0% found this document useful (0 votes)
45 views136 pages

Brkewn 2026

Download as pdf or txt
Download as pdf or txt
Download as pdf or txt
You are on page 1/ 136

BRKEWN-2026

Wireless Network Automation


with Cisco DNA Center

Rashmi Ramesh - Product Manager


Paul Lysander - Technical Marketing Engineer
The cost of Doing Business in the Digital World
Enterprise Trends driving Digital
Transformation
Data growth
Connected devices 7.5B
3.64 Cloud
Threat surface areas Mobility
Devices per IoT Things
Person Connected

Spent of
$60B Network
Resources Operations

An evolved world needs a network evolved.

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 3
Why are companies spending so much ?

95% 70% 75%

Network Changes Policy Violations OpEx Spent on Network


Performed Manually Due to Human Error Changes & Troubleshooting
*McKinsey study conducted for Cisco in 2016

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 4
Network Changes Automated Today
Network Changes Automated Today
• Manual changes lead to
Don’t Know configuration errors and
inconsistencies in the
More than 76%
network
• Issues with expanding
26 to 75%
network changes at scale
1 to 25% • Network downtime needs to
be re-thought
None

0% 10% 20% 30% 40% 50% 60%

Source: http://blogs.gartner.com/andrew-lerner/2016/12/20/network-resolutions-for-2017/

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 5
Today’s Key Challenges for Wireless Networks

Configuration Complex to set-up Hardware & Box centric


Inconsistencies and manage Provisioning takes
“Cookbooks” need to Scale redefines Months
be constantly updated Complexity

The challenges will only grow as we move to next generation workspaces


BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 6
The Network. Intuitive.
Constantly learning, adapting and protecting.
LEARNING
Informed
Cisco DNA Center by Context
Visibility into traffic
and threat patterns
Who, What, When,
Policy Automation Analytics
Where, How

INTENT CONTEXT
Powered Intent-based
by Intent Network Infrastructure
Translate Business Intent
to Network Policy
Automate the management
and provisioning millions of
devices instantly

SECURITY
BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 7
• Introduction to Cisco DNA Center
Agenda • Wireless Automation Workflow
• Deployment Models
• Flex Based Deployment
• Mobility Express
• Catalyst 9800 Support (NEW)
• Cisco DNA Platform
• Intent API’s
• ITSM Integration
• Transition from Prime Infrastructure to Cisco DNA Center
• Key Takeaways

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 8
Introducing Cisco DNA
Center
Cisco DNA Center
Intent based Automation & Assurance Platform
Cisco DNA Center
Intent based Platform
• Single pane of glass for all devices
• End-to-end health info in real time
Policy Design
• Granular visibility
• Simplified workflows

Automation for Provisioning Provision Assurance

• Zero-touch deployment
• Device Lifecycle Management
• Policy enforcement

Analytics for Assurance Cisco DNA Center Appliance


• Verify intent of network settings
• Proactively resolve issues
• Reduce time spent troubleshooting
Platform for Extensibility
• Integrate APIs with 3rd party solutions Physical and Virtual Infrastructure
• Integrate and customize ServiceNow
• Evolve operational tools and processes Cisco & 3rd Party

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 10
Cisco DNA Automation
Existing Approach Cisco DNA Approach

Multiple Apps for Management across Integrated Workflows across Domains


Domains

Device Centric Configurations Intent driving service provisioning &


Policy Abstraction

Multiple tools for Automation and One Box Solution with closed loop
Assurance
Automation

Software Update is Manual and Proactive and Consistent Software


Reactive update and Patching

Out of the box Integration with IT


IT process tools working in Silos Process tools

The Network that Scales for the Digital Business


BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Center - Automation Principles

Lifecycle Management IT Process Automation Policy Based Automation

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Wireless Automation
Workflow
Scenario
A Large Retailer is refreshing their Wireless infrastructure across their retail
stores

Intent
Need to have Enterprise &
Guest SSID’s with a high
density client population for RF WAN/Internet

Campus Core

Typical Customer Network


BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 14
Wireless Automation - Overview

Plan Design Design Provision


Network Business
Services Intent

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 15
Plan
Site Hierarchy & Maps

Plan Design Network Design


Business Intent Provision
Services
Plan
Step -1 Create Site Hierarchy along with Buildings and Floors

Step -2 Import Floor Maps

Step -3 Manage Floor Map Properties


or
Export the Site Hierarchy and Maps from PI and import
Step -4
into Cisco DNAC (PI Customers)

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 17
Demo
Design Network
Services

Plan Design Network Design


Business Intent Provision
Services
Network Services and Credentials
Network Services
• AAA (Network and Client)
• DNS, DHCP
• NTP

Monitoring Services
• Syslog
• Traps
• Netflow and Application Visibility

Credentials
• CLI
• SNMP
• HTTP

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 22
Challenges with Network Services & Credentials

 Vary by :
 Location
 Differences in Network Design
 Information often stored in Files - Error
Prone
 Day 2 Updates become a challenge

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 23
Demo
What did we do so far ?

Planned the Sites & Hierarchy

Extracted Common/Standard across Wired and Wireless to


be self managed

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 33
Design Business Intent
for Wireless

Plan Design Network Design


Business Intent Provision
Services
Traditionally ..
HA Configuration

Interfaces Configuration for Enterprise and Guest

Radius & AAA Servers

WLC SSID - Authentication, QoS

Advanced : Local Profiling, Client DHCP, Local/Flex


Connect
Manage AP Groups- RF Profiles (DCA
Settings,RRM),WLAN Interface
Associate AP to AP Groups

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 35
Problem with this approach
Need to manually manage the mapping of AP to AP
Groups

Need to manually map SSID’s to AP Groups

Increased Complexity and Error prone

Similar issue for AP Configuration

No Repeatability for Future growth

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 36
Network Deployment using Profiles
A Single Profile
can be mapped to Small Sites - Small Profile

multiple sites with Medium Sites - Medium Profile


multiple devices
Large Sites - Large Profile

WAN/Internet

Campus Core

Typical Customer Network


BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 37
Contents of a Wireless Profile
Services
• SSID
• Guest Network 70%-80% of the WLC
• RF Profiles Config or more
• Deployment mode

Services
(Intent)
Named Capabilities
• Clean Air
• 11k
• 11v
Advanced 20%-30% of the WLC
Capabilities Config or less

CLI Templates
• Customized Features
• Cisco Best Practice Out of the
box

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 39
Design Business Intent for Wireless
Workflow

SSIDs
Based on best practices

Wireless Interfaces
Map dynamic interface
to VLAN

RF Profiles
Based on best Practices

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 40
Demo
Template Editor

• Create Project
and Template

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 46
Template Editor - Edit Template
• Cool programming-like template view for copy/paste and editing.
• Template engine is based on velocity engine.
• Use “$” sign to define variable.

variable

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 47
Template Editor - Variables
• Define detailed info of variable in “Input Form” view.
• Default value of variable will auto populate for user during provisioning.

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 48
Template Editor - Save & Commit

• Save
• Writable version of template
on Cisco DNA-C
• Can not be used for
provisioning

• Commit
• Once committed, it
becomes read-only
• Can commit multiple times
to create multiple versions
of template
• Only latest commit version
can be used for
provisioning

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 49
What did we do so far ?
Planned the Sites & Hierarchy

Extracted Common/Standard across Wired and Wireless to


be self managed

Captured the business intent within a Network Profile

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 50
Provision

Plan Design Network Design


Business Intent Provision
Services
Provision Workflows

AP’s Discover
Discover Provision Provision
Cisco DNAC
WLC WLC to Site AP's
via PnP

WLC Provisioning AP Provisioning

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 52
WLC Provisioning -
Demo
Provision Workflow - WLC

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 54
Provision Workflow - WLC

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 55
Provision Workflow - WLC

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 56
Provision Workflow - WLC

Discover WLC

Provision WLC to WLC’s Physical


Site Location

APs Discover Cisco


DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 57
Provision Workflow - WLC

Discover WLC

Provision WLC to • Logically


Managed Sites
Site
by WLC
• AP’s Location

APs Discover Cisco


DNA-C via PnP

Provision APs to WLC specific Dynamic


Site Interface Details

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 58
Provision Workflow - WLC

Discover WLC

Provision WLC to
Site

APs Discover Cisco Fill in values for variables


DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 59
Provision Workflow - WLC

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 60
Provision Workflow - WLC

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 61
Behind the Scenes ….
WLAN Parameters

 SSID Creation

 Automatic association of
Dynamic Interfaces to
WLAN

 Broadcast SSID

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 67
What did we do so far ?
Planned the Sites & Hierarchy

Extracted Common/Standard across Wired and Wireless to be


self managed

Captured the business intent within a Network Profile

Converting Business Intent to Network Policy - WLC


Provisioning

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 72
Summary of attributes applied by Cisco DNAC
Enterprise Personal Open Guest-External Guest-ISE
AVC Enabled Enabled Enabled Disabled Disabled
Allow AAA Override Enabled Disabled Disabled Enabled Enabled
Coverage Hole Detection Enabled Enabled Enabled Enabled Enabled
Session Timeout 1800 Disabled Disabled Disabled Disabled
Client Exclusion Enabled Enabled Enabled Enabled Enabled
11ac MU-MIMO Enabled Enabled Enabled Enabled Enabled
11k Neighbor List Enabled Enabled Enabled Enabled Enabled

11k Dual Band Neighbor List Disabled Disabled Disabled Disabled Disabled
MFP Client Protection Optional Optional Optional Optional Optional
NAC State None None None None ISE NAC

Local Client Profiling Enabled Enabled Enabled Enabled Enabled


11v Enabled Enabled Enabled Enabled Enabled

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 73
Provision Workflows

AP’s
Discover Provision Discover Provision
WLC WLC to Site Cisco DNAC AP's
via PnP

WLC Provisioning AP Provisioning

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 74
Provision Workflow - AP’s
Option - 1 Option - 2

Onboard AP - Plug & Play Import a CSV with the AP


S/N, AP Name, Location, RF
Profile

Claim AP to Site
AP gets automatically
claimed and provisioned

Provision AP

More Control on AP Zero touch Deployment


Provisioning

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 75
Provision Workflow - AP’s

Cisco
DNA-C IP Cisco DNA Center
Option 43
5A1D;B2;K4;I192.168.139.151;J80

Policy Automation Analytics


DHCP
Server PnP Server

SSL

AP

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 76
PnP Server Discovery Options
Routers
DHCP with option 43 (ASR, ISR)
1 PnP string: 5A1D;B2;K4;I172.19.45.222;J80 added to DHCP Server

Wireless
Automated

Access Points
DNS lookup
2
resolves to Cisco DNA Center IP Address
Switches
(Catalyst®)
Cloud re-direction https://devicehelper.cisco.com/device-helper
3 Redirect

USB-based bootstrapping*
4 router-confg/router.cfg/ciscortr.cfg Manual discovery
not supported for
Manual

Access Points

Manual - using the Cisco® Installer App**


5
*Supported on Cat 9K only for switches
* *Cisco DNA Center Support in Roadmap
BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 77
AP Provisioning - Demo
Provision Workflow - AP’s Option -1

Discover WLC

Provision WLC to
Site AP’s that undergo PnP are found
as “Unclaimed Devices”. They are
not associated with a WLC yet

APs Discover Cisco


DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 79
Provision Workflow - AP’s Option -1

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 80
Provision Workflow - AP’s Option -1

Discover WLC

AP is configured as FlexConnect AP if any


APs must be SSID in the site profile is enabled with
Provision WLC to assigned to “FlexConnect Local Switching”.
Site floor level.

APs Discover Cisco RF profile is used to


DNA-C via PnP generate AP group.

Provision APs to
AP’s get associated to the
Site
WLC and move to the
Cisco DNAC Inventory

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 81
How did the AP’s find their WLC ?
San Jose - Building 1 Floor 1 AP’s

SJC-WLC-1 RTP - Building 1 Floor 1,2 AP’s

Site : San Jose

Managed AP AP’s Floor


Locations Information
Claim AP PnP with
(Eg : SJC-B1-F1) (Eg : SJC-B1-F1) DNS/ DHCP-
Option 43

WLC Provisioning AP Provisioning


BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 83
Option - 2 : Bulk AP Deployment
1 Import APs

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 87
Option - 2 : Bulk AP Deployment
2 Prepare AP Bulk Import CSV and Upload

