The following problem involves a firewall (10.249.0.13) wanting to close a BGP connection with its neighboring switch (10.249.0.14).
The switch answers with a BGP NOTIFICATION message that contains 'No supported AFI/SAFI'. (separate issue) The firewall then sends a FIN to the switch to close the TCP connection. Follows a series of FIN retransmissions from the firewall and ACK retransmissions from the switch.
Is there a way to determine which side is not understanding here?
I have included an excerpt of the .pcap.
Thanks for reaching out. It looks like the switch sent a NOTIFICATION message because it detected an error with the BGP configuration between itself and the Palo. As a result, we see the termination of the adjacency.
The capture tells us there is a misconfiguration in either the switch or the palo. Can you share the configs? Also, it would be helpful to see the full debug to see what AFI and SAFI numbers are being exchanged. For example, the Palo default uses an address class of IPv4 and so if your switch bgp config is set with an address class of IPv6 then that could be an issue.
Click Accept as Solution to acknowledge that the answer to your question has been provided.
The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!
These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!
The LIVEcommunity thanks you for your participation!