SV-216786r531087_rule
V-216786
SRG-NET-000512-RTR-000001
CISC-RT-000580
CAT III
10
Configure the router to use its loopback address as the source address for all iBGP peering.
RP/0/0/CPU0:R2(config)#router bgp 2
RP/0/0/CPU0:R2(config-bgp)#neighbor 10.1.24.4
RP/0/0/CPU0:R2(config-bgp-nbr)#update-source lo0
RP/0/0/CPU0:R2(config-bgp-nbr)#end
Step 1: Review the router configuration to verify that a loopback address has been configured.
interface Loopback0
ip address 10.1.1.1 255.255.255.255
Step 2: Verify that the loopback interface is used as the source address for all iBGP sessions.
router bgp xx
address-family ipv4 unicast
!
neighbor 10.1.23.3
remote-as xx
update-source Loopback0
If the router does not use its loopback address as the source address for all iBGP sessions, this is a finding.
V-216786
False
CISC-RT-000580
Step 1: Review the router configuration to verify that a loopback address has been configured.
interface Loopback0
ip address 10.1.1.1 255.255.255.255
Step 2: Verify that the loopback interface is used as the source address for all iBGP sessions.
router bgp xx
address-family ipv4 unicast
!
neighbor 10.1.23.3
remote-as xx
update-source Loopback0
If the router does not use its loopback address as the source address for all iBGP sessions, this is a finding.
M
4029