What’s changed in this book

What's changed in this book

This table summarizes the new and changed features in this guide for Release 10.6(x) and provides links to the sections where they are documented.

Feature Description Changed in Release Where Documented

DPU Security enablement – feature service acceleration

Allows you to power up the DPUs on the N9300 Smart Switches by enabling feature service acceleration

10.6(3s)F

Onboarding and Security Enablement

Network security operations

An exclusive admin role for the DPU security mode on N9300 Smart Switches

10.6(3s)F

User Accounts and RBAC

VRF redirection and VLAN redirection

Supports VLAN-based bridged traffic redirection and VRF-based routed traffic redirection to the DPU providing Layer 3 and Layer 4 inspection.

10.6(3s)F

Configure Traffic redirection to firewall service

Traffic inspection and integration with VXLAN

Integrates traffic inspection seamlessly with VXLAN overlays and traditional VLAN/VRF configurations, leveraging DPUs for hardware-accelerated security features within the switch.

10.6(3s)F

Traffic inspection with Smart Switches in VXLAN EVPN fabric

Inter-VRF Traffic Inspection

Inspects traffic in the DPU between sources and destinations in different VRFs; supported by symmetric hashing mode only.

10.6(3s)F

Inter-VRF Traffic Inspection

Layer 2 isolation for micro-segmentation

Allows routing of the same-subnet IPv4 traffic through security inspection using receive-only VLAN mapping, Layer 2 isolation on a service VLAN, and enhanced local Proxy ARP.

10.6(3s)F

Layer 2 Isolation for Micro-segmentation

High Availability

Ensures that the services remain available for both bridged and routed traffic during switch or DPU failure or outage.

10.6(3s)F

High Availability and Redundancy