/
Spines and Leafs CRB configuration
Spines and Leafs CRB configuration
Jean-luc KRIKER
Owned by Jean-luc KRIKER
Spine1 |
Spine1 After Fabric Auto-configure Expand source
[root@CentOS ~]# ssh root@100.123.13.201 Password: --- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC root@Spine1:RE:0% cli {master:0} root@Spine1> show configuration | display set set version 18.1R3-S5.3 set groups __contrail_basic__ snmp community public authorization read-only set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999" set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999 set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.1 set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.1 set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512 set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.1 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 cluster 0.0.0.100 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.0.1.2 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.3 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.4 peer-as 64512 set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999 set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0 set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.1:7999 set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999 set groups __contrail_overlay_evpn_gateway__ set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 from protocol direct set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from protocol evpn set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from route-filter 0.0.0.0/0 prefix-length-range /32-/32 set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 then accept set groups __contrail_overlay_dhcp_relay__ set apply-groups __contrail_basic__ set apply-groups __contrail_overlay_bgp__ set apply-groups __contrail_overlay_evpn__ set apply-groups __contrail_overlay_evpn_gateway__ set apply-groups __contrail_overlay_evpn_type5__ set apply-groups __contrail_overlay_dhcp_relay__ set system host-name Spine1 set system root-authentication encrypted-password "$6$qof52Bzl$Mt9G322859Vd5UEETw13aEOAo9sLCsmqottP/vwejzaNqpVkeyrkmTQAL2sUc1joyUxL.8f1qO44ho1VttTlD." set system login user jcluser uid 2000 set system login user jcluser class super-user set system login user jcluser authentication encrypted-password "$6$XeoPVCvj$l5gW5wkIXxdUn/m.TFeV19GInoPlrS2sFN7yvotyrtR1/aRF8R/NVeT41NDZnf5651P2RbGp0yey9BNnzrY21/" set system services ssh root-login allow set system services telnet set system services netconf ssh set system syslog user * any emergency set system syslog file messages any notice set system syslog file messages authorization info set system syslog file interactive-commands interactive-commands any set system extensions providers juniper license-type juniper deployment-scope commercial set system extensions providers chef license-type juniper deployment-scope commercial set system ntp server 100.123.0.1 set interfaces xe-0/0/0 description "to leaf1" set interfaces xe-0/0/0 mtu 9192 set interfaces xe-0/0/0 unit 0 family inet address 10.1.13.1/30 set interfaces xe-0/0/1 description "to leaf2" set interfaces xe-0/0/1 mtu 9192 set interfaces xe-0/0/1 unit 0 family inet address 10.1.14.1/30 set interfaces xe-0/0/2 unit 0 set interfaces xe-0/0/3 unit 0 set interfaces xe-0/0/4 unit 0 set interfaces xe-0/0/5 unit 0 set interfaces xe-0/0/6 unit 0 set interfaces xe-0/0/7 unit 0 set interfaces em0 unit 0 family inet address 100.123.13.201/16 set interfaces em1 unit 0 family inet address 169.254.0.2/24 set interfaces lo0 unit 0 family inet address 10.255.0.1/32 set snmp community public authorization read-only set forwarding-options storm-control-profiles default all set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1 set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1 set routing-options router-id 10.255.0.1 set routing-options forwarding-table export PFE-LB set routing-options forwarding-table ecmp-fast-reroute set protocols bgp log-updown set protocols bgp graceful-restart set protocols bgp group IPCLOS_eBGP type external set protocols bgp group IPCLOS_eBGP mtu-discovery set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP set protocols bgp group IPCLOS_eBGP vpn-apply-export set protocols bgp group IPCLOS_eBGP local-as 65501 set protocols bgp group IPCLOS_eBGP multipath multiple-as set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.2 description "EBGP peering to Leaf1" set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.2 peer-as 65503 set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.2 description "EBGP peering to Leaf2" set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.2 peer-as 65504 set protocols lldp interface all set protocols igmp-snooping vlan default set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add spine1 set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept set policy-options policy-statement IPCLOS_BGP_EXP term default then reject set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept set policy-options policy-statement IPCLOS_BGP_IMP term default then reject set policy-options policy-statement PFE-LB then load-balance per-packet set policy-options community spine1 members 65501:1 set vlans default vlan-id 1 {master:0} root@Spine1> spine1 overlay only # set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 7 vrf-target target:64512:8000006 set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 8 vrf-target target:64512:8000007 # set groups __contrail_overlay_evpn__ policy-options policy-statement __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import term t1 from community target_64512_8000009 set groups __contrail_overlay_evpn__ policy-options policy-statement __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import term t1 then accept set groups __contrail_overlay_evpn__ policy-options policy-statement __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-export term t1 then community add target_64512_8000009 set groups __contrail_overlay_evpn__ policy-options policy-statement __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-export term t1 then accept set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms1_vn-l2-7-import term t1 from community target_64512_8000006 set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms1_vn-l2-7-import term t1 then accept set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms1_vn-l2-7-export term t1 then community add target_64512_8000006 set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms1_vn-l2-7-export term t1 then accept set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 from community target_64512_8000007 set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 then accept set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then community add target_64512_8000007 set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then accept # # # set groups __contrail_overlay_evpn__ policy-options community target_64512_8000009 members target:64512:8000009 set groups __contrail_overlay_evpn__ policy-options community target_64512_8000006 members target:64512:8000006 set groups __contrail_overlay_evpn__ policy-options community target_64512_8000007 members target:64512:8000007 # # # set groups __contrail_overlay_evpn__ switch-options vrf-import __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import set groups __contrail_overlay_evpn__ switch-options vrf-import _contrail_bms1_vn-l2-7-import set groups __contrail_overlay_evpn__ switch-options vrf-import _contrail_bms2_vn-l2-8-import # # set groups __contrail_overlay_evpn_gateway__ interfaces irb gratuitous-arp-reply set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 7 proxy-macip-advertisement set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 7 virtual-gateway-accept-data set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 7 family inet address 192.168.100.4/24 preferred set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 7 family inet address 192.168.100.4/24 virtual-gateway-address 192.168.100.1 set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 7 virtual-gateway-v4-mac 00:00:5e:01:00:01 set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 8 proxy-macip-advertisement set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 8 virtual-gateway-accept-data set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 8 family inet address 192.168.200.4/24 preferred set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 8 family inet address 192.168.200.4/24 virtual-gateway-address 192.168.200.1 set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 8 virtual-gateway-v4-mac 00:00:5e:01:00:01 set groups __contrail_overlay_evpn_gateway__ vlans bd-7 description "Virtual Network - bms1_vn" set groups __contrail_overlay_evpn_gateway__ vlans bd-7 vlan-id none set groups __contrail_overlay_evpn_gateway__ vlans bd-7 l3-interface irb.7 set groups __contrail_overlay_evpn_gateway__ vlans bd-7 vxlan vni 7 set groups __contrail_overlay_evpn_gateway__ vlans bd-8 description "Virtual Network - bms2_vn" set groups __contrail_overlay_evpn_gateway__ vlans bd-8 vlan-id none set groups __contrail_overlay_evpn_gateway__ vlans bd-8 l3-interface irb.8 set groups __contrail_overlay_evpn_gateway__ vlans bd-8 vxlan vni 8 set groups __contrail_overlay_evpn_type5__ interfaces lo0 unit 1009 family inet address 127.0.0.1/32 # set groups __contrail_overlay_evpn_type5__ protocols evpn default-gateway no-gateway-community # set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 instance-type vrf set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 interface lo0.1009 set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 interface irb.8 set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 interface irb.7 set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 vrf-import __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 vrf-export __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-export set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 routing-options rib __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0.inet6.0 multipath set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 routing-options static route 172.16.0.3/32 discard set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 routing-options multipath set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes advertise direct-nexthop set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes encapsulation vxlan set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes vni 9 set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes export type5_policy |
Spine2 |
Spine2 After Fabric Auto-configure Expand source
[root@CentOS ~]# ssh root@100.123.13.202 Password: --- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC root@Spine2:RE:0% root@Spine2:RE:0% cli {master:0} root@Spine2> show configuration | display set set version 18.1R3-S5.3 set groups __contrail_basic__ snmp community public authorization read-only set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999" set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999 set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.2 set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.2 set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512 set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.2 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 cluster 0.0.0.100 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.0.1.2 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.3 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.4 peer-as 64512 set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999 set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0 set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.2:7999 set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999 set groups __contrail_overlay_evpn_gateway__ set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 from protocol direct set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from protocol evpn set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from route-filter 0.0.0.0/0 prefix-length-range /32-/32 set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 then accept set groups __contrail_overlay_dhcp_relay__ set apply-groups __contrail_basic__ set apply-groups __contrail_overlay_bgp__ set apply-groups __contrail_overlay_evpn__ set apply-groups __contrail_overlay_evpn_gateway__ set apply-groups __contrail_overlay_evpn_type5__ set apply-groups __contrail_overlay_dhcp_relay__ set system host-name Spine2 set system root-authentication encrypted-password "$6$jDqH1tQu$YRcyEsvWdd5JExE0vHDZGkLBeFH/m95mg0W4.M8QC7xW3BWe3CMTs1EtxF.9pKvOyK55T2xB6pBIWuz1QSS6n1" set system login user jcluser uid 2000 set system login user jcluser class super-user set system login user jcluser authentication encrypted-password "$6$kGQu2LyG$P6I21NZjh1mYl6wyGVMAm/pmjzQDjWlsodMi1N//izoZxQfBEx283mDMMCwGMFWsw4RXMVmsItMwTzqBPnYVL1" set system services ssh root-login allow set system services telnet set system services netconf ssh set system syslog user * any emergency set system syslog file messages any notice set system syslog file messages authorization info set system syslog file interactive-commands interactive-commands any set system extensions providers juniper license-type juniper deployment-scope commercial set system extensions providers chef license-type juniper deployment-scope commercial set system ntp server 100.123.0.1 set interfaces xe-0/0/0 description "to leaf1" set interfaces xe-0/0/0 mtu 9192 set interfaces xe-0/0/0 unit 0 family inet address 10.1.23.1/30 set interfaces xe-0/0/1 description "to leaf2" set interfaces xe-0/0/1 mtu 9192 set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.1/30 set interfaces xe-0/0/2 unit 0 set interfaces xe-0/0/3 unit 0 set interfaces xe-0/0/4 unit 0 set interfaces xe-0/0/5 unit 0 set interfaces xe-0/0/6 unit 0 set interfaces xe-0/0/7 unit 0 set interfaces em0 unit 0 family inet address 100.123.13.202/16 set interfaces em1 unit 0 family inet address 169.254.0.2/24 set interfaces lo0 unit 0 family inet address 10.255.0.2/32 set snmp community public authorization read-only set forwarding-options storm-control-profiles default all set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1 set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1 set routing-options router-id 10.255.0.2 set routing-options forwarding-table export PFE-LB set routing-options forwarding-table ecmp-fast-reroute set protocols bgp log-updown set protocols bgp graceful-restart set protocols bgp group IPCLOS_eBGP type external set protocols bgp group IPCLOS_eBGP mtu-discovery set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP set protocols bgp group IPCLOS_eBGP vpn-apply-export set protocols bgp group IPCLOS_eBGP local-as 65502 set protocols bgp group IPCLOS_eBGP multipath multiple-as set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2 description "EBGP peering to Leaf1" set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2 peer-as 65503 set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.2 description "EBGP peering to Leaf2" set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.2 peer-as 65504 set protocols lldp interface all set protocols igmp-snooping vlan default set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add spine2 set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept set policy-options policy-statement IPCLOS_BGP_EXP term default then reject set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept set policy-options policy-statement IPCLOS_BGP_IMP term default then reject set policy-options policy-statement PFE-LB then load-balance per-packet set policy-options community spine2 members 65502:1 set vlans default vlan-id 1 {master:0} root@Spine2> |
Leaf1 |
Leaf1 After Fabric Auto-configure Expand source
