aboutsummaryrefslogtreecommitdiffstats
path: root/examples/tg25/netconf/d1-1-roof.tg25.tg.no.conf
blob: e9ed8755118cf9e394003fe88848b2011e305165 (plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
!
no enable password
no aaa root
!
username admin privilege 15 role network-admin secret sha512 <removed>
username cvpadmin privilege 15 role network-admin secret sha512 <removed>
!
daemon TerminAttr
   exec /usr/bin/TerminAttr -cvaddr=apiserver.arista.io:443 -cvauth=token-secure,/tmp/cv-onboarding-token -cvvrf=MGMT -smashexcludes=ale,flexCounter,hardware,kni,pulse,strata -ingestexclude=/Sysdb/cell/1/agent,/Sysdb/cell/2/agent -taillogs
   no shutdown
!
vlan internal order ascending range 1006 1199
!
transceiver qsfp default-mode 4x10G
!
service routing protocols model multi-agent
!
queue-monitor length
queue-monitor length default thresholds 2048 1024
!
hostname d1-1-roof
ip name-server vrf MGMT 1.1.1.1
dns domain tg25.tg.no
!
sflow sample 16384
sflow polling-interval 10
sflow destination 127.0.0.1
sflow source-interface Loopback0
sflow run
!
snmp-server ipv4 access-list mgmt_access vrf MGMT
snmp-server ipv4 access-list mgmt_access vrf INET
snmp-server contact TechNet
snmp-server location FABRIC d1-1-roof
snmp-server community <removed> ro
snmp-server vrf INET
snmp-server vrf MGMT
!
spanning-tree mode none
!
clock timezone CET
!
vrf instance MGMT
!
management api http-commands
   protocol https
   no shutdown
   !
   vrf MGMT
      no shutdown
!
tacacs-server host <removed> vrf MGMT key 7 <removed>
!
interface Ethernet1/1
   description P2P_d1-floor_Ethernet97/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Ethernet2/1
   description P2P_d2-floor_Ethernet97/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Ethernet3/1
   description P2P_d3-floor_Ethernet97/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Ethernet4/1
   description P2P_d4-floor_Ethernet97/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Ethernet7/1
   description P2P_d1-noc_Ethernet53/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Ethernet8/1
   description P2P_d1-crew_Ethernet97/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Ethernet10/1
   description P2P_d1-stand_Ethernet97/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Ethernet13/1
   description P2P_d1-1-tele_Ethernet49/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Ethernet14/1
   description P2P_d1-2-tele_Ethernet49/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Ethernet15/1
   description P2P_d2-1-stand_Ethernet49/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Ethernet16/1
   description P2P_d2-2-stand_Ethernet49/1
   no shutdown
   mtu 9100
   no switchport
   ipv6 enable
!
interface Loopback0
   description ROUTER_ID
   no shutdown
   ip address 10.255.0.1/32
   ipv6 address 2a06:5841:e::1/128
!
interface Management1
   description OOB_MANAGEMENT
   no shutdown
   vrf MGMT
   ip address 185.110.148.66/27
   ipv6 enable
   ipv6 address 2a06:5841:f:1::66/64
!
ip access-list standard mgmt_access
   10 permit <removed>
   11 permit <removed>
   666 deny any
!
ip routing ipv6 interfaces
no ip routing vrf MGMT
!
ip prefix-list PL-LOOPBACKS-EVPN-OVERLAY
   seq 10 permit 10.255.0.0/27 eq 32
!
ipv6 prefix-list PL-LOOPBACKS-EVPN-OVERLAY-V6
   seq 10 permit 2a06:5841:e::/64 eq 128
!
ipv6 unicast-routing
!
ip route vrf MGMT 0.0.0.0/0 185.110.148.65
!
ipv6 route vrf MGMT ::/0 2a06:5841:f:1::1
!
ntp local-interface vrf MGMT Management1
ntp server vrf MGMT ntp.uio.no prefer
!
route-map RM-CONN-2-BGP permit 10
   match ip address prefix-list PL-LOOPBACKS-EVPN-OVERLAY
!
route-map RM-CONN-2-BGP permit 30
   match ipv6 address prefix-list PL-LOOPBACKS-EVPN-OVERLAY-V6
!
