Reference Guide

You must apply the CAM-ACL space for the FCoE region before enabling the FIP-Snooping feature. If
you do not apply CAM-ACL space the following error message is displayed:
Dell(conf)#feature fip-snooping
% Error: Cannot enable fip snooping. CAM Region not allocated for Fcoe.
Dell(conf)#
NOTE: You must manually add the CAM-ACL space to the FCoE region, as it is not applied by
default.
Enabling the FCoE Transit Feature
The following sections describe how to enable FCoE transit.
NOTE: FCoE transit is disabled by default. To enable this feature, you must follow the Configuring
FIP Snooping.
As soon as you enable the FCoE transit feature on a switch-bridge, existing VLAN-specific and FIP
snooping configurations are applied. The FCoE database is populated when the switch connects to a
converged network adapter (CNA) or FCF port and compatible DCB configurations are synchronized. By
default, all FCoE and FIP frames are dropped unless specifically permitted by existing FIP snooping-
generated ACLs. You can reconfigure any of the FIP snooping settings.
If you disable FCoE transit, FIP and FCoE traffic are handled as normal Ethernet frames and no FIP
snooping ACLs are generated. The VLAN-specific and FIP snooping configuration is disabled and stored
until you re-enable FCoE transit and the configurations are re-applied.
Enable FIP Snooping on VLANs
You can enable FIP snooping globally on a switch on all VLANs or on a specified VLAN.
When you enable FIP snooping on VLANs:
FIP frames are allowed to pass through the switch on the enabled VLANs and are processed to
generate FIP snooping ACLs.
FCoE traffic is allowed on VLANs only after a successful virtual-link initialization (fabric login FLOGI)
between an ENode and an FCF. All other FCoE traffic is dropped.
You must configure at least one interface for FCF (FIP snooping bridge-bridge) mode on a FIP
snooping-enabled VLAN.
On an S5000 NPIV proxy gateway:
A maximum of 12 VLANs are supported for FIP snooping.
The maximum number of FCFs supported on a FIP snooping-enabled VLAN is 12.
On an S5000 switch not configured as an NPIV proxy gateway:
A maximum of eight VLANs are supported for FIP snooping.
The maximum number of FCFs supported on a FIP snooping-enabled VLAN is 12.
NOTE: When you enable FCoE transit, FIP solicitation responses from an FCF may be forwarded on
an FCoE VLAN to multiple ENodes.
Configure the FC-MAP Value
You can globally configure the FC-MAP on all or individual FCoE VLANs to authorize FCoE traffic.
to check the FC-MAP value for the MAC address assigned to ENodes in incoming FCoE frames, use the
configured FC-MAP value. If the FC-MAP value does not match, FCoE frames are dropped. A session
FCoE Transit
357