09-28-2023 06:33 AM
I’m sorry for the length of this description but…. I have to replace a standalone c4507r+e (core) switch with a standalone c9407 switch at one of my company’s branch locations. So far the 9407 was powered up and connected to the 4507 via an lacp trunk with some of the 4507’s old hosts connected to it. The 4507 is reachable by gateway ip 1.1.1.1/24 and the 9407 is reachable at 1.1.1.8/24 (yes, same subnet). 70+ end hosts and infrastructure appliances (ha firewall pair, 3850 access switches, & storage servers) still have to be moved to the 9407. The 4507 has several other SVIs (ex: phone, pc, wireless, etc) and is the site’s dhcp server. For stp, the 4507 is the root because the 3850 access switches’ mac is higher (yes, I inherited these switches with the same priority) so I intentional raised the 9407’s priority to 36864 so it doesn’t become the stp root yet. I have a change window to move the 70+ end hosts today, which shouldn’t include any “excitement” and I will label the current physical connections. But I’d like your opinions on the final phase of this migration (moving the 3850s, firewalls, routers, etc to the 9407) I was thinking of these steps (in this order too):
Thoughts? Comments?
09-28-2023 07:53 AM
here is my comments :
09-28-2023 11:35 AM
hi Balaji, thx for responding but i dont understand what you said about the stp priority on the 3850s. the 3850s use the default priority of 32768. and so did the 9407. when i compared their mac addresses, the 3850s would've won the root election. my thinking was to increase the 3850s' priority since it (being an access switch) shouldn't be the root bridge.
your suggestion about shutting the svi on the 4507 and then no shut the svi on the 9407 was my original plan. then this other post more or less said to physically move everything off of the old core without making any config changes. i'm sorry but i'm confused now.
09-28-2023 11:45 AM
You want change with lower downtime as you could? If yes
Then config svi different IP and config hsrp when traffic totally pass through c9k then you can remove c4k. No down time.
Change priority keep same SVI ip not solve issue of redirect traffic I think.
One more point is dhcp' you need to make server push the new IP of SVI of new c9k.
10-19-2023 11:00 AM
well i was given a change window (2 whole hours!!) to move 2 fiber downlinks, 2 firewall uplinks, swap 6 SVIs, correct stp priorities (on the current access switches new core) and 80 end devices where their patch cabling looks like a 3d version of prolong scribbling on a piece of paper. so in terms of downtime i had so leeway
i was able to correct the stp priority for all the VLANs (2, 4-8), move the firewall links to the new core but i hit a brickwall during the SVI swap. for that i shut int vlan4 (cisco ip phones) on the old core, saw continous pings stopped, then no shut int vlan4 on the new core. but the pings stayed down. rollback was quick and smooth, the phones came back up 2 seconds later. the layer 3 configs (no eigrp, static routes, SVIs) and VLANs are the same. i did configure a layer 2 po/trunk between the 9400/new core & 4507/old core for this migration. i didnt want to remove this trunk until everything was moved off of the 4507. what i forgot to include in the picture (i hope it shows) was the vlan2 svi details. int vlan2 on the old core is 10.1.1.1/24. int vlan2 on the new core is 10.1.1.9/24. was keeping the migration po up/up a problem? or could there have been an issue with the vlan2 svi?
10-20-2023 02:58 AM
high level looks ok but preparation and information main key when you doing cut over the services - what information you have to troubleshoot.
I configured VLAN 2 same IP address on new Core and put in shutdown mode (not wjth new IP) since most device have gateway of 1 that lead to different issue if you start using .9)
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide