FortiGate
FortiGate Next Generation Firewall utilizes purpose-built security processors and threat intelligence security services from FortiGuard labs to deliver top-rated protection and high performance, including encrypted traffic.
AmirZ
Staff
Staff
Article Id 264019
Description

 

This article describes how to configure multiple local-as on FortiGate with one as iBGP.

 

Scope

 

Though FortiGate support multiple local-as, but it fails in the case of the iBGP:

(using local-as value as remote-as in neighbour configuration level).

 

BGP_Error.JPG

 

Solution

 

Configure the iBGP as the global BGP and use the set local-as command for eBGP neighbours. 

 

bgp_configured.JPG

 

In the above configuration, neighbour 192.168.1.1 is an iBGP neighbour while 192.168.2.2 is an eBGP neighbour with a different local-as '6500'.

 

Related article:

Technical Note: BGP multiple local-AS configuration and advertisement

Contributors