Configuring a complex inter-VRF solution

CONFIGURE DYNAMIC ROUTING

awplus(config)#router bgp 100 awplus(config-router)#address-family ipv4 vrf red awplus(config-router-af)#redistribute connected awplus(config-router-af)#redistribute ospf awplus(config-router-af)#exit-address-family awplus(config-router)#address-family ipv4 vrf green awplus(config-router-af)#redistribute connected awplus(config-router-af)#neighbor 192.168.20.2 remote-as 100 awplus(config-router-af)#neighbor 192.168.20.2 next-hop-self awplus(config-router-af)#neighbor 192.168.20.2 activate awplus(config-router-af)#neighbor 192.168.20.2 default-originate awplus(config-router-af)#exit-address-family awplus(config-router)#address-family ipv4 vrf blue awplus(config-router-af)#redistribute connected awplus(config-router-af)#redistribute rip awplus(config-router-af)#exit-address-family awplus(config-router)#address-family ipv4 vrf orange awplus(config-router-af)#redistribute connected awplus(config-router-af)#redistribute static awplus(config-router-af)#redistribute ospf awplus(config-router-af)#exit-address-family awplus(config-router)#address-family ipv4 vrf shared awplus(config-router-af)#redistribute connected awplus(config-router-af)#redistribute static awplus(config-router-af)#neighbor 192.168.100.254 remote-as 200 awplus(config-router-af)#neighbor 192.168.100.254 activate awplus(config-router-af)#exit-address-family awplus(config-router)#exit

Static routes are configured. Each VRF instance is also configured with its own static default route (via VRF shared) to allow each of them to access the internet. Default routes are not able to be leaked dynamically via BGP between VRF instances as the BGP default-originate command only applies when peering to an external BGP neighbor.

The command ip route <source-vrf-name> < dest-network> < next-hop-ip> <egress- vlan> is used. For example the command ip route vrf red 0.0.0.0/0 192.168.100.254 vlan5 denotes a static default route to the Internet which has a next-hop IP of 192.168.100.254 (192.168.100.254 is the IP address of the Internet router), which originates from VRF red, which egresses vlan5 in VRF shared.

The routes configured on VRF shared do not need to specify the egress VLAN, as they are not inter-VRF routes. So, the command ip route vrf shared 192.168.45.0/24 192.168.100.2

Page 56 Configure VRF-lite

Page 56
Image 56
Allied Telesis C613-16164-00 REV E manual Configure VRF-lite

C613-16164-00 REV E specifications

The Allied Telesis C613-16164-00 REV E is a robust networking device designed to enhance connectivity and communication within enterprise environments. Renowned for its reliability and efficiency, this device serves as an ideal choice for organizations seeking to improve their network infrastructure.

At its core, the C613-16164-00 REV E is a part of Allied Telesis' suite of products that adhere to high-performance standards. One of the main features is its support for both Layer 2 and Layer 3 networking, making it versatile enough to handle a variety of network configurations. This capability allows for seamless integration into different network architectures, whether for simple local area networks (LANs) or more advanced setups with routing capabilities.

Another significant characteristic of the C613-16164-00 REV E is its high-speed data transfer capabilities. With support for Gigabit Ethernet, the device ensures that data can be transmitted quickly and efficiently across the network. This is particularly important for businesses that rely on heavy data usage and need to maintain performance standards even during peak hours.

Additionally, the C613-16164-00 REV E features advanced security measures, including VLAN support and port security configurations, which help protect sensitive information and prevent unauthorized access. This is essential for businesses that handle confidential data and must comply with industry regulations.

In terms of manageability, the device supports SNMP (Simple Network Management Protocol), allowing for easy monitoring and management of network resources. Network administrators can efficiently manage the device and optimize performance with minimal effort, improving overall productivity.

The design of the C613-16164-00 REV E is also noteworthy; it is built for durability, often featuring a compact form factor that makes installation straightforward without compromising on performance. Its compatibility with various Allied Telesis products ensures that organizations can build a cohesive network ecosystem.

In conclusion, the Allied Telesis C613-16164-00 REV E stands out as an excellent networking solution characterized by its support for multiple networking layers, high-speed data transfer, and robust security features. Ideal for both small to medium enterprises and larger organizations, it helps ensure that businesses can maintain efficient and secure operations in a constantly evolving digital landscape.