Professional Documents
Culture Documents
Cisco - SAN IMP Notes
Cisco - SAN IMP Notes
######
- Default zone policy can be changed per VSAN or for entire system but not
recommended
# Soft Zoning
=============
- Initiator could manually mount the wrong target if Target FCID is known in prior
# Hard Zoning
=============
- Initiator cannot manually mount the wrong target if Target FCID is known in prior
# Zone Vs Zoneset
=================
- Zone is used to create a mapping for access based upon WWPNs, FCIDs, Aliases,
Interface, Domain-ID etc
# If zone is just configured and not activated - it's called a Zone Set. But when
activated
it's called Active Zone Set. So this is how Zone set Vs Active zone set could
be different
# Any changes made into Zoning doesn't go into affect unless Zoneset is re-
activated
- Only one zoneset per VSAN can be "Active" in the fabric at a time
- By default only Active Zone set is advertised into the fabric not the full zone
set which
can cause Isolation between Switches because of having different copies of
zone sets.
- sh zone
- sh zone active
- sh zoneset
- sh zoneset active
# Zone Config
==============
!
int x/x
channel-group 1 > Static port channel
channel-group 1 foce > To add any link later into functional San Port Channel
channel-mode active > To enable port channel protocol
Verification
============
sh port-channel summary
sh san-port-channel summary
=============================================================================
* Make use of 'show interface fc x/y' and verify config - look at: Admin port mode,
trunk mode, port mode, port vsan, VSANs allowed (if trunking).
* Ensure that these settings match on both sides (either MDS to N5K or UCS)
For F/TF port-channel, steps that are slightly different from above:
If link fails to come up and using NPV-NPiV, useful to make use of 'show npv
status',
will also identify if you've forgotten to enable NPiV upstream, etc.
- Preferred > Switch asks principal switch if it can use static domain id, if PS
says "Yes" than fine, If "NO" it uses Domain ID given by PS
- Static > Same theory as above but if PS says NO, the switch gets isolated from
the FC network
Election based on
++++++++++++
* sh fcdomain (vsan)
* sh fcdomain domain-list (vsan)
==============================================================
# Note: One copy of FC services runs on per VSAN basis which means One
domain id can be used for multiple VSANs but it doesn't affect the design.
It's more like using one OSPF router id for multiple ospf processes. But each
process populates a separate Datbase which is completely unrelated from each
other.
==============================================================
Verification
++++++++++++
==============================================================
Fabric Login (FLOGI)
^^^^^^^^^^^^^^^^^^^^
- All initiators and targets must FLOGI before sending any data into the fabric
- No configuration required
- The FLOGI database is local to switch which means only directly connected devices
will show up, It's FCNS job to progpogate this information to entire fabric
==============================================================
- sh fcns database
- If Node did FLOGI but is not in everyone's FCNS, it indicates the Fabric is
broken