[CISCO ACI] Same VRF contract

I have an EPG Web and an EPG DB, I have provided a contract in EPG web and consumed contract in EPG DB. The results are:

DB server can ping to Web server, and Web server can ping to DB server. How is this possible?

See the below screenshots. EPG Web provided the icmp contract, and EPG DB consumed the icmp contract.

EPG Web provided the contract
EPG db consumed the contract

The above is achieved due to these condition:

  1. The EPGs are under one VRF. No route leaking is required.
  2. The contracts have these defaults: Apply Both Directions and Reverse Filter Ports.



Leave a Reply

Fill in your details below or click an icon to log in:

WordPress.com Logo

You are commenting using your WordPress.com account. Log Out /  Change )

Facebook photo

You are commenting using your Facebook account. Log Out /  Change )

Connecting to %s