11-23-2023 01:24 PM
in my ACI fabric, I have an L3out BGP peering between Border Leaf and a Fortinet Firewalls, my problem is that I don't receive the default route that is advertised by the firewall via the L3out, in the other hand in firewall I can see the routes of BD that are advertised by ACI . for further investigation related to the issue, I've checked the BGP peering is OK on the firewalls side as well as on the Border leaf, also I've checked the advertised routes from the firewalls towards ACI and I clearly see that there is a default route is advertised . on the ACI side, I've checked the BGP routing Table of the appropriate VRF and I cannot see any routes that come from the BGP peering except the routes of the local BD.
as you see below the configuration of the external epg of the L3out
here is the Vzany contract that is provided by the external EPG
here is the config of the vzany :
here as you see the routes advertised by the firewall to ACI
here is the routing table of Border leaf : as you see i cannot received the default-route .
please is there any idea concerning the issue?
Solved! Go to Solution.
11-24-2023 11:36 PM - edited 11-24-2023 11:36 PM
Yes @JlassiAhmed0345
As I said: That should explain why ACI Fabric (Border Leaf) drop that announce as loop prevention.
Ok, add a feature on FortiGate side, with this neighbor: add as-override.
Clear ip bgp soft and tell me it LB receive this default route from FortiGate.
11-25-2023 07:59 AM
thank you M02@rt37 very much.
On Monday I will do what you propose and let you know about the result.
11-25-2023 08:05 AM
You're very welcome @JlassiAhmed0345
Yes, thanks for a feedback on Monday!
11-27-2023 12:26 AM
Hello M02@rt37
I tried to configure the AS-override on the firewall side but it's not working so I tried to configure Allow Self AS in the AC and then received the routes from the firewall.
11-27-2023 12:47 AM
Perfect @JlassiAhmed0345
11-24-2023 01:40 AM - edited 11-24-2023 01:41 AM
Ooops - ignore
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide