EMAIL SUPPORT

dclessons@dclessons.com

LOCATION

US

Deploy SDWAN Controllers

LAB : Deploy SDWAN Controllers

Task: 

  • Deploy vSmart Controller as per Topology
  • Configure vSmart Controller with Initial Setting 
  • Import Root Certificate 
  • Integrate vSmart with vManage

Topology: 

 

Solution: 

Step1: Configure Basic Configuration in vSmart. 

Access vSmart deployed and change the default Password. 

Configure the required system settings for the new vSmart, including the hostname, site-ID, system-IP, the vBond IP address, and the organization-name.

  • Hostname: vSmart2

  • System-ip: 10.255.255.5

  • Site-id: 1003

  • Organization-name: "XXXXXXXX"

  • vbond: 192.168.66.3

Configure VPN 512 interface eth0 for management access and define 0.0.0.0/0 10.0.0.1 as a static default route

Configure the VPN 0 interface eth1 interface for initial overlay bring-up and define 0.0.0.0/0 192.168.66.1 as a static default route.

Verify connectivity to the default gateway, vManage, vBond, and vSmart1 by using the ping command.

Step2:  Add vSmart2 to vManage and Sign CSR

Login to vManage , Use the main menu and navigate to Configuration > Devices. On the Devices page, choose the Controllers tab. Add the second vSmart controller to vManage.

Enter the following parameters:

  • vSmart2 VPN 0 IP address: 192.168.66.5

  • Username: admin

  • Password: XXXXXX

Uncheck the Generate CSR check box and click Add

Click Add Controller and choose vSmart from the drop-down menu. Enter the parameters as shown here, make sure you uncheck the Generate CSR check box, and click the Add button.

The vSmart is added to the list of controllers, however, it is still not onboarded into the SD-WAN fabric and has no certificate.

After successfully adding the new vSmart controller, navigate to Configuration > Certificates and open the Controllers tab. Click the More Options icon (…) for the new vSmart, and choose Generate CSR.

Downloaded the generated CSR to the Jump Host. Name the file vSmart2.csr and save. 

Copy the vSmart2.csr file from the Jump Host to the CA server, into the /root/ca/ directory of your CA Server. 

Open the Putty application on the Jump Host and connect to the CA server.


Comment

    You are will be the first.

LEAVE A COMMENT

Please login here to comment.