Configure intra-EPG isolation for bare metal servers to prevent communication between endpoints within the same EPG while maintaining external connectivity.
The port the EPG uses must be associated with a bare metal server interface in the physical domain that is used to connect the bare metal servers directly to leaf switches.
Procedure
-
In a tenant, right click on an Application Profile, and open the Create Application EPG dialog box to perform the following actions:
- In the Name field, add the EPG name (intra_EPG-deny).
- For Intra EPG Isolation, click Enforced.
- In the Bridge Domain field, choose the bridge domain from the drop-down list (bd1).
- Check the Statically Link with Leaves/Paths check box.
- Click Next.
-
In the Leaves/Paths dialog box, perform the following actions: