Guides you through configuring the Hypershield Controller, enabling DPU service acceleration, onboarding Smart Switches, redirecting traffic, and activating firewall-based security inspection.
Onboarding and security enablement
Enable the DPU and configure the Hypershield Controller first to onboard Smart Switches for distributed Layer-4 segmentation and DPU security enforcement.
Configure Hypershield Controller
Guides you through configuring the Hypershield Controller by setting internal network subnets and updating the bootstrap.yaml file to prevent IP address conflicts prior to onboarding and security enablement.
Workflow for onboarding and enabling security
Workflow that enables DPU security mode on N9300 Smart Switches by installing software, configuring networking, connecting to the Hypershield Controller, and enabling traffic inspection and firewall services.
Enable Service Acceleration feature
Details how to enable the service acceleration feature on NX-OS switches, including powering up DPUs, command requirements, operational limitations, and considerations for configuration changes and VRF traffic redirection.
Create a loopback interface for Hypershield connectivity
Provides instructions for creating a loopback interface for Hypershield connectivity, configuring its IP address, associating it with a physical interface, adding a static route, and verifying the configuration.
Register the Smart Switch with Hypershield
Guides you through obtaining a Hypershield token and registering the N9300 Smart switch with Hypershield by establishing communication using an EXEC-level CLI command.
Configure traffic redirection to the firewall service
Outlines the configuration of VRFs and VLANs for redirecting traffic to DPU firewall services, specifying which types of IP traffic are inspected or excluded from inspection during traffic redirection.
Enable service firewall
Provides instructions to enable traffic inspection with in-service command that enables service firewall.