cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
634
Views
0
Helpful
4
Replies

Firewall tries to close a BGP/TCP connection with switch

FNL
Level 1
Level 1

Hi,

 

  The following problem involves a firewall (10.249.0.13) wanting to close a BGP connection with its neighboring switch (10.249.0.14).

 

The switch answers with a BGP NOTIFICATION message that contains "No supported AFI/SAFI". (separate issue) The firewall then sends a FIN to the switch to close the TCP connection. Follows a series of FIN retransmissions from the firewall and ACK retransmissions from the switch.

 

Is there a way to determine which side is not understanding here?

I have included an excerpt of the .pcap.

 

Thanks

4 Replies 4

are you config FW to bypass BGP or it BGP peer?

No we're not.

Thanks a lot for the link, I will check that out.

Review Cisco Networking for a $25 gift card