Flowspec IPv6

Eric Dugas edugas at unknowndevice.ca
Wed May 26 14:54:23 UTC 2021


Turns out the apply-group isn't working for v6 rules.

ATAC made me replicate the same rule directly under routing-options and
inet6flow.0 appeared and I can see my rule populated now.

FYI I'm running vRR 20.4R1-S1.2

On Sun, May 23, 2021 at 4:55 AM Zbyněk Pospíchal <zbynek at dialtelecom.cz>
wrote:

> Hi Eric,
>
> with no v6 fs rules, the table inet6flow.0 stay hidden. Try to make any.
>
> --
> S pozdravem/Best Regards,
> Zbyněk
>
>
>
> Dne 21.05.21 v 20:10 Eric Dugas via NANOG napsal(a):
> > Hello,
> >
> > I've been fiddling with JunOS to enable Flowspec IPv6. According to the
> > docs, it was implemented in 16.x. I've tried to set it up in vRR and vMX
> > in the 20.x train. Everything commit just fine, I get the inetflow.0 for
> > IPv4 but inet6flow.0 is not appearing.
> >
> > I already have a JTAC case (now escalated to ATAC) but I am looking for
> > plan B.
> >
> > Has anyone implemented Flowspec v6? I was thinking about FRRouting but I
> > wanted to get some feedback from the community before spending more
> > hours into this.
> >
> > Thanks
> > Eric
>
>
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://mailman.nanog.org/pipermail/nanog/attachments/20210526/6f953205/attachment.html>


More information about the NANOG mailing list