Creating Device configuration snippets [CREATED] h1: initial,routing [CREATED] h2: initial,routing [CREATED] h3: initial,routing [CREATED] h4: initial,routing [CREATED] dut: initial,vlan,ospf,bgp,mpls,evpn [CREATED] s2: initial,vlan,ospf,bgp,mpls,evpn [CREATED] p: initial,ospf,mpls Checking Are lab devices ready to be configured? [INFO] Checking SSH server(s) on dut,s2 [SSH] SSH server on node s2 (device cisco8000v) is ready after 168.1 seconds [SSH] SSH server on node dut (device cisco8000v) is ready after 168.2 seconds Config Deploying device configurations [INFO] Executing initial configuration for node h1 (namespace clab- ml-17-h1) [INFO] Executing initial configuration for node h2 (namespace clab- ml-17-h2) [INFO] Executing initial configuration for node h3 (namespace clab- ml-17-h3) [INFO] Executing initial configuration for node h4 (namespace clab- ml-17-h4) [INFO] Executing initial configuration for node p [INFO] Executing routing configuration for node h2 (namespace clab- ml-17-h2) [INFO] Executing routing configuration for node h4 (namespace clab- ml-17-h4) [INFO] Executing routing configuration for node h1 (namespace clab- ml-17-h1) [INFO] Executing routing configuration for node h3 (namespace clab- ml-17-h3) [INFO] Executing ospf configuration for node p [INFO] Executing mpls configuration for node p [INFO] Starting Ansible playbook to deploy the rest of the configurations [WARNING]: Found variable using reserved name: hosts PLAY [Deploy initial device configuration] ************************************* TASK [Set variables that cannot be set with VARS] ****************************** ok: [dut] ok: [s2] TASK [Normalize config on bridge-like devices] ********************************* included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut, s2 TASK [Figure out whether to deploy the module normalize on current device] ***** ok: [dut] ok: [s2] TASK [Find configuration template for normalize] ******************************* ok: [dut] ok: [s2] TASK [fail] ******************************************************************** skipping: [dut] skipping: [s2] TASK [Find configuration deployment deploy_script for normalize] *************** ok: [dut] ok: [s2] TASK [Print deployed configuration when running in verbose mode] *************** skipping: [dut] skipping: [s2] TASK [Deploy normalize configuration] ****************************************** skipping: [dut] skipping: [s2] TASK [Deploy initial configuration] ******************************************** included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut, s2 TASK [Figure out whether to deploy the module initial on current device] ******* ok: [dut] ok: [s2] TASK [Find configuration template for initial] ********************************* ok: [dut] ok: [s2] TASK [fail] ******************************************************************** skipping: [dut] skipping: [s2] TASK [Find configuration deployment deploy_script for initial] ***************** ok: [dut] ok: [s2] TASK [Print deployed configuration when running in verbose mode] *************** ok: [dut] => { "msg": "initial configuration for dut\n=========================================\nhostname dut\n!\ndomain lookup disable\n!\nlldp\n no management enable\n!\ndomain ipv4 host h1 172.31.1.1\ndomain ipv4 host h2 172.31.1.2\ndomain ipv4 host h3 172.31.1.3\ndomain ipv4 host h4 172.31.1.4\ndomain ipv4 host s2 10.0.0.6\ndomain ipv4 host p 10.0.0.7\n!\ninterface Loopback0\n no shutdown\n ipv4 address 10.0.0.5 255.255.255.255\n!\ninterface FourHundredGigE0/0/0/0\n no shutdown\n description dut -> p\n mtu 1614\n ipv4 address 10.1.0.1 255.255.255.252\n!\ninterface FourHundredGigE0/0/0/1\n no shutdown\n description [Access VLAN red] dut -> h1\n!\ninterface FourHundredGigE0/0/0/2\n no shutdown\n description [Access VLAN blue] dut -> h3\n!\ninterface BVI1000\n no shutdown\n description VLAN red (1000) -> [h1,h2,s2]\n!\ninterface BVI1001\n no shutdown\n description VLAN blue (1001) -> [h3,h4,s2]\n!\n" } ok: [s2] => { "msg": "initial configuration for s2\n=========================================\nhostname s2\n!\ndomain lookup disable\n!\nlldp\n no management enable\n!\ndomain ipv4 host h1 172.31.1.1\ndomain ipv4 host h2 172.31.1.2\ndomain ipv4 host h3 172.31.1.3\ndomain ipv4 host h4 172.31.1.4\ndomain ipv4 host dut 10.0.0.5\ndomain ipv4 host p 10.0.0.7\n!\ninterface Loopback0\n no shutdown\n ipv4 address 10.0.0.6 255.255.255.255\n!\ninterface FourHundredGigE0/0/0/0\n no shutdown\n description s2 -> p\n mtu 1614\n ipv4 address 10.1.0.6 255.255.255.252\n!\ninterface FourHundredGigE0/0/0/1\n no shutdown\n description [Access VLAN red] s2 -> h2\n!\ninterface FourHundredGigE0/0/0/2\n no shutdown\n description [Access VLAN blue] s2 -> h4\n!\ninterface BVI1000\n no shutdown\n description VLAN red (1000) -> [h1,dut,h2]\n!\ninterface BVI1001\n no shutdown\n description VLAN blue (1001) -> [h3,dut,h4]\n!\n" } TASK [Deploy initial configuration] ******************************************** included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-config/iosxr.yml for dut, s2 TASK [iosxr_config: deploying initial from /work/netlab_cicd/node_files/dut/initial] *** [WARNING]: To ensure idempotency and correct diff the input configuration lines should be similar to how they appear if present in the running configuration on device including the indentation changed: [dut] changed: [s2] PLAY [Deploy module-specific configurations] *********************************** TASK [Set variables that cannot be set with VARS] ****************************** ok: [dut] ok: [s2] TASK [Deploy individual configuration modules] ********************************* included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut, s2 => (item=vlan) included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut, s2 => (item=routing) included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut, s2 => (item=ospf) included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut, s2 => (item=bgp) included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut, s2 => (item=evpn) included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut, s2 => (item=mpls) TASK [Figure out whether to deploy the module vlan on current device] ********** ok: [dut] ok: [s2] TASK [Find configuration template for vlan] ************************************ ok: [s2] ok: [dut] TASK [fail] ******************************************************************** skipping: [dut] skipping: [s2] TASK [Find configuration deployment deploy_script for vlan] ******************** ok: [dut] ok: [s2] TASK [Print deployed configuration when running in verbose mode] *************** ok: [dut] => { "msg": "vlan configuration for dut\n=========================================\ninterface FourHundredGigE0/0/0/1 l2transport\n!\ninterface FourHundredGigE0/0/0/2 l2transport\n!\nl2vpn\n bridge group netlab\n bridge-domain BD1000\n interface FourHundredGigE0/0/0/1\n!\n bridge-domain BD1001\n interface FourHundredGigE0/0/0/2\n!\n\n" } ok: [s2] => { "msg": "vlan configuration for s2\n=========================================\ninterface FourHundredGigE0/0/0/1 l2transport\n!\ninterface FourHundredGigE0/0/0/2 l2transport\n!\nl2vpn\n bridge group netlab\n bridge-domain BD1000\n interface FourHundredGigE0/0/0/1\n!\n bridge-domain BD1001\n interface FourHundredGigE0/0/0/2\n!\n\n" } TASK [Deploy vlan configuration] *********************************************** included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-config/iosxr.yml for dut, s2 TASK [iosxr_config: deploying vlan from /work/netlab_cicd/node_files/dut/vlan] *** changed: [s2] changed: [dut] TASK [Figure out whether to deploy the module routing on current device] ******* ok: [dut] ok: [s2] TASK [Find configuration template for routing] ********************************* skipping: [dut] skipping: [s2] TASK [fail] ******************************************************************** skipping: [dut] skipping: [s2] TASK [Find configuration deployment deploy_script for routing] ***************** skipping: [dut] skipping: [s2] TASK [Print deployed configuration when running in verbose mode] *************** skipping: [dut] skipping: [s2] TASK [Deploy routing configuration] ******************************************** skipping: [dut] skipping: [s2] TASK [Figure out whether to deploy the module ospf on current device] ********** ok: [dut] ok: [s2] TASK [Find configuration template for ospf] ************************************ ok: [dut] ok: [s2] TASK [fail] ******************************************************************** skipping: [dut] skipping: [s2] TASK [Find configuration deployment deploy_script for ospf] ******************** ok: [dut] ok: [s2] TASK [Print deployed configuration when running in verbose mode] *************** ok: [dut] => { "msg": "ospf configuration for dut\n=========================================\n!\nrouter ospf 1\n!\n! These throttle timers are probably too aggressive for a production network but\n! make labs run better ;)\n!\n timers throttle spf 10 20 100\n timers throttle lsa all 10 20 100\n router-id 10.0.0.5\n\n loopback stub-network enable\n area 0.0.0.0\n interface Loopback0\n interface FourHundredGigE0/0/0/0\n network point-to-point\n\n" } ok: [s2] => { "msg": "ospf configuration for s2\n=========================================\n!\nrouter ospf 1\n!\n! These throttle timers are probably too aggressive for a production network but\n! make labs run better ;)\n!\n timers throttle spf 10 20 100\n timers throttle lsa all 10 20 100\n router-id 10.0.0.6\n\n loopback stub-network enable\n area 0.0.0.0\n interface Loopback0\n interface FourHundredGigE0/0/0/0\n network point-to-point\n\n" } TASK [Deploy ospf configuration] *********************************************** included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-config/iosxr.yml for dut, s2 TASK [iosxr_config: deploying ospf from /work/netlab_cicd/node_files/dut/ospf] *** changed: [s2] changed: [dut] TASK [Figure out whether to deploy the module bgp on current device] *********** ok: [dut] ok: [s2] TASK [Find configuration template for bgp] ************************************* ok: [dut] ok: [s2] TASK [fail] ******************************************************************** skipping: [dut] skipping: [s2] TASK [Find configuration deployment deploy_script for bgp] ********************* ok: [dut] ok: [s2] TASK [Print deployed configuration when running in verbose mode] *************** ok: [dut] => { "msg": "bgp configuration for dut\n=========================================\n!\n!\nrouter bgp 65000\n bgp unsafe-ebgp-policy\n bgp scan-time 5\n bgp update-delay 5\n bgp router-id 10.0.0.5\n\n!\n address-family ipv4 unicast\n bgp scan-time 5\n!\n network 10.0.0.5/32\n!\n!\n neighbor 10.0.0.6\n remote-as 65000\n description s2\n update-source Loopback0\n address-family ipv4 unicast\n next-hop-self\n\n" } ok: [s2] => { "msg": "bgp configuration for s2\n=========================================\n!\n!\nrouter bgp 65000\n bgp unsafe-ebgp-policy\n bgp scan-time 5\n bgp update-delay 5\n bgp router-id 10.0.0.6\n\n!\n address-family ipv4 unicast\n bgp scan-time 5\n!\n network 10.0.0.6/32\n!\n!\n neighbor 10.0.0.5\n remote-as 65000\n description dut\n update-source Loopback0\n address-family ipv4 unicast\n next-hop-self\n\n" } TASK [Deploy bgp configuration] ************************************************ included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-config/iosxr.yml for dut, s2 TASK [iosxr_config: deploying bgp from /work/netlab_cicd/node_files/dut/bgp] *** changed: [dut] changed: [s2] TASK [Figure out whether to deploy the module evpn on current device] ********** ok: [dut] ok: [s2] TASK [Find configuration template for evpn] ************************************ ok: [dut] ok: [s2] TASK [fail] ******************************************************************** skipping: [dut] skipping: [s2] TASK [Find configuration deployment deploy_script for evpn] ******************** ok: [dut] ok: [s2] TASK [Print deployed configuration when running in verbose mode] *************** ok: [dut] => { "msg": "evpn configuration for dut\n=========================================\nevpn\n evi 1000\n advertise-mac\n bgp\n rd 10.0.0.5:1000\n route-target import 65000:1000\n route-target export 65000:1000\n evi 1001\n advertise-mac\n bgp\n rd 10.0.0.5:1001\n route-target import 65000:1001\n route-target export 65000:1001\n!\nl2vpn\n bridge group netlab\n bridge-domain BD1000\n evi 1000\n bridge-domain BD1001\n evi 1001\n!\nrouter bgp 65000\n address-family l2vpn evpn\n bgp scan-time 5\n neighbor 10.0.0.6\n address-family l2vpn evpn\n" } ok: [s2] => { "msg": "evpn configuration for s2\n=========================================\nevpn\n evi 1000\n advertise-mac\n bgp\n rd 10.0.0.6:1000\n route-target import 65000:1000\n route-target export 65000:1000\n evi 1001\n advertise-mac\n bgp\n rd 10.0.0.6:1001\n route-target import 65000:1001\n route-target export 65000:1001\n!\nl2vpn\n bridge group netlab\n bridge-domain BD1000\n evi 1000\n bridge-domain BD1001\n evi 1001\n!\nrouter bgp 65000\n address-family l2vpn evpn\n bgp scan-time 5\n neighbor 10.0.0.5\n address-family l2vpn evpn\n" } TASK [Deploy evpn configuration] *********************************************** included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-config/iosxr.yml for dut, s2 TASK [iosxr_config: deploying evpn from /work/netlab_cicd/node_files/dut/evpn] *** changed: [dut] changed: [s2] TASK [Figure out whether to deploy the module mpls on current device] ********** ok: [dut] ok: [s2] TASK [Find configuration template for mpls] ************************************ ok: [dut] ok: [s2] TASK [fail] ******************************************************************** skipping: [dut] skipping: [s2] TASK [Find configuration deployment deploy_script for mpls] ******************** ok: [dut] ok: [s2] TASK [Print deployed configuration when running in verbose mode] *************** ok: [dut] => { "msg": "mpls configuration for dut\n=========================================\n!\nmpls ldp\n router-id 10.0.0.5\n log neighbor\n log hello-adjacency\n !\n interface FourHundredGigE0/0/0/0\n !\n address-family ipv4\n\n" } ok: [s2] => { "msg": "mpls configuration for s2\n=========================================\n!\nmpls ldp\n router-id 10.0.0.6\n log neighbor\n log hello-adjacency\n !\n interface FourHundredGigE0/0/0/0\n !\n address-family ipv4\n\n" } TASK [Deploy mpls configuration] *********************************************** included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-config/iosxr.yml for dut, s2 TASK [iosxr_config: deploying mpls from /work/netlab_cicd/node_files/dut/mpls] *** changed: [dut] changed: [s2] PLAY [Deploy custom deployment templates] ************************************** skipping: no hosts matched PLAY RECAP ********************************************************************* dut : ok=50 changed=6 unreachable=0 failed=0 skipped=14 rescued=0 ignored=0 s2 : ok=50 changed=6 unreachable=0 failed=0 skipped=14 rescued=0 ignored=0 Results of configuration script deployments ================================================================================ h1 Script: initial,routing h2 Script: initial,routing h3 Script: initial,routing h4 Script: initial,routing p Script: initial,ospf,mpls The device under test is an EVPN PE-device bridging two VLANs over MPLS. The other EVPN PE-device is an Arista cEOS. Both VLANs are using the same IP prefix to identify potential inter-VLAN leaking. * h1 and h2 should be able to ping each other * h3 and h4 should be able to ping each other * h1 should not be able to reach h3 or h4 Please note it might take a while for the lab to work due to STP learning phase