+91 9910 111 641
ping@ncpnetwork.com

Cisco SD-WAN

Created by Admin in Articles 17 Jun 2025
Share

Cisco SD-WAN Training Syllabus – Summary
1. Introduction to SD-WAN


2. SD-WAN Architecture
3. SD-WAN Planes
4. Certificate Authentication

Used to authenticate and securely onboard devices.
5. VPN Architecture
6. SD-WAN Core Terminology

Understand TLOCs, vRoutes, and ECMP for route and transport identification. Learn to use feature and device templates to simplify large-scale deployments.
7. Configuration & Troubleshooting (GUI & CLI)
8. Centralized Policy Implementation
9. Advanced Concepts & Security
10. Localized QoS Policy




Understand the evolution from traditional WAN to SD-WAN. Learn SD-WAN benefits, underlay and overlay concepts, and how it optimizes enterprise connectivity across MPLS, Internet, and LTE.




Explore core components like vManage, vBond, vSmart, and vEdge/cEdge devices. Dive into SD-WAN transport options, controller functions, overlay communication (TLS, DTLS), routing via OMP, and liveliness detection using BFD. Understand hosting options for controllers and edges.




Learn the responsibilities of:




  • Management Plane (vManage)




  • Orchestration Plane (vBond)




  • Control Plane (vSmart)




  • Data Plane (vEdge & cEdge)






Understand the Public Key Infrastructure (PKI) for SD-WAN, including:




  • CA Server, Root Certificates, CSR, and ID Certificate






Learn SD-WAN VPN segmentation:




  • VPN 0 – Transport VPN




  • VPN 512 – Management VPN




  • VPN 1–511, 513–65535 – Service VPNs






Familiarize with key identifiers:




  • System-IP, Site-ID, Organization Name, Virtual Chassis Number, Token Number






Step-by-step configuration of:




  • Controllers (vManage, vBond, vSmart)




  • WAN Edges (vEdge, cEdge)




  • Certificate installation




  • Device onboarding & activation




  • Template creation for system settings, VPNs, OSPF, BGP, NAT, banners, etc.




Also includes:




  • OMP route verification




  • Traffic simulation using ECMP




  • Site-wise deployment using device templates






Learn to design and deploy control policies using vSmart:




  • Traffic policies: Port, protocol, and application-based AAR




  • Topology policies: TLOC preference, route filtering, aggregate routes




  • Implement Hub-and-Spoke, Direct Internet Access (DIA), and Service VPN expansion




  • Zero Touch Provisioning (ZTP) for easy onboarding






Configure and manage:




  • Cisco cEdge devices




  • Routing protocols: OSPF, EIGRP, BGP




  • vEdges behind NAT




  • TLOC Extension, VRRP, Dynamic Tunnels




  • Service chaining, URL filtering, IPS, Zone-based firewalls




  • Perform software upgrades/downgrades, and use CLI templates with CSV files






Design localized policies for traffic shaping and prioritization:




  • Understand QoS basics, classification, marking, shaping, and policing




  • Learn DSCP, CoS, Queue types




  • Build templates for voice, web, and other traffic types




  • Use Class Maps, ACLs, and QoS Maps for granular control






Comments (0)

Share

Share this post with others