Symptom
ARP/BUM traffic breaks in a VXLAN EVPN setup with QinVNI in use.
- ARP broadcast may get delivered with internal VLAN tag 4046 on remote Dot1Q tunnel port.
- ARP reply may get delivered without Customer VLAN tag.
- ARP may not be delivered at all on remote Dot1Q tunnel port.
Conditions
VXLAN EVPN with Ingress Replication for given Provide VLAN/VNI
QinVNI enabled on VPC VTEP over Orphan Port (dot1q tunnel port) in a VPC setup
Traffic on remote VPC VTEP with Orphan Dot1Q tunnel port arrives over peer-link
Workaround
Use VPC ports instead of Orphan ports. Issue is under investigation at this stage.
Further Problem Description
"system dot1q-tunnel transit" is required in a VPC setup for QinVNI associated features. However, in this case BUM traffic breaks with varying symptoms based on toggling of command "system dot1q-tunnel transit"