VSS-Enabled Campus Best Practice Configuration Example

Transcription

A P P E N D I XAVSS-Enabled Campus Best PracticeConfiguration ExampleFigure A-1 illustrates the baseline best practice configuration required to set up basic VSS enablednetwork. The circle indicates the essential steps required to create the VSS systems from standalone. Thered text highlights the important CLI information with VSS configuration. Comments are provided inblue italic font.Figure A-1Overall VSS-Enabled Campus Best Practice Configuration Summary1switch virtual domain 10switch mode virtualmac-address use-virtualdual-active detection pagp trust channel-group 202Switch 1Switch 2interface Port-channel1description VSL Link from Switch 1no switchportno ip addressswitch virtual link 1mls qos trust cosno mls qos channel-consistencyinterface Port-channel2description VSL Link from Switch 2no switchportno ip addressswitch virtual link 2mls qos trust cosno mls qos channel-consistencySwitch 1Switch 2interface ten 1/5/4channel-group 1 mode oninterface ten 1/1/1channel-group 1 mode on3interface GigabitEthernet1/8/23description Access Switchswitchportswitchport trunk encapsulation dot1qswitchport trunk native vlan 202switchport trunk allowed vlan 2,102 snip channel-protocol pagpchannel-group 202 mode desirable2interface ten 2/5/4channel-group 2 mode oninterface ten 2/1/1channel-group 2 mode onMECinterface Port-channel202description Access Switchswitchportswitchport trunk encapsulation dot1qswitchport trunk native vlan 202switchport trunk allowed vlan 2,102interface GigabitEthernet2/8/23description Access Switchswitchportswitchport trunk encapsulation dot1qswitchport trunk native vlan 202switchport trunk allowed vlan 2,102 snip channel-protocol pagpchannel-group 202 mode desirable32269582Campus 3.0 Virtual Switching System Design GuideOL-19829-01A-1

Appendix AVSS-Enabled Campus Best Practice Configuration ExampleEnd-to-End Device ConfigurationsThe end-to-end devices configuration is categorized into three major sections. Each sectionconfiguration contains specific CLI which is a required as part of best practice configuration andcorresponding explanation. VSS and L2 Domain- Includes above base configuration as well as L2 domain configuration Access-layer- Sample L2 domain configuration L3 Domain - Includes global L3 configuration for VSS and core routers. Then separate section forspecifics topologies (ECMP and MEC) for EIGRP and OSPF. In addition, the core devicesconfiguration shown below are standalone router/devices.VSS SpecificVSS Global Configurationswitch virtual domain 10 ! Must configure unique domain IDswitch mode virtualswitch 1 priority 110 ! Not needed, helps in operational mgmtswitch 2 priority 100 ! Not needed, helps in operational mgmtdual-active exclude interface GigabitEthernet1/5/3 ! Connectivity to VSS during dualactivemac-address use-virtual ! Required for consistent MAC addressdual-active detection pagp trust channel-group 202 ! Enhanced PAgP based dual activedetectionredundancy ! Default SSO Enabledmain-cpuauto-sync running-configmode ssoSwitch 1interface Port-channel1 ! Unique port-channel number for SW 1description VSL Link from Switch 1no switchportno ip addressswitch virtual link 1 ! Defines switch ID for SW 1mls qos trust cosno mls qos channel-consistencyinterface tenchannel-groupinterface tenchannel-group1/5/41 mode on ! EC mode is ON – EtherChannel Managemeent Protocol off1/1/11 mode onSwitch 2interface Port-channel2 ! Unique port-channel number for SW 1description VSL Link from Switch 2no switchportno ip addressswitch virtual link 2 ! Defines switch ID for SW 2mls qos trust cosno mls qos channel-consistencyinterface ten 2/5/4Campus 3.0 Virtual Switching System Design GuideA-2OL-19829-01

Appendix AVSS-Enabled Campus Best Practice Configuration Examplechannel-group 2 mode on ! EC mode is ON - EtherChannel Managemeent Protocoloffinterface ten 2/1/1channel-group 2 mode onLayer-2 DomainVSSudld enablevtp domain campus-testvtp mode transparentspanning-tree mode rapid-pvstno spanning-tree optimize bpdu transmissionspanning-tree extend system-idspanning-tree vlan 2-999 priority 24576 ! STP Rootport-channel load-balance src-dst-mixed-ip-port !Enhanced hash algorithemvlan 400 ! VLANs spanning multiple access-layer SWsname L2 Spaned VLAN 400vlan 450name L2 Spaned VLAN 450vlan 500name L2 Spaned VLAN 500vlan 550name L2 Spaned VLAN 550vlan 600name L2 Spaned VLAN 600vlan 650name L2 Spaned VLAN 650vlan 900name NetMgmt VLAN 900vlan 999name Unused Port VLAN 999vlan 2name cr7-3750-Stack-Data-VLAN!vlan 102name cr7-3750-Stack-Voice-VLANinterface Vlan2 ! Sample VLAN interface configurationip address 10.120.2.1 255.255.255.0no ip redirectsno ip unreachablesip flow ingressip pim sparse-modelogging event link-statushold-queue 150 inhold-queue 150 out!Campus 3.0 Virtual Switching System Design GuideOL-19829-01A-3

Appendix AVSS-Enabled Campus Best Practice Configuration ExampleVSS—Multi-Chassis EtherChannelPAgPinterface GigabitEthernet1/8/23 ! Interface on SW 1description Access Switch Facing Interfaceswitchportswitchport trunk encapsulation dot1qswitchport trunk native vlan 202switchport mode dynamic desirable ! Trunk mod dynamic and desirableswitchport trunk allowed vlan 2,102,400,450,500,550,600,650,900 ! Only allow need VLANsfor a given trunklogging event link-status ! Logging for link statuslogging event trunk-status ! Logging for trunk statuslogging event bundle-status ! Logging for port-channel statusload-interval 30mls qos trust dscpchannel-protocol pagpchannel-group 202 mode desirable ! Define Port-channel, PAgP mode desirableinterface GigabitEthernet2/8/23 ! Interface on SW 2description Access Switch Facing Interfaceswitchportswitchport trunk encapsulation dot1qswitchport trunk native vlan 202switchport mode dynamic desirableswitchport trunk allowed vlan 2,102,400,450,500,550,600,650,900logging event link-statuslogging event trunk-statuslogging event bundle-statusload-interval 30mls qos trust dscpload-interval 30channel-protocol pagpchannel-group 202 mode desirableinterface Port-channel202 ! Automatically created by defining at interfacesdescription Access Switch MECswitchportswitchport trunk encapsulation dot1qswitchport trunk native vlan 202switchport trunk allowed vlan 2,102,400,450,500,550,600,650,900logging event link-statuslogging event spanning-tree status ! STP logging enabled on port-channelload-interval 30mls qos trust dscpspanning-tree portfast ! Optional - helps during initializationhold-queue 2000 outLACPLACP Sample Configurationinterface GigabitEthernet1/8/23description Access Switch Facing Interfaceswitchportswitchport trunk encapsulation dot1qswitchport trunk native vlan 202switchport mode dynamic desirableswitchport trunk allowed vlan 2,102,400,450,500,550,600,650,900logging event link-statusCampus 3.0 Virtual Switching System Design GuideA-4OL-19829-01

Appendix AVSS-Enabled Campus Best Practice Configuration Examplelogging event trunk-statuslogging event bundle-statusload-interval 30mls qos trust dscpchannel-protocol lacpchannel-group 202 mode activehold-queue 2000 outinterface GigabitEthernet2/8/23description Access Switch Facing Interfaceswitchportswitchport trunk encapsulation dot1qswitchport trunk native vlan 202switchport mode dynamic desirableswitchport trunk allowed vlan 2,102,400,450,500,550,600,650,900logging event link-statuslogging event trunk-statuslogging event bundle-statusload-interval 30mls qos trust dscpchannel-protocol lacpchannel-group 202 mode activehold-queue 2000 outinterface Port-channel202 ! Automatically created by defining at interfacesdescription Access Switch MECswitchportswitchport trunk encapsulation dot1qswitchport trunk native vlan 202switchport trunk allowed vlan 2,102,400,450,500,550,600,650,900logging event link-statuslogging event spanning-tree statusload-interval 30mls qos trust dscpspanning-tree portfast ! Optional - helps during initializationhold-queue 2000 outAccess-Layer SwitchSample Configuration (Platform Specific Configuration Varies)interface GigabitEthernet0/27description Uplink to VSS Switch Gig 1/8/24switchport trunk encapsulation dot1qswitchport trunk native vlan 203switchport mode dynamic desirableswitchport trunk allowed vlan 3,103,400,450,500,550,600,650,900logging event link-statuslogging event trunk-statuslogging event bundle-statuscarrier-delay msec 0srr-queue bandwidth share 1 70 25 5srr-queue bandwidth shape 3 0 0 0priority-queue outmls qos trust dscpchannel-protocol pagpchannel-group 1 mode desirableinterface GigabitEthernet0/28description Uplink to VSS Switch Gig 2/8/24switchport trunk encapsulation dot1qswitchport trunk native vlan 203Campus 3.0 Virtual Switching System Design GuideOL-19829-01A-5

Appendix AVSS-Enabled Campus Best Practice Configuration Exampleswitchport trunk allowed vlan 3,103,400,450,500,550,600,650,900switchport mode dynamic desirablelogging event link-statuslogging event trunk-statuslogging event bundle-statuscarrier-delay msec 0srr-queue bandwidth share 1 70 25 5srr-queue bandwidth shape 3 0 0 0priority-queue outmls qos trust dscpchannel-protocol pagpchannel-group 1 mode desirableinterface Port-channel1 ! Automatically created by defining at interfacesdescription EC Uplink to VSSswitchport trunk encapsulation dot1qswitchport trunk native vlan 203switchport trunk allowed vlan 3,103,400,450,500,550,600,650,900switchport mode dynamic desirablelogging event link-statuslogging event spanning-tree statuscarrier-delay msec 0spanning-tree portfast ! Optional - helps during initializationLayer-3 DomainThe Layer 3 domain represents VSS interconnection to the core-layer. The core-layer devicesconfiguration shown below are standalone router/switch.Global Configurationmls ip cef load-sharing option !Apply Campus Best PracticesMulticastVSSip multicast-routingip pim rp-address 10.122.100.1 GOOD-IPMC override !RP mapping with filterip access-list standard GOOD-IPMCpermit 224.0.1.39permit 224.0.1.40permit 239.192.240.0 0.0.3.255permit 239.192.248.0 0.0.3.255Core 1 Standalone Router (No VSS)Core RP ANYCAST - Primaryip multicast-routinginterface Loopback0description MSDP PEER INT ! MSDP Loopbackip address 10.122.10.1 255.255.255.255Campus 3.0 Virtual Switching System Design GuideA-6OL-19829-01

Appendix AVSS-Enabled Campus Best Practice Configuration Exampleinterface Loopback1description ANYCAST RP ADDRESS (PRIMARY) !ip address 10.122.100.1 255.255.255.255Anycast RP Primaryinterface Loopback2description Garbage-CAN RPip address 2.2.2.2 255.255.255.255interface Port-channel1 ! Core 1- Core2 L3 for MSDPdescription Channel to Peer Core Nodedampeningip address 10.122.0.18 255.255.255.254ip pim sparse-modeload-interval 30carrier-delay msec 0mls qos trust dscpip access-list standard GOOD-IPMCpermit 224.0.1.39permit 224.0.1.40permit 239.192.240.0 0.0.3.255permit 239.192.248.0 0.0.3.255ipipipipmsdpmsdpmsdpmsdppeer 10.122.10.2 connect -source Loopback0 ! MSDP Configurationdescription 10.122.10.2 ANYCAST-PEER-6k-core-2cache -sa-stateoriginator-id Loopback0Core 2 Standalone Router (No VSS)ip multicast-routinginterface Loopback0description MSDP PEER INTip address 10.122.10.2 255.255.255.255interface Loopback1description ANYCAST RP ADDRESSip address 10.122.100.1 255.255.255.255 ! Secondary ANYCAST RPdelay 600interface Loopback2description Garbage-CAN RPip address 2.2.2.2 255.255.255.255interface Port-channel1description Channel to Peer Core nodedampeningip address 10.122.0.19 255.255.255.254ip pim sparse-modeload-interval 30carrier-delay msec 0mls qos trust dscpip pim rp-address 10.122.100.1 GOOD-IPMC overrideip access-list standard GOOD-IPMCpermit 224.0.1.39permit 224.0.1.40permit 239.192.240.0 0.0.3.255permit 239.192.248.0 0.0.3.255Campus 3.0 Virtual Switching System Design GuideOL-19829-01A-7

