Re: [vpp-dev] how to enable dpdk log

2018-10-01 Thread Eason Chen
Thank you Damjan!


--
Sender:Damjan Marion via Lists.Fd.Io 
Sent at:2018 Oct 2 (Tue) 05:00
To:Eason Chen 
Cc:vpp-dev 
Subject:Re: [vpp-dev] how to enable dpdk log


On 29 Sep 2018, at 02:53, Eason Chen  wrote:
Hi,

I am trying to open dpdk log (based on VPP upstream code), 
but I cannot see any dpdk log output in /var/log/vpp/vpp.log 
after adding "log-level debug" in dpdk section of startup.conf.

You can see dpdk log with  "show log" debug cli.

-- 
Damjan



-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#10728): https://lists.fd.io/g/vpp-dev/message/10728
Mute This Topic: https://lists.fd.io/mt/26387917/21656
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-


[vpp-dev] WRED

2018-10-01 Thread brendanakelly via Lists.Fd.Io
I am looking to setup vpp with WRED.  I am not sure how the WRED profiles are 
configured.  I have hqos with 2 interfaces working in a bridge-domain and now 
want to enable WRED. 

My overall goal is to simulate the Linux tc "traffic control" application to 
run impairments such as delay and packet loss.
-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#10727): https://lists.fd.io/g/vpp-dev/message/10727
Mute This Topic: https://lists.fd.io/mt/26596674/21656
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-


Re: [vpp-dev] how to enable dpdk log

2018-10-01 Thread Damjan Marion via Lists.Fd.Io

> On 29 Sep 2018, at 02:53, Eason Chen  wrote:
> 
> Hi,
> 
> I am trying to open dpdk log (based on VPP upstream code),
> but I cannot see any dpdk log output in /var/log/vpp/vpp.log
> after adding "log-level debug" in dpdk section of startup.conf.


You can see dpdk log with  "show log" debug cli.

-- 
Damjan


-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#10726): https://lists.fd.io/g/vpp-dev/message/10726
Mute This Topic: https://lists.fd.io/mt/26387917/21656
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-


Re: [vpp-dev] "Incompatible UPT version” error when running VPP v18.01 with DPDK v17.11 on VMWare with VMXNET3 interface ,ESXI Version 6.5/6.7

2018-10-01 Thread steven luong via Lists.Fd.Io
DPDK is expecting UPT version > 0 and ESXi 6.5/6.7 seems to be returning UPT 
version 0, when it was queried, which is not a supported version. I am using 
ESXi 6.0 and it is working fine. You could try ESXi 6.0 to see if it helps.

Steven

From:  on behalf of truring truring 
Date: Monday, October 1, 2018 at 10:12 AM
To: "vpp-dev@lists.fd.io" 
Subject: [vpp-dev] "Incompatible UPT version” error when running VPP v18.01 
with DPDK v17.11 on VMWare with VMXNET3 interface ,ESXI Version 6.5/6.7

Hi Everyone,

We're trying to run VPP-18.01 with DPDK plugin in a guest machine running Red 
Hat 7.5. The host is ESXi version 6.5/6.7.

guest machine have VMXNET3 Interface ,i am getting following error while 
running the vpp :

PMD: eth_vmxnet3_dev_init():  >>

PMD: eth_vmxnet3_dev_init(): Hardware version : 1

PMD: eth_vmxnet3_dev_init(): Using device version 1



PMD: eth_vmxnet3_dev_init(): UPT hardware version : 0

PMD: eth_vmxnet3_dev_init(): Incompatible UPT version.



Any help to resolve above issue would be greatly appreciated. Thanks!



Regards
Puneet

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#10725): https://lists.fd.io/g/vpp-dev/message/10725
Mute This Topic: https://lists.fd.io/mt/26443715/21656
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-


Re: [**EXTERNAL**] Fwd: [vpp-dev] Failing to create untagged sub-interface

2018-10-01 Thread Bly, Mike
Neale, et al,

Please find the following patch. https://gerrit.fd.io/r/#/c/15086/

My previous regression errors were operator error. Same results w/ and w/o this 
patch.

-Mike
-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#10724): https://lists.fd.io/g/vpp-dev/message/10724
Mute This Topic: https://lists.fd.io/mt/25812529/21656
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-


[vpp-dev] "Incompatible UPT version” error when running VPP v18.01 with DPDK v17.11 on VMWare with VMXNET3 interface ,ESXI Version 6.5/6.7

2018-10-01 Thread truring truring
Hi Everyone,

We're trying to run VPP-18.01 with DPDK plugin in a guest machine running
Red Hat 7.5. The host is ESXi version 6.5/6.7.

guest machine have VMXNET3 Interface ,i am getting following error while
running the vpp :

PMD: eth_vmxnet3_dev_init():  >>

PMD: eth_vmxnet3_dev_init(): Hardware version : 1

PMD: eth_vmxnet3_dev_init(): Using device version 1



PMD: eth_vmxnet3_dev_init(): UPT hardware version : 0

PMD: eth_vmxnet3_dev_init(): Incompatible UPT version.



Any help to resolve above issue would be greatly appreciated. Thanks!



Regards
Puneet
-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#10723): https://lists.fd.io/g/vpp-dev/message/10723
Mute This Topic: https://lists.fd.io/mt/26443715/21656
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-


Re: [vpp-dev] CSIT IPsec AES-GCM 128 tests failing

2018-10-01 Thread Radu Nicolau
This should fix it: https://gerrit.fd.io/r/#/c/15078/


From: vpp-dev@lists.fd.io [mailto:vpp-dev@lists.fd.io] On Behalf Of Peter Mikus 
via Lists.Fd.Io
Sent: Wednesday, September 26, 2018 11:27 AM
To: Nicolau, Radu 
Cc: vpp-dev@lists.fd.io
Subject: Re: [vpp-dev] CSIT IPsec AES-GCM 128 tests failing



Peter Mikus
Engineer - Software
Cisco Systems Limited

From: Nicolau, Radu mailto:radu.nico...@intel.com>>
Sent: Tuesday, September 25, 2018 8:38 PM
To: Peter Mikus -X (pmikus - PANTHEON TECHNOLOGIES at Cisco) 
mailto:pmi...@cisco.com>>
Cc: Kinsella, Ray mailto:ray.kinse...@intel.com>>
Subject: RE: CSIT IPsec AES-GCM 128 tests failing

Hi Peter,

I'm traveling this week so I won't be able to have a look, but, can you help 
with some more info?


-  Is it happening consistently?

Yes


-  What is the output of show crypto device mapping [verbose]

$ sudo vppctl show int
  Name   IdxState  MTU (L3/IP4/IP6/MPLS) 
Counter  Count
FortyGigabitEthernet88/0/01  up  9200/0/0/0
FortyGigabitEthernet88/0/12  up  9200/0/0/0 rx packets  
   173678340
rx bytes
 10420700400
drops   
   173678340
ip4 
   173678340
rx-miss 
 737
ipsec03  up   0/0/0/0   tx-error
   173678340
local00 down  0/0/0/0

$ sudo vppctl show err
   CountNode  Reason
 167158808  ipsec0-output interface is down

It is not clear to me as why ipsec0 is up but error says interface down.

$ sudo vppctl show crypto
show: unknown input `crypto'

$ sudo vppctl show ipsec
tunnel interfaces
  ipsec0 seq
   seq 0 seq-hi 0 esn 0 anti-replay 0 udp-encap 0
   local-spi 1 local-ip 172.168.1.1
   local-crypto aes-gcm-128 70394d61596b657635793046705443744c45786c
   local-integrity none
   last-seq 0 last-seq-hi 0 esn 0 anti-replay 0 window 

   remote-spi 2 remote-ip 172.168.1.2
   remote-crypto aes-gcm-128 70394d61596b657635793046705443744c45786c
   remote-integrity none



-  What is the vpp version/commit id causing the issue?

Currently using vpp v18.10-rc0~465-gb7020d6~b5194 but I did not bisect, For 
sure it is broken for several weeks now.


Regards,
Radu

From: Peter Mikus -X (pmikus - PANTHEON TECHNOLOGIES at Cisco) 
[mailto:pmi...@cisco.com]
Sent: Tuesday, September 25, 2018 3:32 PM
To: vpp-dev@lists.fd.io; Nicolau, Radu 
mailto:radu.nico...@intel.com>>
Cc: csit-...@lists.fd.io
Subject: CSIT IPsec AES-GCM 128 tests failing

Hello devs,

We are observing IPSec failing tests in CSIT-perf, specially and only 
combination with aes-gcm (both interface AND tunnel mode, Integ Alg AES GCM 
128).
Note: Integ Alg SHA1 96, is working.

Can you please help decrypt the error message below?

Thank you.


VAT error message (on both DUTs)
-
sw_interface_set_flags error: Unspecified Error


-Note: This error is happening when trying to get interface UP.

DUT1 config
---

sw_interface_set_flags sw_if_index 2 admin-up link-up
sw_interface_set_flags sw_if_index 1 admin-up link-up
sw_interface_dump
hw_interface_set_mtu sw_if_index 2 mtu 9200
hw_interface_set_mtu sw_if_index 1 mtu 9200
sw_interface_dump
sw_interface_add_del_address sw_if_index 2 192.168.10.1/24
sw_interface_add_del_address sw_if_index 1 172.168.1.1/24
ip_neighbor_add_del sw_if_index 2 dst 192.168.10.2 mac 68:05:ca:35:79:1c
ip_neighbor_add_del sw_if_index 1 dst 172.168.1.2 mac 68:05:ca:35:76:b1
ip_add_del_route 10.0.0.0/8 via 192.168.10.2  sw_if_index 2 resolve-attempts 10 
count 1
ipsec_tunnel_if_add_del local_spi 1 remote_spi 2 crypto_alg aes-gcm-128 
local_crypto_key 4e4d444178336b4958744a374365356235643545 remote_crypto_key 
4e4d444178336b4958744a374365356235643545  local_ip 172.168.1.1 remote_ip 
172.168.1.2
ip_add_del_route 20.0.0.0/32 via 172.168.1.2 ipsec0
exec set interface unnumbered ipsec0 use FortyGigabitEthernet88/0/0
sw_interface_set_flags ipsec0 admin-up


DUT2 config
---
sw_interface_set_flags sw_if_index 2 admin-up link-up
sw_interface_set_flags sw_if_index 1 admin-up link-up
sw_interface_dump
hw_interface_set_mtu sw_if_index 2 mtu 9200
hw_interface_set_mtu sw_if_index 1 mtu 9200
sw_interface_dump
sw_interface_add_del_address sw_if_index 2 172.168.1.2/24
sw_interface_add_del_address sw_if_index 1 192.168.20.1/24
ip_neighbor_add_del sw_if_index 1 dst 192.168.20.2 mac 68:05:ca:35:79:19
ip_neighbor_add_del sw_if_index 2 dst 172.168.1.1 mac 

[vpp-dev] FD.io talks at ONS EU in AMS last week

2018-10-01 Thread Maciek Konstantynowicz (mkonstan) via Lists.Fd.Io
FYI, here are the Compressed PDF copies of slides presented at EU Open Network 
Summit in Amsterday.
Some material has been out there but got adopted. Some is nett new, produced by 
speakers/authors.
On-site response was good, let’s see what the survey says.. if we ever see the 
results.
If we’re not invited back we will know though ;)

Posted on FD.io presentations side:

1. Accelerate the Development of Cloud-native VNFs - Giles Heron & Maciek 
Konstantynowicz, Cisco
  Material by: Giles, Maciek, Damjan Marion et al.
  Wednesday, September 26 • 13:50 - 14:20
  https://onseu18.sched.com/event/GwE9
  https://wiki.fd.io/view/File:Ons_eu_cloud_native_vnfs_26sep2018-pdf-min.pdf

2. High Performance Cloud Native Networking: K8s Unleashing FD.io - Maciek 
Konstantynowicz & Giles Heron, Cisco 
  Material by: Giles, Maciek, Jerome Tollet et al.
  Thursday, September 27 • 13:50 - 14:20
  https://onseu18.sched.com/event/Fms5
  
https://wiki.fd.io/view/File:Ons_eu_k8s_unleashing_fdio_27sep2018-fdio-pdf-min.pdf

Both linked from main FD.io presentations wiki:
  https://wiki.fd.io/view/Presentations (scroll to bottom of the table)

Cheers,
-Maciek

-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#10721): https://lists.fd.io/g/vpp-dev/message/10721
Mute This Topic: https://lists.fd.io/mt/26441707/21656
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-


Re: [vpp-dev] Question about ip4(6)-glean node behavior and packet drops

2018-10-01 Thread Dave Barach via Lists.Fd.Io
IOS Classic, IOS XR, and NXOS behave slightly differently under the covers. To 
avoid disclosing trade secrets, I can’t go into the minutiae.

