cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3711
Views
15
Helpful
6
Replies

Cisco FTD static route leaking

BVC
Level 1
Level 1
I have an upcoming project that requires the configuration of a FTD, I'm new to FTD so this will be a learning curve. From the research I've done you can create static route leaking from one VRF to another VRF on the FTD, does this route leak create a static route in the routing table for each VRF that has route leaking configured? If so can you then advertise this static route out of the FTD to another device via BGP, or any other routing protocol?
 
Any help will be greatly appreciated.
1 Accepted Solution

Accepted Solutions

balaji.bandi
Hall of Fame
Hall of Fame

VRF means 2 different virtual routing tables, you can leak the route one to another or GRT, Once they are in GRT, you can redistribute to the outside or other networks.

 

https://www.cisco.com/c/en/us/td/docs/security/firepower/660/fdm/fptd-fdm-config-guide-660/fptd-fdm-virtual-routers.html

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

View solution in original post

6 Replies 6

balaji.bandi
Hall of Fame
Hall of Fame

VRF means 2 different virtual routing tables, you can leak the route one to another or GRT, Once they are in GRT, you can redistribute to the outside or other networks.

 

https://www.cisco.com/c/en/us/td/docs/security/firepower/660/fdm/fptd-fdm-config-guide-660/fptd-fdm-virtual-routers.html

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Hi, thank you very much for the answer. You say once they are in the GRT table they can be redistributed, is this possible for leaking between two user defined VRFs, or is this only allowed for just one user defined VRF and the global routing table?

Once they are in GRT, you can do how ever you want to ?

 

if you like to leak vrf to vrf, export and and import is good idea.

 

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Okay, so I could leak from a user VRF into the GTR , then into another user VRF? Or can you leak from one user VRF into another user VRF, completely avoiding the GRT. Can you use export and import on the FTD to leak routes?

Ok, thank you very much for your help. 

Review Cisco Networking products for a $25 gift card