10-05-2016 04:54 PM - edited 03-05-2019 07:12 AM
Hi.
I'm trying to set up a BGP configuration between a Cisco router and Firewall. I made a lab using a firewall virtualized and GNS3 and I could make it work as well. But when I tried to do it in physical appliances, I got an error in Cisco that I cannot udnerstand why this is happening.
Here is the debug log from TCP.
________________________
*Mar 3 07:08:54.162: TCP: Random local port generated 14670
*Mar 3 07:08:54.162: TCB650F7268 bound to 12.10.10.2.14670
*Mar 3 07:08:54.162: TCP: sending SYN, seq 3433630976, ack 0
*Mar 3 07:08:54.162: TCP0: Connection to 12.10.10.1:179, advertising MSS 1460
*Mar 3 07:08:54.162: TCP0: state was CLOSED -> SYNSENT [14670 -> 12.10.10.1(179)]
*Mar 3 07:08:56.162: 12.10.10.2:14670 <---> 12.10.10.1:179 congestion window changes
*Mar 3 07:08:56.162: cwnd from 1460 to 1460, ssthresh from 65535 to 2920
*Mar 3 07:08:56.162: TCP0: timeout #1 - timeout is 4000 ms, seq 3433630976
*Mar 3 07:08:56.162: TCP: (14670) -> 12.10.10.1(179)
*Mar 3 07:09:00.162: TCP0: timeout #2 - timeout is 8000 ms, seq 3433630976
*Mar 3 07:09:00.162: TCP: (14670) -> 12.10.10.1(179)
*Mar 3 07:09:08.162: TCP0: timeout #3 - timeout is 16000 ms, seq 3433630976
*Mar 3 07:09:08.162: TCP: (14670) -> 12.10.10.1(179)
*Mar 3 07:09:24.162: TCP0: state was SYNSENT -> CLOSED [14670 -> 12.10.10.1(179)]
*Mar 3 07:09:24.162: TCB 0x650F7268 destroyed
*Mar 3 07:09:24.162: BGP: 12.10.10.1 open failed: Connection timed out; remote host not responding, open active delayed 29259ms (35000ms max, 28% jitter)
*Mar 3 07:09:33.602: TCP0: state was LISTEN -> SYNRCVD [22 -> 10.10.12.5(55469)]
*Mar 3 07:09:33.602: TCP: tcb 6496BEF0 connection to 10.10.12.5:55469, peer MSS 1460, MSS is 516
*Mar 3 07:09:33.602: TCP: sending SYN, seq 2600959094, ack 3663362235
*Mar 3 07:09:33.606: TCP0: Connection to 10.10.12.5:55469, advertising MSS 1460
______________________
It's saying congestion window changes... both MSS configuration are set to default... does anybody see that before?
Thanks !
10-06-2016 05:53 PM
Problem solve... there were another bgp instance in the firewall... after remove that it started to run fine!
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide