ืฉืืื, ืืืืจ. ืืืื ืื ื ืื ืื ืืงืืจืก ืฉื ืงืืจืก ืืื ืืก ืจืฉืช ื-OTUS.
ืืงืจืืช ืชืืืืช ืืจืฉืื ืืืฉื ืืงืืจืก
ืืฉ ืืืืช ืขืฆืืื ืฉื ืืืืจ ืขื ืืื VxLAN EVPN ืขืืื, ืื ืื ื ืจืืฆื ืืืกืืฃ ืืฉืืืืช ืืคืจืงืืืงืืช ืฉืื ืืช ืืคืชืจืื ืืขืืืช ืืืจืื ื ืชืื ืื ืืืืจื ื.
ืืืืง ืืจืืฉืื ืฉื ืืกืืจื ืขื ืืื ืืืืืืืช VxLAN EVPN, ืื ื ืจืืฆื ืืืืื ืืจื ืืืจืื ืงืืฉืืจืืืช L2 ืืื ืืืจืืื ืขื ืืื ืืืจื ืจืฉืช.
ืื ืืืืืืืืช ืืืืฆืขื ืขื Cisco Nexus 9000v, ืืืืจืื ืืืืคืืืืืื ืฉื Spine-Leaf. ืื ื ืชืขืื ืขื ืืงืืช ืจืฉืช Underlay ืืืืืจ ืื.
- ืจืฉืช ืชืฉืชืืช
- BGP-ืืฆืฆื ืขืืืจ l2vpn evpn ืฉื ืืฉืคืืช ืืชืืืช
- ืืืืจืช NVE
- ืืืืื-ืืจืค
ืจืฉืช ืชืฉืชืืช
ืืืืคืืืืืื ืฉืื ื ืขืฉื ืฉืืืืฉ ืืื ืืืืงืื:
ืืืื ื ืืืืจ ืืชืืืช ืืื ืืืืฉืืจืื:
Spine-1 - 10.255.1.101
Spine-2 - 10.255.1.102
Leaf-11 - 10.255.1.11
Leaf-12 - 10.255.1.12
Leaf-21 - 10.255.1.21
Host-1 - 192.168.10.10
Host-2 - 192.168.10.20
ืืืื ื ืืืืง ืฉืืฉ ืงืืฉืืจืืืช IP ืืื ืื ืืืืฉืืจืื:
Leaf21# sh ip route
<........>
10.255.1.11/32, ubest/mbest: 2/0 ! Leaf-11 ะดะพัััะฟะตะฝ ัะตะตัะท ะดะฒะฐ Spine
*via 10.255.1.101, Eth1/4, [110/81], 00:00:03, ospf-UNDERLAY, intra
*via 10.255.1.102, Eth1/3, [110/81], 00:00:03, ospf-UNDERLAY, intra
10.255.1.12/32, ubest/mbest: 2/0 ! Leaf-12 ะดะพัััะฟะตะฝ ัะตะตัะท ะดะฒะฐ Spine
*via 10.255.1.101, Eth1/4, [110/81], 00:00:03, ospf-UNDERLAY, intra
*via 10.255.1.102, Eth1/3, [110/81], 00:00:03, ospf-UNDERLAY, intra
10.255.1.21/32, ubest/mbest: 2/0, attached
*via 10.255.1.22, Lo0, [0/0], 00:02:20, local
*via 10.255.1.22, Lo0, [0/0], 00:02:20, direct
10.255.1.101/32, ubest/mbest: 1/0
*via 10.255.1.101, Eth1/4, [110/41], 00:00:06, ospf-UNDERLAY, intra
10.255.1.102/32, ubest/mbest: 1/0
*via 10.255.1.102, Eth1/3, [110/41], 00:00:03, ospf-UNDERLAY, intra
ืืืื ื ืืืืง ืฉืืืืืื ื-VPC ื ืืฆืจ ืืฉื ื ืืืชืืื ืขืืจื ืืช ืืืืงืช ืืขืงืืืืช ืืืืืืจืืช ืืฉื ื ืืฆืืชืื ืืืืช:
Leaf11# show vpc
vPC domain id : 1
Peer status : peer adjacency formed ok
vPC keep-alive status : peer is alive
Configuration consistency status : success
Per-vlan consistency status : success
Type-2 consistency status : success
vPC role : primary
Number of vPCs configured : 0
Peer Gateway : Disabled
Dual-active excluded VLANs : -
Graceful Consistency Check : Enabled
Auto-recovery status : Disabled
Delay-restore status : Timer is off.(timeout = 30s)
Delay-restore SVI status : Timer is off.(timeout = 10s)
Operational Layer3 Peer-router : Disabled
vPC status
----------------------------------------------------------------------------
Id Port Status Consistency Reason Active vlans
-- ------------ ------ ----------- ------ ---------------
5 Po5 up success success 1
BGP ืืฆืฆื
ืืืกืืฃ, ืืชื ืืืื ืืขืืืจ ืืืืืจืช ืจืฉืช ื-Overlay.
