Contrail Config Example: различия между версиями

Материал из noname.com.ua
Перейти к навигацииПерейти к поиску
 
Строка 1: Строка 1:
 
[[Категория:Contrail]]
 
[[Категория:Contrail]]
[[Категория:Tangsten Fabric]]
+
[[Категория:Tungsten Fabric]]
[[Категория:Networking]]
 
[[Категория:Contrail]]
 
[[Категория:Tangsten Fabric]]
 
 
[[Категория:Networking]]
 
[[Категория:Networking]]
 
=Примеры конфигов=
 
=Примеры конфигов=

Текущая версия на 15:07, 18 августа 2025

Примеры конфигов

не знаю откуда этот пример

!
! Last configuration change at 15:12:35 EDT Wed Mar 28 2018 by wmarti
! NVRAM config last updated at 15:12:45 EDT Wed Mar 28 2018 by wmarti
!
version 16.7
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
service call-home
platform qfp utilization monitor load 80
no platform punt-keepalive disable-kernel-core
platform console serial
platform hardware throughput level MB 2500 
!
hostname WDCOSR7
!
boot-start-marker
boot-end-marker
!
!
vrf definition Contrail
 rd 64512:10000
 route-target export 64512:10000
 route-target import 64512:10000
 !
 address-family ipv4
 exit-address-family
!
!
aaa new-model
!
!
aaa group server radius rad_admin
 server name datactrpdp1
 server name drsitepdp1
!
aaa authentication login default group rad_admin local
aaa authorization console
aaa authorization exec default group rad_admin local 
!
!
!
!
!
aaa session-id common
clock timezone EST -5 0
clock summer-time EDT recurring
!
!
!
login on-failure log
login on-success log
!
!
!
!
!
!
!
subscriber templating
! 
! 
! 
! 
!
!
!
multilink bundle-name authenticated
!
!
interface Loopback0
 no ip address
!
interface Loopback100
 vrf forwarding Contrail
 ip address 10.233.195.5 255.255.255.0
!
interface GigabitEthernet1
 ip address dhcp
 negotiation auto
 no mop enabled
 no mop sysid
!
interface GigabitEthernet2
 mtu 9216
 ip address 10.233.198.5 255.255.255.0
 negotiation auto
 no mop enabled
 no mop sysid
!
interface GigabitEthernet2.9
 encapsulation dot1Q 9
 vrf forwarding Contrail
 ip address 10.233.200.5 255.255.255.0
!
interface GigabitEthernet2.10
 encapsulation dot1Q 10
 vrf forwarding Contrail
 ip address 10.233.204.5 255.255.255.0
!
interface GigabitEthernet2.11
 encapsulation dot1Q 11
 vrf forwarding Contrail
 ip address 10.233.208.5 255.255.255.0
!
interface GigabitEthernet2.12
 encapsulation dot1Q 12
 vrf forwarding Contrail
 ip address 10.233.224.5 255.255.255.0
!
interface GigabitEthernet2.13
 encapsulation dot1Q 13
 vrf forwarding Contrail
 ip address 10.233.240.5 255.255.255.0
!
interface GigabitEthernet3
 no ip address
 shutdown
 negotiation auto
 no mop enabled
 no mop sysid
!
interface GigabitEthernet4
 vrf forwarding Contrail
 no ip address
 negotiation auto
 no mop enabled
 no mop sysid
!
l3vpn encapsulation ip MGRE
 transport ipv4 source GigabitEthernet2
router bgp 64512
 bgp router-id 10.233.198.5
 bgp log-neighbor-changes
 neighbor 10.233.198.21 remote-as 64512
 neighbor 10.233.198.22 remote-as 64512
 neighbor 10.233.198.23 remote-as 64512
 !
 address-family vpnv4
  neighbor 10.233.198.21 activate
  neighbor 10.233.198.21 send-community extended
  neighbor 10.233.198.21 route-map SELECT_UPDATE_FOR_L3VPN in
  neighbor 10.233.198.22 activate
  neighbor 10.233.198.22 send-community extended
  neighbor 10.233.198.22 route-map SELECT_UPDATE_FOR_L3VPN in
  neighbor 10.233.198.23 activate
  neighbor 10.233.198.23 send-community extended
  neighbor 10.233.198.23 route-map SELECT_UPDATE_FOR_L3VPN in
 exit-address-family
 !
 address-family ipv4 vrf Contrail
  redistribute connected
  redistribute static
  default-information originate
 exit-address-family
!
ip forward-protocol nd
no ip http server
no ip http secure-server
ip route vrf Contrail 0.0.0.0 0.0.0.0 10.233.240.254
!
!
ip radius source-interface GigabitEthernet2 
logging origin-id hostname
logging source-interface Loopback0
logging host 10.254.100.34 transport udp port 9989
logging host 10.227.59.224
access-list 21 permit 10.227.68.142
access-list 21 permit 10.227.59.224
access-list 21 permit 10.227.68.144
access-list 21 permit 10.227.59.31
!
!
route-map SELECT_UPDATE_FOR_L3VPN permit 10 
 set ip next-hop encapsulate l3vpn MGRE
!
!
!
radius-server attribute 6 on-for-login-auth
radius-server attribute 8 include-in-access-req
!
radius server datactrpdp1
 address ipv4 10.227.68.142 auth-port 1812 acct-port 1813
!
radius server drsitepdp1
 address ipv4 10.227.68.144 auth-port 1812 acct-port 1813
!
!
control-plane
!
!
line con 0
 stopbits 1
line vty 0 4
 transport preferred none
 transport input ssh
 transport output ssh
!
ntp server 10.233.193.254
!
end