Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
I have a requirement to provide multiple SNMP profiles for my entire pod. All v2C, but multiple communities each with different sets of IPs that will poll the string and different sets of IPs a trap destinations. How do I accomplish this?In the Pod...
Do I need 1 or 2 VLAN Pools? If 2, do I need a different VLAN# from each pool?I'm having trouble wrapping my head around this. Google Gemini and ChatGPT are giving me the same answer, and I don't understand it.I have a Palo Alto FW, on which I want ...
I'm working a design that I think is unusual - or at least, my Google-fu can't find very much on the topic.My question: can I do what I'm thinking of? Are there any "gotchas" to be aware of? Is this a supported design (ie, whitepapers, etc)?I'm in ...
I'm having trouble figuring this out from the configuration guide, and ChatGPT is giving me answer that I'm questioning.I have an ASA (technically a FPR in ASA-only mode) on v9.20. I'm running AnyConnect, but I want to have two groups that each forw...
On the ACI side, how do I configure things so that all leafs (border or non-border) choose one border leaf for all packets, with automatic failover to the other border leaf?I have two locations, one with Catalyst 9500 routers and the other as ACI. I...
After even MORE research and lab testing, we ended up changing the topology. OSPF cost is classically the way this kind of traffic engineering is handled. Unfortunately: it doesn't matter if OSPF cost is or isn't transferred between border leafs. A...
Summary: L3out and L4L7 Concrete Device need unique VLAN numbers.The PBR whitepaper makes explicit reference to the interaction between the L3out and the PBR: "[Upon traffic returning from the L4L7 device], although it arrives at the L3Out logical in...
Here's the design we eventually came up with.2 VRFs. Let's call them VRF(FW) and VRF(NoFW).Upstream routers have two adjacencies - each VRF has an L3out with upstream routersVRF(FW) implements a Layer3 GoTo PBR, with destination via L3out (this thir...
not only do I need ACI to prefer one path, I also need the Catalysts to prefer one path.After a LOT of research and lab effort, I came to the conclusion that updating the L3out NodeProfiles to set OSPF / BGP metrics is the only clean way to do this, ...
Just to close this thread after almost 10 years - we no longer have this requirement, and the problem has gone away. not exactly a solution to the original problem, but whatever.