Cisco SDA Flashcards

1
Q

Cisco SDA

A

cisco software defined access

controller- cisco dnac

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

cisco dnac

A

cisco dna center. controller for cisco sda

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

overlay

A

dnac: mechanisms to create vxlan tunnels between sda switches

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

underlay

A

dnac: network of devices and connections (cable and wireless) to provide IP connectivity to all nodes in the fabric, with goal to support dynamic discovery of all SDA devices and endpoints as part of process to create vxlan tunnels

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

fabric

A

overlay+underlay

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

fabric edge node

A

connects to endpoints

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

fabric border node

A

switch that connects to devices outside sda’s control

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

fabric control node

A

performs special ctrl plane functions for underlay (LISP) requiring more CPU and memory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

routed access layer

  1. switches l2 or l3?
  2. routing protocol?
  3. links l2 or l3?
  4. stp/rstp?
  5. DG for endpoints?
  6. hsrp/fhrp?
A
all switches L3
all switches use IS-IS
all links L3
no
dg is sda edge node for endpoints
no
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

VXLAN tunneling performed in…

A

ASIC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

LISP map server

A

stores info about how to reach endpoints learned from fabric edge nodes

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

DNAC southbound APIs:

  1. support trad devices
  2. support new devices
A
  1. telnet, ssh, snmp

2. netconf, restconf

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q
SDA scalable group access- steps
1. 
2. 
3.
4.
A
  1. ingress node to DNAC
  2. DNAC works with security tools in network like Cisco ISE (identity services engine) to ID users and match to SGTs (scalable group tag)
  3. DNAC checks logic
  4. permit- creat vxlan tunnel. deny- no tunnel
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

VXLAN header

A
  1. IP 2. UDP 3. SGT-source 4. SGT-dest 5. VNID- source 6. VNID- dest 7. original ethernet frame –>
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

CPI features- trad network mgmt

  1. interface?
  2. build map?
  3. how many networks?
  4. interfaces?
  5. device management timeframe?
  6. view apps?
  7. wired and wireless mgmt?
  8. software mgmt?
  9. add devices?
A
  1. single-pane-of-glass
  2. discovery, inventory, topology map
  3. whole enterprise
  4. snmp, ssh, telnet, cdp, lldp
  5. lifecycle mgmt for all devices
  6. app visibility
  7. converged wired and wireless mgmt
  8. software image mgmt (swim)
  9. plug-and-play
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q
Cisco DNAC- unique features
1. 
2.
3.
4.
5.
A
  1. easy QoS
  2. encrypted traffic analysis- recognize security threats even with encrypted traffic
  3. device 360 and client 360- view of device health
  4. Network time travel- shows past client performance in a timeline for comparison to current behavior
  5. Path trace- discovers path packets would take from source to dest based on current forwarding tables