Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

 

Creating SD-WAN Policy Intents

 

You can create policy intents for SD-WAN policies from the SD-WAN Policy page.

To create an SD-WAN policy intent:

  1. Select Configuration > SD-WAN > SD-WAN Policy in Customer Portal.

    The SD-WAN Policy page appears.

  2. Click the add icon (+).

    The options to create policy intents appear inline on the SD-WAN Policy page.

  3. Enter the policy intent information according to the guidelines provided in Table 1.
  4. Click Save to create the policy intent.

    The SD-WAN policy intent is saved and a confirmation message is displayed.

    Note

    After the policy intent is created, you must deploy the policy to ensure that the changes take effect on the applicable sites, departments, or applications. When an SD-WAN policy intent is created, the Undeployed field is incremented by one indicating that intents are pending deployment.

Note

The SD-WAN Essentials service does not support department-level policy intents or SLA-based steering profiles.

Table 1: Create SD-WAN Policy Intent Settings

Field

Guidelines

Source

You can select the source endpoints in one of the following ways:

  • Select source endpoints from the displayed list of departments, sites, or site groups, or a combination of these. Click the source endpoints to select them.

  • Select the source endpoints from the complete list of departments, sites, and site groups.

    To view the complete list of departments, sites, and site groups.

    1. Click View more results. The complete list of departments, sites, and site groups is displayed in the End Points pane on the right.
    2. (Optional) Hover over a department or site group and click the edit icon to edit the department or site group. You cannot edit a site.
    3. Click the add icon (+) to select the endpoint.
  • Enter an abbreviation in the Source field to select the endpoint from a filtered list of departments, sites, or site groups. To view a filtered list of departments, sites, or site groups, enter DEPT, SITE, or STGP, respectively. The abbreviation is not case-sensitive. You can select the source endpoint in one of the following ways:

    • Click the endpoints in the filtered list to select them.

    • Click View more results to select the endpoint from the complete list of departments, sites, and site groups.

    • Click Add new department or Add new sitegroup to create new departments or site groups and select them. The Create Site Group page or Add Department page appears based on your selection. See Add a Department and Creating Site Groups for information about creating site groups and departments.

  • Create site groups or departments to select the source endpoint from the newly created site group or department.

    To create site groups or departments:

    1. Click anywhere within the Source field.
    2. Click the lesser-than icon (<) on the right.

      The list of available departments, sites, and site groups is displayed in the End Points pane on the right.

    3. (Optional) To view more information about a source endpoint, hover over the endpoint click the details icon.
    4. Click the add icon (+) on the top right of the pane.
    5. Click Department or Site Group as needed. The Add Department page or Create Site Group page appears based on your selection. See Add a Department and Creating Site Groups for information about creating departments and site groups.
    6. Click the check mark icon () if you want to save the department or site group to the policy intent.

      Alternatively, if you want to discard your updates, click Cancel instead.

Application

You can select the application endpoints in one of the following ways:

Note: You can select Any as an application endpoint only if you are creating an SD-WAN policy intent that references a breakout profile.

  • Select application endpoints from the displayed list of applications and application groups. Click the endpoints to select them.

  • Select the application endpoints from the complete list of applications and application groups.

    To view the complete list of applications and applications groups.

    1. Click View more results. The complete list of applications and applications groups is displayed in the End Points pane on the right.
    2. (Optional) Hover over an application group and click the edit icon to edit the application group.
    3. (Optional) Hover over an application and click the details icon to view details about the application.
    4. Click the add icon (+) to select the endpoint.
  • Enter an abbreviation in the Application field to select the endpoint from a filtered list of applications and application groups. To view a filtered list of applications and application groups, enter apps or APPS. You can select the application endpoint in one of the following ways:

    • Click the endpoints in the filtered list to select them.

    • Click View more results to select the endpoint from the complete list of applications and applications groups.

    • Click Add new application to create a new application group and select the application group. The Create Application Signature Group page appears. See Adding Application Signature Groups for information about creating application groups.

  • Create custom application groups to select the application endpoint from the newly created application group.

    To create an application group:

    1. Click anywhere within the Application field.
    2. Click the lesser-than icon (<) on the right.

      The list of available applications, departments, sites, and site groups is displayed in the End Points pane on the right.

    3. Click the add icon (+) on the top right of the pane.
    4. Click Application. The Create Application Signature Group page appears. See Adding Application Signature Groups for information about creating application groups.
    5. Click the check mark icon () if you want to save the application signature group to the policy intent.

      Alternatively, if you want to discard your updates, click Cancel instead.

Traffic Steering Profile

Select a breakout profile, SLA-based profile, or a path-based profile to apply to the source and application endpoints. You can select the profile in one of the following ways:

  • Select the breakout profile, SLA-based profile, or the path-based profile from the displayed list of profiles. Click the profile to select it.

  • Select the profile from the complete list of breakout, SLA-based, or path-based profiles:

    To view the complete list of breakout, SLA-based, or path-based profiles.

    1. Click View more results. The complete list of profiles is displayed in the End Points pane on the right.
    2. Click the add icon (+) to select the profile.
  • Select the profile by creating a custom SLA-based, path-based, or breakout profile:

    • To create a breakout profile:

      1. Click anywhere within the Profile field.
      2. Click the lesser-than icon (<) on the right.

        The list of breakout profiles is displayed in the End Points pane on the right.

      3. Click the add icon (+) on the top right of the pane and select BRKT.

        The Add Breakout Profile page appears. For more information, see Adding Breakout Profiles

Options

Name

Enter a name for the policy intent.

Description

Enter a description for the policy intent.