Scenario. I am assigned a /25 lan block from the ISP. They allow us to carve that up into two /26's so we can load share across two circuits. (Think advertise /26 A out Circuit A and /26 B + prepended out Circuit A, and vice versa for Circuit B)
My problem is this. On the inside/LAN side interface I have the entire /25 lan block configured on the interface.
My device (SRX) does not want to advertise the two /26's. I'm thinking the exact /26 must be in my routing table for the advertisement to work. So at this point I'm wondering if there is any work around.
Here's the partial config. I am thinking it doesn't work because I lack the exact /26 routes in my table. Is there a way to get around this. I'd like to advoid configuring them separately unless there is no work around.
interfaces {
ge-0/0/0 {
description "LAN INTERFACE";
}
unit 0 {
family inet {
address 10.10.10.0/25;
policy-options {
prefix-list SUBNET-A {
10.10.10.0/26;
}
prefix-list SUBNET-B {
10.10.10.64/26;
policy-statement CIRCUIT-A-OUT {
term SUBNET-A-TERM {
from {
prefix-list SUBNET-A;
}
then accept;
}
term SUBNET-B-TERM {
from {
prefix-list SUBNET-B;
}
then {
as-path-prepend "65001 65001";
accept;
protocols {
bgp {
group ISP-GROUP {
type external;
peer-as 65002;
neighbor 1.1.1.1 {
import DEFAULT-IN;
export CIRCUIT-A-OUT;