cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
5127
Views
10
Helpful
2
Replies

BGP Active/Passive Open - Deterministic

kfarrington
Level 3
Level 3

Hello All,

Is there a way that you can configure a peer only to be the active side of the TCP session to reject passive opens?

I understand that in a connection collision, the higher router ID drops the passive connection, but how likley are connection collisions?

Is this possible thru the IOS command line? Or is it just use ACLs?

Thx

Ken

2 Replies 2

Harold Ritter
Spotlight
Spotlight

Ken,

You can configure the local peer to be passive by using the following command:

neighbor x.x.x.x transport connection-mode passive

Hope this helps,

Regards,
Harold Ritter, CCIE #4168 (EI, SP)

Brill - Thx fella :) Rated!