VSX configuration synchronization

VSX configuration synchronization simplifies VSX solution management, reduces configuration misconfiguration, and drift across VSX peer switches. With configuration synchronization enabled, the primary peer configuration is synced to the secondary peer. This synchronization is controlled in an opt-in manner by enabling VSX synchronization on a section of configuration.

If one or more of the following scenarios occur, the secondary switch will receive the configuration update after it fulfills synchronization requirements and is fully enabled:
  • The secondary switch is not present.

  • The secondary switch is not connected to the primary switch through the ISL.

  • The secondary switch is not configured for VSX configuration synchronization at the time VSX configuration synchronization is enabled on the primary switch.

You can only enable a specific configuration for syncing through the vsx-sync CLI extension on the primary switch. This extension is blocked on the secondary peer switch except when VSX configuration-synchronization is disabled or the ISL link is down.

Attributes supporting VSX

You can enable VSX synchronization for:

  • Access lists

  • Access lists and VLANs associated with a system or LAG interface.

  • Active gateways associated with a VLAN interface

  • Classes

  • Policies

  • VLANs

VSX synchronization requirements

  • Software image versions must be the same on both switches.

  • Primary and secondary roles configured.*

  • An interswitch link must be configured.*

  • Keepalive*

*Steps on to how meet these requirements are provided in Configuring aggregate 1 and aggregate 2 switches.