- Created by Jean-luc KRIKER , last modified on Dec 10, 2019
You are viewing an old version of this content. View the current version.
Compare with Current View Version History
« Previous Version 3 Next »
Spine1 |
Spine1 After Fabric Auto-configure Expand source
[root@CentOS ~]# ssh root@100.123.13.201 Password: --- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC root@Spine1:RE:0% cli {master:0} root@Spine1> show configuration | display set set version 18.1R3-S5.3 set groups __contrail_basic__ snmp community public authorization read-only set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999" set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999 set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.1 set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.1 set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512 set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.1 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 cluster 0.0.0.100 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.0.1.2 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.3 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.4 peer-as 64512 set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999 set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0 set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.1:7999 set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999 set groups __contrail_overlay_evpn_gateway__ set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 from protocol direct set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from protocol evpn set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from route-filter 0.0.0.0/0 prefix-length-range /32-/32 set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 then accept set groups __contrail_overlay_dhcp_relay__ set apply-groups __contrail_basic__ set apply-groups __contrail_overlay_bgp__ set apply-groups __contrail_overlay_evpn__ set apply-groups __contrail_overlay_evpn_gateway__ set apply-groups __contrail_overlay_evpn_type5__ set apply-groups __contrail_overlay_dhcp_relay__ set system host-name Spine1 set system root-authentication encrypted-password "$6$qof52Bzl$Mt9G322859Vd5UEETw13aEOAo9sLCsmqottP/vwejzaNqpVkeyrkmTQAL2sUc1joyUxL.8f1qO44ho1VttTlD." set system login user jcluser uid 2000 set system login user jcluser class super-user set system login user jcluser authentication encrypted-password "$6$XeoPVCvj$l5gW5wkIXxdUn/m.TFeV19GInoPlrS2sFN7yvotyrtR1/aRF8R/NVeT41NDZnf5651P2RbGp0yey9BNnzrY21/" set system services ssh root-login allow set system services telnet set system services netconf ssh set system syslog user * any emergency set system syslog file messages any notice set system syslog file messages authorization info set system syslog file interactive-commands interactive-commands any set system extensions providers juniper license-type juniper deployment-scope commercial set system extensions providers chef license-type juniper deployment-scope commercial set system ntp server 100.123.0.1 set interfaces xe-0/0/0 description "to leaf1" set interfaces xe-0/0/0 mtu 9192 set interfaces xe-0/0/0 unit 0 family inet address 10.1.13.1/30 set interfaces xe-0/0/1 description "to leaf2" set interfaces xe-0/0/1 mtu 9192 set interfaces xe-0/0/1 unit 0 family inet address 10.1.14.1/30 set interfaces xe-0/0/2 unit 0 set interfaces xe-0/0/3 unit 0 set interfaces xe-0/0/4 unit 0 set interfaces xe-0/0/5 unit 0 set interfaces xe-0/0/6 unit 0 set interfaces xe-0/0/7 unit 0 set interfaces em0 unit 0 family inet address 100.123.13.201/16 set interfaces em1 unit 0 family inet address 169.254.0.2/24 set interfaces lo0 unit 0 family inet address 10.255.0.1/32 set snmp community public authorization read-only set forwarding-options storm-control-profiles default all set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1 set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1 set routing-options router-id 10.255.0.1 set routing-options forwarding-table export PFE-LB set routing-options forwarding-table ecmp-fast-reroute set protocols bgp log-updown set protocols bgp graceful-restart set protocols bgp group IPCLOS_eBGP type external set protocols bgp group IPCLOS_eBGP mtu-discovery set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP set protocols bgp group IPCLOS_eBGP vpn-apply-export set protocols bgp group IPCLOS_eBGP local-as 65501 set protocols bgp group IPCLOS_eBGP multipath multiple-as set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.2 description "EBGP peering to Leaf1" set protocols bgp group IPCLOS_eBGP neighbor 10.1.13.2 peer-as 65503 set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.2 description "EBGP peering to Leaf2" set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.2 peer-as 65504 set protocols lldp interface all set protocols igmp-snooping vlan default set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add spine1 set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept set policy-options policy-statement IPCLOS_BGP_EXP term default then reject set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept set policy-options policy-statement IPCLOS_BGP_IMP term default then reject set policy-options policy-statement PFE-LB then load-balance per-packet set policy-options community spine1 members 65501:1 set vlans default vlan-id 1 {master:0} root@Spine1> |
Spine2 |
Spine2 After Fabric Auto-configure Expand source
[root@CentOS ~]# ssh root@100.123.13.202 The authenticity of host '100.123.13.202 (100.123.13.202)' can't be established. ECDSA key fingerprint is SHA256:ySIUtoIVl4Nlr5vD8Es4Tnme9G1+G7qwwFxEKq8rmoU. ECDSA key fingerprint is MD5:04:d7:76:ad:0c:fb:13:2a:e5:78:a3:1e:c7:47:4a:0b. Are you sure you want to continue connecting (yes/no)? yes Warning: Permanently added '100.123.13.202' (ECDSA) to the list of known hosts. Password: --- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC root@Spine2:RE:0% root@Spine2:RE:0% cli {master:0} root@Spine2> {master:0} root@Spine2> {master:0} root@Spine2> show configuration | display set set version 18.1R3-S5.3 set groups __contrail_basic__ snmp community public authorization read-only set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999" set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999 set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.2 set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.2 set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512 set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.2 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 cluster 0.0.0.100 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.0.1.2 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.3 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.4 peer-as 64512 set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999 set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0 set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.2:7999 set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999 set groups __contrail_overlay_evpn_gateway__ set groups __contrail_overlay_evpn_type5__ routing-options forwarding-table chained-composite-next-hop ingress evpn set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 from protocol direct set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 1 then accept set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 from protocol static set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 2 then accept set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from protocol evpn set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 from route-filter 0.0.0.0/0 prefix-length-range /32-/32 set groups __contrail_overlay_evpn_type5__ policy-options policy-statement type5_policy term 3 then accept set groups __contrail_overlay_dhcp_relay__ set apply-groups __contrail_basic__ set apply-groups __contrail_overlay_bgp__ set apply-groups __contrail_overlay_evpn__ set apply-groups __contrail_overlay_evpn_gateway__ set apply-groups __contrail_overlay_evpn_type5__ set apply-groups __contrail_overlay_dhcp_relay__ set system host-name Spine2 set system root-authentication encrypted-password "$6$jDqH1tQu$YRcyEsvWdd5JExE0vHDZGkLBeFH/m95mg0W4.M8QC7xW3BWe3CMTs1EtxF.9pKvOyK55T2xB6pBIWuz1QSS6n1" set system login user jcluser uid 2000 set system login user jcluser class super-user set system login user jcluser authentication encrypted-password "$6$kGQu2LyG$P6I21NZjh1mYl6wyGVMAm/pmjzQDjWlsodMi1N//izoZxQfBEx283mDMMCwGMFWsw4RXMVmsItMwTzqBPnYVL1" set system services ssh root-login allow set system services telnet set system services netconf ssh set system syslog user * any emergency set system syslog file messages any notice set system syslog file messages authorization info set system syslog file interactive-commands interactive-commands any set system extensions providers juniper license-type juniper deployment-scope commercial set system extensions providers chef license-type juniper deployment-scope commercial set system ntp server 100.123.0.1 set interfaces xe-0/0/0 description "to leaf1" set interfaces xe-0/0/0 mtu 9192 set interfaces xe-0/0/0 unit 0 family inet address 10.1.23.1/30 set interfaces xe-0/0/1 description "to leaf2" set interfaces xe-0/0/1 mtu 9192 set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.1/30 set interfaces xe-0/0/2 unit 0 set interfaces xe-0/0/3 unit 0 set interfaces xe-0/0/4 unit 0 set interfaces xe-0/0/5 unit 0 set interfaces xe-0/0/6 unit 0 set interfaces xe-0/0/7 unit 0 set interfaces em0 unit 0 family inet address 100.123.13.202/16 set interfaces em1 unit 0 family inet address 169.254.0.2/24 set interfaces lo0 unit 0 family inet address 10.255.0.2/32 set snmp community public authorization read-only set forwarding-options storm-control-profiles default all set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1 set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1 set routing-options router-id 10.255.0.2 set routing-options forwarding-table export PFE-LB set routing-options forwarding-table ecmp-fast-reroute set protocols bgp log-updown set protocols bgp graceful-restart set protocols bgp group IPCLOS_eBGP type external set protocols bgp group IPCLOS_eBGP mtu-discovery set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP set protocols bgp group IPCLOS_eBGP vpn-apply-export set protocols bgp group IPCLOS_eBGP local-as 65502 set protocols bgp group IPCLOS_eBGP multipath multiple-as set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2 description "EBGP peering to Leaf1" set protocols bgp group IPCLOS_eBGP neighbor 10.1.23.2 peer-as 65503 set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.2 description "EBGP peering to Leaf2" set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.2 peer-as 65504 set protocols lldp interface all set protocols igmp-snooping vlan default set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add spine2 set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept set policy-options policy-statement IPCLOS_BGP_EXP term default then reject set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept set policy-options policy-statement IPCLOS_BGP_IMP term default then reject set policy-options policy-statement PFE-LB then load-balance per-packet set policy-options community spine2 members 65502:1 set vlans default vlan-id 1 {master:0} root@Spine2> |
Leaf1 |
Leaf1 After Fabric Auto-configure Expand source
|
Leaf2 |
Leaf2 After Fabric Auto-configure Expand source
[root@CentOS ~]# ssh root@100.123.13.204 Password: --- JUNOS 18.1R3-S5.3 built 2019-04-27 13:13:59 UTC root@Leaf2:RE:0% cli {master:0} root@Leaf2> show configuration | display set set version 18.1R3-S5.3 set groups __contrail_basic__ snmp community public authorization read-only set groups __contrail_basic__ protocols l2-learning global-mac-table-aging-time 1800 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then community add COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term1 then accept set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE term term100 then accept set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from family evpn set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from community COM-MAINTENANCE set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 2 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 1 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 3 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 4 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 5 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 from nlri-route-type 6 set groups __contrail_basic__ policy-options policy-statement REJECT-MAINTENANCE-MODE term term1 then reject set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then as-path-prepend "9999 9999 9999" set groups __contrail_basic__ policy-options policy-statement MAINTENANCE-MODE-underlay then accept set groups __contrail_basic__ policy-options community COM-MAINTENANCE members 9999:9999 set groups __contrail_overlay_bgp__ routing-options router-id 10.255.0.4 set groups __contrail_overlay_bgp__ routing-options route-distinguisher-id 10.255.0.4 set groups __contrail_overlay_bgp__ routing-options autonomous-system 64512 set groups __contrail_overlay_bgp__ routing-options resolution rib bgp.rtarget.0 resolution-ribs inet.0 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 type internal set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-address 10.255.0.4 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 hold-time 90 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 import REJECT-MAINTENANCE-MODE set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family evpn signaling set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 family route-target set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 export _contrail_ibgp_export_policy set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 vpn-apply-export set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 local-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 multipath set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.1 peer-as 64512 set groups __contrail_overlay_bgp__ protocols bgp group _contrail_asn-64512 neighbor 10.255.0.2 peer-as 64512 set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn from family inet-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet-vpn then next-hop self set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn from family inet6-vpn set groups __contrail_overlay_bgp__ policy-options policy-statement _contrail_ibgp_export_policy term inet6-vpn then next-hop self set groups __contrail_overlay_evpn__ routing-options forwarding-table export EVPN-LB set groups __contrail_overlay_evpn__ protocols evpn encapsulation vxlan set groups __contrail_overlay_evpn__ protocols evpn extended-vni-list all set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 from protocol evpn set groups __contrail_overlay_evpn__ policy-options policy-statement EVPN-LB term term1 then load-balance per-packet set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in from community community-esi-in set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term esi-in then accept set groups __contrail_overlay_evpn__ policy-options policy-statement import-evpn term default-term then reject set groups __contrail_overlay_evpn__ policy-options community community-esi-in members target:64512:7999999 set groups __contrail_overlay_evpn__ switch-options vtep-source-interface lo0.0 set groups __contrail_overlay_evpn__ switch-options route-distinguisher 10.255.0.4:7999 set groups __contrail_overlay_evpn__ switch-options vrf-import import-evpn set groups __contrail_overlay_evpn__ switch-options vrf-target target:64512:7999999 set groups __contrail_overlay_evpn_access__ protocols evpn multicast-mode ingress-replication set groups __contrail_overlay_evpn_access__ protocols igmp-snooping vlan all proxy set groups __contrail_overlay_evpn_access__ switch-options vrf-target auto set groups __contrail_overlay_lag__ set groups __contrail_overlay_multi_homing__ set groups __contrail_overlay_storm_control__ set apply-groups __contrail_basic__ set apply-groups __contrail_overlay_bgp__ set apply-groups __contrail_overlay_evpn__ set apply-groups __contrail_overlay_evpn_access__ set apply-groups __contrail_overlay_lag__ set apply-groups __contrail_overlay_multi_homing__ set apply-groups __contrail_overlay_storm_control__ set system host-name Leaf2 set system root-authentication encrypted-password "$6$8ODascyE$l.KOcvXbYwbqYdYY6wYKQaz95gIU6ii3ls9bbaiEukwnVw23MfAgVqgYucjvYuYEXcC9uYQdtIwAeSNQLCshe/" set system login user jcluser uid 2000 set system login user jcluser class super-user set system login user jcluser authentication encrypted-password "$6$4p2hEqot$FHreiIze6T4FWcQlXyOc0955l2UJpVLCOg78xDkIxAzS6Mz8KUyUzF9fBqy.P22Hu1zNfBi2HEvW8VhDslEGZ1" set system services ssh root-login allow set system services telnet set system services netconf ssh set system syslog user * any emergency set system syslog file messages any notice set system syslog file messages authorization info set system syslog file interactive-commands interactive-commands any set system extensions providers juniper license-type juniper deployment-scope commercial set system extensions providers chef license-type juniper deployment-scope commercial set system ntp server 100.123.0.1 set interfaces xe-0/0/0 description "to spine1" set interfaces xe-0/0/0 mtu 9192 set interfaces xe-0/0/0 unit 0 family inet address 10.1.14.2/30 set interfaces xe-0/0/1 description "to spine2" set interfaces xe-0/0/1 mtu 9192 set interfaces xe-0/0/1 unit 0 family inet address 10.1.24.2/30 set interfaces em0 unit 0 family inet address 100.123.13.204/16 set interfaces em1 unit 0 family inet address 169.254.0.2/24 set interfaces lo0 unit 0 family inet address 10.255.0.4/32 set snmp community public authorization read-only set forwarding-options storm-control-profiles default all set routing-options static route 100.123.0.0/16 next-hop 100.123.0.1 set routing-options static route 0.0.0.0/0 next-hop 100.123.0.1 set routing-options router-id 10.255.0.4 set routing-options forwarding-table export PFE-LB set routing-options forwarding-table ecmp-fast-reroute set protocols bgp log-updown set protocols bgp graceful-restart set protocols bgp group IPCLOS_eBGP type external set protocols bgp group IPCLOS_eBGP mtu-discovery set protocols bgp group IPCLOS_eBGP import IPCLOS_BGP_IMP set protocols bgp group IPCLOS_eBGP export IPCLOS_BGP_EXP set protocols bgp group IPCLOS_eBGP vpn-apply-export set protocols bgp group IPCLOS_eBGP local-as 65504 set protocols bgp group IPCLOS_eBGP multipath multiple-as set protocols bgp group IPCLOS_eBGP bfd-liveness-detection minimum-interval 350 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection multiplier 3 set protocols bgp group IPCLOS_eBGP bfd-liveness-detection session-mode automatic set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 description "EBGP peering to Spine1" set protocols bgp group IPCLOS_eBGP neighbor 10.1.14.1 peer-as 65501 set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 description "EBGP peering to Spine2" set protocols bgp group IPCLOS_eBGP neighbor 10.1.24.1 peer-as 65502 set protocols lldp interface all set protocols igmp-snooping vlan default set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_EXP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_EXP term loopback then community add leaf2 set policy-options policy-statement IPCLOS_BGP_EXP term loopback then accept set policy-options policy-statement IPCLOS_BGP_EXP term default then reject set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol bgp set policy-options policy-statement IPCLOS_BGP_IMP term loopback from protocol direct set policy-options policy-statement IPCLOS_BGP_IMP term loopback then accept set policy-options policy-statement IPCLOS_BGP_IMP term default then reject set policy-options policy-statement PFE-LB then load-balance per-packet set policy-options community leaf2 members 65504:1 set vlans default vlan-id 1 {master:0} root@Leaf2> |
- No labels