efa tenant service bgp peer create

Creates a BGP (Border Gateway Protocol) peer for a specified VRF.

Syntax

efa tenant service bgp peer create [--name peer-name|--tenant tenantname|--description description|--ipv4-uc-dyn-nbr string|--ipv4-uc-nbr string|--ipv4-uc-nbr-bfd string|--ipv4-uc-nbr-route-map stringArray|--ipv4-uc-nbr-send-community string|--ipv4-uc-nbr-next-hop-self string|--ipv4-uc-nbr-remove-private-as |--ipv4-uc-nbr-default-originate stringArray|--ipv4-uc-nbr-default-originate-route-map stringArray|--ipv4-uc-nbr-update-source-ip string|--ipv4-uc-nbr-md5-password string|--md5-password-prompt-enable {true|false} | --ipv4-uc-nbr-prefix-list stringArray | --ipv6-uc-nbr-prefix-list stringArray |--ipv6-uc-dyn-nbr string|--ipv6-uc-nbr string|--ipv6-uc-nbr-bfd string|--ipv6-uc-nbr-default-originate stringArray |--ipv6-uc-nbr-default-originate-route-map stringArray | --ipv6-uc-nbr-md5-password string | --ipv6-uc-nbr-next-hop-self string | --ipv6-uc-nbr-remove-private-as stringArray | --ipv6-uc-nbr-route-map stringArray | --ipv6-uc-nbr-update-source-ip string | --ipv6-uc-nbr-send-community stringArray | --ipv4-uc-nbr-add-path-capability string | --ipv4-uc-nbr-add-path-advertise-all string | --ipv4-uc-nbr-add-path-advertise-group-best string | --ipv4-uc-nbr-add-path-advertise-best string | --ipv6-uc-nbr-add-path-capability string | --ipv6-uc-nbr-add-path-advertise-all string | --ipv6-uc-nbr-add-path-advertise-group-best string | --ipv6-uc-nbr-add-path-advertise-best string ]

Parameters

--description description
Describes the BGP service.
--ipv4-uc-dyn-nbr string
Identifies the IPv4 unicast dynamic neighbor with a string in the following format: device-ip,vrf-name:ipv4-listen-range,peer-group-name,listen-limit. For example: 10.x.x.x,red:11::22/127. The listen-limit value is optional.
--ipv4-uc-nbr string
Identifies the IPv4 unicast neighbor with a string in the following format: device-ip,vrf-name:ipv4-neighbor,remote-as. For example: 10.x.x.x,red:10.20.30.40,5000.
--ipv4-uc-nbr-bfd string
Identifies the IPv4 BFD unicast neighbor with a string in the following format: device-ip,vrf-name:ipv4-neighbor,bfd-enable(true/false),bfd-interval,bfd-min-rx,bfd-multiplier. For example: 10.x.x.x,red:10.20.30.40,true,100,200,5.
--ipv4-uc-nbr-send-community string
Identifies the send-community in the following format: device-ip,vrf-name:neighbor-ip,( all | both | extended | large | standard | large-and-standard | large-and-extended).
--ipv4-uc-nbr-route-map stringArray
Identifies the IPv4 unicast neighbor route map in the following format: device-ip,vrf-name:ipv4-neighbor,route-map-name,direction(in/out).
--ipv4-uc-nbr-remove-private-as stringArray
Turns the remove-private-as setting on or off per BGP peer group, created for external connectivity, in the following format: device-ip,vrf-name:neighbor-ip,true|false. For example: 10.20.246.15,ten1vrf1:10.20.30.40,true.
By default, the setting is off.
--ipv4-uc-nbr-default-originate stringArray
Identifies the default-originate setting for the IPv4 unicast neighbor, with a string in the following format: device-ip,vrf-name:neighbor-ip,true/false. For example: 10.20.246.15,ten1vrf1:10.20.30.40,true.
By default, the setting is off.
--ipv4-uc-nbr-default-originate-route-map stringArray
Identifies the default-originate setting for the IPv4 unicast neighbor, with a string in the following format: device-ip,vrf-name:neighbor-ip,route-map. For example: 10.20.246.16,ten1vrf1:10.20.30.40,rmap1.
By default, the setting is off.
--ipv4-uc-nbr-next-hop-self string
Identifies the next-hop-self for the IPv4 unicast neighbor with a string in the following format: device-ip,vrf-name:ipv4-neighbor,next-hop-self(true/false/always). For example: 10.x.x.x,red:10.y.y.y,true.
--ipv4-uc-nbr-update-source-ip string
Updates the source IP for the IPv4 unicast neighbor with a string in the following format: device-ip,vrf-name:ipv4-neighbor,update-source-ip. For example: 10.x.x.x,red:10.y.y.y,11.x.x.x.
--ipv4-uc-nbr-md5-password string

Identifies the IPv4 unicast neighbor MD5 password in the following format: device-ip,vrf-name:ipv4-neighbor,ipv4-md5-password.

Example for encrypted/password containing special characters: --ipv4-uc-nbr-md5-password device-ip,vrf-name:ipv4-neighbor,'$9$MCgKGaNt6OASX68/7TC6Lw=='

--ipv4-uc-nbr-prefix-list stringArray
IPv4 Unicast Neighbor prefix list in the format device-ip,vrf-name:ipv4-neighbor,prefix-list-name,direction(in/out)
--ipv6-uc-nbr-prefix-list stringArray
IPv6 Unicast Neighbor prefix list in the format device-ip,vrf-name:ipv6-neighbor,prefix-list-name,direction(in/out)
--name peer-name
Identifies the name of the BGP peer instance.
--tenant tenant-name
Identifies the name of the tenant.
--md5-password-prompt-enable { true | false }
Turns on secure input for the MD5 password. The default is false.
--ipv6-uc-dyn-nbr string
Identifies the IPv6 unicast dynamic neighbor with a string in the following format: device-ip,vrf-name:ipv6-listen-range,peer-group-name,listen-limit. The listen-limit value is optional.
--ipv6-uc-nbr string
Identifies the IPv6 unicast neighbor with a string in the following format: device-ip,vrf-name:ipv6-neighbor,remote-as. For example: 10.x.x.x,red:10::40,5000.
--ipv6-uc-nbr-bfd string
Identifies the IPv6 BFD unicast neighbor with a string in the following format: device-ip,vrf-name:ipv6-neighbor,bfd-enable(true/false),bfd-interval,bfd-min-rx,bfd-multiplier. For example: 10.x.x.x,red:10::40,true,100,200,5.
--ipv6-uc-nbr-default-originate stringArray
Identifies the IPv6 unicast neighbor default originate in the following format: device-ip,vrf-name:ipv6-neighbor,default-originate(true/false).
--ipv6-uc-nbr-default-originate-route-map stringArray
Identifies the IPv6 unicast neighbor default originate route map in the following format: device-ip,vrf-name:ipv6-neighbor,route-map-name.
--ipv6-uc-nbr-md5-password string

Identifies the IPv6 unicast neighbor MD5 password, in the following format: device-ip,vrf-name:ipv6-neighbor,ipv6-md5-password.

Example for encrypted/password containing special characters: --ipv6-uc-nbr-md5-password device-ip,vrf-name:ipv6-neighbor,'$9$MCgKGaNt6OASX68/7TC6Lw=='

--ipv6-uc-nbr-next-hop-self string
Identifies the next-hop-self for the IPv6 unicast neighbor with a string in the following format: device-ip,vrf-name:ipv6-neighbor,next-hop-self(true/false/always). For example: 10.x.x.x,red:10::40,true.
--ipv6-uc-nbr-remove-private-as stringArray
Identifies the IPv6 unicast neighbor remove private AS in the format device-ip,vrf-name:ipv6-neighbor,remove-private-as(true/false).
--ipv6-uc-nbr-route-map stringArray
Identifies the IPv6 unicast neighbor route map in the format device-ip,vrf-name:ipv6-neighbor,route-map-name,direction(in/out).
--ipv6-uc-nbr-update-source-ip string
Updates the source IP address for the IPv6 unicast neighbor with a string in the following format: device-ip,vrf-name:ipv6-neighbor,update-source-ip. For example: 10.x.x.x,red:10::40,11::22.
--ipv6-uc-nbr-send-community string
Identifies the send-community in the following format: device-ip,vrf-name:neighbor-ip,( all | both | extended | large | standard | large-and-standard | large-and-extended).
--ipv4-uc-nbr-add-path-capability string

Identifies the BGP neighbor add-path capability in the format device-ip,vrf-name:ipv4-neighbor,add-path-capability. Valid values are (send / receive / both).

--ipv4-uc-nbr-add-path-advertise-all string
Identifies the BGP neighbor add-path advertise all in the format device-ip,vrf-name:ipv4-neighbor,add-path-advertise-all(true/false).
--ipv4-uc-nbr-add-path-advertise-group-best string
Identifies the BGP neighbor add-path advertise group best in the format device-ip,vrf-name:ipv4-neighbor,add-path-advertise-group-best(true/false).
--ipv4-uc-nbr-add-path-advertise-best string

Identifies the BGP neighbor add-path advertise best in the format device-ip,vrf-name:ipv4-neighbor,add-path-advertise-best. Valid values are 2-16.

--ipv6-uc-nbr-add-path-capability string

Identifies the BGP neighbor add-path capability in the format device-ip,vrf-name:ipv6-neighbor,add-path-capability. Valid values are (send / receive / both).

--ipv6-uc-nbr-add-path-advertise-all string
Identifies the BGP neighbor add-path advertise all in the format device-ip,vrf-name:ipv6-neighbor,add-path-advertise-all(true/false).
--ipv6-uc-nbr-add-path-advertise-group-best string
Identifies the BGP neighbor add-path advertise group best in the format device-ip,vrf-name:ipv6-neighbor,add-path-advertise-group-best(true/false).
--ipv6-uc-nbr-add-path-advertise-best string

Identifies the BGP neighbor add-path advertise best in the format device-ip,vrf-name:ipv6-neighbor,add-path-advertise-best. Valid values are 2-16.

Examples

This example creates a static BGP peer (IPv4 and IPv6).
$ efa tenant service bgp peer create --name B1 --tenant tenant11 
--ipv4-uc-nbr 10.20.216.16,blue11:1.1.1.11,95001 
--ipv4-uc-nbr-bfd 10.20.216.16,blue11:1.1.1.11,true,50,5000,50 
--ipv4-uc-nbr-next-hop-self 10.20.216.16,blue11:1.1.1.11,always 
--ipv4-uc-nbr-update-source-ip 10.20.216.16,blue11:1.1.1.11,10.11.12.13 
--ipv6-uc-nbr 10.20.216.16,blue11:20a1:a::10,95001 
--ipv6-uc-nbr-bfd 10.20.216.16,blue11:20a1:a::10,true,50,5000,50 
--ipv6-uc-nbr-next-hop-self 10.20.216.16,blue11:20a1:a::10,always 
--ipv6-uc-nbr-update-source-ip 10.20.216.16,blue11:20a1:a::10,20::10

BgpService created successfully.
This example creates a dynamic BGP peer (IPv4 and IPv6).
$ efa tenant service bgp peer create --name B2 --tenant tenant11 
--ipv6-uc-dyn-nbr 10.20.216.16,blue11:15::/127,pg1,10 
--ipv4-uc-dyn-nbr 10.20.216.16,blue11:15.15.15.0/28,pg1,10

BgpService created successfully.
This example creates a BGP peer MD5 password in a secure manner. For more information, see the "Configure BGP MD5 Authentication for Tenant BGP Peer and Peer-group Securely" topic in the ExtremeCloud Orchestrator Security Guide, 3.2.0 .
$ efa tenant service bgp peer create --name bgp173-2501 
--tenant tenant11 
--ipv4-uc-nbr 10.20.246.6,v1:25.1.1.3,5901 
--ipv4-uc-nbr-bfd 10.20.246.6,v1:25.1.1.3,true 
--ipv6-uc-nbr 10.20.246.5,v1:25:1::3,5901 
--ipv6-uc-nbr-bfd 10.20.246.5,v1:25:1::3,true 
--md5-password-prompt-enable=true
$ efa tenant service bgp peer create --name ten1bgppeer1 
--tenant ten1 --ipv4-uc-nbr 10.20.246.15,ten1vrf1:10.20.30.40,50000 
--ipv4-uc-nbr-bfd 10.20.246.15,ten1vrf1:10.20.30.40,true 
--ipv4-uc-nbr-remove-private-as 10.20.246.15,ten1vrf1:10.20.30.40,true 
--ipv4-uc-nbr 10.20.246.16,ten1vrf1:10.20.30.40,50000 
--ipv4-uc-nbr-bfd 10.20.246.16,ten1vrf1:10.20.30.40,true 
--ipv4-uc-nbr-remove-private-as 10.20.246.16,ten1vrf1:10.20.30.40,true
$ efa tenant service bgp peer create --name ten1bgppeer1 
--tenant ten1 --ipv4-uc-nbr 10.20.246.15,ten1vrf1:10.20.30.40,50000
 --ipv4-uc-nbr-bfd 10.20.246.15,ten1vrf1:10.20.30.40,true
 --ipv4-uc-nbr-default-originate 10.20.246.15,ten1vrf1:10.20.30.40,true
 --ipv4-uc-nbr 10.20.246.16,ten1vrf1:10.20.30.40,50000
 --ipv4-uc-nbr-bfd 10.20.246.16,ten1vrf1:10.20.30.40,true
 --ipv4-uc-nbr-default-originate 10.20.246.16,ten1vrf1:10.20.30.40,true
 --ipv4-uc-nbr-default-originate-route-map 10.20.246.16,ten1vrf1:10.20.30.40,rmap1
$ efa tenant service bgp peer create --name ten1bgppeer1 
--tenant ten1 --ipv4-uc-nbr 10.20.246.15,ten1vrf1:10.20.30.40,50000 
--ipv4-uc-nbr-bfd 10.20.246.15,ten1vrf1:10.20.30.40,true 
--ipv4-uc-nbr-prefix-list-in 10.20.246.15,ten1vrf1:10.20.30.40,ipprefix1 
--ipv4-uc-nbr 10.20.246.16,ten1vrf1:10.20.30.40,50000 
--ipv4-uc-nbr-bfd 10.20.246.16,ten1vrf1:10.20.30.40,true 
--ipv4-uc-nbr-prefix-list-out 10.20.246.16,ten1vrf1:10.20.30.40,ipprefix1
$ efa tenant service bgp peer create --name ten1bgppeer1 
--tenant ten1 --ipv4-uc-nbr 10.20.246.15,ten1vrf1:10.20.30.40,50000 
--ipv4-uc-nbr-bfd 10.20.246.15,ten1vrf1:10.20.30.40,true 
--ipv4-uc-nbr-route-map 10.20.246.15,ten1vrf1:10.20.30.40,rmap1,in 
--ipv4-uc-nbr 10.20.246.16,ten1vrf1:10.20.30.40,50000 
--ipv4-uc-nbr-bfd 10.20.246.16,ten1vrf1:10.20.30.40,true 
--ipv4-uc-nbr-route-map 10.20.246.16,ten1vrf1:10.20.30.40,rmap1,out 
-–ipv6-uc-nbr 10.20.246.15,ten1vrf1:25:1::3,50000 
-–ipv6-uc-nbr-bfd 10.20.246.15,ten1vrf1:25:1::3,true 
-–ipv6-uc-nbr-route-map 10.20.246.15,ten1vrf1:25:1::3,rmap1,in 
-–ipv6-uc-nbr 10.20.246.16,ten1vrf1:25:1::3,50000 
-–ipv6-uc-nbr-bfd 10.20.246.16,ten1vrf1:25:1::3,true 
-–ipv6-uc-nbr-route-map 10.20.246.16,ten1vrf1:25:1::3,rmap1,out
$ efa tenant service bgp peer create --name ten1bgppeer1 
--tenant ten1 --ipv4-uc-nbr 10.20.246.15,ten1vrf1:10.20.30.40,50000  
 --ipv4-uc-nbr-bfd 10.20.246.15,ten1vrf1:10.20.30.40,true  
 --ipv4-uc-nbr-default-originate 10.20.246.15,ten1vrf1:10.20.30.40,true  
 --ipv4-uc-nbr 10.20.246.16,ten1vrf1:10.20.30.40,50000  
 --ipv4-uc-nbr-bfd 10.20.246.16,ten1vrf1:10.20.30.40,true  
 --ipv4-uc-nbr-default-originate 10.20.246.16,ten1vrf1:10.20.30.40,true  
 --ipv4-uc-nbr-default-originate-route-map 10.20.246.16,ten1vrf1:10.20.30.40,rmap1
efa tenant service bgp peer create --name ten1bgppeer1 --tenant ten1 
 --ipv4-uc-nbr-bfd 10.20.246.15,ten1vrf1:25.1.1.2,true 
--ipv6-uc-nbr 10.20.246.15,ten1vrf1:25:1::3,5900 
--ipv6-uc-nbr-bfd 10.20.246.15,ten1vrf1:25:1::3,true
--ipv6-uc-nbr-md5-password 10.20.246.15,ten1vrf1:25:1::3,password
--ipv4-uc-nbr-md5-password 10.20.246.15,ten1vrf1:25.1.1.2,password 
--ipv4-uc-nbr-send-community 10.20.246.15,ten1vrf1:25.1.1.2,all
--ipv6-uc-nbr-send-community 10.20.246.15,ten1vrf1:1::1,both 
--ipv4-uc-nbr-add-path-capability 10.20.246.15,ten1vrf1:25.1.1.2,send
--ipv4-uc-nbr-add-path-advertise-all 10.20.246.15,ten1vrf1:25.1.1.2,true
--ipv4-uc-nbr 10.20.246.15,ten1vrf1:25.1.1.2,5900 
--ipv4-uc-nbr-add-path-advertise-all 10.20.246.15,ten1vrf1:25.1.1.2,true
--ipv6-uc-nbr 10.20.246.15,ten1vrf1:1::1,5900 
--ipv6-uc-nbr-add-path-advertise-best 10.20.246.15,ten1vrf1:1::1,2 
--ipv6-uc-nbr-add-path-capability 10.20.246.15,ten1vrf1:1::1,both 
--ipv6-uc-nbr-add-path-advertise-best 10.20.246.15,ten1vrf1:1::1,2
--ipv6-uc-nbr-add-path-advertise-group-best 10.20.246.15,ten1vrf1:1::1,true