SD-WAN

nevermind wind, no matter rain

Velocloud Virtual Edge HA in Alibaba Cloud with HaVip

Topology for demonstration

VCE version: R5241-20241112-GA-5008849603

The following diagram shows the topology for demonstration

Figure 1 – Topology for demonstration

In the Alibaba Cloud VPC, there are two virtual edges, where Ali-HKVCE-Pri is the primary VCE and Ali-HKVCE-Sec is the secondary VCE. Let’s check the static route setting:

Figure 2 – Primary VCE static routes 10.200.190.0/24 where the cost is 0
Figure 3 – Secondary VCE static routes 10.200.190.0/24 where the cost is 10

Both VCEs advertise the VPC subnet 10.200.190.0/24 where the primary VCE advertise with a cost 0 and secondary VCE advertise with a cost 10, since lower cost is preferred, the remote site will prefer primary VCE. This is just a precaution because the secondary VCE Ali-HKVCE-Sec will not advertise the 10.200.190.0/24 because the LAN interface is down.

There is a spoke site called RT-Spoke1 with both Ali-HKVCE-Pri and Ali-HKVCE-Sec assigned as hub site. The RT-Spoke1 is with a LAN subnet 10.11.1.0/24. There is a PC with IP address 10.11.1.99 attached to the LAN side of RT-Spoke1, this PC will also initiate ping for the testing. Let’s check the tunnel and route in the RT-Spoke1 to confirm it is able to learn the route 10.200.190.0/24 from the primary VCE Ali-HKVCE-Pri:

Figure 4 – tunnels status at RT-Spoke1
Figure 5 – route 10.200.190.0/24 status at RT-Spoke1

From the above, RT-Spoke1 is able to form tunnels to both Ali-HKVCE-Pri and Ali-HKVCE-Sec. RT-Spoke1 only learn 10.200.190.0/24 from Ali-HKVCE-Pri, this is because Ali-HKVCE-Sec LAN interface is shutdown so Ali-HKVCE-Sec will not advertise 10.200.190.0/24.

Velocloud Virtual Edge HA in Alibaba Cloud with HaVip

Leave a Reply

Your email address will not be published. Required fields are marked *

Scroll to top