[Nocrancid] autopop-onenet.net router config diffs
rancid at rancid.noc.onenet.net
rancid at rancid.noc.onenet.net
Sat Oct 14 07:04:31 CDT 2017
Index: configs/core8.tul.onenet.net
===================================================================
--- configs/core8.tul.onenet.net (revision 157692)
+++ configs/core8.tul.onenet.net (working copy)
@@ -1,12 +1,12 @@
# RANCID-CONTENT-TYPE: juniper
#
# grnoc-mon at TULSA-CORE8-MX480-RE0> show system commit
+# 2017-10-14 06:19:57 CDT by andrew via cli commit synchronize
+# 2017-10-14 06:09:56 CDT by andrew via cli commit confirmed, rollback in 3mins synchronize
# 2017-10-14 05:59:15 CDT by andrew via cli commit synchronize
# 2017-10-14 05:56:19 CDT by andrew via cli commit synchronize
# 2017-10-14 05:10:09 CDT by andrew via cli commit synchronize
# 2017-10-14 05:03:46 CDT by andrew via cli commit synchronize
-# 2017-10-14 04:32:13 CDT by andrew via synchronize
-# 2017-10-14 04:31:27 CDT by andrew via synchronize
# grnoc-mon at TULSA-CORE8-MX480-RE0> show chassis environment
# Class Item Status Measurement
# Temp PEM 0 OK
@@ -564,7 +564,7 @@
# Time Source: NTP CLOCK
# System booted: 2017-10-14 04:28 CDT
# Protocols started: 2017-10-14 04:32 CDT
-# Last configured: 2017-10-14 05:59 CDT by andrew
+# Last configured: 2017-10-14 06:19 CDT by andrew
#
# {master}
# grnoc-mon at TULSA-CORE8-MX480-RE0> show interface terse
@@ -684,7 +684,7 @@
#tap up up
#vtep up up
# grnoc-mon at TULSA-CORE8-MX480-RE0> show configuration
-## Last commit: 2017-10-14 05:59:15 CDT by andrew
+## Last commit: 2017-10-14 06:19:57 CDT by andrew
version 16.1R5.7;
groups {
re0 {
@@ -1171,7 +1171,7 @@
}
}
et-2/0/0 {
- description "NNI-AREON-100G-CIR000XXXX [ORDERED]";
+ description NNI-AREON-100G-CIR000XXXX;
flexible-vlan-tagging;
mtu 9192;
encapsulation flexible-ethernet-services;
@@ -1449,7 +1449,6 @@
mpls {
icmp-tunneling;
interface lo0.0;
- interface all;
interface et-0/1/0.42;
interface et-1/0/0.42;
}
Index: configs/core2.tul-mx960.onenet.net
===================================================================
--- configs/core2.tul-mx960.onenet.net (revision 157692)
+++ configs/core2.tul-mx960.onenet.net (working copy)
@@ -1,12 +1,12 @@
# RANCID-CONTENT-TYPE: juniper
#
# grnoc-mon at TULSA-CORE2-MX960-RE0> show system commit
+# 2017-10-14 06:08:03 CDT by andrew via cli commit confirmed, rollback in 3mins synchronize
# 2017-10-14 05:58:58 CDT by andrew via cli commit synchronize
# 2017-10-14 05:04:10 CDT by andrew via cli commit synchronize
# 2017-10-03 21:55:39 CDT by andrew via cli commit confirmed, rollback in 3mins synchronize
# 2017-10-01 21:48:12 CDT by andrew via cli commit synchronize
# 2017-10-01 21:45:34 CDT by andrew via cli commit synchronize
-# 2017-09-26 18:34:26 CDT by andrew via cli commit synchronize
# grnoc-mon at TULSA-CORE2-MX960-RE0> show chassis environment
# Class Item Status Measurement
# Temp PEM 0 OK
@@ -560,7 +560,7 @@
# grnoc-mon at TULSA-CORE2-MX960-RE0> show system uptime
# System booted: 2016-03-20 01:35 CDT
# Protocols started: 2016-03-20 01:37 CDT
-# Last configured: 2017-10-14 05:58 CDT by andrew
+# Last configured: 2017-10-14 06:08 CDT by andrew
#
# {master}
# grnoc-mon at TULSA-CORE2-MX960-RE0> show interface terse
@@ -737,7 +737,7 @@
#pp0 up up
#tap up up
# grnoc-mon at TULSA-CORE2-MX960-RE0> show configuration
-## Last commit: 2017-10-14 05:58:58 CDT by andrew
+## Last commit: 2017-10-14 06:08:03 CDT by andrew
version 13.3R8.7;
groups {
re0 {
@@ -1004,23 +1004,6 @@
}
}
}
-security {
- ipsec {
- security-association OneNet-OSPF3-AUTH {
- mode transport;
- manual {
- direction bidirectional {
- protocol ah;
- spi 256;
- authentication {
- algorithm hmac-md5-96;
-# key <removed>;
- }
- }
- }
- }
- }
-}
interfaces {
