Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Configure BGP - announce ASN and our public ips

    Scheduled Pinned Locked Moved Routing and Multi WAN
    9 Posts 3 Posters 1.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • J
      jubimathew
      last edited by

      We are looking to configure open bgpd and announce our ASN and /24 ips.
      We already have AS and a /24 ip pool from APNIC.
      ISP has already configured our AS.
      Internet working great on both wan and opt1 ports.
      I have also configured our /24 public ips on LAN interface.
      Installed open BGPD package.
      Added information on settings page, groups and neighbours.
      BGPD status comes as working
      open bgpd Status shows tables.
      Now the question is how do we have our public ips announced?
      I have configured a device with the lan ip, but when doing show my ip address on google, it reflects the wan IP. How do we reflect ip on all outgoing traffic and can use our public ips on our devices, such that they can be accessed directly outside the firewall.
      Please let me know if you require more information on the setup that i have done.
      thank you

      K 1 Reply Last reply Reply Quote 0
      • K
        Kartoff @jubimathew
        last edited by

        @jubimathew said in Configure BGP - announce ASN and our public ips:

        I have configured a device with the lan ip, but when doing show my ip address on google, it reflects the wan IP. How do we reflect ip on all outgoing traffic and can use our public ips on our devices, such that they can be accessed directly outside the firewall.
        Please let me know if you require more information on the setup that i have done.
        thank you

        As i understand you have firewall turned on ? Or you just mentioned it... Are you sure NAT is disabled ? Did you disable firewall in System>Advanced>Firewall&NAT ?

        J 1 Reply Last reply Reply Quote 0
        • DerelictD
          Derelict LAYER 8 Netgate
          last edited by

          I would not use openbgpd for any new deployments. I would use FRR.

          Chattanooga, Tennessee, USA
          A comprehensive network diagram is worth 10,000 words and 15 conference calls.
          DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
          Do Not Chat For Help! NO_WAN_EGRESS(TM)

          J 1 Reply Last reply Reply Quote 0
          • J
            jubimathew @Kartoff
            last edited by

            @kartoff

            @kartoff said in Configure BGP - announce ASN and our public ips:

            @jubimathew said in Configure BGP - announce ASN and our public ips:

            I have configured a device with the lan ip, but when doing show my ip address on google, it reflects the wan IP. How do we reflect ip on all outgoing traffic and can use our public ips on our devices, such that they can be accessed directly outside the firewall.
            Please let me know if you require more information on the setup that i have done.
            thank you

            As i understand you have firewall turned on ? Or you just mentioned it... Are you sure NAT is disabled ? Did you disable firewall in System>Advanced>Firewall&NAT ?

            Hi kartoff, thank you for your response. Disabling firewall in system>>advanced>>Firewall&NAT would cut off internet. Please let me know, if you require more information on the current setup.

            K 1 Reply Last reply Reply Quote 0
            • J
              jubimathew @Derelict
              last edited by

              @derelict said in Configure BGP - announce ASN and our public ips:

              I would not use openbgpd for any new deployments. I would use FRR.

              Hi, Derelict, can you please point to a step by step guide to configure bgp with FRR.
              thank you

              1 Reply Last reply Reply Quote 0
              • DerelictD
                Derelict LAYER 8 Netgate
                last edited by

                Step by step for your specific needs? Doubt that exists.

                https://www.youtube.com/watch?v=4IlKcB17rWk

                Chattanooga, Tennessee, USA
                A comprehensive network diagram is worth 10,000 words and 15 conference calls.
                DO NOT set a source address/port in a port forward or firewall rule unless you KNOW you need it!
                Do Not Chat For Help! NO_WAN_EGRESS(TM)

                1 Reply Last reply Reply Quote 0
                • K
                  Kartoff @jubimathew
                  last edited by

                  @jubimathew said in Configure BGP - announce ASN and our public ips:

                  @kartoff

                  @kartoff said in Configure BGP - announce ASN and our public ips:

                  @jubimathew said in Configure BGP - announce ASN and our public ips:

                  I have configured a device with the lan ip, but when doing show my ip address on google, it reflects the wan IP. How do we reflect ip on all outgoing traffic and can use our public ips on our devices, such that they can be accessed directly outside the firewall.
                  Please let me know if you require more information on the setup that i have done.
                  thank you

                  As i understand you have firewall turned on ? Or you just mentioned it... Are you sure NAT is disabled ? Did you disable firewall in System>Advanced>Firewall&NAT ?

                  Hi kartoff, thank you for your response. Disabling firewall in system>>advanced>>Firewall&NAT would cut off internet. Please let me know, if you require more information on the current setup.

                  Would cut off internet if you don't have public IP's... When you have public /24, leaving firewall on cuts their publicity... Choice is yours :)

                  J 1 Reply Last reply Reply Quote 0
                  • J
                    jubimathew @Kartoff
                    last edited by

                    @kartoff said in Configure BGP - announce ASN and our public ips:

                    @jubimathew said in Configure BGP - announce ASN and our public ips:

                    @kartoff

                    @kartoff said in Configure BGP - announce ASN and our public ips:

                    @jubimathew said in Configure BGP - announce ASN and our public ips:

                    I have configured a device with the lan ip, but when doing show my ip address on google, it reflects the wan IP. How do we reflect ip on all outgoing traffic and can use our public ips on our devices, such that they can be accessed directly outside the firewall.
                    Please let me know if you require more information on the setup that i have done.
                    thank you

                    As i understand you have firewall turned on ? Or you just mentioned it... Are you sure NAT is disabled ? Did you disable firewall in System>Advanced>Firewall&NAT ?

                    Hi kartoff, thank you for your response. Disabling firewall in system>>advanced>>Firewall&NAT would cut off internet. Please let me know, if you require more information on the current setup.

                    Would cut off internet if you don't have public IP's... When you have public /24, leaving firewall on cuts their publicity... Choice is yours :)

                    Ok, what all parameters shall i check in openbgp_status which could confirm if the BGP settings is set correctly.

                    thanks

                    1 Reply Last reply Reply Quote 0
                    • J
                      jubimathew
                      last edited by jubimathew

                      This post is deleted!
                      1 Reply Last reply Reply Quote 0
                      • First post
                        Last post
                      Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.