N1K & UCS - B

Hi all

i've got blade UCS with n1k as Geraldine with a mac channel PIN.

Now, I want to force all the IFC vMotion has preference for UCS fabric so that vMotion traffic's not going outside the UCS.

can I do it in a port-profile (vMotion one) or should I do in vEthernet interface created by n1k?

TNX

/Danilo

N1K allows preferencing of PIN in the vethernet port profiile.  Since version 1. 4A and later you can now set the "order" of failover subgroups.

E.g.    Let's say you want to do a traffic engineering and keep your Console/management of traffic services & Vmotion traffic pinned to separate uplinks.  We know that we can use the sticky PIN to force these virtual interfaces to separate the uplink for the sup group interface, but what happens when there is a failure with one of these links?  Previously, when a member of the sup group failed with pinned interfaces it would dynamically repinned of alternately for other operational members.  New functionality has been added to force the order including backup subgroups will be used.

To specify subgroups of failover, you can use the following command pin in the vEth interface or Port profile level.

1000V(Config-if) backup pin ID

So let's say that we had four vmnic uplink between 0 and 3.  We want to keep our traffic management and vmotion separate if possilbe.

vmnic0 = subgroup ID 0 (primary for management)

vmnic1 = subgroup ID 1 (mangement secondary, tertiary for vmotion)

vmnic2 = subgroup ID 2 (secondary for vmotion, management further education)

vmnic3 = group ID 3 (primary for vmotion)

Our profiles of port could look like this.

profile system uplink ethernet port type

VMware-port group

switchport trunk allowed vlan 1-3967, 4048-4093

switchport mode trunk

Automatic channel-group on mac - pinning

no downtime

System vlan 10, 3001-3002

enabled state

management profile-port type vethernet

VMware-port group

no downtime

switchport mode access

switchport access vlan 10

System vlan 10

enabled state

pinning of backup id 0 1 2

profile port vethernet vmotion type

VMware-port group

no downtime

switchport mode access

switchport access vlan 99

enabled state

pinning of backup id 3 2 1

Thank you

Responsible Dan

Cisco IDP data center

You want to know more about how the PDI can help you?

http://www.YouTube.com/watch?v=4BebSCuxcQU&list=PL88EB353557455BD7

http://www.Cisco.com/go/pdihelpdesk

Tags: Cisco DataCenter

Similar Questions

  • UCS < 1.4.2b >, N1K and uplink

    Hi all

    I have a UCS (cluster) connected in vPC mode to a Nexus 7010.

    UCS 4.1U1 VMware ESXi, N1K with EHM PC blade-based UCS NIC is 71KR.

    Question is what happens if the two uplink of interconnection fails? I mean maybe cut fibres or stuff like that. N1K channel will be still two active link?

    Maybe the redundancy is performed by re arping for finding a mac (i've got UCS in switch mode) address, but I'm not sure. I saw a feature in the new version for a link status tracking rising full failure handling system (how?).

    last question about redundancy... what happens if a UCS IOM resets? I have some traffic disruption?

    TNX

    Dan

    Dan,

    Just to be clear, check the following:

    -UCS in switch mode

    -Adapters M71KR

    -N1k using Mac-pinning (I guess)

    -Connectivity upstream of each FI is a VPC to a pair of N7Ks.

    In this case, the N1K has no visibility of uplinks UCS.  See all your hosts VEM are two uplinks for each host (a session each fabric interconnect.)  If one of the two uplinks fails on interconnection, traffic will be the uplink remaining on this FI re-hairpin.  If the TWO uplinks on a financial institution fail, then UCS will be down (called the link at the bottom) server links and traffic should be routed through the MEC is another uplink will the other.  You can change this behavior to follow links to Server (for local switching only) but the default action of UCSM's close links to corresponding server if there are no links available on a financial institution.   Make sense?