ืืืืง ืืืืืืจ, ืืฉ ืฆืืจื ืืืจืื ืจืฉืช ืืื ืืืจืืื, ืืคื ืฉืืืฆื ืืชืจืฉืื ืฉืืืื:
ืืื ืืืืืืจ ืจืฉืช ืฉืืืช-ืขื, ืขืืื ืืืคืขืื BGP ืืืชืื ืืฉืืจื ืืืขืื ืขื ืชืืืื ืืืฉืคืืช l2vpn evpn:
feature bgp
nv overlay evpn
ืืืืจ ืืื, ืขืืื ืืืืืืจ ืืฆืฆื BGP ืืื Leaf ื-Spine. ืืื ืืคืฉื ืืช ืืืืืจื ืืืืืขื ืืช ืืคืฆืช ืืืืข ืื ืืชืื, ืื ื ืืืืืจืื ืืช Spine ืืฉืจืช Route-Reflector. ื ืืชืื ืืช ืื Leaf ืืชืฆืืจื ืืืืฆืขืืช ืชืื ืืืช ืืื ืืืืขื ืืช ืืืืืจื.
ืื ืืืืืจืืช ืืขืืื ืืฉืืจื ื ืจืืืช ืื:
router bgp 65001
template peer LEAF
remote-as 65001
update-source loopback0
address-family l2vpn evpn
send-community
send-community extended
route-reflector-client
neighbor 10.255.1.11
inherit peer LEAF
neighbor 10.255.1.12
inherit peer LEAF
neighbor 10.255.1.21
inherit peer LEAF
ืืืืืจื ืืืชื Leaf ื ืจืืืช ืืืื:
router bgp 65001
template peer SPINE
remote-as 65001
update-source loopback0
address-family l2vpn evpn
send-community
send-community extended
neighbor 10.255.1.101
inherit peer SPINE
neighbor 10.255.1.102
inherit peer SPINE
ืืขืืื ืืฉืืจื, ืืืื ื ืืืืง ืืช ืืืฆืฆื ืขื ืื ืืชืื ืืขืืื:
Spine1# sh bgp l2vpn evpn summary
<.....>
Neighbor V AS MsgRcvd MsgSent TblVer InQ OutQ Up/Down State/PfxRcd
10.255.1.11 4 65001 7 8 6 0 0 00:01:45 0
10.255.1.12 4 65001 7 7 6 0 0 00:01:16 0
10.255.1.21 4 65001 7 7 6 0 0 00:01:01 0
ืืคื ืฉืืชื ืืืื ืืจืืืช, ืื ืืื ืืขืืืช ืขื BGP. ืืืื ื ืขืืืจ ืืืืืจืช VxLAN. ืชืฆืืจื ื ืืกืคืช ืชืชืืฆืข ืจืง ืืฆื ืืขืื ืฉื ืืืชืืื. ืขืืื ืืฉืืจื ืคืืขื ืจืง ืืชืืจ ืืืืื ืฉื ืืจืฉืช ืืืขืืจื ืจืง ืืืขืืจืช ืชืขืืืจื. ืื ืขืืืืช ืืื ืงืคืกืืืฆืื ืืงืืืขืช ืื ืชืื ืืชืจืืฉืช ืจืง ืขื ืืชืื ืขืื.
ืืืืจืช NVE
NVE - ืืืฉืง ืืืจืืืืื ืืจืฉืช
ืืคื ื ืชืืืืช ืืืืืจื, ืืืื ื ืฆืื ืืื ืืื ืืืื:
VTEP - Vitual Tunnel End Point, ืืืืฉืืจ ืื ืืชืืืื ืื ืืกืชืืืืช ืื ืืจืช VxLAN. VTEP ืืื ื ืืืืจื ืื ืืชืงื ืจืฉืช. ืฉืจืช ืืชืืื ืืืื ืืืืืืืช VxLAN ืืืื ืืฉืืฉ ืื ืืฉืจืช. ืืืืคืืืืืื ืฉืื ื, ืื ืืชืื ืืขืืื ืื VTEP.
VNI - Virtual Network Index - ืืืื ืจืฉืช ืืชืื VxLAN. ื ืืชื ืืฆืืืจ ืื ืืืืื ืขื VLAN. ืขื ืืืช, ืืฉื ื ืืื ืืืืืื. ืืขืช ืฉืืืืฉ ืืืืจื, ืจืฉืชืืช VLAN ืืืคืืืช ืืืืืืืืช ืจืง ืืชืื ืืชื Leaf ืืื ืืืื ื ืืืขืืจืืช ืขื ืคื ื ืืจืฉืช. ืืื ืืื VLAN ืืืื ืืืืืช ืืฉืืื ืืืื ืืกืคืจ VNI, ืฉืืืจ ืืืขืืจ ืืจื ืืจืฉืช. ืืื ืื ื ืจืื ืืืืฆื ื ืืชื ืืืฉืชืืฉ ืื ืืืืื ื ืืืืฉื.
ืืืื ื ืคืขืื ืืช ืืชืืื ื ืืืื ืืืืืืืช VxLAN ืืขืืื ืืืช ืืืืืืช ืืฉืืื ืืกืคืจื VLAN ืืืกืคืจ VNI:
feature nv overlay
feature vn-segment-vlan-based
ืืืื ื ืืืืจ ืืช ืืืฉืง NVE, ืฉืืืจืื ืขื ืชืคืขืื VxLAN. ืืืฉืง ืื ืืืจืื ืืงืคืกืื ืืกืืจืืช ืืืืชืจืืช VxLAN. ืืชื ืืืื ืืฆืืืจ ืื ืืืืื ืขื ืืืฉืง ืืื ืืจื ืขืืืจ GRE:
interface nve1
no shutdown
host-reachability protocol bgp ! ะธัะฟะพะปัะทัะตะผ BGP ะดะปั ะฟะตัะตะดะฐัะธ ะผะฐัััััะฝะพะน ะธะฝัะพัะผะฐัะธะธ
source-interface loopback0 ! ะธะฝัะตััะตะนั ั ะบะพัะพัะพะณะพ ะพัะฟัะฐะฒะปัะตะผ ะฟะฐะบะตัั loopback0
ืขื ืืืชื Leaf-21 ืืื ื ืืฆืจ ืืื ืืขืืืช. ืขื ืืืช, ืื ื ืืืืง ืืช ืืคืื ืฉื ืืคืงืืื show nve peers
, ืื ืืื ืืืื ืจืืง. ืืื ืืชื ืฆืจืื ืืืืืจ ืืชืฆืืจืช VPC. ืื ื ืจืืืื ืฉ-Leaf-11 ื-Leaf-12 ืขืืืืื ืืืืืืช ืืืืืืืื ืขื ืืื ืชืืื VPC. ืื ื ืืชื ืื ื ืืช ืืืฆื ืืื:
Host-2 ืฉืืื ืคืจืืื ืืื ืืืืืื Leaf-21 ืื ืฉืืื ืืฉืืจ ืืืชื ืืจื ืืจืฉืช ืืืืืื Host-1. ืขื ืืืช, Leaf-21 ืจืืื ืฉืืชืืืช ื-MAC ืฉื Host-1 ื ืืืฉื ืืจื ืฉื ื VTEP ืื-ืืื ืืช. ืื ืขื Leaf-21 ืืขืฉืืช ืืืงืจื ืื? ืืืจื ืืื, ืื ืืืืจ ืฉืขืืืื ืืืืคืืข ืืืืื ืืจืฉืช.
ืืื ืืคืชืืจ ืืช ืืืฆื ืืื, ืื ืื ื ืฆืจืืืื ืืช Leaf-11 ื-Leaf-12 ืฉืืคืขืื ืื ืืืืฉืืจ ืืื ืืชืื ืืืคืขื. ืืคืชืจืื ืื ืคืฉืื. ืืืืฉืง Loopback ืฉืืื ื ืื ื ืืื ืื ืืช ืืื ืืจื, ืืืกืฃ ืืชืืืช ืืฉื ืืช. ืืืชืืืช ืืืฉื ืืช ืืืืืช ืืืืืช ืืื ืืฉื ื ื-VTEPs.
interface loopback0
ip add 10.255.1.10/32 secondary
ืืคืืื, ืื ืงืืืช ืืืื ืฉื VTEPs ืืืจืื, ืื ื ืืงืืืื ืืช ืืืืคืืืืืื ืืืื:
ืืืืืจ, ืืขืช ืชืืื ื ืืื ืืจื ืืื ืืชืืืช ื-IP ืฉื Leaf-21 ืืืื ื-IP ืืืืืจืืืืื ืืื ืฉื ื Leaf-11 ื-Leaf-12. ืืขืช ืื ืืืื ืืขืืืช ืืืืื ืืช ืืชืืืช ื-MAC ืืฉื ื ืืืฉืืจืื ืืชืขืืืจื ืืืืื ืืขืืืจ ื-VTEP ืืื ืืืืจ. ืื ืืฉื ื ื-VTEPs ืืขืื ืืช ืืชืขืืืจื ื ืงืืข ืืืืฆืขืืช ืืืืช ืื ืืชืื ืืขืืื ืืฉืืจื:
Spine1# sh ip route
<.....>
10.255.1.10/32, ubest/mbest: 2/0
*via 10.255.1.11, Eth1/1, [110/41], 1d01h, ospf-UNDERLAY, intra
*via 10.255.1.12, Eth1/2, [110/41], 1d01h, ospf-UNDERLAY, intra
10.255.1.11/32, ubest/mbest: 1/0
*via 10.255.1.11, Eth1/1, [110/41], 1d22h, ospf-UNDERLAY, intra
10.255.1.12/32, ubest/mbest: 1/0
*via 10.255.1.12, Eth1/2, [110/41], 1d01h, ospf-UNDERLAY, intra
ืืคื ืฉื ืืชื ืืจืืืช ืืขืื, ืืืชืืืช 10.255.1.10 ืืืื ื ืืืืคื ืืืืื ืืจื ืฉื ื Next-hops.
