Skip to main content

Public VRF BGP

Topology

BGP-Public.png

Notes
  • External VRF is, as well,  тrepresented by three BGP ASNs merged into a logical ring
  • External connectivity is provided by 4 IP circuits from 2 separate ISPs 
  • Traffic control in the perimeter is provided by NGFW. As our AS is non-transit, external address table is represented by 0.0.0.0/ prefixes. Other prefixes (local range excluding) are filtered out in order to increase NGFW stability.
  • Flow control is achieved via MED metric
  • Convergence - via BFD
  • Security - via authentication and IP ACLs