cisco.catalystcenter.switches_configs_intended_port_create module -- Resource module for Switches Configs Intended Port Create

Note

This module is part of the cisco.catalystcenter collection (version 2.11.0).

To install it, use: ansible-galaxy collection install cisco.catalystcenter. You need further requirements to be able to use this module, see Requirements for details.

To use it in a playbook, specify: cisco.catalystcenter.switches_configs_intended_port_create.

New in cisco.catalystcenter 2.11.0

Synopsis

  • Manage operation create of the resource Switches Configs Intended Port Create. - > This API creates configurations for an intended feature on a switch. Once all the updates to intended features are complete, they can be deployed to a device using the API /api/v1/switches/{id}/configs/intended/deploy. When the intended features are deployed, they are applied on top of the existing configurations on the device. Any existing configurations on the device which are not included in the intended features, are retained on the device. The device config learning must have enabled for the switch using the API /dna/campus/api/v1/switches/configs/deployed/enable and Error code NCCO15475 can be observed if not enabled.

Note

This module has a corresponding action plugin.

Requirements

The below requirements are needed on the host that executes this module.

  • catalystcentersdk >= 3.2.3.0.0

  • python >= 3.12

Parameters

Parameter

Comments

catalystcenter_debug

aliases: dnac_debug

boolean

Flag for Cisco Catalyst Center SDK to enable debugging.

Choices:

catalystcenter_host

aliases: dnac_host

string / required

The Cisco Catalyst Center hostname.

catalystcenter_password

aliases: dnac_password

string

The Cisco Catalyst Center password to authenticate.

catalystcenter_port

aliases: dnac_port, catalystcenter_api_port

integer

The Cisco Catalyst Center port.

Default: :ansible-option-default:`443`

catalystcenter_username

aliases: dnac_username, user

string

The Cisco Catalyst Center username to authenticate.

Default: :ansible-option-default:`"admin"`

catalystcenter_verify

aliases: dnac_verify

boolean

Flag to enable or disable SSL certificate verification.

Choices:

catalystcenter_version

aliases: dnac_version

string

Informs the SDK which version of Cisco Catalyst Center to use.

Default: :ansible-option-default:`"3.1.6.0"`

ethernetInterfaceConfig

dictionary

This feature is for configuring ethernet interface config on device.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

accessList

string

Name of the IPv6 access list for traffic filtering, used to control IPv6 packet flow. Derived From - The available IPv6 access list names include IPv6 Named ACL configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure.

accessSessionControlDirection

string

Specifies the direction (in, out, both) for applying access session controls on the interface. This determines which traffic flows are subject to session policies. Unconfigure Value - use BOTH (default value) to revert to default settings.

accessSessionHostModeCfg

string

Defines the host mode for access sessions, such as single-host, multi-host, multi-auth, or multi-domain. This controls how many endpoints can authenticate on the interface. Unconfigure Value - use MULTI_AUTH (default value) to revert to default settings.

accessSessionHostModeEnum

string

Access-session host-mode values.

accessSessionPortControl

string

Sets the port control mode for access sessions (auto, force-authorized, force-unauthorized). Determines how the port responds to authentication status. Unconfigure Value - use FORCE_AUTHORIZED (default value) to revert to default settings.

accessVlanId

integer

VLAN ID for switchport access mode. Assigns the interface to a specific VLAN for untagged traffic. Derived From - The available VLAN IDs include VLAN configurations from the current profile and the device, always including VLAN 1. Unconfigure Value - use 1 to revert to default settings. Restrictions – Access VLAN must refer to a VLAN. The VLAN must exist in the Layer 2 profile or on the device.

authControlDirection

string

Specifies the direction (in, out) for 802.1X authentication control. This determines which traffic direction is subject to authentication policies. Unconfigure Value - use BOTH to revert to default settings.

authHostMode

string

Defines the host mode for 802.1X authentication, such as single-host, multi-host, multi-auth, or multi-domain. Controls how many devices can authenticate on the port. Unconfigure Value - use SINGLE_HOST to revert to default settings.

authInactivityTimer

integer

Specifies the inactivity timeout value in seconds for 802.1X authentication. Devices inactive for this period will be deauthenticated. Unconfigure Value - use 0 to revert to default settings.

authPortControl

string

Sets the port control mode for 802.1X authentication (auto, force-authorized, force-unauthorized). Determines port behavior based on authentication status. Unconfigure Value - use FORCE_AUTHORIZED to revert to default settings.

bfdIntervalMultiplier

integer

Number of missed BFD packets before declaring a failure. Higher values increase tolerance to missed packets. Unconfigure Value - use 3 to revert to default settings.

bfdMinRxInterval

integer

Minimum interval in milliseconds between received BFD packets. Controls how quickly the interface detects failures.

bfdMinTxInterval

integer

Interval in milliseconds for sending BFD packets. Adjusts the frequency of BFD monitoring on the interface. Unconfigure Value - use 0 to unconfigure.

bfdTemplate

string

Name of the BFD template applied to the interface, allowing standardized BFD configuration across multiple interfaces. Derived From - The available BFD template names include BFD Template Single Hop configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure.

channelGroupMode

string

Sets the mode for channel group configuration (active, passive, on). Determines how the interface participates in EtherChannel formation. Unconfigure Value - use NONE to unconfigure.

