cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
727
Views
20
Helpful
3
Replies

Intra-As routing issue

feroz syed
Level 3
Level 3

BGP-100 (Issue pinging from R5 to R1(customer) via R3)

The router in Intra area not able to communicate with Customer Vrf(Router-1) .

Router 5 has Customer routes on its vrf table, but unable to communicate.

Router 3 directly connected to Customer VRf and it can communicate with customer.

 

R5 trying to ping vrf RED 11.11.11.11

------------------------------------------------------------------------------

R5#sh bgp vpnv4 un al summ
BGP router identifier 5.5.5.5, local AS number 100
BGP table version is 23, main routing table version 23
4 network entries using 624 bytes of memory
4 path entries using 320 bytes of memory
4/3 BGP path/bestpath attribute entries using 576 bytes of memory
2 BGP AS-PATH entries using 48 bytes of memory
1 BGP extended community entries using 24 bytes of memory
0 BGP route-map cache entries using 0 bytes of memory
0 BGP filter-list cache entries using 0 bytes of memory
BGP using 1592 total bytes of memory
BGP activity 5/1 prefixes, 5/1 paths, scan interval 60 secs

Neighbor V AS MsgRcvd MsgSent TblVer InQ OutQ Up/Down State/PfxRcd
3.3.3.3 4 100 374 580 23 0 0 08:29:26 2
100.5.31.31 4 12345 583 592 23 0 0 08:29:31 2




-------------------------------------------------




R5#sh ip route vrf RED

Routing Table: RED

Gateway of last resort is not set

10.0.0.0/24 is subnetted, 2 subnets
B 10.1.3.0 [200/0] via 3.3.3.3, 02:24:53
B 10.16.35.0 [20/0] via 100.5.31.31, 02:18:08
11.0.0.0/32 is subnetted, 1 subnets
B 11.11.11.11 [200/0] via 3.3.3.3, 01:38:58
16.0.0.0/32 is subnetted, 1 subnets
B 16.16.16.16 [20/0] via 100.5.31.31, 02:18:08
100.0.0.0/8 is variably subnetted, 2 subnets, 2 masks
C 100.5.31.0/24 is directly connected, FastEthernet0/1
L 100.5.31.5/32 is directly connected, FastEthernet0/1







--------------------------------------------------




R5#sh bgp vpnv4 un all
BGP table version is 23, local router ID is 5.5.5.5


Network Next Hop Metric LocPrf Weight Path
Route Distinguisher: 1:16 (default for vrf RED)
*>i 10.1.3.0/24 3.3.3.3 0 100 0 1 ?
*> 10.16.35.0/24 100.5.31.31 0 12345 16 ?
*>i 11.11.11.11/32 3.3.3.3 0 100 0 1 i
*> 16.16.16.16/32 100.5.31.31 0 12345 16 ?







-----------------------------------------------




R3#sh bgp vpnv4 un all summ
BGP router identifier 3.3.3.3, local AS number 100
BGP table version is 10, main routing table version 10
4 network entries using 624 bytes of memory
4 path entries using 320 bytes of memory
5/3 BGP path/bestpath attribute entries using 720 bytes of memory
2 BGP AS-PATH entries using 48 bytes of memory
1 BGP extended community entries using 24 bytes of memory
0 BGP route-map cache entries using 0 bytes of memory
0 BGP filter-list cache entries using 0 bytes of memory
BGP using 1736 total bytes of memory
BGP activity 5/1 prefixes, 5/1 paths, scan interval 60 secs

Neighbor V AS MsgRcvd MsgSent TblVer InQ OutQ Up/Down State/PfxRcd
5.5.5.5 4 100 584 378 10 0 0 05:25:17 2
10.1.3.1 4 1 355 367 10 0 0 05:25:34 2
R3#sh bgp vpnv4 un all
BGP table version is 10, local router ID is 3.3.3.3
Status codes: s suppressed, d damped, h history, * valid, > best, i - internal,
r RIB-failure, S Stale, m multipath, b backup-path, f RT-Filter,
x best-external, a additional-path, c RIB-compressed,
Origin codes: i - IGP, e - EGP, ? - incomplete
RPKI validation codes: V valid, I invalid, N Not found

Network Next Hop Metric LocPrf Weight Path
Route Distinguisher: 1:16 (default for vrf RED)
r> 10.1.3.0/24 10.1.3.1 0 0 1 ?
*>i 10.16.35.0/24 5.5.5.5 0 100 0 12345 16 ?
*> 11.11.11.11/32 10.1.3.1 0 0 1 i
*>i 16.16.16.16/32 5.5.5.5 0 100 0 12345 16 ?




-----------------------------------------------------------------

R3#sh ip route vrf RED

Routing Table: RED
Codes: L - local, C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route, H - NHRP, l - LISP
+ - replicated route, % - next hop override

Gateway of last resort is not set

10.0.0.0/8 is variably subnetted, 3 subnets, 2 masks
C 10.1.3.0/24 is directly connected, FastEthernet0/1
L 10.1.3.3/32 is directly connected, FastEthernet0/1
B 10.16.35.0/24 [200/0] via 5.5.5.5, 02:07:03
11.0.0.0/32 is subnetted, 1 subnets
B 11.11.11.11 [20/0] via 10.1.3.1, 01:42:07
16.0.0.0/32 is subnetted, 1 subnets
B 16.16.16.16 [200/0] via 5.5.5.5, 02:07:03

---------------------------------------------------------------------




R1#sh ip bgp summ
BGP router identifier 1.1.1.1, local AS number 1
BGP table version is 8, main routing table version 8
4 network entries using 576 bytes of memory
4 path entries using 320 bytes of memory
3/3 BGP path/bestpath attribute entries using 408 bytes of memory
1 BGP AS-PATH entries using 24 bytes of memory
0 BGP route-map cache entries using 0 bytes of memory
0 BGP filter-list cache entries using 0 bytes of memory
BGP using 1328 total bytes of memory
BGP activity 5/1 prefixes, 5/1 paths, scan interval 60 secs

Neighbor V AS MsgRcvd MsgSent TblVer InQ OutQ Up/Down State/PfxRcd
10.1.3.3 4 100 370 359 8 0 0 05:17:42 2
R1#
R1#sh ip bgp
BGP table version is 8, local router ID is 1.1.1.1
Status codes: s suppressed, d damped, h history, * valid, > best, i - internal,
r RIB-failure, S Stale, m multipath, b backup-path, f RT-Filter,
x best-external, a additional-path, c RIB-compressed,
Origin codes: i - IGP, e - EGP, ? - incomplete
RPKI validation codes: V valid, I invalid, N Not found

Network Next Hop Metric LocPrf Weight Path
*> 10.1.3.0/24 0.0.0.0 0 32768 ?
*> 10.16.35.0/24 10.1.3.3 0 100 12345 16 ?
*> 11.11.11.11/32 0.0.0.0 0 32768 i
*> 16.16.16.16/32 10.1.3.3 0 100 12345 16 ?
R1#
R1#
R1#sh ip route
Codes: L - local, C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route, H - NHRP, l - LISP
+ - replicated route, % - next hop override

Gateway of last resort is not set

10.0.0.0/8 is variably subnetted, 3 subnets, 2 masks
C 10.1.3.0/24 is directly connected, FastEthernet0/0
L 10.1.3.1/32 is directly connected, FastEthernet0/0
B 10.16.35.0/24 [20/0] via 10.1.3.3, 02:10:29
11.0.0.0/32 is subnetted, 1 subnets
C 11.11.11.11 is directly connected, Loopback0
16.0.0.0/32 is subnetted, 1 subnets
B 16.16.16.16 [20/0] via 10.1.3.3, 02:10:29

----------------------------------------------------------------------------------interas.jpg

 

 

!

