[c-nsp] VRF->Global route leaking in multi-VRF CE installation

Ross Vandegrift ross at kallisti.us
Fri Jan 8 15:47:21 EST 2010


On Wed, Jan 06, 2010 at 10:04:37AM -0800, Kenny Sallee wrote:
> My .02 is that you should put everything in VRF's (even the global table)
> and use route-target import/export and import maps (if required) to control
> routing domains.
> 
> Question - can you use 'neighbor allowas-in' instead of as-override?  I'm
> not sure why your BGP AS-PATH was wrong in scenario #3 above - but I'm using
> that in a very similar scenario in my lab to solve the problem of having the
> same eBGP AS used at 2 different sites connected to 2 different PE routers.
>  BGP won't advertise a path it receives w/ it's own ASN in the path
> 
> http://www.cisco.com/en/US/docs/ios/12_3t/mpls/command/reference/mp_n5gt.html#wp1007547

I don't see how allowas-in would help - my ASN doesn't even appear in
those routes yet.  They come out the other side as eBGP routes with
whatever private ASN I used to make the session to eBGP.

-- 
Ross Vandegrift
ross at kallisti.us

"If the fight gets hot, the songs get hotter.  If the going gets tough,
the songs get tougher."
	--Woody Guthrie
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pgp-signature
Size: 197 bytes
Desc: Digital signature
URL: <https://puck.nether.net/pipermail/cisco-nsp/attachments/20100108/133374bd/attachment.bin>


More information about the cisco-nsp mailing list