Escolar Documentos
Profissional Documentos
Cultura Documentos
Topology
Ethernet 3/17-25
Ethernet 4/17-25
Ethernet 3/26-34
Ethernet 4/26-34
A: Layer 2
Create VLANs in DC-1 devices as per the table
VLAN Number
30
40
50
70
80
90
Switches
DC1-N7K-1
DC1-N7K-3
DC1-N7K-4
VLAN Name
iSCSI
ESXi-MGMT
DMZ
VM-DATA
DCI_SITE
DCI_EXTEND
VLANS
80,90
30,40,50,70,80,90
30,40,50,70
B: Layer 3
Assign IP Address to the DC1N7K3, DC1N7K4 interfaces as per the table.
Switch
DC1N7K3
DC1N7K3
Interfaces
Loopback 0
VLAN 30
IP Address
10.0.1.3
10.1.30.129
DC1N7K3
VLAN 40
10.1.40.3
DC1N7K3
Ethernet 4/24
10.10.3.1
DC1N7K4
Loopback 0
10.0.1.4
DC1N7K4
DC1N7K4
DC1N7K4
VLAN 30
VLAN 40
Ethernet 4/26
10.1.30.130
10.1.40.4
10.10.4.1
Subnet Mask
255.255.255
.255
255.255.255
.128
255.255.255
.0
255.255.255
.252
255.255.255
.255
255.255.255
.128
255.255.255
.0
255.255.255
3
.252
D: DMZ
Configure DMZ links from DC1N7K3 (3/18), DC1N7K4 (3/26) to the Fabric
Interconnects.
Allow trunking for VLAN 50 only.
Ensure that the Nexus 7K DMZ Ports do not listen/learn STP BPDUs.
Configure Speed of these links as 1 GB.
These ports should come up after the UCS configuration.
Configure port Channel 100 on Trunk links between DC1-N7K-3 and DC1-N7K-4
and also use Bridge assurance.
Configure jumbo frame support on it.
Prune VLAN 50 , 80 ,90 from it.
Create Multi-Chassis link aggregation Groups on DC1-N7K-3 and DC1-N7K-4.
Use port channel 100 as Peer-link.
You are not allowed to add any L2 or L3 connection.
You may use any Domain ID.
Make sure DC1-N7k-3 is the primary VPC.
Make sure UCS will not become primary for LACP.
Configure E4/19 , E4/28 as port channel 10 towards FI-A.
Allow VLANs 30 , 40 , 70 on port-channel 10
Configure E4/20, E4/29 as port-channel 20 towards FI-B.
Allow VLANs 30 , 40 ,70 on port-channel 20.
Both Port-Channel need to support Jumbo Frame.
Switch
DC1N7K
3
DC1N7K
3
DC1N7K
4
DC1N7K
4
VLAN
VLAN
30
VLAN
40
VLAN
30
VLAN
40
HSRP
Group
0
0
0
0
IP
Address
10.1.30.
254
10.1.40.
254
10.1.30.
254
10.1.40.
254
If DC1-N7K-4 comes online before DC1-N7K-3 , you need to make sure DC1N7K-3 becomes the Active
Make Sure that DC1-N7K-3 will be primary as soon as HSRP goes up for VLAN
30 & 40.
DC-2:
Assign interfaces to VDCs based on the interface allocation table.
DC2N7K3
Interface
Interface
DC2N7K4
Interface
Interface
Ethernet 3/17-25
Ethernet 4/17-25
Ethernet 3/26-34
Ethernet 4/26-34
A: Layer 2
Create VLANs in DC-2 devices as per the table.
VLAN Number
31
41
80
90
Switches
DC2-N7K-1
DC2-N7K-3
DC2-N7K-4
DC2-N5K-1
DC2-N5K-2
VLAN Name
FP_VLAN1
FP_VLAN2
DCI_SITE
DCI-EXTEND
VLANS
80,90
31,41,80,90
31,41
31,41
31,41
FP Switch ID
30
40
300
400
B: Layer-3
Assign IP Address to the DC1N7K3, DC1N7K4 interfaces as per the table.
Switch
DC2N7K3
DC2N7K3
Loopback 0
VLAN 31
IP Address
10.0.2.3
10.1.31.129
DC2N7K3
VLAN 41
10.1.41.3
DC2N7K3
Ethernet 4/24
10.20.3.1
DC2N7K4
Loopback 0
10.0.2.4
DC2N7K4
Interfaces
VLAN 31
DC2N7K4
VLAN 41
DC2N7K4
Ethernet 4/26
10.1.31.130
10.1.41.4
10.20.4.1
Subnetmask
255.255.255
.255
255.255.255
.128
255.255.255
.0
255.255.255
.252
255.255.255
.255
255.255.255
.128
255.255.255
.0
255.255.255
.252
Switch
DC2N7K3
DC2N7K3
DC2N7K4
DC2N7K4
VLAN
VLAN
31
VLAN
41
VLAN
31
VLAN
41
VRRP Group
IP Address
10.1.31.254
10.1.41.254
10.1.31.254
10.1.41.254
Interfaces
IP Address
DC1N7K1
Loopback 0
10.0.1.2
DC1N7K1
Ethernet 4/5
10.1.4.1
DC1N7K3
Ethernet 4/25
10.1.4.2
DC1N7K3
Vlan 90
10.1.90.1
DC2N7K1
Loopback 0
10.0.2.2
DC2N7K1
DC2N7K3
Ethernet 4/5
Ethernet 4/25
10.1.4.5
10.1.4.6
Subnetmask
255.255.255
.255
255.255.255
.252
255.255.255
.252
255.255.255
.252
255.255.255
.255
255.255.255
.252
255.255.255
DC2N7K3
Vlan 90
10.1.90.2
.252
255.255.255
.252
B: FCIP
ON MDS-1
Gi3/3 : 198.18.69.9 255.255.255.0
Gi3/4 : 198.18.70.9 255.255.255.0
ON MDS-1
Gi3/3 : 198.18.69.11 255.255.255.0
Gi3/4 : 198.18.70.11 255.255.255.0
C: FCOE Task
Pool Name
DC-FI-uuid
DC-FI-wwpna
DC-FI-wwpnb
wwpn (FI-A)
wwpn (FI-b)
wwnn
DC-FI-wwnn
MACs
Management IP
Management
gateway
DC-FI-mac
Start Value
1111000000000001
20:00:00:25:b5:10:
10:01
20:00:00:25:b5:10:
10:0A
20:00:00:25:b5:11:
10:01
00:25:B5:00:00:01
10.1.1.53/24
Quanti
ty
10
4
4
4
32
7
10.1.1.254
VLAN Name
iSCSI
ESXi-MGMT
DMZ
VM_DATA
UCS_FCoE_VLAN_VSA
N100
UCS_FCoE_VLAN_VSA
N200
Configure Service Profile with the name RemoteBoot . Make use of pools that
you configured earlier.
Configure policy that will ensure that the service profile can only be assigned to
blade that have no local disk.
Configure 2 vHBAs first connected to Fabric 1, second to Fabric 2. One HBA
per fabric ( fc0,fc1)
Configure Updating vNIC template vnic-a , vnic-b and allow only corporate
networks. Configure 4 vNICs in the Service Profile bound to the vNIC templates
you created.
Make sure any disruptive change to the service profile requires user
acknowledgement. You are not allowed to create a new policy.
Failover should be transparent to OS.
Name
vNIC Template
name
vNIC Name
vHBA name
Boot Policy
FI-A
FI-B
vnic-a
vnic-b
eth0,eth2
fc0
San-boot-dual
eth1,eth3
fc1
10
Value
50:00:40:20:02:f4:6a:
45
50:00:40:21:02:f4:6a:
45
1
Associate the service profile with blade 1 and make sure the blade boots up
with the preinstalled ESXi from the SAN.
Create Zones in MDS1 for VSAN 100 and VSAN 200. Zoning should include all
the pooled addresses given in the table and target disk wwpn.
Create a Host Firmware Packages policy for Adapter and BIOS using the latest
version. Do not assign it to any server.
Create a Management Firmware Packages policy using the latest version. Do
not assign it to any server.
Clone the service profile you created, and with minimum configuration changes
assign this service profile to blade 2. Do not power on the server after the
successful assignment.
Value
10.1.1.214
CN=ucsbinduser,OU=CiscoUCS,DC=ccie
dc,DC=lab
Cisco
DC=cciedc,DC=lab
389
$AMAccountName=$userid
Enable
ldap-domain
Rescursive
memberOf
ldap-group
UCS Role
aaa
network
Once Remote server boots up you will see a VEM module being added to the
N1K.
11