#Ciscolive
#Ciscolive
#Ciscolive
Edge
Core
Scott Hodgdon
Technical Marketing Engineer Technical Leader Distribution
BRKENS-1501
Access
Slides by Shawn Wargo, Principal TME MDF 1
#CiscoLive
Who is Scott ?
Personal
• Based in Raleigh, NC (US)
• 21-year-old daughter in university
Career
• 21+ years as a Technical Marketing Engineer
• 13 Years focused on just Catalyst 6K Family
• 15 years as a Cisco Live Speaker
• 10 years as Cisco Live Session Group Manager for US and EMEA
• 2 Years as a Cisco Partner SE
• 2 Years Lead Network Engineer for 15-site Health Care network
in North Carolina
• No formal technology schooling … I have a Business Degree with
a Finance Concentration
Current Focus
• Cisco SD-Access Enablement and Design since 2016
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 3
Session
Agenda Abstract
• When to collapse network layers, or to add another layer (based on scale and throughput requirements)
• The basic forwarding and convergence characteristics of L2 and L3 (and Equal Cost Multi-Path [ECMP])
• vs. Cluster-based design with StackWise (Stacking) and StackWise Virtual (SVL)
• vs. Fabric-based design with Ethernet VPN (EVPN) or Software Defined-Access (SDA)
• Briefly review some Campus Wireless and Security characteristics (influences Campus Wired design)
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 4
What this session is NOT
Agenda
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 5
Cisco Webex App
Questions?
Use Cisco Webex App to chat
with the speaker after the session
How
1 Find this session in the Cisco Live Mobile App
2 Click “Join the Discussion”
3 Install the Webex App or go directly to the Webex space Enter your personal notes here
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 6
1. What is a Campus Network?
1
2. 1-2-3 or 4+ Tier Design
2
3. ECMP
3 vs. StackWise
Agenda
4. MPLS
4 vs. EVPN vs. SD-Access
5. Wireless and Security Notes
5
6
6. Summary and References
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 7
Campus Baseline
Campus Networks
DC ISP
What is “Campus”?
WAN
• Edge
• Chassis Types
Access
Campus Cabling
MDF 1
• PIN Features
1 2 3 4 5 6
BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 8
What is a “Campus”?
The basic Merriam-Webster definition of a Campus is:
A group of one or more buildings, and surrounding grounds,
where people and their belongings work together.
Common examples are Hospitals and Research Centers,
Schools and Universities and Corporations and Offices.
Using this - it’s clear a Campus Network is focused on:
• People (Users, Vendors, etc.)
• People's devices (PCs, Phones, Printers, etc.)
• Similar geographic area (LAN, WLAN or MAN, etc.)
• Access to other domains (WAN, ISP, DC and Cloud, etc.)
This includes many different network technology areas
(Wired, Wireless, Security, QoS, Management, etc.) with
a common focus on providing users and devices
“access”.
Campus is focused on User Access
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 9
www.cisco.com/c/en/us/solutions/cisco-on-cisco/enterprise-networks.html
Campus = Geography
Buildings are spread out. Multiple floors per building
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 10
Campus Networks
Building MDF/IDF and Wiring Closets
www.cisco.com/c/en/us/solutions/design-zone/networking-design-guides/campus-wired-wireless.html
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 11
Campus ≠ Data-Center
One or few large buildings nearby. Usually a single floor.
www.cisco.com/c/en/us/solutions/cisco-on-cisco/enterprise-networks.html
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 12
Campus Networks - Real Life
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 13
Campus PINs and Topology
BGP, MPLS
BGP, EVPN
BGP, IGP
Core
CoreInterconnect
Interconnect
Core
Core++Edge
Edge
Collapsed
CollapsedCore
Core Campus
CampusDistribution
Distribution
STP STP
Campus
CampusAccess
Access
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 14
Campus Multi-Layer Model
• Few MAN or WAN Uplinks
• Internal and External Autonomous Systems
CORE +
•
• Power Over Ethernet, Integrated Wireless, etc.
• L2 Security, QoS and Flexible NetFlow
• Virtualization: Stack, VLAN, STP / REP, SDA etc.
