Professional Documents
Culture Documents
Table of contents
Section 1 HP A5800 IRF and Networking Config ........................................................................................................................ 4 Objectives .................................................................................................................................................................................................. 4 Task 1: Name the system and enable Telnet access ................................................................................................................ 4 Task 2: Configure Switch 1 to be IRF Master .............................................................................................................................. 4 Task 3: Configure Switch 2 to be IRF Slave .................................................................................................................................. 5 Task 4: Activate IRF-Ports on switch 2 and verify IRF functionality ................................................................................... 6 Task 5: Complete configuration of the IRF system ................................................................................................................... 6 Section 2 Create Virtual Connect Domain ....................................................................................................................................... 12 Objectives ................................................................................................................................................................................................ 12 Task 1: Create Virtual Connect Domain....................................................................................................................................... 12 Task 2: Create Active/Active Shared Uplink Sets ..................................................................................................................... 15 Task 4: Create Server Profile ............................................................................................................................................................. 16 Section 3 Failure Scenarios .................................................................................................................................................................... 18 Objectives ................................................................................................................................................................................................ 18 Task 1: Verify NCU Team and Start Streaming Sample Video ........................................................................................... 18 Task 2: Shutdown IRF Member Ports ........................................................................................................................................... 19 Task 3: Shutdown All IRF Port Members ..................................................................................................................................... 20 Appendix A Student POD Information .......................................................................................................................................... 22 For more information about HP Certifications .............................................................................................................................. 26
A5820 IRF
Split LACP
IRF-Port-1: 1/0/22, 2/0/23 IRF-Port-2: 1/0/23, 2/0/22
A5820 IRF
Port 1/0/1 = FF-A, BAG 2 Port 1/0/2 = FF-B, BAG 3 Port enc0:1:X3 = IRF-1, LACP Port enc0:1:X4 = IRF-2, LACP OA
Port 2/0/1 = FF-A, BAG 2 Port 2/0/2 = FF-B, BAG 3 Port enc0:2:X3 = IRF-1, LACP Port enc0:2:X4 = IRF-2, LACP
Figure 1-1 provides a reference for what you will be building in this lab activity. Note that you will be replacing any reference to X with your POD-ID. For example the name of the IRF system for POD-1 will be Switch-1. Ports 1/0/24 on both switches are connected to the core, which are disabled. During the lab, your ports will be enabled once you have completed the IRF portion of the lab. Each POD will have a workstation connected to a back-end network to be used for IP connectivity to the Onboard Administrator on the c7000 enclosure as well as direct console access to the switches. Appendix A contains the list of all relevant IP Addresses per Student POD.
c7000 Enclosure
A5820 IRF
OSPF Backbone
Split LACP
A5820 IRF
Local VLANs
Local VLANs VLAN: X0 A5800 IRF IP: 192.168.X0.1 VLAN: X1 A5800 IRF IP: 192.168.X1.1 VLAN: X2 A5800 IRF IP: 192.168.X2.1 VLAN: X3
c7000 Enclosure
Server VLAN
Server Profile Connection 1: VLANX0-A Connection 2: VLANX0-B Server IP: 192.168.X0.50 Gateway: 192.168.X0.1
Figure 1-2 provides a reference for the IP and VLAN configuration for this lab. Again you will be replacing any reference to X with your POD-ID. For example the server IP address for POD-1 will be 19.168.10.50 with a default gateway of 192.168.10.1. You can also use the table below as a reference for VLAN and IP configuration.
VLAN ID 5 X0 X1 X2 X3
2.
Setup a local user account to be used for telnet access. The username will be admin with a plain-text password of hpdiscover. Youll also need to permit this user access to the Telnet interface. [Switch-5]local-user admin [Switch-5-luser-admin]service-type telnet [Switch-5-luser-admin]password simple password [Switch-5-luser-admin]authorization-attribute level 3 [Switch-5-luser-admin]quit
3.
Now that a local-user exists the remote console ports need to be set to use local authentication. [Switch-5]user-interface vty 0 4 [Switch-5-ui-vty0-4]authentication-mode scheme
4.
Finally the Telnet server needs to be enabled. Note that on the A5800 this is done by default but on some products like the A-Series MSR routers it is disabled by default. [Switch-5]telnet server enable [Switch-5]save
[Switch-5-int-ten1/0/22]undo shutdown [Switch-5]int ten 1/0/23 [Switch-5-int-ten1/0/23]undo shutdown [Switch-5]quit [Switch-5]irf-port-configuration active <Switch-5>display irf <Switch-5>display irf configuration <Switch-5>display irf topology <Switch-5>save
[Switch]irf member 1 renumber 2 [Switch]quit <Switch>display irf configuration Confirm that new member ID will be 2 <Switch>reboot
3.
[Switch]int ten 2/0/22 [Switch-int-ten2/0/22]undo shutdown [Switch-int-ten2/0/22]int ten 2/0/23 [Switch-int-ten2/0/23]undo shutdown [Switch-int-ten2/0/23]quit [Switch]save [Switch]irf-port-configuration active At this point member 2 will reboot and accept its role as a member of the IRF.
2.
1. 2.
Establish a console connection to either switch in the IRF system. Configure VLAN interfaces and OSPF.
In the examples below certain values will require your POD-ID to complete. For VLANs you will see the example reference VLAN X0 where the X represents your POD-ID. If you have POD-ID 7 the value in your config would then be VLAN 70.
This same approach is taken for IP addresses. In the examples below IP addresses will be referenced similarly. The third octet will be represented as 172.16.5.X0 where your POD-ID will again be X. So for this example a POD-ID of 10 would result in 172.16.5.100 for this value. <Switch_A1>system-view [Switch]vlan 5 [Switch-vlan5]vlan X0 [Switch-vlanX0]vlan X1 [Switch-vlanX1]vlan X2 [Switch-vlanX2]int vlan 5 [Switch-int-vlan5]ip address 172.16.5.X0 24 Try issuing the command display this after setting the IP address of a VLAN interface. What information does this command provide?
[Switch-int-vlan5]int vlan X0 [Switch-int-vlanX0]ip address 192.168.X0.1 24 [Switch-int-vlanX0]int vlan X1 [Switch-int-vlanX1]ip address 192.168.X1.1 24 [Switch-int-vlanX1]int vlan X2 [Switch-int-vlanX2]ip address 192.168.X2.1 24 [Switch-int-vlanX2]quit [Switch]ospf 1 [Switch-ospf1]area 0 [Switch-ospf1-area0]network 192.168.0.0 0.0.255.255 [Switch-ospf1-area0]network 172.16.0.0 0.0.255.255 [Switch-ospf1-area0]quit [Switch-ospf1]quit To check your work use the display ip interface brief command to list all configured IP interfaces on this system.
Note that this port can now be configured from Member Switch 1. [Switch-int-ten2/0/24]port link-aggregation group 1 [Switch-int-ten2/0/24]quit [Switch]int bridge-aggregation 1 [Switch-int-bragg1]port link-type trunk [Switch-int-bragg1]port trunk permit vlan 5 Use the display this command to see the link-type and previously configured features for this BAG. Move on to BAGs 2 & 3. This is a useful command for checking your work as you move through a task. [Switch-int-bragg1]quit [Switch]int bridge-aggregation 2 [Switch-int-bragg2]link-aggregation mode dynamic [Switch-int-bragg2]description BAG to enc0:1:X3 enc0:1:X4 [Switch-int-bragg2]quit [Switch]int te1/0/1 [Switch-int-ten1/0/1]port link-aggregation group 2 [Switch-int-ten1/0/1]int te2/0/1 [Switch-int-ten2/0/1]port link-aggregation group 2 [Switch-int-ten2/0/1]quit [Switch]int bridge-aggregation 2 [Switch-int-bragg2]port link-type trunk [Switch-int-bragg2]port trunk permit vlan X0 to X2 [Switch-int-bragg2]quit Setting the aggregation groups link-type to trunk tells the switch to apply an 802.1q tag for each packet that egresses this interface. The vlan X to X argument allows for a range of VLAN-IDs to be permitted on this trunked interface. Note that the default VLAN is VLAN-1 and will also be designated as the PVID (untagged VLAN) for these trunked ports.
[Switch]int bridge-aggregation 3 [Switch-int-bragg3]link-aggregation mode dynamic [Switch-int-bragg3]description BAG to enc0:2:X3 enc0:2:X4 [Switch-int-bragg3]quit [Switch]int te1/0/2 [Switch-int-ten1/0/2]port link-aggregation group 3 [Switch-int-ten1/0/2]int te2/0/2 [Switch-int-ten2/0/2]port link-aggregation group 3 [Switch-int-ten2/0/2]quit [Switch]int bridge-aggregation 3 [Switch-int-bragg2]port link-type trunk [Switch-int-bragg2]port trunk permit vlan X0 to X2 [Switch-int-bragg2]quit
You can use the display interface and display current-configuration interface commands to check the VLAN memberships configured for a port. Use display interface bridge-aggregation 3 to check the VLAN membership for BAG 3.
Now use the display mad and display mad verbose commands to view the status of MAD. This feature allows multiple members of an IRF system to detect a state where both believe that they are master. Using BFD allows the members to establish a UDP session and use that connection to monitor health. In the event that multi-masters are detected the lower priority members will shut down all interfaces to prevent network issues that would occur in this state. You should get a report like this: Current MAD status: Detect Excluded ports(configurable): Excluded ports(cannot be configured): Ten-GigabitEthernet1/0/22 Ten-GigabitEthernet1/0/23 Ten-GigabitEthernet2/0/22 Ten-GigabitEthernet2/0/23 MAD LACP disabled. MAD BFD enabled interface: Vlan-interface4094 mad ip address 10.255.255.1 255.255.255.0 member 1 mad ip address 10.255.255.2 255.255.255.0 member 2
1.
Enable STP globally (make sure that you are at the base system level and not at the interface level of the config) [Switch]stp enable [Switch]save
2.
Enable stp edged-port enable on the ports connecting to Virtual Connect [Switch]int ten1/0/1 [Switch]stp edged-port enable [Switch]int ten1/0/2 [Switch]stp edged-port enable [Switch]int ten2/0/1 [Switch]stp edged-port enable [Switch]int ten2/0/2 [Switch]stp edged-port enable [Switch]save
The command stp edged-port enable is exactly the same as the Cisco spanning-tree portfast command. Your uplinks to the core have been disabled. When you are ready to proceed have the instructor enable the core links to BAG-3. You should see notifications on the console that the interfaces are up and updates from OSPF, STP, and LACP. Use the following commands to verify operation. Youll step your way from verifying basic connectivity display current-configuration (CTRL-G) display stp display interface [brief] display ip route (CTRL-L) display ospf [brief | peer | routing] display lldp neighbor [brief, list] display port trunk display link-aggregation [summary | verbose] display vlan [all | VLAN-ID] ping 3. 4. Verify physical connectivity to the core. You can use LLDP and display interface commands. Once physical connectivity has been verified you need to check the operation of LACP.
What is the status of the three BAGs created so far (note that 1&2 have not been configured on the server side yet)
What are the 5 flags listed for each of the BAGs whats different between BAG1 and BAGs 2&3?
5.
Check STP operation and see what links are blocking and forwarding.
6.
Ping the core router 172.16.5.254 (if another POD is to this same point in the lab you should be able to ping their IRF system IP interfaces as well). This concludes this section of the lab.
1. Execute connect interconnect 1 2. Provide the Administrator credentials 3. Import local enclosure by using import enclosure command
->import enclosure Username=admin Password=hpdiscover Importing enclosure, please wait... SUCCESS: Enclosure imported ************************************************************** IMPORT ENCLOSURE SUMMARY ************************************************************** Enclosure Name Rack Name IP Address Status : POD-Enclosure : Discover-Rack1 : 10 : OK
************************************************************** 2 VC-ENET Modules and 0 VC-FC Modules: ************************************************************** ======================================================= Bay 1 2 Product Name HP VC FlexFabric 10Gb/24-Port Module HP VC FlexFabric 10Gb/24-Port Module Power On On UID Off Off =======================================================
************************************************************** 1 Physical Servers: ************************************************************** ====================================== Bay 1 2 Product Name ProLiant BL460c G7 ProLiant BL460c G7 Status Off Off UID Off Off ======================================
************************************************************** 16 Device Bays: ************************************************************** ================================= Bay 1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 Device ProLiant BL460c G7 ProLiant BL460c G7 <Empty> <Empty> <Empty> <Empty> <Empty> <Empty> <Empty> <Empty> <Empty> <Empty> <Empty> <Empty> <Empty> <Empty> Status OK OK OK OK OK OK OK OK OK OK OK OK OK OK OK OK =================================
************************************************************** Stacking Links: ************************************************************** Connection Status Redundancy Status Link 1 Speed 10Gb : OK : OK Connected To enc0:2:X7
10Gb
enc0:1:X8
enc0:2:X8
4. Execute show interconnect *. Verify the output. Examine Firmware version, Product Type, and
Status. ->show interconnect * ID Enclosure Bay Type Product Name Role Status Comm Status OA Status Power State MAC Address Node WWN Firmware Version Manufacturer Part Number Spare Part Number Rack Name Serial Number UID ID Enclosure Bay Type Product Name Role Status Comm Status OA Status Power State MAC Address Node WWN Firmware Version Manufacturer Part Number Spare Part Number Rack Name : enc0:1 : STC01-C7K01 : 1 : VC-ENET+FC : HP VC FlexFabric 10Gb/24-Port Module : Primary : OK : OK : OK : On : 00:24:81:f7:17:85 : 10:00:00:11:0a:02:0a:0e : 3.18 2011-04-01T22:57:39Z : HP : 571956-B21 : 572213-001 : DC-row6-rack14 : TW203800F8 : Off : enc0:2 : STC01-C7K01 : 2 : VC-ENET+FC : HP VC FlexFabric 10Gb/24-Port Module : Standby : OK : OK : OK : On : 00:24:81:f7:17:8b : 10:00:00:11:0a:02:0a:0f : 3.18 2011-04-01T22:57:39Z : HP : 571956-B21 : 572213-001 : DC-row6-rack14
--------------------------------------------------------
: TW203800F9 : Off
1. Create UplinkSet_SideA
-> add uplinkset UplinkSet_SideA -> add uplinkport enc0:1:X3 UplinkSet=UplinkSet_SideA -> add uplinkport enc0:1:X4 UplinkSet=UplinkSet_SideA
3. Verify both uplink ports are Linked/Active by using the show uplinkport
->show uplinkport enc0:1:X3 ID : enc0:1:X3 Enclosure : POD-Enclosure Status : Linked (Active) (10Gb) Type : SFP-DAC Speed : Auto Used By : UplinkSet_SideA Connected From : -- -Connected To : 3c:e5:a6:35:a3:e4 (Ten-GigabitEthernet1/0/1) ->show uplinkport enc0:1:X4 ID : enc0:1:X4 Enclosure : POD-Enclosure Status : Linked (Active) (10Gb) Type : SFP-DAC Speed : Auto Used By : UplinkSet_SideA Connected From : -- -Connected To : 3c:e5:a6:35:a3:e4 (Ten-GigabitEthernet2/0/1)
4. Create UplinkSet_SideB
-> add uplinkset UplinkSet_SideB -> add uplinkport enc0:2:X3 UplinkSet=UplinkSet_SideB -> add uplinkport enc0:2:X4 UplinkSet=UplinkSet_SideB
6. Verify both uplink ports are Linked/Active by using the show uplinkport
->show uplinkport enc0:2:X3 ID : enc0:2:X3 Enclosure : POD-Enclosure Status : Linked (Active) (10Gb) Type : SFP-DAC Speed : Auto Used By : UplinkSet_SideB Connected From : -- -Connected To : 3c:e5:a6:35:a3:e4 (Ten-GigabitEthernet1/0/2) ->show uplinkport enc0:2:X4 ID : enc0:2:X4 Enclosure : POD-Enclosure Status : Linked (Active) (10Gb) Type : SFP-DAC Speed : Auto Used By : UplinkSet_SideB Connected From : -- -Connected To : 3c:e5:a6:35:a3:e4 (Ten-GigabitEthernet2/0/2)
2. Add vlan_N0A
->add enet-connection Bay1 Network=vlan_N0A SUCCESS: Connection added to server profile : Bay1
3. Add vlan_N0B
->add enet-connection Bay1 Network=vlan_N0B SUCCESS: Connection added to server profile : Bay1
Ethernet Network Connections ============================================================== Port Network Name Status PXE MAC Address Allocated Speed ============================================================== 1 2 vlan_N0A vlan_N0B OK OK UseBIOS UseBIOS 00-17-A4-77-24-00 00-17-A4-77-24-02 10Gb 10Gb
b. Login with admin/hpdiscover 2. Verify Local Area Connection and Local Area Connection 2 is both in an NFT team. a. Open the NCU
b. Verify that the HP Network Team #1 Team has both Local Area Connection and Local Area Connection #2 as members.
3.
4.
On your desktop, open the HOL2101-PODid file begin streaming your video. This should open Windows Media Player.
Is the IRF Cluster still up? How many IRF Port Members are Active?
Is the IRF Cluster still up? How many IRF Port Members are Active?
2. Display the Bridge-Aggregate status. Examine the status of Bridge-Aggregate 2. Examine the state of NIC1 within NCU.
[Switch]display link-agg verbose What happened to Bridge-Aggregate 2?
3. Re-enable Bridge-Aggregate 2. Wait until the NIC within the OS is Linked before continuing to Step 4.
[Switch]int bridge2 [Switch-int-bragg2]undo shutdown
4. Shutdown Bridge-Aggregate 3
[Switch]int bridge3 [Switch-int-bragg3]shutdown
Notice what happens to the second NIC and the video stream. 5. Re-enable Bridge-Aggregate 3
[Switch]int bridge3 [Switch-int-bragg3]undo shutdown
POD-2 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.20 10.1.100.21 10.1.100.22 10.1.100.23 10.1.100.24 192.168.20.50 172.16.5.20 admin/hpdiscover Administrator/ZHDK02C3 Administrator/FGY74GPS admin/hpdiscover admin/hpdiscover VID 20 VID 5
POD-3 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.30 10.1.100.31 10.1.100.32 10.1.100.33 10.1.100.34 192.168.30.50 172.16.5.30 admin/hpdiscover Administrator/BWZ6H8JP Administrator/BNQBZZSG admin/hpdiscover admin/hpdiscover VID 30 VID 5
POD-4 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.40 10.1.100.41 10.1.100.42 10.1.100.43 10.1.100.44 192.168.40.50 172.16.5.40 admin/hpdiscover Administrator/WNBR8TH9 Administrator/WWKMT38H admin/hpdiscover admin/hpdiscover VID 40 VID 5
POD-5 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.50 10.1.100.51 10.1.100.52 10.1.100.53 10.1.100.54 192.168.50.50 172.16.5.50 admin/hpdiscover Administrator/BDFFFQ08 Administrator/DY0YQPYT admin/hpdiscover admin/hpdiscover VID 50 VID 5
POD-6 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.60 10.1.100.61 10.1.100.62 10.1.100.63 10.1.100.64 192.168.60.50 172.16.5.60 admin/hpdiscover Administrator/WP5NWKGS Administrator/WXDJFV7Z admin/hpdiscover admin/hpdiscover VID 60 VID 5
POD-7 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.70 10.1.100.71 10.1.100.72 10.1.100.73 10.1.100.74 192.168.70.50 172.16.5.70 admin/hpdiscover Administrator/M4SYH68Q Administrator/3T3Q2BT6 admin/hpdiscover admin/hpdiscover VID 70 VID 5
POD-8 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.80 10.1.100.81 10.1.100.82 10.1.100.83 10.1.100.84 192.168.80.50 172.16.5.80 admin/hpdiscover Administrator/KJCHMFCQ Administrator/0QM96397 admin/hpdiscover admin/hpdiscover VID 80 VID 5
POD-9 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.90 10.1.100.91 10.1.100.92 10.1.100.93 10.1.100.94 192.168.90.50 172.16.5.90 admin/hpdiscover Administrator/62S442VH Administrator/6J7C0HB4 admin/hpdiscover admin/hpdiscover VID 90 VID 5
POD-10 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.100 10.1.100.101 10.1.100.102 10.1.100.103 10.1.100.104 192.168.100.50 172.16.5.100 admin/hpdiscover Administrator/3BMH5W9K Administrator/ Z46Q8BD7 admin/hpdiscover admin/hpdiscover VID 100 VID 5
POD-11 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.110 10.1.100.111 10.1.100.112 10.1.100.113 10.1.100.114 192.168.110.50 172.16.5.110 admin/hpdiscover Administrator/K09HNYQR Administrator/BNQBZZSG admin/hpdiscover admin/hpdiscover VID 110 VID 5
POD-12 Onboard Administrator FlexFabric Bay 1 FlexFabric Bay 2 iLO Bay 1 iLO Bay 2 Windows Server OSPF Interface 10.1.100.120 10.1.100.121 10.1.100.122 10.1.100.123 10.1.100.124 192.168.120.50 172.16.5.120 admin/hpdiscover Administrator/4DG5Y2Q6 Administrator/MC2T2G0W admin/hpdiscover admin/hpdiscover VID 120 VID 5
ExpertONE: Networking
http://www.hp.com/certification/expert_one-networking.html
Copyright 20XX Hewlett-Packard Development Company, L.P. The information contained herein is subject to change without notice. The only warranties for HP products and services are set forth in the express warranty statements accompanying such products and services. Nothing herein should be construed as constituting an additional warranty. HP shall not be liable for technical or editorial errors or omissions contained herein. Trademark acknowledgments, if needed. 4AA2-xxxxENW, Created Month 20XX