210
OSPF domain, and the route advertisement between them should use Type 3 LSAs (inter-AS
routes).
To solve the problem, the PE uses an extended BGP/OSPF interaction process called BGP/OSPF
interoperability to advertise routes from one site to another, differentiating the routes from real
AS-External routes. The process requires that extended BGP community attributes carry the
information for identifying the OSPF attributes.
Each OSPF domain must have a configurable domain ID. HP recommends that you configure the
same domain ID or adopt the default ID for all OSPF processes of the same VPN, so the system can
know that all VPN routes with the same domain ID are from the same VPN.
•
Routing loop detection
If OSPF runs between CEs and PEs and a VPN site is connected to multiple PEs, when a PE
advertises the BGP VPN routes learned from MPLS/BGP to the VPN site through LSAs, the LSAs
may be received by another PE, resulting in a routing loop.
To avoid routing loops, when creating Type 3 LSAs, the PE always sets the flag bit DN for BGP
VPN routes learned from MPLS/BGP, regardless of whether the PE and the CEs are connected
through the OSPF backbone. When performing route calculation, the OSPF process of the PE
ignores the Type 3 LSAs whose DN bit is set.
If the PE must advertise to a CE the routes from other OSPF domains, it must indicate that it is the
ASBR, and advertise the routes using Type 5 LSAs.
Sham link
Generally, BGP peers carry routing information on the MPLS VPN backbone through the BGP extended
community attributes. The OSPF that runs on the remote PE can use the information to create Type 3
summary LSAs to be transmitted to the CEs. As shown in
, both site 1 and site 2 belong to VPN
1 and OSPF area1. They are connected to different PEs, PE 1 and PE 2. There is an intra-area OSPF link
called backdoor link between them. In this case, the route connecting the two sites through PEs is an
inter-area route. It is not preferred by OSPF because its preference is lower than that of the intra-area
route across the backdoor link.
Figure 63
Network diagram for sham link
To solve the problem, you can establish a sham link between the two PEs so the routes between them over
the MPLS VPN backbone become an intra-area route.
The sham link acts as an intra-area point-to-point link and is advertised through the Type 1 LSA. You can
select a route between the sham link and backdoor link by adjusting the metric.
The sham link is considered the link between the two VPN instances with one endpoint address in each
VPN instance. The endpoint address is a loopback interface address with a 32-bit mask in the VPN