Catalyst 9400 Catalyst 9300 Catalyst 9200 • Many Small - Medium Speed LAN Switch Ports
Modular Fixed
PROs CONs PROs CONs
• More Flexible • More Complex • Less Complex • Less Flexible
• Longer Life-Cycle • BW limit by Chassis • Swap Chassis for BW • Shorter Life-Cycle
• Higher Port Density • Slow(er) Dev and Test • Faster Dev and Test • Lower Port Density
• More Power/Cooling • Lower MTBF • Higher MTBF • Less Power/Cooling
• Redundant Processors • Higher COGs • Lower COGs • Single Processor
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 16
Copper vs. Fiber Media www.cisco.com/c/en/us/products/interfaces-modules/transceiver-modules/
RJ45 (Access to Endpoints) SFP (Access and Distribution) QSFP (Core and Edge)
www.cisco.com/c/en/us/products/collateral/switches/catalyst-9000/nb-06-cat9000-panduit-cables-wp-cte-en.html
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 17
Campus Networks
L2/L3 Unicast Technologies
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 18
Campus Networks
L2/L3 Multicast Technologies
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 19
Cisco Catalyst 9000 Switching Portfolio June 2022
One Family from Access to Core – Common Hardware and Software
Catalyst
9600X
Catalyst
9500X
Catalyst
Catalyst 9400X Catalyst
9300X
9000 Catalyst
9600 Series
Catalyst Switching Catalyst
9500 Series
9200CX Catalyst
Compact Catalyst
9400 Series Platform
Catalyst 9300 Series
9200 Series
Cisco Open
ASIC IOS XE
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 20
Campus Baseline
1 2 3 4 5 6
BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 21
Campus Core (Baseline)
The Core PIN (Tier 3) focuses on connecting
DC ISP
multiple Distribution layers to an Interconnect WAN
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 22
Campus Core Interconnect
10/25/40G
The Interconnect PIN (Tier 4) is an extension of the 100/400G
Access L2
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 23
Campus Core + (SP/WAN) Edge
10/25/40G
The Core-Edge PIN (Tier 4) focuses on connecting 100/400G
multiple Campus areas to SP/WAN (remote domains) ISP WAN
and/or to the Internet.
MP-BGP + MP-BGP +
• Other names: Edge Device, Internet Edge DC 1 L2/L3VPN L2/L3VPN DC 2
• Common in Medium to Very-Large Campus
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 24
Campus Baseline
Distribution
• Campus Distribution
• Collapsed Core
1 2 3 4 5 6
BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 25
Campus Distribution
The Distribution PIN (Tier 2) focuses on connecting
multiple Access layers and the Core layer. DC WAN ISP
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 26
Campus Collapsed Core
The Collapsed Core (Tier 2) focuses on connecting
multiple Access layers and the WAN/Edge layer. DC WAN ISP
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 27
Campus Baseline
• Campus Access
• Routed Access
• Extended Access
(for IOT and FTTX)
1 2 3 4 5 6
BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 28
Campus Access
The Access PIN (Tier 1) focuses on connecting
DC ISP
Users and Devices, and an Extended Access WAN
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 29
Extended Access (IOT / FTTX)
The Extended Access PIN (Tier 1) is an
DC ISP
extension of the Access, to connect multiple WAN
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 30
Campus Baseline
Campus Architecture
DC WAN ISP
Edge
Core
1 2 3 4 5 6
BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 31
Campus Architectures
Control-Plane and Data-Plane Redundancy
1 2 3
ECMP (L2/L3 Paths) EtherChannel (L2/L3 LAG) StackWise (L2/L3 MEC)
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 32
Campus + EtherChannel
Using EtherChannel focuses on combining
DC ISP
multiple physical links into a single logical link WAN
south) PVST L2
or
• North: BGP or IGP, PIM MST
• South: STP or REP, IGMP/MLD Access
MDF 1
Tends to require special L2/L3 Features
• Portchannel ACLs (e.g. L2/L3 RACL)
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 34
StackWise Access
The StackWise Access PIN focuses on combining
multiple Access switches into a single virtual switch DC WAN ISP
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 35
Campus Baseline
Campus Solutions
DC WAN ISP
Edge
Core
• MPLS/VPLS (L2/L3VPN)
BGP-EVPN (L2/L3VNI)
Distribution
1 2 3 4 5 6
BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 36
Campus Solutions and Designs
Providing additional services (beyond basic PINs)
1 2 3
SDA (L2/L3VNI + SGT) EVPN (L2/L3VNI) MPLS (L2/L3VPN)
• L3 Underlay + L2/L3 VNI Overlay • L3 Underlay + L2/L3 VNI Overlay • L3 Underlay + L2/L3 VPN Overlay
• Scalable Group Tagging • Virtual Network Instances • Virtual Private Networks
• L2/L3 VNI + SGT Segments • L2/L3 VNI-based Segments • L3 VRF-based Segmentation
• LAN Services + Group-Based Policy • Common WAN/LAN Services • WAN/Edge + VPN Services
LISP, VXLAN, MP-BGP, VRF-Lite MP-BGP, VXLAN, VRF-Lite MP-BGP, PIC, LDP, MPLS/VPLS, SR
LISP HER, Native, L2 BUM L2 TRM, L3 TRM, L2 BUM MVPN, LSM, Extranet, MSR
SSO, NSF/NSR, ECMP, GIR SSO, NSF/NSR, ECMP, GIR SSO, NSF/NSR, ECMP, GIR
Fabric-FNF, App QoS, SGACL Fabric-FNF, Uniform QoS, IPACL/OGACL VPN-FNF, Uniform/Pipe QoS, PBR, IPACL
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 37
EVPN Border and Spine
The EVPN Border and Spine PIN focuses on
connecting an EVPN Fabric and/or other network
domains.
DC WAN ISP
• Typically, the same layer as Core or Edge (Tier 3-4)
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 38
EVPN Leaf
The EVPN Leaf PIN focuses on connecting Wired
endpoints to an EVPN Fabric domain.
• Typically, the same layer as Access or Extended (Tier 1) DC WAN ISP
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 39
SD-Access Border and CP
The SDA Border / CP PIN focuses on connecting an
SDA Fabric and/or other network domains.
• Typically, the same layer as Core or Core/Edge (Tier 3-4) DC WAN ISP
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 40
SD-Access Edge
The SDA Edge PIN focuses on connecting
Wired/Wireless endpoints to an SDA Fabric domain.
• Typically, the same layer as Access or Extended (Tier 1) DC WAN ISP
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 41
Campus Baseline
DC WAN ISP
Edge
Core
1 2 3 4 5 6
BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 42
Wireless LAN
The Central Wireless PIN focuses on connecting
Wireless APs centrally to one or multiple WLCs.
• WLC is typically connected to Core, Edge or DC (Tier 3+)
Central Wireless
• APs are typically connected to Access (Tier 1) C9800-40/80 VLAN C9500X/9600X SVI
WLC Clusters VLAN SVI
Main goal is to connect Wireless Endpoints (via APs) VLAN Core Switches SVI
to a Wireless LAN (WLAN), centrally in the network
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 43
Firewalls and ACLs
The Firewall (DMZ) PIN focuses on controlling access
into or out of different network areas.
• Typically connected to Core, Edge or DC (Tier 3+)
Firewalls (DMZ)
• Complex designs may use Distro or Access (Tier 1-2)
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 44
Campus Baseline
Conclusion
DC WAN ISP
Edge
Core
1 2 3 4 5 6
BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 45
Campus PINs and Topology
BGP, MPLS
BGP, EVPN
BGP, IGP
Core
CoreInterconnect
Interconnect
Core
Core++Edge
Edge
Collapsed
CollapsedCore
Core Campus
CampusDistribution
Distribution
STP STP
Campus
CampusAccess
Access
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 46
References – Multi-Layer Campus
Type Sub-Type References
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html
www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Campus/HA_campus_DG/hacampusdg.html
General Multi-Layer www.ccexpert.us/network-design-2/designing-a-campus-network-design-topology.html
networkdirection.net/articles/network-theory/hierarchicalnetworkmodel
www.geeksforgeeks.org/types-of-area-networks-lan-man-and-wan/
www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Security/IE_DG.html
Edge www.ccexpert.us/network-design/enterprise-edge-modules.html
what-when-how.com/ipv6-for-enterprise-networks/enterprise-edge-network-design-ipv6/
www.geeksforgeeks.org/difference-between-lan-and-man
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 47
References – ECMP and StackWise(Virtual)
Type Sub-Type References
www.cisco.com/c/en/us/solutions/hybrid-work/what-is-high-availability.html#~infrastructure-elements
General Redundancy www.ccexpert.us/network-design/designing-link-redundancy.html
www.geeksforgeeks.org/redundant-link-problems-in-computer-network/
www.cisco.com/c/en/us/support/docs/ip/border-gateway-protocol-bgp/5212-46.html
ECMP www.ccexpert.us/routing-protocols/equalcost-load-balancing.html
en.wikipedia.org/wiki/Equal-cost_multi-path_routing
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#EtherChannel
Core EtherChannel en.wikipedia.org/wiki/Link_aggregation#Network_backbone
en.wikipedia.org/wiki/Multi-chassis_link_aggregation_group
www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2020/pdf/BRKCRS-2650.pdf
