Перейти к содержимому
Калькуляторы

artplanet

Активный участник
  • Публикации

    355
  • Зарегистрирован

  • Посещение

Все публикации пользователя artplanet


  1. Аренда ММТС-9

    Интересует аренда 2 юнитов 1 юнит - свитч на два блока питания - Cisco Nexus 2 юнит - пассивный CWDM по кроссировкам - нужно будет пару волокон до rascom и волокно до цод datahouse (скорей всего будет нужна кроссировка до кроса самого datahouse внутри м9)
  2. ipv4 аренда/продажа

    рассматриваю вариант покупки /22 с трансфером на наш лир, ценники в личку. рассматриваю вариант оплаты по безналу и налу
  3. добавлю - версия софта nxos.9.2.4 - проблема пропала, нормально работает, конфиг прежний ubuntu-20.04-desktop-amd64.i 13%[=====> ] 354.35M 80.6MB/s eta 32s 2020-07-30 12:04:03 (68.4 MB/s) - ‘ubuntu-20.04-desktop-amd64.iso’ saved [2715254784/2715254784] на интерфейсе сервера около 800Mb/s
  4. пытаюсь сделать самый простой монитор сессии interface Ethernet1/46 description monitor switchport switchport monitor no shutdown порт настроен прописываю конфиг monitor session 1 source interface Ethernet1/38 both destination interface Ethernet1/46 далее внутри monitor session 1 прописываю "no shut" - но параметр не применяется, и в show run мониторинг так и отключён N9K-C93180YC-EX(config)# monitor session 1 N9K-C93180YC-EX(config-monitor)# no shut N9K-C93180YC-EX(config-monitor)# exit N9K-C93180YC-EX(config)# exit show monitor session 1 session 1 --------------- type : local state : down (Session admin shut) acl-name : acl-name not specified source intf : rx : Eth1/38 tx : Eth1/38 both : Eth1/38 source VLANs : rx : tx : both : filter VLANs : filter not specified source fwd drops : destination ports : Eth1/46 source VSANs : rx : на Nexus 3064 проблем не было. кто знает в чем магия ?
  5. да - входящий считается - исходящие не считаются :-(
  6. пока что нашел команду hardware profile svi flex-stats-enable но она требует ребута. попробую завтра на стенде протестировать.
  7. Печаль тоска hardware access-list tcam region ? egr-cntacl Egress CNTACL egr-copp Egress copp Tcam region size egr-l2-qos Egress L2 QOS egr-l3-vlan-qos Egress L3/VLAN QOS egr-racl Egress RACL egr-sup Egress SUP ing-cntacl Egress CNTACL ing-flow-redirect Egress region in ACX ing-fstat Ingress FSTAT ing-ifacl Ingress PACL ing-l2-qos Ingress L2 QOS ing-l2-span-filter Ingress L2 SPAN filter ing-l3-span-filter Ingress L3 SPAN filter ing-l3-vlan-qos Ingress L3/VLAN QOS ing-nbm Ingress NBM ing-racl Ingress RACL ing-rbacl Ingress RBACL ing-redirect Ingress Redirect ing-sup Ingress SUP nat Ingress NAT span SPAN tcp-nat TCP NAT region within NAT region vacl VACL у меня нет svi как и по команде show system internal access-list globals нет упоминаний о SVI show system internal access-list globals slot 1 ======= Atomic Update : ENABLED Default ACL : DENY Bank Chaining : DISABLED Fabric path DNL : DISABLED NS Buffer Profile: Burst optimized Min Buffer Profile: all EOQ Class Stats: qos-group-0 NS MCQ3 Alias: qos-group-3 Ing PG Share: ENABLED IPG in Shape: DISABLED Classify ns-only : DISABLED Ing PG Min: NOT-DISABLED Ing PG Headroom reservation: 100 OQ Drops Type: both OQ Stats Type: [c1]: q 1 both [c2]: q 2 both [c3]: q 3 both [c4]: q 4 both [c5]: q 5 both [c6]: q 6 both [c7]: q 7 both [c8]: q 8 both [c9]: q 9 both peak count type: port counter 0 classes: 255 counter 1 classes: 0 OOBST Max records: 1000 DPP Aging Period: 5000 DPP Max Number of Packets: 120 AFD ETRAP Aging Period: 50 AFD ETRAP Byte Count: 1048555 AFD ETRAP Bandwidth Threshold: 500 ACL Inner Header Match : DISABLED VXLAN OAM Dynamic Entry Move: TRUE VXLAN XConnect ACL Programmed: FALSE DOT1X Entry Move: TRUE DOT1X Entry ACL Programmed: TRUE DOT1X Multi Auth ACL Entry Programmed: FALSE Multicast NLB enabled: FALSE TCAM Template Initialised: TRUE LOU Threshold Value : 5 -------------------------------------------------------------------------------------- INSTANCE 0 TCAM Region Information: -------------------------------------------------------------------------------------- Ingress: -------- Region TID Base Size Width -------------------------------------------------------------------------------------- NAT 13 0 0 1 Ingress PACL 1 0 0 1 Ingress VACL 2 0 0 1 Ingress RACL 3 0 2304 1 Ingress RBACL 4 0 0 1 Ingress L2 QOS 5 2304 256 1 Ingress L3/VLAN QOS 6 2560 512 1 Ingress SUP 7 3072 512 1 Ingress L2 SPAN ACL 8 3584 256 1 Ingress L3/VLAN SPAN ACL 9 3840 256 1 Ingress FSTAT 10 0 0 1 SPAN 12 4096 512 1 Ingress REDIRECT 14 0 0 1 Netflow/Analytics Filter TCAM 21 4608 512 1 Ingress NBM 30 0 0 1 Ingress Flow-redirect 39 0 0 1 Ingress RACL Lite 42 0 0 1 Ingress PACL IPv4 Lite 41 0 0 1 Ingress PACL IPv6 Lite 43 0 0 1 Ingress CNTACL 44 0 0 1 ------------------------------------------------------------------------------------- Total configured size: 5120 Remaining free size: 0 Note: Ingress SUP region includes Redirect region Egress: -------- Region TID Base Size Width -------------------------------------------------------------------------------------- Egress VACL 15 0 0 1 Egress RACL 16 0 1792 1 Egress CNTACL 17 0 0 1 Egress SUP 18 1792 256 1 Egress L2 QOS 19 0 0 1 Egress L3/VLAN QOS 20 0 0 1 Egress CoPP 37 0 0 1 Egress CNTACL 45 0 0 1 ------------------------------------------------------------------------------------- Total configured size: 2048 Remaining free size: 0
  8. Собственно - не делал никаких настроек на N3K, и данная серия считает пакеты и байты по int vlan N3K-C3064PQ-10GE, NXOS: version 7.0(3)I7(8) show interface vlan 700 counters ---------------------------------------------------------------------------------- Port InOctets InUcastPkts ---------------------------------------------------------------------------------- Vlan700 2956698475 39089828 ---------------------------------------------------------------------------------- Port InMcastPkts InBcastPkts ---------------------------------------------------------------------------------- Vlan700 -- -- ---------------------------------------------------------------------------------- Port OutOctets OutUcastPkts ---------------------------------------------------------------------------------- Vlan700 7685312037 49096076 ---------------------------------------------------------------------------------- Port OutMcastPkts OutBcastPkts ---------------------------------------------------------------------------------- Vlan700 -- -- N9K-C93180YC-EX, NXOS: version 9.3(3) show int vlan 700 counters ---------------------------------------------------------------------------------- Port InOctets InUcastPkts ---------------------------------------------------------------------------------- Vlan700 0 0 ---------------------------------------------------------------------------------- Port InMcastPkts InBcastPkts ---------------------------------------------------------------------------------- Vlan700 -- -- ---------------------------------------------------------------------------------- Port OutOctets OutUcastPkts ---------------------------------------------------------------------------------- Vlan700 0 0 ---------------------------------------------------------------------------------- Port OutMcastPkts OutBcastPkts ---------------------------------------------------------------------------------- Vlan700 -- -- на N9K внутри int vlan нет параметр counters (и на n3k тоже нет) Вопрос - как включить счетчики на n9k
  9. в общем почитав данную статью https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus9000/sw/92x/scalability/guide_923/b_Cisco_Nexus_9000_Series_NX-OS_Verified_Scalability_Guide_923.html увидел четкую надпись что количество маршрутов ipv4 у EX и FX версии одинаковое. различие только в количестве ipv6 маршрутов   IPv4 host routes (internet peering mode) Nexus 9300-EX and 9300-FX/FX2 switches 1 Million (protocol learned host) IPv6 host routes (internet peering mode) Nexus 9300-EX switches and the X9700-EX /FX line cards 16,000 (Hash Table: Shared between IPv6 ND, IPv4 ARP, and protocol learned IPv6 host) Nexus 9300-FX/FX2 switches 5000,000 IPv4 LPM routes (internet peering mode) Nexus 9300-EX, and 9300-FX/FX2 switches and the X9700-EX /FX line cards 1 Million IPv6 LPM routes (internet peering mode) Nexus 9300-EX switches 500,000 (Prefix length 0-83) 1900 (Prefix length /84-127) Nexus 9300-FX/FX2 switches 500,000 X9700-EX /FX line cards 176,947 (Prefix 0-47) 500,000 (Prefix length 48-83) 1900 (Prefix length /84-127)
  10. оно выключено и не возможно включить в режимах internet peering и lpm heavy
  11. я видел что в примере = походу циска выпустила что то, сделала описание - а в софте поддержку забыла.
  12. это было установлено - тут максимум 768 можно установить vdc switch switch(config-vdc)# limit-resource u4route-mem minimum ? <1-768> Minimum route memory value switch(config-vdc)# limit-resource u4route-mem minimum 768 ? maximum Maximum route memory to allocate switch(config-vdc)# limit-resource u4route-mem minimum 768 maximum ? <1-768> Maximum route memory value switch(config-vdc)# limit-resource u4route-mem minimum 768 maximum 768 switch# show routing ipv4 memory estimate routes 2000000 next-hops 32 0 Shared memory estimates: Current max 768 MB; 75799 routes with 64 nhs in-use 0 MB; 3 routes with 1 nhs (average) Configured max 768 MB; 75799 routes with 64 nhs Estimate memory with fixed overhead: 2468 MB; 2000000 routes with 32 nhs Estimate with variable overhead included: - With MVPN enabled VRF: 3450 MB - With OSPF route (PE-CE protocol): 564 MB - With EIGRP route (PE-CE protocol): 2670 MB switch# show routing ipv4 memory estimate routes 2000000 next-hops 32 1 Shared memory estimates: Current max 768 MB; 75799 routes with 64 nhs in-use 0 MB; 3 routes with 1 nhs (average) Configured max 768 MB; 75799 routes with 64 nhs Estimate memory with fixed overhead: 2468 MB; 2000000 routes with 32 nhs Estimate with variable overhead included: - With MVPN enabled VRF: 3450 MB - With OSPF route (PE-CE protocol): 564 MB - With EIGRP route (PE-CE protocol): 2670 MB switch# show routing ipv4 memory estimate routes 2000000 next-hops 32 2 Shared memory estimates: Current max 768 MB; 75799 routes with 64 nhs in-use 0 MB; 3 routes with 1 nhs (average) Configured max 768 MB; 75799 routes with 64 nhs Estimate memory with fixed overhead: 2468 MB; 2000000 routes with 32 nhs Estimate with variable overhead included: - With MVPN enabled VRF: 3450 MB - With OSPF route (PE-CE protocol): 564 MB - With EIGRP route (PE-CE protocol): 2670 MB switch# show routing ipv4 memory estimate routes 2000000 next-hops 32 3 Shared memory estimates: Current max 768 MB; 75799 routes with 64 nhs in-use 0 MB; 3 routes with 1 nhs (average) Configured max 768 MB; 75799 routes with 64 nhs Estimate memory with fixed overhead: 2468 MB; 2000000 routes with 32 nhs Estimate with variable overhead included: - With MVPN enabled VRF: 3450 MB - With OSPF route (PE-CE protocol): 564 MB - With EIGRP route (PE-CE protocol): 2670 MB   я установил NXOS: version 9.3(3)   просто больше всего не понимаю, свитчи разные, LPM должен отличатся в 2 раза, цена свитчей отличается в 2 раза Но возможности по факту 1 в 1. за что переплачиваю ???   768 можно установить как на EX версии так и на FX версии - одинаковые лимиты.
  13. show routing ipv4 memory estimate routes ? <1000-2000000> Number of routes нет такой команды на 9300
  14. тогда простой вопрос - почему у свитча N9K-C93180YC-EX, у которого заявлено всего 896,000 LPM - по инфо я вижу 1 миллион LPM и при этом я на практике смог залить в свитч 1 миллион маршрутов по bgp. если я заливал чуть больше - уже получал ругань что FIB переполнен.
  15. еще раз говорю - у версии свитча EX - всего 900к LPM в варианте Raw capacity of flow table а у версии FX - 1.8 миллиона LPM Raw capacity of flow table но по всем командам лимиты у обоих свитчей ОДИНАКОВЫЕ кстати, отключил IPv6 Max IPv4 Trie route entries: 1000448 Max IPv6 Trie route entries: 500224 Max TCAM table entries : 16384 Max V4 Ucast DA TCAM table entries : 16384 Max native host route entries (shared v4/v6) : 32768 Max ARP entries: 32768 [code]
  16. попробую конечно - но опять же - в версии свитча EX я так же вижу 1 миллион ipv4 LPM и 512к ipv6 LPM а версия FX по документации понимает 1.8 миллионов LPM - но я их не вижу Verified scalability отключен в режиме internet peering   то есть вы думаете что они пишут что поддерживается 1.8 милоиона но они этого не выводят в софте ?
  17. Просто версия EX отличается от FX тем - что у FX версии в 2 раза больше LPM так почему я вижу одинаковые цифры на двух разных свитчах
  18. это на стареньких. обратите внимание что на версии свитча EX - где всего 800к LPM - я вижу точно такие же лимиты, 1 в 1   тут как раз 700к LPM, но в режиме internet peering становится 1 миллион - я кидал выше инфо причем 1 миллион как на EX так и на FX версии. а вопрос состоит - как получить 1.8миллиона LPM
  19. В продолжении темы но на этот раз речь пойдет о более интересном свитче - N9K-C93180YC-FX судя по офф данным - https://www.cisco.com/c/en/us/products/collateral/switches/nexus-9000-series-switches/datasheet-c78-742284.html у данной модели 1,792,000 LPM однако в режиме интернет пиринга я вижу Configured System Routing Mode: Internet Peering show system internal forwarding route summary slot 1 ======= IP routes summary Max host route entries : 1043456 Total number of IPv4 host routes used: 3 Max LPM table entries : 1010688 Total number of IPv4 LPM routes used: 1 IPv4 unicast route table space available во всех остальных режимах работы - еще меньше LPM а вот у модели EX - я вижу точно такие же цифры а теперь сравним версию EX и FX по команде show hardware capacity forwarding N9K-C93180YC-EX : show hardware capacity forwarding L2 table utilization on Module = 1 Asic Max Count Used Count -----+---------+--------- 0 40960 551 INSTANCE 0x0 ------------- ACL Hardware Resource Utilization (Mod 1) ---------------------------------------------------------- Used Free Percent Utilization ------------------------------------------------------------------- Ingress