    Now, in the last version of N1K here (1.4) is a new feature called followed by the State of the network (NST) for use with VPC - HM (such as Mac pinning).  This feature will allow to test the connectivity of a VLAN sends a probe packet and expect to get fired on another group of liaison rising/sup.   If you have a network VLAN which SHOULD be identified, you can follow with TSN.  If the network becomes unavailable, you can choose to close the uplink and re - route traffic to an another uplink.  This is useful to detect failures beyond the first jump (which would be the interconnections) as a failure somewhere in your N7K level or beyond.

    Setup Guide: http://www.cisco.com/en/US/partner/docs/switches/datacenter/nexus1000/sw/4_2_1_s_v_1_4/interface/configuration/guide/n1000v_if_5portchannel.html#wp1284321

    White paper: https://communities.Cisco.com/docs/doc-20657

    Order code: http://www.cisco.com/en/US/docs/switches/datacenter/nexus1000/sw/4_2_1_s_v_1_4/command/reference/n1000v_cmds_t.html#wp1295608

    For your last question about a failure/reset of the IOM, the cards corresponding to each blade will lose connectivity.  This is redundancy at the host level comes into play to reroute traffic.  In the case of your hosts N1K VEM, they would simply be re - route traffic on the access road to functional IOM of the chassis.

    Another point to consider is the M71 and M81 adapters support Fabric Failover.  He is tilting at the adapter level if there is a failure with any device between the adapter and uplink (like the IOM or FI).  Fabric failover is a configurable option adapter which re - will route traffic in Menlo ASIC adapters to the fabric in the 'other', such that the host will NOT see one of the two ports down.  Without switch fabric, a failure of a MOI or FI consider the adapter and this port would descend.  FF only adds a level of redundancy in the adapter without having to rely on any OS host grouping/failover.  M51KR, M61 KR and M72KR adapters do NOT support this feature.

    Kind regards

    Robert

  • Hi ALL, did any attempt on the virtual computer NETWORK load balancing using HYPERV on UCS blades

    I try to configure the CASE server cluster by using the Unicast NLB on the virtual machine on different blades on the UCS, it works for awhile, then he abandoned packages.

    I heard that this screenplay of unicast is not supported in the UCS when she used END-host mode in the fabric interconnet...? any attempted before.

    Would it, I use the multicast mode is that something needs to be done on the FBI62020 or the LAN switch upstream. ??

    Header note I found on the implementation of UCS for mulitcast NLBL:

    Microsoft NLB can be deployed in 3 modes:

    Unicast

    Multicast

    IGMP multicast

    For series B UCS deployments, we have seen that the multicast and IGMP multicast work.

    IGMP multicast mode seems to be the more reliable deployment mode.

    To do this, the monitoring settings:

    All NLB Microsoft value "Multicast IGMP" nodes.  Important!  Check ths by logging into EACH node independently.  Do not rely on the MMC of NLB snap.

    An IGMP applicant must be present on the VLAN of NLB.  If PIM is enabled on the VIRTUAL LAN that is your interrogator.  UCS cannot function as applicant IGMP.  If an interrogator of functioning is not present, NLB IGMP mode will not work.

    You must have a static ARP entry on cheating it upstream pointing IP address Unicast NLB on the multicast MAC address NETWORK load balancing.  This need will set up, of course, on the VLAN of the NLB VIP. The key is that the routing for the NLB VLAN interface must use this ARP entry as a unicast IP ARP response may not contain a multicast mac address. (Violation of the RFC 1812)  Hosts on the NLB VLAN must also use the static entry.  You may have several entries ARP.  IOS can use a function of 'alias' of ARP. (Google it.)

    How Microsoft NLB works. -The truncated for brevity Mac addresses.

    TOPOLOGY OF NLB MS

    NETWORK VLAN 10 = subnet 10.1.1.0/24 IP load balancing

    VIP = 10.1.1.10 NETWORK LOAD BALANCING

    Arp entry static switch advanced IP 10.1.1.10 upstream to MAC 01

    NLB VIP (MAC 01, IP 10.1.1.10)

    NODE-A (AA, MAC IP:10.1.1.88)

    NŒUD-B (MAC BB, IP:10.1.1.99)

    Using the IGMP snooping and interrogator VLAN snooping table is filled with the mac NLB address and groups pointing to the appropriate L2 ports.

