Cisco APIC Layer 3 Networking Configuration Guide, Release 6.2(x)

PDF

Cisco APIC Layer 3 Networking Configuration Guide, Release 6.2(x)

Configure a VXLAN VRF stretch by using the GUI

Want to summarize with AI?

Log in

Stretch a tenant VRF between Cisco ACI and VXLAN EVPN domains to enable routed communication through VXLAN data-plane encapsulation.


Use this procedure to extend tenant VRFs between Cisco ACI and VXLAN EVPN domains.

A VXLAN VRF stretch enables routed communication between tenants in Cisco ACI and VXLAN EVPN domains through VXLAN data-plane encapsulation.

The following considerations apply:

  • Stretched tenant VRFs are associated with a border gateway set. The border gateway set is associated with the VXLAN Infra L3Out.

  • Each VRF supports only one VXLAN VRF L3Out. The VXLAN VRF L3Out extends the VRF to a border gateway.

Before you begin

Procedure

1.

Choose Tenants > Networking > VXLAN Stretch.

2.

Right-click VXLAN Stretch and choose Create VXLAN VRF Stretch.

The Create VXLAN VRF Stretch window appears.

3.

From the VRF drop-down list, choose an existing VRF, or click Create VRF and configure a VRF:

  1. In the Name field, enter a name for the VRF.

  2. In the Alias field, enter an alias for the VRF.

  3. Optional: In the Description field, enter a description of the VRF.

  4. From the Policy Control Enforcement Preference drop-down list, choose Unenforced.

    In enforced mode, contracts control communication between EPGs. In unenforced mode, all EPGs in the VRF can communicate without contracts. The default policy enforcement mode is enforced.

  5. From the Policy Control Enforcement Direction drop-down list, choose Ingress.

  6. From the OSPF Timers drop-down list, choose the OSPF timer policy to associate with the VRF, or choose Create OSPF Timers Policy to create one.

  7. From the Monitoring Policy drop-down list, choose the monitoring policy to associate with the VRF.

  8. Click Submit.

4.

From the Border Gateway Set drop-down list, choose an existing border gateway set, or click Create Border Gateway Set to create one.

5.

Configure the release-specific remote fabric and VNI settings:

  • Beginning with Cisco APIC Release 6.1(2), the Remote Fabric Name and Remote VNI options are preselected. You do not need to configure these options.

  • Beginning with Cisco APIC Release 6.1(4), specify the Normalized VNI. This value is the VNI that the VRF uses in the remote EVPN fabric.

Note

Cisco APIC assigns the Local VNI. ACI border gateways perform bidirectional translation between the local VNI assigned by Cisco APIC and the configured normalized VNI.

6.

In the Outbound field, specify an outbound route map to control the routes advertised to the Cisco NX-OS site.

For information about creating route maps, see Configure a VXLAN VRF stretch by using the GUI.

7.

In the Inbound field, specify an inbound route map to control the routes imported from the Cisco NX-OS fabric.

8.

Click Submit.

The tenant VRF is extended between the Cisco ACI and VXLAN EVPN domains. Tenants can use VXLAN data-plane encapsulation for routed communication between the domains.

What to do next

Configure a VXLAN bridge domain stretch by using the procedure in Configure a VXLAN bridge domain stretch by using the GUI.