Hello group, I have a 7200 running 12.4(24)T ADVIPSERVICESK9-M configured for 6VPE:
++++++++++++++++++++++++++++++++++++++++++++++++++++++++ PE1#sh runn Building configuration... Current configuration : 2346 bytes ! upgrade fpd auto version 12.4 service timestamps debug datetime msec service timestamps log datetime msec no service password-encryption ! hostname PE1 ! boot-start-marker boot-end-marker ! vrf definition vrf1 rd 1:1 ! address-family ipv4 route-target export 1:1 route-target import 1:1 exit-address-family ! address-family ipv6 route-target export 1:1 route-target import 1:1 exit-address-family ! logging message-counter syslog enable password cisco ! no aaa new-model ip source-route ip cef ! ! ! ! no ip domain lookup ipv6 unicast-routing ipv6 cef ! multilink bundle-name authenticated ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! ! archive log config hidekeys ! ! ! ! ! ! class-map match-any PRECEDENCE-0 match precedence 0 ! ! policy-map MONITOR class PRECEDENCE-0 ! ! ! ! ! interface Loopback0 ip address 100.100.100.1 255.255.255.255 ! interface FastEthernet0/0 vrf forwarding vrf1 ip address 10.10.10.254 255.255.255.0 duplex auto speed auto ipv6 address 2001:10::2/64 service-policy input MONITOR ! interface FastEthernet0/1 ip address 13.13.13.1 255.255.255.0 duplex auto speed auto mpls ip ! router ospf 1 router-id 100.100.100.1 log-adjacency-changes network 0.0.0.0 255.255.255.255 area 0 ! router bgp 1 bgp router-id 100.100.100.1 no bgp default ipv4-unicast bgp log-neighbor-changes neighbor 100.100.100.2 remote-as 1 neighbor 100.100.100.2 update-source Loopback0 ! address-family vpnv6 neighbor 100.100.100.2 activate neighbor 100.100.100.2 send-community extended exit-address-family ! address-family vpnv4 neighbor 100.100.100.2 activate neighbor 100.100.100.2 send-community extended exit-address-family ! address-family ipv4 vrf vrf1 redistribute connected redistribute static no synchronization exit-address-family ! address-family ipv6 vrf vrf1 redistribute connected redistribute static no synchronization exit-address-family ! ip forward-protocol nd ip route vrf vrf1 1.1.1.1 255.255.255.255 10.10.10.1 no ip http server no ip http secure-server ! ! ! ipv6 route vrf vrf1 2001:1::/64 2001:10::1 ! ! ! ! ! ! control-plane ! ! ! mgcp fax t38 ecm ! ! ! ! gatekeeper shutdown ! ! line con 0 exec-timeout 0 0 privilege level 15 logging synchronous stopbits 1 line aux 0 exec-timeout 0 0 privilege level 15 stopbits 1 line vty 0 4 password cisco login ! end PE1# ++++++++++++++++++++++++++++++++++++++++++++++++++++++++ And i have this connectivity problem between CE devices (CE1 is directly connected to PE1): ++++++++++++++++++++++++++++++++++++++++++++++++++++++++ CE1#ping Protocol [ip]: ipv6 Target IPv6 address: 2001:2::1 Repeat count [5]: 1000 Datagram size [100]: Timeout in seconds [2]: Extended commands? [no]: Type escape sequence to abort. Sending 1000, 100-byte ICMP Echos to 2001:2::1, timeout is 2 seconds: ....!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!...... .............!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !...................!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!...................!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!...................!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!...................!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!...................!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!...................!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!...................!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!............. ......!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!...... .............!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!...................!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!...................!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!! Success rate is 76 percent (768/1000), round-trip min/avg/max = 48/134/400 ms CE1# ++++++++++++++++++++++++++++++++++++++++++++++++++++++++ The problem does not occur when the input service-policy facing CE1 is removed: ++++++++++++++++++++++++++++++++++++++++++++++++++++++++ CE1#ping Protocol [ip]: ipv6 Target IPv6 address: 2001:2::1 Repeat count [5]: 1000 Datagram size [100]: Timeout in seconds [2]: Extended commands? [no]: Type escape sequence to abort. Sending 1000, 100-byte ICMP Echos to 2001:2::1, timeout is 2 seconds: !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! !!!!!!!!!!!!!!!!!!!! Success rate is 100 percent (1000/1000), round-trip min/avg/max = 28/133/340 ms CE1# ++++++++++++++++++++++++++++++++++++++++++++++++++++++++ Any ideas of what could be causing this ? Thanks. Regards, Antonio Soares, CCIE #18473 (R&S) [email protected] _______________________________________________ cisco-nsp mailing list [email protected] https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/
