- Products
- Learn
- Local User Groups
- Partners
- More
Check Point Jump-Start Online Training
Now Available on CheckMates for Beginners!
Why do Hackers Love IoT Devices so Much?
Join our TechTalk on Aug 17, at 5PM CET | 11AM EST
Welcome to Maestro Masters!
Talk to Masters, Engage with Masters, Be a Maestro Master!
ZTNA Buyer’s Guide
Zero Trust essentials for your most valuable assets
The SMB Cyber Master
Boost your knowledge on Quantum Spark SMB gateways!
As YOU DESERVE THE BEST SECURITY
Upgrade to our latest GA Jumbo
CheckFlix!
All Videos In One Space
Hi There,
I'm deploying an internal segmentation firewall between several VRFs and our Core routing network. I've been trying to setup bgp in various ways, fighting the fact that the Cisco VSS that runs the core routing and VRFs uses the same ASN for both.
ebgp (with as override set) works well for the 95%, i have one problem that i want to present a default route to only one peer in the ASN (the VRF side)
route redistribution to the ASN goes to both ....I was trying to setup a routemap instead as it looked like there was a "neighbor" match option but this routemap sends 0.0.0.0 to both peers. Any ideas on if this is possible to filter?
set routemap ex-bgp-vrffw id 10 on
set routemap ex-bgp-vrffw id 10 match neighbor 192.168.0.2 on
set routemap ex-bgp-vrffw id 10 match network 0.0.0.0/0 exact
set routemap ex-bgp-vrffw id 10 match protocol static
set bgp external remote-as 65100 export-routemap ex-bgp-vrffw preference 10 on
About CheckMates
Learn Check Point
Advanced Learning
YOU DESERVE THE BEST SECURITY