
WANGUARD 5.2 User Manual & Administrator's Guide
BGP Connection Configuration
Operators and Administrators can view, send and withdraw BGP announcements manually from the
Console. The BGP announcements records are stored in Reports » Anomalies & Tools » BGP Prefxes » BGP Archive.
The Sensors and Filters can be confgured to send and withdraw BGP announcements automatcally, in the
following cases:
●
To protect networks by announcing upstream providers using a special BGP community, that your side
does not route the atacked addresses anymore, or that they should null-route the announced
addresses. This network protecton technique is called black-holing.
●
To divert DoS, DDoS and DrDoS trafc through a Filter system that will clean the trafc.
If you do not need any of those features you can safely skip this chapter.
BGP Connectons can be used only afer you have previously installed and confgured the bgpd daemon
included in the quagga (
htp://www.quagga.net
) package. Some bgpd confguraton steps can be found on Appendix
3 – Confguring Trafc Diversion at page 67.
The BGP Connecton Confguraton window contains the following felds:
●
BGP Connecton Name
A short name or a descripton for the BGP Connecton.
●
BGPd Server
The Server running the bgpd daemon. To add a new Server go to Confguraton » Servers » Add Server.
●
AS Number
Your AS number must match the one from the bgpd confguraton.
●
Login Password
The password needed to connect to the bgpd daemon.
●
Enable Password
Confguraton mode password of the bgpd daemon.
●
Route Map
The route-map that should be appended to each announcement. This is not mandatory.
●
AS View
If multple AS views are defned in the bgpd confguraton, then you must enter which view you want to
use for this confguraton. This is not mandatory.
●
Zebra Local Blackhole
Check if you need the local black-hole feature quagga zebra. This is a rarely used feature.
●
Zebra Login & Enable Passwords
- 51 -
Содержание Wanguard 5.2
Страница 1: ......