Exemplo: Configuração de FEC recursivo multiponto de LDP
SUMMARY
Nossa equipe de testes de conteúdo validou e atualizou este exemplo.
Use este exemplo de configuração para configurar e verificar a classe de equivalência de encaminhamento recursivo (FEC) do Protocolo de Distribuição de Rótulos Multipontos (LDP) em uma rede OSPF. Isso permite formar túneis de ponto a multiponto (P2MP) MLDP entre dois sistemas autônomos (ASs) quando o backbone não tem rota direta para o nó raiz.
Tempo de leitura |
45 minutos |
Tempo de configuração |
1 hora |
Pré-requisitos de exemplo
Requisitos de hardware |
Roteadores da Série MX como CE, PE e roteadores intermediários. |
Requisitos de software |
Junos OS Release 23.4R1 ou posterior em todos os dispositivos. |
Antes de começar
Benefícios |
A classe de equivalência de encaminhamento recursivo (FEC) multipoint LDP (MLDP) é útil em uma implantação na qual os roteadores intermediários não têm a rota para chegar ao nó raiz. |
Saiba mais |
Visão geral funcional
Tecnologias usadas |
|
Tarefas primárias de verificação |
|
Visão geral da topologia
Este exemplo de configuração mostra um sistema host capaz de enviar tráfego multicast e um sistema host capaz de receber tráfego multicast. Ele mostra dois sistemas autônomos (ASes); AS65010 que consiste em roteadores e AS65020 PE1, P1 e ASBR1 que consistem em roteadores PE2, P2 e ASBR2. Todos os roteadores dentro de um OSPF de execução AS como o IGP. Todos os roteadores pertencem à área 0. Os dispositivos de borda do cliente (CE) usam peering EBGP para trocar rotas com seu dispositivo de borda de provedor como parte de um serviço VPN de Camada 3. Os dispositivos PE usam o IBGP para trocar rotas IPv4 com o PE remoto.
Os roteadores de borda provedor (PE2) e roteador de borda AS (ASBR2) têm rota para o PE1 raiz. No entanto, os roteadores P (P1 e P2) não têm uma rota em direção à raiz. O túnel MLDP P2MP é formado dos roteadores de saída (PE2) a entrada (PE1) para passar o elemento FEC pelo mLDP.
Nome de host |
Função |
Função |
---|---|---|
Dispositivo CE remoto. |
Roteador EBGP peer para PE1 para anunciar e aprender endereços de loopback de dispositivo CE. |
|
Dispositivo PE local. |
O nó raiz que os roteadores intermediários de outro AS tentam alcançar em um cenário onde não há rota direta para PE1. |
|
Dispositivo intermediário P1. |
Roteador intermediário que não tem rota para o roteador PE2. Ele recebe PE1-FEC do ASBR1 e processa-o como um LDP P2MP FEC normal. |
|
AS border router ASBR1 |
EBGP peer para roteador ASBR2 para anunciar e aprender rotas de IGP. O ASBR1 encontra a rota para a raiz (que é uma rota IGP) e substitui o ASBR1-FEC pelo conteúdo do Valor Opaco Recursivo (PE1-FEC) antes de fazer qualquer processamento adicional. |
|
AS border router ASBR2 |
EBGP peer para roteador ASBR1 para anunciar e aprender rotas de IGP. Atua como nó raiz para P2 e faz uma busca para encontrar a rota para a raiz real (PE1). Determina que a rota para PE1 é uma rota BGP e forma uma FEC recursiva de LDP com ASBR1 a PE1. |
|
Dispositivo intermediário P2. |
Roteador intermediário que não tem rota para roteador PE1. Ele recebe o elemento FEC do PE2 até o mLDP. No entanto, não pode usar o mesmo elemento FEC, porque não tem rota para PE1. |
|
Dispositivo PE local. |
PE2 cria um elemento MP FEC com o endereço pe1 como endereço de nó raiz para formar um túnel P2MP de PE2 para PE1 raiz. |
|
Dispositivo CE remoto. |
Peering EBGP para roteador PE2 para anunciar e aprender endereços de loopback de dispositivo CE. |
Ilustração de topologia
Etapas de configuração do PE1
Para obter configurações de amostra completas no PE1, veja:
Esta seção destaca as principais tarefas de configuração necessárias para configurar o dispositivo PE1 para este exemplo. A primeira etapa é comum configurar um serviço vpn básico de Camada 3. O conjunto de etapas a seguir é específico para configurar o FEC recursivo. Ambos os dispositivos PE têm uma configuração semelhante, aqui nos concentramos no PE1.
Primeiro, provisione a VPN geral de Camada 3:
-
Configure e numera as interfaces de loopback, voltado para o núcleo e voltadas para CE para IPv4. Certifique-se de habilitar a
mpls
família nas interfaces voltadas para o núcleo que se conectam aos dispositivos P para oferecer suporte à comutação MPLS. -
Configure um número de sistema autônomo.
-
Configure o OSPF de área única nas interfaces de loopback e voltadas para o núcleo.
-
Configure LDP, MPLS em todas as interfaces.
-
Configure a sessão de peering do IBGP para incluir a família de
inet-vpn
endereços para oferecer suporte à VPN de camada 3 IPv4. Configure uma instância de roteamento baseada em VRF para o dispositivo CE1. Use o EBGP como protocolo de roteamento PE-CE.
[edit] set interfaces ge-0/0/0 description "CONNECTED TO CE1" set interfaces ge-0/0/0 unit 0 family inet address 172.16.1.2/30 set interfaces ge-0/0/1 unit 0 family inet address 10.1.23.1/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.2/32 set interfaces lo0 unit 1 family inet address 192.168.102.1/32
[edit] set chassis network-services enhanced-ip
[edit] set routing-instances VPN1 instance-type vrf set routing-instances VPN1 protocols bgp group CE1-PE1 type external set routing-instances VPN1 protocols bgp group CE1-PE1 family inet unicast set routing-instances VPN1 protocols bgp group CE1-PE1 export EXPORT-LOCAL-ROUTES set routing-instances VPN1 protocols bgp group CE1-PE1 peer-as 65101 set routing-instances VPN1 protocols bgp group CE1-PE1 local-as 65100 set routing-instances VPN1 protocols bgp group CE1-PE1 neighbor 172.16.1.1 set routing-instances VPN1 interface ge-0/0/0.0 set routing-instances VPN1 interface lo0.1 set routing-instances VPN1 route-distinguisher 192.168.100.2:1 set routing-instances VPN1 vrf-table-label
[edit] set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.2 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT family inet-vpn any set protocols bgp group INT family inet-mvpn signaling set protocols bgp group INT peer-as 65100 set protocols bgp group INT local-as 65100 set protocols bgp group INT neighbor 192.168.100.3 set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols ospf area 0.0.0.0 interface all set protocols ospf area 0.0.0.0 interface fxp0.0 disable set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols mpls interface all set protocols mpls interface fxp0.0 disable
[edit] set routing-options router-id 192.168.100.2 set routing-options autonomous-system 65100
-
Configure o modo para que o C-PIM junte mensagens para usar árvores de ponto de encontro e mude para a árvore de caminho mais curto após a origem ser conhecida.
[edit] set routing-instances VPN1 protocols mvpn mvpn-mode rpt-spt set routing-instances VPN1 provider-tunnel ldp-p2mp set routing-instances VPN1 vrf-target target:1:1
Configure o PIM para habilitar o roteamento multicast de PE a CE.
[edit] set routing-instances VPN1 protocols pim rp static address 192.168.100.1
Habilite o PIM nas interfaces conectadas ao roteador CE.
[edit] set routing-instances VPN1 protocols pim interface lo0.1 set routing-instances VPN1 protocols pim interface ge-0/0/0.0
Configure um LSP dinâmico seletivo de ponto a multiponto e especifique o limite de dados necessário antes que o novo túnel seja criado.
[edit] set routing-instances VPN1 provider-tunnel selective group 225.1.1.1/32 source 172.16.12.1/32 ldp-p2mp set routing-instances VPN1 provider-tunnel selective group 225.1.1.1/32 source 172.16.12.1/32 threshold-rate 1
Configure o LDP FEC recursivo de ponto a multiponto.
[edit] set protocols ldp p2mp recursive fec
Configure as políticas de roteamento.
[edit] set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 from protocol direct set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 then accept
Verificação
Comando | Tarefa de verificação |
---|---|
visão geral do show ldp | Verifique Recursive fec as informações de visão geral do LDP habilitadas. |
banco de dados do show ldp | Verifique as etiquetas anunciadas de informações vinculativas de ponto a multiponto no banco de dados do LDP. |
mostrar caminho p2mp de ldp | Verifique as informações do LDP P2MP FEC. |
mostrar ldp p2mp fec | Verifique os LSPs LDP P2MP. |
- Verifique o FEC recursivo nas informações de visão geral do LDP.
- Verifique o rótulo anunciado
- Verificar as informações do P2MP FEC
- Verifique as informações do caminho P2MP
Verifique o FEC recursivo nas informações de visão geral do LDP.
Propósito
Para confirmar recursive FEC
, está habilitado e é exibido em informações de visão geral do PE1 LDP.
Ação
A partir do modo operacional, entre no show ldp overview
comando.
user@PE1 show ldp overview Instance: master Reference count: 3 Router ID: 192.168.100.2 LDP inet: enabled Transport preference: IPv4 Message id: 33 Configuration sequence: 12 Deaggregate: disabled Explicit null: disabled IPv6 tunneling: disabled Strict targeted hellos: disabled Loopback if added: yes Route preference: 9 P2MP max branches: 4096 Unicast transit LSP chaining: disabled P2MP transit LSP chaining: disabled Transit LSP statistics based on route statistics: disabled LDP route acknowledgement: enabled BGP export: enabled No TTL propagate: disabled LDP mtu discovery: disabled LDP SR Mapping Client: disabled Capabilities enabled: p2mp, make-before-break Egress FEC capabilities enabled: entropy-label-capability Downstream unsolicited Sessions: Operational: 1 Retention: liberal Control: ordered Auto targeted sessions: Auto targeted: disabled Dynamic tunnel session count: 0 P2MP: Recursive route: disabled Recursive fec: enabled No rsvp tunneling: disabled Timers: Keepalive interval: 10, Keepalive timeout: 30 Link hello interval: 5, Link hello hold time: 15 Targeted hello interval: 15, Targeted hello hold time: 45 Label withdraw delay: 60, Make before break timeout: 30 Make before break switchover delay: 3 Link protection timeout: 120 Graceful restart: Restart: disabled, Helper: enabled, Restart in process: false Reconnect time: 60000, Max neighbor reconnect time: 120000 Recovery time: 160000, Max neighbor recovery time: 240000 Traffic Engineering: Bgp igp: disabled Both ribs: disabled Mpls forwarding: disabled IGP: Tracking igp metric: disabled Sync session up delay: 10 Session protection: Session protection: disabled Session protection timeout: 0 Interface addresses advertising: 10.1.23.1 192.168.100.2 LDP Job: Read job time quantum: 1000, Write job time quantum: 1000 Read job loop quantum: 100, Write job loop quantum: 100 Backup inbound read job time quantum: 1000, Backup outbound read job time quantum: 1000 Backup inbound read job loop quantum: 100, Backup outbound read job loop quantum: 100 Label allocation: Current number of LDP labels allocated: 2 Total number of LDP labels allocated: 51 Total number of LDP labels freed: 49 Total number of LDP label allocation failure: 0 Current number of labels allocated by all protocols: 0
Significado
A saída confirma que a fez recursiva está habilitada para PE1.
Verifique o rótulo anunciado
Propósito
Verifique os rótulos anunciados do ASBR1 e recebidos pelo PE1.
Ação
A partir do modo operacional, entre no show ldp database
comando.
On ASBR1
user@ASBR1 show ldp database Input label database, 192.168.100.4:0--192.168.100.5:0 Labels received: 5 Label Prefix 145 192.168.100.4/32 3 192.168.100.5/32 139 192.168.100.6/32 140 192.168.100.7/32 144 P2MP root-addr 192.168.100.2, lsp-id 16777220 next-root:192.168.100.4 Output label database, 192.168.100.4:0--192.168.100.5:0 Labels advertised: 4 Label Prefix 3 192.168.100.4/32 164 192.168.100.5/32 159 192.168.100.2/32 158 192.168.100.3/32 Input label database, 192.168.100.4:0--192.168.100.3:0 Labels received: 3 Label Prefix 125 192.168.100.4/32 88 192.168.100.2/32 3 192.168.100.3/32 Output label database, 192.168.100.4:0--192.168.100.3:0 Labels advertised: 5 Label Prefix 3 192.168.100.4/32 164 192.168.100.5/32 159 192.168.100.2/32 158 192.168.100.3/32 163 P2MP root-addr 192.168.100.2, lsp-id 16777220
No PE1
user@PE1 show ldp database Input label database, 192.168.100.2:0--192.168.100.3:0 Labels received: 4 Label Prefix 125 192.168.100.4/32 88 192.168.100.2/32 3 192.168.100.3/32 129 P2MP root-addr 192.168.100.2, lsp-id 16777220 Output label database, 192.168.100.2:0--192.168.100.3:0 Labels advertised: 3 Label Prefix 107 192.168.100.4/32 3 192.168.100.2/32 104 192.168.100.3/32
Significado
Você pode ver o rótulo 3 anunciado do ASBR1 e do rótulo 3 recebido pelo PE1.
Verificar as informações do P2MP FEC
Propósito
Verifique as informações do LDP P2MP FEC do ASBR2.
Ação
A partir do modo operacional, entre no show ldp p2mp fec extensive
comando.
user@PE2 show ldp p2mp fec extensive LDP P2MP FECs: P2MP root-addr 192.168.100.2, lsp-id 16777220 next-root: 192.168.100.5 Fec type: Egress (Active) Label: 52, Reference count: 1
user@ASBR2 show ldp p2mp fec extensive LDP P2MP FECs: P2MP root-addr 192.168.100.2, lsp-id 16777220 Fec type: Transit (Active) Label: 144, Reference count: 1
Significado
A saída mostra que o PE2 forma uma FEC recursiva de LDP para encontrar a rota para a raiz real (PE1).
Verifique as informações do caminho P2MP
Propósito
Verifique as informações do caminho LDP P2MP do PE2.
Ação
A partir do modo operacional, entre no show ldp p2mp path extensive
comando.
user@PE2 show ldp p2mp path extensive P2MP path type: Transit/Egress Output Session (label): 192.168.100.6:0 (52) (Primary) Egress label: 52 Attached FECs: P2MP root-addr 192.168.100.2, lsp-id 16777220 next-root:192.168.100.5 (Active) Address: 0x76f69e0, Reference count: 2
Significado
A saída mostra PE2 com o elemento FEC, no qual o endereço de nó raiz é o endereço do protocolo nexthop ASBR2.
Apêndice 1: Definir comandos em todos os dispositivos
Para configurar rapidamente este exemplo, copie os seguintes comandos, cole-os em um arquivo de texto, remova qualquer quebra de linha, altere os detalhes necessários para combinar com a configuração da sua rede e, em seguida, copie e cole os comandos no CLI no nível de hierarquia [editar].
Usamos sistemas lógicos para representar a fonte e o receptor para este exemplo.
CE1
set system host-name CE1-source set logical-systems source interfaces lt-0/0/0 unit 12 encapsulation ethernet set logical-systems source interfaces lt-0/0/0 unit 12 peer-unit 11 set logical-systems source interfaces lt-0/0/0 unit 12 family inet address 172.16.12.1/30 set logical-systems source interfaces lo0 unit 12 family inet address 192.168.12.12/32 set logical-systems source protocols ospf area 0.0.0.0 interface all set logical-systems source protocols ospf area 0.0.0.0 interface lo0.12 passive set logical-systems source protocols pim rp static address 192.168.100.1 set logical-systems source protocols pim interface lt-0/0/0.12 set chassis fpc 0 pic 0 tunnel-services set chassis network-services enhanced-ip set interfaces lt-0/0/0 description "CONNECTED TO source" set interfaces lt-0/0/0 unit 11 encapsulation ethernet set interfaces lt-0/0/0 unit 11 peer-unit 12 set interfaces lt-0/0/0 unit 11 family inet address 172.16.12.2/30 set interfaces ge-0/0/1 description "CONNECTED TO PE1" set interfaces ge-0/0/1 unit 0 family inet address 172.16.1.1/30 set interfaces lo0 unit 0 family inet address 192.168.100.1/32 set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 from protocol direct set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 then accept set routing-options router-id 192.168.100.1 set routing-options autonomous-system 65101 set protocols bgp group CE1-PE1 type external set protocols bgp group CE1-PE1 family inet unicast set protocols bgp group CE1-PE1 export EXPORT-LOCAL-ROUTES set protocols bgp group CE1-PE1 peer-as 65100 set protocols bgp group CE1-PE1 local-as 65101 set protocols bgp group CE1-PE1 neighbor 172.16.1.2 set protocols ospf area 0.0.0.0 interface all set protocols ospf area 0.0.0.0 interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols pim rp local family inet address 192.168.100.1 set protocols pim interface lo0.0 set protocols pim interface ge-0/0/1.0 set protocols pim interface lt-0/0/0.11
PE1
set system host-name PE1 set chassis network-services enhanced-ip set interfaces ge-0/0/0 description "CONNECTED TO CE1" set interfaces ge-0/0/0 unit 0 family inet address 172.16.1.2/30 set interfaces ge-0/0/1 description "CONNECTED TO P1" set interfaces ge-0/0/1 unit 0 family inet address 10.1.23.1/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.2/32 set interfaces lo0 unit 1 family inet address 192.168.102.1/32 set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 from protocol direct set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 then accept set routing-instances VPN1 instance-type vrf set routing-instances VPN1 protocols bgp group CE1-PE1 type external set routing-instances VPN1 protocols bgp group CE1-PE1 family inet unicast set routing-instances VPN1 protocols bgp group CE1-PE1 export EXPORT-LOCAL-ROUTES set routing-instances VPN1 protocols bgp group CE1-PE1 peer-as 65101 set routing-instances VPN1 protocols bgp group CE1-PE1 local-as 65100 set routing-instances VPN1 protocols bgp group CE1-PE1 neighbor 172.16.1.1 set routing-instances VPN1 protocols mvpn mvpn-mode rpt-spt set routing-instances VPN1 protocols pim rp static address 192.168.100.1 set routing-instances VPN1 protocols pim interface lo0.1 mode sparse set routing-instances VPN1 protocols pim interface ge-0/0/0.0 mode sparse set routing-instances VPN1 interface ge-0/0/0.0 set routing-instances VPN1 interface lo0.1 set routing-instances VPN1 route-distinguisher 192.168.100.2:1 set routing-instances VPN1 vrf-target target:1:1 set routing-instances VPN1 vrf-table-label set routing-instances VPN1 provider-tunnel ldp-p2mp set routing-instances VPN1 provider-tunnel selective group 225.1.1.1/32 source 172.16.12.1/32 ldp-p2mp set routing-instances VPN1 provider-tunnel selective group 225.1.1.1/32 source 172.16.12.1/32 threshold-rate 51 set routing-options router-id 192.168.100.2 set routing-options autonomous-system 65100 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.2 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT family inet-vpn any set protocols bgp group INT family inet-mvpn signaling set protocols bgp group INT peer-as 65100 set protocols bgp group INT local-as 65100 set protocols bgp group INT neighbor 192.168.100.3 set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive fec set protocols mpls interface all set protocols mpls interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
P1
set system host-name P1 set chassis network-services enhanced-ip set interfaces ge-0/0/0 unit 0 family inet address 10.1.23.2/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 unit 0 family inet address 10.1.34.1/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.3/32 set routing-options router-id 192.168.100.3 set routing-options autonomous-system 65100 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.3 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT family inet-vpn any set protocols bgp group INT family inet-mvpn signaling set protocols bgp group INT cluster 192.168.100.3 set protocols bgp group INT local-as 65100 set protocols bgp group INT neighbor 192.168.100.2 set protocols bgp group INT neighbor 192.168.100.4 set protocols bgp group eBGP_PE_PE type external set protocols bgp group eBGP_PE_PE multihop ttl 25 set protocols bgp group eBGP_PE_PE local-address 192.168.100.3 set protocols bgp group eBGP_PE_PE family inet-vpn any set protocols bgp group eBGP_PE_PE family inet-mvpn signaling set protocols bgp group eBGP_PE_PE neighbor 192.168.100.6 peer-as 65200 set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive route set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
