手工静态建立VXLAN隧道
软件包版本
<Border>dis version
Huawei Versatile Routing Platform Software
VRP (R) software, Version 8.180 (CE12800 V200R005C10SPC607B607)
Copyright (C) 2012-2018 Huawei Technologies Co., Ltd.
HUAWEI CE12800 uptime is 0 day, 0 hour, 12 minutes
SVRP Platform Version 1.0
拓扑图
1.配置IP地址
<Border>system-view immediately //使输入命令生效
[Border]int g1/0/0
[Border-GE1/0/0]undo shutdown
[Border-GE1/0/0]undo portswitch
[Border-GE1/0/0]ip address 10.1.13.3 24
[Border]int g1/0/1
[Border-GE1/0/1]undo shutdown
[Border-GE1/0/1]undo portswitch
[Border-GE1/0/1]ip address 10.1.23.3 24
[*Border-GE1/0/0]commit //使输入命令生效
<Edge1>system-view immediately
[~Edge1]int g1/0/0
[~Edge1-GE1/0/0]undo shutdown
[*Edge1-GE1/0/0]undo portswitch
[*Edge1-GE1/0/0]ip address 10.1.13.1 24
<Edge2>system-view immediately
Enter system view, return user view with return command.
[Edge2]int g1/0/1
[Edge2-GE1/0/1]undo shutdown
[Edge2-GE1/0/1]undo portswitch
[Edge2-GE1/0/1]ip add 10.1.23.2 24
2.加入到OSPF
[Border]info-center enable 打开日志
Info: Information center is enabled.
[Border]ospf router-id 3.3.3.3
[Border-ospf-1]area 0
[Border-ospf-1-area-0.0.0.0]int g1/0/0
[Border-GE1/0/0]ospf enable 1 area 0
[Border-GE1/0/0]int g1/0/1
[Border-GE1/0/1]ospf enable 1 area 0
[Border-GE1/0/1]int lo0
[Border-LoopBack0]ip add 3.3.3.3 32
[Border-LoopBack0]ospf enable 1 area 0
[~Edge1]ospf router-id 1.1.1.1
[*Edge1-ospf-1]area 0
[*Edge1-ospf-1-area-0.0.0.0]int g1/0/0
[*Edge1-GE1/0/0]ospf enable 1 area 0
[*Edge1-GE1/0/0]int lo0
[*Edge1-LoopBack0]ip add 1.1.1.1 32
[*Edge1-LoopBack0]ospf enable 1 area 0
[Edge2]ospf router-id 2.2.2.2
[Edge2-ospf-1]area 0
[Edge2-ospf-1-area-0.0.0.0]int g1/0/1
[Edge2-GE1/0/1]ospf enable 1 area 0
[Edge2-GE1/0/1]int lo0
[Edge2-LoopBack0]ip add 2.2.2.2 32
[Edge2-LoopBack0]ospf enable 1 area 0
[Border]dis ospf peer br //验证邻居
OSPF Process 1 with Router ID 3.3.3.3
Area Id Interface Neighbor id State
0.0.0.0 GE1/0/0 1.1.1.1 Full
0.0.0.0 GE1/0/1 2.2.2.2 Full
[Border]dis ip routing-table protocol ospf //验证OSPF路由
OSPF routing table status : <Active>
Destinations : 2 Routes : 2
Destination/Mask Proto Pre Cost Flags NextHop Interface
1.1.1.1/32 OSPF 10 1 D 10.1.13.1 GE1/0/0
2.2.2.2/32 OSPF 10 1 D 10.1.23.2 GE1/0/1
OSPF routing table status : <Inactive>
Destinations : 3 Routes : 3
Destination/Mask Proto Pre Cost Flags NextHop Interface
3.3.3.3/32 OSPF 10 0 3.3.3.3 LoopBack0
10.1.13.0/24 OSPF 10 1 10.1.13.3 GE1/0/0
10.1.23.0/24 OSPF 10 1 10.1.23.3 GE1/0/1
3.配置业务接入点
[~Edge1]bridge-domain 10 //配置桥接域
[*Edge1-bd10]vxlan vni 10 //VNI是2层VNI 桥接域和VNI对应
Info: Please disable dynamic ARP learning when the controller is used to deliver
ARP entries.
[~Edge1]int g1/0/2
[~Edge1-GE1/0/2]undo shutdown //需要手动开启物理接口
[*Edge1]int g1/0/2.10 mode L2 //配置二层子接口作为VXLAN的业务接入接口
[~Edge1-GE1/0/2.10]encapsulation dot1q vid 10 //允许携带VLAN TAG10的以太帧进入子接口,在出方向封装VLAN 标记10
[*Edge1-GE1/0/2.10]bridge-domain 10 //绑定桥接域10,即代表VNI 10的流量
[Edge2]bridge-domain 10
[Edge2-bd10]vxlan vni 10
Info: Please disable dynamic ARP learning when the controller is used to deliver
ARP entries.
[Edge2-bd10]int g1/0/2
[Edge2-GE1/0/2]undo shutdown
[Edge2-GE1/0/2]int g1/0/2.10 mode L2
[Edge2-GE1/0/2.10]bridge-domain 10
[Edge2-GE1/0/2.10]encapsulation dot1q vid 10 //哪些帧可以进入VXLAN隧道
[~Edge1-GE1/0/2]dis bridge-domain 10 验证桥接域状态
--------------------------------------------------------------------------------
MAC_LRN: MAC learning; STAT: Statistics; SPLIT: Split-horizon;
BC: Broadcast; MC: Unknown multicast; UC: Unknown unicast;
*down: Administratively down; FWD: Forward; DSD: Discard;
U: Up; D: Down;
--------------------------------------------------------------------------------
BDID Ports
--------------------------------------------------------------------------------
10 GE1/0/2.10(U) 和子接口进行绑定地址
BDID State MAC-LRN STAT BC MC UC SPLIT Description
--------------------------------------------------------------------------------
10 up enable disable FWD FWD FWD disable
BDID VLANIDs
--------------------------------------------------------------------------------
10
4.配置Edge之间的VXLAN隧道(BGP EVPN协议即控制平面 VXLAN转发层面)
手工静态建立VXLAN隧道
[~Edge1]int Nve 1 //创建虚拟化设备接口
[*Edge1-Nve1]source 1.1.1.1 //自身VTEP的源地址
[*Edge1-Nve1]vni 10 head-end peer-list 2.2.2.2 //远端的目的地址
//配置VNI10的头段复制列表(BUM头部:广播帧,未知单播帧,组播帧如泛洪)
[Edge2]int Nve 1
[Edge2-Nve1]source 2.2.2.2
[Edge2-Nve1]vni 10 head-end peer-list 1.1.1.1
[Edge2-Nve1]dis vxlan tunnel //查看VXLAN隧道
Number of vxlan tunnel : 1
Tunnel ID Source Destination State Type Uptime
--------------------------------------------------------------------------------
---
4026531841 2.2.2.2 1.1.1.1 up static 00:00:33
5.此时还是不可以通信因为接入网络默认vlan1
配置SW1和SW2
[SW1]vlan 10
[SW1-vlan10]int g0/0/10
[SW1-GigabitEthernet0/0/10]port link-type access
[SW1-GigabitEthernet0/0/10]port default vlan 10
[SW1-GigabitEthernet0/0/10]int g0/0/2
[SW1-GigabitEthernet0/0/2]port link-type trunk
[SW1-GigabitEthernet0/0/2]port trunk allow-pass vlan 10
[SW2]vlan 10
[SW2-vlan10]int g0/0/10
[SW2-GigabitEthernet0/0/10]port link-type access
[SW2-GigabitEthernet0/0/10]port default vlan 10
[SW2-GigabitEthernet0/0/10]int g0/0/2
[SW2-GigabitEthernet0/0/2]port link-type trunk
[SW2-GigabitEthernet0/0/2]port trunk allow-pass vlan 10
PC>ping 172.16.1.2
From 172.16.1.2: bytes=32 seq=1 ttl=128 time=62 ms
From 172.16.1.2: bytes=32 seq=2 ttl=128 time=63 ms
抓包
VNI
UDP端口
VTEP地址
两层MAC封装