VxLAN ืคืึทื‘ืจื™ืง. ื˜ื™ื™ืœ 1

ื”ืขืœื, ื”ืึทื‘ืจ. ืื™ืš ื‘ื™ืŸ ื“ืขืจื•ื•ื™ื™ึทืœ ื“ืขืจ ืงื•ืจืก ืคื™ืจืขืจ ืคึฟืึทืจ ื“ื™ ื ืขื˜ื•ื•ืึธืจืง ื™ื ื–ืฉืขื ื™ืจ ืงื•ืจืก ื‘ื™ื™ OTUS.
ืื™ืŸ ืึทื ื˜ื™ืกืึทืคึผื™ื™ืฉืึทืŸ ืคื•ืŸ ื“ื™ ืึธื ื”ื™ื™ื‘ ืคื•ืŸ ืึท ื ื™ื™ึท ืขื ืจืึธื•ืœืžืึทื ื˜ ืคึฟืึทืจ ื“ืขื ืงื•ืจืก "ื ืขื˜ื•ื•ืึธืจืง ื™ื ื–ืฉืขื ื™ืจ", ืื™ืš ื”ืึธื‘ืŸ ืฆื•ื’ืขื’ืจื™ื™ื˜ ืึท ืกืขืจื™ืข ืคื•ืŸ โ€‹โ€‹โ€‹โ€‹ืึทืจื˜ื™ืงืœืขืŸ ืื•ื™ืฃ VxLAN EVPN ื˜ืขื›ื ืึธืœืึธื’ื™ืข.

ืขืก ืื™ื– ืึท ืจื™ื–ื™ืง ืกื•ืžืข ืคื•ืŸ โ€‹โ€‹ืžืึทื˜ืขืจื™ืึทืœ ืื•ื™ืฃ ื•ื•ื™ VxLAN EVPN ืึทืจื‘ืขื˜, ืึทื–ื•ื™ ืื™ืš ื•ื•ื™ืœืŸ ืฆื• ื–ืึทืžืœืขืŸ ืคืึทืจืฉื™ื“ืŸ ื˜ืึทืกืงืก ืื•ืŸ ืคึผืจืึทืงื˜ื™ืกื™ื– ืคึฟืึทืจ ืกืึทืœื•ื•ื™ื ื’ ืคึผืจืึธื‘ืœืขืžืก ืื™ืŸ ืึท ืžืึธื“ืขืจืŸ ื“ืึทื˜ืŸ ืฆืขื ื˜ืขืจ.

VxLAN ืคืึทื‘ืจื™ืง. ื˜ื™ื™ืœ 1

ืื™ืŸ ื“ืขืจ ืขืจืฉื˜ืขืจ ื˜ื™ื™ืœ ืคื•ืŸ ื“ื™ ืกืขืจื™ืข ืื•ื™ืฃ VxLAN EVPN ื˜ืขื›ื ืึธืœืึธื’ื™ืข, ืื™ืš ื•ื•ื™ืœืŸ ืฆื• ืงื•ืงืŸ ืื™ืŸ ืึท ื•ื•ืขื’ ืฆื• ืึธืจื’ืึทื ื™ื–ื™ืจืŸ ืœ 2 ืงืึทื ืขืงื˜ื™ื•ื•ื™ื˜ื™ ืฆื•ื•ื™ืฉืŸ ืžื—ื ื•ืช ืื•ื™ืฃ ืฉืคึผื™ืฅ ืคื•ืŸ ืึท ื ืขืฅ ืฉื˜ืึธืฃ.

ืึทืœืข ื‘ื™ื™ืฉืคื™ืœืŸ ื•ื•ืขื˜ ื–ื™ื™ืŸ ื“ื•ืจื›ื’ืขืงืึธื›ื˜ ืื•ื™ืฃ ืึท Cisco Nexus 9000v, ืึทืกืขืžื‘ืึทืœื“ ืื™ืŸ ื“ื™ ืกืคึผื™ื ืข-ื‘ืœืึทื˜ ื˜ืึทืคึผืึทืœืึทื“ื–ืฉื™. ืžื™ืจ ื•ื•ืขืœืŸ ื ื™ืฉื˜ ื•ื•ื•ื™ื ืขืŸ ืื•ื™ืฃ ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ืึท ื•ื ื“ืขืจืœื™ื™ ื ืขืฅ ืื™ืŸ ื“ืขื ืึทืจื˜ื™ืงืœ.

  1. ืึทื ื“ืขืจืœื™ื™ ื ืขืฅ
  2. BGP ืคึผื™ืจื™ื ื’ ืคึฟืึทืจ ืึทื“ืจืขืก-ืžืฉืคึผื—ื” l2vpn evpn
  3. ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ NVE
  4. ืคืึทืจืฉื˜ื™ืงืŸ-ืึทืจืคึผ

ืึทื ื“ืขืจืœื™ื™ ื ืขืฅ

ื“ื™ ื˜ืึธืคึผืึธืœืึธื’ื™ ื’ืขื ื™ืฆื˜ ืื™ื– ื•ื•ื™ ื’ื™ื™ื˜:

VxLAN ืคืึทื‘ืจื™ืง. ื˜ื™ื™ืœ 1

ืœืึธืžื™ืจ ืฉื˜ืขืœืŸ ืึทื“ืจืขืกื™ื ื’ ืื•ื™ืฃ ืึทืœืข ื“ืขื•ื•ื™ืกืขืก:

Spine-1 - 10.255.1.101
Spine-2 - 10.255.1.102

Leaf-11 - 10.255.1.11
Leaf-12 - 10.255.1.12
Leaf-21 - 10.255.1.21

Host-1 - 192.168.10.10
Host-2 - 192.168.10.20

ืœืึธืžื™ืจ ืงืึธื ื˜ืจืึธืœื™ืจืŸ ืึทื– ืขืก ืื™ื– IP ืงืึทื ืขืงื˜ื™ื•ื•ื™ื˜ื™ ืฆื•ื•ื™ืฉืŸ ืึทืœืข ื“ืขื•ื•ื™ืกืขืก:

Leaf21# sh ip route
<........>
10.255.1.11/32, ubest/mbest: 2/0                      ! Leaf-11 ะดะพัั‚ัƒะฟะตะฝ ั‡ะตะตั€ะท ะดะฒะฐ Spine
    *via 10.255.1.101, Eth1/4, [110/81], 00:00:03, ospf-UNDERLAY, intra
    *via 10.255.1.102, Eth1/3, [110/81], 00:00:03, ospf-UNDERLAY, intra
10.255.1.12/32, ubest/mbest: 2/0                      ! Leaf-12 ะดะพัั‚ัƒะฟะตะฝ ั‡ะตะตั€ะท ะดะฒะฐ Spine
    *via 10.255.1.101, Eth1/4, [110/81], 00:00:03, ospf-UNDERLAY, intra
    *via 10.255.1.102, Eth1/3, [110/81], 00:00:03, ospf-UNDERLAY, intra
10.255.1.21/32, ubest/mbest: 2/0, attached
    *via 10.255.1.22, Lo0, [0/0], 00:02:20, local
    *via 10.255.1.22, Lo0, [0/0], 00:02:20, direct
10.255.1.101/32, ubest/mbest: 1/0
    *via 10.255.1.101, Eth1/4, [110/41], 00:00:06, ospf-UNDERLAY, intra
10.255.1.102/32, ubest/mbest: 1/0
    *via 10.255.1.102, Eth1/3, [110/41], 00:00:03, ospf-UNDERLAY, intra

