Brkxar 1003
Brkxar 1003
Brkxar 1003
BRKXAR-1003
#CiscoLive
• Current State WAN
Architecture
• Enterprise Private WAN
• DC to Transport Handoff
SDWAN Optimization
Agenda
•
BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 3
Cisco Webex App
Questions?
Use Cisco Webex App to chat
with the speaker after the session
How
1 Find this session in the Cisco Live Mobile App
3 Install the Webex App or go directly to the Webex space Enter your personal notes here
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 4
Evolution of
Travel
The Evolution of Travel
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 6
Current State
Architecture
Where we were before cloud
• Prior to the cloud adoptions enterprises had their DC’s on prem
• Enterprises usually had two DC’s regionally
• DCIs(Data Center Interconnect) built out a point-to-point link
• Traffic was backhauled to the DC
Business
applications Data center Commercial SP Branch
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 8
Enterprise Architecture Pre-Cloud
MPLS MPLS
Internet
Internet
Service Provider
Dark fiber
Layer 1
Ethernet P2P
Data center Data center
MPLS MPLS
Internet
Internet
Service Provider
Dark fiber
Layer 1
Ethernet P2P
Data center Data center
MPLS MPLS
Internet
Internet
Service Provider
Dark fiber
Layer 1
Ethernet P2P
Data center Data center
MPLS MPLS
Internet
Internet
Service Provider
Dark fiber
Layer 1
Ethernet P2P
Data center Data center
SD-WAN
Colo
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 13
Enterprise Architecture Post-Cloud
Business
applications Cloud provider
Business
Cloud provider applications Region B
Region A
SD-WAN
Commercial SP Commercial SP
Colo
Colo
Service Provider
Dark fiber
Internet Layer 1
Internet
Ethernet P2P
Data center
Data center
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 14
Enterprise Architecture Post-Cloud
Business
applications Cloud provider
Business
Cloud provider applications Region B
Region A
SD-WAN
Commercial SP Commercial SP
Colo
Colo
Service Provider
Dark fiber
Internet Layer 1
Internet
Ethernet P2P
Data center
Data center
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 15
Enterprise Architecture Post-Cloud
Business
applications Cloud provider
Business
Cloud provider applications Region B
Region A
SD-WAN
Commercial SP Commercial SP
Colo
Colo
Service Provider
Dark fiber
Internet Layer 1
Internet
Ethernet P2P
Data center
Data center
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 16
Enterprise Architecture Post-Cloud
Business
applications Cloud provider
Business
Cloud provider applications Region B
Region A
SD-WAN
Commercial SP Commercial SP
Colo
Colo
Service Provider
Dark fiber
Internet Layer 1
Internet
Ethernet P2P
Data center
Data center
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 17
Enterprise Architecture Post-Cloud
Business
applications Cloud provider
Business
Cloud provider applications Region B
Region A
SD-WAN
Commercial SP Commercial SP
Colo
Colo
Service Provider
Dark fiber
Internet Layer 1
Internet
Ethernet P2P
Data center
Data center
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 18
Enterprise Architecture Post-Cloud
Business
applications Cloud provider
Business
Cloud provider applications Region B
Region A
SD-WAN
Commercial SP Commercial SP
Colo
Colo
Service Provider
Dark fiber
Internet Layer 1
Internet
Ethernet P2P
Data center
Data center
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 19
The old way doesn’t make sense
Colo’s effectively became extensions of your DC’s The branch traffic is inefficient
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 20
What is MPLS
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 21
Components of MPLS
Service Protocols
most Enterprises
Segment Routing
Transport Protocols
Inter-Domain Traffic Engineering
Inter-Domain MPLS LSP BGP-LU SR-PCE Inter-Domain MPLS LSP
MPLS
IGP with
Intra-Domain MPLS LSP LDP Intra-Domain MPLS LSP
SR extensions
Data-Plane
LDP: Label Distribution Protocol, MP-BGP: Multi-protocol BGP, BGP-LU: BGP Labeled-Unicast, PCE: Path Computation Element, RSVP-TE: Reservation Protocol Traffic Engineering
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 22
Enterprise Next Gen WAN
Business
applications
Business
applications Enterprise WAN
Cloud provider Cloud provider
Region A Region B
Internet
Internet
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 24
Enterprise
Private WAN
What does Private WAN means for Enterprises ?
CE
Ent-PE Ent-PE
Service Provider
PE CE
PE
VRF A PE
PE
PE
PE
VRF A VRF B VRF C
Ent-PE
CE
= Service provider WAN = Enterprise WAN E-Line
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 26
What is an Enterprise Private WAN
• aka Corporate WAN or Enterprise WAN can consist of a
Enterprise WAN WAN core + Edge + Metro Access
• WAN core: routers and optical
• Enterprise customer-owned
transport to connect high-
and managed network
capacity locations to data
• Connects centers, cloud, internet
• Headquarters, remote WAN • Edge: routing/optical to link
locations, branch offices Core data centers, or peering with
cloud/content providers
• Data Centers Edge
• Metro Access: often used in
• Connects to internet, cloud Metro Access industries/verticals to backhaul
providers or service provider traffic from outdoor/smaller
peering points Enterprise locations to the WAN Core
• Does not include on-prem WAN • Depending on the
enterprise switching requirements, customers can
use one or more of these
solutions
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 27
A modern, scalable, secure, simple
alternative to MPLS…
Segment Routing
BRKXAR-1003
What is Segment Routing?
A network program expressed in the packet
• A source node steers a packet
through a controlled set of Payload Segment3 Segment2 Segment1
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 29
One Architecture over Two Data Planes
SR-MPLS
• Instantiation of SR on the MPLS data plane
• One segment is encoded with an MPLS label
Segment Routing
SRv6
• Instantiation of SR on the IPv6 data plane
• One or more segments are encoded with an IPv6 address
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 30
Protocol Simplification with Segment Routing
Service Protocols
Segment Routing
Transport Protocols
Inter-Domain Traffic Engineering
Inter-Domain MPLS LSP BGP-LU SR-PCE Inter-Domain MPLS LSP
MPLS
IGP with
Intra-Domain MPLS LSP LDP Intra-Domain MPLS LSP
SR extensions
Data-Plane
LDP: Label Distribution Protocol, MP-BGP: Multi-protocol BGP, BGP-LU: BGP Labeled-Unicast, PCE: Path Computation Element, RSVP-TE: Reservation Protocol Traffic Engineering
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 31
Intent Based Traffic Steering
Simplified intent-based steering, per destination, per flow
Single infrastructure for different SLA and forwarding requirements
Private Cloud
Low Delay
Encrypted
High Bandwidth
DC1
DC2
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 32
How does it work?
Path expressed in the packet header
Data Segment1
Shortest path
Source
Destination
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 33
How does it work?
Path expressed in the packet header
Source
Destination
Traffic engineered path
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 34
Segment Routing – Making WAN Simple
Modern Enterprise WAN Key Requirements Solutions
VPN
• Layer-3 and Layer-2 connectivity for datacenters • BGP-based L3VPN
Multi-Tenancy / divisions / datacenters • BGP-based L2VPN - Ethernet VPN (EVPN)
• L2VPN - PW / VPLS
Internet
DC1 DC2
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 36
DC to transport
Handoff
Why Handoff between DC and Transport ?
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 38
DC to transport
handoff options
Supported DC to transport handoff options
VRF-lite SR-MPLS SRv6 MPLS LDP VRF-lite SR-MPLS SRv6 MPLS LDP VRF-lite SR-MPLS SRv6 MPLS LDP
BGP-3107 BGP-3107 BGP-3107
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 40
Why SR handoff
from DC?
Current VRF-Lite handoff from DC
• Per VRF Interface and routing protocol session between DC Core or Border Leaf or Border PE and DC-PE
• Automation and scalability are key challenges in this solution due to per VRF routing protocol and sub-interface configuration
• Simple solution to connect DC and transport that allows any type of transport datapath encapsulation (SR-MPLS, LDP or SRv6)
• Supported on all hardware platforms
Data Center
IP-Handoff
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 42
VXLAN EVPN to SR-MPLS transport Handoff
• Single control plane and data plane session instead of per VRF control plane and data plane session
• Addresses automation and scalability challenges of VRF-lite solution
Classic LAN
MP-BGP L3 VPN
or VPNv4/v6
ACI
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 43
Classic LAN to SR-MPLS transport Handoff
• Single control plane and data plane session instead of per VRF control plane and data plane session
• Addresses automation and scalability challenges of VRF-lite solution
or SR-MPLS
eBGP IPv4 labeled unicast
Classic LAN L3 VPN (BGP VPNv4/VPNv6)
SR-MPLS dataplane
MP-BGP L3 VPN
or VPNv4/v6
ACI
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 44
ACI to SR-MPLS transport Handoff
• Single control plane and data plane session instead of per VRF control plane and data plane session
• Addresses automation and scalability challenges of VRF-lite solution
or SR-MPLS
Classic LAN
MP-BGP L3 VPN
or VPNv4/v6
eBGP IPv4 labeled unicast
BGP EVPN (Prefix+Color)
ACI SR-MPLS dataplane
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 45
Advantages of SR handoff
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 46
Segment Routing WAN with SR handoff from
Data Center
Internet
DC-PE1
BGP AS-200
Border Leaf1
BGP AS-100
eBGP IPv4 labeled
unicast SR Core
BGP EVPN
SR-MPLS dataplane
Border Leaf2
BGP AS-100
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 47
SDWAN
Optimization
SR-Aware
SDWAN
Segment Routing Aware SD-WAN
Intent-Based Per-Flow automated Steering
• SD-WAN and SR integration enables differentiated underlay transport SLAs in the core
Low Delay
Encrypted
High Bandwidth
Cloud Provider
Interconnect Network
Transport
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 52
Middle-Mile Optimization
Service Provider A Service Provider B Service Provider C
SaaS IaaS
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 53
Why Cisco SD-WAN with Middle-Mile Optimization?
Cloud WAN NCC
SaaS IaaS
Public Cloud Public Cloud
Flexibility Reliability
Cloud-to-Cloud All or selective traffic Reliable, high-speed
sent based on type or connectivity between
Site-to-Cloud app sites
Enterprise
Site Security On-demand
Site-to-Site End-to-end encryption Automated connectivity
over middle mile global via vManage central
backbone dashboard
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 54
Multi-Region
SDWAN
SDCI and multiple SD-WAN Regions
Cloud WAN NCC
Region 1 Region 1
Site Local POP Direct Connect
Region 2
Site
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 56
Large Enterprise – Regional Meshing and Gateways
EMEA
USA
Hub/Gateway
Hub/Gateway
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 57
Legend
Centralized vSmarts
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 58
Legend
SD-WAN Tunnels/TLOCs
Core Region
Border Routers Inter Region Connectivity Border Routers
Microsoft Google
OMP Azure
Middle-mile Cloud OMP
Middle-mile
SD-WAN Tunnels
Backbone Routing
Private Equinix AWS Megaport
WAN
Distributed vSmarts
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 59
End State
Architecture
R1B1 R1Bn R2B1 R2Bn
Internet
A modular architecture
Public Cloud
with SD-WAN in the
access, and WAN core DC1 DC2
in the backbone Segment Routing
WAN Core
SDWAN Core, WAN
Core and Services
Centralized in CoLo
DC Handoff To
Segment Routing
SD-WAN SD-WAN
Region 3 Region 4
R4Bn
R3B1
R3Bn R4B1
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 61
End-to-End Network
Visibility
How visibility challenges have changed
● Historically, critical apps and services ran in the datacenter
● Customers had full control over the app stack, network and infrastructure
● Leveraged traditional monitoring methods such as SNMP, PCAP, Flow, Logs...
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 63
Solve problems across the network stack
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 64
The ThousandEyes Platform
Customer Employee
Modern WAN Digital Experience
Digital Experience
ISP | Broadband | Cloud Provider Cisco | Docker | JNPR | Linux | MSFT | VMW Apple | Microsoft
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 65
End-to-End WAN Visibility
Public Cloud
Branch Office
Private WAN
SaaS Apps
Monitor Branch to
Cloud & SaaS apps
Enterprise Cloud
Agent Agent
Enterprise Data Center
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 66
Correlated Visibility Into ALL Networks
Availability, Performance and Change
Branch
Offices
Microsoft
Datacenter
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 67
Use Case: Bidirectional path visibility
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 68
Key Takeaways
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 69
Fill out your session surveys!
These points help you get on the leaderboard and increase your chances of winning daily and grand prizes
#CiscoLive Session ID © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 70
• Visit the Cisco Showcase
for related demos
BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 71
Continue your Education.....
https://www.segment-routing.net/
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 72
Continue your Education.....
Multi-Region Fabric Overview and Principles - BRKENT-2292
Wednesday, Jun 7, 1:00 PM - 2:30 PM PDT
End-to-end visibility and actionable insights using Thousand Eyes, DNAC, ISE and SDWAN. - BRKXAR-3001
Tuesday, Jun 6, 10:30 AM - 12:00 PM PDT
#CiscoLive BRKXAR-1003 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 73
Thank you
#CiscoLive
Gamify your Cisco Live experience!
Get points for attending this session!
How:
1 Open the Cisco Events App.
4 Click the + at the bottom of the screen and scan the QR code:
#CiscoLive Session ID © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 75
75
#CiscoLive