Skip to end of metadata
Go to start of metadata

You are viewing an old version of this content. View the current version.

Compare with Current View Version History

« Previous Version 5 Next »




Spine1
Spine1 After Fabric Auto-configure
[root@CentOS ~]# ssh root@100.123.13.201
Password:
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC


root@Spine1:RE:0% cli
{master:0}
root@Spine1> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.1
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.1
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.1
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 cluster 0.0.0.100
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.0.1.2 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.3 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.4 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.1:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_gateway__
set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 from protocol direct
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from protocol evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from route-filter 0.0.0.0/0 prefix-length-range /32-/32
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 then accept
set groups __contrail_overlay_dhcp_relay__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_gateway__
set apply-groups __contrail_overlay_evpn_type5__
set apply-groups __contrail_overlay_dhcp_relay__
set system host-name Spine1
set system root-authentication encrypted-password "$6$qof52Bzl$Mt9G322859Vd5UEETw13aEOAo9sLCsmqottP/vwejzaNqpVkeyrkmTQAL2sUc1joyUxL.8f1qO44ho1VttTlD."
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$XeoPVCvj$l5gW5wkIXxdUn/m.TFeV19GInoPlrS2sFN7yvotyrtR1/aRF8R/NVeT41NDZnf5651P2RbGp0yey9BNnzrY21/"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to leaf1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.13.1/30
set interfaces xe-0/0/1 description "to leaf2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.14.1/30
set interfaces xe-0/0/2 unit 0
set interfaces xe-0/0/3 unit 0
set interfaces xe-0/0/4 unit 0
set interfaces xe-0/0/5 unit 0
set interfaces xe-0/0/6 unit 0
set interfaces xe-0/0/7 unit 0
set interfaces em0 unit 0 family inet address 100.123.13.201/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.1/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.1
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65501
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.2 description "EBGP peering to Leaf1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.2 peer-as 65503
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.2 description "EBGP peering to Leaf2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.2 peer-as 65504
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add spine1
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community spine1 members 65501:1
set vlans default vlan-id 1

{master:0}
root@Spine1>

Spine2
Spine2 After Fabric Auto-configure
[root@CentOS ~]# ssh root@100.123.13.202
Password:

--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Spine2:RE:0%
root@Spine2:RE:0% cli
{master:0}
root@Spine2> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.2
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.2
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.2
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 cluster 0.0.0.100
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.0.1.2 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.3 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.4 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.2:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_gateway__
set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 from protocol direct
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from protocol evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from route-filter 0.0.0.0/0 prefix-length-range /32-/32
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 then accept
set groups __contrail_overlay_dhcp_relay__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_gateway__
set apply-groups __contrail_overlay_evpn_type5__
set apply-groups __contrail_overlay_dhcp_relay__
set system host-name Spine2
set system root-authentication encrypted-password "$6$jDqH1tQu$YRcyEsvWdd5JExE0vHDZGkLBeFH/m95mg0W4.M8QC7xW3BWe3CMTs1EtxF.9pKvOyK55T2xB6pBIWuz1QSS6n1"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$kGQu2LyG$P6I21NZjh1mYl6wyGVMAm/pmjzQDjWlsodMi1N//izoZxQfBEx283mDMMCwGMFWsw4RXMVmsItMwTzqBPnYVL1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to leaf1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.23.1/30
set interfaces xe-0/0/1 description "to leaf2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.1/30
set interfaces xe-0/0/2 unit 0
set interfaces xe-0/0/3 unit 0
set interfaces xe-0/0/4 unit 0
set interfaces xe-0/0/5 unit 0
set interfaces xe-0/0/6 unit 0
set interfaces xe-0/0/7 unit 0
set interfaces em0 unit 0 family inet address 100.123.13.202/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.2/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.2
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65502
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2 description "EBGP peering to Leaf1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2 peer-as 65503
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.2 description "EBGP peering to Leaf2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.2 peer-as 65504
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add spine2
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community spine2 members 65502:1
set vlans default vlan-id 1

