cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1379
Views
0
Helpful
4
Replies

Nexus 5548UP - Management Interface

Guys,

How separate is the management interface on a Nexus 5548?

In context - what's the risk of having a layer 2 only Nx5K in a DMZ and running the managment ports down into an internal managment VLAN, to form peer-keepalive links and software upgrades.

Thanks

Nik

1 Accepted Solution

Accepted Solutions

No, you can't create loop with monument interface.  It is in a separate vrf, out of band and also a host port.  As you said, it is just a NIC.

HTH

View solution in original post

4 Replies 4

sean_evershed
Level 7
Level 7

What you describe is a supported Nexus deployment.

I'm not sure what you mean by separate, however the Management interface is assigned to its own Management VRF. This separates the management traffic from other VRFs and the global routing table. This in turn helps to improve security.

See below:

http://www.cisco.com/en/US/docs/switches/datacenter/nexus5000/sw/configuration/guide/cli/initconfig.html#wp1110654

Don't forget to rate all helpful posts.

Good to hear may thanks

I guess - is the mgmt0 interface participate in bridging traffic?  As such could the mgmt 0 interface create a layer 2 loop?  Or it is just a NIC (i.e.  a non-switchport)?

No, you can't create loop with monument interface.  It is in a separate vrf, out of band and also a host port.  As you said, it is just a NIC.

HTH

Reza,

Nice one cheers, spot on.

Many thanks nik