CCIE DataCenter Labs v3.0 - Deploy - Second-Release v1.0
CCIE DataCenter Labs v3.0 - Deploy - Second-Release v1.0
CCIE DataCenter Labs v3.0 - Deploy - Second-Release v1.0
www.chinesedumps.com 1 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
1. We highly discourage sharing of the workbook hence the workbooks are mapped to Laptop/Desktop
MAC address. If one tries to open the workbook on other desktop or laptop than the registered MAC
address; account will get locked and we will not unlock it for any reasons.
2. The workbook does not have print access; kindly do not request to enable to print access. However
you will have perpetual access to the workbook which you have purchased.
3. One will be provided with free updates up to 120 days from the date of purchase, post that one need
to renew his/her account to access the latest update. However one will continue to have access to their
existing workbooks. If you pass the lab within 120 days, you are not eligible for further updates.
4. If one wish to renew their subscription/account, you need to renew within 120 days or before the
account gets expired. Post 120 days one can renew their account however the renewal will be considered
has a new purchase. Hence we encourage one to renew within 120 days of the purchase.
5. The renewal cost is 999 USD if one pay within 120 days, if one fail to renew then the cost will be
equivalent of a new purchase. (The renewal price can be changed at any time, without informing the
client)
6. Every workbook is uniquely identified for each user with hidden words. If one shares his/her
workbooks with others, and if the system detects the share, the account will be banned and we will not
entertain any explanation of any sort.
8. We do require CISCO ID and Official email id for security purposes. We do not sell without these
details. We do background verification of the details provided, so request to give us the correct CISCO
ID and official email id.
9. The workbooks are in secured pdf format and delivered via email within 24 hours after payment is
received.
10. License is provided for only one Device. And we don’t give license again if the device crashes or
company security policies. Please install license on the device cautiously as the license will not be
provided again.
www.chinesedumps.com 2 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
11. We do support devices running Windows OS, Mac OS, Android and Mac iOS only
12. We do not provide Refund in any circumstances once the product is sold.
13. This policy is in effect from 23 November 2016 and in immediate effect for new clients and new
renewals. Old clients will continue with the old Policies until the accounts get expired.
14. If there is any update, one will receive the update automatically on their registered email id.
15. Design Module will be given only 3 days before the CCIE exam
16. For any future update you can check our 'updates' page.
17. Labs are always published in phases. For e.g. if there is a new lab we publish it as First, Second, Third
... till Final release.
18. Client who have purchased our workbooks and services and wishes to attempt the lab, need to
consult our experts before their CCIE Lab.
www.chinesedumps.com 3 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
1. At the request of CCITea’s executive team, you are replicating CCITea’s new Collaboration
solution to make sure services, features and resiliency all work as designed.
2. Implementation knowledge and troubleshooting techniques are expected.
3. Read the entire exam and confirm working order of all devices first. During the exam, if any device
is locked or inaccessible for any reason, you must recover it. When finishing the exam, ensure
that all devices are accessible for the grading proctor. Any device that is not accessible for grading
cannot be marked and will cost you substantial point.
4. Points are awarded for working configurations only. Please verify all your work.
5. Do not change configurations on interfaces marked “DO NOT CHANGE”, doing so will lead to
connectivity loss which you must recover on your ow.
6. All servers and PCs are running on VMware, which has been thoroughly tested to support all lab
exam question.
7. All UC appliances login username is “administrator” and password is “cciecollab”. Some
applications are preconfigured-refer to exam questions for details All PC login username is
“administrator” and password is “cciecollab”.
8. All applications web administrator pages (CUCM, CUC, UCCX, IM&P) must be accessed from
remote desktop (RDP) sessions from HQ PC, Site B PC, and Site C PC.
9. Any GUI access to IOS devices and modules must be initiated from the Site PCs, such as HQ PC1,
HQ PC2, Site B PC, and Site C PC.
10. Thoroughly read the “PSTN Numbers and dialing Instructions” to understand how to initiate calls
from PSTN into the correspondent site DID numbers.
