Versions Compared

Key

  • This line was added.
  • This line was removed.
  • Formatting was changed.

...



Server config
Client config


VRF config on Server site


Code Block
titleconfig
set services rpm twamp server authentication-mode none
set services rpm twamp server client-list Senders address 10.217.4.1/32
set services rpm twamp server client-list Senders address 10.217.0.1/32
set services rpm twamp server client-list Senders address 10.217.4.0/24
set services rpm twamp server client-list Senders address 10.217.0.0/16


Code Block
titlesecurity config
collapsetrue
root@SRX300-1-Rack104> show configuration securityinterfaces zones | display set
set securityinterfaces zones security-zone to_xm480 host-inbound-traffic system-services all
set security zones security-zone to_xm480 host-inbound-traffic protocols all
set security zones security-zone to_xm480 interfaces ge-0/0/3.0
set security zones security-zone to_xm480 interfaces lo0.217

set security policies default-policy permit-all

VRF config on Client site
Code Block
titleconfig
root@SRX340-1-Rack104> show configuration services rpm twamp client | display setge-0/0/3 unit 0 family inet address 10.17.1.1/24
set interfaces lo0 unit 217 family inet address 10.217.4.1/32

root@SRX300-1-Rack104> show configuration protocols | display set
set protocols bgp group iBGP type internal
set protocols bgp group iBGP local-address 10.217.4.1
set protocols bgp group iBGP export exp_protocol_direct
set protocols bgp group iBGP neighbor 10.217.3.2
set protocols ospf area 0.0.0.0 interface ge-0/0/3.0
set protocols ospf area 0.0.0.0 interface lo0.217
set protocols lldp interface ge-0/0/3
set protocols lldp interface all

root@SRX300-1-Rack104> show configuration security zones | display set
set security zones security-zone to_xm480 host-inbound-traffic system-services all
set security zones security-zone to_xm480 host-inbound-traffic protocols all
set security zones security-zone to_xm480 interfaces ge-0/0/3.0
set security zones security-zone to_xm480 interfaces lo0.217

set security policies default-policy permit-all


VRF config on Client site


Code Block
titleconfig
root@SRX340-1-Rack104> show configuration services rpm twamp client | display set
set services rpm twamp client control-connection Reflector1 routing-instance ce_vr
set services rpm twamp client control-connection Reflector1 target-address 10.217.4.1
set services rpm twamp client control-connection Reflector1 test-count 100
set services rpm twamp client control-connection Reflector1 test-interval 1
set services rpm twamp client control-connection Reflector1 traps test-iteration-done
set services rpm twamp client control-connection Reflector1 traps control-connection-closed
set services rpm twamp client control-connection Reflector1 test-session ClassBE target-address 10.217.4.1
set services rpm twamp client control-connection Reflector1 test-session ClassBE dscp-code-points be
set services rpm twamp client control-connection Reflector1 routing-instance ce_vrtest-session ClassBE probe-count 5
set services rpm twamp client control-connection Reflector1 test-session ClassEF target-address 10.217.4.1
set services rpm twamp client control-connection Reflector1 test-count 100session ClassEF dscp-code-points ef
set services rpm twamp client control-connection Reflector1 test-interval 1
set services rpm twamp client control-connection Reflector1 traps test-iteration-done
set services rpm twamp client control-connection Reflector1 traps control-connection-closed
set services rpm twamp client control-connection Reflector1 test-session ClassBE target-address 10.217.4.1
set services rpm twamp client control-connection Reflector1 test-session ClassBE dscp-code-points be
set services rpm twamp client control-connection Reflector1 test-session ClassBE probe-count 5
set services rpm twamp client control-connection Reflector1 test-session ClassEF target-address 10.217.4.1
set services rpm twamp client control-connection Reflector1 test-session ClassEF dscp-code-points ef
set services rpm twamp client control-connection Reflector1 test-session ClassEF probe-count 5

Code Block
titlevrouter and security config
collapsetrue

root@SRX340-1-Rack104> show configuration interfaces | display set control-connection Reflector1 test-session ClassEF probe-count 5


Code Block
titlevrouter and security config
collapsetrue
root@SRX340-1-Rack104> show configuration interfaces | display set
set interfaces lt-0/0/0 unit 20 encapsulation ethernet
set interfaces lt-0/0/0 unit 20 peer-unit 21
set interfaces lt-0/0/0 unit 20 family inet address 10.17.11.1/30
set interfaces lt-0/0/0 unit 21 encapsulation ethernet
set interfaces lt-0/0/0 unit 21 peer-unit 20
set interfaces lt-0/0/0 unit 21 family inet address 10.17.11.2/30
set interfaces lt-0/0/0 unit 30 encapsulation ethernet
set interfaces lt-0/0/0 unit 30 peer-unit 31
set interfaces lt-0/0/0 unit 30 family inet address 10.217.1.1/30
set interfaces lt-0/0/0 unit 2031 encapsulation ethernet
set interfaces lt-0/0/0 unit 2031 peer-unit 2130
set interfaces lt-0/0/0 unit 2031 family inet address 10.17217.111.12/30

set interfaces ltge-0/0/5 unit 0 unitfamily 21inet encapsulation ethernetaddress 10.17.0.1/24
set interfaces ltge-0/0/05 unit 21 peer-unit 200 family mpls

set interfaces lt-0/0/0lo0 unit 210 family inet address 10192.17168.11255.250/3032
set interfaces lt-0/0/0lo0 unit 30 encapsulation ethernet112 family inet address 10.17.111.1/32
set interfaces lt-0/0/0lo0 unit 210 30 peer-unit 31family inet address 10.210.1.1/32
set interfaces lt-0/0/0lo0 unit 30217 family inet address 10.217.10.1/3032


set
interfaces
lt-0/0/0 unit 31 encapsulation ethernet
set interfaces lt-0/0/0 unit 31 peer-unit 30
set interfacesroot@SRX340-1-Rack104> show configuration routing-instances ce_vr | display set
set routing-instances ce_vr instance-type virtual-router
set routing-instances ce_vr interface lt-0/0/0.30
unitset 31 family inet address 10.217.1.2/30

set interfaces ge-0/0/5 unit 0 family inet address 10.17.0.1/24
set interfaces ge-0/0/5 unit 0 family mpls

set interfaces lo0 unit 0 family inet address 192.168.255.50/32
set interfaces lo0 unit 112 family inet address 10.17.111.1/32
set interfaces lo0 unit 210 family inet address 10.210.1.1/32
set interfaces lo0 unit 217 family inet address 10.217.0.1/32


root@SRX340-1-Rack104> show configuration routing-instances vrf_1 | display set
set routing-instances vrf_1 instance-type vrf
set routing-instances vrf_1 interfacerouting-instances ce_vr interface lo0.217
set routing-instances ce_vr routing-options router-id 10.217.0.1
set routing-instances ce_vr routing-options autonomous-system 101
set routing-instances ce_vr protocols bgp group eBGP type external
set routing-instances ce_vr protocols bgp group eBGP local-address 10.217.1.1
set routing-instances ce_vr protocols bgp group eBGP export exp_protocol_direct
set routing-instances ce_vr protocols bgp group eBGP local-as 101
set routing-instances ce_vr protocols bgp group eBGP neighbor 10.217.1.2 peer-as 65111



set security zones security-zone vPE_2_vCE host-inbound-traffic system-services all
set security zones security-zone vPE_2_vCE host-inbound-traffic protocols all
set security zones security-zone vPE_2_vCE interfaces lt-0/0/0.31
set security routingzones security-instanceszone vrfvPE_2_1vCE interfaceinterfaces lo0.210

