SlideShare a Scribd company logo
1 of 96
© 2017 Cisco and/or its affiliates. All rights reserved. 1
DNA-C
Network Assurance
Ian Procyk
Technical Solutions Architect
May 29 2018
Cisco
Connect
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
1. Assurance Overview
2. What you need to get started
3. What does it look like?
4. Device & client health
5. Deeper dive on specific wireless test points
6. Using sensors
7. Intelligent Capture & AP4800
8. Peering into the crystal ball
9. Time Permitting: “Roll your own assurance” with webhook
Agenda
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
DNA-C
Assurance Overview
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Network quality is a complex, end-to-end problem
* Both = Join/roam and quality/throughput
Access
points
Local WLCs
Network services
data center
Office site
Cisco
ISE
Mobile clients
Cisco® Unified
CM
Client firmware
AP coverage
WAN uplink usage End-user services
RF noise/interf
Cisco Prime®
Configuration
Authentication
WLC capacity
WAN
Client density
Affects join/roam
Affects quality/throughput
Affects both*
DHCP
Addressing
WAN QoS, routing, ...
100+ points of failure
between user and app
With 50,000+
permutations!
What is the problem?
Where is the problem?
How can I fix the problem fast?
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
NOC @ Customer Site
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Highly Customized Network Monitoring
© 2016 Cisco and/or its affiliates. All rights reserved. 77
DNA Assurance in DNA Center
DNA Center
Fabric and Nonfabric
A collection of network devices
under the administrative
control of
DNA Center
Switch Router Wireless LAN
Controller
Access
Point
Policy Design
Identity Services Engine DNA-C APPLIANCE
Provision Assurance
© 2016 Cisco and/or its affiliates. All rights reserved. 8
The Components of DNA-C
Policy
• Manage the Network from
a single place
• Create Virtual Networks
and configure
• Access Control
• Application Priority
• Application Registry
Design
• Deploy “World Class”
prescription configuration
• Automation of Device On-
Boarding (Plug and Play)
• Device Inventory
• Fabric Administration
• Host On-Boarding
Provision
• Transform the Network with
Actionable Insights and
Simplicity
• End to End Visibility
• Predict Performance
• Close Loop Automation
• Streaming Telemetry
Assurance
• Build the Network Hierarchy
instead site maps
• Configure Network Settings
including DCHP, AAA, and
IPAM
• Setup the Image Management
Repository
• Configure Network Profiles
Achieve IT and business
alignment with a custom design
Migrate using
predictive steps
Peace of mind with Cisco expertise
and state-of-the-art tools
8
© 2016 Cisco and/or its affiliates. All rights reserved. 9
Border/Edge
Reachability
Data Plane Policy Plane Client Onboarding
Control plane reachability
Edge reachability
Border reachability
Routing protocol
MAP server
Border and edge
connectivity
Border node health
Access node health
Network Services DHCP,
DNS, AAA
ISE/PxGrid connectivity
Border Node policy
Edge Node policy
Client/Device DHCP
Client/Device DNS
Client authentication /
authorization
Switch
CPU, Mem, Temp
Line-card
Modules
POE power
TCAM Table
SDA and Switching Specific Correlated Insights
Total SDA/Switching Insights: 38 issues in DNA-C 1.1
BRKEWN-2032 62
© 2016 Cisco and/or its affiliates. All rights reserved. 10
Client Onboarding
Network Coverage
& Capacity
Network Device
Monitoring
Application
Performance Sensor
Association failures
Authentication failures
IP address failure
Client Exclusion
Excessive on-boarding time
Excessive authentication time
Excessive IP addressing time
AAA, DHCP reachability
Coverage hole
AP License utilization
Client Capacity
Radio utilization
Availability
Crash, AP Join Failure
High Availability
CPU, Memory utilization
Flapping AP, Hung Radio
Power supply failures
Throughput analysis
Roaming pattern analysis
Sticky client
Slow roaming
Excessive roaming
RF, Roaming pattern
Dual band clients prefer 2.4GHz
Excessive interference
Client Experience
Web: HTTP & HTTPS
Email: POP3, IMAP, Outlook
Web Access
File Transfer: FTP & TFTP
Terminal: Telnet & SSHv2
Wireless Specific Correlated Insights
Total Insights: 66 issues in DNA-C 1.1
BRKEWN-2032 63
Next Generation Networking requires New Era of
Analytics Infrastructure
Right data at the right time with the right context would help generate actionable
business insights on wireless issues
Right Data
Right Time
Right
Context
Legacy Telemetry in traditional Network
Monitoring Tools
• CPU intensive raw data (~10 times more*)
• Multiple data sources needed for end to
end coverage
Contextual and Anomaly driven Telemetry
for DNA Assurance
• Optimized export with programmability
and JSON encoding
• Unified telemetry for heterogeneous
data sources
• Push based model
• Real-time notifications (~as low as 5 sec)
• Pull based model
• No real-time notifications (~ 15-30 mins)
• Network centric view with limited client context
• No events leading to false alarms
• Visibility into Client, App and Network traffic
• 240+ Client Onboarding issues defined as Events
*External reports, under evaluation
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Assurance:
What you need to get started
© 2016 Cisco and/or its affiliates. All rights reserved. 13
Small Footprint Appliance
DNA Center Appliance - Single Appliance Runs Automation
and Assurance
Specifications
UCS 220 1RU
Server: 64-bit x86
vCPU: 44 core (2.2GHz)
RAM: 256 GB
Disk: SSD 12 TB M-RAID
Controllers: 2* 480 GB SSD controllers
Disk I/O speed: 200 MB
TPM module
DNA Center Appliance
SKU: DN1-HW-APL
© 2016 Cisco and/or its affiliates. All rights reserved. 1414
Platform Support in DNA-C 1.1
• AireOS 8.5+
Type Hardware
Non Fabric
Software
Fabric
APs
Aironet 802.11n (700, 1600, 2600, 3600, 3500) 8.5MR1+ n/a
Aironet 802.11ac Wave 1 (1700, 2700, 3700) 8.5MR1+ 8.5MR1+
Aironet 802.11ac Wave 2 (1810, 1815, 1830,
1850, 2800, 3800,4800)
8.5MR1+ 8.5MR1+
WLCs
WLC 2504 / 5508 N/A N/A
WLC5520 8.5MR1+ 8.5MR1+
WLC8510 8.5MR1+ 8.5MR1+
WLC8540 8.5MR1+ 8.5MR1+
WLC3504 8.5MR1+ 8.5MR1+
Flex 7500 8.5MR1+ n/a
Whole AP
as a Sensor
Aironet 802.11ac Wave 2 (1810, 1815, 1830,
1850)
8.5MR1+ n/a
XOR radio
as a Sensor
Aironet 802.11ac Wave 2 (2800, 3800,4800) 8.5MR1+ n/a
Dedicated
Sensor
AP1800i, AP1800s 8.5MR1+ 8.5MR1+
Apple
Analytics
WLC: 5520, 8510, 8540
Apple iOS 11. iPhone7/iPad Pro or above
8.5MR1+ 8.5MR1+
Wireless: 11n, 11ac (Wave 1, 2) AireOS
Routing platforms
Switching platforms
Hardware Nonfabric Software
Fabric
Software
Catalyst® 3650, 3850 16.3+ 16.6.1+
Catalyst® 4500 IOS-XE 3.9.2+ IOS-XE 3.10.1+
Catalyst® 6800 15.4SY+ 15.5.1SY+
Catalyst® 2960, 3560 15.2.5E1 Not applicable
Catalyst® 9300, 9400, 9500 16.5.1a 16.6.1+
Nexus 7700 7.3+ 7.3.2+
Hardware Nonfabric Software
Fabric
Software
ISR: 800, 1900, 2900, 3900,
4400, 4300, 4200, 1100
15.5.3M+, 16.3.3+
ASR 1K 16.3.3 +
ENCS (5400, 5100) 3.6.2
Virtual: CSR1K, ISRv1K 16.3.3+
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
15
Designed to be DNA ready
Intent-Based Wireless Controllers
AIR-CT5520
AIR-CT8540
AIR-CT3504
Optimized for driving Intent
 REST API/Streaming Telemetry *
 Easy WEBGUI with best-practices defaults
 Highly Available with Client Stateful Switchover
Industry-leading Scale and Performance
 Up to 6K AP/64K Clients supported
 UDP: 90% BW with NBAR2 turned on
 TCP: 60% BW with NBAR2 turned on(1300 bytes)
Integrated Services with per-device,
per-user policy with no compromise
 Application Visibility and Control, Bonjour Gateway
 Apple Optimized Roaming and FastLane
 Secured by Netflow, Umbrella, TrustSec
© 2016 Cisco and/or its affiliates. All rights reserved. 1616
DNA-C 1.1: Scale and Data Retention
KPIs, Metrics
Relationship
Graph
Between 7 ~ 30 days
Events/Alarms
Issues
Backup
(To external storage)
Purge
• Data storage for
5000 devices,
25,000 clients
• Customizable
retention policy
• Storage monitoring
and alerting
• Provide meaningful
assurance
troubleshooting,
issues and trending
dashboard data
© 2016 Cisco and/or its affiliates. All rights reserved. 17
DNA-C v1.1- CloudTethered Software Upgrades
Benefits:
• Continuous delivery
• Business agility
How it Works:
1. Service catalog hosted in
cloud (AWS EC2)
2. Cisco pushes new
version of an App /
Service to the service
catalog
3. Customer automatically
get notified and have the
option to deploy the new
version
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Assurance:
What does it look like?
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Overall Network Health
• Overall health summary
of network and clients
• Where in the world and on
which site most serious
issues are happening
• Quick drill down to a site or
Toggle between Geo, List or
Topology View
• Top 10 Global Insights
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
End-to-end visibility
• Client Health Summary
• Onboarding, RF and Client Profile info
• Network Health Summary
• Control, Data, Policy Plane and Health info
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Path Trace – Troubleshooting
• Run pathtrace from source to
destination to quickly get key
performance statistics for
each device along the
network path
• Identify ACLs that may be
Blocking or affecting the
traffic flow
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
360°Visibility
• Single location for all user
information and every user device
• History of performance for each
user device
• Proactive identification of any issues
affecting user’s experience
• Single location for all user device
related user information
• Connectivity graph with
health score of all device on
the path
• Application performance
• Device KPIs
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Insights with Guided Remediation Actions
• Guided Actions to help remediate
issues quickly
• Detailed drill downs to identify the
impact quickly
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Network Time Travel
• Rewind time to when the issue
occurred
• All the information on the user or
network device 360 changes to
the selected time!
• History shows critical events
• Identifies when issues occurred!
Go back in time to understand the
network state when issue occurred
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Wireless Client Insights
Device Profile
Client shares these details
1. Model: iPhone 7
2. OS: iOS 11.2
Support per device-group
Policies and Analytics
1
Wi-Fi Analytics
Client shares these details
1. BSSID
2. RSSI
3. Channel number
Insights into the clients
view of the network
2
Assurance
iOS Client shares the reason
(error code) for the
disconnect.
Clarity into the reliability of
connectivity
3
Wi-Fi Analytics for iOS
This partnership with Apple enables
any iOS 11 client to speak to Cisco
DNA Center with client diagnostics.
Provides a more comprehensive
view of all potential root causes of
wireless issues.
Problems affecting iOS clients are
likely affecting all wireless clients.
Apple and
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Assurance:
Client Side
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
DNA Assurance – Client Health
Toggle Overview
Map | List
Health Summary
• Wireless vs Wired
• Onboarding Times
• RSSI
• etc
Time Travel
Quick Filters
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 28BRKEWN-2032
Impacted Clients
Onboarding and RSSI
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKEWN-2032
Client Onboarding Time
• 30 Minute or 24 Hour interval
• Threshold
• Details
29
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKEWN-2032
Connectivity RSSI
• 30 Minute or 24 Hour interval
• Threshold
• Details
30
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
BRKEWN-2032
Client 360
• Time Selector – 3 Hours, 24 Hours, 7 Days
• Domains
• Health Score over time
• Select an area to focus in on the issues
• Issues and Trends
• Onboarding
• Path Trace
• RF and Device Details
31
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
32BRKEWN-2032
Client 360 - Issues
• Problems found during the client onboarding process are displayed as an issue
• Impact by location and number of clients is displayed
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
33BRKEWN-2032
Client 360 - Issue Details
Description and Impact
• Description of the issue is displayed
• Details of the impacted users and
their locations is displayed
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
34BRKEWN-2032
Client 360 - Suggested Actions
• Suggested actions for each issue
• Impact by location and clients is displayed
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
35BRKEWN-2032
Client 360 – Detailed Device Information
• Client Information:
• Username, Hostname,
MAC details
• Connection
• Band, Spatial Stream,
Channel Width
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
36BRKEWN-2032
Client 360 – Detailed RF Information
• RSSI, SNR
• Tx and Rx bytes
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
BRKEWN-2032
Client 360 - Onboarding
• Devices in the onboarding path have
Health Score
• Cross-Launch to the Device 360
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Assurance:
Device Health Scores
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
39
Device 360 - Issues
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
40
Device 360 - Radio Utilization Issue
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
41BRKEWN-2032
Device 360 - Suggested Actions
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
42BRKEWN-2032
Device 360 - Suggested Actions - Command
Runner
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
43BRKEWN-2032
Device 360 - Physical Neighbor
Topology
• Shows clients per SSID/radio, AP, and
upstream switch and WLC
• Health score for each device
• Hover over to access more details and easy
access to the Device 360
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Device 360 - Detailed Device Information
44BRKEWN-2032
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Device 360
Detailed RF Information
• Charts for each radio
1. Channel Utilization
2. Interference
3. Noise
4. Air Quality
45BRKEWN-2032
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Assurance:
Deeper Dive
Client on Boarding and Connectivity Insights
Wireless
client
Onboarding
Network
services
RF
connectivity
DNS
AAA
DHCP
Internet service
Association
Roaming
Wired
client
Onboarding
Network
services
First hop
connectivity
DNS
AAA
DHCP
Internet service
…
Wireless client on-boarding score Wired client on-boarding score
48
© 2016 Cisco and/or its affiliates. All rights reserved. 48
DNA Assurance Client Issue Page
50
© 2016 Cisco and/or its affiliates. All rights reserved. 49
Excessive IP Lease Time
We know:
• 802.11 auth, assoc were okay, on time
• AAA phases worked, on time
• Client sent a DHCP request
• DHCP responded, but late (based on baseline)
• Why?
Network issue
Server issue
Service issue
49
Issues - Client Boarding Issue
Client on-
boarding
Network
services
(raise these
issues only
if no RF
connectivity
issues)
RF
connectivity
DNS
AAA
DHCP
Network
connectivity
Association
WebAuth
RF Link
Health
On-going
49
Issues - Client Boarding Issue
Client on-
boarding
Network
services
(raise these
issues only
if no RF
connectivity
issues)
RF
connectivity
DNS
AAA
DHCP
Network
connectivity
Association
WebAuth
WF1 Failed to obtain IP address – pool exhausted (1) (Issue)
WF1 Failed to obtain IP address – No response from DHCP server (1) (Issue)
WF1 Failed 802.11 Authentication & Key Exchange – Invalid username / pwd (1) (Issue)
WF1 Failed 802.11 Authentication & Key Exchange – too many failed auth (1) (Issue)
WF1 Failed 802.11 Authentication & Key Exchange – Misconfigured PSK (1) (Issue)
WF1 Failed 802.1x Authentication & Key Exchange – Incorrect EAP method (2) (Issue)
WF1 Failed 802.11 Authentication & Key Exchange – Expired RSA certificate (2) (Trend)
WF1 Failed 802.11 Authentication & Key Exchange – Active Directory (2) (Issue)
WF1 Failed 802.11 Association – Mac Authentication / RADIUS Server (2) (Issue)
WF1 Failed 802.11 Association – Mac Authentication / WLC (2) (Issue)
WF1 Failed Authentication & Key exchange – Various reasons (2) (Issue)
(e.g.unexpected response from RADIUS)
Cannot reach DNS server ( reachability – cannot ping DNS server ) (1) (Issue)
DNS server not responding ( can ping DNA server, but no response from DNS server,
config error, or server issue ) (1) (Issue)
Identify guest issues: 1) Local WLC, 2) External Web server, 3) ISE/RADIUS
Cannot reach user specified intranet service (1) (Issue)
Cannot reach user specified internet service (1) (Issue)
RF Link
Health
On-going
User has poor RF connection for a sustained period of time (1) RSSI > 70 dBm
/ SNR > 20 dB, 2) MCS consistent with signal, 3) Retries below < 15%,
4) Cell channel utilization < 50%) (1) (Issue)
WF2 Misbehaving – Dual band capable client preferring 2.4 GHz when 5.0 GHz is available
RF association failed ( specifically, step 2 or 3 ) (2) (Issue)
52
© 2016 Cisco and/or its affiliates. All rights reserved. 52
Life, Once You Have Onboarded
Roaming can be an issue
• “Roaming is the same as onboarding, except that we know the client already”
Client RF may suffer
• Sticky client
• Ping-pong client
• Poor RF client
• CHDM client
Quality of experience can degrade outside of RF issues
52BRKEWN-2032
Issues -Wireless Connected Categories
Client
experience
Roaming issues
after client has
successfully on
boarded
WF2 Misbehaving – Roaming failed (1) (Issue)
WF2 Misbehaving – Sticky client (1) (FYI)
WF2 Misbehaving – 802.11r Capable client roaming slow (1) (FYI)
WF2 Misbehaving – 802.11i Capable client roaming slow (3) (FYI)
WF2 Misbehaving – Dual band capable client connects to 2.4 GHz when 5.0 GHz is available
during roam (1) (FYI)
WF2 Misbehaving – Ping pong client (AP/AP) (1) (FYI)
WF2 Misbehaving – Ping pong client (SSID/SSID) (1) (FYI)
WF2 Misbehaving – Ping pong client (2.4GHz / 5 GHz) (1) (FYI)
Issue - Roaming failed counts by AP (current) (by WLC-future)
Issue - Roaming failed counts by location (floor, building, and site) (current)
