8.Add that ACL as a distribute-list in-filter on the neighbor:

Examples

With this combination, neither 156.23.4.32/27 nor 156.34.4.144/28 appear in the IP route table. The route 156.23.4.32/27 is dropped by the route map filter, and the route 156.34.4.144/28 is dropped by the ASPath-list filter.

BGP#show ip route

Codes: C - connected, S - static, R - RIP, B - BGP O - OSPF, IA - OSPF inter area

N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2 E1 - OSPF external type 1, E2 - OSPF external type 2

* - candidate default

B45.0.0.0/8 [20/0] via 45.45.45.46, vlan1, 00:06:39

C45.45.45.0/24 is directly connected, vlan1

B52.0.0.0/8 [20/0] via 45.45.45.46, vlan1, 00:06:39

C64.0.0.0/4 is directly connected, vlan64

B156.23.4.0/29 [20/0] via 45.45.45.46, vlan1, 00:06:39

B 156.23.4.8/29 [20/0] via 45.45.45.46, vlan1, 00:06:39

7.Now create an ACL that drops the route 156.23.4.0/28, and allows all others. access-list standard list3 deny 156.23.4.0/28 access-list standard list3 permit any

8.Add that ACL as a distribute-list in-filter on the neighbor:

router bgp 34567 redistribute connected

neighbor 45.45.45.46 remote-as 34568

neighbor 45.45.45.46 distribute-list list3 in neighbor 45.45.45.46 route-map com in neighbor 45.45.45.46 filter-list list1 in

9.Shut down the neighbor, and then bring it up again:

awplus(config-router)#neighbor 45.45.45.46 shutdown awplus(config-router)#neighbor 45.45.45.46 no shutdown

Then all the 156.23.4.x routes are filtered out. The distribute-list filter drops both the routes 156.23.4.0/29 and 156.23.4.8/29 because the effect of the distribute-list filter is to drop all routes within the address range covered by 156.23.4.0/28, that have a prefix- length of 28 or longer.

BGP#show ip route

Codes: C - connected, S - static, R - RIP, B - BGP O - OSPF, IA - OSPF inter area

N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2 E1 - OSPF external type 1, E2 - OSPF external type 2

* - candidate default

B45.0.0.0/8 [20/0] via 45.45.45.46, vlan1, 00:16:21

C45.45.45.0/24 is directly connected, vlan1

B52.0.0.0/8 [20/0] via 45.45.45.46, vlan1, 00:16:21

C64.0.0.0/4 is directly connected, vlan64

Page 42 Use Route Maps and Other Filters to Filter and Alter BGP and OSPF Routes

Page 42
Image 42
Allied Telesis x908, X8100 manual Add that ACL as a distribute-list in-filter on the neighbor

X8100, x908 specifications

The Allied Telesis x908 and the SwitchBlade x900 series of network switches are cutting-edge solutions designed to address the demands of modern networking environments. These switches are known for their high performance, reliability, and robust feature sets, making them ideal for enterprise and service provider networks.

The Allied Telesis x908 series consists of modular and chassis-based systems that can accommodate a variety of network configurations. One of the main features of the x908 series is its ability to offer high scalability with support for a large number of ports. This makes it suitable for data centers and large enterprise networks where space and bandwidth optimization are critical.

In addition to scalability, the x908 series supports advanced Layer 2 and Layer 3 switching capabilities. This allows for efficient traffic management and routing, ensuring that data is delivered swiftly and reliably. The x908 also incorporates intelligent features such as Quality of Service (QoS), which prioritizes critical network traffic, ensuring that time-sensitive data—like voice and video—maintains its quality during transmission.

The SwitchBlade x900 series takes this functionality further with its innovative modular architecture. This allows organizations to configure their networks to meet specific needs by choosing from a variety of interface cards and service modules. The SwitchBlade x900 also supports advanced security features such as Access Control Lists (ACLs) and VLAN segmentation, which provide enhanced protection against unauthorized access and network threats.

Another hallmark of the x908 and SwitchBlade series is their support for high-speed Ethernet technologies, including 10G and 40G Ethernet. This enables organizations to keep pace with the increasing bandwidth demands of applications and services, particularly in cloud computing and data-intensive workloads.

Both the x908 and the SwitchBlade x900 series are designed with energy efficiency in mind, featuring power-saving technologies that reduce overall operational costs. Coupled with Allied Telesis' management tools, which provide detailed analytics and monitoring, network administrators can optimize performance and energy consumption simultaneously.

In summary, the Allied Telesis x908 and SwitchBlade x900 series offer a comprehensive suite of features, high performance, scalability, and advanced networking technologies. They represent a strategic investment for organizations looking to build resilient, efficient, and future-proof network infrastructures.