[rbak-nsp] 6.3.1.3 - Sending ipv4 vpn AF routes via BGP issue

Mark Loveley mloveley at gmail.com
Thu May 26 05:31:59 EDT 2011


Hi

I'm testing SEOS 6.3.1.3 in the lab and am seeing some issues with
the advertisement of ipv4 vpn routes from the Smartedge.
I wondered if anyone else has seen similar issues.

After upgrade The session comes up. The unicast routes are sent, but the vpn
AF routes are not.

[local]Eeyore#sh bgp neighbor 192.168.102.6
BGP neighbor: 192.168.102.6, remote AS: 65000, internal link
  Version: 4, router identifier: 192.168.102.6
  Peer Group member: internal
  State: Established for 22:33:30
  Description: rabbitFakeEdge
  Last read 00:00:20, last send 00:00:22
  Hold time: configured 180, negotiated 90
  Keepalive time: configured 60, negotiated 30
  Local restart timer 120 sec, stale route retain timer 180 sec
  Received restart timer 120 sec, flag 0x0
  Minimum time between advertisement runs: 5 secs
  Source IP address used from interface: loopback0
  Source (local) IP address: 192.168.102.1
  Received messages: 2992 (56977 bytes), notifications: 0, in queue: 0
  Sent messages: 2687 (51509 bytes), notifications: 0, out queue: 0
  Reset count: 2, last reset time: 22:33:39, reset reason: User action

  CapSent: refresh, 4byteAS, unicast, vpn, restart
  CapRcvd: refresh, 4byteAS, unicast, vpn
           restart (time 120, flags 0x0, empty)

  Address family: ipv4 unicast
    Peer Group member: internal
    BGP table version: 47, neighbor version: 47
    Routes: rcvd 0, imported 0, active 0, history 0, dampend 0, sent 12

  Address family: ipv4 vpn
    Peer Group member: internal
    BGP table version: 184, neighbor version: 0
    Routes: rcvd 1, imported 2, active 3, history 0, dampend 0, sent 0
[local]Eeyore#

The Juniper on the other end of the BGP session never see's the "end-of-rib
marker" for inet-vpn-unicast.
Using BGP traceoptions (flag all) on the Juniper I can see that it never
seems to receive the "BGP RECV End of RIB: AFI 1 SAFI 128", whereas it does
receive the one for "SAFI 1",

noc at Rabbit> show log fakeEdge/fakeEdge-BGP | match AFI
May 18 12:57:10.579096 BGP SEND End of RIB: AFI 1 SAFI 1
May 18 12:57:10.579642 BGP SEND End of RIB: AFI 1 SAFI 128
May 18 12:57:10.584650 BGP RECV End of RIB: AFI 1 SAFI 1

{master}

After some time ( ie 12+ hours) "an event" occurs (which I haven't tracked
down yet, it's not regular) and the vpn AF routes start being sent.
Once the routes are being sent, If I clear a BGP session after that event,
 it advertises the vpn routes straight away until the Smartedge is rebooted.
After the reboot the vpn routes aren't sent.

If I downgrade to 6.1.3.8p1 and the same config works first time every time.
13 routes are advertised in the vpn address family.

This happens with all iBGP peers on the Smartedge, not just this one.
There ARE routes locally within that AF ready to be sent, it's just not
sending them

[local]Eeyore#sh bgp route ipv4 vpn
Address Family: ipv4 vpn
BGP table version is 184, local router ID is 192.168.102.1
Status codes: d damped, h history, > best, i internal
Origin codes: i - IGP, e - EGP, ? - incomplete


VPN RD: 192.168.102.1:161
   Network            Next Hop                Metric  LocPrf  Weight Path
>  10.0.0.0/30        0.0.0.0                      0     100   32768 ?
>  10.255.255.252/30  0.0.0.0                      0     100   32768 ?

VPN RD: 192.168.102.1:210
   Network            Next Hop                Metric  LocPrf  Weight Path
>  10.98.50.1/32      0.0.0.0                      0     100   32768 ?
>  10.98.50.2/32      0.0.0.0                      0     100   32768 ?
>i 10.98.50.10/32     192.168.102.6                0     100     100 i
>  11.0.56.0/24       0.0.0.0                      0     100   32768 ?
 i 192.168.203.1/32   192.168.202.1                0     100     100 6871 i
 i 192.168.203.4/30   192.168.202.1                0     100     100 6871 i

VPN RD: 192.168.102.1:211
   Network            Next Hop                Metric  LocPrf  Weight Path
>  10.98.50.1/32      0.0.0.0                      0     100   32768 ?
>  10.98.50.2/32      0.0.0.0                      0     100   32768 ?
>i 10.98.50.10/32     192.168.102.6                0     100     100 i
--snip--

Has anyone else seen anything like this before? Is
anyone successfully running 6.3 with BGP advertising the vpn address family
in their network?

Thanks
Mark
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <https://puck.nether.net/pipermail/redback-nsp/attachments/20110526/9374bb6e/attachment.html>


More information about the redback-nsp mailing list