SlideShare una empresa de Scribd logo
1 de 77
Descargar para leer sin conexión
© 2016 Cisco and/or its affiliates. All rights reserved. 1
Enterprise Networks - Cisco Digital
Network Architecture - Introducing
the Network Intuitive
Tammy Getschel
Channel Systems Engineer
Jan 2018
Cisco
Connect
© 2016 Cisco and/or its affiliates. All rights reserved. 2
Agenda
• It’s	a	Digital	World!
• Automating	your	network	with	DNA	Center
• Gaining	Deep	Insights	with	Assurance	and	Analytics
• Summary
2
3© 2016 Cisco and/or its affiliates. All rights reserved.
It’s a digital world!
© 2016 Cisco and/or its affiliates. All rights reserved. 4
What is the Risk of Digital Disruption?
• According to the Global Center for Digital Transformation in a survey of
941 companies:
of today’s Top-10 incumbents
(in terms of market share)
will be digitally disrupted
within the next 5 years
https://www.imd.org/uupload/IMD.WebSite/DBT/Digital_Vortex_06182015.pdf
http://www.economist.com/news/business/21647317-messaging-services-are-rapidly-growing-beyond-online-chat-message-medium
40%
in 5
© 2016 Cisco and/or its affiliates. All rights reserved. 5
Why Transform Digitally?
• According to Harvard Business Review, companies that master
digital transformation generate:
more revenue than their industry peers, and
more profits than their industry peers
https://hbr.org/product/leading-digital-turning-technology-into-business-transformation/17
9%
26%
© 2016 Cisco and/or its affiliates. All rights reserved. 6
UPS My Choice
Delivery Control
Personalized Service
Customer Experience
Physical and Virtual
RFID Content
Workforce Efficiency
WIP Inventory and
Part Tracking
American Express
Personalized Service
Through Mobile
Starbucks Apps
Order Ahead
Skip the Line
6
Digital Transformation is Moving IT to the Boardroom
© 2016 Cisco and/or its affiliates. All rights reserved. Cisco Public 6TECCRS-2700
© 2016 Cisco and/or its affiliates. All rights reserved. 7
Cisco Enterprise Networking Vision
Transform our customers’ businesses
through powerful yet simple networks.
© 2016 Cisco and/or its affiliates. All rights reserved. 8
Digital Business Demands Application Agility
“…While other components of the IT infrastructure have become more
programmable and allow for faster, automated provisioning, installing
network circuits is still a painstakingly manual process...”
— Andrew Lerner, Gartner Research
© 2016 Cisco and/or its affiliates. All rights reserved. 9
Agility Requires Faster Network Provisioning
Source: Forrester Source: Open Compute Project
Time IT spends on operations80% CEOs are worried about IT strategy
not supporting business growth57%
Network Expenses
Deployment Speed
0 10 100 1000
Computing Networking
Seconds
0
100%
CAPEX OPEX
33%
67%
© 2016 Cisco and/or its affiliates. All rights reserved. 10
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Key Challenges for Traditional Networks
Slower Issue ResolutionComplex to ManageDifficult to Segment
Ever increasing number of
users and endpoint types
Ever increasing number of
VLANs and IP Subnets
Multiple steps,
user credentials, complex
interactions
Multiple touch-points
Separate user policies for
wired and wireless networks
Unable to find users
when troubleshooting
Traditional Networks Cannot Keep Up!
Key Challenges for Traditional Networks
© 2016 Cisco and/or its affiliates. All rights reserved. 11
Digital Network Architecture (DNA)
Open and Programmable | Standards-based
Open APIs | Developers Environment
Cloud Service Management
Policy | Orchestration
Virtualization
Physical and Virtual Infrastructure | App Hosting
Insights &
Experiences
Network-enabled Applications
Cloud-enabled | Software-delivered
Automation
& Assurance
Security &
Compliance
Principles
Automation
Abstraction and Policy Control
from Core to Edge
Analytics
Network Data,
Contextual Insights
© 2016 Cisco and/or its affiliates. All rights reserved. 1
Intent-based
Network Infrastructure
DNA Center
AnalyticsPolicy Automation
I N T E N T C O N T E X T
S E C U R I T Y
L E A R N I N G
The Network. Intuitive.
Powered by Intent. Informed by Context.
© 2016 Cisco and/or its affiliates. All rights reserved. 12
Introducing DNA Center
Realizing vision of the intent-powered intuitive network
Decouple Policy from
Network Topology
Industry Best-Practices
Configuration and Policy
Compliance
Proactive Issue
Identification and
Resolution
Policy Automation
Assurance and
Analytics
Translate business intent
into network policy
Reduce manual operations
and cost associated with
human errors
Use context to turn data into
intelligence
© 2016 Cisco and/or its affiliates. All rights reserved. 13
DNA Solution
Cisco Enterprise Portfolio
Automation AnalyticsIdentity Services Engine
Routers Switches Wireless APs
DNA Center
DNA Center
Simple Workflows
Wireless Controllers
DESIGN PROVISION POLICY ASSURANCE
14© 2016 Cisco and/or its affiliates. All rights reserved.
Automating your Network with
DNA Center
© 2016 Cisco and/or its affiliates. All rights reserved. 15
Network Changes for Automation
Standard Change:
• Automated Change Request
• No Approval Required
• Fully owned by Network Engg
team with minimal to zero
downtime
Non-Standard Change
• Require Approval by Change
Board
• May require service disruption
• Co-ordination with Application
team during change window
Settings Update (Syslog, NTP)
Password Update
Port Settings, VLAN changes
New device/site deployment
Software Update
New service/Update service
Network
Changes
© 2016 Cisco and/or its affiliates. All rights reserved. 16
Impediments to Automation
• Organizational structures
Different groups
• Lack of internal standards
Snowflakes!
• History
e.g. ACL CLIs
• Standard vs.non-standard changes
Enterprise
Network
change
requests.
65%
Standard
changes
35%
New
initiatives
12%
New lab configurations
10% Hardware upgrades
21% ACL updates
7%
Fleet standardizations
7% Feature configs:
IP/Routing
4% Power shut-downs
8% Hardware upgrades
3% Feature configs:
Security
2% ACL updates
15% Other
12% Other
© 2016 Cisco and/or its affiliates. All rights reserved. 17
BRKNMS-1499
What are Standard Network Changes ??
AAA Configuration
DNS/DHCP Servers
NTP Servers
Syslog Servers
Netflow Collectors
SNMP/SSH/Telnet
Interfaces Configuration
ACL’s
Dial Plans
Vrf
Routing Protocols
Tunnels/DMVPN
Security/Crypto
QOS
AVC
AAA Configuration
DNS/DHCP Servers
NTP Servers
Syslog Servers
Netflow Collectors
SNMP/SSH/Telnet
Interfaces Configuration
Spanning Tree
VLAN
Security/Crypto
QOS
AVC
AAA Configuration
DNS/DHCP Servers
NTP Servers
Syslog Servers
Netflow Collectors
SNMP/SSH/Telnet
SSID’s
RF
Security/Crypto
QOS
AVC
Routers Switches WLC’s
Standard Changes :
o No Approval Required
o Minimal to Zero Disruption
Non-Standard Changes :
o Requires Approval
o May require service
disruption
o May need co-ordination
with other teams (App,DC
etc) during change window
17
© 2016 Cisco and/or its affiliates. All rights reserved. 18
Use Case:
• Adding a new Syslog (Ex:
Splunk) in the network
• SoX requirements to update
password every 6 months
AAA
Server
Site1
North
America
South
America
Site2
Africa
EMEAR
AAA
Server
DNS
Server
Syslog
Server
Syslog
Server
DHCP
Server
Benefits:
• Repeated manual error prone
tasks automated
• Eng get additional time to focus
on design and deployment
• Standard change automation
removes the lead time to make
changes
Network Settings Update (Standard) DESIGN
© 2016 Cisco and/or its affiliates. All rights reserved. 19
Network
Design
Deployment
Standardization
Network
Compliance
Before
During
After
Profile Based
Deployment
§ Plan for the network deployment
§ Feature and Capabilities to be
enabled based on requirements
§ Topology for network
deployment
§ Automated Day 0 Deployment
§ Version management of Profile
for Day 2 Change Management
§ Configuration Compliance
Validation against Profile
§ Remediation of Configuration to
Golden Config
Network Deployment Consistency using Profile
Driven Automation
Configuration Consistency
Simplified Network
Deployment
Integrated IT
Process Flows
DESIGN
© 2016 Cisco and/or its affiliates. All rights reserved. 20
Workflows are foundational to Automation!
• Drive consistency into the architecture via design profiles for WAN and Campus
Both physical and virtual
Add Site
Properties under
Network Settings
Customize Network
Settings and
Credentials per Sub
Area or Site
Create sub
pools for
Services,
LAN,
Management
at sub area or
site
Select golden
image for
NFVIS, virtual
services
Open Design
> Network
Hierarchy
Add Areas and
Buildings
Add or
Import IP
Pools
Add SP
Profile
Add
appropriate
images into
repository
Add custom
CLI configs
Save and
associate Site
Select device, WAN and
LAN settings, add
required virtual Services
Create WAN
Profile
DESIGN
© 2016 Cisco and/or its affiliates. All rights reserved. 21
DNA Center automates the Deployment and Operations
• Plug-and-play
• Software / config / license management
• Ensuring that Hardware is not EoL
(Cisco Active Advisor)
• Software Image management (SWIM)
PnP Agent
Runs on Cisco® switches,
routers,
and wireless AP
Automates discovery and
provisioning
PnP Server
Centralized server
Auto-provision device w/ images
& configs.
Northbound REST APIs
PnP Protocol
HTTPS/XML based
Open schema
protocol
Network PnP
Application UI
IWAN
App
Topology
Discovery
REST API
PnP Service
DNA Center
Controller
PROVISION
© 2016 Cisco and/or its affiliates. All rights reserved. 22
Visualize Software Images
• For a given Device Family,
view :
All images
Image Version
Number of Devices using a
particular image
• Image Repository to
centrally store Software
Images, VNF Images and
Network Container Images
22
© 2016 Cisco and/or its affiliates. All rights reserved. 23
Manage Software Images
23
• Import Images/SMU from :
Cisco.com
URL(http/ftp)
Local PC
Another managed network device
• Remote File Server
Localized file server for software
distribution
File server mapped to site hierarchy
PROVISION
© 2016 Cisco and/or its affiliates. All rights reserved. 24
Platform extensibility for building
custom apps
API and Data Models across multiple
stages in DNA Stack
Integrations with complimentary
platforms *
Open Interfaces and Integrations
Firehose *
Connectors
Graph API
Contextual Search
Cisco Assets
Industry
Integrations
Flexibility Accessibility Expansibility
* : roadmap post FCS
25© 2016 Cisco and/or its affiliates. All rights reserved.
I N T E N T CONTEXT
S E C U R I T Y
L E A R N I N G
Powered by intent,
informed by context.
THE NETWORK.
INTUITIVE.
© 2016 Cisco and/or its affiliates. All rights reserved. 26
ip access-list extended APIC_EM-MM_STREAM-ACL
remark citrix - Citrix
permit tcp any any eq 1494
permit udp any any eq 1494
permit tcp any any eq 2598
permit udp any any eq 2598
remark citrix-static - Citrix-Static
permit tcp any any eq 1604
permit udp any any eq 1604
permit tcp any any range 2512 2513
permit udp any any range 2512 2513
remark pcoip - PCoIP
permit tcp any any eq 4172
permit udp any any eq 4172
permit tcp any any eq 5172
permit udp any any eq 5172
remark timbuktu - Timbuktu
permit tcp any any eq 407
permit udp any any eq 407
remark xwindows - XWindows
permit tcp any any range 6000 6003
remark vnc - VNC
permit tcp any any eq 5800
permit udp any any eq 5800
permit tcp any any range 5900 5901
permit udp any any range 5900 5901
exit
ip access-list extended APIC_EM-SIGNALING-ACL
remark h323 - H.323
permit tcp any any eq 1300
permit udp any any eq 1300 26
Intent-Based
Application PolicyLegacy QoS Policy
© 2016 Cisco and/or its affiliates. All rights reserved. 27
• Express Business Intent
• Translate into device specific policy/configuration
• Leverage Abstraction (the controller knows about the device specifics)
• Automate the Deployment across the Network
• Insure Fidelity to the Expressed Intent (keep everything in sync)
User policy based on user identity
and user-to-group mapping
Employee
(managed asset)
Employee
(Registered BYOD)
Employee
(Unknown BYOD)
ENG VDI System
PERMIT
PERMIT
DENY
DENY
DENY
DENY
DENY
PERMIT
PERMIT
PERMIT
PERMIT
PERMIT
Production Servers Development Servers Internet Access
Protected Assets
Source
De-coupling of
User Identity and Topology
Much easier to translate business objectives to
network functionality—Lowers TCO
Automation
Controller-Led	
Networking	Deployment
Evolution to a Policy Model
27
POLICY
© 2016 Cisco and/or its affiliates. All rights reserved. 28
Policy types
Access Policy
↓
Authentication/
Authorization
Group Assignment
Based on
Authentication methods
Access Control Policy
↓
Who can access what
Rules for x-group access
Permit group to app
Permit group to group
Application Policy
↓
Traffic treatment
QoS for Application
Path Optimization
Application compression
Application caching
DB
Th
Th
Th
✓
POLICY
© 2016 Cisco and/or its affiliates. All rights reserved. 29
1. Access Policies
• Access to the network is governed by ISE
users
things
Authenticate&
Authorize
(AAA)
Groups &
Policy
ISE
Network
Identity (e.g. Active
Directory)
SIEM
Location
Behavior
Analytics
pxGrid
CASB
Vulnerability
Scalable
Groups
Credentials
Posture
Profiling
POLICY
© 2016 Cisco and/or its affiliates. All rights reserved. 30
2. Access Control Policies
• Access Control (who can talk to who) is governed by DNA Center
Leverages ISE for group assignments
users
things
Authenticate&
Authorize
(AAA) Groups &
Policy
ISE DNA Center
Policy Authoring
Workflows
Fabric Management
Network
POLICY
© 2016 Cisco and/or its affiliates. All rights reserved. 31
DNA Automation – Access Control Policy Authoring
© 2016 Cisco and/or its affiliates. All rights reserved. 32
DNA Automation – Access Control Policy Authoring
33© 2016 Cisco and/or its affiliates. All rights reserved.
Gaining Deep Insights with
Assurance and Analytics
© 2016 Cisco and/or its affiliates. All rights reserved. 34
Source: 2016 Cisco Study
Traditional Networking CANNOT Keep Pace with the Demands of Digital Business
OpEx spent on
Network Visibility and
Troubleshooting
75%
Policy Violations
Due to Human Error
70%
Network Changes
Performed Manually
95%
Main Operational Challenges
© 2016 Cisco and/or its affiliates. All rights reserved. 35
Make Data
Driven Decisions
Reveal
Hidden Patterns
Automation for Faster
Results
Focus on
Important Things
Business Value Propositions of Network Analytics
© 2016 Cisco and/or its affiliates. All rights reserved. 36
Collect relevant metrics
Architectural Requirement #1: Instrumentation
ASSURANCE
© 2016 Cisco and/or its affiliates. All rights reserved. 37
Categorize metrics by degrees of relevance
Architectural Requirement #2: On-Device Analytics
ASSURANCE
© 2016 Cisco and/or its affiliates. All rights reserved. 38
Upload critical metrics off the device to collector(s)
(optimally via model-based streaming-telemetry)
Architectural Requirement #3: Telemetry
EM
Collector
ASSURANCE
© 2016 Cisco and/or its affiliates. All rights reserved. 39
Provision long-term storage, retrieval and representation of network metrics and events
Architectural Requirement #4: Scalable Storage
ASSURANCE
© 2016 Cisco and/or its affiliates. All rights reserved. 40
Identify anomalies and trends
Architectural Requirement #5: Analytics Engine
ASSURANCE
© 2016 Cisco and/or its affiliates. All rights reserved. 41
Correlate all data points and permutations for cognitive and predictive analytics
Architectural Requirement #6: Machine Learning
ASSURANCE
© 2016 Cisco and/or its affiliates. All rights reserved. 42
Identify root cause of issues by contextually correlating data
Architectural Requirement #7: Guided Troubleshooting
EM
Analytics
Engine
ASSURANCE
© 2016 Cisco and/or its affiliates. All rights reserved. 43
Present actionable insights to the operator
Solicit input to remediate the root cause
Present a self-remediation option
Architectural Requirement #8: Self-Remediation
EM
Analytics
EngineEM
Network
Controller
Do you want to take the
recommended action?
Yes No
Do you want to take the
recommended action?
Yes NoAlwaysAlways
ASSURANCE
44© 2016 Cisco and/or its affiliates. All rights reserved.
I N T E N T CONTEXT
S E C U R I T Y
L E A R N I N G
Powered by intent,
informed by context.
THE NETWORK.
INTUITIVE.
© 2016 Cisco and/or its affiliates. All rights reserved. 45
DNA Software Capabilities
Cloud Service Management
Automation Analytics
Virtualization
DNA-Ready Physical and Virtual infrastructure
Security
Cisco DNA Architecture
© 2016 Cisco and/or its affiliates. All rights reserved. 46
Cloud Service Management
Automation Analytics
Virtualization
Cisco DNA Architecture—Automation and Analytics
EM
NDP
NDP:
Network Data Platform
(Analytics Engine)EM
NCP
NCP
Network Controller Platform
(Network Controller)
© 2016 Cisco and/or its affiliates. All rights reserved. 47
Cloud Service Management
Automation Analytics
Virtualization
Cisco DNA Architecture—Automation and Analytics
EM
NDP
NDP:
Network Data Platform
(Analytics Engine)
Abstraction	layer
Intent OutcomeDelivering the Intent
Analyzing the Outcome
within the Context of the
expressed Intent
Assuring
the Intent
EM
NCP
NCP
Network Controller Platform
(Network Controller)
© 2016 Cisco and/or its affiliates. All rights reserved. 48
Cisco DNA Architecture—DNA Center
EM
NDP
DNA Center Appliance
EM
NCP
DNA Center User Interface
A single pane of glass for Design, Policy, Provisioning, and Assurance
© 2016 Cisco and/or its affiliates. All rights reserved. 49
Cisco DNA Architecture—DNA Center: Assurance
å
50© 2016 Cisco and/or its affiliates. All rights reserved.
I N T E N T CONTEXT
S E C U R I T Y
L E A R N I N G
Powered by intent,
informed by context.
THE NETWORK.
INTUITIVE.
© 2016 Cisco and/or its affiliates. All rights reserved. 51
Transforming the Network with Big Data Analytics
Data
Insight
Information
Action
Create value at the right timeExtract meaningful insights from data
Volume
Data size
• TB per day
• Streaming telemetry,
NetFlow, Syslog, SNMP, logs
Velocity
Data speed
• Firehose
• Streaming, low-latency
push/pull
Variety
Data forms
• Structured, unstructured
• Switch, router, AP,
IoT sensor, firewall,
load balancer, DHCP, DNS
Veracity
Data trustworthiness
• Quality, validity
• Internal, partner, public
Analytics
© 2016 Cisco and/or its affiliates. All rights reserved. 52
EM
NDP
Network
Telemetry
Contextual Data
Data Collection and Ingestion
FW LB WLC Sensor
AAA
DNS DHCP
LDAP TOPOLOGY
INVENTORY
LOCATION
POLICY
ITSM
ITFM
Streaming
TelemetrySNMP NetFlow Syslog
Data Visualization and Action
Network Assurance netWorth
Collector and Analytics Pipeline SDK
...
Data Models and Restful APIs
Time Series Analysis
System Management Portal
Network Data Platform
Data Correlation and Analysis
Machine Learning
in the Cloud
CEP (*) Correlation
CEP = Complex Event Processing
Network Data Platform (Internal) Architecture
© 2016 Cisco and/or its affiliates. All rights reserved. 53
NetFlow
AVC
DDI
ISE
Topology
Location
Device
NDP
Stream
Processing
Contextual Correlation Example
Source IP: 1.1.1.2
Dest IP: 2.2.2.2
Dest Port: 80
Dest IP: 3.2.2.2
Dest Port: 80
?
?
?
NetFlow
© 2016 Cisco and/or its affiliates. All rights reserved. 54
AVC
NetFlow
DDI
ISE
Topology
Location
Device
NDP
Stream
Processing
Source IP: 1.1.1.2
Dest IP: 2.2.2.2
Dest Port: 80
Dest IP: 3.2.2.2
Dest Port: 80
AVC
Contextual Correlation Example
?
?
?
© 2016 Cisco and/or its affiliates. All rights reserved. 55
AVC
NetFlow
DDI
ISE
Topology
Location
Device
NDP
Stream
Processing
Source IP: 1.1.1.2
Dest IP: 2.2.2.2
Dest Port: 80
Dest IP: 3.2.2.2
Dest Port: 80
AVC
Contextual Correlation Example
DDI
?
© 2016 Cisco and/or its affiliates. All rights reserved. 56
AVC
NetFlow
DDI
ISE
Topology
Location
Device
NDP
Stream
Processing
Source IP: 1.1.1.2
Dest IP: 2.2.2.2
Dest Port: 80
Dest IP: 3.2.2.2
Dest Port: 80
AVC
Contextual Correlation Example
DDI
User: George Baker
ISE
Group: Marketing
© 2016 Cisco and/or its affiliates. All rights reserved. 57
AVC
NetFlow
DDI
ISE
Topology
Location
Device
NDP
Stream
Processing
Source IP: 1.1.1.2
Dest IP: 2.2.2.2
Dest Port: 80
Dest IP: 3.2.2.2
Dest Port: 80
AVC
Contextual Correlation Example
DDI
User: George Baker
ISE
Group: Marketing
Topology
© 2016 Cisco and/or its affiliates. All rights reserved. 58
AVC
NetFlow
DDI
ISE
Topology
Location
Device
NDP
Stream
Processing
Source IP: 1.1.1.2
Dest IP: 2.2.2.2
Dest Port: 80
Dest IP: 3.2.2.2
Dest Port: 80
AVC
Contextual Correlation Example
DDI
User: George Baker
ISE
Group: Marketing
Topology
Location
Building 24 1st Floor
© 2016 Cisco and/or its affiliates. All rights reserved. 59
AVC
NetFlow
DDI
ISE
Topology
Location
Device
NDP
Stream
Processing
Source IP: 1.1.1.2
Dest IP: 2.2.2.2
Dest Port: 80
Dest IP: 3.2.2.2
Dest Port: 80
AVC
Contextual Correlation Example
DDI
User: George Baker
ISE
Group: Marketing
Topology
Location
Building 24 1st Floor
Device
Client Density
Problem Here...
60© 2016 Cisco and/or its affiliates. All rights reserved.
I N T E N T CONTEXT
S E C U R I T Y
L E A R N I N G
Powered by intent,
informed by context.
THE NETWORK.
INTUITIVE.
© 2016 Cisco and/or its affiliates. All rights reserved. 61
What is Machine Learning?
• Machine learning is an application of artificial intelligence (AI) that provides systems the ability to
automatically learn and improve from experience without being explicitly programmed to do so
• The process of learning begins with observations of data, and looking for patterns within the data so as to
make increasingly better correlations, inferences and predictions
• The primary aim is to allow these systems to learn automatically without human intervention or
assistance and adjust actions accordingly
© 2016 Cisco and/or its affiliates. All rights reserved. 62
Project Kairos
For Wireless, Wired and IOT
Cognitive Analytics
Netflix
AccessPoints
Device Type
Internet Video
Facebook
Instagram
YouTube
Anomaly detection across hundred of thousands of
devices, dozen of thousands of gears and hundreds
of heat maps
Machine Learning
© 2016 Cisco and/or its affiliates. All rights reserved. 63
Project Kairos
For Wireless, Wired and IOT
Cognitive Analytics
Anomaly detection
Identify and proactively adapt to a failure
before it happens
Machine Learning
Predictive Analytics
© 2016 Cisco and/or its affiliates. All rights reserved. 64
Machine Learning Algorithms
build their models using
hundreds of inputs
APs
WAN
Local WLCs
Network Services DCOffice Site
ISE
DHCP
Mobile Clients
CUCM
APIC-EM
~
~
~
~
~
~
~
~
~
~
~
~
RF & EDCA
behavioral
metrics,..
Queuing, Dropping, WRED
behavioral metrics…
Device type, OS release,
behavioral metrics, ...
WAN & core
network metrics ..
Application metrics, user
feedback, failure rate, ...
... and more
© 2016 Cisco and/or its affiliates. All rights reserved. 65
© 2016 Cisco and/or its affiliates. All rights reserved. 66
© 2016 Cisco and/or its affiliates. All rights reserved. 67
© 2016 Cisco and/or its affiliates. All rights reserved. 68
© 2016 Cisco and/or its affiliates. All rights reserved. 69
© 2016 Cisco and/or its affiliates. All rights reserved. 70
71© 2016 Cisco and/or its affiliates. All rights reserved.
I N T E N T CONTEXT
S E C U R I T Y
LEARNING
Powered by intent,
informed by context.
THE NETWORK.
INTUITIVE.
© 2016 Cisco and/or its affiliates. All rights reserved. 72
Providing Security While Maintaining Privacy!
Encrypted Traffic
Non-Encrypted
Traffic
Can we Actually Solve This?
How do you Analyze Metadata without decrypting traffic flows?
80%
of organizations are
victims of malicious activity
41%
Of attacks used encrypted
traffic to evade detection
© 2016 Cisco and/or its affiliates. All rights reserved. 73
Encrypted Traffic Analytics
Encrypted traffic analytics from
Cisco’s newest switches and routers
Security with Privacy
Analyze netflow metadata without
decrypting traffic flows
Global-to-local knowledge correlation -
99.99% threat detection accuracy
74© 2016 Cisco and/or its affiliates. All rights reserved.
Summary
© 2016 Cisco and/or its affiliates. All rights reserved. 75
Key Takeaways
Profile Based Deployment simplifies Day 0 Deployment and
Day 2 Change Management
Assurance must be outcomes driven and not problem based
Intent Driven Networking Starts with Policy
Automation must be thought holistically, as some of the
simple tasks take the most amount of time
© 2016 Cisco and/or its affiliates. All rights reserved. 76
Automated Deployment
It’s a Journey!
Self-Driving Automation
Plug and Play,
Day 0 Deployment
Configure once and deploy
everywhere - SD-Access
Exists Today
ISE / AD NAE / PI
DNA Center
Campus
Fabric
SDA
Future
Closed Loop through Network
Analytics and Machine Learning
Network
Analytics
Platform
DNA Center
BB
Campus
Fabric
SDA
APIC-
EM
HTTP
Proxy
Internet
Admin
Installer
New
Step 1
Network admin
previsions devices in
Cisco Network Plug
and Play applications
Step 2
Onsite installer with
mobile app installs and
powers on devices,
triggers deployment,
checks status
Step 3
New devices contact
Cisco Network Plug and
Play application to get
provisioned
Network admin can
remotely monitor
install status
Basic Advanced
One Point of Management: All from Cisco DNA Center
Consistent Across Network Fabric
Thank you.

Más contenido relacionado

La actualidad más candente

Optimizing your client's wi fi experience
Optimizing your client's wi fi experience Optimizing your client's wi fi experience
Optimizing your client's wi fi experience Cisco Canada
 
Cisco connect winnipeg 2018 hybrid collaboration
Cisco connect winnipeg 2018   hybrid collaborationCisco connect winnipeg 2018   hybrid collaboration
Cisco connect winnipeg 2018 hybrid collaborationCisco Canada
 
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...Cisco Canada
 
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUICisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUICisco Canada
 
Cisco connect winnipeg 2018 understanding cisco's next generation sdwan sol...
Cisco connect winnipeg 2018   understanding cisco's next generation sdwan sol...Cisco connect winnipeg 2018   understanding cisco's next generation sdwan sol...
Cisco connect winnipeg 2018 understanding cisco's next generation sdwan sol...Cisco Canada
 
Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...
Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...
Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...Cisco Canada
 
Cisco Connect Toronto 2017 - Optimizing your client's Wi-Fi Experience
Cisco Connect Toronto 2017 - Optimizing your client's Wi-Fi ExperienceCisco Connect Toronto 2017 - Optimizing your client's Wi-Fi Experience
Cisco Connect Toronto 2017 - Optimizing your client's Wi-Fi ExperienceCisco Canada
 
Cloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security ExplainedCloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security ExplainedCisco Canada
 
Cisco connect winnipeg 2018 putting firepower into the next generation fire...
Cisco connect winnipeg 2018   putting firepower into the next generation fire...Cisco connect winnipeg 2018   putting firepower into the next generation fire...
Cisco connect winnipeg 2018 putting firepower into the next generation fire...Cisco Canada
 
Cisco Connect Vancouver 2017 - So you want to go to the cloud! Simplifying cl...
Cisco Connect Vancouver 2017 - So you want to go to the cloud! Simplifying cl...Cisco Connect Vancouver 2017 - So you want to go to the cloud! Simplifying cl...
Cisco Connect Vancouver 2017 - So you want to go to the cloud! Simplifying cl...Cisco Canada
 
Cisco Connect Montreal 2017 - Optimizing Your Client's Wi-Fi Experience
Cisco Connect Montreal 2017 - Optimizing Your Client's Wi-Fi ExperienceCisco Connect Montreal 2017 - Optimizing Your Client's Wi-Fi Experience
Cisco Connect Montreal 2017 - Optimizing Your Client's Wi-Fi ExperienceCisco Canada
 
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...Cisco Canada
 
NFV orchestration for cloud and virtual branch services
NFV orchestration for cloud and virtual branch servicesNFV orchestration for cloud and virtual branch services
NFV orchestration for cloud and virtual branch servicesCisco Canada
 
Cisco Connect Toronto 2017 - Your time is now
Cisco Connect Toronto 2017 - Your time is nowCisco Connect Toronto 2017 - Your time is now
Cisco Connect Toronto 2017 - Your time is nowCisco Canada
 
Cisco Connect Toronto 2017 - Introducing the Network Intuitive
Cisco Connect Toronto 2017 - Introducing the Network IntuitiveCisco Connect Toronto 2017 - Introducing the Network Intuitive
Cisco Connect Toronto 2017 - Introducing the Network IntuitiveCisco Canada
 
Model driven telemetry
Model driven telemetryModel driven telemetry
Model driven telemetryCisco Canada
 
Cisco connect winnipeg 2018 compute infrastructure for a hybrid cloud
Cisco connect winnipeg 2018   compute infrastructure for a hybrid cloudCisco connect winnipeg 2018   compute infrastructure for a hybrid cloud
Cisco connect winnipeg 2018 compute infrastructure for a hybrid cloudCisco Canada
 
Leverage the Network
Leverage the NetworkLeverage the Network
Leverage the NetworkCisco Canada
 
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...Cisco Canada
 

La actualidad más candente (20)

Optimizing your client's wi fi experience
Optimizing your client's wi fi experience Optimizing your client's wi fi experience
Optimizing your client's wi fi experience
 
Cisco connect winnipeg 2018 hybrid collaboration
Cisco connect winnipeg 2018   hybrid collaborationCisco connect winnipeg 2018   hybrid collaboration
Cisco connect winnipeg 2018 hybrid collaboration
 
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...
 
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUICisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
Cisco Digital Network Architecture – Deeper Dive, “From the Gates to the GUI
 
Cisco connect winnipeg 2018 understanding cisco's next generation sdwan sol...
Cisco connect winnipeg 2018   understanding cisco's next generation sdwan sol...Cisco connect winnipeg 2018   understanding cisco's next generation sdwan sol...
Cisco connect winnipeg 2018 understanding cisco's next generation sdwan sol...
 
Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...
Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...
Cisco Connect Vancouver 2017 - Gain insight and programmability with Cisco DC...
 
Cisco Connect Toronto 2017 - Optimizing your client's Wi-Fi Experience
Cisco Connect Toronto 2017 - Optimizing your client's Wi-Fi ExperienceCisco Connect Toronto 2017 - Optimizing your client's Wi-Fi Experience
Cisco Connect Toronto 2017 - Optimizing your client's Wi-Fi Experience
 
Cloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security ExplainedCloud and On Premises Collaboration Security Explained
Cloud and On Premises Collaboration Security Explained
 
Cisco connect winnipeg 2018 putting firepower into the next generation fire...
Cisco connect winnipeg 2018   putting firepower into the next generation fire...Cisco connect winnipeg 2018   putting firepower into the next generation fire...
Cisco connect winnipeg 2018 putting firepower into the next generation fire...
 
Cisco Connect Vancouver 2017 - So you want to go to the cloud! Simplifying cl...
Cisco Connect Vancouver 2017 - So you want to go to the cloud! Simplifying cl...Cisco Connect Vancouver 2017 - So you want to go to the cloud! Simplifying cl...
Cisco Connect Vancouver 2017 - So you want to go to the cloud! Simplifying cl...
 
Cisco Connect Montreal 2017 - Optimizing Your Client's Wi-Fi Experience
Cisco Connect Montreal 2017 - Optimizing Your Client's Wi-Fi ExperienceCisco Connect Montreal 2017 - Optimizing Your Client's Wi-Fi Experience
Cisco Connect Montreal 2017 - Optimizing Your Client's Wi-Fi Experience
 
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
Cisco Connect Vancouver 2017 - Cisco's Digital Network Architecture - deeper ...
 
ACI Hands-on Lab
ACI Hands-on LabACI Hands-on Lab
ACI Hands-on Lab
 
NFV orchestration for cloud and virtual branch services
NFV orchestration for cloud and virtual branch servicesNFV orchestration for cloud and virtual branch services
NFV orchestration for cloud and virtual branch services
 
Cisco Connect Toronto 2017 - Your time is now
Cisco Connect Toronto 2017 - Your time is nowCisco Connect Toronto 2017 - Your time is now
Cisco Connect Toronto 2017 - Your time is now
 
Cisco Connect Toronto 2017 - Introducing the Network Intuitive
Cisco Connect Toronto 2017 - Introducing the Network IntuitiveCisco Connect Toronto 2017 - Introducing the Network Intuitive
Cisco Connect Toronto 2017 - Introducing the Network Intuitive
 
Model driven telemetry
Model driven telemetryModel driven telemetry
Model driven telemetry
 
Cisco connect winnipeg 2018 compute infrastructure for a hybrid cloud
Cisco connect winnipeg 2018   compute infrastructure for a hybrid cloudCisco connect winnipeg 2018   compute infrastructure for a hybrid cloud
Cisco connect winnipeg 2018 compute infrastructure for a hybrid cloud
 
Leverage the Network
Leverage the NetworkLeverage the Network
Leverage the Network
 
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...
Cisco Connect Vancouver 2017 - Putting firepower into the next generation fir...
 

Similar a Enterprise Networks - Cisco Digital Network Architecture - Introducing the Network Intuitive

Cisco connect winnipeg 2018 introducing the network intuitive
Cisco connect winnipeg 2018   introducing the network intuitiveCisco connect winnipeg 2018   introducing the network intuitive
Cisco connect winnipeg 2018 introducing the network intuitiveCisco Canada
 
Cisco Connect Halifax 2018 Cisco dna - network intuitive
Cisco Connect Halifax 2018   Cisco dna - network intuitiveCisco Connect Halifax 2018   Cisco dna - network intuitive
Cisco Connect Halifax 2018 Cisco dna - network intuitiveCisco Canada
 
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...Cisco Canada
 
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocenceCisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocenceCisco Canada
 
Cisco Connect Ottawa 2018 dna automation the evolution to intent-based netw...
Cisco Connect Ottawa 2018 dna automation   the evolution to intent-based netw...Cisco Connect Ottawa 2018 dna automation   the evolution to intent-based netw...
Cisco Connect Ottawa 2018 dna automation the evolution to intent-based netw...Cisco Canada
 
Application Centric Infrastructure (ACI), the policy driven data centre
Application Centric Infrastructure (ACI), the policy driven data centreApplication Centric Infrastructure (ACI), the policy driven data centre
Application Centric Infrastructure (ACI), the policy driven data centreCisco Canada
 
What is ThousandEyes Webinar
What is ThousandEyes WebinarWhat is ThousandEyes Webinar
What is ThousandEyes WebinarThousandEyes
 
Cisco Connect Halifax 2018 Cisco dna - deeper dive
Cisco Connect Halifax 2018   Cisco dna - deeper diveCisco Connect Halifax 2018   Cisco dna - deeper dive
Cisco Connect Halifax 2018 Cisco dna - deeper diveCisco Canada
 
[Cisco Connect 2018 - Vietnam] 2. lam doan software-defined access-a transf...
[Cisco Connect 2018 - Vietnam] 2. lam doan   software-defined access-a transf...[Cisco Connect 2018 - Vietnam] 2. lam doan   software-defined access-a transf...
[Cisco Connect 2018 - Vietnam] 2. lam doan software-defined access-a transf...Nur Shiqim Chok
 
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WAN
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WANCisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WAN
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WANCisco Canada
 
Cisco Connect Toronto 2018 DNA automation-the evolution to intent-based net...
Cisco Connect Toronto 2018   DNA automation-the evolution to intent-based net...Cisco Connect Toronto 2018   DNA automation-the evolution to intent-based net...
Cisco Connect Toronto 2018 DNA automation-the evolution to intent-based net...Cisco Canada
 
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...NetworkCollaborators
 
[Cisco Connect 2018 - Vietnam] Lam doan software-defined access-a transform...
[Cisco Connect 2018 - Vietnam] Lam doan   software-defined access-a transform...[Cisco Connect 2018 - Vietnam] Lam doan   software-defined access-a transform...
[Cisco Connect 2018 - Vietnam] Lam doan software-defined access-a transform...Nur Shiqim Chok
 
Cisco Connect 2018 Vietnam - Software-defined access-a transformational appro...
Cisco Connect 2018 Vietnam - Software-defined access-a transformational appro...Cisco Connect 2018 Vietnam - Software-defined access-a transformational appro...
Cisco Connect 2018 Vietnam - Software-defined access-a transformational appro...NetworkCollaborators
 
Cisco Connect Halifax 2018 Accelerating the secure digital business through...
Cisco Connect Halifax 2018   Accelerating the secure digital business through...Cisco Connect Halifax 2018   Accelerating the secure digital business through...
Cisco Connect Halifax 2018 Accelerating the secure digital business through...Cisco Canada
 
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...ThousandEyes
 
Cisco Connect 2018 Singapore - Cisco Software Defined Access
Cisco Connect 2018 Singapore - Cisco Software Defined AccessCisco Connect 2018 Singapore - Cisco Software Defined Access
Cisco Connect 2018 Singapore - Cisco Software Defined AccessNetworkCollaborators
 
How to Evaluate, Rollout and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout and Operationalize Your SD-WAN ProjectsHow to Evaluate, Rollout and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout and Operationalize Your SD-WAN ProjectsThousandEyes
 
Cisco connect winnipeg 2018 accelerating the secure digital business throug...
Cisco connect winnipeg 2018   accelerating the secure digital business throug...Cisco connect winnipeg 2018   accelerating the secure digital business throug...
Cisco connect winnipeg 2018 accelerating the secure digital business throug...Cisco Canada
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)Cisco Canada
 

Similar a Enterprise Networks - Cisco Digital Network Architecture - Introducing the Network Intuitive (20)

Cisco connect winnipeg 2018 introducing the network intuitive
Cisco connect winnipeg 2018   introducing the network intuitiveCisco connect winnipeg 2018   introducing the network intuitive
Cisco connect winnipeg 2018 introducing the network intuitive
 
Cisco Connect Halifax 2018 Cisco dna - network intuitive
Cisco Connect Halifax 2018   Cisco dna - network intuitiveCisco Connect Halifax 2018   Cisco dna - network intuitive
Cisco Connect Halifax 2018 Cisco dna - network intuitive
 
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
 
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocenceCisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocence
 
Cisco Connect Ottawa 2018 dna automation the evolution to intent-based netw...
Cisco Connect Ottawa 2018 dna automation   the evolution to intent-based netw...Cisco Connect Ottawa 2018 dna automation   the evolution to intent-based netw...
Cisco Connect Ottawa 2018 dna automation the evolution to intent-based netw...
 