11. Please note that some devices in the topology diagrams and numbering tables may not be part
of the exam requirements, which vary between exams.
www.chinesedumps.com 4 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Main Topology
www.chinesedumps.com 5 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Main Topology
www.chinesedumps.com 6 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Device Info:
www.chinesedumps.com 7 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
1.1 Welcome
Read the relevant resources and requirements carefully and complete the configuration.
www.chinesedumps.com 8 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
In preparation for providing uplink connectivity for the server team, you have been asked to configure
and correct two virtual port channels to the fabric interconnects:
* Use Port channel ID 100 for FI A and Port Channel 200 for FI B. Use N5K-1/2 port 1/8-9 to create vpc.
Only trunk the required VLANs. Use Interface VLAN 10
as needed.
* End to end connection to the VPC. One of the devices will be selected as the master device, and the
other device will become a slave device.
* This function allows the gateway of local VPC device to forward the message normally when the layer
3 message with the target MAC address of peer VPC device is send to the local
www.chinesedumps.com 9 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Solution:
N5K1
feature vpc
vpc domain10
peer-switch
peer-keepalive destination 10.1.1.62 source 10.1.1.61 vrf management
peer-gateway
ip arp synchronize
int po10
vpc peer-link
int po100
vpc 100
int po200
vpc 200
N5K2
feature vpc
vpc domain10
peer-switch
peer-keepalive destination 10.1.1.61 source 10.1.1.62 vrf management
peer-gateway
ip arp synchronize
int po10
vpc peer-link
int po100
vpc 100
int po200
vpc 200
int lo0
ip 10.56.72.1/24 secondary
www.chinesedumps.com 10 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Verification
N5K1-2
show vpc
www.chinesedumps.com 11 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Configure BGP on N7K and N5K and configure advertise evpn L2VPN.
www.chinesedumps.com 12 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Solution:
N7K1-2
router bgp65501
N5K1-2
router bgp65501
vrf TENANT1
address-family ipv4 unicast
advertise l2vpn evpn
redistribute director route-map TAG
Verification
N7K1-2, N5K1-2
show bgp l2vpn evpn summary
www.chinesedumps.com 13 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
The Multicast tree is currently build through DC1-N7K-2. Configure redundancy for BUM replication
traffic by configuring a backup Phantom RP Candidate on DC1-N7K-1 using interface Loopback 254.
Ensure Multicast is configured consistently between all the Nexus switches to support VXLAN between
the Nexus DC1-5K-1, DC-5K-2 and Nexus DC1-7K1 and DC1-7K-2.
www.chinesedumps.com 14 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Solution:
N7K1
ip pim rp-address 10.0.10.1 group-list 225.0.0.0/24 bidir
int lo0
ip pim sparse-mode
int lo254
no sh
ip add 10.0.10.2/28
ip ospf network point-to-point
ip router ospf UNDERLAY area 0.0.0.0
ip pim sparse-mode
int e3/4
ip pim sparse-mode
int e3/5
ip pim sparse-mode
int e3/8
ip pim sparse-mode
N7K2
ip pim rp-address 10.0.10.1 group-list 225.0.0.0/24 bidir
int lo0
ip pim sparse-mode
int lo254
no sh
ip address 10.0.10.3/29
ip ospf network point-to-point
ip router ospf UNDERLAY 0.0.0.0
ip pim sparse-mode
int e3/12
ip pim sparse-mode
int e3/13
ip pim sparse-mode
int e3/18
www.chinesedumps.com 15 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
ip pim sparse-mode
N5K1
ip pim rp-address 10.0.10.1 group-list 225.0.0.0/24 bidir
int lo0
ip pim sparse-mode
int vlan10
ip pim sparse-mode
int e1/4
ip pim sparse-mode
int e1/12
ip pim sparse-mode
N5K2
ip pim rp-address 10.0.10.1 group-list 225.0.0.0/24 bidir
int lo0
ip pim sparse-mode
int vlan10
ip pim sparse-mode
int e1/5
ip pim sparse-mode
int e1/13
ip pim sparse-mode
Verification
N7K1-2, N5K1-2
show ip mroute
show ip pim neighbor
