Location via proxy:   [ UP ]  
[Report a bug]   [Manage cookies]                
Download as pdf or txt
Download as pdf or txt
You are on page 1of 55

SHARING SESSION

HUAWEI NE8000 M SERIES


Agenda
1 Huawei NE8000 M Portfolio

2 Hardware Overview

3 Sample Topology

4 Action Steps

5 Based Configuration & Verification

6 References
HUAWEI NE8000 M PORTFOLIO

3
HUAWEI NE8000 M14 PORTOFOLIO
Overview

HUAWEI NetEngine 8000 M14 all-scenario intelligent router is a high-end intelligent


router launched by Huawei for the industry. It is mainly used in access and aggregation
scenarios to form an intelligent and simplified IP bearer network solution with
simplified architecture, intelligent connection, and committed high availability. The
details are as follows:

(1) The NetEngine 8000 M14 breaks through multiple technical difficulties, such as
ultra-high-speed signal transmission, super heat dissipation, and efficient power
supply. It achieves a compact and large capacity of 5U/2T bit/s and 220 mm. It is the
most compact router in the industry. Supports a full series of interfaces to meet the
traffic growth and diversified service access requirements in the cloud era. Currently,
Ethernet, SDH and PDH interfaces are supported, and PCM interfaces are supported in
the roadmap. NetEngine 8000 M14 is a full-scenario converged platform that supports
home broadband, private line, mobile bearer, and cloud bearer scenarios, simplifying
network layers and complexity. The network slicing (FlexE) function implements multi-
purpose and comprehensive bearer on one network.

NetEngine 8000 M14 Basic Configuration (Includes NetEngine 8000 M14 Chassis,2*IPU-1T2-A, 2*DC
Power,without Software Charge and Document)
FEATURE SPECIFICATIONS

5
FEATURE SPECIFICATIONS

6
FEATURE SPECIFICATIONS
Product Features

7
FEATURE SPECIFICATIONS
Product Features
FEATURE SPECIFICATIONS
Power Consumption

Typical Power Maximum power Heat


Weight(kg)
Consumption(W) consumption(W) Consumption(BTU/h)

466.88 953.26 1429.32 21.29

9
HUAWEI NE8000 M1A PORTOFOLIO
NetEngine 8000 M1A is a high-density compact router designed for the cloud era. It's featured
with 1U height, 220 mm depth, and supports up to 176G port capacity. The compact design saves
precious space resources. It supports flexible service access of 10GE and GE (optical and electrical
ports) and supports features such as SRv6, EVPN, Telemetry, and 1588v2 high-precision clock,
which is the best choice for multi-service high-density bearer in the future cloud era.

feature
• Compact Size High-density GE Ports
1 U,220mm,176Gbps Max 16*10GE/32*GE

• Programmable Protocol Simplification


NetEngine 8000 offers leading IPv6-based SRv6 capabilities to effectively deal with large numbers of connections.
Cross-domain automatic connections implement one-hop access to the cloud, while minute-level service
provisioning, and both tenant and application-level Service Level Agreements (SLAs) guarantee improved user
experiences, ensuring smooth evolution from MPLS to SRv6.

• Full-Lifecycle Automation
Full-lifecycle automation is implemented through NCE, a next generation, high availability O&M system. NCE and
SRv6 work together to implement 50 ms protection switching, minute-level traffic optimization, second-level fault
identification, and minute-level fault locating, significantly improving network availability and enabling enterprise
customers to implement proactive and intelligent network O&M.
10
HARDWARE OVERVIEW

11
HARDWARE OVERVIEW
HUAWEI NE8000 M1A DC

12
HARDWARE OVERVIEW

13
HARDWARE OVERVIEW

14
HARDWARE OVERVIEW

15
HARDWARE OVERVIEW

16
HARDWARE OVERVIEW

17
HARDWARE OVERVIEW

18
HARDWARE OVERVIEW

19
HARDWARE OVERVIEW

Management Interface

ETH/OAM: 10M/100M auto-negotiation Ethernet NM interface or non-RS-232-standard


console interface, which uses RJ-45 connector.

ALMI/ALMO: Alarm input and output interface , which uses RJ-45 connector.

CLK: CLK/1PPS interface for input or output of 2-Mbit / s clock signals, 2-MHz clock signals or
1 PPS signals , which uses RJ45 connector.

