1. 17 Jul, 2018 2 commits
  2. 23 Apr, 2018 1 commit
  3. 16 Jan, 2018 1 commit
  4. 19 Sep, 2017 1 commit
    • Ondřej Zajíček's avatar
      BGP: Shutdown communication (RFC 8203) · cd1d9961
      Ondřej Zajíček authored
      The patch implements BGP Administrative Shutdown Communication (RFC 8203)
      allowing BGP operators to pass messages related to BGP session
      administrative shutdown/restart. It handles both transmit and receive of
      shutdown messages. Messages are logged and may be displayed by show
      protocol all command.
      
      Thanks to Job Snijders for the basic patch.
      cd1d9961
  5. 12 Sep, 2017 2 commits
  6. 06 Sep, 2017 1 commit
    • Ondřej Zajíček's avatar
      Basic VRF support · 943478b0
      Ondřej Zajíček authored
      Add basic VRF (virtual routing and forwarding) support. Protocols can be
      associated with VRFs, such protocols will be restricted to interfaces
      assigned to the VRF (as reported by Linux kernel) and will use sockets
      bound to the VRF. E.g., different multihop BGP instances can use diffent
      kernel routing tables to handle BGP TCP connections.
      
      The VRF support is preliminary, currently there are several limitations:
      
      - Recent Linux kernels (4.11) do not handle correctly sockets bound
      to interaces that are part of VRF, so most protocols other than multihop
      BGP do not work. This will be fixed by future kernel versions.
      
      - Neighbor cache ignores VRFs. Breaks config with the same prefix on
      local interfaces in different VRFs. Not much problem as single hop
      protocols do not work anyways.
      
      - Olock code ignores VRFs. Breaks config with multiple BGP peers with the
      same IP address in different VRFs.
      
      - Incoming BGP connections are not dispatched according to VRFs.
      Breaks config with multiple BGP peers with the same IP address in
      different VRFs. Perhaps we would need some kernel API to read VRF of
      incoming connection? Or probably use multiple listening sockets in
      int-new branch.
      
      - We should handle master VRF interface up/down events and perhaps
      disable associated protocols when VRF goes down. Or at least disable
      associated interfaces.
      
      - Also we should check if the master iface is really VRF iface and
      not some other kind of master iface.
      
      - BFD session request dispatch should be aware of VRFs.
      
      - Perhaps kernel protocol should read default kernel table ID from VRF
      iface so it is not necessary to configure it.
      
      - Perhaps we should have per-VRF default table.
      943478b0
  7. 14 Mar, 2017 2 commits
  8. 23 Feb, 2017 1 commit
  9. 19 Feb, 2017 1 commit
  10. 25 Nov, 2016 1 commit
    • Ondřej Zajíček's avatar
      BGP: Fix memory leak in graceful restart code · ed1a908e
      Ondřej Zajíček authored
      Prefix and bucket tables are initialized when entering established state
      but not explicitly freed when leaving it (that is handled by protocol
      restart). With graceful restart, BGP may enter and leave established
      state multiple times without hard protocol restart causing memory leak.
      ed1a908e
  11. 15 Nov, 2016 1 commit
    • Ondřej Zajíček's avatar
      BGP: Cluster list item should be prepended · 261816b0
      Ondřej Zajíček authored
      Commit 3c09af41... changed behavior of int_set_add() from prepend to
      append, which makes more sense for community list, but prepend must be
      used for cluster list. Add int_set_prepend() and use it in cluster list
      handling code.
      261816b0
  12. 01 Nov, 2016 1 commit
  13. 27 Oct, 2016 1 commit
  14. 03 Oct, 2016 1 commit
    • Ondřej Zajíček's avatar
      BGP: Support for large communities · 66dbdbd9
      Ondřej Zajíček authored
      Add support for large communities (draft-ietf-idr-large-community),
      96bit alternative to RFC 1997 communities.
      
      Thanks to Matt Griswold for the original patch.
      66dbdbd9
  15. 11 Jul, 2016 1 commit
  16. 29 Jun, 2016 1 commit
    • Ondřej Zajíček's avatar
      BGP: Skip empty path segments in received AS_PATH · 775a5a81
      Ondřej Zajíček authored
      Although RFC 4271 does not forbid empty path segments, they are useless
      and some implementations consider them invalid. It is clarified in RFC 7606,
      specifying that AS_PATH with empty segment is considered malformed.
      775a5a81
  17. 13 Apr, 2016 1 commit
    • Ondřej Zajíček's avatar
      BSD: Add the IPsec SA/SP database entries control · a7baa098
      Ondřej Zajíček authored
      Add code for manipulation with TCP-MD5 keys in the IPsec SA/SP database
      at FreeBSD systems. Now, BGP MD5 authentication (RFC 2385) keys are
      handled automatically on both Linux and FreeBSD.
      
      Based on patches from Pavel Tvrdik.
      a7baa098
  18. 06 Apr, 2016 2 commits
    • Ondřej Zajíček's avatar
      IO: Avoid multiple event cycles in one loop cycle. · bd22d7f4
      Ondřej Zajíček authored
      Event cycle may took too much time and trigger next timer events, so
      avoid cycling between timer and event cycles inside the loop cycle.
      bd22d7f4
    • Ondřej Zajíček's avatar
      IO: Replace RX priority heuristic with explicit mark · 9e7b3ebd
      Ondřej Zajíček authored
      In BIRD, RX has lower priority than TX with the exception of RX from
      control socket. The patch replaces heuristic based on socket type with
      explicit mark and uses it for both control socket and BGP session waiting
      to be established.
      
      This should avoid an issue when during heavy load, outgoing connection
      could connect (TX event), send open, but then failed to receive OPEN /
      establish in time, not sending notifications between and therefore
      got hold timer expired error from the neighbor immediately after it
      finally established the connection.
      9e7b3ebd
  19. 11 Feb, 2016 1 commit
    • Ondřej Zajíček's avatar
      BGP: Fix bug in incoming connection handling · 487c6961
      Ondřej Zajíček authored
      When a BGP session was established by an outgoing connection with
      Graceful Restart behavior negotiated, a pending incoming connection in
      OpenSent state, and another incoming connection was received, then the
      outgoing connection (and whole BGP session) was closed, but the old
      incoming connection was just overwritten by the new one. That later
      caused a crash when the hold timer from the old connection fired.
      487c6961
  20. 25 Nov, 2015 1 commit
  21. 18 Jul, 2015 1 commit
  22. 08 Jun, 2015 2 commits
  23. 01 Apr, 2015 1 commit
    • Ondřej Zajíček's avatar
      BGP: Fixes serious bug in TX handling · d924d5a5
      Ondřej Zajíček authored
      Under some circumstances and heavy load, TX could be postponed
      until the session fails with hold timer expired.
      
      Thanks to Javor Kliachev for making the bug reproductible.
      d924d5a5
  24. 29 Mar, 2015 2 commits
  25. 02 Mar, 2015 1 commit
  26. 22 Feb, 2015 2 commits
  27. 21 Feb, 2015 5 commits
  28. 24 Oct, 2014 1 commit
  29. 02 Oct, 2014 1 commit