CCIE SP v3.0 Sample Lab Part 5
CCIE SP v3.0 Sample Lab Part 5
0
Sample Lab
Part 5/7
G0/2/0/1.69 VLAN 69
.69.9/24
VLAN 59
E0/0 E1/0 G0/2/0/1.29 G0/2/0/1.59 E0/0
E0/0
R14 .142.14/24 142.1/24
.29.2/24 VLAN 29 .29.9/24 .59.9/24 .59.5/24
R2
R9 R5
ABC RIP V2 EIGRP ABC
E0/2
Site 1 E0/1 .27.2/24 G0/2/0/1.79 Site 4
.28.2/24 .79.9/24
G0/2/0/1 G0/3
Trunk
E0/0 VLAN 28
.135.15/24 Backbone Carrier SP VLAN 79 Sw2
R15
AS 2 VLAN 98
VLAN 158 E0/2
ISIS or OSPF .98.2
.27.7/24
G0/2/0/2.158 G0/2/0/2.28
.28.8/24 E0/1
.79.7/24 S2/0
G0/2/0/2.78 E0/0
.78.8/24 DLCI 107
.78.7/24
Sw3 R8 R7
.178.11
R11
G0/2 G0/2/0/2 VLAN 78 S2/0
VLAN 98 Trunk
.98.3 DLCI 701
VLAN 178 G0/2.38 E1/0
.178.3
Customer Carrier SP .38.8/24 .17.7/24 Customer Carrier SP
ABC Site 2 VLAN 38
AS 123 BGP OSPF ABC Site 3
E1/0 AS 123
E1/0 .17.1/24
.38.3/24 E1/3 E1/3
E1/3 E1/3
.1.1/24 .1.18/24
.3.16/24 .3.3/24
R16 R3 R1 R18
ISIS OSPF
QAZ QAZ
Site 1 Site 2
SP Sample Lab – Addressing Scheme
Backbone Carrier SP network Prefix: 2.2.0.0/24, 2002:2:2::/64
Backbone Carrier SP router Loopback0: 2.2.0.Z/32, 2002:2:2::Z/128
Customer Carrier SP/VPN network Prefix: 172.2.0.0/24, 2002:172:2::/64
Customer Carrier SP/VPN router Loopback0: 172.2.0.Z/32, 2002:172:2::Z/128
End Customer VPN network Prefix: 192.2.0.0/24
End Customer VPN router Loopback0: 192.2.0.Z/32
L2 VPN Customer network Prefix: 172.2.0.0/24
L2 VPN Customer router Loopback0: 172.2.0.Z/32
“Z” is router number, for example “Z” value for R12 is “12”
SP Sample Lab – Setup
Hardware
Two XR-12404 with two GigabitEthernet interfaces or equivalent
Thirteen Cisco 7200 series routers with Ethernet interfaces or equivalent
Three Cisco 3560G series or equivalent
Software Operating System
XR12000-iosxr-k9-3.9.1.tar
c7200-spservices-mz.122-33.SRE2.bin
c3560-advipservicesk9-mz.122-46.SE.bin
SP Sample Lab Questions
Question, Configuration and Verification
1 IS-IS IPv4/IPv6
2 OSPF IPv4/IPv6
4 MPLS LDP
5 MPLS TE
6 MPLS TE FRR
9 CSC
11 Multicast VPN
12 AToM
13 VPLS
14 L2TPv3
MP-BGP VPNv6 - 6VPE Deployment
VPN-R1 VPN-R2
2001:0db8:: OPTION - C 2003:1::
Mapping to Lab Exam Blueprint
This question of the sample lab maps to following sections/sub-sections in
the Lab Exam Blueprint document below;
https://learningnetwork.cisco.com/docs/DOC-9991
3.0 – Implement, Optimize and Troubleshoot L3VPN Technologies
3.1 – Implement, Optimize and Troubleshoot Intra-AS L3VPN
3.2 – Implement, Optimize and Troubleshoot Inter-AS L3VPN
For more details, please review the Lab Exam Checklist document below;
https://learningnetwork.cisco.com/docs/DOC-10145
MP-BGP VPNv6 - 6VPE – Sub Topology
ABC
Site 5 AS 612
BGP
AS 1002 R12
R6
E0/1 E1/0 E1/0
:69::6/64 :126::6/64 :126::12/64
G0/2/0/1.69
:69::9/64
G0/2/0/1.59 E0/0
E0/0 G0/2/0/1.29
:59::9/64 :59::5/24
.29.2/24 .29.9/24
R2 R9 R5
E0/2 EIGRP
E0/1 .27.2/24 G0/2/0/1.79
.28.2/24 .79.9/24 ABC
Site 4
SP AS 2
E0/2
G0/2/0/2.28 .27.7/24
.28.8/24 Ei0/1
E0/0 .79.7/24
G0/2/0/2.78
.78.7/24
.78.8/24
R8 R7
Gi0/2.38 E1/0
:38::8/24 :17::7/24 ABC
ABC Static Site 3
BGP
Site 2 E1/0
E1/0 :17::1/24
:38::3/24
AS 123
R3 R1
MP-BGP VPNv6 - 6VPE - Question
Configure R2, R7, R8 and R9 to support MP-BGP intra AS VPNv6
(6VPE) information exchange. R9 is VPNv6 route-reflector to R2, R7
and R8.
Ensure R1, R3 and R5 can ping each other via IPv6
R8 (IOS-XR) configuration
vrf ABC router bgp 2
! address-family vpnv6 unicast
address-family ipv6 unicast !
import route-target neighbor 2.2.0.9
2:2 remote-as 2
1002:2 update-source Loopback0
! address-family vpnv6 unicast
export route-target !
2:2 !
! vrf ABC
! rd 2:2
! !
interface GigabitEthernet0/2/0/2.38 neighbor 2002:172:2:38::3
vrf ABC remote-as 123
ipv6 address 2002:172:2:38::8/64 address-family ipv6 unicast
dot1q vlan 38 route-policy default_policy_pass_all in
! route-policy default_policy_pass_all out
!
6VPE Configuration (Cont.)
R9 (IOS-XR) configuration
vrf ABC router bgp 2 neighbor 2.2.69.6
address-family ipv6 unicast address-family vpnv6 unicast remote-as 1002
import route-target ! address-family vpnv6 unicast
2:2 neighbor 2.2.0.2 route-policy default_policy_pass_all in
1002:2 remote-as 2 route-policy default_policy_pass_all out
! update-source Loopback0 !
export route-target address-family vpnv6 unicast vrf ABC
2:2 route-reflector-client rd 2:2
! next-hop-self address-family ipv6 unicast
! ! redistribute eigrp 100
interface GigabitEthernet0/2/0/1.59 neighbor 2.2.0.7 !
vrf ABC remote-as 2 !
ipv6 address 2002:172:2:59::9/64 update-source Loopback0 router eigrp 100
dot1q vlan 59 address-family vpnv6 unicast vrf ABC
! route-reflector-client address-family ipv6
interface GigabitEthernet0/2/0/1.69 next-hop-self default-metric 100000 10 250 1 1500
ipv4 address 2.2.69.9 255.255.255.0 ! autonomous-system 100
ipv6 address 2002:2:2:69::9/64 neighbor 2.2.0.8 redistribute bgp 2
dot1q vlan 69 remote-as 2 interface GigabitEthernet0/2/0/1.59
! update-source Loopback0 !
address-family vpnv6 unicast !
route-reflector-client
next-hop-self
!
6VPE Configuration (Cont.)
R6 (IOS) configuration
vrf definition ABC router bgp 1002
rd 1002:2 no bgp default route-target filter
! neighbor 2.2.69.9 remote-as 2
address-family ipv6 !
route-target export 1002:2 address-family vpnv6
route-target import 1002:2 neighbor 2.2.69.9 activate
route-target import 2:2 neighbor 2.2.69.9 send-community both
exit-address-family exit-address-family
! !
interface Ethernet1/0 address-family ipv6 vrf ABC
vrf forwarding ABC no synchronization
ipv6 address 2002:172:2:126::6/64 neighbor 2002:172:2:126::12 remote-as 612
! neighbor 2002:172:2:126::12 activate
neighbor 2002:172:2:126::12 send-community both
exit-address-family
!
6VPE Configuration (Cont.)
R1 configuration R3 configuration
interface Loopback0 interface Loopback0
ipv6 address 2002:172:2::1/128 ipv6 address 2002:172:2::3/128
! !
interface Ethernet1/0 interface Ethernet1/0
ipv6 address 2002:172:2:17::1/64 ipv6 address 2002:172:2:38::3/64
! !
ipv6 route 2002:172:2::/48 Ethernet1/0 router bgp 123
FE80::C00:FF:FE00:4601 neighbor 2002:172:2:38::8 remote-as 2
!
address-family ipv6
no synchronization
network 2002:172:2::3/128
neighbor 2002:172:2:38::8 activate
neighbor 2002:172:2:38::8 send-community both
exit-address-family
!
6VPE Configuration (Cont.)
R6 6VPE neighbor
R6#show ip bgp vpnv6 unicast all summary
BGP router identifier 2.2.0.6, local AS number 1002
Neighbor V AS MsgRcvd MsgSent TblVer InQ OutQ Up/Down State/PfxRcd
2002:172:2:126::12
4 612 264 268 32 0 0 03:47:37 1
2.2.69.9 4 2 4453 4883 32 0 0 3d01h 8
6VPE Adjacency (Cont.)
R7 6VPE neighbor
R7#show ip bgp vpnv6 unicast all summary
BGP router identifier 2.2.0.77, local AS number 2
Neighbor V AS MsgRcvd MsgSent TblVer InQ OutQ Up/Down State/PfxRcd
2.2.0.9 4 2 1309 1421 25 0 0 21:21:52 8
R8 6VPE neighbor
RP/0/0/CPU0:R8#show bgp vpnv6 unicast summary
BGP router identifier 2.2.0.8, local AS number 2
Process RcvTblVer bRIB/RIB LabelVer ImportVer SendTblVer StandbyVer
Speaker 3687 3687 3687 3687 3687 3687
R2 6VPE neighbor
R2#show ip bgp vpnv6 unicast all summary
BGP router identifier 2.2.0.2, local AS number 2
Neighbor V AS MsgRcvd MsgSent TblVer InQ OutQ Up/Down State/PfxRcd
2.2.0.9 4 2 1320 1431 24 0 0 21:24:08 9
VPNv6 table
R9 VPNv6 table
RP/0/0/CPU0:R9#show bgp vpnv6 unicast vrf ABC
BGP router identifier 2.2.0.9, local AS number 2
Status codes: s suppressed, d damped, h history, * valid, > best
i - internal, S stale
Origin codes: i - IGP, e - EGP, ? - incomplete
Network Next Hop Metric LocPrf Weight Path
Route Distinguisher: 2:2 (default for vrf ABC)
*>i2002:172:2::1/128 2.2.0.7 0 100 0 ?
*>i2002:172:2::3/128 2.2.0.8 0 100 0 123 i
*> 2002:172:2::5/128 fe80::c00:ff:fe00:3200
130816 32768 ?
*> 2002:172:2::12/128 2.2.69.6 0 1002 612 i
*>i2002:172:2:17::/64 2.2.0.7 0 100 0 ?
*>i2002:172:2:38::/64 2.2.0.8 0 100 0 ?
*> 2002:172:2:59::/64 :: 0 32768 ?
*> 2002:172:2:126::/64
2.2.69.6 0 0 1002 ?
VPNv6 table (Cont.)
R7 VPNv6 table
R7#show ip bgp vpnv6 unicast vrf ABC
BGP table version is 86, local router ID is 2.2.0.7
Network Next Hop Metric LocPrf Weight Path
Route Distinguisher: 2:2 (default for vrf ABC)
*> 2002:172:2::1/128
:: 0 32768 ?
*>i2002:172:2::3/128
::FFFF:2.2.0.8 0 100 0 123 i
*>i2002:172:2::5/128
::FFFF:2.2.0.9 130816 100 0 ?
*>i2002:172:2::12/128
::FFFF:2.2.0.9 100 0 1002 612 i
*> 2002:172:2:17::/64
:: 0 32768 ?
*>i2002:172:2:38::/64
::FFFF:2.2.0.8 0 100 0 ?
*>i2002:172:2:59::/64
::FFFF:2.2.0.9 0 100 0 ?
*>i2002:172:2:126::/64
::FFFF:2.2.0.9 0 100 0 1002 ?
VPNv6 table (Cont.)
R6 VPNv6 table
R6#show ip bgp vpnv6 unicast vrf ABC
BGP table version is 32, local router ID is 2.2.0.6
Network Next Hop Metric LocPrf Weight Path
Route Distinguisher: 1002:2 (default for vrf ABC)
*> 2002:172:2::1/128
::FFFF:2.2.69.9 02?
*> 2002:172:2::3/128
::FFFF:2.2.69.9 0 2 123 i
*> 2002:172:2::5/128
::FFFF:2.2.69.9 130816 02?
*> 2002:172:2::12/128
2002:172:2:126::12
0 0 612 i
*> 2002:172:2:17::/64
::FFFF:2.2.69.9 02?
