Question of vPC NEXUS7K

Guyz please correct me if im wrong, I have 2 x Nexus7k and lets say 1 3750 switch now I need to have the connected and active also vPC inter - vlan routing for VLAN10 on the two Nexus switches as follows: -.

SW1 - 2x10G - SW2 Nexus nexus

(Gi0/3)-/(Gi0/2)

3750 Switch3

|

VLAN 10

Requirements on the Nexus two, SWs

------------------------------------------------------------

(1) turn on vPC on both switches to Nexus

(2) create vPC area 8 on the two switches

management interface 3) the use of two switches to configure the peer of vPC keepalive

(4) (4) configurer set up on links two 10 G on both sides on the port channel 5, turn on the trunk and spanning tree-type network

(5) activate vPC Peer to the port-channel 5 on both sides

(6) create VLAN 10 on Nexus SW1< by="" doing="" this="" shouldnt="" vlan="" 10="" be="" created="" on="" nexus="" sw2="" by="" default="">

(7) create the Vlan 10 interface and IP address assignment< is="" there="" anything="" i="" need="" to="" add="" here="" other="" than="" this="" also="" the="" interface="" vlan="" will="" be="" added="" automatically="" on="" the="" other="" switch="" with="" the="" same="" ip="" address="">

(8) create port channel 7, assign Gi0/3 and Gi0/2 and allow both the trunk

(9) select vPC 101 to the channel port 7 on both sides

Requirements on the two 3750 SW1

------------------------------------------------------------

(1) create a vlan 10

(2) assign the interface vlan Access 10

(3) to activate the trunk Gi0/3 and Gi0/2

(4) create port channel 7 and add the two links

-NOW assume that everything is configured correctly, all links between the switches that none should be blocked by STP and VLAN 10 traffic should be secured by two Nexus switches?

Hello

Most of the steps you outlined is correct, although a few comments:

(3) use the two switches management interface to configure the peer of vPC keepalive

A point to note here is that if you have a supervisor engine double (SE) in your Nexus 7 K, then you need to install the management between the two interface IS active that is current and wait for SE, since the two N7K to the same local network. This way you will always have peer connectivity vPC regardless of who is active.

(6) create VLAN 10 on Nexus SW1< by="" doing="" this="" shouldnt="" vlan="" 10="" be="" created="" on="" nexus="" sw2="" by="" default="">

VLANs are not created on the second switch unless you use the switch profiles i.e., config-sync, and this feature is not supported on the Nexus 7 K.

(7) create the Vlan 10 interface and IP address assignment< is="" there="" anything="" i="" need="" to="" add="" here="" other="" than="" this="" also="" the="" interface="" vlan="" will="" be="" added="" automatically="" on="" the="" other="" switch="" with="" the="" same="" ip="" address="">

I guess the obvious thing is to allow a first Hop Router Protocol as HSRP. Note that when you use HSRP jointly with vPC, while the control plan continues to operate as active / standby, in a perspective of data plan, both routers are capable of transmitting data in VLAN that is, assets.

With regard to the SVI created automatically, according to the note to point 6 above, the IVR will not be created as there is not of the Sync feature of config on the Nexus 7 K.

-NOW assume that everything is configured correctly, all links between the switches that none should be blocked by STP and VLAN 10 traffic should be secured by two Nexus switches?

Fix. You should probably also follow best practices spanning tree as Setup providing the bridge root is located on one of the Nexus 7 K, the root of the backup is the second Nexus 7 K etc.

This and much more are covered in the Configuration and Design Guide: best practices for Virtual Port channels (vPC) on switches Cisco Nexus 7000 Series on CCO. It is a very good reference and well worth taking a look through.

Concerning

Tags: Cisco Support

Similar Questions

  • membership of VPC - nexus 5000

    Hello guys,.

    I have a small conceptual question on vPC. Is it possible to add more then 2 devices in one area of the vPC?

    I want to add 4 nexus 5000 devices to a vPC-domain, make a vPC on all 4 devices.

    I found nothing on that in the internet, this is why I ask.

    Thanks in advance!

    2 only allowed in an area of the vPC.

    http://www.Cisco.com/c/en/us/products/collateral/switches/nexus-5000-SER...

  • Virtual PC 2007 - Cannot load the requested browser site

    VPC2007 6.0.156.0 is installed on a Vista Premium IIS7 configuration.

    I also use a variety of host file aliases such as:
    127.0.0.1 hp1
    127.0.0.1 css1

    That as most know will enable me to use the browser to request a website by typinghttp://hp1 or http://css1 using various browsers, so I can compare what is displayed. It gets even more fun when you learn that we don't don't even need to include the regime and can simply ask hp1 or css1 and the site will load - but - this type of request is resolved is no longer if you use a browser in VPC2007, I know I could appreciate once (but I don't remember using this machine able to do ", it could have been on a XP Pro machine).

    Site on the web applications correct very well. I tried to use VPC to select different network connections, but I still don't get anything whatsoever when you apply of hp1 or css1 types of applications.

    So I have two questions:

    VPC 1 Help menu.) does not seem to indicate the presence of VPC SP1, so how can I determine if I have the VPC Service Pack 1 installed?

    2.) anyone knows how I could restore network connectivity to load Web sites running on the same computer, when you use the alias of the host file as the application?

    Hello

    Your question is more complex than what is generally answered in the Microsoft Answers forums. It is better suited for Windows Vista on TechNet. Please post your question in the TechNet Windows Forums.

    Diana

    Microsoft Answers Support Engineer

    Visit our Microsoft answers feedback Forum and let us know what you think.

    If this post can help solve your problem, please click the 'Mark as answer' or 'Useful' at the top of this message. Marking a post as answer, or relatively useful, you help others find the answer more quickly.

  • Nexus 5600 HSRP design question for VLAN stretched between 2 areas of vPc.

    To our new data center network, I have 4 5672UP Nexus in two data centers. Between data centers is a redundant vPc with fiber 2x10Gb. I have configured two areas VPC, one for each data center. I read that HSRP within a VPC domain is active/inactive, but I wonder what would be the right way to configure the HSRP configuration for the VLAN tense because they are two areas different vPc?

    If you need isolation of FHRP between sites, this can be achieved by configuring the HSRP authentication in the same place so stop the HSRP Hellos between the treatment sites and allow each site to act in active / standby. Due to the HW on the 5600 Nexus architecture, control plane packets multicast are punted to the CPU, ignoring any PACL or MAC - ACL. So with a PACKAGE, you will not be able to filter the Hellos HSRP, ARP, BPDU, etc. that need to go to the CPU, because there is an ACL predefined to redirect traffic to control CPU and this ACL that overrides the ACL configured by the user. It is advisable to set up "no arp ip free hsrp duplicate" to repress unnecessary GARPs at each location in this design as well. Note 4-way HSRP is supported only on the latest versions of NX - OS, see also CSCuy89705.

    Another solution is to run FabricPath DCI with Anycast HSRP, which will allow all the 5600 to act as an active gateway by default, refer to page 22 of the FabricPath Cisco best practices.

    -Jeffords Tyler

  • Home installation of XP on Vista 64 Ultimate VPC, activation issues

    I have the motherboard Intel & CPU (Intel Core 2 Quad CPU) running Vista Ultimate 64, I installed from the CD.  Previously used some XP software (Lotus 123 and Word Pro and Word Perfect & Quatro Pro) not to operate smoothly in the installer with Vista, or Vista is best MS OS I have used to date.  I studied MS Virtual PC 2007, installed on the desktop and it works well.  I installed XP Home and the incriminated on virtual PC and all software works better than ever and I don't have to convert one hundred archived files I need little frequent access to because they have been created there with these programs from 10 to 15 years because the PC is "networked" to the Vista machine to transfer files but is not exposed to security issues by avoiding the internet connection.

    There's a rub.  XP Home comes from a CD that I provided by Dell with a PC, I have purchased from them in 2000 ~  It was shipped on a CD of the operating system with the computer and twice, 2003 & 2006, I had to erase completely the C drive and pure install the operating system.  Both times I've been required to product key entry and when installing a semi automated of registration took place via internet.  When I used this same CD to install XP on Virtual PC, never asked me the product key.  At the end of installation, I was directed to activate the product, either via the Internet, phone or delay, but after 30 days, software (XP) would not work.  Because I choose not to have V PC connected to the web, I chose the method of telephone connection and followed.  At the end of the process a direct tech said that it was not a valid copy of XP.

    I have not used XP provided by Dell, as I booted Vista box, then how the hell is the software I've bought from them no not a valid copy.  What viable alternatives can I, if, before the purchase of another Internet licensed XP software?

    Hello

    I understand that you are facing problems of activation with Windows XP Home installation on Windows Vista 64 Ultimate VPC. I understand the inconvenience.

    The question you have posted is better suited in the TechNet forums. I suggest you to send your query there.

    Here is the link: http://social.technet.microsoft.com/Forums/en/category/windowsvistaitpro

    It will be useful. For any other corresponding Windows help, do not hesitate to contact us and we will be happy to help you.

    Kind regards!

  • is it possible to replace the battery vaio vpc?

    The main battery on my vaio vpc begins to degrade. I have an extra external battery, but it is heavy. Is it possible to install a new primary battery - where could I do in New York?

    Yes, you can replace the main battery from your computer. You can contact Sony parts and accessory sales team to check the availability of compatible battery here: http://esupport.sony.com/US/p/model-accessories.pl

    Note: If my post answered your question, please mark it as an "accepted Solution".

  • A VPC Image can be activated with a real product key?

    Hello, I have a real copy of Windows XP (in a box), but I would like to use one of these virtual machine images (Images of VPC), expiring August 9, 2009.   I wonder if it would be possible to activate the VPC image with my real product key?

    I was wondering if its possible because he can save me installation of service packs and all of time clean install using my really old XP disc.

    Mozillakilled salvation,

    Thank you for using Microsoft Vista answers forum.

    Yes, when you use VPC images, you install the operating system, and it is treated as any other facility with the same licensing requirements. This looks like a reasonable alternative to a dual-boot machine since you don't have to reboot to switch between operating systems.

    Here is a link to the Microsoft desktop virtualization products:

    http://www.Microsoft.com/virtualization/products/desktop/default.mspx

    Hope this answer your question. Post back and let us know your comments!
    Dave D
    Microsoft Answers Support Engineer
    Visit our Microsoft answers feedback Forum and let us know what you think.

  • S4048-ON - MLAG Question

    From the world of Cisco, I wanted to put two S4048s in a VSS mode.  Dell touts the MLAG via VLT abilities, but as far as I can tell, it is analogous to the Cisco Nexus VPC.  I'm therefore looking to separate control/management plans.  It is not possible to rethink the VSS as capabilities?  The reason why I ask, is I'm looking for high-times.  If I get only L2 abilities off SUVS, so I run VRRP between switches, but I am concerned about the convergence time.  I have not messed with VRRP a lot, but I was pretty happy with HSRP 2 convergence.  I can foresee periods of weak convergence with VLT + VRRP or should I consider going with a configuration of the stack instead?  Also, I used Cisco enough that I met of numerous warnings "featured".  Any configuration warnings, should I be aware of cases using the VLT or stacking?

    Well, I answered my question after his arrival in the whole of the additional documents (VLT).  What I'm looking for is "peer routing", which denies the necessity of VRRP.  If the two switches will actively transmit packets, instead to pass traffic through the VLTi.  There should not be problems of convergence as a result.  This is similar to Cisco VSS AFAIK, except control plans are separated on the side of Dell.

    I am still confused but problems with devices monoresident; See my post above.  I guess I can lab this place, but it is not clear in a scenario of equal routing, if these devices will be a problem.

  • VPC 2007 will run on Windows 7?

    Some uploaders YouTube Download Windows 7 with VPC 2007.

    Hi son phan,.

    Welcome to the Microsoft community!

    According to the description you nees to information about the compatible with Windows 7 Virtual PC 2007.

    Here is a link that shows that Microsoft Virtual PC 2007 is compatible with Windows 7:

    http://www.microsoft.com/en-us/windows/compatibility/win7/CompatCenter/ProductViewerWithDefaultFilters?TempOsid=win7&Locale=en-us&TextSearch=virtual%2Bpc%2B2007&Type=Both&CurrentPage=0&TotalPages=1&ShowCriteria=0&SortCriteria=Relevance&Compatibility=Unknown&LastRequested=14

    To learn more about Virtual PC 2007, visit this link

    http://www.Microsoft.com/Windows/Virtual-PC/support/Virtual-PC-2007.aspx

    Hope this information helps. If you have questions to answer Windows only and we will be happy to help.

  • Assistance of Nexus 5 k with VPC and routing

    Hello guys,.

    We are trying to implement a new solution for one of our customers who have purchased a pair of devices 5596UP nexus.

    We have this topology attached in jpeg format. They want to use the pair of 5 k for LAN and WAN connectivity.

    Background

    Customer wants a VPC configuration between the pair of nexus 5 k beucase at some point they will want to buy modules FEX and VPC servers directly, in which case it will take the VPC (VPC VLAN L3 ends the 5 k using HSRP).

    Quesitons

    1. can I have the same vlan with SVI built on each link and go through the vlan the link peer in order to build IBGP and EBGP peers according to the diagram. Will this work?

    2. is it possible to build a bond of layer 3 of each link to remote device of PE and then configure other IVS on each link, allowing through the link peer? This configuration would work and traffic would pass through the link of peers for IBGP connectivity?

    3. where can I I directed by question 1 above and use a separate port channel (non - vpc) between the two Nexus 5 k trunk vlan everywhere?

    What is the best design around this kind of solution?

    The alternative is to have the layer switch 2 plug to two Nexus 5 k without port-channel and make tree covering to the loop. In this case I have to build another trunk between the 5 k or could simply allow to the vlan through the link Peer VPC.

    Thank you very much in advance.

    Hello

    The 5ks have cards daughter layer-3 installed? The 5K support BGP, but the maximum amount of BGP routes, you can have is 8000.

    HTH

  • Several links to counterparts in vPC between two Nexus 9 K

    Hello

    My question is quite simple: it is possible to configure two (or more) vPC peer that connect the two switches in a domain of the vPC? The goal is to set up a domain of vPC where two peers links are used to transport of VLAN different, instead of having a single peer link to all VLAN (see attached image).

    Thanks in advance

    Its not supported.

    If you are concerned about bandwidth, in addition of links link Peer.

    Thank you

    Madhu

  • Clarification of Nexus VPC

    After a recent deployment of the switch, I see some very strange transmission problems layer 2.  I'm not sure if this is related to a problem of configuration on my part.  I would like clarification on the VPC, and I hope you can help me.

    It is my understanding that when you have a series of double-sided VPC between, say, a pair of N7700 and several pairs of Nexus 9 K or K 5 switches, that all the field of VPC ID must be different.  However, a contractor told me that each number VPC - associated with the uplink of etherchannel to the Nexus 7Ks - must also be unique.  A graph that shows my dilemma is attached.

    Question - I am ok to reuse the port-channel number 3 with the VPC 3 for all pairs of leaves, or if they should be different?

    Hello

    What you show, it's perfectible acceptable. The two areas of vPC in the Nexus 9000 layer, domain of the vPC 117 and 118 in your diagram, have no knowledge of the other, and so the same vPC and port channel number can be used.

    As you said, you obviously have a unique numbering to the layer of Nexus 7000.

    Concerning

  • Design of switching between Nexus7K and active / standby firewall

    In the attached diagram, Nexus7K is used in two ways: on the left side, pair NX7K connects to the firewall as layer 2 trunks. vPC VLAN are shared through resources. The firewall is a pair in Active mode / standby. On the right side, another pair of NX7K connects to the firewall as layer 3 rotued links. HSRP or VRRP is running between the pair of NX7K for firewall VLAN SVI.

    Because even NX7K have mesh connections to the active firewall units / standby, I want to make sure in failover scenarios (failover firewalls or failures of NX7K), the link that remains between the pair of NX7K and the firewall can actually send traffic (not perforated black).