Application Centric Infrastructure (ACI), the policy driven data centre
Application Centric Infrastructure (ACI), the policy driven data centreApplication Centric Infrastructure (ACI), the policy driven data centre
Application Centric Infrastructure (ACI), the policy driven data centre
 
What is ThousandEyes Webinar
What is ThousandEyes WebinarWhat is ThousandEyes Webinar
What is ThousandEyes Webinar
 
Cisco Connect Halifax 2018 Cisco dna - deeper dive
Cisco Connect Halifax 2018   Cisco dna - deeper diveCisco Connect Halifax 2018   Cisco dna - deeper dive
Cisco Connect Halifax 2018 Cisco dna - deeper dive
 
[Cisco Connect 2018 - Vietnam] 2. lam doan software-defined access-a transf...
[Cisco Connect 2018 - Vietnam] 2. lam doan   software-defined access-a transf...[Cisco Connect 2018 - Vietnam] 2. lam doan   software-defined access-a transf...
[Cisco Connect 2018 - Vietnam] 2. lam doan software-defined access-a transf...
 
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WAN
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WANCisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WAN
Cisco Connect Vancouver 2017 - Understanding Cisco next gen SD-WAN
 
Cisco Connect Toronto 2018 DNA automation-the evolution to intent-based net...
Cisco Connect Toronto 2018   DNA automation-the evolution to intent-based net...Cisco Connect Toronto 2018   DNA automation-the evolution to intent-based net...
Cisco Connect Toronto 2018 DNA automation-the evolution to intent-based net...
 
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...
Cisco Connect 2018 Malaysia - software-defined access-a transformational appr...
 
[Cisco Connect 2018 - Vietnam] Lam doan software-defined access-a transform...
[Cisco Connect 2018 - Vietnam] Lam doan   software-defined access-a transform...[Cisco Connect 2018 - Vietnam] Lam doan   software-defined access-a transform...
[Cisco Connect 2018 - Vietnam] Lam doan software-defined access-a transform...
 
Cisco Connect 2018 Vietnam - Software-defined access-a transformational appro...
Cisco Connect 2018 Vietnam - Software-defined access-a transformational appro...Cisco Connect 2018 Vietnam - Software-defined access-a transformational appro...
Cisco Connect 2018 Vietnam - Software-defined access-a transformational appro...
 
Cisco Connect Halifax 2018 Accelerating the secure digital business through...
Cisco Connect Halifax 2018   Accelerating the secure digital business through...Cisco Connect Halifax 2018   Accelerating the secure digital business through...
Cisco Connect Halifax 2018 Accelerating the secure digital business through...
 
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
06_08_emea_how_to_evaluate_rollout_and_operationalize_your_sdwan_projects_web...
 
Cisco Connect 2018 Singapore - Cisco Software Defined Access
Cisco Connect 2018 Singapore - Cisco Software Defined AccessCisco Connect 2018 Singapore - Cisco Software Defined Access
Cisco Connect 2018 Singapore - Cisco Software Defined Access
 
How to Evaluate, Rollout and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout and Operationalize Your SD-WAN ProjectsHow to Evaluate, Rollout and Operationalize Your SD-WAN Projects
How to Evaluate, Rollout and Operationalize Your SD-WAN Projects
 
Cisco connect winnipeg 2018 accelerating the secure digital business throug...
Cisco connect winnipeg 2018   accelerating the secure digital business throug...Cisco connect winnipeg 2018   accelerating the secure digital business throug...
Cisco connect winnipeg 2018 accelerating the secure digital business throug...
 
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
SP Virtual Managed Services (VMS) for Intelligent WAN (IWAN)
 

Más de Cisco Canada

Cisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devopsCisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devopsCisco Canada
 
Cisco connect montreal 2018 iot demo kinetic fr
Cisco connect montreal 2018   iot demo kinetic frCisco connect montreal 2018   iot demo kinetic fr
Cisco connect montreal 2018 iot demo kinetic frCisco Canada
 
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal VirtualizationCisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal VirtualizationCisco Canada
 
Cisco connect montreal 2018 secure dc
Cisco connect montreal 2018    secure dcCisco connect montreal 2018    secure dc
Cisco connect montreal 2018 secure dcCisco Canada
 
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018   enterprise networks - say goodbye to vla nsCisco connect montreal 2018   enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018 enterprise networks - say goodbye to vla nsCisco Canada
 
Cisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco Canada
 
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec CiscoCisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec CiscoCisco Canada
 
Cisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybridesCisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybridesCisco Canada
 
Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018Cisco Canada
 
Cisco connect montreal 2018 compute v final
Cisco connect montreal 2018   compute v finalCisco connect montreal 2018   compute v final
Cisco connect montreal 2018 compute v finalCisco Canada
 
Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2Cisco Canada
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco Canada
 
Cisco Connect Toronto 2018 an introduction to Cisco kinetic
Cisco Connect Toronto 2018   an introduction to Cisco kineticCisco Connect Toronto 2018   an introduction to Cisco kinetic
Cisco Connect Toronto 2018 an introduction to Cisco kineticCisco Canada
 
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...Cisco Canada
 
Cisco Connect Toronto 2018 DevNet Overview
Cisco Connect Toronto 2018  DevNet OverviewCisco Connect Toronto 2018  DevNet Overview
Cisco Connect Toronto 2018 DevNet OverviewCisco Canada
 
Cisco Connect Toronto 2018 DNA assurance
Cisco Connect Toronto 2018  DNA assuranceCisco Connect Toronto 2018  DNA assurance
Cisco Connect Toronto 2018 DNA assuranceCisco Canada
 
Cisco Connect Toronto 2018 network-slicing
Cisco Connect Toronto 2018   network-slicingCisco Connect Toronto 2018   network-slicing
Cisco Connect Toronto 2018 network-slicingCisco Canada
 
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
Cisco Connect Toronto 2018   the intelligent network with cisco merakiCisco Connect Toronto 2018   the intelligent network with cisco meraki
Cisco Connect Toronto 2018 the intelligent network with cisco merakiCisco Canada
 
Cisco Connect Toronto 2018 sixty to zero
Cisco Connect Toronto 2018   sixty to zeroCisco Connect Toronto 2018   sixty to zero
Cisco Connect Toronto 2018 sixty to zeroCisco Canada
 
Cisco Connect Toronto 2018 model-driven programmability for cisco ios xr-v1
Cisco Connect Toronto 2018   model-driven programmability for cisco ios xr-v1Cisco Connect Toronto 2018   model-driven programmability for cisco ios xr-v1
Cisco Connect Toronto 2018 model-driven programmability for cisco ios xr-v1Cisco Canada
 

Más de Cisco Canada (20)

Cisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devopsCisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devops
 
Cisco connect montreal 2018 iot demo kinetic fr
Cisco connect montreal 2018   iot demo kinetic frCisco connect montreal 2018   iot demo kinetic fr
Cisco connect montreal 2018 iot demo kinetic fr
 
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal VirtualizationCisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
 
Cisco connect montreal 2018 secure dc
Cisco connect montreal 2018    secure dcCisco connect montreal 2018    secure dc
Cisco connect montreal 2018 secure dc
 
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018   enterprise networks - say goodbye to vla nsCisco connect montreal 2018   enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
 
Cisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse locale
 
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec CiscoCisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
 
Cisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybridesCisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybrides
 
Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018
 
Cisco connect montreal 2018 compute v final
Cisco connect montreal 2018   compute v finalCisco connect montreal 2018   compute v final
Cisco connect montreal 2018 compute v final
 
Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
 
Cisco Connect Toronto 2018 an introduction to Cisco kinetic
Cisco Connect Toronto 2018   an introduction to Cisco kineticCisco Connect Toronto 2018   an introduction to Cisco kinetic
Cisco Connect Toronto 2018 an introduction to Cisco kinetic
 
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
 
Cisco Connect Toronto 2018 DevNet Overview
Cisco Connect Toronto 2018  DevNet OverviewCisco Connect Toronto 2018  DevNet Overview
Cisco Connect Toronto 2018 DevNet Overview
 
Cisco Connect Toronto 2018 DNA assurance
Cisco Connect Toronto 2018  DNA assuranceCisco Connect Toronto 2018  DNA assurance
Cisco Connect Toronto 2018 DNA assurance
 
Cisco Connect Toronto 2018 network-slicing
Cisco Connect Toronto 2018   network-slicingCisco Connect Toronto 2018   network-slicing
Cisco Connect Toronto 2018 network-slicing
 
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
Cisco Connect Toronto 2018   the intelligent network with cisco merakiCisco Connect Toronto 2018   the intelligent network with cisco meraki
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
 
Cisco Connect Toronto 2018 sixty to zero
Cisco Connect Toronto 2018   sixty to zeroCisco Connect Toronto 2018   sixty to zero
Cisco Connect Toronto 2018 sixty to zero
 
Cisco Connect Toronto 2018 model-driven programmability for cisco ios xr-v1
Cisco Connect Toronto 2018   model-driven programmability for cisco ios xr-v1Cisco Connect Toronto 2018   model-driven programmability for cisco ios xr-v1
Cisco Connect Toronto 2018 model-driven programmability for cisco ios xr-v1
 

Último

Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerThousandEyes
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Miguel Araújo
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptxHampshireHUG
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024The Digital Insurer
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfEnterprise Knowledge
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdfhans926745
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxMalak Abu Hammad
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsMaria Levchenko
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024Rafal Los
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024The Digital Insurer
 
Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Allon Mureinik
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxKatpro Technologies
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonetsnaman860154
 
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure serviceWhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure servicePooja Nehwal
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024The Digital Insurer
 
Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101Paola De la Torre
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Scriptwesley chun
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024The Digital Insurer
 
A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024Results
 

Último (20)

Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 
How to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected WorkerHow to Troubleshoot Apps for the Modern Connected Worker
How to Troubleshoot Apps for the Modern Connected Worker
 
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
Mastering MySQL Database Architecture: Deep Dive into MySQL Shell and MySQL R...
 
