filter-policy export (OSPF view)
Use filter-policy export to configure OSPF to filter redistributed routes.
Use undo filter-policy export to remove the configuration.
Syntax
filter-policy { acl-number | prefix-list prefix-list-name } export [ protocol [ process-id ] ]
undo filter-policy export [ protocol [ process-id ] ]
Default
Redistributed routes are not filtered.
Views
OSPF view
Predefined user roles
network-admin
mdc-admin
Parameters
acl-number: Specifies an ACL by its number in the range of 2000 to 3999 to filter redistributed routes by destination address.
prefix-list-name: Specifies an IP prefix list by its name, a case-sensitive string of 1 to 63 characters, to filter redistributed routes by destination address.
protocol: Filters routes redistributed from the specified routing protocol, which can be bgp, direct, isis, ospf, rip, or static. If no protocol is specified, this command filters all redistributed routes.
process-id: Specifies a process by its ID in the range of 1 to 65535. This argument is available only when the protocol is rip, ospf or isis.
Usage guidelines
To reference an advanced ACL (with a number from 3000 to 3999) in the command, configure the ACL using one of the following methods:
To deny/permit a route with the specified destination, use the rule [ rule-id ] { deny | permit } ip source sour-addr sour-wildcard command.
To deny/permit a route with the specified destination and mask, use the rule [ rule-id ] { deny | permit } ip source sour-addr sour-wildcard destination dest-addr dest-wildcard command.
The source keyword specifies the destination address of a route and the destination keyword specifies the subnet mask of the route. The specified subnet mask must be contiguous. Otherwise, the mask configuration does not take effect.
Examples
# Use ACL 2000 to filter redistributed routes.
<Sysname> system-view [Sysname] acl number 2000 [Sysname-acl-basic-2000] rule deny source 192.168.10.0 0.0.0.255 [Sysname-acl-basic-2000] quit [Sysname] ospf 100 [Sysname-ospf-100] filter-policy 2000 export
# Configure ACL 3000 to permit only route 113.0.0.0/16. Use ACL 3000 to filter redistributed routes.
<Sysname> system-view [Sysname] acl number 3000 [Sysname-acl-adv-3000] rule 10 permit ip source 113.0.0.0 0 destination 255.255.0.0 0 [Sysname-acl-adv-3000] rule 100 deny ip [Sysname-acl-adv-3000] quit [Sysname] ospf 100 [Sysname-ospf-100] filter-policy 3000 export
Related commands
import-route