Professional Documents
Culture Documents
BRKDCN-2125
Cisco Webex Teams
Questions?
Use Cisco Webex Teams to chat
with the speaker after the session
How
1 Find this session in the Cisco Events Mobile App
2 Click “Join the Discussion”
3 Install Webex Teams or go directly to the team space
4 Enter messages/questions in the team space
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 3
Who am I?
• 12 years at Cisco
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 4
Agenda
• Examples
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 5
Overlays &
Network
Abstraction
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 7
Agenda
• Examples
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 8
Taxonomy - Underlay
Layer-3
Interface Spine Spine Spine Spine
Peering
Underlay
Edge Device Leaf Leaf Leaf Leaf Leaf Leaf Leaf
LAN
Segment
Virtual
Server Physical
Server
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 9
Taxonomy - Overlay
Tunnel Encapsulation
Spine
(VNI Spine
Namespace)
Spine Spine
Overlay
VTEP Leaf Leaf Leaf Leaf Leaf Leaf Leaf
LAN
Segment
Virtual
Server Physical VTEP: VXLAN Tunnel Endpoint
Server VNI/VNID: VXLAN Network Identifier
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 10
Understanding Overlay Technologies
Overlay Services
• Layer-2 Underlay Transport
Tunnel Encapsulation
• Layer-3 Network
• Layer-2 and Layer-3
Data-Plane
Control-Plane • Overlay Layer-2/Layer-3 Unicast
• Peer-Discovery Traffic
• Route Learning and Distribution • Overlay Broadcast, Unknown Unicast,
• Local Learning Multicast (BUM) traffic forwarding
• Remote Learning • Ingress Replication (Unicast)
• Multicast
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 11
Plumbing
VTEP VTEP
• Underlay – The Plumbing
Underlay Overlay
• Physical Connectivity
• What is an Overlay?
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 12
Endpoint Connectivity vs. Endpoint Presence
VTEP • Connectivity
VTEP– The Plumbing
Underlay Overlay
Spine
• Presence – Tunnels
• Endpoint logically present
• ”I need other Endpoints to
Leaf Leaf
Communicate”
Spine
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 13
Overlay Forwarding – Bridging
• Endpoint to Endpoint
Spine Spine Spine Spine Communication
• Layer-2 Service (VPN) for
VNI 30001 (L2VNI) Overlay Bridging
*VXLAN, LISP, OTV use IP/UDP Encapsulation BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 14
Overlay Forwarding – Pinging Host B
tc@boxA:$̃ ping HostB
PING HostB (192.168.10.102): 56 data bytes
64 bytes from 192.168.10.102 : icmp_seq=0 ttl=64 time=0.653 ms
64 bytes from 192.168.10.102 : icmp_seq=1 ttl=64 time=0.631 ms
Spine Spine Spine Spine
Baremetal Baremetal
Host A Host B
VLAN 10 VLAN 10
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 15
Overlay Forwarding – A Bridged Ping to Host B
Baremetal 0000.3001.1101
Baremetal 0000.3001.1102 10 192.168.10.101 192.168.10.102 Echo
Request
Host A Host B
MAC: 0000.3001.1101 MAC: 0000.3001.1102
IP: 192.168.10.101 IP: 192.168.10.102
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 16
Overlay Forwarding to B – Seen by the Underlay
Baremetal Baremetal
Host A Host B
MAC: 0000.3001.1101 MAC: 0000.3001.1102
IP: 192.168.10.101 IP: 192.168.10.102
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 17
Overlay Forwarding – Which Underlay Path?
