Cisco DNA-C Getting Started Implementation Readiness
Cisco DNA-C Getting Started Implementation Readiness
Implementation Readiness
Mahmoud Fayek
Customer Success Specialist (CSS)
What you’ll learn today to help you
on your Cisco DNA journey
Get information
software upgrades +
Discovery
Learn how to use
Install Wizard
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Center: Compatibility Matrix
Device Type Device Family Recommended Min. Supported
Software Version Software Version
Switch CAT2K IOS 15.2(2)E8 IOS 15.2(2)E3
Switch CAT3K IOS-XE 16.6.1 IOS-XE 3.6.5E
Switch CAT4K IOS-XE 3.10E IOS-XE 3.6.5E
Switch CAT6K IOS 15.5.1 SY IOS 15.5.1 SY
Switch CAT9K IOS-XE 16.6.3 IOS-XE 16.6.2
IOT Switch IE 2K IOS 15.2(6)E1 IOS 15.2(6)E1
IOT Switch IE 3K (IOS) IOS 15.2(6)E1 IOS 15.2(6)E1
IOT Switch IE 3K (IOS-XE) IOS-XE 16.11.1s IOS-XE 16.10.1e
IOT Switch IE 4K IOS 15.2(7)E0s IOS 15.2(6)E1
IOT Switch IE 5K IOS 15.2(7)E0s IOS 15.2(6)E1
More Information:
DC Switch N7K NX-OS 7.3.2 NX-OS 7.3.1
https://www.cisco.com/c/en/u
Router ASR 1K IOS-XE 16.3.5 IOS-XE 16.3.1
s/support/cloud-systems-
Router ISR 11XX IOS-XE 16.7.1 IOS-XE 16.6.1
management/dna-
Router ISR 4K IOS-XE 16.6.3 IOS-XE 3.16 center/products-device-
IOT Router IR1101 IOS-XE 16.10.1e IOS-XE 16.10.1e support-tables-list.html
IOT Router IR829 IOS 15.8(3)M1 IOS 15.7(3)M2
Wireless AP (11ax) AireOS 8.9 AireOS 8.9
Wireless AP (11ax) IOS-XE 16.11.1e IOS-XE 16.11.1e
Wireless AP (11n) AireOS 8.5.130 AireOS 8.5.120
Wireless AP (Outdoor) AireOS 8.5.130 AireOS 8.5.120
Wireless AP (Wave1) AireOS 8.5.130, 8.7.106 AireOS 8.5.120
Wireless AP (Wave2) AireOS 8.5.130, 8.7.106 AireOS 8.5.120
Wireless Controller
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
AireOS 8.5.130, 8.7.106 AireOS 8.5.120
Virtual Varies Varies Varies
Interface Cable Connections
mandatory
optional
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Center Appliance Connections
Physical Interfaces & Connections
DN2-HW-APL
PORT 1 PORT 2 1 2 M
or
PCIe SFP+ 10Gb PCIe SFP+ 10Gb (Integrated) RJ-45 1Gb (Integrated) RJ-45 1Gb (Integrated) RJ-45 Gb
DN2-HW-APL-L
Wizard Name enp94s0f0 enp94s0f1 eno1 eno2 -
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
• NTP, DNS is required INFO: From 2.1.1.x the system now uses the 169.x.x.x address spaces for inter-cluster communications.
Single Node Cluster (DN2 appliance)
Interfaces &
Cabling
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Starting DNAC
Before you start the installation 2.2.2
Applicable IF NIC
Bonding is enabled
DN2-HW-APL
and
DN2-HW-APL-L
enp94s0f0 / eno2 /
enp216s0f2 enp216s0f1
enp94s0f1 /
enp216s0f3
eno1 /
enp216s0f0
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
9
Starting DNAC
Before you start the installation 2.2.2
Applicable IF NIC
Bonding is enabled
DN2-HW-APL-XL
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
10
Before you start the installation
O Enterprise Port – Interface that is connected to the Enterprise network
• Virtual IP
• Each VIP should be from the same subnet as the IP address of the corresponding configured interface
O Intracluster Port – isolated network used for communication between the Cisco DNA Center
cluster nodes
• Virtual IP
• Container/Service Subnet - dedicated IP subnet for the communications among its internal application services, such as
Assurance, inventory collection, etc. By default, Cisco DNA Center configures a link-local subnet (169.254.32.0/20) for this
parameter – Recommended to use!
