четверг, 1 июня 2017 г.

Мультивендорная интеграция по MSTP CIST/MST (Cisco, Extreme Networks, Enterasys)


Потребовалось реализовать схему с применением MSTP в топологии Partial Full-Mesh в мультивендорной среде:

  1. Коммутатор NIM-4ESG в Cisco 4331 cмотрит 2-мя линками в Enterasys SecureStack (в разные Enterasys B3 в стеке и 2 линками в Extreme SummitStack-V (в разные Extreme Networks x440-G2 в стеке)
  2. Коммутатор NIM-4ESG в Cisco 4331 cмотрит 2-мя линками в Enterasys SecureStack (в разные Enterasys B3 в стеке и 2 линками в Extreme SummitStack-V (в разные Extreme Networks x440-G2 в стеке)
Схема для настройки MSTP:
Глобальные настройки:
  • MST configuration name: test
  • MST configuration revision: 1
  • MST to VLAN mapping table:
    • MST 0 (CIST): VLAN1
    • MST 1: VLAN100, VLAN120
    • MST 2: VLAN192
В MST 0, MST1 выбираем в качестве Root Bridge - Enterasys SecureStack, в MST 2 -Extreme SummitStack, для выбора Root Bridge используем приоритет 4096, стандарт 802.1t

конфигурация MSTP на Cisco 1:

spanning-tree mode mst
spanning-tree extend system-id
!
spanning-tree mst configuration
 name test
 revision 1
 instance 1 vlan 100, 120
 instance 2 vlan 192
!
!

cisco4331-01#sh spanning-tree

G0:MST0
  Spanning tree enabled protocol mstp
  Root ID    Priority    4096
             Address     0011.88f2.95c0
             Cost        0
             Port        11 (GigabitEthernet0/1/1)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32768  (priority 32768 sys-id-ext 0)
             Address     009a.d286.a041
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

Interface           Role Sts Cost      Prio.Nbr Type
------------------- ---- --- --------- -------- --------------------------------
Gi0/1/0             Altn BLK 20000     128.10   P2p
Gi0/1/1             Root FWD 20000     128.11   P2p
Gi0/1/2             Desg FWD 20000     128.12   P2p
Gi0/1/3             Desg FWD 20000     128.13   P2p


G0:MST1
  Spanning tree enabled protocol mstp
  Root ID    Priority    4097
             Address     0011.88f2.95c0
             Cost        20000
             Port        11 (GigabitEthernet0/1/1)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32769  (priority 32768 sys-id-ext 1)
             Address     009a.d286.a041
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

Interface           Role Sts Cost      Prio.Nbr Type
------------------- ---- --- --------- -------- --------------------------------
Gi0/1/0             Altn BLK 20000     128.10   P2p
Gi0/1/1             Root FWD 20000     128.11   P2p
Gi0/1/2             Desg FWD 20000     128.12   P2p
Gi0/1/3             Desg FWD 20000     128.13   P2p


G0:MST2
  Spanning tree enabled protocol mstp
  Root ID    Priority    4098
             Address     0204.969c.544a
             Cost        20000
             Port        13 (GigabitEthernet0/1/3)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32770  (priority 32768 sys-id-ext 2)
             Address     009a.d286.a041
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

Interface           Role Sts Cost      Prio.Nbr Type
------------------- ---- --- --------- -------- --------------------------------
Gi0/1/0             Desg FWD 20000     128.10   P2p
Gi0/1/1             Desg FWD 20000     128.11   P2p
Gi0/1/2             Altn BLK 20000     128.12   P2p
Gi0/1/3             Root FWD 20000     128.13   P2p



конфигурация MSTP на Cisco 2:


spanning-tree mode mst
spanning-tree extend system-id
!
spanning-tree mst configuration
 name okbank
 revision 1
 instance 1 vlan 100, 120
 instance 2 vlan 192
!
!


cisco4331-02#sh spanning-tree

G0:MST0
  Spanning tree enabled protocol mstp
  Root ID    Priority    4096
             Address     0011.88f2.95c0
             Cost        0
             Port        11 (GigabitEthernet0/1/1)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32768  (priority 32768 sys-id-ext 0)
             Address     009a.d265.7396
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

Interface           Role Sts Cost      Prio.Nbr Type
------------------- ---- --- --------- -------- --------------------------------
Gi0/1/0             Altn BLK 20000     128.10   P2p
Gi0/1/1             Root FWD 20000     128.11   P2p
Gi0/1/2             Desg FWD 20000     128.12   P2p
Gi0/1/3             Desg FWD 20000     128.13   P2p


G0:MST1
  Spanning tree enabled protocol mstp
  Root ID    Priority    4097
             Address     0011.88f2.95c0
             Cost        20000
             Port        11 (GigabitEthernet0/1/1)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32769  (priority 32768 sys-id-ext 1)
             Address     009a.d265.7396
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

Interface           Role Sts Cost      Prio.Nbr Type
------------------- ---- --- --------- -------- --------------------------------
Gi0/1/0             Altn BLK 20000     128.10   P2p
Gi0/1/1             Root FWD 20000     128.11   P2p
Gi0/1/2             Desg FWD 20000     128.12   P2p
Gi0/1/3             Desg FWD 20000     128.13   P2p


G0:MST2
  Spanning tree enabled protocol mstp
  Root ID    Priority    4098
             Address     0204.969c.544a
             Cost        20000
             Port        12 (GigabitEthernet0/1/2)
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

  Bridge ID  Priority    32770  (priority 32768 sys-id-ext 2)
             Address     009a.d265.7396
             Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec

Interface           Role Sts Cost      Prio.Nbr Type
------------------- ---- --- --------- -------- --------------------------------
Gi0/1/0             Desg FWD 20000     128.10   P2p
Gi0/1/1             Desg FWD 20000     128.11   P2p
Gi0/1/2             Root FWD 20000     128.12   P2p
Gi0/1/3             Altn BLK 20000     128.13   P2p


конфигурация MSTP на Enterasys SecureStack:

#spantree
set spantree mstcfgid cfgname 'test' rev 1
set spantree msti sid 1 create
set spantree msti sid 2 create
set spantree mstmap 100 sid 1
set spantree mstmap 120 sid 1
set spantree mstmap 192 sid 2
set spantree priority 4096 0
set spantree priority 4096 1
!


B3(su)->show spantree stats sid 0 active
Spanning tree status       - enabled
Spanning tree instance     - 0
Designated Root MacAddr    - 00:11:88:F2:95:C0
Designated Root Port       - 0
Designated Root Priority   - 4096
Designated Root Cost       - 0
Root Max Age               - 20
Root Hello Time            - 2
Root Forward Delay         - 15
Bridge ID MAC Address      - 00:11:88:F2:95:C0
Bridge ID Priority         - 4096
Bridge Max Age             - 20
Bridge Hello Time          - 2
Bridge Forward Delay       - 15
Topology Change Count      - 85
Time Since Top Change      - 0 days 2:44:10
Max Hops                   - 20
 SID   Port         State              Role          Cost        Priority
 ---   ----------   ----------------   -----------   --------    --------
 0      ge.1.1       Forwarding         Designated    20000       128
 0      ge.1.2       Forwarding         Designated    20000       128
 0      ge.2.1       Forwarding         Designated    20000       128
 0      ge.2.2       Forwarding         Designated    20000       128


B3(su)->show spantree stats sid 1 active
Spanning tree status       - enabled
Spanning tree instance     - 1
Designated Root MacAddr    - 00:11:88:F2:95:C0
Designated Root Port       - 0
Designated Root Priority   - 4096
Designated Root Cost       - 0
Root Max Age               - 20
Root Hello Time            - 2
Root Forward Delay         - 15
Bridge ID MAC Address      - 00:11:88:F2:95:C0
Bridge ID Priority         - 4096
Bridge Max Age             - 20
Bridge Hello Time          - 2
Bridge Forward Delay       - 15
Topology Change Count      - 10
Time Since Top Change      - 0 days 2:46:24
Max Hops                   - 20
 SID   Port         State              Role          Cost        Priority
 ---   ----------   ----------------   -----------   --------    --------
 1      ge.1.1       Forwarding         Designated    20000       128
 1      ge.1.2       Forwarding         Designated    20000       128
 1      ge.2.1       Forwarding         Designated    20000       128
 1      ge.2.2       Forwarding         Designated    20000       128



B3(su)->show spantree stats sid 2 active
Spanning tree status       - enabled
Spanning tree instance     - 2
Designated Root MacAddr    - 02:04:96:9C:54:4A
Designated Root Port       - ge.2.2
Designated Root Priority   - 4096
Designated Root Cost       - 40000
Root Max Age               - 20
Root Hello Time            - 2
Root Forward Delay         - 15
Bridge ID MAC Address      - 00:11:88:F2:95:C0
Bridge ID Priority         - 32768
Bridge Max Age             - 20
Bridge Hello Time          - 2
Bridge Forward Delay       - 15
Topology Change Count      - 10
Time Since Top Change      - 0 days 2:47:33
Max Hops                   - 20
 SID   Port         State              Role          Cost        Priority
 ---   ----------   ----------------   -----------   --------    --------
 2      ge.1.1       Discarding         Alternate     20000       128
 2      ge.1.2       Discarding         Alternate     20000       128
 2      ge.2.1       Discarding         Alternate     20000       128
 2      ge.2.2       Forwarding         Root          20000       128



конфигурация MSTP на Extreme SummitStack-V:

#
# Module stp configuration.
#
configure mstp region test
configure mstp revision 1
create stpd s1
configure stpd s1 mode mstp msti 1
create stpd s2
configure stpd s2 mode mstp msti 2
configure stpd s2 priority 4096
enable stpd s1 auto-bind vlan VLAN_0100
enable stpd s1 auto-bind vlan VLAN_0120
enable stpd s2 auto-bind vlan VLAN_0192
enable stpd s1
enable stpd s2



Slot-1 Stack.4 # sh stpd "s0"
Stpd: s0                Stp: ENABLED            Number of Ports: 56
Rapid Root Failover: Disabled
Operational Mode: MSTP                  Default Binding Mode: 802.1D
MSTI Instance:  CIST
802.1Q Tag: (none)
Ports: 1:1,1:2,1:3,1:4,1:5,1:6,1:7,1:8,1:9,1:10,
       1:11,1:12,1:13,1:14,1:15,1:16,1:17,1:18,1:19,1:20,
       1:21,1:22,1:23,1:24,1:25,1:26,1:27,1:28,2:1,2:2,
       2:3,2:4,2:5,2:6,2:7,2:8,2:9,2:10,2:11,2:12,
       2:13,2:14,2:15,2:16,2:17,2:18,2:19,2:20,2:21,2:22,
       2:23,2:24,2:25,2:26,2:27,2:28
Participating Vlans: (none)
Auto-bind Vlans: Default
Bridge Priority            : 32768              Bridge Priority Mode: 802.1t
Operational Bridge Priority: 32768
BridgeID                   : 80:00:02:04:96:9c:54:4a
Designated root            : 80:00:00:9a:d2:65:73:96
CIST Root                  : 10:00:00:11:88:f2:95:c0
CIST Regional Root         : 10:00:00:11:88:f2:95:c0
External RootPathCost      : 0  Internal RootPathCost: 40000
Root Port   : 1:1
MaxAge      : 20s       HelloTime     : 2s      ForwardDelay     : 15s
CfgBrMaxAge : 20s       CfgBrHelloTime: 2s      CfgBrForwardDelay: 15s
RemainHopCount: 18      CfgMaxHopCount: 20
Topology Change Time           : 35s            Hold time        : 1s
Topology Change Detected       : FALSE          Topology Change  : FALSE
Number of Topology Changes     : 27
Time Since Last Topology Change: 10319s
Topology Change initiated locally on Port 1:1
Topology Change last received on Port 1:2 from 00:9a:d2:86:9f:cb
Backup Root               : Off         Backup Root Activated  : FALSE
Loop Protect Event Window : 180s        Loop Protect Threshold : 3
New Root Trap             : On          Topology Change Trap   : Off
Tx Hold Count             : 6


