EVPN-VXLAN on the vMX in the Lab

      No Comments on EVPN-VXLAN on the vMX in the Lab

Underlay: IS-IS (to export the lo0 for iBGP)
Overlay: iBGP (with evpn signaling enabled)
Version: 18.3R3-S4

Spine1:

root@Spine1# show | display set | no-more                        
set version 18.3R3-S4.3
set system root-authentication encrypted-password "$6$lc39W2Pt$wcicKn4RVt2IGPB3jJzjJ9oS2hn6gwakPRVoeuwa0Zogq6rzi1UsOXZky7ws8Y1DLZ42N/WV18h/Q.qV9LhOs1"
set system host-name Spine1
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system processes dhcp-service traceoptions file dhcp_logfile
set system processes dhcp-service traceoptions file size 10m
set system processes dhcp-service traceoptions level all
set system processes dhcp-service traceoptions flag packet
set chassis aggregated-devices ethernet device-count 10
set chassis network-services enhanced-ip
set interfaces ge-0/0/0 gigether-options 802.3ad ae0
set interfaces ge-0/0/1 gigether-options 802.3ad ae0
set interfaces ge-0/0/7 unit 0 family inet address 192.168.0.69/30
set interfaces ge-0/0/7 unit 0 family iso address 49.0001.1921.6800.0069.00
set interfaces ae0 mtu 9000
set interfaces ae0 esi 00:00:00:00:00:00:00:00:00:01
set interfaces ae0 esi all-active
set interfaces ae0 aggregated-ether-options lacp active
set interfaces ae0 aggregated-ether-options lacp periodic slow
set interfaces ae0 aggregated-ether-options lacp system-id 00:11:22:33:44:55
set interfaces ae0 aggregated-ether-options lacp force-up
set interfaces ae0 unit 0 family bridge interface-mode trunk
set interfaces ae0 unit 0 family bridge vlan-id-list 100
set interfaces fxp0 unit 0 family inet dhcp vendor-id Juniper-vmx-VM6658C3AB47
set interfaces irb unit 100 virtual-gateway-accept-data
set interfaces irb unit 100 virtual-gateway-esi 00:00:11:11:22:22:33:33:44:44
set interfaces irb unit 100 virtual-gateway-esi all-active
set interfaces irb unit 100 family inet address 192.168.100.1/24 virtual-gateway-address 192.168.100.200
set interfaces lo0 unit 0 family inet address 10.10.10.7/32
set routing-options router-id 10.10.10.7
set protocols bgp group iBGP type internal
set protocols bgp group iBGP family inet unicast
set protocols bgp group iBGP family evpn signaling
set protocols bgp group iBGP multipath
set protocols bgp group iBGP neighbor 10.10.10.8 local-address 10.10.10.7
set protocols bgp group iBGP neighbor 10.10.10.8 peer-as 65001
set protocols bgp group iBGP neighbor 10.10.10.8 local-as 65001
set protocols isis export lo0
set protocols isis interface ge-0/0/7.0
set protocols evpn no-core-isolation
set policy-options policy-statement lo0 from interface lo0.0
set policy-options policy-statement lo0 then accept
set routing-instances EVPN-100 vtep-source-interface lo0.0
set routing-instances EVPN-100 instance-type virtual-switch
set routing-instances EVPN-100 interface ae0.0
set routing-instances EVPN-100 route-distinguisher 10.10.10.7:65001
set routing-instances EVPN-100 vrf-target target:65000:1
set routing-instances EVPN-100 vrf-target auto
set routing-instances EVPN-100 protocols evpn encapsulation vxlan
set routing-instances EVPN-100 protocols evpn extended-vni-list all
set routing-instances EVPN-100 protocols evpn multicast-mode ingress-replication
set routing-instances EVPN-100 bridge-domains bd100 domain-type bridge
set routing-instances EVPN-100 bridge-domains bd100 vlan-id 100
set routing-instances EVPN-100 bridge-domains bd100 routing-interface irb.100
set routing-instances EVPN-100 bridge-domains bd100 vxlan vni 1000
set routing-instances EVPN-100 bridge-domains bd100 vxlan ingress-node-replication

Spine2:

root@Spine2# show | display set | no-more 
set version 18.3R3-S4.3
set system root-authentication encrypted-password "$6$JhX3vnVl$YOra5gF/g9dTUyp4StHZrQaONlekC3dqP0ZRMMSUG.JVIAk7aITK18yAlZw/dYoNcIJ8oB0Wz4JQThQJLQAIz/"
set system host-name Spine2
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system processes dhcp-service traceoptions file dhcp_logfile
set system processes dhcp-service traceoptions file size 10m
set system processes dhcp-service traceoptions level all
set system processes dhcp-service traceoptions flag packet
set chassis aggregated-devices ethernet device-count 10
set chassis network-services enhanced-ip
set interfaces ge-0/0/5 gigether-options 802.3ad ae0
set interfaces ge-0/0/6 gigether-options 802.3ad ae0
set interfaces ge-0/0/7 unit 0 family inet address 192.168.0.70/30
set interfaces ge-0/0/7 unit 0 family iso address 49.0001.1921.6800.0070.00
set interfaces ae0 mtu 9000
set interfaces ae0 esi 00:00:00:00:00:00:00:00:00:01
set interfaces ae0 esi all-active
set interfaces ae0 aggregated-ether-options lacp active
set interfaces ae0 aggregated-ether-options lacp periodic slow
set interfaces ae0 aggregated-ether-options lacp system-id 00:11:22:33:44:55
set interfaces ae0 aggregated-ether-options lacp force-up
set interfaces ae0 unit 0 family bridge interface-mode trunk
set interfaces ae0 unit 0 family bridge vlan-id-list 100
set interfaces fxp0 unit 0 family inet dhcp vendor-id Juniper-vmx-VM6658C3D565
set interfaces irb unit 100 virtual-gateway-accept-data
set interfaces irb unit 100 virtual-gateway-esi 00:00:11:11:22:22:33:33:44:44
set interfaces irb unit 100 virtual-gateway-esi all-active
set interfaces irb unit 100 family inet address 192.168.100.2/24 virtual-gateway-address 192.168.100.200
set interfaces lo0 unit 0 family inet address 10.10.10.8/32
set routing-options router-id 10.10.10.8
set protocols bgp group iBGP type internal
set protocols bgp group iBGP family inet unicast
set protocols bgp group iBGP family evpn signaling
set protocols bgp group iBGP multipath
set protocols bgp group iBGP neighbor 10.10.10.7 local-address 10.10.10.8
set protocols bgp group iBGP neighbor 10.10.10.7 peer-as 65001
set protocols bgp group iBGP neighbor 10.10.10.7 local-as 65001
set protocols isis export lo0
set protocols isis interface ge-0/0/7.0
set protocols evpn no-core-isolation
set policy-options policy-statement lo0 from interface lo0.0
set policy-options policy-statement lo0 then accept
set routing-instances EVPN-100 vtep-source-interface lo0.0
set routing-instances EVPN-100 instance-type virtual-switch
set routing-instances EVPN-100 interface ae0.0
set routing-instances EVPN-100 route-distinguisher 10.10.10.8:65001
set routing-instances EVPN-100 vrf-target target:65000:1
set routing-instances EVPN-100 vrf-target auto
set routing-instances EVPN-100 protocols evpn encapsulation vxlan
set routing-instances EVPN-100 protocols evpn extended-vni-list all
set routing-instances EVPN-100 protocols evpn multicast-mode ingress-replication
set routing-instances EVPN-100 bridge-domains bd100 domain-type bridge
set routing-instances EVPN-100 bridge-domains bd100 vlan-id 100
set routing-instances EVPN-100 bridge-domains bd100 routing-interface irb.100
set routing-instances EVPN-100 bridge-domains bd100 vxlan vni 1000
set routing-instances EVPN-100 bridge-domains bd100 vxlan ingress-node-replication

VC:

root@VC# show | display set | no-more 
set version 18.4R2.7
set system login user vagrant uid 2000
set system login user vagrant class super-user
set system login user vagrant authentication ssh-rsa "ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEA6NF8iallvQVp22WDkTkyrtvp9eWW6A8YVr+kz4TjGYe7gHzIw+niNltGEFHzD8+v1I2YJ6oXevct1YeS0o9HZyN1Q9qgCgzUFtdOKLv6IedplqoPkcmF0aYet2PkEDo3MlTBckFXPITAMzF8dJSIFo9D8HfdOV0IAdx4O7PtixWKn5y2hMNG0zQPyUecp4pzC6kivAIhyfHilFR61RGL+GPXQ2MWZWFYbAGjyiYJnAmCP3NOTd0jMZEnDkbUvxhMmBYSdETk1rRgm+R4LOzFUGaHqHDLKLX+FIPKcF96hrucXzcWyLbIbEgE98OHlnVYCzRdK8jlqm8tehUc9c9WhQ== vagrant insecure public key"
set system root-authentication encrypted-password "$6$e5/mZnES$xZWzMy7MuSMUMVC0i6qPTPsTBtdW08/QPIRa3tvi2Gv1sLmrZawmrTGApnJVQ84d.6fGMAeKN1rAeKiYTMVNV0"
set system root-authentication ssh-rsa "ssh-rsa AAAAB3NzaC1yc2EAAAABIwAAAQEA6NF8iallvQVp22WDkTkyrtvp9eWW6A8YVr+kz4TjGYe7gHzIw+niNltGEFHzD8+v1I2YJ6oXevct1YeS0o9HZyN1Q9qgCgzUFtdOKLv6IedplqoPkcmF0aYet2PkEDo3MlTBckFXPITAMzF8dJSIFo9D8HfdOV0IAdx4O7PtixWKn5y2hMNG0zQPyUecp4pzC6kivAIhyfHilFR61RGL+GPXQ2MWZWFYbAGjyiYJnAmCP3NOTd0jMZEnDkbUvxhMmBYSdETk1rRgm+R4LOzFUGaHqHDLKLX+FIPKcF96hrucXzcWyLbIbEgE98OHlnVYCzRdK8jlqm8tehUc9c9WhQ== vagrant insecure public key"
set system services ssh root-login allow
set system services netconf ssh
set system services rest http port 8080
set system services rest enable-explorer
set system host-name VC
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set chassis aggregated-devices ethernet device-count 10
set interfaces xe-0/0/0 gigether-options 802.3ad ae0
set interfaces xe-0/0/1 gigether-options 802.3ad ae0
set interfaces xe-0/0/5 gigether-options 802.3ad ae0
set interfaces xe-0/0/6 gigether-options 802.3ad ae0
set interfaces xe-0/0/11 unit 0 family ethernet-switching interface-mode access
set interfaces ae0 aggregated-ether-options lacp active
set interfaces ae0 aggregated-ether-options lacp periodic slow
set interfaces ae0 aggregated-ether-options lacp force-up
set interfaces ae0 unit 0 family ethernet-switching interface-mode trunk
set interfaces ae0 unit 0 family ethernet-switching vlan members vl-100
set interfaces em0 unit 0 family inet dhcp
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces irb unit 100 family inet address 192.168.100.99/24
set forwarding-options storm-control-profiles default all
set protocols igmp-snooping vlan default
set vlans default vlan-id 1
set vlans vl-100 vlan-id 100
set vlans vl-100 l3-interface irb.100
set vlans vl-200 vlan-id 200

Leave a Reply

Your email address will not be published. Required fields are marked *

Captcha * Time limit is exhausted. Please reload CAPTCHA.