07-01-2007 09:46 PM - edited 03-03-2019 05:41 PM
Dear Expert,
recently i was configure the policy base routing on router, but over the interface i had put in "ip verify unicast reverse path", when put in this command over the serial interface, the traffic will drop. does anyone facing this problem before? After remove this command the traffic will pass-thru. Just wondering why the IP verify unicast reverse command will affect the PBR.
07-02-2007 12:00 AM
Hi,
just guessing:
If you need PBR, it probably means you are sending the traffic to a different interface than your routing table is pointing to.
And the returning traffic is also coming from that interface?
If yes, the "IP verify unicast reverse path" works correctly dropping this traffic.
BR,
Milan
07-02-2007 04:57 PM
Dear Milan,
Thanks for the information, and i have another question, if let say the PBR is take place before the routing process, beside using show route-map or show access-list to see whether the traffic hits or not, any other command we can looks for the more details, because sometimes we dont have statistics to guarantee that the PBR we have done is guarantee workable.
thanks.
07-02-2007 05:10 AM
The "ip policy route-map [policy-name]" command should be placed in the ingress interface (before any routing decision takes place) and the "ip verify unicast reverse path" should be placed in the egress interface (traffic that didn't leave the interface shouldn't be allowed to come back via the interface).
07-02-2007 07:34 AM
Hi Edison,
Thanks alot for the explanation.
Thanks and Regards,
Srinath.M
Cable&Wireless
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide