Cisco Intelligent WAN (IWAN) (Networking Technology)
暫譯: 思科智能廣域網 (IWAN) (網路技術)

Brad Edgeworth, David Prall, Jean Marc Barozet, Anthony Lockhart, Nir Ben-Dvora

  • 出版商: Cisco Press
  • 出版日期: 2016-10-28
  • 售價: $3,160
  • 貴賓價: 9.5$3,002
  • 語言: 英文
  • 頁數: 880
  • 裝訂: Paperback
  • ISBN: 1587144638
  • ISBN-13: 9781587144639
  • 相關分類: Cisco
  • 海外代購書籍(需單獨結帳)

買這商品的人也買了...

商品描述

<Description>

The complete guide to Cisco® IWAN: features, benefits, planning, and deployment

Using Cisco Intelligent WAN (IWAN), businesses can deliver an uncompromised experience, security, and reliability to branch offices over any connection. Cisco IWAN simplifies WAN design, improves network responsiveness, and accelerates deployment of new services. Now, there’s an authoritative single-source guide to Cisco IWAN: all you need to understand it, design it, and deploy it for maximum value.

In Cisco Intelligent WAN (IWAN), leading Cisco experts cover all key IWAN technologies and components, addressing issues ranging from visibility and provisioning
to troubleshooting and optimization. They offer extensive practical guidance on migrating to IWAN from your existing WAN infrastructure.

This guide will be indispensable for all experienced network professionals who support WANs, are deploying Cisco IWAN solutions, or use related technologies such as DMVPN or PfR.

Deploy Hybrid WAN connectivity to increase WAN capacity and improve application performance
Overlay DMVPN on WAN transport to simplify operations, gain transport independence, and improve VPN scalability
Secure DMVPN tunnels and IWAN routers
Use Application Recognition to support QoS, Performance Routing (PfR), and application visibility
Improve application delivery and WAN efficiency via PfR
Monitor hub, transit, and branch sites, traffic classes, and channels
Add application-level visibility and per-application monitoring to IWAN routers
Overcome latency and bandwidth inefficiencies that limit application performance
Use Cisco WAAS to customize each location’s optimizations, application accelerations, and virtualization
Smoothly integrate Cisco WAAS into branch office network infrastructure
Ensure appropriate WAN application responsiveness and experience
Improve SaaS application performance with Direct Internet Access (DIA)
Perform pre-migration tasks, and prepare your current WAN for IWAN
Migrate current point-to-point and multipoint technologies to IWAN

<Sample Content>

Table of Contents

Part I Introduction to IWAN

Chapter 1 Evolution of the WAN

WAN Connectivity

Increasing Demands on Enterprise WANs

Quality of Service for the WAN

Branch Internet Connectivity and Security

Cisco Intelligent WAN

Summary

Part II Transport Independent Design

Chapter 2 Transport Independence

WAN Transport Technologies

Benefits of Transport Independence

Summary

Chapter 3 Dynamic Multipoint VPN

Generic Routing Encapsulation (GRE) Tunnels

Next Hop Resolution Protocol (NHRP)

Dynamic Multipoint VPN (DMVPN)

DMVPN Configuration

Spoke-to-Spoke Communication

Problems with Overlay Networks

IP NHRP Authentication

Unique IP NHRP Registration

DMVPN Failure Detection and High Availability

DMVPN Dual-Hub and Dual-Cloud Designs

IWAN DMVPN Sample Configurations

Sample IWAN DMVPN Transport Models

Backup Connectivity via Cellular Modem

IWAN DMVPN Guidelines

Troubleshooting Tips

Summary

Further Reading

Chapter 4 Intelligent WAN (IWAN) Routing

Routing Protocol Overview

Topology

WAN Routing Principles

EIGRP for IWAN

Border Gateway Protocol (BGP)

FVRF Transport Routing

Multicast Routing

Summary

Further Reading

Chapter 5 Securing DMVPN Tunnels and Routers

Elements of Secure Transport

IPsec Fundamentals

IPsec Tunnel Protection

IKEv2 Protection

Securing Routers That Connect to the Internet

Control Plane Policing (CoPP)

Device Hardening

Summary

Further Reading

Part III Intelligent Path Control

Chapter 6 Application Recognition

What Is Application Recognition?

What Are the Benefits of Application Recognition?

