On Fri, Oct 19, 2012 at 09:29:27AM +0300, Vladyslav Kolesnyk wrote:

> 
> День добрый сообществу FreeBSD.
> 
> Вопрос к тем кто работает с BGP.
> Есть роутер на кваге с поднятыми двумя каналами по которым получаю Full View
> от двух провайдеров.
> 
> Сегодня обнаружил одну странность:
> анонс от провайдера получаю:
> 74.217.240.0/20  194.44.208.129                         0 3255 3549 10913 
> 65554 10913 10913 10913 10913 10913 10913 10913 63354 i
> 
> а вот при просмотре
>  sh ip bgp 74.217.240.0/20
> % Network not in table
> 
> сети нет в таблице.
> 
> может кто-то что-то подсказать из-за чего такое происходит
> Просьба сильно не пинать :)

разумеется наличие маршрута до 194.44.208.129 проверенно?

> 
> настройки кваги:
> router bgp 50325
>  bgp router-id 195.191.39.41
>  bgp log-neighbor-changes
>  bgp deterministic-med
>  network 195.191.38.0/23
>  redistribute connected
>  neighbor 194.44.208.129 remote-as 3255
>  neighbor 194.44.208.129 description UARNET
>  neighbor 194.44.208.129 next-hop-self
>  neighbor 194.44.208.129 soft-reconfiguration inbound
>  neighbor 194.44.208.129 route-map map-AS3255-in in
>  neighbor 194.44.208.129 route-map map-AS3255-out out
>  neighbor 195.22.112.241 remote-as 24893
>  neighbor 195.22.112.241 description POLYNET
>  neighbor 195.22.112.241 next-hop-self
>  neighbor 195.22.112.241 soft-reconfiguration inbound
>  neighbor 195.22.112.241 route-map map-AS24893-in in
>  neighbor 195.22.112.241 route-map map-AS24893-out out
> 
> ip prefix-list LIST-ASV seq 5 permit 195.191.38.0/23
> ip prefix-list LIST-ASV-NETS seq 5 permit 195.191.38.0/23 le 32
> ip prefix-list bogons description bogus nets
> ip prefix-list bogons seq 15 permit 0.0.0.0/8 le 32
> ip prefix-list bogons seq 20 permit 127.0.0.0/8 le 32
> ip prefix-list bogons seq 25 permit 192.0.2.0/24 le 32
> ip prefix-list bogons seq 30 permit 10.0.0.0/8 le 32
> ip prefix-list bogons seq 35 permit 172.16.0.0/12 le 32
> ip prefix-list bogons seq 40 permit 192.168.0.0/16 le 32
> ip prefix-list bogons seq 45 permit 169.254.0.0/16 le 32
> ip prefix-list bogons seq 50 permit 192.42.172.0/24 le 32
> ip prefix-list bogons seq 55 permit 198.18.0.0/15 le 32
> ip prefix-list bogons seq 60 permit 192.88.99.0/24 le 32
> ip prefix-list bogons seq 65 permit 224.0.0.0/4 le 32
> ip prefix-list bogons seq 70 permit 240.0.0.0/4 le 32
> ip prefix-list default description default route
> ip prefix-list default seq 10 permit 0.0.0.0/0
> !
> ip as-path access-list 1 permit _6451[2-9]_
> ip as-path access-list 1 permit _645[2-9][0-9]_
> ip as-path access-list 1 permit _64[6-9][0-9][0-9]_
> ip as-path access-list 1 permit _65[0-9][0-9][0-9]_
> ip as-path access-list AS-ASV permit ^$
> !
> route-map map-AS24893-in deny 100
>  description -- filter private ASs
>  match as-path 1
> !
> route-map map-AS24893-in deny 110
>  description -- -- filter bogons
>  match ip address prefix-list bogons
> !
> route-map map-AS24893-in deny 120
>  description -- -- filter default
>  match ip address prefix-list default
> !
> route-map map-AS24893-in permit 200
>  description -- permit any else, set default loc-pref, set community
>  set community 50325:24893
>  set local-preference 300
> !
> route-map map-AS24893-out permit 100
>  description -- permit our prefixes
>  match as-path AS-ASV
>  match ip address prefix-list LIST-ASV
>  set as-path prepend 50325
>  set metric 100
> !
> route-map map-AS3255-in deny 100
>  description -- filter private ASs
>  match as-path 1
> !
> route-map map-AS3255-in deny 110
>  description -- -- filter bogons
>  match ip address prefix-list bogons
> !
> route-map map-AS3255-in deny 120
>  description -- -- filter default
>  match ip address prefix-list default
> !
> route-map map-AS3255-in permit 200
>  description -- permit any else, set default loc-pref, set community
>  set community 50325:3255
>  set local-preference 300
> !
> route-map map-AS3255-out permit 100
>  description -- permit our prefixes
>  match as-path AS-ASV
>  match ip address prefix-list LIST-ASV
>  set as-path prepend 50325 50325 50325 50325
>  set metric 100
> !
> 
> 
> 
> -- 
> С уважением, Владислав Колесник
> VRUA-RIPE
> VRUA-UANIC
> VRUA-RIPN
> 
> mailto:vector...@ukr.net
> 

Ответить