[j-nsp] BGP L3 VPN and backdoor between customers

senad palislamovic spalislam at yahoo.com
Sun Aug 6 19:46:40 EDT 2006


Roman,

You would usually configure ext. community "origin" on
your PE router within the VRF.

http://www.juniper.net/techpubs/software/junos/junos76/swconfig76-vpns/html/vpn-config18.html

HTH

Senad

--- Roman <sed65 at mail.ru> wrote:

> Dear All 
> 
> How would you handle the following situation - 
> suppose you provide L3 BGP VPN service and your
> PE-CE protocol is BGP . Customer uses private AS
> 65000 in all its sites so as-override in place in PE
> config .  To complicate things customers also have
> backdoor links between them .  The question is how
> to ensure that there is no loop forming in provider
> AS for intercustomer traffic ? My first thought was
> to watch out for extended bgp community in customer
> updates ( for example target: ) and   drop this
> particular update in case these communities present
> . Any other ideas are very welcome 
> 
> Thanks in advance 
> Roman 
> 
> 
> 
> _______________________________________________
> juniper-nsp mailing list juniper-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/juniper-nsp
> 


__________________________________________________
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com 


More information about the juniper-nsp mailing list