<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACE VIP Design Query in Application Networking</title>
    <link>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018128#M38352</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This should be possible.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;similar question posted here:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="https://community.cisco.com/thread/2069785"&gt;https://supportforums.cisco.com/thread/2069785&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-&lt;/P&gt;&lt;P&gt;Siva&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 18 Aug 2012 14:35:57 GMT</pubDate>
    <dc:creator>sivaksiv</dc:creator>
    <dc:date>2012-08-18T14:35:57Z</dc:date>
    <item>
      <title>ACE VIP Design Query</title>
      <link>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018127#M38351</link>
      <description>&lt;P&gt;Hi all,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am configuring a ACE in routed mode. I would like to ask if the VIP is of a different subnet(10.10.138.14) from the interface vlans (10.10.160.192/29, 100.100.160.208/29, 20.20.88.0/24,200.200.132.0/24), would the load-balancing work? Is there a need to configure the VIP on a vlan or is there any additional configuration that I should be doing?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I believe it should work based on the following thread.&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="https://community.cisco.com/thread/132175"&gt;https://supportforums.cisco.com/thread/132175&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;int gi1/1&lt;/P&gt;&lt;P&gt;description Connections to Client&lt;/P&gt;&lt;P&gt;switchport trunk allowed vlan 1,10,100&lt;/P&gt;&lt;P&gt;no shutdown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;int gi1/2&lt;/P&gt;&lt;P&gt;description Connections to Servers&lt;/P&gt;&lt;P&gt; switchport trunk allowed vlan 20,200&lt;/P&gt;&lt;P&gt;no shutdown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;#Client Side VLAN&lt;/P&gt;&lt;P&gt;interface vlan 10&lt;/P&gt;&lt;P&gt;description Client Side VLAN&lt;/P&gt;&lt;P&gt;ip address 10.10.160.196 255.255.255.248&lt;/P&gt;&lt;P&gt;peer ip address 10.10.88.197 255.255.255.248&lt;/P&gt;&lt;P&gt;alias 10.10.88.198&amp;nbsp; 255.255.255.248&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface vlan 100&lt;/P&gt;&lt;P&gt;description Client Side VLAN&lt;/P&gt;&lt;P&gt;ip address 100.100.160.212 255.255.255.248&lt;/P&gt;&lt;P&gt;peer ip address 100.100.160.213 255.255.255.248&lt;/P&gt;&lt;P&gt;alias 100.100.160.214 255.255.255.248&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;#Server Side VLAN&lt;/P&gt;&lt;P&gt;interface vlan 20&lt;/P&gt;&lt;P&gt;description App(Server) VLAN&lt;/P&gt;&lt;P&gt;ip address 20.20.88.4 255.255.255.0&lt;/P&gt;&lt;P&gt;peer ip address 20.20.88.5 255.255.255.0&lt;/P&gt;&lt;P&gt;alias 20.20.88.250&amp;nbsp; 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface vlan 200&lt;/P&gt;&lt;P&gt;description App(Client) VLAN&lt;/P&gt;&lt;P&gt;ip address 200.200.132.4 255.255.255.0&lt;/P&gt;&lt;P&gt;peer ip address 200.200.132.5 255.255.255.0&lt;/P&gt;&lt;P&gt;alias 200.200.132.250 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;#VIP Config&lt;/P&gt;&lt;P&gt;class-map CM_1&lt;/P&gt;&lt;P&gt;match virtual-address 10.10.138.14 255.255.255.255 tcp eq 80&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;class-map CM_2&lt;/P&gt;&lt;P&gt;match virtual-address 10.10.138.11 255.255.255.255 tcp eq 7080&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;class-map CM_3&lt;/P&gt;&lt;P&gt;match virtual-address 100.100.91.14 255.255.255.255 tcp eq 4561&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;class-map CM_4&lt;/P&gt;&lt;P&gt;match virtual-address 100.100.91.13 255.255.255.255 tcp eq 4561&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks.&lt;/P&gt;</description>
      <pubDate>Sat, 18 Aug 2012 12:39:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018127#M38351</guid>
      <dc:creator>Lim Victor</dc:creator>
      <dc:date>2012-08-18T12:39:29Z</dc:date>
    </item>
    <item>
      <title>ACE VIP Design Query</title>
      <link>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018128#M38352</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This should be possible.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;similar question posted here:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="https://community.cisco.com/thread/2069785"&gt;https://supportforums.cisco.com/thread/2069785&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-&lt;/P&gt;&lt;P&gt;Siva&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 18 Aug 2012 14:35:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018128#M38352</guid>
      <dc:creator>sivaksiv</dc:creator>
      <dc:date>2012-08-18T14:35:57Z</dc:date>
    </item>
    <item>
      <title>Re: ACE VIP Design Query</title>
      <link>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018129#M38353</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Siva,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just what I needed.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks &lt;SPAN __jive_emoticon_name="happy"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 18 Aug 2012 14:42:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018129#M38353</guid>
      <dc:creator>Lim Victor</dc:creator>
      <dc:date>2012-08-18T14:42:28Z</dc:date>
    </item>
    <item>
      <title>Re: ACE VIP Design Query</title>
      <link>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018130#M38354</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Another question that I have.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the gateway for the servers in my server VLANs are not on the ACE interface, anything that i will need to take note for the below scenarios?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1)&amp;nbsp; For requests coming from the client vlan to any of the server vlan(vlan 20 or 200)?&lt;/P&gt;&lt;P&gt;2)&amp;nbsp; For requests coming from the server vlan 20 to server vlan 200?&lt;/P&gt;&lt;P&gt;3)&amp;nbsp; For requests coming from the server vlan 20 to server vlan 20? Should i be doing source nat like below? Any problems if I use the alias IP(20.20.88.250 for vlan 20 and 200.200.132.250 for vlan 200) of the server vlans as the nat IP?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map match-all L4-MAP-SNAT-INTERNAL-20&lt;/P&gt;&lt;P&gt;2 match source address 20.20.88.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map match-all L4-MAP-SNAT-INTERNAL-200&lt;/P&gt;&lt;P&gt;2 match source address 200.200.132.0 255.255.255.0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map multi-match PM_1&lt;/P&gt;&lt;P&gt;class L4-MAP-SNAT-INTERNAL-200&lt;/P&gt;&lt;P&gt;nat dynamic 1 vlan 200&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map multi-match PM_2&lt;/P&gt;&lt;P&gt;class L4-MAP-SNAT-INTERNAL-200&lt;/P&gt;&lt;P&gt;nat dynamic 1 vlan 200&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map multi-match PM_3&lt;/P&gt;&lt;P&gt;class L4-MAP-SNAT-INTERNAL-20&lt;/P&gt;&lt;P&gt;nat dynamic 2 vlan 20&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map multi-match PM_4&lt;/P&gt;&lt;P&gt;class L4-MAP-SNAT-INTERNAL-20&lt;/P&gt;&lt;P&gt;nat dynamic 2 vlan 20&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface vlan 20&lt;/P&gt;&lt;P&gt;service-policy input PM_3&lt;/P&gt;&lt;P&gt;service-policy input PM_4&lt;/P&gt;&lt;P&gt;nat pool 2 20.20.88.250 20.20.88.250 netmask 255.255.255.255 pat&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface vlan 200&lt;/P&gt;&lt;P&gt;service-policy input PM_1&lt;/P&gt;&lt;P&gt;service-policy input PM_2&lt;/P&gt;&lt;P&gt;nat pool 1 200.200.132.250 200.200.132.250 netmask 255.255.255.255 pat&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 19 Aug 2012 09:56:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018130#M38354</guid>
      <dc:creator>Lim Victor</dc:creator>
      <dc:date>2012-08-19T09:56:34Z</dc:date>
    </item>
    <item>
      <title>ACE VIP Design Query</title>
      <link>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018131#M38355</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If the server gateway is not ACE ip then you would require SNAT to make sure the reply comes back to ACE for all 3 scenarios.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The service-policy should be applied on client vlan for scenario 1. Rest looks good and this should make sure the return traffic comes back to ACE.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Siva&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 19 Aug 2012 10:22:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018131#M38355</guid>
      <dc:creator>sivaksiv</dc:creator>
      <dc:date>2012-08-19T10:22:41Z</dc:date>
    </item>
    <item>
      <title>Re: ACE VIP Design Query</title>
