Hello Ramji,
Between June and now we observed the issue three times. The last Tuesday we
observed the issue again. I think that the issue could happen. I attach the
show running config. Yesterday we changed the connection between my two ME3600,
now they are connected via Te0/1 interface (with a 1G SFP).
I don't understand exactly what you mean regarding the traffic profile. I
monitor the bandwidth utilization with SNMP and make graphs. In the ports
connected to my routers it seems more smooth than the ports with customer
devices. The ports with low bandwidth seem more bursty and the ports with high
bandwidth seem more smooth.
Best Regards,
Jordi
From: [email protected]
To: [email protected]; [email protected]; [email protected]
Subject: RE: [c-nsp] ME3600 FCS packet generation issue
Date: Fri, 24 Oct 2014 10:08:13 +0000
Hi Jordi,
Would it be possible for you to share the running configuration and also the
traffic profile through the box? Ideal would be to for us to look into the box
when the input errors are happening. Do you think that’s possible should it
happen next time?
Thanks,
Ramji
From: Jordi Magrané Roig [mailto:[email protected]]
Sent: Friday, October 24, 2014 3:34 PM
To: Ramji Vasudevan (ramji); Waris Sagheer (waris); [email protected]
Subject: RE: [c-nsp] ME3600 FCS packet generation issue
Hello,
Waris, in this moment I cannot capture packets because the device is running
ok. So, now the packets are correctly forwarded. We changed the SFPs and
checked the SDH network and all is ok. The ME3600 has customer devices
connected that we also manage and in
these customer devices we see the "input errors" in the "show interface"
command.
Ramji, during the issue, I see the input error counter and CRC. This is the
output of one of the customer devices connected to the ME3600. I see the same
in my routers and the customer devices that I manage:
GEC#sh interfaces gigabitEthernet 0/24
GigabitEthernet0/24 is up, line protocol is up (connected)
Hardware is Gigabit Ethernet, address is f029.299a.c018 (bia f029.299a.c018)
MTU 1500 bytes, BW 1000000 Kbit/sec, DLY 10 usec,
reliability 255/255, txload 3/255, rxload 15/255
Encapsulation ARPA, loopback not set
Keepalive not set
Full-duplex, 1000Mb/s, media type is LX
input flow-control is off, output flow-control is unsupported
ARP type: ARPA, ARP Timeout 04:00:00
Last input never, output 00:00:00, output hang never
Last clearing of "show interface" counters 10w1d
Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
Queueing strategy: fifo
Output queue: 0/40 (size/max)
5 minute input rate 61712000 bits/sec, 12116 packets/sec
5 minute output rate 14649000 bits/sec, 11323 packets/sec
57831794972 packets input, 37874524124404 bytes, 0 no buffer
Received 2014804 broadcasts (36949 multicasts)
0 runts, 0 giants, 0 throttles
106923 input errors, 106923 CRC, 0 frame, 0 overrun, 0 ignored
0 watchdog, 36949 multicast, 0 pause input
0 input packets with dribble condition detected
51903725030 packets output, 8974825457660 bytes, 0 underruns
0 output errors, 0 collisions, 0 interface resets
0 unknown protocol drops
0 babbles, 0 late collision, 0 deferred
0 lost carrier, 0 no carrier, 0 pause output
0 output buffer failures, 0 output buffers swapped out
Best Regards,
Jordi.
From:
[email protected]
To: [email protected];
[email protected]; [email protected]
Subject: RE: [c-nsp] ME3600 FCS packet generation issue
Date: Fri, 24 Oct 2014 09:42:06 +0000
Hi Jordi,
When you say that the packet is getting dropped by the peer router, are you
seeing CRC errors on it?
Thanks,
Ramji
From: Waris Sagheer (waris)
Sent: Friday, October 24, 2014 3:11 PM
To: Jordi Magrané Roig; [email protected]
Cc: Ramji Vasudevan (ramji)
Subject: Re: [c-nsp] ME3600 FCS packet generation issue
Jordi,
Can you please capture the packet? Are there any layer 1 issue in the network?
Ramji,
Have you come across any such issue on ME3600X?
Best Regards,
Waris Sagheer
Technical Marketing Manager
Service Provider Access Group (SPAG)
[email protected]
Phone: +1 408 853 6682
Mobile: +1 408 835 1389
CCIE - 19901
This email may contain confidential and privileged material for the sole use of
the intended recipient. Any review, use, distribution or disclosure by others is
strictly prohibited. If you are not the intended recipient (or authorized to
receive for the recipient), please contact the sender by reply email and delete
all copies of this message.
For corporate legal information go
to:http://www.cisco.com/web/about/doing_business/legal/cri/index.html
From:
Jordi Magrané Roig <[email protected]>
Date: Friday, October 24, 2014 at 1:12 AM
To: "[email protected]" <[email protected]>
Subject: [c-nsp] ME3600 FCS packet generation issue
Hello,
My name is Jordi. I have a strange issue with one of my
ME3600. I have a ME3600 connected to a C7609 via the G0/24 port and
connected to another ME3600 connected via G0/22 port. In the middle of
the connection between the two ME3600 there is a SDH network (Ethernet
over SDH). I have a recurring issue in the ME3600, for some reason when
the device receive a packet and forwards the packet, the device sends
the packet with FCS errors, so the other end detects the "input error"
and drops the packet. I don't know if the device sends the data
corrupted or makes wrong the calculation of the FCS. The device can work
correctly during two months and some day the device starts with this
problem. Reloading the device fixes the issue during a time. I saw the
issue for the first time at June. I changed the device, but the issue
appeared again and I upgraded the IOS from 15.3(3)S to 15.4(2)S1 but
still the same. I think that this issue could be a bug but I don't know
which event triggers the issue. Someone could help me?
Thank you very much and sorry for my English.
_______________________________________________
cisco-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at
http://puck.nether.net/pipermail/cisco-nsp/
version 15.4
no service pad
service timestamps debug datetime msec localtime
service timestamps log datetime localtime
service password-encryption
service sequence-numbers
service counters max age 10
platform bfd allow-svi
!
hostname ME3600-BAT01-01
!
!
enable password 7 <removed>
!
aaa new-model
!
!
aaa authentication login default local
aaa authorization exec default local
!
!
!
!
!
aaa session-id common
clock timezone CET 1 0
ip routing
!
ip vrf Mgmt
rd 100:100
route-target export 100:100
route-target import 100:100
!
ip vrf PROVA
rd 37529:1
route-target export 37529:1
route-target import 37529:1
!
!
!
!
no ip domain lookup
ipv6 unicast-routing
!
!
mpls label protocol ldp
mpls ldp explicit-null
mpls ldp graceful-restart
mpls traffic-eng tunnels
mpls traffic-eng logging lsp setups
mpls traffic-eng logging lsp teardowns
mpls traffic-eng reoptimize timers frequency 3601
mpls traffic-eng reoptimize events link-up
!
mpls traffic-eng lsp attributes Tunnel1001
affinity 0x80000000 mask 0x80000000
bandwidth 0
!
mpls traffic-eng lsp attributes Tunnel1001_Backup
affinity 0x40000000 mask 0x40000000
bandwidth 0
!
mpls traffic-eng lsp attributes Tunnel11000
affinity 0x80000008 mask 0x80000008
bandwidth 0
!
mpls traffic-eng lsp attributes Tunnel11001
affinity 0x80000004 mask 0x80000004
bandwidth 0
!
mpls traffic-eng lsp attributes Tunnel11002
affinity 0x80000001 mask 0x80000001
bandwidth 0
!
mpls traffic-eng lsp attributes Tunnel11003
affinity 0x80000002 mask 0x80000002
bandwidth 0
!
mpls traffic-eng lsp attributes Tunnel3001
affinity 0x80000000 mask 0x80000000
bandwidth 0
!
mpls traffic-eng lsp attributes Tunnel3001_Principal
affinity 0x40000000 mask 0x40000000
bandwidth 0
xconnect logging pseudowire status
!
!
archive
path tftp://10.1.33.75/CORE/ME3600-BAT01-01-
write-memory
!
spanning-tree mode rapid-pvst
spanning-tree extend system-id
license udi pid ME-3600X-24FS-M sn FOC1705X0FP
license boot level AdvancedMetroIPAccess
license boot level AdvancedMetroIPAccess
diagnostic bootup level complete
username noc_gitge privilege 5 password 7 <removed>
username noc_wapop privilege 5 password 7 <removed>
username adminwapop privilege 15 password 7 <removed>
username admin privilege 15 secret 5 <removed>
!
!
!
!
!
transceiver type all
monitoring
vlan internal allocation policy ascending
!
vlan 10,100-104,109,116-117,122,202,500,555,999,1103
!
vlan 2001
name GE-IX
!
vlan 3901,3992
!
ip tftp source-interface GigabitEthernet0
!
class-map match-any Class_CustomerEgress
match precedence 4
class-map match-any Class_GecomsaPrioritarioCustomerEgress
match qos-group 99
class-map match-any Class_GecomsaPrioritarioNetworkIngress
match access-group 2000
class-map match-any Class_NetworkIngress
match mpls experimental topmost 4
match precedence 4
class-map match-any Class_CustomerIngress
match precedence 0 1 2 3
match precedence 4 5 6 7
class-map match-any Class_NetworkEgress
match precedence 4
match mpls experimental topmost 4
!
policy-map Policy_CustomerIngress_500Mbps
class Class_CustomerIngress
police cir 500000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerIngress_12Mbps
class Class_CustomerIngress
police cir 12000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerEgress_10Mbps
class Class_CustomerEgress
shape average 10000000
queue-limit 2048000 bytes
policy-map Policy_CustomerIngress_65Mbps
class Class_CustomerIngress
police cir 65000000
conform-action transmit
exceed-action drop
policy-map Policy_NetworkEgress
class Class_NetworkEgress
set mpls experimental topmost 4
class class-default
set mpls experimental topmost 0
policy-map Policy_CustomerIngress_24Mbps
class Class_CustomerIngress
police cir 24000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerIngress_54Mbps
class Class_CustomerIngress
police cir 54000000
conform-action transmit
exceed-action drop
policy-map Policy_CustomerEgress_100Mbps
class Class_CustomerEgress
shape average 100000000
queue-limit percent 100
policy-map Policy_CustomerEgress_48Mbps
class Class_CustomerEgress
shape average 48000000
queue-limit percent 100
policy-map Policy_CustomerIngress_48Mbps
class Class_CustomerIngress
police cir 48000000
conform-action transmit
exceed-action drop
policy-map GecomsaCustomerEgressHierarchicalQoS
class Class_GecomsaPrioritarioCustomerEgress
priority
queue-limit percent 100
class Class_CustomerEgress
bandwidth remaining percent 25
queue-limit percent 100
policy-map GecomsaGlobal54MbpsCustomerEgress
class class-default
shape average 54000000
service-policy GecomsaCustomerEgressHierarchicalQoS
policy-map GecomsaGlobal55MbpsCustomerEgress
class class-default
shape average 55000000
service-policy GecomsaCustomerEgressHierarchicalQoS
policy-map Policy_CustomerEgress_40Mbps
class Class_CustomerEgress
shape average 40000000
queue-limit percent 100
policy-map Policy_CustomerEgress_65Mbps
class Class_CustomerEgress
shape average 65000000
queue-limit percent 100
policy-map Policy_CustomerIngress_100Mbps
class Class_CustomerIngress
police cir 100000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerEgress_50Mbps
class Class_CustomerEgress
shape average 50000000
queue-limit percent 100
policy-map Policy_CustomerEgress_1Mbps
class Class_CustomerEgress
shape average 1000000
queue-limit 2048000 bytes
policy-map Policy_CustomerIngress_90Mbps
class Class_CustomerIngress
police cir 90000000
conform-action transmit
exceed-action drop
policy-map Policy_CustomerEgress_20Mbps
class Class_CustomerEgress
shape average 20000000
queue-limit 2048000 bytes
policy-map GecomsaGlobal90MbpsCustomerEgress
class class-default
shape average 90000000
service-policy GecomsaCustomerEgressHierarchicalQoS
policy-map Policy_CustomerEgress_200Mbps
class Class_CustomerEgress
shape average 200000000
queue-limit percent 100
policy-map Policy_CustomerEgress_30Mbps
class Class_CustomerEgress
shape average 30000000
queue-limit 2048000 bytes
policy-map Policy_CustomerIngress_55Mbps
class Class_CustomerIngress
police cir 55000000
conform-action transmit
exceed-action drop
policy-map Policy_CustomerEgress_80Mbps
class Class_CustomerEgress
shape average 80000000
queue-limit percent 100
policy-map Policy_CustomerIngress_8Mbps
class Class_CustomerIngress
police cir 8000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerEgress_NoControl
class Class_CustomerEgress
policy-map Policy_CustomerIngress_40Mbps
class Class_CustomerIngress
police cir 40000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerIngress_NoControl
class Class_CustomerIngress
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerIngress_200Mbps
class Class_CustomerIngress
police cir 200000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerEgress_8Mbps
class Class_CustomerEgress
shape average 8000000
queue-limit 512000 bytes
policy-map Policy_CustomerIngress_50Mbps
class Class_CustomerIngress
police cir 50000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerIngress_80Mbps
class Class_CustomerIngress
police cir 80000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerIngress_20Mbps
class Class_CustomerIngress
police cir 20000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerIngress_30Mbps
class Class_CustomerIngress
police cir 30000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_NetworkIngress
class Class_GecomsaPrioritarioNetworkIngress
set qos-group 99
class Class_NetworkIngress
class class-default
policy-map Policy_CustomerEgress_14Mbps
class Class_CustomerEgress
shape average 14400000
queue-limit 2048000 bytes
policy-map Policy_CustomerEgress_500Mbps
class Class_CustomerEgress
shape average 500000000
queue-limit percent 100
policy-map Policy_CustomerIngress_14Mbps
class Class_CustomerIngress
police cir 14400000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerIngress_220Mbps
class Class_CustomerIngress
police cir 220000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerEgress_12Mbps
class Class_CustomerEgress
shape average 12000000
queue-limit 2048000 bytes
policy-map Policy_CustomerEgress_24Mbps
class Class_CustomerEgress
shape average 24000000
queue-limit 2048000 bytes
policy-map GecomsaGlobal65MbpsCustomerEgress
class class-default
shape average 65000000
service-policy GecomsaCustomerEgressHierarchicalQoS
policy-map GecomsaGlobal45MbpsCustomerEgress
class class-default
shape average 45000000
service-policy GecomsaCustomerEgressHierarchicalQoS
policy-map Policy_CustomerEgress_220Mbps
class Class_CustomerEgress
shape average 220000000
queue-limit percent 100
policy-map Policy_CustomerIngress_1Mbps
class Class_CustomerIngress
police cir 1000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
policy-map Policy_CustomerEgress_45Mbps
class Class_CustomerEgress
shape average 45000000
queue-limit percent 100
policy-map Policy_CustomerIngress_45Mbps
class Class_CustomerIngress
police cir 45000000
conform-action transmit
exceed-action drop
policy-map Policy_CustomerIngress_10Mbps
class Class_CustomerIngress
police cir 10000000
conform-action transmit
exceed-action drop
set mpls experimental imposition 4
set precedence 4
!
pseudowire-class ME3600-BAT01-01-C7600-BAT01-01
encapsulation mpls
preferred-path interface Tunnel1001
!
pseudowire-class ME3600-BAT01-01-ME3600-MLB01-01
encapsulation mpls
preferred-path interface Tunnel3001
!
pseudowire-class ME3600-BAT01-01-C7600-LIS01-01
encapsulation mpls
preferred-path interface Tunnel11001
!
l2 router-id 197.214.64.3
l2 vfi GE-IX manual
vpn id 2001
neighbor 197.214.64.2 pw-class ME3600-BAT01-01-C7600-BAT01-01
!
!
!
!
!
!
!
!
!
!
interface Loopback1
description Interfaz de Sistema
ip address 197.214.64.3 255.255.255.255
ip rsvp bandwidth percent 100
!
interface Loopback37529
ip vrf forwarding PROVA
ip address 192.168.3.3 255.255.255.255
!
interface Tunnel1001
description Tunnel a C7600-BAT01-01
ip unnumbered Loopback1
tunnel mode mpls traffic-eng
tunnel destination 197.214.64.2
tunnel mpls traffic-eng path-option 10 dynamic attributes Tunnel1001
tunnel mpls traffic-eng path-option 20 dynamic attributes Tunnel1001_Backup
!
interface Tunnel3001
description Tunnel a ME3600-MLB01-01
ip unnumbered Loopback1
tunnel mode mpls traffic-eng
tunnel destination 197.214.64.5
tunnel mpls traffic-eng path-option 10 dynamic attributes Tunnel3001_Principal
tunnel mpls traffic-eng path-option 20 dynamic attributes Tunnel3001
!
interface Tunnel11001
description Tunnel a C7609-LIS01-01
ip unnumbered Loopback1
tunnel mode mpls traffic-eng
tunnel destination 197.214.64.1
tunnel mpls traffic-eng path-option 10 dynamic attributes Tunnel11000
tunnel mpls traffic-eng path-option 20 dynamic attributes Tunnel11002
tunnel mpls traffic-eng path-option 30 dynamic attributes Tunnel11003
!
interface GigabitEthernet0
ip vrf forwarding Mgmt
ip address 10.146.33.176 255.255.255.128
speed auto
duplex auto
negotiation auto
!
interface GigabitEthernet0/1
description Acceso Internet 8M Vicepresidencia-2
no switchport
mtu 9000
ip address 197.214.64.148 255.255.255.254
load-interval 30
no cdp enable
service-policy input Policy_CustomerIngress_8Mbps
service-policy output Policy_CustomerEgress_8Mbps
!
interface GigabitEthernet0/2
description ASG-BAT-TEV-IPT-12M-01
switchport trunk allowed vlan none
switchport mode trunk
mtu 9000
load-interval 30
service instance 202 ethernet
encapsulation default
service-policy input Policy_CustomerIngress_12Mbps
service-policy output Policy_CustomerEgress_12Mbps
bridge-domain 202
!
service instance 3901 ethernet
encapsulation dot1q 3901
rewrite ingress tag pop 1 symmetric
l2protocol peer cdp
bridge-domain 3901
!
!
interface GigabitEthernet0/3
description GEC-BAT-TEV-DIA-65M-01
switchport trunk allowed vlan none
switchport mode trunk
mtu 9000
load-interval 30
service instance 103 ethernet
encapsulation default
l2protocol peer cdp
service-policy input Policy_CustomerIngress_65Mbps
service-policy output GecomsaGlobal65MbpsCustomerEgress
bridge-domain 103
!
service instance 3901 ethernet
encapsulation dot1q 3901
rewrite ingress tag pop 1 symmetric
bridge-domain 3901
!
!
interface GigabitEthernet0/4
description CCE-BAT-MBO-1M-001
switchport trunk allowed vlan none
switchport mode trunk
mtu 9000
load-interval 30
service instance 104 ethernet
encapsulation default
l2protocol peer cdp
service-policy input Policy_CustomerIngress_1Mbps
service-policy output Policy_CustomerEgress_1Mbps
bridge-domain 104
!
service instance 3901 ethernet
encapsulation dot1q 3901
rewrite ingress tag pop 1 symmetric
l2protocol peer cdp
bridge-domain 3901
!
!
interface GigabitEthernet0/5
description GUINEANET GE-IX
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
load-interval 30
service instance 2001 ethernet
encapsulation default
bridge-domain 2001
!
!
interface GigabitEthernet0/6
description ZTE-BNP-BAT-10M-001
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
load-interval 30
no cdp enable
service instance 119 ethernet
encapsulation default
service-policy input Policy_CustomerIngress_10Mbps
service-policy output Policy_CustomerEgress_10Mbps
xconnect 197.214.66.2 119 encapsulation mpls
!
!
interface GigabitEthernet0/7
mtu 9000
load-interval 30
shutdown
no cdp enable
!
interface GigabitEthernet0/8
description GET-MBO-BAT-500M-001
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
load-interval 30
no cdp enable
service instance 502 ethernet
encapsulation default
l2protocol tunnel
service-policy input Policy_CustomerIngress_500Mbps
service-policy output Policy_CustomerEgress_500Mbps
xconnect 197.214.64.5 502 encapsulation mpls
!
!
interface GigabitEthernet0/9
description Serveis Ethernet natiu
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
load-interval 30
shutdown
no cdp enable
service instance 109 ethernet
encapsulation default
service-policy input Policy_CustomerIngress_100Mbps
service-policy output Policy_CustomerEgress_100Mbps
bridge-domain 117
!
!
interface GigabitEthernet0/10
description CANIGE-BAT-DIA-VPLS-20Mb
switchport trunk allowed vlan none
switchport mode trunk
mtu 9000
load-interval 30
no cdp enable
service instance 122 ethernet
encapsulation default
l2protocol peer cdp
service-policy input Policy_CustomerIngress_20Mbps
service-policy output Policy_CustomerEgress_20Mbps
bridge-domain 122
!
service instance 3901 ethernet
encapsulation dot1q 3901
rewrite ingress tag pop 1 symmetric
bridge-domain 3901
!
!
interface GigabitEthernet0/11
description test
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
load-interval 30
no cdp enable
service instance 116 ethernet
description test
encapsulation default
bridge-domain 116
!
!
interface GigabitEthernet0/12
description MU-EP2P-MLB-BAT-200M-001
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
load-interval 30
no cdp enable
service instance 112 ethernet
encapsulation default
service-policy input Policy_CustomerIngress_200Mbps
service-policy output Policy_CustomerEgress_200Mbps
xconnect 197.214.64.5 801 encapsulation mpls pw-class
ME3600-BAT01-01-ME3600-MLB01-01
!
!
interface GigabitEthernet0/13
description ASG-EP2P-MLB-BAT-12M-001
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
load-interval 30
service instance 106 ethernet
encapsulation default
l2protocol peer cdp
service-policy input Policy_CustomerIngress_12Mbps
service-policy output Policy_CustomerEgress_12Mbps
xconnect 197.214.64.5 701 encapsulation mpls pw-class
ME3600-BAT01-01-ME3600-MLB01-01
!
service instance 3901 ethernet
encapsulation dot1q 3901
rewrite ingress tag pop 1 symmetric
l2protocol peer cdp
bridge-domain 3901
!
!
interface GigabitEthernet0/14
mtu 9000
shutdown
no cdp enable
!
interface GigabitEthernet0/15
description INS-MLB-BAT-ETH-10M-01
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
load-interval 30
no cdp enable
service instance 109 ethernet
encapsulation default
l2protocol forward cdp
service-policy input Policy_CustomerIngress_10Mbps
service-policy output Policy_CustomerEgress_10Mbps
xconnect 197.214.64.5 109 encapsulation mpls pw-class
ME3600-BAT01-01-ME3600-MLB01-01
!
!
interface GigabitEthernet0/16
description Prova Pseudowire Malabo - Bata
switchport access vlan 555
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
load-interval 30
shutdown
no cdp enable
service instance 116 ethernet
encapsulation default
xconnect 197.214.64.11 1001 encapsulation mpls
!
!
interface GigabitEthernet0/17
no switchport
mtu 9000
no ip address
shutdown
no cdp enable
!
interface GigabitEthernet0/18
description Nagios Bata - Proves Iperf
switchport trunk allowed vlan none
switchport mode trunk
mtu 9000
shutdown
!
interface GigabitEthernet0/19
description Gproyectos
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
load-interval 30
service instance 113 ethernet
description GPR-MLB-BAT-EP2P-10M
encapsulation default
l2protocol peer cdp
service-policy input Policy_CustomerIngress_10Mbps
service-policy output Policy_CustomerEgress_10Mbps
xconnect 197.214.64.5 113 encapsulation mpls
!
service instance 3901 ethernet
encapsulation dot1q 3901
rewrite ingress tag pop 1 symmetric
bridge-domain 3901
!
!
interface GigabitEthernet0/20
description Link to c2960 - Proves
switchport trunk allowed vlan none
switchport mode trunk
mtu 1900
shutdown
no cdp enable
service instance 200 ethernet
encapsulation dot1q 200
rewrite ingress tag pop 1 symmetric
xconnect 197.214.64.5 1200 encapsulation mpls pw-class
ME3600-BAT01-01-ME3600-MLB01-01
!
!
interface GigabitEthernet0/21
description Conexion a ME3600-MLB01-01 G0/21
no switchport
dampening
mtu 2000
ip address 192.168.0.2 255.255.255.252
ip ospf network point-to-point
ip ospf bfd disable
load-interval 30
carrier-delay msec 0
shutdown
udld port aggressive
keepalive 10
bfd interval 100 min_rx 100 multiplier 10
service-policy input Policy_NetworkIngress
service-policy output Policy_NetworkEgress
!
interface GigabitEthernet0/22
description Conexion a ME3600-MLB01-01 G0/22
no switchport
mtu 2000
no ip address
ip ospf network point-to-point
load-interval 30
shutdown
udld port aggressive
mpls ip
mpls traffic-eng tunnels
mpls traffic-eng attribute-flags 0x8000000F
keepalive 10
service-policy input Policy_NetworkIngress
service-policy output Policy_NetworkEgress
ip rsvp bandwidth percent 100
!
interface GigabitEthernet0/23
description conexion a c7609-BAT01-01-G8/10
no switchport
mtu 2000
no ip address
!
interface GigabitEthernet0/24
description Link a C7609-BAT01-01
no switchport
mtu 9216
ip address 197.214.64.25 255.255.255.254
ip ospf network point-to-point
load-interval 30
mpls ip
mpls traffic-eng tunnels
mpls traffic-eng attribute-flags 0x8000000F
service-policy input Policy_NetworkIngress
service-policy output Policy_NetworkEgress
ip rsvp bandwidth percent 100
!
interface TenGigabitEthernet0/1
description Conexion a ME3600-MLB01-01 T0/1
no switchport
mtu 2000
ip address 197.214.64.36 255.255.255.254
ip ospf network point-to-point
load-interval 30
udld port aggressive
mpls ip
mpls traffic-eng tunnels
mpls traffic-eng attribute-flags 0x8000000F
keepalive 10
no cdp enable
service-policy input Policy_NetworkIngress
service-policy output Policy_NetworkEgress
ip rsvp bandwidth percent 100
!
interface TenGigabitEthernet0/2
description Link a ME3600-BAT01-TEST
no cdp enable
!
interface Vlan1
no ip address
shutdown
!
interface Vlan103
description GEC-BAT-TEV-DIA-65M-01
mtu 9000
ip address 197.214.64.173 255.255.255.252
!
interface Vlan104
description CCE-BAT-MBO-10M-001
mtu 1900
no ip address
xconnect 197.214.64.5 601 encapsulation mpls pw-class
ME3600-BAT01-01-ME3600-MLB01-01
!
interface Vlan113
no ip address
!
interface Vlan116
ip address 197.214.67.37 255.255.255.252
!
interface Vlan122
description CANIGE-BAT-DIA-VPLS-20Mb
mtu 9000
ip address 197.214.64.138 255.255.255.254
!
interface Vlan202
description ASG-BAT-TEV-IPT-12M-01
mtu 9000
ip address 197.214.64.154 255.255.255.254
!
interface Vlan555
ip address 192.168.1.1 255.255.255.252
!
interface Vlan999
description pruebas
no ip address
!
interface Vlan2001
description GE-IX
mtu 1900
no ip address
load-interval 30
xconnect vfi GE-IX
!
interface Vlan3901
description Interface Gestion CPE
ip vrf forwarding Mgmt
ip address 10.147.33.1 255.255.255.0
!
router ospf 37529
router-id 197.214.64.3
auto-cost reference-bandwidth 10000
redistribute connected subnets route-map PermiteInfraestructura
network 197.214.64.24 0.0.0.1 area 0
network 197.214.64.36 0.0.0.1 area 0
network 197.214.64.56 0.0.0.1 area 0
mpls traffic-eng router-id Loopback1
mpls traffic-eng area 0
!
router bgp 37529
bgp router-id 197.214.64.3
bgp log-neighbor-changes
bgp graceful-restart restart-time 120
bgp graceful-restart stalepath-time 360
bgp graceful-restart
no bgp default ipv4-unicast
neighbor 197.214.64.2 remote-as 37529
neighbor 197.214.64.2 update-source Loopback1
!
address-family ipv4
redistribute connected route-map BloqueaInfraestructura
redistribute static route-map BloqueaInfraestructura
neighbor 197.214.64.2 activate
neighbor 197.214.64.2 send-community
neighbor 197.214.64.2 next-hop-self
neighbor 197.214.64.2 soft-reconfiguration inbound
exit-address-family
!
address-family vpnv4
neighbor 197.214.64.2 activate
neighbor 197.214.64.2 send-community extended
neighbor 197.214.64.2 next-hop-self
exit-address-family
!
address-family ipv4 vrf Mgmt
redistribute connected
exit-address-family
!
address-family ipv4 vrf PROVA
redistribute connected
exit-address-family
!
ip forward-protocol nd
!
ip bgp-community new-format
no ip http server
no ip http secure-server
ip rsvp signalling hello graceful-restart mode help-neighbor
ip route 197.214.64.224 255.255.255.224 197.214.64.174
ip route vrf Mgmt 10.1.33.0 255.255.255.0 10.146.33.175 100
ip route vrf Mgmt 10.146.33.69 255.255.255.255 10.146.33.129
ip route vrf Mgmt 10.146.33.75 255.255.255.255 10.146.34.176
!
ip access-list standard SNMP_ACCESS
permit 105.235.226.74
permit 197.214.64.177
permit 10.0.0.0 0.255.255.255
permit 105.235.226.0 0.0.0.255
!
ip access-list extended Proteccion_VrfMGMT_CCEIBank
permit icmp any any
permit udp any eq snmp any
permit udp any eq snmptrap any
permit udp any any eq tftp
deny udp any any
permit tcp any any eq telnet
permit tcp any any ack
deny tcp any any syn
permit ip any any
!
!
ip prefix-list Infraestructura seq 5 permit 197.214.64.0/25 le 32
!
ip prefix-list Infraestructura-gestion seq 5 permit 10.0.0.0/8 le 32
logging alarm minor
logging trap debugging
logging host 10.1.33.75 vrf Mgmt
logging host 10.146.33.75 vrf Mgmt
access-list 99 remark PermisosAccesoTelnet
access-list 99 permit 10.1.33.0 0.0.0.255
access-list 99 permit 10.146.33.0 0.0.0.255
access-list 99 permit 197.214.64.0 0.0.0.127
access-list 99 permit 10.188.188.0 0.0.0.255
access-list 99 permit 10.146.34.0 0.0.0.255
access-list 2000 permit ip any host 197.214.64.233
access-list 2000 deny ip any any
!
route-map BloqueaInfraestructura deny 10
match ip address prefix-list Infraestructura
!
route-map BloqueaInfraestructura permit 20
!
route-map PermiteInfraestructura permit 10
match ip address prefix-list Infraestructura
!
route-map PermiteInfraestructura deny 20
!
route-map ExportMgmt permit 10
match source-protocol connected
!
route-map ExportMgmt permit 20
match source-protocol static
!
route-map BloqueaInfraestructura-gestion deny 10
match ip address prefix-list Infraestructura-gestion
!
route-map BloqueaInfraestructura-gestion permit 20
!
mpls ldp router-id Loopback1 force
!
tftp-server nvram:startup-config 99
snmp-server community <removed> RO SNMP_ACCESS
snmp-server community <removed> RW SNMP_ACCESS
snmp-server trap-source GigabitEthernet0
snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart
snmp-server enable traps tty
snmp-server enable traps ospf state-change if-state-change neighbor-state-change
snmp-server enable traps bgp state-changes all
snmp-server enable traps config
snmp-server enable traps entity
snmp-server enable traps envmon fan shutdown supply temperature status
snmp-server enable traps mpls ldp session-up session-down
snmp-server enable traps mpls traffic-eng
snmp-server enable traps pw vc
snmp-server enable traps alarms informational
snmp-server host 10.1.33.75 vrf Mgmt <removed>
snmp-server host 10.146.33.75 vrf Mgmt <removed>
snmp-server host 197.214.64.190 <removed>
snmp-server context vlan-1
snmp-server context vlan-10
snmp-server context vlan-100
snmp-server context vlan-101
snmp-server context vlan-102
snmp-server context vlan-103
snmp-server context vlan-104
snmp-server context vlan-109
snmp-server context vlan-116
snmp-server context vlan-117
snmp-server context vlan-122
snmp-server context vlan-202
snmp-server context vlan-500
snmp-server context vlan-555
snmp-server context vlan-999
snmp-server context vlan-1103
snmp-server context vlan-2001
snmp-server context vlan-3901
snmp-server context vlan-3992
!
!
!
control-plane
!
privilege exec level 5 show startup-config
privilege exec level 5 show logging
privilege exec level 5 show
banner login ^CCC
********************************************************************************
*********** Warning!!!! *************
***** Access to this computer system is limited to authorized users only ******
********************************************************************************
^C
!
line con 0
line vty 0 4
access-class 99 in vrf-also
privilege level 15
password 7 <removed>
transport input telnet
line vty 5 15
!
exception crashinfo file flash:crashinfo
ntp source GigabitEthernet0
ntp server vrf Mgmt 10.146.33.175
!
end
_______________________________________________
cisco-nsp mailing list [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/