cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
434
Views
1
Helpful
1
Replies

asymmetric routing L3OUT and IPN/ISN

Monfi190
Level 1
Level 1

L3OUT and IPN/ISN connectivity termintaed on the same device. How do we prevent asymmetric routing for incoming traffic.

For example for traffic going to ACI site B, how do we make sure that retrun traffic use IPN/ISN link and not the L3OUT to reach ACI Site A?

OSPF is everywhere and no VRF.

 

Monfi190_0-1689787577600.png

Thanks,

 

HM

1 Accepted Solution

Accepted Solutions

Robert Burns
Cisco Employee
Cisco Employee

First, your ISN and L3out should be using different VRFs.  Second, whenver traffic needs to get from Site1 > Site2, it will ALWAYS prfer the ISN in the case where both sites have a local L3out.  There should be no way your L3out in Site1 should be able to connect to Site2 via the ISN.  

Robert

View solution in original post

1 Reply 1

Robert Burns
Cisco Employee
Cisco Employee

First, your ISN and L3out should be using different VRFs.  Second, whenver traffic needs to get from Site1 > Site2, it will ALWAYS prfer the ISN in the case where both sites have a local L3out.  There should be no way your L3out in Site1 should be able to connect to Site2 via the ISN.  

Robert

Review Cisco Networking for a $25 gift card

Save 25% on Day-2 Operations Add-On License