Network Service integration with Cisco ACI Multi-Pod || Part#5
Shehab Wagdy Nagy
Cloud Enthusiast: AWS | CCIE | SDN Solutions | ACI | Network Automation Enthusiast
Introduction
Cisco ACI offers the capability to insert Layer 4 to Layer 7 services, for example, firewalls, load balancers, and intrusion prevention systems (IPSs), Similarly, you can integrate service nodes with Cisco ACI Multi-Pod fabrics, using the available deployment options, while the integration options can depend on the chosen design.
ACI and Network Service Integration Types:
Service Node Operation Mode while integrating with Cisco ACI:
Transparent (L2 Mode)
Service Node Deployment models:
Now let's dig into details of each one of the deployment models available:
领英推荐
2. Active-Standby firewall pair stretched across pods: In This option can be applied to both north-south and east-west traffic flows. Pros: This option doesn't allow the creation of asymmetric traffic path that lead to communication drops. Cons: because there is a single active service noe in the multi-pod fabirc, so it introduces some inefficient traffic path because some traffic will hair-pin across the interpod (IPN), So bandwith between pods need to be consdiered will as well as latency in this design.
3. Indepedent active-standby service node pair per each pod:
This model mandates that symmetric traffic flows through the service nodes be maintained because the connection state is not synchronized between independent nodes. This requirement can be achieved with the following approaches:
Summarized Table for Service Nodes deployment option with ACI Multi-Pod: