What's Changed
Learn about what changed in this release for QFX Series Switches.
EVPN
-
Limit on number of IP address associations per MAC address per bridge domain in EVPN MAC-IP database—By default, devices can associate a maximum of 200 IP addresses with a single MAC address per bridge domain. We provide a new CLI statement to customize this limit,
mac-ip-limitstatement at theedit protocols evpnhierarchy level. In most use cases, you do not need to change the default limit. If you want to change the default limit, we recommend that you do not set this limit to more than 300 IP addresses per MAC address per bridge domain. Otherwise, you might see very high CPU usage on the device, which can degrade system performance.See [ mac-ip-limit.]
General Routing
-
Change in options and generated configuration for the EZ-LAG configuration IRB subnet-address statement— With the EZ-LAG
subnet-address inetorsubnet-address inet6options at the [edit services evpn evpn-vxlan irb irb-instance] hierarchy, you can now specify multiple IRB subnet addresses in a single statement using the list syntaxaddr1 addr2 .... Also, in the generated configuration for IRB interfaces, the commit script now includes defaultrouter-advertisementstatements at the [edit protocols] hierarchy level for that IRB interface.
Infrastructure
-
Option to disable path MTU discovery— Path MTU discovery is enabled by default. To disable it for IPv4 traffic, you can configure the
no-path-mtu-discoverystatement at the [edit system internet-options] hierarchy level. To reenable it, use thepath-mtu-discoverystatement.[See Path MTU Discovery.]
Routing Protocols
-
Optimized mesh group routes (QFX5110, QFX5120, QFX5130, QFX5700 and ACX Series)— The
show route snoopingfor inet.1/inet6.1 table andshow route snooping table inet.1/inet6.1will display only CE mesh group routes for platforms that support EVPN-MPLS or EVPN-VXLAN multicast. In earlier releases, other mesh groups like the VE mesh group were also displayed.
VPNs
-
Increase in revert-delay timer range— The
revert-delaytimer range is increased to 600 seconds from 20 seconds.[See min-rate.]
-
Configure min-rate for IPMSI traffic explicitly— In a source-based MoFRR scenario, you can set a min-rate threshold for IPMSI traffic explicitly by configuring
ipmsi-min-rateunderset routing-instances protocols mvpn hot-root-standby min-rate. If not configured, the existingmin-ratewill be applicable to both IPMSI and SPMSI traffic.See [ min-rate.]