Re: [j-nsp] Filtering rib-group imported direct routes?

2014-11-15 Thread Mark Tees
Hi Chris, In my lab environment (GNS3+Olives) I can apply an import-policy to the rib-group that appears to achieve the effect you are after. I vaguely remember trying this on an SRX a few years ago and it not working though. root show configuration policy-options policy-statement rib_filter {

Re: [j-nsp] Filtering rib-group imported direct routes?

2014-11-15 Thread Phil Bedard
Can you apply an import policy to the rib group to weed those out? Also the newer versions of Junos support Cisco PBR like functionality straight from the firewall filter instead of having to deal with the instances, so traffic goes directly out an interface vs. being subject to LPM in another

Re: [j-nsp] Filtering rib-group imported direct routes?

2014-11-15 Thread Hugo Slabbert
Mark's message already covered the rib-group interface routes option, but I thought I'd chime in with the option of doing this through instance-import under the FBF itself without rib-groups. Sorry; sent this earlier but from a non-list address. Original message follows below: --