[j-nsp] Re: vpn-apply-export typos corrected
Gary Tate
gtate at juniper.net
Mon Nov 10 20:45:06 EST 2003
Have corrected the typo's so no one is confused. Sorry
On Monday, Nov 10, 2003, at 15:05 US/Pacific, Gary Tate wrote:
> A behavioural change was indeed introduced in 5.7R1 to do an implicit
> vpn-apply-export when RR or ASBR functionality is enabled. This was
> introduced as part of PR27920.
>
> So what you are seeing is the following:
>
> Your vrf policy is accepting the vrf static route which which moves it
> to the bgp.l3vpn table.
>
> The route attributes are maintained and it is therefore still seen as
> static.
>
> The next stage is to apply the pe-pe policy to routes in the bgp.l3vpn
> table, which in your case rejects the route - your final statement is
> to reject all.
>
> As you have seen the addition of protocol static or the addition to a
> match on the vrf-target fixed your problem.
>
> In short, as you first speculated, the router does have an implicit
> vpn-apply-export and hence you see this behaviour.
>
> I have taken steps to document more clearly this change in behaviour.
>
> Sorry for the earlier confusion, I missed the cluster id which should
> have alerted me to the fact that this was an PE-RR combined
> configuration.
>
>
> Gary
>
More information about the juniper-nsp
mailing list