예: 멀티포인트 LDP 재귀 FEC 구성
SUMMARY
당사 콘텐츠 테스트 팀은 이 예제를 검증하고 업데이트했습니다.
이 구성 예를 사용하여 OSPF 네트워크에서 LDP(Multipoint Label Distribution Protocol) FEC(Recursive Forwarding Equivalence Class)를 구성하고 확인합니다. 이를 통해 백본에 루트 노드로 직접 경로가 없는 경우 두 AS(Autonomous System) 간에 MLDP P2MP(Point-to-Multipoint) 터널을 형성할 수 있습니다.
독서 시간 |
45분 |
구성 시간 |
1시간 |
예제 사전 요구 사항
하드웨어 요구 사항 |
CE, PE 및 중간 라우터로서의 MX 시리즈 라우터. |
소프트웨어 요구 사항 |
모든 디바이스에서 실행되는 Junos OS 릴리스 23.4R1 이상. |
시작하기 전에
이점 |
MLDP(Multipoint LDP) FEC(Recursive Forwarding Equivalence Class)는 중간 라우터에 루트 노드에 도달할 수 있는 경로가 없는 구축에 유용합니다. |
자세히 알아보기 |
기능 개요
사용 기술 |
|
기본 확인 작업 |
|
토폴로지 개요
이 구성 예에서는 멀티캐스트 트래픽을 전송할 수 있는 호스트 시스템과 멀티캐스트 트래픽을 수신할 수 있는 호스트 시스템을 보여 줍니다. 두 개의 자율 시스템(AS)을 보여줍니다. PE1, P1 및 ASBR1 라우터와 PE2, P2 및 ASBR2 라우터로 구성된 AS65020 구성된 AS65010. AS 내의 모든 라우터는 OSPF를 IGP로 실행합니다. 모든 라우터는 영역 0에 속합니다. 고객 에지(CE) 디바이스는 EBGP 피어링을 사용하여 레이어 3 VPN 서비스의 일부로 공급자 에지 디바이스와 경로를 교환합니다. PE 디바이스는 IBGP를 사용하여 원격 PE와 IPv4 경로를 교환합니다.
공급자 에지(PE2) 및 AS 경계 라우터(ASBR2) 라우터에는 루트 PE1에 대한 경로가 있습니다. 그러나 P(P1 및 P2) 라우터에는 루트에 대한 경로가 없습니다. MLDP P2MP 터널은 송신(PE2)에서 수신(PE1) 라우터로 형성되어 mLDP를 통해 FEC 요소를 전달합니다.
호스트 이름 |
역할/롤 |
기능 |
---|---|---|
원격 CE 디바이스. |
EBGP 피어-PE1 라우터를 통해 CE 디바이스 루프백 주소를 보급하고 학습합니다. |
|
로컬 PE 디바이스. |
PE1에 대한 직접 경로가 없는 시나리오에서 다른 AS의 중간 라우터가 도달하려고 시도하는 루트 노드입니다. |
|
중간 장치 P1. |
PE2 라우터에 대한 경로가 없는 중간 라우터입니다. ASBR1에서 PE1-FEC를 수신하여 일반 LDP P2MP FEC로 처리합니다. |
|
AS 경계 라우터 ASBR1 |
EBGP 피어-ASBR2 라우터를 통해 IGP 경로를 보급하고 학습합니다. ASBR1은 루트에 대한 경로(IGP 경로)를 찾고 추가 처리를 수행하기 전에 ASBR1-FEC를 PE1-FEC(Recursive Opaque Value)의 내용으로 대체합니다. |
|
AS 경계 라우터 ASBR2 |
EBGP 피어에서 ASBR1 라우터로 IGP 경로를 보급하고 학습합니다. P2의 루트 노드 역할을 하며 실제 루트(PE1)에 대한 경로를 찾기 위해 조회를 수행합니다. PE1에 대한 경로가 BGP 경로인지 확인하고 ASBR1에서 PE1에 LDP 재귀 FEC를 형성합니다. |
|
중간 장치 P2. |
PE1 라우터에 대한 경로가 없는 중간 라우터입니다. PE2에서 mLDP를 통해 FEC 요소를 수신합니다. 그러나 PE1에 대한 경로가 없으므로 동일한 FEC 요소를 사용할 수 없습니다. |
|
로컬 PE 디바이스. |
PE2는 PE1 주소를 루트 노드 주소로 사용하여 MP FEC 요소를 생성하여 PE2에서 루트 PE1로의 P2MP 터널을 형성합니다. |
|
원격 CE 디바이스. |
PE2 라우터에 대한 EBGP 피어링으로 CE 디바이스 루프백 주소를 보급하고 학습합니다. |
토폴로지 그림
PE1 구성 단계
이 섹션에서는 이 예에서 PE1 디바이스를 구성하는 데 필요한 주요 구성 작업을 중점적으로 설명합니다. 첫 번째 단계는 기본 레이어 3 VPN 서비스를 구성하는 일반적인 단계입니다. 다음 단계는 재귀 FEC 구성과 관련이 있습니다. 두 PE 디바이스 모두 유사한 구성을 가지고 있으며, 여기서는 PE1에 초점을 맞춥니다.