*> 2002:172:2:38::/64
::FFFF:2.2.69.9 02?
*> 2002:172:2:59::/64
::FFFF:2.2.69.9 0 02?
*> 2002:172:2:126::/64
:: 0 32768 ?
VPNv6 table (Cont.)
R8 VPNv6 table
RP/0/0/CPU0:R8#show bgp vpnv6 unicast vrf ABC
BGP router identifier 2.2.0.8, local AS number 2
Network Next Hop Metric LocPrf Weight Path
Route Distinguisher: 2:2 (default for vrf ABC)
*>i2002:172:2::1/128 2.2.0.7 0 100 0 ?
*> 2002:172:2::3/128 2002:172:2:38::3
0 0 123 i
*>i2002:172:2::5/128 2.2.0.9 130816 100 0 ?
*>i2002:172:2::12/128 2.2.0.9 100 0 1002 612 i
*>i2002:172:2:17::/64 2.2.0.7 0 100 0 ?
*> 2002:172:2:38::/64 :: 0 32768 ?
*>i2002:172:2:59::/64 2.2.0.9 0 100 0 ?
*>i2002:172:2:126::/64
2.2.0.9 0 100 0 1002 ?
IPv6 routes
B 2002:172:2::1/128
[200/0] via ::ffff:2.2.0.7 (nexthop in vrf default), 02:11:12
B 2002:172:2::3/128
[20/0] via fe80::c00:ff:fe00:1e01, 4d22h, GigabitEthernet0/2/0/2.38
B 2002:172:2::5/128
[200/130816] via ::ffff:2.2.0.9 (nexthop in vrf default), 4d21h
B 2002:172:2::12/128
[200/0] via ::ffff:2.2.0.9 (nexthop in vrf default), 04:06:06
B 2002:172:2:17::/64
[200/0] via ::ffff:2.2.0.7 (nexthop in vrf default), 4d21h
C 2002:172:2:38::/64 is directly connected,
8w5d, GigabitEthernet0/2/0/2.38
L 2002:172:2:38::8/128 is directly connected,
8w5d, GigabitEthernet0/2/0/2.38
B 2002:172:2:59::/64
[200/0] via ::ffff:2.2.0.9 (nexthop in vrf default), 4d21h
B 2002:172:2:126::/64
[200/0] via ::ffff:2.2.0.9 (nexthop in vrf default), 04:10:07
IPv6 routes (Cont.)
R9 VRF ABC ipv6 route
RP/0/0/CPU0:R9#show route vrf ABC ipv6
B 2002:172:2::1/128
[200/0] via ::ffff:2.2.0.7 (nexthop in vrf default), 02:12:12
B 2002:172:2::3/128
[200/0] via ::ffff:2.2.0.8 (nexthop in vrf default), 4d20h
D 2002:172:2::5/128
[90/130816] via fe80::c00:ff:fe00:3200, 4d21h, GigabitEthernet0/2/0/1.59
B 2002:172:2::12/128
[20/0] via ::ffff:2.2.69.6 (nexthop in vrf default), 04:07:02
B 2002:172:2:17::/64
[200/0] via ::ffff:2.2.0.7 (nexthop in vrf default), 4d20h
B 2002:172:2:38::/64
[200/0] via ::ffff:2.2.0.8 (nexthop in vrf default), 4d20h
C 2002:172:2:59::/64 is directly connected,
10w1d, GigabitEthernet0/2/0/1.59
L 2002:172:2:59::9/128 is directly connected,
10w1d, GigabitEthernet0/2/0/1.59
B 2002:172:2:126::/64
[20/0] via ::ffff:2.2.69.6 (nexthop in vrf default), 04:11:02
IPv6 routes (Cont.)
R7 VRF ABC ipv6 route
R7#show ipv6 route vrf ABC
S 2002:172:2::1/128 [1/0]
via FE80::C00:FF:FE00:A01, Ethernet1/0
B 2002:172:2::5/128 [200/130816]
via 2.2.0.9%default, indirectly connected
B 2002:172:2::8/128 [200/0]
via 2.2.0.8%default, indirectly connected
B 2002:172:2::12/128 [200/0]
via 2.2.0.9%default, indirectly connected
C 2002:172:2:17::/64 [0/0]
via Ethernet1/0, directly connected
L 2002:172:2:17::7/128 [0/0]
via Ethernet1/0, receive
B 2002:172:2:38::/64 [200/0]
via 2.2.0.8%default, indirectly connected
B 2002:172:2:59::/64 [200/0]
via 2.2.0.9%default, indirectly connected
B 2002:172:2:126::/64 [200/0]
via 2.2.0.9%default, indirectly connected
L FF00::/8 [0/0]
via Null0, receive
IPv6 routes (Cont.)
