cisco:switch:9500:cisco_catalyst_9500_series_manual
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
cisco:switch:9500:cisco_catalyst_9500_series_manual [2025/07/30 15:32] β aperez | cisco:switch:9500:cisco_catalyst_9500_series_manual [2025/09/11 01:08] (current) β aperez | ||
---|---|---|---|
Line 1041: | Line 1041: | ||
* Confirm licensing and SDM support | * Confirm licensing and SDM support | ||
* Use **Static VXLAN** on Catalyst platforms without EVPN capability | * Use **Static VXLAN** on Catalyst platforms without EVPN capability | ||
+ | |||
+ | |||
+ | |||
+ | |||
+ | ---- | ||
+ | |||
+ | |||
+ | ===== VXLAN β Core Terminology and Nomenclature ===== | ||
+ | |||
+ | VXLAN (Virtual Extensible LAN) is a tunneling technology that enables Layer 2 overlay networks over Layer 3 IP infrastructures. Below is the essential terminology you need to master: | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== π 1. VNI β VXLAN Network Identifier ==== | ||
+ | |||
+ | * **Definition: | ||
+ | * **Range:** 0 to 16,777,215 (2^24 - 1) | ||
+ | * **Purpose: | ||
+ | * **Example: | ||
+ | VLAN 700 β VNI 10700 | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== π 2. VTEP β VXLAN Tunnel Endpoint ==== | ||
+ | |||
+ | * **Definition: | ||
+ | * **Purpose: | ||
+ | * **Key Point:** Each VTEP has a loopback or logical IP (used as tunnel endpoint). | ||
+ | * **Example: | ||
+ | Cisco VTEP IP = `172.18.32.33` | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== π 3. NVE β Network Virtualization Edge ==== | ||
+ | |||
+ | * **Definition: | ||
+ | * **Command Example (IOS-XE):** | ||
+ | ```bash | ||
+ | interface nve1 | ||
+ | | ||
+ | | ||
+ | ``` | ||
+ | * **Note:** In NX-OS, you must use `feature nv overlay`; in IOS-XE itβs implicit. | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== π 4. Bridge Domain (BD) ==== | ||
+ | |||
+ | * **Definition: | ||
+ | * **In IOS-XE:** Binding is done via: | ||
+ | ```bash | ||
+ | l2 vni 10700 vlan 700 | ||
+ | ``` | ||
+ | * **In NX-OS:** Itβs tied to a `bridge-domain` with its own config space. | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== π 5. Ingress Replication ==== | ||
+ | |||
+ | * **Purpose: | ||
+ | * **Modes:** | ||
+ | - `static`: manual peer definition | ||
+ | - `multicast`: | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== π 6. Underlay vs Overlay ==== | ||
+ | |||
+ | * **Underlay: | ||
+ | - The physical IP network that connects VTEPs (e.g., `172.18.32.0/ | ||
+ | - Uses IGP or static routing | ||
+ | * **Overlay: | ||
+ | - The logical L2 network created by VXLAN | ||
+ | - Carries tenant VLANs across routed core | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== π 7. BUM β Broadcast, Unknown Unicast, Multicast ==== | ||
+ | |||
+ | * **Definition: | ||
+ | * **Handled in VXLAN by:** | ||
+ | - Static `ingress-replication` | ||
+ | - Multicast (if supported by underlay) | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== π§Ύ Summary Table ==== | ||
+ | |||
+ | ^ Element | ||
+ | | VLAN | Traditional L2 segment | ||
+ | | VNI | VXLAN segment identifier | ||
+ | | VTEP (Local) | ||
+ | | VTEP (Remote) | ||
+ | | NVE Interface | ||
+ | | Underlay | ||
+ | | Overlay | ||
+ | |||
+ | ---- | ||
+ | |||
+ | ==== β
VXLAN overlays | ||
+ | |||
+ | allow to: | ||
+ | * Stretch VLANs across L3 boundaries | ||
+ | * Enable mobility and segmentation | ||
+ | * Scale beyond 4094 VLAN limit using 16 million VNIs | ||
+ | |||
+ | ---- | ||
+ | ---- | ||
+ | |||
+ | ====== VXLAN Static Configuration β Cisco 9500 β Aruba 6300 ====== | ||
