Add and Deploy SD-WAN Policy Intents
By default, CSO provides predefined SD-WAN policy intents, which reference predefined SLA-based steering profiles. These policy intents are applicable to all sites and can be deployed to the branch sites or enterprise hub sites of a tenant. You can also modify these intents based on your network requirements or delete them if you don’t want to use the predefined intents.
CSO also allows you to add customized intents that reference path-based steering profiles, SLA-based steering profiles, and SD-WAN breakout profiles, and then deploy the intents to the branch sites or enterprise hub sites of a tenant.
For example, if you enable local breakout on a WAN link of an enterprise hub site, you can add an SD-WAN breakout profile, reference that breakout profile in an SD-WAN policy intent, and then deploy the SD-WAN policy intent, which ensures that traffic will break out locally from the WAN link that you configured for local breakout.
SD-WAN Essentials service does not support department level policy intents or SLA-based steering profiles.
To add and deploy an SD-WAN policy intent:
Field |
Guideline |
---|---|
Name |
Enter a name for the policy intent, or use the name generated by CSO. |
Description |
Enter a description for the policy intent. |
Source |
Select one or more of the following source endpoints:
By default, All Sites is selected as the source endpoint, which means that the SD-WAN policy intent is applicable to all spoke and enterprise hub sites in the tenant. |
Application |
For an SD-WAN policy intent that references a steering profile, select the applications or application groups to which you want the steering profile parameters to be applied to the traffic. For an SD-WAN policy intent that references a breakout profile, select the applications or application groups for which you want to break out traffic. Note:
The option Any, which means that this policy intent is applicable to all applications, can be used only if you specify a breakout profile. For example, if you want all guest traffic to break out to the Internet through the underlay, you can select the guest department as the source and select Any as the application. |
Traffic Steering Profile |
Click inside the text box, and select one of the following depending on the traffic for which you plan to apply the intent:
|