R6 VRF ABC ipv6 route
R6#show ipv6 route vrf ABC
B 2002:172:2::1/128 [20/0]
via 2.2.69.9%default, indirectly connected
B 2002:172:2::3/128 [20/0]
via 2.2.69.9%default, indirectly connected
B 2002:172:2::5/128 [20/130816]
via 2.2.69.9%default, indirectly connected
B 2002:172:2::12/128 [20/0]
via FE80::A8BB:CCFF:FE00:7801, Ethernet1/0
B 2002:172:2:17::/64 [20/0]
via 2.2.69.9%default, indirectly connected
B 2002:172:2:38::/64 [20/0]
via 2.2.69.9%default, indirectly connected
B 2002:172:2:59::/64 [20/0]
via 2.2.69.9%default, indirectly connected
C 2002:172:2:126::/64 [0/0]
via Ethernet1/0, directly connected
L 2002:172:2:126::6/128 [0/0]
via Ethernet1/0, receive
L FF00::/8 [0/0]
via Null0, receive
MPLS forwarding table
R9 mpls forwarding table
RP/0/0/CPU0:R9#show mpls forwarding
Local Outgoing Prefix Outgoing Next Hop Bytes
Label Label or ID Interface Switched
------ ----------- ------------------ ------------ --------------- ------------
16002 Unlabelled 2002:172:2::5/128[V] \
Gi0/2/0/1.59 fe80::c00:ff:fe00:3200 \
16016 16010 2002:172:2::3/128[V] \
point2point 0
16019 16000 2002:172:2:38::/64[V] \
point2point 0
16028 16022 1002:2:172.2.126.0/24 \
Gi0/2/0/1.69 2.2.69.6 0
16046 16019 1002:2:2002:172:2::12/128 \
Gi0/2/0/1.69 2.2.69.6 825
16048 16021 1002:2:172.2.0.12/32 \
Gi0/2/0/1.69 2.2.69.6 0
16049 46 2002:172:2::1/128[V] \
point2point 0
16051 29 2002:172:2:17::/64[V] \
point2point 0
16053 16020 1002:2:2002:172:2:126::/64 \
Gi0/2/0/1.69 2.2.69.6 0
MPLS forwarding table (Cont.)
R6 mpls forwarding table
R6#show mpls forwarding-table
Local Outgoing Prefix Bytes Label Outgoing Next Hop
Label Label or VC or Tunnel Id Switched interface
16011 16019 [2:2]2002:172:2:38::/64 \
0 Et0/1 2.2.69.9
16012 16021 [2:2]2002:172:2:59::/64 \
0 Et0/1 2.2.69.9
16013 16051 [2:2]2002:172:2:17::/64 \
0 Et0/1 2.2.69.9
16015 16049 [2:2]2002:172:2::1/128 \
0 Et0/1 2.2.69.9
16017 16016 [2:2]2002:172:2::3/128 \
0 Et0/1 2.2.69.9
16018 16002 [2:2]2002:172:2::5/128 \
0 Et0/1 2.2.69.9
16019 No Label 2002:172:2::12/128[V] \
4830 Et1/0 FE80::A8BB:CCFF:FE00:7801
16020 Pop Label 2002:172:2:126::/64[V] \
570 aggregate/ABC
MPLS forwarding table(Cont.)
R8 mpls forwarding table
RP/0/0/CPU0:R8#show mpls forwarding
Local Outgoing Prefix Outgoing Next Hop Bytes
Label Label or ID Interface Switched
------ ----------- ------------------ ------------ --------------- ------------
16010 Unlabelled 2002:172:2::3/128[V] \
Gi0/2/0/2.38 fe80::c00:ff:fe00:1e01 \
5280
R7 mpls forwarding table
R7#show mpls forwarding-table
Local Outgoing Prefix Bytes Label Outgoing Next Hop
Label Label or VC or Tunnel Id Switched interface
46 No Label 2002:172:2::1/128[V] \
1710 Et1/0 FE80::C00:FF:FE00:A01
Connectivity verification
R3#traceroute 2002:172:2::1
R3#traceroute 2002:172:2::12
R1#traceroute 2002:172:2::12