- Access exclusive content
- Connect with peers
- Share your expertise
- Find support resources
12-19-2020 04:50 AM - edited 12-19-2020 04:52 AM
Hi,
Does Palo Alto support Cisco BGP neighbor x.x.x.x local-as yyyy feature? or there is any way to achieve the same (Palo Alto FW has a local ASN, but it uses another local ASN just for a specific neighbor)
Thanks!
12-19-2020 12:12 PM
Are you looking for some CLI command like below ?
t network virtual-router NetGear protocol bgp
+ allow-redist-default-route allow redistribute default route to BGP
+ ecmp-multi-as Support multiple AS in ECMP
+ enable enable
+ enforce-first-as Enforce First AS for EBGP
+ install-route Populate BGP learned route to global route table
+ local-as local AS number
+ reject-default-route do not learn default route from BGP
+ router-id router id of this BGP instance
> auth-profile BGP authentication profiles
> dampening-profile route flap dampening profiles
> peer-group peer group configuration
> policy BGP routing policy configuration
> redist-rules redistribution rules for export through BGP
> routing-options routing instance options
<Enter> Finish input
Regards
01-02-2021 01:18 PM
Hi MP18,
thanks for the message.
No, I was looking for a feature support, but I have done a workaround as it seems unsupported.
Thanks.
Banksants
10-07-2021 04:15 AM
Could you suggest what workaround you did on palo alto firewall to achieve local as thing.
02-25-2025 09:15 AM
anyone who was able to achieve this local-as config through panorama
02-25-2025 12:27 PM
Hi all,
This feature is available with the Advanced Routing Engine, but that is a big change to make.
Thanks,
Tom
03-12-2025 10:38 AM
By the way,
You should be able to have multiple local ASNs with virtual routers (VRs). You can then enable BGP between the VRs. https://knowledgebase.paloaltonetworks.com/KCSArticleDetail?id=kA10g000000ClIpCAK
I am going to do this with a customer and report back.
Thanks,
Tom
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!