📊
Centralised SD-WAN Dashboard
SD-WAN Manager provides a single operational view across all Catalyst 8000 Series branch routers — device status, WAN link health, SD-WAN SLA compliance, tunnel status, and security events. All policy changes, provisioning tasks, and troubleshooting operations execute from this single interface without CLI access to individual devices.
⚡
Zero Touch Provisioning
New Catalyst 8000 appliances plug into the branch network and automatically authenticate with SD-WAN Manager using certificate-based identity. Pre-staged device templates and policies apply automatically — full SD-WAN configuration completes without any on-site IT involvement, reducing branch rollout cost to hardware installation only.
🔍
ThousandEyes Integration
ThousandEyes active monitoring agents run on Catalyst SD-WAN devices, providing synthetic probes to cloud applications, SaaS services, and internet paths. SD-WAN Manager surfaces ThousandEyes application performance data alongside SD-WAN telemetry — connecting WAN path decisions to actual end-user application experience metrics.
☁️
Cloud-On-Ramp Automation
Cloud-on-ramp automatically creates and manages SD-WAN gateway instances in AWS, Azure, and Google Cloud — establishing encrypted SD-WAN tunnels from branch to cloud. Traffic from each branch intelligently routes to the nearest cloud gateway, minimising latency for cloud application access without hairpinning through the data centre.
🔐
Segmentation — Multi-VPN
SD-WAN Manager manages multiple VPN segments across the WAN fabric — enabling traffic separation between guest WiFi, employee networks, IoT devices, and business-critical applications. Segment-level policy prevents inter-segment communication without explicit policy, enforcing micro-segmentation across the entire distributed network from a single management point.
🔗
Umbrella Cloud Security
SD-WAN Manager integrates with Cisco Umbrella to apply cloud-delivered DNS security, web filtering, and CASB across all SD-WAN branches without requiring additional on-premise security hardware at each site. Branch internet traffic routes through Umbrella for inspection regardless of which WAN link it uses.