    Failure scenarios I can think of include: Firewall active failover on the eve, failure of the main device NX7K, double NX7K active and failure of peers-link NX7K vPC. I would like to get some advice on what I should consider and implement in these scenarios to achieve high availability.

    Many thanks for any advice.

    Hello

    your topology, I see that the main problem is that the physical connectivity from the firewall to the pair of devices nexus in topologies to fails to a redundant link to the N7K

    first since you're using vPC with one counterpart vPC linking the pair of N7K then you must follow the recommendations of Cisco firewalls of L2 and L3 link connection

    L2 if you pass vPC vlan on the trunk in your topology and firewall then there is a possibility of blocking traffic or drop cases underwritten by vPC loop prevention mechanism in the case for example a vPC counterpart link gose down

    the fix to the East either:

    use no-vPC VLAN and link to switch separate inter for VLANs (i thin that you already have this link)

    or multi home L2 connects each firewall for the two switch N7K and assuming that HSRP is configured in the N7K and static routing is used between the firewall and the N7K

    for links to L3 Firewalls:

    You must stream as well (if possible and recommend) and use a static routing between N7K and firewalls and firewalls must point to the VIP of HSRP N7K

    multiple L3 and L3 dyanaminc routing peering on the link of the vPC-peer is not supported design

    Look at the discussion that might help as well

    https://supportforums.Cisco.com/message/3792466#3792466

    hope this helps

    If useful rates

  • iSCSI Boot target IP Question

    Hi all

    Setting up iSCSI starts for the first time and had a question.

    Installation: Blades UCS about a pair of N5K (vPC) with a double NetApp controller connected.  There are 4 UCS vNIC - two for only iSCSI (as the VLAN native) and two for everything else.

    The blades odd dΘmarrez since LUN on NetApp controller and the blades even dΘmarrez since LUN on NetApp B controller.

    So my question.  When I make for an odd Blade (for example) iSCSI targets, do I have both A and B "NIC" s point on A controller's IP?  Or NIC - A point on A controller and IP point of NIC - B to B controller IP?  I was not sure that, in this example, the controller would hold unit number logic that this odd blade is starting from.

    Thank you!

    Hi Ian

    You can add up to two iSCSI vNIC startup strategy. A vNIC acts as the source of primary iSCSI boot, and the other acts as the source of secondary iSCSI boot.

    "point of NIC - A controller - A IP and NIC B points to the IP Address of the controller of B ' YES.

    You would create another strategy of starting for blades, with the primary order / trade school.

  • vPC and VSS port-channel uplinks

    Hello Forum team!

    Currently I have a configuration of a couple of Nexus 5548UP in a field of vPC with a couple of Nexus 2248TP aircraft in a double scenario hosted for the access layer (FEX in a vPC also). Core/distribution, there are a pair of 6509 cluster VSS. Now I configured a regular port-channel every 5K to the VSS functionality and works as expected. My question is this: given that in the vPC a 5K is the main and the other is secondary, a configurable vPC for the uplinks to the VSS instead of a channel of regular port of each 5 K?

    In addition, configurations must be replicated manually on both Nexus 5 K? I'm in denial about this. I'm used to how VSS works.

    Thanks to the advanced guys!

    Hello

    You can use a vPC of the pair of Nexus 5 K to the VSS cluster. There is a white paper Cisco Catalyst 6500 VSS and Cisco Nexus 7000 vPC of interoperability and best practices that will in this. While the white paper is for Nexus 7000 are you interested to do probably is the configuration shown in Figure 2 and so the scenario and considerations are the same.

    On the Nexus switches with vPC there are still two control i.e. plans, the primary and secondary that you mention. For all the configurations that should be applied at the primary and secondary, you can manually configure on the two switches or use the synchronization of Configuration characteristic Nexus (see Configuration synchronization Operations for more details).

    He was 15-months we have looked at the function so probably things have changed, but following issues with our tests, and we were see reported here in the forum at this time, we decided not to use the config Sync feature. Outside all bugs, there are some operational changes to consider and then make sure that you are comfortable with how config-sync works before putting it in a production environment.

    Concerning

Maybe you are looking for