Cisco SD-WAN
Cisco SD-WAN

A Practical Guide to Understand the Basics of Cisco Viptela Based SD-WAN solution

About the Book

I wrote this book primarily for those of you who want to learn the basics of a Cisco SD-WAN solution. The first two chapters explain how to set up your local test environment. You will learn how to install certificates to vBond, vManage, vSmart, and vEdge and how to set up underlay and Out-of-Band management network connections. Chapter three introduces a centralized control plane with the Overlay Management Protocol (OMP) running between vEdges and vSmart. After reading this chapter, you should be familiar with how overlay tunnels between vEdges are built by using TLOC routes. Besides, you learn how Sevice VPN routing information is advertised by using OMP routes. This chapter also introduces the data-plane operation explaining how Service VPNs are segmented in the WAN data plane by using labels. The fourth chapter explains the end-to-end control-plane operation and data-plane encapsulation over the SR-MPLS transport network. Besides, you will learn some of the basic concepts of the IS-IS Segment-Routing extension. The fifth chapter introduces how you can implement Hub and Spoke overlay topology by filtering TLOC routes using Centralized Policy. You will learn how Lists are used within a Control Policy and how the Control Policy, in turn, is attached to Centralized Policy. The sixth chapter introduces Feature Templates in which you set protocol and feature specific values. Then it shows how Feature Templates are attached to Device Template which in turn is attached to devices. This chapter also introduces CLI Templates with device-specific variables. Chapter seven explains how you can use TLOC Extension for transport network connection in dual-homed sites. Chapter eight discusses LAN side BGP routing. It shows how to implement BGP using Feature Templates as well as CLI configuration. It also explains how you can build a Centralized Policy to filter out unnecessary OMP routes. Chapter nine explains how to do preference-based traffic engineering, again with Centralized Policy. Chapter 10 introduces Application-Aware Routing. It starts by explaining how BFD probes are used for tunnel Health Monitoring and how the AAR uses the RTT of BFD probes to monitor the Path Quality. The last chapter explains how to build a Direct Cloud Access (DCA), where the remote-sites user can access applications hosted in Cloud provider networks using the local Internet connection while all other traffic is sent over SD-WAN overlay tunnels. You will also learn how to filter DCA traffic with a centrally managed Zone-Based Firewall.


Network topologies used in this book are built with the minimum amount of devices in order to keep examples as simple as possible.

The Table of Content is available at:

The first four chapters are available at:

About the Author

Toni Pasanen
Toni Pasanen

Toni Pasanen. CCIE No. 28158 (RS), Distinguished Engineer at Fujitsu Finland. Toni started his IT carrier in 1998 at Tieto, where he worked as a Service Desk Specialist moving via the LAN team to the Data Center team as a 3rd. Level Network Specialist. Toni joined Teleware (Cisco Learning partner) in 2004, where he spent two years teaching network technologies focusing on routing/switching and MPLS technologies. Toni joined Tieto again in 2006, where he spent the next six years as a Network Architect before joining Fujitsu. Toni works closely with customers in his current role, helping them select the right network solutions from technology and business perspectives. He is also the author of books:

- Virtual Extensible LAN – VXLAN: The Practical Guide to Understand VXLAN Solution - 2019

- LISP with VXLAN in Campus Fabric - 2020

- VXLAN Fabric with BGP EVPN Control-Plane. Design Considerations – 2020

- Object-Based Approach to Cisco ACI: The Logic Behind the Application Centric Infrastructure - 2020

- Cisco SD-WAN: A Practical Guide to Understand the Basics of Cisco Viptela Based SD-WAN Solution- 2021

- Network Virtualization: LISP, OMP, and BGP EVPN Operation and Interaction

- AWS Networking Fundamentals: A Practical Guide to Understand How to Build a Virtual Datacenter into the AWS Cloud

- Azure Networking Fundamentals: A Practical Guide to Understand How to Build a Virtual Datacenter into the Azure Cloud

