R1 (2.2.2.2)------------ASA-------------R2(1.1.1.1)
(INSIDE) (Outside)
R1 and R2 are correctly configured for ebgp.
On ASA :-
Please correct by understanding
1)If I assume By-defult TCP seesion from INSIDE to OUTSIDE is allowed with stateful inspection
then BGP packet should go from R1 to R2 and BGP neighbourship should form.but which is not happening.Why ?
2)If I assume by defult no TCP seesion from INSIDE to OUTSIDE is allowed :- In this case I
configured below ACL on ASA to permit BGP and ICMP from inside to outside and BGP is UP and working fine.
access-list inside_access_in extended permit tcp object BGP_INSIDE object BGP-OUTSIDE eq bgp
access-list inside_access_in extended permit icmp object BGP_INSIDE object BGP-OUTSIDE
BGP_INSIDE :- 1.1.1.1
BGP-OUTSIDE :- 2.2.2.2
I want to understand Basic traafic flow via ASA for BGP.Please help to understand the same.
Thanks
Ganpat
CCIE SP