01-12-2018 10:18 AM - edited 03-08-2019 01:23 PM
Greetings. We have two Nexus 7K switches, each with two N7K-SUP1 and N7K-M132XP-12L modules. It's in a vPC configuration. We're on 6.2(16) code. The 7K switches are basically acting as cores that do DC functions and general campus core switches.
We have about 15 stacks of 3750-X and 2960-X switches that connect directly back to the 7Ks, each with a vPC. There are several VLANs on these vPCs, and they match in the switchport trunk allowed vlan list. What happens when I want to add a VLAN during production? I have done this a lot of times, but it always scares me, because I believe LACP is quite sensitive about mismatched VLANs. Here's what I do to each switch (with the PuTTY ssh windows open side-by-side):
The command is then applied to all three in less than a second and I have not had an incident where a user on an existing VLAN has lost connectivity.
Keep in mind, most of these switch stacks are in use all the time (it's a hospital). My heart always races, before doing this. My question are:
Thanks
Solved! Go to Solution.
01-12-2018 11:08 AM
Hi,
Vlan mismatch between the 2 switches is a type-1 inconsistency but it will only affect the new vlan you are adding and not anything else that is already in production. So, I don't think you need to add the vlans to both sides or all 3 sides as only that vlan will be suspended until it is added to all switches.
See link for more info:
Depending on the severity of the misconfiguration, vPC may either warn the user (Type-2 misconfiguration) or suspend the PortChannel (Type-1 misconfiguration). In the specific case of a VLAN mismatch, only the VLAN that differs between the vPC member ports will be suspended on all the vPC PortChannels.
Link:
HTH
01-12-2018 10:40 AM
Hi,
When we are changing any allowed VLAN information in a production environment, should enter the command "switchport trunk allowed vlan add X" or "switchport trunk allowed vlan remove X" otherwise it will rewrite the VLAN information on given interface and will cause loss of connectivity and downtime.
1. Do I need to get nervous?
No, Only need some practice and experience. I am always making a configuration in "Notepad", verifying the configuration with current running configuration and after that applying on switch or router. It will take some time but be minimize the chance of typo.
2. What if I add VLAN X to N7K1 but don't immediately add it to N7K2 or the 3750X-stack?
If you are not rewriting current configuration and adding new VLAN then there will be no impact on the running network. But If you rewrite the configuration then you will lose the connectivity.
3. What if I add VLAN X to the 3750X-stack before adding it to N7K1 or 2?
The answer is same as question 2.
4.Is there a time that if I go over it, LACP will freak out and take the whole mismatched link offline?
It will take place immediately without any warning and link goes down.
Thanks,
Deepak Kumar
01-12-2018 11:08 AM
Hi,
Vlan mismatch between the 2 switches is a type-1 inconsistency but it will only affect the new vlan you are adding and not anything else that is already in production. So, I don't think you need to add the vlans to both sides or all 3 sides as only that vlan will be suspended until it is added to all switches.
See link for more info:
Depending on the severity of the misconfiguration, vPC may either warn the user (Type-2 misconfiguration) or suspend the PortChannel (Type-1 misconfiguration). In the specific case of a VLAN mismatch, only the VLAN that differs between the vPC member ports will be suspended on all the vPC PortChannels.
Link:
HTH
01-12-2018 11:19 AM
This is the answer I was looking for... and a link included to boot... thank you!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide