Skip to main content

Cisco SD-WAN Policies

Policies are an essential part of the Cisco SD-WAN solution and are used to influence the packet flow across the overlay fabric. Policies are created on vManage through the Policy Wizard GUI and when applied, are pushed via NETCONF transactions either to the vSmart controllers (centralized policy) or directly to vEdges (localized policy). 

Controllers Identity and Whitelisting

Cisco SD-WAN Controllers can not be brought into operation unless their identity is validated by an established chain of trust. This identity validation process is intended to ensure that only trusted devices can join the SD-WAN solution while still retaining flexibility. Each controller must have a root certificate installed and a controller certificate installed and signed by a trusted CA (Certification Authority).