      <link>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018132#M38356</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Siva,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tested it yesterday and my ACE is working well. I amended the nat pool ip address to use a different ip address from the alias IP address.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;int gi1/1&lt;/P&gt;&lt;P&gt;description Connections to Client&lt;/P&gt;&lt;P&gt;switchport trunk allowed vlan 1,10,100&lt;/P&gt;&lt;P&gt;no shutdown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;int gi1/2&lt;/P&gt;&lt;P&gt;description Connections to Servers&lt;/P&gt;&lt;P&gt;switchport trunk allowed vlan 20,200&lt;/P&gt;&lt;P&gt;no shutdown&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;#Client Side VLAN&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface vlan 10&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;description Client Side VLAN&lt;/P&gt;&lt;P&gt;ip address 10.10.160.196 255.255.255.248&lt;/P&gt;&lt;P&gt;peer ip address 10.10.88.197 255.255.255.248&lt;/P&gt;&lt;P&gt;alias 10.10.88.198&amp;nbsp; 255.255.255.248&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;#Server Side VLAN&lt;/P&gt;&lt;P&gt;interface vlan 20&lt;/P&gt;&lt;P&gt;description App(Server) VLAN&lt;/P&gt;&lt;P&gt;ip address 20.20.88.4 255.255.255.0&lt;/P&gt;&lt;P&gt;peer ip address 20.20.88.5 255.255.255.0&lt;/P&gt;&lt;P&gt;alias 20.20.88.250&amp;nbsp; 255.255.255.0&lt;/P&gt;&lt;P&gt;service-policy input PM_1&lt;/P&gt;&lt;P&gt;service-policy input PM_2&lt;/P&gt;&lt;P&gt;service-policy input PM_3&lt;/P&gt;&lt;P&gt;service-policy input PM_4&lt;/P&gt;&lt;P&gt;nat pool 2 20.20.88.251 20.20.88.251 netmask 255.255.255.255 pat&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;interface vlan 200&lt;/P&gt;&lt;P&gt;description App(Client) VLAN&lt;/P&gt;&lt;P&gt;ip address 200.200.132.4 255.255.255.0&lt;/P&gt;&lt;P&gt;peer ip address 200.200.132.5 255.255.255.0&lt;/P&gt;&lt;P&gt;alias 200.200.132.250 255.255.255.0&lt;/P&gt;&lt;P&gt;service-policy input PM_1&lt;/P&gt;&lt;P&gt;service-policy input PM_2&lt;/P&gt;&lt;P&gt;service-policy input PM_3&lt;/P&gt;&lt;P&gt;service-policy input PM_4&lt;/P&gt;&lt;P&gt;nat pool 1 200.200.132.251 200.200.132.251 netmask 255.255.255.255 pat&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;#VIP Config&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map CM_1&lt;/P&gt;&lt;P&gt;match virtual-address 10.10.138.14 255.255.255.255 tcp eq 80&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map CM_2&lt;/P&gt;&lt;P&gt;match virtual-address 10.10.138.11 255.255.255.255 tcp eq 7080&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map CM_3&lt;/P&gt;&lt;P&gt;match virtual-address 100.100.91.14 255.255.255.255 tcp eq 4561&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;class-map CM_4&lt;/P&gt;&lt;P&gt;match virtual-address 100.100.91.13 255.255.255.255 tcp eq 4561&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;#Policy Map&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map multi-match PM_1&lt;/P&gt;&lt;P&gt;class CM_1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance policy P_1&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip icmp-reply active&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat dynamic 1 vlan 200&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map multi-match PM_2&lt;/P&gt;&lt;P&gt;class CM_2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance policy P_2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip icmp-reply active&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat dynamic 1 vlan 200&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map multi-match PM_3&lt;/P&gt;&lt;P&gt;class CM_3&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance policy P_3&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip icmp-reply active&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat dynamic 2 vlan 20&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;policy-map multi-match PM_4&lt;/P&gt;&lt;P&gt;class CM_4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip inservice&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance policy P_4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loadbalance vip icmp-reply active&amp;nbsp; &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; nat dynamic 2 vlan 20&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks so much for the guidance &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 21 Aug 2012 01:42:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/application-networking/ace-vip-design-query/m-p/2018132#M38356</guid>
      <dc:creator>Lim Victor</dc:creator>
      <dc:date>2012-08-21T01:42:51Z</dc:date>
    </item>
  </channel>
</rss>