{master:0}
root@Spine2>

Leaf1
Leaf1 After Fabric Auto-configure
[root@CentOS ~]# ssh root@100.123.13.203
Password:
Last login: Tue Dec 10 15:48:16 2019 from 100.123.34.3
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Leaf1:RE:0% cli
{master:0}
root@Leaf1> show configuration | display set | no-more
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.3
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.3
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.3
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.3:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy
set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto
set groups __contrail_overlay_lag__
set groups __contrail_overlay_multi_homing__
set groups __contrail_overlay_storm_control__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_access__
set apply-groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_homing__
set apply-groups __contrail_overlay_storm_control__
set system host-name Leaf1
set system root-authentication encrypted-password "$6$N.olvWXe$bre63i2oxPcMYkWxX7rmAStuvvnjlPcKDUZ.6laUqp.G6Ywo/8RfDgvCyp6BHTTGxOy2XFb4LSXcNo3sOho8M."
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$0L1vpE3h$lifJp5SXAKGH7HjlkQ2y3TNBdshF2scac8I6dSqQQwu11k2EQOd3Faa1OtaSCFJ8kAQaBODzck84iar3aElQC1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.13.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.23.2/30
set interfaces xe-0/0/2 description "To AIO control_data, IBGP overlay"
set interfaces xe-0/0/2 mtu 9192
set interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode access
set interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members cluster_infra
set interfaces em0 unit 0 family inet address 100.123.13.203/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces irb unit 4001 description "irb for vlan_cluster_infra AIO data interface default"
set interfaces irb unit 4001 family inet address 10.0.1.254/24
set interfaces lo0 unit 0 family inet address 10.255.0.3/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.3
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65503
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf1
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf1 members 65503:1
set vlans cluster_infra vlan-id 4001
set vlans cluster_infra l3-interface irb.4001
set vlans default vlan-id 1

{master:0}
root@Leaf1>

Leaf2
Leaf2 After Fabric Auto-configure
[root@CentOS ~]# ssh root@100.123.13.204
Password:
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Leaf2:RE:0% cli
{master:0}
root@Leaf2> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.4
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.4:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy
set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto
set groups __contrail_overlay_lag__
set groups __contrail_overlay_multi_homing__
set groups __contrail_overlay_storm_control__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_access__
set apply-groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_homing__
set apply-groups __contrail_overlay_storm_control__
set system host-name Leaf2
set system root-authentication encrypted-password "$6$8ODascyE$l.KOcvXbYwbqYdYY6wYKQaz95gIU6ii3ls9bbaiEukwnVw23MfAgVqgYucjvYuYEXcC9uYQdtIwAeSNQLCshe/"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$4p2hEqot$FHreiIze6T4FWcQlXyOc0955l2UJpVLCOg78xDkIxAzS6Mz8KUyUzF9fBqy.P22Hu1zNfBi2HEvW8VhDslEGZ1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.14.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.2/30
set interfaces em0 unit 0 family inet address 100.123.13.204/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.4/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.4
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65504
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf2
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf2 members 65504:1
set vlans default vlan-id 1

{master:0}
root@Leaf2>

After Overlay configure
root@Leaf2> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.4
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 8 vrf-target target:64512:8000007
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 from community target_64512_8000007
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then community add target_64512_8000007
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community target_64512_8000007 members target:64512:8000007
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.4:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import _contrail_bms2_vn-l2-8-import
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 description "Virtual Port Group : bms2_vn"
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 native-vlan-id 200
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 mtu 9192
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode trunk
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members bd-8
set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy
set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto
set groups __contrail_overlay_evpn_access__ vlans bd-8 description "Virtual Network - bms2_vn"
set groups __contrail_overlay_evpn_access__ vlans bd-8 vlan-id 200
set groups __contrail_overlay_evpn_access__ vlans bd-8 vxlan vni 8
set groups __contrail_overlay_lag__
set groups __contrail_overlay_multi_homing__
set groups __contrail_overlay_storm_control__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_access__
set apply-groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_homing__
set apply-groups __contrail_overlay_storm_control__
set system host-name Leaf2
set system root-authentication encrypted-password "$6$8ODascyE$l.KOcvXbYwbqYdYY6wYKQaz95gIU6ii3ls9bbaiEukwnVw23MfAgVqgYucjvYuYEXcC9uYQdtIwAeSNQLCshe/"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$4p2hEqot$FHreiIze6T4FWcQlXyOc0955l2UJpVLCOg78xDkIxAzS6Mz8KUyUzF9fBqy.P22Hu1zNfBi2HEvW8VhDslEGZ1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.14.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.2/30
set interfaces em0 unit 0 family inet address 100.123.13.204/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.4/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.4
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65504
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf2
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf2 members 65504:1
set vlans default vlan-id 1
































  • No labels