T
The Daily Insight

What does a Cisco APIC do

Author

Mia Morrison

Published Feb 19, 2026

The APIC programmatically automates network provisioning and control based on the application requirements and policies. It is the central control engine for the broader cloud network, simplifying management while allowing tremendous flexibility in how application networks are defined and automated.

What is Cisco APIC and ACI?

What is Cisco APIC? is part two of SDxCentral’s series to explain the Cisco ACI (Application Centric Infrastructure) framework. … APIC is the single point of automation and management in both physical and virtual environments, allowing operators to build fully automated and multi-tenant networks with scalability.

What's the role of APIC in ACI?

In ACI networks, network admins use the APIC to manage the network – they no longer need to access the CLI on every node to configure or provision network resources. … This allows the Cisco APIC to implement higher orders of logic to better integrate with the consumers of the network – the systems and application teams.

What is the difference between ACI and APIC?

APIC is a software control centre to configure and run this infrastructure. Because ACI follows the SDN paradigm of de-coupling control plane functions from forwarding plane, the devices that build the fabric don’t have intelligence required to make independent decisions on forwarding the packets.

What is tenant in APIC?

Tenants: – It refers to a logical unit for management. Tenants can be customers, business units (BU’s), groups who have separate administration and data flows. Tenants provide secure and exclusive virtual computing environment and can contain Multiple Private networks (VRF Instances).

What is infrastructure VLAN in ACI?

During fabric setup, ACI requires a VLAN to be used as the infrastructure VLAN. This VLAN is used for control traffic between devices that make up the fabric (i.e., leafs, spines, and APICs).

What does APIC stand for?

The Association for Professionals in Infection Control and Epidemiology (APIC) is the leading professional association for infection preventionists (IPs) with more than 15,000 members.

What is spine in ACI?

Spine switches are special switches that provide the backbone of the ACI fabric. All Leaf switches must connect to the spines and the spines take care of the leaf to leaf traffic. Spine switches often contain a lot of 40 or 100Gbit/s ports. These ports provide the required bandwidth for the ACI fabric.

Is Cisco ACI an overlay?

Cisco ACI is a controller-based physical network underlay and software overlay. Cisco defines their methodology as an integrated overlay approach meaning it includes hardware and software.

Does APIC controller perform data traffic forwarding?

While the APIC acts as the centralized policy and network management engine for the fabric, it is completely removed from the data path, including the forwarding topology. Therefore, the fabric can still forward traffic even when communication with the APIC is lost.

Article first time published on

What is EPG Cisco ACI?

Endpoint groups (EPGs) are used to group virtual machines (VMs) within a tenant and apply filtering and forwarding policies to them. … Microsegmentation with Cisco ACI also allows you to apply policies to any endpoints within the tenant.

What is bum traffic in ACI?

Broadcast, unknown-unicast and multicast traffic (BUM traffic) is network traffic transmitted using one of three methods of sending data link layer network traffic to a destination of which the sender does not know the network address.

Is Cisco ACI a SDN?

Cisco Application Centric Infrastructure (ACI) is a software-defined networking (SDN) solution designed for data centers. Cisco ACI allows network infrastructure to be defined based upon network policies – simplifying, optimizing, and accelerating the application deployment lifecycle.

What is an ACI domain?

The physical domain in ACI defines a pool of resources that ACI can be leverage to communicate to an external physical domain. Customers can leverage this method to connect Layer 2 (VLAN) to an external switch. This way they can migrate their workloads from existing networks into the ACI fabric.

Can I have same VRF number in different tenants?

ACI has the ability to divide the fabric up into multiple tenants, or multiple VRFs within a tenant. If communication is required between tenants or between VRFs, one common approach is to route traffic via an external device (e.g. a firewall or router).

What is Cisco ACI Architecture?

Cisco ACI architecture is a combination of high performance Hardware and software innovation and intelligence integrated with two important concepts from SDN solutions; overlays and centralized control.

What kind of account is APIC?

