Administrator Guide

Configure a Port for a Bridge-to-FCF Link
If a port is directly connected to an FCF, configure the port mode as FCF. Initially, all FCoE traffic is blocked; only FIP frames
are allowed to pass.
FCoE traffic is allowed on the port only after a successful fabric login (FLOGI) request/response and confirmed use of the
configured FC-MAP value for the VLAN.
FLOGI and fabric discovery (FDISC) request/response packets are trapped to the CPU. They are forwarded after the necessary
ACLs are installed.
Impact on Other Software Features
When you enable FIP snooping on a switch, other software features are impacted. The following table lists the impact of FIP
snooping.
Table 30. Impact of Enabling FIP Snooping
Impact Description
MAC address learning MAC address learning is not performed on FIP and FCoE
frames, which are denied by ACLs dynamically created by FIP
snooping on server-facing ports in ENode mode.
MTU auto-configuration MTU size is set to mini-jumbo (2500 bytes) when a port is in
Switchport mode, the FIP snooping feature is enabled on the
switch, and FIP snooping is enabled on all or individual VLANs.
Link aggregation group (LAG) FIP snooping is supported on port channels on ports on which
PFC mode is on (PFC is operationally up).
STP If you enable an STP protocol (STP, RSTP, PVSTP, or MSTP)
on the switch and ports enter a blocking state, when the state
change occurs, the corresponding port-based ACLs are
deleted. If a port is enabled for FIP snooping in ENode or FCF
mode, the ENode/FCF MAC-based ACLs are deleted.
FIP Snooping Restrictions
The following restrictions apply when you configure FIP snooping.
The maximum number of FCoE VLANs supported on the switch is eight.
The maximum number of FIP snooping sessions supported per ENode server is 32 by default and the maximum number of
sessions you can configure is 64. To increase the maximum number of sessions to 64, use the fip-snooping max-
sessions-per-enodemac command.
The maximum number of FCFs supported per FIP snooping-enabled VLAN is twelve.
The maximum number of FCoE VLANs supported on the switch is eight.
The maximum number of FIP snooping sessions (including NPIV sessions) supported per ENode server is 16
Links to other FIP snooping bridges on a FIP snooping-enabled port (bridge-to-bridge links) are not supported on the switch.
fip-snooping port-mode fcf/fcoe-trusted CLI is not allowed on cascade, extended ports, or a LAG which contains these
ports.
fip-snooping enable/fip-snooping fc-map CLIs are not allowed on VLAN interfaces which has cascade or extended port as
one of its members either directly or indirectly via LAG.
Configuring FIP Snooping
You can enable FIP snooping globally on all FCoE VLANs on a switch or on an individual FCoE VLAN.
By default, FIP snooping is disabled.
To enable FCoE transit on the switch and configure the FCoE transit parameters on ports, follow these steps.
358
FCoE Transit