office
Differences
This shows you the differences between two versions of the page.
Both sides previous revisionPrevious revisionNext revision | Previous revision | ||
office [2023/04/18 08:38] – sysadm | office [2024/05/05 16:51] (current) – sysadm | ||
---|---|---|---|
Line 1: | Line 1: | ||
+ | * | ||
+ | * RP/ | ||
+ | |||
* Destination IP table: | * Destination IP table: | ||
Line 248: | Line 251: | ||
* end-set | * end-set | ||
* ! | * ! | ||
+ | |||
+ | |||
+ | * display | ||
+ | * As path filter name: BTTB-RAMNA-AS-IN | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | |||
+ | |||
+ | * RP/ | ||
+ | * Tue Mar 14 19: | ||
+ | * interface TenGigE0/ | ||
+ | * description @@ SMW5-LINK20-TO-UTTARA-AGG-VIA-EQUINIX-SG3-SMW5-BSCCL-SCL @@ | ||
+ | * ipv4 address 103.199.87.72 255.255.255.254 | ||
+ | * ipv6 address 2405: | ||
+ | * ipv6 enable | ||
+ | * **carrier-delay up 20000 down 20000** | ||
+ | * shutdown | ||
+ | * load-interval 30 | ||
+ | * ipv4 access-group BTRC-NEW-BLOCK ingress | ||
+ | * ipv4 access-group BTRC-NEW-BLOCK egress | ||
+ | * ! | ||
+ | |||
+ | The hold up time and hold down time can be used to prevent routing loops and to improve the stability of the network. For example, if a router has a hold up time of 10 seconds and a hold down time of 20 seconds, and it declares a neighbor down, it will wait 10 seconds for a hello packet from the neighbor before declaring the neighbor down. If the router does not receive a hello packet from the neighbor within 10 seconds, it will wait 20 seconds before trying to re-establish the neighbor adjacency. This helps to prevent routing loops from occurring if the neighbor is only temporarily unavailable. | ||
+ | |||
+ | The hold up time and hold down time can also be used to improve the stability of the network by preventing flapping. Flapping occurs when a routing loop is created and then broken, and then created again. This can happen if a router is constantly declaring neighbors down and then up again. The hold up time and hold down time can help to prevent flapping by preventing a router from declaring a neighbor down too quickly. | ||
+ | |||
+ | |||
+ | * interface Ethernet1/ | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * no shutdown | ||
+ | |||
+ | ---------------spanning ------------------- | ||
+ | |||
+ | show running-config | i spann | ||
+ | no spanning-tree vlan 1565, | ||
+ | DHUTRCLSW-01# | ||
+ | no spanning-tree vlan 1565, | ||
+ | |||
+ | HUTRCLSW-01(config)# | ||
+ | |||
+ | ----------------------------------------Cisco Nexus L2 Switch port-channel configure ---switchport-- | ||
+ | |||
+ | * DHDHNCLSW-02# | ||
+ | * | ||
+ | * !Command: show running-config interface port-channel1 | ||
+ | * !Running configuration last done at: Wed Jul 19 12:58:46 2023 | ||
+ | * !Time: Wed Jul 19 13:53:30 2023 | ||
+ | * | ||
+ | * version 9.3(4) Bios: | ||
+ | * | ||
+ | * interface port-channel1 | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * DHDHNCLSW-02# | ||
+ | * DHDHNCLSW-02# | ||
+ | * | ||
+ | * !Command: show running-config interface Ethernet1/ | ||
+ | * !Running configuration last done at: Wed Jul 19 12:58:46 2023 | ||
+ | * !Time: Wed Jul 19 13:54:01 2023 | ||
+ | * | ||
+ | * version 9.3(4) Bios: | ||
+ | * | ||
+ | * interface Ethernet1/ | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * no shutdown | ||
+ | * | ||
+ | * DHDHNCLSW-02# | ||
+ | * DHDHNCLSW-02# | ||
+ | * | ||
+ | * !Command: show running-config interface Ethernet1/ | ||
+ | * !Running configuration last done at: Wed Jul 19 12:58:46 2023 | ||
+ | * !Time: Wed Jul 19 13:54:08 2023 | ||
+ | * | ||
+ | * version 9.3(4) Bios: | ||
+ | * | ||
+ | * interface Ethernet1/ | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * | ||
+ | * no shutdown | ||
+ | * | ||
+ | ---------------------- | ||
+ | |||
+ | |||
+ | |||
+ | * [*DHUTRAGGR-01]display cur | ||
+ | * [*DHUTRAGGR-01]display current-configuration | in 10.56.79.30 | ||
+ | * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break. | ||
+ | * peer 10.56.79.30 as-number 134371 | ||
+ | * peer 10.56.79.30 description CIRCLE_NETWORK | ||
+ | * peer 10.56.79.30 enable | ||
+ | * peer 10.56.79.30 route-policy CIRCLE_NETWORK import | ||
+ | * peer 10.56.79.30 route-policy ALL-ROUTE export | ||
+ | * peer 10.56.79.30 route-limit accept-prefix 100 | ||
+ | * peer 10.56.79.30 advertise-community | ||
+ | * [*DHUTRAGGR-01] | ||
+ | * [*DHUTRAGGR-01]display current-configuration | in 10.56.79.50 | ||
+ | * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break. | ||
+ | * peer 10.56.79.50 as-number 134371 | ||
+ | * peer 10.56.79.50 description @@CIRCL-NETWORk-SAVAR-2 | ||
+ | * peer 10.56.79.50 enable | ||
+ | * peer 10.56.79.50 route-policy CIRCLE_NETWORK import | ||
+ | * peer 10.56.79.50 route-policy CIRCLE-OUT export | ||
+ | * peer 10.56.79.50 route-limit accept-prefix 100 | ||
+ | * peer 10.56.79.50 advertise-community | ||
+ | * [*DHUTRAGGR-01] | ||
+ | * [*DHUTRAGGR-01]display current-configuration | in 10.123.235.46 | ||
+ | * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break. | ||
+ | * peer 10.123.235.46 as-number 134371 | ||
+ | * peer 10.123.235.46 description @@CIRCLE-DDOS-BLACKHOLE@@ | ||
+ | * peer 10.123.235.46 enable | ||
+ | * peer 10.123.235.46 route-policy CIRCLE-DDOS import | ||
+ | * peer 10.123.235.46 route-policy BLACKHOLE-OUT export | ||
+ | * peer 10.123.235.46 route-limit accept-prefix 100 | ||
+ | * peer 10.123.235.46 advertise-community | ||
+ | * [*DHUTRAGGR-01] | ||
+ | * [*DHUTRAGGR-01]dis | ||
+ | * [*DHUTRAGGR-01]display cur | ||
+ | * [*DHUTRAGGR-01]display current-configuration | in CIRCLE-OUT | ||
+ | * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break. | ||
+ | * peer 10.56.79.50 route-policy CIRCLE-OUT export | ||
+ | * peer 10.56.79.54 route-policy CIRCLE-OUT export | ||
+ | * route-policy CIRCLE-OUT permit node 10 | ||
+ | * route-policy CIRCLE-OUT permit node 20 | ||
+ | * route-policy CIRCLE-OUT permit node 30 | ||
+ | * route-policy CIRCLE-OUT deny node 40 | ||
+ | * [*DHUTRAGGR-01] | ||
+ | * [*DHUTRAGGR-01]dis | ||
+ | * [*DHUTRAGGR-01]display route-policy CIRCLE-OUT | ||
+ | * Route-policy: | ||
+ | * | ||
+ | * Match clauses: | ||
+ | * | ||
+ | * | ||
+ | * Match clauses: | ||
+ | * | ||
+ | * | ||
+ | * Match clauses: | ||
+ | * | ||
+ | * deny : 40 (matched counts: 510466528) | ||
+ | * [*DHUTRAGGR-01] | ||
+ | * [*DHUTRAGGR-01]dis | ||
+ | * [*DHUTRAGGR-01]display cur | ||
+ | * [*DHUTRAGGR-01]display current-configuration | in CIRCLE-AS-OUT | ||
+ | * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break. | ||
+ | * if-match as-path-filter CIRCLE-AS-OUT | ||
+ | * ip as-path-filter CIRCLE-AS-OUT index 10 permit ^15169_ | ||
+ | * ip as-path-filter CIRCLE-AS-OUT index 20 permit ^32934_ | ||
+ | * ip as-path-filter CIRCLE-AS-OUT index 30 permit ^132203_ | ||
+ | * ip as-path-filter CIRCLE-AS-OUT index 40 permit ^13335_ | ||
+ | * ip as-path-filter CIRCLE-AS-OUT index 50 permit ^9498 32934_ | ||
+ | * ip as-path-filter CIRCLE-AS-OUT index 60 permit ^9498 15169_ | ||
+ | * ip as-path-filter CIRCLE-AS-OUT index 70 permit ^2914 10075 13335_ | ||
+ | * ip as-path-filter CIRCLE-AS-OUT index 80 permit ^9498 132203_ | ||
+ | * ip as-path-filter CIRCLE-AS-OUT index 90 permit ^16509_ | ||
+ | * [*DHUTRAGGR-01] | ||
+ | * [*DHUTRAGGR-01]display current-configuration | in CIRCLE-PREFIX-BLOCK | ||
+ | * Info: It will take a long time if the content you search is too much or the string you input is too long, you can press CTRL_C to break. | ||
+ | * if-match ip-prefix CIRCLE-PREFIX-BLOCK | ||
+ | * ip ip-prefix CIRCLE-PREFIX-BLOCK index 10 permit 192.168.29.1 32 | ||
+ | |||
+ | --------------------- | ||
+ | * | ||
+ | * | ||
+ | * [~DHUTRAGGR-01-route-policy]display this | ||
+ | * # | ||
+ | * route-policy SPEED-PLUS-TANGAIL permit node 10 | ||
+ | * if-match ip-prefix SPEED-PLUS-TANGAIL-IPv4 | ||
+ | * apply local-preference 1000 | ||
+ | * apply community 58717:100 58717:830 58717:1100 | ||
+ | * # | ||
+ | * route-policy SPEED-PLUS-TANGAIL deny node 20 | ||
+ | * # | ||
+ | * return | ||
+ | |||
+ | |||
+ | |||
+ | violate-action drop to avoid P2P loss issue in cisco ASR9K | ||
+ | |||
+ | policy-map 689mb | ||
+ | class POLICER | ||
+ | police rate 689 mbps | ||
+ | | ||
+ | ! | ||
+ | | ||
+ | class class-default | ||
+ | | ||
+ | | ||
+ | ! | ||
+ | |||
+ | RP/ | ||
+ | Sun May 5 22: | ||
+ | RP/ | ||
+ | RP/ | ||
+ | RP/ | ||
+ | RP/ | ||
+ | RP/ | ||
+ | RP/ | ||
+ | |||
+ | RP/ | ||
+ | Sun May 5 22: | ||
+ | policy-map 689mb | ||
+ | class POLICER | ||
+ | police rate 689 mbps | ||
+ | | ||
+ | ! | ||
+ | | ||
+ | class class-default | ||
+ | | ||
+ | | ||
+ | ! | ||
+ | |||
+ | ======================= |
office.txt · Last modified: 2024/05/05 16:51 by sysadm