Administrator Guide

Table Of Contents
In this RIOT scheme, whenever R1 tries to reach R2, the packet gets to P1 on VTEP 1 with VLAN 10 and gets routed out of P2
on VLAN 20. VTEP 1 sends an ARP request for R2 (10.1.2.1) through P2. This request gets VXLAN encapsulated at P3 and is
sent out of P4. Eventually, the native ARP request reaches R2.
R2 sends an ARP response that is VXLAN encapsulated at VTEP 2. This response reaches VTEP 1 on P4 with a VXLAN
encapsulation. At this point, the ARP response is de-capsulated at P4. The native ARP response egresses through P3 and
re-enters through P2. The ARP is then resolved pointing to P2.
After this ARP discovery is complete, the existing routing and VXLAN encapsulation mechanisms facilitate routing over VXLAN
tunnels between R1 and R2.
NOTE: VXLAN feature is not supported in a stacking environment
Internal Loopback for VXLAN RIOT
The following topology shows how VXLAN RIOT can be achieved using an internal loopback port channel. Internal loopback
port-channel is formed by adding the free ports in the device as a member to the vxlan loopback port-channel. There is no need
for non-vxlan loopback port-channel in this scenario.
When you ping for 10.1.2.1 (Vlan 20s IP on R2) from R1, the packet would get to P1 on VTEP 1 with Vlan 10, and try to get
routed out of P2 on Vlan 20.
VTEP 1 sends an ARP request for 10.1.2.1 out of P2. This gets VXLAN encapsulated at P2, and gets sent out of P3.
VXLAN encapsulated ARP request lands on VTEP 2 which is decapsulated and sent out of P5 and P6.
Packets looped back to P5 will not be forwarded again to either to P4 or P6 because of the added ACL rule 4.4.3.
R2 sends an ARP response that gets VXLAN encapsulated at VTEP 2, and reaches VTEP 1 on P4 with a VXLAN
encapsulation.
At this point, wed de-capsulate at P3, the native ARP response gets looped back via P2 , and the ARP gets resolved on P2.
Once this is complete, the existing routing and VXLAN encapsulation mechanism facilitates routing over VXLAN tunnels
between R1 and R2.
Restrictions
In case the topology has a spanning tree configuration, Please enable the no spanning-tree CLI in both, the vxlan and non
vxlan loopback port-channel.
1036
Virtual Extensible LAN (VXLAN)