RE: [nsp] RR Configuration on MPLS - VPN

From: Zaheer Aziz (zaziz@cisco.com)
Date: Mon May 07 2001 - 16:06:02 EDT


At 03:45 PM 05/04/2001 -0300, Marcio Pilotto wrote:
>Zaheer,
>
>the same concept of normal IPv4 applies at VPNv4, in fact both RR servers,
>that in your example are RR1 and RR2, must drop all routing information that
>has the same cluster ID.
>My concern is that there is no way to separate what is RR for IPv4 and what
>is RR for VPNv4 since there is no specific cluster-id for each
>address-family. It´s a global 'router bgp' command. So for RR issues, what
>is configured for IPv4 will apply to VPNv4 and at my topology is not
>convinient.
>
>On my topology, there are two 7507 that are RR-client on two different
>cluster-id ( let say 11 and 21 ), but I need to configure them to be
>RR-server only for MPLS-VPN. But if I configure a cluster-id of 666 on each
>7507 with the goal that they must belong to the same VPNv4 cluster-id, I
>will create a "small" IPv4 routing problem when one 7507 will receive a IPv4
>update from another IPv4 and will see the same cluster-id of 666. It will
>drop a IPv4 packet!

currently I dont see any way to achieve what you are asking. Would you mind sharing
why do want to have same cluster for VPNv4 in two 7507?

>Is there anyway to avoid this situation and use RR for MPLS-VPN. Answers
>like use dedicated routers, or use full mesh of PEs or do not implement
>MPLS-VPN are not valid answers!

All of the above were good suggestions but you ruled them out :-)

Zaheer

>Regards,
>
>Marcio Pilotto
>Network Design Engineer
>Intelig Telecomunicações Ltda
>Praia de Botafogo, 440 - 12° andar
>Tel.: + 55 21 536 0880
>Mobile: +55 21 97 65 65 23
>Fax: +55 21 536 0903
>marcio.pilotto@intelig.net.br <mailto:marcio.pilotto@intelig.net.br>
>
>
>-----Original Message-----
>From: Zaheer Aziz [mailto:zaziz@cisco.com]
>Sent: sexta-feira, 4 de maio de 2001 15:31
>To: Martin Picard; Marcio Pilotto; 'Martin Picard';
>cisco-nsp@puck.nether.net
>Cc: Jose Ferreira
>Subject: Re: [nsp] RR Configuration on MPLS - VPN
>
>
>At 01:22 PM 05/04/2001 -0400, Martin Picard wrote:
>>Marcio,
>>
>>Yes you could, but if all RR-Clients connects to both RR then I would
>>use the same cluster-id on the RRs.
>
>
>using the same cluster-ID on both RR has the potential of routing breakdown.
>
>Imagine a client that connects to two RR which has some cluster ID. Client
>advertise
>a prefix to RR1 and RR2. Now link between RR2 and client break or BGP
>session goes
>down. RR1 will advertise that prefix to RR2 but RR2 will reject it because
>it has a same
>cluster-ID in the cluster-Iist. Thus RR2 will have no way to reach prefixes
>advertise by client
>
>
>Thanks
>Zaheer
>
>>mp
>>
>>----- Message d'origine -----
>>De : "Marcio Pilotto" <marcio.pilotto@intelig.net.br>
>>À : "'Martin Picard'" <b1bwuh29@videotron.ca>; <cisco-nsp@puck.nether.net>
>>Cc : "Jose Ferreira" <jose.ferreira@intelig.net.br>
>>Envoyé : 4 mai, 2001 12:54
>>Objet : RE: [nsp] RR Configuration on MPLS - VPN
>>
>>
>>Thanks Martin.
>>
>>Based on your answer, I understood that it is possible to have two VPNv4 RR
>>servers with a VPNv4 BGP connection between them with no cluster-id
>>configured. Am I right?
>>
>>Regards,
>>
>>Marcio Pilotto
>>Network Design Engineer
>>Intelig Telecomunicações Ltda
>>Praia de Botafogo, 440 - 12° andar
>>Tel.: + 55 21 536 0880
>>Mobile: +55 21 97 65 65 23
>>Fax: +55 21 536 0903
>>marcio.pilotto@intelig.net.br <mailto:marcio.pilotto@intelig.net.br>
>>
>>
>>-----Original Message-----
>>From: Martin Picard [mailto:mpicard@sinc.ca]
>>Sent: sexta-feira, 4 de maio de 2001 13:08
>>To: Marcio Pilotto; cisco-nsp@puck.nether.net
>>Cc: Jose Ferreira
>>Subject: Re: [nsp] RR Configuration on MPLS - VPN
>>
>>
>>Marcio,
>>
>> I've done it several times now, works fine.
>> You won't find the bgp cluster-id under the
>> vpnv4 address-family but as usual under
>> the global "router bgp".
>>
>> I doubt that you'll be able to have different
>> cluster ids based address-family !!!
>>
>> mp
>>
>>
>>----- Message d'origine -----
>>De : "Marcio Pilotto" <marcio.pilotto@intelig.net.br>
>>À : <cisco-nsp@puck.nether.net>
>>Cc : "Jose Ferreira" <jose.ferreira@intelig.net.br>
>>Envoyé : 4 mai, 2001 10:42
>>Objet : [nsp] RR Configuration on MPLS - VPN
>>
>>
>>Folks,
>>
>>I have two c7500 router that, in normal IPv4 world, belongs to a two
>>different PoPs and two different Cluster-ID on normal IPv4 BGP session.
>>
>>These two routers must be a RR for MPLS-VPN for several RR Clients ( PEs )
>>spreaded along the backbone, but I did not see any specific Cluster-ID
>>inside address-family VPNv4 in order to avoid any unnecessary propagation
>of
>>routing information.
>>
>>Have any one implemented VPNv4 Route Reflector with more than one RR
>Server?
>>
>>Thanks
>>
>>Marcio Pilotto
>>Network Design Engineer
>>Intelig Telecomunicações Ltda
>>Praia de Botafogo, 440 - 12° andar
>>Tel.: + 55 21 536 0880
>>Mobile: +55 21 97 65 65 23
>>Fax: +55 21 536 0903
>>marcio.pilotto@intelig.net.br <mailto:marcio.pilotto@intelig.net.br>



This archive was generated by hypermail 2b29 : Sun Aug 04 2002 - 04:12:37 EDT