cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
185
Views
0
Helpful
0
Replies

Few subnet not reaching to L3OUT i.e firewall

Nitesh_A
Level 1
Level 1

Hi All,

This is not a new setup but currently we are doing migration of one of our L3OUT firewall. Old one is cisco ASA and we are migrating to Palo Alto Firewall. Post migration couple of our subnet which is supposed to be advertised externally is not happening. Between PA firewall and leaf Node we have OSPF running and OSPF neighborship is established. We have issue with only 2 subnets. 

I have checked below thing:

1. Though this is not a new setup and issue with 2 subnet, still i checked BGP and Route Reflector config which shows good.

2.In subnet section under BD, Scope is set to "Advertise Externally" and i see L3OUT is present under "Associated L3OUT".  Unicast Routing is enabled. L2 Unknown Unicast- Hardware proxy

3. I have contract in place associated to EPG as well as L3OUT

Someone please advice.

Thankyou

0 Replies 0

Review Cisco Networking for a $25 gift card

Save 25% on Day-2 Operations Add-On License