3 * Copyright 2009-2016, LabN Consulting, L.L.C.
6 * This program is free software; you can redistribute it and/or
7 * modify it under the terms of the GNU General Public License
8 * as published by the Free Software Foundation; either version 2
9 * of the License, or (at your option) any later version.
11 * This program is distributed in the hope that it will be useful,
12 * but WITHOUT ANY WARRANTY; without even the implied warranty of
13 * MERCHANTABILITY or FITNESS FOR A PARTICULAR PURPOSE. See the
14 * GNU General Public License for more details.
16 * You should have received a copy of the GNU General Public License along
17 * with this program; see the file COPYING; if not, write to the Free Software
18 * Foundation, Inc., 51 Franklin St, Fifth Floor, Boston, MA 02110-1301 USA
22 * File: vnc_export_bgp.c
23 * Purpose: Export routes to BGP directly (not via zebra)
26 #include "lib/zebra.h"
27 #include "lib/prefix.h"
28 #include "lib/agg_table.h"
31 #include "lib/stream.h"
32 #include "lib/memory.h"
33 #include "lib/linklist.h"
34 #include "lib/plist.h"
35 #include "lib/routemap.h"
36 #include "lib/lib_errors.h"
38 #include "bgpd/bgpd.h"
39 #include "bgpd/bgp_ecommunity.h"
40 #include "bgpd/bgp_attr.h"
41 #include "bgpd/bgp_aspath.h"
43 #include "bgpd/rfapi/vnc_export_bgp.h"
44 #include "bgpd/rfapi/vnc_export_bgp_p.h"
45 #include "bgpd/rfapi/vnc_export_table.h"
46 #include "bgpd/rfapi/bgp_rfapi_cfg.h"
47 #include "bgpd/rfapi/rfapi.h"
48 #include "bgpd/rfapi/rfapi_import.h"
49 #include "bgpd/rfapi/rfapi_private.h"
50 #include "bgpd/rfapi/rfapi_backend.h"
51 #include "bgpd/rfapi/rfapi_vty.h"
52 #include "bgpd/rfapi/vnc_debug.h"
55 static void vnc_direct_add_rn_group_rd(struct bgp
*bgp
,
56 struct rfapi_nve_group_cfg
*rfg
,
57 struct agg_node
*rn
, struct attr
*attr
,
59 struct rfapi_descriptor
*irfd
);
61 /***********************************************************************
62 * Export methods that set nexthop to CE (from 5226 roo EC) BEGIN
63 ***********************************************************************/
66 * Memory allocation approach: make a ghost attr that
67 * has non-interned parts for the modifications. ghost attr
68 * memory is allocated by caller.
70 * - extract ce (=5226) EC and use as new nexthop
71 * - strip Tunnel Encap attr
74 static void encap_attr_export_ce(struct attr
*new, struct attr
*orig
,
75 struct prefix
*use_nexthop
)
78 * Make "new" a ghost attr copy of "orig"
80 memset(new, 0, sizeof(struct attr
));
86 switch (use_nexthop
->family
) {
88 new->nexthop
= use_nexthop
->u
.prefix4
;
89 new->mp_nexthop_len
= BGP_ATTR_NHLEN_IPV4
; /* bytes */
90 new->flag
|= ATTR_FLAG_BIT(BGP_ATTR_NEXT_HOP
);
94 new->mp_nexthop_global
= use_nexthop
->u
.prefix6
;
95 new->mp_nexthop_len
= BGP_ATTR_NHLEN_IPV6_GLOBAL
; /* bytes */
106 * Note that it will be deleted when BGP sends to any eBGP
107 * peer unless PEER_FLAG_MED_UNCHANGED is set:
109 * neighbor NEIGHBOR attribute-unchanged med
111 if (!CHECK_FLAG(new->flag
, BGP_ATTR_MULTI_EXIT_DISC
)) {
112 if (CHECK_FLAG(new->flag
, BGP_ATTR_LOCAL_PREF
)) {
113 if (new->local_pref
> 255)
116 new->med
= 255 - new->local_pref
;
118 new->med
= 255; /* shouldn't happen */
120 new->flag
|= ATTR_FLAG_BIT(BGP_ATTR_MULTI_EXIT_DISC
);
124 * "new" is now a ghost attr:
125 * - it owns an "extra" struct
126 * - it owns any non-interned parts
127 * - any references to interned parts are not counted
129 * Caller should, after using the attr, call:
130 * - bgp_attr_flush() to free non-interned parts
134 static int getce(struct bgp
*bgp
, struct attr
*attr
, struct prefix
*pfx_ce
)
138 uint16_t localadmin
= bgp
->rfapi_cfg
->resolve_nve_roo_local_admin
;
140 for (ecp
= attr
->ecommunity
->val
, i
= 0; i
< attr
->ecommunity
->size
;
141 ++i
, ecp
+= ECOMMUNITY_SIZE
) {
143 if (VNC_DEBUG(EXPORT_BGP_GETCE
)) {
145 "%s: %02x %02x %02x %02x %02x %02x %02x %02x",
146 __func__
, ecp
[0], ecp
[1], ecp
[2], ecp
[3],
147 ecp
[4], ecp
[5], ecp
[6], ecp
[7]);
153 if (ecp
[0] != 1 || ecp
[1] != 3) {
158 * Match local admin value?
160 if (ecp
[6] != ((localadmin
& 0xff00) >> 8)
161 || ecp
[7] != (localadmin
& 0xff))
164 memset((uint8_t *)pfx_ce
, 0, sizeof(*pfx_ce
));
165 memcpy(&pfx_ce
->u
.prefix4
, ecp
+ 2, 4);
166 pfx_ce
->family
= AF_INET
;
167 pfx_ce
->prefixlen
= 32;
175 void vnc_direct_bgp_add_route_ce(struct bgp
*bgp
, struct agg_node
*rn
,
176 struct bgp_path_info
*bpi
)
178 struct attr
*attr
= bpi
->attr
;
179 struct peer
*peer
= bpi
->peer
;
180 struct prefix
*prefix
= &rn
->p
;
181 afi_t afi
= family2afi(prefix
->family
);
182 struct bgp_node
*urn
;
183 struct bgp_path_info
*ubpi
;
186 struct prefix ce_nexthop
;
187 struct prefix post_routemap_nexthop
;
191 flog_err(EC_LIB_DEVELOPMENT
, "%s: can't get afi of route node",
196 if ((bpi
->type
!= ZEBRA_ROUTE_BGP
)
197 || (bpi
->sub_type
!= BGP_ROUTE_NORMAL
198 && bpi
->sub_type
!= BGP_ROUTE_RFP
199 && bpi
->sub_type
!= BGP_ROUTE_STATIC
)) {
201 vnc_zlog_debug_verbose(
202 "%s: wrong route type/sub_type for export, skipping",
207 /* check bgp redist flag for vnc direct ("vpn") routes */
208 if (!bgp
->redist
[afi
][ZEBRA_ROUTE_VNC_DIRECT
]) {
209 vnc_zlog_debug_verbose(
210 "%s: bgp redistribution of VNC direct routes is off",
215 if (!bgp
->rfapi_cfg
) {
216 vnc_zlog_debug_verbose("%s: bgp->rfapi_cfg is NULL, skipping",
221 if (!VNC_EXPORT_BGP_CE_ENABLED(bgp
->rfapi_cfg
)) {
222 vnc_zlog_debug_verbose(
223 "%s: export-to-bgp ce mode not enabled, skipping",
231 if (bgp
->rfapi_cfg
->plist_export_bgp
[afi
]) {
232 if (prefix_list_apply(bgp
->rfapi_cfg
->plist_export_bgp
[afi
],
235 vnc_zlog_debug_verbose(
236 "%s: prefix list denied, skipping", __func__
);
244 * This works only for IPv4 because IPv6 addresses are too big
245 * to fit in an extended community
247 if (getce(bgp
, attr
, &ce_nexthop
)) {
248 vnc_zlog_debug_verbose("%s: EC has no encoded CE, skipping",
254 * Is this route already represented in the unicast RIB?
255 * (look up prefix; compare route type, sub_type, peer, nexthop)
257 urn
= bgp_afi_node_get(bgp
->rib
[afi
][SAFI_UNICAST
], afi
, SAFI_UNICAST
,
259 for (ubpi
= bgp_node_get_bgp_path_info(urn
); ubpi
; ubpi
= ubpi
->next
) {
260 struct prefix unicast_nexthop
;
262 if (CHECK_FLAG(ubpi
->flags
, BGP_PATH_REMOVED
))
265 rfapiUnicastNexthop2Prefix(afi
, ubpi
->attr
, &unicast_nexthop
);
267 if (ubpi
->type
== ZEBRA_ROUTE_VNC_DIRECT
268 && ubpi
->sub_type
== BGP_ROUTE_REDISTRIBUTE
269 && ubpi
->peer
== peer
270 && prefix_same(&unicast_nexthop
, &ce_nexthop
)) {
272 vnc_zlog_debug_verbose(
273 "%s: already have matching exported unicast route, skipping",
280 * Construct new attribute set with CE addr as
281 * nexthop and without Tunnel Encap attr
283 encap_attr_export_ce(&hattr
, attr
, &ce_nexthop
);
284 if (bgp
->rfapi_cfg
->routemap_export_bgp
) {
285 struct bgp_path_info info
;
286 route_map_result_t ret
;
288 memset(&info
, 0, sizeof(info
));
291 ret
= route_map_apply(bgp
->rfapi_cfg
->routemap_export_bgp
,
292 prefix
, RMAP_BGP
, &info
);
293 if (ret
== RMAP_DENYMATCH
) {
294 bgp_attr_flush(&hattr
);
299 iattr
= bgp_attr_intern(&hattr
);
300 bgp_attr_flush(&hattr
);
303 * Rule: disallow route-map alteration of next-hop, because it
304 * would make it too difficult to keep track of the correspondence
305 * between VPN routes and unicast routes.
307 rfapiUnicastNexthop2Prefix(afi
, iattr
, &post_routemap_nexthop
);
309 if (!prefix_same(&ce_nexthop
, &post_routemap_nexthop
)) {
310 vnc_zlog_debug_verbose(
311 "%s: route-map modification of nexthop not allowed, skipping",
313 bgp_attr_unintern(&iattr
);
317 bgp_update(peer
, prefix
, 0, /* addpath_id */
318 iattr
, /* bgp_update copies this attr */
319 afi
, SAFI_UNICAST
, ZEBRA_ROUTE_VNC_DIRECT
,
320 BGP_ROUTE_REDISTRIBUTE
, NULL
, /* RD not used for unicast */
321 NULL
, 0, /* tag not used for unicast */
322 0, NULL
); /* EVPN not used */
323 bgp_attr_unintern(&iattr
);
328 * "Withdrawing a Route" export process
330 void vnc_direct_bgp_del_route_ce(struct bgp
*bgp
, struct agg_node
*rn
,
331 struct bgp_path_info
*bpi
)
333 afi_t afi
= family2afi(rn
->p
.family
);
334 struct bgp_path_info
*vbpi
;
335 struct prefix ce_nexthop
;
338 flog_err(EC_LIB_DEVELOPMENT
, "%s: bad afi", __func__
);
342 /* check bgp redist flag for vnc direct ("vpn") routes */
343 if (!bgp
->redist
[afi
][ZEBRA_ROUTE_VNC_DIRECT
]) {
344 vnc_zlog_debug_verbose(
345 "%s: bgp redistribution of VNC direct routes is off",
350 if (!bgp
->rfapi_cfg
) {
351 vnc_zlog_debug_verbose("%s: bgp->rfapi_cfg is NULL, skipping",
355 if (!VNC_EXPORT_BGP_CE_ENABLED(bgp
->rfapi_cfg
)) {
356 vnc_zlog_debug_verbose(
357 "%s: export-to-bgp ce mode not enabled, skipping",
364 * This works only for IPv4 because IPv6 addresses are too big
365 * to fit in an extended community
367 if (getce(bgp
, bpi
->attr
, &ce_nexthop
)) {
368 vnc_zlog_debug_verbose("%s: EC has no encoded CE, skipping",
374 * Look for other VPN routes with same prefix, same 5226 CE,
375 * same peer. If at least one is present, don't remove the
376 * route from the unicast RIB
379 for (vbpi
= rn
->info
; vbpi
; vbpi
= vbpi
->next
) {
383 if (bpi
->peer
!= vbpi
->peer
)
385 if (getce(bgp
, vbpi
->attr
, &ce
))
387 if (prefix_same(&ce
, &ce_nexthop
)) {
388 vnc_zlog_debug_verbose(
389 "%s: still have a route via CE, not deleting unicast",
398 bgp_withdraw(bpi
->peer
, &rn
->p
, 0, /* addpath_id */
399 NULL
, /* attr, ignored */
400 afi
, SAFI_UNICAST
, ZEBRA_ROUTE_VNC_DIRECT
,
401 BGP_ROUTE_REDISTRIBUTE
, NULL
, /* RD not used for unicast */
402 NULL
, 0, NULL
); /* tag not used for unicast */
405 static void vnc_direct_bgp_vpn_enable_ce(struct bgp
*bgp
, afi_t afi
)
408 struct bgp_path_info
*ri
;
410 vnc_zlog_debug_verbose("%s: entry, afi=%d", __func__
, afi
);
415 if (!(bgp
->rfapi_cfg
))
418 if (!VNC_EXPORT_BGP_CE_ENABLED(bgp
->rfapi_cfg
)) {
419 vnc_zlog_debug_verbose(
420 "%s: export of CE routes not enabled, skipping",
425 if (afi
!= AFI_IP
&& afi
!= AFI_IP6
) {
426 vnc_zlog_debug_verbose("%s: bad afi: %d", __func__
, afi
);
431 * Go through entire ce import table and export to BGP unicast.
433 for (rn
= agg_route_top(bgp
->rfapi
->it_ce
->imported_vpn
[afi
]); rn
;
434 rn
= agg_route_next(rn
)) {
440 char prefixstr
[PREFIX_STRLEN
];
442 prefix2str(&rn
->p
, prefixstr
, sizeof(prefixstr
));
443 vnc_zlog_debug_verbose("%s: checking prefix %s",
444 __func__
, prefixstr
);
447 for (ri
= rn
->info
; ri
; ri
= ri
->next
) {
449 vnc_zlog_debug_verbose("%s: ri->sub_type: %d", __func__
,
452 if (ri
->sub_type
== BGP_ROUTE_NORMAL
453 || ri
->sub_type
== BGP_ROUTE_RFP
454 || ri
->sub_type
== BGP_ROUTE_STATIC
) {
456 vnc_direct_bgp_add_route_ce(bgp
, rn
, ri
);
462 static void vnc_direct_bgp_vpn_disable_ce(struct bgp
*bgp
, afi_t afi
)
466 vnc_zlog_debug_verbose("%s: entry, afi=%d", __func__
, afi
);
471 if (afi
!= AFI_IP
&& afi
!= AFI_IP6
) {
472 vnc_zlog_debug_verbose("%s: bad afi: %d", __func__
, afi
);
477 * Go through the entire BGP unicast table and remove routes that
480 for (rn
= bgp_table_top(bgp
->rib
[afi
][SAFI_UNICAST
]); rn
;
481 rn
= bgp_route_next(rn
)) {
483 struct bgp_path_info
*ri
;
484 struct bgp_path_info
*next
;
486 for (ri
= bgp_node_get_bgp_path_info(rn
), next
= NULL
;
491 if (ri
->type
== ZEBRA_ROUTE_VNC_DIRECT
492 && ri
->sub_type
== BGP_ROUTE_REDISTRIBUTE
) {
495 ri
->peer
, &rn
->p
, /* prefix */
498 AFI_IP
, SAFI_UNICAST
,
499 ZEBRA_ROUTE_VNC_DIRECT
,
500 BGP_ROUTE_REDISTRIBUTE
,
501 NULL
, /* RD not used for unicast */
503 NULL
); /* tag not used for unicast */
509 /***********************************************************************
510 * Export methods that set nexthop to CE (from 5226 roo EC) END
511 ***********************************************************************/
513 /***********************************************************************
514 * Export methods that proxy nexthop BEGIN
515 ***********************************************************************/
517 static struct ecommunity
*vnc_route_origin_ecom(struct agg_node
*rn
)
519 struct ecommunity
*new;
520 struct bgp_path_info
*bpi
;
525 new = ecommunity_new();
527 for (bpi
= rn
->info
; bpi
; bpi
= bpi
->next
) {
529 struct ecommunity_val roec
;
531 switch (BGP_MP_NEXTHOP_FAMILY(bpi
->attr
->mp_nexthop_len
)) {
533 memset(&roec
, 0, sizeof(roec
));
537 &bpi
->attr
->mp_nexthop_global_in
.s_addr
, 4);
540 ecommunity_add_val(new, &roec
);
543 /* No support for IPv6 addresses in extended communities
550 ecommunity_free(&new);
557 static struct ecommunity
*vnc_route_origin_ecom_single(struct in_addr
*origin
)
559 struct ecommunity
*new;
560 struct ecommunity_val roec
;
562 memset(&roec
, 0, sizeof(roec
));
565 memcpy(roec
.val
+ 2, &origin
->s_addr
, 4);
569 new = ecommunity_new();
571 ecommunity_add_val(new, &roec
);
574 ecommunity_free(&new);
583 * New memory allocation approach: make a ghost attr that
584 * has non-interned parts for the modifications. ghost attr
585 * memory is allocated by caller.
588 encap_attr_export(struct attr
*new, struct attr
*orig
,
589 struct prefix
*new_nexthop
,
590 struct agg_node
*rn
) /* for VN addrs for ecom list */
591 /* if rn is 0, use route's nexthop */
593 struct prefix orig_nexthop
;
594 struct prefix
*use_nexthop
;
595 static struct ecommunity
*ecom_ro
;
598 use_nexthop
= new_nexthop
;
600 use_nexthop
= &orig_nexthop
;
601 orig_nexthop
.family
=
602 BGP_MP_NEXTHOP_FAMILY(orig
->mp_nexthop_len
);
603 if (orig_nexthop
.family
== AF_INET
) {
604 orig_nexthop
.prefixlen
= 32;
605 orig_nexthop
.u
.prefix4
= orig
->mp_nexthop_global_in
;
606 } else if (orig_nexthop
.family
== AF_INET6
) {
607 orig_nexthop
.prefixlen
= 128;
608 orig_nexthop
.u
.prefix6
= orig
->mp_nexthop_global
;
610 return -1; /* FAIL - can't compute nexthop */
616 * Make "new" a ghost attr copy of "orig"
618 memset(new, 0, sizeof(struct attr
));
624 switch (use_nexthop
->family
) {
626 new->nexthop
= use_nexthop
->u
.prefix4
;
627 new->mp_nexthop_len
= BGP_ATTR_NHLEN_IPV4
; /* bytes */
628 new->flag
|= ATTR_FLAG_BIT(BGP_ATTR_NEXT_HOP
);
632 new->mp_nexthop_global
= use_nexthop
->u
.prefix6
;
633 new->mp_nexthop_len
= BGP_ATTR_NHLEN_IPV6_GLOBAL
; /* bytes */
642 ecom_ro
= vnc_route_origin_ecom(rn
);
644 /* TBD use lcom for IPv6 */
645 ecom_ro
= vnc_route_origin_ecom_single(&use_nexthop
->u
.prefix4
);
647 if (new->ecommunity
) {
650 ecommunity_merge(ecom_ro
, new->ecommunity
);
652 new->ecommunity
= ecom_ro
;
655 new->flag
|= ATTR_FLAG_BIT(BGP_ATTR_EXT_COMMUNITIES
);
661 * Note that it will be deleted when BGP sends to any eBGP
662 * peer unless PEER_FLAG_MED_UNCHANGED is set:
664 * neighbor NEIGHBOR attribute-unchanged med
666 if (!CHECK_FLAG(new->flag
, BGP_ATTR_MULTI_EXIT_DISC
)) {
667 if (CHECK_FLAG(new->flag
, BGP_ATTR_LOCAL_PREF
)) {
668 if (new->local_pref
> 255)
671 new->med
= 255 - new->local_pref
;
673 new->med
= 255; /* shouldn't happen */
675 new->flag
|= ATTR_FLAG_BIT(BGP_ATTR_MULTI_EXIT_DISC
);
679 * "new" is now a ghost attr:
680 * - it owns an "extra" struct
681 * - it owns any non-interned parts
682 * - any references to interned parts are not counted
684 * Caller should, after using the attr, call:
685 * - bgp_attr_flush() to free non-interned parts
692 * "Adding a Route" export process
694 void vnc_direct_bgp_add_prefix(struct bgp
*bgp
,
695 struct rfapi_import_table
*import_table
,
698 struct attr attr
= {0};
699 struct listnode
*node
, *nnode
;
700 struct rfapi_rfg_name
*rfgn
;
701 afi_t afi
= family2afi(rn
->p
.family
);
704 flog_err(EC_LIB_DEVELOPMENT
, "%s: can't get afi of route node",
709 /* check bgp redist flag for vnc direct ("vpn") routes */
710 if (!bgp
->redist
[afi
][ZEBRA_ROUTE_VNC_DIRECT
]) {
711 vnc_zlog_debug_verbose(
712 "%s: bgp redistribution of VNC direct routes is off",
717 if (!bgp
->rfapi_cfg
) {
718 vnc_zlog_debug_verbose("%s: bgp->rfapi_cfg is NULL, skipping",
723 if (!VNC_EXPORT_BGP_GRP_ENABLED(bgp
->rfapi_cfg
)) {
724 vnc_zlog_debug_verbose(
725 "%s: export-to-bgp group mode not enabled, skipping",
730 if (!listcount(bgp
->rfapi_cfg
->rfg_export_direct_bgp_l
)) {
731 vnc_zlog_debug_verbose(
732 "%s: no bgp-direct export nve group, skipping",
737 bgp_attr_default_set(&attr
, BGP_ORIGIN_INCOMPLETE
);
738 /* TBD set some configured med, see add_vnc_route() */
740 vnc_zlog_debug_verbose(
741 "%s: looping over nve-groups in direct-bgp export list",
744 for (ALL_LIST_ELEMENTS(bgp
->rfapi_cfg
->rfg_export_direct_bgp_l
, node
,
750 * If nve group is not defined yet, skip it
756 * If the nve group uses a different import table, skip it
758 if (import_table
!= rfgn
->rfg
->rfapi_import_table
)
762 * if no NVEs currently associated with this group, skip it
764 if (rfgn
->rfg
->type
!= RFAPI_GROUP_CFG_VRF
&& !rfgn
->rfg
->nves
)
768 * per-nve-group prefix list check
770 if (rfgn
->rfg
->plist_export_bgp
[afi
]) {
771 if (prefix_list_apply(rfgn
->rfg
->plist_export_bgp
[afi
],
778 if (rfgn
->rfg
->type
== RFAPI_GROUP_CFG_VRF
) {
779 vnc_direct_add_rn_group_rd(bgp
, rfgn
->rfg
, rn
, &attr
,
780 afi
, rfgn
->rfg
->rfd
);
783 * - but consistent with rest of function
788 * For each NVE that is assigned to the export nve group,
790 * a route with that NVE as its next hop
792 for (ln
= listhead(rfgn
->rfg
->nves
); ln
;
793 ln
= listnextnode(ln
)) {
794 vnc_direct_add_rn_group_rd(bgp
, rfgn
->rfg
, rn
, &attr
,
795 afi
, listgetdata(ln
));
799 aspath_unintern(&attr
.aspath
);
803 * "Withdrawing a Route" export process
805 void vnc_direct_bgp_del_prefix(struct bgp
*bgp
,
806 struct rfapi_import_table
*import_table
,
809 struct listnode
*node
, *nnode
;
810 struct rfapi_rfg_name
*rfgn
;
811 afi_t afi
= family2afi(rn
->p
.family
);
814 flog_err(EC_LIB_DEVELOPMENT
, "%s: can't get afi route node",
819 /* check bgp redist flag for vnc direct ("vpn") routes */
820 if (!bgp
->redist
[afi
][ZEBRA_ROUTE_VNC_DIRECT
]) {
821 vnc_zlog_debug_verbose(
822 "%s: bgp redistribution of VNC direct routes is off",
827 if (!bgp
->rfapi_cfg
) {
828 vnc_zlog_debug_verbose("%s: bgp->rfapi_cfg is NULL, skipping",
833 if (!VNC_EXPORT_BGP_GRP_ENABLED(bgp
->rfapi_cfg
)) {
834 vnc_zlog_debug_verbose(
835 "%s: export-to-bgp group mode not enabled, skipping",
840 if (!listcount(bgp
->rfapi_cfg
->rfg_export_direct_bgp_l
)) {
841 vnc_zlog_debug_verbose(
842 "%s: no bgp-direct export nve group, skipping",
847 for (ALL_LIST_ELEMENTS(bgp
->rfapi_cfg
->rfg_export_direct_bgp_l
, node
,
853 * If nve group is not defined yet, skip it
859 * if no NVEs currently associated with this group, skip it
861 if (rfgn
->rfg
->type
!= RFAPI_GROUP_CFG_VRF
&& !rfgn
->rfg
->nves
)
865 * If the nve group uses a different import table,
868 if (import_table
!= rfgn
->rfg
->rfapi_import_table
)
871 if (rfgn
->rfg
->type
== RFAPI_GROUP_CFG_VRF
) {
873 struct rfapi_descriptor
*irfd
;
875 irfd
= rfgn
->rfg
->rfd
;
877 if (rfapiRaddr2Qprefix(&irfd
->vn_addr
, &nhp
))
880 bgp_withdraw(irfd
->peer
, &rn
->p
, /* prefix */
882 NULL
, /* attr, ignored */
883 afi
, SAFI_UNICAST
, ZEBRA_ROUTE_VNC_DIRECT
,
884 BGP_ROUTE_REDISTRIBUTE
,
885 NULL
, /* RD not used for unicast */
887 NULL
); /* tag not used for unicast */
890 * - but consistent with rest of function
895 * For each NVE that is assigned to the export nve group,
897 * a route with that NVE as its next hop
899 for (ln
= listhead(rfgn
->rfg
->nves
); ln
;
900 ln
= listnextnode(ln
)) {
903 struct rfapi_descriptor
*irfd
;
905 irfd
= listgetdata(ln
);
907 if (rfapiRaddr2Qprefix(&irfd
->vn_addr
, &nhp
))
910 bgp_withdraw(irfd
->peer
, &rn
->p
, /* prefix */
912 NULL
, /* attr, ignored */
913 afi
, SAFI_UNICAST
, ZEBRA_ROUTE_VNC_DIRECT
,
914 BGP_ROUTE_REDISTRIBUTE
,
915 NULL
, /* RD not used for unicast */
917 NULL
); /* tag not used for unicast */
922 void vnc_direct_bgp_add_nve(struct bgp
*bgp
, struct rfapi_descriptor
*rfd
)
924 struct listnode
*node
, *nnode
;
925 struct rfapi_rfg_name
*rfgn
;
926 struct rfapi_nve_group_cfg
*rfg
= rfd
->rfg
;
927 afi_t afi
= family2afi(rfd
->vn_addr
.addr_family
);
930 flog_err(EC_LIB_DEVELOPMENT
, "%s: can't get afi of nve vn addr",
937 if (!bgp
->rfapi_cfg
) {
938 vnc_zlog_debug_verbose("%s: bgp->rfapi_cfg is NULL, skipping",
942 if (!VNC_EXPORT_BGP_GRP_ENABLED(bgp
->rfapi_cfg
)) {
943 vnc_zlog_debug_verbose(
944 "%s: export-to-bgp group mode not enabled, skipping",
949 if (!bgp
->redist
[afi
][ZEBRA_ROUTE_VNC_DIRECT
]) {
950 vnc_zlog_debug_verbose(
951 "%s: bgp redistribution of VNC direct routes is off",
957 * Loop over the list of NVE-Groups configured for
958 * exporting to direct-bgp and see if this new NVE's
959 * group is among them.
961 for (ALL_LIST_ELEMENTS(bgp
->rfapi_cfg
->rfg_export_direct_bgp_l
, node
,
965 * Yes, this NVE's group is configured for export to direct-bgp
967 if (rfgn
->rfg
== rfg
) {
969 struct agg_table
*rt
= NULL
;
971 struct attr attr
= {0};
972 struct rfapi_import_table
*import_table
;
975 import_table
= rfg
->rfapi_import_table
;
977 bgp_attr_default_set(&attr
, BGP_ORIGIN_INCOMPLETE
);
978 /* TBD set some configured med, see add_vnc_route() */
980 if (afi
== AFI_IP
|| afi
== AFI_IP6
) {
981 rt
= import_table
->imported_vpn
[afi
];
983 flog_err(EC_LIB_DEVELOPMENT
, "%s: bad afi %d",
989 * Walk the NVE-Group's VNC Import table
991 for (rn
= agg_route_top(rt
); rn
;
992 rn
= agg_route_next(rn
)) {
997 struct rfapi_descriptor
*irfd
= rfd
;
1000 struct bgp_path_info info
;
1002 if (rfapiRaddr2Qprefix(&irfd
->vn_addr
,
1007 * per-nve-group prefix list check
1009 if (rfgn
->rfg
->plist_export_bgp
[afi
]) {
1010 if (prefix_list_apply(
1011 rfgn
->rfg
->plist_export_bgp
1021 * Construct new attribute set with
1023 * nexthop and without Tunnel Encap attr
1025 if (encap_attr_export(&hattr
, &attr
,
1029 if (rfgn
->rfg
->routemap_export_bgp
) {
1030 route_map_result_t ret
;
1031 info
.peer
= irfd
->peer
;
1033 ret
= route_map_apply(
1035 ->routemap_export_bgp
,
1038 if (ret
== RMAP_DENYMATCH
) {
1039 bgp_attr_flush(&hattr
);
1044 iattr
= bgp_attr_intern(&hattr
);
1045 bgp_attr_flush(&hattr
);
1047 irfd
->peer
, &rn
->p
, /* prefix */
1049 iattr
, /* bgp_update copies
1052 ZEBRA_ROUTE_VNC_DIRECT
,
1053 BGP_ROUTE_REDISTRIBUTE
, NULL
,
1054 /* RD not used for unicast */
1056 /* tag not used for unicast */
1057 0, 0, NULL
); /* EVPN not used */
1059 bgp_attr_unintern(&iattr
);
1063 aspath_unintern(&attr
.aspath
);
1069 void vnc_direct_bgp_del_nve(struct bgp
*bgp
, struct rfapi_descriptor
*rfd
)
1071 struct listnode
*node
, *nnode
;
1072 struct rfapi_rfg_name
*rfgn
;
1073 struct rfapi_nve_group_cfg
*rfg
= rfd
->rfg
;
1074 afi_t afi
= family2afi(rfd
->vn_addr
.addr_family
);
1077 flog_err(EC_LIB_DEVELOPMENT
, "%s: can't get afi of nve vn addr",
1084 if (!bgp
->rfapi_cfg
) {
1085 vnc_zlog_debug_verbose("%s: bgp->rfapi_cfg is NULL, skipping",
1089 if (!VNC_EXPORT_BGP_GRP_ENABLED(bgp
->rfapi_cfg
)) {
1090 vnc_zlog_debug_verbose(
1091 "%s: export-to-bgp group mode not enabled, skipping",
1096 if (!bgp
->redist
[afi
][ZEBRA_ROUTE_VNC_DIRECT
]) {
1097 vnc_zlog_debug_verbose(
1098 "%s: bgp redistribution of VNC direct routes is off",
1104 * Loop over the list of NVE-Groups configured for
1105 * exporting to direct-bgp and see if this new NVE's
1106 * group is among them.
1108 for (ALL_LIST_ELEMENTS(bgp
->rfapi_cfg
->rfg_export_direct_bgp_l
, node
,
1112 * Yes, this NVE's group is configured for export to direct-bgp
1114 if (rfg
&& rfgn
->rfg
== rfg
) {
1116 struct agg_table
*rt
= NULL
;
1117 struct agg_node
*rn
;
1118 struct rfapi_import_table
*import_table
;
1120 import_table
= rfg
->rfapi_import_table
;
1122 if (afi
== AFI_IP
|| afi
== AFI_IP6
) {
1123 rt
= import_table
->imported_vpn
[afi
];
1125 flog_err(EC_LIB_DEVELOPMENT
, "%s: bad afi %d",
1131 * Walk the NVE-Group's VNC Import table
1133 for (rn
= agg_route_top(rt
); rn
;
1134 rn
= agg_route_next(rn
)) {
1139 struct rfapi_descriptor
*irfd
= rfd
;
1141 if (rfapiRaddr2Qprefix(&irfd
->vn_addr
,
1145 bgp_withdraw(irfd
->peer
,
1146 &rn
->p
, /* prefix */
1148 NULL
, /* attr, ignored */
1150 ZEBRA_ROUTE_VNC_DIRECT
,
1151 BGP_ROUTE_REDISTRIBUTE
,
1152 NULL
, /* RD not used for
1154 NULL
, 0, NULL
); /* tag not
1163 static void vnc_direct_add_rn_group_rd(struct bgp
*bgp
,
1164 struct rfapi_nve_group_cfg
*rfg
,
1165 struct agg_node
*rn
, struct attr
*attr
,
1166 afi_t afi
, struct rfapi_descriptor
*irfd
)
1169 struct bgp_path_info info
;
1173 if (irfd
== NULL
&& rfg
->type
!= RFAPI_GROUP_CFG_VRF
) {
1174 /* need new rfapi_handle, for peer strcture
1175 * -- based on vnc_add_vrf_prefi */
1176 assert(rfg
->rfd
== NULL
);
1178 if (!rfg
->rt_export_list
|| !rfg
->rfapi_import_table
) {
1179 vnc_zlog_debug_verbose(
1180 "%s: VRF \"%s\" is missing RT import/export configuration.\n",
1181 __func__
, rfg
->name
);
1184 if (!rfg
->rd
.prefixlen
) {
1185 vnc_zlog_debug_verbose(
1186 "%s: VRF \"%s\" is missing RD configuration.\n",
1187 __func__
, rfg
->name
);
1190 if (rfg
->label
> MPLS_LABEL_MAX
) {
1191 vnc_zlog_debug_verbose(
1192 "%s: VRF \"%s\" is missing defaul label configuration.\n",
1193 __func__
, rfg
->name
);
1197 irfd
= XCALLOC(MTYPE_RFAPI_DESC
,
1198 sizeof(struct rfapi_descriptor
));
1202 * leave most fields empty as will get from (dynamic) config
1205 irfd
->default_tunneltype_option
.type
= BGP_ENCAP_TYPE_MPLS
;
1207 if (rfg
->vn_prefix
.family
1208 && !CHECK_FLAG(rfg
->flags
, RFAPI_RFG_VPN_NH_SELF
)) {
1209 rfapiQprefix2Raddr(&rfg
->vn_prefix
, &irfd
->vn_addr
);
1211 memset(&irfd
->vn_addr
, 0, sizeof(struct rfapi_ip_addr
));
1212 irfd
->vn_addr
.addr_family
= AF_INET
;
1213 irfd
->vn_addr
.addr
.v4
= bgp
->router_id
;
1215 irfd
->un_addr
= irfd
->vn_addr
; /* sigh, need something in UN for
1217 vnc_zlog_debug_verbose("%s: Opening RFD for VRF %s", __func__
,
1219 rfapi_init_and_open(bgp
, irfd
, rfg
);
1222 if (irfd
== NULL
|| rfapiRaddr2Qprefix(&irfd
->vn_addr
, &nhp
))
1226 * Construct new attribute set with NVE's VN
1228 * nexthop and without Tunnel Encap attr
1230 if (encap_attr_export(&hattr
, attr
, &nhp
, rn
))
1233 if (VNC_DEBUG(EXPORT_BGP_DIRECT_ADD
)) {
1234 vnc_zlog_debug_any("%s: attr follows", __func__
);
1235 rfapiPrintAttrPtrs(NULL
, attr
);
1236 vnc_zlog_debug_any("%s: hattr follows", __func__
);
1237 rfapiPrintAttrPtrs(NULL
, &hattr
);
1240 if (rfg
->routemap_export_bgp
) {
1241 route_map_result_t ret
;
1243 info
.peer
= irfd
->peer
;
1245 ret
= route_map_apply(rfg
->routemap_export_bgp
, &rn
->p
,
1247 if (ret
== RMAP_DENYMATCH
) {
1248 bgp_attr_flush(&hattr
);
1249 vnc_zlog_debug_verbose(
1250 "%s: route map says DENY, so not calling bgp_update",
1256 if (VNC_DEBUG(EXPORT_BGP_DIRECT_ADD
)) {
1257 vnc_zlog_debug_any("%s: hattr after route_map_apply:",
1259 rfapiPrintAttrPtrs(NULL
, &hattr
);
1261 iattr
= bgp_attr_intern(&hattr
);
1262 bgp_attr_flush(&hattr
);
1264 bgp_update(irfd
->peer
, &rn
->p
, /* prefix */
1266 iattr
, /* bgp_update copies it */
1267 afi
, SAFI_UNICAST
, ZEBRA_ROUTE_VNC_DIRECT
,
1268 BGP_ROUTE_REDISTRIBUTE
, NULL
, /* RD not used for unicast */
1269 NULL
, /* tag not used for unicast */
1270 0, 0, NULL
); /* EVPN not used */
1272 bgp_attr_unintern(&iattr
);
1278 * Caller is responsible for ensuring that the specified nve-group
1279 * is actually part of the list of exported nve groups.
1281 static void vnc_direct_bgp_add_group_afi(struct bgp
*bgp
,
1282 struct rfapi_nve_group_cfg
*rfg
,
1285 struct agg_table
*rt
= NULL
;
1286 struct agg_node
*rn
;
1287 struct attr attr
= {0};
1288 struct rfapi_import_table
*import_table
;
1290 vnc_zlog_debug_verbose("%s: entry", __func__
);
1292 import_table
= rfg
->rfapi_import_table
;
1293 if (!import_table
) {
1294 vnc_zlog_debug_verbose(
1295 "%s: import table not defined, returning", __func__
);
1299 if (afi
== AFI_IP
|| afi
== AFI_IP6
) {
1300 rt
= import_table
->imported_vpn
[afi
];
1302 flog_err(EC_LIB_DEVELOPMENT
, "%s: bad afi %d", __func__
, afi
);
1306 if (!rfg
->nves
&& rfg
->type
!= RFAPI_GROUP_CFG_VRF
) {
1307 vnc_zlog_debug_verbose("%s: no NVEs in this group", __func__
);
1311 bgp_attr_default_set(&attr
, BGP_ORIGIN_INCOMPLETE
);
1312 /* TBD set some configured med, see add_vnc_route() */
1315 * Walk the NVE-Group's VNC Import table
1317 for (rn
= agg_route_top(rt
); rn
; rn
= agg_route_next(rn
)) {
1321 struct listnode
*ln
;
1324 * per-nve-group prefix list check
1326 if (rfg
->plist_export_bgp
[afi
]) {
1327 if (prefix_list_apply(
1328 rfg
->plist_export_bgp
[afi
], &rn
->p
)
1333 if (rfg
->type
== RFAPI_GROUP_CFG_VRF
) {
1334 vnc_direct_add_rn_group_rd(bgp
, rfg
, rn
, &attr
,
1338 * - but consistent with rest of function
1343 * For each NVE that is assigned to the export nve
1345 * a route with that NVE as its next hop
1347 for (ln
= listhead(rfg
->nves
); ln
;
1348 ln
= listnextnode(ln
)) {
1349 vnc_direct_add_rn_group_rd(bgp
, rfg
, rn
, &attr
,
1356 aspath_unintern(&attr
.aspath
);
1361 * Caller is responsible for ensuring that the specified nve-group
1362 * is actually part of the list of exported nve groups.
