Influence Outbound Routes with the BGP Weight and Local Preference Attributes

Overview

Consider a scenario where the Palo Alto Networks firewall has EBGP connectivity with a peer of an External Autonomous System and has IBGP connectivity with peers within the same Autonomous System that it is part of. These IBGP Peers also have EBGP connectivity with other routers, outside of the Autonomous System. There are instances where the traffic destined for networks outside of the Autonomous System should egress out via the Palo Alto firewall instead of the IBGP peers. Influencing BGP Routers to select a point of exit in the Autonomous System can be accomplished by using the Local Preference and the Weight Attributes.

Details

In order to choose the Palo Alto Networks firewall for the outbound external Path, increase the local preference of the Palo Alto Networks firewall, by configuring the Default Local Preference value at:

Network > Virtual Routers > BGP > General

A screenshot of a computer AI-generated content may be incorrect.

As Weight is a Cisco proprietary attribute, the Palo Alto Networks firewalls do not advertise weights of its own. However, it can modify the weights of the routes received from the peers before importing them into the local rib. On the web UI, go to:

Network > Virtual Routers > BGP > Import > (Import Rule) > Action > Weight

A screenshot of a computer AI-generated content may be incorrect.