Lecture 25:
Defining Advanced Control Policies – Part 2
Lecture 26:
Defining Advanced Data Policies – Traffic Engineering
Lecture 27:
Defining Advanced Data Policies – Application Firewalls
Lecture 28:
Defining Advanced Data Policies – Zone-Based Firewalls
Lecture 29:
Implementing AAR (Application-Aware Routing)
Examine Cisco sd-wan deployment options across cloud and on-premises, including Cisco Cloud, AWS and Azure, with controller onboarding, Vbond and Vmanage, redundancy across VPCs, and multi-tenant versus dedicated models.
Explore on-premises Cisco sd-wan deployment using virtual controllers vmanage, vbond, and vsmart with separate management and transport vpns, and perform minimal initial configuration: system id, site, organization, and certificates.
Deploy Cisco sd-wan using enterprise CA by generating a CSR, signing it, installing the certificate on Vmanage, and enabling VPN zero with IPsec.
Examine Cisco sd-wan controller placement and challenges, from cloud versus on-prem deployment to dmz setup, ensuring public IP reachability, dual transport redundancy, nat traversal, and required firewall ports for ipsec.
Explain NAT and port hopping for edge devices behind NAT in Cisco SD-WAN, detailing full cone, restricted cone, port-restricted, and symmetric NAT, and how IPsec tunnels form.
Explore dynamic routing in Cisco sd-wan, focusing on configuring bgp on the service and transport sides, redistributing with omp, and implementing loop-avoidance using path numbers and site IDs.
Configure transport-side connectivity for Cisco SD-WAN by enabling BGP or OSPF on VPN zero, using templates or CLI, and setting up loopback and physical interfaces with prefix lists and redistribution.
Implement TLOC extensions to achieve site-wide path redundancy by extending MPLS and internet connectivity between two routers, forming dual data and control plane tunnels across all transports.
Define advanced control policies for a Cisco SD-WAN fabric using vmanage and vsmart, covering inbound and outbound routing, policy definitions, service chaining, traffic engineering, and arbitrary VPN topology.
Define advanced Cisco SD-WAN control policies to shape inter-region traffic among hub-and-spoke sites, using match and actions to steer routes and enable service chaining with firewalls across VPNs.
Define advanced data policies with application firewalls to block FTP traffic between branch sites in VPN two, using groups of interest, VPN lists, and application lists, then apply the policy.
Learn to perform a brownfield sd-wan migration that retains the router to preserve unified communications, using layer two redundancy, and overlay traffic via mpls or internet with ospf/bgp redistribution.
Explore day-2 data operations in sd-wan: access local and remote logs, use tcpdump for packet capture, download pcap files, and automate with rest APIs and Python scripts.
Learn to build your own Cisco SD-WAN Viptela lab by deploying vmanage, vsmart, vbond, CSR 1000V routers on VMware, establishing the overlay and configuring centralized policies.
Explore the Vmanage dashboard and its components, including vsmart controllers, vbond, and Vonage devices, to monitor real-time device status, control sessions, and application aware routing insights.
Explore the Vmanage monitoring features for geography, network, alarms, events, and logs, and learn how to monitor Vmanage, vsmart, vbond, and wan edge devices.
Explore vmanage tools to access all devices from a single place. Use the ssh terminal, rediscover network, and perform operational commands for troubleshooting.
Configure OMP for vsmart controllers using a vmanage feature template, adjusting path limits, timers, and backup routes, with vsmart acting as a route reflector and manager of the control plane.
Verify OMP in Vmanage by accessing monitor network, selecting a vsmart controller, and using real time CLI to view OMP peers, site IDs, routes advertised and received, and related logs.
Configure a vpn in the sd-wan fabric using Cisco vManage feature templates and device templates, including vpn numbers, dns, host mappings, routes, and per-vpn advertising and service routes.
Configure BGP in sd-wan via Vmanage by creating a BGP feature template, selecting a device model, and applying it through a device template, including neighbors and OMP redistribution.
Learn zero-touch provisioning of a vEdge router in a Cisco SD-WAN lab onboarding via GDB and Vmanage, using edge lists and device templates, and verify control and data planes.
Configure and push additional features to sd-wan devices using device templates and feature templates, such as enabling OSPF on the landside, verifying neighbors, and removing configurations when needed.
Remove specific configurations from a device using the device template in Vmanage, exemplified by removing OSPF from VPN ten and validating the config diff and push.
Configure a multi-topology control policy with route filtering to make VPN ten hub-and-spoke and VPN 20 full mesh, using Vmanage and Vsmart.
The Implementing Cisco SD-WAN Solutions (SDWAN300) v1.0 course gives you deep-dive training about how to design, deploy, configure, and manage your Cisco® Software-Defined WAN (SD-WAN) solution in a large-scale live network, including how to migrate from legacy WAN to SD-WAN. You will learn best practices for configuring routing protocols in the data center and the branch, as well as how to implement advanced control, data, and application-aware policies. The course also covers SD-WAN deployment and migration options, placement of controllers, how to deploy and replace edge devices, and how to configure Direct Internet Access (DIA) breakout.
This course helps you prepare to take the Implementing Cisco SD-WAN Solutions (300-415 ENSDWI) exam, which is part of the new CCNP Enterprise certification and the Cisco Certified Specialist - Enterprise SD-WAN Implementation certification. The exam is available form February 24, 2020.