route validation-mode include-as (BGP-Flow VPN instance IPv6 address family view)

Function

The route validation-mode include-as command adds the AS_Path attribute as a check item to BGP Flow Specification route verification rules.

The undo route validation-mode include-as command restores the default configuration.

By default, BGP Flow Specification route verification rules do not involve a check on the AS_Path attribute.

Format

route validation-mode include-as

undo route validation-mode include-as

Parameters

None

Views

BGP-Flow VPN instance IPv4 address family view, BGP-Flow VPN instance IPv6 address family view

Default Level

2: Configuration level

Task Name and Operations

Task Name Operations
bgp write

Usage Guidelines

Usage Scenario

BGP Flow Specification routes are verified as follows:

  • Mode 1: After receiving a BGP Flow Specification route with a destination address as the filtering rule, the device verifies the route according to Figure 1. The route is considered valid only if the verification succeeds.
  • Mode 2: After receiving a BGP Flow Specification route with a destination address as the filtering rule, the device verifies the route by checking whether the AS_Path attribute of the route carries the AS_Set or AS_Sequence field. The route is considered valid only if its AS_Path attribute does not carry the AS_Set or AS_Sequence field.

    If the

    route validation-mode include-as command is run on a device, the device first uses mode 2 to verify BGP Flow Specification routes.
  • If the verification using mode 2 succeeds, the BGP Flow Specification route is considered valid, and the device no longer verifies the routes using mode 1.
  • If the verification using mode 2 fails, the device verifies the routes using mode 1.

    If the

    route validation-mode include-as command is not run on a device, the device uses mode 1 to verify BGP Flow Specification routes.

Example

# Add the AS_Path attribute as a check item to BGP IPv6 VPN Flow Specification route verification rules.
<HUAWEI> system-view
[~HUAWEI] ip vpn-instance vpna
[~HUAWEI-vpn-instance-vpna] ipv6-family
[~HUAWEI-vpn-instance-vpna-af-ipv6] quit
[~HUAWEI-vpn-instance-vpna] quit
[~HUAWEI] bgp 100
[*HUAWEI-bgp] vpn-instance vpna
[*HUAWEI-bgp-instance-vpna] quit
[*HUAWEI-bgp] ipv6-flow vpn-instance vpna
[*HUAWEI-bgp-flow-6-vpna] route validation-mode include-as
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >