Foreword |
|
xxiii | |
Introduction |
|
xxiv | |
|
Chapter 1 Introduction to Cisco NX-OS |
|
|
1 | (58) |
|
|
1 | (11) |
|
NX-OS Supported Platforms |
|
|
3 | (4) |
|
|
7 | (1) |
|
|
7 | (1) |
|
|
8 | (1) |
|
|
8 | (1) |
|
|
9 | (1) |
|
|
9 | (1) |
|
Installing the NX-OS License File |
|
|
9 | (1) |
|
Cisco NX-OS and Cisco IOS Comparison |
|
|
10 | (2) |
|
|
12 | (2) |
|
|
12 | (1) |
|
Global Configuration Command Mode |
|
|
13 | (1) |
|
Interface Configuration Command Mode |
|
|
13 | (1) |
|
|
14 | (14) |
|
Controller Processor (Supervisor Module) |
|
|
15 | (1) |
|
Connectivity Management Processor (CMP) |
|
|
16 | (2) |
|
|
18 | (1) |
|
|
19 | (4) |
|
|
23 | (3) |
|
|
26 | (2) |
|
|
28 | (9) |
|
|
28 | (5) |
|
Configuration Files: Configuration Rollback |
|
|
33 | (2) |
|
|
35 | (2) |
|
|
37 | (17) |
|
|
43 | (3) |
|
|
46 | (1) |
|
Interface Allocation: N7K-M132XP-12 and L |
|
|
46 | (1) |
|
Interface Allocation: N7K-F132XP-15 |
|
|
47 | (1) |
|
Interface Allocation: N7K-M108X2-12L |
|
|
48 | (1) |
|
Interface Allocation: 10/100/1000 Modules |
|
|
48 | (4) |
|
Interface Allocation on M2 Modules |
|
|
52 | (2) |
|
|
54 | (2) |
|
|
54 | (1) |
|
|
55 | (1) |
|
|
56 | (1) |
|
|
57 | (2) |
|
Chapter 2 Layer 2 Support and Configurations |
|
|
59 | (76) |
|
|
59 | (12) |
|
Store-and-Forward Switching |
|
|
60 | (1) |
|
|
60 | (1) |
|
Fabric Extension via the Nexus 2000 |
|
|
60 | (1) |
|
Configuring Nexus 2000 Using Static Pinning |
|
|
61 | (1) |
|
Nexus 2000 Static Pinning Verification |
|
|
62 | (4) |
|
Configuring Nexus 2000 Using Port-Channels |
|
|
66 | (1) |
|
Nexus 2000 Static Pinning Verification |
|
|
67 | (2) |
|
Layer 2 Forwarding on a Nexus 7000 |
|
|
69 | (1) |
|
L2 Forwarding Verification |
|
|
70 | (1) |
|
|
71 | (5) |
|
|
72 | (1) |
|
|
72 | (1) |
|
Assigning VLAN Membership |
|
|
73 | (1) |
|
Verifying VLAN Configuration |
|
|
74 | (2) |
|
|
76 | (4) |
|
|
77 | (3) |
|
Verifying PVLAN Configuration |
|
|
80 | (1) |
|
|
80 | (23) |
|
Rapid-PVST+ Configuration |
|
|
82 | (1) |
|
Verifying Spanning Tree State for a VLAN |
|
|
83 | (1) |
|
|
84 | (3) |
|
|
87 | (4) |
|
Additional Spanning Tree Configuration |
|
|
91 | (1) |
|
|
91 | (3) |
|
|
94 | (1) |
|
|
94 | (1) |
|
|
94 | (1) |
|
|
95 | (1) |
|
|
96 | (1) |
|
|
97 | (1) |
|
|
98 | (1) |
|
|
98 | (1) |
|
|
99 | (1) |
|
|
100 | (1) |
|
Configuring Layer 2 Interfaces |
|
|
100 | (1) |
|
|
100 | (1) |
|
|
101 | (1) |
|
Link to Virtualization Host |
|
|
101 | (1) |
|
|
102 | (1) |
|
|
103 | (6) |
|
Assigning Physical Ports to a Port-Channel |
|
|
104 | (3) |
|
Port-Channel Flow Control |
|
|
107 | (1) |
|
Verifying Load Distribution Across a Port-Channel |
|
|
108 | (1) |
|
|
109 | (9) |
|
|
116 | (1) |
|
|
116 | (1) |
|
|
117 | (1) |
|
Unidirectional Link Detection |
|
|
118 | (1) |
|
|
119 | (14) |
|
|
127 | (1) |
|
|
127 | (6) |
|
|
133 | (2) |
|
Chapter 3 Layer 3 Support and Configurations |
|
|
135 | (86) |
|
|
135 | (19) |
|
|
136 | (1) |
|
|
137 | (5) |
|
|
142 | (3) |
|
|
145 | (2) |
|
|
147 | (2) |
|
|
149 | (5) |
|
|
154 | (24) |
|
|
154 | (6) |
|
|
160 | (3) |
|
|
163 | (4) |
|
|
167 | (2) |
|
|
169 | (8) |
|
|
177 | (1) |
|
|
178 | (5) |
|
|
178 | (5) |
|
|
183 | (15) |
|
|
184 | (3) |
|
|
187 | (3) |
|
|
190 | (2) |
|
|
192 | (2) |
|
|
194 | (3) |
|
Modifying BGP Routing Metrics |
|
|
197 | (1) |
|
Verifying BGP-Specific Configuration |
|
|
198 | (1) |
|
First Hop Redundancy Protocols |
|
|
198 | (22) |
|
|
199 | (1) |
|
|
199 | (1) |
|
HSRP Priority and Preempt |
|
|
200 | (1) |
|
Verifying the HSRP Configuration |
|
|
201 | (1) |
|
|
202 | (2) |
|
|
204 | (1) |
|
|
204 | (1) |
|
|
205 | (1) |
|
|
205 | (2) |
|
VRRP Priority and Preempt |
|
|
207 | (1) |
|
Verifying VRRP Configuration |
|
|
208 | (1) |
|
|
208 | (1) |
|
|
209 | (1) |
|
HSRP, VRRP, and vPC Interactions |
|
|
210 | (2) |
|
|
212 | (1) |
|
|
212 | (2) |
|
GLBP Priority and Preempt |
|
|
214 | (1) |
|
Verifying GLBP Configuration |
|
|
214 | (1) |
|
|
215 | (3) |
|
|
218 | (2) |
|
|
220 | (1) |
|
Chapter 4 IP Multicast Configuration |
|
|
221 | (34) |
|
|
221 | (6) |
|
Multicast Distribution Trees |
|
|
222 | (3) |
|
|
225 | (1) |
|
Protocol Independent Multicast (PIM) |
|
|
225 | (1) |
|
|
226 | (1) |
|
PIM Configuration on Nexus 7000 and Nexus 5500 |
|
|
227 | (14) |
|
|
230 | (2) |
|
|
232 | (3) |
|
|
235 | (2) |
|
|
237 | (2) |
|
Configuring SSM and Static RPF |
|
|
239 | (2) |
|
|
241 | (1) |
|
IGMP Configuration on Nexus 7000 |
|
|
242 | (3) |
|
IGMP Configuration on Nexus 5000 |
|
|
245 | (1) |
|
IGMP Configuration on Nexus 1000V |
|
|
246 | (2) |
|
MSDP Configuration on Nexus 7000 |
|
|
248 | (2) |
|
Administrative Scoping of Multicast RPs in PIM |
|
|
250 | (2) |
|
Configuring PIM Join and Prune Policies |
|
|
252 | (1) |
|
Multicast and Control Plane Policing (CoPP) |
|
|
253 | (1) |
|
|
253 | (2) |
|
|
255 | (94) |
|
|
256 | (10) |
|
RADIUS Configuration Distribution |
|
|
259 | (7) |
|
|
266 | (9) |
|
|
266 | (1) |
|
TACACS+ Configuration Distribution |
|
|
267 | (1) |
|
Configuring the Global TACACS+ Keys |
|
|
268 | (1) |
|
Configuring the TACACS+ Server Hosts |
|
|
268 | (1) |
|
Configuring TACACS+ Server Groups |
|
|
269 | (1) |
|
Configuring TACACS+ Source Interface |
|
|
270 | (5) |
|
|
275 | (3) |
|
|
278 | (16) |
|
Configuring AAA for Cisco TrustSec |
|
|
281 | (1) |
|
Defining Network Device Admission Control |
|
|
282 | (3) |
|
Configuring the Nexus 7000 for 802.1x and SGA Features |
|
|
285 | (3) |
|
SGT Assignment via ISE Server |
|
|
288 | (2) |
|
Policy Component: IP to SGT Mapping |
|
|
290 | (2) |
|
Policy Component: SGACL Creation |
|
|
292 | (2) |
|
Configuring Cisco TrustSec: IEEE 802.1AE LinkSec |
|
|
294 | (8) |
|
Layer 2 Solutions Between Data Centers |
|
|
301 | (1) |
|
|
302 | (3) |
|
|
305 | (2) |
|
|
307 | (1) |
|
Configuring Port Security |
|
|
308 | (5) |
|
Security Violations and Actions |
|
|
311 | (2) |
|
Configuring DHCP Snooping |
|
|
313 | (3) |
|
Configuring Dynamic ARP Inspection |
|
|
316 | (5) |
|
Dynamic ARP Inspection Trust State |
|
|
317 | (4) |
|
Configuring IP Source Guard |
|
|
321 | (1) |
|
Configuring Keychain Management |
|
|
322 | (1) |
|
Configuring Traffic Storm Control |
|
|
323 | (2) |
|
|
325 | (2) |
|
Configuring Control Plane Policing |
|
|
327 | (8) |
|
|
335 | (5) |
|
|
340 | (7) |
|
|
347 | (2) |
|
Chapter 6 High Availability |
|
|
349 | (36) |
|
|
349 | (9) |
|
|
350 | (2) |
|
|
352 | (3) |
|
|
355 | (2) |
|
Redundant Ethernet Out-of-Band (EOBC) |
|
|
357 | (1) |
|
|
357 | (1) |
|
Generic Online Diagnostics |
|
|
358 | (7) |
|
|
359 | (1) |
|
|
360 | (5) |
|
|
365 | (1) |
|
NX-OS High-Availability Architecture |
|
|
365 | (1) |
|
|
366 | (2) |
|
|
368 | (1) |
|
|
369 | (1) |
|
|
370 | (1) |
|
In-Service Software Upgrades |
|
|
370 | (13) |
|
|
383 | (2) |
|
Chapter 7 Embedded Serviceability Features |
|
|
385 | (70) |
|
|
386 | (14) |
|
|
386 | (1) |
|
Configuring SPAN on Nexus 7000 |
|
|
387 | (5) |
|
|
392 | (1) |
|
Configuring SPAN on Nexus 5x00 |
|
|
393 | (4) |
|
|
397 | (1) |
|
Configuring SPAN on Nexus 1000V |
|
|
398 | (2) |
|
|
400 | (6) |
|
|
406 | (6) |
|
|
412 | (2) |
|
|
414 | (10) |
|
|
424 | (7) |
|
Smart Call Home Configuration |
|
|
428 | (3) |
|
Configuration Checkpoint and Rollback on Nexus 7000 |
|
|
431 | (3) |
|
Checkpoint Creation and Rollback |
|
|
432 | (2) |
|
Configuration Checkpoint and Rollback on Nexus 5x00 |
|
|
434 | (3) |
|
Checkpoint Creation and Rollback |
|
|
435 | (2) |
|
|
437 | (7) |
|
Configuring NetFlow on Nexus 7000 |
|
|
438 | (4) |
|
Configuring NetFlow on Nexus 1000V |
|
|
442 | (2) |
|
|
444 | (1) |
|
|
445 | (2) |
|
IEEE 802.3az (Energy Efficient Ethernet) |
|
|
447 | (1) |
|
Power On Auto-Provisioning |
|
|
448 | (1) |
|
|
449 | (5) |
|
|
454 | (1) |
|
|
455 | (34) |
|
|
455 | (1) |
|
|
456 | (9) |
|
|
456 | (2) |
|
Fibre Channel over Ethernet |
|
|
458 | (3) |
|
Single-Hop Fibre Channel over Ethernet |
|
|
461 | (1) |
|
Multhop Fibre Channel over Ethernet |
|
|
462 | (1) |
|
Storage VDC on Nexus 7000 |
|
|
463 | (2) |
|
|
465 | (2) |
|
N-Port Identification Virtualization |
|
|
466 | (1) |
|
|
466 | (1) |
|
Nexus 5x00 Unified Fabric Configuration |
|
|
467 | (10) |
|
Single-Hop FCoE Configuration: Nexus 5x00 |
|
|
469 | (4) |
|
|
473 | (4) |
|
Nexus 7000 Unified Fabric Configuration |
|
|
477 | (11) |
|
|
488 | (1) |
|
|
489 | (154) |
|
Hypervisor and vSphere Introduction |
|
|
489 | (1) |
|
Nexus 1000V System Overview |
|
|
490 | (4) |
|
Nexus 1000V Switching Overview |
|
|
494 | (2) |
|
Nexus 1000V VSM Installation |
|
|
496 | (46) |
|
Nexus 1000V Deployed on Nexus 1010 Virtual Services Blade |
|
|
497 | (5) |
|
Registering the Nexus 1000V Plug-In to VMware Virtual Center Management Application |
|
|
502 | (5) |
|
Configuring the SVS Domain and Networking Characteristics |
|
|
507 | (1) |
|
Connecting the Nexus 1000V VSM to the vCenter Server |
|
|
508 | (2) |
|
Nexus 1000V Installation Management Center |
|
|
510 | (9) |
|
VEM Installation Option on the Nexus 1000V Management Installation Center |
|
|
519 | (4) |
|
vCenter Connection Option on the Nexus 1000V Management Installation Center |
|
|
523 | (3) |
|
Creating the Uplink Profile |
|
|
526 | (2) |
|
Adding the VEM to a ESX vSphere Host |
|
|
528 | (8) |
|
Enabling the Telnet Server Process |
|
|
536 | (1) |
|
Changing the VSM Hostname |
|
|
536 | (1) |
|
|
536 | (6) |
|
|
542 | (10) |
|
Virtual Network Management Center |
|
|
552 | (19) |
|
Installing Virtual Network Management Center Software from OVA Downloaded from Cisco.com |
|
|
553 | (11) |
|
Adding the VM-Manager for vCenter Connectivity in VNMC Management Application |
|
|
564 | (6) |
|
Configuring the Cisco VNMC Policy-Agent on the 1000v VSM |
|
|
570 | (1) |
|
|
571 | (3) |
|
Install Virtual Security Gateway on the Nexus 1010 |
|
|
574 | (28) |
|
Configuring the Cisco VNMC Policy-Agent on the VSG |
|
|
577 | (1) |
|
Verify That the VSG and VSM Are Registered Clients in VNMC |
|
|
578 | (1) |
|
Creating a Tenant in VMMC |
|
|
579 | (23) |
|
|
602 | (27) |
|
Deploying Virtual Extensible LAN |
|
|
604 | (25) |
|
Nexus 1000v Network Analysis Module |
|
|
629 | (13) |
|
Installing Nexus 1000v Network Analysis Module |
|
|
630 | (11) |
|
Deploying the Nexus 1000v NAM as a Virtual Services Blade on the Nexus 1010 |
|
|
641 | (1) |
|
|
642 | (1) |
|
Chapter 10 Quality of Service (QoS) |
|
|
643 | (32) |
|
|
646 | (17) |
|
|
646 | (2) |
|
|
648 | (2) |
|
|
650 | (11) |
|
QoS and Nexus 2000 Fabric Extenders |
|
|
661 | (2) |
|
QoS and Nexus 7000 Virtual Device Contexts |
|
|
663 | (1) |
|
|
663 | (7) |
|
|
663 | (1) |
|
|
664 | (3) |
|
|
667 | (1) |
|
QoS and Nexus 2000 Fabric Extenders |
|
|
668 | (2) |
|
|
670 | (4) |
|
|
670 | (1) |
|
Classification in Nexus 1000V |
|
|
670 | (4) |
|
|
674 | (1) |
|
Chapter 11 Overlay Transport Virtualization (OTV) |
|
|
675 | (34) |
|
OTV Terminology and Concepts |
|
|
677 | (5) |
|
|
682 | (5) |
|
Multicast-Enabled Transport Infrastructure |
|
|
687 | (4) |
|
Unicast-Enabled Transport Infrastructure |
|
|
691 | (4) |
|
|
695 | (2) |
|
Data-Plane Multicast Traffic |
|
|
697 | (1) |
|
|
698 | (1) |
|
|
698 | (2) |
|
|
698 | (1) |
|
Unknown Unicast Handling with OTV |
|
|
699 | (1) |
|
Broadcast Traffic Handling with OTV |
|
|
699 | (1) |
|
|
700 | (2) |
|
|
700 | (2) |
|
First-Hop Routing Protocol Localization |
|
|
702 | (3) |
|
Inbound Path Optimization |
|
|
705 | (2) |
|
|
707 | (2) |
|
Chapter 12 Layer 3 Virtualization and Multiprotocol Label Switching (MPLS) |
|
|
709 | (20) |
|
Virtual Routing and Forwarding |
|
|
709 | (8) |
|
|
710 | (3) |
|
|
713 | (1) |
|
|
713 | (4) |
|
|
717 | (9) |
|
|
718 | (2) |
|
|
720 | (3) |
|
|
723 | (1) |
|
|
723 | (2) |
|
MPLS and IPv6: 6PE and 6VPE |
|
|
725 | (1) |
|
Management and Troubleshooting |
|
|
725 | (1) |
|
|
725 | (1) |
|
Nexus Hardware Requirements and NX-OS Licensing for MPLS and VRF |
|
|
726 | (1) |
|
|
727 | (2) |
|
|
729 | (20) |
|
|
729 | (1) |
|
|
730 | (1) |
|
|
731 | (1) |
|
|
732 | (1) |
|
|
733 | (2) |
|
Communicating Between LISP and non-LISP Sites |
|
|
735 | (1) |
|
LISP Host Mobility with an Extended Subnet Mode |
|
|
736 | (10) |
|
LISP Deployment Best Practices |
|
|
746 | (1) |
|
|
746 | (3) |
|
Chapter 14 Nexus Migration Case Study |
|
|
749 | (40) |
|
|
749 | (1) |
|
|
750 | (1) |
|
|
751 | (1) |
|
|
752 | (1) |
|
|
752 | (2) |
|
|
754 | (6) |
|
Maintenance Window #1 Summary |
|
|
760 | (1) |
|
|
760 | (28) |
|
Ongoing Maintenance Windows |
|
|
788 | (1) |
|
|
788 | (1) |
Index |
|
789 | |