Seems that this might be resolved in frr master. Or not. For now we import the workaround from firewall configs.
Consolidate base system and networking setup into debian role and BGP configuration into frr role. Add facts role to collect data from NetBox once to avoid many slow lookups. Also many other tweaks and cleanups.