12-06-2022 06:17 AM
ACI Contract on Specific port (443) no working unless we add default filter in the Contract
attached the filter and the contract after adding Default Filter
02-15-2023 05:51 AM - edited 02-15-2023 06:00 AM
Hello AHMED_MAKBOUL,
My name is Bruno Pereira and I’m working in Cisco as a Customer Success Specialist in ACI so I will try to help you.
I analyzed the prints of the contract and filter that you configured and apparently there is no misconfiguration. So, the cause for having this issue could be the way that you applied the contract, because in your cause those filters applied in the contract are permitting all type of traffic.
To keep giving you support in this case I need you to send more information about the way of the contract was applied.
So, my advice is to take a look on this website (https://www.cisco.com/c/en/us/solutions/collateral/data-center-virtualization/application-centric-infrastructure/white-paper-c11-743951.html#Contractdesignoptionsformigrationandoperationalsimplification) and explore the content to understand certain behaviors of contracts in ACI.
You can also learn more about Cisco ACI through our live Ask the Experts (ATXs) session. Check out Cisco ACI ATXs Resources [https://community.cisco.com/t5/data-center-and-cloud-knowledge/cisco-aci-ask-the-experts-resources/ta-p/4394491] to view the latest schedule for upcoming sessions, as well as the useful references, e.g. online guides, FAQs."
02-15-2023 11:23 AM
Hi @AHMED_MAKBOUL ,
Firstly, you must understand that Filters anc Contracts in ACI are simply models - like the blueprint for building a car. You can't drive the car with just the blueprint.
So you have shown us a Filter and a Contract. These are the blueprints. By themselves, they do NOTHING.
To make the Filter and Contract active you must:
Once you have configured your contract in this way, Navigate to your Tenant > Contracts > Standard > YourContract >| [Topology} tab and paste a picture here for me to see how your've actually applied your contract. It should look something like this:
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide