/
Spines and Leafs CRB configuration

Spines and Leafs CRB configuration




Spine1
Spine1 After Fabric Auto-configure
[root@CentOS ~]# ssh root@100.123.13.201
Password:
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC


root@Spine1:RE:0% cli
{master:0}
root@Spine1> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.1
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.1
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.1
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 cluster 0.0.0.100
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.0.1.2 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.3 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.4 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.1:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_gateway__
set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 from protocol direct
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from protocol evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from route-filter 0.0.0.0/0 prefix-length-range /32-/32
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 then accept
set groups __contrail_overlay_dhcp_relay__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_gateway__
set apply-groups __contrail_overlay_evpn_type5__
set apply-groups __contrail_overlay_dhcp_relay__
set system host-name Spine1
set system root-authentication encrypted-password "$6$qof52Bzl$Mt9G322859Vd5UEETw13aEOAo9sLCsmqottP/vwejzaNqpVkeyrkmTQAL2sUc1joyUxL.8f1qO44ho1VttTlD."
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$XeoPVCvj$l5gW5wkIXxdUn/m.TFeV19GInoPlrS2sFN7yvotyrtR1/aRF8R/NVeT41NDZnf5651P2RbGp0yey9BNnzrY21/"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to leaf1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.13.1/30
set interfaces xe-0/0/1 description "to leaf2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.14.1/30
set interfaces xe-0/0/2 unit 0
set interfaces xe-0/0/3 unit 0
set interfaces xe-0/0/4 unit 0
set interfaces xe-0/0/5 unit 0
set interfaces xe-0/0/6 unit 0
set interfaces xe-0/0/7 unit 0
set interfaces em0 unit 0 family inet address 100.123.13.201/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.1/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.1
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65501
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.2 description "EBGP peering to Leaf1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.2 peer-as 65503
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.2 description "EBGP peering to Leaf2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.2 peer-as 65504
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add spine1
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community spine1 members 65501:1
set vlans default vlan-id 1

{master:0}
root@Spine1>

spine1 overlay only
#
set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 7 vrf-target target:64512:8000006
set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 8 vrf-target target:64512:8000007
#
set groups __contrail_overlay_evpn__ policy-options policy-statement __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import term t1 from community target_64512_8000009
set groups __contrail_overlay_evpn__ policy-options policy-statement __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-export term t1 then community add target_64512_8000009
set groups __contrail_overlay_evpn__ policy-options policy-statement __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-export term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms1_vn-l2-7-import term t1 from community target_64512_8000006
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms1_vn-l2-7-import term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms1_vn-l2-7-export term t1 then community add target_64512_8000006
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms1_vn-l2-7-export term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 from community target_64512_8000007
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then community add target_64512_8000007
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then accept
#
#
#
set groups __contrail_overlay_evpn__ policy-options community target_64512_8000009 members target:64512:8000009
set groups __contrail_overlay_evpn__ policy-options community target_64512_8000006 members target:64512:8000006
set groups __contrail_overlay_evpn__ policy-options community target_64512_8000007 members target:64512:8000007
#
#
#
set groups __contrail_overlay_evpn__ switch-options vrf-import __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import
set groups __contrail_overlay_evpn__ switch-options vrf-import _contrail_bms1_vn-l2-7-import
set groups __contrail_overlay_evpn__ switch-options vrf-import _contrail_bms2_vn-l2-8-import
#
#
set groups __contrail_overlay_evpn_gateway__ interfaces irb gratuitous-arp-reply
set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 7 proxy-macip-advertisement
set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 7 virtual-gateway-accept-data
set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 7 family inet address 192.168.100.4/24 preferred
set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 7 family inet address 192.168.100.4/24 virtual-gateway-address 192.168.100.1
set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 7 virtual-gateway-v4-mac 00:00:5e:01:00:01
set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 8 proxy-macip-advertisement
set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 8 virtual-gateway-accept-data
set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 8 family inet address 192.168.200.4/24 preferred
set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 8 family inet address 192.168.200.4/24 virtual-gateway-address 192.168.200.1
set groups __contrail_overlay_evpn_gateway__ interfaces irb unit 8 virtual-gateway-v4-mac 00:00:5e:01:00:01
set groups __contrail_overlay_evpn_gateway__ vlans bd-7 description "Virtual Network - bms1_vn"
set groups __contrail_overlay_evpn_gateway__ vlans bd-7 vlan-id none
set groups __contrail_overlay_evpn_gateway__ vlans bd-7 l3-interface irb.7
set groups __contrail_overlay_evpn_gateway__ vlans bd-7 vxlan vni 7
set groups __contrail_overlay_evpn_gateway__ vlans bd-8 description "Virtual Network - bms2_vn"
set groups __contrail_overlay_evpn_gateway__ vlans bd-8 vlan-id none
set groups __contrail_overlay_evpn_gateway__ vlans bd-8 l3-interface irb.8
set groups __contrail_overlay_evpn_gateway__ vlans bd-8 vxlan vni 8
set groups __contrail_overlay_evpn_type5__ interfaces lo0 unit 1009 family inet address 127.0.0.1/32
#
set groups __contrail_overlay_evpn_type5__ protocols evpn default-gateway no-gateway-community
#
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 instance-type vrf
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 interface lo0.1009
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 interface irb.8
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 interface irb.7
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 vrf-import __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-import
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 vrf-export __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0-export
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 routing-options rib __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0.inet6.0 multipath
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 routing-options static route 172.16.0.3/32 discard
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 routing-options multipath
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes advertise direct-nexthop
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes encapsulation vxlan
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes vni 9
set groups __contrail_overlay_evpn_type5__ routing-instances __contrail_bms_lr_cc8a4c77-17dd-493d-b5a1-e24c7f3595f0 protocols evpn ip-prefix-routes export type5_policy

Spine2
Spine2 After Fabric Auto-configure
[root@CentOS ~]# ssh root@100.123.13.202
Password:

--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Spine2:RE:0%
root@Spine2:RE:0% cli
{master:0}
root@Spine2> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.2
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.2
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.2
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 cluster 0.0.0.100
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.0.1.2 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.3 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.4 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.2:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_gateway__
set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 from protocol direct
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from protocol evpn
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from route-filter 0.0.0.0/0 prefix-length-range /32-/32
set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 then accept
set groups __contrail_overlay_dhcp_relay__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_gateway__
set apply-groups __contrail_overlay_evpn_type5__
set apply-groups __contrail_overlay_dhcp_relay__
set system host-name Spine2
set system root-authentication encrypted-password "$6$jDqH1tQu$YRcyEsvWdd5JExE0vHDZGkLBeFH/m95mg0W4.M8QC7xW3BWe3CMTs1EtxF.9pKvOyK55T2xB6pBIWuz1QSS6n1"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$kGQu2LyG$P6I21NZjh1mYl6wyGVMAm/pmjzQDjWlsodMi1N//izoZxQfBEx283mDMMCwGMFWsw4RXMVmsItMwTzqBPnYVL1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to leaf1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.23.1/30
set interfaces xe-0/0/1 description "to leaf2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.1/30
set interfaces xe-0/0/2 unit 0
set interfaces xe-0/0/3 unit 0
set interfaces xe-0/0/4 unit 0
set interfaces xe-0/0/5 unit 0
set interfaces xe-0/0/6 unit 0
set interfaces xe-0/0/7 unit 0
set interfaces em0 unit 0 family inet address 100.123.13.202/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.2/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.2
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65502
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2 description "EBGP peering to Leaf1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2 peer-as 65503
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.2 description "EBGP peering to Leaf2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.2 peer-as 65504
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add spine2
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community spine2 members 65502:1
set vlans default vlan-id 1

{master:0}
root@Spine2>

Leaf1
Leaf1 After Fabric Auto-configure
[root@CentOS ~]# ssh root@100.123.13.203
Password:
Last login: Tue Dec 10 15:48:16 2019 from 100.123.34.3
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Leaf1:RE:0% cli
{master:0}
root@Leaf1> show configuration | display set | no-more
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.3
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.3
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.3
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.3:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy
set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto
set groups __contrail_overlay_lag__
set groups __contrail_overlay_multi_homing__
set groups __contrail_overlay_storm_control__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_access__
set apply-groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_homing__
set apply-groups __contrail_overlay_storm_control__
set system host-name Leaf1
set system root-authentication encrypted-password "$6$N.olvWXe$bre63i2oxPcMYkWxX7rmAStuvvnjlPcKDUZ.6laUqp.G6Ywo/8RfDgvCyp6BHTTGxOy2XFb4LSXcNo3sOho8M."
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$0L1vpE3h$lifJp5SXAKGH7HjlkQ2y3TNBdshF2scac8I6dSqQQwu11k2EQOd3Faa1OtaSCFJ8kAQaBODzck84iar3aElQC1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.13.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.23.2/30
set interfaces xe-0/0/2 description "To AIO control_data, IBGP overlay"
set interfaces xe-0/0/2 mtu 9192
set interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode access
set interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members cluster_infra
set interfaces em0 unit 0 family inet address 100.123.13.203/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces irb unit 4001 description "irb for vlan_cluster_infra AIO data interface default"
set interfaces irb unit 4001 family inet address 10.0.1.254/24
set interfaces lo0 unit 0 family inet address 10.255.0.3/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.3
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65503
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf1
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf1 members 65503:1
set vlans cluster_infra vlan-id 4001
set vlans cluster_infra l3-interface irb.4001
set vlans default vlan-id 1

{master:0}
root@Leaf1>

Leaf2
Leaf2 After Fabric Auto-configure
[root@CentOS ~]# ssh root@100.123.13.204
Password:
--- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC
root@Leaf2:RE:0% cli
{master:0}
root@Leaf2> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.4
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.4:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy
set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto
set groups __contrail_overlay_lag__
set groups __contrail_overlay_multi_homing__
set groups __contrail_overlay_storm_control__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_access__
set apply-groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_homing__
set apply-groups __contrail_overlay_storm_control__
set system host-name Leaf2
set system root-authentication encrypted-password "$6$8ODascyE$l.KOcvXbYwbqYdYY6wYKQaz95gIU6ii3ls9bbaiEukwnVw23MfAgVqgYucjvYuYEXcC9uYQdtIwAeSNQLCshe/"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$4p2hEqot$FHreiIze6T4FWcQlXyOc0955l2UJpVLCOg78xDkIxAzS6Mz8KUyUzF9fBqy.P22Hu1zNfBi2HEvW8VhDslEGZ1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.14.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.2/30
set interfaces em0 unit 0 family inet address 100.123.13.204/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.4/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.4
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65504
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3
set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf2
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf2 members 65504:1
set vlans default vlan-id 1

{master:0}
root@Leaf2>

After Overlay configure
root@Leaf2> show configuration | display set
set version 18.1R3-S5.3
set groups __contrail_basic__ snmp community public authorization read-only
set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6
set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999"
set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept
set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999
set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.4
set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512
set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.4
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512
set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn
set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self
set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB
set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 8 vrf-target target:64512:8000007
set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan
set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn
set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 from community target_64512_8000007
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then community add target_64512_8000007
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject
set groups __contrail_overlay_evpn__ policy-options community target_64512_8000007 members target:64512:8000007
set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999
set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0
set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.4:7999
set groups __contrail_overlay_evpn__ switch-options vrf-import _contrail_bms2_vn-l2-8-import
set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn
set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 description "Virtual Port Group : bms2_vn"
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 native-vlan-id 200
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 mtu 9192
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode trunk
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members bd-8
set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication
set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy
set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto
set groups __contrail_overlay_evpn_access__ vlans bd-8 description "Virtual Network - bms2_vn"
set groups __contrail_overlay_evpn_access__ vlans bd-8 vlan-id 200
set groups __contrail_overlay_evpn_access__ vlans bd-8 vxlan vni 8
set groups __contrail_overlay_lag__
set groups __contrail_overlay_multi_homing__
set groups __contrail_overlay_storm_control__
set apply-groups __contrail_basic__
set apply-groups __contrail_overlay_bgp__
set apply-groups __contrail_overlay_evpn__
set apply-groups __contrail_overlay_evpn_access__
set apply-groups __contrail_overlay_lag__
set apply-groups __contrail_overlay_multi_homing__
set apply-groups __contrail_overlay_storm_control__
set system host-name Leaf2
set system root-authentication encrypted-password "$6$8ODascyE$l.KOcvXbYwbqYdYY6wYKQaz95gIU6ii3ls9bbaiEukwnVw23MfAgVqgYucjvYuYEXcC9uYQdtIwAeSNQLCshe/"
set system login user jcluser uid 2000
set system login user jcluser class super-user
set system login user jcluser authentication encrypted-password "$6$4p2hEqot$FHreiIze6T4FWcQlXyOc0955l2UJpVLCOg78xDkIxAzS6Mz8KUyUzF9fBqy.P22Hu1zNfBi2HEvW8VhDslEGZ1"
set system services ssh root-login allow
set system services telnet
set system services netconf ssh
set system syslog user * any emergency
set system syslog file messages any notice
set system syslog file messages authorization info
set system syslog file interactive-commands interactive-commands any
set system extensions providers juniper license-type juniper deployment-scope commercial
set system extensions providers chef license-type juniper deployment-scope commercial
set system ntp server 100.123.0.1
set interfaces xe-0/0/0 description "to spine1"
set interfaces xe-0/0/0 mtu 9192
set interfaces xe-0/0/0 unit 0 family inet address 10.1.14.2/30
set interfaces xe-0/0/1 description "to spine2"
set interfaces xe-0/0/1 mtu 9192
set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.2/30
set interfaces em0 unit 0 family inet address 100.123.13.204/16
set interfaces em1 unit 0 family inet address 169.254.0.2/24
set interfaces lo0 unit 0 family inet address 10.255.0.4/32
set snmp community public authorization read-only
set forwarding-options storm-control-profiles default all
set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1
set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1
set routing-options router-id 10.255.0.4
set routing-options forwarding-table export PFE-LB
set routing-options forwarding-table ecmp-fast-reroute
set protocols bgp log-updown
set protocols bgp graceful-restart
set protocols bgp group IPCLOS_eBGP type external
set protocols bgp group IPCLOS_eBGP mtu-discovery
set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP
set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP
set protocols bgp group IPCLOS_eBGP vpn-apply-export
set protocols bgp group IPCLOS_eBGP local-as 65504
set protocols bgp group IPCLOS_eBGP multipath multiple-as
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 description "EBGP peering to Spine1"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 peer-as 65501
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 description "EBGP peering to Spine2"
set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 peer-as 65502
set protocols lldp interface all
set protocols igmp-snooping vlan default
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf2
set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_EXP term default then reject
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp
set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct
set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept
set policy-options policy-statement IPCLOS_BGP_IMP term default then reject
set policy-options policy-statement PFE-LB then load-balance per-packet
set policy-options community leaf2 members 65504:1
set vlans default vlan-id 1


leaf2 Overlay only
#
set groups __contrail_overlay_evpn__ protocols evpn vni-options vni 8 vrf-target target:64512:8000007
#
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 from community target_64512_8000007
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-import term t1 then accept
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then community add target_64512_8000007
set groups __contrail_overlay_evpn__ policy-options policy-statement _contrail_bms2_vn-l2-8-export term t1 then accept
#
set groups __contrail_overlay_evpn__ policy-options community target_64512_8000007 members target:64512:8000007
#
set groups __contrail_overlay_evpn__ switch-options vrf-import _contrail_bms2_vn-l2-8-import
#
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 description "Virtual Port Group : bms2_vn"
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 native-vlan-id 200
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 mtu 9192
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching interface-mode trunk
set groups __contrail_overlay_evpn_access__ interfaces xe-0/0/2 unit 0 family ethernet-switching vlan members bd-8
#
set groups __contrail_overlay_evpn_access__ vlans bd-8 description "Virtual Network - bms2_vn"
set groups __contrail_overlay_evpn_access__ vlans bd-8 vlan-id 200
set groups __contrail_overlay_evpn_access__ vlans bd-8 vxlan vni 8































Related content

CEM Greenfield
CEM Greenfield
More like this
CEM or Contrail Enterprise Multicloud Fabric Management and BMS Routing
CEM or Contrail Enterprise Multicloud Fabric Management and BMS Routing
More like this
srx320 config 2024-09-23
srx320 config 2024-09-23
More like this
CEM or or Contrail Enterprise Multicloud Onboard brownfield Fabric on Contrail vlabs or jcl
CEM or or Contrail Enterprise Multicloud Onboard brownfield Fabric on Contrail vlabs or jcl
More like this
SRX300-1 Basic config for SKY Enterprise
SRX300-1 Basic config for SKY Enterprise
More like this
no core isoalation 17.3R3
no core isoalation 17.3R3
More like this