The OpenNET Project / Index page

[ новости /+++ | форум | теги | ]

форумы  помощь  поиск  регистрация  майллист  вход/выход  слежка  RSS
"Загрузка цпу на маршрутизаторах, потеря пакетов в сети"
Вариант для распечатки  
Пред. тема | След. тема 
Форум Маршрутизаторы CISCO и др. оборудование. (Диагностика и решение проблем)
Изначальное сообщение [ Отслеживать ]

"Загрузка цпу на маршрутизаторах, потеря пакетов в сети"  +/
Сообщение от timofey (ok) on 04-Окт-11, 14:47 
Всем доброго дня.

Была сеть с ядром C6509, уровнем распределения на C3750 и уровнем доступа на C2960, C2950.

Около полугода назад в сеть был включен новый сегмент с ещё двумя С6509 с настроенным redundancy. Активный из двух новых 6509 используется как обычный маршрутизатор (то есть на нём нет модуля fwsm, он не является vtp сервером и т.д.). Весь уровень доступа в этом сегменте подключен напрямую к обоим шеститонникам по оптике, интерфейсы объединены порт-ченнелами.

Все сервисы (dhcp, dns, ldap, opManager и т.д.) находятся в старом сегменте.

Старый и новый сегменты соединены двумя оптическими каналами, объединёнными в один port-channel.

Когда сеть сдали, в новом сегменте появилась первая проблема: некоторые рабочие станции не могли взять адрес у dhcp. На самом же dhcp писалось BAD_ADDRESS. Пробовал подключать эти рабочие станции в обход новых шеститонников, ошибка отсутствовала.

Сейчас же (через полгода) началось следующее: сначала клиенты одной подсети каким-то образом начали оказываться в другой подсети (подсетей всего около тридцати). Дальше по нарастающей пошли потери пакетов при переходе из одной подсети в другую. Отлючил один новый шеститонник, после чего все маршрутизаторы и свитчи в сети загрузили свои ЦПУ на 90 процентов и перестали отвечать. Иногда бывает окно часа в 2, когда загрузка ЦПУ в районе 40 процентов, тогда сеть оживает. В остальное время лежит.

STP включен.

Смотрел логи FWSM - там всё в норме.

Грешу на петли, но не должен ли STP их отслеживать и отключать?
Кто сталкивался с подобным, подскажите, пожалуйста, в каком направлении копать.
Любые требуемые конфиги покажу, сейчас ничего не прикладываю, потому что не знаю, что надо.

С уважением,

Тимофей Цицилин.

Ответить | Правка | Cообщить модератору

Оглавление

Сообщения по теме [Сортировка по времени | RSS]


1. "Загрузка цпу на маршрутизаторах, потеря пакетов в сети"  +/
Сообщение от Aleks305 (ok) on 04-Окт-11, 15:17 
>[оверквотинг удален]
> Около полугода назад в сеть был включен новый сегмент с ещё двумя
> С6509 с настроенным redundancy. Активный из двух новых 6509 используется как
> обычный маршрутизатор (то есть на нём нет модуля fwsm, он не
> является vtp сервером и т.д.). Весь уровень доступа в этом сегменте
> подключен напрямую к обоим шеститонникам по оптике, интерфейсы объединены порт-ченнелами.
> Все сервисы (dhcp, dns, ldap, opManager и т.д.) находятся в старом сегменте.
> Старый и новый сегменты соединены двумя оптическими каналами, объединёнными в один port-channel.
> Когда сеть сдали, в новом сегменте появилась первая проблема: некоторые рабочие станции
> не могли взять адрес у dhcp. На самом же dhcp писалось
> BAD_ADDRESS. Пробовал подключать эти рабочие станции в обход новых шеститонников, ошибка

Если шеститонник в новом сегменте работал в режиме роутера, то необходимо было настроить для проброса dhcp-запросов от клиентов dhcp-relay. Это настраивается не только на шеститоннике, но и на dhcp-сервере, чтобы он понимал из какого диапазона выдавать ip.
Было у Вас настроено это?

>[оверквотинг удален]
> бывает окно часа в 2, когда загрузка ЦПУ в районе 40
> процентов, тогда сеть оживает. В остальное время лежит.
> STP включен.
> Смотрел логи FWSM - там всё в норме.
> Грешу на петли, но не должен ли STP их отслеживать и отключать?
> Кто сталкивался с подобным, подскажите, пожалуйста, в каком направлении копать.
> Любые требуемые конфиги покажу, сейчас ничего не прикладываю, потому что не знаю,
> что надо.
> С уважением,
> Тимофей Цицилин.

Мне вообщем кажется проблема с раздачей адресов в Ваших адресах...но без конфигов сложно сказать. Покажите что-нибудь(что считаете нужным), а там посмотрим

Ответить | Правка | ^ к родителю #0 | Наверх | Cообщить модератору

2. "Загрузка цпу на маршрутизаторах, потеря пакетов в сети"  +/
Сообщение от timofey (ok) on 04-Окт-11, 15:44 
Спасибо за ответ.

> Если шеститонник в новом сегменте работал в режиме роутера, то необходимо было
> настроить для проброса dhcp-запросов от клиентов dhcp-relay. Это настраивается не только
> на шеститоннике, но и на dhcp-сервере, чтобы он понимал из какого
> диапазона выдавать ip.
> Было у Вас настроено это?

dhcp-relay включен на новом шеститоннике, адреса в принципе берутся, но существует ощутимый процент BAD_ADDRESS ошибок на dhcp-сервере. С этого всё началось.
Кстати, при отключении нового сегмента, старый стабилизируется. Вместе всё лежит.

> Мне вообщем кажется проблема с раздачей адресов в Ваших адресах...но без конфигов
> сложно сказать. Покажите что-нибудь(что считаете нужным), а там посмотрим

Прилагаю конфиги старого и нового шеститонников: (в следующих сообщениях)

Ответить | Правка | ^ к родителю #1 | Наверх | Cообщить модератору

3. "Загрузка цпу на маршрутизаторах, потеря пакетов в сети"  +/
Сообщение от timofey (ok) on 04-Окт-11, 15:47 
Новый сегмент:

!
upgrade fpd auto
version 12.2
service timestamps debug datetime localtime
service timestamps log datetime localtime
no service password-encryption
service counters max age 5
!
hostname C6506-B6-CORE
!
boot-start-marker
boot system flash sup-bootdisk:/s72033-ipservices_wan-mz.122-33.SXH5.bin
boot-end-marker
!
logging buffered 64000 debugging
logging monitor informational
enable secret 5
!

aaa new-model
aaa authentication login default group tacacs+ local
aaa authorization exec default group tacacs+ local
!
aaa session-id common
clock timezone MSK 3
clock summer-time MSK recurring last Sun Mar 2:00 last Sun Oct 3:00
logging event link-status default
call-home
  alert-group configuration
  alert-group diagnostic
  alert-group environment
  alert-group inventory
  alert-group syslog
profile "CiscoTAC-1"
   no active
   no destination transport-method http
   destination transport-method email
   destination address email callhome@cisco.com
   destination address http https://tools.cisco.com/its/service/oddce/services/DDCEService
   subscribe-to-alert-group diagnostic severity minor
   subscribe-to-alert-group environment severity minor
   subscribe-to-alert-group syslog severity major pattern ".*"
   subscribe-to-alert-group configuration periodic monthly 18 15:12
   subscribe-to-alert-group inventory periodic monthly 18 14:57
ip subnet-zero
!
!
ip dhcp excluded-address 192.168.255.1 192.168.255.100
!
ip dhcp pool For_AP_B6
   network 192.168.255.0 255.255.255.0
!
no ip domain-lookup
ip domain-name XXX
ip name-server 10.0.1.XX
!
switch virtual domain 10
switch mode virtual
!
mls ip slb purge global
mls netflow interface
no mls flow ip
mls cef error action reset
!
!
!
!
!
!
!
!
redundancy
keepalive-enable
mode sso
main-cpu
  auto-sync running-config
!
spanning-tree mode pvst
spanning-tree extend system-id
spanning-tree vlan 1-1024 priority 28672
diagnostic cns publish cisco.cns.device.diag_results
diagnostic cns subscribe cisco.cns.device.diag_commands
!
vlan internal allocation policy ascending
vlan access-log ratelimit 2000
!
!
!
interface Port-channel1
description -- to VSS --
no switchport
no ip address
switch virtual link 1
mls qos trust cos
no mls qos channel-consistency
!
interface Port-channel2
description -- to VSS --
no switchport
no ip address
switch virtual link 2
mls qos trust cos
no mls qos channel-consistency
!
interface Port-channel3
description -- to 6509_B3 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel4
description -- to WLC-B6-01 --
switchport
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 99,100,199
switchport mode trunk
switchport nonegotiate
!
interface Port-channel5
description -- to WLC-B6-02 --
switchport
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 99,100,199
switchport mode trunk
switchport nonegotiate
!
interface Port-channel15
description -- to 192.168.1.104 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel16
description -- to 192.168.1.105 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel17
description -- to 192.168.1.106 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel18
description -- to 192.168.1.101 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel19
description -- to 192.168.1.108 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel20
description -- to 192.168.1.103 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel21
description -- to 192.168.1.109 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel22
description -- to 192.168.1.111 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel23
description -- to 192.168.1.113 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel24
description -- to 192.168.1.102 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel25
description -- to 192.168.1.114 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel26
description -- to 192.168.1.115 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel27
description -- to 192.168.1.116 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel28
description -- to 192.168.1.117 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel29
description -- to 192.168.1.119 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel30
description -- to 192.168.1.134 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel31
description -- to 192.168.1.132 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel32
description -- to 192.168.1.133 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel33
description -- to 192.168.1.131 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel34
description -- to 192.168.1.130 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel35
description -- to 192.168.1.135 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel36
description -- to 192.168.1.136 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel37
description -- to 192.168.1.138 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel38
description -- to 192.168.1.137 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface Port-channel39
description -- to 192.168.1.140 --
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
!
interface GigabitEthernet1/2/1
description to core switch
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 3 mode on
!
interface GigabitEthernet1/2/2
description test_to_core_b3
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
!
interface GigabitEthernet1/2/3
switchport
shutdown
!
interface GigabitEthernet1/2/4
switchport
shutdown
!
interface GigabitEthernet1/2/5
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 15 mode on
!
interface GigabitEthernet1/2/6
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 16 mode on
!
interface GigabitEthernet1/2/7
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 17 mode on
!
interface GigabitEthernet1/2/8
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 18 mode on
!
interface GigabitEthernet1/2/9
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 19 mode on
!
interface GigabitEthernet1/2/10
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 20 mode on
!
interface GigabitEthernet1/2/11
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 21 mode on
!
interface GigabitEthernet1/2/12
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 22 mode on
!
interface GigabitEthernet1/2/13
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 23 mode on
!
interface GigabitEthernet1/2/14
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 24 mode on
!
interface GigabitEthernet1/2/15
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 25 mode on
!
interface GigabitEthernet1/2/16
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 26 mode on
!
interface GigabitEthernet1/2/17
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 27 mode on
!
interface GigabitEthernet1/2/18
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 28 mode on
!
interface GigabitEthernet1/2/19
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 29 mode on
!
interface GigabitEthernet1/2/20
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 30 mode on
!
interface GigabitEthernet1/2/21
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 31 mode on
!
interface GigabitEthernet1/2/22
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 32 mode on
!
interface GigabitEthernet1/2/23
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 33 mode on
!
interface GigabitEthernet1/2/24
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 34 mode on
!
interface GigabitEthernet1/2/25
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 35 mode on
!
interface GigabitEthernet1/2/26
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 36 mode on
!
interface GigabitEthernet1/2/27
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 37 mode on
!
interface GigabitEthernet1/2/28
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 38 mode on
!
interface GigabitEthernet1/2/29
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no cdp enable
channel-group 39 mode on
!
interface GigabitEthernet1/2/30
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/2/31
switchport
shutdown
!
interface GigabitEthernet1/2/32
switchport
shutdown
!
interface GigabitEthernet1/2/33
switchport
shutdown
!
interface GigabitEthernet1/2/34
switchport
shutdown
!
interface GigabitEthernet1/2/35
switchport
shutdown
!
interface GigabitEthernet1/2/36
switchport
shutdown
!
interface GigabitEthernet1/2/37
switchport
shutdown
!
interface GigabitEthernet1/2/38
switchport
shutdown
!
interface GigabitEthernet1/2/39
switchport
shutdown
!
interface GigabitEthernet1/2/40
switchport
shutdown
!
interface GigabitEthernet1/2/41
switchport
shutdown
!
interface GigabitEthernet1/2/42
switchport
shutdown
!
interface GigabitEthernet1/2/43
switchport
switchport access vlan 10
switchport mode access
!
interface GigabitEthernet1/2/44
switchport
shutdown
!
interface GigabitEthernet1/2/45
switchport
shutdown
!
interface GigabitEthernet1/2/46
switchport
shutdown
!
interface GigabitEthernet1/2/47
switchport
shutdown
!
interface GigabitEthernet1/2/48
switchport
shutdown
!
interface GigabitEthernet1/3/1
switchport
shutdown
!
interface GigabitEthernet1/3/2
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/3
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/4
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/5
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/6
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/7
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/8
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/9
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/10
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/11
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/12
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/13
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/14
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/15
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/16
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/17
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/18
switchport
switchport access vlan 14
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/19
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/20
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/21
switchport
shutdown
no cdp enable
!


Ответить | Правка | ^ к родителю #2 | Наверх | Cообщить модератору

4. "Загрузка цпу на маршрутизаторах, потеря пакетов в сети"  +/
Сообщение от timofey (ok) on 04-Окт-11, 15:48 
Продолжение:


interface GigabitEthernet1/3/22
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/23
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/24
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/25
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/26
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/27
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/28
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/29
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/30
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/31
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/32
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/33
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/34
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/35
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/36
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/37
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/38
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/39
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/40
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/41
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/42
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/43
description to 192.168.1.180
switchport
switchport access vlan 10
switchport mode access
no cdp enable
!
interface GigabitEthernet1/3/44
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/45
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/46
switchport
shutdown
no cdp enable
!
interface GigabitEthernet1/3/47
switchport
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 99,100,199
switchport mode trunk
switchport nonegotiate
channel-group 5 mode on
!
interface GigabitEthernet1/3/48
switchport
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 99,100,199
switchport mode trunk
switchport nonegotiate
channel-group 4 mode on
!
interface GigabitEthernet1/5/1
no switchport
no ip address
shutdown
!
interface GigabitEthernet1/5/2
no switchport
no ip address
shutdown
!
interface GigabitEthernet1/5/3
no switchport
no ip address
!
interface TenGigabitEthernet1/5/4
no switchport
no ip address
mls qos trust cos
channel-group 1 mode on
!
interface TenGigabitEthernet1/5/5
no switchport
no ip address
mls qos trust cos
channel-group 1 mode on
!
interface GigabitEthernet2/2/1
description to core switch
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 3 mode on
!
interface GigabitEthernet2/2/2
switchport
shutdown
!
interface GigabitEthernet2/2/3
switchport
shutdown
!
interface GigabitEthernet2/2/4
switchport
shutdown
!
interface GigabitEthernet2/2/5
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 15 mode on
!
interface GigabitEthernet2/2/6
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 16 mode on
!
interface GigabitEthernet2/2/7
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 17 mode on
!
interface GigabitEthernet2/2/8
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 18 mode on
!
interface GigabitEthernet2/2/9
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 19 mode on
!
interface GigabitEthernet2/2/10
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 20 mode on
!
interface GigabitEthernet2/2/11
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 21 mode on
!
interface GigabitEthernet2/2/12
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 22 mode on
!
interface GigabitEthernet2/2/13
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 23 mode on
!
interface GigabitEthernet2/2/14
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 24 mode on
!
interface GigabitEthernet2/2/15
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 25 mode on
!
interface GigabitEthernet2/2/16
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 26 mode on
!
interface GigabitEthernet2/2/17
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 27 mode on
!
interface GigabitEthernet2/2/18
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 28 mode on
!
interface GigabitEthernet2/2/19
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 29 mode on
!
interface GigabitEthernet2/2/20
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 30 mode on
!
interface GigabitEthernet2/2/21
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 31 mode on
!
interface GigabitEthernet2/2/22
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 32 mode on
!
interface GigabitEthernet2/2/23
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 33 mode on
!
interface GigabitEthernet2/2/24
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 34 mode on
!
interface GigabitEthernet2/2/25
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 35 mode on
!
interface GigabitEthernet2/2/26
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 36 mode on
!
interface GigabitEthernet2/2/27
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 37 mode on
!
interface GigabitEthernet2/2/28
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 38 mode on
!
interface GigabitEthernet2/2/29
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
channel-group 39 mode on
!
interface GigabitEthernet2/2/30
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/31
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/32
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/33
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/34
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/35
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/36
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/37
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/38
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/39
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/40
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/41
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/42
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/43
switchport
switchport access vlan 10
switchport mode access
!
interface GigabitEthernet2/2/44
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/45
switchport
switchport mode access
shutdown
!
interface GigabitEthernet2/2/46
switchport
switchport trunk encapsulation dot1q
switchport mode access
switchport nonegotiate
shutdown
!
interface GigabitEthernet2/2/47
switchport
switchport trunk encapsulation dot1q
switchport mode access
switchport nonegotiate
shutdown
!
interface GigabitEthernet2/2/48
switchport
switchport trunk encapsulation dot1q
switchport mode access
switchport nonegotiate
shutdown
!
interface GigabitEthernet2/3/1
description -- to CCM --
switchport
switchport access vlan 61
switchport mode access
!
interface GigabitEthernet2/3/2
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/3
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/4
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/5
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/6
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/7
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/8
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/9
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/10
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/11
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/12
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/13
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/14
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/15
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/16
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/17
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/18
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/19
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/20
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/21
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/22
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/23
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/24
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/25
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/26
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/27
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/28
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/29
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/30
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/31
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/32
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/33
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/34
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
shutdown
no cdp enable
!
interface GigabitEthernet2/3/35
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/36
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/37
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/38
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/39
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/40
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/41
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/42
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/43
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/44
switchport
shutdown
no cdp enable
!
interface GigabitEthernet2/3/45
description TestPort
switchport
switchport access vlan 100
switchport mode access
no cdp enable
!
interface GigabitEthernet2/3/46
description TestPort
switchport
switchport access vlan 100
no cdp enable
!
interface GigabitEthernet2/3/47
switchport
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 99,100,199
switchport mode trunk
switchport nonegotiate
channel-group 5 mode on
!
interface GigabitEthernet2/3/48
switchport
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 99,100,199
switchport mode trunk
switchport nonegotiate
channel-group 4 mode on
!
interface GigabitEthernet2/5/1
no switchport
no ip address
shutdown
!
interface GigabitEthernet2/5/2
no switchport
no ip address
shutdown
!
interface GigabitEthernet2/5/3
no switchport
no ip address
shutdown
!
interface TenGigabitEthernet2/5/4
no switchport
no ip address
mls qos trust cos
channel-group 2 mode on
!
interface TenGigabitEthernet2/5/5
no switchport
no ip address
mls qos trust cos
channel-group 2 mode on
!
interface Vlan1
no ip address
shutdown
!
interface Vlan100
ip address 192.168.1.200 255.255.255.0
!
interface Vlan199
ip address 192.168.255.1 255.255.255.0
!
ip classless
ip route 0.0.0.0 0.0.0.0 192.168.1.1
!
!
ip http server
ip http authentication aaa
!
logging trap warnings
snmp-server community rea_public RO
snmp-server community rea_private RW
tacacs-server host 192.168.1.XXX key XXX
tacacs-server directed-request
!
radius-server source-ports 1645-1646
!
control-plane
!
!
dial-peer cor custom
!
!
!
!
line con 0
line vty 0 4
exec-timeout 0 0
privilege level 15
line vty 5 15
exec-timeout 0 0
privilege level 15
!
ntp clock-period 17179885
ntp server 192.168.1.3
ntp server 192.168.1.2
mac-address-table synchronize
mac-address-table aging-time 480
no event manager policy Mandatory.go_switchbus.tcl type system
!
!
module provision switch 1
slot 1 slot-type 96 port-type 74 number 6  virtual-slot 17
slot 2 slot-type 152 port-type 31 number 48  virtual-slot 18
slot 3 slot-type 147 port-type 61 number 48  virtual-slot 19
slot 5 slot-type 254 port-type 31 number 2 port-type 61 number 1 port-type 60 number 2  virtual-slot 21
!
module provision switch 2
slot 1 slot-type 96 port-type 74 number 6  virtual-slot 33
slot 2 slot-type 152 port-type 31 number 48  virtual-slot 34
slot 3 slot-type 147 port-type 61 number 48  virtual-slot 35
slot 5 slot-type 254 port-type 31 number 2 port-type 61 number 1 port-type 60 number 2  virtual-slot 37

!

end


Ответить | Правка | ^ к родителю #3 | Наверх | Cообщить модератору

5. "Загрузка цпу на маршрутизаторах, потеря пакетов в сети"  +/
Сообщение от timofey (ok) on 04-Окт-11, 16:11 
Старый сегмент:


!
upgrade fpd auto
version 12.2
service timestamps debug uptime
service timestamps log uptime
service password-encryption
service counters max age 10
!
hostname C6509-01
!
boot system flash sup-bootdisk:
boot system flash disk1:/s72033-psv-mz.122-18.SXD7b.bin
boot system bootflash:s72033-psv-mz.122-18.SXD7b.bin
boot device module 2 cf:4
enable secret 5 XXX
!

aaa new-model
aaa authentication login default group tacacs+ local
aaa authorization exec default group tacacs+ local
!
aaa session-id common
clock timezone MSK 3
clock summer-time MSK recurring last Sun Mar 2:00 last Sun Oct 3:00
logging event link-status default
firewall multiple-vlan-interfaces
firewall module 2 vlan-group 1,11,15,21,31,64,81,98,99,100,101,200,201,202,203,204
firewall vlan-group 1  10,250,251
firewall vlan-group 11  11-14,16
firewall vlan-group 15  15,17-19,67,70
firewall vlan-group 21  21-24
firewall vlan-group 31  31-65,68,69
firewall vlan-group 81  81,82
firewall vlan-group 98  98
firewall vlan-group 99  99
firewall vlan-group 100  100
firewall vlan-group 101  101
firewall vlan-group 200  200
firewall vlan-group 201  201
firewall vlan-group 202  202
firewall vlan-group 203  203
firewall vlan-group 204  204
ip subnet-zero
!
!
!
ip ssh version 2
no ip domain-lookup
ip domain-name XXX
ip name-server XXX
ipv6 mfib hardware-switching replication-mode ingress
!

shutdown vlan 17

no dss interface-purge
no dss range-purge
no dss mac-purge
mls ip multicast flow-stat-timer 9
no mls netflow
no mls flow ip
no mls flow ipv6
no mls acl tcam share-global
mls cef error action recover
!
!
!
!
!
!
!
!
redundancy
mode sso
main-cpu
  auto-sync running-config
!
spanning-tree mode pvst
no spanning-tree optimize bpdu transmission
spanning-tree vlan 1-4094 priority 4096
diagnostic cns publish cisco.cns.device.diag_results
diagnostic cns subscribe cisco.cns.device.diag_commands
fabric buffer-reserve queue
!
vlan internal allocation policy ascending
vlan access-log ratelimit 2000
!
!
!
!
interface Loopback0
no ip address
!
interface Port-channel1
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface Port-channel3
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no ip address
!
interface GigabitEthernet1/1
description ### SUK Cisco Switch ###
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/2
description ### SUK Cisco Switch ###
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/3
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/4
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/5
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/6
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/7
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/8
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/9
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/10
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/11
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/12
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/13
description To_C6506-B6-CORE
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no ip address
!
interface GigabitEthernet1/14
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/15
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/16
description to C3750-OBSH-FT
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!
interface GigabitEthernet1/17
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
channel-group 1 mode on
!
interface GigabitEthernet1/18
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
channel-group 1 mode on
!
interface GigabitEthernet1/19
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
channel-group 1 mode on
!
interface GigabitEthernet1/20
description To_C6506-B6-CORE
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
no ip address
!
interface GigabitEthernet1/21
switchport
switchport trunk encapsulation dot1q
switchport mode access
no ip address
channel-group 1 mode on
!
interface GigabitEthernet1/22
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
channel-group 1 mode on
!
interface GigabitEthernet1/23
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
channel-group 1 mode on
!
interface GigabitEthernet1/24
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
channel-group 1 mode on
!
interface GigabitEthernet3/1
switchport
switchport access vlan 100
switchport mode access
no ip address
spanning-tree portfast
!
interface GigabitEthernet3/2
switchport
switchport access vlan 68
switchport mode access
no ip address
spanning-tree portfast
!
interface GigabitEthernet3/3
switchport
switchport access vlan 100
switchport mode access
no ip address
spanning-tree portfast
!
interface GigabitEthernet3/4
switchport
switchport access vlan 100
switchport mode access
no ip address
spanning-tree portfast
!
interface GigabitEthernet3/5
description to 409
switchport
switchport access vlan 16
switchport mode access
no ip address
!
interface GigabitEthernet3/6
switchport
switchport access vlan 10
switchport mode access
no ip address
spanning-tree portfast
!
interface GigabitEthernet3/7
switchport
switchport access vlan 10
switchport mode access
no ip address
spanning-tree portfast
!
interface GigabitEthernet3/8
switchport
switchport access vlan 10
switchport mode access
no ip address
spanning-tree portfast
!
interface GigabitEthernet3/9
switchport
switchport access vlan 10
switchport mode access
no ip address
spanning-tree portfast
!
interface GigabitEthernet3/10
switchport
switchport access vlan 10
switchport mode access
no ip address
spanning-tree portfast
!
interface GigabitEthernet3/11
description subnet 195.19.10.0
switchport
switchport access vlan 204
switchport mode access
no ip address
speed 100
duplex full
!
interface GigabitEthernet3/12
switchport
switchport trunk encapsulation dot1q
switchport mode trunk
no ip address
!

Ответить | Правка | ^ к родителю #4 | Наверх | Cообщить модератору

6. "Загрузка цпу на маршрутизаторах, потеря пакетов в сети"  +/
Сообщение от fantom (ok) on 04-Окт-11, 16:36 
>[оверквотинг удален]
>  speed 100
>  duplex full
> !
> interface GigabitEthernet3/12
>  switchport
>  switchport trunk encapsulation dot1q
>  switchport mode trunk
>  no ip address
> !
>

Диаметр сети какой? сети состыкованы на L2? L3? или в портченнеле имеется все скопом?

Количество VLAN какое? VTP присутствует или нет?

Как вариант - если у вас pvst+ или rpvst работает и vlan-ов много - то младшие коммутаторы не по всем vlan-ам stp отслеживают, вот и выходит опа...

Ответить | Правка | ^ к родителю #5 | Наверх | Cообщить модератору

Архив | Удалить

Рекомендовать для помещения в FAQ | Индекс форумов | Темы | Пред. тема | След. тема




Партнёры:
PostgresPro
Inferno Solutions
Hosting by Hoster.ru
Хостинг:

Закладки на сайте
Проследить за страницей
Created 1996-2025 by Maxim Chirkov
Добавить, Поддержать, Вебмастеру