Quantcast
Viewing all articles
Browse latest Browse all 10744

BGP traffic Passing via cisco ASA

 R1 (2.2.2.2)------------ASA-------------R2(1.1.1.1)
  (INSIDE)                                        (Outside)

R1 and R2 are correctly configured for ebgp.

On ASA :-

Please correct by understanding

1)If I assume By-defult TCP seesion from INSIDE to OUTSIDE is allowed with stateful inspection

 then BGP packet should go from R1 to R2  and BGP neighbourship should form.but which is not happening.Why ?

2)If I assume by defult no TCP seesion from INSIDE to OUTSIDE is allowed :- In this case I
  configured below ACL on ASA to permit BGP and ICMP from inside to outside and BGP is UP and working fine.


 access-list inside_access_in extended permit tcp object BGP_INSIDE object BGP-OUTSIDE eq bgp
 access-list inside_access_in extended permit icmp object BGP_INSIDE object BGP-OUTSIDE

   BGP_INSIDE :- 1.1.1.1
   BGP-OUTSIDE :- 2.2.2.2

 

I want to understand Basic traafic flow via ASA for BGP.Please help to understand the same.

 

Thanks

 

Ganpat

CCIE SP


Viewing all articles
Browse latest Browse all 10744

Trending Articles