In the present day’s knowledge facilities depend on a wide range of instruments to supply enhanced visibility and observability of essential utility site visitors and site visitors movement particulars. Using switch-based telemetry capabilities is an especially well-liked strategy, but it surely’s typically the case that packet particulars or granular site visitors filtering are desired; thus, a complementary answer is required. Cisco Nexus Dashboard Knowledge Dealer is the right answer to ingest Switched Port Analyzer (SPAN) and/or Check Entry Level (TAP) site visitors, apply filters and header modifications, present packet deduplication, after which redirect site visitors to monitoring and different instruments corresponding to intrusion prevention programs (IPS) and safety incident and occasion administration (SIEM) options.
Resolution structure
The Nexus Dashboard Knowledge Dealer features a centralized administration graphical consumer interface (GUI), deployed immediately on a number of Linux hosts for prime availability, with a plan for help on unified Nexus Dashboard. It makes use of Cisco Nexus 9000 Sequence Switches, which require the cost-effective knowledge dealer license (NX-OS Necessities), to unlock this performance. For scale-out necessities, a number of SPAN/TAP vacation spot switches might be aggregated right into a single topology. This topology is managed by the centralized knowledge dealer answer, which directs site visitors to an information dealer change (see Determine 1) for distribution to the specified instruments in your atmosphere.


For switches that help Nexus Dashboard Knowledge Dealer, any interface can be utilized on your manufacturing community connection ports in addition to your connections to the required instruments (any port, any performance). Interface speeds from 1 Gbps to 400 Gbps are supported, guaranteeing satisfactory bandwidth and connectivity choices on your packet brokering wants, which meet immediately’s demanding knowledge heart development.
Low-touch configuration
Figuring out and configuring the specified site visitors units and vacation spot interfaces is an underlying core requirement of the Knowledge Dealer deployment. Knowledge Dealer helps routinely configure each your knowledge heart and campus units, whatever the existence of a centralized controller. Knowledge Dealer natively integrates with Cisco Utility Centric Infrastructure (ACI) knowledge heart materials, Cisco Catalyst Middle-based campus materials, in addition to standalone Nexus and Catalyst switches. This eliminates the guide configuration burden, guaranteeing correct answer configuration and fast turn-up. The operational advantage of solely requiring a single GUI for deploying the required change configuration enhances the simplicity of a Knowledge Dealer deployment.
Clients who require packet brokering for each knowledge heart and campus environments can relaxation assured that the one Knowledge Dealer interface will simplify the required configurations for his or her heterogeneous environments.
Resiliency and redundancy
Counting on Knowledge Dealer for always-on packet visibility is a actuality with the mechanisms included for guaranteeing most answer uptime:
- The assorted service nodes and knowledge dealer switches that make up the answer topology are tracked by Knowledge Dealer and, equally essential, are bypassed if Knowledge Dealer detects both a service node situation or packet dealer change interface situation.
- Knowledge Dealer helps symmetric hashing and load-balancing, permitting for the distribution of site visitors throughout a number of situations of a selected device.
- If there is a matter with the aggregation change, Knowledge Dealer can routinely program a backup path to make sure that the specified site visitors continues to be captured.
- Knowledge Dealer incorporates a fail-safe mechanism, permitting for direct communication between ingress and egress interfaces within the occasion of a service node failure.
The above options make sure that any failures inside the topology are addressed dynamically, requiring no human intervention and offering most uptime for steady visibility and observability.
Packet deduplication
Gathering SPAN and/or TAP from a number of sources yields the chance of duplicate site visitors being acquired by the Knowledge Dealer switches. The deduplication characteristic, supporting each Transmission Management Protocol (TCP) and Person Datagram Protocol (UDP), was added in NX-OS 10.4(1)F, permitting for streamlined packet dealer deployment. The deduplication operate might be carried out in-line on the Knowledge Dealer change(es) or out-of-line by means of a number of devoted Knowledge Dealer switches. An essential attribute is that the deduplication operate is hardware-accelerated, guaranteeing constant answer efficiency and scalability.
A further side of deduplication is the power to right-size instruments to accommodate the quantity of post-deduplication site visitors, versus redundant, duplicated site visitors.
Visibility of encapsulated site visitors
Packet brokering instruments are sometimes deployed in environments which have a number of packet encapsulation applied sciences, for instance, multi-protocol label switching (MPLS), digital extensible LAN (VXLAN), and generic routing encapsulation (GRE). An efficient device wants to have the ability to view the precise endpoint-to-endpoint site visitors inside the encapsulated packets, thus packet-header and label-stripping capabilities are essential. Knowledge Dealer permits for header and label stripping for the aforementioned applied sciences, along with Q-in-Q and Cisco Encapsulated Distant Switched Port Analyzer (ERSPAN) site visitors, offering best-in-class visibility on your knowledge heart, campus, and edge site visitors.
This has the additional benefit of much less processing required by evaluation instruments within the atmosphere, leading to bandwidth and price financial savings.
NetFlow era
Evaluation instruments have the aptitude of processing SPAN and TAP site visitors redirected from Knowledge Dealer, however there are quite a few instruments, corresponding to Splunk, that profit from receiving both NetFlow or sFlow particulars for the specified site visitors. Knowledge Dealer can generate both NetFlow or sFlow related to SPAN or TAP site visitors, permitting for compatibility with a larger vary of instruments. Coupled with the deduplication characteristic, you might be assured of streamlined, environment friendly movement visibility along with packet visibility on your knowledge heart and different site visitors in your community.
Cisco Nexus Dashboard
The Cisco Nexus Dashboard has developed to include centralized NX-OS cloth administration, proactive day-2 operations, and cloth orchestration in a simplified, intuitive GUI. The upcoming Nexus Dashboard 4.2 launch will incorporate Knowledge Dealer, finalizing the simplified administration and operational strategy for any Cisco cloth kind. Clients preferring a separate Linux-based Knowledge Dealer deployment will proceed to have that possibility.
Step into the way forward for site visitors evaluation
Reaching complete site visitors visibility with out overwhelming your evaluation instruments is the core promise of Cisco Nexus Dashboard Knowledge Dealer. By delivering a single, clever platform, it simplifies operations with a unified view of your knowledge heart and campus, lowers whole value of possession by means of hardware-powered deduplication, and ensures uptime with built-in, automated resiliency. This ensures your monitoring instruments get the precise knowledge they want—and nothing they don’t.
Able to discover how these capabilities can rework your community operations? Dive deeper by reviewing the entire Nexus Dashboard Knowledge Dealer knowledge sheet or discover particular configuration examples for sensible steering. If you end up able to see it in motion, contact your Cisco or channel associate account group for a personalised demo.
