i tried to simulate this in citc , but leaf03 is behaving erratically with no output showing in "net show evpn vni" whereas leaf01 and leaf02 do show the vni's in the "net show evpn vni" output.
configs for leaf01, leaf02, leaf03, spine01 and spine02 along with the diagram can be viewed here https://drive.google.com/open?id=1yrIZy-6F_VYF6V0PyN7LsgodaUR_4Wdn
Need to implement this solution , except that spine01 and spine02 will be replaced by firewalls running gre over ipsec in the real world design.
is this supported ?
I have a case (8704) open for this , but thought of seeking help from the community too.
Best answer by Vikram A
leaf03 was missing "advertise-all-vni" under evpn address-family. Support identified this for me and everything started working fine from then on. View original