TOD: TOD interface, single channel 1PPS + TOD time signal input or output / single channel
DCLS input and output , which uses RJ45 connector.
20
TOPOLOGY

21
TOPOLOGY
CABANG MEDAN

22
TOPOLOGY
POP KAJA BANDING AGUNG

23
TOPOLOGY POP GI GANDUS

24
TOPOLOGY
POP GI GANDUS

25
TOPOLOGY POP KAJA SP PADANG

26
TOPOLOGY
POP KAJA SP PADANG

27
TOPOLOGY POP GUMAWANG

28
TOPOLOGY
POP GUMAWANG

29
TOPOLOGY POP PUSTU PERANGINAN

30
TOPOLOGY
POP PUSTU PERANGINAN

31
ACTION STEPS

32
BASED CONFIGURATION

33
BASED CONFIGURATION
SYSTEM-VIEW
[CLOCK]
clock timezone WIB add 07:00:00

[HOSTNAME]
sysname [HOSTNAME]

[LICENSE for M1A]


license
active port-basic slot 2 port 0-31
error-down auto-recovery cause bpdu-protection interval 30

lldp enable

undo dns resolve


undo dhcp enable
undo http server enable
34
undo http secure-server enable
BASED CONFIGURATION
[NTP]

ntp-service server disable


ntp-service ipv6 server disable
ntp-service server source-interface all disable
ntp-service ipv6 server source-interface all disable
ntp source-interface LoopBack 0
ntp-service unicast-server 10.14.4.2
ntp-service unicast-server 10.14.4.23

info-center logbuffer size 1024


info-center loghost 10.14.4.4
info-center loghost 10.14.4.3
info-center loghost 10.14.4.15
info-center loghost 10.14.3.108

35
BASED CONFIGURATION
[AAA]
hwtacacs-server template icontacacs
hwtacacs-server authentication 10.14.4.7
hwtacacs-server authorization 10.14.4.7
hwtacacs-server accounting 10.14.4.7
hwtacacs-server authentication 10.14.4.8 secondary
hwtacacs-server authorization 10.14.4.8 secondary
hwtacacs-server accounting 10.14.4.8 secondary
hwtacacs-server user-name original
hwtacacs-server shared-key cipher iC0N-IPmpls+
hwtacacs-server source-ip 192.168.XXX.XXX
aaa
authentication-scheme icontacacs
authentication-mode hwtacacs local
authorization-scheme icontacacs
authorization-mode hwtacacs local
authorization-cmd 0 hwtacacs local
authorization-cmd 1 hwtacacs local
authorization-cmd 15 hwtacacs local
recording-scheme icontacacs
recording-mode hwtacacs icontacacs
cmd recording-scheme icontacacs
accounting-scheme icontacacs
36
accounting-mode hwtacacs
accounting start-fail online
BASED CONFIGURATION
aaa
local-user icon123 password irreversible-cipher Huawei@123
local-user icon123 service-type ftp terminal telnet ssh
local-user icon123 level 3
local-user icon123 state block fail-times 3 interval 5

domain default_admin
authentication-scheme icontacacs
authorization-scheme icontacacs
accounting-scheme icontacacs
hwtacacs-server icontacacs
interface LoopBack 0
ip address 192.168.XXX.XXX 255.255.255.255

user-interface vty 0 4
idle-timeout 5 0
protocol inbound all
37
BASED CONFIGURATION
[Telnet & SSH]

telnet server enable


telnet server-source all-interface

stelnet server enable


sftp server enable
snetconf server enable
sftp server default-directory cfcard:/
ssh user icon123
ssh user icon123 authentication-type all
ssh user icon123 service-type all
ssh user icon123 sftp-directory cfcard:/
ssh server-source -i Ethernet0/0/0
ssh server-source -i LoopBack0
ssh server-source all-interface
ssh ipv6 server-source all-interface
ssh server ip-block disable
ssh authorization-type default aaa
ssh server cipher aes256_gcm aes128_gcm aes256_ctr aes192_ctr aes128_ctr
ssh server hmac sha2_512 sha2_256_96 sha2_256 sha1 sha1_96 md5 md5_96
ssh server key-exchange dh_group_exchange_sha256 dh_group_exchange_sha1 dh_group14_sha1 ecdh_sha2_nistp256 ecdh_sha2_nistp384 ecdh_sha2_nistp521
ssh server publickey ecc rsa
ssh server dh-exchange min-len 2048
ssh client first-time enable
ssh client publickey ecc rsa
ssh client cipher aes256_gcm aes128_gcm aes256_ctr aes192_ctr aes128_ctr
38 ssh client hmac sha2_512 sha2_256_96 sha2_256 sha1 sha1_96 md5 md5_96
ssh client key-exchange dh_group_exchange_sha256 dh_group_exchange_sha1 dh_group14_sha1 ecdh_sha2_nistp256 ecdh_sha2_nistp384 ecdh_sha2_nistp521
BASED CONFIGURATION
[HEADER]
header shell file cfcard:/Head_Login_file.txt
header login file cfcard:/Head_Login_file.txt

INSIDE THAT FILE


......................................................................................................................
. .
. This system is the property of PT Indonesia Comnets Plus. .
. Access is allowed to authorized persons only. .
. Unauthorized access is prohibited. .
. All unauthorized attempt to access this system will be .
. logged and investigated. .
. Violators will be prosecuted in conformance with local law. .
. .
. ...:: NOT Integrated to IPSA yet ::... .
...................................................................................................................
. Maintenance Partner : HW .
. Email : .
. Hotline : .
....................................................................................................................

39
BASED CONFIGURATION
[SNMP]

snmp-agent community read IPMPLS-ICON+


snmp-agent trap source LoopBack 0
snmp-agent sys-info location [The physical location of this node]
snmp-agent sys-info version all

snmp-agent sys-info contact admin@iconpln.net.id


snmp-agent target-host trap address udp-domain 10.14.3.12 params securityname IPMPLS-ICON+
snmp-agent trap source LoopBack0

snmp-agent protocol source-status all-interface


undo snmp-agent protocol source-status ipv6 all-interface

undo snmp-agent proxy protocol source-status all-interface


undo snmp-agent proxy protocol source-status ipv6 all-interface

40
BASED CONFIGURATION
[MPLS]
bfd
mpls lsr-id 192.168.XXX.XXX

mpls
mpls te
mpls rsvp-te
mpls rsvp-te bfd all-interfaces enable
mpls rsvp-te bfd all-interfaces min-tx-interval 500 min-rx-interval 500 detect-multiplier 4
mpls rsvp-te hello
mpls rsvp-te srefresh
mpls te cspf
mpls bfd enable
mpls bfd-trigger fec-list bfd

mpls ldp
graceful-restart
41
md5-password cipher 192.168.xxx.xxx 1c0Nplu$
md5-password cipher 192.168.xxx.xxx 1c0Nplu$
BASED CONFIGURATION
[INTERFACE]
interface [INTERFACE-NAME]
description Link to [NEIGHBOR-HOSTNAME]
undo shutdown
mtu 9114
ip address [P2P-IP-ADDRESS] 255.255.255.252
ospf authentication-mode md5 1 cipher 1c0Nplu$
ospf network-type p2p
ospf timer hello 5
ospf timer dead 15
ospf enable 1 area 0.0.0.0
mpls
mpls te
mpls rsvp-te
mpls rsvp-te hello
mpls ldp
undo dcn

[QOS INTERFACE]
port-queue be wfq weight 39 outbound
42
port-queue af3 wfq weight 61 outbound
port-queue ef pq shaping shaping-percentage 35 outbound
BASED CONFIGURATION
[ROUTING]

ospf 100 router-id 192.168.XXX.XXX


bfd all-interfaces enable
bfd all-interfaces min-tx-interval 250 min-rx-interval 250 detect-multiplier 4 frr-binding
silent-interface LoopBack0
opaque-capability enable
bandwidth-reference 100000
frr
loop-free-alternate
area 0.0.0.XXX
network XXX.XXX.XXX.XXX 0.0.0.3
network XXX.XXX.XXX.XXX 0.0.0.3
network 192.168.XXX.XXX 0.0.0.0
mpls-te enable

43
BASED CONFIGURATION
bgp 65000
router-id 192.168.XXX.XXX
graceful-restart
peer 192.168.84.254 as-number 65000
peer 192.168.84.254 description JKT-GANDUL-JRR200-RR-01
peer 192.168.84.254 connect-interface LoopBack0
peer 192.168.84.254 password cipher 1c0Nplu$
peer 192.168.139.254 as-number 65000
peer 192.168.139.254 description JATIM-WARU-JRR200-RR-01
peer 192.168.139.254 connect-interface LoopBack0
peer 192.168.139.254 password cipher 1c0Nplu$

ipv4-family unicast
undo synchronization
peer 192.168.84.254 enable
peer 192.168.139.254 enable
44
BASED CONFIGURATION
[ACL]

acl number 2088


rule 5 permit source 10.14.4.4 0
rule 6 permit source 10.14.4.5 0
rule 7 permit source 10.14.3.11 0
rule 8 permit source 10.14.4.14 0
rule 9 permit source 10.14.3.30 0
rule 10 permit source 10.14.3.108 0
rule 11 permit source 172.23.140.10 0
rule 12 permit source 10.14.3.48 0
rule 13 permit source 10.14.3.14 0
rule 14 permit source 10.14.3.18 0
rule 15 permit source 10.14.3.19 0
rule 16 permit source 10.14.3.24 0
rule 17 permit source 10.14.3.25 0
rule 18 permit source 10.14.3.26 0
rule 19 permit source 192.168.25.0 0.0.0.255
rule 20 permit source 172.16.60.0 0.0.0.255
rule 21 permit source 172.16.61.0 0.0.0.255
rule 22 permit source 172.16.44.0 0.0.0.255
rule 23 permit source 172.16.62.0 0.0.0.255
rule 24 permit source 172.21.24.0 0.0.0.255
45
rule 25 permit source 172.21.2.0 0.0.0.255
BASED CONFIGURATION
rule 26 permit source 192.168.12.0 0.0.0.255
rule 27 permit source 192.168.27.0 0.0.0.255
rule 28 permit source 192.168.14.0 0.0.0.255
rule 29 permit source 172.21.7.0 0.0.0.255
rule 30 permit source 172.21.52.0 0.0.0.255
rule 31 permit source 172.21.19.0 0.0.0.255
rule 32 permit source 192.168.11.0 0.0.0.255
rule 33 permit source 172.21.12.0 0.0.0.255
rule 34 permit source 192.168.10.0 0.0.0.255
rule 35 permit source 192.168.19.0 0.0.0.255
rule 36 permit source 192.168.56.0 0.0.0.255
rule 37 permit source 172.21.31.0 0.0.0.255
rule 38 permit source 192.168.32.0 0.0.0.255
rule 39 permit source 172.16.48.0 0.0.0.255
rule 40 permit source 192.168.38.0 0.0.0.255
rule 41 permit source 172.16.50.0 0.0.0.255
rule 42 permit source 192.168.40.0 0.0.0.255
rule 43 permit source 172.16.46.0 0.0.0.255
rule 44 permit source 192.168.36.0 0.0.0.255
rule 45 permit source 192.168.15.0 0.0.0.255
rule 46 permit source 172.21.14.0 0.0.0.255
rule 47 permit source 172.21.32.0 0.0.0.255
46
rule 48 permit source 172.16.18.0 0.0.0.255
rule 49 permit source 172.16.255.0 0.0.0.255
rule 50 permit source 172.16.40.0 0.0.0.255
BASED CONFIGURATION
rule 51 permit source 172.16.42.0 0.0.0.255
rule 52 permit source 172.16.49.0 0.0.0.255
rule 53 permit source 172.16.51.0 0.0.0.255
rule 54 permit source 172.21.1.0 0.0.0.255
rule 56 permit source 172.21.18.0 0.0.0.255
rule 58 permit source 172.21.29.0 0.0.0.255
rule 59 permit source 172.21.30.0 0.0.0.255
rule 61 permit source 172.21.33.0 0.0.0.255
rule 62 permit source 172.21.46.0 0.0.0.255
rule 63 permit source 172.21.50.0 0.0.0.255
rule 64 permit source 172.21.6.0 0.0.0.255
rule 65 permit source 172.21.68.0 0.0.0.255
rule 66 permit source 172.30.1.0 0.0.0.255
rule 67 permit source 192.166.100.0 0.0.0.255
rule 68 permit source 192.166.130.0 0.0.0.255
rule 69 permit source 192.166.131.0 0.0.0.255
rule 70 permit source 192.166.132.0 0.0.0.255
rule 71 permit source 192.166.140.0 0.0.0.255
rule 72 permit source 192.166.141.0 0.0.0.255
rule 73 permit source 192.166.77.0 0.0.0.255
rule 75 permit source 192.168.100.0 0.0.0.255
rule 79 permit source 192.168.140.0 0.0.0.255
rule 80 permit source 192.168.142.0 0.0.0.255
47 rule 82 permit source 192.168.16.0 0.0.0.255
rule 83 permit source 192.168.17.0 0.0.0.255
rule 85 permit source 192.168.2.0 0.0.0.255
BASED CONFIGURATION
rule 86 permit source 192.168.254.0 0.0.0.255
rule 87 permit source 192.168.28.0 0.0.0.255
rule 88 permit source 192.168.30.0 0.0.0.255
rule 90 permit source 192.168.33.0 0.0.0.255
rule 91 permit source 192.168.35.0 0.0.0.255
rule 95 permit source 192.168.41.0 0.0.0.255
rule 96 permit source 192.168.42.0 0.0.0.255
rule 97 permit source 192.168.82.0 0.0.0.255
rule 98 permit source 202.158.70.0 0.0.0.255
rule 99 permit source 202.162.208.0 0.0.15.255
rule 100 permit source 192.168.0.0 0.0.0.255
rule 105 permit source 172.23.11.0 0.0.0.255
rule 110 permit source 172.23.73.0 0.0.0.255
rule 115 permit source 172.23.74.0 0.0.0.255
rule 120 permit source 192.168.139.0 0.0.0.255
rule 125 permit source 172.23.58.0 0.0.0.255

48
BASED CONFIGURATION
acl number 2098
rule 5 permit source 10.14.3.7 0
rule 6 permit source 10.14.4.4 0
rule 7 permit source 10.14.3.14 0
rule 8 permit source 10.14.3.12 0
rule 9 permit source 10.14.3.11 0
rule 10 permit source 10.14.3.23 0
rule 11 permit source 10.14.3.22 0
rule 12 permit source 10.14.3.20 0
rule 13 permit source 10.14.3.19 0
rule 14 permit source 10.14.3.18 0
rule 15 permit source 10.14.3.30 0
rule 16 permit source 10.14.3.26 0
rule 18 permit source 10.14.3.24 0
rule 19 permit source 10.14.3.47 0
rule 20 permit source 10.14.3.46 0
rule 21 permit source 10.14.3.44 0
rule 22 permit source 10.14.3.43 0
rule 23 permit source 10.14.3.42 0
rule 24 permit source 10.14.3.41 0
rule 25 permit source 10.14.3.40 0
rule 26 permit source 10.14.3.49 0
rule 27 permit source 10.14.3.48 0
49 rule 28 permit source 10.14.3.108 0
rule 29 permit source 10.14.3.119 0
rule 30 permit source 10.14.3.118 0
BASED CONFIGURATION
rule 31 permit source 10.14.3.117 0
rule 32 permit source 10.14.3.116 0
rule 33 permit source 10.14.3.122 0
rule 34 permit source 10.14.3.121 0
rule 35 permit source 10.14.3.156 0
rule 36 permit source 10.14.3.166 0
rule 37 permit source 10.14.3.207 0
rule 38 permit source 10.14.3.206 0
rule 39 permit source 10.14.3.205 0
rule 40 permit source 10.14.3.208 0
rule 41 permit source 10.14.3.244 0
rule 44 permit source 10.14.3.123 0
rule 45 permit source 10.14.3.124 0
rule 46 permit source 10.14.3.125 0
rule 47 permit source 10.14.3.126 0
rule 51 permit source 10.14.3.163 0
rule 52 permit source 10.14.3.160 0
rule 54 permit source 10.14.3.28 0
rule 55 permit source 10.14.3.157 0
rule 56 permit source 10.14.3.25 0
rule 57 permit source 10.14.3.106 0
rule 58 permit source 10.14.3.158 0
rule 59 permit source 10.14.3.162 0
50 rule 60 permit source 172.23.142.13 0
rule 61 permit source 172.23.58.6 0
rule 62 permit source 172.23.58.33 0
VERIFICATION

51
VERIFICATION
[LICENSE]

display license resource usage port-basic all

[SFP]

display optical brief


display optical-module base information interface GigabitEthernet 0/2/0
display optical-module base information interface GigabitEthernet 0/2/1

[INTERFACE STATUS]

display ip interface brief | no-more


display interface description | no-more

52
VERIFICATION
[OSPF]

display ospf peer brief


display ospf interface

[BGP]
display bgp all summary

[MPLS]
display mpls ldp session all

53
REFERENCES
• 3D Product Overview Huawei NE8000 M
https://info.support.huawei.com/info-finder/search-center/en/enterprise/routers/netengine-8000-pid-252772223

• Huawei NE8000 M14 Model


https://info.support.huawei.com/info-finder/search-center/en/enterprise/routers/netengine-8000-m14-pid-250517151/web3d

• Huawei NE8000 M1A Model


https://info.support.huawei.com/info-finder/search-center/en/enterprise/routers/netengine-8000-m1a-pid-250517160/web3d

• HUAWEI NetEngine 8000 M Hardware Guide


https://support.huawei.com/hedex/hdx.do?docid=EDOC1100259795&id=EN-US_CONCEPT_0000001198108785

• Huawei NetEngine 8000 M Brochure


https://e.huawei.com/en/material/bookshelf/bookshelfview/202003/25111416

• NetEngine 8000 M Product Documentation (Installation, Configuration. Commisioning,


Maintenance Guide)
https://support.huawei.com/hedex/hdx.do?docid=EDOC1100299060

54
THANK YOU!

55

You might also like