NESTA PÁGINA
Exemplo: Configuração de VPWS com mecanismos de sinalização EVPN
Este exemplo mostra como implementar o Virtual Private Wire Service (VPWS) com sinalização de Ethernet Virtual Private Network (EVPN). O uso da sinalização EVPN oferece recursos multihoming ativos ou totalmente ativos para VPNs sinalizadas por BGP.
Requisitos
Este exemplo usa os seguintes componentes de hardware e software:
Quatro roteadores da Série MX atuando como dispositivos de borda de provedor (PE), executando o Junos OS Release 17.1 ou posterior
Dois dispositivos de borda do cliente (CE) (roteadores da Série MX são usados neste exemplo)
Visão geral e topologia
O VPWS emprega serviços VPN de Camada 2 no MPLS para construir uma topologia de conexões ponto a ponto que conectam sites de clientes finais. A EVPN permite que você conecte sites dispersos de clientes usando uma ponte virtual de Camada 2. A partir do Junos OS Release 17.1, esses dois elementos podem ser combinados para fornecer uma VPWS sinalizada por EVPN.
A vpws-service-id
declaração identifica os endpoints do EVPN-VPWS com base local
e remote
identificadores de serviços configurados nos roteadores PE da rede. Esses endpoints são autodiscoversados usando sinalização EVPN baseada em BGP para trocar os rótulos dos identificadores de serviço.
Topologia
Este exemplo usa a topologia mostrada na Figura 1, composta por quatro roteadores PE e dois roteadores CE. O roteador CE1 é multihomed para roteadores PE1 e PE2; O roteador CE2 é multhomed para roteadores PE3 e PE4.
Os seguintes elementos de configuração são usados neste cenário:
Dispositivos CE:
Interface agregada de Ethernet (AE) em direção a dispositivos PE relacionados
Dispositivos pe:
Interface AE, com identificador de segmentos EVPN (ESI), para dispositivo CE relacionado
OSPF e IBGP no núcleo
LSPs MPLS usando RSVP no núcleo
Balanceamento de carga por pacote
Instância de roteamento usando tipo
evpn-vpws
de instância e avpws-service-id
declaração para definir os endpoints locais e remotos.
Configuração
Configuração rápida da CLI
Para configurar rapidamente este exemplo, copie os seguintes comandos, cole-os em um arquivo de texto, remova qualquer quebra de linha, altere todos os detalhes necessários para combinar com a configuração da sua rede, copiar e colar os comandos na CLI no nível de [edit]
hierarquia.
CE1
set interfaces xe-0/0/0 gigether-options 802.3ad ae0 set interfaces xe-0/0/2 gigether-options 802.3ad ae0 set chassis aggregated-devices ethernet device-count 1 set interfaces ae0 description "to PE1/2" set interfaces ae0 flexible-vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 aggregated-ether-options lacp active set interfaces ae0 unit 100 encapsulation vlan-bridge set interfaces ae0 unit 100 vlan-id 1000 set interfaces lo0 unit 0 family inet address 192.168.1.1/32 set policy-options policy-statement LB then load-balance per-packet set routing-options forwarding-table export LB set bridge-domains bd100 domain-type bridge set bridge-domains bd100 vlan-id 1000 set bridge-domains bd100 interface ae0.100
CE2
set interfaces xe-0/0/0 gigether-options 802.3ad ae0 set interfaces xe-0/0/1 gigether-options 802.3ad ae0 set chassis aggregated-devices ethernet device-count 1 set interfaces ae0 description "to PE3/4" set interfaces ae0 flexible-vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 aggregated-ether-options lacp active set interfaces ae0 unit 100 encapsulation vlan-bridge set interfaces ae0 unit 100 vlan-id 1000 set interfaces lo0 unit 0 family inet address 192.168.100.100/32 set policy-options policy-statement LB then load-balance per-packet set routing-options forwarding-table export LB set bridge-domains bd100 domain-type bridge set bridge-domains bd100 vlan-id 1000 set bridge-domains bd100 interface ae0.100
PE1
set interfaces xe-0/0/0 description "to CE1" set interfaces xe-0/0/0 gigether-options 802.3ad ae0 set interfaces xe-0/0/2 unit 0 description "to PE3" set interfaces xe-0/0/2 unit 0 family inet address 10.0.1.1/24 set interfaces xe-0/0/2 unit 0 family mpls set interfaces xe-0/0/3 unit 0 description "to PE4" set interfaces xe-0/0/3 unit 0 family inet address 10.0.2.1/24 set interfaces xe-0/0/3 unit 0 family mpls set interfaces lo0 unit 0 family inet address 198.51.100.1/32 set chassis aggregated-devices ethernet device-count 1 set interfaces ae0 description "to CE1" set interfaces ae0 flexible-vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 esi 00:11:11:11:11:11:11:11:11:11 set interfaces ae0 esi all-active set interfaces ae0 aggregated-ether-options lacp active set interfaces ae0 aggregated-ether-options lacp system-id 00:00:00:00:00:01 set interfaces ae0 unit 100 encapsulation vlan-ccc set interfaces ae0 unit 100 vlan-id 1000 set protocols ospf area 0.0.0.0 interface xe-0/0/2.0 set protocols ospf area 0.0.0.0 interface xe-0/0/3.0 set protocols ospf area 0.0.0.0 interface lo0.0 set routing-options autonomous-system 65000 set protocols bgp group IBGP type internal set protocols bgp group IBGP local-address 198.51.100.1 set protocols bgp group IBGP family evpn signaling set protocols bgp group IBGP neighbor 198.51.100.2 set protocols bgp group IBGP neighbor 198.51.100.3 set protocols bgp group IBGP neighbor 198.51.100.4 set protocols rsvp interface xe-0/0/2.0 set protocols rsvp interface xe-0/0/3.0 set protocols mpls interface xe-0/0/2.0 set protocols mpls interface xe-0/0/3.0 set protocols mpls no-cspf set protocols mpls label-switched-path PE1toPE3 to 198.51.100.3 set protocols mpls label-switched-path PE1toPE4 to 198.51.100.4 set policy-options policy-statement LB then load-balance per-packet set routing-options forwarding-table export LB set routing-instances EVPN-VPWS instance-type evpn-vpws set routing-instances EVPN-VPWS interface ae0.100 set routing-instances EVPN-VPWS route-distinguisher 198.51.100.1:11 set routing-instances EVPN-VPWS vrf-target target:100:11 set routing-instances EVPN-VPWS protocols evpn interface ae0.100 vpws-service-id local 1111 set routing-instances EVPN-VPWS protocols evpn interface ae0.100 vpws-service-id remote 9999
PE2
set interfaces xe-0/0/0 unit 0 description "to PE3" set interfaces xe-0/0/0 unit 0 family inet address 10.0.3.1/24 set interfaces xe-0/0/0 unit 0 family mpls set interfaces xe-0/0/1 unit 0 description "to PE4" set interfaces xe-0/0/1 unit 0 family inet address 10.0.4.1/24 set interfaces xe-0/0/1 unit 0 family mpls set interfaces xe-0/0/2 description "to CE1" set interfaces xe-0/0/2 gigether-options 802.3ad ae0 set interfaces lo0 unit 0 family inet address 198.51.100.2/32 set chassis aggregated-devices ethernet device-count 1 set interfaces ae0 description "to CE1" set interfaces ae0 flexible-vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 esi 00:11:11:11:11:11:11:11:11:11 set interfaces ae0 esi all-active set interfaces ae0 aggregated-ether-options lacp active set interfaces ae0 aggregated-ether-options lacp system-id 00:00:00:00:00:01 set interfaces ae0 unit 100 encapsulation vlan-ccc set interfaces ae0 unit 100 vlan-id 1000 set protocols ospf area 0.0.0.0 interface xe-0/0/0.0 set protocols ospf area 0.0.0.0 interface xe-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 set routing-options autonomous-system 65000 set protocols bgp group IBGP type internal set protocols bgp group IBGP local-address 198.51.100.2 set protocols bgp group IBGP family evpn signaling set protocols bgp group IBGP neighbor 198.51.100.1 set protocols bgp group IBGP neighbor 198.51.100.3 set protocols bgp group IBGP neighbor 198.51.100.4 set protocols rsvp interface xe-0/0/0.0 set protocols rsvp interface xe-0/0/1.0 set protocols mpls interface xe-0/0/0.0 set protocols mpls interface xe-0/0/1.0 set protocols mpls no-cspf set protocols mpls label-switched-path PE2toPE3 to 198.51.100.3 set protocols mpls label-switched-path PE2toPE4 to 198.51.100.4 set policy-options policy-statement LB then load-balance per-packet set routing-options forwarding-table export LB set routing-instances EVPN-VPWS instance-type evpn-vpws set routing-instances EVPN-VPWS interface ae0.100 set routing-instances EVPN-VPWS route-distinguisher 198.51.100.2:11 set routing-instances EVPN-VPWS vrf-target target:100:11 set routing-instances EVPN-VPWS protocols evpn interface ae0.100 vpws-service-id local 1111 set routing-instances EVPN-VPWS protocols evpn interface ae0.100 vpws-service-id remote 9999
PE3
set interfaces xe-0/0/0 unit 0 description "to PE1" set interfaces xe-0/0/0 unit 0 family inet address 10.0.1.2/24 set interfaces xe-0/0/0 unit 0 family mpls set interfaces xe-0/0/1 unit 0 description "to PE2" set interfaces xe-0/0/1 unit 0 family inet address 10.0.3.2/24 set interfaces xe-0/0/1 unit 0 family mpls set interfaces xe-0/0/2 description "to CE1" set interfaces xe-0/0/2 gigether-options 802.3ad ae0 set interfaces lo0 unit 0 family inet address 198.51.100.3/32 set chassis aggregated-devices ethernet device-count 1 set interfaces ae0 description "to CE2" set interfaces ae0 flexible-vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 esi 00:99:99:99:99:99:99:99:99:99 set interfaces ae0 esi all-active set interfaces ae0 aggregated-ether-options lacp active set interfaces ae0 aggregated-ether-options lacp system-id 00:00:00:00:00:01 set interfaces ae0 unit 100 encapsulation vlan-ccc set interfaces ae0 unit 100 vlan-id 1000 set protocols ospf area 0.0.0.0 interface xe-0/0/0.0 set protocols ospf area 0.0.0.0 interface xe-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 set routing-options autonomous-system 65000 set protocols bgp group IBGP type internal set protocols bgp group IBGP local-address 198.51.100.3 set protocols bgp group IBGP family evpn signaling set protocols bgp group IBGP neighbor 198.51.100.1 set protocols bgp group IBGP neighbor 198.51.100.2 set protocols bgp group IBGP neighbor 198.51.100.4 set protocols rsvp interface xe-0/0/0.0 set protocols rsvp interface xe-0/0/1.0 set protocols mpls interface xe-0/0/0.0 set protocols mpls interface xe-0/0/1.0 set protocols mpls no-cspf set protocols mpls label-switched-path PE3toPE1 to 198.51.100.1 set protocols mpls label-switched-path PE3toPE2 to 198.51.100.2 set policy-options policy-statement LB then load-balance per-packet set routing-options forwarding-table export LB set routing-instances EVPN-VPWS instance-type evpn-vpws set routing-instances EVPN-VPWS interface ae0.100 set routing-instances EVPN-VPWS route-distinguisher 198.51.100.3:11 set routing-instances EVPN-VPWS vrf-target target:100:11 set routing-instances EVPN-VPWS protocols evpn interface ae0.100 vpws-service-id local 9999 set routing-instances EVPN-VPWS protocols evpn interface ae0.100 vpws-service-id remote 1111
PE4
set interfaces xe-0/0/0 unit 0 description "to PE1" set interfaces xe-0/0/0 unit 0 family inet address 10.0.2.2/24 set interfaces xe-0/0/0 unit 0 family mpls set interfaces xe-0/0/1 unit 0 description "to PE2" set interfaces xe-0/0/1 unit 0 family inet address 10.0.4.2/24 set interfaces xe-0/0/1 unit 0 family mpls set interfaces xe-0/0/2 description "to CE1" set interfaces xe-0/0/2 gigether-options 802.3ad ae0 set interfaces lo0 unit 0 family inet address 198.51.100.4/32 set chassis aggregated-devices ethernet device-count 1 set interfaces ae0 description "to CE2" set interfaces ae0 flexible-vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 esi 00:99:99:99:99:99:99:99:99:99 set interfaces ae0 esi all-active set interfaces ae0 aggregated-ether-options lacp active set interfaces ae0 aggregated-ether-options lacp system-id 00:00:00:00:00:01 set interfaces ae0 unit 100 encapsulation vlan-ccc set interfaces ae0 unit 100 vlan-id 1000 set protocols ospf area 0.0.0.0 interface xe-0/0/0.0 set protocols ospf area 0.0.0.0 interface xe-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 set routing-options autonomous-system 65000 set protocols bgp group IBGP type internal set protocols bgp group IBGP local-address 198.51.100.4 set protocols bgp group IBGP family evpn signaling set protocols bgp group IBGP neighbor 198.51.100.1 set protocols bgp group IBGP neighbor 198.51.100.2 set protocols bgp group IBGP neighbor 198.51.100.3 set protocols rsvp interface xe-0/0/0.0 set protocols rsvp interface xe-0/0/1.0 set protocols mpls interface xe-0/0/0.0 set protocols mpls interface xe-0/0/1.0 set protocols mpls no-cspf set protocols mpls label-switched-path PE4toPE1 to 198.51.100.1 set protocols mpls label-switched-path PE4toPE2 to 198.51.100.2 set policy-options policy-statement LB then load-balance per-packet set routing-options forwarding-table export LB set routing-instances EVPN-VPWS instance-type evpn-vpws set routing-instances EVPN-VPWS interface ae0.100 set routing-instances EVPN-VPWS route-distinguisher 198.51.100.4:11 set routing-instances EVPN-VPWS vrf-target target:100:11 set routing-instances EVPN-VPWS protocols evpn interface ae0.100 vpws-service-id local 9999 set routing-instances EVPN-VPWS protocols evpn interface ae0.100 vpws-service-id remote 1111
Procedimento
Procedimento passo a passo
O exemplo a seguir exige que você navegue por vários níveis na hierarquia de configuração. Para obter informações sobre como navegar na CLI, consulte Usando o Editor de CLI no modo de configuração no Guia do usuário da CLI.
Somente o Roteador PE1 é mostrado aqui. Repita este procedimento para todos os outros dispositivos PE, usando os nomes, endereços e outros parâmetros de interface apropriados para cada dispositivo.
O procedimento passo a passo para dispositivos CE não é mostrado.
Para configurar o Roteador PE1:
Configure a interface voltada para CE para fazer parte do pacote ae0.
A segunda interface para o pacote AE será configurada no outro dispositivo PE local.
[edit interfaces] user@PE1# set xe-0/0/0 description "to CE1" user@PE1# set xe-0/0/0 gigether-options 802.3ad ae0
Configure as interfaces voltadas para o núcleo em direção aos roteadores PE3 e PE4.
Certifique-se de incluir a família de protocolo MPLS.
[edit interfaces] user@PE1# set xe-0/0/2 unit 0 description "to PE3" user@PE1# set xe-0/0/2 unit 0 family inet address 10.0.1.1/24 user@PE1# set xe-0/0/2 unit 0 family mpls user@PE1# set xe-0/0/3 unit 0 description "to PE4" user@PE1# set xe-0/0/3 unit 0 family inet address 10.0.2.1/24 user@PE1# set xe-0/0/3 unit 0 family mpls
Configure a interface de loopback.
[edit interfaces] user@PE1# set lo0 unit 0 family inet address 198.51.100.1/32
Defina o número de interfaces Ethernet agregadas a serem suportadas no dispositivo.
[edit chassis] user@PE1# set aggregated-devices ethernet device-count 1
Configure a interface ae0.
Opções alternativas de tagamento e encapsulamento de VLAN podem ser usadas, dependendo das suas necessidades.
[edit interfaces] user@PE1# set ae0 description "to CE1" user@PE1# set ae0 flexible-vlan-tagging user@PE1# set ae0 encapsulation flexible-ethernet-services user@PE1# set ae0 unit 100 encapsulation vlan-ccc user@PE1# set ae0 unit 100 vlan-id 1000
Atribua um valor de identificador de segmento de Ethernet (ESI) à interface ae0 e habilite o multihoming ativo EVPN.
[edit interfaces] user@PE1# set ae0 esi 00:11:11:11:11:11:11:11:11:11 user@PE1# set ae0 esi all-active
Configure o protocolo de controle de agregação de enlaces (LACP) para a interface ae0.
A ID do sistema usada aqui deve ser a mesma em ambos os dispositivos locais de PE.
[edit interfaces] user@PE1# set ae0 aggregated-ether-options lacp active user@PE1# set ae0 aggregated-ether-options lacp system-id 00:00:00:00:00:01
Habilite o OSPF nas interfaces voltadas para o núcleo (e loopback).
[edit protocols] user@PE1# set ospf area 0.0.0.0 interface xe-0/0/2.0 user@PE1# set ospf area 0.0.0.0 interface xe-0/0/3.0 user@PE1# set ospf area 0.0.0.0 interface lo0.0
Configure uma malha de IBGP com os outros dispositivos PE, usando EVPN para sinalização.
[edit routing-options] user@PE1# set autonomous-system 65000 [edit protocols] user@PE1# set bgp group IBGP type internal user@PE1# set bgp group IBGP local-address 198.51.100.1 user@PE1# set bgp group IBGP family evpn signaling user@PE1# set bgp group IBGP neighbor 198.51.100.2 user@PE1# set bgp group IBGP neighbor 198.51.100.3 user@PE1# set bgp group IBGP neighbor 198.51.100.4
Habilite o RSVP nas interfaces voltadas para o núcleo.
[edit protocols] user@PE1# set rsvp interface xe-0/0/2.0 user@PE1# set rsvp interface xe-0/0/3.0
Habilite o MPLS nas interfaces voltadas para o núcleo e configure LSPs para os dispositivos PE remotos.
Por exemplo, não deixe de desativar o CSPF.
[edit protocols] user@PE1# set mpls interface xe-0/0/2.0 user@PE1# set mpls interface xe-0/0/3.0 user@PE1# set mpls no-cspf user@PE1# set mpls label-switched-path PE1toPE3 to 198.51.100.3 user@PE1# set mpls label-switched-path PE1toPE4 to 198.51.100.4
Configure o balanceamento de carga.
[edit policy-options] user@PE1# set policy-statement LB then load-balance per-packet [edit routing-options] user@PE1# set forwarding-table export LB
Configure uma instância de roteamento usando o tipo de
evpn-vpws
instância. Adicione a interface AE (voltada para CE) configurada anteriormente, bem como um diferenciador de rotas e um alvo VRF.Em termos de EVPN, esta é uma instância EVPN (EVI).
[edit routing-instances] user@PE1# set EVPN-VPWS instance-type evpn-vpws user@PE1# set EVPN-VPWS interface ae0.100 user@PE1# set EVPN-VPWS route-distinguisher 198.51.100.1:11 user@PE1# set EVPN-VPWS vrf-target target:100:11
Na instância de roteamento, habilite a EVPN e adicione a interface AE. Em seguida, associe os identificadores locais e remotos de VPWS à interface.
[edit routing-instances] user@PE1# set EVPN-VPWS protocols evpn interface ae0.100 vpws-service-id local 1111 user@PE1# set EVPN-VPWS protocols evpn interface ae0.100 vpws-service-id remote 9999
Resultados
A partir do modo de configuração, confirme sua configuração. Se a saída não exibir a configuração pretendida, repita as instruções neste exemplo para corrigir a configuração.
