Advertisement
Guest User

Untitled

a guest
May 29th, 2014
277
0
Never
Not a member of Pastebin yet? Sign Up, it unlocks many cool features!
text 7.20 KB | None | 0 0
  1. peer_level3=""
  2. peer_level3_2=""
  3. peer_level3_6=""
  4. peer_level3_2_6=""
  5. peer_cymru1=""
  6. peer_cymru2=""
  7. peer_ptt_lgv4=""
  8. peer_ptt_rs1v4=""
  9. peer_ptt_rs2v4=""
  10. peer_ptt_rs3v4=""
  11. peer_ptt_rs4v4=""
  12. asn_tudonet=""
  13. asn_level3=""
  14. asn_cymru=""
  15. asn_ptt_lg=""
  16. asn_ptt_rs=""
  17.  
  18. router_id=""
  19.  
  20. # Definicoes Globais
  21. AS $asn_tudonet
  22. router-id $router_id
  23. listen on x.x.x.x
  24. listen on x.x.x.x
  25. listen on x.x.x.x
  26. listen on x.x.x.x
  27. listen on x.x.x.x
  28. listen on x.x.x.x
  29. listen on x.x.x.x
  30. listen on x.x.x.x
  31. listen on x.x.x.x
  32. listen on xxxx:xxxx::xxx:xx
  33. listen on xxxx:xxxx::xxx:xx
  34. listen on xxxx:xxxx::xxx:xx
  35. listen on xxxx:xxxx::xxx:xx
  36. listen on xxxx:xxxx::xxx:xx
  37. listen on xxxx:xxxx::xxx:xx
  38. listen on xxxx:xxxx::xxx:xx
  39. listen on xxxx:xxxx::xxx:xx
  40. holdtime 60
  41. holdtime min 10
  42.  
  43. # Bloco IPv6
  44. network xxxx:xxxx::/32
  45.  
  46. # Blocos menos preferenciais
  47. network x.x.x.x/20
  48. network x.x.x.x/20
  49. network x.x.x.x/20
  50. network x.x.x.x/20
  51.  
  52. # Blocos preferenciais intermediarios
  53. network x.x.x.x/21
  54. network x.x.x.x/21
  55. network x.x.x.x/21
  56. network x.x.x.x/21
  57. network x.x.x.x/21
  58. network x.x.x.x/21
  59. network x.x.x.x/21
  60. network x.x.x.x/21
  61. network xxxx:xxxx::/33
  62. network xxxx:xxxx:xxxx::/33
  63.  
  64. nexthop qualify via bgp
  65.  
  66. group "Level3" {
  67. remote-as $asn_level3
  68. set localpref 399
  69. neighbor $peer_level3 {
  70. local-address x.x.x.x
  71. descr "Level3"
  72. announce IPv4 unicast
  73. announce self
  74. }
  75. neighbor $peer_level3_2 {
  76. local-address x.x.x.x
  77. descr "Level3_2"
  78. announce IPv4 unicast
  79. announce self
  80. }
  81. neighbor $peer_level3_6 {
  82. local-address xxxx:xxx:xxxx:xxxx::x
  83. descr "Level3_6"
  84. announce IPv6 unicast
  85. announce self
  86. }
  87. neighbor $peer_level3_2_6 {
  88. local-address xxxx:xxx:xxxx:xxxx::xx
  89. descr "Level3_2_6"
  90. announce IPv6 unicast
  91. announce self
  92. }
  93. }
  94.  
  95. group "cymru" {
  96. remote-as $asn_cymru
  97. local-address x.x.x.x
  98. multihop 64
  99. announce none
  100. max-prefix 5000
  101. set community delete NO_EXPORT
  102. neighbor $peer_cymru1 {
  103. descr "cymru1"
  104. }
  105. neighbor $peer_cymru2 {
  106. descr "cymru2"
  107. }
  108. }
  109.  
  110. group "tudonet" {
  111. remote-as $asn_tudonet
  112. announce default-route
  113. neighbor x.x.x.x {
  114. local-address x.x.x.x
  115. announce IPv4 unicast
  116. descr "Tudonet_Saquarema"
  117. }
  118. neighbor x.x.x.x {
  119. local-address x.x.x.x
  120. announce IPv4 unicast
  121. descr "Tudonet_Sao_Pedro"
  122. }
  123. neighbor x.x.x.x {
  124. local-address x.x.x.x
  125. announce IPv4 unicast
  126. descr "Tudonet_Rio_Bonito"
  127. }
  128. neighbor x.x.x.x {
  129. local-address x.x.x.x
  130. announce IPv4 unicast
  131. descr "Tudonet_Araruama"
  132. }
  133. neighbor xxxx:xxxx:xxxx::x {
  134. local-address xxxx:xxxx:xxxx::x
  135. announce IPv6 unicast
  136. descr "Tudonet_Araruama6"
  137. }
  138. neighbor xxxx:xxxx:xxxx::x {
  139. local-address xxxx:xxxx:xxxx::x
  140. announce IPv6 unicast
  141. descr "Tudonet_Saquarema6"
  142. }
  143. neighbor xxxx:xxxx:xxxx::x {
  144. local-address xxxx:xxxx:xxxx::x
  145. announce IPv6 unicast
  146. descr "Tudonet_Rio_Bonito6"
  147. }
  148. neighbor xxxx:xxxx:xxx::x {
  149. local-address xxxx:xxxx:xxx::x
  150. announce IPv6 unicast
  151. descr "Tudonet_Sao_Pedro6"
  152. }
  153. }
  154.  
  155. group "mediarede" {
  156. remote-as $asn_tudonet
  157. announce default-route
  158. neighbor x.x.x.x {
  159. local-address x.x.x.x
  160. descr "Mediarede_Rio_Bonito"
  161. }
  162. neighbor x.x.x.x {
  163. local-address x.x.x.x
  164. descr "Mediarede_Sao_Pedro"
  165. }
  166. }
  167.  
  168. group "ptt_lg" {
  169. enforce neighbor-as no
  170. neighbor $peer_ptt_lgv4 {
  171. remote-as $asn_ptt_lg
  172. local-address x.x.x.x
  173. descr "ptt_lgv4"
  174. announce IPv4 unicast
  175. announce self
  176. }
  177. }
  178.  
  179. group "ptt_rs" {
  180. set localpref 400
  181. enforce neighbor-as no
  182. neighbor $peer_ptt_rs1v4 {
  183. remote-as $asn_ptt_rs
  184. local-address x.x.x.x
  185. descr "ptt_rs1v4"
  186. announce IPv4 unicast
  187. announce self
  188. }
  189. neighbor $peer_ptt_rs2v4 {
  190. remote-as $asn_ptt_rs
  191. local-address x.x.x.x
  192. descr "ptt_rs2v4"
  193. announce IPv4 unicast
  194. announce self
  195. }
  196. neighbor $peer_ptt_rs3v4 {
  197. remote-as $asn_ptt_rs
  198. local-address x.x.x.x
  199. descr "ptt_rs3v4"
  200. announce IPv4 unicast
  201. announce self
  202. }
  203. neighbor $peer_ptt_rs4v4 {
  204. remote-as $asn_ptt_rs
  205. local-address x.x.x.x
  206. descr "ptt_rs4v4"
  207. announce IPv4 unicast
  208. announce self
  209. }
  210. }
  211.  
  212. deny from any
  213. allow from any inet prefixlen 8 - 24
  214. allow from any inet6
  215. match from any community 65332:888 set { nexthop 127.0.0.254 }
  216.  
  217. deny from any prefix 0.0.0.0/0
  218. deny from any prefix x.x.x.x/20 prefixlen >= 20
  219. deny from any prefix x.x.x.x/20 prefixlen >= 20
  220. deny from any prefix x.x.x.x/20 prefixlen >= 20
  221. deny from any prefix x.x.x.x/20 prefixlen >= 20
  222. deny from any prefix xxxx:xxxx::/32 prefixlen >= 32
  223.  
  224. deny from any prefix 10.0.0.0/8 prefixlen >= 8
  225. deny from any prefix 172.16.0.0/12 prefixlen >= 12
  226. deny from any prefix 192.168.0.0/16 prefixlen >= 16
  227. deny from any prefix 169.254.0.0/16 prefixlen >= 16
  228. deny from any prefix 192.0.2.0/24 prefixlen >= 24
  229. deny from any prefix 224.0.0.0/4 prefixlen >= 4
  230. deny from any prefix 240.0.0.0/4 prefixlen >= 4
  231.  
  232. # iBGP Tudonet
  233. match from group tudonet set localpref 900
  234. match from group mediarede set localpref 850
  235. allow from group tudonet
  236. allow from group mediarede
  237.  
  238. deny to group Level3
  239. allow to group Level3 prefix x.x.x.x/20
  240. allow to group Level3 prefix x.x.x.x/20
  241. allow to group Level3 prefix x.x.x.x/20
  242. allow to group Level3 prefix x.x.x.x/20
  243. allow to group Level3 prefix xxxx:xxxx::/32
  244.  
  245. # Anuncios para o PTT-SP
  246. deny from group ptt_lg
  247. deny to group ptt_lg
  248. allow to group ptt_lg prefix x.x.x.x/21
  249. allow to group ptt_lg prefix x.x.x.x/21
  250. allow to group ptt_lg prefix x.x.x.x/21
  251. allow to group ptt_lg prefix x.x.x.x/21
  252. allow to group ptt_lg prefix x.x.x.x/21
  253. allow to group ptt_lg prefix x.x.x.x/21
  254. allow to group ptt_lg prefix x.x.x.x/21
  255. allow to group ptt_lg prefix x.x.x.x/21
  256.  
  257. deny to group ptt_rs
  258. allow to group ptt_rs prefix x.x.x.x/21
  259. allow to group ptt_rs prefix x.x.x.x/21
  260. allow to group ptt_rs prefix x.x.x.x/21
  261. allow to group ptt_rs prefix x.x.x.x/21
  262. allow to group ptt_rs prefix x.x.x.x/21
  263. allow to group ptt_rs prefix x.x.x.x/21
  264. allow to group ptt_rs prefix x.x.x.x/21
  265. allow to group ptt_rs prefix x.x.x.x/21
Advertisement
Add Comment
Please, Sign In to add comment
Advertisement