BRKENS-1501 - 123 Enterprise Campus Wired Design Fundamentals
BRKENS-1501 - 123 Enterprise Campus Wired Design Fundamentals
Core
@Shawn_Wargo
Access
MDF 1
BRKENS-1501
Who am I?
Shawn Wargo
Principal TME
[email protected] @shawn_wargo
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 2
Session
Agenda Abstract
The goal is to return to the basic principles (vs. deep-dive)
of Enterprise Campus "Wired" Design (what & why?)
This session is focused primarily on Cisco Catalyst products:
• The basic characteristics of 1/2/3 & 4-tier Campus network layers (Access, Distro, Core & Edge)
• When to collapse network layers, or to add another layer (based on scale & throughput requirements)
• The basic forwarding & convergence characteristics of L2 & L3 (and Equal Cost Multi-Path [ECMP])
• vs. Cluster-based design with StackWise (Stacking) and StackWise Virtual (SVL)
• vs. Fabric-based design with Ethernet VPN (EVPN) or Software Defined-Access (SDA)
• Briefly review some Campus Wireless & Security characteristics (influences Campus Wired design)
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 3
What
Agendathis session is NOT
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 4
1. What is a Campus Network?
1
2. 1-2-3 or 4+ Tier Design
2
3. ECMP
3 vs. StackWise
Agenda
4. MPLS
4 vs. EVPN vs. SD-Access
5. Wireless & Security Notes
5
6
6. Summary & References
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 5
Campus Baseline
Campus Networks
DC ISP
What is “Campus”?
WAN
• Edge
• Chassis Types
Access
Campus Cabling
MDF 1
• PIN Features
1 2 3 4 5 6
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 6
What is a “Campus”?
The basic Merriam-Webster definition of a Campus is:
A group of one or more buildings, and surrounding grounds,
where people and their belongings work together.
Common examples are Hospitals & Research Centers,
Schools & Universities and Corporations & Offices.
Using this - it’s clear a Campus Network is focused on:
• People (Users, Vendors, etc.)
• People's devices (PCs, Phones, Printers, etc.)
• Similar geographic area (LAN, WLAN or MAN, etc.)
• Access to other domains (WAN, ISP, DC & Cloud, etc.)
This includes many different network technology areas
(Wired, Wireless, Security, QoS, Management, etc.) with
a common focus on providing users & devices “access”.
www.cisco.com/c/en/us/solutions/cisco-on-cisco/enterprise-networks.html
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 8
Campus Networks
Building MDF/IDF & Wiring Closets
www.cisco.com/c/en/us/solutions/design-zone/networking-design-guides/campus-wired-wireless.html
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 9
Campus ≠ Data-Center
One or few large buildings nearby. Usually a single floor.
www.cisco.com/c/en/us/solutions/cisco-on-cisco/enterprise-networks.html
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 10
Campus Networks - Real Life
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 11
Campus PINs & Topology
BGP, MPLS
BGP, EVPN
BGP, IGP
Core
CoreInterconnect
Interconnect
Core
Core++Edge
Edge
Collapsed
CollapsedCore
Core Campus
CampusDistribution
Distribution
STP STP
Campus
CampusAccess
Access
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 12
Campus Multi-Layer Model
• Few MAN (Hi-Speed) or WAN (Lo-Speed) Uplinks
• Internal & External Autonomous Systems
CORE +
Modular Fixed
PROs CONs PROs CONs
• More Flexible • More Complex • Less Complex • Less Flexible
• Longer Life-Cycle • BW limit by Chassis • Swap Chassis for BW • Shorter Life-Cycle
• Higher Port Density • Slow(er) Dev & Test • Faster Dev & Test • Lower Port Density
• More Power/Cooling • Lower MTBF • Higher MTBF • Less Power/Cooling
• Redundant Processors • Higher COGs • Lower COGs • Single Processor
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 14
Copper vs. Fiber Media www.cisco.com/c/en/us/products/interfaces-modules/transceiver-modules/
RJ45 (Access to Endpoints) SFP (Access & Distribution) QSFP (Core & Edge)
www.cisco.com/c/en/us/products/collateral/switches/catalyst-9000/nb-06-cat9000-panduit-cables-wp-cte-en.html
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 15
Campus Networks
L2/L3 Unicast Technologies
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 16
Campus Networks
L2/L3 Multicast Technologies
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 17
Cisco Catalyst 9000 Switching Portfolio 2022 - 2023
One Family from Access to Core – Common Hardware & Software
Catalyst
9600X
Catalyst
9500X
Catalyst
Catalyst 9400X Catalyst
9300X
9000 Catalyst
9600 Series
Catalyst
Switching Catalyst
9500 Series
Catalyst
9200CX Compact
Catalyst
9400 Series Platform
Catalyst 9300 Series
9200 Series
Cisco Open
ASIC IOS XE
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 18
Campus Baseline
1 2 3 4 5 6
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 19
Campus Core (Baseline)
The Core PIN (Tier 3) focuses on connecting
multiple Distribution layers to an Interconnect DC WAN ISP
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 20
Campus Core Interconnect
10/25/40G
The Interconnect PIN (Tier 4) is an extension of the 100/400G
Core, used to connect multiple Core layers (areas) ISP WAN
and/or other network domains.
• Other names: Backbone, Super Core, MAN, DCI DC 1 BGP BGP DC 2
• Common in Large & Very-Large Campus
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 21
Campus Core + (SP/WAN) Edge
The Core-Edge PIN (Tier 4) focuses on connecting
multiple Campus areas to SP/WAN (remote domains)
ISP WAN
and/or to the Internet.
• Other names: Edge Device, Internet Edge MP-BGP + MP-BGP +
DC 1 L2/L3VPN L2/L3VPN DC 2
• Common in Medium to Very-Large Campus
Distro L3
• Hierarchical QoS (e.g. Class-based Queuing, Shaping)
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 22
Campus Baseline
Distribution
1 2 3 4 5 6
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 23
Campus Distribution (Baseline)
The Distribution PIN (Tier 2) focuses on connecting
multiple Access layers and the Core layer. DC WAN ISP
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 24
Campus Collapsed Core
The Collapsed Core (Tier 2) focuses on connecting
multiple Access layers and the WAN/Edge layer. DC WAN ISP
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 25
Campus Distro + Ext. Access
The Distribution + Ext. Access PIN (Tier 2+) focuses
on connecting multiple Access layers, including an DC WAN ISP
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 26
Campus Baseline
Access
1 2 3 4 5 6
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 27
Campus Access (Baseline)
The Access PIN (Tier 1) focuses on connecting
ISP
Users & Devices, and an Extended Access DC WAN
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 28
Extended Access (IOT / FTTX)
The Extended Access PIN (Tier 1) is an
extension of the Access, to connect multiple DC WAN ISP
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 29
Campus Baseline
Campus Architecture
DC WAN ISP
Edge
Core
1 2 3 4 5 6
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 30
Campus Architectures
Control-Plane & Data-Plane Redundancy
1 2 3
ECMP (L2/L3 Paths) EtherChannel (L2/L3 LAG) StackWise (L2/L3 MEC)
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 31
Campus + EtherChannel
Using EtherChannel focuses on combining
multiple physical links into a single logical link DC WAN ISP
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 32
StackWise Virtual Core/Distro
The StackWise Virtual (SVL) Core PIN focuses on
combining Core and/or Distribution into a single virtual DC WAN ISP
switch to connect to outside areas.
• Typically, the same layer as Distribution or Core (Tier 2-3)
BGP
• The same ‘physical’ topology as a multi-layer network
Core
Main goal is to simplify Distribution or Core layer
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 33
StackWise Access
The StackWise Access PIN focuses on combining
multiple Access switches into a single virtual switch DC WAN ISP
to increase access-layer port density.
• Typically, the same layer as Access (Tier 1)
BGP
• The same ‘physical’ topology as a multi-layer network
Core
Main goal is to expand port density of Access layer
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 34
Campus Baseline
Campus Solutions
DC WAN ISP
Edge
Core
• MPLS/VPLS (L2/L3VPN)
BGP-EVPN (L2/L3VNI)
Distribution
1 2 3 4 5 6
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 35
Campus Solutions & Designs
Providing additional services (beyond basic PINs)
1 2 3
MPLS (L2/L3VPN) EVPN (L2/L3VNI) SDA (L2/L3VNI + SGT)
• L3 Underlay + L2/L3 VPN Overlay • L3 Underlay + L2/L3 VNI Overlay • L3 Underlay + L2/L3 VNI Overlay
• Virtual Private Networks • Virtual Network Instances • VNIs + Scalable Group Tagging
• L3 VRF-based Segmentation • L2/L3 VNI-based Segments • L2/L3 VNI + SGT Segments
• WAN/Edge + VPN Services • Common WAN/LAN Services • LAN Services + Group-Based Policy
MPLS/VPLS, LDP, SR, MP-BGP, PIC MP-BGP/EVPN, VXLAN, VRF-Lite LISP, VXLAN, MP-BGP, VRF-Lite
MVPN, LSM, Extranet, MSR L2 TRM, L3 TRM, L2 BUM LISP HER, Native, L2 BUM
SSO, NSF/NSR, ECMP, GIR SSO, NSF/NSR, ECMP, GIR SSO, NSF/NSR, ECMP, GIR
VPN-FNF, Uniform/Pipe QoS, PBR, IPACL Fabric-FNF, Uniform QoS, IPACL/OGACL Fabric-FNF, App QoS, SGACL
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 36
EVPN Border & Spine
The EVPN Border & Spine PIN focuses on connecting
an EVPN Fabric and/or other network domains.
