networking-forum.com
Community BlogCommunity Wiki * Register  * Search  * Login
View unanswered postsView active topics

All times are UTC - 6 hours [ DST ]



Post new topic Reply to topic  [ 12 posts ] 
Author Message
PostPosted: Sun Jun 10, 2012 12:15 am 
Offline
Junior Member
Junior Member

Joined: Fri Feb 01, 2008 5:09 am
Posts: 72
Hi,

I have eBGP running in my ASR router. Few weeks ago I used to get only my network when I give command "sh ip bgp nei x.x.x.x advertised-routes". But recently I get global routing table when I give this command. Will this cause any kind of problem or it's fine.

How can I get my router to show only my advertised network in above command.

Thanks in advance.


Top
 Profile  
 
PostPosted: Sun Jun 10, 2012 1:34 am 
Offline
Member
Member
User avatar

Joined: Wed Jun 02, 2010 9:49 pm
Posts: 165
Location: Central Florida
Certs: CCNP CCNA CCDA Network+
Are you using IOS-XR on your ASR? If so I am not sure how the command is working as you don't need "ip" in the syntax of the command. Like all route commands on IOS-XR it is all IP-based so you can leave it out. For example, "show bgp neigh x.x.x.x {etc., etc.}"

At any rate the "advertised-routes" option shows the routes the router is advertising to the BGP peer you are specifying. From what you are saying, I am assuming that some how you are now redistributing other routes into BGP. This is a problem if you don't want to advertise those networks out to your peer. In most situations what causes unexpected advertised routes is a change in a route-map/prefix list/access-list for IOS or in the case of IOS-XR is a route-policy. "Show rpl route-policy {policy name} detail" would be a good place to start. At any rate, if you are just wanting to verify that you are advertising a specific route to a BGP peer than I would just simply do a pipe include, i.e. show bgp neigh 1.2.3.4 advertised-routes | i 4.3.2.1

I hope that helps :)

_________________
Age si quid agis. Age quod agis. - If you do something, do it well. Do well in whatever you do.

http://www.zingo-net.com/
http://twitter.com/zingonet


Top
 Profile  
 
PostPosted: Sun Jun 10, 2012 2:32 am 
Offline
Moderator
Moderator
User avatar

Joined: Mon Apr 07, 2008 10:38 am
Posts: 9390
Location: Orlando, FL
Certs: CCNP RS, CCNP DC, CCDP, CCIP
Sounds like you're sending the wrong shit.

_________________
http://blog.alwaysthenetwork.com


Top
 Profile  
 
PostPosted: Sun Jun 10, 2012 2:44 am 
Offline
Junior Member
Junior Member

Joined: Fri Feb 01, 2008 5:09 am
Posts: 72
Router came with IOS-XE.

Do you mean wrong configuration of route-map/access-list can cause this issue?
i checked in router and found that few access-lists were added in route-map (match ip address) even though those access-list are not configured in router. How can I stop redistributing global network ?


Top
 Profile  
 
PostPosted: Sun Jun 10, 2012 4:02 am 
Offline
CCIE #38070
CCIE #38070
User avatar

Joined: Wed Jun 18, 2008 7:49 am
Posts: 12433
Location: London, UK
Certs: CCIE ,CC-NP/IP, JNCIP-SP, JNCIS-ENT, BC-/SPNE/NP
You've become a transit AS. Well done. I'm surprised your peers are accepting these routes and are happy to send all traffic your way...

Either you need to have a route-map that calls an as-path access list which only stop the advertisement of any prefix going through another AS, or you set the no-export community on all routes received from your peers. Or you could do both

_________________
www.mellowd.co.uk/ccie/


Top
 Profile  
 
PostPosted: Sun Jun 10, 2012 4:59 am 
Offline
Junior Member
Junior Member

Joined: Fri Feb 01, 2008 5:09 am
Posts: 72
issue resolved. As suggested by Zingonet, rechecked all access-lists and route-maps and corrected them. now i can see only my network in "sh ip bgp nei x.x.x.x advertised-routes'

thanx for help.


Top
 Profile  
 
PostPosted: Sun Jun 10, 2012 1:43 pm 
Offline
Moderator
Moderator
User avatar

Joined: Mon Apr 07, 2008 10:38 am
Posts: 9390
Location: Orlando, FL
Certs: CCNP RS, CCNP DC, CCDP, CCIP
mellowd wrote:
I'm surprised your peers are accepting these routes


I doubt they were, doesn't stop him from sending though.

_________________
http://blog.alwaysthenetwork.com


Top
 Profile  
 
PostPosted: Sun Jun 10, 2012 4:46 pm 
Offline
Post Whore
Post Whore
User avatar

Joined: Tue Feb 22, 2011 9:40 am
Posts: 1271
Location: Lincoln, NE
Certs: CCNA, MCDST, MCP, A+
Vito_Corleone wrote:
mellowd wrote:
I'm surprised your peers are accepting these routes


I doubt they were, doesn't stop him from sending though.
I've had this both ways. I have one upstream that drops my connection upon hitting a prefix limit, and another that takes them but does nothing with them.


Sent from my ADR6400L using Tapatalk 2


Top
 Profile  
 
PostPosted: Tue Jun 12, 2012 7:57 pm 
Offline
Member
Member

Joined: Fri Dec 24, 2010 12:11 am
Posts: 137
Location: New York City
Certs: Expired 350-001
mellowd wrote:
You've become a transit AS. Well done. I'm surprised your peers are accepting these routes and are happy to send all traffic your way...

I'd expect any non-shitty service provider to only allow ^CUSTOMER_ASN$ inbound, otherwise, they have no business running BGP either. Of course, there would still be overhead of processing all those updates and storing them needlessly as "received-only" in memory.

Secondly, OP, I have route-maps/prefix-lists/communities/local-prefs defined for all of my eBGP peers (~50). It's worth the extra maintenance -- I would never send everything I had or even anything that I locally originated in BGP without a very specific matching policy. Lazy networks are often the ones that break most.


Top
 Profile  
 
PostPosted: Tue Jun 12, 2012 8:41 pm 
Offline
Post Whore
Post Whore
User avatar

Joined: Mon Nov 16, 2009 8:10 pm
Posts: 2523
Location: San Diego, CA
Certs: CCNP, BCNE, Network+, Security+
Vito_Corleone wrote:
Sounds like you're sending the wrong shit.


That's gangster eloquence.

EDIT - I think I'd love working for Vito, at least until I was fired two weeks later for incompetence. :P

I get the feeling he's the kinda guy that would make you feel small, but you couldn't stop cracking up at what he says.

_________________
Regards,

Steven King
San Diego Cisco User Group - http://www.sdcug.com
"The only time something is impossible is when you think it is." - Kevin Corbin, CCIE #11577


Top
 Profile  
 
PostPosted: Wed Jun 13, 2012 3:08 am 
Offline
CCIE #38070
CCIE #38070
User avatar

Joined: Wed Jun 18, 2008 7:49 am
Posts: 12433
Location: London, UK
Certs: CCIE ,CC-NP/IP, JNCIP-SP, JNCIS-ENT, BC-/SPNE/NP
just2cool wrote:
mellowd wrote:
You've become a transit AS. Well done. I'm surprised your peers are accepting these routes and are happy to send all traffic your way...

I'd expect any non-shitty service provider to only allow ^CUSTOMER_ASN$ inbound, otherwise, they have no business running BGP either. Of course, there would still be overhead of processing all those updates and storing them needlessly as "received-only" in memory.

Secondly, OP, I have route-maps/prefix-lists/communities/local-prefs defined for all of my eBGP peers (~50). It's worth the extra maintenance -- I would never send everything I had or even anything that I locally originated in BGP without a very specific matching policy. Lazy networks are often the ones that break most.


I've worked with BGP for too long to know that you don't trust anyone :(

_________________
www.mellowd.co.uk/ccie/


Top
 Profile  
 
PostPosted: Wed Jun 13, 2012 7:33 am 
Offline
Post Whore
Post Whore
User avatar

Joined: Tue Feb 22, 2011 9:40 am
Posts: 1271
Location: Lincoln, NE
Certs: CCNA, MCDST, MCP, A+
mellowd wrote:
I've worked with BGP for too long to know that you don't trust anyone :(
This is very true. I can think of several times I could have been burned by not filtering.


Top
 Profile  
 
Display posts from previous:  Sort by  
Post new topic Reply to topic  [ 12 posts ] 

All times are UTC - 6 hours [ DST ]


Who is online

Users browsing this forum: Google [Bot], totaluser and 14 guests


You cannot post new topics in this forum
You cannot reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot post attachments in this forum

Search for:
Jump to:  
Powered by phpBB® Forum Software © phpBB Group