Hi everyone,
I'm trying to setup iBGP within a VRF using a different AS number to BGP running in the default VRF between two AOS-CX devices.
I can get this working with eBGP peers, but I always get 'Bad Peer AS' when trying iBGP.
I've tried using AOS-CX virtual in EVE-NG on 10.06 and 10.07 with the same results.
I have also tried adding 'no-prepend replace-as dual-as' to the local-as command with the same results.
I can get this working if I use the same AS number as the default VRF for iBGP peering but this doesn't seem like an ideal thing to do.
@vincent.giles wondering if you've done this before?
Config is below:
Switch 1
vrf INTERNET
rd 65011:100
!
router bgp 65001
<other working iBGP/ eBGP config using the above AS>
!
vrf OUTSIDE
bgp router-id 1.1.1.1
timers bgp 15 45
neighbor 10.0.0.2 remote-as 65011
neighbor 10.0.0.2 local-as 65011
address-family ipv4 unicast
neighbor 10.0.0.2 activate
exit-address-family
Switch 2:
vrf INTERNET
rd 65011:100
!
router bgp 65001
<other working iBGP/ eBGP config using the above AS>
!
vrf OUTSIDE
bgp router-id 2.2.2.2
timers bgp 15 45
neighbor 10.0.0.1 remote-as 65011
neighbor 10.0.0.1 local-as 65011
address-family ipv4 unicast
neighbor 10.0.0.1 activate
exit-address-family
Output of 'show bgp vrf OUTSIDE all neighbors 10.0.0.1' from Switch2:BGP Neighbor 1.1.1.1 (External)
Description : Switch1 iBGP OUTSIDE
Peer-group :
Remote Router Id : 0.0.0.0 Local Router Id : 2.2.2.2
Remote AS : 65011 Local AS : 65001
Remote Port : 0 Local Port : 0
State : Idle Admin Status : Up
Conn. Established : 0 Conn. Dropped : 0
Passive : No Update-Source :
Cfg. Hold Time : 45 Cfg. Keep Alive : 15
Neg. Hold Time : 0 Neg. Keep Alive : 0
Up/Down Time : 00h:00m:00s Connect-Retry Time : 120
Local-AS Prepend : Yes Alt. Local-AS : 65011
BFD : Disabled
Password :
Last Err Sent : OPEN Message Error
Last SubErr Sent : Bad Peer AS
Last Err Rcvd : No Error
Last SubErr Rcvd : No Error
Graceful-Restart : Enabled Gr. Restart Time : 30
Gr. Stalepath Time : 300 Remove Private-AS : No
TTL : 1 Local Cluster-ID :
Weight : 0 Fall-over : No
Confederation-Peers : No
------------------------------
Chris Denham
------------------------------