Example: Configuring VLAN-Aware Pseudowire Head-End Termination with EVPN VPWS and ELAN Services

This configuration example demonstrates how to implement VLAN-aware pseudowire head-end termination (PWHT) that integrates EVPN Virtual Private Wire Service (VPWS) on the access side with EVPN Ethernet LAN (ELAN) services on the service side, enabling flexible Layer 2 VPN service delivery with multi-homing support.Figure 1 shows a diagram of VLAN-Aware PWHT traffic flowing into an EVPN ELAN instance.

Figure 1: VLAN-Aware PWHT into EVPN ELAN Traffic Flow VLAN-Aware PWHT into EVPN ELAN Traffic Flow

Prerequisites

  • Supported hardware platforms with EVPN and PS interface capabilities

  • Minimum Junos OS release supporting EVPN VPWS and PS interfaces

  • EVPN license requirements and Advanced Layer 2 services license requirements

  • Basic understanding of EVPN, VPWS, and ELAN technologies

  • Configured MPLS core network with BGP EVPN address family

  • Physical connectivity between access interfaces and customer equipment

CLI Quick Configuration

CLI Quick Configuration

Edit the below configuration to fit your implementation, then copy and paste the edited code into Junos OS via a command-line interface.

Access Side Configuration

Service Side Configuration - EVPN-VPWS Termination

Service Side Configuration - Individual EVPN Instances

Alternate Service Side Configuration - Virtual Switch

Step-by-Step: Access Side Device Configuration

  1. Configure channelized interfaces on the access side device
    1. Configure the first channelized 10GE interface for customer connectivity:
    2. Configure VLAN mapping for service provider VLAN normalization:
    3. Configure the second channelized 10GE interface:
    4. Configure VLAN mapping for the second interface:
  2. Configure Aggregated Ethernet Interface
    1. Configure basic AE interface parameters:
    2. Configure ESI for EVPN multi-homing:
    3. Configure LACP parameters:
    4. Configure logical units on the AE interface:
  3. Configure EVPN-VPWS Instance
    1. Create the EVPN-VPWS routing instance:
    2. Configure EVPN parameters for flexible cross-connect:
    3. Associate access interfaces with the EVPN-VPWS instance:
    4. Configure route distinguisher and VRF target:

Step-by-Step: Service Side Device Configuration

  1. Configure service side PS interface
    1. Configure the PS interface anchor point and basic parameters:
    2. Configure ESI for service side multi-homing:
    3. Configure transport IFL:
    4. Configure service IFLs for EVPN services:
  2. Configure service side EVPN-VPWS termination
    1. Associate PS interface with the EVPN-VPWS instance:
    2. Configure service side EVPN-VPWS parameters:
    3. Configure service side route distinguisher and VRF target:
  3. Configure individual EVPN instances
    1. Create the first EVPN instance:
    2. Create the second EVPN instance:
  4. Configure Virtual Switch Instance (if used):
    1. Create the virtual switch routing instance:
    2. Configure bridge domains within the virtual switch:

Verification

Use these commands individually, instead of as a block of commands.

  1. Verify Interface Status
    1. Check the status of access side interfaces:

      show interfaces xe-0/0/2:0 terse

      show interfaces xe-0.0.2:1 terse

      show interfaces ae0 terse

    2. Verify PS interface status:

      show interfaces ps0 terse

      show interfaces ps0 detail

  2. Verify EVPN-VPWS Status
    1. Check EVPN-VPWS instance status:

      show evpn instance VPWS-FXC-AWARE extensive

      show evpn vpws-service-id

    2. Verify EVPN routes:

      show route table VPWS-FXC-AWARE.evpn.0

      show route advertising-protocol bgp neighbor-address table VPWS-FXC-AWARE.evpn.0

  3. Verify ESI and Multi-Homing
    1. Check ESI status and designated forwarder election:

      show evpn ethernet-segment

      show evpn ethernet-segment esi 00:11:11:11:11:11:11:11:11:11

      show evpn ethernet-segment esi 00:22:22:22:22:22:22:22:22:22

  4. Verify EVPN E-LAN Services
    1. For individual EVPN intances:

      show evpn instance RI-EVPN-2001

      show evpn instance RI-EVPN-2002

      show route table RI-EVPN-2001.evpn.0

      show route table RI-EVPN-2002.evpn.0

    2. For virtual switch configurations:

      show evpn instance RI-VSWITCH

      show bridge domain

      show route table RI-VSWITCH.evpn.0

  5. Verify end-to-end connectivity
    1. Test Layer 2 connectivity across the EVPN network:

      ping customer-ip-address interface interface-name

      show evpn mac-table

      show bridge mac-table