Brocade FastIron Ethernet Switch Layer 3 Routing Configura Bedienungsanleitung

Stöbern Sie online oder laden Sie Bedienungsanleitung nach Computerzubehör Brocade FastIron Ethernet Switch Layer 3 Routing Configura herunter. Brocade FastIron Ethernet Switch Layer 3 Routing Configuration Guide User Manual Benutzerhandbuch

  • Herunterladen
  • Zu meinen Handbüchern hinzufügen
  • Drucken
  • Seite
    / 672
  • Inhaltsverzeichnis
  • LESEZEICHEN
  • Bewertet. / 5. Basierend auf Kundenbewertungen
Seitenansicht 0
53-1003087-04
30 July 2014
FastIron Ethernet Switch
Layer 3 Routing
Configuration Guide
Supporting FastIron Software Release 08.0.10d
Seitenansicht 0
1 2 3 4 5 6 ... 671 672

Inhaltsverzeichnis

Seite 1 - Layer 3 Routing

53-1003087-0430 July 2014FastIron Ethernet SwitchLayer 3 RoutingConfiguration GuideSupporting FastIron Software Release 08.0.10d

Seite 2

Customizing BGP4 Multipath load sharing... 414Specifying a list of networks to advertise...

Seite 3 - Contents

• The DHCP option 067 bootfile name will be used for configuration download if it does not have theextension .bin .• If the DHCP option 067 bootfile n

Seite 4

Step 1. Validate the IP address and lease negotiation1. At boot-up, the device automatically checks its configuration for an IP address.2. If the devi

Seite 5

TFTP server IP address (option 150), if it is available. If the TFTP server IP address is not available,the DHCP client requests the TFTP file from th

Seite 6

• 006 - domain name server• 012 - hostname (optional)• 066 - TFTP server name (only used for Client-Based Auto Configuration)• 067 - bootfile name• 15

Seite 7

The following example shows output from the show ip address command for a Layer 2 device.device(config)# show ip address IP Address Type L

Seite 8

2d01h48m21s:I: DHCPC: Found static IP Address 10.1.1.1 subnet mask 255.255.255.0 on port 0/1/52d01h48m21s:I: DHCPC: Client service found no DHCP serve

Seite 9

address belongs. Refer to "Designated VLAN for Telnet management sessions to a Layer 2 Switch"section in the FastIron Ethernet Switch Securi

Seite 10 - 53-1003087-04

To ABORT Trace Route, Please use stop-traceroute command. Traced route to target IP node 10.157.22.80: IP Address Round Trip Time1 Round

Seite 11

To modify the TTL threshold to 25, enter the following commands.device(config)# ip ttl 25device(config)# exitSyntax: ip ttlttl-thresholdDHCP Assist co

Seite 12

In the example figure, a host from each of the four subnets supported on a Layer 2 switch requests anIP address from the DHCP server. These requests a

Seite 13

Setting an administrative distance for a static BGP4 network...473Limiting advertisement of a static BGP4 network to selectedneighbors...

Seite 14

NOTEWhen DHCP Assist is enabled on any port, Layer 2 broadcast packets are forwarded by the CPU.Unknown unicast and multicast packets are still forwar

Seite 15 - Document conventions

NOTEWhen DHCP Assist is enabled on any port, Layer 2 broadcast packets are forwarded by the CPU.Unknown unicast and multicast packets are still forwar

Seite 16 - Notes, cautions, and warnings

IPv4 GRE tunnel overviewGeneric Routing Encapsulation is described in RFC 2784. Generally, GRE provides a way toencapsulate arbitrary packets (payload

Seite 17 - Brocade resources

FIGURE 15 GRE header formatThe GRE header has the following fields:• Checksum - 1 bit. This field is assumed to be zero in this version. If set to 1,

Seite 18 - Document feedback

• On FCX devices, only eight different MTU values can be configured over the whole system. Whenthe SX-FI48GPP module is installed in the FastIron SX d

Seite 19 - About This Document

Support for IPv4 multicast routing over GRE tunnelsPIM-DM and PIM-SM Layer 3 multicast protocols and multicast data traffic are supported over GREtunn

Seite 20

For FastIron SX devices only, traffic coming from a tunnel can be filtered by an ACL both before andafter the tunnel is terminated and also redirected

Seite 21

Configuration considerations for tunnel loopback portsNOTEThe configuration considerations for tunnel loopback ports are only required for Generation

Seite 22 - Basic IP configuration

Configuration tasks for GRE tunnelsTABLE 17 Configuration tasks Default behaviorRequired tasksCreate a tunnel interface. Not assignedConfigure the s

Seite 23 - IP configuration overview

Creating a tunnel interfaceTo create a tunnel interface, enter the following command at the Global CONFIG level of the CLI.device(config)# interface t

Seite 24 - Layer 2 switches

Displaying BGP4+ route information...547Displaying BGP4+ route-attribute entries...

Seite 25

Syntax: [no] tunnel source { ip-address | ethernet portnum | venumber | loopback number }The ip-address variable is the source IP address being config

Seite 26 - Static ARP table

Syntax: [no] tunnel mode gre ip• gre specifies that the tunnel will use GRE encapsulation (IP protocol 47).• ip specifies that the tunneling protocol

Seite 27 - IP forwarding cache

Applying an ACL or PBR to a tunnel interface on the SX-FI48GPP interface moduleTo apply an ACL or PBR policy to a tunnel interface on the SX-FI48GPP i

Seite 28 - IP route exchange protocols

You can set an MTU value for packets entering the tunnel. Packets that exceed either the default MTUvalue of 1476/9192 bytes (for jumbo case) or the v

Seite 29 - ACLs and IP access policies

does not have the ability to bring down the line protocol of either tunnel endpoint, if the far endbecomes unreachable. Traffic sent on the tunnel can

Seite 30

Syntax: [no] tunnel path-mtu-discovery disableChanging the age timer for PMTUDBy default, when PMTUD is enabled on a tunnel interface, the path MTU is

Seite 31

Enabling PIM-SM on a GRE tunnelTo enable PIM-SM on a GRE tunnel interface, enter commands such as the following:device(config)# interface tunnel 10dev

Seite 32

Configuring point-to-point GRE tunnel for FastIron Adevice (config)# interface ethernet 3/1device (config-if-e1000-3/1)# ip address 10.0.8.108/24devic

Seite 33

Total number of IP routes: 3, avail: 79996 (out of max 80000)B:BGP D:Connected R:RIP S:Static O:OSPF *:Candidate default Destination Net

Seite 34

show interface tunnel output descriptions (Continued)TABLE 18 Field DefinitionMTU The configured path maximum transmission unit.encapsulation GRE GR

Seite 35

VRRP-E Extension for Server Virtualization... 614Suppressing default interface-level RA messages on an interfaceconf

Seite 36

show ip tunnel traffic output descriptions TABLE 19 Field DescriptionTunnel Status Indicates whether the tunnel is up or down. Possible values are:•

Seite 37

Total number of neighbors: 1 on 1 portsPort Phy_p Neighbor Holdtime Age UpTimetn1 tn1:e2 10.1.1.20 180 60 1740Sy

Seite 38 - Configuring IP addresses

To reset a dynamically-configured MTU on a tunnel Interface back to the configured value, enter acommand such as the following.device(config)#clear ip

Seite 39

Displaying global IP configuration informationTo display IP configuration information, enter the following command at any CLI level.device# show ipGlo

Seite 40

CLI display of global IP configuration information - Layer 3 switch (Continued)TABLE 20 Field DescriptionSubnet Mask The network mask for the IP add

Seite 41 - Deleting an IP address

Displaying IP interface informationTo display IP interface information, enter the following command at any CLI level.device# show ip interface Interfa

Seite 42 - Configuration example

ICMP redirect: enabledproxy-arp: disabledip arp-age: 10 minutesNo Helper Addresses are configured.No inbound ip access-list is setNo outgoing ip acce

Seite 43 - Configuring DNS resolver

NOTEThe ip-mask parameter and mask parameter perform different operations. The ip-mask parameterspecifies the network mask for a specific IP address,

Seite 44 - Defining a domain list

CLI display of ARP cache (Continued)TABLE 22 Field DescriptionPort The port on which the entry was learned.NOTEIf the ARP entry type is DHCP, the po

Seite 45 - Configuring packet parameters

The num parameter lets you display the table beginning with a specific entry number.CLI display of static ARP table TABLE 23 Field DescriptionStatic

Seite 46 - Changing the MTU

Step 3: Start OSPF process for each VRF...660Step 4: Assign VRFs to each ve interfaces, and configure IPaddress and

Seite 47

CLI display of IP forwarding cache - Layer 3 switch (Continued)TABLE 24 Field DescriptionMAC The MAC address of the destination.NOTEIf the entry is

Seite 48 - Changing the router ID

Syntax: show ip route [ ip-addr [ip-mask ] [longer ] [none-bgp ] ] {num | bgp | direct | ospf | rip |static }The ip-addr parameter displays the route

Seite 49

This example shows all the routes for networks beginning with 10.159. The mask value and longerparameter specify the range of network addresses to be

Seite 50 - Telnet packets

Clearing IP routesIf needed, you can clear the entire route table or specific individual routes.To clear all routes from the IP route table, enter the

Seite 51 - TFTP packets

CLI display of IP traffic statistics - Layer 3 switch (Continued)TABLE 26 Field Descriptionfiltered The total number of IP packets filtered by the d

Seite 52 - SSH packets

CLI display of IP traffic statistics - Layer 3 switch (Continued)TABLE 26 Field Descriptionirdp advertisement The number of ICMP Router Discovery Pr

Seite 53 - ARP parameter configuration

CLI display of IP traffic statistics - Layer 3 switch (Continued)TABLE 26 Field Descriptionresponses sent The number of responses this device has se

Seite 54 - Rate limiting ARP packets

CLI display of global IP configuration information - Layer 2 switchTABLE 27 Field DescriptionIP configurationSwitch IP address The management IP add

Seite 55 - Enabling proxy ARP

CLI display of ARP cache (Continued)TABLE 28 Syntax: show arpFieldDescriptionMac The MAC address of the device.NOTEIf the MAC address is all zeros,

Seite 56 - Creating static ARP entries

CLI display of IP traffic statistics - Layer 2 switchTABLE 29 Field DescriptionIP statisticsreceived The total number of IP packets received by the

Seite 57

Preface● Document conventions...15● Brocade resources

Seite 58 - ARP Packet Validation

CLI display of IP traffic statistics - Layer 2 switch (Continued)TABLE 29 Field Descriptiontimestamp reply The number of Timestamp Reply messages se

Seite 59 - Ingress ARP packet priority

CLI display of IP traffic statistics - Layer 2 switch (Continued)TABLE 29 Field Descriptioninput errors This information is used by Brocade customer

Seite 60

NOTEThis command only functions on the IPv4 platform.IP Configuration152 FastIron Ethernet Switch Layer 3 Routing Configuration Guide53-1003087-04

Seite 61

Layer 3 Routing Protocols● Supported Layer 3 routing protocols features... 153● Adding a s

Seite 62 - Disabling ICMP messages

Adding a static IP routeTo configure an IP static route with a destination address of 192.0.0.0 255.0.0.0 and a next-hop routerIP address of 195.1.1.1

Seite 63

NOTEIf you specify 16, RIP considers the metric to be infinite and thus also considers the route to beunreachable.The tag num parameter specifies the

Seite 64 - Static routes configuration

The distancenum parameter configures the administrative distance for the route. You can specify avalue from 1 - 255. The default is 1. The value 255 m

Seite 65 - Static IP route parameters

Use the following command to configure static route resolve by default route.device(config)# ip route next-hop-enable-defaultSyntax: [no] ip route nex

Seite 66 - Configuring a static IP route

Layer 3 configuration notes• Changing the system parameters reconfigures the device memory. Whenever you reconfigure thememory on a Brocade device, yo

Seite 67

The following example shows output on a FastIron X Series with third generation modules.device#show default valuesys log buffers:50 mac age ti

Seite 68 - Naming a static IP route

Convention Descriptionvalue In Fibre Channel products, a fixed value provided as input to a commandoption is printed in plain text, for example, --sho

Seite 69

NOTEConsult your reseller or Brocade to understand the risks involved before disabling all Layer 2 switchingoperations.Configuration notes and feature

Seite 70

The following example shows the creation and deployment of a dynamic LAGthat is used for routing on a FastIron device with Layer 3 image.Brocade(confi

Seite 71

Configuring a Layer 3 Link Aggregration Group (LAG)162 FastIron Ethernet Switch Layer 3 Routing Configuration Guide53-1003087-04

Seite 72

IPv6 Configuration on FastIron X Series, FCX, and ICX SeriesSwitches● Supported IPv6 features on FastIron X Series, FCX, and ICX devices...

Seite 73

Feature ICX 6430 ICX 6450 FCX ICX 6610 ICX 6650 FSX 800FSX 1600ICX 7750IPv6 debug 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10IPv6 ping 08.

Seite 74 - Configuring IP load sharing

Feature ICX 6430 ICX 6450 FCX ICX 6610 ICX 6650 FSX 800FSX 1600ICX 7750DHCPv6 relay agent No 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10DHCPv6 pre

Seite 75 - Path cost

FIGURE 17 IPv6 address formatAs shown in the above figure, HHHH is a 16-bit hexadecimal value, while H is a 4-bit hexadecimalvalue. The following is a

Seite 76 - How IP load sharing works

IPv6 address types TABLE 30 AddresstypeDescription Address structureUnicast An address for a singleinterface. A packet sent to aunicast address is d

Seite 77 - IRDP parameters

IPv6 stateless auto-configurationBrocade routers use the IPv6 stateless autoconfiguration feature to enable a host on a local link toautomatically con

Seite 78 - Enabling IRDP globally

IPv6 CLI command support (Continued)TABLE 31 IPv6 command Description Switch code Router codeclear ipv6 route Deletes all dynamic entries in the IPv

Seite 79

Brocade resourcesVisit the Brocade website to locate related documentation for your product and additional Brocaderesources.You can download additiona

Seite 80 - Creating static RARP entries

IPv6 CLI command support (Continued)TABLE 31 IPv6 command Description Switch code Router codeipv6 route Configures an IPv6 static route. Xipv6 route

Seite 81

IPv6 host address on a Layer 2 switchIn a Layer 3 (router) configuration, each port can be configured separately with an IPv6 address. This isaccompli

Seite 82

To override a link-local address that is automatically computed for the global interface with a manuallyconfigured address, enter a command such as th

Seite 83

IPv6 configuration on each router interfaceTo forward IPv6 traffic on a router interface, the interface must have an IPv6 address, or IPv6 must beexpl

Seite 84

You must specify the prefix-length parameter as a decimal value. A slash mark (/) must follow theipv6-prefix parameter and precede the prefix-length p

Seite 85 - DHCP Server

To override a link-local address that is automatically computed for an interface with a manuallyconfigured address, enter commands such as the followi

Seite 86 - DHCP Server options

Syntax: ip address ip-address sub-net-mask [ secondary ]You must specify the ip-address parameter using 8-bit values in dotted decimal notation.You ca

Seite 87

Restricting SNMP access to an IPv6 nodeYou can restrict SNMP access to the device to the IPv6 host whose IP address you specify. To do so,enter a comm

Seite 88 - DHCP server CLI commands

To establish a Telnet connection to a remote host with the IPv6 address of 2001:DB8:3de2:c37::6,enter the following command.device#telnet 2001:DB8:3de

Seite 89

instead of the host name and its domain name. For example, you could enter either of the followingcommands to initiate the ping.device#ping ipv6 nyc01

Seite 90 - Enabling DHCP Server

• Brocade Supplemental Support augments your existing OEM support contract, providing directaccess to Brocade expertise. For more information, contact

Seite 91 - Creating an address pool

• The timeout milliseconds parameter specifies how many milliseconds the router waits for a replyfrom the pinged device. You can specify a timeout fro

Seite 92

Location:Community(ro): ...Traps Warm/Cold start: Enable Link up: Enable Link down: Enable

Seite 93

NOTEIPv6 is disabled by default in the router code and must be configured on each interface that willsupport IPv6.IPv6 ICMP feature configurationAs wi

Seite 94 - Configuring the TFTP server

Enabling IPv6 ICMP redirect messagesYou can enable a Layer 3 switch to send an IPv6 ICMP redirect message to a neighboring host toinform it of a bette

Seite 95

‐ Prefixes advertised in router advertisement messages.‐ Flags for host stateful autoconfiguration.• Amount of time during which an IPv6 node consider

Seite 96

Each configured router interface on a link sends out a router advertisement message, which has a valueof 134 in the Type field of the ICMP packet head

Seite 97

• The number of consecutive neighbor solicitation messages that duplicate address detection sendson an interface. By default, duplicate address detect

Seite 98

Syntax: [no] ipv6 nd ra-interval number | min-range-value max-range-valueSyntax: [no] ipv6 nd ra-lifetime numberSyntax: ipv6 nd ra-hop-limit numbernum

Seite 99

For example, to advertise the prefix 2001:DB8:a487:7365::/64 in router advertisement messages sentout on Ethernet interface 3/1 with a valid lifetime

Seite 100

Enabling and disabling IPv6 router advertisementsIf IPv6 unicast routing is enabled on an Ethernet interface, by default, this interface sends IPv6 ro

Seite 101

About This Document● Supported Hardware... 19● Wha

Seite 102

Syntax: [no] ipv6 nd reachable-time secondsFor the seconds variable, specify a number from 0 through 3600 seconds. To restore the default time,use the

Seite 103

Syntax: [no] ipv6 mtu bytesFor bytes, specify a value between 1280 - 1500, or 1280 - 10218 if jumbo mode is enabled. For ICX6610 and ICX 6450 devices,

Seite 104 - DHCP Log messages

Limiting the number of hops an IPv6 packet can traverseBy default, the maximum number of hops an IPv6 packet can traverse is 64. You can change thisva

Seite 105

TCAM space allocation on FCX and ICX devices (except ICX 6450) (Continued)TABLE 32 Default Maximum MinimumGRE tunnels 16 64 16Allocating TCAM space

Seite 106 - Defining a DNS entry

Clearing the IPv6 cacheYou can remove all entries from the IPv6 cache or specify an entry based on the following:• IPv6 prefix.• IPv6 address.• Interf

Seite 107 - Changing the TTL threshold

Clearing IPv6 routes from the IPv6 route tableYou can clear all IPv6 routes or only those routes associated with a particular IPv6 prefix from the IPv

Seite 108 - DHCP Assist configuration

4 2001:DB8:46a::1 LOCAL ethe 3/25 2001:DB8::2e0:52ff:fe99:9737

Seite 109 - How DHCP Assist works

Ethernet 3/17 up/up 2017::c017:101/64Ethernet 3/19 up/up 2019::c019:101/64VE 4 down/downVE 14 up/up

Seite 110 - IP Configuration

Detailed IPv6 interface information fields TABLE 35 Field DescriptionInterface/line protocolstatusThe status of interface and line protocol. If you

Seite 111 - Configuring DHCP Assist

The interface parameter restricts the display to the entries for the specified router interface. For thisparameter, you can specify the Ethernet or VE

Seite 112 - IPv4 GRE tunnel overview

© 2014, Brocade Communications Systems, Inc. All Rights Reserved.Brocade, the B-wing symbol, Brocade Assurance, ADX, AnyIO, DCX, Fabric OS, FastIron,

Seite 113

Summary of Enhancements in FastIron release 08.0.10dTABLE 1 Feature Description LocationDHCPv6 Relay Agent PrefixDelegation NotificationDHCPv6 Relay

Seite 114

tunnel 6 1/1C 2001:DB8:46a::/64 :: ethe 3/2 0/0C 2001:DB8::1/128

Seite 115

4 connected, 2 static, 0 RIP, 1 OSPF, 0 BGP Number of prefixes: /16: 1 /32: 1 /64: 3 /128: 2The following table lists the information displayed by

Seite 116

IPv6 local router information fields (Continued)TABLE 39 Field DescriptionLifetime The amount of time (in seconds) that the router is useful as the

Seite 117

General IPv6 TCP connection fields (Continued)TABLE 40 Field DescriptionTCP state The state of the TCP connection. Possible states include the follo

Seite 118

Receive: expected incoming sequence number = 740507227 Receive: received window = 16384 Receive: bytes in receive queue = 0 Receive: congestion w

Seite 119 - Creating a tunnel interface

Specific IPv6 TCP connection fields (Continued)TABLE 41 Field DescriptionReceive: expected incoming sequencenumber = numberThe incoming sequence num

Seite 120

Field Descriptionforwarded The total number of IPv6 packets received by the router and forwarded to other routers.delivered The total number of IPv6 p

Seite 121

Field DescriptionICMP6 statisticsSome ICMP statistics apply to both Received and Sent, some apply to Received only, some apply to Sent only,and some a

Seite 122

Field Descriptionerror The number of Error messages sent by the router.can not send error The number of times the node encountered errors in ICMP erro

Seite 123

Field Descriptionpassive opens The number of TCP connections opened by the router in response to connectionrequests (TCP SYNs) received from other dev

Seite 124

IP Configuration● Supported IP features... 21● Basic

Seite 125

Specify the ipv6-address as a destination address to which client messages are forwarded and whichenables DHCPv6 relay service on the interface. You c

Seite 126

DHCPv6 relay configured destination information (Continued)TABLE 42 Field DescriptionInterface The interface specified (ethernet, tunnel, or VE inte

Seite 127

DHCPv6 Relay Agent Prefix Delegation NotificationDHCPv6 Relay Agent Prefix Delegation Notification feature allows a DHCPv6 server to dynamicallydelega

Seite 128

• The PD notification fails when the DHCPv6 messages between a DHCPv6 server and a DHCPv6client containing the PD option are not relayed via the DHCPv

Seite 129

Syntax: [no] ipv6 dhcp-relay maximum-delegated-prefixes valueThe value parameter is used to limit the maximum number of prefixes that can be delegated

Seite 130

Output from the show ipv6 dhcp-relay delegated-prefixes command (Continued)TABLE 44 Field DescriptionClient The IPv6 address of the client.Interface

Seite 131 - Clearing GRE statistics

Output from the show ipv6 dhcp-relay options commandTABLE 46 Field DescriptionInterface The interface name.Interface-Id The interface ID option. Yes

Seite 132

Syntax: show ipv6 dhcp-relay interface interfacetypeThe interface type is interface type such as ethernet, POS, or VE and the specific port number.Tab

Seite 133

Syntax: clear ipv6 dhcp-relay statisticsIPv6 Configuration on FastIron X Series, FCX, and ICX Series Switches218 FastIron Ethernet Switch Layer 3 Rout

Seite 134

RIP● RIP feature support... 219● RIP Overview...

Seite 135

Feature ICX 6430 ICX 6450 FCX ICX 6610 ICX 6650 FSX 800FSX 1600ICX 7750GRE tunnel counters enhancement No No 08.0.01 No 08.0.01 No 08.0.10Routing for

Seite 136 - Displaying ARP entries

RIP routers, including the Brocade device, also can modify a route cost, generally by adding to it, tobias the selection of a route for a given destin

Seite 137

RIP global parameters (Continued)TABLE 49 Parameter Description DefaultRedistribution RIP can redistribute routes fromother routing protocols such a

Seite 138

RIP interface parametersRIP interface parameters TABLE 50 Parameter Description DefaultRIP state andversionThe state of the protocol and the version

Seite 139

To enable RIP globally, enter the router rip command.device(config)# router ripSyntax: [no] router ripAfter globally enabling the protocol, you must e

Seite 140 - Displaying the IP route table

Syntax: [no] distance numberThe number variable specifies a range from 1 through 255.Configuring redistributionYou can configure the Brocade device to

Seite 141

If the route map contains set statements, routes that are permitted by the route map’s match statementsare modified according to the set statements.In

Seite 142

The no form of this command disables RIP redistribution. You can redistribute BGP4, OSPF, or staticroutes into RIP.Configuring route learning and adve

Seite 143 - Clearing IP routes

To configure a RIP neighbor filters, enter the neighbor command.device(config-rip-router)# neighbor 1 deny anyThis command configures the Brocade devi

Seite 144

Syntax: [no] poison-local-routesSuppressing RIP route advertisement on a VRRP or VRRPE backupinterfaceNOTEThis section applies only if you configure t

Seite 145

To apply a prefix list at the global level of RIP, enter commands such as the following.device(config-rip-router)# prefix-list list1 inSyntax: no pref

Seite 146

If you are configuring a Layer 2 switch, refer to Configuring the management IP address and specifyingthe default gateway on page 105 to add an IP add

Seite 147

The timeout-timer parameter sets the amount of time after which a route is considered unreachable.The possible value ranges from 9 - 65535. The defaul

Seite 148 - Syntax: show ip traffic

CLI display of neighbor filter information (Continued)TABLE 51 Field. DefiinitionAction The action the Brocade device takes for RIP route packets to

Seite 149

ip ospf area 0 ip ospf priority 0 ip rip v2-only ip address 10.1.1.2/24 ipv6 address 2000::1/32 ipv6 enable!To display current running configuration

Seite 150

RIPng● RIPng feature support... 233● RIPng Overview...

Seite 151 - Disabling IP checksum check

NOTEBrocade IPv6 devices support up to 10,000 RIPng routes. ICX 6650 IPv6 devices support up to 2000RIPng routes.Configuring RIPngTo configure RIPng,

Seite 152

Configuring RIPng timersRIPng timersTABLE 52 Timer Description DefaultUpdate Amount of time (in seconds) between RIPng routing updates. 30 seconds.T

Seite 153 - Layer 3 Routing Protocols

• Learning and advertising of RIPng default routes.• Advertising of IPv6 address summaries.• Metric of routes learned and advertised on a Brocade devi

Seite 154 - Adding a static IP route

Changing the metric of routes learned and advertised on an interfaceA device interface increases the metric of an incoming RIPng route it learns by an

Seite 155

device(config)# ipv6 router ripdevice(config-ripng-router)# distribute-list prefix-list routesfor2001 out To deny prefix lengths greater than 64 bits

Seite 156 - Static route recursive lookup

Clearing RIPng routes from IPv6 route tableTo clear all RIPng routes from the RIPng route table and the IPv6 main route table and reset the routes,ent

Seite 157 - Adding a static ARP entry

Layer 3 switchesBrocade Layer 3 switches allow you to configure IP addresses on the following types of interfaces:• Ethernet ports• Virtual routing in

Seite 158 - Layer 3 configuration notes

show ipv6 rip output descriptions (Continued)TABLE 53 Field DescriptionPeriodic updates/triggerupdatesThe number of periodic updates and triggered u

Seite 159

show ipv6 rip route output descriptions (Continued)TABLE 54 Field DescriptionInterface The interface name. If "null" appears, the interfac

Seite 160

Displaying RIPng routing table242 FastIron Ethernet Switch Layer 3 Routing Configuration Guide53-1003087-04

Seite 161

OSPFv2● OSPFv2 feature support... 243● OSPF overview...

Seite 162

Feature ICX 6430 ICX 6450 FCX ICX 6610 ICX 6650 FSX 800FSX 1600ICX 7750Graceful restart No08.0.01 1008.0.01 1108.0.01 1208.0.01 08.0.01 08.0.10Gracefu

Seite 163 - Switches

OSPF is built upon a hierarchy of network components. The highest level of the hierarchy is theAutonomous System (AS) . An autonomous system is define

Seite 164

FIGURE 19 OSPF operating in a networkOSPF point-to-point linksIn an OSPF point-to-point network, where a direct Layer 3 connection exists between a si

Seite 165 - IPv6 addressing overview

Designated routers in multi-access networksIn a network that has multiple routers attached, OSPF elects one router to serve as the designatedrouter (D

Seite 166 - IPv6 address types

FIGURE 21 Backup designated router becomes designated routerIf two neighbors share the same priority, the router with the highest router ID is designa

Seite 167

OSPF RFC 1583 and 2328 complianceBrocade devices are configured, by default, to be compliant with the RFC 1583 OSPF V2 specification.Brocade devices c

Seite 168 - IPv6 CLI command support

IP packet flow through a Layer 3 switchFIGURE 1 IP Packet flow through a Brocade Layer 3 switch1. When the Layer 3 switch receives an IP packet, the L

Seite 169

FIGURE 22 AS external LSA reductionNotice that both Router D and Router E have a route to the other routing domain through Router F.OSPF eliminates th

Seite 170

‐ A second ASBR comes on-line‐ A second ASBR that is already on-line begins advertising an equivalent route to the samedestination.In either case abov

Seite 171

because the first network has 16 ones bits (255.255.0.0) whereas the second network has only 8ones bits (255.0.0.0).• ‐ For the less specific network,

Seite 172 - Enabling IPv6 routing

The feature is useful for avoiding a loss of traffic during short periods when adjacency failures aredetected and traffic is rerouted. Using this feat

Seite 173 - FE48:4672:/64

IETF RFC and internet draft supportThe implementation of OSPF Graceful Restart supports the following IETF RFC:• RFC 3623: Graceful OSPF RestartNOTEA

Seite 174

OSPF parametersYou can modify or set the following global and interface OSPF parameters.Global parametersThe global OSPF parameters are as follows:• M

Seite 175

Enable OSPF on the deviceWhen you enable OSPF on the device, the protocol is automatically activated. To enable OSPF on thedevice, use the following m

Seite 176

When an NSSA contains more than one ABR, OSPF elects one of the ABRs to perform the LSAtranslation for NSSA. OSPF elects the ABR with the highest rout

Seite 177 - IPv6 Telnet

NSSAs are especially useful when you want to summarize Type-5 External LSAs (external routes)before forwarding them into an OSPF area. The OSPF specif

Seite 178 - IPv6 traceroute

Syntax: [no] area { num | ip-addr nssa cost [ no-summary ] | default-information-originate }The num and ip-addr parameters specify the area number, wh

Seite 179 - Pinging an IPv6 address

makes an entry in the session table or the forwarding cache, and sends the route to a queue on theoutgoing ports:• ‐ If the running-config contains an

Seite 180 - Contact:

The ip-mask parameter specifies the portions of the IP address that a route must contain to besummarized in the summary route. In the example above, a

Seite 181

Modifies the address range status to advertise and a Type 3 summary link-state advertisement (LSA)can be generated for this address range.device(confi

Seite 182

To assign interface 1/8 of Router A to area 10.5.0.0 and then save the changes, enter the followingcommands.RouterA(config)# interface e 1/8RouterA(co

Seite 183

default authentication-change interval is 300 seconds (5 minutes). You change the interval to a valuefrom 0 - 14400 seconds.• authentication-key strin

Seite 184

NOTEThis option affects all IP subnets configured on the interface. If you want to disable OSPF updatesonly on some of the IP subnets on the interface

Seite 185 - Neighbor redirect messages

To change the authentication-change interval, enter a command such as the following at the interfaceconfiguration level of the CLI.device(config-if-e1

Seite 186

The all-summary-external option directs the router to allow the following LSAs: Router, Network,Opq-Area-TE and Opq-Link-Graceful while it blocks all

Seite 187

FIGURE 24 Defining OSPF virtual links within a networkThe example shows an OSPF area border router, Device A, that is cut off from the backbone area (

Seite 188

Modify virtual link parametersOSPF has some parameters that you can modify for virtual links. Notice that these are the sameparameters as the ones you

Seite 189

md5-authentication keystringThe MD5 key is a number from 1 - 255 and identifies the MD5 key that is being used. Thisparameter is required to different

Seite 190 - IPv6 MTU

Here is an example of a static ARP entry. Index IP Address MAC Address Port 1 10.95.6.111 0000.003b.d210

Seite 191

• LAG group - The combined bandwidth of all the ports.• Virtual interface - The combined bandwidth of all the ports in the port-based VLAN that contai

Seite 192

ports that are currently active. The following example enables cost calculation for currently active ports.device(config-ospf-router)# auto-cost use-a

Seite 193

FIGURE 25 Redistributing OSPF and static routes to RIP routesYou also have the option of specifying import of just RIP, OSPF, BGP4, or static routes,

Seite 194 - Clearing the IPv6 cache

device(config-ospf-router)# redistribute staticdevice(config-ospf-router)# write memoryModify default metric for redistributionThe default metric is a

Seite 195

The match command in the route map matches on routes that have 5 for their metric value (cost). Theset command changes the metric in routes that match

Seite 196

Disable or re-enable load sharingBrocade devices can load share among up to eight equal-cost IP routes to a destination. By default, IPload sharing is

Seite 197

Configure external route summarizationWhen the device is an OSPF Autonomous System Boundary Router (ASBR), you can configure it toadvertise one extern

Seite 198

Router OSPF: EnabledNonstop Routing: DisabledGraceful Restart: DisabledGraceful Restart Helper: EnabledGraceful Restart Time: 120Graceful Restart Noti

Seite 199

If default route origination is enabled and you disable it, the default route originated by the device isflushed. Default routes generated by other OS

Seite 200

Supported match and set conditionsThe supported match and set conditions of a normal route-map configuration are as follows:Match ConditionsTABLE 55

Seite 201 - Displaying local IPv6 routers

• If the cache contains an entry with the destination IP address, the device uses the information in theentry to forward the packet out the ports list

Seite 202

Synchronization of critical OSPF elementsAll types of LSAs and the neighbor information are synchronized to the standby module using the NSRsynchroniz

Seite 203

Limitations• If a neighbor router is inactive for 30 seconds, and if the standby module takes over in another 10seconds, the neighbor router cannot be

Seite 204

Enabling and disabling NSRTo enable NSR for OSPF, enter the following commands:device(config)# router ospfdevice(config-ospf-router)# nonstop-routing

Seite 205 - Syntax: show ipv6 traffic

The following commands with any or all of the options will remove the options from the default-information-originate command if any of the options are

Seite 206

device still receives the routes and installs them in the OSPF database. The feature only prevents thesoftware from installing the denied OSPF routes

Seite 207

Syntax: [no] distribute-list { acl-name | acl-number } inThe distribute-list command is applied globally to all interfaces on the router where it is e

Seite 208

NOTEA Route Map used with the distribute-list command can use either the ip prefix-list command (asshown in the example) or an ACL to define the route

Seite 209 - DHCP relay agent for IPv6

The default is type2.Modify administrative distanceThe device can learn about networks from various protocols, including Border Gateway Protocol versi

Seite 210

Configure OSPF group Link State Advertisement (LSA) pacingThe device paces LSA refreshes by delaying the refreshes for a specified time interval inste

Seite 211

• interface-authentication-failure-trap - [MIB object: ospfIfAuthFailure]• virtual-interface-authentication-failure-trap - [MIB object: ospfVirtIfAuth

Seite 212

IP multicast protocolsBrocade Layer 3 switches also support the following Internet Group Membership Protocol (IGMP) basedIP multicast protocols:• Prot

Seite 213

The log command has the following options:The all option causes all OSPF-related Syslog messages to be logged. If you later disable this optionwith th

Seite 214

On a non-broadcast interface, the routers at either end of this interface must configure non-broadcastinterface type and the neighbor IP address. Ther

Seite 215

Syntax: [no] graceful-restart restart-time secondsThe seconds variable sets the maximum restart wait time advertised to neighbors.Possible values are

Seite 216

Syntax: [no] graceful-restart helper-disableThis command disables OSPF Graceful Restart helper mode.The default behavior is to help the restarting nei

Seite 217

0xFFFFFFFF). The default value is 4294967295 (Hex: 0xFFFFFFFF). This parameter only applies tothe default instance of OSPF.ExamplesThe following examp

Seite 218

NOTEThe hold time values that you specify are rounded up to the next highest 100 ms value. For example,any value between 0 and 99 will be configured a

Seite 219 - RIP Overview

• ABR and ASBR information• Trap state information• OSPF Point-to-Point Links• OSPF Graceful Restart information• OSPF Router Advertisement informatio

Seite 220 - RIP parameters and defaults

show ip ospf config output descriptions (Continued)TABLE 57 Field DescriptionGraceful Restart Shows whether or not the graceful restart is enabled.G

Seite 221

show ip ospf config output descriptions (Continued)TABLE 57 Field DescriptionArea-ID Shows the area ID of the interface.Area-Type Shows the area typ

Seite 222 - Configuring RIP parameters

show ip ospf area output descriptions (Continued)TABLE 58 This field DisplaysSPFR The SPFR value.ABR The ABR number.ASBR The ABSR number.LSA The LSA

Seite 224 - Configuring redistribution

Basic IP parameters and defaults - Layer 3 SwitchesIP is enabled by default. The following IP-based protocols are all disabled by default:• Routing pr

Seite 225 - Enabling redistribution

show ip ospf neighbor output descriptions (Continued)TABLE 59 Field DescriptionState The state of the conversation between the device and the neighb

Seite 226

Displaying OSPF interface informationTo display OSPF interface information, enter the following command at any CLI level.device# show ip ospf interfac

Seite 227

show ip ospf interface output descriptions (Continued)TABLE 60 This field DisplaysState The state of the interface. Possible states include the foll

Seite 228

show ip ospf interface output descriptions (Continued)TABLE 60 This field DisplaysEvents OSPF Interface Event:• Interface_Up = 0x00• Wait_Timer = 0x

Seite 229 - Setting RIP timers

show ip ospf interface brief output descriptions (Continued)TABLE 61 This field DisplaysState The state of the conversation between the router and t

Seite 230 - Displaying RIP Information

10.65.0.0 255.255.0.0 0 0 Inter Adv_Router Link_State Dest_Type State Tag Flags 10.1.1

Seite 231 - Metric-offset, Outbound 0

show ip ospf routes output descriptions (Continued)TABLE 62 This field DisplaysTag The external route tag.Flags State information for the route entr

Seite 232

Done 6 0.0.0.200 Net 192.213.111.213 192.168.98.213 8000002d 1683 0x17bc Done Syntax: show ip ospf databaseshow ip ospf databaseoutput

Seite 233 - RIPng Overview

The extensive option displays the LSAs in decrypted format.NOTEYou cannot use the extensive option in combination with other display options. The enti

Seite 234 - Configuring RIPng

show ip ospf database database-summary output descriptions (Continued)TABLE 65 This field DisplaysNetwork The number of network link state advertise

Seite 235 - Configuring RIPng timers

IP global parameters - Layer 3 Switches (Continued)TABLE 2 Parameter Description DefaultIP address andmask notationFormat for displaying an IP addre

Seite 236

The router-id ip-addr parameter shows the LSAs for the specified OSPF router.The sequence-number num parameter displays the LSA entries for the specif

Seite 237

show ip ospf border-routersoutput descriptions (Continued)TABLE 67 This field DisplaysRouter ID ID of the OSPF routerRouter type Type of OSPF router

Seite 238

show ip ospf interfaceoutput descriptions TABLE 68 This field DisplaysIP Address The IP address of the interface.OSPF state The OSPF state of the in

Seite 239 - Displaying RIPng information

ver V2.2.1T143module 1 rx-bi-1g-24-port-fibermodule 2 rx-bi-10g-4-portmodule 6 rx-bi-10g-4-portmodule 7 rx-bi-1g-24-port-copper!!no spanning-tree!vlan

Seite 240

Displaying OSPF virtual neighborUse the show ip ospf virtual neighbor command to display OSPF virtual neighbor information.device# show ip ospf virtua

Seite 241

show ip ospf database grace-link-state output descriptionsTABLE 69 This field DisplaysArea The OSPF area that the interface configured for OSPF grac

Seite 242

The show ip ospf command displays LSAs that have been configured with a maximum metric.Clearing OSPF informationYou can use the clear ip ospf commands

Seite 243 - OSPFv2 feature support

OSPFv3● OSPFv3 feature support... 317● OSPFv3 overview...

Seite 244 - OSPF overview

OSPFv3 overviewOpen Shortest Path First (OSPF) is a link-state routing protocol. OSPF uses link-state advertisements(LSAs) to update neighboring route

Seite 245

Configuring OSPFv3To configure OSPFv3, you must perform the following steps.• Enable OSPFv3 globally.• Assign OSPF areas.• Assign device interfaces to

Seite 246 - OSPF point-to-point links

IP global parameters - Layer 3 Switches (Continued)TABLE 2 Parameter Description DefaultTime to Live (TTL) The maximum number of routers (hops) thro

Seite 247

Disabling OSPFv3 in a VRFTo disable OSPFv3 for a default Virtual Routing and Forwarding (VRF), enter a command such as thefollowing.device(config-ospf

Seite 248

When an NSSA contains more than one ABR, OSPFv3 elects one of the ABRs to perform the LSAtranslation for NSSA. OSPF elects the ABR with the highest ro

Seite 249

Assign a Not-So-Stubby Area (NSSA)The OSPF Not So Stubby Area (NSSA) feature enables you to configure OSPF areas that provide thebenefits of stub area

Seite 250

The following example deletes the NSSA area 100.device(config-ospf6-router)#no area 100Syntax: [no] area area-id nssa [[stub-metric] [default-informat

Seite 251

The ipv6-subnet-mask parameter specifies the portions of the IPv6 address that a route must containto be summarized in the summary route. In the examp

Seite 252 - OSPF graceful restart

NOTEThis command does not work in incremental fashion. So both the optional parameters have to beconfigured each time. Otherwise it will take the defa

Seite 253

The point-to-point parameter specifies that the OSPF interface will support point-to-point networking.This is the default setting for tunnel interface

Seite 254 - Configuring OSPF

• Dead-interval: The number of seconds that a neighbor router waits for a hello packet from the devicebefore declaring the router is down. The range i

Seite 255 - OSPF parameters

The interfaces that consist of more than one physical port is calculated as follows:• LAG group- The combined bandwidth of all the ports.• Virtual (Et

Seite 256 - Assign OSPF areas

Configuring route redistribution into OSPFv3You can configure the device to redistribute routes from the following sources into OSPFv3:• IPv6 static r

Seite 257 - Assign a totally stubby area

IP global parameters - Layer 3 Switches (Continued)TABLE 2 Parameter Description DefaultStatic RARP entries An IP address you place in the RARP tabl

Seite 258 - Configuring an NSSA

static IPv6 route to be redistributed into OSPF only if the route has a metric of 5, and changes themetric to 8 before placing the route into the OSPF

Seite 259

To restore the default metric to the default value, use the no form of this command.Modifying metric type for routes redistributed into OSPFv3The devi

Seite 260

To configure the summary address 2001:db8::/24 for routes redistributed into OSPFv3, enter thefollowing command.device(config-ospf6-router)# summary-a

Seite 261

To specify an IPv6 prefix list called filterOspfRoutes that denies route 2001:db8:2::/64, enter thefollowing commands.device(config)# ipv6 prefix-list

Seite 262 - Modify interface defaults

Configuring an OSPFv3 distribution list using a route map as inputThe following commands configure a route map that matches internal routes.device(con

Seite 263

Configuring default route originationWhen the Brocade device is an OSPFv3 Autonomous System Boundary Router (ASBR), you canconfigure it to automatical

Seite 264

the SPF delay to a value from 0 through 65535 seconds. If you set the SPF delay to 0 seconds, thesoftware immediately begins the SPF calculation after

Seite 265

• Intra-area routes• Inter-area routes• External routesThe default for all of these OSPFv3 route types is 110.NOTEThis feature does not influence the

Seite 266 - Assign virtual links

Modifying exit overflow intervalIf a database overflow condition occurs on the Brocade device, the device eliminates the condition byremoving entries

Seite 267

• cost: Indicates the overhead required to send a packet across an interface. You can modify the costto differentiate between 100 Mbps and 1000 Mbps (

Seite 268

IP global parameters - Layer 3 Switches (Continued)TABLE 2 Parameter Description DefaultSource interface The IP address the router uses as the sourc

Seite 269

IPsec for OSPFv3This section describes the implementation of Internet Protocol Security (IPsec) for securing OSPFv3traffic.IPsec is available for OSPF

Seite 270

• ESP security protocol• Authentication• HMAC-SHA1-96 authentication algorithm• Security parameter index (SPI)• A 40-character key using hexadecimal c

Seite 271 - Define redistribution filters

If you configure IPsec for an area, all interfaces that utilize the area-wide IPsec (where interface-specific IPsec is not configured) nevertheless re

Seite 272

Syntax: [no] ipv6 ospf authentication ipsec key-add-remove-interval rangeThe no form of this command sets the key-add-remove-interval back to a defaul

Seite 273 - Enable route redistribution

The sha1 keyword specifies the HMAC-SHA1-96 authentication algorithm. This mandatory parametercan be only the sha1 keyword in the current release.Incl

Seite 274

If no-encrypt is not entered, then the key will be encrypted. This is the default. The system adds thefollowing in the configuration to indicate that

Seite 275

Disabling IPsec on an interfaceFor the purpose of troubleshooting, you can operationally disable IPsec on an interface by using theipv6 ospf authentic

Seite 276

Configuring OSPFv3 Graceful Restart Helper modeTo enable the graceful restart (GR) helper capability, use the graceful-restart helper command in theOS

Seite 277

Displaying OSPFv3 informationYou can display the information for the following OSPFv3 parameters:• Areas• Link state databases• Interfaces• Memory usa

Seite 278

Router: 1 Network: 0 Maximum of Hop count to nodes: 0Syntax: show ipv6 ospf area [area-id]You can specify the area-id parameter in the foll

Seite 279 - OSPF non-stop routing

IP interface parameters - Layer 3 switches (Continued)TABLE 3 Parameter Description DefaultICMP RouterDiscovery Protocol(IRDP)Locally overrides the

Seite 280 - LSA syncing and packing

0.0.0.200 Rtr 0 192.168.98.213 800001c7 799 8402 56 Yes 0.0.0.200 Net 1156 192.168.98.111 80000004 823 b2d2 32

Seite 281 - Standby module operations

show ipv6 ospf database output descriptions (Continued)TABLE 72 This field DisplaysChksum A checksum for the LSA packet. The checksum is based on al

Seite 282 - Disabling configuration

LSA Key - Rtr:Router Net:Network Inap:InterPrefix Inar:InterRouter Extn:ASExternal Grp:GroupMembership Typ7:Type7 Link:Link Iap:Intr

Seite 283 - OSPF distribute list

OSPFv3 detailed database information fields (Continued)TABLE 73 This field DisplaysMetric The cost of using this router interface for outbound traff

Seite 284 - Examples

OSPFv3 detailed database information fields (Continued)TABLE 73 This field DisplaysOptions A 24-bit field that enables IPv6 OSPF routers to support

Seite 285

OSPFv3 detailed database information fields (Continued)TABLE 73 This field DisplaysPrefix Options An 8-bit field of capabilities that serve as input

Seite 286 - Modify SPF timers

show ipv6 interface output descriptions TABLE 74 Field DescriptionType Codes Shows the routing protocol enabled on the interface. The routing protoc

Seite 287

show ipv6 ospf interface brief output descriptions (Continued)TABLE 75 This field DisplaysStatus The status of the link and the protocol. Possible s

Seite 288 - Modify OSPF traps generated

Outbound: None Inbound: None DR:192.168.98.111 BDR:192.168.98.213 Number of I/F scoped LSAs is

Seite 289 - Modify exit overflow interval

show ipv6 ospf interface output descriptions (Continued)TABLE 76 This field DisplaysInstance ID An identifier for an instance of OSPFv3.Router ID Th

Seite 290

NOTEBrocade Layer 2 switches also provide IP multicast forwarding, which is enabled by default. Forinformation about this feature, refer to chapter &q

Seite 291

show ipv6 ospf interface output descriptions (Continued)TABLE 76 This field DisplaysAdjacent NeighborCountThe number of neighbors with which the int

Seite 292

MTYPE_OSPF6_OTHER 0 0 0 0 MTYPE_THREAD_MASTER 84 1 1 0Syntax: show ipv6 ospf m

Seite 293

show ipv6 ospf neighbor output descriptions (Continued)TABLE 78 Field DescriptionState The state between the device and the neighbor. The state can

Seite 294

Number of LSAs in DbDesc retransmitting: 0 Number of LSAs in SummaryList: 0 Number of LSAs in RequestList: 0 Number o

Seite 295 - Displaying OSPF information

show ipv6 ospf neighbor router-id output descriptions (Continued)TABLE 79 Field DescriptionDbDesc bit The Database Description packet, which include

Seite 296

Displaying routes redistributed into OSPFv3You can display all IPv6 routes or a specified IPv6 route that the device has redistributed into OSPFv3.To

Seite 297

Current Route count: 309 Intra: 304 Inter: 4 External: 1 (Type1 0/Type2 1) Equal-cost multi-path: 56 OSPF Type: IA- Intra, OA - Inter, E1 - E

Seite 298

OSPFv3 route information (Continued)TABLE 81 This field DisplaysE2 Cost The type 2 cost of this route.Tag The route tag for this route.Flags Flags a

Seite 299

child nodes: 192.168.98.61:5 192.168.98.190:1551 192.168.98.112:643 SPF node 192.168.98.61:5, cost: 2, hops: 2 nexthops to node: 5100::192:11

Seite 300

R 192.168.98.111 --V-B V6E---R- 1 fe80::768e:f8ff:fe3e:1800 ve 17 N 192.168.98.111[136] ----- V6E---R- 1 :: e 4/3/1N

Seite 301

IP global parameters - Layer 2 switches (Continued)TABLE 4 Parameter Description DefaultTime to Live (TTL) The maximum number of routers (hops) thro

Seite 302

For example, to display the SPF tree for area 0, enter the following command at any level of the CLI.device# show ipv6 ospf spf tree area 0 SPF tree

Seite 303

Displaying IPv6 OSPF virtual link informationTo display OSPFv3 virtual link information on a Brocade device, enter the show ipv6 ospf virtual-linkcomm

Seite 304

show ipv6 ospf virtual-neighbor output descriptionsTABLE 85 This field DisplaysIndex An index number associated with the virtual neighbor.Router ID

Seite 305

IPSEC Security Association Database(Entries:8)SPDID(vrf:if) Dir Encap SPI Destination AuthAlg EncryptAlg1:ALL in ESP 512

Seite 306

show ipsec policy output descriptions (Continued)TABLE 86 This field DisplaysDir The direction of traffic flow to which the IPsec policy is applied.

Seite 307

secAuthenticationErrors 0secReplayErrors: 0 ipsecPolicyErrors: 13secOtherReceiveErrors: 0 ipsecSendErrors: 0

Seite 308

show ipv6 ospf area output descriptions (Continued)TABLE 88 This field DisplaysCurrent Shows current SPI, authentication algorithm (currently ESP on

Seite 309

show ipv6 ospf interface output descriptions (Continued)TABLE 89 This field DisplaysKeyRolloverTime The number of seconds between each initiation of

Seite 310

Changing a keyIn this example, the key is changed. Note that the SPI value is changed from 300 to 310 to complywith the requirement that the SPI is ch

Seite 311 - Displaying OSPF trap status

Area 1:Authentication: Not ConfiguredInterface attached to this area: eth 1/1Number of Area scoped LSAs is 6Sum of Area LSAs Checksum is 00046630Stati

Seite 312

Configuring IP parameters - Layer 3 switchesThe following sections describe how to configure IP parameters. Some parameters can be configuredglobally

Seite 313

Clearing OSPFv3 data in a VRFYou can use the clear ipv6 ospf vrf command to clear anything in a specific vrf as shown in thefollowing.device# clear ip

Seite 314 - Clearing OSPF neighbors

Clearing OSPF neighbors attached to a specified interfaceYou can use the clear ipv6 ospf neighbor interface command to delete and relearn the OSPFneig

Seite 315

Specify the interface options as shown in the following options.ethernet slot/port - clears OSPFv3 counters for OSPFv3 neighbors on the specified Ethe

Seite 316 - Clearing OSPF information

Configuring BGP4 (IPv4)● Supported BGP4 features ... 383● BGP

Seite 317 - OSPFv3 feature support

Feature ICX 6430 ICX 6450 FCX ICX 6610 ICX 6650 FSX 800FSX 1600ICX 7750BGP4 No No 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10BGP4 Restart No 08.0.01 1408.

Seite 318 - OSPFv3 overview

Feature ICX 6430 ICX 6450 FCX ICX 6610 ICX 6650 FSX 800FSX 1600ICX 7750BGP4 AS4 Confederation ErrorCheckingNo 08.0.011408.0.01 08.0.01 08.0.01 08.0.01

Seite 319 - Configuring OSPFv3

communication. When you configure the device for BGP4, one of the configuration tasks you performis to identify the device’s BGP4 neighbors.Although a

Seite 320 - Assigning OSPFv3 areas

4. Prefer the route that was originated locally (by this BGP4 device).5. If the local preferences are the same, prefer the path with the shortest AS-p

Seite 321

13.If the route is a BGP4 VRF instance, prefer the route with the smallest RD value.14.Prefer the route that comes from the lowest BGP4 neighbor addre

Seite 322

and the length of the network portion of the number. For example, an UPDATE message with theNLRI entry 10.215.129.0/18 indicates a route to IP network

Seite 323

The ospf-ignore and ospf-passive parameters modify the Layer 3 switch defaults for adjacencyformation and interface advertisement. Use one of these pa

Seite 324

NOTERIB-out peer grouping is not shared between different VRFs or address families.Implementation of BGP4BGP4 is described in RFC 1771 and the latest

Seite 325 - Specifying a network type

NOTEBGP4 restart is supported in FSX 800, FSX 1600 devices with dual management modules, FCXswitches in a stack and ICX switches in a stack. If the sw

Seite 326 - Configuring virtual links

FIGURE 29 Management module switchover behavior for BGP4 peer notificationIf the active management module fails due to a fault, the management module

Seite 327

FIGURE 30 Example of customer connected to two ISPsIn the next example, ISP-A has purchased ISP-B. The AS associated with ISP-B changes to AS 100. IfC

Seite 328

1. Enable the BGP4 protocol.2. Set the local AS number.NOTEYou must specify the local AS number for BGP4 to become functional.3. Add each BGP4 neighbo

Seite 329

NOTETo disable BGP4 without losing the BGP4 configuration information, remove the local AS (for example,by entering the no local-as command). When you

Seite 330

NOTEWhen using the CLI, you set global level parameters at the BGP CONFIG level of the CLI. You canreach the BGP CONFIG level by entering the router b

Seite 331

Parameter changes that take effect after disabling and re-enablingredistributionThe following parameter change takes effect only after you disable and

Seite 332 - Filtering OSPFv3 routes

Basic configuration tasks required for BGP4The following sections describe how to perform the configuration tasks that are required to use BGP4on the

Seite 333

Setting the local AS numberThe local autonomous system number (ASN) identifies the AS in which the Brocade BGP4 deviceresides.To set the local AS numb

Seite 334

Reverse Address Resolution Protocol configuration...79Configuring UDP broadcast and IP helper parameters...81B

Seite 335

The num parameter specifies the virtual interface number. You can specify from 1 to the maximumnumber of virtual interfaces supported on the device. T

Seite 336

Adding a loopback interfaceYou can configure the device to use a loopback interface instead of a specific port or virtual routinginterface to communic

Seite 337

The neighbor command has additional parameters, as shown in the following syntax:Syntax: no neighbor {ip-addr | peer-group-name} {[activate] [advertis

Seite 338

filters. The device applies the filters in the order in which you list them and stops applying the filters inthe distribute list when a match is found

Seite 339

maximum-prefix num specifies the maximum number of IP network prefixes (routes) that can belearned from the specified neighbor or peer group . You can

Seite 340 - Configuring IPsec for OSPFv3

remove-private-as configures the device to remove private AS numbers from update messages thedevice sends to this neighbor. The device will remove AS

Seite 341 - General considerations

2 10.1.44.0/24 10.2.0.1 1 101 32768 BLS AS_PATH: In this example, the aggregate-address command configures an aggreg

Seite 342

When encryption of the authentication string is enabled, the string is encrypted in the CLI regardless ofthe access level you are using.When you save

Seite 343

By default, password is encrypted. If you want the password to be in clear text, insert a 0 betweenpassword and string.device(config-bgp)# neighbor 10

Seite 344 - Configuring IPsec for an area

The ip-address parameter is the neighbor IP address. The following sub-parameters are available forthe ip-address parameter:[advertised routes} [flap-

Seite 345

explicitly configured for the neighbor. If you do not set a neighbor parameter in the peer group and theparameter also is not set for the individual n

Seite 346 - Clearing IPsec statistics

Configuration limitations and feature limitations for IP Follow on a virtual routinginterface• When configuring IP Follow, the primary virtual routing

Seite 347

The peer-group-name parameter specifies the name of the group and can be up to 80 characters long.The name can contain special characters and internal

Seite 348 - Displaying OSPFv3 information

The software also contains an option to end the session with a BGP4 neighbor and clear the routeslearned from the neighbor. Unlike this clear option,

Seite 349

Changing the BGP4 next-hop update timerBy default, the device updates the BGP4 next-hop tables and affected BGP4 routes five seconds afterIGP route ch

Seite 350

• Enable IP load sharing if it is disabled.• Set the maximum number of BGP4 load sharing paths. The default maximum number is 1, whichmeans no BGP4 lo

Seite 351

Changing the maximum number of shared BGP4 pathsTo change the maximum number of BGP4 shared paths, enter commands such as the following.device(config)

Seite 352

To set the number of equal-cost multipath IBGP routes or paths that will be selected, enter commandssuch as the following.device(config)# router bgpde

Seite 353

To configure a route map, and use it to set or change route attributes for a network you define forBGP4 to advertise, enter commands such as the follo

Seite 354

Changing the default MED (Metric) used for route redistributionThe Brocade device can redistribute directly connected routes, static IP routes, RIP ro

Seite 355

Enabling recursive next-hop lookupsThe recursive next-hop lookups feature is disabled by default. To enable recursive next-hop lookups,enter the follo

Seite 356

3 10.40.0.0/24 10.1.0.2 0 100 0 BI AS_PATH: 65001 4355 701 1 1894 10.0.0.0/24 10.0.0.1 1

Seite 357

broadcast support because any packet that is transmitted by one host is always received by the otherhost at the receiving end. Therefore, directed bro

Seite 358

When selecting a route from among different sources (BGP4, OSPF, RIP, static routes, and so on),the software compares the routes on the basis of the a

Seite 359

group. If neither configuration exists, enforcement is simply that of the global configuration (which isdisabled by default).To enable this feature gl

Seite 360

This command disables comparison of the AS-Path lengths of otherwise equal paths. When youdisable AS-Path length comparison, the BGP4 algorithm shown

Seite 361

NOTEMED comparison is not performed for internal routes originated within the local AS or confederationunless the compare-med-empty-aspath command is

Seite 362

cluster must be in the same AS. The cluster ID can be any number from 1 - 4294967295, or an IPaddress. The default is the device ID expressed as a 32-

Seite 363

Support for RFC 4456Route reflection on Brocade devices is based on RFC 4456. This updated RFC helps eliminate routingloops that are possible in some

Seite 364

Disabling or re-enabling client-to-client route reflectionBy default, the clients of a route reflector are not required to be fully meshed. Routes fro

Seite 365

FIGURE 33 Example BGP4 confederationIn this example, four devices are configured into two sub-autonomous systems, each containing two ofthe devices. T

Seite 366

Commands for device AdeviceA(config)# router bgpdeviceA(config-bgp-router)# local-as 64512deviceA(config-bgp-router)# confederation identifier 10devic

Seite 367

Aggregating routes advertised to BGP4 neighborsBy default, the device advertises individual routes for all networks. The aggregation feature allows yo

Seite 368

Routers B and C are connected by a regular 24-bit subnet. Router C can either be a switch with manyhosts belonging to the 10.2.2.2/24 subnet connected

Seite 369

Configuring BGP4 Restart for a VRFUse the following command to enable the BGP4 Restart feature for a specified VRF.device(config)# router bgpdevice(co

Seite 370

BGP4 null0 routingBGP4 considers the null0 route in the routing table (for example, static route) as a valid route, and canuse the null0 route to reso

Seite 371

6. To configure a route-map perform the following step.• On device 1, (the device facing the Internet), configure a null0 route matching the next-hopa

Seite 372 - IPsec examples

The following configuration defines a null0 route to the specific next hop address. The next hop address10.199.1.1 points to the null0 route, which ge

Seite 373 - Showing IPsec policy

The show ip route output for device 1 and device 2 shows "drop" under the Port column for thenetwork prefixes you configured with null0 rout

Seite 374 - Showing IPsec statistics

Redistributing connected routesTo configure BGP4 to redistribute directly connected routes, enter the following command.device(config-bgp-router)# red

Seite 375

NOTEIf you do not enter a value for the match parameter, (for example, you enter redistribute ospf only)then only internal OSPF routes will be redistr

Seite 376

FilteringThis section describes the following:• AS-path filtering• Route-map continue clauses for BGP4 routes• Defining and applying IP prefix lists•

Seite 377

The software interprets the entries in an AS-path list in numerical order, beginning with the lowestsequence number.The deny and permit parameters spe

Seite 378 - Changing a key

BGP4 special characters for regular expressions (Continued)TABLE 91 Character Operation+ The plus sign matches on one or more sequences of a pattern

Seite 379 - OSPFv3 clear commands

FIGURE 3 DNS resolution with one domain nameDefining DNS server addressesYou can configure the Brocade device to recognize up to four DNS servers. The

Seite 380 - Clearing OSPFv3 neighbors

BGP4 special characters for regular expressions (Continued)TABLE 91 Character Operation| A vertical bar (sometimes called a pipe or a "logical

Seite 381 - Clearing OSPFv3 counters

NOTEOnce you define a filter or ACL, the default action for communities that do not match a filter or ACL isdeny . To change the default action to per

Seite 382

These commands configure an IP prefix list named Routesfor20, which permits routes to network10.20.0.0/24. The neighbor command configures the device

Seite 383 - Configuring BGP4 (IPv4)

To configure a distribute list that uses ACL 1, enter a command such as the following.device(config-bgp)# neighbor 10.10.10.1 distribute-list 1 inThis

Seite 384

• Prepend AS numbers to the front of the route AS-path. By adding AS numbers to the AS-path, youcan cause the route to be less preferred when compared

Seite 385 - BGP4 overview

Specifying the match conditionsUse the following command to define the match conditions for instance 1 of the route map GET_ONE.This instance compares

Seite 386

The string parameter specifies an AS-path ACL and can be a number from 1 through 199. You canspecify up to five AS-path ACLs.Matching based on communi

Seite 387

device(config)# route-map bgp1 permit 1device(config-routemap bgp1)# match ip route-source 10The first command configures an IP ACL that matches on ro

Seite 388 - BGP4 message types

The match protocol bgp external option will match the eBGP routes.The match protocol bgp internal option will match the iBGP routes.The match protocol

Seite 389 - Grouping of RIB-out peers

The comm-list parameter deletes a community from the community attributes field for a BGP4 route.The community parameter sets the community attribute

Seite 390 - BGP4 restart

Using a DNS name to initiate a trace routeSuppose you want to trace the route from a BrocadeLayer 3 switch to a remote server identified asNYC02 on do

Seite 391

device(config)# route-map bgp4 permit 1device(config-routemap bgp4)# match ip address 1device(config-routemap bgp4)# set metric-type internalThe first

Seite 392 - BGP4 neighbor local AS

Using a table map to set the tag valueRoute maps that contain set statements change values in routes when the routes are accepted by theroute map. For

Seite 393

as outbound filters when it sends routes to the device. Likewise, the device uses the ORFs itreceives from the neighbor as outbound filters when sendi

Seite 394 - Disabling BGP4

NOTEMake sure cooperative filtering is enabled on the device and on the neighbor before you send the filters.To reset a neighbor session and send ORFs

Seite 395 - BGP4 parameters

seq 5 permit 10.10.0.0/16 ge 18 le 28 seq 10 permit 10.20.10.0/24 seq 15 permit 10.0.0.0/8 le 32 seq 20 permit 10.10.0.0/16 ge 18Synt

Seite 396

You can enable AS4s on a device, a peer group, and a neighbor. For global configuration, thecapability command in the BGP4 configuration context enabl

Seite 397 - Memory considerations

Specifying the local AS numberThe local autonomous system number (ASN) identifies the autonomous system where the BGP4device resides.Normally, AS4s ar

Seite 398 - Changing the device ID

The peer-group-name specifies all neighbors in a specific peer group. The as-num parameter specifiesall neighbors within the specified AS. After choos

Seite 399 - Setting the local AS number

NOTERemember that autonomous system path matching that uses regular expression is based on theconfigured autonomous system format.The following comman

Seite 400 - Adding BGP4 neighbors

NOTELogging of errors is rate-limited to not more than one message for every two minutes. Some errors maybe lost due to this rate-limiting.Sample log

Seite 401

The entire IP packet, including the source and destination address and other control information andthe data, is placed in the data portion of the Lay

Seite 402

The route flap dampening mechanism is based on penalties. When a route exceeds a configuredpenalty value, the device stops using that route and stops

Seite 403

This example shows how to change the dampening parameters.device(config-bgp-router)# dampening 20 200 2500 40This command changes the half-life to 20

Seite 404

to neighbor 10.10.10.1. Since the second route map does not contain match clauses for specificroutes, the route map enables dampening for all routes r

Seite 405

The as-path-filternum parameter specifies one or more filters. Only the routes that have beendampened and that match the specified filter or filters a

Seite 406 - Encryption example

Generating traps for BGP4You can enable and disable SNMP traps for BGP4. BGP4 traps are enabled by default.To enable BGP4 traps after they have been d

Seite 407

IPv4 BGP4 commands for different configuration levels (Continued)TABLE 93 Command Global (iPv4 and IPv6) IPv4 address family unicastdampening xdefau

Seite 408 - Adding a BGP4 peer group

IPv4 BGP4 commands for different configuration levels (Continued)TABLE 93 Command Global (iPv4 and IPv6) IPv4 address family unicastupdate-time xEnt

Seite 409 - Configuring a peer group

NOTEThe always-propagate command and the rib-route-limit command are supported.Configuring BGP route reflectorThe always-propagate command enables a d

Seite 410

If the rib-route-limit command is configured to a value that is below the number of BGP4 routesalready installed in the RTM, the following warning mes

Seite 411

NOTETraffic loss on a BGP4 route occurs when a device is advertising preferred BGP4 routes not installed inthe RTM as part of the forwarding path.Beca

Seite 412

• You cannot use this command to set Layer 2 maximum frame sizes per interface. The global jumbocommand causes all interfaces to accept Layer 2 frames

Seite 413

If a route from a peer exceeds the configured Maximum AS path limit, the device also removes thesame route from that peer, if it exists, from its own

Seite 414

To configure a peer group named "PeerGroup1" and set a maximum AS path value of 7, enter thefollowing commands:device(config-bgp)# neighbor

Seite 415

Changing the default metric used for route costBy default, BGP4 uses the BGP MED value as the route cost when adding the route to the RTM.However, you

Seite 416

Setting an administrative distance for a static BGP4 networkWhen a static BGP4 network route is configured, its type is local BGP4 route and has a def

