Configuring GTSM for BGP4
Generalized TTL Security Mechanism (GTSM) can be configured to protect external Border
Gateway Protocol (eBGP) peering sessions.
- Enter the
configure terminalcommand to access global configuration mode. - Enter the
router bgpcommand to enable BGP routing. - Enter the
local-ascommand to configure the autonomous system number (ASN) in which your device resides. - Enter the
neighbor remote-ascommand to add a neighbor. - Enter the
neighbor ebgp-btshcommand, specifying an IP address, to enable GTSM.
The following example enables GTSM between a device and a neighbor with the IP address 10.10.10.1.
device# configure terminal device(config)# router bgp device(config-bgp-router)# local-as 65520 device(config-bgp-router)# neighbor 10.10.10.1 remote-as 2 device(config-bgp-router)# neighbor 10.10.10.1 ebgp-btsh