먼저 일반 레이어 3 VPN을 프로비저닝합니다.
-
IPv4에 대한 루프백, 코어 페이싱, CE 페이싱 인터페이스를 구성하고 번호를 매깁니다. MPLS 스위칭을 지원하기 위해 P 디바이스에 연결하는 코어 대면 인터페이스에서 패밀리를 활성화
mpls
해야 합니다. -
AS(Autonomous System) 번호를 구성합니다.
-
루프백 및 코어 대면 인터페이스에서 단일 영역 OSPF를 구성합니다.
-
모든 인터페이스에서 LDP, MPLS를 구성합니다.
-
주소 패밀리를
inet-vpn
포함하도록 IBGP 피어링 세션을 구성하여 IPv4 레이어 3 VPN을 지원합니다. CE1 디바이스에 대한 VRF 기반 라우팅 인스턴스를 구성합니다. EBGP를 PE-CE 라우팅 프로토콜로 사용합니다.
[edit] set interfaces ge-0/0/0 description "CONNECTED TO CE1" set interfaces ge-0/0/0 unit 0 family inet address 172.16.1.2/30 set interfaces ge-0/0/1 unit 0 family inet address 10.1.23.1/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.2/32 set interfaces lo0 unit 1 family inet address 192.168.102.1/32
[edit] set chassis network-services enhanced-ip
[edit] set routing-instances VPN1 instance-type vrf set routing-instances VPN1 protocols bgp group CE1-PE1 type external set routing-instances VPN1 protocols bgp group CE1-PE1 family inet unicast set routing-instances VPN1 protocols bgp group CE1-PE1 export EXPORT-LOCAL-ROUTES set routing-instances VPN1 protocols bgp group CE1-PE1 peer-as 65101 set routing-instances VPN1 protocols bgp group CE1-PE1 local-as 65100 set routing-instances VPN1 protocols bgp group CE1-PE1 neighbor 172.16.1.1 set routing-instances VPN1 interface ge-0/0/0.0 set routing-instances VPN1 interface lo0.1 set routing-instances VPN1 route-distinguisher 192.168.100.2:1 set routing-instances VPN1 vrf-table-label
[edit] set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.2 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT family inet-vpn any set protocols bgp group INT family inet-mvpn signaling set protocols bgp group INT peer-as 65100 set protocols bgp group INT local-as 65100 set protocols bgp group INT neighbor 192.168.100.3 set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols ospf area 0.0.0.0 interface all set protocols ospf area 0.0.0.0 interface fxp0.0 disable set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols mpls interface all set protocols mpls interface fxp0.0 disable
[edit] set routing-options router-id 192.168.100.2 set routing-options autonomous-system 65100
-
C-PIM 참가 메시지가 랑데부 포인트 트리를 사용하도록 모드를 구성하고, 소스가 알려진 후 최단 경로 트리로 전환합니다.
[edit] set routing-instances VPN1 protocols mvpn mvpn-mode rpt-spt set routing-instances VPN1 provider-tunnel ldp-p2mp set routing-instances VPN1 vrf-target target:1:1
PE-CE 멀티캐스트 라우팅을 활성화하도록 PIM을 구성합니다.
[edit] set routing-instances VPN1 protocols pim rp static address 192.168.100.1
CE 라우터에 연결된 인터페이스에서 PIM을 활성화합니다.
[edit] set routing-instances VPN1 protocols pim interface lo0.1 set routing-instances VPN1 protocols pim interface ge-0/0/0.0
동적 선택적 point-to-multipoint LSP를 구성하고 새 터널이 생성되기 전에 필요한 데이터 임계값을 지정합니다.
[edit] set routing-instances VPN1 provider-tunnel selective group 225.1.1.1/32 source 172.16.12.1/32 ldp-p2mp set routing-instances VPN1 provider-tunnel selective group 225.1.1.1/32 source 172.16.12.1/32 threshold-rate 1
point-to-multipoint 재귀 LDP FEC를 구성합니다.
[edit] set protocols ldp p2mp recursive fec
라우팅 정책을 구성합니다.
[edit] set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 from protocol direct set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 then accept
검증
명령어 | 확인 작업 |
---|---|
show ldp 개요 | LDP 개요 정보에서 활성화되었는지 확인합니다 Recursive fec . |
ldp 데이터베이스 표시 | LDP 데이터베이스에서 point-to-multipoint 바인딩 정보를 보급한 레이블을 확인합니다. |
ldp p2mp 경로 표시 | LDP P2MP FEC 정보를 확인합니다. |
ldp p2mp fec 표시 | LDP P2MP LSP를 확인합니다. |
LDP 개요 정보에서 재귀적 FEC를 확인합니다.
목적
이 활성화되고 PE1 LDP 개요 정보에 표시되는지 확인합니다 recursive FEC
.
작업
운영 모드에서 show ldp overview
명령을 입력합니다.
user@PE1 show ldp overview Instance: master Reference count: 3 Router ID: 192.168.100.2 LDP inet: enabled Transport preference: IPv4 Message id: 33 Configuration sequence: 12 Deaggregate: disabled Explicit null: disabled IPv6 tunneling: disabled Strict targeted hellos: disabled Loopback if added: yes Route preference: 9 P2MP max branches: 4096 Unicast transit LSP chaining: disabled P2MP transit LSP chaining: disabled Transit LSP statistics based on route statistics: disabled LDP route acknowledgement: enabled BGP export: enabled No TTL propagate: disabled LDP mtu discovery: disabled LDP SR Mapping Client: disabled Capabilities enabled: p2mp, make-before-break Egress FEC capabilities enabled: entropy-label-capability Downstream unsolicited Sessions: Operational: 1 Retention: liberal Control: ordered Auto targeted sessions: Auto targeted: disabled Dynamic tunnel session count: 0 P2MP: Recursive route: disabled Recursive fec: enabled No rsvp tunneling: disabled Timers: Keepalive interval: 10, Keepalive timeout: 30 Link hello interval: 5, Link hello hold time: 15 Targeted hello interval: 15, Targeted hello hold time: 45 Label withdraw delay: 60, Make before break timeout: 30 Make before break switchover delay: 3 Link protection timeout: 120 Graceful restart: Restart: disabled, Helper: enabled, Restart in process: false Reconnect time: 60000, Max neighbor reconnect time: 120000 Recovery time: 160000, Max neighbor recovery time: 240000 Traffic Engineering: Bgp igp: disabled Both ribs: disabled Mpls forwarding: disabled IGP: Tracking igp metric: disabled Sync session up delay: 10 Session protection: Session protection: disabled Session protection timeout: 0 Interface addresses advertising: 10.1.23.1 192.168.100.2 LDP Job: Read job time quantum: 1000, Write job time quantum: 1000 Read job loop quantum: 100, Write job loop quantum: 100 Backup inbound read job time quantum: 1000, Backup outbound read job time quantum: 1000 Backup inbound read job loop quantum: 100, Backup outbound read job loop quantum: 100 Label allocation: Current number of LDP labels allocated: 2 Total number of LDP labels allocated: 51 Total number of LDP labels freed: 49 Total number of LDP label allocation failure: 0 Current number of labels allocated by all protocols: 0
의미
출력은 PE1에서 재귀적 fec가 활성화되었음을 확인합니다.
보급된 레이블 확인
목적
ASBR1에서 보급되고 PE1에서 수신한 레이블을 확인합니다.
작업
운영 모드에서 show ldp database
명령을 입력합니다.
