MULTI-VRF AND IP MULTICAST

Similar documents
Cisco CallManager 4.0-PBX Interoperability: Lucent/Avaya Definity G3 MV1.3 PBX using 6608-T1 PRI NI2 with MGCP

END-OF-SALE AND END-OF-LIFE ANNOUNCEMENT FOR THE CISCO MEDIA CONVERGENCE SERVER 7845H-2400

NEW CISCO IOS SOFTWARE RELEASE 12.2(25)EY FOR CISCO CATALYST 3750 METRO SERIES SWITCHES

ENHANCED INTERIOR GATEWAY ROUTING PROTOCOL STUB ROUTER FUNCTIONALITY

Cisco 2651XM Gateway - PBX Interoperability: Avaya Definity G3 PBX using Analog FXO Interfaces to an H.323 Gateway

Cisco 3745 Gateway - PBX Interoperability: Avaya Definity G3 PBX using Q.931 PRI Network Side Interfaces to an H.323 Gateway

Cisco Extensible Provisioning and Operations Manager 4.5

CISCO IP PHONE 7970G NEW! CISCO IP PHONE 7905G AND 7912G XML

Cisco Voice Services Provisioning Tool 2.6(1)

CISCO 7304 SERIES ROUTER PORT ADAPTER CARRIER CARD

Cisco ONS SDH 12-Port STM-1 Electrical Interface Card

Cisco AS5300 Gateway - PBX Interoperability: NEC NEAX 2400 PBX using T1 PRI Interfaces to an H.323 Gateway

Cisco Catalyst 2950 Series Software Feature Comparison Standard Image (SI) and Enhanced Image (EI) Feature Comparison

THE POWER OF A STRONG PARTNERSHIP.

NEW JERSEY S HIGHER EDUCATION NETWORK (NJEDGE.NET), AN IP-VPN CASE STUDY

NEW METHOD FOR ORDERING CISCO 1700 SERIES MODULAR ACCESS ROUTERS AND CISCO 1800 SERIES INTEGRATED SERVICES ROUTERS SOFTWARE SPARE IMAGES

Cisco Unified CallManager 4.0-PBX Interoperability: Mitel 3300 ICP Release 4.1 PBX to a Cisco 6608 Gateway using T1 QSIG with MGCP

CONFIGURING EPOLICY ORCHESTRATOR 3.0 AND MCAFEE 8.0i WITH CISCO CALLMANAGER

Multicast Virtual Private Networks

Traffic Offload. Cisco 7200/Cisco 7500 APPLICATION NOTE

Cisco Unified CallConnector for Microsoft Office Quick Reference Guide 1

ANNOUNCING NEW PRODUCT OFFERINGS FOR THE CISCO CATALYST 6500 SERIES

Cisco MDS 9000 Family and EMC ECC Integration

Using TAPS with +E.164 Directory Numbers

USING TREND SERVERPROTECT5 WITH CISCO CALLMANAGER

END-OF-SALE AND END-OF-LIFE ANNOUNCEMENT FOR THE CISCO FLEXWAN MODULE FOR USE WITH THE CISCO 7600 SERIES ROUTERS AND CATALYST 6500 SERIES SWITCHES

CISCO SFP OPTICS FOR PACKET-OVER-SONET/SDH AND ATM APPLICATIONS

USING MCAFEE VIRUSSCAN ENTERPRISE 8.0I WITH CISCO CALLMANAGER

CISCO FAX SERVER. Figure 1. Example Deployment Scenario. The Cisco Fax Server solution consists of the following components:

Cisco CallManager Server Upgrade Program

Cisco Aironet In-Building Wireless Solutions International Power Compliance Chart

High-Availability Solutions for SIP Enabled Voice-over-IP Networks

CISCO NETWORK CONNECTIVITY CENTER BUSINESS DASHBOARD

Cisco EtherChannel Technology

The information presented in this document was created from devices in a specific lab environment. All of the devices started with a cleared (default)

CISCO 7304 SERIES ROUTER PORT ADAPTER CARRIER CARD

The second enhancement is the first step in a series of new commands, which will eliminate the potential for groups to transition from Sparse Mode int

CISCO TRANSPORT MANAGER 4.7

E-Seminar. Voice over IP. Internet Technical Solution Seminar

Cisco Value Incentive Program Advanced Technologies: Period 7

IP Communications for Small Offices Using Cisco CallManager Express and Cisco Unity Express

Cisco 2651XM Gateway - PBX Interoperability: Ericsson MD-110 PBX using Q.931 BRI User Side Interfaces to an H.323 Gateway

CISCO IOS SOFTWARE RELEASE 12.3(11)YK

END-OF-SALE AND END-OF-LIFE ANNOUNCEMENT FOR THE CISCO CATALYST 6500 SERIES OC-12 ATM MODULE

Cisco Unity 4.0(4) with Cisco Unified CallManager 4.1(2) Configured as Message Center PINX using Cisco WS-X6608-T1 using Q.SIG as MGCP Gateway

Cisco Systems Intelligent Storage Networking

CISCO WDM SERIES OF CWDM PASSIVE DEVICES

The Cisco Unified Communications Planning and Design Service Bundle

CISCO 7200 SERIES NETWORK PROCESSING ENGINE NPE-G1

Introducing Cisco Catalyst 4500 Series Supervisor Engine II-Plus-10GE and Cisco Catalyst 4500 Series 48-Port 100BASE-X SFP Line Card

Strategic IT Plan Improves NYCHA Resident Services While Reducing Costs US$150 Million

NEW CISCO IOS SOFTWARE RELEASE 12.2(25)FY FOR CISCO CATALYST EXPRESS 500 SERIES SWITCHES

CISCO ONS SONET 12-PORT DS-3 TRANSMULTIPLEXER CARD

THE CISCO SUCCESS BUILDER PROGRAM THE CISCO SMALL OFFICE COMMUNICATIONS CENTER: AFFORDABLE, PROVEN COMMUNICATIONS SOLUTIONS FOR SMALL ORGANIZATIONS

Cisco ONS SONET 48-Port DS-3/EC-1 Interface Card

CISCO AC/DC POWER SOLUTION FOR USE WITH CISCO OPTICAL PLATFORMS

Взято с сайта

Cisco Router and Security Device Manager Intrusion Prevention System

Cisco Unified Wireless IP Phone 7920 Multi-Charger

Third party information provided to you courtesy of Dell

Cisco Unified CallManager Licensing Pricing Model

CiscoWorks Security Information Management Solution 3.1

CISCO CENTRALIZED WIRELESS LAN SOFTWARE RELEASE 3.0

CISCO CATALYST 6500 SERIES CONTENT SWITCHING MODULE

Cisco Optimization Services

Configuring Multicast VPN Extranet Support

Quick Start Guide Cisco CTE 1400 and Design Studio

CISCO 10GBASE XENPAK MODULES

Cisco Catalyst 4500 Series Power Supplies and External AC Power Shelf

Cisco 7304 Shared Port Adapter Modular Services Card

Cisco ubr7200-npe-g1 Network Processing Engine for the Cisco ubr7246vxr Universal Broadband Router

Cisco Unified Wireless Network Software Release 3.1

Cisco AVVID The Architecture for E-Business

NETWORK ADMISSION CONTROL

Cisco T3/E3 Network Module for Cisco 2600, 3600, and 3700 Series Routers

Cisco StackWise Technology

Cisco CallManager Release 4.1-PBX Interoperability: Avaya Definity G3 MV1.3 PBX using a Cisco 2621XM Gateway with E1 Q.SIG as a MGCP Gateway

Portable Product Sheets Cat 4500 Supervisors last updated July 22, 2009

Innovation in Accessibility

Cisco Router and Security Device Manager Cisco Easy VPN Server

Cisco ONS MA SONET Multiservice Platform

E-Seminar. Wireless LAN. Internet Technical Solution Seminar

Avaya Definity CM 2.0 to a Cisco IAD243X using PRI T1 5ESS ISDN with SIP

Cisco MCS 7815-I2-UC1 Media Convergence Server

CISCO AIRONET 1230AG SERIES ACCESS POINT

CONFIGURING DYNAMIC MULTIPOINT VPN SPOKE ROUTER IN FULL MESH IPSEC VPN USING SECURITY DEVICE MANAGER

CISCO GIGABIT INTERFACE CONVERTER

C ISCO INTELLIGENCE ENGINE 2100 SERIES M OUNTING AND CABLING

Cisco VIP6-80 Services Accelerator

CISCO CATALYST 6500 SERIES WITH CISCO IOS SOFTWARE MODULARITY

Cisco 7200VXR Series NPE-G2 Network Processing Engine

Cisco IT Data Center and Operations Control Center Tour

Cisco MDS 9000 Family Small Form-Factor Pluggable Devices

Cisco Helps Government of Catalonia, Spain, Improve Citizen Satisfaction Through Shared Services Portal

EventBuilder.com. International Audio Conferencing Access Guide. This guide contains: :: International Toll-Free Access Dialing Instructions

Cisco MGX 8000 Series Multiservice Switch Broadband ATM Switching Module

Cisco Persistent Storage Device

DATA SHEET. Catalyst Inline Power Patch Panel

Mitel 3300 ICP Release 4.1 using T1 QSIG to Cisco Unified CallManager 4.0

End-of-Sale and End-of-Life Announcement for Select Cisco Catalyst 2950G and Catalyst 2950T Series Switches

Transcription:

WHITE PAPER MULTI-VRF AND IP MULTICAST OVERVIEW Multi-VRF Customer Edge (VRF-Lite) enables Multiple VPN routing instances on Customer Edge devices and supports Cisco IOS IP Multicast. Since Multicast has become an integral part of many networks, it is critical that Cisco IOS Technologies support it. CONFIGURATION PROCESS Once the unicast setup is complete, follow these steps to configure Multi-VRF and IP Multicast between the VPN provider and the customer. Enable IP Multicast over VPN (Service Providers) 1. Enable Multicast on the Provider and Provider Edge routers and interfaces 2. Enable VRFs for Multicast by assigning them default Multicast Diagnostic Toolset (MDT) groups and optionally data MDT groups Configure Multi-VRF to support IP Multicast (Customers) 3. Enable individual VRFs on the Multi-VRF Customer Edges for IP Multicast 4. Configure Rendezvous Points using either static Auto-Rendezvous Point or Boot Strap Router (BSR) within each VRF on the Provider Edge/Multi-VRF Customer Edge routers. When using Auto-Rendezvous Point, make sure all the participating interfaces are sparsedense. The Customer Edge portion of the configuration process illustrates that no special configuration is required to enable IP Multicast with Multi VRF. The configuration is VRF-specific. Figure 1 Multi-VRF Topology Figure 1 illustrates Multi-VRF deployment for a customer who requires two separate VPNs for its operations: finance (yellow) and engineering (red). This customer also has a VPN service from Provider and two sites connected to both VPNs. All contents are Copyright 1992 2005 Cisco Systems, Inc. All rights reserved. Important Notices and Privacy Statement. Page 1 of 17

A single physical interface uses sub-interfaces to carry per-vpn traffic between the Customer Edge and Provider Edge. Each VPN could also be assigned its own physical interface between the Customer Edge and Provider Edge; however, this option is more expensive. The Multi-VRF Customer Edge provides the capability of supporting multiple VRFs on the Customer Edge. Customer Edge1 and Customer Edge2 each support VPNs, Finance, and Engineering. Also, assume that the Rendezvous Point for Finance is Customer Edge2, and the Rendezvous Point for Engineering is Customer Edge1. Following are the configurations that enable IP Multicast on Customer Edge1 and Customer Edge2: Customer Edge1 ip multicast-routing vrf FINANCE ip multicast-routing vrf ENG FINANCE is sub-intf 2 int Ethernet0/0.2 descr Sub-interface to PE for the ENG VPN ip pim sparse-dense ENG is sub-intf 3 int Ethernet0/0.3 descr Sub-interface to PE for the FINANCE VPN ip pim sparse-dense ip pim vrf FINANCE rp-address <x.x.x.x> ip pim vrf ENG rp-address <x.x.x.x> CONFIGURATION EXAMPLES Complete Configuration from the network described above. In the following configurations, the provider uses a default MDT over Source Specific Multicast (SSM) with a default SSM address. In the Customer Edge VRF the group range 228.0.0.0 is being used by both VRFs independently from each other. Static Rendezvous Points for Protocol Independent Multicast sparse mode (PIM SM) have been used this time; however, any PIM Mode is supported within the VRF. Customer Edge1 hostname CE1 ip cef ip vrf ENG rd 200:200 Page 2 of 17

ip vrf FINANCE rd 300:300 ip multicast-routing vrf ENG ip multicast-routing vrf FINANCE interface Loopback1 ip vrf forwarding ENG ip address 200.10.100.1 255.255.255.0 interface Loopback2 ip vrf forwarding FINANCE ip address 210.10.100.1 255.255.255.0 interface Ethernet0/0 description Link between routers CE1 PE1 no ip address no cdp enable interface Ethernet0/0.2 encapsulation dot1q 2 ip vrf forwarding ENG ip address 200.10.10.4 255.255.255.0 Page 3 of 17

interface Ethernet0/0.3 encapsulation dot1q 3 ip vrf forwarding FINANCE ip address 210.10.10.4 255.255.255.0 router rip address-family ipv4 vrf FINANCE network 210.10.10.0 network 210.10.100.0 address-family ipv4 vrf ENG network 200.10.10.0 network 200.10.100.0 ip classless ip pim vrf ENG rp-address 200.20.20.5 50 ip pim vrf FINANCE rp-address 210.10.10.4 50 access-list 50 permit 228.0.0.0 0.255.255.255 end Page 4 of 17

Provider Edge1 hostname PE1 ip cef ip vrf ENG rd 200:200 route-target export 200:200 route-target import 200:200 mdt default 232.1.1.1 ip vrf FINANCE rd 300:300 route-target export 300:300 route-target import 300:300 mdt default 232.2.2.2 ip multicast-routing ip multicast-routing vrf ENG ip multicast-routing vrf FINANCE interface Loopback0 ip address 205.1.0.1 255.255.255.255 interface Ethernet0/0 description Link between routers CE1 PE1 no ip address no cdp enable Page 5 of 17

interface Ethernet0/0.2 encapsulation dot1q 2 ip vrf forwarding ENG ip address 200.10.10.1 255.255.255.0 interface Ethernet0/0.3 encapsulation dot1q 3 ip vrf forwarding FINANCE ip address 210.10.10.1 255.255.255.0 interface Ethernet1/0 description Link between routers PE1 P ip address 10.10.10.1 255.255.255.0 tag-switching ip no cdp enable router ospf 200 log-adjacency-changes network 10.10.10.0 0.0.0.255 area 0 network 205.1.0.1 0.0.0.0 area 0 router rip address-family ipv4 vrf FINANCE Page 6 of 17

redistribute bgp 200 metric 10 network 210.10.10.0 address-family ipv4 vrf ENG redistribute bgp 200 metric 10 network 200.10.10.0 router bgp 200 bgp log-neighbor-changes neighbor 205.2.0.2 remote-as 200 neighbor 205.2.0.2 update-source Loopback0 address-family ipv4 neighbor 205.2.0.2 activate no synchronization address-family vpnv4 neighbor 205.2.0.2 activate neighbor 205.2.0.2 send-community extended address-family ipv4 vrf FINANCE redistribute rip metric 50 no synchronization Page 7 of 17

address-family ipv4 vrf ENG redistribute rip metric 50 no synchronization ip classless ip pim ssm default ip pim vrf ENG rp-address 200.20.20.5 50 ip pim vrf FINANCE rp-address 210.10.10.4 50 access-list 50 permit 228.0.0.0 0.255.255.255 end Provider hostname P ip cef ip multicast-routing interface Ethernet1/0 description Link between routers PE1 P ip address 10.10.10.3 255.255.255.0 tag-switching ip no cdp enable interface Ethernet2/0 Page 8 of 17

description Link between routers P PE2 ip address 10.10.20.3 255.255.255.0 tag-switching ip no cdp enable router ospf 200 log-adjacency-changes network 10.10.10.0 0.0.0.255 area 0 network 10.10.20.0 0.0.0.255 area 0 ip classless ip pim ssm default end Provider Edge2 hostname PE2 ip cef ip vrf ENG rd 200:200 route-target export 200:200 route-target import 200:200 mdt default 232.1.1.1 ip vrf FINANCE rd 300:300 route-target export 300:300 route-target import 300:300 mdt default 232.2.2.2 Page 9 of 17

ip multicast-routing ip multicast-routing vrf ENG ip multicast-routing vrf FINANCE interface Loopback0 ip address 205.2.0.2 255.255.255.255 interface Ethernet2/0 description Link between routers P PE2 ip address 10.10.20.2 255.255.255.0 tag-switching ip no cdp enable interface Ethernet3/0 description Link between routers PE2 CE2 no ip address no cdp enable interface Ethernet3/0.2 encapsulation dot1q 2 ip vrf forwarding ENG ip address 200.20.20.2 255.255.255.0 interface Ethernet3/0.3 Page 10 of 17

encapsulation dot1q 3 ip vrf forwarding FINANCE ip address 210.20.20.2 255.255.255.0 router ospf 200 log-adjacency-changes network 10.10.20.0 0.0.0.255 area 0 network 205.2.0.2 0.0.0.0 area 0 router rip address-family ipv4 vrf FINANCE redistribute bgp 200 metric 10 network 210.20.20.0 address-family ipv4 vrf ENG redistribute bgp 200 metric 10 network 200.20.20.0 router bgp 200 bgp log-neighbor-changes neighbor 205.1.0.1 remote-as 200 neighbor 205.1.0.1 update-source Loopback0 Page 11 of 17

address-family ipv4 neighbor 205.1.0.1 activate no synchronization address-family vpnv4 neighbor 205.1.0.1 activate neighbor 205.1.0.1 send-community extended address-family ipv4 vrf FINANCE redistribute rip metric 50 no synchronization address-family ipv4 vrf ENG redistribute rip metric 50 no synchronization ip classless ip pim ssm default ip pim vrf ENG rp-address 200.20.20.5 50 ip pim vrf FINANCE rp-address 210.10.10.4 50 access-list 50 permit 228.0.0.0 0.255.255.255 Page 12 of 17

end Customer Edge2 hostname CE2 ip cef ip vrf ENG rd 200:200 ip vrf FINANCE rd 300:300 ip multicast-routing vrf ENG ip multicast-routing vrf FINANCE interface Loopback1 ip vrf forwarding ENG ip address 200.20.200.1 255.255.255.0 interface Loopback2 ip vrf forwarding FINANCE ip address 210.20.200.1 255.255.255.0 interface Ethernet3/0 description Link between routers PE2 CE2 no ip address no cdp enable Page 13 of 17

interface Ethernet3/0.2 encapsulation dot1q 2 ip vrf forwarding ENG ip address 200.20.20.5 255.255.255.0 interface Ethernet3/0.3 encapsulation dot1q 3 ip vrf forwarding FINANCE ip address 210.20.20.5 255.255.255.0 router rip address-family ipv4 vrf FINANCE network 210.20.20.0 network 210.20.200.0 address-family ipv4 vrf ENG network 200.20.20.0 network 200.20.200.0 ip classless Page 14 of 17