• Cluster subnet - dedicated IP subnet for the communications among its infrastructure services, such as database access, the
message bus, etc. By default, Cisco DNA Center configures a link-local subnet (169.254.48.0/20) for this parameter –
Recommended to use!
• If you however want to use some other subnet address pool – min. /21 subnet for each (recommended /20-/16). Must
conform with the IETF RFC 1918 or 6598
• The Cluster/Service subnet address pools can not be changed after installation and no other machines should be in this
network
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
12
Before you start the installation
O CIMC Port– Management of the Cisco DNAC Appliance hardware (optional, but highly
recommended)
O Management Port– used for Cisco DNA Center management (optional)
• Virtual IP
• This port provides access to the Cisco DNA Center GUI, allowing users to use the software on the appliance.
O Internet/Cloud Port – used to update the Cisco DNA Center software (optional)
• Virtual IP
• Use it only if you cannot connect the appliance to the Internet (including to your Internet proxy server) using the Enterprise
Port (Network Adapter 1). If you need to use this port, connect it to a switch with connections to your Internet proxy server
and configure one IP address with a subnet mask for the port.
13
Installation Template - EXAMPLE
Appliance #1 IP Appliance #2 IP Appliance #3 IP
Intra-Cluster IP: 172.25.216.12/24 Intra-Cluster IP: 172.25.216.13/24 Intra-Cluster IP: 172.25.216.14/24
Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24
Management (CIMC) IP: 172.24.250.71 Management (CIMC) IP: 172.24.250.72 Management (CIMC) IP: 172.24.250.73
DNAC Admin IP: 172.25.217.12/24 DNAC Admin IP: 172.25.217.13/24 DNAC Admin IP: 172.25.217.14/24
DNAC Admin VIP: 172.25.217.11/24 DNAC Admin VIP: 172.25.217.11/24 DNAC Admin VIP: 172.25.217.11/24
Cloud IP: NA Cloud IP: NA Cloud IP: NA
Cloud VIP: NA Cloud VIP: NA Cloud VIP: NA
Enterprise IP: 172.25.218.12/24 Enterprise IP: 172.25.218.13/24 Enterprise IP: 172.25.218.14/24
Enterprise VIP: 172.25.218.11/24 Enterprise VIP: 172.25.218.11/24 Enterprise VIP: 172.25.218.11/24
Default Gateway IP: 172.25.218.1/24 Default Gateway IP: 172.25.218.1/24 Default Gateway IP: 172.25.218.1/24
15
Installation Template - EXAMPLE
Appliance #1 IP Appliance #2 IP Appliance #3 IP
Intra-Cluster IP: 172.25.216.12/24 Intra-Cluster IP: 172.25.216.13/24 Intra-Cluster IP: 172.25.216.14/24
Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24
Management (CIMC) IP: 172.24.250.71 Management (CIMC) IP: 172.24.250.72 Management (CIMC) IP: 172.24.250.73
DNAC Admin IP: 172.25.217.12/24 DNAC Admin IP: 172.25.217.13/24 DNAC Admin IP: 172.25.217.14/24
DNAC Admin VIP: 172.25.217.11/24 DNAC Admin VIP: 172.25.217.11/24 DNAC Admin VIP: 172.25.217.11/24
Cloud IP: NA Cloud IP: NA Cloud IP: NA
Cloud VIP: NA Cloud VIP: NA Cloud VIP: NA
Enterprise IP: 172.25.218.12/24 Enterprise IP: 172.25.218.13/24 Enterprise IP: 172.25.218.14/24
Enterprise VIP: 172.25.218.11/24 Enterprise VIP: 172.25.218.11/24 Enterprise VIP: 172.25.218.11/24
Default Gateway IP: 172.25.218.1/24 Default Gateway IP: 172.25.218.1/24 Default Gateway IP: 172.25.218.1/24
16
Subscribe to Event Notifications (CIMC)
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Installation Template - EXAMPLE
Appliance #1 IP Appliance #2 IP Appliance #3 IP
Intra-Cluster IP: 172.25.216.12/24 Intra-Cluster IP: 172.25.216.13/24 Intra-Cluster IP: 172.25.216.14/24
Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24
Management (CIMC) IP: 172.24.250.71 Management (CIMC) IP: 172.24.250.72 Management (CIMC) IP: 172.24.250.73
DNAC Admin IP: 172.25.217.12/24 DNAC Admin IP: 172.25.217.13/24 DNAC Admin IP: 172.25.217.14/24
DNAC Admin VIP: 172.25.217.11/24 DNAC Admin VIP: 172.25.217.11/24 DNAC Admin VIP: 172.25.217.11/24
Cloud IP: NA Cloud IP: NA Cloud IP: NA
Cloud VIP: NA Cloud VIP: NA Cloud VIP: NA
Enterprise IP: 172.25.218.12/24 Enterprise IP: 172.25.218.13/24 Enterprise IP: 172.25.218.14/24
Enterprise VIP: 172.25.218.11/24 Enterprise VIP: 172.25.218.11/24 Enterprise VIP: 172.25.218.11/24
Default Gateway IP: 172.25.218.1/24 Default Gateway IP: 172.25.218.1/24 Default Gateway IP: 172.25.218.1/24
• From 2.1.1.x this requirement is removed, and the two /21 are not required.
Proxy:
Proxy username/password:
Proxy:
Proxy username/password:
Proxy:
Proxy username/password:
System now uses the 169.x.x.x address spaces within the cluster.
Linux/Maglev password: M$glev1@3 Linux/Maglev password: M$glev1@3 Linux/Maglev password: M$glev1@3
Admin Password Tempassword123
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Admin Password Tempassword123 Admin Password Tempassword123
18
Installation Template - EXAMPLE
Appliance #1 IP Appliance #2 IP Appliance #3 IP
Intra-Cluster IP: 172.25.216.12/24 Intra-Cluster IP: 172.25.216.13/24 Intra-Cluster IP: 172.25.216.14/24
Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24
Management (CIMC) IP: 172.24.250.71 The system can have a single default gateway
Management (CIMC) IP: 172.24.250.72 Management (CIMC) IP: 172.24.250.73
19
Installation Template - EXAMPLE
Appliance #1 IP Appliance #2 IP Appliance #3 IP
Intra-Cluster IP: 172.25.216.12/24 Intra-Cluster IP: 172.25.216.13/24 Intra-Cluster IP: 172.25.216.14/24
Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24
Management (CIMC) IP: 172.24.250.71 Management (CIMC) IP: 172.24.250.72 Management (CIMC) IP: 172.24.250.73
20
Single and multi-node information
Continued
Download updates to Cisco DNA https://www.ciscoconnectdna.com
Center's system and application https://cdn.ciscoconnectdna.com
package software, submit user https://registry.ciscoconnectdna.com
Cisco DNA feedback to the Cisco DNA Center https://registry-cdn.ciscoconnectdna.com
Center requires product team
reachability to Integrate with Cisco Meraki dashboard.meraki.com:443
Internal URLs & api.meraki.com:443
FQDNs n63.meraki.com:443
Integrate with Cisco.com and Cisco *.cisco.com:443
Smart Licensing
Render accurate information in Cisco www.mapbox.com
DNA Center's site and location maps *.tiles.mapbox.com/* :443
For a proxy, the destination is
*.tiles.mapbox.com/*
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Informational
Internal Connectivity Requirements
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
22
Installation Template – FOR YOU
Appliance #1 IP Appliance #2 IP Appliance #3 IP
Intra-Cluster IP: 172.25.216.12/24 Intra-Cluster IP: 172.25.216.13/24 Intra-Cluster IP: 172.25.216.14/24
Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24 Intra-cluster VIP: 172.25.216.11/24
Management (CIMC) IP: 172.24.250.71 Management (CIMC) IP: 172.24.250.72 Management (CIMC) IP: 172.24.250.73
DNAC Admin IP: 172.25.217.12/24 DNAC Admin IP: 172.25.217.13/24 DNAC Admin IP: 172.25.217.14/24
DNAC Admin VIP: 172.25.217.11/24 DNAC Admin VIP: 172.25.217.11/24 DNAC Admin VIP: 172.25.217.11/24
Cloud IP: NA Cloud IP: NA Cloud IP: NA
Cloud VIP: NA Cloud VIP: NA Cloud VIP: NA
Enterprise IP: 172.25.218.12/24 Enterprise IP: 172.25.218.13/24 Enterprise IP: 172.25.218.14/24
Enterprise VIP: 172.25.218.11/24 Enterprise VIP: 172.25.218.11/24 Enterprise VIP: 172.25.218.11/24
Default Gateway IP: 172.25.218.1/24 Default Gateway IP: 172.25.218.1/24 Default Gateway IP: 172.25.218.1/24
23
Simplify and add flexibility with Cisco Smart Software
Licensing
Manage your license deployments in a way Get visibility and security with Smart Accounts
that is:
• Smart Software Manager: visibility to assets via
• Simple: Procure, deploy, and manage licenses easily easy-to-use interface
• Flexible: Move licenses freely through the network, • Smart Account Manager satellite: extra security for
wherever you need them customers who do not want to manage installed
base using direct Internet connection
• Smart: Have real-time visibility of ownership and
consumption
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Installation
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
All versions
Installation - Let’s get started!
