11-24-2024 11:42 PM
Hi,
My customer has an ACI fabric running 4.2.7. The leaf and spine is reaching end of life support.
We are building a new separate ACI fabric running 6.0.
The plan is to connect two leaf switches from existing fabric to another two leaf switches in new ACI fabric via direct back to back connections and using VPC.
This is to extend the vlans between the existing and new ACI fabric.
We will then progressively migrate the workload via vMotion from existing ACI fabric to new ACI fabric.
SVI in new ACI fabric will be shutdown during initial phase. VMs migrated to new ACI fabric will use the SVI in existing ACI fabric during the co-existence phase. L3OUT will also exit via existing ACI fabric during the co-existence.
After all VMs are migrated from existing ACI fabric to new ACI fabric, we will shutdown the SVI in existing ACI fabric and unshut the SVI in new ACI fabric.
My understanding is that this should work as long as we have one EPG in one BD mapping and not multiple EPGs in one BD.
Any comments, suggestions greatly appreciated.
Thanks !
Eng Wee
11-28-2024 01:55 AM
Hello @e-chuah , please confirm the below diagram and answer the queries for better suggestion:
11-28-2024 04:16 PM
11-28-2024 10:40 PM
Hey Eng Wee aka @e-chuah from below clarification:
No. At one time there will only be one active pervasive gateway configured in each fabric. So during initial co-existence phase, pervasive gateway will be active at the existing fabric (running 4.2.7). VMs that are migrated to the new fabric will use the pervasive gateway in existing fabric. After all VMs in a vlan are migrated, we will shutdown the pervasive gateway at existing fabric, enable the pervasive gateway at new ACI fabric.
Pervasive gateway refers to a distributed Layer 3 gateway functionality that is implemented across the entire ACI fabric.
For a better understanding of this implementation; we understand your logical setup as below, please confirm before we discuss the solution:
Steps of moving VMs:
Step 1) Move the VMs to New fabric (v6.0), use the pervasive gateway (10.1.1.254/24) in existing fabric (v4.2.7)
Step 2) Shut down pervasive gateway (10.1.1.254/24) in existing fabric (v4.2.7)
Step 3) Enable the pervasive gateway at new ACI fabric
11-29-2024 07:40 AM
that the plan. At any one time, only one pervasive gateway will be active.
11-28-2024 03:21 AM
11-28-2024 04:17 PM
Yes, that is the plan.
12-01-2024 10:44 PM
@e-chuah Your plan to migrate workloads from an existing ACI fabric running 4.2.7 to a new ACI fabric running 6.0 using vPC connections and VLAN extension is generally sound. Here are some detailed comments and suggestions to ensure a smooth transition:
Compatibility and Interoperability:
VLAN and EPG Configuration:
SVI Management:
L3Out Configuration:
Testing and Validation:
Monitoring and Troubleshooting:
Preparation:
Configuration:
Migration:
Cutover:
Post-Migration:
By following these steps and considerations, you should be able to achieve a smooth migration with minimal disruption to your network services.
PS: Please do make sure that the high level and low level physical and logical connectivity diagram are covered in your change plan. Last but not the least; please get your change plan peer-reviewed. All the very best and do your best!!!
HTH
AshSe
Please rate this post if it was helpful; your feedback is appreciated!
12-02-2024 12:14 AM
Hi AshSe,
Thanks for the comments.
At the back of my mind, these are some questions i have:
(1) when i connect the leaf from one fabric to another leaf in another fabric? Will the leaf detect that it is a leaf to leaf connection and disable the connection?
My thoughts is that this should be ok because each leaf register with its respective APIC. So should not be an issue.
(2) If both fabrics that i connect back to back uses fabric-id=1, will this cause an issue? Do i have to change one of the fabric to a different fabric-id?
12-02-2024 01:30 AM
Dear @e-chuah , excellent you have raised genuine concerns. Pfb, my responses for the same:
(1) when i connect the leaf from one fabric to another leaf in another fabric? Will the leaf detect that it is a leaf to leaf connection and disable the connection?
My thoughts is that this should be ok because each leaf register with its respective APIC. So should not be an issue.
AshSe >> When connecting two separate ACI fabrics, you are essentially creating an inter-fabric connection, which is a different scenario. Thus no blocking between the leaf switches belonging to different ACI fabric.
(2) If both fabrics that i connect back to back uses fabric-id=1, will this cause an issue? Do i have to change one of the fabric to a different fabric-id?
AshSe >> Yes, having both ACI fabrics with the same fabric-id can cause issues when connecting them back-to-back. The fabric-id is a unique identifier for each ACI fabric, and it is used to distinguish between different fabrics in multi-fabric deployments. If both fabrics have the same fabric-id, it can lead to conflicts and misinterpretation of control plane information, potentially causing network instability and operational issues.
Hope This Helps!
12-01-2024 11:18 PM
Hey @e-chuah Kindly note that upgrading Cisco ACI from version 4.2.7 directly to 6.0 is not typically supported due to the significant changes and potential compatibility issues between major versions. Cisco usually recommends a staged upgrade process, moving through intermediate versions to ensure stability and compatibility. Please check the below links for better guidance:
HTH
AshSe
Please rate this post if it was helpful; your feedback is appreciated!
01-23-2025 03:12 PM
Do you have Gen-1 or Gen-2 spine and leaf switches?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide