Creating Device configuration snippets [CREATED] dut: initial,routing,vrf [CREATED] h1: initial,routing [CREATED] h2: initial,routing [CREATED] h3: initial,routing [CREATED] v1: initial,routing [CREATED] v2: initial,routing [CREATED] v3: initial,routing Config Deploying device configurations [INFO] Executing initial configuration for node h1 (namespace clab- ml-83-h1) [INFO] Executing initial configuration for node h2 (namespace clab- ml-83-h2) [INFO] Executing initial configuration for node h3 (namespace clab- ml-83-h3) [INFO] Executing initial configuration for node v1 (namespace clab- ml-83-v1) [INFO] Executing initial configuration for node v2 (namespace clab- ml-83-v2) [INFO] Executing initial configuration for node v3 (namespace clab- ml-83-v3) [INFO] Executing routing configuration for node h3 (namespace clab- ml-83-h3) [INFO] Executing routing configuration for node h2 (namespace clab- ml-83-h2) [INFO] Executing routing configuration for node h1 (namespace clab- ml-83-h1) [INFO] Executing routing configuration for node v2 (namespace clab- ml-83-v2) [INFO] Executing routing configuration for node v1 (namespace clab- ml-83-v1) [INFO] Executing routing configuration for node v3 (namespace clab- ml-83-v3) [INFO] Starting Ansible playbook to deploy the rest of the configurations [WARNING]: Found variable using reserved name: hosts PLAY [Deploy initial device configuration] ************************************* TASK [Set variables that cannot be set with VARS] ****************************** ok: [dut] TASK [Normalize config on bridge-like devices] ********************************* included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut TASK [Figure out whether to deploy the module normalize on current device] ***** ok: [dut] TASK [Find configuration template for normalize] ******************************* ok: [dut] TASK [fail] ******************************************************************** skipping: [dut] TASK [Find configuration deployment deploy_script for normalize] *************** ok: [dut] TASK [Print deployed configuration when running in verbose mode] *************** skipping: [dut] TASK [Deploy normalize configuration] ****************************************** skipping: [dut] TASK [Deploy initial configuration] ******************************************** included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut TASK [Figure out whether to deploy the module initial on current device] ******* ok: [dut] TASK [Find configuration template for initial] ********************************* ok: [dut] TASK [fail] ******************************************************************** skipping: [dut] TASK [Find configuration deployment deploy_script for initial] ***************** ok: [dut] TASK [Print deployed configuration when running in verbose mode] *************** ok: [dut] => { "msg": "initial configuration for dut\n=========================================\n\nupdates:\n\n- path: /interface[name=system0]/subinterface[index=0]\n value:\n description: \"No description\"\n admin-state: enable\n ipv4:\n admin-state: enable\n address:\n - ip-prefix: \"10.0.0.1/32\"\n ipv6:\n admin-state: enable\n address:\n - ip-prefix: \"2001:db8:1:1::1/64\"\n type: \"global-unicast\"\n\n- path: /interface[name=ethernet-1/1]\n value:\n description: \"dut ~ h1\"\n subinterface:\n index: 0\n description: \"dut ~ h1\"\n\n- path: /interface[name=ethernet-1/1]/subinterface[index=0]\n value:\n description: \"dut ~ h1\"\n admin-state: enable\n ipv4:\n admin-state: enable\n address:\n - ip-prefix: \"172.16.0.1/24\"\n primary: [null]\n ipv6:\n admin-state: enable\n address:\n - ip-prefix: \"2001:db8:2::1/64\"\n type: \"global-unicast\"\n neighbor-discovery:\n learn-unsolicited: link-local\n router-advertisement:\n router-role:\n admin-state: enable # no ipv6 nd suppress-ra\n min-advertisement-interval: 4 # Leaving this at platform default 200..600 takes too long at startup\n _annotate_min-advertisement-interval: \"Reduced from platform default 200s\"\n max-advertisement-interval: 5\n\n- path: /interface[name=ethernet-1/2]\n value:\n description: \"dut ~ h2,h3\"\n subinterface:\n index: 0\n description: \"dut ~ h2,h3\"\n\n- path: /interface[name=ethernet-1/2]/subinterface[index=0]\n value:\n description: \"dut ~ h2,h3\"\n admin-state: enable\n ipv4:\n admin-state: enable\n address:\n - ip-prefix: \"172.16.42.1/24\"\n primary: [null]\n ipv6:\n admin-state: enable\n address:\n - ip-prefix: \"2001:db8:cafe:42::1/64\"\n type: \"global-unicast\"\n neighbor-discovery:\n learn-unsolicited: link-local\n router-advertisement:\n router-role:\n admin-state: enable # no ipv6 nd suppress-ra\n min-advertisement-interval: 4 # Leaving this at platform default 200..600 takes too long at startup\n _annotate_min-advertisement-interval: \"Reduced from platform default 200s\"\n max-advertisement-interval: 5\n\n- path: /interface[name=ethernet-1/3]\n value:\n description: \"dut ~ v1\"\n subinterface:\n index: 0\n description: \"dut ~ v1\"\n\n- path: /interface[name=ethernet-1/3]/subinterface[index=0]\n value:\n description: \"dut ~ v1\"\n admin-state: enable\n ipv4:\n admin-state: enable\n address:\n - ip-prefix: \"172.16.1.1/24\"\n primary: [null]\n ipv6:\n admin-state: enable\n address:\n - ip-prefix: \"2001:db8:2:1::1/64\"\n type: \"global-unicast\"\n neighbor-discovery:\n learn-unsolicited: link-local\n router-advertisement:\n router-role:\n admin-state: enable # no ipv6 nd suppress-ra\n min-advertisement-interval: 4 # Leaving this at platform default 200..600 takes too long at startup\n _annotate_min-advertisement-interval: \"Reduced from platform default 200s\"\n max-advertisement-interval: 5\n\n- path: /interface[name=ethernet-1/4]\n value:\n description: \"dut ~ v2,v3\"\n subinterface:\n index: 0\n description: \"dut ~ v2,v3\"\n\n- path: /interface[name=ethernet-1/4]/subinterface[index=0]\n value:\n description: \"dut ~ v2,v3\"\n admin-state: enable\n ipv4:\n admin-state: enable\n address:\n - ip-prefix: \"172.16.42.1/24\"\n primary: [null]\n ipv6:\n admin-state: enable\n address:\n - ip-prefix: \"2001:db8:cafe:42::1/64\"\n type: \"global-unicast\"\n neighbor-discovery:\n learn-unsolicited: link-local\n router-advertisement:\n router-role:\n admin-state: enable # no ipv6 nd suppress-ra\n min-advertisement-interval: 4 # Leaving this at platform default 200..600 takes too long at startup\n _annotate_min-advertisement-interval: \"Reduced from platform default 200s\"\n max-advertisement-interval: 5\n\n\n\n- path: /network-instance[name=default]\n value:\n type: default\n interface:\n - name: system0.0\n\n- path: /network-instance[name=default]\n value:\n type: default\n interface:\n - name: ethernet-1/1.0\n- path: /network-instance[name=default]\n value:\n type: default\n interface:\n - name: ethernet-1/2.0\n\n\n\n# TODO: vdata.rd, vdata.import/export, vdata.af\n- path: /network-instance[name=tenant]\n value:\n type: ip-vrf\n interface:\n - name: ethernet-1/3.0\n- path: /network-instance[name=tenant]\n value:\n type: ip-vrf\n interface:\n - name: ethernet-1/4.0\n\n\n" } TASK [Deploy initial configuration] ******************************************** included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-config/srlinux.yml for dut TASK [Generate JSON-RPC YAML configuration] ************************************ ok: [dut] TASK [Update SRL initial node configuration (template=/work/netlab_cicd/nokia_c/node_files/dut/initial)] *** changed: [dut] TASK [debug] ******************************************************************* skipping: [dut] PLAY [Deploy module-specific configurations] *********************************** TASK [Set variables that cannot be set with VARS] ****************************** ok: [dut] TASK [Deploy individual configuration modules] ********************************* included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut => (item=routing) included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-module.yml for dut => (item=vrf) TASK [Figure out whether to deploy the module routing on current device] ******* ok: [dut] TASK [Find configuration template for routing] ********************************* ok: [dut] TASK [fail] ******************************************************************** skipping: [dut] TASK [Find configuration deployment deploy_script for routing] ***************** ok: [dut] TASK [Print deployed configuration when running in verbose mode] *************** ok: [dut] => { "msg": "routing configuration for dut\n=========================================\nupdates:\n- path: /network-instance[name=default]/next-hop-groups/group[name=blackhole]\n value:\n blackhole:\n generate-icmp: True\n- path: /network-instance[name=default]/static-routes\n value:\n route:\n - prefix: \"172.16.42.42/32\"\n next-hop-group: blackhole\n admin-state: enable\n- path: /network-instance[name=default]/static-routes\n value:\n route:\n - prefix: \"2001:db8:cafe:42::2a/128\"\n next-hop-group: blackhole\n admin-state: enable\n- path: /network-instance[name=tenant]/next-hop-groups/group[name=blackhole]\n value:\n blackhole:\n generate-icmp: True\n- path: /network-instance[name=tenant]/static-routes\n value:\n route:\n - prefix: \"172.16.42.64/32\"\n next-hop-group: blackhole\n admin-state: enable\n- path: /network-instance[name=tenant]/static-routes\n value:\n route:\n - prefix: \"2001:db8:cafe:42::40/128\"\n next-hop-group: blackhole\n admin-state: enable\n" } TASK [Deploy routing configuration] ******************************************** included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-config/srlinux.yml for dut TASK [Generate JSON-RPC YAML configuration] ************************************ ok: [dut] TASK [Update SRL routing node configuration (template=/work/netlab_cicd/nokia_c/node_files/dut/routing)] *** changed: [dut] TASK [debug] ******************************************************************* skipping: [dut] TASK [Figure out whether to deploy the module vrf on current device] *********** ok: [dut] TASK [Find configuration template for vrf] ************************************* ok: [dut] TASK [fail] ******************************************************************** skipping: [dut] TASK [Find configuration deployment deploy_script for vrf] ********************* ok: [dut] TASK [Print deployed configuration when running in verbose mode] *************** ok: [dut] => { "msg": "vrf configuration for dut\n=========================================\n\nupdates:\n\n- path: /network-instance[name=tenant]\n value:\n type: ip-vrf\n\n\n- path: /routing-policy/community-set[name=C65000_1]\n value:\n member:\n - \"target:65000:1\" # Single member, else matching is AND\n\n- path: /routing-policy/community-set[name=tenant_export]\n value:\n member:\n - \"target:65000:1\"\n\n\n- path: /network-instance[name=tenant]/protocols/bgp-vpn\n value:\n bgp-instance:\n - id: 1\n route-distinguisher:\n rd: \"65000:1\"\n\n- path: /network-instance[name=tenant]/inter-instance-policies\n value:\n apply-policy:\n export-policy:\n - \"tenant_vpn_export\"\n import-policy:\n - \"tenant_vpn_import\"\n\n- path: /routing-policy/policy[name=tenant_vpn_export]\n value:\n default-action:\n policy-result: \"accept\"\n bgp:\n communities:\n add: \"tenant_export\"\n\n- path: /routing-policy/policy[name=tenant_vpn_import]\n value:\n default-action:\n policy-result: \"reject\"\n statement:\n - name: 11\n match:\n bgp:\n community-set: \"C65000_1\"\n action:\n policy-result: \"accept\"\n\n" } TASK [Deploy vrf configuration] ************************************************ included: /home/pipi/netlab_gh/netsim/ansible/tasks/deploy-config/srlinux.yml for dut TASK [Generate JSON-RPC YAML configuration] ************************************ ok: [dut] TASK [Update SRL vrf node configuration (template=/work/netlab_cicd/nokia_c/node_files/dut/vrf)] *** changed: [dut] TASK [debug] ******************************************************************* skipping: [dut] PLAY [Deploy custom deployment templates] ************************************** skipping: no hosts matched PLAY RECAP ********************************************************************* dut : ok=30 changed=3 unreachable=0 failed=0 skipped=9 rescued=0 ignored=0 Results of configuration script deployments ================================================================================ h1 Script: initial,routing h2 Script: initial,routing h3 Script: initial,routing v1 Script: initial,routing v2 Script: initial,routing v3 Script: initial,routing Use this topology to test 'discard' IPv4 and IPv6 static routes. H1 should be able to reach H2 but not H3 (due to a discard static route)