cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
945
Views
5
Helpful
3
Replies

ACI L3Out BGP will not establish

JPC11
Level 1
Level 1

Hi,

I am attempting to configure an IBGP session between an ACI leaf and a 9K switch but BGP remains idle.  

From the 9K I am able to see the ACI leaf in LLDP so I know that from a physical perspective the swtches are connected and can see each other.

To configure the L3Out we used the wizard on version 5.2(4d) and my configuration is as follows -

The PRODUCTION VRF sits in the PRODUCTION Tenant which is where we are configuring the L3Out

JPC11_0-1666103107369.png

The leaf switch is connecting to a switchport on the 9K which is a member of VLAN 555.  The SVI on the 9K is 192.168.255.253 which is up/up.

JPC11_5-1666103918559.png

 

The IBGP peer on e1/5 has an IP address of 192.168.255.253 and is in AS 65001

JPC11_3-1666103570553.png

 

JPC11_4-1666103823283.png

Any help would be greatfuly appreciated.

 

Many thanks,

 

Jonathan

3 Replies 3

Sergiu.Daniluk
VIP Alumni
VIP Alumni

Hi @JPC11 

As always in ACI, if something doesn't work, first you have to check if there are any faults raised for the problematic object, in your case for your L3Out. 

SergiuDaniluk_2-1666160621156.png

If there are any, try to resolve them, and then continue the investigation if problem is not solved.

Some other things to check:

- you have BGP RR configured for your fabric. This is required for BLs to distribute external routes to other leaf nodes and is configured in System -> System Settings -> BGP Route Reflector

SergiuDaniluk_0-1666160413141.png

 

-by default, the BGP AS number of your L3Out will automatically be the same as the BGP AS for
the infra-MP-BGP that is configured in the BGP Route Reflector policy (the one configured above).

SergiuDaniluk_1-1666160424010.png

If you have it configured as 65001, then it's ok for your iBGP. If not, you must change the "Local AS' configuration in the BGP Peer Conectivity Profile.

SergiuDaniluk_3-1666160720712.png

Take care,

Sergiu

 

Sergiu,

Thank you for this I think my brain took a holiday as I had configured ACI as an SVI but neglected to configure my Catalyst switch port as a trunk.  The second I configured the interface as a trunk BGP established.

 

Thank you for your reply though.

 

Jonathan

Hehe, it happens to all of us no worries. Glad to hear that it was just a config issue and not a bug or worse

 

Take care,

Sergiu

Save 25% on Day-2 Operations Add-On License