04-13-2020 08:20 AM
Hello everyone,
we have PBR with one-arm mode.
Service Node [ Firewall ] is connected with Leaf 01 and 02.
Consumer EPG is with Leaf 03 and Provider EPG is with Leaf 04.
From Consumer I am able to Ping Provider.
Traceroute from consumer EPG to Provider EPG takes 5 hops.
Traffic is hitting a firewall and return to ACI without any issues.
I would like to understand why consumer to provider traffic is taking 5 hops?
I had gone thru one whitepaper whcih says traceroute is not best options to verify PBR traffic.
04-15-2020 03:05 AM
Hi @Jaya_tv ,
Could you share the output of the traceroute and indicate what each IP represents in the output? Also, is your firewall go-to or go-through?
Cheers,
Sergiu
04-22-2020 08:09 PM
Refer to traceroute consideration for PBR
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide