#desenvolvido por thalesmoises.com # #log de informacoes inseridas #numero do seu as = 73838 #nome do peer = SKINACO #ip do peer = 170.170.170.2 #asn do peer = 84838 #seu ipv4 da sessao = 170.170.170.1 #ipv6 do peer=2890:cafe::2 #seu ipv6 da sessao=2890:cafe::1 #nome do ip-prefix v4 inserido=SKINACO #nome do ip-prefix v6 inserido=SKINACO ##################################### #versao da config para vrp8 # !CRIA ROUTE POLICY V4 #deny generico de segurança route-policy TRANSITO-SKINACO-V4-IN deny node 10 #deny de descarte generico (bogons) route-policy TRANSITO-SKINACO-V4-IN deny node 200 if-match ip-prefix DESCARTE-GENERICO-V4 # # #deny generico de segurança route-policy TRANSITO-SKINACO-V4-OUT deny node 10 #permit do ip-prefix selecionado route-policy TRANSITO-SKINACO-V4-OUT permit node 200 if-match ip-prefix SKINACO #deny explicito no final route-policy TRANSITO-SKINACO-V4-OUT deny node 65000 # # !CONFIG PEER V4 bgp 73838 peer 170.170.170.2 as-number 84838 peer 170.170.170.2 description TRANSITO-SKINACO-V4 peer 170.170.170.2 timer keepalive 3 hold 30 Y peer 170.170.170.2 connect-interface 170.170.170.1 peer 170.170.170.2 connect-only ipv4-family unicast peer 170.170.170.2 enable peer 170.170.170.2 public-as-only peer 170.170.170.2 route-policy TRANSITO-SKINACO-V4-IN import peer 170.170.170.2 route-policy TRANSITO-SKINACO-V4-OUT export peer 170.170.170.2 advertise-community peer 170.170.170.2 advertise-ext-community #################### ################# !CRIA ROUTE POLICY V6 #deny geral de segurança route-policy TRANSITO-SKINACO-V6-IN deny node 10 #deny bogons v6 route-policy TRANSITO-SKINACO-V6-IN deny node 200 if-match ipv6 address prefix-list DESCARTE-GENERICO-V6 # #deny geral de segurança route-policy TRANSITO-SKINACO-V6-OUT deny node 10 # route-policy TRANSITO-SKINACO-V6-OUT permit node 200 if-match ipv6 address prefix-list SKINACO #deny explicito ipv6 route-policy TRANSITO-SKINACO-V6-OUT deny node 65000 # # !CONFIG PEER V6 bgp 73838 peer 2890:cafe::2 as-number 84838 peer 2890:cafe::2 description TRANSITO-SKINACO-V6 peer 2890:cafe::2 timer keepalive 3 hold 30 Y peer 2890:cafe::2 connect-interface 2890:cafe::1 peer 2890:cafe::2 connect-only # ipv6-family unicast peer 2890:cafe::2 enable Y peer 2890:cafe::2 public-as-only peer 2890:cafe::2 route-policy TRANSITO-SKINACO-V6-IN import peer 2890:cafe::2 route-policy TRANSITO-SKINACO-V6-OUT export peer 2890:cafe::2 advertise-community peer 2890:cafe::2 advertise-ext-community ##################################### #fim da config