05-14-2023 08:09 AM
Hi everyone
I've connected HPE Blade servers via VPC to Cisco ACI fabric leaves. In blade servers we have ESXi hosts and no vmm integration. The L3Out and intra epg communication is OK
But the inter EPG does not work when source and destination endpoint reside in one chassis.
When i add arp entry of destination in source workstation the problem was solved. I even tried the Flood unknown unicast and arp flood in BD but the problme didnt solve.
I appreciate any idea
Tnx in advance
Solved! Go to Solution.
05-17-2023 05:30 AM
Typically with HP Syngery there are two options to make this work. In addition to the BD Unknown Unicast being set to Flood mode, you need one of the following options:
1. Assign one EPG per BD (sounds like you have multiple)
or
2. Enable "Flood in Encap" on the BD
This is due to the fact that ACI is doing a form of VLAN bridging and HP doens't play nice with this. You can find a full write up on these recommendations here: https://support.hpe.com/hpesc/public/docDisplay?docId=a00110372en_us
Robert
05-14-2023 01:59 PM - edited 05-14-2023 02:01 PM
Hi @sina.naser ,
I have some questions
I've connected HPE Blade servers via VPC to Cisco ACI fabric leaves.
Can you show the output from the APIC CLI of the following command:
apic1# fabric <ID_of_1st_VPC_leaf>,<ID_of_2nd_VPC_leaf> show port-channel summary
Highlight the rows where the HPE Blade servers are.
But the inter EPG does not work when source and destination endpoint reside in one chassis.
Do you mean when source and destination are in the SAME EPG or DIFFERENT EPGs?
Is the source and destination in the SAME subnet or DIFFERENT subnets?
Is there any switching performed on the HPE blade server chassis? If so, then if the source and destination in the SAME subnet, communication SHOULD be handled by the HPE switch and the packets never reach ACI anyway.
When i add arp entry of destination in source workstation the problem was solved.
Did you add an APP entry for a default gateway or for the target?
Tip for when pasting the output of the command above:
05-14-2023 11:50 PM
Source and destination are in different EPGs (VLANs) and same subnet
I add arp entry of destination in source endpoint.
port-channels are fine in the output of show port-channel summary
The HPE blade server is Synergy. what kind of configuration must we do in synergy internal switch?
05-15-2023 02:13 PM
Hi @sina.naser ,
Can you then confirm that both EPGs have Flood in Encapsulation Disabled
Also check the Intra EPG Isolation and Preferred Group Member while you are there. If Preferred Group Member is enabled, make sure it is ALSO enabled of the OTHER EPG AND on the VRF.
Once I have all the details, I'll go through a scenario of what should happen, but to do that I'll need to know if ARP flooding is Enabled or Disabled on the Bridge domain (it should work either way, but the way I tell the story will be different)
Oh - and I'll need to know if routing is enabled on the BD, A BIG screen dump like the one below should tell me
05-17-2023 05:30 AM
Typically with HP Syngery there are two options to make this work. In addition to the BD Unknown Unicast being set to Flood mode, you need one of the following options:
1. Assign one EPG per BD (sounds like you have multiple)
or
2. Enable "Flood in Encap" on the BD
This is due to the fact that ACI is doing a form of VLAN bridging and HP doens't play nice with this. You can find a full write up on these recommendations here: https://support.hpe.com/hpesc/public/docDisplay?docId=a00110372en_us
Robert
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: