Cisco N7K-C7010 Configuration Guide - Page 280

Information About Layer 2 Protocol Tunneling

Page 280 highlights

Information About Layer 2 Protocol Tunneling Chapter 9 Configuring Q-in-Q VLAN Tunnels Send document comments to [email protected] that are received from the tunnel port. The packet carries only the VLAN 30 tag through the service-provider network to the trunk port of the egress-edge switch (Switch C) and is misdirected through the egress switch tunnel port to Customer Y. Figure 9-3 Native VLAN Hazard Tag not added for VLAN 40 Service provider Tag removed Switch D Customer X VLANs 30-40 Native VLAN 40 Tunnel port Switch B VLANs 5-50 Switch C VLAN 40 Packet tagged for VLAN 30 Q Switch A Customer X 802.1Q Tunnel port Access VLAN 40 trunk port VLANs 30-40 Native VLAN 40 Native VLAN 40 Q Tunnel port Access VLAN 30 Trunk Switch E Customer Y Asymmetric link Correct path for traffic Incorrect path for traffic due to misconfiguration of native VLAN by sending port on Switch B 101820 Q = 802.1Q trunk ports These are a couple ways to solve the native VLAN problem: • Configure the edge switch so that all packets going out an 802.1Q trunk, including the native VLAN, are tagged by using the vlan dot1q tag native command. If the switch is configured to tag native VLAN packets on all 802.1Q trunks, the switch accepts untagged packets but sends only tagged packets. Note The vlan dot1q tag native command is a global command that affects the tagging behavior on all trunk ports. • Ensure that the native VLAN ID on the edge switch trunk port is not within the customer VLAN range. For example, if the trunk port carries traffic of VLANs 100 to 200, assign the native VLAN a number outside that range. Information About Layer 2 Protocol Tunneling Customers at different sites connected across a service-provider network need to run various Layer 2 protocols to scale their topology to include all remote sites, as well as the local sites. The spanning Tree Protocol (STP) must run properly, and every VLAN should build a proper spanning tree that includes the Cisco Nexus 7000 Series NX-OS Interfaces Configuration Guide, Release 5.x 9-4 OL-23435-03

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308

Send document comments to [email protected]
9-4
Cisco Nexus 7000 Series NX-OS Interfaces Configuration Guide, Release 5.x
OL-23435-03
Chapter 9
Configuring Q-in-Q VLAN Tunnels
Information About Layer 2 Protocol Tunneling
that are received from the tunnel port. The packet carries only the VLAN 30 tag through the
service-provider network to the trunk port of the egress-edge switch (Switch C) and is misdirected
through the egress switch tunnel port to Customer Y.
Figure 9-3
Native VLAN Hazard
These are a couple ways to solve the native VLAN problem:
Configure the edge switch so that all packets going out an 802.1Q trunk, including the native VLAN,
are tagged by using the
vlan dot1q tag native
command. If the switch is configured to tag native
VLAN packets on all 802.1Q trunks, the switch accepts untagged packets but sends only tagged
packets.
Note
The
vlan dot1q tag native
command is a global command that affects the tagging behavior
on all trunk ports.
Ensure that the native VLAN ID on the edge switch trunk port is not within the customer VLAN
range. For example, if the trunk port carries traffic of VLANs 100 to 200, assign the native VLAN
a number outside that range.
Information About Layer 2 Protocol Tunneling
Customers at different sites connected across a service-provider network need to run various Layer 2
protocols to scale their topology to include all remote sites, as well as the local sites. The spanning Tree
Protocol (STP) must run properly, and every VLAN should build a proper spanning tree that includes the
802.1Q
trunk port
VLANs 30-40
Native VLAN 40
Tunnel port
Access VLAN 30
Tunnel port
Service
provider
Tag not added
for VLAN 40
Tag
removed
VLANs 5-50
Switch D
Customer X
VLANs 30-40
Native VLAN 40
Switch B
Switch C
Q
Q
Switch E
Customer Y
Switch A
Customer X
Native
VLAN 40
101820
Trunk
Asymmetric link
Correct path for traffic
Incorrect path for traffic due to
misconfiguration of native VLAN
by sending port on Switch B
Q = 802.1Q trunk ports
Tunnel port
Access VLAN 40
Packet tagged
for VLAN 30
VLAN 40