Spine
• Network Virtualization Overlay
Spine
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 18
Entropy – the VXLAN Example
Entropy
happens here
Outer MAC Outer IP UDP VXLAN Inner MAC Inner IP Payload CRC
Data-Plane (VXLAN)
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 19
Path Diversity – Overlay Example (VXLAN)
Outer-Header
Baremetal
SIP 10.200.200.101 Baremetal
DIP 10.200.200.104
Host A Host B
MAC: 0000.3001.1101 Protocol UDP MAC: 0000.3001.1102
IP: 192.168.10.101 IP: 192.168.10.102
SPORT 52562
Original Packet Original Packet
SMAC 0000.3001.1101
DPORT
VXLAN
4789
30001
Overlay SMAC 0000.3001.1101
SPORT 56425
DPORT 25
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 20
Path Diversity – Overlay Example (VXLAN)
SMAC 0000.3001.1101
VXLAN 30001 • IP Protocol SMAC 0000.3001.1101
SIP 192.168.10.101
SMAC 0000.3001.1101
• Protocol Destination Port
SIP
(DPORT)
192.168.10.101
DMAC 0000.3001.1102
DPORT 25 DPORT 25
Protocol TCP
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 21
Path Diversity – Underlay Example (Layer-3
ECMP)
Outer-Header
Baremetal
SIP 10.200.200.101 Baremetal
Spine
Host A DIP 10.200.200.104 • Layer-3 ECMP Hashing is Host B
MAC: 0000.3001.1101 MAC: 0000.3001.1102
typically based on 5-Tuple
Protocol UDP
IP: 192.168.10.101 IP: 192.168.10.102
SPORT 52562
Original Packet • Layer-3 Source IP (SIP)
Original Packet
SMAC 0000.3001.1101
DPORT
VXLAN
4789
30001
Underlay • Layer-3 Destination IPSMAC
(DIP) 0000.3001.1101
DMAC 0000.3001.1102 Leaf Spine • IP Protocol
Leaf DMAC 0000.3001.1102
SIP 192.168.10.101
• Protocol Destination Port
SIP
(DPORT)
192.168.10.101
Protocol TCP
• Platform specific Protocol TCP
DPORT 25 DPORT 25
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 22
Entropy – the VXLAN Example
10101011010101
010101010
Baremetal Baremetal
Host A Spine
Spine Host B
MAC: 0000.3001.1101 MAC: 0000.3001.1102
IP: 192.168.10.101 IP: 192.168.10.102
Leaf Leaf
Spine
Spine
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 23
Entropy – the VXLAN Example
10101011010101
010101010
Baremetal
Host A Spine
Spine
MAC: 0000.3001.1101
IP: 192.168.10.101
Source Port in Outer Header
MAC: 0000.3001.1102
IP: 192.168.10.102
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 24
Agenda
• Examples
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 25
Ping/Traceroute in the Overlay – Bridged
tc@boxA:$̃ ping HostB
PING HostB (192.168.10.102): 56 data bytes
64 bytes from 192.168.10.102 : icmp_seq=0 ttl=64 time=0.653 ms
64 bytes from 192.168.10.102 : icmp_seq=1 ttl=64 time=0.631 ms
Spine Spine Spine Spine
Baremetal Baremetal
Host A Host B
192.168.10.101 192.168.10.102
VLAN 10 VLAN 10
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 26
Ping/Traceroute in the Overlay – Bridged
tc@boxA:$̃ ping HostB
PING HostB (192.168.10.102): 56 data bytes
64 bytes from 192.168.10.102 : icmp_seq=0 ttl=64 time=0.653 ms
64 bytes from 192.168.10.102 : icmp_seq=1 ttl=64 time=0.631 ms
Spine Spine Spine Spine
tc@boxA:$̃
Baremetal Baremetal
Host A Host B
192.168.10.101 192.168.10.102
VLAN 10 VLAN 10
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 27
FYI
Centralized IP Gateway – VXLAN Flood & Learn
Leaf Leaf Leaf Leaf Leaf Leaf Leaf • Gateway is always active?!
• Depends on VPC
• Centralized, Inter-VLAN/VNI
VPC+HSRP
Routing
• Centralized MAC & ARP State
• Large Configuration State at GW
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 28
Ping/Traceroute in the Overlay – Routed with
HSRP
tc@boxA:$̃ ping HostC
PING HostC (192.168.20.101): 56 data bytes
64 bytes from 192.168.20.101 : icmp_seq=0 ttl=63 time=0.767 ms
64 bytes from 192.168.20.101 : icmp_seq=1 ttl=63 time=0.642 ms
Spine Spine Spine VNI 3002 (L2VNI)
Spine
VPC+HSRP
Baremetal Baremetal
Host A Host C
192.168.10.101 192.168.20.101
VLAN 10 VLAN 20
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 29
Ping/Traceroute in the Overlay – Routed with
HSRP
tc@boxA:$̃ ping HostC
PING HostC (192.168.20.101): 56 data bytes
64 bytes from 192.168.20.101 : icmp_seq=0 ttl=63 time=0.767 ms
64 bytes from 192.168.20.101 : icmp_seq=1 ttl=63 time=0.642 ms
Spine Spine Spine VNI 3002 (L2VNI)
Spine
VPC+HSRP
tc@boxA:$̃
Baremetal Baremetal
Host A Host C
192.168.10.101 192.168.20.101
VLAN 10 VLAN 20
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 30
Distributed IP Anycast Gateway – VXLAN EVPN
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 31
Distributed IP Anycast Gateway – VXLAN EVPN
192.168.10.1
192.168.20.1
2020.0000.AAA
• All Edge Device share same
2020.0000.AAA
A
A Gateway IP and MAC address
• Pervasive Gateway approach
Leaf Leaf
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 32
FYI
Anycast – One-to-Nearest Association
Nearest Node
Leaf Leaf Leaf
Overlay
--- 192.168.20.101 ping statistics ---
VNI 50000 (L3VNI) 2 packets transmitted, 2 packets received, 0% packet loss
tc@boxA:$̃
Baremetal Baremetal
Host A Host C
192.168.10.101 192.168.20.101
VLAN 10 VLAN 20
*L3VNI: VNI for all Routing operation (”VRF-VNI”) BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 34
Ping/Traceroute in the Overlay – Routed with EVPN
Overlay
--- 192.168.20.101 ping statistics ---
VNI 50000 (L3VNI) 2 packets transmitted, 2 packets received, 0% packet loss
tc@boxA:$̃
tc@boxA:$̃
Baremetal Baremetal
Host A Host C
192.168.10.101 192.168.20.101
VLAN 10 VLAN 20
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 35
Distributed Anycast Gateway and Ping
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 36
Ping To Distributed Anycast Gateway – Local
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 37
Ping To Distributed Anycast Gateway – VPC
Interface)
• Port-Channel hashing
decides to which Switch to
SMAC DMAC dot1Q SIP DIP ICMP
Baremetal
Request
go
SMAC DMAC dot1Q SIP DIP ICMP
Host A
2020.0000.AAAA 0000.3001.1101 10 192.168.10.1 192.168.10.101 Echo
192.168.10.101 Reply
VLAN 10
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 38
Ping From Distributed Anycast Gateway – VPC
Baremetal
Reply
decides what Interface to
use
SMAC DMAC dot1Q SIP DIP ICMP
Host A
2020.0000.AAAA 0000.3001.1101 10 192.168.10.1 192.168.10.101 Echo
192.168.10.101
VLAN 10
Request • No response if Source and
Destination Switch is different
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 39
Ping To Distributed Anycast Gateway – Local
192.168.10.1
2020.0000.AAAA
Overlay
2020.0000.AAAA
Gateway is represented by
Leaf
an SVI (Switch Virtual
Interface)
Leaf Leaf Leaf Leaf Leaf Leaf
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 40
Ping To Distributed Anycast Gateway – Remote
192.168.20.1/32 (?)
