Académique Documents
Professionnel Documents
Culture Documents
Virtual Router
Redundancy Protocol
(VRRP)
The Virtual Router Redundancy Protocol (VRRP)
routing switch.
Introduction to VRRP
VRRP transfers the responsibility of routing from one
router to another if the original router goes down. In
other words, it provides backup for a router connecting
a network to the outside world.
drop it. The MAC address associated with Skew_time = (256 – Priority) / 256 The backup will give the master little
224.0.0.18 is 01-00-5e-00-00-12, so all more than 9 seconds, which gives
From the above information, you can see
the packets for multicast IP are sent to the master three chances to send an
that the master gets three chances to send
this MAC address. advertisement, before it takes over. After
an advertisement before the backup takes
Once the Passport routing switches over as a master. This means that VRRP (9 + 156/256) seconds, RS2 declares itself
receive this multicast, they will stay in (by default) will converge in 3 seconds. to be the master.
backup state and monitor advertisements Case 2: This is a situation where the
Following are the three situations where
from the master to ensure that the master network manager either shuts down the
a backup router takes over as master:
is functioning. The backup routing switch interface connecting to the LAN, or turns
has Master_Advertisement_Timer, which Case 1: The master goes down due to a
off VRRP on the master routing switch.
starts after it receives an advertisement. problem. The main thing to realize here In a case like this, the master sends out
This timer helps the backup routing is that the master routing switch interface an advertisement with priority equal to 0.
switches to calculate if the master has just dies. In a case like this, the backup This is a message for the backup routing
gone down; if so, it declares itself as the routing switches will wait until the switches — one needs to take up the role
master. The master, on the other hand, Master_Down_Timer times out, and of the master, and not wait until the
has its own timer — called then will take over as the master. Master_Down_Timer times out.
In this case, VRRP is turned off on RS1.
Figure 3: A Configuration with More than One Backup Routing Switch. Therefore, RS1 sends an advertisement
to the multicast address with the priority
equal to 0. This informs the backup
routing switches that the master has gone
down, and one of the backup RS needs to
Host A Routing Switch 1
200.1.1.1/24
take over as the master. In this example,
200.1.1.12/24
Master
it would be RS2 that becomes the new
master, and sends out an advertisement
Internet
to the multicast address declaring itself
Host B Routing Switch 2
200.1.1.2
Router R as the master.
200.1.1.11/24
Backup
Now, consider a slightly different
scenario. What if there is more than one
backup routing switch? See Figure 3.
Host C Routing Switch 3
200.1.1.13/24 200.1.1.10/24
Backup
Host A Host D
200.1.1.12/24
Routing Switch 1
200.1.1.1/24
Master
Router R
Host B
200.1.1.11/24
Routing Switch 2
200.1.1.2/24
Backup
Host C
200.1.1.10/24
Depending on your topology, you can address owned by a host that belongs to a first stage the routing switch goes through
also define a critical IP address in the subnet on the other side of the routing is the initialization stage. This involves the
configuration of the VRRP router. The switch, the routing switch replies with its following steps:
critical IP address is the address of an own interface MAC address. It then for- The routing switch looks at the virtual
interface link that affects the performance wards the packet to the destination host. IP address and determines if it is the
of the master routing switch, if this link With VRRP enabled, when the master master. If it owns that address, it realizes
goes down. If the interface that owns the receives an ARP request, it replies with the it is the master, and that its priority is
critical IP address goes down, the routing virtual router's MAC address and not the equal to 255.
switch steps down from being the master, actual physical address; thus, when the
If P is equal to 255, then the VRRP
and sends out an advertisement with responsibilities of master are switched to a
router:
priority equal to 0. If we do not define the different routing switch, the MAC address
critical IP address, the master remains as is the same. • Sends an ADVERTISEMENT
master, and (depending on the topology) declaring itself as the master
that might not be the best path anymore. A Brief Description • Broadcasts a gratuitous ARP with
This is explained in an example related to of the Different Stages the virtual router MAC address
Figure 6. of VRRP Routers (00-00-5E-00-01-<VRID>) to all the
You can also define critical IP addresses With the understanding of how VRRP IP addresses associated to the virtual
on the backup routing switches. In case works, we can summarize the different router's IP address
the master goes down, one of the backup stages through which a VRRP router goes. • Starts the advertisement timer
routing switches takes its place. If the There are three different stages a VRRP • Transitions to a master state
critical IP address of the backup is down, router goes through:
it does not declare itself as the master. If the priority is between 0 and 255,
• Initialize then the VRRP router:
You can only define one critical IP address
• Backup • Starts the Master_Down_Timer
on one Passport routing switch.
• Master • Transitions to a backup state
How Proxy ARP
Works with VRRP Figure 6: R1 is the Gateway for Hosts A – C, and R2 is the Gateway
a Passport routing switch running for Hosts D – F.
proxy ARP allows the hosts on different
networks to communicate with each other
as if they were on the same network. The Host A
Host C
Default gateway
on network Internet
is 200.1.1.1/24
Router R
Host D
Routing Switch 2
200.1.1.2/24
Backup – VRID 1
Master – VRID 2
Host E
Host F
Default gateway
on network
is 200.1.1.2/24
Figure 7: Example of Setting up Passport Routing Switches The configuration for RS2 is as follows,
for VRRP Routing. assuming that the Ethernet interface that
is being configured for VRRP is 2/3:
ethernet 2/3 ip vrrp 1 address 205.1.1.1/24
http:// www.nortelnetworks.com
*Nortel Networks, the Nortel Networks logo, the Globemark, How the World Shares Ideas, Unified Networks,
and Passport are trademarks of Nortel Networks. All other trademarks are the property of their owners.
© 2000 Nortel Networks. All rights reserved. Information in this document is subject to change without notice.
Nortel Networks assumes no responsibility for any errors that may appear in this document. Printed in USA.
WP3340-B / 04-00