## Last commit: 2015-06-20 23:18:23 CEST by kszarkowicz
version “15.1I20150309_1803_sesale [sesale]”;
groups {
GR-CORE-INTF {
interfaces {
{
traps;
hold-time up 5000 down 0;
unit 0 {
family inet;
family iso;
family mpls {
##
## Warning: statement ignored: unsupported platform (mx960)
##
maximum-labels 5;
}
}
}
{
speed 1g;
link-mode full-duplex;
gigether-options {
auto-negotiation;
}
}
}
}
GR-LSP {
protocols {
mpls {
label-switched-path {
least-fill;
adaptive;
auto-bandwidth {
adjust-interval 360;
adjust-threshold 2;
minimum-bandwidth 1k;
maximum-bandwidth 100m;
inactive: monitor-bandwidth;
adjust-threshold-overflow-limit 3;
resignal-minimum-bandwidth;
}
}
}
}
}
GR-OSPF {
protocols {
ospf {
area {
interface “” {
interface-type p2p;
authentication {
md5 0 key “$9$sngaGk.569pDi9p0BSys24”; ## SECRET-DATA
}
bfd-liveness-detection {
minimum-interval 2000;
multiplier 3;
}
}
interface {
passive;
metric 1;
}
}
}
}
routing-instances {
{
protocols {
ospf {
spf-options {
delay 50;
holddown 2000;
rapid-runs 5;
}
overload timeout 300;
reference-bandwidth 1000g;
area {
interface “” {
interface-type p2p;
authentication {
md5 0 key “$9$sngaGk.569pDi9p0BSys24”; ## SECRET-DATA
}
bfd-liveness-detection {
minimum-interval 2000;
multiplier 3;
}
}
interface {
passive;
metric 1;
}
}
}
}
}
}
}
GR-RSVP {
protocols {
rsvp {
interface “” {
authentication-key “$9$OyXSIhyM87s2alK2aZU.mO1R”; ## SECRET-DATA
aggregate;
reliable;
subscription 1;
}
}
}
}
GR-ISIS {
protocols {
isis {
interface “” {
point-to-point;
bfd-liveness-detection {
minimum-interval 2000;
multiplier 3;
}
level 2 {
hello-authentication-key “$9$Yg4JUqmT/CujHCuO1yrYgo”; ## SECRET-DATA
hello-authentication-type md5;
}
level 1 disable;
}
interface {
passive;
}
}
}
}
GR-ACC-INTF {
interfaces {
{
traps;
hold-time up 5000 down 0;
}
{
speed 1g;
link-mode full-duplex;
gigether-options {
auto-negotiation;
}
}
}
}
}
system {
host-name 01-PE3;
time-zone Europe/Vienna;
arp {
purging;
gratuitous-arp-on-ifup;
gratuitous-arp-delay 6;
}
root-authentication {
encrypted-password “$1$kBnCFAVv$yCkmUO5F6Nef2KjXXFg6c.”; ## SECRET-DATA
}
login {
user kszarkowicz {
full-name “Krzysztof Grzegorz Szarkowicz”;
uid 2000;
class super-user;
authentication {
encrypted-password “$1$OlGAxJOb$VCpfftbRCvhSvLsEZoY.T0”; ## SECRET-DATA
ssh-rsa “ssh-rsa AAAAB3NzaC1yc2EAAAADAQABAAABAQDNrYGXXiIQNeB5ai/dQs7S5ua7FNMLbItfV/jRxNQzARRzeEYTe+kqWdyEftH1PBrFag5KAe/pZ/TmWyvM1TB5Qlbg7viQ2so3ITNXoXKpk+q1h1MYUgISE3F7dZ1a6TpF6uegEhduorvLHrrXH/77o+dzGEY9MTxAjaf00sH+MF3O/yXVH82fPpMAVu52Wviibo3xSX3y1I9fj4qTDqyuWdRBuEhOKTxehyn7fm5B93tfhz7Y0efkadypEvZlx9YpPSE3Jb8uNxMp3jCAYicoPwxU60RO7ouY3gfvL5pF61oP3efMUQAm9Hc7OxUHAKLuAyBS+JI5LE0MNYyZEjnX kszarkowicz@juniper.net”; ## SECRET-DATA
}
}
}
static-host-mapping {
P1 inet [ 172.16.0.1 10.0.0.3 10.0.0.6 10.0.0.8 10.0.0.34 ];
P2 inet [ 172.16.0.2 10.0.0.5 10.0.0.7 10.0.0.10 10.0.0.36 ];
P3 inet [ 172.16.0.3 10.0.0.9 10.0.0.12 10.0.0.14 10.0.0.18 ];
P4 inet [ 172.16.0.4 10.0.0.11 10.0.0.13 10.0.0.16 10.0.0.20 ];
P5 inet [ 172.16.0.5 10.0.0.15 10.0.0.21 10.0.0.22 10.0.0.24 10.0.0.28 ];
P6 inet [ 172.16.0.6 10.0.0.17 10.0.0.19 10.0.0.23 10.0.0.26 10.0.0.30 ];
PE1 inet [ 172.16.0.11 10.0.0.0 10.0.0.2 ];
PE1-VRF-A inet 192.168.1.11;
PE2 inet [ 172.16.0.22 10.0.0.1 10.0.0.4 ];
PE2-VRF-A inet 192.168.1.22;
PE3 inet [ 172.16.0.33 10.0.0.25 10.0.0.31 10.0.0.32 10.0.0.35 ];
PE3-VRF-A inet 192.168.1.33;
PE4 inet [ 172.16.0.44 10.0.0.27 10.0.0.29 10.0.0.33 10.0.0.37 ];
PE4-VRF-A inet 192.168.1.44;
}
services {
ftp;
ssh;
telnet;
}
syslog {
user * {
any emergency;
}
file messages {
any notice;
authorization info;
}
file interactive-commands {
interactive-commands any;
}
time-format year millisecond;
}
compress-configuration-files;
commit synchronize;
}
chassis {
##
## Warning: statement ignored: unsupported platform (mx960)
##
network-services enhanced-ip;
}
security {
authentication-key-chains {
key-chain KC-IBGP {
key 1 {
secret “$9$ObwwIhyM87s2alK2aZU.mO1R”; ## SECRET-DATA
start-time “2011-10-1.00:00:00 +0200”;
}
}
}
}
interfaces {
ge-2/0/0 {
description Management;
mac 00:50:56:8b:3f:db;
unit 0 {
family inet {
address 10.255.1.13/16;
}
}
}
ge-2/0/1 {
apply-groups GR-ACC-INTF;
description CE3:ge-2/0/1;
mac 00:50:56:8b:fe:2e;
unit 0 {
family inet {
address 10.1.3.1/31;
}
}
}
ge-2/0/2 {
apply-groups GR-CORE-INTF;
description P5:ge-2/0/2;
mac 00:50:56:8b:70:12;
unit 0 {
family inet {
address 10.0.0.25/31;
}
}
}
ge-2/0/3 {
apply-groups GR-CORE-INTF;
description P6:GigabitEthernet0/0/0/3;
mac 00:50:56:8b:41:01;
unit 0 {
family inet {
address 10.0.0.31/31;
}
}
}
ge-2/0/4 {
apply-groups GR-CORE-INTF;
description PE4:GigabitEthernet0/0/0/4;
mac 00:50:56:8b:e5:0e;
unit 0 {
family inet {
address 10.0.0.32/31;
}
}
}
ge-2/0/5 {
mac 00:50:56:8b:0c:2e;
}
ge-2/0/6 {
mac 00:50:56:8b:44:9e;
}
lo0 {
unit 0 {
family inet {
address 172.16.0.33/32 {
primary;
}
address 172.17.0.33/32;
}
family iso {
address 49.0000.1720.1600.0033.00;
}
}
unit 1 {
family inet {
address 192.168.1.33/32;
}
}
}
}
forwarding-options {
no-load-balance-label-capability;
}
routing-options {
srlg {
SRLG-96 {
srlg-value 96;
srlg-cost 40000;
}
SRLG-97 {
srlg-value 97;
srlg-cost 60000;
}
SRLG-98 {
srlg-value 98;
srlg-cost 500;
}
}
router-id 172.16.0.33;
autonomous-system 65000;
forwarding-table {
export PL-LOAD-BALANCE;
}
}
protocols {
rsvp {
apply-groups GR-RSVP;
interface ge-2/0/2.0;
interface ge-2/0/3.0;
interface ge-2/0/4.0;
}
mpls {
apply-groups GR-LSP;
statistics {
file mpls.stat size 100m files 10;
interval 120;
auto-bandwidth;
}
admin-groups {
AG-29 29;
}
optimize-aggressive;
smart-optimize-timer 60;
icmp-tunneling;
optimize-timer 60;
label-switched-path PE3—>P1 {
to 172.16.0.1;
}
label-switched-path PE3—>P2 {
to 172.16.0.2;
}
label-switched-path PE3—>P5 {
to 172.16.0.5;
}
label-switched-path PE3—>P6 {
to 172.16.0.6;
}
label-switched-path PE3—>PE1 {
to 172.16.0.11;
primary PRIMARY;
secondary SECONDARY {
standby;
}
}
label-switched-path PE3—>PE2 {
to 172.16.0.22;
}
label-switched-path PE3—>PE4 {
to 172.16.0.44;
}
path PRIMARY;
path SECONDARY;
interface fxp0.0 {
disable;
}
interface all;
interface ge-2/0/2.0 {
admin-group AG-29;
}
interface ge-2/0/3.0 {
srlg SRLG-97;
}
interface ge-2/0/4.0 {
srlg SRLG-97;
}
}
bgp {
precision-timers;
path-selection external-router-id;
advertise-inactive;
log-updown;
group IBGP-RR {
type internal;
local-address 172.16.0.33;
family inet-vpn {
unicast;
}
neighbor 172.16.0.5;
neighbor 172.16.0.6;
}
}
isis {
apply-groups GR-ISIS;
reference-bandwidth 1000g;
lsp-lifetime 65535;
no-ipv6-routing;
spf-options {
delay 50;
holddown 2000;
rapid-runs 5;
}
overload {
timeout 300;
advertise-high-metrics;
}
level 1 {
disable;
wide-metrics-only;
}
level 2 {
authentication-key “$9$/wS/AuBcyKxNbIENbs2GU/Ct”; ## SECRET-DATA
authentication-type md5;
wide-metrics-only;
}
interface ge-2/0/2.0;
interface ge-2/0/3.0 {
level 2 te-metric 3000;
}
interface ge-2/0/4.0;
interface lo0.0;
}
##
## Warning: configuration block ignored: unsupported platform (mx960)
##
esis {
disable;
}
inactive: ospf {
apply-groups GR-OSPF;
spf-options {
delay 50;
holddown 2000;
rapid-runs 5;
}
traffic-engineering;
reference-bandwidth 1000g;
area 0.0.0.0 {
interface lo0.0 {
passive;
}
interface ge-2/0/2.0;
interface ge-2/0/3.0;
interface ge-2/0/4.0;
}
}
lldp {
interface all;
}
}
policy-options {
policy-statement PL-LOAD-BALANCE {
then {
load-balance per-packet;
}
}
policy-statement PL-VRF-A-OSPF-EXP {
then accept;
}
}
routing-instances {
VRF-A {
instance-type vrf;
interface ge-2/0/1.0;
interface lo0.1;
route-distinguisher 172.16.0.33:101;
vrf-target target:65000:1001;
vrf-table-label;
routing-options {
router-id 192.168.1.33;
}
protocols {
ospf {
apply-groups GR-OSPF;
export PL-VRF-A-OSPF-EXP;
area 0.0.0.0 {
interface lo0.1;
interface ge-2/0/1.0;
}
}
}
}
}
PE3 @ 14 – TE Static Bandwidth Constraints
Advertisements