FEATURE | DESCRIPTION | ESSENTIALS | ADVANTAGE | PREMIER |
---|---|---|---|---|
Fabric Inventory and Provisioning | Create or onboard datacenter fabrics using Cisco best-practice templates. View fabric, switch, interface, and endpoint visibility and basic inter-fabric topologies. Compare historical statistics for interfaces, policies, endpoints, device resources and environmental stats . Manage and provisioning fabrics policies supporting multiple architectures including Classical LAN, VXLAN EVPN and VXLAN Multi-Site connectivity between data center fabrics. View L3 neighbors (BGP, OSPF) and routing tables (IPv4, IPv6) with historical information. Includes the ability to onboard fabric snapshots for ACI fabrics for offline analysis. | X | X | X |
Fabric and Switch upgrades | Stage, validate, and upgrade individual switches or groups, with Pre & Post validation checks | X | X | X |
Security and Segmentation | Fabric level visibility of Endpoint Security Groups (ACI) and management of Security Groups (GPO for NX-OS) | X | X | X |
Basic Alerts & Correlation | Sev1 Bugs, PSIRT and End-of-support Advisories for HW & SW. Detection and correlation of basic anomalies. Provides proactive monitoring, analysis and remediation recommendations | X | X | X |
Conformance (SW & HW) | Visibility into software and hardware lifecycles of your fabrics. Forecast software & hardware milestones with 18-month outlook | X | X | X |
Search & Explore (Basic) | Search for specific objects, switches, and endpoints | X | X | X |
Virtual Machine Manager (VMM) Integrations | VMware vCenter (ACI/NX-OS), Openshift (NX-OS) and Kubernetes (NX-OS) integrations to provide additional endpoint metadata including host health and location information | X | X | X |
Rules Configuration | Create global and custom anomaly rules to customize handling and alerting | X | X | X |
Data Export | Email support with Intersight or Local SMTP Servers. Export anomalies to external Splunk and syslog destinations. Leverage Log Collector to gather and upload support logs for devices in your network to Cisco Intersight Cloud for faster support case resolution | X | X | X |
One Manage | Stretch connectivity and security policies across multiple NX-OS fabrics managed by different Nexus Dashboard Clusters | X | X | X |
Advanced Alerts & Correlation | Extended set of advanced anomaly detection and correlation includes Best-Practice advisories and Alert-Suspend mode to reduce unnecessary alerts during maintenance activities. Support for Bug Scan to identify software bugs that may be applicable to your devices. | X | X | |
Fabric Capacity and Conformance | Understand scale conformance for multiple fabrics based on Cisco's Verified Scalability Guide including individual switch utilization levels of various capacity aspects | X | X | |
Energy Management | Energy Management, Switch and fabric-level power consumption, cost (kWh), and CO2 emissions. CO2 emissions (require Cisco Intersight connectivity) | X | X | |
AI/ML and microburst | Microburst detection and PFC/ECN congestion detection | X | X | |
DNS Integration | Resolve Endpoint hostnames to DNS server using active server query or zone transfer/import | X | X | |
External traffic trending | Understand how different fabrics send and receive external traffic, and identify peaks when they happen | X | X | |
Streaming Export | Configure a Kafka message bus receiver for streaming of system or fabric level anomalies | X | X | |
Multicast Traffic Stats & Visibility | Groups, Sources, Receivers, where they are connected, statistics including IGMP, PIM, Multicast Routing tables and Forwarding Tables | X | X | |
Multi-site Orchestration | Ability to stretch connectivity and security policies across multiple ACI fabrics | X | X | |
Hypershield Switch DPU | Hypershield integrated Nexus DPU-enabled smart switch support including analytics | X | ||
Premier Anomaly & Correlation | Complete set of anomaly detection correlation signatures. | X | ||
Pre-change analysis | Model desired configuration changes using XML/JSON file import or manual configuration definition to understand the potential impact before applying them (ACI only) | X | ||
Network Telemetry & Analytics | Analyze your fabric's traffic performance with one of two modes; Flow Telemetry enables flows path visibility and granular details on where latency and packet drops for a given set of sources and destinations. Traffic Analytics provides insights regarding latency, congestion, and drops in your networks pervasively for TCP and UDP traffic, combined with the ability to auto-categorize traffic based on well-known and user-defined protocols & ports. Flow Table Events (FTE) provides real-time notification of drops and other events that may be impacting the performance of your fabric. Both modes include support for L4-L7 flow patch stitching and visualizations. | X | ||
External Integrations | Configure NAS storage for export and archiving Flow Telemetry records. For granular energy management statistics integrate with Panduit PDUs for discrete power consumption details. Create powerful integrations with Splunk and AppDynamics. | X | ||
Assurance & Compliance | Real-time and continuous monitoring, analysis, and verification of fabric operations to ensure they function according to business intent and policy compliance. Define communication and configuration compliance rules to be alerted if any rules become violated (ACI only). | X | ||
Operations & Troubleshooting | Leverage Delta Anlaysis to compare the state of a fabric from two different points in time to understand before vs. after changes. Connectivity Analysis enables the ability to validate routing, switching and security policies and confirm live traffic flows between source and destination endpoints automatically using Embedded Logic Analyzer Module (ELAM) and VXLAN OAM toolsets. With Enhanced Search and Explore expand this tool to include "Can" queries to validate if two objects (Endpoints, Security Groups, VRFs, etc) can communicate with each other. Any relevant anomalies for the involved objects are includes along with all policy, forwarding and endpoint details. Policy CAM analyzer gives switch-level views into the consumption of switch resources for security policies (contracts, ACLs/Filters) to help operators understand the most and least used security policies. | X |
FEATURE | DESCRIPTION | ESSENTIALS | ADVANTAGE | PREMIER |
---|---|---|---|---|
Fabric Management and automation | Inventory management and config, zero-touch provisioning, integrated overlay over IP fabric, API-driven automation, and more | X | X | X |
Security | Zero-trust policy model, role-based access control, Cisco TrustSec® integration, advanced microsegmentation, and more | X | X | X |
ACI Multi-Pod | Distributed ACI fabrics | X | X | X |
Virtual Machine Manager (VMM) Integration | Integrate ACI with VMware, Kubernetes, Openshift, Redhat KVM and Nutanix virtualization platforms | X | X | X |
Streaming Telemetry | Cisco NetFlow, sflow, SNMP, PTP | X | X | X |
Ecosystem | Third-party integration through open APIs, Layer 4-7 service integration, and ACI application center | X | X | X |
Programmability | API - JSON, gRPC, REST | X | X | X |
ACI Multi-site | Stretch policies across separate ACI fabrics (requires Nexus Dashboard) | X | X | |
Physical Remote Leaf | Remote deploy leafs in branch/smaller sites which are managed by a primary ACI fabric | X | X |
FEATURE | DESCRIPTION | ESSENTIALS | ADVANTAGE | PREMIER |
---|---|---|---|---|
LAN Enterprise | LAN Enterprise Services license | X | X | X |
Network Services | Network Services package | X | X | X |
Security | VXLAN GPO | X | X | X |
Streaming Telemetry | Hardware Streaming Telemetry Package (Netflow, sFlow, Analytics) | X | X | X |
Fabric Management & Automation | Management, automation, control, monitoring, and integration for deployments spanning LAN, SAN, and IP Fabric for Media (IPFM) fabrics. (Requires Nexus Dashboard) | X | X | X |
Programmability | API - JSON, gRPC, REST | X | X | X |
Routing and switching | BGP, EIGRP, GRE, IS-IS, MSDP, OSPF, EPBR [includes ITD and PBR], PIM, SSM, VRF (non-default), VXLAN BGP EVPN, Microsegmentation, IP Fabric for Media Non-Blocking Multicast, PTP, iCAM, RIP, OFM, NGOAM, and VRRP | X | X | X |
DCI Overlay / VPN Fabric | SR-MPLS, Layer 3 EVPN over segment routing (SRv6), MPLS Layer 3 VPN | X | X | |
Tenant Routed Multicast | Multi-tenancy aware multicast forwarding for VXLAN EVPN fabrics | X | X | |
Intelligent Packet Flow | Dynamic Load Balancing (DLB), Per-packet Load Balancing (PLB), Path-based (WCMP+DLB), Policy based, Static Pinning | X | X | |
Fabric services features | iCAM, ITD, Smart Channel | X | X | |
RTP Flow Monitoring | Flow Monitoring for RTP Flows to pinpoint any packet loss | X | X | |
PTP Flow Monitoring | Flow Monitoring and key statistics for PTP Flows in IP Fabric for Media Deployments | X | X | |
Multicast NAT | Network Address Translation for Multicast Flows in IP Fabric for Media Deployments | X | X |
FEATURE | DESCRIPTION | ESSENTIALS | ADVANTAGE | PREMIER |
---|---|---|---|---|
Inter-VSAN Routing | MDS Enterprise entitlement | N/A | X | X |
Quality of service | MDS Enterprise entitlement | N/A | X | X |
Extended B2B credits | MDS Enterprise entitlement | N/A | X | X |
Switch-switch and host-switch authentication | MDS Enterprise entitlement | N/A | X | X |
Diffie-Hellman Challenge Handshake Authentication Protocol | MDS Enterprise entitlement | N/A | X | X |
Port security | MDS Enterprise entitlement | N/A | X | X |
VSAN-based access control | MDS Enterprise entitlement | N/A | X | X |
IP Security | MDS Enterprise entitlement | N/A | X | X |
Fabric binding for open systems | MDS Enterprise entitlement | N/A | X | X |
Digital certificates | MDS Enterprise entitlement | N/A | X | X |
Cisco TrustSec® Fibre Channel Link Encryption | MDS Enterprise entitlement | N/A | X | X |
Nexus Dashboard SAN Management (all features) | MDS Nexus Dashboard Entitlement | N/A | X | X |
Nexus Dashboard SAN Analytics (all ND features + SAN Insights) | MDS SAN Insights entitlement | N/A | X |