    MS NLB nodes will send the responses of IGMP queries.

    This snooping table could take 30 to 60 seconds to complete.

    Host on VLAN 200 (10.200.1.35) sends traffic to NETWORK VIP (10.1.1.10) load balancing

    It goes of course to VLAN 10 interface that uses the static ARP entry to resolve to address MAC 01 VIP NETWORK load balancing.

    Since it is a multicast frame destination it will be forward by the IGMP snooping table.

    The framework will arrive at ALL NLB nodes. (NŒUD-A & NŒUD-B)

    NLB nodes will use its load balancing algorithm to determine which node will manage the TCP session.

    Only one NLB node will respond to this host with TCP ACK to start the session.

    NOTES

    This works in a VMware with N1k, standard vSwtich and vDS environment. Where surveillance IGMP is not enabled, the framing for VIP MAC NETWORK load balancing will be flooded.

    NLB can only work with TCP-based services.

    As stated previously mapping an IP unicast to a multicast mac address is a violation implied by RFC 1812.

    TROUBLESHOOTING

    Make sure your interrogator is working. Just to clarify that this does not mean that it is actually at work.

    Wireshark lets check that IGMP queries are received by the NLB nodes.

    Make sure that the ARP response works as expected.  Once Wireshark again is your friend.

    Look at the paintings IGMP snooping. Validate the L2 ports appearing as expected.

    CSCtx27555 [Bug-preview for CSCtx27555] Unknown multicast with destination outside the range MAC 01:xx: are deleted. (6200 FI fixed in 2.0.2m)

    IGMP mode not affected.

    CSCtx27555    Unknown multicast with destination outside the range MAC 01:xx: are deleted.

    http://Tools.Cisco.com/support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&bugId=CSCtx27555

    fixed in 2.0(2m)

    Solution: Change the NLB mode of operation of "Multicast" to "multicast IGMP', which modifies balancing load NETWORK VIP MAC at 0100.5exx.xxx Beach, allows to transfer occur as expected.

    Q: and if I switch to switch mode, which means all of the profile and the settings on the servers are completely exhausted and I need to recreate them. ???

    A:Cisco Unified Computing System Ethernet switching Modes

    http://www.Cisco.com/en/us/solutions/collateral/ns340/ns517/ns224/ns944/whitepaper_c11-701962.html

    -There is no impact on the configuration, you have done service profiles.  they will continue to work as expected.  Mode selector has the FI behave more like a conventional switch.  Most notable is that Spanning tree will be activated and if you have several uplinks yew, tree covering weight will begin to block redundant paths.

    You need to review your topology and what impact tree covering weight.  Generally, we at the switch port upstream defined as "edge master", you want to delete this line.

    For pre-production and laboratory environment, PDI can help qualified with the planning, design and implementation partners.  Given to review the IDP site and open a case if you need more detailed assistance.

  • Number for the vNIC for n1k

    What is not appropriate to network cards or the best configuration of practice for deployment of 1000 k nexus? 2 network cards? I am currently using 8 vNIC divided into 4 vswitches.

    If I use my current configuration, this means that I'll need 4 n1k facilities?

    Thank you

    Tony,

    There will be only 1 installation N1k carrying all 8 for network adapters. Or, you could condense the 8 vNIC in 2 - dependent requirements bw & qos in UCS. Rule of thumb is to limit the same VLAN for the same pair of vNIC.  We observed package grave when them VLAN is distributed on multiple NICs to the same fabric.

  • UCS environment vSphere 5.1 upgrade to vSphere 6 with Nexus 1000v

    Hi, I've faced trying to get the help of TAC and internet research on the way to upgrade to our UCS environment, and as a last thought resort, I would try a post on the forum.

    My environment is an environment of UCS chassis with double tracking, tissue of interconnections, years 1110 with pair HA of 1000v 5.1 running vsphere.  We have updated all our equipment (blades, series C and UCS Manager) for the supported versions of the firmware by CISCO for vSphere 6.

    We have even upgraded our Nexus 1000v 5.2 (1) SV3(1.5a) which is a support for vSphere version 6.

    To save us some treatment and cost of issuing permits and on our previous vcenter server performance was lacking and unreliable, I looked at the virtual migration on the vCenter 6 appliance.  There is nowhere where I can find information which advises on how to begin the process of upgrading VMWare on NGC when the 1000v is incorporated.  I would have thought that it is a virtual machine if you have all of your improved versions to support versions for 6 veil smooth.

    A response I got from TAC was that we had to move all of our VM on a standard switch to improve the vCenter, but given we are already on a supported the 1000v for vSphere version 6 that he left me confused, nor that I would get the opportunity to rework our environment being a hospital with this kind of downtime and outage windows for more than 200 machines.

    Can provide some tips, or anyone else has tried a similar upgrade path?

    Greetings.

    It seems that you have already upgraded your components N1k (are VEM upgraded to match?).

    Are your questions more info on how you upgrade/migration to a vcenter server to another?

    If you import your vcenter database to your new vcenter, it shouldn't have a lot of waste of time, as the VSM/VEM will always see the vcenter and N1k dVS.  If you change the vcenter server name/IP, but import the old vcenter DB, there are a few steps, you will need to ensure that the connection of VSM SVS corresponds to the new IP address in vcenter.

    If you try to create a new additional vcenter in parallel, then you will have problems of downtime as the name of port-profiles/network programming the guestVMs currently have will lose their 'support' info if you attempt to migrate, because you to NIC dVS standard or generic before the hosts for the new vcenter.

    If you are already on vcenter 6, I believe you can vmotion from one host to another and more profile vswitch/dVS/port used.

    Really need more detail on how to migrate from a vcenter for the VCA 6.0.

    Thank you

    Kirk...

  • N1K or DVS info on an ESXi host

    We try to find a way to see if an ESXi host is on a N1K or standard pass that we move all systems to N1K and must check it was completed.  We thought using the CDP - Get but since one uses Cisco UCS blades that keeps Cisco Nexus.  Does anyone have any ideas on how this can be done?

    Thanks in advance.

    Matt

    I don't have a handy N1K right now, but it lists the ESXi hosts connected by N1K?

    foreach($dvs in Get-VDSwitch){  Get-View -Id ($dvs.ExtensionData.Config.Host | %{    $_.Config.Host}) |   Select @{N="dvSw";E={$dvs.Name}},@{N="ESX";E={$_.Name}}
    
    }
    
  • Map of ESX/ESXi DRS/HA/FT-UCS M71KR - Nexus 1000

    Hi all

    I have a doubt about the configuration of ESX/ESXi in congiunction with ucs years n1k.

    If I use the channel (mac-pinning based due to material ucs) on n1k and I have only two NIC (M71KR) card can I properly configure FT/HA or DRS.

    having a port-channel vmware is informed of nic ha? I may have some redundant warning as a note to management interface or stuff like that?

    any idea of?

    TNX

    Dan

    Dan,

    We work with the DRS, FT and HA. You will be able to configure a Port-Channel with MAC-pinning and always use DRS, the FT and HA feature.

    To create the channel port, you must add the two network interface cards to the DVS in a perspective of VMware is aware that you have redundancy NIC.

    Louis

  • S30 Config UCS

    We received a S30 and somewhere along the line someone apparently had the brilliant idea of raid SSD and a hard disk of 1 TB in a single volume on the blue ports.

    So in the boot order that one disc shows as "UCS: Intel Volume_0001" or something similar.

    In the Advanced Configuration of UCS, the first two ports show how Intel Volume_0001.

    I am assuming that they could not accomplish this in software because they have created the drives C and D, and a hidden partition on this volume.

