No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

ACL Imported by NE80E for Route Filter does not Filter an Aggregated Route

Publication Date:  2012-07-27 Views:  37 Downloads:  0
Issue Description
When the NE80E is configured with route filter policy,apply ACL to the filter policy. The ACL contains the rule of rule 10 permit source 134.128.0.0 0.0.255.255. As a result, two routes 134.128.0.0/11 and 134.128.0.0/16 are imported. 
      
Alarm Information
Null
      
Handling Process
Apply the IP prefix as follows: ip ip-prefix p1 permit 134.128.0.0 16 greater-equal 16 less-equal 16
Only the routes with 16-bit mask are imported. 
      
Root Cause
The ACL applied to routing policy must be standard (only including the source IP and mask). For the standard ACL rule, the length of prefix (a prefix consists of prefix number and prefix length) is ignored; that is, the rule is matched if the prefix number matches. So two routes are imported. 
      
Suggestions
When configuring the route filter policy, pay attention to the effectiveness of ACL and IP prefix. If it needs to ascertain the mask length precisely, use the IP prefix. 

END