Documente Academic
Documente Profesional
Documente Cultură
Agenda
Cisco IT Network Management Overview
1.
2.
3.
4.
Wireless Management
Configuration Management
1. Network Management
Introduction
Internet Edge
15 Internet PoPs
30 ISP Gateway Routers
72 Web Security Appls
Extranet
24 Extranet Hubs
200+ Extranet Partner Sites
530 Extranet Gateways
DMZ
15 DMZ Env
28 Corp Firewalls
80 DMZ Lab Routers
200+ DMZ Routers
WAN Aggregation
50 WAN Aggregation
60 Regional Backbones
75 Global Backbones
Core/Distribution
1500+ Core Switches
Remote Office
375+ FSO Locations
850+ FSO Routers
Data Center
Data Center
30 DC Locations
200+ DC Gateway Routers
Internal Labs
Campus WIFI
670 Controllers
11k Aps
560k+ wired ports
Campus
Configuration
and Policy
Implementation
(Speed)
Operational
Excellence
Application
Visibility &
Migration
End-User
Experience
Security
Network Management in IT
Our Vision: One intelligent network, One management, One policy
Cisco Network
Network Devices: 40,000+
Applications: 4000+
End Points: 300,000+
Wireless Clients: 120,000+
Situation:
Network
Management
Capabilities
Multiple systems
and
scripts to deliver
point features.
Management
Many capabilities
not
integrated
and therefore cause
Network config & change
Endare
User
Experience
(IPSLA)
Capacity Management
WAN Traffic Analysis (Netflow,
NBAR)
Unified
Access
Wired
and
Wireless
Proposal:
Increase
speed
toother
delivery,
outages
and
better
Built-in Integration
with
productsreduce
(NAMs, MSEs,
APIC-EM,
APICs,
UCSM, vCenter, ISE,
Prime Collab) experience
operational
Distributed Systems Architecture with Central Ops Experience
Cisco IT Deployment
Prime Infrastructure 2.2
Cisco 45xx
Cisco 3750/3850
ASR1K/Cat65K
Cisco 44xx
Wireless
Management
Configuration
Management
Network
Topology, Config
Discovery
Prime Infra
Network
Assurance
Zero Touch
Provisioning &
Deployment
Runbook
Automation
Application
Visibility
Prime Infra
Process Orchestrator
DC Assurance
Branch Office
Automation
IP Address
Management
WAN Capacity
Management
Prime Infra
In Use
In Planning
Third Party
Location Applications
SOAP/XML
Wireless Technology
Powers IoE Implementation
WLAN
Location
Appliance
Client Browser
HTTPS
Cisco Prime
Infrastructure
SNMP Trap
EMAIL
SYSLOG
SOAP/XML
SNMP TRAP
SOAP/XML
SNMP
NMSP
On-demand location tracking
of asset tags
CAPWAP
Access Point
CAPWAP
CAPWAP
Access Point
Laptop
Access Point
Smart
Phone
2.
3.
4.
5.
Provisioning
Deployment
Upgrades
Provision
Deploy
Upgrade
Operate
How It Works
1
2
3G/4G
ISE
USB
Console
cable
Onsite Local Operator
(PnP App)
Prime
PnP Gateway Infrastructure
Remote
ISR
Internal
network
Network Engineer
(Prime Infrastructure)
Two step deployment model for Routers & Switches using PI based ZTD
1. Implementation engineer (at Central site) publishes the design based
configuration (Golden Config)
2. PnP App operator (at local site) deploys day 0 config to initiate full config
deployment.
(6-7 Places in Network) * (5-7 topologies per PIN) * (5-10 cut-sheets per topology) * (10-15 templates per cut-sheet)
9649
8000
6000
4135
4000
2000
0
Simple
Complex
Device Count
Track config changes (who, what & when) for better accountability & accuracy
RBAC & Approval process among design, implementation, field-deployment & ops engineers.
How It Works
*Design/Impl
New Device
Development
Config
New Service
Configuration
Update
Prime
Infrastructure
APIs
*Design/Impl/Ops
Cisco Process
Orchestrator
Approval System
Subversion
Version Control
Production
Golden Config
Future Transition
Top 3 transition areas
1.
2.
3.
100%
IT Recurring Incidents
90%
50%
80%
45%
User
Reported
70%
60%
System
Reported
50%
40%
40%
35%
30%
25%
20%
30%
15%
20%
10%
10%
5%
0%
0%
All
Infra Only
Q3/14
Q4-FY13
By inference:
Fault and availability monitoring is not enough to report all issues.
Correlation Engine critical to reduce MTTR for recurring issues.
Q4/14
Q1-FY14
Q1/15
Q2-FY14
Q2/15
Q3-FY14
Data Center
Public Cloud
Collab Experience
(UC/V)
Private Cloud
Global network
(private, public)
Global
Presence
Corporate Office
Global Infra
Services
Corporate Border
Office
Users
Mobile
User
Home Office
Partners
Customers
Coffee
Shop
Borderless
End Zones
Branch Office
2.
3.
2.
3.
4.
5.
Scalable
Consolidated view of network health
Consolidated view of health of each PI instance
Reports scheduling from one interface
Assurance
Application Experience and End User Experience
End-to-end visibility for service-aware networking by
applications, services, and end users
Out-of-the-box support for Cisco advanced technologies,
including AVC 2.0, NetFlow, Flexible NetFlow, NBAR2,
Performance Agent, Medianet, and more
Service health dashboard allows quick health check on your
business-critical applications
Simplified troubleshooting of applications and
client access issues
Multi-NAM management
Traffic analysis
Application response time metrics
Packet capture and decode
Network Topology
Initial use case: Visualization of Faults
o
Topology Dashlets
Geographical Maps
The Value of Branch Service Automation is to dramatically reduce TCO of largescale Branch roll out through automation and to ensure continuous
operational consistency, security and compliance to policy across 000s of
sites
Role
Process
Service
Design
Service
Catalog
Definition of
application policies
for QoE (end user
SLAs), Security and
Access
Setting up of
business entities
and groups for
which services can
be ordered
Network Admin
Network Admin
Service
Request
Ordering of Branch
type when new
site(s) or new
services are needed
Orchestration of
device and network
as a service
enablement for the
Branch using ZTD
Network Operations
Service
Management
Service
Operations
Automated
monitoring,
correlation and
troubleshooting of
Branch services and
infrastructure
Business and
application level
dashboarding and
reporting for SLAs,
Security and
Network Changes
APIC-EM Controller
led changes to
enforce policy
compliance
Tie-in of branch
service impact due
to application
delivery in DC /
Cloud
Network Operations
Network Operations
Enterprise Network
Data Center
Control Points
Physical
Fault/ Events
Correlation
Performance
Management
Capacity /
Analytics
Change /
Compliance
APIC
Compute
Reporting /
Visualization
Multi-tenant
/ Op Center
APIC-EM
Storage
WAN
Access
WLAN
Q&A
Table Topics
Thank you