CloudEngine 16800, 12800, 9800, 8800, 7800, 6800, and 5800 Series Switches Typical Configuration Examples (V100 and V200)
Configuring M-LAG and VRRP/VRRP6 Across Data Centers
Applicable Products and Versions
This example applies to the CE12800 of V100R006C00 or later, the CE8800/CE7800/CE6800/CE5800 of V200R002C50 or later, the CE9800 of V200R020C00 or later, the CE12800E of V200R005C00 or later, the CloudEngine 16800 of V200R005C20 or later.
For details about the mapping between software versions and switch models, see the Hardware Center.
Networking Requirements
Figure 1-20 shows the data center network across areas, and core, aggregation, and access switches are connected through 10GE interfaces. This example uses the CE12804.
Device Name |
Interface Number |
IP Address |
Connected Device and Interface Number |
---|---|---|---|
SwitchA |
10GE1/0/1 |
10.1.1.1/24 2001:db8:1::1/64 |
SwitchE: 10GE1/0/7 |
10GE1/0/2 |
10.1.2.1/24 2001:db8:2::1/64 |
SwitchF: 10GE1/0/8 |
|
10GE1/0/3 |
10.1.3.1/24 2001:db8:3::1/64 |
SwitchB: 10GE1/0/3 |
|
SwitchB |
10GE1/0/1 |
10.1.4.1/24 2001:db8:4::1/64 |
SwitchF: 10GE1/0/7 |
10GE1/0/2 |
10.1.5.1/24 2001:db8:1:5::1/64 |
SwitchE: 10GE1/0/8 |
|
10GE1/0/3 |
10.1.3.2/24 2001:db8:1:3:2/64 |
SwitchA: 10GE1/0/3 |
|
SwitchC |
10GE1/0/1 |
10.2.1.1/24 2001:db8:2:1::1/64 |
SwitchG: 10GE1/0/7 |
10GE1/0/2 |
10.2.2.1/24 2001:db8:2:2::1/64 |
SwitchH: 10GE1/0/8 |
|
10GE1/0/3 |
10.2.3.1/24 2001:db8:2:3::1/64 |
SwitchD: 10GE1/0/3 |
|
SwitchD |
10GE1/0/1 |
10.2.4.1/24 2001:db8:2:4::1/64 |
SwitchH: 10GE1/0/7 |
10GE1/0/2 |
10.2.5.1/24 2001:db8:2:5::1/64 |
SwitchG: 10GE1/0/8 |
|
10GE1/0/3 |
10.2.3.2/24 2001:db8:2:3::2/64 |
SwitchC: 10GE1/0/3 |
|
SwitchE |
Management interface |
10.1.6.1/24 |
- |
VLANIF11 |
10.1.7.1/24 2001:db8:1:7::1/64 Virtual IP address: 10.1.7.111 2001:db8:1:7::111 |
- |
|
Eth-Trunk 5: 10GE1/0/1 |
- |
SwitchM: Eth-Trunk 15 |
|
Eth-Trunk 0
|
- |
SwitchF: Eth-Trunk 0 |
|
- |
|||
Eth-Trunk 10
|
- |
SwitchI: 10GE1/0/5 |
|
- |
SwitchJ: 10GE1/0/6 |
||
10GE1/0/7 |
10.1.1.2/24 2001:db8:1:1::2/64 |
SwitchA: 10GE1/0/1 |
|
10GE1/0/8 |
10.1.5.2/24 2001:db8:1:5::2/64 |
SwitchB: 10GE1/0/2 |
|
SwitchF |
Management interface |
10.1.6.2/24 |
- |
VLANIF 11 |
10.1.7.1/24 2001:db8:1:7::1/64 Virtual IP address: 10.1.7.111 2001:db8:1:7::111 |
- |
|
Eth-Trunk 5: 10GE1/0/1 |
- |
SwitchM: Eth-Trunk 15 |
|
Eth-Trunk 0
|
- |
SwitchE: Eth-Trunk 0 |
|
- |
|||
Eth-Trunk 10
|
- |
SwitchJ: 10GE1/0/5 |
|
- |
SwitchI: 10GE1/0/6 |
||
10GE1/0/7 |
10.1.4.2/24 2001:db8:1:4::2/64 |
SwitchB: 10GE1/0/1 |
|
10GE1/0/8 |
10.1.2.2/24 2001:db8:1:2::2/64 |
SwitchA: 10GE1/0/2 |
|
SwitchG |
Management interface |
10.2.6.1/24 |
- |
VLANIF 11 |
10.1.7.3/24 2001:db8:1:7::3/64 Virtual IP address: 10.1.7.111 2001:db8:1:7::111 |
- |
|
Eth-Trunk 5: 10GE1/0/1 |
- |
SwitchN: Eth-Trunk 30 |
|
Eth-Trunk 0
|
- |
SwitchH: Eth-Trunk 0 |
|
- |
|||
Eth-Trunk 10
|
- |
SwitchK: 10GE1/0/5 |
|
- |
SwitchL: 10GE1/0/6 |
||
10GE1/0/7 |
10.2.1.2/24 2001:db8:2:1::2/64 |
SwitchC: 10GE1/0/1 |
|
10GE1/0/8 |
10.2.5.2/24 2001:db8:2:5::2/64 |
SwitchD: 10GE1/0/2 |
|
SwitchH |
Management interface |
10.2.6.2/24 |
- |
VLANIF11 |
10.1.7.3/24 2001:db8:1:7::3/64 Virtual IP address: 10.1.7.111 2001:db8:1:7::111 |
- |
|
Eth-Trunk 5: 10GE1/0/1 |
- |
SwitchN: Eth-Trunk 30 |
|
Eth-Trunk 0
|
- |
SwitchG: Eth-Trunk 0 |
|
- |
|||
Eth-Trunk 10
|
- |
SwitchL: 10GE1/0/5 |
|
- |
SwitchK: 10GE1/0/6 |
||
10GE1/0/7 |
10.2.4.2/24 2001:db8:2:4::2/64 |
SwitchD: 10GE1/0/1 |
|
10GE1/0/8 |
10.2.2.2/24 2001:db8:2:2::2/64 |
SwitchC: 10GE1/0/2 |
|
SwitchI |
Management interface |
10.1.8.1/24 |
- |
Eth-Trunk 40
|
- |
SwitchK: 10GE1/0/2 |
|
Eth-Trunk 0
|
- |
SwitchJ: Eth-Trunk 0 |
|
- |
|||
Eth-Trunk 35
|
- |
SwitchE: 10GE1/0/5 |
|
- |
SwitchF: 10GE1/0/6 |
||
SwitchJ |
Management interface |
10.1.8.2/24 |
- |
Eth-Trunk 40
|
- |
SwitchL: 10GE1/0/2 |
|
Eth-Trunk 0
|
- |
SwitchI: Eth-Trunk 0 |
|
- |
|||
Eth-Trunk 35
|
- |
SwitchF: 10GE1/0/5 |
|
- |
SwitchE: 10GE1/0/6 |
||
SwitchK |
Management interface |
10.2.8.1/24 |
- |
Eth-Trunk 50
|
- |
SwitchI: 10GE1/0/2 |
|
Eth-Trunk 0
|
- |
SwitchL: Eth-Trunk 0 |
|
- |
|||
Eth-Trunk 45
|
- |
SwitchG: 10GE1/0/5 |
|
- |
SwitchH: 10GE1/0/6 |
||
SwitchL |
Management interface |
10.2.8.2/24 |
- |
Eth-Trunk 50
|
- |
SwitchJ: 10GE1/0/2 |
|
Eth-Trunk 0
|
- |
SwitchK: Eth-Trunk 0 |
|
- |
|||
Eth-Trunk 45
|
- |
SwitchH: 10GE1/0/5 |
|
- |
SwitchG: 10GE1/0/6 |
||
SwitchM |
Eth-Trunk 15
|
- |
SwitchE: 10GE1/0/1 SwitchF: 10GE1/0/1 |
10GE1/0/3 |
- |
Server |
|
SwitchN |
Eth-Trunk 30
|
- |
SwitchG: 10GE1/0/1 SwitchH: 10GE1/0/1 |
10GE1/0/3 |
- |
Server |
Requirement Analysis
Devices at the core and aggregation layers establish cross connections to ensure device-level reliability and load balance traffic based on ECMP (preferential forwarding of local traffic is used with M-LAG at the aggregation layer).
The primary and backup data centers are connected through M-LAG and form a long-distance loop-free topology.
Figure 1-21 shows the logical networking after M-LAG and VRRP/VRRP6 are deployed.
Configuration Roadmap
The configuration roadmap is as follows:
Configure M-LAG between SwitchE and SwitchF and between SwitchG and SwitchH to implement dual-homing access at the access layer. Configure M-LAG between SwitchI and SwitchJ and between SwitchK and SwitchL to implement multi-level LAG interconnection between aggregation layers of primary and backup data centers. When aggregation switches work normally, links load balance traffic and a fault of any aggregation switch does not affect services. High service reliability is therefore ensured.
Configure SwitchE, SwitchF, SwitchG, and SwitchH as root bridges and enable root protection on downstream interfaces to ensure that the interfaces can forward traffic normally. Configure the edge interface and BPDU filter interface between the SwitchI and SwitchJ and between SwitchK and SwitchL so that STP calculation between primary and backup data centers is isolated. Configure interfaces on SwitchM and SwitchN connected to user terminals as edge interfaces to accelerate route convergence and enable BPDU protection to enhance network stability.
- Create VLANIF interfaces on SwitchE, SwitchF, SwitchG, and SwitchH, assign IP addresses and MAC addresses to VLANIF interfaces, and create VRRP/VRRP6 groups on VLANIF interfaces to implement active-active gateways. There are dual master devices in the primary data center and two backup devices in the backup data center.
To enable two devices of the M-LAG to be simulated into one device to perform VRRP/VRRP6 negotiation with the M-LAG of the remote data center, note the following points:
- In a data center, configure the same interface IP address and virtual MAC address when creating VRRP/VRRP6 groups. However, the primary and backup data centers must use different interface IP addresses and virtual MAC addresses.
- The configured virtual MAC address must be different from the VRRP/VRRP6 virtual MAC address, and the VRRP/VRRP6 virtual MAC address depends on the VRID. For example, the VRID of the VRRP/VRRP6 group composed of SwitchE and SwitchF is 1, so the MAC address of the VRRP/VRRP6 group is 00-00-5E-00-01-01.
Enable OSPF on aggregation and core switches to ensure Layer 3 connectivity.
Procedure
- Configure M-LAG.
- Enable OSPF on SwitchA, SwitchB, SwitchC, SwitchD, SwitchE, SwitchF, SwitchG, and SwitchH.# Configure SwitchA.
[~SwitchA] interface 10ge 1/0/1 [*SwitchA-10GE1/0/1] undo portswitch [*SwitchA-10GE1/0/1] ip address 10.1.1.1 24 [*SwitchA-10GE1/0/1] ospf enable 1 area 0 [*SwitchA-10GE1/0/1] ospf network-type p2p //Set the network type of the interface to P2P. [*SwitchA-10GE1/0/1] quit [*SwitchA] interface 10ge 1/0/2 [*SwitchA-10GE1/0/2] undo portswitch [*SwitchA-10GE1/0/2] ip address 10.1.2.1 24 [*SwitchA-10GE1/0/2] ospf enable 1 area 0 [*SwitchA-10GE1/0/2] ospf network-type p2p //Set the network type of the interface to P2P. [*SwitchA-10GE1/0/2] quit [*SwitchA] interface 10ge 1/0/3 [*SwitchA-10GE1/0/3] undo portswitch [*SwitchA-10GE1/0/3] ip address 10.1.3.1 24 [*SwitchA-10GE1/0/3] ospf enable 1 area 0 [*SwitchA-10GE1/0/3] ospf network-type p2p //Set the network type of the interface to P2P. [*SwitchA-10GE1/0/3] quit [*SwitchA] interface 10ge 1/0/9 [*SwitchA-10GE1/0/9] shutdown //Shut down the interface not in use. 10GE 1/0/9 is used as an example. [*SwitchA-10GE1/0/9] quit [*SwitchA] ospf 1 [*SwitchA-ospf-1] area 0 [*SwitchA-ospf-1-area-0.0.0.0] quit [*SwitchA-ospf-1] quit [*SwitchA] commit
[~SwitchA] ospfv3 1 [*SwitchA-ospfv3-1] router-id 10.1.1.1 [*SwitchA-ospfv3-1] area 0.0.0.1 [*SwitchA] interface 10ge 1/0/1 [*SwitchA-10GE1/0/1] undo portswitch [*SwitchA-10GE1/0/1] ipv6 enable [*SwitchA-10GE1/0/1] ipv6 address 2001:db8:1:1::1 64 [*SwitchA-10GE1/0/1] ospfv3 1 area 0.0.0.1 [*SwitchA-10GE1/0/1] quit [*SwitchA] interface 10ge 1/0/2 [*SwitchA-10GE1/0/2] undo portswitch [*SwitchA-10GE1/0/2] ipv6 enable [*SwitchA-10GE1/0/2] ipv6 address 2001:db8:1:2::1 64 [*SwitchA-10GE1/0/2] ospfv3 1 area 0.0.0.1 [*SwitchA-10GE1/0/2] quit [*SwitchA] interface 10ge 1/0/3 [*SwitchA-10GE1/0/3] undo portswitch [*SwitchA-10GE1/0/3] ipv6 enable [*SwitchA-10GE1/0/3] ipv6 address 2001:db8:1:3::1 64 [*SwitchA-10GE1/0/3] ospfv3 1 area 0.0.0.1 [*SwitchA-10GE1/0/3] quit [*SwitchA] commit
# The configurations of SwitchB, SwitchC, and SwitchD are similar to the configuration of SwitchA, and the configuration details are not mentioned here.
# Configure SwitchE.[~SwitchE] interface 10ge 1/0/7 [*SwitchE-10GE1/0/7] undo portswitch [*SwitchE-10GE1/0/7] ip address 10.1.1.2 24 [*SwitchE-10GE1/0/7] ospf enable 1 area 0 [*SwitchE-10GE1/0/7] ospf network-type p2p //Set the network type of the interface to P2P. [*SwitchE-10GE1/0/7] quit [*SwitchE] interface 10ge 1/0/8 [*SwitchE-10GE1/0/8] undo portswitch [*SwitchE-10GE1/0/8] ip address 10.1.5.2 24 [*SwitchE-10GE1/0/8] ospf enable 1 area 0 [*SwitchE-10GE1/0/8] ospf network-type p2p //Set the network type of the interface to P2P. [*SwitchE-10GE1/0/8] quit [*SwitchE] ospf 1 [*SwitchE-ospf-1] import-route direct //Configure the switch to import direct routes. You can configure a routing policy to filter unnecessary routes. [*SwitchE-ospf-1] area 0 [*SwitchE-ospf-1-area-0.0.0.0] quit [*SwitchE-ospf-1] quit [*SwitchE] commit
[~SwitchE] ospfv3 1 [*SwitchE-ospfv3-1] router-id 10.1.1.2 [*SwitchE-ospfv3-1] area 0.0.0.1 [*SwitchE] interface 10ge 1/0/7 [*SwitchE-10GE1/0/7] undo portswitch [*SwitchE-10GE1/0/7] ipv6 enable [*SwitchE-10GE1/0/7] ipv6 address 2001:db8:1:1::2 64 [*SwitchE-10GE1/0/7] ospfv3 1 area 0.0.0.1 [*SwitchE-10GE1/0/7] quit [*SwitchE] interface 10ge 1/0/8 [*SwitchE-10GE1/0/8] undo portswitch [*SwitchE-10GE1/0/8] ipv6 enable [*SwitchE-10GE1/0/8] ipv6 address 2001:db8:1:5::2 64 [*SwitchE-10GE1/0/8] ospfv3 1 area 0.0.0.1 [*SwitchE-10GE1/0/8] quit [*SwitchE] commit
# The configurations of SwitchF, SwitchG, and SwitchH are similar to the configuration of SwitchE, and the configuration details are not mentioned here.
- Verify the configuration.
Run the display dfs-group command to check M-LAG information.
# Check information about the M-LAG with DFS group 1. (The M-LAG composed of SwitchE and SwitchF is used as an example. The M-LAG composed of SwitchG and SwitchH, the M-LAG composed of SwitchI and SwitchJ, and the M-LAG composed of SwitchK and SwitchL are similar.)
[~SwitchE] display dfs-group 1 m-lag * : Local node Heart beat state : OK Node 1 * Dfs-Group ID : 1 Priority : 150 Address : ip address 10.1.6.1 State : Master Causation : - System ID : ac94-8400-df01 SysName : SwitchE Version : V100R006C00 Device Type : CE12800 Node 2 Dfs-Group ID : 1 Priority : 120 Address : ip address 10.1.6.2 State : Backup Causation : - System ID : 0025-9e95-7c21 SysName : switchF Version : V100R006C00 Device Type : CE12800
# Check M-LAG information on SwitchE.
[~SwitchE] display dfs-group 1 node 1 m-lag brief * - Local node M-Lag ID Interface Port State Status 1 Eth-Trunk 5 Up active(*)-active 2 Eth-Trunk 10 Up active(*)-active
In the preceding information, the value of Heart beat state is OK, indicating that the heartbeat status is normal. SwitchE is used as Node 1, its priority is 150, and its status is Master. SwitchF is used as Node 2, its priority is 120, and its status is Backup. The value of Causation is -, the values of Port State of Node 1 and Node 2 are both Up, and the M-LAG status of both Node 1 and Node 2 is active, indicating that the MC-LAG configuration is correct.
Run the display vrrp command on SwitchE, SwitchF, SwitchG and SwitchH. You can see that SwitchE and SwitchF are in Master state and SwitchG and SwitchH are in Backup state.
[~SwitchE] display vrrp verbose Vlanif11 | Virtual Router 1 State : Master Virtual IP : 10.1.7.111 Master IP : 10.1.7.1 PriorityRun : 120 PriorityConfig : 120 MasterPriority : 120 Preempt : YES Delay Time : 0s Remain : -- Hold Multiplier: 3 TimerRun : 1s TimerConfig : 1s Auth Type : NONE Virtual MAC : 0000-5e00-0101 Check TTL : YES Config Type : Normal Create Time : 2016-03-14 14:26:29 Last Change Time : 2016-03-14 14:26:35
[~SwitchF] display vrrp verbose Vlanif11 | Virtual Router 1 State : Master Virtual IP : 10.1.7.111 Master IP : 10.1.7.1 PriorityRun : 120 PriorityConfig : 120 MasterPriority : 120 Preempt : YES Delay Time : 0s Remain : -- Hold Multiplier: 3 TimerRun : 1s TimerConfig : 1s Auth Type : NONE Virtual MAC : 0000-5e00-0101 Check TTL : YES Config Type : Normal Create Time : 2016-03-14 14:26:29 Last Change Time : 2016-03-14 14:26:35
[~SwitchG] display vrrp verbose Vlanif11 | Virtual Router 1 State : Backup Virtual IP : 10.1.7.111 Master IP : 10.1.7.3 PriorityRun : 100 PriorityConfig : 100 MasterPriority : 120 Preempt : YES Delay Time : 0s Remain : -- Hold Multiplier: 3 TimerRun : 1s TimerConfig : 1s Auth Type : NONE Virtual MAC : 0000-5e00-0101 Check TTL : YES Config Type : Normal Create Time : 2016-03-14 14:26:29 Last Change Time : 2016-03-14 14:26:35
[~SwitchH] display vrrp verbose Vlanif11 | Virtual Router 1 State : Backup Virtual IP : 10.1.7.111 Master IP : 10.1.7.3 PriorityRun : 100 PriorityConfig : 100 MasterPriority : 120 Preempt : YES Delay Time : 0s Remain : -- Hold Multiplier: 3 TimerRun : 1s TimerConfig : 1s Auth Type : NONE Virtual MAC : 0000-5e00-0101 Check TTL : YES Config Type : Normal Create Time : 2016-03-14 14:26:29 Last Change Time : 2016-03-14 14:26:35
Run the display vrrp6 command on SwitchE, SwitchF, SwitchG and SwitchH. You can see that SwitchE and SwitchF are in Master state and SwitchG and SwitchH are in Backup state.
[~SwitchE] display vrrp6 verbose Vlanif11 | Virtual Router 1 State : Master Virtual IP : 2001:db8:1:7::111 Master IP : 2001:db8:1:7::1 PriorityRun : 120 PriorityConfig : 120 MasterPriority : 120 Preempt : YES Delay Time : 0s Remain : -- Hold Multiplier: 3 TimerRun : 1s TimerConfig : 1s Auth Type : NONE Virtual MAC : 0000-5e00-0101 Check TTL : YES Config Type : Normal Create Time : 2022-05-14 14:26:29 Last Change Time : 2022-05-14 14:26:35
[~SwitchF] display vrrp6 verbose Vlanif11 | Virtual Router 1 State : Master Virtual IP : 2001:db8:1:7::111 Master IP : 2001:db8:1:7::1 PriorityRun : 120 PriorityConfig : 120 MasterPriority : 120 Preempt : YES Delay Time : 0s Remain : -- Hold Multiplier: 3 TimerRun : 1s TimerConfig : 1s Auth Type : NONE Virtual MAC : 0000-5e00-0101 Check TTL : YES Config Type : Normal Create Time : 2022-05-14 14:26:29 Last Change Time : 2022-05-14 14:26:35
[~SwitchG] display vrrp6 verbose Vlanif11 | Virtual Router 1 State : Backup Virtual IP : 2001:db8:1:7::111 Master IP : 2001:db8:1:7::3 PriorityRun : 100 PriorityConfig : 100 MasterPriority : 120 Preempt : YES Delay Time : 0s Remain : -- Hold Multiplier: 3 TimerRun : 1s TimerConfig : 1s Auth Type : NONE Virtual MAC : 0000-5e00-0101 Check TTL : YES Config Type : Normal Create Time : 2022-05-14 14:26:29 Last Change Time : 2022-05-14 14:26:35
[~SwitchH] display vrrp6 verbose Vlanif11 | Virtual Router 1 State : Backup Virtual IP : 2001:db8:1:7::111 Master IP : 2001:db8:1:7::3 PriorityRun : 100 PriorityConfig : 100 MasterPriority : 120 Preempt : YES Delay Time : 0s Remain : -- Hold Multiplier: 3 TimerRun : 1s TimerConfig : 1s Auth Type : NONE Virtual MAC : 0000-5e00-0101 Check TTL : YES Config Type : Normal Create Time : 2022-05-14 14:26:29 Last Change Time : 2022-05-14 14:26:35
Configuration Files
SwitchA configuration file
# sysname SwitchA # interface 10GE1/0/1 undo portswitch ip address 10.1.1.1 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:1:1::1/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/2 undo portswitch ip address 10.1.2.1 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:1:2::1/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/3 undo portswitch ip address 10.1.3.1 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:1:3::1/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/9 shutdown # ospf 1 area 0.0.0.0 # ospfv3 1 area 0.0.0.1 # return
SwitchB configuration file
# sysname SwitchB # interface 10GE1/0/1 undo portswitch ip address 10.1.4.1 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:1:4::1/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/2 undo portswitch ip address 10.1.5.1 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:1:5::1/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/3 undo portswitch ip address 10.1.3.2 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:1:3::2/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/9 shutdown # ospf 1 area 0.0.0.0 # ospfv3 1 area 0.0.0.1 # return
SwitchC configuration file
# sysname SwitchC # interface 10GE1/0/1 undo portswitch ip address 10.2.1.1 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:2:1::1/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/2 undo portswitch ip address 10.2.2.1 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:2:2::1/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/3 undo portswitch ip address 10.2.3.1 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:2:3::1/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/9 shutdown # ospf 1 area 0.0.0.0 # ospfv3 1 area 0.0.0.1 # return
SwitchD configuration file
# sysname SwitchD # interface 10GE1/0/1 undo portswitch ip address 10.2.4.1 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:2:4::1/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/2 undo portswitch ip address 10.2.5.1 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:2:5::1/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/3 undo portswitch ip address 10.2.3.2 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:2:3::2/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/9 shutdown # ospf 1 area 0.0.0.0 # ospfv3 1 area 0.0.0.1 # return
SwitchE configuration file
# sysname SwitchE # dfs-group 1 priority 150 source ip 10.1.6.1 vpn-instance VRF-A peer 10.1.6.2 dual-active detection enhanced enable # vlan batch 11 # stp bridge-address 200b-c739-1300 stp mode rstp stp v-stp enable stp instance 0 root primary stp flush disable # lacp m-lag system-id 00e0-fc00-0000 lacp m-lag priority 10 # ip vpn-instance VRF-A ipv4-family route-distinguisher 100:1 vpn-target 111:1 export-extcommunity vpn-target 111:1 import-extcommunity # interface Vlanif11 ipv6 enable ip address 10.1.7.1 255.255.255.0 ipv6 address 2001:db8:1:7::1/64 vrrp vrid 1 virtual-ip 10.1.7.111 vrrp vrid 1 priority 120 vrrp6 vrid 1 virtual-ip FE80:1:7::111 link-local vrrp6 vrid 1 virtual-ip 2001:db8:1:7::111 vrrp6 vrid 1 priority 120 mac-address 0000-5e00-0102 ipv6 nd na glean # interface MEth0/0/0 ip binding vpn-instance VRF-A ip address 10.1.6.1 255.255.255.0 # interface Eth-Trunk0 mode lacp-static peer-link 1 port vlan exclude 1 # interface Eth-Trunk5 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 1 storm suppression broadcast cir 10 mbps # interface Eth-Trunk10 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 2 storm suppression broadcast cir 10 mbps # interface 10GE1/0/1 eth-trunk 5 # interface 10GE1/0/3 eth-trunk 0 # interface 10GE1/0/5 eth-trunk 10 # interface 10GE1/0/6 eth-trunk 10 # interface 10GE1/0/7 undo portswitch ip address 10.1.1.2 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:1:1::2/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/8 undo portswitch ip address 10.1.5.2 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:1:5::2/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/9 shutdown # interface 10GE2/0/3 eth-trunk 0 # ospf 1 import-route direct area 0.0.0.0 # ospfv3 1 area 0.0.0.1 # return
SwitchF configuration file
# sysname SwitchF # dfs-group 1 priority 120 source ip 10.1.6.2 vpn-instance VRF-A peer 10.1.6.1 dual-active detection enhanced enable # vlan batch 11 # stp bridge-address 200b-c739-1300 stp mode rstp stp v-stp enable stp instance 0 root primary stp flush disable # lacp m-lag system-id 00e0-fc00-0000 lacp m-lag priority 10 # ip vpn-instance VRF-A ipv4-family route-distinguisher 100:2 vpn-target 111:1 export-extcommunity vpn-target 111:1 import-extcommunity # interface Vlanif11 ipv6 enable ip address 10.1.7.1 255.255.255.0 ipv6 address 2001:db8:1:7::1/64 vrrp vrid 1 virtual-ip 10.1.7.111 vrrp vrid 1 priority 120 vrrp6 vrid 1 virtual-ip FE80:1:7::111 link-local vrrp6 vrid 1 virtual-ip 2001:db8:1:7::111 vrrp6 vrid 1 priority 120 mac-address 0000-5e00-0102 ipv6 nd na glean # interface MEth0/0/0 ip binding vpn-instance VRF-A ip address 10.1.6.2 255.255.255.0 # interface Eth-Trunk0 mode lacp-static peer-link 1 port vlan exclude 1 # interface Eth-Trunk5 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 1 storm suppression broadcast cir 10 mbps # interface Eth-Trunk10 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 2 storm suppression broadcast cir 10 mbps # interface 10GE1/0/1 eth-trunk 5 # interface 10GE1/0/3 eth-trunk 0 # interface 10GE1/0/5 eth-trunk 10 # interface 10GE1/0/6 eth-trunk 10 # interface 10GE1/0/7 undo portswitch ip address 10.1.4.2 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:1:4::2/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/8 undo portswitch ip address 10.1.2.2 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:1:2::2/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/9 shutdown # interface 10GE2/0/3 eth-trunk 0 # ospf 1 import-route direct area 0.0.0.0 # ospfv3 1 area 0.0.0.1 # return
SwitchG configuration file
