nanog mailing list archives

Re: Flowspec IPv6


From: Eric Dugas via NANOG <nanog () nanog org>
Date: Wed, 26 May 2021 10:54:23 -0400

Turns out the apply-group isn't working for v6 rules.

ATAC made me replicate the same rule directly under routing-options and
inet6flow.0 appeared and I can see my rule populated now.

FYI I'm running vRR 20.4R1-S1.2

On Sun, May 23, 2021 at 4:55 AM Zbyněk Pospíchal <zbynek () dialtelecom cz>
wrote:

Hi Eric,

with no v6 fs rules, the table inet6flow.0 stay hidden. Try to make any.

--
S pozdravem/Best Regards,
Zbyněk



Dne 21.05.21 v 20:10 Eric Dugas via NANOG napsal(a):
Hello,

I've been fiddling with JunOS to enable Flowspec IPv6. According to the
docs, it was implemented in 16.x. I've tried to set it up in vRR and vMX
in the 20.x train. Everything commit just fine, I get the inetflow.0 for
IPv4 but inet6flow.0 is not appearing.

I already have a JTAC case (now escalated to ATAC) but I am looking for
plan B.

Has anyone implemented Flowspec v6? I was thinking about FRRouting but I
wanted to get some feedback from the community before spending more
hours into this.

Thanks
Eric



Current thread: