juniper escr tesco day 3. overview day #1 maintenance and monitoring routing protocols lab day #2...

14
Juniper ESCR Tesco Day 3

Upload: norma-hubbard

Post on 06-Jan-2018

215 views

Category:

Documents


1 download

DESCRIPTION

Routing policy

TRANSCRIPT

Page 1: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

Juniper ESCR TescoDay 3

Page 2: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

OverviewDay #1

Maintenance and monitoring

Routing protocols

Lab

Day #2

Introduction to Juniper devices

Junos CLI System and

interface configuration

Lab

DAY #4

QoS

FHRP

Lab

DAY #3

Routing policy

Lab

Firewall filters

Lab

Page 3: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

Routing policy

Page 4: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

Routing policy

Page 5: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

Routing policy

defined in policy-option – policy-statement configuration stanza

to make a policy active you have to assign it to protocol, group or neighbour

Page 6: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and
Page 7: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

Definition of policypolicy-options { policy-statement loopbacks-to-bgp { term 1 { from { protocol direct; route-filter 1.1.1.1/32 exact; route-filter 11.11.11.11/32 exact; } then accept; } }}

Page 8: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

Activation of routing policyprotocols { bgp { group ebgp { export loopbacks-to-bgp; neighbor 192.168.12.2 { export to-JR2; peer-as 100; } neighbor 192.168.13.3 { peer-as 100; } } }}

Page 9: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

Firewall filters a.k.a. ACL

Stateless firewall Protecting Routing Engine (lo0) Protecting network infrastructure (interface)

Page 10: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

Firewall filters Firewall filters are defined in firewall – filter configuration

stanza. Can be assign as input or output for particular interface

commit confirm as your 2nd chance

Page 11: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and
Page 12: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

firewall { filter Protect-lo0 { term telnet-from-lo0s { from { source-address { 5.5.5.0/24; }protocol tcp; destination-port telnet; } then { log; reject; } } term accept-all { then accept; } }}

Page 13: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and
Page 14: Juniper ESCR Tesco Day 3. Overview Day #1 Maintenance and monitoring Routing protocols Lab Day #2 Introduction to Juniper devices Junos CLI System and

> show interfaces ge-1/1/3.11 extensive Logical interface ge-1/1/3.11 (Index 65549) (SNMP ifIndex 870) (Generation 318) Description: To R1 Flags: SNMP-Traps 0x4000 VLAN-Tag [ 0x8100.11 ] Encapsulation: ENET2 Bandwidth: 100mbps Traffic statistics: Input bytes : 6504297210721 Output bytes : 13197946273155 Input packets: 20307569747 Output packets: 16619390648 IPv6 transit statistics: Input bytes : 0 Output bytes : 0 Input packets: 0 Output packets: 0 Local statistics: Input bytes : 61025439 Output bytes : 82315595 Input packets: 1223888 Output packets: 1226051 Transit statistics: Input bytes : 6504236185282 4513320 bps Output bytes : 13197863957560 4197280 bps Input packets: 20306345859 1258 pps Output packets: 16618164597 956 pps IPv6 transit statistics: Input bytes : 0 Output bytes : 0 Input packets: 0 Output packets: 0