Sunday, January 10, 2021

Juniper BGP Aggregate

Dear all,

Jumpa lagi sama saya. Kali ini saya akan bagi tips untuk membuat link aggregate BGP menggunakan Juniper Feat Mikrotik, dimana ada 2 link metro-e yakni ICONPLUS dan HSP

Berikut skema-nya :

[IDC3D] Juniper <> metro-e ICON <> Mikrotik sisi pelanggan
[IDC3D] Juniper <> metro-e HSP <> Mikrotik sisi pelanggan

dimana ip point to point-nya

Juniper 10.0.101.17/30 <> 10.0.101.18/30 Mikrotik
Juniper 10.0.101.21/30 <> 10.0.101.22/30 Mikrotik

OK, sekarang kita set di sisi Junipernya

Kita buat dulu policy LOADBALANCE

# set policy-options policy-statement LOADBALANCE then load-balance consistent-hash

nanti hasilnya gini

policy-statement LOADBALANCE {

    then {

        load-balance consistent-hash;

    }

}

 

terus sekarang bikin policy routing filter IN

# top show policy-options policy-statement DIST-MIRZA-IN

inactive: term REJECT-TMP {

    then reject;

}

term ACCEPT {

    from {

        route-filter 103.146.184.0/23 prefix-length-range /25-/32;

        route-filter 129.9.0.0/16 prefix-length-range /16-/32;

    }

    then accept;

}

term REJECT {

    then reject;

}


lalu buat policy routing filter OUT

# top show policy-options policy-statement DIST-MIRZA-OUT

inactive: term REJECT-TMP {

    then reject;

}

term HSP {

    from {

        route-filter 0.0.0.0/0 exact;

    }

    then {

        next-hop 10.0.101.17;

        accept;

    }

}

term ICON {

    from {

        route-filter 0.0.0.0/0 exact;

    }

    then {

        next-hop 10.0.101.21;

        accept;

    }

}

inactive: term ACCEPT {

    from {

        route-filter 0.0.0.0/0 exact;

    }

    then accept;

}

term REJECT {

    then reject;

}

Jika sudah, lalu buat bgp peer neighbor

group MIRZA {

    description Mirza;

    import DIST-MIRZA-IN;

    export DIST-MIRZA-OUT;

    peer-as 65530;

    multipath;

    neighbor 10.0.101.22;

    neighbor 10.0.101.18;

    neighbor 10.0.101.26;

}

kemudian cek confignya sudah bener apa belum
CoreBorder# commit check
CoreBorder# commit confirm 5 <= masa berlaku 5 menit, bebas silahkan tentukan
misal sudah ok tinggal gini
CoreBorder# commit

Lalu untuk sisi Mikrotiknya setingan BGP Standar, ngga ada setingan khusus.

Semoga Bermanfaat