cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1221
Views
0
Helpful
2
Replies

Network protocols configuration according to required specifications

How can network protocols (which ones precisely) be implemented for the flows shown and described below ? Propose as many solutions and variants and try to be as more specific as you can.

  PE routers : ISP 1 and ISP 2 - Cisco ASR 9000 Series (one vendor environment)

  CE routers : R1 and R2 - Cisco ASR 1000 Series (one vendor environment)

  • Green flows -> It's outgoing traffic from internal network and should go via router R1 by default. Router R2 should serve as backup path in case of router R1 failure. Both routers (R1 and R2) receives full BGP table from connected ISP routers. There is iBGP session established between router R1 and router R2.
  • Blue flows -> Incoming flows to public/provider independent IP class 100.100.100.0/22. They should arrive primarily via ISP 2. ISP 1 should serve as backup path in case of ISP 2 failure.
  • Red flows -> Flows between two red-colored host sitting on Internet which goes via our HQ network (dotted line). It's totally undesirable behavior. How is it possible ? We don't even know their IP addresses. How to prevent our network (router R1 and router R2) from receiving such type of traffic ?

A.jpg

2 Replies 2

Hello,

 

not sure what the specific question is...is this for an exam ? Looks ljke the connections between the routers are all xBGP.

balaji.bandi
Hall of Fame
Hall of Fame

Look at the nice configuration examples each explained clearly in the BGP document section :

 

https://www.cisco.com/c/en/us/tech/ip/ip-routing/tech-configuration-examples-list.html

 

 

 

  • Red flows -> Flows between two red-colored host sitting on Internet which goes via our HQ network (dotted line). It's totally undesirable behavior. How is it possible ? We don't even know their IP addresses. How to prevent our network (router R1 and router R2) from receiving such type of traffic ?

- if this Public IP address, you are not connected to Corporate network by any means of connectivyt like VPN, you do not have any conttrol contacting each other (you can not incluence this).

 

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help