NBAR2 Application Recognition

NBAR2 Application ID, Attributes, and Extracted Fields

NBAR2 Operation and Functions

Custom Applications and Attributes

NBAR2 State with Regard to Device High Availability

Encrypted Traffic

NBAR2 Interoperability with Other Services

NBAR2 Protocol Discovery

NBAR2 Visibility Dashboard

NBAR2 Protocol Packs

Validation and Troubleshooting

Summary

Further Reading

Chapter 7 Introduction to Performance Routing (PfR)

Performance Routing (PfR)

Introduction to the IWAN Domain

Intelligent Path Control Principles

Summary

Further Reading

Chapter 8 PfR Provisioning

IWAN Domain

Topology

PfR Configuration

Advanced Parameters

Path Selection

Summary

Further Reading

Chapter 9 PfR Monitoring

Topology

Checking the Hub Site

Checking the Transit Site

Check the Branch Site

Monitoring Operations

Summary

Further Reading

Chapter 10 Application Visibility

Application Visibility Fundamentals

Performance Metrics

Flexible NetFlow

Evolution to Performance Monitor

Metrics Export

Deployment Considerations

Summary

Further Reading

Part IV Application Optimization

Chapter 11 Introduction to Application Optimization

Application Behavior

Cisco Wide Area Application Services (WAAS)

Caching and Compression

Application-Specific Acceleration

Summary

Further Reading

Chapter 12 Cisco Wide Area Application Services (WAAS)

Cisco WAAS Architecture

Cisco WAAS Platforms

WAAS Design and Performance Metrics

Cisco WAAS Operational Modes

Interception Techniques and Protocols

WAAS Interception Network Integration Best Practices

Summary

Further Reading

Chapter 13 Deploying Application Optimizations

GBI: Saving WAN Bandwidth and Replicating Data

WAN Optimization Solution

Deploying Cisco WAAS

AppNav-XE

GBI Branch Deployment

Summary

Part V QoS

Chapter 14 Intelligent WAN Quality of Service (QoS)

QoS Overview

Ingress QoS NBAR-Based Classification

Ingress LAN Policy Maps

Egress QoS DSCP-Based Classification

Egress QoS Policy Map

Hierarchical QoS

DMVPN Per-Tunnel QoS

QoS and IPSec Packet Replay Protection

Complete QoS Configuration

Summary

Further Reading

Part VI Direct Internet Access

Chapter 15 Direct Internet Access (DIA)

Guest Internet Access

Guest Access Quality of Service (QoS)

Guest Access Web-Based Acceptable Use Policy

Internal User Access

Fully Specified Static Default Route

Verification of Internet Connectivity

Network Address Translation (NAT)

Policy-Based Routing (PBR)

Internal Access Zone-Based Firewall (ZBFW)

Cloud Web Security (CWS)

Baseline Configuration

Outbound Proxy

WAAS and WCCP Redirect

Prevention of Internal Traffic Leakage to the Internet

Summary

References in this Chapter

Part VII Migration

Chapter 16 Deploying Cisco Intelligent WAN

Pre-Migration Tasks

Migration Overview

Deploying DMVPN Hub Routers

Migrating the Branch Routers

Post-Migration Tasks

Migrating from a Dual MPLS to a Hybrid IWAN Model

Migrating IPsec Tunnels

PfR Deployment

Testing the Migration Plan

Summary

Further Reading

Part VIII Conclusion

Chapter 17 Conclusion and Looking Forward

Intelligent WAN Today

Intelligent WAN Architecture

Intelligent WAN Tomorrow

Appendix A Dynamic Multipoint VPN Redundancy Models

Appendix B IPv6 Dynamic Multipoint VPN

Index

商品描述(中文翻譯)

<描述>


Cisco® IWAN 完整指南:特性、優勢、規劃與部署


透過 Cisco Intelligent WAN (IWAN),企業可以在任何連接上為分支辦公室提供無妥協的體驗、安全性和可靠性。Cisco IWAN 簡化了 WAN 設計,改善了網路響應能力,並加速了新服務的部署。現在,有一本權威的單一來源指南來介紹 Cisco IWAN:您所需的所有資訊,以理解、設計和部署它,以獲得最大的價值。


在 Cisco Intelligent WAN (IWAN) 中,領先的 Cisco 專家涵蓋了所有關鍵的 IWAN 技術和組件,解決了從可見性和配置到故障排除和優化的各種問題。他們提供了大量實用的指導,幫助您從現有的 WAN 基礎設施遷移到 IWAN。


這本指南對於所有支持 WAN 的經驗豐富的網路專業人員、正在部署 Cisco IWAN 解決方案或使用相關技術(如 DMVPN 或 PfR)的專業人員來說都是不可或缺的。


