AS-PATH prepending stand for announce my prefix with a low priority. This technique, in a multihomed BGP scenario, it is used to lighten the traffic coming from a peer. The BGP route selection process prefer prefix with a short AS-PATH instead a long AS-PATH. FIRST create an ACL to select your source prefix the traffic to prepend: SECOND create a …
BGPv4 Aggregate routes
Have you ever received many networks from your customers without being able to summarize with an IGP? And… have you ever had to make BGP transit for these messy networks to a carrier that accepts only /20 networks or even worse check on RIPE.NET database? Little trick with aggregate command: Warning: aggregate command not work if you advertize messy networks …
HUAWEI AR Series – Password Recovery
Turn on the AR router then: PRESS Ctrl+B to enter in Recovery MODE at Enter Password: prompt type huawei for pre-R007 versions or Admin@huawei on R007 or later versions Enter in 7. Password Manager Menu Choose 2. Clear the console login password option Wait for Clear the console login password Succeed! Reboot the router Change the password in [aaa] configuration! …
802.3ad between Huawei AR2240 and Cisco 3750X
IEEE 802.3ad is used to aggregate multiple link ethernet for increase the network speed and availability.You can configure Layer3 to Layer3 LACP or Layer2 to Layer2 Etherchannel, but sometimes you have to do more: Some routers like Huawei 2240 are only configurable in LACP Layer 3 mode but, for design requirements, the Core Switch (ex.: Cisco) have to be set …
USG 6300 – Bidirectional NAT on Huawei Firewalls
Nat 1:1 static configuration or “Server Mapping” in Huawei have a strange behavior on the WEB GUI. Based on USG 6300 series with V500R001C60SPC500 firmware, when you configure bidirectional NAT it behaves like a SOURCE NAT. Solution: There are platforms, such as new generation firewalls that have a very powerful web management portal. But in general in network environments, especially …
HUAWEI AP Firmware Rollback with AC Controller
Sometimes AP hardware & software upgrades run faster than Wireless Controllers. In a few years, APs quickly go out of production. It may happen that you find yourself installing new generation access points on Controllers with obsolete firmware. The best solution is to plan a firmware upgrade but you can’t schedule it in 5 minutes. An incorrect firmware or patch …
Huawei – Physical decoding errors
When you have a strange network problem on a fiber uplink you may experience this output in display interface command: The error Symbols: 529186 generate link flappings many times a day. Ethernet RFCs describe how to place an L2 frame in the physical layer (L1), 8B/10B encoding process takes 8bit of Media Access Control Layer and converts it in a …
HUAWEI – fixdisk
If your router lost chains on the flash:/ or cfcard:/ you can try to rebuild the file system. The principal symptom is that you can’t save the running config. So try the miracle: bye, .glitchlist crew
Securing OSPFv2
OSPF is a king routing protocol that speaks on Multicast addresses 224.0.0.5 and 224.0.0.6. Once the neighborhood relationship is installed and LSAs are exchanged, the SPF algorithm starts running. If the new OSPF peer is a malicious router it can cause a lot of damage to your routing table such as: Network congestions Dos attacks Loops LSA flooding and why …
ip route-static
In Huawei, there are some options to make a static route less static and more dynamic! Now, you can bind a static IP route on certain events that happen in your network. Events can be triggered by: BFD session EFM state NQA An example could be forward a network on a Core Router without using a routing protocol: .glitchlist crew