What's changed in this book
This table summarizes the new and changed features in this guide for Release 10.6(x) and provides links to the sections where they are documented.
| Feature | Description | Changed in Release | Where Documented |
|---|---|---|---|
|
DPU Security enablement – feature service acceleration |
Allows you to power up the DPUs on the N9300 Smart Switches by enabling feature service acceleration |
10.6(3s)F |
Onboarding and Security Enablement |
|
Network security operations |
An exclusive admin role for the DPU security mode on N9300 Smart Switches |
10.6(3s)F |
|
|
VRF redirection and VLAN redirection |
Supports VLAN-based bridged traffic redirection and VRF-based routed traffic redirection to the DPU providing Layer 3 and Layer 4 inspection. |
10.6(3s)F |
|
|
Traffic inspection and integration with VXLAN |
Integrates traffic inspection seamlessly with VXLAN overlays and traditional VLAN/VRF configurations, leveraging DPUs for hardware-accelerated security features within the switch. |
10.6(3s)F |
|
|
Inter-VRF Traffic Inspection |
Inspects traffic in the DPU between sources and destinations in different VRFs; supported by symmetric hashing mode only. |
10.6(3s)F |
|
|
Layer 2 isolation for micro-segmentation |
Allows routing of the same-subnet IPv4 traffic through security inspection using receive-only VLAN mapping, Layer 2 isolation on a service VLAN, and enhanced local Proxy ARP. |
10.6(3s)F |
|
|
High Availability |
Ensures that the services remain available for both bridged and routed traffic during switch or DPU failure or outage. |
10.6(3s)F |
Feedback