• Typically, the same layer as Core or Edge (Tier 3-4) DC ISP
WAN
Main goal is to connect EVPN to other networks
BGP
Uses a L3 Underlay + L3 Hand-off
B|S B|S
• North (outside): L3 MP-BGP + Inter-AS, PIM + MSDP Core
• South (inside): L3 IGP, PIM + MSDP
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 37
EVPN Leaf
The EVPN Leaf PIN focuses on connecting Wired
endpoints to an EVPN Fabric domain.
• Typically, the same layer as Access or Extended (Tier 1)
DC WAN ISP
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 38
SD-Access Border & CP
The SDA Border / CP PIN focuses on connecting an
SDA Fabric and/or other network domains.
• Typically, the same layer as Core or Core/Edge (Tier 3-4) DC ISP
WAN
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 39
SD-Access Edge
The SDA Edge PIN focuses on connecting
Wired/Wireless endpoints to an SDA Fabric domain.
• Typically, the same layer as Access or Extended (Tier 1) DC ISP
WAN
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 40
Campus Baseline
DC WAN ISP
Edge
Core
1 2 3 4 5 6
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 41
Wireless LAN
The Central Wireless PIN focuses on connecting
Wireless APs centrally to one or multiple WLCs.
• WLC is typically connected to Core, Edge or DC (Tier 3+)
Central Wireless
• APs are typically connected to Access (Tier 1)
C9800-40/80 VLAN C9500X/9600X SVI
WLC Clusters VLAN SVI
Main goal is to connect Wireless Endpoints (via APs) VLAN Core Switches SVI
to a Wireless LAN (WLAN), centrally in the network
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 42
Firewalls & ACLs
The Firewall (DMZ) PIN focuses on controlling access
into or out of different network areas.
• Typically connected to Core, Edge or DC (Tier 3+)
Firewalls (DMZ)
• Complex designs may use Distro or Access (Tier 1-2)
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 43
Campus Baseline
Conclusion
DC WAN ISP
Edge
Core
1 2 3 4 5 6
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 44
Campus PINs & Topology
BGP, MPLS
BGP, EVPN
BGP, IGP
Core
CoreInterconnect
Interconnect
Core
Core++Edge
Edge
Collapsed
CollapsedCore
Core Campus
CampusDistribution
Distribution
STP STP
Campus
CampusAccess
Access
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 45
Keep Learning! cisco.com/go/cvd
Cisco Validated Design (CVD) cs.co/en-cvds
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 46
Cisco Webex App
Questions?
Use Cisco Webex App to chat
with the speaker after the session
How
1 Find this session in the Cisco Live Mobile App
2 Click “Join the Discussion”
3 Install the Webex App or go directly to the Webex space Enter your personal notes here
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 47
Complete your Session Survey
• Please complete your session survey
after each session. Your feedback
is important.
• Complete a minimum of 4 session
surveys and the Overall Conference
survey (open from Thursday) to
receive your Cisco Live t-shirt.
• All surveys can be taken in the Cisco Events Mobile App or
by logging in to the Session Catalog and clicking the
"Attendee Dashboard” at
https://www.ciscolive.com/emea/learn/sessions/session-catalog.html
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 48
Continue
Agenda Your Education
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 49
References
References – Multi-Layer Campus
Type Sub-Type References
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html
www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Campus/HA_campus_DG/hacampusdg.html
General Multi-Layer www.ccexpert.us/network-design-2/designing-a-campus-network-design-topology.html
networkdirection.net/articles/network-theory/hierarchicalnetworkmodel
www.geeksforgeeks.org/types-of-area-networks-lan-man-and-wan/
www.cisco.com/c/en/us/td/docs/solutions/Enterprise/Security/IE_DG.html
Edge www.ccexpert.us/network-design/enterprise-edge-modules.html
what-when-how.com/ipv6-for-enterprise-networks/enterprise-edge-network-design-ipv6/
www.geeksforgeeks.org/difference-between-lan-and-man
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 51
References – ECMP & StackWise(Virtual)
Type Sub-Type References
www.cisco.com/c/en/us/solutions/hybrid-work/what-is-high-availability.html#~infrastructure-elements
General Redundancy www.ccexpert.us/network-design/designing-link-redundancy.html
www.geeksforgeeks.org/redundant-link-problems-in-computer-network/
www.cisco.com/c/en/us/support/docs/ip/border-gateway-protocol-bgp/5212-46.html
ECMP www.ccexpert.us/routing-protocols/equalcost-load-balancing.html
en.wikipedia.org/wiki/Equal-cost_multi-path_routing
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#EtherChannel
Core EtherChannel en.wikipedia.org/wiki/Link_aggregation#Network_backbone
en.wikipedia.org/wiki/Multi-chassis_link_aggregation_group
www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2020/pdf/BRKCRS-2650.pdf
SVL www.cisco.com/c/en/us/products/collateral/switches/catalyst-9000/nb-06-cat-9k-stack-wp-cte-en.html
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#StackWiseVirtualTechnology
www.cisco.com/c/en/us/support/docs/ip/border-gateway-protocol-bgp/5212-46.html
ECMP www.ccexpert.us/routing-protocols/equalcost-load-balancing.html
en.wikipedia.org/wiki/Equal-cost_multi-path_routing
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#EtherChannel
Distribution EtherChannel en.wikipedia.org/wiki/Link_aggregation
en.wikipedia.org/wiki/Multi-chassis_link_aggregation_group
www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2020/pdf/BRKCRS-2650.pdf
SVL www.cisco.com/c/en/us/products/collateral/switches/catalyst-9000/nb-06-cat-9k-stack-wp-cte-en.html
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#StackWiseVirtualTechnology
www.cisco.com/c/en/us/support/docs/lan-switching/spanning-tree-protocol/10555-15.html
ECMP en.wikipedia.org/wiki/Spanning_Tree_Protocol#Path_to_the_root_bridge
en.wikipedia.org/wiki/Flex_links
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#EtherChannel
Access EtherChannel en.wikipedia.org/wiki/EtherChannel
www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2020/pdf/BRKCRS-2650.pdf
www.cisco.com/c/en/us/products/collateral/switches/catalyst-9300-series-switches/white-paper-c11-741468.html
Stacking www.cisco.com/c/en/us/products/collateral/switches/catalyst-9200-series-switches/nb-06-stackwise-architecture-cte-en.html
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-campus-lan-wlan-design-guide.html#SwitchStacksandCiscoStackWiseTechnology
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 52
References – SD-Access, EVPN & MPLS
Type Sub-Type References
www.cisco.com/c/en/us/solutions/intent-based-networking.html
General SDN/IBN www.networkworld.com/article/3281447/a-new-era-of-campus-network-design.html
www.geeksforgeeks.org/difference-between-software-defined-network-and-traditional-network/
www.ciscolive.com/c/dam/r/ciscolive/us/docs/2020/pdf/DGTL-BRKCRS-2810.pdf#page=27
SDA www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-sda-design-guide.html#BorderNode
www.cisco.com/c/en/us/td/docs/solutions/CVD/Campus/cisco-sda-design-guide.html#ControlPlaneNode
www.ciscolive.com/c/dam/r/ciscolive/us/docs/2021/pdf/BRKENS-2003.pdf#page=12
Access EVPN
www.ciscolive.com/c/dam/r/ciscolive/us/docs/2021/pdf/BRKENS-2003.pdf#page=12
www.cisco.com/c/en/us/td/docs/switches/lan/catalyst9500/software/release/17-
7/configuration_guide/vxlan/b_177_bgp_evpn_vxlan_9500_cg/bgp_evpn_vxlan_overview.html#id_126799
www.ciscolive.com/c/dam/r/ciscolive/us/docs/2020/pdf/DGTL-BRKMPL-1100.pdf#page=48
MPLS www.geeksforgeeks.org/multi-protocol-label-switching-mpls/
BRKENS-1501 © 2023 Cisco and/or its affiliates. All rights reserved. Cisco Public 53
Thank you