The six states #
| State | What it means | First evidence to inspect |
|---|---|---|
| Idle | The session is not progressing through establishment | Administrative status and the last reset reason |
| Connect | TCP establishment is in progress | Routes to the peer and TCP reachability |
| Active | BGP is attempting to obtain a TCP connection | Both peer addresses, source selection and filtering |
| OpenSent | A BGP OPEN has been sent | OPEN acceptance, ASN settings and notification details |
| OpenConfirm | BGP is waiting for confirmation through KEEPALIVE processing | Peer logs and connection stability |
| Established | The session can exchange BGP messages | Address families, received routes and policies |
Treat the table as a starting point, not a one-to-one fault decoder. A session can move quickly through several states or repeatedly restart. The last notification and the time since the reset usually provide more context than a single summary snapshot.
Read-only evidence collection #
Read-only evidence collection
Vendor-neutral / Cisco NX-OS examples · Cisco NX-OS operational CLI; default VRF, IPv4 unicast
show ip bgp summaryReplace these example values: 192.0.2.2.
show ip bgp neighbors 192.0.2.2Replace these example values: 192.0.2.2.
show ip bgp neighbors 192.0.2.2 routesReplace these example values: 192.0.2.2.
show ip bgp neighbors 192.0.2.2 advertised-routesUse the correct VRF and address-family equivalent on your platform. Compare the configured peer address and ASN at both ends. Inspect the actual local address used for the session, particularly when peering from a loopback. A successful ping from an unrelated address is not proof that the BGP source is reachable.
Common reset messages #
A hold-timer expiry means the required BGP message activity was not received in time; it does not prove a particular cable or firewall caused the failure. An OPEN error requires examination of its error code and subcode. Cease also has subcodes: administrative shutdown and maximum-prefix conditions require different responses. Read the detail before changing timers or resetting the neighbor.
Established with no routes #
Separate session health from route acceptance. Check whether the expected family is negotiated, whether the peer advertises the prefix and whether import policy accepts it. Then inspect next-hop reachability and route selection. Some received-route views depend on stored pre-policy information and cannot be assumed available everywhere. Preserve the evidence before any disruptive clear command; the inspection commands above do not reset the session.
Sources
Documentation reviewed: 8 October 2026