Details the initial setup process for Cisco Catalyst SD-WAN multitenancy.
Prerequisites for Cisco Catalyst SD-WAN multitenancy
Ensure these prerequisites are met to successfully deploy and enable Cisco Catalyst SD-WAN m ultitenancy.
-
Download and install software versions as recommended in the table below:
Table 1. Minimum software prerequisites for Cisco Catalyst SD-WAN multitenancy Device Software Version Cisco SD-WAN Manager Cisco vManage Release 20.6.1 Cisco SD-WAN Validator Cisco SD-WAN Release 20.6.1 Cisco SD-WAN Controller Cisco SD-WAN Release 20.6.1 Cisco IOS XE Catalyst SD-WAN Device Cisco IOS XE Catalyst SD-WAN Release 17.6.1a A configuration in which one or more controllers, or WAN edge devices, are running software versions earlier than those mentioned in the table above is not supported.
-
Ensure a new SD-WAN Manager software image is downloaded and installed instead of migrating an existing single-tenant instance to multitenant mode, even if all devices are invalidated or deleted.
-
Follow the recommended hardware specifications in the Supported Devices and Hardware specifications section of this document.
Initial setup for Cisco Catalyst SD-WAN multitenancy
Follow these steps to set up Cisco Catalyst SD-WAN multitenancy.
Procedure
| 1. | Log in to SD-WAN Manager as the provider admin user. |
|
| 2. | Create SD-WAN Manager cluster.
|
|
| 3. | Create and configure Cisco SD-WAN Validator instances. Refer to the Deploy SD-WAN Validator topic in the Overlay Network Bring-Up Process section of the Cisco Catalyst SD-WAN Getting Started Guide. While configuring Cisco SD-WAN Validator instances, configure the service provider organization name ( Example:
|
|
| 4. | Create Cisco SD-WAN Controller instances. Refer to the Deploy SD-WAN Controller topic in the Overlay Network Bring-Up Process section of the Cisco Catalyst SD-WAN Getting Started Guide.
|
|
| 5. | Add Cisco SD-WAN Controller to the overlay network. |
|
| 6. | Onboard new tenants. See Add a new tenant. |
Create a 3-Node SD-WAN Manager multitenant cluster
To deploy and configure a 3-node SD-WAN Manager cluster to support a multitenant environment.
Procedure
| 1. | Download the Cisco vManage Release 20.6.1 or later software image from Cisco Software Download. |
|
| 2. | Create three SD-WAN Manager instances by installing the downloaded software image file. Refer to the Deploy SD-WAN Manager topic in the Overlay Network Bring-Up Process section of the Cisco Catalyst SD-WAN Getting Started Guide.
|
|
| 3. | Complete the following operations on the first SD-WAN Manager instance: |
|
| 4. | Complete the following operations on the second and third SD-WAN Manager instances (vManage2 and vManage 3 in the example): Enable multitenancy only on the first SD-WAN Manager instance. |
|
| 5. | Log in to the first SD-WAN Manager instance and add the second instance to the cluster.
|
|
| 6. | Repeat the previous step to add additional SD-WAN Manager instances to the cluster. After rebooting, you have to select persona (non-cloud setup) from CLI and services starts running on the node according to the selected persona. |
Create a 6 node SD-WAN Manager multitenant cluster
To deploy and configure a 6-node SD-WAN Manager cluster to support a multitenant environment.
Procedure
| 1. | Download the Cisco vManage Release 20.6.1 or later software image from Cisco Software Download. |
|
| 2. | Create six SD-WAN Manager instances by installing the downloaded software image file. Refer to the Deploy SD-WAN Manager topic in the Overlay Network Bring-Up Process section of the Cisco Catalyst SD-WAN Getting Started Guide.
|
|
| 3. | Complete the following operations on the first SD-WAN Manager instance: |
|
| 4. | Complete the following operations on the second and third SD-WAN Manager instances (vManage2 and vManage 3 in the example): Do not enable multitenancy on vManage2 and vManage3. |
|
| 5. | Log in to the first SD-WAN Manager instance and add the second instance to the cluster.
|
|
| 6. | Repeat the previous step to add additional SD-WAN Manager instances to the cluster (vManage3 through vManage6 in the example). |
Enable multitenancy on SD-WAN Manager
Administrator triggered disaster recovery is supported for multitenant clusters from Cisco vManage Release 20.6.1 or later releases.
After you enable multitenancy on SD-WAN Manager, you cannot migrate it back to single tenant mode.
SD-WAN Manager reboots in multitenant mode and when a provider user logs in to SD-WAN Manager, the provider dashboard appears.
Before you begin
Do not migrate an existing single-tenant SD-WAN Manager into multitenant mode, even if you invalidate or delete all devices from the existing SD-WAN Manager. Instead, download and install a new software image of Cisco vManage Release 20.6.1 or a later release.
Procedure
| 1. | Launch SD-WAN Manager using the URL https://vmanage-ip-address:port. Log in as the provider admin user. |
|
| 2. | From the SD-WAN Manager menu, choose . If you are using SD-WAN ManagerRelease 20.12.x or earlier, click Edit. |
|
| 3. | In the Tenancy field, click Multitenant. |
|
| 4. | In the Domain field, enter the domain name of the service provider (for example, managed-sp.com). |
|
| 5. | Enter a Cluster Id (for example, cluster-1 or 123456). |
|
| 6. | Click Save. If you are using SD-WAN Manager Release 20.12.x or earlier, click Proceed to confirm that you want to change the tenancy mode. The Domain and Cluster Id values created in steps 5 and 6 serve as the Provider FQDN. Ensure these values conform to current DNS naming conventions. You can not modify these values after the configuration is saved. To change these values, a new SD-WAN Manager cluster need to be deployed. For more details on provider and tenant DNS requirements, refer to step 3d in Add a new tenant. |
Add SD-WAN Controller
Follow these steps to add SD-WAN Controller
Procedure
| 1. | Log in to SD-WAN Manager as the provider admin user. |
|
| 2. | From the SD-WAN Manager menu, choose . |
|
| 3. | ||
| 4. | Click Controllers. |
|
| 5. | Click Add Controller. |
|
| 6. | In the Add Controller dialog box, do the following:
|
|
| 7. | From the SD-WAN Manager menu, choose . For the newly added SD-WAN Controller, the Operation Status reads CSR Generated.
|
|
| 8. | Install certificate.
|
|
| 9. | Change the mode of the newly added SD-WAN Controller to Manager Mode by attaching a template to the device. |
-
SD-WAN Managerpushes the configuration from the template to the new controller.
-
In the page, the Mode for the SD-WAN Controller shows Manager Mode. The new SD-WAN Controller is ready to be used in your mutitenant deployment.