diff --git a/inventory_provider/routes/classifier.py b/inventory_provider/routes/classifier.py index efcc88a7a563e5ec89aafce624d98fdd71fb94dd..47c4e888d3c4d40b85a6f424c597534fcc972b29 100644 --- a/inventory_provider/routes/classifier.py +++ b/inventory_provider/routes/classifier.py @@ -381,8 +381,6 @@ def handle_epipe_sap_info_request(source_equipment: str, service_id: str, vpn_id cache_key = \ f'classifier-cache:epipe_sap:{source_equipment}:{service_id}:{vpn_id}' - print(f'cache_key: {cache_key}') - result = _ignore_cache_or_retrieve(request, cache_key, r) if not result: diff --git a/test/data/nokia/rt0.dub.ie.lab.office.geant.net-netconf.xml b/test/data/nokia/rt0.dub.ie.lab.office.geant.net-netconf.xml new file mode 100644 index 0000000000000000000000000000000000000000..ca87066874826ef2c0f7787cbaed1d5d79a5514e --- /dev/null +++ b/test/data/nokia/rt0.dub.ie.lab.office.geant.net-netconf.xml @@ -0,0 +1,10832 @@ +<data xmlns="urn:ietf:params:xml:ns:netconf:base:1.0"> + <configure xmlns="urn:nokia.com:sros:ns:yang:sr:conf" xmlns:nokia-attr="urn:nokia.com:sros:ns:yang:sr:attributes"> + <card> + <slot-number>1</slot-number> + <admin-state>enable</admin-state> + <card-type>xcmc-2se</card-type> + <xiom> + <xiom-slot>x1</xiom-slot> + <level>cr4800g</level> + <xiom-type>x2-s36-800g-qsfpdd-6.0t</xiom-type> + <mda> + <mda-slot>1</mda-slot> + <admin-state>enable</admin-state> + <mda-type>m36-800g-qsfpdd</mda-type> + </mda> + </xiom> + <fp> + <fp-number>1</fp-number> + <ingress> + <policy-accounting> + <policers>1000</policers> + <classes>10000</classes> + </policy-accounting> + </ingress> + </fp> + <fp> + <fp-number>2</fp-number> + <ingress> + <policy-accounting> + <policers>1000</policers> + <classes>10000</classes> + </policy-accounting> + </ingress> + </fp> + </card> + <card> + <slot-number>2</slot-number> + <admin-state>enable</admin-state> + <card-type>xcmc-2se</card-type> + <xiom> + <xiom-slot>x1</xiom-slot> + <level>cr4800g</level> + <xiom-type>x2-s36-800g-qsfpdd-6.0t</xiom-type> + <mda> + <mda-slot>1</mda-slot> + <admin-state>enable</admin-state> + <mda-type>m36-800g-qsfpdd</mda-type> + </mda> + </xiom> + <fp> + <fp-number>1</fp-number> + <ingress> + <policy-accounting> + <policers>1000</policers> + <classes>10000</classes> + </policy-accounting> + </ingress> + </fp> + <fp> + <fp-number>2</fp-number> + <ingress> + <policy-accounting> + <policers>1000</policers> + <classes>10000</classes> + </policy-accounting> + </ingress> + </fp> + </card> + <cflowd> + <cache-size>1000000</cache-size> + <enhanced-distribution>true</enhanced-distribution> + <overflow>1</overflow> + <template-retransmit>300</template-retransmit> + <active-flow-timeout>60</active-flow-timeout> + <inactive-flow-timeout>60</inactive-flow-timeout> + <sample-profile> + <profile-id>1</profile-id> + <sample-rate>300</sample-rate> + </sample-profile> + <collector> + <ip-address>62.40.100.166</ip-address> + <port>7711</port> + <description>flowmon1</description> + <template-set>mpls-ip</template-set> + <version>10</version> + </collector> + <collector> + <ip-address>62.40.106.182</ip-address> + <port>7712</port> + <description>flowmon2</description> + <template-set>mpls-ip</template-set> + <version>10</version> + </collector> + <collector> + <ip-address>172.16.100.90</ip-address> + <port>7712</port> + <description>LAB-ONLY-netflow</description> + <template-set>mpls-ip</template-set> + <version>10</version> + </collector> + </cflowd> + <chassis> + <chassis-class>router</chassis-class> + <chassis-number>1</chassis-number> + <power-shelf> + <power-shelf-id>1</power-shelf-id> + <admin-state>enable</admin-state> + <power-shelf-type>ps-b3-shelf-ac/hv</power-shelf-type> + <power-module> + <power-module-id>1</power-module-id> + <admin-state>enable</admin-state> + <power-module-type>ps-b-ac/hv-6000</power-module-type> + </power-module> + <power-module> + <power-module-id>2</power-module-id> + <admin-state>enable</admin-state> + <power-module-type>ps-b-ac/hv-6000</power-module-type> + </power-module> + </power-shelf> + </chassis> + <filter> + <log> + <log-id>102</log-id> + <description>CPM_FW_DROP</description> + <destination> + <syslog> + <name>1</name> + </syslog> + </destination> + </log> + <match-list> + <protocol-list> + <protocol-list-name>IP_EDGE_IN-TUNNELS-PROTO</protocol-list-name> + <protocol> + <protocol-id>94</protocol-id> + </protocol> + <protocol> + <protocol-id>gre</protocol-id> + </protocol> + </protocol-list> + <ip-prefix-list> + <prefix-list-name>BGP_PEERS_BASE</prefix-list-name> + <description>BGP Peers configured under Base instance</description> + <apply-path> + <bgp-peers> + <criterion-index>1</criterion-index> + <group>.*</group> + <neighbor>.*</neighbor> + <router-instance>Base</router-instance> + </bgp-peers> + <bgp-peers> + <criterion-index>2</criterion-index> + <group>.*</group> + <neighbor>.*</neighbor> + <router-instance>IAS</router-instance> + </bgp-peers> + </apply-path> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>BOGONS_LIST</prefix-list-name> + <prefix> + <ip-prefix>0.0.0.0/8</ip-prefix> + </prefix> + <prefix> + <ip-prefix>10.0.0.0/8</ip-prefix> + </prefix> + <prefix> + <ip-prefix>100.64.0.0/10</ip-prefix> + </prefix> + <prefix> + <ip-prefix>127.0.0.0/8</ip-prefix> + </prefix> + <prefix> + <ip-prefix>169.254.0.0/16</ip-prefix> + </prefix> + <prefix> + <ip-prefix>172.16.0.0/12</ip-prefix> + </prefix> + <prefix> + <ip-prefix>192.0.0.0/24</ip-prefix> + </prefix> + <prefix> + <ip-prefix>192.0.2.0/24</ip-prefix> + </prefix> + <prefix> + <ip-prefix>192.168.0.0/16</ip-prefix> + </prefix> + <prefix> + <ip-prefix>198.18.0.0/15</ip-prefix> + </prefix> + <prefix> + <ip-prefix>198.51.100.0/24</ip-prefix> + </prefix> + <prefix> + <ip-prefix>203.0.113.0/24</ip-prefix> + </prefix> + <prefix> + <ip-prefix>224.0.0.0/3</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>COMMUNITY_NTP</prefix-list-name> + <description>Community hosted NTPs</description> + <prefix> + <ip-prefix>192.53.103.108/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>192.87.106.2/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>193.62.22.66/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>193.204.114.233/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>195.113.144.201/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>EXTERNAL_GRE</prefix-list-name> + <prefix> + <ip-prefix>0.0.0.0/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>EXTERNAL_IGMP</prefix-list-name> + <prefix> + <ip-prefix>0.0.0.0/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_ADDRESS_SPACE</prefix-list-name> + <description>GEANT address space for traceroute and rsvp in CPM filters</description> + <prefix> + <ip-prefix>62.40.96.0/19</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_CORE</prefix-list-name> + <prefix> + <ip-prefix>62.40.96.0/23</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.98.0/24</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_DASHBOARD</prefix-list-name> + <description>Geant dashboard hosts</description> + <prefix> + <ip-prefix>62.40.114.3/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.114.19/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.151/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.152/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.153/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.204/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.239/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.244/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.248/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.51/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.52/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.97/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.98/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_DC</prefix-list-name> + <description>GEANT DC Space for use in CPM filters</description> + <prefix> + <ip-prefix>62.40.120.134/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.120.136/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.121.121/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.15/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.116/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.129/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.130/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_DC_VRRP</prefix-list-name> + <prefix> + <ip-prefix>224.0.0.18/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_DNS</prefix-list-name> + <description>GEANT DNS SERVERS for use in CPM filters</description> + <prefix> + <ip-prefix>62.40.104.250/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.106.9/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.116.114/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.116.122/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.200/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_GAP</prefix-list-name> + <description>Geant GAP hosts</description> + <prefix> + <ip-prefix>62.40.111.0/24</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.95.177/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_GAP_GSO_UAT</prefix-list-name> + <description>GAP UAT GSO VMs</description> + <prefix> + <ip-prefix>62.40.111.130/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.185/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.226/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.241/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_IMS</prefix-list-name> + <description>Geant IMS hosts</description> + <prefix> + <ip-prefix>83.97.94.123/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.124/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.125/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.95.109/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_JUMP_SERVERS</prefix-list-name> + <description>Geant Jump Servers hosts</description> + <prefix> + <ip-prefix>83.97.94.114/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_LIBRENMS</prefix-list-name> + <description>Geant LibreNMS hosts</description> + <prefix> + <ip-prefix>62.40.111.30/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.111.31/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.111.47/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.95.37/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_LOOKING_GLASS</prefix-list-name> + <description>Geant looking-glass hosts</description> + <prefix> + <ip-prefix>83.97.92.82/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.141/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.39/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.62/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.134/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.135/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.136/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.137/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.138/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.139/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_NE_SERVERS</prefix-list-name> + <description>Geant NE Servers hosts</description> + <prefix> + <ip-prefix>62.40.112.32/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.136/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.182/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_NTP</prefix-list-name> + <description>Geant NTPs</description> + <prefix> + <ip-prefix>62.40.97.11/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.97.12/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.97.14/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.123.21/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.123.23/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.123.103/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_OC_SERVERS</prefix-list-name> + <description>Geant OC Servers hosts</description> + <prefix> + <ip-prefix>83.97.92.61/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.87/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.92/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.99/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.23/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.37/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_OFFICE_NETWORKS</prefix-list-name> + <description>Amsterdam and Cambridge Networks</description> + <prefix> + <ip-prefix>62.40.101.0/24</ip-prefix> + </prefix> + <prefix> + <ip-prefix>195.169.24.128/25</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_RANCID</prefix-list-name> + <description>Geant RANCID hosts</description> + <prefix> + <ip-prefix>83.97.92.216/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.217/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.220/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_ROUTERS</prefix-list-name> + <description>GEANT router-loopbacks and system address for use in CPM filters</description> + <prefix> + <ip-prefix>62.40.96.0/23</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.119.0/27</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_RPKI</prefix-list-name> + <prefix> + <ip-prefix>83.97.94.48/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.49/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_SNMP</prefix-list-name> + <description>GEANT SNMP HOSTS for use in CPM filters</description> + <prefix> + <ip-prefix>62.40.100.166/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.100.190/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.100.198/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.114.3/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.114.18/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.114.19/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.120.90/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.122.138/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.61/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.79/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.92/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.94/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.99/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.183/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.219/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.92.228/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.39/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.52/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.53/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.59/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.122/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.123/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.137/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.151/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.152/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.153/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.154/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.155/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.204/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.239/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.244/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.248/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.249/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.93.251/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.1/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.2/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.9/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.14/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.15/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.51/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.52/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.97/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.98/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.180/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.181/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.182/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.185/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.188/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.245/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.94.246/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.95.9/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.95.10/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.95.11/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.95.12/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.95.193/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.95.194/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>83.97.95.195/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>193.177.128.0/22</ip-prefix> + </prefix> + <prefix> + <ip-prefix>193.219.48.249/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>193.219.48.250/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_SNMP_UAT</prefix-list-name> + <description>GAP UAT LNMS instance</description> + <prefix> + <ip-prefix>62.40.111.47/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_VPN_NETWORKS</prefix-list-name> + <description>All VPN networks allowed</description> + <prefix> + <ip-prefix>62.40.99.129/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.112.128/27</ip-prefix> + </prefix> + <prefix> + <ip-prefix>195.169.24.28/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>195.169.24.96/27</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>GEANT_VULN_SCANNER</prefix-list-name> + <description>Geant vulnerability scanners</description> + <prefix> + <ip-prefix>83.97.93.49/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>MOODI_SERVERS</prefix-list-name> + <prefix> + <ip-prefix>83.97.95.27/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>MULTICAST_GROUP_RANGES</prefix-list-name> + <prefix> + <ip-prefix>224.0.0.0/4</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>NOMIOS_SUPPORT</prefix-list-name> + <description>Nomios hosts allowed for support</description> + <prefix> + <ip-prefix>83.97.93.238/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>PUBLIC_NTP</prefix-list-name> + <description>Publicly available NTPs</description> + <prefix> + <ip-prefix>216.239.35.0/32</ip-prefix> + </prefix> + <prefix> + <ip-prefix>216.239.35.4/32</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>TOOLS_KENTIK</prefix-list-name> + <prefix> + <ip-prefix>193.177.128.0/22</ip-prefix> + </prefix> + </ip-prefix-list> + <ip-prefix-list> + <prefix-list-name>TWAMP_CLIENTS</prefix-list-name> + <description>TWAMP Clients</description> + <prefix> + <ip-prefix>62.40.98.0/24</ip-prefix> + </prefix> + <prefix> + <ip-prefix>62.40.119.64/26</ip-prefix> + </prefix> + </ip-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>BGP_PEERS_BASE</prefix-list-name> + <description>BGP Peers configured under Base instance</description> + <apply-path> + <bgp-peers> + <criterion-index>1</criterion-index> + <group>.*</group> + <neighbor>.*</neighbor> + <router-instance>Base</router-instance> + </bgp-peers> + <bgp-peers> + <criterion-index>2</criterion-index> + <group>.*</group> + <neighbor>.*</neighbor> + <router-instance>IAS</router-instance> + </bgp-peers> + </apply-path> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>BOGONS_LIST</prefix-list-name> + <prefix> + <ipv6-prefix>::/8</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>100::/8</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>200::/7</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>400::/7</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>600::/7</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>800::/5</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>1000::/4</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2000::/16</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>3fff::/16</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>4000::/3</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>6000::/3</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>8000::/3</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>a000::/3</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>c000::/3</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>e000::/4</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>f000::/5</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>f800::/6</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>fc00::/7</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>fe00::/9</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>fec0::/10</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_ADDRESS_SPACE</prefix-list-name> + <description>GEANT address space for traceroute and rsvp in CPM filters</description> + <prefix> + <ipv6-prefix>2001:798::/32</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_CORE</prefix-list-name> + <prefix> + <ipv6-prefix>2001:798:aa:1::/64</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:cc::/48</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_DASHBOARD</prefix-list-name> + <description>Geant dashboard hosts</description> + <prefix> + <ipv6-prefix>2001:798:3::18d/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::18e/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::18f/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::1d6/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::208/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::209/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::234/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::236/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::237/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::23f/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::245/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:bb:2a::4/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:bb:2b::4/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_DNS</prefix-list-name> + <description>GEANT DNS SERVERS for use in CPM filters</description> + <prefix> + <ipv6-prefix>2001:798:3::1ba/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:bb:4d::2/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:ee:f::2/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:ee:10::2/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_GAP</prefix-list-name> + <description>Geant GAP hosts</description> + <prefix> + <ipv6-prefix>2001:798:3::318/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_GAP_GSO_UAT</prefix-list-name> + <description>GAP UAT GSO VMs</description> + <prefix> + <ipv6-prefix>2001:798:3::45/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::49/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::4b/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:799:cb2:111::130/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_IMS</prefix-list-name> + <description>Geant IMS hosts</description> + <prefix> + <ipv6-prefix>2001:798:3::251/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::252/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::253/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_IPV6_DC_VRRP</prefix-list-name> + <prefix> + <ipv6-prefix>ff02::12/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_IPV6_NETWORKS</prefix-list-name> + <description>IPv6 networks for the use in CPM filters</description> + <prefix> + <ipv6-prefix>2001:798::/32</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:799:cb2::/48</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_JUMP_SERVERS</prefix-list-name> + <description>Geant Jump Servers hosts</description> + <prefix> + <ipv6-prefix>2001:798:3::246/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_LIBRENMS</prefix-list-name> + <description>Geant LibreNMS hosts</description> + <prefix> + <ipv6-prefix>2001:798:3::317/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_LOOKING_GLASS</prefix-list-name> + <description>Geant looking-glass hosts</description> + <prefix> + <ipv6-prefix>2001:798:3::25c/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::25d/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::25e/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::25f/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::260/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::261/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_NE_SERVERS</prefix-list-name> + <description>Geant NE Servers hosts</description> + <prefix> + <ipv6-prefix>2001:798:3::a0/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::288/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_OC_SERVERS</prefix-list-name> + <description>Geant OC Servers hosts</description> + <prefix> + <ipv6-prefix>2001:798:3::55/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::6f/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::7b/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::83/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::12b/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::139/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_OFFICE_NETWORKS</prefix-list-name> + <description>Amsterdam and Cambridge Networks</description> + <prefix> + <ipv6-prefix>2001:610:9d8:4::/64</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:799:cb2:101::/64</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_RANCID</prefix-list-name> + <description>Geant RANCID hosts</description> + <prefix> + <ipv6-prefix>2001:798:3::117/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::118/128</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:3::128/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_ROUTERS</prefix-list-name> + <description>GEANT router-loopbacks and system address for use in CPM filters</description> + <prefix> + <ipv6-prefix>2001:798:aa:1::/64</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_VPN_NETWORKS</prefix-list-name> + <description>All VPN networks allowed</description> + <prefix> + <ipv6-prefix>2001:610:9d8:7::/64</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:610:9d8:14::/64</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:798:4:8::/112</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>2001:799:cb2:6::/64</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>GEANT_VULN_SCANNER</prefix-list-name> + <description>Geant vulnerability scanners</description> + <prefix> + <ipv6-prefix>2001:798:3::145/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>IPV6_ND</prefix-list-name> + <description>IPv6 specific dest addresses for ND</description> + <prefix> + <ipv6-prefix>fe80::/10</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>ff02::/123</ipv6-prefix> + </prefix> + <prefix> + <ipv6-prefix>ff02::1:ff00:0/104</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>MOODI_SERVERS</prefix-list-name> + <prefix> + <ipv6-prefix>2001:798:3::2ac/128</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <ipv6-prefix-list> + <prefix-list-name>MULTICAST_GROUP_RANGES</prefix-list-name> + <prefix> + <ipv6-prefix>ff00::/8</ipv6-prefix> + </prefix> + </ipv6-prefix-list> + <port-list> + <port-list-name>CPMF_V4-BFD_EBGP-DST_PORT_RANGE</port-list-name> + <range> + <start>3784</start> + <end>3785</end> + </range> + </port-list> + <port-list> + <port-list-name>CPMF_V4-BGP_PEERS_BASE-PORTS</port-list-name> + <port> + <value>179</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-DNS-PORTS</port-list-name> + <port> + <value>53</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-MH_BFD_EBGP-DST_PORTS</port-list-name> + <port> + <value>4784</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-MICRO_BFD-DST_PORTS</port-list-name> + <port> + <value>6784</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-MOODI_GNMI-DST_PORTS</port-list-name> + <port> + <value>57400</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-NETCONF-PORTS</port-list-name> + <port> + <value>830</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-NTP-PORTS</port-list-name> + <port> + <value>123</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-RADIUS-PORT_RANGE</port-list-name> + <range> + <start>1812</start> + <end>1813</end> + </range> + </port-list> + <port-list> + <port-list-name>CPMF_V4-RPKI-PORTS</port-list-name> + <port> + <value>3323</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-SNMP-PORTS</port-list-name> + <port> + <value>161</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-SSH-DST_PORTS</port-list-name> + <port> + <value>22</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-TRACEROUTE-PORT_RANGE</port-list-name> + <range> + <start>33434</start> + <end>33534</end> + </range> + </port-list> + <port-list> + <port-list-name>CPMF_V4-TWAMP-DST_PORT_RANGE</port-list-name> + <range> + <start>10000</start> + <end>65535</end> + </range> + </port-list> + <port-list> + <port-list-name>CPMF_V4-TWAMP_682-PORTS</port-list-name> + <port> + <value>862</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V4-T_LDP-PORTS</port-list-name> + <port> + <value>646</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V6-BFD_EBGP-DST_PORT_RANGE</port-list-name> + <range> + <start>3784</start> + <end>3785</end> + </range> + </port-list> + <port-list> + <port-list-name>CPMF_V6-BGP_PEERS_BASE-PORTS</port-list-name> + <port> + <value>179</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V6-MH_BFD_EBGP-DST_PORTS</port-list-name> + <port> + <value>4784</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V6-NETCONF-PORTS</port-list-name> + <port> + <value>830</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V6-SSH-DST_PORTS</port-list-name> + <port> + <value>22</value> + </port> + </port-list> + <port-list> + <port-list-name>CPMF_V6-TRACEROUTE-PORT_RANGE</port-list-name> + <range> + <start>33434</start> + <end>33534</end> + </range> + </port-list> + <port-list> + <port-list-name>IP_EDGE_IN-BFD-DST_PORT_RANGE</port-list-name> + <range> + <start>3784</start> + <end>3785</end> + </range> + </port-list> + <port-list> + <port-list-name>IP_EDGE_IN-BGP-PORTS</port-list-name> + <port> + <value>179</value> + </port> + </port-list> + <port-list> + <port-list-name>IP_EDGE_IN-SNMP-PORTS</port-list-name> + <port> + <value>161</value> + </port> + </port-list> + <port-list> + <port-list-name>IP_EDGE_IN-TRACEROUTE-PORT_RANGE</port-list-name> + <range> + <start>33434</start> + <end>33534</end> + </range> + </port-list> + <port-list> + <port-list-name>IP_EDGE_IN_V6-BFD-DST_PORT_RANGE</port-list-name> + <range> + <start>3784</start> + <end>3785</end> + </range> + </port-list> + <port-list> + <port-list-name>IP_EDGE_IN_V6-BGP-PORTS</port-list-name> + <port> + <value>179</value> + </port> + </port-list> + </match-list> + <ip-filter> + <filter-name>BELNET_EDGE_IN</filter-name> + <default-action>accept</default-action> + <chain-to-system-filter>false</chain-to-system-filter> + <embed> + <filter> + <name>IP_EDGE_IN</name> + <offset>1000</offset> + </filter> + <flowspec> + <offset>10000</offset> + <router-instance>Base</router-instance> + </flowspec> + </embed> + </ip-filter> + <ip-filter> + <filter-name>BELNET_EDGE_OUT</filter-name> + <default-action>accept</default-action> + <chain-to-system-filter>false</chain-to-system-filter> + <embed> + <filter> + <name>IP_EDGE_OUT</name> + <offset>1000</offset> + </filter> + </embed> + </ip-filter> + <ip-filter> + <filter-name>IAS_BELNET_IN</filter-name> + <default-action>accept</default-action> + <chain-to-system-filter>false</chain-to-system-filter> + <embed> + <filter> + <name>IP_EDGE_IN</name> + <offset>1000</offset> + </filter> + <flowspec> + <offset>10000</offset> + <router-instance>IAS</router-instance> + </flowspec> + </embed> + </ip-filter> + <ip-filter> + <filter-name>IAS_BELNET_OUT</filter-name> + <default-action>accept</default-action> + <chain-to-system-filter>false</chain-to-system-filter> + <entry> + <entry-id>100</entry-id> + <description>TRANSIT_TRAFFIC</description> + <match> + <dscp>cs4</dscp> + </match> + <action> + <accept/> + <rate-limit> + <pir>5000</pir> + <mbs>auto</mbs> + </rate-limit> + </action> + </entry> + <embed> + <filter> + <name>IP_EDGE_OUT</name> + <offset>1000</offset> + </filter> + </embed> + </ip-filter> + <ip-filter> + <filter-name>IP_EDGE_IN</filter-name> + <default-action>drop</default-action> + <scope>embedded</scope> + <entry> + <entry-id>10</entry-id> + <description>BOGONS</description> + <match> + <src-ip> + <ip-prefix-list>BOGONS_LIST</ip-prefix-list> + </src-ip> + </match> + <action> + <drop/> + </action> + </entry> + <entry> + <entry-id>20</entry-id> + <description>BGP</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>BGP_PEERS_BASE</ip-prefix-list> + </src-ip> + <port> + <port-list>IP_EDGE_IN-BGP-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>30</entry-id> + <description>BFD</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>BGP_PEERS_BASE</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>IP_EDGE_IN-BFD-DST_PORT_RANGE</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>40</entry-id> + <description>TUNNELS</description> + <match> + <protocol-list>IP_EDGE_IN-TUNNELS-PROTO</protocol-list> + <dst-ip> + <ip-prefix-list>GEANT_ADDRESS_SPACE</ip-prefix-list> + </dst-ip> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>50</entry-id> + <description>SNMP</description> + <match> + <protocol>udp</protocol> + <dst-ip> + <ip-prefix-list>GEANT_ADDRESS_SPACE</ip-prefix-list> + </dst-ip> + <port> + <port-list>IP_EDGE_IN-SNMP-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>60</entry-id> + <description>ICMP</description> + <match> + <protocol>icmp</protocol> + <dst-ip> + <ip-prefix-list>GEANT_ADDRESS_SPACE</ip-prefix-list> + </dst-ip> + </match> + <action> + <accept/> + <rate-limit> + <pir>10000</pir> + </rate-limit> + </action> + </entry> + <entry> + <entry-id>70</entry-id> + <description>TRACEROUTE</description> + <match> + <protocol>udp</protocol> + <dst-ip> + <ip-prefix-list>GEANT_ADDRESS_SPACE</ip-prefix-list> + </dst-ip> + <port> + <port-list>IP_EDGE_IN-TRACEROUTE-PORT_RANGE</port-list> + </port> + </match> + <action> + <accept/> + <rate-limit> + <pir>10000</pir> + </rate-limit> + </action> + </entry> + <entry> + <entry-id>80</entry-id> + <description>CORE</description> + <match> + <dst-ip> + <ip-prefix-list>GEANT_ADDRESS_SPACE</ip-prefix-list> + </dst-ip> + </match> + <action> + <drop/> + </action> + </entry> + </ip-filter> + <ip-filter> + <filter-name>IP_EDGE_OUT</filter-name> + <default-action>drop</default-action> + <scope>embedded</scope> + <entry> + <entry-id>10</entry-id> + <description>MULTICAST</description> + <match> + <dst-ip> + <ip-prefix-list>MULTICAST_GROUP_RANGES</ip-prefix-list> + </dst-ip> + </match> + <action> + <accept/> + </action> + </entry> + </ip-filter> + <ipv6-filter> + <filter-name>BELNET_EDGE_IN_V6</filter-name> + <default-action>accept</default-action> + <chain-to-system-filter>false</chain-to-system-filter> + <embed> + <filter> + <name>IP_EDGE_IN_V6</name> + <offset>10000</offset> + </filter> + <flowspec> + <offset>20000</offset> + <router-instance>Base</router-instance> + </flowspec> + </embed> + </ipv6-filter> + <ipv6-filter> + <filter-name>BELNET_EDGE_OUT_V6</filter-name> + <default-action>accept</default-action> + <chain-to-system-filter>false</chain-to-system-filter> + <embed> + <filter> + <name>IP_EDGE_OUT_V6</name> + <offset>2000</offset> + </filter> + </embed> + </ipv6-filter> + <ipv6-filter> + <filter-name>IAS_BELNET_IN_V6</filter-name> + <default-action>accept</default-action> + <chain-to-system-filter>false</chain-to-system-filter> + <embed> + <filter> + <name>IP_EDGE_IN_V6</name> + <offset>2000</offset> + </filter> + <flowspec> + <offset>20000</offset> + <router-instance>IAS</router-instance> + </flowspec> + </embed> + </ipv6-filter> + <ipv6-filter> + <filter-name>IAS_BELNET_OUT_V6</filter-name> + <default-action>accept</default-action> + <chain-to-system-filter>false</chain-to-system-filter> + <entry> + <entry-id>100</entry-id> + <description>TRANSIT_TRAFFIC</description> + <match> + <dscp>cs4</dscp> + </match> + <action> + <accept/> + <rate-limit> + <pir>5000</pir> + <mbs>auto</mbs> + </rate-limit> + </action> + </entry> + <embed> + <filter> + <name>IP_EDGE_OUT_V6</name> + <offset>2000</offset> + </filter> + </embed> + </ipv6-filter> + <ipv6-filter> + <filter-name>IP_EDGE_IN_V6</filter-name> + <default-action>drop</default-action> + <scope>embedded</scope> + <entry> + <entry-id>10</entry-id> + <description>BOGONS</description> + <match> + <src-ip> + <ipv6-prefix-list>BOGONS_LIST</ipv6-prefix-list> + </src-ip> + </match> + <action> + <drop/> + </action> + </entry> + <entry> + <entry-id>20</entry-id> + <description>BGP</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>BGP_PEERS_BASE</ipv6-prefix-list> + </src-ip> + <port> + <port-list>IP_EDGE_IN_V6-BGP-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>30</entry-id> + <description>BFD</description> + <match> + <next-header>udp</next-header> + <src-ip> + <ipv6-prefix-list>BGP_PEERS_BASE</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>IP_EDGE_IN_V6-BFD-DST_PORT_RANGE</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>40</entry-id> + <description>ICMP_V6</description> + <match> + <next-header>ipv6-icmp</next-header> + <dst-ip> + <ipv6-prefix-list>GEANT_ADDRESS_SPACE</ipv6-prefix-list> + </dst-ip> + </match> + <action> + <accept/> + <rate-limit> + <pir>10000</pir> + </rate-limit> + </action> + </entry> + <entry> + <entry-id>50</entry-id> + <description>TRACEROUTE</description> + <match> + <next-header>udp</next-header> + <dst-ip> + <ipv6-prefix-list>GEANT_ADDRESS_SPACE</ipv6-prefix-list> + </dst-ip> + </match> + <action> + <accept/> + <rate-limit> + <pir>10000</pir> + </rate-limit> + </action> + </entry> + <entry> + <entry-id>60</entry-id> + <description>CORE</description> + <match> + <dst-ip> + <ipv6-prefix-list>GEANT_CORE</ipv6-prefix-list> + </dst-ip> + </match> + <action> + <drop/> + </action> + </entry> + </ipv6-filter> + <ipv6-filter> + <filter-name>IP_EDGE_OUT_V6</filter-name> + <default-action>drop</default-action> + <scope>embedded</scope> + <entry> + <entry-id>10</entry-id> + <description>MULTICAST</description> + <match> + <dst-ip> + <ipv6-prefix-list>MULTICAST_GROUP_RANGES</ipv6-prefix-list> + </dst-ip> + </match> + <action> + <accept/> + </action> + </entry> + </ipv6-filter> + <md-auto-id> + <filter-id-range> + <start>10</start> + <end>50000</end> + </filter-id-range> + </md-auto-id> + </filter> + <lag> + <lag-name>lag-1</lag-name> + <admin-state>enable</admin-state> + <description>LAG INFRASTRUCTURE BACKBONE $LGS-000991 | DUB-DUB</description> + <mode>network</mode> + <lacp> + <mode>active</mode> + <administrative-key>1</administrative-key> + </lacp> + <port> + <port-id>1/x1/1/c8/1</port-id> + </port> + <port> + <port-id>1/x1/1/c9/1</port-id> + </port> + </lag> + <lag> + <lag-name>lag-2</lag-name> + <admin-state>enable</admin-state> + <description>LAG INFRASTRUCTURE BACKBONE $LGA-00221 | DUB-LON</description> + <mode>network</mode> + <lacp> + <mode>active</mode> + <administrative-key>2</administrative-key> + </lacp> + <port> + <port-id>1/x1/1/c1/1</port-id> + </port> + </lag> + <lag> + <lag-name>lag-7</lag-name> + <admin-state>enable</admin-state> + <description>LAG INFRASTRUCTURE BACKBONE $LGA-000442 | BIL-DUB</description> + <mode>network</mode> + <lacp> + <mode>active</mode> + <administrative-key>7</administrative-key> + </lacp> + <port> + <port-id>1/x1/1/c13/1</port-id> + </port> + </lag> + <lag> + <lag-name>lag-20</lag-name> + <admin-state>enable</admin-state> + <description>LAG CUSTOMER BELNET | $GA-01993 | #BELNET-AP1-LAG</description> + <encap-type>dot1q</encap-type> + <mode>access</mode> + <port> + <port-id>1/x1/1/c34/1</port-id> + </port> + </lag> + <log> + <log-events> + <chassis> + <event>tmnxEqOperStateChange</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqMdaXplError</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqCardPChipError</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqCardPChipMemoryEvent</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqCardQChipBufMemoryEvent</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqCardQChipStatsMemoryEvent</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqCardQChipIntMemoryEvent</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqCardChipIfDownEvent</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqCardChipIfCellEvent</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqLowSwitchFabricCap</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqLowSwitchFabricCapClear</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqCardTChipParityEvent</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqMdaIngrXplError</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqBpEpromWarning</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqBpEpromWarningClear</event> + <generate>true</generate> + </chassis> + <chassis> + <event>tmnxEqFpgaSoftError</event> + <generate>true</generate> + </chassis> + <ldp> + <event>vRtrLdpNgIfStateChange</event> + <generate>true</generate> + </ldp> + <ldp> + <event>vRtrLdpNgInetIfStateChange</event> + <generate>true</generate> + </ldp> + <ldp> + <event>vRtrLdpNgTargPeerStateChange</event> + <generate>true</generate> + </ldp> + <mgmt-core> + <event>mdConfigChange</event> + <generate>true</generate> + </mgmt-core> + <mgmt-core> + <event>mdOcConfigChange</event> + <generate>true</generate> + </mgmt-core> + <mgmt-core> + <event>mdBofConfigChange</event> + <generate>true</generate> + </mgmt-core> + <mgmt-core> + <event>mdDebugConfigChange</event> + <generate>true</generate> + </mgmt-core> + <mgmt-core> + <event>syncOperationStatusChange</event> + <generate>true</generate> + </mgmt-core> + <mpls> + <event>mplsTunnelRerouted</event> + <generate>true</generate> + </mpls> + <mpls> + <event>mplsTunnelReoptimized</event> + <generate>true</generate> + </mpls> + <ntp> + <event>tmnxNtpServerChange</event> + <generate>true</generate> + </ntp> + <oam> + <event>tmnxOamLdpTtraceFecPFailUpdate</event> + <generate>true</generate> + </oam> + <ospf> + <event>tmnxOspfAreaOriginateLsa</event> + <generate>true</generate> + </ospf> + <ospf> + <event>tmnxOspfAsOriginateLsa</event> + <generate>true</generate> + </ospf> + <ospf> + <event>tmnxOspfNgLinkOriginateLsa</event> + <generate>true</generate> + </ospf> + <pim> + <event>vRtrPimNgInvalidRegister</event> + <generate>true</generate> + </pim> + <port> + <event>tmnxPortAUIReset</event> + <generate>true</generate> + </port> + <security> + <event>md_cli_io</event> + <generate>true</generate> + </security> + <security> + <event>md_cli_unauth_io</event> + <generate>true</generate> + </security> + <snmp> + <event>authenticationFailure</event> + <generate>true</generate> + </snmp> + <svcmgr> + <event>tmnxSubBrgCreated</event> + <generate>true</generate> + </svcmgr> + <svcmgr> + <event>tmnxSubBrgDeleted</event> + <generate>true</generate> + </svcmgr> + <system> + <event>smScriptResult</event> + <generate>true</generate> + </system> + <system> + <event>smScriptException</event> + <generate>true</generate> + </system> + <tls> + <event>tmnxTlsInitiateSession</event> + <generate>true</generate> + </tls> + <tls> + <event>tmnxTlsTermination</event> + <generate>true</generate> + </tls> + <tls> + <event>tmnxTlsFailure</event> + <generate>true</generate> + </tls> + <user> + <event>cli_user_io</event> + <generate>true</generate> + </user> + <user> + <event>snmp_user_set</event> + <generate>true</generate> + </user> + <user> + <event>cli_unauth_user_io</event> + <generate>true</generate> + </user> + <vrtr> + <event>tmnxVRtrFibOccupancyThreshold</event> + <generate>true</generate> + </vrtr> + <vrtr> + <event>tmnxVRtrIfLdpSyncTimerStart</event> + <generate>true</generate> + </vrtr> + <vrtr> + <event>tmnxVRtrIfLdpSyncTimerStop</event> + <generate>true</generate> + </vrtr> + <vrtr> + <event>tmnxVRtrStaticRouteStatusChanged</event> + <generate>true</generate> + </vrtr> + </log-events> + <file> + <file-policy-name>20</file-policy-name> + <description>MESSAGES</description> + <rollover>1440</rollover> + <retention>360</retention> + <compact-flash-location> + <primary>cf3</primary> + <backup>cf2</backup> + </compact-flash-location> + </file> + <file> + <file-policy-name>22</file-policy-name> + <description>commit_log</description> + </file> + <filter> + <filter-name>22</filter-name> + <named-entry> + <entry-name>commit_log</entry-name> + <action>forward</action> + <match> + <message> + <eq>commit</eq> + </message> + </match> + </named-entry> + </filter> + <filter> + <filter-name>60</filter-name> + <named-entry> + <entry-name>CHASSIS</entry-name> + <action>forward</action> + <match> + <application> + <eq>chassis</eq> + </application> + </match> + </named-entry> + <named-entry> + <entry-name>PORT</entry-name> + <action>forward</action> + <match> + <application> + <eq>port</eq> + </application> + </match> + </named-entry> + <named-entry> + <entry-name>LAG</entry-name> + <action>forward</action> + <match> + <application> + <eq>lag</eq> + </application> + </match> + </named-entry> + <named-entry> + <entry-name>ISIS</entry-name> + <action>forward</action> + <match> + <application> + <eq>isis</eq> + </application> + </match> + </named-entry> + <named-entry> + <entry-name>BGP</entry-name> + <action>forward</action> + <match> + <application> + <eq>bgp</eq> + </application> + </match> + </named-entry> + <named-entry> + <entry-name>EPIPE</entry-name> + <action>forward</action> + <match> + <application> + <eq>svcmgr</eq> + </application> + </match> + </named-entry> + </filter> + <filter> + <filter-name>1001</filter-name> + <named-entry> + <entry-name>10</entry-name> + <description>Collect only events of major severity or higher</description> + <action>forward</action> + <match> + <severity> + <gte>major</gte> + </severity> + </match> + </named-entry> + </filter> + <log-id> + <name>1</name> + <admin-state>enable</admin-state> + <description>splunk-par-forwarder.geant.net</description> + <source> + <main>true</main> + <security>true</security> + <change>true</change> + <debug>true</debug> + </source> + <destination> + <syslog>1</syslog> + </destination> + </log-id> + <log-id> + <name>20</name> + <admin-state>enable</admin-state> + <description>MESSAGES</description> + <source> + <main>true</main> + <security>true</security> + <change>true</change> + </source> + <destination> + <file>20</file> + </destination> + </log-id> + <log-id> + <name>22</name> + <admin-state>enable</admin-state> + <description>commit_log</description> + <filter>22</filter> + <source> + <main>true</main> + </source> + <destination> + <file>22</file> + </destination> + </log-id> + <log-id> + <name>60</name> + <admin-state>enable</admin-state> + <description>geantnms</description> + <filter>60</filter> + <source> + <main>true</main> + </source> + <destination> + <snmp> + </snmp> + </destination> + </log-id> + <log-id> + <name>99</name> + <description>Default System Log</description> + <source> + <main>true</main> + </source> + <destination> + <memory> + <max-entries>500</max-entries> + </memory> + </destination> + </log-id> + <log-id> + <name>100</name> + <description>Default Serious Errors Log</description> + <filter>1001</filter> + <source> + <main>true</main> + </source> + <destination> + <memory> + <max-entries>500</max-entries> + </memory> + </destination> + </log-id> + <log-id> + <name>REMOTE</name> + <admin-state>enable</admin-state> + <description>logs.test.gap.geant.org</description> + <source> + <main>true</main> + <security>true</security> + <change>true</change> + <debug>true</debug> + </source> + <destination> + <syslog>LOGS.TEST.GAP</syslog> + </destination> + </log-id> + <snmp-trap-group> + <log-name>60</log-name> + <description>geantnms</description> + <trap-target> + <name>prod-noc-alarms01</name> + <address>62.40.114.3</address> + <version>snmpv2c</version> + <notify-community>geantnms</notify-community> + </trap-target> + <trap-target> + <name>prod-noc-alarms02</name> + <address>62.40.114.19</address> + <version>snmpv2c</version> + <notify-community>geantnms</notify-community> + </trap-target> + <trap-target> + <name>prod-noc-alarms03</name> + <address>62.40.114.18</address> + <version>snmpv2c</version> + <notify-community>geantnms</notify-community> + </trap-target> + <trap-target> + <name>prod-noc-alarms04</name> + <address>62.40.114.2</address> + <version>snmpv2c</version> + <notify-community>geantnms</notify-community> + </trap-target> + <trap-target> + <name>test-noc-alarms01</name> + <address>83.97.92.228</address> + <version>snmpv2c</version> + <notify-community>geantnms</notify-community> + </trap-target> + <trap-target> + <name>test-noc-alarms02</name> + <address>83.97.93.53</address> + <version>snmpv2c</version> + <notify-community>geantnms</notify-community> + </trap-target> + <trap-target> + <name>test-noc-alarms03</name> + <address>83.97.94.185</address> + <version>snmpv2c</version> + <notify-community>geantnms</notify-community> + </trap-target> + <trap-target> + <name>uat-noc-alarms01</name> + <address>83.97.93.151</address> + <version>snmpv2c</version> + <notify-community>geantnms</notify-community> + </trap-target> + <trap-target> + <name>uat-noc-alarms02</name> + <address>83.97.94.51</address> + <version>snmpv2c</version> + <notify-community>geantnms</notify-community> + </trap-target> + <trap-target> + <name>uat-noc-alarms03</name> + <address>83.97.94.188</address> + <version>snmpv2c</version> + <notify-community>geantnms</notify-community> + </trap-target> + </snmp-trap-group> + <syslog> + <syslog-name>1</syslog-name> + <description>splunk-par-forwarder.geant.net</description> + <address>83.97.94.11</address> + <facility>local7</facility> + <severity>debug</severity> + <log-prefix>rt0.dub.ie</log-prefix> + </syslog> + <syslog> + <syslog-name>LOGS.TEST.GAP</syslog-name> + <description>logs.test.gap.geant.org</description> + <address>62.40.111.200</address> + <facility>local7</facility> + <severity>debug</severity> + <log-prefix>rt0.dub.ie</log-prefix> + <hostname> + <use-system-name> + </use-system-name> + </hostname> + </syslog> + </log> + <oam-pm> + <bin-group> + <bin-group-id>2</bin-group-id> + <admin-state>enable</admin-state> + </bin-group> + <session> + <session-name>rt0.dub.ie--rt0.bil.es</session-name> + <bin-group>2</bin-group> + <ip> + <destination>62.40.119.108</destination> + <destination-udp-port>64364</destination-udp-port> + <source>62.40.119.109</source> + <twamp-light> + <admin-state>enable</admin-state> + <test-id>auto</test-id> + <interval>1000</interval> + <pad-size>10</pad-size> + <record-stats>delay-and-loss</record-stats> + </twamp-light> + </ip> + </session> + </oam-pm> + <policy-options> + <as-path> + <name>AS_COMMERCIAL_LOW_PREF</name> + <expression>.* (702|703|3356|3549|5511|6762|6939|10026) .*</expression> + </as-path> + <as-path> + <name>AS_COMMERCIAL_REJECT</name> + <expression>.* (1|42|174|286|701|1239|1273|1299|2119|2551|2828|2856|2914|3257|3561|3856|4436|6453|6939|9002|12989|15412|19080|19151|12200|14294|16509|16839|18541|19793|22556|33011|26769|46786|22822|20940|8075|16265|19281|29748|16276|37958|38670|10310|30094|35415) .*</expression> + </as-path> + <as-path> + <name>AS_PRIVATE</name> + <expression>.* (0|64512-65535|4200000000-4294967295) .*</expression> + </as-path> + <as-path> + <name>AS_SELF</name> + <expression>.*(20965|21320).*</expression> + </as-path> + <community> + <name>GEANT_ADV2_PRIVATE_PEERS</name> + <member> + <member>20965:65533</member> + </member> + </community> + <community> + <name>GEANT_ANYCAST</name> + <member> + <member>20965:2</member> + </member> + </community> + <community> + <name>GEANT_BELNET</name> + <member> + <member>20965:2611</member> + </member> + </community> + <community> + <name>GEANT_BELNET_BLOCK</name> + <member> + <member>64512:2611</member> + </member> + </community> + <community> + <name>GEANT_DUMMY</name> + <member> + <member>20965:65000</member> + </member> + </community> + <community> + <name>GEANT_FOD</name> + <member> + <member>20965:9</member> + </member> + </community> + <community> + <name>GEANT_GOOGLE</name> + <member> + <member>20965:15169</member> + </member> + </community> + <community> + <name>GEANT_GWS</name> + <member> + <member>20965:7777</member> + </member> + </community> + <community> + <name>GEANT_GWS_BLOCK</name> + <member> + <member>20965:7000</member> + </member> + </community> + <community> + <name>GEANT_GWS_COGENT_BLOCK</name> + <member> + <member>64500:174</member> + </member> + </community> + <community> + <name>GEANT_GWS_COGENT_BLOCK2</name> + <member> + <member>64512:174</member> + </member> + </community> + <community> + <name>GEANT_GWS_COLT_BLOCK</name> + <member> + <member>64500:3356</member> + </member> + </community> + <community> + <name>GEANT_GWS_COLT_BLOCK2</name> + <member> + <member>64512:3356</member> + </member> + </community> + <community> + <name>GEANT_GWS_NREN</name> + <member> + <member>20965:65534</member> + </member> + </community> + <community> + <name>GEANT_GWS_PREPEND1</name> + <member> + <member>20965:7010</member> + </member> + </community> + <community> + <name>GEANT_GWS_PREPEND2</name> + <member> + <member>20965:7020</member> + </member> + </community> + <community> + <name>GEANT_GWS_PREPEND3</name> + <member> + <member>20965:7030</member> + </member> + </community> + <community> + <name>GEANT_GWS_PREPEND6</name> + <member> + <member>20965:7060</member> + </member> + </community> + <community> + <name>GEANT_IAS_BELNET_BLOCK</name> + <member> + <member>64512:2611</member> + </member> + </community> + <community> + <name>GEANT_IAS_GWS_BLOCK</name> + <member> + <member>64512:65534</member> + </member> + </community> + <community> + <name>GEANT_IAS_GWS_NREN</name> + <member> + <member>64700:65534</member> + </member> + </community> + <community> + <name>GEANT_IAS_GWS_PREPEND1</name> + <member> + <member>64801:65534</member> + </member> + </community> + <community> + <name>GEANT_IAS_GWS_PREPEND2</name> + <member> + <member>64802:65534</member> + </member> + </community> + <community> + <name>GEANT_IAS_GWS_PREPEND3</name> + <member> + <member>64803:65534</member> + </member> + </community> + <community> + <name>GEANT_IAS_GWS_PREPEND6</name> + <member> + <member>64806:65534</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_AMS</name> + <member> + <member>21320:64913</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_ATH</name> + <member> + <member>21320:64914</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_BEL</name> + <member> + <member>21320:64943</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_BIL</name> + <member> + <member>21320:64947</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_BRA</name> + <member> + <member>21320:64915</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_BRU</name> + <member> + <member>21320:64916</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_BUC</name> + <member> + <member>21320:64917</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_BUD</name> + <member> + <member>21320:64918</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_CHI</name> + <member> + <member>21320:64945</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_COR</name> + <member> + <member>21320:64948</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_DUB</name> + <member> + <member>21320:64920</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_FRA</name> + <member> + <member>21320:64922</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_GEN</name> + <member> + <member>21320:64923</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_HAM</name> + <member> + <member>21320:64924</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_KAU</name> + <member> + <member>21320:64925</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_KIE</name> + <member> + <member>21320:64946</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_LIS</name> + <member> + <member>21320:64926</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_LJU</name> + <member> + <member>21320:64927</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_LON</name> + <member> + <member>21320:64928</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_LON2</name> + <member> + <member>21320:64929</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_LUX</name> + <member> + <member>21320:64952</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_MAD</name> + <member> + <member>21320:64930</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_MAR</name> + <member> + <member>21320:64931</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_MIL2</name> + <member> + <member>21320:64933</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_PAR</name> + <member> + <member>21320:64935</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_POR</name> + <member> + <member>21320:64944</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_POZ</name> + <member> + <member>21320:64936</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_PRA</name> + <member> + <member>21320:64937</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_RIG</name> + <member> + <member>21320:64938</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_SOF</name> + <member> + <member>21320:64939</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_STO</name> + <member> + <member>21320:64953</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_TAR</name> + <member> + <member>21320:64949</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_THE</name> + <member> + <member>21320:64950</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_VIE</name> + <member> + <member>21320:64941</member> + </member> + </community> + <community> + <name>GEANT_IAS_NREN_ZAG</name> + <member> + <member>21320:64942</member> + </member> + </community> + <community> + <name>GEANT_INTERCO_BLOCK</name> + <member> + <member>20965:0</member> + </member> + </community> + <community> + <name>GEANT_IXPEERS</name> + <member> + <member>20965:3</member> + </member> + </community> + <community> + <name>GEANT_LOW_PREF</name> + <member> + <member>20965:1</member> + </member> + </community> + <community> + <name>GEANT_NREN_AMS</name> + <member> + <member>20965:64913</member> + </member> + </community> + <community> + <name>GEANT_NREN_ATH</name> + <member> + <member>20965:64914</member> + </member> + </community> + <community> + <name>GEANT_NREN_BEL</name> + <member> + <member>20965:64943</member> + </member> + </community> + <community> + <name>GEANT_NREN_BIL</name> + <member> + <member>20965:64947</member> + </member> + </community> + <community> + <name>GEANT_NREN_BRA</name> + <member> + <member>20965:64915</member> + </member> + </community> + <community> + <name>GEANT_NREN_BRU</name> + <member> + <member>20965:64916</member> + </member> + </community> + <community> + <name>GEANT_NREN_BUC</name> + <member> + <member>20965:64917</member> + </member> + </community> + <community> + <name>GEANT_NREN_BUD</name> + <member> + <member>20965:64918</member> + </member> + </community> + <community> + <name>GEANT_NREN_CHI</name> + <member> + <member>20965:64945</member> + </member> + </community> + <community> + <name>GEANT_NREN_COR</name> + <member> + <member>20965:64948</member> + </member> + </community> + <community> + <name>GEANT_NREN_DUB</name> + <member> + <member>20965:64920</member> + </member> + </community> + <community> + <name>GEANT_NREN_FRA</name> + <member> + <member>20965:64922</member> + </member> + </community> + <community> + <name>GEANT_NREN_GEN</name> + <member> + <member>20965:64923</member> + </member> + </community> + <community> + <name>GEANT_NREN_HAM</name> + <member> + <member>20965:64924</member> + </member> + </community> + <community> + <name>GEANT_NREN_KAU</name> + <member> + <member>20965:64925</member> + </member> + </community> + <community> + <name>GEANT_NREN_KIE</name> + <member> + <member>20965:64946</member> + </member> + </community> + <community> + <name>GEANT_NREN_LIS</name> + <member> + <member>20965:64926</member> + </member> + </community> + <community> + <name>GEANT_NREN_LJU</name> + <member> + <member>20965:64927</member> + </member> + </community> + <community> + <name>GEANT_NREN_LON</name> + <member> + <member>20965:64928</member> + </member> + </community> + <community> + <name>GEANT_NREN_LON2</name> + <member> + <member>20965:64929</member> + </member> + </community> + <community> + <name>GEANT_NREN_LUX</name> + <member> + <member>20965:64952</member> + </member> + </community> + <community> + <name>GEANT_NREN_MAD</name> + <member> + <member>20965:64930</member> + </member> + </community> + <community> + <name>GEANT_NREN_MAR</name> + <member> + <member>20965:64931</member> + </member> + </community> + <community> + <name>GEANT_NREN_MIL2</name> + <member> + <member>20965:64933</member> + </member> + </community> + <community> + <name>GEANT_NREN_PAR</name> + <member> + <member>20965:64935</member> + </member> + </community> + <community> + <name>GEANT_NREN_POR</name> + <member> + <member>20965:64944</member> + </member> + </community> + <community> + <name>GEANT_NREN_POZ</name> + <member> + <member>20965:64936</member> + </member> + </community> + <community> + <name>GEANT_NREN_PRA</name> + <member> + <member>20965:64937</member> + </member> + </community> + <community> + <name>GEANT_NREN_RIG</name> + <member> + <member>20965:64938</member> + </member> + </community> + <community> + <name>GEANT_NREN_SOF</name> + <member> + <member>20965:64939</member> + </member> + </community> + <community> + <name>GEANT_NREN_STO</name> + <member> + <member>20965:64953</member> + </member> + </community> + <community> + <name>GEANT_NREN_TAR</name> + <member> + <member>20965:64949</member> + </member> + </community> + <community> + <name>GEANT_NREN_THE</name> + <member> + <member>20965:64950</member> + </member> + </community> + <community> + <name>GEANT_NREN_VIE</name> + <member> + <member>20965:64941</member> + </member> + </community> + <community> + <name>GEANT_NREN_ZAG</name> + <member> + <member>20965:64942</member> + </member> + </community> + <community> + <name>GEANT_NRN</name> + <member> + <member>20965:155</member> + </member> + </community> + <community> + <name>GEANT_PEERS</name> + <member> + <member>20965:4</member> + </member> + </community> + <community> + <name>GEANT_PEER_RE</name> + <member> + <member>20965:65530</member> + </member> + </community> + <community> + <name>GEANT_RTBH</name> + <member> + <member>20965:8</member> + </member> + </community> + <community> + <name>GLOBAL_ANYCAST_IAS</name> + <member> + <member>21320:7</member> + </member> + </community> + <community> + <name>GLOBAL_ANYCAST_RE</name> + <member> + <member>20965:7</member> + </member> + </community> + <community> + <name>IAS_AGGREGATE_ROUTES</name> + <member> + <member>21320:64912</member> + </member> + </community> + <community> + <name>NO_EXPORT</name> + <member> + <member>65535:65281</member> + </member> + </community> + <community> + <name>ORIGIN_VALIDATION_STATE_INVALID</name> + <member> + <member>ext:4300:2</member> + </member> + </community> + <community> + <name>ORIGIN_VALIDATION_STATE_UNKNOWN</name> + <member> + <member>ext:4300:1</member> + </member> + </community> + <community> + <name>ORIGIN_VALIDATION_STATE_VALID</name> + <member> + <member>ext:4300:0</member> + </member> + </community> + <community> + <name>TE_ANNOUNCE_ALL_PRIVATE_PEERS</name> + <member> + <member>64700:65533</member> + </member> + </community> + <community> + <name>TE_ANNOUNCE_ALL_PUBLIC_PEERS</name> + <member> + <member>64700:65532</member> + </member> + </community> + <community> + <name>TE_ANNOUNCE_ALL_PUBLIC_PEERS_2</name> + <member> + <member>64712:65532</member> + </member> + </community> + <community> + <name>TE_ANNOUNCE_ALL_PUBLIC_PEERS_3</name> + <member> + <member>20965:65532</member> + </member> + </community> + <community> + <name>TE_BLOCK_ALL_PUBLIC_PEERS</name> + <member> + <member>64512:65532</member> + </member> + </community> + <community> + <name>TE_BLOCK_PEERS_2</name> + <member> + <member>64512:65533</member> + </member> + </community> + <community> + <name>TE_PRIVATE_COMMUNITIES</name> + <member> + <member>^(64[6-9][0-9][0-9]|65[0-4][0-9][0-9]|655[0-2][0-9]|6553[0-5]).*$</member> + </member> + </community> + <prefix-list> + <name>BELNET_NREN_PREFIXES_IPV4</name> + <prefix> + <ip-prefix>2.57.40.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2.57.40.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2.57.41.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2.57.42.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2.57.43.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>5.59.224.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>5.180.195.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>23.153.72.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>31.24.249.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>44.11.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>44.32.151.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>45.87.76.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>45.156.152.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>45.156.153.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>45.156.155.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>46.18.32.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>46.19.7.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>66.248.236.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>77.72.224.0/21</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>77.246.241.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>78.24.120.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>82.146.186.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>83.172.140.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>83.172.144.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>83.172.148.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>83.172.186.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>85.91.160.0/19</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>85.209.32.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>85.209.33.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>85.209.34.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>85.209.35.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>86.39.0.0/18</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.199.15.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.199.39.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.208.164.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.208.211.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.209.133.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.220.191.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.223.21.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.223.195.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.236.244.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.236.244.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.236.245.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.241.30.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>93.92.17.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>94.156.75.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>95.130.40.0/21</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>109.233.104.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>130.104.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>134.58.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>134.184.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>138.48.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>139.165.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>139.191.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>139.191.96.0/20</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>139.191.112.0/20</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>139.191.192.0/20</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>143.129.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>143.169.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>144.248.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>146.103.224.0/19</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>146.103.224.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>146.103.225.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>146.175.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>149.5.27.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>149.126.56.0/21</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>157.193.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>164.15.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>171.25.229.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.3.216.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.3.216.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.3.217.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.30.252.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.36.4.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.36.5.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.36.6.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.36.7.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.37.232.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.37.233.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.37.234.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.37.235.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.42.136.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.59.16.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.59.16.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.59.18.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.59.19.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.70.44.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.70.44.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.70.45.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.70.46.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.70.47.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.77.12.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.77.13.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.77.14.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.77.15.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.77.197.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.77.198.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.77.199.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.83.136.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.94.136.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.119.156.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.119.156.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.119.156.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.119.157.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.119.158.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.119.159.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.122.248.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.127.180.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.127.180.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.127.181.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.130.40.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.130.148.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.134.4.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.134.24.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.135.191.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.138.96.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.138.98.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.142.224.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.142.226.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.142.226.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.142.227.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.153.40.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.153.68.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.154.164.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.154.165.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.154.166.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.154.167.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.182.132.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.202.224.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.233.218.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>188.209.144.0/20</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>188.241.48.0/20</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.36.133.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.36.134.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.36.135.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.36.144.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.36.148.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.36.148.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.41.140.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.71.53.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.71.80.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.124.39.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.135.167.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.135.168.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.156.132.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.9.8.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.53.3.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.53.34.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.53.113.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.53.114.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.53.116.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.53.120.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.53.124.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.56.76.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.56.77.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.56.238.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.58.112.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.58.148.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.58.158.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.58.159.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.58.172.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.84.119.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.104.8.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.109.126.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.168.148.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.190.0.0/15</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.190.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.190.197.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.190.244.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.191.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.191.171.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.191.192.0/19</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.191.240.0/20</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.200.29.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.0.6.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.0.37.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.0.43.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.0.44.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.32.152.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.55.187.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.58.192.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.58.192.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.58.193.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.58.194.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.58.194.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.58.195.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.58.196.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.58.197.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.68.132.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.146.105.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.146.106.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.146.106.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.146.107.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.146.108.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>194.247.160.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.5.173.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.22.138.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.22.139.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.62.68.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.62.90.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.62.90.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.62.91.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.137.243.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.177.246.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.225.164.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.225.164.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.225.166.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.225.167.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.234.53.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.234.186.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.244.160.0/19</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.244.160.0/20</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.244.176.0/20</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>212.102.115.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>213.32.232.0/21</ip-prefix> + <type>longer</type> + </prefix> + </prefix-list> + <prefix-list> + <name>BELNET_NREN_PREFIXES_IPV6</name> + <prefix> + <ip-prefix>2001:470:26a::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:678:9::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:678:64::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:678:68::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:678:6c::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:678:9ac::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:678:f30::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:40::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:9c::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1010::/47</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1010::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1011::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a00::/42</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a00::/45</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a00::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a01::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a02::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a03::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a04::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a05::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a06::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a07::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a08::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a09::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a0a::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a0b::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a0c::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a0d::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a0e::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a0f::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a10::/45</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a10::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a11::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a12::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a13::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a14::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a15::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a16::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:1a17::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:254c::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:2550::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:2554::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:2558::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:2a58::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:2c84::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:67c:2ca0::/45</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:6a8::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:6a8::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:6a8:1100::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:6a8:8a00::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:6a8:9200::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:6a8:a001::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:6a8:be00::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7fe::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7fe::/33</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2602:2d4::/36</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2602:2d4::/40</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2602:2d4:100::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2602:2d4:f00::/40</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2602:fa42:100::/40</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a00:1458::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a00:b2c0::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f0::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f0::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1::/38</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:400::/38</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:800::/38</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:5000::/38</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:8000::/38</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:a000::/38</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:c000::/38</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f077::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f078::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f079::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f080::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f081::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f082::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f083::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f084::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f085::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f086::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f087::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f088::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f089::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f090::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f091::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f092::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f093::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f094::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f095::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f096::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f097::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f098::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f099::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f100::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f101::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f102::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f103::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f104::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f105::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f106::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f107::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f108::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f109::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f110::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f111::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f112::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f113::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f114::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f115::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f116::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f117::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f118::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f119::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f120::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f121::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f122::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f123::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f124::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f125::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f126::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f127::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f128::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f129::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f130::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f131::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f132::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f133::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f134::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f135::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f136::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f137::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f138::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f139::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f140::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f141::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f142::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f143::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f144::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f145::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f146::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f147::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f148::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f149::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f150::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f151::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f152::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f153::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f154::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f155::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:f220::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:3f1:ffff::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:690::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:690::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:9480::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a01:e580::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a02:c8::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a02:6e0::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a02:2c40::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a02:5b40::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a02:5b41::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a02:67e0::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a02:67e0::/35</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a02:67e0:2000::/35</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a02:67e0:e000::/35</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1980::/40</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1980:d0ff::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1980:d114::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1980:d1ff::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1980:d200::/40</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1980:d3ff::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1980:d400::/40</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1980:d4ff::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1981::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1982::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1984::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1986::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1986:18::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a03:1986:d0ff::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a04:4720::/30</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a04:b5c0::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a05:2600::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a05:2600::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a05:2601::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a05:2602::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a05:2603::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a05:2604::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a05:2607::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a05:9b80::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a06:cb00::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a07:d40::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a07:3140::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a07:3146::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0a:44c0::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0a:6040:6f00::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0b:8780::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0c:9a40:8030::/44</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0c:9a40:8030::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0c:b641:220::/44</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0c:b641:220::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0c:b641:221::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0c:b641:222::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0c:b641:223::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0c:b641:224::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0d:e640::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0e:f780::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0f:69c0::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a0f:c8c0::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a10:1740::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a10:8280::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4940::/29</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4940::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4940:1200::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4940:1234::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4940:1965::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4940:9958::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4940:e700::/44</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4940:e870::/44</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4942::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4942:174::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4942:4009::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:46::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:1222::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:1500::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:1600::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:1650::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:1655::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:1658::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:1700::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:1800::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:1900::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:3000::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:3005::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:4000::/44</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:4040::/44</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:4050::/44</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:4940::/44</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:6960::/44</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:8000::/40</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:8000::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:8010::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:8030::/48</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2a12:4946:e000::/40</ip-prefix> + <type>longer</type> + </prefix> + </prefix-list> + <prefix-list> + <name>BOGONS</name> + <prefix> + <ip-prefix>0.0.0.0/0</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>0.0.0.0/8</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>10.0.0.0/8</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>100.64.0.0/10</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>127.0.0.0/8</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>169.254.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>172.16.0.0/12</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.0.0.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.0.2.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.168.0.0/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>198.18.0.0/15</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>198.51.100.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>203.0.113.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>224.0.0.0/3</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>::/0</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>::/96</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>::1/128</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>::ffff:0.0.0.0/96</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>100::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:10::/28</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:db8::/32</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>3ffe::/16</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>fc00::/7</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>fe80::/10</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>fec0::/10</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>ff00::/8</ip-prefix> + <type>longer</type> + </prefix> + </prefix-list> + <prefix-list> + <name>GEANT_ANYCAST</name> + <prefix> + <ip-prefix>192.33.14.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>192.58.128.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>194.0.1.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>194.0.2.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:678:4::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:678:5::/48</ip-prefix> + <type>exact</type> + </prefix> + </prefix-list> + <prefix-list> + <name>GLOBAL_ANYCAST</name> + <prefix> + <ip-prefix>170.247.170.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>192.5.5.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>192.33.4.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>192.36.148.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>192.58.128.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>192.112.36.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>192.203.230.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>193.0.14.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>198.41.0.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>198.97.190.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>199.7.83.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>199.7.91.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>202.12.27.0/24</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:200:c000::/35</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:500:1::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:500:2::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:500:12::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:500:2d::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:500:2f::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:500:9f::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:500:a8::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:503:c27::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:503:ba3e::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:7fd::/48</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:7fe::/33</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2001:dc3::/32</ip-prefix> + <type>exact</type> + </prefix> + <prefix> + <ip-prefix>2801:1b8:10::/48</ip-prefix> + <type>exact</type> + </prefix> + </prefix-list> + <prefix-list> + <name>IXPREFIXES</name> + <prefix> + <ip-prefix>80.81.192.0/21</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>80.249.208.0/21</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>91.210.16.0/22</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.1.47.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.1.192.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>185.6.36.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>192.65.185.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.188.137.0/24</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>193.203.0.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>195.66.224.0/21</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>217.29.66.0/23</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8:1::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8:4::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8:b:100::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8:14::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8:18::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8:1c:24a::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8:30::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8:35::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8:36::/64</ip-prefix> + <type>longer</type> + </prefix> + <prefix> + <ip-prefix>2001:7f8:a0::/64</ip-prefix> + <type>longer</type> + </prefix> + </prefix-list> + <prefix-list> + <name>REJECT_IAS_OUT_OF_BOUND_PREFIXES_V4</name> + <prefix> + <ip-prefix>0.0.0.0/0</ip-prefix> + <type>range</type> + <start-length>0</start-length> + <end-length>7</end-length> + </prefix> + </prefix-list> + <prefix-list> + <name>REJECT_IAS_OUT_OF_BOUND_PREFIXES_V6</name> + <prefix> + <ip-prefix>::/0</ip-prefix> + <type>range</type> + <start-length>0</start-length> + <end-length>7</end-length> + </prefix> + </prefix-list> + <prefix-list> + <name>REJECT_IAS_SMALL_PREFIXES_V4</name> + <prefix> + <ip-prefix>0.0.0.0/0</ip-prefix> + <type>range</type> + <start-length>25</start-length> + <end-length>32</end-length> + </prefix> + </prefix-list> + <prefix-list> + <name>REJECT_IAS_SMALL_PREFIXES_V6</name> + <prefix> + <ip-prefix>::/0</ip-prefix> + <type>range</type> + <start-length>57</start-length> + <end-length>128</end-length> + </prefix> + </prefix-list> + <prefix-list> + <name>REJECT_SMALL_PREFIXES_V4</name> + <prefix> + <ip-prefix>0.0.0.0/0</ip-prefix> + <type>range</type> + <start-length>28</start-length> + <end-length>32</end-length> + </prefix> + </prefix-list> + <prefix-list> + <name>REJECT_SMALL_PREFIXES_V6</name> + <prefix> + <ip-prefix>::/0</ip-prefix> + <type>range</type> + <start-length>64</start-length> + <end-length>128</end-length> + </prefix> + </prefix-list> + <prefix-list> + <name>RTBH_RANGES_V4</name> + <prefix> + <ip-prefix>0.0.0.0/0</ip-prefix> + <type>range</type> + <start-length>32</start-length> + <end-length>32</end-length> + </prefix> + </prefix-list> + <prefix-list> + <name>RTBH_RANGES_V6</name> + <prefix> + <ip-prefix>::/0</ip-prefix> + <type>range</type> + <start-length>128</start-length> + <end-length>128</end-length> + </prefix> + </prefix-list> + <policy-statement> + <name>BOGONS</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>BOGONS</entry-name> + <from> + <prefix-list>BOGONS</prefix-list> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>AS_PATH_LENGTH_LIMIT</entry-name> + <from> + <as-path> + <length> + <value>41</value> + </length> + </as-path> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>DEST_CLASS_USAGE</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>GWS</entry-name> + <from> + <community> + <name>GEANT_GWS</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <dest-class>1</dest-class> + </action> + </named-entry> + <named-entry> + <entry-name>PRIVATE_PEERS</entry-name> + <from> + <community> + <name>GEANT_PEERS</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <dest-class>2</dest-class> + </action> + </named-entry> + <named-entry> + <entry-name>IX_PEERS</entry-name> + <from> + <community> + <name>GEANT_IXPEERS</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <dest-class>3</dest-class> + </action> + </named-entry> + <named-entry> + <entry-name>END_ACTION</entry-name> + <action> + <action-type>next-policy</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_AS_SELF_REJECT</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>AS_SELF</entry-name> + <from> + <as-path> + <name>AS_SELF</name> + </as-path> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_DENY_ALL</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>PS_DENY_ALL</entry-name> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_FROM_BELNET_NREN_V4</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>RTBH</entry-name> + <from> + <prefix-list>BELNET_NREN_PREFIXES_IPV4</prefix-list> + <policy>PS_FROM_RTBH</policy> + <community> + <name>GEANT_RTBH</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <local-preference>200</local-preference> + <next-hop>192.0.2.101</next-hop> + <community> + <add>GEANT_DUMMY</add> + <add>NO_EXPORT</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>ANYCAST_PREFIXES</entry-name> + <from> + <prefix-list>GEANT_ANYCAST</prefix-list> + <community> + <name>GEANT_ANYCAST</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <local-preference>150</local-preference> + <community> + <add>GEANT_ANYCAST</add> + <add>GEANT_BELNET</add> + <add>GEANT_NREN_DUB</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>REJECT_SMALL_PREFIXES</entry-name> + <from> + <prefix-list>REJECT_SMALL_PREFIXES_V4</prefix-list> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>FROM_GEANTIP_BELNET_ACCEPT</entry-name> + <from> + <prefix-list>BELNET_NREN_PREFIXES_IPV4</prefix-list> + </from> + <action> + <action-type>accept</action-type> + <local-preference>150</local-preference> + <community> + <add>GEANT_NRN</add> + <add>GEANT_BELNET</add> + <add>GEANT_NREN_DUB</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>END_ACTION</entry-name> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_FROM_BELNET_NREN_V6</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>RTBH</entry-name> + <from> + <prefix-list>BELNET_NREN_PREFIXES_IPV6</prefix-list> + <policy>PS_FROM_RTBH_V6</policy> + <community> + <name>GEANT_RTBH</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <local-preference>200</local-preference> + <next-hop>100::</next-hop> + <community> + <add>GEANT_DUMMY</add> + <add>NO_EXPORT</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>ANYCAST_PREFIXES</entry-name> + <from> + <prefix-list>GEANT_ANYCAST</prefix-list> + <community> + <name>GEANT_ANYCAST</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <local-preference>150</local-preference> + <community> + <add>GEANT_ANYCAST</add> + <add>GEANT_BELNET</add> + <add>GEANT_NREN_DUB</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>REJECT_SMALL_PREFIXES</entry-name> + <from> + <prefix-list>REJECT_SMALL_PREFIXES_V6</prefix-list> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>FROM_GEANTIP_BELNET_ACCEPT</entry-name> + <from> + <prefix-list>BELNET_NREN_PREFIXES_IPV6</prefix-list> + </from> + <action> + <action-type>accept</action-type> + <local-preference>150</local-preference> + <community> + <add>GEANT_NRN</add> + <add>GEANT_BELNET</add> + <add>GEANT_NREN_DUB</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>END_ACTION</entry-name> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_FROM_RTBH</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>RTBH_COMMUNITY</entry-name> + <from> + <prefix-list>RTBH_RANGES_V4</prefix-list> + <community> + <name>GEANT_RTBH</name> + </community> + </from> + <action> + <action-type>accept</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_FROM_RTBH_V6</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>RTBH_COMMUNITY</entry-name> + <from> + <prefix-list>RTBH_RANGES_V6</prefix-list> + <community> + <name>GEANT_RTBH</name> + </community> + </from> + <action> + <action-type>accept</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_GLOBAL_ANYCAST_IAS</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>GLOBAL_ANYCAST_PREFIXES</entry-name> + <from> + <prefix-list>GLOBAL_ANYCAST</prefix-list> + </from> + <action> + <action-type>next-policy</action-type> + <community> + <add>GLOBAL_ANYCAST_IAS</add> + </community> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_GLOBAL_ANYCAST_RE</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>GLOBAL_ANYCAST_PREFIXES</entry-name> + <from> + <prefix-list>GLOBAL_ANYCAST</prefix-list> + </from> + <action> + <action-type>next-policy</action-type> + <community> + <add>GLOBAL_ANYCAST_RE</add> + <add>GEANT_INTERCO_BLOCK</add> + </community> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_IAS_FROM_BELNET_NREN_V4</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>RTBH</entry-name> + <from> + <prefix-list>BELNET_NREN_PREFIXES_IPV4</prefix-list> + <policy>PS_FROM_RTBH</policy> + <community> + <name>GEANT_RTBH</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <local-preference>200</local-preference> + <next-hop>192.0.2.101</next-hop> + <community> + <add>GEANT_DUMMY</add> + <add>NO_EXPORT</add> + <add>TE_BLOCK_PEERS_2</add> + <add>TE_BLOCK_ALL_PUBLIC_PEERS</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>ANYCAST_PREFIXES</entry-name> + <from> + <prefix-list>GEANT_ANYCAST</prefix-list> + <community> + <name>GEANT_ANYCAST</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <local-preference>150</local-preference> + <community> + <add>GEANT_ANYCAST</add> + <add>GEANT_NREN_DUB</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>REJECT_SMALL_PREFIXES</entry-name> + <from> + <prefix-list>REJECT_IAS_SMALL_PREFIXES_V4</prefix-list> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>REJECT_IAS_OUT_OF_BOUND_PREFIXES_V4</entry-name> + <from> + <prefix-list>REJECT_IAS_OUT_OF_BOUND_PREFIXES_V4</prefix-list> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>FROM_IAS_BELNET_NREN_ACCEPT</entry-name> + <from> + <prefix-list>BELNET_NREN_PREFIXES_IPV4</prefix-list> + </from> + <action> + <action-type>accept</action-type> + <local-preference>150</local-preference> + <community> + <add>GEANT_NRN</add> + <add>GEANT_NREN_DUB</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>END_ACTION</entry-name> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_IAS_FROM_BELNET_NREN_V6</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>RTBH</entry-name> + <from> + <prefix-list>BELNET_NREN_PREFIXES_IPV6</prefix-list> + <policy>PS_FROM_RTBH_V6</policy> + <community> + <name>GEANT_RTBH</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <local-preference>200</local-preference> + <next-hop>100::</next-hop> + <community> + <add>GEANT_DUMMY</add> + <add>NO_EXPORT</add> + <add>TE_BLOCK_PEERS_2</add> + <add>TE_BLOCK_ALL_PUBLIC_PEERS</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>ANYCAST_PREFIXES</entry-name> + <from> + <prefix-list>GEANT_ANYCAST</prefix-list> + <community> + <name>GEANT_ANYCAST</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <local-preference>150</local-preference> + <community> + <add>GEANT_ANYCAST</add> + <add>GEANT_NREN_DUB</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>REJECT_SMALL_PREFIXES</entry-name> + <from> + <prefix-list>REJECT_IAS_SMALL_PREFIXES_V6</prefix-list> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>REJECT_IAS_OUT_OF_BOUND_PREFIXES_V6</entry-name> + <from> + <prefix-list>REJECT_IAS_OUT_OF_BOUND_PREFIXES_V6</prefix-list> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>FROM_IAS_BELNET_NREN_ACCEPT</entry-name> + <from> + <prefix-list>BELNET_NREN_PREFIXES_IPV6</prefix-list> + </from> + <action> + <action-type>accept</action-type> + <local-preference>150</local-preference> + <community> + <add>GEANT_NRN</add> + <add>GEANT_NREN_DUB</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>END_ACTION</entry-name> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_IAS_TO_BELNET_NREN_V4</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>EXCEPTION_BLOCK</entry-name> + <from> + <community> + <name>GEANT_DUMMY</name> + </community> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>TO_NREN_BLOCK</entry-name> + <from> + <community> + <name>GEANT_BELNET_BLOCK</name> + </community> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>IAS_TO_BELNET_NREN</entry-name> + <from> + <community> + <name>IAS_AGGREGATE_ROUTES</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>IAS_TO_BELNET_NREN_IXPEERS</entry-name> + <from> + <community> + <name>GEANT_IXPEERS</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>IAS_TO_BELNET_NREN_PEERS</entry-name> + <from> + <community> + <name>GEANT_PEERS</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>IAS_TO_BELNET_NREN_GOOGLE</entry-name> + <from> + <community> + <name>GEANT_GOOGLE</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>END_ACTION</entry-name> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_IAS_TO_BELNET_NREN_V6</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>EXCEPTION_BLOCK</entry-name> + <from> + <community> + <name>GEANT_DUMMY</name> + </community> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>TO_NREN_BLOCK</entry-name> + <from> + <community> + <name>GEANT_BELNET_BLOCK</name> + </community> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>IAS_TO_BELNET_NREN</entry-name> + <from> + <community> + <name>IAS_AGGREGATE_ROUTES</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>IAS_TO_BELNET_NREN_IXPEERS</entry-name> + <from> + <community> + <name>GEANT_IXPEERS</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>IAS_TO_BELNET_NREN_PEERS</entry-name> + <from> + <community> + <name>GEANT_PEERS</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>IAS_TO_BELNET_NREN_GOOGLE</entry-name> + <from> + <community> + <name>GEANT_GOOGLE</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>END_ACTION</entry-name> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_PRIVATE_AS_BLOCK</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>BLOCK_PRIVATE_AS</entry-name> + <from> + <as-path> + <name>AS_PRIVATE</name> + </as-path> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_REJECT_GLOBAL_ANYCAST</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>GLOBAL_ANYCAST_PREFIXES</entry-name> + <from> + <prefix-list>GLOBAL_ANYCAST</prefix-list> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_RPKI_IAS_NREN</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>RTBH_BYPASS</entry-name> + <from> + <prefix-list>RTBH_RANGES_V4</prefix-list> + <community> + <name>GEANT_RTBH</name> + </community> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>next-policy</action-type> + <origin-validation-state>valid</origin-validation-state> + </action> + </named-entry> + <named-entry> + <entry-name>RTBH_BYPASS_V6</entry-name> + <from> + <prefix-list>RTBH_RANGES_V6</prefix-list> + <community> + <name>GEANT_RTBH</name> + </community> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>next-policy</action-type> + <origin-validation-state>valid</origin-validation-state> + </action> + </named-entry> + <named-entry> + <entry-name>UNKNOWN</entry-name> + <from> + <origin-validation-state>not-found</origin-validation-state> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>next-policy</action-type> + <community> + <add>ORIGIN_VALIDATION_STATE_UNKNOWN</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>VALID</entry-name> + <from> + <origin-validation-state>valid</origin-validation-state> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>next-policy</action-type> + <community> + <add>ORIGIN_VALIDATION_STATE_VALID</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>INVALID</entry-name> + <from> + <origin-validation-state>invalid</origin-validation-state> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>reject</action-type> + <community> + <add>ORIGIN_VALIDATION_STATE_INVALID</add> + </community> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_RPKI_IAS_PEER</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>UNKNOWN</entry-name> + <from> + <origin-validation-state>not-found</origin-validation-state> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>next-policy</action-type> + <community> + <add>ORIGIN_VALIDATION_STATE_UNKNOWN</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>VALID</entry-name> + <from> + <origin-validation-state>valid</origin-validation-state> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>next-policy</action-type> + <community> + <add>ORIGIN_VALIDATION_STATE_VALID</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>INVALID</entry-name> + <from> + <origin-validation-state>invalid</origin-validation-state> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>reject</action-type> + <community> + <add>ORIGIN_VALIDATION_STATE_INVALID</add> + </community> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_RPKI_RE_NREN</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>RTBH_BYPASS</entry-name> + <from> + <prefix-list>RTBH_RANGES_V4</prefix-list> + <community> + <name>GEANT_RTBH</name> + </community> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>next-policy</action-type> + <origin-validation-state>valid</origin-validation-state> + </action> + </named-entry> + <named-entry> + <entry-name>RTBH_BYPASS_V6</entry-name> + <from> + <prefix-list>RTBH_RANGES_V6</prefix-list> + <community> + <name>GEANT_RTBH</name> + </community> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>next-policy</action-type> + <origin-validation-state>valid</origin-validation-state> + </action> + </named-entry> + <named-entry> + <entry-name>UNKNOWN</entry-name> + <from> + <origin-validation-state>not-found</origin-validation-state> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>next-policy</action-type> + <community> + <add>ORIGIN_VALIDATION_STATE_UNKNOWN</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>VALID</entry-name> + <from> + <origin-validation-state>valid</origin-validation-state> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>next-policy</action-type> + <community> + <add>ORIGIN_VALIDATION_STATE_VALID</add> + </community> + </action> + </named-entry> + <named-entry> + <entry-name>INVALID</entry-name> + <from> + <origin-validation-state>invalid</origin-validation-state> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>reject</action-type> + <community> + <add>ORIGIN_VALIDATION_STATE_INVALID</add> + </community> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_RPKI_iBGP</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>UNKNOWN</entry-name> + <from> + <community> + <name>ORIGIN_VALIDATION_STATE_UNKNOWN</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <origin-validation-state>not-found</origin-validation-state> + </action> + </named-entry> + <named-entry> + <entry-name>VALID</entry-name> + <from> + <community> + <name>ORIGIN_VALIDATION_STATE_VALID</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <origin-validation-state>valid</origin-validation-state> + </action> + </named-entry> + <named-entry> + <entry-name>INVALID</entry-name> + <from> + <community> + <name>ORIGIN_VALIDATION_STATE_INVALID</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <origin-validation-state>invalid</origin-validation-state> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_RTBH_iBGP</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>RTBP_V4</entry-name> + <from> + <prefix-list>RTBH_RANGES_V4</prefix-list> + <community> + <name>GEANT_RTBH</name> + </community> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>accept</action-type> + <next-hop>192.0.2.101</next-hop> + </action> + </named-entry> + <named-entry> + <entry-name>RTBP_V6</entry-name> + <from> + <prefix-list>RTBH_RANGES_V6</prefix-list> + <community> + <name>GEANT_RTBH</name> + </community> + <protocol> + <name>bgp</name> + </protocol> + </from> + <action> + <action-type>accept</action-type> + <next-hop>100::</next-hop> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_TO_BELNET_NREN_V4</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>EXCEPTION_BLOCK</entry-name> + <from> + <community> + <name>GEANT_DUMMY</name> + </community> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>TO_NREN_BLOCK</entry-name> + <from> + <community> + <name>GEANT_BELNET_BLOCK</name> + </community> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>TO_BELNET_PEERS</entry-name> + <from> + <community> + <name>GEANT_PEER_RE</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>TO_BELNET_NRENS</entry-name> + <from> + <community> + <name>GEANT_NRN</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>END_ACTION</entry-name> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + <policy-statement> + <name>PS_TO_BELNET_NREN_V6</name> + <entry-type>named</entry-type> + <named-entry> + <entry-name>EXCEPTION_BLOCK</entry-name> + <from> + <community> + <name>GEANT_DUMMY</name> + </community> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>TO_NREN_BLOCK</entry-name> + <from> + <community> + <name>GEANT_BELNET_BLOCK</name> + </community> + </from> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + <named-entry> + <entry-name>TO_BELNET_PEER</entry-name> + <from> + <community> + <name>GEANT_PEER_RE</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>TO_BELNET_NRENS</entry-name> + <from> + <community> + <name>GEANT_NRN</name> + </community> + </from> + <action> + <action-type>accept</action-type> + <bgp-med> + <set>0</set> + </bgp-med> + </action> + </named-entry> + <named-entry> + <entry-name>END_ACTION</entry-name> + <action> + <action-type>reject</action-type> + </action> + </named-entry> + </policy-statement> + </policy-options> + <port> + <port-id>1/x1/1/c1</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c1/1</port-id> + <admin-state>enable</admin-state> + <description>PHY INFRASTRUCTURE BACKBONE P_lag-2 | DUB-LON | to-rt0.lon-2/1/c1/1</description> + <ethernet> + <mode>network</mode> + <mtu>9212</mtu> + <lldp> + <dest-mac> + <mac-type>nearest-bridge</mac-type> + <receive>true</receive> + <transmit>true</transmit> + <tx-tlvs> + <port-desc>true</port-desc> + <sys-name>true</sys-name> + <sys-cap>true</sys-cap> + </tx-tlvs> + </dest-mac> + </lldp> + </ethernet> + </port> + <port> + <port-id>1/x1/1/c2</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c4</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c6</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c7</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c8</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-100g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c8/1</port-id> + <admin-state>enable</admin-state> + <description>PHY INFRASTRUCTURE BACKBONE P_lag-1 | DUB-DUB | to-rt1.dub-et-0/0/1</description> + <ethernet> + <mode>network</mode> + <mtu>9212</mtu> + <lldp> + <dest-mac> + <mac-type>nearest-bridge</mac-type> + <receive>true</receive> + <transmit>true</transmit> + <tx-tlvs> + <port-desc>true</port-desc> + <sys-name>true</sys-name> + <sys-cap>true</sys-cap> + </tx-tlvs> + </dest-mac> + </lldp> + </ethernet> + </port> + <port> + <port-id>1/x1/1/c9</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-100g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c9/1</port-id> + <admin-state>enable</admin-state> + <description>PHY INFRASTRUCTURE BACKBONE P_lag-1 | DUB-DUB | to-rt1.dub-et-0/0/3</description> + <ethernet> + <mode>network</mode> + <mtu>9212</mtu> + <lldp> + <dest-mac> + <mac-type>nearest-bridge</mac-type> + <receive>true</receive> + <transmit>true</transmit> + <tx-tlvs> + <port-desc>true</port-desc> + <sys-name>true</sys-name> + <sys-cap>true</sys-cap> + </tx-tlvs> + </dest-mac> + </lldp> + </ethernet> + </port> + <port> + <port-id>1/x1/1/c13</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c13/1</port-id> + <admin-state>enable</admin-state> + <description>PHY INFRASTRUCTURE BACKBONE P_lag-7 | BIL-DUB | to-BIL-1/x1/1/c13/1</description> + <ethernet> + <mode>network</mode> + <mtu>9212</mtu> + <lldp> + <dest-mac> + <mac-type>nearest-bridge</mac-type> + <receive>true</receive> + <transmit>true</transmit> + <tx-tlvs> + <port-desc>true</port-desc> + <sys-name>true</sys-name> + <sys-cap>true</sys-cap> + </tx-tlvs> + </dest-mac> + </lldp> + </ethernet> + </port> + <port> + <port-id>1/x1/1/c14</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c16</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c18</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c19</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c20</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c22</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c24</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c25</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c26</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c27</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c31</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c32</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c34</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c10-10g</breakout> + </connector> + </port> + <port> + <port-id>1/x1/1/c34/1</port-id> + <admin-state>enable</admin-state> + <description>PHY CUSTOMER BELNET P_lag-20</description> + <ethernet> + <mode>access</mode> + <encap-type>dot1q</encap-type> + <mtu>9192</mtu> + <lldp> + <dest-mac> + <mac-type>nearest-bridge</mac-type> + <receive>true</receive> + <transmit>true</transmit> + <tx-tlvs> + <port-desc>true</port-desc> + <sys-name>true</sys-name> + <sys-cap>true</sys-cap> + </tx-tlvs> + </dest-mac> + </lldp> + </ethernet> + </port> + <port> + <port-id>1/x1/1/c34/3</port-id> + <admin-state>enable</admin-state> + <ethernet> + <mode>access</mode> + <encap-type>dot1q</encap-type> + <mtu>9212</mtu> + <lldp> + <dest-mac> + <mac-type>nearest-bridge</mac-type> + <receive>true</receive> + <transmit>true</transmit> + <tx-tlvs> + <port-desc>true</port-desc> + <sys-name>true</sys-name> + <sys-cap>true</sys-cap> + </tx-tlvs> + </dest-mac> + </lldp> + </ethernet> + </port> + <port> + <port-id>1/x1/1/c34/4</port-id> + <admin-state>enable</admin-state> + <ethernet> + <mode>access</mode> + <encap-type>dot1q</encap-type> + <mtu>9212</mtu> + <lldp> + <dest-mac> + <mac-type>nearest-bridge</mac-type> + <receive>true</receive> + <transmit>true</transmit> + <tx-tlvs> + <port-desc>true</port-desc> + <sys-name>true</sys-name> + <sys-cap>true</sys-cap> + </tx-tlvs> + </dest-mac> + </lldp> + </ethernet> + </port> + <port> + <port-id>1/x1/1/c36</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c1</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c2</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c4</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c6</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c7</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c8</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c9</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c13</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c14</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c16</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c18</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c19</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c20</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c22</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c24</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c25</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c26</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c27</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c31</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c1-400g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c32</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c4-10g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c34</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c10-10g</breakout> + </connector> + </port> + <port> + <port-id>2/x1/1/c36</port-id> + <admin-state>enable</admin-state> + <connector> + <breakout>c2-100g</breakout> + </connector> + </port> + <qos> + <network-queue> + <network-queue-policy>GEANT_BASIC</network-queue-policy> + <description>GEANT Basic QoS Queue Policy</description> + <fc> + <fc-name>be</fc-name> + <queue>1</queue> + <multicast-queue>9</multicast-queue> + </fc> + <fc> + <fc-name>h2</fc-name> + <queue>5</queue> + <multicast-queue>13</multicast-queue> + </fc> + <fc> + <fc-name>ef</fc-name> + <queue>6</queue> + <multicast-queue>14</multicast-queue> + </fc> + <fc> + <fc-name>nc</fc-name> + <queue>8</queue> + <multicast-queue>16</multicast-queue> + </fc> + <queue> + <queue-id>1</queue-id> + <cbs>1.0</cbs> + <mbs>50.0</mbs> + <rate> + <pir>100</pir> + <cir>2</cir> + </rate> + <drop-tail> + <low> + <percent-reduction-from-mbs>0</percent-reduction-from-mbs> + </low> + </drop-tail> + </queue> + <queue> + <queue-id>5</queue-id> + <cbs>10.0</cbs> + <mbs>50.0</mbs> + <rate> + <pir>100</pir> + <cir>100</cir> + </rate> + <drop-tail> + <low> + <percent-reduction-from-mbs>20</percent-reduction-from-mbs> + </low> + </drop-tail> + </queue> + <queue> + <queue-id>6</queue-id> + <cbs>3.0</cbs> + <mbs>25.0</mbs> + <rate> + <pir>100</pir> + <cir>15</cir> + </rate> + <drop-tail> + <low> + <percent-reduction-from-mbs>10</percent-reduction-from-mbs> + </low> + </drop-tail> + </queue> + <queue> + <queue-id>8</queue-id> + <cbs>3.0</cbs> + <mbs>25.0</mbs> + <rate> + <pir>100</pir> + <cir>5</cir> + </rate> + <drop-tail> + <low> + <percent-reduction-from-mbs>10</percent-reduction-from-mbs> + </low> + </drop-tail> + </queue> + <queue> + <queue-id>9</queue-id> + <multipoint>true</multipoint> + <cbs>1.0</cbs> + <mbs>50.0</mbs> + <rate> + <pir>100</pir> + <cir>2</cir> + </rate> + <drop-tail> + <low> + <percent-reduction-from-mbs>0</percent-reduction-from-mbs> + </low> + </drop-tail> + </queue> + <queue> + <queue-id>13</queue-id> + <multipoint>true</multipoint> + <cbs>10.0</cbs> + <mbs>50.0</mbs> + <rate> + <pir>100</pir> + <cir>100</cir> + </rate> + <drop-tail> + <low> + <percent-reduction-from-mbs>10</percent-reduction-from-mbs> + </low> + </drop-tail> + </queue> + <queue> + <queue-id>14</queue-id> + <multipoint>true</multipoint> + <cbs>3.0</cbs> + <mbs>25.0</mbs> + <rate> + <pir>100</pir> + <cir>15</cir> + </rate> + <drop-tail> + <low> + <percent-reduction-from-mbs>10</percent-reduction-from-mbs> + </low> + </drop-tail> + </queue> + <queue> + <queue-id>16</queue-id> + <multipoint>true</multipoint> + <cbs>3.0</cbs> + <mbs>25.0</mbs> + <rate> + <pir>100</pir> + <cir>5</cir> + </rate> + <drop-tail> + <low> + <percent-reduction-from-mbs>10</percent-reduction-from-mbs> + </low> + </drop-tail> + </queue> + </network-queue> + <network> + <network-policy-name>GEANT_BASIC</network-policy-name> + <description>GEANT Basic QoS Network Policy</description> + <policy-id>100</policy-id> + <ingress> + <default-action> + <fc>be</fc> + <profile>in</profile> + </default-action> + <dscp> + <dscp-name>ef</dscp-name> + <fc>ef</fc> + <profile>in</profile> + </dscp> + <dscp> + <dscp-name>nc1</dscp-name> + <fc>nc</fc> + <profile>in</profile> + </dscp> + <dscp> + <dscp-name>nc2</dscp-name> + <fc>nc</fc> + <profile>in</profile> + </dscp> + <lsp-exp> + <lsp-exp-value>0</lsp-exp-value> + <fc>be</fc> + <profile>out</profile> + </lsp-exp> + <lsp-exp> + <lsp-exp-value>1</lsp-exp-value> + <fc>be</fc> + <profile>in</profile> + </lsp-exp> + <lsp-exp> + <lsp-exp-value>2</lsp-exp-value> + <fc>ef</fc> + <profile>in</profile> + </lsp-exp> + <lsp-exp> + <lsp-exp-value>3</lsp-exp-value> + <fc>h2</fc> + <profile>in</profile> + </lsp-exp> + <lsp-exp> + <lsp-exp-value>4</lsp-exp-value> + <fc>be</fc> + <profile>out</profile> + </lsp-exp> + <lsp-exp> + <lsp-exp-value>5</lsp-exp-value> + <fc>be</fc> + <profile>out</profile> + </lsp-exp> + <lsp-exp> + <lsp-exp-value>6</lsp-exp-value> + <fc>nc</fc> + <profile>in</profile> + </lsp-exp> + <lsp-exp> + <lsp-exp-value>7</lsp-exp-value> + <fc>nc</fc> + <profile>out</profile> + </lsp-exp> + </ingress> + <egress> + <fc> + <fc-name>be</fc-name> + <dscp-in-profile>be</dscp-in-profile> + <dscp-out-profile>be</dscp-out-profile> + <lsp-exp-in-profile>1</lsp-exp-in-profile> + <lsp-exp-out-profile>0</lsp-exp-out-profile> + </fc> + <fc> + <fc-name>h2</fc-name> + <dscp-in-profile>af21</dscp-in-profile> + <dscp-out-profile>af22</dscp-out-profile> + <lsp-exp-in-profile>3</lsp-exp-in-profile> + <lsp-exp-out-profile>3</lsp-exp-out-profile> + </fc> + <fc> + <fc-name>ef</fc-name> + <dscp-in-profile>ef</dscp-in-profile> + <dscp-out-profile>ef</dscp-out-profile> + <lsp-exp-in-profile>2</lsp-exp-in-profile> + <lsp-exp-out-profile>2</lsp-exp-out-profile> + </fc> + <fc> + <fc-name>nc</fc-name> + <dscp-in-profile>nc1</dscp-in-profile> + <dscp-out-profile>nc1</dscp-out-profile> + <lsp-exp-in-profile>6</lsp-exp-in-profile> + <lsp-exp-out-profile>7</lsp-exp-out-profile> + </fc> + </egress> + </network> + </qos> + <redundancy> + <rollback-sync>rollback-all</rollback-sync> + </redundancy> + <router> + <router-name>Base</router-name> + <autonomous-system>20965</autonomous-system> + <ecmp>2</ecmp> + <router-id>62.40.119.10</router-id> + <interface> + <interface-name>lag-1.0</interface-name> + <admin-state>enable</admin-state> + <description>SRV_GLOBAL INFRASTRUCTURE BACKBONE #DUB-DUB-IPTRUNK $LGS-000099 | DUB-DUB | IP-TRUNK-RT0-DUB-TO-RT1-DUB</description> + <ip-mtu>9000</ip-mtu> + <port>lag-1</port> + <ipv4> + <icmp> + <ttl-expired> + <admin-state>enable</admin-state> + <number>2000</number> + <seconds>2</seconds> + </ttl-expired> + </icmp> + <primary> + <address>62.40.119.68</address> + <prefix-length>31</prefix-length> + </primary> + </ipv4> + <ipv6> + <address> + <ipv6-address>2001:799:1ab:2::9</ipv6-address> + <prefix-length>126</prefix-length> + </address> + </ipv6> + <qos> + <network-policy>GEANT_BASIC</network-policy> + </qos> + </interface> + <interface> + <interface-name>lag-2.0</interface-name> + <admin-state>enable</admin-state> + <description>SRV_GLOBAL INFRASTRUCTURE BACKBONE #DUB-LON-IPTRUNK $LGS-00022 | DUB-LON | IP-TRUNK-RT0-DUB-TO-RT0-LON</description> + <ip-mtu>9000</ip-mtu> + <port>lag-2</port> + <ipv4> + <icmp> + <ttl-expired> + <admin-state>enable</admin-state> + <number>2000</number> + <seconds>2</seconds> + </ttl-expired> + </icmp> + <primary> + <address>62.40.119.120</address> + <prefix-length>31</prefix-length> + </primary> + </ipv4> + <ipv6> + <address> + <ipv6-address>2001:799:1ab:2::81</ipv6-address> + <prefix-length>126</prefix-length> + </address> + </ipv6> + <qos> + <network-policy>GEANT_BASIC</network-policy> + </qos> + </interface> + <interface> + <interface-name>lag-7.0</interface-name> + <admin-state>enable</admin-state> + <description>SRV_GLOBAL INFRASTRUCTURE BACKBONE #BIL-DUB-IPTRUNK $LGS-00044 | BIL-DUB | IP-TRUNK-RT0-DUB-TO-RT0-BIL</description> + <ip-mtu>9000</ip-mtu> + <port>lag-7</port> + <ipv4> + <icmp> + <ttl-expired> + <admin-state>enable</admin-state> + <number>2000</number> + <seconds>2</seconds> + </ttl-expired> + </icmp> + <primary> + <address>62.40.119.109</address> + <prefix-length>31</prefix-length> + </primary> + </ipv4> + <ipv6> + <address> + <ipv6-address>2001:799:1ab:2::6a</ipv6-address> + <prefix-length>126</prefix-length> + </address> + </ipv6> + <qos> + <network-policy>GEANT_BASIC</network-policy> + </qos> + </interface> + <interface> + <interface-name>system</interface-name> + <admin-state>enable</admin-state> + <ipv4> + <primary> + <address>62.40.119.10</address> + <prefix-length>32</prefix-length> + </primary> + </ipv4> + <ipv6> + <address> + <ipv6-address>2001:799:1ab::a</ipv6-address> + <prefix-length>128</prefix-length> + </address> + </ipv6> + </interface> + <mpls-labels> + <static-label-range>9968</static-label-range> + <sr-labels> + <start>10000</start> + <end>19999</end> + </sr-labels> + </mpls-labels> + <flowspec> + <ip-filter-max-size>100</ip-filter-max-size> + <ipv6-filter-max-size>100</ipv6-filter-max-size> + </flowspec> + <bgp> + <local-as> + <as-number>20965</as-number> + </local-as> + <best-path-selection> + <compare-origin-validation-state>true</compare-origin-validation-state> + <origin-invalid-unusable>true</origin-invalid-unusable> + </best-path-selection> + <error-handling> + <update-fault-tolerance>true</update-fault-tolerance> + </error-handling> + <next-hop-resolution> + <shortcut-tunnel> + <family> + <family-type>ipv4</family-type> + <resolution>filter</resolution> + <resolution-filter> + <sr-isis>true</sr-isis> + </resolution-filter> + </family> + <family> + <family-type>ipv6</family-type> + <resolution>filter</resolution> + <resolution-filter> + <sr-isis>true</sr-isis> + </resolution-filter> + </family> + </shortcut-tunnel> + </next-hop-resolution> + <multipath> + <ebgp>2</ebgp> + <ibgp>1</ibgp> + <family> + <family-type>ipv4</family-type> + <max-paths>2</max-paths> + </family> + <family> + <family-type>ipv6</family-type> + <max-paths>2</max-paths> + </family> + </multipath> + <group> + <group-name>EGEANT</group-name> + <admin-state>enable</admin-state> + <next-hop-self>false</next-hop-self> + <type>external</type> + <family> + <ipv4>true</ipv4> + <mcast-ipv4>true</mcast-ipv4> + </family> + <ebgp-default-reject-policy> + <import>true</import> + <export>true</export> + </ebgp-default-reject-policy> + <local-as> + <as-number>20965</as-number> + </local-as> + <origin-validation> + <ipv4>true</ipv4> + </origin-validation> + <send-communities> + <extended>false</extended> + </send-communities> + <import> + <policy>BOGONS</policy> + <policy>PS_RPKI_RE_NREN</policy> + </import> + <export> + <policy>BOGONS</policy> + </export> + </group> + <group> + <group-name>EGEANT6</group-name> + <admin-state>enable</admin-state> + <next-hop-self>false</next-hop-self> + <type>external</type> + <family> + <ipv6>true</ipv6> + <mcast-ipv6>true</mcast-ipv6> + </family> + <ebgp-default-reject-policy> + <import>true</import> + <export>true</export> + </ebgp-default-reject-policy> + <local-as> + <as-number>20965</as-number> + </local-as> + <origin-validation> + <ipv6>true</ipv6> + </origin-validation> + <send-communities> + <extended>false</extended> + </send-communities> + <import> + <policy>BOGONS</policy> + <policy>PS_RPKI_RE_NREN</policy> + </import> + <export> + <policy>BOGONS</policy> + </export> + </group> + <group> + <group-name>TOOLS</group-name> + <admin-state>enable</admin-state> + <next-hop-self>true</next-hop-self> + <type>internal</type> + <peer-as>20965</peer-as> + <local-address>62.40.119.10</local-address> + <hold-time> + <seconds>180</seconds> + </hold-time> + <local-as> + <as-number>20965</as-number> + </local-as> + <import> + <policy>PS_DENY_ALL</policy> + </import> + </group> + <group> + <group-name>TOOLS6</group-name> + <admin-state>enable</admin-state> + <next-hop-self>true</next-hop-self> + <type>internal</type> + <peer-as>20965</peer-as> + <local-address>2001:799:1ab::a</local-address> + <hold-time> + <seconds>180</seconds> + </hold-time> + <local-as> + <as-number>20965</as-number> + </local-as> + <import> + <policy>PS_DENY_ALL</policy> + </import> + </group> + <group> + <group-name>iGEANT</group-name> + <admin-state>enable</admin-state> + <authentication-key>aX1kndQNDTAHyJttsnoyKZ+GjPOZBz7fLuk= hash2</authentication-key> + <vpn-apply-import>true</vpn-apply-import> + <next-hop-self>true</next-hop-self> + <type>internal</type> + <peer-as>20965</peer-as> + <capability-negotiation>true</capability-negotiation> + <local-address>62.40.119.10</local-address> + <family> + <ipv4>true</ipv4> + <vpn-ipv4>true</vpn-ipv4> + <mcast-ipv4>true</mcast-ipv4> + <vpn-ipv6>true</vpn-ipv6> + <l2-vpn>true</l2-vpn> + <flow-ipv4>true</flow-ipv4> + <flow-vpn-ipv4>true</flow-vpn-ipv4> + </family> + <import> + <policy>DEST_CLASS_USAGE</policy> + <policy>PS_RTBH_iBGP</policy> + <policy>PS_RPKI_iBGP</policy> + </import> + </group> + <group> + <group-name>iGEANT-P-ONLY</group-name> + <admin-state>enable</admin-state> + <next-hop-self>true</next-hop-self> + <type>internal</type> + <peer-as>20965</peer-as> + <capability-negotiation>true</capability-negotiation> + <local-address>62.40.119.10</local-address> + <family> + <mcast-ipv4>true</mcast-ipv4> + </family> + </group> + <group> + <group-name>iGEANT6</group-name> + <admin-state>enable</admin-state> + <authentication-key>aX1kndQNDTAHyJttsnoyKSOLQWAxUaMOr+I= hash2</authentication-key> + <vpn-apply-import>true</vpn-apply-import> + <next-hop-self>true</next-hop-self> + <type>internal</type> + <peer-as>20965</peer-as> + <capability-negotiation>true</capability-negotiation> + <local-address>2001:799:1ab::a</local-address> + <family> + <ipv6>true</ipv6> + <vpn-ipv6>true</vpn-ipv6> + <flow-ipv6>true</flow-ipv6> + <mcast-ipv6>true</mcast-ipv6> + <flow-vpn-ipv6>true</flow-vpn-ipv6> + </family> + <import> + <policy>DEST_CLASS_USAGE</policy> + <policy>PS_RTBH_iBGP</policy> + <policy>PS_RPKI_iBGP</policy> + </import> + </group> + <group> + <group-name>iGEANT6-P-ONLY</group-name> + <admin-state>enable</admin-state> + <next-hop-self>true</next-hop-self> + <type>internal</type> + <peer-as>20965</peer-as> + <capability-negotiation>true</capability-negotiation> + <local-address>2001:799:1ab::a</local-address> + <family> + <mcast-ipv6>true</mcast-ipv6> + </family> + </group> + <neighbor> + <ip-address>62.40.119.2</ip-address> + <description>rt1.ams.nl.lab.office.geant.net</description> + <group>iGEANT</group> + </neighbor> + <neighbor> + <ip-address>62.40.119.4</ip-address> + <description>rt1.dub.ie.lab.office.geant.net</description> + <group>iGEANT</group> + </neighbor> + <neighbor> + <ip-address>62.40.119.5</ip-address> + <description>rt1.lon.uk.lab.office.geant.net</description> + <group>iGEANT</group> + </neighbor> + <neighbor> + <ip-address>62.40.119.6</ip-address> + <description>rt0.ams.nl.lab.office.geant.net</description> + <group>iGEANT</group> + </neighbor> + <neighbor> + <ip-address>62.40.119.7</ip-address> + <description>rt0.lon.uk.lab.office.geant.net</description> + <group>iGEANT</group> + </neighbor> + <neighbor> + <ip-address>62.40.119.8</ip-address> + <description>rt0.ath.gr.lab.office.geant.net</description> + <group>iGEANT</group> + </neighbor> + <neighbor> + <ip-address>62.40.119.9</ip-address> + <description>rt0.bil.es.lab.office.geant.net</description> + <group>iGEANT</group> + </neighbor> + <neighbor> + <ip-address>62.40.127.135</ip-address> + <admin-state>enable</admin-state> + <description>-- Peering with BELNET --</description> + <group>EGEANT</group> + <authentication-key>eSBBmrbmC8Rfk1z6DOabb1z2fMwuBYZB5EMdbHl5We7FgaTS hash2</authentication-key> + <local-address>62.40.127.134</local-address> + <peer-as>2611</peer-as> + <family> + <ipv4>true</ipv4> + <mcast-ipv4>true</mcast-ipv4> + </family> + <import> + <policy>BOGONS</policy> + <policy>PS_RPKI_RE_NREN</policy> + <policy>PS_FROM_BELNET_NREN_V4</policy> + </import> + <export> + <policy>BOGONS</policy> + <policy>PS_TO_BELNET_NREN_V4</policy> + </export> + </neighbor> + <neighbor> + <ip-address>83.97.93.247</ip-address> + <description>EARL Netflow/BGP feed VM</description> + <group>TOOLS</group> + <family> + <ipv4>true</ipv4> + <vpn-ipv4>true</vpn-ipv4> + <mcast-ipv4>true</mcast-ipv4> + </family> + </neighbor> + <neighbor> + <ip-address>208.76.14.223</ip-address> + <description>Kentik US_LAB-only</description> + <group>TOOLS</group> + <authentication-key>8DITvS0aXZJy6DgWlFupnz93Dk6r1SOyfEP6gzZxyg== hash2</authentication-key> + <hold-time> + <seconds>720</seconds> + </hold-time> + <family> + <ipv4>true</ipv4> + <vpn-ipv4>true</vpn-ipv4> + </family> + <cluster> + <cluster-id>62.40.119.10</cluster-id> + </cluster> + </neighbor> + <neighbor> + <ip-address>2001:798:3::1de</ip-address> + <description>EARL Netflow/BGP feed VM</description> + <group>TOOLS6</group> + <family> + <ipv6>true</ipv6> + <vpn-ipv6>true</vpn-ipv6> + <mcast-ipv6>true</mcast-ipv6> + </family> + </neighbor> + <neighbor> + <ip-address>2001:798:22::2</ip-address> + <admin-state>enable</admin-state> + <description>-- IPv6 Peering with BELNET --</description> + <group>EGEANT6</group> + <authentication-key>eSBBmrbmC8Rfk1z6DOabb3jzSTJ6KlDTAiuDdVbrTxHMMTyz hash2</authentication-key> + <local-address>2001:798:22::1</local-address> + <peer-as>2611</peer-as> + <family> + <ipv6>true</ipv6> + <mcast-ipv6>true</mcast-ipv6> + </family> + <import> + <policy>BOGONS</policy> + <policy>PS_RPKI_RE_NREN</policy> + <policy>PS_FROM_BELNET_NREN_V6</policy> + </import> + <export> + <policy>BOGONS</policy> + <policy>PS_TO_BELNET_NREN_V6</policy> + </export> + </neighbor> + <neighbor> + <ip-address>2001:799:1ab::2</ip-address> + <description>rt1.ams.nl.lab.office.geant.net</description> + <group>iGEANT6</group> + </neighbor> + <neighbor> + <ip-address>2001:799:1ab::4</ip-address> + <description>rt1.dub.ie.lab.office.geant.net</description> + <group>iGEANT6</group> + </neighbor> + <neighbor> + <ip-address>2001:799:1ab::5</ip-address> + <description>rt1.lon.uk.lab.office.geant.net</description> + <group>iGEANT6</group> + </neighbor> + <neighbor> + <ip-address>2001:799:1ab::6</ip-address> + <description>rt0.ams.nl.lab.office.geant.net</description> + <group>iGEANT6</group> + </neighbor> + <neighbor> + <ip-address>2001:799:1ab::7</ip-address> + <description>rt0.lon.uk.lab.office.geant.net</description> + <group>iGEANT6</group> + </neighbor> + <neighbor> + <ip-address>2001:799:1ab::8</ip-address> + <description>rt0.ath.gr.lab.office.geant.net</description> + <group>iGEANT6</group> + </neighbor> + <neighbor> + <ip-address>2001:799:1ab::9</ip-address> + <description>rt0.bil.es.lab.office.geant.net</description> + <group>iGEANT6</group> + </neighbor> + <neighbor> + <ip-address>2620:129:1:2::1</ip-address> + <description>Kentik US-LAB-only</description> + <group>TOOLS6</group> + <authentication-key>8DITvS0aXZJy6DgWlFupn6F/s39Ts8wKbIS7VkNkkw== hash2</authentication-key> + <hold-time> + <seconds>720</seconds> + </hold-time> + <family> + <ipv6>true</ipv6> + <vpn-ipv6>true</vpn-ipv6> + </family> + <cluster> + <cluster-id>62.40.119.10</cluster-id> + </cluster> + </neighbor> + </bgp> + <isis> + <isis-instance>0</isis-instance> + <admin-state>enable</admin-state> + <advertise-router-capability>as</advertise-router-capability> + <ldp-sync>false</ldp-sync> + <ipv6-routing>native</ipv6-routing> + <level-capability>2</level-capability> + <router-id>62.40.119.10</router-id> + <system-id>0620.4011.9010</system-id> + <traffic-engineering>true</traffic-engineering> + <area-address>49.51e5.0001</area-address> + <overload-on-boot> + <timeout>300</timeout> + </overload-on-boot> + <loopfree-alternate> + <ti-lfa> + <node-protect> + </node-protect> + </ti-lfa> + </loopfree-alternate> + <segment-routing> + <admin-state>enable</admin-state> + <tunnel-table-pref>8</tunnel-table-pref> + <prefix-sid-range> + <global/> + </prefix-sid-range> + </segment-routing> + <interface> + <interface-name>lag-1.0</interface-name> + <admin-state>enable</admin-state> + <interface-type>point-to-point</interface-type> + <level-capability>2</level-capability> + <level> + <level-number>2</level-number> + <metric>5</metric> + </level> + </interface> + <interface> + <interface-name>lag-2.0</interface-name> + <admin-state>enable</admin-state> + <interface-type>point-to-point</interface-type> + <level-capability>2</level-capability> + <level> + <level-number>2</level-number> + <metric>2100</metric> + </level> + </interface> + <interface> + <interface-name>lag-7.0</interface-name> + <admin-state>enable</admin-state> + <interface-type>point-to-point</interface-type> + <level-capability>2</level-capability> + <level> + <level-number>2</level-number> + <metric>11000</metric> + </level> + </interface> + <interface> + <interface-name>system</interface-name> + <admin-state>enable</admin-state> + <passive>true</passive> + <ipv4-node-sid> + <index>4010</index> + </ipv4-node-sid> + <ipv6-node-sid> + <index>6010</index> + </ipv6-node-sid> + </interface> + <level> + <level-number>2</level-number> + <wide-metrics-only>true</wide-metrics-only> + </level> + </isis> + <ldp> + <admin-state>enable</admin-state> + <targeted-session> + <sdp-auto-targeted-session>true</sdp-auto-targeted-session> + </targeted-session> + </ldp> + <mpls> + <admin-state>enable</admin-state> + <interface> + <interface-name>lag-1.0</interface-name> + </interface> + <interface> + <interface-name>lag-2.0</interface-name> + </interface> + <interface> + <interface-name>lag-7.0</interface-name> + </interface> + <interface> + <interface-name>system</interface-name> + </interface> + </mpls> + <origin-validation> + <rpki-session> + <ip-address>83.97.94.48</ip-address> + <admin-state>enable</admin-state> + <connect-retry>30</connect-retry> + <local-address>62.40.119.10</local-address> + <port>3323</port> + <stale-time>3600</stale-time> + </rpki-session> + <rpki-session> + <ip-address>83.97.94.49</ip-address> + <admin-state>enable</admin-state> + <connect-retry>30</connect-retry> + <local-address>62.40.119.10</local-address> + <port>3323</port> + <stale-time>3600</stale-time> + </rpki-session> + </origin-validation> + <pim> + <ipv4> + <admin-state>enable</admin-state> + <rpf-table>rtable-m</rpf-table> + </ipv4> + <ipv6> + <admin-state>enable</admin-state> + <rpf-table>rtable-m</rpf-table> + </ipv6> + <interface> + <interface-name>lag-1.0</interface-name> + </interface> + <interface> + <interface-name>lag-2.0</interface-name> + </interface> + <interface> + <interface-name>lag-7.0</interface-name> + </interface> + <interface> + <interface-name>lag-20.2402</interface-name> + <admin-state>enable</admin-state> + <ipv4> + <multicast>true</multicast> + </ipv4> + <ipv6> + <multicast>true</multicast> + </ipv6> + </interface> + <interface> + <interface-name>system</interface-name> + </interface> + <rp> + <ipv4> + <bsr-candidate> + <admin-state>disable</admin-state> + </bsr-candidate> + </ipv4> + <ipv6> + <bsr-candidate> + <admin-state>disable</admin-state> + </bsr-candidate> + <embedded-rp> + <admin-state>enable</admin-state> + </embedded-rp> + </ipv6> + </rp> + </pim> + <rsvp> + <admin-state>enable</admin-state> + <interface> + <interface-name>lag-1.0</interface-name> + </interface> + <interface> + <interface-name>lag-2.0</interface-name> + </interface> + <interface> + <interface-name>lag-7.0</interface-name> + </interface> + <interface> + <interface-name>system</interface-name> + </interface> + </rsvp> + <static-routes> + <route> + <ip-prefix>62.40.96.0/19</ip-prefix> + <route-type>unicast</route-type> + <community>20965:155</community> + <community>20965:65532</community> + <community>20965:65533</community> + <community>64700:65532</community> + <community>64700:65533</community> + <community>64700:65534</community> + <blackhole> + <admin-state>enable</admin-state> + </blackhole> + </route> + <route> + <ip-prefix>192.0.2.101/32</ip-prefix> + <route-type>unicast</route-type> + <blackhole> + <admin-state>enable</admin-state> + <description>Used for RTBH GLOBAL</description> + </blackhole> + </route> + <route> + <ip-prefix>100::/64</ip-prefix> + <route-type>unicast</route-type> + <blackhole> + <admin-state>enable</admin-state> + <description>Used for RTBH GLOBAL V6</description> + </blackhole> + </route> + <route> + <ip-prefix>2001:798::/32</ip-prefix> + <route-type>unicast</route-type> + <community>20965:155</community> + <community>20965:65532</community> + <community>20965:65533</community> + <community>64700:65532</community> + <community>64700:65533</community> + <community>64700:65534</community> + <blackhole> + <admin-state>enable</admin-state> + </blackhole> + </route> + <route> + <ip-prefix>2001:799::/32</ip-prefix> + <route-type>unicast</route-type> + <community>20965:155</community> + <community>20965:65532</community> + <community>20965:65533</community> + <community>64700:65532</community> + <community>64700:65533</community> + <community>64700:65534</community> + <blackhole> + <admin-state>enable</admin-state> + </blackhole> + </route> + </static-routes> + <twamp-light> + <reflector> + <admin-state>enable</admin-state> + <udp-port>64364</udp-port> + <prefix> + <ip-prefix>62.40.119.64/26</ip-prefix> + </prefix> + </reflector> + </twamp-light> + </router> + <routing-options> + <policy-accounting> + <policy-acct-template> + <name>GEANT_DEST_CLASS_POL_TEMPLATE_01</name> + <destination-class> + <index>1</index> + </destination-class> + <destination-class> + <index>2</index> + </destination-class> + <destination-class> + <index>3</index> + </destination-class> + </policy-acct-template> + </policy-accounting> + </routing-options> + <service> + <md-auto-id> + <service-id-range> + <start>10001</start> + <end>19999</end> + </service-id-range> + </md-auto-id> + <epipe> + <service-name>GEANT_EPIPE_400315013</service-name> + <admin-state>enable</admin-state> + <description>SRV_GCS Customer BELNET MICROSOFT #BELNET-STAD-EXPRESSROUTE $GS-02245</description> + <service-id>123456</service-id> + <customer>1</customer> + <vpn-id>98765</vpn-id> + <service-mtu>9114</service-mtu> + <ignore-l2vpn-mtu-mismatch>false</ignore-l2vpn-mtu-mismatch> + <spoke-sdp> + <sdp-bind-id>921:123456</sdp-bind-id> + <admin-state>enable</admin-state> + <control-word>true</control-word> + <vc-type>ether</vc-type> + <pw-status> + <signaling>true</signaling> + </pw-status> + </spoke-sdp> + <sap> + <sap-id>lag-123:456</sap-id> + <admin-state>enable</admin-state> + </sap> + </epipe> + <ies> + <service-name>GEANT_GLOBAL</service-name> + <admin-state>enable</admin-state> + <description>GEANT-IP Global RE service</description> + <service-id>20965</service-id> + <customer>1</customer> + <interface> + <interface-name>lag-20.2402</interface-name> + <description>SRV_GLOBAL CUSTOMER BELNET ##BELNET-AP1 $GS-00437 | ASN2611 | </description> + <ip-mtu>9000</ip-mtu> + <cflowd-parameters> + <sampling> + <sampling-type>unicast</sampling-type> + <type>interface</type> + <direction>ingress-only</direction> + <sample-profile>1</sample-profile> + </sampling> + </cflowd-parameters> + <sap> + <sap-id>lag-20:2402</sap-id> + <admin-state>enable</admin-state> + <ingress> + <filter> + <ip>BELNET_EDGE_IN</ip> + <ipv6>BELNET_EDGE_IN_V6</ipv6> + </filter> + </ingress> + <egress> + <filter> + <ip>BELNET_EDGE_OUT</ip> + <ipv6>BELNET_EDGE_OUT_V6</ipv6> + </filter> + </egress> + </sap> + <ipv4> + <primary> + <address>62.40.127.134</address> + <prefix-length>31</prefix-length> + </primary> + </ipv4> + <ipv6> + <address> + <ipv6-address>2001:798:22::1</ipv6-address> + <prefix-length>126</prefix-length> + </address> + </ipv6> + </interface> + </ies> + <sdp> + <sdp-id>921</sdp-id> + <admin-state>enable</admin-state> + <description>SDP_921</description> + <delivery-type>mpls</delivery-type> + <path-mtu>9200</path-mtu> + <signaling>tldp</signaling> + <sr-isis>true</sr-isis> + <far-end> + <ip-address>62.40.119.2</ip-address> + </far-end> + </sdp> + <sdp> + <sdp-id>931</sdp-id> + <admin-state>enable</admin-state> + <description>SDP_931</description> + <delivery-type>mpls</delivery-type> + <path-mtu>9200</path-mtu> + <signaling>tldp</signaling> + <sr-isis>true</sr-isis> + <far-end> + <ip-address>62.40.119.3</ip-address> + </far-end> + </sdp> + <sdp> + <sdp-id>941</sdp-id> + <admin-state>enable</admin-state> + <description>SDP_941</description> + <delivery-type>mpls</delivery-type> + <path-mtu>9200</path-mtu> + <signaling>tldp</signaling> + <sr-isis>true</sr-isis> + <far-end> + <ip-address>62.40.119.4</ip-address> + </far-end> + </sdp> + <sdp> + <sdp-id>951</sdp-id> + <admin-state>enable</admin-state> + <description>SDP_951</description> + <delivery-type>mpls</delivery-type> + <path-mtu>9200</path-mtu> + <signaling>tldp</signaling> + <sr-isis>true</sr-isis> + <far-end> + <ip-address>62.40.119.5</ip-address> + </far-end> + </sdp> + <sdp> + <sdp-id>961</sdp-id> + <admin-state>enable</admin-state> + <description>SDP_961</description> + <delivery-type>mpls</delivery-type> + <path-mtu>9200</path-mtu> + <signaling>tldp</signaling> + <sr-isis>true</sr-isis> + <far-end> + <ip-address>62.40.119.6</ip-address> + </far-end> + </sdp> + <sdp> + <sdp-id>971</sdp-id> + <admin-state>enable</admin-state> + <description>SDP_971</description> + <delivery-type>mpls</delivery-type> + <path-mtu>9200</path-mtu> + <signaling>tldp</signaling> + <sr-isis>true</sr-isis> + <far-end> + <ip-address>62.40.119.7</ip-address> + </far-end> + </sdp> + <sdp> + <sdp-id>981</sdp-id> + <admin-state>enable</admin-state> + <description>SDP_981</description> + <delivery-type>mpls</delivery-type> + <path-mtu>9200</path-mtu> + <signaling>tldp</signaling> + <sr-isis>true</sr-isis> + <far-end> + <ip-address>62.40.119.8</ip-address> + </far-end> + </sdp> + <sdp> + <sdp-id>991</sdp-id> + <admin-state>enable</admin-state> + <description>SDP_991</description> + <delivery-type>mpls</delivery-type> + <path-mtu>9200</path-mtu> + <signaling>tldp</signaling> + <sr-isis>true</sr-isis> + <far-end> + <ip-address>62.40.119.9</ip-address> + </far-end> + </sdp> + <vprn> + <service-name>IAS</service-name> + <admin-state>enable</admin-state> + <description>GEANT IAS Internet VRF</description> + <service-id>21320</service-id> + <customer>1</customer> + <autonomous-system>21320</autonomous-system> + <ecmp>2</ecmp> + <bgp-ipvpn> + <mpls> + <admin-state>enable</admin-state> + <route-distinguisher>20965:333</route-distinguisher> + <vrf-target> + <community>target:20965:333</community> + </vrf-target> + <auto-bind-tunnel> + <resolution>filter</resolution> + <resolution-filter> + <sr-isis>true</sr-isis> + </resolution-filter> + </auto-bind-tunnel> + </mpls> + </bgp-ipvpn> + <bgp> + <description>IAS</description> + <family> + <ipv4>true</ipv4> + <ipv6>true</ipv6> + </family> + <best-path-selection> + <compare-origin-validation-state>true</compare-origin-validation-state> + <origin-invalid-unusable>true</origin-invalid-unusable> + </best-path-selection> + <error-handling> + <update-fault-tolerance>true</update-fault-tolerance> + </error-handling> + <multipath> + <ebgp>2</ebgp> + <ibgp>1</ibgp> + <family> + <family-type>ipv4</family-type> + <max-paths>2</max-paths> + </family> + <family> + <family-type>ipv6</family-type> + <max-paths>2</max-paths> + </family> + </multipath> + <group> + <group-name>GEANT_NRENS</group-name> + <admin-state>enable</admin-state> + <type>external</type> + <bfd-liveness>true</bfd-liveness> + <family> + <ipv4>true</ipv4> + </family> + <ebgp-default-reject-policy> + <import>true</import> + <export>true</export> + </ebgp-default-reject-policy> + <local-as> + <as-number>21320</as-number> + <prepend-global-as>false</prepend-global-as> + </local-as> + <send-communities> + <extended>false</extended> + </send-communities> + <import> + <policy>PS_RPKI_IAS_NREN</policy> + <policy>BOGONS</policy> + <policy>PS_PRIVATE_AS_BLOCK</policy> + </import> + <export> + <policy>BOGONS</policy> + <policy>PS_PRIVATE_AS_BLOCK</policy> + </export> + </group> + <group> + <group-name>GEANT_NRENS6</group-name> + <admin-state>enable</admin-state> + <type>external</type> + <bfd-liveness>true</bfd-liveness> + <family> + <ipv6>true</ipv6> + </family> + <ebgp-default-reject-policy> + <import>true</import> + <export>true</export> + </ebgp-default-reject-policy> + <local-as> + <as-number>21320</as-number> + <prepend-global-as>false</prepend-global-as> + </local-as> + <send-communities> + <extended>false</extended> + </send-communities> + <import> + <policy>PS_RPKI_IAS_NREN</policy> + <policy>BOGONS</policy> + <policy>PS_PRIVATE_AS_BLOCK</policy> + </import> + <export> + <policy>BOGONS</policy> + <policy>PS_PRIVATE_AS_BLOCK</policy> + </export> + </group> + <group> + <group-name>GEANT_PEERS</group-name> + <admin-state>enable</admin-state> + <type>external</type> + <bfd-liveness>true</bfd-liveness> + <family> + <ipv4>true</ipv4> + </family> + <ebgp-default-reject-policy> + <import>true</import> + <export>true</export> + </ebgp-default-reject-policy> + <local-as> + <as-number>21320</as-number> + <prepend-global-as>false</prepend-global-as> + </local-as> + <send-communities> + <extended>false</extended> + </send-communities> + <import> + <policy>PS_RPKI_IAS_PEER</policy> + <policy>BOGONS</policy> + <policy>PS_PRIVATE_AS_BLOCK</policy> + </import> + <export> + <policy>BOGONS</policy> + <policy>PS_PRIVATE_AS_BLOCK</policy> + </export> + </group> + <group> + <group-name>GEANT_PEERS6</group-name> + <admin-state>enable</admin-state> + <type>external</type> + <bfd-liveness>true</bfd-liveness> + <family> + <ipv6>true</ipv6> + </family> + <ebgp-default-reject-policy> + <import>true</import> + <export>true</export> + </ebgp-default-reject-policy> + <local-as> + <as-number>21320</as-number> + <prepend-global-as>false</prepend-global-as> + </local-as> + <send-communities> + <extended>false</extended> + </send-communities> + <import> + <policy>PS_RPKI_IAS_PEER</policy> + <policy>BOGONS</policy> + <policy>PS_PRIVATE_AS_BLOCK</policy> + </import> + <export> + <policy>BOGONS</policy> + <policy>PS_PRIVATE_AS_BLOCK</policy> + </export> + </group> + <neighbor> + <ip-address>83.97.90.2</ip-address> + <admin-state>enable</admin-state> + <description>-- Peering with BELNET --</description> + <group>GEANT_NRENS</group> + <local-address>83.97.90.1</local-address> + <peer-as>2611</peer-as> + <family> + <ipv4>true</ipv4> + </family> + <local-as> + <as-number>21320</as-number> + </local-as> + <import> + <policy>PS_AS_SELF_REJECT</policy> + <policy>BOGONS</policy> + <policy>PS_RPKI_IAS_NREN</policy> + <policy>PS_GLOBAL_ANYCAST_IAS</policy> + <policy>PS_IAS_FROM_BELNET_NREN_V4</policy> + </import> + <export> + <policy>BOGONS</policy> + <policy>PS_IAS_TO_BELNET_NREN_V4</policy> + </export> + <prefix-limit> + <family>ipv4</family> + <maximum>125000</maximum> + </prefix-limit> + </neighbor> + <neighbor> + <ip-address>2001:798:1:3::2</ip-address> + <admin-state>enable</admin-state> + <description>-- IPv6 Peering with BELNET --</description> + <group>GEANT_NRENS6</group> + <local-address>2001:798:1:3::1</local-address> + <peer-as>2611</peer-as> + <family> + <ipv6>true</ipv6> + </family> + <local-as> + <as-number>21320</as-number> + </local-as> + <import> + <policy>PS_AS_SELF_REJECT</policy> + <policy>BOGONS</policy> + <policy>PS_RPKI_IAS_NREN</policy> + <policy>PS_GLOBAL_ANYCAST_IAS</policy> + <policy>PS_IAS_FROM_BELNET_NREN_V6</policy> + </import> + <export> + <policy>BOGONS</policy> + <policy>PS_IAS_TO_BELNET_NREN_V6</policy> + </export> + <prefix-limit> + <family>ipv6</family> + <maximum>125000</maximum> + </prefix-limit> + </neighbor> + </bgp> + <interface> + <interface-name>lag-20.3333</interface-name> + <description>SRV_L3VPN CUSTOMER BELNET #BELNET-AP1-IAS $GS-00524 | ASN2611 | </description> + <ip-mtu>1500</ip-mtu> + <cflowd-parameters> + <sampling> + <sampling-type>unicast</sampling-type> + <type>interface</type> + <direction>ingress-only</direction> + <sample-profile>1</sample-profile> + </sampling> + </cflowd-parameters> + <ipv4> + <primary> + <address>83.97.90.1</address> + <prefix-length>30</prefix-length> + </primary> + </ipv4> + <sap> + <sap-id>lag-20:3333</sap-id> + <admin-state>enable</admin-state> + <ingress> + <filter> + <ip>IAS_BELNET_IN</ip> + <ipv6>IAS_BELNET_IN_V6</ipv6> + </filter> + </ingress> + <egress> + <filter> + <ip>IAS_BELNET_OUT</ip> + <ipv6>IAS_BELNET_OUT_V6</ipv6> + </filter> + </egress> + </sap> + <ipv6> + <address> + <ipv6-address>2001:798:1:3::1</ipv6-address> + <prefix-length>126</prefix-length> + </address> + </ipv6> + </interface> + <static-routes> + <route> + <ip-prefix>0.0.0.0/0</ip-prefix> + <route-type>unicast</route-type> + <blackhole> + <admin-state>enable</admin-state> + </blackhole> + </route> + <route> + <ip-prefix>83.97.88.0/21</ip-prefix> + <route-type>unicast</route-type> + <community>21320:64912</community> + <community>64700:65532</community> + <community>64700:65533</community> + <community>64700:65534</community> + <blackhole> + <admin-state>enable</admin-state> + </blackhole> + </route> + <route> + <ip-prefix>192.0.2.101/32</ip-prefix> + <route-type>unicast</route-type> + <blackhole> + <admin-state>enable</admin-state> + </blackhole> + </route> + <route> + <ip-prefix>::/0</ip-prefix> + <route-type>unicast</route-type> + <blackhole> + <admin-state>enable</admin-state> + </blackhole> + </route> + <route> + <ip-prefix>100::/64</ip-prefix> + <route-type>unicast</route-type> + <blackhole> + <admin-state>enable</admin-state> + </blackhole> + </route> + <route> + <ip-prefix>2001:798:1::/48</ip-prefix> + <route-type>unicast</route-type> + <community>21320:64912</community> + <blackhole> + <admin-state>enable</admin-state> + </blackhole> + </route> + </static-routes> + <flowspec> + <ip-filter-max-size>100</ip-filter-max-size> + <ipv6-filter-max-size>100</ipv6-filter-max-size> + </flowspec> + </vprn> + </service> + <sfm> + <sfm-slot>1</sfm-slot> + <admin-state>enable</admin-state> + <sfm-type>sfm-2se</sfm-type> + </sfm> + <sfm> + <sfm-slot>4</sfm-slot> + <admin-state>enable</admin-state> + <sfm-type>sfm-2se</sfm-type> + </sfm> + <system> + <contact>GEANT OC, support@oc.geant.net, +44 (0) 1223 733033</contact> + <name>rt0.dub.ie</name> + <location>Dublin,Ireland,[53.29025463849949,-6.4207320574310165]</location> + <load-balancing> + <l4-load-balancing>true</l4-load-balancing> + <lsr-load-balancing>lbl-ip-l4-teid</lsr-load-balancing> + <system-ip-load-balancing>true</system-ip-load-balancing> + </load-balancing> + <grpc> + <admin-state>enable</admin-state> + <allow-unsecure-connection/> + <gnmi> + <auto-config-save>true</auto-config-save> + </gnmi> + </grpc> + <management-interface> + <configuration-mode>model-driven</configuration-mode> + <cli> + <md-cli> + <auto-config-save>true</auto-config-save> + </md-cli> + </cli> + <configuration-save> + <configuration-backups>5</configuration-backups> + <incremental-saves>false</incremental-saves> + </configuration-save> + <netconf> + <admin-state>enable</admin-state> + <auto-config-save>true</auto-config-save> + </netconf> + <yang-modules> + <nokia-submodules>true</nokia-submodules> + <nokia-combined-modules>false</nokia-combined-modules> + </yang-modules> + <snmp> + <admin-state>enable</admin-state> + </snmp> + </management-interface> + <power-management> + <power-zone>1</power-zone> + <mode>none</mode> + <power-safety-level>67</power-safety-level> + </power-management> + <bluetooth> + <advertising-timeout>30</advertising-timeout> + </bluetooth> + <login-control> + <motd> + <text>--------------------------------------------------------------------------------------------------\nThis is rt0.dub.ie.lab.office.geant.net, a GEANT Router in Dublin, Ireland\nWarning Unauthorized access to this equipment is strictly forbidden and will lead to prosecution\n--------------------------------------------------------------------------------------------------\n</text> + </motd> + <pre-login-message> + <message>---------------------------------------------------------\nUnauthorized access to this system/network is prohibited.