Cisco APIC Layer 3 Networking Configuration Guide, Release 6.2(x)

PDF

Cisco APIC Layer 3 Networking Configuration Guide, Release 6.2(x)

Create a custom VXLAN QoS policy by using the GUI

Want to summarize with AI?

Log in

Configure ingress and egress rules that control the priority and marking of traffic between Cisco ACI and VXLAN EVPN fabrics.


Use this procedure to create a custom VXLAN quality of service (QoS) policy. The policy classifies traffic received from a VXLAN EVPN fabric based on its inner Differentiated Services Code Point (DSCP) values and assigns the traffic an ACI QoS priority.

Ingress rules set the class of service (CoS) and DSCP values in the inner header of traffic forwarded within the ACI fabric. Egress rules set the CoS and DSCP values in the outer header of VXLAN-encapsulated traffic sent from the ACI fabric to a remote VXLAN EVPN fabric. Egress rules match the IPv4 DSCP values defined in the VXLAN QoS egress policy.

If you do not configure a custom egress policy, Cisco ACI sets the outer DSCP and CoS values to zero before the traffic leaves the fabric.

Procedure

1.

From the top menu bar, choose Tenants > infra > Networking > VXLAN L3Outs.

2.

Right-click VXLAN L3Outs and choose Create VXLAN L3Out.

3.

In the Connectivity window, enter the required VXLAN Infra L3Out information.

4.

From the VXLAN Custom QoS Policy drop-down list, choose an existing policy, or choose Create VXLAN Custom QoS Policy to create one.

5.

In the Create VXLAN Custom QoS Policy window, enter a name and description for the policy.

6.

In the VXLAN Ingress Rule area, click + to add an ingress QoS translation rule.

When traffic from a VXLAN EVPN fabric enters an ACI border gateway, Cisco ACI checks the inner DSCP value. If the value matches the configured range, Cisco ACI assigns the traffic an ACI QoS level and marks it with the configured CoS and DSCP values in the inner headers.

  1. From the Priority drop-down list, choose the priority for the ingress rule.

    The priority is the QoS level assigned to traffic within the ACI fabric. Cisco ACI uses this level to prioritize the traffic and determine the CoS value set in the outer header of the iVXLAN-encapsulated traffic.

    You can choose Level 1 through Level 6. The default value is Level 3. If you do not choose a value, Cisco ACI assigns the traffic Level 3 priority.

  2. From the DSCP Range From and DSCP Range To drop-down lists, specify the range of inner DSCP values to match in VXLAN traffic received from the remote VXLAN EVPN domain.

  3. From the Target DSCP drop-down list, choose the DSCP value to assign to the packet while it is forwarded within the ACI fabric.

  4. From the Target CoS drop-down list, choose the CoS value to assign to the packet while it is forwarded within the ACI fabric.

    Cisco ACI sets the specified CoS value in the original traffic received from the VXLAN EVPN domain. The value is exposed when the destination ACI leaf node decapsulates the VXLAN traffic.

    The default value is Unspecified. This value preserves the original packet CoS value only when CoS preservation is enabled in the fabric.

  5. Click Update to save the ingress rule.

  6. Repeat these substeps to configure additional ingress QoS rules.

7.

In the VXLAN Egress Rule area, click + to add an egress QoS translation rule.

  1. From the DSCP Range From and DSCP Range To drop-down lists, specify the range of inner DSCP values to match.

    The rule matches the inner DSCP values of iVXLAN traffic that originates from ACI leaf nodes and is received by ACI border gateways. Based on the match, Cisco ACI assigns the configured outer CoS and DSCP values to VXLAN traffic sent to the remote VXLAN EVPN domain.

  2. From the Target Overlay DSCP drop-down list, choose the outer DSCP value to assign to the outgoing VXLAN packet.

  3. From the Target CoS drop-down list, choose the outer CoS value to assign to the outgoing VXLAN packet.

  4. Click Update to save the egress rule.

  5. Repeat these substeps to configure additional egress QoS rules.

8.

Click OK to create the custom VXLAN QoS policy.

The custom VXLAN QoS policy contains the ingress and egress rules that control traffic priority and marking between the ACI fabric and remote VXLAN EVPN domains.