<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic My BGP routes are showing as Hidden and Inactive in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157357#M27306</link>
    <description>&lt;P&gt;Hi Team,&lt;/P&gt;&lt;P&gt;I am facing this one more issue with BGP and route from other path is being received as Hidden and Inactive. I have scenario as depict in diagram. I am currently receiving route from Provider 1 which is fine. However route received from Provider 2 is showing as Hidden and Inactive on my firewall routing table.&lt;/P&gt;&lt;P&gt;I am at FW1 with version R80.30&amp;nbsp;with AS 64520 with network 172.31.24.0/24 while other peer is 64520 as well with network 10.100.0.0/16. However we are connected with two providers and route learned from provider-2 is getting as Hidden and Inactive from FW1 perspective.&lt;/P&gt;&lt;P&gt;Can someone please help?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;set bgp external remote-as 9730 on
set bgp external remote-as 9730 peer xx.xx.xx.xx on
set bgp external remote-as 9730 peer xx.xx.xx.xx holdtime 15
set bgp external remote-as 9730 peer xx.xx.xx.xx keepalive 5
set bgp external remote-as 65001 on
set bgp external remote-as 65001 peer yy.yy.yy.yy on
set bgp external remote-as 65001 peer yy.yy.yy.yy as-override on&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Here is my route table at FW1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;#show route bgp

B               10.100.0.0/16       via xx.xx.xx.xx, eth1, cost None, age 913492&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;And here is the issue&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;B               10.100.0.0/16       via xx.xx.xx.xx, eth1, cost None, age 913540
B          H i  10.100.0.0/16       is an unusable route&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Thu, 15 Sep 2022 18:33:14 GMT</pubDate>
    <dc:creator>Blason_R</dc:creator>
    <dc:date>2022-09-15T18:33:14Z</dc:date>
    <item>
      <title>My BGP routes are showing as Hidden and Inactive</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157357#M27306</link>
      <description>&lt;P&gt;Hi Team,&lt;/P&gt;&lt;P&gt;I am facing this one more issue with BGP and route from other path is being received as Hidden and Inactive. I have scenario as depict in diagram. I am currently receiving route from Provider 1 which is fine. However route received from Provider 2 is showing as Hidden and Inactive on my firewall routing table.&lt;/P&gt;&lt;P&gt;I am at FW1 with version R80.30&amp;nbsp;with AS 64520 with network 172.31.24.0/24 while other peer is 64520 as well with network 10.100.0.0/16. However we are connected with two providers and route learned from provider-2 is getting as Hidden and Inactive from FW1 perspective.&lt;/P&gt;&lt;P&gt;Can someone please help?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;set bgp external remote-as 9730 on
set bgp external remote-as 9730 peer xx.xx.xx.xx on
set bgp external remote-as 9730 peer xx.xx.xx.xx holdtime 15
set bgp external remote-as 9730 peer xx.xx.xx.xx keepalive 5
set bgp external remote-as 65001 on
set bgp external remote-as 65001 peer yy.yy.yy.yy on
set bgp external remote-as 65001 peer yy.yy.yy.yy as-override on&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Here is my route table at FW1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;#show route bgp

B               10.100.0.0/16       via xx.xx.xx.xx, eth1, cost None, age 913492&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;And here is the issue&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;B               10.100.0.0/16       via xx.xx.xx.xx, eth1, cost None, age 913540
B          H i  10.100.0.0/16       is an unusable route&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 15 Sep 2022 18:33:14 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157357#M27306</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2022-09-15T18:33:14Z</dc:date>
    </item>
    <item>
      <title>Re: My BGP routes are showing as Hidden and Inactive</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157380#M27307</link>
      <description>&lt;P&gt;Do you have route filters or route-maps configured accepting the routes and how do the as-paths compare?&lt;/P&gt;</description>
      <pubDate>Fri, 16 Sep 2022 01:45:40 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157380#M27307</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-09-16T01:45:40Z</dc:date>
    </item>
    <item>
      <title>Re: My BGP routes are showing as Hidden and Inactive</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157381#M27308</link>
      <description>&lt;P&gt;Yes - default route filters configure and no such mechanism for as-path comparison&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;set inbound-route-filter bgp-policy 512 based-on-as as 9730 on
set inbound-route-filter bgp-policy 512 accept-all-ipv4
set inbound-route-filter bgp-policy 516 based-on-as as 65001 on
set inbound-route-filter bgp-policy 516 accept-all-ipv4

set route-redistribution to bgp-as 9730 from static-route 172.16.0.0/12 on
set route-redistribution to bgp-as 9730 from static-route 192.168.0.0/16 on
set route-redistribution to bgp-as 65001 from static-route 172.16.0.0/12 on
set route-redistribution to bgp-as 65001 from static-route 192.168.0.0/16 on
&lt;/LI-CODE&gt;</description>
      <pubDate>Fri, 16 Sep 2022 02:55:18 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157381#M27308</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2022-09-16T02:55:18Z</dc:date>
    </item>
    <item>
      <title>Re: My BGP routes are showing as Hidden and Inactive</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157382#M27309</link>
      <description>&lt;P&gt;Do I need to use&lt;/P&gt;&lt;P&gt;allowas-in Accept a IPv4-route that contains the local-AS in the as-path&lt;/P&gt;</description>
      <pubDate>Fri, 16 Sep 2022 03:06:07 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157382#M27309</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2022-09-16T03:06:07Z</dc:date>
    </item>
    <item>
      <title>Re: My BGP routes are showing as Hidden and Inactive</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157384#M27310</link>
      <description>&lt;P&gt;What do you see with: "show route bgp aspath" ?&lt;/P&gt;
&lt;P&gt;Please also review the following:&lt;/P&gt;
&lt;P&gt;&lt;A class="cp_link sc_ellipsis" href="https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&amp;amp;solutionid=sk173204&amp;amp;partition=Advanced&amp;amp;product=Quantum" target="_blank"&gt;sk173204: Received BGP routes appear as&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;STRONG&gt;unusable&lt;/STRONG&gt;, hidden and inactive&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Sep 2022 03:15:36 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157384#M27310</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-09-16T03:15:36Z</dc:date>
    </item>
    <item>
      <title>Re: My BGP routes are showing as Hidden and Inactive</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157385#M27311</link>
      <description>&lt;P&gt;I guess this need allow-as. This resolved the issue&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;set bgp  external remote-as 65001 peer yy.yy.yy.yy allowas-in-count 2&lt;/LI-CODE&gt;</description>
      <pubDate>Fri, 16 Sep 2022 03:37:06 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/My-BGP-routes-are-showing-as-Hidden-and-Inactive/m-p/157385#M27311</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2022-09-16T03:37:06Z</dc:date>
    </item>
  </channel>
</rss>

