Since I've upgraded software from 7.5 to 8.2 I've noticed more ISC link UP and DOWN whose lead CSS to fastly flip backup->master->backup all virtual routers. It seems to not have any incident on availability of hosted applications.
Anyway, does upgrade from version 7 to 8 change anything to ISC link protocol?
The ISC link is not being used [and can't be] to send traffic. It's only purpose is for CSS to share flow information so the backup CSS is aware of what the primary CSS does.
If the primary CSS goes down and the secondary takes over, the client will still send traffic to the vip and the new active CSS will forward it to the same server as originally selected by the first CSS.
This means the ip address of the server needs to be reachable by both CSS.
Regarding your connectivity make sure your servers have a system to share the same ip on both link and a system to have 1 interface and the other one standby.
sniff the traffic at the different catalyst.
Are you trunking this vlan with others ?
you might one to use a dedicated vlan between your catalysts.
This document will provide screenshots to outline the steps to setup
TACACS+ configuration to ACI and also the configuration required on
Cisco ACS server. Please find the official Cisco guide for configuring
TACACS+ Authentication to ACI:
Is it supported or NOT supported? It's a frequently asked question.
Before APIC, release 2.3(1f), transit routing was not supported within a
single L3Out profile. In APIC, release 2.3(1f) and later, you can
configure transit routing with a single L3Out pr...
Cisco Documents are usually accurate, but when it came to the document
on Cisco APIC Signature-Based Transactions it was slightly off the mark.
This document is for those novices to API like me who cant seem to
figure out how to go about performing signat...