Hi Lou, Donald,
At first glance, the syntax proposed in [1] looks good.
Does that mean that VRF configured under BGP node ( vpn-policy or vrf-policy) will be automatically "connected" to ZEBRA VRF ?
Maybe an explicit additional command would make that relationship possible?
I am in progress of having FlowSpec Client into FRR. More information
Flowspec basically applies some kind of policy ( some rules describe which traffic, and what to do with) based on BGP Flowspec infomation.
My setup is not finalised yet, I have the main traffic that is not encapsulated.
For security reasons, BGP receives a BGP Flowspec message, including an extended community that asks to redirect that traffic to a VRF.
I expect that BGP identifies the ZEBRA VRF, based on the incoming extended community ( made with Route Target).
I also expect that the RD and RT concepts do not cross BGP/ZEBRA borderline. I expect that the matchine VRF_ID will be contained in the ZAPI message.