! Command: show running-config
! device: H-LEAF2A (vEOS, EOS-4.23.0.1F)
!
! boot system flash:/vEOS-lab.swi
!
transceiver qsfp default-mode 4x10G
!
service routing protocols model multi-agent
!
hostname H-LEAF2A
ip name-server vrf MGMT 192.168.2.1
ip name-server vrf MGMT 8.8.8.8
!
ntp local-interface vrf MGMT Management1
ntp server vrf MGMT 0.north-america.pool.ntp.org prefer
ntp server vrf MGMT 1.north-america.pool.ntp.org
!
spanning-tree mode mstp
spanning-tree mst 0 priority 4096
!
no aaa root
!
username admin role network-admin secret sha512 $6$fWzDTNTpVx3TJ6HQ$33r4F7c1zX4bCBDqphtNXc4sxCuRvrVOmbwJt.Hfehd4mZyYET1qsSHSpdv5X4FLBG.Gsdt2MlIa8Rd4p1IEu1
!
vlan 110
   name Tenant_A_OPZone_1
!
vlan 111
   name Tenant_A_OPZone_2
!
vlan 210
   name Tenant_B_OPZone_1
!
vlan 211
   name Tenant_B_OPZone_2
!
vlan 310
   name Tenant_C_OPZone_1
!
vlan 311
   name Tenant_C_OPZone_2
!
vlan 4093
   name LEAF_PEER_L3
   trunk group LEAF_PEER_L3
!
vlan 4094
   name MLAG_PEER
   trunk group MLAG
!
vrf instance MGMT
!
vrf instance Tenant_A_OPZone
!
vrf instance Tenant_B_OPZone
!
vrf instance Tenant_C_OPZone
!
bfd multihop interval 1200 min_rx 1200 multiplier 3
!
interface Port-Channel3
   description MLAG_PEER_H-LEAF2B_Po3
   switchport trunk allowed vlan 2-4094
   switchport mode trunk
   switchport trunk group LEAF_PEER_L3
   switchport trunk group MLAG
!
interface Port-Channel5
   description server01_PortChanne1
   switchport trunk allowed vlan 210-211
   switchport mode trunk
   mlag 5
!
interface Port-Channel6
   description server02_PortChanne1
   switchport trunk allowed vlan 210-211
   switchport mode trunk
   mlag 6
!
interface Ethernet1
   description P2P_UPLINK_TO_H-SPINE1_Ethernet2
   no switchport
   ip address 172.31.255.5/31
!
interface Ethernet2
   description P2P_UPLINK_TO_H-SPINE2_Ethernet2
   no switchport
   ip address 172.31.255.7/31
!
interface Ethernet3
   description MLAG_PEER_H-LEAF2B_Ethernet3
   channel-group 3 mode active
!
interface Ethernet4
   description MLAG_PEER_H-LEAF2B_Ethernet4
   channel-group 3 mode active
!
interface Ethernet5
   description server01_Eth2
   channel-group 5 mode active
!
interface Ethernet6
   description server02_Eth2
   channel-group 6 mode active
!
interface Ethernet7
!
interface Ethernet8
!
interface Ethernet9
!
interface Ethernet10
!
interface Ethernet11
!
interface Ethernet12
!
interface Loopback0
   description EVPN_Overlay_Peering
   ip address 192.168.255.4/32
!
interface Loopback1
   description VTEP_VXLAN_Tunnel_Source
   ip address 192.168.254.4/32
!
interface Loopback101
   description Tenant_A_OPZone_VTEP_DIAGNOSTICS
   vrf Tenant_A_OPZone
   ip address 10.1.255.4/32
!
interface Loopback123
   ip address 192.168.123.4/32
!
interface Loopback201
   description Tenant_B_OPZone_VTEP_DIAGNOSTICS
   vrf Tenant_B_OPZone
   ip address 10.2.255.4/32
!
interface Loopback301
   description Tenant_C_OPZone_VTEP_DIAGNOSTICS
   vrf Tenant_C_OPZone
   ip address 10.3.255.4/32
!
interface Management1
   description oob_management
   vrf MGMT
   ip address 192.168.2.106/24
!
interface Vlan110
   description Tenant_A_OPZone_1
   vrf Tenant_A_OPZone
   ip address virtual 10.1.10.1/24
   ip address virtual 10.1.100.1/24 secondary
!
interface Vlan111
   description Tenant_A_OPZone_2
   vrf Tenant_A_OPZone
   ip address virtual 10.1.11.1/24
!
interface Vlan210
   description Tenant_B_OPZone_1
   vrf Tenant_B_OPZone
   ip address virtual 10.2.10.1/24
!
interface Vlan211
   description Tenant_B_OPZone_2
   vrf Tenant_B_OPZone
   ip address virtual 10.2.11.1/24
!
interface Vlan310
   description Tenant_C_OPZone_1
   vrf Tenant_C_OPZone
   ip address virtual 10.3.10.1/24
!
interface Vlan311
   description Tenant_C_OPZone_2
   vrf Tenant_C_OPZone
   ip address virtual 10.3.11.1/24
!
interface Vlan4093
   description LEAF_PEER_L3_iBGP
   ip address 10.255.251.4/31
!
interface Vlan4094
   description MLAG_PEER
   ip address 10.255.252.4/31
!
interface Vxlan1
   vxlan source-interface Loopback1
   vxlan udp-port 4789
   vxlan vlan 110 vni 10110
   vxlan vlan 111 vni 10111
   vxlan vlan 210 vni 10210
   vxlan vlan 211 vni 10211
   vxlan vlan 310 vni 10310
   vxlan vlan 311 vni 10311
   vxlan vrf Tenant_A_OPZone vni 50101
   vxlan vrf Tenant_B_OPZone vni 50201
   vxlan vrf Tenant_C_OPZone vni 50301
!
ip virtual-router mac-address 00:dc:00:00:00:01
ip address virtual source-nat vrf Tenant_A_OPZone address 10.1.255.4
ip address virtual source-nat vrf Tenant_B_OPZone address 10.2.255.4
ip address virtual source-nat vrf Tenant_C_OPZone address 10.3.255.4
!
ip route vrf MGMT 0.0.0.0/0 192.168.2.1
!
ip routing
no ip routing vrf MGMT
ip routing vrf Tenant_A_OPZone
ip routing vrf Tenant_B_OPZone
ip routing vrf Tenant_C_OPZone
!
ip prefix-list PL-LOOPBACKS-EVPN-OVERLAY
   seq 10 permit 192.168.255.0/24 eq 32
   seq 20 permit 192.168.254.0/24 eq 32
!
ip prefix-list PL-P2P-UNDERLAY
   seq 10 permit 172.31.255.0/24 le 31
   seq 20 permit 10.255.251.0/24 le 31
!
mlag configuration
   domain-id H_LEAF2
   local-interface Vlan4094
   peer-address 10.255.252.5
   peer-link Port-Channel3
!
route-map RM-CONN-2-BGP permit 10
   match ip address prefix-list PL-LOOPBACKS-EVPN-OVERLAY
!
route-map RM-CONN-2-BGP permit 20
   match ip address prefix-list PL-P2P-UNDERLAY
!
router bgp 65102
   router-id 192.168.255.4
   no bgp default ipv4-unicast
   distance bgp 20 200 200
   maximum-paths 2 ecmp 2
   neighbor EVPN-OVERLAY-PEERS peer group
   neighbor EVPN-OVERLAY-PEERS remote-as 65001
   neighbor EVPN-OVERLAY-PEERS update-source Loopback0
   neighbor EVPN-OVERLAY-PEERS bfd
   neighbor EVPN-OVERLAY-PEERS ebgp-multihop 3
   neighbor EVPN-OVERLAY-PEERS password 7 Jvf4RYGH+51PCxaLRIwJLA==
   neighbor EVPN-OVERLAY-PEERS send-community
   neighbor EVPN-OVERLAY-PEERS maximum-routes 0
   neighbor IPv4-UNDERLAY-PEERS peer group
   neighbor IPv4-UNDERLAY-PEERS remote-as 65001
   neighbor IPv4-UNDERLAY-PEERS password 7 euk/Aq5jGSKaHeBB3dpt4A==
   neighbor IPv4-UNDERLAY-PEERS send-community
   neighbor IPv4-UNDERLAY-PEERS maximum-routes 12000
   neighbor MLAG-IPv4-UNDERLAY-PEER peer group
   neighbor MLAG-IPv4-UNDERLAY-PEER remote-as 65102
   neighbor MLAG-IPv4-UNDERLAY-PEER next-hop-self
   neighbor MLAG-IPv4-UNDERLAY-PEER password 7 XOF6i6+qGGIs6rLk2hODlg==
   neighbor MLAG-IPv4-UNDERLAY-PEER send-community
   neighbor MLAG-IPv4-UNDERLAY-PEER maximum-routes 12000
   neighbor 10.255.251.5 peer group MLAG-IPv4-UNDERLAY-PEER
   neighbor 172.31.255.4 peer group IPv4-UNDERLAY-PEERS
   neighbor 172.31.255.6 peer group IPv4-UNDERLAY-PEERS
   neighbor 192.168.255.1 peer group EVPN-OVERLAY-PEERS
   neighbor 192.168.255.2 peer group EVPN-OVERLAY-PEERS
   redistribute connected route-map RM-CONN-2-BGP
   !
   vlan 110
      rd 192.168.255.4:10110
      route-target both 10110:10110
      redistribute learned
   !
   vlan 111
      rd 192.168.255.4:10111
      route-target both 10111:10111
      redistribute learned
   !
   vlan 210
      rd 192.168.255.4:10210
      route-target both 10210:10210
      redistribute learned
   !
   vlan 211
      rd 192.168.255.4:10211
      route-target both 10211:10211
      redistribute learned
   !
   vlan 310
      rd 192.168.255.4:10310
      route-target both 10310:10310
      redistribute learned
   !
   vlan 311
      rd 192.168.255.4:10311
      route-target both 10311:10311
      redistribute learned
   !
   address-family evpn
      neighbor EVPN-OVERLAY-PEERS activate
      no neighbor IPv4-UNDERLAY-PEERS activate
      no neighbor MLAG-IPv4-UNDERLAY-PEER activate
   !
   address-family ipv4
      no neighbor EVPN-OVERLAY-PEERS activate
      neighbor IPv4-UNDERLAY-PEERS activate
      neighbor MLAG-IPv4-UNDERLAY-PEER activate
      network 192.168.123.4/32
   !
   vrf Tenant_A_OPZone
      rd 192.168.255.4:50101
      route-target import 50101:50101
      route-target export 50101:50101
      redistribute connected
   !
   vrf Tenant_B_OPZone
      rd 192.168.255.4:50201
      route-target import 50201:50201
      route-target export 50201:50201
      redistribute connected
   !
   vrf Tenant_C_OPZone
      rd 192.168.255.4:50301
      route-target import 50301:50301
      route-target export 50301:50301
      redistribute connected
!
management api http-commands
   no shutdown
   !
   vrf MGMT
      no shutdown
!
end
