使用HCL做M-lag+evpn实验,m-lag配置完成一切顺利,
做了如下几条evpn的配置之后,频繁告警,
l2vpn enable
l2vpn m-lag peer-link ac-match-rule vxlan-mapping
vxlan tunnel mac-learning disable
vxlan tunnel arp-learning disable
vxlan tunnel nd-learning disable
evpn m-lag group 10.10.10.10
evpn global-mac 0001-0001-0001
告警如下,请大佬帮忙指点,谢谢!!
%Apr 30 14:40:51:939 2025 Leaf1 OSPF/5/OSPF_NBR_CHG: OSPF 1 Neighbor 10.1.0.30(Vlan-interface4094) changed from FULL to INIT.
%Apr 30 14:40:51:939 2025 Leaf1 OSPF/5/OSPF_NBR_CHG: OSPF 1 Neighbor 10.1.0.30(Vlan-interface4094) changed from LOADING to FULL.
%Apr 30 14:40:52:643 2025 Leaf1 M-LAG/6/MLAG_KEEPALIVELINK_DOWN: Keepalive link went down because the peer keepalive timeout timer expired. Please check the keepalive packet transmission and reception status at the two ends.
%Apr 30 14:40:52:810 2025 Leaf1 M-LAG/6/MLAG_KEEPALIVELINK_UP: Keepalive link came up.
%Apr 30 14:40:53:647 2025 Leaf1 M-LAG/6/MLAG_KEEPALIVELINK_DOWN: Keepalive link went down because the peer keepalive timeout timer expired. Please check the keepalive packet transmission and reception status at the two ends.
%Apr 30 14:40:53:815 2025 Leaf1 M-LAG/6/MLAG_KEEPALIVELINK_UP: Keepalive link came up
(0)
根据您的描述,在配置EVPN时触发了OSPF邻居状态异常。以下是可能原因及解决方法:
**1. OSPF邻居参数不匹配**
检查M-LAG peer两端VLAN-interface4094的OSPF配置:
- 确保OSPF区域ID、网络类型(broadcast/p2p)、认证方式完全一致
- 确认接口MTU值相同(建议两端强制配置相同MTU值)
**2. EVPN全局MAC冲突**
当前配置的evpn global-mac 0001-0001-0001需注意:
- 该MAC必须为全局唯一标识,建议使用M-LAG系统MAC(通过display m-lag system-mac查看)
- MAC地址格式推荐采用系统自动生成的格式(如xxxx-xxxx-xxxx)
**3. VXLAN与M-LAG兼容性配置**
建议补充以下关键配置:
```bash
# 开启分布式网关功能
evpn tunnel nd-learning enable
evpn tunnel arp-suppression enable
# 配置VXLAN与M-LAG联动
interface Vlan-interface4094 # M-LAG Peer-Link接口
port link-mode bridge
port access vlan 4094
m-lag peer-link enable
# 确保EVPN实例绑定正确的VSI
evpn instance 1 vxlan
route-distinguisher auto
vpn-target auto
```
**4. 配置验证步骤**
```bash
display ospf peer verbose # 确认OSPF邻居状态机变化原因
display evpn m-lag group # 检查EVPN M-LAG组状态
display vxlan tunnel # 验证VXLAN隧道建立状态
```
若问题仍未解决,建议检查HCL模拟器的版本是否支持EVPN+M-LAG组合功能(需HCL 3.0.1及以上版本),并确认实验拓扑中是否存在环路导致OSPF报文被异常丢弃。
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论