Configuring Q-in-Q BPDU Tunneling

Complete the following steps to configure BPDU tunneling over Q-in-Q.

  1. Enter the configure terminal command to enter global configuration mode.
    device# configure terminal
  2. Enable BPDU tunneling on tag-profile enabled port or Selective Q-in-Q enabled port.
    • Enable BPDU tunneling on a tag-profile-enabled port.
      device(config)# interface ethernet 1/1/1
      device(config-if-e1000-1/1/1)# tag-profile enable
      device(config-if-e1000-1/1/1)# l2protocol dot1q-tunnel
    • Enable BPDU tunneling on a Selective Q-in-Q-enabled port.
      device(config)# interface ethernet 1/1/1
      device(config-if-e1000-1/1/1)# qinq-tunnel cvlan 1 to 4 untag svlan 100
      device(config-if-e1000-1/1/1)# l2protocol dot1q-tunnel
    Optionally, you can enable STP (PVST, RSTP, MSTP), LACP, CDP or LLDP tunneling.
    Note: ICX provides a flexibility of configuring BPDU tunneling without tag profile and selective Q in Q. This is specially for situations where the BPDU tunneling is enabled in the transit devices.
  3. (Optional) Configure the maximum number of packets that can be processed on an interface before being dropped.
    device(config-if-e1000-1/1/1)# l2protocol dot1q-tunnel drop-threshold all 3000
  4. (Optional) Configure the maximum number of packets that can be processed on an interface before putting the ingress port in error-disabled state.
    device(config-if-e1000-1/1/1)# l2protocol dot1q-tunnel shutdown-threshold all 3500
  5. Enter the exit command to return to global configuration mode.
    device(config-if-e1000-1/1/1)# exit
    device(config)#
  6. (Optional) Specify the multicast MAC address for the tunnel from the global configuration mode.
    device(config)# l2protocol dot1q-tunnel-mac 0100.1a2b.3c4d
    Statement has been reworded. Is this statement still correct?

    The default MAC value is 0100.0ccd.cdd1. You can also specify to use the original MAC address in the packet as tunnel MAC address using the original option. The original option must not be used if any vendor consumes standard BPDU as it may result in protocol packet consumption.

  7. (Optional) Specify a global Class of Service (CoS) value on all Q-in-Q tunneling ports from the global configuration mode. .
    device(config)# l2protocol dot1q-tunnel cos 6
    The ingress BPDUs on the tunnel ports are encapsulated with the specified class. The default CoS value is 5.

The following example shows the steps to configure Q-in-Q BPDU tunneling.

device# configure terminal
device(config)# interface ethernet 1/1/1
device(config-if-e1000-1/1/1)# tag-profile enable
device(config-if-e1000-1/1/1)# l2protocol dot1q-tunnel
device(config-if-e1000-1/1/1)# l2protocol dot1q-tunnel drop-threshold all 3000
device(config-if-e1000-1/1/1)# l2protocol dot1q-tunnel shutdown-threshold all 3500
device(config-if-e1000-1/1/1)# exit
device(config)# l2protocol dot1q-tunnel-mac 0100.1a2b.3c4d
device(config)# l2protocol dot1q-tunnel cos 6

The following example shows the steps to configure BPDU tunneling on Selective Q-in-Q-enabled port .

device# configure terminal
device(config)# interface ethernet 1/1/1
device(config-if-e1000-1/1/1)# qinq-tunnel cvlan 1 to 4 untag svlan 100
device(config-if-e1000-1/1/1)# l2protocol dot1q-tunnel
device(config-if-e1000-1/1/1)# l2protocol dot1q-tunnel drop-threshold all 3000
device(config-if-e1000-1/1/1)# l2protocol dot1q-tunnel shutdown-threshold all 3500
device(config-if-e1000-1/1/1)# exit
device(config)# l2protocol dot1q-tunnel-mac 0100.1a2b.3c4d
device(config)# l2protocol dot1q-tunnel cos 6

Note: The l2protocol dot1q-tunnel enables protocol tunneling for xSTP, LACP, LLDP, CDP, and VTP.