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
04-2024-HHUG-Sales-and-Marketing-Alignment.pptx
 
Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024Finology Group – Insurtech Innovation Award 2024
Finology Group – Insurtech Innovation Award 2024
 
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdfThe Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
The Role of Taxonomy and Ontology in Semantic Layers - Heather Hedden.pdf
 
[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf[2024]Digital Global Overview Report 2024 Meltwater.pdf
[2024]Digital Global Overview Report 2024 Meltwater.pdf
 
The Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptxThe Codex of Business Writing Software for Real-World Solutions 2.pptx
The Codex of Business Writing Software for Real-World Solutions 2.pptx
 
Handwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed textsHandwritten Text Recognition for manuscripts and early printed texts
Handwritten Text Recognition for manuscripts and early printed texts
 
The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024The 7 Things I Know About Cyber Security After 25 Years | April 2024
The 7 Things I Know About Cyber Security After 25 Years | April 2024
 
Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024Partners Life - Insurer Innovation Award 2024
Partners Life - Insurer Innovation Award 2024
 
Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)Injustice - Developers Among Us (SciFiDevCon 2024)
Injustice - Developers Among Us (SciFiDevCon 2024)
 
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptxFactors to Consider When Choosing Accounts Payable Services Providers.pptx
Factors to Consider When Choosing Accounts Payable Services Providers.pptx
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure serviceWhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
WhatsApp 9892124323 ✓Call Girls In Kalyan ( Mumbai ) secure service
 
Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024Axa Assurance Maroc - Insurer Innovation Award 2024
Axa Assurance Maroc - Insurer Innovation Award 2024
 
Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101Salesforce Community Group Quito, Salesforce 101
Salesforce Community Group Quito, Salesforce 101
 
Automating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps ScriptAutomating Google Workspace (GWS) & more with Apps Script
Automating Google Workspace (GWS) & more with Apps Script
 
Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024Tata AIG General Insurance Company - Insurer Innovation Award 2024
Tata AIG General Insurance Company - Insurer Innovation Award 2024
 
A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024A Call to Action for Generative AI in 2024
A Call to Action for Generative AI in 2024
 

Enterprise Networks - Cisco Digital Network Architecture - Introducing the Network Intuitive

  • 1. © 2016 Cisco and/or its affiliates. All rights reserved. 1 Enterprise Networks - Cisco Digital Network Architecture - Introducing the Network Intuitive Tammy Getschel Channel Systems Engineer Jan 2018 Cisco Connect
  • 2. © 2016 Cisco and/or its affiliates. All rights reserved. 2 Agenda • It’s a Digital World! • Automating your network with DNA Center • Gaining Deep Insights with Assurance and Analytics • Summary 2
  • 3. 3© 2016 Cisco and/or its affiliates. All rights reserved. It’s a digital world!
  • 4. © 2016 Cisco and/or its affiliates. All rights reserved. 4 What is the Risk of Digital Disruption? • According to the Global Center for Digital Transformation in a survey of 941 companies: of today’s Top-10 incumbents (in terms of market share) will be digitally disrupted within the next 5 years https://www.imd.org/uupload/IMD.WebSite/DBT/Digital_Vortex_06182015.pdf http://www.economist.com/news/business/21647317-messaging-services-are-rapidly-growing-beyond-online-chat-message-medium 40% in 5
  • 5. © 2016 Cisco and/or its affiliates. All rights reserved. 5 Why Transform Digitally? • According to Harvard Business Review, companies that master digital transformation generate: more revenue than their industry peers, and more profits than their industry peers https://hbr.org/product/leading-digital-turning-technology-into-business-transformation/17 9% 26%
  • 6. © 2016 Cisco and/or its affiliates. All rights reserved. 6 UPS My Choice Delivery Control Personalized Service Customer Experience Physical and Virtual RFID Content Workforce Efficiency WIP Inventory and Part Tracking American Express Personalized Service Through Mobile Starbucks Apps Order Ahead Skip the Line 6 Digital Transformation is Moving IT to the Boardroom © 2016 Cisco and/or its affiliates. All rights reserved. Cisco Public 6TECCRS-2700
  • 7. © 2016 Cisco and/or its affiliates. All rights reserved. 7 Cisco Enterprise Networking Vision Transform our customers’ businesses through powerful yet simple networks.
  • 8. © 2016 Cisco and/or its affiliates. All rights reserved. 8 Digital Business Demands Application Agility “…While other components of the IT infrastructure have become more programmable and allow for faster, automated provisioning, installing network circuits is still a painstakingly manual process...” — Andrew Lerner, Gartner Research
  • 9. © 2016 Cisco and/or its affiliates. All rights reserved. 9 Agility Requires Faster Network Provisioning Source: Forrester Source: Open Compute Project Time IT spends on operations80% CEOs are worried about IT strategy not supporting business growth57% Network Expenses Deployment Speed 0 10 100 1000 Computing Networking Seconds 0 100% CAPEX OPEX 33% 67%
  • 10. © 2016 Cisco and/or its affiliates. All rights reserved. 10 © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Key Challenges for Traditional Networks Slower Issue ResolutionComplex to ManageDifficult to Segment Ever increasing number of users and endpoint types Ever increasing number of VLANs and IP Subnets Multiple steps, user credentials, complex interactions Multiple touch-points Separate user policies for wired and wireless networks Unable to find users when troubleshooting Traditional Networks Cannot Keep Up! Key Challenges for Traditional Networks
  • 11. © 2016 Cisco and/or its affiliates. All rights reserved. 11 Digital Network Architecture (DNA) Open and Programmable | Standards-based Open APIs | Developers Environment Cloud Service Management Policy | Orchestration Virtualization Physical and Virtual Infrastructure | App Hosting Insights & Experiences Network-enabled Applications Cloud-enabled | Software-delivered Automation & Assurance Security & Compliance Principles Automation Abstraction and Policy Control from Core to Edge Analytics Network Data, Contextual Insights © 2016 Cisco and/or its affiliates. All rights reserved. 1 Intent-based Network Infrastructure DNA Center AnalyticsPolicy Automation I N T E N T C O N T E X T S E C U R I T Y L E A R N I N G The Network. Intuitive. Powered by Intent. Informed by Context.
  • 12. © 2016 Cisco and/or its affiliates. All rights reserved. 12 Introducing DNA Center Realizing vision of the intent-powered intuitive network Decouple Policy from Network Topology Industry Best-Practices Configuration and Policy Compliance Proactive Issue Identification and Resolution Policy Automation Assurance and Analytics Translate business intent into network policy Reduce manual operations and cost associated with human errors Use context to turn data into intelligence
  • 13. © 2016 Cisco and/or its affiliates. All rights reserved. 13 DNA Solution Cisco Enterprise Portfolio Automation AnalyticsIdentity Services Engine Routers Switches Wireless APs DNA Center DNA Center Simple Workflows Wireless Controllers DESIGN PROVISION POLICY ASSURANCE
  • 14. 14© 2016 Cisco and/or its affiliates. All rights reserved. Automating your Network with DNA Center
  • 15. © 2016 Cisco and/or its affiliates. All rights reserved. 15 Network Changes for Automation Standard Change: • Automated Change Request • No Approval Required • Fully owned by Network Engg team with minimal to zero downtime Non-Standard Change • Require Approval by Change Board • May require service disruption • Co-ordination with Application team during change window Settings Update (Syslog, NTP) Password Update Port Settings, VLAN changes New device/site deployment Software Update New service/Update service Network Changes
  • 16. © 2016 Cisco and/or its affiliates. All rights reserved. 16 Impediments to Automation • Organizational structures Different groups • Lack of internal standards Snowflakes! • History e.g. ACL CLIs • Standard vs.non-standard changes Enterprise Network change requests. 65% Standard changes 35% New initiatives 12% New lab configurations 10% Hardware upgrades 21% ACL updates 7% Fleet standardizations 7% Feature configs: IP/Routing 4% Power shut-downs 8% Hardware upgrades 3% Feature configs: Security 2% ACL updates 15% Other 12% Other
  • 17. © 2016 Cisco and/or its affiliates. All rights reserved. 17 BRKNMS-1499 What are Standard Network Changes ?? AAA Configuration DNS/DHCP Servers NTP Servers Syslog Servers Netflow Collectors SNMP/SSH/Telnet Interfaces Configuration ACL’s Dial Plans Vrf Routing Protocols Tunnels/DMVPN Security/Crypto QOS AVC AAA Configuration DNS/DHCP Servers NTP Servers Syslog Servers Netflow Collectors SNMP/SSH/Telnet Interfaces Configuration Spanning Tree VLAN Security/Crypto QOS AVC AAA Configuration DNS/DHCP Servers NTP Servers Syslog Servers Netflow Collectors SNMP/SSH/Telnet SSID’s RF Security/Crypto QOS AVC Routers Switches WLC’s Standard Changes : o No Approval Required o Minimal to Zero Disruption Non-Standard Changes : o Requires Approval o May require service disruption o May need co-ordination with other teams (App,DC etc) during change window 17
  • 18. © 2016 Cisco and/or its affiliates. All rights reserved. 18 Use Case: • Adding a new Syslog (Ex: Splunk) in the network • SoX requirements to update password every 6 months AAA Server Site1 North America South America Site2 Africa EMEAR AAA Server DNS Server Syslog Server Syslog Server DHCP Server Benefits: • Repeated manual error prone tasks automated • Eng get additional time to focus on design and deployment • Standard change automation removes the lead time to make changes Network Settings Update (Standard) DESIGN
  • 19. © 2016 Cisco and/or its affiliates. All rights reserved. 19 Network Design Deployment Standardization Network Compliance Before During After Profile Based Deployment § Plan for the network deployment § Feature and Capabilities to be enabled based on requirements § Topology for network deployment § Automated Day 0 Deployment § Version management of Profile for Day 2 Change Management § Configuration Compliance Validation against Profile § Remediation of Configuration to Golden Config Network Deployment Consistency using Profile Driven Automation Configuration Consistency Simplified Network Deployment Integrated IT Process Flows DESIGN
  • 20. © 2016 Cisco and/or its affiliates. All rights reserved. 20 Workflows are foundational to Automation! • Drive consistency into the architecture via design profiles for WAN and Campus Both physical and virtual Add Site Properties under Network Settings Customize Network Settings and Credentials per Sub Area or Site Create sub pools for Services, LAN, Management at sub area or site Select golden image for NFVIS, virtual services Open Design > Network Hierarchy Add Areas and Buildings Add or Import IP Pools Add SP Profile Add appropriate images into repository Add custom CLI configs Save and associate Site Select device, WAN and LAN settings, add required virtual Services Create WAN Profile DESIGN
  • 21. © 2016 Cisco and/or its affiliates. All rights reserved. 21 DNA Center automates the Deployment and Operations • Plug-and-play • Software / config / license management • Ensuring that Hardware is not EoL (Cisco Active Advisor) • Software Image management (SWIM) PnP Agent Runs on Cisco® switches, routers, and wireless AP Automates discovery and provisioning PnP Server Centralized server Auto-provision device w/ images & configs. Northbound REST APIs PnP Protocol HTTPS/XML based Open schema protocol Network PnP Application UI IWAN App Topology Discovery REST API PnP Service DNA Center Controller PROVISION
  • 22. © 2016 Cisco and/or its affiliates. All rights reserved. 22 Visualize Software Images • For a given Device Family, view : All images Image Version Number of Devices using a particular image • Image Repository to centrally store Software Images, VNF Images and Network Container Images 22
  • 23. © 2016 Cisco and/or its affiliates. All rights reserved. 23 Manage Software Images 23 • Import Images/SMU from : Cisco.com URL(http/ftp) Local PC Another managed network device • Remote File Server Localized file server for software distribution File server mapped to site hierarchy PROVISION
  • 24. © 2016 Cisco and/or its affiliates. All rights reserved. 24 Platform extensibility for building custom apps API and Data Models across multiple stages in DNA Stack Integrations with complimentary platforms * Open Interfaces and Integrations Firehose * Connectors Graph API Contextual Search Cisco Assets Industry Integrations Flexibility Accessibility Expansibility * : roadmap post FCS
  • 25. 25© 2016 Cisco and/or its affiliates. All rights reserved. I N T E N T CONTEXT S E C U R I T Y L E A R N I N G Powered by intent, informed by context. THE NETWORK. INTUITIVE.
  • 26. © 2016 Cisco and/or its affiliates. All rights reserved. 26 ip access-list extended APIC_EM-MM_STREAM-ACL remark citrix - Citrix permit tcp any any eq 1494 permit udp any any eq 1494 permit tcp any any eq 2598 permit udp any any eq 2598 remark citrix-static - Citrix-Static permit tcp any any eq 1604 permit udp any any eq 1604 permit tcp any any range 2512 2513 permit udp any any range 2512 2513 remark pcoip - PCoIP permit tcp any any eq 4172 permit udp any any eq 4172 permit tcp any any eq 5172 permit udp any any eq 5172 remark timbuktu - Timbuktu permit tcp any any eq 407 permit udp any any eq 407 remark xwindows - XWindows permit tcp any any range 6000 6003 remark vnc - VNC permit tcp any any eq 5800 permit udp any any eq 5800 permit tcp any any range 5900 5901 permit udp any any range 5900 5901 exit ip access-list extended APIC_EM-SIGNALING-ACL remark h323 - H.323 permit tcp any any eq 1300 permit udp any any eq 1300 26 Intent-Based Application PolicyLegacy QoS Policy
  • 27. © 2016 Cisco and/or its affiliates. All rights reserved. 27 • Express Business Intent • Translate into device specific policy/configuration • Leverage Abstraction (the controller knows about the device specifics) • Automate the Deployment across the Network • Insure Fidelity to the Expressed Intent (keep everything in sync) User policy based on user identity and user-to-group mapping Employee (managed asset) Employee (Registered BYOD) Employee (Unknown BYOD) ENG VDI System PERMIT PERMIT DENY DENY DENY DENY DENY PERMIT PERMIT PERMIT PERMIT PERMIT Production Servers Development Servers Internet Access Protected Assets Source De-coupling of User Identity and Topology Much easier to translate business objectives to network functionality—Lowers TCO Automation Controller-Led Networking Deployment Evolution to a Policy Model 27 POLICY
  • 28. © 2016 Cisco and/or its affiliates. All rights reserved. 28 Policy types Access Policy ↓ Authentication/ Authorization Group Assignment Based on Authentication methods Access Control Policy ↓ Who can access what Rules for x-group access Permit group to app Permit group to group Application Policy ↓ Traffic treatment QoS for Application Path Optimization Application compression Application caching DB Th Th Th ✓ POLICY
  • 29. © 2016 Cisco and/or its affiliates. All rights reserved. 29 1. Access Policies • Access to the network is governed by ISE users things Authenticate& Authorize (AAA) Groups & Policy ISE Network Identity (e.g. Active Directory) SIEM Location Behavior Analytics pxGrid CASB Vulnerability Scalable Groups Credentials Posture Profiling POLICY
  • 30. © 2016 Cisco and/or its affiliates. All rights reserved. 30 2. Access Control Policies • Access Control (who can talk to who) is governed by DNA Center Leverages ISE for group assignments users things Authenticate& Authorize (AAA) Groups & Policy ISE DNA Center Policy Authoring Workflows Fabric Management Network POLICY
  • 31. © 2016 Cisco and/or its affiliates. All rights reserved. 31 DNA Automation – Access Control Policy Authoring
  • 32. © 2016 Cisco and/or its affiliates. All rights reserved. 32 DNA Automation – Access Control Policy Authoring
  • 33. 33© 2016 Cisco and/or its affiliates. All rights reserved. Gaining Deep Insights with Assurance and Analytics
  • 34. © 2016 Cisco and/or its affiliates. All rights reserved. 34 Source: 2016 Cisco Study Traditional Networking CANNOT Keep Pace with the Demands of Digital Business OpEx spent on Network Visibility and Troubleshooting 75% Policy Violations Due to Human Error 70% Network Changes Performed Manually 95% Main Operational Challenges
  • 35. © 2016 Cisco and/or its affiliates. All rights reserved. 35 Make Data Driven Decisions Reveal Hidden Patterns Automation for Faster Results Focus on Important Things Business Value Propositions of Network Analytics
  • 36. © 2016 Cisco and/or its affiliates. All rights reserved. 36 Collect relevant metrics Architectural Requirement #1: Instrumentation ASSURANCE
  • 37. © 2016 Cisco and/or its affiliates. All rights reserved. 37 Categorize metrics by degrees of relevance Architectural Requirement #2: On-Device Analytics ASSURANCE
  • 38. © 2016 Cisco and/or its affiliates. All rights reserved. 38 Upload critical metrics off the device to collector(s) (optimally via model-based streaming-telemetry) Architectural Requirement #3: Telemetry EM Collector ASSURANCE
  • 39. © 2016 Cisco and/or its affiliates. All rights reserved. 39 Provision long-term storage, retrieval and representation of network metrics and events Architectural Requirement #4: Scalable Storage ASSURANCE
  • 40. © 2016 Cisco and/or its affiliates. All rights reserved. 40 Identify anomalies and trends Architectural Requirement #5: Analytics Engine ASSURANCE
  • 41. © 2016 Cisco and/or its affiliates. All rights reserved. 41 Correlate all data points and permutations for cognitive and predictive analytics Architectural Requirement #6: Machine Learning ASSURANCE
  • 42. © 2016 Cisco and/or its affiliates. All rights reserved. 42 Identify root cause of issues by contextually correlating data Architectural Requirement #7: Guided Troubleshooting EM Analytics Engine ASSURANCE
  • 43. © 2016 Cisco and/or its affiliates. All rights reserved. 43 Present actionable insights to the operator Solicit input to remediate the root cause Present a self-remediation option Architectural Requirement #8: Self-Remediation EM Analytics EngineEM Network Controller Do you want to take the recommended action? Yes No Do you want to take the recommended action? Yes NoAlwaysAlways ASSURANCE
  • 44. 44© 2016 Cisco and/or its affiliates. All rights reserved. I N T E N T CONTEXT S E C U R I T Y L E A R N I N G Powered by intent, informed by context. THE NETWORK. INTUITIVE.
  • 45. © 2016 Cisco and/or its affiliates. All rights reserved. 45 DNA Software Capabilities Cloud Service Management Automation Analytics Virtualization DNA-Ready Physical and Virtual infrastructure Security Cisco DNA Architecture
  • 46. © 2016 Cisco and/or its affiliates. All rights reserved. 46 Cloud Service Management Automation Analytics Virtualization Cisco DNA Architecture—Automation and Analytics EM NDP NDP: Network Data Platform (Analytics Engine)EM NCP NCP Network Controller Platform (Network Controller)
  • 47. © 2016 Cisco and/or its affiliates. All rights reserved. 47 Cloud Service Management Automation Analytics Virtualization Cisco DNA Architecture—Automation and Analytics EM NDP NDP: Network Data Platform (Analytics Engine) Abstraction layer Intent OutcomeDelivering the Intent Analyzing the Outcome within the Context of the expressed Intent Assuring the Intent EM NCP NCP Network Controller Platform (Network Controller)
  • 48. © 2016 Cisco and/or its affiliates. All rights reserved. 48 Cisco DNA Architecture—DNA Center EM NDP DNA Center Appliance EM NCP DNA Center User Interface A single pane of glass for Design, Policy, Provisioning, and Assurance
  • 49. © 2016 Cisco and/or its affiliates. All rights reserved. 49 Cisco DNA Architecture—DNA Center: Assurance å
  • 50. 50© 2016 Cisco and/or its affiliates. All rights reserved. I N T E N T CONTEXT S E C U R I T Y L E A R N I N G Powered by intent, informed by context. THE NETWORK. INTUITIVE.
  • 51. © 2016 Cisco and/or its affiliates. All rights reserved. 51 Transforming the Network with Big Data Analytics Data Insight Information Action Create value at the right timeExtract meaningful insights from data Volume Data size • TB per day • Streaming telemetry, NetFlow, Syslog, SNMP, logs Velocity Data speed • Firehose • Streaming, low-latency push/pull Variety Data forms • Structured, unstructured • Switch, router, AP, IoT sensor, firewall, load balancer, DHCP, DNS Veracity Data trustworthiness • Quality, validity • Internal, partner, public Analytics
  • 52. © 2016 Cisco and/or its affiliates. All rights reserved. 52 EM NDP Network Telemetry Contextual Data Data Collection and Ingestion FW LB WLC Sensor AAA DNS DHCP LDAP TOPOLOGY INVENTORY LOCATION POLICY ITSM ITFM Streaming TelemetrySNMP NetFlow Syslog Data Visualization and Action Network Assurance netWorth Collector and Analytics Pipeline SDK ... Data Models and Restful APIs Time Series Analysis System Management Portal Network Data Platform Data Correlation and Analysis Machine Learning in the Cloud CEP (*) Correlation CEP = Complex Event Processing Network Data Platform (Internal) Architecture
  • 53. © 2016 Cisco and/or its affiliates. All rights reserved. 53 NetFlow AVC DDI ISE Topology Location Device NDP Stream Processing Contextual Correlation Example Source IP: 1.1.1.2 Dest IP: 2.2.2.2 Dest Port: 80 Dest IP: 3.2.2.2 Dest Port: 80 ? ? ? NetFlow
  • 54. © 2016 Cisco and/or its affiliates. All rights reserved. 54 AVC NetFlow DDI ISE Topology Location Device NDP Stream Processing Source IP: 1.1.1.2 Dest IP: 2.2.2.2 Dest Port: 80 Dest IP: 3.2.2.2 Dest Port: 80 AVC Contextual Correlation Example ? ? ?
  • 55. © 2016 Cisco and/or its affiliates. All rights reserved. 55 AVC NetFlow DDI ISE Topology Location Device NDP Stream Processing Source IP: 1.1.1.2 Dest IP: 2.2.2.2 Dest Port: 80 Dest IP: 3.2.2.2 Dest Port: 80 AVC Contextual Correlation Example DDI ?
  • 56. © 2016 Cisco and/or its affiliates. All rights reserved. 56 AVC NetFlow DDI ISE Topology Location Device NDP Stream Processing Source IP: 1.1.1.2 Dest IP: 2.2.2.2 Dest Port: 80 Dest IP: 3.2.2.2 Dest Port: 80 AVC Contextual Correlation Example DDI User: George Baker ISE Group: Marketing
  • 57. © 2016 Cisco and/or its affiliates. All rights reserved. 57 AVC NetFlow DDI ISE Topology Location Device NDP Stream Processing Source IP: 1.1.1.2 Dest IP: 2.2.2.2 Dest Port: 80 Dest IP: 3.2.2.2 Dest Port: 80 AVC Contextual Correlation Example DDI User: George Baker ISE Group: Marketing Topology
  • 58. © 2016 Cisco and/or its affiliates. All rights reserved. 58 AVC NetFlow DDI ISE Topology Location Device NDP Stream Processing Source IP: 1.1.1.2 Dest IP: 2.2.2.2 Dest Port: 80 Dest IP: 3.2.2.2 Dest Port: 80 AVC Contextual Correlation Example DDI User: George Baker ISE Group: Marketing Topology Location Building 24 1st Floor
  • 59. © 2016 Cisco and/or its affiliates. All rights reserved. 59 AVC NetFlow DDI ISE Topology Location Device NDP Stream Processing Source IP: 1.1.1.2 Dest IP: 2.2.2.2 Dest Port: 80 Dest IP: 3.2.2.2 Dest Port: 80 AVC Contextual Correlation Example DDI User: George Baker ISE Group: Marketing Topology Location Building 24 1st Floor Device Client Density Problem Here...
  • 60. 60© 2016 Cisco and/or its affiliates. All rights reserved. I N T E N T CONTEXT S E C U R I T Y L E A R N I N G Powered by intent, informed by context. THE NETWORK. INTUITIVE.
  • 61. © 2016 Cisco and/or its affiliates. All rights reserved. 61 What is Machine Learning? • Machine learning is an application of artificial intelligence (AI) that provides systems the ability to automatically learn and improve from experience without being explicitly programmed to do so • The process of learning begins with observations of data, and looking for patterns within the data so as to make increasingly better correlations, inferences and predictions • The primary aim is to allow these systems to learn automatically without human intervention or assistance and adjust actions accordingly
  • 62. © 2016 Cisco and/or its affiliates. All rights reserved. 62 Project Kairos For Wireless, Wired and IOT Cognitive Analytics Netflix AccessPoints Device Type Internet Video Facebook Instagram YouTube Anomaly detection across hundred of thousands of devices, dozen of thousands of gears and hundreds of heat maps Machine Learning
  • 63. © 2016 Cisco and/or its affiliates. All rights reserved. 63 Project Kairos For Wireless, Wired and IOT Cognitive Analytics Anomaly detection Identify and proactively adapt to a failure before it happens Machine Learning Predictive Analytics
  • 64. © 2016 Cisco and/or its affiliates. All rights reserved. 64 Machine Learning Algorithms build their models using hundreds of inputs APs WAN Local WLCs Network Services DCOffice Site ISE DHCP Mobile Clients CUCM APIC-EM ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ RF & EDCA behavioral metrics,.. Queuing, Dropping, WRED behavioral metrics… Device type, OS release, behavioral metrics, ... WAN & core network metrics .. Application metrics, user feedback, failure rate, ... ... and more
  • 65. © 2016 Cisco and/or its affiliates. All rights reserved. 65
  • 66. © 2016 Cisco and/or its affiliates. All rights reserved. 66
  • 67. © 2016 Cisco and/or its affiliates. All rights reserved. 67
  • 68. © 2016 Cisco and/or its affiliates. All rights reserved. 68
  • 69. © 2016 Cisco and/or its affiliates. All rights reserved. 69
  • 70. © 2016 Cisco and/or its affiliates. All rights reserved. 70
  • 71. 71© 2016 Cisco and/or its affiliates. All rights reserved. I N T E N T CONTEXT S E C U R I T Y LEARNING Powered by intent, informed by context. THE NETWORK. INTUITIVE.
  • 72. © 2016 Cisco and/or its affiliates. All rights reserved. 72 Providing Security While Maintaining Privacy! Encrypted Traffic Non-Encrypted Traffic Can we Actually Solve This? How do you Analyze Metadata without decrypting traffic flows? 80% of organizations are victims of malicious activity 41% Of attacks used encrypted traffic to evade detection
  • 73. © 2016 Cisco and/or its affiliates. All rights reserved. 73 Encrypted Traffic Analytics Encrypted traffic analytics from Cisco’s newest switches and routers Security with Privacy Analyze netflow metadata without decrypting traffic flows Global-to-local knowledge correlation - 99.99% threat detection accuracy
  • 74. 74© 2016 Cisco and/or its affiliates. All rights reserved. Summary
  • 75. © 2016 Cisco and/or its affiliates. All rights reserved. 75 Key Takeaways Profile Based Deployment simplifies Day 0 Deployment and Day 2 Change Management Assurance must be outcomes driven and not problem based Intent Driven Networking Starts with Policy Automation must be thought holistically, as some of the simple tasks take the most amount of time
  • 76. © 2016 Cisco and/or its affiliates. All rights reserved. 76 Automated Deployment It’s a Journey! Self-Driving Automation Plug and Play, Day 0 Deployment Configure once and deploy everywhere - SD-Access Exists Today ISE / AD NAE / PI DNA Center Campus Fabric SDA Future Closed Loop through Network Analytics and Machine Learning Network Analytics Platform DNA Center BB Campus Fabric SDA APIC- EM HTTP Proxy Internet Admin Installer New Step 1 Network admin previsions devices in Cisco Network Plug and Play applications Step 2 Onsite installer with mobile app installs and powers on devices, triggers deployment, checks status Step 3 New devices contact Cisco Network Plug and Play application to get provisioned Network admin can remotely monitor install status Basic Advanced One Point of Management: All from Cisco DNA Center Consistent Across Network Fabric