Professional Documents
Culture Documents
JUNOS Basic Routing Hands-On: © 2017 NISSHO ELECTRONICS CORP. All Right Reserved
JUNOS Basic Routing Hands-On: © 2017 NISSHO ELECTRONICS CORP. All Right Reserved
JUNOS Basic Routing Hands-On: © 2017 NISSHO ELECTRONICS CORP. All Right Reserved
eBGP eBGP
Ge-0/0/0 Ge-0/0/0
EX4200-3 EX4200-4
Ge-0/0/1 Ge-0/0/1
AS65034
(OSPF area 0)
Ge-0/0/0 Ge-0/0/1
AS65078 Ge-0/0/0 Ge-0/0/1
(OSPF area 0)
Hostname
-「set system host-name EX4200-X」you can find [X] through previous topology
TIME
- 「set system time-zone {select your time zone}」
Syslog
-「set system syslog file interactive-commands interactive-commands any」
-「set system syslog file messages any info」
-「set system syslog file messages match "!(license)"」
-「set system syslog time-format millisecond」
Management IP/Route
- 「set interfaces me0 unit 0 family inet address 10.9.144.11X/24」you can find [X] through topology
- 「set routing-options static route 0.0.0.0/0 next-hop 10.9.144.253」
Interfaces descriptions
-「set interfaces lo0 description {as you wish}」
-「set interfaces ge-0/0/xx description {as you wish}」
Once you configured above, talk to your neighbor and verify state of the interfaces and reachability
<Operation Mode>
-「ping x.x.x.x」
-「show arp」
-「show interfaces ge-0/0/xx」「show interfaces lo0」
Enable load-balance
-「set policy-options policy-statement LB then load-balance per-packet」load-balance policy (Per-flow based)
-「set routing-options forwarding-table export LB」apply load-balance policy to Forwarding Table rule
Once you configured above, talk to your neighbor and verify state of OSPF
<Operation Mode>
-「show ospf overview」
-「show ospf interface」
-「show ospf neighbor」
-「show route protocol ospf {extensive}」Routing-table information (= Best-Path) obtained through OSPF
Local AS Number
-「set routing-options autonomous-system {Local AS number}」
BGP Group
-「set protocols bgp group eBGP type external」declare External ※internal=IBGP, external=EBGP
-「set protocols bgp group eBGP authentication-key juniper」key needs to be same with neighbor
-「set protocols bgp group eBGP peer-as {AS Number}」
-「set protocols bgp group eBGP neighbor {IP Address of opposite machines}」please set each ip addresses for two interfaces
Once you configured above, talk to your neighbor and verify state of BGP
<Operation Mode>
-「show bgp summary」BGP Neighbor’s list, number of routes learned from each peer
-「show bgp neighbor {Peer IP Address}」
Route Policy
-「set policy-options policy-statement BGP-Export term 1 from route-filter 0.0.0.0/0 prefix-length-range /32-/32 accept」
only Loopback IP Address (Network-mask 32bit) match
-「set policy-options policy-statement BGP-Export term 1 then accept」
Apply Route Policy to BGP
-「set protocols bgp group eBGP export BGP-Export」
Enable multipath
-「set protocols bgp group eBGP multipath」
Once you configured above, talk to your neighbor and verify state of BGP learned routes
<Operation Mode>
-「show route advertising-protocol bgp {Peer IP}」advertised from your router
-「show route receive-protocol bgp {Peer IP}」received from your peering router
-「show route protocol bgp」check BGP learned routes
iBGP
-「set protocols bgp group iBGP type internal」 declare Internal ※internal=IBGP, external=EBGP
-「set protocols bgp group iBGP local-address {Loopback IP Address}」
-「set protocols bgp group iBGP neighbor {Loopback IP Address of opposite machine within same AS}」
Once you configured above, talk to your neighbor and verify state of BGP
<Operation Mode>
-「show bgp summary」
-「show bgp neighbor {Peer IP Address}」
-「show route receive-protocol bgp {Peer IP}」
Configure “next-hop self” when you advertise eBGP learned routes to iBGP peers
-「set policy-options policy-statement NH term 1 from protocol bgp」
-「set policy-options policy-statement NH term 1 then next-hop self」
-「set protocols bgp group iBGP export NH」apply export policy to group “iBGP”
Once you configured above, talk to your neighbor and verify state of BGP learned routes
<Operation Mode>
-「show bgp summary」
-「show bgp neighbor {Peer IP Address}」
-「show route receive-protocol bgp {Peer IP}」
EX4200-4 8.8.8.8
EX4200-5 1.1.1.1
EX4200-6 2.2.2.2
EX4200-7 3.3.3.3
EX4200-8 4.4.4.4
Once you configured above, talk to your neighbor and try telnet/ssh access to neighbor machine
<Operation Mode>
- 「telnet {neighbor Loopback IP} source {own loopback IP}」
- 「show firewall」filter counters
- 「show log messages | match FW_SYSLOG」check syslog messages including filtered packets