BGP peering from Tier-0 uplink to a VM connected to a Tier-1 Segment is unsupported
search cancel

BGP peering from Tier-0 uplink to a VM connected to a Tier-1 Segment is unsupported

book

Article ID: 448030

calendar_today

Updated On:

Products

VMware NSX

Issue/Introduction

  • In VMware NSX, attempting to connect a BGP neighbor session from a Tier-0 (T0) uplink interface to a virtual machine (such as an Infoblox appliance) hosted behind a Tier-1 (T1) Gateway fails.
  • The status of BGP neighbor shows as down.
  • Packet captures on the target virtual machine demonstrate that it receives the initial BGP connection attempt on TCP port 179 from the NSX Edge and replies with a SYN-ACK, but subsequently receives a TCP RST (Reset) from NSX.

Environment

VMware NSX

Cause

Peering a virtual machine connected to a Tier-1 segment directly to a Tier-0 uplink interface via BGP is not supported in VMware NSX.

Resolution

For assistance with network architecture, design consultation, or implementing supported BGP topologies, please engage the Broadcom Professional Services (PSO) team by visiting Broadcom Enterprise Software Services.