• Distributed Anycast
Spine Spine Spine
Switch
Leaf Leaf Leaf Leaf Leaf Leaf Leaf • Distributed Anycast
Gateway is only advertised
as IP Subnet (direct route)
SMAC DMAC dot1Q SIP DIP ICMP
Host A Host C
192.168.10.101 192.168.20.101
VLAN 10 SMAC DMAC dot1Q SIP VLANDIP20 ICMP
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 41
Ping From Distributed Anycast Gateway – Remote
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 42
Problem – Predictable Overlay Connectivity Test
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 43
Ping From/To Loopback – Local with/without VPC
Baremetal Baremetal
interface loopback10
Host A Host C
192.168.10.101 192.168.20.101 vrf member BLUE
VLAN 10 VLAN 20 ip address 10.50.1.L#/32 tag 12345
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 44
Solution – Predictable Overlay Connectivity Test
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 45
Operations,
Administration,
and Management
(OAM)
Agenda
• Examples
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 47
Operations, Administration, and Management
(OAM)
• OAM – processes, activities,
tools and standards
• Various Modes of Operation
• Pro-Active
• Controlling a Situation
• Re-Active
• Responding to a Situation
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 48
VXLAN OAM – Re-Active
V V V V V V V
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 49
VXLAN OAM – Pro-Active
V V V V V V V
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 50
VXLAN OAM - OAM Model of Operation
V V V V V V V
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 51
Agenda
• Examples
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 52
NGOAM or VXLAN OAM
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 53
VXLAN OAM – Pre-Requisites
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 54
VXLAN OAM – Pre-Requisites (Command Line)
Overlay
feature ngoam Leaf Leaf Leaf Leaf Leaf Leaf Leaf feature ngoam
Baremetal Baremetal
Baremetal
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 55
VXLAN OAM – Reachability Verification
Overlay
64 bytes from 10.50.1.18: icmp_seq=4 ttl=254 time=0.745 ms
--- 10.50.1.18 ping statistics ---
L15# show ip route 10.50.1.18 vrf BLUE 5 packets transmitted, 5 packets received, 0.00% packet loss
IP Route Table for VRF "BLUE” round-trip min/avg/max = 0.704/0.92/1.303 ms
'*' denotes best ucast next-hop
'**' denotes best mcast
Leaf next-hop
Leaf Leaf Leaf Leaf Leaf Leaf
BGP-EVPN: VNI=50001
Baremetal
(EVPN) Baremetal
Baremetal
client-specific data: 4d
Host A Host B Host C
recursive
MAC:next hop: 10.200.200.18/32%default
0000.3001.1101 MAC: 0000.3001.1102 MAC: 0000.3002.2101
extendedIP:route information: BGPIP:origin
192.168.10.101 AS 65501 BGP peerIP:AS
192.168.10.102 65501
192.168.20.101
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 56
Endpoint Reachability – VXLAN OAM
Leaf Leaf Leaf Leaf Leaf Leaf Leaf • Validates ECMP Path
• Single Random Path
• Multiple, Random/Specified Path
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 57
Endpoint Reachability – VXLAN OAM
Spine
Is Host A alive?
VTEP VTEP
Baremetal AS#65500
L15# ping nve ip 192.168.10.101 vrf BLUE source 10.50.1.15 verbose
Codes: '!' - success, 'Q' - request not sent, '.' - timeout,
Host A 'D' - Destination Unreachable, 'X' - unknown return code,
MAC: 0000.3001.1101 'm' - malformed request(parameter problem),
IP: 192.168.10.101
'c' - Corrupted Data/Test, '#' - Duplicate response
Spine
Sender handle: 32
! sport 35977 size 56,Reply from 192.168.10.101,time = 1 ms
! sport 35977 size 56,Reply from 192.168.10.101,time = 2 ms
! sport 35977 size 56,Reply from 192.168.10.101,time = 1 ms
! sport 35977 size 56,Reply from 192.168.10.101,time = 1 ms
! sport 35977 size 56,Reply from 192.168.10.101,time = 1 ms
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 58
VTEP Reachability – VXLAN OAM
Spine
Is VTEP18
Loopback10 alive?
IP: 10.50.1.18
L15# ping nve ip 10.50.1.18 vrf BLUE source 10.50.1.15 sport 41803 verbose
VTEP VTEP
Codes: '!' - success, 'Q' - request not sent, '.' - AS#65500
timeout,
'D' - Destination Unreachable, 'X' - unknown return code,
'm' - malformed request(parameter problem),
'c' - Corrupted Data/Test, '#' - Duplicate response
Sender handle: 62
! sport 41803 size 56,Reply from 10.50.1.18,time = 1 msSpine
! sport 41803 size 56,Reply from 10.50.1.18,time = 1 ms
! sport 41803 size 56,Reply from 10.50.1.18,time = 1 ms
! sport 41803 size 56,Reply from 10.50.1.18,time = 1 ms
! sport 41803 size 56,Reply from 10.50.1.18,time = 1 ms
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 59
CLI Options – ICMP-based NVE Ping
ping nve ip Destination Host/Loopback vrf VRF-Name source Source Loopback verbose
ping nve ip Destination Host/Loopback vrf VRF-Name source Source Loopback sport Outer Source Port verbose
ping nve ip Destination Host/Loopback vrf VRF-Name source Source Loopback egress Uplink Interface verbose
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 60
CLI Options – NVE Ping with MAC
ping nve mac Destination Host MAC Local-VLAN profile Profile # verbose
ping nve mac Destination Host MAC Local-VLAN profile Profile # sport Outer Source Port verbose
ping nve mac Destination Host MAC Local-VLAN profile Profile # egress Uplink Interface verbose
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 61
Endpoint Traceroute – VXLAN OAM
Leaf Leaf Leaf Leaf Leaf Leaf Leaf • Validates Overlay Path
• Single Specified Path
• Multiple, Specified Path
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 62
How would a normal Traceroute look like?
Eth1/5
10.1.1.17
Spine
NVE1
10.200.200.18 What is the
L15# traceroute 192.168.10.101 source 10.50.1.15 vrf BLUE Path to Host A?
traceroute to 192.168.10.101 (192.168.10.101) from 10.50.1.15 (10.50.1.15), 30 hops max, 40 byte packets
VTEP VTEP
1 10.50.1.18 (10.50.1.18) 0.96 ms 0.817 ms 0.746 ms
2 Baremetal
2 192.168.10.101 (192.168.10.101) 4.751 msAS#65500
0.69 ms 0.697 ms
Host A
MAC: 0000.3001.1101
IP: 192.168.10.101
Spine
Eth1/5
10.1.2.17
Which Path did my Traceroute take? © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Endpoint Traceroute – VXLAN OAM
Eth1/5
10.1.1.17
Spine
NVE1
10.200.200.18 What is the
Path to Host A?
Spine
Traceroute Request to peer ip 10.200.200.18 source ip 10.200.200.15
Sender handle: 94
1 !Reply from 10.1.1.17,time = 1 ms
2 !Reply from 10.200.200.18,time = 1 ms
Eth1/5
3 !Reply from 192.168.10.101,time = 4 ms 10.1.2.17
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 64
Endpoint Traceroute – VXLAN OAM – Close-Up
L15# traceroute nve ip 192.168.10.101 vrf BLUE source 10.50.1.15 sport 35977 verbose
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 65
CLI Options – ICMP-based NVE Traceroute
traceroute nve ip Destination Host/Loopback vrf VRF-Name source Source Loopback verbose
traceroute nve ip Destination Host/Loopback vrf VRF-Name source Source Loopback sport Outer Source Port verbose
traceroute nve ip Destination Host/Loopback vrf VRF-Name source Source Loopback egress Uplink Interface verbose
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 66
Ping/Traceroute with DCNM
Source Switch
Destination Switch
VRF
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 67
Ping/Traceroute with DCNM
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 68
Demo – VXLAN OAM NVE Ping and
Traceroute
Pathtrace for Enhanced Network Visibility
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 70
Endpoint Reachability – VXLAN OAM
Spine
Is Host A alive?
