01-24-2019 05:55 AM - edited 03-08-2019 05:08 PM
Hi folks. We've currently got a pair of Catalyst 3850's stacked that we plug our internet facing ports into (provider routers, firewall interfaces, etc). I've always hated this platform for anything requiring high availability, since you can't upgrade them without causing an outage. We've setup our DMZ infrastructure the same way.
Does anyone have any recommendations for a platform that is highly redundant (more than one physical switch), but would also allow non service affecting upgrades? Maybe the Nexus 9K in a VPC pair?
Thx in advance.
01-24-2019 06:07 AM
Hello,
the Catalyst 9K is the latest generation of switches, e.g. the 9300 supports stacking redundancy.
01-24-2019 06:08 AM
Are they similar to the 3850 though, where when I upgrade the IOS, the entire stack needs to reboot?
01-24-2019 06:19 AM
Hello,
a major IOS upgrade still requires a reboot of all stack members (I wouldn't know how to load the new IOS without that), minor SMUs are non-disruptive...
01-24-2019 06:20 AM
The 9400s can do ISSU but 93 and 92 are same as 3850s
01-24-2019 06:28 AM
01-24-2019 07:19 AM
Mark, new Catalyst 9500 series switches support VSS, so should be a good choice.
01-24-2019 07:52 AM
01-24-2019 08:03 AM
They should work fine for you in VPC mode , dual link to each 5k by portchannels
01-24-2019 10:42 PM
@poulid wrote:
non service affecting upgrades?
I don't believe there is such as thing as "non-service impacting upgrades".
Chassis-based is worst because each line card has it's own IOS in it. Supervisor card pushes the firmware to each line cards and each line card need to reboot in order to upgrade.
I have to wait for others to comment about how ISSU/FSU/eFSU will work (or not) in the 9400 chassis. Not a lot of people have good experience using ISSU/FSU/eFSU upgrading Catalyst 4K/6K chassis.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide