The previous topology was concerned with establishing a E-BGP neighborings with two directly connected networks . Now lets turn our focus to the ones which are not directly connected but yet needs to be E-BGP peers

The following topology will be used by me

R2 ->R1 — 172.16.1.0/24

R1->R4 — 172.16.2.0/24

R4 :

router bgp 1

nei 172.16.1.2 remote-as 2

R4

router bgp 2

nei 172.16.2.2 remote-as 1

when we turn on debugging and wait for something to happen. Actually first we need see if we have network layer reachability to routers then we can worry about EBGP peerings . Hence i set up a static route and enable

DEBUG IP BGP IPV4 UNICAST

For EBgp relationships

Now if we are left with other configuration option such as Ttl-security lets see how things get worse from one end :)

even though the state changes from IDLE / ACTIVE -> OPEN SENT it never comes to established

The other router will always be in open confirm mode

Lets verify that

R2(config-router)#do sh bgp nei | in state
BGP state = OpenConfirm
Connection state is ESTAB, I/O status: 1, unread input bytes: 0
R2(config-router)#
R2(config-router)#do sh bgp nei | in TTL
Connection is ECN Disabled, Mininum incoming TTL 0, Outgoing TTL 2 —> TTL WOULD BE ‘0′ (ZERO) WHEN IT REACHES THE ROUTER R4
R2(config-router)#
R2(config-router)#do sh run | sec bgp
router bgp 2
no synchronization
bgp log-neighbor-changes
neighbor 172.16.2.2 remote-as 1
neighbor 172.16.2.2 ebgp-multihop 2
no auto-summary
R2(config-router)#

Because the other router is expecting a incoming ip packet value TTL should be atleast 253  or higher . so the solution is to configure R2 such that it sends TTL OF 255 so that by the time packet travels 2 hops its TTL would be 253 .

or the other option is to set ttl-security option to Router 2 also . But we would rather miss the fun Right :)

Ok lets do it on R2

Yaa can you see the multihop working now in accordance with TTL-SECURITY :) . Its bed Time . Meet you Tomorrow with some other fun stuff

Regards

Rakesh

E-BGP Neighbors

No comments

This is a simple lab which demonstrates the requirements of bgp external peerings

we have got two routers on 172.16.1.0/24 subnet

R1->172.16.1.1 ,r2->172.16.1.2

R1

Router bgp 1

neighbor 172.16.1.2 remote-as 2

R2

Router bgp 2

neighbor 172.16.1.1 remote-as 1

lets see the routers BGP process and some debug messages

—————————————————————————————–

when we configure peer with wrong AS-number you can see the below output happen
R1
router bgp 1
neighbor 172.16.1.2 remote-as 2
R2
router bgp 2
neighbor 172.16.1.1 remote-as 11-> this should be 1
More to come with E-bgp peering with EBGP-MULTIHOP And other ways of doing things :)
Regards
Rakesh

Plan for this week

No comments

I have been working on core technologies and was busy . Its show time now and started with preparation again . Today and Tomorrow may be a well deserved BGP session and some of the ospf core Lab scenarios . Found one of the very interesting scenarios with ospf and would update you soon on that .

will update with bpg and some of the ospf points in the mean time . Happy Weekend guys / gals :)

Best Regards

Rakesh

Hello everyone !

its been a while i wrote to my blog ! Many things happened in the mean while .. first of all i got a job and was busy in adapting to the new role and secondly i went through a very frustrating phase in my personal life and everything was near hell !

Moving on .. well i am done with mcse 2k3 and also planning for mcitp enterprise admin and also speaking of which have other juniper exams remaining which i need to clear up . Dint had any study and i dont know if i can pass them or not

completed some of the link layer technologies and also moving on to labs ..

a detailed excel sheet will be uploaded . You can get it and also make some of your own . excel sheet plan creation is helping me to keep some of the things track down .

Iam an Mcp

2 comments

Hello all in my certification rush got through some gift vouchers from my friends and went on to attempt my first ever 70-290 just to try my luck .. went through the study guide and poof went through exam .

cisco and simlets saved me again .. there were one simlet which was obvious and some subnetting and ip addressing questions which should be done by any serious icnd to ccie aspirant …
some obivious questions .. i thought i would flunk in the exam but passed exactly on the border .. my score was 700 which was way over killed as i thought i would fail .
This is all from me .. been doing some ipv6 labs and preparing for ccie beta
Best regards
Rakesh

Hello all two good news to start wtih

1. passed jncia-er yesterday . dint even bothered labbing it up as i was gong for my ccie studies … just went through student guide and some hands on with one single vmware image and exam is way to crappy and easy man .. really there was nothing in that .. without breaking any nda stuff it was more or less like common sense and little routing from cisco would do that exam
moving on to second one
2. One of my good friends Mr.Rakesh Mandava from Hyderabad helped me with three of the microsoft vouchers to take server exams . great to have friends like him around .. keep up the good work rock and thank you very much for your help …
so .. still one more week to go for beta written .. not yet with mpls l3 vpn and stuff .. dreaming about narbiks bootcamp hehe ..
over and out
and thanks for people who have been mailing me and wishing me for my video on syslog server …. my pleasure to do them
best regards
Rakesh

Hello guys , i have made a video on deploying and implementing syslog server in gns3 environment . A syslog server logs all messages from routers in gns3 and records them .

Here is a brief video on that
http://www.4shared.com/file/125593647/626eecb0/syslogserver.html

http://www.4shared.com/file/125593673/4e2e7b6a/syslogserver_controller.html


More of videos stuff in breaking labs and doing some specific scenarios ..

bye
Rakesh
From today iam a jncia-ex .. how good does it sound and also still being a student having certification for free is quite a lot of achievement for me :) .. For those who are unaware juniper is offering their associate and one specialist routing exams for free once you meet their requirements .. links can be found on right side of the blog .. so moving along

Dont know why my mind has been in an unpredictable state .. nothing settling down .. wanted to for jncia-ex as per my last posting .. dint get chance as i was attracted by cisco v4 written beta . done with mpls and ipv6 which were troubling me in two days .. now after that a thought came into my mind to prepare for jncia-ex switching which was obviously easy when compared with other tracks atleast .. quickly went through the study guide ..

juniper offers good materials . their study guides are awesome covering important points in bold boxes and lots of place for jotting down the notes .. done with the associate switching which seemed obviously easy once you are at command prompt … just gave two good reading and questions were direct and out from text book .. no twist or whirl of questions which is not the case with cisco ;)
so on the whole i think iam bouncing on my time again .. few months has some serious set backs and looks like iam getting ready for v4 who know one day i may be writing for my ccie # in my first attempt !!!!!
Thank you
Rakesh

Hello myself and another friend of mine are going for our rs studies and were on gtalk last night discussing some multicasting and general prep stuff . I suddenly got an idea on remote desktop and heard about team viewer few months ago. Quickly went to their website and downloaded the stuff .

its damn simple to use . when you install it you will be given a user id which is automatically generated and a password for your desktop. we quickly shared our session and still on were gtalk . now the thing is i could control everything on his remote desktop and surprisingly enough i started to configure gns3 and few lab topologies of ipv6 from foundation gap.
so were talking to my friend and configuring ipv6 on his laptop everything was crystal clear. This let my spirits up .. even though most of us know that there are some good remote desktop and voip technologies out there most of time we see them and we wont use them .
i suggest you try it . and if possible join us so that we can have independent sessions few times a week each of us planning for specific technologies ..
Best regards
Rakesh

Narbiks cod demo !!!!

No comments

Hello everyone as you know if i come across any exciting stuff i share with most of you . I happened to get narbik ‘demo’ of his cod which was roughly around 10min on ospf filtering techniques and the entire cod was awesome … In ten minutes he covered most of the info with minute details . The demo vod should be up with in a day or two . can’t wait to get hands on that one as iam going for rs v4 which includes troubleshooting.

for more info you can always visit his site @

http://www.net-workbooks.com/index.html

will update you if i happen to find any interesting stuff again ..

guday and take care

Rakesh