动态建立VXLAN隧道L2、L3子网互访实验(分布式式网关场景)

目录

1、实验目的

2、实验环境

实验拓扑

数据准备

服务器配置数据

vSwitch配置数据

Leaf1/Leaf2/Leaf3/Spine1/Spine2配置数据

EVPN相关配置数据

3、配置文件

4、配置步骤

4.1 基础配置

4.2 配置业务接入点

4.3 配置BGP EVPN Peer

4.4 配置VPN实例和EVPN实例

4.5 使能头端复制功能

4.6 配置VXLAN三层网关

4.7 配置BGP对邻居发布IRB路由

4.8 配置BGP对邻居发布IP前缀路由

4.9 其他配置

5、结果验证

5.1 检查EVPN Peer是否正常建立

5.2 查看EVPN路由

5.2.1 Leaf1初始bgp evpn路由信息

5.2.2 Type 3路由

5.2.3 Type 5路由

5.2.4 Type 2路由

5.3、同网段,不同Leaf服务器Ping测试

5.4、不同网段,同一Leaf下服务器Ping测试

5.5、不同网段,不同Leaf下服务器Ping

5.6、模拟外部和服务器之间Ping

5.7、arp广播抑制和代答


1、实验目的

了解分布式网关以及BGP EVPN工作机制。

2、实验环境

实验拓扑

ENSP软件版本:V100R003C00SPC100,CE12800软件版本: Version 8.180 (CE12800 V200R005C10SPC607B607),该版本可在模拟器上完美支持VXLAN。

  1. 按照实验环境进行组网。
  2. 基础配置:配置OSPF,相互能学习到Loopback地址。
  3. 完成BGP EVPN配置和分布式网关相关配置。
  4. 服务器vm1能Ping通vm3。
  5. vm2能Ping通vm3
  6. vm1、vm2、vm3能Ping通R1地址177.1.1.1。
  7. 检查VXLAN/EVPN/路由状态。

数据准备

服务器配置数据

名称

IP地址

网关

VLAN编号

VM-1

192.168.1.1/24

192.168.1.254

10

VM-2

192.168.2.1/24

192.168.2.254

20

VM-3

192.168.1.2/24

192.168.1.254

30

vSwitch配置数据

vSwitch-1

划分vlan10/20,和Leaf1 Trunk连接

vSwitch-2

划分vlan30,和Leaf2 Acess连接

Leaf1/Leaf2/Leaf3/Spine1/Spine2配置数据

设备

LoopBack0

(Router-ID)

LoopBack10

(VTEP IP)

VID

BD

L2VNI

Leaf-1

10.1.1.1

20.1.1.1

10

10

10

20

20

20

Leaf-2

10.1.1.2

20.1.1.2

30

10

10

Leaf-3

10.1.1.3

20.1.1.3

Spine-1

10.1.1.4

Spine-2

10.1.1.5

本实验场景,Spine不做vxlan封装,只是三层转发,不需要VTEP地址。Leaf3没有业务接入点,不需配置二层vxlan/bridge domain。

互联端口地址:10.1.xy.x or y/24。

EVPN相关配置数据

BD

L2VNI

RD

RT

L3VNI

RD

RT

Leaf-1

10

10

10:1

10:1

1000:1(ert)

100

100:1

100:1

1000:1(evpn)

20

20

20:1

20:1

1000:1(ert)

Leaf-2

10

10

10:1

10:1

1000:1(ert)

100

100:1

100:1

1000:1(evpn)

Leaf-3

100

100:1

100:1

1000:1(evpn)

Leaf-3没有L2VPN配置,只是通过L3VNI和Leaf1/Leaf2进行通信。

3、配置文件

详见ENSP工程文件

4、配置步骤

4.1 基础配置

  • 配置vm1/vm2/vm3IP地址/网关;
  • 配置vSwitch-1,端口划分vlan,配置和Leaf1的Trunk连接,vSwitch-2端口划分vlan30,和Leaf2 Acess连接;
a. vSwitch-1配置如下:
			#
			interface Ethernet0/0/1
			 port link-type trunk
			 port trunk allow-pass vlan 10 20
			#
			interface Ethernet0/0/2
			 port link-type access
			 port default vlan 10
			#
			interface Ethernet0/0/3
			 port link-type access
			 port default vlan 20
			#
b. vSwitch-2配置如下:
			interface Ethernet0/0/1
			 port link-type access
			 port default vlan 30
			#
			interface Ethernet0/0/2
			 port link-type access
			 port default vlan 30
  • 配置Spine1/Leaf1/Leaf2/Leaf3的loopback地址,互联地址,配置OSPF,使得Loopback地址可达。
a. Spine-1配置如下:
			sysname Spine-1
			#
			interface GE1/0/0
			 undo portswitch
			 undo shutdown
			 ip address 10.1.45.4 255.255.255.0
			 ospf network-type p2p
			#
			interface GE1/0/1
			 undo portswitch
			 undo shutdown
			 ip address 10.1.14.4 255.255.255.0
			 ospf network-type p2p
			#
			interface GE1/0/2
			 undo portswitch
			 undo shutdown
			 ip address 10.1.24.4 255.255.255.0
			 ospf network-type p2p
			#
			interface GE1/0/3
			 undo portswitch
			 undo shutdown
			 ip address 10.1.34.4 255.255.255.0
			 ospf network-type p2p
			#
			interface LoopBack0
			 ip address 10.1.1.4 255.255.255.255
			#
			ospf 1 router-id 10.1.1.4
			 area 0.0.0.0
			  network 10.1.1.4 0.0.0.0
			  network 10.1.14.4 0.0.0.0
			  network 10.1.24.4 0.0.0.0
			  network 10.1.34.4 0.0.0.0
			  network 10.1.45.4 0.0.0.0
			#
			
b. Spine-2配置如下:
			sysname Spine-2
			#
			interface GE1/0/0
			 undo portswitch
			 undo shutdown
			 ip address 10.1.45.5 255.255.255.0
			 ospf network-type p2p
			#
			interface GE1/0/1
			 undo portswitch
			 undo shutdown
			 ip address 10.1.15.5 255.255.255.0
			 ospf network-type p2p
			#
			interface GE1/0/2
			 undo portswitch
			 undo shutdown
			 ip address 10.1.25.5 255.255.255.0
			 ospf network-type p2p
			#
			interface GE1/0/3
			 undo portswitch
			 undo shutdown
			 ip address 10.1.35.5 255.255.255.0
			 ospf network-type p2p
			#
			interface LoopBack0
			 ip address 10.1.1.5 255.255.255.255
			#
			ospf 1 router-id 10.1.1.5
			 area 0.0.0.0
			  network 10.1.1.5 0.0.0.0
			  network 10.1.15.5 0.0.0.0
			  network 10.1.25.5 0.0.0.0
			  network 10.1.35.5 0.0.0.0
			  network 10.1.45.5 0.0.0.0
			#
			
c. Leaf-1配置如下:
			sysname Leaf-1
			#
			interface GE1/0/0
			 undo portswitch
			 undo shutdown
			 ip address 10.1.14.1 255.255.255.0
			 ospf network-type p2p
			#
			interface GE1/0/2
			 undo portswitch
			 undo shutdown
			 ip address 10.1.15.1 255.255.255.0
			 ospf network-type p2p
			#
			interface LoopBack0
			 ip address 10.1.1.1 255.255.255.255
			#
			interface LoopBack1
			 ip address 20.1.1.1 255.255.255.255
			#
			ospf 1 router-id 10.1.1.1
			 area 0.0.0.0
			  network 10.1.1.1 0.0.0.0
			  network 10.1.14.1 0.0.0.0
			  network 10.1.15.1 0.0.0.0
			  network 20.1.1.1 0.0.0.0
			#
d. Leaf-2配置如下:
			sysname Leaf-2
			#
			interface GE1/0/0
			 undo portswitch
			 undo shutdown
			 ip address 10.1.24.2 255.255.255.0
			 ospf network-type p2p
			#
			interface GE1/0/2
			 undo portswitch
			 undo shutdown
			 ip address 10.1.25.2 255.255.255.0
			 ospf network-type p2p
			#
			interface LoopBack0
			 ip address 10.1.1.2 255.255.255.255
			#
			interface LoopBack1
			 ip address 20.1.1.2 255.255.255.255
			#
			ospf 1 router-id 10.1.1.2
			 area 0.0.0.0
			  network 10.1.1.2 0.0.0.0
			  network 10.1.24.2 0.0.0.0
			  network 10.1.25.2 0.0.0.0
			  network 20.1.1.2 0.0.0.0
			#
e. Leaf-3配置如下:
			sysname Leaf-3
			#
			interface GE1/0/0
			 undo portswitch
			 undo shutdown
			 ip address 10.1.34.3 255.255.255.0
			 ospf network-type p2p
			#
			interface GE1/0/2
			 undo portswitch
			 undo shutdown
			 ip address 10.1.35.3 255.255.255.0
			 ospf network-type p2p
			#
			interface LoopBack0
			 ip address 10.1.1.3 255.255.255.255
			#
			interface LoopBack1
			 ip address 20.1.1.3 255.255.255.255
			#
			ospf 1 router-id 10.1.1.3
			 area 0.0.0.0
			  network 10.1.1.3 0.0.0.0
			  network 10.1.34.3 0.0.0.0
			  network 10.1.35.3 0.0.0.0
			  network 20.1.1.3 0.0.0.0

