top of page

Search


ACI MicroSegmentation
Application Profile --> EPG --> Intra EGP Isolation --> It's Unenforced (default) --> Change it to enforced and EndPoint within EGP will...

Mukesh Chanderia
Jul 20, 20241 min read
ACI Upgrade
Admin > Firmware apic1 # show firmware upgrade status Pod Node Current-Firmware Target-Firmware Status Upgrade-Progress(%) ...

Mukesh Chanderia
Jul 18, 20246 min read


Troubleshooting ACI Constructs
Troubleshooting Logical Constructs Check if leaf has required vrf Leaf# show vrf all 2. Check on VRF if "Policy Control Enforcement...

Mukesh Chanderia
Jun 21, 202415 min read


ACI Multi-Pod Deployment
Each POD has local instance of ISIS and COOP Inter-POD connectivity is through IPN Inter-POD BUM uses PIM-Bidir BGP in between PODs to...

Mukesh Chanderia
May 16, 20247 min read


Nexus Dashboard Orchestrator
Step 1: Log into ND click --> ok Step 2: Go to Dashboard it will take you to One View display Step 3: Go to Admin Console Step 4: configure a route for the out-of-band access to your site. Go to Infrastructure >Cluster Configuration . In the Routes area, click Edit (the pencil symbol), choose Add Management Network Routes , enter 192.168.11.0/24 , confirm it, and click Save . Log in putty in ND and you must see management route Step 5: Add Site Click on site Add site Ste

Mukesh Chanderia
May 16, 20249 min read


ACI Vmware DVS
APIC integrates with 3rd party VMMs Three options with Virtual VMM: VMware DVS Cisco ACI Virtual Edge Cisco Application Virtual Switch...

Mukesh Chanderia
Apr 22, 202424 min read


SNMP ACI
Port 161 ---> It is used for read based queries Port 162 ---> It is used for sending out traps. Configuring SNMP

Mukesh Chanderia
Apr 22, 20241 min read


ACI Multi Site
Multi-Site Connectivity can be done through ISN. The ISN between sites must support these specific functionalities: System --> System...

Mukesh Chanderia
Apr 15, 202433 min read


ACI Multi-Pod
Features of ACI Multi-Pod Disaster Recovery : Helps create a system that ensures business operations continue even during disasters....

Mukesh Chanderia
Mar 31, 202424 min read


PBR end-to-end Packet Flow
Each EGP is represented by PCTag 2. Shadow EPG (Firewall) connect to the service Device (EPG) 3. Traffic in between EGPs will be...

Mukesh Chanderia
Mar 29, 20241 min read


Service Graph PBR
Introduction Pre-PBR Deployment Traffic Flow: Before deploying a service graph with Policy-Based Routing (PBR), Cisco ACI relies on its...

Mukesh Chanderia
Mar 28, 20243 min read


Contract Preferred Group
The requirement here is that EPG 1 – 4 should be allowed to talk to each other without any security rules, while the rest EPGs 5 - 7...

Mukesh Chanderia
Dec 17, 20231 min read


Contract with vzAny & Priority
What is vzAny? In Cisco ACI, each VRF automatically has a special object called vzAny : It represents all EPGs inside that VRF. Instead...

Mukesh Chanderia
Dec 17, 20234 min read


AAA & RBAC ACI
Default fallback login APIC GUI : apic:fallback\\admin APIC CLI : apic#fallback\\admin Step 1 : Create a TACAS+ Provider Group 2) Create...

Mukesh Chanderia
Nov 27, 20234 min read


ACI SPAN
SPAN (Switched Port Analyzer) Types of SPAN Local SPAN Support: Supported by Cisco. Functionality: Traffic is mirrored to an interface...

Mukesh Chanderia
Nov 26, 20233 min read


pcTag (zoning-rule) & Policy TCAM
Understanding pcTag in Cisco ACI 1. What is pcTag? pcTag (Policy Control Tag): A unique identifier assigned to each Endpoint Group (EPG)...

Mukesh Chanderia
Nov 21, 202310 min read


Shared Service
Shared Service Definition: A shared service, such as the Domain Name System (DNS), is utilized by multiple tenants (organizations) within...

Mukesh Chanderia
Nov 21, 20234 min read


Transit Routing in ACI
Default-export route profile with a prefix-list in the L3Out. In this scenario, the Legacy router must establish communication with the...

Mukesh Chanderia
Nov 21, 20239 min read


Certificate in ACI
Steps to Install Certificate in APIC 1) Download root & intermediate CA certificate. 2) Open root CA certificate in notepad and copy...

Mukesh Chanderia
Nov 13, 20232 min read


Syslog & Backup in ACI
Step 1: Let’s use one of the leafs with ip 10.197.205.38 as remote server (Practically it would be server in your network) Step 2: We are...

Mukesh Chanderia
Nov 13, 20231 min read
bottom of page