Cisco CCIE Security 350-701 – SDN-Control-MGMT-DATA Plane

  • By
  • February 28, 2023
0 Comment

1. Management Plane

The next thing we’ll try to understand the management plane. The management plane relates to, we can say, the most of the tasks which are relating to managing your device. Like you may want to configure the device. Let’s say I have a router and I want to make some changes to the router configurations. So what you do is you go to the command line and then you initiate a telenet connection or SSH connection, and then you go to the CLI of that particular router and you start typing the commands. So this is one example of your management plane task.

So maybe you want to monitor or maybe you issue some of the show commands to verify the status of the interfaces or you verify the routing table. This is again another example of your management plane. So maybe you’re trying to monitor or maybe you make some changes to troubleshoot as well. So most of the things like here when we talk about most of these things, comes under the management plane.

Not only that, even if you are using some kind of network device management options like maybe you’re running some kind of SNMP to collect the statistics of your network information like these kind of things also comes under the data print or collecting the traffic using the NetFlow or enabling some other services like Time Synchronization by using NTP or generating some log messages or triple A options. Now, these are all the examples common as a management plane.

The management plan relates to not only managing your network, apart from that, you’re also using some other tools or some other protocols which are generally used for collecting or monitoring your network, collecting the statistics. And then those statistics will be displayed by using SNMP softwares running on SNMP SNMP servers. So with the help of management plan, we can, we can identify the problems and take an action.

2. SDN-Management Plane

So the next thing we’ll try to understand the management plane with Sdn as we are moving on to the Sdn topic, how the management plane is going to impact or is there any change in the behavior of the management plane with respect to Sdn. So we’ll try to understand that. So again, the functionality of the management plane remains the same. So we are not going to make any changes here as well. Like we’ll take simple example, let’s say I got my router here and if you want to manage this router, let’s say in this example, this is router two, I want to make some changes, maybe changes or you want to verify the configurations, whatever you want to do.

You generally go to the command line and initiate telnet or SSH connection. So you log into the computer and then use some footy software and you log into the command line by using either SSH or telnet to individual router, individual device. And then you type in the specific commands on that particular command line. So this is a typical way you do in general before Sdn we can say now with Sdn we almost do the same thing. So we are not going to replace the Internet protocol or SSH, we use SSH majorly here SSH, or if it is in GUI then probably we use Http, Https. So here also we do the same thing. But the only difference is now in our network we do have a controller now. So in the previous topics we already discussed the job of a controller. Now what I want is I want to tell it to the router. Now my task is the same thing, I want to log into the router too, and I want to make changes to the router too. That’s something that I want. So now you don’t need to do it from your PC or from your laptop or you don’t need to log into the particular device. Now we have a centralized software we’ll be using, like in our case with Cisco, we have something like Cisco DNA. So we’ll be using some kind of centralized software running on your controller or on the application on the server. Now, with this from this controller, what we are going to do is we are going to issue the specific commands. Now in this software you have a list of devices already present in a GI format.

Now what I’ll be doing is I’m going to select router two from the list or router three. Router four, you need to select all the routers at once. And then I can go to a specific command utilizer. There is an option called over there, I can go and say okay, issue this specific command. I can say that connect to these devices and issue a specific show commands or make these changes. I can type in the commands, whatever you want. Now what I’m doing is I’m not using external putty software or I’m not using any computer. So everything we are going to manage from the controller so the controller can have the capability to initiate SSS session to the individual device where no longer the user has to log in manually. Or even you can schedule this, you can go and say okay, I can schedule this at around maybe 05:00 A. m.

On this particular date I want my software to do this task and you don’t need to be physically present over there. Okay, so this is something what you can do with the controllers. So still we are doing a similar job, but it can be automated. It can be automated with the help of Sdn software or the SGN controllers. Okay? So that’s what I said. Schedule it and issue the commands. Or even you can say okay, at this particular point of time, maybe in the 05:00 A. m. I want my controller to go and issue specific command. Let’s say show process CPU like someone reported around five four a. M. The CPU utilization is going high. Or collect the network statistics, get all this information around this, you can display that information back to the controller. Here the controller. When we are using the SGN controllers, we are not actually changing the existing management plane job.

It still does the same thing and still it uses the similar same protocols. But instead of doing it manually, we are telling the controller to do the same thing. So we are doing it from the centralized console by using some software over there. So this part is same. Additionally, you may see some of the new mechanisms has been developed to manage the devices. Not all the devices support this. It like we have something called Netcom young and some USB chooses some kind of XML based commands. Now these things, let me just quickly give you an overview on this exactly. Netcom stands for network configuration protocol. So it is basically providing a mechanism to install the configurations or install some kind of configurations or make any changes to the existing configurations.

Or you can also delete the configuration on the networking devices. Now, the agents are nothing but your networking devices. You can send these instructions from a centralized console using this one. So basically this NETCONF uses some kind of scripts which are XML based. XML stands for Extensible Markup Language which is a kind of data encoding for your messages or we can say for your configuration data. And whereas again, Yang is actually a modal language. We call it as a modeling language which is going to describe the format of the changes or the configuration changes. Whereas Net confuses actually a protocol that is going to apply. So we can say this Yang is like a model data model which defines the format. Whereas Net conf is actually a protocol which is going to apply the changes and they use some kind of XML based scripts. So not all the devices may support. Like maybe you have some router, maybe not all vendors. Or if you’re using some Cisco devices, maybe all Cisco devices may not support this new mechanism. So that is something you need to know.

Comments
* The most recent comment are at the top

Interesting posts

Achieving Your ISO Certification Made Simple

So, you’ve decided to step up your game and snag that ISO certification, huh? Good on you! Whether it’s to polish your company’s reputation, meet supplier requirements, or enhance operational efficiency, getting ISO certified is like telling the world, “Hey, we really know what we’re doing!” But, like with any worthwhile endeavor, the road to… Read More »

What is Replacing Microsoft MCSA Certification?

Hey there! If you’ve been around the IT block for a while, you might fondly remember when bagging a Microsoft Certified Solutions Associate (MCSA) certification was almost a rite of passage for IT pros. This badge of honor was crucial for those who wanted to master Microsoft platforms and prove their mettle in a competitive… Read More »

5 Easiest Ways to Get CRISC Certification

CRISC Certification – Steps to Triumph Are you ready to stand out in the ever-evolving fields of risk management and information security? Achieving a Certified in Risk and Information Systems Control (CRISC) certification is more than just adding a prestigious title next to your name — it’s a powerful statement about your expertise in safeguarding… Read More »

Complete VMware Certification Guide 2024

Hello, tech aficionados and IT wizards! Ever thought about propelling your career forward with a VMware certification? If you have, great – you’ve landed in the perfect spot. And if you haven’t, get ready to be captivated. VMware stands at the forefront of virtualization and cloud infrastructure globally, presenting a comprehensive certification program tailored to… Read More »

How Cisco CCNA Certification Can Boost Your IT Career?

Hello, fellow tech aficionados! Are you itching to climb the IT career ladder but find yourself at a bit of a standstill? Maybe it’s time to spice up your resume with some serious certification action. And what better way to do that than with the Cisco Certified Network Associate (CCNA) certification? This little gem is… Read More »

What You Need to Know to Become Certified Information Security Manager?

Curious about the path to Certified Information Security Manager? Imagine embarking on a journey where each step brings you closer to mastering the complex realm of information security management. Picture yourself wielding the prestigious Certified Information Security Manager (CISM) certification, a beacon of expertise administered by the esteemed Information Systems Audit and Control Association (ISACA).… Read More »

img