Issue - Roaming failed counts by client type (current)
Issue - Roaming failed counts per client (current)
Issue - Roaming failed counts over time (current)
Issue - Roaming times longer than normal by AP (current+1)
Issue - Roaming times longer than normal by location (floor, building, and site) (current+1)
Issue - Roaming times longer than normal by client type (current+1)
Issue - Roaming times longer than normal per client (current+1)
Issue - Roaming times longer than normal over time (current+1)
Trends: For each above issue as trends (future)
Prediction: Roaming times and roaming failure counts (future)
Kairos
BRKEWN-2032 54
Issues -Wireless Connected Categories
Client
experience
Throughput
Issue: Throughput significant drop or spike for overall (all applications) by location (current)
Issue: Throughput significant drop or spike for overall (all applications) by AP (current)
Issue: Throughput significant drop or spike for overall (all applications) by client type (current)
Issue: Throughput significant drop or spike from normal per application by location (floor, building, and site)
(current+1)
Issue: Throughput significant drop or spike from normal per application by AP (current+1) (by WLC - future)
Issue: Throughput significant drop or spike from normal per application by client type (current+1)
Trends: For each above issue as trends (future)
Prediction: Throughput 1-5 hours in advance for significant drops or spikes for overall (all applications) by AP
(current)
Prediction: Throughput 1-5 hours in advance for significant drops or spikes for overall (all applications) by
application (current+1)
Prediction: Throughput 1-5 hours in advance for significant drops or spikes for overall (all applications) by client
type (future)
Kairos
BRKEWN-2032 55
© 2016 Cisco and/or its affiliates. All rights reserved. 55
Wireless
Network
Data
Plane
AP and Switch
Issues -Wireless Network Devices Categories
WLC and Switch
WF6 – WLC Ethernet Port LAG mismatch (2) (FYI)
WF6 – AP Ethernet Port LAG mismatch (1800 / 2800 / 3800 ) (2) (FYI)
RF events WF5 – AP Channel changes – signal (us) (2) (FYI)
WF5 – AP Channel changes – Interference (not us) (2) (FYI)
WF5 – AP Channel changes – DFS (2) (FYI)
Availability
WF4 – AP Availability: AP up/down (1) (FYI)
WF4 – AP Hung radio – radio 1 ( no sensor checks ) (1) (FYI)
WF4 – AP Hung radio – radio 2 ( no sensor checks ) (1) (FYI)
WF4 – AP last reboot crash (1) (FYI)
WF5 – AP flapping (1) (FYI)
Client to AP
WF5 Poor RSSI – coverage hole (1) (FYI)
WF5 Flash crowd (1) (FYI)
WF6 AP – AP excessive interference – WiFi (2) (FYI)
WF6 AP – AP excessive interference – non WiFI (2) (FYI)
utilization
WF6 AP – Utilization: Radio (1) (FYI)
WF6 AP – 2.4 GHz radio utilization (1) (FYI)
WF6 AP – 5.0 GHz radio utilization (1) (FYI)
WF6 AP – CPU utilization (1) (FYI)
WF6 AP – Memory utilization (1) (FYI)
WF6 AP – Ethernet port utilization (1) (FYI)
Spare capacity (e.g. 1-client count / max client count)
WF5 – AP 5GHz radio utilization (non FRA capable AP) (1) (Issue)
WF5 – AP 5GHz radio utilization (FRA capable AP / FRA disabled) (1) (Issue)
BRKEWN-2032 57
© 2016 Cisco and/or its affiliates. All rights reserved. 56
Wireless
Network
Control
plane
Device health
WLC
Connectivity
AP and WLC
Issues -Wireless Network
Availability
WF5 – AP flapping between WLCs (1) (FYI)
WF5 – AP VLAN mismatch (flexconnect) (2) (FYI)
WF4 – WLC regulatory domain mismatch between WLC and APs (2) (FYI)
WF5 – AP WLC join failure – AP not joined to its preferred WLC (3) (FYI)
WF4 – WLC down (1) (Issue)
WF4 – WLC power supply failure (1) (FYI)
WF4 – WLC last reboot crash (1) (FYI)
WF4 – WLC HA/SSO – the primary unit / standby hot (2) (FYI)
WF4 – WLC HA/SSO – HA peer unreachable (2) (FYI)
WF4 – WLC HA /SSO – both WLCs active (2) (FYI)
WF4 – WLC EoIP mobility tunnel – Data channel down / peer WLC up (2) (FYI)
WF4 – WLC EoIP mobility tunnel – control and data channel down / peer WLC up (2) (FYI)
WF4 – WLC EoIP anchor tunnel – data channel down / peer WLC up (2) (FYI)
WF4 – WLC EoIP anchor tunnel – control and data channel down / peer WLC up (2) (FYI)
WF5 – WLC Excessive inter-WLC roaming (L2) (2) (FYI)
WF5 – WLC Excessive intra-WLC roaming (L3) (2) (FYI)
WF4 – WLC Mobility bug (CP) (3) (FYI)
BRKEWN-2032 59
© 2016 Cisco and/or its affiliates. All rights reserved. 57
Wireless
Network
Control
plane
Device health
WLC
Issues -Wireless Network Devices Categories
utilization
Temperature
FAN
QoS Table Usage (Queue depth, Buffer)
Interface Statistics - Error, Discard, FCS,
Runts, resets
Queue utilization wit drop counters
WF4 – WLC utilization – Radius queue (1) (FYI)
WF6 – WLC utilization – memory (1) (FYI)
WF4 – WLC AP license utilization (1) (Trend)
WF4 – WLC AP license exhausted (1) (FYI)
WF4 – WLC AP Capacity (1) (Trend)
WF4 – WLC client capacity (1) (Trend)
WF6 – WLC utilization – CPU (1) (FYI)
WF6 – WLC utilization – WLC Ethernet port utilization (Rate/load, Tx/Rx
indivual vs bidirectional, duplex speed) (2)(FYI)
WF6 – WLC low free Mbuf (2) (FYI)
WF6 – WLC high WQE pool usage (2) (FYI)
WF6 – WLC high packet pool usage (2) (FYI)
WF6 – WLC low available timer (2) (FYI)
BRKEWN-2032 60
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Assurance:
Sensors (Wireless)
© 2016 Cisco and/or its affiliates. All rights reserved. 59
Wireless Sensors Proactively Assess Performance
Test your network anywhere at any time
R1
Dedicated Sensor AP1800 Flexible Radio
Sensors act as
clients
Access point
 On-Boarding Tests
• 802.11 Association
• 802.11 Authentication & Key Exchange
• IP Addressing DHCP (IPv4)
 Network tests
• DNS (IPv4)
• RADIUS (IPv4)
• First Hop Router/Default gateway (IPv4)
• Intranet Host
• External Host (IPv4)
 Application tests
• Email: POP3, IMAP, Outlook Web Access (IPv4)
• File Transfer: FTP (IPv4)
• Web: HTTP & HTTPS (IPv4)
Flexible Radio Assignment Algorithm intelligently
identifies excessive radios and seamlessly converts
those into Sensor mode without client impact
BRKEWN-2032 68
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Telemetry Evolutions – Wireless Sensors
Flexible Radio as Sensor
(2800/3800/4800 APs)
Dedicated Sensors
(1815/1830/1850 APs, 1800 Sensor)
Dual 5 GHz Flexible Radios
Software defined radios automatically
adjust to dual 5GHz
Purpose-built Hardware for Analytics
Flexible radios can to provide simultaneous
in-line monitoring to DNA for analytics and
insights while serving clients (future)
1815 1830/1850 1800 Sensors
DNA Assurance – Sensor-Driven Tests
© 2016 Cisco and/or its affiliates. All rights reserved. 61
Wireless Sensor Support
Dual 5 GHz Flexible Radios
Software defined radios automatically adjust to dual 5GHz
Purpose-built Hardware for Analytics
Flexible radios can to provide simultaneous in-line monitoring to
DNA for analytics and insights while serving clients (future)
XOR RADIO
5GHz.
2.4GHz.
Sensor (Client Testing)
Flexible Radio as Sensor (2800/3800) Dedicated AP as Sensor
1815/1830/1850 AP
• 2x2 with 2 spatial streams
• Multiple powering options:
• PoE Power
• USB Type “C” power
• Direct AC Power Plug
• Integrated BLE
1815
1830/1850
1800s dedicated sensor
BRKEWN-2032 69
© 2016 Cisco and/or its affiliates. All rights reserved. 62
Run NetworkTests
See What Works and Where
62BRKEWN-2032
© 2016 Cisco and/or its affiliates. All rights reserved. 63
Run NetworkTests
Hover over a Test to See Results
63BRKEWN-2032
© 2016 Cisco and/or its affiliates. All rights reserved. 64
SensorTest How-To
1a. Create a New Test, Choose Location and Run Interval
64BRKEWN-2032
© 2016 Cisco and/or its affiliates. All rights reserved. 65
SensorTest How-To
1b. Choose the SSIDs to test
65BRKEWN-2032
© 2016 Cisco and/or its affiliates. All rights reserved. 66
SensorTest How-To
2. Select the Tests to Run
66BRKEWN-2032
© 2016 Cisco and/or its affiliates. All rights reserved. 67
SensorTest How-To
3. Select the Sensors to Use
67BRKEWN-2032
© 2016 Cisco and/or its affiliates. All rights reserved. 68
SensorTest How-To
Test Runs at Intervals
68BRKEWN-2032
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Assurance:
The AP4800 &
“Intelligent Capture”
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
AP-4800 is a more advanced AP than the AP-3800
Similar to the AP-3800i but it has an additional Flexible Radio for Analytics + Advanced Hyperlocation antenna array
• Location Array antenna is now integrated
• Bluetooth Low Energy radio is now integrated
• Embedded analytics/location radio is now integrated
Hyperlocation
antenna array
+ =
DNA Analytics, Monitoring
and Location Radio AP-4800
Best in Class
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
AP-4800 Antenna System Overview
Most Advanced Antenna System (25 Elements) in a Single Access Point
(4) 2.4/5GHz Macro
Antenna Elements
(4) 5GHz Micro Cell
Antenna Elements
(16) Element Directional
Antenna Array
(Digitally Switched)
for Location tracking
(4) Omni-Directional Elements
(Digitally Switched)
for 24x7 Monitoring &
Analytics / DNA Assurance
BLE=>
Element
Total Antenna Elements = 25
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Intelligent Capture
On-demand VIP Troubleshooting
Real-time Event
Viewer
Download Onboard
Packet
Auto Packet
Analyzer
Real-time Client location Map
with trail of movement
AP4800 3rd radio Full packet
capture
Failed Onboard
Network Time Travel
view
Interpacket Gap (ms) bar
chart
RSSI Chart per Packet
Onboard Packet
stage identifier
Failed Packet
Intelligent Capture
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Intelligent Capture is Real-Time Analytics and troubleshooting
• On-demand Intelligent Capture Capture
• Real-time Event Viewer and Automated Filtered Packet
capture
• Auto Packet Analyzer
• Real-time Client location Map
• Real-Time Client RF Stat Graph
• AP4800 3rd radio Full packet capture – one client per
floor
• Real-Time Application Analyzer integration
• Packet Capture across multiple APs
• Wireless Decrypted Packet Capture
• Real-Time RF Visualization with Location
• Spectrum Analyzer on DNA Assurance
• Real Time Client RF Stat update
• Real Time AP RF Stat update
• Multi-Device Onboarding Capture – 16
clients per foor
• Client Onboarding Issue with Intelligent
Capture PCAP
• Radio Anomaly Issue with PCAP
• AP RF Analysis
Single Device VIP capture Multi-Device Onboarding capture Real-Time RF / Spectrum AnalyzerAutomated PCAP
On-Demand Scheduled, Automated
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Intelligent Capture
Real Time Application Analytics
• Real-time Application
Analysis
• Application Identification
• Reveal WMM (L2), DSCP(L4)
Marking of each App
• Real-Time Packet Loss Graph
• Real-Time Wireless Delay Graph
• Real-time Jitter Graph
ONLY supported on AP 4800
Enabled by vNAM
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Intelligent Capture
Real-Time AP RF Stats. Spectrum Analyzer
• Runs as Scheduled / On-demand manner
• Runs per AP level
Supported on 2800, 3800, 4800
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Assurance:
Peering into the crystal ball…
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
Project Kairos
For Wireless, Wired and IOT
Cognitive Analytics
Anomaly detection across hundred of thousands of
devices, dozen of thousands of gears and
hundreds of heat maps
Machine Learning
For Wireless, Wired Networks and IOT
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco PublicTECSDN-3400 77
© 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public
DNA Analytics – Detect and Predict
Problem: Networks are complex, troubleshooting networks is challenging. Networks create
massive amount of Telemetry*. Data from your network alone may not be sufficient. Predicting
issues before they have an impact is difficult.
Solution: Use Machine Learning in DNA Analytics
1. Deploy ‘Kairos’ Package in DNA Center
2. Telemetry is collected across
wireless, routing, switching
(no hardware/software upgrade required)
3. (Anonymized) data is sent to the cloud
4. Advanced Machine Learning continuously
adapts using vast and diverse set of Big Data
5. Detect existing Issues (Cognitive Analytics)
6. Predict upcoming Issues (Predictive Analytics)
Infrastructure
Physical | Virtual | Programmable | App Hosting
DNA Center Cisco DNA
Analytics Cloud
ALERT INSIGHT! !
1)
4)
3)
2)
5) 6)
* Example: Cisco IT – 8’000 Access Points, 100’000
wireless clients  150 Mio Data Points per Hour
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
 DNA Analytics groups
networks according to
degree of “similarity” using
ML, and analyzes how the
network performs,
comparing with peers
 Provides comparison both
for issues and metrics (KPI
of interest)
Compare with your peers
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Compare with your peers …
Compare with other
devices in the same
network, time and …
comparable networks
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
DNA Assurance – Issue  ITSM Integration
Cisco DNA Issue Context
• DNAC Center User 360 Link
• Description
• Impact
• Locations
• Clients
• Guided Resolution
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
DNA Assurance – SaaS Integration
DNA Center
DNA Infrastructure
Clients | Applications | Wireless | Switching | Routing
SaaS Applications
Cloud Hosted Applications
may or may not interact with an
on-prem application controller
may or may not interact with
on-prem infrastructure or clients
Integration to
• Propagate App
Metrics to 360 View
• DNAC 1.3
- Skype 4 Business
• Other Candidates
- WebEx
- Spark
- Office365
- …
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
DNAC
• App Experience
in * 360 Views
• Link context-aware
DNA Assurance – App Dynamics Integration
DNA Center
DNA Infrastructure
Clients | Applications | Wireless | Switching | Routing
Data Center Infrastructure
AppDynamics
• Transaction Scores
and Dashboard
Integration to
• Propagate App
Scores to 360 View
© 2016 Cisco and/or its affiliates. All rights reserved. 84
Forward Looking Ideas
• Imagine that we linked the DNA Assurance platform to TAC database
What Else Could We Do?
Disclaimer: this is not a roadmap, just an exchange of forward looking ideas
Issue
found: high
CPU on
platform
XYZ
TAC knowledge
base
Suggested fix
“Issue found with 952 other
customers, when command
AA is used in combination
with interface command BB,
changing to command CC
achieves the same result but
lower CPU condition”
Would you like me to make the
change?
BRKEWN-2032 86
© 2016 Cisco and/or its affiliates. All rights reserved. 85
Forward Looking Ideas
• Imagine that we linked the DNA Assurance platform to the CVD Database
What Else Could We Do?
Disclaimer: this is not a roadmap, just an exchange of forward looking ideas
Click:
grade my
config
Anonymous CVD
database call
Suggested fixes
52 optimization
opportunities were found
Would you like me to make the
change?
87
C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Assurance:
Your own way…
via Streaming Telemetry
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
AireOS 8.7
WLC
8.5 +
“WSA”
Wireless Service Assurance
8.7 +
“Webhook”
DNAC
Assurance
3rd Party Server
Kibana
Yang Models
7 Models
AP, Client, System, Network,
Rogue, Mapserver, interferer
15 Models
HTTPS Post
“push” JSON
Certificate generated manually and
installed on WLC and into 3rd Party
Server
(config transfer datatype
webhook-ca-cert)
DNAC generates and manages
HTTPS certificate
(config transfer datatype
NaServerCaCert)
• Either WSA or Webhook can be enabled, not both
• Pub/Sub: Subscribe to topics in AireOS, data is pushed to DNAC or 3rd Party Server
• Configurable interval
• Configurable model
subscriptions
• Full of Differential payloads
No compression
• All models enabled
by DNAC
• Differential,
compressed payloads
Telemetry in AireOS
Interval: 2, 15, 30, 90, 300 seconds Interval: 30 or 300 seconds
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Webhook Configuration Example
Check
Prerequisites: DX,
TLS, and DNS
Chose data
publishing settings
Set the URL and
Auth-Token
Subscribe to the
models
Enable and verify
DX: Data Externalization must first be enabled, requires reboot
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Why Webhooks
• Works based on Pub-Sub
• Applications does not need to make API calls
or poll
• Subscribe for the interested topic
• Data will be posted periodically to the
channels via webhook
• Posting of data via HTTP Post
• Compatible with 3rd party analyzers and
applications
Application / Client
APIs Over time
Device / Data Source
Any Data ? Nope Any Data ? Nope Any Data ? Data
Time
Application / Client
Device / Data Source
Data
Time
Webhook Over time
Ack
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Raw Data Visualized
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
YANG Model to Subscription Mapping
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Subscriptions
Subscription Description
All Configures All topics Data Publish
AP MAC, AP-Group, Flex-Group, Mode, state, etc
Client MAC, state, connected-time, protocol, device details, etc
Interferer RF Interferers, detecting AP, RSSI, duty cycle, etc
MapServer SDA/FEW, IP, status, type, counters, etc
Network IP, CDP, Interfaces and counters
Rogue MAC, SSID, RSSI, SNR, type, reporting AP
System CPU and Memory usage, inventory, apps, etc
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
YANG Model Example
• Network Counters
wlc
ops
network
radius
auth-servers
counters
accounting-
servers
counters
dhcp
stats
counters
tacacs
auth-servers
statistics
acct-servers
statistics
cdp
expire-time
device
port
RADIUS Auth RADIUS Acct DHCP
Pending-requests First-requests tx-discovers
First-requests retry-requests rx-discovers
Retry-requests Acct-responses requests
Accept-responses Malformed-msgs informs
Reject-responses Bad-auth-msgs declines
Challenge-resp Timeout-requests releases
Malformed-msgs Unknown-msgs replies
Bad-auth-msgs Other-drops offers
Timeout-requests Pending-requests acks
Unknown-msgs nacks
Other-drops tx-failures
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Kibana Visualization
Kibana
© 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Thank you.

More Related Content

What's hot

Mise en place de la telephonie ip avec Asterisk
Mise en place de la telephonie ip avec AsteriskMise en place de la telephonie ip avec Asterisk
Mise en place de la telephonie ip avec AsteriskPape Moussa SONKO
 
Tuto ToIP (Trunk SIP, IAX, Trunk CME - Asterisk)
Tuto ToIP (Trunk SIP, IAX, Trunk CME - Asterisk) Tuto ToIP (Trunk SIP, IAX, Trunk CME - Asterisk)
Tuto ToIP (Trunk SIP, IAX, Trunk CME - Asterisk) Dimitri LEMBOKOLO
 
TechWiseTV Workshop: Cisco DNA Center Assurance
TechWiseTV Workshop: Cisco DNA Center AssuranceTechWiseTV Workshop: Cisco DNA Center Assurance
TechWiseTV Workshop: Cisco DNA Center AssuranceRobb Boyd
 
Securisation de la VoIP sous Asterisk: solution avec Asterisk, OpenVPN et Ope...
Securisation de la VoIP sous Asterisk: solution avec Asterisk, OpenVPN et Ope...Securisation de la VoIP sous Asterisk: solution avec Asterisk, OpenVPN et Ope...
Securisation de la VoIP sous Asterisk: solution avec Asterisk, OpenVPN et Ope...Stephen Salama
 
Denial of Service Attack Project
Denial of Service Attack ProjectDenial of Service Attack Project
Denial of Service Attack ProjectNadim Ebadi
 
Vpn d’acces avec cisco asa 5500 et client
Vpn d’acces avec cisco asa 5500 et clientVpn d’acces avec cisco asa 5500 et client
Vpn d’acces avec cisco asa 5500 et clientManassé Achim kpaya
 
Projet haute disponibilité asterisk pdf
Projet haute disponibilité asterisk pdfProjet haute disponibilité asterisk pdf
Projet haute disponibilité asterisk pdfAbderahim Amine Ali
 
Atelier configuration d une maquette voip
Atelier configuration d une maquette voip Atelier configuration d une maquette voip
Atelier configuration d une maquette voip sahar dridi
 
Quantum SD-WAN - High Level Customer PPT - 1-Mar-2023.pdf
Quantum SD-WAN - High Level Customer PPT - 1-Mar-2023.pdfQuantum SD-WAN - High Level Customer PPT - 1-Mar-2023.pdf
Quantum SD-WAN - High Level Customer PPT - 1-Mar-2023.pdfMiguelFernandoBarrio
 
Mise en place d’un système de détection
Mise en place d’un système de détectionMise en place d’un système de détection
Mise en place d’un système de détectionManassé Achim kpaya
 
Mise en place d'un système de messagerie roundcube sous cent os 7
Mise en place d'un système de messagerie roundcube sous cent os 7Mise en place d'un système de messagerie roundcube sous cent os 7
Mise en place d'un système de messagerie roundcube sous cent os 7Ousmane BADJI
 
Hosting Firmalarına Yönelik DDoS Saldırıları ve Çözüm Önerileri
Hosting Firmalarına Yönelik DDoS Saldırıları ve Çözüm ÖnerileriHosting Firmalarına Yönelik DDoS Saldırıları ve Çözüm Önerileri
Hosting Firmalarına Yönelik DDoS Saldırıları ve Çözüm ÖnerileriBGA Cyber Security
 
Open Ethernet: an open-source approach to modern network design
Open Ethernet: an open-source approach to modern network designOpen Ethernet: an open-source approach to modern network design
Open Ethernet: an open-source approach to modern network designAlexander Petrovskiy
 
Mise en place solution de communication Unifiée avec SIPXCOM
Mise en place solution de communication Unifiée avec SIPXCOMMise en place solution de communication Unifiée avec SIPXCOM
Mise en place solution de communication Unifiée avec SIPXCOMbamaemmanuel
 
COUPLAGE ENTRE Asterisk et OpenIMSCore
COUPLAGE ENTRE Asterisk et OpenIMSCoreCOUPLAGE ENTRE Asterisk et OpenIMSCore
COUPLAGE ENTRE Asterisk et OpenIMSCoreAbdou Lahad SYLLA
 
Migrating from OSPF to IS-IS by Philip Smith
Migrating from OSPF to IS-IS by Philip SmithMigrating from OSPF to IS-IS by Philip Smith
Migrating from OSPF to IS-IS by Philip SmithMyNOG
 

What's hot (20)

Active directory
Active directoryActive directory
Active directory
 
Mise en place de la telephonie ip avec Asterisk
Mise en place de la telephonie ip avec AsteriskMise en place de la telephonie ip avec Asterisk
Mise en place de la telephonie ip avec Asterisk
 
Tuto ToIP (Trunk SIP, IAX, Trunk CME - Asterisk)
Tuto ToIP (Trunk SIP, IAX, Trunk CME - Asterisk) Tuto ToIP (Trunk SIP, IAX, Trunk CME - Asterisk)
Tuto ToIP (Trunk SIP, IAX, Trunk CME - Asterisk)
 
TechWiseTV Workshop: Cisco DNA Center Assurance
TechWiseTV Workshop: Cisco DNA Center AssuranceTechWiseTV Workshop: Cisco DNA Center Assurance
TechWiseTV Workshop: Cisco DNA Center Assurance
 
Securisation de la VoIP sous Asterisk: solution avec Asterisk, OpenVPN et Ope...
Securisation de la VoIP sous Asterisk: solution avec Asterisk, OpenVPN et Ope...Securisation de la VoIP sous Asterisk: solution avec Asterisk, OpenVPN et Ope...
Securisation de la VoIP sous Asterisk: solution avec Asterisk, OpenVPN et Ope...
 
Denial of Service Attack Project
Denial of Service Attack ProjectDenial of Service Attack Project
Denial of Service Attack Project
 
Vpn d’acces avec cisco asa 5500 et client
Vpn d’acces avec cisco asa 5500 et clientVpn d’acces avec cisco asa 5500 et client
Vpn d’acces avec cisco asa 5500 et client
 
Projet haute disponibilité asterisk pdf
Projet haute disponibilité asterisk pdfProjet haute disponibilité asterisk pdf
Projet haute disponibilité asterisk pdf
 
Atelier configuration d une maquette voip
Atelier configuration d une maquette voip Atelier configuration d une maquette voip
Atelier configuration d une maquette voip
 
Quantum SD-WAN - High Level Customer PPT - 1-Mar-2023.pdf
Quantum SD-WAN - High Level Customer PPT - 1-Mar-2023.pdfQuantum SD-WAN - High Level Customer PPT - 1-Mar-2023.pdf
Quantum SD-WAN - High Level Customer PPT - 1-Mar-2023.pdf
 
Mémoire L3
Mémoire L3Mémoire L3
Mémoire L3
 
Mise en place d’un système de détection
Mise en place d’un système de détectionMise en place d’un système de détection
Mise en place d’un système de détection
 
Mise en place d'un système de messagerie roundcube sous cent os 7
Mise en place d'un système de messagerie roundcube sous cent os 7Mise en place d'un système de messagerie roundcube sous cent os 7
Mise en place d'un système de messagerie roundcube sous cent os 7
 
Hosting Firmalarına Yönelik DDoS Saldırıları ve Çözüm Önerileri
Hosting Firmalarına Yönelik DDoS Saldırıları ve Çözüm ÖnerileriHosting Firmalarına Yönelik DDoS Saldırıları ve Çözüm Önerileri
Hosting Firmalarına Yönelik DDoS Saldırıları ve Çözüm Önerileri
 
Open Ethernet: an open-source approach to modern network design
Open Ethernet: an open-source approach to modern network designOpen Ethernet: an open-source approach to modern network design
Open Ethernet: an open-source approach to modern network design
 
Mise en place solution de communication Unifiée avec SIPXCOM
Mise en place solution de communication Unifiée avec SIPXCOMMise en place solution de communication Unifiée avec SIPXCOM
Mise en place solution de communication Unifiée avec SIPXCOM
 
Mini projet Zabbix
Mini projet ZabbixMini projet Zabbix
Mini projet Zabbix
 
COUPLAGE ENTRE Asterisk et OpenIMSCore
COUPLAGE ENTRE Asterisk et OpenIMSCoreCOUPLAGE ENTRE Asterisk et OpenIMSCore
COUPLAGE ENTRE Asterisk et OpenIMSCore
 
Migrating from OSPF to IS-IS by Philip Smith
Migrating from OSPF to IS-IS by Philip SmithMigrating from OSPF to IS-IS by Philip Smith
Migrating from OSPF to IS-IS by Philip Smith
 
Intercept X - Sophos Endpoint
Intercept X - Sophos EndpointIntercept X - Sophos Endpoint
Intercept X - Sophos Endpoint
 

Similar to Cisco connect winnipeg 2018 a look at network assurance in dna center

TechWiseTV Workshop: Cisco Catalyst 9800 Series Wireless Controller
TechWiseTV Workshop: Cisco Catalyst 9800 Series Wireless ControllerTechWiseTV Workshop: Cisco Catalyst 9800 Series Wireless Controller
TechWiseTV Workshop: Cisco Catalyst 9800 Series Wireless ControllerRobb Boyd
 
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...Cisco Canada
 
Design and Deployment of Enterprise WLANs
Design and Deployment of Enterprise WLANsDesign and Deployment of Enterprise WLANs
Design and Deployment of Enterprise WLANsFab Fusaro
 
Nozomi Networks SCADAguardian - Data-Sheet
Nozomi Networks SCADAguardian - Data-SheetNozomi Networks SCADAguardian - Data-Sheet
Nozomi Networks SCADAguardian - Data-SheetNozomi Networks
 
Cisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco MerakiCisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco MerakiCisco Canada
 
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
Cisco Connect Toronto 2018   the intelligent network with cisco merakiCisco Connect Toronto 2018   the intelligent network with cisco meraki
Cisco Connect Toronto 2018 the intelligent network with cisco merakiCisco Canada
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco Canada
 
M1-C17-Armando una red.pptx
M1-C17-Armando una red.pptxM1-C17-Armando una red.pptx
M1-C17-Armando una red.pptxAngel Garcia
 
17 - Building small network.pdf
17 - Building small network.pdf17 - Building small network.pdf
17 - Building small network.pdfPhiliphaHaldline
 
Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM...
Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM...Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM...
Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM...Cisco Canada
 
iWAN - Cisco Application Experience Solution
iWAN - Cisco Application Experience SolutioniWAN - Cisco Application Experience Solution
iWAN - Cisco Application Experience Solutionxband
 
Cisco Connect Toronto 2017 - Introducing the Network Intuitive
Cisco Connect Toronto 2017 - Introducing the Network IntuitiveCisco Connect Toronto 2017 - Introducing the Network Intuitive
Cisco Connect Toronto 2017 - Introducing the Network IntuitiveCisco Canada
 
BRKIOT-2108.pdf
BRKIOT-2108.pdfBRKIOT-2108.pdf
BRKIOT-2108.pdfJokaTek
 
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...Cisco Canada
 
ITN_Module_17.pptx
ITN_Module_17.pptxITN_Module_17.pptx
ITN_Module_17.pptxssuserf7cd2b
 
The Data Center Network Evolution
The Data Center Network EvolutionThe Data Center Network Evolution
The Data Center Network EvolutionCisco Canada
 
Understanding Cisco’s Next Generation SD-WAN Solution with Viptela
Understanding Cisco’s Next Generation SD-WAN Solution with ViptelaUnderstanding Cisco’s Next Generation SD-WAN Solution with Viptela
Understanding Cisco’s Next Generation SD-WAN Solution with ViptelaCisco Canada
 
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocenceCisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocenceCisco Canada
 
Understanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN TechnologyUnderstanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN TechnologyCisco Canada
 

Similar to Cisco connect winnipeg 2018 a look at network assurance in dna center (20)

TechWiseTV Workshop: Cisco Catalyst 9800 Series Wireless Controller
TechWiseTV Workshop: Cisco Catalyst 9800 Series Wireless ControllerTechWiseTV Workshop: Cisco Catalyst 9800 Series Wireless Controller
TechWiseTV Workshop: Cisco Catalyst 9800 Series Wireless Controller
 
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...Cisco Connect Toronto 2018   sd-wan - delivering intent-based networking to t...
Cisco Connect Toronto 2018 sd-wan - delivering intent-based networking to t...
 
Design and Deployment of Enterprise WLANs
Design and Deployment of Enterprise WLANsDesign and Deployment of Enterprise WLANs
Design and Deployment of Enterprise WLANs
 
Nozomi Networks SCADAguardian - Data-Sheet
Nozomi Networks SCADAguardian - Data-SheetNozomi Networks SCADAguardian - Data-Sheet
Nozomi Networks SCADAguardian - Data-Sheet
 
Cisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco MerakiCisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
Cisco Connect Ottawa 2018 the intelligent network with Cisco Meraki
 
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
Cisco Connect Toronto 2018   the intelligent network with cisco merakiCisco Connect Toronto 2018   the intelligent network with cisco meraki
Cisco Connect Toronto 2018 the intelligent network with cisco meraki
 
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
Cisco connect montreal 2018 sd wan - delivering intent-based networking to th...
 
M1-C17-Armando una red.pptx
M1-C17-Armando una red.pptxM1-C17-Armando una red.pptx
M1-C17-Armando una red.pptx
 
17 - Building small network.pdf
17 - Building small network.pdf17 - Building small network.pdf
17 - Building small network.pdf
 
Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM...
Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM...Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM...
Cisco Application Policy Infrastructure Controller Enterprise Module (APIC-EM...
 
2500 controller
2500 controller2500 controller
2500 controller
 
iWAN - Cisco Application Experience Solution
iWAN - Cisco Application Experience SolutioniWAN - Cisco Application Experience Solution
iWAN - Cisco Application Experience Solution
 
Cisco Connect Toronto 2017 - Introducing the Network Intuitive
Cisco Connect Toronto 2017 - Introducing the Network IntuitiveCisco Connect Toronto 2017 - Introducing the Network Intuitive
Cisco Connect Toronto 2017 - Introducing the Network Intuitive
 
BRKIOT-2108.pdf
BRKIOT-2108.pdfBRKIOT-2108.pdf
BRKIOT-2108.pdf
 
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...Cisco connect winnipeg 2018   gain insight and programmability with cisco dc ...
Cisco connect winnipeg 2018 gain insight and programmability with cisco dc ...
 
ITN_Module_17.pptx
ITN_Module_17.pptxITN_Module_17.pptx
ITN_Module_17.pptx
 
The Data Center Network Evolution
The Data Center Network EvolutionThe Data Center Network Evolution
The Data Center Network Evolution
 
Understanding Cisco’s Next Generation SD-WAN Solution with Viptela
Understanding Cisco’s Next Generation SD-WAN Solution with ViptelaUnderstanding Cisco’s Next Generation SD-WAN Solution with Viptela
Understanding Cisco’s Next Generation SD-WAN Solution with Viptela
 
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocenceCisco Connect Ottawa 2018 dna assurance shortest path to network innocence
Cisco Connect Ottawa 2018 dna assurance shortest path to network innocence
 
Understanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN TechnologyUnderstanding Cisco’ Next Generation SD-WAN Technology
Understanding Cisco’ Next Generation SD-WAN Technology
 

More from Cisco Canada

Cisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devopsCisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devopsCisco Canada
 
Cisco connect montreal 2018 iot demo kinetic fr
Cisco connect montreal 2018   iot demo kinetic frCisco connect montreal 2018   iot demo kinetic fr
Cisco connect montreal 2018 iot demo kinetic frCisco Canada
 
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal VirtualizationCisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal VirtualizationCisco Canada
 
Cisco connect montreal 2018 secure dc
Cisco connect montreal 2018    secure dcCisco connect montreal 2018    secure dc
Cisco connect montreal 2018 secure dcCisco Canada
 
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018   enterprise networks - say goodbye to vla nsCisco connect montreal 2018   enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018 enterprise networks - say goodbye to vla nsCisco Canada
 
Cisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco Canada
 
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec CiscoCisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec CiscoCisco Canada
 
Cisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybridesCisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybridesCisco Canada
 
Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018Cisco Canada
 
Cisco connect montreal 2018 compute v final
Cisco connect montreal 2018   compute v finalCisco connect montreal 2018   compute v final
Cisco connect montreal 2018 compute v finalCisco Canada
 
Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2Cisco Canada
 
Cisco Connect Toronto 2018 an introduction to Cisco kinetic
Cisco Connect Toronto 2018   an introduction to Cisco kineticCisco Connect Toronto 2018   an introduction to Cisco kinetic
Cisco Connect Toronto 2018 an introduction to Cisco kineticCisco Canada
 
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...Cisco Canada
 
Cisco Connect Toronto 2018 DevNet Overview
Cisco Connect Toronto 2018  DevNet OverviewCisco Connect Toronto 2018  DevNet Overview
Cisco Connect Toronto 2018 DevNet OverviewCisco Canada
 
Cisco Connect Toronto 2018 DNA assurance
Cisco Connect Toronto 2018  DNA assuranceCisco Connect Toronto 2018  DNA assurance
Cisco Connect Toronto 2018 DNA assuranceCisco Canada
 
Cisco Connect Toronto 2018 network-slicing
Cisco Connect Toronto 2018   network-slicingCisco Connect Toronto 2018   network-slicing
Cisco Connect Toronto 2018 network-slicingCisco Canada
 
Cisco Connect Toronto 2018 sixty to zero
Cisco Connect Toronto 2018   sixty to zeroCisco Connect Toronto 2018   sixty to zero
Cisco Connect Toronto 2018 sixty to zeroCisco Canada
 
Cisco Connect Toronto 2018 model-driven programmability for cisco ios xr-v1
Cisco Connect Toronto 2018   model-driven programmability for cisco ios xr-v1Cisco Connect Toronto 2018   model-driven programmability for cisco ios xr-v1
Cisco Connect Toronto 2018 model-driven programmability for cisco ios xr-v1Cisco Canada
 
Cisco Connect Toronto 2018 dc-aci-anywhere
Cisco Connect Toronto 2018   dc-aci-anywhereCisco Connect Toronto 2018   dc-aci-anywhere
Cisco Connect Toronto 2018 dc-aci-anywhereCisco Canada
 
Cisco Connect Toronto 2018 consuming public and private clouds
Cisco Connect Toronto 2018   consuming public and private cloudsCisco Connect Toronto 2018   consuming public and private clouds
Cisco Connect Toronto 2018 consuming public and private cloudsCisco Canada
 

More from Cisco Canada (20)

Cisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devopsCisco connect montreal 2018 net devops
Cisco connect montreal 2018 net devops
 
Cisco connect montreal 2018 iot demo kinetic fr
Cisco connect montreal 2018   iot demo kinetic frCisco connect montreal 2018   iot demo kinetic fr
Cisco connect montreal 2018 iot demo kinetic fr
 
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal VirtualizationCisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
Cisco connect montreal 2018 - Network Slicing: Horizontal Virtualization
 
Cisco connect montreal 2018 secure dc
Cisco connect montreal 2018    secure dcCisco connect montreal 2018    secure dc
Cisco connect montreal 2018 secure dc
 
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018   enterprise networks - say goodbye to vla nsCisco connect montreal 2018   enterprise networks - say goodbye to vla ns
Cisco connect montreal 2018 enterprise networks - say goodbye to vla ns
 
Cisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse localeCisco connect montreal 2018 vision mondiale analyse locale
Cisco connect montreal 2018 vision mondiale analyse locale
 
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec CiscoCisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
Cisco Connect Montreal 2018 Securité : Sécuriser votre mobilité avec Cisco
 
Cisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybridesCisco connect montreal 2018 collaboration les services webex hybrides
Cisco connect montreal 2018 collaboration les services webex hybrides
 
Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018Integration cisco et microsoft connect montreal 2018
Integration cisco et microsoft connect montreal 2018
 
Cisco connect montreal 2018 compute v final
Cisco connect montreal 2018   compute v finalCisco connect montreal 2018   compute v final
Cisco connect montreal 2018 compute v final
 
Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2Cisco connect montreal 2018 saalvare md-program-xr-v2
Cisco connect montreal 2018 saalvare md-program-xr-v2
 
Cisco Connect Toronto 2018 an introduction to Cisco kinetic
Cisco Connect Toronto 2018   an introduction to Cisco kineticCisco Connect Toronto 2018   an introduction to Cisco kinetic
Cisco Connect Toronto 2018 an introduction to Cisco kinetic
 
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...Cisco Connect Toronto 2018   IOT - unlock the power of data - securing the in...
Cisco Connect Toronto 2018 IOT - unlock the power of data - securing the in...
 
Cisco Connect Toronto 2018 DevNet Overview
Cisco Connect Toronto 2018  DevNet OverviewCisco Connect Toronto 2018  DevNet Overview
Cisco Connect Toronto 2018 DevNet Overview
 
Cisco Connect Toronto 2018 DNA assurance
Cisco Connect Toronto 2018  DNA assuranceCisco Connect Toronto 2018  DNA assurance
Cisco Connect Toronto 2018 DNA assurance
 
Cisco Connect Toronto 2018 network-slicing
Cisco Connect Toronto 2018   network-slicingCisco Connect Toronto 2018   network-slicing
Cisco Connect Toronto 2018 network-slicing
 
Cisco Connect Toronto 2018 sixty to zero
Cisco Connect Toronto 2018   sixty to zeroCisco Connect Toronto 2018   sixty to zero
Cisco Connect Toronto 2018 sixty to zero
 
Cisco Connect Toronto 2018 model-driven programmability for cisco ios xr-v1
Cisco Connect Toronto 2018   model-driven programmability for cisco ios xr-v1Cisco Connect Toronto 2018   model-driven programmability for cisco ios xr-v1
Cisco Connect Toronto 2018 model-driven programmability for cisco ios xr-v1
 
Cisco Connect Toronto 2018 dc-aci-anywhere
Cisco Connect Toronto 2018   dc-aci-anywhereCisco Connect Toronto 2018   dc-aci-anywhere
Cisco Connect Toronto 2018 dc-aci-anywhere
 
Cisco Connect Toronto 2018 consuming public and private clouds
Cisco Connect Toronto 2018   consuming public and private cloudsCisco Connect Toronto 2018   consuming public and private clouds
Cisco Connect Toronto 2018 consuming public and private clouds
 

Recently uploaded

Azure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & ApplicationAzure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & ApplicationAndikSusilo4
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking MenDelhi Call girls
 
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024BookNet Canada
 
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...HostedbyConfluent
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):comworks
 
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsSnow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsHyundai Motor Group
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesSinan KOZAK
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024Scott Keck-Warren
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking MenDelhi Call girls
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreternaman860154
 
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Alan Dix
 
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetHyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetEnjoy Anytime
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationSafe Software
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsMemoori
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonetsnaman860154
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 3652toLead Limited
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking MenDelhi Call girls
 
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxMaking_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxnull - The Open Security Community
 

Recently uploaded (20)

Azure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & ApplicationAzure Monitor & Application Insight to monitor Infrastructure & Application
Azure Monitor & Application Insight to monitor Infrastructure & Application
 
08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men08448380779 Call Girls In Civil Lines Women Seeking Men
08448380779 Call Girls In Civil Lines Women Seeking Men
 
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
Transcript: #StandardsGoals for 2024: What’s new for BISAC - Tech Forum 2024
 
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...
Transforming Data Streams with Kafka Connect: An Introduction to Single Messa...
 
CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):CloudStudio User manual (basic edition):
CloudStudio User manual (basic edition):
 
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter RoadsSnow Chain-Integrated Tire for a Safe Drive on Winter Roads
Snow Chain-Integrated Tire for a Safe Drive on Winter Roads
 
Unblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen FramesUnblocking The Main Thread Solving ANRs and Frozen Frames
Unblocking The Main Thread Solving ANRs and Frozen Frames
 
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
Neo4j - How KGs are shaping the future of Generative AI at AWS Summit London ...
 
SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024SQL Database Design For Developers at php[tek] 2024
SQL Database Design For Developers at php[tek] 2024
 
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
08448380779 Call Girls In Diplomatic Enclave Women Seeking Men
 
Presentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreterPresentation on how to chat with PDF using ChatGPT code interpreter
Presentation on how to chat with PDF using ChatGPT code interpreter
 
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...Swan(sea) Song – personal research during my six years at Swansea ... and bey...
Swan(sea) Song – personal research during my six years at Swansea ... and bey...
 
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your BudgetHyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
Hyderabad Call Girls Khairatabad ✨ 7001305949 ✨ Cheap Price Your Budget
 
Pigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food ManufacturingPigging Solutions in Pet Food Manufacturing
Pigging Solutions in Pet Food Manufacturing
 
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry InnovationBeyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
Beyond Boundaries: Leveraging No-Code Solutions for Industry Innovation
 
AI as an Interface for Commercial Buildings
AI as an Interface for Commercial BuildingsAI as an Interface for Commercial Buildings
AI as an Interface for Commercial Buildings
 
How to convert PDF to text with Nanonets
How to convert PDF to text with NanonetsHow to convert PDF to text with Nanonets
How to convert PDF to text with Nanonets
 
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
Tech-Forward - Achieving Business Readiness For Copilot in Microsoft 365
 
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men08448380779 Call Girls In Greater Kailash - I Women Seeking Men
08448380779 Call Girls In Greater Kailash - I Women Seeking Men
 
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptxMaking_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
Making_way_through_DLL_hollowing_inspite_of_CFG_by_Debjeet Banerjee.pptx
 

Cisco connect winnipeg 2018 a look at network assurance in dna center

  • 1. © 2017 Cisco and/or its affiliates. All rights reserved. 1 DNA-C Network Assurance Ian Procyk Technical Solutions Architect May 29 2018 Cisco Connect
  • 2. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 1. Assurance Overview 2. What you need to get started 3. What does it look like? 4. Device & client health 5. Deeper dive on specific wireless test points 6. Using sensors 7. Intelligent Capture & AP4800 8. Peering into the crystal ball 9. Time Permitting: “Roll your own assurance” with webhook Agenda
  • 3. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential DNA-C Assurance Overview
  • 4. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Network quality is a complex, end-to-end problem * Both = Join/roam and quality/throughput Access points Local WLCs Network services data center Office site Cisco ISE Mobile clients Cisco® Unified CM Client firmware AP coverage WAN uplink usage End-user services RF noise/interf Cisco Prime® Configuration Authentication WLC capacity WAN Client density Affects join/roam Affects quality/throughput Affects both* DHCP Addressing WAN QoS, routing, ... 100+ points of failure between user and app With 50,000+ permutations! What is the problem? Where is the problem? How can I fix the problem fast?
  • 5. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential NOC @ Customer Site
  • 6. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Highly Customized Network Monitoring
  • 7. © 2016 Cisco and/or its affiliates. All rights reserved. 77 DNA Assurance in DNA Center DNA Center Fabric and Nonfabric A collection of network devices under the administrative control of DNA Center Switch Router Wireless LAN Controller Access Point Policy Design Identity Services Engine DNA-C APPLIANCE Provision Assurance
  • 8. © 2016 Cisco and/or its affiliates. All rights reserved. 8 The Components of DNA-C Policy • Manage the Network from a single place • Create Virtual Networks and configure • Access Control • Application Priority • Application Registry Design • Deploy “World Class” prescription configuration • Automation of Device On- Boarding (Plug and Play) • Device Inventory • Fabric Administration • Host On-Boarding Provision • Transform the Network with Actionable Insights and Simplicity • End to End Visibility • Predict Performance • Close Loop Automation • Streaming Telemetry Assurance • Build the Network Hierarchy instead site maps • Configure Network Settings including DCHP, AAA, and IPAM • Setup the Image Management Repository • Configure Network Profiles Achieve IT and business alignment with a custom design Migrate using predictive steps Peace of mind with Cisco expertise and state-of-the-art tools 8
  • 9. © 2016 Cisco and/or its affiliates. All rights reserved. 9 Border/Edge Reachability Data Plane Policy Plane Client Onboarding Control plane reachability Edge reachability Border reachability Routing protocol MAP server Border and edge connectivity Border node health Access node health Network Services DHCP, DNS, AAA ISE/PxGrid connectivity Border Node policy Edge Node policy Client/Device DHCP Client/Device DNS Client authentication / authorization Switch CPU, Mem, Temp Line-card Modules POE power TCAM Table SDA and Switching Specific Correlated Insights Total SDA/Switching Insights: 38 issues in DNA-C 1.1 BRKEWN-2032 62
  • 10. © 2016 Cisco and/or its affiliates. All rights reserved. 10 Client Onboarding Network Coverage & Capacity Network Device Monitoring Application Performance Sensor Association failures Authentication failures IP address failure Client Exclusion Excessive on-boarding time Excessive authentication time Excessive IP addressing time AAA, DHCP reachability Coverage hole AP License utilization Client Capacity Radio utilization Availability Crash, AP Join Failure High Availability CPU, Memory utilization Flapping AP, Hung Radio Power supply failures Throughput analysis Roaming pattern analysis Sticky client Slow roaming Excessive roaming RF, Roaming pattern Dual band clients prefer 2.4GHz Excessive interference Client Experience Web: HTTP & HTTPS Email: POP3, IMAP, Outlook Web Access File Transfer: FTP & TFTP Terminal: Telnet & SSHv2 Wireless Specific Correlated Insights Total Insights: 66 issues in DNA-C 1.1 BRKEWN-2032 63
  • 11. Next Generation Networking requires New Era of Analytics Infrastructure Right data at the right time with the right context would help generate actionable business insights on wireless issues Right Data Right Time Right Context Legacy Telemetry in traditional Network Monitoring Tools • CPU intensive raw data (~10 times more*) • Multiple data sources needed for end to end coverage Contextual and Anomaly driven Telemetry for DNA Assurance • Optimized export with programmability and JSON encoding • Unified telemetry for heterogeneous data sources • Push based model • Real-time notifications (~as low as 5 sec) • Pull based model • No real-time notifications (~ 15-30 mins) • Network centric view with limited client context • No events leading to false alarms • Visibility into Client, App and Network traffic • 240+ Client Onboarding issues defined as Events *External reports, under evaluation
  • 12. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Assurance: What you need to get started
  • 13. © 2016 Cisco and/or its affiliates. All rights reserved. 13 Small Footprint Appliance DNA Center Appliance - Single Appliance Runs Automation and Assurance Specifications UCS 220 1RU Server: 64-bit x86 vCPU: 44 core (2.2GHz) RAM: 256 GB Disk: SSD 12 TB M-RAID Controllers: 2* 480 GB SSD controllers Disk I/O speed: 200 MB TPM module DNA Center Appliance SKU: DN1-HW-APL
  • 14. © 2016 Cisco and/or its affiliates. All rights reserved. 1414 Platform Support in DNA-C 1.1 • AireOS 8.5+ Type Hardware Non Fabric Software Fabric APs Aironet 802.11n (700, 1600, 2600, 3600, 3500) 8.5MR1+ n/a Aironet 802.11ac Wave 1 (1700, 2700, 3700) 8.5MR1+ 8.5MR1+ Aironet 802.11ac Wave 2 (1810, 1815, 1830, 1850, 2800, 3800,4800) 8.5MR1+ 8.5MR1+ WLCs WLC 2504 / 5508 N/A N/A WLC5520 8.5MR1+ 8.5MR1+ WLC8510 8.5MR1+ 8.5MR1+ WLC8540 8.5MR1+ 8.5MR1+ WLC3504 8.5MR1+ 8.5MR1+ Flex 7500 8.5MR1+ n/a Whole AP as a Sensor Aironet 802.11ac Wave 2 (1810, 1815, 1830, 1850) 8.5MR1+ n/a XOR radio as a Sensor Aironet 802.11ac Wave 2 (2800, 3800,4800) 8.5MR1+ n/a Dedicated Sensor AP1800i, AP1800s 8.5MR1+ 8.5MR1+ Apple Analytics WLC: 5520, 8510, 8540 Apple iOS 11. iPhone7/iPad Pro or above 8.5MR1+ 8.5MR1+ Wireless: 11n, 11ac (Wave 1, 2) AireOS Routing platforms Switching platforms Hardware Nonfabric Software Fabric Software Catalyst® 3650, 3850 16.3+ 16.6.1+ Catalyst® 4500 IOS-XE 3.9.2+ IOS-XE 3.10.1+ Catalyst® 6800 15.4SY+ 15.5.1SY+ Catalyst® 2960, 3560 15.2.5E1 Not applicable Catalyst® 9300, 9400, 9500 16.5.1a 16.6.1+ Nexus 7700 7.3+ 7.3.2+ Hardware Nonfabric Software Fabric Software ISR: 800, 1900, 2900, 3900, 4400, 4300, 4200, 1100 15.5.3M+, 16.3.3+ ASR 1K 16.3.3 + ENCS (5400, 5100) 3.6.2 Virtual: CSR1K, ISRv1K 16.3.3+
  • 15. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 15 Designed to be DNA ready Intent-Based Wireless Controllers AIR-CT5520 AIR-CT8540 AIR-CT3504 Optimized for driving Intent  REST API/Streaming Telemetry *  Easy WEBGUI with best-practices defaults  Highly Available with Client Stateful Switchover Industry-leading Scale and Performance  Up to 6K AP/64K Clients supported  UDP: 90% BW with NBAR2 turned on  TCP: 60% BW with NBAR2 turned on(1300 bytes) Integrated Services with per-device, per-user policy with no compromise  Application Visibility and Control, Bonjour Gateway  Apple Optimized Roaming and FastLane  Secured by Netflow, Umbrella, TrustSec
  • 16. © 2016 Cisco and/or its affiliates. All rights reserved. 1616 DNA-C 1.1: Scale and Data Retention KPIs, Metrics Relationship Graph Between 7 ~ 30 days Events/Alarms Issues Backup (To external storage) Purge • Data storage for 5000 devices, 25,000 clients • Customizable retention policy • Storage monitoring and alerting • Provide meaningful assurance troubleshooting, issues and trending dashboard data
  • 17. © 2016 Cisco and/or its affiliates. All rights reserved. 17 DNA-C v1.1- CloudTethered Software Upgrades Benefits: • Continuous delivery • Business agility How it Works: 1. Service catalog hosted in cloud (AWS EC2) 2. Cisco pushes new version of an App / Service to the service catalog 3. Customer automatically get notified and have the option to deploy the new version
  • 18. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Assurance: What does it look like?
  • 19. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Overall Network Health • Overall health summary of network and clients • Where in the world and on which site most serious issues are happening • Quick drill down to a site or Toggle between Geo, List or Topology View • Top 10 Global Insights
  • 20. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential End-to-end visibility • Client Health Summary • Onboarding, RF and Client Profile info • Network Health Summary • Control, Data, Policy Plane and Health info
  • 21. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Path Trace – Troubleshooting • Run pathtrace from source to destination to quickly get key performance statistics for each device along the network path • Identify ACLs that may be Blocking or affecting the traffic flow
  • 22. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 360°Visibility • Single location for all user information and every user device • History of performance for each user device • Proactive identification of any issues affecting user’s experience • Single location for all user device related user information • Connectivity graph with health score of all device on the path • Application performance • Device KPIs
  • 23. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Insights with Guided Remediation Actions • Guided Actions to help remediate issues quickly • Detailed drill downs to identify the impact quickly
  • 24. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Network Time Travel • Rewind time to when the issue occurred • All the information on the user or network device 360 changes to the selected time! • History shows critical events • Identifies when issues occurred! Go back in time to understand the network state when issue occurred
  • 25. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Wireless Client Insights Device Profile Client shares these details 1. Model: iPhone 7 2. OS: iOS 11.2 Support per device-group Policies and Analytics 1 Wi-Fi Analytics Client shares these details 1. BSSID 2. RSSI 3. Channel number Insights into the clients view of the network 2 Assurance iOS Client shares the reason (error code) for the disconnect. Clarity into the reliability of connectivity 3 Wi-Fi Analytics for iOS This partnership with Apple enables any iOS 11 client to speak to Cisco DNA Center with client diagnostics. Provides a more comprehensive view of all potential root causes of wireless issues. Problems affecting iOS clients are likely affecting all wireless clients. Apple and
  • 26. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Assurance: Client Side
  • 27. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential DNA Assurance – Client Health Toggle Overview Map | List Health Summary • Wireless vs Wired • Onboarding Times • RSSI • etc Time Travel Quick Filters
  • 28. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public 28BRKEWN-2032 Impacted Clients Onboarding and RSSI
  • 29. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKEWN-2032 Client Onboarding Time • 30 Minute or 24 Hour interval • Threshold • Details 29
  • 30. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco PublicBRKEWN-2032 Connectivity RSSI • 30 Minute or 24 Hour interval • Threshold • Details 30
  • 31. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential BRKEWN-2032 Client 360 • Time Selector – 3 Hours, 24 Hours, 7 Days • Domains • Health Score over time • Select an area to focus in on the issues • Issues and Trends • Onboarding • Path Trace • RF and Device Details 31
  • 32. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 32BRKEWN-2032 Client 360 - Issues • Problems found during the client onboarding process are displayed as an issue • Impact by location and number of clients is displayed
  • 33. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 33BRKEWN-2032 Client 360 - Issue Details Description and Impact • Description of the issue is displayed • Details of the impacted users and their locations is displayed
  • 34. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 34BRKEWN-2032 Client 360 - Suggested Actions • Suggested actions for each issue • Impact by location and clients is displayed
  • 35. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 35BRKEWN-2032 Client 360 – Detailed Device Information • Client Information: • Username, Hostname, MAC details • Connection • Band, Spatial Stream, Channel Width
  • 36. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 36BRKEWN-2032 Client 360 – Detailed RF Information • RSSI, SNR • Tx and Rx bytes
  • 37. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential BRKEWN-2032 Client 360 - Onboarding • Devices in the onboarding path have Health Score • Cross-Launch to the Device 360
  • 38. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Assurance: Device Health Scores
  • 39. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 39 Device 360 - Issues
  • 40. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 40 Device 360 - Radio Utilization Issue
  • 41. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 41BRKEWN-2032 Device 360 - Suggested Actions
  • 42. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 42BRKEWN-2032 Device 360 - Suggested Actions - Command Runner
  • 43. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential 43BRKEWN-2032 Device 360 - Physical Neighbor Topology • Shows clients per SSID/radio, AP, and upstream switch and WLC • Health score for each device • Hover over to access more details and easy access to the Device 360
  • 44. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Device 360 - Detailed Device Information 44BRKEWN-2032
  • 45. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Device 360 Detailed RF Information • Charts for each radio 1. Channel Utilization 2. Interference 3. Noise 4. Air Quality 45BRKEWN-2032
  • 46. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Assurance: Deeper Dive
  • 47. Client on Boarding and Connectivity Insights Wireless client Onboarding Network services RF connectivity DNS AAA DHCP Internet service Association Roaming Wired client Onboarding Network services First hop connectivity DNS AAA DHCP Internet service … Wireless client on-boarding score Wired client on-boarding score 48
  • 48. © 2016 Cisco and/or its affiliates. All rights reserved. 48 DNA Assurance Client Issue Page 50
  • 49. © 2016 Cisco and/or its affiliates. All rights reserved. 49 Excessive IP Lease Time We know: • 802.11 auth, assoc were okay, on time • AAA phases worked, on time • Client sent a DHCP request • DHCP responded, but late (based on baseline) • Why? Network issue Server issue Service issue 49
  • 50. Issues - Client Boarding Issue Client on- boarding Network services (raise these issues only if no RF connectivity issues) RF connectivity DNS AAA DHCP Network connectivity Association WebAuth RF Link Health On-going 49
  • 51. Issues - Client Boarding Issue Client on- boarding Network services (raise these issues only if no RF connectivity issues) RF connectivity DNS AAA DHCP Network connectivity Association WebAuth WF1 Failed to obtain IP address – pool exhausted (1) (Issue) WF1 Failed to obtain IP address – No response from DHCP server (1) (Issue) WF1 Failed 802.11 Authentication & Key Exchange – Invalid username / pwd (1) (Issue) WF1 Failed 802.11 Authentication & Key Exchange – too many failed auth (1) (Issue) WF1 Failed 802.11 Authentication & Key Exchange – Misconfigured PSK (1) (Issue) WF1 Failed 802.1x Authentication & Key Exchange – Incorrect EAP method (2) (Issue) WF1 Failed 802.11 Authentication & Key Exchange – Expired RSA certificate (2) (Trend) WF1 Failed 802.11 Authentication & Key Exchange – Active Directory (2) (Issue) WF1 Failed 802.11 Association – Mac Authentication / RADIUS Server (2) (Issue) WF1 Failed 802.11 Association – Mac Authentication / WLC (2) (Issue) WF1 Failed Authentication & Key exchange – Various reasons (2) (Issue) (e.g.unexpected response from RADIUS) Cannot reach DNS server ( reachability – cannot ping DNS server ) (1) (Issue) DNS server not responding ( can ping DNA server, but no response from DNS server, config error, or server issue ) (1) (Issue) Identify guest issues: 1) Local WLC, 2) External Web server, 3) ISE/RADIUS Cannot reach user specified intranet service (1) (Issue) Cannot reach user specified internet service (1) (Issue) RF Link Health On-going User has poor RF connection for a sustained period of time (1) RSSI > 70 dBm / SNR > 20 dB, 2) MCS consistent with signal, 3) Retries below < 15%, 4) Cell channel utilization < 50%) (1) (Issue) WF2 Misbehaving – Dual band capable client preferring 2.4 GHz when 5.0 GHz is available RF association failed ( specifically, step 2 or 3 ) (2) (Issue) 52
  • 52. © 2016 Cisco and/or its affiliates. All rights reserved. 52 Life, Once You Have Onboarded Roaming can be an issue • “Roaming is the same as onboarding, except that we know the client already” Client RF may suffer • Sticky client • Ping-pong client • Poor RF client • CHDM client Quality of experience can degrade outside of RF issues 52BRKEWN-2032
  • 53. Issues -Wireless Connected Categories Client experience Roaming issues after client has successfully on boarded WF2 Misbehaving – Roaming failed (1) (Issue) WF2 Misbehaving – Sticky client (1) (FYI) WF2 Misbehaving – 802.11r Capable client roaming slow (1) (FYI) WF2 Misbehaving – 802.11i Capable client roaming slow (3) (FYI) WF2 Misbehaving – Dual band capable client connects to 2.4 GHz when 5.0 GHz is available during roam (1) (FYI) WF2 Misbehaving – Ping pong client (AP/AP) (1) (FYI) WF2 Misbehaving – Ping pong client (SSID/SSID) (1) (FYI) WF2 Misbehaving – Ping pong client (2.4GHz / 5 GHz) (1) (FYI) Issue - Roaming failed counts by AP (current) (by WLC-future) Issue - Roaming failed counts by location (floor, building, and site) (current) Issue - Roaming failed counts by client type (current) Issue - Roaming failed counts per client (current) Issue - Roaming failed counts over time (current) Issue - Roaming times longer than normal by AP (current+1) Issue - Roaming times longer than normal by location (floor, building, and site) (current+1) Issue - Roaming times longer than normal by client type (current+1) Issue - Roaming times longer than normal per client (current+1) Issue - Roaming times longer than normal over time (current+1) Trends: For each above issue as trends (future) Prediction: Roaming times and roaming failure counts (future) Kairos BRKEWN-2032 54
