Re: [j-nsp] QFX 5100 Q-in_Q + mac rewrite in the same switch or VCF

2017-03-21 Thread Zach Bare
Alain,

Through my own research on a similar issue, I have found that layer2
protocol packets (in your case PVST+) don't get encapsulated in the same
way that standard packets within a vlan get encapsulated when dealing with
Q-in-Q.

Take a look at this:
https://www.juniper.net/techpubs/en_US/junos12.3/topics/task/configuration/l2pt-qfx-series-cli.html

You'll want to make sure you have 'layer2-protocol-tunneling' enabled for
the outer vlan along the circuit path.

I also found this documentation (although for EX series) as helpful in
understanding what is going on:
https://www.juniper.net/techpubs/en_US/junos/topics/concept/l2pt-ex-series.html

Hope this helps in some way.



[image: photo]
*Zach Bare*
Network Engineer, KINBER
717-963-7490
<717-963-7490?utm_source=WiseStamp_medium=email_term=_content=_campaign=signature>
| 717-977-0769
<717-977-0769?utm_source=WiseStamp_medium=email_term=_content=_campaign=signature>
| zb...@kinber.org | 5775 Allentown Blvd., Suite 101, Harrisburg, PA 17112




Register today for KINBERCON 2017 in Pittsburgh April 3-5, 2017!


On Fri, Mar 17, 2017 at 5:05 PM, Alain Hebert  wrote:

> Well, with 14.1X53.D40.8
>
> For some reason it strip VLANs from PVST+ frames.
>
> We captured the output from a Cisco ME3400 which has the VLAN,
>
> And when we capture on the other end of the QFX everything is right
> BUT for PVST+ packets which lose their encap.
>
> Curious bug...
>
> --
> -
> Alain Hebertaheb...@pubnix.net
> PubNIX Inc.
> 50 boul. St-Charles
> P.O. Box 26770 Beaconsfield, Quebec H9W 6G7
> Tel: 514-990-5911  http://www.pubnix.netFax: 514-990-9443
>
> ___
> juniper-nsp mailing list juniper-nsp@puck.nether.net
> https://puck.nether.net/mailman/listinfo/juniper-nsp
>
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp


Re: [j-nsp] It is about cisco command

2017-03-21 Thread Saku Ytti
On 21 March 2017 at 23:13, Brijesh Patel  wrote:
> In juniper test command will test before apply to neighbour
>
> Where in cisco , once you implement command go into nvram so bit not give
> answer.

You don't need to apply the route-map to any neighbour, but it does
need to exist. It's not perfect, but it might be  survivable.

-- 
  ++ytti
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp


Re: [j-nsp] It is about cisco command

2017-03-21 Thread Christian Scholz
There is no such way to "test before apply " in Cisco. Thats one reason to 
choose Juniper ;)
You could Create a Lab-Environment to test such things or test this virtually 
with Cisco VIRL. Besides that there is no way because as you wrote - Cisco will 
take everything and fires it live...
RegardsChris


 Ursprüngliche Nachricht Von: Brijesh Patel 
 Datum: 21.03.17  22:13  (GMT+01:00) An: Saku Ytti 
 Cc: juniper-nsp@puck.nether.net Betreff: Re: [j-nsp] It is about 
cisco command 
Hi Saku,

Thanks for your response.

In juniper* test *command will test before apply to neighbour

Where in cisco , once you implement command go into nvram so bit not give
answer.

Regards,

Brijesh Patel


On Tue, Mar 21, 2017 at 8:00 PM, Saku Ytti  wrote:

> Hey,
>
> > *Juniper>test policy CUSTOMER-BGP-ABC-Consultancy-V4 192.168.x.y/24 *
> >
> > *Is there any command in cisco to test roue-map and prefix-list. *
>
> Pretty sure best you get is 'show ip bgp route-map XYZ'
>
> --
>   ++ytti
>
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp

Re: [j-nsp] It is about cisco command

2017-03-21 Thread Brijesh Patel
Hi Saku,

Thanks for your response.

In juniper* test *command will test before apply to neighbour

Where in cisco , once you implement command go into nvram so bit not give
answer.

Regards,

Brijesh Patel


On Tue, Mar 21, 2017 at 8:00 PM, Saku Ytti  wrote:

> Hey,
>
> > *Juniper>test policy CUSTOMER-BGP-ABC-Consultancy-V4 192.168.x.y/24 *
> >
> > *Is there any command in cisco to test roue-map and prefix-list. *
>
> Pretty sure best you get is 'show ip bgp route-map XYZ'
>
> --
>   ++ytti
>
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp


Re: [j-nsp] It is about cisco command

2017-03-21 Thread Saku Ytti
Hey,

> *Juniper>test policy CUSTOMER-BGP-ABC-Consultancy-V4 192.168.x.y/24 *
>
> *Is there any command in cisco to test roue-map and prefix-list. *

Pretty sure best you get is 'show ip bgp route-map XYZ'

-- 
  ++ytti
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp


[j-nsp] It is about cisco command

2017-03-21 Thread Brijesh Patel
Hi All,

It is about cisco command

In Juniper there is command to test policy before apply it to neightbor :

*Juniper>test policy CUSTOMER-BGP-ABC-Consultancy-V4 192.168.x.y/24 *

*Is there any command in cisco to test roue-map and prefix-list. *

Sorry about weird question but might anyone has idea as cisco will take
straight running configuration so.

Many Thanks,

Brijesh Patel
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp


Re: [j-nsp] ACX control plane filter

2017-03-21 Thread Chuck Anderson
On Mon, Mar 20, 2017 at 10:19:35AM +0100, Johan Borch wrote:
> Do anyone have a control plane filter for ACX they can share? :) they don't
> seem to support using standard loopback filters.

See this thread:

https://puck.nether.net/pipermail/juniper-nsp/2016-April/032422.html

and specifically this message which provides a good solution:

https://puck.nether.net/pipermail/juniper-nsp/2016-April/032436.html
___
juniper-nsp mailing list juniper-nsp@puck.nether.net
https://puck.nether.net/mailman/listinfo/juniper-nsp