Hello,
I hope I can get some help. We have a project to deploy IPv6 on all environments in our data center. I am working on the ACI.
I created a separate interface profile off of the existing Node Profile for IPv4 to accommodate IPv6 L3out.
This is interconnected to an ASA interface with dual stack. A similar connectivity was also established from ACI L3out to a PALO firewall.
On the ASA instance, the interface connected to the active firewall lost connectivity to IPv4 and no ARP entry on the ACI. The secondary was ok but the firewall did not failover over so clients could not reach destination app resident on the ACI until the change was reverted.
On the PALO, both IPv4 and IPv6 addresses were responding to pings, ARP table had the correct IPv4 address and Mac but src/dst connectivity was lost until this change was rolled back.
This is happening only with firewalls connecting to the ACI. Firewall interfaces connecting to switches and ASRs did not exhibit any issues.
Can you help?
It seems