Cisco Live Fabricpath
Cisco Live Fabricpath
Cisco Live Fabricpath
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public
Session Goal
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public3 3
Follow On Sessions
Session suggestions
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public4 4
Agenda
1. FabricPath Overview, pre migration items
HW & SW Dependencies
3. Troubleshooting commands
4. Q&A
5. References
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 5
1. FabricPath Overview, dependencies
Goal’s of Cisco FabricPath
When Deployed across multiple Cisco Nexus chassis', FabricPath creates a flat data center switching fabric
Switching Routing
Easy Configuration Multi-pathing (ECMP)
Plug & Play High cross sectional bandwidth
Provisioning Flexibility Fast Convergence\Low latency
Highly Scalable
FabricPath
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 7
FabricPath : Supported Hardware & Software
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 8
FabricPath & CE Vlans * Key Points !
2 types of vlans
CE (Classic Ethernet, default) FabricPath
FabricPath (FP)
FP vlans cannot go on M1,M2 modules *7K
Only FP vlans will be carried over FP interfaces
Classic Ethernet
FP vlans can be mixed with CE vlans on edge interfaces
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 9
FabricPath Terminology
Spine Switch
FabricPath (FP)
S100 S200 S300
Leaf Switch
1/1 1/2
Classical Ethernet (CE)
A B
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 10
2. FabricPath Use Cases overview
11
FabricPath Use cases
4 Nexus 7000 with M1/F1 Nexus 5500/6000 and Nexus 7000 with
F2 card
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 12
Fabric Path Use case 1
Classical Ethernet (CE)
Nexus 7000\6000 as spine
FabricPath (FP)
‒ F1/M1 line card combination
Spine
Nexus 5500\6000 as Leaf
M1,F1
‒ Dual homed FEXes with EvPC
‒ Double sided vPC
Peer-link initially built on M1 Port
on N7K
‒ Migrated to F1 Port on N7K Leaf
Design description
‒ Layer 3 termination in spine
‒ Network Service appliance
connected to the spines via vPC
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 13
FabricPath Use case 2
Easy migration from traditional setup Classical Ethernet (CE)
All VLAN(s) available everywhere FabricPath (FP)
Link capacity between Spine and Leaf can Leaf M1,F1
easily increased
No Spanning Tree between Spine and Leaf
Legacy Layer 2 switches can be connected
without Spanning Tree blocked ports F2
Spine
End devices can be connected as
active/active
Future options:
‒ Mix Chassis with F2e and M1 / M2 linecards to
increase L2 and L3 scalability and combine Leaf
features of F2e and M cards
‒ Small to medium recommendation; use Nexus
6004 in spine
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 14
FabricPath Use case 3
Classical Ethernet (CE)
Nexus 7000\6000 as Spine FabricPath (FP)
- F2 line card
Peer-links
-F2 Ports at Spine Layer
Leaf
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 15
FabricPath Use case 4
Classical Ethernet (CE)
Nexus 7000 as Spine FabricPath (FP)
‒ F1 line card
M1,F1
Spine
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 16
Pure Leaf Use Case * Brief Example
Nexus 5500 as Pure Leaf
‒ Dual homed FEXes with EvPC
Design description
Backup
‒ For small data centers Backup
LISTEN
LISTEN
‒ With Layer 3 up to 16 FEX per fire-cell
vPC+
‒ Servers distributed in two fire-cells
‒ Running Layer 3 and Layer 2 on all 4 Nexus 5500 vPC+
FTAG-1 FTAG-2
‒ HSRP active on 2 Nexus 5500, listen / listen in second
ACTIVE ACTIVE
Data Center
Other option is HSRP active on all 4 Nexus 5500’s by
different HSRP passwords and vPC+
With this option, no other devices connected via
FabricPath are allowed
‒ Network Service appliance could be connected via vPC
‒ Connect end-devices via vPC to the Leaf switches
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 17
Benefits Pure Leaf
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 18
Spine Use Case
Nexus 7000 as spine Spine
‒ With F1 or F2 linecards
‒ With F2
vPC+
Leaf DC-2
Nexus 5500 as Leaf
Layer 2
‒ Dual homed FEXes with EvPC
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 22
Layer 3/Service with >2 Layer 3 Devices
Trying to adapt the existing model…
100-200 300-400 100-400 100-400
25
Port selection with FabricPath on Nexus 7000
Allowed Disallowed
Description Encapsulation
ports ports
FabricPath core port FP F1,F2 M
vPC+ peer-link FP F1,F2 M
CE (Classical Ethernet) interface CE M,F1,F2 -
Note:
If not explicit mention, the synonym F2 for N7k means the F2 as well the F2e linecards
If switch is part of the FabricPath domain, then edge port has to be F1 or F2 port
It can not be M1 port (since it can not work with FabricPath VLANs)
vPC+ can be formed with the same type of port only (no mix of F1 and F2, M1 is not allowed at all)
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 26
VLAN mode selection with FabricPath
Interface Cross
Description Ports Comment
mode FabricPath
CE VLAN CE M1,F1,F2 ✗ Valid design
Note:
M1 port:
- can not be access port for FabricPath VLAN
- can not be a trunk with one of the FabricPath VLAN
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 27
FabricPath and Spanning-tree
Spanning-tree root assignment
CE CE
If you have not configured this port will
be in UP state, but traffic will not go Spanning-tree Domain 1 Spanning-tree Domain 2
through because all VLANs would be
blocked by spanning-tree
Standard aggregation layer vPC pair with multiple access layer vPC pairs
M1,F1
Most common design
M1/F1 line card combination
Layer 2 design with double-sided vPC
Dual homed FEXes
Peer-Link built on M1 ports CE
Migration steps
M1,F1
– Move peer-link to F1 ports
– Add basic non disruptive fabric-path configuration
– Convert peer-link to FabricPath, vPC domain to vPC+
domain and change VLANs to FabricPath mode.
FP
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 30
Case 1 - Steps For Migration to FabricPath
31
Case 1: Migration to FabricPath
Step 1 : vPC Peer-link from M1 to F1 Ports Classical Ethernet (CE)
FabricPath (FP)
vPC F1
M1 Peer-Link M1
F1
F1 F1 F1 F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 32
Case 1: Migrate peer-link from M1 to F1 ports
Step 1 : vPC Peer-link from M1 to F1 Ports
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 33
Case 1: Monitoring peer-link changes
Step 1: Verification Commands / Logs M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 34
Classical Ethernet (CE)
vPC domain : 11
Peer status : peer adjacency formed ok
vPC keep-alive status : peer is alive
...
vPC Peer-link status
Id Port Status Active vlans
1 Po1 up 1,10-19,100,200,1010-1599
vPC status
...
112 Po112 up success success ... 1,10-19,100,200,1010-1599
134 Po134 up success success ... 1,10-19,100,200,1010-1599
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 35
Case 1: Enabling basic FabricPath
Step 2: Enable the basic FabricPath configuration
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 36
Case 1: Verify basic FabricPath
Step 2: Verification commands – show fabricpath switch-id
/* command to verify changes
show fabricpath switch-id
/* output to look for (on Nexus 7000)
=========================================================================
SWITCH-ID SYSTEM-ID FLAGS STATE STATIC EMULATED
----------+----------------+------------+-----------+--------------------
*1 001b.54c2.1cc1 Primary Confirmed Yes No
Total Switch-ids: 1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 37
Case 1: Migration to FabricPath
Step 3: Spine configured with vPC+ and Access with vPC
Peer-linkconfigured as Peer-linkconfigured as Classical Ethernet (CE)
fabricpath interface fabricpath interface
Include FabricPath switch-id into Include FabricPath switch-id
FabricPath (FP)
vPC domain into vPC domain
Change respective vlan to Change respective vlan to
fabricpath mode fabricpath mode
vPC+
vPC F1 Peer-Link F1
vPC to vPC+ bring FabricPat
down the vPC member
port-channel approx F1 F1 h Domain F1 F1 M1,F1
~75 Sec
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 38
Case 1: Migrate to FabricPath (spine)
Step 3: Spine configured with vPC+ and Access with vPC Classical Ethernet (CE)
FabricPath (FP)
Apply script on secondary spine peer and on primary spine peer
What is going to happen:
– Peer link will be configured as fabricpath interface
M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 39
Case 1: Monitoring changes on spine
Step 3: Monitoring (1) M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 40
Case 1: Monitoring changes on spine
Classical Ethernet (CE)
Step 3: Monitoring (2) FabricPath (FP)
M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 41
Case 1: Verify changes on spine
Step 3: Verification Commands – show vpc
Classical Ethernet (CE)
FabricPath (FP)
M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 42
Case 1: Verify changes on spine
Step 3: Verification Commands – show fabricpath switch-id
Classical Ethernet (CE)
/* command to verify changes
FabricPath (FP)
show fabricpath switch-id
/* output to look for (on Nexus 7000) M1,F1
=========================================================================
SWITCH-ID SYSTEM-ID FLAGS STATE STATIC EMULATED
----------+----------------+------------+-----------+--------------------
*1 001b.54c2.1cc1 Primary Confirmed Yes No
2 001b.54c2.1e41 Primary Confirmed Yes No
1011 001b.54c2.1e41 Primary Confirmed No Yes
1011 001b.54c2.1cc1 Primary Confirmed No Yes
Total Switch-ids: 4
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 43
Case 1: Verify changes on spine
Step 3: Verification commands – show fabricpath isis adjacency
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 44
Case 1: Verify changes on spine
Step 3: Verification commands – show fabricpath route
/* command to verify changes
show fabricpath route Topology (ftag), Switch
ID,
/* output to look for (on Nexus 7000) Sub-Switch ID
FabricPath Unicast Route Table
'a/b/c' denotes ftag/switch-id/subswitch-id
'[x/y]' denotes [admin distance/metric]
ftag 0 is local ftag Administrative distance,
subswitch-id 0 is default subswitch-id routing metric
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 45
Case 1: Verify spanning-tree
Step 3: Verification commands – show spanning-tree vlan 100 (1) Classical Ethernet (CE)
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 46
Case 1: Verify spanning-tree
Classical Ethernet (CE)
Step 3: Verification commands – show spanning-tree vlan 100 (2)
FabricPath (FP)
/* command to verify changes
show spanning-tree vlan 100 M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 47
Case 1: Verify spanning-tree
Step 3: Verification commands – show spanning-tree vlan 100 (3) Classical Ethernet (CE)
FabricPath (FP)
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 48
Case 1: Migration to FabricPath
Step 4: adding leaf to FabricPath Domain Remove vPC Classical Ethernet (CE)
member port
Peer-link Remove vPC
Configure member FabricPath (FP)
configured as member port
port in Fabricpath
fabricpath Configure member
interface port in Fabricpath
Include vPC+
FabricPath
switch-id into M1,F1
vPC domain F1 Peer-Link F1
Change
respective
FabricPath
vlan to F1 F1 Domain F1 F1
fabricpath
mode
Peer-link
configured as vPC+
fabricpath Peer-Link Peer-Link vPC
interface
Include
FabricPath
switch-id into
vPC domain
Change
respective vlan
to fabricpath Traffic / Host(s) Traffic / Host(s)
mode
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 49
Case 1: Migrate to FabricPath (leaf)
Classical Ethernet (CE)
Step 4: Configure FabricPath leaf
FabricPath (FP)
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 50
Case 1: Monitoring changes on leaf
Classical Ethernet (CE)
Step 4: Verification commands FabricPath (FP)
M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 51
Case 1: Monitoring changes on leaf
Classical Ethernet (CE)
Step 4: Verification commands FabricPath (FP)
M1,F1
/* output to look for (on Nexus 5500)
N5548UP-1 %ETH_PORT_CHANNEL-5-PORT_DOWN: port-channel1: port-channel1 is down
N5548UP-1 %ETH_PORT_CHANNEL-5-PORT_DOWN: port-channel112: port-channel112 is down
N5548UP-1 %PFMA-2-FEX_STATUS: Fex 101 is offline
N5548UP-1 %PFMA-2-FEX_STATUS: Fex 102 is offline
N5548UP-1 %ETHPORT-5-IF_UP: Interface port-channel1 is up in mode fabricpath
N5548UP-1 %ETHPORT-5-IF_UP: Interface Ethernet1/1 is up in mode fabricpath
N5548UP-1 %ETHPORT-5-IF_UP: Interface Ethernet1/2 is up in mode fabricpath
N5548UP-1 %ETHPORT-3-IF_ERROR_VLANS_REMOVED: VLANs 1,10-19,100,200,1010-1599 on
Interface port-channel1 are removed from suspended state.
N5548UP-1 %PFMA-2-FEX_STATUS: Fex 102 is online
N5548UP-1 %PFMA-2-FEX_STATUS: Fex 101 is online
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 52
Case 1: Verify changes on leaf
Step 4: Verification Commands - show fabricpath switch-id Classical Ethernet (CE)
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 53
Case 1: Verify changes on leaf
Step 4: Verification Commands - show fabricpath route (1) Classical Ethernet (CE)
FabricPath (FP)
/* command to verify changes
show fabricpath route M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 54
Case 1: Verify changes on leaf
Classical Ethernet (CE)
Step 4: Verification Commands - show fabricpath route (2)
FabricPath (FP)
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 55
Case 1: Verify changes on leaf
Classical Ethernet (CE)
Step 4: Verification Commands – show vpc (1)
FabricPath (FP)
M1,F1
/* command to verify changes
show vpc
/* output to look for (on Nexus 5500)
Legend: (*) - local vPC is down, forwarding via vPC peer-link
vPC domain id : 112
vPC+ switch id : 112
Peer status : peer adjacency formed ok
vPC keep-alive status : peer is alive
vPC fabricpath status : peer is reachable through fabricpath
Configuration consistency status : success
Per-vlan consistency status : success
Type-2 consistency status : success
vPC role : primary
Number of vPCs configured : 67
Peer Gateway : Enabled
Peer gateway excluded VLANs : -
Dual-active excluded VLANs : -
Graceful Consistency Check : Enabled
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 56
Classical Ethernet (CE)
M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 57
Classical Ethernet (CE)
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 58
Case 1: Migration to FabricPath - Summary
Migration Convergence
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 59
Case 2 – Migrate Leaf to FabricPath
60
Case 2: Migration to FabricPath
Aggregation layer vPC pair with multiple access layer vPC pairs M1,F1
FP
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 61
Case 2: Migration to FabricPath
Aggregation layer vPC pair with multiple access layer vPC pairs (2) M1,F1
FP
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 62
Case 2 - Steps For Migration to FabricPath
63
Case 2: Steps common with case 1
vPC Peer-link from M1 to F1 Ports (we will skip this step in case 2)
Enable the basic FabricPath configuration (case 1 step 2)
Spine configured with vPC+ and Access with vPC (case 1 step 3)
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 64
Classical Ethernet (CE)
Case 2: Migration to FabricPath FabricPath (FP)
vPC+
Peer-link configured as
Peer-link F1 Peer-Link F1
configured as fabricpath interface
FabricPath Include FabricPath
fabricpath
interface Domain F1
switch-id into vPC
F1 F1 F1
Include FabricPath
domain
Change respective vlan
switch-id into vPC
domain to fabricpath mode
Change respective F2 F2 F2 F2
vlan to fabricpath
mode F2 Peer-Link F2
Peer-link
F2 F2 configured as
F2 F2
Peer-link fabricpath
configured as interface
fabricpath Include FabricPath
interface switch-id into vPC
Include domain
Peer-Link Peer-Link
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 65
Case 2: Migrate to FabricPath (spine)
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 66
Case 2: Verify changes on spine M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 67
Case 2: Verify changes on spine M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 68
Case 2: Migrate to FabricPath (leaf) M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 69
Case 2: Verify changes on leaf
Step 5: Verification Commands - show fabricpath switch-id (2)
/* output to look for (on Nexus 5500)
M1,F1
FABRICPATH SWITCH-ID TABLE
Legend: '*' - this system
=========================================================================
SWITCH-ID SYSTEM-ID FLAGS STATE STATIC EMULATED F2
-----------+----------------+-----------+------------+-------------------
1 001b.54c2.1cc1 Primary Confirmed Yes No
2 001b.54c2.1e41 Primary Confirmed Yes No
*11 547f.ee52.87bc Primary Confirmed Yes No
12 547f.ee29.4ec1 Primary Confirmed Yes No
13 547f.ee24.4381 Primary Confirmed Yes No
14 547f.ee04.023c Primary Confirmed Yes No
21 001b.54c2.1cc3 Primary Confirmed Yes No
22 001b.54c2.1e43 Primary Confirmed Yes No
1011 001b.54c2.1cc1 Primary Confirmed No Yes
1011 001b.54c2.1e41 Primary Confirmed No Yes
1112 547f.ee29.4ec1 Primary Confirmed No Yes
1112 547f.ee52.87bc Primary Confirmed No Yes
1134 547f.ee04.023c Primary Confirmed No Yes
1134 547f.ee24.4381 Primary Confirmed No Yes
Total Switch-ids: 14
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 70
Case 2: Verify changes on leaf
Step 5: Verification Commands - show fabricpath route (1)
/* command to verify changes M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 71
Case 2: Verify changes on leaf M1,F1
Step 5: Verification Commands - show fabricpath route (2)
1/2/0, number of next-hops: 2 F2
via Eth1/9, [115/80], 0 day/s 00:20:02, isis_fabricpath-default
via Eth1/10, [115/80], 0 day/s 00:20:02, isis_fabricpath-default
1/11/0, number of next-hops: 2
via Eth1/9, [115/80], 0 day/s 00:18:59, isis_fabricpath-default
via Eth1/10, [115/80], 0 day/s 00:18:59, isis_fabricpath-default
1/12/0, number of next-hops: 2
via Eth1/9, [115/80], 0 day/s 00:18:59, isis_fabricpath-default
via Eth1/10, [115/80], 0 day/s 00:18:45, isis_fabricpath-default
1/14/0, number of next-hops: 1
via Po1, [115/20], 10 day/s 14:53:57, isis_fabricpath-default
1/21/0, number of next-hops: 1
via Eth1/9, [115/40], 0 day/s 00:20:02, isis_fabricpath-default
1/22/0, number of next-hops: 1
via Eth1/10, [115/40], 0 day/s 00:20:02, isis_fabricpath-default
1/1011/0, number of next-hops: 2
via Eth1/9, [115/80], 0 day/s 00:20:02, isis_fabricpath-default
via Eth1/10, [115/80], 0 day/s 00:20:02, isis_fabricpath-default
1/1112/0, number of next-hops: 2
via Eth1/9, [115/80], 0 day/s 00:18:59, isis_fabricpath-default
via Eth1/10, [115/80], 0 day/s 00:18:59, isis_fabricpath-default
1/1134/0, number of next-hops: 0
via ---- , [60/0], 10 day/s 15:27:28, local
2/1134/0, number of next-hops: 0
via ---- , [60/0], 10 day/s 15:27:28, local
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 72
Case 2: Verify changes on leaf M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 73
Case 2: Verify changes on leaf
Step 5: Verification Commands – show vpc (2)
M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 74
Case 2: Verify changes on leaf M1,F1
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 75
Migration results
76
FabricPath migration timing
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 78
3. Troubleshooting FabricPath
79
Switch-id Conflict
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 80
Topology
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 81
FabricPath TAC Tools
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 82
FabricPath Troubleshooting Commands
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 83
Q&A
84
References
CISCO FabricPath white paper
http://www.cisco.com/en/US/prod/collateral/switches/ps9441/ps9402/white_paper_c11-687554.html
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 86
Complete Your Online Session Evaluation
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 87
Thank you
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 88
For Your
Reference
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 90
Verification of FabricPath
To verify which VLANs are in the VLAN database in active and in mode
FabricPath
Nexus7000# show fabricpath topology vlan active
Topo-Description Topo-ID Active VLAN List
-------------------------------- --------- -------------------------------------
0 0 1, 100-109
To verify if the FabricPath switch is STP root for VLANs and if he have
CE ports, these are all in Forwarding
Nexus5500# show spanning-tree summary
Switch is in rapid-pvst mode
Root bridge for: VLAN0001, VLAN0100-VLAN0101
L2 Gateway STP bridge for: VLAN0001, VLAN0100-VLAN0101
Port Type Default is disable
...
