<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic L2 Handoff Scalability in Software-Defined Access (SD-Access)</title>
    <link>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272672#M3986</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;I am planning on installing a Cisco 9300X switch within my fabric site that will act as a L2 handoff border node to support migration. Looking at the Catalyst Center data sheet, the C9300X supports a maxium of 32,000 endpoints when deployed as an L2 border node, with the foot notes stating the following&lt;/P&gt;&lt;P&gt;"These numbers are the sum of the total numbers of endpoints both inside and outside the fabric site when the site has a border node with a Layer-2 handoff. A maximum of 6000 hosts can be connected outside the fabric for all platforms that support Layer-2 border handoff."&lt;/P&gt;&lt;P&gt;Its not clear from the above if the 32,000 is the total number of endpoints that are supported in the IP pools/VLANs that have been enabled on the L2 border, or if this number is the maxium supported endpoints for the entire fabric. For example, if we have 10 VLANs in migration, with 6,000 endpoints outside of the fabric in these VLANs, and 26,000 endpoints inside the fabric in the associated IP pools for these VLANs, does 32,000 suggest and that no more endpoints are supported in these or additional VLANs that need to be enabled for L2 handoff?&lt;/P&gt;&lt;P&gt;Or does simply introducing the C9300X as an L2 border into the fabric lower the scalability for the entire site to 32,000? We currently have one fabric that is planned to have &amp;gt;40k endpoints. Can we add a layer 2 border to this fabric to support features such as gateway outside the fabric or will this not be supported?&lt;/P&gt;&lt;P&gt;Hope this makes sense&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P class=""&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Tue, 18 Mar 2025 18:25:57 GMT</pubDate>
    <dc:creator>dm2020</dc:creator>
    <dc:date>2025-03-18T18:25:57Z</dc:date>
    <item>
      <title>L2 Handoff Scalability</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272672#M3986</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;I am planning on installing a Cisco 9300X switch within my fabric site that will act as a L2 handoff border node to support migration. Looking at the Catalyst Center data sheet, the C9300X supports a maxium of 32,000 endpoints when deployed as an L2 border node, with the foot notes stating the following&lt;/P&gt;&lt;P&gt;"These numbers are the sum of the total numbers of endpoints both inside and outside the fabric site when the site has a border node with a Layer-2 handoff. A maximum of 6000 hosts can be connected outside the fabric for all platforms that support Layer-2 border handoff."&lt;/P&gt;&lt;P&gt;Its not clear from the above if the 32,000 is the total number of endpoints that are supported in the IP pools/VLANs that have been enabled on the L2 border, or if this number is the maxium supported endpoints for the entire fabric. For example, if we have 10 VLANs in migration, with 6,000 endpoints outside of the fabric in these VLANs, and 26,000 endpoints inside the fabric in the associated IP pools for these VLANs, does 32,000 suggest and that no more endpoints are supported in these or additional VLANs that need to be enabled for L2 handoff?&lt;/P&gt;&lt;P&gt;Or does simply introducing the C9300X as an L2 border into the fabric lower the scalability for the entire site to 32,000? We currently have one fabric that is planned to have &amp;gt;40k endpoints. Can we add a layer 2 border to this fabric to support features such as gateway outside the fabric or will this not be supported?&lt;/P&gt;&lt;P&gt;Hope this makes sense&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P class=""&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 18 Mar 2025 18:25:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272672#M3986</guid>
      <dc:creator>dm2020</dc:creator>
      <dc:date>2025-03-18T18:25:57Z</dc:date>
    </item>
    <item>
      <title>Re: L2 Handoff Scalability</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272679#M3987</link>
      <description>&lt;P&gt;It seems to be simple:&lt;/P&gt;
&lt;P class="pBody"&gt;"A maximum of 6000 hosts can be connected outside the fabric for all platforms that support Layer-2 border handoff.&lt;BR /&gt;The border node with a Layer-2 handoff contains a combination of local and remote LISP entries.&lt;BR /&gt;Local entries = LISP database&lt;BR /&gt;Remote entries = LISP map-cache"&lt;BR /&gt;If you plan to have &amp;gt;40K in fabric, with 9300X u under the risk of failure&lt;BR /&gt;&lt;BR /&gt;32K=6K(database)+26K(map-cache) doesnt mean your Fabric is limited to 32K since this point, but particular L2-handoff it is.&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 18 Mar 2025 19:13:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272679#M3987</guid>
      <dc:creator>Andrii Oliinyk</dc:creator>
      <dc:date>2025-03-18T19:13:19Z</dc:date>
    </item>
    <item>
      <title>Re: L2 Handoff Scalability</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272702#M3988</link>
      <description>&lt;P&gt;Ok its still not quite clear. Perhaps its understanding what endpoints will be populdated in the remote LISP entries/map cache. Will these just be endpoints that have been migrated to the fabric that are part of the L2 handoff, or will these be all endpoints in the fabric (wired/wireless etc) that are associated to VNs/IP pools that are not configured for L2 handoff? So in other words, will ALL endoints in the fabric be populated in the L2 border's map-cache?&lt;/P&gt;</description>
      <pubDate>Tue, 18 Mar 2025 20:10:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272702#M3988</guid>
      <dc:creator>dm2020</dc:creator>
      <dc:date>2025-03-18T20:10:24Z</dc:date>
    </item>
    <item>
      <title>Re: L2 Handoff Scalability</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272858#M3992</link>
      <description>&lt;P&gt;Not necessarily, L2NB will maintain its map-cache for remote endpoints it's interesting in. But imagine the case somebody mistaken with L2VN assignment somewhere in the Fabric &amp;amp; thus added extra Ks to summary u thought should have never exceeded l.s. 30K (remember that playing with maximum values in production is not recommended practice).&amp;nbsp;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 19 Mar 2025 07:31:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272858#M3992</guid>
      <dc:creator>Andrii Oliinyk</dc:creator>
      <dc:date>2025-03-19T07:31:48Z</dc:date>
    </item>
    <item>
      <title>Re: L2 Handoff Scalability</title>
      <link>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272871#M3993</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/774498"&gt;@dm2020&lt;/a&gt; , if there is a packet from outside L2HO heading for the fabric then L2BN will need to create one or more map cache entries for the destination inside fabric. If EPs (endpoints) outside L2HO only send packets to DC/Internet (pure S-N comms) then L2BN will only have map cache entries for border nodes. If EPs outside L2HO send packets to all endpoints inside fabric (very unlikely!) then L2BN will build map cache for all destinations inside the fabric. In other words L2BN populates map cache on demand based on what destinations it needs to know inside of fabric. You can monitor L2BN utilisation with command "&lt;SPAN&gt;show lisp platform&lt;/SPAN&gt;". The 6000 limit is redundant and I've been trying to get it removed from data sheet.&lt;/P&gt;
&lt;P&gt;Below is a show lisp platform from my lab 17.12.x 9300X for reference, you can see the limit is 32K L2 and 40K L3, however as a general rule (noting all rules can be broken, with conditions attached) I recommend to plan for max 50% utilisation (16K / 20K) since below CLI output is one dimensional scale, and in the real world there is no such thing as 1 dimensional networks.&lt;/P&gt;
&lt;P&gt;9300X#show lisp plat&lt;BR /&gt;Parallel LISP instance limit: 2000&lt;BR /&gt;RLOC forwarding support: &lt;BR /&gt;IPv4 RLOC, local: OK&lt;BR /&gt;IPv6 RLOC, local: OK&lt;BR /&gt;MAC RLOC, local: Unsupported&lt;BR /&gt;IPv4 RLOC, remote: OK&lt;BR /&gt;IPv6 RLOC, remote: OK&lt;BR /&gt;MAC RLOC, remote: Unsupported&lt;BR /&gt;Support for signal+forward: &lt;BR /&gt;IPv4: OK&lt;BR /&gt;IPv6: OK&lt;BR /&gt;MAC: OK&lt;BR /&gt;Platform reported limits: &lt;BR /&gt;&lt;STRONG&gt;&lt;FONT color="#FF0000"&gt;L3 limit: 40448&lt;/FONT&gt;&lt;/STRONG&gt;&lt;BR /&gt;Total Current utilization: 0%&lt;BR /&gt;IPv4 multiplier: 1&lt;BR /&gt;IPv4 local EID counter: 0&lt;BR /&gt;IPv4 remote EID counter: 0&lt;BR /&gt;IPv4 remote EID idle counter: 0&lt;BR /&gt;IPv4 mapping cache full: no&lt;BR /&gt;IPv6 multiplier: 2&lt;BR /&gt;IPv6 local EID counter: 0&lt;BR /&gt;IPv6 remote EID counter: 0&lt;BR /&gt;IPv6 remote EID idle counter: 0&lt;BR /&gt;IPv6 mapping cache full: no&lt;BR /&gt;&lt;FONT color="#FF0000"&gt;&lt;STRONG&gt;L2 limit: 32768&lt;/STRONG&gt;&lt;/FONT&gt;&lt;BR /&gt;Total Current utilization: 0%&lt;BR /&gt;MAC multiplier: 1&lt;BR /&gt;MAC local EID counter: 0&lt;BR /&gt;MAC remote EID counter: 0&lt;BR /&gt;MAC remote EID idle counter: 0&lt;BR /&gt;MAC mapping cache full: no&lt;BR /&gt;Latest supported config style: Service and instance&lt;BR /&gt;Current config style: Service and instance&lt;BR /&gt;9300X#&lt;/P&gt;</description>
      <pubDate>Wed, 19 Mar 2025 08:17:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/software-defined-access-sd-access/l2-handoff-scalability/m-p/5272871#M3993</guid>
      <dc:creator>jedolphi</dc:creator>
      <dc:date>2025-03-19T08:17:18Z</dc:date>
    </item>
  </channel>
</rss>

