Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,I'm currently planning an FMC HA upgrade and trying to understand what services are impacted during the upgrade process. I understand that the FMC GUI, deployment operations, and logging etc will be impacted/limited during the upgrade process but ...
Hi All,I'm working on an ACI Multipod deployment comprising two pods, Pod1 for site1 and Pod2 for site2. Each pod will need to connect out to a common core network using BGP that is available at both sites (the core network provides the same routes a...
Hi All,I'm currently looking at another multisite SD-Access design for a small number of sites (~10) that all connect to a single hub/core site using metro-e WAN circuits. I'm looking to use SD-Access transit in this design with a "hub" fabric site t...
Hi All,We have a pair of FTD 3140s in HA that are deployed across different buildings within our campus that connect across two core switches with core 1 in the same building as FTD1 and core 2 in the same building as FTD2. FTD1 connects to core 1 us...
Hi All,I'm currently deploying a pair of FTD 3140s in active/standby HA. During testing when rebooting or powering off one of the FTDs, we are seeing about 15 seconds of downtime which is due to the default peer poll time of 1 second and peer hold ti...
ThanksI've tested option 2 with ISIS and OSPF on a spoke site's border nodes, and I had to redistribute ISIS into OSPF and then configure a summary in OSPF to advertise a summary of the spoke site's loopbacks to the core. I also had to redistribute O...
Thanks for the response @jedolphi - So if we went with option 2, communication to/from the AP subnets at each of the spoke sites will be carried through LISP/SD-Access transit, entering and exiting through the hub site's BGP IP transit, and not nativ...
Ok so if we used a single L2 IS-IS underlay we would need to manually configure the BNs to redistribute LISP into IS-IS to allow the APs pools to be reachable outside of the fabric (which is needed for DHCP and if the WLCs are located centrally)?
Thanks. This is where my understanding lacks slightly. So if all of your fabric sites where part of a single L2 ISIS underlay, how do INFRA_VN subnets get advertised outside of the fabric, such as IP pools for APs? Typically these get advertised into...
I'm aware of that as I posted originally but the associated project got delayed. I should have referenced that post and clearly stated that I'm after any updated best practises or practical examples/feedback from the community. Have you implemented a...