?
Solved

Access-list for a redistribution

Posted on 2011-04-21
2
Medium Priority
?
384 Views
Last Modified: 2012-05-11
just wondering if the following access-list for a route-map to be used for ospf redistribution will work?  
I am trying to deny just a host within a network and redistribute all IPs on that network.  The access-list and route-map
is below:

!
router ospf 10
 redistribute static metric 1 metric-type 1 subnets route-map REDISTRIBUTE-STATIC

!
route-map REDISTRIBUTE-STATIC permit 10
 match ip address 30
 set metric 1
!
access-list 30 deny host 192.168.5.80
access-list 30 permit 192.168.5.0 0.0.0.255
access-list 30 permit 172.1.1.0 0.0.0.255
access-list 30 deny any log

 Thanks much,
Paula
0
Comment
Question by:ccie13026
2 Comments
 
LVL 18

Accepted Solution

by:
jmeggers earned 375 total points
ID: 35442746
I haven't tried this but my guess is it isn't going to work.  But as usual it really boils down to "what problem are you trying to solve."  Are you trying to prevent traffic from reaching the host?  If so, obviously an ACL would work, but that's not very scaleable.  You might want to play around with black-hole filtering.  Basically set up a route-map, match on an ACL and set the next-hop to null0.  
0
 

Author Closing Comment

by:ccie13026
ID: 36049508
This was something to try and not a complete solution.
0

Featured Post

Restore individual SQL databases with ease

Veeam Explorer for Microsoft SQL Server delivers an easy-to-use, wizard-driven interface for restoring your databases from a backup. No expert SQL background required. Web interface provides a complete view of all available SQL databases to simplify the recovery of lost database

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

The article explains the protocols and technology which is involved when two computers on different TCP/IP networks communicate with each other. In the diagram, a router is used to segregate two networks. The networks are 192.168.1.0/24 and 192…
This is the first one of a series of articles I’ll be writing to address technical issues that are always referred to as network problems. The network boundaries have changed, therefore having an understanding of how each piece in the network  puzzl…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
After creating this article (http://www.experts-exchange.com/articles/23699/Setup-Mikrotik-routers-with-OSPF.html), I decided to make a video (no audio) to show you how to configure the routers and run some trace routes and pings between the 7 sites…
Suggested Courses
Course of the Month14 days, 13 hours left to enroll

839 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question