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 88
Option - 2 : Bulk AP Deployment

Status: Import APs vs. Actively


Connected APs
BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 89
Option - 2 : Bulk AP Deployment
3 Auto Claim APs when they contact Cisco DNA-C via PnP

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 90
What did we do so far ?
Planned the Sites & Hierarchy

Extracted Common/Standard across Wired and Wireless to be


self managed

Captured the business intent within a Network Profile

Converting Business Intent to Network Policy - WLC


Provisioning

Converting Business Intent to Network Policy - AP Provisioning

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 91
How Wireless Deployment comes together
Profile Mapped to
Site SSIDs and RF
Parameters that
represent wireless
network

Network Services WLC Mapped to


Mapped to Sites Sites
Map sites
Common settings that WLC
for Sites will manage

Site/Building

AP Mapped to Site
APs inherits the
properties of the Profile
associated to site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 92
Controller Deployment
Modes
Flex Based Deployment
Flex Deployment
Design Network Design Business
Plan
Services Intent

During the Profile


Creation, an SSID
can be Centralized
vs Flex Connect

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 96
Behind the Scenes ..

WLC Provisioning

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 97
Behind the Scenes ..
• Unique Flex Group name is generated based on
site names with random number at the end.
• WLAN to VLAN mappings are created.

AP Provisioning
AP Provisioning

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 98
Mobility Express
ME Workflow
Design Network Design Business
Plan
Services Intent

1
Create and
Reserve IP Pools
at the Site Level

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 100
ME Workflow

2 Claim ME to Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 101
ME Provisioning

Successful
Provisioning

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 102
Unified Workflow Experience for Wireless

Centralized Flex Connect Mobility


OperateExpress
From a web
Ease of Deployment
browser or Cisco Eliminate the need for Controller Functionality
and management
wireless app, use a Controller at every Embedded in the
the setup wizard Site Access Point
to enable multiple
APs
simultaneously Deployment Modes

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Catalyst 9800 Support
Benefits of New Configuration Model

Reusability
Easy Provisioning Change Management
Config modularized as
With AP attribute Site based filtering
objects
Tagging

Rule-based Tagging
Simplicity For easy Day 1
No inheritance or configuration
containers

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 105
AireOS vs. Catalyst 9800 Config Model
Going towards a more Modularized and Reusable model with Logical decoupling of configuration entities Granular & simplified
What Policies on which Sites
with what RF characteristics

WLAN AP Group Flex Group RF Profile Basic Policy Site


Tag
Wireless Tag
Policy
Basic Network Policies High Density HDX Tag
Network Policies Advanced
Wireless
Wireless WLAN RF
Tag
Advanced Wireless site Wireless security Data Rates
Wireless settings
Decouple Wireless Security

Remote Site
Wireless Security RF Parameters DCA, TPC, CHDM
Config

Remote site Profile threshold Modularize Switching Policy RF Tag


Switching Policy Site Specific
parameters for traps
Policies
Policy a/n/ac
Profile
Network Policy Switching Policies Client Distribution Network Policy b/g
RF Profiles
High Density HDX

High Density HDX


Data Rates
Site Tag
AireOS Config Model Wireless site
settings
Data Rates
AP Join DCA, TPC, CHDM
Profile
Site Specific
Policies DCA, TPC, CHDM
Profile threshold
for traps
Profile threshold
for traps
Remote Site Client Distribution
Config
Client Distribution
Flex
Remote site Profile
parameters

RF Profile
BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco Catalyst 9800 Config Model

Access Points

Policy Tag RF RF Tag


WLAN
Profile
Profile
2.4 GHz

RF
Policy
Profile
Profile
5 GHz

Defines the broadcast domain (list of Defines the RF properties


WLANs to be broadcasted) with the of the network
properties of the respective SSIDs

Site Tag
AP Join
Profile

Flex
Profile

Defines the properties of the


central and the remote site APs
BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 107
Wireless Network Profile for Cat9800

System Generated Configuration by


Cisco DNA Center UI Orchestration
CLI Templates
• Network Settings

• Device Credentials

Network Settings • Wireless Settings

User Defined Configuration


Device Credentials
• CLI Templates
Wireless Settings

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 109
Cat9800 Wireless Controller Provision Workflow
Ensure NETCONF is
enabled

