Got it

How to properly set blackhole route from route-policy?

Created: Aug 9, 2021 18:47:31Latest reply: Aug 12, 2021 12:33:23 395 6 1 0 0
  Rewarded HiCoins: 0 (problem resolved)

I'm trying to set a blackhole route through route-policy following this article (BlackHole parameter ausency on "apply ip-address next-hop (Route-policy view)" command- Huawei) but it's not working:


Setting static-route:

ip route-static vpn-instance vpn_internal 192.0.2.1 255.255.255.255 NULL0 description BLACKHOLE


Route-policy:

route-policy rp_bgp_dw_as65001_fastnetmon_import permit node 10
 apply ip-address next-hop 192.0.2.1
 apply local-preference 1000
#


Prefixes received:

<NE40E-M2K>dis bgp vpnv4 vpn-instance vpn_internal routing-table peer AAA.BB.CC.53 received-routes
 BGP Local router ID is 10.29.0.237
 Status codes: * - valid, > - best, d - damped, x - best external, a - add path,
               h - history,  i - internal, s - suppressed, S - Stale
               Origin : i - IGP, e - EGP, ? - incomplete
 RPKI validation codes: V - valid, I - invalid, N - not-found
 VPN-Instance vpn_internal, Router ID 10.29.0.237:
 Total Number of Routes: 2
        Network            NextHop                       MED        LocPrf    PrefVal Path/Ogn
        XXX.YYY.ZZZ.101/32 192.0.2.1                                 1000       0      65001i
        XXX.YYY.ZZZ.50/32  192.0.2.1                                 1000       0      65001i


BGP Route:

<NE40E-M2K>dis bgp vpnv4 vpn-instance vpn_internal routing-table peer AAA.BB.CC.53 received-routes XXX.YYY.ZZZ.50 32
 BGP local router ID : 10.29.0.237
 Local AS number : 28171
 VPN-Instance vpn_internal, Router ID 10.29.0.237:
 BGP routing table entry information of XXX.YYY.ZZZ.50/32:
 From: AAA.BB.CC.53 (AAA.BB.CC.53)
 Route Duration: 2d13h05m13s
 Direct Out-interface:
 Original nexthop: 192.0.2.1
 Qos information : 0x0
 Community: <65001:666>
 AS-path 65001, origin igp, localpref 1000, pref-val 0, external, pre 255, invalid for nexthop route unreachable
 Not advertised to any peer yet
<NE40E-M2K>


AS-path 65001, origin igp, localpref 1000, pref-val 0, external, pre 255, invalid for nexthop route unreachable



<NE40E-M2K>dis version

Huawei Versatile Routing Platform Software

VRP (R) software, Version 8.180 (NE40E V800R010C10SPC500)

Copyright (C) 2012-2018 Huawei Technologies Co., Ltd.

HUAWEI NE40E-M2K uptime is 845 days, 23 hours, 33 minutes

Patch Version: V800R010SPH035




Featured Answers

Recommended answer

DDSN
Admin Created Aug 10, 2021 06:34:52

Hi, thank you for coming to the forum.
Generally, EBGP peers must have direct physical links. If this requirement is not met, you must run the peer ebgp-max-hop command to allow the EBGP peers to establish a TCP connection through multiple hops.
To establish an EBGP peer relationship using a loopback interface, run the peer ebgp-max-hop command (hop-count ≥ 2). Otherwise, the peer relationship cannot be established.
View more
  • x
  • convention:

All Answers
Hello User. we are reviewing your question and we will answer you shortly. Thanks.
View more
  • x
  • convention:

Actually I forgot to include ebgp-max-hop 2 in peer, it's working now.
View more
  • x
  • convention:

DDSN
DDSN Admin Created Aug 10, 2021 06:34:52

Hi, thank you for coming to the forum.
Generally, EBGP peers must have direct physical links. If this requirement is not met, you must run the peer ebgp-max-hop command to allow the EBGP peers to establish a TCP connection through multiple hops.
To establish an EBGP peer relationship using a loopback interface, run the peer ebgp-max-hop command (hop-count ≥ 2). Otherwise, the peer relationship cannot be established.
View more
  • x
  • convention:

andersoncf1
andersoncf1 MVE Author Created Aug 10, 2021 16:55:27

Good answer from DDSN How to properly set blackhole route from route-policy?-4080189-1
View more
  • x
  • convention:

thankyou
View more
  • x
  • convention:

WELL NOTE
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.