Help us improve your experience.

Let us know what you think.

Do you have time for a two-minute survey?

Navigation
Guide That Contains This Content
[+] Expand All
[-] Collapse All

    Example: Configuring MPLS Inter-AS Link-Node Protection

    This example shows how to configure tail-end protection in an inter-AS deployment with Layer 3 VPNs.

    Requirements

    No special configuration beyond device initialization is required before configuring this example.

    Overview

    In Figure 1. autonomous system border routers (ASBRs) run external BGP (EBGP) to ASBRs in another autonomous system (AS) to exchange labels for /32 IPv4 routes. Inside the ASs, internal BGP (IBGP) propagates the routes to provider edge (PE) devices.

    If the link from Device ASBR3 to Device ASBR1 goes down, until ASBR3 reinstalls the new next hop, all traffic going toward AS 64510 from AS 64511 through the ASBR3-ASBR1 link is dropped.

    This example shows how to achieve fast traffic restoration by configuring Device ASBR3 to preprogram a backup path through Device ASBR2.

    Note: This solution does not handle the Device P3 to Device ASBR3 failure. Nor does it handle a failure on Device ASBR3 for traffic going toward AS 645111 from AS 64510 through the ASBR3-ASBR1 link. This traffic is dropped.

    CLI Quick Configuration shows the configuration for all of the devices in Figure 1.

    The section Step-by-Step Procedure describes the steps on Device ASBR3.

    Configuration

    To quickly configure this example, copy the following commands, paste them into a text file, remove any line breaks, change any details necessary to match your network configuration, and then copy and paste the commands into the CLI at the [edit] hierarchy level.

    Device ASBR1

    set interfaces fe-1/2/0 unit 6 family inet address 20.20.20.2/30set interfaces fe-1/2/2 unit 0 family mplsset interfaces fe-1/2/0 unit 0 family inet address 21.21.21.1/30set interfaces fe-1/2/0 unit 0 family mplsset interfaces lo0 unit 0 family inet address 4.4.4.4/32set protocols rsvp interface fe-1/2/2.0set protocols rsvp interface lo0.0set protocols mpls traffic-engineering bgp-igp-both-ribsset protocols mpls label-switched-path To_PE1 to 2.2.2.2set protocols mpls interface fe-1/2/2.0set protocols mpls interface fe-1/2/0.0set protocols mpls interface lo0.0set protocols bgp group To-PE1 type internalset protocols bgp group To-PE1 local-address 4.4.4.4set protocols bgp group To-PE1 family inet unicastset protocols bgp group To-PE1 family inet labeled-unicastset protocols bgp group To-PE1 export next-hop-selfset protocols bgp group To-PE1 neighbor 2.2.2.2 family inet labeled-unicastset protocols bgp group To-ASBR3 type externalset protocols bgp group To-ASBR3 family inet labeled-unicastset protocols bgp group To-ASBR3 export To-ASBR3set protocols bgp group To-ASBR3 neighbor 21.21.21.2 peer-as 64511set protocols ospf traffic-engineeringset protocols ospf area 0.0.0.0 interface fe-1/2/2.0set protocols ospf area 0.0.0.0 interface lo0.0 passiveset policy-options policy-statement To-ASBR3 term 1 from route-filter 2.2.2.2/32 exactset policy-options policy-statement To-ASBR3 term 1 then acceptset policy-options policy-statement To-ASBR3 term 2 then rejectset policy-options policy-statement next-hop-self then next-hop selfset routing-options autonomous-system 64510

    Device ASBR2

    set interfaces fe-1/2/0 unit 0 description to-P2set interfaces fe-1/2/0 unit 0 family inet address 25.25.25.1/30set interfaces fe-1/2/0 unit 0 family mplsset interfaces fe-1/2/1 unit 0 description to-ASBR3set interfaces fe-1/2/1 unit 0 family inet address 26.26.26.1/30set interfaces fe-1/2/1 unit 0 family mplsset interfaces lo0 unit 0 family inet address 9.9.9.9/32set protocols rsvp interface fe-1/2/0.0set protocols rsvp interface lo0.0set protocols mpls traffic-engineering bgp-igp-both-ribsset protocols mpls label-switched-path To_PE1 to 2.2.2.2set protocols mpls interface fe-1/2/0.0set protocols mpls interface fe-1/2/1.0set protocols mpls interface lo0.0set protocols bgp group To-PE1 type internalset protocols bgp group To-PE1 local-address 9.9.9.9set protocols bgp group To-PE1 family inet unicastset protocols bgp group To-PE1 family inet labeled-unicastset protocols bgp group To-PE1 export next-hop-selfset protocols bgp group To-PE1 neighbor 2.2.2.2 family inet labeled-unicastset protocols bgp group To-ASBR3 type externalset protocols bgp group To-ASBR3 family inet labeled-unicastset protocols bgp group To-ASBR3 export To-ASBR3set protocols bgp group To-ASBR3 neighbor 26.26.26.2 peer-as 64511set protocols ospf traffic-engineeringset protocols ospf area 0.0.0.0 interface fe-1/2/0.0set protocols ospf area 0.0.0.0 interface lo0.0 passiveset policy-options policy-statement To-ASBR3 term 1 from route-filter 2.2.2.2/32 exactset policy-options policy-statement To-ASBR3 term 1 then acceptset policy-options policy-statement To-ASBR3 term 2 then rejectset policy-options policy-statement next-hop-self then next-hop selfset routing-options autonomous-system 64510

    Device ASBR3

    set interfaces fe-1/2/0 unit 0 description to-ASBR1set interfaces fe-1/2/0 unit 0 family inet address 21.21.21.2/30set interfaces fe-1/2/0 unit 0 family mplsset interfaces fe-1/2/2 unit 0 description to-P3set interfaces fe-1/2/2 unit 0 family inet address 22.22.22.1/30set interfaces fe-1/2/2 unit 0 family mplsset interfaces fe-1/2/1 unit 0 description to-ASBR2set interfaces fe-1/2/1 unit 0 family inet address 26.26.26.2/30set interfaces fe-1/2/1 unit 0 family mplsset interfaces lo0 unit 0 family inet address 5.5.5.5/32set protocols rsvp interface fe-1/2/2.0set protocols rsvp interface lo0.0set protocols rsvp interface fe-1/2/0.0set protocols rsvp interface fe-1/2/1.0set protocols mpls traffic-engineering bgp-igp-both-ribsset protocols mpls label-switched-path To_PE2 to 7.7.7.7set protocols mpls interface lo0.0set protocols mpls interface fe-1/2/0.0set protocols mpls interface fe-1/2/2.0set protocols mpls interface fe-1/2/1.0set protocols bgp group To-PE2 type internalset protocols bgp group To-PE2 local-address 5.5.5.5set protocols bgp group To-PE2 family inet unicastset protocols bgp group To-PE2 export next-hop-selfset protocols bgp group To-PE2 neighbor 7.7.7.7 family inet labeled-unicastset protocols bgp group To-ASBR1 type externalset protocols bgp group To-ASBR1 family inet labeled-unicast protectionset protocols bgp group To-ASBR1 export To-ASBR1set protocols bgp group To-ASBR1 neighbor 21.21.21.1 peer-as 64510set protocols bgp group To-ASBR2 type externalset protocols bgp group To-ASBR2 family inet labeled-unicast protectionset protocols bgp group To-ASBR2 export To-ASBR2set protocols bgp group To-ASBR2 neighbor 26.26.26.1 peer-as 64510set protocols ospf traffic-engineeringset protocols ospf area 0.0.0.0 interface fe-1/2/2.0set protocols ospf area 0.0.0.0 interface lo0.0 passiveset protocols ospf area 0.0.0.0 interface fe-1/2/1.0set policy-options policy-statement To-ASBR1 term 1 from route-filter 7.7.7.7/32 exactset policy-options policy-statement To-ASBR1 term 1 then acceptset policy-options policy-statement To-ASBR1 term 2 then rejectset policy-options policy-statement To-ASBR2 term 1 from route-filter 7.7.7.7/32 exactset policy-options policy-statement To-ASBR2 term 1 then acceptset policy-options policy-statement To-ASBR2 term 2 then rejectset policy-options policy-statement next-hop-self then next-hop selfset routing-options autonomous-system 64511

    Device CE1

    set interfaces fe-1/2/0 unit 0 family inet address 18.18.18.1/30set interfaces lo0 unit 0 family inet address 1.1.1.1/32set protocols ospf area 0.0.0.2 interface fe-1/2/0.0set protocols ospf area 0.0.0.2 interface lo0.0 passive

    Device CE2

    set interfaces fe-1/2/1 unit 0 family inet address 24.24.24.2/30set interfaces lo0 unit 0 family inet address 8.8.8.8/32set protocols bgp group To_PE2 neighbor 24.24.24.1 export myroutesset protocols bgp group To_PE2 neighbor 24.24.24.1 peer-as 64511set policy-options policy-statement myroutes from protocol directset policy-options policy-statement myroutes then acceptset routing-options autonomous-system 64509

    Device P1

    set interfaces fe-1/2/1 unit 0 family inet address 19.19.19.2/30set interfaces fe-1/2/1 unit 0 family mplsset interfaces fe-1/2/2 unit 0 family inet address 20.20.20.1/30set interfaces fe-1/2/2 unit 0 family mplsset interfaces lo0 unit 0 family inet address 3.3.3.3/32set protocols rsvp interface fe-1/2/1.0set protocols rsvp interface fe-1/2/2.0set protocols rsvp interface lo0.0set protocols mpls interface fe-1/2/1.0set protocols mpls interface fe-1/2/2.0set protocols mpls interface lo0.0set protocols ospf traffic-engineeringset protocols ospf area 0.0.0.0 interface fe-1/2/1.0set protocols ospf area 0.0.0.0 interface fe-1/2/2.0set protocols ospf area 0.0.0.0 interface lo0.0 passive

    Device P2

    set interfaces fe-1/2/0 unit 0 description to-ASBR2set interfaces fe-1/2/0 unit 0 family inet address 25.25.25.2/30set interfaces fe-1/2/0 unit 0 family mplsset interfaces fe-1/2/2 unit 0 description to-PE1set interfaces fe-1/2/2 unit 0 family inet address 28.28.28.1/30set interfaces fe-1/2/2 unit 0 family mplsset interfaces lo0 unit 0 family inet address 10.10.10.10/32set protocols rsvp interface fe-1/2/0.0set protocols rsvp interface fe-1/2/2.0set protocols rsvp interface lo0.0set protocols mpls interface fe-1/2/0.0set protocols mpls interface fe-1/2/2.0set protocols mpls interface lo0.0set protocols ospf traffic-engineeringset protocols ospf area 0.0.0.0 interface fe-1/2/0.0set protocols ospf area 0.0.0.0 interface fe-1/2/2.0set protocols ospf area 0.0.0.0 interface lo0.0 passive

    Device P3

    set interfaces fe-1/2/2 unit 0 family inet address 22.22.22.2/30set interfaces fe-1/2/2 unit 0 family mplsset interfaces fe-1/2/0 unit 0 family inet address 23.23.23.1/30set interfaces fe-1/2/0 unit 0 family mplsset interfaces lo0 unit 0 family inet address 6.6.6.6/32set protocols rsvp interface fe-1/2/2.0set protocols rsvp interface fe-1/2/0.0set protocols rsvp interface lo0.0set protocols mpls interface fe-1/2/2.0set protocols mpls interface fe-1/2/0.0set protocols mpls interface lo0.0set protocols ospf traffic-engineeringset protocols ospf area 0.0.0.0 interface fe-1/2/2.0set protocols ospf area 0.0.0.0 interface fe-1/2/0.0set protocols ospf area 0.0.0.0 interface lo0.0 passive

    Device PE1

    set interfaces fe-1/2/0 unit 0 family inet address 18.18.18.2/30set interfaces fe-1/2/1 unit 0 family inet address 19.19.19.1/30set interfaces fe-1/2/1 unit 0 family mplsset interfaces fe-1/2/2 unit 0 description to-P2set interfaces fe-1/2/2 unit 0 family inet address 28.28.28.2/30set interfaces lo0 unit 0 family inet address 2.2.2.2/32set protocols rsvp interface fe-1/2/0.0set protocols rsvp interface lo0.0set protocols rsvp interface fe-1/2/2.0set protocols mpls label-switched-path To-ASBR1 to 4.4.4.4set protocols mpls label-switched-path To-ASBR2 to 9.9.9.9set protocols mpls interface fe-1/2/0.0set protocols mpls interface lo0.0set protocols mpls interface fe-1/2/2.0set protocols bgp group To_ASBR1 type internalset protocols bgp group To_ASBR1 local-address 2.2.2.2set protocols bgp group To_ASBR1 family inet labeled-unicastset protocols bgp group To_ASBR1 neighbor 4.4.4.4 family inet labeled-unicast resolve-vpnset protocols bgp group To_PE2 type externalset protocols bgp group To_PE2 multihop ttl 20set protocols bgp group To_PE2 local-address 2.2.2.2set protocols bgp group To_PE2 family inet-vpn unicastset protocols bgp group To_PE2 neighbor 7.7.7.7 peer-as 64511set protocols bgp group To_ASBR2 type internalset protocols bgp group To_ASBR2 local-address 2.2.2.2set protocols bgp group To_ASBR2 family inet labeled-unicastset protocols bgp group To_ASBR2 neighbor 9.9.9.9 family inet labeled-unicast resolve-vpnset protocols ospf traffic-engineeringset protocols ospf area 0.0.0.0 interface fe-1/2/0.0set protocols ospf area 0.0.0.0 interface lo0.0 passiveset protocols ospf area 0.0.0.0 interface fe-1/2/2.0set policy-options policy-statement bgp-to-ospf term 1 from protocol bgpset policy-options policy-statement bgp-to-ospf term 1 then acceptset policy-options policy-statement bgp-to-ospf term 2 then rejectset policy-options policy-statement vpnexport term 1 from protocol ospfset policy-options policy-statement vpnexport term 1 then community add test_commset policy-options policy-statement vpnexport term 1 then acceptset policy-options policy-statement vpnexport term 2 then rejectset policy-options policy-statement vpnimport term 1 from protocol bgpset policy-options policy-statement vpnimport term 1 from community test_commset policy-options policy-statement vpnimport term 1 then acceptset policy-options policy-statement vpnimport term 2 then rejectset policy-options community test_comm members target:1:64510set routing-instances vpn2CE1 instance-type vrfset routing-instances vpn2CE1 interface fe-1/2/0.0set routing-instances vpn2CE1 route-distinguisher 1:64510set routing-instances vpn2CE1 vrf-import vpnimportset routing-instances vpn2CE1 vrf-export vpnexportset routing-instances vpn2CE1 protocols ospf export bgp-to-ospfset routing-instances vpn2CE1 protocols ospf area 0.0.0.2 interface fe-1/2/0.0set routing-options autonomous-system 64510

    Device PE2

    set interfaces fe-1/2/0 unit 0 family inet address 23.23.23.2/30set interfaces fe-1/2/0 unit 0 family mplsset interfaces fe-1/2/1 unit 0 family inet address 24.24.24.1/30set interfaces lo0 unit 0 family inet address 7.7.7.7/32set protocols rsvp interface fe-1/2/0.0set protocols rsvp interface lo0.0set protocols mpls label-switched-path To-ASBR3 to 5.5.5.5set protocols mpls interface fe-1/2/0.0set protocols mpls interface lo0.0set protocols bgp group To_ASBR3 type internalset protocols bgp group To_ASBR3 local-address 7.7.7.7set protocols bgp group To_ASBR3 family inet labeled-unicastset protocols bgp group To_ASBR3 neighbor 5.5.5.5 family inet labeled-unicast resolve-vpnset protocols bgp group To_PE1 type externalset protocols bgp group To_PE1 multihop ttl 20set protocols bgp group To_PE1 local-address 7.7.7.7set protocols bgp group To_PE1 family inet-vpn unicastset protocols bgp group To_PE1 neighbor 2.2.2.2 peer-as 64510set protocols ospf traffic-engineeringset protocols ospf area 0.0.0.0 interface fe-1/2/0.0set protocols ospf area 0.0.0.0 interface lo0.0 passiveset policy-options policy-statement vpnexport term 1 from protocol bgpset policy-options policy-statement vpnexport term 1 then community add test_commset policy-options policy-statement vpnexport term 1 then acceptset policy-options policy-statement vpnexport term 2 then rejectset policy-options policy-statement vpnimport term 1 from protocol bgpset policy-options policy-statement vpnimport term 1 from community test_commset policy-options policy-statement vpnimport term 1 then acceptset policy-options policy-statement vpnimport term 2 then rejectset policy-options community test_comm members target:1:64510set routing-instances vpn2CE2 instance-type vrfset routing-instances vpn2CE2 interface fe-1/2/1.0set routing-instances vpn2CE2 route-distinguisher 1:64510set routing-instances vpn2CE2 vrf-import vpnimportset routing-instances vpn2CE2 vrf-export vpnexportset routing-instances vpn2CE2 protocols bgp group To_CE2 peer-as 64509set routing-instances vpn2CE2 protocols bgp group To_CE2 neighbor 24.24.24.2set routing-options autonomous-system 64511

    The following example requires you to navigate various levels in the configuration hierarchy. For information about navigating the CLI, see Using the CLI Editor in Configuration Mode in the CLI User Guide.

    To configure the EBGP scenario:

    1. Configure the router interfaces.
      [edit interfaces]user@ASBR3# set fe-1/2/0 unit 0 description to-ASBR1user@ASBR3# set fe-1/2/0 unit 0 family inet address 21.21.21.2/30user@ASBR3# set fe-1/2/0 unit 0 family mpls
      user@ASBR3# set fe-1/2/2 unit 0 description to-P3user@ASBR3# set fe-1/2/2 unit 0 family inet address 22.22.22.1/30user@ASBR3# set fe-1/2/2 unit 0 family mpls
      user@ASBR3# set fe-1/2/1 unit 0 description to-ASBR2user@ASBR3# set fe-1/2/1 unit 0 family inet address 26.26.26.2/30user@ASBR3# set fe-1/2/1 unit 0 family mpls
      user@ASBR3# set lo0 unit 0 family inet address 5.5.5.5/32
    2. Configure an interior gateway protocol (IGP), such as OSPF or IS-IS.
      [edit protocols ospf]user@ASBR3# set traffic-engineering
      [edit protocols ospf area 0.0.0.0]user@ASBR3# set interface fe-1/2/2.0user@ASBR3# set interface lo0.0 passiveuser@ASBR3# set interface fe-1/2/1.0
    3. Configure the autonomous system (AS) number.
      [edit routing-options]user@ASBR3# set autonomous-system 64511
    4. Configure the routing policy.
      [edit policy-options policy-statement To-ASBR1]user@ASBR3# set term 1 from route-filter 7.7.7.7/32 exactuser@ASBR3# set term 1 then acceptuser@ASBR3# set term 2 then reject
      [edit policy-options policy-statement To-ASBR2]user@ASBR3# set term 1 from route-filter 7.7.7.7/32 exactuser@ASBR3# set term 1 then acceptuser@ASBR3# set term 2 then reject
      [edit policy-options policy-statement next-hop-self]user@ASBR3# set then next-hop self
    5. Configure the EBGP sessions.
      [edit protocols bgp group To-ASBR1]user@ASBR3# set type externaluser@ASBR3# set family inet labeled-unicast protectionuser@ASBR3# set export To-ASBR1user@ASBR3# set neighbor 21.21.21.1 peer-as 64510
      [edit protocols bgp group To-ASBR2]user@ASBR3# set type externaluser@ASBR3# set family inet labeled-unicast protectionuser@ASBR3# set export To-ASBR2user@ASBR3# set neighbor 26.26.26.1 peer-as 64510
    6. Configure the IBGP sessions.
      [edit protocols bgp group To-PE2]user@ASBR3# set type internaluser@ASBR3# set local-address 5.5.5.5user@ASBR3# set family inet unicastuser@ASBR3# set export next-hop-selfuser@ASBR3# set neighbor 7.7.7.7 family inet labeled-unicast
    7. Configure MPLS.
      [edit protocols mpls]user@ASBR3# set traffic-engineering bgp-igp-both-ribsuser@ASBR3# set label-switched-path To_PE2 to 7.7.7.7user@ASBR3# set interface lo0.0user@ASBR3# set interface fe-1/2/0.0user@ASBR3# set interface fe-1/2/2.0user@ASBR3# set interface fe-1/2/1.0
    8. Configure a signaling protocol.
      [edit protocols rsvp]user@ASBR3# set interface fe-1/2/2.0user@ASBR3# set interface lo0.0user@ASBR3# set interface fe-1/2/0.0user@ASBR3# set interface fe-1/2/1.0

    Results

    From configuration mode, confirm your configuration by entering the show interfaces, show protocols, show policy-options, and show routing-options, commands. If the output does not display the intended configuration, repeat the instructions in this example to correct the configuration.

    user@ASBR3# show interfaces
    fe-1/2/0 {unit 0 {description to-ASBR1;family inet {address 21.21.21.2/30;}family mpls;}}
    fe-1/2/1 {unit 0 {description to-ASBR2;family inet {address 26.26.26.2/30;}family mpls;}}
    fe-1/2/2 {unit 0 {description to-P3;family inet {address 22.22.22.1/30;}family mpls;}}
    lo0 {unit 0 {family inet {address 5.5.5.5/32;}}}
    user@ASBR3# show protocols
    rsvp {interface fe-1/2/2.0;interface lo0.0;interface fe-1/2/0.0;interface fe-1/2/1.0;}
    mpls {traffic-engineering bgp-igp-both-ribs;label-switched-path To_PE2 {to 7.7.7.7;}interface lo0.0;interface fe-1/2/0.0;interface fe-1/2/2.0;interface fe-1/2/1.0;}
    bgp {group To-PE2 {type internal;local-address 5.5.5.5;family inet {unicast;}export next-hop-self;neighbor 7.7.7.7 {family inet {labeled-unicast;}}}group To-ASBR1 {type external;family inet {labeled-unicast {protection;}}export To-ASBR1;neighbor 21.21.21.1 {peer-as 64510;}}group To-ASBR2 {type external;family inet {labeled-unicast {protection;}}export To-ASBR2;neighbor 26.26.26.1 {peer-as 64510;}}}
    ospf {traffic-engineering;area 0.0.0.0 {interface fe-1/2/2.0;interface lo0.0 {passive;}interface fe-1/2/1.0;}}
    user@ASBR3# show policy-options
    policy-statement To-ASBR1 {term 1 {from {route-filter 7.7.7.7/32 exact;}then accept;}term 2 {then reject;}}
    policy-statement To-ASBR2 {term 1 {from {route-filter 7.7.7.7/32 exact;}then accept;}term 2 {then reject;}}
    policy-statement next-hop-self {then {next-hop self;}}
    user@ASBR3# show routing-optionsautonomous-system 64511;

    If you are done configuring the devices, enter commit from configuration mode.

    Verification

    Confirm that the configuration is working properly.

    Checking the BGP Neighbor Sessions

    Purpose

    Verify that BGP protection is enabled.

    Action

    user@ASBR3# show bgp neighbor 21.21.21.1
    Peer: 21.21.21.1+58259 AS 64510 Local: 21.21.21.2+179 AS 64511
      Type: External    State: Established    Flags: <ImportEval Sync>
      Last State: OpenConfirm   Last Event: RecvKeepAlive
      Last Error: None
      Export: [ To-ASBR1 ] 
      Options: <Preference AddressFamily PeerAS Refresh>
      Options: <Protection>
      Address families configured: inet-labeled-unicast
      Holdtime: 90 Preference: 170
      NLRI configured with protection: inet-labeled-unicast
      Number of flaps: 0
      Peer ID: 4.4.4.4         Local ID: 5.5.5.5           Active Holdtime: 90
      Keepalive Interval: 30         Group index: 4    Peer index: 0   
      BFD: disabled, down
      Local Interface: fe-1/2/0.0                       
      NLRI for restart configured on peer: inet-labeled-unicast
      NLRI advertised by peer: inet-labeled-unicast
      NLRI for this session: inet-labeled-unicast
      Peer supports Refresh capability (2)
      Stale routes from peer are kept for: 300
      Peer does not support Restarter functionality
      NLRI that restart is negotiated for: inet-labeled-unicast
      NLRI of received end-of-rib markers: inet-labeled-unicast
      NLRI of all end-of-rib markers sent: inet-labeled-unicast
      Peer supports 4 byte AS extension (peer-as 64510)
      Peer does not support Addpath
      Table inet.0 Bit: 10001
        RIB State: BGP restart is complete
        Send state: in sync
        Active prefixes:              2
        Received prefixes:            1
        Accepted prefixes:            1
        Suppressed due to damping:    0
        Advertised prefixes:          1
      Last traffic (seconds): Received 7    Sent 20   Checked 32  
      Input messages:  Total 170    Updates 2       Refreshes 0     Octets 3326
      Output messages: Total 167    Updates 1       Refreshes 0     Octets 3288
      Output Queue[0]: 0

    user@ASBR3# show bgp neighbor 26.26.26.1
    Peer: 26.26.26.1+61072 AS 64510 Local: 26.26.26.2+179 AS 64511
      Type: External    State: Established    Flags: <ImportEval Sync>
      Last State: OpenConfirm   Last Event: RecvKeepAlive
      Last Error: None
      Export: [ To-ASBR2 ] 
      Options: <Preference AddressFamily PeerAS Refresh>
      Options: <Protection>
      Address families configured: inet-labeled-unicast
      Holdtime: 90 Preference: 170
      NLRI configured with protection: inet-labeled-unicast
      Number of flaps: 0
      Peer ID: 9.9.9.9         Local ID: 5.5.5.5           Active Holdtime: 90
      Keepalive Interval: 30         Group index: 5    Peer index: 0   
      BFD: disabled, down
      Local Interface: fe-1/2/1.0                      
      NLRI for restart configured on peer: inet-labeled-unicast
      NLRI advertised by peer: inet-labeled-unicast
      NLRI for this session: inet-labeled-unicast
      Peer supports Refresh capability (2)
      Stale routes from peer are kept for: 300
      Peer does not support Restarter functionality
      NLRI that restart is negotiated for: inet-labeled-unicast
      NLRI of received end-of-rib markers: inet-labeled-unicast
      NLRI of all end-of-rib markers sent: inet-labeled-unicast
      Peer supports 4 byte AS extension (peer-as 64510)
      Peer does not support Addpath
      Table inet.0 Bit: 10002
        RIB State: BGP restart is complete
        Send state: in sync
        Active prefixes:              1
        Received prefixes:            1
        Accepted prefixes:            1
        Suppressed due to damping:    0
        Advertised prefixes:          1
      Last traffic (seconds): Received 21   Sent 9    Checked 42  
      Input messages:  Total 170    Updates 2       Refreshes 0     Octets 3326
      Output messages: Total 168    Updates 1       Refreshes 0     Octets 3307
      Output Queue[0]: 0

    Meaning

    The output shows that the Protection option is enabled for the EBGP peers, Device ASBR1 and Device ASBR2.

    This is also shown with the NLRI configured with protection: inet-labeled-unicast screen output.

    Checking the Routes

    Purpose

    Make sure that the backup path is installed in the routing table.

    Action

    user@ASBR3> show route 2.2.2.2
    inet.0: 12 destinations, 14 routes (12 active, 0 holddown, 0 hidden)
    + = Active Route, - = Last Active, * = Both
    
    2.2.2.2/32         *[BGP/170] 01:36:25, MED 2, localpref 100
                          AS path: 64510 I, validation-state: unverified
                        > to 21.21.21.1 via fe-1/2/0.0, Push 299824
                          to 26.26.26.1 via fe-1/2/1.0, Push 299808
                        [BGP/170] 01:36:25, MED 2, localpref 100
                          AS path: 64510 I, validation-state: unverified
                        > to 26.26.26.1 via fe-1/2/1.0, Push 299808

    Meaning

    The show route command displays active as well as backup paths to Device PE1.

    Published: 2013-07-31