Certifications

Expand all | Collapse all

vMX evpn/vxlan virtual-gateway configuration questions

Jump to Best Answer
  • 1.  vMX evpn/vxlan virtual-gateway configuration questions

    Posted 05-14-2020 21:29

    I configured evpn/vlxan virtual gateways on QFX10008, it works fine.

    I am doing some training lab where vMX is used. I could not get it working.

    set interfaces irb unit 100 virtual-gateway-accept-data   (training material)
    set interfaces irb unit 100 family inet address 10.200.100.250/24 virtual-gateway-address 10.200.100.254
    set interfaces irb unit 101 proxy-macip-advertisement   (JNCIE Tech site)
    set interfaces irb unit 101 family inet address 10.200.101.250/24 virtual-gateway-address 10.200.101.254
    

    which is a right approach? what differences ?

    On the client, I can see the arp.

    Server-3#show arp
    Protocol  Address          Age (min)  Hardware Addr   Type   Interface
    Internet  10.200.101.3            -   aabb.cc00.b000  ARPA   Ethernet0/0.101
    Internet  10.200.101.250          5   2c6b.f57b.b3f0  ARPA   Ethernet0/0.101
    Internet  10.200.101.254        125   0000.5e00.0101  ARPA   Ethernet0/0.101
    

    On vMX, I can see MAC for server-3

    root@vMX7# run show bridge mac-table
    
    MAC flags       (S -static MAC, D -dynamic MAC, L -locally learned, C -Control MAC
        O -OVSDB MAC, SE -Statistics enabled, NM -Non configured MAC, R -Remote PE MAC)
    
    Routing instance : overlay
     Bridging domain : BD-101, VLAN : 101
       MAC                 MAC      Logical                Active
       address             flags    interface              source
       aa:bb:cc:00:b0:00   DL       ae0.0
    

    But ping does not work.

    Server-3#ping 10.200.101.254
    Type escape sequence to abort.
    Sending 5, 100-byte ICMP Echos to 10.200.101.254, timeout is 2 seconds:
    .....
    Success rate is 0 percent (0/5)
    

    vxlan configuration

    root@vMX7# show routing-instances | display set
    set routing-instances overlay vtep-source-interface lo0.0
    set routing-instances overlay instance-type virtual-switch
    set routing-instances overlay interface ae0.0
    set routing-instances overlay interface ae1.0
    set routing-instances overlay route-distinguisher 10.200.0.7:7
    set routing-instances overlay vrf-target target:64513:1
    set routing-instances overlay vrf-target auto
    set routing-instances overlay protocols evpn encapsulation vxlan
    set routing-instances overlay protocols evpn extended-vni-list all
    set routing-instances overlay protocols evpn multicast-mode ingress-replication
    set routing-instances overlay protocols evpn default-gateway no-gateway-community
    set routing-instances overlay bridge-domains BD-100 vlan-id 100
    set routing-instances overlay bridge-domains BD-100 routing-interface irb.100
    set routing-instances overlay bridge-domains BD-100 vxlan vni 5100
    set routing-instances overlay bridge-domains BD-100 vxlan ingress-node-replication
    set routing-instances overlay bridge-domains BD-101 vlan-id 101
    set routing-instances overlay bridge-domains BD-101 routing-interface irb.101
    set routing-instances overlay bridge-domains BD-101 vxlan vni 5101
    

    thanks in advance !!



  • 2.  RE: vMX evpn/vxlan virtual-gateway configuration questions
    Best Answer

     
    Posted 05-15-2020 00:41
    Hi Gentlemen,

    The accept data knob is paramount to allow ICMPs towards the Virtual gateway, I don't see you have that configured for IRB 101.

    The difference is that the macip-advertisement makes the Layer 3 gateway advertises the host MAC and IP routes along with the next hop, which is set to the Layer 2 gateway to which the host is attached.

    If this solves your problem, please mark this post as "Accepted Solution" so we can help others too \Smiley Happy/

    Regards,

    Lil Dexx
    JNCIE-ENT#863, 3X JNCIP-[SP-ENT-DC], 4X JNCIA [cloud-DevOps-Junos-Design], Champions Ingenius, SSYB


  • 3.  RE: vMX evpn/vxlan virtual-gateway configuration questions

    Posted 05-15-2020 06:29

    thanks for taking a look.

    I did have this line

    set interfaces irb unit 101 virtual-gateway-accept-data.

    But it did not work, I removed and tried proxy-macip-advertisement;

    Unfortunately, not work either.

    Not sure whether because of vMX image.

    Can you see any configuration issue if I add virtual-gateway-accept-data back ?

     

    thanks !!

     



  • 4.  RE: vMX evpn/vxlan virtual-gateway configuration questions

     
    Posted 05-15-2020 11:35

    Hey 

     

    Something else you could try is to upgrade to the latest and greatest. then I would have the following knob configured: virtual-gateway-v4-mac.

     

    You can explicitly configure an IPv4 or IPv6 MAC address for a default gateway by using the virtual-gateway-v4-mac or virtual-gateway-v6-mac configuration statement at the [edit interfaces name irb unit logical-unit-number] hierarchy level. After you perform this configuration, the automatically generated MAC address is overridden by the configured MAC address. 

     

    If this solves your problem, please mark this post as "Accepted Solution" so we can help others too \:)/

    Regards,

     

    Lil Dexx
    JNCIE-ENT#863, 3X JNCIP-[SP-ENT-DC], 4X JNCIA [cloud-DevOps-Junos-Design], Champions Ingenius, SSYB



  • 5.  RE: vMX evpn/vxlan virtual-gateway configuration questions

    Posted 05-15-2020 14:44

    Sorry it is my bad.  I found my vtep-source-interface wrong. It should be lo0.0. I entered lo0 instead in one of the routers.



  • 6.  RE: vMX evpn/vxlan virtual-gateway configuration questions

    Posted 05-15-2020 14:45

    thanks so much !!