www.chinesedumps.com 16 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Referenced in the beginning of the section using the route Network as an underlay. Loopback0 should
be used as a source and EVPN should be the control-plane. Ensure that all EVPN Virtual Instances (EVI)
use Route-Distinguisher that contain Loopback0 IP address and Route-Targets with the value and format
of AS# VNID. Do not statically configure any values. Use the following VNIs:
www.chinesedumps.com 17 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Solution:
N7K1-2
system bridge-domain 101-103,2005
vni 10101-10103,50000
bridge-domain 101-103,2005
member vni 10101-10103,50000
int nve1
no shut
source-interface lo0
host-reachability protocol bgp
member vni 10101 m-cast-group 225.0.0.101
member vni 10102 m-cast-group 225.0.0.102
member vni 10103 m-cast-group 225.0.0.103
member vni 50000 ass
N5K1-2
int nve1
no shut
source-interface lo0
host-reachability protocol bgp
member vni 10101 mcast-group 225.0.0.101
member vni 10102 mcast-group 225.0.0.102
member vni 10103 mcast-group 225.0.0.103
member vni 50000 ass
www.chinesedumps.com 18 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
vlan 101
vn-segment 10101
vlan 102
vn-segment 10102
vlan 103
vn-segment 10103
vlan 2005
vn-segment 50000
evpn
vni 10101 l2
rd auto
route-target both auto
vni 10102 l2
rd auto
route-target both auto
vni 10103 l2
rd auto
route-target both auto
Verification
N7K1-2
show bridge-domain
show nve vni
N5K1-2
show nve vni
show nve peers
www.chinesedumps.com 19 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Configure all active First-Hop Gateways on the Nexus 5000 for the servers to utilize. Ensure that all N5K
are always active and use the First-Hop Gateway MAC address of 20-20-00-00-10-10. Put the newly
created layer 3 interfaces into vrp"TENANT1". The routing uses a unified tag, the number is 4082018.
Refer to the chart below for the IP addresses to use:
www.chinesedumps.com 20 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Solution:
N5K1-2
fabric forwarding anycast-gateway-mac 2020.0000.1010
Verification
N7K1-2
show bgp l2vpn evpn
www.chinesedumps.com 21 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
N9K1 interface loopback0 down, correct the existing configuration to ensure that the NVE function is
normal.
www.chinesedumps.com 22 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Solution:
N9K1
(BGP)
router bgp65501
address-family l2vpn evpn
neighbor 10.0.7.1
remote-as65501
update-source lo0
address-family l2vpn evpn
send-community
send-community extend
route-reflector-client
neighbor 10.0.7.1
remote-as65501
update-source lo0
address-family l2vpn evpn
send-community
send-community extend
route-reflector-client
(PIM)
ip pim rp-address 10.0.10.1 group-list 225.0.0.0/24 bidir
int lo0
ip pim sparse-mode
int e1/5
ip pim sparse-mode
int e1/6
ip pim sparse-mode
(EVPN)
vlan 2005
vn-segment 50000
int nve1
no shut
source-interface lo0
host-reachability protocol bgp
member vni 50000 associate-vrf
Verification
N9K1
show nve vni
show nve peers
show ip mroute
show ip pim neighbor
show bgp l2vpn evpn
www.chinesedumps.com 24 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Activity Objective:
- Finish Section 1 Practice.
Required Resources:
These are the resources and equipment required to complete this activity:
FI A-B
Chassics 5108
N5K3-4
You must get a blade to boot rom a Fibre Channel Storage Array using the
service
profile named "CCIE-SP2". Some of the configuration is in place, but you
notice that
the blade is still unable to boot. Make any necessarry change to Cisco UCS
Manager
and Cisco Nexus 5000 configurations to ensre that the blade boots up
successfully.
If completed properly, the LUN should be visible in the KVM when the VIC
option ROM
loads and the blade should boot the vSphere operation system from the
storage device.
Do not crate any new policies, if configuration must be modified, modify
only
existing policy assigned to the profile.
CCIE-SP2 should be associated to Chassis-1/Blade-2
primary 50:01:43:80:01:33:ff:b2
secondary 50:01:43:80:01:33:ff:b0
DC3-N5K-3(config-vsan-db)# exit
DC3-N5K-3(config)# int fc2/1
DC3-N5K-3(config-if)# no sh
DC3-N5K-3(config-if)# switchport trunk mode off
DC3-N5K-3(config-if)# switchport mode F
DC3-N5K-3(config)# int fc2/2
DC3-N5K-3(config-if)# no sh
www.chinesedumps.com 32 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
SECTION 3
Activity Objective:
Required Resources:
These are the resources and equipment required to complete this activity:
- APIC
- ACI fabric (1-2-3 spines, 4-6 leaves)
- AC, FEX
- Student VM
Don't delete exist CFR and any Policy, just as EPG, Tenant, etc, or failed
according to CCIE Exam Policy.
Device Info
www.chinesedumps.com 33 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Diagram
Configure the access policies that are needed to discover FEX 102. FEX102 must be discovered so that
the legacy2 application is learned as an endpoint on Node 202.
www.chinesedumps.com 34 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Solution:
Fabric -> Access Policies -> Interfaces -> Leaf Interfaces -> Policy Groups
-> Leaf Access Port-> Fex103
-> Change the Link Level Policy:1G-Auto,
CDP Policy: CDP-Enabled, LLDP Policy: LLDP-Enabled,
Attached Entity Profile: SRV5_AAEP->submit
Connect vCenter
Globe Icon -> CCIE-DVS -> Networks -> Xandar-rackXX|Novallegacy2 -> Configure
-> Policies -> EDIT -> Teaming and failover -> put uplink2 to the top -> click OK
Click Hosts and Clusters Icon -> legacy2-rackXX -> Edit Settings
-> Check MAC Address
------------
Verification
------------
a pic# attach leaf-8 -> type password
www.chinesedumps.com 35 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
leaf-8# show f ex
leaf-8# show lldp neighbors
leaf-8# show endpoint detail (confirm the MAC address)
Legacy2-rack37 web console:
[root@legacy2~] # ping 10.0.3.10
www.chinesedumps.com 36 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Ensure that each end point listed here is learned and address any EPG learning issues along the way.
Note, the leaf may need to receive traffic to learn the application as an endpoint
www.chinesedumps.com 37 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
solution:
Tenants -> Xandar-rack37 -> Networking -> Bridge Domains -> Xandar -> Policy -> L3 Configurations
-> Check 'Unicast Routing' box should be mark.
V center -> Host and Cluster -> CCIE DC -> 10.1.1.115 -> rack XX
-> open these three: aci-app-rack XX, aci-db-rack XX and aci-web-rack XX -> Ping 192.168.3.1
Leaf-3#show endpoint detail
192.168.3.30: db
192.168.3.20: app
192.168.3.10: web
Tenants -> Xandar-rack37 -> Networking -> Bridge Domains -> legacy -> Policy -> L3 Configurations
-> Uncheck the box of 'Unicast Routing' and Submit
www.chinesedumps.com 39 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
The freshly migrated aci-db2 endpoint is not reachable in the VMM domain. Validate that the second
pod VMM deployment settings are optimized for dynamic deployment to take full advantages of the
functionality provided by VMM integration. Also, ensure that the configuration that is tied to the 'aci-
db2' VM allows for expected learning under the 'database' EPG. Do not create any new policies.
V center -> Host and Cluster Icon-> CCIE DC -> 10.1.1.113 -> rack XX
-> open aci-db2-rackXX -> Edit Settings -> Network Adapter 1: quarantine
-> Click Browse change to Xandar-rack XX | Noval database and click OK -> ping 192.168.3.1
[root@DB2~]# ping 192.168.3.1
- 3.4 L3 out
Configure iBGP on the existing OSPF configuration.
Make sure that subnets that originate in Cisco ACI can be advertised into the existing environment
and vice versa. Ensure that external routes can be redistributed throughout the ACI fabric.
Tenants -> ALL TENANTS -> Common -> Networking -> L3Outs -> iBGP_over_OSPF-rack XX
-> Logical Node Profiles -> Leaf1 -> Policy -> BGP Peer Connectivity
-> Click the icon and select Loopback -> Type '7.7.7.1' into 'Peer Address' and '65502' into
'Remote Autonomous System Number' -> click Submit button.
www.chinesedumps.com 40 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Tenants -> ALL TENANTS -> Common -> Networking -> L3Outs -> iBGP_over_OSPF-rack XX
-> Logical Node Profiles -> Leaf4 -> Policy -> BGP Peer Connectivity
-> Click the icon and select Loopback -> Type '7.7.7.1' into 'Peer Address' and '65502' into
'Remote Autonomous System Number' -> click Submit button.
Tenants -> ALL TENANTS -> Common -> Networking -> L3Outs -> iBGP_over_OSPF-rack XX
-> Logical Node Profiles -> Leaf1 -> Configured Nodes -> topology/pod-1/node-101
-> BGP for VRF-common: rack XX -> Neighbors -> Check '7.7.7.1' is there with established state
leaf-4#show vrf
leaf-4#show ip ospf neighbors vrf common: rack XX
leaf-4#show bgp ipv4 unicast summary vrf common: rack XX
BB-SW:
Core_SW_C4948E-F#show vrf
Core_SW_C4948E-F#show ip ospf neighbor
Core_SW_C4948E-F#show bgp ipv4 unicast summary
Core_SW_C4948E-F#show bgp all summary
leaf-1#show vrf
common: rack XX
leaf-1#show ip ospf neighbors vrf common: rack XX
leaf-1#show bgp ipv4 unicast summary vrf common: rack XX
www.chinesedumps.com 41 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Advertise only specific host routes as opposed to entire BD subnets in the Sandar BD. The only
endpoint(s) that should have Data Center 1 reachability today should be those that are only serving
http/https web sockets. No other host routes should get advertised, nor should the entire BD subnet get
advertised.
Tenants -> ALL TENANTS -> Xandar-rack XX -> Application Profiles -> Nova -> Application EPGs
-> Web -> Right click on Subnets -> Create EPG Subnet
-> type 192.168.3.10/32 into 'Default Gateway IP'
- uncheck Scope: Private to VRF
- check Scope: 'Advertised Externally', 'Shared Between VRF's, and 'No Default SVI Gateway'
- Change 'Type Behind Subnet' to EP Reachability and type 192.168.3.1 into 'Next Hop Ip Address'
- click submit
www.chinesedumps.com 42 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Troubleshoot ACI and IPN to get Layer 2 flood connectivity between legacy 1 vm in Pod1 and Legeacy2
vm in Pod2.
interface loopback4
ip pim sparse-mode
interface Ethernet1/49.4
ip pim sparse-mode
interface Ethernet1/50.4
ip pim sparse-mode
www.chinesedumps.com 43 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Step 4 - Test
Tenants -> ALL TENANTS -> Xandar-rack XX -> Application Profiles -> Nova -> Application EPGs
-> legacy1 -> Right click on 'Contracts' and select 'Add Provided Contract'
-> Click arrow button in Contract and select 'default' -> click Submit
legacy1 -> Right click on Contracts and select Add 'Consumed Contract'
-> Click arrow button in Contract and select 'default' -> click Submit
www.chinesedumps.com 44 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Ensure that all expected flows are allowed between theses EPGs and ensure that future usage of these
contracts do not allow unintentional route leaking.
Diagram
www.chinesedumps.com 45 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
Tenants -> ALL TENANTS -> Xandar-rack XX -> Application Profiles -> Nova-> Application EPGs
-> Web -> Right click on 'Contracts' and select 'Add Consumed Contract'
-> Select Contract: web_to_app -> Click Submit
Tenants -> ALL TENANTS -> Xandar-rack XX -> Application Profiles -> Nova-> Application EPGs
-> app-> Right click on 'Contracts' and select 'Add Provided Contract'
-> Select Contract: web_to_app -> Click Submit
Tenants -> ALL TENANTS -> Xandar-rack XX -> Application Profiles -> Nova-> Application EPGs
-> app -> Right click on 'Contracts' and select 'Add Consumed Contract'
-> Select Contract: web_to_db -> Click Submit
Tenants -> ALL TENANTS -> Xandar-rack XX > Application Profiles -> Nova-> Application EPGs
-> database -> Right click on 'Contracts' and select 'Add Provided Contract'
-> Select Contract: app_to_db -> Click Submit
Tenants -> ALL TENANTS -> Common -> Networking -> L3Outs -> iBGP_over_OSPF-rack XX
www.chinesedumps.com 46 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
-> External EPGs -> L3EPG -> Policy -> Contracts -> Consumed Contracts -> Click + button
-> Select common/web_to_external-rack XX under Name -> click Update
Step 3 - Test
- connect BB-SW
core_SW_C4948E-F# show ip route vrf rack 37
B 192.168.3.10 [200/0] via 1.1.1.1, 00:01:47
Script
Required Resources:
These are the resources and equipment required to complete this activity:
- APIC
- ACI fabric (1-2 spines, 4 leaves)
- Scripting VM
- NXOS
- DCNM
- Create a tenant called 'Scripting' and in this tenant create a BD called 'BD'
- Create 100 app's (App1, App2, App3, App4, ...App100).
- In each app, create an EPG called 'Web'.
To make this task easier, you can login to system scripting-vm/10.1.1.220 with
user ccie01 and password Cisco!123 in VCenter
Python: python/make-tenant-policies.py
You can execute the script by doing
www.chinesedumps.com 47 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
cd python
./ make-tenant-policies.py
(please note a backup python script is available -> make-tenant-policies-ORIGINAL.py)
Ansible:
ansible/playbook.yaml
You can execute the script by doing
cd ansible
ansible-playbook-i inventory.yaml playbook.yaml
(please note a backup playbook is available -> playbook-ORIGINAL.yaml)
Solution:
Script:SSH Scripting VM
Step 2: python
[ccie01@ansible ~]$ cd /python/
[ccie01@ansible python]$
[ccie01@ansible python]$ ll
total 8
-rwxrwxrwx 1 root root 198 Mar 22 12:44 conf.json
-rwxrwxrwx 1 root root 2625 Mar 22 12:44 make-tenant-policies.py
[ccie01@ansible python]$
[ccie01@ansible python]$ python3 make-tenant-policies.py
.
.
.
2021-03-23 16:44:29,725 |INFO|Response code :<Response [200]>
2021-03-23 16:44:29,726 |INFO|Successfully deployed configuration change
[ccie01@ansible python]$
APIC - Tenants - ALL TENANTS- Checck Scripting: EPGs: 100, Healh Score:Healthy
APIC - Tenants - Scripting - Applicaton profiles (100)
Scripting - Applicaton profiles (100) - App100 - Application EPGs - Web
- Bridge Domain:BD
APIC - Tenants - Scripting - Networking - Bridge Domains - BD - VRF: Scripting
APIC - Tenants - ALL TENANTS - right click on Scripting - Click Delete
Step 3: ansible
[ccie01@ansible python]$ cd /ansible/
www.chinesedumps.com 48 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
[ccie01@ansible ansible]$
[ccie01@ansible ansible]$ ll
total 8
-rwxrwxrwx 1 root root 5112 Mar 22 14:01 playbook.yml
[ccie01@ansible ansible]$ ansible-playbook.yml
changed: [10.1.1.51] => (item={ 'ap': 'App90'})
.
.
changed: [10.1.1.51] => (item={ 'ap': 'App100'})
PLAY RECAP *********************************************
10.1.1.51: ok=5 changed=5 unreachable=0 failed=0 skipped=0 rescued=0 ignored=0
[ccie01@ansible ansible]$
APIC - Tenants - ALL TENANTS - Checck Scripting: EPGs: 100, Healh Score:Healthy
APIC - Tenants - Scripting - Applicaton profiles (100)
Scripting - Applicaton profiles (100) - App100 - Application EPGs - Web
- Bridge Domain:BD
APIC - Tenants - Scripting - Networking - Bridge Domains - BD - VRF: Scripting
APIC - Tenants - ALL TENANTS - right click on Scripting - Click Delete
www.chinesedumps.com 49 www.fastracklabs.com
www.passdatacenterlabs.com LAB 1 RELEASE Lab 1:20-Aug-2021
VERY IMPORTANT NOTE:- Complete lab we will be providing by Sep-15 and DC side 1
you can book the rack by August end from http://ccierack.rentals
www.chinesedumps.com 50 www.fastracklabs.com