<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Routing on Aaron&#39;s Worthless Words</title>
    <link>https://a996c8ee.aww-3cz.pages.dev/tags/routing/</link>
    <description>Recent content in Routing on Aaron&#39;s Worthless Words</description>
    <generator>Hugo</generator>
    <language>en</language>
    <lastBuildDate>Sun, 07 Jul 2013 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://a996c8ee.aww-3cz.pages.dev/tags/routing/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>CCIE R&amp;S Written - Epic Fail (Again)</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2013/07/ccie-rs-written-epic-fail-again/</link>
      <pubDate>Sun, 07 Jul 2013 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2013/07/ccie-rs-written-epic-fail-again/</guid>
      <description>&lt;p&gt;Yes, I failed.  I think it&amp;rsquo;s pretty typical when you&amp;rsquo;re at Cisco Live, you stay out drinking and smoking cigars until 01:00, then you sit the exam at 08:00 the next morning.  Considering the situation I put myself in, I wasn&amp;rsquo;t very optimistic about passing, but I figured I had maybe a 40% chance to pass since I didn&amp;rsquo;t really even study.  Are you sensing a theme of ill-preparedness and self-sabotage?  Yeah, me, too.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Junos Basics - Routing Instances</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2012/11/junos-basics-routing-instances/</link>
      <pubDate>Thu, 01 Nov 2012 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2012/11/junos-basics-routing-instances/</guid>
      <description>&lt;p&gt;Here&amp;rsquo;s one that I use every day at work. We have multiple customers coming into the same router, and, as luck would have it, they all use 192.168.1.0/24 (OK&amp;hellip;not really but it might happen). That means we have to separate them into their own routing instance, or virtual router, so pass traffic to their firewall.  Think VRF lite on a Cisco router.  Let&amp;rsquo;s conflagrate.&lt;/p&gt;&#xA;&lt;p&gt;First, we configure the instance as a &lt;em&gt;virtual-router&lt;/em&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>CCIE R&amp;S Written - Epic WIN!</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/08/ccie-rs-written-epic-win/</link>
      <pubDate>Wed, 24 Aug 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/08/ccie-rs-written-epic-win/</guid>
      <description>&lt;p&gt;The wife and I had a romantic day driving several hours to a small town to take Cisco exams.  If this doesn&amp;rsquo;t get me some action, I don&amp;rsquo;t know what else to try.&lt;/p&gt;&#xA;&lt;p&gt;I&amp;rsquo;ve already used the phrases &amp;ldquo;skin of my teeth&amp;rdquo; and &amp;ldquo;a pass is a pass&amp;rdquo; on Twitter today for good reason.  Passing is a score of 790, and I blew that away with a 790.  One more lapse in concentration and I would have been making up more excuses instead of smiling.  I think I&amp;rsquo;ve mentioned this before, but I have this weird reaction to taking exams where I don&amp;rsquo;t get nervous at all until after I&amp;rsquo;m finished.  Walking into the testing center, I was fine.  Walking out, I was shaking like &lt;a href=&#34;http://www.cnn.com/2011/US/08/23/virginia.quake/&#34;&gt;Northern Virginia&lt;/a&gt;.  It was so bad that I could barely hold on to the door knob when trying to leave, so I guess that I&amp;rsquo;m really prouder than I thought I was.&lt;/p&gt;</description>
    </item>
    <item>
      <title>CCIE R&amp;S Written Materials</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/06/ccie-rs-written-materials/</link>
      <pubDate>Mon, 13 Jun 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/06/ccie-rs-written-materials/</guid>
      <description>&lt;p&gt;I&amp;rsquo;m scheduled to take the CCIE R&amp;amp;S Written exam on 10 July at Cisco Live, and I&amp;rsquo;ve been asked by a handful of people on Twitter exactly what materials I&amp;rsquo;m using.  I figured it would be a good idea to let everyone know so that we all can determine whether or not I&amp;rsquo;m on the right track.  I may get to the exam and find out that the books I&amp;rsquo;ve been reading aren&amp;rsquo;t even close.  It&amp;rsquo;s happened before.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Tagging External Routes in EIGRP</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/12/tagging-external-routes-in-eigrp/</link>
      <pubDate>Fri, 03 Dec 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/12/tagging-external-routes-in-eigrp/</guid>
      <description>&lt;p&gt;EIGRP allows you to tag external routes.  That is, any route redistributed into EIGRP can be tagged with a numeric descriptor from 0 to 4294967295.&lt;/p&gt;</description>
    </item>
    <item>
      <title>SLA Monitoring on the PIX/ASA</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/sla-monitoring-on-the-pixasa/</link>
      <pubDate>Fri, 15 Oct 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/sla-monitoring-on-the-pixasa/</guid>
      <description>&lt;p&gt;We&amp;rsquo;re working on an data center design for a customer, and they&amp;rsquo;ve dropped in two ISP links - each with it&amp;rsquo;s own managed router and public IP space off one of the Ethernet interfaces.  The idea is that they want to use the Internet links in an active-passive setup without getting their own IP addresses to avoid running BGP with the ISPs.  To top it off, the headend of their control is an ASA cluster, so we wind up with two interface on the Internet to treat with a local security level.  Oh, the joys of doing network design.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - Branch Office Routing</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-branch-office-routing/</link>
      <pubDate>Mon, 05 Jul 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-branch-office-routing/</guid>
      <description>&lt;p&gt;Corrigeme, por favor.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Notes&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What do IPSec tunnels give you when a branch office is on a broadband connection?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Privacy through encryption Authentication of the remote peer through ISAKMP Delivery of private data over the public Internet&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What do you need to configure to get your branch router talking to the Internet?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;ISP connection configuration such as PPPoE or PPPoA DHCP server configuration for internal users NAT Firewall services like inspection and filtering&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - PBR and IP SLA</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-pbr-and-ip-sla/</link>
      <pubDate>Thu, 24 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-pbr-and-ip-sla/</guid>
      <description>&lt;p&gt;Feel free to correct.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What&amp;rsquo;s the most primitive way to get traffic destined to a single host to use a different path than your dynamic IGP dictates?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Use a static route.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What&amp;rsquo;s the most primitive way to get traffic sourced from a single host to use a different path than your dynamic IGP dictates?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Use policy-based routing (PBR).&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What&amp;rsquo;s the most primitive way to get traffic sourced from a single host and destined for another host to use a different path than your dynamic IGP dictates?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Use PBR.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Renesys Analysis of SuproNet Announcement Debacle</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/02/renesys-analysis-of-supronet-announcement-debacle/</link>
      <pubDate>Wed, 18 Feb 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/02/renesys-analysis-of-supronet-announcement-debacle/</guid>
      <description>&lt;p&gt;Earl Zmijewski of &lt;a href=&#34;http://www.renesys.com/&#34; title=&#34;Renesys.com -- Renesys Corporation&#34;&gt;Renesys&lt;/a&gt; has &lt;a href=&#34;http://www.renesys.com/blog/2009/02/the-flap-heard-around-the-worl.shtml&#34; title=&#34;Renesys.com -- Reckless Driving on the Internet&#34;&gt;an analysis of the SuproNet incident&lt;/a&gt; that took down a good bit of the Internet on Monday.  From the &lt;a href=&#34;http://www.renesys.com/blog/&#34; title=&#34;Renesys.com -- Renesys Blog&#34;&gt;blog&lt;/a&gt;:&lt;/p&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;p&gt;This single Czech provider announcing a single prefix caused a huge increase in the global rate of updates, peaking at 107,780 updates &lt;em&gt;per-second&lt;/em&gt;. This peak occurred at 16:30:54 UTC, less than 8 minutes after the first announcement.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cheat Sheets from Packetlife.net</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2008/05/cheat-sheets-from-packetlifenet/</link>
      <pubDate>Wed, 28 May 2008 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2008/05/cheat-sheets-from-packetlifenet/</guid>
      <description>&lt;p&gt;My friend Josh over at &lt;a href=&#34;http://blindhog.net&#34; title=&#34;Blindhog.net -- Main&#34;&gt;blindhog.net&lt;/a&gt; has found a collection of cheat sheet gems for the network dude(tte).  There&amp;rsquo;s sheets on BGP, OSPF, Subnetting, QoS, connector types, and more.  Check it out.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;http://packetlife.net/cheatsheets/&#34; title=&#34;Packetlife.net -- Cheat Sheets&#34;&gt;Cheat Sheets - Packetlife.net&lt;/a&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Reliable Static Routing</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2008/04/reliable-static-routing/</link>
