
Configuring BGP Flowspec with ePBR
The following sections explain the procedures for configuring BGP flowspec with ePBR.
Use the following procedures to enable and configure the BGP flowspec feature:
•
Enable BGP Flowspec, on page 112
•
Configure a Class Map, on page 113
•
Configure a Policy Map, on page 115
•
Link BGP Flowspec to ePBR Policies , on page 116
To save configuration changes, you must commit changes when the system prompts you.
Note
Enable BGP Flowspec
You must enable the address family for propagating the BGP flowspec policy on both the Client and Server
using the following steps:
SUMMARY STEPS
1.
configure
2.
router bgp
as-number
3.
address-family
{
ipv4
|
vpnv4
}
flowspec
4.
exit
5.
neighbor ip-address
6.
remote-as as-number
7.
address-family
{
ipv4
}
flowspec
DETAILED STEPS
Purpose
Command or Action
configure
Step 1
Specifies the autonomous system number and enters the
BGP configuration mode, allowing you to configure the
BGP routing process.
router bgp
as-number
Example:
RP/0/RP0/CPU0:router(config)# router bgp 100
Step 2
Specifies either the IPv4, vpn4 address family and enters
address family configuration submode, and initializes the
global address family for flowspec policy mapping.
address-family
{
ipv4
|
vpnv4
}
flowspec
Example:
RP/0/RP0/CPU0:router(config-bgp)# address-family
ipv4 flowspec
Step 3
Returns the router to BGP configuration mode.
exit
Example:
Step 4
Routing Configuration Guide for Cisco NCS 6000 Series Routers, IOS XR Release 6.4.x
112
Implementing BGP Flowspec
Configuring BGP Flowspec with ePBR