cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
84
Views
0
Helpful
1
Replies

Does 9000v support security groups?

KristofB
Level 2
Level 2
Hi Community,
 
Does 9000v (10.6.3.F) support security groups? 
 
As soon as I enable 'feature security-groups', my inter VLAN traffic is blocked.
system routing template-security-groups
feature security-group
 
Even if my VRF is unenforced;
S1-LEAF111# show vrf trusted security
VRF                              Mode         TAG     Action     Scope   Stats
----------------------------------------------------------------------------------------
trusted                          unenforced   -       permit     17      0
 
Or putting the VLANs in same Security group, still blocked
security-group 100 name Test
match vlan 2300-2301
 
To be clear: intra VLAN traffic is fine.
 
I assume this is not normal behaviour?
What am I missing here, or isn't this supported on Nexus 9000v ? 
Thanks!
 
Regards Kristof 
1 Reply 1

Mark Elsen
Hall of Fame
Hall of Fame

 

   - @KristofB                    Not supported according to : https://cfnng.cisco.com/browse/switching/features 
                                        (check attachment)

  M.



-- Let everything happen to you  
       Beauty and terror
      Just keep going    
       No feeling is final
Reiner Maria Rilke (1899)

Review Cisco Networking for a $25 gift card