CITRIX SDWAN Foundation
CITRIX SDWAN Foundation
Foundation
CHIDI KINGSLEY U.
SNR. TECHNOLOGY CONSULTANT
CITRIX CERTIFIED EXPERT – CCE-V
Biography CISCO CERTIFIED NETWORK/SECURITY PROFESSIONAL
Module1 -SD-WAN Intro and Concept
The WAN Infrastructure
What is SDWAN?
SDWAN Design Concept
Module 2 - SD-WAN Installation
SDWAN Lab Environment
SDWAN Installation Preliminaries
SDWAN Installation I
SDWAN installation II
Module 3 - SD-WAN Configuration
SD-WAN Configuration I
SD-WAN Configuration II and Change Management
SD-WAN Underlay Configuration I
192.168.10.11 -MGMT
INET-WANEM .2 DC-Phone
192.168.20.0/24
DC NETWORK
172.16.10.0/24
BRANCH LAN
172.17.15.0/24 CME - 172.16.10.10
192.168.100.10 –MPLS
192.168.50.0/24
.1 .1
192.168.100.11 –INET
192.168.100.0/24
172.17.15.11 - INET EIGRP 100
SD-WAN Branch
MPLS
Internet
SD-WAN LTE/Satellite SD-WAN
Data Center
Branch
Cloud
SD-WAN
Courtesy: Citrix.com
… with the understanding of line conditions
With every packet in each path and in both directions,
measure the latency, loss, jitter and congestion
Courtesy: Citrix.com
END
SD-WAN CONCEPT AND DESIGNS
CITRIX SDWAN DESIGNS NS-SDWAN
❖ CITRIX SD-WAN MCN(Master Control Node): The MCN is the central node
(intelligence) for all remote SD-WAN appliances. Every new configuration and
update work are completed on the MCN using the Configuration Editor tool. This
provides centralized configuration changes and software upgrades to be pushed
out to all the remote SD-WAN devices that will participate in the Virtualized WAN
environment.
❖ CITRIX SD-WAN CLIENT (Remote Client Node): The remote appliance is sd-wan box
deployed in different regional branch offices
❖ CITRIX SD-WAN PROVISIONING AND CHANGE MANAGEMENT: - This the feature that
manages both configuration change and software update within SD-WAN
deployment. It ensures that configuration changes and software update are applied
in a fail-safe manner.
CITRIX SDWAN CHANGE PROCESS
• Change Preparation
• Appliance Staging
• Activation
CITRIX NETSCALER SDWAN CONCEPT
NS-SDWAN
❖ SD-WAN technology logically binds multiple MPLS and broadband paths into a single
logical path.
❖ SD-WAN ensures all bandwidth on all paths are fully utilized – NO wasted bandwidth
❖ SD-WAN measures and monitor network paths in both direction
❖ SD-WAN uses the knowledge gathered from network path monitoring to makes
intelligent decision
NETSCALER SDWAN CONCEPT Contd…..
❖ The sending (source) SD-WAN appliance adds tags to each packet (Time and
Order).
❖ The receiving (destination) SD-WAN appliance reads the tag on each packet
and uses the information to measure – transit time, congestion, jitter, packet loss
and other information about the health of the path.
❖ This information is shared with the Controller which creates a map of all the path
in the WAN.
❖ This information is consistently been updated with recent packet.
NETSCALER SDWAN CONCEPT Contd…..
❖ SD-WAN is application aware with ability to discover more 4000 application signature.
❖ Applications are assigned three high level categories
- real-time
- interactive
- bulk
❖ Typically, low latency application are assigned to real time (e.g Skype for business, video,
voip, VDI).
❖ Enterprise applications can be assigned real-time or interactive depending on business
policy
NETSCALER SDWAN CONCEPT Contd…..
❖ Citrix SD-WAN provides granularity with application classification. Custom rules can be
used using parameters like source and destination IP address, protocol, DSCP tag,
Dscp tag
NETSCALER SDWAN INSTALLATION
https://www.citrix.com/lp/try/netscaler-sd-wan-standard.html#/email
NETSCALER SDWAN INSTALLATION Contd….
❖ Our client insisted that they do not want to make major change on their network due
to an unproven technology and advised that our deployment must not be intrusive. As
the SD-WAN consultant, choose a design mode with this in mind and implement?
❖ Deploy Datacenter NetScaler SD-WAN VPX in PBR mode
❖ Deploy Branch SD-WAN in Physical Inline mode – Note VPX does not support Fail to
Wire.
NAME MGMT IP DATA IP
An SDN overlay is a deployment method for network virtualization and software-defined networking
(SDN) that involves running a logically separate network or network component on top of existing
infrastructure.
CITRIX SDWAN LAB DIAGRAM – (HQ –PBR /BR – INLINE)
EIGRP 200
192.168.10.11 -MGMT
INET-WANEM .2 DC-Phone
192.168.20.0/24
DC NETWORK
172.16.10.0/24
BRANCH LAN
172.17.15.0/24 CME - 172.16.10.10
192.168.100.10 –MPLS
192.168.50.0/24
.1 .1
192.168.100.11 –INET
192.168.100.0/24
172.17.15.11 - INET EIGRP 100
❖ DC SD-WAN (MCN) must first be configured been the central for all remote SD-Wan
appliances.
LAB TASK
❖ Configure basic administrative settings
❖ WAN EMULATOR
https://www.citrix.com/blogs/2015/07/06/ingmarverheij-setting-up-a-persistent-wan-
emulator/
❖ GNS3 www.gns3.com
https://support.citrix.com/article/CTX226234
TROUBLESHOOTING SD-WAN DEAD PATH
❖ Proceed to Layer 2
- Check ARP statistics on SD-WAN – Must be Ready_Active and Not Reply_PENDING
❖ Proceed to Layer 3
- Use the in built tools like ping, traceroute and packet capture
TROUBLESHOOTING SD-WAN DEAD PATH
❖ SD-WAN CENTER INSTALLATION:- Download and Import the Citrix SD-WAN Center
VMWare .ova file or Citrix XenServer .XVA file etc.
❖ DHCP Server Required: SD-WAN requires an active DHCP server to obtain initial ip
address. You can use SD-WAN built in DHCP server to issue IP address.
SD-WAN CENTER CONFIGURATION
❖ SD-WAN CENTER INSTALLATION:- Download the SD-WAN Center certificate and import
same to your MCN. This is required for secure communication and management.
CITRIX SDWAN DEMONSTRATION
Demo One
Citrix SDWAN Link bandwidth Aggregation: In this demonstration we will showcase how to transform
backup connections for additional bandwidth without added cost
Demo Two
Citrix SDWAN reaction in link brownouts : In this demonstration, we will show how Citrix SDWAN handles link
brownouts while maintaining excellent user experience.
Demo Three
Citrix SDWAN sub-second failover: NetScaler SD-WAN appliances continuously monitor every MPLS and
broadband connection, and can quickly detect path outages or degradations, providing seamless sub-
second failover of traffic to the next-best WAN path.
Demo Five
Citrix Packet Duplication: In this demonstration we will showcase how voice packets gets duplicated
across multiple ISP links
Citrix SD-WAN Use Cases
1. Enable always-on branch connectivity 24/7
INTERNET DC-Phone
DC NETWORK
172.16.10.0/24
BRANCH LAN
172.17.15.0/24 CME - 172.16.10.10
192.168.100.10 –MPLS
.1
192.168.100.11 –INET
192.168.100.0/24
10.10.11.11 - INET EIGRP 100