[edit ] user@PE1# show chassis aggregated-devices { ethernet { device-count 1; } }
[edit ] user@PE1# show interfaces xe-0/0/0 { description "to CE1"; gigether-options { 802.3ad ae0; } } xe-0/0/2 { unit 0 { description "to PE3"; family inet { address 10.0.1.1/24; } family mpls; } } xe-0/0/3 { unit 0 { description "to PE4"; family inet { address 10.0.2.1/24; } family mpls; } } ae0 { description "to CE1"; flexible-vlan-tagging; encapsulation flexible-ethernet-services; esi { 00:11:11:11:11:11:11:11:11:11; all-active; } aggregated-ether-options { lacp { active; system-id 00:00:00:00:00:01; } } unit 100 { encapsulation vlan-ccc; vlan-id 1000; } } lo0 { unit 0 { family inet { address 198.51.100.1/32; } } }
[edit ] user@PE1# show routing-options autonomous-system 65000; forwarding-table { export LB; }
user@PE1# show protocols rsvp { interface xe-0/0/2.0; interface xe-0/0/3.0; } mpls { no-cspf; label-switched-path PE1toPE3 { to 198.51.100.3; } label-switched-path PE1toPE4 { to 198.51.100.4; } interface xe-0/0/2.0; interface xe-0/0/3.0; } bgp { group IBGP { type internal; local-address 198.51.100.1; family evpn { signaling; } neighbor 198.51.100.2; neighbor 198.51.100.3; neighbor 198.51.100.4; } } ospf { area 0.0.0.0 { interface xe-0/0/2.0; interface xe-0/0/3.0; interface lo0.0; } }
[edit ] user@PE1# show policy-options policy-statement LB { then { load-balance per-packet; } }
[edit ] user@PE1# show routing-instances EVPN-VPWS { instance-type evpn-vpws; interface ae0.100; route-distinguisher 198.51.100.1:11; vrf-target target:100:11; protocols { evpn { interface ae0.100 { vpws-service-id { local 1111; remote 9999; } } } } }
Se você terminar de configurar o dispositivo, entre commit
no modo de configuração.
Verificação
Confirme se a configuração está funcionando corretamente.
- Verificação de interfaces de ethernet agregadas e LACP
- Verificando o OSPF
- Verificação do BGP
- Verificação do MPLS
- Verificando o VPWS
- Verificação da troca de rotas e do autodiscovamento ESI
- Verificação das informações de rota de tabela da EVPN local
Verificação de interfaces de ethernet agregadas e LACP
Propósito
Verifique se as interfaces AE estão ativas e corretamente.
Ação
Verifique se as interfaces AE estão ativas e as conexões LACP estão estabelecidas entre os dispositivos PE e seu dispositivo CE relacionado.
user@CE1> show lacp interfaces extensive Aggregated interface: ae0 LACP state: Role Exp Def Dist Col Syn Aggr Timeout Activity xe-0/0/0 Actor No No Yes Yes Yes Yes Fast Active xe-0/0/0 Partner No No Yes Yes Yes Yes Fast Active xe-0/0/2 Actor No No Yes Yes Yes Yes Fast Active xe-0/0/2 Partner No No Yes Yes Yes Yes Fast Active LACP protocol: Receive State Transmit State Mux State xe-0/0/0 Current Fast periodic Collecting distributing xe-0/0/2 Current Fast periodic Collecting distributing LACP info: Role System System Port Port Port priority identifier priority number key xe-0/0/0 Actor 127 44:f4:77:99:e3:c0 127 1 1 xe-0/0/0 Partner 127 00:00:00:00:00:01 127 1 1 xe-0/0/2 Actor 127 44:f4:77:99:e3:c0 127 2 1 xe-0/0/2 Partner 127 00:00:00:00:00:01 127 1 1 user@PE1> show lacp interfaces extensive Aggregated interface: ae0 LACP state: Role Exp Def Dist Col Syn Aggr Timeout Activity xe-0/0/0 Actor No No Yes Yes Yes Yes Fast Active xe-0/0/0 Partner No No Yes Yes Yes Yes Fast Active LACP protocol: Receive State Transmit State Mux State xe-0/0/0 Current Fast periodic Collecting distributing LACP info: Role System System Port Port Port priority identifier priority number key xe-0/0/0 Actor 127 00:00:00:00:00:01 127 1 1 xe-0/0/0 Partner 127 44:f4:77:99:e3:c0 127 1 1 user@PE2> show lacp interfaces extensive Aggregated interface: ae0 LACP state: Role Exp Def Dist Col Syn Aggr Timeout Activity xe-0/0/2 Actor No No Yes Yes Yes Yes Fast Active xe-0/0/2 Partner No No Yes Yes Yes Yes Fast Active LACP protocol: Receive State Transmit State Mux State xe-0/0/2 Current Fast periodic Collecting distributing LACP info: Role System System Port Port Port priority identifier priority number key xe-0/0/2 Actor 127 00:00:00:00:00:01 127 1 1 xe-0/0/2 Partner 127 44:f4:77:99:e3:c0 127 2 1
Significado
A interface AE em cada dispositivo está ativa, e há conexões LACP ativas entre o dispositivo CE e seus dispositivos PE locais. Observe também que o ID do sistema configurado nos dispositivos PE ( 00:00:00:00:00:01
e mostrado nas saídas de dispositivo PE como o Actor
), corresponde ao valor de ID do Partner
sistema no dispositivo CE.
Verificando o OSPF
Propósito
Verifique se o OSPF está funcionando corretamente.
Ação
Verifique se o OSPF tem adjacências estabelecidas com seus vizinhos remotos.
user@PE1> show ospf neighbor Address Interface State ID Pri Dead 10.0.1.2 #PE3# xe-0/0/2.0 Full 198.51.100.3 128 37 10.0.2.2 #PE4# xe-0/0/3.0 Full 198.51.100.4 128 33 user@PE3> show ospf neighbor Address Interface State ID Pri Dead 10.0.1.1 #PE1# xe-0/0/0.0 Full 198.51.100.1 128 34 10.0.3.1 #PE2# xe-0/0/1.0 Full 198.51.100.2 128 34
Significado
As adjacências foram estabelecidas com vizinhos remotos.
Verificação do BGP
Propósito
Verifique se o BGP está funcionando corretamente.
Ação
Verifique se o IBGP tem peerings estabelecidos com seus vizinhos usando sinalização EVPN.
user@PE1> show bgp summary Groups: 1 Peers: 3 Down peers: 0 Table Tot Paths Act Paths Suppressed History Damp State Pending bgp.evpn.0 7 4 0 0 0 0 Peer AS InPkt OutPkt OutQ Flaps Last Up/Dwn State|#Active/Received/Accepted/Damped... 198.51.100.2 #PE2# 65000 12 5 0 0 3:03 Establ bgp.evpn.0: 0/3/3/0 EVPN-VPWS.evpn.0: 0/2/2/0 __default_evpn__.evpn.0: 0/1/1/0 198.51.100.3 #PE3# 65000 11 9 0 0 3:03 Establ bgp.evpn.0: 2/2/2/0 EVPN-VPWS.evpn.0: 2/2/2/0 __default_evpn__.evpn.0: 0/0/0/0 198.51.100.4 #PE4# 65000 9 4 0 0 1:56 Establ bgp.evpn.0: 2/2/2/0 EVPN-VPWS.evpn.0: 2/2/2/0 __default_evpn__.evpn.0: 0/0/0/0 user@PE3> show bgp summary Groups: 1 Peers: 3 Down peers: 0 Table Tot Paths Act Paths Suppressed History Damp State Pending bgp.evpn.0 7 4 0 0 0 0 Peer AS InPkt OutPkt OutQ Flaps Last Up/Dwn State|#Active/Received/Accepted/Damped... 198.51.100.1 #PE1# 65000 17 11 0 0 5:09 Establ bgp.evpn.0: 2/2/2/0 EVPN-VPWS.evpn.0: 2/2/2/0 __default_evpn__.evpn.0: 0/0/0/0 198.51.100.2 #PE2# 65000 17 14 0 0 5:04 Establ bgp.evpn.0: 2/2/2/0 EVPN-VPWS.evpn.0: 2/2/2/0 __default_evpn__.evpn.0: 0/0/0/0 198.51.100.4 #PE34 65000 13 8 0 0 4:02 Establ bgp.evpn.0: 0/3/3/0 EVPN-VPWS.evpn.0: 0/2/2/0 __default_evpn__.evpn.0: 0/1/1/0
Significado
Os peerings de IBGP sinalizados por EVPN foram estabelecidos com todos os vizinhos.
Verificação do MPLS
Propósito
Verifique se o MPLS está funcionando corretamente.
Ação
Verifique se os LSPs MPLS estão estabelecidos com vizinhos remotos.
user@PE1> show mpls lsp Ingress LSP: 2 sessions To From State Rt P ActivePath LSPname 198.51.100.3 198.51.100.1 Up 0 * PE1toPE3 198.51.100.4 198.51.100.1 Up 0 * PE1toPE4 Total 2 displayed, Up 2, Down 0 Egress LSP: 2 sessions To From State Rt Style Labelin Labelout LSPname 198.51.100.1 198.51.100.4 Up 0 1 FF 3 - PE4toPE1 198.51.100.1 198.51.100.3 Up 0 1 FF 3 - PE3toPE1 Total 2 displayed, Up 2, Down 0 Transit LSP: 0 sessions Total 0 displayed, Up 0, Down 0 user@PE3> show mpls lsp Ingress LSP: 2 sessions To From State Rt P ActivePath LSPname 198.51.100.1 198.51.100.3 Up 0 * PE3toPE1 198.51.100.2 198.51.100.3 Up 0 * PE3toPE2 Total 2 displayed, Up 2, Down 0 Egress LSP: 2 sessions To From State Rt Style Labelin Labelout LSPname 198.51.100.3 198.51.100.2 Up 0 1 FF 3 - PE2toPE3 198.51.100.3 198.51.100.1 Up 0 1 FF 3 - PE1toPE3 Total 2 displayed, Up 2, Down 0 Transit LSP: 0 sessions Total 0 displayed, Up 0, Down 0
Significado
Os LSPs foram estabelecidos com vizinhos remotos.