      <pubDate>Thu, 24 Apr 2008 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2008/04/reliable-static-routing/</guid>
      <description>&lt;p&gt;Here&amp;rsquo;s a scenario I ran into long ago. We had several sites that had a frame relay link back to headquarters and a DSL line. Each link was terminated into a different router on a flat LAN with the users. The DSL was for Internet access, but also terminated a VPN as a backup to the frame circuit. The requirements were something like this.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Corporate traffic had to go across the frame relay link during normal operations.&lt;/li&gt;&#xA;&lt;li&gt;Internet traffic had to go across the DSL line during normal operations.&lt;/li&gt;&#xA;&lt;li&gt;If the DSL circuit went down, Internet traffic should be moved over to the frame relay circuit to use the corporate Internet link.&lt;/li&gt;&#xA;&lt;li&gt;If the frame went down, traffic should be sent out the VPN tunnel for access to corporate stuff.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;We set the default routes of the machines (via DHCP) to the frame relay router. That router&amp;rsquo;s default route sent traffic to the DSL router, which, of course, had a default route towards the provider. Both routers were participating in EIGRP with the rest of the corporate network, so they all knew where to route traffic destined for corporate traffic. If there was a frame outage, the default routes kicked in and sent traffic to the DSL router, which had the VPN tunnels. The problem came when there was a DSL outage.&lt;/p&gt;</description>
    </item>
    <item>
      <title>BGP Route-reflectors</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2008/04/bgp-route-reflectors/</link>
      <pubDate>Thu, 17 Apr 2008 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2008/04/bgp-route-reflectors/</guid>
      <description>&lt;p&gt;If you&amp;rsquo;re running iBGP, you may have run across this. What if you had three routers &amp;ndash; R0, R1, R2 &amp;ndash; that were running BGP under the same ASN, but R1 and R2 weren&amp;rsquo;t peered? Any routes coming from R1 would not show up on R2 and vice versa. iBGP, by standard, does not pass on routes it learned via the same ASN. That is, if a router learns a route from another router in the same autonomous system, the route does not get forwarded. I guess it just assumes that all iBGP routers are fully meshed&amp;hellip;I don&amp;rsquo;t really know.&lt;/p&gt;</description>
    </item>
    <item>
      <title>EIGRP Basics</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2008/04/eigrp-basics/</link>
      <pubDate>Fri, 11 Apr 2008 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2008/04/eigrp-basics/</guid>
      <description>&lt;p&gt;I realized the other day that I haven&amp;rsquo;t mentioned EIGRP once. As a Cisco guy, I think I&amp;rsquo;m required to do at least one article on it, so here it goes.&lt;/p&gt;&#xA;&lt;p&gt;Enhanced Interior Gateway Routing Protocol (EIGRP) is a Cisco-proprietary routing protocol. Routing protocols share routes, right, but &amp;ldquo;interior&amp;rdquo; is the keyword here; it&amp;rsquo;s used to distribute routes on your internal network (Contrast that with BGP, which is allows you to share your routes with others). In a nutshell, each router in the EIGRP cloud tells everyone what subnets it has connected to him.  A receiving router then combines that information with everything that it already knows and passes on any new information.  Do that recursively for a while, and, eventually, every routers knows all the subnets in the network.&lt;/p&gt;</description>
    </item>
    <item>
      <title>HSRP vs. GLBP</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2008/03/hsrp-vs-glbp/</link>
      <pubDate>Tue, 18 Mar 2008 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2008/03/hsrp-vs-glbp/</guid>
      <description>&lt;p&gt;HSRP (Hot Standby Router Protocol) is a Cisco-proprietary method for supplying a highly-available gateway for hosts to use. GLBP (Gateway Load Balancing Protocol) does the same thing. So, what&amp;rsquo;s the difference?&lt;/p&gt;&#xA;&lt;p&gt;HSRP works on layer 3 and provides a standby IP address for hosts on that network to use as their gateway (or other routers to use as a next-hop for a route). Two or more routers are configured with the standby IP on a broadcast interface (usually an Ethernet of some kind), and a passive election is held to determine the active router. This router answers ARP requests for the standby IP with a virtual MAC address, so every host that sends packets to the standby IP winds up sending it to the active router. If the active router dies, another election is held, and a new king is crowned who answers for the virtual MAC; the hosts never know anything happened.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
