02-18-2025 02:57 AM
we have a problem related to contracts that all epgs directed to firewall with PBR and vzany under vrf and there is some epgs with some specific ports under contracts we noticed that some of epgs that must be directed to firewall hit with the specific ports and not directed to firewall, what is the cause of these problem
02-18-2025 11:09 PM
Hi @shady-magdy
Before answering your query, may I ask you one question:
1. Do you want EPGs' traffic to be filtered by the firewall (contected through PBR) or you need vzany contract inside the ACI to allow the traffic?
Intention is to understand, your purpose of configuring both vzany contract and PBR to firewall.
AshSe
02-19-2025 12:30 AM
we have a vzany under VRF consumer and provider contracts some of these contracts have a service graph and some have specific ports, we want all traffic go through the firewall except of the Epgs that have specific ports, we noticed some of these epgs although we applied a service graph to contract to go through the service graph, they went through the specific ports through another contract
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide