Blackholing
BKNIX provide well-known BGP Community for Blackholing in
Route Server.
BGP Community |
Description |
65535:666 |
Blackhole |
Please see
RFC 7999 “BLACKHOLE Community” for more detail.
Currently we offer the following options:
- Blackhole route must be marked with community 65535:666
- Size of Blackhole route should specific as /32 for IPv4 and /128 for IPv6 only.
- Advertising Blackhole route to certain BGP neighbors respecting BGP community filtering described on this page.
Caveat : Blackhole route must be advertise from the range of their own address space!
Example
Config guide
router bgp (your AS)
.
.
.
address-family ipv4
network your.own.ip.address mask 255.255.255.255 route-map bknix-rs-rtbh
.
.
.
exit-address-family
!
!
route-map bknix-rs-rtbh permit 10
set community 65535:666 #In order to announce to specific peers, you can add other communities defined in this section.
!
ip route your.own.ip.address 255.255.255.255 Null0 #Because BGP will not announce prefix doesn't exist in your routing table