ืœืึธืžื™ืจ ืงืึธื ื˜ืจืึธืœื™ืจืŸ ืึทื– ื“ื™ VPC ืคืขืœื“ ืื™ื– ื‘ืืฉืืคืŸ ืื•ืŸ ื‘ื™ื™ื“ืข ืกื•ื•ื™ื˜ืฉื™ื– ื”ืึธื‘ืŸ ื“ื•ืจื›ื’ืขื’ืื ื’ืขืŸ ื“ื™ ืงืึธื ืกื™ืกื˜ืขื ืกื™ ื˜ืฉืขืง ืื•ืŸ ื“ื™ ืกืขื˜ื˜ื™ื ื’ืก ืื•ื™ืฃ ื‘ื™ื™ื“ืข ื ืึธื•ื“ื– ื–ืขื ืขืŸ ื™ื™ื“ืขื ื™ืงืึทืœ:

Leaf11# show vpc 

vPC domain id                     : 1
Peer status                       : peer adjacency formed ok
vPC keep-alive status             : peer is alive
Configuration consistency status  : success
Per-vlan consistency status       : success
Type-2 consistency status         : success
vPC role                          : primary
Number of vPCs configured         : 0
Peer Gateway                      : Disabled
Dual-active excluded VLANs        : -
Graceful Consistency Check        : Enabled
Auto-recovery status              : Disabled
Delay-restore status              : Timer is off.(timeout = 30s)
Delay-restore SVI status          : Timer is off.(timeout = 10s)
Operational Layer3 Peer-router    : Disabled

vPC status
----------------------------------------------------------------------------
Id    Port          Status Consistency Reason                Active vlans
--    ------------  ------ ----------- ------                ---------------
5     Po5           up     success     success               1

BGP ืคึผื™ืจื™ื ื’

ืฆื•ื ืกื•ืฃ, ืื™ืจ ืงืขื ืขืŸ ืžืึทืš ืื•ื™ืฃ ืฆื• ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ื“ื™ ืึธื•ื•ื•ืขืจืœื™ื™ ื ืขืฅ.

ื•ื•ื™ ืึท ื˜ื™ื™ืœ ืคื•ืŸ ื“ืขื ืึทืจื˜ื™ืงืœ, ืขืก ืื™ื– ื ื™ื™ื˜ื™ืง ืฆื• ืึธืจื’ืึทื ื™ื–ื™ืจืŸ ืึท ื ืขืฅ ืฆื•ื•ื™ืฉืŸ ืžื—ื ื•ืช, ื•ื•ื™ ื’ืขื•ื•ื™ื–ืŸ ืื™ืŸ ื“ื™ ื“ื™ืึทื’ืจืึทืžืข ืื•ื ื˜ืŸ:

VxLAN ืคืึทื‘ืจื™ืง. ื˜ื™ื™ืœ 1

ืฆื• ืงืึทื ืคื™ื’ื™ืขืจ ืึท ืึธื•ื•ื•ืขืจืœื™ื™ ื ืขืฅ, ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ื’ืขื‘ืŸ BGP ืื•ื™ืฃ ื“ื™ ืกืคึผื™ื ืข ืื•ืŸ ื‘ืœืึทื˜ ืกื•ื•ื™ื˜ืฉื™ื– ืžื™ื˜ ืฉื˜ื™ืฆืŸ ืคึฟืึทืจ ื“ื™ l2vpn evpn ืžืฉืคึผื—ื”:

feature bgp
nv overlay evpn

ื“ืขืจื ืึธืš ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืงืึทื ืคื™ื’ื™ืขืจ BGP ืคึผื™ืจื™ื ื’ ืฆื•ื•ื™ืฉืŸ ื‘ืœืึทื˜ ืื•ืŸ ืจื•ืงื ื‘ื™ื™ืŸ. ืฆื• ืคืึทืจืคึผืึธืฉืขื˜ืขืจืŸ ืกืขื˜ืึทืคึผ ืื•ืŸ ืึทืคึผื˜ืึทืžื™ื™ื– ื“ื™ ืคืึทืจืฉืคึผืจื™ื™ื˜ื•ื ื’ ืคื•ืŸ ืจื•ื˜ื™ื ื’ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข, ืžื™ืจ ืงืึทื ืคื™ื’ื™ืขืจ ืกืคึผื™ื ืข ื•ื•ื™ ืึท ืจื•ื˜-ืจืขืคืœืขืงื˜ืึธืจ ืกืขืจื•ื•ืขืจ. ืžื™ืจ ื•ื•ืขืœืŸ ืฉืจื™ื™ึทื‘ืŸ ืึทืœืข ื‘ืœืึทื˜ ืื™ืŸ ื“ื™ ืงืึธื ืคื™ื’ ืžื™ื˜ ื˜ืขืžืคึผืœืึทื˜ืขืก ืฆื• ืึทืคึผื˜ืึทืžื™ื™ื– ื“ื™ ืกืขื˜ืึทืคึผ.

ืึทื–ื•ื™ ื“ื™ ืกืขื˜ื˜ื™ื ื’ืก ืื•ื™ืฃ ืกืคึผื™ื ืข ืงื•ืงืŸ ื•ื•ื™ ื“ืึธืก:

router bgp 65001
  template peer LEAF 
    remote-as 65001
    update-source loopback0
    address-family l2vpn evpn
      send-community
      send-community extended
      route-reflector-client
  neighbor 10.255.1.11
    inherit peer LEAF
  neighbor 10.255.1.12
    inherit peer LEAF
  neighbor 10.255.1.21
    inherit peer LEAF

ื“ื™ ืกืขื˜ืึทืคึผ ืื•ื™ืฃ ื“ื™ ื‘ืœืึทื˜ ื‘ืึทืฉื˜ื™ืžืขืŸ ืงื•ืงื˜ ืขื ืœืขืš:

router bgp 65001
  template peer SPINE
    remote-as 65001
    update-source loopback0
    address-family l2vpn evpn
      send-community
      send-community extended
  neighbor 10.255.1.101
    inherit peer SPINE
  neighbor 10.255.1.102
    inherit peer SPINE

ืื•ื™ืฃ ืจื•ืงื ื‘ื™ื™ืŸ, ืœืึธืžื™ืจ ืงืึธื ื˜ืจืึธืœื™ืจืŸ ืคึผื™ืจื™ื ื’ ืžื™ื˜ ืึทืœืข ื‘ืœืึทื˜ ืกื•ื•ื™ื˜ืฉื™ื–:

Spine1# sh bgp l2vpn evpn summary
<.....>
Neighbor        V    AS MsgRcvd MsgSent   TblVer  InQ OutQ Up/Down  State/PfxRcd
10.255.1.11     4 65001       7       8        6    0    0 00:01:45 0
10.255.1.12     4 65001       7       7        6    0    0 00:01:16 0
10.255.1.21     4 65001       7       7        6    0    0 00:01:01 0

ื•ื•ื™ ืื™ืจ ืงืขื ืขืŸ ื–ืขืŸ, ืขืก ื–ืขื ืขืŸ ืงื™ื™ืŸ ืคืจืื‘ืœืขืžืขืŸ ืžื™ื˜ BGP. ื–ืืœ ืก ืžืึทืš ืื•ื™ืฃ ืฆื• ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ VxLAN. ื•ื•ื™ื™ึทื˜ืขืจ ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทืŸ ื•ื•ืขื˜ ื–ื™ื™ืŸ ื“ื•ืจื›ื’ืขืงืึธื›ื˜ ื‘ืœื•ื™ื– ืื•ื™ืฃ ื“ื™ ื‘ืœืึทื˜ ื–ื™ื™ึทื˜ ืคื•ืŸ ื“ื™ ืกื•ื•ื™ื˜ืฉื™ื–. ืจื•ืงื ื‘ื™ื™ืŸ ืืงื˜ืŸ ื‘ืœื•ื™ื– ื•ื•ื™ ื“ื™ ื”ืึทืจืฅ ืคื•ืŸ ื“ื™ ื ืขืฅ ืื•ืŸ ืื™ื– ื‘ืœื•ื™ื– ื™ื ื•ื•ืึทืœื•ื•ื“ ืื™ืŸ ื˜ืจืึทื ืกืžื™ื˜ื™ื ื’ ืคืึทืจืงืขืจ. ื›ืœ ืขื ืงืึทืคึผืกื•ืœืึทื˜ื™ืึธืŸ ืื•ืŸ ื•ื•ืขื’ ืคืขืกื˜ืงื™ื™ึทื˜ ืึทืจื‘ืขื˜ ืึทืงืขืจื– ื‘ืœื•ื™ื– ืื•ื™ืฃ ื‘ืœืึทื˜ ืกื•ื•ื™ื˜ืฉื™ื–.

ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ NVE

NVE - ื ืขืฅ ื•ื•ื™ืจื˜ื•ืึทืœ ืฆื•ื‘ื™ื ื“

ืื™ื™ื“ืขืจ ืื™ืจ ืึธื ื”ื™ื™ื‘ืŸ ื“ื™ ืกืขื˜ืึทืคึผ, ืœืึธื–ืŸ ืื•ื ื“ื– ื‘ืึทืงืขื ืขืŸ ืขื˜ืœืขื›ืข ื˜ืขืจืžื™ื ืึธืœืึธื’ื™ืข:

VTEP - ื•ื•ื™ื˜ื•ืึทืœ ื˜ื•ื ืขืœ ืกื•ืฃ ืคึผื•ื™ื ื˜, ื“ื™ ืžื™ื˜ืœ ืื•ื™ืฃ ื•ื•ืึธืก ื“ื™ VxLAN ื˜ื•ื ืขืœ ื”ื™ื™ื‘ื˜ ืึธื“ืขืจ ืขื ื“ืก. VTEP ืื™ื– ื ื™ื˜ ื“ืึทื•ื•ืงืข ืงื™ื™ืŸ ื ืขืฅ ืžื™ื˜ืœ. ื ืกืขืจื•ื•ืขืจ ื•ื•ืึธืก ืฉื˜ื™ืฆื˜ VxLAN ื˜ืขื›ื ืึธืœืึธื’ื™ืข ืงืขื ืขืŸ ืื•ื™ืš ืฉืคึผื™ืœืŸ ื•ื•ื™ ืึท ืกืขืจื•ื•ืขืจ. ืื™ืŸ ืื•ื ื“ื–ืขืจ ื˜ืึทืคึผืึทืœืึทื“ื–ืฉื™, ืึทืœืข ื‘ืœืึทื˜ ืกื•ื•ื™ื˜ืฉื™ื– ื–ืขื ืขืŸ VTEP.

VNI - ื•ื•ื™ืจื˜ื•ืึทืœ ื ืขื˜ื•ื•ืึธืจืง ืื™ื ื“ืขืงืก - ื ืขืฅ ื™ื“ืขื ื˜ื™ืคื™ืขืจ ืื™ืŸ VxLAN. ืึทืŸ ืึทื ืึทืœืึทื“ื–ืฉื™ ืงืขื ืขืŸ ื–ื™ื™ืŸ ืฆื™ืขืŸ ืžื™ื˜ ื•ื•ืœืึทืŸ. ืึธื‘ืขืจ, ืขืก ื–ืขื ืขืŸ ืขื˜ืœืขื›ืข ื“ื™ืคืขืจืึทื ืกื™ื–. ื•ื•ืขืŸ ื ื™ืฆืŸ ืึท ืฉื˜ืึธืฃ, ื•ื•ืœืึทื ื– ื•ื•ืขืจืŸ ื™ื™ื ืฆื™ืง ื‘ืœื•ื™ื– ืื™ืŸ ืื™ื™ืŸ ื‘ืœืึทื˜ ื‘ืึทืฉื˜ื™ืžืขืŸ ืื•ืŸ ื–ืขื ืขืŸ ื ื™ืฉื˜ ื˜ืจืึทื ืกืžื™ื˜ื˜ืขื“ ืึทืจื™ื‘ืขืจ ื“ื™ ื ืขืฅ. ืึธื‘ืขืจ ื™ืขื“ืขืจ ื•ื•ืœืึทืŸ ืงืขื ืขืŸ ื”ืึธื‘ืŸ ืึท VNI ื ื•ืžืขืจ ืคึฟืึทืจื‘ื•ื ื“ืŸ ืžื™ื˜ ืื™ื, ื•ื•ืึธืก ืื™ื– ืฉื•ื™ืŸ ื˜ืจืึทื ืกืžื™ื˜ื˜ืขื“ ืื™ื‘ืขืจ ื“ื™ ื ืขืฅ. ื•ื•ื™ ืขืก ืงื•ืงื˜ ื•ื•ื™ ืื•ืŸ ื•ื•ื™ ืขืก ืงืขื ืขืŸ ื–ื™ื™ืŸ ื’ืขื•ื•ื™ื™ื ื˜ ื•ื•ืขื˜ ื–ื™ื™ืŸ ื“ื™ืกืงืึทืกื˜ ื•ื•ื™ื™ึทื˜ืขืจ.

ืœืึธื–ืŸ ื“ื™ ืคื•ื ืงืฆื™ืข ืคึฟืึทืจ VxLAN ื˜ืขื›ื ืึธืœืึธื’ื™ืข ืฆื• ืึทืจื‘ืขื˜ืŸ ืื•ืŸ ื“ื™ ืคื™ื™ื™ืงื™ื™ื˜ ืฆื• ืคืึทืจื‘ื™ื ื“ืŸ VLAN ื ื•ืžืขืจืŸ ืžื™ื˜ ืึท VNI ื ื•ืžืขืจ:

feature nv overlay
feature vn-segment-vlan-based

ืœืึธืžื™ืจ ืงืึทื ืคื™ื’ื™ืขืจ ื“ื™ NVE ืฆื•ื‘ื™ื ื“, ื•ื•ืึธืก ืื™ื– ืคืึทืจืึทื ื˜ื•ื•ืึธืจื˜ืœืขืš ืคึฟืึทืจ ื“ื™ ืึธืคึผืขืจืึทืฆื™ืข ืคื•ืŸ โ€‹โ€‹VxLAN. ื“ืขืจ ืฆื•ื‘ื™ื ื“ ืื™ื– ืคืึทืจืึทื ื˜ื•ื•ืึธืจื˜ืœืขืš ืคึฟืึทืจ ืขื ืงืึทืคึผืกืึทืœื™ื™ื˜ื™ื ื’ ืจืึธืžืขืŸ ืื™ืŸ VxLAN ื›ืขื“ืขืจื–. ืื™ืจ ืงืขื ืขืŸ ืฆื™ืขืŸ ืึทืŸ ืึทื ืึทืœืึทื“ื–ืฉื™ ืžื™ื˜ ื“ื™ ื˜ื•ื ืขืœ ืฆื•ื‘ื™ื ื“ ืคึฟืึทืจ GRE:

interface nve1
  no shutdown
  host-reachability protocol bgp ! ะธัะฟะพะปัŒะทัƒะตะผ BGP ะดะปั ะฟะตั€ะตะดะฐั‡ะธ ะผะฐั€ัˆั€ัƒั‚ะฝะพะน ะธะฝั„ะพั€ะผะฐั†ะธะธ
  source-interface loopback0    ! ะธะฝั‚ะตั€ั„ะตะนั  ั ะบะพั‚ะพั€ะพะณะพ ะพั‚ะฟั€ะฐะฒะปัะตะผ ะฟะฐะบะตั‚ั‹ loopback0

ืื•ื™ืฃ ื“ื™ Leaf-21 ื‘ืึทืฉื˜ื™ืžืขืŸ ืึทืœืฅ ืื™ื– ื‘ืืฉืืคืŸ ืึธืŸ ืคืจืื‘ืœืขืžืขืŸ. ืึธื‘ืขืจ, ืื•ื™ื‘ ืžื™ืจ ืงืึธื ื˜ืจืึธืœื™ืจืŸ ื“ื™ ืจืขื–ื•ืœื˜ืึทื˜ ืคื•ืŸ ื“ื™ ื‘ืึทืคึฟืขืœ show nve peers, ื“ืขืžืึธืœื˜ ืขืก ื•ื•ืขื˜ ื–ื™ื™ืŸ ืœื™ื™ื“ื™ืง. ื“ืึธ ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืฆื•ืจื™ืงืงื•ืžืขืŸ ืฆื• ื“ื™ VPC ืงืึทื ืคื™ื’ื™ืขืจื™ื™ืฉืึทืŸ. ืžื™ืจ ื–ืขืŸ ืึทื– Leaf-11 ืื•ืŸ Leaf-12 ืึทืจื‘ืขื˜ ืื™ืŸ ืคึผืขืจื– ืื•ืŸ ื–ืขื ืขืŸ ืคึฟืึทืจืื™ื™ื ื™ืงื˜ืข ื“ื•ืจืš ืึท VPC ืคืขืœื“. ื“ืึธืก ื’ื™ื˜ ืื•ื ื“ื– ื“ื™ ืคืืœื’ืขื ื“ืข ืกื™ื˜ื•ืึทืฆื™ืข:

ื”ืึธืกื˜-2 ืกืขื ื“ื– ืื™ื™ืŸ ืจืึทื ืฆื• Leaf-21 ืึทื–ื•ื™ ืึทื– ืขืก ื˜ืจืึทื ืกืžื™ื˜ื˜ืขื“ ืขืก ืื™ื‘ืขืจ ื“ื™ ื ืขืฅ ืฆื• ื”ืึธืกื˜-1. ืึธื‘ืขืจ, Leaf-21 ื–ืขื˜ ืึทื– ื“ื™ MAC ืึทื“ืจืขืก ืคื•ืŸ Host-1 ืื™ื– ืฆื•ื˜ืจื™ื˜ืœืขืš ื“ื•ืจืš ืฆื•ื•ื™ื™ VTEPs ืื™ืŸ ืึทืžืึธืœ. ื•ื•ืึธืก ื–ืึธืœ Leaf-21 ื˜ืึธืŸ ืื™ืŸ ื“ืขื ืคืึทืœ? ื ืึธืš ืึทืœืข, ื“ืึธืก ืžื™ื˜ืœ ืึทื– ืึท ืฉืœื™ื™ืฃ ืงืขืŸ ื“ืขืจืฉื™ื™ึทื ืขืŸ ืื™ืŸ ื“ื™ ื ืขืฅ.

ืฆื• ืกืึธืœื•ื•ืข ื“ืขื ืกื™ื˜ื•ืึทืฆื™ืข, ืžื™ืจ ื“ืึทืจืคึฟืŸ Leaf-11 ืื•ืŸ Leaf-12 ืฆื• ืฉืคึผื™ืœืŸ ื•ื•ื™ ืื™ื™ืŸ ืžื™ื˜ืœ ืื™ืŸ ื“ืขืจ ืคืึทื‘ืจื™ืง. ื“ื™ ืœื™ื™ื–ื•ื ื’ ืื™ื– ื’ืึทื ืฅ ืคึผืฉื•ื˜. ืื•ื™ืฃ ื“ื™ ืœืึธืึธืคึผื‘ืึทืงืง ืฆื•ื‘ื™ื ื“ ืคื•ืŸ ื•ื•ืึธืก ืžื™ืจ ื‘ื•ื™ืขืŸ ื“ืขื ื˜ื•ื ืขืœ, ืœื™ื™ื’ืŸ ืึท ืฆื•ื•ื™ื™ื˜ื™ืง ืึทื“ืจืขืก. ื“ื™ ืฆื•ื•ื™ื™ื˜ื™ืง ืึทื“ืจืขืก ืžื•ื–ืŸ ื–ื™ื™ืŸ ื“ื™ ื–ืขืœื‘ืข ืื•ื™ืฃ ื‘ื™ื™ื“ืข VTEPs.

interface loopback0
 ip add 10.255.1.10/32 secondary

ืื–ื•ื™, ืคึฟื•ืŸ ื“ื™ ืคื•ื ื˜ ืคื•ืŸ ืžื™ื™ื ื•ื ื’ ืคื•ืŸ ืื ื“ืขืจืข VTEPs, ืžื™ืจ ื‘ืึทืงื•ืžืขืŸ ื“ื™ ืคืืœื’ืขื ื“ืข ื˜ืึทืคึผืึทืœืึทื“ื–ืฉื™:

VxLAN ืคืึทื‘ืจื™ืง. ื˜ื™ื™ืœ 1

ื“ืึธืก ืื™ื–, ืื™ืฆื˜ ื“ืขืจ ื˜ื•ื ืขืœ ื•ื•ืขื˜ ื–ื™ื™ืŸ ื’ืขื‘ื•ื™ื˜ ืฆื•ื•ื™ืฉืŸ ื“ื™ IP ืึทื“ืจืขืก ืคื•ืŸ Leaf-21 ืื•ืŸ ื“ื™ ื•ื•ื™ืจื˜ื•ืขืœ IP ืฆื•ื•ื™ืฉืŸ ืฆื•ื•ื™ื™ Leaf-11 ืื•ืŸ Leaf-12. ืื™ืฆื˜ ืขืก ื•ื•ืขื˜ ื–ื™ื™ืŸ ืงื™ื™ืŸ ืคืจืื‘ืœืขืžืขืŸ ืฆื• ืœืขืจื ืขืŸ ื“ื™ MAC ืึทื“ืจืขืก ืคื•ืŸ ืฆื•ื•ื™ื™ ื“ืขื•ื•ื™ืกืขืก ืื•ืŸ ืคืึทืจืงืขืจ ืงืขื ืขืŸ ืžืึทืš ืคื•ืŸ ืื™ื™ืŸ ื•ื•ื˜ืขืคึผ ืฆื• ืื ื“ืขืจืŸ. ื•ื•ืึธืก ืคื•ืŸ ื“ื™ ืฆื•ื•ื™ื™ VTEPs ื•ื•ืขื˜ ืคึผืจืึธืฆืขืก ื“ื™ ืคืึทืจืงืขืจ ืื™ื– ื‘ืึทืฉืœืึธืกืŸ ืžื™ื˜ ื“ื™ ืจื•ื˜ื™ื ื’ ื˜ื™ืฉ ืื•ื™ืฃ ืกืคึผื™ื ืข:

Spine1# sh ip route
<.....>
10.255.1.10/32, ubest/mbest: 2/0
    *via 10.255.1.11, Eth1/1, [110/41], 1d01h, ospf-UNDERLAY, intra
    *via 10.255.1.12, Eth1/2, [110/41], 1d01h, ospf-UNDERLAY, intra
10.255.1.11/32, ubest/mbest: 1/0
    *via 10.255.1.11, Eth1/1, [110/41], 1d22h, ospf-UNDERLAY, intra
10.255.1.12/32, ubest/mbest: 1/0
    *via 10.255.1.12, Eth1/2, [110/41], 1d01h, ospf-UNDERLAY, intra

ื•ื•ื™ ืื™ืจ ืงืขื ืขืŸ ื–ืขืŸ ืื•ื™ื‘ืŸ, ื“ื™ ืึทื“ืจืขืก 10.255.1.10 ืื™ื– ื‘ืืจืขื›ื˜ื™ื’ื˜ ื’ืœื™ื™ืš ื“ื•ืจืš ืฆื•ื•ื™ื™ ื•ื•ื™ื™ึทื˜ืขืจ-ื”ืึธืคึผืก.

ืื™ืŸ ื“ืขื ื‘ื™ื ืข, ืžื™ืจ ื”ืึธื‘ืŸ ื“ืขืœื˜ ืžื™ื˜ ื“ื™ ื’ืจื•ื ื˜ ืงืึทื ืขืงื˜ื™ื•ื•ื™ื˜ื™. ืœืึธืžื™ืจ ืคืึธืจื–ืขืฆืŸ ืฆื• ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ื“ื™ NVE ืฆื•ื‘ื™ื ื“:
ืœืึธืžื™ืจ ื’ืœื™ื™ืš ื’ืขื‘ืŸ Vlan 10 ืื•ืŸ ืคืึทืจื‘ื™ื ื“ืŸ ืขืก ืžื™ื˜ VNI 10000 ืื•ื™ืฃ ื™ืขื“ืขืจ ื‘ืœืึทื˜ ืคึฟืึทืจ ื“ื™ ืžื—ื ื•ืช. ืœืึธืžื™ืจ ืฉื˜ืขืœืŸ ืึท ืœ 2 ื˜ื•ื ืขืœ ืฆื•ื•ื™ืฉืŸ ืžื—ื ื•ืช

vlan 10                 ! ะ’ะบะปัŽั‡ะฐะตะผ VLAN ะฝะฐ ะฒัะตั… VTEP ะฟะพะดะบะปัŽั‡ะตะฝะฝั‹ั… ะบ ะฝะตะพะฑั…ะพะดะธะผั‹ะผ ั…ะพัั‚ะฐะผ
  vn-segment 10000      ! ะััะพั†ะธะธั€ัƒะตะผ VLAN ั ะฝะพะผะตั€ VNI 

interface nve1
  member vni 10000      ! ะ”ะพะฑะฐะฒะปัะตะผ VNI 10000 ะดะปั ั€ะฐะฑะพั‚ั‹ ั‡ะตั€ะตะท ะธะฝั‚ะตั€ั„ะตะนั NVE. ะดะปั ะธะฝะบะฐะฟััƒะปัั†ะธะธ ะฒ VxLAN
    ingress-replication protocol bgp    ! ัƒะบะฐะทั‹ะฒะฐะตะผ, ั‡ั‚ะพ ะดะปั ั€ะฐัะฟั€ะพัั‚ั€ะฐะฝะตะฝะธั ะธะฝั„ะพั€ะผะฐั†ะธะธ ะพ ั…ะพัั‚ะต ะธัะฟะพะปัŒะทัƒะตะผ BGP

ืื™ืฆื˜ ืœืึธืžื™ืจ ื˜ืฉืขืง nve ืคึผื™ืจื– ืื•ืŸ ื“ื™ ื˜ื™ืฉ ืคึฟืึทืจ BGP EVPN:

Leaf21# sh nve peers
Interface Peer-IP          State LearnType Uptime   Router-Mac
--------- ---------------  ----- --------- -------- -----------------
nve1      10.255.1.10      Up    CP        00:00:41 n/a                 ! ะ’ะธะดะธะผ ั‡ั‚ะพ peer ะดะพัั‚ัƒะฟะตะฝ ั secondary ะฐะดั€ะตัะฐ

Leaf11# sh bgp l2vpn evpn

   Network            Next Hop            Metric     LocPrf     Weight Path
Route Distinguisher: 10.255.1.11:32777    (L2VNI 10000)        ! ะžั‚ ะบะพะณะพ ะธะผะตะฝะฝะพ ะฟั€ะธัˆะตะป ัั‚ะพั‚ l2VNI
*>l[3]:[0]:[32]:[10.255.1.10]/88                                   ! EVPN route-type 3 - ะฟะพะบะฐะทั‹ะฒะฐะตั‚ ะฝะฐัˆะตะณะพ ัะพัะตะดะฐ, ะบะพั‚ะพั€ั‹ะน ั‚ะฐะบ ะถะต ะทะฝะฐะตั‚ ะพะฑ l2VNI10000
                      10.255.1.10                       100      32768 i
*>i[3]:[0]:[32]:[10.255.1.20]/88
                      10.255.1.20                       100          0 i
* i                   10.255.1.20                       100          0 i

Route Distinguisher: 10.255.1.21:32777
* i[3]:[0]:[32]:[10.255.1.20]/88
                      10.255.1.20                       100          0 i
*>i                   10.255.1.20                       100          0 i

ืื•ื™ื‘ืŸ ืžื™ืจ ื–ืขืŸ ื‘ืœื•ื™ื– EVPN ืžืึทืจืฉืจื•ื˜-ื˜ื™ืคึผ 3. ื“ืขืจ ื˜ื™ืคึผ ืคื•ืŸ ืžืึทืจืฉืจื•ื˜ ืจืขื“ื˜ ื•ื•ืขื’ืŸ ืคึผื™ืขืจ (ื‘ืœืึทื˜), ืึธื‘ืขืจ ื•ื•ื• ื–ืขื ืขืŸ ืื•ื ื“ื–ืขืจ ืžื—ื ื•ืช?
ื“ื™ ื–ืึทืš ืื™ื– ืึทื– ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื•ื•ืขื’ืŸ ื“ื™ MAC ืžื—ื ื•ืช ืื™ื– ื˜ืจืึทื ืกืžื™ื˜ื˜ืขื“ ื“ื•ืจืš EVPN ืžืึทืจืฉืจื•ื˜ ื˜ื™ืคึผ 2

ืฆื• ื–ืขืŸ ืื•ื ื“ื–ืขืจ ืžื—ื ื•ืช, ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืงืึทื ืคื™ื’ื™ืขืจ EVPN ืžืึทืจืฉืจื•ื˜ ื˜ื™ืคึผ 2:

evpn
  vni 10000 l2
    route-target import auto   ! ะฒ ั€ะฐะผะบะฐั… ะดะฐะฝะฝะพะน ัั‚ะฐั‚ัŒะธ ะธัะฟะพะปัŒะทัƒะตะผ ะฐะฒั‚ะพะผะฐั‚ะธั‡ะตัะบะธะน ะฝะพะผะตั€ ะดะปั route-target
    route-target export auto

ืœืึธืžื™ืจ ืคึผื™ื ื’ ืคื•ืŸ Host-2 ืฆื• Host-1:

Firewall2# ping 192.168.10.1
PING 192.168.10.1 (192.168.10.1): 56 data bytes
36 bytes from 192.168.10.2: Destination Host Unreachable
Request 0 timed out
64 bytes from 192.168.10.1: icmp_seq=1 ttl=254 time=215.555 ms
64 bytes from 192.168.10.1: icmp_seq=2 ttl=254 time=38.756 ms
64 bytes from 192.168.10.1: icmp_seq=3 ttl=254 time=42.484 ms
64 bytes from 192.168.10.1: icmp_seq=4 ttl=254 time=40.983 ms

ืื•ืŸ ืื•ื ื˜ืŸ ืžื™ืจ ืงืขื ืขืŸ ื–ืขืŸ ืึทื– ืžืึทืจืฉืจื•ื˜-ื˜ื™ืคึผ 2 ืžื™ื˜ ื‘ืึทืœืขื‘ืึธืก MAC ืึทื“ืจืขืก ืืจื•ื™ืก ืื™ืŸ ื“ื™ BGP ื˜ื™ืฉ - 5001.0007.0007 ืื•ืŸ 5001.0008.0007

Leaf11# sh bgp l2vpn evpn
<......>

   Network            Next Hop            Metric     LocPrf     Weight Path
Route Distinguisher: 10.255.1.11:32777    (L2VNI 10000)
*>l[2]:[0]:[0]:[48]:[5001.0007.0007]:[0]:[0.0.0.0]/216                      !  evpn route-type 2 ะธ mac ะฐะดั€ะตั ั…ะพัั‚ะฐ 1
                      10.255.1.10                       100      32768 i
*>i[2]:[0]:[0]:[48]:[5001.0008.0007]:[0]:[0.0.0.0]/216                      ! evpn route-type 2 ะธ mac ะฐะดั€ะตั ั…ะพัั‚ะฐ 2
* i                   10.255.1.20                       100          0 i
*>l[3]:[0]:[32]:[10.255.1.10]/88
                      10.255.1.10                       100      32768 i
Route Distinguisher: 10.255.1.21:32777
* i[2]:[0]:[0]:[48]:[5001.0008.0007]:[0]:[0.0.0.0]/216
                      10.255.1.20                       100          0 i
*>i                   10.255.1.20                       100          0 i

ื“ืขืจื ืึธืš ืื™ืจ ืงืขื ืขืŸ ื–ืขืŸ ื“ื™ื˜ื™ื™ืœื“ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ืื•ื™ืฃ ื“ืขืจื”ื™ื™ึทื ื˜ื™ืงืŸ, ืื™ืŸ ื•ื•ืึธืก ืื™ืจ ื”ืึธื˜ ื‘ืึทืงื•ืžืขืŸ ืื™ื ืคึฟืึธืจืžืึทืฆื™ืข ื•ื•ืขื’ืŸ ื“ื™ MAC ื”ืึธืกื˜. ื•ื ื˜ืขืจ ืื™ื– ื ื™ื˜ ืึทืœืข ื“ื™ ื‘ืึทืคึฟืขืœ ืจืขื–ื•ืœื˜ืึทื˜.

Leaf21# sh bgp l2vpn evpn 5001.0007.0007

BGP routing table information for VRF default, address family L2VPN EVPN
Route Distinguisher: 10.255.1.11:32777        !  ะพั‚ะฟั€ะฐะฒะธะป Update ั MAC Host. ะะต ะฒะธั€ั‚ัƒะฐะปัŒะฝั‹ะน ะฐะดั€ะตั VPC, ะฐ ะฐะดั€ะตั Leaf
BGP routing table entry for [2]:[0]:[0]:[48]:[5001.0007.0007]:[0]:[0.0.0.0]/216,
 version 1507
Paths: (2 available, best #2)
Flags: (0x000202) (high32 00000000) on xmit-list, is not in l2rib/evpn, is not i
n HW

  Path type: internal, path is valid, not best reason: Neighbor Address, no labe
led nexthop
  AS-Path: NONE, path sourced internal to AS
    10.255.1.10 (metric 81) from 10.255.1.102 (10.255.1.102)    ! ั ะบะตะผ ะธะผะตะฝะฝะพ ัั‚ั€ะพะธะผ VxLAN ั‚ะพะฝะฝะตะปัŒ
      Origin IGP, MED not set, localpref 100, weight 0
      Received label 10000         ! ะะพะผะตั€ VNI, ะบะพั‚ะพั€ั‹ะน ะฐััะพั†ะธะธั€ะพะฒะฐะฝ ั VLAN, ะฒ ะบะพั‚ะพั€ะพะผ ะฝะฐั…ะพะดะธั‚ัั Host
      Extcommunity: RT:65001:10000 SOO:10.255.1.10:0 ENCAP:8        ! ะขัƒั‚ ะฒะธะดะฝะพ, ั‡ั‚ะพ RT ัั„ะพั€ะผะธั€ะพะฒะฐะปัั ะฐะฒั‚ะพะผะฐั‚ะธั‡ะตัะบะธ ะฝะฐ ะพัะฝะพะฒะต ะฝะพะผะตั€ะพะฒ AS ะธ VNI
      Originator: 10.255.1.11 Cluster list: 10.255.1.102
<........>

ื–ืืœ ืก ื–ืขืŸ ื•ื•ื™ ืจืึธืžืขืŸ ืงื•ืงืŸ ื•ื•ื™ ื•ื•ืขืŸ ื–ื™ื™ ื–ืขื ืขืŸ ื“ื•ืจื›ื’ืขื’ืื ื’ืขืŸ ื“ื•ืจืš ื“ื™ ืคืึทื‘ืจื™ืง:

VxLAN ืคืึทื‘ืจื™ืง. ื˜ื™ื™ืœ 1

ืคืึทืจืฉื˜ื™ืงืŸ-ARP

ื’ืจื•ื™ืก, ืžื™ืจ ืื™ืฆื˜ ื”ืึธื‘ืŸ L2 ืงืึธืžื•ื ื™ืงืึทืฆื™ืข ืฆื•ื•ื™ืฉืŸ ื“ื™ ืžื—ื ื•ืช ืื•ืŸ ืžื™ืจ ืงืขืŸ ืขื ื“ื™ืงืŸ ื“ืึธืจื˜. ืึธื‘ืขืจ, ื ื™ื˜ ืึทืœืข ืึทื–ื•ื™ ืคึผืฉื•ื˜. ื•ื•ื™ ืœืึทื ื’ ื•ื•ื™ ืžื™ืจ ื”ืึธื‘ืŸ ื•ื•ื™ื™ื ื™ืง ืžื—ื ื•ืช, ืขืก ื•ื•ืขื˜ ื–ื™ื™ืŸ ืงื™ื™ืŸ ืคืจืื‘ืœืขืžืขืŸ. ืœืึธืžื™ืจ ื–ื™ืš ืึธื‘ืขืจ ืคึฟืึธืจืฉื˜ืขืœืŸ ืึท ืกื™ื˜ื•ืึทืฆื™ืข, ื•ื•ื•ึผ ืžื™ืจ ื”ืึธื‘ืŸ ื”ื•ื ื“ืขืจื˜ืขืจ ืื•ืŸ ื˜ื•ื™ื–ื ื˜ืขืจ ืžื—ื ื•ืช. ื•ื•ืึธืก ืคึผืจืึธื‘ืœืขื ืงืขืŸ ืžื™ืจ ืคึผื ื™ื?

ื“ืขืจ ืคึผืจืึธื‘ืœืขื ืื™ื– BUM (ื‘ืจืึธื“ืงืึทืกื˜, ืื•ืžื‘ืึทืงืึทื ื˜ ื•ื ื™ืงืึทืกื˜, ืžื•ืœื˜ื™ืงืึทืกื˜) ืคืึทืจืงืขืจ. ืื™ืŸ ื“ืขื ืึทืจื˜ื™ืงืœ, ืžื™ืจ ื•ื•ืขืœืŸ ื‘ืึทื˜ืจืึทื›ื˜ืŸ ื“ื™ ืึธืคึผืฆื™ืข ืคื•ืŸ โ€‹โ€‹ื”ืึทื ื“ืœื™ื ื’ ืžื™ื˜ ื‘ืจืึธื“ืงืึทืกื˜ ืคืึทืจืงืขืจ.
ื“ืขืจ ื”ื•ื™ืคึผื˜ ื‘ืจืึธื“ืงืึทืกื˜ ื’ืขื ืขืจืึทื˜ืึธืจ ืื™ืŸ ืขื˜ื”ืขืจื ืขื˜ ื ืขื˜ื•ื•ืึธืจืงืก ืื™ื– ื“ื™ ืžื—ื ื•ืช ื–ื™ืš ื“ื•ืจืš ื“ื™ ARP ืคึผืจืึธื˜ืึธืงืึธืœ.

ื ืขืงืกื•ืก ื™ืžืคึผืœืึทืžืึทื ืฅ ื“ื™ ืคืืœื’ืขื ื“ืข ืžืขืงืึทื ื™ื–ืึทื ืฆื• ืงืึทืžื‘ืึทื˜ ARP ืจื™ืงื•ื•ืขืก - ืคืึทืจืฉื˜ื™ืงืŸ-ืึทืจืคึผ.
ื“ืขื ืฉื˜ืจื™ืš ืึทืจื‘ืขื˜ ื•ื•ื™ ื’ื™ื™ื˜:

  1. ื”ืึธืกื˜-1 ืกืขื ื“ื– ืึทืŸ ืึทืคึผืจ ื‘ืขื˜ืŸ ืฆื• ื“ื™ ื‘ืจืึธื“ืงืึทืกื˜ ืึทื“ืจืขืก ืคื•ืŸ ื–ื™ื™ืŸ ื ืขืฅ.
  2. ื“ื™ ื‘ืขื˜ืŸ ืจื™ื˜ืฉืึทื– ื“ื™ ื‘ืœืึทื˜ ื‘ืึทืฉื˜ื™ืžืขืŸ ืื•ืŸ ืึทื ืฉื˜ืึธื˜ ืคื•ืŸ ืคืึธืจืŸ ื“ืขื ื‘ืขื˜ืŸ ื•ื•ื™ื™ึทื˜ืขืจ ืฆื• ื“ื™ ืฉื˜ืึธืฃ ืฆื• ื”ืึธืกื˜-2, Leaf ืจื™ืกืคึผืึทื ื“ื– ื–ื™ืš ืื•ืŸ ื™ื ื“ื™ืงื™ื™ืฅ ื“ื™ ืคืืจืœืื ื’ื˜ IP ืื•ืŸ MAC.

ืื–ื•ื™, ื“ื™ ื‘ืจืึธื“ืงืึทืกื˜ ื‘ืขื˜ืŸ ืื™ื– ื ื™ืฉื˜ ื’ืขื’ืื ื’ืขืŸ ืฆื• ื“ื™ ืคืึทื‘ืจื™ืง. ืึธื‘ืขืจ ื•ื•ื™ ืงืขืŸ ื“ืึธืก ืึทืจื‘ืขื˜ ืื•ื™ื‘ ืœื™ืฃ ื ืึธืจ ื•ื•ื™ื™ืกื˜ ื“ื™ MAC ืึทื“ืจืขืก?

ืึทืœืฅ ืื™ื– ื’ืึทื ืฅ ืคึผืฉื•ื˜, EVPN ืžืึทืจืฉืจื•ื˜ ื˜ื™ืคึผ 2, ืื™ืŸ ืึทื“ื™ืฉืึทืŸ ืฆื• ื“ื™ MAC ืึทื“ืจืขืก, ืงืขื ืขืŸ ืึทืจื™ื‘ืขืจืคื™ืจืŸ ืึท MAC / IP ืงืึธืžื‘ื™ื ืึทืฆื™ืข. ืฆื• ื˜ืึธืŸ ื“ืึธืก, ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืงืึทื ืคื™ื’ื™ืขืจ ืึทืŸ IP ืึทื“ืจืขืก ืื™ืŸ ื“ื™ ื•ื•ืœืึทืŸ ืื•ื™ืฃ ื‘ืœืึทื˜. ื“ื™ ืงืฉื™ื ืขืจื™ื™ื–ืึทื–, ื•ื•ืึธืก IP ื–ืึธืœ ืื™ืš ืฉื˜ืขืœืŸ? ืื•ื™ืฃ ื ืขืงืกื•ืก ืขืก ืื™ื– ืžืขื’ืœืขืš ืฆื• ืฉืึทืคึฟืŸ ืึท ืคื•ื ืื ื“ืขืจื’ืขื˜ื™ื™ืœื˜ (ื–ืขืœื‘ื™ืงืขืจ) ืึทื“ืจืขืก ืื•ื™ืฃ ืึทืœืข ืกื•ื•ื™ื˜ืฉื™ื–:

feature interface-vlan

fabric forwarding anycast-gateway-mac 0001.0001.0001    ! ะทะฐะดะฐะตะผ virtual mac ะดะปั ัะพะทะดะฐะฝะธั ั€ะฐัะฟั€ะตะดะตะปะตะฝะฝะพะณะพ ัˆะปัŽะทะฐ ะผะตะถะดัƒ ะฒัะตะผะธ ะบะพะผะผัƒั‚ะฐั‚ะพั€ะฐะผะธ

interface Vlan10
  no shutdown
  ip address 192.168.10.254/24          ! ะฝะฐ ะฒัะตั… Leaf ะทะฐะดะฐะตะผ ะพะดะธะฝะฐะบะพะฒั‹ะน IP
  fabric forwarding mode anycast-gateway    ! ะณะพะฒะพั€ะธะผ ะธัะฟะพะปัŒะทะพะฒะฐั‚ัŒ Virtual mac

ืื–ื•ื™, ืคึฟื•ืŸ ื“ืขืจ ืžื™ื™ื ื•ื ื’ ืคื•ืŸ ื“ื™ ืžื—ื ื•ืช, ื“ื™ ื ืขืฅ ื•ื•ืขื˜ ืงื•ืงืŸ ื•ื•ื™ ื“ืึธืก:

VxLAN ืคืึทื‘ืจื™ืง. ื˜ื™ื™ืœ 1

ืœืึธืžื™ืจ ืงืึธื ื˜ืจืึธืœื™ืจืŸ BGP l2route evpn

Leaf11# sh bgp l2vpn evpn
<......>

   Network            Next Hop            Metric     LocPrf     Weight Path
Route Distinguisher: 10.255.1.11:32777    (L2VNI 10000)
*>l[2]:[0]:[0]:[48]:[5001.0007.0007]:[0]:[0.0.0.0]/216
                      10.255.1.21                       100      32768 i
*>i[2]:[0]:[0]:[48]:[5001.0008.0007]:[0]:[0.0.0.0]/216
                      10.255.1.10                       100          0 i
* i                   10.255.1.10                       100          0 i
* i[2]:[0]:[0]:[48]:[5001.0008.0007]:[32]:[192.168.10.20]/248
                      10.255.1.10                       100          0 i
*>i                   10.255.1.10                       100          0 i

<......>

Route Distinguisher: 10.255.1.21:32777
* i[2]:[0]:[0]:[48]:[5001.0008.0007]:[0]:[0.0.0.0]/216
                      10.255.1.20                       100          0 i
*>i                   10.255.1.20                       100          0 i
* i[2]:[0]:[0]:[48]:[5001.0008.0007]:[32]:[192.168.10.20]/248
*>i                   10.255.1.20                       100          0 i

<......>

ืคึฟื•ืŸ ื“ื™ ื‘ืึทืคึฟืขืœ ืจืขื–ื•ืœื˜ืึทื˜ ืื™ืจ ืงืขื ืขืŸ ื–ืขืŸ ืึทื– ืื™ืŸ EVPN ืžืึทืจืฉืจื•ื˜ ื˜ื™ืคึผ 2, ืื™ืŸ ืึทื“ื™ืฉืึทืŸ ืฆื• ื“ื™ MAC, ืžื™ืจ ืื™ืฆื˜ ืื•ื™ืš ื–ืขืŸ ื“ื™ ื‘ืึทืœืขื‘ืึธืก IP ืึทื“ืจืขืก.

ื–ืืœ ืก ืฆื•ืจื™ืงืงื•ืžืขืŸ ืฆื• ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ืกื•ืคึผืคึผืจืขืกืก-ืึทืจืคึผ. ื“ื™ ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ืื™ื– ืขื ื™ื™ื‘ืึทืœื“ ืคึฟืึทืจ ื™ืขื“ืขืจ VNI ืกืขืคึผืขืจืึทื˜ืœื™:

interface nve1
  member vni 10000   
    suppress-arp

ื“ืขืžืึธืœื˜ ืขื˜ืœืขื›ืข ืงืึทืžืคึผืœืขืงืกื™ื˜ื™ ืขืจื™ื™ื–ืึทื–:

  • ืคึฟืึทืจ ื“ืขื ืฉื˜ืจื™ืš ืฆื• ืึทืจื‘ืขื˜ืŸ, ืคึผืœืึทืฅ ืื™ืŸ TCAM ื–ื›ึผืจื•ืŸ ืื™ื– ืคืืจืœืื ื’ื˜. ื“ืึธ ืก ืึท ื‘ื™ื™ืฉืคึผื™ืœ ืคื•ืŸ ืกืขื˜ื˜ื™ื ื’ืก ืคึฟืึทืจ ืกื•ืคึผืคึผืจืขืกืก-ืึทืจืคึผ:

hardware access-list tcam region arp-ether 256

ื“ืขื ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ื•ื•ืขื˜ ื“ืึทืจืคืŸ ื˜ืึธืคึผืœ-ื‘ืจื™ื™ื˜. ืึทื– ืื™ื–, ืื•ื™ื‘ ืื™ืจ ืฉื˜ืขืœืŸ 256, ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืคืจื™ื™ 512 ืื™ืŸ TCAM.

  • ื™ืžืคึผืœืึทืžืขื ื™ื ื’ ืกื•ืคึผืคึผืจืขืกืก-ืึทืจืคึผ ืžื•ื–ืŸ ื–ื™ื™ืŸ ื’ืขื˜ืืŸ ืื•ื™ืฃ ืึทืœืข ื‘ืœืึทื˜ ืกื•ื•ื™ื˜ืฉื™ื–. ืึธื‘ืขืจ, ืงืึทืžืคึผืœืขืงืกื™ื˜ื™ ืงืขื ืขืŸ ืื•ื™ืคืฉื˜ื™ื™ืŸ ื•ื•ืขืŸ ืงืึทื ืคื™ื’ื™ืขืจื™ื ื’ ืื•ื™ืฃ ื‘ืœืึทื˜ ืคึผืขืจื– ื•ื•ืึธืก ื•ื•ื•ื™ื ืขืŸ ืื™ืŸ ืึท VPC ืคืขืœื“. ืื•ื™ื‘ TCAM ืื™ื– ืคืืจืขื ื“ืขืจื˜, ื“ื™ ืงืึธื ืกื™ืกื˜ืขื ืกื™ ืฆื•ื•ื™ืฉืŸ ืคึผืขืจื– ื•ื•ืขื˜ ื–ื™ื™ืŸ ืฆืขื‘ืจืื›ืŸ ืื•ืŸ ืื™ื™ื ืขืจ ื ืึธื“ืข ืงืขืŸ ื–ื™ื™ืŸ ื’ืขื ื•ืžืขืŸ ืื•ื™ืก ืคื•ืŸ ืึธืคึผืขืจืึทืฆื™ืข. ืึทื“ื™ืฉื ืึทืœ, ืึท ืจืขื‘ืึธืึธื˜ ืคื•ืŸ ื“ื™ ืžื™ื˜ืœ ืงืขืŸ ื–ื™ื™ืŸ ืคืืจืœืื ื’ื˜ ืฆื• ืฆื•ืœื™ื™ื’ืŸ ื“ื™ TCAM ื˜ื•ื™ืฉืŸ ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ.

ื•ื•ื™ ืึท ืจืขื–ื•ืœื˜ืึทื˜, ืื™ืจ ื“ืึทืจืคึฟืŸ ืฆื• ืงืขืจืคืึทืœื™ ื‘ืึทื˜ืจืึทื›ื˜ืŸ ืฆื™, ืื™ืŸ ื“ื™ื™ืŸ ืกื™ื˜ื•ืึทืฆื™ืข, ืขืก ืื™ื– ื•ื•ืขืจื˜ ื™ืžืคึผืœืึทืžืขื ื™ื ื’ ื“ืขื ื‘ืึทืฉื˜ืขื˜ื™ืงืŸ ืื™ืŸ ืึท ืคืœื™ืกื ื“ื™ืง ืคืึทื‘ืจื™ืง.

ื“ืึธืก ืขื ื“ื™ืงื˜ ื–ื™ืš ื“ืขืจ ืขืจืฉื˜ืขืจ ื˜ื™ื™ืœ ืคื•ืŸ ื“ืขืจ ืกืขืจื™ืข. ืื™ืŸ ื“ืขืจ ื•ื•ื™ื™ึทื˜ืขืจ ื˜ื™ื™ืœ ืžื™ืจ ื•ื•ืขืœืŸ ืงื•ืงืŸ ืื™ืŸ ืจื•ื˜ื™ื ื’ ื“ื•ืจืš ืึท VxLAN ืฉื˜ืึธืฃ ืžื™ื˜ ืฆืขืฉื™ื™ื“ื•ื ื’ ืคื•ืŸ ื ืขื˜ื•ื•ืึธืจืงืก ืื™ืŸ ืคืึทืจืฉื™ื“ืขื ืข VRFs.

ืื•ืŸ ืื™ืฆื˜ ืื™ืš ืœืึทื“ืŸ ืึทืœืขืžืขืŸ ืฆื• ืคึฟืจื™ื™ึท ื•ื•ืขื‘ื™ื ืึทืจ, ืื™ืŸ ื•ื•ืึธืก ืื™ืš ื•ื•ืขืœ ื–ืึธื’ืŸ ืื™ืจ ืื™ืŸ ื“ืขื˜ืึทืœ ื•ื•ืขื’ืŸ ื“ืขื ืงื•ืจืก. ื“ืขืจ ืขืจืฉื˜ืขืจ 20 ืคึผืึทืจื˜ื™ืกืึทืคึผืึทื ืฅ ืฆื• ืคืึทืจืฉืจื™ื™ึทื‘ืŸ ืคึฟืึทืจ ื“ืขื ื•ื•ืขื‘ื™ื ืึทืจ ื•ื•ืขื˜ ื‘ืึทืงื•ืžืขืŸ ืึท ืึทืจืึธืคึผืจืขื›ืขื ืขืŸ ืกืขืจื˜ื™ืคื™ืงืึทื˜ ื“ื•ืจืš E- ื‘ืจื™ื•ื• ื™ืŸ 1-2 ื˜ืขื’ ื ืึธืš ื“ื™ ื‘ืจืึธื“ืงืึทืกื˜.

ืžืงื•ืจ: www.habr.com

ืœื™ื™ื’ืŸ ืึท ื‘ืึทืžืขืจืงื•ื ื’