Riverstone Networks WICT1-12 User Manual

Rs switch router
Table of Contents

Advertisement

Quick Links

RS Switch Router

User Guide

Release 8.0
36-007-07 Rev. 0A

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the WICT1-12 and is the answer not in the manual?

Questions and answers

Summary of Contents for Riverstone Networks WICT1-12

  • Page 1: User Guide

    RS Switch Router User Guide Release 8.0 36-007-07 Rev. 0A...
  • Page 2: Copyright Notices

    COPYRIGHT NOTICES ii Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 3: Regulatory Compliance Information

    Operation of this equipment in a residential area is likely to cause interference in which case the user will be required to correct the interference at his own expense. Riverstone Networks RS Switch Router User Guide Release 8.0 iii...
  • Page 4: Industry Canada Compliance Statement

    Changes or modifications made to this device that are not expressly approved Warning by the party responsible for compliance could void the user’s authority to operate the equipment. INDUSTRY CANADA COMPLIANCE STATEMENT iv Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 5: Laser Radiation And Connectors

    21 CFR 1040.10 and 1040.11, U.S. Department of Health and Human Services (FDA) • IEC Publication 825 (International Electrotechnical Commission) • CENELEC EN 60825 (European Committee for Electrotechnical Standardization) LASER RADIATION AND CONNECTORS Riverstone Networks RS Switch Router User Guide Release 8.0 v...
  • Page 6: Consumer Information And Fcc Requirements

    This equipment complies with Part 68 of the FCC rules, FCC Registration Number 6TGUSA-46505-DE-N Riverstone Networks Inc. Model WICT1-12 Made in the USA. On the DS1/E1 WAN Module of this equipment is a label that contains, among other information, the FCC registration number and Ringer Equivalence Number (REN) for this equipment.
  • Page 7 Riverstone Networks RS Switch Router User Guide Release 8.0 vii...
  • Page 8 IMPORTANT: BEFORE UTILIZING THE PRODUCT, CAREFULLY READ THIS LICENSE AGREEMENT. This document is a legal agreement ("Agreement") between You, the end user, and Riverstone Networks, Inc. ("Riverstone"). BY USING THE ENCLOSED SOFTWARE PRODUCT, YOU ARE AGREEING TO BE BOUND BY THE TERMS AND CONDI- TIONS OF THIS AGREEMENT AND THE RIVERSTONE STANDARD LIMITED WARRANTY, WHICH IS INCORPO- RATED HEREIN BY REFERENCE.
  • Page 9 Licensed Materials will be resolved in state or federal courts located in Santa Clara County, California, U.S.A.. You consent to the personal jurisdiction of and waive any objections to venue in such courts. Riverstone Networks RS Switch Router User Guide Release 8.0 ix...
  • Page 10 STANDARD LIMITED WARRANTY Limited Warranty Riverstone Networks, Inc. (“Riverstone”) warrants that for a period of one (1) year from the date of shipment from Riverstone that the Riverstone hardware purchased by Customer (“Hardware”) will be free from defects in materials and workmanship under normal use.
  • Page 11 ESSENTIAL PURPOSE. THE TOTAL CUMULATIVE LIABILITY TO CUSTOMER, FROM ALL CAUSES OF ACTION AND ALL THEORIES OF LIABILITY, WILL BE LIMITED TO AND WILL NOT EXCEED THE PUR- CHASE PRICE OF THE PRODUCT PAID BY CUSTOMER. Riverstone Networks RS Switch Router User Guide Release 8.0 xi...
  • Page 12: Declaration Of Conformity Addendum

    DECLARATION OF CONFORMITY ADDENDUM xii Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 13: Table Of Contents

    CLI and RS Configuration Example ..........3-12 Riverstone Networks RS Switch Router User Guide Release 8.0 xiii...
  • Page 14 Stackable VLAN Components ........... 5-19 xiv Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 15 Anti-IP-spoofing ............. 7-21 Riverstone Networks RS Switch Router User Guide Release 8.0 xv...
  • Page 16 Configuring Secondary Subnets ........... . . 10-5 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 17 Multi-Backup Configuration ........... . 12-5 Riverstone Networks RS Switch Router User Guide Release 8.0 xvii...
  • Page 18 Exporting All RIP, Interface & Static Routes to OSPF ....... 14-15 xviii Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 19 Labels ..............17-2 Riverstone Networks RS Switch Router User Guide Release 8.0 xix...
  • Page 20 Simple Route Redistribution Example: Redistribution into RIP ......18-10 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 21 Monitoring IP Policies ............20-11 Riverstone Networks RS Switch Router User Guide Release 8.0 xxi...
  • Page 22 Configuring IPX Interfaces and Parameters ..........23-3 xxii Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 23 Creating an IP or IPX VLAN for Layer-4 Bridging ....... . . 25-13 Riverstone Networks RS Switch Router User Guide Release 8.0 xxiii...
  • Page 24 Configuration Examples............28-8 xxiv Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 25 Cisco HDLC Configuration Example ..........30-16 Riverstone Networks RS Switch Router User Guide Release 8.0 xxv...
  • Page 26 Rate Limiting Configuration Examples..........31-13 xxvi Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 27: List Of Figures

    Figure 15-1 Network overview ..............15-8 Riverstone Networks RS Switch Router User Guide Release 8.0 xxvii...
  • Page 28 Figure 15-2 Area 1 detailed view ............. . 15-9 Figure 15-3 Area 2 detailed view .
  • Page 29 Figure 30-11 Transatlantic Connection Using a T1 and E1 Link ........30-77 Riverstone Networks RS Switch Router User Guide Release 8.0 xxix...
  • Page 30 Figure 31-5 Flow-aggregate rate limiting ............31-14 xxx Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 31: List Of Tables

    T1 and E1 Framing and Line Coding Schemes......... 30-31 Riverstone Networks RS Switch Router User Guide Release 8.0 xxxi...
  • Page 32 Timeslot and CIR Assignments ........... . . 30-79 xxxii Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 33: Introduction

    For Information About Installing and setting up the RS Syntax for CLI commands Riverstone RS Switch Router Getting Started Guide Riverstone RS Switch Router Command Line Interface Reference Manual Riverstone Networks RS Switch Router User Guide Release 8.0 1-1...
  • Page 34: Document Conventions

    Keywords or arguments separated by vertical bars indicate a choice. x|y|z <italics>] Select one keyword or argument. x|y|z| <italics>} Braces group required choices. Select one keyword or argument. x|y|z| 1-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Introduction...
  • Page 35: Maintaining Configuration Files

    When you activate the commands in the scratchpad, the RS sorts out the dependencies and executes the command in the proper sequence. Riverstone Networks RS Switch Router User Guide Release 8.0 2-1...
  • Page 36: Changing Configuration Information

    Save active configuration to startup. 2.1.2 Displaying Configuration Information The following table lists the commands that are useful for displaying the RS’s configuration information. 2-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Maintaining Configuration Files Active Startup in effect...
  • Page 37: Activating The Configuration Commands In The Scratchpad

    <filename> | diff command. system set show-config command in the CLI. enable command in the CLI. configure Riverstone Networks RS Switch Router User Guide Release 8.0 2-3 Configuration Files startup...
  • Page 38: Saving The Active Configuration To The Startup Configuration File

    The CLI displays the active configuration file with the following possible annotations: Commands without errors are displayed without any annotation. Commands with errors are annotated with an “E.” 2-4 Riverstone Networks RS Switch Router User Guide Release 8.0 Maintaining Configuration Files command or pressing exit command in the CLI.
  • Page 39: Backing Up And Restoring Configuration Files

    Enable mode to display, rename, and delete the configuration files stored on the primary file control module: would be displayed as follows: are not in error. <filename>|<url> Riverstone Networks RS Switch Router User Guide Release 8.0 2-5 Configuration Files portion of the above...
  • Page 40: Backing Up And Restoring System Image Files

    RS to boot the system image remotely over a network. system set bootprom netaddr <IPaddr> <IPaddr> tftp-gateway 2-6 Riverstone Networks RS Switch Router User Guide Release 8.0 <device> file dir <device> file type [ <device>...
  • Page 41: Configuring System Settings

    [primary-cm|backup-cm] [slot0|slot1] <filename> system image choose [primary-cm|backup-cm] [slot0|slot1] system image copy slot0|slot1 <filename> slot0|slot1 [ system image list primary-cm|backup-cm|all <filename> system image delete primary-cm|backup-cm slot0|slot Riverstone Networks RS Switch Router User Guide Release 8.0 2-7 Configuring System Settings system |none <filename>...
  • Page 42: Setting Daylight Saving Time

    Configure the RS to display a banner when it is booted up. You can specify a text string or the name of a file on a TFTP server. Display a log-in banner. 2-8 Riverstone Networks RS Switch Router User Guide Release 8.0 command or the system set dst-fixed system set dst-changing s_wk <value>...
  • Page 43: Cli And Rs Basics

    CLI can be reached. There is also a set of facilities associated with this mode. See the following section for a discussion about CLI command modes. Riverstone Networks RS Switch Router User Guide Release 8.0 3-1...
  • Page 44: Understanding Cli Command Modes

    The enable mode command prompt consists of the RS name followed by the pound sign(#): To exit the enable mode and return to the user mode, either type 3-2 Riverstone Networks RS Switch Router User Guide Release 8.0 at the user command prompt. This mode also contains the command enable and press the Return key, or press Ctrl+Z.
  • Page 45: Configure Mode

    . The BootPROM configuration file displays. Changes can followed by a rs-boot facility. Within the set of Riverstone Networks RS Switch Router User Guide Release 8.0 3-3 Understanding CLI Commands and a pound sign ( character. > commands are commands such as:...
  • Page 46: Using Line Editing Commands

    Previous command from the history buffer. Ctrl+q No action. Ctrl+r Refresh the current line. Ctrl+s No action. 3-4 Riverstone Networks RS Switch Router User Guide Release 8.0 commands. These commands are for making configuration port commands in the configure mode port CLI and RS Basics commands.
  • Page 47: Table 3-1 Cli Line Editing Commands

    Recall a specific history command. # is the number of the history command to be recalled. “<string>” Opaque strings may be specified using double quotes. This prevents interpretation of otherwise special CLI characters. Using Line Editing Commands Riverstone Networks RS Switch Router User Guide Release 8.0 3-5...
  • Page 48: Getting Help With Cli Commands

    - Name of this Load Balanced group of servers vip-range-name - Name of this Virtual IP range rs(config)# load-balance create 3-6 Riverstone Networks RS Switch Router User Guide Release 8.0 parameters CLI and RS Basics ) character at any command prompt, at the enable prompt: character.
  • Page 49: Setting Cli Parameters

    Enter. The options valid for . Press enter to execute. Type a Section 3.8, "CLI and RS Configuration Example." Riverstone Networks RS Switch Router User Guide Release 8.0 3-7 Setting CLI Parameters are displayed. Choose character, then press Enter. More...
  • Page 50: Command Completion

    For other ports, including unchannelized T1/E1: <type>.<slot-number>.<port-number>[.<vc>] The various parts of the port specification are described in the following sections. 3-8 Riverstone Networks RS Switch Router User Guide Release 8.0 command controls the behavior of the CLI as commands are entered. When command.
  • Page 51: Port Type

    Clear Channel E3 10 Base-X/100 Base-X Ethernet 1000 Base-X Gigabit Ethernet Dual HSSI WAN Serial WAN Packet-over-SONET (POS) Channelized T1 Channelized T3 or Clear Channel T3 Riverstone Networks RS Switch Router User Guide Release 8.0 3-9 Naming RS Ports Table 3-3:...
  • Page 52: Table 3-3 Port Numbers For Line Cards

    Channelized WIC in the second, then the port numbers will be 1, 3, and 4. If the position of the WICs are reversed, then the numbering will be 1, 2, and 3. * Upstream ** Downstream-Intermediate Frequency 3-10 Riverstone Networks RS Switch Router User Guide Release 8.0 Port Numbering (Left to Right) 1† 1†...
  • Page 53: Channel Number

    1 to 24 Channelized T1 1 to 31 Channelized E1 1 to 28 Channelized T3 The following examples show the different channel specifications for T1: t1.3.2:5-8 t1.3.1:(1-4,6,7) Table 3-4. Riverstone Networks RS Switch Router User Guide Release 8.0 3-11 Naming RS Ports...
  • Page 54: Port Name Example

    The IP address for the management port • The terminal display (horizontal and vertical) • The history buffer • A login banner 3-12 Riverstone Networks RS Switch Router User Guide Release 8.0 Tx Link Gigabit port Gigabit port CLI and RS Basics Swap...
  • Page 55 "Jim Cale" Configure en0. rs(config)# interface add ip en0 address-netmask 160.150.140.20/16 Create a login banner. rs(config)# system set login banner file-name loginbanner1 CLI and RS Configuration Example Riverstone Networks RS Switch Router User Guide Release 8.0 3-13...
  • Page 56 CLI and RS Configuration Example CLI and RS Basics 3-14 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 57: Hot Swapping Line Cards And Control Modules

    The procedure for hot swapping a line card consists of deactivating the line card, removing it from its slot in the RS chassis, and installing a new line card in the slot. Riverstone Networks RS Switch Router User Guide Release 8.0 4-1...
  • Page 58: Deactivating The Line Card

    4.2.2 Removing the Line Card To remove a line card from the RS: Make sure the Offline LED on the line card is lit. 4-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Figure 4-1 Tx Link Tx Link...
  • Page 59: Installing A New Line Card

    If you have a secondary Control Module installed on the RS, you can hot swap it with another Control Module or line card. Hot Swapping One Type of Line Card With Another Riverstone Networks RS Switch Router User Guide Release 8.0 4-3...
  • Page 60: Deactivating The Control Module

    Control Module in slot CM/1, enter the following command in Enable mode: rs# system hotswap out slot 1 4-4 Riverstone Networks RS Switch Router User Guide Release 8.0 PC slot 0 10/100 Mgmt ERR DIAG PC slot 1 command in the CLI to deactivate the Control Module.
  • Page 61: Removing The Control Module

    RS 8600 is powered off. When the RS 8600 is powered on again, the Switching Fabric Module in slot “Fabric 1,” if one is installed there, becomes the active Switching Fabric Module. Hot Swapping a Switching Fabric Module (RS 8600 only) Riverstone Networks RS Switch Router User Guide Release 8.0 4-5...
  • Page 62: Removing The Switching Fabric Module

    Make sure the circuit card (and not the metal plate) is between the card guides. Note Check both the upper and lower tracks. 4-6 Riverstone Networks RS Switch Router User Guide Release 8.0 Hot Swapping Line Cards and Control Modules system hotswap...
  • Page 63: Hot Swapping A Gbic (Rs 32000 And Rs 38000 Only)

    4-4. If storing or shipping the GBIC, insert the rubber dust protector into the GBIC to protect the fiber ports. Hot Swapping A GBIC (RS 32000 and RS 38000 only) Riverstone Networks RS Switch Router User Guide Release 8.0 4-7...
  • Page 64: Installing A Gbic Into The Line Card

    Push the GBIC module in until the connector engages the 20-pin port. The GBIC is now installed. HOT SWAPPING A WIC Hot swapping WICs is not yet supported. Note 4-8 Riverstone Networks RS Switch Router User Guide Release 8.0 Hot Swapping Line Cards and Control Modules To remove, press tabs on top and bottom of GBIC and pull.
  • Page 65: Bridging Configuration Guide

    The RS performance is equivalent when performing flow-based bridging or address-based bridging. However, address-based bridging is more efficient because it requires fewer table entries while flow-based bridging provides tighter management and control over bridged traffic. Riverstone Networks RS Switch Router User Guide Release 8.0 5-1...
  • Page 66: Vlan Overview

    VLAN is determined by the protocol of the packet. For example, there could be separate VLANs for IP, IPX and Appletalk. An IP broadcast frame will only be sent to all ports in the IP VLAN. 5-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Bridging Configuration Guide...
  • Page 67: Subnet-Based Vlans

    VLANs are still created implicitly by the RS as a result of creating L3 interfaces for IP and/or IPX. However, these implicit VLANs do not need to be created or configured manually. The implicit VLANs created by the RS are subnet-based VLANs. Riverstone Networks RS Switch Router User Guide Release 8.0 5-3 VLAN Overview...
  • Page 68: Ports, Vlans, And L3 Interfaces

    You can associate all the ports containing the clients and servers to an IP VLAN called ‘BLUE’. First, create an IP VLAN named ‘BLUE’ rs(config)# vlan create BLUE ip Next, assign ports to the ‘BLUE’ VLAN. rs(config)# vlan add ports et.4.(1-8),gi.1.(1-2) to BLUE 5-4 Riverstone Networks RS Switch Router User Guide Release 8.0 Bridging Configuration Guide...
  • Page 69: Creating A Non-Ip/Non-Ipx Vlan

    RS when L3 interfaces are created (implicit VLANs). Access Ports and Trunk Ports (802.1P and 802.1Q support) command to tag frames transmitted from access ports with a one-byte, 802.1p Riverstone Networks RS Switch Router User Guide Release 8.0 5-5...
  • Page 70: Configuring Rs Bridging Functions

    The network manager can then apply Quality of Service (QoS) policies or security filters based on layer-2 traffic flows. To enable flow-based bridging on a port, enter the following command in Configure mode. Configure a port for flow-based bridging. 5-6 Riverstone Networks RS Switch Router User Guide Release 8.0 Flow-Based Bridge Table <port-list>...
  • Page 71: Configuring Spanning Tree

    RSTP works only on ports where STP is already enabled (with the stp enable Note port command). <line-number of active config containing command> <port-list> |all-ports vlan-name <string> pvst create spanningtree <port-list> stp enable port <port-list> pvst enable port spanning-tree <string> Riverstone Networks RS Switch Router User Guide Release 8.0 5-7 Configuring Spanning Tree...
  • Page 72: Adjusting Spanning-Tree Parameters

    Set the bridge priority for default spanning tree. Set the bridge priority for a particular instance of spanning tree. 5-8 Riverstone Networks RS Switch Router User Guide Release 8.0 stp set protocol-version rstp <num> stp set bridging priority pvst set bridging spanning-tree <num>...
  • Page 73: Setting A Port Priority

    <port-list> pvst set port spanning-tree <string> <num> priority <port-list> stp set port port-cost <port-list> pvst set port spanning-tree <string> <num> port-cost Riverstone Networks RS Switch Router User Guide Release 8.0 5-9 Configuring Spanning Tree <num> <num>...
  • Page 74: Adjusting The Interval Between Hello Times

    Change the amount of time a bridge will wait to hear BPDUs from the root bridge for a particular instance of spanning tree. 5-10 Riverstone Networks RS Switch Router User Guide Release 8.0 stp set bridging hello-time pvst set bridging spanning-tree <num>...
  • Page 75: Stp Dampening

    Create a port or protocol based VLAN. Add physical ports to a VLAN. Configuring a Port- or Protocol-Based VLAN <port-list> stp set port dampening enable stp set bridging damp-monitor-time <seconds> <number> damp-bpdu-count Riverstone Networks RS Switch Router User Guide Release 8.0 5-11...
  • Page 76: Creating A Port Or Protocol Based Vlan

    VLAN broadcast domain to more than one RS. To configure a VLAN trunk, enter the following command in the Configure mode. Configure 802.1Q VLAN trunks. 5-12 Riverstone Networks RS Switch Router User Guide Release 8.0 <vlan-name> <type> vlan create <port-list>...
  • Page 77: Configuring Vlans For Bridging

    Then, you can display the statistics by using the 107,196,271 octets 134,940 frames 105,965,469 octets 133,549 frames 354,072,575 octets 446,763 frames 347,463,892 octets 435,218 frames You can specify the following security filters: Riverstone Networks RS Switch Router User Guide Release 8.0 5-13 Configuring VLANs for Bridging...
  • Page 78: Monitoring Bridging

    Show information the master MAC table. Show information on a specific MAC address. Show information on MACs registered. Show all VLANs. 5-14 Riverstone Networks RS Switch Router User Guide Release 8.0 ip show routes l2-tables show all-macs l2-tables show port-macs l2-tables show mac-table-stats...
  • Page 79: Garp/Gvrp

    If STP is disabled, this includes all ports, except the input port. If STP is enabled, this includes all ports that are in the forwarding mode, except the input port. Riverstone Networks RS Switch Router User Guide Release 8.0 5-15 GARP/GVRP...
  • Page 80: Configuring Garp/Gvrp

    200 ms For GARP to operate properly, all layer-2 connected devices should have the same Note GARP timer values. 5-16 Riverstone Networks RS Switch Router User Guide Release 8.0 Bridging Configuration Guide commands described in the Riverstone RS garp...
  • Page 81: Configuration Example

    7.1 of R4. This is then propagated across the bridged LAN to all the other routers. If dynamic VLAN creation was not enabled on R4, it would have dropped the traffic for VLAN RED. st.1 st.1 Riverstone Networks RS Switch Router User Guide Release 8.0 5-17 GARP/GVRP et.4.2 et.4.1 et.4.3...
  • Page 82 Enable dynamic VLAN creation so when R1, R2, or R3 sends a request for a VLAN, it will dynamically be created on R4. gvrp enable dynamic vlan-creation Note that because dynamic VLAN creation was enabled on R4, we did not have to manually configure any VLAN on 5-18 Riverstone Networks RS Switch Router User Guide Release 8.0 Bridging Configuration Guide...
  • Page 83: Tunneling Vlan Packets Across Mans

    6.1 et.7.1 on R2 are tunnel exit ports, which are access vlan enable stackable-vlan Riverstone Networks RS Switch Router User Guide Release 8.0 5-19 Tunneling VLAN packets across MANs et.6.1 et.5.1 et.7.1 CLI command.
  • Page 84: Configuration Examples

    5-4, traffic for customer C1’s VLAN (BLUE) and for customer C2’s VLAN (GREEN) is tunneled through the backbone VLAN (RED). 5-20 Riverstone Networks RS Switch Router User Guide Release 8.0 command can be added to more than one VLAN of the...
  • Page 85: Figure 5-4 Multiple Customers With Different Vlans

    ! Map tunnel entry ports to backbone VLAN vlan enable stackable-vlan on et.2.1 backbone-vlan RED vlan enable stackable-vlan on et.3.1 backbone-vlan RED BLUE VLAN RED VLAN (backbone) GREEN VLAN Riverstone Networks RS Switch Router User Guide Release 8.0 5-21 Tunneling VLAN packets across MANs et.6.1 et.5.1 et.7.1...
  • Page 86: Figure 5-5 Multiple Customers With Common Vlans

    VLAN GREEN. Note that the trunk port on each router is part of both backbone VLAN RED and backbone VLAN GREEN. RED VLAN et.2.1 et.4.1 et.3.1 GREEN VLAN Figure 5-5 Multiple customers with common VLANs 5-22 Riverstone Networks RS Switch Router User Guide Release 8.0 BLUE VLAN et.5.1 Bridging Configuration Guide et.6.1 et.7.1...
  • Page 87 C2 will be sent on the backbone VLAN RED, while traffic for customer C3 and C4 will be sent on the backbone VLAN PURPLE. Tunneling VLAN packets across MANs Figure 5-6, customers C1 and C3 use the VLAN BLUE, Riverstone Networks RS Switch Router User Guide Release 8.0 5-23...
  • Page 88: Figure 5-6 Multiple Customers With Common Vlans Across Multiple Routers

    ! Map tunnel entry ports to backbone VLAN vlan enable stackable-vlan on et.2.1 backbone-vlan RED vlan enable stackable-vlan on et.3.1 backbone-vlan RED 5-24 Riverstone Networks RS Switch Router User Guide Release 8.0 RED VLAN et.5.1 et.11.1...
  • Page 89 ! Map tunnel entry ports to backbone VLAN vlan enable stackable-vlan on et.8.1 backbone-vlan PURPLE vlan enable stackable-vlan on et.9.1 backbone-vlan PURPLE Tunneling VLAN packets across MANs Riverstone Networks RS Switch Router User Guide Release 8.0 5-25...
  • Page 90: Figure 5-7 Customer Vlan With Multiple Tunnel Entry/Exit Ports

    (et.6.1 and et.7.1 on R2). et.2.1 et.4.1 et.3.1 Figure 5-7 Customer VLAN with multiple tunnel entry/exit ports 5-26 Riverstone Networks RS Switch Router User Guide Release 8.0 BLUE VLAN RED VLAN (backbone) Bridging Configuration Guide et.6.1 et.5.1...
  • Page 91 RED and will be seen by C1 users on R2 and R3. C2 users on R4 will not see the C1 traffic since the tunnel backbone port on R4 belongs to the backbone VLAN PURPLE. Tunneling VLAN packets across MANs Riverstone Networks RS Switch Router User Guide Release 8.0 5-27...
  • Page 92: Figure 5-8 Customer Vlan With Multiple Tunnel Entry Ports Across Multiple Routers

    ! Make et.3.1 both a trunk port and a tunnel backbone port vlan make trunk-port et.3.1 stackable-vlan ! Map tunnel entry port to backbone VLAN vlan enable stackable-vlan on et.2.1 backbone-vlan PURPLE 5-28 Riverstone Networks RS Switch Router User Guide Release 8.0 Bridging Configuration Guide et.5.1 et.4.1 RED VLAN et.9.1...
  • Page 93 ! Make et.8.1 both a trunk port and a tunnel backbone port vlan make trunk-port et.8.1 stackable-vlan ! Map tunnel exit ports to backbone VLAN vlan enable stackable-vlan on et.9.1 backbone-vlan PURPLE Tunneling VLAN packets across MANs Riverstone Networks RS Switch Router User Guide Release 8.0 5-29...
  • Page 94: Figure 5-9 Stp Enabled In Customer Vlans

    ! Enable STP on et.1.1 stp enable port et.1.1 ! Optional STP configurations stp set bridging hello-time 3 5-30 Riverstone Networks RS Switch Router User Guide Release 8.0 BLUE VLAN RED VLAN (backbone) GREEN VLAN Bridging Configuration Guide C1R2 et.8.1...
  • Page 95 ! Map tunnel entry ports to backbone VLAN vlan enable stackable-vlan on et.2.1 backbone-vlan RED vlan enable stackable-vlan on et.3.1 backbone-vlan RED Tunneling VLAN packets across MANs Riverstone Networks RS Switch Router User Guide Release 8.0 5-31...
  • Page 96 5-10, customers C1, C2, C3, C4, and C5 each have a VLAN that will use port et.2.1 on R1 as the tunnel entry port. On R2, port et.6.1 will be the tunnel exit port for traffic for all five VLANs. 5-32 Riverstone Networks RS Switch Router User Guide Release 8.0 Bridging Configuration Guide...
  • Page 97: Figure 5-10 Multiple Vlans On Single Tunnel Entry Port

    Figure 5-10 Multiple VLANs on single tunnel entry port AQUA VLAN PURPLE VLAN PINK VLAN GREEN VLAN BLUE VLAN RED VLAN (backbone) Riverstone Networks RS Switch Router User Guide Release 8.0 5-33 Tunneling VLAN packets across MANs C1 ... C5 et.6.1 et.5.1...
  • Page 98 VLAN. That is, the vlan enable stackable-vlan stackable-vlan the customer VLANs. 5-34 Riverstone Networks RS Switch Router User Guide Release 8.0 commands must occur before the vlan add ports command. Once the command is issued, ports cannot be added to or removed from...
  • Page 99: Displaying Stackable Vlan Information

    Applied On: et.6.1 Flooded On: et.3.8,et.6.1 Stackable VLAN Trunk Ports: et.3.8 Stackable VLAN Access Ports: command to display the configuration of stackable VLANs on the RS. For Riverstone Networks RS Switch Router User Guide Release 8.0 5-35 Tunneling VLAN packets across MANs...
  • Page 100 VLAN of the same protocol type. This allows multiple VLANs to use the same tunnel entry port. 5-36 Riverstone Networks RS Switch Router User Guide Release 8.0 Bridging Configuration Guide...
  • Page 101: Smarttrunk Configuration Guide

    Round-robin – Flows are set up on ports sequentially. Link-utilization – A new flow is established on the port that is currently the least utilized (the default). Riverstone Networks RS Switch Router User Guide Release 8.0 6-1...
  • Page 102: Creating A Smarttrunk

    (either all 10/100 Mbps Ethernet or Gigabit Ethernet, but not both). Here is an example of adding ports et.3.1 rs(config)#smarttrunk add ports et.3.1-8 to st.1 6-2 Riverstone Networks RS Switch Router User Guide Release 8.0 , which uses no control protocol: st.1 through to a SmartTRUNK: et.3.8...
  • Page 103: Specifying Traffic Load Policy

    C sco 7500 Router st.1 st.3 st.5 Cisco Catalyst 5000 Figure 6-1 SmartTRUNK configuration example for information about configuring SLR. Router st.2 Switch Switch Riverstone Networks RS Switch Router User Guide Release 8.0 6-3 SmartTRUNK Example Configuration Switch st.4 Server...
  • Page 104 Notice in the example above that because R1 and R2 are operating only as Note switches (layer-2 traffic only), their SmartTRUNKs were not assigned to interfaces. 6-4 Riverstone Networks RS Switch Router User Guide Release 8.0 SmartTRUNK Configuration Guide...
  • Page 105: Configuring The Link Aggregation Control Protocol (Lacp)

    10 Configuring the Link Aggregation Control Protocol (LACP) actor-key partner-key (10/100 or Gigabit Ethernet) port-type aggregation aggregatable partner-system-priority partner-system-id partner-system-id Riverstone Networks RS Switch Router User Guide Release 8.0 6-5 individual (MAC).
  • Page 106: Lacp Configuration Example

    To view the configuration of any of the RSs in the example below, click on Timesaver that switch’s image. Figure 6-2 LACP configuration example 6-6 Riverstone Networks RS Switch Router User Guide Release 8.0 SmartTRUNK Configuration Guide command. Here is lacp set aggregator...
  • Page 107 Riverstone Networks RS Switch Router User Guide Release 8.0 6-7 , and st.14 st.23 st.24 st.34 consist of st.14 st.23...
  • Page 108 Notice that the Note the corresponding ports on the RS at the other end of the SmartTRUNK. 6-8 Riverstone Networks RS Switch Router User Guide Release 8.0 specified in each configuration is the partner-key SmartTRUNK Configuration Guide...
  • Page 109: Smarttrunk Load Redistribution

    To determine the length of time in seconds for one Redistribution Interval, multiply the Status Interval by the Redistribution Interval value. For example, using the defaults, SmartTRUNK Load Redistribution Section 6.3.1, "Configuring SmartTRUNKs for Riverstone Networks RS Switch Router User Guide Release 8.0 6-9...
  • Page 110 Redistribute L2 Flows Redistribute IP Flows Ignore LWM Event Stats Discard Max Flow Search Attempts 100 6-10 Riverstone Networks RS Switch Router User Guide Release 8.0 to the SmartTRUNK: , enter the following command from Enable mode: st.4 1 seconds...
  • Page 111: Additional Controls Provided By Slr

    , enter the following command from Enable mode: st.4 Over Above Above Below Capacity History History History History show load-redistribution-params set load-redistribution-params load-redistribution-params Riverstone Networks RS Switch Router User Guide Release 8.0 6-11 SmartTRUNK Load Redistribution Below Port Capacity History Mb/s command...
  • Page 112 In such configurations, low water-mark events combine with high water-mark events to increase the efficiency of SLR’s redistribution process. 6-12 Riverstone Networks RS Switch Router User Guide Release 8.0 command is used to specify the redistribution of layer-3 parameter. For example: command is used to specify the use of low water-mark parameter.
  • Page 113: Cmts Configuration Guide

    LAN centric manner. The green LED indicates that a link is established and a yellow LED indicates that a packet is being transmitted or received. Figure 7-1 has five connectors. Connectors US 1 through US 4 are Riverstone Networks RS Switch Router User Guide Release 8.0 7-1...
  • Page 114: Provisioning The Headend

    Internet addresses must be obtained and allocated. • The DHCP, TFTP, DNS and TOD servers must be configured and enabled. The following sections describe connecting and configuring the RS 8000/8600 CMTS. 7-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Link Link Link...
  • Page 115: Headend Certification

    RS 8000/8600 CMTS modules through the low filter port. Figure 7-2. The combiner refers to all Riverstone Networks RS Switch Router User Guide Release 8.0 7-3 Provisioning the Headend...
  • Page 116: Figure 7-2 Cmts Connection Overview

    10/100BASE-TX 10/100B CM/1 CM/1 G80-PAC G80-P G80-P G80-PAC 100-125~5A 100-125~5A 200-240~3A 200-240~3A 50-60 Hz 50-60 Hz G80-CHS G80-CHS Figure 7-2 CMTS Connection Overview 7-4 Riverstone Networks RS Switch Router User Guide Release 8.0 ASE-SX ASE-TX ASE-TX ASE-TX CMTS Configuration Guide...
  • Page 117: Dhcp Servers

    After installing the RS 8000/8600 router chassis and the CMTS module at the headend site, connect the CMTS module to the HFC network and configure the network. The following sections describe how to connect to and configure the downstream. Connecting and Configuring the Downstream Riverstone Networks RS Switch Router User Guide Release 8.0 7-5...
  • Page 118: Installing And Configuring The Upconverter

    The same programming content is received within each group of fiber nodes or regions. Different groups will receive different content. 7-6 Riverstone Networks RS Switch Router User Guide Release 8.0 CMTS Configuration Guide...
  • Page 119: Completing The Downstream Configuration

    You must adjust the upstream input level to the RS RS 8000/8600 CMTS line card so the output of the laser receiver is the same as the input to your upstream port or your RS 8000/8600 CMTS module. Connecting the Upstream to the Laser Receiver Riverstone Networks RS Switch Router User Guide Release 8.0 7-7...
  • Page 120: Configuring The Cmts Module

    DOCSIS Enable the upstream channels are necessary. The following command enables upstream channel 1 by entering: cmts set uschannel cm.7.1 upstream 1 state on 7-8 Riverstone Networks RS Switch Router User Guide Release 8.0 CMTS Configuration Guide...
  • Page 121: Configuring The Cmts Module In A Routed Network

    Establish the authorization text string for the CMTS module by entering: cmts set headend cm.7.1 auth-str DOCSIS Enable the upstream by entering the following command: cmts set uschannel cm.7.1 upstream all state on Configuring the CMTS Module Riverstone Networks RS Switch Router User Guide Release 8.0 7-9...
  • Page 122: Cmts Configuration Examples

    MOONLINK Eth interface: 80.1.1.1 The DHCP server software used in these examples is version 2 of the ISC DHCP Note Distribution. Please see http://www.isc.org for more details on this server. 7-10 Riverstone Networks RS Switch Router User Guide Release 8.0 CMTS Configuration Guide...
  • Page 123: Example One: Multiple Isps Share A Single Dhcp Server

    AMERILINK AABBCC:000001/50.2.1.101 AMERILINK MODEM #1 AABBCC:000002/50.2.1.102 AMERILINK MODEM #2 DHCP Server 30.1.1.1 et.1.3 80.1.1.1 et.1.1 et.1.2 MOONLINK cm.5.1 50.2.1.1/80.2.1.1 DDEEFF:000001/80.2.1.101 MOONLINK MODEM #1 DDEEFF:000001/80.2.1.102 MOONLINK MODEM #2 Riverstone Networks RS Switch Router User Guide Release 8.0 7-11 CMTS Configuration Examples...
  • Page 124 CMTS address-netmask 50.2.1.1/16 vlan CMTS interface add ip CMTS address-netmask 80.2.1.1/16 interface Create ip DHCP address-netmask 30.1.1.1/16 vlan DHCP ip helper-address interface CMTS 30.1.1.100 7-12 Riverstone Networks RS Switch Router User Guide Release 8.0 CMTS Configuration Guide...
  • Page 125 50.1.1.100; # tftp server next-server 50.1.1.100; option routers 50.2.1.1; host cm1 { hardware ethernet AABBCC:000001; fixed address 50.2.1.101; host cm2 { hardware ethernet AABBCC:000002; fixed address 50.2.1.102; CMTS Configuration Examples Riverstone Networks RS Switch Router User Guide Release 8.0 7-13...
  • Page 126 80.1.1.100; # tftp server next-server 80.1.1.100; option routers 80.2.1.1; host cm1 { hardware ethernet DDEEFF:000001; fixed address 80.2.1.101; host cm2 { hardware ethernet DDEEFF:000002: fixed address 80.2.1.102; 7-14 Riverstone Networks RS Switch Router User Guide Release 8.0 CMTS Configuration Guide...
  • Page 127: Example Two: Multiple Isps With Multiple Dhcp Servers

    CMTS 50.1.1.100 ip helper address interface CMTS 80.1.1.100 et.1.2 et.1.1 cm.5.1 50.2.1.1/80.2.1.1 DDEEFF:000001/80.2.1.101 MOONLINK MODEM #1 DDEEFF:000002/80.2.1.102 MOONLINK MODEM #2 Riverstone Networks RS Switch Router User Guide Release 8.0 7-15 CMTS Configuration Examples 80.1.1.1 MOONLINK + DHCP Server...
  • Page 128 { hardware ethernet AABBCC:000001; fixed address 50.2.1.101; host cm2 { hardware ethernet AABBCC:000002; fixed address 50.2.1.102; # MOONLINK’s network: DON’T CONFIGURE! subnet 80.2.0.0 netmask 255.255.0.0 { 7-16 Riverstone Networks RS Switch Router User Guide Release 8.0 CMTS Configuration Guide...
  • Page 129 # MOONLINK’s network : OK TO CONFIGURE subnet 80.2.0.0 netmask 255.255.0.0 { option routers 80.2.1.1; host cm1 { hardware ethernet DDEEFF:000001; fixed address 80.2.1.101; host cm2 { hardware ethernet DDEEFF:000002; fixed address 80.2.1.102; CMTS Configuration Examples Riverstone Networks RS Switch Router User Guide Release 8.0 7-17...
  • Page 130: Example Three: Overlapping Vlans With Multiple Dhcp Servers And Client-Vlan Bindings7-18

    DOCSIS standard, some modems may not be capable of recognizing vendor extensions. A vendor extension is the line in the file that identifies a vendor. See the first line in the file below. 7-18 Riverstone Networks RS Switch Router User Guide Release 8.0 MOONLINK + et.1.2...
  • Page 131 Protocol bitmasks are defined as: • IP – 0x01 • IPX – 0x02 • OTHER – 0x80 To specify both IP and IPX, OR the values together to yield 0x03 Note CMTS Configuration Examples Riverstone Networks RS Switch Router User Guide Release 8.0 7-19...
  • Page 132: Anti-Spoofing

    50.1.1.1/16 vlan dhcp interface create ip cmts1 address-netmask 50.2.1.1/16 vlan cmts ! Enable anti-DHCP spoofing cmts set headend cm.5.1 anti-dhcp-spoofing enable 7-20 Riverstone Networks RS Switch Router User Guide Release 8.0 et.1.1 cm.5.1 DDEEFF: 000002 / 50.2.1.X...
  • Page 133: Anti-Ip-Spoofing

    50.2.1.1/16 vlan cmts et.1.1 cm.5.1 DDEEFF: 000001 / 50.2.1.X MODEM #1 00BOCC: D6B4A / 50.2.1.91 CPE #1 DDEEFF: 000002 / 50.2.1.X MODEM #2 00AOCC: D5B3A / 50.2.1.92 CPE #2 Riverstone Networks RS Switch Router User Guide Release 8.0 7-21 Anti-Spoofing...
  • Page 134 Implementing DHCP-strict forces all CPEs to use DHCP. This implementation provides strict provisioning over IP address usage. Here is the command to implement DHCP-strict: ! Enable dhcp strict cmts set headend cm.5.1 dhcp-strict 7-22 Riverstone Networks RS Switch Router User Guide Release 8.0 anti-ip-spoofing command. dhcp-ipaddr-snoop CMTS Configuration Guide...
  • Page 135: Atm Configuration Guide

    Riverstone RS Switch Router. This chapter discusses the following tasks: • Configuring ATM ports • Configuring virtual channels • Traffic shaping • Managing traffic • Bridging ATM traffic • Routing ATM traffic • Configuring point-to-point connections (PPP) Riverstone Networks RS Switch Router User Guide Release 8.0 8-1...
  • Page 136: Configuring Atm Ports

    Note Interface Reference Manual for a complete description of the APS commands available on the Riverstone RS Switch Router. 8-2 Riverstone Networks RS Switch Router User Guide Release 8.0 ATM Configuration Guide Section 9, Refer to the SONET chapter in the...
  • Page 137: Cell Scrambling

    # of virtual channels = 2 bits allocated for VPI ; where (12-n) is the number of bits allocated for VCI, and n is the number of Riverstone Networks RS Switch Router User Guide Release 8.0 8-3 Configuring ATM Ports...
  • Page 138: Displaying Port Information

    Service Definition: Service Class: Peak Bit Rate: Encapsulation Type: LLC Multiplexing Traffic Type: F5-OAM: 8-4 Riverstone Networks RS Switch Router User Guide Release 8.0 command for a PDH PHY interface: Best Effort Requests & Responses SONET STS-3c MMF SONET Local...
  • Page 139: Configuring Virtual Channels

    “RMON-like” statistics, counts of frames sent and received, unicast/broadcast/multicast frames sent and received, etc In the following example, traffic statistics are enabled on port 5.1.1.100 rs(config)# atm set vcl port at.5.1.1.100 traffic-stats-enable Riverstone Networks RS Switch Router User Guide Release 8.0 8-5 Configuring Virtual Channels...
  • Page 140: Traffic Shaping

    Users may limit the bandwidth by specifying a PCR value. The SCR and MBS are ignored. This service class is intended for applications that do not require specific traffic guarantees. UBR is the default. 8-6 Riverstone Networks RS Switch Router User Guide Release 8.0 atm show stats Received...
  • Page 141 Service Class: Peak Bit Rate: 10000 Kbits/sec (23584 CPS) Encapsulation Type: LLC Multiplexing Traffic Type: RFC-1483, multi-protocol F5-OAM: Responses Only command as shown in the atm show service Riverstone Networks RS Switch Router User Guide Release 8.0 8-7 Traffic Shaping...
  • Page 142: Traffic Management

    Until congestion occurs, the traffic is transmitted on a first-come-first-serve basis, and may not match the requested percentages. 8-8 Riverstone Networks RS Switch Router User Guide Release 8.0 command to set the following QoS policies on the ATM multi-rate line card:...
  • Page 143: Configuring Virtual Channel Groups (Oc-12)

    VC’s QoS policy, you can set a value for relative latency parameter. Increasing relative latency can increase the accuracy of the command. The best way to determine the correct atm set vcl-buffering Riverstone Networks RS Switch Router User Guide Release 8.0 8-9 Traffic Management...
  • Page 144: Traffic Management Configuration Example

    Traffic from the Server heading to Client2 is assigned medium priority in the event that the connection becomes oversubscribed. • Traffic from the Server heading to Client3 is assigned low priority in the event that the connection becomes oversubscribed. 8-10 Riverstone Networks RS Switch Router User Guide Release 8.0 command. command. ATM Configuration Guide...
  • Page 145: Figure 8-1 Traffic Management Sample Configuration

    ATM multi-rate line cards, then you would use QoS policies to manage the traffic. at.1.1 at.1.1 et.1.1 100.0.0.1/24 100.0.0.2/24 et.1.2 et.1.3 Riverstone Networks RS Switch Router User Guide Release 8.0 8-11 Traffic Management Client1 201.0.0.1/24 Client2 202.0.0.1/24 203.0.0.1/24 Client3...
  • Page 146 Configure an interface on the ethernet port to which each client is connected. interface create ip 201.0.0.1/24 port et.1.1 interface create ip 202.0.0.1/24 port et.1.2 interface create ip 203.0.0.1/24 port et.1.3 8-12 Riverstone Networks RS Switch Router User Guide Release 8.0 ATM Configuration Guide...
  • Page 147 200.0.0.1/24 201.0.0.1/24 qos set ip to_client2 medium 200.0.0.1/24 202.0.0.1/24 qos set ip to_client3 low 200.0.0.1/24 203.0.0.1/24 Riverstone Networks RS Switch Router User Guide Release 8.0 8-13 Traffic Management...
  • Page 148 Port Control vg.1 Conf vg.1 Actv 8-14 Riverstone Networks RS Switch Router User Guide Release 8.0 High Medium ATM Configuration Guide Bcast...
  • Page 149: Bridging Atm Traffic

    There are two separate VLANs in this network, VLAN A and VLAN B. VLAN A is connected to ethernet port et.5.1, and VLAN B is connected to ethernet port et.6.2. Section 5, "Bridging Configuration Guide." Riverstone Networks RS Switch Router User Guide Release 8.0 8-15 Bridging ATM Traffic...
  • Page 150: Figure 8-2 Bridging Atm Traffic Configuration Example

    Bridging ATM Traffic ATM Configuration Guide VLAN A et.5.1 at.4.3 et.6.2 VLAN B Figure 8-2 Bridging ATM traffic configuration example 8-16 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 151: Enabling Forced Bridging On A Virtual Channel

    This is similar to ATM switching functionality, but packets instead of cells are switched. To configure the cross-connects, you need to specify the cross-connected ports. Then all traffic that is received on one VC is tunneled to the other VC. Riverstone Networks RS Switch Router User Guide Release 8.0 8-17 Bridging ATM Traffic...
  • Page 152: Limiting Mac Addresses Learned On A Vc

    ATM physical connection. This is accomplished by setting up two VCs on the ATM port, each with its own service profiles and bandwidth. 8-18 Riverstone Networks RS Switch Router User Guide Release 8.0 ATM Configuration Guide...
  • Page 153: Figure 8-3 Routing Atm Traffic Configuration Example

    30.1.1.128/24 40.1.1.128/24 VPI = 0, VCI =100 VPI = 0, VCi = 101 CBR, 100 Mbit UBR, 20 Mbit at 3.1 50.1.1.130/24 et 5.1 Subnet C 50.1.1.X/24 Riverstone Networks RS Switch Router User Guide Release 8.0 8-19 Routing ATM Traffic...
  • Page 154 30.1.1.128/24 action policy-first Apply the IP policies to the ethernet ports. rs1(config)# ip-policy subnetAtoCpolicy apply interface subnetA rs1(config)# ip-policy subnetBtoCpolicy apply interface subnetB 8-20 Riverstone Networks RS Switch Router User Guide Release 8.0 ATM Configuration Guide...
  • Page 155: Peer Address Mapping

    VLAN. If any of the peers on the VLAN do not support InArp or IPCP/IPXCP, then a mapped address must be configured to determine the destination address. command. This way, a virtual channel can be dedicated to handle traffic Riverstone Networks RS Switch Router User Guide Release 8.0 8-21 Routing ATM Traffic interface...
  • Page 156: Figure 8-4 Peer Address Mapping Configuration Example

    VC. This allows the RS to route traffic to a specific client without multicasting to every virtual channel. 120.131.0.2/24 at.2.1 RS Router to video server Figure 8-4 Peer address mapping configuration example 8-22 Riverstone Networks RS Switch Router User Guide Release 8.0 Video Client 3 154.15.0.5/24 0,101 ATM Cloud 0,102 Video Client 1 0,103 114.111.1.1/24...
  • Page 157: Configuring Ppp (Oc-12)

    The following example illustrates how to configure a PPP connection between a DSL modem and the RS. It uses CHAP authentication on an AAA server for the PPP connection. Chapter 30, "WAN Configuration." Riverstone Networks RS Switch Router User Guide Release 8.0 8-23 Configuring PPP (OC-12) for the traffic parameter. You...
  • Page 158: Figure 8-5 Ppp Configuration Example

    For this configuration example, configure RADIUS for PPP authentication on an AAA server. rs(config)# radius set key secretpassword Identify the AAA server. rs(config)# radius set server 10.1.1.1 Enable RADIUS authentication. rs(config)# radius enable 8-24 Riverstone Networks RS Switch Router User Guide Release 8.0 et.1.1 at.1.1 AAA Server 10.1.1.1 ATM Configuration Guide...
  • Page 159 Total Authentication (Enabled/Up): 0/0 Virtual Path Identifier: Virtual Channel Identifier: Status: Status: Status: Bridging Status: Authentication Status: Authentication Type: Disabled/Down Disabled/Down Disabled/Down Disabled/Down Disabled/Down None/None Riverstone Networks RS Switch Router User Guide Release 8.0 8-25 Configuring PPP (OC-12) command atm show ppp...
  • Page 160 Configuring PPP (OC-12) ATM Configuration Guide 8-26 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 161: Packet-Over-Sonet Configuration Guide

    This is because only the primary addresses of both the local and peer devices are exchanged during IP Control Protocol (IPCP) negotiation. Section 11.2, "Configuring IP Interfaces Riverstone Networks RS Switch Router User Guide Release 8.0 9-1 sonet...
  • Page 162: Configuring Packet-Over-Sonet Links

    Bit Error Rate Thresholds" Modify any other PoS operating parameters, as needed. The following table lists the operating parameters that you can modify and the configuration commands that you use. 9-2 Riverstone Networks RS Switch Router User Guide Release 8.0 pos21 20.11.11.21/24...
  • Page 163: Configuring Automatic Protection Switching

    Configuring Automatic Protection Switching <port> sonet set framing sdh|sonet <port> sonet set loopback <port> sonet set pathtrace <port> sonet set circuit-id <port> sonet set fcs-16-bit <port> sonet set no-scramble Riverstone Networks RS Switch Router User Guide Release 8.0 9-3...
  • Page 164: Configuring Working And Protecting Ports

    Also, an option can be applied to either the working port or the protecting port, but not both working and protecting ports at the same time. 9-4 Riverstone Networks RS Switch Router User Guide Release 8.0 Packet-over-SONET Configuration Guide <working-port>...
  • Page 165: Specifying Bit Error Rate Thresholds

    (1 out of 1,000 bits transmitted is in error). Signal failure is <port> <number> sonet set sd-ber <port> <number> sonet set sf-ber Riverstone Networks RS Switch Router User Guide Release 8.0 9-5 Specifying Bit Error Rate Thresholds <port> revertive on|off <port> WTR-timer <minutes>...
  • Page 166: Monitoring Pos Ports

    PoS port. Display summary information for specified PoS port. EXAMPLE CONFIGURATIONS This section shows example configurations for PoS links. 9-6 Riverstone Networks RS Switch Router User Guide Release 8.0 <port list> sonet show medium <port list> sonet show aps sonet show pathtrace <port list>...
  • Page 167: Aps Pos Links Between Rs's

    Figure 9-3 PoS link between the RS and a CISCO router The following is the configuration for router A: interface create ip so-1 address-netmask 40.1.1.1/16 port so.6.1 pos11 (working) 20.11.11.20/24 so.13.1 so.13.2 (protecting) 40.1.1.2/16 POS1/0 Riverstone Networks RS Switch Router User Guide Release 8.0 9-7 Example Configurations Router Router...
  • Page 168: Pos Link Between The Rs And A Juniper Router

    The following is the configuration for router B: root# set interfaces so-0/1/0 unit 0 family inet address 40.1.1.2/16 root# set interfaces so-0/1/0 encapsulation ppp root# set interfaces so-0/1/0 sonet-options fcs 32 9-8 Riverstone Networks RS Switch Router User Guide Release 8.0 so-1 40.1.1.1/16 Packet-over-SONET Configuration Guide Router 40.1.1.2/16...
  • Page 169: Bridging And Routing Traffic Over A Pos Link

    L2 cloud, a Layer 2 switch. Router so.6.1 Layer 3 1.1.1.2/8 so-1 40.1.1.1/16 L2 Ethernet Cloud Bridged Encapsulation Riverstone Networks RS Switch Router User Guide Release 8.0 9-9 Example Configurations Router int1 so.6.1 gi.5.1 Router 50.1.1.2/16 et.2.1...
  • Page 170 PoS ports that will be trunk ports (i.e., support the 802.1q protocol) must be Note configured for bridged encapsulation. See the documentation for the ppp-encaps-bgd Interface Reference Manual. 9-10 Riverstone Networks RS Switch Router User Guide Release 8.0 command in the Riverstone RS Switch Router Command Line Packet-over-SONET Configuration Guide ppp set...
  • Page 171: 10 Dhcp Configuration Guide

    Where several subnets are accessed through a single port, you can also define multiple scopes on the same interface and group the scopes together into a “superscope.” Riverstone Networks RS Switch Router User Guide Release 8.0 10-1...
  • Page 172: Configuring An Ip Address Pool

    NetBIOS scope of the client netbios-scope To define the parameters that the DHCP server gives the clients, enter the following command in Configure mode: Define client parameters. dhcp 10-2 Riverstone Networks RS Switch Router User Guide Release 8.0 V.RSH! LSUDQJH! dhcp define pool V.RSH!
  • Page 173: Configuring A Static Ip Address

    V.RSH! dhcp attach superscope dhcp global set lease-database dhcp global set commit-interval command to specify this interval; the default is one hour. Riverstone Networks RS Switch Router User Guide Release 8.0 10-3 Updating the Lease Database LSDGGU! QDPH! XUO! KRXUV!
  • Page 174: Monitoring The Dhcp Server

    Create an IP interface called ‘clients’ with the address 10.1.1.1 for the VLAN ‘client_vlan’. interface create ip clients address-netmask 10.1.1.1./16 vlan client_vlan 10-4 Riverstone Networks RS Switch Router User Guide Release 8.0 dhcp flush dhcp show binding [active|expired|static]...
  • Page 175: Configuring Secondary Subnets

    The following example shows a simple configuration to support secondary subnets 10.1.x.x and 10.2.x.x. Define the network parameters for ‘scope1’ with the default gateway 10.1.1.1. dhcp scope1 define parameters address-netmask 10.1.0.0/16 gateway 10.1.1.1 dns-domain acme.com dns-server 10.1.44.55 Configuring Secondary Subnets Riverstone Networks RS Switch Router User Guide Release 8.0 10-5...
  • Page 176: Secondary Subnets And Directly-Connected Clients

    10.1.1.1/16 port et.1.1 Assign a secondary address 10.2.1.1 to the interface ‘clients’. interface add ip clients address-mask 10.2.1.1/16 10-6 Riverstone Networks RS Switch Router User Guide Release 8.0 command configures a secondary address for an interface interface add ip command.
  • Page 177: Interacting With Relay Agents

    The following example shows a simple configuration to support clients across a relay agent. Create an interface ‘clients’ with the primary address 10.1.1.1. interface create ip clients address-mask 10.1.1.1/16 port et.3.3 Riverstone Networks RS Switch Router User Guide Release 8.0 10-7 Interacting with Relay Agents...
  • Page 178 Define the network parameters for ‘scope1’ with the default gateway 10.5.1.1 (the relay agent for the client). dhcp scope1 define parameters address-netmask 10.5.0.0/16 gateway 10.5.1.1 dns-domain acme.com Define the address pool for ‘scope1’. dhcp scope1 define pool 10.5.1.10-10.5.1.20 10-8 Riverstone Networks RS Switch Router User Guide Release 8.0 DHCP Configuration Guide...
  • Page 179: Ip Routing Configuration Guide

    IP multicasting allows a host to send traffic to a subset of all hosts. These hosts subscribe to group membership, thus notifying the RS of participation in a multicast transmission. Guide.". Riverstone Networks RS Switch Router User Guide Release 8.0 11-1...
  • Page 180: Configuring Ip Interfaces And Parameters

    To configure a secondary address of 10.23.4.36 with a 24-bit netmask (255.255.255.0) on the IP interface int4: rs(config)# interface add ip int4 address-netmask 10.23.4.36/24 11-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Chapter 19, "Multicast Routing option with the...
  • Page 181: Configuring Ip Interfaces For A Vlan

    If the interface ‘int1’ has multiple IP addresses, you can specify which address to borrow as shown in the following example: rs(config)# interface create ip int3 unnumbered int1 unnumbered-addr 10.1.1.1 port so.3.1 Configuring IP Interfaces and Parameters interface create ip Riverstone Networks RS Switch Router User Guide Release 8.0 11-3...
  • Page 182: Configuring Jumbo Frames

    JUMBO1 rs(config)# interface create ip int3 address-netmask 10.20.3.42/24 vlan JUMBO1 11-4 Riverstone Networks RS Switch Router User Guide Release 8.0 IP Routing Configuration Guide command. You can also set the MTU at the port set mtu...
  • Page 183: Configuring Address Resolution Protocol (Arp)

    Configuring Address Resolution Protocol (ARP) commands, the Control Module re-adds the ARP entries even if arp add command. To permanently remove an ARP entry, use the Riverstone Networks RS Switch Router User Guide Release 8.0 11-5 negate...
  • Page 184: Configuring Proxy Arp

    RARP requests. You can specify individual interfaces or all interfaces. To cause the RS’s RARP server to respond to RARP requests from interface int1: rs(config)# rarpd set interface int1 11-6 Riverstone Networks RS Switch Router User Guide Release 8.0 IP Routing Configuration Guide...
  • Page 185: Defining Mac-To-Ip Address Mappings

    The RS can be configured to specify DNS servers, which supply name services for DNS requests. You can specify up to three DNS servers. rarpd show interface rarpd show mappings <InterfaceName> statistics show rarp Riverstone Networks RS Switch Router User Guide Release 8.0 11-7 Configuring DNS Parameters command, rarp add |all...
  • Page 186: Configuring Ip Services (Icmp)

    10.2.48.8 111 To forward UDP broadcast packets received on interface int3 to all other interfaces: rs(config)# ip helper-address interface int3 all-interfaces 11-8 Riverstone Networks RS Switch Router User Guide Release 8.0 IP Routing Configuration Guide command allows you to...
  • Page 187: Configuring Direct Broadcast

    The RS provides display of IP statistics and configurations contained in the routing table. Information displayed provides routing and performance information. command when you are forwarding traffic from more than one interface in Riverstone Networks RS Switch Router User Guide Release 8.0 11-9 Configuring Direct Broadcast ip enable...
  • Page 188 210.11.99.0/24 To display additional IP information, enter the following command in Enable mode: Show ARP table entries. Show IP interface configuration. Show DNS parameters. 11-10 Riverstone Networks RS Switch Router User Guide Release 8.0 Foreign Address 127.0.0.1:162 Gateway ------- 50.1.1.2 50.1.1.2...
  • Page 189: 11.12 Configuring Ip Forwarding

    RS will send an ICMP redirect message to the originating device. To do so, enter the following command in Configure mode:. hrt set icmp icmp-redirect-count <number> HRT is not supported on the following modules: ATM-OC3, ATM-OC12, HSSI, Note Serial and CMTS. Riverstone Networks RS Switch Router User Guide Release 8.0 11-11 Configuring IP Forwarding...
  • Page 190: 11.15 Forwarding Mode

    Type of Service (TOS) To configure a custom forwarding profile, perform the following tasks: 11-12 Riverstone Networks RS Switch Router User Guide Release 8.0 command to configure the ports on the RS to use either the IP Routing Configuration Guide...
  • Page 191: Enabling A Port

    Display one or more custom forwarding profiles. Display the custom forwarding profile of the specified slot(s). SRUWOLVW ip show custom-forwarding-profile <string> | all ip show custom-forwarding-mode slot <number> |all Riverstone Networks RS Switch Router User Guide Release 8.0 11-13 Forwarding Mode...
  • Page 192: Using Custom Forwarding With Other Rs Features

    A host can also send a router solicitation, to which the router discovery server on the RS will respond with a unicast router advertisement. 11-14 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 193 To specify the maximum time between the sending of router advertisements on an interface: rs#(config) rdisc set interface rs4 max-adv-interval 1200 rdisc add address Riverstone Networks RS Switch Router User Guide Release 8.0 11-15 Configuring Router Discovery rdisc add command...
  • Page 194: 11.17 Setting Memory Thresholds

    The routing information base (RIB) is stored in memory in the RS. There are four configurable thresholds that represent the percentages of the available memory that is used for storing RIB entries. 11-16 Riverstone Networks RS Switch Router User Guide Release 8.0 IP Routing Configuration Guide...
  • Page 195: Table 11-1 Default Memory Thresholds

    Only one route is allowed to a given destination. If there is more than one route to a given destination, the least preferred route is deleted. No new routes are added. Riverstone Networks RS Switch Router User Guide Release 8.0 11-17 Setting Memory Thresholds ip-router global set...
  • Page 196: 11.18 Configuration Examples

    RED address-netmask 10.50.0.1/255.255.0.0 vlan BLUE You can also assign an IP or IPX interface directly to a physical port. 11-18 Riverstone Networks RS Switch Router User Guide Release 8.0 Action • A new BGP route is added only if it is the only BGP route to the given destination.
  • Page 197: 12 Vrrp Configuration Guide

    VRRP configuration is up, the IP addresses assigned to the virtual router are always available, and the end hosts can send packets to these IP addresses without interruption. 12.1 CONFIGURING VRRP This section presents three sample VRRP configurations: Riverstone Networks RS Switch Router User Guide Release 8.0 12-1...
  • Page 198: Basic Vrrp Configuration

    Backups. In this configuration, Router R1 is the Master for virtual router because it owns 10.0.0.1/16, the IP address associated with virtual router 12-2 Riverstone Networks RS Switch Router User Guide Release 8.0 VRID=1 10.0.0.1/16...
  • Page 199: Configuration For Router R2

    This configuration allows you to load-balance traffic coming from the hosts on the 10.0.0.0/16 subnet and provides a redundant path to either virtual router. This is the recommended configuration on a network using VRRP. Note Figure 12-1. VRID=1 VRID=2 Riverstone Networks RS Switch Router User Guide Release 8.0 12-3 Configuring VRRP...
  • Page 200: Figure 12-2 Symmetrical Vrrp Configuration

    On line 5, Router R1 associates IP address 10.0.0.2/16 with virtual router own IP address 10.0.0.2/16, it is not the default Master for virtual router 12-4 Riverstone Networks RS Switch Router User Guide Release 8.0 Master for VRID=2 Backup for VRID=1...
  • Page 201: Configuration Of Router R1

    Master for VRID=2 1st Backup for VRID=1 2nd Backup for VRID=3 VRID=2 10.0.0.2/16 Default Route = 10.0.0.2/16 Riverstone Networks RS Switch Router User Guide Release 8.0 12-5 Configuring VRRP Master for VRID=3 2nd Backup for VRID=1 2nd Backup for VRID=2 VRID=3 10.0.0.3/16...
  • Page 202 200. If no other routers in the VRRP configuration have a higher priority, Router R1 will take over as Master for virtual routers , should Router R2 or R3 go down. VRID=2 VRID=3 12-6 Riverstone Networks RS Switch Router User Guide Release 8.0 and the primary Backup for virtual routers VRID=1 , the primary backup for virtual router VRID=2...
  • Page 203: Virtual Router

    100. Since Router R1’s backup priority for this virtual VRID=3 Default Priority Configured Priority 200 (see line 8) 255 (address owner) 255 (address owner) 100 (see line 9) Riverstone Networks RS Switch Router User Guide Release 8.0 12-7 Configuring VRRP VRID=3...
  • Page 204: Configuration Of Router R3

    Since 100 is the default priority, lines 8 and 9, which set the priority to 100, are Note actually unnecessary. They are included for illustration purposes only. 12-8 Riverstone Networks RS Switch Router User Guide Release 8.0 Figure 12-3. VRID=1...
  • Page 205: Additional Configuration

    Configure mode: To set the advertisement interval to 3 seconds: rs(config)# ip-redundancy set vrrp 1 interface int1 adv-interval 3 Configuration", you can specify which Backup router takes over when Riverstone Networks RS Switch Router User Guide Release 8.0 12-9 Additional Configuration...
  • Page 206: Setting Pre-Empt Mode

    12.3 MONITORING VRRP The RS provides two commands for monitoring a VRRP configuration: messages when VRRP events occur, and 12-10 Riverstone Networks RS Switch Router User Guide Release 8.0 ip-redundancy trace , which reports statistics about virtual routers. ip-redundancy show...
  • Page 207: Ip-Redundancy Trace

    VRRP configuration. ip-redundancy show ip-redundancy trace vrrp events enabled ip-redundancy trace vrrp state-transitions enabled ip-redundancy trace vrrp packet-errors enabled ip-redundancy trace vrrp all enabled Riverstone Networks RS Switch Router User Guide Release 8.0 12-11 Monitoring VRRP...
  • Page 208 255 (default value) Virtual MAC address 00005E:0001C8 Advertise Interval 1 sec(s) (default value) Preempt Mode Enabled (default value) Authentication None (default value) Primary Address 10.8.0.2 Associated Addresses 10.8.0.2 12-12 Riverstone Networks RS Switch Router User Guide Release 8.0 VRRP Configuration Guide...
  • Page 209: Vrrp Configuration Notes

    The amount of time that a Backup router will wait before it becomes the new Master is based on the following equation: Master-down-interval = (3 * advertisement-interval) + skew-time The skew-time depends on the Backup router's configured priority: ip-redundancy show vrrp Riverstone Networks RS Switch Router User Guide Release 8.0 12-13 VRRP Configuration Notes...
  • Page 210 SNMP requests directed at the virtual router's IP address. Not responding allows network management to notice that the original Master router (i.e., the IP address owner) is down. 12-14 Riverstone Networks RS Switch Router User Guide Release 8.0 VRRP Configuration Guide...
  • Page 211: 13 Rip Configuration Guide

    To configure RIP in the RS, you must first add interfaces to inform RIP about attached interfaces. Chapter 11, "IP Routing Configuration command. rip start command to inform RIP about the attached interfaces. rip start rip stop Riverstone Networks RS Switch Router User Guide Release 8.0 13-1...
  • Page 212: Configuring Rip Parameters

    RIP V1. Set RIP Version on an interface to RIP V2. Specify that RIP V2 packets should be multicast on this interface. 13-2 Riverstone Networks RS Switch Router User Guide Release 8.0 <interfacename-or-IPaddr> rip add interface <interfacename-or-IPaddr> rip add trusted-gateway <interfacename-or-IPaddr>...
  • Page 213: Configuring Rip Route Preference

    <number> rip set max-routes rip set multipsth off rip set preference Riverstone Networks RS Switch Router User Guide Release 8.0 13-3 Configuring RIP Parameters |all |all |all |all |all...
  • Page 214: Configuring Rip Route Default-Metric

    Show detailed information of all response received by the router. Show detailed information of response packets sent by the router. 13-4 Riverstone Networks RS Switch Router User Guide Release 8.0 rip set default-metric rip show all rip show export-policy rip show globals rip show import-policy <Name or IP-addr>...
  • Page 215: Configuration Example

    Change default metric-in rip set interface R1-if1 metric-in 2 ! Change default metric-out rip set interface R1-if1 metric-out 3 rip trace send request rip show timers Interface 3.2.1.1 Riverstone Networks RS Switch Router User Guide Release 8.0 13-5 Configuration Example...
  • Page 216 Configuration Example RIP Configuration Guide 13-6 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 217: 14 Ospf Configuration Guide

    Configuration of parameters at the area, interface or global level. Parameters that can be configured include retransmission interval, interface transmit delay, router priority, router dead and hello intervals, and authentication key. Riverstone Networks RS Switch Router User Guide Release 8.0 14-1...
  • Page 218: Ospf Multipath

    ID is changed. When the router ID changes, an OSPF router has to flush all its LSAs from the routing domain. If you explicitly specify a router ID, then it would not change, even if all interfaces were to go down. 14-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Configuration". ip-router global set router-id OSPF Configuration Guide <hostname-or-IPaddr>...
  • Page 219: Enabling Ospf

    Section 14.5.2, "Configuring Stub Areas." "Configuring Not-So-Stubby Areas (NSSA)." ospf start ospf stop <area-num> ospf create area Section 14.9, "Configuring OSPF Parameters." To define NSSAs, refer to Riverstone Networks RS Switch Router User Guide Release 8.0 14-3 Enabling OSPF |backbone Section 14.5.3,...
  • Page 220: Configuring Summary Ranges

    Type 3 LSA you want to block. Type 3 LSAs that are not specified in this command will be sent into the stub area. To filter specific summary LSAs from a stub area, enter the following command in Configure mode: Configure summary filters. 14-4 Riverstone Networks RS Switch Router User Guide Release 8.0 ospf add summary-range ospf add network|summary-range <IPaddr-mask>...
  • Page 221: Configuring Not-So-Stubby Areas (Nssa)

    Type 7 LSAs. restrict ospf add stub-host to-area <area-ID> <num> |backbone cost <area-number> ospf set area nssa nssa-cost <number> <IPaddr-mask> ospf add nssa-network <area-addr> area [restrict][host-net] Riverstone Networks RS Switch Router User Guide Release 8.0 14-5 Configuring OSPF Areas...
  • Page 222: Configuring Ospf Interfaces

    To specify a neighboring router that is reachable over the NBMA network, enter the following command in Configure mode: Specify an OSPF NBMA neighbor. 14-6 Riverstone Networks RS Switch Router User Guide Release 8.0 interface create <name-or-IPaddr> ospf add interface <area-addr>...
  • Page 223: Configuring Interfaces For Point-To-Multipoint Networks

    ][transit delay <num> [priority ][hello-interval <num> [router-dead-interval ][poll-interval <num> [key-chain ][authentication-method none|simple|md5][advertise subnet on|off] [passive] Riverstone Networks RS Switch Router User Guide Release 8.0 14-7 Configuring OSPF Interface Parameters to-interface option of the ospf add |all [state <num> <num> <num>...
  • Page 224: Setting The Interface State

    To create a redundant backbone connection via another area Each ABR must be configured with the same virtual link. Note that virtual links cannot be configured through a stub area. 14-8 Riverstone Networks RS Switch Router User Guide Release 8.0 command. ospf set ref-bwdth LQWHUID.H EDQGZLGWK LQ ESV...
  • Page 225: Configuring Ospf Parameters

    Designated Router election. The interval between LSA retransmissions. retransmit-interval <number-or-string> neighbor <area-id> <number-or-string> <num> <num> ] [transit-delay <num> ] [hello-interval <num> ] [poll-interval ] [authentication-method Riverstone Networks RS Switch Router User Guide Release 8.0 14-9 Configuring OSPF Parameters <IPaddr> <num> <num>...
  • Page 226: Configuring Ospf Global Parameters

    Specifies how often a batch of ASE link state advertisements will be generated and flooded into OSPF. The default is 1 time per second. 14-10 Riverstone Networks RS Switch Router User Guide Release 8.0 <number> ospf set spf-holdtime <num> ospf set export-interval...
  • Page 227 <num> <num> [cost ]|[type <num> [inherit-metric] [tag ospf set opaque-capability on|off <number> ospf set preference Chapter 18, "Routing Policy <number> ospf set ref-bwdth Riverstone Networks RS Switch Router User Guide Release 8.0 14-11 Configuring OSPF Parameters <num> ] [as} Configuration".
  • Page 228: 14.10 Monitoring Ospf

    Designated Router (ID) 7.7.7.7, Interface address 100.1.1.1 No backup designated router on this network Timer intervals configured, Hello 10, Dead 40, Wait 40, Retransmit 5 Hello due in 14:58:33 14-12 Riverstone Networks RS Switch Router User Guide Release 8.0 commands accept a destination commands.
  • Page 229 Invalid Router Dead interval Options mismatch Initialize flag mismatch Invalid LS type No such virtual interface Confusing Master/Initial flags Own packet received DD Options mismatch Packet on down virtual interface command: Riverstone Networks RS Switch Router User Guide Release 8.0 14-13 Monitoring OSPF...
  • Page 230: 14.11 Ospf Configuration Examples

    140.1.1.1 to-area 140.1.0.0 ospf add interface 140.1.2.1 to-area 140.1.0.0 ospf add interface 140.1.3.1 to-area 140.1.0.0 ospf add interface 130.1.1.1 to-area backbone 14-14 Riverstone Networks RS Switch Router User Guide Release 8.0 Figure 14-1. address-netmask 120.190.1.1/16 port et.1.2 address-netmask 130.1.1.1/16 port et.1.3...
  • Page 231: Exporting All Interface & Static Routes To Ospf

    Create an OSPF export destination for type-1 routes. ip-router policy create ospf-export-destination ospfExpDstType1 type 1 metric 1 14-1, RIP Version 2 is configured on the interfaces of routers R1 and R2, which Riverstone Networks RS Switch Router User Guide Release 8.0 14-15 OSPF Configuration Examples...
  • Page 232 Create OSPF export source. ip-router policy create ospf-export-source ospfExpSrc type OSPF Create OSPF-ASE export source. ip-router policy create ospf-export-source ospfAseExpSrc type OSPF-ASE 14-16 Riverstone Networks RS Switch Router User Guide Release 8.0 OSPF Configuration Guide...
  • Page 233 Riverstone Networks RS Switch Router User Guide Release 8.0 14-17 OSPF Configuration Examples...
  • Page 234: Figure 14-1 Exporting To Ospf

    OSPF Configuration Examples OSPF Configuration Guide 5,3 9 Figure 14-1 Exporting to OSPF 14-18 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 235: 15 Is-Is Configuration Guide

    IS-IS is disabled on all RS interfaces by default. To enable IS-IS on an interface, first configure an IP interface using the command. Then, enable IS-IS on the interface. You can enable IS-IS on all IP interface create interfaces by specifying the keyword. <string> isis add area Riverstone Networks RS Switch Router User Guide Release 8.0 15-1...
  • Page 236: Enabling Is-Is On The Rs

    On point-to-point subnetworks, an IS sends a Partial Sequence Number PDU (PSNP) to acknowledge each LSP it receives. PSNPs contain the following information: LSP ID, the LSP’s sequence number, the LSP’s Checksum and the LSP’s Remaining Lifetime. 15-2 Riverstone Networks RS Switch Router User Guide Release 8.0 <string> isis add interface...
  • Page 237: Setting The System Id

    To set the router’s overload bit, enter the following command in Configure mode: Sets the overload bit. <number> isis set psn-interval <string> isis set system-id <number> isis set spf-interval isis set overload-bit Riverstone Networks RS Switch Router User Guide Release 8.0 15-3 Setting IS-IS Global Parameters...
  • Page 238: Setting Is-Is Authentication

    Level 2 LSPs. To configure authentication within a routing domain, enter the following command in Configure mode: Sets the authentication method for a routing domain. 15-4 Riverstone Networks RS Switch Router User Guide Release 8.0 <string> isis set interface authentication-method md5|simple key-chain <string>...
  • Page 239: Setting Is-Is Interface Parameters

    <number> ] [l2-metric <number> ][mesh-group] chapter in the Riverstone RS Switch Router Command Line isis commands Level,".) Riverstone Networks RS Switch Router User Guide Release 8.0 15-5 Setting IS-IS Interface Parameters isis set [level 1|2|1-and-2] ] [hello-interval <number> <number> ] [passive] ] [l1-csn-interval <number>...
  • Page 240: Setting Interface Parameters For A Designated Intermediate System (Dis)

    10 rs(config)# isis set interface gig2 mesh-group 10 rs(config)# isis set interface gig3 mesh-group 10 rs(config)# isis set interface gig4 mesh-group 0 15-6 Riverstone Networks RS Switch Router User Guide Release 8.0 IS-IS Configuration Guide...
  • Page 241: Displaying Is-Is Information

    [detail] isis show circuits [detail] isis show export-policies isis show globals isis show lsp-database level1|2 <string> [detail][id isis show timers commands, their parameters, or isis show Riverstone Networks RS Switch Router User Guide Release 8.0 15-7 Displaying IS-IS Information ][summary]...
  • Page 242: Figure 15-1 Network Overview

    Displaying IS-IS Information Area 49.da03 L1 40/16 Figure 15-1 Network overview 15-8 Riverstone Networks RS Switch Router User Guide Release 8.0 Area 49.da01 21/16 20/16 21/16 100/8 105/8 115/8 L1 30/16 110/8 L1 31/16 Area 49.da02 Network Topology Overview IS-IS Configuration Guide Area 49.da04...
  • Page 243: Figure 15-2 Area 1 Detailed View

    Figure 15-2 Area 1 detailed view Area 49.da01 21.1.1.1/16 21.1.1.2/16 21/16 et.1.3 vlan 21net et.1.2 21/16 et.1.2 et.1.4 21.1.1.3/16 hs.5.1 IS-IS Area 1 Riverstone Networks RS Switch Router User Guide Release 8.0 15-9 Displaying IS-IS Information 24.1.1.1/16 et.1.1 et.1.1 25.1.1.1/16...
  • Page 244: Figure 15-3 Area 2 Detailed View

    Displaying IS-IS Information 100.1.1.2/8 105.1.1.2/8 105/8 et.1.3 30.1.1.1/16 Area 49.da02 Figure 15-3 Area 2 detailed view 15-10 Riverstone Networks RS Switch Router User Guide Release 8.0 100/8 hs.5.1 115.1.1.1/8 et.1.8 et.1.2 L1 30/16 30.1.1.2/16 et.1.2 31.1.1.1/16 et.1.3 31/16 31.1.1.2/16 et.1.3...
  • Page 245: Figure 15-4 Area 3 Detailed View

    IS-IS Configuration Guide 41.1.1.1/16 et.1.1 Figure 15-4 Area 3 detailed view Area 49.da03 105.1.1.1/8 et.1.3 et.1.2 40.1.1.1/16 L1 40/16 et.1.2 40.1.1.2/16 et.1.1 42.1.1.1/16 IS-IS Area 3 Riverstone Networks RS Switch Router User Guide Release 8.0 15-11 Displaying IS-IS Information 105/8...
  • Page 246: Figure 15-5 Area 4 Detailed View

    Figure 15-5 Area 4 detailed view The following sections show the configuration for each router within this network. Note that explanations (in ) precede each command or set of commands. italics 15-12 Riverstone Networks RS Switch Router User Guide Release 8.0 Area 49.da04 et.1.2 51.1.1.2/16 51/16 51.1.1.1/16...
  • Page 247 11 : isis set interface 100net encap iso priority 10 metric 10 level 2 To set the IS-IS level of router R1: 12 : isis set level 1-and-2 To start IS-IS on router R1: 13 : isis start Riverstone Networks RS Switch Router User Guide Release 8.0 15-13 Displaying IS-IS Information...
  • Page 248 12 : isis set level 1 13 : isis set interface 20net encap iso level 1 priority 10 metric 10 To start IS-IS on router R2: 14 : isis start 15-14 Riverstone Networks RS Switch Router User Guide Release 8.0 IS-IS Configuration Guide...
  • Page 249 7 : isis set interface 24net encap iso priority 10 metric 10 level 1 To set the IS-IS level of router R3: 8 : isis set level 1-and-2 To start IS-IS on router R3: 9 : isis start Riverstone Networks RS Switch Router User Guide Release 8.0 15-15 Displaying IS-IS Information...
  • Page 250 7 : isis set interface 25net encap iso priority 10 metric 10 level 1 To set the IS-IS level of router R4: 8 : isis set level 1-and-2 To start IS-IS on router R4: 9 : isis start 15-16 Riverstone Networks RS Switch Router User Guide Release 8.0 IS-IS Configuration Guide...
  • Page 251 To redistribute static routes into IS-IS: 22 : ip-router policy redistribute from-proto static to-proto isis To redistribute BGP routes into IS-IS: 23 : ip-router policy redistribute from-proto bgp to-proto isis source-as 64901 Riverstone Networks RS Switch Router User Guide Release 8.0 15-17 Displaying IS-IS Information...
  • Page 252 12 : isis set level 1-and-2 To start IS-IS on router R6: 13 : isis start To redistribute IS-IS routes into OSPF: 14 : ip-router policy redistribute from-proto isis to-proto ospf 15-18 Riverstone Networks RS Switch Router User Guide Release 8.0 IS-IS Configuration Guide...
  • Page 253 10 : isis set interface 41net encap iso level 1 priority 10 metric 10 11 : isis set interface 105net encap iso level 2 priority 10 metric 10 To start IS-IS on router R8: 12 : isis start Riverstone Networks RS Switch Router User Guide Release 8.0 15-19 Displaying IS-IS Information...
  • Page 254 7 : isis set interface 42net encap iso level 1 priority 10 metric 10 To set the IS-IS level of router R9: 8 : isis set level 1 To start ISIS on R9: 9 : isis start 15-20 Riverstone Networks RS Switch Router User Guide Release 8.0 IS-IS Configuration Guide...
  • Page 255 Serial0/3 no ip address shutdown interface Ethernet1/0 ip address 51.1.1.1 255.255.0.0 ip router isis 49.0004 isis circuit-type level-1 isis priority 10 level-1 Riverstone Networks RS Switch Router User Guide Release 8.0 15-21 Displaying IS-IS Information...
  • Page 256 49.0004.0200.3301.0101.00 router bgp 5 neighbor 198.92.70.24 remote-as 10 neighbor 198.92.70.24 route-map in5 in no ip classless line con 0 line aux 0 line vty 0 4 login 15-22 Riverstone Networks RS Switch Router User Guide Release 8.0 IS-IS Configuration Guide...
  • Page 257 9 : isis set interface 51net level 1 encap iso priority 10 metric 10 10 : isis set interface 52net level 1 encap iso priority 10 metric 10 To start IS-IS on the router: 11 : isis start Riverstone Networks RS Switch Router User Guide Release 8.0 15-23 Displaying IS-IS Information...
  • Page 258 Displaying IS-IS Information IS-IS Configuration Guide 15-24 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 259: 16 Bgp Configuration Guide

    RS configurable entities and functionality can only be configured using the RS CLI. Therefore, a file is dependent upon some RS CLI configuration. gated.conf equivalent can be displayed by entering gated.conf command at the RS Enable prompt. VLANs, interfaces, ACLs, Riverstone Networks RS Switch Router User Guide Release 8.0 16-1 gated.conf...
  • Page 260: Basic Bgp Tasks

    The router ID uniquely identifies the RS. To set the router ID to be used by BGP, enter the following command in Configure mode. Set the router ID. 16-2 Riverstone Networks RS Switch Router User Guide Release 8.0 ip-router global set autonomous-system <num1>...
  • Page 261: Configuring A Bgp Peer Group

    Interfaces whose routes are carried via the IGP for which third-party next hops may be used instead. Use only for type Routing group. Specify the interface or <number-or-string> type external|routing <number> ] [proto any|rip|ospf|static] <interface-name-or-ipaddr> |all] for all interfaces. Riverstone Networks RS Switch Router User Guide Release 8.0 16-3 Basic BGP Tasks...
  • Page 262: Adding A Bgp Peer

    AS numbers that are not in the list. Note that a null or empty string is not an instance in the alphabet, therefore the set [^700] does not match an empty string. 16-4 Riverstone Networks RS Switch Router User Guide Release 8.0 <ipaddr>...
  • Page 263: As Path Regular Expression Examples

    “.*” ip-router policy create bgp-import-source allOthers aspath-regular-expression allAspaths origin any sequence-number 20 ip-router policy import source allOthers network all ".* 3561 .*" Riverstone Networks RS Switch Router User Guide Release 8.0 16-5 Basic BGP Tasks...
  • Page 264: Using The As Path Prepend Feature

    Negate the command that adds the peer-host to the peer-group. (If this causes the number of peer-hosts in the peer-group to drop to zero, then you must also negate the command that creates the peer group.) 16-6 Riverstone Networks RS Switch Router User Guide Release 8.0 command. BGP Configuration Guide...
  • Page 265: Creating Bgp Confederations

    The next hop attribute is set by the first-hop router in the confederation and is then allowed to traverse sub-AS’s without being changed. AS 102 AS 103 16-1, R1 establishes a local preference value for a route advertised Riverstone Networks RS Switch Router User Guide Release 8.0 16-7 Basic BGP Tasks AS 1000...
  • Page 266: Creating Community Lists

    65535:65281 no_export 65535:65282 no_advertise 65535:65283 no_export_subconfed 16-8 Riverstone Networks RS Switch Router User Guide Release 8.0 16-1, when R1 advertises a route to R2, R1 strips any as-confed-sequence and ip-router policy create community-list <community-string> ip-router policy add community-list <community-string> Description Do not advertise to EBGP peers.
  • Page 267: Using Route Maps

    <number-or-string> <sequence-number> <match-criteria> permit <number-or-string> <sequence-number> <match-criteria> deny , or ip-router policy redistribute Riverstone Networks RS Switch Router User Guide Release 8.0 16-9 Basic BGP Tasks is explicitly specified; in this case, deny ip-router policy command). You can also specify...
  • Page 268 13.0.0.0/16, the route is not imported, exported, or distributed. route-map 1 permit 1 match-prefix network 15.4.0.0/16 set-next-hop 12.10.4.13 route-map 1 deny 2 match-prefix network 15.0.0.0/8 16-10 Riverstone Networks RS Switch Router User Guide Release 8.0 (export) option of the bgp set peer-group...
  • Page 269: Using Bgp Accounting

    "11:11" route-map 1 permit 1 match-community-list list1 set-traffic-index 1 keyword, the specified action is taken. The following permit Section 16.3.11, "BGP Accounting Examples," Riverstone Networks RS Switch Router User Guide Release 8.0 16-11 Basic BGP Tasks...
  • Page 270 For example: rs# ip show interfaces int1 bgp-actg Interface:int1 Bucket Packets Bytes 14430 16-12 Riverstone Networks RS Switch Router User Guide Release 8.0 to see detailed example configurations. command to display BGP accounting information on a BGP Configuration Guide...
  • Page 271: Bgp Configuration Examples

    • BGP local preference (local_pref) attribute • BGP Multi-Exit Discriminator (MED) attribute • EBGP aggregation • Route reflection • BGP confederation • Route map rtt,msec rttvar hopcount Riverstone Networks RS Switch Router User Guide Release 8.0 16-13 BGP Configuration Examples...
  • Page 272: Bgp Peering Session Example

    BGP notification message is sent to its BGP peer, and the TCP connection is closed. Figure 16-2 illustrates a sample BGP peering session: 16-14 Riverstone Networks RS Switch Router User Guide Release 8.0 to the active configuration. Then, command. The option causes the peer-host to re-send it routing information...
  • Page 273: Figure 16-2 Sample Bgp Peering Session

    2 # Add peer host 10.0.0.2 to group pg1w2 bgp add peer-host 10.0.0.2 group pg1w2 bgp start AS-2 10.0.0.2/16 Legend: Physical Link Peering Relationship Riverstone Networks RS Switch Router User Guide Release 8.0 16-15 BGP Configuration Examples...
  • Page 274: Ibgp Configuration Example

    ASs by advertising to one AS routes that it learned from the other AS. To successfully provide transit services, all EBGP speakers in the transit AS must have a consistent view of all of the routes reachable through their 16-16 Riverstone Networks RS Switch Router User Guide Release 8.0 peer 10.0.0.2 peer 10.0.0.1...
  • Page 275: Ibgp Routing Group Example

    BGP configuration that uses the routing group type. AS-64801 10.12.1.1/30 10.12.1.2/30 172.23.1.5/30 172.23.1.6/30 Figure 16-3 Sample IBGP configuration (routing group type) 10.12.1.6/30 Cisco lo0 172.23.1.25/30 OSPF IBGP lo0 172.23.1.26/30 172.23.1.9/30 Riverstone Networks RS Switch Router User Guide Release 8.0 16-17 BGP Configuration Examples 10.12.1.5/30 172.23.1.10/30...
  • Page 276 # Set our local address. This line is necessary because we want CISCO to # peer with our loopback bgp set peer-group ibgp1 local-address 172.23.1.26 # Start BGP bgp start 16-18 Riverstone Networks RS Switch Router User Guide Release 8.0 BGP Configuration Guide...
  • Page 277: Ebgp Multihop Configuration Example

    This sample configuration shows External BGP peers, R1 and R4, which are not connected to the same subnet. AS-64800 16.122.128.1/16 Legend: Physical Link Peering Relationship Figure 16-4 Sample EBGP configuration (multihop) 17.122.128.4/16 16.122.128.3/16 17.122.128.3/16 AS-64801 Riverstone Networks RS Switch Router User Guide Release 8.0 16-19 BGP Configuration Examples 18.122.128.3/16 18.122.128.2/16...
  • Page 278 16.122.128.3/16 port et.1.1 interface create ip to-R3 address-netmask 17.122.128.3/16 port et.1.2 # Static route needed to reach 18.122.0.0/16 ip add route 18.122.0.0/16 gateway 17.122.128.4 16-20 Riverstone Networks RS Switch Router User Guide Release 8.0 BGP Configuration Guide...
  • Page 279 64801 type external bgp add peer-host 18.122.128.2 group ebgp_multihop ! Specify the multihop option, which indicates EBGP multihop. bgp set peer-host 18.122.128.2 group ebgp_multihop multihop Riverstone Networks RS Switch Router User Guide Release 8.0 16-21 BGP Configuration Examples...
  • Page 280: Community Attribute Example

    Figure 16-5 shows a BGP configuration where the specific community attribute is used. configuration where the well-known community attribute is used. 16-22 Riverstone Networks RS Switch Router User Guide Release 8.0 option of the ip-router policy create BGP Configuration Guide command.
  • Page 281: Figure 16-5 Sample Bgp Configuration (Specific Community)

    100.200.12.1/24 100.200.13.1/24 Figure 16-5 Sample BGP configuration (specific community) AS-64902 172.25.1.1/16 172.25.1.2/16 172.26.1.2/16 AS-64899 172.26.1.1/16 192.169.20.1/16 192.169.20.2/16 Legend: Riverstone Networks RS Switch Router User Guide Release 8.0 16-23 BGP Configuration Examples ISP2 10.200.14.1/24 10.200.15.1/24 Physical Link Peering Relationship Information Flow...
  • Page 282: Figure 16-6 Sample Bgp Configuration (Well-Known Community)

    For this reason, it is generally desirable to order import clauses from most to least specific. An import clause without an optional-attributes-list 16-24 Riverstone Networks RS Switch Router User Guide Release 8.0 AS-64902 172.25.1.1/16 172.25.1.2/16...
  • Page 283 901color2 network all preference 155 ip-router policy import source 901color3 network all preference 160 ip-router policy import source 901color4 network all preference 155 Riverstone Networks RS Switch Router User Guide Release 8.0 16-25 BGP Configuration Examples...
  • Page 284 Any communities specified with the addition to any received in the route or specified with the group. 16-26 Riverstone Networks RS Switch Router User Guide Release 8.0 option of the ip-router policy command may be used to send the BGP community...
  • Page 285 155 autonomous-system 64901 ip-router policy export destination 899to900dest source 899toanydir network all ip-router policy export destination 899to902dest source 899toanydir network all Riverstone Networks RS Switch Router User Guide Release 8.0 16-27 BGP Configuration Examples...
  • Page 286: Notes On Using Communities

    (If additional communities are also present in the update, it will still be matched.) 16-28 Riverstone Networks RS Switch Router User Guide Release 8.0 option are sent in addition to any received with optional-attributes-list has the following configuration:...
  • Page 287: Local Preference Examples

    AS, all traffic from AS 64901 is sent to R13 as the exit point. bgp set peer-group Riverstone Networks RS Switch Router User Guide Release 8.0 16-29 BGP Configuration Examples command:...
  • Page 288: Figure 16-7 Sample Bgp Configuration (Local Preference)

    192.168.20.1/16 EBGP 192.168.20.2/16 172.26.1.1/16 Figure 16-7 Sample BGP configuration (local preference) The following sections explain how to configure the local preference using the options. 16-30 Riverstone Networks RS Switch Router User Guide Release 8.0 10.200.14.1/24 192.169.20.2/16 192.169.20.1/16 172.28.1.1/16 EBGP 172.28.1.2/16 172.25.1.1/16...
  • Page 289: Using The Local-Pref Option

    For router R13, the import preference is set to 150. The Local_Pref value put out by router R13 is 254 - 150+100 = 204. ip-router policy create bgp-import-source as900 autonomous-system 64900 preference 150 is set to 194: local-pref Riverstone Networks RS Switch Router User Guide Release 8.0 16-31 BGP Configuration Examples...
  • Page 290: Multi-Exit Discriminator Attribute Example

    AS 64752 Legend: Physical Link Peering Relationship Information Flow Figure 16-8 Sample BGP configuration (MED attribute) 16-32 Riverstone Networks RS Switch Router User Guide Release 8.0 option: metric should be set to the same value. 10.200.12.0/24 10.200.12.15/24 AS 64751 BGP Configuration Guide...
  • Page 291: Ebgp Aggregation Example

    The aggregated route is 212.19.192.0/19. AS-64900 212.19.199.62/24 212.19.198.1/24 212.19.192.2/24 Figure 16-9 Sample BGP configuration (route aggregation) AS-64901 194.109.86.6 194.109.86.5 Legend: Physical Link Peering Relationship Riverstone Networks RS Switch Router User Guide Release 8.0 16-33 BGP Configuration Examples...
  • Page 292: Route Reflection Example

    All peers of the route reflector that are not part of the cluster are non-clients. The RS supports client peers as well as non-client peers of a route reflector. 16-34 Riverstone Networks RS Switch Router User Guide Release 8.0 BGP Configuration Guide...
  • Page 293: Figure 16-10Sample Bgp Configuration (Route Reflection)

    The following line in router R10’s configuration file causes it to be a route reflector. bgp set peer-group R9 reflector-client AS-64902 192.68.20.2 192.68.20.1 172.16.30.2 IBGP Cluster Client IBGP Non-Cluster Client Riverstone Networks RS Switch Router User Guide Release 8.0 16-35 BGP Configuration Examples 192.68.222.1 EBGP Peer IBGP Cluster Client...
  • Page 294 127.0.0.1 172.16.20.0/24 192.68.20.1 172.16.30.0/24 192.68.20.1 172.16.90.0/24 192.68.20.1 192.68.11.0/24 192.68.20.1 192.68.20.0/24 directly connected 192.68.222.0/24 directly connected 16-36 Riverstone Networks RS Switch Router User Guide Release 8.0 Gateway ------- directly connected 127.0.0.1 127.0.0.1 directly connected 172.16.20.2 172.16.20.2 directly connected 172.16.20.2 172.16.20.2 Owner...
  • Page 295: Notes On Using Route Reflection

    Figure 16-11Sample BGP confederation option is enabled, routes received from a route reflection client are clusterid BGP Confederation AS 64705 AS 64707 Riverstone Networks RS Switch Router User Guide Release 8.0 16-37 BGP Configuration Examples option. Gratuitous use AS 64902...
  • Page 296 172.16.223.2 group rtr11 bgp set peer-group rtr9 confederation bgp set peer-group rtr11 confederation bgp start ip-router policy redistribute from-proto bgp source-as 64706 to-proto bgp target-as 64707 16-38 Riverstone Networks RS Switch Router User Guide Release 8.0 BGP Configuration Guide...
  • Page 297 172.16.224.1 group rtr11 bgp add peer-host 172.16.225.2 group rtr13 bgp set peer-group rtr11 confederation bgp start ip-router policy redistribute from-proto bgp source-as 64707 to-proto bgp target-as 64902 network 3.0.0.0/8 Riverstone Networks RS Switch Router User Guide Release 8.0 16-39 BGP Configuration Examples...
  • Page 298 172.16.222/24 172.16.222.2 * 172.16.223/24 172.16.222.2 16-40 Riverstone Networks RS Switch Router User Guide Release 8.0 command show how the as-path attribute is modified as the route Metric LocPrf Path ------ ------ ---- 1000 64901 64751 6379 1 701 80 i...
  • Page 299 100 i Metric LocPrf Path ------ ------ ---- 64705 64901 64751 6379 1 701 80 i multihop parameter should be specified for R11. Riverstone Networks RS Switch Router User Guide Release 8.0 16-41 BGP Configuration Examples parameter so that the next...
  • Page 300: Route Map Example

    65100 bgp add peer-host 15.2.1.3 group tored bgp set preference 99 bgp set peer-group tored route-map-out 1 bgp start 16-42 Riverstone Networks RS Switch Router User Guide Release 8.0 for more information). AS-2 15.4.0.0/16 15.5.0.0/16 15.6.0.0/16...
  • Page 301: Bgp Accounting Examples

    BGP traffic route-map Figure 16-12, the routing updates that match the Riverstone Networks RS Switch Router User Guide Release 8.0 16-43 BGP Configuration Examples command on R2. command.
  • Page 302 For BGP accounting to take effect, the RS must be selecting BGP for the route. Note Make sure that the preference for BGP is set lower than the preference of other protocols on the RS. 16-44 Riverstone Networks RS Switch Router User Guide Release 8.0 Bytes 2160640 2160640...
  • Page 303: Figure 16-13Sample Bgp Configuration (Accounting)

    The following configurations enable BGP accounting on interface ’customerA’ to tally the number of bytes and packets sent by the customer. 13.1.1.1/16 et.3.1 12.1.1.1/16 et.3.2 12.1.1.2/16 et.14.8 14.1.0.0/16 et.14.5 Riverstone Networks RS Switch Router User Guide Release 8.0 16-45 BGP Configuration Examples AS-1...
  • Page 304 12.1.1.1 group ibgp bgp set peer-group ibgp route-map-out 1 bgp start route-map 1 permit 1 match-prefix network 14.1.0.0/16 set-community "11:11" arp add 14.1.1.5 mac-addr 00:00:00:00:14:01 16-46 Riverstone Networks RS Switch Router User Guide Release 8.0 BGP Configuration Guide...
  • Page 305: Figure 16-14Sample Bgp Configuration (Dscp Accounting)

    Figure 16-14Sample BGP configuration (DSCP accounting) command to display BGP accounting information for the AS-2 15.4.0.0/16 15.5.0.0/16 15.6.0.0/16 15.2.1.1 15.2.1.3 12.10.0.0/16 12.11.0.0/16 int1 12.12.0.0/16 12.13.0.0/16 Riverstone Networks RS Switch Router User Guide Release 8.0 16-47 BGP Configuration Examples ip bgp-accounting start Customer...
  • Page 306 1 in-sequence 1 bgp start To enable BGP accounting on the interface ‘int1’ on R8: ip enable bgp-actg-on int1 ip bgp-accounting start dscp-accounting 16-48 Riverstone Networks RS Switch Router User Guide Release 8.0 BGP Configuration Guide...
  • Page 307 238254 238401 238189 237801 239206 239387 238176 237601 239001 Bytes 15320064 15308864 15296064 15283264 15270464 15257664 15270208 15257664 15248256 15257664 15244096 15219264 15309184 15320768 15243264 15206464 15296064 Riverstone Networks RS Switch Router User Guide Release 8.0 16-49 BGP Configuration Examples...
  • Page 308 BGP Configuration Examples BGP Configuration Guide 16-50 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 309: 17 Mpls Configuration

    Section 17.2, "Enabling and Starting MPLS on Section 17.4, "LDP Section 17.5, "Configuring L3 Label Switched Paths." Section 17.6, "Configuring L2 Tunnels." Section 17.7, "Traffic Engineering." Riverstone Networks RS Switch Router User Guide Release 8.0 17-1 Section 17.3, This section...
  • Page 310: Mpls Architecture Overview

     ,QJUHVV DQG HJUHVV /65V DUH VRPHWLPHV DOVR UHIHUUHG WR DV ODEHO HGJH URXWHUV /(5V  17-2 Riverstone Networks RS Switch Router User Guide Release 8.0 in the path needs to analyze the layer 3 header information. If the destination...
  • Page 311: Figure 17-2 Encoding Of An Mpls Label

    MPLS Label 3 bits 1 bit 32 bits Bottom Label Label Label Bottom of Stack Bit Set Riverstone Networks RS Switch Router User Guide Release 8.0 17-3 MPLS Architecture Overview Network Layer Header Time to Live 8 bits Network Layer Header...
  • Page 312: Table 17-1 Reserved Label Values

    Ordered—RS advertises FEC-to-label bindings only when it has previously received a label for the FEC from the FEC next-hop or when it is an egress router for the FEC. 17-4 Riverstone Networks RS Switch Router User Guide Release 8.0 Section 17.1.5, "MPLS Tunnels." MPLS Configuration...
  • Page 313: Label Binding

    In downstream unsolicited mode, FEC-label bindings are distributed to peers when an LSR is ready to forward packets in the FEC. Packets Downstream Label Binding Riverstone Networks RS Switch Router User Guide Release 8.0 17-5 MPLS Architecture Overview Figure 17-4, packets...
  • Page 314: Figure 17-5 Lsp Creation And Packet Forwarding

    FEC, the packet is forwarded using IP forwarding table information.) The label is removed and forwarded using information in the IP forwarding table at R4. 17-6 Riverstone Networks RS Switch Router User Guide Release 8.0 For more information about configuring RSVP...
  • Page 315: Label Retention Mode

    17-6, R1 is the ingress LSR for an LSP to the egress LSR, R4. R2 is the entry point for the tunnel LSP and R3 is the exit point for the tunnel LSP. Riverstone Networks RS Switch Router User Guide Release 8.0 17-7 MPLS Architecture Overview...
  • Page 316: Mpls Table Information

    OTT information by interface name or IP address or for all interfaces. The show ott-table command also displays the index number for the entry in the hardware OTT. mpls show ott-table 17-8 Riverstone Networks RS Switch Router User Guide Release 8.0 Tunnel LSP (Penultimate label...
  • Page 317 ILM table. For any of the following conditions, the MPLS packet is decapsulated and forwarded as a routed or bridged packet: • the ILM entry indicates that this is the end of an L2 tunnel Riverstone Networks RS Switch Router User Guide Release 8.0 17-9...
  • Page 318 ILM entry indicates that this node is at the end of the outermost MPLS domain • the explicit null label (label value 0) is the only label on the stack 17-10 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 319: Enabling And Starting Mpls On The Rs

    L3 Static LSPs." command. command. This allows you to configure MPLS path mpls start Riverstone Networks RS Switch Router User Guide Release 8.0 17-11 Enabling and Starting MPLS on the RS . When you enable MPLS and Section 17.5.1, "Config-...
  • Page 320 However, if you are using MPLS on a handful of interfaces only, this creates an unnecessary amount of processing overhead and signaling traffic. 17-12 Riverstone Networks RS Switch Router User Guide Release 8.0 commands, before starting RSVP. For more information about rsvp set commands, before starting LDP.
  • Page 321: Rsvp Configuration

    You should not enable LDP, RSVP, or MPLS on interfaces where they will not be Note used, as this creates an unnecessary amount of processing overhead and signaling traffic. command. on the RS: to_r1 Riverstone Networks RS Switch Router User Guide Release 8.0 17-13 RSVP Configuration ip-router global The following configuration...
  • Page 322: Establishing Rsvp Sessions

    RSVP parameters on the RS and their default values. The commands that you use to enable an RSVP operation or change a default value are also listed. 17-14 Riverstone Networks RS Switch Router User Guide Release 8.0 Path messages...
  • Page 323: Rsvp Refresh Intervals

    <interface> rsvp set interface rsvp set global bundle-interval <interface> rsvp set interface msgid-extensions-enable rsvp set global msgid-list-interval rsvp set global msgack-interval Riverstone Networks RS Switch Router User Guide Release 8.0 17-15 RSVP Configuration hello-enable auth-method md5 aggregate-enable...
  • Page 324: Rsvp Hello Packets

    RSVP hello packets on the interface ‘int2’: rsvp set interface int2 hello-enable 17-16 Riverstone Networks RS Switch Router User Guide Release 8.0 command to set the values for the Path and Resv refresh intervals and parameter specifies the interval at which RSVP sends out Path parameter specifies the interval at which RSVP sends out Resv parameter value between 1 and 255.
  • Page 325: Authentication

    MD5 password is applied to all RSVP sessions on the interface all, Riverstone Networks RS Switch Router User Guide Release 8.0 17-17 RSVP Configuration rsvp set rsvp set global parameter to specify the...
  • Page 326: Blockade Aging Interval

    RSVP message aggregation on the interface ‘int2’: rsvp set interface int2 aggregate-enable 17-18 Riverstone Networks RS Switch Router User Guide Release 8.0 command. For example, the following command sets the blockade command. For example, the following command rsvp set interface...
  • Page 327 To avoid retransmission, the acknowledgement should be sent at minimal rsvp set global bundle-interval parameter of the rsvp set interface Riverstone Networks RS Switch Router User Guide Release 8.0 17-19 RSVP Configuration command. For example, the command. For example, the...
  • Page 328: Displaying Rsvp Information

    RSVP path state block information RSVP reservation state block information RSVP session information RSVP traffic control state block information 17-20 Riverstone Networks RS Switch Router User Guide Release 8.0 command. For example, the following command sets the Use this command: rsvp show all...
  • Page 329: Ldp Configuration

    LDP peer is discovered, the LSR attempts to establish an LDP session through the well-known port 646. After session parameters are successfully negotiated between the peers, the session is used for label distribution. The following configuration commands enable on the RS: to_r1 command. Riverstone Networks RS Switch Router User Guide Release 8.0 17-21 LDP Configuration ip-router global...
  • Page 330: Monitoring Ldp Sessions

    Send interval (not configurable - 1/3 of hold time) Hold time Session Keepalive Messages: Send interval (not configurable - 1/3 of timeout) Timeout 17-22 Riverstone Networks RS Switch Router User Guide Release 8.0 ldp set interface Section 17.4.3, "Remote Direct-connect LDP peer Remote LDP peer 5 seconds...
  • Page 331: Remote Peers

    Riverstone Networks RS Switch Router User Guide Release 8.0 17-23 LDP Configuration ldp add remote-peer command to specify command to specify a different...
  • Page 332: Md5 Password Protection

    LDP neighbors and considered by the local router for LSP establishment. 17-24 Riverstone Networks RS Switch Router User Guide Release 8.0 command to set an MD5 password on a per-router, per-interface, or keyword and IP address, the MD5 password is applied to all LDP sessions...
  • Page 333 Input label database, 1.1.1.1:0-3.3.3.3:0 Label Prefix 2050 1.1.1.1/32 State:Active 3.3.3.3/32 State:Active Output label database, 1.1.1.1:0-3.3.3.3:0 Label Prefix 2049 3.3.3.3/32 State:Active 1.1.1.1/32 State:Active command on rs1 (see the following example), the label Riverstone Networks RS Switch Router User Guide Release 8.0 17-25 LDP Configuration...
  • Page 334: Displaying Ldp Information

    LDP session state information. Verbose option shows session connection parameters as well as list of next-hop addresses received on the session. 17-26 Riverstone Networks RS Switch Router User Guide Release 8.0 command. Once defined, the prefix filter ldp add prefix-filter...
  • Page 335: Configuring L3 Label Switched Paths

    Section , "L3 Static Path Configuration commands to configure a static LSP on the mpls set static-path Riverstone Networks RS Switch Router User Guide Release 8.0 17-27 Configuring L3 Label Switched Paths Example.") mpls set...
  • Page 336 50.1/16 network, the label ‘50’ is assigned by R1 before forwarding to the next-hop LSR at 10.1.1.2, in this case, another RS router, R2, which is also the PHP LSR. 17-28 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 337: Figure 17-8 L3 Static Label Switched Path

    10.1.1.2 20.1.1.1 10.1.1.1 Label = 50 Label removed parameter in the push Riverstone Networks RS Switch Router User Guide Release 8.0 17-29 Configuring L3 Label Switched Paths Egress LSR to 50.1/16 network gi.1.1 gi.1.2 30.1.1.1 20.1.1.2 mpls create static-path...
  • Page 338 Ingress LSP: LSPname 50.1.1.1 17-30 Riverstone Networks RS Switch Router User Guide Release 8.0 mpls set interface command to display the MPLS static path information. On router R1, From State LabelIn 7.7.7.7...
  • Page 339: Configuring L3 Dynamic Lsps

    Next Hop Information -------------------- Action Next Hop ----------- -------- Policy First 10.1.1.1 Riverstone Networks RS Switch Router User Guide Release 8.0 17-31 Configuring L3 Label Switched Paths TOS Prot any IP INUSE TOS TOS-MASK Prot ORIG AS --- -------- ---- -------...
  • Page 340: Configuring An Explicit Lsp

    By default, the path is strict—the path must go path through the specified hop addresses. (To specify a loose route, include the option 17-32 Riverstone Networks RS Switch Router User Guide Release 8.0 Section 17.7, "Traffic Engineering." Section 17.2, "Enabling and Starting MPLS on the RS."...
  • Page 341: Table 17-7 Lsp And Explicit Path Parameters

    All administrative exclude include Groups.") Riverstone Networks RS Switch Router User Guide Release 8.0 17-33 Configuring L3 Label Switched Paths mpls create mpls parameter. Otherwise, the commands; the parameters you command; the parameters you configure Path Section 17.7.1,...
  • Page 342 Address of the egress router. Refer to the mpls create label-switched-path Riverstone RS Switch Router Command Line Interface Reference Manual for more information on the above parameters. 17-34 Riverstone Networks RS Switch Router User Guide Release 8.0 Groups.") Groups.") mpls set label-switched-path MPLS Configuration...
  • Page 343 LSP with the lowest metric value is the preferred path. If the metric value is the same for multiple LSPs to the same egress router, the traffic load is shared among the LSPs. Riverstone Networks RS Switch Router User Guide Release 8.0 17-35...
  • Page 344: Connection Retries

    If the number of attempts by the ingress retry-limit LSR to connect to the egress router exceeds the parameter, you will need to restart the primary path. retry-limit 17-36 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 345 R5 to R6 and then to R7. The secondary path also command to create policies that you can apply to LSPs. For example, the mpls set label-switched-path Riverstone Networks RS Switch Router User Guide Release 8.0 17-37 Configuring L3 Label Switched Paths parameter...
  • Page 346: Figure 17-9 Dynamic L3 Lsp Paths

    OSPF is the routing protocol that is used on all RS routers. Click on the router name (in blue) to see the corresponding configuration. Timesaver 20.1.1.1/16 LSPs: Figure 17-9 Dynamic L3 LSP paths 17-38 Riverstone Networks RS Switch Router User Guide Release 8.0 30.1.1.1/16 33.1.1.1/16 MPLS Configuration 99.1.1.1/16 31.1.1.1/16...
  • Page 347 L2 to 20.1.1.2 adaptive no-cspf ! Start MPLS on router R5 mpls start ! Configure RSVP rsvp add interface all rsvp start Configuring L3 Label Switched Paths Riverstone Networks RS Switch Router User Guide Release 8.0 17-39...
  • Page 348 ! Start MPLS on router R7 mpls start ! Configure RSVP rsvp add interface all rsvp start 17-40 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 349: Figure 17-10 Static And Dynamic L3 Lsp Example

    In this example, RSVP is the signaling protocol used (LDP can also be used, as traffic engineering is not being utilized). OSPF is the routing protocol that is used on all RS routers. (loose) Riverstone Networks RS Switch Router User Guide Release 8.0 17-41 Configuring L3 Label Switched Paths 150.10.1.1...
  • Page 350 ! Create static LSP s1 mpls create static-path s1 push 70,60,50 gateway 200.135.89.76 to 3.3.3.3 mpls set static-path s1 policy p2 ! Start MPLS and RSVP mpls start rsvp start 17-42 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 351 3.3.3.3 to-area backbone cost 10 ospf add interface R3R2 to-area backbone ospf start ! Start MPLS and RSVP mpls start rsvp start Configuring L3 Label Switched Paths Riverstone Networks RS Switch Router User Guide Release 8.0 17-43...
  • Page 352 R5R4 to-area backbone ospf add stub-host 5.5.5.5 to-area backbone cost 10 ospf add interface R5R3 to-area backbone ospf start ! Start MPLS and RSVP mpls start rsvp start 17-44 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 353 1 num-hops: 4 - strict - strict - strict - strict retry-int: 3 sec. next_retry_int: 600 sec. preference: 7 Riverstone Networks RS Switch Router User Guide Release 8.0 17-45 Configuring L3 Label Switched Paths command issued at R1. command...
  • Page 354 200.135.89.73 - strict hop: 200.135.89.76 - strict hop: 201.135.89.130 - strict hop: 201.135.89.197 - strict Protection-Path "dp2l": <Active, Secondary> State: Up 17-46 Riverstone Networks RS Switch Router User Guide Release 8.0 opt-int: 0 sec. ref-count: 1 num-hops: 2 - loose - loose mpls show label-switched-paths d1 from: 1.1.1.1...
  • Page 355 1 explicit-path: dp2l 200.135.89.4 16.128.11.7 retry-int: 3 sec. next_retry_int: 600 sec. preference: 7 opt-int: 0 sec. ref-count: 1 num-hops: 2 - loose - loose Riverstone Networks RS Switch Router User Guide Release 8.0 17-47 Configuring L3 Label Switched Paths...
  • Page 356: Figure 17-11 Bgp Traffic Over An Mpls Lsp

    AS 63498 EBGP Route Figure 17-11 BGP traffic over an MPLS LSP Click on the router name (in blue) to see the corresponding configuration. Timesaver 17-48 Riverstone Networks RS Switch Router User Guide Release 8.0 AS 64498 MPLS Configuration AS 65498...
  • Page 357 64498 bgp create peer-group to-rt3 type external autonomous-system 64498 bgp add peer-host 137.2.2.3 group to-rt3 bgp start Configuring L3 Label Switched Paths Riverstone Networks RS Switch Router User Guide Release 8.0 17-49...
  • Page 358 ! Enable and start MPLS and LDP on interface to R1 mpls add interface rt3-rt1.mp mpls start ldp add interface rt3-rt1.mp ldp start 17-50 Riverstone Networks RS Switch Router User Guide Release 8.0 Sets R3’s address as next-hop in BGP route advertisements MPLS Configuration...
  • Page 359 ! Enable and start MPLS and LDP on interfaces to R3 and R6 mpls add interface rt1-rt6.mp2 mpls add interface rt1-rt3.mp mpls start ldp add interface rt1-rt3.mp ldp add interface rt1-rt6.mp2 ldp start Configuring L3 Label Switched Paths Riverstone Networks RS Switch Router User Guide Release 8.0 17-51...
  • Page 360 64498 bgp create peer-group bgp-to-nil6 type external autonomous-system 64498 bgp add peer-host 169.1.1.6 group bgp-to-nil6 bgp start 17-52 Riverstone Networks RS Switch Router User Guide Release 8.0 Sets R6’s address as next-hop in BGP route advertisements MPLS Configuration...
  • Page 361: Figure 17-12 Cable Modem Traffic Over Lsp

    Figure 17-12 Cable modem traffic over LSP Click on the router name (in blue) to see the corresponding configuration. Timesaver Configuring L3 Label Switched Paths MSO Provisioning Servers DHCP TFTP Riverstone Networks RS Switch Router User Guide Release 8.0 17-53 AT&T...
  • Page 362: Configure Vlan

    67 dst-ipaddr-mask 150.10.0.0/16 mpls create policy MSO150 src-ipaddr-mask 150.10.0.0/16 mpls set label-switched-path dynamic1MSO policy port67DHCP 17-54 Riverstone Networks RS Switch Router User Guide Release 8.0 Chapter 7, "CMTS Configuration Guide" MPLS Configuration...
  • Page 363 R2toR3 to-area backbone ospf start ! Configure MPLS mpls add interface R2toR1 mpls add interface R2toR3 mpls start ! Configure RSVP rsvp add interface R2toR1 Configuring L3 Label Switched Paths Riverstone Networks RS Switch Router User Guide Release 8.0 17-55...
  • Page 364 MSOCPEDHCP68 mpls set label-switched-path dynamic1.2MSO policy MSOCPEDHCP67 ! Create LSP for AOL ISP mpls create label-switched-path dynamic2.2AOL to 1.1.1.1 no-cspf mpls create policy AOL11.2 dst-ipaddr-mask 160.11.0.0/16 17-56 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 365: Dhcp Configuration

    # cablemodems. subnet 160.10.0.0 netmask 255.255.0.0{ range 160.10.1.100 160.10.2.254; filename "harvey1.cfg"; Figure 17-12, because multiple subnets exist on a single Riverstone Networks RS Switch Router User Guide Release 8.0 17-57 Configuring L3 Label Switched Paths Figure 17-12 to support the shared...
  • Page 366 Any client on the physical network will then obtain a lease from either scope on a round-robin basis (as long as the client does not have a reservation or previous lease information). Create a second scope that you want to make a secondary scope. 17-58 Riverstone Networks RS Switch Router User Guide Release 8.0 { hardware ethernet 00:e0:6f:02:f5:09; fixed-address 160.11.1.10;...
  • Page 367 In the Primary scope field, select the scope that you want to designate as the primary. (This must be one of the other scopes for the server.) Click OK. Reload the DHCP server. Configuring L3 Label Switched Paths Riverstone Networks RS Switch Router User Guide Release 8.0 17-59...
  • Page 368: Configuring L2 Tunnels

    You configure a policy on the ingress LSR so that only frames that meet certain criteria, such as a specific VLAN ID and source MAC address, are mapped to an FEC for forwarding on the LSP. 17-60 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 369: Figure 17-13 Static L2 Path (Unidirectional)

    L2 frames will be subject to label command to configure the next hop MAC address and command to apply the L2 policy to the L2 static path. Riverstone Networks RS Switch Router User Guide Release 8.0 17-61 Configuring L2 Tunnels Egress LSR gi.7.1...
  • Page 370 As mentioned previously, you need to configure an L2 LSP in each direction to allow for bi-directional traffic flow. Thus, the static LSPs will logically appear as shown in both paths are shown below. 17-62 Riverstone Networks RS Switch Router User Guide Release 8.0 command to configure the static L2 LSP on the RS. When mpls set portlist Figure 17-14.
  • Page 371: Figure 17-14 Static L2 Paths (Bi-Directional)

    ! Start MPLS on this router mpls start Label = 201 gi.3.1 gi.4.1 gi.5.1 Label = 200 Label = 100 Riverstone Networks RS Switch Router User Guide Release 8.0 17-63 Configuring L2 Tunnels Label = 101 gi.7.1 gi.6.1 Label removed...
  • Page 372 TO-R1 policy P2 ! Configure egress LER for L2 static path TO-R3 mpls set portlist in-port-list gi.6.1 end-of-l2-tunnel-label 200 ! Start MPLS on this router mpls start 17-64 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 373: Configuring Dynamic L2 Labels

    Tunnel label Tunnel LSP (RSVP or LDP) VC label Virtual Circuit (LDP signaling over VLAN) mpls create Riverstone Networks RS Switch Router User Guide Release 8.0 17-65 Configuring L2 Tunnels Layer 2 Frame and/or commands. If mpls set commands; however,...
  • Page 374 Specify the remote LDP peer with the ID of the remote LDP peer, which must be one of the loopback addresses of the remote router. 17-66 Riverstone Networks RS Switch Router User Guide Release 8.0 ldp map ports commands and use the vlan add ports command.
  • Page 375 You can also specify if an alternate ldp set l2-fec option of the ldp set l2-fec Riverstone Networks RS Switch Router User Guide Release 8.0 17-67 Configuring L2 Tunnels ldp add l2-fec option with the option with the...
  • Page 376: Figure 17-16 Tunneling Of Multiple Virtual Circuits Based On Vlan Id

    ! Configure the VLAN cust2 with a VLAN ID of 200 vlan create cust2 port-based id 200 vlan add ports gi.3.1,gi.4.1 to cust2 17-68 Riverstone Networks RS Switch Router User Guide Release 8.0 VLAN 110 VLAN 120 gi.4.1 gi.14.1 gi.15.1 gi.3.2...
  • Page 377 220.1.1.1/16 vlan ldp_in3 adds R3 as LDP peer sends label mapping for VLAN ID 100 to R3 sends label mapping for VLAN ID 200 to R3 Riverstone Networks RS Switch Router User Guide Release 8.0 17-69 Configuring L2 Tunnels...
  • Page 378 100 to-peer 111.1.1.1 ldp add l2-fec vlan 200 to-peer 111.1.1.1 ldp start 17-70 Riverstone Networks RS Switch Router User Guide Release 8.0 adds R1 as LDP peer sends label mapping for VLAN ID 100 to R1...
  • Page 379 ! Configure IGP (in this example, OSPF is the IGP) ip-router global set router-id 111.1.1.3 ospf create area backbone ospf add interface to_r2 to-area backbone ospf add stub-host 111.1.1.3 to-area backbone cost 5 ospf start Riverstone Networks RS Switch Router User Guide Release 8.0 17-71...
  • Page 380: Time Saver

    R5) and is restricted to traffic destined for the 152.1.0.0/16 subnet. The LSP from R1 to R3 is configured with a loose explicit path of 2 hops. 17-72 Riverstone Networks RS Switch Router User Guide Release 8.0 gi.14.2 gi.12.2 gi.4.1 gi.14.1 gi.7.2...
  • Page 381 201.1.1.2 type strict hop 2 transport-lsp option of the command allows you to assign ldp set l2-fec Riverstone Networks RS Switch Router User Guide Release 8.0 17-73 Configuring L2 Tunnels option of the LDP-signaling VLAN to R2 LDP-signaling VLAN to R6...
  • Page 382 111.1.1.2/32 ! Configure OSPF ip-router global set router-id 111.1.1.2 ospf create area backbone 17-74 Riverstone Networks RS Switch Router User Guide Release 8.0 adds R3 as LDP peer adds R5 as LDP peer send VLAN 100 mapping to R3...
  • Page 383 111.1.1.3 to-area backbone cost 5 ospf add interface to_rs2 to-area backbone ospf add interface to_rs4 to-area backbone ospf start ! Configure MPLS mpls add interface to_rs2 mpls add interface to_rs4 Riverstone Networks RS Switch Router User Guide Release 8.0 17-75 Configuring L2 Tunnels...
  • Page 384 ! Configure MPLS mpls add interface to_rs3 mpls add interface to_rs5 mpls start 17-76 Riverstone Networks RS Switch Router User Guide Release 8.0 send VLAN 100 mapping to R1 send VLAN 200 mapping to R1 adds R1 as LDP peer...
  • Page 385 ! Create explicit path to_rs3_primary to R3 mpls create path to_rs3_primary num-hops 3 mpls set path to_rs3_primary ip-addr 100.1.1.1 type strict hop 1 mpls set path to_rs3_primary ip-addr 100.1.1.2 type strict hop 2 Riverstone Networks RS Switch Router User Guide Release 8.0 17-77 Configuring L2 Tunnels...
  • Page 386 5 mtu 1200 ! Start MPLS mpls start ! Configure RSVP rsvp add interface to_rs6 rsvp add interface to_rs4 rsvp start 17-78 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 387 R3 as LDP peer send VLAN 100 mapping to R3 send VLAN 200 mapping to R3 send VLAN 100 mapping to R1 send VLAN 200 mapping to R1 Riverstone Networks RS Switch Router User Guide Release 8.0 17-79 Configuring L2 Tunnels...
  • Page 388: Figure 17-18 Tunneling Of Multiple Virtual Circuits Based On Ports (Untagged Frames)

    1 ldp map ports gi.3.1 customer-id 2 ldp add l2-fec customer-id 1 to-peer 111.1.1.3 ldp add l2-fec customer-id 2 to-peer 111.1.1.3 ldp start 17-80 Riverstone Networks RS Switch Router User Guide Release 8.0 gi.15.1 gi.3.2 gi.4.1 gi.14.1 111.1.1.2/16 111.1.1.3/16 adds R3 as LDP peer maps port gi.6.1 to customer-id 1...
  • Page 389 802.1q tagged frames configure trunk port that does not send out 802.1q tagged frames Riverstone Networks RS Switch Router User Guide Release 8.0 17-81 Configuring L2 Tunnels...
  • Page 390 17-82 Riverstone Networks RS Switch Router User Guide Release 8.0 adds R1 as LDP peer maps port gi.12.1 to customer-id 1 maps port gi.13.1 to customer-id 2 sends label mapping for customer-id 1 to R1...
  • Page 391 ! Configure IGP (in this example, OSPF is the IGP) ip-router global set router-id 111.1.1.3 ospf create area backbone ospf add interface to_r2 to-area backbone ospf add stub-host 111.1.1.3 to-area backbone cost 5 ospf start Riverstone Networks RS Switch Router User Guide Release 8.0 17-83...
  • Page 392: Figure 17-19 Tunneling Of Virtual Circuits Based On Ports (Rsvp Tunnel)

    Virtual Circuit based on ports Tunnel LSPs: Figure 17-19 Tunneling of virtual circuits based on ports (RSVP tunnel) 17-84 Riverstone Networks RS Switch Router User Guide Release 8.0 gi.14.2 gi.12.2 gi.4.1 gi.14.1 gi.4.2 gi.4.1 gi.13.1 gi.5.1...
  • Page 393 ! Configure LSP to R5 mpls create label-switched-path to_rs5_rsvp to 111.1.1.5 no-cspf mpls create policy dip_to_rs5 dst-ipaddr-mask 152.1.0.0/16 mpls set label-switched-path to_rs5_rsvp policy dip_to_rs5 LDP-signaling VLAN interface Riverstone Networks RS Switch Router User Guide Release 8.0 17-85 Configuring L2 Tunnels LDP-signaling VLAN...
  • Page 394 ! Configure RSVP rsvp add interface to_RS1 17-86 Riverstone Networks RS Switch Router User Guide Release 8.0 map ports to customer-id 10 adds R3 as LDP peer send customer-id 10 to R3 send customer-id 10 to R5...
  • Page 395 802.1q packets map port gi.15.1 to customer-id 10 adds R1 as LDP peer send customer-id mapping to R1 adds R5 as LDP peer Riverstone Networks RS Switch Router User Guide Release 8.0 17-87 Configuring L2 Tunnels...
  • Page 396 220.1.1.2/16 vlan ldp_in1 interface create ip to_rs4 address-netmask 100.1.1.1/16 vlan to_rs4_vlan interface add ip lo0 address-netmask 111.1.1.5/32 17-88 Riverstone Networks RS Switch Router User Guide Release 8.0 send customer-id mapping to R5 customer ports must be trunk ports for 802.1q packets...
  • Page 397 111.1.1.3 no-cspf mpls set label-switched-path to_rs3_1 secondary to_rs3_secondary no-cspf standby mpls set label-switched-path to_rs3_1 primary to_rs3_primary no-cspf retry-interval 5 mtu 1200 ! Start MPLS mpls start ! Configure RSVP Riverstone Networks RS Switch Router User Guide Release 8.0 17-89...
  • Page 398 ! Configure RSVP rsvp add interface to_rs1 rsvp add interface to_rs5 rsvp start 17-90 Riverstone Networks RS Switch Router User Guide Release 8.0 map port gi.12.2 to customer-id 10 adds R1 as LDP peer send customer-id mapping to R1 adds R3 as LDP peer...
  • Page 399: Figure 17-20 Tunneling Of Multiple Virtual Circuits Based On Port And Vlan Id

    ! Configure the VLAN cust2 with a VLAN ID of 200 vlan create cust2 port-based id 200 vlan add ports gi.6.1 to cust2 gi.3.2 gi.4.1 gi.14.1 gi.15.1 111.1.1.2/16 111.1.1.3/16 Riverstone Networks RS Switch Router User Guide Release 8.0 17-91 Configuring L2 Tunnels VLAN ID 100 gi.12.1 VLAN ID 200...
  • Page 400 200.1.1.2/16 vlan ldp_in1 interface create ip to_r3 address-netmask 210.1.1.1/16 vlan ldp_in3 17-92 Riverstone Networks RS Switch Router User Guide Release 8.0 adds R3 as LDP peer maps port gi.6.1 to customer-id 50...
  • Page 401 ! Configure the VLAN cust2 with a VLAN ID of 200 vlan create cust2 port-based id 200 vlan add ports gi.12.1 to cust2 Riverstone Networks RS Switch Router User Guide Release 8.0 17-93 Configuring L2 Tunnels...
  • Page 402 111.1.1.3 to-area backbone cost 5 ospf start 17-94 Riverstone Networks RS Switch Router User Guide Release 8.0 adds R1 as LDP peer maps port gi.12.1 to customer-id 10 MPLS Configuration...
  • Page 403: Figure 17-21 Tunneling Of Virtual Circuits Based On Vlan Id And Port (Rsvp Tunnel)

    50 vlan create to_rs5_only port-based id 60 gi.14.2 gi.12.2 gi.4.1 gi.14.1 gi.13.2 gi.4.1 gi.4.2 gi.5.1 Riverstone Networks RS Switch Router User Guide Release 8.0 17-95 Configuring L2 Tunnels Customer VLAN 50 gi.15.1 gi.12.1 gi.3.1 gi.3.2 gi.13.1 Customer VLAN 60 gi.6.2...
  • Page 404 5 preference 30 ! Start MPLS mpls start ! Configure RSVP rsvp add interface to_rs2 rsvp add interface to_rs6 17-96 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration LDP-signaling VLAN interface LDP-signaling VLAN interface...
  • Page 405 20 adds R3 as LDP peer adds R5 as LDP peer sends label mapping for customer-id 20/VLAN sends label mapping for customer-id 20/VLAN Riverstone Networks RS Switch Router User Guide Release 8.0 17-97 Configuring L2 Tunnels...
  • Page 406 20 vlan 50 to-peer 111.1.1.1 50 to R1 ldp add remote-peer 111.1.1.1 ldp start 17-98 Riverstone Networks RS Switch Router User Guide Release 8.0 maps port gi.15.1 to customer-id 20 sends label mapping for customer-id 20/VLAN adds R1 as LDP peer...
  • Page 407 111.1.1.5/32 ! Configure OSPF ip-router global set router-id 111.1.1.5 ospf create area backbone ospf add interface lo0 to-area backbone ospf add interface to_rs6 to-area backbone Riverstone Networks RS Switch Router User Guide Release 8.0 17-99 Configuring L2 Tunnels...
  • Page 408 5 mtu 1200 ! Start MPLS mpls start ! Configure RSVP rsvp add interface to_rs6 rsvp add interface to_rs4 rsvp start ! Configure LDP ldp add interface lo0 17-100 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 409 20 adds R1 as LDP peer sends label mapping for customer-id 20/VLAN Riverstone Networks RS Switch Router User Guide Release 8.0 17-101 Configuring L2 Tunnels...
  • Page 410: Traffic Engineering

    LSPs on the interface. 3. Administrative groups are referred to as resource classes or link colors in some implementations. 17-102 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 411 Section 17.7.2, "Constrained Shortest Path First." command to see the administrative groups configured on an RS. For example: Riverstone Networks RS Switch Router User Guide Release 8.0 17-103 Traffic Engineering command. Assign each command. This command.
  • Page 412: Constrained Shortest Path First

    Configure the dynamic LSP, as described in specify the parameter with the no-cspf commands. label-switched-path 17-104 Riverstone Networks RS Switch Router User Guide Release 8.0 command. ospf set opaque-capability off Section 17.5.3, "Configuring an Explicit LSP." mpls create label-switched-path MPLS Configuration ospf set CLI command.
  • Page 413: Figure 17-22 Constrained Path Selection By Administrative Group

    7 mpls add interface R1R2b mpls set interface R1R2b admin-group sky R2R1 R2R1b* Enable traffic engineering extensions for OSPF Riverstone Networks RS Switch Router User Guide Release 8.0 17-105 Traffic Engineering Figure 17-22, R2R3* R3R2*...
  • Page 414 ! Enable and start MPLS and RSVP mpls start rsvp add interface R2R1 rsvp add interface R2R1b rsvp add interface R2R3 rsvp start 17-106 Riverstone Networks RS Switch Router User Guide Release 8.0 Enable traffic engineering extensions for OSPF MPLS Configuration...
  • Page 415 R3R2 mpls set interface R3R2 admin-group sky ! Enable and start MPLS and RSVP mpls start rsvp add interface R3R2 rsvp start Enable traffic engineering extensions for OSPF Riverstone Networks RS Switch Router User Guide Release 8.0 17-107 Traffic Engineering...
  • Page 416 3 hop: 94.9.9.10 hop: 94.9.9.11 hop: 201.135.89.195 include: record-route: 94.9.9.10 94.9.9.11 201.135.89.195 17-108 Riverstone Networks RS Switch Router User Guide Release 8.0 command with the verbose from: 1.1.1.1 lsp-id: 0x8 protection: none hold-pri: 0 retry-int: 30 sec. next_retry_int: 60 sec.
  • Page 417: Figure 17-23 Traffic Engineering With Is-Is

    113.113.113.113 ip-router policy redistribute from-proto direct to-proto isis-level-1 ip-router authentication create key-chain test1 key ed301c4c0a9b1171 type primary id 255 (key is encrypted) isis add area 53.da05 Riverstone Networks RS Switch Router User Guide Release 8.0 17-109 Traffic Engineering 53.1.0.0/16...
  • Page 418 192.1.1.12/24 vlan to-R3 interface create ip to-R5 address-netmask 186.1.1.12/8 vlan to-R5 interface add ip lo0 address-netmask 12.12.12.12/32 ! Configure IS-IS ip-router global set router-id 12.12.12.12 17-110 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 419 22 vlan add ports et.13.8 to to-R4 Riverstone Networks RS Switch Router User Guide Release 8.0 17-111 Traffic Engineering...
  • Page 420 The following is the configuration for R4: ! Configure VLANs vlan create to-R3 ip id 22 vlan add ports et.16.23 to to-R3 17-112 Riverstone Networks RS Switch Router User Guide Release 8.0 MPLS Configuration...
  • Page 421 The following is the configuration for R5: ! Configure VLANs vlan create to-R2 ip vlan add ports et.2.15 to to-R2 vlan create to-R3 ip vlan add ports et.1.15 to to-R3 Riverstone Networks RS Switch Router User Guide Release 8.0 17-113 Traffic Engineering...
  • Page 422 LSP1 verbose Label-Switched-Path: "LSP1" to: 124.124.124.124 state: Up proto: <rsvp> setup-pri: 7 attributes: <FROM_ADDR> 17-114 Riverstone Networks RS Switch Router User Guide Release 8.0 from: 113.113.113.113 lsp-id: 0xf protection: none hold-pri: 0 MPLS Configuration command on R1 that shows the selected...
  • Page 423 3 sec. next_retry_int: 0.000000 sec. preference: 7 opt-int: 600 sec. ref-count: 1 - strict - strict - strict - strict Riverstone Networks RS Switch Router User Guide Release 8.0 17-115 Traffic Engineering command on R1 that shows the selected...
  • Page 424 Available BW [priority]: 1 Gbps [1] 1 Gbps [3] 1 Gbps [5] 1 Gbps [7] 1212.1212.1212.0d, Local: 192.1.1.12 17-116 Riverstone Networks RS Switch Router User Guide Release 8.0 - strict green Level Hold(s) SNPA 802.2 0:0:0:a3:62:61 20 Mbps 12 Mbps...
  • Page 425 Age: 1076 secs Age: 1076 secs Age: 1092 secs 1 Gbps 992 Mbps 992 Mbps 992 Mbps 992 Mbps 100 Mbps 92 Mbps 92 Mbps 92 Mbps 92 Mbps Riverstone Networks RS Switch Router User Guide Release 8.0 17-117 Traffic Engineering...
  • Page 426 NodeID: R5(126.126.126.126) Protocol: IS-IS(1) 1515.1515.1515.06, Local: 187.1.1.26, Remote: 187.1.1.15 Color: Static BW: 20 Mbps Reservable BW: 17-118 Riverstone Networks RS Switch Router User Guide Release 8.0 20 Mbps 20 Mbps 20 Mbps 20 Mbps 20 Mbps 100 Mbps 100 Mbps...
  • Page 427: Igp Shortcuts

    To enable IGP shortcuts on RS routers that use IS-IS as the IGP: ip-router global set install-lsp-routes on isis set igp-shortcuts enable 12 Mbps 12 Mbps 12 Mbps 12 Mbps 20 Mbps 20 Mbps 20 Mbps 20 Mbps 20 Mbps Riverstone Networks RS Switch Router User Guide Release 8.0 17-119 Traffic Engineering...
  • Page 428 To enable IGP shortcuts on the router R1, enter the following command: R1(config)# ip-router global set install-lsp-routes on R1(config)# isis set igp-shortcuts enable 17-120 Riverstone Networks RS Switch Router User Guide Release 8.0 Figure 17-23. On R1, packets for the destination 53.1.0.0/16 (on R4)
  • Page 429 LSP1 ISIS_L1 LSP2 ISIS_L1 LSP1 ISIS_L1 LSP2 LSP1 ISIS_L1 to-R2 Static 142net 143net to-R2 ISIS_L1 LSP1 ISIS_L1 LSP2 ISIS_L1 to-R2 ISIS_L1 to-R2 ISIS_L1 to-R2 ISIS_L1 LSP1 ISIS_L1 LSP2 Riverstone Networks RS Switch Router User Guide Release 8.0 17-121 Traffic Engineering...
  • Page 430 If no metric value is configured for the LSP with the label-switched-path commands, then a metric value of 1 is used. 17-122 Riverstone Networks RS Switch Router User Guide Release 8.0 isis add label-switched-path command for OSPF networks. mpls create|set...
  • Page 431: 18 Routing Policy Configuration

    The narrower the scope of the statement, the higher precedence its preference value is given, but the smaller the set of routes it affects. Riverstone Networks RS Switch Router User Guide Release 8.0 18-1...
  • Page 432: Import Policies

    If the specified optional-attributes-list has the value for the none well-known-community will be matched. 18-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Defined by CLI Command ip-router global set interface ospf ip add route...
  • Page 433: Export Policies

    Export policies control the redistribution of routes to other systems. They determine which routes are advertised by the Unicast Routing Process to other systems. Every export policy can have up to three components: • Export-Destination • Export-Source • Route-Filter Riverstone Networks RS Switch Router User Guide Release 8.0 18-3 Preference...
  • Page 434: Export-Destination

    The action taken when no match is found is dependent on the context. For instance, a route that does match any of the route-filters associated with the specified import or export policies is rejected. 18-4 Riverstone Networks RS Switch Router User Guide Release 8.0 Routing Policy Configuration...
  • Page 435: Aggregates And Generates

    Like export policies, aggregate-routes can have up to three components: • Aggregate-Destination • Aggregate-Source , and while creating an export policy preference Riverstone Networks RS Switch Router User Guide Release 8.0 18-5 Preference...
  • Page 436: Authentication

    Authentication has two components – an Authentication Method and an Authentication Key. Many protocols allow different authentication methods and keys to be used in different parts of the network. 18-6 Riverstone Networks RS Switch Router User Guide Release 8.0 Routing Policy Configuration...
  • Page 437: Authentication Methods

    While the requirement for most users, complex export policies may require the use of the commands listed under Export Policies. Configuring Simple Routing Policies command may fulfill the export policy redistribute Riverstone Networks RS Switch Router User Guide Release 8.0 18-7...
  • Page 438: Redistributing Static Routes

    If all direct network routes are to be redistributed set the used to specify routes that are to be redistributed. 18-8 Riverstone Networks RS Switch Router User Guide Release 8.0 <protocol> to-proto <low-high>]] [ <number>|...
  • Page 439: Redistributing Rip Into Rip

    Riverstone Networks RS Switch Router User Guide Release 8.0 18-9 Configuring Simple Routing Policies routes. Examples of ospf-ase ospf-ase routes, which are redistributed...
  • Page 440: Redistributing Aggregate Routes

    !+++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ ip add route 135.3.1.0/24 gateway 130.1.1.3 ip add route 135.3.2.0/24 gateway 130.1.1.3 ip add route 135.3.3.0/24 gateway 130.1.1.3 18-10 Riverstone Networks RS Switch Router User Guide Release 8.0 ip-router policy redistribute from-proto aggregate to-proto rip ip-router policy redistribute from-proto...
  • Page 441: Exporting All Static Routes Except The Default Route To All Rip Interfaces