ip pim vrf ENG rp-address 200.20.20.5 50 ip pim vrf FINANCE rp-address 210.10.10.4 50 access-list 50 permit 228.0.0.0 0.255.255.255 end VERIFYING IP MULTICAST ROUTE INFORMATION Since IP Multicast relies on Unicast routing or performs it RPF check, its status has to be always checked before verifying the IP Multicast route information. Output from Customer Edge1 CE1#sh ip route vrf ENG Routing Table: ENG Codes: C - connected, S - static, I - IGRP, R - RIP, M - mobile, B - BGP D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2 E1 - OSPF external type 1, E2 - OSPF external type 2, E - EGP i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2 ia - IS-IS inter area, * - candidate default, U - per-user static route o - ODR Gateway of last resort is not set R R C C 200.20.200.0/24 [120/10] via 200.10.10.1, 00:00:10, Ethernet0/0.2 200.20.20.0/24 [120/10] via 200.10.10.1, 00:00:10, Ethernet0/0.2 200.10.100.0/24 is directly connected, Loopback1 200.10.10.0/24 is directly connected, Ethernet0/0.2 CE1#sh ip pim vrf ENG int cou State: * - Fast Switched, D - Distributed Fast Switched H - Hardware Switching Enabled Address Interface FS Mpackets In/Out 200.10.100.1 Loopback1 * 42/0 200.10.10.4 Ethernet0/0.2 * 0/0 CE1#sh ip vrf Page 15 of 17

Name Default RD Interfaces ENG 200:200 Loopback1 Ethernet0/0.2 green 300:300 Loopback2 Ethernet0/0.3 The VRF for a specific group command, SH IP MROUTE, matches the access list on the Provider Edge for the ENG VRF. The incoming interface from Provider Edge neighbor is the address of the Provider Edge interface. The Rendezvous Point is the address of the remote Customer Edge. CE1#sh ip mroute vrf ENG 228.1.1.1 IP Multicast Routing Table Flags: D - Dense, S - Sparse, B - Bidir Group, s - SSM Group, C - Connected, L - Local, P - Pruned, R - RP-bit set, F - Register flag, T - SPT-bit set, J - Join SPT, M - MSDP created entry, X - Proxy Join Timer Running, A - Candidate for MSDP Advertisement, U - URD, I - Received Source Specific Host Report, Z - Multicast Tunnel, Y - Joined MDT-data group, y - Sending to MDT-data group Outgoing interface flags: H - Hardware switched, A - Assert winner Timers: Uptime/Expires Interface state: Interface, Next-Hop or VCD, State/Mode (*, 228.1.1.1), 00:00:12/00:02:49, RP 200.20.20.5, flags: SJCL Incoming interface: Ethernet0/0.2, RPF nbr 200.10.10.1 Outgoing interface list: Loopback1, Forward/Sparse-Dense, 00:00:12/00:02:49 Page 16 of 17

Corporate Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA www.cisco.com Tel: 408 526-4000 800 553-NETS (6387) Fax: 408 526-4100 European Headquarters Cisco Systems International BV Haarlerbergpark Haarlerbergweg 13-19 1101 CH Amsterdam The Netherlands www-europe.cisco.com Tel: 31 0 20 357 1000 Fax: 31 0 20 357 1100 Americas Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA www.cisco.com Tel: 408 526-7660 Fax: 408 527-0883 Asia Pacific Headquarters Cisco Systems, Inc. 168 Robinson Road #28-01 Capital Tower Singapore 068912 www.cisco.com Tel: +65 6317 7777 Fax: +65 6317 7799 Cisco Systems has more than 200 offices in the following countries and regions. Addresses, phone numbers, and fax numbers are listed on the Cisco Web site at www.cisco.com/go/offices. Argentina Australia Austria Belgium Brazil Bulgaria Canada Chile China PRC Colombia Costa Rica Croatia Cyprus Czech Republic Denmark Dubai, UAE Finland France Germany Greece Hong Kong SAR Hungary India Indonesia Ireland Israel Italy Japan Korea Luxembourg Malaysia Mexico The Netherlands New Zealand Norway Peru Philippines Poland Portugal Puerto Rico Romania Russia Saudi Arabia Scotland Singapore Slovakia Slovenia South Africa Spain Sweden Switzerland Taiwan Thailand Turkey Ukraine United Kingdom United States Venezuela Vietnam Zimbabwe Copyright 2005 Cisco Systems, Inc. All rights reserved. Cisco, Cisco IOS, Cisco Systems, and the Cisco Systems logo are registered trademarks of Cisco Systems, Inc. and/or its affiliates in the United States and certain other countries. All other trademarks mentioned in this document or Web site are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (0502R) 205283.B_ETMG_SH_5.05 Printed in the USA Page 17 of 17