EN ESTA PÁGINA
Ejemplo: Configuración de multiconexión de espera activa de EVPN
En este ejemplo, se muestra cómo configurar VPN Ethernet (EVPN) para dispositivos de borde de cliente (CE) multihomed en una EVPN, un conmutador virtual y una instancia de enrutamiento VRF, y con una configuración de interfaz de enrutamiento y puentes integrados (IRB).
Requisitos
En este ejemplo, se utilizan los siguientes componentes de hardware y software:
Cuatro plataformas de enrutamiento universal de 5G de la serie MX con solo interfaces MPC, en las que:
Dos dispositivos se configuran como enrutadores de borde de proveedor (PE) conectados a un sitio de cliente común de varias casas.
Un dispositivo está configurado como un enrutador de PE remoto conectado a un sitio de cliente con una sola casa.
Ocho dispositivos de borde de cliente (CE), en los que:
Dos dispositivos CE son multihomed.
Dos dispositivos CE son de un solo hogar para cada uno de los enrutadores de PE.
Junos OS versión 14.1 o posterior se ejecuta en todos los enrutadores PE.
Nota:Junos OS versión 14.1 y versiones posteriores se basan en EVPN
draft-ietf-l2vpn-evpn-03
. Las versiones anteriores a 14.1 admiten la versión anterior del borrador de EVPN, lo que causa problemas de interoperabilidad cuando se ejecuta la versión 14.1 de Junos OS y una versión anterior.
Antes de empezar:
Configure las interfaces del enrutador.
Configure el OSPF o cualquier otro protocolo IGP.
Configure BGP.
Configure LDP.
Configure MPLS.
Configure túneles LSP o GRE de MPLS RSVP.
Descripción general y topología
A partir de Junos OS versión 14.1, la solución EVPN en enrutadores serie MX con interfaces MPC se extiende para proporcionar funcionalidad de multiconexión con modo de operación de espera activa. Las funciones de multiconexión incluyen descubrimiento automático de segmentos de Ethernet, construcción de ruta de segmentos Ethernet y asignación de etiquetas de identificador de segmento Ethernet (ESI).
Antes de la versión 15.1 de Junos OS, el soporte funcional de EVPN en enrutadores serie MX estaba limitado a enrutadores que solo usaban interfaces MPC y MIC. Sin embargo, a partir de Junos OS versión 15.1, los enrutadores serie MX que utilizan DPC se pueden aprovechar para proporcionar soporte EVPN en la interfaz orientada a dispositivos CE.
El soporte de DPC para EVPN se proporciona con las siguientes consideraciones:
Los DPC proporcionan soporte para EVPN en el modo de operación de espera activa, lo que incluye soporte para lo siguiente:
Instancia de EVPN (EVI)
Conmutador virtual (VS)
Interfaces de enrutamiento y puente integrados (IRB)
Los DPC destinados a proporcionar el soporte de espera activa EVPN deben ser la tarjeta de línea orientada al dispositivo CE. Las interfaces del dispositivo PE en el dominio de EVPN solo deben usar interfaces MPC y MIC.
Al configurar la multiconexión de EVPN de espera activa, tenga en cuenta las siguientes limitaciones:
Se puede adjuntar una interfaz o ESI a más de un EVI, con un límite máximo de 200 EVE por ESI.
Para una instancia de enrutamiento EVPN, solo se puede adjuntar una interfaz lógica por interfaz física o ESI a un EVI.
Para una instancia de enrutamiento de conmutador virtual, solo se puede configurar una interfaz lógica por interfaz física o ESI en un dominio de puente.
Todos los enrutadores PE de la topología de red deben ejecutar Junos OS versión 14.1 o versiones posteriores, que se basan en EVPN
draft-ietf-l2vpn-evpn-03
. Las versiones de Junos OS anteriores a 14.1 admiten la versión anterior del borrador de EVPN, lo que causa problemas de interoperabilidad cuando se ejecuta la versión 14.1 de Junos OS y una versión anterior.

En la figura 1:
Los enrutadores PE1 y PE2 son enrutadores de borde de proveedor (PE) conectados a dispositivos de borde de cliente (CE) multihomed "Dispositivo CE1" y "Dispositivo CE1".
El enrutador PE3 es un enrutador de PE remoto conectado a un sitio de cliente único.
El enrutador P es el enrutador de proveedor conectado a los enrutadores PE1, PE2 y PE3.
Hay tres instancias de enrutamiento en ejecución en la topología (ALPHA, BETA y DELTA) con el conmutador virtual, EVPN y VRF, respectivamente.
Todos los enrutadores de PE están conectados a un dispositivo CE de un solo hogar para las instancias de enrutamiento ALFA y BETA.
El dispositivo CE1 pertenece a la instancia de enrutamiento ALPHA y el dispositivo CE2 pertenece a la instancia de enrutamiento BETA.
Para el enrutador PE1, los dispositivos CE-A1 y CE-B1 son los dispositivos CE de hogar único para las instancias de enrutamiento ALPHA y BETA, respectivamente. De la misma manera, los dispositivos CE-A2 y CE-A3 pertenecen a la instancia de enrutamiento ALPHA, y los dispositivos CE-B2 y CE-B3 pertenecen a las instancias de enrutamiento BETA conectadas a los enrutadores PE2 y PE3, respectivamente.
La multiconexión de espera activa se puede configurar en cualquier instancia de enrutamiento de EVPN. Ambos evpn
tipos de virtual-switch
instancia se admiten en la multiconexión de EVPN de espera activa. La vrf
instancia de enrutamiento está configurada para ilustrar la funcionalidad de IRB de EVPN, además de la multiconexión, y no es obligatorio para que funcione la función de multiconexión de EVPN en espera activa.
Configuración
Configuración rápida de CLI
Para configurar rápidamente este ejemplo, copie los siguientes comandos, péguelos en un archivo de texto, elimine los saltos de línea, cambie los detalles necesarios para que coincidan con su configuración de red y, luego, copie y pegue los comandos en la CLI en el [edit]
nivel de jerarquía.
