<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: BGP routing information The status of the route is Hidden and Rank:N/A in Firewall and Security Management</title>
    <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164194#M29403</link>
    <description>&lt;P&gt;Local AS and the as-path prepend are the same value, if I recall correctly this would break BGP rules.&lt;/P&gt;
&lt;P&gt;If this is absolutely necessary you may need to look at the allow-as-in-count feature to "bend" loop prevention.&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 05 Dec 2022 15:26:47 GMT</pubDate>
    <dc:creator>Chris_Atkinson</dc:creator>
    <dc:date>2022-12-05T15:26:47Z</dc:date>
    <item>
      <title>BGP routing information The status of the route is Hidden and Rank:N/A</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164165#M29402</link>
      <description>&lt;P&gt;&lt;SPAN&gt;Hello fellow Check Mates,&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The customer configures the following configurations on the peer BGP:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;bgp 65015&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;graceful-restart&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;peer 172.16.40.78 as-number 65115&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;peer 172.16.40.78 bfd min-tx-interval 300 min-rx-interval 300&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;peer 172.16.40.78 bfd enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;peer 172.16.70.78 as-number 65500&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;peer 172.16.70.78 bfd min-tx-interval 300 min-rx-interval 300&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;peer 172.16.70.78 bfd enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;peer 198.19.210.85 as-number 18084&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;peer 198.19.210.85 bfd min-tx-interval 300 min-rx-interval 300&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;peer 198.19.210.85 bfd enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;#&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;ipv4-family unicast&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; undo synchronization&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; import-route direct&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; import-route static&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; peer 172.16.40.78 enable&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp;peer 172.16.40.78 route-policy MAP-CX-IN import&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; peer 172.16.70.78 enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; peer 172.16.70.78 route-policy AS-PATH import&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; peer 172.16.70.78 route-policy AS-PATH export&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp; peer 198.19.210.85 enable&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;#&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;route-policy AS-PATH permit node 10&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;if-match ip-prefix AS-PATH&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;apply as-path 65500 65500 65500 65500 65500 65500 65500 65500 65500 65500 additive&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;#&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;ip ip-prefix AS-PATH index 10 permit 192.168.99.0 24&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#FF0000"&gt;ip ip-prefix AS-PATH index 20 permit 10.7.0.0 19&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;After A Route-policy is added, the status of the route received by the checkpoint firewall is displayed as Hidden and Rank:N/A&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;The BGP configurations of the checkpoint firewall are as follows:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;set bgp external remote-as 65015 on&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;set bgp external remote-as 65015 peer 172.16.70.65 on&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;set bgp external remote-as 65015 peer 172.16.70.65 ping on&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;set bgp external remote-as 65025 on&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;set bgp external remote-as 65025 peer 172.16.80.65 on&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;set bgp external remote-as 65025 peer 172.16.80.65 ping on&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="0015.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18642iAB0C42FA30488C87/image-size/large?v=v2&amp;amp;px=999" role="button" title="0015.png" alt="0015.png" /&gt;&lt;/span&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;Please help to analyze the cause of this, thank you!&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Dec 2022 13:51:43 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164165#M29402</guid>
      <dc:creator>zhangchuang</dc:creator>
      <dc:date>2022-12-05T13:51:43Z</dc:date>
    </item>
    <item>
      <title>Re: BGP routing information The status of the route is Hidden and Rank:N/A</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164194#M29403</link>
      <description>&lt;P&gt;Local AS and the as-path prepend are the same value, if I recall correctly this would break BGP rules.&lt;/P&gt;
&lt;P&gt;If this is absolutely necessary you may need to look at the allow-as-in-count feature to "bend" loop prevention.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 05 Dec 2022 15:26:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164194#M29403</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-12-05T15:26:47Z</dc:date>
    </item>
    <item>
      <title>Re: BGP routing information The status of the route is Hidden and Rank:N/A</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164270#M29404</link>
      <description>&lt;P&gt;Or as-override to accept that as a route else&amp;nbsp;&lt;a href="https://community.checkpoint.com/t5/user/viewprofilepage/user-id/3630"&gt;@Chris_Atkinson&lt;/a&gt;&amp;nbsp;said it will not install the route in route table. Though you can see in received route&lt;/P&gt;</description>
      <pubDate>Tue, 06 Dec 2022 02:39:20 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164270#M29404</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2022-12-06T02:39:20Z</dc:date>
    </item>
    <item>
      <title>Re: BGP routing information The status of the route is Hidden and Rank:N/A</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164271#M29405</link>
      <description>&lt;P&gt;If I change the value of the AS path prefix, can I solve this problem?&lt;/P&gt;</description>
      <pubDate>Tue, 06 Dec 2022 02:48:47 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164271#M29405</guid>
      <dc:creator>zhangchuang</dc:creator>
      <dc:date>2022-12-06T02:48:47Z</dc:date>
    </item>
    <item>
      <title>Re: BGP routing information The status of the route is Hidden and Rank:N/A</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164272#M29406</link>
      <description>&lt;P&gt;Nope it won't I believe - This is what you are receiving the routes correct? I guess you will have to use as-override&amp;nbsp;&lt;/P&gt;&lt;P&gt;e.g. - In my scenario&lt;/P&gt;&lt;P&gt;set bgp external remote-as 65001 peer 192.168.203.153 allowas-in-count 5&lt;/P&gt;&lt;P&gt;Where my BGP AS and remote BGP AS was same and we had a carrier in between which was not overriding the AS hence I had to do it on firewall&lt;/P&gt;</description>
      <pubDate>Tue, 06 Dec 2022 03:26:28 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164272#M29406</guid>
      <dc:creator>Blason_R</dc:creator>
      <dc:date>2022-12-06T03:26:28Z</dc:date>
    </item>
    <item>
      <title>Re: BGP routing information The status of the route is Hidden and Rank:N/A</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164274#M29407</link>
      <description>&lt;P&gt;Probably the as-path needs to be changed yes (to the remote-as) or better use a different method altogether such as local preference/med etc.&lt;/P&gt;
&lt;P&gt;Usually you would only prepend your own AS number on outbound route advertisements.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Dec 2022 03:59:41 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164274#M29407</guid>
      <dc:creator>Chris_Atkinson</dc:creator>
      <dc:date>2022-12-06T03:59:41Z</dc:date>
    </item>
    <item>
      <title>Re: BGP routing information The status of the route is Hidden and Rank:N/A</title>
      <link>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164276#M29408</link>
      <description>&lt;P&gt;I now ask the BGP on the opposite side to change the AS path prefix. At present, normal routes can be obtained. Thank you for your support.&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="00001.png" style="width: 999px;"&gt;&lt;img src="https://community.checkpoint.com/t5/image/serverpage/image-id/18655i40524ADCD3ACDF8C/image-size/large?v=v2&amp;amp;px=999" role="button" title="00001.png" alt="00001.png" /&gt;&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Tue, 06 Dec 2022 04:02:13 GMT</pubDate>
      <guid>https://community.checkpoint.com/t5/Firewall-and-Security-Management/BGP-routing-information-The-status-of-the-route-is-Hidden-and/m-p/164276#M29408</guid>
      <dc:creator>zhangchuang</dc:creator>
      <dc:date>2022-12-06T04:02:13Z</dc:date>
    </item>
  </channel>
</rss>

