Wednesday, January 24, 2018

Help: OSPF Routed Access in Campus LAN Routed Access Design.

Hi,

We are refreshing our devices to Cat9000 series switches. The Access switches are 9300 with Network Essentials license while our Core will be 9500 with Network Advantage license. NE license is capable of "OSPF Routed Access" while NA is capable of "Full OSPF".

The LAN will be 2-tier collapsed core design and we are heavily considering Routed Access. We plan to put the Access Layer switches in Stub Area. The core is in Area 0 (with WAN routers) and acts as the ABR.

The OSPF Routed Access' limitation is 200 dynamic routes. Our challenge is that we will receive 8K routes from our WAN link (unfortunately out of my control to summarize from the source).

Question:

  • How the ABR will summarize the 8K routes that will be advertised to Stub Area?

To make things more complicated, one particular switch block will be three-tier, Core<-->Fortigate Firewall<-->Access Stack. Fortigate will act as the distribution and also participate in OSPF.

Question:

  • Can Fortigate support Totally Stub Area?

  • How to configure an Area to be Totally Stub Area? Is it correct that the "no-summary" command should only be configured in the ABR?

Info: As of this writing, the 9500-40X (10G) series are not yet capable of StackwiseVirtual (ie. VSS). So a Layer 2 network that heavily relies on STP and HSRP will make an uplink to blocking link instead. Besides, the NE license already supports "OSPF Routed Access" so no additional cost. NE being the lowest license we can get for Cat9k series.

Thank you!

EDIT1: Specified Core model.



No comments:

Post a Comment