cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
530
Views
0
Helpful
3
Replies

Ndfc proxy and external backup

ilanmelkamo052621
Frequent Visitor
Frequent Visitor

Hello,

We are deploying Nexus Dashboard Fabric Controller (NDFC) in a secured on-prem environment.

All outbound internet access must go through an HTTP/HTTPS proxy.

We would like to clarify:
1. Does NDFC support downloading NX-OS images, application updates, and service packages through an HTTP/HTTPS proxy?
2. Which FQDNs/URLs and TCP ports must be allowed through the proxy?

In addition, we would like to understand the backup capabilities:
3. Is it possible for an external backup system to initiate a connection to NDFC and pull backups?
4. If not, is backup supported only as a push operation from NDFC to an external repository?
5. Which protocols and ports are supported for external backup integration?

Thank you.

3 Replies 3

balaji.bandi
Hall of Fame
Hall of Fame
1. Does NDFC support downloading NX-OS images, application updates, and service packages through an HTTP/HTTPS proxy?
2. Which FQDNs/URLs and TCP ports must be allowed through the proxy?

As long as Proxy allows you to download, you should be able download software; most of the time, it is http/https ports.

In addition, we would like to understand the backup capabilities:
3. Is it possible for an external backup system to initiate a connection to NDFC and pull backups?
4. If not, is backup supported only as a push operation from NDFC to an external repository?
5. Which protocols and ports are supported for external backup integration?

Not sure about remote logging and taking a backup

But schedule backup in possible different ways, NAS or SFTP/SCP (port 22)

You can find more information depending on the version :

https://www.cisco.com/c/en/us/td/docs/dcn/nd/3x/articles-321/nexus-dashboard-back-up-and-restore-unified-321.html

BB

=====️ Preenayamo Vasudevam ️=====

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Thanks.
Just to confirm – besides opening TCP 443/80, are there specific Cisco FQDNs that must be explicitly allowed through the proxy for NDFC software downloads?

*.cisco.com

BB

=====️ Preenayamo Vasudevam ️=====

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Review Cisco Networking for a $25 gift card