[j-nsp] flowspec in logical-systems
    Michail Litvak 
    sha90w at gmail.com
       
    Wed Mar 22 15:07:22 EDT 2017
    
    
  
Hi all,
Did anybody tried to use flowspec in the logical-system ?
The BGP session with flowspec family is up and receiving appropriate NLRI,
the inetflow.0 table exists in the LS with appropriate values:
   1.
   logical-system: LS4
   2.
   3.
   inetflow.0: 1 destinations, 1 routes (1 active, 0 holddown, 0 hidden)
   4.
   + = Active Route, - = Last Active, * = Both
   5.
   6.
   172.16.22.139,*/term:N/A
   7.
                      *[BGP/170] 00:00:37, localpref 100, from 172.16.24.36
   8.
                         AS path: I, validation-state: unverified
   9.
                         Fictitious
But no firewall filter __flowspec_default_inet__ exists in the LS.
   1.
   admin at lab-2> show firewall filter logical-system LS4
__flowspec_default_inet__
   2.
   error: filter name inconsistent with logical router
I'd appreciate any feedback.
-- 
WBR,
Michail
    
    
More information about the juniper-nsp
mailing list