R3166-R3206-HP High-End Firewalls Network Management Configuration Guide-6PW101

354
[Firewall-bgp] peer 3.3.3.3 as-number 65009
[Firewall-bgp] peer 3.3.3.3 connect-interface loopback 0
[Firewall-bgp] quit
[Firewall] ospf 1
[Firewall-ospf-1] area 0
[Firewall-ospf-1-area-0.0.0.0] network 2.2.2.2 32
[Firewall-ospf-1-area-0.0.0.0] network 9.1.1.1 24
[Firewall-ospf-1-area-0.0.0.0] quit
[Firewall-ospf-1] quit
# Configure Router B.
<RouterB> system-view
[RouterB] bgp 65009
[RouterB-bgp] router-id 3.3.3.3
[RouterB-bgp] peer 2.2.2.2 as-number 65009
[RouterB-bgp] peer 2.2.2.2 connect-interface loopback 0
[RouterB-bgp] quit
[RouterB] ospf 1
[RouterB-ospf-1] area 0
[RouterB-ospf-1-area-0.0.0.0] network 3.3.3.3 32
[RouterB-ospf-1-area-0.0.0.0] network 9.1.1.0 24
[RouterB-ospf-1-area-0.0.0.0] quit
[RouterB-ospf-1] quit
[RouterB] display bgp peer
BGP local router ID : 3.3.3.3
Local AS number : 65009
Total number of peers : 1 Peers in established state : 1
Peer AS MsgRcvd MsgSent OutQ PrefRcv Up/Down State
2.2.2.2 65009 7 10 0 0 00:06:09 Established
The output information shows that Router B has established an iBGP peer relationship with Firewall.
3. Configure eBGP.
The eBGP peers, Router A and Firewall (usually belong to different carries), are located in different
ASs. Typically, their loopback interfaces are not reachable to each other, so directly connected
interfaces are used for establishing BGP sessions.
To enable Router B to access the network 8.1.1.0/24 connected directly to Router A, inject network
8.1.1.0/24 to the BGP routing table of Router A.
# Configure Router A.
<RouterA> system-view
[RouterA] bgp 65008
[RouterA-bgp] router-id 1.1.1.1
[RouterA-bgp] peer 3.1.1.1 as-number 65009
[RouterA-bgp] network 8.1.1.1 24
[RouterA-bgp] quit
# Configure Firewall.