blob: adca8b9f07b1ca1339011102074f4baa823992d4 (
plain)
1
2
3
4
5
6
7
8
9
10
11
12
13
14
15
16
17
18
19
20
21
22
23
24
25
26
27
28
29
30
31
32
33
34
35
36
37
38
39
40
41
42
43
44
45
46
47
48
49
50
51
52
53
54
55
56
57
58
59
60
61
62
63
64
65
66
67
68
69
70
71
72
73
74
75
76
77
78
79
80
81
82
83
84
85
86
87
88
89
90
91
92
93
94
95
96
97
98
99
100
101
102
103
104
105
106
107
108
109
110
111
112
113
114
115
116
117
118
119
120
121
122
123
124
125
126
127
128
129
130
131
132
133
134
135
136
137
138
139
140
141
142
143
144
145
146
147
148
149
150
151
152
153
154
155
156
157
158
159
160
161
162
163
164
165
166
167
168
169
170
171
172
173
174
175
176
177
178
179
180
181
182
183
184
185
186
187
188
189
190
191
192
193
194
195
196
197
198
199
200
201
202
203
204
205
206
207
208
209
210
211
212
213
214
215
216
217
218
219
220
221
222
223
224
225
226
227
228
229
230
231
232
233
234
235
236
237
238
239
240
241
242
243
244
245
246
247
248
249
250
251
252
253
254
255
256
257
258
259
260
261
262
263
264
265
266
267
|
!
no enable password
no aaa root
!
username admin privilege 15 role network-admin secret sha512 <removed>
username cvpadmin privilege 15 role network-admin secret sha512 <removed>
!
daemon TerminAttr
exec /usr/bin/TerminAttr -cvaddr=apiserver.arista.io:443 -cvauth=token-secure,/tmp/cv-onboarding-token -cvvrf=MGMT -smashexcludes=ale,flexCounter,hardware,kni,pulse,strata -ingestexclude=/Sysdb/cell/1/agent,/Sysdb/cell/2/agent -taillogs
no shutdown
!
vlan internal order ascending range 1006 1199
!
transceiver qsfp default-mode 4x10G
!
service routing protocols model multi-agent
!
queue-monitor length
queue-monitor length default thresholds 2048 1024
!
hostname d1-2-roof
ip name-server vrf MGMT 1.1.1.1
dns domain tg25.tg.no
!
sflow sample 16384
sflow polling-interval 10
sflow destination 127.0.0.1
sflow source-interface Loopback0
sflow run
!
snmp-server ipv4 access-list mgmt_access vrf MGMT
snmp-server ipv4 access-list mgmt_access vrf INET
snmp-server contact TechNet
snmp-server location FABRIC d1-2-roof
snmp-server community <removed> ro
snmp-server vrf INET
snmp-server vrf MGMT
!
spanning-tree mode none
!
clock timezone CET
!
vrf instance MGMT
!
management api http-commands
protocol https
no shutdown
!
vrf MGMT
no shutdown
!
tacacs-server host <removed> vrf MGMT key 7 <removed>
!
interface Ethernet1/1
description P2P_d1-floor_Ethernet98/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Ethernet2/1
description P2P_d2-floor_Ethernet98/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Ethernet3/1
description P2P_d3-floor_Ethernet98/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Ethernet4/1
description P2P_d4-floor_Ethernet98/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Ethernet7/1
description P2P_d1-noc_Ethernet54/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Ethernet8/1
description P2P_d1-crew_Ethernet98/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Ethernet10/1
description P2P_d1-stand_Ethernet98/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Ethernet13/1
description P2P_d1-1-tele_Ethernet50/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Ethernet14/1
description P2P_d1-2-tele_Ethernet50/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Ethernet15/1
description P2P_d2-1-stand_Ethernet50/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Ethernet16/1
description P2P_d2-2-stand_Ethernet50/1
no shutdown
mtu 9100
no switchport
ipv6 enable
!
interface Loopback0
description ROUTER_ID
no shutdown
ip address 10.255.0.2/32
ipv6 address 2a06:5841:e::2/128
!
interface Management1
description OOB_MANAGEMENT
no shutdown
vrf MGMT
ip address 185.110.148.67/27
ipv6 enable
ipv6 address 2a06:5841:f:1::67/64
!
ip access-list standard mgmt_access
10 permit <removed>
11 permit <removed>
666 deny any
!
ip routing ipv6 interfaces
no ip routing vrf MGMT
!
ip prefix-list PL-LOOPBACKS-EVPN-OVERLAY
seq 10 permit 10.255.0.0/27 eq 32
!
ipv6 prefix-list PL-LOOPBACKS-EVPN-OVERLAY-V6
seq 10 permit 2a06:5841:e::/64 eq 128
!