  • 54. Issues -Wireless Connected Categories Client experience Throughput Issue: Throughput significant drop or spike for overall (all applications) by location (current) Issue: Throughput significant drop or spike for overall (all applications) by AP (current) Issue: Throughput significant drop or spike for overall (all applications) by client type (current) Issue: Throughput significant drop or spike from normal per application by location (floor, building, and site) (current+1) Issue: Throughput significant drop or spike from normal per application by AP (current+1) (by WLC - future) Issue: Throughput significant drop or spike from normal per application by client type (current+1) Trends: For each above issue as trends (future) Prediction: Throughput 1-5 hours in advance for significant drops or spikes for overall (all applications) by AP (current) Prediction: Throughput 1-5 hours in advance for significant drops or spikes for overall (all applications) by application (current+1) Prediction: Throughput 1-5 hours in advance for significant drops or spikes for overall (all applications) by client type (future) Kairos BRKEWN-2032 55
  • 55. © 2016 Cisco and/or its affiliates. All rights reserved. 55 Wireless Network Data Plane AP and Switch Issues -Wireless Network Devices Categories WLC and Switch WF6 – WLC Ethernet Port LAG mismatch (2) (FYI) WF6 – AP Ethernet Port LAG mismatch (1800 / 2800 / 3800 ) (2) (FYI) RF events WF5 – AP Channel changes – signal (us) (2) (FYI) WF5 – AP Channel changes – Interference (not us) (2) (FYI) WF5 – AP Channel changes – DFS (2) (FYI) Availability WF4 – AP Availability: AP up/down (1) (FYI) WF4 – AP Hung radio – radio 1 ( no sensor checks ) (1) (FYI) WF4 – AP Hung radio – radio 2 ( no sensor checks ) (1) (FYI) WF4 – AP last reboot crash (1) (FYI) WF5 – AP flapping (1) (FYI) Client to AP WF5 Poor RSSI – coverage hole (1) (FYI) WF5 Flash crowd (1) (FYI) WF6 AP – AP excessive interference – WiFi (2) (FYI) WF6 AP – AP excessive interference – non WiFI (2) (FYI) utilization WF6 AP – Utilization: Radio (1) (FYI) WF6 AP – 2.4 GHz radio utilization (1) (FYI) WF6 AP – 5.0 GHz radio utilization (1) (FYI) WF6 AP – CPU utilization (1) (FYI) WF6 AP – Memory utilization (1) (FYI) WF6 AP – Ethernet port utilization (1) (FYI) Spare capacity (e.g. 1-client count / max client count) WF5 – AP 5GHz radio utilization (non FRA capable AP) (1) (Issue) WF5 – AP 5GHz radio utilization (FRA capable AP / FRA disabled) (1) (Issue) BRKEWN-2032 57
  • 56. © 2016 Cisco and/or its affiliates. All rights reserved. 56 Wireless Network Control plane Device health WLC Connectivity AP and WLC Issues -Wireless Network Availability WF5 – AP flapping between WLCs (1) (FYI) WF5 – AP VLAN mismatch (flexconnect) (2) (FYI) WF4 – WLC regulatory domain mismatch between WLC and APs (2) (FYI) WF5 – AP WLC join failure – AP not joined to its preferred WLC (3) (FYI) WF4 – WLC down (1) (Issue) WF4 – WLC power supply failure (1) (FYI) WF4 – WLC last reboot crash (1) (FYI) WF4 – WLC HA/SSO – the primary unit / standby hot (2) (FYI) WF4 – WLC HA/SSO – HA peer unreachable (2) (FYI) WF4 – WLC HA /SSO – both WLCs active (2) (FYI) WF4 – WLC EoIP mobility tunnel – Data channel down / peer WLC up (2) (FYI) WF4 – WLC EoIP mobility tunnel – control and data channel down / peer WLC up (2) (FYI) WF4 – WLC EoIP anchor tunnel – data channel down / peer WLC up (2) (FYI) WF4 – WLC EoIP anchor tunnel – control and data channel down / peer WLC up (2) (FYI) WF5 – WLC Excessive inter-WLC roaming (L2) (2) (FYI) WF5 – WLC Excessive intra-WLC roaming (L3) (2) (FYI) WF4 – WLC Mobility bug (CP) (3) (FYI) BRKEWN-2032 59
  • 57. © 2016 Cisco and/or its affiliates. All rights reserved. 57 Wireless Network Control plane Device health WLC Issues -Wireless Network Devices Categories utilization Temperature FAN QoS Table Usage (Queue depth, Buffer) Interface Statistics - Error, Discard, FCS, Runts, resets Queue utilization wit drop counters WF4 – WLC utilization – Radius queue (1) (FYI) WF6 – WLC utilization – memory (1) (FYI) WF4 – WLC AP license utilization (1) (Trend) WF4 – WLC AP license exhausted (1) (FYI) WF4 – WLC AP Capacity (1) (Trend) WF4 – WLC client capacity (1) (Trend) WF6 – WLC utilization – CPU (1) (FYI) WF6 – WLC utilization – WLC Ethernet port utilization (Rate/load, Tx/Rx indivual vs bidirectional, duplex speed) (2)(FYI) WF6 – WLC low free Mbuf (2) (FYI) WF6 – WLC high WQE pool usage (2) (FYI) WF6 – WLC high packet pool usage (2) (FYI) WF6 – WLC low available timer (2) (FYI) BRKEWN-2032 60
  • 58. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Assurance: Sensors (Wireless)
  • 59. © 2016 Cisco and/or its affiliates. All rights reserved. 59 Wireless Sensors Proactively Assess Performance Test your network anywhere at any time R1 Dedicated Sensor AP1800 Flexible Radio Sensors act as clients Access point  On-Boarding Tests • 802.11 Association • 802.11 Authentication & Key Exchange • IP Addressing DHCP (IPv4)  Network tests • DNS (IPv4) • RADIUS (IPv4) • First Hop Router/Default gateway (IPv4) • Intranet Host • External Host (IPv4)  Application tests • Email: POP3, IMAP, Outlook Web Access (IPv4) • File Transfer: FTP (IPv4) • Web: HTTP & HTTPS (IPv4) Flexible Radio Assignment Algorithm intelligently identifies excessive radios and seamlessly converts those into Sensor mode without client impact BRKEWN-2032 68
  • 60. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Telemetry Evolutions – Wireless Sensors Flexible Radio as Sensor (2800/3800/4800 APs) Dedicated Sensors (1815/1830/1850 APs, 1800 Sensor) Dual 5 GHz Flexible Radios Software defined radios automatically adjust to dual 5GHz Purpose-built Hardware for Analytics Flexible radios can to provide simultaneous in-line monitoring to DNA for analytics and insights while serving clients (future) 1815 1830/1850 1800 Sensors DNA Assurance – Sensor-Driven Tests
  • 61. © 2016 Cisco and/or its affiliates. All rights reserved. 61 Wireless Sensor Support Dual 5 GHz Flexible Radios Software defined radios automatically adjust to dual 5GHz Purpose-built Hardware for Analytics Flexible radios can to provide simultaneous in-line monitoring to DNA for analytics and insights while serving clients (future) XOR RADIO 5GHz. 2.4GHz. Sensor (Client Testing) Flexible Radio as Sensor (2800/3800) Dedicated AP as Sensor 1815/1830/1850 AP • 2x2 with 2 spatial streams • Multiple powering options: • PoE Power • USB Type “C” power • Direct AC Power Plug • Integrated BLE 1815 1830/1850 1800s dedicated sensor BRKEWN-2032 69
  • 62. © 2016 Cisco and/or its affiliates. All rights reserved. 62 Run NetworkTests See What Works and Where 62BRKEWN-2032
  • 63. © 2016 Cisco and/or its affiliates. All rights reserved. 63 Run NetworkTests Hover over a Test to See Results 63BRKEWN-2032
  • 64. © 2016 Cisco and/or its affiliates. All rights reserved. 64 SensorTest How-To 1a. Create a New Test, Choose Location and Run Interval 64BRKEWN-2032
  • 65. © 2016 Cisco and/or its affiliates. All rights reserved. 65 SensorTest How-To 1b. Choose the SSIDs to test 65BRKEWN-2032
  • 66. © 2016 Cisco and/or its affiliates. All rights reserved. 66 SensorTest How-To 2. Select the Tests to Run 66BRKEWN-2032
  • 67. © 2016 Cisco and/or its affiliates. All rights reserved. 67 SensorTest How-To 3. Select the Sensors to Use 67BRKEWN-2032
  • 68. © 2016 Cisco and/or its affiliates. All rights reserved. 68 SensorTest How-To Test Runs at Intervals 68BRKEWN-2032
  • 69. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Assurance: The AP4800 & “Intelligent Capture”
  • 70. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential AP-4800 is a more advanced AP than the AP-3800 Similar to the AP-3800i but it has an additional Flexible Radio for Analytics + Advanced Hyperlocation antenna array • Location Array antenna is now integrated • Bluetooth Low Energy radio is now integrated • Embedded analytics/location radio is now integrated Hyperlocation antenna array + = DNA Analytics, Monitoring and Location Radio AP-4800 Best in Class
  • 71. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential AP-4800 Antenna System Overview Most Advanced Antenna System (25 Elements) in a Single Access Point (4) 2.4/5GHz Macro Antenna Elements (4) 5GHz Micro Cell Antenna Elements (16) Element Directional Antenna Array (Digitally Switched) for Location tracking (4) Omni-Directional Elements (Digitally Switched) for 24x7 Monitoring & Analytics / DNA Assurance BLE=> Element Total Antenna Elements = 25
  • 72. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Intelligent Capture On-demand VIP Troubleshooting Real-time Event Viewer Download Onboard Packet Auto Packet Analyzer Real-time Client location Map with trail of movement AP4800 3rd radio Full packet capture Failed Onboard Network Time Travel view Interpacket Gap (ms) bar chart RSSI Chart per Packet Onboard Packet stage identifier Failed Packet Intelligent Capture
  • 73. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Intelligent Capture is Real-Time Analytics and troubleshooting • On-demand Intelligent Capture Capture • Real-time Event Viewer and Automated Filtered Packet capture • Auto Packet Analyzer • Real-time Client location Map • Real-Time Client RF Stat Graph • AP4800 3rd radio Full packet capture – one client per floor • Real-Time Application Analyzer integration • Packet Capture across multiple APs • Wireless Decrypted Packet Capture • Real-Time RF Visualization with Location • Spectrum Analyzer on DNA Assurance • Real Time Client RF Stat update • Real Time AP RF Stat update • Multi-Device Onboarding Capture – 16 clients per foor • Client Onboarding Issue with Intelligent Capture PCAP • Radio Anomaly Issue with PCAP • AP RF Analysis Single Device VIP capture Multi-Device Onboarding capture Real-Time RF / Spectrum AnalyzerAutomated PCAP On-Demand Scheduled, Automated
  • 74. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Intelligent Capture Real Time Application Analytics • Real-time Application Analysis • Application Identification • Reveal WMM (L2), DSCP(L4) Marking of each App • Real-Time Packet Loss Graph • Real-Time Wireless Delay Graph • Real-time Jitter Graph ONLY supported on AP 4800 Enabled by vNAM
  • 75. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Intelligent Capture Real-Time AP RF Stats. Spectrum Analyzer • Runs as Scheduled / On-demand manner • Runs per AP level Supported on 2800, 3800, 4800
  • 76. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Assurance: Peering into the crystal ball…
  • 77. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public Project Kairos For Wireless, Wired and IOT Cognitive Analytics Anomaly detection across hundred of thousands of devices, dozen of thousands of gears and hundreds of heat maps Machine Learning For Wireless, Wired Networks and IOT © 2018 Cisco and/or its affiliates. All rights reserved. Cisco PublicTECSDN-3400 77
  • 78. © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Public DNA Analytics – Detect and Predict Problem: Networks are complex, troubleshooting networks is challenging. Networks create massive amount of Telemetry*. Data from your network alone may not be sufficient. Predicting issues before they have an impact is difficult. Solution: Use Machine Learning in DNA Analytics 1. Deploy ‘Kairos’ Package in DNA Center 2. Telemetry is collected across wireless, routing, switching (no hardware/software upgrade required) 3. (Anonymized) data is sent to the cloud 4. Advanced Machine Learning continuously adapts using vast and diverse set of Big Data 5. Detect existing Issues (Cognitive Analytics) 6. Predict upcoming Issues (Predictive Analytics) Infrastructure Physical | Virtual | Programmable | App Hosting DNA Center Cisco DNA Analytics Cloud ALERT INSIGHT! ! 1) 4) 3) 2) 5) 6) * Example: Cisco IT – 8’000 Access Points, 100’000 wireless clients  150 Mio Data Points per Hour
  • 79. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential  DNA Analytics groups networks according to degree of “similarity” using ML, and analyzes how the network performs, comparing with peers  Provides comparison both for issues and metrics (KPI of interest) Compare with your peers
  • 80. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Compare with your peers … Compare with other devices in the same network, time and … comparable networks
  • 81. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential DNA Assurance – Issue  ITSM Integration Cisco DNA Issue Context • DNAC Center User 360 Link • Description • Impact • Locations • Clients • Guided Resolution
  • 82. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential DNA Assurance – SaaS Integration DNA Center DNA Infrastructure Clients | Applications | Wireless | Switching | Routing SaaS Applications Cloud Hosted Applications may or may not interact with an on-prem application controller may or may not interact with on-prem infrastructure or clients Integration to • Propagate App Metrics to 360 View • DNAC 1.3 - Skype 4 Business • Other Candidates - WebEx - Spark - Office365 - …
  • 83. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential DNAC • App Experience in * 360 Views • Link context-aware DNA Assurance – App Dynamics Integration DNA Center DNA Infrastructure Clients | Applications | Wireless | Switching | Routing Data Center Infrastructure AppDynamics • Transaction Scores and Dashboard Integration to • Propagate App Scores to 360 View
  • 84. © 2016 Cisco and/or its affiliates. All rights reserved. 84 Forward Looking Ideas • Imagine that we linked the DNA Assurance platform to TAC database What Else Could We Do? Disclaimer: this is not a roadmap, just an exchange of forward looking ideas Issue found: high CPU on platform XYZ TAC knowledge base Suggested fix “Issue found with 952 other customers, when command AA is used in combination with interface command BB, changing to command CC achieves the same result but lower CPU condition” Would you like me to make the change? BRKEWN-2032 86
  • 85. © 2016 Cisco and/or its affiliates. All rights reserved. 85 Forward Looking Ideas • Imagine that we linked the DNA Assurance platform to the CVD Database What Else Could We Do? Disclaimer: this is not a roadmap, just an exchange of forward looking ideas Click: grade my config Anonymous CVD database call Suggested fixes 52 optimization opportunities were found Would you like me to make the change? 87
  • 86. C97-740150-00 © 2018 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Assurance: Your own way… via Streaming Telemetry
  • 87. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential AireOS 8.7 WLC 8.5 + “WSA” Wireless Service Assurance 8.7 + “Webhook” DNAC Assurance 3rd Party Server Kibana Yang Models 7 Models AP, Client, System, Network, Rogue, Mapserver, interferer 15 Models HTTPS Post “push” JSON Certificate generated manually and installed on WLC and into 3rd Party Server (config transfer datatype webhook-ca-cert) DNAC generates and manages HTTPS certificate (config transfer datatype NaServerCaCert) • Either WSA or Webhook can be enabled, not both • Pub/Sub: Subscribe to topics in AireOS, data is pushed to DNAC or 3rd Party Server • Configurable interval • Configurable model subscriptions • Full of Differential payloads No compression • All models enabled by DNAC • Differential, compressed payloads Telemetry in AireOS Interval: 2, 15, 30, 90, 300 seconds Interval: 30 or 300 seconds
  • 88. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Webhook Configuration Example Check Prerequisites: DX, TLS, and DNS Chose data publishing settings Set the URL and Auth-Token Subscribe to the models Enable and verify DX: Data Externalization must first be enabled, requires reboot
  • 89. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Why Webhooks • Works based on Pub-Sub • Applications does not need to make API calls or poll • Subscribe for the interested topic • Data will be posted periodically to the channels via webhook • Posting of data via HTTP Post • Compatible with 3rd party analyzers and applications Application / Client APIs Over time Device / Data Source Any Data ? Nope Any Data ? Nope Any Data ? Data Time Application / Client Device / Data Source Data Time Webhook Over time Ack
  • 90. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Raw Data Visualized
  • 91. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential YANG Model to Subscription Mapping
  • 92. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Subscriptions Subscription Description All Configures All topics Data Publish AP MAC, AP-Group, Flex-Group, Mode, state, etc Client MAC, state, connected-time, protocol, device details, etc Interferer RF Interferers, detecting AP, RSSI, duty cycle, etc MapServer SDA/FEW, IP, status, type, counters, etc Network IP, CDP, Interfaces and counters Rogue MAC, SSID, RSSI, SNR, type, reporting AP System CPU and Memory usage, inventory, apps, etc
  • 93. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential YANG Model Example • Network Counters wlc ops network radius auth-servers counters accounting- servers counters dhcp stats counters tacacs auth-servers statistics acct-servers statistics cdp expire-time device port RADIUS Auth RADIUS Acct DHCP Pending-requests First-requests tx-discovers First-requests retry-requests rx-discovers Retry-requests Acct-responses requests Accept-responses Malformed-msgs informs Reject-responses Bad-auth-msgs declines Challenge-resp Timeout-requests releases Malformed-msgs Unknown-msgs replies Bad-auth-msgs Other-drops offers Timeout-requests Pending-requests acks Unknown-msgs nacks Other-drops tx-failures
  • 94. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Kibana Visualization Kibana
  • 95. © 2017 Cisco and/or its affiliates. All rights reserved. Cisco Confidential