1364 void vnc_direct_bgp_add_group(struct bgp
*bgp
, struct rfapi_nve_group_cfg
*rfg
)
1366 vnc_direct_bgp_add_group_afi(bgp
, rfg
, AFI_IP
);
1367 vnc_direct_bgp_add_group_afi(bgp
, rfg
, AFI_IP6
);
1370 static void vnc_direct_del_rn_group_rd(struct bgp
*bgp
,
1371 struct rfapi_nve_group_cfg
*rfg
,
1372 struct agg_node
*rn
, afi_t afi
,
1373 struct rfapi_descriptor
*irfd
)
1377 bgp_withdraw(irfd
->peer
, &rn
->p
, /* prefix */
1379 NULL
, /* attr, ignored */
1380 afi
, SAFI_UNICAST
, ZEBRA_ROUTE_VNC_DIRECT
,
1381 BGP_ROUTE_REDISTRIBUTE
, NULL
, /* RD not used for unicast */
1382 NULL
, 0, NULL
); /* tag not used for unicast */
1387 * Caller is responsible for ensuring that the specified nve-group
1388 * was actually part of the list of exported nve groups.
1390 static void vnc_direct_bgp_del_group_afi(struct bgp
*bgp
,
1391 struct rfapi_nve_group_cfg
*rfg
,
1394 struct agg_table
*rt
= NULL
;
1395 struct agg_node
*rn
;
1396 struct rfapi_import_table
*import_table
;
1398 vnc_zlog_debug_verbose("%s: entry", __func__
);
1400 import_table
= rfg
->rfapi_import_table
;
1401 if (!import_table
) {
1402 vnc_zlog_debug_verbose(
1403 "%s: import table not defined, returning", __func__
);
1407 rt
= import_table
->imported_vpn
[afi
];
1409 if (!rfg
->nves
&& rfg
->type
!= RFAPI_GROUP_CFG_VRF
) {
1410 vnc_zlog_debug_verbose("%s: no NVEs in this group", __func__
);
1415 * Walk the NVE-Group's VNC Import table
1417 for (rn
= agg_route_top(rt
); rn
; rn
= agg_route_next(rn
))
1419 if (rfg
->type
== RFAPI_GROUP_CFG_VRF
)
1420 vnc_direct_del_rn_group_rd(bgp
, rfg
, rn
, afi
,
1423 struct listnode
*ln
;
1426 * For each NVE that is assigned to the export
1429 * a route with that NVE as its next hop
1431 for (ln
= listhead(rfg
->nves
); ln
;
1432 ln
= listnextnode(ln
))
1433 vnc_direct_del_rn_group_rd(
1441 * Caller is responsible for ensuring that the specified nve-group
1442 * was actually part of the list of exported nve groups.
1444 void vnc_direct_bgp_del_group(struct bgp
*bgp
, struct rfapi_nve_group_cfg
*rfg
)
1446 vnc_direct_bgp_del_group_afi(bgp
, rfg
, AFI_IP
);
1447 vnc_direct_bgp_del_group_afi(bgp
, rfg
, AFI_IP6
);
1450 void vnc_direct_bgp_reexport_group_afi(struct bgp
*bgp
,
1451 struct rfapi_nve_group_cfg
*rfg
,
1454 struct listnode
*node
;
1455 struct rfapi_rfg_name
*rfgn
;
1457 if (VNC_EXPORT_BGP_GRP_ENABLED(bgp
->rfapi_cfg
)) {
1459 * look in the list of currently-exported groups
1461 for (ALL_LIST_ELEMENTS_RO(
1462 bgp
->rfapi_cfg
->rfg_export_direct_bgp_l
, node
,
1465 if (rfgn
->rfg
== rfg
) {
1467 * If it matches, reexport it
1469 vnc_direct_bgp_del_group_afi(bgp
, rfg
, afi
);
1470 vnc_direct_bgp_add_group_afi(bgp
, rfg
, afi
);
1478 static void vnc_direct_bgp_unexport_table(afi_t afi
, struct agg_table
*rt
,
1479 struct list
*nve_list
)
1483 struct agg_node
*rn
;
1485 for (rn
= agg_route_top(rt
); rn
; rn
= agg_route_next(rn
)) {
1489 struct listnode
*hln
;
1490 struct rfapi_descriptor
*irfd
;
1492 for (ALL_LIST_ELEMENTS_RO(nve_list
, hln
,
1495 bgp_withdraw(irfd
->peer
,
1496 &rn
->p
, /* prefix */
1498 NULL
, /* attr, ignored */
1500 ZEBRA_ROUTE_VNC_DIRECT
,
1501 BGP_ROUTE_REDISTRIBUTE
,
1502 NULL
, /* RD not used for
1504 NULL
, 0, NULL
); /* tag not
1515 static void import_table_to_nve_list_direct_bgp(struct bgp
*bgp
,
1516 struct rfapi_import_table
*it
,
1520 struct listnode
*node
;
1521 struct rfapi_rfg_name
*rfgn
;
1524 * Loop over the list of NVE-Groups configured for
1525 * exporting to direct-bgp.
1527 * Build a list of NVEs that use this import table
1530 for (ALL_LIST_ELEMENTS_RO(bgp
->rfapi_cfg
->rfg_export_direct_bgp_l
, node
,
1534 * If this NVE-Group's import table matches the current one
1536 if (rfgn
->rfg
&& rfgn
->rfg
->rfapi_import_table
== it
) {
1537 if (rfgn
->rfg
->nves
)
1538 nve_group_to_nve_list(rfgn
->rfg
, nves
, family
);
1539 else if (rfgn
->rfg
->rfd
1540 && rfgn
->rfg
->type
== RFAPI_GROUP_CFG_VRF
) {
1543 listnode_add(*nves
, rfgn
->rfg
->rfd
);
1549 void vnc_direct_bgp_vpn_enable(struct bgp
*bgp
, afi_t afi
)
1551 struct listnode
*rfgn
;
1552 struct rfapi_nve_group_cfg
*rfg
;
1557 if (!VNC_EXPORT_BGP_GRP_ENABLED(bgp
->rfapi_cfg
)) {
1558 vnc_zlog_debug_verbose(
1559 "%s: export-to-bgp group mode not enabled, skipping",
1564 if (afi
!= AFI_IP
&& afi
!= AFI_IP6
) {
1565 vnc_zlog_debug_verbose("%s: bad afi: %d", __func__
, afi
);
1570 * Policy is applied per-nve-group, so we need to iterate
1571 * over the groups to add everything.
1573 for (ALL_LIST_ELEMENTS_RO(bgp
->rfapi_cfg
->nve_groups_sequential
, rfgn
,
1577 * contains policy management
1579 vnc_direct_bgp_add_group_afi(bgp
, rfg
, afi
);
1584 void vnc_direct_bgp_vpn_disable(struct bgp
*bgp
, afi_t afi
)
1586 struct rfapi_import_table
*it
;
1587 uint8_t family
= afi2family(afi
);
1589 vnc_zlog_debug_verbose("%s: entry, afi=%d", __func__
, afi
);
1595 vnc_zlog_debug_verbose("%s: rfapi not initialized", __func__
);
1599 if (!family
|| (afi
!= AFI_IP
&& afi
!= AFI_IP6
)) {
1600 vnc_zlog_debug_verbose("%s: bad afi: %d", __func__
, afi
);
1604 for (it
= bgp
->rfapi
->imports
; it
; it
= it
->next
) {
1606 struct list
*nve_list
= NULL
;
1608 import_table_to_nve_list_direct_bgp(bgp
, it
, &nve_list
, family
);
1611 vnc_direct_bgp_unexport_table(
1612 afi
, it
->imported_vpn
[afi
], nve_list
);
1613 list_delete(&nve_list
);
1619 /***********************************************************************
1620 * Export methods that proxy nexthop END
1621 ***********************************************************************/
1624 /***********************************************************************
1625 * Export methods that preserve original nexthop BEGIN
1626 * rh = "registering nve"
1627 ***********************************************************************/
1631 * "Adding a Route" export process
1632 * TBD do we need to check bpi->type and bpi->sub_type here, or does
1635 void vnc_direct_bgp_rh_add_route(struct bgp
*bgp
, afi_t afi
,
1636 struct prefix
*prefix
, struct peer
*peer
,
1639 struct vnc_export_info
*eti
;
1641 struct rfapi_cfg
*hc
;
1645 flog_err(EC_LIB_DEVELOPMENT
, "%s: can't get afi of route node",
1650 /* check bgp redist flag for vnc direct ("vpn") routes */
1651 if (!bgp
->redist
[afi
][ZEBRA_ROUTE_VNC_DIRECT
]) {
1652 vnc_zlog_debug_verbose(
1653 "%s: bgp redistribution of VNC direct routes is off",
1658 if (!(hc
= bgp
->rfapi_cfg
)) {
1659 vnc_zlog_debug_verbose("%s: bgp->rfapi_cfg is NULL, skipping",
1664 if (!VNC_EXPORT_BGP_RH_ENABLED(bgp
->rfapi_cfg
)) {
1665 vnc_zlog_debug_verbose(
1666 "%s: export-to-bgp RH mode not enabled, skipping",
1674 if (hc
->plist_export_bgp
[afi
]) {
1675 if (prefix_list_apply(hc
->plist_export_bgp
[afi
], prefix
)
1681 * Construct new attribute set with NVE's VN addr as
1682 * nexthop and without Tunnel Encap attr
1684 if (encap_attr_export(&hattr
, attr
, NULL
, NULL
))
1686 if (hc
->routemap_export_bgp
) {
1687 struct bgp_path_info info
;
1688 route_map_result_t ret
;
1690 memset(&info
, 0, sizeof(info
));
1693 ret
= route_map_apply(hc
->routemap_export_bgp
, prefix
, RMAP_BGP
,
1695 if (ret
== RMAP_DENYMATCH
) {
1696 bgp_attr_flush(&hattr
);
1701 iattr
= bgp_attr_intern(&hattr
);
1702 bgp_attr_flush(&hattr
);
1705 * record route information that we will need to expire
1708 eti
= vnc_eti_get(bgp
, EXPORT_TYPE_BGP
, prefix
, peer
,
1709 ZEBRA_ROUTE_VNC_DIRECT_RH
, BGP_ROUTE_REDISTRIBUTE
);
1710 rfapiGetVncLifetime(attr
, &eti
->lifetime
);
1711 eti
->lifetime
= rfapiGetHolddownFromLifetime(eti
->lifetime
);
1715 * export expiration timer is already running on
1716 * this route: cancel it
1718 thread_cancel(eti
->timer
);
1722 bgp_update(peer
, prefix
, /* prefix */
1724 iattr
, /* bgp_update copies this attr */
1725 afi
, SAFI_UNICAST
, ZEBRA_ROUTE_VNC_DIRECT_RH
,
1726 BGP_ROUTE_REDISTRIBUTE
, NULL
, /* RD not used for unicast */
1727 NULL
, /* tag not used for unicast, EVPN neither */
1728 0, 0, NULL
); /* EVPN not used */
1729 bgp_attr_unintern(&iattr
);
1732 static int vncExportWithdrawTimer(struct thread
*t
)
1734 struct vnc_export_info
*eti
= t
->arg
;
1737 * withdraw the route
1739 bgp_withdraw(eti
->peer
, &eti
->node
->p
, 0, /* addpath_id */
1740 NULL
, /* attr, ignored */
1741 family2afi(eti
->node
->p
.family
), SAFI_UNICAST
, eti
->type
,
1742 eti
->subtype
, NULL
, /* RD not used for unicast */
1744 NULL
); /* tag not used for unicast, EVPN neither */
1749 vnc_eti_delete(eti
);
1755 * "Withdrawing a Route" export process
1756 * TBD do we need to check bpi->type and bpi->sub_type here, or does
1759 void vnc_direct_bgp_rh_del_route(struct bgp
*bgp
, afi_t afi
,
1760 struct prefix
*prefix
, struct peer
*peer
)
1762 struct vnc_export_info
*eti
;
1765 flog_err(EC_LIB_DEVELOPMENT
, "%s: can't get afi route node",
1770 /* check bgp redist flag for vnc direct ("vpn") routes */
1771 if (!bgp
->redist
[afi
][ZEBRA_ROUTE_VNC_DIRECT
]) {
1772 vnc_zlog_debug_verbose(
1773 "%s: bgp redistribution of VNC direct routes is off",
1778 if (!bgp
->rfapi_cfg
) {
1779 vnc_zlog_debug_verbose("%s: bgp->rfapi_cfg is NULL, skipping",
1783 if (!VNC_EXPORT_BGP_RH_ENABLED(bgp
->rfapi_cfg
)) {
1784 vnc_zlog_debug_verbose(
1785 "%s: export-to-bgp group mode not enabled, skipping",
1790 eti
= vnc_eti_get(bgp
, EXPORT_TYPE_BGP
, prefix
, peer
,
1791 ZEBRA_ROUTE_VNC_DIRECT_RH
, BGP_ROUTE_REDISTRIBUTE
);
1793 if (!eti
->timer
&& eti
->lifetime
<= INT32_MAX
) {
1795 thread_add_timer(bm
->master
, vncExportWithdrawTimer
, eti
,
1796 eti
->lifetime
, &eti
->timer
);
1797 vnc_zlog_debug_verbose(
1798 "%s: set expiration timer for %u seconds", __func__
,
1804 void vnc_direct_bgp_rh_vpn_enable(struct bgp
*bgp
, afi_t afi
)
1806 struct prefix_rd prd
;
1807 struct bgp_node
*prn
;
1808 struct rfapi_cfg
*hc
;
1810 vnc_zlog_debug_verbose("%s: entry, afi=%d", __func__
, afi
);
1815 if (!(hc
= bgp
->rfapi_cfg
))
1818 if (!VNC_EXPORT_BGP_RH_ENABLED(bgp
->rfapi_cfg
)) {
1819 vnc_zlog_debug_verbose(
1820 "%s: export of RH routes not enabled, skipping",
1825 if (afi
!= AFI_IP
&& afi
!= AFI_IP6
) {
1826 vnc_zlog_debug_verbose("%s: bad afi: %d", __func__
, afi
);
1831 * Go through the entire BGP VPN table and export to BGP unicast.
1834 vnc_zlog_debug_verbose("%s: starting RD loop", __func__
);
1836 /* Loop over all the RDs */
1837 for (prn
= bgp_table_top(bgp
->rib
[afi
][SAFI_MPLS_VPN
]); prn
;
1838 prn
= bgp_route_next(prn
)) {
1840 struct bgp_table
*table
;
1841 struct bgp_node
*rn
;
1842 struct bgp_path_info
*ri
;
1844 memset(&prd
, 0, sizeof(prd
));
1845 prd
.family
= AF_UNSPEC
;
1847 memcpy(prd
.val
, prn
->p
.u
.val
, 8);
1849 /* This is the per-RD table of prefixes */
1850 table
= bgp_node_get_bgp_table_info(prn
);
1855 for (rn
= bgp_table_top(table
); rn
; rn
= bgp_route_next(rn
)) {
1858 * skip prefix list check if no routes here
1860 if (!bgp_node_has_bgp_path_info_data(rn
))
1864 char prefixstr
[PREFIX_STRLEN
];
1866 prefix2str(&rn
->p
, prefixstr
,
1868 vnc_zlog_debug_verbose("%s: checking prefix %s",
1869 __func__
, prefixstr
);
1875 if (hc
->plist_export_bgp
[afi
]) {
1876 if (prefix_list_apply(hc
->plist_export_bgp
[afi
],
1880 vnc_zlog_debug_verbose(
1881 "%s: prefix list says DENY",
1887 for (ri
= bgp_node_get_bgp_path_info(rn
);
1888 ri
; ri
= ri
->next
) {
1890 vnc_zlog_debug_verbose("%s: ri->sub_type: %d",
1891 __func__
, ri
->sub_type
);
1893 if (ri
->sub_type
== BGP_ROUTE_NORMAL
1894 || ri
->sub_type
== BGP_ROUTE_RFP
) {
1896 struct vnc_export_info
*eti
;
1901 * Construct new attribute set with
1903 * nexthop and without Tunnel Encap attr
1905 if (encap_attr_export(&hattr
, ri
->attr
,
1907 vnc_zlog_debug_verbose(
1908 "%s: encap_attr_export failed",
1913 if (hc
->routemap_export_bgp
) {
1914 struct bgp_path_info info
;
1915 route_map_result_t ret
;
1917 memset(&info
, 0, sizeof(info
));
1918 info
.peer
= ri
->peer
;
1920 ret
= route_map_apply(
1921 hc
->routemap_export_bgp
,
1924 if (ret
== RMAP_DENYMATCH
) {
1925 bgp_attr_flush(&hattr
);
1926 vnc_zlog_debug_verbose(
1927 "%s: route map says DENY",
1933 iattr
= bgp_attr_intern(&hattr
);
1934 bgp_attr_flush(&hattr
);
1937 * record route information that we will
1942 bgp
, EXPORT_TYPE_BGP
, &rn
->p
,
1944 ZEBRA_ROUTE_VNC_DIRECT_RH
,
1945 BGP_ROUTE_REDISTRIBUTE
);
1946 rfapiGetVncLifetime(ri
->attr
,
1951 * export expiration timer is
1952 * already running on
1953 * this route: cancel it
1955 thread_cancel(eti
->timer
);
1959 vnc_zlog_debug_verbose(
1960 "%s: calling bgp_update",
1964 ri
->peer
, &rn
->p
, /* prefix */
1966 iattr
, /* bgp_update copies
1968 AFI_IP
, SAFI_UNICAST
,
1969 ZEBRA_ROUTE_VNC_DIRECT_RH
,
1970 BGP_ROUTE_REDISTRIBUTE
, NULL
,
1971 /* RD not used for unicast */
1973 /* tag not used for unicast,
1975 0, 0, NULL
); /* EVPN not used */
1977 bgp_attr_unintern(&iattr
);
1984 void vnc_direct_bgp_rh_vpn_disable(struct bgp
*bgp
, afi_t afi
)
1986 struct bgp_node
*rn
;
1988 vnc_zlog_debug_verbose("%s: entry, afi=%d", __func__
, afi
);
1993 if (afi
!= AFI_IP
&& afi
!= AFI_IP6
) {
1994 vnc_zlog_debug_verbose("%s: bad afi: %d", __func__
, afi
);
1999 * Go through the entire BGP unicast table and remove routes that
2000 * originated from us
2002 for (rn
= bgp_table_top(bgp
->rib
[afi
][SAFI_UNICAST
]); rn
;
2003 rn
= bgp_route_next(rn
)) {
2005 struct bgp_path_info
*ri
;
2006 struct bgp_path_info
*next
;
2008 for (ri
= bgp_node_get_bgp_path_info(rn
), next
= NULL
; ri
; ri
= next
) {
2012 if (ri
->type
== ZEBRA_ROUTE_VNC_DIRECT_RH
2013 && ri
->sub_type
== BGP_ROUTE_REDISTRIBUTE
) {
2015 struct vnc_export_info
*eti
;
2018 * Delete routes immediately (no timer)
2020 eti
= vnc_eti_checktimer(
2021 bgp
, EXPORT_TYPE_BGP
, &rn
->p
, ri
->peer
,
2022 ZEBRA_ROUTE_VNC_DIRECT_RH
,
2023 BGP_ROUTE_REDISTRIBUTE
);
2026 thread_cancel(eti
->timer
);
2027 vnc_eti_delete(eti
);
2030 bgp_withdraw(ri
->peer
, &rn
->p
, /* prefix */
2033 AFI_IP
, SAFI_UNICAST
,
2034 ZEBRA_ROUTE_VNC_DIRECT_RH
,
2035 BGP_ROUTE_REDISTRIBUTE
,
2036 NULL
, /* RD not used for unicast */
2037 NULL
, 0, NULL
); /* tag not used for
2045 void vnc_direct_bgp_rh_reexport(struct bgp
*bgp
, afi_t afi
)
2047 if (VNC_EXPORT_BGP_RH_ENABLED(bgp
->rfapi_cfg
)) {
2048 vnc_direct_bgp_rh_vpn_disable(bgp
, afi
);
2049 vnc_direct_bgp_rh_vpn_enable(bgp
, afi
);
2053 /***********************************************************************
2054 * Generic Export methods
2055 ***********************************************************************/
2058 * Assumes the correct mode bits are already turned on. Thus it
2059 * is OK to call this function from, e.g., bgp_redistribute_set()
2060 * without caring if export is enabled or not
2062 void vnc_export_bgp_enable(struct bgp
*bgp
, afi_t afi
)
2064 if (!bgp
->rfapi_cfg
)
2067 switch (bgp
->rfapi_cfg
->flags
& BGP_VNC_CONFIG_EXPORT_BGP_MODE_BITS
) {
2068 case BGP_VNC_CONFIG_EXPORT_BGP_MODE_NONE
:
2071 case BGP_VNC_CONFIG_EXPORT_BGP_MODE_GRP
:
2072 vnc_direct_bgp_vpn_enable(bgp
, afi
);
2075 case BGP_VNC_CONFIG_EXPORT_BGP_MODE_RH
:
2076 vnc_direct_bgp_rh_vpn_enable(bgp
, afi
);
2079 case BGP_VNC_CONFIG_EXPORT_BGP_MODE_CE
:
2080 vnc_direct_bgp_vpn_enable_ce(bgp
, afi
);
2085 void vnc_export_bgp_disable(struct bgp
*bgp
, afi_t afi
)
2087 if (!bgp
->rfapi_cfg
)
2090 switch (bgp
->rfapi_cfg
->flags
& BGP_VNC_CONFIG_EXPORT_BGP_MODE_BITS
) {
2091 case BGP_VNC_CONFIG_EXPORT_BGP_MODE_NONE
:
2094 case BGP_VNC_CONFIG_EXPORT_BGP_MODE_GRP
:
2095 vnc_direct_bgp_vpn_disable(bgp
, afi
);
2098 case BGP_VNC_CONFIG_EXPORT_BGP_MODE_RH
:
2099 vnc_direct_bgp_rh_vpn_disable(bgp
, afi
);
2102 case BGP_VNC_CONFIG_EXPORT_BGP_MODE_CE
:
2103 vnc_direct_bgp_vpn_disable_ce(bgp
, afi
);
2108 void vnc_export_bgp_prechange(struct bgp
*bgp
)
2110 vnc_export_bgp_disable(bgp
, AFI_IP
);
2111 vnc_export_bgp_disable(bgp
, AFI_IP6
);
2114 void vnc_export_bgp_postchange(struct bgp
*bgp
)
2116 vnc_export_bgp_enable(bgp
, AFI_IP
);
2117 vnc_export_bgp_enable(bgp
, AFI_IP6
);
2120 void vnc_direct_bgp_reexport(struct bgp
*bgp
, afi_t afi
)
2122 vnc_export_bgp_disable(bgp
, afi
);
2123 vnc_export_bgp_enable(bgp
, afi
);