!
! Last configuration change at 13:38:32 UTC Thu Dec 9 2021
!
version 15.2
service timestamps debug datetime msec
service timestamps log datetime msec
!
hostname R3
!
boot-start-marker
boot-end-marker
!
!
vrf definition RED
 rd 1:16
 !
 address-family ipv4
  route-target export 1:16
  route-target import 1:16
 exit-address-family
!
!
no aaa new-model
no ip icmp rate-limit unreachable
!
!
!
!
!
!
no ip domain lookup
ip cef
no ipv6 cef
!
!
mpls label range 300 399
mpls label protocol ldp
multilink bundle-name authenticated
!
!
!
!
!
!
!
!
!
!
!
!
ip tcp synwait-time 5
! 
!
!
!
!
!
!
!
!
interface Loopback0
 ip address 3.3.3.3 255.255.255.255
 ip ospf 1 area 0
!
interface FastEthernet0/0
 ip address 172.16.34.3 255.255.255.0
 ip ospf network point-to-point
 ip ospf 1 area 0
 speed auto
 duplex auto
 mpls ip
!
interface FastEthernet0/1
 vrf forwarding RED
 ip address 10.1.3.3 255.255.255.0
 speed auto
 duplex auto
!
interface FastEthernet1/0
 ip address 172.16.23.3 255.255.255.0
 ip ospf network point-to-point
 ip ospf 1 area 0
 duplex full
 mpls ip
!
interface FastEthernet2/0
 ip address 172.16.36.3 255.255.255.0
 ip ospf network point-to-point
 ip ospf 1 area 0
 duplex full
 mpls ip
!
router ospf 1
 mpls ldp autoconfig
!
router bgp 100
 bgp log-neighbor-changes
 no bgp default ipv4-unicast
 neighbor 5.5.5.5 remote-as 100
 neighbor 5.5.5.5 update-source Loopback0
 !
 address-family ipv4
 exit-address-family
 !
 address-family vpnv4
  neighbor 5.5.5.5 activate
  neighbor 5.5.5.5 send-community extended
  neighbor 5.5.5.5 next-hop-self
 exit-address-family
 !
 address-family ipv4 vrf RED
  neighbor 10.1.3.1 remote-as 1
  neighbor 10.1.3.1 activate
  neighbor 10.1.3.1 next-hop-self
 exit-address-family
!
ip forward-protocol nd
!
!
no ip http server
no ip http secure-server
!
!
mpls ldp router-id Loopback0
!
!
control-plane
!
!
line con 0
 exec-timeout 0 0
 privilege level 15
 logging synchronous
 stopbits 1
line aux 0
 exec-timeout 0 0
 privilege level 15
 logging synchronous
 stopbits 1
line vty 0 4
 login
!
!
end
!

!
! Last configuration change at 16:43:36 UTC Thu Dec 9 2021
!
version 15.2
service timestamps debug datetime msec
service timestamps log datetime msec
!
hostname R5
!
boot-start-marker
boot-end-marker
!
!
vrf definition RED
 rd 1:16
 !
 address-family ipv4
  route-target export 1:16
  route-target import 1:16
 exit-address-family
!
!
no aaa new-model
no ip icmp rate-limit unreachable
!
!
!
!
!
!
no ip domain lookup
ip cef
no ipv6 cef
!
!
multilink bundle-name authenticated
!
!
!
!
!
!
!
!
!
!
!
!
ip tcp synwait-time 5
! 
!
!
!
!
!
!
!
!
interface Loopback0
 ip address 5.5.5.5 255.255.255.255
 ip ospf 1 area 0
!
interface FastEthernet0/0
 ip address 172.16.45.5 255.255.255.0
 ip ospf network point-to-point
 ip ospf 1 area 0
 speed auto
 duplex auto
 mpls ip
!
interface FastEthernet0/1
 vrf forwarding RED
 ip address 100.5.31.5 255.255.255.0
 speed auto
 duplex auto
!
interface FastEthernet1/0
 ip address 172.16.25.5 255.255.255.0
 ip ospf network point-to-point
 ip ospf 1 area 0
 duplex full
 mpls ip
!
interface FastEthernet2/0
 ip address 172.16.56.5 255.255.255.0
 ip ospf network point-to-point
 ip ospf 1 area 0
 duplex full
 mpls ip
!
router ospf 1
 mpls ldp autoconfig
!
router bgp 100
 bgp log-neighbor-changes
 no bgp default ipv4-unicast
 neighbor 3.3.3.3 remote-as 100
 neighbor 3.3.3.3 update-source Loopback0
 !
 address-family ipv4
 exit-address-family
 !
 address-family vpnv4
  neighbor 3.3.3.3 activate
  neighbor 3.3.3.3 send-community extended
  neighbor 3.3.3.3 next-hop-self
 exit-address-family
 !
 address-family ipv4 vrf RED
  neighbor 100.5.31.31 remote-as 12345
  neighbor 100.5.31.31 activate
  neighbor 100.5.31.31 next-hop-self
 exit-address-family
!
ip forward-protocol nd
!
!
no ip http server
no ip http secure-server
!
!
!
!
control-plane
!
!
line con 0
 exec-timeout 0 0
 privilege level 15
 logging synchronous
 stopbits 1
line aux 0
 exec-timeout 0 0
 privilege level 15
 logging synchronous
 stopbits 1
line vty 0 4
 login
!
!
end
!

!
! Last configuration change at 12:01:23 UTC Thu Dec 9 2021
!
version 15.2
service timestamps debug datetime msec
service timestamps log datetime msec
!
hostname R1
!
boot-start-marker
boot-end-marker
!
!
!
no aaa new-model
no ip icmp rate-limit unreachable
!
!
!
!
!
!
no ip domain lookup
ip cef
no ipv6 cef
!
!
multilink bundle-name authenticated
!
!
!
!
!
!
!
!
!
!
!
!
ip tcp synwait-time 5
! 
!
!
!
!
!
!
!
!
interface Loopback0
 ip address 11.11.11.11 255.255.255.255
!
interface FastEthernet0/0
 ip address 10.1.3.1 255.255.255.0
 speed auto
 duplex auto
!
interface FastEthernet0/1
 no ip address
 shutdown
 speed auto
 duplex auto
!
interface Serial1/0
 no ip address
 shutdown
 serial restart-delay 0
!
interface Serial1/1
 no ip address
 shutdown
 serial restart-delay 0
!
interface Serial1/2
 no ip address
 shutdown
 serial restart-delay 0
!
interface Serial1/3
 no ip address
 shutdown
 serial restart-delay 0
!
router bgp 1
 bgp log-neighbor-changes
 network 11.11.11.11 mask 255.255.255.255
 redistribute connected
 neighbor 10.1.3.3 remote-as 100
!
ip forward-protocol nd
!
!
no ip http server
no ip http secure-server
!
!
!
!
control-plane
!
!
line con 0
 exec-timeout 0 0
 privilege level 15
 logging synchronous
 stopbits 1
line aux 0
 exec-timeout 0 0
 privilege level 15
 logging synchronous
 stopbits 1
line vty 0 4
 login
!
!
end

 

 

 

 

2 Accepted Solutions

Accepted Solutions

Harold Ritter
Cisco Employee
Cisco Employee

Hi @feroz syed ,

 

R5 uses 100.5.31.5 as the ping source address, as it appears to be the only connected interface part of the vrf RED.

You need to configure "redistribute connected" on R5 for the ping to work from R5.




router bgp 100

address-family ipv4 vrf RED

redistribute connected


Regards,

Harold Ritter
Sr Technical Leader
CCIE 4168 (R&S, SP)
harold@cisco.com
México móvil: +52 1 55 8312 4915
Cisco México
Paseo de la Reforma 222
Piso 19
Cuauhtémoc, Juárez
Ciudad de México, 06600
México

View solution in original post

Hi @feroz syed ,

 

we can use any specific interface or loop-back to advertise the route under address-family ipv4 vrf ?

 

You can certainly do that. For instance you can configure a loopback interface on R5 and put it in the vrf. You can then use a network statement to advertise that specific subnet.

 

int lo999

vrf forwarding RED

IP address 10.99.99.99 255.255.255.255

!

router bgp 100

address-family ipv4 vrf RED

network 10.99.99.99 mask 255.255.255.255

!


Regards,

 

Harold Ritter
Sr Technical Leader
CCIE 4168 (R&S, SP)
harold@cisco.com
México móvil: +52 1 55 8312 4915
Cisco México
Paseo de la Reforma 222
Piso 19
Cuauhtémoc, Juárez
Ciudad de México, 06600
México

View solution in original post

3 Replies 3

Harold Ritter
Cisco Employee
Cisco Employee

Hi @feroz syed ,

 

R5 uses 100.5.31.5 as the ping source address, as it appears to be the only connected interface part of the vrf RED.

You need to configure "redistribute connected" on R5 for the ping to work from R5.




router bgp 100

address-family ipv4 vrf RED

redistribute connected


Regards,

Harold Ritter
Sr Technical Leader
CCIE 4168 (R&S, SP)
harold@cisco.com
México móvil: +52 1 55 8312 4915
Cisco México
Paseo de la Reforma 222
Piso 19
Cuauhtémoc, Juárez
Ciudad de México, 06600
México

feroz syed
Level 3
Level 3

instead of advertise all link,,, we can use any specific interface or loop-back to advertise the route under address-family ipv4 vrf ?

Hi @feroz syed ,

 

we can use any specific interface or loop-back to advertise the route under address-family ipv4 vrf ?

 

You can certainly do that. For instance you can configure a loopback interface on R5 and put it in the vrf. You can then use a network statement to advertise that specific subnet.

 

int lo999

vrf forwarding RED

IP address 10.99.99.99 255.255.255.255

!

router bgp 100

address-family ipv4 vrf RED

network 10.99.99.99 mask 255.255.255.255

!


Regards,

 

Harold Ritter
Sr Technical Leader
CCIE 4168 (R&S, SP)
harold@cisco.com
México móvil: +52 1 55 8312 4915
Cisco México
Paseo de la Reforma 222
Piso 19
Cuauhtémoc, Juárez
Ciudad de México, 06600
México
Review Cisco Networking for a $25 gift card