    Router R1 has several static routes. We would export all these routes except the default route to all RIP interfaces. ip-router policy redistribute from-proto static to-proto rip network all ip-router policy redistribute from-proto static to-proto rip network default restrict Configuring Simple Routing Policies version 2 type multicast Riverstone Networks RS Switch Router User Guide Release 8.0 18-11...
  • Page 442: Simple Route Redistribution Example: Redistribution Into Ospf

    Router R1 has several static routes. We would like to export all these static routes and direct-routes (routes to connected networks) into OSPF. ip-router policy redistribute from-proto static to-proto ospf ip-router policy redistribute from-proto direct to-proto ospf 18-12 Riverstone Networks RS Switch Router User Guide Release 8.0 Routing Policy Configuration Figure 18-2.
  • Page 443: Configuring Advanced Routing Policies

    They can be used to provide the same route with different attributes to the various route-peers. , indicating all networks. Since in the above example, we 18-2, suppose we decide to run RIP Version 2 on network 120.190.0.0/16, Riverstone Networks RS Switch Router User Guide Release 8.0 18-13 Configuring Advanced Routing Policies...
  • Page 444: Export Policies

    If specified, is the identifier of the export-source which determines the source of the exported routes. If a export-policy for a given export-destination has more than one export-source, then the ip-router policy export destination <exp-src-id>. 18-14 Riverstone Networks RS Switch Router User Guide Release 8.0 ip-router policy export ip-router policy export iprouter policy export <filter-id>...
  • Page 445: Creating An Export Destination

    Riverstone Networks RS Switch Router User Guide Release 8.0 18-15 Configuring Advanced Routing Policies ip-router <exp-src-id> command should be <name> <name>...
  • Page 446: Creating An Import Source

    Route aggregation is a method of generating a more general route, given the presence of a specific route. The routing process does not perform any aggregation unless explicitly requested. Aggregate-routes can be constructed from one or more of the following building blocks: 18-16 Riverstone Networks RS Switch Router User Guide Release 8.0 ip-router policy import <imp-src-id>...
  • Page 447: Creating An Aggregate Destination

    <aggr-dest-id> <filter-id> [filter |[network <low-high> [exact|refines|between <number> |restrict]]]] ip-router policy aggr-gen destination <aggr-dest-id> <aggr-src-id> command should be repeated source Riverstone Networks RS Switch Router User Guide Release 8.0 18-17 Configuring Advanced Routing Policies command. command. command. ip-router policy <name> network...
  • Page 448: Creating An Aggregate Source

    RIP does not support the use of preference to choose between routes of the same protocol. That is left to the protocol metrics. For all examples in this section, refer to the configuration shown in 18-18 Riverstone Networks RS Switch Router User Guide Release 8.0 Routing Policy Configuration <name>...
  • Page 449: Figure 18-1 Exporting To Rip

    The configuration commands shown below for router R1: • Determine the IP address for each interface. • Specify the static routes configured on the router. • Determine its RIP configuration. Configuring Advanced Routing Policies 5,3 9 Riverstone Networks RS Switch Router User Guide Release 8.0 18-19...
  • Page 450: Importing A Selected Subset Of Routes From One Rip Trusted Gateway

    R41. Add the peer 140.1.1.41 to the list of trusted and source gateways. rip add source-gateways 140.1.1.41 rip add trusted-gateways 140.1.1.41 18-20 Riverstone Networks RS Switch Router User Guide Release 8.0 address-netmask 120.190.1.1/16 port et.1.2 address-netmask 130.1.1.1/16 port et.1.3...
  • Page 451: Importing A Selected Subset Of Routes From All Rip Peers Accessible Over A Certain Interface

    Like the other interior protocols, preference cannot be used to choose between OSPF ASE routes. That is done by the OSPF costs. Routes that are rejected by policy are stored in the table with a negative preference. Configuring Advanced Routing Policies Riverstone Networks RS Switch Router User Guide Release 8.0 18-21...
  • Page 452: Figure 18-2 Exporting To Ospf

    The following configuration commands for router R1: • Determine the IP address for each interface • Specify the static routes configured on the router 18-22 Riverstone Networks RS Switch Router User Guide Release 8.0 Figure 18-2. 5,3 9 Routing Policy Configuration...
  • Page 453: Importing A Selected Subset Of Ospf-Ase Routes

    Configuring Advanced Routing Policies address-netmask 120.190.1.1/16 port et.1.2 address-netmask 130.1.1.1/16 port et.1.3 140.1.1.1/24 port et.1.4 140.1.2.1/24 port et.1.5 address-netmask 140.1.3.1/24 port et.1.6 Riverstone Networks RS Switch Router User Guide Release 8.0 18-23...
  • Page 454: Export Policies Example: Exporting To Rip

    160.1.5.0/24 gateway 120.190.1.2 !++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ ! RIP Box Level Configuration !++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ rip start rip set default-metric 2 !++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++++ 18-24 Riverstone Networks RS Switch Router User Guide Release 8.0 Routing Policy Configuration Figure 18-1. address-netmask 120.190.1.1/16 port et.1.2 address-netmask 130.1.1.1/16 port et.1.3...
  • Page 455 Create a Direct export source since we would like to export direct/interface routes. ip-router policy create direct-export-source directExpSrc Configuring Advanced Routing Policies version 2 type multicast Riverstone Networks RS Switch Router User Guide Release 8.0 18-25...
  • Page 456: Exporting A Given Static Route To A Specific Rip Interface

    Create a RIP export source since we would like to export RIP routes. ip-router policy create rip-export-source ripExpSrc Create a Direct export source since we would like to export direct/interface routes. ip-router policy create direct-export-source directExpSrc 18-26 Riverstone Networks RS Switch Router User Guide Release 8.0 Routing Policy Configuration...
  • Page 457: Exporting All Static Routes Reachable Over A Given Interface To A Specific Rip Interface

    Create a RIP export source since we would like to export RIP routes. ip-router policy create rip-export-source ripExpSrc Create a Direct export source. ip-router policy create direct-export-source directExpSrc Configuring Advanced Routing Policies Riverstone Networks RS Switch Router User Guide Release 8.0 18-27...
  • Page 458: Exporting Aggregate-Routes Into Rip

    Create a RIP export destination for interface with address 130.1.1.1, since we intend to change the rip export policy only for interface 130.1.1.1. ip-router policy create rip-export-destination ripExpDst130 interface 130.1.1.1 18-28 Riverstone Networks RS Switch Router User Guide Release 8.0 18-1, suppose you decide to run RIP Version 1 on network 130.1.0.0/16, Routing Policy Configuration...
  • Page 459: Export Policies Example: Exporting To Ospf

    Interface routes are not automatically exported into OSPF. They have to be explicitly done. Configuring Advanced Routing Policies ip-router policy create ospf set ase-defaults tag ip-router policy create ospf-export-destination Riverstone Networks RS Switch Router User Guide Release 8.0 18-29 ospf set command.
  • Page 460 Create a OSPF export destination for type-1 routes since we would like to redistribute certain routes into OSPF as type 1 OSPF-ASE routes. ip-router policy create ospf-export-destination ospfExpDstType1 type 1 metric 1 18-30 Riverstone Networks RS Switch Router User Guide Release 8.0 Routing Policy Configuration Figure 18-2.
  • Page 461 Router R1 would like to redistribute its OSPF, OSPF-ASE, RIP, Static and Interface/Direct routes into RIP. 18-2, suppose we decide to run RIP Version 2 on network 120.190.0.0/16, Riverstone Networks RS Switch Router User Guide Release 8.0 18-31 Configuring Advanced Routing Policies...
  • Page 462 2 tag 100 metric 4 Create a RIP export source. ip-router policy export destination ripExpDst source ripExpSrc network all Create a Static export source. ip-router policy create static-export-source statExpSrc 18-32 Riverstone Networks RS Switch Router User Guide Release 8.0 Routing Policy Configuration...
  • Page 463 Configuring Advanced Routing Policies Riverstone Networks RS Switch Router User Guide Release 8.0 18-33...
  • Page 464 Configuring Advanced Routing Policies Routing Policy Configuration 18-34 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 465: Multicast Routing Configuration

    Generation identifiers, which are assigned to DVMRP whenever that protocol is started on a router. • Pruning, which is an operation DVMRP routers perform to exclude interfaces not in the shortest path tree. file, which is an Internet Engineering Task Force (IETF) document. Riverstone Networks RS Switch Router User Guide Release 8.0 19-1...
  • Page 466: Configuring Igmp

    By default IGMP is disabled on the RS. To enable IGMP on an interface, enter the following command in Configure mode: Enable IGMP on an interface. 19-2 Riverstone Networks RS Switch Router User Guide Release 8.0 <name/ipAddr> igmp enable interface...
  • Page 467: Configuring Igmp Query Interval

    <num> igmp set responsetime <name/ip-addr> igmp set interface <ip-addr/subnet mask> allowed-groups <name/ip-addr> igmp set interface <ip-addr/subnet mask> not-allowed-groups Riverstone Networks RS Switch Router User Guide Release 8.0 19-3 Configuring IGMP <num>...
  • Page 468: Configuring Dvmrp

    In order to support backward compatibility, DVMRP neighbor timeout and prune time can be configured on a per-interface basis. The default neighbor timeout is 35 seconds. The default prune time is 7200 seconds (2 hours). 19-4 Riverstone Networks RS Switch Router User Guide Release 8.0 igmp join group <name/ip-addr>...
  • Page 469: Configuring The Dvmrp Routing Metric

    Application restricted to subnet Application restricted to a site Application restricted to a region Application restricted to a continent Application not restricted <ip-addr> dvmrp set interface Riverstone Networks RS Switch Router User Guide Release 8.0 19-5 Configuring DVMRP <ip-addr> neighbor-timeout <ip-addr> <number> prunetime <number>...
  • Page 470: Configuring A Dvmrp Tunnel

    Shows all the interfaces and membership details running IGMP. Shows all IGMP group memberships on a port basis. Show all IGMP timers. 19-6 Riverstone Networks RS Switch Router User Guide Release 8.0 <ip-addr> dvmrp set interface dvmrp create tunnel <ip-addr>...
  • Page 471: Configuration Example

    10.135.89.10 igmp enable interface 172.1.1.10 igmp enable interface 207.135.122.11 igmp enable interface 207.135.89.64 l2-tables show igmp-mcast-registration l2-tables show vlan-igmp-status mulitcast show cache multicast show interfaces multicast show mroutes Riverstone Networks RS Switch Router User Guide Release 8.0 19-7 Configuration Example...
  • Page 472 207.135.122.11 dvmrp enable interface 207.135.89.64 dvmrp enable interface 10.40.1.10 ! Set DVMRP parameters dvmrp set interface 172.1.1.10 neighbor-timeout 200 ! Start DVMRP dvmrp start 19-8 Riverstone Networks RS Switch Router User Guide Release 8.0 Multicast Routing Configuration...
  • Page 473: Ip Policy-Based Forwarding Configuration

    100.1.1.1. Configuring an IP policy consists of the following tasks: • Defining a profile • Associating the profile with a policy • Applying the IP policy to an interface Riverstone Networks RS Switch Router User Guide Release 8.0 20-1...
  • Page 474: Defining An Acl Profile

    Packets matching the specified profile are forwarded using dynamic routes instead. 20-2 Riverstone Networks RS Switch Router User Guide Release 8.0 command, you associate the profile with an IP policy by entering one or statement specifies the next-hop gateway (or gateways) where packets command.)
  • Page 475: Setting The Ip Policy Action

    If you specify more than one next-hop ip-policy command to control how the load is distributed among ip-policy permit Riverstone Networks RS Switch Router User Guide Release 8.0 20-3 Configuring IP Policies statements, you can assign ip-policy ip policy deny...
  • Page 476 “OK.” If a CGI script is executed on the gateway, it should return a specific response (for example, “OK”) that the RS can verify. 20-4 Riverstone Networks RS Switch Router User Guide Release 8.0 command is issued, the RS can verify the state of a next-hop gateway by...
  • Page 477: Applying An Ip Policy To An Interface

    This section presents some examples of IP policy configurations. The following uses of IP policies are demonstrated: • Routing traffic to different ISPs • Prioritizing service to customers • Authenticating users through a firewall • Firewall load balancing IP Policy Configuration Examples ip-policy apply Riverstone Networks RS Switch Router User Guide Release 8.0 20-5 command.
  • Page 478: Routing Traffic To Different Isps

    200.1.1.1 action policy-first ip-policy net-b apply interface user-b 20-6 Riverstone Networks RS Switch Router User Guide Release 8.0 20-1, the policy router is configured to divide traffic originating within the et.1.1...
  • Page 479: Prioritizing Service To Customers

    RS using an IP policy to classify customers and route traffic to High-Cost, High Availability Network 100.1.1.1 et.1.1 Policy Router et.1.2 Low-Cost Network Figure Riverstone Networks RS Switch Router User Guide Release 8.0 20-7 IP Policy Configuration Examples 200.1.1.1 20-2:...
  • Page 480: Authenticating Users Through A Firewall

    10.50.2.0/24 any any any 0 ip-policy access permit acl contractors next-hop-list 11.1.1.1 action policy-only ip-policy access permit acl full-timers next-hop-list 12.1.1.1 action policy-first ip-policy access apply interface mls0 20-8 Riverstone Networks RS Switch Router User Guide Release 8.0 IP Policy-Based Forwarding Configuration Firewall Router...
  • Page 481: Firewall Load Balancing

    Policy 20.1.1.1/24 Router 1 15.1.1.4 Figure 20-4 Firewall load balancing example FireWall 13.1.1.4 Policy Router 2 13.1.1.3 FireWall Riverstone Networks RS Switch Router User Guide Release 8.0 20-9 IP Policy Configuration Examples Server 192.168.1.1/24 Virtual IP Addresses: 12.1.1.1:21 12.1.1.2:80 Server...
  • Page 482 PolToLB set pinger on ! Configure DHCP server to provide clients with IP address pool dhcp dClient define pool 20.1.1.10-20.1.1.100 dhcp dClient define parameters gateway 20.1.1.1 address-netmask 20.1.1.0/24 20-10 Riverstone Networks RS Switch Router User Guide Release 8.0 IP Policy-Based Forwarding Configuration...
  • Page 483: Monitoring Ip Policies

    The command also displays statistics about packets that have matched an IP policy statement as well as the number of packets that have been forwarded to each next-hop gateway. Figure 20-4. Riverstone Networks RS Switch Router User Guide Release 8.0 20-11 Monitoring IP Policies...
  • Page 484 The rule to apply to the packets matching the profile: either permit or deny The name of the profile (ACL) of the packets to be forwarded using an IP policy. 20-12 Riverstone Networks RS Switch Router User Guide Release 8.0 Dest. IP/Mask...
  • Page 485 (with dynamic routes). See the Riverstone RS Switch Router Command Line Interface Reference Manual for complete syntax information for command. ip-policy show Riverstone Networks RS Switch Router User Guide Release 8.0 20-13 Monitoring IP Policies...
  • Page 486 Monitoring IP Policies IP Policy-Based Forwarding Configuration 20-14 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 487: Network Address Translation Configuration

    21.1 CONFIGURING NAT The following are the steps in configuring NAT on the RS: Setting the NAT interfaces to be “inside” or “outside.” Setting the NAT rules (static or dynamic). Riverstone Networks RS Switch Router User Guide Release 8.0 21-1...
  • Page 488: Setting Inside And Outside Interfaces

    This prevents a host on the outside global network from being allowed to send messages directly to any address in the local address pool. 21-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Network Address Translation Configuration <InterfaceName>...
  • Page 489: Managing Dynamic Bindings

    <local-acl> local-acl-pool <ip-addr/ip-addr-range/ip-addr-list/ip-addr-mask> nat flush-dynamic-binding type-specified dynamic|overloaded-dynamic nat flush-dynamic-binding owner-specified dns|ftp-control|ftp-data Riverstone Networks RS Switch Router User Guide Release 8.0 21-3 Managing Dynamic Bindings <minutes> |disable global-pool...
  • Page 490: Nat And Icmp Packets

    FTP packets will arrive on a different port number, you need to specify that port to NAT. To define FTP parameters to NAT, enter the following commands in Configure mode. Specify the FTP control port. Specify the FTP session timeout. 21-4 Riverstone Networks RS Switch Router User Guide Release 8.0 nat create dynamic local-acl-pool <outside-local-acl> <ip-addr/ip-addr-range/ip-addr-list/ip-addr-mask>...
  • Page 491: Monitoring Nat

    The first step is to create the interfaces: interface create ip 10-net address-netmask 10.1.1.1/24 port et.2.1 interface create ip 192-net address-netmask 192.50.20.1/24 port et.2.2 nat show [translations all| [timeouts] [statistics] Riverstone Networks RS Switch Router User Guide Release 8.0 21-5 Monitoring NAT <type>...
  • Page 492: Using Static Nat

    A typical example is a web server inside the local network, which could be configured as follows: nat create static protocol tcp local-ip 10.1.1.2 global-ip 192.50.20.2 local-port 80 global-port 80 This server, 10.1.1.2, is advertised as 192.50.20.2 to the external network. 21-6 Riverstone Networks RS Switch Router User Guide Release 8.0 Network Address Translation Configuration...
  • Page 493: Dynamic Configuration

    Then, define the NAT dynamic rules by first creating the source ACL pool and then configuring the dynamic bindings: acl lcl permit ip 10.1.1.0/24 nat create dynamic local-acl-pool lcl global-pool 192.50.20.0/24 Riverstone Networks RS Switch Router User Guide Release 8.0 21-7 Configuration Examples...
  • Page 494: Using Dynamic Nat

    192-net address-netmask 192.50.20.1/24 port et.2.2 Next, define the interfaces to be NAT “inside” or “outside”: nat set interface 10-net inside nat set interface 192-net outside 21-8 Riverstone Networks RS Switch Router User Guide Release 8.0 Network Address Translation Configuration...
  • Page 495: Using Dynamic Nat With Ip Overload

    Dynamic NAT with DNS The following example configures a DNS dynamic address binding for outside address 192.50.20.2-192.50.20.9 to inside addresses 10.1.1.0/24: Figure 21-4 Dynamic address binding with DNS Riverstone Networks RS Switch Router User Guide Release 8.0 21-9 Configuration Examples...
  • Page 496: Using Dynamic Nat With Dns

    The reply can include the local IP address of a host inside the local network (for example, 10.1.1.2); this local IP address will be translated by NAT into a global IP address (for example, 192.50.20.2) in a dynamic binding for the response. 21-10 Riverstone Networks RS Switch Router User Guide Release 8.0 Network Address Translation Configuration...
  • Page 497: Dynamic Nat With Outside Interface Redundancy

    201-net address-netmask 201.50.20.0/24 port et.2.3 Next, define the interfaces to be NAT “inside” or “outside”: nat set interface 10-net inside nat set interface 192-net outside nat set interface 201-net outside Riverstone Networks RS Switch Router User Guide Release 8.0 21-11 Configuration Examples...
  • Page 498: Using Dynamic Nat With Matching Interface Redundancy

    Hence, you can specify two different global pools with the same local ACL pool on two different interfaces. 21-12 Riverstone Networks RS Switch Router User Guide Release 8.0 Network Address Translation Configuration...
  • Page 499: 22 Web Hosting Configuration

    Define the servers in the group. Specify optional operating parameters for the group of load balancing servers or for individual servers in the group. can perform these functions much faster as the Riverstone Networks RS Switch Router User Guide Release 8.0 22-1...
  • Page 500: Creating The Server Group

    How the RS determines the binding match for session persistence is configured with the when the load balancing group is created. 22-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Web Hosting Configuration as the...
  • Page 501: Adding Servers To The Load Balancing Group

    Server selection is done according to the specified policy. command to specify a different port number. command) is applied to the source IP Riverstone Networks RS Switch Router User Guide Release 8.0 22-3 Load Balancing...
  • Page 502: Setting Timeouts For Load Balancing Mappings

    You can use the load-balance show source-mappings bindings. 22-4 Riverstone Networks RS Switch Router User Guide Release 8.0 status backup command. The backup servers are sent client requests only if a load balancing command to set a load balancing server to a “down”...
  • Page 503: Optional Group Or Server Operating Parameters

    This limits the number of connections for each server in the group, not the total Note number of connections for the group. command and load-balance set group-options . By default, the RS assigns sessions to these servers protocol tcp Riverstone Networks RS Switch Router User Guide Release 8.0 22-5 Load Balancing command...
  • Page 504 RADIUS server is “up.” The following example sets the values for the query to the RADIUS server: rs(config)# load-balance set group-options mktgroup radius-username radiusserv radius-password a1b2c3e4f5 radius-md5 abcdegh 22-6 Riverstone Networks RS Switch Router User Guide Release 8.0 Web Hosting Configuration...
  • Page 505: Using Health Check Clusters

    The “down” status does not affect any current sessions on the server. When the server is again ready to accept new sessions, you can set the server status to “up.” Riverstone Networks RS Switch Router User Guide Release 8.0 22-7 Load Balancing...
  • Page 506: Load Balancing And Ftp

    VSRP runs in the active-active mode, so the RS’s share persistence information in real time. Thus, should one RS go down, the other is able to immediately take over. 22-8 Riverstone Networks RS Switch Router User Guide Release 8.0 Web Hosting Configuration...
  • Page 507: Figure 22-1 Vsrp Configuration Example

    To mirror the sessions of RS B, enter the following commands on RS B: load-balance create state-mirror-peer 100.1.1.1 src-ip-to-use 100.1.1.2 load-balance add group-for-mirroring www.fast.net ip-of-peer 100.1.1.1 load-balance create load-balance add group-for-mirroring www.fast.net 100.1.1.2 RS B Riverstone Networks RS Switch Router User Guide Release 8.0 22-9 Load Balancing command on both RS’s.
  • Page 508: Displaying Load Balancing Information

    Show information about the health check clusters. Show session mirroring information. 22.1.12 Configuration Examples This section shows examples of load balancing configurations. 22-10 Riverstone Networks RS Switch Router User Guide Release 8.0 load-balance show virtual-hosts [group-name name> <ipaddr> ][virtual-ip ][virtual-port load-balance show source-mappings [client-ip <ipaddr/range>...
  • Page 509: Web Hosting With One Virtual Group And Multiple Destination Servers

    207.135.89.16 virtual-port 80 protocol tcp load-balance add host-to-group 10.1.1.1-10.1.1.4 group-name abccompany-www port 80 TCP Port Real Server IP 10.1.1.1 10.1.1.2 10.1.1.3 10.1.1.4 commands: load-balance Riverstone Networks RS Switch Router User Guide Release 8.0 22-11 Load Balancing TCP Port...
  • Page 510: Web Hosting With Multiple Virtual Groups And Multiple Destination Servers

    Domain Name Virtual IP www.quick.com 207.135.89.16 ftp.quick.com 207.135.89.16 smtp.quick.com 207.135.89.16 22-12 Riverstone Networks RS Switch Router User Guide Release 8.0 string in the file is not known to the user. In acv-reply TCP Port Real Server IP 10.1.1.1 10.1.1.2 10.1.1.3...
  • Page 511: Virtual Ip Address Ranges

    HTTP request. load-balance add host-to-vip-range command. Once the vip-range is in place, the ISP can then create the oad-balance add host-to-vip-range Riverstone Networks RS Switch Router User Guide Release 8.0 22-13 Load Balancing commands were command. These two...
  • Page 512: Figure 22-4 Virtual Ip Address Ranges

    207.135.89.16-207.135.89.50 virtual-port 80 protocol tcp load-balance add host-to-vip-range 10.1.1.16-10.1.1.50 vip-range-name mywwwrange port load-balance add host-to-vip-range 10.1.2.16-10.1.2.50 vip-range-name mywwwrange port 22-14 Riverstone Networks RS Switch Router User Guide Release 8.0 TCP Port Destination Server IP S1: 10.1.1.16 S2: 10.1.2.16...
  • Page 513: Figure 22-5 Session And Netmask Persistence

    443 load-balance add host-to-group 10.1.1.1-10.1.1.2 group-name abccompany-sec port 443 load-balance set client-proxy-subnet abccompany-sec subnet 24 Virtual IP Real Server IP 207.135.89.16 10.1.1.1 10.1.1.2 Riverstone Networks RS Switch Router User Guide Release 8.0 22-15 Load Balancing TCP Port...
  • Page 514: Figure 22-6 Load Balancing With Nat

    136.1.1.100 for the request. For the reply, NAT translates the global IP address back to the internal IP address and sends the reply message to the load balancing server. The load balancing server sends a DNS reply back to the client. 22-16 Riverstone Networks RS Switch Router User Guide Release 8.0 Figure 22-6:...
  • Page 515: Web Caching

    HTTP requests are redirected. Apply the caching policy to an outbound interface or port to redirect HTTP traffic on that interface or port to the cache servers. Riverstone Networks RS Switch Router User Guide Release 8.0 22-17 Web Caching...
  • Page 516: Creating The Cache Group

    80, therefore these types of requests are not redirected by the RS. The following example applies the policy “testweb1” to port et.3.1: rs(config)# web-cache testweb1 apply port et.3.1 22-18 Riverstone Networks RS Switch Router User Guide Release 8.0 Web Hosting Configuration...
  • Page 517: Configuration Example

    You can specify the sites for which HTTP requests are not redirected to the cache servers, as shown in the following example: rs(config)# web-cache testweb1 create bypass-list range “135.142.179.14 135.142.179.21” Riverstone Networks RS Switch Router User Guide Release 8.0 22-19 Web Caching web-cache...
  • Page 518: Proxy Server Redundancy

    RS selects the cache server on a rotating basis regardless of the load on individual servers 22-20 Riverstone Networks RS Switch Router User Guide Release 8.0 web-cache set redirect-protocol command) allows transparent redirection of traffic for any application...
  • Page 519: Specifying A Connection Threshold

    In the following example, the servers in the weblist1 server group will be pinged at 7-second intervals. If the RS does not receive a reply after 3 ping requests, the server will be considered “down.” rs(config)# web-cache testweb1 set server-options weblist1 ping-tries 3 ping-int 7 command. Riverstone Networks RS Switch Router User Guide Release 8.0 22-21 Web Caching...
  • Page 520: Monitoring Web-Caching

    Show information for all caching policies and all server lists. Show caching policy information. Show cache server information. Show statistics for the specified cache policy. 22-22 Riverstone Networks RS Switch Router User Guide Release 8.0 web-cache show all <cache-name> web-cache show cache-name web-cache show servers cache...
  • Page 521: 23 Ipx Routing Configuration

    Routers perform broadcasting whenever they detect a change in the internetwork configurations. The RIP implementation on the RS follows the guidelines in Novell's IPX RIP and SAP Router Specification Version 1.30 document. Riverstone Networks RS Switch Router User Guide Release 8.0 23-1...
  • Page 522: Sap (Service Advertising Protocol)

    When you create IPX interfaces on the RS, you provide information about the interface (such as its name, output MAC encapsulation, and IPX address). You also enable or disable the interface and bind the interface to a single port or VLAN. 23-2 Riverstone Networks RS Switch Router User Guide Release 8.0 IPX Routing Configuration ipx add route command.
  • Page 523: Ipx Addresses

    23.4.2 Configuring Secondary Addresses on an IPX Interface You can configure secondary addresses on an IPX interface. <InterfaceName> interface create ipx <ipxAddr-mask> <port> port Riverstone Networks RS Switch Router User Guide Release 8.0 23-3 Configuring IPX Interfaces and Parameters address-mask...
  • Page 524: Configuring Ipx Interfaces For A Vlan

    802.2 encapsulation method used within Novell IPX environments To configure IPX encapsulation, enter the following commands in Configure mode: Configure Ethernet II encapsulation. Configure 802.3 SNAP encapsulation. 23-4 Riverstone Networks RS Switch Router User Guide Release 8.0 <Interface Name> interface add ipx <IPX-network-address>...
  • Page 525: Configuring Ipx Routing

    <Interface Name> interface create ipx output-mac-encapsulation ethernet_802.3 <Interface Name> interface create ipx output-mac-encapsulation ethernet_802.2_ipx <networkaddr> ipx add route <nextrouter or network node> <metric> <ticks> Riverstone Networks RS Switch Router User Guide Release 8.0 23-5 Configuring IPX Routing...
  • Page 526: Controlling Access To Ipx Networks

    Once an IPX access control list has been created, you must apply the access control list to an IPX interface. To apply an IPX access control list, enter the following command in Configure mode: Apply an IPX access control list. 23-6 Riverstone Networks RS Switch Router User Guide Release 8.0 <service type> <SrvcName> <node> <socket> <metric> ipx add sap <interface-network>...
  • Page 527: Creating An Ipx Type 20 Access Control List

    <name> permit|deny ipxsap <ServiceType> <ServiceName> <name> apply interface input|output [logging [on|off]] <name> permit|deny ipxgns <ServiceType> <ServiceName> <name> apply interface [logging [on|off]] Riverstone Networks RS Switch Router User Guide Release 8.0 23-7 Configuring IPX Routing <ServerNetworkNode> <InterfaceName> <ServerNetworkNode> <InterfaceName> output...
  • Page 528: Creating An Ipx Rip Access Control List

    This example performs the following configuration: • Creates IPX interfaces • Adds static RIP routes • Adds static SAP entries 23-8 Riverstone Networks RS Switch Router User Guide Release 8.0 <name> permit|deny ipxrip <ToNetwork> <name> apply interface input|output [logging [on|off]] <DstNetwork>...
  • Page 529 !IPX type 20 inbound filter to interface ipx2 acl 300 apply interface ipx2 input !GNS Access List acl 300 deny ipxgns A.01:03:05:07:02:03 0004 FILESERVER2 acl 200 apply interface ipx2 output Riverstone Networks RS Switch Router User Guide Release 8.0 23-9 Configuration Examples...
  • Page 530 Configuration Examples IPX Routing Configuration 23-10 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 531: Access Control List Configuration

    ACLs, either remotely or explains how to log information about packets that are lists the commands you can use to display information about Riverstone Networks RS Switch Router User Guide Release 8.0 24-1 or it can be denyftp...
  • Page 532 The following syntax description shows the fields of an IPX ACL rule: <name> <SrcAddr> <SrcSocket> <DstAddr> <DstSocket> <SrcNetMask> permit|deny ipx <DstNetMask> 24-2 Riverstone Networks RS Switch Router User Guide Release 8.0 parameter must be followed by one of the three checkpoint time , or 5-minutes 15-minutes...
  • Page 533: How Acl Rules Are Evaluated

    . For example, the following ACL rule denies SMTP traffic between any keyword is not necessary. For example, the following ACL permits Riverstone Networks RS Switch Router User Guide Release 8.0 24-3 ACL Basics...
  • Page 534: Implicit Deny Rule

    Although the implicit deny rule may seem obvious in the above example, this is not always the case. For example, consider the following ACL rule: acl 102 deny ip 10.1.20.0/24 any any any 24-4 Riverstone Networks RS Switch Router User Guide Release 8.0 Access Control List Configuration...
  • Page 535: Allowing External Responses To Established Tcp Connections

    TCP connection was initiated internally. Otherwise, it will be rejected. To do this, enter the following command in Configure Mode: Allow TCP responses from external hosts, provided the connection was established internally. <name> permit tcp established Riverstone Networks RS Switch Router User Guide Release 8.0 24-5 ACL Basics...
  • Page 536: Creating And Modifying Acls

    ACL commands is important because it removes any potential confusion caused by the addition of new ACL rules to existing rules. Basically, the no acl command cleans up the system for the new ACL rules. 24-6 Riverstone Networks RS Switch Router User Guide Release 8.0 Access Control List Configuration...
  • Page 537: Maintaining Acls Using The Acl Editor

    ( command or simply exit the ACL Editor. save Riverstone Networks RS Switch Router User Guide Release 8.0 24-7 Creating and Modifying ACLs command. You edit an ACL by command) and re-order the rules delete...
  • Page 538: Using Acls

    ACL to the inbound interface. To apply an ACL to an interface, enter the following command in Configure mode: Apply ACL to an interface. [logging on|off|deny-only|permit-only][policy local|external] 24-8 Riverstone Networks RS Switch Router User Guide Release 8.0 port mirroring rate-limit acl-policy enable external <name>...
  • Page 539: Applying Acls To Services

    Apply a Layer-4 bridging ACL to a port Section 25.4, "Layer-4 Bridging and Filtering," <name> <service name> apply service [logging [on|off]] <name> <port-list> apply port for information on configuring Layer-4 Bridging on the RS. Riverstone Networks RS Switch Router User Guide Release 8.0 24-9 Using ACLs...
  • Page 540: Using Acls As Profiles

    IP policy. Packets that meet the criteria defined in the Profile ACL are forwarded according to the command that references the Profile ACL. ip-policy 24-10 Riverstone Networks RS Switch Router User Guide Release 8.0 Access Control List Configuration nat create...
  • Page 541: Using Profile Acls With The Traffic Rate Limiting Facility

    Riverstone Networks RS Switch Router User Guide Release 8.0 24-11 Using ACLs ip-policy...
  • Page 542: Using Profile Acls With Dynamic Nat

    192.50.20.0/24. nat create dynamic local-acl-pool local global-pool 192.50.20.10/24 rs(config)# Chapter 21, "Network Address Translation Configuration" 24-12 Riverstone Networks RS Switch Router User Guide Release 8.0 Access Control List Configuration rate-limit apply interface statement are ignored.
  • Page 543: Using Profile Acls With The Port Mirroring Facility

    10.10.10.10 and a destination address of 1.2.3.4 : acl prof4 permit ip 10.10.10.10 1.2.3.4 rs(config)# command to copy packets that match the selection port mirroring for more information on using the Riverstone Networks RS Switch Router User Guide Release 8.0 24-13 Using ACLs port mirroring...
  • Page 544: Enabling Acl Logging

    101 deny ip 10.2.0.0/16 any any any acl 101 permit ip any any any any acl 101 apply interface int1 input logging on 24-14 Riverstone Networks RS Switch Router User Guide Release 8.0 Access Control List Configuration command), HTTP web-cache apply interface command.
  • Page 545: Monitoring Acls

    Show static entry filters. logging off acl show all <name> acl show aclname | all <name> acl show interface acl show interface all-ip acl show service Riverstone Networks RS Switch Router User Guide Release 8.0 24-15 Monitoring ACLs option for the...
  • Page 546 Monitoring ACLs Access Control List Configuration 24-16 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 547: 25 Security Configuration

    You can secure login or Enable mode access to the RS by enabling a Remote Authentication Dial-In Service (RADIUS) client. A RADIUS server responds to the RS RADIUS client to provide authentication. Riverstone Networks RS Switch Router User Guide Release 8.0 25-1...
  • Page 548: Monitoring Radius

    Otherwise, if the server does not reply within the configured timeout period for the configured number of re- tries, user authentication will fail. Monitoring RADIUS You can monitor RADIUS configuration and statistics within the RS. 25-2 Riverstone Networks RS Switch Router User Guide Release 8.0 <IP-addr> radius set server <server-options>...
  • Page 549: Configuring Tacacs

    Riverstone Networks RS Switch Router User Guide Release 8.0 25-3 Configuring RS Access Security <hostname or IP-addr> <number>...
  • Page 550 You can monitor TACACS+ configuration and statistics within the RS. To monitor TACACS+, enter the following commands in Enable mode: Show TACACS+ server statistics. Show all TACACS+ parameters. 25-4 Riverstone Networks RS Switch Router User Guide Release 8.0 tacacs-plus set server tacacs-plus set deadtime tacacs-plus set key...
  • Page 551: Configuring Passwords

    VWULQJ! system set password login VWULQJ! system set password enable system set password Riverstone Networks RS Switch Router User Guide Release 8.0 25-5 Configuring RS Access Security command) is supported. If TACACS ssh server generate-key . You can root...
  • Page 552: Layer-2 Security Filters

    Address filters are always configured and applied to the input port. Port-to-address lock filters These filters prohibit a user connected to a locked port or set of ports from using another port. 25-6 Riverstone Networks RS Switch Router User Guide Release 8.0 exit system show ssh-access system set idle-time-out ssh...
  • Page 553: Configuring Layer-2 Address Filters

    <MACaddr> |any source-mac-mask <MACaddr> |any dest-mac-mask <VLAN-num> |any in-port-list filters add port-address-lock name <MACaddr> <VLAN-num> vlan Riverstone Networks RS Switch Router User Guide Release 8.0 25-7 Layer-2 Security Filters <name> source-mac <mask> |any vlan <port-list> <name> dest-mac <mask> vlan <port-list>...
  • Page 554: Configuring Layer-2 Static Entry Filters

    Combine a destination secure port filter with a flow static entry to drop all received traffic but allow any frame coming from specific source MAC address that is destined to specific destination MAC address to go through. 25-8 Riverstone Networks RS Switch Router User Guide Release 8.0 filters add static-entry name allow|disallow|force source-mac <mask>...
  • Page 555: Monitoring Layer-2 Security Filters

    ] [source-mac <MACaddr> [source-mac Router et.1.1 et.1.2 et.1.3 Engineering Finance File Servers File Servers Riverstone Networks RS Switch Router User Guide Release 8.0 25-9 Layer-2 Security Filters <name> direction source vlan <name> direction destination <port-list> <MACaddr> <VLAN-num> ] [vlan <port-list>...
  • Page 556: Static Entries Example

    Destination static entry: Restrict "login multicasts" originating from the engineering segment (port et.1.1) from reaching the finance servers. filters add static-entry name login-mcasts dest-mac 010000:334455 vlan 1 in-port-list et.1.1 out-port-list et.1.3 restriction disallow 25-10 Riverstone Networks RS Switch Router User Guide Release 8.0 Security Configuration...
  • Page 557: Port-To-Address Lock Examples

    Source secure port: To block all engineers on port 1 from accessing all other ports, enter the following command: filters add secure-port name engineers direction source vlan 1 in-port-list et.1.1 Riverstone Networks RS Switch Router User Guide Release 8.0 25-11 Layer-2 Security Filters dest-mac...
  • Page 558: Layer-3 Access Control Lists (Acls)

    Ports that are included in a layer-4 bridging VLAN must reside on updated RS Note hardware. 25-12 Riverstone Networks RS Switch Router User Guide Release 8.0 Chapter 24, "Access Control List Configuration." above, you can configure ports to filter traffic using MAC...
  • Page 559: Creating An Ip Or Ipx Vlan For Layer-4 Bridging

    For example, to create an IP VLAN called “blue” with an ID of 21, enter the following command in Configure mode: vlan create blue ip id 21 rs(config)# Router et.1.1 et.1.2 et.1.3 Consultant File Server Engineer 1.1.1.2/24 1.1.1.3/24 <vlan-name> <type> vlan create Riverstone Networks RS Switch Router User Guide Release 8.0 25-13 Layer-4 Bridging and Filtering <num>...
  • Page 560: Placing The Ports On The Same Vlan

    ACLs that allow only SMTP traffic on the port to which the consultants are connected and allow SMTP, HTTP, and FTP traffic on the ports to which the engineers are connected. 25-14 Riverstone Networks RS Switch Router User Guide Release 8.0 <port-list>...
  • Page 561: Applying A Layer-4 Bridging Acl To A Port

    Layer-4 Bridging VLAN. For Appletalk and DECnet packets, a warning is issued before the first packet is dropped. for more information on defining ACLs. <name> <port-list> apply port Riverstone Networks RS Switch Router User Guide Release 8.0 25-15 Layer-4 Bridging and Filtering...
  • Page 562 ACLs applied to a network interface (as opposed to a port) do not have an effect on Layer-4 Bridged traffic, even though the interface may include ports used in Layer-4 Bridging. 25-16 Riverstone Networks RS Switch Router User Guide Release 8.0 Security Configuration...
  • Page 563: 26 Qos Configuration

    (in order from highest priority to lowest): • Control • High • Medium • Control is for router control traffic. The remaining classes are for normal data Note flows. Riverstone Networks RS Switch Router User Guide Release 8.0 26-1...
  • Page 564: Layer-2, Layer-3 And Layer-4 Flow Specification

    • Destination port – 1 Destination IP address – 2 Source port – 3 Source IP address – 4 ToS – 5 Interface – 6 Protocol – 7 26-2 Riverstone Networks RS Switch Router User Guide Release 8.0 QoS Configuration...
  • Page 565: Source Port

    In the flow mode, you can also ignore the source MAC address and configure the Note priority based on the destination MAC address only. commands to change the default precedence. Riverstone Networks RS Switch Router User Guide Release 8.0 26-3 RS Queuing Policies...
  • Page 566: Configuring Layer-2 Qos

    To specify a priority map on a per-port basis, enter the following commands in the Configure mode: Create a new priority mapping. Apply new priority mapping to ports. 26-4 Riverstone Networks RS Switch Router User Guide Release 8.0 <name> <MACaddr>...
  • Page 567: Removing Or Disabling Per-Port Priority Map

    Before you can remove a priority map, qos apply priority-map qos priority-map off <name> qos show priority-map Riverstone Networks RS Switch Router User Guide Release 8.0 26-5 Traffic Prioritization for Layer-2 Flows command causes the | all...
  • Page 568: Traffic Prioritization For Layer-3 & Layer-4 Flows

    Specifying Precedence for an IP QoS Policy To specify the precedence for an IP QoS policy, use the following command in the Configure mode: Specify precedence for an IP QoS policy. 26-6 Riverstone Networks RS Switch Router User Guide Release 8.0 <name> <priority> <srcaddr/mask> <dstport> <tos>...
  • Page 569: Configuring Ipx Qos Policies

    <num>] qos set queuing-policy weighted-fair port <port list> | all-ports <line within active-configuration containing qos set negate queuing-policy weighted-fair> Riverstone Networks RS Switch Router User Guide Release 8.0 26-7 Configuring RS Queueing Policy <srcmask> <srcport> | any | any <dstport>...
  • Page 570: Allocating Bandwidth For A Weighted-Fair Queuing Policy

    Control over the average queue size algorithm is provided by the parameter, while control over the packet-marking probability algorithm is provided by the parameter. mark-prob-denominator 26-8 Riverstone Networks RS Switch Router User Guide Release 8.0 qos set weighted-fair control <percentage> <percentage>...
  • Page 571: Figure 26-1 Average Queue Size And Bursty Traffic

    <num>] [ mark-prob-denominator <num>] [ min-queue-threshold control | high | medium | low Riverstone Networks RS Switch Router User Guide Release 8.0 26-9 Weighted Random Early Detection (WRED) accepts mark-prob-denominator value are somewhat is increased from 1 to 2, the and the fact that each network is different, <num>]...
  • Page 572: Tos Rewrite

    IP fields: • Source IP address • Destination IP address 26-10 Riverstone Networks RS Switch Router User Guide Release 8.0 Least Significant Bit command in the Configure mode. You can define the QoS policy qos set QoS Configuration...
  • Page 573: Figure 26-3 Tos Rewrite

    1110 0000) are ANDed together to specify the ToS Precedence field value of 6 (binary value 110). Changing the value in the <tos-mask> parameter determines the bit in the ToS octet field that will be examined. <tos-rewrite> 0-31 Riverstone Networks RS Switch Router User Guide Release 8.0 26-11 ToS Rewrite and specify a value for...
  • Page 574: Monitoring Qos

    Show RED parameters for each port. Show IP or IPX precedence values. Show WFQ bandwidth allocated for each port. Show priority mappings. 26-12 Riverstone Networks RS Switch Router User Guide Release 8.0 ToS = 7 ToS = 30 qos show ip qos show ipx qos show l2 all-destination all-flow ports <vlanID>...
  • Page 575: 26.10 Limiting Traffic Rate

    If both incoming and outgoing traffic to a network or subnet needs to be rate limited, then you should create separate policies to be applied to each interface. Shaping". Whereas rate limiting discards Riverstone Networks RS Switch Router User Guide Release 8.0 26-13 Limiting Traffic Rate...
  • Page 576: Rate Limiting Modes

    You cannot use non-IP ACLs for per-flow rate limit policies. Note 26-14 Riverstone Networks RS Switch Router User Guide Release 8.0 system enable aggregate-rate-limiting slot QoS Configuration QXPEHU!
  • Page 577: Software-Based Flow-Aggregate Rate Limiting

    <bandwidth> min-bandwidth distribute-among <name> rate-limit apply interface Modes"). You do not need to enable the aggregate rate limiting mode to Riverstone Networks RS Switch Router User Guide Release 8.0 26-15 Limiting Traffic Rate <acl list> <rate-limit> rate sequence <interface> | all Modes") to use...
  • Page 578: Aggregate Rate Limiting

    To configure aggregate rate limiting policies, you must first enable aggregate rate limiting mode on the line card (see Section 26.10.1, "Rate Limiting Modes"). You cannot use non-IP ACLs for aggregate rate limit policies. Note 26-16 Riverstone Networks RS Switch Router User Guide Release 8.0 <name> rate-limit port-level input rate <port list> {...
  • Page 579 | no-action | lower-priority | lower-priority-except-control | tos-precedence-rewrite <val1> | tos-precedence-rewrite-lower-priority allocate-resources during-apply | during-traffic <name> rate-limit apply interface Riverstone Networks RS Switch Router User Guide Release 8.0 26-17 Limiting Traffic Rate <acl list> <rate-limit> rate <val2>} <interface> | all...
  • Page 580: Example Configurations

    256000 exceed-action drop-packets min-bandwidth 4000 rate-limit apply cust1 interface tonet rate-limit cust1 flow-aggregate acl cust1 rate 64000 exceed-action drop-packets min-bandwidth 2000 rate-limit apply cust1 interface in1 26-18 Riverstone Networks RS Switch Router User Guide Release 8.0 1.1.1.1/8 et.1.1 Router et.1.2 3.3.3.3/8...
  • Page 581: Displaying Rate Limit Information

    To show information about rate limit policies, use the following command in the Enable mode: Show rate limit policy information. rate-limit show all | policy-type <name> <interface> | interface | rate-limiting-mode Riverstone Networks RS Switch Router User Guide Release 8.0 26-19 Limiting Traffic Rate <type> | policy-name <port> | <name>} port-level...
  • Page 582 Limiting Traffic Rate QoS Configuration 26-20 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 583: 27 Performance Monitoring

    Riverstone Networks RS Switch Router User Guide Release 8.0 27-1 SRUWOLVW!
  • Page 584: Configuring The Rs For Port Mirroring

    (You can only configure port mirroring for the entire WAN card). Only IP ACLs can be specified for port mirroring. 27-2 Riverstone Networks RS Switch Router User Guide Release 8.0 statistics show multicast statistics show port-errors...
  • Page 585: Monitoring Broadcast Traffic

    To specify the monitoring of broadcast traffic and the shut down threshold for one or more ports, enter the following command in Configure mode: Configure monitoring of port bmon broadcast traffic. shutdown <port list> <number> rate duration <number> packets-limited all|broadcast Riverstone Networks RS Switch Router User Guide Release 8.0 27-3 Monitoring Broadcast Traffic <number>...
  • Page 586 Monitoring Broadcast Traffic Performance Monitoring 27-4 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 587: 28 Rmon Configuration

    Professional groups, you can configure control table entries for specific ports on the RS. Use the command to enable RMON on the RS. rmon enable command. You can also configure default control tables for default-tables yes command. rmon set ports Riverstone Networks RS Switch Router User Guide Release 8.0 28-1 rmon set...
  • Page 588: Example Of Rmon Configuration Commands

    To specify the ports on which RMON is to be enabled, use the following CLI command line in Configure mode: Specifies the ports on which RMON is enabled. 28-2 Riverstone Networks RS Switch Router User Guide Release 8.0 rmon set lite|standard|professional default-tables yes|no <port list>...
  • Page 589: Table 28-1 Lite Rmon Groups

    Specifies the type of packets to be matched and how and where the filtered packets should flow (the channel). Packet Capture Specifies the capture of filtered packets for a particular channel. Configuring and Enabling RMON Riverstone Networks RS Switch Router User Guide Release 8.0 28-3...
  • Page 590: Control Tables

    If you choose to create default control tables, entries are created in the control tables for each port on the RS for the following groups: Lite groups: Etherstats History Standard groups: Host Matrix 28-4 Riverstone Networks RS Switch Router User Guide Release 8.0 RMON Configuration commands. Data tables contain rmon commands to modify control rmon...
  • Page 591: Using Rmon

    In the example output above, only HTTP and ICMP traffic is being received on this port. command. See the section Section 28.3, "Configuring RMON rmon Section 28.3, "Configuring RMON command to see the kinds of traffic received on a given Riverstone Networks RS Switch Router User Guide Release 8.0 28-5 Using RMON Groups".
  • Page 592: Configuring Rmon Groups

    To configure the Address Map group. To configure the Application Layer Matrix top n entries. To configure the Alarm group. To configure the Packet Capture group. 28-6 Riverstone Networks RS Switch Router User Guide Release 8.0 Packets Octets Protocol ------- ------ --------...
  • Page 593 [status enable|disable] <index-number> rmon nl-matrix-top-n index <number> ratebase terminal-packets|terminal-octets|all-packets|all-octets <number> <number> duration size enable|disable] Riverstone Networks RS Switch Router User Guide Release 8.0 28-7 Configuring RMON Groups <port> port [accept-type <number> ] [event-index <number> channel-index <string> <string> ] [data-mask <number>...
  • Page 594: Configuration Examples

    • Compare value at time of sampling (absolute value) to the specified thresholds. • Rising and falling threshold values are 1. 28-8 Riverstone Networks RS Switch Router User Guide Release 8.0 rmon protocol-distribution index <string> [owner ] [status enable|disable] rmon user-history-control index <number>...
  • Page 595: Displaying Rmon Information

    |all-ports [summary] <port-list> rmon show nl-matrix srcdst|dstsrc] [summary] <port-list> rmon show al-matrix srcdst|dstsrc] [summary] rmon show nl-matrix-top-n rmon show al-matrix-top-n Riverstone Networks RS Switch Router User Guide Release 8.0 28-9 Displaying RMON Information |all-ports <port-list> |all-ports |all-ports |all-ports [order-by |all-ports [order-by...
  • Page 596: Rmon Cli Filters

    080020:835CAA 114387 980717:280200 AB0000:020000 FFFFFF:FFFFFF 1354 281497 28-10 Riverstone Networks RS Switch Router User Guide Release 8.0 rmon show user-history rmon show probe-config [basic] [net-config] [trap-dest] ppp define service command. For additional information, refer to ppp apply service (for frame relay) and commands.
  • Page 597: Creating Rmon Cli Filters

    80110 121129 740514 98560 121061 1204 80110 285105 <filter-id> <parameter> rmon set cli-filter rmon show cli-filters rmon apply cli-filters rmon clear cli-filter Riverstone Networks RS Switch Router User Guide Release 8.0 28-11 Displaying RMON Information Bcst Mcst ---- ---- <filter-id>...
  • Page 598: Troubleshooting Rmon

    Make sure that there is a read-write community string. Verify that you can ping the RS and that no ACLs prevent you from using SNMP to access the RS. Make sure that RMON has not run out of memory. 28-12 Riverstone Networks RS Switch Router User Guide Release 8.0 command, or if the network management rmon show...
  • Page 599: Allocating Memory To Rmon

    To set the amount of memory allocated to RMON, use the following CLI command in User or Enable mode: Specifies the total amount of Mbytes of memory allocated to RMON. rmon show status 48530436 4000000 2637872 1362128 rmon set memory Riverstone Networks RS Switch Router User Guide Release 8.0 28-13 Allocating Memory to RMON rmon <number>...
  • Page 600: Table 28-4 Maximum Memory Allocations To Rmon

    Table 28-4 Maximum memory allocations to RMON RS platform RS 32000 RS 8600 RS 8000 RS 3000, RS 2100, RS 2000, RS 1000 28-14 Riverstone Networks RS Switch Router User Guide Release 8.0 Maximum memory 96 MB 48 MB 24 MB 12 MB...
  • Page 601: 29 Lfap Configuration Guide

    Riverstone accounting server. You can configure the RS to collect information on an entire interface or on a specific host-to-host application flow. Configuring the LFAP agent on the RS is described in this chapter. Riverstone Networks RS Switch Router User Guide Release 8.0 29-1...
  • Page 602: Configuring The Lfap Agent On The Rs

    101 permit ip any any any any accounting 15-minutes rs(config)# acl 101 apply interface all-ip input output logging off policy local Note accounting interval parameters: 29-2 Riverstone Networks RS Switch Router User Guide Release 8.0 UG 3DUW\ %LOOLQJ$..RXQWLQJ $SSOL.DWLRQ $..RXQWLQJ $..RXQWLQJ...
  • Page 603: Monitoring The Lfap Agent On The Rs

    Statistics collected by the LFAP agent. Server to which the LFAP agent is currently connected and the current status of the LFAP agent. All of the above information. Riverstone Networks RS Switch Router User Guide Release 8.0 29-3 Monitoring the LFAP Agent on the RS...
  • Page 604 Monitoring the LFAP Agent on the RS LFAP Configuration Guide 29-4 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 605: 30 Wan Configuration

    Section 30.16, "Channelized T1, E1 and T3 inSection 30.17, "Clear Channel T3 and E3 Services Overview". Shaping". Section 30.15, "WAN Configuration Section 30.18, "Scenarios for T3". Section 30.19, "Scenarios for Deploying Riverstone Networks RS Switch Router User Guide Release 8.0 30-1 Interfaces". Overview". Configuration". This protocol...
  • Page 606: Configuring Wan Interfaces

    The following command line displays an example for a port: interface create ip IPWAN address-netmask 10.50.1.1/16 peer-address rs(config)# 10.50.1.2 port hs.3.1 30-2 Riverstone Networks RS Switch Router User Guide Release 8.0 Section 23.4, "Configuring IPX Interfaces and Parameters" WAN Configuration Section 11.2,...
  • Page 607: Dynamic Addresses

    IPWAN address-netmask 10.50.1.1/16 port hs.5.2.19 The following command line displays an example for a VLAN: rs(config)# interface create ip IPWAN address-netmask 10.50.1.1/16 vlan BLUE Riverstone Networks RS Switch Router User Guide Release 8.0 30-3 Configuring WAN Interfaces interface create...
  • Page 608: Forcing Bridged Encapsulation

    For example, if you have a link devoted to streaming MPEG videos, you should not enable compression as the MPEG video data is already compressed. 30-4 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 609: Link Integrity

    WAN Quality-of-Service (QoS) as possible to ensure reliable end-to-end communication. For example, critical and time-sensitive traffic such as audio should have higher Riverstone Networks RS Switch Router User Guide Release 8.0 30-5 Configuring WAN Interfaces...
  • Page 610: Source Filtering And Acls

    Weighted-Fair Queueing applies only to best-effort traffic on the WAN card. If Note you apply any of the WAN specific traffic shaping commands, then weighted fair queuing will no longer be applicable. 30-6 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 611: Frame Relay Overview

    WAN. For example, you can connect a series of multi-protocol routers in various locations using a Frame Relay network. Riverstone Networks RS Switch Router User Guide Release 8.0 30-7 Frame Relay Overview configuration command...
  • Page 612: Permanent Virtual Circuits (Pvcs)

    Once you have defined the type and location of your Frame Relay WAN interface(s), you can configure your RS to more efficiently utilize available bandwidth for Frame Relay communications. 30-8 Riverstone Networks RS Switch Router User Guide Release 8.0 <port>...
  • Page 613: Applying A Service Profile To An Active Frame Relay Wan Port

    Riverstone Networks RS Switch Router User Guide Release 8.0 30-9 Monitoring Frame Relay WAN Ports <number> ] [Be ] [rmon on | off] ports <service name>...
  • Page 614: Frame Relay Port Configuration

    Once the connection has been established, the router which initiated the PPP connection transmits a series of Network Control Protocol (NCP) frames necessary to configure one or more network-layer protocols. 30-10 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 615: Use Of Lcp Magic Numbers

    Once you have defined the type and location of your PPP WAN interface(s), you can configure your RS to more efficiently utilize available bandwidth for PPP communications. command in the CLI to ppp restart <port> port set wan-encapsulation ppp speed <number> Riverstone Networks RS Switch Router User Guide Release 8.0 30-11 Configuring PPP Interfaces clock...
  • Page 616: Applying A Service Profile To An Active Ppp Port

    Ports 1 and 2 are on one WAN module, and ports 3 and 4 are on the other WAN module. Therefore, you cannot add all four ports to a single MLP bundle. 30-12 Riverstone Networks RS Switch Router User Guide Release 8.0 <service name>...
  • Page 617: Compression On Mlp Bundles Or Links

    <port name> ppp show stats ports <port name> ppp show stats ports link-status <mlp list> ppp show mlp Riverstone Networks RS Switch Router User Guide Release 8.0 30-13 Monitoring PPP WAN Ports <port list> <number> <port <port list> <port list>...
  • Page 618: 30.10 Ppp Port Configuration

    4 red off retry-interval 25 rmon on To assign the above service profile to the active PPP WAN port defined earlier (slot 5, port 1): rs(config)# ppp apply service profile2 ports hs.5.1 30-14 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 619: 30.11 Cisco Hdlc Wan Port Configuration

    To assign the above service profile to the active Cisco HDLC port defined earlier (slot 5, port 1): rs(config)# cisco-hdlc apply service ciscosp ports hs.5.1 Cisco HDLC WAN Port Configuration Riverstone Networks RS Switch Router User Guide Release 8.0 30-15...
  • Page 620: Assigning Ip Addresses To A Cisco Hdlc Wan Port

    45000000 rs(config)# cisco-hdlc define service s1 keepalive 15 red off rs(config)# cisco-hdlc apply service s1 ports hs.5.1,hs.5.2 30-16 Riverstone Networks RS Switch Router User Guide Release 8.0 <service name> cisco-hdlc show service cisco-hdlc show service all...
  • Page 621: 30.13 Wan Rate Shaping

    The number of bits that a flow can send through the WAN port in excess of Bc if there is unutilized WAN port bandwidth (Be is optional) Riverstone Networks RS Switch Router User Guide Release 8.0 30-17 WAN Rate Shaping .
  • Page 622: Port Number

    CIRs for all rate shaped flows should not exceed the total bandwidth of the WAN port. However, depending on the characteristics of each flow, some oversubscribing of WAN port bandwidth is usually permissible. 30-18 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 623 The following numbered list corresponds to the numbered points in The number of bits sent through the WAN port during the sampling period Tc is less than Bc. Sampling interval Tc1 Figure 30-1: Riverstone Networks RS Switch Router User Guide Release 8.0 30-19 WAN Rate Shaping Sampling interval Tc16...
  • Page 624: Wan Rate Shaping Example

    Metro backbone. Conversely, R2 rate shapes Ethernet flows from the Metro backbone that originate on subnet 124.141.77.0/24 and sends them through its own Clear Channel T3 line to R1 (see 30-20 Riverstone Networks RS Switch Router User Guide Release 8.0 CIR. For example, if CIR = 128 Kbps, Bc = 4000, 128000 = 192000 or 192 Kbps .
  • Page 625 124.141.77.0/24 From Metro Backbone, Subnet 124.141.77.0/24 To Metro Backbone t3.6.1 t3.6.1 et.2.7 et.3.8 Switch Two Switch Three Floor Two Floor Three Riverstone Networks RS Switch Router User Guide Release 8.0 30-21 WAN Rate Shaping...
  • Page 626: Using Wan Rate Shaping

    Be. This configuration does not provide any guarantee that the flow’s packets will get through the WAN port; and bandwidth for this flow is attained only on a best-effort basis. 30-22 Riverstone Networks RS Switch Router User Guide Release 8.0 traffic-source-port...
  • Page 627 WAN port going into the WAN, you also should apply rate shaping to the RS WAN port at the other end of the connection. Applying rate shaping to each RS allows connection-oriented protocols, such as TCP, to communicate more efficiently and experience fewer instances that could potentially trigger crank-back. Riverstone Networks RS Switch Router User Guide Release 8.0 30-23...
  • Page 628: 30.14 Inverse Multiplexer Overview

    Bit Error Rate Testing (BERT) can only be performed on a single physical or logical port. To perform a BERT test on a port in an IMUX group, the port must first be removed from the group. 30-24 Riverstone Networks RS Switch Router User Guide Release 8.0 Bridge...
  • Page 629: 30.15 Wan Configuration Examples

    R1 is part of both Subnets 1 and 2, R2 is part of both Subnets 2 and 3, and R3 is part of subnets 1 and 3. You can click on the router label (in blue) to jump to the actual text configuration file for that router: Riverstone Networks RS Switch Router User Guide Release 8.0 30-25 WAN Configuration Examples...
  • Page 630 VC = 106 100.100.100.6 hs.3.1 100.100.100.6 et.15.2 et.15.1 100.100.100.100 Video Server Win NT Figure 30-3 Multi-router WAN configuration 30-26 Riverstone Networks RS Switch Router User Guide Release 8.0 et.1.1 50.50.50.5 100.100.100.5 se.4.1 100.100.100.4 se.6.3 100.100.100.4 se.6.1 Frame Relay wan-encaps. subnet S1 VC = 304 100.100.100.3...
  • Page 631: Router R1 Configuration File

    2 rip set auto-summary enable rip start system set name R2 arp add 20.20.20.12 exit-port et.1.1 mac-addr 000202:020200 Riverstone Networks RS Switch Router User Guide Release 8.0 30-27 WAN Configuration Examples...
  • Page 632: Router R3 Configuration File

    2 rip set interface all xmt-actual enable rip set broadcast-state always rip set auto-summary enable rip start system set name R4 30-28 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 633: Router R5 Configuration File

    2 rip set auto-summary enable rip start system set name R6 arp add 60.60.60.16 mac-addr 000606:060600 exit-port et.15.1 Riverstone Networks RS Switch Router User Guide Release 8.0 30-29 WAN Configuration Examples...
  • Page 634: Channelized T1, E1 And T3 Services Overview

    Framing and line coding schemes are employed to ensure the reliable transmission of the data; the schemes used depend on the interface, as shown in 30-30 Riverstone Networks RS Switch Router User Guide Release 8.0 Capacity Line Speed...
  • Page 635: Channelized T3 Service Interface Module

    Alternate Mark Inversion (AMI) • High-density bipolar 3 (HDB3) • Alternate Mark Inversion (AMI) Table 30-3. Line Coding • Bipolar 3 zero substitution (B3ZS) Riverstone Networks RS Switch Router User Guide Release 8.0 30-31 Channelized T1, E1 and T3 Services Overview...
  • Page 636: Configuring Channelized T1, E1 And T3 Interfaces

    Configuring an Channelized E1 interface • Configuring a Channelized T3 interface • Creating a MLP bundle • Creating a VLAN • Configuring T1 lines in Channelized T3 30-32 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration Section 30.16.4, "Bit Error Rate...
  • Page 637 - Configures the following parameter for the Channelized T3 interface on port 1. port set t3.4.1 • - Sets the Channelized T3 line loss to -7.5 db. lbo -7.5db Channelized T1, E1 and T3 Services Overview Riverstone Networks RS Switch Router User Guide Release 8.0 30-33...
  • Page 638 1-24 • - Sets the WAN encapsulation type to PPP. This must be specified on wan-encapsulation ppp the same line as the timeslots. 30-34 Riverstone Networks RS Switch Router User Guide Release 8.0 - Creates a port-based VLAN. WAN Configuration...
  • Page 639: Bit Error Rate Testing

    BERT can only be performed on a single physical or logical port. To perform a BERT test on a single port in a Multilink bundle, the port must first be removed from the bundle. Channelized T1, E1 and T3 Services Overview Riverstone Networks RS Switch Router User Guide Release 8.0 30-35...
  • Page 640 ! During the test, to display progress. !----------------------------------------------------------------------------- port show serial-link-info t1.2.1 all !----------------------------------------------------------------------------- ! To stop the test before the one hour interval expires. !----------------------------------------------------------------------------- port bert t1.2.1 stop 30-36 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 641 !To start the test. !----------------------------------------------------------------------------- port bert t3.2.1:15 start !----------------------------------------------------------------------------- ! During the test, to display progress. !----------------------------------------------------------------------------- port show serial-link-info t3.2.1:15 all Channelized T1, E1 and T3 Services Overview Riverstone Networks RS Switch Router User Guide Release 8.0 30-37...
  • Page 642: Configuring A Test Using External Test Equipment

    2^20-QRSS interval 60 port bert t3.2.1:15 start port show serial-link-info t3.2.1:15 all 30-38 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 643: Clear Channel T3 And E3 Services Overview

    • G751 Framing • G832 Framing Table 30-5. Line Coding • Bipolar 3 zero substitution (B3ZS) • High-density bipolar 3 (HDB3) Riverstone Networks RS Switch Router User Guide Release 8.0 30-39 Clear Channel T3 and E3 Services Overview Table 30-4.
  • Page 644: Scenarios For Deploying Channelized T1, E1 And T3

    Hardware Requirements Router Hardware Requirements RS 32000 1 CT3 module with 4 T3 ports. Each RS 3000 1 Multi-Rate WAN module with 2 T1 WICs. 30-40 Riverstone Networks RS Switch Router User Guide Release 8.0 Section 30.18.1) Section 30.18.2) Section Section 30.18.4)
  • Page 645: Figure 30-5 Bridged Msp Mtu/Mdu Aggregation

    T1 ( x 4 ) TELCO (PSTN) T1 ( x 4 ) T1 ( x 4 ) T3 ( 28 T1s) RS 32000 Riverstone Networks RS Switch Router User Guide Release 8.0 30-41 MTU/MDU rsite4 MTU/MDU rsite5 T1 ( x 4 ) MTU/MDU...
  • Page 646 120.210.6.1/24 vlan vlan6 up vlan create vlan7 port-based id 700 vlan add ports mp.7 to vlan7 interface create ip to_vlan7 address-netmask 120.210.7.1/24 vlan vlan7 up 30-42 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 647 !----------------------------------------------------------------------------- vlan create vlan2 port-based id 200 vlan add ports mp.2 to vlan2 interface create ip vlan_to_msp address-netmask 120.210.2.2/24 vlan vlan2 up Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-43...
  • Page 648: Scenario 2: Routed Inter-Office Connections With Only T1 On Rs 8X00

    2 Multi-Rate WAN modules with 3 T1 WICs. RS 3000 (rsite6) 2 Multi-Rate WAN modules with 3 T1 WICs. RS 3000 (rsite7) 2 Multi-Rate WAN modules with 3 T1 WICs. 30-44 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 649: Figure 30-6 Routed Inter-Office Connections With Only T1 On Rs 8X00

    T1 ( x 4 ) T1 ( x 4 ) 12.20.10.5/24 Shared Data Internet RS 32000 Internet Service Provider Figure 30-6 Routed Inter-Office Connections with Only T1 on RS 8x00 Riverstone Networks RS Switch Router User Guide Release 8.0 30-45...
  • Page 650 30-46 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 651 Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-47...
  • Page 652 1-24 wan-encapsulation ppp interface create ip to_rsite3 address-netmask 120.210.23.3/24 port t1.3.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_isp rip add interface to_hqsite rip add interface to_rsite3 rip start 30-48 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 653 120.210.34.4/24 port t1.3.3 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_hqsite rip add interface to_rsite2 rip add interface to_rsite3 rip start Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-49...
  • Page 654: Scenario 3: Routed Inter-Office Connections With T1 And T3 On Rs 8X00

    2 Multi-Rate WAN modules with 3 T1 WICs. RS 3000 (rsite6) 2 Multi-Rate WAN modules with 3 T1 WICs. RS 3000 (rsite7) 2 Multi-Rate WAN modules with 3 T1 WICs. 30-50 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 655: Figure 30-7 Routed Inter-Office Connections With T1 And T3 On Rs 8X00

    T1 ( x 4 ) T1 ( x 4 ) rsite7 RS 3000 120.210.7.1/24 12.20.10.5/24 RS 32000 Internet Service Provider Riverstone Networks RS Switch Router User Guide Release 8.0 30-51 rsite4 RS 3000 120.210.4.1/24 rsite5 RS 3000 120.210.5.1/24 rsite6 RS 3000 120.210.6.1/24...
  • Page 656 30-52 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 657 Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-53...
  • Page 658 !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_rsite2 rip add interface to_rsite3 rip add interface to_rsite4 rip add interface to_rsite5 rip add interface to_rsite6 rip add interface to_rsite7 rip start 30-54 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 659 120.210.23.2/24 port t1.3.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_hqsite rip add interface to_rsite3 rip start Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-55...
  • Page 660 1-24 wan-encapsulation ppp interface create ip to_rsite3 address-netmask 120.210.34.3/24 port t1.3.3 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_hqsite rip add interface to_rsite2 rip add interface to_rsite3 rip start 30-56 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 661: Scenario 4: Routed Metropolitan Backbone With Only T1 On Rs 8X00

    RS 8000 (CP) 2 Multi-Rate WAN modules with 4 T1 WICs. RS 8000 (ASP) 2 Multi-Rate WAN modules with 4 T1 WICs. Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-57...
  • Page 662: Figure 30-8 Routed Metropolitan Backbone With Only T1 On Rs 8X00

    Scenarios for Deploying Channelized T1, E1 and T3 WAN Configuration Figure 30-8 Routed Metropolitan Backbone with Only T1 on RS 8x00 30-58 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 663 120.210.23.65/28 port t3.4.1:13 !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_hqsite rip add interface to_rsite_mppp rip add interface to_rsite_ft1 rip start Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-59...
  • Page 664 120.210.23.35/28 port t1.3.1 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_msp rip add interface to_rsite rip start 30-60 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 665 120.210.23.34/28 port t1.3.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_msp_mppp rip add interface to_msp_ft1 rip add interface to_hqsite rip start Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-61...
  • Page 666 2 ppp add-to-mlp mp.1 port t1.2.(1-4):1 interface create ip to_msp address-netmask 110.25.30.5/24 port mp.1 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_msp rip start 30-62 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 667 130.65.20.8/24 port mp.1 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_msp rip start Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-63...
  • Page 668: Scenario 5: Routed Metropolitan Backbone With T1 And T3 On Rs 8X00

    RS 32000 (ISP B) 1 CT3 module (with 4 T3 ports). RS 8000 (CP) 1 CT3 module (with 2 T3 ports). RS 8000 (ASP) 1 CT3 module (with 2 T3 ports). 30-64 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 669 110.210.23.17/28 RS 32000 150.25.50.9/24 Metropolitan Service Provider RS 32000 136.21.206.22/24 Internet Service Provider A 130.65.20.8/24 RS 8000 Application Service Provider Riverstone Networks RS Switch Router User Guide Release 8.0 30-65 T1 ( x 4 ) rsite RS 3000 110.210.23.33/28 Internet...
  • Page 670 120.210.12.1/24 port mp.2 up interface create ip to_rsite_ft1 address-netmask 120.210.13.1/24 port t3.4.1:13 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_hqsite rip add interface to_rsite_mppp rip add interface to_rsite_ft1 rip start 30-66 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 671 120.210.11.2/24 port mp.1 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_msp rip start Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-67...
  • Page 672 24 wan-encapsulation ppp interface create ip to_rsite_fract1 address-netmask 120.210.24.1/24 port t1.3.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_rsite_mppp rip add interface to_rsite_fullt1 rip add interface to_rsite_fract1 rip start 30-68 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 673 120.210.1.2/24 port t1.3.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_hqsite_mppp rip add interface to_hqsite_fract1 rip add interface to_hqsite_fullt1 rip start Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-69...
  • Page 674 130.65.21.10/24 port mp.4 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_cp1 rip add interface to_cp2 rip add interface to_asp1 rip add interface to_asp2 rip start 30-70 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 675 130.65.21.8/24 port mp.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_ispb1 rip add interface to_ispb2 rip start Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-71...
  • Page 676: Hardware Requirements

    2 Multi-Rate WAN modules with 3 E1 WICs. RS 3000 (rsite6) 2 Multi-Rate WAN modules with 3 E1 WICs. RS 3000 (rsite7) 2 Multi-Rate WAN modules with 3 E1 WICs. 30-72 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration must be ts16...
  • Page 677: Figure 30-10 Routed Inter-Office Connections With E1 On Rs 8X00

    TELCO (PSTN) E1 ( x 4 ) E1 ( x 4 ) 12.20.10.5/24 Router Shared Data Internet Internet Service Provider Figure 30-10 Routed Inter-Office Connections with E1 on RS 8x00 Riverstone Networks RS Switch Router User Guide Release 8.0 30-73...
  • Page 678 30-74 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 679 120.210.23.3/24 port e1.3.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_isp rip add interface to_hqsite rip add interface to_rsite3 rip start Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-75...
  • Page 680: Scenario 7: Transatlantic Connection Using T1 And E1 On Rs 8X00

    European site has an RS 8000, with an E1 interface. The T1 interface is configured to use the SF framing at a speed of 56Kbps because the local loop does not support B8ZS. Also, the E1 interface assumes that the T1 is delivered on timeslots 1 to 24, including timeslot 16. 30-76 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 681: Figure 30-11 Transatlantic Connection Using A T1 And E1 Link

    120.210.23.18/24 port t1.2.1 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_europe rip start Scenarios for Deploying Channelized T1, E1 and T3 Telco Riverstone Networks RS Switch Router User Guide Release 8.0 30-77 RS 8000 European Telco...
  • Page 682 1-24 ts16 speed-56 wan-encapsulation ppp interface create ip to_europe address-netmask 120.210.24.18/24 port e1.2.3 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_usa rip start 30-78 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 683: Scenario 8: Configuring Frame Relay Over Channelized T1 Interfaces

    Scenarios for Deploying Channelized T1, E1 and T3 Number 64000 128000 64000 128000 64000 128000 64000 128000 128000 256000 128000 256000 128000 256000 128000 256000 Riverstone Networks RS Switch Router User Guide Release 8.0 30-79 Table 30-6. The Subnet 110.110.110.0 110.110.115.0 110.110.120.0 110.110.115.0 110.110.130.0 110.110.140.0 110.110.150.0 110.110.160.0...
  • Page 684: Figure 30-12 Frame Relay Over Channelized T1

    CIR1forR1toHQ cir 64000 bc 128000 frame-relay apply service CIR1forR1toHQ ports t1.2.1:1.106 frame-relay create vc port t1.2.1:1.107 frame-relay define service CIR2forR1toHQ cir 64000 bc 128000 frame-relay apply service CIR2forR1toHQ ports t1.2.1:1.107 30-80 Riverstone Networks RS Switch Router User Guide Release 8.0 rsite3 rsite4 t1.2.1:1.106 t1.2.1:1.106 110.110.130.2/24...
  • Page 685 110.110.150.2/24 port t1.2.1:1 up frame-relay create vc port t1.2.1:1.106 frame-relay define service CIRforR5toHQ cir 128000 bc 256000 frame-relay apply service CIRforR5toHQ ports t1.2.1:1.106 Scenarios for Deploying Channelized T1, E1 and T3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-81...
  • Page 686 CIRforHQtoR5 cir 192000 bc 256000 frame-relay apply service CIRforHQtoR5 ports t1.2.1:5.106 frame-relay create vc port t1.2.1:6.106 frame-relay define service CIRforHQtoR6 cir 192000 bc 256000 frame-relay apply service CIRforHQtoR6 ports t1.2.1:6.106 30-82 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 687: Scenarios For Deploying Clear Channel T3 And E3

    2 Multi-Rate WAN modules with 3 Channelized T1 WICs. RS 3000 (rsite7) 2 Multi-Rate WAN modules with 3 Channelized T1 WICs. Scenarios for Deploying Clear Channel T3 and E3 Section 30.19.2) Riverstone Networks RS Switch Router User Guide Release 8.0 30-83 Section 30.19.1)
  • Page 688: Figure 30-13 Routed Inter-Office Connections Through An Isp

    CCT3 Internet Figure 30-13 Routed Inter-Office Connections through an ISP KEY: T3 refers to Channelized T3 CCT3 refers to Clear Channel T3 30-84 Riverstone Networks RS Switch Router User Guide Release 8.0 rsite3 rsite2 RS 3000 RS 3000 120.210.3.1/24 120.210.2.1/24...
  • Page 689 Scenarios for Deploying Clear Channel T3 and E3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-85...
  • Page 690 30-86 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 691 Scenarios for Deploying Clear Channel T3 and E3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-87...
  • Page 692 1-24 wan-encapsulation ppp interface create ip to_rsite3 address-netmask 120.210.23.2/24 port t1.3.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_hqsite rip add interface to_rsite3 rip start 30-88 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 693 120.210.34.3/24 port t1.3.3 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_hqsite rip add interface to_rsite2 rip add interface to_rsite3 rip start Scenarios for Deploying Clear Channel T3 and E3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-89...
  • Page 694: Scenario 2: Routed Metropolitan Backbone

    1 Multi-Rate WAN module with 2 Clear Channel T3 WICs RS 8000 (CP) 1 ChannelizedT3 module (with 2 T3 ports). RS 8000 (ASP) 1 ChannelizedT3 module (with 2 T3 ports). 30-90 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 695: Figure 30-14 Routed Metropolitan Backbone

    145.33.45.0/24 RS 8600 136.21.206.22/24 130.65.20.8/24 Internet Service Provider A RS 8000 Application Service Provider Riverstone Networks RS Switch Router User Guide Release 8.0 30-91 T1 ( x 4 ) Unstructured T1 rsite Fractional T1 RS 3000 110.210.23.33/28 135.22.34.0/24 CCT3 137.2.56.0/24...
  • Page 696 120.210.13.1/24 port t3.4.1:13 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_hqsite rip add interface to_rsite_mppp rip add interface to_rsite_ft1 rip add interface to_ispa rip add interface to_ispb rip start 30-92 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 697 120.210.11.2/24 port mp.1 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_msp rip start Scenarios for Deploying Clear Channel T3 and E3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-93...
  • Page 698 24 wan-encapsulation ppp interface create ip to_rsite_fract1 address-netmask 120.210.24.1/24 port t1.3.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_rsite_mppp rip add interface to_rsite_fullt1 rip add interface to_rsite_fract1 rip start 30-94 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 699 120.210.1.2/24 port t1.3.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_hqsite_mppp rip add interface to_hqsite_fract1 rip add interface to_hqsite_fullt1 rip start Scenarios for Deploying Clear Channel T3 and E3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-95...
  • Page 700 30-96 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 701 Scenarios for Deploying Clear Channel T3 and E3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-97...
  • Page 702 130.65.20.7/24 port mp.1 up interface create ip to_ispb2 address-netmask 130.65.21.8/24 port mp.2 up !----------------------------------------------------------------------------- !Configure RIP: !----------------------------------------------------------------------------- rip add interface to_ispb1 rip add interface to_ispb2 rip start 30-98 Riverstone Networks RS Switch Router User Guide Release 8.0 WAN Configuration...
  • Page 703 WAN Configuration Scenarios for Deploying Clear Channel T3 and E3 Riverstone Networks RS Switch Router User Guide Release 8.0 30-99...
  • Page 704 Scenarios for Deploying Clear Channel T3 and E3 WAN Configuration 30-100 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 705: 31 Service Configuration

    31.6.1 "Applying a Service to Multiple Servers" commands required to configure rate limiting: rate-limit commands required to configure rate limiting: Riverstone Networks RS Switch Router User Guide Release 8.0 31-1 facility reduces the service 31.2.4 "Burst-Safe 31.3.2 "Applying shows how one service is...
  • Page 706: Service Facility Rate Limiting Types

    If both incoming and outgoing traffic to a network or subnet needs to be rate limited, then you should create separate policies to be applied to each interface. 31-2 Riverstone Networks RS Switch Router User Guide Release 8.0 facility, the policy need only be configured once for any...
  • Page 707: Creating A Service

    If the replenish rate is too high, it will reduce the effectiveness of the rate-limiting policy. create rate-limit aggregate rate lower-priority lower-priority-except-control <num> | tos-precedence-rewrite-lower-priority <num> | tos-rewrite-lower-priority <num>] Riverstone Networks RS Switch Router User Guide Release 8.0 31-3 Creating a Service <rate> [ no-action <num>]...
  • Page 708: Flow-Aggregate Rate Limiting Service

    To create a flow-aggregate rate limiting service, use the following command: Create a flow- <name> service aggregate rate exceed-action limiting service. set-priority-high time-select 31-4 Riverstone Networks RS Switch Router User Guide Release 8.0 create rate-limit flow-aggregate rate < drop-packets set-priority-low > <minbw> min-bandwidth <num>] Service Configuration <rate>...
  • Page 709: Per-Flow Rate Limiting Service

    ! Create a per flow service, limiting one flow to 1 million bps and drops packets if the rate is exceeded rs(config)# service user1flow create rate-limit per-flow rate 1000000 exceed-action drop-packets create rate-limit per-flow rate set-priority-low set-priority-medium > | <num>] time-select Riverstone Networks RS Switch Router User Guide Release 8.0 31-5 Creating a Service <rate> [ exceed-action...
  • Page 710: Burst-Safe Rate Limiting Service

    Apply a service that <name> service uses ACLs to an <name> service interface or a port. 31-6 Riverstone Networks RS Switch Router User Guide Release 8.0 31.1 "Service Facility Rate Limiting Types" create rate-limit burst-safe car-rate car-lower-priority car-tos-precedence-rewrite <num>] burst-drop-packets...
  • Page 711: Applying Services Using The Mf-Classifier Command

    <srcadd> destination-addr-mask source-port destination-port ftp-cmd ftp-data http https portmapper rexec rlogin rshell Riverstone Networks RS Switch Router User Guide Release 8.0 31-7 Applying a Service <name | > | port <dstadd> <num> <port type> imap3 imap4 nntp snmp smtp...
  • Page 712: Showing A Service

    Rate – Displays the rate limiting rate. Service Type – Displays the type of service. Exceed Action – Displays the action taken when the rate is exceeded. 31-8 Riverstone Networks RS Switch Router User Guide Release 8.0 Service Configuration <name | >...
  • Page 713: Show All Command

    TOS TOS-MASK --------- --------- --- ------------- ---- any None Service Type: Aggregate Rate Limit Exceed Action Lower Priority Service Type: Aggregate Rate Limit Exceed Action Drop Packets Riverstone Networks RS Switch Router User Guide Release 8.0 31-9 Showing a Service Prot...
  • Page 714: Port-Level Rate Limiting

    S1 through S4 can be rate limited using one service applied to QAInterface1. service Figure 31-2 Configuration Example: Applying a Service to Multiple Servers 31-10 Riverstone Networks RS Switch Router User Guide Release 8.0 rate-limit port-level slot ignore-control-priority shows how easily a network can be configured for aggregate rate limiting...
  • Page 715: Applying Burst-Safe Rate Limiting

    Set the burst-safe rate to one million bps • Set the CAR exceed to priority dropped to low • Set the burst-safe rate exceed to packets are dropped is created with the following commands: Riverstone Networks RS Switch Router User Guide Release 8.0 31-11 Service Configuration Examples...
  • Page 716: Figure 31-3 Burst-Safe Configuration

    Service Configuration Examples Service Configuration Following is the configuration: Figure 31-3 Burst-Safe Configuration 31-12 Riverstone Networks RS Switch Router User Guide Release 8.0...
  • Page 717: Rate Limiting Configuration Examples

    Traffic from two interfaces, ipclient1 with IP address 1.2.2.2 and ipclient2 with IP address 3.1.1.1, is restricted to 10 Mbps for each flow with the following configuration: is created with the following commands: Riverstone Networks RS Switch Router User Guide Release 8.0 31-13 Rate Limiting Configuration Examples...
  • Page 718: Figure 31-5 Flow-Aggregate Rate Limiting

    256000 exceed-action drop-packets min-bandwidth 4000 rate-limit apply cust1 interface tonet rate-limit cust1 flow-aggregate acl cust1 rate 64000 exceed-action drop-packets min-bandwidth 2000 rate-limit apply cust1 interface in1 31-14 Riverstone Networks RS Switch Router User Guide Release 8.0 Service Configuration...

Table of Contents