<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: BGP neighbor does not come up when NAT service is enabled in Routing</title>
    <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799177#M380792</link>
    <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;from your configuration i can see you used port tcp 179 on the nat configuration&amp;nbsp; so how BGP problem will be solved by this way ?&lt;/P&gt;</description>
    <pubDate>Wed, 22 Mar 2023 11:29:50 GMT</pubDate>
    <dc:creator>Donia</dc:creator>
    <dc:date>2023-03-22T11:29:50Z</dc:date>
    <item>
      <title>BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799135#M380780</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I am having a problem that BGP when it become down due to any physical issue didn't become up again due to NAT however i can't see any relation as there is no conflict in the Ips used in the ACL with the WAN ip used&amp;nbsp;&lt;/P&gt;
&lt;P&gt;however when we added a statement on the ACL to deny the WAN interface to reach any destination BGP become up&lt;/P&gt;
&lt;P&gt;so can anyone help me to know why this is happened , below some logs for the used configuration&amp;nbsp;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;BTW the router has other customers (Lite VRFs ) and this case didn't appear with any other customer which have the same setup/ configuration&amp;nbsp;&lt;/P&gt;
&lt;P&gt;i had changed the below Ips as they are related to the customer. all sequences in the ACL Source / destination don't have the same range of WAN Subnet.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;ip nat inside source list PAT_clients pool POOL_clients vrf x match-in-vrf&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;
&lt;P&gt;#sh ip access-lists PAT_clients&lt;BR /&gt;Extended IP access list PAT_clients&lt;BR /&gt;10 deny ip 57.201.30.50 0.0.0.3 any&amp;nbsp; &amp;nbsp;--------&amp;gt; which i need to add to restore BGP connection&amp;nbsp;&lt;BR /&gt;20 permit ip 57.91.16.0 0.0.0.255 any&lt;BR /&gt;30 permit ip 57.91.107.0 0.0.0.127 any&lt;BR /&gt;40 permit ip 57.39.109.102 0.0.0.63 any&lt;BR /&gt;&lt;BR /&gt;100 permit ip 10.81.205.40 0.0.0.7 any&lt;BR /&gt;110 permit ip 10.79.205.152 0.0.0.7 any&lt;BR /&gt;&lt;BR /&gt;360 permit ip any host 1&lt;SPAN&gt;76.90.37.101&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;370 permit ip any host 179.107.30.11&lt;BR /&gt;380 permit ip any host 177.19.28.11&lt;BR /&gt;390 permit ip any host 172.14.250.11&lt;BR /&gt;400 permit ip any host 170.107.100.103&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 10:13:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799135#M380780</guid>
      <dc:creator>Donia</dc:creator>
      <dc:date>2023-03-22T10:13:41Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799139#M380784</link>
      <description>&lt;P&gt;this can due to PAT change the TCP port use by BGP&amp;nbsp;&lt;BR /&gt;so you need static PAT and config Peer with Mapped IP not real IP.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 10:19:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799139#M380784</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-03-22T10:19:00Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799159#M380788</link>
      <description>&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot (416).png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/179752i5F628085813AC5B9/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot (416).png" alt="Screenshot (416).png" /&gt;&lt;/span&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot (417).png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/179751iF7508EB404B838AE/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot (417).png" alt="Screenshot (417).png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 10:48:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799159#M380788</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-03-22T10:48:45Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799177#M380792</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;from your configuration i can see you used port tcp 179 on the nat configuration&amp;nbsp; so how BGP problem will be solved by this way ?&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 11:29:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799177#M380792</guid>
      <dc:creator>Donia</dc:creator>
      <dc:date>2023-03-22T11:29:50Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799201#M380794</link>
      <description>&lt;P&gt;R1-R2-R3&amp;nbsp;&lt;BR /&gt;in R3 I config BGP with R2 not R1 ip (mapped ip not real ip of R1)&lt;BR /&gt;in R1 I config BGP with R3&amp;nbsp;&lt;BR /&gt;in R2 I config static PAT for TCP=179 port, note the static NAT is bi-directional&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;that it.&lt;BR /&gt;if you have more Q please ask.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 12:04:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799201#M380794</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-03-22T12:04:47Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799646#M380820</link>
      <description>&lt;P&gt;Hello&lt;BR /&gt;In your acl you need to allow bgp protocol through for successful peering&lt;BR /&gt;&lt;U&gt;example:&lt;/U&gt;&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;ip access-lists extended PAT_clients&lt;BR /&gt;5&amp;nbsp;permit tcp any eq bgp any&lt;BR /&gt;6 permit tcp any any eq bgp&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Mar 2023 20:43:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4799646#M380820</guid>
      <dc:creator>paul driver</dc:creator>
      <dc:date>2023-03-22T20:43:32Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4800634#M380918</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;
&lt;P&gt;you are configuring NAT Statament from the source IP of R1 with Port 179 which i think can lead to the same problem i have.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;MY case Customer LAN will reach the CE and in case they will need to reach specific destination , in this case Natting will be working and traffic will go out with the Natted Ip so it shouldn't have any relation with the Wan BGP&lt;/P&gt;
&lt;P&gt;CE------PE --mpls network--PE---LAN&amp;nbsp;Destination that customer need to reach&amp;nbsp;&lt;/P&gt;
&lt;P&gt;sorry for asking alot but i still didn't get the problem&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Mar 2023 08:15:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4800634#M380918</guid>
      <dc:creator>Donia</dc:creator>
      <dc:date>2023-03-24T08:15:23Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4800724#M380922</link>
      <description>&lt;P&gt;can i understand how the above commands will make the EBGP session won't be down . i am still can't get how the PAT makes ebgp session to be down as PAtting is having condition that ACL must match ( source / destination ) which is different from the WAN subnet and what i understand that WAN subnet shouldn't participate in natting process as traffic will be initiated from inside ( customer LAN ) then will reach CE that will make the translation and will send traffic towards destination which is learnt by BGP.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;CE------PE --mpls network--PE---LAN&amp;nbsp;Destination that customer need to reach&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Mar 2023 09:46:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4800724#M380922</guid>
      <dc:creator>Donia</dc:creator>
      <dc:date>2023-03-24T09:46:27Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4800937#M380945</link>
      <description>&lt;P&gt;Hi friend&amp;nbsp;&lt;BR /&gt;the R4 is CE connect to PE and I config CE with NAT overload toward the link connect CE-PE&amp;nbsp;&lt;BR /&gt;the issue not arise until I use LO in CE as update source of BGP and allow this LO to hit the ACL of NAT overload&amp;nbsp;&lt;BR /&gt;here the BGP is stop&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Screenshot (427).png" style="width: 999px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/180056iC7AE1A3B6BC48E7B/image-size/large?v=v2&amp;amp;px=999" role="button" title="Screenshot (427).png" alt="Screenshot (427).png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Mar 2023 15:08:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4800937#M380945</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-03-24T15:08:09Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4801109#M380961</link>
      <description>&lt;P&gt;Hello&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1273493"&gt;@Donia &lt;/a&gt;&amp;nbsp;&lt;BR /&gt;Apologies I thought the ACL was applied to a wan interface but its not, its being called by NAT statement!&lt;BR /&gt;&lt;BR /&gt;Now regarding your NAT ACL it should only reference the NAT internal domain (inside) addressing, it should have no reference to any other host/network other then what's originating from that interface so anything else should be removed from the ACL.&lt;/P&gt;
&lt;P&gt;Any deny ace within the NAT ACL again will reference hosts/networks orientating from the internal nat domain that you wish NOT to be network translated.&lt;/P&gt;</description>
      <pubDate>Fri, 24 Mar 2023 19:31:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4801109#M380961</guid>
      <dc:creator>paul driver</dc:creator>
      <dc:date>2023-03-24T19:31:14Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4801114#M380962</link>
      <description>&lt;P&gt;Friend you have two choose here&lt;/P&gt;
&lt;P&gt;1- config static PAT if the bgp only know the mapped ip&lt;/P&gt;
&lt;P&gt;As I mention above&amp;nbsp;&lt;/P&gt;
&lt;P&gt;2- config deny for bgp traffic to bypass PAT if the know real ip&lt;/P&gt;
&lt;P&gt;As &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/326012"&gt;@paul driver&lt;/a&gt;&amp;nbsp;mention in his post&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 24 Mar 2023 19:37:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4801114#M380962</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-03-24T19:37:24Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4801772#M381051</link>
      <description>&lt;P&gt;Hello,&amp;nbsp;&lt;/P&gt;
&lt;P&gt;on the router configuration i'm not using the loopback that used in the NAT statement in the BGP configuration. i just advertise this loopback on PE.&amp;nbsp;&lt;/P&gt;
&lt;P&gt;neighbor --- physicalWAN ip--- remote-as x&lt;BR /&gt;neighbor --- physicalWAN ip--- activate&lt;BR /&gt;neighbor --- physicalWAN ip---&amp;nbsp; send-community&lt;BR /&gt;neighbor --- physicalWAN ip--- route-map BGP-TAG out&lt;/P&gt;
&lt;P&gt;i know it is normal in case we used the loopback as the source LO on the BGP as it will impact the neighborship but in my case i can't see any relation between NAT / BGP.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Mar 2023 08:05:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4801772#M381051</guid>
      <dc:creator>Donia</dc:creator>
      <dc:date>2023-03-27T08:05:20Z</dc:date>
    </item>
    <item>
      <title>Re: BGP neighbor does not come up when NAT service is enabled</title>
      <link>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4801881#M381062</link>
      <description>&lt;P&gt;OK,&amp;nbsp;&lt;BR /&gt;can you check&amp;nbsp;&lt;BR /&gt;show ip nat translation&amp;nbsp;&lt;BR /&gt;check in entry if there is TCP port 179 or not&amp;nbsp;&lt;BR /&gt;can you share this after hidden public IP&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Mar 2023 10:45:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/routing/bgp-neighbor-does-not-come-up-when-nat-service-is-enabled/m-p/4801881#M381062</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-03-27T10:45:58Z</dc:date>
    </item>
  </channel>
</rss>

