Kurskode: ENSDWI

varighet: 5 Dag(er)

Sted: Virtual, Instructor Led Training
Katergori: Cisco

Course Overview

Learn how to design, deploy, configure and manage your Ciscoยฎ Software-Defined WAN (SD-WAN) solution in a large-scale live network, including how to migrate from legacy WAN to SD-WAN. You will learn best practices for configuring routing protocols in the data center and the branch, as well as how to implement advanced control, data, and application-aware policies.

The course also covers SD-WAN deployment and migration options, placement of controllers, how to deploy WAN Edge devices, and how to configure Direct Internet Access (DIA) breakout, and how to deploy a Multi-Region Cisco SD-WAN fabric. You will also learn about the various Application Quality of Experience (AppQoE) traffic optimization capabilities. Finally, the training looks at the different Cisco SD-WAN security options available.  The course looks at the different Cisco SD-WAN security options available, such as application-aware enterprise firewall, Intrusion Prevention System (IPS), URL filtering, Cisco Advanced Malware Protection (AMP), Secure Sockets Layer/Transport Layer Security (SSL/TLS) proxy, and Cisco Umbrellaยฎ Secure Internet Gateway (SIG) and Cisco TrustSec in Cisco SD-WAN.

This course is worth 32 Continuing Education (CE) credits towards recertification.

Examine the Cisco SD WAN Architecture

  • โ€ข Software-Defined Networking for the WAN
  • โ€ข SD-WAN Components and Functions
  • โ€ข Underlay and Overlay Network
  • โ€ข SD-WAN Terminology
  • โ€ข Secure Control Plane
  • โ€ข Secure Data Plane
  • โ€ข SD-WAN Platforms
  • โ€ข IOS XE and IOS XE SD-WAN Software

Examine Cisco SD-WAN Deployment Options

  • โ€ข Flexible Controller Deployment Options
  • โ€ข SD-WAN Cloud Deployment
  • โ€ข SD-WAN Managed Service Provider Deployment
  • โ€ข SD-WAN On-Premises Deployment
  • โ€ข Using an Enterprise CA
  • โ€ข Controller Placement and Challenges

Deploying WAN Edge Devices

  • โ€ข Onboard WAN Edge Devices
  • โ€ข Deploy Cisco Catalyst 8000v IOS XE Devices
  • โ€ข ZTP Process Overview - Pure Play Viptela operating system
  • โ€ข Cisco Plug-and-Play Process Overview
  • โ€ข Working with NAT

Manage Device Configuration

  • โ€ข Configuration Groups Overview
  • โ€ข Configuraion Group Feature Profile Overview
  • โ€ข Device Configuration Template Overview
  • โ€ข Device Configuration Template Features

Explore Redundancy, High Availability, and Scalability

  • โ€ข Horizontal Solution Scale
  • โ€ข Cisco vManage, vSmart and vBond Redundancy
  • โ€ข Routed and Bridged Site Design

Enabling Service-Side and Transport-Side Routing

  • โ€ข Implement OSPF
  • โ€ข Implement BGP
  • โ€ข Impement EIGRP
  • โ€ข Implement TLOC Extensions
  • โ€ข Loop Prevention Mechanism

Explore SD-WAN Policy Configuration Basics

  • โ€ข Policy Configuraton Overview
  • โ€ข Policy Attachment, Distribution and Operation

Define Advanced Control Policies

  • โ€ข Control Policy Overview
  • โ€ข Control Policy Application
  • โ€ข Using Arbitrary VPN Topology
  • โ€ข Using Hierarchical Topology
  • โ€ข VPN Membership Policies
  • โ€ข Multi-Region Fabric
  • โ€ข Implementing Traffic Engineering
  • โ€ข Implementing Service Insertion and Chaining
  • โ€ข Implementing Shared Services
  • โ€ข Dynamic On-Demand Tunnels

Define Advanced Data Policies

  • โ€ข Data Policy Overview
  • โ€ข Implementing Traffic Engineering
  • โ€ข Data Forwarding and Qos
  • โ€ข Implementing Qos in Cisco SD-WAN

Implement Application Quality of Experience

  • โ€ข Application Quality of Experience Overview
  • โ€ข TCP Optimization
  • โ€ข Data Redundancy Elimination
  • โ€ข Packet Duplication
  • โ€ข Forward Error Correction
  • โ€ข AppNav-XE

Implement Application-Aware Routing

  • โ€ข AAR Overview
  • โ€ข Implement AAR Policy

Examine Direct Internet Access and Cloud Deployment Options

  • โ€ข Implement Direct Internet Access
  • โ€ข Cisco SD-WAN Cloud OnRamp for SaaS
  • โ€ข Cisco SD-WAN Cloud onRamp for IaaS
  • โ€ข Cisco SD-WAN Cloud onRamp for Multicloud
  • โ€ข Cisco SD-WAN Cloud OnRamp for Colocation
  • โ€ข Cisco Enterprise NFV Infrastructure Software (NFVIS) SD-Branch

Explore Cisco SD-WAN Security

  • โ€ข Cisco SD-WAN Intent Based Security Use Cases
  • โ€ข Cisco SD-WAN Security Components
  • โ€ข Cisco Umbrella DNS Security and SIG Integration
  • โ€ข Cisco Legacy and Unified Policy
  • โ€ข Describe Cisco SD-WAN TrustSec

Design and Migrate to Cisco SD-WAN

  • โ€ข Design Considerations for Hybrid Scenarios
  • โ€ข Enabling Cisco SD-WAN in the Data Center
  • โ€ข Migrating the Branch to Pure SD-WAN
  • โ€ข Migrating a Branch to a Hybrid Model

Perform Cisco SD-WAN Network Management and Troubleshooting

  • โ€ข Managing Cisco SD-WAN
  • โ€ข Monitoring Cisco SD-WAN
  • โ€ข Troubleshooting Cisco SD-WAN
  • โ€ข Upgrading Cisco SD-WAN Components

Examine Cisco SD-WAN Multicast Support

  • โ€ข Multicast Overlay Routing
  • โ€ข Multicast Protocol Support
  • โ€ข Traffic Flow in Multicast Overlay Routing

Lab outline

  • โ€ข Lab 1: Deploy Cisco SD-WAN Controllers
  • โ€ข Lab 2: Manage Cisco SD-WAN Device Configuration
  • โ€ข Lab 3: Configure Cisco SD-WAN Controller Affinity
  • โ€ข Lab 4: Implement Service Side Routing Protocols
  • โ€ข Lab 5: Implement Transport Location (TLOC) Extensions
  • โ€ข Lab 6: Implement Control Policies
  • โ€ข Lab 7: Implement Data Policies
  • โ€ข Lab 8: Implement Application-Aware Routing
  • โ€ข Lab 9: Implement Branch and Regional Internet Breakouts
  • โ€ข Lab 10: Configure Application Firewall
  • โ€ข Lab 11: Migrate Branch Sites
  • โ€ข Lab 12: Perform Cisco SD-WAN Software Upgrade

After completing this course you should be able to:

  • โ€ข Describe the Cisco SD-WAN solution and how modes of operation differ in traditional WAN versus SD-WAN.
  • โ€ข Describe options for Cisco SD-WAN cloud and on-premises deployment.
  • โ€ข Explain how to deploy WAN Edge devices.
  • โ€ข Compare  the Zero-Touch Provisioning (ZTP) and traditional Plug-n-Play processes and examine technical specifics for on-premises deployment.
  • โ€ข Describe configuration groups and feature profiles for configuration management.
  • โ€ข Describe device and feature configuration templates.
  • โ€ข Describe options for providing scalability, high availability, and redundancy.
  • โ€ข Explain how dynamic routing protocols are deployed in an SD-WAN environment, on the service side and transport side.
  • โ€ข Describe Cisco SD-WAN policy concepts, which includes how policies are defined, attached, distributed, and applied.
  • โ€ข Define and implement advanced control policies, such as policies for custom topologies and service insertion.
  • โ€ข Describe the Multi-Region SD-WAN fabric feature.
  • โ€ข Define and implement advanced data policies, such as policies for traffic engineering and QoS.
  • โ€ข Describe the Application Quality of Experience (AppQoE) capabilities available in Cisco SD-WAN.
  • โ€ข Define and implement an Application-Aware Routing (AAR) policy.
  • โ€ข Implement Direct Internet Access (DIA) and Cisco SD-WAN Cloud OnRamp options.
  • โ€ข Describe Cisco SD-WAN security components and integration.
  • โ€ข Describe how to design pure and hybrid Cisco SD-WAN solutions, as well as how to perform a migration to Cisco SD-WAN.
  • โ€ข Describe the different tools and options available for managing a Cisco SD-WAN fabric.
  • โ€ข Describe the different tools and options available for monitoring the Cisco SD-WAN fabric.
  • โ€ข Describe Cisco SD-WAN support for multicast.

 

Attendees should meet the following prerequisites:

  • โ€ข Knowledge of Software-Defined Networking (SDN) concepts as applied to large-scale live network deployments
  • โ€ข Strong understanding of enterprise WAN design
  • โ€ข Strong understanding of routing protocol operation, including both interior and exterior routing protocol operation
  • โ€ข Familiarity with Transport Layer Security (TLS) and IP Security (IPSec)

 

Engineers involved in the design, planning, deployment, maintenance and troubleshooting of a Cisco SD-WAN solution.

NOK 47.000

-
+
Kurskode: ENSDWI Kategori: , Tag

Relaterte kurs