ืืฉืื ืื ืขืกืงื ื ืืงืืฉืืจืืืช ืืืกืืกืืช. ืืืื ื ืขืืืจ ืืืืืจืช ืืืฉืง NVE:
ืืืื ื ืคืขืื ืืื ืืช Vlan 10 ืื ืฉืืื ืืืชื ื-VNI 10000 ืืื ืขืื ืขืืืจ ืืืืจืืื. ืืืื ื ืืืืจ ืื ืืจื L2 ืืื ืืืืจืืื
vlan 10 ! ะะบะปััะฐะตะผ VLAN ะฝะฐ ะฒัะตั
VTEP ะฟะพะดะบะปััะตะฝะฝัั
ะบ ะฝะตะพะฑั
ะพะดะธะผัะผ ั
ะพััะฐะผ
vn-segment 10000 ! ะััะพัะธะธััะตะผ VLAN ั ะฝะพะผะตั VNI
interface nve1
member vni 10000 ! ะะพะฑะฐะฒะปัะตะผ VNI 10000 ะดะปั ัะฐะฑะพัั ัะตัะตะท ะธะฝัะตััะตะนั NVE. ะดะปั ะธะฝะบะฐะฟััะปััะธะธ ะฒ VxLAN
ingress-replication protocol bgp ! ัะบะฐะทัะฒะฐะตะผ, ััะพ ะดะปั ัะฐัะฟัะพัััะฐะฝะตะฝะธั ะธะฝัะพัะผะฐัะธะธ ะพ ั
ะพััะต ะธัะฟะพะปัะทัะตะผ BGP
ืขืืฉืื ืืืื ื ืืืืง nve ืขืืืชืื ืืืช ืืืืื ืขืืืจ BGP EVPN:
Leaf21# sh nve peers
Interface Peer-IP State LearnType Uptime Router-Mac
--------- --------------- ----- --------- -------- -----------------
nve1 10.255.1.10 Up CP 00:00:41 n/a ! ะะธะดะธะผ ััะพ peer ะดะพัััะฟะตะฝ ั secondary ะฐะดัะตัะฐ
Leaf11# sh bgp l2vpn evpn
Network Next Hop Metric LocPrf Weight Path
Route Distinguisher: 10.255.1.11:32777 (L2VNI 10000) ! ะั ะบะพะณะพ ะธะผะตะฝะฝะพ ะฟัะธัะตะป ััะพั l2VNI
*>l[3]:[0]:[32]:[10.255.1.10]/88 ! EVPN route-type 3 - ะฟะพะบะฐะทัะฒะฐะตั ะฝะฐัะตะณะพ ัะพัะตะดะฐ, ะบะพัะพััะน ัะฐะบ ะถะต ะทะฝะฐะตั ะพะฑ l2VNI10000
10.255.1.10 100 32768 i
*>i[3]:[0]:[32]:[10.255.1.20]/88
10.255.1.20 100 0 i
* i 10.255.1.20 100 0 i
Route Distinguisher: 10.255.1.21:32777
* i[3]:[0]:[32]:[10.255.1.20]/88
10.255.1.20 100 0 i
*>i 10.255.1.20 100 0 i
ืืืขืื ืื ื ืจืืืื ืจืง ืืกืืืืื ืืกืื EVPN ืืกืืื 3. ืกืื ืื ืฉื ืืกืืื ืืืืจ ืขื ืขืืืช(Leaf), ืืื ืืืคื ืืืืจืืื ืฉืื ื?
ืืขื ืืื ืืื ืฉืืืืข ืขื ืืืจืื ื-MAC ืืืขืืจ ืืจื EVPN ืืกืืื ืืกืื 2
ืขื ืื ืช ืืจืืืช ืืช ืืืืจืืื ืฉืื ื, ืขืืื ืืืืืืจ EVPN ืืกืืื ืืกืื 2:
evpn
vni 10000 l2
route-target import auto ! ะฒ ัะฐะผะบะฐั
ะดะฐะฝะฝะพะน ััะฐััะธ ะธัะฟะพะปัะทัะตะผ ะฐะฒัะพะผะฐัะธัะตัะบะธะน ะฝะพะผะตั ะดะปั route-target
route-target export auto
ืืืื ื ืืฆืข ืคืื ื ื-Host-2 ื-Host-1:
Firewall2# ping 192.168.10.1
PING 192.168.10.1 (192.168.10.1): 56 data bytes
36 bytes from 192.168.10.2: Destination Host Unreachable
Request 0 timed out
64 bytes from 192.168.10.1: icmp_seq=1 ttl=254 time=215.555 ms
64 bytes from 192.168.10.1: icmp_seq=2 ttl=254 time=38.756 ms
64 bytes from 192.168.10.1: icmp_seq=3 ttl=254 time=42.484 ms