xe-0/0/0 {
description "CORE 10GE to core1.tul xe-0/0/0 | OneNet-TUL-TUL-XE-4455";
@@ -1753,201 +1736,6 @@
level 1 disable;
}
}
- inactive: ospf {
- reference-bandwidth 100g;
- area 0.0.0.0 {
- interface xe-0/1/1.236 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface lo0.0 {
- link-protection;
- }
- interface fxp0.0 {
- disable;
- }
- interface xe-1/1/1.144 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-0/0/1.128 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/0/1.69 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/1/1.69 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ae4.104 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- }
- interface et-3/3/0.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface et-3/1/0.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/3/0.70 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-1/0/0.132 {
- link-protection;
- }
- interface ae5.132 {
- authentication {
- md5 7# key <removed>;
- }
- }
- interface ae0.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ae3.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-3/0/2.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ge-0/2/0.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- }
- }
- inactive: ospf3 {
- reference-bandwidth 100g;
- area 0.0.0.0 {
- interface xe-0/1/1.236;
- interface xe-0/0/0.104;
- interface xe-0/0/1.128;
- interface xe-2/1/1.69 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface xe-1/1/1.144 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface lo0.0;
- interface et-3/1/0.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface xe-2/3/0.70 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface ae5.132;
- interface et-3/3/0.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface ae0.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ae3.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ge-0/2/0.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- }
- }
ldp {
preference 255;
track-igp-metric;
@@ -2056,423 +1844,6 @@
prefix-list PRE-L0-SOURCES {
apply-path "interfaces lo0 unit <*> family inet address <164.*>";
}
- prefix-list VIDEO-ABUSE {
- 4.59.116.99/32;
- 5.135.127.38/32;
- 8.26.191.15/32;
- 27.251.106.77/32;
- 27.251.150.44/32;
- 41.72.146.236/32;
- 46.170.123.99/32;
- 50.57.99.176/32;
- 50.63.58.104/32;
- 54.225.86.175/32;
- 62.68.135.112/32;
- 62.75.189.212/32;
- 64.221.57.243/32;
- 65.23.95.226/32;
- 66.241.103.37/32;
- 68.235.34.138/32;
- 69.11.252.171/32;
- 69.156.233.135/32;
- 70.166.27.17/32;
- 70.182.140.72/32;
- 72.249.45.157/32;
- 74.95.24.49/32;
- 75.101.143.102/32;
- 80.45.167.51/32;
- 82.35.15.107/32;
- 82.146.33.58/32;
- 82.188.213.26/32;
- 83.16.211.90/32;
- 85.9.50.130/32;
- 85.25.109.205/32;
- 85.116.199.189/32;
- 85.214.216.176/32;
- 85.236.48.60/32;
- 89.36.133.86/32;
- 89.175.189.244/32;
- 92.39.60.91/32;
- 92.87.37.56/32;
- 94.143.64.9/32;
- 94.180.115.53/32;
- 98.109.76.36/32;
- 123.30.145.15/32;
- 123.30.180.151/32;
- 155.210.153.18/32;
- 157.86.6.21/32;
- 180.42.38.252/32;
- 190.144.8.146/32;
- 190.210.97.99/32;
- 192.73.243.62/32;
- 192.198.85.133/32;
- 192.241.216.209/32;
- 194.54.9.11/32;
- 194.186.1.25/32;
- 195.120.220.31/32;
- 199.27.89.22/32;
- 200.23.251.182/32;
- 200.43.140.19/32;
- 201.33.235.198/32;
- 201.174.78.62/32;
- 202.57.32.35/32;
- 202.65.119.162/32;
- 202.65.121.186/32;
- 202.215.5.237/32;
- 203.143.104.114/32;
- 203.162.79.155/32;
- 203.171.242.251/32;
- 206.191.192.4/32;
- 209.177.93.2/32;
- 210.125.64.233/32;
- 212.48.68.23/32;
- 212.152.181.211/32;
- 212.182.57.150/32;
- 213.21.169.14/32;
- 217.17.48.129/32;
- 219.146.12.180/32;
- }
- prefix-list MARTIANS-IPV4 {
- 0.0.0.0/8;
- 10.0.0.0/8;
- 127.0.0.0/8;
- 169.254.0.0/16;
- 172.16.0.0/12;
- 192.0.0.0/24;
- 192.0.2.0/24;
- 192.168.0.0/16;
- 198.18.0.0/15;
- 198.51.100.0/24;
- 203.0.113.0/24;
- 224.0.0.0/4;
- 240.0.0.0/4;
- }
- policy-statement COMMODITY-PREFIXES-LIST {
- term PREFIXES {
- from {
- route-filter 64.112.240.0/20 exact;
- route-filter 66.186.144.0/20 exact;
- route-filter 129.15.0.0/16 exact;
- route-filter 129.15.0.0/17 exact;
- route-filter 129.15.128.0/17 exact;
- route-filter 129.244.0.0/16 exact;
- route-filter 129.244.0.0/17 exact;
- route-filter 129.244.128.0/17 exact;
- route-filter 139.78.0.0/16 exact;
- route-filter 152.123.8.0/21 exact;
- route-filter 156.110.0.0/16 exact;
- route-filter 156.110.144.0/20 exact;
- route-filter 156.110.240.0/20 exact;
- route-filter 157.142.0.0/16 exact;
- route-filter 162.58.0.0/16 exact;
- route-filter 164.58.0.0/16 exact;
- route-filter 192.31.83.0/24 exact;
- route-filter 192.35.96.0/24 exact;
- route-filter 192.35.98.0/24 exact;
- route-filter 192.78.4.0/24 exact;
- route-filter 192.135.141.0/24 exact;
- route-filter 192.146.206.0/24 exact;
- route-filter 192.149.244.0/24 exact;
- route-filter 192.173.32.0/19 orlonger;
- route-filter 192.198.4.0/22 exact;
- route-filter 192.203.164.0/24 exact;
- route-filter 192.206.65.0/24 exact;
- route-filter 192.231.56.0/24 exact;
- route-filter 192.234.12.0/24 exact;
- route-filter 192.234.13.0/24 exact;
- route-filter 198.11.4.0/22 exact;
- route-filter 198.11.4.0/24 exact;
- route-filter 198.11.5.0/24 exact;
- route-filter 198.11.6.0/24 exact;
- route-filter 198.11.7.0/24 exact;
- route-filter 198.17.223.0/24 exact;
- route-filter 198.102.159.0/24 exact;
- route-filter 198.178.194.0/24 exact;
- route-filter 198.183.248.0/23 exact;
- route-filter 198.187.154.0/24 exact;
- route-filter 198.204.126.0/24 exact;
- route-filter 199.27.8.0/21 exact;
- route-filter 199.38.147.0/24 exact;
- route-filter 199.120.0.0/21 exact;
- route-filter 199.120.8.0/22 exact;
- route-filter 199.164.253.0/24 exact;
- route-filter 199.181.88.0/22 exact;
- route-filter 199.181.88.0/24 exact;
- route-filter 199.181.89.0/24 exact;
- route-filter 199.181.90.0/24 exact;
- route-filter 199.181.91.0/24 exact;
- route-filter 199.184.200.0/24 exact;
- route-filter 199.184.201.0/24 exact;
- route-filter 199.184.202.0/24 exact;
- route-filter 199.184.203.0/24 exact;
- route-filter 199.190.128.0/23 exact;
- route-filter 199.245.163.0/24 exact;
- route-filter 199.245.164.0/24 exact;
- route-filter 199.245.165.0/24 exact;
- route-filter 199.245.166.0/24 exact;
- route-filter 199.248.134.0/23 exact;
- route-filter 204.61.0.0/21 exact;
- route-filter 204.61.8.0/22 exact;
- route-filter 204.61.12.0/23 exact;
- route-filter 204.62.16.0/21 exact;
- route-filter 204.62.24.0/22 exact;
- route-filter 204.63.216.0/21 exact;
- route-filter 204.63.222.0/24 orlonger;
- route-filter 204.87.64.0/18 exact;
- route-filter 204.107.242.0/24 exact;
- route-filter 204.108.2.0/23 exact;
- route-filter 204.108.2.0/24 exact;
- route-filter 204.108.3.0/24 exact;
- route-filter 204.126.138.0/23 exact;
- route-filter 204.126.144.0/23 exact;
- route-filter 204.126.162.0/23 exact;
- route-filter 204.126.186.0/23 exact;
- route-filter 204.126.188.0/22 exact;
- route-filter 204.126.188.0/24 exact;
- route-filter 204.126.189.0/24 exact;
- route-filter 204.126.190.0/24 exact;
- route-filter 204.126.191.0/24 exact;
- route-filter 204.154.112.0/21 exact;
- route-filter 204.236.32.0/19 exact;
- route-filter 205.143.216.0/21 exact;
- route-filter 205.153.220.0/22 exact;
- route-filter 206.202.192.0/18 orlonger;
- route-filter 206.202.208.0/23 exact;
- route-filter 206.202.208.0/24 exact;
- }
- then accept;
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement COMMODITY-PREFIXES-LIST-V6 {