    Question is how did do that, I don't see any RAID quick post to make changes. I turned on all the relevant BIOS including settings disable the quick start, but all messages that appear are too fast to read.

    CTRL + I or Ctrl + H seem to have no effect.

    Thank you

    Thank you, somehow they corrected, although they have to take it back to the warehouse. Since I don't know what was the exact solution I will mark this as the solution.

  • vFoglight with Cisco UCS

    Hello all,.
    We are looking for Cisco UCS for our ESX env. and I was wondering if someone was running vFoglight UCS and had problems.
    Or if someone of Quest/Vizioncore knows of any problem or future integration planned with UCS.

    Thank you
    Craig Dieck

    Craig, I know of many clients running the Cisco USC with VMware and they are very happy. There is no known issue with vFoglight perspective. VFoglight hardware monitoring currently able to extract any platform SNMP information. If you are looking for a vFoglgith to pull information from the physical ESX servers directly (not SNMP) you will need to ask for a discussion of the roadmap with your representative local of the quest.

    Inform the product manager for the platform you are using and what you want to be monitored and displayed...

  • Visio icon - Logical UCS

    Hi all

    I am looking for logical UCS visio icon and can't seem to find them, such as 6100 fabric interconnect and 5108 chassis, like this

    I found this link, but there are the icons of only physical, not logical.

    http://www.Cisco.com/en/us/products/HW/prod_cat_visios.html

    I also found this link, the PMS 3015 has many logical icons, but I couldn't find the above.

    http://www.Cisco.com/Web/about/AC50/AC47/2.html

    Just a suggestion, have a single Web page for logical and physical icons and clear descriptions, add dates for update and consolidation for the logic of the product icons. This will help to find the icons much easier.

    Thank you

    Ming

    Hi Ming,

    Thank you very much for your patience while we looked in the files icon.  Here's an update.

    • We checked the files in the zip file and they are not empty, but the designs are very small and if the drawing opens at about 30% of zoom, it would be easy do not agree on the drawing.  Sorry for the inconvenience.
    • In any case we are downloading a new zip with versions expanded drawings for the 6100 (interconnection of fabric) and 5108 (server chassis) so that they are more visible on the page. Of course, you can resize in Visio to what size you need.
    • We contacted the owners of the areas of Visio files on the site of icons of network topology to http://www.cisco.com/web/about/ac50/ac47/2.html regarding:

    -Download Visio stencils for the 6100 and 5108.

    -Your comment to facilitate icons: have a single web page for logical and physical charms with clear descriptions, dates of update and groupings of products for logical icons.

    Linda

  • UCS mini KVM connection failed or timeout

    Hello world:

    could you please help me solve the kvm cannot logint issure?   try several ways and never configure IP KVM, according to the following

    step "in the navigation pane, click the LAN tab, expand LAN > pools > root > IP Pools, and then select the Pool of IP ext-Mgmt.»

    error message is the file attachment.

    from: Xiachen

    Hello

    Which version are you running now?

    It may be worth the upgrade of all mini system UCS.

    Software can be downloaded from

    https://software.Cisco.com/download/release.html?mdfid=283853163&CATID=2... (2B) & relind = AVAILABLE = rellifecycle & reltype = last

    The MMIC software is the. B package

    Software for the server products blade UCS B-Series 
    UCS-k9-bundle-b - series.3.1.2 b .B .bin
    17 SEP-2016 464.42 MB
  • Impossible to archive ZIP Unzip UCS Manager 5.5

    Hi all
    I download the ZIP of UCS Director https://software.cisco.com/download/navigator.html?mdfid=284775897&i=rm 5.5 but while unzip this file, it says there are 734 PB of free space.
    Need help.

    Thank you

    Using 7zip to extract the zip file worked for me.

  • UCS C460 M2 - error 1902 during the firmware upgrade

    Hello!

    A few days ago, I could upgrade the firmware 1.5 (7 c) to 1.5(8a) and the BIOS to version 1.5.4a to 1.5.4b using file ucs-c460-huu - 1.5.8 has mapped via KVM using an old windows xp with java 1.7. In fact, this upgrade would allow access of latest java KVM, something that was lost a few months ago.

    On Monday, I did the same procedure on an exact server and everything was fine, but this server cannot update firmware.

    I get error 1902, described here:

    https://Quickview.cloudapps.Cisco.com/QuickView/bug/CSCui18044

    But there is not something to solve this problem.

    Any ideas please?

    Concerning

    David

    David,

    A few steps to try:

    -Turn off the server, remove the power supply and press and hold power for 30 seconds. Retry the upgrade.

    -Restart the MMIC before the upgrade.

    -Try the upgrade using a physical USB vs vMedia

    Let me know what questions you have and please share the results.

    Thank you

    Wes

  • Cisco UCS 260 M 2 5.5 U3 - custom image and compatibility

    TAC has a customer turned and pointed toward a compatibility table for an installed UCS - C 260M 2, stating that the firmware of the UCS and the latest version of Vmware is not supported.

    They are suggesting that the client moves to fimware 1.5 (9) and they use a customized image of Cisco for Vmware.

    This facility is for UC/EAC, so I have to make sure that the versions supported in the docwiki for these products as well is the Vmware version.

    http://www.Cisco.com/Web/TechDoc/UCS/interoperability/matrix/matrix.html

    The drop down menu shows Vmware 5.5 U3 is a supported version and I find that 5.5 is supported in the dockwiki. So far so good.

    However, when I try to find a custom image for 5.5 U3 image only I find it:

    https://my.VMware.com/Web/VMware/details?ProductID=353&downloadGroup=OEM...

    VMware 5.5 U3a. The version of the driver specified on this page do not match driver versions indicating the interoperability matrix must be used.

    First, is there a customized image of Cisco for 5.5 U3, could someone point me to this image so that these versions of the drivers are the same?

    Secondly, can I use ISO customized Cisco to upgrade a vanilla install Vmware 5.1 U3?

    -GDR

    Greetings.

    The Cisco Custom images are just a collection of pilots who were up-to-date at the time wherever it has been presented to VMware.  It is expected that iso custom will exactly match the interoperability matrix (it could have at the time, it was created), but at least provide newer drivers than what is usually installed in the general VMware releases.

    The interoperability matrix will list the specific driver, i.e. igb driver intel 1 GB network interface.  Download you the version of the driver for VMware site and install adapt you to the requirements notified by the interoperability matrix.

    You should be able to use a custom Cisco ISO to upgrade.  When your custom installation ISO analyzes your existing system, it will see a higher version of the drivers/VIBs and update those.  The Cisco with custom isos are simply the original VMware updated versions the drivers injected into them.

    Thank you

    Kirk...

  • 6248 FI Cisco's UCS with Cisco catalyst 2960 connectivity

    In our environment, UCS, connects the two fabric as a Cisco Nexus 9 k switch upstream with vPC and it works well. But we need to isolate some virtual servers on the blades of the UCS on an entirely separate DMZ switch which is Cisco catalyst 2960.

    (1) so can we connect cables separate physical twinax of FI uplink ports to catalyst 2960 and connectivity to the servers in the DMZ keeping YEW to nexus connectivity as it is?

    (2) in this case, as there are 2 switches to nexus core 1 and 2 so we will require 2 cisco catalyst 2960 for disjoint such a network? or otherwise we can connect A FI and FI B to one on his 2 numbers 2960 switch. Gig SFP ports + 10?

    (3) also suggest things must be taken in charge, the best guides practice or an illustration in this context.

    The assignment is static and cannot be changed.

    location 1 - uplink 1

    slot 2 - uplink 2...

    If a property has no blade, the corresponding uplink is not used and that can not be changed!

    This dedication of uplinks of IOM is of course a lot of resources: cables, ports on FI, allowed port,...

Maybe you are looking for