Verificando o VPWS
Propósito
Verifique se o VPWS está estabelecido.
Ação
Verifique se os dispositivos pe trocaram e aprenderam identificadores de serviços e estabeleceu o VPWS.
user@PE1> show evpn vpws-instance Instance: EVPN-VPWS Route Distinguisher: 198.51.100.1:11 Number of local interfaces: 1 (1 up) Interface name ESI Mode Role Status ae0.100 00:11:11:11:11:11:11:11:11:11 all-active Primary Up Local SID: 1111 Advertised Label: 300496 Remote SID: 9999 PE addr ESI Label Mode Role TS Status 198.51.100.3 00:99:99:99:99:99:99:99:99:99 300656 all-active Primary 2017-05-12 07:30:01.863 Resolved 198.51.100.4 00:99:99:99:99:99:99:99:99:99 300704 all-active Primary 2017-05-12 07:31:23.804 Resolved Fast Convergence Information ESI: 00:99:99:99:99:99:99:99:99:99 Number of PE nodes: 2 PE: 198.51.100.3 #PE3# Advertised SID: 9999 PE: 198.51.100.4 #PE4# Advertised SID: 9999 user@PE3> show evpn vpws-instance Instance: EVPN-VPWS Route Distinguisher: 198.51.100.3:11 Number of local interfaces: 1 (1 up) Interface name ESI Mode Role Status ae0.100 00:99:99:99:99:99:99:99:99:99 all-active Primary Up Local SID: 9999 Advertised Label: 300656 Remote SID: 1111 PE addr ESI Label Mode Role TS Status 198.51.100.1 00:11:11:11:11:11:11:11:11:11 300496 all-active Primary 2017-05-12 07:30:25.702 Resolved 198.51.100.2 00:11:11:11:11:11:11:11:11:11 300560 all-active Primary 2017-05-12 07:30:25.711 Resolved Fast Convergence Information ESI: 00:11:11:11:11:11:11:11:11:11 Number of PE nodes: 2 PE: 198.51.100.1 #PE1# Advertised SID: 1111 PE: 198.51.100.2 #PE2# Advertised SID: 1111
Significado
Os dispositivos pe de cada lado da rede anunciaram seus identificadores de serviço e receberam os identificadores de seus vizinhos remotos. O VPWS está estabelecido.
Verificação da troca de rotas e do autodiscovamento ESI
Propósito
Verifique se a sinalização de EVPN está funcionando corretamente.
Ação
Verifique se as informações de autodiscovaamento estão sendo compartilhadas em todo o VPWS.
user@PE1> show route table bgp.evpn.0 bgp.evpn.0: 7 destinations, 7 routes (4 active, 0 holddown, 3 hidden) + = Active Route, - = Last Active, * = Both 1:198.51.100.3:0::999999999999999999::FFFF:FFFF/304 AD/ESI *[BGP/170] 00:03:17, localpref 100, from 198.51.100.3 AS path: I, validation-state: unverified > to 10.0.1.2 via xe-0/0/2.0, label-switched-path PE1toPE3 1:198.51.100.3:11::999999999999999999::9999/304 AD/EVI *[BGP/170] 00:03:18, localpref 100, from 198.51.100.3 AS path: I, validation-state: unverified > to 10.0.1.2 via xe-0/0/2.0, label-switched-path PE1toPE3 1:198.51.100.4:0::999999999999999999::FFFF:FFFF/304 AD/ESI *[BGP/170] 00:01:56, localpref 100, from 198.51.100.4 AS path: I, validation-state: unverified > to 10.0.2.2 via xe-0/0/3.0, label-switched-path PE1toPE4 1:198.51.100.4:11::999999999999999999::9999/304 AD/EVI *[BGP/170] 00:01:56, localpref 100, from 198.51.100.4 AS path: I, validation-state: unverified > to 10.0.2.2 via xe-0/0/3.0, label-switched-path PE1toPE4 user@PE3> show route table bgp.evpn.0 bgp.evpn.0: 7 destinations, 7 routes (4 active, 0 holddown, 3 hidden) + = Active Route, - = Last Active, * = Both 1:198.51.100.1:0::111111111111111111::FFFF:FFFF/304 AD/ESI *[BGP/170] 00:04:53, localpref 100, from 198.51.100.1 AS path: I, validation-state: unverified > to 10.0.1.1 via xe-0/0/0.0, label-switched-path PE3toPE1 1:198.51.100.1:11::111111111111111111::1111/304 AD/EVI *[BGP/170] 00:04:53, localpref 100, from 198.51.100.1 AS path: I, validation-state: unverified > to 10.0.1.1 via xe-0/0/0.0, label-switched-path PE3toPE1 1:198.51.100.2:0::111111111111111111::FFFF:FFFF/304 AD/ESI *[BGP/170] 00:04:53, localpref 100, from 198.51.100.2 AS path: I, validation-state: unverified > to 10.0.3.1 via xe-0/0/1.0, label-switched-path PE3toPE2 1:198.51.100.2:11::111111111111111111::1111/304 AD/EVI *[BGP/170] 00:04:53, localpref 100, from 198.51.100.2 AS path: I, validation-state: unverified > to 10.0.3.1 via xe-0/0/1.0, label-switched-path PE3toPE2
Significado
As saídas mostram as rotas de ESI sendo compartilhadas entre o VPWS e os dispositivos pe remotos.
As rotas que começam com 1:198.51.100.x:0::
são as rotas de Ethernet tipo 1 EVPN por segmento de Ethernet originadas dos dispositivos PE remotos. Os diferenciadores de rota (RDs) são derivados no nível global dos dispositivos.
As rotas que começam com 1:198.51.100.x:11::
são as rotas de EVPN tipo 1 de autodiscovamento por EVI a partir dos dispositivos pe remotos. Os RDs são retirados das instâncias de roteamento remotas dos dispositivos PE.
Verificação das informações de rota de tabela da EVPN local
Propósito
Verifique se as tabelas locais de roteamento EVPN estão sendo povoadas.
Ação
Verifique se as informações de alcance local e remota estão sendo adicionadas na tabela EVPN.
user@PE1> show route table EVPN-VPWS.evpn.0 EVPN-VPWS.evpn.0: 7 destinations, 7 routes (5 active, 0 holddown, 2 hidden) + = Active Route, - = Last Active, * = Both 1:198.51.100.1:11::111111111111111111::1111/304 AD/EVI *[EVPN/170] 00:06:55 Indirect 1:198.51.100.3:0::999999999999999999::FFFF:FFFF/304 AD/ESI *[BGP/170] 00:03:24, localpref 100, from 198.51.100.3 AS path: I, validation-state: unverified > to 10.0.1.2 via xe-0/0/2.0, label-switched-path PE1toPE3 1:198.51.100.3:11::999999999999999999::9999/304 AD/EVI *[BGP/170] 00:03:25, localpref 100, from 198.51.100.3 AS path: I, validation-state: unverified > to 10.0.1.2 via xe-0/0/2.0, label-switched-path PE1toPE3 1:198.51.100.4:0::999999999999999999::FFFF:FFFF/304 AD/ESI *[BGP/170] 00:02:03, localpref 100, from 198.51.100.4 AS path: I, validation-state: unverified > to 10.0.2.2 via xe-0/0/3.0, label-switched-path PE1toPE4 1:198.51.100.4:11::999999999999999999::9999/304 AD/EVI *[BGP/170] 00:02:03, localpref 100, from 198.51.100.4 AS path: I, validation-state: unverified > to 10.0.2.2 via xe-0/0/3.0, label-switched-path PE1toPE4 user@PE3> show route table EVPN-VPWS.evpn.0 EVPN-VPWS.evpn.0: 7 destinations, 7 routes (5 active, 0 holddown, 2 hidden) + = Active Route, - = Last Active, * = Both 1:198.51.100.1:0::111111111111111111::FFFF:FFFF/304 AD/ESI *[BGP/170] 00:05:01, localpref 100, from 198.51.100.1 AS path: I, validation-state: unverified > to 10.0.1.1 via xe-0/0/0.0, label-switched-path PE3toPE1 1:198.51.100.1:11::111111111111111111::1111/304 AD/EVI *[BGP/170] 00:05:01, localpref 100, from 198.51.100.1 AS path: I, validation-state: unverified > to 10.0.1.1 via xe-0/0/0.0, label-switched-path PE3toPE1 1:198.51.100.2:0::111111111111111111::FFFF:FFFF/304 AD/ESI *[BGP/170] 00:05:01, localpref 100, from 198.51.100.2 AS path: I, validation-state: unverified > to 10.0.3.1 via xe-0/0/1.0, label-switched-path PE3toPE2 1:198.51.100.2:11::111111111111111111::1111/304 AD/EVI *[BGP/170] 00:05:01, localpref 100, from 198.51.100.2 AS path: I, validation-state: unverified > to 10.0.3.1 via xe-0/0/1.0, label-switched-path PE3toPE2 1:198.51.100.3:11::999999999999999999::9999/304 AD/EVI *[EVPN/170] 00:05:25 Indirect
Significado
Além das rotas remotas de ESI que estão sendo compartilhadas em toda a VPWS, conforme explicado na seção anterior, a tabela EVPN em cada dispositivo PE também inclui uma rota ESI local. Esta rota tipo 1 representa o segmento Ethernet configurado localmente e é derivado dos valores de RD e ESI configurados localmente.