Config Flashcards

1
Q

what are the config steps to deploy vxlan-ms on leaf?

A
  • enable the features
  • configure the loopbacks and interfaces
    • for vPC dont forget secondary address on loopback which is used for nve
  • configure underlay routing (e.g. ospf)
  • create vlans
  • map the vlans to vnids
  • create anycast gateway mac
  • configure nve interface
  • configure VRFs
  • configure SVIs
  • configure overlay routing (BGP EVPN)
  • configure EVPN (vni and route targets)
  • configure multicast RP
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

which features do you need to enable on N9K leaf for vxlan evpn?

A
cfs eth distribute
nv overlay evpn
feature ospf
feature bgp
feature pim
feature fabric forwarding
feature interface-vlan
feature vn-segment-vlan-based
feature lacp
feature vpc
feature nv overlay
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

which features do you need to enable on N7K spine for vxlan evpn?

A

feature-set fabric

feature bgp

feature fabric forwarding

feature vni

feature interface-vlan

feature nv overlay

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

which features do you need to enable on N56K leaf for vxlan evpn?

A
install feature-set fabric 
feature-set fabric
feature fabric forwarding 
nv overlay evpn 
feature ospf 
feature bgp 
feature pim 
feature bfd 
feature nv overlay 
feature nxapi 
feature vn-segment-vlan-based 
! feature ngoam ! optional
hardware ethernet store-and-fwd-switching
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

how do you set the multi-site ID?

A

evpn multisite border-gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

where do you set the source IP for the multi-site BGW function?

A

interface nve1

host-reachability protocol bgp

source-interface loopback1

multisite border-gateway interface loopback100

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

how do you make sure, that traffic is not blackholed in BGW if the external connection is down?

A

configure multi-site DCI tracking on all external facing interfaces which participate in external overlay

int ethx/y
evpn multisite dci-tracking

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

which parameters are mandatory in the neighborship statement (bgp) when configuring multi-site neighbohrs ?

A

peer type fabric-external
address-family l2vpn evpn
rewrite-evpn-rt-asn

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

what is an easy way to prevent that you are anouncing your fabric-local default-route to the other site(s)? (avoid to become a transit fabric)

A

ip prefix-list NODEF seq 5 permit 0.0.0.0/0
route-map NODEFAULT deny 10
match ip address prefix-list NODEF
route-map NODEFAULT permit 1000

then on neighbor-statement:
route-map NODEFAULT out

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

repeat the steps to make an n9k a BGW

A
  1. evpn multisite border-gateway $ID
    (optional: delay-restore time)
  2. in NVE interface:
    multisite border-gateway interface loXXX
    member vni 2001001
    multisite ingress-replication
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

name the steps to create vn-segements in N7K and map them to VLANs

A
  1. Create a VNI and bridge domain and associate the Layer 2 VNI with it

vni 30000
system bridge-domain 200-210
bridge-domain 200
member vni 30000

  1. Associate a VLAN (or dot1q tag) with the Layer 2 VNI:

encapsulation profile vni cisco
dot1q 50 vni 30000

  1. Associate the encapsulation profile with the server facing interface
interface Ethernet 1/12
   no shutdown
   no switchport
   service instance 1 vni
   encapsulation profile cisco default
      no shutdown
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

what is a typical trap, when you configure vxlan (flood and learn) on N7K, all interfaces are up, NVE peers see each other, but the N7K do not learn MAC addresses of local attached devices?

A

the service instance under the interface needs an explicit “no shutdown” command

int e3/6
  no shut
  service instance 1 vni
      NO SHUT
      encapsulation profile DC_VXLAN default
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

how do you enable jumbo MTU on N5K?

A
n5k-switch#configure terminal
n5k-switch(config)#policy-map type network-qos jumbo
n5k-switch(config-pmap-nq)#class type network-qos class-default
n5k-switch(config-pmap-c-nq)#mtu 9216
n5k-switch(config-pmap-c-nq)#exit
n5k-switch(config-pmap-nq)#exit
n5k-switch(config)#system qos
n5k-switch(config-sys-qos)#service-policy type network-qos jumbo
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

how do you enable fcoe qos together with jumbo on N5K?

A
n5k-switch#configure terminal
n5k-switch(config)#policy-map type network-qos jumbo
n5k-switch(config-pmap-nq)#class type network-qos class-default
n5k-switch(config-pmap-c-nq)#mtu 9216
n5k-switch(config-pmap-c-nq)#exit
n5k-switch(config-pmap-nq)#class type network-qos class-fcoe
n5k-switch(config)#system qos
n5k-switch(config-sys-qos)#service-policy type network-qos jumbo
How well did you know this?
1
Not at all
2
3
4
5
Perfectly