Support Forum
The Forums are a place to find answers on a range of Fortinet products from peers and product experts.
canoas
New Contributor III

Fortigate - BGP peer groups

Hi all,

 

Do Fortigate Firewalls support "BGP peer groups" by sharing the same outbound policies and setting instead of configuring each BGP neighbor individually and updates replicated to all peer group members.

 

I can't seem to find any docs or commands that support BGP peer group config on a Fortigate like a Cisco or Arista Switch.

 

 

1 Solution
funkylicious
SuperUser
SuperUser

hi,

maybe neighbor-group command is what you are looking here 

"jack of all trades, master of none"

View solution in original post

"jack of all trades, master of none"
4 REPLIES 4
funkylicious
SuperUser
SuperUser

hi,

maybe neighbor-group command is what you are looking here 

"jack of all trades, master of none"
"jack of all trades, master of none"
Toshi_Esumi
SuperUser
SuperUser

canoas
New Contributor III

There only seems to be a range option; i.e., you cannot stipulate the neighbor-group association under a peer config. With Cisco and Arista, however, you can do this. I would need to test to see if the range covers multiple /32 networks and how many entries can be added. In my setup, I don't want to add subnet ranges. This may be a FortiGate limitation. 

Toshi_Esumi

As mentioned in the thread, this part of BGP configuration feature is not in the standards. Each implementation by vendors can be different based on their own interpretation how this should work. As @Yurisk mentioned, you eventually need to test yourself to confirm the behaviors of FGT. No surprise if it's different from other vendors or your expectation.

Toshi    

Announcements
Check out our Community Chatter Blog! Click here to get involved
Labels
Top Kudoed Authors