SVL www.cisco.com/c/en/us/products/collateral/switches/catalyst-9000/nb-06-cat-9k-stack-wp-cte-en.html
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#StackWiseVirtualTechnology
www.cisco.com/c/en/us/support/docs/ip/border-gateway-protocol-bgp/5212-46.html
ECMP www.ccexpert.us/routing-protocols/equalcost-load-balancing.html
en.wikipedia.org/wiki/Equal-cost_multi-path_routing
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#EtherChannel
Distribution EtherChannel en.wikipedia.org/wiki/Link_aggregation
en.wikipedia.org/wiki/Multi-chassis_link_aggregation_group
www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2020/pdf/BRKCRS-2650.pdf
SVL www.cisco.com/c/en/us/products/collateral/switches/catalyst-9000/nb-06-cat-9k-stack-wp-cte-en.html
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#StackWiseVirtualTechnology
www.cisco.com/c/en/us/support/docs/lan-switching/spanning-tree-protocol/10555-15.html
ECMP en.wikipedia.org/wiki/Spanning_Tree_Protocol#Path_to_the_root_bridge
en.wikipedia.org/wiki/Flex_links
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#EtherChannel
Access EtherChannel en.wikipedia.org/wiki/EtherChannel
www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2020/pdf/BRKCRS-2650.pdf
www.cisco.com/c/en/us/products/collateral/switches/catalyst-9300-series-switches/white-paper-c11-741468.html
Stacking www.cisco.com/c/en/us/products/collateral/switches/catalyst-9200-series-switches/nb-06-stackwise-architecture-cte-en.html
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#SwitchStacksandCiscoStackWiseTechnology
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 48
References – SD-Access, EVPN and MPLS
Type Sub-Type References
www.cisco.com/c/en/us/solutions/intent-based-networking.html
General SDN/IBN www.networkworld.com/article/3281447/a-new-era-of-campus-network-design.html
www.geeksforgeeks.org/difference-between-software-defined-network-and-traditional-network/
www.ciscolive.com/c/dam/r/ciscolive/us/docs/2020/pdf/DGTL-BRKCRS-2810.pdf#page=27
SDA www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-sda-design-guide.html#BorderNode
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-sda-design-guide.html#ControlPlaneNode
www.ciscolive.com/c/dam/r/ciscolive/us/docs/2021/pdf/BRKENS-2003.pdf#page=12
Access EVPN
www.ciscolive.com/c/dam/r/ciscolive/us/docs/2021/pdf/BRKENS-2003.pdf#page=12
www.cisco.com/c/en/us/td/docs/switches/lan/catalyst9500/software/release/17-
7/configuration_guide/vxlan/b_177_bgp_evpn_vxlan_9500_cg/bgp_evpn_vxlan_overview.html#id_126799
www.ciscolive.com/c/dam/r/ciscolive/us/docs/2020/pdf/DGTL-BRKMPL-1100.pdf#page=48
MPLS www.geeksforgeeks.org/multi-protocol-label-switching-mpls/
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 49
Keep Learning! cisco.com/go/cvd
Cisco Validated Design (CVD) cs.co/en-cvds
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 50
Technical Session Surveys
• Attendees who fill out a minimum of four
session surveys and the overall event
survey will get Cisco Live branded socks!
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 51
Pay for Learning with
Cisco Learning Credits
Cisco Learning and Certifications (CLCs) are prepaid training
vouchers redeemed directly
From technology training and team development to Cisco certifications and learning with Cisco.
plans, let us help you empower your business and career. www.cisco.com/go/certs
Here at the event? Visit us at The Learning and Certifications lounge at the World of Solutions
#CiscoLive BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 52
• Visit the Cisco Showcase
for related demos
BRKENS-1501 © 2022 Cisco and/or its affiliates. All rights reserved. Cisco Public 53
Thank you
#CiscoLive
#CiscoLive