
SD-WAN Practice LAB 1
The purpose of the SD-WAN Lab Practice LAB 1 is to help you develop proficiency in deploying, managing and monitoring the Cisco SD-WAN solution. The lab guide is divided into standalone LABs (29 labs).

TOPOLOGY
Link to download Workbook: Download Here
TABLE OF CONTENTS
HOW TO SETUP LAB
Hardware Requirement
Link to download lab and Setup
Lab 1: Configuring the WAN Components
Task 1 – HQ Router Configuration
Task 2 – MPLS Cloud Router Configuration
Task 3- Internet Cloud Router Configuration
Lab 2: Installing the Enterprise Certificate Server
Task 1- Configure the interface
Task 2- Installing the Enterprise Root Certificate Server
Task 2 Install WinSCP
Lab 3- Initializing vManage -CLI
Task 1- Configuring the System Component
Task 2- Configured the VPN parameters
Lab 4- Initializing vManage – GUI
Task 1- Organization name & vBond Address
Task 2 – Configure Controller Authorization as Enterprise Root and Download the Root Certificate.
Task 3- Generate a CSR for vManage
Task 4 – Request a Certificate from the CA Server
Task 5 – Issue the Certificate from the CA Server
Task 6- Downloading the Issueed Certificate
Task 7- Installing the Identity Certificate for vManage
Lab 5- Initializing vBond – CLI
Task 1- Configuring the System component
Task 2 – Configure the vpn parameters
Lab 6- Initializing vBond -GUI
Task 1 – Add vBond to vManage
Task 2 – View the generated CSR for vBond and copy it
Task 3- Request a certificate from the CA Server
Task 4 – Issue the Certificate from the CA Server
Task 5- Downloading the Issued Certificate
Task 6- Installing the Identity Certificate for vManage
Lab 7 – Initializing vSmart – CLI
Task 1 - Configuring the System Component
Task 2 – Configured the vpn parameters
Lab 8 – Initializing vSmart – GUI
Task 1- Add vSmart to vManage
Task 2 – View the generated CSR for vSmart and Copy it
Task 3 – Request a Certificate from the CA Server
Task 4 – Issue the Certificate from the CA Server
Task 5- Downloading the Issued Certificate
Task 6- Installing the Identity Certificate for vManage
Lab 9 – initializing vEdge – CLI
Task 1 – Upload the WAN Edge List
Task 1 – Configuring the System Component
Task 2 – Configure the vpn parameters
Task 1 – Configuring the System Component
Task 2 – Configure the vpn parameters
Task 1 – Configuring the System Component
Task 2 – Configure the vpn parameters
Task 1 – Configuring the System Component
Task 2 – Configure the vpn parameters
Lab 10 – Registering vEdges in vManage
Task 1- Upload the Root Certificate to the vEdge
Task 2- Install the Root Certificate on vEdge1
Task 3- Active vEdge on vManage
Task 1 – Upload the Root Certificate to the vEdge
Task 2- Install the Root Certificate on vEdge2
Task 3- Active vEdge on vManage
Task 1 – Upload the Root Certificate to the vEdge
Task 2- Install the Root Certificate on vEdge3
Task 3- Active vEdge on vManage
Task 1 – Upload the Root Certificate to the vEdge
Task 2- Install the Root Certificate on vEdge4
Task 3- Active vEdge on vManage
Lab 11 – Initializing cEdge – CLI
Task 1 – Configuring the System Component
Task 2 – Configure the Interface and Tunnel Parameters
Lab 12 – Registering cEdges in vManage
Task 1 – Upload the Root Certificate to the cEdge
Task 2 – Install the Root Certificate on cEdge1
Task 3 - Activate cEdge on vManage
Lab 13 – Configuring Feature Template –System
Task 1 – Configure the System Template to be used by all vEdgeCloud Devices
Task 2 – Configure the System Template to be used by all cEdgeCloud Devices
Task 3 – Configure the System Template to be used by all vSmart Device
Lab 14 – Configuring Feature Template –Banner
Task 1 – Configure the Banner Template to be used by all vEdgeCloud Devices
Task 2 – Configure the Banner Template to be used by all cEdgeCloud Devices
Lab 15 - Configuring Feature Templates -VPN & VPN Interfaces for VPN 0 & 512 ––Branch Site (vEdges)
Task 1 – Configure a VPN Template to be used by all Branch vEdgeCloud Devices for VPN 0
Task 2 – Configure a VPN Template to be used by all Branch vEdgeCloud Devices for VPN 512
Task 3 – Configure a VPN Interface Template to be used by all Branch vEdge-Cloud Devices for VPN 0 for Interface G0/0
Task 4 – Configure a VPN Interface Template to be used by all Branch vEdge-Cloud Devices for VPN 0 for Interface G0/1
Task 5 – Configure a VPN Interface Template to be used by all Branch vEdge-Cloud Devices for VPN 512 for Interface Eth0
Lab 16 - Configuring Feature Templates –External Routing - OSPF for VPN 0 –Branch Site (vEdges)
Task 1 – Configure a OSPF Template to be used by all Branch vEdgeCloud Devices for VPN 0
Lab 17 - Configuring and Deploying Device Templates for vEdge – Branch Site(vEdge2)
Task 1 – Configure a Device Template for Branch vEdge Devices.
Task 2 – Attach vEdge2 to the Device Template
Task 3 – Configure the Variable Parameters for the Feature Templates
Lab 18 - Configuring Internal Routing Protocols on the Internal Routing Devices – HQ & All Branches
Task 1 – Internal Site Router Configurations
Lab 19 - Configuring Feature Templates –Service VPN – VPN, VPN Interface and Internal Routing – Branch Site (vEdges)
Task 1 - Configure a VPN Template to be used by all Branch vEdgeCloud Devices for VPN 1
Task 2 – Configure a VPN Interface Template to be used by all Branch vEdge-Cloud devices for VPN 1 for Interface G0/2
Task 3 – Configure a OSPF Template to be used by all Branch vEdgeCloud Devices for VPN 1
Lab 20 - Implementing a Service VPN using Templates – Branch Site (vEdge2)
Task 1 – Edit the BR-VE-TEMP Device Template for Branch vEdge Devices.
Task 2 – Configure the Variable Parameters for the Feature Templates
Lab 21 - Pushing Template to configure other Branch Sites - – Branch Site(vEdge3 & vEdge4)
Task 1 – Attach the BR-VE-TEMP Device Template for Branch vEdge Devices
Lab 22 – Configuring Feature Templates for HQ-Site(vEdge1) – VPNs, VPN Interfaces, External & Internal Routing
Task 1 – Configure a VPN Template for HQ vEdge-Cloud Devices for VPN 0
Task 2 – Configure a VPN Interface Template to be used by HQ vEdge-Cloud Devices for VPN 0 for Interface G0/0
Task 3 – Configure a BGP Template to be used by HQ vEdge-Cloud Devices for VPN 0
Task 1 – Configure a VPN Template to be used by HQ vEdge-Cloud Devices for VPN 512
Task 2 – Configure a VPN Interface Template to be used by HQ vEdge-Cloud Devices for VPN 512 for Interface Eth0
Task 1 – Configure a VPN Template for HQ vEdge-Cloud Devices for VPN 1
Task 2 – Configure a VPN Interface Template to be used by HQ vEdge-Cloud Devices for VPN 1 for Interface G0/2
Task 3 – Configure a OSPF Template to be used by HQ vEdge-Cloud Devices for VPN 1
Lab 23 - Configuring Device Templates for HQ-Site(vEdge1) to deploy VPN 0, 1 and 512.
Task 1 – Configure a Device Template for HQ vEdge Devices.
Task 2 – Attach vEdge1 to the Device Template
Task 3 – Configure the Variable Parameters for the Feature Templates
Lab 24 – Configuring Feature Templates for CSR – VPNs, VPN Interfaces, External & Internal Routing
Task 1 – Configure a VPN Template by CSR for VPN 0
Task 2 – Configure a VPN Interface Template to be used by CSR for VPN 0 for Interface GigabitEthernet1
Task 3 – Configure a VPN Interface Template to be used by CSR for VPN 0 for Interface GigabitEthernet3
Task 4 – Configure a OSPF Template to be used by CSR for VPN 0
Task 1 – Configure a VPN Template to be used by CSR for VPN 512
Task 2 – Configure a VPN Interface Template to be used by CSR for VPN 512 for Interface GigabitEthernet4
Task 1 – Configure a VPN Template for CSR for VPN 1
Task 2 – Configure a VPN Interface Template to be used by CSR for VPN 1 for Interface G2
Task 3 – Configure a OSPF Template to be used by CSR for VPN 1
Lab 25 - Configuring Device Templates for CSR to deploy VPN 0, 1 and 512
Task 1 – Configure a Device Template for CSR Branch Devices.
Task 2 – Attach cEdge1 to the Device Template
Task 3 – Configure the Variable Parameters for the Feature Templates
Lab 26 - Configuring and Deploying Feature and Device Templates for vSmart Controllers
Task 1 – Configure a VPN Template to be used by vSmart Controllers for VPN 0
Task 2 – Configure a VPN Template to be used by vSmart Controllers for VPN 512
Task 3 – Configure a VPN Interface Template to be used by vSmart Controllers for VPN 0 for Interface Eth1
Task 4 – Configure a VPN Interface Template to be used vSmart Controllers for VPN 512 for Interface Eth0
Task 5 – Configure a Device Template for vSmart Controllers.
Task 6 – Attach vSmart to the Device Template
Task 7 – Configure the Variable Parameters for the Feature Templates
Lab 27 - Configuring Application Aware Policies using Telnet and Web
Task 1 – Configure Groups of Interests/List that will be used for Telnet & Web Application Aware Routing (AAR) Policy
Task 2 – Configure an AAR policy based on the Requirements
Task 3 – Create a Centralized Policy and call the Traffic Policy
Lab 28 - Manipulating Traffic flow using TLOCs
Task 1 – Configure Groups of Interests/List that will be used for Traffic Engineering Policy for DUBAI
Task 2 – Configure Control/Topology policy based on the Requirements
Task 3 – Modify the existing Centralized Policy “Main-CentralPolicy” and call the Topology Policy
Lab 29 - Configuring Route Filtering
Task 1 – Configure Groups of Interests/List that will be used for Route Filtering Policy for Newyork
Task 2 – Configure Control/Topology policy based on the Requirements
Task 3 – Modify the existing Centralized Policy “Main-CentralPolicy” and call the Topology Policy