cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
254
Views
5
Helpful
1
Replies

BGP Peer thru PIX 515

jpl861
Level 4
Level 4

Hi,

I'm trying to create an iBGP peer between the 4506 and 3800. Between them is a PIX firewall. I'm wondering why the PIX won't let port 179 pass thru the inside interface but nothing is wrong with the outside interface. First, I tried to use this ACL.

access-list 1 permit tcp host cat4500 host c3800 eq bgp

The access-list above didn't work. When I issue show access-list 1, I can see that the hit counter does not increment. But when I changed it to

access-list 1 permit ip host cat4500 host 3800 everthing worked fine.

But for the access-list on the outside interface, nothing is wrong. All I permited is the BGP protocol.

Please help. Thanks.

1 Reply 1

rais
Level 7
Level 7

Which Bgp speaker is outside/inside.

Note that any of the two bgp speakers can use 179 as source port.

This link might help:

http://www.cisco.com/en/US/tech/tk365/technologies_configuration_example09186a008009487d.shtml

Thanks.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: