04-12-2012 12:16 AM
I have an idea. We have branch SRX 650 with full internet route table.. more than 350000 routes. There is on default route. But in case of I want to setup default route pointing to the ebgp peer and of course do not readvertise it back. This should not be a problem. But I want to port mirror packets that are not matched against bgp "received" routes and are matched against this default route. There is an EX 4200 in front of SRX. SRX is configured as stateless. Does anybody have any idea how to achieve this?
05-09-2012 05:40 AM
Maybe you could use virtual routers, but are going to need a tunnel interface.
Create a routing-instance VR, type virtual router.
Create a default static route with next-table option, pointing to the new VR.inet.0 table.
On that VR, create a tunnel interface between VR and the inet.0 table.
Create default route from VR to tunnel interface.
Apply monitor to tunnel interface.
This way monitor would capture only packets forwarded by this default route and VR.