05-24-2016 07:04 PM
Hi experts,
The client want to using PBR for WAF application, but I cannot enable this feature on both nexus 5548 and 5596.
These devices both add a L3 daughter card for L3 feature.
I checked the license and guide for this feature. I am sure both 5548 and 5596 can support this feature.
The below are command which I was trying, Does anyone have any suggestion ?
jssvc-N5K-A# show version
Cisco Nexus Operating System (NX-OS) Software
TAC support: http://www.cisco.com/tac
Documents: http://www.cisco.com/en/US/products/ps9372/tsd_products_support_series_home.html
Copyright (c) 2002-2013, Cisco Systems, Inc. All rights reserved.
The copyrights to certain works contained herein are owned by
other third parties and are used and distributed under license.
Some parts of this software are covered under the GNU Public
License. A copy of the license is available at
http://www.gnu.org/licenses/gpl.html.
Software
BIOS: version 3.6.0
loader: version N/A
kickstart: version 6.0(2)N1(2)
system: version 6.0(2)N1(2)
Power Sequencer Firmware:
Module 1: version v5.0
Module 2: version v1.0
Microcontroller Firmware: version v1.0.0.2
SFP uC: Module 1: v1.1.0.0
QSFP uC: Module not detected
BIOS compile time: 05/09/2012
kickstart image file is: bootflash:///n5000-uk9-kickstart.6.0.2.N1.2.bin
kickstart compile time: 3/14/2013 1:00:00 [03/14/2013 16:53:55]
system image file is: bootflash:///n5000-uk9.6.0.2.N1.2.bin
system compile time: 3/14/2013 1:00:00 [03/14/2013 19:28:50]
Hardware
cisco Nexus 5596 Chassis ("O2 48X10GE/Modular Supervisor")
Intel(R) Xeon(R) CPU with 8262944 kB of memory.
Processor Board ID FOC17436ZXQ
Device name: jssvc-N5K-A
bootflash: 2007040 kB
Kernel uptime is 813 day(s), 13 hour(s), 36 minute(s), 38 second(s)
Last reset
Reason: Unknown
System version: 6.0(2)N1(2)
Service:
plugin
Core Plugin, Ethernet Plugin
jssvc-N5K-A#
jssvc-N5K-A# show module
Mod Ports Module-Type Model Status
--- ----- ----------------------------------- ---------------------- ------------
1 48 O2 48X10GE/Modular Supervisor N5K-C5596UP-SUP active *
2 0 O2 GEM with L3 ASIC N55-M160L3-V2 ok
Mod Sw Hw World-Wide-Name(s) (WWN)
--- -------------- ------ ----------------------------------------------------
1 6.0(2)N1(2) 1.0 --
2 6.0(2)N1(2) 1.0 --
Mod MAC-Address(es) Serial-Num
--- -------------------------------------- ----------
1 002a.6a80.f908 to 002a.6a80.f937 FOC17436ZXQ
2 0000.0000.0000 to 0000.0000.000f FOC17430LKB
jssvc-N5K-A#
jssvc-N5K-A#
jssvc-N5K-A# show license
license_FOX1741GBLB_7_1.lic:
SERVER this_host ANY
VENDOR cisco
INCREMENT LAN_ENTERPRISE_SERVICES_PKG cisco 1.0 permanent uncounted \
VENDOR_STRING=MDS HOSTID=VDH=FOX1741GBLB \
NOTICE=<LicFileID>20131117223457000</LicFileID><LicLineID>1</LicLineID><PAK>N5K-C5596UPFOX1741GBLB</PAK> \
SIGN=55B79D365396
INCREMENT LAN_BASE_SERVICES_PKG cisco 1.0 permanent uncounted \
VENDOR_STRING=MDS HOSTID=VDH=FOX1741GBLB \
NOTICE=<LicFileID>20131117223457000</LicFileID><LicLineID>2</LicLineID><PAK>N5K-C5596UPFOX1741GBLB</PAK> \
SIGN=0588545466E0
jssvc-N5K-A#
jssvc-N5K-A# conf t
Enter configuration commands, one per line. End with CNTL/Z.
jssvc-N5K-A(config)#
jssvc-N5K-A(config)# fea
feature feature-set
jssvc-N5K-A(config)# feature pbr
^
% Invalid command at '^' marker.
05-30-2016 08:21 PM
http://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus5500/sw/unicast/6_x/cisco_n5500_layer3_ucast_cfg_rel_6x/l3_pbr.html#pgfId-1075434
05-30-2016 11:15 PM
06-09-2016 06:49 PM
I think PBR is supported from 6.0(2) N2(1) so you might need to do an OS upgrade:
http://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus5500/sw/release/notes/6_02/Nexus5500_Release_Notes_6_02.html#pgfId-479810
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide