data:image/s3,"s3://crabby-images/4898b/4898bc5ab4d7818cb7c2ec6260282c71c8db2ea4" alt="Andrisoft Wanguard 5.2 Скачать руководство пользователя страница 70"
WANGUARD 5.2 User Manual & Administrator's Guide
following commands:
[root@localhost ~]# telnet 127.0.0.1 2601
localhost> enable
localhost# config terminal
localhost(config)# service password-encryption
localhost(config)# write
localhost(config)# exit
localhost# exit
To confgure the bgpd daemon you must telnet to port 2605 and enter the previously defned password
(“bgppass”). You must then switch to the privileged mode by entering the
enable
command.
[root@localhost ~]# telnet 127.0.0.1 2605
localhost> enable
localhost#
Switch to terminal confguraton mode by entering the
confg terminal
command. The prompt will change
indicatng that the system has entered the confguraton mode:
localhost# config terminal
localhost(config)#
You should then enable encrypted passwords and set a new password for the confguraton mode:
localhost(config)# service password-encryption
localhost(config)# enable password enablepass
Confgure routng on bgpd using the commands shown in the following example. Please note that you can
use the prefx-list, route-map, or distribute-list method for fltering outgoing routng informaton about the router.
The following example describes the distribute-list method. You can use the prefx-list or route-map fltering method
types as long as the routng informaton is not sent to bgpd.
localhost(config)# router bgp
<WANGUARD-Filter-AS-number>
localhost(config-router)# bgp router-id
<WANGUARD-Filter-IP-address>
localhost(config-router)# neighbor
<Router-IP-address>
remote-as
<Router-AS-number>
localhost(config-router)# neighbor
<Router-IP-address>
description
<description>
localhost(config-router)# neighbor
<Router-IP-address>
soft-reconfiguration inbound
localhost(config-router)# neighbor
<Router-IP-address>
distribute-list
nothing-in
in
localhost(config-router)# neighbor
<Router-IP-address>
route-map
WANGUARD-Filter-out
out
localhost(config-router)# exit
localhost(config)# access-list
nothing-in
deny any
localhost(config)# route-map
WANGUARD-Filter-out
permit 10
localhost(config-route-map)# set community
x
:
x
no-export no-advertise
localhost(config-route-map)# exit
localhost(config)# write
localhost(config)# exit
Filter System BGP Configuration Example
To display the router confguraton, enter the
show running-confg
command from the “enable” command
level. In the following example, the router's AS number is 1000, and the bgpd AS number is 64000.
The following partal sample output is displayed:
localhost# show running-config
... ... ... ...
- 69 -
Содержание Wanguard 5.2
Страница 1: ......