BGP Routing Protocol

Notice: This blog post was originally published on Indeni before its acquisition by BlueCat.

The content reflects the expertise and perspectives of the Indeni team at the time of writing. While some references may be outdated, the insights remain valuable. For the latest updates and solutions, explore the rest of our blog

Key Takeaways
  • BGP (Border Gateway Protocol) is the de facto inter-domain routing protocol of the Internet and operates as a path vector protocol between Autonomous Systems.
  • BGP runs over TCP on port 179 at OSI Layer 4 and distinguishes internal (iBGP) from external (eBGP) sessions based on whether peers are in the same or different Autonomous Systems.
  • Routing decisions in BGP are made using shortest path and local policy controls, typically implemented through route maps and attributes such as MED to influence preferred ingress points.
  • BGP is commonly used for multi-homing to multiple ISPs to support load balancing and backup connectivity.
  • Multiprotocol BGP (MP-BGP) integrates with MPLS to provide VPN and secure multi-site connectivity services for large enterprises.
  • Proactive monitoring of BGP includes detecting neighbor down events or state changes, validating summarization tightness, and identifying misconfigurations such as internal devices assigned public IP addresses.

So what is BGP? In this series of posts I will be explaining the main principles of BGP. BGP–Border Gateway Protocol–is the de facto core routing protocol of the Internet. It operates by exchanging routes among Internet Autonomous Systems, and it is considered a path vector protocol. Routing is performed by shortest path possible and according to network policies within each Autonomous System. Most large service providers use BGP, and enterprises can operate BGP internally to influence metrics.

 

BGP operates in Layer 4 of the OSI network model and establishes TCP connections via port 179 between neighbors. BGP that is used internally is designated as iBGP and when used externally it is designated as eBGP. The implementation of routing policies are done mainly by route maps. For example, influencing traffic with BGP policies can be done with the MED (Multi-Exit Discriminator) attribute, which tells a remote AS that a specific entry into an AS is the preferred one. Therefore, BGP is great for multi-homing to different ISPs (in terms of load balancing and backup).

 

ISPs that run BGP also integrate Multiprotocol BGP (MP-BGP). It is a special extension of BGP that works with MPLS, which allows service providers to offer businesses VPN capabilities and secure connectivity across multiple branches.

This technology is very widespread in large-scale enterprises. Proactive monitoring and fault resolution of BGP is essential due to its importance and influence on the topology.

Smart BGP signatures are already embedded into indeni and many others are planned.

Here are several examples for checks indeni has around BGP configuration:

  • BGP Neighbor Is Down – indeni will alert when neighbors appear to be down in neighbors tables.
  • BGP Neighbor State Has Changed – indeni will alert when the state has changed for any BGP peers or neighbors in the peer/neighbor table.
  • Some Network Summarizations Are Too Loose – indeni will verify that network summarizations are not too loose, and that they do not contain unreachable networks.
  • Internal Devices Given an External IP – indeni will alert if a public IP address has been used in an internal network.

Related content

Agentic AI adoption in network observability propels NetOps teams

Network observability is crucial for today’s networks and even more capable with agentic AI, according to new Omdia and BlueCat research.

Read more

Stop the ticket bottleneck: Automate DNS, DHCP, and IPAM with Quick Service

Automated DNS, DHCP, and IPAM (DDI) service delivery enables organizations to replace manual, ticket-based workflows with policy-driven, self-service…

Read more

Stay ahead of network issues with real-time metrics with BlueCat Integrity X

Get real-time DNS, DHCP, and IPAM metrics with BlueCat Integrity X. Detect issues early using native Prometheus telemetry and proactive DDI observability.

Read more

Adding business context to DDI with tagging in BlueCat Integrity X

Add business context to DNS, DHCP, and IPAM with tagging in BlueCat Integrity X. Improve visibility, automation, and governance across complex networks.

Read more

⏳ Cisco Live is almost here. Put BlueCat on your agenda for smarter, more secure networks.