cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1512
Views
15
Helpful
7
Replies

BFD over multipoint VPLS

ngthen
Level 1
Level 1

I have a 5 node VPLS setup through AT&T going into my various data centers.  I'm currently using OSPF and would like faster failover to my VPN backup tunnels if the VPLS should go down.  On a point-to-point link, BFD works as planned.  On a VPLS network with all WAN interfaces on the same /24 it doesn't see all the sites when I issue "show bfd neighbors".  Is BFD supported in this scenario?  How world others get around it?

7 Replies 7

balaji.bandi
Hall of Fame
Hall of Fame

you can not see BFD neigh over VPN or VPLS?

 

Do you have BFD configured on the connected interface? show us some config

 

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Giuseppe Larosa
Hall of Fame
Hall of Fame

Hello @ngthen ,

what you see might be normal if you consider that with OSPF and 5 nodes a DR is elected and a BDR is elected on the emulated VPLS broadcast domain.

Verify on the DR node if it sees all the other devices .

the BFD sessions might be used to protect full adjacencies that in this case are only with DR and BDR.

There is little interest on using BFD between DR other routers that are in Two Way State .

 

Hope to help

Giuseppe

 

 

Giuseppe,

 

I didn't think about DR & BDR for BFD.  I'll validate that this AM and then post the config sample as others have requested.

So in looking, it appears the router is trying to reach the BDR when establishing a BFD session.  For example, I was hoping to see something between 10.25.1.1 & 10.25.1.3, but instead it tries 10.25.1.1 <--> 10.25.1.5 AND 10.25.1.3 <--> 10.25.1.5.  10.25.1.5 is showing up as the BDR in both cases.  This, I believe, is what Giuseppe is alluding to.  

 

What I am trying to achieve would be if a VPLS node goes down somewhere in AT&T's network and their on-prem Ciena box is still up that I could fail over faster to my VPN backup rather than waiting for the hold down timer to expire.  Right now if they have a failure at their CO my router still thinks the Interface is good and I need to wait the 40 seconds or so to flip.  Now if I kill the interface on the router it is pretty much instant.  Now on the other end, I don't need to trigger a full failover obviously as their VPLS node is still running and my remote sites other than the one in question should continue to use it.  

 

How would others achieve this without lowering the timers?

Hello @ngthen ,

if you have port based VPLS you can use VLANs to create a non flat topology a collection of point to point links over each of them you will run BFD on pairs of routers that you manage.

 

Hope to help

Giuseppe

 

Although I don't have a designed solution yet, Giuseppe, you were able to give good direction on potential ways to go with a cause on what I am seeing.  Thanks!

Review Cisco Networking for a $25 gift card