[j-nsp] flowspec in logical-systems
Michail Litvak
sha90w at gmail.com
Wed Mar 22 15:07:22 EDT 2017
Hi all,
Did anybody tried to use flowspec in the logical-system ?
The BGP session with flowspec family is up and receiving appropriate NLRI,
the inetflow.0 table exists in the LS with appropriate values:
1.
logical-system: LS4
2.
3.
inetflow.0: 1 destinations, 1 routes (1 active, 0 holddown, 0 hidden)
4.
+ = Active Route, - = Last Active, * = Both
5.
6.
172.16.22.139,*/term:N/A
7.
*[BGP/170] 00:00:37, localpref 100, from 172.16.24.36
8.
AS path: I, validation-state: unverified
9.
Fictitious
But no firewall filter __flowspec_default_inet__ exists in the LS.
1.
admin at lab-2> show firewall filter logical-system LS4
__flowspec_default_inet__
2.
error: filter name inconsistent with logical router
I'd appreciate any feedback.
--
WBR,
Michail
More information about the juniper-nsp
mailing list