VTEP
AS#6550 VTEP
Baremetal
0 Baremetal
Host A Host C
MAC: 0000.3001.1101 MAC: 0000.3002.2101
IP: 192.168.10.101 IP: 192.168.20.101
Spine
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 71
Pathtrace with Known VTEP
Eth1/5
10.1.1.17
What is the Path from
Host C to Host A for
HTTP traffic?
Spine
NVE1
10.200.200.18 NVE1
10.200.200.15
L15# pathtrace nve ip 10.200.200.18 vrf BLUE payload ip 192.168.10.101 192.168.20.101 port 54321 80 proto 6 payload
VTEP VTEP
'!' - success, 'Q' - request not sent, '.' AS#65500
Codes:Baremetal - timeout,
Baremetal
'D' - Destination Unreachable, 'X' - unknown return code,
'm' -Host
malformed
A request(parameter problem),
'c' - Corrupted Data/Test, '#' - Duplicate response
Host C
MAC: 0000.3001.1101 MAC: 0000.3002.2101
IP: 192.168.10.101 IP: 192.168.20.101
Path trace Request to peer ip 10.200.200.18 source ip 10.200.200.15
Sender handle: 142 Spine
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 72
Pathtrace with Unknown VTEP
Eth1/5
10.1.1.17
What is the Path
from Host C to
Host A for HTTP?
Spine
NVE1
10.200.200.18 NVE1
10.200.200.15
L15# pathtrace nve ip unknown vrf BLUE payload ip 192.168.10.101 192.168.20.101 port 54321 80 proto 6 payload-end
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 73
Pathtrace – VXLAN OAM – Close-Up
L15# pathtrace nve ip unknown vrf BLUE Known or Unknown VTEP IP Address
payload
ip 192.168.10.101 192.168.20.101 Destination Endpoint IP / Source Endpoint IP
port 54321 80 Source Port / Destination Port
proto 6
payload-end TCP (IANA Protocol Number 6)
10101011010101
010101010
Baremetal
Host A Spine
Spine Host B
MAC: 0000.3001.1101
IP: 192.168.10.101
Source Port in Outer Header
MAC: 0000.3001.1102
IP: 192.168.10.102
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 75
Pathtrace – VXLAN OAM – Close-Up
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 76
Pathtrace – VXLAN OAM – Extensions (Routing)
L15# pathtrace nve ip unknown vrf BLUE Known or Unknown VTEP IP Address
payload
ip 192.168.10.101 192.168.20.101 Destination Endpoint IP / Source Endpoint IP
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 77
Pathtrace – VXLAN OAM – Extensions (Bridging)
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 78
Pathtrace with Unknown VTEP – Request
Statistics
Eth1/5
10.1.1.17
What is the Path
from Host C to
Host A for HTTP?
Spine
NVE1
10.200.200.18 NVE1
10.200.200.15
L15# pathtrace nve ip unknown vrf BLUE payload ip 192.168.10.101 192.168.20.101 payload-end verbose req-stats
VTEP
AS#6550
Path trace Request to peer ip 10.200.200.18 source ip 10.200.200.15
VTEP
Baremetal
Sender handle: 168 0 Baremetal
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 79
Request Stats – VXLAN OAM – Close-Up
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 80
Database Output – VXLAN OAM – Close-Up
! Reply from 10.1.1.17 on Eth1/5, state UP. Sent on Eth1/8, state UP.
Interface stats for interface: Eth1/5
-------------------------------
Rx Len : 84
Rx Bytes : 66113123
Interface Statistics
Rx Pkt rate : 0
Rx Byte rate : 0
Rx Load : 0 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public
Endpoint Pathtrace with DCNM
Source IP
Destination IP
VRF
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 82
Endpoint Pathtrace with DCNM
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 83
Demo – VXLAN OAM NVE PathTrace
Agenda
• Examples
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 85
Where is my Endpoint?
Spine Spine Spine Spine
found Overlay
Leaf Leaf Leaf Leaf Leaf Leaf Leaf
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 86
Endpoint Locator (EPL) – Architecture
Historic Data
BGP
• Stores every Endpoint Control-
Plane Event
EPL
• Correlates with Inventory Data
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 87
Endpoint Locator
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 88
Demo –Endpoint Locator with DCNM
Agenda
• Examples
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 90
EVPN Multi-Site
Site-External DCI
Border Gateways (IP Routing and Increased
(Key Functional MTU Support)
Components of
VXLAN Multi-Site
Architecture) BGW BGW BGW BGW
Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf
Site 1 Site n
Site-Internal Fabric
(Common VXLAN and BGP-EVPN Functions)
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 91
Hierarchical Overlay Domains
Overlay Multi-Site
Spine
Overlay Site 1
Spine Spine Spine Spine
Overlay Site n
Spine Spine Spine
Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf Leaf
Site 1 Site n
Baremetal Baremetal
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 92
Y2018
VXLAN XConnect
• P2P
xconnect xconnect
interface Ethernet1/1 interface Ethernet1/1
switchport mode dot1q-tunnel switchport mode dot1q-tunnel
switchport access vlan 10 switchport access vlan 10
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 93
Y2018
VXLAN XConnect
vlan 20
vn-segment 20000
xconnect
interface Ethernet1/2
switchport mode dot1q-tunnel
switchport access vlan 20
Spine Spine Spine Spine
• MPLS Pseudowire like
Tunneling with VXLAN
• Tunnel all control & data
VTEP VTEP VTEP VTEP VTEP VTEP VTEP
packets between VTEPs
• Attachment point is part of a
vlan 10 vlan 10
unique provider VNI
vn-segment 10000 vn-segment 10000
• P2P
xconnect xconnect
interface Ethernet1/1 vlan 20
switchport mode dot1q-tunnel vn-segment 20000
switchport access vlan 10 xconnect
interface Ethernet1/1
switchport mode dot1q-tunnel
switchport access vlan 10
interface Ethernet1/2
switchport mode dot1q-tunnel
switchport access vlan 20 BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 94
OAM for VXLAN XConnect
vlan 20
vn-segment 20000
xconnect
interface Ethernet1/2
switchport mode dot1q-tunnel
switchport access vlan 20
• Pro-active OAM
Spine Spine Spine Spine
• Failure Propagation
vlan 10 vlan 10
vn-segment 10000 vn-segment 10000
xconnect
• Convey local vni/vlan/interface
xconnect
interface Ethernet1/1 vlan 20
vn-segment 20000
failures to the remote VTEPs
switchport mode dot1q-tunnel
switchport access vlan 10 xconnect
interface Ethernet1/1
• Error-disabled mode
switchport mode dot1q-tunnel
switchport access vlan 10
interface Ethernet1/2
switchport mode dot1q-tunnel
switchport access vlan 20 BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 95
Network Insights
Network Insights Applications
Apps
DCNM APIC
Platform
App Hosting Framework App Hosting Framework
App Store App Store
Data collection and ingestion Data correlation and analysis Data visualization and action
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 97
Data Center Visibility Use Cases
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 98
Network Insights Resources
NIR
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 99
Network Insights Resources - Customer Benefits
Fabric-Wide Capacity
Resource Utilization
Planning, Trend Monitoring
Environmental
Avoid Environmental (CPU,
Monitoring Power, Memory, Fan, Storage
Related Failures
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 100
Key Takeaways
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 101
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 102
Complete your
online session
survey • Please complete your session survey
after each session. Your feedback
is very important.
• Complete a minimum of 4 session
surveys and the Overall Conference
survey (starting on Thursday) to
receive your Cisco Live t-shirt.
• All surveys can be taken in the Cisco Events
Mobile App or by logging in to the Content
Catalog on ciscolive.com/emea.
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 103
Continue your education
Demos in the
Walk-in labs
Cisco campus
BRKDCN-2125 © 2020 Cisco and/or its affiliates. All rights reserved. Cisco Public 104
Thank you