English Forums > High availability

Filtering routes with FRR and OSPF

<< < (2/2)

clarknova:
I don't understand your recommendation. I have added nothing in the Networks tab. If I try to add an entry in the Networks tab there are references to the prefix lists I created, but I don't know the purpose of this dialogue.

mimugmail:
Leave the Interface tab empty beside type and PW. Area and Network in network tab .. also the prefix list. Direction in is filtering received routes, out is adjusting sending routes

clarknova:
Ok, I set up a pair of test boxes and tried to follow your advice. This is what I have for a config on test box A:


--- Code: ---Current configuration:
!
frr version 7.4
frr defaults datacenter
hostname ldc01a.localdomain
log syslog
!
router ospf
 redistribute connected
 network 192.168.1.0/24 area 0.0.0.0
 area 0.0.0.0 filter-list prefix wan out
!
ip prefix-list wan seq 10 deny 207.228.103.128/26
!
line vty
!
end

--- End code ---

Here's the routing table on test box B:

--- Code: ---N 192.168.1.0/24 100 0.0.0.0 Directly Attached em1
R 207.228.103.a 100 0.0.0.0 192.168.1.252 em1
N E2 10.2.0.0/24 100 192.168.1.252 em1
N E2 207.228.103.128/26 100 192.168.1.252 em1

--- End code ---

The problems:

* I am seeing the WAN address of test box A in the routing table of B (line 2)
* I am seeing the WAN network of A in the routing table of B (line 4)I tried removing "redistribute connected" from the config but then no routes are shared from A to B. I also tried adding the 10.2.0.0/24 interface as a passive interface but this did not have the desired effect of sharing that route to B in the absence of "redistribute connected".

bimbar:
I didn't have much luck with OSPF over my openvpn tunnel, but I can share a BGP config that works, if that helps:


--- Code: ---router bgp 65530
 bgp router-id 172.28.24.1
 no bgp ebgp-requires-policy
 neighbor 172.28.29.1 remote-as 65530
 !
 address-family ipv4 unicast
  redistribute connected
  redistribute static
  neighbor 172.28.29.1 next-hop-self
  neighbor 172.28.29.1 prefix-list marvin-in in
  neighbor 172.28.29.1 prefix-list marvin-out out
 exit-address-family
!
ip prefix-list marvin-in seq 10 permit 172.28.31.0/24 le 32
ip prefix-list marvin-out seq 10 permit 172.28.30.0/24

--- End code ---

Navigation

[0] Message Index

[*] Previous page

Go to full version