cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
15346
Views
65
Helpful
4
Replies

Difference Between subnet under EPG and BD.

Khansa'a Nasr
Level 1
Level 1

Hi 

 

Could anyone please let me know what is a difference between Subnets in EPG and Subnets in BD?

2 Accepted Solutions

Accepted Solutions

RedNectar
VIP
VIP

Hi Khansa,

 

[Edited to clear up ambiguity in #2 below and add #3]

 

You may find out all you need to know by reading my reply to this question, but let me re-iterate here anyway.

Subnets can be assigned to both BDs and EPGs.  Which is very confusing, but there is a subtle difference that doesn't really come into play until you need to configure contracts between VRFs or between Tenants.

 

If you haven't got into sharing contracts between VRFs or between Tenants, then this is all you probably need to know:

 

  1. If you want, you can merrily configure all your IPs on EPGs rather than BDs.  And in some ways, that more closely resembles a Network Centric Approach.
  2. If you ever need to provide a service to another VRF or another Tenant (apart from the common Tenant), you will NEED to add an IP Address to the EPG to specify which part of the subnet you wish to advertise to the consumer EPG, and mark that subnet as being Shared Between VRFs and that subnet will then get leaked into the Consumer's VRF.
  3. On the Consumer side, the subnet also has to be marked as being Shared Between VRFs so that the route can be leaked into the Provider's VRF.  This can be done on the Consumer's DB or on a Subnet EPG.

 

I hope this helps

 



Don't forget to mark answers as correct if it solves your problem. This helps others find the correct answer if they search for the same problem


RedNectar aka Chris Welsh.
Forum Tips: 1. Paste images inline - don't attach. 2. Always mark helpful and correct answers, it helps others find what they need.

View solution in original post

nvermand
Cisco Employee
Cisco Employee

Hi,
Subnet under EPG should solely used in the context of VRF leaking (which works with contract) to apply the right classification and corresponding policy enforcement under the provider EPG. A new knob had been introduced in 2.3 to allow you to:
- Define a Subnet under the BD, and use it as the default gateway
- Configure carvings of this subnet under the EPGs and not having to change the default gateway on the servers
For example, you can have 10.10.10.1/24 under the BD as a default gateway, whilst deploying more specific classification under EPG, such as 10.10.10.5/30.

 

You can find additional info there: https://www.cisco.com/c/en/us/solutions/collateral/data-center-virtualization/application-centric-infrastructure/white-paper-c11-737909.html#_Toc492605185

Hope this helps

Nicolas

Technical Marketing - Insieme BU

View solution in original post

4 Replies 4

Rick1776
Level 5
Level 5

RedNectar
VIP
VIP

Hi Khansa,

 

[Edited to clear up ambiguity in #2 below and add #3]

 

You may find out all you need to know by reading my reply to this question, but let me re-iterate here anyway.

Subnets can be assigned to both BDs and EPGs.  Which is very confusing, but there is a subtle difference that doesn't really come into play until you need to configure contracts between VRFs or between Tenants.

 

If you haven't got into sharing contracts between VRFs or between Tenants, then this is all you probably need to know:

 

  1. If you want, you can merrily configure all your IPs on EPGs rather than BDs.  And in some ways, that more closely resembles a Network Centric Approach.
  2. If you ever need to provide a service to another VRF or another Tenant (apart from the common Tenant), you will NEED to add an IP Address to the EPG to specify which part of the subnet you wish to advertise to the consumer EPG, and mark that subnet as being Shared Between VRFs and that subnet will then get leaked into the Consumer's VRF.
  3. On the Consumer side, the subnet also has to be marked as being Shared Between VRFs so that the route can be leaked into the Provider's VRF.  This can be done on the Consumer's DB or on a Subnet EPG.

 

I hope this helps

 



Don't forget to mark answers as correct if it solves your problem. This helps others find the correct answer if they search for the same problem


RedNectar aka Chris Welsh.
Forum Tips: 1. Paste images inline - don't attach. 2. Always mark helpful and correct answers, it helps others find what they need.

Thank A lot. It helped me put things into perspective

nvermand
Cisco Employee
Cisco Employee

Hi,
Subnet under EPG should solely used in the context of VRF leaking (which works with contract) to apply the right classification and corresponding policy enforcement under the provider EPG. A new knob had been introduced in 2.3 to allow you to:
- Define a Subnet under the BD, and use it as the default gateway
- Configure carvings of this subnet under the EPGs and not having to change the default gateway on the servers
For example, you can have 10.10.10.1/24 under the BD as a default gateway, whilst deploying more specific classification under EPG, such as 10.10.10.5/30.

 

You can find additional info there: https://www.cisco.com/c/en/us/solutions/collateral/data-center-virtualization/application-centric-infrastructure/white-paper-c11-737909.html#_Toc492605185

Hope this helps

Nicolas

Technical Marketing - Insieme BU

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Save 25% on Day-2 Operations Add-On License