Cisco DNA Wired Assurance TDM
Cisco DNA Wired Assurance TDM
Cisco DNA Wired Assurance TDM
AI/ML/MRE Reports
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
1 DNA Wired Assurance Intro
2 Architecture
3 Getting Started
5 PoE Analytics
6 TrueTrace
Agenda 7 Wired Sensors
8 StackWise
9 Application Experience
10 Machine Reasoning
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
11 ThousandEyes
Introducing DNA Assurance
In this Environment, Context is Key
Cisco Context
Time
360-degree Visibility
Users Network
Devices Applications
Data Granularity
Location
Historical, Real-time, Future
Traceroute
Complex
Syslog NetFlow correlation Clients Baseline
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Assurance is part of Cisco DNA Center
Automation Assurance
• Global settings
Design • Site profiles
• User access
• Virtual networks
• ISE, AAA, Radius
Policy • Access control
• Application control
SSH/NETCONF
Protocols & APIs (WSA, gRPC, SNMP, NetFlow, Syslog, Location, NETCONF, CLI, ...)
CMX
DHC
P
WAN
Export enriched, consistent and concise data with context from network
devices for a better user and operator experience
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Getting Started Workflow
DNA Assurance - Getting Started Workflow
DNA Center Network Device Network Design & Ready for DNA
Install Discovery Provision Assurance !
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Step 1– Network Device Discovery
CDP / LLDP
IP Address Range
Enable NetConf
Access the Design page and create network sites by adding area, building and floor
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Step 3– Assign Device to Sites
Select individual devices from the Provision menu and associate devices to sites
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Step 4– Telemetry Configuration
Telemetry Configuration
• SYSLOG Server
• SNMP Trap Server
• SNMP Polling
• NetFlow
• Wired Client Data Collection
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Assurance Dashboard Ready for DNA Assurance
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
DNA Assurance for Wired
Cisco DNA Wired Assurance – Investment Pillars
1 PoE Analytics
2 Wired Sensors
2-Event Classification
4 Application Experience Perpetual PoE
Fast PoE
UPoE+
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Wired Assurance – Investment Pillars
1 PoE Analytics
2 Wired Sensors
1 PoE Analytics
2 Wired Sensors
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Wired Assurance – Investment Pillars
1 PoE Analytics
2 Wired Sensors
3 Stackwise
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Wired Assurance – Investment Pillars
1 PoE Analytics
2 Wired Sensors
3 Stackwise
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
PoE Analytics
Introduction Cisco DNAC PoE Analytic Assurance
PROBLEM
• The big challenge is getting a complete visibility into the endpoints and monitoring switches for power usage and
overall capacity for hundreds of devices in the customer's environment.
• One had to go switch by switch to see, what’s the overall power budget of each device; how much power has been
utilized and how much is the remaining power budget.
SOLUTION
• Cisco DNA Center version 2.1 brings in a capability of PoE Analytics Assurance for a robust and efficient digital
building solution that resolves this exact challenge.
• It provides PoE visibility and assurance for the entire network power budget and real time utilization on individual
switches and switch stacks, visibility into end point device types, operational states and power consumption metrics.
• Troubleshooting options that enable easy fixes with just a few clicks.
• This offers complete control to add PoE endpoints to the most suitable switch without accessing the CLI.
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Evolution of PoE Standards
UPOE+ Standardization • IEEE standardization expands the PoE
ecosystem
UPoE Powered
802.1AC Access Compact
VOIP Phones Points switches • IEEE 802.3bt complements Cisco UPOE© by
90W adding 4 new classes of devices
60W UPOE+
30W UPOE©
PoE+ IEE bt
E • Safety measures ensure up to 90W of power is
2 .3
15W
PoE
8 0
safely delivered
2018
2011
2009
2003 IEEE 802.3af IEEE 802.3at IEEE 802.3bt
PSE=15.4W, PD=13W PSE=30W, PD=25.5W PSE=90W, PD=71W, Type 4
Type 1 Type 2 PSE=60W, PD=51W, Type 3
Backward compatible
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Evolution of PoE Devices
• Example
• High power access points
• Digital signage
• Nurse calling stations
• High-definition cameras
• USB-C dongles
• Smart TV’s
are already part of the network and are being powered using a single
RJ-45 cable with Power over Ethernet (PoE).
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
New PoE architectures are emerging with 90W
Catalyst 9400 1G UPOE©+ 90W line card (C9400-LC-48H) PoE Monitors PoE Monitors
UPOE+
Daisy-chaining
Light Fixtures Light Fixtures
(Cost saving with 90W)
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Cat9K Provides High-Uptime for Critical IoT Applications
Cisco DNA Center™
Open APIs
Cisco DNA Assurance
Network Power Health Intelligent Building
Management
Telemetr
y
Systems
Primary Power Grid
N+1/N+N Redundant power supplies
AC PSU
Power available from AC + DC sources
DC PSU
EXIT
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential Emergency pathway Hospital
Warning and status Surveillance Security control center
signs lighting systems ER and OT lighting (Reliable Data + Power)
Perpetual PoE/UPOE
PoE devices connected to switch stay powered even on switch reload
Switch> enable
Switch# configure terminal
Switch(config)# interface gigabitethernet2/0/1
Switch(config-if)# power inline port perpetual-poe-ha
Switch(config-if)# end
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Fast PoE/UPOE
• Remembers the last power drawn from a
Power
particular PSE port Supplies
CLI/CDP/LLDP Main CPU
• Restores power to PD in less than 30 seconds Status
post restoration of power PoE configuration:
MCU
• Works even before IOS comes up Enable, Port PoE
Priority, Power Budget
etc
• Allocates last power (stored in NVRAM) drawn
from PDs PSE
Controller
• Works in stacking deployments 2 event
Classification
P
D
Switch> enable
Switch# configure terminal
Switch(config)# interface gigabitethernet2/0/1 * In case of UPOE, since the PD relies on LLDP to get
Switch(config-if)# power inline port perpetual-poe-ha to higher power levels, PD may still need to wait till the
Switch(config-if)# power inline port poe-ha IOS comes up and LLDP packet exchanges happen
Switch(config-if)# end
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
PoE Dashboard
• Four PoE Widgets
1. PoE Operational State Distribution
2. Power Load Distribution
3. PoE Powered Device Distribution
4. PoE Insights
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
PoE Operational State Distribution Widget
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
1.PoE Operational State Distribution Widget
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
PoE Operational State Distribution
Deep Dive Analytics
• Data table:
o Identifier
o Powered Device Model or Type
o Connected Switch
o Switch Interface
o IEEE Compliant
o Location
o Allocated or Consumed Power
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
PoE Power Load Distribution Widget
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
2.PoE Power Load Distribution Widget
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
PoE Power Load Distribution Widget
Deep Dive Analytics
• Clicking View Details reveals
interactive bar graphs. Click a bar
graph to see more in-dept data
analysis.
• Data table:
o Identifier
o Switch Type
o OS Version
o IP Address
o Location
o Power Budget
o Consumed Power
o Power Load (%)
o Remaining Power
o Module Count
o Chassis Count
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
3.PoE Powered Device Distribution
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Delivered
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
PoE Powered Device Distribution
Deep Dive Analytics
• Clicking View Details reveals
interactive bar graphs. Click a bar
graph to see more in-dept data
analysis.
• Data table:
o Identifier
o Powered Device Model
o Powered Device Type
o Connected Switch
o Switch Interface
o IEEE Compliant
o Location
o Allocated Power
o Consumed Power
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Perpetual PoE
4.PoE Insights
Introduction
• This widget provides insight on features Fast PoE
like Perpetual PoE, Fast PoE, IEEE
Compliant, and UPOE+
UPOE+
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
PoE Insights
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
PoE Insights
• Filter based on
o Perpetual PoE
o Fast PoE
o IEEE Compliant
o UPOE+
• Table is customizable.
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
Power Summary
PoE Interfaces
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
PoE Troubleshooting
2020 Cisco and/or its affiliates. All rights reserved. Cisco Confidential
2.2.3 PoE Features
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Center 2.2.3 PoE Features
• Visualize the Stack switch power supply details in 360 view
• Visualize the PoE details on a per port module basis
• View the PoE interfaces on a switch and the associated devices connected to
it and their power status
• Two new dashlets added to PoE dashboard
• PoE power allocation
• PoE Port Availability
• The new features help with capacity planning of PoE in the network
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Stack Switch Power Supply Details in 360 view
• Total Power
• Reserved Power
• Allocated Power
• Switch Allocated Power
• Power Consumed by system
• Power Consumed by PoE
• Stack Count
• Power Supply Count
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Stack Switch PoE Details in 360 View
• Module ID
• Total Power Budget
• Allocated Power
• Max Power per Port
• Total Ports
• Used Ports
• Free Ports
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
PoE interface details in Switch 360 View
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
PoE new dashlets in PoE dashboard
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
PoE Power Allocation View Details
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
PoE Port Availability View Details
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
* Dual Supervisors needed
UPOE+ (90W)
Perpetual PoE *
High
Fast PoE Availability
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
TrueTrace
Enhanced Packet Capture that allows live traffic to be captured, providing
visibility into Network Topology, Security Policies, and Performance Metrics
to identify critical issues.
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Using TrueTrace
From the Device 360 or Client 360 page for any client
or any Catalyst device running IOS 17.1.x or greater:
Start Trace
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
TrueTrace Results
Results from
TrueTrace provide:
• Ingress/Egress
Info
• Average
Processing Delay,
in ms (ACL, GRE,
Queue)
• Packet Forwarding
Decision (#
packets forwarded,
# packets dropped,
drop reason)
© 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Wired Sensors
Overview
• For a network to recover, the first thing it needs to be able to do is detect problems
and measure network parameters. (e.g., latency)
• For that it needs sensors placed strategically at various parts of its network.
• The goal of this project to simulate a Wired Client (virtual) which can perform
various tests/measure parameters and send back the data to DNAC for further
analysis.
• Such a Wired Sensor must virtually emulate in all respects a wired client that is
physical attached to the switch.
• This includes client authentication, DHCP, DNS operations etc.
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Wired Sensor on Cat9K
Emulates a wired client for ongoing proactive monitoring as well as on-demand acceptance tests
Provisioned by Cisco DNA Center on-demand
Performs various test to check –
Docker App
C9300/9400
VS
AP1800s
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Scalable Sensor Test Workflow
Step.1 Create Sensor Test Step.2 Assign Sensor Test to Sites
• More Options, Less complexity • Deploy Template to Global / Site / Building / Floor / Sensor level
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
1
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public 4
Steps Scalable Sensor Test Workflow
Select Wired Sensor • Create Once, Unlimited Reuse - Location-based Template (Global/Site/Building)
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Sensor Dashboard Heatmap-based Navigation
• Network Time Travel with Sensor Test Result
• Customizable Color grading threshold
• Insight View – Worst Location, Largest Health Drop
by Location, Most Common Test Failure with reason
code, expandable to top 5 on each category
• Search Bar to find any location/site
• Insight page for Actionable, Location-based insight
• Familiar Assurance Workflow – Network Time Travel,
LATEST/TREND
• Drill-Down View to Test Result Detail
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Test Result Color Code
Test Failure % Threshold • Failure-based or Threshold-based
Onboarding Authentication
DHCP
RADIUS
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Sensor 360
Network Time Travel Target Site View
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
New Cisco Cisco DNA Center Wired Sensor
Enterprise Ready Features
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Sensor Workflow
9. Sensor Controls
10. Upgrade using Cisco DNAC or CLI
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Recommended Software
Cisco DNA Center 2.1.2
Catalyst 9300 (Standalone) IOS XE 17.4.1 (SSD USB not required starting with 17.4)
Wired Client Sensor c9k_sensor_1.0.tar (Agent can be downloaded from Wired Sensor Test wizard)
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
StackWise Switch Monitoring
(Physical Stack and Virtual Stack)
StackWise Physical Details in 360 View
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
StackWise Physical
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
StackWise Virtual Monitoring
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
StackWise Virtual SVL Details
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
DAD - Dual Active Detection Link Status
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
StackWise Switch Issues
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Stack Member Removed Issue Details
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
StackWise Virtual Link Failure Issue Details
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
StackWise Physical and Virtual Issues
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Application Experience
Application Experience
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Top Applications in Use by Business
• Collection of application performance metric from routers
• Use of NBAR2 to identify over 1400 applications, including
hundreds of encrypted applications (without decryption and
while ensuring full privacy and message-integrity)
• Use of Flexible NetFlow with application-identification
extensions to export flow telemetry from wired and wireless
clients
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Top Applications in Use by Business
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Application Experience of Business-Critical Applications
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Assurance of Business Critical Applications
The Intent-Based Networking Method for Monitoring Application Quality
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Rapid Troubleshooting of Application Issues
Past and Present
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Historical Reporting: Client Details Report
Shows:
• Type
• MAC
• Health
• Issue count
• Location(s)
Filters:
• Location
• SSID
• Band
• Vendor
• Time
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Summary
Majority of network traffic on today’s networks is encrypted; however,
network operators still need to know:
• What applications are running over my network?
• How are my business-critical applications performing
• How much traffic do these generate?
• Make Fast and Active Triage Decision – Application or Network issue
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Machine Reasoning Engine (MRE)
Accelerated Remediation
Powered by Machine Reasoning Algorithms
Network
Guided
analytics
remediation
capture
Machine
reasoning engine
Close the
Knowledge
Automated troubleshooting intent based
base
and root cause analysis loop
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Machine Reasoning Engine Architecture
Semantic Compilers Best
Practices
...
PSIRT
Knowledge Packages
Defect
Signatures
Inferences
Dashboard
Machine Reasoning
Engine Workflow
Anonymized Governance Editor
Telemetry
Remediation
WSA Collector
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Machine Reasoning Process
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Root Cause Analysis
Machine Reasoning Engine (MRE)
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Root Cause Analysis
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Suggested Actions
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Customize Issue Settings
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Customize Issue Settings
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Reports
Reports
• 12 new reports templates across client and
network devices.
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
ThousandEyes Integration (2.3.3)
ThousandEyes Integration
• Integrate ThousandEyes with Cisco DNA Center by deploying the
ThousandEyes Enterprise Agent on a Cisco Catalyst 9300 or 9400 via Cisco
Application Hosting (Docker)
• Configure and deploy Enterprise Agent Tests from the ThousandEyes
dashboard.
• View agent, test, and alert data on the DNA Center Application Experience
dashboard.
• Cross-link to test in ThousandEyes dashboard.
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Install ThousandEyes Enterprise Agent
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Install ThousandEyes Enterprise Agent
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Install ThousandEyes Enterprise Agent
Click “Install” to
begin the install
workflow and
select the switch
the agent will be
installed on.
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Configure Access Token
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Configure Access Token
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Access ThousandEyes Integration on DNA Center
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public