cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
708
Views
0
Helpful
1
Replies

Layer 3 Out VPC

MJU-NETDESIGN
Level 1
Level 1

Hi there

I have 2 pods each with 2 Border Leaf.

On each 2 Border Leaf im trying to connect a Firewall with a layer 3 VPC. (/28 for glue/transport net)

I have one VRF with one bridge domain, and servers in that bridge domain must use the external firewall to reach internet.

 

Is this a supported way to connect 2 5510 Firewall ??

 

 

 

 

1 Reply 1

PatrickH1
Level 1
Level 1

Hi,

 

sure you can so it, but the Design depends a little bit from the Firewall Setup. Is it a Acitve/Active or Active/Standby Cluster.

 

Set a default route to the Firewall and assign a contract between the Layer3Out Firewall and the EPG Provider -> Consumer.

 

Here is a White Paper about : Cisco ACI Multi-Pod and Service Node Integration

 

https://www.cisco.com/c/en/us/solutions/collateral/data-center-virtualization/application-centric-infrastructure/white-paper-c11-739571.html

 

If this is helpful, mark it as helpful :)

 

Kind Regards

 

Patrick

Save 25% on Day-2 Operations Add-On License