VPP uses buffers which hit glean adjacencies – e.g. an ip4 icmp echo request – 
to manufacture the outbound neighbor discovery packet (e.g. ip4 arp request).

D.

From: Burt Silverman 
Sent: Sunday, September 30, 2018 9:36 PM
To: Dave Barach (dbarach) 
Cc: ru...@microsoft.com; vpp-dev 
Subject: Re: [vpp-dev] Question about ip4(6)-glean node behavior and packet 
drops

I read that a traditional Cisco CEF router behaves as follows:

"When the ping process tries to send the first packet and does not see an ARP 
entry, it initiates an ARP request. It continues to try to send the packet, and 
then drops the packet after a defined wait period. When an ARP response is 
received and the ARP entry is completed using a background process, the ping 
success rate is 100 percent."

Is that the same exact thing that happens with VPP? It is difficult for me to 
be certain. For example, it seems that if (in the traditional CEF router) the 
predefined wait period was set long enough (longer than the ARP processing 
time) then all the ping packets would be forwarded. That's not what they show 
in the text, though, at 
https://www.cisco.com/c/en/us/support/docs/ip/express-forwarding-cef/17812-cef-incomp.html#t4

Burt

On Fri, Sep 28, 2018 at 5:53 PM Dave Barach via Lists.Fd.Io 
mailto:cisco@lists.fd.io>> wrote:
This is deliberate, traditional router behavior.

Alternatives involving queueing packets for reinjection after glean resolution 
events give rise to resource exhaustion attacks. Mitigating that kind of attack 
burns clock cycles, which in turn gives rise to a different kind of attack.

HTH... Dave

From: vpp-dev@lists.fd.io 
mailto:vpp-dev@lists.fd.io>> On Behalf Of Rui Cai via 
Lists.Fd.Io
Sent: Friday, September 28, 2018 5:14 PM
To: vpp-dev@lists.fd.io
Cc: vpp-dev@lists.fd.io
Subject: [SUSPICIOUS] [vpp-dev] Question about ip4(6)-glean node behavior and 
packet drops

Hello VPP experts:

I have question about the behavior of ip4(6)-glean nodes. In particular, I’m 
noticing the node is dropping the original packet that triggered glean process. 
The VPP I’m running is 18.07 with DPDK 18.02.

I’m using VPP as a simple forwarding application where final destination’s MAC 
address is not known to VPP at the beginning. I’m sending IPv4 packet using 
scapy and for the 1st packet VPP receives, I see VPP redirects this packet to 
ip4-glean node where it will send an ARP request to learn forwarding 
destination’s MAC address. However, it appears the ip4-glean node will also 
drop my original packet that triggered this process. Is this an expected 
behavior?

If I keep deleting the arp entry of my final destination IP in VPP repeatedly 
(not that a normal application would keep doing this, but just for experiment), 
I see no packets reaching my final destination.

In general, is there some notion of “pending” packets in VPP? Like taking a 
packet out of current input vector and process such packet later, without 
blocking next input vectors getting generated?

Thanks a lot,
-Ray
-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#10711): https://lists.fd.io/g/vpp-dev/message/10711
Mute This Topic: https://lists.fd.io/mt/26380933/541103
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  
[bur...@gmail.com]
-=-=-=-=-=-=-=-=-=-=-=-
-=-=-=-=-=-=-=-=-=-=-=-
Links: You receive all messages sent to this group.

View/Reply Online (#10720): https://lists.fd.io/g/vpp-dev/message/10720
Mute This Topic: https://lists.fd.io/mt/26380933/21656
Group Owner: vpp-dev+ow...@lists.fd.io
Unsubscribe: https://lists.fd.io/g/vpp-dev/unsub  [arch...@mail-archive.com]
-=-=-=-=-=-=-=-=-=-=-=-