04-26-2023 09:47 AM
What is the recommended solution for managing fabric switches 7400, 5420, from a remote network? The fabric network is being used in a managed WAN solution, I would like to keep customer traffic separate from management traffic. The ISP can extend a VLAN back to the monitoring location. Sounds like the text book application for the CLIP but haven't been successful so far.
04-27-2023 05:38 AM
If your fabric switches only carries L2VSN services, I would use mgmt VLAN IP on a dedicated separate mgmt L2VSN I-SID.
If your fabric switches carry L3VSN (IPVPN) services, then allocate a VRF for mgmt and set mgmt CLIPs on that mgmt VRF. In this case it makes most sense to use the default VRF-0 (GRT) as mgmt (L3VSN over VRF-0(GRT) = IP Shortcuts). And create VRFs 1,2,3.etc.. (L3VSNs) as services.