Network Security Internet Technology Development Database Servers Mobile Phone Android Software Apple Software Computer Software News IT Information

In addition to Weibo, there is also WeChat

Please pay attention

WeChat public account

Shulou

Microsoft Azure Express Route

2025-01-19 Update From: SLTechnology News&Howtos shulou NAV: SLTechnology News&Howtos > Network Security >

Share

Shulou(Shulou.com)06/01 Report--

Reference for the configuration of the BGP router on the customer side:

About VLANID: VLANID is a customer-defined internalVLAN, different customers can use the same VLANID, for IXP, there will be a unique S-tag to mark, there is no need for customers to configure the underlying network S-tag. For more information, please see the following configuration example (for reference only):

Specify C-tags (VLAN ID)

Customerneed tospecify 2 C-tags to identify the P2P subinterface traffics. C-tag isgenerally aVLAN ID, you can specify it from 1 to4094. Any number is ok. Differentcustomers can use same C-tags, allowoverlap. C-tag is inner VLAN,when packetspassed to IXP, IXP will add an S-tagto the packets, as outer VLANID. S-taguniquely identified a customer's trafficthrough IXP network.

Terminology

Circuit: Alogical representation of connection between the customer and Azure

MSEEMicrosoftServiceEnterprise Edge

VNETVirtualNetwork

APPSAzurePublicPeering Services e.g. Storage, SQL,...

IXP InternetExchange Point

VRF Virtualrouting and forwarding

Servicekey An ID (typically a GUID) used to uniquely identify acustomer circuit

BGP BorderGateway Protocol

S-tag A VLANtagunique identify a customer's traffic on a physical port

C-tag1 Uniquelyidentify public peering traffic

C-tag2 Uniquelyidentify private peering traffic

two。 Reference for router configuration: https://azure.microsoft.com/en-us/documentation/articles/expre***oute-config-samples-routing/

This link provides examples of interface and routing configurations for Cisco IOS-XE and JuniperMX series routers. These examples are for reference only and should not be configured exactly according to them. Please contact the technical support of your router to provide the appropriate configuration for your network equipment.

Please note: the configuration examples in the following email and documentation are for reference only. You need to contact your router technical support team and your network team to make a configuration that meets your needs. Windows Azure does not provide technical support for the router configuration entries referred to in this email and link document. Please contact your equipment manufacturer for technical support for similar problems.

1. P2Pinterface configuration

StandardTemplate (cisco):

InterfaceEthernet. / / createsub-interface,sub number use C-tag

Description / / configure interface description

Ipaddress / / configure interface IP,use thefirst IP

Encapsulationdot1Q / / configure dot1q encapsulation, addc-tag.

2. BGPconfiguration

StandardTemplate (cisco device):

Routerbgp / / configure BGP

Bgp router-id / / configureBGP router-id, use loopback IP

Bgplog-neighbor-changes / / configurelog neighbor changes

Neighbor / / configurebgp neighbor

Remote-as12076 / / specifyneighbor'sas number

DescriptionPrimary_line_public_peer / / describe neighbor

Ebgp-multihop2 / / configureebgpmultihop

Address-familyipv4unicast

Neighbor

Remote-as 12076

DescriptionPrimary_line_private_peer

Ebgp-multihop 2

Address-family ipv4 unicast

Address-family ipv4 unicast

Networkmask / / announcesubnetsthat need to talk to Azure

A customer setup acircuit:

IP subnets andVLAN IDs:

Router IPPrefix PeeringVLANID (C-tag)

Primary 192.168.1.0/30 Public 500

Secondary 192.168.2.0/30 Public 500

Primary 192.168.1.4/30 Private 510

Secondary 192.168.2.4/30 Private 510

IPaddressassignment:

Customerrouter MicrosoftMSEE

Primary 192.168.1.1 192.168.1.2

Secondary 192.168.2.1 192.168.2.2

Primary 192.168.1.5 192.168.1.6

Secondary 192.168.2.5 192.168.2.6

AS number:65001

P2P interface configuration:

Interface Ethernet1/1

DescriptionCT_B17547793_10M_primary_link

No switchport

Speed 1000

No negotiate auto

Interface Ethernet1/1.500

DescriptionCT_primary_public_peer

Encapsulation dot1q 500

Ip address 192.168.1.1/30

Interface Ethernet1/1.510

DescriptionCT_primary_private_peer

Encapsulation dot1q 510

Ip address 192.168.1.5/30

Interface Ethernet1/2

DescriptionCT_B17547794_10M_secondary_link

No switchport

Speed 1000

No negotiate auto

Interface Ethernet1/2.500

Descriptioncustomer1_secondary_public_peer

Encapsulation dot1q 500

Ip address 192.168.2.1/30

Interface Ethernet1/2.510

Descriptioncustomer1_secondary_private_peer

Encapsulation dot1q 510

Ip address 192.168.2.5/30

BGP configuration:

Router bgp 65001

Router-id 192.168.3.1

Bgp log-neighbor-changes

Address-family ipv4 unicast

Network192.168.4.0/24

Neighbor 192.168.1.2

Remote-as 12076

DescriptionCT_primary_public_peer

Ebgp-multihop 2

Address-familyipv4unicast

Neighbor 192.168.1.6

Remote-as 12076

DescriptionCT_primary_private_peer

Ebgp-multihop 2

Address-familyipv4unicast

Neighbor 192.168.2.2

Remote-as 12076

DescriptionCT_secondary_public_peer

Address-familyipv4unicast

Neighbor 192.168.2.6

Remote-as 12076

DescriptionCT_secondary_private_peer

Address-familyipv4unicast

Welcome to subscribe "Shulou Technology Information " to get latest news, interesting things and hot topics in the IT industry, and controls the hottest and latest Internet news, technology news and IT industry trends.

Views: 0

*The comments in the above article only represent the author's personal views and do not represent the views and positions of this website. If you have more insights, please feel free to contribute and share.

Share To

Network Security

  • Position

    © 2024 shulou.com SLNews company. All rights reserved.

    12
    Report