VPN-Instance 实例配置如下:
ip vpn-instance vpn-default
route-distinguisher 1:1
vpn-target 1:1 2:2 3:3 import-extcommunity
vpn-target 1:1 export-extcommunity
#
address-family evpn
vpn-target 1:1 2:2 3:3 import-extcommunity
vpn-target 1:1 export-extcommunity
#
ip vpn-instance vpna
route-distinguisher 2:2
vpn-target 2:2 1:1 import-extcommunity
vpn-target 2:2 export-extcommunity
#
address-family evpn
vpn-target 2:2 1:1 import-extcommunity
vpn-target 2:2 export-extcommunity
#
ip vpn-instance vpnb
route-distinguisher 3:3
vpn-target 1:1 3:3 import-extcommunity
vpn-target 3:3 export-extcommunity
#
address-family evpn
vpn-target 1:1 3:3 import-extcommunity
vpn-target 3:3 export-extcommunity
#
VSI-interface 配置如下:
interface Vsi-interface20
ip binding vpn-instance vpna
ip address 10.1.1.254 255.255.255.0
mac-address 0001-0001-0001
local-proxy-arp enable
distributed-gateway local
#
interface Vsi-interface40
ip binding vpn-instance vpnb
ip address 20.1.1.254 255.255.255.0
mac-address 0001-0001-0001
local-proxy-arp enable
distributed-gateway local
#
interface Vsi-interface4092
description SDN_VRF_VSI_Interface_4092
ip binding vpn-instance vpn-default
ip address unnumbered interface Vsi-interface4094
l3-vni 4092
#
interface Vsi-interface4094
ip binding vpn-instance vpn-default
ip address 192.168.255.1 255.255.255.0
local-proxy-arp enable
#
VSI 配置如下:
vsi vpna
gateway vsi-interface 20
vxlan 20
evpn encapsulation vxlan
route-distinguisher auto
#
vsi vpnb
gateway vsi-interface 40
vxlan 40
evpn encapsulation vxlan
route-distinguisher auto
#
vsi vxlan4094
gateway vsi-interface 4094
vxlan 4094
模拟器上面display interface bri 接口状态如下:
测试如下,模拟器上面跨vpn-instance测试无法互通
VPN-Instance 实例配置如下:
ip vpn-instance vpn-default
route-distinguisher 1:1
vpn-target 1:1 2:2 3:3 import-extcommunity
vpn-target 1:1 export-extcommunity
#
address-family evpn
vpn-target 1:1 2:2 3:3 import-extcommunity
vpn-target 1:1 export-extcommunity
#
ip vpn-instance vpna
route-distinguisher 2:2
vpn-target 2:2 1:1 import-extcommunity
vpn-target 2:2 export-extcommunity
#
address-family evpn
vpn-target 2:2 1:1 import-extcommunity
vpn-target 2:2 export-extcommunity
#
ip vpn-instance vpnb
route-distinguisher 3:3
vpn-target 1:1 3:3 import-extcommunity
vpn-target 3:3 export-extcommunity
#
address-family evpn
vpn-target 1:1 3:3 import-extcommunity
vpn-target 3:3 export-extcommunity
#
VSI-interface 配置如下:
interface Vsi-interface20
ip binding vpn-instance vpna
ip address 10.1.1.254 255.255.255.0
mac-address 0001-0001-0001
local-proxy-arp enable
distributed-gateway local
#
interface Vsi-interface40
ip binding vpn-instance vpnb
ip address 20.1.1.254 255.255.255.0
mac-address 0001-0001-0001
local-proxy-arp enable
distributed-gateway local
#
interface Vsi-interface4092
description SDN_VRF_VSI_Interface_4092
ip binding vpn-instance vpn-default
ip address unnumbered interface Vsi-interface4094
l3-vni 4092
#
interface Vsi-interface4094
ip binding vpn-instance vpn-default
ip address 192.168.255.1 255.255.255.0
local-proxy-arp enable
#
VSI 配置如下:
vsi vpna
gateway vsi-interface 20
vxlan 20
evpn encapsulation vxlan
route-distinguisher auto
#
vsi vpnb
gateway vsi-interface 40
vxlan 40
evpn encapsulation vxlan
route-distinguisher auto
#
vsi vxlan4094
gateway vsi-interface 4094
vxlan 4094
模拟器上面display interface bri 接口状态如下:
测试如下,模拟器上面跨vpn-instance测试无法互通
(0)
最佳答案
在模拟器leaf上面 接口G1/0/1 G1/0/2下面配置如下,PC测试 到达网关均是正常的,只有跨网段不行,配置如下:
(0)
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论