Download as pdf or txt
Download as pdf or txt
You are on page 1of 24

Junos MPLS and VPNs

10.a

Lab Diagrams
v3

Worldwide Education Services

1194 North Mathilda Avenue


Sunnyvale, CA 94089
USA
408-745-2000
www.juniper.net

Course Number: EDU-JUN-JMV


This document is produced by Juniper Networks, Inc.
This document or any part thereof may not be reproduced or transmitted in any form under penalty of law, without the prior written permission of Juniper Networks
Education Services.
Juniper Networks, Junos, Steel-Belted Radius, NetScreen, and ScreenOS are registered trademarks of Juniper Networks, Inc. in the United States and other
countries. The Juniper Networks Logo, the Junos logo, and JunosE are trademarks of Juniper Networks, Inc. All other trademarks, service marks, registered
trademarks, or registered service marks are the property of their respective owners.
Junos MPLS and VPNs Lab Diagrams, Revision 10.a
Copyright © 2010 Juniper Networks, Inc. All rights reserved.
Printed in USA.
Revision History:
Revision 10.a—December 2010
The information in this document is current as of the date listed above.
The information in this document has been carefully verified and is believed to be accurate for software Release 10.3R1.9. Juniper Networks assumes no
responsibilities for any inaccuracies that may appear in this document. In no event will Juniper Networks be liable for direct, indirect, special, exemplary,
incidental, or consequential damages resulting from any defect or omission in this document, even if advised of the possibility of such damages.

Juniper Networks reserves the right to change, modify, transfer, or otherwise revise this publication without notice.
YEAR 2000 NOTICE
Juniper Networks hardware and software products do not suffer from Year 2000 problems and hence are Year 2000 compliant. The Junos operating system has
no known time-related limitations through the year 2038. However, the NTP application is known to have some difficulty in the year 2036.
SOFTWARE LICENSE
The terms and conditions for using Juniper Networks software are described in the software license provided with the software, or to the extent applicable, in an
agreement executed between you and Juniper Networks, or Juniper Networks agent. By using Juniper Networks software, you indicate that you understand and
agree to be bound by its license terms and conditions. Generally speaking, the software license restricts the manner in which you are permitted to use the Juniper
Networks software, may contain prohibitions against certain uses, and may state conditions under which the license is automatically terminated. You should
consult the software license for further details.
Device and Variable Assignments
▪ Fill in the blank on this page and on each of the
following pages
Student Switch X X= 1
mxA-1 1
mxA-2 1

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 1: Part 1—Static LSPs (Infrastructure)
X= 1 AS 65512
OSPF Area 0 vr-device

p1 .1 .2 p2 .1 .2 p3
lo0 = 192.168.5.1 172.22.201.0/24 lo0 = 192.168.5.2 172.22.206.0/24 lo0 = 192.168.5.3
.2 .1 .1 .1 .2

.1 mxA-2
mxA-1
172.22.202.0/24

` .1

172.22.207.0/24
172.22.205.0/24
pe2
pe1
lo0.0 = 192.168.X.2
lo0.0 = 192.168.X.1
.1
.1

.2 .2 .2 .2 .2

p4 .1 .2 p5 .1 .2 p6
lo0 = 192.168.5.4 lo0 = 192.168.5.5 lo0= 192.168.5.6
172.22.203.0/24 172.22.204.0/24

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 1: Parts 2–3—Static LSPs
X= 1
ceX-2
AS 65X02 lo0.1 =192.168.1X.2/32

AS 65512 .2

ge-0/0/8
OSPF Area 0

10.0.X1.0/24
vr-device

ge-0/0/4
172.22.2X0.0/24 172.22.2X2.0/24
mxA-1 VLAN 2X0 172.22.201.0/24 172.22.206.0/24 VLAN 2X2 .1

.1
pe1 .1 .2 p1 .1 .2 p2 .1 .2 p3 .2 pe2
lo0.0 = 192.168.X.1 ge-0/0/0 lo0 = 192.168.5.1 lo0 = 192.168.5.2 lo0 = 192.168.5.3 ge-0/0/0 lo0.0 = 192.168.X.2
ge-0/0/4

