04-19-2013 01:14 PM - edited 03-07-2019 12:55 PM
Hello,
don;t even know if that is an accurate description of what I need but here goes. Central site with remote sites connected on MPLS. Sites get updates by BGP but remote sites have 1800 series routers so no full routing tables can be pulled down. secondary Internet connection at each location. The desire is to use the secondary Internet connection as the primary connection. Route all traffic destined for endpoints in MPLS over the MPLS connection and anything else gets sent out over the faster Internet only connection . Is there anyway to use BGP to make this selection automatic? As it stands we are going to have to get a list of the networks on the MPLS and create access lists that route anything destined for these MPLS networks over the MPLS and send anything else over the Internet connection.
Looking for a way to do this w/o the access lists. over 50 sites which means updating the access lists on all the routers individually (or does it?) Any help is appreciated.
Thanks in advance. Replies rated
04-19-2013 01:54 PM
Hi Scott,
If I understand correctly, you only have a default route (static or BGP) towards your secondary Internet connection at each remote site, right? Do you also receive a default route from the central site via the MPLS network? If not, traffic in the remote site will follow the more specific routes to get to the central site and if there is not a specific route, traffic will go towards the local Internet connection.
Hope this helps
04-19-2013 02:09 PM
Hello, I agree with Harold, if you have any prefixes that are 'better' or longest match than the 0.0.0.0 route coming from your MPLS corporate environment, e.g. 192.168.100.0/24 rather than a 0.0.0.0/0, this solution would work.
So we're saying, all closest match prefixes go towards MPLS (since its in the routing table via bgp) and any other traffic that we don't know about, Internet bound traffic would go out local Internet connection, if your service provider was advertising you a default route instead of you using statics.
Please remember any security and confidentiality, so I'm assuming there will be a FW of some sort to protect your sites from this Internet connection.
Hope this helps
Sent from Cisco Technical Support iPhone App
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide