• Author : Vivek Subbarao Subbarao


Configurable MTU values for fwd interfaces

Description This feature provides the ability to configure the MTU value of fwd devices in a specific vrf or across vrfs. A default value of 1300 bytes is used in the absence of any configuration. This helps in accommodating additional headers that are added onto the packets by the hardware keeping the final packet size within the MTU of the egress interface thereby preventing packets from getting fragmented or dropped. Configuration The following CLI is available under “router-general” configuration mode and its vrf sub-mode. software forwarding hardware offload mtu <val> Global configuration under “router general” mode configures the fwd device...
Continue reading →

Policy Control Service

Description Policy Control Service (PCS) is the integration of Arista CVX and VMWare NSX-T to enable NSX-T managed networks to enforce security policies on Arista switches for traffic sourced from or destined to bare metal servers that are connected to the switches. PCS service runs on CVX and directly interfaces with NSX-T policy manager. It receives policies from NSX-T policy manager and converts them into ACLs that are applied on the switches to enforce the desired behavior for traffic ingressing and egressing through these switches. Figure 1: PCS Integration with VMWare NSX-T   To help understand the interaction between PCS...
Continue reading →

BGP IPv6 Link Local Peers Discovery

Description This feature adds support for a dynamic configuration model to eliminate the need for the network administrator to assign and configure IPv6 addresses for BGP peering. We leverage the following details to automatically establish BGP adjacency: IPv6 link local addresses can be generated by the system via MAC addresses. IPv6 router advertisement can be used to obtain these addresses to form potential BGP peers. As this feature uses IPv6 router advertisement to discover the peer’s IPv6 link local address, it is expected that devices should be IPv6 routing enabled and the interface used for peering should have an IPv6...
Continue reading →


Get every new post on this blog delivered to your Inbox.

Join other followers: