+ All Categories
Home > Documents > Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP,...

Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP,...

Date post: 24-Aug-2020
Category:
Upload: others
View: 9 times
Download: 0 times
Share this document with a friend
51
http://www.INE.com Filtering using AS Path Filters 21
Transcript
Page 1: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

http://www.INE.com

Filtering using AS Path Filters

21

Page 2: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Our Journey

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

• BGP fundamentals

– Injecting networks, iBGP, eBGP, Route

Reflectors, Confederations, Peer Groups

• Policy Based BGP

– Attributes and Filtering

– Manipulating BGP

• Complex Topologies

– Advanced route maps, community, load

balancing, dampening, troubleshooting

Page 3: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Regular expressions

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 4: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Application

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 5: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

AS Path Access-List

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 6: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

AS Path access-list as classifier

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 7: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 8: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Remove private AS from AS_Path

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 9: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Ignore loop prevention of AS_PATH

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 10: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Regular expressions in action

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 11: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Regular expressions continued

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 12: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Regular expressions part 3

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 13: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

http://www.INE.com

Route maps

22

Page 14: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

When multiple filters exist

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 15: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Inject Map

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 16: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Conditional Route Injection

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 17: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

http://www.INE.com

BGP Communities

23

Page 18: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Change decimal to aa:xx format

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 19: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Configure community for outbound updates

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 20: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

R1 sees the community sent

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 21: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Show BGP table based on community

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 22: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

R1 modifies local policy based on

community received

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 23: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

AS 11 is now preferring the route

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 24: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Agreements between ISPs is the key

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 25: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Well known communities

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 26: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

http://www.INE.com

Load Balancing

24

Page 27: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

BGP Load Balancing

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 28: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

iBGP peer R1

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 29: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

eBGP peer R6

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 30: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Multiple BGP paths

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 31: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Global Routing Table

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 32: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

http://www.INE.com

Route Dampening

25

Page 33: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Route map for Dampening

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 34: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

http://www.INE.com

Working with multiple ISPs

26

Page 35: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Non transit area example.

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 36: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Working with multiple ISPs

• Routing

• AS Translation

• Load Sharing

• Remove private AS

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 37: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

http://www.INE.com

Scalability

27

Page 38: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Scalability

• Avoid full mesh

– Route Reflectors

– Confederations

• Peer Groups

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 39: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

http://www.INE.com

Optimization

28

Page 40: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Optimization

• BGP Convergence

– Scan time

– IGP summarization

• MTU discovery

– Ip tcp path-mtu-discovery

• Peer Groups

• Advertisement Interval

• Prefix limits

• Hold queueCopyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 41: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

BGP processes

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 42: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Path MTU discovery

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 43: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Input Queue

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 44: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Modify/Verify input Queue

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 45: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

BGP Scan Interval

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 46: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

BGP Scan Time

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 47: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Configure Max Prefix from peer

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 48: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Verify max prefix settings

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Page 49: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

http://www.INE.com

Troubleshooting BGP

29

Page 50: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

http://www.INE.com

Course Review

30

Page 51: Filtering using AS Path Filters 21 - Amazon S3 · • BGP fundamentals –Injecting networks, iBGP, eBGP, Route Reflectors, Confederations, Peer Groups • Policy Based BGP –Attributes

Copyright © 2010 Internetwork Expert, Inc

www.INE.com

Thank you for your participation!

• Keith Barker, CCIE #6783• CCIE Routing and Switching – 2001

• CCIE Security – 2003

[email protected]

• YouTube - Keith6783


Recommended