[root@CentOS ~]# ssh root@100.123.13.203 Password: Last login: Tue Dec 10 15:48:16 2019 from 100.123.34.3 --- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC root@Leaf1:RE:0% cli {master:0} root@Leaf1> show configuration | display set | no-more set version 18.1R3-S5.3 set groups __contrail_basic__ snmp community public authorization read-only set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999" set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999 set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.3 set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.3 set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512 set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.3 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512 set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999 set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0 set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.3:7999 set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999 set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto set groups __contrail_overlay_lag__ set groups __contrail_overlay_multi_homing__ set groups __contrail_overlay_storm_control__ set apply-groups __contrail_basic__ set apply-groups __contrail_overlay_bgp__ set apply-groups __contrail_overlay_evpn__ set apply-groups __contrail_overlay_evpn_access__ set apply-groups __contrail_overlay_lag__ set apply-groups __contrail_overlay_multi_homing__ set apply-groups __contrail_overlay_storm_control__ set system host-name Leaf1 set system root-authentication encrypted-password "$6$N.olvWXe$bre63i2oxPcMYkWxX7rmAStuvvnjlPcKDUZ.6laUqp.G6Ywo/8RfDgvCyp6BHTTGxOy2XFb4LSXcNo3sOho8M." set system login user jcluser uid 2000 set system login user jcluser class super-user set system login user jcluser authentication encrypted-password "$6$0L1vpE3h$lifJp5SXAKGH7HjlkQ2y3TNBdshF2scac8I6dSqQQwu11k2EQOd3Faa1OtaSCFJ8kAQaBODzck84iar3aElQC1" set system services ssh root-login allow set system services telnet set system services netconf ssh set system syslog user * any emergency set system syslog file messages any notice set system syslog file messages authorization info set system syslog file interactive-commands interactive-commands any set system extensions providers juniper license-type juniper deployment-scope commercial set system extensions providers chef license-type juniper deployment-scope commercial set system ntp server 100.123.0.1 set interfaces xe-0/0/0 description "to spine1" set interfaces xe-0/0/0 mtu 9192 set interfaces xe-0/0/0 unit 0 family inet address 10.1.13.2/30 set interfaces xe-0/0/1 description "to spine2" set interfaces xe-0/0/1 mtu 9192 set interfaces xe-0/0/1 unit 0 family inet address 10.1.23.2/30 set interfaces xe-0/0/2 description "To AIO control_data, IBGP overlay" set interfaces xe-0/0/2 mtu 9192 set interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode access set interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members cluster_infra set interfaces em0 unit 0 family inet address 100.123.13.203/16 set interfaces em1 unit 0 family inet address 169.254.0.2/24 set interfaces irb unit 4001 description "irb for vlan_cluster_infra AIO data interface default" set interfaces irb unit 4001 family inet address 10.0.1.254/24 set interfaces lo0 unit 0 family inet address 10.255.0.3/32 set snmp community public authorization read-only set forwarding-options storm-control-profiles default all set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1 set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1 set routing-options router-id 10.255.0.3 set routing-options forwarding-table export PFE-LB set routing-options forwarding-table ecmp-fast-reroute set protocols bgp log-updown set protocols bgp graceful-restart set protocols bgp group IPCLOS_eBGP type external set protocols bgp group IPCLOS_eBGP mtu-discovery set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP set protocols bgp group IPCLOS_eBGP vpn-apply-export set protocols bgp group IPCLOS_eBGP local-as 65503 set protocols bgp group IPCLOS_eBGP multipath multiple-as set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.1 description "EBGP peering to Spine1" set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.1 peer-as 65501 set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.1 description "EBGP peering to Spine2" set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.1 peer-as 65502 set protocols lldp interface all set protocols igmp-snooping vlan default set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf1 set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept set policy-options policy-statement IPCLOS_BGP_EXP term default then reject set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept set policy-options policy-statement IPCLOS_BGP_IMP term default then reject set policy-options policy-statement PFE-LB then load-balance per-packet set policy-options community leaf1 members 65503:1 set vlans cluster_infra vlan-id 4001 set vlans cluster_infra l3-interface irb.4001 set vlans default vlan-id 1 {master:0} root@Leaf1> |
Leaf2 |
Leaf2 After Fabric Auto-configure Expand source
[root@CentOS ~]# ssh root@100.123.13.204 Password: --- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC root@Leaf2:RE:0% cli {master:0} root@Leaf2> show configuration | display set set version 18.1R3-S5.3 set groups __contrail_basic__ snmp community public authorization read-only set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999" set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999 set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.4 set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.4 set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512 set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.4 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512 set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999 set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0 set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.4:7999 set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999 set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto set groups __contrail_overlay_lag__ set groups __contrail_overlay_multi_homing__ set groups __contrail_overlay_storm_control__ set apply-groups __contrail_basic__ set apply-groups __contrail_overlay_bgp__ set apply-groups __contrail_overlay_evpn__ set apply-groups __contrail_overlay_evpn_access__ set apply-groups __contrail_overlay_lag__ set apply-groups __contrail_overlay_multi_homing__ set apply-groups __contrail_overlay_storm_control__ set system host-name Leaf2 set system root-authentication encrypted-password "$6$8ODascyE$l.KOcvXbYwbqYdYY6wYKQaz95gIU6ii3ls9bbaiEukwnVw23MfAgVqgYucjvYuYEXcC9uYQdtIwAeSNQLCshe/" set system login user jcluser uid 2000 set system login user jcluser class super-user set system login user jcluser authentication encrypted-password "$6$4p2hEqot$FHreiIze6T4FWcQlXyOc0955l2UJpVLCOg78xDkIxAzS6Mz8KUyUzF9fBqy.P22Hu1zNfBi2HEvW8VhDslEGZ1" set system services ssh root-login allow set system services telnet set system services netconf ssh set system syslog user * any emergency set system syslog file messages any notice set system syslog file messages authorization info set system syslog file interactive-commands interactive-commands any set system extensions providers juniper license-type juniper deployment-scope commercial set system extensions providers chef license-type juniper deployment-scope commercial set system ntp server 100.123.0.1 set interfaces xe-0/0/0 description "to spine1" set interfaces xe-0/0/0 mtu 9192 set interfaces xe-0/0/0 unit 0 family inet address 10.1.14.2/30 set interfaces xe-0/0/1 description "to spine2" set interfaces xe-0/0/1 mtu 9192 set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.2/30 set interfaces em0 unit 0 family inet address 100.123.13.204/16 set interfaces em1 unit 0 family inet address 169.254.0.2/24 set interfaces lo0 unit 0 family inet address 10.255.0.4/32 set snmp community public authorization read-only set forwarding-options storm-control-profiles default all set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1 set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1 set routing-options router-id 10.255.0.4 set routing-options forwarding-table export PFE-LB set routing-options forwarding-table ecmp-fast-reroute set protocols bgp log-updown set protocols bgp graceful-restart set protocols bgp group IPCLOS_eBGP type external set protocols bgp group IPCLOS_eBGP mtu-discovery set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP set protocols bgp group IPCLOS_eBGP vpn-apply-export set protocols bgp group IPCLOS_eBGP local-as 65504 set protocols bgp group IPCLOS_eBGP multipath multiple-as set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 description "EBGP peering to Spine1" set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 peer-as 65501 set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 description "EBGP peering to Spine2" set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 peer-as 65502 set protocols lldp interface all set protocols igmp-snooping vlan default set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf2 set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept set policy-options policy-statement IPCLOS_BGP_EXP term default then reject set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept set policy-options policy-statement IPCLOS_BGP_IMP term default then reject set policy-options policy-statement PFE-LB then load-balance per-packet set policy-options community leaf2 members 65504:1 set vlans default vlan-id 1 {master:0} root@Leaf2>
After Overlay configure Expand source
root@Leaf2> show configuration | display set set version 18.1R3-S5.3 set groups __contrail_basic__ snmp community public authorization read-only set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999" set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999 set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.4 set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.4 set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512 set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.4 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512 set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 8 vrf-target target:64512:8000007 set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 from community target_64512_8000007 set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 then accept set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then community add target_64512_8000007 set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then accept set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject set groups __contrail_overlay_evpn__ policy-options community target_64512_8000007 members target:64512:8000007 set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999 set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0 set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.4:7999 set groups __contrail_overlay_evpn__ switch-options vrf-import _contrail_bms2_vn-l2-8-import set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999 set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 description "Virtual Port Group : bms2_vn" set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 native-vlan-id 200 set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 mtu 9192 set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode trunk set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members bd-8 set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto set groups __contrail_overlay_evpn_access__ vlans bd-8 description "Virtual Network - bms2_vn" set groups __contrail_overlay_evpn_access__ vlans bd-8 vlan-id 200 set groups __contrail_overlay_evpn_access__ vlans bd-8 vxlan vni 8 set groups __contrail_overlay_lag__ set groups __contrail_overlay_multi_homing__ set groups __contrail_overlay_storm_control__ set apply-groups __contrail_basic__ set apply-groups __contrail_overlay_bgp__ set apply-groups __contrail_overlay_evpn__ set apply-groups __contrail_overlay_evpn_access__ set apply-groups __contrail_overlay_lag__ set apply-groups __contrail_overlay_multi_homing__ set apply-groups __contrail_overlay_storm_control__ set system host-name Leaf2 set system root-authentication encrypted-password "$6$8ODascyE$l.KOcvXbYwbqYdYY6wYKQaz95gIU6ii3ls9bbaiEukwnVw23MfAgVqgYucjvYuYEXcC9uYQdtIwAeSNQLCshe/" set system login user jcluser uid 2000 set system login user jcluser class super-user set system login user jcluser authentication encrypted-password "$6$4p2hEqot$FHreiIze6T4FWcQlXyOc0955l2UJpVLCOg78xDkIxAzS6Mz8KUyUzF9fBqy.P22Hu1zNfBi2HEvW8VhDslEGZ1" set system services ssh root-login allow set system services telnet set system services netconf ssh set system syslog user * any emergency set system syslog file messages any notice set system syslog file messages authorization info set system syslog file interactive-commands interactive-commands any set system extensions providers juniper license-type juniper deployment-scope commercial set system extensions providers chef license-type juniper deployment-scope commercial set system ntp server 100.123.0.1 set interfaces xe-0/0/0 description "to spine1" set interfaces xe-0/0/0 mtu 9192 set interfaces xe-0/0/0 unit 0 family inet address 10.1.14.2/30 set interfaces xe-0/0/1 description "to spine2" set interfaces xe-0/0/1 mtu 9192 set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.2/30 set interfaces em0 unit 0 family inet address 100.123.13.204/16 set interfaces em1 unit 0 family inet address 169.254.0.2/24 set interfaces lo0 unit 0 family inet address 10.255.0.4/32 set snmp community public authorization read-only set forwarding-options storm-control-profiles default all set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1 set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1 set routing-options router-id 10.255.0.4 set routing-options forwarding-table export PFE-LB set routing-options forwarding-table ecmp-fast-reroute set protocols bgp log-updown set protocols bgp graceful-restart set protocols bgp group IPCLOS_eBGP type external set protocols bgp group IPCLOS_eBGP mtu-discovery set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP set protocols bgp group IPCLOS_eBGP vpn-apply-export set protocols bgp group IPCLOS_eBGP local-as 65504 set protocols bgp group IPCLOS_eBGP multipath multiple-as set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 description "EBGP peering to Spine1" set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 peer-as 65501 set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 description "EBGP peering to Spine2" set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 peer-as 65502 set protocols lldp interface all set protocols igmp-snooping vlan default set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf2 set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept set policy-options policy-statement IPCLOS_BGP_EXP term default then reject set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept set policy-options policy-statement IPCLOS_BGP_IMP term default then reject set policy-options policy-statement PFE-LB then load-balance per-packet set policy-options community leaf2 members 65504:1 set vlans default vlan-id 1 leaf2 Overlay only # set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 8 vrf-target target:64512:8000007 # set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 from community target_64512_8000007 set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 then accept set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then community add target_64512_8000007 set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then accept # set groups __contrail_overlay_evpn__ policy-options community target_64512_8000007 members target:64512:8000007 # set groups __contrail_overlay_evpn__ switch-options vrf-import _contrail_bms2_vn-l2-8-import # set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 description "Virtual Port Group : bms2_vn" set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 native-vlan-id 200 set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 mtu 9192 set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode trunk set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members bd-8 # set groups __contrail_overlay_evpn_access__ vlans bd-8 description "Virtual Network - bms2_vn" set groups __contrail_overlay_evpn_access__ vlans bd-8 vlan-id 200 set groups __contrail_overlay_evpn_access__ vlans bd-8 vxlan vni 8 |
, multiple selections available,
Related content
CEM Greenfield
CEM Greenfield
More like this
CEM or Contrail Enterprise Multicloud Fabric Management and BMS Routing
CEM or Contrail Enterprise Multicloud Fabric Management and BMS Routing
More like this
srx320 config 2024-09-23
srx320 config 2024-09-23
More like this
CEM or or Contrail Enterprise Multicloud Onboard brownfield Fabric on Contrail vlabs or jcl
CEM or or Contrail Enterprise Multicloud Onboard brownfield Fabric on Contrail vlabs or jcl
More like this
SRX300-1 Basic config for SKY Enterprise
SRX300-1 Basic config for SKY Enterprise
More like this
no core isoalation 17.3R3
no core isoalation 17.3R3
More like this