300-420 Question 142
Single answerAn enterprise network architect is designing an SD-Access solution for a large campus network. The architect needs to ensure that the solution supports centralized policy enforcement, seamless mobility, and secure segmentation. Which component of the SD-Access architecture is responsible for managing the control plane to enable these features?
- A
The underlay network
- B
The overlay network
- C
Cisco DNA Center
- D
LISP (Location/ID Separation Protocol)
Show answer and explanation
Correct answer: D
Explanation
In the SD-Access architecture, LISP (Location/ID Separation Protocol) manages the control plane by mapping endpoint identifiers to locations. This allows features such as centralized policy enforcement, seamless mobility, and secure segmentation to function effectively. While the underlay, overlay, and Cisco DNA Center are essential components of SD-Access, LISP specifically handles the control plane operations.
- A. Incorrect.
The underlay network provides the physical infrastructure (routers, switches, etc.) but does not manage the control plane for policy enforcement, mobility, or segmentation.
- B. Incorrect.
The overlay network builds virtualized networks over the underlay but relies on protocols like LISP to manage the control plane.
- C. Incorrect.
Cisco DNA Center provides automation, monitoring, and centralized management for SD-Access but does not handle the control plane directly.
- D. Correct.
LISP (Location/ID Separation Protocol) is responsible for managing the control plane in SD-Access, enabling features like endpoint mobility and segmentation.