Appendix AipipipipmsdpmsdpmsdpmsdpVSS-Enabled Campus Best Practice Configuration Examplepeer 10.122.10.1 connect-source Loopback0description 10.122.10.1 ANYCAST-PEER-6k-core-1cache-sa-stateoriginator-id Loopback0EIGRP MECVSSrouter eigrp 100passive-interface defaultno passive-interface Port-channel200no passive-interface Port-channel201network 10.0.0.0eigrp log-neighbor-warningseigrp log-neighbor-changesno auto-summaryeigrp router-id 10.122.102.1eigrp event-log-size 3000nsf ! Enable NSF Capabilityinterface Port-channel200 ! Create L3 MEC Interface firstdescription 20 Gig MEC to CORE-1 (cr2-6500-1 4/1-4/3)no switchportdampeningip address 10.122.0.26 255.255.255.254ip flow ingressip pim sparse-modeip summary-address eigrp 100 10.125.0.0 255.255.0.0 5 ! Summarization for Access-subnetsip summary-address eigrp 100 10.120.0.0 255.255.0.0 5logging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 out!interface Port-channel201description 20 Gig to CORE-2 (cr2-6500-1 4/1-4/3)no switchportdampeningip address 10.122.0.21 255.255.255.254ip flow ingressip pim sparse-modeip summary-address eigrp 100 10.125.0.0 255.255.0.0 5ip summary-address eigrp 100 10.120.0.0 255.255.0.0 5logging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outinterface TenGigabitEthernet1/2/1description 10 GigE to Core 1no switchportno ip addresslogging event link-statuslogging event bundle-statusload-interval 30carrier-delay msec 0Campus 3.0 Virtual Switching System Design GuideA-8OL-19829-01

Appendix AVSS-Enabled Campus Best Practice Configuration Examplemls qos trust dscpchannel-protocol pagpchannel-group 200 mode desirablehold-queue 2000 inhold-queue 2000 out!interface TenGigabitEthernet1/2/2description 10 GigE to Core 2no switchportno ip addresslogging event link-statuslogging event bundle-statusload-interval 30carrier-delay msec 0mls qos trust dscpchannel-protocol pagpchannel-group 201 mode desirablehold-queue 2000 inhold-queue 2000 outinterface TenGigabitEthernet2/2/1description to core 1no switchportno ip addresslogging event link-statuslogging event bundle-statuslogging event spanning-tree statusload-interval 30mls qos trust dscpchannel-protocol pagpchannel-group 200 mode desirablehold-queue 2000 inhold-queue 2000 outinterface TenGigabitEthernet2/2/2description 10 GigE to Core 2no switchportno ip addresslogging event link-statuslogging event bundle-statusload-interval 30mls qos trust dscpchannel-protocol pagpchannel-group 201 mode desirablehold-queue 2000 inhold-queue 2000 outCore 1 Standalone Router (No VSS)router eigrp 100passive-interface defaultno passive-interface Port-channel1no passive-interface Port-channel20no passive-interface Port-channel221network 10.0.0.0no auto-summaryeigrp log-neighbor-warningseigrp log-neighbor-changeseigrp event-log-size 3000interface Port-channel20description 20 Gig MEC to VSS 1/2/1 2/2/1Campus 3.0 Virtual Switching System Design GuideOL-19829-01A-9

Appendix AVSS-Enabled Campus Best Practice Configuration Exampledampeningip address 10.122.0.27 255.255.255.254ip flow ingressip pim sparse-modelogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outCore 2 Standalone Router (No VSS)router eigrp 100passive-interface defaultno passive-interface Port-channel1no passive-interface Port-channel20no passive-interface Port-channel221network 10.0.0.0no auto-summaryeigrp log-neighbor-warningseigrp log-neighbor-changeseigrp event-log-size 3000interface Port-channel21description 20 Gig to VSS 1/2/2-2/2/2dampeningip address 10.122.0.20 255.255.255.254ip flow ingressip pim sparse-modelogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outEIGRP ECMPVSSrouter eigrp 100passive-interface defaultno passive-interface TenGigabitEthernet1/2/1no passive-interface TenGigabitEthernet1/2/2no passive-interface TenGigabitEthernet2/2/1no passive-interface TenGigabitEthernet2/2/2network 10.0.0.0no auto-summaryeigrp router-id 10.122.102.1eigrp log-neighbor-warningseigrp log-neighbor-changeseigrp event-log-size 3000nsf ! Enable NSF Capabilityinterface TenGigabitEthernet1/2/1description 10 GigE to Core 1no switchportdampeningCampus 3.0 Virtual Switching System Design GuideA-10OL-19829-01

