Cisco SD WAN Training (Viptela Training Course)

Architecture & Components
  • Describe Cisco SD-WAN architecture and components
  • Orchestration plane (vBond, NAT)
  • Management plane (vManage)
  • Control plane (vSmart, OMP)
  • Data plane (vEdge)
  • TLOC, IPsec, vRoute, BFD
  • WAN edge platform types, capabilities (vEdges, cEdges)
  • Cisco SD-WAN Cloud OnRamp: SaaS, IaaS, Colocation

Controller Deployment
  • Controller cloud deployment
  • Controller on-premises deployment (Hosting platform, Installation, Scalability & Redundancy)
  • Configure certificates and device lists
  • Troubleshoot control-plane connectivity between controllers

WAN Edge & Data Plane
  • WAN edge deployment (On-boarding, Zero-touch provisioning, Data Center & Regional hub)
  • Configure and verify SD-WAN data plane (Circuit termination/TLOC-extension, Dynamic tunnels, Underlay-overlay connectivity)
  • Configure and verify OMP, TLOCs
  • Configure CLI and vManage feature templates: VRRP, OSPF, BGP, EIGRP

Control & Data Policies
  • Configure and verify control policies
  • Configure and verify data policies
  • End-to-end segmentation (VPN segmentation, Topologies)
  • SD-WAN application-aware routing
  • Direct Internet Access configuration

Security & QoS
  • Configure and verify service insertion
  • Cisco SD-WAN security features (App-aware firewall, IPS, URL filtering, AMP, SSL/TLS proxy)
  • Cloud security integration (DNS security, Secure Internet Gateway)
  • QoS on WAN edge routers (Scheduling, Queuing, Shaping, Policing, Marking, Per-tunnel & Adaptive QoS)

Monitoring & Management
  • Authentication, monitoring, and reporting from vManage
  • Configure authentication, monitoring, and reporting
  • REST API monitoring
  • Software image management from vManage

Lab Exercises
  • Creating SD-WAN Overlay & Underlay
  • Interconnecting SD-WAN components
  • Installing enterprise root CA server
  • Initializing Controllers (vManage, vBond, vSmart)
  • Initializing WAN Edges (vEdge, cEdge)
  • Feature / Device Templates for vEdge & cEdge in vManage
  • Routing for Transport Side VPN & Service Side VPNs
  • Configuring Control Policies
  • Configuring Data Policies
  • Configuring Security Policies
  • Configuring Cloud-on-Ramp Feature (SaaS, IaaS)
  • Verifying Day 2 Operations (Monitoring, Syslog, tcpdump, API calls, software upgrade)

Devices Used: 1 vManage, 1/2 vSmart, 1 vBond Controller, 5 vEdges, 1 cEdge, 7 Cisco 7200 Router, 3 Cisco Catalyst Switch, 2 Cisco routers for Transport Connection (ISP & MPLS), 1 Win-Host, 1 Root CA