- Cisco Nexus Data Broker Overview
- Deploying Cisco Nexus Data Broker
- Managing TLS Certificate, KeyStore, and TrustStore Files
- Logging in and Managing Cisco Nexus Data Broker
- Viewing and Adding Devices
- Configuring Cisco Nexus 9000 Series Switches
- Configuring the Nexus Data Broker
- Integrating Cisco Nexus Data Broker With Cisco ACI
- Viewing and Adding Flows
- Viewing Consistency Check
- Managing Users
- Configuring the Setup for a Use Case in the Centralized Mode
- Managing System
Integrating Cisco
Nexus Data Broker With Cisco ACI
This chapter contains the following sections:
- Viewing the SPAN Management Tab
- Viewing the SPAN Destination Tab
- Adding SPAN Destination
- Creating Copy Devices Using Copy Sessions (BETA)
- Adding SPAN Sessions
Viewing the SPAN Management Tab
The SPAN Management tab is displayed on the Devices screen under the Administration tab in the GUI.
On the SPAN Management tab, click + Add Device. The Connect to Device window is displayed. Complete the following steps to connect to the device:
For APIC and production switches, the centralized deployment of Cisco Nexus Data Broker is mandatory.
| Step 1 | Choose ACI device to add an APIC device. |
| Step 2 | In the APIC IP Addresses panel, add the APIC IP Address (Primary), APIC IP address (Secondary), and APIC IP address (Tertiary). |
| Step 3 | In the User Details panel, add Username and Password. |
| Step 4 | After an ACI device has been added, the ACI radio button is disabled. Then you can add a NXOS production switch. Click NXOS in the first step to add a NXOS production switch.
The NX-API feature has to be enabled for the NXOS production switch to be added. To add a NXOS production switch in the SPAN Management tab, one NX-API device should already exist. This is a pre-requisite. |
| Step 5 | Click Connect. |
The NXOS production switch is displayed with the Type as PS in the SPAN Management tab. The APIC IP Address (Primary), APIC IP address (Secondary), and APIC IP address (Tertiary) do not apply to the NXOS production switch. Therefore, those fields are blank. You can also edit the credentials of the NXOS production switch. Once the production switch is added, it is displayed in the Configuration tab in green. In the Port Configuration window, you can configure SPAN Destination in the production Nexus switches that are NX-API enabled.
Viewing the SPAN Destination Tab
When you click Port Definition tab in the GUI, the Port Definition screen is displayed. Select the switch from the drop-down list to configure the ports.
Adding SPAN Destination
When you configure a port as an edge SPAN port and the port is connected to the API side, you can select the pod, node, and port from the ACI side and set the port as SPAN destination. SPAN destination can now be configured on the Cisco Nexus 9000 or Cisco Nexus 3000 Series production switches.
![]() Note | For APIC SPAN destination, when you configure a port as an Edge SPAN port and the port is connected to the API side, you can select the pod, the node, and the port from the ACI side and set the port as SPAN destination. For production switch SPAN destination, when you configure a port as an Edge SPAN port and the port is connected to the production switch side, you can select the node and the port from the production switch side and set the port as SPAN destination. You can add SPAN destination only after either an APIC or the production switch has been successfully added to the network. |
Creating Copy Devices Using Copy Sessions (BETA)
When you configure a port as an edge-SPAN port, you can create copy devices using Copy Sessions (BETA) functionality.
![]() Note | You can add SPAN destination and copy devices only after an APIC device has been successfully added to the network. |
Adding SPAN Sessions
On the SPAN Sessions tab, the following fields are displayed:
You can add a SPAN session in ACI.
| Step 1 | Click + SPAN Session to add a SPAN session. The Add SPAN Session window is displayed. | ||
| Step 2 | In the Add SPAN Session window, add a session name in the SPAN Session Name field. | ||
| Step 3 | (Optional)Select a connection in the Select Connections field. | ||
| Step 4 | In the Action pane, select a priority for the SPAN session. | ||
| Step 5 | Select a rule using the drop-down list in the Rule Filter field. You can select the default filter rule, Default-Match-IP or select another filter from the drop-down list.
The available filter rules are Default-Match-IP, Match-HTTP, Match-vlan, and Default-Match-all. | ||
| Step 6 | Select a destination device to which the traffic is sent. | ||
| Step 7 | In the SPAN SOURCES pane, click + Add SPAN Source. In the pane, click + Add Leaf Ports to add a leaf port to capture the traffic from multiple leaf ports. OR optionally, you can click +Add EPG to add an EPG source. Enter the values in the following fields: | ||
| Step 8 | In the SPAN Destination field, select SPAN destination.
If you install ACI SPAN session, it lists the SPAN destination that is created in ACI. If you install NXOS SPAN session, it lists the SPAN destination that is created in NXOS.
| ||
| Step 9 | Click Add SPAN Session.
A message box is displayed asking you to confirm, Are you sure you want to add SPAN session?, if you want to add the SPAN session. | ||
| Step 10 | Click OK.
As a result, a SPAN session is set up in ACI. It also sets up a connection automatically on the Cisco Nexus Data Broker with the same SPAN session name and this connection redirects the traffic from that source port to the monitoring device.
You can set up additional SPAN sessions. You can append a new SPAN session to the existing connection. In that case, you can select the new SPAN session in the Add SPAN Session window, use the same connection that is previously created, select new SPAN sources from different leaf ports, select the SPAN destination, and add the SPAN session. It creates a new session in ACI, but it appends an existing connection to include the new traffic on the Cisco Nexus Data Broker side. You can edit or clone the existing SPAN sessions. If you want to remove a SPAN session, click the session and click Remove SPAN Session(s) A message box is displayed asking you to confirm, Remove the following sessions?, if you want to remove the displayed SPAN session. Click Remove SPAN Sessions to confirm. If the SPAN session is using an existing connection, the connection is updated automatically with the changes. If it is the last connection associated with the SPAN session, the connection is deleted. |

Feedback