Appendix AVSS-Enabled Campus Best Practice Configuration Exampleip address 10.122.0.26 255.255.255.254ip flow ingressip pim sparse-modeip summary-address eigrp 100 10.120.0.0 255.255.0.0 5logging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 out!interface TenGigabitEthernet1/2/2description 10 GigE to Core 2no switchportdampeningip address 10.122.0.23 255.255.255.254ip flow ingressip pim sparse-modeip summary-address eigrp 100 10.120.0.0 255.255.0.0 5logging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outinterface TenGigabitEthernet2/2/1description to Core 1no switchportdampeningip address 10.122.0.32 255.255.255.254ip flow ingressip pim sparse-modeip summary-address eigrp 100 10.120.0.0 255.255.0.0 5logging event link-statusload-interval 30mls qos trust dscphold-queue 2000 inhold-queue 2000 out!interface TenGigabitEthernet2/2/2description 10 GigE to Core 2no switchportdampeningip address 10.122.0.20 255.255.255.254ip flow ingressip pim sparse-modeip summary-address eigrp 100 10.120.0.0 255.255.0.0 5logging event link-statusload-interval 30mls qos trust dscphold-queue 2000 inhold-queue 2000 outCore 1 Standalone Router (No VSS)router eigrp 100passive-interface defaultno passive-interface TenGigabitEthernet4/1no passive-interface TenGigabitEthernet4/3network 10.0.0.0no auto-summaryCampus 3.0 Virtual Switching System Design GuideOL-19829-01A-11

Appendix AVSS-Enabled Campus Best Practice Configuration Exampleeigrp log-neighbor-warningseigrp log-neighbor-changeseigrp event-log-size 3000interface TenGigabitEthernet4/1description To VSS Ten1/2/1dampeningip address 10.122.0.27 255.255.255.254ip flow ingressip pim sparse-modelogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outinterface TenGigabitEthernet4/3description To VSS Ten2/2/1dampeningip address 10.122.0.33 255.255.255.254ip flow ingressip pim sparse-modelogging event link-statuslogging event bundle-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outCore 2 Standalone Router (No VSS)router eigrp 100passive-interface defaultno passive-interface TenGigabitEthernet4/1no passive-interface TenGigabitEthernet4/3network 10.0.0.0no auto-summaryeigrp log-neighbor-warningseigrp log-neighbor-changeseigrp event-log-size 3000interface TenGigabitEthernet4/1description To VSS Ten 1/2/2dampeningip address 10.122.0.22 255.255.255.254ip flow ingressip pim sparse-modelogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outinterface TenGigabitEthernet4/3description To VSS Ten 2/2/2dampeningip address 10.122.0.21 255.255.255.254ip flow ingressip pim sparse-modeCampus 3.0 Virtual Switching System Design GuideA-12OL-19829-01

Appendix AVSS-Enabled Campus Best Practice Configuration Examplelogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outOSPF MECVSSrouter ospf 100router-id 10.122.0.235log-adjacency-changes detailauto-cost reference-bandwidth 20000 ! Optionalnsf ! Enable NSF Capabilityarea 120 stub no-summaryarea 120 range 10.120.0.0 255.255.0.0 cost 10area 120 range 10.125.0.0 255.255.0.0 cost 10passive-interface defaultno passive-interface Port-channel200no passive-interface Port-channel201network 10.120.0.0 0.0.255.255 area 120network 10.122.0.0 0.0.255.255 area 0network 10.125.0.0 0.0.255.255 area 120interface Port-channel200description 20 Gig MEC to VSS (cr2-6500-1 4/1-4/3)no switchportdampeningip address 10.122.0.26 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 out!interface Port-channel201description 20 Gig to VSS (cr2-6500-1 4/1-4/3)no switchportdampeningip address 10.122.0.21 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outCampus 3.0 Virtual Switching System Design GuideOL-19829-01A-13

Appendix AVSS-Enabled Campus Best Practice Configuration ExampleCore 1 Standalone Router No VSS)router ospf 100router-id 10.254.254.7log-adjacency-changes detail ! Helps in NSF Restart Activitiesauto-cost reference-bandwidth 20000 ! Optionalpassive-interface defaultno passive-interface Port-channel1no passive-interface Port-channel20network 10.122.0.0 0.0.255.255 area 0interface Port-channel20description 20 Gig MEC to VSS 1/2/1 2/2/1dampeningip address 10.122.0.27 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outCore 2 Standalone Router (No VSS)router ospf 100router-id 10.254.254.7log-adjacency-changes detailauto-cost reference-bandwidth 20000 !passive-interface defaultno passive-interface Port-channel1no passive-interface Port-channel20network 10.122.0.0 0.0.255.255 area 0Optionalinterface Port-channel21description 20 Gig to VSS 1/2/2-2/2/2dampeningip address 10.122.0.20 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outOSPF ECMPVSSrouter ospf 100router-id 10.122.0.235log-adjacency-changes detailauto-cost reference-bandwidth 20000 !nsf ! Enable NSF Capabilityarea 120 stub no-summaryOptionalCampus 3.0 Virtual Switching System Design GuideA-14OL-19829-01

Appendix AVSS-Enabled Campus Best Practice Configuration Examplearea 120 range 10.120.0.0 255.255.0.0 cost 10area 120 range 10.125.0.0 255.255.0.0 cost 10passive-interface defaultno passive-interface TenGigabitEthernet1/2/1no passive-interface TenGigabitEthernet1/2/2no passive-interface TenGigabitEthernet2/2/1no passive-interface TenGigabitEthernet2/2/2network 10.120.0.0 0.0.255.255 area 120network 10.122.0.0 0.0.255.255 area 0network 10.125.0.0 0.0.255.255 area 120interface TenGigabitEthernet1/2/1description 10 GigE to Core 1no switchportdampeningip address 10.122.0.26 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 out!interface TenGigabitEthernet1/2/2description 10 GigE to Core 2no switchportdampeningip address 10.122.0.23 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 out!interface TenGigabitEthernet2/2/1description to Core 1no switchportdampeningip address 10.122.0.32 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30mls qos trust dscphold-queue 2000 inhold-queue 2000 out!interface TenGigabitEthernet2/2/2description 10 GigE to Core 2no switchportdampeningip address 10.122.0.20 255.255.255.254ip flow ingressCampus 3.0 Virtual Switching System Design GuideOL-19829-01A-15

Appendix AVSS-Enabled Campus Best Practice Configuration Exampleip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30mls qos trust dscphold-queue 2000 inhold-queue 2000 outCore 1 Standalone Router (No VSS)router ospf 100router-id 10.254.254.7log-adjacency-changes detailauto-cost reference-bandwidth 20000 ! Optionalpassive-interface defaultno passive-interface GigabitEthernet2/5no passive-interface TenGigabitEthernet4/1no passive-interface TenGigabitEthernet4/3no passive-interface Port-channel1network 10.122.0.0 0.0.255.255 area 0interface TenGigabitEthernet4/1description To VSS Ten1/2/1dampeningip address 10.122.0.27 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 out!!interface TenGigabitEthernet4/3description To VSS Ten2/2/1dampeningip address 10.122.0.33 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outCore 2 Standalone Router (No VSS)router ospf 100router-id 10.254.254.7log-adjacency-changes detailauto-cost reference-bandwidth 20000 ! Optionalpassive-interface defaultno passive-interface GigabitEthernet2/5no passive-interface TenGigabitEthernet4/1no passive-interface TenGigabitEthernet4/3no passive-interface Port-channel1network 10.122.0.0 0.0.255.255 area 0Campus 3.0 Virtual Switching System Design GuideA-16OL-19829-01

Appendix AVSS-Enabled Campus Best Practice Configuration Exampleinterface TenGigabitEthernet4/1description To VSS Ten 1/2/2dampeningip address 10.122.0.22 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 out!!interface TenGigabitEthernet4/3description To VSS Ten 2/2/2dampeningip address 10.122.0.21 255.255.255.254ip flow ingressip pim sparse-modeip ospf network point-to-pointlogging event link-statusload-interval 30carrier-delay msec 0mls qos trust dscphold-queue 2000 inhold-queue 2000 outCampus 3.0 Virtual Switching System Design GuideOL-19829-01A-17

Appendix AVSS-Enabled Campus Best Practice Configuration ExampleCampus 3.0 Virtual Switching System Design GuideA-18OL-19829-01

configuration contains specific CLI which is a required as part of best practice configuration and corresponding explanation. VSS and L2 Domain- Includes above base configuration as well as L2 domain configuration † Access-layer- Sample L2 domain configuration † L3 Domain - Includes global L3 configuration for VSS and core routers. Then .