ASBR1에서
user@ASBR1 show ldp database Input label database, 192.168.100.4:0--192.168.100.5:0 Labels received: 5 Label Prefix 145 192.168.100.4/32 3 192.168.100.5/32 139 192.168.100.6/32 140 192.168.100.7/32 144 P2MP root-addr 192.168.100.2, lsp-id 16777220 next-root:192.168.100.4 Output label database, 192.168.100.4:0--192.168.100.5:0 Labels advertised: 4 Label Prefix 3 192.168.100.4/32 164 192.168.100.5/32 159 192.168.100.2/32 158 192.168.100.3/32 Input label database, 192.168.100.4:0--192.168.100.3:0 Labels received: 3 Label Prefix 125 192.168.100.4/32 88 192.168.100.2/32 3 192.168.100.3/32 Output label database, 192.168.100.4:0--192.168.100.3:0 Labels advertised: 5 Label Prefix 3 192.168.100.4/32 164 192.168.100.5/32 159 192.168.100.2/32 158 192.168.100.3/32 163 P2MP root-addr 192.168.100.2, lsp-id 16777220
PE1
user@PE1 show ldp database Input label database, 192.168.100.2:0--192.168.100.3:0 Labels received: 4 Label Prefix 125 192.168.100.4/32 88 192.168.100.2/32 3 192.168.100.3/32 129 P2MP root-addr 192.168.100.2, lsp-id 16777220 Output label database, 192.168.100.2:0--192.168.100.3:0 Labels advertised: 3 Label Prefix 107 192.168.100.4/32 3 192.168.100.2/32 104 192.168.100.3/32
의미
ASBR1에서 광고된 레이블 3 과 PE1에서 수신한 레이블 3 을 볼 수 있습니다.
P2MP FEC 정보 확인
목적
ASBR2에서 LDP P2MP FEC 정보를 확인합니다.
작업
운영 모드에서 show ldp p2mp fec extensive
명령을 입력합니다.
user@PE2 show ldp p2mp fec extensive LDP P2MP FECs: P2MP root-addr 192.168.100.2, lsp-id 16777220 next-root: 192.168.100.5 Fec type: Egress (Active) Label: 52, Reference count: 1
user@ASBR2 show ldp p2mp fec extensive LDP P2MP FECs: P2MP root-addr 192.168.100.2, lsp-id 16777220 Fec type: Transit (Active) Label: 144, Reference count: 1
의미
출력은 PE2가 LDP 재귀 FEC를 형성하여 실제 루트(PE1)에 대한 경로를 찾는 것을 보여줍니다.
P2MP 경로 정보 확인
목적
PE2에서 LDP P2MP 경로 정보를 확인합니다.
작업
운영 모드에서 show ldp p2mp path extensive
명령을 입력합니다.
user@PE2 show ldp p2mp path extensive P2MP path type: Transit/Egress Output Session (label): 192.168.100.6:0 (52) (Primary) Egress label: 52 Attached FECs: P2MP root-addr 192.168.100.2, lsp-id 16777220 next-root:192.168.100.5 (Active) Address: 0x76f69e0, Reference count: 2
의미
출력은 FEC 요소가 있는 PE2를 보여주며, 여기서 루트 노드 주소는 프로토콜 nexthop ASBR2의 주소입니다.
부록 1 : 모든 장치에서 명령 설정
이 예제를 빠르게 구성하려면 다음 명령을 복사하여 텍스트 파일에 붙여 넣은 다음 줄 바꿈을 제거하고, 네트워크 구성과 일치하는 데 필요한 세부 정보를 변경한 다음, 명령을 복사하여 [edit] 계층 수준에서 CLI에 붙여넣습니다.
이 예에서 소스와 수신자를 나타내기 위해 논리적 시스템을 사용합니다.
CE1
set system host-name CE1-source set logical-systems source interfaces lt-0/0/0 unit 12 encapsulation ethernet set logical-systems source interfaces lt-0/0/0 unit 12 peer-unit 11 set logical-systems source interfaces lt-0/0/0 unit 12 family inet address 172.16.12.1/30 set logical-systems source interfaces lo0 unit 12 family inet address 192.168.12.12/32 set logical-systems source protocols ospf area 0.0.0.0 interface all set logical-systems source protocols ospf area 0.0.0.0 interface lo0.12 passive set logical-systems source protocols pim rp static address 192.168.100.1 set logical-systems source protocols pim interface lt-0/0/0.12 set chassis fpc 0 pic 0 tunnel-services set chassis network-services enhanced-ip set interfaces lt-0/0/0 description "CONNECTED TO source" set interfaces lt-0/0/0 unit 11 encapsulation ethernet set interfaces lt-0/0/0 unit 11 peer-unit 12 set interfaces lt-0/0/0 unit 11 family inet address 172.16.12.2/30 set interfaces ge-0/0/1 description "CONNECTED TO PE1" set interfaces ge-0/0/1 unit 0 family inet address 172.16.1.1/30 set interfaces lo0 unit 0 family inet address 192.168.100.1/32 set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 from protocol direct set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 then accept set routing-options router-id 192.168.100.1 set routing-options autonomous-system 65101 set protocols bgp group CE1-PE1 type external set protocols bgp group CE1-PE1 family inet unicast set protocols bgp group CE1-PE1 export EXPORT-LOCAL-ROUTES set protocols bgp group CE1-PE1 peer-as 65100 set protocols bgp group CE1-PE1 local-as 65101 set protocols bgp group CE1-PE1 neighbor 172.16.1.2 set protocols ospf area 0.0.0.0 interface all set protocols ospf area 0.0.0.0 interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols pim rp local family inet address 192.168.100.1 set protocols pim interface lo0.0 set protocols pim interface ge-0/0/1.0 set protocols pim interface lt-0/0/0.11
PE1
set system host-name PE1 set chassis network-services enhanced-ip set interfaces ge-0/0/0 description "CONNECTED TO CE1" set interfaces ge-0/0/0 unit 0 family inet address 172.16.1.2/30 set interfaces ge-0/0/1 description "CONNECTED TO P1" set interfaces ge-0/0/1 unit 0 family inet address 10.1.23.1/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.2/32 set interfaces lo0 unit 1 family inet address 192.168.102.1/32 set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 from protocol direct set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 then accept set routing-instances VPN1 instance-type vrf set routing-instances VPN1 protocols bgp group CE1-PE1 type external set routing-instances VPN1 protocols bgp group CE1-PE1 family inet unicast set routing-instances VPN1 protocols bgp group CE1-PE1 export EXPORT-LOCAL-ROUTES set routing-instances VPN1 protocols bgp group CE1-PE1 peer-as 65101 set routing-instances VPN1 protocols bgp group CE1-PE1 local-as 65100 set routing-instances VPN1 protocols bgp group CE1-PE1 neighbor 172.16.1.1 set routing-instances VPN1 protocols mvpn mvpn-mode rpt-spt set routing-instances VPN1 protocols pim rp static address 192.168.100.1 set routing-instances VPN1 protocols pim interface lo0.1 mode sparse set routing-instances VPN1 protocols pim interface ge-0/0/0.0 mode sparse set routing-instances VPN1 interface ge-0/0/0.0 set routing-instances VPN1 interface lo0.1 set routing-instances VPN1 route-distinguisher 192.168.100.2:1 set routing-instances VPN1 vrf-target target:1:1 set routing-instances VPN1 vrf-table-label set routing-instances VPN1 provider-tunnel ldp-p2mp set routing-instances VPN1 provider-tunnel selective group 225.1.1.1/32 source 172.16.12.1/32 ldp-p2mp set routing-instances VPN1 provider-tunnel selective group 225.1.1.1/32 source 172.16.12.1/32 threshold-rate 51 set routing-options router-id 192.168.100.2 set routing-options autonomous-system 65100 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.2 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT family inet-vpn any set protocols bgp group INT family inet-mvpn signaling set protocols bgp group INT peer-as 65100 set protocols bgp group INT local-as 65100 set protocols bgp group INT neighbor 192.168.100.3 set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive fec set protocols mpls interface all set protocols mpls interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
P1
set system host-name P1 set chassis network-services enhanced-ip set interfaces ge-0/0/0 unit 0 family inet address 10.1.23.2/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 unit 0 family inet address 10.1.34.1/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.3/32 set routing-options router-id 192.168.100.3 set routing-options autonomous-system 65100 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.3 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT family inet-vpn any set protocols bgp group INT family inet-mvpn signaling set protocols bgp group INT cluster 192.168.100.3 set protocols bgp group INT local-as 65100 set protocols bgp group INT neighbor 192.168.100.2 set protocols bgp group INT neighbor 192.168.100.4 set protocols bgp group eBGP_PE_PE type external set protocols bgp group eBGP_PE_PE multihop ttl 25 set protocols bgp group eBGP_PE_PE local-address 192.168.100.3 set protocols bgp group eBGP_PE_PE family inet-vpn any set protocols bgp group eBGP_PE_PE family inet-mvpn signaling set protocols bgp group eBGP_PE_PE neighbor 192.168.100.6 peer-as 65200 set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive route set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
ASBR1
set system host-name ASBR1 set chassis network-services enhanced-ip set interfaces ge-0/0/0 unit 0 family inet address 10.1.34.2/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 unit 0 family inet address 10.1.45.1/24 set interfaces ge-0/0/1 unit 0 family iso set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.4/32 set interfaces lo0 unit 0 family iso address 49.0001.0040.0400.4004.00 set policy-options policy-statement To-ASBR2 term 1 from route-filter 192.168.100.2/32 exact set policy-options policy-statement To-ASBR2 term 1 from route-filter 192.168.100.3/32 exact set policy-options policy-statement To-ASBR2 term 1 then accept set policy-options policy-statement To-ASBR2 term 2 then reject set policy-options policy-statement from-direct term 1 from interface lo0.0 set policy-options policy-statement from-direct term 1 then accept set policy-options policy-statement from-ospf term 1 from protocol ospf set policy-options policy-statement from-ospf term 1 then accept set routing-options router-id 192.168.100.4 set routing-options autonomous-system 65100 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.4 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT peer-as 65100 set protocols bgp group INT local-as 65100 set protocols bgp group INT neighbor 192.168.100.3 set protocols bgp group eBGP_ASBR type external set protocols bgp group eBGP_ASBR multihop ttl 2 set protocols bgp group eBGP_ASBR local-address 192.168.100.4 set protocols bgp group eBGP_ASBR family inet labeled-unicast resolve-vpn set protocols bgp group eBGP_ASBR export from-ospf set protocols bgp group eBGP_ASBR export from-direct set protocols bgp group eBGP_ASBR export To-ASBR2 set protocols bgp group eBGP_ASBR neighbor 192.168.100.5 peer-as 65200 set protocols isis interface ge-0/0/1.0 level 2 disable set protocols isis interface lo0.0 set protocols isis level 2 disable set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive fec set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
ASBR2 (영문)
set system host-name ASBR2 set chassis network-services enhanced-ip set interfaces ge-0/0/0 unit 0 family inet address 10.1.45.2/24 set interfaces ge-0/0/0 unit 0 family iso set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 unit 0 family inet address 10.1.56.1/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.5/32 set interfaces lo0 unit 0 family iso address 49.0001.0050.0500.5005.00 set policy-options policy-statement To-ASBR1 term 1 from route-filter 192.168.100.7/32 exact set policy-options policy-statement To-ASBR1 term 1 from route-filter 192.168.100.6/32 exact set policy-options policy-statement To-ASBR1 term 1 then accept set policy-options policy-statement To-ASBR1 term 2 then reject set policy-options policy-statement from-direct term 1 from interface lo0.0 set policy-options policy-statement from-direct term 1 then accept set policy-options policy-statement from-ospf term 1 from protocol ospf set policy-options policy-statement from-ospf term 1 then accept set routing-options router-id 192.168.100.5 set routing-options autonomous-system 65200 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.5 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT peer-as 65200 set protocols bgp group INT local-as 65200 set protocols bgp group INT neighbor 192.168.100.6 set protocols bgp group eBGP_ASBR type external set protocols bgp group eBGP_ASBR multihop ttl 2 set protocols bgp group eBGP_ASBR local-address 192.168.100.5 set protocols bgp group eBGP_ASBR family inet labeled-unicast resolve-vpn set protocols bgp group eBGP_ASBR export from-ospf set protocols bgp group eBGP_ASBR export from-direct set protocols bgp group eBGP_ASBR export To-ASBR1 set protocols bgp group eBGP_ASBR neighbor 192.168.100.4 peer-as 65100 set protocols isis interface ge-0/0/0.0 level 2 disable set protocols isis interface lo0.0 set protocols isis level 2 disable set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive fec set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
P2
set system host-name P2 set chassis network-services enhanced-ip set interfaces ge-0/0/0 unit 0 family inet address 10.1.56.2/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 unit 0 family inet address 10.1.67.1/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces lo0 unit 0 family inet address 192.168.100.6/32 set routing-options router-id 192.168.100.6 set routing-options autonomous-system 65200 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.6 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT family inet-vpn any set protocols bgp group INT family inet-mvpn signaling set protocols bgp group INT cluster 192.168.100.6 set protocols bgp group INT local-as 65200 set protocols bgp group INT neighbor 192.168.100.5 set protocols bgp group INT neighbor 192.168.100.7 set protocols bgp group eBGP_PE_PE type external set protocols bgp group eBGP_PE_PE multihop ttl 25 set protocols bgp group eBGP_PE_PE local-address 192.168.100.6 set protocols bgp group eBGP_PE_PE family inet-vpn any set protocols bgp group eBGP_PE_PE family inet-mvpn signaling set protocols bgp group eBGP_PE_PE neighbor 192.168.100.3 peer-as 65100 set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive route set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
PE2
set system host-name PE2 set chassis network-services enhanced-ip set interfaces ge-0/0/0 unit 0 family inet address 10.1.67.2/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 description "CONNECTED TO CE2" set interfaces ge-0/0/1 unit 0 family inet address 172.16.2.2/30 set interfaces lo0 unit 0 family inet address 192.168.100.7/32 set interfaces lo0 unit 1 family inet address 192.168.100.17/32 set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 from protocol direct set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 then accept set routing-instances VPN2 instance-type vrf set routing-instances VPN2 protocols bgp group PE2-CE2 type external set routing-instances VPN2 protocols bgp group PE2-CE2 family inet unicast set routing-instances VPN2 protocols bgp group PE2-CE2 export EXPORT-LOCAL-ROUTES set routing-instances VPN2 protocols bgp group PE2-CE2 peer-as 65201 set routing-instances VPN2 protocols bgp group PE2-CE2 local-as 65200 set routing-instances VPN2 protocols bgp group PE2-CE2 neighbor 172.16.2.1 set routing-instances VPN2 protocols mvpn mvpn-mode rpt-spt set routing-instances VPN2 protocols pim rp static address 192.168.100.1 set routing-instances VPN2 protocols pim interface lo0.1 mode sparse set routing-instances VPN2 protocols pim interface ge-0/0/1.0 mode sparse set routing-instances VPN2 protocols pim interface all set routing-instances VPN2 interface ge-0/0/1.0 set routing-instances VPN2 interface lo0.1 set routing-instances VPN2 route-distinguisher 192.168.100.17:1 set routing-instances VPN2 vrf-target target:1:1 set routing-instances VPN2 vrf-table-label set routing-options router-id 192.168.100.7 set routing-options autonomous-system 65200 set protocols bgp group INT type internal set protocols bgp group INT local-address 192.168.100.7 set protocols bgp group INT family inet labeled-unicast resolve-vpn set protocols bgp group INT family inet-vpn any set protocols bgp group INT family inet-mvpn signaling set protocols bgp group INT peer-as 65200 set protocols bgp group INT local-as 65200 set protocols bgp group INT neighbor 192.168.100.6 set protocols ldp interface all set protocols ldp interface fxp0.0 disable set protocols ldp p2mp recursive fec set protocols mpls interface all set protocols mpls interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive
CE2
set system host-name CE2-receiver set logical-systems receiver interfaces lt-0/0/0 unit 22 encapsulation ethernet set logical-systems receiver interfaces lt-0/0/0 unit 22 peer-unit 21 set logical-systems receiver interfaces lt-0/0/0 unit 22 family inet address 172.16.22.22/30 set logical-systems receiver interfaces lo0 unit 22 family inet address 192.168.22.22/32 set logical-systems receiver protocols ospf area 0.0.0.0 interface all set chassis fpc 0 pic 0 tunnel-services set chassis network-services enhanced-ip set interfaces ge-0/0/0 description "CONNECTED TO PE2" set interfaces ge-0/0/0 unit 0 family inet address 172.16.2.1/30 set interfaces lt-0/0/0 description "CONNECTED FROM CE2 TO receiver" set interfaces lt-0/0/0 unit 21 encapsulation ethernet set interfaces lt-0/0/0 unit 21 peer-unit 22 set interfaces lt-0/0/0 unit 21 family inet address 172.16.22.21/30 set interfaces lo0 unit 0 family inet address 192.168.100.8/32 set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 from protocol direct set policy-options policy-statement EXPORT-LOCAL-ROUTES term 1 then accept set routing-options router-id 192.168.100.8 set routing-options autonomous-system 65201 set protocols bgp group CE2-PE2 type external set protocols bgp group CE2-PE2 family inet unicast set protocols bgp group CE2-PE2 export EXPORT-LOCAL-ROUTES set protocols bgp group CE2-PE2 peer-as 65200 set protocols bgp group CE2-PE2 local-as 65201 set protocols bgp group CE2-PE2 neighbor 172.16.2.2 set protocols igmp interface lt-0/0/0.21 static group 225.1.1.1 set protocols ospf area 0.0.0.0 interface all set protocols ospf area 0.0.0.0 interface fxp0.0 disable set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols pim rp static address 192.168.100.1 set protocols pim interface all set protocols pim interface fxp0.0 disable set protocols sap listen 225.1.1.1 port 5000
부록 2 : PE1 및 ASBR2의 구성 출력 표시
중괄호 형식의 전체 PE1 구성
user@PE1# show | no-more system { host-name PE1; } interfaces { ge-0/0/0 { description "CONNECTED TO CE1"; unit 0 { family inet { address 172.16.1.2/30; } } } ge-0/0/1 { description "CONNECTED TO P1"; unit 0 { family inet { address 10.1.23.1/24; } family mpls; } } lo0 { unit 0 { family inet { address 192.168.100.2/32; } } unit 1 { family inet { address 192.168.102.1/32; } } } } policy-options { policy-statement EXPORT-LOCAL-ROUTES { term 1 { from protocol direct; then accept; } } } routing-instances { VPN1 { instance-type vrf; protocols { bgp { group CE11-PE1 { type external; family inet { unicast; } export EXPORT-LOCAL-ROUTES; peer-as 65101; local-as 65100; neighbor 172.16.1.1; } } mvpn { mvpn-mode { rpt-spt; } } pim { rp { static { address 192.168.100.1; } } interface lo0.1; interface ge-0/0/0.0; } } interface ge-0/0/0.0; interface lo0.1; route-distinguisher 192.168.100.2:1; vrf-target target:1:1; vrf-table-label; provider-tunnel { ldp-p2mp; selective { group 225.1.1.1/32 { source 172.16.12.1/32 { ldp-p2mp; threshold-rate 1; } } } } } } routing-options { router-id 192.168.100.2; autonomous-system 65100; nonstop-routing; } protocols { bgp { group INT { type internal; local-address 192.168.100.2; family inet { labeled-unicast { resolve-vpn; } } family inet-vpn { any; } family inet-mvpn { signaling; } export from-direct; peer-as 65100; local-as 65100; neighbor 192.168.100.3; } } ldp { interface all; interface fxp0.0 { disable; } p2mp { recursive { fec; } } } mpls { interface all; interface fxp0.0 { disable; } } ospf { area 0.0.0.0 { interface lo0.0 { passive; } interface all; interface fxp0.0 { disable; } } } }
중괄호 형식의 전체 ASBR2 구성
user@ASBR2# show | no-more system { host-name ASBR2; } interfaces { ge-0/0/0 { unit 0 { family inet { address 10.1.45.2/24; } family iso; family mpls; } } ge-0/0/1 { unit 0 { family inet { address 10.1.56.1/24; } family mpls; } } lo0 { unit 0 { family inet { address 192.168.100.5/32; } family iso { address 49.0001.0060.0600.6006.00; } } } } policy-options { policy-statement NHP { term 1 { from protocol bgp; then { next-hop self; accept; } } } policy-statement To-ASBR1 { term 1 { from { route-filter 192.168.100.7/32 exact; route-filter 192.168.100.6/32 exact; } then accept; } term 2 { then reject; } } policy-statement from-direct { term 1 { from interface lo0.0; then accept; } } policy-statement from-ospf { term 1 { from protocol ospf; then accept; } } } routing-options { router-id 192.168.100.5; autonomous-system 65200; nonstop-routing; } protocols { bgp { group INT { type internal; local-address 192.168.100.5; family inet { labeled-unicast { resolve-vpn; } } peer-as 65200; local-as 65200; neighbor 192.168.100.6 { export NHP; } } group eBGP_ASBR1-ASBR2 { type external; local-address 192.168.100.5; family inet { labeled-unicast { resolve-vpn; } } export [ from-ospf from-direct To-ASBR1 ]; neighbor 192.168.100.4 { multihop; peer-as 65100; } } } isis { interface ge-0/0/0.0 { level 2 disable; } interface lo0.0 { level 1 { passive; } } } ldp { interface all; interface fxp0.0 { disable; } p2mp { recursive { fec; } } } ospf { traffic-engineering; area 0.0.0.0 { interface ge-0/0/1.0; interface lo0.0 { passive; } } } }