64 bytes from 192.168.10.1: icmp_seq=4 ttl=254 time=40.983 ms
ืืืืื ืื ื ืืืืืื ืืจืืืช ืฉืืกืืื ืืกืื 2 ืขื ืืชืืืช MAC ืืืจื ืืืคืืข ืืืืืช BGP - 5001.0007.0007 ื-5001.0008.0007
Leaf11# sh bgp l2vpn evpn
<......>
Network Next Hop Metric LocPrf Weight Path
Route Distinguisher: 10.255.1.11:32777 (L2VNI 10000)
*>l[2]:[0]:[0]:[48]:[5001.0007.0007]:[0]:[0.0.0.0]/216 ! evpn route-type 2 ะธ mac ะฐะดัะตั ั
ะพััะฐ 1
10.255.1.10 100 32768 i
*>i[2]:[0]:[0]:[48]:[5001.0008.0007]:[0]:[0.0.0.0]/216 ! evpn route-type 2 ะธ mac ะฐะดัะตั ั
ะพััะฐ 2
* i 10.255.1.20 100 0 i
*>l[3]:[0]:[32]:[10.255.1.10]/88
10.255.1.10 100 32768 i
Route Distinguisher: 10.255.1.21:32777
* i[2]:[0]:[0]:[48]:[5001.0008.0007]:[0]:[0.0.0.0]/216
10.255.1.20 100 0 i
*>i 10.255.1.20 100 0 i
ืืืืจ ืืื, ืชืืื ืืจืืืช ืืืืข ืืคืืจื ืขื Update, ืฉืื ืงืืืืช ืืืืข ืขื ื-MAC Host. ืืืื ืื ืื ืคืื ืืคืงืืื.
Leaf21# sh bgp l2vpn evpn 5001.0007.0007
BGP routing table information for VRF default, address family L2VPN EVPN
Route Distinguisher: 10.255.1.11:32777 ! ะพัะฟัะฐะฒะธะป Update ั MAC Host. ะะต ะฒะธัััะฐะปัะฝัะน ะฐะดัะตั VPC, ะฐ ะฐะดัะตั Leaf
BGP routing table entry for [2]:[0]:[0]:[48]:[5001.0007.0007]:[0]:[0.0.0.0]/216,
version 1507
Paths: (2 available, best #2)
Flags: (0x000202) (high32 00000000) on xmit-list, is not in l2rib/evpn, is not i
n HW
Path type: internal, path is valid, not best reason: Neighbor Address, no labe
led nexthop
AS-Path: NONE, path sourced internal to AS
10.255.1.10 (metric 81) from 10.255.1.102 (10.255.1.102) ! ั ะบะตะผ ะธะผะตะฝะฝะพ ัััะพะธะผ VxLAN ัะพะฝะฝะตะปั
Origin IGP, MED not set, localpref 100, weight 0
Received label 10000 ! ะะพะผะตั VNI, ะบะพัะพััะน ะฐััะพัะธะธัะพะฒะฐะฝ ั VLAN, ะฒ ะบะพัะพัะพะผ ะฝะฐั
ะพะดะธััั Host
Extcommunity: RT:65001:10000 SOO:10.255.1.10:0 ENCAP:8 ! ะขัั ะฒะธะดะฝะพ, ััะพ RT ััะพัะผะธัะพะฒะฐะปัั ะฐะฒัะพะผะฐัะธัะตัะบะธ ะฝะฐ ะพัะฝะพะฒะต ะฝะพะผะตัะพะฒ AS ะธ VNI
Originator: 10.255.1.11 Cluster list: 10.255.1.102
<........>
ืืืื ื ืจืื ืืื ื ืจืืืช ืืกืืจืืช ืืฉืื ืขืืืจืืช ืืจื ืืืคืขื:
ืืืืื-ARP
ื ืืืจ, ืืฉ ืื ื ืขืืฉืื ืชืงืฉืืจืช L2 ืืื ืืืืจืืื ืืืืืื ื ืืกืืื ืฉื. ืขื ืืืช, ืื ืืื ืื ืื ืคืฉืื. ืื ืขืื ืืฉ ืื ื ืืขื ืืืจืืื ืื ืืืื ืืขืืืช. ืืื ืืืื ื ืืืืื ืืฆื ืฉืื ืืฉ ืื ื ืืืืช ืืืืคื ืืืจืืื. ืืืืื ืืขืื ืื ื ืขืืืืื ืืืชืืืื?
ืืขืื ืื ืืื ืชืขืืืจืช BUM(Broadcast, Unknown Unicast, Multicast). ืืืืืจ ืื ื ืฉืงืื ืืช ืืืคืฉืจืืช ืืืชืืืื ืขื ืชืขืืืจืช ืฉืืืืจ.
ืืืืื ืืฉืืืืจ ืืขืืงืจื ืืจืฉืชืืช Ethernet ืืื ืืืืจืืื ืขืฆืื ืืืืฆืขืืช ืคืจืืืืงืื ARP.
Nexus ืืืืฉืืช ืืช ืืื ืื ืื ืืื ืืื ืืืืืื ืืืงืฉืืช ARP - suppress-arp.
ืชืืื ื ืื ืคืืขืืช ืืืืคื ืืื:
- Host-1 ืฉืืื ืืงืฉืช APR ืืืชืืืช ืืฉืืืืจ ืฉื ืืจืฉืช ืฉืื.
- ืืืงืฉื ืืืืขื ืืืชื Leaf ืืืืงืื ืืืขืืืจ ืืงืฉื ืื ืืืื ืืืืจื ืืืืืื Host-2, Leaf ืืืืื ืืขืฆืื ืืืฆืืื ืช ืืช ื-IP ืื-MAC ืื ืืจืฉืื.
ืืคืืื, ืืงืฉืช ืืฉืืืืจ ืื ืืืืขื ืืืคืขื. ืืื ืืื ืื ืืืื ืืขืืื ืื ืืืฃ ืืืืข ืจืง ืืช ืืชืืืช ื-MAC?
ืืื ืื ืคืฉืื, EVPN ืืกืืื ืืกืื 2, ืื ืืกืฃ ืืืชืืืช MAC, ืืืื ืืฉืืจ ืฉืืืื MAC/IP. ืืื ืืขืฉืืช ืืืช, ืขืืื ืืืืืืจ ืืชืืืช IP ื-VLAN on Leaf. ื ืฉืืืช ืืฉืืื ืืืื IP ืื ื ืฆืจืื ืืืืืืจ? ื-nexus ืืคืฉืจ ืืืฆืืจ ืืชืืืช ืืืืืจืช (ืืืชื) ืืื ืืืชืืื:
feature interface-vlan
fabric forwarding anycast-gateway-mac 0001.0001.0001 ! ะทะฐะดะฐะตะผ virtual mac ะดะปั ัะพะทะดะฐะฝะธั ัะฐัะฟัะตะดะตะปะตะฝะฝะพะณะพ ัะปัะทะฐ ะผะตะถะดั ะฒัะตะผะธ ะบะพะผะผััะฐัะพัะฐะผะธ
interface Vlan10
no shutdown
ip address 192.168.10.254/24 ! ะฝะฐ ะฒัะตั
Leaf ะทะฐะดะฐะตะผ ะพะดะธะฝะฐะบะพะฒัะน IP
fabric forwarding mode anycast-gateway ! ะณะพะฒะพัะธะผ ะธัะฟะพะปัะทะพะฒะฐัั Virtual mac
ืืคืืื, ืื ืงืืืช ืืืื ืฉื ืืืืจืืื, ืืจืฉืช ืชืืจืื ืื:
ืืื ื ืืืืง ืืช BGP l2route evpn
Leaf11# sh bgp l2vpn evpn
<......>
Network Next Hop Metric LocPrf Weight Path
Route Distinguisher: 10.255.1.11:32777 (L2VNI 10000)
*>l[2]:[0]:[0]:[48]:[5001.0007.0007]:[0]:[0.0.0.0]/216
10.255.1.21 100 32768 i
*>i[2]:[0]:[0]:[48]:[5001.0008.0007]:[0]:[0.0.0.0]/216
10.255.1.10 100 0 i
* i 10.255.1.10 100 0 i
* i[2]:[0]:[0]:[48]:[5001.0008.0007]:[32]:[192.168.10.20]/248
10.255.1.10 100 0 i
*>i 10.255.1.10 100 0 i
<......>
Route Distinguisher: 10.255.1.21:32777
* i[2]:[0]:[0]:[48]:[5001.0008.0007]:[0]:[0.0.0.0]/216
10.255.1.20 100 0 i
*>i 10.255.1.20 100 0 i
* i[2]:[0]:[0]:[48]:[5001.0008.0007]:[32]:[192.168.10.20]/248
*>i 10.255.1.20 100 0 i
<......>
ืืคืื ืืคืงืืื ื ืืชื ืืจืืืช ืฉื-EVPN route-type 2, ืื ืืกืฃ ื-MAC, ืื ื ืจืืืื ืืขืช ืื ืืช ืืชืืืช ื-IP ืืืืจื.
ื ืืืืจ ืืืืืืจ suppress-arp. ืืืืจื ืื ืืืคืขืืช ืขืืืจ ืื VNI ืื ืคืจื:
interface nve1
member vni 10000
suppress-arp
ืืื ืืชืขืืจืจืช ืืืจืืืืช ืืกืืืืช:
- ืืื ืฉืชืืื ื ืื ืชืคืขื, ื ืืจืฉ ืืงืื ืืืืืจืื TCAM. ืื ื ืืืืื ืืืืืจืืช ืขืืืจ suppress-arp:
hardware access-list tcam region arp-ether 256
ืืืืจื ืื ืชืืจืืฉ ืจืืื ืืคืืื. ืืืืืจ, ืื ืืชื ืืืืืจ 256, ืื ืืชื ืฆืจืื ืืฉืืจืจ ืืช 512 ื-TCAM. ืืืืจืช TCAM ืืื ืืขืืจ ืืชืืื ืฉื ืืืืจ ืื, ืฉืื ืืืืจืช TCAM ืชืืืื ืจืง โโืืืฉืืื ืฉืืืงืฆืชื ืื ืืขืฉืืื ืืืืืช ืฉืื ื ืืจืฉืช ืืืช ืืืืจืช.
- ืืืฉืื suppress-arp ืืืื ืืืืขืฉืืช ืืื ืืชืื ืืขืืื. ืขื ืืืช, ืืืจืืืืช ืืืืื ืืืชืขืืจืจ ืืขืช ืงืืืขืช ืชืฆืืจื ืขื ืืืืืช ืขืืื ืืฉืืื ืื ืืชืืื VPC. ืื TCAM ืืฉืชื ื, ืืขืงืืืืช ืืื ืืืืืช ืชืืฉืืจ ืืฆืืืช ืืื ืขืฉืื ืืฆืืช ืืคืขืืืืช. ืื ืืกืฃ, ืืืชืื ืฉืืืืจืฉ ืืชืืื ืืืืฉืืจ ืืื ืืืืื ืืช ืืืืจืช ืืฉืื ืื ื-TCAM.
ืืชืืฆืื ืืื, ืขืืื ืืฉืงืื ืืืื ืืื, ืืืฆืื, ืืืื ืืืืฉื ืืืืจื ืื ืืืคืขื ืคืืขื.
ืืื ืืกืชืืื ืืืืง ืืจืืฉืื ืฉื ืืกืืจื. ืืืืง ืืื ื ืกืชืื ืขื ื ืืชืื ืืจื ืืืจื VxLAN ืขื ืืคืจืื ืฉื ืจืฉืชืืช ื-VRFs ืฉืื ืื.
ืืขืืฉืื ืื ื ืืืืื ื ืืช ืืืื
ืืงืืจ: www.habr.com