Slot-1 Stack.6 # sh stpd "s0" ports 1:1-2,2:1-2
Port   Mode   State      Cost  Flags     Priority Port ID Designated Bridge
1:1    802.1D FORWARDING 20000 eRapam--I- 128      8001    80:00:00:9a:d2:65:73:                          96
1:2    802.1D BLOCKING   20000 eAap-m--I- 128      8002    80:00:00:9a:d2:86:a0:                          41
2:1    802.1D BLOCKING   20000 eAap-m--I- 128      8081    80:00:00:9a:d2:86:a0:                          41
2:2    802.1D BLOCKING   20000 eAapam--I- 128      8082    80:00:00:9a:d2:65:73:                          96

Total Ports: 4

 ------------------------- Flags: ----------------------------
1:                e=Enable, d=Disable
2: (Port role)    R=Root, D=Designated, A=Alternate, B=Backup, M=Master
3: (Config type)  b=broadcast, p=point-to-point, e=edge, a=auto
4: (Oper. type)   b=broadcast, p=point-to-point, e=edge
5:                p=proposing, a=agree
6: (partner mode) d = 802.1d, w = 802.1w, m = mstp
7:                i = edgeport inconsistency
8:                S = edgeport safe guard active
                  s = edgeport safe guard configured but inactive
8:                G = edgeport safe guard bpdu restrict active in 802.1w and mst                          p
                  g = edgeport safe guard bpdu restrict active in 802.1d
9:                B = Boundary, I = Internal
10:               r = restricted role, t = active role


Slot-1 Stack.7 # sh stpd "s1"
Stpd: s1                Stp: ENABLED            Number of Ports: 4
Rapid Root Failover: Disabled
Operational Mode: MSTP                  Default Binding Mode: 802.1D
MSTI Instance:  MSTI  1
802.1Q Tag: (none)
Ports: 1:1,1:2,2:1,2:2
Participating Vlans: VLAN_0100,VLAN_0120
Auto-bind Vlans: VLAN_0100,VLAN_0120
Bridge Priority            : 32768              Bridge Priority Mode: 802.1t
Operational Bridge Priority: 32768
BridgeID                   : 80:00:02:04:96:9c:54:4a
Designated root            : 80:00:00:9a:d2:65:73:96
CIST Root                  : 10:00:00:11:88:f2:95:c0
CIST Regional Root         : 10:00:00:11:88:f2:95:c0
MSTI Regional Root         : 10:00:00:11:88:f2:95:c0
External RootPathCost      : 0  Internal RootPathCost: 40000
Root Port   : 1:1       Master Port   : ----
MaxAge      : 20s       HelloTime     : 2s      ForwardDelay     : 15s
CfgBrMaxAge : 20s       CfgBrHelloTime: 2s      CfgBrForwardDelay: 15s
RemainHopCount: 18      CfgMaxHopCount: 20
Topology Change Time           : 35s            Hold time        : 1s
Topology Change Detected       : FALSE          Topology Change  : FALSE
Number of Topology Changes     : 3
Time Since Last Topology Change: 10587s
Topology Change initiated locally on Port 1:1
Topology Change last received on Port none from none
Backup Root               : Off         Backup Root Activated  : FALSE
Loop Protect Event Window : 180s        Loop Protect Threshold : 3
New Root Trap             : On          Topology Change Trap   : Off
Tx Hold Count             : 6


Slot-1 Stack.8 # sh stpd "s1" ports 1:1-2,2:1-2
Port   Mode   State      Cost  Flags     Priority Port ID Designated Bridge
1:1    802.1D FORWARDING 20000 eRapam--I- 128      8001    80:00:00:9a:d2:65:73:96
1:2    802.1D BLOCKING   20000 eAapam--I- 128      8002    80:00:00:9a:d2:86:a0:41
2:1    802.1D BLOCKING   20000 eAapam--I- 128      8081    80:00:00:9a:d2:86:a0:41
2:2    802.1D BLOCKING   20000 eAapam--I- 128      8082    80:00:00:9a:d2:65:73:96

Total Ports: 4

 ------------------------- Flags: ----------------------------
1:                e=Enable, d=Disable
2: (Port role)    R=Root, D=Designated, A=Alternate, B=Backup, M=Master
3: (Config type)  b=broadcast, p=point-to-point, e=edge, a=auto
4: (Oper. type)   b=broadcast, p=point-to-point, e=edge
5:                p=proposing, a=agree
6: (partner mode) d = 802.1d, w = 802.1w, m = mstp
7:                i = edgeport inconsistency
8:                S = edgeport safe guard active
                  s = edgeport safe guard configured but inactive
8:                G = edgeport safe guard bpdu restrict active in 802.1w and mstp
                  g = edgeport safe guard bpdu restrict active in 802.1d
9:                B = Boundary, I = Internal
10:               r = restricted role, t = active role


Slot-1 Stack.9 # sh stpd "s2"
Stpd: s2                Stp: ENABLED            Number of Ports: 56
Rapid Root Failover: Disabled
Operational Mode: MSTP                  Default Binding Mode: 802.1D
MSTI Instance:  MSTI  2
802.1Q Tag: (none)
Ports: 1:1,1:2,1:3,1:4,1:5,1:6,1:7,1:8,1:9,1:10,
       1:11,1:12,1:13,1:14,1:15,1:16,1:17,1:18,1:19,1:20,
       1:21,1:22,1:23,1:24,1:25,1:26,1:27,1:28,2:1,2:2,
       2:3,2:4,2:5,2:6,2:7,2:8,2:9,2:10,2:11,2:12,
       2:13,2:14,2:15,2:16,2:17,2:18,2:19,2:20,2:21,2:22,
       2:23,2:24,2:25,2:26,2:27,2:28
Participating Vlans: VLAN_0192
Auto-bind Vlans: VLAN_0192
Bridge Priority            : 4096               Bridge Priority Mode: 802.1t
Operational Bridge Priority: 4096
BridgeID                   : 10:00:02:04:96:9c:54:4a
Designated root            : 10:00:02:04:96:9c:54:4a
CIST Root                  : 10:00:00:11:88:f2:95:c0
CIST Regional Root         : 10:00:00:11:88:f2:95:c0
MSTI Regional Root         : 10:00:02:04:96:9c:54:4a
External RootPathCost      : 0  Internal RootPathCost: 0
Root Port   : ----      Master Port   : ----
MaxAge      : 20s       HelloTime     : 2s      ForwardDelay     : 15s
CfgBrMaxAge : 20s       CfgBrHelloTime: 2s      CfgBrForwardDelay: 15s
RemainHopCount: 18      CfgMaxHopCount: 20
Topology Change Time           : 35s            Hold time        : 1s
Topology Change Detected       : FALSE          Topology Change  : FALSE
Number of Topology Changes     : 3
Time Since Last Topology Change: 10738s
Topology Change initiated locally on Port 1:2
Topology Change last received on Port 1:2 from none
Backup Root               : Off         Backup Root Activated  : FALSE
Loop Protect Event Window : 180s        Loop Protect Threshold : 3
New Root Trap             : On          Topology Change Trap   : Off
Tx Hold Count             : 6


Slot-1 Stack.10 # sh stpd "s2" ports 1:1-2,2:1-2
Port   Mode   State      Cost  Flags     Priority Port ID Designated Bridge
1:1    802.1D FORWARDING 20000 eDap-m--I- 128      8001    10:00:02:04:96:9c:54:4a
1:2    802.1D FORWARDING 20000 eDap-m--I- 128      8002    10:00:02:04:96:9c:54:4a
2:1    802.1D FORWARDING 20000 eDap-m--I- 128      8081    10:00:02:04:96:9c:54:4a
2:2    802.1D FORWARDING 20000 eDap-m--I- 128      8082    10:00:02:04:96:9c:54:4a

Total Ports: 4

 ------------------------- Flags: ----------------------------
1:                e=Enable, d=Disable
2: (Port role)    R=Root, D=Designated, A=Alternate, B=Backup, M=Master
3: (Config type)  b=broadcast, p=point-to-point, e=edge, a=auto
4: (Oper. type)   b=broadcast, p=point-to-point, e=edge
5:                p=proposing, a=agree
6: (partner mode) d = 802.1d, w = 802.1w, m = mstp
7:                i = edgeport inconsistency
8:                S = edgeport safe guard active
                  s = edgeport safe guard configured but inactive
8:                G = edgeport safe guard bpdu restrict active in 802.1w and mstp
                  g = edgeport safe guard bpdu restrict active in 802.1d
9:                B = Boundary, I = Internal
10:               r = restricted role, t = active role


Комментариев нет:

Отправить комментарий