set routing-instances vrf_1 route-distinguisher 10.17.0.1:1717
set routing-instances vrf_1 vrf-target import target:65536L:1717
set routing-instances vrf_1 vrf-target export target:65536L:1717
set routing-instances vrf_1 vrf-table-label
set routing-instances vrf_1 routing-options router-id 10.210.1.1
set routing-instances vrf_1 routing-options autonomous-system 65111
set routing-instances vrf_1 protocols bgp group eBGP type external
set routing-instances vrf_1 protocols bgp group eBGP local-address 10.217.1.2
set routing-instances vrf_1 protocols bgp group eBGP export exp_protocol_direct
set routing-instances vrf_1 protocols bgp group eBGP as-override
set routing-instances vrf_1 protocols bgp group eBGP neighbor 10.217.1.1 remove-private
set routing-instances vrf_1security zones security-zone ce_vr host-inbound-traffic system-services all
set security zones security-zone ce_vr host-inbound-traffic protocols all
set security zones security-zone ce_vr interfaces lt-0/0/0.30
set security zones security-zone ce_vr interfaces lo0.217

root@SRX340-1-Rack104> show configuration security policies | display set
set security policies default-policy permit-all



Code Block
titleVRF and MPLS/LDP
collapsetrue
root@SRX340-1-Rack104> show configuration protocols | display set
set protocols mpls interface ge-0/0/5.0
set protocols bgp group iBGP type internal
set protocols bgp group eBGPiBGP neighborlocal-address 10192.217168.1255.150
peer-asset 101protocols bgp group root@SRX340-1-Rack104> show configuration routing-instances ce_vr | display set
set routing-instances ce_vr instance-type virtual-router
set routing-instances ce_vriBGP family inet-vpn unicast
set protocols bgp group iBGP neighbor 192.168.255.48
set protocols ospf area 0.0.0.0 interface lt-0/0/0.3020
set routing-instances ce_vrprotocols ospf area 0.0.0.0 interface lo0.217ge-0/0/5.0
set routing-instances ce_vr routing-options router-id 10.217.0.1
set routing-instances ce_vr routing-options autonomous-system 101
set routing-instances ce_vr protocols bgp group eBGP type external
set routing-instances ce_vr protocols bgp group eBGP local-address 10.217.1.1
set routing-instances ce_vr protocols bgp group eBGP export exp_protocol_direct
set routing-instances ce_vr protocols bgp group eBGP local-as 101
set routing-instances ce_vr protocols bgp group eBGP neighbor 10.217.1.2 peer-as 65111

root@SRX340-1-Rack104> show configuration security zones | display setprotocols ldp import LDP-LABELS-IN
set protocols ldp export LDP-LABELS-OUT
set protocols ldp interface ge-0/0/5.0
set protocols ldp interface lo0.0
set protocols ldp session 192.168.255.48 authentication-key "$9$awGjqTz6uORmfORhSMWJGDimfQFnCp0"
set protocols lldp interface ge-0/0/5
set protocols lldp interface all

root@SRX340-1-Rack104> show configuration security zones | display set
set security zones security-zone to_xm480 host-inbound-traffic system-services all
set security zones security-zone to_xm480 host-inbound-traffic protocols all
set security zones security-zone to_xm480 interfaces ge-0/0/5.0
set security zones security-zone to_xm480 host-inbound-traffic system-services allinterfaces lt-0/0/0.20
set security zones security-zone to_xm480 host-inbound-traffic protocols all
set security zones security-zone to_xm480 interfaces ge interfaces lo0.0

root@SRX340-1-Rack104> show configuration routing-instances vrf_1 | display set
set routing-instances vrf_1 instance-type vrf
set routing-instances vrf_1 interface lt-0/0/50.031
set security zones security-zone to_xm480 interfaces lt-0/0/0.20
set security zones security-zone to_xm480 interfaces lo0.0

set security zones security-zone vPE_2_vCE host-inbound-traffic system-services all
set security zones security-zone vPE_2_vCE host-inbound-traffic protocols all
set security zones security-zone vPE_2_vCE interfaces lt-0/0/0.31
set security zones security-zone vPE_2_vCE interfaces lo0.210

set security zones security-zone ce_vr host-inbound-traffic system-services all
set security zones security-zone ce_vr host-inbound-traffic protocols all
set security zones security-zone ce_vr interfaces lt-0/0/0.30
set security zones security-zone ce_vr interfaces lo0.217

root@SRX340-1-Rack104> show configuration security policies | display set
set security policies default-policy permit-allrouting-instances vrf_1 interface lo0.210
set routing-instances vrf_1 route-distinguisher 10.17.0.1:1717
set routing-instances vrf_1 vrf-target import target:65536L:1717
set routing-instances vrf_1 vrf-target export target:65536L:1717
set routing-instances vrf_1 vrf-table-label
set routing-instances vrf_1 routing-options router-id 10.210.1.1
set routing-instances vrf_1 routing-options autonomous-system 65111
set routing-instances vrf_1 protocols bgp group eBGP type external
set routing-instances vrf_1 protocols bgp group eBGP local-address 10.217.1.2
set routing-instances vrf_1 protocols bgp group eBGP export exp_protocol_direct
set routing-instances vrf_1 protocols bgp group eBGP as-override
set routing-instances vrf_1 protocols bgp group eBGP neighbor 10.217.1.1 remove-private
set routing-instances vrf_1 protocols bgp group eBGP neighbor 10.217.1.1 peer-as 101



CE_VR config on Core/ MX480


show connections Server


Code Block
titlecommands
showshow services rpm twamp server connection

show services rpm twamp server session


Code Block
titleshow commands
collapsetrue
root@SRX300-1-Rack104> show services rpm twamp server connection
Connection  Client           Client  Server           Server   Session  Auth
ID          address          port    address          port     count    mode
        81  10.217.1.1        49881  10.217.4.1          862         2  Unauthenticated
        77  10.217.1.1        49970  10.217.4.1          862         0  Unauthenticated
        82  10.217.1.1        50395  10.217.4.1          862         2  Unauthenticated
        76  10.217.1.1        51550  10.217.4.1          862         0  Unauthenticated
        79  10.217.1.1        51676  10.217.4.1          862         0  Unauthenticated
        80  10.217.1.1        61496  10.217.4.1          862         0  Unauthenticated
        74  10.217.1.1        64060  10.217.4.1          862         0  Unauthenticated
        75  10.217.1.1        64881  10.217.4.1          862         0  Unauthenticated
        78  10.217.1.1        65439  10.217.4.1          862         0  Unauthenticated

root@SRX300-1-Rack104> show services rpm twamp server session
Session  Connection  Sender           Sender  Reflector        Reflector
ID       ID          address          port    address          port
    431          81  10.217.1.1        19442  10.217.4.1           19442
    430          81  10.217.1.1        19441  10.217.4.1           19441
    437          82  10.217.1.1        19449  10.217.4.1           19449
    436          82  10.217.1.1        19448  10.217.4.1           19448



show connections Clients


Code Block
titleshow commands
request services rpm twamp start client Reflector1

show services rpm twamp client connection Reflector1

show services rpm twamp client session control-connection Reflector1 test-session ClassBE
show services rpm twamp client session control-connection Reflector1 test-session ClassEF

show services rpm twamp client probe-results control-connection Reflector1


Code Block
titleshow
collapsetrue
root@SRX340-1-Rack104> request services rpm twamp start client Reflector1

root@SRX340-1-Rack104> show services rpm twamp client connection Reflector1
Connection      Client           Client Server           Server Session Auth
Name            address          port   address          port   count   mode
Reflector1      10.217.1.1        49881 10.217.4.1          862       2 Unauthenticated



root@SRX340-1-Rack104> show services rpm twamp client session control-connection Reflector1 test-session ClassBE
Connection      Session         Sender           Sender Reflector        Reflector
Name            Name            address          port   address          port
Reflector1      ClassBE         10.217.1.1        19400 10.217.4.1        19400

root@SRX340-1-Rack104> show services rpm twamp client session control-connection Reflector1 test-session ClassEF
Connection      Session         Sender           Sender Reflector        Reflector
Name            Name            address          port   address          port
Reflector1      ClassEF         10.217.1.1        19399 10.217.4.1        19399



root@SRX340-1-Rack104> show services rpm twamp client history-results
    Owner, Test                 Probe Sent              Probe received              Round trip time
    Reflector1, ClassBE         Mon May 20 16:27:45 2019 Mon May 20 16:27:45 2019              813 usec
    Reflector1, ClassBE         Mon May 20 16:27:46 2019 Mon May 20 16:27:46 2019              373 usec
    Reflector1, ClassBE         Mon May 20 16:27:47 2019 Mon May 20 16:27:47 2019              381 usec




root@SRX340-1-Rack104> show services rpm twamp client probe-results control-connection Reflector1
    Owner: Reflector1, Test: ClassBE
    server-address: 10.217.4.1, server-port: 862, Client address: 10.217.1.1, Client port: 51550
    Reflector address: 10.217.4.1, Reflector port: 19407, Sender address: 10.217.1.1, sender-port: 19407
    Routing Instance Name: ce_vr
    Test size: 5 probes
    Probe results:
      Response received
      Mon May 20 16:28:02 2019
      Mon May 20 16:28:02 2019
    Results over current test:
    Results over last test:
      Probes sent: 5, Probes received: 5, Loss percentage: 0.000000
      Test completed on Mon May 20 16:28:02 2019
      Measurement: Round trip time
        Samples: 5, Minimum: 369 usec, Maximum: 842 usec, Average: 472 usec, Peak to peak: 473 usec, Stddev: 185 usec, Sum: 2362 usec
      Measurement: Positive egress jitter
        Samples: 3, Minimum: 1 usec, Maximum: 445 usec, Average: 150 usec, Peak to peak: 444 usec, Stddev: 208 usec, Sum: 451 usec
      Measurement: Negative egress jitter
        Samples: 2, Minimum: 2 usec, Maximum: 451 usec, Average: 227 usec, Peak to peak: 449 usec, Stddev: 224 usec, Sum: 453 usec
      Measurement: Positive ingress jitter
        Samples: 3, Minimum: 1 usec, Maximum: 13 usec, Average: 6 usec, Peak to peak: 12 usec, Stddev: 5 usec, Sum: 19 usec
      Measurement: Negative ingress jitter
        Samples: 2, Minimum: 8 usec, Maximum: 22 usec, Average: 15 usec, Peak to peak: 14 usec, Stddev: 7 usec, Sum: 30 usec
      Measurement: Positive round trip jitter
        Samples: 3, Minimum: 7 usec, Maximum: 450 usec, Average: 158 usec, Peak to peak: 443 usec, Stddev: 206 usec, Sum: 475 usec
      Measurement: Negative round trip jitter
        Samples: 2, Minimum: 10 usec, Maximum: 477 usec, Average: 244 usec, Peak to peak: 467 usec, Stddev: 234 usec, Sum: 487 usec
    Results over all tests:


From Client:  troubleshooting with telnet


Code Block
titletelnet test
root@SRX340-1-Rack104> telnet routing-instance ce_vr port 862 10.217.4.1
Trying 10.217.4.1...
Connected to 10.217.4.1.
Escape character is '^]'.
0▒W].▒A▒▒▒GS▒%▒+▒u`▒I
]▒^C^]
telnet> quit
Connection closed.



On the server side:
-------------------

root@SRX300-1-Rack104> show services rpm twamp server connection
Connection  Client           Client  Server           Server   Session  Auth
ID          address          port    address          port     count    mode
        89  10.217.1.1        63502  10.217.4.1          862         0

root@SRX300-1-Rack104> show services rpm twamp server session

root@SRX300-1-Rack104>


















...