CE1
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 gigether-options 802.3ad ae0 set interfaces ge-0/0/1 gigether-options 802.3ad ae0 set interfaces ae0 vlan-tagging set interfaces ae0 mac 00:00:00:00:00:04 set interfaces ae0 unit 0 vlan-id 100 set interfaces ae0 unit 0 family inet address 10.0.0.4/24 set routing-options static route 0.0.0.0/0 next-hop 10.0.0.250
CE-A1
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 gigether-options 802.3ad ae0 set interfaces ae0 vlan-tagging set interfaces ae0 mac 00:00:00:00:00:01 set interfaces ae0 unit 0 vlan-id 100 set interfaces ae0 unit 0 family inet address 10.0.0.1/24 set routing-options static route 0.0.0.0/0 next-hop 10.0.0.251
CE-A2
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 gigether-options 802.3ad ae0 set interfaces ae0 vlan-tagging set interfaces ae0 mac 00:00:00:00:00:02 set interfaces ae0 unit 0 vlan-id 100 set interfaces ae0 unit 0 family inet address 10.0.0.2/24 set routing-options static route 0.0.0.0/0 next-hop 10.0.0.252
CE-A3
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 gigether-options 802.3ad ae0 set interfaces ae0 vlan-tagging set interfaces ae0 mac 00:00:00:00:00:03 set interfaces ae0 unit 0 vlan-id 100 set interfaces ae0 unit 0 family inet address 10.0.0.3/24 set routing-options static route 0.0.0.0/0 next-hop 10.0.0.253
CE2
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 gigether-options 802.3ad ae0 set interfaces ge-0/0/1 gigether-options 802.3ad ae0 set interfaces ae0 vlan-tagging set interfaces ae0 mac 00:00:00:00:00:04 set interfaces ae0 unit 0 vlan-id 300 set interfaces ae0 unit 0 family inet address 192.0.2.4/24 set routing-options static route 0.0.0.0/0 next-hop 192.0.2.10
CE-B1
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 gigether-options 802.3ad ae0 set interfaces ae0 vlan-tagging set interfaces ae0 mac 00:00:00:00:00:01 set interfaces ae0 unit 0 vlan-id 300 set interfaces ae0 unit 0 family inet address 192.0.2.1/24 set routing-options static route 0.0.0.0/0 next-hop 192.0.2.15
CE-B2
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 gigether-options 802.3ad ae0 set interfaces ae0 vlan-tagging set interfaces ae0 mac 00:00:00:00:00:02 set interfaces ae0 unit 0 vlan-id 300 set interfaces ae0 unit 0 family inet address 192.0.2.4/24 set routing-options static route 0.0.0.0/0 next-hop 192.0.2.12
CE-B3
set chassis aggregated-devices ethernet device-count 1 set interfaces ge-0/0/0 gigether-options 802.3ad ae0 set interfaces ae0 vlan-tagging set interfaces ae0 mac 00:00:00:00:00:03 set interfaces ae0 unit 0 vlan-id 300 set interfaces ae0 unit 0 family inet address 192.0.2.3/24 set routing-options static route 0.0.0.0/0 next-hop 192.0.2.13
PE1
set interfaces ge-0/0/0 unit 0 family inet address 198.51.100.1/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 gigether-options 802.3ad ae0 set interfaces ge-0/0/2 vlan-tagging set interfaces ge-0/0/2 encapsulation flexible-ethernet-services set interfaces ge-0/0/2 unit 0 encapsulation vlan-bridge set interfaces ge-0/0/2 unit 0 vlan-id 100 set interfaces ge-0/0/3 gigether-options 802.3ad ae1 set interfaces ge-0/0/4 vlan-tagging set interfaces ge-0/0/4 encapsulation flexible-ethernet-services set interfaces ge-0/0/4 esi 00:22:44:66:88:00:22:44:66:88 set interfaces ge-0/0/4 esi single-active set interfaces ge-0/0/4 unit 0 encapsulation vlan-bridge set interfaces ge-0/0/4 unit 0 vlan-id 300 set interfaces ae0 vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 esi 00:11:22:33:44:55:66:77:88:99 set interfaces ae0 esi single-active set interfaces ae0 unit 0 encapsulation vlan-bridge set interfaces ae0 unit 0 vlan-id 100 set interfaces ae1 vlan-tagging set interfaces ae1 encapsulation flexible-ethernet-services set interfaces ae1 unit 0 encapsulation vlan-bridge set interfaces ae1 unit 0 vlan-id 300 set interfaces irb unit 0 family inet address 10.0.0.250/24 set interfaces irb unit 0 family inet address 10.0.0.251/24 set interfaces irb unit 0 mac 00:11:22:33:44:55 set interfaces irb unit 1 family inet address 192.0.2.10/24 set interfaces irb unit 1 family inet address 192.0.2.15/24 set interfaces irb unit 1 mac 00:22:44:66:88:00 set interfaces lo0 unit 0 family inet address 10.255.0.1/32 primary set interfaces lo0 unit 0 family inet address 10.255.0.1/32 preferred set routing-options router-id 10.255.0.1 set routing-options autonomous-system 100 set routing-options forwarding-table chained-composite-next-hop ingress evpn set protocols mpls interface lo0.0 set protocols mpls interface ge-0/0/0.0 set protocols bgp group EVPN-PE type internal set protocols bgp group EVPN-PE local-address 10.255.0.1 set protocols bgp group EVPN-PE family evpn signaling set protocols bgp group EVPN-PE neighbor 10.255.0.2 set protocols bgp group EVPN-PE neighbor 10.255.0.3 set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ldp interface ge-0/0/0.0 set protocols ldp interface lo0.0 set routing-instances ALPHA instance-type virtual-switch set routing-instances ALPHA route-distinguisher 10.255.0.1:100 set routing-instances ALPHA vrf-target target:100:100 set routing-instances ALPHA protocols evpn extended-vlan-list 100 set routing-instances ALPHA bridge-domains ONE domain-type bridge set routing-instances ALPHA bridge-domains ONE vlan-id 100 set routing-instances ALPHA bridge-domains ONE interface ae0.0 set routing-instances ALPHA bridge-domains ONE interface ge-0/0/2.0 set routing-instances ALPHA bridge-domains ONE routing-interface irb.0 set routing-instances BETA instance-type evpn set routing-instances BETA vlan-id 300 set routing-instances BETA interface ge-0/0/4.0 set routing-instances BETA interface ae1.0 set routing-instances BETA routing-interface irb.1 set routing-instances BETA route-distinguisher 10.255.0.1:300 set routing-instances BETA vrf-target target:300:300 set routing-instances DELTA instance-type vrf set routing-instances DELTA interface irb.0 set routing-instances DELTA interface irb.1 set routing-instances DELTA route-distinguisher 10.255.0.1:200 set routing-instances DELTA vrf-target target:200:200 set routing-instances DELTA vrf-table-label
PE2
set interfaces ge-0/0/0 unit 0 family inet address 198.51.100.3/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 gigether-options 802.3ad ae0 set interfaces ge-0/0/2 vlan-tagging set interfaces ge-0/0/2 encapsulation flexible-ethernet-services set interfaces ge-0/0/2 unit 0 encapsulation vlan-bridge set interfaces ge-0/0/2 unit 0 vlan-id 100 set interfaces ge-0/0/3 gigether-options 802.3ad ae1 set interfaces ge-0/0/4 vlan-tagging set interfaces ge-0/0/4 encapsulation flexible-ethernet-services set interfaces ge-0/0/4 esi 00:22:44:66:88:00:22:44:66:88 set interfaces ge-0/0/4 esi single-active set interfaces ge-0/0/4 unit 0 encapsulation vlan-bridge set interfaces ge-0/0/4 unit 0 vlan-id 300 set interfaces ae0 vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 esi 00:11:22:33:44:55:66:77:88:99 set interfaces ae0 esi single-active set interfaces ae0 unit 0 encapsulation vlan-bridge set interfaces ae0 unit 0 vlan-id 100 set interfaces ae1 vlan-tagging set interfaces ae1 encapsulation flexible-ethernet-services set interfaces ae1 unit 0 encapsulation vlan-bridge set interfaces ae1 unit 0 vlan-id 300 set interfaces irb unit 0 family inet address 10.0.0.250/24 set interfaces irb unit 0 family inet address 10.0.0.252/24 set interfaces irb unit 0 mac 00:11:22:33:44:55 set interfaces irb unit 1 family inet address 192.0.2.10/24 set interfaces irb unit 1 family inet address 192.0.2.12/24 set interfaces irb unit 1 mac 00:22:44:66:88:00 set interfaces lo0 unit 0 family inet address 10.255.0.2/32 primary set interfaces lo0 unit 0 family inet address 10.255.0.2/32 preferred set routing-options router-id 10.255.0.2 set routing-options autonomous-system 100 set routing-options forwarding-table chained-composite-next-hop ingress evpn set protocols mpls interface lo0.0 set protocols mpls interface ge-0/0/0.0 set protocols bgp group EVPN-PE type internal set protocols bgp group EVPN-PE local-address 10.255.0.2 set protocols bgp group EVPN-PE family evpn signaling set protocols bgp group EVPN-PE neighbor 10.255.0.1 set protocols bgp group EVPN-PE neighbor 10.255.0.3 set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ldp interface ge-0/0/0.0 set protocols ldp interface lo0.0 set routing-instances ALPHA instance-type virtual-switch set routing-instances ALPHA route-distinguisher 10.255.0.2:100 set routing-instances ALPHA vrf-target target:100:100 set routing-instances ALPHA protocols evpn extended-vlan-list 100 set routing-instances ALPHA bridge-domains ONE domain-type bridge set routing-instances ALPHA bridge-domains ONE vlan-id 100 set routing-instances ALPHA bridge-domains ONE interface ae0.0 set routing-instances ALPHA bridge-domains ONE interface ge-0/0/2.0 set routing-instances ALPHA bridge-domains ONE routing-interface irb.0 set routing-instances BETA instance-type evpn set routing-instances BETA vlan-id 300 set routing-instances BETA interface ge-0/0/4.0 set routing-instances BETA interface ae1.0 set routing-instances BETA routing-interface irb.1 set routing-instances BETA route-distinguisher 10.255.0.2:300 set routing-instances BETA vrf-target target:300:300 set routing-instances DELTA instance-type vrf set routing-instances DELTA interface irb.0 set routing-instances DELTA interface irb.1 set routing-instances DELTA route-distinguisher 10.255.0.2:200 set routing-instances DELTA vrf-target target:200:200 set routing-instances DELTA vrf-table-label
PE3
set interfaces ge-0/0/0 unit 0 family inet address 198.51.100.5/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 gigether-options 802.3ad ae0 set interfaces ge-0/0/2 gigether-options 802.3ad ae1 set interfaces ae0 vlan-tagging set interfaces ae0 encapsulation flexible-ethernet-services set interfaces ae0 unit 0 encapsulation vlan-bridge set interfaces ae0 unit 0 vlan-id 100 set interfaces ae1 vlan-tagging set interfaces ae1 encapsulation flexible-ethernet-services set interfaces ae1 unit 0 encapsulation vlan-bridge set interfaces ae1 unit 0 vlan-id 300 set interfaces irb unit 0 family inet address 10.0.0.253/24 set interfaces irb unit 1 family inet address 192.0.2.13/24 set interfaces lo0 unit 0 family inet address 10.255.0.3/32 primary set interfaces lo0 unit 0 family inet address 10.255.0.3/32 preferred set routing-options router-id 10.255.0.3 set routing-options autonomous-system 100 set routing-options forwarding-table chained-composite-next-hop ingress evpn set protocols mpls interface lo0.0 set protocols mpls interface ge-0/0/0.0 set protocols bgp group EVPN-PE type internal set protocols bgp group EVPN-PE local-address 10.255.0.3 set protocols bgp group EVPN-PE family evpn signaling set protocols bgp group EVPN-PE neighbor 10.255.0.1 set protocols bgp group EVPN-PE neighbor 10.255.0.2 set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ldp interface ge-0/0/0.0 set protocols ldp interface lo0.0 set routing-instances ALPHA instance-type virtual-switch set routing-instances ALPHA route-distinguisher 10.255.0.3:100 set routing-instances ALPHA vrf-target target:100:100 set routing-instances ALPHA protocols evpn extended-vlan-list 100 set routing-instances ALPHA bridge-domains ONE domain-type bridge set routing-instances ALPHA bridge-domains ONE vlan-id 100 set routing-instances ALPHA bridge-domains ONE interface ae0.0 set routing-instances ALPHA bridge-domains ONE routing-interface irb.0 set routing-instances BETA instance-type evpn set routing-instances BETA vlan-id 300 set routing-instances BETA interface ae1.0 set routing-instances BETA routing-interface irb.1 set routing-instances BETA route-distinguisher 10.255.0.3:300 set routing-instances BETA vrf-target target:300:300 set routing-instances DELTA instance-type vrf set routing-instances DELTA interface irb.0 set routing-instances DELTA interface irb.1 set routing-instances DELTA route-distinguisher 10.255.0.3:200 set routing-instances DELTA vrf-target target:200:200 set routing-instances DELTA vrf-table-label
P
set interfaces ge-0/0/0 unit 0 family inet address 198.51.100.2/24 set interfaces ge-0/0/0 unit 0 family mpls set interfaces ge-0/0/1 unit 0 family inet address 198.51.100.4/24 set interfaces ge-0/0/1 unit 0 family mpls set interfaces ge-0/0/2 unit 0 family inet address 198.51.100.6/24 set interfaces ge-0/0/2 unit 0 family mpls set interfaces lo0 unit 0 family inet address 10.255.0.4/32 primary set interfaces lo0 unit 0 family inet address 10.255.0.4/32 preferred set routing-options router-id 10.255.0.4 set protocols mpls interface lo0.0 set protocols mpls interface ge-0/0/0.0 set protocols mpls interface ge-0/0/1.0 set protocols mpls interface ge-0/0/2.0 set protocols ospf area 0.0.0.0 interface lo0.0 passive set protocols ospf area 0.0.0.0 interface ge-0/0/1.0 set protocols ospf area 0.0.0.0 interface ge-0/0/2.0 set protocols ospf area 0.0.0.0 interface ge-0/0/0.0 set protocols ldp interface ge-0/0/0.0 set protocols ldp interface ge-0/0/1.0 set protocols ldp interface ge-0/0/2.0 set protocols ldp interface lo0.0
Procedimiento
Procedimiento paso a paso
El siguiente ejemplo requiere que navegue por varios niveles en la jerarquía de configuración. Para obtener más información acerca de cómo navegar por la CLI, consulte Uso del editor de CLI en modo de configuración.
Para configurar el enrutador PE1:
Repita este procedimiento para el enrutador PE2 después de modificar los nombres de interfaz, direcciones y otros parámetros adecuados.
Configure las interfaces PE1 del enrutador.
[edit interfaces]
user@PE1# set ge-0/0/0 unit 0 family inet address 198.51.100.1/24 user@PE1# set ge-0/0/0 unit 0 family mpls user@PE1# set ge-0/0/1 gigether-options 802.3ad ae0 user@PE1# set ge-0/0/2 vlan-tagging user@PE1# set ge-0/0/2 encapsulation flexible-ethernet-services user@PE1# set ge-0/0/2 unit 0 encapsulation vlan-bridge user@PE1# set ge-0/0/2 unit 0 vlan-id 100 user@PE1# set ge-0/0/3 gigether-options 802.3ad ae1 user@PE1# set ge-0/0/4 vlan-tagging user@PE1# set ge-0/0/4 encapsulation flexible-ethernet-services user@PE1# set ge-0/0/4 esi 00:22:44:66:88:00:22:44:66:88 user@PE1# set ge-0/0/4 esi single-active user@PE1# set ge-0/0/4 unit 0 encapsulation vlan-bridge user@PE1# set ge-0/0/4 unit 0 vlan-id 300 user@PE1# set ae0 vlan-tagging user@PE1# set ae0 encapsulation flexible-ethernet-services user@PE1# set ae0 esi 00:11:22:33:44:55:66:77:88:99 user@PE1# set ae0 esi single-active user@PE1# set ae0 unit 0 encapsulation vlan-bridge user@PE1# set ae0 unit 0 vlan-id 100 user@PE1# set ae1 vlan-tagging user@PE1# set ae1 encapsulation flexible-ethernet-services user@PE1# set ae1 unit 0 encapsulation vlan-bridge user@PE1# set ae1 unit 0 vlan-id 300 user@PE1# set irb unit 0 family inet address 10.0.0.250/24 user@PE1# set irb unit 0 family inet address 10.0.0.251/24 user@PE1# set irb unit 0 mac 00:11:22:33:44:55 user@PE1# set irb unit 1 family inet address 192.0.2.10/24 user@PE1# set irb unit 1 family inet address 192.0.2.15/24 user@PE1# set irb unit 1 mac 00:22:44:66:88:00 user@PE1# set lo0 unit 0 family inet address 10.255.0.1/32 primary user@PE1# set lo0 unit 0 family inet address 10.255.0.1/32 preferredConfigure la dirección de circuito cerrado del enrutador PE1 como el ID del enrutador.
[edit routing-options]
user@PE1# set router-id 10.255.0.1Establezca el número de sistema autónomo para el enrutador PE1.
[edit routing-options]
user@PE1# set autonomous-system 100Habilite el próximo salto compuesto encadenado para la EVPN.
[edit routing-options]
user@PE1# set forwarding-table chained-composite-next-hop ingress evpnHabilite MPLS en la interfaz de circuito cerrado del enrutador PE1 y en la interfaz que conecta PE1 al enrutador P.
[edit protocols]
user@PE1# set mpls interface lo0.0 user@PE1# set mpls interface ge-0/0/0.0Configure el grupo BGP para el enrutador PE1.
[edit protocols]
user@PE1# set bgp group EVPN-PE type internalAsigne direcciones locales y de vecinos al grupo BGP EVPN-PE para que el enrutador PE1 se empareja con los enrutadores PE2 y PE3.
[edit protocols]
user@PE1# set bgp group EVPN-PE local-address 10.255.0.1 user@PE1# set bgp group EVPN-PE neighbor 10.255.0.2 user@PE1# set bgp group EVPN-PE neighbor 10.255.0.3Incluya la Información de alcance de la capa de red (NLRI) de señalización de EVPN al grupo EVPN-PE.
[edit protocols]
user@PE1# set bgp group EVPN-PE family evpn signalingConfigure OSPF en la interfaz de circuito cerrado del enrutador PE1 y en la interfaz que conecta PE1 al enrutador P.
[edit protocols]
user@PE1# set ospf area 0.0.0.0 interface lo0.0 passive user@PE1# set ospf area 0.0.0.0 interface ge-0/0/0.0Habilite LDP en la interfaz de circuito cerrado del enrutador PE1 y en la interfaz que conecta PE1 con el enrutador P.
[edit protocols]
user@PE1# set ldp interface lo0.0 user@PE1# set ldp interface ge-0/0/0.0Configure la instancia de enrutamiento de conmutador virtual – ALPHA.
[edit routing-instances] user@PE1# set ALPHA instance-type virtual-switch
Configure la lista de VLAN extendida para la instancia de enrutamiento ALPHA.
[edit routing-instances] user@PE1# set ALPHA protocols evpn extended-vlan-list 100
Establezca el tipo para el dominio de puente en la instancia de enrutamiento ALPHA.
[edit routing-instances] user@PE1# set ALPHA bridge-domains ONE domain-type bridge
Establezca la VLAN para el dominio de puente en la instancia de enrutamiento ALPHA.
[edit routing-instances] user@PE1# set ALPHA bridge-domains ONE vlan-id 100
Configure los nombres de interfaz para la instancia de enrutamiento ALPHA.
[edit routing-instances] user@PE1# set ALPHA bridge-domains ONE interface ae0.0 user@PE1# set ALPHA bridge-domains ONE interface ge-0/0/2.0 user@PE1# set ALPHA bridge-domains ONE routing-interface irb.0
Configure el distinguidor de ruta para la instancia de enrutamiento ALPHA.
[edit routing-instances] user@PE1# set ALPHA route-distinguisher 10.255.0.1:100
Configure la comunidad de destino de enrutamiento y reenvío VPN (VRF) para la instancia de enrutamiento ALPHA.
[edit routing-instances] user@PE1# set ALPHA vrf-target target:100:100
Configure la instancia de enrutamiento EVPN – BETA.
[edit routing-instances] user@PE1# set BETA instance-type evpn
Establezca el identificador de VLAN para el dominio de puente en la instancia de enrutamiento BETA.
[edit routing-instances] user@PE1# set BETA vlan-id 300
Configure los nombres de interfaz para la instancia de enrutamiento BETA.
[edit routing-instances] user@PE1# set BETA interface ge-0/0/4.0 user@PE1# set BETA interface ae1.0 user@PE1# set BETA routing-interface irb.1
Configure el distinguidor de ruta para la instancia de enrutamiento BETA.
[edit routing-instances] user@PE1# set BETA route-distinguisher 10.255.0.1:300
Configure la comunidad de destino de enrutamiento y reenvío VPN (VRF) para la instancia de enrutamiento BETA.
[edit routing-instances] user@PE1# set BETA vrf-target target:300:300
Configure la instancia de enrutamiento VRF – DELTA.
[edit routing-instances] user@PE1# set DELTA instance-type vrf
Configure los nombres de interfaz para la instancia de enrutamiento delta.
[edit routing-instances] user@PE1# set DELTA interface irb.0 user@PE1# set DELTA interface irb.1
Configure el distinguidor de ruta para la instancia de enrutamiento delta.
[edit routing-instances] user@PE1# set DELTA route-distinguisher 10.255.0.1:200
Configure la comunidad de destino de enrutamiento y reenvío VPN (VRF) para la instancia de enrutamiento DELTA.
[edit routing-instances] user@PE1# set DELTA vrf-target target:200:200 user@PE1# set DELTA vrf-table-label
Resultados
Desde el modo de configuración, ingrese los comandos , show routing-options
, show protocols
y show routing-instances
para confirmar la show interfaces
configuración. Si el resultado no muestra la configuración deseada, repita las instrucciones en este ejemplo para corregir la configuración.
user@PE1# show interfaces
ge-0/0/0 {
unit 0 {
family inet {
address 198.51.100.1/24;
}
family mpls;
}
}
ge-0/0/1 {
gigether-options {
802.3ad ae0;
}
}
ge-0/0/2 {
vlan-tagging;
encapsulation flexible-ethernet-services;
unit 0 {
encapsulation vlan-bridge;
vlan-id 100;
}
}
ge-0/0/3 {
gigether-options {
802.3ad ae1;
}
}
ge-0/0/4 {
vlan-tagging;
encapsulation flexible-ethernet-services;
esi {
00:22:44:66:88:00:22:44:66:88;
single-active;
}
unit 0 {
encapsulation vlan-bridge;
vlan-id 300;
}
}
ae0 {
vlan-tagging;
encapsulation flexible-ethernet-services;
esi {
00:11:22:33:44:55:66:77:88:99;
single-active;
}
unit 0 {
encapsulation vlan-bridge;
vlan-id 100;
}
}
ae1 {
vlan-tagging;
encapsulation flexible-ethernet-services;
unit 0 {
encapsulation vlan-bridge;
vlan-id 300;
}
}
irb {
unit 0 {
family inet {
address 10.0.0.250/24;
address 10.0.0.251/24;
}
mac 00:11:22:33:44:55;
}
unit 1 {
family inet {
address 192.0.2.10/24;
address 192.0.2.15/24;
}
mac 00:22:44:66:88:00;
}
}
lo0 {
unit 0 {
family inet {
address 10.255.0.1/32 {
primary;
preferred;
}
}
}
}
user@PE1# show routing-options
router-id 10.255.0.1;
autonomous-system 100;
forwarding-table {
chained-composite-next-hop {
ingress {
evpn;
}
}
}
user@PE1# show protocols
mpls {
interface lo0.0;
interface ge-0/0/0.0;
}
bgp {
group EVPN-PE {
type internal;
local-address 10.255.0.1;
family evpn {
signaling;
}
neighbor 10.255.0.2;
neighbor 10.255.0.3;
}
}
ospf {
area 0.0.0.0 {
interface lo0.0 {
passive;
}
interface ge-0/0/0.0;
}
}
ldp {
interface ge-0/0/0.0;
interface lo0.0;
}
user@PE1# show routing-instances
ALPHA {
instance-type virtual-switch;
route-distinguisher 10.255.0.1:100;
vrf-target target:100:100;
protocols {
evpn {
extended-vlan-list 100;
}
}
bridge-domains {
ONE {
domain-type bridge;
vlan-id 100;
interface ae0.0;
interface ge-0/0/2.0;
routing-interface irb.0;
}
}
}
BETA {
instance-type evpn;
vlan-id 300;
interface ge-0/0/4.0;
interface ae1.0;
routing-interface irb.1;
route-distinguisher 10.255.0.1:300;
vrf-target target:300:300;
}
DELTA {
instance-type vrf;
interface irb.0;
interface irb.1;
route-distinguisher 10.255.0.1:200;
vrf-target target:200:200;
vrf-table-label;
}
Verificación
Confirme que la configuración funciona correctamente en las siguientes áreas diferentes en todos los enrutadores de PE, donde el enrutador PE1 es el reenvío designado (DF), el enrutador PE2 es el que no es DF y el enrutador PE3 es el PE remoto:
Configuración de instancia de enrutamiento EVPN
Rutas de multiconexión EVPN
Proceso de elección del DF
Configuración de instancia de enrutamiento de conmutadores virtuales e IRB
Entradas de ruta de host
- Verificar el estado de la instancia de EVPN
- Verificar las rutas de detección automática por segmento Ethernet
- Verificar la ruta por segmentos Ethernet
- Verificar el estado del DF
- Verificar el estado de BDF
- Verificar MAC IRB remoto
- Verificar IRB remoto y IP de host
- Tabla ARP de verificación
- Tabla ARP de verificación de puente
- Tabla MAC de verificación de bridge
Verificar el estado de la instancia de EVPN
Propósito
Verifique las instancias de enrutamiento de EVPN y su estado.
Acción
Enrutador PE1
Desde el modo operativo, ejecute el show evpn instance extensive comando.
user@PE1> show evpn instance extensive Instance: ALPHA Route Distinguisher: 10.255.0.1:100 Per-instance MAC route label: 300144 Per-instance multicast route label: 300160 MAC database status Local Remote Total MAC addresses: 3 4 Default gateway MAC addresses: 1 2 Number of local interfaces: 2 (2 up) Interface name ESI Mode SH label ae0.0 00:11:22:33:44:55:66:77:88:99 single-active ge-0/0/2.0 00:00:00:00:00:00:00:00:00:00 single-homed Number of IRB interfaces: 1 (1 up) Interface name L3 context irb.0 DELTA Number of neighbors: 2 10.255.0.2 Received routes MAC address advertisement: 2 MAC+IP address advertisement: 3 Inclusive multicast: 1 Ethernet auto-discovery: 1 10.255.0.3 Received routes MAC address advertisement: 2 MAC+IP address advertisement: 2 Inclusive multicast: 1 Ethernet auto-discovery: 0 Number of ethernet segments: 1 ESI: 00:11:22:33:44:55:66:77:88:99 Designated forwarder: 10.255.0.1 Backup forwarder: 10.255.0.2 Instance: BETA Route Distinguisher: 10.255.0.1:300 VLAN ID: 300 Per-instance MAC route label: 300176 Per-instance multicast route label: 300192 MAC database status Local Remote Total MAC addresses: 3 4 Default gateway MAC addresses: 1 2 Number of local interfaces: 2 (2 up) Interface name ESI Mode SH label ae1.0 00:00:00:00:00:00:00:00:00:00 single-homed ge-0/0/4.0 00:22:44:66:88:00:22:44:66:88 single-active Number of IRB interfaces: 1 (1 up) Interface name L3 context irb.1 DELTA Number of neighbors: 2 10.255.0.2 Received routes MAC address advertisement: 2 MAC+IP address advertisement: 3 Inclusive multicast: 1 Ethernet auto-discovery: 1 10.255.0.3 Received routes MAC address advertisement: 2 MAC+IP address advertisement: 2 Inclusive multicast: 1 Ethernet auto-discovery: 0 Number of ethernet segments: 1 ESI: 00:22:44:66:88:00:22:44:66:88 Designated forwarder: 10.255.0.1 Backup forwarder: 10.255.0.2 Instance: __default_evpn__ Route Distinguisher: 10.255.0.1:0 VLAN ID: 0 Per-instance MAC route label: 300208 Per-instance multicast route label: 300224 MAC database status Local Remote Total MAC addresses: 0 0 Default gateway MAC addresses: 0 0 Number of local interfaces: 0 (0 up) Number of IRB interfaces: 0 (0 up) Number of neighbors: 1 10.255.0.2 Received routes Ethernet auto-discovery: 0 Ethernet Segment: 2 Number of ethernet segments: 0
Enrutador PE2
Desde el modo operativo, ejecute el show evpn instance extensive comando.
user@PE2> show evpn instance extensive Instance: ALPHA Route Distinguisher: 10.255.0.2:100 Per-instance MAC route label: 300208 Per-instance multicast route label: 300224 MAC database status Local Remote Total MAC addresses: 2 5 Default gateway MAC addresses: 1 2 Number of local interfaces: 2 (2 up) Interface name ESI Mode SH label ae0.0 00:11:22:33:44:55:66:77:88:99 single-active ge-0/0/2.0 00:00:00:00:00:00:00:00:00:00 single-homed Number of IRB interfaces: 1 (1 up) Interface name L3 context irb.0 DELTA Number of neighbors: 2 10.255.0.1 Received routes MAC address advertisement: 3 MAC+IP address advertisement: 4 Inclusive multicast: 1 Ethernet auto-discovery: 1 10.255.0.3 Received routes MAC address advertisement: 2 MAC+IP address advertisement: 2 Inclusive multicast: 1 Ethernet auto-discovery: 0 Number of ethernet segments: 1 ESI: 00:11:22:33:44:55:66:77:88:99 Designated forwarder: 10.255.0.1 Backup forwarder: 10.255.0.2 Instance: BETA Route Distinguisher: 10.255.0.2:300 VLAN ID: 300 Per-instance MAC route label: 300240 Per-instance multicast route label: 300256 MAC database status Local Remote Total MAC addresses: 2 5 Default gateway MAC addresses: 1 2 Number of local interfaces: 2 (2 up) Interface name ESI Mode SH label ae1.0 00:00:00:00:00:00:00:00:00:00 single-homed ge-0/0/4.0 00:22:44:66:88:00:22:44:66:88 single-active Number of IRB interfaces: 1 (1 up) Interface name L3 context irb.1 DELTA Number of neighbors: 2 10.255.0.1 Received routes MAC address advertisement: 3 MAC+IP address advertisement: 4 Inclusive multicast: 1 Ethernet auto-discovery: 1 10.255.0.3 Received routes MAC address advertisement: 2 MAC+IP address advertisement: 2 Inclusive multicast: 1 Ethernet auto-discovery: 0 Number of ethernet segments: 1 ESI: 00:22:44:66:88:00:22:44:66:88 Designated forwarder: 10.255.0.1 Backup forwarder: 10.255.0.2 Instance: __default_evpn__ Route Distinguisher: 10.255.0.2:0 VLAN ID: 0 Per-instance MAC route label: 300272 Per-instance multicast route label: 300288 MAC database status Local Remote Total MAC addresses: 0 0 Default gateway MAC addresses: 0 0 Number of local interfaces: 0 (0 up) Number of IRB interfaces: 0 (0 up) Number of neighbors: 1 10.255.0.1 Received routes Ethernet auto-discovery: 0 Ethernet Segment: 2 Number of ethernet segments: 0
Enrutador PE3
Desde el modo operativo, ejecute el show evpn instance extensive comando.
user@PE3> show evpn instance extensive Instance: ALPHA Route Distinguisher: 10.255.0.3:100 Per-instance MAC route label: 299776 Per-instance multicast route label: 299792 MAC database status Local Remote Total MAC addresses: 2 4 Default gateway MAC addresses: 1 1 Number of local interfaces: 1 (1 up) Interface name ESI Mode SH label ae0.0 00:00:00:00:00:00:00:00:00:00 single-homed Number of IRB interfaces: 1 (1 up) Interface name L3 context irb.0 DELTA Number of neighbors: 2 10.255.0.1 Received routes MAC address advertisement: 3 MAC+IP address advertisement: 4 Inclusive multicast: 1 Ethernet auto-discovery: 1 10.255.0.2 Received routes MAC address advertisement: 2 MAC+IP address advertisement: 3 Inclusive multicast: 1 Ethernet auto-discovery: 1 Number of ethernet segments: 0 Instance: BETA Route Distinguisher: 10.255.0.3:300 VLAN ID: 300 Per-instance MAC route label: 299808 Per-instance multicast route label: 299824 MAC database status Local Remote Total MAC addresses: 2 4 Default gateway MAC addresses: 1 1 Number of local interfaces: 1 (1 up) Interface name ESI Mode SH label ae1.0 00:00:00:00:00:00:00:00:00:00 single-homed Number of IRB interfaces: 1 (1 up) Interface name L3 context irb.1 DELTA Number of neighbors: 2 10.255.0.1 Received routes MAC address advertisement: 3 MAC+IP address advertisement: 4 Inclusive multicast: 1 Ethernet auto-discovery: 1 10.255.0.2 Received routes MAC address advertisement: 2 MAC+IP address advertisement: 3 Inclusive multicast: 1 Ethernet auto-discovery: 1 Number of ethernet segments: 0 Instance: __default_evpn__ Route Distinguisher: 10.255.0.3:0 VLAN ID: 0 Per-instance MAC route label: 299840 Per-instance multicast route label: 299856 MAC database status Local Remote Total MAC addresses: 0 0 Default gateway MAC addresses: 0 0 Number of local interfaces: 0 (0 up) Number of IRB interfaces: 0 (0 up) Number of neighbors: 0 Number of ethernet segments: 0
Significado
El resultado proporciona la siguiente información:
Lista de instancias de enrutamiento de conmutadores virtuales y EVPN.
Modo de operación de cada interfaz
Vecinos de cada instancia de enrutamiento.
Número de rutas diferentes recibidas de cada vecino.
ESI se adjunta a cada instancia de enrutamiento.
Número de segmentos de Ethernet en cada instancia de enrutamiento.
Roles de elección del DF para cada ESI en un EVI.
Etiquetas DE ID de VLAN y MAC para cada instancia de enrutamiento.
Detalles de la interfaz IRB
Número de direcciones MAC de puerta de enlace predeterminadas recibidas para la instancia de enrutamiento de conmutador virtual (ALPHA).
Verificar las rutas de detección automática por segmento Ethernet
Propósito
Compruebe que se reciben las rutas de detección automática por segmento de Ethernet.
Acción
Enrutador PE1
Desde el modo operativo, ejecute el show route table ALPHA.evpn.0 comando.
user@PE1> show route table ALPHA.evpn.0 ALPHA.evpn.0: 20 destinations, 20 routes (20 active, 0 holddown, 0 hidden) + = Active Route, - = Last Active, * = Both 1:10.255.0.2:0::112233445566778899::0/304 *[BGP/170] 2d 23:51:27, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299808 2:10.255.0.1:100::100::00:00:00:00:00:01/304 *[EVPN/170] 2d 23:52:22 Indirect 2:10.255.0.1:100::100::00:00:00:00:00:04/304 *[EVPN/170] 2d 23:52:24 Indirect 2:10.255.0.1:100::100::00:11:22:33:44:55/304 *[EVPN/170] 2d 23:53:32 Indirect 2:10.255.0.2:100::100::00:00:00:00:00:02/304 *[BGP/170] 2d 23:51:27, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299808 2:10.255.0.2:100::100::00:11:22:33:44:55/304 *[BGP/170] 2d 23:51:27, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299808 2:10.255.0.3:100::100::00:00:00:00:00:03/304 *[BGP/170] 2d 23:39:04, localpref 100, from 10.255.0.3 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299824 2:10.255.0.3:100::100::00:05:86:71:b3:f0/304 *[BGP/170] 2d 23:39:24, localpref 100, from 10.255.0.3 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299824 2:10.255.0.1:100::100::00:00:00:00:00:01::10.0.0.1/304 *[EVPN/170] 2d 23:52:22 Indirect 2:10.255.0.1:100::100::00:00:00:00:00:04::10.0.0.4/304 *[EVPN/170] 2d 23:52:24 Indirect 2:10.255.0.1:100::100::00:11:22:33:44:55::10.0.0.250/304 *[EVPN/170] 2d 23:53:32 Indirect 2:10.255.0.1:100::100::00:11:22:33:44:55::10.0.0.251/304 *[EVPN/170] 2d 23:53:32 Indirect 2:10.255.0.2:100::100::00:00:00:00:00:02::10.0.0.2/304 *[BGP/170] 2d 23:51:27, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299808 2:10.255.0.2:100::100::00:11:22:33:44:55::10.0.0.250/304 *[BGP/170] 2d 23:51:27, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299808 2:10.255.0.2:100::100::00:11:22:33:44:55::10.0.0.252/304 *[BGP/170] 2d 23:51:27, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299808 2:10.255.0.3:100::100::00:00:00:00:00:03::10.0.0.3/304 *[BGP/170] 2d 23:39:04, localpref 100, from 10.255.0.3 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299824 2:10.255.0.3:100::100::00:05:86:71:b3:f0::10.0.0.253/304 *[BGP/170] 2d 23:39:24, localpref 100, from 10.255.0.3 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299824 3:10.255.0.1:100::100::10.255.0.1/304 *[EVPN/170] 2d 23:52:33 Indirect 3:10.255.0.2:100::100::10.255.0.2/304 *[BGP/170] 2d 23:51:27, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299808 3:10.255.0.3:100::100::10.255.0.3/304 *[BGP/170] 2d 23:39:24, localpref 100, from 10.255.0.3 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299824
Enrutador PE2
Desde el modo operativo, ejecute el show route table ALPHA.evpn.0 comando.
user@PE2> show show route table ALPHA.evpn.0 ALPHA.evpn.0: 20 destinations, 20 routes (20 active, 0 holddown, 0 hidden) + = Active Route, - = Last Active, * = Both 1:10.255.0.1:0::112233445566778899::0/304 *[BGP/170] 10:46:04, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:00:00:00:00:01/304 *[BGP/170] 10:43:51, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:00:00:00:00:04/304 *[BGP/170] 10:45:06, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:11:22:33:44:55/304 *[BGP/170] 10:46:04, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 2:10.255.0.2:100::100::00:00:00:00:00:02/304 *[EVPN/170] 10:43:48 Indirect 2:10.255.0.2:100::100::00:11:22:33:44:55/304 *[EVPN/170] 10:46:04 Indirect 2:10.255.0.3:100::100::00:00:00:00:00:03/304 *[BGP/170] 10:46:04, localpref 100, from 10.255.0.3 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299792 2:10.255.0.3:100::100::00:05:86:71:79:f0/304 *[BGP/170] 10:46:04, localpref 100, from 10.255.0.3 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299792 2:10.255.0.1:100::100::00:00:00:00:00:01::10.0.0.1/304 *[BGP/170] 10:41:52, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:00:00:00:00:04::10.0.0.4/304 *[BGP/170] 10:45:06, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:11:22:33:44:55::10.0.0.250/304 *[BGP/170] 10:46:04, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:11:22:33:44:55::10.0.0.251/304 *[BGP/170] 10:46:04, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 2:10.255.0.2:100::100::00:00:00:00:00:02::10.0.0.2/304 *[EVPN/170] 10:40:25 Indirect 2:10.255.0.2:100::100::00:11:22:33:44:55::10.0.0.250/304 *[EVPN/170] 10:46:04 Indirect 2:10.255.0.2:100::100::00:11:22:33:44:55::10.0.0.252/304 *[EVPN/170] 10:46:04 Indirect 2:10.255.0.3:100::100::00:00:00:00:00:03::10.0.0.3/304 *[BGP/170] 10:46:04, localpref 100, from 10.255.0.3 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299792 2:10.255.0.3:100::100::00:05:86:71:79:f0::10.0.0.253/304 *[BGP/170] 10:46:04, localpref 100, from 10.255.0.3 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299792 3:10.255.0.1:100::100::10.255.0.1/304 *[BGP/170] 10:46:04, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 3:10.255.0.2:100::100::10.255.0.2/304 *[EVPN/170] 10:46:04 Indirect 3:10.255.0.3:100::100::10.255.0.3/304 *[BGP/170] 10:46:04, localpref 100, from 10.255.0.3 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299792
Enrutador PE3
Desde el modo operativo, ejecute el show route table ALPHA.evpn.0 comando.
user@PE3> show route table ALPHA.evpn.0 ALPHA.evpn.0: 21 destinations, 21 routes (21 active, 0 holddown, 0 hidden) + = Active Route, - = Last Active, * = Both 1:10.255.0.1:0::112233445566778899::0/304 *[BGP/170] 10:47:43, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299776 1:10.255.0.2:0::112233445566778899::0/304 *[BGP/170] 10:47:34, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299808 2:10.255.0.1:100::100::00:00:00:00:00:01/304 *[BGP/170] 10:45:21, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:00:00:00:00:04/304 *[BGP/170] 10:46:36, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:11:22:33:44:55/304 *[BGP/170] 10:47:43, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299776 2:10.255.0.2:100::100::00:00:00:00:00:02/304 *[BGP/170] 10:45:18, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299808 2:10.255.0.2:100::100::00:11:22:33:44:55/304 *[BGP/170] 10:47:34, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299808 2:10.255.0.3:100::100::00:00:00:00:00:03/304 *[EVPN/170] 10:59:05 Indirect 2:10.255.0.3:100::100::00:05:86:71:79:f0/304 *[EVPN/170] 11:00:23 Indirect 2:10.255.0.1:100::100::00:00:00:00:00:01::10.0.0.1/304 *[BGP/170] 10:43:22, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:00:00:00:00:04::10.0.0.4/304 *[BGP/170] 10:46:36, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:11:22:33:44:55::10.0.0.250/304 *[BGP/170] 10:47:43, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299776 2:10.255.0.1:100::100::00:11:22:33:44:55::10.0.0.251/304 *[BGP/170] 10:47:43, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299776 2:10.255.0.2:100::100::00:00:00:00:00:02::10.0.0.2/304 *[BGP/170] 10:41:55, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299808 2:10.255.0.2:100::100::00:11:22:33:44:55::10.0.0.250/304 *[BGP/170] 10:47:34, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299808 2:10.255.0.2:100::100::00:11:22:33:44:55::10.0.0.252/304 *[BGP/170] 10:47:34, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299808 2:10.255.0.3:100::100::00:00:00:00:00:03::10.0.0.3/304 *[EVPN/170] 10:59:05 Indirect 2:10.255.0.3:100::100::00:05:86:71:79:f0::10.0.0.253/304 *[EVPN/170] 11:00:23 Indirect 3:10.255.0.1:100::100::10.255.0.1/304 *[BGP/170] 10:47:43, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299776 3:10.255.0.2:100::100::10.255.0.2/304 *[BGP/170] 10:47:34, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.6 via ge-0/0/0.0, Push 299808 3:10.255.0.3:100::100::10.255.0.3/304 *[EVPN/170] 10:59:40 Indirect
Significado
La ruta de detección automática remota tipo 1 se recibe para el ESI conectado al enrutador PE2, que es el otro enrutador PE conectado al dispositivo CE multienlace.
Verificar la ruta por segmentos Ethernet
Propósito
Compruebe que se reciben las rutas de detección automática locales y anunciadas por segmento de Ethernet y las rutas por segmentos de Ethernet.
Acción
Enrutador PE1
Desde el modo operativo, ejecute el show route table __default_evpn__.evpn.0 comando.
user@PE1> show route table __default_evpn__.evpn.0 __default_evpn__.evpn.0: 6 destinations, 6 routes (6 active, 0 holddown, 0 hidden) + = Active Route, - = Last Active, * = Both 1:10.255.0.1:0::112233445566778899::0/304 *[EVPN/170] 3d 00:00:31 Indirect 1:10.255.0.1:0::224466880022446688::0/304 *[EVPN/170] 3d 00:00:31 Indirect 4:10.255.0.1:0::112233445566778899:10.255.0.1/304 *[EVPN/170] 3d 00:00:31 Indirect 4:10.255.0.1:0::224466880022446688:10.255.0.1/304 *[EVPN/170] 3d 00:00:31 Indirect 4:10.255.0.2:0::112233445566778899:10.255.0.2/304 *[BGP/170] 3d 00:00:20, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299808 4:10.255.0.2:0::224466880022446688:10.255.0.2/304 *[BGP/170] 3d 00:00:20, localpref 100, from 10.255.0.2 AS path: I, validation-state: unverified > to 198.51.100.2 via ge-0/0/0.0, Push 299808
Enrutador PE2
Desde el modo operativo, ejecute el show route table __default_evpn__.evpn.0 comando.
user@PE2> show route table __default_evpn__.evpn.0 __default_evpn__.evpn.0: 6 destinations, 6 routes (6 active, 0 holddown, 0 hidden) + = Active Route, - = Last Active, * = Both 1:10.255.0.2:0::112233445566778899::0/304 *[EVPN/170] 10:49:26 Indirect 1:10.255.0.2:0::224466880022446688::0/304 *[EVPN/170] 10:49:26 Indirect 4:10.255.0.1:0::112233445566778899:10.255.0.1/304 *[BGP/170] 10:49:26, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 4:10.255.0.1:0::224466880022446688:10.255.0.1/304 *[BGP/170] 10:49:26, localpref 100, from 10.255.0.1 AS path: I, validation-state: unverified > to 198.51.100.4 via ge-0/0/0.0, Push 299776 4:10.255.0.2:0::112233445566778899:10.255.0.2/304 *[EVPN/170] 10:49:26 Indirect 4:10.255.0.2:0::224466880022446688:10.255.0.2/304 *[EVPN/170] 10:49:26 Indirect
Significado
El resultado muestra las rutas local y remota tipo 1 (detección automática) y tipo 4 (segmento Ethernet):
1:10.255.0.1:0::112233445566778899::0/304
— Detección automática de ruta por segmento de Ethernet para cada ESI local conectado al enrutador PE1 y al enrutador PE2.4:10.255.0.1:0::112233445566778899:10.255.0.1/304
—Ruta de segmento Ethernet para cada ESI local conectado al enrutador PE1 y al enrutador PE2.4:10.255.0.2:0::112233445566778899:10.255.0.2/304
—Ruta por segmentos de Ethernet remota desde el enrutador PE2.
Verificar el estado del DF
Propósito
Confirme qué enrutador de PE es el reenvío designado (DF).
Acción
Desde el modo operativo, ejecute el show evpn instance ALPHA esi esi designated-forwarder comando.
user@PE1> show evpn instance ALPHA esi 00:11:22:33:44:55:66:77:88:99 designated-forwarder Instance: ALPHA Number of ethernet segments: 1 ESI: 00:11:22:33:44:55:66:77:88:99 Designated forwarder: 10.255.0.1
Significado
El ENRUTADOR PE1 es el DF para la instancia de enrutamiento ALPHA.
Verificar el estado de BDF
Propósito
Confirme qué enrutador pe es el reenviador designado de respaldo (BDF).
Acción
Desde el modo operativo, ejecute el show evpn instance ALPHA esi esi backup-forwarder comando.
user@PE1> show evpn instance ALPHA esi 00:11:22:33:44:55:66:77:88:99 backup-forwarder Instance: ALPHA Number of ethernet segments: 1 ESI: 00:11:22:33:44:55:66:77:88:99 Backup forwarder: 10.255.0.2
Significado
El enrutador PE2 es el BDF para la instancia de enrutamiento ALPHA.
Verificar MAC IRB remoto
Propósito
Verifique que las direcciones MAC de la puerta de enlace remota estén sincronizadas entre todos los enrutadores de PE.
Acción
Enrutador PE1
Desde el modo operativo, ejecute el show bridge evpn peer-gateway-mac comando.
user@PE1> show bridge evpn peer-gateway-mac Routing instance : ALPHA Bridging domain : ONE, VLAN : 100 Installed GW MAC addresses: 00:05:86:71:79:f0
Enrutador PE2
Desde el modo operativo, ejecute el show bridge evpn peer-gateway-mac comando.
user@PE2> show bridge evpn peer-gateway-mac Routing instance : ALPHA Bridging domain : ONE, VLAN : 100 Installed GW MAC addresses: 00:05:86:71:79:f0
Enrutador PE3
Desde el modo operativo, ejecute el show bridge evpn peer-gateway-mac comando.
user@PE2> show bridge evpn peer-gateway-mac Routing instance : ALPHA Bridging domain : ONE, VLAN : 100 Installed GW MAC addresses: 00:11:22:33:44:55
Significado
Las direcciones MAC de la puerta de enlace remota se sincronizan:
La puerta de enlace MAC PE3 del enrutador se instala en la tabla peer-gateway-mac de los enrutadores PE1 y PE2.
Las direcciones MAC de puerta de enlace PE1 y PE2 de los enrutadores se instalan en la tabla peer-gateway-mac PE3 del enrutador.
Verificar IRB remoto y IP de host
Propósito
Compruebe que se reciben la IP IRB remota y la IP de host.
Acción
Enrutador PE1
Desde el modo operativo, ejecute el show route table DELTA comando.
user@PE1> show route table DELTA DELTA.inet.0: 16 destinations, 18 routes (16 active, 0 holddown, 0 hidden) + = Active Route, - = Last Active, * = Both 10.0.0.0/24 *[Direct/0] 11:25:54 > via irb.0 [Direct/0] 11:25:54 > via irb.0 10.0.0.1/32 *[EVPN/7] 11:21:33 > via irb.0 10.0.0.2/32 *[EVPN/7] 11:20:06, metric2 1 > to 198.51.100.2 via ge-0/0/0.0, Push 300208, Push 299808(top) 10.0.0.3/32 *[EVPN/7] 11:25:54, metric2 1 > to 198.51.100.2 via ge-0/0/0.0, Push 299776, Push 299792(top) 10.0.0.4/32 *[EVPN/7] 11:24:47 > via irb.0 10.0.0.250/32 *[Local/0] 11:38:29 Local via irb.0 10.0.0.251/32 *[Local/0] 11:38:29 Local via irb.0 10.0.0.253/32 *[EVPN/7] 11:25:54, metric2 1 > to 198.51.100.2 via ge-0/0/0.0, Push 299776, Push 299792(top) 192.0.2.0/24 *[Direct/0] 11:25:55 > via irb.1 [Direct/0] 11:25:55 > via irb.1 192.0.2.1/24 *[EVPN/7] 11:21:20 > via irb.1 192.0.2.2/24 *[EVPN/7] 11:19:54, metric2 1 > to 198.51.100.2 via ge-0/0/0.0, Push 300240, Push 299808(top) 192.0.2.3/24 *[EVPN/7] 11:25:54, metric2 1 > to 198.51.100.2 via ge-0/0/0.0, Push 299808, Push 299792(top) 192.0.2.4/24 *[EVPN/7] 11:24:40 > via irb.1 192.0.2.10/24 *[Local/0] 11:38:29 Local via irb.1 192.0.2.15/24 *[Local/0] 11:38:29 Local via irb.1 192.0.2.13/24 *[EVPN/7] 11:25:54, metric2 1 > to 198.51.100.2 via ge-0/0/0.0, Push 299808, Push 299792(top)
Enrutador PE2
Desde el modo operativo, ejecute el show route table DELTA comando.
user@PE2> show route table DELTA DELTA.inet.0: 16 destinations, 18 routes (16 active, 0 holddown, 0 hidden) + = Active Route, - = Last Active, * = Both 10.0.0.0/24 *[Direct/0] 11:30:02 > via irb.0 [Direct/0] 11:30:02 > via irb.0 10.0.0.1/32 *[EVPN/7] 11:25:50, metric2 1 > to 198.51.100.4 via ge-0/0/0.0, Push 300144, Push 299776(top) 10.0.0.2/32 *[EVPN/7] 11:24:23 > via irb.0 10.0.0.3/32 *[EVPN/7] 11:30:02, metric2 1 > to 198.51.100.4 via ge-0/0/0.0, Push 299776, Push 299792(top) 10.0.0.4/32 *[EVPN/7] 11:29:04, metric2 1 > to 198.51.100.4 via ge-0/0/0.0, Push 300144, Push 299776(top) 10.0.0.250/32 *[Local/0] 11:42:33 Local via irb.0 10.0.0.252/32 *[Local/0] 11:42:33 Local via irb.0 10.0.0.253/32 *[EVPN/7] 11:30:02, metric2 1 > to 198.51.100.4 via ge-0/0/0.0, Push 299776, Push 299792(top) 192.0.2.0/24 *[Direct/0] 11:30:02 > via irb.1 [Direct/0] 11:30:02 > via irb.1 192.0.2.1/24 *[EVPN/7] 11:25:37, metric2 1 > to 198.51.100.4 via ge-0/0/0.0, Push 300176, Push 299776(top) 192.0.2.2/24 *[EVPN/7] 11:24:11 > via irb.1 192.0.2.3/24 *[EVPN/7] 11:30:02, metric2 1 > to 198.51.100.4 via ge-0/0/0.0, Push 299808, Push 299792(top) 192.0.2.4/24 *[EVPN/7] 11:28:57, metric2 1 > to 198.51.100.4 via ge-0/0/0.0, Push 300176, Push 299776(top) 192.0.2.10/24 *[Local/0] 11:42:33 Local via irb.1 192.0.2.12/24 *[Local/0] 11:42:33 Local via irb.1 192.0.2.13/24 *[EVPN/7] 11:30:02, metric2 1 > to 198.51.100.4 via ge-0/0/0.0, Push 299808, Push 299792(top)
Enrutador PE3
Desde el modo operativo, ejecute el show route table DELTA comando.
user@PE3> show route table DELTA DELTA.inet.0: 16 destinations, 16 routes (16 active, 0 holddown, 0 hidden) + = Active Route, - = Last Active, * = Both 10.0.0.0/24 *[Direct/0] 11:42:15 > via irb.0 10.0.0.1/32 *[EVPN/7] 11:25:56, metric2 1 > to 198.51.100.6 via ge-0/0/0.0, Push 300144, Push 299776(top) 10.0.0.2/32 *[EVPN/7] 11:24:29, metric2 1 > to 198.51.100.6 via ge-0/0/0.0, Push 300208, Push 299808(top) 10.0.0.3/32 *[EVPN/7] 11:41:39 > via irb.0 10.0.0.4/32 *[EVPN/7] 11:29:10, metric2 1 > to 198.51.100.6 via ge-0/0/0.0, Push 300144, Push 299776(top) 10.0.0.250/32 *[EVPN/7] 11:30:08, metric2 1 > to 198.51.100.6 via ge-0/0/0.0, Push 300208, Push 299808(top) 10.0.0.252/32 *[EVPN/7] 11:30:08, metric2 1 > to 198.51.100.6 via ge-0/0/0.0, Push 300208, Push 299808(top) 10.0.0.253/32 *[Local/0] 11:42:57 Local via irb.0 192.0.2.0/24 *[Direct/0] 11:42:15 > via irb.1 192.0.2.1/24 *[EVPN/7] 11:25:43, metric2 1 > to 198.51.100.6 via ge-0/0/0.0, Push 300176, Push 299776(top) 192.0.2.2/24 *[EVPN/7] 11:24:17, metric2 1 > to 198.51.100.6 via ge-0/0/0.0, Push 300240, Push 299808(top) 192.0.2.3/24 *[EVPN/7] 11:42:04 > via irb.1 192.0.2.4/24 *[EVPN/7] 11:29:03, metric2 1 > to 198.51.100.6 via ge-0/0/0.0, Push 300176, Push 299776(top) 192.0.2.10/24 *[EVPN/7] 11:30:08, metric2 1 > to 198.51.100.6 via ge-0/0/0.0, Push 300240, Push 299808(top) 192.0.2.12/24 *[EVPN/7] 11:30:08, metric2 1 > to 198.51.100.6 via ge-0/0/0.0, Push 300240, Push 299808(top) 192.0.2.13/24 *[Local/0] 11:42:57 Local via irb.1
Significado
El resultado muestra las interfaces IRB locales y remotas. También muestra los hosts locales y remotos que están instalados en la tabla VRF:
En el enrutador PE1:
10.0.0.1/32
—Host local en la instancia de enrutamiento del conmutador virtual.10.0.0.2/32
y10.0.0.3/32
—Host remoto en la instancia de enrutamiento del conmutador virtual.10.0.0.250/32
— IRB local en la instancia de enrutamiento del conmutador virtual.10.0.0.253/32
— IRB remota en la instancia de enrutamiento del conmutador virtual.
Tabla ARP de verificación
Propósito
Compruebe las entradas de la tabla ARP.
Acción
Enrutador PE1
Desde el modo operativo, ejecute el show evpn arp-table comando.
user@PE1> show evpn arp-table INET MAC Logical Routing Bridging address address interface instance domain 192.0.2.1 00:00:00:00:00:01 irb.1 BETA __BETA__ 192.0.2.4 00:00:00:00:00:04 irb.1 BETA __BETA__
Enrutador PE2
Desde el modo operativo, ejecute el show evpn arp-table comando.
user@PE2> show evpn arp-table INET MAC Logical Routing Bridging address address interface instance domain 192.0.2.2 00:00:00:00:00:02 irb.1 BETA __BETA__
Enrutador PE3
Desde el modo operativo, ejecute el show evpn arp-table comando.
user@PE3> show evpn arp-table INET MAC Logical Routing Bridging address address interface instance domain 192.0.2.3 00:00:00:00:00:03 irb.1 BETA __BETA__
Significado
La instancia de EVPN y el ARP se sincronizan con el MAC del host y la dirección IP de los hosts locales.
Tabla ARP de verificación de puente
Propósito
Compruebe las entradas de la tabla ARP de puente.
Acción
Enrutador PE1
Desde el modo operativo, ejecute el show bridge evpn arp-table comando.
user@PE3> show bridge evpn arp-table INET MAC Logical Routing Bridging address address interface instance domain 10.0.0.1 00:00:00:00:00:01 irb.0 ALPHA ONE 10.0.0.4 00:00:00:00:00:04 irb.0 ALPHA ONE
Enrutador PE2
Desde el modo operativo, ejecute el show bridge evpn arp-table comando.
user@PE3> show bridge evpn arp-table INET MAC Logical Routing Bridging address address interface instance domain 10.0.0.2 00:00:00:00:00:02 irb.0 ALPHA ONE
Enrutador PE3
Desde el modo operativo, ejecute el show bridge evpn arp-table comando.
user@PE3> show bridge evpn arp-table INET MAC Logical Routing Bridging address address interface instance domain 10.0.0.3 00:00:00:00:00:03 irb.0 ALPHA ONE
Significado
La instancia de conmutador virtual y el ARP se sincronizan con la dirección IP y MAC del host local.
Tabla MAC de verificación de bridge
Propósito
Compruebe las entradas de la tabla MAC de puente.
Acción
Enrutador PE1
Desde el modo operativo, ejecute el show bridge mac-table comando.
user@PE1> show bridge mac-table MAC flags (S -static MAC, D -dynamic MAC, L -locally learned, C -Control MAC SE -Statistics enabled, NM -Non configured MAC, R -Remote PE MAC) Routing instance : ALPHA Bridging domain : ONE, VLAN : 100 MAC MAC Logical NH RTR address flags interface Index ID 00:00:00:00:00:01 D ge-0/0/2.0 00:00:00:00:00:02 DC 1048583 1048583 00:00:00:00:00:03 DC 1048574 1048574 00:00:00:00:00:04 D ae0.0
Enrutador PE2
Desde el modo operativo, ejecute el show bridge mac-table comando.
user@PE2> show bridge mac-table MAC flags (S -static MAC, D -dynamic MAC, L -locally learned, C -Control MAC SE -Statistics enabled, NM -Non configured MAC, R -Remote PE MAC) Routing instance : ALPHA Bridging domain : ONE, VLAN : 100 MAC MAC Logical NH RTR address flags interface Index ID 00:00:00:00:00:01 DC 1048577 1048577 00:00:00:00:00:02 D ge-0/0/2.0 00:00:00:00:00:03 DC 1048578 1048578 00:00:00:00:00:04 DC 1048577 1048577
Enrutador PE3
Desde el modo operativo, ejecute el show bridge mac-table comando.
user@PE3> show bridge mac-table MAC flags (S -static MAC, D -dynamic MAC, L -locally learned, C -Control MAC SE -Statistics enabled, NM -Non configured MAC, R -Remote PE MAC) Routing instance : ALPHA Bridging domain : ONE, VLAN : 100 MAC MAC Logical NH RTR address flags interface Index ID 00:00:00:00:00:01 DC 1048575 1048575 00:00:00:00:00:02 DC 1048582 1048582 00:00:00:00:00:03 D ae0.0 00:00:00:00:00:04 DC 1048575 1048575
Significado
La instancia de conmutador virtual instaló direcciones MAC de host local y remota en la tabla MAC de puente.