Course objectives
After completing this course, students will be able to:
- Build the Fabric: Perform fabric discovery and initialization of the APIC, Spines, and Leafs.
- Model Logical Constructs: Create and manage Tenants, VRFs, Bridge Domains, and Endpoint Groups (EPGs).
- Define Policy: Implement Contracts and Filters to control communication between applications.
- Connect Externally: Configure L2Out and L3Out to link the ACI fabric to legacy networks and the internet.
- Integrate Virtualization: Connect the fabric to VMM Domains (VMware vCenter) for automated port-group creation.
- Manage & Monitor: Utilize ACI health scores, faults, and Nexus Dashboard Insights for proactive troubleshooting.
Course outlines
- Domain 1: ACI Fabric Infrastructure
- Architecture: Hardware topology, Virtual APIC, and the ACI Object Model.
- Operational Health: Utilizing faults, events, audit logs, and health scores.
- Policies: Implementing Access Policies (Interface/Switch profiles) and Fabric Policies.
- Domain 2: ACI Packet Forwarding
- Endpoint Learning: Understanding how the fabric learns and tracks MAC/IP addresses.
- Bridge Domain Knobs: Configuring unicast routing, ARP flooding, and Layer 2 unknown unicast behavior.
- Domain 3: External Network Connectivity
- Layer 2 Out (L2Out): Implementing STP/MCP basics and EPG port bindings to external switches.
- Layer 3 Out (L3Out): Setting up routing to external routers (excluding complex VRF leaking).
- Domain 4: Integrations
- Virtual Networking: Implementing VMware vCenter DVS and Nutanix VMM integration.
- Service Graphs: Implementing Layer 4 to Layer 7 service insertion (Firewalls/Load Balancers).
- Domain 5: ACI Management & Operations
- Management: Setting up Out-of-Band (OOB) and In-Band management.
- Monitoring: Using Syslog, SNMP, and Nexus Dashboard Insights.
- Security & Maintenance: Implementing RBAC, AAA, snapshots/backups, and performing fabric upgrades.
- Domain 6: ACI Anywhere
- Multi-Pod & Multi-Site: Describing the concepts of stretching the fabric across multiple locations.
- Remote Leaf: Extending ACI connectivity to small satellite data centers.