BGP Flowspec Controller
The Controller is configured using CLI to provide that entry for NRLI injection.
BGP Flowspec Configuration
•
BGP-side: You must enable the new address family for advertisement. This procedure is applicable for
both the Client and the Controller. Enable Flowspec on BGP Side, on page 213 explains the procedure.
Client-side: No specific configuration, except availability of a flowspec-enabled peer.
•
Controller-side: This includes the policy-map definition and the association to the ePBR configuration
consists of two procedures: the class definition, and using that class in ePBR to define the action. The
following topics explain the procedure:
•
Define Policy Map, on page 215
•
Define Class, on page 214
•
Link Flowspec to PBR Policies , on page 217
How to Configure BGP Flowspec
Use the following procedures to enable and configure the BGP flowspec feature:
•
Enable Flowspec on BGP Side, on page 213
•
Define Class, on page 214
•
Define Policy Map, on page 215
•
Link Flowspec to PBR Policies , on page 217
Cisco ASR 9000 Series Aggregation Services Router Routing Configuration Guide, Release 5.3.x
212
Implementing BGP Flowspec
How to Configure BGP Flowspec