cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1584
Views
1
Helpful
2
Replies

How to create a fabric zone in DNAC ?

rajgar
Level 1
Level 1

Currently, the available API for adding a fabric site "dna/intent/api/v1/business/sda/fabric-site" will not let you create a zone within a fabric site. It seems like a huge oversight.

Please suggest if any workarounds are available other than relying on the GUI.

2 Replies 2

nirraman
Cisco Employee
Cisco Employee

Hello,

Below given are some of the resources that will help you with your query :

1.https://www.youtube.com/watch?v=cV3nBAZK0F4

2.

Configure a Fabric Zone

A fabric site (parent site) can be divided into fabric zones with smaller subnets to help you manage the network easily. A fabric zone can have its own edge nodes and extended nodes, but it connects to the parent site for a control plane and border. If you migrated from an earlier release of Cisco DNA Center, you can create a fabric zone on the existing fabric site. This fabric zone inherits all the properties of its parent site.

Before you begin

  • Ensure that your network hierarchy is created under the Global site.

  • Select a parent site that is not at the lowest level in the hierarchy.

The following is the broad workflow to configure a fabric zone.

  1. Create a fabric zone in either of the following ways:

  2. Add edge nodes and extended nodes to the fabric zone. For more information, see Add a Device to a Fabric.

  3. Assign Layer 3 virtual networks and segments to the fabric zone. Note that only the virtual networks and segments of the parent site are available to the fabric zone. For more information, see Add Virtual Networks to a Fabric Zone.

 

 

Note

After a segment is added to a fabric zone, it cannot be updated in the parent site.

You cannot edit edge nodes and extended nodes of a fabric zone in its parent site.

You can configure the edge node of a fabric zone as a control plane or a border of the parent site.


Create a Fabric Site and Its Fabric Zones

Procedure


Step 1

Click the menu icon (

 

 

) and choose Provision > SD-Access.

In the Fabric Sites window, click Add Fabric Site.

Alternatively, click the menu icon and choose Workflow > Create a Fabric Site and Fabric Zones.

Step 2

In the Create a Fabric Site window, click Let’s Do it.

Step 3

Select an area, building, or floor to add as a fabric site and click Next.

Step 4

To designate fabric zones and create scoped subnets, choose Yes Setup Zones.

To enable a fabric zone, choose a fabric site from the network hierarchy.

Step 5

Click Next.

Step 6

Review the fabric site settings that are displayed in the Summary window.

You can also edit the fabric site or fabric zone settings.

Step 7

Click Create.

It takes several seconds for the site and zones to be provisioned. A Success! Your fabric site is created message is displayed.

The newly created fabric zone is tagged with an “FZ” in the site hierarchy pane.


Create a Fabric Zone within a Fabric Site

Procedure


Step 1

Click the menu icon (

 

 

) and choose Provision > SD-Access.

Step 2

In the Fabric Sites window, select a fabric site.

In the Site window, click More Actions > Edit Fabric Zone.

Step 3

In the Designate fabric zones window, choose an area, building, or floor.

Step 4

Click Next.

Step 5

Review the fabric site settings that are displayed in the Summary window.

You can edit any of the fabric site or zone settings here.

Step 6

Click Create.

It takes several seconds for the site and zones to be provisioned. A Success! Your fabric site is created message is displayed.

The newly created fabric zone is tagged with an “FZ” in the site hierarchy pane.


What to do next

  • Add only edge node and extended node devices to the newly created fabric zone.

    Devices assigned to a fabric zone cannot be assigned to the parent site. However, an edge node device assigned to a fabric zone can still be configured as a control plane or a border node for the parent site.

  • Assign IP pools and virtual networks to the fabric zone.

Add Virtual Networks to a Fabric Zone

Before you begin

Ensure that the fabric zone is created.

Note that you can add only the virtual networks of a parent site to a fabric zone.

Procedure


Step 1

Click the menu icon (

 

 

) and choose Provision > SD-Access.

Step 2

In the Virtual Networks window, under Layer 3, click the number that indicates the count of Layer 3 Virtual Networks.

The resulting window displays all the Layer 3 virtual networks at a global level.

Step 3

Click Fabric Site: Global.

Step 4

In the Select Fabric Site slide-in pane, choose a fabric zone.

Step 5

In the Layer 3 tab, click Add Layer 3 VN.

Step 6

In the Add Virtual Network slide-in pane, choose the virtual networks to add to the fabric zone. Click Update.


Add Layer 2 Virtual Networks to a Fabric Zone

Before you begin

Note that the gateways added to the fabric zone cannot be updated at the parent site.

Procedure


Step 1

Click the menu icon (

 

 

) and choose Provision > SD-Access.

Step 2

In the Virtual Networks window, under LAYER 2, click the number that indicates the count of Layer 2 Virtual Networks.

The resulting window displays all the Layer 2 virtual networks at a global level.

Step 3

Click Fabric Site: Global.

Step 4

In the Select Fabric Site slide-in pane, choose a fabric zone.

Step 5

In the Layer 2 tab, click Add Layer 2/ Gateways.

Step 6

In the Select L2VNs/Gateway(s) slide-in pane, choose the Layer 3 virtual networks of the fabric zone to configure the gateways.

Step 7

Click Next.

Step 8

From the L2VNs/Gateway(s) drop-down list, choose the desired gateways.

Step 9

Click Add.

 

If you find my reply solved your question or issue, kindly click the 'Accept as Solution' button and vote it as helpful.

You can also learn more about Cisco DNA Center through our live Ask the Experts (ATXs) session. Check out Cisco DNA Center ATXs Resources [https://community.cisco.com/t5/networking-knowledge-base/cisco-dna-center-ask-the-experts-resources/ta-p/4394489] to view the latest schedule for upcoming sessions, as well as the useful references, e.g. online guides, FAQs.

Thankyou 

Niranjana Ramanan

The IT world is now a Zero Trust world where dynamic policy and segmentation are becoming standard requirements, but many organizations do not have a network that can address these challenges. This video provides an overview and demonstration of the Fabric Zones feature of SD-Access. You will see