# sysname SwitchG # dfs-group 1 priority 150 source ip 10.2.6.1 vpn-instance VRF-B peer 10.2.6.2 dual-active detection enhanced enable # vlan batch 11 # stp bridge-address 200b-c739-1300 stp mode rstp stp v-stp enable stp instance 0 root primary stp flush disable # lacp m-lag system-id 00e0-fc00-0001 lacp m-lag priority 10 # ip vpn-instance VRF-B ipv4-family route-distinguisher 101:1 vpn-target 111:1 export-extcommunity vpn-target 111:1 import-extcommunity # interface Vlanif11 ipv6 enable ip address 10.1.7.3 255.255.255.0 ipv6 address 2001:db8:1:7::3/64 vrrp vrid 1 virtual-ip 10.1.7.111 vrrp6 vrid virtual-ip FE80:1:7::111 link-local vrrp6 vrid virtual-ip 2001:db8:1:7::111 mac-address 0000-5e00-0103 ipv6 nd na glean # interface MEth0/0/0 ip binding vpn-instance VRF-B ip address 10.2.6.1 255.255.255.0 # interface Eth-Trunk0 mode lacp-static peer-link 1 port vlan exclude 1 # interface Eth-Trunk5 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 1 storm suppression broadcast cir 10 mbps # interface Eth-Trunk10 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 2 storm suppression broadcast cir 10 mbps # interface 10GE1/0/1 eth-trunk 5 # interface 10GE1/0/3 eth-trunk 0 # interface 10GE1/0/5 eth-trunk 10 # interface 10GE1/0/6 eth-trunk 10 # interface 10GE1/0/7 undo portswitch ip address 10.2.1.2 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:2:1::2/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/8 undo portswitch ip address 10.2.5.2 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:2:5::2/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/9 shutdown # interface 10GE2/0/3 eth-trunk 0 # ospf 1 import-route direct area 0.0.0.0 # ospfv3 1 area 0.0.0.1 # return
SwitchH configuration file
# sysname SwitchH # dfs-group 1 priority 120 source ip 10.2.6.2 vpn-instance VRF-B peer 10.2.6.1 dual-active detection enhanced enable # vlan batch 11 # stp bridge-address 200b-c739-1300 stp mode rstp stp v-stp enable stp instance 0 root primary stp flush disable # lacp m-lag system-id 00e0-fc00-0001 lacp m-lag priority 10 # ip vpn-instance VRF-B ipv4-family route-distinguisher 101:2 vpn-target 111:1 export-extcommunity vpn-target 111:1 import-extcommunity # interface Vlanif11 ipv6 enable ip address 10.1.7.3 255.255.255.0 ipv6 address 2001:db8:1:7::3/64 vrrp vrid 1 virtual-ip 10.1.7.111 vrrp6 vrid 1 virtual-ip FE80:1:7::111 link-local vrrp6 vrid 1 virtual-ip 2001:db8:1:7::111 mac-address 0000-5e00-0103 ipv6 nd na glean # interface MEth0/0/0 ip binding vpn-instance VRF-B ip address 10.2.6.2 255.255.255.0 # interface Eth-Trunk0 mode lacp-static peer-link 1 port vlan exclude 1 # interface Eth-Trunk5 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 1 storm suppression broadcast cir 10 mbps # interface Eth-Trunk10 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 2 storm suppression broadcast cir 10 mbps # interface 10GE1/0/1 eth-trunk 5 # interface 10GE1/0/3 eth-trunk 0 # interface 10GE1/0/5 eth-trunk 10 # interface 10GE1/0/6 eth-trunk 10 # interface 10GE1/0/7 undo portswitch ip address 10.2.4.2 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:2:4::2/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/8 undo portswitch ip address 10.2.2.2 255.255.255.0 ospf network-type p2p ospf enable 1 area 0.0.0.0 ipv6 enable ipv6 address 2001:db8:2:2::2/64 ospfv3 1 area 0.0.0.1 # interface 10GE1/0/9 shutdown # interface 10GE2/0/3 eth-trunk 0 # ospf 1 import-route direct area 0.0.0.0 # ospfv3 1 area 0.0.0.1 # return
SwitchI configuration file
# sysname SwitchI # dfs-group 1 priority 150 source ip 10.1.8.1 vpn-instance VRF-C peer 10.1.8.2 dual-active detection enhanced enable # vlan batch 11 # stp mode rstp stp v-stp enable stp flush disable # lacp m-lag system-id 00e0-fc00-0002 lacp m-lag priority 10 # ip vpn-instance VRF-C ipv4-family route-distinguisher 102:1 vpn-target 111:1 export-extcommunity vpn-target 111:1 import-extcommunity # interface MEth0/0/0 ip binding vpn-instance VRF-C ip address 10.1.8.1 255.255.255.0 # interface Eth-Trunk0 mode lacp-static peer-link 1 port vlan exclude 1 # interface Eth-Trunk35 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 mode lacp-static dfs-group 1 m-lag 1 storm suppression broadcast cir 10 mbps # interface Eth-Trunk40 stp edged-port enable stp bpdu-filter enable port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 2 storm suppression broadcast cir 10 mbps # interface 10GE1/0/2 eth-trunk 40 # interface 10GE1/0/3 eth-trunk 0 # interface 10GE1/0/5 eth-trunk 35 # interface 10GE1/0/6 eth-trunk 35 # interface 10GE1/0/9 shutdown # interface 10GE2/0/3 eth-trunk 0 # return
SwitchJ configuration file
