<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Multi-tenancy in SD-Access in Software-Defined Access (SD-Access)</title>
    <link>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4663782#M1964</link>
    <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/147749"&gt;@Madura Malwatte&lt;/a&gt;&amp;nbsp;, We do not support that level of granularity of Roles Based Access Control with DNA Center at this time. If a fabric site has many tenants separated by L2 or L3 VNs, then we cannot limit someone from seeing the other VNs (or other site constructs) in that site. Currently we cannot even do that on a per-site basis, but that is being worked on.&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Cheers,&lt;/SPAN&gt;&lt;SPAN class="s2"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN class="s1"&gt;Scott Hodgdon&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p2"&gt;&lt;SPAN class="s3"&gt;Senior Technical Marketing Engineer&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p2"&gt;&lt;SPAN class="s3"&gt;Enterprise Networking and Cloud Group&lt;/SPAN&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 04 Aug 2022 16:05:39 GMT</pubDate>
    <dc:creator>Scott Hodgdon</dc:creator>
    <dc:date>2022-08-04T16:05:39Z</dc:date>
    <item>
      <title>Multi-tenancy in SD-Access</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4429926#M1413</link>
      <description>&lt;P&gt;What's the correct way to do multi-tenancy in SD-Access? I haven't been able to find anything about it. Is it just using separate VN's? - but that doesn't seem like real multi-tenancy, as a single organisation/tenant could have multiple VNs for their macro-segmentation...&lt;/P&gt;</description>
      <pubDate>Thu, 08 Jul 2021 14:20:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4429926#M1413</guid>
      <dc:creator>Madura Malwatte</dc:creator>
      <dc:date>2021-07-08T14:20:32Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-tenancy in SD-Access</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4429943#M1414</link>
      <description>&lt;P&gt;Madura,&lt;/P&gt;
&lt;P&gt;Can you please describe in a little more detail the use case you wish for multi-tenancy ? This term can mean different things to different people, so I want to be clear on your ask before providing and answer.&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Cheers,&lt;/SPAN&gt;&lt;SPAN class="s2"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN class="s1"&gt;Scott Hodgdon&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p2"&gt;&lt;SPAN class="s3"&gt;Senior Technical Marketing Engineer&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p2"&gt;&lt;SPAN class="s3"&gt;Enterprise Networking and Cloud Group&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 08 Jul 2021 14:34:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4429943#M1414</guid>
      <dc:creator>Scott Hodgdon</dc:creator>
      <dc:date>2021-07-08T14:34:46Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-tenancy in SD-Access</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4429949#M1415</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/224745"&gt;@Scott Hodgdon&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Say, completely separate organisations that will utilize a single common campus fabric, along with a common NAC. It seems this would be just assigning a VN to each organisation - tenant1_VN, tenant2_VN, etc, then using SGTs for micro-segmentation within a tenant VN? Or is there other ways to do it?&lt;/P&gt;</description>
      <pubDate>Thu, 08 Jul 2021 14:46:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4429949#M1415</guid>
      <dc:creator>Madura Malwatte</dc:creator>
      <dc:date>2021-07-08T14:46:11Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-tenancy in SD-Access</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4432634#M1418</link>
      <description>&lt;P&gt;Hey Madura, correct, currently we have L3VNs. Network tenants could be placed in L3VNs and I have worked on SD-Access networks designed as such, one with around 90x L3VNs representing different business entities. We're developing L2VNs and some level of support for overlapping IP ranges , which was announced at Cisco Live a few months back. Some details can be found in BRKENS-2008, some information can be found here, &lt;A href="https://www.ciscolive.com/global/on-demand-library.html?search=dolphin#/session/16106298294090015TSm" target="_blank"&gt;https://www.ciscolive.com/global/on-demand-library.html?search=dolphin#/session/16106298294090015TSm&lt;/A&gt; , HTH, Jerome&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 13 Jul 2021 21:29:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4432634#M1418</guid>
      <dc:creator>jedolphi</dc:creator>
      <dc:date>2021-07-13T21:29:44Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-tenancy in SD-Access</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4663282#M1963</link>
      <description>&lt;P&gt;Hi Scott&lt;/P&gt;&lt;P&gt;Yea this term is little bit confuse&amp;nbsp;&lt;/P&gt;&lt;P&gt;Could I have mult tenants usinf the same fabric?&lt;/P&gt;&lt;P&gt;Which means different organizations login to DNA to manage thier own logical fabric?&amp;nbsp;&lt;/P&gt;&lt;P&gt;Example, we build physical campus network, then create different tenants to manage their own logical fabric over the same physical network devices&lt;/P&gt;&lt;P&gt;Or its only just VNs to configure this multi tenants&lt;/P&gt;</description>
      <pubDate>Wed, 03 Aug 2022 21:56:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4663282#M1963</guid>
      <dc:creator>Hamada Ahmed</dc:creator>
      <dc:date>2022-08-03T21:56:09Z</dc:date>
    </item>
    <item>
      <title>Re: Multi-tenancy in SD-Access</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4663782#M1964</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/147749"&gt;@Madura Malwatte&lt;/a&gt;&amp;nbsp;, We do not support that level of granularity of Roles Based Access Control with DNA Center at this time. If a fabric site has many tenants separated by L2 or L3 VNs, then we cannot limit someone from seeing the other VNs (or other site constructs) in that site. Currently we cannot even do that on a per-site basis, but that is being worked on.&lt;/P&gt;
&lt;P class="p1"&gt;&lt;SPAN class="s1"&gt;Cheers,&lt;/SPAN&gt;&lt;SPAN class="s2"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN class="s1"&gt;Scott Hodgdon&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p2"&gt;&lt;SPAN class="s3"&gt;Senior Technical Marketing Engineer&lt;/SPAN&gt;&lt;/P&gt;
&lt;P class="p2"&gt;&lt;SPAN class="s3"&gt;Enterprise Networking and Cloud Group&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 04 Aug 2022 16:05:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/multi-tenancy-in-sd-access/m-p/4663782#M1964</guid>
      <dc:creator>Scott Hodgdon</dc:creator>
      <dc:date>2022-08-04T16:05:39Z</dc:date>
    </item>
  </channel>
</rss>

