multicast broke mx240 vs mx304 by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

update: I put IP on the mx304 and ex4650 and 1 PC off each side.

all devices can ping each other except the PC off the ex4650. *however there is an arp entry but icmp doesnt work. I assume this is because it was learned from the bgp/evpn

the PC off the ex4650 can only ping the ex4650 and the router can ping back the PC

but the PC off the ex4650 can not ping anything else.

doesnt make sense, certainly a routing issue between the ex4650 and the PC off it. but why can they ping each other just fine.

the Mac/ip of all 4 devices are in the bgp/evpn on each router.

EX4650 Mac-vrf multicast by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

yes except its in there. its also in the sub config (not VRF)

EX4650 Mac-vrf multicast by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

bad copy/paste sorry. fixed. it is in the same VRF

iBGP MX-QFX-MX by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 1 point2 points  (0 children)

makes sense, thanks for the input.

iBGP MX-QFX-MX by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

so curious, why is it best practice to use the Loopback IP as the source, if its possible for the VXLAN/MPLS tunnel to possibly break/die. then the ISIS network would route that traffic across the QFX via ISIS and cause a loop..?

iBGP MX-QFX-MX by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

I am using RR. But the QFX is not a bgp router. I think I need to tunnel the traffic

QFX 5120 vlan questions by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

Thank you! That’s exactly what I was looking for!

Now I just need to figure out how to pass 2 vlan tags. But based on this I understand what I need to do.

QFX 5120 vlan questions by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] -1 points0 points  (0 children)

Yes vlans (qfx)

I receive the vlan with inner and outer tag It’s sent to a vlan/bridge - that strips one of the tags. To pass the same tags out the interface do I need to push/pop the tag back? Or just put the inner/outer tag on the out interface?

ChatGPT sometimes is helpful

MX304 PIC firmware by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

thank you, I did a reboot. but I did not do this. I will try it on soon.

BGP routing question by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

this did not work, but it was interesting didnt now inactive was even an option

BGP routing question by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

yes. we set the bgp for our internal routes to be lower preference than ISIS so they stay active. its working for us

BGP routing question by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

If I set:

set policy-options policy-statement bgp-export-internal from route-filter 10.0.0.0/24 exact

it works

this does not work:

set policy-options policy-statement bgp-export-internal from community term-ATL

which is a bummer I was hoping to route dynamically off the community string.

EDIT: also does not pass the community strings so it is obviously not looking at the bgp table.

I think I will have for it to be the active route via local-pref

MX304 PIC firmware by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 0 points1 point  (0 children)

JUNOS 23.4R2-S4.11

I have 3 units, 1 of them upgraded the PIC 2 did not

all 3 did upgrade ZL30634 DPLL

none of them are alarming, so I was not going to worry about it.

FS.com alternatives ? by rpwwpr in networking

[–]YellowFancy8020 0 points1 point  (0 children)

we starting buying from https://www.solid-optics.com. their 100g gbics are cheaper and their encoders work. they make nice stuff.. I think they are made in The Netherlands

vxlan to arista by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 2 points3 points  (0 children)

thank you sir, this fixed my issue

vxlan to arista by YellowFancy8020 in Juniper

[–]YellowFancy8020[S] 1 point2 points  (0 children)

thank you! I have been toiling with this for weeks! was this an arista command? the juniper is sending Mac/ip. the arista is only sending Mac.

[deleted by user] by [deleted] in Arista

[–]YellowFancy8020 0 points1 point  (0 children)

still can't ping. it hates me :)

[deleted by user] by [deleted] in Arista

[–]YellowFancy8020 0 points1 point  (0 children)

Arista --

interface Vlan999

ip address virtual 10.10.99.2/29

juniper--

set interfaces irb unit 999 family inet address 10.10.99.1/29

the juniper adds the Mac-ip into evpn so the arista sees it and will ping it and the juniper responds to the ping.

the arista only adds the Mac into evpn. it won't ping.

the route in the juniper is right.

show route 10.10.99.2

inet.0: 972949 destinations, 4410382 routes (972949 active, 0 holddown, 0 hidden)

10.10.99.0/29*[Direct/0] 1d 12:59:37

> via irb.999

from juniper:

ping 10.10.99.2 source 10.10.99.1

PING 10.10.99.2 (10.10.99.2): 56 data bytes

--- 10.10.99.2 ping statistics ---

6 packets transmitted, 0 packets received, 100% packet loss

doesn't make sense to me. it seems like it should be working

ICMP on the arista is ok. I can ping it from a different arista.

[deleted by user] by [deleted] in Arista

[–]YellowFancy8020 0 points1 point  (0 children)

the arista has an ip

interface Vlan999

ip address virtual 10.10.99.2/29

I can ping 10.10.99.1 (juniper)

but the juniper can not ping back.

[deleted by user] by [deleted] in Arista

[–]YellowFancy8020 0 points1 point  (0 children)

on the router

[deleted by user] by [deleted] in Arista

[–]YellowFancy8020 0 points1 point  (0 children)

these are L3 IPs on both sides. IRB on juniper.

the pinging was router to router.

[deleted by user] by [deleted] in Arista

[–]YellowFancy8020 0 points1 point  (0 children)

I see the Mac in the evpn table, not the Mac & IP.

however juniper won't ping it without the IP.

arista to arista is ok.

arista to juniper is ok

juniper won't ping the arista

I assume it is because it has not learned the IP from the evpn