# sysname SwitchJ # dfs-group 1 priority 120 source ip 10.1.8.2 vpn-instance VRF-C peer 10.1.8.1 dual-active detection enhanced enable # vlan batch 11 # stp mode rstp stp v-stp enable stp flush disable # lacp m-lag system-id 00e0-fc00-0002 lacp m-lag priority 10 # ip vpn-instance VRF-C ipv4-family route-distinguisher 102:2 vpn-target 111:1 export-extcommunity vpn-target 111:1 import-extcommunity # interface MEth0/0/0 ip binding vpn-instance VRF-C ip address 10.1.8.2 255.255.255.0 # interface Eth-Trunk0 mode lacp-static peer-link 1 port vlan exclude 1 # interface Eth-Trunk35 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 mode lacp-static dfs-group 1 m-lag 1 storm suppression broadcast cir 10 mbps # interface Eth-Trunk40 stp edged-port enable stp bpdu-filter enable port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 2 storm suppression broadcast cir 10 mbps # interface 10GE1/0/2 eth-trunk 40 # interface 10GE1/0/3 eth-trunk 0 # interface 10GE1/0/5 eth-trunk 35 # interface 10GE1/0/6 eth-trunk 35 # interface 10GE1/0/9 shutdown # interface 10GE2/0/3 eth-trunk 0 # return
SwitchK configuration file
# sysname SwitchK # dfs-group 1 priority 150 source ip 10.2.8.1 vpn-instance VRF-D peer 10.2.8.2 dual-active detection enhanced enable # vlan batch 11 # stp mode rstp stp v-stp enable stp flush disable # lacp m-lag system-id 00e0-fc00-0003 lacp m-lag priority 10 # ip vpn-instance VRF-D ipv4-family route-distinguisher 103:1 vpn-target 111:1 export-extcommunity vpn-target 111:1 import-extcommunity # interface MEth0/0/0 ip binding vpn-instance VRF-D ip address 10.2.8.1 255.255.255.0 # interface Eth-Trunk0 mode lacp-static peer-link 1 port vlan exclude 1 # interface Eth-Trunk45 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 mode lacp-static dfs-group 1 m-lag 1 storm suppression broadcast cir 10 mbps # interface Eth-Trunk50 stp edged-port enable stp bpdu-filter enable port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 2 storm suppression broadcast cir 10 mbps # interface 10GE1/0/2 eth-trunk 50 # interface 10GE1/0/3 eth-trunk 0 # interface 10GE1/0/5 eth-trunk 45 # interface 10GE1/0/6 eth-trunk 45 # interface 10GE1/0/9 shutdown # interface 10GE2/0/3 eth-trunk 0 # return
SwitchL configuration file
# sysname SwitchK # dfs-group 1 priority 120 source ip 10.2.8.2 vpn-instance VRF-D peer 10.2.8.1 dual-active detection enhanced enable # vlan batch 11 # stp mode rstp stp v-stp enable stp flush disable # lacp m-lag system-id 00e0-fc00-0003 lacp m-lag priority 10 # ip vpn-instance VRF-D ipv4-family route-distinguisher 103:2 vpn-target 111:1 export-extcommunity vpn-target 111:1 import-extcommunity # interface MEth0/0/0 ip binding vpn-instance VRF-D ip address 10.2.8.2 255.255.255.0 # interface Eth-Trunk0 mode lacp-static peer-link 1 port vlan exclude 1 # interface Eth-Trunk45 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 mode lacp-static dfs-group 1 m-lag 1 storm suppression broadcast cir 10 mbps # interface Eth-Trunk50 stp edged-port enable stp bpdu-filter enable port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 stp root-protection mode lacp-static dfs-group 1 m-lag 2 storm suppression broadcast cir 10 mbps # interface 10GE1/0/2 eth-trunk 50 # interface 10GE1/0/3 eth-trunk 0 # interface 10GE1/0/5 eth-trunk 45 # interface 10GE1/0/6 eth-trunk 45 # interface 10GE1/0/9 shutdown # interface 10GE2/0/3 eth-trunk 0 # return
SwitchM configuration file
# sysname SwitchM # vlan batch 11 # stp mode rstp stp bpdu-protection # interface Eth-Trunk15 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 mode lacp-static storm suppression broadcast cir 10 mbps # interface 10GE1/0/1 eth-trunk 15 # interface 10GE1/0/2 eth-trunk 15 # interface 10GE1/0/3 port default vlan 11 stp edged-port enable # interface 10GE1/0/9 shutdown # return
SwitchN configuration file
# sysname SwitchN # vlan batch 11 # stp mode rstp stp bpdu-protection # interface Eth-Trunk30 port link-type trunk undo port trunk allow-pass vlan 1 port trunk allow-pass vlan 11 mode lacp-static storm suppression broadcast cir 10 mbps # interface 10GE1/0/1 eth-trunk 30 # interface 10GE1/0/2 eth-trunk 30 # interface 10GE1/0/3 port default vlan 11 stp edged-port enable # interface 10GE1/0/9 shutdown # return