BRKSDN 2500
BRKSDN 2500
BRKSDN 2500
BRKSDN-2500
Cisco Webex Teams
Questions?
Use Cisco Webex Teams to chat
with the speaker after the session
How
1 Find this session in the Cisco Events Mobile App
2 Click “Join the Discussion”
3 Install Webex Teams or go directly to the team space
4 Enter messages/questions in the team space
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 3
Summit
Step 3: Summit Icefield
mountain, small
steps will bring you
to the top!
Basecamp: Hörnlihut
Matterhorn
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
• Customer Use Case:
Setup a branch site remotely
•
• A view from a customer
Looking back to what has Pack your
•
changed since last year
Lessons learned & best practices backpack
• Top of mind 🤯🤯 challenges and
approach how to solve
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 6
• NO marketing
What’s not
-> World of Solutions
• NO TAC
in the •
-> BRKOPS-2826
NO implementation guide
backpack • NO lab
-> BRKNMS-2426
-> LTRNMS-2500
-> LTRNMS-2043
-> LTRCRS-2109
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 7
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 8
Customer Use Case:
Setup a branch site
remotely
Customer Use Case
About Oerlikon:
Global footprint of more than 10’500
employees at 175 locations in 37
countries.
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 10
Customer Use Case
Use Case:
• consolidated overview (visibility)
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 11
Customer Use Case
Setup a branch site remotely
Challenge:
small team to manage
175 locations in
37 countries
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 12
Customer Use Case
Setup a branch site remotely
Challenge:
small team to manage
175 locations in
37 countries
Robert de Meyer
Network Administrator
Oerlikon IT Solutions
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 13
Customer Use Case
Setup a branch site remotely
Lessons learned:
• Use automation with a
programmable central
orchestration tool
• Ship hardware directly to the
branch site without pre
configuration
• Limited IT know-how on site
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 14
Customer Use Case
Setup a branch site remotely
Lessons learned:
• Build a backbone with the
possibility of macro segmentation
• Hardware dependency (max. 4
VN’s possible on Catalyst 9200)
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 15
Customer Use Case
Setup a branch site remotely
Lessons learned:
• Categorize your setups
• Make your IP Design based on
categories and region
• Fixed CIDRs for each VN
• Build summaries for different regions
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 16
Demo
Summit
Step 3: Summit Icefield
mountain, small
steps will bring you
to the top!
Basecamp: Hörnlihut
Matterhorn
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Looking back…
…looking back to last year
Basecamp
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 20
factory-reset command
R6HE18_Fusion1#factory-reset ?
all All factory reset operations Available since:
boot-vars Reset user added boot variables Cisco IOS XE Fuji 16.8.1a
config Reset config
INFO:
R7HE05-C9300-48P-2Stack#factory-reset config
The factory reset operation is irreversible for erasing configuration. Are you sure? [confirm]
Factory-reset cli not supported in stacking mode.
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 21
…looking back to last year
Basecamp
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 22
…looking back to last year
Basecamp
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 23
Summit
Step 3: Summit Icefield
mountain, small
steps will bring you
to the top!
Basecamp: Hörnlihut
Matterhorn
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Hörnlihut
Certificates
Shoulder
Solvay Hut
Summit
Summit Icefield
Presentation © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 25
Certificates Plan your trip
PRE-PRODUCTION
Use Case: Cisco DNA Center Core TM
E E E
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 26
Certificates Plan your trip
PRODUCTION PRE-PRODUCTION
CA
Core
certificates.
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 27
Certificates Plan your trip
PRODUCTION PRE-PRODUCTION
CA
Core
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 28
Certificate check-list Reference
Tips and Tricks
Plan for your DNAC cluster (add all IP’s in the certificate)
Ensure your CA provider allows RFC1918 addresses
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 29
DNAC Site Hörnlihut
Elements
Shoulder
Solvay Hut
Summit
Summit Icefield
Presentation © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 30
DNAC Site Elements Plan your trip
Use Case:
There is a scale limit on the number of site elements
(Version 1.3):
DN2-HW-APL DN2-HW-APL-L DN2-HW-APL-XL
(entry) (mid-size) (large)
Number of site 500 1’000 2’000
elements
Source:
https://www.cisco.com/c/en/us/products/collateral/cloud-
systems-management/dna-center/nb-06-dna-center-data-
sheet-cte-en.html
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 31
DNAC Site Elements Plan your trip
Challenge:
You want to plan your network hierarchy
and create elements without hitting the
limit.