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 111
Cat9800 Wireless Controller Provision Workflow

Discover WLC On Cat9800 Wireless


Controller

Provision WLC to • Network Settings:


2 TACACS, Radius, SNMP, Syslog,
Site
DHCP, DNS, NTP and etc.

APs Discover Cisco


DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 113
Cat9800 Wireless Controller Provision Workflow

Discover WLC
On Cat9800 Wireless
Controller
Provision WLC to • Country Code
2 Create Policy Profile
Site •
• Create WLAN Profile and associate
with policy profile
APs Discover Cisco
DNA-C via PnP

Provision APs to Note that wlan index starts on 17


Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 114
Cat9800 Wireless Controller Provision Workflow

Cisco
Discover WLC DNA-C IP Cisco DNA Center
Option 43
5A1D;B2;K4;I192.168.139.151;J80

Provision WLC to Policy Automation Analytics


DHCP
Site
Server PnP Server

1
APs Discover Cisco
3 DNA-C via PnP SSL

Provision APs to 3
Site
AP

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 115
Cat9800 Wireless Controller Provision Workflow

Discover WLC

Provision WLC to
Site

APs Discover Cisco


3 DNA-C via PnP

Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 116
Cat9800 Wireless Controller Provision Workflow

Discover WLC What will be provisioned?

• On APs (via PnP):


• Primary WLC Hostname
Provision WLC to
• Primary WLC IP
Site
• AP Hostname

APs Discover Cisco


DNA-C via PnP • On WLC (via NETCONF):
• Create RF Profile if applicable
• Create Wireless Flex Profile if applicable
• Create Policy, Site and RF tags
Provision APs to
4 • Assign AP mode with corresponding policy, site and RF tags
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 117
Cat9800 Wireless Controller Provision Workflow

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

4
Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 118
Cat9800 Wireless Controller Provision Workflow

Discover WLC

AP is configured as FlexConnect AP if any


SSID in the site profile is enabled with
Provision WLC to “FlexConnect Local Switching”.
Site

APs must be
APs Discover Cisco assigned to
DNA-C via PnP floor level.

4
Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 119
Cat9800 Wireless Controller Provision Workflow

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

RF profile is used to
generate RF Tag and
4
Provision APs to associate it to AP.
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 120
Cat9800 Wireless Controller Provision Workflow

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

4
Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 121
Cat9800 Wireless Controller Provision Workflow

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

4
Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 122
Cat9800 Wireless Controller Provision Workflow

Discover WLC

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

4
Provision APs to
Site After AP joins Cat9800 wireless controller successfully, AP join SNMP trap will be sent to Cisco DNA
Center so that AP can be added into inventory.

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 123
Cat9800 Wireless Controller Provision Workflow

Discover WLC
Provision AP via PnP

Sample AP Log for Provisioning AP via PnP


Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

4
Provision APs to
Site

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 124
Cat9800 Wireless Controller Provision Workflow

Discover WLC
Cat9800 Wireless
Controller
Provision WLC to Flex Profile
Site

APs Discover Cisco Site Tag

DNA-C via PnP


Policy Tag

4
Provision APs to
Site RF Tag

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 125
Cat9800 Wireless Controller Provision Workflow

Discover WLC AP Configuration on


Cat9800 Wireless Controller

Provision WLC to
Site

APs Discover Cisco


DNA-C via PnP

Provision APs to
Site
AP is in Flex mode and assigned with newly created policy, site and RF tags.

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 126
Unified Workflow Experience for Wireless

Centralized Flex Connect Mobility


OperateExpress AireOS IOS-XE
From a web
Ease of Deployment
browser or Cisco Eliminate the need for Controller Functionality Traditional Catalyst 9800 -
and management
wireless app, use a Controller at every Embedded in the controller Next Gen Wireless
the setup wizard Site Access Point architecture Stack
to enable multiple
APs
simultaneously
Deployment Modes Controller Architecture

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Platform
The Journey to Intent-based Networking
Increased
IT Agility

Platforms

Systems

Products

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 145
Platform Capabilities – APIs, Adapters & SDKs
Intent APIs
IT and Network
System Process • •




• •

X-Domain Integration

3rd Party SDKs

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Introducing Cisco DNA Center Platform

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 147
Introduction Cisco DNA Center Platform

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 148
Intent API’s

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 149
Intent APIs
Network APIs Business APIs
• Network Level - Features based API • Intent Based API for network operations

• Consistent model for feature across all • Network capabilities abstraction


devices types
• API’s aligned with business constructs
• All UI capabilities of Cisco DNA Center
• Custom Business API from an
available via the API
aggregation of network APIs
• Example: SWIM workflow
• Example: SWIM Workflow
• Check validations for new software image
• Perform clean up • Single API – define golden image for
device family and get compliance of
• Copy software
all devices to the golden image
• Activate new software
• Perform post deployment check

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 150
Example of Business Intent API: Create SSID

 Create Dynamic Interface


 Create SSID
 Create Wireless Network Profile
 Create SSID Business API
 Associate device physical location
 Associate managed AP locations
 Provision WLC

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 151
ITSM Integration

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 156
Streamlining IT Processes
Before After

IT and IT and
How do I correlate all this
Network data – and take the correct Network
Systems actions?
Systems Let’s code the interactions and
reap the results
ITSM
IT and network
IPAM Human
operations
middleware
orchestrator
Reporting
ITSM
Alerts,
telemetry, IPAM
CLI, scripts
Reporting

Infrastructure Infrastructure

From “human middleware” to “IT orchestrator”


BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 157
Integration Adapters with Cisco DNA Center

ITSM

IT Ecosystem
Domain API’s
Standardized
Cisco DNA
Center IPAM

Platform
Direct Integration Reporting

Available Today: ITSM(Service Now), IPAM (Infoblox, Bluecat) and Reporting (Tableau)

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 158
Cisco DNA Center ServiceNow Solution
Deployment
Cisco DNA Center ServiceNow
• Install DNAC 1.2.5 ++ • Update ServiceNow instance with Cisco
Reference App (supported use-
Option A • Install Platform Package cases)**

• Activate Integration • Enhance Cisco Reference App


(leveraging APIs to enhance use-cases)

• Install DNAC 1.2.5 ++ • ServiceNow Events published with


relevant metrics, flags for integration
Option B • Install Platform Package
• Customize and handle ServiceNow
• Activate Integration events to integrate as per custom needs

**Cisco Reference App is available selectively initially, as it is currently undergoing certification with ServiceNow. Once certified, it will be widely available.
**EM Module is required to yield best results of the integration

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 159
Core Principles of Software
Upgrade with Cisco DNA Center
1 2 3

Intent based Network Upgrades Seamless Upgrades Reduce Downtime


with Patching

Standardization of Software by Pre/Post check validations Upgrade only what is


Network device role, device with rollback provide needed with minimal to
type and location confidence for upgrades zero downtime

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 161
Software Upgrade Process
Request
Software
Update
Identify
Close CR Golden
Image

Post Select
Deploy Devices
Validations

Activate Create
Software CR

Cisco DNA Center


NMS Software

Distribute Approve
Software CR

PreCheck
Validations
BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 162
Visualize Software Images

 For a given Device


Family, view :
 All images
 Image Version
 Number of Devices using
a particular image

 Image Repository to
centrally store Software
Images, VNF Images and
Network Container
Images

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 168
Image Standardization - “Golden Images”

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 170
Devices not Compliant with Golden Image

Built-in
Compliancy
checks to
Automatically
flag devices

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 171
Cisco DNA Automation / Assurance driven events
or issues translate into ITSM events

• An ITSM Event can spawn off


an alert or an incident or a
change.

• You as a customer choose


what it does.

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 175
ITSM Event spawns off a problem depending on
impact and user defined criteria

• An ITSM Event resulted in a problem


record for a specific device.

• The problem record has all the


information about the device – current
image, recommended image, impact
to neighborhood topology
BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 176
ITSM Incident or Change Request gets updated
with relevant analysis from Cisco DNA-C
• Cisco DNA Tab gets enriched with the
relevant context for an ITSM leader to
resolve issues faster.
• This enrichment can be based on user,
device, application context.

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 177
Prime Infrastructure
Migration
Co-Existence Objectives
Enable Prime Infrastructure customers to jump start with Cisco DNA Center
1
with minimal efforts

Migrate Devices, Location Groups, Maps and CMX Servers from Prime
2 Infrastructure to Cisco DNA Center seamlessly using the workflow

3 Allow Incremental updates to the migrated dataset

4 Start using Cisco DNA Center Assurance for the migrated sites from Day 1

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 179
Co-existence Overview
Prime Cisco DNA Center

California California
♻ Site
♻ Buildings
Denver
♻ Floors along with floor plan
New York ♻ Routers
Seattle ♻ Switches
♻ WLC
Florida
♻ AP’s
♻ AP Position on the floor maps
♻ Floor Elements like
Exclusion/Inclusion Regions,
Obstacles etc
Jump start with Cisco DNA Center with a ♻ CMX Servers
readily available site layout

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 180
Pre-requisites
❖ Migration workflow resides on Prime Infrastructure

❖ Prime and Cisco DNA Center should be reachable from each other

❖ Feature tested with Cisco DNA Center 1.2.1 onwards and Prime 3.5

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 181
Workflow

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 182
Launch point

Workflow will be launched in a new tab

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 183
Add Cisco DNA Center Info
1

• Validity Status check is made before adding


• User can integrate only one Cisco DNA Center
server at a time

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 184
Sync Settings

2
Enabling auto sync will move modifications of already
migrated data from Prime Infrastructure to Cisco DNA
Center automatically right after modification

Cisco DNA Center Scale

Current Cisco DNA Center Scale


calculated during the page reload

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 185
Location Groups Selection
3
Soft Limits

Currently available in
Currently available Cisco DNA Center
data in Prime
Newly selected Site
Hierarchy

Sandbox view to visualize the location of insertion in the


Site Hierarchy

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 186
Add CMX Info

All CMX Servers SSH Credentials are


associated with this Site mandatory and need to be
are listed provided

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 187
Summary

Summary of the different types of data that have


been added, updated or deleted

Status of the last


sync

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 188
Activity Log

Detailed step by step


status

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 189
Change Audit Status

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 190
Sync Behavior
Force Sync
• Force sync essentially pushes all data, based on selection of groups, irrespective of the
previous data push from PI to Cisco DNA Center
• For any setting change to come into effect, a force sync has to be done
• Initial sync from PI to Cisco DNAC will always be a force sync

Auto Sync
• Auto Sync is an incremental, dynamic synchronization of the data from PI to Cisco DNAC
based on the earlier selection
• Any changes to groups association and device credentials will be synced
• CMX and Maps are not in scope of auto sync and need to triggered via the Force Sync
option
• Auto sync has 2 modes of operation :
 Changes to the already synced groups and devices only are pushed to Cisco
DNAC
 Any new groups added as a sub-group to the already selected location groups
and its device association are pushed to Cisco DNAC

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 191
Key Takeaways
Key Takeaways
Intent Based Workflows that are WLC Architecture
Agnostic (Centralized vs Flex vs ME and IOS-XE vs AireOS)
“Network Profiles” help deliver Business Intent -
Day 0 to Day N
Jump start with DNA Center using the Co-
existence workflows in Prime
Cisco DNAC is ready for production deployment

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 194
Cisco Webex Teams

Questions?
Use Cisco Webex Teams (formerly Cisco Spark)
to chat with the speaker after the session

How
1 Find this session in the Cisco Events Mobile App
2 Click “Join the Discussion”
3 Install Webex Teams or go directly to the team space
4 Enter messages/questions in the team space

cs.co/ciscolivebot#BRKEWN-2026

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 195
Complete your online
session survey
• Please complete your Online Session
Survey after each session
• Complete 4 Session Surveys & the Overall
Conference Survey (available from
Thursday) to receive your Cisco Live T-
shirt
• All surveys can be completed via the Cisco
Events Mobile App or the Communication
Stations

Don’t forget: Cisco Live sessions will be available for viewing


on demand after the event at ciscolive.cisco.com

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 196
Continue Your Education

Demos in Meet the Related


Walk-in
the Cisco engineer sessions
self-paced
Showcase labs 1:1
meetings

BRKEWN-2026 © 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 197
Thank you

You might also like