4.2 配置业务接入点

分别在Leaf1/Leaf2配置业务接入点。

1) Leaf1配置:
		#
		bridge-domain 10
		#
		bridge-domain 20
		#
		interface GE1/0/1
		 undo shutdown
		#
		interface GE1/0/1.10 mode l2
		 encapsulation dot1q vid 10
		 bridge-domain 10
		#
		interface GE1/0/1.20 mode l2
		 encapsulation dot1q vid 20
		 bridge-domain 20
		#
2) Leaf2配置:
		bridge-domain 20
		#
		interface GE1/0/1
		 undo shutdown
		#
		interface GE1/0/1.20 mode l2
		 encapsulation untag
		 bridge-domain 20

4.3 配置BGP EVPN Peer

1) Spine1(RR)配置:
		#
		evpn-overlay enable
		#
		bgp 100
		 router-id 10.1.1.4
		 peer 10.1.1.1 as-number 100
		 peer 10.1.1.1 connect-interface LoopBack0
		 peer 10.1.1.2 as-number 100
		 peer 10.1.1.2 connect-interface LoopBack0
		 peer 10.1.1.3 as-number 100
		 peer 10.1.1.3 connect-interface LoopBack0
		 peer 10.1.1.5 as-number 100
		 peer 10.1.1.5 connect-interface LoopBack0
		 #
		 ipv4-family unicast
		  undo peer 10.1.1.1 enable
		  undo peer 10.1.1.2 enable
		  undo peer 10.1.1.3 enable
		  undo peer 10.1.1.5 enable
		 #
		 l2vpn-family evpn
		  undo policy vpn-target
		  peer 10.1.1.1 enable
		  peer 10.1.1.1 reflect-client
		  peer 10.1.1.2 enable
		  peer 10.1.1.2 reflect-client
		  peer 10.1.1.3 enable
		  peer 10.1.1.3 reflect-client
		  peer 10.1.1.5 enable
		  peer 10.1.1.5 reflect-client
		#
2) Spine2(RR)配置:
		#
		evpn-overlay enable
		#
		bgp 100
		 router-id 10.1.1.5
		 peer 10.1.1.1 as-number 100
		 peer 10.1.1.1 connect-interface LoopBack0
		 peer 10.1.1.2 as-number 100
		 peer 10.1.1.2 connect-interface LoopBack0
		 peer 10.1.1.3 as-number 100
		 peer 10.1.1.3 connect-interface LoopBack0
		 peer 10.1.1.4 as-number 100
		 peer 10.1.1.4 connect-interface LoopBack0
		 #
		 ipv4-family unicast
		  undo peer 10.1.1.1 enable
		  undo peer 10.1.1.2 enable
		  undo peer 10.1.1.3 enable
		  undo peer 10.1.1.4 enable
		 #
		 l2vpn-family evpn
		  undo policy vpn-target
		  peer 10.1.1.1 enable
		  peer 10.1.1.1 reflect-client
		  peer 10.1.1.2 enable
		  peer 10.1.1.2 reflect-client
		  peer 10.1.1.3 enable
		  peer 10.1.1.3 reflect-client
		  peer 10.1.1.4 enable
		  peer 10.1.1.4 reflect-client
		#
3) Leaf1 BGP EVPN配置:
		#
		evpn-overlay enable
		#
		bgp 100
		 router-id 10.1.1.1
		 peer 10.1.1.4 as-number 100
		 peer 10.1.1.4 connect-interface LoopBack0
		 peer 10.1.1.5 as-number 100
		 peer 10.1.1.5 connect-interface LoopBack0
		 #
		 ipv4-family unicast
		  undo peer 10.1.1.4 enable
		  undo peer 10.1.1.5 enable
		 #
		 l2vpn-family evpn
		  policy vpn-target
		  peer 10.1.1.4 enable
		  peer 10.1.1.5 enable
		#
4) Leaf2 BGP EVPN配置:
		#
		evpn-overlay enable
		#
		bgp 100
		 router-id 10.1.1.2
		 peer 10.1.1.4 as-number 100
		 peer 10.1.1.4 connect-interface LoopBack0
		 peer 10.1.1.5 as-number 100
		 peer 10.1.1.5 connect-interface LoopBack0
		 #
		 ipv4-family unicast
		  undo peer 10.
评论 1
添加红包

请填写红包祝福语或标题

红包个数最小为10个

红包金额最低5元

当前余额3.43前往充值 >
需支付:10.00
成就一亿技术人!
领取后你会自动成为博主和红包主的粉丝 规则
hope_wisdom
发出的红包
实付
使用余额支付
点击重新获取
扫码支付
钱包余额 0

抵扣说明:

1.余额是钱包充值的虚拟货币,按照1:1的比例进行支付金额的抵扣。
2.余额无法直接购买下载,可以购买VIP、付费专栏及课程。

余额充值