Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    FRR/BGP Sessions restarting when disabling an interface - pfSense 2.7.2

    Scheduled Pinned Locked Moved FRR
    2 Posts 2 Posters 271 Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • D
      dudumiquim
      last edited by

      I'm experiencing an unexpected behavior in my setup:

      • 3 gateways
      • 6 BGP sessions over VTI
      • pfSense 2.7.2-RELEASE (amd64)

      When I disable an interface connected to my ISP, all BGP sessions restart. The same happens if my ISP goes down. My expectation is that only the sessions over the affected ISP should go down, while the others remain stable.

      Here’s an example from the logs when I disable the ETH1 interface:

      Feb 13 11:14:44	php-fpm	90326	/interfaces.php: Forcefully reloading IPsec
      Feb 13 11:14:43	snmpd	97722	disk_OS_get_disks: adding device 'ada0' to device list
      Feb 13 11:14:43	php-fpm	90326	/interfaces.php: Resyncing OpenVPN instances for interface ETH1.
      Feb 13 11:14:43	check_reload_status	429	Reloading filter
      Feb 13 11:14:43	check_reload_status	429	Restarting OpenVPN tunnels/interfaces
      Feb 13 11:14:43	check_reload_status	429	Restarting IPsec tunnels
      

      Has anyone encountered this issue? Is there a way to prevent all BGP sessions from restarting when only one ISP goes down?

      Thanks in advance!

      M 1 Reply Last reply Reply Quote 0
      • M
        michmoor LAYER 8 Rebel Alliance @dudumiquim
        last edited by michmoor

        @dudumiquim

        I first reported the issue. There is a redmine.

        https://redmine.pfsense.org/issues/14483

        .
        Has anyone encountered this issue? Is there a way to prevent all BGP sessions from restarting when only one ISP goes down?

        • Disable Gateway Monitoring Actions for your WAN. That somewhat solves one issue but there is instability with Ipsec and FRR

        Firewall: NetGate,Palo Alto-VM,Juniper SRX
        Routing: Juniper, Arista, Cisco
        Switching: Juniper, Arista, Cisco
        Wireless: Unifi, Aruba IAP
        JNCIP,CCNP Enterprise

        1 Reply Last reply Reply Quote 0
        • First post
          Last post
        Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.