RE: BGP Error

From: Scott M Vermillion (scott_ccie_list@it-ag.com)
Date: Fri Oct 24 2008 - 15:59:14 ARST


Might be worthwhile to read Marko's blog on the subject Shahid. Notice that
the error is seen on BB1 and it was sent *to* neighbor 150.1.2.1, which
presumably is R6 (we don't see that in the config snippet but BB1 is .254 on
that subnet). So that's just BB1 reflecting back to R6 what R6
"erroneously" (depending on perspective) tried to peer *from* (due to the
confederation ID configuration). BB1 did not tell R6 that it was expecting
to peer with AS64514.

I'm not sure if this is just how the chips fell or if this is a security
feature. Do you really want your router telling other routers what AS it's
willing/configured to peer with?
    

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
Shahid Ansari
Sent: Friday, October 24, 2008 11:44 AM
To: Scott M Vermillion
Cc: Michael Dorion; nouman abbasi; Cisco certification
Subject: Re: BGP Error

When you configure neighbor with wrong AS, you will receive the message
informing you of the remotely configured ASN.
In your example:

<< Error >>
*Mar 1 08:37:53.965: %BGP-3-NOTIFICATION: sent to neighbor 150.1.2.1 2/24
(peer in wrong AS) 2 bytes 0004
 --More-- FFFF FFFF FFFF FFFF FFFF FFFF FFFF FFFF 002D 0104 0004 00B4 0606
0606 1002 0601 0400 0100 0102 0280 0002 0202 00

Look at the end. Hex number "0004" is *remotely configured ASN*. You
just change your configuration to peer with AS 4 and you're done.

Please correct me If I am wrong .

On Fri, Oct 24, 2008 at 8:38 PM, Scott M Vermillion <
scott_ccie_list@it-ag.com> wrote:

> >looks like ebgp-multihop is missing on BB1 also.
>
> I think all of that stuff related to IP 2.2.2.2 is a confederation peer
> elsewhere in the topology - not BB1. The last three lines of config got
> concatenated into a single line in the original e-mail, so you probably
> didn't see on R6:
>
>
>
> neighbor 150.1.2.254 remote-as 254
>
>
>
> That's the subnet of the segment between R6 & BB1, so multi-hop shouldn't
> be
> required.
>
>
> Blogs and organic groups at http://www.ccie.net
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
>
>
>
>
>
>
>
>

-- 
Regards,

Shahid Ansari Saudi Arabia(Riyadh)

Blogs and organic groups at http://www.ccie.net



This archive was generated by hypermail 2.1.4 : Sat Nov 01 2008 - 15:35:22 ARST