RE: [nsp] RR Configuration on MPLS - VPN

From: Marcio Pilotto (marcio.pilotto@intelig.net.br)
Date: Fri May 04 2001 - 14:45:02 EDT


Zaheer,

the same concept of normal IPv4 applies at VPNv4, in fact both RR servers,
that in your example are RR1 and RR2, must drop all routing information that
has the same cluster ID.
My concern is that there is no way to separate what is RR for IPv4 and what
is RR for VPNv4 since there is no specific cluster-id for each
address-family. It´s a global 'router bgp' command. So for RR issues, what
is configured for IPv4 will apply to VPNv4 and at my topology is not
convinient.

On my topology, there are two 7507 that are RR-client on two different
cluster-id ( let say 11 and 21 ), but I need to configure them to be
RR-server only for MPLS-VPN. But if I configure a cluster-id of 666 on each
7507 with the goal that they must belong to the same VPNv4 cluster-id, I
will create a "small" IPv4 routing problem when one 7507 will receive a IPv4
update from another IPv4 and will see the same cluster-id of 666. It will
drop a IPv4 packet!

Is there anyway to avoid this situation and use RR for MPLS-VPN. Answers
like use dedicated routers, or use full mesh of PEs or do not implement
MPLS-VPN are not valid answers!

Regards,

Marcio Pilotto
Network Design Engineer
Intelig Telecomunicações Ltda
Praia de Botafogo, 440 - 12° andar
Tel.: + 55 21 536 0880
Mobile: +55 21 97 65 65 23
Fax: +55 21 536 0903
marcio.pilotto@intelig.net.br <mailto:marcio.pilotto@intelig.net.br>

-----Original Message-----
From: Zaheer Aziz [mailto:zaziz@cisco.com]
Sent: sexta-feira, 4 de maio de 2001 15:31
To: Martin Picard; Marcio Pilotto; 'Martin Picard';
cisco-nsp@puck.nether.net
Cc: Jose Ferreira
Subject: Re: [nsp] RR Configuration on MPLS - VPN

At 01:22 PM 05/04/2001 -0400, Martin Picard wrote:
>Marcio,
>
>Yes you could, but if all RR-Clients connects to both RR then I would
>use the same cluster-id on the RRs.

using the same cluster-ID on both RR has the potential of routing breakdown.

Imagine a client that connects to two RR which has some cluster ID. Client
advertise
a prefix to RR1 and RR2. Now link between RR2 and client break or BGP
session goes
down. RR1 will advertise that prefix to RR2 but RR2 will reject it because
it has a same
cluster-ID in the cluster-Iist. Thus RR2 will have no way to reach prefixes
advertise by client

Thanks
Zaheer

>mp
>
>----- Message d'origine -----
>De : "Marcio Pilotto" <marcio.pilotto@intelig.net.br>
>À : "'Martin Picard'" <b1bwuh29@videotron.ca>; <cisco-nsp@puck.nether.net>
>Cc : "Jose Ferreira" <jose.ferreira@intelig.net.br>
>Envoyé : 4 mai, 2001 12:54
>Objet : RE: [nsp] RR Configuration on MPLS - VPN
>
>
>Thanks Martin.
>
>Based on your answer, I understood that it is possible to have two VPNv4 RR
>servers with a VPNv4 BGP connection between them with no cluster-id
>configured. Am I right?
>
>Regards,
>
>Marcio Pilotto
>Network Design Engineer
>Intelig Telecomunicações Ltda
>Praia de Botafogo, 440 - 12° andar
>Tel.: + 55 21 536 0880
>Mobile: +55 21 97 65 65 23
>Fax: +55 21 536 0903
>marcio.pilotto@intelig.net.br <mailto:marcio.pilotto@intelig.net.br>
>
>
>-----Original Message-----
>From: Martin Picard [mailto:mpicard@sinc.ca]
>Sent: sexta-feira, 4 de maio de 2001 13:08
>To: Marcio Pilotto; cisco-nsp@puck.nether.net
>Cc: Jose Ferreira
>Subject: Re: [nsp] RR Configuration on MPLS - VPN
>
>
>Marcio,
>
> I've done it several times now, works fine.
> You won't find the bgp cluster-id under the
> vpnv4 address-family but as usual under
> the global "router bgp".
>
> I doubt that you'll be able to have different
> cluster ids based address-family !!!
>
> mp
>
>
>----- Message d'origine -----
>De : "Marcio Pilotto" <marcio.pilotto@intelig.net.br>
>À : <cisco-nsp@puck.nether.net>
>Cc : "Jose Ferreira" <jose.ferreira@intelig.net.br>
>Envoyé : 4 mai, 2001 10:42
>Objet : [nsp] RR Configuration on MPLS - VPN
>
>
>Folks,
>
>I have two c7500 router that, in normal IPv4 world, belongs to a two
>different PoPs and two different Cluster-ID on normal IPv4 BGP session.
>
>These two routers must be a RR for MPLS-VPN for several RR Clients ( PEs )
>spreaded along the backbone, but I did not see any specific Cluster-ID
>inside address-family VPNv4 in order to avoid any unnecessary propagation
of
>routing information.
>
>Have any one implemented VPNv4 Route Reflector with more than one RR
Server?
>
>Thanks
>
>Marcio Pilotto
>Network Design Engineer
>Intelig Telecomunicações Ltda
>Praia de Botafogo, 440 - 12° andar
>Tel.: + 55 21 536 0880
>Mobile: +55 21 97 65 65 23
>Fax: +55 21 536 0903
>marcio.pilotto@intelig.net.br <mailto:marcio.pilotto@intelig.net.br>



This archive was generated by hypermail 2b29 : Sun Aug 04 2002 - 04:12:37 EDT