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 91
Verification of FabricPath
To check if all interfaces in mode “f-path” are connected.
– Also physical interfaces in a PortChannel (Eth 1/1 and Eth 1/2) are listed
– For Eth 1/5 the SFP is missing
Nexus5500# show interface status | in f-path
Eth1/1 vPC-peer-link connected f-path full 10G 10Gbase-SR
Eth1/2 vPC-peer-link connected f-path full 10G 10Gbase-SR
…
Eth1/5 -- sfpAbsent f-path full 10G --
Po10 vPC-peerlink connected f-path full 10G --
No Switch id Conflicts
No transitions in progress
Nexus7000#
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 92
Verification of FabricPath
To verify more details about the FabricPath interfaces
– Is authentication been configured for this link
– Are the default values for hello and hold timer been used
– What is the hold timer, or latest time for the next IIH
– Is the metric calculated based on reference bandwidth or static configured
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 93
Verification of FabricPath
On Nexus 7000 it is also possible to verify the route to a specific switch
ID
– In this example from one of the spines to the vPC+ FabricPath ID of the leaf switches, because
both leaf switches announce this FabricPath ID, we have two paths
– This is
Nexus7000# today
show not implemented
fabricpath on Nexus
route switchid 106 5500, but is planned
…
1/106/0, number of next-hops: 2
via Eth2/3, [115/40], 0 day/s 04:37:16, isis_fabricpath-default
via Eth2/4, [115/40], 0 day/s 22:15:58, isis_fabricpath-default
Nexus7000#
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 94
Verification of FabricPath
To verify information about multicast in FabricPath
– This command provide updates based on local received IGMP entries, as well via FabricPath
GM-LSPs
– For each VLAN at “(*, *), Flood” an entry should exist for each connected directly connected
switch-ID
Nexus7000# show fabricpath mroute vlan 201
…
(vlan/201, *, *), Flood, uptime: 2d16h, isis
Outgoing interface list: (count: 17)
Switch-id 301, uptime: 2d16h, isis
Switch-id 302, uptime: 2d16h, isis
Switch-id 321, uptime: 2d13h, isis
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 95
Verification of FabricPath
To check which MAC addresses are learned via FabricPath
– The first value is the FabricPath switch-ID
– The second is the sub-switch ID used only for MAC learned behind vPC+, the third value is the
LID
– The sub-switch ID and LID is not used by Nexus 5500, so if these are empty it is very probably a
MAC learned via Nexus 5500
– A LID with 1054 points to the switch itself, here a SVI and HSRP MAC
Nexus7000-Spine# show mac address-table dynamic | exclude Eth | exclude Po | ex sup
Legend:
* - primary entry, G - Gateway MAC, (R) - Routed MAC, O - Overlay MAC
age - seconds since last seen,+ - primary entry using vPC Peer-Link
---------+-----------------+--------+---------+------+----+------------------
3001 0005.73e7.4f7c dynamic 0 F F 3030.0.0
200 0005.73e7.4f7c dynamic 0 F F 3030.0.0
111 0005.73e7.4f7c dynamic 0 F F 3030.0.0
107 0050.56ac.634e dynamic 600 F F 35.11.4513
108 0050.56ac.634d dynamic 600 F F 35.11.4513
102 0000.0c9f.f001 dynamic 0 F F 12.0.1054
102 0005.73e7.4f7c dynamic 0 F F 3030.0.0
102 108c.cf16.1c43 dynamic 0 F F 2.0.1054
Nexus7000-Spine# show mac address-table dynamic | exclude Eth | exclude Po | ex sup | count
12To “count” the amount of FabricPath learned MAC, actual value is minus 4 for headline
Nexus7000-Spine#
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 96
Verification of FabricPath
Overview about the root for FTAG-1 and FTAG-2, also which interfaces
are calculated for the multi-destination trees
Nexus7000# show fabricpath isis topology summary
Fabricpath IS-IS domain: default FabricPath IS-IS Topology Summary
MT-0
Configured interfaces: Ethernet2/3 Ethernet2/4 Ethernet2/5 Ethernet2/6 port-channel10
Number of trees: 2
Tree id: 1, ftag: 1, root system: 4055.3905.04c1, 3
Tree id: 2, ftag: 2 [transit-traffic-only], root system: 4055.3927.3e41, 4
Nexus7000#
• To check which interfaces are in the FTAG tree, the below command can be used
(For each FTAG it is different).