ASBR1
set system host-name ASBR1 set chassis network-services enhanced-ip set interfaces ge-0/0/0 unit 0 family inet address 10.1.34.2/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 unit 0 family inet address 10.1.45.1/24 set interfaces ge-0/0/1 unit 0 family iso set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.4/32 set interfaces lo0 unit 0 family iso address 49.0001.0040.0400.4004.00 set policy-options policy-statement To-ASBR2 term 1 from route-filter 192.168.100.2/32 exact set policy-options policy-statement To-ASBR2 term 1 from route-filter 192.168.100.3/32 exact set policy-options policy-statement To-ASBR2 term 1 then accept set policy-options policy-statement To-ASBR2 term 2 then reject set policy-options policy-statement from-direct term 1 from interface lo0.0 set policy-options policy-statement from-direct term 1 then accept set policy-options policy-statement from-ospf term 1 from protocol ospf set policy-options policy-statement from-ospf term 1 then accept set routing-options router-id 192.168.100.4 set routing-options autonomous-system 65100 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.4 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT peer-as 65100 set protocols bgp group INT local-as 65100 set protocols bgp group INT neighbor 192.168.100.3 set protocols bgp group eBGP_ASBR type external set protocols bgp group eBGP_ASBR multihop ttl 2 set protocols bgp group eBGP_ASBR local-address 192.168.100.4 set protocols bgp group eBGP_ASBR family inet labeled-unicast resolve-vpn set protocols bgp group eBGP_ASBR export from-ospf set protocols bgp group eBGP_ASBR export from-direct set protocols bgp group eBGP_ASBR export To-ASBR2 set protocols bgp group eBGP_ASBR neighbor 192.168.100.5 peer-as 65200 set protocols isis interface ge-0/0/1.0 level 2 disable set protocols isis interface lo0.0 set protocols isis level 2 disable set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive fec set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
ASBR2
set system host-name ASBR2 set chassis network-services enhanced-ip set interfaces ge-0/0/0 unit 0 family inet address 10.1.45.2/24 set interfaces ge-0/0/0 unit 0 family iso set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 unit 0 family inet address 10.1.56.1/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.5/32 set interfaces lo0 unit 0 family iso address 49.0001.0050.0500.5005.00 set policy-options policy-statement To-ASBR1 term 1 from route-filter 192.168.100.7/32 exact set policy-options policy-statement To-ASBR1 term 1 from route-filter 192.168.100.6/32 exact set policy-options policy-statement To-ASBR1 term 1 then accept set policy-options policy-statement To-ASBR1 term 2 then reject set policy-options policy-statement from-direct term 1 from interface lo0.0 set policy-options policy-statement from-direct term 1 then accept set policy-options policy-statement from-ospf term 1 from protocol ospf set policy-options policy-statement from-ospf term 1 then accept set routing-options router-id 192.168.100.5 set routing-options autonomous-system 65200 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.5 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT peer-as 65200 set protocols bgp group INT local-as 65200 set protocols bgp group INT neighbor 192.168.100.6 set protocols bgp group eBGP_ASBR type external set protocols bgp group eBGP_ASBR multihop ttl 2 set protocols bgp group eBGP_ASBR local-address 192.168.100.5 set protocols bgp group eBGP_ASBR family inet labeled-unicast resolve-vpn set protocols bgp group eBGP_ASBR export from-ospf set protocols bgp group eBGP_ASBR export from-direct set protocols bgp group eBGP_ASBR export To-ASBR1 set protocols bgp group eBGP_ASBR neighbor 192.168.100.4 peer-as 65100 set protocols isis interface ge-0/0/0.0 level 2 disable set protocols isis interface lo0.0 set protocols isis level 2 disable set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive fec set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
P2
