HiI want to allow one subnet to an host on an SDA Site and block all other subnets, all our sites are SDA is this possible and if so how can I achieve this please.?? Thanks
HiI want to allow one subnet to an host on an SDA Site and block all other subnets, all our sites are SDA is this possible and if so how can I achieve this please.?? Thanks
Hi All, Hope you’re doing well! Just one small question – if MACsec support is on the roadmap for SD-Access? Or there are no plans to support it at all? Any input would be very welcome
Hi,Depending on the border type (internal, external, anywhere), external routes will get imported or not.Where exactly will they get imported - global routing table, VRFs or LISP?
Hello all,We have an implementation of DNAC and Stealthwatch in our infrastructure. We also have enabled et-analytcs on our SDA switches via DNAC. I am not quite sure what the configuration on the switches should be in order for Stealthwatch to show ...
Hi Folks,I've found myself in an interesting scenario. The nodes that we will be using for intermediate nodes are being used in production for L2 already. In theory I don't see a problem with us just adding to DNAC and using the free interfaces upstr...
Hi Gents looking for the place in SDA manuals where process of assignment of SGT based on VLAN (VLAN-to-SGT mapping) at access-layer is described. It said to be in the "Host onboarding" section of user guide but either i'm blind or... Can anyone be o...
We have SDA which includes DNAC servers plus ISE integration The license is DNA premier which includes ISE license What will happen if the DNA license expires ? Is this will affect the DNAC GUI as to manage devices, configure policies, or access anal...
Hi Guys, I have 1 doubt but i wanted to confirm if any1 has tried this way:- I know this is possible to do through template but it seems easier to do through login on the switch, 1. Switch hostname:- if i change a fabric switch hostname through cli a...
Hi All,Recently deployed SD Access. Please suggest what are the hardening points we need to consider for DNAC.Below points are already completed1. Tacacs Integration2. Syslog Configuration3. NTP4. Login Banner5. SNMP Configuration6. Backup Server Con...
Our DNA Center recently stopped sending events to syslogDNAC version: 2.3.5.6Are there any troubleshooting steps we should perform? "Try-It Now" from the Event Catalog is working (syslog server receives the event), but the subscriptions have stopped ...
ISE starting from something like 2.2 is known supporting multiple TrustSec policies matrices, when with the same SGT-set admin may vary with policies per NAD. In SDA, you usually have DNAC as orchestrator of TrustSec matrix with ISE reproducing only...
Hello all, is there a way to troubleshoot the enforcement of policies in the wireless environment within an SD-Access Fabric? Especially from wireless to wireless and without additional tools like Secure Network Analytics. On my test environment (Cat...
Hi there, I am planning to set up an L2VN without anycast gateway / SVIs in the fabric for a migration use case. The gateway of the corresponding L2VN will remain outside of the fabric at least throughout the migration period for several reasons and ...
Hi, Due to time constraints a rollback was done incorrectly. So after the switch was part of the fabric via LAN automation, the switch config was removed on the CLI (pnpa service reset). So steps as described in DNAC guide where NOT followed removing...
Hello team, I have a concern regarding the migration from traditional network to SDA, especially for the wireless part. This will be a full migration as we have 9k switches and 9k APs that we will convert to SDA. We have the 2 border / control plane ...
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide
Subject | Author | Posted |
---|---|---|
10-30-2024 03:04 AM | ||
10-27-2024 07:49 AM | ||
08-08-2024 03:55 AM | ||
07-17-2024 05:19 AM | ||
07-08-2024 01:13 AM |