Introducing SOC Insights for BloxOne Threat Defense: Boost your SOC efficiency with AI-driven insights to eliminate manual work and accelerate investigation and response times. Read the blog announcement here.

NIOS DNS DHCP IPAM

Reply

Does anyone have issues with grid members behind cisco (Viptella) sd-wan solution ?

Authority
Posts: 14
498     0

Does anyone have issues with grid members behind cisco (Viptella) sd-wan solution ?

HA DNS/DHCP pair at branch site behind cedge and gridmaster at datacenter also HA pair behind cedge sdwan routers.

After branch site migration from ipvpn routers to datacenter to dual sdwan (cisco viptella) routers at branch site and also dual cedge routers at datacenter. The branch site looks like it lost connection to  datacenter grid master. No ZBFW active on datacneter routers and branch site routers. From maintenance mode ha pair units can reach gridmaster on 1194 and 2114 ports. Join fails with set membership.

Re: Does anyone have issues with grid members behind cisco (Viptella) sd-wan solution ?

Authority
Posts: 14
499     0

We solved this issue. It seems in were receiving the routes from SDWAN in one tenant and on the firewall connecting the tenants (vlan stitching). But the Tenant conntaining the grid master wasn't receiving the routes anymore. So it looks like redistrubition form OMP->BGP ins datacenter to OSPF to the vlan stiching firewall was working up to the firewall where the routes were beining installed into the Routing tabel. Only the tenant with the gridmaster in it was not installing the routes into it's routing tabel from OSPF. It was receiving them in the OSPF database but nt installing the routes. Probably due to a tag given by the receiving tenant and the other tenant did not insall them due to loop prevention.

Showing results for 
Search instead for 
Did you mean: 

Recommended for You

Businesses are investing heavily into securing company resources from cyber-attacks form cybercrimin