+ | |||
+ | === π Architecture Summary === | ||
+ | |||
+ | ^ Parameter | ||
+ | | VTEP Loopback IP | 172.22.32.1 | ||
+ | | Transport IP | 172.18.32.33 (To Aruba) | ||
+ | | Transport Interface | ||
+ | | OSPF Area | 0 | 0 | | ||
+ | | VXLAN Mode | Static VXLAN | Static VXLAN | | ||
+ | | VXLAN Interface | ||
+ | | VNIs | 10001, 10700β10732 | ||
+ | | Inter-VXLAN Bridging | ||
+ | |||
+ | ---- | ||
+ | |||
+ | === π Cisco 9500 Configuration === | ||
+ | |||
+ | ==== πΉ 1. VTEP Loopback ==== | ||
+ | interface Loopback0 | ||
+ | ip address 172.22.32.1 255.255.255.255 | ||
+ | |||
+ | ==== πΉ 2. Transport Interface ==== | ||
+ | interface TenGigabitEthernet1/ | ||
+ | | ||
+ | ip address 172.18.32.33 255.255.255.252 | ||
+ | no shutdown | ||
+ | |||
+ | ==== πΉ 3. OSPF ==== | ||
+ | router ospf 100 | ||
+ | | ||
+ | | ||
+ | | ||
+ | |||
+ | ==== πΉ 4. Static Route ==== | ||
+ | ip route 172.22.32.2 255.255.255.255 172.18.32.34 | ||
+ | |||
+ | ==== πΉ 5. NVE Interface ==== | ||
+ | interface nve1 | ||
+ | no shutdown | ||
+ | | ||
+ | | ||
+ | | ||
+ | | ||
+ | | ||
+ | | ||
+ | |||
+ | ==== πΉ 6. Bridge Domains ==== | ||
+ | bridge-domain 1 | ||
+ | | ||
+ | |||
+ | bridge-domain 700 | ||
+ | | ||
+ | |||
+ | bridge-domain 712 | ||
+ | | ||
+ | |||
+ | bridge-domain 730 | ||
+ | | ||
+ | |||
+ | bridge-domain 732 | ||
+ | | ||
+ | |||
+ | ---- | ||
+ | |||
+ | === π§© Aruba 6300 Configuration === | ||
+ | |||
+ | ==== πΉ 1. Loopback Interface ==== | ||
+ | interface loopback 0 | ||
+ | ip address 172.22.32.2/ | ||
+ | |||
+ | ==== πΉ 2. Transport Interface ==== | ||
+ | interface 1/1/12 | ||
+ | | ||
+ | ip address 172.18.32.34/ | ||
+ | no shutdown | ||
+ | |||
+ | ==== πΉ 3. OSPF ==== | ||
+ | router ospf | ||
+ | | ||
+ | area 0.0.0.0 | ||
+ | | ||
+ | | ||
+ | |||
+ | ==== πΉ 4. Static Route ==== | ||
+ | ip route 172.22.32.1/ | ||
+ | |||
+ | ==== πΉ 5. VXLAN Interface ==== | ||
+ | interface vxlan 1 | ||
+ | | ||
+ | | ||
+ | |||
+ | ==== πΉ 6. VNI to VLAN Mapping ==== | ||
+ | vxlan vlan 1 vni 10001 | ||
+ | vxlan vtep 172.22.32.1 | ||
+ | |||
+ | vxlan vlan 700 vni 10700 | ||
+ | vxlan vtep 172.22.32.1 | ||
+ | |||
+ | vxlan vlan 712 vni 10712 | ||
+ | vxlan vtep 172.22.32.1 | ||
+ | |||
+ | vxlan vlan 730 vni 10730 | ||
+ | vxlan vtep 172.22.32.1 | ||
+ | |||
+ | vxlan vlan 732 vni 10732 | ||
+ | vxlan vtep 172.22.32.1 | ||
+ | |||
+ | ---- | ||
+ | |||
+ | === π§ͺ Validation Commands === | ||
+ | |||
+ | ==== πΈ Cisco 9500 ==== | ||
+ | show nve interface nve1 | ||
+ | show nve vni summary | ||
+ | show nve vni interface nve 1 | ||
+ | show nve peers | ||
+ | ping 172.22.32.2 source 172.22.32.1 | ||
+ | show mac address-table vlan 712 | ||
+ | |||
+ | ==== πΈ Aruba 6300 ==== | ||
+ | show interface vxlan 1 | ||
+ | show interface vxlan vni vteps | ||
+ | ping 172.22.32.1 source 172.22.32.2 | ||
+ | show mac-address-table vlan 712 | ||
+ | |||
+ | |||
+ | |||
+ | === β Notes === | ||
+ | |||
+ | * The VXLAN tunnels use **static replication** for simplicity and full control. | ||
+ | * Ensure **Loopback reachability** via static route or OSPF in both directions. | ||
+ | * For production EVPN deployment, BGP configuration will be required. | ||
+ | |||
+ | |||
+ | |||
+ | ---- | ||
+ | ---- | ||
+ | {{ : | ||
+ | |||
+ | {{pdfjs 46em >: | ||
+ | ---- | ||
+ | ---- | ||
+ | |||
+ | |||
+ | {{ : | ||
+ | |||
+ | {{pdfjs 46em >: | ||
---- | ---- | ||
---- | ---- |
cisco/switch/9500/cisco_catalyst_9500_series_manual.1753907553.txt.gz Β· Last modified: 2025/07/30 15:32 by aperez