<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic BGP in cluster FTD in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286875#M1078178</link>
    <description>&lt;P&gt;Hi all, shortly have to RUN BGP a couple of FTD 4115 in HA, managed by a 1600 FMC, it's all on premises. I was wondering about the BGP sessions if they have to be established according to which of the following cases:&lt;/P&gt;&lt;P&gt;1) one router peers with both active and passive FTD.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Tanto.PNG" style="width: 235px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/103778i9EC2B10B718D123F/image-dimensions/235x283?v=v2" width="235" height="283" role="button" title="Tanto.PNG" alt="Tanto.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2) router peering is as per image below&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Poco.PNG" style="width: 249px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/103779i97276EA63EEB9AF0/image-dimensions/249x299?v=v2" width="249" height="299" role="button" title="Poco.PNG" alt="Poco.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;3) router peering is as per image below&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nada.PNG" style="width: 296px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/103780i3C6C1ED1C62937D6/image-dimensions/296x341?v=v2" width="296" height="341" role="button" title="nada.PNG" alt="nada.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Any insight would be very much appreciated&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Davide&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt; &lt;/P&gt;</description>
    <pubDate>Fri, 05 Feb 2021 17:34:23 GMT</pubDate>
    <dc:creator>DavideRanalli76560</dc:creator>
    <dc:date>2021-02-05T17:34:23Z</dc:date>
    <item>
      <title>BGP in cluster FTD</title>
      <link>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286875#M1078178</link>
      <description>&lt;P&gt;Hi all, shortly have to RUN BGP a couple of FTD 4115 in HA, managed by a 1600 FMC, it's all on premises. I was wondering about the BGP sessions if they have to be established according to which of the following cases:&lt;/P&gt;&lt;P&gt;1) one router peers with both active and passive FTD.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Tanto.PNG" style="width: 235px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/103778i9EC2B10B718D123F/image-dimensions/235x283?v=v2" width="235" height="283" role="button" title="Tanto.PNG" alt="Tanto.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;2) router peering is as per image below&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Poco.PNG" style="width: 249px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/103779i97276EA63EEB9AF0/image-dimensions/249x299?v=v2" width="249" height="299" role="button" title="Poco.PNG" alt="Poco.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;3) router peering is as per image below&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="nada.PNG" style="width: 296px;"&gt;&lt;img src="https://community.cisco.com/t5/image/serverpage/image-id/103780i3C6C1ED1C62937D6/image-dimensions/296x341?v=v2" width="296" height="341" role="button" title="nada.PNG" alt="nada.PNG" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;Any insight would be very much appreciated&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Davide&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt; &lt;/P&gt;</description>
      <pubDate>Fri, 05 Feb 2021 17:34:23 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286875#M1078178</guid>
      <dc:creator>DavideRanalli76560</dc:creator>
      <dc:date>2021-02-05T17:34:23Z</dc:date>
    </item>
    <item>
      <title>Re: BGP in cluster FTD</title>
      <link>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286880#M1078179</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1113820"&gt;@DavideRanalli76560&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;Option 3 would be correct.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Only the Active unit listens on TCP port 179 for BGP connections from peers. The Standby unit does not participate in BGP peering, and hence does not listen on TCP port 179 and does not maintain the BGP tables. BGP route additions and deletions are replicated from the Active to the Standby unit. Upon failover, the new Active unit listens on TCP port 179 and initiates the BGP adjacency establishment with peers.&lt;/P&gt;</description>
      <pubDate>Fri, 05 Feb 2021 17:41:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286880#M1078179</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-02-05T17:41:36Z</dc:date>
    </item>
    <item>
      <title>Re: BGP in cluster FTD</title>
      <link>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286912#M1078190</link>
      <description>&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;from this documentation (Page 38) looks like is not like this&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2020/pdf/BRKSEC-3032.pdf" target="_blank"&gt;https://www.ciscolive.com/c/dam/r/ciscolive/emea/docs/2020/pdf/BRKSEC-3032.pdf&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Each member forms independent adjacencies in Individual mode&lt;BR /&gt;• Same protocols as in Spanned Etherchannel, but multicast data is centralized&lt;BR /&gt;• Higher overall processing impact from maintaining separate routing tables&lt;BR /&gt;• Slower external convergence on any member failure&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 05 Feb 2021 18:32:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286912#M1078190</guid>
      <dc:creator>DavideRanalli76560</dc:creator>
      <dc:date>2021-02-05T18:32:16Z</dc:date>
    </item>
    <item>
      <title>Re: BGP in cluster FTD</title>
      <link>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286934#M1078193</link>
      <description>&lt;P&gt;Sorry I assumed when you meant HA that you were referring to Active/Standby, not clustering.&lt;/P&gt;
&lt;P&gt;In which case each FTD member establishes adjacencies, as you've noted from that CL doc.&lt;/P&gt;</description>
      <pubDate>Fri, 05 Feb 2021 18:51:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286934#M1078193</guid>
      <dc:creator>Rob Ingram</dc:creator>
      <dc:date>2021-02-05T18:51:48Z</dc:date>
    </item>
    <item>
      <title>Re: BGP in cluster FTD</title>
      <link>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286950#M1078195</link>
      <description>&lt;P&gt;My bad, I didn't get the document right, actually I should apologize, I am doing HA, your first answer answered perfectly what I first asked.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks very much for your precious help&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Davide&lt;/P&gt;</description>
      <pubDate>Fri, 05 Feb 2021 19:05:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/bgp-in-cluster-ftd/m-p/4286950#M1078195</guid>
      <dc:creator>DavideRanalli76560</dc:creator>
      <dc:date>2021-02-05T19:05:42Z</dc:date>
    </item>
  </channel>
</rss>

