22.05.2017 Views

nx.os.and.cisco.nexus.switching.2nd.edition.1587143046

Nexus Switching 2nd Edition

Nexus Switching 2nd Edition

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Example 5-42 confirms the VLAN used for CTS to verify correct configuration.<br />

Example 5-42. Confirming the VLAN Used for CTS<br />

Click here to view code image<br />

Congo# show vlan<br />

VLAN Name Status Ports<br />

----------------------------------------------------------<br />

-------------------------<br />

1 default active Po10<br />

5 Congo_Egypt_Transit active Po10<br />

10 Secure_Subnet active Po10,<br />

Po20, Po30<br />

100 Server_Subnet1 active Po10, Po30<br />

500 CTS_TrustSec active Po10,<br />

Eth1/8<br />

VLAN Type<br />

---- -----<br />

1 enet<br />

5 enet<br />

10 enet<br />

100 enet<br />

500 enet<br />

Example 5-43 demonstrates a ping test between Congo <strong>and</strong> Egypt (the two Nexus 7000<br />

switches), showing an encrypted ping frame is captured on the receiving Nexus 7000<br />

through the embedded WireShark application running in NX-OS on Egypt. The ping test<br />

verifies that traffic is making it through the encrypted CTS 802.1AE session between Congo<br />

<strong>and</strong> Egypt.<br />

Example 5-43. Ping Test Between Congo <strong>and</strong> Egypt<br />

Click here to view code image<br />

Started ping from Congo:<br />

Congo# ping 1.1.1.1<br />

PING 1.1.1.1 (1.1.1.1): 56 data bytes<br />

64 bytes from 1.1.1.1: icmp_seq=0 ttl=254 time=1.189 ms<br />

64 bytes from 1.1.1.1: icmp_seq=1 ttl=254 time=0.702 ms<br />

64 bytes from 1.1.1.1: icmp_seq=2 ttl=254 time=0.718 ms<br />

64 bytes from 1.1.1.1: icmp_seq=3 ttl=254 time=0.601 ms

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!