04-06-2022 04:24 PM
Looking to have Nexus Dashboard to be outside a firewall and need to allow rules to allow Nexus Dashboard Orchestrator to communicate with the OOB APIC IP address.
The ports mentions inband of apic and switch. Is this focused on network insight or ndo or both or other? Does ND for NDO need kafka and kms access to the fabric? Does ND for NDO need ssh access to the ACI fabric?
Thank You.
In the doc, the next table is labeled for nexus insights. Is there a table somewhere for NDO.
Solved! Go to Solution.
04-07-2022 12:24 AM
Hi @dan.laden
Communication between APICs and MSO (NDO) is only using TCP 80/443 for APIC REST API.
You can use this installation guide for reference: https://www.cisco.com/c/en/us/td/docs/dcn/mso/3x/installation/cisco-aci-multi-site-installation-upgrade-guide-311/mso-deploy-install-overview-31x.html
I know it's for the old standalone MSO, but the communication with APIC doesn't change.
Stay safe,
Sergiu
04-07-2022 12:24 AM
Hi @dan.laden
Communication between APICs and MSO (NDO) is only using TCP 80/443 for APIC REST API.
You can use this installation guide for reference: https://www.cisco.com/c/en/us/td/docs/dcn/mso/3x/installation/cisco-aci-multi-site-installation-upgrade-guide-311/mso-deploy-install-overview-31x.html
I know it's for the old standalone MSO, but the communication with APIC doesn't change.
Stay safe,
Sergiu
04-07-2022 09:19 AM
seems to be working with just 443 where you have listed 80/443. is there a particular condition where port 80 is required?
when i look a the pod management access policy...http access is disabled, redirect is disabled.
04-07-2022 09:04 PM
If you have http enabled on your APIC and you want to use http instead of https to connect MSO to APIC, then I guess that would be the condition when port 80 is used.
04-07-2022 09:18 AM - edited 04-07-2022 09:20 AM
..deleted...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide