What is preferred ?Static route or Route MAP----Thanks

Answered Question
Nov 22nd, 2009

Hi

I have static route and route map configured on this Cisco 4000 series switch for the same destination(172.24.0.0/16) from same sources(10.32.0.0/16).Which path will traffic take to reach the destination.This SWITCH has VLAN interfaces for 144.1.4.x , 10.32.254.x  ,10.32.0.x

ip route 172.24.0.0 255.255.0.0 144.1.4.85

access-list 1 permit ip 10.32.0.0  255.255.0.0 172.24.0.0 255.255.0.0
route-map BRANCH permit 10
match ip address 1
set ip  next-hop 10.32.254.5

I have this problem too.
0 votes
Correct Answer by Giuseppe Larosa about 5 years 8 months ago

Hello,

it depends from the set action used in the route-map if it doesn't use the default keyword traffic is policy routed unless next-hop is unreachable.

Clearly a mistyping error:

access-list 1 permit ip 10.32.0.0  255.255.0.0 172.24.0.0 255.255.0.0

this should be an extended ACL and you should use wildcards so the line could be written as

access-list 101 permit ip 10.32.0.0 0.0.0.255.255 172.24.0.0 0.0.255.255

Hope to help

Giuseppe

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Nagendra Kumar ... Sun, 11/22/2009 - 21:09

Hi,

Policy based routing will be preferred over any routing table entry.

Only when your PBR fails, the router will look into routing table (irrespective of static/dynamic routing entry).

HTH,

Nagendra

Steven Glogger Mon, 11/23/2009 - 03:34

if you're using PBR please watch:

set ip next-hop

here we have:

  • does next-hop exists in routing table? then route according to PBR entry
  • if not: use routing table (e.g. default route)

set ip default next-hop

here we have:

  • next hop exists in routing table? if so: route according entry in routing table.
  • if not: use PBR route
Correct Answer
Giuseppe Larosa Mon, 11/23/2009 - 02:54

Hello,

it depends from the set action used in the route-map if it doesn't use the default keyword traffic is policy routed unless next-hop is unreachable.

Clearly a mistyping error:

access-list 1 permit ip 10.32.0.0  255.255.0.0 172.24.0.0 255.255.0.0

this should be an extended ACL and you should use wildcards so the line could be written as

access-list 101 permit ip 10.32.0.0 0.0.0.255.255 172.24.0.0 0.0.255.255

Hope to help

Giuseppe

Actions

This Discussion