CCNP ENCOR Certification Cram Notes : Architecture
1.5 Explain the working principles of the Cisco SD-Access solution
1.5.a SD-Access Control and Data Planes Elements
Cisco SD-Access (Software-Defined Access) is a solution that provides end-to-end segmentation and policy-based automation for enterprise networks. It uses a centralized policy engine and distributed intelligence to enforce policies and automate network operations. The SD-Access solution consists of the following control and data plane elements:
Fabric Border Node (FBN): This is the element that connects the SD-Access fabric to external networks. It provides connectivity to other network domains and is responsible for enforcing security policies between the fabric and external networks.
Control Plane Nodes (CPN): These are the policy and management nodes that define and enforce policies across the SD-Access fabric. They provide a centralized point of policy management and enforcement.
Fabric Edge Nodes (FEN): These are the edge devices that connect end devices to the SD-Access fabric. They enforce access policies and provide secure connectivity to the fabric.
Fabric Wireless Edge (FWE): This is the element that provides wireless connectivity to the SD-Access fabric. It connects wireless clients to the fabric and enforces policies.
Fabric Nodes (FN): These are the intermediate nodes that provide connectivity and segmentation within the SD-Access fabric. They perform policy-based forwarding and provide network services.
1.5.b Traditional Campus Interoperating with SD-Access:
Cisco SD-Access can be deployed in a traditional campus environment, where it can provide enhanced security and automation capabilities. In this scenario, the SD-Access fabric can coexist with the existing network infrastructure, allowing the organization to migrate to SD-Access gradually. The SD-Access solution provides a centralized policy engine that can enforce policies across the entire network, including both the traditional campus and the SD-Access fabric.