From c446d43c6ae6a9d4dc5f6d4191fa6154ab362ac2 Mon Sep 17 00:00:00 2001 From: Jesper Hess Nielsen Date: Fri, 16 Oct 2020 14:15:11 +0200 Subject: [PATCH] Use iBGP for home router after switching to OPNSense --- host_vars/frb1.cph.dk.routers.v6.hessnet.dk.yml | 11 ++--------- host_vars/vul1.ams.nl.routers.v6.hessnet.dk.yml | 5 +---- 2 files changed, 3 insertions(+), 13 deletions(-) diff --git a/host_vars/frb1.cph.dk.routers.v6.hessnet.dk.yml b/host_vars/frb1.cph.dk.routers.v6.hessnet.dk.yml index 532f046..8c6741c 100644 --- a/host_vars/frb1.cph.dk.routers.v6.hessnet.dk.yml +++ b/host_vars/frb1.cph.dk.routers.v6.hessnet.dk.yml @@ -20,12 +20,9 @@ bgp_peers: neighbor_ip: "2a01:4262:1ab:20::75" - name: "hessnet_home" - template: "peer_hessnet" - peer_asn: "64512" + template: "ibgp_hessnet" + peer_asn: "209616" neighbor_ip: "2001:678:15c:c00::" - filters: - import: "{ accept; }" - export: "{ if is_own_route() then reject; accept; }" - name: "ibgp_fra1" template: "ibgp_hessnet" @@ -35,10 +32,6 @@ bgp_peers: announce_from_here: true configure_static_multihop_routes: false -extra_static_routes: - - route: "2001:678:15c:c00::/128" - destination: "v6tunnel-home" - wireguard: privatekey: !vault | $ANSIBLE_VAULT;1.1;AES256 diff --git a/host_vars/vul1.ams.nl.routers.v6.hessnet.dk.yml b/host_vars/vul1.ams.nl.routers.v6.hessnet.dk.yml index 1c5f755..dedfeae 100644 --- a/host_vars/vul1.ams.nl.routers.v6.hessnet.dk.yml +++ b/host_vars/vul1.ams.nl.routers.v6.hessnet.dk.yml @@ -31,10 +31,7 @@ bgp_peers: - name: "home_router" template: "peer_hessnet" peer_asn: "209616" - neighbor_ip: "172.16.12.19" - filters: - export: "{ peer_export_default_only(); }" - import: "myroutes_import_export" + neighbor_ip: "2001:678:15c:c00::" announce_from_here: false configure_static_multihop_routes: true