List of addr/netmask for mgmt interfaces; if specified, one per RE.
No Additional ItemsList of FPC indices on which to enable jflow sampling.
No Additional ItemsBGP peer IP
Each additional property must conform to the following schema
Type: objectone of common.yaml transit_providers
Generate the policy based on the peer ASN.
Generate the policy based on the peer ASN.
Extra firewall filters to apply to interfaces.
No Additional PropertiesAll properties whose name matches the following regular expression must respect the following conditions
Property name regular expression:^.+$
Enable uRPF filtering in strict mode for any interfaces in this list.
No Additional ItemsInterface with sub interface (eg. xe-1/0/1.1234 or xe-1/0/1.0)
In a LACP bundle, configure VRRP to failover on the loss of one link.
Override priority for every VRRP, useful for forced failover/maintenance. Highest number wins; default when unspecified is 100. Remove any vrrpmasterpinning config on both devices before using as it takes precedence.
Pin (sub)interfaces to a given device (sets its VRRP priority to 110)
No Additional Itemsae1 # Interface and all sub-interfaces; xe-1/0/1.1234 # Specific sub-interface
Enable interface flap damping.
No Additional ItemsSet if the IXP terminating on that router should be prioritized.
Clamps outbound tcp-mss to 1436. Usually applied per site.
Prepends our AS# 3x to our peering and transits. Usually applied per site.
For AE interfaces only, take the interface down if the bundle doesn't have at least X healthy members.
Each additional property must conform to the following schema
Type: integerDon't send LLDP frames on those interfaces as SRXs show L2 errors when receiving them.
No Additional ItemsAdd flowspec rule to the routers
No Additional PropertiesAll properties whose name matches the following regular expression must respect the following conditions
Property name regular expression:^.+$
GRE tunnels source/destination
No Additional PropertiesAll properties whose name matches the following regular expression must respect the following conditions
Property name regular expression:^.+$
Configure Juniper's security logs
No Additional PropertiesLocal source IP.
All properties whose name matches the following regular expression must respect the following conditions
Property name regular expression:^.+$
Unique name and destination IP.
Primary ASN of the device.
Configure the mgmt_junos routing instance (default: true)
Used to define BGP peering to a single IP.
Each additional property must conform to the following schema
Type: stringEach additional property must conform to the following schema
Type: stringEach additional property must conform to the following schema
Type: stringControls interfaces to get DHCP relay and IPv6 RAs enabled on CRs
No Additional ItemsList of Capirca policy files to apply
No Additional ItemsEach additional property must conform to the following schema
Type: string[Secret] some features require a license key.
No Additional ItemsConfigure interfaces using Netbox as the source of truth.
The switch also does L3 routing.
The switch uses BGP EVPN and VXLAN transport.
[Secret]
[Secret]
[Secret]
Network prefixes to ban, v4 and v6 with subnet
No Additional ItemsNetwork prefixes to ban port80 traffic, v4 and v6 with subnet
No Additional ItemsForce router to accept a RPKI invalid prefix.
No Additional ItemsDevice-specific BGP peerings, nested to avoid namespace collision.
No Additional PropertiesEach additional property must conform to the following schema
Type: objectUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Each additional property must conform to the following schema
Type: objectUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sUsed to define BGP peerings to a pair of IPs, one for v4 one for v6
Same definition as k8sBGP EVPN members and cluster vars for given site.
Dict of cluster RRs. Key is device name, value is device loopback.
Each additional property must conform to the following schema
Type: stringFormat: ipv4Dict of cluster RR clients. Key is device name, value is device loopback.
Each additional property must conform to the following schema
Type: stringFormat: ipv4Static routes to be added to a device.
Each additional property must conform to the following schema
Type: objectMecanism to define AE int as an esi-lag and provide ID.
Each additional property must conform to the following schema
Type: stringDict for IKE PSKs keyed by the Netbox tunnel name.
Each additional property must conform to the following schema
Type: stringValue must be greater or equal to 0