Mutual BGP-RIP redistribution

OK so I have a 'is it ok in the lab' question.

I am doing some BGP-RIP mutual redistribution with two PEs connected to two CEs

PE1          PE2

|                |

CE1--------CE2

IOX doesnt seem to allow any route tagging with RIP as I get this error when i try and apply an RPL plicy using set tag 120.

 
router rip
 vrf VPN_A
  redistribute bgp 100 route-policy BLAH
!!% Could not find entry in list: Policy [BLAH] uses the 'tag' attribute. There is no 'tag' attribute at the RIP redistribution attach point.
 !
!

So my question is if I just block the local CE prefixes from coming in via BGP-to-RIP redistr and block the other remote site prefixes origionated from beyond MPBGP from going in the RIP-BGP direction, would that be acceptable or would it not be elegant enough? BTW I am aware the policy above does not match the policy below, BLAH was only created to generate the error so I could post this.

 

IOX config (IOS equivalent on the other PE)

prefix-set VPN_A_LOCAL
  10.9.0.14/32,
  10.9.0.12/32,
  10.9.114.0/24,
  10.9.124.0/24,
  10.9.112.0/24
end-set
!
route-policy BGP_TO_RIP
  if destination in VPN_A_LOCAL then
    drop
  else
    pass
  endif
end-policy
!
route-policy RIP_TO_BGP
  if destination in VPN_A_LOCAL then
    pass
  else
    drop
  endif
end-policy
!

Comments

Sign In or Register to comment.