Write BGP policy once.
Deploy it everywhere.
ispforge turns clean, reusable peering policy into correct configuration for every router you run — Junos, RouterOS, FRR, Arista, Cisco and more — with IRR filtering and RPKI validation built in. Preview the diff, deploy through an agent, and see drift as soon as the agent reports it.
One policy model · seven render targets

Every change, reviewed before it ships
Intent in, correct config out — validated, previewed, approved and watched. The same loop for one router or a hundred.
Vendor-neutral intent
Reusable policy profiles and peer-groups — not per-box CLI.
IRR + RPKI + leak-guard
Prefix filters from IRR, drop-invalid, max-prefix, bogons.
The exact diff
See every line before anything touches a router.
Through the agent
mTLS agent over NETCONF / API / vtysh, commit-confirmed.
Continuous drift
Live device compared to intent, drift flagged on every state report.
See the exact diff before it touches a router
Every change compiles to native configuration and shows you the precise lines — added and removed — live. Not stored, not deployed, until you approve.

Routing hygiene, without the spreadsheet
Everything a small-to-mid ISP needs to run BGP safely — defined once, enforced everywhere, observable end to end.
Vendor-neutral policy
Define peering policy as reusable profiles. ispforge compiles them to native config per platform — no more hand-maintaining the same intent across four vendors.
IRR & RPKI by default
Per-peer prefix filters resolved from IRR with bgpq4, RPKI origin validation, max-prefix limits and bogon filtering — on by default, refreshed automatically.
Peering on autopilot
PeeringDB-driven suggestions from your IXP co-members, magic-link peering requests, and one-click session setup — inbound and outbound.
Safe, observable deploys
Preview the exact config diff before anything touches a router. Deploy through a lightweight mTLS agent. Watch for drift continuously after.
AI-native operations
An MCP server lets AI agents investigate and propose changes in plain language — every write risk-scored, previewed, and gated on approval, same as a human.
Brownfield-friendly
Already running production BGP? Import existing routers and sessions, reconstruct policy intent, and adopt them under management — no rip-and-replace.
Inspect and steer traffic in real time
Ask a router what it's actually announcing or receiving, validate those prefixes against RPKI on the spot, and move traffic when you need to — drain a peer for maintenance, de-prefer a path, or shut a session, each a reviewable, reversible change.
Help shape the control plane for ISPs
We're onboarding a small group of ISPs to run ispforge on their real networks — free during the beta, hands-on onboarding, and a direct line to the team building it.