channelGroupNumber

integer

Specifies the channel group number for EtherChannel configuration, grouping multiple interfaces for increased bandwidth and redundancy. Unconfigure Value - use 0 to unconfigure. Derived From - The available port channel numbers include PortChannel configurations from the current profile and the device.

channelProtocol

string

Defines the protocol used for channel group formation (lacp, pagp, none). Controls how interfaces negotiate EtherChannel membership. Unconfigure Value - use NONE to unconfigure.

clientPdPreName

string

Prefix name, truncated to 200 characters. Unconfigure Value - use "" to unconfigure.

configType

string

Type of network functionality under a feature. Config type ETHERNET_INTERFACE_CONFIG is for configuring high-speed data transmission over Ethernet using full duplex and extensive flow control capabilities.

description

string

Text description for the interface, used for documentation and identification in network management.

deviceTrackingPolicy

dictionary

Device tracking policy configuration for the interface.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Type of network functionality under a feature. Config type ETHERNET_INTERFACE_DEVICE_TRACKING_POLICY_CONFIG is for configuring policies and parameters that manage and ensure the tracking and monitoring of devices connected through Gigabit Ethernet to enhance network security and efficiency.

deviceTrackingPolicy

string

Specifies the name of the device tracking policy attached to the interface, controlling how device tracking is enforced. Restrictions – Create policy first, then attach policy to the port.

dhcpSnoopingLimitRate

integer

Specifies the maximum number of DHCP packets per second allowed on the interface, protecting against DHCP floods. Unconfigure Value - use 0 to unconfigure.

direction

string

Direction for access list application.

helperAddresses

dictionary

Helper Address.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Type of network functionality under a feature. Config type ETHERNET_INTERFACE_HELPER_ADDRESS is for configuring the IP addresses that the device uses as the next hop to forward DHCP requests to a designated DHCP server.

ipAddress

string

IPv4 address of the DHCP relay (helper) server, used to forward DHCP requests to remote servers.

interfaceName

string

Specifies the name or identifier for the interface, used for configuration and management.

ipDhcpHostname

string

Specify value for hostname option. Unconfigure Value - use "" to unconfigure.

ipV4InboundAclName

string

Name of the ACL applied inbound on the interface, used to filter incoming traffic based on access control rules. Derived From - The available ACL names include standard and extended access list configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure.

ipV4OutboundAclName

string

Name of the ACL applied outbound on the interface, used to filter outgoing traffic based on access control rules. Derived From - The available ACL names include standard and extended access list configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure.

ipV4VrfName

string

Specifies the VRF name for interface IP forwarding, enabling logical network segmentation. Derived From - The available VRF names include IPv4 VRF configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure.

ipV6DhcpRelayDestination

dictionary

DHCP Relay Destination Address. Restrictions – IPv6 must be enabled within IPv4/IPv6 vrfs to configure IPv6 DHCP Relay Destination Addresses.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Type of network functionality under a feature. Config type ETHERNET_INTERFACE_IPV6_DHCP_RELAY_DEST_ADDRESS is for configuring the destination IPv6 address to which DHCP relay messages are forwarded in a Gigabit Ethernet network.

ipV6Address

string

IPv6 address of the DHCP relay destination, used to forward DHCPv6 requests.

ipV6DhcpRelayDestinationGlobal

dictionary

IPv6 DHCP relay global destination address configuration for the interface.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Type of network functionality under a feature. Config type ETHERNET_INTERFACE_IPV6_DHCP_RELAY_DEST_GLOBAL is for configuring the destination IPv6 address to which DHCP relay messages are forwarded in a Gigabit Ethernet network.

ipV6Address

string

Global IPv6 address for DHCP relay destination, used for forwarding DHCPv6 messages.

ipV6LinkLocalAddress

string

IPv6 link-local address assigned to the interface, used for local network communication. Supported IOS-XE versions - This property is viewable only (read-only) on Cisco switches running IOS version earlier than 17.18.1. Since IOS version 17.18.1 or later, configuration for this property is supported. Unconfigure Value - use "" to unconfigure. Restrictions – IPv6 must be enabled within IPv4/IPv6 VRFs to configure IPv6 Link Local Addresses or IPv6 Link Local Addresses should be removed.

ipV6PrefixList

dictionary

IPv6 Prefix Addresses. Restrictions – IPv6 must be enabled within IPv4/IPv6 VRFs to configure IPv6 Prefix Addresses or IPv6 Prefix Addresses should be removed.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Type of network functionality under a feature. Config type ETHERNET_INTERFACE_IPV6_PREFIX_LIST is for configuring IPv6 prefix lists on Ethernet interfaces.

ipV6Address

string

IPv6 Prefix.

ipV6TrafficFilter

dictionary

IPv6 traffic filter configuration for the interface.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

accessList

string

Name of the IPv6 access list for traffic filtering, used to control IPv6 packet flow. Derived From - The available IPv6 access list names include IPv6 Named ACL configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure.

configType

string

Type of network functionality under a feature. Config type ETHERNET_INTERFACE_IPV6_TRAFFIC_FILTER is for configuring IPv6 traffic filtering on Ethernet interfaces.

direction

string

Specifies the direction (in, out) for IPv6 traffic filtering on the interface.

isAccessSessionClosed

boolean

Enables closed mode for access sessions on the interface. In closed mode, the interface restricts access until authentication is successful. Access).

Choices:

isArpInspectionTrustEnabled

boolean

Marks the interface as trusted for ARP inspection, exempting it from ARP security checks. Unconfigure Value - use false to unconfigure.

Choices:

isAuthInactivityTimerFromServerEnabled

boolean

Enables dynamic inactivity timer for 802.1X authentication, allowing the server to adjust inactivity timeouts based on network conditions. Unconfigure Value - use false to revert to default settings.

Choices:

isAuthOpenEnabled

boolean

Enables open mode for 802.1X authentication, allowing unauthenticated access to the network while still monitoring authentication attempts. Unconfigure Value - use false to unconfigure.

Choices:

isBfdEnabled

boolean

Enables Bidirectional Forwarding Detection (BFD) on the interface for rapid detection of link failures and improved network resiliency.

Choices:

isBfdIntervalEnabled

dictionary

Enable or disable BFD interval configuration. Unconfigure Value - use false to unconfigure.

isCdpEnabled

boolean

Enables Cisco Discovery Protocol (CDP) on the interface, allowing the device to advertise and discover neighboring Cisco devices. Unconfigure Value - use true to revert to default settings. Restrictions – CDP can be enabled at port level only when global CDP is enabled.

Choices:

isCdpTlvAppEnabled

boolean

Specifies the application name for the default WRP TLV in CDP advertisements, used for device identification and management. Unconfigure Value - use true to revert to default settings.

Choices:

isDeviceTrackingEnabled

boolean

Enables or disables device tracking on the interface, allowing the system to monitor and manage connected devices. Unconfigure Value - use false to revert to default settings.

Choices:

isDhcpEnabled

boolean

Enables DHCP for automatic IP address assignment on the interface, allowing dynamic address configuration. Unconfigure Value - use false to revert to default settings. Restrictions – IPv4 must be enabled within IPv4/IPv6 VRFs to configure IPv4 Address via DHCP or IPv4 Address via DHCP must be disabled.

Choices:

isDhcpSnoopingTrustEnabled

boolean

Marks the interface as trusted for DHCP snooping, allowing DHCP messages to pass without restriction. Unconfigure Value - use false to revert to default settings.

Choices:

isDot1xMabOrderEnabled

boolean

Enables MAC Authentication Bypass (MAB) in the authentication order, allowing devices without 802.1X support to authenticate using their MAC address. Unconfigure Value - use false to unconfigure.

Choices:

isDot1xMabPriorityEnabled

boolean

Sets the priority for MAC Authentication Bypass (MAB) in the authentication process, determining if MAB is preferred over other methods. Unconfigure Value - use false to unconfigure.

Choices:

isIpV6AutoconfigEnabled

boolean

Enables IPv6 address autoconfiguration on the interface, allowing automatic assignment of IPv6 addresses. Unconfigure Value - use false to unconfigure. Restrictions – IPv6 must be enabled within IPv4/IPv6 VRF Name to configure IPv6 Address Autoconfig or IPv6 Address Autoconfig must be disabled.

Choices:

isIpV6DhcpEnabled

boolean

Enables DHCPv6 for automatic IPv6 address assignment on the interface. Unconfigure Value - use false to revert to default settings.

Choices:

isIpV6Enabled

boolean

Enables IPv6 processing on the interface, allowing IPv6 traffic and configuration. Unconfigure Value - use false (default value) to revert to default settings. Restrictions – IPv6 must be enabled within IPv4/IPv6 VRF Name to configure Port IPv6 or Port IPv6 must be disabled.

Choices:

isMabEapEnabled

boolean

Enables EAP authentication for MAB, providing additional authentication options for MAC-based access.

Choices:

isMabEnabled

boolean

Enables MAC Authentication Bypass (MAB) on the interface, allowing devices to authenticate using their MAC address. Unconfigure Value - use false to unconfigure.

Choices:

isMabWebauthPriority

boolean

Authentication method webauth allowed. Unconfigure Value - use false to unconfigure.

Choices:

isPeriodicAuthEnabled

boolean

Enables periodic reauthentication for 802.1X, requiring devices to re-authenticate at regular intervals to maintain network access. Unconfigure Value - use false to revert to default settings.

Choices:

isPortSecurityEnabled

boolean

Enables port security on the interface. Port security restricts access based on MAC addresses to enhance network security. Unconfigure Value - use false to revert to default settings.

Choices:

isReauthTimerFromServerEnabled

boolean

Enables server-based reauthentication timer for 802.1X, allowing the authentication server to control reauthentication intervals. Unconfigure Value - use false to unconfigure.

Choices:

isShutdown

boolean

Disables the interface (administratively down), preventing traffic flow. Unconfigure Value - use false (default value) to revert to default settings.

Choices:

isStaticTrustedEnabled

boolean

Marks the interface as trusted for manual CTS static policy, exempting it from certain security checks. Unconfigure Value - use false to revert to default settings.

Choices:

isStormControlShutdownEnabled

boolean

Enables shutdown action for storm control violations. If a traffic storm is detected, the interface will be shut down to protect the network. Unconfigure Value - use false to revert to default settings.

Choices:

isStormControlTrapEnabled

boolean

Enables SNMP trap notification for storm control violations. This allows network monitoring systems to be alerted when a storm control event occurs. Unconfigure Value - use false to revert to default settings.

Choices:

isSwitchportEnabled

boolean

Enables switchport mode on the interface. This configures the interface to operate as a Layer 2 port, participating in VLAN switching.

Choices:

isSwitchportNonegotiate

boolean

Disables DTP negotiation on the interface. Prevents the port from automatically negotiating trunking with other devices.

Choices:

lacpPortPriority

integer

Sets the port priority value for LACP, influencing which port is selected for aggregation. Unconfigure Value - use -1 to unconfigure.

lacpRate

string

Specifies the LACP packet transmission rate (fast or normal), controlling how quickly LACP packets are sent. Unconfigure Value - use NORMAL to revert to default settings.

lldpAdminStatus

string

Configure the interface to transmit and receive LLDP packets, or disable LLDP on the interface. Unconfigure Value - use TRANSMIT_AND_RECEIVE to revert to default settings.

mode

string

Set the administrative mode for the interface. Corresponding CLI - switchport mode access | trunk | dynamic auto | dynamic desirable | dot1q-tunnel. Unconfigure Value - use DYNAMIC_AUTO to revert to default settings.

nativeVlanId

integer

VLAN ID for native VLAN on the trunk. The native VLAN is used for untagged traffic on the trunk link. Derived From - The available VLAN IDs include VLAN configurations from the current profile and the device, always including VLAN 1. Unconfigure Value - use 1 to revert to default settings. Restrictions – Native VLAN must refer to a VLAN. The VLAN must exist in the Layer 2 profile or on the device.

portSecurityAgingTime

integer

Time in minutes before a secure MAC address ages out. This controls how long learned MAC addresses remain valid. Unconfigure Value - use 0 to unconfigure.

portSecurityAgingType

string

Type of aging for secure MAC addresses (absolute, inactivity). Absolute ages out after a set time; inactivity ages out after no activity. Unconfigure Value - use ABSOLUTE to revert to default settings.

portSecurityViolation

string

Security violation mode. Unconfigure Value - use SHUTDOWN_VLAN to revert to default settings.

primaryIpAddress

string

Primary IPv4 address assigned to the interface, used for network communication. Unconfigure Value - use "" to unconfigure. Restrictions – IPv4 must be enabled within IPv4/IPv6 VRF Name to configure IPv4 Address or IPv4 Address should be removed.

primaryIpMask

string

Subnet mask for the primary IPv4 address, defining the network portion of the address. Unconfigure Value - use "" to unconfigure.

reauthTimer

integer

Sets the reauthentication interval in seconds for 802.1X authentication. Devices must re-authenticate after this period. Unconfigure Value - use 3600 to revert to default settings.

secondaryAddress

dictionary

Secondary Address. Restrictions – IPv4 must be enabled within IPv4/IPv6 VRFs to configure Secondary IPv4 Addresses or Secondary IPv4 Addresses should be removed.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Type of network functionality under a feature. Config type ETHERNET_INTERFACE_SECONDARY_ADDRESS is for configuring secondary IP addresses on a Gigabit Ethernet interface to support multiple IP addresses within the same subnet.

ipAddress

string

Secondary IPv4 address assigned to the interface, providing additional address for communication.

mask

string

Subnet mask for the secondary IPv4 address, defining the network portion of the secondary address.

staticSgt

integer

Security Group Tag (SGT) value for manual CTS static policy. Used to assign a fixed security group to the interface for TrustSec enforcement. Unconfigure Value - use 0 to unconfigure.

stpBpdufilterStatus

string

Enables BPDU filtering on the interface, blocking spanning tree BPDUs to prevent topology changes. Unconfigure Value - use NONE to unconfigure.

stpBpduGuard

string

Enable/Disable STP BPDU Guard on interface. Unconfigure Value - use NONE to unconfigure.

stpCost

integer

Specifies the spanning tree path cost for the interface, influencing the selection of the forwarding path. Unconfigure Value - use 0 to unconfigure.

stpGuardMode

string

Configures the type of spanning tree guard (root, loop, none) to protect against topology changes. Unconfigure Value - use NONE to revert to default settings.

stpPortfastMode

string

Configure the portFast mode for an interface. Corresponding CLI - spanning-tree portfast disable | trunk | network | edge | edge trunk. Supported IOS-XE versions - On Cisco switches running IOS versions earlier than 17.15.1, this property is read-only and only the EDGE, TRUNK, DISABLE, ENABLE, NONE modes are supported. Since IOS version 17.15.1 and later, this property is configurable and supports all available modes. Unconfigure Value - use NONE to revert to default settings.

stpPortPriority

integer

Sets the port priority value for spanning tree, affecting which port is selected as the root port. Unconfigure Value - use 128 (default value) to revert to default settings.

trunkAllowedVlanIds

string

List of VLANs allowed on the trunk. Specify which VLANs are permitted to pass through the trunk interface. Unconfigure Value - use "" to revert to default settings.

trunkAllowedVlansMode

string

Mode for allowed VLANs on trunk. Unconfigure Value - use ALL to revert to default settings.

trunkVlans

string

Configure the VLANs allowed on the trunk. Unconfigure Value - use "" to unconfigure.

txPeriod

integer

Timeout for supplicant retries. Unconfigure Value - use 30 to revert to default settings.

udldMode

string

Enables UDLD at the port level. UDLD (Unidirectional Link Detection) helps detect and disable unidirectional links to prevent network issues. Supported IOS-XE versions - On Cisco switches running IOS versions earlier than 17.15.1, this property is read-only and only the AGGRESSIVE, ALERT, and DISABLE modes are supported. Since IOS version 17.15.1 or later, this property can be configured, and all modes are supported, including AGGRESS_ALERT, AGGRESSIVE, ALERT, DISABLE, and ENABLE.

voiceVlanId

integer

VLAN ID for voice traffic on the port-channel interface. Derived From - The available VLAN IDs include VLAN configurations from the current profile and the device, always including VLAN 1. Unconfigure Value - use 0 to unconfigure. Restrictions – Voice VLAN must refer to a VLAN. The VLAN must exist in the Layer 2 profile or on the device.

vrfName

string

VRF name for interface IP forwarding. This enables logical network segmentation by assigning the interface to a specific VRF. Derived From - The available VRF names include VRF Definition configurations from the current profile and the device, excluding Mgmt-vrf. Unconfigure Value - use "" to unconfigure.

feature

string

Feature path parameter. Name of the feature to configure. The API /api/v1/switches/{id}/configs/su... can be used to get the list of features supported on a device.

id

string

Id path parameter. Network device id of the switch to configure. The Network device id is identified from the GET network device API /dna/intent/api/v1/network-device response.

portChannelInterfaceConfig

dictionary

This feature is for configuring port-channels on a switch. Portchannel allows grouping of several physical Ethernet interfaces to create one logical Ethernet interface for the purpose of providing fault-tolerance and high-speed links between switches, routers, and servers.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

accessVlanId

integer

VLAN ID for switchport access mode on the port-channel interface. Derived From - The available VLAN IDs include VLAN configurations from the current profile and the device, always including VLAN 1. Unconfigure Value - use 1 to revert to default settings. Restrictions – Access VLAN must refer to a VLAN. The VLAN must exist in the Layer 2 profile or on the device.

bfdIntervalMultiplier

integer

Number of missed BFD packets before declaring a failure on the port-channel interface. Unconfigure Value - use 3 to revert to default settings.

bfdMinRxInterval

integer

Minimum interval in milliseconds between received BFD packets on the port-channel interface.

bfdMinTxInterval

integer

Interval in milliseconds for sending BFD packets on the port-channel interface. Unconfigure Value - use 0 to unconfigure.

bfdTemplate

string

Name of the BFD template applied to the port-channel interface, allowing standardized BFD configuration. Derived From - The available BFD template names include BFD Template Single Hop configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure.

configType

string

Type of network functionality under a feature. Config type PORT_CHANNEL_INTERFACE_CONFIG is for configuring a logical aggregation of multiple physical Ethernet links to increase bandwidth and provide redundancy through link aggregation protocols.

description

string

Text description for the port-channel interface, used for documentation and identification. Unconfigure Value - use "" to unconfigure.

helperAddress

dictionary

IPv4 Helper Address.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Configuring IP address settings for network interfaces, enabling communication and routing on Cisco devices.

ipAddress

string

IPv4 address of the DHCP relay (helper) server for the port-channel interface.

ipV4InboundAclName

string

Name of the ACL applied inbound on the port-channel interface for traffic filtering. Derived From - The available ACL names include standard and extended access list configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure.

ipV4Mask

string

Subnet mask for the primary IPv4 address on the port-channel interface. Unconfigure Value - use "" to unconfigure.

ipV4OutboundAclName

string

IPv4 Outbound ACL Name for filtering outgoing traffic on the port channel. Derived From - The available ACL names include standard and extended access list configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure.

ipV4VrfName

string

VRF name for port-channel interface IP forwarding, enabling logical network segmentation. Derived From - The available VRF names include IPv4 VRF configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure. Restrictions – IPv4 VRF Name must refer to an existing VRF. The VRF must exist in the Layer 3 profile or on the device.

ipV6DhcpRelayDestination

dictionary

IPv6 DHCP Relay Destination Address.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Type of network functionality under a feature. Config type PORT_CHANNEL_V6_DHCP_RELAY_DEST_CONFIG is for configuring IPv6 DHCP relay destinations on a port channel interface.

ipV6Address

string

IPv6 address of the DHCP relay destination for the port-channel interface.

ipV6DhcpRelayDestinationGlobal

dictionary

IPv6 DHCP Relay Global Destination Address.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Type of network functionality under a feature. Config type PORT_CHANNEL_IPV6_DHCP_RELAY_DST_CONFIG is for configuring the destination IP address for relaying DHCPv6 messages within a Port-Channel feature utilizing IPv6.

ipV6Address

string

Global IPv6 address for DHCP relay destination on the port-channel interface.

ipV6LinkLocalAddress

string

IPv6 link-local address assigned to the port-channel interface for local network communication. Supported IOS-XE versions - This property is viewable only (read-only) on Cisco switches running IOS version earlier than 17.18.1. Since IOS version 17.18.1 or later, configuration for this property is supported. Unconfigure Value - use "" to unconfigure. Restrictions – IPv6 must be enabled within IPv4/IPv6 VRFs to configure IPv6 Link Local Address or IPv6 Link Local Address should be removed.

ipV6PrefixList

dictionary

Prefix List IPv6 Address. Restrictions – IPv6 must be enabled within IPv4/IPv6 VRFs to configure IPv6 Prefix Addresses or IPv6 Prefix Addresses should be removed.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Type of network functionality under a feature. Config type PORT_CHANNEL_V6_ADDR_PREFIX_LIST_CONFIG is for configuring IPv6 address prefixes for a PortChannel interface, allowing grouped links to be managed under a single network entity in adding address prefix lists.

ipV6Prefix

string

IPv6 prefix for the port-channel interface, used for routing and address assignment.

ipV6TrafficFilter

dictionary

IPv6 Traffic Filter.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

actionList

string

Name of the IPv6 access list for traffic filtering on the port-channel interface. Derived From - The available IPv6 access list names include IPv6 Named ACL configurations from the current profile and the device. Unconfigure Value - use "" to unconfigure.

configType

string

Type of network functionality under a feature. Config type PORT_CHANNEL_IPV6_TRAFFIC_FILTER_CONFIG is for configuring IPv6 traffic filters on port channels to manage and control IPv6 data packet flow.

direction

string

Direction for IPv6 traffic filtering on the port-channel interface (in, out).

isBfdEnabled

boolean

Enables Bidirectional Forwarding Detection (BFD) on the port-channel interface for rapid detection of link failures. Unconfigure Value - use true to revert to default settings.

Choices:

isBfdIntervalEnabled

boolean

Enable or disable BFD interval configuration. Unconfigure Value - use false to unconfigure.

Choices:

isIpV4DhcpEnabled

boolean

Enables DHCP for automatic IP address assignment on the port-channel interface, allowing dynamic address configuration. Unconfigure Value - use false to unconfigure. Restrictions – IPv4 must be enabled within IPv4/IPv6 VRFs to configure IPv4 Address via DHCP or IPv4 Address via DHCP must be disabled.

Choices:

isIpV4RedirectsEnabled

boolean

Enables IP redirects on the port-channel interface, allowing the interface to send ICMP redirect messages. Unconfigure Value - use true to revert to default settings.

Choices:

isIpV4UnreachablesEnabled

boolean

Enable sending ICMP Unreachable messages. Unconfigure Value - use true to revert to default settings.

Choices:

isIpV6AutoconfigEnabled

boolean

Enables IPv6 address autoconfiguration on the port-channel interface, allowing automatic assignment of IPv6 addresses. Unconfigure Value - use false to unconfigure. Restrictions – IPv6 must be enabled within IPv4/IPv6 VRFs to configure IPv6 Address Autoconfig or IPv6 Address Autoconfig must be disabled.

Choices:

isIpV6DhcpEnabled

boolean

Enables DHCPv6 for automatic IPv6 address assignment on the port-channel interface. Unconfigure Value - use false to unconfigure.

Choices:

isIpV6Enabled

boolean

Enables IPv6 processing on the port-channel interface, allowing IPv6 traffic and configuration. Unconfigure Value - use false to unconfigure.

Choices:

isIpV6RedirectsEnabled

boolean

Enables IPv6 redirects on the port-channel interface, allowing the interface to send ICMPv6 redirect messages. Unconfigure Value - use true to revert to default settings.

Choices:

isLacpFastSwitchoverEnabled

boolean

Enables fast switchover for LACP on the port-channel interface, improving failover times. Unconfigure Value - use false to unconfigure.

Choices:

isProxyArpEnabled

boolean

Enables proxy ARP on the port-channel interface, allowing the interface to respond to ARP requests on behalf of other devices. Unconfigure Value - use true to revert to default settings.

Choices:

isRapidCommitEnabled

boolean

Enables rapid commit option for DHCPv6 on the port-channel interface, allowing faster address assignment. Unconfigure Value - use false to unconfigure.

Choices:

isShutdown

boolean

Disables the port-channel interface (administratively down), preventing traffic flow. Unconfigure Value - use false to revert to default settings.

Choices:

isSwitchportEnabled

boolean

Enables switchport mode on the port-channel interface, allowing it to participate in VLAN switching. Unconfigure Value - use true to revert to default settings.

Choices:

isSwitchportNonegotiate

boolean

Disables DTP negotiation on the port-channel interface, preventing automatic trunk negotiation. Unconfigure Value - use false to unconfigure.

Choices:

lacpMaxBundle

integer

Maximum number of LACP bundled links allowed for the port-channel interface. Unconfigure Value - use 0 to unconfigure.

macAddress

string

MAC address assigned to the port-channel interface for identification and communication. Unconfigure Value - use "" to unconfigure.

integer

Minimum number of links required for the port-channel to be up and operational. Unconfigure Value - use 0 to unconfigure.

mode

string

Set the administrative mode for the interface. Corresponding CLI - switchport mode access | trunk | dynamic auto | dynamic desirable | dot1q-tunnel. Unconfigure Value - use DYNAMIC_AUTO to revert to default settings.

nativeVlanId

integer

VLAN ID for native VLAN on the trunk for the port-channel interface. Derived From - The available VLAN IDs include VLAN configurations from the current profile and the device, always including VLAN 1. Unconfigure Value - use 1 to revert to default settings. Restrictions – Native VLAN must refer to a VLAN. The VLAN must exist in the Layer 2 profile or on the device.

portchannelNumber

integer

Portchannel Number or identifier for the port-channel interface, used for configuration and management.

primaryAddress

string

Primary IPv4 address assigned to the port-channel interface for network communication. Unconfigure Value - use "" to unconfigure. Restrictions – IPv4 must be enabled within IPv4/IPv6 VRFs to configure IPv4 Address or IPv4 Address should be removed.

secondaryAddress

dictionary

IPv4 Secondary Address. Restrictions – IPv4 must be enabled within IPv4/IPv6 VRFs to configure Secondary IPv4 Addresses or Secondary IPv4 Addresses should be removed.

configType

string

Switches Configs Intended Port Create's configType.

items

list / elements=dictionary

Switches Configs Intended Port Create's items.

configType

string

Type of network functionality under a feature. Config type INTERFACE_PORT_CHANNEL_IP_ADDR_SEC_CONFIG is for configuring IP address security settings on a port channel interface to ensure secure network communication.

ipAddress

string

Secondary IPv4 address assigned to the port-channel interface, providing additional address for communication.

mask

string

Subnet mask for the secondary IPv4 address on the port-channel interface.

stpBpdufilterStatus

string

Enables BPDU filtering on the port-channel interface, blocking spanning tree BPDUs to prevent topology changes. Unconfigure Value - use NONE to unconfigure.

stpBpduGuard

string

Enable/Disable STP BPDU Guard on interface. Unconfigure Value - use NONE to unconfigure.

stpCost

integer

Specifies the spanning tree path cost for the port-channel interface, influencing the selection of the forwarding path in the spanning tree topology. Unconfigure Value - use 0 to unconfigure.

stpGuardMode

string

Configures the type of spanning tree guard (root, loop, none) to protect against topology changes and maintain network stability. Unconfigure Value - use NONE to revert to default settings.

stpPortfastMode

string

Configure the portFast mode for an interface. Supported IOS-XE versions - On Cisco switches running IOS versions earlier than 17.15.1, this property is read-only and only the EDGE, TRUNK, DISABLE, ENABLE, NONE modes are supported. Since IOS version 17.15.1 and later, this property is configurable and supports all available modes. Unconfigure Value - use NONE to revert to default settings.

stpPortPriority

integer

Sets the port priority value for spanning tree on the port-channel interface, affecting which port is selected as the root port. Unconfigure Value - use -1 to unconfigure.

trunkAllowedVlanIds

string

List of VLANs allowed on the trunk for the port-channel interface. Unconfigure Value - use "" to revert to default settings.

trunkAllowedVlansMode

string

Mode for allowed VLANs on trunk. Unconfigure Value - use ALL to revert to default settings.

voiceVlanId

integer

VLAN ID for voice traffic on the port-channel interface. Derived From - The available VLAN IDs include VLAN configurations from the current profile and the device, always including VLAN 1. Unconfigure Value - use 0 to unconfigure. Restrictions – Voice VLAN must refer to a VLAN. The VLAN must exist in the Layer 2 profile or on the device.

vrfName

string

VRF name for port-channel interface IP forwarding, enabling logical network segmentation. Derived From - The available VRF names include VRF Definition configurations from the current profile and the device, excluding Mgmt-vrf. Unconfigure Value - use "" to unconfigure. Restrictions – IPv4/IPv6 VRF Name must refer to an existing VRF. The VRF must exist in the Layer 3 profile or on the device.

validate_response_schema

boolean

Flag for Cisco Catalyst Center SDK to enable the validation of request bodies against a JSON schema.

Choices:

Notes

Note

  • SDK Method used are wired.Wired.add_intended_port_configurations,

  • Paths used are post /dna/campus/api/v1/switches/{id}/configs/intended/port/{feature},

  • Does not support check_mode

  • The plugin runs on the control node and does not use any ansible connection plugins,

  • but instead uses the embedded connection manager from Cisco CATALYST SDK

  • Requires Python >= 3.10, matching the controller Python versions supported by the collection's minimum ansible-core version (see the collection README for the current ansible-core / Python compatibility range)

See Also

See also

Cisco Catalyst Center documentation for Wired AddIntendedPortConfigurations

Complete reference of the AddIntendedPortConfigurations API.

Examples

---
- name: Create
  cisco.catalystcenter.switches_configs_intended_port_create:
    catalystcenter_host: "{{catalystcenter_host}}"
    catalystcenter_username: "{{catalystcenter_username}}"
    catalystcenter_password: "{{catalystcenter_password}}"
    catalystcenter_verify: "{{catalystcenter_verify}}"
    catalystcenter_port: "{{catalystcenter_port}}"
    catalystcenter_version: "{{catalystcenter_version}}"
    catalystcenter_debug: "{{catalystcenter_debug}}"
    ethernetInterfaceConfig:
      items:
        - accessList: string
          accessSessionControlDirection: string
          accessSessionHostModeCfg: string
          accessSessionHostModeEnum: string
          accessSessionPortControl: string
          accessVlanId: 0
          authControlDirection: string
          authHostMode: string
          authInactivityTimer: 0
          authPortControl: string
          bfdIntervalMultiplier: 0
          bfdMinRxInterval: 0
          bfdMinTxInterval: 0
          bfdTemplate: string
          channelGroupMode: string
          channelGroupNumber: 0
          channelProtocol: string
          clientPdPreName: string
          configType: string
          description: string
          deviceTrackingPolicy:
            configType: string
            items:
              - configType: string
                deviceTrackingPolicy: string
          dhcpSnoopingLimitRate: 0
          direction: string
          helperAddresses:
            configType: string
            items:
              - configType: string
                ipAddress: string
          interfaceName: string
          ipDhcpHostname: string
          ipV4InboundAclName: string
          ipV4OutboundAclName: string
          ipV4VrfName: string
          ipV6DhcpRelayDestination:
            configType: string
            items:
              - configType: string
                ipV6Address: string
          ipV6DhcpRelayDestinationGlobal:
            configType: string
            items:
              - configType: string
                ipV6Address: string
          ipV6LinkLocalAddress: string
          ipV6PrefixList:
            configType: string
            items:
              - configType: string
                ipV6Address: string
          ipV6TrafficFilter:
            configType: string
            items:
              - accessList: string
                configType: string
                direction: string
          isAccessSessionClosed: true
          isArpInspectionTrustEnabled: true
          isAuthInactivityTimerFromServerEnabled: true
          isAuthOpenEnabled: true
          isBfdEnabled: true
          isBfdIntervalEnabled: {}
          isCdpEnabled: true
          isCdpTlvAppEnabled: true
          isDeviceTrackingEnabled: true
          isDhcpEnabled: true
          isDhcpSnoopingTrustEnabled: true
          isDot1xMabOrderEnabled: true
          isDot1xMabPriorityEnabled: true
          isIpV6AutoconfigEnabled: true
          isIpV6DhcpEnabled: true
          isIpV6Enabled: true
          isMabEapEnabled: true
          isMabEnabled: true
          isMabWebauthPriority: true
          isPeriodicAuthEnabled: true
          isPortSecurityEnabled: true
          isReauthTimerFromServerEnabled: true
          isShutdown: true
          isStaticTrustedEnabled: true
          isStormControlShutdownEnabled: true
          isStormControlTrapEnabled: true
          isSwitchportEnabled: true
          isSwitchportNonegotiate: true
          lacpPortPriority: 0
          lacpRate: string
          lldpAdminStatus: string
          mode: string
          nativeVlanId: 0
          portSecurityAgingTime: 0
          portSecurityAgingType: string
          portSecurityViolation: string
          primaryIpAddress: string
          primaryIpMask: string
          reauthTimer: 0
          secondaryAddress:
            configType: string
            items:
              - configType: string
                ipAddress: string
                mask: string
          staticSgt: 0
          stpBpduGuard: string
          stpBpdufilterStatus: string
          stpCost: 0
          stpGuardMode: string
          stpPortPriority: 0
          stpPortfastMode: string
          trunkAllowedVlanIds: string
          trunkAllowedVlansMode: string
          trunkVlans: string
          txPeriod: 0
          udldMode: string
          voiceVlanId: 0
          vrfName: string
    feature: string
    id: string
    portChannelInterfaceConfig:
      items:
        - accessVlanId: 0
          bfdIntervalMultiplier: 0
          bfdMinRxInterval: 0
          bfdMinTxInterval: 0
          bfdTemplate: string
          configType: string
          description: string
          helperAddress:
            configType: string
            items:
              - configType: string
                ipAddress: string
          ipV4InboundAclName: string
          ipV4Mask: string
          ipV4OutboundAclName: string
          ipV4VrfName: string
          ipV6DhcpRelayDestination:
            configType: string
            items:
              - configType: string
                ipV6Address: string
          ipV6DhcpRelayDestinationGlobal:
            configType: string
            items:
              - configType: string
                ipV6Address: string
          ipV6LinkLocalAddress: string
          ipV6PrefixList:
            configType: string
            items:
              - configType: string
                ipV6Prefix: string
          ipV6TrafficFilter:
            configType: string
            items:
              - actionList: string
                configType: string
                direction: string
          isBfdEnabled: true
          isBfdIntervalEnabled: true
          isIpV4DhcpEnabled: true
          isIpV4RedirectsEnabled: true
          isIpV4UnreachablesEnabled: true
          isIpV6AutoconfigEnabled: true
          isIpV6DhcpEnabled: true
          isIpV6Enabled: true
          isIpV6RedirectsEnabled: true
          isLacpFastSwitchoverEnabled: true
          isProxyArpEnabled: true
          isRapidCommitEnabled: true
          isShutdown: true
          isSwitchportEnabled: true
          isSwitchportNonegotiate: true
          lacpMaxBundle: 0
          macAddress: string
          minLinks: 0
          mode: string
          nativeVlanId: 0
          portchannelNumber: 0
          primaryAddress: string
          secondaryAddress:
            configType: string
            items:
              - configType: string
                ipAddress: string
                mask: string
          stpBpduGuard: string
          stpBpdufilterStatus: string
          stpCost: 0
          stpGuardMode: string
          stpPortPriority: 0
          stpPortfastMode: string
          trunkAllowedVlanIds: string
          trunkAllowedVlansMode: string
          voiceVlanId: 0
          vrfName: string

Return Values

Common return values are documented here, the following are the fields unique to this module:

Key

Description

catalystcenter_response

dictionary

A dictionary or list with the response returned by the Cisco Catalyst Center Python SDK

Returned: always

Sample: :ansible-rv-sample-value:`{"response": {"taskId": "string", "url": "string"}, "version": "string"}`

Authors

  • Bryan Vargas (@bvargasre)