Hi,

On Wed, Jun 27, 2012 at 05:54:34AM -0400, Charles Sprickman wrote:
> I enabled this on one and about a minute later the bgp session dropped.  

This needs to be enabled on both sides.  Default is "send bgp packets
with a TTL of 1" and with ttl-security enabled, your side will *drop*
everything that has a TTL below 254 (and send its own packets with 255).

gert
-- 
USENET is *not* the non-clickable part of WWW!
                                                           //www.muc.de/~gert/
Gert Doering - Munich, Germany                             [email protected]
fax: +49-89-35655025                        [email protected]

Attachment: pgpyBkm5VRiSR.pgp
Description: PGP signature

_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to