VxLAN-2

youp·2024년 11월 5일
0

기본 underlay 작업

All nodes

feature ospf

Spine

interface ethernet1/1
no switchport
ip address 10.1.11.1/30
mtu 9216
ip ospf network point-to-point
ip router ospf 1 area 0

interface ethernet1/2
no switchport
ip address 10.1.12.1/30
mtu 9216
ip ospf network point-to-point
ip router ospf 1 area 0

interface loopback 0
ip address 11.11.11.11/32
ip ospf network point-to-point
ip router ospf 1  area 0

... e1/3, e1/4까지 동일 설정 

router ospf 1

Leaf

interface loopback 0
ip address 1.1.1.1/32
ip ospf network point-to-point
ip router ospf 1 area 0

interface ethernet1/1
no switchport
ip address 10.1.11.2/30
mtu 9216
ip ospf network point-to-point
ip router ospf 1 area 0

interface ethernet1/1
no switchport
ip address 10.1.12.2/30
mtu 9216
ip ospf network point-to-point
ip router ospf 1 area 0

router ospf 1

고객사 overlay 작업

All nodes

feature pim
feature bgp	
feature nv overlay		// vlan과 Vxlan 연결
nv overlay evpn			// BGP에 evpn 활성화

Spine

interface loopback 1
ip address 100.1.1.1/32
ip router ospf 1 area 0

ip pim rp-address 100.1.1.1 group 224.0.0.0/4		// 그룹 224.0.0.0/4 는 랑데뷰 포인트 100.1.1.1로
	
ip pim anycast-rp 100.1.1.1 11.11.11.11		// 11.11.11.11를 향한 트래픽 100.1.1.1
ip pim anycast-rp 100.1.1.1 22.22.22.22		// 이중화 구성

interface loopback 0-1
ip pim sparse-mode			// multicast 활성화

interface e1/1-4
ip pim sparse-mode

Leaf

ip pim rp-address 100.1.1.1 group-list 224.0.0.0/4

interface loopback 0
ip pim sparse-mode

interface eth1/1-2
ip pim sparse-mode

BGP 연결

Spine

router bgp 65535		// 사설 ASN 사용(자유)
	router-id 11.11.11.11
	template peer LEAF		// 템플릿 생성(동일작업)
    	remote as 65535
        update-source loopback 0
        address-family l2vpn evpn		//evpn
        	send-community both			// VRF 정보 같이 전달
            route-reflector-client		// Leaf 장비들 RRC로 동작
            
        neighbor 1.1.1.1
        	inherit peer LEAF
        neighbor 2.2.2.2
        	inherit peer LEAF
        neighbor 3.3.3.3
        	inherit peer LEAF
        neighbor 4.4.4.4
        	inherit peer LEAF

Leaf


feature vn-segment-vlan-based		// VNI와 VLAN 매치

router bgp 65535
	router-id 1.1.1.1
	template peer SPINE
		remote-as 65535
        update-source loopback 0
        address-family l2vpn evpn
        	send-community both
     neighbor 11.11.11.11
     	inherit peer SPINE
     neighbor 22.22.22.22
     	niherit peer SPINE
        
interface nve 1				// VTEP Interface
	no shutdown
    	source-interface loopback 0			// VTEP Ip address
        host-reachability protocol bgp		//CP로 배움(control Plane)

Leaf-1

vlan 11
	name Customer-A Network-11		//생략 가능
    vn-segment 10011
vlan 123
	vn-segment 111213
    

Leaf-2

vlan 11
	vn-segment 10011
vlan 12
	vn-segment 10012
vlan 123
	vn-segment 111213

Leaf-3

vlan 12
	vn-segment 10012
vlan 13
	vn-segment 10013
vlan 123
	vn-segment 111213

Leaf

vrf context Customer-A
	vni 111213

Leaf-1

feature interface-vlan

fabric forwarding anycast-gateway-mac 1234.1234.1234

interface vlan 11
	no shutdown
    	vrf member Customer-A
        ip address 1.1.11.1/24
        fabric forwarding mode anycast-gateway
        
interface vlan 123
	no shutdown
    vrf member Customer-A
    ip forward
    
interface nve1
	member vni 10011
    	mcast-group 239.0.0.11
    member vni 111213 associate-vrf

Leaf-2

feature interface-vlan

fabric forwarding anycast-gateway-mac 1234.1234.1234

interface vlan 11
	no shutdown
    	vrf member Customer-A
        ip address 1.1.11.1/24
        fabric forwarding mode anycast-gateway
        
interface vlan 12
	no shutdown
    	vrf member Customer-A
        ip address 1.1.12.1/24
        fabric forwarding mode anycast-gateway        
        
interface vlan 123
	no shutdown
    vrf member Customer-A
    ip forward
    
interface nve1
	member vni 10011
    	mcast-group 239.0.0.11
    member vni 10012
    	mcast-group 239.0.0.12
    member vni 111213 associate-vrf

Leaf-3

feature interface-vlan

fabric forwarding anycast-gateway-mac 1234.1234.1234

interface vlan 12
	no shutdown
    	vrf member Customer-A
        ip address 1.1.12.1/24
        fabric forwarding mode anycast-gateway
        
interface vlan 13
	no shutdown
    	vrf member Customer-A
        ip address 1.1.13.1/24
        fabric forwarding mode anycast-gateway        
        
interface vlan 123
	no shutdown
    vrf member Customer-A
    ip forward
    
interface nve1
	member vni 10012
    	mcast-group 239.0.0.12
    member vni 10013
    	mcast-group 239.0.0.13
    member vni 111213 associate-vrf    
    
    

Leaf

router bgp 65535
	vrf Customer-A
    	address-family ipv4 unicast
        redistribute direct route-map DIRECT
        
route-map DIRECT permit 10

interface e1/5
switchport mode access
switchport access vlan 11
spanning-tree port type edge
exit
interface e1/6
switchport mode access
switchport access vlan 12
spanning-tree port type edge
exit

0개의 댓글

관련 채용 정보