10-11-2019 07:32 AM
Is the Management port on the DNAC required/recommended for deployment or would the Enterprise port suffice especially in regards to accessing the DNAC GUI? What is best practice? Any downside not using the Management Port on the DNAC?
10-11-2019 07:42 AM
Management Port is only needed when you want to have a seperate (out-of-band) interface for management. Since DNAC has only one routing instance for all interfaces, you have manually to define what will be routet via Enterprise and what via Management Port.
I would go only with the enterprise port which has a default gateway to your corporate network.
10-20-2019 02:47 PM
It is technically feasible to access the GUI via any of the connected ports (except CIMC). You can use the interface IP or the VIP in all cases.
Most enterprise networks have an OOB management network, and hence why Cisco DNA Center has a management port.
This is similar how you can SSH into a switch via any IP address on the device or also through the management port.
The advantages and disadvantages of using the enterprise port are based on your network, your topology, and the security posture and needs of your org of using or not using OOB management. In the lab, it's fine. In production, there is a dedicated management network.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide