From f0823c44049f24695b3d9f2f15709704a12db6b0 Mon Sep 17 00:00:00 2001 From: John Poland Date: Fri, 15 Aug 2025 07:06:38 -0400 Subject: [PATCH] mx/noc-jmx-104-b.set Fri Aug 15 07:06:38 AM EDT 2025 --- configs/mx/noc-jmx-104-b.set | 66 ++++++++++++++++++++++++++++++++++-- 1 file changed, 63 insertions(+), 3 deletions(-) diff --git a/configs/mx/noc-jmx-104-b.set b/configs/mx/noc-jmx-104-b.set index 56f5c7a..9661f81 100644 --- a/configs/mx/noc-jmx-104-b.set +++ b/configs/mx/noc-jmx-104-b.set @@ -94,14 +94,19 @@ set policy-options prefix-list ISP-Monitoring 130.117.254.0/24 set policy-options prefix-list ISP-Monitoring 131.239.69.124/30 set policy-options prefix-list ISP-Monitoring 192.168.168.0/30 set policy-options prefix-list ISP-Monitoring 199.109.0.0/16 +set policy-options prefix-list MX104-BGP-IP 38.122.121.34/32 set policy-options prefix-list MX104-BGP-IP 131.239.69.126/32 set policy-options prefix-list MX104-BGP-IP 192.168.168.2/32 +set policy-options prefix-list MX104-BGP-IP 199.109.13.42/32 +set policy-options prefix-list MX104-BGP-IP 199.109.113.42/32 set policy-options prefix-list MX104-BGP-IP 209.160.176.234/32 set policy-options prefix-list MX104-Public-IP 38.122.121.34/32 set policy-options prefix-list MX104-Public-IP 198.36.24.1/32 set policy-options prefix-list MX104-Public-IP 198.36.24.13/32 set policy-options prefix-list MX104-Public-IP 199.109.9.170/32 +set policy-options prefix-list MX104-Public-IP 199.109.13.42/32 set policy-options prefix-list MX104-Public-IP 199.109.109.170/32 +set policy-options prefix-list MX104-Public-IP 199.109.113.42/32 set policy-options prefix-list MX104-Public-IP 207.136.192.29/32 set policy-options prefix-list MX104-Public-IP 208.49.41.122/32 set policy-options prefix-list MX104-SSH-IP 131.239.69.126/32 @@ -127,16 +132,35 @@ set policy-options prefix-list Trusted-SSH-MX104 98.3.114.101/32 set policy-options prefix-list Trusted-SSH-MX104 192.168.168.1/32 set policy-options policy-statement EXPORT-TO-MX104-A term next_hop_self then next-hop self set policy-options policy-statement EXPORT-TO-MX104-A term next_hop_self then accept +set policy-options policy-statement from-Cogent term set-Cogent-local-preference-v4 from family inet +set policy-options policy-statement from-Cogent term set-Cogent-local-preference-v4 then local-preference 200 +set policy-options policy-statement from-Cogent term set-Cogent-local-preference-v4 then accept +set policy-options policy-statement from-Cogent term reject then reject +set policy-options policy-statement from-Cogent term set-Cogent-local-Cogent-v4 then accept set policy-options policy-statement from-CrownCastle term set-CrownCastle-local-preference-v4 from family inet -set policy-options policy-statement from-CrownCastle term set-CrownCastle-local-preference-v4 then local-preference 250 +set policy-options policy-statement from-CrownCastle term set-CrownCastle-local-preference-v4 then local-preference 251 set policy-options policy-statement from-CrownCastle term set-CrownCastle-local-preference-v4 then accept -deactivate policy-options policy-statement from-CrownCastle term set-CrownCastle-local-preference-v4 set policy-options policy-statement from-CrownCastle term reject then reject +set policy-options policy-statement from-NYSERNet term set-NYSERNet-local-preference-v4 from family inet +set policy-options policy-statement from-NYSERNet term set-NYSERNet-local-preference-v4 then local-preference 300 +set policy-options policy-statement from-NYSERNet term set-NYSERNet-local-preference-v4 then accept +set policy-options policy-statement from-NYSERNet term reject then reject +set policy-options policy-statement to-Cogent term prepend-Cogent-v4 from family inet +set policy-options policy-statement to-Cogent term prepend-Cogent-v4 from prefix-list-filter SCSD_nets exact +set policy-options policy-statement to-Cogent term prepend-Cogent-v4 then community add cogent_localpref_10 +set policy-options policy-statement to-Cogent term prepend-Cogent-v4 then accept +set policy-options policy-statement to-Cogent term reject then reject set policy-options policy-statement to-CrownCastle term advertise-CrownCastle-v4 from family inet set policy-options policy-statement to-CrownCastle term advertise-CrownCastle-v4 from prefix-list-filter SCSD_nets exact +set policy-options policy-statement to-CrownCastle term advertise-CrownCastle-v4 then community add crown_localpref_160 set policy-options policy-statement to-CrownCastle term advertise-CrownCastle-v4 then accept -deactivate policy-options policy-statement to-CrownCastle term advertise-CrownCastle-v4 set policy-options policy-statement to-CrownCastle term reject then reject +set policy-options policy-statement to-NYSERNet term NYSERNet-v4 from family inet +set policy-options policy-statement to-NYSERNet term NYSERNet-v4 from prefix-list-filter SCSD_nets exact +set policy-options policy-statement to-NYSERNet term NYSERNet-v4 then accept +set policy-options policy-statement to-NYSERNet term reject then reject +set policy-options community cogent_localpref_10 members 174:10 +set policy-options community crown_localpref_160 members 46887:60160 set firewall family inet filter Hard-Edge term TEMP-allow-icmp from protocol icmp set firewall family inet filter Hard-Edge term TEMP-allow-icmp then accept set firewall family inet filter Hard-Edge term allow-ssh-mx104 from source-prefix-list Trusted-SSH-MX104 @@ -195,6 +219,42 @@ set protocols bgp group internal local-as 395534 set protocols bgp group internal neighbor 192.168.168.1 export EXPORT-TO-MX104-A set protocols bgp group internal neighbor 192.168.168.1 bfd-liveness-detection minimum-interval 1000 set protocols bgp group internal neighbor 192.168.168.1 bfd-liveness-detection multiplier 3 +set protocols bgp group NYSERNet-v4 local-address 199.109.13.42 +set protocols bgp group NYSERNet-v4 import from-NYSERNet +set protocols bgp group NYSERNet-v4 family inet unicast +set protocols bgp group NYSERNet-v4 export to-NYSERNet +set protocols bgp group NYSERNet-v4 peer-as 3754 +set protocols bgp group NYSERNet-v4 bfd-liveness-detection minimum-interval 1000 +set protocols bgp group NYSERNet-v4 bfd-liveness-detection multiplier 3 +set protocols bgp group NYSERNet-v4 neighbor 199.109.13.41 +deactivate protocols bgp group NYSERNet-v4 +set protocols bgp group NYSERNet-CDN-v4 local-address 199.109.113.42 +set protocols bgp group NYSERNet-CDN-v4 import from-NYSERNet +set protocols bgp group NYSERNet-CDN-v4 family inet unicast +set protocols bgp group NYSERNet-CDN-v4 export to-NYSERNet +set protocols bgp group NYSERNet-CDN-v4 peer-as 3630 +set protocols bgp group NYSERNet-CDN-v4 bfd-liveness-detection minimum-interval 1000 +set protocols bgp group NYSERNet-CDN-v4 bfd-liveness-detection multiplier 3 +set protocols bgp group NYSERNet-CDN-v4 neighbor 199.109.113.41 +deactivate protocols bgp group NYSERNet-CDN-v4 +set protocols bgp group Cogent-v4 local-address 38.122.121.34 +set protocols bgp group Cogent-v4 import from-Cogent +set protocols bgp group Cogent-v4 family inet unicast +set protocols bgp group Cogent-v4 export to-Cogent +set protocols bgp group Cogent-v4 peer-as 174 +set protocols bgp group Cogent-v4 bfd-liveness-detection minimum-interval 1000 +set protocols bgp group Cogent-v4 bfd-liveness-detection multiplier 3 +set protocols bgp group Cogent-v4 neighbor 38.122.121.33 +deactivate protocols bgp group Cogent-v4 +set protocols bgp group CrownCastle-v4 local-address 209.160.176.234 +set protocols bgp group CrownCastle-v4 import from-CrownCastle +set protocols bgp group CrownCastle-v4 family inet unicast +set protocols bgp group CrownCastle-v4 export to-CrownCastle +set protocols bgp group CrownCastle-v4 peer-as 46887 +set protocols bgp group CrownCastle-v4 bfd-liveness-detection minimum-interval 1000 +set protocols bgp group CrownCastle-v4 bfd-liveness-detection multiplier 3 +set protocols bgp group CrownCastle-v4 neighbor 209.160.176.233 +set protocols bgp enable set protocols bgp bgp-error-tolerance set protocols bgp local-as 395534 set protocols sflow polling-interval 20