Cisco APIC Layer 2 Networking Configuration Guide, Release 6.2(x)

PDF

Cisco APIC Layer 2 Networking Configuration Guide, Release 6.2(x)

Configure Intra-EPG Isolation for Cisco ACI Virtual Edge Using the NX-OS Style CLI

Want to summarize with AI?

Log in

Enables isolation mode for an EPG on the Cisco ACI Virtual Edge using the NX-OS style CLI. This configuration restricts communication between endpoints within the same EPG.


Before you begin

Make sure that VXLAN-related configuration is present on the Cisco ACI Virtual Edge VMM domain, particularly a Cisco ACI Virtual Edge fabric-wide multicast address and pool of multicast addresses (one per EPG).

Procedure

In the CLI, create an intra-EPG isolation EPG:

Example:

# Command: show running-config tenant Tenant2 application AP-1 epg EPG-61
            tenant Tenant2
            application AP-1
            epg EPG-61
            bridge-domain member BD-61
            vmware-domain member D-AVE-SITE-2-3
            switching-mode AVE
            encap-mode vxlan
            exit
            isolation enforce            # This enables EPG into isolation mode.
            exit
            exit
            exit
          

What to do next

You can select statistics and view them to help diagnose problems involving the endpoint. See the sections Choose statistics for isolated endpoints on Cisco ACI Virtual Edge Under the Tenants Tab and View Statistics for Isolated Endpoints on Cisco ACI Virtual Edge Under the Tenants Tab in this guide.