Setup new BGP

Unanswered Question
Feb 16th, 2010

Couple of days ago we try to implement bgp between two isps, everything seems to working but somehow some users were not able to get into our network. please take a look on traceroute:


C:\Users\dmars.MA>tracert 204.90.52.106
  1     1 ms     1 ms     1 ms  192.168.1.1
  2     *        *        *     Request timed out.
  3     8 ms    10 ms    11 ms
ge-3-16-ur02.royaloak.mi.michigan.comcast.net [68.85.235.177]
  4    12 ms    10 ms    13 ms
te-9-2-ur03.royaloak.mi.michigan.comcast.net [68.87.191.18]
  5    12 ms     9 ms    11 ms
te-0-7-0-6-ar01.pontiac.mi.michigan.comcast.net[68.85.222.66]
  6    21 ms    23 ms    25 ms
pos-2-1-0-0-cr01.chicago.il.ibone.comcast.net [68.86.90.109]
  7    28 ms    24 ms    23 ms
pos-0-0-0-0-pe01.350ecermak.il.ibone.comcast.net [68.86.86.34]
  8    30 ms    23 ms    26 ms  192.205.37.9
  9    31 ms    34 ms    30 ms  cr1.cgcil.ip.att.net [12.122.84.50]
10    31 ms    33 ms    47 ms  cr81.dtrmi.ip.att.net [12.123.139.158]
11    30 ms    31 ms    30 ms  gar9.dtrmi.ip.att.net [12.122.102.13]
12    29 ms    30 ms    31 ms  12.87.190.18 (AT&T router)
13     *       33 ms    30 ms  12.51.172.2 (6509 Chassis)
14     *        *        *     Request timed out.
15     *        *        *     Request timed out.
16     *        *        *     Request timed out.
17     *        *        *     Request timed out.
18     *       33 ms     *     admin.starwoodcms.com [204.90.52.106]
19    33 ms     *        *     admin.starwoodcms.com [204.90.52.106]
20     *        *        *     Request timed out.
21     *        *        *     Request timed out.
22  12.51.172.2  reports: Destination host unreachable.


Whereas some users from different location and same service provider were able to connect.

One thing I noticed when I add a static route user ip address to my config then it work?

0.0.0.0  0.0.0.0  user ip

Let me know if I can provide any more details.


currently bgp turned off, because some users were not able to connect our network. Only one DS3 is working right now and I am collecting information again to make sure second time dont get into same problem... This is L3 network, and partial routes enable from both ISPs (AT&T and Cavalier).

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Giuseppe Larosa Tue, 02/16/2010 - 09:24

Hello Raheel,


have you checked if the eBGP session has come up?


show ip bgp sum


do you see a number on righmost column like here:


x.x.x.x  4        ASN 1005968 25072159 85467919    0    0 6d08h        8584


on your side what tells about the new eBGP session


show ip bgp neigh received-routes


sh ip route bgp | inc via other-side-ipaddress


the fact that adding a default route may help is not clear


also check with sh ip route if all expected IP networks are present


is this a form of MPLS L3 VPN?


Hope to help

Giuseppe

lamav Tue, 02/16/2010 - 12:24

Raheel, your post lacks a lot of information.


Can you show us the configuration of both peers?


Can you execute a sh ip bgp sum on each peer and show us the output?


Can you provide an example of a failed route?


Diagram?


Thanks


Victor

Actions

This Discussion