From 1cc07774cfc15c5accf668633262a2f4b03d9049 Mon Sep 17 00:00:00 2001 From: Michail Litvak Date: Wed, 1 Mar 2017 10:02:04 +0200 Subject: [PATCH 1/4] Support of Nokia (former Alcatel-Lucent) SR OS --- README.md | 6 +- bgpq3.c | 12 +++- bgpq3.h | 3 +- bgpq3_printer.c | 164 ++++++++++++++++++++++++++++++++++++++++++++++++ 4 files changed, 181 insertions(+), 4 deletions(-) diff --git a/README.md b/README.md index e064ac1..937b069 100644 --- a/README.md +++ b/README.md @@ -59,7 +59,7 @@ Use asdot notation for Cisco as-path access-lists. #### -E Generate extended access-list (Cisco) or policy-statement term using -route-filters (Juniper). +route-filters (Juniper) or [ip|ipv6]-prefix-list (Nokia) #### -f `AS number` @@ -93,6 +93,10 @@ Maximum length of accepted prefixes (default: `32` for IPv4, `128` for IPv6). Extra match conditions for Juniper route-filters. See the examples section. +#### -N + +Generate config for Nokia SR OS (former Alcatel-Lucent) (default: Cisco) + #### -l `name` `Name` of generated configuration stanza. diff --git a/bgpq3.c b/bgpq3.c index 41d51c6..4653672 100644 --- a/bgpq3.c +++ b/bgpq3.c @@ -55,6 +55,7 @@ usage(int ecode) printf(" -L depth : limit recursion depth (default: unlimited)\n"), printf(" -l name : use specified name for generated access/prefix/.." " list\n"); + printf(" -N : generate config for Nokia SR OS (Cisco IOS by default)\n"); printf(" -P : generate prefix-list (default, just for backward" " compatibility)\n"); printf(" -R len : allow more specific routes up to specified masklen\n"); @@ -83,7 +84,7 @@ void vendor_exclusive() { fprintf(stderr, "-b (BIRD), -B (OpenBGPD), -F (formatted), -J (JunOS), " - "-j (JSON) and -X (IOS XR) options are mutually exclusive\n"); + "-j (JSON), -N (NOKIA SR OS) and -X (IOS XR) options are mutually exclusive\n"); exit(1); }; @@ -135,7 +136,7 @@ main(int argc, char* argv[]) if (getenv("IRRD_SOURCES")) expander.sources=getenv("IRRD_SOURCES"); - while((c=getopt(argc,argv,"2346AbBdDEF:S:jJf:l:L:m:M:W:Ppr:R:G:Th:Xs")) + while((c=getopt(argc,argv,"2346AbBdDEF:S:jJf:l:L:m:M:NW:Ppr:R:G:Th:Xs")) !=EOF) { switch(c) { case '2': @@ -284,6 +285,9 @@ main(int argc, char* argv[]) *d=0; }; break; + case 'N': if(expander.vendor) vendor_exclusive(); + expander.vendor=V_NOKIA; + break; case 'T': pipelining=0; break; case 's': expander.sequence=1; @@ -317,6 +321,8 @@ main(int argc, char* argv[]) expander.aswidth=8; } else if(expander.vendor==V_BIRD) { expander.aswidth=10; + } else if(expander.vendor==V_NOKIA) { + expander.aswidth=8; }; } else if(expander.generation==T_OASPATH) { if(expander.vendor==V_CISCO) { @@ -325,6 +331,8 @@ main(int argc, char* argv[]) expander.aswidth=7; } else if(expander.vendor==V_JUNIPER) { expander.aswidth=8; + } else if(expander.vendor==V_NOKIA) { + expander.aswidth=8; }; }; }; diff --git a/bgpq3.h b/bgpq3.h index 9cf143b..1104acd 100644 --- a/bgpq3.h +++ b/bgpq3.h @@ -17,7 +17,8 @@ typedef enum { V_JSON, V_BIRD, V_OPENBGPD, - V_FORMAT + V_FORMAT, + V_NOKIA } bgpq_vendor_t; typedef enum { diff --git a/bgpq3_printer.c b/bgpq3_printer.c index 9307a0d..3e89a74 100644 --- a/bgpq3_printer.c +++ b/bgpq3_printer.c @@ -323,6 +323,97 @@ bgpq3_print_openbgpd_oaspath(FILE* f, struct bgpq_expander* b) return 0; }; +int +bgpq3_print_nokia_aspath(FILE* f, struct bgpq_expander* b) +{ + int nc=0, lineNo=1, i, j, k; + + fprintf(f,"configure router policy-options\nbegin\nno as-path-group \"%s\"\n", + b->name ? b->name : "NN"); + fprintf(f,"as-path-group \"%s\"\n", b->name ? b->name : "NN"); + + if(b->asn32s[b->asnumber/65536] && + b->asn32s[b->asnumber/65535][(b->asnumber%65536)/8]& + (0x80>>(b->asnumber%8))) { + fprintf(f," entry %u expression \"^%u(%u)*$\"\n", lineNo, b->asnumber, + b->asnumber); + lineNo++; + }; + for(k=0;k<65536;k++) { + if(!b->asn32s[k]) continue; + for(i=0;i<8192;i++) { + for(j=0;j<8;j++) { + if(b->asn32s[k][i]&(0x80>>j)) { + if(k*65536+i*8+j==b->asnumber) continue; + if(!nc) { + fprintf(f," entry %u expression \"^%u(.)*(%u", + lineNo,b->asnumber,k*65536+i*8+j); + } else { + fprintf(f,"|%u",k*65536+i*8+j); + }; + nc++; + if(nc==b->aswidth) { + fprintf(f,")$\"\n"); + nc=0; + lineNo++; + }; + }; + }; + }; + }; + if(nc) fprintf(f,")$\"\n"); + else if(lineNo==1) + fprintf(f," entry 1 \"!.*\"\n"); + fprintf(f,"exit\ncommit\n"); + return 0; +}; + +int +bgpq3_print_nokia_oaspath(FILE* f, struct bgpq_expander* b) +{ + int nc=0, lineNo=1, i, j, k; + + fprintf(f,"configure router policy-options\nbegin\nno as-path-group \"%s\"\n", + b->name ? b->name : "NN"); + fprintf(f,"as-path-group \"%s\"\n", b->name ? b->name : "NN"); + + if(b->asn32s[b->asnumber/65536] && + b->asn32s[b->asnumber/65536][(b->asnumber%65536)/8]& + (0x80>>(b->asnumber%8))) { + fprintf(f," entry %u expression \"^%u(%u)*$\"\n", lineNo, b->asnumber, + b->asnumber); + lineNo++; + }; + for(k=0;k<65536;k++) { + if(!b->asn32s[k]) continue; + + for(i=0;i<8192;i++) { + for(j=0;j<8;j++) { + if(b->asn32s[k][i]&(0x80>>j)) { + if(k*65536+i*8+j==b->asnumber) continue; + if(!nc) { + fprintf(f," entry %u expression \"^(.)*(%u", + lineNo,k*65536+i*8+j); + } else { + fprintf(f,"|%u",k*65536+i*8+j); + } + nc++; + if(nc==b->aswidth) { + fprintf(f,")$\"\n"); + nc=0; + lineNo++; + }; + }; + }; + }; + }; + if(nc) fprintf(f,")$\"\n"); + else if(lineNo==1) + fprintf(f," entry 1 expression \"!.*\"\n"); + fprintf(f,"exit\ncommit\n"); + return 0; +}; + int bgpq3_print_aspath(FILE* f, struct bgpq_expander* b) { @@ -338,6 +429,8 @@ bgpq3_print_aspath(FILE* f, struct bgpq_expander* b) return bgpq3_print_bird_aspath(f,b); } else if(b->vendor==V_OPENBGPD) { return bgpq3_print_openbgpd_aspath(f,b); + } else if(b->vendor==V_NOKIA) { + return bgpq3_print_nokia_aspath(f,b); } else { sx_report(SX_FATAL,"Unknown vendor %i\n", b->vendor); }; @@ -355,6 +448,8 @@ bgpq3_print_oaspath(FILE* f, struct bgpq_expander* b) return bgpq3_print_cisco_xr_oaspath(f,b); } else if(b->vendor==V_OPENBGPD) { return bgpq3_print_openbgpd_oaspath(f,b); + } else if(b->vendor==V_NOKIA) { + return bgpq3_print_nokia_oaspath(f,b); } else { sx_report(SX_FATAL,"Unknown vendor %i\n", b->vendor); }; @@ -689,6 +784,45 @@ bgpq3_print_ceacl(struct sx_radix_node* n, void* ff) bgpq3_print_ceacl(n->son,ff); }; +void +bgpq3_print_nokia_ipfilter(struct sx_radix_node* n, void* ff) +{ + char prefix[128]; + FILE* f=(FILE*)ff; + if(n->isGlue) goto checkSon; + if(!f) f=stdout; + sx_prefix_snprintf(&n->prefix,prefix,sizeof(prefix)); + fprintf(f," prefix %s\n", prefix); +checkSon: + if(n->son) + bgpq3_print_nokia_ipfilter(n->son, ff); +}; + +void +bgpq3_print_nokia_prefix(struct sx_radix_node* n, void* ff) +{ + char prefix[128]; + FILE* f=(FILE*)ff; + if(n->isGlue) goto checkSon; + if(!f) f=stdout; + sx_prefix_snprintf(&n->prefix,prefix,sizeof(prefix)); + if(!n->isAggregate) { + fprintf(f," prefix %s exact\n", prefix); + } else { + if(n->aggregateLow>n->prefix.masklen) { + fprintf(f," prefix %s prefix-length-range %u-%u\n", + prefix,n->aggregateLow,n->aggregateHi); + } else { + fprintf(f," prefix %s prefix-length-range %u-%u\n", + prefix, n->prefix.masklen, n->aggregateHi); + }; + }; +checkSon: + if(n->son) + bgpq3_print_nokia_prefix(n->son, ff); + +}; + int bgpq3_print_juniper_prefixlist(FILE* f, struct bgpq_expander* b) { @@ -840,6 +974,18 @@ bgpq3_print_format_prefixlist(FILE* f, struct bgpq_expander* b) return 0; }; +int +bgpq3_print_nokia_prefixlist(FILE* f, struct bgpq_expander* b) +{ + bname=b->name ? b->name : "NN"; + fprintf(f,"configure router policy-options\nbegin\nno prefix-list \"%s\"\n", + bname); + fprintf(f,"prefix-list \"%s\"\n", bname); + sx_radix_tree_foreach(b->tree,bgpq3_print_nokia_prefix,f); + fprintf(f,"exit\ncommit\n"); + return 0; +}; + int bgpq3_print_cisco_eacl(FILE* f, struct bgpq_expander* b) { @@ -855,6 +1001,22 @@ bgpq3_print_cisco_eacl(FILE* f, struct bgpq_expander* b) return 0; }; +int +bgpq3_print_nokia_ipprefixlist(FILE* f, struct bgpq_expander* b) +{ + bname=b->name ? b->name : "NN"; + fprintf(f,"configure filter match-list\nno %s-prefix-list \"%s\"\n", + b->tree->family==AF_INET?"ip":"ipv6", bname); + fprintf(f,"%s-prefix-list \"%s\" create\n", b->tree->family==AF_INET?"ip":"ipv6", bname); + if (!sx_radix_tree_empty(b->tree)) { + sx_radix_tree_foreach(b->tree,bgpq3_print_nokia_ipfilter,f); + } else { + fprintf(f,"# generated ip-prefix-list %s is empty\n", bname); + }; + fprintf(f,"exit\n"); + return 0; +}; + int bgpq3_print_prefixlist(FILE* f, struct bgpq_expander* b) { @@ -866,6 +1028,7 @@ bgpq3_print_prefixlist(FILE* f, struct bgpq_expander* b) case V_BIRD: return bgpq3_print_bird_prefixlist(f,b); case V_OPENBGPD: return bgpq3_print_openbgpd_prefixlist(f,b); case V_FORMAT: return bgpq3_print_format_prefixlist(f,b); + case V_NOKIA: return bgpq3_print_nokia_prefixlist(f,b); }; return 0; }; @@ -881,6 +1044,7 @@ bgpq3_print_eacl(FILE* f, struct bgpq_expander* b) case V_BIRD: sx_report(SX_FATAL, "unreachable point\n"); case V_OPENBGPD: return bgpq3_print_openbgpd_prefixlist(f,b); case V_FORMAT: sx_report(SX_FATAL, "unreachable point\n"); + case V_NOKIA: return bgpq3_print_nokia_ipprefixlist(f,b); }; return 0; }; From 7aed731cbaeb9a7c0ae929a58ce22e468116ed78 Mon Sep 17 00:00:00 2001 From: Michail Litvak Date: Wed, 1 Mar 2017 19:54:52 +0200 Subject: [PATCH 2/4] Nokia AS path filter generation improvements --- bgpq3_printer.c | 26 ++++++++++++-------------- 1 file changed, 12 insertions(+), 14 deletions(-) diff --git a/bgpq3_printer.c b/bgpq3_printer.c index 3e89a74..8e0e988 100644 --- a/bgpq3_printer.c +++ b/bgpq3_printer.c @@ -335,8 +335,7 @@ bgpq3_print_nokia_aspath(FILE* f, struct bgpq_expander* b) if(b->asn32s[b->asnumber/65536] && b->asn32s[b->asnumber/65535][(b->asnumber%65536)/8]& (0x80>>(b->asnumber%8))) { - fprintf(f," entry %u expression \"^%u(%u)*$\"\n", lineNo, b->asnumber, - b->asnumber); + fprintf(f," entry %u expression \"%u+\"\n", lineNo, b->asnumber); lineNo++; }; for(k=0;k<65536;k++) { @@ -346,14 +345,14 @@ bgpq3_print_nokia_aspath(FILE* f, struct bgpq_expander* b) if(b->asn32s[k][i]&(0x80>>j)) { if(k*65536+i*8+j==b->asnumber) continue; if(!nc) { - fprintf(f," entry %u expression \"^%u(.)*(%u", + fprintf(f," entry %u expression \"%u.*[%u", lineNo,b->asnumber,k*65536+i*8+j); } else { - fprintf(f,"|%u",k*65536+i*8+j); + fprintf(f," %u",k*65536+i*8+j); }; nc++; if(nc==b->aswidth) { - fprintf(f,")$\"\n"); + fprintf(f,"]\"\n"); nc=0; lineNo++; }; @@ -361,9 +360,9 @@ bgpq3_print_nokia_aspath(FILE* f, struct bgpq_expander* b) }; }; }; - if(nc) fprintf(f,")$\"\n"); + if(nc) fprintf(f,"]\"\n"); else if(lineNo==1) - fprintf(f," entry 1 \"!.*\"\n"); + fprintf(f," entry 1 \"\"\n"); fprintf(f,"exit\ncommit\n"); return 0; }; @@ -380,8 +379,7 @@ bgpq3_print_nokia_oaspath(FILE* f, struct bgpq_expander* b) if(b->asn32s[b->asnumber/65536] && b->asn32s[b->asnumber/65536][(b->asnumber%65536)/8]& (0x80>>(b->asnumber%8))) { - fprintf(f," entry %u expression \"^%u(%u)*$\"\n", lineNo, b->asnumber, - b->asnumber); + fprintf(f," entry %u expression \"%u+\"\n", lineNo, b->asnumber); lineNo++; }; for(k=0;k<65536;k++) { @@ -392,14 +390,14 @@ bgpq3_print_nokia_oaspath(FILE* f, struct bgpq_expander* b) if(b->asn32s[k][i]&(0x80>>j)) { if(k*65536+i*8+j==b->asnumber) continue; if(!nc) { - fprintf(f," entry %u expression \"^(.)*(%u", + fprintf(f," entry %u expression \".*[%u", lineNo,k*65536+i*8+j); } else { - fprintf(f,"|%u",k*65536+i*8+j); + fprintf(f," %u",k*65536+i*8+j); } nc++; if(nc==b->aswidth) { - fprintf(f,")$\"\n"); + fprintf(f,"]\"\n"); nc=0; lineNo++; }; @@ -407,9 +405,9 @@ bgpq3_print_nokia_oaspath(FILE* f, struct bgpq_expander* b) }; }; }; - if(nc) fprintf(f,")$\"\n"); + if(nc) fprintf(f,"]\"\n"); else if(lineNo==1) - fprintf(f," entry 1 expression \"!.*\"\n"); + fprintf(f," entry 1 expression \"\"\n"); fprintf(f,"exit\ncommit\n"); return 0; }; From 4082f23bf088a42b2b5d0f6d8f79dad353b4d411 Mon Sep 17 00:00:00 2001 From: Michail Litvak Date: Wed, 1 Mar 2017 22:24:14 +0200 Subject: [PATCH 3/4] Nokia as-path filter: no explicit deny regexp possible --- bgpq3_printer.c | 4 ---- 1 file changed, 4 deletions(-) diff --git a/bgpq3_printer.c b/bgpq3_printer.c index 8e0e988..806a7f2 100644 --- a/bgpq3_printer.c +++ b/bgpq3_printer.c @@ -361,8 +361,6 @@ bgpq3_print_nokia_aspath(FILE* f, struct bgpq_expander* b) }; }; if(nc) fprintf(f,"]\"\n"); - else if(lineNo==1) - fprintf(f," entry 1 \"\"\n"); fprintf(f,"exit\ncommit\n"); return 0; }; @@ -406,8 +404,6 @@ bgpq3_print_nokia_oaspath(FILE* f, struct bgpq_expander* b) }; }; if(nc) fprintf(f,"]\"\n"); - else if(lineNo==1) - fprintf(f," entry 1 expression \"\"\n"); fprintf(f,"exit\ncommit\n"); return 0; }; From 187e20d5785a8e9b14693dfa7020dce53ebffc19 Mon Sep 17 00:00:00 2001 From: Michail Litvak Date: Sun, 5 Mar 2017 09:26:39 +0200 Subject: [PATCH 4/4] Man page sync --- bgpq3.8 | 2 ++ 1 file changed, 2 insertions(+) diff --git a/bgpq3.8 b/bgpq3.8 index 11ccd0d..735060c 100644 --- a/bgpq3.8 +++ b/bgpq3.8 @@ -93,6 +93,8 @@ maximum prefix-length of accepted prefixes (default: 32 for IPv4 and 128 for IPv6). .It Fl M Ar match extra match conditions for Juniper route-filters. +.It Fl N +generate config for Nokia SR OS (former Alcatel-Lucent) (default: Cisco) .It Fl l Ar name name of generated entry. .It Fl L Ar limit