router bfd
   multihop interval 300 min-rx 300 multiplier 3
!
router bgp 65100
   router-id 10.255.0.1
   update wait-install
   no bgp default ipv4-unicast
   maximum-paths 4 ecmp 4
   neighbor EVPN-OVERLAY-PEERS peer group
   neighbor EVPN-OVERLAY-PEERS next-hop-unchanged
   neighbor EVPN-OVERLAY-PEERS update-source Loopback0
   neighbor EVPN-OVERLAY-PEERS bfd
   neighbor EVPN-OVERLAY-PEERS ebgp-multihop 3
   neighbor EVPN-OVERLAY-PEERS password 7 <removed>
   neighbor EVPN-OVERLAY-PEERS send-community
   neighbor EVPN-OVERLAY-PEERS maximum-routes 0
   neighbor IPv4-UNDERLAY-PEERS peer group
   neighbor IPv4-UNDERLAY-PEERS password 7 <removed>
   neighbor IPv4-UNDERLAY-PEERS send-community
   neighbor IPv4-UNDERLAY-PEERS maximum-routes 12000
   neighbor 2a06:5841:e::10 peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::10 remote-as 65104
   neighbor 2a06:5841:e::10 description d3-floor_Loopback0
   neighbor 2a06:5841:e::11 peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::11 remote-as 65105
   neighbor 2a06:5841:e::11 description d4-floor_Loopback0
   neighbor 2a06:5841:e::12 peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::12 remote-as 65106
   neighbor 2a06:5841:e::12 description d1-crew_Loopback0
   neighbor 2a06:5841:e::13 peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::13 remote-as 65110
   neighbor 2a06:5841:e::13 description d1-1-tele_Loopback0
   neighbor 2a06:5841:e::14 peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::14 remote-as 65110
   neighbor 2a06:5841:e::14 description d1-2-tele_Loopback0
   neighbor 2a06:5841:e::15 peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::15 remote-as 65111
   neighbor 2a06:5841:e::15 description d2-1-stand_Loopback0
   neighbor 2a06:5841:e::16 peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::16 remote-as 65111
   neighbor 2a06:5841:e::16 description d2-2-stand_Loopback0
   neighbor 2a06:5841:e::17 peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::17 remote-as 65112
   neighbor 2a06:5841:e::17 description d1-noc_Loopback0
   neighbor 2a06:5841:e::d peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::d remote-as 65101
   neighbor 2a06:5841:e::d description d1-stand_Loopback0
   neighbor 2a06:5841:e::e peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::e remote-as 65102
   neighbor 2a06:5841:e::e description d1-floor_Loopback0
   neighbor 2a06:5841:e::f peer group EVPN-OVERLAY-PEERS
   neighbor 2a06:5841:e::f remote-as 65103
   neighbor 2a06:5841:e::f description d2-floor_Loopback0
   redistribute connected route-map RM-CONN-2-BGP
   neighbor interface Ethernet1/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65102
   neighbor interface Ethernet2/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65103
   neighbor interface Ethernet3/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65104
   neighbor interface Ethernet4/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65105
   neighbor interface Ethernet7/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65112
   neighbor interface Ethernet8/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65106
   neighbor interface Ethernet10/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65101
   neighbor interface Ethernet13/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65110
   neighbor interface Ethernet14/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65110
   neighbor interface Ethernet15/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65111
   neighbor interface Ethernet16/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65111
   !
   address-family evpn
      neighbor EVPN-OVERLAY-PEERS activate
   !
   address-family ipv4
      no neighbor EVPN-OVERLAY-PEERS activate
      neighbor IPv4-UNDERLAY-PEERS activate
      neighbor IPv4-UNDERLAY-PEERS next-hop address-family ipv6 originate
   !
   address-family ipv6
      neighbor IPv4-UNDERLAY-PEERS activate
!
management ssh
   ip access-group mgmt_access vrf INET in
   ip access-group mgmt_access vrf MGMT in
   authentication empty-passwords deny
   !
   vrf CLIENTS
      shutdown
   !
   vrf INET
      no shutdown
   !
   vrf MGMT
      no shutdown
!
service unsupported-transceiver <removed>
!
end