It seems, that case doesn't work with prefix, only with single ip
As I see, this construct:
case net {
1.1.1.1:accept;
2.2.2.2:accept;
else: reject;
}
works fine.
Maybe, ROA table can help you to simplify config?
Hi all!
I try to implement simple filter which rejects all prefixes except a few with 'case' control this way:
filter permit_white { case net { 1.1.1.1/32: accept; 2.2.2.2/32: accept; else: reject; } }
But syntax check fails on line ‘1.1.1.1/32: accept;’. I read everything on Internet what was found, but cannot understand what is wrong.
------------------------------------------ Служба поддержки серверов Группа сетевого администрирования ДПП.УТП.СПС ЗАО ПФ «СКБ-Контур», Тел. +7 (343) 344-11-50 доб. 75352 e-mail: dc-...@skbkontur.ru
|
--
С уважением,
Василий Олейников
Системный администратор
Отдел эксплуатации и развития магистральной сети
Служба СПО ОАО "Уфанет"
тел. +7 (347) 2-900-402 вн.3314
моб. +7 937 333 45 56