02-15-2016 07:11 AM - edited 03-12-2019 12:18 AM
Quick question, so hopefully easy answer. If I have a single link to a provider that has a /31 IP, can I assign that IP to the outside interface, setup BGP peering with the other IP of the /31 and then Dynamic NAT traffic going out that interface? Also what model and version software would support it?
02-15-2016 05:25 PM
To the best of my knowledge, ASA's do not support /31's. You'll need to get a /30.
If you only have a /30 (or a /31) and no other public address space then I don't understand why you would want to use BGP. You have no routes to advertise to your ISP.
02-16-2016 06:05 AM
It's a Public/Private setup for a Cloud service. We would receive all their public routes over a tunnel. It's through a direct connection, not over the open Internet, but would have a VPN over the open internet as a backup, again using BGP, their routes would be redistributed into our OSPF at that point. Since we don't own Public space, we would have to NAT back to them using the /31 IP they provide. Looks like we will need to do this on the router then.
02-16-2016 10:46 AM
If you can only get a /31 then it has to be a router.
If you can get /30 then you could probably do it on an ASA - but my first choice would be a router.
02-16-2016 10:51 AM
Yep, going to terminate them on an ASR 1K instead.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide