Solved

Command “vrf context management” in Nexus 5000

Posted on 2013-11-04
8
4,705 Views
Last Modified: 2013-11-05
Expert

I have the question. What is the function of command  “vrf context management” in Nexus 5000 ? The command can be used for interface management ip address, and it can be used like this”

N5k-1(config)#int mgmt 0
N5k-1(config-if)#ip address 172.116.1.10/24
N5k-1(config-if)#vrf context management
N5k-1(config-vrf)#ip route 0.0.0.0 0.0.0.0 172.116.1.1

I cannot understand why it is added under interface management. What is difference between the vrf in Nexus and vrf in MPLS ?

Thank you
0
Comment
Question by:EESky
  • 4
  • 4
8 Comments
 
LVL 50

Expert Comment

by:Don Johnston
ID: 39622952
What is the function of command  “vrf context management” in Nexus 5000 ?
In your example, it allows you to creates a default-route for the "management" context. Had you not issued the "vrf context management" command first, the default route would exist in the default context.
0
 

Author Comment

by:EESky
ID: 39624806
Thank you for your reply!

The command "vrf context management" is creating a vrf. In here, what does "context" mean ? it is a vrf or something else ? it should not be a VDC ? One VDC can have several vrf, right ?
0
 
LVL 50

Expert Comment

by:Don Johnston
ID: 39624844
Not exactly. In this situation, you are changing to the configuration mode for the management vrf.  You don't create the management vrf since it was pre-existing. In fact, you can't delete the management vrf.

The "context" is simply a required keyword.

And yes, you have... 16,000 (IIRC) vrf's in a VDC.
0
PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

 

Author Comment

by:EESky
ID: 39625278
N5k-1(config)#int mgmt 0
N5k-1(config-if)#ip address 172.116.1.10/24
N5k-1(config-if)#vrf context management
N5k-1(config-vrf)#ip route 0.0.0.0 0.0.0.0 172.116.1.1


Can i say that all of the commands are for using management interface ? If so, i would be able to login to the Nexus through the management interface and make any configuration in the whole Nexus, right ?
0
 
LVL 50

Expert Comment

by:Don Johnston
ID: 39625447
Yes and yes.
0
 

Author Comment

by:EESky
ID: 39625586
Thank you !

Had you not issued the "vrf context management" command first, the default route would exist in the default context.

With "the default route would exist in the default context."  does it mean the default context would exist in the default context and could not go out ?


Usually Cisco devices need to be configured with management interface, which are two commands: #int management and #ip address x.x.x.x. What made the difference of management interface configuration between Nexus and others? If we configure management interface in Nexus like general Cisco router and switch, can it work well ? Thank you.
0
 
LVL 50

Accepted Solution

by:
Don Johnston earned 500 total points
ID: 39625842
does it mean the default context would exist in the default context and could not go out ?
Huh???

Usually Cisco devices need to be configured with management interface, which are two commands: #int management and #ip address x.x.x.x. What made the difference of management interface configuration between Nexus and others?
Okay, in the past, Cisco switches were managed either through the console port or through an SVI (VLAN interface).  Most people prefer using telnet (or SSH) to the SVI because it's WAY faster than the console port. The problem with the SVI management approach is that management traffic and data traffic are intermixed (and we like to keep that traffic separate).

In an effort to fully segregate management and data traffic, Cisco implemented the "MGMT" Interface.  The way I explain this in class is that it's like a console port except that instead of slow, tired old RS-232, it's gig ethernet.  So you get the best of both worlds: totally segregated and fast.

Now, since the MGMT interface uses IP and we want to insure that the data and management traffic is completely segregated, a second VRF (the management VRF) was created that is only used by the MGMT interface.  Since traffic from one VRF can't use ports or processes from another VRF (without some additional work, that is), the management traffic is kept separate from the data traffic.

How's that?
0
 

Author Comment

by:EESky
ID: 39625876
Excellent! You are really an expert. Thank you !
0

Featured Post

PRTG Network Monitor: Intuitive Network Monitoring

Network Monitoring is essential to ensure that computer systems and network devices are running. Use PRTG to monitor LANs, servers, websites, applications and devices, bandwidth, virtual environments, remote systems, IoT, and many more. PRTG is easy to set up & use.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

This article is a guide to configure bridging on Cisco Routers.  This is something I never knew was possible until after making a few phone calls to Cisco.  Using bridging saved our company money by not requiring us to purchase a new switch.  Bridgi…
I have seen some questions on problems with SSH/telnet access to Cisco routers that may occur despite the fact that from a PC connected to your LAN, Internet connectivity is in place and users can access Internet sites without any issues.  There are…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

786 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question