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
26
All versions
Installation - Let’s get started!
Option 1 Option 2
Maglev Wizard Browser-Based Wizard
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
27
DNAC 2.1.2
Installation – Option 1 – Maglev Wizard and earlier
Startup Screen Enterprise NIC Setup InterCluster NIC Setup Mgmt. NIC Setup DMZ NIC Setup
NTP and Cluster Verifications Cluster Settings Cluster Settings Proxy Settings Host networking verification
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
30
DNAC 2.1.2
Installation – Option 2 and earlier
Browser-Based Wizard
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
31
DNAC 2.1.2
Installation – Option 2 and earlier
Browser-Based Wizard
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
32
DNAC 2.1.2
Installation – Option 2 and earlier
Browser-Based Wizard
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
33
All versions
Cisco DNA Center Install with USB
§ Then burn the ISO image to USB (45 mins) using the
Etcher tool
34
Upgrades and
patches
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Verify current software version
Cisco
CiscoDNA
DNA
Center
Center
Upgrades &
Single
Patches
Node
Cluster
Step #1
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Proxy setting to reach the update catalog
Cisco
CiscoDNA
DNA
Center 1
Center 3
Upgrades &
Single
Patches
Node 2
Cluster
Step #2
4
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Update software
Cisco
CiscoDNA
DNA 1
Center
Center
Upgrades &
Single
Patches
Node
Cluster
Step #3
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Post-update: Verify current software version
Cisco
CiscoDNA
DNA
Center
Center
Upgrades &
Single
Patches
Node
Cluster
Step #4
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Configuration
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Locations
Sites,Center
DNA
Single Node
Buildings, &
Cluster
Floors
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Shared services
Switch1#show run | inc domain name
ip domain name dna2.local
1
DNA Center Switch1#show run | inc name-server
Services 2
ip name-server 192.168.102.199
Single Node
(Global) Switch1#show run | inc logging host
Cluster 3
logging host 192.168.100.220
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Configuration by Site
1
DNA Center
Services
Single Node 2
(Per Site)
Cluster
3
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Device discovery
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Center: Device discovery checklist
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Add credentials
1
DNA Center 2
Device
Single Node
Credentials 3
Cluster
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Can Cisco DNA Center talk to ISE and IPAM?
1
DNA Center
Ready for
Single Node
Discovery 2
Cluster
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Setting up discovery tasks
Initiate
DNA Center
Single Node
Discovery
Cluster
Task #1
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Setting up discovery tasks
Continued
Initiate
DNA Center
Single Node
Discovery
Cluster
Task #2
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Tracking discovery progress
DNA Center
Discovery
Single Node
Progress
Cluster
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Assigning devices
1 3
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Questions
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Continue the
conversation in our Cisco
DNA community:
http://cs.co/dnac-community
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public
Cisco DNA Center User Guide (Release
1.3)
Cisco DNA Center User Guide (Release
1.2.10)
References Enterprise Mobility Design Guide
Cisco DNA Services
• Services for Enterprise Networks
© 2019 Cisco and/or its affiliates. All rights reserved. Cisco Public