部署混合 WAN 連接以增加 WAN 容量並改善應用程式性能
在 WAN 傳輸上疊加 DMVPN,以簡化操作、獲得傳輸獨立性並改善 VPN 可擴展性
保護 DMVPN 隧道和 IWAN 路由器
使用應用程式識別來支持 QoS、性能路由 (PfR) 和應用程式可見性
透過 PfR 改善應用程式交付和 WAN 效率
監控樞紐、過境和分支站點、流量類別和通道
為 IWAN 路由器添加應用程式級別的可見性和每個應用程式的監控
克服限制應用程式性能的延遲和帶寬低效問題
使用 Cisco WAAS 自定義每個位置的優化、應用程式加速和虛擬化
順利將 Cisco WAAS 整合到分支辦公室的網路基礎設施中
確保適當的 WAN 應用程式響應能力和體驗
透過直接網際網路接入 (DIA) 改善 SaaS 應用程式性能
執行遷移前任務,並為 IWAN 準備當前的 WAN
將當前的點對點和多點技術遷移到 IWAN


<範例內容>


目錄


第一部分 IWAN 介紹


第 1 章 WAN 的演變


WAN 連接性


對企業 WAN 的需求增加


WAN 的服務質量


分支機構的網際網路連接性和安全性


Cisco Intelligent WAN


摘要


第二部分 傳輸獨立設計


第 2 章 傳輸獨立性


WAN 傳輸技術


傳輸獨立性的優勢


摘要


第 3 章 動態多點 VPN


通用路由封裝 (GRE) 隧道


下一跳解析協定 (NHRP)


動態多點 VPN (DMVPN)


DMVPN 配置


站對站通信


疊加網路的問題


IP NHRP 認證


唯一的 IP NHRP 註冊


DMVPN 故障檢測和高可用性


DMVPN 雙樞紐和雙雲設計


IWAN DMVPN 範例配置


範例 IWAN DMVPN 傳輸模型


透過行動數據機的備援連接


IWAN DMVPN 指導方針


故障排除提示


摘要


進一步閱讀


第 4 章 智能 WAN (IWAN) 路由


路由協定概述


拓撲


WAN 路由原則


IWAN 的 EIGRP


邊界閘道協定 (BGP)


FVRF 傳輸路由


多播路由


摘要


進一步閱讀


第 5 章 保護 DMVPN 隧道和路由器


安全傳輸的要素


IPsec 基礎知識


IPsec 隧道保護


IKEv2 保護


保護連接到網際網路的路由器


控制平面管制 (CoPP)


設備加固


摘要


進一步閱讀


第三部分 智能路徑控制


第 6 章 應用程式識別


什麼是應用程式識別?


應用程式識別的優勢是什麼?


NBAR2 應用程式識別


NBAR2 應用程式 ID、屬性和提取字段


NBAR2 的操作和功能


自定義應用程式和屬性


NBAR2 在設備高可用性方面的狀態


加密流量


NBAR2 與其他服務的互操作性


NBAR2 協定發現


NBAR2 可見性儀表板


NBAR2 協定包


驗證和故障排除


摘要


進一步閱讀


第 7 章 性能路由 (PfR) 介紹


性能路由 (PfR)


IWAN 領域介紹


智能路徑控制原則


摘要


進一步閱讀


第 8 章 PfR 配置


IWAN 領域


拓撲


PfR 配置


進階參數


路徑選擇


摘要


進一步閱讀


第 9 章 PfR 監控


拓撲


檢查樞紐站點


檢查過境站點


檢查分支站點


監控操作


摘要


進一步閱讀


第 10 章 應用程式可見性


應用程式可見性基礎知識


性能指標


靈活的 NetFlow


演變為性能監控器


指標匯出


部署考量


摘要


進一步閱讀


第四部分 應用程式優化


第 11 章 應用程式優化介紹


應用程式行為


Cisco 廣域應用程式服務 (WAAS)


快取和壓縮


特定應用程式的加速


摘要


進一步閱讀


第 12 章 Cisco 廣域應用程式服務 (WAAS)


Cisco WAAS 架構


Cisco WAAS 平台


WAAS 設計和性能指標


Cisco WAAS 操作模式


攔截技術和協定


WAAS 攔截網路整合最佳實踐


摘要


進一步閱讀


第 13 章 部署應用程式優化


GBI:節省 WAN 帶寬和複製數據


WAN 優化解決方案


部署 Cisco WAAS

最後瀏覽商品 (20)