cpu-usage cycle 1min # mpls lsr-id 11.11.11.11 # radius scheme system # mpls # ip ***-instance A route-distinguisher 1:1 ***-target 1:1 export-extcommunity ***-target 1:1 import-extcommunity # ip ***-instance B route-distinguisher 1:1 ***-target 1:1 export-extcommunity ***-target 1:1 import-extcommunity # ip ***-instance B route-distinguisher [MCE]dis cur # sysname MCE # cpu-usage cycle 1min # radius scheme system # ip ***-instance A route-distinguisher 1:1 # ip ***-instance B route-distinguisher 1:2 # domain system # local-user admin password cipher .
Type2路由的NLRI部分格式: Route Distinguisher ( 8 字节 ) Ethernet Segment Identifier ( 10字节 ) Ethernet Tag ID : 该字段为EVPN实例下设置的RD(Route Distinguisher)值。 : 该字段为EVPN实例下设置的RD(Route Distinguisher)值。 : 该字段为EVPN实例下设置的RD(Route Distinguisher)值。 EVPN路由在发布时,会携带RD(Route Distinguisher,路由标识符)和VPN Target(也称为Route Target)。RD用来区分不同的VXLAN EVPN路由。
CE-MPUB device board 1 board-type CE-LPUE # evpn-overlay enable # ip vpn-instance a ipv4-family route-distinguisher vpn-target 11:1 import-extcommunity evpn vxlan vni 10 # bridge-domain 2 vxlan vni 2 evpn route-distinguisher vpn-target 11:1 import-extcommunity evpn vxlan vni 10 # bridge-domain 2 vxlan vni 2 evpn route-distinguisher - incomplete EVPN address family: Number of Mac Routes: 6 Route Distinguisher: 1:1 Network - incomplete EVPN address family: Number of Mac Routes: 6 Route Distinguisher: 1:1 Network
如有错误请指出 不胜感激 关键配置 NE1 ip vpn-instance A ipv4-family ipv6-family route-distinguisher 200:1 vpn-target as-number 200 NE3 [HUAWEI-vpn-instance-A]dis this # ip vpn-instance A ipv4-family ipv6-family route-distinguisher
enable peer 10.2.12.2 allow-as-loop # R2 # sysname R2 # ip vpn-instance in ipv4-family route-distinguisher 2:2 vpn-target 1:1 1:2 import-extcommunity # ip vpn-instance out ipv4-family route-distinguisher 0.0.0.255 network 10.3.3.3 0.0.0.0 # R4 # sysname R4 # ip vpn-instance spoke ipv4-family route-distinguisher 0.0.0.255 network 10.4.4.4 0.0.0.0 # R5 # sysname R5 # ip vpn-instance spoke ipv4-family route-distinguisher
对于每一个VRF表,都具有路由区分符(Route Distinguisher:RD)和路由目标(Route Target:RT)两大属性。 RD RD(Route-Distinguisher,路由区分符):RD用来区分本地VRF,该属性仅本地有效。 对于每一个EVPN,都具有路由区分符(Route Distinguisher:RD)和路由目标(Route Target:RT)两大属性,这些属性用于控制在VTEP之间发送或接收EVPN路由。 Device1的配置文件: evpn route-distinguisher 10:1 vpn-target 100:5010 export-extcommunity vpn-target : evpn route-distinguisher 10:3 vpn-target 100:5030 export-extcommunity 创建用户的L3VPN实例,如vpn1。
advertise-community # R3与R1类似 配置MPLS V** 用户端正常启用OSPF进程 PE端使用VRF技术 R1配置: # ip vpn-instance a ipv4-family route-distinguisher export-extcommunity vpn-target 100:1 import-extcommunity # ip vpn-instance b ipv4-family route-distinguisher id other ac id 0 # set cpu-usage threshold 80 restore 75 # ip vpn-instance a ipv4-family route-distinguisher export-extcommunity vpn-target 100:1 import-extcommunity # ip vpn-instance b ipv4-family route-distinguisher
实现快速转发与 VPN 隔离 路由传播流程CE → PE:使用静态路由、RIP、OSPF、EIGRP、BGP等传递客户路由PE → PE:使用 MP-BGP 传递 VPNv4 路由(携带 Route Distinguisher VRF 虚拟路由转发表,每个客户有独立 VRF,互相隔离 RD(Route Distinguisher 启用 MPLS 基础功能mpls lsr-id 1.1.1.1mplsmpls ip2️⃣ 配置 VRF 与接口绑定ip vpn-instance VPN_A ipv4-family route-distinguisher
PE1] ip vpn-instance vpna [PE1-vpn-instance-vpna] ipv6-family [PE1-vpn-instance-vpna-af-ipv6] route-distinguisher PE2] ip vpn-instance vpna [PE2-vpn-instance-vpna] ipv6-family [PE2-vpn-instance-vpna-af-ipv6] route-distinguisher
* 64512:101:172.16.11.250/32 (1 entry, 1 announced) BGP group vpn-contrail type External Route Distinguisher vrf set routing-instances provider-1 interface lt-0/0/0.200 set routing-instances provider-1 route-distinguisher peer-as 64041 set routing-instances provider-1 instance-type vrf set routing-instances provider-1 route-distinguisher master-import set routing-instances provider-1 instance-type vrf set routing-instances provider-1 route-distinguisher then accept set routing-instances provider-1 instance-type vrf set routing-instances provider-1 route-distinguisher
[Leaf1-bd10]vxlan vni 10 /// L2 VNI [Leaf1-bd10]evpn [Leaf1-bd10-evpn]route-distinguisher export-extcommunity /// BD的eRT 配置V**-instance [Leaf1]ipvpn-instance VRF1 [Leaf1-vpn-instance-VRF1]route-distinguisher Leaf2-bd20]vxlan vni 20 /// L2 VNI [Leaf2-bd20]evpn [Leaf2-bd20-evpn]route-distinguisher evpn]quit [Leaf2-bd20]quit 配置V**-instance [Leaf2]ipvpn-instance VRF2 [Leaf2-vpn-instance-VRF2]route-distinguisher
V**-instance V**1 [Router1-V**-instance-V**1] ipv4-family [Router1-V**-instance-V**1-af-ipv4] route-distinguisher vxlan tunnel : 2 配置文件 Router1的配置文件 # sysname Router1 # ip V**-instance V**1 ipv4-family route-distinguisher 192.168.2.0 0.0.0.255 # return Router2的配置文件 # sysname Router2 # ip V**-instance V**1 ipv4-family route-distinguisher
H3C-GigabitEthernet0/1/1]mpls ldp 4、在PE上创建VRF PE1上的配置: [H3C]ip ***-instance ***1 [H3C-***-instance-***1]route-distinguisher import-extcommunity [H3C-***-instance-***1]quit PE2上的配置: [H3C]ip ***-instance ***1 [H3C-***-instance-***1]route-distinguisher
Network Next Hop In label/Out label Route Distinguisher: 10:100 (smcat_***01) 1.1.1.10 192.168.1.8/30 3.3.3.3 25/20 192.168.1.1 25/nolabel Route Distinguisher 192.168.1.4/30 3.3.3.3 nolabel/23 192.168.1.8/30 3.3.3.3 nolabel/20 Route Distinguisher : 12:100 12.1.1.0/24 3.3.3.3 nolabel/25 Route Distinguisher: 13:100 13.1.1.0/24
- incomplete Network Next Hop Metric LocPrf Weight Path Route Distinguisher: 100:1 (default for vrf Route Distinguisher: 200:1 (default for vrf V**2) *> 10.0.2.0/24 0.0.0.0 0 32768 ?
Routing Options */</junos:comment> <router-id>3.3.3.3</router-id> <route-distinguisher-id >3.3.3.3</route-distinguisher-id> <autonomous-system>b'64512'</autonomous-system> routing-options { + /* Global Routing Options */ + router-id 3.3.3.3; + route-distinguisher-id
)上配置VPN实例 R1-PE1和R6-PE2的VPN实例配置命令 [R1-PE1] ip vpn-instance hcie1 [R1-PE1-vpn-instance-hcie1] route-distinguisher ---------------------------------- [R1-PE1] ip vpn-instance hcie2 [R1-PE1-vpn-instance-hcie2] route-distinguisher
Established 0[~PE1-bgp] 在PE设备上配置使能IPv4地址族的VPN实例,将CE接入PE 配置PE1 PE1:ip vpn-instance vpna ipv4-family route-distinguisher vpn-instance vpna ip address 10.1.1.2 255.255.255.0 配置PE2 PE2:ip vpn-instance vpna ipv4-family route-distinguisher
root@host# show groups __contrail__ routing-options router-id <router-ip-address>; route-distinguisher-id <route-distinguisher-ip-address>; autonomous-system 64512; dynamic-tunnels { __contrail__ { source-address default-domain --op add_basic MX系列设备生成的配置: root@host# show groups __contrail__ routing-options { route-distinguisher-id <route-distinguisher-ip-address>; autonomous-system 64512; } protocols { bgp { group __contrail__
route-distinguisher route-distinguisher,配置VPN实例的RD(Route Distinguisher)。 缺省情况下,没有为VPN实例地址族配置RD。