Professional Documents
Culture Documents
BOM HCI, TOR Switch Part: Sohag University
BOM HCI, TOR Switch Part: Sohag University
Sohag university
Vmware Subnets
OOB Vlan for servers iDRAC &
TORs 10.93.1.0 /24 901 Shady: this will be used in switches OOB
MGMT 10.93.2.0 /24 902
Vmotion-vlan 10.93.4.0 /24 904
Vsan-vlan 10.93.5.0 /24 905
Production-1 vlan 10.93.6.0 /24 906
Production-2 vlan 10.93.7.0 /24 907
Network Subnets
P2P between Distribution and
router 192.168.93.0 /27 601
MGMT vlan for Network
devices 172.16.93.0 /24 1000 Shady: this is Iband management VLAN
Users Subnets
Thin Clients Vlan (Users) 10.93.16.0 /20 900
Security Subnets
External WAF subnet (Off
Campus Sites) 10.93.32.0 /24 908
Internal WAF subnet (Off
Campus Sites) 10.93.33.0 /24 909
In Campus WAF Subnet 10.93.35.0 /24 910
System Subnets
Type IP Mask Vlan Domain Name Space NetBiosName
Additional Active Directory 10.93.34.0 /24 919 EEXAM.LOCAL SohagEE
1. Connect the host PC to the console (RJ-45) port of the switch system using the supplied cable
5. Go through the Switch Management configuration wizard. (check page 56 for details)
a. Shady: we should start with page 58 for “static configuration” this is for management port (OOB)
b. IP address for management port (Shady: from IP Scheme):
i. SOHAG configured IP address MGMT port: 10.93.1.1/24 for 1st TOR switch
ii. SOHAG configured IP address MGMT port: 10.93.1.2/24 for 2nd TOR switch
c. Passwords for Admin: ………… (Shady: as we agreed don’t share with anyone)
Step 4: Primary IP address? 10.93.1.1 (for 1st switch) & 10.93.1.2 (for 2nd switch)
Mask length may not be zero if address is not zero (interface mgmt0)
Step 13: Admin password (Enter to leave unchanged)? Shady: use a one and write it down & don’t share with anyone
6. Check the mgmt0 interface configuration before attempting a remote (for example, SSH) connection to the
switch. Specifically, verify the existence of an IP address.
Set up an Ethernet connection between the switch and a local network machine using a standard RJ-45 connector.
Start a remote secured shell (SSH) to the switch using the command “ssh -l <username> <switch ip address>”.
rem_mach1 > ssh -l <username> <ip address>
Read and accept the EULA when prompted. Once the following prompt appears, the system is ready to use.
Chapter: System Management
OOB Management interface: interface mgmt0
switch (config) # interface mgmt0 ip address <IP address> <netmask> (already done during startup)
Default Gateway
To configure manually the default gateway, use the “ip route” command, with “0.0.0.0” as prefix and mask.
The nexthop address must be within the range of one of the IP interfaces on the system.
In-Band Management
switch (config)# vlan 1000
switch (config vlan 10)# name MGMT
switch (config)# interface vlan 1000
switch (config interface vlan 1000)# ip address 172.16.93.1 /24 (for TOR Switch 1)
switch (config interface vlan 1000)# ip address 172.16.93.2 /24 (for TOR Switch 2)
switch (config)# show interfaces vlan 1000
Hostname
switch (config)# hostname SOHAG-HCI-TOR-1 (for TOR Switch 1)
switch (config)# hostname SOHAG-HCI-TOR-2 (for TOR Switch 2)
A peered device (host or switch) connecting to switches running an MLAG runs a standard LAG and is unaware
of the fact that the LAG connects to two separate switches.
The MLAG switches share an inter-peer link (IPL) between them for carrying control messages in a steady state
or data packages in failure scenarios. Thus, the bandwidth of the IPL should be defined accordingly. The IPL
itself can be a LAG and may be constructed of links of any supported speed.
The IPL VLAN interface must be used only for MLAG protocol and must not be used by any other interfaces
(e.g. LAG, Ethernet).
When positioned at the top of rack (ToR) and connecting with a Layer-3 uplink, the MLAG pair acts as the L3
border for the hosts connected to it. To allow default gateway redundancy, both MLAG switches should be
addressed by the host via the same default gateway address.
MLAG uses an IP address (VIP) that points to all MLAG member nodes.
When running MLAG as L2/L3 border point, an MAGP VIP must be deployed as the default GW for MLAG
portchannels (MPOs).
When MLAG is connected through a Layer-2 based uplink, there is no need to apply default gateway
redundancy towards hosts since this function is implemented on the L2/L3 border points of the network. For
more information, refer to the “MAGP” page.
Shady: from this no need for MAGP now, since no connection to layer 3 node.
Set an IP address and netmask for the VLAN interface. Configure IP address for the IPL link on both switches:
The IPL IP address should not be part of the management network, it could be any IP address and subnet that
is not in use in the network. This address is not advertised outside the switch.
On SwitchA, run:
switch (config interface vlan 4000)# ip address 1.1.1.1 /30
On SwitchB, run:
switch (config interface vlan 4000)# ip address 1.1.1.2 /30
On SwitchA, run:
switch (config interface vlan 4000)# ipl 1 peer-address 1.1.1.2
On SwitchB, run:
switch (config interface vlan 4000)# ipl 1 peer-address 1.1.1.1
(Optional) Configure a virtual IP (VIP) for the MLAG. MLAG VIP is important for retrieving peer information.
If you have a mgmt0 interface, the IP address should be within the subnet of the management interface. Do
not use mgmt1. The management network is used for keepalive messages between the switches. The MLAG
domain must be unique name for each MLAG domain. In case you have more than one pair of MLAG switches
on the same network, each domain (consist of two switches) should be configured with different name.
On SwitchA, run:
switch (config)# mlag-vip my-vip ip 10.234.23.254 /24
On SwitchB, run:
switch (config)# mlag-vip my-vip
Enabling MLAG:
switch [my-vip: master] (config mlag)# no shutdown
When running MLAG as L2/L3 border point, MAGP VIP must be deployed as the default GW for MPOs. For
more information, refer to “MAGP”.
Verifying MLAG Configuration
SX2 [master] (config)# show mlag
Chapter: IP Routing
Page 1121
Onyx supports the following 3 types of IP interfaces:
VLAN interface
switch (config)# vlan 10
switch (config vlan 10)# exit
switch (config)# interface ethernet 1/1
switch (config interface ethernet 1/1)# switchport mode access
switch (config interface ethernet 1/1)# exit
switch (config)# show interface ethernet 1/1 status Port
Operational state UP
There must be at least one interface in the operational state “UP”.
switch (config)# interface vlan 10
switch (config interface vlan 10)#
switch (config interface vlan 10)# ip address 10.10.10.10 /24
Loopback interface