Created on 07-17-2023 11:16 PM Edited on 12-02-2024 06:19 AM By Jean-Philippe_P
This article describes how to configure multiple local-as on FortiGate for eBGP peering and using the global local-as for iBGP peering.
FortiGate supports multiple local-as, but saving the BGP configuration fails when local-as is used when adding iBGP neighbors.
Error in CLI (using local-as value as remote-as in neighbor configuration level):
Error in GUI:
CLI.
Configure the iBGP as the global BGP and use the set local-as command for eBGP neighbors.
GUI
Under local BGP options, configure the local AS as the AS to be used for iBGP peering. Under Neighbors -> Create New, for iBGP peering, keep the local AS field blank. For eBGP peering, add the local AS required for peering.
In the above configuration, neighbor 192.168.1.1 is an iBGP neighbor while 192.168.1.2 and 192.168.1.3 are eBGP neighbors with a different local-as '6500'.
Related article:
Technical Note: BGP multiple local-AS configuration and advertisement
The Fortinet Security Fabric brings together the concepts of convergence and consolidation to provide comprehensive cybersecurity protection for all users, devices, and applications and across all network edges.
Copyright 2025 Fortinet, Inc. All Rights Reserved.