- term PREFIXES {
- from {
- route-filter 2610:1d8::/32 exact;
- route-filter 2001:468:a00::/40 exact;
- route-filter 2001:19e8:8041::/48 exact;
- }
- then accept;
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-AREON-COMMODITY-V4-EXPORT {
- term UPSTREAM-COMMUNITY {
- from community ONENET_ADV_UPSTREAM;
- then accept;
- }
- term COMMODITY-PREFIX-LIST {
- from policy COMMODITY-PREFIXES-LIST;
- then accept;
- }
- term MORE-SPECIFIC {
- from {
- route-filter 164.58.172.0/24 exact;
- }
- then accept;
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-AREON-COMMODITY-V4-IMPORT {
- term REJECT-DEFAULT {
- from {
- route-filter 0.0.0.0/0 exact;
- }
- then reject;
- }
- term APPLE {
- from as-path-group AREON-COMMODITY-ROUTES;
- then {
- local-preference 139;
- community set 5078:40581;
- accept;
- }
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-AREON-EXPORT {
- term UPSTREAM-COMMUNITY {
- from community ONENET_ADV_UPSTREAM;
- then accept;
- }
- term STEP-1 {
- from policy COMMODITY-PREFIXES-LIST;
- then accept;
- }
- term STEP-2 {
- from community 5078:19401;
- then accept;
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-AREON-IMPORT {
- term STEP-1 {
- then {
- local-preference 140;
- accept;
- }
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-AREON-V6-EXPORT {
- term STEP-1 {
- from {
- route-filter 2610:1d8::/32 exact;
- }
- then accept;
- }
- term STEP-2 {
- from protocol aggregate;
- then accept;
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-AREON-V6-IMPORT {
- term STEP-1 {
- then {
- local-preference 104;
- accept;
- }
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-COGENT-EXPORT {
- term UPSTREAM-COMMUNITY {
- from community ONENET_ADV_UPSTREAM;
- then {
- community add 174:3001;
- as-path-prepend "5078 5078 5078 5078 5078 5078";
- accept;
- }
- }
- term STEP-1 {
- from policy COMMODITY-PREFIXES-LIST;
- then {
- community add 174:3001;
- as-path-prepend "5078 5078 5078 5078 5078 5078";
- accept;
- }
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-COGENT-IMPORT {
- term STEP-1 {
- then {
- local-preference subtract 20;
- community set 5078:174;
- accept;
- }
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-COGENT-V6-EXPORT {
- term FAA {
- from {
- route-filter 2001:19e8:8041::/48 exact;
- }
- then {
- as-path-expand 3923;
- accept;
- }
- }
- term STEP-1 {
- from policy COMMODITY-PREFIXES-LIST-V6;
- then accept;
- }
- term STEP-2 {
- from protocol aggregate;
- then accept;
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-COGENT-V6-IMPORT {
- term STEP-1 {
- then {
- community set 5078:174;
- accept;
- }
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-NETFLIX-EXPORT {
- term UPSTREAM-COMMUNITY {
- from community ONENET_ADV_UPSTREAM;
- then {
- metric 10;
- accept;
- }
- }
- term ONENET {
- from policy COMMODITY-PREFIXES-LIST;
- then {
- metric 10;
- accept;
- }
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-NETFLIX-EXPORT-V6 {
- term STEP-1 {
- from policy COMMODITY-PREFIXES-LIST-V6;
- then {
- metric 10;
- accept;
- }
- }
- term REJECT-ALL-ELSE {
- then reject;
- }
- }
- policy-statement EBGP-NETFLIX-IMPORT {
- term ACCEPT-ROUTES {
- then {
- local-preference 140;
- accept;
- }
- }
- }
- policy-statement EBGP-REJECT-EXPORT {
- term STEP-1 {
- from {
- prefix-list MARTIANS-IPV4;
- }
- then reject;
- }
- }
- policy-statement EBGP-REJECT-IMPORT {
- term STEP-1 {
- from {
- route-filter 0.0.0.0/0 through 0.0.0.0/32;
- prefix-list MARTIANS-IPV4;
- }
- then reject;
- }
- }
policy-statement IBGP-CORE-RR-V4-EXPORT {
term UPSTREAM-AGGREGATES {
from {
@@ -2630,38 +2001,9 @@
load-balance per-packet;
}
}
- policy-statement REDISTRIBUTE-DIRECTS {
- term 1 {
- from protocol direct;
- then {
- community add TULSACORE2;
- external {
- type 1;
- }
- accept;
- }
- }
- }
- policy-statement REDISTRIBUTE-STATICS {
- term 1 {
- from protocol static;
- then {
- community add TULSACORE2;
- accept;
- }
- }
- }
- community 174:3001 members 174:3001;
- community 5078:174 members 5078:174;
- community 5078:19401 members 5078:19401;
- community 5078:40581 members 5078:40581;
community ONENET_ADV_UPSTREAM members 5078:5000;
community ONENET_BLACKHOLE members 5078:911;
community ONENET_LO0 members 5078:9222;
- community TULSACORE2 members 5078:222;
- as-path-group AREON-COMMODITY-ROUTES {
- as-path APPLE "40581+ 714+ .*";
- }
}
class-of-service {
classifiers {
@@ -2897,72 +2239,7 @@
}
}
}
- filter TULSA-DC-TEMP-OUT {
- term ALLOW-OKC {
- from {
- address {
- 164.58.253.0/24;
- }
- }
- then accept;
- }
- term ALLOW-LAWTON {
- from {
- address {
- 164.58.69.60/32;
- }
- }
- then accept;
- }
- term REJECT-ALL-ELSE {
- then {
- reject;
- }
- }
- }
- filter ABUSE-BCP38-INBOUND {
- term 1 {
- from {
- source-address {
- 164.58.0.0/16;
- 156.110.0.0/16;
- }
- }
- then {
- discard;
- }
- }
- term 1.5 {
- from {
- source-port 19;
- destination-port 19;
- }
- then policer CHARGEN;
- }
- term VIDEO {
- from {
- source-prefix-list {
- VIDEO-ABUSE;
- }
- destination-port [ 1720 5060 5061 1719 ];
- }
- then {
- count VIDEO-ABUSE;
- discard;
- }
- }
- term 2 {
- then accept;
- }
- }
}
- policer CHARGEN {
- if-exceeding {
- bandwidth-limit 400k;
- burst-size-limit 100k;
- }
- then discard;
- }
}
{master}
# grnoc-mon at TULSA-CORE2-MX960-RE0> show ospf neighbor
Index: configs/core1.tul-mx960.onenet.net
===================================================================
--- configs/core1.tul-mx960.onenet.net (revision 157692)
+++ configs/core1.tul-mx960.onenet.net (working copy)
@@ -1,12 +1,12 @@
# RANCID-CONTENT-TYPE: juniper
#
# grnoc-mon at TULSA-CORE1-MX960-RE0> show system commit
+# 2017-10-14 06:23:03 CDT by andrew via cli commit synchronize
# 2017-10-14 05:58:29 CDT by andrew via cli commit synchronize
# 2017-10-10 11:30:10 CDT by andrew via cli commit synchronize
# 2017-09-24 17:01:25 CDT by andrew via cli commit synchronize
# 2017-09-24 16:59:02 CDT by andrew via cli commit synchronize
# 2017-09-24 14:02:32 CDT by andrew via cli commit synchronize
-# 2017-08-11 23:01:10 CDT by andrew via cli commit synchronize
# grnoc-mon at TULSA-CORE1-MX960-RE0> show chassis environment
# Class Item Status Measurement
# Temp PEM 0 OK
@@ -645,7 +645,7 @@
# grnoc-mon at TULSA-CORE1-MX960-RE0> show system uptime
# System booted: 2016-03-20 00:58 CDT
# Protocols started: 2016-03-20 01:01 CDT
-# Last configured: 2017-10-14 05:58 CDT by andrew
+# Last configured: 2017-10-14 06:23 CDT by andrew
#
# {master}
# grnoc-mon at TULSA-CORE1-MX960-RE0> show interface terse
@@ -845,7 +845,7 @@
#pp0 up up
#tap up up
# grnoc-mon at TULSA-CORE1-MX960-RE0> show configuration
-## Last commit: 2017-10-14 05:58:29 CDT by andrew
+## Last commit: 2017-10-14 06:23:03 CDT by andrew
version 13.3R8.7;
groups {
re0 {
@@ -1115,23 +1115,6 @@
}
}
}
-security {
- ipsec {
- security-association OneNet-OSPF3-AUTH {
- mode transport;
- manual {
- direction bidirectional {
- protocol ah;
- spi 256;
- authentication {
- algorithm hmac-md5-96;
-# key <removed>;
- }
- }
- }
- }
- }
-}
interfaces {
xe-0/0/0 {
description "CORE 10GE to core2.tul xe-0/0/0 | OneNet-TUL-TUL-XE-4455";
@@ -2051,296 +2034,6 @@
}
}
}
- inactive: ospf {
- reference-bandwidth 100g;
- area 0.0.0.0 {
- interface xe-0/1/0.124 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface lo0.0 {
- link-protection;
- }
- interface xe-0/0/1.108 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface fxp0.0 {
- disable;
- }
