{"id":4403,"date":"2018-08-30T22:57:23","date_gmt":"2018-08-30T13:57:23","guid":{"rendered":"https:\/\/www.syuheiuda.com\/?p=4403"},"modified":"2018-08-30T22:59:33","modified_gmt":"2018-08-30T13:59:33","slug":"azure-%e3%81%a8-vpn-%e6%8e%a5%e7%b6%9a%e3%81%97%e3%81%a6-bgp-%e3%81%a7%e7%b5%8c%e8%b7%af%e4%ba%a4%e6%8f%9b%e3%81%99%e3%82%8b%e9%9a%9b%e3%81%ae%e3%82%bf%e3%82%a4%e3%83%9e%e3%83%bc%e3%81%ae%e8%a9%b1","status":"publish","type":"post","link":"https:\/\/www.syuheiuda.com\/?p=4403","title":{"rendered":"Azure \u3068 VPN \u63a5\u7d9a\u3057\u3066 BGP \u3067\u7d4c\u8def\u4ea4\u63db\u3059\u308b\u969b\u306e\u30bf\u30a4\u30de\u30fc\u306e\u8a71"},"content":{"rendered":"<p>Azure \u3068 VPN \u3067\u3064\u306a\u3044\u3067\u3001BGP \u3067\u52d5\u7684\u306b\u7d4c\u8def\u4ea4\u63db\u3059\u308b\u3068\u304d\u306e KeepaliveTimer \/ HoldTimer \u306e\u8a71\u3067\u3059\u3002<\/p>\n<p>\u7d50\u8ad6\u304b\u3089\u8a00\u3046\u3068\u3001Azure \u306e VPN Gateway \u5074\u306f 60 \/ 180 sec \u306b\u306a\u3063\u3066\u3044\u3066\u3001\u30aa\u30f3\u30d7\u30ec\u5074\u306e\u6a5f\u5668\u3067\u77ed\u304f\u8a2d\u5b9a\u3059\u308c\u3070\u8abf\u6574\u53ef\u80fd\u3068\u3044\u3046\u8a71\u3002<\/p>\n<p>&nbsp;<\/p>\n<p>\u3069\u3053\u306e\u3054\u5bb6\u5ead\u306b\u3082\u3042\u308b FortiGate \u3067\u78ba\u8a8d\u3057\u3066\u307f\u307e\u3059\u3002<\/p>\n<p>\u307e\u305a\u306f\u30bf\u30a4\u30de\u30fc\u306e\u5024\u304c\u672a\u8a2d\u5b9a\u306e\u5834\u5408\u304b\u3089\u3002<\/p>\n<pre>config router bgp\r\n    set as 65521\r\n    set network-import-check disable\r\n    config neighbor\r\n        edit \"10.0.255.4\"\r\n            set ebgp-enforce-multihop enable\r\n            set next-hop-self enable\r\n            set soft-reconfiguration enable\r\n            set remote-as 65516\r\n            set update-source \"BGPloopback\"\r\n        next\r\n    end\r\n    config network\r\n        edit 1\r\n            set prefix 172.16.0.0 255.255.0.0\r\n        next\r\n    end\r\nend<\/pre>\n<p>&nbsp;<\/p>\n<p>Neighbor \u306e\u72b6\u614b\u3092\u898b\u3066\u307f\u308b\u3068\u3001KeepaliveTimer \u304c 60 \u79d2\u3001HoldTimer \u304c 180 \u79d2\u306b\u306a\u3063\u3066\u3044\u308b\u3053\u3068\u304c\u308f\u304b\u308a\u307e\u3059\u3002<\/p>\n<pre><strong>FG100E # get router info bgp neighbors<\/strong>\r\nBGP neighbor is 10.0.255.4, remote AS 65516, local AS 65521, external link\r\n  BGP version 4, remote router ID 10.0.255.4\r\n  BGP state = Established, up for 00:00:10\r\n<strong><span style=\"color: #008000;\">  Last read 00:00:08, hold time is 180, keepalive interval is 60 seconds \/\/\u5b9f\u969b\u306b\u63a1\u7528\u3055\u308c\u305f\u5024<\/span>\r\n<span style=\"color: #008000;\">  Configured hold time is 180, keepalive interval is 60 seconds \/\/\u8a2d\u5b9a\u5024 (\u672a\u8a2d\u5b9a\u306a\u306e\u3067 FortiGate \u306e\u898f\u5b9a\u5024)<\/span><\/strong>\r\n  Neighbor capabilities:\r\n    Route refresh: advertised and received (new)\r\n    Address family IPv4 Unicast: advertised and received\r\n    Address family IPv6 Unicast: advertised and received\r\n  Received 41770 messages, 0 notifications, 0 in queue\r\n  Sent 41829 messages, 16 notifications, 0 in queue\r\n  Route refresh request: received 0, sent 0\r\n  Minimum time between advertisement runs is 30 seconds\r\n  Update source is BGPloopback<\/pre>\n<p>&nbsp;<\/p>\n<p>\u3053\u308c\u306b\u5bfe\u3057\u3066\u3001FortiGate \u5074\u306e\u30b3\u30f3\u30d5\u30a3\u30b0\u3067\u660e\u793a\u7684\u306b 10 \/ 30 sec \u306a\u3069\u306e\u77ed\u3044\u5024\u3092\u8a2d\u5b9a\u3057\u3066\u307f\u307e\u3059\u3002<\/p>\n<pre>config router bgp\r\n    set as 65521\r\n    set network-import-check disable\r\n    config neighbor\r\n        edit \"10.0.255.4\"\r\n            set ebgp-enforce-multihop enable\r\n            set next-hop-self enable\r\n            set soft-reconfiguration enable\r\n            set remote-as 65516\r\n<strong><span style=\"color: #008000;\">            set keep-alive-timer 10<\/span>\r\n<span style=\"color: #008000;\">            set holdtime-timer 30<\/span><\/strong>\r\n            set update-source \"BGPloopback\"\r\n        next\r\n    end\r\n    config network\r\n        edit 1\r\n            set prefix 172.16.0.0 255.255.0.0\r\n        next\r\n    end\r\nend<\/pre>\n<p>&nbsp;<\/p>\n<p>\u3067\u3001Neighbor\u3092\u4e00\u5ea6\u30af\u30ea\u30a2\u3057\u3066\u5f35\u308a\u306a\u304a\u3055\u305b\u308b\u3068\u3001\u3061\u3083\u3093\u3068 10 \/ 30 sec \u306b\u306a\u3063\u3066\u307e\u3059\u306d\u3002<\/p>\n<pre><strong>FG100E # execute router clear bgp all<\/strong>\r\n\r\n<strong>FG100E # get router info bgp neighbors<\/strong>\r\nBGP neighbor is 10.0.255.4, remote AS 65516, local AS 65521, external link\r\n  BGP version 4, remote router ID 10.0.255.4\r\n  BGP state = Established, up for 00:00:16\r\n<strong><span style=\"color: #008000;\">  Last read 00:00:07, hold time is 30, keepalive interval is 10 seconds \/\/\u5b9f\u969b\u306b\u63a1\u7528\u3055\u308c\u305f\u5024<\/span><\/strong>\r\n<strong><span style=\"color: #008000;\">  Configured hold time is 30, keepalive interval is 10 seconds \/\/\u8a2d\u5b9a\u5024 <\/span><\/strong>\r\n  Neighbor capabilities:\r\n    Route refresh: advertised and received (new)\r\n    Address family IPv4 Unicast: advertised and received\r\n    Address family IPv6 Unicast: advertised and received\r\n  Received 41786 messages, 0 notifications, 0 in queue\r\n  Sent 41845 messages, 17 notifications, 0 in queue\r\n  Route refresh request: received 0, sent 0\r\n  Minimum time between advertisement runs is 30 seconds\r\n  Update source is BGPloopback\r\n\r\n<\/pre>\n<p>&nbsp;<\/p>\n<p>\u9006\u306b\u3001\u9577\u3081\u306e\u6642\u9593\u3092\u5165\u308c\u3066\u307f\u307e\u3059\u3002<\/p>\n<pre>config router bgp\r\n    set as 65521\r\n    set network-import-check disable\r\n    config neighbor\r\n        edit \"10.0.255.4\"\r\n            set ebgp-enforce-multihop enable\r\n            set next-hop-self enable\r\n            set soft-reconfiguration enable\r\n            set remote-as 65516\r\n<span style=\"color: #008000;\"><strong>            set keep-alive-timer 120<\/strong><\/span>\r\n<span style=\"color: #008000;\"><strong>            set holdtime-timer 360<\/strong><\/span>\r\n            set update-source \"BGPloopback\"\r\n        next\r\n    end\r\n    config network\r\n        edit 1\r\n            set prefix 172.16.0.0 255.255.0.0\r\n        next\r\n    end\r\nend<\/pre>\n<p>&nbsp;<\/p>\n<p>\u3053\u306e\u5834\u5408\u306f 60 \/ 180 sec \u306b\u306a\u3063\u305f\u3053\u3068\u304c\u78ba\u8a8d\u3067\u304d\u307e\u3059\u3002<\/p>\n<pre><strong>FG100E # execute router clear bgp all\r\n\r\nFG100E # get router info bgp neighbors<\/strong>\r\nBGP neighbor is 10.0.255.4, remote AS 65516, local AS 65521, external link\r\n  BGP version 4, remote router ID 10.0.255.4\r\n  BGP state = Established, up for 00:00:00\r\n<span style=\"color: #008000;\"><strong>  Last read 00:00:00, hold time is 180, keepalive interval is 60 seconds \/\/\u5b9f\u969b\u306b\u63a1\u7528\u3055\u308c\u305f\u5024<\/strong><\/span>\r\n<span style=\"color: #008000;\"><strong>  Configured hold time is 360, keepalive interval is 120 seconds \/\/\u8a2d\u5b9a\u5024 <\/strong><\/span>\r\n  Neighbor capabilities:\r\n    Route refresh: advertised and received (new)\r\n    Address family IPv4 Unicast: advertised and received\r\n    Address family IPv6 Unicast: advertised and received\r\n  Received 41809 messages, 0 notifications, 0 in queue\r\n  Sent 41866 messages, 18 notifications, 0 in queue\r\n  Route refresh request: received 0, sent 0\r\n  Minimum time between advertisement runs is 30 seconds\r\n  Update source is BGPloopback<\/pre>\n<p>&nbsp;<\/p>\n<p>\u3068\u3044\u3046\u3053\u3068\u3067\u3001Azure VPN Gateway \u3068\u30aa\u30f3\u30d7\u30ec\u5074\u306e VPN \u30c7\u30d0\u30a4\u30b9\u306e\u77ed\u3044\u65b9\u306b\u306a\u308b\u307f\u305f\u3044\u3067\u3059\u306d\u3002<\/p>\n<p>(\u6a5f\u7a2e\u306b\u3088\u3063\u3066\u306f\u76f8\u6027\u3068\u3044\u3046\u304b\u3001Interoperability \u306e\u95c7\u306b\u98f2\u307e\u308c\u308b\u3053\u3068\u3082\u3042\u308b\u3068\u601d\u3046\u306e\u3067\u3001\u3061\u3083\u3093\u3068\u691c\u8a3c\u3057\u307e\u3057\u3087\u3046)<\/p>\n","protected":false},"excerpt":{"rendered":"<p>Azure \u3068 VPN \u3067\u3064\u306a\u3044\u3067\u3001BGP \u3067\u52d5\u7684\u306b\u7d4c\u8def\u4ea4\u63db\u3059\u308b\u3068\u304d\u306e Keep&hellip;<\/p>\n<p class=\"more-link-p\"><a class=\"more-link\" href=\"https:\/\/www.syuheiuda.com\/?p=4403\">Read more &rarr;<\/a><\/p>\n","protected":false},"author":1,"featured_media":0,"comment_status":"open","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_monsterinsights_skip_tracking":false,"_monsterinsights_sitenote_active":false,"_monsterinsights_sitenote_note":"","_monsterinsights_sitenote_category":0,"_locale":"","_original_post":""},"categories":[42,31],"tags":[],"views":8881,"_links":{"self":[{"href":"https:\/\/www.syuheiuda.com\/index.php?rest_route=\/wp\/v2\/posts\/4403"}],"collection":[{"href":"https:\/\/www.syuheiuda.com\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/www.syuheiuda.com\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/www.syuheiuda.com\/index.php?rest_route=\/wp\/v2\/users\/1"}],"replies":[{"embeddable":true,"href":"https:\/\/www.syuheiuda.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=4403"}],"version-history":[{"count":2,"href":"https:\/\/www.syuheiuda.com\/index.php?rest_route=\/wp\/v2\/posts\/4403\/revisions"}],"predecessor-version":[{"id":4405,"href":"https:\/\/www.syuheiuda.com\/index.php?rest_route=\/wp\/v2\/posts\/4403\/revisions\/4405"}],"wp:attachment":[{"href":"https:\/\/www.syuheiuda.com\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=4403"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/www.syuheiuda.com\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=4403"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/www.syuheiuda.com\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=4403"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}