APIC (Additional Paid-In Capital) is a component of shareholders’ equityStockholders EquityStockholders Equity (also known as Shareholders Equity) is an account on a company’s balance sheet that consists of share capital plus that reflects the price investors are willing to pay above the par value of issued stock.

How do I get CIC certified?

  1. Attestation Statement (completed, signed and dated by current supervisor)
  2. Proof of Degree (a diploma or transcripts)
  3. Current CV/Resume.
  4. Official Job Description (must be signed by your immediate manager or supervisor)
  5. $375 examination application fee.

Can you have negative APIC?

Liquidating dividends, which are essentially a return of contributed capital, can be treated as a reduction of either additional paid-in-capital (APIC) or a special contra-contributed capital account. If the distribution amount is larger than current APIC, ending APIC balance can become negative.

What is L2 out in ACI?

Now in L2 out, we can only associate one vlan through the external bridged network and associate that vlan to the external EPG which can talk to our EPG in the BD through contracts but the other side should be in the same vlan segment (Lets say 1.1.1.0/24).

What is Cisco ACI Leaf?

In a leaf-spine ACI fabric, Cisco is provisioning a native Layer 3 IP fabric that supports equal-cost multi-path (ECMP) routing between any two endpoints in the network, but uses overlay protocols, such as virtual extensible local area network (VXLAN) under the covers to allow any workload to exist anywhere in the …

What is difference between VLAN and Vxlan?

VxLAN vs. VLAN. … The main difference is that VLAN uses the tag on the layer 2 frame for encapsulation and can scale up to 4000 VLANs. VXLAN, on the other hand, encapsulates the MAC in UDP and is capable of scaling up to 16 million VxLAN segments.

Why do we use ACI?

ACI will allow the network team to have visibility into both physical and virtual workloads on the network (with VMM integration, fabric can see VM attributes). You can also integrate Containers for microservices management. It improves the ease and speed of deployment. … SDN allows for Application Network Profiles.

What is the difference between Cisco ACI and Cisco DNA?

Cisco ACI is an independent software-defined networking product. … Intuitive. is more like a strategy or product grouping. Cisco DNA Center is an automation and management platform that uses the new Cisco APIC, which is also used in Cisco ACI. SD-Access is another grouping of products and tools within the Network.

Why do I need Cisco ACI?

Cisco ACI, Cisco’s software-defined networking (SDN) architecture, enhances business agility, reduces TCO, automates IT tasks, and accelerates data center application deployments. Why Today’s Solutions Are Insufficient: Today’s solutions lack an application-centric approach.

What is leaf and spine?

Leaf-spine is a two-layer network topology composed of leaf switches and spine switches. … Leaf switches mesh into the spine, forming the access layer that delivers network connection points for servers. Every leaf switch in a leaf-spine architecture connects to every switch in the network fabric.

What is leaf and spine switches?

A spine-leaf architecture is data center network topology that consists of two switching layers—a spine and leaf. The leaf layer consists of access switches that aggregate traffic from servers and connect directly into the spine or network core. Spine switches interconnect all leaf switches in a full-mesh topology.

What are leaf spines give example?

Spines are variously described as petiolar spines (as in Fouquieria), leaflet spines (as in Phoenix), or stipular spines (as in Euphorbia), all of which are examples of spines developing from a part of a leaf containing the petiole, midrib, or a secondary vein.

Is Vxlan in ACI?

Cisco ACI uses a dedicated VRF and interfaces of the uplinks as the infrastructure to carry VXLAN traffic. The transport infrastructure for VXLAN traffic is known as Overlay-1, which exists as part of tenant Infra.

What is endpoint group?

A network endpoint group (NEG) is a configuration object that specifies a group of backend endpoints or services. A common use case for this configuration is deploying services in containers. You can also distribute traffic in a granular fashion to applications running on your backend instances.

What is a VLAN pool in ACI?

Defining VLAN Pool A pool represents a range of traffic encapsulation identifiers (for example, VLAN IDs, VNIDs, and multicast addresses). A pool is a shared resource and can be consumed by multiple domains, physical or virtual. A leaf switch does not support overlapping VLAN pools.