- interface xe-1/2/0.156 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ae1.116 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ae0.112 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/0/1.69 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/1/0.69 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/1/1.69 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/2/1.40 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/3/0.40 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ae4.104 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- }
- interface et-3/3/0.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface et-3/1/0.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-0/1/0.70 {
- link-protection;
- }
- interface xe-4/1/0.70 {
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-4/1/1.70 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/3/1.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ae2.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/2/0.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-1/3/0.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ge-0/2/0.42 {
- link-protection;
- authentication {
- md5 7# key <removed>;
- }
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- }
- }
- inactive: ospf3 {
- reference-bandwidth 100g;
- area 0.0.0.0 {
- interface ae0.112;
- interface xe-1/2/0.156;
- interface ae1.116;
- interface xe-0/0/0.104;
- interface xe-0/0/1.108;
- interface xe-2/1/0.69 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface xe-2/3/0.40 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface xe-0/1/0.124 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface xe-2/2/1.40 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface xe-2/1/1.69 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface xe-2/0/1.69 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface lo0.0 {
- passive;
- }
- interface et-3/1/0.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface xe-4/1/0.70 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface xe-2/3/1.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface et-3/3/0.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- interface ae2.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-2/2/0.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface xe-1/3/0.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- bfd-liveness-detection {
- minimum-interval 400;
- multiplier 3;
- }
- }
- interface ge-0/2/0.42 {
- link-protection;
- ipsec-sa OneNet-OSPF3-AUTH;
- }
- }
- }
ldp {
preference 255;
track-igp-metric;
@@ -2622,41 +2315,9 @@
load-balance per-packet;
}
}
- policy-statement REDISTRIBUTE-DIRECTS {
- term 1 {
- from protocol direct;
- then {
- community add TULSACORE1;
- external {
- type 1;
- }
- accept;
- }
- }
- }
- policy-statement REDISTRIBUTE-STATICS {
- term 1 {
- from protocol static;
- then {
- community add TULSACORE1;
- accept;
- }
- }
- }
- policy-statement SEND-AGGREGAGE-ROUTE {
- term send-aggregate {
- from protocol aggregate;
- then {
- community add aggregate;
- accept;
- }
- }
- }
community ONENET_ADV_UPSTREAM members 5078:5000;
community ONENET_BLACKHOLE members 5078:911;
community ONENET_LO0 members 5078:9221;
- community TULSACORE1 members 5078:221;
- community aggregate members 5078:9601;
}
class-of-service {
classifiers {
Index: configs/pushmataha-fmc-clayton.client.onenet.net
===================================================================
--- configs/pushmataha-fmc-clayton.client.onenet.net (revision 157668)
+++ configs/pushmataha-fmc-clayton.client.onenet.net (working copy)
@@ -181,7 +181,7 @@
#st0 up up
#st0.0 up up
#st0.1 up up
-#st0.2 up up
+#st0.2 up down
#tap up up
#vlan up up
#vlan.999 up down
More information about the Nocrancid
mailing list