🧐🧐
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 32
DNAC Site Elements Plan your trip
Lessons learned:
1.
Every element under the “Global” hierarchy 2.
which is either a building or a floor is 3.
considered as “site element” and counts 4.
5.
against the limit mentioned in the Data Sheet. 6.
7.
8.
9.
10.
11.
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 33
DNAC Site Elements Plan your trip
Lessons learned:
1.
Every element under the “Global” hierarchy 2.
which is either a building or a floor is 3.
considered as “site element” and counts 4.
5.
against the limit mentioned in the Data Sheet. 6.
7.
8.
9.
🤯🤯
Whaaaaaaat?
10.
11.
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 34
Summit
Step 3: Summit Icefield
Step 2: Shoulder
STACK LAN
Automation
Basecamp: Hörnlihut
Matterhorn
Presentation © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 35
Basecamp
LAN Automation with Stacks
Use a stack of switches within the Fabric Core
Use Case:
Because of limited uplinks to your Border B C B C
or Intermediate switch you want to use a
stack
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 36
Basecamp
LAN Automation with Stacks
PnP/LAN Automation Core
Challenge:
LAN Automation is based on PnP but not C
B C B
the same – some Functionality is not
given in LAN Automation
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 37
Basecamp
LAN Automation with Stacks
PnP/LAN Automation Core
3 options
B C B C
• Power on in order
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 38
Basecamp
LAN Automation with Stacks
Build your stack - option 1/3 Core
Power on in order: B C B C
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 39
Basecamp
LAN Automation with Stacks
Build your stack - option 1/3 Core
Power on in order: B C B C
1
2
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 40
Basecamp
LAN Automation with Stacks
Build your stack - option 1/3 Core
Power on in order: B C B C
1
2
3
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 41
Basecamp
LAN Automation with Stacks
Build your stack - option 1/3 Core
Power on in order: B C B C
1
2
3
4
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 42
Basecamp
LAN Automation with Stacks
Build your stack - option 1/3 Core
Power on in order: B C B C
Stack_1#switch 4 renumber 2
Stack_1#switch 4 renumber 2
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 46
LAN Automation with Stacks Reference
Tips and Tricks
stack-1#show switch stack-ports summary
Sw#/Port# Port Status Neighbor Cable Length Link OK Link Active Sync OK #Changes to LinkOK In Loopback
-------------------------------------------------------------------------------------------------------------------
1/1 OK 4 100cm Yes Yes Yes 1 No
1/2 OK 2 50cm Yes Yes Yes 1 No
2/1 OK 1 50cm Yes Yes Yes 1 No
2/2 OK 3 50cm Yes Yes Yes 1 No
3/1 OK 2 50cm Yes Yes Yes 1 No
3/2 OK 4 50cm Yes Yes Yes 1 No
4/1 OK 3 50cm Yes Yes Yes 1 No
4/2 OK 1 100cm Yes Yes Yes 1 No
Configure switch number, role and priority with the following commands
stack-1#switch 1 renumber ?
<1-8> New number of the Switch
stack-1#switch 1 role ?
active Set the new switch to 1+1 active mode
standby Set the new switch to 1+1 standby mode
stack-1#switch 1 priority ?
<1-15> Switch Priority
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 47
Basecamp
LAN Automation with Stacks
Build your stack - option 2/3 Core
and restart
R7HE05-C9300-48P-2Stack#factory-reset config
Factory-reset cli not supported in stacking mode.
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 48
Basecamp
LAN Automation with Stacks
Build your stack - option 2/3 Core
restart
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 49
Basecamp
LAN Automation with Stacks
Build your stack - option 3/3 Core
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 50
Basecamp
LAN Automation with Stacks
Build your stack - option 3/3 Core
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 51
Basecamp
LAN Automation with Stacks
Build your stack - option 3/3 Core
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 52
Basecamp
LAN Automation with Stacks
Build your stack - option 3/3 Core
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 53
Basecamp
LAN Automation with Stacks
Core
Lessons learned:
There are still use cases for stacks B C B C
E E E
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 54
Summit
Step 3: Summit Icefield
Step 2: Shoulder
L2 Border – your
connectivity to the
non-SDA network Basecamp: Hörnlihut
Matterhorn
Presentation © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 55
L2 Handoff Step 1
Use Case:
Extend an existing VLAN/IP Pool from B C B C
E E E
VLAN 36
10.0.42.0/24
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 56
L2 Handoff Step 1
Gateway
Challenge: B C B C
E E E
VLAN 36
10.0.42.0/24
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 57
L2 Handoff Step 1
Gateway
Lessons learned: B C B C
E E E
VLAN 36
10.0.42.0/24
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 58
L2 Handoff Step 1
Gateway Gateway
Lessons learned: B C B C
E E E
VLAN 36
10.0.42.0/24
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 59
L2 Handoff Step 1
Gateway
Lessons learned: B C B C
E E E
VLAN 36
10.0.42.0/24
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 60
Layer 2 Hand off for Migration in SD-Access Reference
VXLAN VLAN
DATA-PLANE
Layer 2
Border Single or
* Dual-Homing requires
port-channel*
SDA Fabric Trunk Port
L2 MEC to prevent L2 loops
E E E
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 61
Summit
Step 3: Summit Icefield
Step 2: Shoulder
Building Automation
(ex. BACnet/IP)
Basecamp: Hörnlihut
Matterhorn
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Building Automation Step 2
Use Case:
Building Automation based on
BACnet/IP
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 63
Building Automation Step 2
Challenge:
• Broadcast traffic
• Networking know-how of facility
control suppliers
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 64
Building Automation Step 2
Lessons learned: B C B C
Broadcast
Broadcast or
or Link-
Link-Local
Local
Multicast
Multicast
traffic
traffic
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 65
Layer 2 Flooding in SD-Access Reference
Step by step 0 A Given IP Subnet is mapped to a
dedicated multicast
address in the Underlay. The group is a
RP RP
ASM group and hence all the PIM joins
are sent to the RP in the
underlay.
0 0 0
IP Subnet/VLAN 1021
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 66
Layer 2 Flooding in SD-Access Reference
RP RP
1
Since all the Fabric nodes that have
the IP subnet configured have sent
the PIM joins on their respective
1
multicast group , a multicast tree is
pre built for that particular IP
subnet.
E E E
IP Subnet/VLAN 1021
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 67
Layer 2 Flooding in SD-Access Reference
E E E
IP Subnet/VLAN 1021
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 68
Layer 2 Flooding in SD-Access Reference
RP RP
3 The fabric edge node intercepts
the traffic and is sent over the
dedicated multicast group in the
3
underlay.
RP RP
4 All the FE nodes get the traffic sent
by edge node 1.
E E E
IP Subnet/VLAN 1021
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 70
Summit
Step 3: Summit Icefield
Step 2: Shoulder
Use Case:
Silent Hosts
Basecamp: Hörnlihut
Matterhorn
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Silent Hosts Step 2
Use Case:
• There are hosts which do not send
traffic when they get connect to
LAN port
• Maybe there are even some hosts
which do not answer to ARP
requests
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 72
Silent Hosts Step 2
Challenge:
• IP/MAC will not be learned on the
Fabric Edge (FE) and therefore not
registered into the Control Point
Node (CP)
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 73
Silent Hosts Step 2
Lessons learned:
• Works fine for east-west traffic if endpoint responds to ARP & L2 flooding is
enabled
• If not: Hardcode IP/MAC into IP device tracking (IPDT) on Fabric Edge switches
(not scalable workaround & last resort)
• Port needs to be configured with No Authentication or Open Authentication
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 74
Summit
Step 3: Summit Icefield
Step 2: Shoulder
Use Case:
Wake on LAN
Basecamp: Hörnlihut
Matterhorn
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 75
Wake on LAN Step 3
Use Case:
Software Upgrade on Computer
during night when they are initially
switched off
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 76
Wake on LAN Step 3
Challenge:
A message (magic packet) will be
sent to computer by a device in the
same subnet or from another
subnet using a directed broadcast
packet
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 77
Wake on LAN Step 3
E E E
10.0.42.0/24
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 78
Wake on LAN Step 3
10.0.42.0/24
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 79
Summit
Step 3: Summit Icefield
Step 2: Shoulder
Matterhorn
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 80
Assurance Issue for Shared Services Summit
Use Case:
Issue in Assurance about DHCP
Server reachability
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 81
Assurance Issue for Shared Services Summit
Challenge:
Shared
Services
• IP SLA is used for reachability
checks for each Virtual Network
• source-ip from L3 Border Handoff B C B C
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 82
Assurance Issue for Shared Services Summit
Challenge:
ip sla 1
vrf GUEST_VN
Border 2
threshold 3
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 83
Assurance Issue for Shared Services Summit
Lessons learned:
router bgp 65001
(DHCP, AAA, …)
router bgp 65001
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 84
Source: Erwin Keller
Wrap up
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 85
Opening Keynote 09:00 BRKNMS-2426
OPS
Cisco DNA Center -
From 0 to 100 How to
08:30 Operations Track
BRKNMS-2573 get the network up and www.ciscolive.com/emea/learn/technology-
tracks/operations.html
From Prime 11:00 running from scratch
Infrastructure to
Software Defined BRKOPS-2110 BRKNMS-2031
Cisco DNA Center: The 11:15
Network (SDN) End-2-end policy from the 11:00
evolution from traditional BRKSDN-2295
Management with Campus to the DC and back, a Controlling the wild wild west of 09:00
Management to Intent-Based
Cisco DNA Center packet journey with SDA to ACI applications in your network using
Automation & Assurance
Cisco DNAC QoS Policies
BRKOPS-2131 TCRNMS-2100
TechCircle: Cisco DNA 13:15
Cisco DNA Analytics 14:30
and Assurance - The
Center Innovations BRKOPS-2859
Towards operating a 11:30
Shortest Path to BRKSDN-2500 multi-domain network
Network Innocence Real World Use Cases for 14:45
Deploying and Operating Guest Keynote 17:00
Cisco SD-Access Using
Cisco Live
Cisco DNA Center
Celebration 18:30
#CLEMEA
Complete your
online session
survey • Please complete your session survey
after each session. Your feedback
is very important.
• Complete a minimum of 4 session
surveys and the Overall Conference
survey (starting on Thursday) to
receive your Cisco Live t-shirt.
• All surveys can be taken in the Cisco Events
Mobile App or by logging in to the Content
Catalog on ciscolive.com/emea.
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 87
Summit
Step 3: Summit Icefield
mountain, small
steps will bring you
to the top!
Basecamp: Hörnlihut
Matterhorn
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Continue your education
Demos in the
Walk-In Labs
Cisco Showcase
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 89
Thank you
Appendix
Configuring additional links after LAN
automation was performed
Reference
Pre-requisites/Assumptions:
• LAN automation was already performed
• Links between B1 and E1 to E3 are provisioned
• LAN automation IP pool is available B C B C
B1 B2
Step-1:
• Ensure the ports are physically connected to the
correct devices (show cdp neighbor)
• Ports should not have any configuration applied B C B C
B1 B2
E E E
E1 E2 E3
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 94
Configuring additional links after LAN
automation was performed
Reference
Step-2:
• Go to “PROVISION” and Select “Provision / LAN
Automation”
• For the “Primary Device” select “B2” B C B C
Step-3:
• Start LAN Automation and wait 2 minutes
• Stop LAN Automation
B C B C 2 min
• Obviously, no new device was discovered
B1 B2
• However, the link will be configured as Layer 3
interface with corresponding IP Addresses
center/tech_notes/b_dnac_sda_lan_automation_deployment.ht
ml#id_89815
E1 E2 E3
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 96
Complete your
online session
survey • Please complete your session survey
after each session. Your feedback
is very important.
• Complete a minimum of 4 session
surveys and the Overall Conference
survey (starting on Thursday) to
receive your Cisco Live t-shirt.
• All surveys can be taken in the Cisco Events
Mobile App or by logging in to the Content
Catalog on ciscolive.com/emea.
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 97
Continue your education
Demos in the
Walk-In Labs
Cisco Showcase
BRKSDN-2500 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 98
Thank you