Book Image

Cisco ACI Cookbook

By : Stuart Fordham
Book Image

Cisco ACI Cookbook

By: Stuart Fordham

Overview of this book

Cisco Application Centric Infrastructure (ACI) is a tough architecture that automates IT tasks and accelerates data-center application deployments. This book focuses on practical recipes to help you quickly build, manage, and customize hybrid environment for your organization using Cisco ACI. You will begin by understanding the Cisco ACI architecture and its major components. You will then configure Cisco ACI policies and tenants. Next you will connect to hypervisors and other third-party devices. Moving on, you will configure routing to external networks and within ACI tenants and also learn to secure ACI through RBAC. Furthermore, you will understand how to set up quality of service and network programming with REST, XML, Python and so on. Finally you will learn to monitor and troubleshoot ACI in the event of any issues that arise. By the end of the book, you will gain have mastered automating your IT tasks and accelerating the deployment of your applications.
Table of Contents (17 chapters)
Title Page
Credits
About the Author
About the Reviewers
www.PacktPub.com
Customer Feedback
Preface

Creating management contracts


The final contract we are going to create is one in the mgmt tenant. This one will allow SNMP traffic between the APIC and the SNMP software, which we will be setting up in Chapter 8, Monitoring ACI.

How to do it...

  1. Create a filter (snmp-contract) in the mgmt tenant (Tenants | mgmt | Security Policies | Filters).
  2. Create two entries, permitting UDP ports 161 and 162.
  1. Right-click on Out-Of-Band Contracts and select Create Out-Of-Band Contract.

 

 

  1. Name the contract (OOB-SNMP), and click on the plus sign next to Subjects. Select the snmp-contract created previously.
  1. Click on UPDATE.
  2. Click on OK.
  3. Click on SUBMIT.

How it works...

This is an out-of-band contract, which we will be needing later on in the book. Earlier versions of the ACI software did not require this contract, but newer ones do. The contract permits traffic to the UDP ports used by SNMP and for SNMP trap notifications.