Hello,
i found a bug with the syncing of vyos and frr route-maps. Both should habe the same configure after commit.
This will cause unexpected behaviors of route-maps. Looks like FRR route-maps are not generated probably.
set policy route-map PS-TC-IN4 rule 10 action 'permit' set policy route-map PS-TC-IN4 rule 10 match ip address prefix-list 'XXX-IN4' set policy route-map PS-TC-IN4 rule 10 match rpki valid commit
FRR config:
route-map PS-TC-IN4 permit 10 match ip address prefix-list XXX-IN4 match rpki valid !
After that:
del policy route-map PS-TC-IN4 rule 10 match rpki commit
FRR config after commit del:
route-map PS-TC-IN4 permit 10 match ip address prefix-list XXX-IN4 match rpki valid !
But vyos has no second match rule:
run show conf com | grep PS-TC-IN4 set policy route-map PS-TC-IN4 rule 10 action 'permit' set policy route-map PS-TC-IN4 rule 10 match ip address prefix-list 'XXX-IN4'
FRR config still has second match rule.
Manual change via frr temporary fix that
no match rpki valid
but only until you restart the server or doing "run restart bgp".