\n---------------------------------------------------------\n</message> + </pre-login-message> + <ssh> + <inbound-max-sessions>15</inbound-max-sessions> + </ssh> + </login-control> + <security> + <dist-cpu-protection> + <policy> + <policy-name>EDGE_PROTECT</policy-name> + <type>access-network</type> + <protocol> + <protocol-name>arp</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <protocol> + <protocol-name>icmp</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <protocol> + <protocol-name>igmp</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <protocol> + <protocol-name>mld</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <protocol> + <protocol-name>all-unspecified</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <protocol> + <protocol-name>mpls-ttl</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <protocol> + <protocol-name>bfd-cpm</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <protocol> + <protocol-name>pim</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <protocol> + <protocol-name>rsvp</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <protocol> + <protocol-name>icmp-ping-check</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <protocol> + <protocol-name>vrrp</protocol-name> + <enforcement> + <dynamic> + <mon-policer-name>DYNAMIC_PROTECT</mon-policer-name> + </dynamic> + </enforcement> + </protocol> + <local-monitoring-policer> + <policer-name>DYNAMIC_PROTECT</policer-name> + <exceed-action>discard</exceed-action> + <rate> + <packets> + <limit>1000</limit> + <within>1</within> + </packets> + </rate> + </local-monitoring-policer> + </policy> + <policy> + <policy-name>_default-network-policy</policy-name> + <protocol> + <protocol-name>icmp</protocol-name> + <enforcement> + <static> + <policer-name>ICMP_LIMIT</policer-name> + </static> + </enforcement> + </protocol> + <static-policer> + <policer-name>ICMP_LIMIT</policer-name> + <exceed-action> + <action>discard</action> + </exceed-action> + <rate> + <kbps> + <limit>10000</limit> + <mbs>100</mbs> + </kbps> + </rate> + </static-policer> + </policy> + </dist-cpu-protection> + <source-address> + <ipv4> + <application>radius</application> + <interface-name>system</interface-name> + </ipv4> + <ipv4> + <application>snmptrap</application> + <interface-name>system</interface-name> + </ipv4> + <ipv4> + <application>syslog</application> + <interface-name>system</interface-name> + </ipv4> + <ipv4> + <application>dns</application> + <interface-name>system</interface-name> + </ipv4> + <ipv4> + <application>ntp</application> + <interface-name>system</interface-name> + </ipv4> + <ipv4> + <application>cflowd</application> + <interface-name>system</interface-name> + </ipv4> + </source-address> + <aaa> + <health-check>none</health-check> + <remote-servers> + <radius> + <authorization>true</authorization> + <server> + <index>1</index> + <address>83.97.94.130</address> + <secret>oYneem3baL16yGOeqRnqCy4vY31EW5azKXZ2s/tL6ywyw9GU hash2</secret> + </server> + <server> + <index>2</index> + <address>83.97.94.129</address> + <secret>oYneem3baL16yGOeqRnqC7OH+f/iW/z+dGseiBhyD7zynDWM hash2</secret> + </server> + </radius> + </remote-servers> + <local-profiles> + <profile> + <user-profile-name>GOC</user-profile-name> + <default-action>permit-all</default-action> + </profile> + <profile> + <user-profile-name>administrative</user-profile-name> + <default-action>permit-all</default-action> + <entry> + <entry-id>10</entry-id> + <match>configure system security</match> + <action>permit</action> + </entry> + <entry> + <entry-id>20</entry-id> + <match>show system security</match> + <action>permit</action> + </entry> + <entry> + <entry-id>30</entry-id> + <match>tools perform security</match> + <action>permit</action> + </entry> + <entry> + <entry-id>40</entry-id> + <match>tools dump security</match> + <action>permit</action> + </entry> + <entry> + <entry-id>50</entry-id> + <match>admin system security</match> + <action>permit</action> + </entry> + <entry> + <entry-id>60</entry-id> + <match>configure li</match> + <action>deny</action> + </entry> + <entry> + <entry-id>70</entry-id> + <match>show li</match> + <action>deny</action> + </entry> + <entry> + <entry-id>80</entry-id> + <match>clear li</match> + <action>deny</action> + </entry> + <entry> + <entry-id>90</entry-id> + <match>tools dump li</match> + <action>deny</action> + </entry> + <netconf> + <base-op-authorization> + <action>true</action> + <cancel-commit>true</cancel-commit> + <close-session>true</close-session> + <commit>true</commit> + <copy-config>true</copy-config> + <create-subscription>true</create-subscription> + <delete-config>true</delete-config> + <discard-changes>true</discard-changes> + <edit-config>true</edit-config> + <get>true</get> + <get-config>true</get-config> + <get-data>true</get-data> + <get-schema>true</get-schema> + <kill-session>true</kill-session> + <lock>true</lock> + <validate>true</validate> + </base-op-authorization> + </netconf> + </profile> + <profile> + <user-profile-name>config_backup</user-profile-name> + <default-action>deny-all</default-action> + <entry> + <entry-id>10</entry-id> + <match>logout</match> + <action>permit</action> + </entry> + <entry> + <entry-id>20</entry-id> + <match>show system information</match> + <action>permit</action> + </entry> + <entry> + <entry-id>30</entry-id> + <match>show log</match> + <action>permit</action> + </entry> + <entry> + <entry-id>40</entry-id> + <match>show card state</match> + <action>permit</action> + </entry> + <entry> + <entry-id>50</entry-id> + <match>show chassis</match> + <action>permit</action> + </entry> + <entry> + <entry-id>60</entry-id> + <match>file show</match> + <action>permit</action> + </entry> + <entry> + <entry-id>70</entry-id> + <match>admin show configuration bof</match> + <action>permit</action> + </entry> + <entry> + <entry-id>80</entry-id> + <match>admin show configuration configure</match> + <action>permit</action> + </entry> + <entry> + <entry-id>90</entry-id> + <match>admin show configuration debug</match> + <action>permit</action> + </entry> + <entry> + <entry-id>100</entry-id> + <match>environment more</match> + <action>permit</action> + </entry> + <entry> + <entry-id>110</entry-id> + <match>admin show configuration</match> + <action>permit</action> + </entry> + <entry> + <entry-id>120</entry-id> + <match>show mda detail</match> + <action>permit</action> + </entry> + <entry> + <entry-id>130</entry-id> + <match>show card detail</match> + <action>permit</action> + </entry> + <entry> + <entry-id>140</entry-id> + <match>show port</match> + <action>permit</action> + </entry> + <entry> + <entry-id>150</entry-id> + <match>show system management-interface commit-history</match> + <action>permit</action> + </entry> + <entry> + <entry-id>160</entry-id> + <match>show redundancy synchronization</match> + <action>permit</action> + </entry> + <entry> + <entry-id>170</entry-id> + <match>show version</match> + <action>permit</action> + </entry> + <entry> + <entry-id>180</entry-id> + <match>show system alarms</match> + <action>permit</action> + </entry> + <entry> + <entry-id>190</entry-id> + <match>show system license</match> + <action>permit</action> + </entry> + <entry> + <entry-id>200</entry-id> + <match>show debug</match> + <action>permit</action> + </entry> + <entry> + <entry-id>210</entry-id> + <match>show bof booted</match> + <action>permit</action> + </entry> + </profile> + <profile> + <user-profile-name>default</user-profile-name> + <entry> + <entry-id>10</entry-id> + <match>exec</match> + <action>permit</action> + </entry> + <entry> + <entry-id>20</entry-id> + <match>exit</match> + <action>permit</action> + </entry> + <entry> + <entry-id>30</entry-id> + <match>help</match> + <action>permit</action> + </entry> + <entry> + <entry-id>40</entry-id> + <match>logout</match> + <action>permit</action> + </entry> + <entry> + <entry-id>50</entry-id> + <match>password</match> + <action>permit</action> + </entry> + <entry> + <entry-id>60</entry-id> + <match>show config</match> + <action>deny</action> + </entry> + <entry> + <entry-id>65</entry-id> + <match>show li</match> + <action>deny</action> + </entry> + <entry> + <entry-id>66</entry-id> + <match>clear li</match> + <action>deny</action> + </entry> + <entry> + <entry-id>67</entry-id> + <match>tools dump li</match> + <action>deny</action> + </entry> + <entry> + <entry-id>68</entry-id> + <match>state li</match> + <action>deny</action> + </entry> + <entry> + <entry-id>70</entry-id> + <match>show</match> + <action>permit</action> + </entry> + <entry> + <entry-id>75</entry-id> + <match>state</match> + <action>permit</action> + </entry> + <entry> + <entry-id>80</entry-id> + <match>enable-admin</match> + <action>permit</action> + </entry> + <entry> + <entry-id>90</entry-id> + <match>enable</match> + <action>permit</action> + </entry> + <entry> + <entry-id>100</entry-id> + <match>configure li</match> + <action>deny</action> + </entry> + </profile> + <profile> + <user-profile-name>netconf_example</user-profile-name> + <default-action>deny-all</default-action> + <entry> + <entry-id>10</entry-id> + <match>logout</match> + <action>permit</action> + </entry> + <netconf> + <base-op-authorization> + <action>true</action> + <close-session>true</close-session> + <get-config>true</get-config> + <get-schema>true</get-schema> + </base-op-authorization> + </netconf> + </profile> + <profile> + <user-profile-name>netconf_inprov</user-profile-name> + <default-action>read-only-all</default-action> + <entry> + <entry-id>10</entry-id> + <match>logout</match> + <action>permit</action> + </entry> + <entry> + <entry-id>20</entry-id> + <match>show port</match> + <action>permit</action> + </entry> + <entry> + <entry-id>30</entry-id> + <match>show lag</match> + <action>permit</action> + </entry> + <entry> + <entry-id>40</entry-id> + <match>show router interface</match> + <action>permit</action> + </entry> + <entry> + <entry-id>50</entry-id> + <match>show system</match> + <action>permit</action> + </entry> + <entry> + <entry-id>60</entry-id> + <match>show chassis</match> + <action>permit</action> + </entry> + <entry> + <entry-id>70</entry-id> + <match>show card</match> + <action>permit</action> + </entry> + <netconf> + <base-op-authorization> + <close-session>true</close-session> + <get>true</get> + <get-config>true</get-config> + <get-schema>true</get-schema> + </base-op-authorization> + </netconf> + </profile> + <profile> + <user-profile-name>nomios</user-profile-name> + <default-action>deny-all</default-action> + <entry> + <entry-id>10</entry-id> + <match>logout</match> + <action>permit</action> + </entry> + <entry> + <entry-id>20</entry-id> + <match>ping</match> + <action>permit</action> + </entry> + <entry> + <entry-id>30</entry-id> + <match>traceroute</match> + <action>permit</action> + </entry> + <entry> + <entry-id>40</entry-id> + <match>show router</match> + <action>permit</action> + </entry> + <entry> + <entry-id>50</entry-id> + <match>show system</match> + <action>permit</action> + </entry> + <entry> + <entry-id>60</entry-id> + <match>show</match> + <action>permit</action> + </entry> + <entry> + <entry-id>70</entry-id> + <match>monitor</match> + <action>permit</action> + </entry> + <entry> + <entry-id>80</entry-id> + <match>file</match> + <action>permit</action> + </entry> + <entry> + <entry-id>90</entry-id> + <match>admin show configuration</match> + <action>permit</action> + </entry> + </profile> + <profile> + <user-profile-name>restricted-mon</user-profile-name> + <default-action>deny-all</default-action> + <entry> + <entry-id>10</entry-id> + <match>logout</match> + <action>permit</action> + </entry> + <entry> + <entry-id>20</entry-id> + <match>show users</match> + <action>permit</action> + </entry> + <entry> + <entry-id>30</entry-id> + <match>show port</match> + <action>permit</action> + </entry> + <entry> + <entry-id>40</entry-id> + <match>show lag</match> + <action>permit</action> + </entry> + <entry> + <entry-id>50</entry-id> + <match>monitor port</match> + <action>permit</action> + </entry> + <entry> + <entry-id>60</entry-id> + <match>monitor lag</match> + <action>permit</action> + </entry> + <entry> + <entry-id>70</entry-id> + <match>show router interface</match> + <action>permit</action> + </entry> + <entry> + <entry-id>80</entry-id> + <match>ping</match> + <action>permit</action> + </entry> + <entry> + <entry-id>90</entry-id> + <match>show router</match> + <action>permit</action> + </entry> + <entry> + <entry-id>100</entry-id> + <match>show snmp</match> + <action>permit</action> + </entry> + <entry> + <entry-id>110</entry-id> + <match>show system</match> + <action>permit</action> + </entry> + <entry> + <entry-id>120</entry-id> + <match>show chassis</match> + <action>permit</action> + </entry> + <entry> + <entry-id>130</entry-id> + <match>show card</match> + <action>permit</action> + </entry> + <entry> + <entry-id>140</entry-id> + <match>show mda</match> + <action>permit</action> + </entry> + <entry> + <entry-id>150</entry-id> + <match>show sfm</match> + <action>permit</action> + </entry> + <entry> + <entry-id>160</entry-id> + <match>show service</match> + <action>permit</action> + </entry> + <entry> + <entry-id>170</entry-id> + <match>admin show configuration</match> + <action>permit</action> + </entry> + <entry> + <entry-id>180</entry-id> + <match>admin display-config</match> + <action>permit</action> + </entry> + <entry> + <entry-id>190</entry-id> + <match>environment</match> + <action>permit</action> + </entry> + </profile> + </local-profiles> + </aaa> + <cpm-filter> + <default-action>drop</default-action> + <ip-filter> + <admin-state>enable</admin-state> + <entry> + <entry-id>10</entry-id> + <description>BGP_PEERS_BASE</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>BGP_PEERS_BASE</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-BGP_PEERS_BASE-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>20</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_OFFICE_NETWORKS</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>30</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_VPN_NETWORKS</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>40</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_RANCID</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>50</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>NOMIOS_SUPPORT</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>60</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_LIBRENMS</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>70</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_IMS</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>80</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_GAP</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>90</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_GAP_GSO_UAT</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>100</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_DASHBOARD</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>110</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_LOOKING_GLASS</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>120</entry-id> + <description>SSH</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_NE_SERVERS</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>130</entry-id> + <description>ICMPV4</description> + <match> + <protocol>icmp</protocol> + <icmp> + <type>0</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>140</entry-id> + <description>ICMPV4</description> + <match> + <protocol>icmp</protocol> + <icmp> + <type>3</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>150</entry-id> + <description>ICMPV4</description> + <match> + <protocol>icmp</protocol> + <icmp> + <type>8</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>160</entry-id> + <description>ICMPV4</description> + <match> + <protocol>icmp</protocol> + <icmp> + <type>11</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>170</entry-id> + <description>ICMPV4</description> + <match> + <protocol>icmp</protocol> + <icmp> + <type>13</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>180</entry-id> + <description>ICMPV4</description> + <match> + <protocol>icmp</protocol> + <icmp> + <type>14</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>190</entry-id> + <description>TWAMP</description> + <match> + <protocol>tcp-udp</protocol> + <src-ip> + <ip-prefix-list>TWAMP_CLIENTS</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-TWAMP-DST_PORT_RANGE</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>200</entry-id> + <description>TWAMP_682</description> + <match> + <protocol>tcp-udp</protocol> + <src-ip> + <ip-prefix-list>TWAMP_CLIENTS</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-TWAMP_682-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>210</entry-id> + <description>NETCONF</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_GAP</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-NETCONF-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>220</entry-id> + <description>NETCONF</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_GAP_GSO_UAT</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-NETCONF-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>230</entry-id> + <description>NETCONF</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_DASHBOARD</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-NETCONF-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>240</entry-id> + <description>RADIUS</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>GEANT_DC</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-RADIUS-PORT_RANGE</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>250</entry-id> + <description>NTP</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>GEANT_NTP</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-NTP-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>260</entry-id> + <description>NTP</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>PUBLIC_NTP</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-NTP-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>270</entry-id> + <description>SNMP</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>GEANT_LIBRENMS</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-SNMP-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>280</entry-id> + <description>SNMP</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>GEANT_SNMP</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-SNMP-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>290</entry-id> + <description>SNMP</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>GEANT_SNMP_UAT</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-SNMP-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>300</entry-id> + <description>PIM</description> + <match> + <protocol>pim</protocol> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>310</entry-id> + <description>RSVP</description> + <match> + <protocol>rsvp</protocol> + <src-ip> + <ip-prefix-list>GEANT_ADDRESS_SPACE</ip-prefix-list> + </src-ip> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>320</entry-id> + <description>TRACEROUTE</description> + <match> + <protocol>udp</protocol> + <port> + <port-list>CPMF_V4-TRACEROUTE-PORT_RANGE</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>330</entry-id> + <description>DNS</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>GEANT_DNS</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-DNS-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>340</entry-id> + <description>MICRO_BFD</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>GEANT_ROUTERS</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-MICRO_BFD-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>350</entry-id> + <description>T_LDP</description> + <match> + <protocol>tcp-udp</protocol> + <src-ip> + <ip-prefix-list>GEANT_ROUTERS</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-T_LDP-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>360</entry-id> + <description>RPKI</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>GEANT_RPKI</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-RPKI-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>370</entry-id> + <description>BFD_EBGP</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>BGP_PEERS_BASE</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-BFD_EBGP-DST_PORT_RANGE</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>380</entry-id> + <description>MH_BFD_EBGP</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>BGP_PEERS_BASE</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-MH_BFD_EBGP-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>390</entry-id> + <description>SNMP</description> + <match> + <protocol>udp</protocol> + <src-ip> + <ip-prefix-list>TOOLS_KENTIK</ip-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V4-SNMP-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>400</entry-id> + <description>GRE</description> + <match> + <protocol>gre</protocol> + <src-ip> + <ip-prefix-list>EXTERNAL_GRE</ip-prefix-list> + </src-ip> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>410</entry-id> + <description>IGMP</description> + <match> + <protocol>igmp</protocol> + <src-ip> + <ip-prefix-list>EXTERNAL_IGMP</ip-prefix-list> + </src-ip> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>420</entry-id> + <description>VRRP</description> + <match> + <protocol>vrrp</protocol> + <src-ip> + <ip-prefix-list>GEANT_DC_VRRP</ip-prefix-list> + </src-ip> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>430</entry-id> + <description>MOODI_GNMI</description> + <match> + <protocol>tcp</protocol> + <src-ip> + <ip-prefix-list>MOODI_SERVERS</ip-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V4-MOODI_GNMI-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>4000</entry-id> + <description>DF_DENY</description> + <log>102</log> + <match> + <dst-ip> + <ip-prefix-list>GEANT_ROUTERS</ip-prefix-list> + </dst-ip> + </match> + <action> + <drop/> + </action> + </entry> + </ip-filter> + <ipv6-filter> + <admin-state>enable</admin-state> + <entry> + <entry-id>10</entry-id> + <description>BGP_PEERS_BASE</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>BGP_PEERS_BASE</ipv6-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V6-BGP_PEERS_BASE-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>20</entry-id> + <description>SSH</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_OFFICE_NETWORKS</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>30</entry-id> + <description>SSH</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_VPN_NETWORKS</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>40</entry-id> + <description>SSH</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_RANCID</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>50</entry-id> + <description>SSH</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_LIBRENMS</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>60</entry-id> + <description>SSH</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_IMS</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>70</entry-id> + <description>SSH</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_GAP</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>80</entry-id> + <description>SSH</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_GAP_GSO_UAT</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>90</entry-id> + <description>SSH</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_DASHBOARD</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>100</entry-id> + <description>SSH</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_LOOKING_GLASS</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>110</entry-id> + <description>SSH</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_NE_SERVERS</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-SSH-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>120</entry-id> + <description>NETCONF</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_GAP</ipv6-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V6-NETCONF-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>130</entry-id> + <description>NETCONF</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_GAP_GSO_UAT</ipv6-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V6-NETCONF-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>140</entry-id> + <description>NETCONF</description> + <match> + <next-header>tcp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_DASHBOARD</ipv6-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V6-NETCONF-PORTS</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>150</entry-id> + <description>PIM</description> + <match> + <next-header>pim</next-header> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>160</entry-id> + <description>ICMP_GEANT</description> + <match> + <next-header>ipv6-icmp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_IPV6_NETWORKS</ipv6-prefix-list> + </src-ip> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>170</entry-id> + <description>ICMP_GLOBAL</description> + <match> + <next-header>ipv6-icmp</next-header> + <icmp> + <type>1</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>180</entry-id> + <description>ICMP_GLOBAL</description> + <match> + <next-header>ipv6-icmp</next-header> + <icmp> + <type>2</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>190</entry-id> + <description>ICMP_GLOBAL</description> + <match> + <next-header>ipv6-icmp</next-header> + <icmp> + <type>3</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>200</entry-id> + <description>ICMP_GLOBAL</description> + <match> + <next-header>ipv6-icmp</next-header> + <icmp> + <type>4</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>210</entry-id> + <description>ICMP_GLOBAL</description> + <match> + <next-header>ipv6-icmp</next-header> + <icmp> + <type>128</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>220</entry-id> + <description>ICMP_GLOBAL</description> + <match> + <next-header>ipv6-icmp</next-header> + <icmp> + <type>129</type> + </icmp> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>230</entry-id> + <description>ICMP_ND</description> + <match> + <next-header>ipv6-icmp</next-header> + <dst-ip> + <ipv6-prefix-list>IPV6_ND</ipv6-prefix-list> + </dst-ip> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>240</entry-id> + <description>TRACEROUTE</description> + <match> + <next-header>udp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_ADDRESS_SPACE</ipv6-prefix-list> + </src-ip> + <port> + <port-list>CPMF_V6-TRACEROUTE-PORT_RANGE</port-list> + </port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>250</entry-id> + <description>BFD_EBGP</description> + <match> + <next-header>udp</next-header> + <src-ip> + <ipv6-prefix-list>BGP_PEERS_BASE</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-BFD_EBGP-DST_PORT_RANGE</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>260</entry-id> + <description>MH_BFD_EBGP</description> + <match> + <next-header>udp</next-header> + <src-ip> + <ipv6-prefix-list>BGP_PEERS_BASE</ipv6-prefix-list> + </src-ip> + <dst-port> + <port-list>CPMF_V6-MH_BFD_EBGP-DST_PORTS</port-list> + </dst-port> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>270</entry-id> + <description>VRRP</description> + <match> + <next-header>vrrp</next-header> + <src-ip> + <ipv6-prefix-list>GEANT_IPV6_DC_VRRP</ipv6-prefix-list> + </src-ip> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>280</entry-id> + <description>MLD</description> + <match> + <next-header>58</next-header> + </match> + <action> + <accept/> + </action> + </entry> + <entry> + <entry-id>4000</entry-id> + <description>DF_DENY</description> + <log>102</log> + <match> + <dst-ip> + <ipv6-prefix-list>GEANT_ROUTERS</ipv6-prefix-list> + </dst-ip> + </match> + <action> + <drop/> + </action> + </entry> + </ipv6-filter> + </cpm-filter> + <snmp> + <access> + <group>TIMEMAP_VIEW</group> + <context/> + <security-model>snmpv2c</security-model> + <security-level>no-auth-no-privacy</security-level> + <read>TIMEMAP_VIEW</read> + </access> + <community> + <community-string>fKmeUgu3e3Y3V86ojMHvRSC2juAhqvQ= hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + </community> + <community> + <community-string>zQyAqg9SYWLrzLBYiTybvsQYcGBBMj1EMVQwJcml hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_tools_mon</source-access-list> + </community> + <community> + <community-string>i0mzNdj0HzPYfU+39WQ8r7GWAZTalWPl0J4= hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_tools_mon</source-access-list> + </community> + <community> + <community-string>ubJcrJkB1hc0UdS6lPxjFpvfCQZLvlZzXpmqhzVUa2Eibg== hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_tools_mon</source-access-list> + </community> + <community> + <community-string>uGThXBKL7ddEUwPoLs0SFx3Bp+leyJdMYcNo1nU= hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + </community> + <community> + <community-string>L9NkytHUeg0UTLF+MnUho+Sa31merj4glQ== hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_tools_mon</source-access-list> + </community> + <community> + <community-string>VhwJVM2ldShxI+56jgMGFniEDE7ElNx830kkvdit hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_tools_mon</source-access-list> + </community> + <community> + <community-string>/1IkmOhOpLBshXO9mSH4SZsY15ZGlEywrugOku7Xvp43 hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_global-oc-servers</source-access-list> + </community> + <community> + <community-string>Qr2f8qbBy/hUXEsGDHcEHHG1f4cd7/v3iiTs8Vvt1UWmZQ== hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_librenms</source-access-list> + </community> + <community> + <community-string>ochB1k6FYz7RKZpt/znwjNoJdA+jra6T54E= hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_brian</source-access-list> + </community> + <community> + <community-string>XXKUcZ4zOsQg3H1nOiZvXR8NzGP9wtaCPIkEtWoa hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_dashboard</source-access-list> + </community> + <community> + <community-string>KZ9KjiniM3QC+rnFJqBugdMWHEpuUdG+nI0h hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_inprov</source-access-list> + </community> + <community> + <community-string>MOcM8epLpi88h5dlFL58CLWNeoCs2J3dHTI= hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_brian</source-access-list> + </community> + <community> + <community-string>sAn9155I4QCm8u6kMA38+rL6J2YRal5SfgOmNZxw hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_dashboard</source-access-list> + </community> + <community> + <community-string>DcCEYGV5n2ukDbk/QlOzdzBFRb6Pj3+6SlVK hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_inprov</source-access-list> + </community> + <community> + <community-string>Hfvmpr5kAclNP3gm2NuXjy0gUJD3EGHz7g== hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_brian</source-access-list> + </community> + <community> + <community-string>fif3vWRbIsSVNN/KHjcFx1Pg9X8BlD8hyWcPY3Y= hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_dashboard</source-access-list> + </community> + <community> + <community-string>tLZHtisSDHHQVpFxwQ4HMtefVeY2IIfctzw= hash2</community-string> + <access-permissions>r</access-permissions> + <version>v2c</version> + <source-access-list>snmp_inprov</source-access-list> + </community> + <usm-community> + <community-string>SrVB4RtXTrvi8HXjFOlK/V0VPBm9L6Jy hash2</community-string> + <group>TIMEMAP_VIEW</group> + <source-access-list>snmp_3VfrNKak</source-access-list> + </usm-community> + <source-access-list> + <list-name>snmp_3VfrNKak</list-name> + <source-host> + <host-name>3VfrNKak_TIMEMAP-01</host-name> + <address>193.219.48.249</address> + </source-host> + <source-host> + <host-name>3VfrNKak_TIMEMAP-02</host-name> + <address>193.219.48.250</address> + </source-host> + <source-host> + <host-name>3VfrNKak_TIMEMAP-03</host-name> + <address>83.97.94.180</address> + </source-host> + <source-host> + <host-name>3VfrNKak_TIMEMAP-04</host-name> + <address>83.97.95.193</address> + </source-host> + <source-host> + <host-name>3VfrNKak_TIMEMAP-05</host-name> + <address>83.97.95.194</address> + </source-host> + <source-host> + <host-name>3VfrNKak_TIMEMAP-06</host-name> + <address>83.97.95.195</address> + </source-host> + </source-access-list> + <source-access-list> + <list-name>snmp_brian</list-name> + <source-host> + <host-name>prod-poller-sensu-agent01</host-name> + <address>83.97.95.11</address> + </source-host> + <source-host> + <host-name>prod-poller-sensu-agent02</host-name> + <address>83.97.95.12</address> + </source-host> + <source-host> + <host-name>prod-poller-sensu-agent03</host-name> + <address>83.97.93.155</address> + </source-host> + <source-host> + <host-name>test-poller-sensu-agent01</host-name> + <address>83.97.94.245</address> + </source-host> + <source-host> + <host-name>test-poller-sensu-agent02</host-name> + <address>83.97.94.246</address> + </source-host> + <source-host> + <host-name>test-poller-sensu-agent03</host-name> + <address>83.97.93.52</address> + </source-host> + <source-host> + <host-name>test-poller01</host-name> + <address>83.97.92.94</address> + </source-host> + <source-host> + <host-name>uat-poller-sensu-agent01</host-name> + <address>83.97.95.9</address> + </source-host> + <source-host> + <host-name>uat-poller-sensu-agent02</host-name> + <address>83.97.95.10</address> + </source-host> + <source-host> + <host-name>uat-poller-sensu-agent03</host-name> + <address>83.97.93.154</address> + </source-host> + </source-access-list> + <source-access-list> + <list-name>snmp_dashboard</list-name> + <source-host> + <host-name>test-noc-alarms01</host-name> + <address>83.97.92.228</address> + </source-host> + <source-host> + <host-name>test-noc-alarms02</host-name> + <address>83.97.93.53</address> + </source-host> + <source-host> + <host-name>test-noc-alarms03</host-name> + <address>83.97.94.185</address> + </source-host> + <source-host> + <host-name>uat-noc-alarms01</host-name> + <address>83.97.93.151</address> + </source-host> + <source-host> + <host-name>uat-noc-alarms02</host-name> + <address>83.97.94.51</address> + </source-host> + <source-host> + <host-name>uat-noc-alarms03</host-name> + <address>83.97.94.188</address> + </source-host> + </source-access-list> + <source-access-list> + <list-name>snmp_global-oc-servers</list-name> + <source-host> + <host-name>neteamserver01</host-name> + <address>83.97.94.182</address> + </source-host> + <source-host> + <host-name>oc-server-fra-de</host-name> + <address>83.97.93.122</address> + </source-host> + <source-host> + <host-name>oc-server-lon2-uk</host-name> + <address>83.97.94.181</address> + </source-host> + <source-host> + <host-name>oc-server-par-fr</host-name> + <address>83.97.93.123</address> + </source-host> + <source-host> + <host-name>prod-oc-server01</host-name> + <address>83.97.92.92</address> + </source-host> + <source-host> + <host-name>prod-oc-server02</host-name> + <address>83.97.92.99</address> + </source-host> + <source-host> + <host-name>test-oc-server01</host-name> + <address>83.97.92.61</address> + </source-host> + </source-access-list> + <source-access-list> + <list-name>snmp_inprov</list-name> + <source-host> + <host-name>prod-inprov01</host-name> + <address>83.97.94.2</address> + </source-host> + <source-host> + <host-name>prod-inprov02</host-name> + <address>83.97.94.9</address> + </source-host> + <source-host> + <host-name>prod-inprov03</host-name> + <address>83.97.94.15</address> + </source-host> + <source-host> + <host-name>prod-inventory-provider01</host-name> + <address>83.97.94.97</address> + </source-host> + <source-host> + <host-name>prod-inventory-provider02</host-name> + <address>83.97.94.98</address> + </source-host> + <source-host> + <host-name>test-inprov01</host-name> + <address>83.97.93.204</address> + </source-host> + <source-host> + <host-name>test-inprov02</host-name> + <address>83.97.93.244</address> + </source-host> + <source-host> + <host-name>test-inprov03</host-name> + <address>83.97.93.248</address> + </source-host> + <source-host> + <host-name>test-inventory-provider01</host-name> + <address>83.97.93.152</address> + </source-host> + <source-host> + <host-name>test-inventory-provider02</host-name> + <address>83.97.93.153</address> + </source-host> + <source-host> + <host-name>uat-inprov01</host-name> + <address>83.97.93.249</address> + </source-host> + <source-host> + <host-name>uat-inprov02</host-name> + <address>83.97.93.251</address> + </source-host> + <source-host> + <host-name>uat-inprov03</host-name> + <address>83.97.94.1</address> + </source-host> + <source-host> + <host-name>uat-inventory-provider01</host-name> + <address>83.97.94.52</address> + </source-host> + <source-host> + <host-name>uat-inventory-provider02</host-name> + <address>83.97.93.239</address> + </source-host> + </source-access-list> + <source-access-list> + <list-name>snmp_librenms</list-name> + <source-host> + <host-name>librenms-lab</host-name> + <address>62.40.111.47</address> + </source-host> + <source-host> + <host-name>librenms-prod</host-name> + <address>83.97.95.39</address> + </source-host> + <source-host> + <host-name>librenms-uat</host-name> + <address>83.97.95.37</address> + </source-host> + <source-host> + <host-name>uat-librenms-core01</host-name> + <address>62.40.111.30</address> + </source-host> + <source-host> + <host-name>uat-librenms-poller01</host-name> + <address>62.40.111.31</address> + </source-host> + </source-access-list> + <source-access-list> + <list-name>snmp_tools_mon</list-name> + <source-host> + <host-name>FLOWMON-Primary</host-name> + <address>62.40.100.166</address> + </source-host> + <source-host> + <host-name>flowmon</host-name> + <address>62.40.120.90</address> + </source-host> + <source-host> + <host-name>flowmon-ddos-fra</host-name> + <address>62.40.100.190</address> + </source-host> + <source-host> + <host-name>flowmon-ddos-par</host-name> + <address>62.40.100.198</address> + </source-host> + <source-host> + <host-name>flowmon2</host-name> + <address>62.40.122.138</address> + </source-host> + <source-host> + <host-name>intermapper</host-name> + <address>83.97.92.219</address> + </source-host> + <source-host> + <host-name>netsage</host-name> + <address>83.97.94.14</address> + </source-host> + <source-host> + <host-name>prod-fod</host-name> + <address>83.97.93.59</address> + </source-host> + <source-host> + <host-name>prod-fod01</host-name> + <address>83.97.92.79</address> + </source-host> + <source-host> + <host-name>prod-lg</host-name> + <address>83.97.93.39</address> + </source-host> + <source-host> + <host-name>uat-fod</host-name> + <address>83.97.92.183</address> + </source-host> + </source-access-list> + <view> + <view-name>TIMEMAP_VIEW</view-name> + <subtree>.1.3.6.1.4.1.6527.1.1.3.92</subtree> + </view> + <view> + <view-name>TIMEMAP_VIEW</view-name> + <subtree>.1.3.6.1.4.1.6527.3.1.2.92</subtree> + <type>included</type> + </view> + </snmp> + <ssh> + <preserve-key>true</preserve-key> + <server-cipher-list-v2> + <cipher> + <index>190</index> + <name>aes256-ctr</name> + </cipher> + <cipher> + <index>192</index> + <name>aes192-ctr</name> + </cipher> + <cipher> + <index>194</index> + <name>aes128-ctr</name> + </cipher> + <cipher> + <index>200</index> + <name>aes128-cbc</name> + </cipher> + <cipher> + <index>205</index> + <name>3des-cbc</name> + </cipher> + <cipher> + <index>225</index> + <name>aes192-cbc</name> + </cipher> + <cipher> + <index>230</index> + <name>aes256-cbc</name> + </cipher> + </server-cipher-list-v2> + <client-cipher-list-v2> + <cipher> + <index>190</index> + <name>aes256-ctr</name> + </cipher> + <cipher> + <index>192</index> + <name>aes192-ctr</name> + </cipher> + <cipher> + <index>194</index> + <name>aes128-ctr</name> + </cipher> + <cipher> + <index>200</index> + <name>aes128-cbc</name> + </cipher> + <cipher> + <index>205</index> + <name>3des-cbc</name> + </cipher> + <cipher> + <index>225</index> + <name>aes192-cbc</name> + </cipher> + <cipher> + <index>230</index> + <name>aes256-cbc</name> + </cipher> + </client-cipher-list-v2> + <server-mac-list-v2> + <mac> + <index>200</index> + <name>hmac-sha2-512</name> + </mac> + <mac> + <index>210</index> + <name>hmac-sha2-256</name> + </mac> + <mac> + <index>215</index> + <name>hmac-sha1</name> + </mac> + <mac> + <index>220</index> + <name>hmac-sha1-96</name> + </mac> + <mac> + <index>225</index> + <name>hmac-md5</name> + </mac> + <mac> + <index>240</index> + <name>hmac-md5-96</name> + </mac> + </server-mac-list-v2> + <client-mac-list-v2> + <mac> + <index>200</index> + <name>hmac-sha2-512</name> + </mac> + <mac> + <index>210</index> + <name>hmac-sha2-256</name> + </mac> + <mac> + <index>215</index> + <name>hmac-sha1</name> + </mac> + <mac> + <index>220</index> + <name>hmac-sha1-96</name> + </mac> + <mac> + <index>225</index> + <name>hmac-md5</name> + </mac> + <mac> + <index>240</index> + <name>hmac-md5-96</name> + </mac> + </client-mac-list-v2> + </ssh> + <user-params> + <authentication-order> + <order>radius</order> + <order>local</order> + </authentication-order> + <local-user> + <user> + <user-name>R4nC1dN0k</user-name> + <password>$2y$10$SKQqRBwvLOhdc6dJJ6FeI.1Yv4fztCf1xmoUTMCPRKIu6wDEAsR4G</password> + <access> + <console>true</console> + </access> + <console> + <member>config_backup</member> + </console> + <public-keys> + <ecdsa> + <ecdsa-key> + <ecdsa-public-key-id>1</ecdsa-public-key-id> + <key-value>AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBH8Qe7NoQCFnKnXRl2sPB1yUXf4hokYsN3HUbj6fKkeDCLDL9MWxXRh2Pbns/q1Y79Ab6GkjcnhxFIMT6Wj1i5E=</key-value> + </ecdsa-key> + </ecdsa> + </public-keys> + </user> + <user> + <user-name>admin</user-name> + <password>$2y$10$k2TmajZKvyznJSnXDNCVs.UW7z1s5of1Vy/ZRtsMzKMuTKxUKzUAm</password> + <access> + <console>true</console> + <netconf>true</netconf> + </access> + <console> + <member>administrative</member> + </console> + </user> + <user> + <user-name>daniel</user-name> + <password>$2y$10$8OtUWKEx3x5T0tN4CsiQM.fdw2rSK.8cppCOczNPD.vKFo8wtvhAS</password> + <access> + <console>true</console> + <grpc>true</grpc> + </access> + <console> + <member>administrative</member> + </console> + <public-keys> + <ecdsa> + <ecdsa-key> + <ecdsa-public-key-id>1</ecdsa-public-key-id> + <key-value>AAAAE2VjZHNhLXNoYTItbmlzdHAyNTYAAAAIbmlzdHAyNTYAAABBBHM0KVy3Ca/+V2xcNtOXJpWkxrZeiITjvTTRw2QnhN2gLcJtkUKI5ylW9hr5gxnvhTH5POIZ39VuHf2fgGqhNs4=</key-value> + </ecdsa-key> + </ecdsa> + </public-keys> + </user> + <user> + <user-name>gap-lso-uat</user-name> + <password>$2y$10$fgpTXYaeLk6fnQjQkF54s.Ns8w94Fw4RiBgc7ymhM3OsHmH0EykVm</password> + <access> + <console>true</console> + <netconf>true</netconf> + </access> + <console> + <member>administrative</member> + </console> + <public-keys> + <ecdsa> + <ecdsa-key> + <ecdsa-public-key-id>1</ecdsa-public-key-id> + <key-value>AAAAE2VjZHNhLXNoYTItbmlzdHA1MjEAAAAIbmlzdHA1MjEAAACFBAEipXFRSFzx/4jswTdgKvWuYTV74KOIBePozJ5ojlpiK+uzTbaOQJU/KEgwVeSpRfQx6WFLEGYMuVnZFcnN4RG+7wBNLIMqpb7ZAkIPGp2wF1XcgV/MeTsS54hQqBvP2eou8nHNc2iQjmMPyrfHENpIxVGsth1BqCwKCMTsiN23D4lfsQ==</key-value> + </ecdsa-key> + </ecdsa> + </public-keys> + </user> + <user> + <user-name>gap-moodi-uat</user-name> + <password>$2y$10$MTVH3eZ.3e1xyeFSKBCNE.mZkbyrlhw973hERpP0M80f0roAmzsDG</password> + <access> + <console>true</console> + <netconf>true</netconf> + <grpc>true</grpc> + </access> + <console> + <member>administrative</member> + </console> + </user> + <user> + <user-name>geant-ne-na-lab</user-name> + <password>$2y$10$k2TmajZKvyznJSnXDNCVs.UW7z1s5of1Vy/ZRtsMzKMuTKxUKzUAm</password> + <access> + <console>true</console> + <netconf>true</netconf> + </access> + <console> + <member>administrative</member> + </console> + <public-keys> + <rsa> + <rsa-key> + <rsa-public-key-id>1</rsa-public-key-id> + <key-value>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</key-value> + </rsa-key> + </rsa> + </public-keys> + </user> + <user> + <user-name>inprov</user-name> + <password>$2y$10$KdVzmdaM917QiD2CeK1hI.EAFgTMfjHsLOESCejQytl4bbUNu1EfW</password> + <access> + <console>true</console> + <netconf>true</netconf> + </access> + <console> + <member>netconf_inprov</member> + </console> + <public-keys> + <rsa> + <rsa-key> + <rsa-public-key-id>1</rsa-public-key-id> + <key-value>AAAAB3NzaC1yc2EAAAADAQABAAACAQC8MAtn/FRKr7NzeRZo+AURHNYbBVEp9Xy67Fa4eetETCV5IJZ7VZKuGJC/IUD8OLEAKCfpgHoQ+QeJCp5M4llKqbB9EsKHbq9SWcN0oB39jYHsYQO9/CwG3TaQPbwWDCmJowKOkfDVdNjhmD9E5hvsoazIBny29RfXCnYFcogITQ9z49npQdtF8IF+3qNYxGTJUUEt1EFymYpl9c77LFnZuppDQlTdpa8A33klcrhUKTXxn2AZcFdg5ZGBbajTBvFqG/1U/RgCdHpeLxS1UW29FTu7SFllSG/XvEL9Ai91MPMpr07vQVc8DqZFQ5o7AhHkm3fXpvIgnff2YroXZhjF1sIRS7F5WY48o/sCBN36wGmQgfvuxGeQ1B2LDMhdtX0oN0KiMZ2HFuhGJIpmUhB7iMv9aZxJV+/RCjdJIzq6S/ilPZzwOjFy8H2zDy9YPGNQgAI5JJtRcEbCgnqYWfCkY7sr9vK3wwCGDfqhRyUaTj1teVDrCEWdEPSjsTDc9D1JNr/4vnYW3OJH7Cvu+ELXMwfpkad9A0jfdAtDuUoC63sG4Z6ybRdJ80ozlbwSmXc4vLJKm9chPSu9lBsC9/1Vyvn3PeZ6c3NV0ZTwtfTWRSb5S2Go9uYWHR/wppDvhX0LWbWTXG0OJUIu3ik9/asmSF+kCuQ3+XtYSFiMm4Fz0w==</key-value> + </rsa-key> + </rsa> + </public-keys> + </user> + <user> + <user-name>moodi</user-name> + <password>$2y$10$7Jf7DbqicohrcJeiKp6fg.Ck0DUU3lWzgxi4.treRUQndRX.WASnm</password> + <access> + <console>true</console> + <netconf>true</netconf> + <grpc>true</grpc> + </access> + <console> + <member>administrative</member> + </console> + </user> + <user> + <user-name>oxidized</user-name> + <password>$2y$10$TQrZlpBDra86.qoexZUzQeBXDY1FcdDhGWdD9lLxMuFyPVSm0OGy6</password> + <access> + <console>true</console> + </access> + <console> + <member>config_backup</member> + </console> + <public-keys> + <ecdsa> + <ecdsa-key> + <ecdsa-public-key-id>1</ecdsa-public-key-id> + <key-value>AAAAE2VjZHNhLXNoYTItbmlzdHA1MjEAAAAIbmlzdHA1MjEAAACFBAGKE1PylcuuY5TzEEx928eZGEsPHeRzxrBRWJoKIvY5/7sgnbxQKWO8evpApZQdAsaz2fZvI5S8D2QsThYUtAV3nAHk2VgMIGUJNZHfyljjVQJMVA6thVcEZCk/VBgch16Yym9FmAst2BjOFbf1WydkM9wxbUcWLabT5uq4+Vp8ams27g==</key-value> + </ecdsa-key> + <ecdsa-key> + <ecdsa-public-key-id>2</ecdsa-public-key-id> + <key-value>AAAAE2VjZHNhLXNoYTItbmlzdHA1MjEAAAAIbmlzdHA1MjEAAACFBAGKE1PylcuuY5TzEEx928eZGEsPHeRzxrBRWJoKIvY5/7sgnbxQKWO8evpApZQdAsaz2fZvI5S8D2QsThYUtAV3nAHk2VgMIGUJNZHfyljjVQJMVA6thVcEZCk/VBgch16Yym9FmAst2BjOFbf1WydkM9wxbUcWLabT5uq4+Vp8GBBX7g==</key-value> + </ecdsa-key> + </ecdsa> + <rsa> + <rsa-key> + <rsa-public-key-id>1</rsa-public-key-id> + <key-value>AAAAB3NzaC1yc2EAAAADAQABAAABAQDbIxpccubnBvn918JoKpWkzxsX3aCS7H2BUpb7r6tEboOwwpTAnQtiVjMYUsUCL7I7FdujmYK8bwC6YKYFI8fUEdDpthTbLSIfyhapo6eigz30E1RInBaLDrTKD736EMCVkwZPCLilwYuL/IbuZETbd5xXLiW8By2691OC28bKl2AXiW/6MvQ2Pu3vIN1Y3YEYkSCV8vh/rQUQmwJi6CWw+f5R4KWHyyc9t4kSfZPOTyEkaYp67ipeRtQJU2VxlG35mGdHCPHJo6icVmXcMNQRLwX71MTz1jJCtNv8xIkpZQ0u7U2qYLHTvh/HmwNc8riLFLmm24ZaiKdoCpmfnLBX</key-value> + </rsa-key> + <rsa-key> + <rsa-public-key-id>2</rsa-public-key-id> + <key-value>AAAAB3NzaC1yc2EAAAADAQABAAABAQCsK6oYb/QBeJpHYMGtH5wgnhg6urVDCsbKYVh+0tqMMqXchpjVFts6ulBtRUumHKbeUki6W+bP9GK5UQ/aYoNnBopNZSPAQdMFo/d5wg6aUyZYXp5g6LmTQX+seVilSa11CpMmOYRykU/pMaHev/s0RBMgpskhKJxRp+ws0mTX8jaNsgs8DV7cZ9q2LNPZ6Hb01bmTQjwUDXbuZcmbgbvdSca64+X+4rQT5M0uGt6j9U9xncXtn5kdoUkYcFwYQ+n1patGssM8wU6KTxk2jha+S5bN+aK1ZtPkcRhFZjulXJjM0R1GLJuo6OvGsrfTs6yVaiXi7i3Hlv2wlcXXZ6Gb</key-value> + </rsa-key> + </rsa> + </public-keys> + </user> + <user> + <user-name>srv_ims_SROS</user-name> + <password>$2y$10$Wib89Y3VCmjysYTB/pAmA.IyL7P04aHDMOqLJjD0ZI4ETgM/rLBHq</password> + <access> + <console>true</console> + </access> + <console> + <member>restricted-mon</member> + </console> + </user> + <user> + <user-name>srv_ne_scripts</user-name> + <password>$2y$10$XGlShsd8pSkgNdDXusJVo.fnwZJgC.XZznTG1hB9mg3wzYSb7hGLe</password> + <access> + <console>true</console> + <netconf>true</netconf> + </access> + <console> + <member>administrative</member> + </console> + <public-keys> + <rsa> + <rsa-key> + <rsa-public-key-id>1</rsa-public-key-id> + <key-value>AAAAB3NzaC1yc2EAAAADAQABAAABAQDbIxpccubnBvn918JoKpWkzxsX3aCS7H2BUpb7r6tEboOwwpTAnQtiVjMYUsUCL7I7FdujmYK8bwC6YKYFI8fUEdDpthTbLSIfyhapo6eigz30E1RInBaLDrTKD736EMCVkwZPCLilwYuL/IbuZETbd5xXLiW8By2691OC28bKl2AXiW/6MvQ2Pu3vIN1Y3YEYkSCV8vh/rQUQmwJi6CWw+f5R4KWHyyc9t4kSfZPOTyEkaYp67ipeRtQJU2VxlG35mGdHCPHJo6icVmXcMNQRLwX71MTz1jJCtNv8xIkpZQ0u7U2qYLHTvh/HmwNc8riLFLmm24ZaiKdoCpmfnLBX</key-value> + </rsa-key> + </rsa> + </public-keys> + </user> + </local-user> + </user-params> + </security> + <time> + <zone> + <standard> + <name>utc</name> + </standard> + </zone> + <ntp> + <admin-state>enable</admin-state> + <server> + <ip-address>62.40.123.21</ip-address> + <router-instance>Base</router-instance> + <key-id>10</key-id> + </server> + <server> + <ip-address>62.40.123.23</ip-address> + <router-instance>Base</router-instance> + <key-id>10</key-id> + </server> + <server> + <ip-address>62.40.123.103</ip-address> + <router-instance>Base</router-instance> + <key-id>10</key-id> + </server> + <server> + <ip-address>172.16.100.48</ip-address> + <router-instance>Base</router-instance> + </server> + <server> + <ip-address>192.53.103.108</ip-address> + <router-instance>Base</router-instance> + </server> + <server> + <ip-address>192.87.106.2</ip-address> + <router-instance>Base</router-instance> + </server> + <server> + <ip-address>193.204.114.233</ip-address> + <router-instance>Base</router-instance> + </server> + <server> + <ip-address>195.113.144.201</ip-address> + <router-instance>Base</router-instance> + </server> + <server> + <ip-address>216.239.35.0</ip-address> + <router-instance>Base</router-instance> + </server> + <server> + <ip-address>216.239.35.4</ip-address> + <router-instance>Base</router-instance> + </server> + <authentication-key> + <key-id>10</key-id> + <key>HqPnbTyN1I9H2OI6TlxzuBx8h7+GMgR3 hash2</key> + <type>message-digest</type> + </authentication-key> + </ntp> + </time> + </system> + <test-oam> + <twamp> + <server> + <admin-state>enable</admin-state> + <prefix> + <ip-prefix>62.40.119.68/31</ip-prefix> + <description>rt1.dub.ie</description> + <max-connections>1</max-connections> + <max-sessions>1</max-sessions> + </prefix> + </server> + </twamp> + </test-oam> + </configure> + </data> diff --git a/test/test_nokia.py b/test/test_nokia.py index b161c896524199e1ceaa9e77ff70e0f35ccdf991..faa8f070456546e77509ccdfd08153e07f71c7e8 100644 --- a/test/test_nokia.py +++ b/test/test_nokia.py @@ -232,3 +232,16 @@ def test_get_peers(hostname, load_nokia_netconf_config): jsonschema.validate(peer, PEERS_SCHEMA) all_peers_from_call.add(peer['address']) assert all_peers_from_doc == all_peers_from_call + + +def test_get_epipe_sap_details(load_nokia_netconf_config): + netconf_doc = load_nokia_netconf_config("rt0.dub.ie.lab.office.geant.net") + epipe_sap_details = list(nokia.get_epipe_sap_details(netconf_doc)) + expected_details = [ + { + 'service-id': '123456', + 'vpn-id': '98765', + 'sap-id': 'lag-123:456' + }, + ] + assert epipe_sap_details == expected_details diff --git a/test/test_worker.py b/test/test_worker.py index 693584c2a762ea94b4ecfad94d766615174dcbd8..51b39336c591a8fc3fa313c63590ed063a7ae221 100644 --- a/test/test_worker.py +++ b/test/test_worker.py @@ -1,15 +1,13 @@ import json - import jsonschema from ncclient.transport import TransportError - from inventory_provider.tasks import common from inventory_provider.tasks.worker import populate_error_report_interfaces_cache, \ transform_ims_data, \ extract_ims_data, persist_ims_data, \ retrieve_and_persist_neteng_managed_device_list, \ populate_poller_interfaces_cache, refresh_nokia_interface_list, \ - retrieve_and_persist_config_nokia + retrieve_and_persist_config_nokia, refresh_epipe_to_sap_mappings import pytest from requests import HTTPError @@ -1114,3 +1112,22 @@ def test_nokia_retrieval_failure(mocker, data_config, mocked_redis): config_doc, state_doc = retrieve_and_persist_config_nokia("unknown.router.geant.net") assert config_doc is None assert state_doc is None + + +def test_refresh_epipe_to_sap_mappings(data_config, mocked_redis, load_nokia_netconf_config): + netconf_config = load_nokia_netconf_config('rt0.dub.ie.lab.office.geant.net') + r = common._get_redis(data_config) + refresh_epipe_to_sap_mappings('rt0.dub.ie.lab.office.geant.net', netconf_config, r) + keybase = 'ims:epipe-sapid_mappings:rt0.dub.ie.lab.office.geant.net:' + keys = r.keys(f'{keybase}*') + epipe_sap_mappings = {} + for k in keys: + k = k.decode('utf-8') + epipe_sap_mappings[k] = r.get(k).decode('utf-8') + + expected_mappings = { + # f'{keybase}service-id:vpn-id': 'sap-id' + # Add expected mappings here based on the test data + f"{keybase}123456:98765": "lag-123:456", + } + assert epipe_sap_mappings == expected_mappings