VXLAN Tunnel Profile
Virtual eXtensible LAN (VXLAN) is a MAC-in-UDP technology that provides layer 2 connectivity between networks across an IP network. VXLAN is typically used to extend layer 2 segments across an entire data center or between remote data centers. It is also used to provide multi-tenant services, where the same IP/MAC addresses or VLANs are used on different network segments.
The VXLAN Tunnel profile is a single-instance profile.
Creating a VXLAN Tunnel Profile
To create a VXLAN Tunnel profile, complete the following steps:
-
In the HPE Aruba Networking Central landing page, click the configuration
icon.
The Profiles tab is displayed. -
In the left navigation menu, select one of the following options:
-
Library—This is the default selection. If you create profiles in the Library, then you must assign scope and device functions to the profiles. For more information, see Assigning Scope to a VXLAN Tunnel Profile.
-
Global—If you create profiles at the Global level, then the profiles have Global scope assigned by default.
-
Site Collections—If you create profiles at the Site Collections level, then the profiles have site collection scope assigned by default.
-
Sites—If you create profiles at the Site level, then the profiles have site scope assigned by default.
-
Devices—If you create profiles at the Device level, then the profiles have device scope assigned by default.
-
Device Groups—If you create profiles at the Device Group level, then the profiles have device group scope assigned by default.
Note:- To create profiles at the Global level, select the device type from the Device Function drop-down list before step 4.
- To create profiles at the Site Collections, Sites, Devices, and Device Group level, complete the following steps before step 4:
- Select Site Collection, Site, Device, or Device Group in the left navigation menu.
- Select a Site Collection, Site, Device, or Device Group from the list view depending on the level where you are creating the profile.
- Select the device type from the Device Function drop-down list.
-
-
On the Routing & Overlays card, click VXLAN Tunnel.
Alternatively, you can complete the following steps:-
On the Routing & Overlays card, click Manage.
-
On the VXLAN Tunnel card, click Manage.
The VXLAN Tunnel profile list view is displayed.
-
-
Click Create Profile.
The Create Profile side panel is displayed. -
Configure the following parameters:
-
Create as a local profile—Select this checkbox if you want to configure this profile as local.
Note:The Create as a local profile checkbox is available at the Global, Site Collections, Sites, Devices, and Device Groups levels. It is not available at the Library level.
-
Name—Enter the name of the profile.
-
Description—Enter the description for the profile.
-
IP Version—Specify the version of the source IP address. The available options are IPv4 and IPv6.
-
Enable VXLAN—Select the checkbox to enable the VXLAN tunnel.
-
Static VXLAN—Select the checkbox to enable the static VXLAN. Static VXLAN is the easiest way to connect two VTEPs. In this method, the VXLAN uses a flooding-and-learning technique in the VXLAN data plane to learn the address of hosts.
-
-
To add the tunnel interface, click + in the Tunnel Interface table and configure the following parameters:
-
Tunnel ID—Specify the tunnel ID.
-
IP Version—The IP version is automatically selected based on the Global Profile IP version, with IPv4 as the default.
-
Destination—Specify the destination IP address of the tunnel interface.
-
VNI Mapping—Select the VNI (Virtual Network Identifier) mapping for the tunnel interface from the drop-down list. The VNI identifies a VXLAN segment, which acts as a logical network. To create a VNI profile, see VNI Profile.
Note:The VXLAN Tunnel profile must be created at the same or a higher scope level than the VNI Profile.
-
-
Select the AOS-CX Parameters checkbox to configure the following AOS-CX switch parameters:
-
Source IP—Specify the source IP address for a VXLAN tunnel.
-
-
Expand the Advanced accordion to configure the following advanced parameters:
-
Loop Protect—Select the checkbox to enable the loop protect. When loop protection is enabled on VXLAN interfaces, the switch will start transmitting loop protect packets to each VTEP peer that are part of a VNI.
-
Loop Protect VLANs—Specify the pre-configured loop protect VLANs. You can either specify a range of VLAN or single VLAN.
-
Inter VXLAN Bridging Mode—Specify the inter VXLAN bridging mode from the drop-down list. The available options are:
-
DENY—Disables inter-VXLAN bridging across tunnels. This is the default option.
-
STATIC_EVPN—Enables inter-VXLAN bridging between static and dynamic tunnels.
-
STATIC_ALL—Enables inter-VXLAN bridging between static and all tunnels.
-
-
MAC Address Traps—Select the MAC address traps from the drop-down list to generate SNMP trap notifications. You can select one or more options. The available options are:
-
LEARNED—Notifies when a MAC address is learned on the interface.
-
REMOVED—Notifies when a MAC address is removed from the interface.
-
AGED—Notifies when a MAC address ages out on the interface.
-
MOVED—Notifies when a MAC address moves from the interface.
-
-
Aggregate Counters—Select this checkbox to attach VXLAN counters to a VXLAN interface. The counters aggregate statistics for packets sent through the interface.
-
-
Click Create.
The newly created profile is displayed in the VXLAN Tunnel profile list.
-
To edit a profile, complete the following steps:
-
Click anywhere on the row of the profile in the list view.
The Edit Profile view is displayed in the side panel.
-
Edit the required parameters.
-
Click Update.
-
-
To delete a profile, hover on the profile name, and click the delete
icon. -
To search for a profile, type the profile name in the search bar. The search bar displays dynamic results as soon as you start typing.
Assigning Scope to a VXLAN Tunnel Profile
You must assign a scope and device function to a VXLAN Tunnel profile created in the Library.
To assign scope to a profile, complete the following steps:
-
In the HPE Aruba Networking Central landing page, click the configuration
icon.
The Profiles tab is displayed. -
Ensure that the default option Library is selected in the left navigation menu.
-
On the Routing & Overlays card, click VXLAN Tunnel.
Alternatively, you can complete the following steps:-
On the Routing & Overlays card, click Manage.
-
On the VXLAN Tunnel card, click Manage.
The VXLAN Tunnel list view is displayed.
-
-
Hover on the profile to which you want to assign a scope and click the ellipsis
icon. -
Select Assign.
The Assign Profile side panel is displayed.
-
Select the device types from Device Function list.
-
To add a scope, click the Add
icon on the Scopes table. -
Select a scope from the following Scope Level options in the drop-down list:
-
Global—Selecting this option assigns the scope at the Global level.
-
Site Collections—Select the site collections from the Assign to Scope drop-down list.
-
Sites—Select the sites from the Assign to Scope drop-down list.
-
Devices—Select the devices from the Assign to Scope drop-down list.
-
Device Groups—Select the device groups from the Assign to Scope drop-down list.
-
-
Click Add.
The Scopes table displays the newly added scopes.
-
Click Assign.
The VXLAN Tunnel list displays the device functions and number of scopes assigned to the profile.
-
To unassign a scope from a profile, complete the following steps:
-
Hover on the profile name and click the Ellipsis
icon. -
Select Unassign.
-
Select the required scope and click Unassign.
-
-
To customize the VXLAN Tunnel profile list, click the Customize Columns icon
.
Workflow for Configuring a VXLAN Tunnel with VNIs
To configure a VXLAN tunnel with VNIs, complete the following steps:
-
Create the VXLAN Tunnel profile (single-instance).
-
Create one or more VNI Profiles (multi-instance) and associate them with the VXLAN Tunnel Profile.
Note:Ensure any VLANs required for VNI mappings are pre-configured.
-
In the VXLAN Tunnel profile, map the VNI Profile(s) in the Static VXLAN section to create a static VXLAN tunnel.
Workflow for Unconfiguring a VXLAN Tunnel with VNIs
To unconfigure a VXLAN tunnel with VNIs, complete the following steps:
-
In the VXLAN Tunnel Profile, unmap the VNI Profiles from the Static VXLAN section.
-
Delete VNI Profiles.
-
Delete the VXLAN Tunnel profile.