BGP configuration yuam kev ua rau Cloudflare tsoo rau 27 feeb

Cloudflare tuam txhab, muab cov ntsiab lus xa tawm network rau 27 lab qhov kev pabcuam hauv Is Taws Nem thiab pabcuam kev khiav tsheb ntawm 13% ntawm 1000 qhov chaw loj tshaj plaws, uncovered cov ntsiab lus ntawm qhov xwm txheej, raws li qhov tshwm sim ntawm kev ua haujlwm ntawm ntau ntu ntawm Cloudflare network tau cuam tshuam rau 27 feeb, suav nrog cov neeg ua haujlwm xa mus rau London, Chicago, Los Angeles, Washington, Amsterdam, Paris, Moscow thiab St. . Qhov teeb meem tshwm sim los ntawm kev hloov pauv tsis raug ntawm Atlanta router. Thaum lub sijhawm xwm txheej, uas tshwm sim thaum Lub Xya Hli 17 los ntawm 21: 12 txog 21: 39 (UTC), tag nrho cov tsheb khiav ntawm Cloudflare network tau txo los ntawm kwv yees li 50%.

BGP configuration yuam kev ua rau Cloudflare tsoo rau 27 feeb

Thaum lub sij hawm kev ua hauj lwm, xav kom tshem tawm ib feem ntawm cov tsheb khiav los ntawm ib qho ntawm cov caj qaum, engineers deleted ib kab nyob rau hauv qhov chaw thaiv uas txhais cov npe ntawm txoj kev uas tau txais los ntawm lub caj qaum, lim nyob rau hauv raws li cov teev cov npe ntawm prefixes. Nws yuav yog qhov tseeb rau deactivate tag nrho cov thaiv, tab sis los ntawm kev ua yuam kev tsuas yog cov kab nrog cov npe ntawm cov ntawv ua ntej raug tshem tawm.

{master}[edit] atl01# qhia | piv
[edit policy-options policy-statement 6-BBONE-OUT term 6-SITE-LOCAL from] ! inactive: prefix-list 6-SITE-LOCAL { … }

Thaiv cov ntsiab lus:

los ntawm {
prefix-list 6-SITE-LOCAL;
}
tom qab ntawd {
hauv zos-nyiam 200;
zej zog ntxiv SITE-LOCAL-ROUTE;
zej zog ntxiv ATL01;
zej zog ntxiv NORTH-AMERICA;
txais;
}

Vim tias qhov kev tshem tawm ntawm kev khi rau daim ntawv teev npe ua ntej, qhov seem ntawm qhov thaiv tau pib muab faib rau txhua qhov ua ntej thiab lub router pib xa tag nrho nws BGP txoj kev mus rau routers ntawm lwm cov qaum. Los ntawm coincidence, txoj kev tshiab muaj qhov tseem ceeb dua (hauv zos-nyiam dua 200) piv rau qhov tseem ceeb (100) tau teeb tsa rau lwm txoj kev los ntawm kev ua kom zoo ntawm cov tsheb tsis siv neeg. Raws li qhov tshwm sim, es tsis txhob tshem tawm txoj kev rov qab los ntawm cov pob txha, qhov tseem ceeb dua BGP txoj kev tau xau, vim tias cov tsheb khiav mus rau lwm cov pob txha raug xa mus rau Atlanta, uas ua rau overload ntawm lub router thiab lub cev qhuav dej ntawm ib feem ntawm lub network.

BGP configuration yuam kev ua rau Cloudflare tsoo rau 27 feeb

Txhawm rau tiv thaiv cov xwm txheej zoo sib xws los ntawm kev tshwm sim yav tom ntej, ntau qhov kev hloov pauv tau npaj yuav ua rau Cloudflare qhov chaw rov qab rau hnub Monday. Ib qho kev txwv ntawm qhov siab tshaj plaws ntawm cov ntawv sau ua ntej (qhov siab tshaj plaws-prefix) yuav raug ntxiv rau BGP zaug, uas yuav thaiv cov pob txha muaj teeb meem yog tias muaj ntau qhov ua ntej dhau los ntawm nws. Yog tias qhov kev txwv no tau ntxiv ua ntej, qhov teeb meem hauv nqe lus nug yuav ua rau kev kaw lub nraub qaum hauv Atlanta, tab sis yuav tsis cuam tshuam rau kev ua haujlwm ntawm tag nrho lub network, txij li Cloudflare network tau tsim los tso cai rau tus neeg lub pob txha ua tsis tiav. Ntawm cov kev hloov pauv uas twb tau txais lawm, kev hloov kho ntawm qhov tseem ceeb (hauv zos-nyiam) rau txoj hauv kev hauv zos tau sau tseg, uas yuav tsis tso cai rau ib lub router cuam tshuam rau kev khiav tsheb hauv lwm qhov ntawm lub network.

Tau qhov twg los: opennet.ru

Ntxiv ib saib