Link to home
Start Free TrialLog in
Avatar of IPROUTE
IPROUTE

asked on

Setup Cisco SD-WAN

If I want to setup SD-WAN between HQ & Branch Office, what are the requirements in terms of devices and licensing. Firstly, we need to setup POC by ourselves for demo purposes.
Both HQ and branch have 100 Mbps broadband internet connection. HQ also have dedicated leased for business use. As hardware is concerned, currently we got only ESXI hosts at both sites.

Any suggestions and ideas are welcomed.

Thanks
Avatar of atlas_shuddered
atlas_shuddered
Flag of United States of America image

The answer to your question is a simple or as complex as you want it to be.  On the simple end, you can go with a basic edge solution with an edge device connecting the local site to your internet connection.  On the complex side, you could look at going with a solution that is going to replace not just the edge but potentially large segments of the LAN as well.  Its really more of a question of what you are attempting to accomplish and what you think that SD-WAN is going to accomplish for your.  If all you are doing is setting up a hub and spoke network with all traffic traversing your main office, it may be easier and maybe even more cost efficient to just set up VPNs.

Really, need more info to give a better answer.
Avatar of IPROUTE
IPROUTE

ASKER

Currently, we have expensive MPLS circuits setup between main and remote offices. We want to eliminate or reduce bandwidth and bring SD-WAN to enable full mesh IPSec Topology for non-critical business traffic.

We have a got 100Mbps ADSL connections that will be terminated on vEdge routers.
Again, it isn't that simple to spin off a design.  If you are doing this as a cost cutting measure, I'd suggest you look at Meraki or Fortinet's SDW.  Cisco has three offerings - Viptela (Expensive), DMVPN (Build it soup to nuts yourself), Meraki (Network centric, low security).  Fortinet is going to reduce cost and give the advantage of baked in security.

Beyond this, if you are looking to build a BOM/Design, then I'm happy to consult or you could try engaging the vendor directly.
Avatar of IPROUTE

ASKER

Ok, is it possible for you to help us setup the POC Lab

I have;

Two ESXI hosts at main and remote office
- 100 Mbps Broadband Internet connection at remote office
- 1 DIA behind firewall and 1x100 Mbps broadband connection at main office.

We want to setup controllers and vEdge at main office and vEdge at Remote office.
Avatar of IPROUTE

ASKER

I've attached our lab setup.

We are planning to install three controllers and vedge at main office on vmware esxi host.
Each vedge router will have two interfaces LAN and WAN ( connected to PPPoE ADSL)
If Controllers are placed behind firewall, which IPs exactly I need to NAT ? Do we need seperate public addresses for all three controllers ?
Do we need to NAT system-ip of controllers ?

Please suggest your thoughts on this.
sd-wan.jpg
This question needs an answer!
Become an EE member today
7 DAY FREE TRIAL
Members can start a 7-Day Free trial then enjoy unlimited access to the platform.
View membership options
or
Learn why we charge membership fees
We get it - no one likes a content blocker. Take one extra minute and find out why we block content.