[j-nsp] flowspec in logical-systems

Michail Litvak sha90w at gmail.com
Wed Mar 22 15:07:22 EDT 2017


Hi all,

Did anybody tried to use flowspec in the logical-system ?
The BGP session with flowspec family is up and receiving appropriate NLRI,
the inetflow.0 table exists in the LS with appropriate values:


   1.

   logical-system: LS4

   2.

   3.

   inetflow.0: 1 destinations, 1 routes (1 active, 0 holddown, 0 hidden)

   4.

   + = Active Route, - = Last Active, * = Both

   5.

   6.

   172.16.22.139,*/term:N/A

   7.

                      *[BGP/170] 00:00:37, localpref 100, from 172.16.24.36

   8.

                         AS path: I, validation-state: unverified

   9.

                         Fictitious




But no firewall filter __flowspec_default_inet__ exists in the LS.


   1.

   admin at lab-2> show firewall filter logical-system LS4
__flowspec_default_inet__

   2.

   error: filter name inconsistent with logical router




I'd appreciate any feedback.

-- 
WBR,
Michail


More information about the juniper-nsp mailing list