Kaspersky SD-WAN

Creating a BGP peer group

April 17, 2024

ID 244883

You can create a BGP peer group in a CPE template or on a device. When you create a BGP peer group in a CPE template, the group is automatically created on all devices that are using the template.

To create a BGP peer group:

  1. Create a BGP peer group in one of the following ways:
    • If you want to create a BGP peer group in a CPE template, go to the SD-WAN → CPE templates menu section, click the template and in the displayed settings area, select the BGP settings → Peer groups tab.
    • If you want to create a BGP peer group on a CPE device, go to the SD-WAN → CPE menu section, click the device, and in the displayed settings area, select the BGP settings → Peer groups tab and select the Override check box.

    A table of BGP peer groups is displayed.

  2. Click + Peer group.
  3. This opens a window; in that window, in the Name field, enter the name of the BGP peer group. Maximum length: 50 characters.
  4. If you want to disable a BGP peer group and prevent establishing a TCP session with it, select the Disable BGP peer group check box. This check box is cleared by default.
  5. In the BGP range field, enter the IPv4 prefix of the BGP peer group.
  6. In the Remote AS field, enter the autonomous system number of the BGP peer group. Range of values: 1 to 4,294,967,295.
  7. If necessary, enter a brief description of the BGP peer group in the Description field.
  8. If you want the CPE device to use a password when establishing a TCP session with the BGP peer group, in the Password field, enter the password. For a TCP session to be successfully established between two BGP peers, they must use the same password. To see the entered password, you can click the show icon .
  9. In the Loopback interface field, enter the IPv4 address of the loopback interface that the CPE device must send to the BGP peer group when establishing a TCP session.
  10. If the TCP session is not established directly between the CPE device and the BGP peer group, in the eBGP hops field, enter the number of hops between the CPE device and the BGP peer group. Range of values: 1 to 255.
  11. If you want to configure BGP timers:
    1. Select the Custom BGP timers check box. This check box is cleared by default.
    2. In the Keepalive field, enter the time interval in seconds that the CPE device uses to send control packets to the BGP peer group. Range of values: 0 to 65,535.
    3. In the Holdtime field, enter the time interval in seconds that the CPE device uses when receiving control packets from the BGP peer group. If no control packets are received from the BGP peer within the specified time, the CPE device considers the peer unavailable. Range of values: 0 to 65,535.
  12. If you want to use the BFD protocol to detect loss of connectivity, select the BFD check box. This check box is cleared by default.
  13. If you want to specify advanced settings for the BGP peer group:
    1. Select the Advanced settings tab.

      Advanced settings of the BGP peer group are displayed.

    2. If necessary, select the following check boxes:
      • Select the Soft-reconfiguration inbound check box to store routes advertised by the BGP peer group locally on the CPE device. Using this feature reduces the amount of memory available on the CPE device.
      • Select the Attribute unchanged AS path check box to prevent modifying the 'AS path' attribute of routes that the CPE device advertises to the BGP peer group.
      • Select the Allow AS in check box to let the BGP peer group advertise routes to the CPE device with the 'AS path' attribute, whose value is the autonomous system number of the device.
      • Select the Attribute unchanged next-hop check box to prevent modifying the 'next hop' attribute of routes that the CPE device advertises to the BGP peer group.
      • Select the Next-hop self check box to use the IPv4 address of the CPE device as the 'next-hop' attribute value when advertising routes to the BGP peer group.
      • Select the Attribute unchanged MED check box to prevent modifying the 'MED' attribute of routes that the CPE device advertises to the BGP peer group.
      • Select the Route reflector client check box to assign the Route Reflector role to the CPE device and the Route Reflector Client role to the BGP peer group. You can only select this check box for a BGP peer group that is in the same autonomous system as the CPE device.

      These check boxes are cleared by default.

    3. In the Local AS field, enter the number of the local autonomous system that the CPE device must send to the BGP peer group. Range of values: 1 to 4,294,967,295.
    4. In the Weight field, enter the weight of the routes advertised by the BGP peer group. The greater the weight of a route, the higher its priority. Range of values: 0 to 65,535.
    5. In the Maximum prefix field, enter the maximum number of routes that the BGP peer group can advertise to a CPE device. Range of values: 1 to 4,294,967,295.
    6. If you want a CPE device to advertise routes with the 'community' attribute to the BGP peer group, select the Send community check box and select the type of attribute to be sent in the drop-down list:
      • All covers all available types of the 'community' attribute.
      • Standard and extended community.
      • Extended community.
      • Large community.
      • Standard community.

      This check box is cleared by default.

    7. If you want the CPE device to advertise the default 0.0.0.0/0 route to the BGP peer group, select the Default originate check box. This check box is cleared by default. You can select the Set route map check box and in the drop-down list that is displayed, select a previously created route map for the 0.0.0.0/0 default route.
  14. If you want to configure route filtering for the BGP peer group:
    1. Select the Filtering tab.

      The route filtering settings are displayed.

    2. Under Route map, select previously created route maps:
      1. In the Inbound drop-down list, select a route map for the routes that the BGP peer group advertises to the CPE device.
      2. In the Outbound drop-down list, select a route map for the routes that the CPE device advertises to the BGP peer group.
    3. Under Prefix list, select previously created prefix lists:
      1. In the Inbound drop-down list, select a list of prefixes that the BGP peer group advertises to the CPE device.
      2. In the Outbound drop-down list, select a prefix list for the routes that the CPE device advertises to the BGP peer group.
    4. Under Access control list, select previously created access control lists:
      1. In the Inbound drop-down list, select an access control list for the routes that the BGP peer group advertises to the CPE device.
      2. In the Outbound drop-down list, select an access control list for the routes that the CPE device advertises to the BGP peer group.
  15. Click Create.

    The BGP peer group is created and displayed in the table.

  16. In the upper part of the settings area, click Save to save the settings of the CPE template or device.

Did you find this article helpful?
What can we do better?
Thank you for your feedback! You're helping us improve.
Thank you for your feedback! You're helping us improve.