I have a blackhole security device injecting routes into my internet
boundary asr9k.. I see that the bgp prefixes are rcv'd on my 9k and the are
installed in the per-vrf rib.  The next hop for those routes are via a
directly connected interface towards the blackhole.. But for some reason I
continue to see on traceroutes from a computer that's deeper into my
internal network via mpls l3vpn, that this computer's traceroutes flow right
passed that 9k's more specific routes and follows the default route out to
the internet.  Any idea why ?

 

Aaron

_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to