Cisco WAN :: Nexus 7010 - Advertise Default Route Based On HSRP State

Sep 24, 2012

I've got two Nexus 7010's running HSRP north bound to a pair of ASA's, and BGP south bound to four 6509's. Is it possible to advertise default route to BGP neighbor (or prefer it via MED), only if the node is HSRP-active?

Essentially the goal is to create symmetry for inbound/outbound traffic. Only way I can think of so far is via an EEM script, so that when it sees  HSRP go active via syslog, it would kick off an action to remove ASN prepend,  or reduce MED, and the opposite if HSRP goes standby.

View 2 Replies


Cisco WAN :: IP SLA And Object Tracking For Default Route On Nexus 7010

Mar 18, 2013

We have a Nexus 7010 running version 6.1(2). 
I'd like to use IP SLAs and object tracking to define static routes for specific source/destination traffic across some WAN links we have.  I've done this in IOS and it's worked fantastically, but I've not found where/how to do this on the Nexus 7010 platform (or any Nexus platform) as of yet.  I could have sworn that this was going to be introduced in the 6.x code?  Below is an example of how we do this in the IOS world:
track 11 ip sla 1 reachability
delay down 15 up 15
ip sla 1

Esentially this gives us the option of using a "failover" default route.  I've attached a basic diagram to explain what we are trying to do with IP SLAs and object checking.  The tracking should be configured against an SLA that uses icmp and the static routes should be configured against the tracking.

View 3 Replies View Related

Cisco Switching/Routing :: Vrf With Hsrp In Nexus 7010 Version 6.0

Nov 24, 2012

i have a big problem because i configure a vlans with vrf and HSRP but, when i do "show hsrp brief", dont show this interfaces and, i can ping virtual IP. it seems hsrp dont work.

 interface Vlan405
  description smsc-fwatlas1
  no shutdown
[Code] ....

View 1 Replies View Related

Cisco WAN :: OSPF Route Between Nexus 7010 And ASR1002?

Sep 16, 2012

I cannot receive any OSPF route from Nexus to ASR1002 even they are both OSPF neighbour. I have attached the config for both, Both Nexus and ASR part of Area0.
ASR1002#sh ip ospf neighbor
Neighbor ID     Pri   State           Dead Time   Address         Interface10.165.117.12     1   FULL/BDR        00:00:35  GigabitEthernet0/0/0


View 2 Replies View Related

Cisco Switching/Routing :: Static Route Deletion Impossible On Nexus 7010

Jan 3, 2012

I am working on Nexus 7010 with NX-OS 5.1.5. I have to delete the static route via [code] I try to remove the route with the command "no ip route" and I have the message below % Route not deleted, it does not exist..I don't understand why I have this message because the static route exist.

View 9 Replies View Related

Cisco Switching/Routing :: Nexus 7010 - Stop Default Static Redistribution Into OSPF?

Sep 24, 2012

Ok I didn't setup my OSPF on my 7010. Today I found out that any static route I put into my 7010 gets sent into to my MPLS network. My 6509's you have to "Tag" the static rout for this to happen. Was under the impression the same was necessary for the 7010 or at least it had to "match" an access list. How can I fix the below so that by default all static routes are not resdistributed into OSPF?

View 9 Replies View Related

Cisco Switching/Routing :: Nexus 7010 OSPF Passive-interface Default Not Showing

Nov 6, 2011

I'm currently working on a plan to migrate our 6500's over to our new 7010's.  At the time of the migration I want to tighten up our OSPF design and configure OSPF for "passive-interface default" then allow only those interfaces that should have OSPF neighbors to send the hellos.  The issue is that the command is not showing up under the OSPF process.  What's even more interesting is that the Nexus 5.x Unicast Routing Configuration Guide shows that the "passive-interface default" command should be an option to enter.
I'm currently running version 5.1(4) (though looking to upgrade to 5.2 during my migration testing).  I would rather configure the passive-interface via the routing process versus having to enter it on every interface.

View 2 Replies View Related

Cisco WAN :: 4507 - Preferred Default Route Over Another Based On Source IP

Jan 21, 2013

2 ISP's connected to a 4507, both with seperate public IP blocks. Based on some source IP addresses on the LAN they would either use ISP-A or ISB-B's connection based on what I define.

View 3 Replies View Related

Cisco Switching/Routing :: 3560 - Advertise Default Routes From EIGRP Stub?

Feb 13, 2013

I have a 3560 with IP base that is acting as a true EIGRP stub router today.  It advertises local routes to the upstream service provider router and receives a default route.
Now I want to connect a 3900 ISR as a voice gateway.  The 3560 does not seem to be advertising any routes to the 3900.  Ok the EIGRP stub doc says this:
Only specified routes are  propagated from the remote (stub) router. The router responds to queries  for summaries, connected routes, redistributed static routes, external  routes, and internal routes with the message "inaccessible." A router  that is configured as a stub will send a special peer information packet  to all neighboring routers to report its status as a stub router.
# Any neighbor that receives a packet informing it of the stub status will  not query the stub router for any routes, and a router that has a stub  peer will not query that peer. The stub router will depend on the  distribution router to send the proper updates to all peers.
I guess I don't understand why the stub advertises local routes to the upstream ISP router but does not seem to advertise routes to the 3900.  Does the stub identify the ISP router as the distribution router somehow, thus differentiating it from the 3900?  If so, how is this done?
show ip eigrp neighbor detail on the 3900:
EIGRP-IPv4 Neighbors for AS(100)
H   Address                 Interface       Hold Uptime   SRTT   RTO  Q  Seq
(sec)         (ms)       Cnt Num


View 4 Replies View Related

Cisco WAN :: 3845 Frequent HSRP State Changes While Under Heavy Load

Mar 12, 2013

We have two 3845 routers set up using HSRP at two locations (4 routers total) connecting inside to a pair of ASA 5520 (Active/Passive failover) on each side.  These links are used for internet access and they work great under normal operating conditions - they fail over and fail back without issue.  How ever, two weeks ago our operations guys started a new data replication procedure going across these links via an IPSec tunnel created between the ASAs.  This seems to have created a situation where the IP SLA tracking is not be able to receive the ping back from the upstream router on the originating side. [code]

I have our SIEM set up to notify me whenever the router logs a State change and I got about 10 a day

View 2 Replies View Related

Cisco Firewall :: 5510 Trace-route / Antispoofing On Not Default Route

Jun 24, 2011

I've enabled antispoof on all interfaces on asa 5510.If you start a traceroute to a network on the default route, everything works, since replies comes to an interface with route defined.If you start a tracer route to a network that is NOT on the default route (let's assume coporate MPLS), you only get response from first carrier router, the other are discarded because of anti spoof violation.
I have ICMP inspection and icmp-error inspection enabled.

View 1 Replies View Related

Cisco WAN :: Nexus 7010 PBR Without Track

Sep 15, 2011

Trying to implement PBR in N7K?  I found that there is not track mechanism can use in "set next-hop ip", so if the next-hop is unreachable that the route might be died.

View 0 Replies View Related

Cisco WAN :: Multicast Mac On Nexus 7010

May 18, 2012

i have a couple of nexus 7010 (5(2)3a) connected to a checkpoint in HA(active/active)I have now to configure multicast mac..i found this commmand: [code]

View 1 Replies View Related

Cisco WAN :: Periodic CPU High On Nexus 7010

Mar 2, 2011

There are times the Nexus CPU goes high around 70% but its not a constant occurance. Is there something to worry. Quite hard to find out which process caused it as it happens very brief. [code]

View 3 Replies View Related

Cisco Switching/Routing :: 7010 - How To Add Two Nexus 5K In DC

Feb 18, 2013

This is regarding Nexus core switch 7010. We are already running two nexus 7K with ten Nexus 5k. Currently we are going to add two new Nexus 5k in our DC. In the 7K we already running two VDC's.

View 8 Replies View Related

Cisco Infrastructure :: Push Button On Nexus 7010?

Jun 25, 2012

I saw a push bottom below the fan module of the nexus 7010. What that is for?

View 3 Replies View Related

Cisco Switching/Routing :: Connecting Nexus 7010 VDC With VPC

Jan 29, 2013

In our LAN network design, we have two Nexus 7010 switches on the core connected via vPC. Then LAN access switches are directly connected to the Core Nexus switches  via  regular port channels on the 3750's  and vPC on Nexus. The core Nexus switches will be linked to an existing LAN network and the applications will be progressively migrated from the old to the new network.In this scenario, three VDCs are planned to be configured on the Nexus -  One for the Interconnect (and WAN at a later stage), one for the LAN/local services and one for the building facilities/local services.

View 5 Replies View Related

Cisco Switching/Routing :: Upgrade Nexus 7010 From 4.2(4) To 6.1(1)

Jun 11, 2013

I'm about to perform an upgrade on two Nexus 7010 switches per above. Can I directly upgrade or, do I need to go from version 4 to 5.x and then to 6??
SA7001# dir bootflash:
        518     Jan 10 00:37:51 2008  TBM14107479_136878179.lic
      15830     Jun 06 11:50:11 2013  dcnm-
      16384     Jan 09 23:25:25 2008  lost+found(code)

View 3 Replies View Related

Cisco Switching/Routing :: Logging In Nexus 7010 6.x?

Sep 19, 2012

We recently replaced our core switch from a non-cisco vendor with a Nexus 7010.  With our old core switch, I had the ability to log changes to the ARP table.  So if there was a dhcp conflict or a vMotion event, it would show up in the "show log" output.  I've not found a way to do that with the Nexus switch - or at least no way to view the log.  I have the command: logging level arp 6

View 8 Replies View Related

Cisco Switching/Routing :: Nexus 7010 Dual Sup ISSU

Aug 7, 2012

I have to upgrade a Nexus 7010 with dual Sup engines from 4.2(4) to 5.2 and am hoping it could be an ISSU. We are fine with an outage window.To upgrade from 4.2(4) to 5.2(5) I'll have to do a multi hop upgrade from 4.2(4) - 4.2(6) - 5.2(5) and each hop would take 40-60 I spend 40-60 minutes for each hop, or just do a disruptive upgrade straight from 4.2(4) to 5.2(5)? Like I said, we are fine with an outage window.

View 2 Replies View Related

Cisco Switching/Routing :: Does Nexus 7010 Supports NAT64

May 1, 2012

Does Cisco Nexus 7010 supports NAT64; the image that I am using is :-
BIOS:     version 3.22.0
kickstart: version 5.2(4)
system:   version 5.2(4)
BIOS compile time:       02/20/10
kickstart image file is: bootflash:///n7000-s1-kickstart.5.2.4.bin
kickstart compile time: 12/25/2020 12:00:00 [03/08/2012 03:58:13]
system image file is:   bootflash:///n7000-s1-dk9.5.2.4.bin

View 1 Replies View Related

Cisco Switching/Routing :: Nexus 7010 Module Failure?

Apr 11, 2012

I'm currently getting a Nexus hardware failure at present.
switch %MODULE-2-MOD_DIAG_FAIL: Module 8 reported failure due to DEVICE POST/DIAG FAILURE in device 48

View 1 Replies View Related

Cisco :: Unable To Poll SNMP Data From Nexus 7010

Apr 18, 2012

I have two Nexus 7010 in the data center. I'm unable to poll SNMP data from one of the NEXUS 7010s. The other Nexus 7010 is working fine.  I have compared the SNMP configurations, and they are identical. When I do "show snmp" on the non-working switch, I have SNMP packets in "Unknown Context name", not sure why. I have done show vdc and it matches the working switch output. Here is output of show snmp from the non-working switch: 133 SNMP packets input        0 Bad SNMP versions        0 Unknown community name        0 Illegal operation for community name supplied        0 Encoding errors        0 Number of requested variables        0 Number of altered variables        0 Get-request PDUs        0 Get-next PDUs        0 Set-request PDUs        0 No such name PDU        0 Bad value PDU        0 Read Only PDU        0 General errors        0 Get Responses        133 Unknown Context name0 SNMP packets output        0 Trap PDU        0 Too big errors        0 No such name errors        0 Bad values errors        0 General errors        0 Get Requests        0 Get Next Requests        0 Set Requests        0 Get Responses        0 Silent drops.

View 4 Replies View Related

Cisco :: How To Retrieve Nexus 7010 Et 5596 Configuration Via Snmp

Mar 23, 2012

I want to know how to retrieve the complete configuration for a Nexus via the snmpwalk or snmpget commands...

View 6 Replies View Related

Cisco Switching/Routing :: Surges In Nexus 7010 Latency

Dec 2, 2011

I just deployed a nexus 7010 switch at a server farm. after deployment, it was notices that there are surges in latency across the network. The default gateway was then moved to the nexus, with this pinging from an host on the same subnet there is intermitent burst is latency

Ping of about 80ms and sometimes even times out.
To me, this is strange.
NX-OS Version is 5-02a

View 1 Replies View Related

Cisco Switching/Routing :: Creating VPC On Single Nexus 7010?

Jan 6, 2013

I'm looking to see if it is possible to run a vPC between to vDC's on a single 7010?  We have a Production setup that runs dual 7010's with vPC's between the chassis but in our lab we only have a single 7010 with a 32 port 10gig module.  I was thinking that maybe we could create 4 vDC's on the 7010 and run a vPC between the vDC's.

View 2 Replies View Related

Cisco Switching/Routing :: Nexus 7010 NX-OS 5.2 Netflow FPS Information

May 22, 2012

How to get a summary of netflow statistics on NX-OS? On IOS you could do sh ip cache flow which would show what I need? Can't find a similar command on the Nexus Platform.

View 4 Replies View Related

Cisco Switching/Routing :: Nexus 7010 Install New Supervisor

Sep 20, 2012

We will install a new Supervisor Engine in our Nexus 7010.One Supervisor Engine is already installed an 1Year old.So the Problem is that both Supervisor Engines may have different NX-OS version.Could this lead to a problem?Does the installed Supervisor Engine "udate" the newer Supervisor engine?

View 3 Replies View Related

Cisco Switching/Routing :: Management Interface On Nexus 7010?

Apr 28, 2013

We have a couple of Nexus 7010's split into Core and Distribution VDCs. MGMT0 interfaces on each of the Nexus VDC's (including the Admin VDC) are configured with different IP address, but on the same subnet i.e for admin, for Core and for Distribution. The MGMT 0 physical port on each Nexus is connected to a physical gig port on a 3750 X switch, and the 3750X has uplinks back to the Nexus configured for vPC.
When i ssh to the VDC MGMT0 IPs from the 3750X, i can access each of these VDCs without any problems. But if i enable routing on each of these links(OSPF) and advertise it to the WAN, i cannot see these routes advertised and also cannot see any of these routes in the local routing table.Just wondering if i have to enable these links on a VLAN and then advertise it to the WAN..But if this the case, VLANs cannot be created  on the Admin(default VDC).

View 9 Replies View Related

Cisco Switching/Routing :: Nexus 7010 And Connection With EIGRP

Mar 20, 2012

We have, for nearly 4 years, used EIGRP on our 6513 to  make use of two unequal links to our branch offices.  This worked because we could use the variance command and cause EIGRP to insert two routes into the table, one from each carrier.  Thus it was we could balance the load to each one with a ratio similar to the ratio of the bandwidth of Link A to Link B.
We just purchased 2 Nexus 7010's to replace our single 6513 core.After much consternation we have found from our Ciscio SE that the Nexus 6.0.2 software rendition of EIGRP does not support variance. 
Why would Cisco take their own propriatary protocol and then gut it by removing features?  I'm quite ready to send these Nexus boxes back in favor of a newer 6500 series.  MEC doesn't work like it is supposed to and the show-tech runs for over 24 hours without ever finishing (and this we can repeat on both boxes, multiple times).
We've opened a tac case but I just wondered for any work around for the 'variance' command?

View 5 Replies View Related

Cisco :: Nexus 7010 - Opinion Of Model Support Network?

Apr 23, 2013

As a Senior Network Engineer I have entered into a bit of a debate with our Architect about the use of the mgmt0 interfaces on the nexus 7010 switch (dual-sups, M2 and F2 linecards).I would like to know opinion of the Cisco support network.

I believe the mgmt0 interface should left alone for control plane traffic only and Out Of Band management access (ie ssh).  At the moment I have made a subnet for all VDCs with the mgmt0 (vrf management) sitting in a common subnet.  The physical mgmt0 interfaces from both SUPs are connected a management hand off switch.  The mgmt0s also serves as our control plane for VPCs. The VPC peer-link however is using main interfaces of the line-cards.
The opinions;

- The Architect thinks we should use all the mgmt0 interfaces for snmp, ntp, tacacs netflow-analysis and switch management.

- However, I think I should use a traditional Loopback to perform these functions within the linecards.  The mgmt0 should only be used if traditional restricted switch access has failed.

My Basis;

the Loopback never goes down, uses multiple paths (the OOB hand off switch could fail closing switch management access completely).  The mgmt0 should be used as a last resort of management access to CMP.

View 3 Replies View Related

Cisco Switching/Routing :: Nexus 7010 Radius Authentication

Jan 19, 2013

I am facing issue with nexus 7010 login authentication by radius server. I have two nexus 7010, one of them is working perfectly. Other taking long time to authenticate. If i use local database to login it works perfectly. It works fine also  if i login from console using radius for authentication.

View 1 Replies View Related

Cisco WAN :: 7609 - HSRP Feature / IP Route Tracking

Jun 15, 2011

I am using two 7609 router in setup, HSRP enable on both router, and both have WAN connectivity to different PE end router we want to enable hsrp feature ip route traking, in case primary link goes down (Because of any reason link bgp failure, PE device issue).

View 1 Replies View Related

Copyrights 2005-15, All rights reserved