Seite 417 - Enabling next-hop recursion

This feature supports a more programmable route map configuration and route filtering scheme forBGP4 peering. It can also execute additional instances

Seite 418

The num parameter specifies the instance of the route map defined in the route-map context that theCLI enters. Routes are compared to the instances in

Seite 419

When a route filter is changed (created, modified or deleted) by a user, the filter change notificationwill be sent to all relevant protocols, so that

Seite 420

BGP4 policy processing orderThe order of application of policies when processing inbound and outbound route advertisements on thedevice is:1. lp prefi

Seite 421

• Active route maps (the route map configuration information in the running configuration)• BGP4 graceful restart neighbor Information• AS4 support an

Seite 422

show ip bgp summary output descriptions (Continued)TABLE 95 This field DisplaysNumber of NeighborsConfiguredThe number of BGP4 neighbors configured

Seite 423

‐ 10,200 bytes - The maximum for Ethernet II encapsulation (Default MTU: 9216)‐ 10,174 bytes - The maximum for SNAP encapsulation (Default MTU: 9216)•

Seite 424

show ip bgp summary output descriptions (Continued)TABLE 95 This field DisplaysState The state of device sessions with each neighbor. The states are

Seite 425 - Support for RFC 4456

show ip bgp summary output descriptions (Continued)TABLE 95 This field DisplaysFiltered The routes or prefixes that have been filtered out:• If soft

Seite 426 - Configuring confederations

BEST Routes not Installed in IP Forwarding Table:0 Unreachable Routes (no IGP Route for NEXTHOP):0 History Routes:0 NLRIs Received in Upda

Seite 427

show ip bgp neighbors route-summary output descriptions (Continued)TABLE 96 This field DisplaysRoutes Advertised The number of routes the device has

Seite 428 - Commands for device D

Received: 1 8 1 0 0 Last Update Time: NLRI Withdraw NLRI Withdraw Tx:

Seite 429 - Configuring BGP4 restart

The routes-summary option displays a summary of the following information:• Number of routes received from the neighbor• Number of routes accepted by

Seite 430

show ip bgp neighbor output descriptions (Continued)TABLE 97 This field Displays.State The state of the session with the neighbor. The states are fr

Seite 431 - BGP4 null0 routing

show ip bgp neighbor output descriptions (Continued)TABLE 97 This field Displays.Multihop-EBGP Whether this option is enabled for the neighbor.Route

Seite 432 - Configuration examples

show ip bgp neighbor output descriptions (Continued)TABLE 97 This field Displays.Last Connection Reset Reason The reason the previous session with t

Seite 433

show ip bgp neighbor output descriptions (Continued)TABLE 97 This field Displays.Notification Sent If the device receives a NOTIFICATION message fro

Seite 434

addresses configured on the Layer 3 switch, regardless of the interfaces that connect the Layer 3switches. This IP address is the router ID.NOTERoutin

Seite 435 - Redistributing RIP routes

show ip bgp neighbor output descriptions (Continued)TABLE 97 This field Displays.TCP Connection state The state of the connection with the neighbor.

Seite 436 - Redistributing IBGP routes

show ip bgp neighbor output descriptions (Continued)TABLE 97 This field Displays.ReTrans The number of sequence numbers that the device retransmitte

Seite 437 - Filtering

You also can enter a specific route.device# show ip bgp neighbors 192.168.4.211 advertised 10.1.1.0/24Status A:AGGREGATE B:BEST b:NOT-INSTALLED-BEST I

Seite 438 - Using regular expressions

Displaying peer group informationTo display peer-group information, enter a command such as the following at the Privileged EXEC levelof the CLI.devic

Seite 439

show ip bgp routes output descriptions (Continued)TABLE 98 This field DisplaysBEST routes not installed in IPforwarding tableNumber of BGP4 routes t

Seite 440 - BGP4 filtering communities

The ip-addr option displays routes for a specific network. The network keyword is optional. You canenter the network address without entering network

Seite 441 - Defining a community ACL

Prefix Next Hop MED LocPrf Weight Status1 10.3.0.0/8 192.168.4.106 100 0 BE

Seite 442

Displaying information for a specific routeTo display BGP4 network information by specifying an IP address within the network, enter a commandsuch as

Seite 443 - Defining route maps

show ip bgp route output descriptions (Continued)TABLE 99 This field DisplaysLocPrf The degree of preference for this route relative to other routes

Seite 444

show ip bgp route output descriptions (Continued)TABLE 99 This field DisplaysStatus The route status, which can be one or more of the following:• A

Seite 445 - Match examples using ACLs

IPv6 CLI command support ...168IPv6 host address on a Layer 2 switch...

Seite 446

• TFTP• RADIUS• Syslog• SNTP• SSH• SNMP trapsYou can configure the Layer 3 switch to always use the lowest-numbered IP address on a specificEthernet,

Seite 447

show ip bgp routes detail output descriptionsTABLE 100 This field DisplaysTotal number ofBGP4 RoutesThe number of BGP4 routes.Status codes A list of

Seite 448 - Matching based on interface

show ip bgp routes detail output descriptions (Continued)TABLE 100 This field DisplaysLocal_Pref The degree of preference for this route relative to

Seite 449

Displaying BGP4 route-attribute entriesThe route-attribute entries table lists the sets of BGP4 attributes stored in device memory. Each set ofattribu

Seite 450

show ip bgp attribute-entries output descriptions (Continued)TABLE 101 This field DisplaysAtomic Whether the network information in this set of attr

Seite 451

Displaying route flap dampening statisticsTo display route dampening statistics or all the dampened routes, enter the following command at anylevel of

Seite 452 - Sending and receiving ORFs

show ip bgp flap-statistics output descriptions (Continued)TABLE 102 This field DisplaysPath The AS-path information for the route.You can display a

Seite 453

...Displaying AS4 detailsThis section describes the use of the following show commands, which produce output that includesinformation about AS4s.• sh

Seite 454 - Enabling AS4 numbers

TTL check: 0, value: 0, rcvd: 64 Byte Sent: 148, Received: 203 Local host: 192.168.1.2, Local Port: 179 Remote host: 192.168

Seite 455 - Global AS4 configuration

show ip bgp neighbors output descriptions (Continued)TABLE 103 Field DescriptionState Shows the state of the device session with the neighbor. The s

Seite 456

show ip bgp neighbors output descriptions (Continued)TABLE 103 Field DescriptionMessages Sent andReceivedShows the number of messages this device ha

Seite 457 - AS4 notation

TACACS/TACACS+ packetsTo specify the lowest-numbered IP address configured on a virtual interface as the device source for allTACACS/TACACS+ packets,

Seite 458 - BGP4 AS4 attribute errors

show ip bgp neighbors output descriptions (Continued)TABLE 103 Field DescriptionLast Connection ResetReason(continued)• Reasons described in the BGP

Seite 459

show ip bgp neighbors output descriptions (Continued)TABLE 103 Field DescriptionNotification Sent Shows an error code corresponding to one of the fo

Seite 460

show ip bgp neighbors output descriptions (Continued)TABLE 103 Field DescriptionNeighbor AS4 CapabilityNegotiationShows the state of the device’s AS

Seite 461

show ip bgp neighbors output descriptions (Continued)TABLE 103 Field DescriptionISentSeq Shows the initial send sequence number for the session.Send

Seite 462

Address: 0x10e4e062 Hash:545 (0x0301e8f6), PeerIdx 0 Links: 0x00000000, 0x00000000, nlri: 0x10f47ff0 Reference Counts: 1:0:1, M

Seite 463

This example is a simple illustration of route-map continue clauses. If the match clause of either routemap instance 5 or 10 matches, the route map tr

Seite 464 - Configuring BGP4

set metric 20 continue 3route-map test permit 3 set community 10:20 continue 4route-map test permit 4 set community 30:40 continue 5route-map test pe

Seite 465

Updating route information and resetting a neighbor sessionThe following sections describe how to update route information with a neighbor, reset a se

Seite 466 - BGP route reflector

NOTEThe syntax related to soft reconfiguration is shown.Placing a policy change into effectTo place policy changes into effect, enter a command such a

Seite 467

The prefix-list string parameter specifies an IP prefix list. Only routes permitted by the prefix list aredisplayed.If you also use the optional longe

Seite 468

Syslog packetsTo specify the lowest-numbered IP address configured on a virtual interface as the device source forall Syslog packets, enter commands s

Seite 469

• RFC 2842. This RFC specifies the Capability Advertisement, which a BGP4 device uses todynamically negotiate a capability with a neighbor.• RFC 2858

Seite 470

NOTEThe soft-outbound parameter updates all outbound routes by applying the new or changed filters, butsends only the existing routes affected by the

Seite 471 - Originating the default route

Notification Sent: Unspecified Notification Received: Unspecified TCP Connection state: ESTABLISHED Byte Sent: 115, Recei

Seite 472

Clearing traffic countersYou can clear the counters (reset them to 0) for BGP4 messages.To clear the BGP4 message counter for all neighbors, enter the

Seite 473

The The all , ip-addr , peer-group-name , and as-num parameters specify the neighbor. The ip-addrparameter specifies a neighbor by its IP interface wi

Seite 474

Configuring BGP4+● Supported BGP4+ features...525● BGP4+ overv

Seite 475 - Dynamic route filter update

NOTEThe implementation of BGP4+ supports the advertising of routes among different address families.However, it supports BGP4+ unicast routes only; it

Seite 476 - Filter update delay and BGP

For more information on performing these configuration tasks, refer to FastIron Ethernet SwitchAdministration Guide.To configure BGP4+, you must do th

Seite 477 - Displaying BGP4 information

Configuring BGP4+ neighbors using global or site-local IPv6addressesTo configure BGP4+ neighbors using global or link-local IPv6 addresses, you must a

Seite 478

Identifying a neighbor interfaceTo specify Ethernet interface 3/1 as the neighbor interface over which the neighbor and local device willexchange pref

Seite 479

The commands in this example configure loopback interface 2, assign IP address 10.0.0.2/24 to theinterface, then designate the interface as the source

Seite 480

Syntax: set ipv6 next-hop ipv6-addressThe ipv6-address parameter specifies the IPv6 global address of the next-hop router. You mustspecify the ipv6-ad

Seite 481

The as-number parameter indicates the number of the autonomous system in which the neighborresides.To delete the neighbor from the BGP4+ neighbor tabl

Seite 482

You can enable the BGP4+ device to advertise the default BGP4+ route by specifying the default-information-originate command at the BGP4+ unicast addr

Seite 483

• Static IPv6 routes• Directly connected IPv6 networks• OSPFv3• RIPngYou can redistribute routes in the following ways:• By route types, for example,

Seite 484

The advertise-map map-name parameter configures the device to advertise the more specific routesin the specified route map.The attribute-map map-name

Seite 485

IPv6 route table. Otherwise, the device performs another lookup on the next-hop IPv6 address of thenext-hop for the next-hop gateway, and so on, until

Seite 486

AS_PATH:2 2001:db8::/64 2001:ab::1 100 0 BI AS_PATH: 65000 650013 2007:7002:17::/64 2071:

Seite 487

In some cases, such as when the device is acting as an edge device, you can allow the device to usethe default route as a valid next-hop. To do so, en

Seite 488

NOTEClearing the dampening statistics for a route does not change the dampening status of the route.To clear all the route dampening statistics, enter

Seite 489

To clear these buffers for neighbor 2000:db8::1, enter the following commands at the Privileged EXEClevel or any of the Config levels of the CLI.devic

Seite 490

network route if the IP route table does not contain a route to the packet destination. In each case, theLayer 3 switch must encapsulate the packet an

Seite 491 - Displaying advertised routes

applies the filters and route maps you have configured to the list of routes. If the filters or route mapsresult in changes to the list of routes, the

Seite 492 - Displaying the best routes

To clear all of the route flap dampening statistics for a neighbor, enter a command such as the followingat the Privileged EXEC level or any of the Co

Seite 493

NOTEThe show commands implemented for BGP4+ correspond to the show commands implemented forIPv4 BGP. For example, you can specify the show ipv6 bgp co

Seite 494

show ipv6 bgp routes output descriptions (Continued)TABLE 104 Field DescriptionWeight The value that this device associates with routes from a speci

Seite 495

The as-path-access-list name parameter filters the display using the specified AS-path ACL.The as-path-filter number parameter filters the display usi

Seite 496

LOCAL_PREF: 400, MED: 0, ORIGIN: incomplete, Weight: 0 AS_PATH: 65005 65010 Adj_RIB_out count: 1, Admin distance 2004 Prefix: 2

Seite 497

show ipv6 bgp route detail output descriptions (Continued)TABLE 105 Field DescriptionOrigin The source of the route information. The origin can be o

Seite 498

in RFC 2373. You must specify the prefix-length parameter as a decimal value. A slash mark (/) mustfollow the ipv6-prefix parameter and precede the pr

Seite 499 - Displaying route details

Status codes: s suppressed, d damped, h history, * valid, > best, i internal, SstaleOrigin codes: i - IGP, e - EGP, ? - incomplete Network

Seite 500

show ipv6 bgp output descriptions (Continued)TABLE 106 This field... Displays...Number of BGP Routesmatching display condition(appears in display th

Seite 501

To limit the number of ARP packets the device will accept each second, enter the rate-limit-arpcommand at the global CONFIG level of the CLI.device(co

Seite 502

NOTEPortions of this display are truncated for brevity. The purpose of this display is to show all possiblefields that might display rather than to sh

Seite 503

show ipv6 bgp attribute-entries output descriptions (Continued)TABLE 107 This field... Displays...AS Path The ASs through which routes with this set

Seite 504

show ipv6 bgp dampened-paths output descriptions TABLE 108 This field... Displays...Status codes A list of the characters the display uses to indica

Seite 505

colons as documented in RFC 2373. You must specify the prefix-length parameter as a decimal value.A slash mark (/) must follow the ipv6-prefix paramet

Seite 506 - Displaying AS4 details

show ipv6 bgp filtered-routes output descriptions (Continued)TABLE 109 This field... Displays...Status The route’s status, which can be one or more

Seite 507

LOCAL_PREF: 100, MED: 0, ORIGIN: incomplete, Weight: 0 AS_PATH: 100 Syntax: show ipv6 bgp filtered-routes detail [ ipv6-prefix/prefix-length [

Seite 508

show ipv6 bgp filtered-routes detail output descriptions (Continued)TABLE 110 This field... Displays...Origin The source of the route information. T

Seite 509

documented in RFC 2373. You must specify the prefix-length parameter as a decimal value. A slashmark (/) must follow the ipv6-prefix parameter and pre

Seite 510

• Router advertisements.• Route-attribute entries.• Route flap dampening statistics.• The last packet containing an error.• Received Outbound Route Fi

Seite 511

The ipv6-address parameter allows you to display information for a specified neighbor only. You mustspecify the ipv6-address parameter in hexadecimal

Seite 512

10.10.10.0/24 subnet cannot reach a device in the 10.20.20.0 subnet if the subnets are on differentnetwork cables, and thus is not answered.NOTEAn ARP

Seite 513 - Attribute entries

show ipv6 bgp neighbor output descriptions (Continued)TABLE 112 This field... Displays...State The state of the device’s session with the neighbor.

Seite 514 - Running configuration

show ipv6 bgp neighbor output descriptions (Continued)TABLE 112 This field... Displays...Messages Sent andReceivedThe number of messages this device

Seite 515

show ipv6 bgp neighbor output descriptions (Continued)TABLE 112 This field... Displays...Last Connection ResetReason (cont.)• Reasons specific to th

Seite 516

show ipv6 bgp neighbor output descriptions (Continued)TABLE 112 This field... Displays...Notification Received See above.Neighbor NLRINegotiationThe

Seite 517 - Using soft reconfiguration

show ipv6 bgp neighbor output descriptions (Continued)TABLE 112 This field... Displays...ISentSeq The initial send sequence number for the session.S

Seite 518

The ipv6-address parameter displays routes advertised to a specified neighbor. You must specify thisaddress in hexadecimal using 16-bit values between

Seite 519

For example, to display details about all routes a device has advertised to neighbor 2001:db8::110,enter the following command at any level of the CLI

Seite 520 - Dynamically refreshing routes

show ipv6 bgp neighbor advertised-routes detail output descriptions (Continued)TABLE 114 This field... Displays...AS-PATH The AS-path information fo

Seite 521

You also can display all the dampened routes by using the show ipv6 bgp dampened-pathscommand. For more information, refer to Displaying dampened BGP4

Seite 522

For example, to display a summary of the route information received in route updates from neighbor2001:db8::10, enter the following command at any lev

Seite 523 - Clearing diagnostic buffers

Static entries are useful in cases where you want to pre-configure an entry for a device that is notconnected to the Layer 3 switch, or you want to pr

Seite 524

show ipv6 bgp neighbor received-routes output descriptions (Continued)TABLE 117 This field... Displays...Status The advertised route’s status, which

Seite 525 - Configuring BGP4+

show ipv6 bgp neighbor received-routes detail output descriptionsTABLE 118 This field... Displays...Number of BGP4+routes received from aneighborFor

Seite 526

The RIB contains the routes that the device either has most recently sent to the neighbor or is about tosend to the neighbor.For example, to display a

Seite 527 - Enabling BGP4+

show ipv6 bgp neighbor rib-out-routesoutput descriptions (Continued)TABLE 119 This field... Displays...Weight The value that this device associates

Seite 528 - Adding BGP4+ neighbor

show ipv6 bgp neighbor rib-out-routes detail output descriptions (Continued)TABLE 120 This field... Displays...LOCAL_PREF For information about this

Seite 529 - Configuring a route map

The detail keyword displays detailed information about the routes. If you do not specify this parameter,a summary of the routes displays.This display

Seite 530 - Creating a BGP4+ peer group

show ipv6 bgp neighbor routes best output descriptions (Continued)TABLE 121 This field... Displays...Status The route’s status, which can be one or

Seite 531

show ipv6 bgp neighbor routes detail bestoutput descriptions (Continued)TABLE 122 This field... Displays...Status codes For information about this f

Seite 532 - Importing routes into BGP4+

Receiving Update Messages:0, Accepting Routes(NLRI):0 Attributes:0, Outbound Routes(RIB-out):0 Outbound Routes Holder:0Syntax: show ipv6 bgp neig

Seite 533

show ipv6 bgp neighbor routes-summary output descriptions (Continued)TABLE 123 This field... Displays...NLRIs Sent inUpdate MessageThe number of NLR

Seite 534 - Using route maps

Static ARP entry support (Continued)TABLE 6 Default maximum Configurable minimum Configurable maximumICX 6430 and ICX 6450 devices256 64 1024ICX 661

Seite 535

Displaying BGP4+ summaryTo view summary BGP4+ information for the device, enter the following command at any level of theCLI.device# show ipv6 bgp sum

Seite 536

show ipv6 bgp summary output descriptions (Continued)TABLE 124 This field... Displays...State The state of this neighbor session with each neighbor.

Seite 537 - Clearing BGP4+ information

show ipv6 bgp summary output descriptions (Continued)TABLE 124 This field... Displays...ToSend The number of routes the has queued to send to this n

Seite 538

Configuring BGP4+ graceful restart stale routes timerUse the following command to specify the maximum amount of time a helper device will wait for an

Seite 539

Displaying BGP4+ graceful restart neighbor information584 FastIron Ethernet Switch Layer 3 Routing Configuration Guide53-1003087-04

Seite 540

VRRP and VRRP-E● VRRP and VRRP-E Feature Table... 585● Overview...

Seite 541 - Displaying BGP4+ information

OverviewThis chapter describes how to configure Brocade Layer 3 switch with the following router redundancyprotocols:• Virtual Router Redundancy Proto

Seite 542

FIGURE 35 Switch 1 is the Host1 default gateway but is a single point of failureSwitch 1 is the host default gateway out of the subnet. If this interf

Seite 543

FIGURE 36 Switch 1 and Switch 2 configured as VRRP virtual routers for redundant network accessfor Host1The dashed box represents a VRRP virtual route

Seite 544

192.53.5.1. Hosts use the virtual router MAC address in routed traffic they send to their default IPgateway (in this example, 192.53.5.1).Virtual rout

Seite 545

The source MAC address in the Ethernet header and the sender hardware address in the ARPbody must be the same. This validation is performed for the AR

Seite 546

Hello messagesVirtual routers use Hello messages for negotiation to determine the Master router. Virtual routers sendHello messages to IP Multicast ad

Seite 547 - Total number of BGP Routes: 4

feature, make sure the track priorities are always lower than the VRRP priorities. The default trackpriority for the router that owns the VRID IP addr

Seite 548

‐ VRRP has an Owner and one or more Backup routers for each VRID. The Owner is therouter on which the VRID's IP address is also configured as a r

Seite 549

FIGURE 37 Switch 1 and Switch 2 are configured to provide dual redundant network access for the hostIn this example, Switch 1 and Switch 2 use VRRP-E

Seite 550

Comparison of VRRP and VRRP-EThis section compares router redundancy protocols.VRRPVRRP is a standards-based protocol, described in RFC 2338. The Broc

Seite 551

Master and Backup routers• VRRP - The "Owner" of the IP address of the VRID is the default Master and has the highest priority(255). The pre

Seite 552

VRRP and VRRP-E parameters (Continued)TABLE 125 Parameter Description DefaultAuthenticationtypeThe type of authentication the VRRP or VRRP-E interfa

Seite 553

VRRP and VRRP-E parameters (Continued)TABLE 125 Parameter Description DefaultDead interval The number of seconds or milliseconds a Backup waits for

Seite 554

VRRP and VRRP-E parameters (Continued)TABLE 125 Parameter Description DefaultBackup preemptmodePrevents a Backup with a higher VRRP priority from ta

Seite 555

Basic VRRP parameter configurationTo implement a simple VRRP configuration using all the default values, enter the commands shown inthe following sect

Seite 556

Displaying global IPv6 information...195Displaying IPv6 cache information...

Seite 557

Changing the TTL thresholdThe time to live (TTL) threshold prevents routing loops by specifying the maximum number of routerhops an IP packet originat

Seite 558

The track-priority value option changes the track-port priority for this interface and the VRID from thedefault (255) to a value from 1 through 254.Th

Seite 559

Syntax: [no] ip-address ip-addressSyntax: [no] ip vrrp vrrp vrid numSyntax: [no] backup [ priority value] [ track-priority value ]Syntax: [no] hello-i

Seite 560

By default, Backup routers do not send Hello messages to advertise themselves to the Master. Theadvertise backup command is used to enable a Backup ro

Seite 561

Enabling accept mode in VRRP non-Owner Master routerTo configure a non-Owner Master router to respond to ping, traceroute, and Telnet packets destined

Seite 562

• The Hello interval must be set to the same value with in the same VRID.• The dead interval must be set to the same value with in the same VRID.• The

Seite 563

Brocade(config)# ipv6 router vrrp-extendedBrocade(config-ipv6-VRRP-E-router)# interface ethernet 1/5Brocade(config-if-e10000-1/5)# ipv6-address 2001:D

Seite 564

• Backup preempt mode• Timer scale• VRRP-E slow start timer• VRRP-E extension for server virtualization (short-path forwarding)VRRP and VRRP-E authent

Seite 565

Syntax: ip vrrp-extended auth-type no-auth | simple-text-auth auth-data | md5-auth [ 0 |1 ] keyFor IPv6 VRRP-E:Syntax: ipv6 vrrp-extended auth-type no

Seite 566

NOTEThe Owner type is not applicable to VRRP-E.NOTEFor VRRP, the IP address you associate with the Owner must be real IP address on the interfacewhere

Seite 567

Suppression of RIP advertisementsNOTESuppression of RIPng advertisements on Backup routers for the backup interface is not supported byIPv6 VRRP v3 an

Seite 568

Disabling forwarding of IP source-routed packetsA source-routed packet specifies the exact router path for the packet. The packet specifies the path b

Seite 569

The milliseconds variable can be 100 milliseconds interval only. The default is 1000 milliseconds, andthe range is 100 to 40900 milliseconds.To change

Seite 570

device(config)#interface ethernet 1/6device(config-if-1/6)#ip vrrp vrid 1device(config-if-1/6-vrid-1)#backup-hello-interval 180Syntax: [no] backup-hel

Seite 571

Backup preempt configurationBy default, a Backup that has a higher priority than another Backup that has become the Master canpreempt the Master, and

Seite 572

Time scale values (Continued)TABLE 126 Timer Timer scale Timer value2 1.5 secondsBackup Hello interval 1 60 seconds2 30 secondsHold-down interval 1

Seite 573

If the Master subsequently comes back up again, the amount of time specified by the VRRP-E slowstart timer elapses (in the IPv4 example, 30 seconds) b

Seite 574

FIGURE 38 VRRP-E Extension for short-path forwardingVRRP-E Extension for short-path forwarding exampleUnder the VRRP-E VRID configuration level, there

Seite 575

lowered by the number specified in the track-port command. When the current priority is lower thanthe threshold, the SPF behavior is temporarily suspe

Seite 576

To avoid this, you can disable the default interface-level IPv6 RA messages on an interface configuredwith IPv6 VRRP or VRRP-E.To disable the default

Seite 577

To change the Master priority, enter commands such as the following.device(config)# interface ethernet 1/6device(config-if-1/6)# ip vrrp vrid 1device(

Seite 578

Syntax: show ipv6 vrrp [ brief | [ stat | [ statistics ] [ vrid num ] ] [ ethernet stack/slotnum/portnum |ve num ] ]Syntax for IPv4 and IPv6 VRRP-E:Sy

Seite 579

To enable the Layer 3 switch for zero-based IP subnet broadcasts in addition to ones-based IP subnetbroadcasts, enter the following command.device(con

Seite 580 - Displaying BGP4+ summary

The table shows a description of the output for the show ip vrrp brief and show ip vrrp-extendedbrief commands.Output description for VRRP or VRRP-E s

Seite 581

version v3 mode owner priority 255 current priority 255 track-priority 150 hello-interval 1000 msec ip-address 172.21.3.1 virtual mac address 0000-5

Seite 582

current dead-interval 3100 msec preempt-mode true virtual ip address 10.201.201.5 virtual mac address 0000.00d7.82c9 advertise backup: enabled next h

Seite 583

Output description for VRRP-E detailed information (Continued)TABLE 128 Field Descriptionstate This Layer 3 switch VRRP, VRRP v3, VRRP-E, or IPv6 VR

Seite 584

Output description for VRRP-E detailed information (Continued)TABLE 128 Field Descriptiondead interval The configured value for the dead interval. T

Seite 585 - VRRP and VRRP-E

Output description for VRRP-E detailed information (Continued)TABLE 128 Field Descriptionbackup router ip-addr expires in timeThe IP addresses of Ba

Seite 586 - VRRP and VRRP-E overview

dead-interval 0 msec current dead-interval 3600 msec preempt-mode true ip-address 10.1.1.5 virtual mac address 0000.0000.0102 advertise backup: disab

Seite 587

show ip vrrp vrid output description (Continued)TABLE 129 Field Descriptioncurrent deadintervalThe current value of the dead interval. This value is

Seite 588 - Virtual router MAC address

total number of vrrp packets sent = 105backup advertisements sent = 10The following example displays the output of the show ipv6 vrrp-extended stat ve

Seite 589 - Master negotiation

Output field descriptions (Continued)TABLE 130 Field Descriptionrxed vrrp priority zero from mastercountIndicates that the current Master has resign

Seite 590 - Hello messages

• Port - The destination host does not have the destination TCP or UDP port specified in the packet. Inthis case, the host sends the ICMP Port Unreach

Seite 591 - VRRP-E overview

0v226 0 VR226 0 46772

Seite 592

Output field descriptions (Continued)TABLE 131 Field DescriptionTX master adv The number of VRRP or VRRP-E advertisement packets sent by this router

Seite 593 - ARP behavior with VRRP-E

VRRP exampleTo implement the VRRP configuration shown in "VRRP Overview," use the following method.Configuring Switch 1To configure VRRP Swi

Seite 594 - Comparison of VRRP and VRRP-E

Syntax: ip vrrp vridvridSyntax: owner [ track-priorityvalue]Syntax: backup [ priorityvalue][track-priorityvalue]Syntax: track-port ethernet [slotnum/]

Seite 595 - VRRP and VRRP-E parameters

The backup command specifies that this router is a VRRP-E Backup for virtual router VRID1. The IPaddress entered with the ip-address command is the sa

Seite 596

Configuring Multi-VRF● Supported Multi-VRF features ...635● Support

Seite 597

Feature ICX 6430 ICX 6450 FCX ICX 6610 ICX 6650 FSX 800FSX 1600ICX 7750PIM-SM/DM for IPv4 No 08.0.01 08.0.01 08.0.01 08.0.01 08.0.01 08.0.10PIM-SM for

Seite 598

FSX interface modules supporting Multi-VRF (Continued)TABLE 132 FSX Interface Modules Multi-VRF SupportSX-FI-24HF YesSX-FI-2XG YesSX-FI-8XG YesSX-FI

Seite 599 - Configuration rules for VRRP

FIGURE 39 Typical Multi-VRF topologyNOTESome vendors also use the terms Multi-VRF CE or VRF-Lite for this technology.Configuring Multi-VRFA Multi-VRF

Seite 600

Configuring VRF-related system-max valuesBefore configuring a VRF instance, VRF-related system-max values must be modified. The defaultFastIron config

Seite 601

NOTESome FSX devices do not generate ICMP redirect and network unreachable messages.NOTEThe device forwards misdirected traffic to the appropriate rou

Seite 602

ip-route and ip6-route values changed.ip-route: 10000ip6-route: 1408Warning: Please reconfigure system-max for ip-route-default-vrf and ip-route-vrf (

Seite 603

Configuration limits for system-max (Continued)TABLE 134 Configuration SX FCX/ICX 6610Min Default Max Min Default Maxip-route-default-vrf (system-ma

Seite 604 - Configuring IPv6 VRRP-E

For example:Brocade(config)# vrf blue6Brocade(config-vrf-blue6)# rd 1:106Brocade(config-vrf-blue6)# address-family ipv4Error: has reached maximum syst

Seite 605

While configuring an AF, you can optionally configure the maximum routes that are associated with theAF. If the max-route is not configured, the defau

Seite 606 - VRRP-E syntax

When configuring a VRF, a warning message is generated specifying that any configuration existingon the interface is deleted.When assigning a VRF inst

Seite 607 - VRRP router type

Example:Brocade(config)# no vrf customer1Warning: All IPv4 and IPv6 addresses (including link-local) from all interfaces in VRF customer1 have been re

Seite 608

Supported management applicationsThis section explains the management VRF support provided by the management applications.SNMP serverWhen the manageme

Seite 609 - Hello interval configuration

To configure the VRF name in outbound Telnet sessions, enter the following command at the privilegedEXEC level:device(config)# telnet vrf red 10.157.2

Seite 610 - Dead interval configuration

SyslogWhen the management VRF is configured, the Syslog module sends log messages only through theports belonging to the management VRF and the out-of

Seite 611 - Track priority configuration

Configuration notesConsider the following configuration notes:• If there is a management VRF already configured, you must remove the existing manageme

Seite 612 - Changing the timer scale

• Standard - the static route consists of the destination network address and network mask, and the IPaddress of the next-hop gateway. You can configu

Seite 613 - VRRP-E slow start timer

show vrf output descriptions (Continued)TABLE 135 This field DisplaysIP Router-Id The 32-bit number that uniquely identifies the router.Number of Un

Seite 614

Traps - 0 SysLogs - 0 TCP Connection rejects:

Seite 615

To distinguish collected packets in different VRFs, refer to the in vlan and out vlan data fields foreach captured ingress packet. For example, in the

Seite 616

Configuring static-ARP on default VRFsThis command is used to configure static-ARP entries on default VRFs. The command is backwardcompatible, and all

Seite 617

Configuring DAI to support a Multi-VRF instanceDynamic ARP Inspection (DAI) enables the Brocade device to intercept and examine all ARP requestand res

Seite 618

Configuring static-neighbor on non-default VRFsThis command configures static-neighbor entries on a VRF interface. The command is specific to VRFAF mo

Seite 619

View all configured VRFs in summary modeTo see all configured VRFs in summary mode, enter the show vrf command. The following is anexample of the outp

Seite 620

View DHCPv6 snooping status and portsTo see DHCPv6 snooping status and ports, enter the show ipv6 dhcp6 snooping vlan command. Thefollowing is an exam

Seite 621

FIGURE 40 Multi-VRF topology exampleThis topology is a network owned by an enterprise. Normal corporate traffic must pass through thefirewall so that

Seite 622

ip arp age:10 min bootp relay max hops:4 ip ttl:64 hopsip addr per intf:24 : :System Parameters Default M

Seite 623

This feature allows the Layer 3 switch to adjust to changes in network topology. The Layer 3 switchdoes not continue trying to use routes on unavailab

Seite 624

Step 2: Configuring VRFsThe following illustrates configuring the VRF R1.R1(config)#vrf corporateR1(config-vrf-corporate)#rd 11:11R1(config-vrf-corpor

Seite 625

been removedR1(config-vif-30)#ip add 192.168.3.1/30R1(config-vif-30)#ip ospf area 0R1(config-vif-30)#exitR1(config)#interface ve 31R1(config-vif-31)#v

Seite 626

192.168.5.0/30 192.168.4.2 ve 40 110/2 O 5m3s7 192.168.6.0/30 192.168.4.2 ve 40 110/2

Seite 627 - Displaying statistics

Layer 3 Routing Commands● arp-internal-priority...

Seite 628

arp-internal-priorityConfigures the priority of ingress ARP packets.Syntaxarp-internal-priority priority-valueCommand DefaultThe default priority of i

Seite 629

ipv6 nd router-preferenceEnables IPv6 router advertisement preferenceEnables IPv6 router advertisement (RA) messages to communicate default router pre

Seite 630

ipv6-address auto-gen-link-localGenerates a virtual link-local IPv6 address and assigns it as the virtual IPv6 address for a VRRPv3instance. The no fo

Seite 631

use-v2-checksumEnables the v2 checksum computation method for VRRPv3. The no form of this command enables thedefault v3 checksum computation method in

Seite 632 - VRRP example

accept-modeEnables the non-Owner Master router to respond to ping, traceroute, and Telnet packets destined forthe virtual IPv4 or IPv6 address of a VR

Seite 633 - VRRP-E example

ipv6 nd skip-interface-raDisables the default interface-level IPv6 RA messages on an interface configured with IPv6 VRRP orVRRP-E. The no form of this

Seite 634

The dest-ip-addr is the route destination. The dest-mask is the network mask for the route destination IPaddress. Alternatively, you can specify the n

Seite 635 - Configuring Multi-VRF

hello-intervalSpecifies the hello-interval configuration.Specifies the hello-interval in milliseconds or seconds for IPv4 VRRP and IPv6 VRRP.Syntaxhel

Seite 636

versionAllows you to select either version 2 or version 3 of VRRP.Allows you to select either version 2 or version 3 of the VRRP.Syntaxversion {v2 |v3

Seite 637 - Multi-VRF Overview

ip arp inspection validateValidates the ARP packet destination MAC, ARP Packet IP address and source MAC address.Syntaxip arp inspection validate [dst

Seite 638

To display the maximum value for your device, enter the show default values command. Themaximum number of static IP routes the system can hold is list

Seite 639

The show run command displays the entire name of the static IP route. The show ip static routecommand displays an asterisk (*) after the first twelve

Seite 640

OSPFv2 feature support... 243OSPF overview...

Seite 641

distance than other types of routes, unless you want those other types to be preferred over the staticroute.The steps for configuring the static route

Seite 642 - Configuring VRF instances

metric than the standard static route. The Layer 3 switch always prefers the static route with the lowermetric. In this example, the Layer 3 switch al

Seite 643

FIGURE 6 Standard and interface routes to the same destination networkTo configure a standard static IP route and a null route to the same network, en

Seite 644 - Removing a Multi-VRF instance

When the software uses the default network route, it also uses the default network route's next hopgateway as the gateway of last resort.This fea

Seite 645 - Configuring Management VRFs

Configuring IP load sharingThe IP route table can contain more than one path to a given destination. When this occurs, the Layer3 switch selects the p

Seite 646 - Telnet client

route table. For example, if the Layer 3 switch has a path learned from OSPF and a path learned fromRIP for a given destination, only the path with th

Seite 647 - TACACS+ client

with a given cost for a given destination, the BGP4 route table cannot contain equal-cost paths to thedestination. Consequently, the IP route table wi

Seite 648

Changing the maximum number of ECMP (load sharing) pathsYou can change the maximum number of paths the Layer 3 switch supports to a value from 2 throu

Seite 649 - Configuration notes

• Packet type - The Layer 3 switch can send Router Advertisement messages as IP broadcasts or asIP multicasts addressed to IP multicast group 224.0.0.

Seite 650

Advertisement message from the Layer 3 switch, the host resets the hold time for the Layer 3 switch tothe hold time specified in the new advertisement

Seite 651

Specify types of OSPF Syslog messages to log...289Configuring an OSPF network type...

Seite 652

‐ RARP requires the IP host to be directly attached to the Layer 3 switch.‐ An IP host and the BootP/DHCP server can be on different networks and on d

Seite 653 - ARP rate-limiting

If your Layer 3 switch allows you to increase the maximum number of RARP entries, you can use aprocedure in the same section to do so.NOTEYou must sav

Seite 654

Enabling forwarding for a UDP applicationIf you want the Layer 3 switch to forward client requests for UDP applications that the Layer 3 switchdoes no

Seite 655 - Multi-VRF Show commands

You can configure up to 16 helper addresses on each interface. You can configure a helper address onan Ethernet port or a virtual interface.To configu

Seite 656

field). When the server responds to the request, the server sends the response as a unicast packetto the IP address in the Gateway Address field. (If

Seite 657

Syntax: ip bootp-gatewayip-addrChanging the maximum number of hops to a BootP relay serverEach BootP or DHCP request includes a field Hop Count field.

Seite 658

the requested time and tries to return the same network address each time the client makes a request.The period of time for which a network address is

Seite 659

• Vendor Specific Information - Allows clients and servers to exchange vendor-specific information.• Boot File - Specifies a boot image to be used by

Seite 660 - Step 2: Configuring VRFs

1. Enable DHCP Server by entering a command similar to the following.device(config)# ip dhcp-server enable2. Create a DHCP Server address pool by ente

Seite 661

DHCP server optional parameters commands (Continued)TABLE 10 Command Descriptionoption merit-dump Specifies the path name of a file into which the c

Seite 662

Displaying OSPFv3 area information... 348Displaying OSPFv3 database information...

Seite 663 - Layer 3 Routing Commands

DHCP Server CLI commands (Continued)TABLE 11 Command Descriptionshow ip dhcp-server flash Displays the lease binding database that is stored in flas

Seite 664

Disabling DHCP Server on the management portBy default, when DHCP Server is enabled, it responds to DHCP client requests received on themanagement por

Seite 665

Enabling relay agent echo (Option 82)The ip dhcp-server relay-agent-echo enable command activates DHCP Option 82, and enables theDHCP server to echo r

Seite 666

Configuring the domain name for the clientThe domain-name command configures the domain name for the client.device(config-dhcp-cabo)# domain-name sier

Seite 667

Configuring the TFTP serverThe tftp-server command specifies the address or name of the TFTP server to be used by the DHCPclients.To configure a TFTP

Seite 668

show ip dhcp-server binding output descriptions (Continued)TABLE 12 Field DescriptionClient ID/Hardware address The hardware address for the clientL

Seite 669

show ip dhcp-server address pools output descriptions (Continued)TABLE 13 Field Descriptiondhcp-server-router The address of the DHCP server routerd

Seite 670

Displaying summary DHCP server informationThe show ip dhcp-server summary command displays information about active leases, deployedaddress-pools, und

Seite 671

DHCP Client-Based Auto-Configuration and Flash image updateNOTEThe DHCP Client-Based Auto-Configuration and Flash image update are platform independen

Seite 672

FIGURE 8 DHCP Client-Based Auto-ConfigurationConfiguration notes and feature limitations for DHCP client-based auto-configuration• For Layer 3 devices

Kommentare zu diesen Handbüchern

Keine Kommentare