/home/pipi/.local/lib/python3.10/site-packages/paramiko/pkey.py:100: CryptographyDeprecationWarning: TripleDES has been moved to cryptography.hazmat.decrepit.ciphers.algorithms.TripleDES and will be removed from cryptography.hazmat.primitives.ciphers.algorithms in 48.0.0. "cipher": algorithms.TripleDES, /home/pipi/.local/lib/python3.10/site-packages/paramiko/transport.py:259: CryptographyDeprecationWarning: TripleDES has been moved to cryptography.hazmat.decrepit.ciphers.algorithms.TripleDES and will be removed from cryptography.hazmat.primitives.ciphers.algorithms in 48.0.0. "class": algorithms.TripleDES, [WARNING]: Could not match supplied host pattern, ignoring: unprovisioned [WARNING]: Found variable using reserved name: hosts PLAY [Deploy initial device configuration] ************************************* TASK [Set variables that cannot be set with VARS] ****************************** ok: [r1] ok: [r2] ok: [r3] ok: [r4] ok: [dut] TASK [Find device readiness script] ******************************************** ok: [r1] ok: [r2] ok: [r3] ok: [dut] ok: [r4] TASK [Wait for device to become ready] ***************************************** included: /home/pipi/net101/tools/netsim/ansible/tasks/readiness-check/eos-clab.yml for r1, r2, r3, r4 included: /home/pipi/net101/tools/netsim/ansible/tasks/readiness-check/iol-clab.yml for dut TASK [Wait for cEOS SSH daemon to start] *************************************** ok: [r4] ok: [r1] ok: [r3] ok: [r2] TASK [Check if 'sshpass' is installed] ***************************************** ok: [dut -> localhost] TASK [Check for 'timeout' command] ********************************************* ok: [dut -> localhost] TASK [Execute local ssh command to check iol readiness] ************************ ok: [dut -> localhost] TASK [Confirm dut SSH server works] ******************************************** ok: [dut] => msg: Node dut is ready. TASK [Normalize config on bridge-like devices] ********************************* included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-module.yml for r1, r2, r3, r4, dut TASK [Figure out whether to deploy the module normalize on current device] ***** ok: [r1] ok: [r2] ok: [r3] ok: [dut] ok: [r4] TASK [Find configuration template for normalize] ******************************* ok: [r1] ok: [r2] ok: [r3] ok: [dut] ok: [r4] TASK [fail] ******************************************************************** skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] skipping: [dut] TASK [Find configuration deployment deploy_script for normalize] *************** ok: [r1] ok: [r2] ok: [r3] ok: [r4] ok: [dut] TASK [Print deployed configuration when running in verbose mode] *************** skipping: [dut] ok: [r1] => msg: |- normalize configuration for r1 ========================================= ! interface Ethernet1 shutdown mac-address 52dc.cafe.0b01 ok: [r2] => msg: |- normalize configuration for r2 ========================================= ! interface Ethernet1 shutdown mac-address 52dc.cafe.0c01 ok: [r3] => msg: |- normalize configuration for r3 ========================================= ! interface Ethernet1 shutdown mac-address 52dc.cafe.1701 ok: [r4] => msg: |- normalize configuration for r4 ========================================= ! interface Ethernet1 shutdown mac-address 52dc.cafe.1801 TASK [Deploy normalize configuration] ****************************************** skipping: [dut] included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-config/eos.yml for r1, r2, r3, r4 TASK [eos_config: deploying normalize from /home/pipi/net101/tools/netsim/ansible/templates/normalize/eos.j2] *** [WARNING]: To ensure idempotency and correct diff the input configuration lines should be similar to how they appear if present in the running configuration on device including the indentation changed: [r4] changed: [r2] changed: [r3] changed: [r1] TASK [Deploy initial configuration] ******************************************** included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-module.yml for r1, r2, r3, r4, dut TASK [Figure out whether to deploy the module initial on current device] ******* ok: [r1] ok: [r2] ok: [r3] ok: [r4] ok: [dut] TASK [Find configuration template for initial] ********************************* ok: [r1] ok: [r2] ok: [r3] ok: [dut] ok: [r4] TASK [fail] ******************************************************************** skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] skipping: [dut] TASK [Find configuration deployment deploy_script for initial] ***************** ok: [r1] ok: [r2] ok: [r3] ok: [dut] ok: [r4] TASK [Print deployed configuration when running in verbose mode] *************** ok: [r1] => msg: |- initial configuration for r1 ========================================= hostname r1 ! logging monitor debugging aaa authorization exec default local ! lldp run ip routing ipv6 unicast-routing ! ! ip host r2 10.0.0.12 10.1.0.6 ip host r3 10.0.0.23 10.1.0.10 ip host r4 10.0.0.24 10.1.0.14 ip host dut 10.0.0.1 ip host dut-red 10.1.0.1 10.1.0.5 ip host dut-blue 10.1.0.9 10.1.0.13 ipv6 host r2 2001:db8:1:c::1 ipv6 host r3 2001:db8:1:17::1 ipv6 host r4 2001:db8:1:18::1 ipv6 host dut 2001:db8:1:1::1 ! interface Management0 no lldp transmit no lldp receive ! interface Loopback0 ip address 10.0.0.11/32 ipv6 nd ra interval 5 ipv6 address 2001:db8:1:b::1/64 ! interface Ethernet1 no switchport platform tfa phy control-frame disabled description r1 -> dut [external] ip address 10.1.0.2/30 ! mac-address 52dc.cafe.0b01 no shutdown ! ok: [r2] => msg: |- initial configuration for r2 ========================================= hostname r2 ! logging monitor debugging aaa authorization exec default local ! lldp run ip routing ipv6 unicast-routing ! ! ip host r1 10.0.0.11 10.1.0.2 ip host r3 10.0.0.23 10.1.0.10 ip host r4 10.0.0.24 10.1.0.14 ip host dut 10.0.0.1 ip host dut-red 10.1.0.1 10.1.0.5 ip host dut-blue 10.1.0.9 10.1.0.13 ipv6 host r1 2001:db8:1:b::1 ipv6 host r3 2001:db8:1:17::1 ipv6 host r4 2001:db8:1:18::1 ipv6 host dut 2001:db8:1:1::1 ! interface Management0 no lldp transmit no lldp receive ! interface Loopback0 ip address 10.0.0.12/32 ipv6 nd ra interval 5 ipv6 address 2001:db8:1:c::1/64 ! interface Ethernet1 no switchport platform tfa phy control-frame disabled description r2 -> dut [external] ip address 10.1.0.6/30 ! mac-address 52dc.cafe.0c01 no shutdown ! ok: [r3] => msg: |- initial configuration for r3 ========================================= hostname r3 ! logging monitor debugging aaa authorization exec default local ! lldp run ip routing ipv6 unicast-routing ! ! ip host r1 10.0.0.11 10.1.0.2 ip host r2 10.0.0.12 10.1.0.6 ip host r4 10.0.0.24 10.1.0.14 ip host dut 10.0.0.1 ip host dut-red 10.1.0.1 10.1.0.5 ip host dut-blue 10.1.0.9 10.1.0.13 ipv6 host r1 2001:db8:1:b::1 ipv6 host r2 2001:db8:1:c::1 ipv6 host r4 2001:db8:1:18::1 ipv6 host dut 2001:db8:1:1::1 ! interface Management0 no lldp transmit no lldp receive ! interface Loopback0 ip address 10.0.0.23/32 ipv6 nd ra interval 5 ipv6 address 2001:db8:1:17::1/64 ! interface Ethernet1 no switchport platform tfa phy control-frame disabled description r3 -> dut [external] ip address 10.1.0.10/30 ! mac-address 52dc.cafe.1701 no shutdown ! ok: [r4] => msg: |- initial configuration for r4 ========================================= hostname r4 ! logging monitor debugging aaa authorization exec default local ! lldp run ip routing ipv6 unicast-routing ! ! ip host r1 10.0.0.11 10.1.0.2 ip host r2 10.0.0.12 10.1.0.6 ip host r3 10.0.0.23 10.1.0.10 ip host dut 10.0.0.1 ip host dut-red 10.1.0.1 10.1.0.5 ip host dut-blue 10.1.0.9 10.1.0.13 ipv6 host r1 2001:db8:1:b::1 ipv6 host r2 2001:db8:1:c::1 ipv6 host r3 2001:db8:1:17::1 ipv6 host dut 2001:db8:1:1::1 ! interface Management0 no lldp transmit no lldp receive ! interface Loopback0 ip address 10.0.0.24/32 ipv6 nd ra interval 5 ipv6 address 2001:db8:1:18::1/64 ! interface Ethernet1 no switchport platform tfa phy control-frame disabled description r4 -> dut [external] ip address 10.1.0.14/30 ! mac-address 52dc.cafe.1801 no shutdown ! ok: [dut] => msg: |- initial configuration for dut ========================================= hostname dut ! no ip domain lookup ! lldp run ! ip host r1 10.0.0.11 10.1.0.2 2001:db8:1:b::1 ip host r2 10.0.0.12 10.1.0.6 2001:db8:1:c::1 ip host r3 10.0.0.23 10.1.0.10 2001:db8:1:17::1 ip host r4 10.0.0.24 10.1.0.14 2001:db8:1:18::1 ip host dut-red 10.1.0.1 10.1.0.5 ip host dut-blue 10.1.0.9 10.1.0.13 ! ip routing ! ipv6 unicast-routing ! vrf definition red rd 65000:1 route-target import 65000:1 route-target export 65000:1 ! address-family ipv4 exit-address-family ! vrf definition blue rd 65000:2 route-target import 65000:2 route-target export 65000:2 ! address-family ipv4 exit-address-family ! ! ! interface Loopback0 ip address 10.0.0.1 255.255.255.255 ipv6 address 2001:DB8:1:1::1/64 ! interface Ethernet0/0 no lldp transmit no lldp receive ! interface Ethernet0/1 vrf forwarding red description dut -> r1 [external] ip address 10.1.0.1 255.255.255.252 no shutdown ! interface Ethernet0/2 vrf forwarding red description dut -> r2 [external] ip address 10.1.0.5 255.255.255.252 no shutdown ! interface Ethernet0/3 vrf forwarding blue description dut -> r3 [external] ip address 10.1.0.9 255.255.255.252 no shutdown ! interface Ethernet1/0 vrf forwarding blue description dut -> r4 [external] ip address 10.1.0.13 255.255.255.252 no shutdown ! ! line vty 0 4 exec-timeout 0 0 ! no banner exec no banner login no banner incoming TASK [Deploy initial configuration] ******************************************** included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-config/eos.yml for r1, r2, r3, r4 included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-config/ios.yml for dut TASK [eos_config: deploying initial from /home/pipi/net101/tools/netsim/ansible/templates/initial/eos.j2] *** changed: [r2] changed: [r1] changed: [r3] changed: [r4] TASK [ios_config: deploying initial from /home/pipi/net101/tools/netsim/ansible/templates/initial/ios.j2] *** changed: [dut] PLAY [Deploy module-specific configurations] *********************************** TASK [Set variables that cannot be set with VARS] ****************************** ok: [r1] ok: [r2] ok: [r3] ok: [dut] ok: [r4] TASK [Deploy individual configuration modules] ********************************* included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-module.yml for r1, r2, r3, r4, dut => (item=bgp) included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-module.yml for r1, r2, r3, r4, dut => (item=vrf) TASK [Figure out whether to deploy the module bgp on current device] *********** ok: [r1] ok: [r2] ok: [r4] ok: [r3] ok: [dut] TASK [Find configuration template for bgp] ************************************* ok: [r1] ok: [r2] ok: [r3] ok: [r4] ok: [dut] TASK [fail] ******************************************************************** skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] skipping: [dut] TASK [Find configuration deployment deploy_script for bgp] ********************* ok: [r1] ok: [r2] ok: [r3] ok: [dut] ok: [r4] TASK [Print deployed configuration when running in verbose mode] *************** ok: [r1] => msg: |- bgp configuration for r1 ========================================= ! ! router bgp 65101 bgp advertise-inactive bgp log-neighbor-changes no bgp default ipv4-unicast no bgp default ipv6-unicast router-id 10.0.0.11 ! neighbor 10.1.0.1 remote-as 65000 neighbor 10.1.0.1 description dut neighbor 10.1.0.1 send-community standard large ! ! address-family ipv4 network 10.0.0.11/32 ! ! ! neighbor 10.1.0.1 activate ! address-family ipv6 network 2001:db8:1:b::/64 ! ! ! ! ok: [r2] => msg: |- bgp configuration for r2 ========================================= ! ! router bgp 65102 bgp advertise-inactive bgp log-neighbor-changes no bgp default ipv4-unicast no bgp default ipv6-unicast router-id 10.0.0.12 ! neighbor 10.1.0.5 remote-as 65000 neighbor 10.1.0.5 description dut neighbor 10.1.0.5 send-community standard large ! ! address-family ipv4 network 10.0.0.12/32 ! ! ! neighbor 10.1.0.5 activate ! address-family ipv6 network 2001:db8:1:c::/64 ! ! ! ! ok: [r3] => msg: |- bgp configuration for r3 ========================================= ! ! router bgp 65103 bgp advertise-inactive bgp log-neighbor-changes no bgp default ipv4-unicast no bgp default ipv6-unicast router-id 10.0.0.23 ! neighbor 10.1.0.9 remote-as 65000 neighbor 10.1.0.9 description dut neighbor 10.1.0.9 send-community standard large ! ! address-family ipv4 network 10.0.0.23/32 ! ! ! neighbor 10.1.0.9 activate ! address-family ipv6 network 2001:db8:1:17::/64 ! ! ! ! ok: [dut] => msg: |- bgp configuration for dut ========================================= ! ip bgp-community new-format ! router bgp 65000 no bgp default ipv4-unicast bgp update-delay 5 bgp nopeerup-delay cold-boot 1 bgp nopeerup-delay user-initiated 1 bgp router-id 10.0.0.1 ! address-family ipv4 bgp scan-time 5 ! network 10.0.0.1 mask 255.255.255.255 ! ! address-family ipv6 bgp scan-time 5 ! network 2001:db8:1:1::/64 ! ! ! ok: [r4] => msg: |- bgp configuration for r4 ========================================= ! ! router bgp 65104 bgp advertise-inactive bgp log-neighbor-changes no bgp default ipv4-unicast no bgp default ipv6-unicast router-id 10.0.0.24 ! neighbor 10.1.0.13 remote-as 65000 neighbor 10.1.0.13 description dut neighbor 10.1.0.13 send-community standard large ! ! address-family ipv4 network 10.0.0.24/32 ! ! ! neighbor 10.1.0.13 activate ! address-family ipv6 network 2001:db8:1:18::/64 ! ! ! ! TASK [Deploy bgp configuration] ************************************************ included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-config/eos.yml for r1, r2, r3, r4 included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-config/ios.yml for dut TASK [eos_config: deploying bgp from /home/pipi/net101/tools/netsim/ansible/templates/bgp/eos.j2] *** changed: [r3] changed: [r2] changed: [r4] changed: [r1] TASK [ios_config: deploying bgp from /home/pipi/net101/tools/netsim/ansible/templates/bgp/ios.j2] *** changed: [dut] TASK [Figure out whether to deploy the module vrf on current device] *********** ok: [r1] ok: [r2] ok: [r3] ok: [dut] ok: [r4] TASK [Find configuration template for vrf] ************************************* skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] ok: [dut] TASK [fail] ******************************************************************** skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] skipping: [dut] TASK [Find configuration deployment deploy_script for vrf] ********************* skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] ok: [dut] TASK [Print deployed configuration when running in verbose mode] *************** skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] ok: [dut] => msg: |- vrf configuration for dut ========================================= ! router bgp 65000 address-family ipv4 vrf red bgp router-id 10.0.0.1 redistribute connected ! ! neighbor 10.1.0.2 remote-as 65101 neighbor 10.1.0.2 description r1 neighbor 10.1.0.2 activate neighbor 10.1.0.2 advertisement-interval 0 neighbor 10.1.0.2 send-community standard neighbor 10.1.0.6 remote-as 65102 neighbor 10.1.0.6 description r2 neighbor 10.1.0.6 activate neighbor 10.1.0.6 advertisement-interval 0 neighbor 10.1.0.6 send-community standard address-family ipv4 vrf blue bgp router-id 10.0.0.1 redistribute connected ! ! neighbor 10.1.0.10 remote-as 65103 neighbor 10.1.0.10 description r3 neighbor 10.1.0.10 activate neighbor 10.1.0.10 advertisement-interval 0 neighbor 10.1.0.10 send-community standard neighbor 10.1.0.14 remote-as 65104 neighbor 10.1.0.14 description r4 neighbor 10.1.0.14 activate neighbor 10.1.0.14 advertisement-interval 0 neighbor 10.1.0.14 send-community standard TASK [Deploy vrf configuration] ************************************************ skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-config/ios.yml for dut TASK [ios_config: deploying vrf from /home/pipi/net101/tools/netsim/ansible/templates/vrf/ios.j2] *** changed: [dut] PLAY [Deploy custom deployment templates] ************************************** TASK [Run custom configuration deployment scripts] ***************************** included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-custom-config.yml for r1, r2, r3, r4 => (item=bgp-xact) TASK [Find configuration template] ********************************************* ok: [r1] ok: [r2] ok: [r3] ok: [r4] TASK [fail] ******************************************************************** skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] TASK [Check is the configuration template is a file] *************************** ok: [r4 -> localhost] ok: [r1 -> localhost] ok: [r2 -> localhost] ok: [r3 -> localhost] TASK [fail] ******************************************************************** skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] TASK [Process template /home/pipi/net101/tools/tests/integration/vrf/bgp-xact.j2 for r1] *** skipping: [r1] skipping: [r2] skipping: [r3] skipping: [r4] TASK [Find custom configuration deployment script] ***************************** ok: [r1] ok: [r2] ok: [r3] ok: [r4] TASK [Run the configuration deployment script] ********************************* included: /home/pipi/net101/tools/netsim/ansible/tasks/deploy-config/eos.yml for r1, r2, r3, r4 TASK [eos_config: deploying bgp-xact from /home/pipi/net101/tools/tests/integration/vrf/bgp-xact.j2] *** changed: [r4] changed: [r3] changed: [r1] changed: [r2] PLAY RECAP ********************************************************************* dut : ok=33 changed=3 unreachable=0 failed=0 skipped=6 rescued=0 ignored=0 r1 : ok=34 changed=4 unreachable=0 failed=0 skipped=11 rescued=0 ignored=0 r2 : ok=34 changed=4 unreachable=0 failed=0 skipped=11 rescued=0 ignored=0 r3 : ok=34 changed=4 unreachable=0 failed=0 skipped=11 rescued=0 ignored=0 r4 : ok=34 changed=4 unreachable=0 failed=0 skipped=11 rescued=0 ignored=0 The device under test has two VRFs with two interfaces in each VRF. Routers are attached to those interfaces and run BGP with device under test. Assuming the multi-vrf test case succeeded, this one adds BGP routing with CE routers. * r1 and r2 should be able to ping each other * r3 and r4 should be able to ping each other * r1 should not be able to reach r3 The test also checks whether DUT unnecessarily enables IPv6 AF over IPv4 EBGP sessions