.1
my-static-lsp mxA-2
10.0.X0.0/24

Label Label
1000X01 1000X02
ge-0/0/8

.2

ceX-1
lo0.1 =192.168.1X.1/32 AS 65X01

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 2: Label Distribution Protocols
X= 1 AS 65512
OSPF Area 0 vr-device
ceX-2
AS 65X02 lo0.1 =192.168.1X.2/32

.2

ge-1/1/4
p1 .1 .2 p2 .1 .2

10.0.X1.0/24
p3
lo0 = 192.168.5.1 172.22.201.0/24 lo0 = 192.168.5.2 172.22.206.0/24 lo0 = 192.168.5.3

.2 .1 .1 .1 .2

ge-1/0/4
.1 .1
172.22.202.0/24

mxA-1 .1

172.22.207.0/24
172.22.205.0/24
pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2

.1 .1 mxA-2
.1
ge-1/0/4

10.0.X0.0/24
ge-1/1/4

.2 .2 .2 .2 .2

.2 p4 .1 .2 p5 .1 .2 p6
lo0 = 192.168.5.4 lo0 = 192.168.5.5 lo0= 192.168.5.6
172.22.203.0/24 172.22.204.0/24
ceX-1
lo0.1 =192.168.1X.1/32 AS 65X01

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 3: CSPF
X= 1 AS 65512
OSPF Area 0 vr-device

gold
silver
p1 .1 bronze .2 p2 .1 .2 p3
lo0 = 192.168.5.1 lo0 = 192.168.5.2 lo0 = 192.168.5.3
172.22.201.0/24 172.22.206.0/24
.2 .1 .1 .1 .2

.1 mxA-2
172.22.202.0/24

mxA-1 .1

172.22.207.0/24
172.22.205.0/24
pe2
pe1

bronze
silver

bronze
gold

lo0.0 = 192.168.X.2

gold
silver
lo0.0 = 192.168.X.1
.1
.1

.2 .2 .2 gold .2 .2
silver bronze
p4 .1 .2 p5 .1 .2 p6
lo0 = 192.168.5.4 lo0 = 192.168.5.5 lo0= 192.168.5.6
172.22.203.0/24 172.22.204.0/24

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 4: Traffic Protection
X= 1 AS 65512
OSPF Area 0 vr-device
PE2 static route:
Primary Path
pe1-to-pe2
10.0.2.0/24 reject

p1 .1 .2 p2 .1 .2 p3
lo0 = 192.168.5.1 172.22.201.0/24 lo0 = 192.168.5.2 172.22.206.0/24 lo0 = 192.168.5.3
.2 .1 .1 .1 .2

Primary Path
pe2-to-pe1
mxA-2
172.22.202.0/24

mxA-1 .1 .1

172.22.207.0/24
172.22.205.0/24
pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2

.1 .1

.2 .2 .2 .2 .2

p4 .1 .2 p5 .1 .2 p6
lo0 = 192.168.5.4 lo0 = 192.168.5.5 lo0= 192.168.5.6
172.22.203.0/24 172.22.204.0/24
PE1 static route:
10.0.1.0/24 reject

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 5: Parts 1–3—Miscellaneous MPLS
X= 1 AS 65512
OSPF Area 0 vr-device

p1 .1 .2 p2 .1 .2 p3
lo0 = 192.168.5.1 172.22.201.0/24 lo0 = 192.168.5.2 172.22.206.0/24 lo0 = 192.168.5.3

.2 .1 .1 .1 .2

10.0.X1.0/24
ge-0/0/4 .1
172.22.202.0/24

mxA-1 .1 .1

172.22.205.0/24

172.22.207.0/24
pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2

.1 .1
10.0.X0.0/24
.1 ge-0/0/4

mxA-2

.2 .2 .2 .2 .2

p4 .1 .2 p5 .1 .2 p6
lo0 = 192.168.5.4 lo0 = 192.168.5.5 lo0= 192.168.5.6
172.22.203.0/24 172.22.204.0/24

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 5: Parts 4–9—Miscellaneous MPLS
X= 1 AS 65512
OSPF Area 0 vr-device

PE2 static routes:


10.X.3.0/24 receive
p1 .1 .2 p2 .1 .2 p3 10.X.4.0/24 receive
lo0 = 192.168.5.1 172.22.201.0/24 lo0 = 192.168.5.2 172.22.206.0/24 lo0 = 192.168.5.3

.2 .1 .1 .1 .2
172.22.202.0/24

mxA-1 .1 .1

172.22.207.0/24
172.22.205.0/24
pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2

.1 .1
mxA-2

.2 .2 .2 .2 .2

p4 .1 .2 p5 .1 .2 p6
lo0 = 192.168.5.4 lo0 = 192.168.5.5 lo0= 192.168.5.6
PE1 static routes: 172.22.203.0/24 172.22.204.0/24
10.X.1.0/24 receive
10.X.2.0/24 receive

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 6: Part 1—VPN Baseline (PE)
X= 1 AS 65512
OSPF Area 0 vr-device

p1 .1 .2 p2 .1 .2 p3
lo0 = 192.168.5.1 lo0 = 192.168.5.2
172.22.201.0/24 172.22.206.0/24 lo0 = 192.168.5.3
.2 .1 .1 .1 .2

.1 mxA-2
172.22.202.0/24

mxA-1 .1

172.22.207.0/24
172.22.205.0/24
pe2
pe1
lo0.0 = 192.168.X.2
lo0.0 = 192.168.X.1

.1
.1

.2 .2 .2 .2 .2

p4 .1 .2 p5 .1 .2 p6
lo0 = 192.168.5.4 lo0 = 192.168.5.5 lo0= 192.168.5.6
172.22.203.0/24 172.22.204.0/24

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 6: Part 2—VPN Baseline (CE)
mxA-2

X= 1 172.X0.4-7/24
AS 65X01
ceX-2
lo0.1 =192.168.1X.2/32

.2

ge-0/0/8
10.0.X1.0/24

VLAN 6X0
AS 65512
OSPF Area 0

ge-0/0/4
mxA-1 .1

pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2

.1
ge-0/0/4

10.0.X0.0/24
VLAN 6X0

ge-0/0/8

.2

ceX-1
172.X0.0-3/24 lo0.1 =192.168.1X.1/32
AS 65X01

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 7: Layer 3 VPN Configuration
mxA-2

X= 1 172.X0.4-7/24 ceX-2
AS 65X01 lo0.1 =192.168.1X.2/32

.2

ge-0/0/8
10.0.X1.0/24

VLAN 6X0
AS 65512
OSPF Area 0

ge-0/0/4
mxA-1 Layer 3 VPN .1

pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2

.1
ge-0/0/4

10.0.X0.0/24
VLAN 6X0

ge-0/0/8

.2

ceX-1
172.X0.0-3/24 lo0.1 =192.168.1X.1/32
AS 65X01

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 8: Parts 1–2—Layer 3 VPN Scaling and
Internet Access AS 65512
OSPF Area 0 vr-device

X= 1
p1 .1 .2 p2 .1 .2 p3
lo0 = 192.168.5.1 172.22.201.0/24 lo0 = 192.168.5.2 lo0 = 192.168.5.3
172.22.206.0/24
.2 .1 .1 .1 .2

mxA-2
172.22.202.0/24

mxA-1 .1 .1

172.22.207.0/24
172.22.205.0/24
pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2

.1 .1

.2 .2 .2 .2 .2

p4 .1 .2 p5 .1 .2 p6
lo0 = 192.168.5.4 lo0 = 192.168.5.5 lo0.= 192.168.5.6
172.22.203.0/24 172.22.204.0/24

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 8: Parts 3–8—Layer 3 VPN Scaling and
Internet Access X= 1
172.X1.0-3/24 ceX-3 172.X0.4-7/24 ceX-2
lo0.2 =192.168.2X.1/32 lo0.1 =192.168.1X.2/32
AS 65X02 AS 65X01

ge-0/0/9 .2 .2

ge-0/0/8
10.0.X1.0/24
10.1.X0.0/24

VLAN 6X0
VLAN 6X1

AS 65512 customer vpn-a

ge-0/0/4
ge-0/0/5

OSPF Area 0

.1 Layer 3 VPN .1
mxA-1 mxA-2
pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2

.1 .1
ge-0/0/4

ge-0/0/5
10.1.X1.0/24
customer vpn-b
10.0.X0.0/24
VLAN 6X0

VLAN 6X1
ge-0/0/8

ge-0/0/9
.2 .2

ceX-1 172.X1.4-7/24 ceX-4


172.X0.0-3/24 lo0.1 =192.168.1X.1/32 lo0.2 =192.168.2X.2/32
AS 65X01 AS 65X02

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 8: Part 9—Layer 3 VPN Scaling and
Internet Access
X= 1

AS 65512
OSPF Area 0

mxA-1 mxA-2
pe1 pe2
lo0.0 = 192.168.X.1
Layer 3 VPN lo0.0 = 192.168.X.2

ge-0/0/4.X00 .1 .1 ge-0/0/4.6X0 ge-0/0/4.X00 .1 .1 ge-0/0/4.6X0

10.0.X1.0/24
10.0.X0.0/24

10.2.X1.0/24
10.2.X0.0/24

VLAN X00

VLAN 6X0
VLAN 6X0
VLAN X00

ge-0/0/8.X00 .2 .2 ge-0/0/8.6X0 ge-0/0/8.X00 .2 .2 ge-0/0/8.6X0

ceX-1 ceX-2
172.X0.0-3/24 lo0.1 =192.168.1X.1/32
172.X0.4-7/24 lo0.1 =192.168.1X.2/32
AS 65X01 AS 65X01

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 9: GRE Tunnel Integration
mxA-2

X= 1 172.X0.4-7/24 ceX-2
AS 65X01 lo0.1 =192.168.1X.2/32

.2

ge-0/0/8
10.0.X1.0/24

VLAN 6X0
AS 65512
OSPF Area 0

ge-0/0/4
mxA-1 .1
pe1 pe2
lo0.0 = 192.168.X.1 gr-1/0/10.0 GRE Tunnel gr-1/0/10.0 lo0.0 = 192.168.X.2

.1
ge-0/0/4

10.0.X0.0/24
VLAN 6X0
ge-0/0/8

.2

172.X0.0-3/24 ceX-1
lo0.1 =192.168.1X.1/32
AS 65X01

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 10: Parts 1–2—BGP Layer 2 VPN
X= 1 AS 65512
OSPF Area 0 vr-device

p1 .1 .2 p2 .1 .2 p3
lo0 = 192.168.5.1 172.22.201.0/24 lo0 = 192.168.5.2 172.22.206.0/24 lo0 = 192.168.5.3

.2 .1 .1 .1 .2

.1 mxA-2
172.22.202.0/24

mxA-1 .1

172.22.207.0/24
172.22.205.0/24
pe2
pe1
lo0.0 = 192.168.X.2
lo0.0 = 192.168.X.1
.1
.1

.2 .2 .2 .2 .2

p4 .1 .2 p5 .1 .2 p6
lo0 = 192.168.5.4 lo0 = 192.168.5.5 lo0.= 192.168.5.6
172.22.203.0/24 172.22.204.0/24

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 10: Parts 3–5—BGP Layer 2 VPN
mxA-2

X= 1 172.X0.4-7/24 ceX-2
lo0.1 =192.168.1X.2/32
AS 65X01
Site ID 2

.2

ge-0/0/8
10.0.X0.0/24

VLAN 6X0
AS 65512
OSPF Area 0

ge-0/0/4
mxA-1
BGP Layer 2 VPN
pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2
ge-0/0/4

10.0.X0.0/24
VLAN 6X0
ge-0/0/8

.1
ceX-1
172.X0.0-3/24 lo0.1 =192.168.1X.1/32

AS 65X01 Site ID 1

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 11: LDP Layer 2 Circuit
mxA-2

X= 1 172.X0.4-7/24 ceX-2
AS 65X01 lo0.1 =192.168.1X.2/32

.2

ge-0/0/8
10.0.X0.0/24

VLAN 6X0
AS 65512
OSPF Area 0

ge-0/0/4
mxA-1
LDP Layer 2 Circuit
pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2
ge-0/0/4

10.0.X0.0/24
VLAN 6X0
ge-0/0/8

.1

ceX-1
172.X0.0-3/24 lo0.1 =192.168.1X.1/32
AS 65X01

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 11: Circuit Cross Connect
mxA-2

X= 1 172.X0.4-7/24 ceX-2
AS 65X01 lo0.1 =192.168.1X.2/32

.2

ge-0/0/9
10.0.X0.0/24

VLAN 6X0
AS 65512
OSPF Area 0

ge-0/0/5
mxA-1
CCC Circuit
pe1 pe2
lo0.0 = 192.168.X.1 lo0.0 = 192.168.X.2
ge-0/0/5

10.0.X0.0/24
VLAN 6X0
ge-0/0/9

.1

ceX-1
172.X0.0-3/24 lo0.1 =192.168.1X.1/32
AS 65X01

www.juniper.net

Worldwide Education Services


© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 12: Parts 1-6 – LDP VPLS
X= 1

mxA-
mx_-1 mxA-
mx_-2
AS 65512
OSPF Area 0
VLAN 6X0 VLAN 6X0
10.0.X0.0/24 10.0.X0.0/24

192.168.X.2
lo0.0 = 192.168.X.1
ge-0/0/10 ge--0/0/10
VPLS
-0/0/8
ge-0
- /0/8

vsX--2
ge- ge
vsX--1

= 192.16
ge-1/1/4

ce--vsX
ge-0/0/14
ce--vsX

ge-0/0/14 pe1

pe2
ge-0/0/4 .2
.1 ge-0/0/4

ce
ce

c-routerX-
routerX-1 ge-0/0/11 ge-0/0/11 c-routerX--
routerX--2
--2

lo0.0 =
lo0.0
lo0.1 =192.168.1X.1/32 lo0.1 =192.168.1X.2/32
ge-0/0/15 ge-0/0/15

Virtual Switch Virtual Switch Virtual Router


Virtual Router

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 12: Parts 7-9 – BGP VPLS
X= 1

mxA-
mx_-1 mxA-
mx_-2
AS 65512
OSPF Area 0
VLAN 6X1 VLAN 6X1
10.0.X1.0/24 10.0.X1.0/24

lo0.0 = 192.168.X.2
lo0.0 = 192.168.X.1
ge-0/0/12
-
ge-0/0/12
VPLS

vsX--2
ge-1/1/4 ge-0/0/8
vsX--1

ge-0/0/8 ge-0/0/16

ce--vsX
ce--vsX

pe1

pe2
ge-0/0/16 ge-0/0/4 .2
.1 ge-0/0/4
ge-0/0/13

ce
ce

c-routerX-
routerX-1 ge-0/0/13 c-routerX--
routerX--2
--2
lo0.1 =192.168.1X.1/32 ge-0/0/17 lo0.1 =192.168.1X.2/32
ge-0/0/17

Virtual Router Virtual Switch Virtual Switch Virtual Router

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net
Lab 13: Carrier-of-Carrier VPNs
X=1
mxA-
mx_-1 mxA-
mx_-2
Provider Subscriber
Subscriber AS 65512
OSPF Area 0
Virtual Router s-ce2
s-ce1 Virtual Router
BGP VPLS

10.0.51.0/24
ge-0/0/14
.2
10.0.51.0/24
ge-0/0/14

.1
VLAN 6X0

VLAN 6X0
ge-0/0/10
ge-0/0/10

AS 65X01 lo0.0 = 192.168.X.1 AS 65X02

lo0.0 = 192.168.X.2
lo0.1 =192.168.1X.1/32

lo0.2 =192.168.1X.4/32
lo0.1 =192.168.1X.2/32
lo0.2 =192.168.1X.3/32

OSPF Area 0 OSPF Area 0


L3VPN

p-pe2
.2 ge-0/0/5 ge-0/0/4 ge-0/0/4 .2
p-pe1

.2 ge-0/0/5 .2
c-ce1

c-pe2
c-ce2
c-pe1

ge-0/0/9 .1 ge-0/0/8 .1 .1 ge-0/0/8 .1 ge-0/0/9


10.0.50.0/24 10.0.20.0/24 10.0.21.0/24 10.0.60.0/24

Logical System Logical System Main Routing Instance Logical System Logical System
Customer and VRF Customer

© 2010 Juniper Networks, Inc. All rights reserved. Worldwide Education Services www.juniper.net

You might also like