DNA Center – PnP Catalyst 9300

Video Statistics and Information

Video
Captions Word Cloud
Reddit Comments
Captions
my name is sean civic technical marketing engineer with cisco this video will demonstrate dna center's plug and play feature using a catalyst 9300 switch plug and play allows for zero touch provisioning of network devices this allows you to simply unbox a brand new switch plug it in and power it on dna center will provision the configuration of the switch as well as update firmware for you automatically you no longer need to pre-stage equipment by manually copying and pasting configs or uploading the correct firmware before you rack and stack this can save you a lot of time as well as make your job a whole lot easier let's get started the first thing i'm going to do is configure the uplink switch ports my brand new catalyst 9300 will plug into the uplink switch called fs2-switch on ports 10 gig 113 and 114 which are both configured in port group 1. the port channel is configured as a trunk with native vlan 999 if you only have one uplink it's not necessary to use port channeling i just wanted to show that functionality now by default the new switch will attempt to connect to the pnp server on vlan 1. however i want to use vlan 35 as my management vlan in this example so i'll add the pnp startup vlan 35 command to the uplink switch this will instruct the new switch to use vlan 35 to communicate with dna center instead of the default of vlan 1. the new switch will need to know how to locate the dna center server it can use dns with an a record pointing to pnp server.your domain dhcp option 43 or even the cloud to find the ip address of dna center in this demo we'll be using dhcp i set up a windows dhcp server with scope option 43 pointing to 172 21 21.10 which is the ip address of my dna center server now that our upsling switch is configured and dhcp is set up we can power on our new switch here is a screenshot taken while booting up the catalyst 9300 as you can see there is no startup config and the switch is starting auto install plug and play zero touch provisioning it's important that we do not enter anything at the initial configuration prompt because that will halt the pnp process we can also see the dhcp settings received such as the ip address domain name dns server and vendor specific option 43 pointing to our dna center server that we've configured earlier a quick side note if you'd like to run pnp on an existing switch or one that has already been configured you do have to perform some device cleanup you'd have to remove the pnp profile any certificates on the switch vlans and the startup config feel free to pause the video if you'd like to jot down these steps it's good to be able to test the process out on an existing switch before rolling out a new switch into production now that the switch has booted up and started pnp we'll claim the switch in dna center to complete the provisioning process however before we claim the switch i'll go over the details of how dna is set up and configured i'll click on the hamburger icon design network hierarchy this is where i can design or logically group network settings according to my environment anything at the global level will apply to all levels underneath it however i can always overwrite those for site-specific settings which gives you very granular control of the automation process in this example i've set up a site named pnp site which contains a building called pnp building which contains one floor called pnp floor and this is where i'll be deploying the catalyst 9300 switch clicking on the hamburger menu design and network settings is where i can set additional settings to be pushed to network devices i can configure things like aaa servers dhcp servers dns servers ntp servers the time zone as well as a message of the day clicking on device credentials is where i can set up cli credentials snmp credentials for both versions 2 and version 3 as well as https credentials clicking on telemetry allows me to set up additional parameters such as setting dna center as an snmp trap server a syslog server a net flow collector as well as monitor wired clients which is setting up ip device tracking on switches clicking on the hamburger menu design image repository is where i can import and maintain all the firmware images for my environment i can set a golden image at the global level and i can even overwrite that golden image at the site-specific level clicking on the hamburger menu design and network profiles is where i can set up network profiles to logically group network settings based on their location in this example i have a pnp profile and when i click on edit this is where i can configure the templates that will be used to push out to the network devices in this example i have one called pnp template going back to the network profile i'll then assign that profile to a site as you can see here this pnp profile is assigned to the pnp site so any devices in the pnp site will get assigned this pnp profile thus will get assigned that pnp template so let's take a look at that template by clicking on the hamburger menu tools template editor my pnp template is located in the onboarding configuration project folder when i edit the template i can see the settings that will be pushed to my catalyst 9300 in this example i'll create vlan 10 for data a vlan 11 for voice and vlan 35 for management i'll also create an sbi for vlan 35 with a static ip address of 10.35 i'll also configure a default gateway of 10.35.35.1 now pnp will create the port channel as well as allow vlan 35 on the trunk because it was specified as the pnp startup vlan that we configured earlier however we'll have to use the template to add additional vlans which is shown here by adding vlans 10 and 11 to the allow list pnp will also configure the lower numbered port to be in the channel group which was 10 113 in our example however we'll also have to use the template to add port 10114 to the channel group as well but because we have ip device tracking enabled which was illustrated in the telemetry settings earlier we'll set interface 10114 to default before adding it to the channel group in addition to those settings i'll also configure all other switch ports to be in access ports vlan 10 and voice vlan 11 with portfast enabled and i'll also configure spanning tree port fast bptu guard as default there's a lot more you can accomplish with templates which can be very powerful this is a very basic template without any variables just used to demonstrate onboarding a switch i'll dive deeper into templates and another video in order to onboard a device you have to claim it within dna center i do this by clicking on the hamburger menu provision plug-and-play as you can see i have two unclaimed devices wlc1 and switch i want to onboard the switch so i'm going to highlight this one and click actions and claim now i'm going to give it a device name which is the hostname of the switch i'm going to call it pnp switch then you can see the serial number and the product id now i have to select a site if you remember i had a pnp template assigned to the pnp profile and the pnp profile was assigned to the pnp site now i'm going to select the bnp building which is part of that site to get the template when i click on next now i can see the device name the serial number the project id the assigned site and the configuration in this example it's going to push a new image as well as a template in order to save time i'm going to skip the firmware upgrade and just push the template so then i click on next and now we come to the templates i select the template and mine was pretty basic i didn't have any variables so i'm just going to hit next now you can see the device name the serial number product id assigned site what configuration is going to be pushed and you can also preview the day zero configuration here we have the cli name that's going to be pushed and the snmp credentials as well as the enable password and the host name we also have the device details specific to this this actual switch and then the image details if you remember i unchecked the firmware upgrade and these are the actual settings that will be pushed from the template then we can also look at the network settings which is basically in my situation i'm just pushing everything toward dna center then i click on claim and click yes this process takes about two minutes so i'll pause the video and come back when it's complete okay it looks like it's complete and provisioned successfully so i can find that by clicking on the provision tab and we can see that the pnp switch has been provisioned i can then click on the hamburger menu provision and inventory then i can go down to the pnp site and this is where i can see my pnp switch i can also use dna center to verify the configuration was pushed correctly i'll click on pnp switch and configuration and here's where i can review the the running configuration of my switch you can see a hostname is pnp switch i scroll past the certificates i see i have spanning tree portfast bpudigard here are my vlans everything looks correct now scroll down as you can see my interfaces were set up to vlan 10 and voice vlan 11 as well as my interfaces for my poor channel so that pretty much wraps up the plug-and-play provisioning of new network devices thank you for watching
Info
Channel: Cisco DNA Center
Views: 1,257
Rating: undefined out of 5
Keywords:
Id: U9nXx84BVrk
Channel Id: undefined
Length: 10min 58sec (658 seconds)
Published: Fri Oct 01 2021
Related Videos
Note
Please note that this website is currently a work in progress! Lots of interesting data and statistics to come.