
기본 underlay 작업
All nodes
feature ospf
Spine
interface ethernet1/1
no switchport
ip address 10.1.11.1/30
mtu 9216
ip ospf network point-to-point
ip router ospf 1 area 0
interface ethernet1/2
no switchport
ip address 10.1.12.1/30
mtu 9216
ip ospf network point-to-point
ip router ospf 1 area 0
interface loopback 0
ip address 11.11.11.11/32
ip ospf network point-to-point
ip router ospf 1 area 0
... e1/3, e1/4까지 동일 설정
router ospf 1
Leaf
interface loopback 0
ip address 1.1.1.1/32
ip ospf network point-to-point
ip router ospf 1 area 0
interface ethernet1/1
no switchport
ip address 10.1.11.2/30
mtu 9216
ip ospf network point-to-point
ip router ospf 1 area 0
interface ethernet1/1
no switchport
ip address 10.1.12.2/30
mtu 9216
ip ospf network point-to-point
ip router ospf 1 area 0
router ospf 1
고객사 overlay 작업
All nodes
feature pim
feature bgp
feature nv overlay // vlan과 Vxlan 연결
nv overlay evpn // BGP에 evpn 활성화
Spine
interface loopback 1
ip address 100.1.1.1/32
ip router ospf 1 area 0
ip pim rp-address 100.1.1.1 group 224.0.0.0/4 // 그룹 224.0.0.0/4 는 랑데뷰 포인트 100.1.1.1로
ip pim anycast-rp 100.1.1.1 11.11.11.11 // 11.11.11.11를 향한 트래픽 100.1.1.1
ip pim anycast-rp 100.1.1.1 22.22.22.22 // 이중화 구성
interface loopback 0-1
ip pim sparse-mode // multicast 활성화
interface e1/1-4
ip pim sparse-mode
Leaf
ip pim rp-address 100.1.1.1 group-list 224.0.0.0/4
interface loopback 0
ip pim sparse-mode
interface eth1/1-2
ip pim sparse-mode
BGP 연결
Spine
router bgp 65535 // 사설 ASN 사용(자유)
router-id 11.11.11.11
template peer LEAF // 템플릿 생성(동일작업)
remote as 65535
update-source loopback 0
address-family l2vpn evpn //evpn
send-community both // VRF 정보 같이 전달
route-reflector-client // Leaf 장비들 RRC로 동작
neighbor 1.1.1.1
inherit peer LEAF
neighbor 2.2.2.2
inherit peer LEAF
neighbor 3.3.3.3
inherit peer LEAF
neighbor 4.4.4.4
inherit peer LEAF
Leaf
feature vn-segment-vlan-based // VNI와 VLAN 매치
router bgp 65535
router-id 1.1.1.1
template peer SPINE
remote-as 65535
update-source loopback 0
address-family l2vpn evpn
send-community both
neighbor 11.11.11.11
inherit peer SPINE
neighbor 22.22.22.22
niherit peer SPINE
interface nve 1 // VTEP Interface
no shutdown
source-interface loopback 0 // VTEP Ip address
host-reachability protocol bgp //CP로 배움(control Plane)
Leaf-1
vlan 11
name Customer-A Network-11 //생략 가능
vn-segment 10011
vlan 123
vn-segment 111213
Leaf-2
vlan 11
vn-segment 10011
vlan 12
vn-segment 10012
vlan 123
vn-segment 111213
Leaf-3
vlan 12
vn-segment 10012
vlan 13
vn-segment 10013
vlan 123
vn-segment 111213
Leaf
vrf context Customer-A
vni 111213
Leaf-1
feature interface-vlan
fabric forwarding anycast-gateway-mac 1234.1234.1234
interface vlan 11
no shutdown
vrf member Customer-A
ip address 1.1.11.1/24
fabric forwarding mode anycast-gateway
interface vlan 123
no shutdown
vrf member Customer-A
ip forward
interface nve1
member vni 10011
mcast-group 239.0.0.11
member vni 111213 associate-vrf
Leaf-2
feature interface-vlan
fabric forwarding anycast-gateway-mac 1234.1234.1234
interface vlan 11
no shutdown
vrf member Customer-A
ip address 1.1.11.1/24
fabric forwarding mode anycast-gateway
interface vlan 12
no shutdown
vrf member Customer-A
ip address 1.1.12.1/24
fabric forwarding mode anycast-gateway
interface vlan 123
no shutdown
vrf member Customer-A
ip forward
interface nve1
member vni 10011
mcast-group 239.0.0.11
member vni 10012
mcast-group 239.0.0.12
member vni 111213 associate-vrf
Leaf-3
feature interface-vlan
fabric forwarding anycast-gateway-mac 1234.1234.1234
interface vlan 12
no shutdown
vrf member Customer-A
ip address 1.1.12.1/24
fabric forwarding mode anycast-gateway
interface vlan 13
no shutdown
vrf member Customer-A
ip address 1.1.13.1/24
fabric forwarding mode anycast-gateway
interface vlan 123
no shutdown
vrf member Customer-A
ip forward
interface nve1
member vni 10012
mcast-group 239.0.0.12
member vni 10013
mcast-group 239.0.0.13
member vni 111213 associate-vrf
Leaf
router bgp 65535
vrf Customer-A
address-family ipv4 unicast
redistribute direct route-map DIRECT
route-map DIRECT permit 10
interface e1/5
switchport mode access
switchport access vlan 11
spanning-tree port type edge
exit
interface e1/6
switchport mode access
switchport access vlan 12
spanning-tree port type edge
exit