Why do we need deny last stripe in route-map? SG has explanation like "Don't policy-route anything else". Sounds good, but I configured in other way - simply permitting(like usually) and it seems to work, without policy-routing other sources. It is because last stripe have no
set statements, so PBR run idle.