Implementing BGP Flowspec
Type 2
Type 3
Type 4
Type 5
IPv4 Source address
Defines the source prefix to match.
Encoding: <type (1 octet), prefix-length (1
octet), prefix>
Syntax:
match source-address {ipv4} address/mask
length
IPv4 last next header
Contains a set of {operator, value} pairs that
Protocol
are used to match the IP protocol value byte
in IP packets.
Encoding: <type (1 octet), [op, value]+>
Syntax:
Type 3: match protocol {protocol-value
|min-value -max-value}
IPv4 source or
Defines a list of {operation, value} pairs that
destination port
matches source or destination TCP/UDP
ports. Values are encoded as 1- or 2-byte
quantities. Port, source port, and destination
port components evaluate to FALSE if the IP
protocol field of the packet has a value other
than TCP or UDP, if the packet is fragmented
and this is not the first fragment, or if the
system in unable to locate the transport
header.
Encoding: <type (1 octet), [op, value]+>
Syntax:
match source-port {source-port-value
|min-value -max-value}
match destination-port
{destination-port-value |min-value
-max-value}
IPv4 destination port
Defines a list of {operation, value} pairs used
to match the destination port of a TCP or
UDP packet. Values are encoded as 1- or
2-byte quantities.
Encoding: <type (1 octet), [op, value]+>
Syntax:
match destination-port
{destination-port-value |[min-value -
max-value]}
Cisco ASR 9000 Series Aggregation Services Router Routing Configuration Guide, Release 5.3.x
Information About Implementing BGP Flowspec
Prefix length
Multi value range
Multi value range
Multi value range
207