Solved

Routing Null0 configuration

Posted on 2008-10-18
3
529 Views
Last Modified: 2012-08-13
Hello all,
i have some routes on my router connected to Internet and i have multiple route to the inside of my network
for each subnet routed, i have the ip route line and 2 more routes to Null0. It's public IP and in the example i used private IP.
Can someone please explain me for what we have this 2 routes to Null0 and do i really need them ?
example:
ip route 172.16.2.0 255.255.255.0 192.168.1.1
ip route 172.16.2.0 255.255.255.255 Null0
ip route 172.16.2.255 255.255.255.255 Null0

thanks
0
Comment
Question by:lemaitre75
3 Comments
 
LVL 13

Assisted Solution

by:kdearing
kdearing earned 50 total points
ID: 22748416
The Null interface is typically used for preventing routing loops.

http://www.cisco.com/en/US/tech/tk364/technologies_tech_note09186a00801c9a6e.shtml
0
 
LVL 50

Assisted Solution

by:Don Johnston
Don Johnston earned 150 total points
ID: 22749858
The function of the Null next hop is to allow creating a static route where the traffic won't be forwarded.

This could be, as previously stated, to prevent a routing loop. It can also be used when a route is needed in the routing table, but it won't be used.

In your case it could be that it was needed in the past for some purpose but isn't required anymore. Without seeing the rest of the config and knowing the topology of the network, it's impossible to say for certain.
0
 
LVL 5

Accepted Solution

by:
rexxus earned 300 total points
ID: 22751513
The routes to Null0 are either to enable the routes to appear in the internal routing protocol route table so that they can be propagated to an external routing protocol such as BGP.  They would no longer be needed with the ip route 172.16.2.0 255.255.255.0 192.168.1.1 configuration in place.

The interesting thing is that the routes are for the network and broadcast address of the network, these were possibly put in place to stop some sort of mapping scan or smurf attack.  There are other commands, so as no "no ip directed-broadcast" on the interface that can perform this task in place of the static route.
0

Featured Post

What Security Threats Are You Missing?

Enhance your security with threat intelligence from the web. Get trending threat insights on hackers, exploits, and suspicious IP addresses delivered to your inbox with our free Cyber Daily.

Join & Write a Comment

Suggested Solutions

In this tutorial I will show you with short command examples how to obtain a packet footprint of all traffic flowing thru your Juniper device running ScreenOS. I do not know the exact firmware requirement, but I think the fprofile command is availab…
Quality of Service (QoS) options are nearly endless when it comes to networks today. This article is merely one example of how it can be handled in a hub-n-spoke design using a 3-tier configuration.
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…

707 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question

Need Help in Real-Time?

Connect with top rated Experts

17 Experts available now in Live!

Get 1:1 Help Now