Cisco CSR1000v(IOS XE)でOTV検証 3/3

OTV(Overlay Transport Virtualization)Cisco,仮想化

はじめに

第二回目の検証では、『2サイトの冗長構成』によるOTV検証を実施しました。今回は1サイト増設し3サイトで検証します。

第三回目の検証(ラストの検証)

検証概要

使用する機器と構成は下記のとおりです。

用途ホスト名機種OS Version
エッジデバイスCSR1000v-01/02/03/04/05/06CSR1000v03.16.06.S
VyOS-01/02VyOS1.3-rolling-202006120643
クライアントN9Kv-V9-01/02/03Nexus 9000v9.2(3)

■要件は下記の通りとします。

  • サイト数はSiteAとSiteBとSiteCの3サイトとする。
  • CSR1000v-01/04とCSR1000v-02/05とCSR1000v-03/06にてOTVを構成する。
  • 各サイトではVlan100とVlan101のセグメントを用意する。
  • アンダーレイネットワークのVlan10~15とVlan16間はVyOS-01でOSPFルーティングをする。

なお、第一回目の記事でも説明しましたが、CSR1000vのインタフェースのMTUサイズはデフォルト値から変更してます。※参考:『Cisco Nexus 7000 シリーズ NX-OS OTV 設定ガイド』の「OTV の注意事項と制約事項」参照。

設定内容

OTVを構成するエッジデバイスのコンフィグ

OTVに関連する設定箇所と、アンダーレイネットワークのrouter ospfを記載します。
CSR1000v-01/04/02/05は第二回目の時と同じコンフィグです。今回、CSR1000v-03/06が追加されたことになります。

CSR1000v-01#show running-config
<省略>
!
hostname CSR1000v-01
!
<省略>
!
otv site bridge-domain 100
 otv isis hello-interval 3
!
otv site-identifier 0000.0000.0001
<省略>
!
interface Overlay1
 description Overlay Network
 no ip address
 otv join-interface GigabitEthernet2.11
 otv vpn-name Site-A
 otv adjacency-server unicast-only
 otv isis hello-interval 3
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
interface GigabitEthernet2
 mtu 9000
 no ip address
 no ip redirects
 negotiation auto
!
interface GigabitEthernet2.11
 description OTV Layer 3 to Distribution
 encapsulation dot1Q 11
 ip address 192.168.11.1 255.255.255.0
 no ip redirects
 no ip proxy-arp
 ip ospf network point-to-point
 ip ospf hello-interval 1
!
interface GigabitEthernet3
 mtu 9216
 no ip address
 negotiation auto
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
router ospf 1
 router-id 192.168.11.1
 timers throttle spf 5 1000 1000
 network 192.168.11.0 0.0.0.255 area 0
!
<省略>
CSR1000v-01#
CSR1000v-04#show running-config
<省略>
!
hostname CSR1000v-04
!
<省略>
!
otv site bridge-domain 100
 otv isis hello-interval 3
!
otv site-identifier 0000.0000.0001
<省略>
!
interface Overlay1
 description Overlay Network
 no ip address
 otv join-interface GigabitEthernet2.14
 otv vpn-name Site-A
 otv use-adjacency-server 192.168.11.1 192.168.12.1 unicast-only
 otv isis hello-interval 3
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
interface GigabitEthernet2
 mtu 9000
 no ip address
 no ip redirects
 negotiation auto
!
interface GigabitEthernet2.14
 description OTV Layer 3 to Distribution
 encapsulation dot1Q 14
 ip address 192.168.14.1 255.255.255.0
 no ip redirects
 no ip proxy-arp
 ip ospf network point-to-point
 ip ospf hello-interval 1
!
interface GigabitEthernet3
 mtu 9216
 no ip address
 negotiation auto
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
router ospf 1
 router-id 192.168.14.1
 timers throttle spf 5 1000 1000
 network 192.168.14.0 0.0.0.255 area 0
!
<省略>
CSR1000v-04#
CSR1000v-02#show running-config
<省略>
!
hostname CSR1000v-02
!
<省略>
!
otv site bridge-domain 100
 otv isis hello-interval 3
!
otv site-identifier 0000.0000.0002
<省略>
!
interface Overlay1
 description Overlay Network
 no ip address
 otv join-interface GigabitEthernet2.12
 otv vpn-name Site-B
 otv use-adjacency-server 192.168.11.1 unicast-only
 otv adjacency-server unicast-only
 otv isis hello-interval 3
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
interface GigabitEthernet2
 mtu 9000
 no ip address
 no ip redirects
 negotiation auto
!
interface GigabitEthernet2.12
 description OTV Layer 3 to Distribution
 encapsulation dot1Q 12
 ip address 192.168.12.1 255.255.255.0
 no ip redirects
 no ip proxy-arp
 ip ospf network point-to-point
 ip ospf hello-interval 1
!
interface GigabitEthernet3
 mtu 9216
 no ip address
 negotiation auto
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
router ospf 1
 router-id 192.168.12.1
 timers throttle spf 5 1000 1000
 network 192.168.12.0 0.0.0.255 area 0
!
<省略>
CSR1000v-02#
CSR1000v-05#show running-config
<省略>
!
hostname CSR1000v-05
!
<省略>
!
otv site bridge-domain 100
 otv isis hello-interval 3
!
otv site-identifier 0000.0000.0002
<省略>
!
interface Overlay1
 description Overlay Network
 no ip address
 otv join-interface GigabitEthernet2.15
 otv vpn-name Site-B
 otv use-adjacency-server 192.168.11.1 192.168.12.1 unicast-only
 otv isis hello-interval 3
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
interface GigabitEthernet2
 mtu 9000
 no ip address
 no ip redirects
 negotiation auto
!
interface GigabitEthernet2.15
 description OTV Layer 3 to Distribution
 encapsulation dot1Q 15
 ip address 192.168.15.1 255.255.255.0
 no ip redirects
 no ip proxy-arp
 ip ospf network point-to-point
 ip ospf hello-interval 1
!
interface GigabitEthernet3
 mtu 9216
 no ip address
 negotiation auto
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
router ospf 1
 router-id 192.168.15.1
 timers throttle spf 5 1000 1000
 network 192.168.15.0 0.0.0.255 area 0
!
<省略>
CSR1000v-05#
CSR1000v-03#show running-config
<省略>
!
hostname CSR1000v-03
!
<省略>
!
otv site bridge-domain 100
 otv isis hello-interval 3
!
otv site-identifier 0000.0000.0003
<省略>
!
interface Overlay1
 description Overlay Network
 no ip address
 otv join-interface GigabitEthernet2.13
 otv vpn-name Site-C
 otv use-adjacency-server 192.168.11.1 unicast-only
 otv isis hello-interval 3
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
interface GigabitEthernet2
 mtu 9000
 no ip address
 no ip redirects
 negotiation auto
!
interface GigabitEthernet2.13
 description OTV Layer 3 to Distribution
 encapsulation dot1Q 13
 ip address 192.168.13.1 255.255.255.0
 no ip redirects
 no ip proxy-arp
 ip ospf network point-to-point
 ip ospf hello-interval 1
!
interface GigabitEthernet3
 mtu 9216
 no ip address
 negotiation auto
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
router ospf 1
 router-id 192.168.13.1
 timers throttle spf 5 1000 1000
 network 192.168.13.0 0.0.0.255 area 0
!
<省略>
CSR1000v-03#
CSR1000v-06#show running-config
<省略>
!
hostname CSR1000v-06
!
<省略>
!
otv site bridge-domain 100
 otv isis hello-interval 3
!
otv site-identifier 0000.0000.0003
<省略>
!
interface Overlay1
 description Overlay Network
 no ip address
 otv join-interface GigabitEthernet2.16
 otv vpn-name Site-C
 otv use-adjacency-server 192.168.11.1 192.168.12.1 unicast-only
 otv isis hello-interval 3
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
interface GigabitEthernet2
 mtu 9000
 no ip address
 no ip redirects
 negotiation auto
!
interface GigabitEthernet2.16
 description OTV Layer 3 to Distribution
 encapsulation dot1Q 16
 ip address 192.168.16.1 255.255.255.0
 no ip redirects
 no ip proxy-arp
 ip ospf network point-to-point
 ip ospf hello-interval 1
!
interface GigabitEthernet3
 mtu 9216
 no ip address
 negotiation auto
 service instance 100 ethernet
  encapsulation dot1q 100
  bridge-domain 100
 !
 service instance 101 ethernet
  encapsulation dot1q 101
  bridge-domain 101
 !
!
<省略>
!
router ospf 1
 router-id 192.168.16.1
 timers throttle spf 5 1000 1000
 network 192.168.16.0 0.0.0.255 area 0
!
<省略>
CSR1000v-06#

アンダーレイのVyOSのコンフィグ

次にVyOSです。第二回目の検証から、vif13とvif16の作成、及びOSPFネットワークにSiteC向けのセグメントを追加しました。

vyos@VyOS-01# show
 interfaces {
<省略>
     ethernet eth1 {
         hw-id 00:0c:29:9c:fb:3f
         vif 99 {
             address 192.168.99.1/24
             ip {
                 ospf {
                     dead-interval 40
                     hello-interval 10
                     network point-to-point
                     priority 1
                     retransmit-interval 5
                     transmit-delay 1
                 }
             }
         }
     }
     ethernet eth2 {
         hw-id 00:0c:29:9c:fb:49
         mtu 9000
         vif 11 {
             address 192.168.11.254/24
             ip {
                 ospf {
                     dead-interval 4
                     hello-interval 1
                     network point-to-point
                     priority 1
                     retransmit-interval 5
                     transmit-delay 1
                 }
             }
             mtu 9000
         }
         vif 12 {
             address 192.168.12.254/24
             ip {
                 ospf {
                     dead-interval 4
                     hello-interval 1
                     network point-to-point
                     priority 1
                     retransmit-interval 5
                     transmit-delay 1
                 }
             }
             mtu 9000
         }
         vif 13 {
             address 192.168.13.254/24
             ip {
                 ospf {
                     dead-interval 4
                     hello-interval 1
                     network point-to-point
                     priority 1
                     retransmit-interval 5
                     transmit-delay 1
                 }
             }
             mtu 9000
         }
     }
<省略>
 }
 protocols {
     ospf {
         area 0 {
             network 192.168.11.0/24
             network 192.168.12.0/24
             network 192.168.13.0/24
             network 192.168.99.0/24
         }
     }
<省略>
vyos@VyOS-01#
vyos@VyOS-02# show
 interfaces {
<省略>
     ethernet eth1 {
         hw-id 00:0c:29:96:75:4d
         vif 99 {
             address 192.168.99.2/24
             ip {
                 ospf {
                     dead-interval 40
                     hello-interval 10
                     network point-to-point
                     priority 1
                     retransmit-interval 5
                     transmit-delay 1
                 }
             }
         }
     }
     ethernet eth2 {
         hw-id 00:0c:29:96:75:57
         mtu 9000
         vif 14 {
             address 192.168.14.254/24
             ip {
                 ospf {
                     dead-interval 4
                     hello-interval 1
                     network point-to-point
                     priority 1
                     retransmit-interval 5
                     transmit-delay 1
                 }
             }
             mtu 9000
         }
         vif 15 {
             address 192.168.15.254/24
             ip {
                 ospf {
                     dead-interval 4
                     hello-interval 1
                     network point-to-point
                     priority 1
                     retransmit-interval 5
                     transmit-delay 1
                 }
             }
             mtu 9000
         }
         vif 16 {
             address 192.168.16.254/24
             ip {
                 ospf {
                     dead-interval 4
                     hello-interval 1
                     network point-to-point
                     priority 1
                     retransmit-interval 5
                     transmit-delay 1
                 }
             }
             mtu 9000
         }
     }
<省略>
 }
 protocols {
     ospf {
         area 0 {
             network 192.168.14.0/24
             network 192.168.15.0/24
             network 192.168.16.0/24
             network 192.168.99.0/24
         }
     }
<省略>
vyos@VyOS-02#

クライアントのN9Kvのコンフィグ

次にクライアントとして機能するN9Kvのコンフィグです。N9Kv-V9-01/02は第二回目から変更なしです。N9Kv-V9-03を追加しました。

N9Kv-V9-01# show running-config
<省略>
vlan 1,100-101
<省略>
interface Vlan1

interface Vlan100
  no shutdown
  no ip redirects
  ip address 192.168.100.1/24

interface Vlan101
  no shutdown
  no ip redirects
  ip address 192.168.101.1/24

interface Ethernet1/1
  switchport mode trunk
  switchport trunk allowed vlan 100-101
<省略>
N9Kv-V9-01#
N9Kv-V9-02# show running-config
<省略>
vlan 1,100-101
<省略>
interface Vlan1

interface Vlan100
  no shutdown
  no ip redirects
  ip address 192.168.100.2/24

interface Vlan101
  no shutdown
  no ip redirects
  ip address 192.168.101.2/24

interface Ethernet1/1
  switchport mode trunk
  switchport trunk allowed vlan 100-101
<省略>
N9Kv-V9-02#
N9Kv-V9-03# show running-config
<省略>
vlan 1,100-101
<省略>
interface Vlan1

interface Vlan100
  no shutdown
  no ip redirects
  ip address 192.168.100.3/24

interface Vlan101
  no shutdown
  no ip redirects
  ip address 192.168.101.3/24

interface Ethernet1/1
  switchport mode trunk
  switchport trunk allowed vlan 100-101
<省略>
N9Kv-V9-02#

設定は以上です。

ステータス確認

アンダーレイネットワークのルーティング情報

まずはアンダーレイネットワークが正常に組めていることを確認します。各ルータは、全エッジデバイスへのルート情報を持っていることを確認します。

CSR1000v-01#show ip route
<省略>
      192.168.11.0/24 is variably subnetted, 2 subnets, 2 masks
C        192.168.11.0/24 is directly connected, GigabitEthernet2.11
L        192.168.11.1/32 is directly connected, GigabitEthernet2.11
O     192.168.12.0/24
           [110/11] via 192.168.11.254, 00:17:35, GigabitEthernet2.11
O     192.168.13.0/24
           [110/11] via 192.168.11.254, 00:17:35, GigabitEthernet2.11
O     192.168.14.0/24
           [110/21] via 192.168.11.254, 00:17:10, GigabitEthernet2.11
O     192.168.15.0/24
           [110/21] via 192.168.11.254, 00:17:10, GigabitEthernet2.11
O     192.168.16.0/24
           [110/21] via 192.168.11.254, 00:17:10, GigabitEthernet2.11
O     192.168.99.0/24
           [110/11] via 192.168.11.254, 00:17:35, GigabitEthernet2.11
CSR1000v-01#
CSR1000v-04#show ip route
<省略>
O     192.168.11.0/24
           [110/21] via 192.168.14.254, 00:17:10, GigabitEthernet2.14
O     192.168.12.0/24
           [110/21] via 192.168.14.254, 00:17:10, GigabitEthernet2.14
O     192.168.13.0/24
           [110/21] via 192.168.14.254, 00:17:10, GigabitEthernet2.14
      192.168.14.0/24 is variably subnetted, 2 subnets, 2 masks
C        192.168.14.0/24 is directly connected, GigabitEthernet2.14
L        192.168.14.1/32 is directly connected, GigabitEthernet2.14
O     192.168.15.0/24
           [110/11] via 192.168.14.254, 00:17:21, GigabitEthernet2.14
O     192.168.16.0/24
           [110/11] via 192.168.14.254, 00:17:21, GigabitEthernet2.14
O     192.168.99.0/24
           [110/11] via 192.168.14.254, 00:17:21, GigabitEthernet2.14
CSR1000v-04#
CSR1000v-02#show ip route
<省略>
O     192.168.11.0/24
           [110/11] via 192.168.12.254, 00:17:36, GigabitEthernet2.12
      192.168.12.0/24 is variably subnetted, 2 subnets, 2 masks
C        192.168.12.0/24 is directly connected, GigabitEthernet2.12
L        192.168.12.1/32 is directly connected, GigabitEthernet2.12
O     192.168.13.0/24
           [110/11] via 192.168.12.254, 00:17:36, GigabitEthernet2.12
O     192.168.14.0/24
           [110/21] via 192.168.12.254, 00:17:11, GigabitEthernet2.12
O     192.168.15.0/24
           [110/21] via 192.168.12.254, 00:17:11, GigabitEthernet2.12
O     192.168.16.0/24
           [110/21] via 192.168.12.254, 00:17:11, GigabitEthernet2.12
O     192.168.99.0/24
           [110/11] via 192.168.12.254, 00:17:36, GigabitEthernet2.12
CSR1000v-02#
CSR1000v-05#show ip route
<省略>
O     192.168.11.0/24
           [110/21] via 192.168.15.254, 00:17:10, GigabitEthernet2.15
O     192.168.12.0/24
           [110/21] via 192.168.15.254, 00:17:10, GigabitEthernet2.15
O     192.168.13.0/24
           [110/21] via 192.168.15.254, 00:17:10, GigabitEthernet2.15
O     192.168.14.0/24
           [110/11] via 192.168.15.254, 00:17:21, GigabitEthernet2.15
      192.168.15.0/24 is variably subnetted, 2 subnets, 2 masks
C        192.168.15.0/24 is directly connected, GigabitEthernet2.15
L        192.168.15.1/32 is directly connected, GigabitEthernet2.15
O     192.168.16.0/24
           [110/11] via 192.168.15.254, 00:17:21, GigabitEthernet2.15
O     192.168.99.0/24
           [110/11] via 192.168.15.254, 00:17:21, GigabitEthernet2.15
CSR1000v-05#
CSR1000v-03#show ip route
<省略>
O     192.168.11.0/24
           [110/11] via 192.168.13.254, 00:17:26, GigabitEthernet2.13
O     192.168.12.0/24
           [110/11] via 192.168.13.254, 00:17:26, GigabitEthernet2.13
      192.168.13.0/24 is variably subnetted, 2 subnets, 2 masks
C        192.168.13.0/24 is directly connected, GigabitEthernet2.13
L        192.168.13.1/32 is directly connected, GigabitEthernet2.13
O     192.168.14.0/24
           [110/21] via 192.168.13.254, 00:17:11, GigabitEthernet2.13
O     192.168.15.0/24
           [110/21] via 192.168.13.254, 00:17:11, GigabitEthernet2.13
O     192.168.16.0/24
           [110/21] via 192.168.13.254, 00:17:11, GigabitEthernet2.13
O     192.168.99.0/24
           [110/11] via 192.168.13.254, 00:17:26, GigabitEthernet2.13
CSR1000v-03#
CSR1000v-06#show ip route
<省略>
O     192.168.11.0/24
           [110/21] via 192.168.16.254, 00:17:14, GigabitEthernet2.16
O     192.168.12.0/24
           [110/21] via 192.168.16.254, 00:17:14, GigabitEthernet2.16
O     192.168.13.0/24
           [110/21] via 192.168.16.254, 00:17:14, GigabitEthernet2.16
O     192.168.14.0/24
           [110/11] via 192.168.16.254, 00:17:15, GigabitEthernet2.16
O     192.168.15.0/24
           [110/11] via 192.168.16.254, 00:17:15, GigabitEthernet2.16
      192.168.16.0/24 is variably subnetted, 2 subnets, 2 masks
C        192.168.16.0/24 is directly connected, GigabitEthernet2.16
L        192.168.16.1/32 is directly connected, GigabitEthernet2.16
O     192.168.99.0/24
           [110/11] via 192.168.16.254, 00:17:15, GigabitEthernet2.16
CSR1000v-06#
vyos@VyOS-01:~$ show ip route
<省略>
O   192.168.11.0/24 [110/10] is directly connected, eth2.11, 00:18:40
C>* 192.168.11.0/24 is directly connected, eth2.11, 00:18:45
O   192.168.12.0/24 [110/10] is directly connected, eth2.12, 00:18:40
C>* 192.168.12.0/24 is directly connected, eth2.12, 00:18:45
O   192.168.13.0/24 [110/10] is directly connected, eth2.13, 00:18:40
C>* 192.168.13.0/24 is directly connected, eth2.13, 00:18:45
O>* 192.168.14.0/24 [110/20] via 192.168.99.2, eth1.99, 00:18:10
O>* 192.168.15.0/24 [110/20] via 192.168.99.2, eth1.99, 00:18:10
O>* 192.168.16.0/24 [110/20] via 192.168.99.2, eth1.99, 00:18:10
O   192.168.99.0/24 [110/10] is directly connected, eth1.99, 00:18:40
C>* 192.168.99.0/24 is directly connected, eth1.99, 00:18:45
vyos@VyOS-01:~$
vyos@VyOS-02:~$ show ip route
<省略>
O>* 192.168.11.0/24 [110/20] via 192.168.99.1, eth1.99, 00:18:07
O>* 192.168.12.0/24 [110/20] via 192.168.99.1, eth1.99, 00:18:07
O>* 192.168.13.0/24 [110/20] via 192.168.99.1, eth1.99, 00:18:07
O   192.168.14.0/24 [110/10] is directly connected, eth2.14, 00:18:23
C>* 192.168.14.0/24 is directly connected, eth2.14, 00:18:27
O   192.168.15.0/24 [110/10] is directly connected, eth2.15, 00:18:23
C>* 192.168.15.0/24 is directly connected, eth2.15, 00:18:27
O   192.168.16.0/24 [110/10] is directly connected, eth2.16, 00:18:23
C>* 192.168.16.0/24 is directly connected, eth2.16, 00:18:27
O   192.168.99.0/24 [110/10] is directly connected, eth1.99, 00:18:22
C>* 192.168.99.0/24 is directly connected, eth1.99, 00:18:28
vyos@VyOS-02:~$

OTVのステータス確認

次にオーバーレイネットワークが正常に組めていることを確認します。特に、「show otv adjacency」で他サイトのエッジデバイスとの接続を確認します。

CSR1000v-01#show otv
Overlay Interface Overlay1
 VPN name                 : Site-A
 VPN ID                   : 1
 State                    : UP
 Fwd-capable              : Yes
 Fwd-ready                : Yes
 AED-Server               : Yes
 Backup AED-Server        : No
 AED Capable              : Yes
 Join interface(s)        : GigabitEthernet2.11
 Join IPv4 address        : 192.168.11.1
 Tunnel interface(s)      : Tunnel0
 Encapsulation format     : GRE/IPv4
 Site Bridge-Domain       : 100
 Capability               : Unicast-only
 Is Adjacency Server      : Yes
 Adj Server Configured    : No
 Prim/Sec Adj Svr(s)      : None

CSR1000v-01#
CSR1000v-01#
CSR1000v-01#
CSR1000v-01#show otv site
Site Adjacency Information (Site Bridge-Domain: 100)

Overlay1 Site-Local Adjacencies (Count: 2)

  Hostname       System ID      Last Change Ordinal    AED Enabled Status
* CSR1000v-01    001E.E62F.5D00 00:24:52    0          site       overlay
  CSR1000v-04    001E.E6AD.8500 00:23:26    1          site       overlay


CSR1000v-01#
CSR1000v-01#
CSR1000v-01#
CSR1000v-01#show otv adjacency
Overlay Adjacency Database for overlay 1
Hostname                       System-ID      Dest Addr       Site-ID        Up Time   State
CSR1000v-06                    001e.f659.2600 192.168.16.1    0000.0000.0003 00:24:31  UP
CSR1000v-04                    001e.e6ad.8500 192.168.14.1    0000.0000.0001 00:24:30  UP
CSR1000v-05                    001e.e529.5f00 192.168.15.1    0000.0000.0002 00:24:31  UP
CSR1000v-02                    001e.bd50.2a00 192.168.12.1    0000.0000.0002 00:24:57  UP
CSR1000v-03                    001e.142d.cb00 192.168.13.1    0000.0000.0003 00:24:47  UP

CSR1000v-01#
CSR1000v-01#
CSR1000v-01#
CSR1000v-01#show otv vlan
Key:  SI - Service Instance, NA - Non AED, NFC - Not Forward Capable.

Overlay 1 VLAN Configuration Information
 Inst VLAN BD   Auth ED              State                Site If(s)       
 0    100  100  *CSR1000v-01         active              Gi3:SI100
 0    101  101   CSR1000v-04         inactive(NA)        Gi3:SI101
 Total VLAN(s): 2

CSR1000v-01#
CSR1000v-01#
CSR1000v-01#
CSR1000v-01#show otv route

Codes: BD - Bridge-Domain, AD - Admin-Distance,
       SI - Service Instance, * - Backup Route

OTV Unicast MAC Routing Table for Overlay1

 Inst VLAN BD     MAC Address    AD    Owner  Next Hops(s)
----------------------------------------------------------
 0    100  100    000c.2916.2320 50    ISIS   CSR1000v-02
 0    100  100    000c.2973.565c 50    ISIS   CSR1000v-03
 0    100  100    000c.29d4.1d6d 40    BD Eng Gi3:SI100
 0    100  100    001e.e529.5fbc 50    ISIS   CSR1000v-02
 0    100  100    001e.e6ad.85bc 40    BD Eng Gi3:SI100
 0    100  100    001e.f659.26bc 50    ISIS   CSR1000v-03
 0    101  101    000c.2916.2320 50    ISIS   CSR1000v-05
 0    101  101    000c.2973.565c 50    ISIS   CSR1000v-06
 0    101  101    001e.142d.cbbc 50    ISIS   CSR1000v-06
 0    101  101    001e.bd50.2abc 50    ISIS   CSR1000v-05

10 unicast routes displayed in Overlay1

----------------------------------------------------------
10 Total Unicast Routes Displayed

CSR1000v-01#
CSR1000v-04#show otv
Overlay Interface Overlay1
 VPN name                 : Site-A
 VPN ID                   : 1
 State                    : UP
 Fwd-capable              : Yes
 Fwd-ready                : Yes
 AED-Server               : No
 Backup AED-Server        : Yes
 AED Capable              : Yes
 Join interface(s)        : GigabitEthernet2.14
 Join IPv4 address        : 192.168.14.1
 Tunnel interface(s)      : Tunnel0
 Encapsulation format     : GRE/IPv4
 Site Bridge-Domain       : 100
 Capability               : Unicast-only
 Is Adjacency Server      : No
 Adj Server Configured    : Yes
 Prim/Sec Adj Svr(s)      : 192.168.11.1/192.168.12.1

CSR1000v-04#
CSR1000v-04#
CSR1000v-04#
CSR1000v-04#show otv site
Site Adjacency Information (Site Bridge-Domain: 100)

Overlay1 Site-Local Adjacencies (Count: 2)

  Hostname       System ID      Last Change Ordinal    AED Enabled Status
  CSR1000v-01    001E.E62F.5D00 00:23:41    0          site       overlay
* CSR1000v-04    001E.E6AD.8500 00:24:26    1          site       overlay


CSR1000v-04#
CSR1000v-04#
CSR1000v-04#
CSR1000v-04#show otv adjacency
Overlay Adjacency Database for overlay 1
Hostname                       System-ID      Dest Addr       Site-ID        Up Time   State
CSR1000v-06                    001e.f659.2600 192.168.16.1    0000.0000.0003 00:24:30  UP
CSR1000v-01                    001e.e62f.5d00 192.168.11.1    0000.0000.0001 00:24:30  UP
CSR1000v-05                    001e.e529.5f00 192.168.15.1    0000.0000.0002 00:24:29  UP
CSR1000v-02                    001e.bd50.2a00 192.168.12.1    0000.0000.0002 00:24:31  UP
CSR1000v-03                    001e.142d.cb00 192.168.13.1    0000.0000.0003 00:24:30  UP

CSR1000v-04#
CSR1000v-04#
CSR1000v-04#
CSR1000v-04#show otv vlan
Key:  SI - Service Instance, NA - Non AED, NFC - Not Forward Capable.

Overlay 1 VLAN Configuration Information
 Inst VLAN BD   Auth ED              State                Site If(s)
 0    100  100   CSR1000v-01         inactive(NA)        Gi3:SI100
 0    101  101  *CSR1000v-04         active              Gi3:SI101
 Total VLAN(s): 2

CSR1000v-04#
CSR1000v-04#
CSR1000v-04#
CSR1000v-04#show otv route

Codes: BD - Bridge-Domain, AD - Admin-Distance,
       SI - Service Instance, * - Backup Route

OTV Unicast MAC Routing Table for Overlay1

 Inst VLAN BD     MAC Address    AD    Owner  Next Hops(s)
----------------------------------------------------------
 0    100  100    000c.2916.2320 50    ISIS   CSR1000v-02
 0    100  100    000c.2973.565c 50    ISIS   CSR1000v-03
 0    100  100    001e.e529.5fbc 50    ISIS   CSR1000v-02
 0    100  100    001e.f659.26bc 50    ISIS   CSR1000v-03
 0    101  101    000c.2916.2320 50    ISIS   CSR1000v-05
 0    101  101    000c.2973.565c 50    ISIS   CSR1000v-06
 0    101  101    000c.29d4.1d6d 40    BD Eng Gi3:SI101
 0    101  101    001e.142d.cbbc 50    ISIS   CSR1000v-06
 0    101  101    001e.bd50.2abc 50    ISIS   CSR1000v-05
 0    101  101    001e.e62f.5dbc 40    BD Eng Gi3:SI101

10 unicast routes displayed in Overlay1

----------------------------------------------------------
10 Total Unicast Routes Displayed

CSR1000v-04#
CSR1000v-02#show otv
Overlay Interface Overlay1
 VPN name                 : Site-B
 VPN ID                   : 1
 State                    : UP
 Fwd-capable              : Yes
 Fwd-ready                : Yes
 AED-Server               : Yes
 Backup AED-Server        : No
 AED Capable              : Yes
 Join interface(s)        : GigabitEthernet2.12
 Join IPv4 address        : 192.168.12.1
 Tunnel interface(s)      : Tunnel0
 Encapsulation format     : GRE/IPv4
 Site Bridge-Domain       : 100
 Capability               : Unicast-only
 Is Adjacency Server      : Yes
 Adj Server Configured    : Yes
 Prim/Sec Adj Svr(s)      : 192.168.11.1

CSR1000v-02#
CSR1000v-02#
CSR1000v-02#
CSR1000v-02#show otv site
Site Adjacency Information (Site Bridge-Domain: 100)

Overlay1 Site-Local Adjacencies (Count: 2)

  Hostname       System ID      Last Change Ordinal    AED Enabled Status
* CSR1000v-02    001E.BD50.2A00 00:24:52    0          site       overlay
  CSR1000v-05    001E.E529.5F00 00:23:26    1          site       overlay


CSR1000v-02#
CSR1000v-02#
CSR1000v-02#
CSR1000v-02#show otv adjacency
Overlay Adjacency Database for overlay 1
Hostname                       System-ID      Dest Addr       Site-ID        Up Time   State
CSR1000v-06                    001e.f659.2600 192.168.16.1    0000.0000.0003 00:24:31  UP
CSR1000v-04                    001e.e6ad.8500 192.168.14.1    0000.0000.0001 00:24:31  UP
CSR1000v-01                    001e.e62f.5d00 192.168.11.1    0000.0000.0001 00:24:57  UP
CSR1000v-05                    001e.e529.5f00 192.168.15.1    0000.0000.0002 00:24:31  UP
CSR1000v-03                    001e.142d.cb00 192.168.13.1    0000.0000.0003 00:24:47  UP

CSR1000v-02#
CSR1000v-02#
CSR1000v-02#
CSR1000v-02#show otv vlan
Key:  SI - Service Instance, NA - Non AED, NFC - Not Forward Capable.

Overlay 1 VLAN Configuration Information
 Inst VLAN BD   Auth ED              State                Site If(s)        
 0    100  100  *CSR1000v-02         active              Gi3:SI100
 0    101  101   CSR1000v-05         inactive(NA)        Gi3:SI101
 Total VLAN(s): 2

CSR1000v-02#
CSR1000v-02#
CSR1000v-02#
CSR1000v-02#show otv route

Codes: BD - Bridge-Domain, AD - Admin-Distance,
       SI - Service Instance, * - Backup Route

OTV Unicast MAC Routing Table for Overlay1

 Inst VLAN BD     MAC Address    AD    Owner  Next Hops(s)
----------------------------------------------------------
 0    100  100    000c.2916.2320 40    BD Eng Gi3:SI100
 0    100  100    000c.2973.565c 50    ISIS   CSR1000v-03
 0    100  100    000c.29d4.1d6d 50    ISIS   CSR1000v-01
 0    100  100    001e.e529.5fbc 40    BD Eng Gi3:SI100
 0    100  100    001e.e6ad.85bc 50    ISIS   CSR1000v-01
 0    100  100    001e.f659.26bc 50    ISIS   CSR1000v-03
 0    101  101    000c.2973.565c 50    ISIS   CSR1000v-06
 0    101  101    000c.29d4.1d6d 50    ISIS   CSR1000v-04
 0    101  101    001e.142d.cbbc 50    ISIS   CSR1000v-06
 0    101  101    001e.e62f.5dbc 50    ISIS   CSR1000v-04

10 unicast routes displayed in Overlay1

----------------------------------------------------------
10 Total Unicast Routes Displayed

CSR1000v-02#
CSR1000v-05#show otv
Overlay Interface Overlay1
 VPN name                 : Site-B
 VPN ID                   : 1
 State                    : UP
 Fwd-capable              : Yes
 Fwd-ready                : Yes
 AED-Server               : No
 Backup AED-Server        : Yes
 AED Capable              : Yes
 Join interface(s)        : GigabitEthernet2.15
 Join IPv4 address        : 192.168.15.1
 Tunnel interface(s)      : Tunnel0
 Encapsulation format     : GRE/IPv4
 Site Bridge-Domain       : 100
 Capability               : Unicast-only
 Is Adjacency Server      : No
 Adj Server Configured    : Yes
 Prim/Sec Adj Svr(s)      : 192.168.11.1/192.168.12.1

CSR1000v-05#
CSR1000v-05#
CSR1000v-05#
CSR1000v-05#show otv site
Site Adjacency Information (Site Bridge-Domain: 100)

Overlay1 Site-Local Adjacencies (Count: 2)

  Hostname       System ID      Last Change Ordinal    AED Enabled Status
  CSR1000v-02    001E.BD50.2A00 00:23:39    0          site       overlay
* CSR1000v-05    001E.E529.5F00 00:24:26    1          site       overlay


CSR1000v-05#
CSR1000v-05#
CSR1000v-05#
CSR1000v-05#show otv adjacency
Overlay Adjacency Database for overlay 1
Hostname                       System-ID      Dest Addr       Site-ID        Up Time   State
CSR1000v-06                    001e.f659.2600 192.168.16.1    0000.0000.0003 00:24:30  UP
CSR1000v-04                    001e.e6ad.8500 192.168.14.1    0000.0000.0001 00:24:29  UP
CSR1000v-01                    001e.e62f.5d00 192.168.11.1    0000.0000.0001 00:24:31  UP
CSR1000v-02                    001e.bd50.2a00 192.168.12.1    0000.0000.0002 00:24:30  UP
CSR1000v-03                    001e.142d.cb00 192.168.13.1    0000.0000.0003 00:24:31  UP

CSR1000v-05#
CSR1000v-05#
CSR1000v-05#
CSR1000v-05#show otv vlan
Key:  SI - Service Instance, NA - Non AED, NFC - Not Forward Capable.

Overlay 1 VLAN Configuration Information
 Inst VLAN BD   Auth ED              State                Site If(s)
 0    100  100   CSR1000v-02         inactive(NA)        Gi3:SI100
 0    101  101  *CSR1000v-05         active              Gi3:SI101
 Total VLAN(s): 2

CSR1000v-05#
CSR1000v-05#
CSR1000v-05#
CSR1000v-05#show otv route

Codes: BD - Bridge-Domain, AD - Admin-Distance,
       SI - Service Instance, * - Backup Route

OTV Unicast MAC Routing Table for Overlay1

 Inst VLAN BD     MAC Address    AD    Owner  Next Hops(s)
----------------------------------------------------------
 0    100  100    000c.2973.565c 50    ISIS   CSR1000v-03
 0    100  100    000c.29d4.1d6d 50    ISIS   CSR1000v-01
 0    100  100    001e.e6ad.85bc 50    ISIS   CSR1000v-01
 0    100  100    001e.f659.26bc 50    ISIS   CSR1000v-03
 0    101  101    000c.2916.2320 40    BD Eng Gi3:SI101
 0    101  101    000c.2973.565c 50    ISIS   CSR1000v-06
 0    101  101    000c.29d4.1d6d 50    ISIS   CSR1000v-04
 0    101  101    001e.142d.cbbc 50    ISIS   CSR1000v-06
 0    101  101    001e.bd50.2abc 40    BD Eng Gi3:SI101
 0    101  101    001e.e62f.5dbc 50    ISIS   CSR1000v-04

10 unicast routes displayed in Overlay1

----------------------------------------------------------
10 Total Unicast Routes Displayed

CSR1000v-05#
CSR1000v-03#show otv
Overlay Interface Overlay1
 VPN name                 : Site-C
 VPN ID                   : 1
 State                    : UP
 Fwd-capable              : Yes
 Fwd-ready                : Yes
 AED-Server               : Yes
 Backup AED-Server        : No
 AED Capable              : Yes
 Join interface(s)        : GigabitEthernet2.13
 Join IPv4 address        : 192.168.13.1
 Tunnel interface(s)      : Tunnel0
 Encapsulation format     : GRE/IPv4
 Site Bridge-Domain       : 100
 Capability               : Unicast-only
 Is Adjacency Server      : No
 Adj Server Configured    : Yes
 Prim/Sec Adj Svr(s)      : 192.168.11.1

CSR1000v-03#
CSR1000v-03#
CSR1000v-03#
CSR1000v-03#show otv site
Site Adjacency Information (Site Bridge-Domain: 100)

Overlay1 Site-Local Adjacencies (Count: 2)

  Hostname       System ID      Last Change Ordinal    AED Enabled Status
* CSR1000v-03    001E.142D.CB00 00:24:42    0          site       overlay
  CSR1000v-06    001E.F659.2600 00:22:56    1          site       overlay


CSR1000v-03#
CSR1000v-03#
CSR1000v-03#
CSR1000v-03#show otv adjacency
Overlay Adjacency Database for overlay 1
Hostname                       System-ID      Dest Addr       Site-ID        Up Time   State
CSR1000v-06                    001e.f659.2600 192.168.16.1    0000.0000.0003 00:24:31  UP
CSR1000v-04                    001e.e6ad.8500 192.168.14.1    0000.0000.0001 00:24:30  UP
CSR1000v-01                    001e.e62f.5d00 192.168.11.1    0000.0000.0001 00:24:47  UP
CSR1000v-05                    001e.e529.5f00 192.168.15.1    0000.0000.0002 00:24:31  UP
CSR1000v-02                    001e.bd50.2a00 192.168.12.1    0000.0000.0002 00:24:47  UP

CSR1000v-03#
CSR1000v-03#
CSR1000v-03#
CSR1000v-03#show otv vlan
Key:  SI - Service Instance, NA - Non AED, NFC - Not Forward Capable.

Overlay 1 VLAN Configuration Information
 Inst VLAN BD   Auth ED              State                Site If(s)
 0    100  100  *CSR1000v-03         active              Gi3:SI100
 0    101  101   CSR1000v-06         inactive(NA)        Gi3:SI101
 Total VLAN(s): 2

CSR1000v-03#
CSR1000v-03#
CSR1000v-03#
CSR1000v-03#show otv route

Codes: BD - Bridge-Domain, AD - Admin-Distance,
       SI - Service Instance, * - Backup Route

OTV Unicast MAC Routing Table for Overlay1

 Inst VLAN BD     MAC Address    AD    Owner  Next Hops(s)
----------------------------------------------------------
 0    100  100    000c.2916.2320 50    ISIS   CSR1000v-02
 0    100  100    000c.2973.565c 40    BD Eng Gi3:SI100
 0    100  100    000c.29d4.1d6d 50    ISIS   CSR1000v-01
 0    100  100    001e.e529.5fbc 50    ISIS   CSR1000v-02
 0    100  100    001e.e6ad.85bc 50    ISIS   CSR1000v-01
 0    100  100    001e.f659.26bc 40    BD Eng Gi3:SI100
 0    101  101    000c.2916.2320 50    ISIS   CSR1000v-05
 0    101  101    000c.29d4.1d6d 50    ISIS   CSR1000v-04
 0    101  101    001e.bd50.2abc 50    ISIS   CSR1000v-05
 0    101  101    001e.e62f.5dbc 50    ISIS   CSR1000v-04

10 unicast routes displayed in Overlay1

----------------------------------------------------------
10 Total Unicast Routes Displayed

CSR1000v-03#
CSR1000v-06#show otv
Overlay Interface Overlay1
 VPN name                 : Site-C
 VPN ID                   : 1
 State                    : UP
 Fwd-capable              : Yes
 Fwd-ready                : Yes
 AED-Server               : No
 Backup AED-Server        : Yes
 AED Capable              : Yes
 Join interface(s)        : GigabitEthernet2.16
 Join IPv4 address        : 192.168.16.1
 Tunnel interface(s)      : Tunnel0
 Encapsulation format     : GRE/IPv4
 Site Bridge-Domain       : 100
 Capability               : Unicast-only
 Is Adjacency Server      : No
 Adj Server Configured    : Yes
 Prim/Sec Adj Svr(s)      : 192.168.11.1/192.168.12.1

CSR1000v-06#
CSR1000v-06#
CSR1000v-06#
CSR1000v-06#show otv site
Site Adjacency Information (Site Bridge-Domain: 100)

Overlay1 Site-Local Adjacencies (Count: 2)

  Hostname       System ID      Last Change Ordinal    AED Enabled Status
  CSR1000v-03    001E.142D.CB00 00:23:42    0          site       overlay
* CSR1000v-06    001E.F659.2600 00:23:56    1          site       overlay


CSR1000v-06#
CSR1000v-06#
CSR1000v-06#
CSR1000v-06#show otv adjacency
Overlay Adjacency Database for overlay 1
Hostname                       System-ID      Dest Addr       Site-ID        Up Time   State
CSR1000v-04                    001e.e6ad.8500 192.168.14.1    0000.0000.0001 00:24:30  UP
CSR1000v-01                    001e.e62f.5d00 192.168.11.1    0000.0000.0001 00:24:31  UP
CSR1000v-05                    001e.e529.5f00 192.168.15.1    0000.0000.0002 00:24:30  UP
CSR1000v-02                    001e.bd50.2a00 192.168.12.1    0000.0000.0002 00:24:31  UP
CSR1000v-03                    001e.142d.cb00 192.168.13.1    0000.0000.0003 00:24:31  UP

CSR1000v-06#
CSR1000v-06#
CSR1000v-06#
CSR1000v-06#show otv vlan
Key:  SI - Service Instance, NA - Non AED, NFC - Not Forward Capable.

Overlay 1 VLAN Configuration Information
 Inst VLAN BD   Auth ED              State                Site If(s)      
 0    100  100   CSR1000v-03         inactive(NA)        Gi3:SI100
 0    101  101  *CSR1000v-06         active              Gi3:SI101
 Total VLAN(s): 2

CSR1000v-06#
CSR1000v-06#
CSR1000v-06#
CSR1000v-06#show otv route

Codes: BD - Bridge-Domain, AD - Admin-Distance,
       SI - Service Instance, * - Backup Route

OTV Unicast MAC Routing Table for Overlay1

 Inst VLAN BD     MAC Address    AD    Owner  Next Hops(s)
----------------------------------------------------------
 0    100  100    000c.2916.2320 50    ISIS   CSR1000v-02
 0    100  100    000c.29d4.1d6d 50    ISIS   CSR1000v-01
 0    100  100    001e.e529.5fbc 50    ISIS   CSR1000v-02
 0    100  100    001e.e6ad.85bc 50    ISIS   CSR1000v-01
 0    101  101    000c.2916.2320 50    ISIS   CSR1000v-05
 0    101  101    000c.2973.565c 40    BD Eng Gi3:SI101
 0    101  101    000c.29d4.1d6d 50    ISIS   CSR1000v-04
 0    101  101    001e.142d.cbbc 40    BD Eng Gi3:SI101
 0    101  101    001e.bd50.2abc 50    ISIS   CSR1000v-05
 0    101  101    001e.e62f.5dbc 50    ISIS   CSR1000v-04

10 unicast routes displayed in Overlay1

----------------------------------------------------------
10 Total Unicast Routes Displayed

CSR1000v-06#

ステータス確認は以上です。

動作確認

疎通確認

クライアントのN9Kv-V9-01から、N9Kv-V9-02・N9Kv-V9-03のVlan100とVlan101のIPアドレスにPingを実施し、正常に応答があることを確認します。

N9Kv-V9-01# ping 192.168.100.2 interval 1 timeout 1
PING 192.168.100.2 (192.168.100.2): 56 data bytes
64 bytes from 192.168.100.2: icmp_seq=0 ttl=254 time=8.967 ms
64 bytes from 192.168.100.2: icmp_seq=1 ttl=254 time=132.172 ms
64 bytes from 192.168.100.2: icmp_seq=2 ttl=254 time=356.064 ms
64 bytes from 192.168.100.2: icmp_seq=3 ttl=254 time=8.634 ms
64 bytes from 192.168.100.2: icmp_seq=4 ttl=254 time=8.259 ms

--- 192.168.100.2 ping statistics ---
5 packets transmitted, 5 packets received, 0.00% packet loss
round-trip min/avg/max = 8.259/102.819/356.064 ms
N9Kv-V9-01#
N9Kv-V9-01# ping 192.168.101.2 interval 1 timeout 1
PING 192.168.101.2 (192.168.101.2): 56 data bytes
64 bytes from 192.168.101.2: icmp_seq=0 ttl=254 time=7.138 ms
64 bytes from 192.168.101.2: icmp_seq=1 ttl=254 time=8.882 ms
64 bytes from 192.168.101.2: icmp_seq=2 ttl=254 time=209.905 ms
64 bytes from 192.168.101.2: icmp_seq=3 ttl=254 time=490.17 ms
64 bytes from 192.168.101.2: icmp_seq=4 ttl=254 time=317.086 ms

--- 192.168.101.2 ping statistics ---
5 packets transmitted, 5 packets received, 0.00% packet loss
round-trip min/avg/max = 7.138/206.636/490.17 ms
N9Kv-V9-01#
N9Kv-V9-01# ping 192.168.100.3 interval 1 timeout 1
PING 192.168.100.3 (192.168.100.3): 56 data bytes
64 bytes from 192.168.100.3: icmp_seq=0 ttl=254 time=7.663 ms
64 bytes from 192.168.100.3: icmp_seq=1 ttl=254 time=8.051 ms
64 bytes from 192.168.100.3: icmp_seq=2 ttl=254 time=8.215 ms
64 bytes from 192.168.100.3: icmp_seq=3 ttl=254 time=7.991 ms
64 bytes from 192.168.100.3: icmp_seq=4 ttl=254 time=362.465 ms

--- 192.168.100.3 ping statistics ---
5 packets transmitted, 5 packets received, 0.00% packet loss
round-trip min/avg/max = 7.663/78.876/362.465 ms
N9Kv-V9-01#
N9Kv-V9-01# ping 192.168.101.3 interval 1 timeout 1
PING 192.168.101.3 (192.168.101.3): 56 data bytes
64 bytes from 192.168.101.3: icmp_seq=0 ttl=254 time=388.121 ms
64 bytes from 192.168.101.3: icmp_seq=1 ttl=254 time=222.243 ms
64 bytes from 192.168.101.3: icmp_seq=2 ttl=254 time=7.156 ms
64 bytes from 192.168.101.3: icmp_seq=3 ttl=254 time=622.214 ms
64 bytes from 192.168.101.3: icmp_seq=4 ttl=254 time=9.382 ms

--- 192.168.101.3 ping statistics ---
5 packets transmitted, 5 packets received, 0.00% packet loss
round-trip min/avg/max = 7.156/249.823/622.214 ms
N9Kv-V9-01#

ARPテーブルを参照しサイトBに存在するN9Kv-V9-02のMACアドレスを学習していることを確認します。

N9Kv-V9-01# show ip arp
<省略>
Address         Age       MAC Address     Interface       Flags
192.168.101.2   00:09:17  000c.2916.2320  Vlan101
192.168.101.3   00:08:54  000c.2973.565c  Vlan101
192.168.100.2   00:09:28  000c.2916.2320  Vlan100
192.168.100.3   00:09:29  000c.2973.565c  Vlan100
N9Kv-V9-01#
N9Kv-V9-02# show interface
<省略>
Vlan100 is up, line protocol is up, autostate enabled
  Hardware is EtherSVI, address is  000c.2916.2320
  Internet Address is 192.168.100.2/24
<省略>
Vlan101 is up, line protocol is up, autostate enabled
  Hardware is EtherSVI, address is  000c.2916.2320
  Internet Address is 192.168.101.2/24
<省略>
N9Kv-V9-02#
N9Kv-V9-03# show interface
<省略>
Vlan100 is up, line protocol is up, autostate enabled
  Hardware is EtherSVI, address is  000c.2973.565c
  Internet Address is 192.168.100.3/24
<省略>
Vlan101 is up, line protocol is up, autostate enabled
  Hardware is EtherSVI, address is  000c.2973.565c
  Internet Address is 192.168.101.3/24
<省略>
N9Kv-V9-02#

以上で3サイト冗長構成時の動作確認を終わります。

まとめ

全3回のOTV検証は以上となります。実施したことをまとめます。

  • 第一回目では、OTVがなぜ仮想環境に求められるのかを説明しました。また、シンプルな構成でOTVを組み、ステータスの確認や簡易な疎通確認のテストを実施しました。
  • 第二回目では、マルチホーミング構成の冗長構成でOTVを構成し、負荷分散の確認、及び障害試験を実施し切り替わりに要する時間を測定しました。
  • 第三回目では、第二回目の構成を維持した状態で、1サイト追加し合計3サイトのOTVを組み、ステータスの確認と疎通確認のテストを実施しました。

検証時に参考にしたサイトやコマンドのまとめ

OTVはネット上でも情報が少なく実装するまで時間を要すると思いますが、下記のCisco公式情報を読み込むことである程度OTVの実装方法が分かると思います。下記で提示しているリンク先は当方がOTVについて調べたサイトと、本検証環境の構築中に頻繁に使用したコマンドです。

※CSR1000v(またはIOS-XE)のOTVは本当に情報が少なく、OTVのほとんどはNexus7000を例にしたものでした。ただ、OTVの基本原理はIOS-XEでもNexusでも大きく変わらないと思いますので下記のCisco公式サイトがとても参考になりました。

■参考サイト

・Cisco Nexus 7000 シリーズ NX-OS OTV 設定ガイド
https://www.cisco.com/c/ja_jp/td/docs/sw/dcswt/nex7000swt/cg/043/b_Cisco_Nexus_7000_Series_NX-OS_OTV_Configuration_Guide/b_Cisco_Nexus_7000_Series_NX-OS_OTV_Configuration_Guide_chapter_010.html

・ASR1000 OTV 導入モード(スティック上の OTV)
https://www.cisco.com/c/ja_jp/support/docs/content-networking/adaptive-session-redundancy-asr/210440-ASR1000-OTV-Deployment-Modes-OTV-on-a-S.html

・ASR 1000: OTV マルチホーミング ソフトウェア アップグレードに関するベスト プラクティス
https://www.cisco.com/c/ja_jp/support/docs/content-networking/adaptive-session-redundancy-asr/211348-ASR-1000-OTV-Multihoming-Software-Upgra.html

・Implementing Data Center Overlay Protocols
https://www.ciscopress.com/articles/article.asp?p=2999385&seqNum=2

■確認コマンド

show otv
show otv site
show otv vlan
show otv adjacency
show otv arp-nd-cache
show otv route