Nota
En este post se representara un escenario donde simulamos que redes de internet se estan comunicando con una red ISP a través de un Carrier. Los prefijos y ASN utilizados son solo para emular el laboratorio generado en eve-ng
Se pretende llegar al siguiente Diagrama
Nota
Si el juniper esta buscando conectarse por DHCP eliminar la interfaz de DCHCP con:
delete chassis auto-image-upgrade
commit
Nota
Se debe configurar la contraseña y el nombre del juniper para que al aplicar commit se permita correctamente
configure
set system root-authentication plain-text-password
set system host-name NOMBREDELRB
commit
Configuracion Router FACEBOOK
configure
set system host-name FACEBOOK
set interfaces ge-0/0/0 unit 0 family inet address 10.10.13.1/24
set interfaces ge-0/0/1 unit 0 family inet address 1.1.1.5/24
set routing-options autonomous-system 100
set policy-options policy-statement EXPORT term RED1 from route-filter 1.1.1.0/24 exact
set policy-options policy-statement EXPORT term RED1 then accept
set protocols bgp group ASN300 type external
set protocols bgp group ASN300 peer-as 300
set protocols bgp group ASN300 neighbor 10.10.13.2
set protocols bgp group ASN300 export EXPORT
Nota
Para ver la configuración de los comandos agregados utilizamos: show configuration | display set
Configuracion Router GOOGLE
configure
set system host-name GOOGLE
set interfaces ge-0/0/0 unit 0 family inet address 2.2.2.1/24
set interfaces ge-0/0/1 unit 0 family inet address 8.8.8.2/24
set routing-options autonomous-system 200
set policy-options policy-statement EXPORT term RED2 from route-filter 2.2.2.0/24 exact
set policy-options policy-statement EXPORT term RED2 then accept
set policy-options policy-statement EXPORT term RED8 from route-filter 8.8.8.0/24 exact
set policy-options policy-statement EXPORT term RED8 then accept
set protocols bgp group ASN300 type external
set protocols bgp group ASN300 peer-as 300
set protocols bgp group ASN300 neighbor 2.2.2.2
set protocols bgp group ASN300 export EXPORT
commit
Configuracion ALESTRA
configure
set system host-name ALESTRA
set interfaces ge-0/0/0 unit 0 family inet address 10.10.13.2/24
set interfaces ge-0/0/1 unit 0 family inet address 2.2.2.2/24
set interfaces ge-0/0/2 unit 0 family inet address 3.3.3.1/24
set routing-options autonomous-system 300
set policy-options policy-statement EXPORT term RED3 from route-filter 3.3.3.0/24 exact
set policy-options policy-statement EXPORT term RED3 then accept
set protocols bgp group ASN100 type external
set protocols bgp group ASN100 peer-as 100
set protocols bgp group ASN100 neighbor 10.10.13.1
set protocols bgp group ASN200 type external
set protocols bgp group ASN200 peer-as 200
set protocols bgp group ASN200 neighbor 2.2.2.1
set protocols bgp group ASN400 type external
set protocols bgp group ASN400 peer-as 400
set protocols bgp group ASN400 neighbor 3.3.3.2
set protocols bgp group ASN100 export EXPORT
set protocols bgp group ASN200 export EXPORT
set protocols bgp group ASN400 export EXPORT
commit
Configuracion ISP-BORDE
configure
set system host-name ISP-BORDE
set interfaces ge-0/0/0 unit 0 family inet address 3.3.3.2/24
set interfaces ge-0/0/1 unit 0 family inet address 4.4.5.254/24
set routing-options autonomous-system 400
set routing-options static route 192.168.9.0/24 next-hop 4.4.5.2
set policy-options policy-statement EXPORT term RED4 from route-filter 4.4.5.0/22 exact
set policy-options policy-statement EXPORT term RED4 then accept
set policy-options policy-statement EXPORT term LAN from route-filter 192.168.9.0/24 exact
set policy-options policy-statement EXPORT term LAN then accept
set protocols bgp group ASN300 type external
set protocols bgp group ASN300 peer-as 300
set protocols bgp group ASN300 neighbor 3.3.3.1
set protocols bgp group ASN300 export EXPORT
commit
Configuracion Mikrotik ISP-CORE
/ip address
add address=4.4.5.2/24 interface=ether1
add address=192.168.9.254/24 interface=ether8
/ip route
add dst-address=0.0.0.0/0 gateway=4.4.5.254
Nota
Importante: Desabilitar el DHCP-CLIENT para que no haga conflicto con el default route del BGP y se pueda dar el ping correctamente
Servidor (PC) FACEBOOK
IP: 1.1.1.6
Mascara: 255.255.255.0
Gateway: 1.1.1.5
Servidor (PC) GOOGLE
IP: 8.8.8.8
Mascara: 255.255.255.0
Gateway: 8.8.8.2
PC Cliente Final
IP: 192.168.9.2
Mascara: 255.255.255.0
Gateway: 192.168.9.254
DNS: 8.8.8.8


Gracias:
Me agrada:
Me desagrada: 

Citar