cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
376
Views
0
Helpful
2
Replies

CSS One armed design

aliver
Level 1
Level 1

Good day!

We have many server farms,where will be connected many clients and server farms will be connected to each other via virtual IP. And we want to do next design:

all servers're connected to catalyst 6500 and CSS connect to 6500 on one-armed design. For each server farm we create own subnet and own VLAN. But all these vlans we are configure on CSS, not on 6500. 6500 for these vlans will be as Layer2 switch. So all traffic to and from servers and between vlans will must go through CSS and CSS will be route it (not 6500). So we dont need configure SNAT for correct traffic. Is this design working? Or we're lose sight of smth?

Thanks!

2 Replies 2

Gilles Dufour
Cisco Employee
Cisco Employee

this design can work.

This is however not a one-armed.

We refer to one-armed when the CSS has only 1 vlan.

In your case you will have many and the CSS will route between all of them.

I would like to say that the MSFC is more powerful than the CSS, so if you go for cat6k because you need power, you should maybe let the MSFC do the routing between the vlans.

If you do not like src nat, you can also do policy routing.

You could also have the client vlans routed by the MSFC and the server vlan routed by the CSS and 1 vlan between CSS and MSFC for routing between clients and servers.

There is no just one perfect design.

You need to know your traffic [from where to where ? amount of traffic, ....] and apply a solution that works best for your needs.

Gilles.

> You could also have the client vlans routed by the MSFC and the server vlan routed by the CSS and 1 vlan between CSS and MSFC for routing between clients and servers.

Gilles, It also is that design which we wish to apply.

Of cause we didnt want to route all vlans by CSS, only servers. Just we have CSS11503,cat6k and a lot of servers and a need to create a lot of server farms,which can communicate with each other via VIP and with clients from far nets. Therefore we have found this design the best.

As to policy routing...if we have one subnet for all server farms, policy routing not help in traffic between servers must go through CSS. if we have separate subnets for each farm, policy routing not change situation and traffic to and from servers will be routed by CSS (and also by cat6k). Or I dont understand correct what you want to say?