Editor's Notes

  1. Too many tools Reactive systems Limited insights The market has been providing visibility tools since the inception of networks, and we have dozens of vendors providing visibility, but little has changed the predicament of IT regarding user experience issues What is the problem Where is the problem How to fix the problem?
  2. DOCKER AND Kubernetes
  3. Design: We help you build the network hierarchy, set up the image repository, and configure network settings and profiles. Policy: Our team makes it possible for you to manage the network from a single place, create virtual networks, and successfully configure your access control, application priority, and application registry. Provisioning: We show you how to enable world-class prescription configuration and automation for device onboarding, device inventory, and fabric administration. Assurance: Leverage our deep knowledge to transform the network with actionable insights, strategic simplicity, end-to-end visibility, predictive performance, closed-loop automation, and streaming telemetry.
  4. All modern WLC 8.5 code
  5. BASELINE THRESHOLD
  6. FIX ANIMATION !
  7. Similar in design to the AP-3800 the AP-4800 has these additional Hardware components.
  8. As you can see on the left, we have integrated the best features from the AP-3800 (Macro/Micro cell antennas) into the AP-4800. We have also made enhancement to the Hyperlocation Antenna Array, it can now digitally switch from location tracking to Omni-Directional for security and analytics monitoring.
  9. Let’s see in detail. It starts from traditional network time travel view that shows any past historical capture data for this particular client device. There is one button that can initiate full packet capture easily. No complex filter rule or separate screen is needed. In the left hand side, Live Onboard event viewer shows client onboard status in real-time. whenever there are failure discovered we can zoom in and discover what happened on that client right side of screen shows client movement and it shows current and last 1min of client location trails which colored by client RF conditions. Admin can choose RSSI, SNR, Data Rate or packet loss to track client device condition in real-time. Bottom screen section shows client onboard packet analysis. It shows each packets onboarding step, RSSI and Interpacket gap, that shows delay per each handshake.
  10. Here are detailed features of Intelligent Capture. It provides lot of powerful, comprehensive On-demand troubleshooting features such as Real-time event On Board event viewer, automated filtered packet capture Packet capture is done from multiple APs in parallels and automatically decrypted when it get captured. Especially in case of AP4800, it uses 3rd radio to capture entire radio packets in real time and can send it to DNAC in just single mouse click. DNA center offers real-time application analysis while packet get captured. Admin can always download this full packet capture data to analyze it in offline. DNA Center also offers integrated spectrum analysis, using spectrum data from Intelligent Capture. On-demand analysis can be done in automated fashion using scheduling and DNA Center will store scheduled iCapture result for 14 days.
  11. When full packet capture is coming through DNA Center, DNA can relay this packet stream into external vNAM and results are coming back to DNA Center to visualize result. vNAM analyze 802.11 radio header information to show applications that currently running and also shows layer 2, WMM UP value as well as layer 4 DSCP value. Admin can easily check whether there is any mistakes is QoS tagging across 802.11 and IP packets. Not only that it shows Wireless Delay, Packet loss and Jitter between client and access point.
  12. Finally, Intelligent Capture is not all about packet capture. It also send various Client and AP RF Stats in real time as well as Spectrum Expert view from DNA Center. Network admin can select multiple APs to capture detailed RF statistics and spectrum data
  13. All Webhook configuration can be done from the GUI as well as the CLI. First lets look at the GUI configuration and discuss the prerequisites DX or Data Externalization is the process which allows the WLC to access information from the internal datastores, process it, and make it available externally. It must be enabled on the CLI and does require a reboot to take effect. Most controllers will already have DX enabled by default For data publishing settings, we can enable or disable differential snapshots. When enabled, the differential snapshot or payload received contains only data the has changed since the previous snapshot or payload. When set to disabled, a full payload it sent everytime. The URL and Auth-token must also be set which specifies where the data is sent to. This should be set to the IP or DNS name of the 3rd party server. In this configuration, we are using the ELK stack, so we set this to the IP of Logstash. The subscription configuration section details the topics that can be subscribed to, that are backed by the Yang models. Choose individual topics or enable all if desired. Under Data Publish Status the last error and last success is displayed so we can easily see the status of other connection.
  14. Webhook is different from traditional API. Webhook is what’s called a pub/sub model, where we subscribe to the topic of our interest and the data will be published periodically or on event changes. We no longer poll the WLC for information, instead, it is pushed out to us at predefinded intervals: currently that’s within 30 seconds or fixed at every 5 minutes.
  15. What the Webhook allows us to do is get access to data about what’s happening within the WLC. The data shown here isn’t very meaningful until we slice and dice or process it to get the bits that are interesting to us. For example, we can take the raw data and draw a line chart showing the number of DHCP acknowledgements that WLC processes, or, look at all of the Rogue SSID’s that are being detected, as shown in the two examples. As there are several different datasets that are available, we can chose to subscribe to some or all in order to build the visaulizations or get insights that we are interested in
  16. Moving back to AireOS 8.7, there are 7 topics that we can subscribe to, the data that is externalized is defined in YANG models These YANG models ship with the WLC Code and is posted to CCO. You can analyze the yang files to better understand the data that is posted. The models are text so can be easily read with a text editor, or by using a tool like PYANG to better visualize the models
  17. The topics that are available to subscribe to are: AP, Client, Interferer, MapServer, Network, Rogue, and System. AP, Client, System and Network are the most subscribed to topics as they provide the bulk of the interesting data that is most used. When looking at Rogues or Interferrence, enable those topics The MapServer topic details the Fabric Enabled Wireless datasets that are posed, and do not have details of Location or CMX or MSE type of capabilities
  18. The YANG models can be analyzed to understand the detail of the data contained and exposed by them. Here is a summary of the WLC-Ops-Network-stats. yang model. This shows details of the network topic subscription that contains counters and statistics for Radius, TACACS, and DHCP and CDP information. With this data, we can build visualizations to see, for example, spikes or dips in the number of RADIUS Requests, or the number of DHCP Declines that the WLC is processing
  19. Kibana is User Interface where we can really start to see that data. Here we create a Pie chart against the ‘header-xpath-keyword” field, which gives us a breakdown of which subscription topic is providing the most payloads.