예: EVPN 액티브-액티브 멀티호밍을 위한 LACP 구성
이 예는 이더넷 VPN(EVPN) 액티브-액티브 멀티호밍 네트워크의 멀티호밍 고객 에지(CE) 및 프로바이더 에지(PE) 디바이스에서 링크 어그리게이션 제어 프로토콜(LACP)을 구성하는 방법을 보여줍니다.
요구 사항
이 예에서 사용되는 하드웨어 및 소프트웨어 구성 요소는 다음과 같습니다.
-
MPC(Modular Port Concentrator) FPC(Flexible PIC Concentrator)만 있는 4개의 MX 시리즈 5G 유니버설 라우팅 플랫폼:
-
두 개의 라우터가 공통 멀티호밍 고객 사이트에 연결된 PE 디바이스로 구성됩니다.
-
하나의 라우터는 단일 호밍 고객 사이트에 연결된 원격 PE 디바이스로 구성됩니다.
-
하나의 라우터가 코어 공급자 디바이스로 구성됩니다.
-
-
CE 디바이스 2개, 그 중
-
하나의 CE 디바이스는 두 개의 PE 디바이스에 멀티호밍됩니다.
-
하나의 CE 디바이스는 원격 PE 디바이스에 싱글호밍됩니다.
-
시작하기 전에:
-
디바이스 인터페이스를 구성하고 PE 디바이스의 모든 인터페이스에서 MPLS를 활성화합니다.
-
코어 프로바이더 디바이스와 PE 디바이스 간에 OSPF 또는 기타 IGP를 구성합니다.
-
수신 PE 디바이스에서 원격 송신 PE 디바이스로의 MPLS 및 LSP(label-switched path)를 구성합니다.
-
PE 디바이스 간에 내부 BGP 세션을 구성합니다.
참고:코어 격리를 더 빠르게 감지하고 더 나은 컨버전스를 위해 BGP 세션에서 BFD(Bidirectional Forwarding Detection)를 구성하는 것이 좋습니다.
개요
멀티호밍 CE-PE 링크의 두 엔드포인트 모두에서 LACP를 구성함으로써 EVPN 액티브-액티브 멀티호밍 환경에서 추가적인 중복 수준을 달성할 수 있습니다. 멀티호밍 디바이스는 집계된 트렁크 링크로 구성되며, 여기서 CE-PE 링크의 링크 어그리게이션 그룹(LAG) 인터페이스는 활성 또는 대기 상태일 수 있습니다. LAG 인터페이스가 활성 상태일 때, 데이터 트래픽은 CE-PE 링크를 통해 전송됩니다. LAG 인터페이스가 대기 상태일 때, 데이터 트래픽은 차단되고 LAG 인터페이스 상태를 통신하기 위한 제어 트래픽만 링크를 통해 전송됩니다.
LAG 인터페이스 상태는 LACP에 의해 모니터링되고 작동되어 코어에서 멀티호밍 PE 디바이스의 격리 시 빠른 컨버전스를 보장합니다. 코어 장애가 발생하면 분리된 PE 디바이스에서 null 경로가 발생할 수 있습니다. 그러나 CE-PE 링크에서 LACP를 지원하면 코어 격리 시 멀티호밍 PE 디바이스의 CE 대면 인터페이스가 대기 상태로 설정되어 멀티호밍 CE 디바이스와 주고받는 데이터 트래픽 전송이 차단됩니다. 코어가 장애에서 복구된 후 인터페이스 상태는 대기에서 활성으로 다시 전환됩니다.
EVPN 액티브-액티브 멀티호밍을 위한 LACP에 대한 지원은 MPLS를 사용하는 EVPN과 VXLAN을 사용하는 EVPN에 모두 적용됩니다.
LACP가 CE-PE 링크에 구성되면 코어에서 멀티호밍 PE 디바이스의 격리는 다음과 같이 처리됩니다.
-
멀티호밍 PE 디바이스에 대해 EVPN BGP 피어가 null이면 PE 디바이스가 코어에서 격리됩니다. 절연된 PE 장치에 연결된 CE 장치는 절연된 PE 장치에 의해 코어 장애에 대한 알림을 받습니다.
-
코어 장애에 대해 학습하면 데이터 트래픽이 CE 디바이스에서 분리된 멀티호밍 PE 디바이스로 전달되지 않습니다. 대신 트래픽은 동일한 LAG에 속하는 다른 멀티호밍 PE 디바이스로 우회됩니다. 이는 분리된 PE 디바이스에서 트래픽 블랙홀을 방지하는 데 도움이 됩니다.
-
멀티호밍 CE 디바이스가 여러 활성 멀티호밍 PE 디바이스에 대한 트래픽 로드 밸런싱을 위해 LAG를 사용하는 경우, 해당 LAG에 대한 모든 멀티호밍 PE 디바이스에 구성된 동일한 시스템 ID와 함께 LACP 구성은 연결된 모든 멀티호밍 CE 링크에 동기화되지 않은 LACP 트리거를 트리거합니다.
멀티호밍 디바이스에서 LACP를 구성할 때 다음 고려 사항을 알고 있어야 합니다.
-
LAG 링크는 UP/DOWN 작동 상태에 관계없이 활성 또는 대기 상태에서 작동할 수 있습니다.
-
시스템 재부팅 시 멀티호밍 PE 디바이스의 LACP 링크는 활성 상태입니다.
-
컨트롤 플레인이 다운되거나 BGP-EVPN 세션이 다운되면 LACP는 어그리게이션 포트에 대해 멀티플렉서 상태 시스템을 실행하고 링크를 액티브에서 스탠바이로 이동하도록 알림을 받습니다.
-
인터페이스는 활성 상태에서 작동하고 작동 상태도 업이 아니면 업으로 처리되지 않습니다.
-
다음 기능은 EVPN 액티브-액티브 멀티호밍의 LACP에서 지원되지 않습니다:
-
LACP 시스템 ID에서 ESI(Ethernet Segment Identifier) 값 자동 도출.
-
비 LAG 인터페이스에 대한 중복 범위.
-
정적 LAG를 사용한 코어 격리를 위한 이중화 커버리지.
-
노드 격리.
-
EVPN 액티브-액티브 멀티호밍을 사용한 LACP에 대한 액세스 실패.
-
토폴로지
그림 1 은 멀티호밍 CE 및 PE 디바이스에 LACP가 구성된 EVPN 액티브-액티브 멀티호밍 네트워크를 보여줍니다. 디바이스 CE1은 싱글호밍이며 원격 PE 디바이스인 PE1에 연결됩니다. 디바이스 PE2 및 디바이스 PE3는 공통 멀티호밍 CE—CE2에 연결됩니다. 디바이스 P는 모든 PE 디바이스(PE1, PE2, PE3)가 연결된 코어 디바이스입니다.
멀티호밍 디바이스(디바이스 CE2, 디바이스 PE2, 디바이스 PE3)의 엔드포인트는 CE-PE 링크에서 LACP로 구성됩니다.
에서의 LACP 지원
디바이스 PE3의 코어 격리는 다음과 같이 처리됩니다.
-
멀티호밍 CE-PE 링크에서 LACP가 구성된 후, LACP 구성과 운영 데이터는 LACP 피어 간에 동기화되어 LAG로 작동합니다.
LACP 피어 간의 동기화는 제어 PDU의 교환과 함께 발생하며 다음과 같은 이유로 필요합니다.
-
이더넷 번들의 링크 상태를 확인하려면(모두 활성 또는 대기)
-
PE 디바이스에 LACP 포트 키가 구성될 때 잘못된 CE 디바이스 구성을 감지하고 처리합니다.
-
PE 디바이스에 LACP 포트 키가 구성될 때 CE 디바이스와 PE 디바이스 간의 잘못된 배선을 감지하고 처리합니다.
-
LACP 스피커가 수렴할 수 없을 때 작업자 또는 파트너 이탈을 감지하고 이에 대응합니다.
-
-
디바이스 PE2 및 디바이스 PE3가 하나 이상의 피어와 BGP 세션을 구축한 후, CE-PE 링크의 상태는 LACP에 의해 차단 해제 모드로 설정됩니다.
-
코어에 장애가 발생하고 디바이스 PE2의 BGP EVPN 피어가 null이 되면 디바이스 PE2는 코어에서 격리됩니다. 이로 인해 디바이스 PE2에서 null 경로가 발생할 수 있습니다. 이러한 상황을 방지하기 위해 디바이스 CE2를 마주보고 있는 디바이스 PE2의 LAG 인터페이스는 LACP에 의해 활성 상태에서 대기 상태로 변경됩니다.
-
연결된 멀티호밍 CE2 링크의 LACP에서 동기화되지 않은 알림이 전송되어 디바이스 CE2와 디바이스 PE2 간의 트래픽 전송을 차단합니다.
-
컨트롤 플레인이 회복되면, 즉 디바이스 PE2가 다른 EVPN PE와 BGP 세션을 설정할 때, 디바이스 PE2의 LAG 인터페이스는 LACP에 의해 대기에서 활성으로 다시 전환됩니다.
구성
CLI 빠른 구성
이 예를 빠르게 구성하려면, 아래 명령을 복사하여 텍스트 파일로 붙여 넣은 다음 모든 라인브레이크를 제거하고, 네트워크 구성을 일치하는 데 필요한 세부 사항을 변경하고, 계층 수준에서 [edit] 명령을 복사하여 CLI에 붙여 넣은 다음, 구성 모드에서 들어갑니다 commit .
디바이스 CE1
set interfaces ge-0/0/0 vlan-tagging set interfaces ge-0/0/0 mac 00:00:00:00:00:01 set interfaces ge-0/0/0 unit 0 vlan-id 100 set interfaces ge-0/0/0 unit 0 family inet address 192.0.2.1/26 set interfaces lo0 unit 0 family inet address 10.255.255.8/32
디바이스 CE2
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 gigether-options 802.3ad ae0 set interfaces ge-0/0/1 gigether-options 802.3ad ae0 set interfaces ae0 flexible-vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 mac 00:00:00:00:00:03 set interfaces ae0 aggregated-ether-options lacp active set interfaces ae0 unit 0 vlan-id 100 set interfaces ae0 unit 0 family inet address 192.0.2.2/26 set interfaces lo0 unit 0 family inet address 10.255.255.9/32
디바이스 PE1
set interfaces ge-0/0/0 vlan-tagging set interfaces ge-0/0/0 encapsulation flexible-ethernet-services set interfaces ge-0/0/0 unit 0 encapsulation vlan-bridge set interfaces ge-0/0/0 unit 0 vlan-id 100 set interfaces ge-0/0/1 unit 0 family inet address 192.0.2.65/26 set interfaces ge-0/0/1 unit 0 family iso set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 10.255.255.1/32 set routing-options router-id 10.255.255.1 set routing-options autonomous-system 65100 set protocols mpls interface all set protocols mpls interface fxp0.0 disable set protocols mpls interface ge-0/0/1.0 set protocols bgp local-address 10.255.255.1 set protocols bgp family inet unicast set protocols bgp group ibgp type internal set protocols bgp group ibgp local-address 10.255.255.1 set protocols bgp group ibgp family evpn signaling set protocols bgp group ibgp neighbor 10.255.255.2 set protocols bgp group ibgp neighbor 10.255.255.3 set protocols ospf area 0.0.0.0 interface all set protocols ospf area 0.0.0.0 interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ldp interface ge-0/0/1.0 set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp interface lo0.0 set routing-instances ALPHA instance-type evpn set routing-instances ALPHA vlan-id 100 set routing-instances ALPHA interface ge-0/0/0.0 set routing-instances ALPHA route-distinguisher 10.255.255.1:100 set routing-instances ALPHA vrf-target target:65100:100 set routing-instances ALPHA protocols evpn label-allocation per-instance set policy-options policy-statement load_balance then load-balance per-packet set routing-options forwarding-table export load_balance
디바이스 PE2
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 unit 0 family inet address 172.16.0.2/24 set interfaces ge-0/0/0 unit 0 family iso set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 gigether-options 802.3ad ae0 set interfaces ge-0/0/2 unit 0 family inet address 203.0.113.2/24 set interfaces ge-0/0/2 unit 0 family iso set interfaces ge-0/0/2 unit 0 family mpls set interfaces ae0 vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 esi 00:11:22:33:44:55:66:77:88:99 set interfaces ae0 esi all-active set interfaces ae0 aggregated-ether-options lacp active set interfaces ae0 aggregated-ether-options lacp system-id 00:01:02:03:04:05 set interfaces ae0 unit 0 encapsulation vlan-bridge set interfaces ae0 unit 0 vlan-id 100 set interfaces lo0 unit 0 family inet address 10.255.255.2/32 set routing-options router-id 10.255.255.2 set routing-options autonomous-system 65100 set protocols mpls interface all set protocols mpls interface fxp0.0 disable set protocols bgp local-address 10.255.255.2 set protocols bgp family inet unicast set protocols bgp family l2vpn signaling set protocols bgp group ibgp type internal set protocols bgp group ibgp local-address 10.255.255.2 set protocols bgp group ibgp family evpn signaling set protocols bgp group ibgp neighbor 10.255.255.3 set protocols bgp group ibgp neighbor 10.255.255.1 set protocols ospf area 0.0.0.0 interface all set protocols ospf area 0.0.0.0 interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp interface lo0.0 set routing-instances ALPHA instance-type evpn set routing-instances ALPHA vlan-id 100 set routing-instances ALPHA interface ae0.0 set routing-instances ALPHA route-distinguisher 10.255.255.2:100 set routing-instances ALPHA vrf-target target:65100:100 set policy-options policy-statement load_balance then load-balance per-packet set routing-options forwarding-table export load_balance
디바이스 PE3
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 gigether-options 802.3ad ae0 set interfaces ge-0/0/1 unit 0 family inet address 198.51.100.2/24 set interfaces ge-0/0/1 unit 0 family iso set interfaces ge-0/0/1 unit 0 family mpls set interfaces ge-0/0/2 unit 0 family inet address 203.0.113.1/24 set interfaces ge-0/0/2 unit 0 family iso set interfaces ge-0/0/2 unit 0 family mpls set interfaces ae0 vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 esi 00:11:22:33:44:55:66:77:88:99 set interfaces ae0 esi all-active set interfaces ae0 aggregated-ether-options lacp active set interfaces ae0 aggregated-ether-options lacp system-id 00:01:02:03:04:05 set interfaces ae0 unit 0 encapsulation vlan-bridge set interfaces ae0 unit 0 vlan-id 100 set interfaces lo0 unit 0 family inet address 10.255.255.3/32 set routing-options router-id 10.255.255.3 set routing-options autonomous-system 65100 set protocols mpls interface all set protocols mpls interface fxp0.0 disable set protocols bgp local-address 10.255.255.3 set protocols bgp family inet unicast set protocols bgp group ibgp type internal set protocols bgp group ibgp local-address 10.255.255.3 set protocols bgp group ibgp family evpn signaling set protocols bgp group ibgp neighbor 10.255.255.2 set protocols bgp group ibgp neighbor 10.255.255.1 set protocols bgp group l2vpn type internal set protocols bgp group l2vpn family l2vpn signaling set protocols bgp group l2vpn neighbor 10.255.255.4 set protocols ospf area 0.0.0.0 interface all set protocols ospf area 0.0.0.0 interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp interface lo0.0 set routing-instances ALPHA instance-type evpn set routing-instances ALPHA vlan-id 100 set routing-instances ALPHA interface ae0.0 set routing-instances ALPHA route-distinguisher 10.255.255.3:100 set routing-instances ALPHA vrf-target target:65100:100 set policy-options policy-statement load_balance then load-balance per-packet set routing-options forwarding-table export load_balance
디바이스 P
set interfaces ge-0/0/0 unit 0 family inet address 192.0.2.66/26 set interfaces ge-0/0/0 unit 0 family iso set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 unit 0 family inet address 172.16.0.1/24 set interfaces ge-0/0/1 unit 0 family iso set interfaces ge-0/0/1 unit 0 family mpls set interfaces ge-0/0/2 unit 0 family inet address 198.51.100.1/24 set interfaces ge-0/0/2 unit 0 family iso set interfaces ge-0/0/2 unit 0 family mpls set interfaces lo0 unit 0 family inet address 10.255.255.4/32 set routing-options router-id 10.255.255.4 set routing-options autonomous-system 100 set protocols rsvp interface all aggregate set protocols mpls interface ge-0/0/0.0 set protocols mpls interface ge-0/0/1.0 set protocols mpls interface ge-0/0/2.0 set protocols bgp group l2vpn type internal set protocols bgp group l2vpn local-address 10.255.255.4 set protocols bgp group l2vpn family l2vpn signaling set protocols bgp group l2vpn neighbor 10.255.255.3 set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ospf area 0.0.0.0 interface ge-0/0/2.0 set protocols ldp interface all set routing-instances vpls1 instance-type vpls set routing-instances vpls1 route-distinguisher 10.255.255.4:100 set routing-instances vpls1 vrf-target target:200:200 set routing-instances vpls1 protocols vpls no-tunnel-services set routing-instances vpls1 protocols vpls site vpls-pe site-identifier 3 set routing-instances vpls1 protocols vpls site vpls-pe best-site set policy-options policy-statement load_balance then load-balance per-packet set routing-options forwarding-table export load_balance
절차
단계별 절차
다음 예에서는 구성 계층에서 다양한 수준의 탐색이 필요합니다. CLI 탐색에 대한 정보는 CLI 사용자 가이드의 구성 모드에서 CLI 편집기 사용을 참조하십시오.
디바이스 PE2 구성:
적절한 인터페이스 이름, 주소 및 기타 매개 변수를 수정한 후 다른 멀티호밍 PE 디바이스에 대해 이 절차를 반복합니다.
-
디바이스 PE2에서 생성할 어그리게이션 이더넷 인터페이스의 수를 지정합니다.
[edit chassis] user@PE2# set aggregated-devices ethernet device-count 1
-
디바이스 P 및 디바이스 PE3에 각각 연결하는 디바이스 PE2 인터페이스를 구성합니다.
[edit interfaces] user@PE2# set ge-0/0/0 unit 0 family inet address 172.16.0.2/24 user@PE2# set ge-0/0/0 unit 0 family iso user@PE2# set ge-0/0/0 unit 0 family mpls user@PE2# set ge-0/0/2 unit 0 family inet address 203.0.113.2/24 user@PE2# set ge-0/0/2 unit 0 family iso user@PE2# set ge-0/0/2 unit 0 family mpls
-
멀티호밍 디바이스 CE2를 향한 ae0 어그리게이션 번들 내에서 디바이스 PE2 인터페이스를 구성합니다.
[edit interfaces] user@PE2# set ge-0/0/1 gigether-options 802.3ad ae0 user@PE2# set ae0 vlan-tagging user@PE2# set ae0 encapsulation flexible-ethernet-services user@PE2# set ae0 unit 0 encapsulation vlan-bridge user@PE2# set ae0 unit 0 vlan-id 100
-
어그리게이션 이더넷 인터페이스에서 액티브-액티브 멀티호밍을 구성합니다.
[edit interfaces] user@PE2# set ae0 esi 00:11:22:33:44:55:66:77:88:99 user@PE2# set ae0 esi all-active
-
디바이스 PE2의 CE-PE 링크에서 LACP를 구성합니다.
[edit interfaces] user@PE2# set ae0 aggregated-ether-options lacp active user@PE2# set ae0 aggregated-ether-options lacp system-id 00:01:02:03:04:05
-
디바이스 PE2의 루프백 인터페이스를 구성합니다.
[edit interfaces] user@PE2# set lo0 unit 0 family inet address 10.255.255.2/32
-
디바이스 PE2의 라우터 ID 및 자율 시스템 번호를 구성합니다.
[edit routing-options] user@PE2# set router-id 10.255.255.2 user@PE2# set autonomous-system 65100
-
관리 인터페이스를 제외한 디바이스 PE2의 모든 인터페이스에 MPLS를 구성합니다.
[edit protocols] user@PE2# set mpls interface all user@PE2# set mpls interface fxp0.0 disable
-
디바이스 PE1이 다른 EVPN PE 디바이스와 피어링하도록 내부 BGP 그룹을 구성합니다.
[edit protocols] user@PE2# set bgp local-address 10.255.255.2 user@PE2# set bgp family inet unicast user@PE2# set bgp family l2vpn signaling user@PE2# set bgp group ibgp type internal user@PE2# set bgp group ibgp local-address 10.255.255.2 user@PE2# set bgp group ibgp family evpn signaling user@PE2# set bgp group ibgp neighbor 10.255.255.3 user@PE2# set bgp group ibgp neighbor 10.255.255.1
-
관리 인터페이스를 제외한 디바이스 PE2의 모든 인터페이스에 OSPF 및 LDP를 구성합니다.
[edit protocols] user@PE2# set ospf area 0.0.0.0 interface all user@PE2# set ospf area 0.0.0.0 interface fxp0.0 disable user@PE2# set ospf area 0.0.0.0 interface lo0.0 passive user@PE2# set ldp interface all user@PE2# set ldp interface fxp0.0 disable user@PE2# set ldp interface lo0.0
-
디바이스 PE2에서 EVPN 라우팅 인스턴스를 구성하고 라우팅 인스턴스 매개 변수를 할당합니다.
[edit routing-instances] user@PE2# set ALPHA instance-type evpn user@PE2# set ALPHA vlan-id 100 user@PE2# set ALPHA interface ae0.0 user@PE2# set ALPHA route-distinguisher 10.255.255.2:100 user@PE2# set ALPHA vrf-target target:65100:100
-
ECMP 로드 밸런싱 정책을 생성하고 적용합니다.
[edit] user@PE2# set policy-options policy-statement load_balance then load-balance per-packet user@PE2# set routing-options forwarding-table export load_balance
결과
구성 모드에서 , show interfaces, show routing-options, show protocols및 show routing-instances 명령을 show chassis입력하여 구성을 확인합니다. 출력에 의도한 구성이 표시되지 않으면 이 예의 지침을 반복하여 구성을 수정합니다.
user@PE2# show chassis
aggregated-devices {
ethernet {
device-count 1;
}
}
user@PE2# show interfaces
ge-0/0/0 {
unit 0 {
family inet {
address 172.16.0.2/24;
}
family iso;
family mpls;
}
}
ge-0/0/1 {
gigether-options {
802.3ad ae0;
}
}
ge-0/0/2 {
unit 0 {
family inet {
address 203.0.113.2/24;
}
family iso;
family mpls;
}
}
ae0 {
vlan-tagging;
encapsulation flexible-ethernet-services;
esi {
00:11:22:33:44:55:66:77:88:99;
all-active;
}
aggregated-ether-options {
lacp {
active;
system-id 00:01:02:03:04:05;
}
}
unit 0 {
encapsulation vlan-bridge;
vlan-id 100;
}
}
lo0 {
unit 0 {
family inet {
address 10.255.255.2/32;
}
}
}
user@PE2# show routing-options
router-id 10.255.255.2;
autonomous-system 65100;
forwarding-table {
export load_balance;
}
}
user@PE2# show protocols
mpls {
interface all;
interface fxp0.0 {
disable;
}
}
bgp {
local-address 10.255.255.2;
family inet {
unicast;
}
family l2vpn {
signaling;
}
group ibgp {
type internal;
local-address 10.255.255.2;
family evpn {
signaling;
}
neighbor 10.255.255.3;
neighbor 10.255.255.1;
}
}
ospf {
area 0.0.0.0 {
interface all;
interface fxp0.0 {
disable;
}
interface lo0.0 {
passive;
}
}
}
ldp {
interface all;
interface fxp0.0 {
disable;
}
interface lo0.0;
}
user@PE2# show routing-instances
ALPHA {
instance-type evpn;
vlan-id 100;
interface ae0.0;
route-distinguisher 10.255.255.2:100;
vrf-target target:65100:100;
protocols {
evpn {
traceoptions {
file evpn-alpha.txt size 4294967295;
flag all;
}
}
}
}
user@PE2# show policy-options
then {
load-balance per-packet;
}
}
디바이스 구성이 완료되면 구성 모드에서 들어갑니다 commit .
절차
단계별 절차
다음 예에서는 구성 계층에서 다양한 수준의 탐색이 필요합니다. CLI 탐색에 대한 정보는 CLI 사용자 가이드의 구성 모드에서 CLI 편집기 사용을 참조하십시오.
디바이스 CE2 구성:
적절한 인터페이스 이름, 주소 및 기타 매개 변수를 수정한 후 다른 멀티호밍 CE 디바이스에 대해 이 절차를 반복합니다.
-
디바이스 CE2에서 생성할 어그리게이션 이더넷 인터페이스의 수를 지정합니다.
[edit chassis] user@CE2# set aggregated-devices ethernet device-count 1
-
디바이스 PE2 및 디바이스 PE3을 향한 ae0 어그리게이션 번들 내에서 디바이스 CE2 인터페이스를 구성합니다.
[edit interfaces] user@CE2# set ge-0/0/0 gigether-options 802.3ad ae0 user@CE2# set ge-0/0/1 gigether-options 802.3ad ae0 user@CE2# set ae0 flexible-vlan-tagging user@CE2# set ae0 encapsulation flexible-ethernet-services user@E2# set ae0 mac 00:00:00:00:00:03 user@E2# set ae0 unit 0 vlan-id 100 user@CE2# set ae0 unit 0 family inet address 192.0.2.2/26
-
디바이스 CE2의 CE-PE 링크에서 LACP를 구성합니다.
[edit interfaces] user@CE2# set ae0 aggregated-ether-options lacp active
-
디바이스 CE2의 루프백 인터페이스를 구성합니다.
[edit interfaces] user@CE2# set interfaces lo0 unit 0 family inet address 10.255.255.9/32
결과
구성 모드에서 , show interfaces, show routing-options, show protocols및 show routing-instances 명령을 show chassis입력하여 구성을 확인합니다. 출력에 의도한 구성이 표시되지 않으면 이 예의 지침을 반복하여 구성을 수정합니다.
user@CE2# show chassis
aggregated-devices {
ethernet {
device-count 1;
}
}
user@CE2# show interfaces
ge-0/0/0 {
gigether-options {
802.3ad ae0;
}
}
ge-0/0/1 {
gigether-options {
802.3ad ae0;
}
}
ae0 {
flexible-vlan-tagging;
encapsulation flexible-ethernet-services;
mac 00:00:00:00:00:03;
aggregated-ether-options {
lacp {
active;
}
}
unit 0 {
vlan-id 100;
family inet {
address 192.0.2.2/26;
}
}
}
lo0 {
unit 0 {
family inet {
address 10.255.255.9/32;
}
}
}
디바이스 구성이 완료되면 구성 모드에서 들어갑니다 commit .
검증
구성이 제대로 작동하고 있는지 확인합니다.
BGP 세션 상태 확인
목적
디바이스 PE2가 다른 EVPN PE 디바이스와 BGP 피어링을 설정했는지 확인합니다.
작업
운영 모드에서 명령을 실행합니다 show bgp summary .
user@PE2> show bgp summary
Groups: 1 Peers: 2 Down peers: 0
Table Tot Paths Act Paths Suppressed History Damp State Pending
inet.0
0 0 0 0 0 0
bgp.l2vpn.0
0 0 0 0 0 0
bgp.evpn.0
5 5 0 0 0 0
Peer AS InPkt OutPkt OutQ Flaps Last Up/Dwn State|#Active/Received/Accepted/Damped...
10.255.255.1 65100 6316 6333 0 0 1d 23:33:03 Establ
bgp.evpn.0: 1/1/1/0
ALPHA.evpn.0: 1/1/1/0
__default_evpn__.evpn.0: 0/0/0/0
10.255.255.3 65100 6318 6332 0 0 1d 23:32:56 Establ
bgp.evpn.0: 4/4/4/0
ALPHA.evpn.0: 3/3/3/0
__default_evpn__.evpn.0: 1/1/1/0
의미
디바이스 PE2는 다른 EVPN PE 디바이스(디바이스 PE1 및 디바이스 PE3)와 BGP 피어링을 설정했습니다.
멀티호밍 PE 디바이스의 LACP 인터페이스 상태 확인
목적
디바이스 PE2에서 LACP 인터페이스 상태를 확인합니다.
작업
운영 모드에서 and show interfaces ae* terse 명령을 실행합니다show lacp interfaces.
user@PE2> show lacp interfaces
Aggregated interface: ae0
LACP state: Role Exp Def Dist Col Syn Aggr Timeout Activity
ge-0/0/1 Actor No No Yes Yes Yes Yes Fast Active
ge-0/0/1 Partner No No Yes Yes Yes Yes Fast Active
LACP protocol: Receive State Transmit State Mux State
ge-0/0/1 Current Fast periodic Collecting distributing
user@PE2> show interfaces ae* terse Interface Admin Link Proto Local Remote ae0 up up ae0.0 up up bridge ae0.32767 up up multiservice
의미
LACP LAG 인터페이스 상태는 다른 EVPN PE 디바이스와 BGP 피어링이 있을 때 활성화됩니다. 어그리게이션 이더넷 인터페이스의 물리적 인터페이스 상태가 작동 중입니다.
분리된 PE 디바이스의 LACP 인터페이스 상태 확인
목적
BGP EVPN 피어가 설정되지 않은 경우 디바이스 PE2의 LACP 인터페이스 상태를 확인합니다.
작업
운영 모드에서 and show interfaces ae* terse 명령을 실행합니다show lacp interfaces.
user@PE2> show lacp interfaces
Aggregated interface: ae0
LACP state: Role Exp Def Dist Col Syn Aggr Timeout Activity
ge-0/0/1 Actor No No No No No Yes Fast Active
ge-0/0/1 Partner No No No No Yes Yes Fast Active
LACP protocol: Receive State Transmit State Mux State
ge-0/0/1 Current Fast periodic Waiting
user@PE2> show interfaces ae* terse Interface Admin Link Proto Local Remote ae0 up down ae0.0 up down bridge ae0.32767 up down multiservice
의미
코어 격리로 인해 LAG 인터페이스 상태는 대기 상태이며 디바이스 CE2와 주고받는 트래픽을 차단합니다. 그 결과, 코어 장애 복구 시 LACP 링크 상태가 다시 활성으로 전환될 때까지 어그리게이션 이더넷 인터페이스의 물리적 인터페이스 상태도 다운됩니다.
EVPN 라우팅 인스턴스 확인
목적
디바이스 PE2에서 EVPN 라우팅 인스턴스 매개 변수를 확인합니다.
작업
운영 모드에서 명령을 실행합니다 show evpn instance extensive .
user@PE2> show evpn instance extensive
Instance: ALPHA
Route Distinguisher: 10.255.255.2:100
VLAN ID: 100
Per-instance MAC route label: 299776
MAC database status Local Remote
MAC advertisements: 0 0
MAC+IP advertisements: 0 0
Default gateway MAC advertisements: 0 0
Number of local interfaces: 1 (1 up)
Interface name ESI Mode Status
ae0.0 00:11:22:33:44:55:66:77:88:99 all-active Up
Number of IRB interfaces: 0 (0 up)
Number of bridge domains: 1
VLAN Domain ID Intfs / up IRB intf Mode MAC sync IM route label
100 1 1 Extended Enabled 300048
Number of neighbors: 2
Address MAC MAC+IP AD IM ES
10.255.255.1 0 0 0 1 0
10.255.255.3 0 0 2 1 0
Number of ethernet segments: 1
ESI: 00:11:22:33:44:55:66:77:88:99
Status: Resolved by IFL ae0.0
Local interface: ae0.0, Status: Up/Forwarding
Number of remote PEs connected: 1
Remote PE MAC label Aliasing label Mode
10.255.255.3 0 299856 all-active
Designated forwarder: 10.255.255.2
Backup forwarder: 10.255.255.3
Last designated forwarder update: Nov 21 01:27:52
Advertised MAC label: 299856
Advertised aliasing label: 299856
Advertised split horizon label: 299968
Instance: __default_evpn__
Route Distinguisher: 10.255.255.2:0
Number of bridge domains: 0
Number of neighbors: 1
Address MAC MAC+IP AD IM ES
10.255.255.3 0 0 0 0 1
의미
출력은 다음 정보를 제공합니다.
-
EVPN 라우팅 인스턴스
-
각 인터페이스의 작동 모드
-
라우팅 인스턴스의 이웃
-
각 이웃에서 수신된 서로 다른 경로 수
-
라우팅 인스턴스에 연결된 ESI
-
라우팅 인스턴스의 이더넷 세그먼트 수
-
EVPN 인스턴스(EVI)의 각 ESI에 대한 DF(지정 전달자) 선택 역할
-
라우팅 인스턴스에 대한 VLAN ID 및 MAC 레이블