• Here from root for FTAG-1 (switch-ID 3):
Nexus7000# show fabricpath isis trees multidestination 1
Fabricpath IS-IS domain: default
Note: The metric mentioned for multidestination tree is from the root of that tree to that switch-id
MT-0
Topology 0, Tree 1, Swid routing table
4, L1
via port-channel10, metric 50
104, L1
via Ethernet2/3, metric 40
105, L1
via Ethernet2/4, metric 40
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 97
Verification of FabricPath
Nexus7000#
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 98
FabricPath Trees
Known unicast traffic is load-balanced across equal-cost
routes
FabricPath uses 2 loop-free trees for unknown unicast,
broadcast and multicast traffic
2 trees are for load-balancing
For each packet tree is selected by ingress FP switch and choice
is carried in the packet header S1
Root of tree1 is a switch highest sysID (priority+mac) SysID 50
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 100
Reference: Acronym Decoder
ACL–Access Control List NDE–NetFlow Data Export
ADJ–Adjacency OIF–Output Interface
ASIC–Application Specific Integrated Circuit OIL–Output Interface List
CE–Classic Ethernet PACL–Port ACL
CLI–Command Line Interface PBR–Policy-Based Routing
CMP–Connectivity Management Processor PFC–Priority Flow Control (per-priority pause)
(lights-out) PIM–Protocol Independent Multicast
CoPP–Control Plane Policing POD–Pool of Devices
COS–Class of Service QoS–Quality of Service
CP–Control Processor (main CPU) RACL–Router ACL
DCB–Data Center Bridging RE–Replication Engine
DCI–Data Center Interconnect RPF–Reverse Path Forwarding
DSCP–Differentiated Services Code Point SFP+–10G-capable Small-Formfactor Pluggable
ECMP–Equal Cost Multi Path SID–Switch ID
EOBC–Ethernet Out-of-Band Channel SoC–System-on-chip/switch-on-chip
ETS–Enhanced Transmission Selection sSID–Sub-Switch ID
FCoE–Fiber Channel over Ethernet STP–Spanning-Tree Protocol
FE–Forwarding Engine SVI–Switched Virtual Interface (VLAN interface)
FEX–Fabric Extender (Nexus 2000 family) TCAM–Ternary CAM
FIB–Forwarding Information Base TLV–Type, Length, Value
FP–FabricPath TRILL–Transparent Interconnection of Lots of
FRU–Field Replaceable Unit Links
FTAG–Forwarding Tag uRPF–Unicast RPF
GM-LSP–Group Membership LSP VACL–VLAN ACL
GRE–Generic Route Encapsulation VDC–Virtual Device Context
HSRP–Hot Standby Router Protocol VOQ–Virtual Output Queuing
IGMP–Internet Group Management Protocol VPC–Virtual Port Channel with Classic Ethernet
IPC–Inter Process Communication VPC+–Virtual Port Channel with FabricPath
IS-IS–Integrated System-to-Integrated System VRF–Virtual Routing and Forwarding
LED–Light Emitting Diode VRRP–Virtual Router Redundancy Protocol
LID–Local ID WRED–Weighted Random Early Detection
LOU–Logical Operation Unit WRR–Weighted Round Robin
LSP–Link-State PDU XL–Refers to forwarding engine with larger FIB
MET–Multicast Expansion Table and ACL TCAMs
BRKDCT - 2202 © 2013 Cisco and/or its affiliates. All rights reserved. Cisco Public 101