Junos OS

 View Only
last person joined: 6 days ago 

Ask questions and share experiences about Junos OS.
  • 1.  vMX or MX - sampling on logical interface with encapsulation bridge domain

    Posted 02-19-2018 16:08

    Hi all,

    Does somebody have a clue if on vMX or MX204, flow sampling is possible on a logical interface with encapsulation bridge-domain? 

    I'm working on a L2gateway bridging two vlans using vxlan and need to have some visibility of traffic passing this L2 vxlan tunnel, this is the solution:

    VlanA-----[vMX]---------{IP Network}------[vMX]--------VlanB

     

    It seems it's only possible to apply ipv4/ipv6 sampling templates under family inet, but not on bride domain interfaces, and of course, if I sample on the WAN side, i only get VXLAN's UDP traffic.

     

    Is there a way to achive sampling on bridge domain? I haven't found much information of this on MX routers.

     

    REally appreciate any help.



  • 2.  RE: vMX or MX - sampling on logical interface with encapsulation bridge domain
    Best Answer

    Posted 02-19-2018 19:45

    Hi,

    IMO, sampling is not supported for bridge-domain. There is an option for "family vpls" but I doubt it will work. You can probably use port-mirroring instead?

     

    Here are some links for your reference:

    https://www.juniper.net/documentation/en_US/junos/topics/concept/layer-2-services-port-mirroring-overview.html

    https://www.juniper.net/documentation/en_US/junos/topics/example/layer-2-services-port-mirroring-firewall-filter-logical-interface-example.html

    https://kb.juniper.net/KB19497

     

    Thanks