# Version: VyOS 2026.03 # Release train: circinus # Release flavor: generic # # Built by: autobuild@vyos.net # Built on: Wed 18 Mar 2026 20:03 UTC # Build UUID: 3969e1c7-a4bb-459a-ac7f-54749c153d21 # Build commit ID: 1cac4fd63750b0 # # Architecture: x86_64 # Boot via: installed image # System type: KVM guest # # Hardware vendor: QEMU # Hardware model: Standard PC (i440FX + PIIX, 1996) # Hardware S/N: # Hardware UUID: dda84f9d-f21f-4f7b-9f69-139b0b290397 # # Copyright: VyOS maintainers and contributors set high-availability vrrp group vms-1.nbg.de-1 address 2a0f:6283:1400:1::1/64 set high-availability vrrp group vms-1.nbg.de-1 address fe80::1/64 set high-availability vrrp group vms-1.nbg.de-1 interface 'eth1' set high-availability vrrp group vms-1.nbg.de-1 priority '50' set high-availability vrrp group vms-1.nbg.de-1 vrid '1' set interfaces dummy dum0 address '2a0f:6283:1400::1/128' set interfaces dummy dum0 vrf 'net' set interfaces ethernet eth0 address '2a01:4f8:1b7:730::c/56' set interfaces ethernet eth0 description 'Uplink0' set interfaces ethernet eth0 hw-id '90:a1:82:d0:c5:ea' set interfaces ethernet eth0 mtu '1500' set interfaces ethernet eth0 offload gro set interfaces ethernet eth0 offload gso set interfaces ethernet eth0 offload sg set interfaces ethernet eth0 offload tso set interfaces ethernet eth1 address '2a0f:6283:1400:1::3/64' set interfaces ethernet eth1 description 'vms-1' set interfaces ethernet eth1 hw-id '90:a1:82:ef:00:2d' set interfaces ethernet eth1 mtu '1500' set interfaces ethernet eth1 offload gro set interfaces ethernet eth1 offload gso set interfaces ethernet eth1 offload sg set interfaces ethernet eth1 offload tso set interfaces ethernet eth1 vrf 'net' set interfaces ethernet eth2 address '2a04:5b81:21d0::2:5/127' set interfaces ethernet eth2 description 'Lukas' set interfaces ethernet eth2 hw-id '90:a1:82:54:13:7c' set interfaces ethernet eth2 mtu '1500' set interfaces ethernet eth2 offload gro set interfaces ethernet eth2 offload gso set interfaces ethernet eth2 offload sg set interfaces ethernet eth2 offload tso set interfaces ethernet eth2 vrf 'net' set interfaces ethernet eth3 address '2a0f:6283:1400::1:0:0/127' set interfaces ethernet eth3 description 'bbr00.nbg.de' set interfaces ethernet eth3 hw-id '90:a1:82:57:21:9c' set interfaces ethernet eth3 mtu '9000' set interfaces ethernet eth3 offload gro set interfaces ethernet eth3 offload gso set interfaces ethernet eth3 offload sg set interfaces ethernet eth3 offload tso set interfaces ethernet eth3 vrf 'net' set interfaces loopback lo set interfaces tunnel tun00101 address '2a0f:6283:1400::1:0:2/127' set interfaces tunnel tun00101 description 'bbr01.dus.de' set interfaces tunnel tun00101 encapsulation 'ip6gretap' set interfaces tunnel tun00101 mtu '1440' set interfaces tunnel tun00101 remote '2a14:7c0:7000:3ff::14b' set interfaces tunnel tun00101 source-address '2a01:4f8:1b7:730::c' set interfaces tunnel tun00101 vrf 'net' set interfaces tunnel tun41051 address '2a01:20e:1002:118::2/64' set interfaces tunnel tun41051 description 'Freetransit.ch' set interfaces tunnel tun41051 encapsulation 'ip6gre' set interfaces tunnel tun41051 mtu '1456' set interfaces tunnel tun41051 remote '2a00:6340:2080:1905::10' set interfaces tunnel tun41051 source-address '2a01:4f8:1b7:730::c' set interfaces tunnel tun41051 vrf 'net' set interfaces tunnel tun203478 address '2a0f:6283:1400::2:0:4/127' set interfaces tunnel tun203478 description 'Sarah' set interfaces tunnel tun203478 encapsulation 'ip6gre' set interfaces tunnel tun203478 mtu '1400' set interfaces tunnel tun203478 remote '2a0f:5707:ab80:3478::1' set interfaces tunnel tun203478 source-address '2a01:4f8:1b7:730::c' set interfaces tunnel tun203478 vrf 'net' set interfaces tunnel tun210106 address '2a0f:6283:1400::2:0:2/127' set interfaces tunnel tun210106 description 'Adrian' set interfaces tunnel tun210106 encapsulation 'ip6gre' set interfaces tunnel tun210106 mtu '1456' set interfaces tunnel tun210106 remote '2a14:7c0:7000:3ff::133' set interfaces tunnel tun210106 source-address '2a01:4f8:1b7:730::c' set interfaces tunnel tun210106 vrf 'net' set interfaces tunnel tun212895 address '2a11:6c7:f00:1b2::2/64' set interfaces tunnel tun212895 description 'Route64' set interfaces tunnel tun212895 encapsulation 'ip6gre' set interfaces tunnel tun212895 mtu '1456' set interfaces tunnel tun212895 remote '2a11:6c7:1::1' set interfaces tunnel tun212895 source-address '2a01:4f8:1b7:730::c' set interfaces tunnel tun212895 vrf 'net' set policy as-path-list apl-bogon-asns rule 10 action 'permit' set policy as-path-list apl-bogon-asns rule 10 regex '23456' set policy as-path-list apl-bogon-asns rule 20 action 'permit' set policy as-path-list apl-bogon-asns rule 20 regex '64496-131071' set policy as-path-list apl-bogon-asns rule 30 action 'permit' set policy as-path-list apl-bogon-asns rule 30 regex '4200000000-4294967295' set policy large-community-list cm-learnt-downstream rule 1 action 'permit' set policy large-community-list cm-learnt-downstream rule 1 regex '213422:4:*' set policy large-community-list lcm-announce-all rule 1 action 'permit' set policy large-community-list lcm-announce-all rule 1 regex '213422:100:*' set policy large-community-list lcm-announce-to-downstream rule 1 action 'permit' set policy large-community-list lcm-announce-to-downstream rule 1 regex '213422:100:3' set policy large-community-list lcm-announce-to-internal rule 1 action 'permit' set policy large-community-list lcm-announce-to-internal rule 1 regex '213422:100:0' set policy large-community-list lcm-announce-to-peer rule 1 action 'permit' set policy large-community-list lcm-announce-to-peer rule 1 regex '213422:100:2' set policy large-community-list lcm-announce-to-upstream rule 1 action 'permit' set policy large-community-list lcm-announce-to-upstream rule 1 regex '213422:100:1' set policy large-community-list lcm-own-communities rule 1 action 'permit' set policy large-community-list lcm-own-communities rule 1 regex '213422:*:*' set policy large-community-list lcm-reject-as41051 rule 1 action 'permit' set policy large-community-list lcm-reject-as41051 rule 1 regex '213422:205:41051' set policy large-community-list lcm-reject-as199036 rule 1 action 'permit' set policy large-community-list lcm-reject-as199036 rule 1 regex '213422:205:199036' set policy large-community-list lcm-reject-as200449 rule 1 action 'permit' set policy large-community-list lcm-reject-as200449 rule 1 regex '213422:205:200449' set policy large-community-list lcm-reject-as203478 rule 1 action 'permit' set policy large-community-list lcm-reject-as203478 rule 1 regex '213422:205:203478' set policy large-community-list lcm-reject-as210106 rule 1 action 'permit' set policy large-community-list lcm-reject-as210106 rule 1 regex '213422:205:210106' set policy large-community-list lcm-reject-as212232 rule 1 action 'permit' set policy large-community-list lcm-reject-as212232 rule 1 regex '213422:205:212232' set policy large-community-list lcm-reject-as212895 rule 1 action 'permit' set policy large-community-list lcm-reject-as212895 rule 1 regex '213422:205:212895' set policy large-community-list lcm-reject-as213036 rule 1 action 'permit' set policy large-community-list lcm-reject-as213036 rule 1 regex '213422:205:213036' set policy large-community-list lcm-reject-as213292 rule 1 action 'permit' set policy large-community-list lcm-reject-as213292 rule 1 regex '213422:205:213292' set policy large-community-list lcm-reject-as213392 rule 1 action 'permit' set policy large-community-list lcm-reject-as213392 rule 1 regex '213422:205:213392' set policy large-community-list lcm-reject-as213416 rule 1 action 'permit' set policy large-community-list lcm-reject-as213416 rule 1 regex '213422:205:213416' set policy large-community-list lcm-reject-as213423 rule 1 action 'permit' set policy large-community-list lcm-reject-as213423 rule 1 regex '213422:205:213423' set policy large-community-list lcm-reject-as214591 rule 1 action 'permit' set policy large-community-list lcm-reject-as214591 rule 1 regex '213422:205:214591' set policy large-community-list lcm-reject-as214915 rule 1 action 'permit' set policy large-community-list lcm-reject-as214915 rule 1 regex '213422:205:214915' set policy large-community-list lcm-reject-city-dusseldorf-de rule 1 action 'permit' set policy large-community-list lcm-reject-city-dusseldorf-de rule 1 regex '213422:210:1' set policy large-community-list lcm-reject-city-nuremberg-de rule 1 action 'permit' set policy large-community-list lcm-reject-city-nuremberg-de rule 1 regex '213422:210:0' set policy large-community-list lcm-reject-country-germany rule 1 action 'permit' set policy large-community-list lcm-reject-country-germany rule 1 regex '213422:209:0' set policy large-community-list lcm-reject-region-africa rule 1 action 'permit' set policy large-community-list lcm-reject-region-africa rule 1 regex '213422:208:1' set policy large-community-list lcm-reject-region-antarctica rule 1 action 'permit' set policy large-community-list lcm-reject-region-antarctica rule 1 regex '213422:208:0' set policy large-community-list lcm-reject-region-asia rule 1 action 'permit' set policy large-community-list lcm-reject-region-asia rule 1 regex '213422:208:2' set policy large-community-list lcm-reject-region-australia rule 1 action 'permit' set policy large-community-list lcm-reject-region-australia rule 1 regex '213422:208:5' set policy large-community-list lcm-reject-region-europe rule 1 action 'permit' set policy large-community-list lcm-reject-region-europe rule 1 regex '213422:208:0' set policy large-community-list lcm-reject-region-north-america rule 1 action 'permit' set policy large-community-list lcm-reject-region-north-america rule 1 regex '213422:208:3' set policy large-community-list lcm-reject-region-south-america rule 1 action 'permit' set policy large-community-list lcm-reject-region-south-america rule 1 regex '213422:208:4' set policy large-community-list lcm-reject-type-downstream rule 1 action 'permit' set policy large-community-list lcm-reject-type-downstream rule 1 regex '213422:206:5' set policy large-community-list lcm-reject-type-ixp-peer rule 1 action 'permit' set policy large-community-list lcm-reject-type-ixp-peer rule 1 regex '213422:206:3' set policy large-community-list lcm-reject-type-ixp-rs rule 1 action 'permit' set policy large-community-list lcm-reject-type-ixp-rs rule 1 regex '213422:206:2' set policy large-community-list lcm-reject-type-pni rule 1 action 'permit' set policy large-community-list lcm-reject-type-pni rule 1 regex '213422:206:4' set policy large-community-list lcm-reject-type-upstream rule 1 action 'permit' set policy large-community-list lcm-reject-type-upstream rule 1 regex '213422:206:1' set policy prefix-list6 pl6-bogons rule 10 action 'permit' set policy prefix-list6 pl6-bogons rule 10 le '128' set policy prefix-list6 pl6-bogons rule 10 prefix '::/8' set policy prefix-list6 pl6-bogons rule 20 action 'permit' set policy prefix-list6 pl6-bogons rule 20 le '128' set policy prefix-list6 pl6-bogons rule 20 prefix '100::/64' set policy prefix-list6 pl6-bogons rule 30 action 'permit' set policy prefix-list6 pl6-bogons rule 30 le '128' set policy prefix-list6 pl6-bogons rule 30 prefix '2001:2::/48' set policy prefix-list6 pl6-bogons rule 40 action 'permit' set policy prefix-list6 pl6-bogons rule 40 le '128' set policy prefix-list6 pl6-bogons rule 40 prefix '2001:10::/28' set policy prefix-list6 pl6-bogons rule 50 action 'permit' set policy prefix-list6 pl6-bogons rule 50 le '128' set policy prefix-list6 pl6-bogons rule 50 prefix '2001:db8::/32' set policy prefix-list6 pl6-bogons rule 60 action 'permit' set policy prefix-list6 pl6-bogons rule 60 le '128' set policy prefix-list6 pl6-bogons rule 60 prefix '2002::/16' set policy prefix-list6 pl6-bogons rule 70 action 'permit' set policy prefix-list6 pl6-bogons rule 70 le '128' set policy prefix-list6 pl6-bogons rule 70 prefix '3ffe::/16' set policy prefix-list6 pl6-bogons rule 80 action 'permit' set policy prefix-list6 pl6-bogons rule 80 le '128' set policy prefix-list6 pl6-bogons rule 80 prefix 'fc00::/7' set policy prefix-list6 pl6-bogons rule 90 action 'permit' set policy prefix-list6 pl6-bogons rule 90 le '128' set policy prefix-list6 pl6-bogons rule 90 prefix 'fe80::/10' set policy prefix-list6 pl6-bogons rule 100 action 'permit' set policy prefix-list6 pl6-bogons rule 100 le '128' set policy prefix-list6 pl6-bogons rule 100 prefix 'fec0::/10' set policy prefix-list6 pl6-bogons rule 110 action 'permit' set policy prefix-list6 pl6-bogons rule 110 le '128' set policy prefix-list6 pl6-bogons rule 110 prefix 'ff00::/8' set policy prefix-list6 pl6-bogons rule 120 action 'permit' set policy prefix-list6 pl6-bogons rule 120 le '128' set policy prefix-list6 pl6-bogons rule 120 prefix '3fff::/20' set policy prefix-list6 pl6-bogons rule 130 action 'permit' set policy prefix-list6 pl6-bogons rule 130 le '128' set policy prefix-list6 pl6-bogons rule 130 prefix '5f00::/16' set policy prefix-list6 pl6-ixp-lan rule 3 action 'permit' set policy prefix-list6 pl6-ixp-lan rule 3 ge '64' set policy prefix-list6 pl6-ixp-lan rule 3 le '128' set policy prefix-list6 pl6-ixp-lan rule 3 prefix '2001:7f8:15b:1::/64' set policy prefix-list6 pl6-tiny-prefix rule 10 action 'permit' set policy prefix-list6 pl6-tiny-prefix rule 10 ge '49' set policy prefix-list6 pl6-tiny-prefix rule 10 le '128' set policy prefix-list6 pl6-tiny-prefix rule 10 prefix '::/0' set policy route-map rm-as41051-in rule 100 action 'permit' set policy route-map rm-as41051-in rule 100 description 'DELETE-XGWQ-COMMUNITIES' set policy route-map rm-as41051-in rule 100 on-match next set policy route-map rm-as41051-in rule 100 set large-community delete 'lcm-own-communities' set policy route-map rm-as41051-in rule 101 action 'deny' set policy route-map rm-as41051-in rule 101 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as41051-in rule 101 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as41051-in rule 102 action 'deny' set policy route-map rm-as41051-in rule 102 description 'REJECT-BOGON-ASNS' set policy route-map rm-as41051-in rule 102 match as-path 'apl-bogon-asns' set policy route-map rm-as41051-in rule 103 action 'deny' set policy route-map rm-as41051-in rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as41051-in rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as41051-in rule 105 action 'deny' set policy route-map rm-as41051-in rule 105 description 'RPKI-INVALID' set policy route-map rm-as41051-in rule 105 match rpki 'invalid' set policy route-map rm-as41051-in rule 106 action 'permit' set policy route-map rm-as41051-in rule 106 description 'RPKI-NOTFOUND' set policy route-map rm-as41051-in rule 106 match rpki 'notfound' set policy route-map rm-as41051-in rule 106 on-match next set policy route-map rm-as41051-in rule 106 set large-community add '213422:7:1' set policy route-map rm-as41051-in rule 107 action 'permit' set policy route-map rm-as41051-in rule 107 description 'RPKI-VALID' set policy route-map rm-as41051-in rule 107 match rpki 'valid' set policy route-map rm-as41051-in rule 107 on-match next set policy route-map rm-as41051-in rule 107 set large-community add '213422:7:0' set policy route-map rm-as41051-in rule 200 action 'permit' set policy route-map rm-as41051-in rule 200 description 'ADD-ORIGIN-COMMUNITIES' set policy route-map rm-as41051-in rule 200 on-match next set policy route-map rm-as41051-in rule 200 set large-community add '213422:0:1' set policy route-map rm-as41051-in rule 200 set large-community add '213422:5:41051' set policy route-map rm-as41051-in rule 200 set large-community add '213422:6:1' set policy route-map rm-as41051-in rule 200 set large-community add '213422:8:0' set policy route-map rm-as41051-in rule 200 set large-community add '213422:9:0' set policy route-map rm-as41051-in rule 200 set large-community add '213422:10:0' set policy route-map rm-as41051-in rule 201 action 'permit' set policy route-map rm-as41051-in rule 201 description 'UPSTREAM' set policy route-map rm-as41051-in rule 201 on-match next set policy route-map rm-as41051-in rule 201 set large-community add '213422:100:0' set policy route-map rm-as41051-in rule 201 set large-community add '213422:100:3' set policy route-map rm-as41051-in rule 201 set local-preference '50' set policy route-map rm-as41051-in rule 399 action 'permit' set policy route-map rm-as41051-in rule 399 match large-community large-community-list 'lcm-announce-to-internal' set policy route-map rm-as41051-out rule 100 action 'deny' set policy route-map rm-as41051-out rule 100 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as41051-out rule 100 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as41051-out rule 101 action 'deny' set policy route-map rm-as41051-out rule 101 description 'REJECT-BOGON-ASNS' set policy route-map rm-as41051-out rule 101 match as-path 'apl-bogon-asns' set policy route-map rm-as41051-out rule 102 action 'deny' set policy route-map rm-as41051-out rule 102 description 'REJECT-BOGON-PREFIXES' set policy route-map rm-as41051-out rule 102 match ipv6 address prefix-list 'pl6-bogons' set policy route-map rm-as41051-out rule 103 action 'deny' set policy route-map rm-as41051-out rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as41051-out rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as41051-out rule 200 action 'deny' set policy route-map rm-as41051-out rule 200 description 'EXIT-REJECT-TYPE' set policy route-map rm-as41051-out rule 200 match large-community large-community-list 'lcm-reject-type-upstream' set policy route-map rm-as41051-out rule 201 action 'deny' set policy route-map rm-as41051-out rule 201 description 'EXIT-REJECT-REGION' set policy route-map rm-as41051-out rule 201 match large-community large-community-list 'lcm-reject-region-europe' set policy route-map rm-as41051-out rule 202 action 'deny' set policy route-map rm-as41051-out rule 202 description 'EXIT-REJECT-COUNTRY' set policy route-map rm-as41051-out rule 202 match large-community large-community-list 'lcm-reject-country-germany' set policy route-map rm-as41051-out rule 203 action 'deny' set policy route-map rm-as41051-out rule 203 description 'EXIT-REJECT-CITY' set policy route-map rm-as41051-out rule 203 match large-community large-community-list 'lcm-reject-city-nuremberg-de' set policy route-map rm-as41051-out rule 301 action 'deny' set policy route-map rm-as41051-out rule 301 description 'NO-ADVERTISE-41051' set policy route-map rm-as41051-out rule 301 match large-community large-community-list 'lcm-reject-as41051' set policy route-map rm-as41051-out rule 399 action 'permit' set policy route-map rm-as41051-out rule 399 description 'ANNOUNCE' set policy route-map rm-as41051-out rule 399 match large-community large-community-list 'lcm-announce-to-upstream' set policy route-map rm-as41051-out rule 399 set large-community delete 'lcm-announce-all' set policy route-map rm-as200449-out rule 100 action 'deny' set policy route-map rm-as200449-out rule 100 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as200449-out rule 100 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as200449-out rule 101 action 'deny' set policy route-map rm-as200449-out rule 101 description 'REJECT-BOGON-ASNS' set policy route-map rm-as200449-out rule 101 match as-path 'apl-bogon-asns' set policy route-map rm-as200449-out rule 102 action 'deny' set policy route-map rm-as200449-out rule 102 description 'REJECT-BOGON-PREFIXES' set policy route-map rm-as200449-out rule 102 match ipv6 address prefix-list 'pl6-bogons' set policy route-map rm-as200449-out rule 103 action 'deny' set policy route-map rm-as200449-out rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as200449-out rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as200449-out rule 200 action 'deny' set policy route-map rm-as200449-out rule 200 description 'EXIT-REJECT-TYPE' set policy route-map rm-as200449-out rule 200 match large-community large-community-list 'lcm-reject-type-downstream' set policy route-map rm-as200449-out rule 201 action 'deny' set policy route-map rm-as200449-out rule 201 description 'EXIT-REJECT-REGION' set policy route-map rm-as200449-out rule 201 match large-community large-community-list 'lcm-reject-region-europe' set policy route-map rm-as200449-out rule 202 action 'deny' set policy route-map rm-as200449-out rule 202 description 'EXIT-REJECT-COUNTRY' set policy route-map rm-as200449-out rule 202 match large-community large-community-list 'lcm-reject-country-germany' set policy route-map rm-as200449-out rule 203 action 'deny' set policy route-map rm-as200449-out rule 203 description 'EXIT-REJECT-CITY' set policy route-map rm-as200449-out rule 203 match large-community large-community-list 'lcm-reject-city-nuremberg-de' set policy route-map rm-as200449-out rule 301 action 'deny' set policy route-map rm-as200449-out rule 301 description 'NO-ADVERTISE-200449' set policy route-map rm-as200449-out rule 301 match large-community large-community-list 'lcm-reject-as200449' set policy route-map rm-as200449-out rule 399 action 'permit' set policy route-map rm-as200449-out rule 399 description 'ANNOUNCE' set policy route-map rm-as200449-out rule 399 match large-community large-community-list 'lcm-announce-to-downstream' set policy route-map rm-as200449-out rule 399 set large-community delete 'lcm-announce-all' set policy route-map rm-as203478-in rule 100 action 'permit' set policy route-map rm-as203478-in rule 100 description 'DELETE-XGWQ-COMMUNITIES' set policy route-map rm-as203478-in rule 100 on-match next set policy route-map rm-as203478-in rule 100 set large-community delete 'lcm-own-communities' set policy route-map rm-as203478-in rule 101 action 'deny' set policy route-map rm-as203478-in rule 101 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as203478-in rule 101 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as203478-in rule 102 action 'deny' set policy route-map rm-as203478-in rule 102 description 'REJECT-BOGON-ASNS' set policy route-map rm-as203478-in rule 102 match as-path 'apl-bogon-asns' set policy route-map rm-as203478-in rule 103 action 'deny' set policy route-map rm-as203478-in rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as203478-in rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as203478-in rule 105 action 'deny' set policy route-map rm-as203478-in rule 105 description 'RPKI-INVALID' set policy route-map rm-as203478-in rule 105 match rpki 'invalid' set policy route-map rm-as203478-in rule 106 action 'permit' set policy route-map rm-as203478-in rule 106 description 'RPKI-NOTFOUND' set policy route-map rm-as203478-in rule 106 match rpki 'notfound' set policy route-map rm-as203478-in rule 106 on-match next set policy route-map rm-as203478-in rule 106 set large-community add '213422:7:1' set policy route-map rm-as203478-in rule 107 action 'permit' set policy route-map rm-as203478-in rule 107 description 'RPKI-VALID' set policy route-map rm-as203478-in rule 107 match rpki 'valid' set policy route-map rm-as203478-in rule 107 on-match next set policy route-map rm-as203478-in rule 107 set large-community add '213422:7:0' set policy route-map rm-as203478-in rule 200 action 'permit' set policy route-map rm-as203478-in rule 200 description 'ADD-ORIGIN-COMMUNITIES' set policy route-map rm-as203478-in rule 200 on-match next set policy route-map rm-as203478-in rule 200 set large-community add '213422:0:1' set policy route-map rm-as203478-in rule 200 set large-community add '213422:5:203478' set policy route-map rm-as203478-in rule 200 set large-community add '213422:6:4' set policy route-map rm-as203478-in rule 200 set large-community add '213422:8:0' set policy route-map rm-as203478-in rule 200 set large-community add '213422:9:0' set policy route-map rm-as203478-in rule 200 set large-community add '213422:10:0' set policy route-map rm-as203478-in rule 201 action 'permit' set policy route-map rm-as203478-in rule 201 description 'UPSTREAM' set policy route-map rm-as203478-in rule 201 on-match next set policy route-map rm-as203478-in rule 201 set large-community add '213422:100:0' set policy route-map rm-as203478-in rule 201 set large-community add '213422:100:3' set policy route-map rm-as203478-in rule 201 set local-preference '200' set policy route-map rm-as203478-in rule 399 action 'permit' set policy route-map rm-as203478-in rule 399 match large-community large-community-list 'lcm-announce-to-internal' set policy route-map rm-as203478-out rule 100 action 'deny' set policy route-map rm-as203478-out rule 100 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as203478-out rule 100 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as203478-out rule 101 action 'deny' set policy route-map rm-as203478-out rule 101 description 'REJECT-BOGON-ASNS' set policy route-map rm-as203478-out rule 101 match as-path 'apl-bogon-asns' set policy route-map rm-as203478-out rule 102 action 'deny' set policy route-map rm-as203478-out rule 102 description 'REJECT-BOGON-PREFIXES' set policy route-map rm-as203478-out rule 102 match ipv6 address prefix-list 'pl6-bogons' set policy route-map rm-as203478-out rule 103 action 'deny' set policy route-map rm-as203478-out rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as203478-out rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as203478-out rule 200 action 'deny' set policy route-map rm-as203478-out rule 200 description 'EXIT-REJECT-TYPE' set policy route-map rm-as203478-out rule 200 match large-community large-community-list 'lcm-reject-type-pni' set policy route-map rm-as203478-out rule 201 action 'deny' set policy route-map rm-as203478-out rule 201 description 'EXIT-REJECT-REGION' set policy route-map rm-as203478-out rule 201 match large-community large-community-list 'lcm-reject-region-europe' set policy route-map rm-as203478-out rule 202 action 'deny' set policy route-map rm-as203478-out rule 202 description 'EXIT-REJECT-COUNTRY' set policy route-map rm-as203478-out rule 202 match large-community large-community-list 'lcm-reject-country-germany' set policy route-map rm-as203478-out rule 203 action 'deny' set policy route-map rm-as203478-out rule 203 description 'EXIT-REJECT-CITY' set policy route-map rm-as203478-out rule 203 match large-community large-community-list 'lcm-reject-city-nuremberg-de' set policy route-map rm-as203478-out rule 301 action 'deny' set policy route-map rm-as203478-out rule 301 description 'NO-ADVERTISE-203478' set policy route-map rm-as203478-out rule 301 match large-community large-community-list 'lcm-reject-as203478' set policy route-map rm-as203478-out rule 399 action 'permit' set policy route-map rm-as203478-out rule 399 description 'ANNOUNCE' set policy route-map rm-as203478-out rule 399 match large-community large-community-list 'lcm-announce-to-peer' set policy route-map rm-as203478-out rule 399 set large-community delete 'lcm-announce-all' set policy route-map rm-as210106-in rule 100 action 'permit' set policy route-map rm-as210106-in rule 100 description 'DELETE-XGWQ-COMMUNITIES' set policy route-map rm-as210106-in rule 100 on-match next set policy route-map rm-as210106-in rule 100 set large-community delete 'lcm-own-communities' set policy route-map rm-as210106-in rule 101 action 'deny' set policy route-map rm-as210106-in rule 101 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as210106-in rule 101 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as210106-in rule 102 action 'deny' set policy route-map rm-as210106-in rule 102 description 'REJECT-BOGON-ASNS' set policy route-map rm-as210106-in rule 102 match as-path 'apl-bogon-asns' set policy route-map rm-as210106-in rule 103 action 'deny' set policy route-map rm-as210106-in rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as210106-in rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as210106-in rule 105 action 'deny' set policy route-map rm-as210106-in rule 105 description 'RPKI-INVALID' set policy route-map rm-as210106-in rule 105 match rpki 'invalid' set policy route-map rm-as210106-in rule 106 action 'permit' set policy route-map rm-as210106-in rule 106 description 'RPKI-NOTFOUND' set policy route-map rm-as210106-in rule 106 match rpki 'notfound' set policy route-map rm-as210106-in rule 106 on-match next set policy route-map rm-as210106-in rule 106 set large-community add '213422:7:1' set policy route-map rm-as210106-in rule 107 action 'permit' set policy route-map rm-as210106-in rule 107 description 'RPKI-VALID' set policy route-map rm-as210106-in rule 107 match rpki 'valid' set policy route-map rm-as210106-in rule 107 on-match next set policy route-map rm-as210106-in rule 107 set large-community add '213422:7:0' set policy route-map rm-as210106-in rule 200 action 'permit' set policy route-map rm-as210106-in rule 200 description 'ADD-ORIGIN-COMMUNITIES' set policy route-map rm-as210106-in rule 200 on-match next set policy route-map rm-as210106-in rule 200 set large-community add '213422:0:1' set policy route-map rm-as210106-in rule 200 set large-community add '213422:5:210106' set policy route-map rm-as210106-in rule 200 set large-community add '213422:6:4' set policy route-map rm-as210106-in rule 200 set large-community add '213422:8:0' set policy route-map rm-as210106-in rule 200 set large-community add '213422:9:0' set policy route-map rm-as210106-in rule 200 set large-community add '213422:10:0' set policy route-map rm-as210106-in rule 201 action 'permit' set policy route-map rm-as210106-in rule 201 description 'UPSTREAM' set policy route-map rm-as210106-in rule 201 on-match next set policy route-map rm-as210106-in rule 201 set large-community add '213422:100:0' set policy route-map rm-as210106-in rule 201 set large-community add '213422:100:3' set policy route-map rm-as210106-in rule 201 set local-preference '200' set policy route-map rm-as210106-in rule 399 action 'permit' set policy route-map rm-as210106-in rule 399 match large-community large-community-list 'lcm-announce-to-internal' set policy route-map rm-as210106-out rule 100 action 'deny' set policy route-map rm-as210106-out rule 100 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as210106-out rule 100 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as210106-out rule 101 action 'deny' set policy route-map rm-as210106-out rule 101 description 'REJECT-BOGON-ASNS' set policy route-map rm-as210106-out rule 101 match as-path 'apl-bogon-asns' set policy route-map rm-as210106-out rule 102 action 'deny' set policy route-map rm-as210106-out rule 102 description 'REJECT-BOGON-PREFIXES' set policy route-map rm-as210106-out rule 102 match ipv6 address prefix-list 'pl6-bogons' set policy route-map rm-as210106-out rule 103 action 'deny' set policy route-map rm-as210106-out rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as210106-out rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as210106-out rule 200 action 'deny' set policy route-map rm-as210106-out rule 200 description 'EXIT-REJECT-TYPE' set policy route-map rm-as210106-out rule 200 match large-community large-community-list 'lcm-reject-type-pni' set policy route-map rm-as210106-out rule 201 action 'deny' set policy route-map rm-as210106-out rule 201 description 'EXIT-REJECT-REGION' set policy route-map rm-as210106-out rule 201 match large-community large-community-list 'lcm-reject-region-europe' set policy route-map rm-as210106-out rule 202 action 'deny' set policy route-map rm-as210106-out rule 202 description 'EXIT-REJECT-COUNTRY' set policy route-map rm-as210106-out rule 202 match large-community large-community-list 'lcm-reject-country-germany' set policy route-map rm-as210106-out rule 203 action 'deny' set policy route-map rm-as210106-out rule 203 description 'EXIT-REJECT-CITY' set policy route-map rm-as210106-out rule 203 match large-community large-community-list 'lcm-reject-city-nuremberg-de' set policy route-map rm-as210106-out rule 301 action 'deny' set policy route-map rm-as210106-out rule 301 description 'NO-ADVERTISE-210106' set policy route-map rm-as210106-out rule 301 match large-community large-community-list 'lcm-reject-as210106' set policy route-map rm-as210106-out rule 399 action 'permit' set policy route-map rm-as210106-out rule 399 description 'ANNOUNCE' set policy route-map rm-as210106-out rule 399 match large-community large-community-list 'lcm-announce-to-peer' set policy route-map rm-as210106-out rule 399 set large-community delete 'lcm-announce-all' set policy route-map rm-as212232-out rule 100 action 'deny' set policy route-map rm-as212232-out rule 100 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as212232-out rule 100 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as212232-out rule 101 action 'deny' set policy route-map rm-as212232-out rule 101 description 'REJECT-BOGON-ASNS' set policy route-map rm-as212232-out rule 101 match as-path 'apl-bogon-asns' set policy route-map rm-as212232-out rule 102 action 'deny' set policy route-map rm-as212232-out rule 102 description 'REJECT-BOGON-PREFIXES' set policy route-map rm-as212232-out rule 102 match ipv6 address prefix-list 'pl6-bogons' set policy route-map rm-as212232-out rule 103 action 'deny' set policy route-map rm-as212232-out rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as212232-out rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as212232-out rule 200 action 'deny' set policy route-map rm-as212232-out rule 200 description 'EXIT-REJECT-TYPE' set policy route-map rm-as212232-out rule 200 match large-community large-community-list 'lcm-reject-type-downstream' set policy route-map rm-as212232-out rule 201 action 'deny' set policy route-map rm-as212232-out rule 201 description 'EXIT-REJECT-REGION' set policy route-map rm-as212232-out rule 201 match large-community large-community-list 'lcm-reject-region-europe' set policy route-map rm-as212232-out rule 202 action 'deny' set policy route-map rm-as212232-out rule 202 description 'EXIT-REJECT-COUNTRY' set policy route-map rm-as212232-out rule 202 match large-community large-community-list 'lcm-reject-country-germany' set policy route-map rm-as212232-out rule 203 action 'deny' set policy route-map rm-as212232-out rule 203 description 'EXIT-REJECT-CITY' set policy route-map rm-as212232-out rule 203 match large-community large-community-list 'lcm-reject-city-nuremberg-de' set policy route-map rm-as212232-out rule 301 action 'deny' set policy route-map rm-as212232-out rule 301 description 'NO-ADVERTISE-212232' set policy route-map rm-as212232-out rule 301 match large-community large-community-list 'lcm-reject-as212232' set policy route-map rm-as212232-out rule 399 action 'permit' set policy route-map rm-as212232-out rule 399 description 'ANNOUNCE' set policy route-map rm-as212232-out rule 399 match large-community large-community-list 'lcm-announce-to-downstream' set policy route-map rm-as212232-out rule 399 set large-community delete 'lcm-announce-all' set policy route-map rm-as212895-in rule 100 action 'permit' set policy route-map rm-as212895-in rule 100 description 'DELETE-XGWQ-COMMUNITIES' set policy route-map rm-as212895-in rule 100 on-match next set policy route-map rm-as212895-in rule 100 set large-community delete 'lcm-own-communities' set policy route-map rm-as212895-in rule 101 action 'deny' set policy route-map rm-as212895-in rule 101 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as212895-in rule 101 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as212895-in rule 102 action 'deny' set policy route-map rm-as212895-in rule 102 description 'REJECT-BOGON-ASNS' set policy route-map rm-as212895-in rule 102 match as-path 'apl-bogon-asns' set policy route-map rm-as212895-in rule 103 action 'deny' set policy route-map rm-as212895-in rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as212895-in rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as212895-in rule 105 action 'deny' set policy route-map rm-as212895-in rule 105 description 'RPKI-INVALID' set policy route-map rm-as212895-in rule 105 match rpki 'invalid' set policy route-map rm-as212895-in rule 106 action 'permit' set policy route-map rm-as212895-in rule 106 description 'RPKI-NOTFOUND' set policy route-map rm-as212895-in rule 106 match rpki 'notfound' set policy route-map rm-as212895-in rule 106 on-match next set policy route-map rm-as212895-in rule 106 set large-community add '213422:7:1' set policy route-map rm-as212895-in rule 107 action 'permit' set policy route-map rm-as212895-in rule 107 description 'RPKI-VALID' set policy route-map rm-as212895-in rule 107 match rpki 'valid' set policy route-map rm-as212895-in rule 107 on-match next set policy route-map rm-as212895-in rule 107 set large-community add '213422:7:0' set policy route-map rm-as212895-in rule 200 action 'permit' set policy route-map rm-as212895-in rule 200 description 'ADD-ORIGIN-COMMUNITIES' set policy route-map rm-as212895-in rule 200 on-match next set policy route-map rm-as212895-in rule 200 set large-community add '213422:0:1' set policy route-map rm-as212895-in rule 200 set large-community add '213422:5:212895' set policy route-map rm-as212895-in rule 200 set large-community add '213422:6:1' set policy route-map rm-as212895-in rule 200 set large-community add '213422:8:0' set policy route-map rm-as212895-in rule 200 set large-community add '213422:9:0' set policy route-map rm-as212895-in rule 200 set large-community add '213422:10:0' set policy route-map rm-as212895-in rule 201 action 'permit' set policy route-map rm-as212895-in rule 201 description 'UPSTREAM' set policy route-map rm-as212895-in rule 201 on-match next set policy route-map rm-as212895-in rule 201 set large-community add '213422:100:0' set policy route-map rm-as212895-in rule 201 set large-community add '213422:100:3' set policy route-map rm-as212895-in rule 201 set local-preference '50' set policy route-map rm-as212895-in rule 399 action 'permit' set policy route-map rm-as212895-in rule 399 match large-community large-community-list 'lcm-announce-to-internal' set policy route-map rm-as212895-out rule 100 action 'deny' set policy route-map rm-as212895-out rule 100 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as212895-out rule 100 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as212895-out rule 101 action 'deny' set policy route-map rm-as212895-out rule 101 description 'REJECT-BOGON-ASNS' set policy route-map rm-as212895-out rule 101 match as-path 'apl-bogon-asns' set policy route-map rm-as212895-out rule 102 action 'deny' set policy route-map rm-as212895-out rule 102 description 'REJECT-BOGON-PREFIXES' set policy route-map rm-as212895-out rule 102 match ipv6 address prefix-list 'pl6-bogons' set policy route-map rm-as212895-out rule 103 action 'deny' set policy route-map rm-as212895-out rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as212895-out rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as212895-out rule 200 action 'deny' set policy route-map rm-as212895-out rule 200 description 'EXIT-REJECT-TYPE' set policy route-map rm-as212895-out rule 200 match large-community large-community-list 'lcm-reject-type-upstream' set policy route-map rm-as212895-out rule 201 action 'deny' set policy route-map rm-as212895-out rule 201 description 'EXIT-REJECT-REGION' set policy route-map rm-as212895-out rule 201 match large-community large-community-list 'lcm-reject-region-europe' set policy route-map rm-as212895-out rule 202 action 'deny' set policy route-map rm-as212895-out rule 202 description 'EXIT-REJECT-COUNTRY' set policy route-map rm-as212895-out rule 202 match large-community large-community-list 'lcm-reject-country-germany' set policy route-map rm-as212895-out rule 203 action 'deny' set policy route-map rm-as212895-out rule 203 description 'EXIT-REJECT-CITY' set policy route-map rm-as212895-out rule 203 match large-community large-community-list 'lcm-reject-city-nuremberg-de' set policy route-map rm-as212895-out rule 301 action 'deny' set policy route-map rm-as212895-out rule 301 description 'NO-ADVERTISE-212895' set policy route-map rm-as212895-out rule 301 match large-community large-community-list 'lcm-reject-as212895' set policy route-map rm-as212895-out rule 399 action 'permit' set policy route-map rm-as212895-out rule 399 description 'ANNOUNCE' set policy route-map rm-as212895-out rule 399 match large-community large-community-list 'lcm-announce-to-upstream' set policy route-map rm-as212895-out rule 399 set large-community delete 'lcm-announce-all' set policy route-map rm-as213423-in rule 100 action 'permit' set policy route-map rm-as213423-in rule 100 description 'DELETE-XGWQ-COMMUNITIES' set policy route-map rm-as213423-in rule 100 on-match next set policy route-map rm-as213423-in rule 100 set large-community delete 'lcm-own-communities' set policy route-map rm-as213423-in rule 101 action 'deny' set policy route-map rm-as213423-in rule 101 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as213423-in rule 101 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as213423-in rule 102 action 'deny' set policy route-map rm-as213423-in rule 102 description 'REJECT-BOGON-ASNS' set policy route-map rm-as213423-in rule 102 match as-path 'apl-bogon-asns' set policy route-map rm-as213423-in rule 103 action 'deny' set policy route-map rm-as213423-in rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as213423-in rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as213423-in rule 105 action 'deny' set policy route-map rm-as213423-in rule 105 description 'RPKI-INVALID' set policy route-map rm-as213423-in rule 105 match rpki 'invalid' set policy route-map rm-as213423-in rule 106 action 'permit' set policy route-map rm-as213423-in rule 106 description 'RPKI-NOTFOUND' set policy route-map rm-as213423-in rule 106 match rpki 'notfound' set policy route-map rm-as213423-in rule 106 on-match next set policy route-map rm-as213423-in rule 106 set large-community add '213422:7:1' set policy route-map rm-as213423-in rule 107 action 'permit' set policy route-map rm-as213423-in rule 107 description 'RPKI-VALID' set policy route-map rm-as213423-in rule 107 match rpki 'valid' set policy route-map rm-as213423-in rule 107 on-match next set policy route-map rm-as213423-in rule 107 set large-community add '213422:7:0' set policy route-map rm-as213423-in rule 200 action 'permit' set policy route-map rm-as213423-in rule 200 description 'ADD-ORIGIN-COMMUNITIES' set policy route-map rm-as213423-in rule 200 on-match next set policy route-map rm-as213423-in rule 200 set large-community add '213422:0:1' set policy route-map rm-as213423-in rule 200 set large-community add '213422:5:213423' set policy route-map rm-as213423-in rule 200 set large-community add '213422:6:4' set policy route-map rm-as213423-in rule 200 set large-community add '213422:8:0' set policy route-map rm-as213423-in rule 200 set large-community add '213422:9:0' set policy route-map rm-as213423-in rule 200 set large-community add '213422:10:0' set policy route-map rm-as213423-in rule 201 action 'permit' set policy route-map rm-as213423-in rule 201 description 'UPSTREAM' set policy route-map rm-as213423-in rule 201 on-match next set policy route-map rm-as213423-in rule 201 set large-community add '213422:100:0' set policy route-map rm-as213423-in rule 201 set large-community add '213422:100:3' set policy route-map rm-as213423-in rule 201 set local-preference '200' set policy route-map rm-as213423-in rule 399 action 'permit' set policy route-map rm-as213423-in rule 399 match large-community large-community-list 'lcm-announce-to-internal' set policy route-map rm-as213423-out rule 100 action 'deny' set policy route-map rm-as213423-out rule 100 description 'FILTER-PREFIX-LENGTH' set policy route-map rm-as213423-out rule 100 match ipv6 address prefix-list 'pl6-tiny-prefix' set policy route-map rm-as213423-out rule 101 action 'deny' set policy route-map rm-as213423-out rule 101 description 'REJECT-BOGON-ASNS' set policy route-map rm-as213423-out rule 101 match as-path 'apl-bogon-asns' set policy route-map rm-as213423-out rule 102 action 'deny' set policy route-map rm-as213423-out rule 102 description 'REJECT-BOGON-PREFIXES' set policy route-map rm-as213423-out rule 102 match ipv6 address prefix-list 'pl6-bogons' set policy route-map rm-as213423-out rule 103 action 'deny' set policy route-map rm-as213423-out rule 103 description 'REJECT-IXP-PREFIXES' set policy route-map rm-as213423-out rule 103 match ipv6 address prefix-list 'pl6-ixp-lan' set policy route-map rm-as213423-out rule 200 action 'deny' set policy route-map rm-as213423-out rule 200 description 'EXIT-REJECT-TYPE' set policy route-map rm-as213423-out rule 200 match large-community large-community-list 'lcm-reject-type-pni' set policy route-map rm-as213423-out rule 201 action 'deny' set policy route-map rm-as213423-out rule 201 description 'EXIT-REJECT-REGION' set policy route-map rm-as213423-out rule 201 match large-community large-community-list 'lcm-reject-region-europe' set policy route-map rm-as213423-out rule 202 action 'deny' set policy route-map rm-as213423-out rule 202 description 'EXIT-REJECT-COUNTRY' set policy route-map rm-as213423-out rule 202 match large-community large-community-list 'lcm-reject-country-germany' set policy route-map rm-as213423-out rule 203 action 'deny' set policy route-map rm-as213423-out rule 203 description 'EXIT-REJECT-CITY' set policy route-map rm-as213423-out rule 203 match large-community large-community-list 'lcm-reject-city-nuremberg-de' set policy route-map rm-as213423-out rule 301 action 'deny' set policy route-map rm-as213423-out rule 301 description 'NO-ADVERTISE-213423' set policy route-map rm-as213423-out rule 301 match large-community large-community-list 'lcm-reject-as213423' set policy route-map rm-as213423-out rule 399 action 'permit' set policy route-map rm-as213423-out rule 399 description 'ANNOUNCE' set policy route-map rm-as213423-out rule 399 match large-community large-community-list 'lcm-announce-to-peer' set policy route-map rm-as213423-out rule 399 set large-community delete 'lcm-announce-all' set policy route-map rm-internal-in rule 1 action 'permit' set policy route-map rm-internal-out rule 65535 action 'permit' set policy route-map rm-noexport rule 1 action 'deny' set policy route-map rm-noimport rule 1 action 'deny' set policy route-map rm-set-src rule 1 action 'permit' set policy route-map rm-set-src rule 1 set src '2a0f:6283:1400::1' set policy route-map rm-tag-downstream rule 1 action 'permit' set policy route-map rm-tag-downstream rule 1 set large-community add '213422:4:213422' set policy route-map rm-tag-downstream rule 1 set large-community add '213422:100:0' set policy route-map rm-tag-downstream rule 1 set large-community add '213422:100:1' set policy route-map rm-tag-downstream rule 1 set large-community add '213422:100:2' set policy route-map rm-tag-downstream rule 1 set large-community add '213422:100:3' set protocols bfd profile internal interval multiplier '20' set protocols static route6 ::/0 next-hop 2a01:4f8:1b7:700::1 interface 'eth0' set service lldp set service monitoring prometheus frr-exporter set service monitoring prometheus node-exporter set service ntp allow-client address '::1/128' set service ntp server time1.vyos.net set service ntp server time2.vyos.net set service ntp server time3.vyos.net set service router-advert interface eth1 name-server '2620:fe::fe' set service router-advert interface eth1 name-server '2620:fe::9' set service router-advert interface eth1 prefix 2a0f:6283:1400:1::/64 set service router-advert interface eth1 source-address '2a0f:6283:1400:1::1' set service ssh access-control allow user 'peter' set service ssh access-control allow user 'oxi' set service ssh listen-address '2a01:4f8:1b7:730::c' set system config-management commit-revisions '100' set system console device ttyS0 speed '115200' set system domain-name 'as213422.net' set system host-name 'bbr01.nbg.de' set system login user oxi authentication public-keys Oxidized-Push-Key@docker-1 key 'AAAAC3NzaC1lZDI1NTE5AAAAIMB2AuKzz3e34HDbz3M9f/mUGUOtX1CdCkj+AosTQeR7' set system login user oxi authentication public-keys Oxidized-Push-Key@docker-1 type 'ssh-ed25519' set system login user peter authentication encrypted-password '$6$rounds=656000$6fVB7zGwX6pOyNUk$pL5CpDT7sGrFEGjT2.YNdHF7V1VUDIlgJnm1Tk2RTnRgMgM.qCP.0RbcVNdp8IwHO6jskjlbnqrDYjCWQ3HMW.' set system login user peter authentication public-keys 2024-08-23-peter@sleipnir key 'AAAAC3NzaC1lZDI1NTE5AAAAIOh/i/DybAQVCtAL/q/f0yedGJNecelNEJFEWmezu/hV' set system login user peter authentication public-keys 2024-08-23-peter@sleipnir type 'ssh-ed25519' set system login user peter authentication public-keys 2024-11-15-peter@kleeblatt key 'AAAAC3NzaC1lZDI1NTE5AAAAIDH0qpDoT7PzSo4poIFMvU6dSt7Vwha4VEUHMRrh7dEx' set system login user peter authentication public-keys 2024-11-15-peter@kleeblatt type 'ssh-ed25519' set system login user peter authentication public-keys work key 'AAAAC3NzaC1lZDI1NTE5AAAAIOxs8Kicyg7OONaQKJDKa83pH/siSUPvISB2m/hRJhsx' set system login user peter authentication public-keys work type 'ssh-ed25519' set system login user peter authentication public-keys work2 key 'AAAAC3NzaC1lZDI1NTE5AAAAIDCDw8uxGEwLWGIup3Pu1wL4q7QU89VECZN5SWUP80qk' set system login user peter authentication public-keys work2 type 'ssh-ed25519' set system login user peter full-name 'Peter Lehmann' set system name-server '2620:fe::fe' set system name-server '2620:fe::9' set system option ctrl-alt-delete 'reboot' set system option kernel debug set system option keyboard-layout 'de' set system option reboot-on-panic set system option time-format '24-hour' set system syslog local facility all set system syslog local facility local7 set system time-zone 'Europe/Berlin' set vrf name net ipv6 protocol any route-map 'rm-set-src' set vrf name net protocols bgp address-family ipv6-unicast redistribute static route-map 'rm-tag-downstream' set vrf name net protocols bgp neighbor 2a0c:2f07:9459::b11 address-family ipv6-unicast nexthop-self set vrf name net protocols bgp neighbor 2a0c:2f07:9459::b11 address-family ipv6-unicast route-map export 'rm-as212232-out' set vrf name net protocols bgp neighbor 2a0c:2f07:9459::b11 address-family ipv6-unicast route-map import 'rm-noimport' set vrf name net protocols bgp neighbor 2a0c:2f07:9459::b11 description 'bgp.tools' set vrf name net protocols bgp neighbor 2a0c:2f07:9459::b11 ebgp-multihop '255' set vrf name net protocols bgp neighbor 2a0c:2f07:9459::b11 remote-as '212232' set vrf name net protocols bgp neighbor 2a0c:2f07:9459::b11 update-source '2a0f:6283:1400::1' set vrf name net protocols bgp neighbor 2a0f:6283:1400:: description 'bbr00.nbg.de' set vrf name net protocols bgp neighbor 2a0f:6283:1400:: peer-group 'internal' set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:3 address-family ipv6-unicast maximum-prefix '5' set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:3 address-family ipv6-unicast nexthop-self set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:3 address-family ipv6-unicast route-map export 'rm-as210106-out' set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:3 address-family ipv6-unicast route-map import 'rm-as210106-in' set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:3 address-family ipv6-unicast soft-reconfiguration inbound set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:3 bfd set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:3 description 'Adrian' set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:3 local-role peer set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:3 remote-as '210106' set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:5 address-family ipv6-unicast maximum-prefix '10' set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:5 address-family ipv6-unicast nexthop-self set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:5 address-family ipv6-unicast route-map export 'rm-as203478-out' set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:5 address-family ipv6-unicast route-map import 'rm-as203478-in' set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:5 address-family ipv6-unicast soft-reconfiguration inbound set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:5 description 'Sarah' set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:5 local-role peer set vrf name net protocols bgp neighbor 2a0f:6283:1400::2:0:5 remote-as '203478' set vrf name net protocols bgp neighbor 2a0f:6283:1401::1 description 'bbr01.dus.de' set vrf name net protocols bgp neighbor 2a0f:6283:1401::1 peer-group 'internal' set vrf name net protocols bgp neighbor 2a01:20e:1002:118::1 address-family ipv6-unicast maximum-prefix '300000' set vrf name net protocols bgp neighbor 2a01:20e:1002:118::1 address-family ipv6-unicast nexthop-self set vrf name net protocols bgp neighbor 2a01:20e:1002:118::1 address-family ipv6-unicast route-map export 'rm-as41051-out' set vrf name net protocols bgp neighbor 2a01:20e:1002:118::1 address-family ipv6-unicast route-map import 'rm-as41051-in' set vrf name net protocols bgp neighbor 2a01:20e:1002:118::1 address-family ipv6-unicast soft-reconfiguration inbound set vrf name net protocols bgp neighbor 2a01:20e:1002:118::1 description 'Freetransit.ch' set vrf name net protocols bgp neighbor 2a01:20e:1002:118::1 local-role customer set vrf name net protocols bgp neighbor 2a01:20e:1002:118::1 remote-as '41051' set vrf name net protocols bgp neighbor 2a04:5b81:21d0::2:4 address-family ipv6-unicast maximum-prefix '50' set vrf name net protocols bgp neighbor 2a04:5b81:21d0::2:4 address-family ipv6-unicast nexthop-self set vrf name net protocols bgp neighbor 2a04:5b81:21d0::2:4 address-family ipv6-unicast route-map export 'rm-as213423-out' set vrf name net protocols bgp neighbor 2a04:5b81:21d0::2:4 address-family ipv6-unicast route-map import 'rm-as213423-in' set vrf name net protocols bgp neighbor 2a04:5b81:21d0::2:4 address-family ipv6-unicast soft-reconfiguration inbound set vrf name net protocols bgp neighbor 2a04:5b81:21d0::2:4 bfd set vrf name net protocols bgp neighbor 2a04:5b81:21d0::2:4 description 'Lukas' set vrf name net protocols bgp neighbor 2a04:5b81:21d0::2:4 local-role customer set vrf name net protocols bgp neighbor 2a04:5b81:21d0::2:4 remote-as '213423' set vrf name net protocols bgp neighbor 2a06:3340:0:6ef::179 address-family ipv6-unicast nexthop-self set vrf name net protocols bgp neighbor 2a06:3340:0:6ef::179 address-family ipv6-unicast route-map export 'rm-as200449-out' set vrf name net protocols bgp neighbor 2a06:3340:0:6ef::179 address-family ipv6-unicast route-map import 'rm-noimport' set vrf name net protocols bgp neighbor 2a06:3340:0:6ef::179 description 'Qrator' set vrf name net protocols bgp neighbor 2a06:3340:0:6ef::179 ebgp-multihop '255' set vrf name net protocols bgp neighbor 2a06:3340:0:6ef::179 remote-as '200449' set vrf name net protocols bgp neighbor 2a06:3340:0:6ef::179 update-source '2a0f:6283:1400::1' set vrf name net protocols bgp neighbor 2a11:6c7:f00:1b2::1 address-family ipv6-unicast maximum-prefix '300000' set vrf name net protocols bgp neighbor 2a11:6c7:f00:1b2::1 address-family ipv6-unicast nexthop-self set vrf name net protocols bgp neighbor 2a11:6c7:f00:1b2::1 address-family ipv6-unicast route-map export 'rm-as212895-out' set vrf name net protocols bgp neighbor 2a11:6c7:f00:1b2::1 address-family ipv6-unicast route-map import 'rm-as212895-in' set vrf name net protocols bgp neighbor 2a11:6c7:f00:1b2::1 address-family ipv6-unicast soft-reconfiguration inbound set vrf name net protocols bgp neighbor 2a11:6c7:f00:1b2::1 description 'Route64' set vrf name net protocols bgp neighbor 2a11:6c7:f00:1b2::1 local-role customer set vrf name net protocols bgp neighbor 2a11:6c7:f00:1b2::1 remote-as '212895' set vrf name net protocols bgp parameters ebgp-requires-policy set vrf name net protocols bgp parameters log-neighbor-changes set vrf name net protocols bgp parameters router-id '130.208.197.234' set vrf name net protocols bgp peer-group access address-family ipv6-unicast default-originate set vrf name net protocols bgp peer-group access address-family ipv6-unicast nexthop-self set vrf name net protocols bgp peer-group access address-family ipv6-unicast route-map export 'rm-noexport' set vrf name net protocols bgp peer-group access address-family ipv6-unicast route-map import 'rm-internal-in' set vrf name net protocols bgp peer-group access address-family ipv6-unicast soft-reconfiguration inbound set vrf name net protocols bgp peer-group access bfd set vrf name net protocols bgp peer-group access remote-as '213422' set vrf name net protocols bgp peer-group internal address-family ipv6-unicast nexthop-self set vrf name net protocols bgp peer-group internal address-family ipv6-unicast route-map export 'rm-internal-out' set vrf name net protocols bgp peer-group internal address-family ipv6-unicast route-map import 'rm-internal-in' set vrf name net protocols bgp peer-group internal address-family ipv6-unicast soft-reconfiguration inbound set vrf name net protocols bgp peer-group internal bfd profile 'internal' set vrf name net protocols bgp peer-group internal remote-as '213422' set vrf name net protocols bgp system-as '213422' set vrf name net protocols isis advertise-passive-only set vrf name net protocols isis interface dum0 passive set vrf name net protocols isis interface eth3 bfd set vrf name net protocols isis level 'level-1' set vrf name net protocols isis lsp-mtu '1437' set vrf name net protocols isis net '49.0001.90a1.82d0.c5ea.00' set vrf name net protocols ospfv3 interface dum0 area '0' set vrf name net protocols ospfv3 interface dum0 passive set vrf name net protocols ospfv3 interface eth3 area '0' set vrf name net protocols ospfv3 interface eth3 bfd set vrf name net protocols ospfv3 interface eth3 cost '1' set vrf name net protocols ospfv3 interface tun00101 area '0' set vrf name net protocols ospfv3 interface tun00101 bfd set vrf name net protocols ospfv3 interface tun00101 cost '10' set vrf name net protocols ospfv3 parameters router-id '255.0.0.1' set vrf name net protocols rpki cache routinator.xnee.net port '8282' set vrf name net protocols rpki cache routinator.xnee.net preference '1' set vrf name net protocols static route6 2a0f:6283:1400::/48 blackhole set vrf name net table '100'