ipv6 unicast-routing
!
ip route vrf MGMT 0.0.0.0/0 185.110.148.65
!
ipv6 route vrf MGMT ::/0 2a06:5841:f:1::1
!
ntp local-interface vrf MGMT Management1
ntp server vrf MGMT ntp.uio.no prefer
!
route-map RM-CONN-2-BGP permit 10
match ip address prefix-list PL-LOOPBACKS-EVPN-OVERLAY
!
route-map RM-CONN-2-BGP permit 30
match ipv6 address prefix-list PL-LOOPBACKS-EVPN-OVERLAY-V6
!
router bfd
multihop interval 300 min-rx 300 multiplier 3
!
router bgp 65100
router-id 10.255.0.2
update wait-install
no bgp default ipv4-unicast
maximum-paths 4 ecmp 4
neighbor EVPN-OVERLAY-PEERS peer group
neighbor EVPN-OVERLAY-PEERS next-hop-unchanged
neighbor EVPN-OVERLAY-PEERS update-source Loopback0
neighbor EVPN-OVERLAY-PEERS bfd
neighbor EVPN-OVERLAY-PEERS ebgp-multihop 3
neighbor EVPN-OVERLAY-PEERS password 7 <removed>
neighbor EVPN-OVERLAY-PEERS send-community
neighbor EVPN-OVERLAY-PEERS maximum-routes 0
neighbor IPv4-UNDERLAY-PEERS peer group
neighbor IPv4-UNDERLAY-PEERS password 7 <removed>
neighbor IPv4-UNDERLAY-PEERS send-community
neighbor IPv4-UNDERLAY-PEERS maximum-routes 12000
neighbor 2a06:5841:e::10 peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::10 remote-as 65104
neighbor 2a06:5841:e::10 description d3-floor_Loopback0
neighbor 2a06:5841:e::11 peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::11 remote-as 65105
neighbor 2a06:5841:e::11 description d4-floor_Loopback0
neighbor 2a06:5841:e::12 peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::12 remote-as 65106
neighbor 2a06:5841:e::12 description d1-crew_Loopback0
neighbor 2a06:5841:e::13 peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::13 remote-as 65110
neighbor 2a06:5841:e::13 description d1-1-tele_Loopback0
neighbor 2a06:5841:e::14 peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::14 remote-as 65110
neighbor 2a06:5841:e::14 description d1-2-tele_Loopback0
neighbor 2a06:5841:e::15 peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::15 remote-as 65111
neighbor 2a06:5841:e::15 description d2-1-stand_Loopback0
neighbor 2a06:5841:e::16 peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::16 remote-as 65111
neighbor 2a06:5841:e::16 description d2-2-stand_Loopback0
neighbor 2a06:5841:e::17 peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::17 remote-as 65112
neighbor 2a06:5841:e::17 description d1-noc_Loopback0
neighbor 2a06:5841:e::d peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::d remote-as 65101
neighbor 2a06:5841:e::d description d1-stand_Loopback0
neighbor 2a06:5841:e::e peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::e remote-as 65102
neighbor 2a06:5841:e::e description d1-floor_Loopback0
neighbor 2a06:5841:e::f peer group EVPN-OVERLAY-PEERS
neighbor 2a06:5841:e::f remote-as 65103
neighbor 2a06:5841:e::f description d2-floor_Loopback0
redistribute connected route-map RM-CONN-2-BGP
neighbor interface Ethernet1/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65102
neighbor interface Ethernet2/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65103
neighbor interface Ethernet3/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65104
neighbor interface Ethernet4/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65105
neighbor interface Ethernet7/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65112
neighbor interface Ethernet8/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65106
neighbor interface Ethernet10/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65101
neighbor interface Ethernet13/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65110
neighbor interface Ethernet14/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65110
neighbor interface Ethernet15/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65111
neighbor interface Ethernet16/1 peer-group IPv4-UNDERLAY-PEERS remote-as 65111
!
address-family evpn
neighbor EVPN-OVERLAY-PEERS activate
!
address-family ipv4
no neighbor EVPN-OVERLAY-PEERS activate
neighbor IPv4-UNDERLAY-PEERS activate
neighbor IPv4-UNDERLAY-PEERS next-hop address-family ipv6 originate
!
address-family ipv6
neighbor IPv4-UNDERLAY-PEERS activate
!
management ssh
ip access-group mgmt_access vrf INET in
ip access-group mgmt_access vrf MGMT in
authentication empty-passwords deny
!
vrf CLIENTS
shutdown
!
vrf INET
no shutdown
!
vrf MGMT
no shutdown
!
service unsupported-transceiver <removed>
!
end
|