set system host-name P2 set chassis network-services enhanced-ip set interfaces ge-0/0/0 unit 0 family inet address 10.1.56.2/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 unit 0 family inet address 10.1.67.1/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.6/32 set routing-options router-id 192.168.100.6 set routing-options autonomous-system 65200 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.6 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT family inet-vpn any set protocols bgp group INT family inet-mvpn signaling set protocols bgp group INT cluster 192.168.100.6 set protocols bgp group INT local-as 65200 set protocols bgp group INT neighbor 192.168.100.5 set protocols bgp group INT neighbor 192.168.100.7 set protocols bgp group eBGP_PE_PE type external set protocols bgp group eBGP_PE_PE multihop ttl 25 set protocols bgp group eBGP_PE_PE local-address 192.168.100.6 set protocols bgp group eBGP_PE_PE family inet-vpn any set protocols bgp group eBGP_PE_PE family inet-mvpn signaling set protocols bgp group eBGP_PE_PE neighbor 192.168.100.3 peer-as 65100 set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive route set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
PE2
set system host-name PE2 set chassis network-services enhanced-ip set interfaces ge-0/0/0 unit 0 family inet address 10.1.67.2/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 description "CONNECTED TO CE2" set interfaces ge-0/0/1 unit 0 family inet address 172.16.2.2/30 set interfaces lo0 unit 0 family inet address 192.168.100.7/32 set interfaces lo0 unit 1 family inet address 192.168.100.17/32 set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 from protocol direct set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 then accept set routing-instances VPN2 instance-type vrf set routing-instances VPN2 protocols bgp group PE2-CE2 type external set routing-instances VPN2 protocols bgp group PE2-CE2 family inet unicast set routing-instances VPN2 protocols bgp group PE2-CE2 export EXPORT-LOCAL-ROUTES set routing-instances VPN2 protocols bgp group PE2-CE2 peer-as 65201 set routing-instances VPN2 protocols bgp group PE2-CE2 local-as 65200 set routing-instances VPN2 protocols bgp group PE2-CE2 neighbor 172.16.2.1 set routing-instances VPN2 protocols mvpn mvpn-mode rpt-spt set routing-instances VPN2 protocols pim rp static address 192.168.100.1 set routing-instances VPN2 protocols pim interface lo0.1 mode sparse set routing-instances VPN2 protocols pim interface ge-0/0/1.0 mode sparse set routing-instances VPN2 protocols pim interface all set routing-instances VPN2 interface ge-0/0/1.0 set routing-instances VPN2 interface lo0.1 set routing-instances VPN2 route-distinguisher 192.168.100.17:1 set routing-instances VPN2 vrf-target target:1:1 set routing-instances VPN2 vrf-table-label set routing-options router-id 192.168.100.7 set routing-options autonomous-system 65200 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.7 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT family inet-vpn any set protocols bgp group INT family inet-mvpn signaling set protocols bgp group INT peer-as 65200 set protocols bgp group INT local-as 65200 set protocols bgp group INT neighbor 192.168.100.6 set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive fec set protocols mpls interface all set protocols mpls interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
CE2
set system host-name CE2-receiver set logical-systems receiver interfaces lt-0/0/0 unit 22 encapsulation ethernet set logical-systems receiver interfaces lt-0/0/0 unit 22 peer-unit 21 set logical-systems receiver interfaces lt-0/0/0 unit 22 family inet address 172.16.22.22/30 set logical-systems receiver interfaces lo0 unit 22 family inet address 192.168.22.22/32 set logical-systems receiver protocols ospf area 0.0.0.0 interface all set chassis fpc 0 pic 0 tunnel-services set chassis network-services enhanced-ip set interfaces ge-0/0/0 description "CONNECTED TO PE2" set interfaces ge-0/0/0 unit 0 family inet address 172.16.2.1/30 set interfaces lt-0/0/0 description "CONNECTED FROM CE2 TO receiver" set interfaces lt-0/0/0 unit 21 encapsulation ethernet set interfaces lt-0/0/0 unit 21 peer-unit 22 set interfaces lt-0/0/0 unit 21 family inet address 172.16.22.21/30 set interfaces lo0 unit 0 family inet address 192.168.100.8/32 set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 from protocol direct set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 then accept set routing-options router-id 192.168.100.8 set routing-options autonomous-system 65201 set protocols bgp group CE2-PE2 type external set protocols bgp group CE2-PE2 family inet unicast set protocols bgp group CE2-PE2 export EXPORT-LOCAL-ROUTES set protocols bgp group CE2-PE2 peer-as 65200 set protocols bgp group CE2-PE2 local-as 65201 set protocols bgp group CE2-PE2 neighbor 172.16.2.2 set protocols igmp interface lt-0/0/0.21 static group 225.1.1.1 set protocols ospf area 0.0.0.0 interface all set protocols ospf area 0.0.0.0 interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols pim rp static address 192.168.100.1 set protocols pim interface all set protocols pim interface fxp0.0 disable set protocols sap listen 225.1.1.1 port 5000
Apêndice 2: Mostrar saída de configuração em PE1 e ASBR2
- A configuração pe1 completa no formato Curly Brace
- A configuração ASBR2 completa no formato Curly Brace
A configuração pe1 completa no formato Curly Brace
user@PE1# show | no-more system { host-name PE1; } interfaces { ge-0/0/0 { description "CONNECTED TO CE1"; unit 0 { family inet { address 172.16.1.2/30; } } } ge-0/0/1 { description "CONNECTED TO P1"; unit 0 { family inet { address 10.1.23.1/24; } family mpls; } } lo0 { unit 0 { family inet { address 192.168.100.2/32; } } unit 1 { family inet { address 192.168.102.1/32; } } } } policy-options { policy-statement EXPORT-LOCAL-ROUTES { term 1 { from protocol direct; then accept; } } } routing-instances { VPN1 { instance-type vrf; protocols { bgp { group CE11-PE1 { type external; family inet { unicast; } export EXPORT-LOCAL-ROUTES; peer-as 65101; local-as 65100; neighbor 172.16.1.1; } } mvpn { mvpn-mode { rpt-spt; } } pim { rp { static { address 192.168.100.1; } } interface lo0.1; interface ge-0/0/0.0; } } interface ge-0/0/0.0; interface lo0.1; route-distinguisher 192.168.100.2:1; vrf-target target:1:1; vrf-table-label; provider-tunnel { ldp-p2mp; selective { group 225.1.1.1/32 { source 172.16.12.1/32 { ldp-p2mp; threshold-rate 1; } } } } } } routing-options { router-id 192.168.100.2; autonomous-system 65100; nonstop-routing; } protocols { bgp { group INT { type internal; local-address 192.168.100.2; family inet { labeled-unicast { resolve-vpn; } } family inet-vpn { any; } family inet-mvpn { signaling; } export from-direct; peer-as 65100; local-as 65100; neighbor 192.168.100.3; } } ldp { interface all; interface fxp0.0 { disable; } p2mp { recursive { fec; } } } mpls { interface all; interface fxp0.0 { disable; } } ospf { area 0.0.0.0 { interface lo0.0 { passive; } interface all; interface fxp0.0 { disable; } } } }
A configuração ASBR2 completa no formato Curly Brace
user@ASBR2# show | no-more system { host-name ASBR2; } interfaces { ge-0/0/0 { unit 0 { family inet { address 10.1.45.2/24; } family iso; family mpls; } } ge-0/0/1 { unit 0 { family inet { address 10.1.56.1/24; } family mpls; } } lo0 { unit 0 { family inet { address 192.168.100.5/32; } family iso { address 49.0001.0060.0600.6006.00; } } } } policy-options { policy-statement NHP { term 1 { from protocol bgp; then { next-hop self; accept; } } } policy-statement To-ASBR1 { term 1 { from { route-filter 192.168.100.7/32 exact; route-filter 192.168.100.6/32 exact; } then accept; } term 2 { then reject; } } policy-statement from-direct { term 1 { from interface lo0.0; then accept; } } policy-statement from-ospf { term 1 { from protocol ospf; then accept; } } } routing-options { router-id 192.168.100.5; autonomous-system 65200; nonstop-routing; } protocols { bgp { group INT { type internal; local-address 192.168.100.5; family inet { labeled-unicast { resolve-vpn; } } peer-as 65200; local-as 65200; neighbor 192.168.100.6 { export NHP; } } group eBGP_ASBR1-ASBR2 { type external; local-address 192.168.100.5; family inet { labeled-unicast { resolve-vpn; } } export [ from-ospf from-direct To-ASBR1 ]; neighbor 192.168.100.4 { multihop; peer-as 65100; } } } isis { interface ge-0/0/0.0 { level 2 disable; } interface lo0.0 { level 1 { passive; } } } ldp { interface all; interface fxp0.0 { disable; } p2mp { recursive { fec; } } } ospf { traffic-engineering; area 0.0.0.0 { interface ge-0/0/1.0; interface lo0.0 { passive; } } } }