Beruflich Dokumente
Kultur Dokumente
Lab Guide
Lab Guide
Activity Objective
In this activity you will meet these objectives:
Required Resources
These are the resources and equipment required to complete this activity:
Command List
The table describes the commands used in this activity.
Command
Description
N7K-P# reload
Task 1: Get Your NX7010 Prepared for the Course Lab Activities
In this task you will delete the old configs on the Nexus 7010 and upload a new configuration.
Activity Procedure
Complete these steps:
Step 1
Connect to the LabGear interface with the assigned username and password from the
instructor using Internet Explorer and surfing to www.labgear.net.
Step 2
The person assigned to VDC1should connect to Sup1 of the Nexus 7010 by clicking on
the green oval. Hit enter a few times to awaken the switch.
Step 3
Log in to the default VDC1 with the username admin password 1234Qwer. (The Q is
capitalized)
Step 4
Wait for the reload to complete. Hit Enter to verify the switch has completed the reload.
Step 7
Step 8
The Nexus will ask you to confirm that password, so please enter it again: 1234Qwer.
Step 9
Say N to the Would you like to enter the basic configuration mode.
Step 10
You will be asked to log in again, and use username admin password 1234Qwer.
Step 11
switch#
Step 12
View the bootflash directory and discover the baseline-cfg file to be restored to the
device.
Apr
Oct
Nov
Aug
Mar
Aug
Aug
09
30
04
02
16
02
02
Sep
Mar 06
Aug
Aug 03
Mar 06
Lab Guide
29471232
29596672
29704704
4096
4096
4096
Sep
Aug
Mar
Aug
Aug
Aug
19
03
06
02
02
02
14:08:47
15:53:58
16:39:48
14:55:05
15:02:22
15:10:57
2012
2012
2013
2010
2010
2010
n7000-s1-kickstart.5.2.1.bin
n7000-s1-kickstart.6.0.4.bin
n7000-s1-kickstart.6.1.3.bin
vdc_2/
vdc_3/
vdc_4/
Step 14
The last step in this lab is to copy the running-config to the startup-config.
N7K-P# copy run start
Activity Objective
In this activity, you will manage the configuration of a Nexus switch. After completing this activity,
you will be able to meet these objectives:
Visual Objective
The figure illustrates what you will accomplish in this activity. There are NOT four Nexus switches
in the topology, but 4 VDCs on one switch.
Nexus 7K VDC
Topology
VDC-4
E1/8
E1/7
VDC-2
E1/6
E1/5
VDC-3
E1/2
E1/1
VDC-1
Slot 5
Mgmt0
Ethernet Out of
Band
Management
Network
HA
Slot 6
Mgmt0
Switch Int Mgmt0
.1
10.P.1.0/24
VDC-1 10.P.1.14
VDC-2 10.P.1.24
VDC-3 10.P.1.34
VDC-4 10.P.1.44
. 101
. 102
. 103
DCNI-2 v2.3LG-1
Required Resources
These are the resources and equipment required to complete this activity:
Lab Guide
Physical Diagram
The figure below illustrates what you will accomplish in this activity.
Nexus 7K VDC
Topology
E2/23
E1/12
E1/11
E1/10
E1/9
E1/8
E1/7
E2/11
E2/9
E1/6
E1/5
E2/7
E2/5
E1/4
E1/3
E2/17
E2/15
E2/3
E2/1
E1/2
E1/1
Slot 5/6
Mgmt0/CMP
E2/21
E2/19
E2/13
Ethernet Out of
Band
Management
Network
PC2
PC2
PC3
PC4
DCUFI v4.3r3LG-2
Command List
The table below describes the commands used in this activity.
Command
Description
Create a VDC.
N7K-P# sh vdc
N7K-P# switchto
N7K-P# switchback
Create a checkpoint.
N7K-P# sh checkpoint
Lab Guide
Activity Procedure
Complete these steps:
Step 1
VDC will use console access for Lab configuration. All other VDCs should establish a
connection to the assigned client PC remote desktop. SSH to the N7K Login with the
username: administrator password: cisco.
Step 2
From the client PC, Telnet to the Nexus 7010, with the IP address 10.P.1.14, where P is
your pod number.
Step 3
Login to the default VDC1 with the username: admin password: 1234Qwer.
Step 4
The Cisco Nexus 7010 Switches require the LAN Advanced Services License to create
and modify VDCs. Determine if the Cisco Nexus 7010 has this license installed.
Ins
Lic
Status Expiry Date Comments
Count
-------------------------------------------------------------------MPLS_PKG
No
Unused
STORAGE-ENT
No
Unused
Grace 112D 1H
VDC_LICENSES
No
0
Unused
ENTERPRISE_PKG
No
Unused
FCOE-N7K-F132XP
No
0
Unused
Grace 111D 15H
FCOE-N7K-F248XP
No
0
Unused
ENHANCED_LAYER2_PKG
Yes
Unused Never
SCALABLE_SERVICES_PKG
No
Unused
TRANSPORT_SERVICES_PKG
Yes
Unused Never
LAN_ADVANCED_SERVICES_PKG
Yes
Unused Never
LAN_ENTERPRISE_SERVICES_PKG
Yes
Unused Never
-
Note: The status Unused implies no features requiring the license have been enabled, confirm this
with the show feature command.
N7K-P# sh feature
Feature Name
-------------------bfd
bfd_app
bgp
Output omited
tunnel
udld
vpc
vrrp
vtp
wccp
Instance
-------1
1
1
State
-------disabled
disabled
disabled
1
1
1
1
1
1
disabled
disabled
disabled
disabled
disabled
disabled
Step 5
N7K-P# sh vdc
vdc_id vdc_name
------ -------1
N7K-P
state
mac
type
lc
---------------------active b4:14:89:d2:69:41 Ethernet m1 f1 m1xl m2x1
Note: The default VDC is active and assumes the switches hostname.
Step 6
Ethernet2/2
Ethernet2/5
Ethernet2/8
Ethernet2/11
Ethernet2/14
Ethernet2/17
Ethernet2/20
Ethernet2/23
Ethernet2/26
Ethernet2/29
Ethernet2/32
Ethernet1/3
Ethernet1/6
Ethernet1/9
Ethernet1/12
Ethernet1/15
Ethernet1/18
Ethernet1/21
Ethernet1/24
Ethernet1/27
Ethernet1/30
Ethernet1/33
Ethernet1/36
Ethernet1/39
Ethernet1/42
Ethernet1/45
Ethernet1/48
Ethernet2/3
Ethernet2/6
Ethernet2/9
Ethernet2/12
Ethernet2/15
Ethernet2/18
Ethernet2/21
Ethernet2/24
Ethernet2/27
Ethernet2/30
Note: All physical interfaces are initially assigned to the default VDC (VDC1).
Step 7
Lab Guide
vdc
vdc
vdc
vdc
vdc
vdc
vdc
vdc
vdc
vdc
vdc
vdc
id: 1
name: N7K-16
state: active
mac address: b4:14:89:d2:69:41
ha policy: RELOAD
dual-sup ha policy: SWITCHOVER
boot Order: 1
create time: Wed Mar 6 17:16:03 2013
reload count: 0
restart count: 0
type: Ethernet
supported linecards: m1 f1 m1xl m2x1
Step 8
VDCs have default resource templates. Display the resource template for the default
VDC.
Min
----8
58
24
96
vdc-default
------------Resource
---------monitor-session-inband-src
port-channel
monitor-session-erspan-dst
monitor-session
vlan
m6route-mem
m4route-mem
u6route-mem
u4route-mem
vrf
Step 9
Min
----0
0
0
0
16
5
8
4
8
2
Max
----1
768
23
2
4094
5
8
4
8
4096
Max
----8
58
24
96
Max
----4094
2
0 23
4096
768
96
24
58
8
0 1
Used
-----19
0
0
2
0
1
1
1
1
0
Unused
-------0
0
0
0
0
95
23
57
7
0
Avail
------4075
2
23
4088
768
95
23
57
7
1
Step 10
Lab Guide
11
Activity Procedure
Complete these steps:
Step 1
The person assigned to VDC1 should work with a partner during this task.
Step 2
Step 3
Each student in the pod will create one of the additional 3 VDCs, named VDC-2, VDC-3
and VDC-4 with a corresponding ID, and allocate the associated interfaces based on the
table below:
VDC
VDC ID
VDC Interfaces
VDC-2
VDC-3
VDC-4
Note Make sure that all 3 new VDCs are created. Prior to the creation of the 3 new VDCs, VDC-1 has all
interfaces allocated. The remaining labs will only utilize the following interfaces on VDC-1; E1/1, E1/3,
E1/9, E2/1 and E2/5.
Step 4
After entering global config mode, create the first of the three VDCs, where v is your
VDC number.
Assign the ports shown below to the newly created VDC, where x is the interfaces
found in the table in step 2.
N7K-P(config-vdc)#end
N7K-P#
N7K-P# sh vdc
vdc_id vdc_name
------ -------1
N7K-P
2
VDC-2
3
VDC-3
4
VDC-4
Step 6
12
state
----active
active
active
active
mac
---------b4:14:89:d2:69:41
b4:14:89:d2:69:42
b4:14:89:d2:69:43
b4:14:89:d2:69:44
type
---Ethernet
Ethernet
Ethernet
Ethernet
lc
-----m1 f1 m1xl
m1 f1 m1xl
m1 f1 m1xl
m1 f1 m1xl
m2x1
m2x1
m2x1
m2x1
Ethernet2/2
Ethernet2/17
Ethernet2/20
Ethernet2/23
Ethernet2/26
Ethernet2/29
Ethernet2/32
Ethernet2/4
Ethernet2/10
Ethernet2/12
Ethernet1/9
Ethernet1/15
Ethernet1/18
Ethernet1/21
Ethernet1/24
Ethernet1/27
Ethernet1/30
Ethernet1/33
Ethernet1/36
Ethernet1/39
Ethernet1/45
Ethernet1/48
Ethernet2/5
Ethernet2/18
Ethernet2/21
Ethernet2/24
Ethernet2/27
Ethernet2/30
Ethernet1/10
Ethernet2/7
Ethernet1/11
Ethernet2/13
Ethernet1/12
Ethernet2/15
Lab Guide
13
Step 7
At this point you are ready to configure the VDC you created. To change from the
default VDC1 to another VDC use the switchto vdc command.
You will now be prompted to ensure a secure password. Accept the default yes.
Step 10
You are now prompted to enter an admin password for the context, use the password
1234Qwer.
This setup utility will guide you through the basic configuration of
the system. Setup configures only enough connectivity for management
of the system.
Please register Cisco Nexus7000 Family devices promptly with your
supplier. Failure to register may affect response times for initial
service calls. Nexus7000 devices must be registered to receive
entitled support services.
Press Enter at anytime to skip a dialog. Use ctrl-c at anytime
to skip the remaining dialogs.
Would you like to enter the basic configuration dialog (yes/no): yes
Step 12
You can accept the defaults in square brackets by pressing the Enter key. Do this to say
no to creating another login account.
14
Step 14
Enable Telnet and SSH services, select RSA for SSH key type.
Default all interfaces to Layer 2. All interfaces should also be shut down by default and
should be configured with trunk mode on.
Lab Guide
15
Step 20
16
Activity Procedure
Complete these steps:
Step 1
Step 2
N7K-P-VDC-V# checkpoint ?
<CR>
WORD
Checkpoint name (Max Size 80)
description Checkpoint description for the given checkpoint
file
Create configuration rollback checkpoint to file
Step 3
N7K-P-VDC-V# checkpoint
..
user-checkpoint-1 created Successfully
Done
Step 4
Lab Guide
17
1) setup:
Created by admin
Created at Thu, 10:30:04 02 Jan 2014
Size is 4,346 bytes
Step 8
Step 9
N7K-P-VDC-V# dir
4096
May 23 12:28:07 2013 BOOTFLASH:/
4346
Jan 02 10:36:38 2014 CL-setup1
18
Activity Procedure
Complete these steps:
Step 1
N7K-P-VDC-V# conf
N7K-P-VDC-V (config)# switchname broken-v (where v is the VDC
number)
N7K-P-broken-v(config)# username temp pass t3mp73mp
password is weak
Password should contain characters from at least three of the following
classes: lower case letters, upper case letters, digits and special
characters.
N7K-P-broken-v (config)# username temp pass t3mp!73mp
Step 2
N7K-P-broken-v# sh run
!Command: show running-config
!Time: Thu Jan 2 10:39:24 2014
version 6.1(3)
switchname broken-v
feature telnet
username admin password 5 $1$WSx6Hn2Q$rWMYZZdyMbLnKXL/88GY91 role vdc-admin
username temp password 5 $1$GBmOZrEH$.SC5cNhvyTsBjTLUfDI.c/ role vdcoperator
ip domain-lookup
system default switchport
snmp-server user temp vdc-operator auth md5
0x305f65ad49ae0d450dcaf9671275fe83 p
riv 0x305f65ad49ae0d450dcaf9671275fe83 localizedkey
snmp-server user admin vdc-admin auth md5 0x118cc444d4ece85cf861dd171c01db2b
pri
v 0x118cc444d4ece85cf861dd171c01db2b localizedkey
rmon event 1 log trap public description FATAL(1) owner PMON@FATAL
rmon event 2 log trap public description CRITICAL(2) owner PMON@CRITICAL
rmon event 3 log trap public description ERROR(3) owner PMON@ERROR
rmon event 4 log trap public description WARNING(4) owner PMON@WARNING
rmon event 5 log trap public description INFORMATION(5) owner PMON@INFO
vrf context management
vlan 1
Lab Guide
19
interface Ethernet1/5
interface Ethernet1/7
interface Ethernet1/10
interface Ethernet1/42
interface Ethernet2/3
interface Ethernet2/4
interface Ethernet2/7
interface Ethernet2/8
interface mgmt0
ip address 10.P.1.24/24
line vty
Step 3
Use the configuration checkpoint that you created earlier to undo your most recent
changes.
20
Activity Objective
In this activity, you will configure routing protocols. After completing this activity, you will be able
to meet these objectives:
Visual Objective
The figure illustrates what you will accomplish in this activity.
vPC Domain 1
VDC-1
E2/1
E2/5
E1/9
E1/1
E1/2
VDC-3
E1/42
E2/3
E2/7
E1/3
E1/5
E1/6
E1/4
Keepalive
E1/11
E2/9
E2/13
E1/43
vPC Domain 2
XP3
10.P.1X.5
VDC-2
E1/10
E1/12
E1/7
E1/8
VDC-4
E2/11
E2/15
E1/44
XP4
10.P.1X.5
DCNI-2 v2.3LG-1
Required Resources
These are the resources and equipment required to complete this activity:
Lab Guide
21
Command List
The table describes the commands used in this activity.
Command
Description
Creates Vlan.
N7K-P-VDC-v# sh spanning-tree
Displays Spanning-tree.
N7K-P-VDC-v(config-if-overlay)#vpc domain
domain-id
N7K-P-VDC-v#interface port-channel
channel-number
22
N7K-P-VDC-v(config-if)#vpc number
Activity Procedure
Complete these steps for all four VDCs:
Step 1
From your RDP session Telnet/SSH to your VDC at IP address 10.P.1.V4. VDC-1 is
also used in the lab; select one person to cover this VDC.
Step 2
N7K-P-VDC-V# conf t
Enter configuration commands, one per line.
N7K-P-VDC-V(config)# vlan 10,20
N7K-P-VDC-V(config)# exit
Step 3
We will now establish communications between the VDCs. Enable the interfaces,
defined in the table below, as trunks allowing only VLANs 10 and 20.
VDC
Interfaces
VDC-1
e1/1,e1/3,e2/1,e2/5
VDC-2
e1/5, e1/7,e2/3,e2/7
VDC-3
e1/2,e1/6,e2/9,e/13
VDC-4
e1/4,e1/8, e2/11,2/15
N7K-P-VDC-v(config-vlan)# int
N7K-P-VDC-v(config-if-range)#
N7K-P-VDC-v(config-if-range)#
N7K-P-VDC-v(config-if-range)#
Step 4
e1/x,e1/x,e2/x,e2/x
switchport mode trunk
switchport trunk allowed vlan 10,20
no shut
------------------------------------------------------------------------Port
Name
Status
Vlan
Duplex Speed
Type
------------------------------------------------------------------------mgmt0
-connected routed
full
1000
-Eth1/5
-connected trunk
full
1000
10/100/1000
Eth1/7
-connected trunk
full
1000
10/100/1000
Eth1/10
-disabled 1
full
auto
10/100/1000
Eth1/42
-disabled 1
full
auto
10/100/1000
Eth2/3
-connected trunk
full
10G
SFP-H10GB-C
Eth2/4
-sfpAbsent 1
auto
auto
-Eth2/7
-connected trunk
full
10G
SFP-H10GB-C
Eth2/8
-sfpAbsent 1
auto
auto
--
Lab Guide
23
Step 5
Confirm that Spanning-Tree is operational, VDC-1 Should be the Root since it has the
lowest MAC, VDC-3 and VDC-4 should have the blocking ports.
N7K-P-VDC-V# sh spanning-tree
VLAN0010
Spanning tree enabled protocol rstp
Root ID
Priority
32778
Address
b414.89d2.6941
Cost
2
Port
259 (Ethernet2/3)
Hello Time 2 sec Max Age 20 sec
Bridge ID
Priority
Address
Hello Time
Interface
---------------Eth1/5
Eth1/7
Eth2/3
Eth2/7
Role
---Desg
Desg
Root
Altn
Sts
--FWD
FWD
FWD
BLK
Cost
--------4
4
2
2
Prio.Nbr
-------128.133
128.135
128.259
128.263
Type
---------------------------P2p
P2p
P2p
P2p
VLAN0020
Spanning tree enabled protocol rstp
Root ID
Priority
32788
Address
b414.89d2.6941
Cost
2
Port
259 (Ethernet2/3)
Hello Time 2 sec Max Age 20 sec
Bridge ID
Priority
Address
Hello Time
Interface
---------------Eth1/5
Eth1/7
Eth2/3
Eth2/7
24
Role
---Desg
Desg
Root
Altn
Sts
--FWD
FWD
FWD
BLK
Cost
--------4
4
2
2
Prio.Nbr
-------128.133
128.135
128.259
128.263
Type
---------------------------P2p
P2p
P2p
P2p
Activity Procedure
Complete these steps:
Step 1
Step 2
Step 4
Create a L3 link to be used for keepalives between Peer VDCs. It is best practice to us a
different VRF for this link. Configure the VRF name keepalive and associate the
interface and IP from the table below.
VDC
Interface
IP Address
VDC
Interface
IP Address
VDC-1
e1/9
10.P.50.1/30
VDC-3
e1/11
10.P.50.5/30
VDC-2
e1/10
10.P.50.2/30
VDC-4
e1/12
10.P.50.6/30
Establish Port-Channel 1, using the two 10Gb interfaces in the table below.
VDC
Interface
VDC
Interface
VDC-1
e2/1, e2/5
VDC3
e2/9, e2/13
VDC-2
e2/3, e2/7
VDC-4
e2/11, e2/15
Establish vPC Domain 1 on VDC-1 and VDC-2 and vPC Domain 2 on VDC-3 and VDC4. Configure the peer keepalive for each vPC.
VDC-1
N7K-P (config )#vpc domain 1
N7K-P (config-vpc-domain)# peer-keepalive destination 10.P.50.2 source 10.P.50.1 vrf keepalive
VDC-2
N7K-P-VDC-2(config )#vpc domain 1
N7K-P-VDC-2(config-vpc-domain)# peer-keepalive destination 10.P.50.1 source 10.P.50.2 vrf keepalive
Lab Guide
25
VDC-3
N7K-P-VDC-3(config )#vpc domain 2
N7K-P-VDC-3(config-vpc-domain)# peer-keepalive destination 10.P.50.6 source 10.P.50.5 vrf keepalive
VDC-4
N7K-P-VDC-4(config )#vpc domain 2
N7K-P-VDC-4(config-vpc-domain)# peer-keepalive destination 10.P.50.5 source 10.P.50.6 vrf keepalive
Step 7
N7K-P# sh vpc
Legend:
(*) - local vPC is down, forwarding via vPC peer-link
vPC domain id
:
Peer status
:
vPC keep-alive status
:
Configuration consistency status :
Per-vlan consistency status
:
Configuration inconsistency reason:
Type-2 consistency status
:
Type-2 inconsistency reason
:
vPC role
:
Number of vPCs configured
:
Peer Gateway
:
Dual-active excluded VLANs
:
Graceful Consistency Check
:
Auto-recovery status
:
1
peer link not configured
peer is alive
failed
failed
vPC peer-link does not exist
failed
vPC peer-link does not exist
none established
0
Disabled
Disabled (due to peer configuration)
Disabled
Note: The vPC is currently down because the peer-link has not been defined.
Step 8
N7K-P# sh vpc
Legend:
(*) - local vPC is down, forwarding via vPC peer-link
vPC domain id
: 1
Peer status
: peer adjacency formed ok
vPC keep-alive status
: peer is alive
Configuration consistency status : success
Per-vlan consistency status
: success
Type-2 inconsistency reason
: Consistency Check Not Performed
vPC role
: primary
Number of vPCs configured
: 0
Peer Gateway
: Disabled
Dual-active excluded VLANs
: Graceful Consistency Check
: Enabled
Auto-recovery status
: Disabled
vPC Peer-link status
--------------------------------------------------------------------26
id
-1
Port
---Po1
N7K-P-VDC-V# sh vpc
Legend:
(*) - local vPC is down, forwarding via vPC peer-link
vPC domain id
Peer status
vPC keep-alive status
Configuration consistency status
Per-vlan consistency status
Type-2 inconsistency reason
vPC role
Number of vPCs configured
Peer Gateway
Dual-active excluded VLANs
Graceful Consistency Check
Auto-recovery status
:
:
:
:
:
:
:
:
:
:
:
:
1
peer adjacency formed ok
peer is alive
success
success
Consistency Check Not Performed
secondary
0
Disabled
Enabled
Disabled
Step 10
Step 11
Lab Guide
27
28
Type
---1
1
1
1
1
Local Value
---------------------Rapid-PVST
None
""
0
Peer Value
---------------Rapid-PVST
None
""
0
1
1
1
Disabled
Enabled
Normal, Disabled,
Disabled
Enabled
10,20
-
Disabled
Enabled
Normal, Disabled,
Disabled
Enabled
10,20
-
1
-
Activity Procedure
Complete these steps:
Step 1
Step 2
Establish dynamic a dynamic back-to-back vPC between the two domains based on the
tables below using LACP in passive mode.
Domain 1
Interfaces
PortChannel
Domain 2
Interfaces
PortChannel
VDC-1
e1/1,e1/3
Po100
VDC-3
e1/2,e1/6
Po200
VDC-2
e1/5,e1/7
Po100
VDC-4
e1/4,e1/8
Po200
Step 3
Now establish the channel-groups as a vPC; use the same number for the vPC as the
channel this will keep it simpler when troubleshooting.
Lab Guide
29
Step 4
-------------------------------------------------------------------------------Port
Name
Status Vlan Duplex Speed Type
-------------------------------------------------------------------------------Po100
-connected trunk full 1000 -VDC-3 and VDC-4
N7K-P-VDC-v# sh int po 200 status
-------------------------------------------------------------------------------Port
Name
Status Vlan Duplex Speed Type
-------------------------------------------------------------------------------Po200
-connected trunk full 1000 -Step 6
30
Activity Procedure
Complete these steps:
Create a VLAN 10 interface on each VDC based on the table below, remember to enable
the feature first.
Step 1
VDC
Interface
IP address
VDC-1
VLAN 10
10.P.10.1/24
VDC-2
VLAN 10
10.P.10.2/24
VDC-3
VLAN 10
10.P.10.3/24
VDC-4
VLAN 10
10.P.10.4/24
N7K-P-VDC-V(config-if)# sh ip arp
Flags: *
+
#
D
Interface
Vlan10
Vlan10
Lab Guide
31
10.P.10.4
Step 4
00:01:47
b414.89d2.6944
Vlan10
N7K-P-VDC-V#sh spanning-tree
VLAN0010
Spanning tree enabled protocol rstp
Root ID
Priority
32778
Address
b414.89d2.6941
Cost
1
Port
4096 (port-channel1)
Hello Time 2 sec Max Age 20 sec
Bridge ID
Priority
Address
Hello Time
Interface
---------------Po1
Po100
Role
---Root
Desg
Sts
--FWD
FWD
Cost
--------1
1
Prio.Nbr
-------128.4096
128.4195
Type
---------------------------(vPC peer-link) Network P2p
(vPC) P2p
VLAN0020
Spanning tree enabled protocol rstp
Root ID
Priority
32788
Address
b414.89d2.6941
Cost
1
Port
4096 (port-channel1)
Hello Time 2 sec Max Age 20 sec
Bridge ID
Priority
Address
Hello Time
Interface
---------------Po1
Po100
Step 5
Role
---Root
Desg
Sts
--FWD
FWD
Cost
--------1
1
Prio.Nbr
-------128.4096
128.4195
Type
---------------------------(vPC peer-link) Network P2p
(vPC) P2p
Determine the switch in vPC Domain 2 which has the secondary role
On VDC-1 and VDC-2, start an extended ping with a repeat count of 1000000 across the
back-to-back vPC to the secondary switch in vPC domain 2.
N7K-P-VDC-V#ping
Vrf context to use [default] :
No user input: using default context
Target IP address or Hostname: 10.P.10.4
32
Step 8
With the ping still running reload the Primary switch in vPC Domain 2. Make sure to
monitor VDC-1 and VDC-2 while reloading.
N7K-P-VDC-V# sh vpc
Legend:
(*) - local vPC is down, forwarding via vPC peerlink
vPC domain id
Peer status
vPC keep-alive status
reachable)
Configuration consistency status
Per-vlan consistency status
Type-2 consistency status
vPC role
Number of vPCs configured
Peer Gateway
Dual-active excluded VLANs
Graceful Consistency Check
Auto-recovery status
: 2
: peer link is down
: Suspended (Destination IP not
:
:
:
:
:
:
:
:
:
success
success
success
secondary, operational primary
1
Disabled
Enabled
Disabled
Lab Guide
33
Step 10
is still primary but it is now operating as the secondary; this is because vPC does
not support preemption.
Step 11
34
Activity Objective
In this activity, you will configure routing protocols. After completing this activity, you will be able
to meet these objectives:
Configure OSPF
Visual Objective
The figure illustrates what you will accomplish in this activity.
Nexus Routing
10.P.1X.5
XP2
vPC Domain 1
VDC-1
E2/1
E2/5
E1/9
E1/1
E1/2
VDC-3
E1/3
OSPF 1
VLAN 10
E1/6
E2/3
E2/7
Keepalive
E2/9
E2/13
vPC Domain 2
XP3
10.P.1X.5
VDC-2
E1/10
E1/5
E1/4
E1/11
E1/43
E1/42
E1/12
E1/7
E1/8
VDC-4
E2/11
E2/15
E1/44
XP4
10.P.1X.5
DCNI-2 v2.3LG-1
Required Resources
These are the resources and equipment required to complete this activity:
Lab Guide
35
Command List
The table describes the commands used in this activity.
36
Command
Description
N7K-3-VDC-2(config-if)# no switchport
Display IP interfaces.
N7K-3-VDC-2# sh ip route
N7K-3-VDC-2#ping {ip_add}
Pings an IP address.
N7K-P-VDC-V(config)#feature ospf
N7K-P-VDC-V(config-router-vrf)# router-id
{router_id}
N7K-P-VDC-V# sh ip ospf
Activity Procedure
Complete these steps:
Step 1
Establish (or continue) a connection to the assigned client PC remote desktop. Login
with the username: administrator password: cisco.
Step 2
From the client PC, Telnet to 10.P.1.v4, where P is your pod number and 'v' is your
VDC number.
Step 3
Step 4
Since VDC-1 doesnt have a connected client create a loopback interface with the IP
address 10.P.1.1/32
Configure the physical interfaces leading to the client PCs as L3 routed ports and assign
IP addresses for IP communication based on the Table below:
Step 5
VDC
Interface
IP address
VDC-2
E1/42
10.P.12.1/24
VDC-3
E1/43
10.P.13.1/24
VDC-4
E1/44
10.P.14.1/24
Note: The sample configuration reflects VDC-2 make sure to modify the interfaces and IP from the table
for the other VDCs.
IP Address
Vlan10
10.P.10.V
protocol-up/link-up/admin-up
Eth1/4V
10.P.1V.1
protocol-up/link-up/admin-up
Step 7
Interface Status
Confirm that you can ping the directly connected PC from your VDC.
Lab Guide
37
icmp_seq=1
icmp_seq=2
icmp_seq=3
icmp_seq=4
ttl=127
ttl=127
ttl=127
ttl=127
time=0.904
time=0.997
time=0.818
time=0.895
ms
ms
ms
ms
--- 10.P.1x.5 ping statistics --5 packets transmitted, 4 packets received, 20.00% packet loss
round-trip min/avg/max = 0.818/0.903/0.997 ms
Note: The first ping may timeout due to the initial ARP requirement.
Step 8
to host
to host
to host
to host
to host
--- 10.P.13.5 ping statistics --5 packets transmitted, 0 packets received, 100.00% packet loss
N7K-P-VDC-V(config-if)# sh ip route
IP Route Table for VRF "default"
'*' denotes best ucast next-hop
'**' denotes best mcast next-hop
'[x/y]' denotes [preference/metric]
'%<string>' in via output denotes VRF <string>
10.P.10.0/24, ubest/mbest: 1/0, attached
*via 10.P.10.V, Vlan10, [0/0], 01:05:49, direct
10.P.10.2/32, ubest/mbest: 1/0, attached
*via 10.P.10.V, Vlan10, [0/0], 01:05:49, local
10.P.12.0/24, ubest/mbest: 1/0, attached
*via 10.P.1V.1, Eth1/4V, [0/0], 00:03:34, direct
10.P.12.1/32, ubest/mbest: 1/0, attached
*via 10.P.1V.1, Eth1/4V, [0/0], 00:03:34, local
38
Activity Procedure
Complete these steps:
Step 1
Note: If you did not have the proper license for the feature and the grace period was enabled you may
see the warning message below.
To investigate the preceding warning by displaying the current license usage on this
switch. In your lab the Ins (Installed), shows that we have the license.
Configure both interfaces (int VLAN10 and int e1/4V (lo0 for VDC-1)), in each VDC, to
run OSPF in area 0. OSPF is configured with a Process ID (PID), the Process ID can be
a name or number. With OSPF it is always a good idea to configure a stable Router-ID RID. Configure the Router-ID with the number 10.P.v.1, where P is your pod number
and v is your VDC number. Add the option to log-adjacency-changes.
Lab Guide
39
Interface
Vlan10
Vlan10
Vlan10
Now view the routing table. Look for OSPF intra-area learned routes.
N7K-P-VDC-V(config-if-range)# sh ip route
IP Route Table for VRF "default"
'*' denotes best ucast next-hop
'**' denotes best mcast next-hop
'[x/y]' denotes [preference/metric]
'%<string>' in via output denotes VRF <string>
10.P.1.1/32, ubest/mbest: 1/0
*via 10.P.10.1, Vlan10, [110/41], 00:06:43, ospf-nexus, intra
40
Step 6
from
from
from
from
10.P.13.5:
10.P.13.5:
10.P.13.5:
10.P.13.5:
bytes=32
bytes=32
bytes=32
bytes=32
time=2ms
time<1ms
time<1ms
time<1ms
TTL=126
TTL=126
TTL=126
TTL=126
Now try to ping the Router-ID of one of your OSPF neighbors. You should not be
successful. The Router-ID serves as a name for the router and since it is different from
the IP subnets it will remain unreachable.
Lab Guide
41
[########################################] 100%
Step 9
Since the routed configs will be used to rollback in the remaining labs it is a good idea to
create a checkpoint as a file, this will ensure the file remains in bootflash: should the
VDC be deleted;
42
Activity Objective
In this activity you will explore the Cisco Nexus 7010 Switches to identify and verify their various
hardware components. After completing this activity, you will be able to meet these objectives:
Visual Objective
The figure illustrates what you will accomplish in this activity.
Nexus 7K VDC
Topology
E2/23
E1/12
E2/11
E2/9
E1/6
E1/5
E1/11
E1/10
E1/9
E2/7
E2/5
E1/4
E1/3
E1/8
Slot 5/6
Mgmt0/CMP
E2/17
E2/15
E2/3
E2/1
E1/2
E1/1
E1/7
E2/21
E2/19
E2/13
Ethernet Out of
Band
Management
Network
PC2
PC2
PC3
PC4
DCUFI v4.3r3LG-2
Required Resources
These are the resources and equipment required to complete this activity:
Lab Guide
43
Command List
The table describes the commands used in this activity.
Command
Description
Create a VDC.
N7K-P# sh vdc
Create a checkpoint.
N7K-P# sh checkpoint
N7K-P# reload
44
Task 1: View and Validate Key Cisco Nexus 7010 Hardware and
Software Parameters
In this task, you will perform initial setup on the Nexus 7010.
Activity Procedure
Complete these steps:
Note
Step 10
Establish a connection to the assigned client PC XP remote desktop. Log in with the
username administrator password cisco.
Step 11
From the client PC, SSH to the Nexus 7010, with IP address 10.P.1.14, where P is your
pod number.
Step 12
Log in to the default VDC1 with the username admin password 1234Qwer.
2013
2011
2011
2011
2011
2012
2013
2011
2011
2012
2013
2011
2012
2012
2013
2011
2013
2013
2013
lost+found/
master-cfg/
mcast-core-cfg
n7000-kickstart.bin
n7000-s1-dk9.5.1.2.bin
n7000-s1-dk9.5.2.1.bin
n7000-s1-dk9.6.1.3.bin
n7000-s1-epld.5.1.1.img
n7000-s1-epld.5.2.1.img
n7000-s1-epld.6.0.2.img
n7000-s1-epld.6.1.3.img
n7000-s1-kickstart.5.1.2.bin
n7000-s1-kickstart.5.2.1.bin
n7000-s1-kickstart.6.0.4.bin
n7000-s1-kickstart.6.1.3.bin
n7000-system.bin
vdc_2/
vdc_3/
vdc_4/
Determine the Cisco Nexus 7010 hardware components. (Output varies by pod)
Lab Guide
45
46
Step 15
Note
HA standby
HA standby
Thu Jan
2 12:35:13 2014
System uptime:
Kernel uptime:
Active supervisor uptime:
Depending on your pod, you may only have one Supervisor module.
Step 16
Module
------1
2
5
6
Xb1
Xb2
Xb3
------------------N7K-AC-6.0KW
N7K-AC-6.0KW
------------
Model
------------------N7K-M148GT-11
N7K-F132XP-15
N7K-SUP1
N7K-SUP1
N7K-C7010-FAB-1
N7K-C7010-FAB-1
N7K-C7010-FAB-1
Actual
Output
(Watts )
----------508 W
545 W
0 W
Total
Capacity
(Watts )
----------6000 W
6000 W
0 W
Actual
Draw
(Watts )
----------N/A
300 W
N/A
N/A
N/A
N/A
N/A
Power
Allocated
(Watts )
----------400 W
385 W
210 W
210 W
80 W
80 W
80 W
Status
-------------Ok
Ok
Absent
Status
-------------Powered-Up
Powered-Up
Powered-Up
Powered-Up
Powered-Up
Powered-Up
Powered-Up
Lab Guide
47
Xb4
Xb5
fan1
fan2
fan3
fan4
xbar
xbar
N7K-C7010-FAN-S
N7K-C7010-FAN-S
N7K-C7010-FAN-F
N7K-C7010-FAN-F
N/A
N/A
88
88
9
9
W
W
W
W
80
80
720
720
120
120
W
W
W
W
W
W
Absent
Absent
Powered-Up
Powered-Up
Powered-Up
Powered-Up
Power
Power
Power
Power
Power
PS-Redundant
PS-Redundant
6000
12000
1053
3285
2715
W
W
W
W
W
Clock:
---------------------------------------------------------Clock
Model
Hw
Status
---------------------------------------------------------A
Clock Module
-NotSupported/None
B
Clock Module
-NotSupported/None
Fan:
-----------------------------------------------------Fan
Model
Hw
Status
-----------------------------------------------------Fan1(sys_fan1) N7K-C7010-FAN-S
1.1
Ok
Fan2(sys_fan2) N7K-C7010-FAN-S
1.1
Ok
Fan3(fab_fan1) N7K-C7010-FAN-F
1.1
Ok
Fan4(fab_fan2) N7K-C7010-FAN-F
1.1
Ok
Fan_in_PS1
--Ok
Fan_in_PS2
--Ok
Fan_in_PS3
--Absent
Fan Zone Speed: Zone 1: 0x60 Zone 2: 0x48
Fan Air Filter : Absent
Temperature:
-------------------------------------------------------------------Module
Sensor
MajorThresh
MinorThres
CurTemp
Status
(Celsius)
(Celsius)
(Celsius)
48
-------------------------------------------------------------------1
Crossbar(s5)
105
95
42
Ok
1
CTSdev4 (s9)
115
105
61
Ok
1
CTSdev5 (s10)
115
105
59
Ok
1
CTSdev7 (s12)
115
105
57
Ok
1
CTSdev9 (s14)
115
105
54
Ok
1
CTSdev10(s15)
115
105
55
Ok
1
CTSdev11(s16)
115
105
52
Ok
1
CTSdev12(s17)
115
105
52
Ok
1
QEng1Sn1(s18)
115
105
58
Ok
1
QEng1Sn2(s19)
115
105
57
Ok
1
QEng1Sn3(s20)
115
105
54
Ok
1
QEng1Sn4(s21)
115
105
54
Ok
1
L2Lookup(s22)
120
110
50
Ok
1
L3Lookup(s23)
120
110
58
Ok
2
Crossbar1(s1)
105
95
73
Ok
2
Crossbar2(s2)
105
95
53
Ok
2
L2dev1(s3)
105
95
42
Ok
2
L2dev2(s4)
105
95
54
Ok
2
L2dev3(s5)
105
95
56
Ok
2
L2dev4(s6)
105
95
55
Ok
2
L2dev5(s7)
105
95
54
Ok
2
L2dev6(s8)
105
95
50
Ok
2
L2dev7(s9)
105
95
52
Ok
2
L2dev8(s10)
105
95
46
Ok
2
L2dev9(s11)
105
95
46
Ok
2
L2dev10(s12)
105
95
43
Ok
2
L2dev11(s13)
105
95
45
Ok
2
L2dev12(s14)
105
95
42
Ok
2
L2dev13(s15)
105
95
37
Ok
2
L2dev14(s16)
105
95
35
Ok
2
L2dev15(s17)
105
95
34
Ok
2
L2dev16(s18)
105
95
34
Ok
5
Intake (s3)
60
42
23
Ok
5
EOBC_MAC(s4)
105
95
41
Ok
5
CPU
(s5)
105
95
43
Ok
5
Crossbar(s6)
105
95
48
Ok
5
Arbiter (s7)
110
100
56
Ok
5
CTSdev1 (s8)
115
105
47
Ok
5
InbFPGA (s9)
105
95
44
Ok
5
QEng1Sn1(s10)
115
105
54
Ok
5
QEng1Sn2(s11)
115
105
52
Ok
5
QEng1Sn3(s12)
115
105
50
Ok
5
QEng1Sn4(s13)
115
105
52
Ok
6
Intake (s3)
60
42
23
Ok
6
EOBC_MAC(s4)
105
95
40
Ok
6
CPU
(s5)
105
95
37
Ok
6
Crossbar(s6)
105
95
48
Ok
2014 Firefly Education www.fireflyeducate.com
Lab Guide
49
6
6
6
6
6
6
6
xbar-1
xbar-1
xbar-2
xbar-2
xbar-3
xbar-3
Step 17
Arbiter (s7)
CTSdev1 (s8)
InbFPGA (s9)
QEng1Sn1(s10)
QEng1Sn2(s11)
QEng1Sn3(s12)
QEng1Sn4(s13)
Intake (s2)
Crossbar(s3)
Intake (s2)
Crossbar(s3)
Intake (s2)
Crossbar(s3)
110
115
105
115
115
115
115
60
105
60
105
60
105
100
105
95
105
105
105
105
42
95
42
95
42
95
54
44
42
49
47
45
48
27
60
27
55
27
63
Ok
Ok
Ok
Ok
Ok
Ok
Ok
Ok
Ok
Ok
Ok
Ok
Ok
Sw
-------------6.1(3)
6.1(3)
6.1(3)
6.1(3)
Mod
--1
2
5
6
Mod
--1
2
5
6
MAC-Address(es)
-------------------------------------e0-5f-b9-ea-ba-70 to e0-5f-b9-ea-ba-a3
e0-5f-b9-30-43-08 to e0-5f-b9-30-43-4b
b4-14-89-d2-af-88 to b4-14-89-d2-af-8f
00-1b-54-c1-8c-08 to 00-1b-54-c1-8c-0f
Online Diag Status
-----------------Pass
Pass
Pass
Pass
Xbar
--1
2
3
Ports
----0
0
0
Xbar
--1
2
3
MAC-Address(es)
-------------------------------------NA
NA
NA
Model
Status
--------------- ---------N7K-M148GT-11
ok
N7K-F132XP-15
ok
N7K-SUP1
active
N7K-SUP1
ha-standby
Hw
-----1.6
1.1
1.8
1.0
Serial-Num
---------JAF1451CLKN
JAF1448CMTJ
JAF1441DFJG
JAB122000M4
Module-Type
----------------------------------Fabric Module 1
Fabric Module 1
Fabric Module 1
Model
-----------------N7K-C7010-FAB-1
N7K-C7010-FAB-1
N7K-C7010-FAB-1
Status
-----ok
ok
ok
Serial-Num
---------JAF1450BNJD
JAF1450CHJG
JAF1449DTBE
* this terminal
50
Step 18
Check that the system clock is set to the current date and time, and validate these settings
using show clock command.
N7K-P# sh clock
13:32:06.229 UTC Thu Jan 02 2014
Lab Guide
51
Activity Procedure
Complete these steps:
Step 1
N7K-P# attach ?
cmp
console
module
Load average:
1 minute: 0.05
5 minutes: 0.04
15 minutes: 0.03
Processes
:
70 total, 2 running
CPU states :
0.0% user,
0.0% kernel,
100.0% idle
CPU0 states :
0.0% user,
0.0% kernel,
100.0% idle
Memory usage:
1035716K total,
476920K used,
558796K free
Step 3
Use the exit command to disconnect from an individual module back to VDC-1.
Lab Guide
53