L2 QOS 0 256 0.00 Ingress L2 QOS IPv4 0 0.00 Ingress L2 QOS IPv6 0 0.00 Ingress L2 QOS MAC 0 0.00 Ingress L2 QOS ALL 0 0.00 Ingress L2 QOS OTHER 0 0.00 Ingress L2 SPAN ACL 0 256 0.00 Ingress L2 SPAN ACL IPv4 0 0.00 Ingress L2 SPAN ACL IPv6 0 0.00 Ingress L2 SPAN ACL MAC 0 0.00 Ingress L2 SPAN ACL ALL 0 0.00 Ingress L2 SPAN ACL OTHER 0 0.00 Ingress RACL 215 1577 11.99 Ingress RACL IPv4 213 11.88 Ingress RACL IPv6 0 0.00 Ingress RACL MAC 0 0.00 Ingress RACL ALL 2 0.11 Ingress RACL OTHER 0 0.00 Ingress L3/VLAN QOS 24 488 4.68 Ingress L3/VLAN QOS IPv4 0 0.00 Ingress L3/VLAN QOS IPv6 0 0.00 Ingress L3/VLAN QOS MAC 0 0.00 Ingress L3/VLAN QOS ALL 24 4.68 Ingress L3/VLAN QOS OTHER 0 0.00 Ingress L3/VLAN SPAN ACL 0 256 0.00 Ingress L3/VLAN SPAN ACL IPv4 0 0.00 Ingress L3/VLAN SPAN ACL IPv6 0 0.00 Ingress L3/VLAN SPAN ACL MAC 0 0.00 Ingress L3/VLAN SPAN ACL ALL 0 0.00 Ingress L3/VLAN SPAN ACL OTHER 0 0.00 Ingress SUP 450 6 98.68 Ingress SUP IPv4 143 31.35 Ingress SUP IPv6 182 39.91 Ingress SUP MAC 40 8.77 Ingress SUP ALL 12 2.63 Ingress SUP OTHER 73 16.00 SPAN 6 506 1.17 SPAN IPv4 0 0.00 SPAN IPv6 0 0.00 SPAN MAC 0 0.00 SPAN ALL 6 1.17 SPAN OTHER 0 0.00 Egress RACL 2 1790 0.11 Egress RACL IPv4 0 0.00 Egress RACL IPv6 0 0.00 Egress RACL MAC 0 0.00 Egress RACL ALL 2 0.11 Egress RACL OTHER 0 0.00 Egress SUP 128 128 50.00 Egress SUP IPv4 0 0.00 Egress SUP IPv6 0 0.00 Egress SUP MAC 0 0.00 Egress SUP ALL 0 0.00 Egress SUP OTHER 128 50.00 Feature BFD 3 13 18.75 Feature BFD IPv4 1 6.25 Feature BFD IPv6 0 0.00 Feature BFD MAC 0 0.00 Feature BFD ALL 2 12.50 Feature BFD OTHER 0 0.00 Feature DHCP SNOOP 0 16 0.00 Feature DHCP SNOOP IPv4 0 0.00 Feature DHCP SNOOP IPv6 0 0.00 Feature DHCP SNOOP MAC 0 0.00 Feature DHCP SNOOP ALL 0 0.00 Feature DHCP SNOOP OTHER 0 0.00 Feature ARP SNOOP 0 2 0.00 Feature ARP SNOOP IPv4 0 0.00 Feature ARP SNOOP IPv6 0 0.00 Feature ARP SNOOP MAC 0 0.00 Feature ARP SNOOP ALL 0 0.00 Feature ARP SNOOP OTHER 0 0.00 Feature VxLAN OAM 0 2 0.00 Feature VxLAN OAM IPv4 0 0.00 Feature VxLAN OAM IPv6 0 0.00 Feature VxLAN OAM MAC 0 0.00 Feature VxLAN OAM ALL 0 0.00 Feature VxLAN OAM OTHER 0 0.00 Feature DHCPv6 RELAY 0 8 0.00 Feature DHCPv6 RELAY IPv4 0 0.00 Feature DHCPv6 RELAY IPv6 0 0.00 Feature DHCPv6 RELAY MAC 0 0.00 Feature DHCPv6 RELAY ALL 0 0.00 Feature DHCPv6 RELAY OTHER 0 0.00 Feature DHCP SNOOP FHS 0 4 0.00 Feature DHCP SNOOP FHS IPv4 0 0.00 Feature DHCP SNOOP FHS IPv6 0 0.00 Feature DHCP SNOOP FHS MAC 0 0.00 Feature DHCP SNOOP FHS ALL 0 0.00 Feature DHCP SNOOP FHS OTHER 0 0.00 Feature DOT1X 0 2 0.00 Feature DOT1X IPv4 0 0.00 Feature DOT1X IPv6 0 0.00 Feature DOT1X MAC 0 0.00 Feature DOT1X ALL 0 0.00 Feature DOT1X OTHER 0 0.00 Feature DOT1X Multi Auth 0 2 0.00 Feature DOT1X Multi Auth IPv4 0 0.00 Feature DOT1X Multi Auth IPv6 0 0.00 Feature DOT1X Multi Auth MAC 0 0.00 Feature DOT1X Multi Auth ALL 0 0.00 Feature DOT1X Multi Auth OTHER 0 0.00 Netflow/Analytics Filter TCAM 0 1024 0.00 Netflow/Analytics Filter TCAM IPv4 0 0.00 Netflow/Analytics Filter TCAM IPv6 0 0.00 Netflow/Analytics Filter TCAM MAC 0 0.00 Netflow/Analytics Filter TCAM ALL 0 0.00 Netflow/Analytics Filter TCAM OTHER 0 0.00 Ingress CNTACL 0 0 0.00 Ingress CNTACL IPv4 0 0.00 Ingress CNTACL IPv6 0 0.00 Ingress CNTACL MAC 0 0.00 Ingress CNTACL ALL 0 0.00 Ingress CNTACL OTHER 0 0.00 Egress CNTACL 0 0 0.00 Egress CNTACL IPv4 0 0.00 Egress CNTACL IPv6 0 0.00 Egress CNTACL MAC 0 0.00 Egress CNTACL ALL 0 0.00 Egress CNTACL OTHER 0 0.00 LOU 4 11 26.66 Both LOU Operands 4 Single LOU Operands 0 LOU L4 src port: 2 LOU L4 dst port: 2 LOU L3 packet len: 0 LOU IP tos: 0 LOU IP dscp: 0 LOU ip precedence: 0 LOU ip TTL: 0 TCP Flags 0 16 0.00 Protocol CAM 2 244 0.81 Mac Etype/Proto CAM 0 14 0.00 L4 op labels, Tcam 0 0 30 0.00 L4 op labels, Tcam 1 5 57 8.06 L4 op labels, Tcam 7 0 1023 0.00 L4 op labels, Tcam 8 0 254 0.00 L4 op labels, Tcam 11 0 1023 0.00 L4 op labels, Tcam 12 0 1023 0.00 L4 op labels, Tcam 13 0 1023 0.00 L4 op labels, Tcam 14 0 1023 0.00 L4 op labels, Tcam 16 0 1023 0.00 L4 op labels, Tcam 17 0 1023 0.00 Ingress Dest info table 1 511 0.19 Egress Dest info table 0 512 0.00 Note: Ingress SUP region includes the Redirect region IPv4/IPv6 hosts and routes summary on module : 1 -------------------------------------------------- Configured System Routing Mode: Internet Peering Dynamic V6 Trie : True -------------------------------------------------- Max IPv4 Trie route entries: 1000448 Max IPv6 Trie route entries: 500224 Max TCAM table entries : 16384 Max V4 Ucast DA TCAM table entries : 8192 Max V6 Ucast DA TCAM table entries : 2048 Max native host route entries (shared v4/v6) : 32768 Max ARP entries: 32768 Max ND entries (Entries might overflow into tcam as Host-As-Route): 16384 Total number of IPv4 host trie routes used : 0 Total number of IPv4 host tcam routes used : 4 Total number of IPv4 LPM trie routes used : 133429 Total number of IPv4 LPM tcam routes used : 3725 Total number of IPv6 host trie routes used : 0 Total number of IPv6 host tcam routes used: 0 Total number of IPv6 LPM trie routes used : 0 Total number of IPv6 LPM tcam routes used : 3 Total number of IPv4 host native routes used in native tiles : 527 Total number of IPv6 host native routes used in native tiles : 0 Total number of IPv6 ND/local routes used in native tiles : 0 Total number of IPv6 host /128 learnt routes used in native tiles : 0 IPv4 Host-as-Route count : 2 IPv6 Host-as-Route count : 0 Nexthop count : 512 Percentage utilization of IPv4 native host routes : 1.60 Percentage utilization of IPv6 native host routes : 0.00 Percentage utilization of IPv6 ND/local routes : 0.00 Percentage utilization of IPv6 host /128 learnt routes : 0.00 Percentage utilization of IPv4 trie routes : 13.33 Percentage utilization of IPv6 trie routes : 0.00 Percentage utilization of IPv4 TCAM routes : 45.54 Percentage utilization of IPv6 TCAM routes : 0.14 Percentage utilization of nexthop entries : 1.56 IPv4/Ipv6 Mcast host entry summary ---------------------------------- Max Mcast Route Entries Limit = 0 Max Mcast V4 SA TCAM entries (S/m) = 0 Max Overflow Mcast v4 SA TCAM entries = 0 Max Overflow Mcast V4 DA TCAM entries = 0 Total number of IPv4 Multicast SA LPM routes used = 0 Percentage utilization of IPv4 Multicast SA LPM routes = 0.00 Used Mcast Entries = 0 Used MCIDX Count = 1 Used *,G Entries in HRT = 0 Used *,G Entries in LPM = 0 Used (S,G) Entries = 0 Used Mcast S/32 Entries in HRT = 0 Max Reserved Mcast S/32 and G/32 in LPM = 0 Used Mcast S/32 Entries in SA LPM = 0 Percentage utilization of S/32 in SA LPM = 0.00 Used Mcast G/32 Entries in DA LPM = 0 Percentage utilization of G/32 in DA LPM = 0.00 Max IPv6 Mcast Route Entries Limit = 0 Used IPv6 Mcast Entries = 0 Used IPv6 *,G Entries in HRT = 0 Used IPv6 *,G Entries in LPM = 0 Used IPv6 (S,G) Entries = 0 Used IPv6 Mcast S/128 Entries in HRT = 0 Mcast Mac entry summary ---------------------------------- Max Mcast Mac Route Entries Limit = 0 Used Mcast Mac Entries = 0 -------------------MPLS Hardware Resources------------------ Max Label Entries ( without ECMP ) = 1000 Max Label Entries ( with ECMP ) = 500 Used Label Entries = 0 No. of MPLS VPN Labels Used = 0 -------------------ECMP GROUP/TILE INFO------------------- ECMP group supported : Yes Max ECMP groups : 1022 ECMP groups used : 0 Max FC ECMP groups : 1024 FC ECMP groups used : 0 Num of ECMP group member tiles : 1 Num of ECMP group tiles : 1 QoS Resource Utilization ------------------------ Resource Module Total Used Free -------- ------ ----- ---- ---- Aggregate policers: 1 4094 50 4044 Distributed policers: 1 4094 0 4094 Policer Profiles: 1 4094 50 4044 N9K-C93180YC-FX : show hardware capacity forwarding L2 table utilization on Module = 1 Asic Max Count Used Count -----+---------+--------- 0 32768 0 INSTANCE 0x0 ------------- ACL Hardware Resource Utilization (Mod 1) ---------------------------------------------------------- Used Free Percent Utilization ------------------------------------------------------------------- Ingress L2 QOS 2 254 0.78 Ingress L2 QOS IPv4 0 0.00 Ingress L2 QOS IPv6 0 0.00 Ingress L2 QOS MAC 0 0.00 Ingress L2 QOS ALL 0 0.00 Ingress L2 QOS OTHER 0 0.00 Ingress L2 SPAN ACL 0 256 0.00 Ingress L2 SPAN ACL IPv4 0 0.00 Ingress L2 SPAN ACL IPv6 0 0.00 Ingress L2 SPAN ACL MAC 0 0.00 Ingress L2 SPAN ACL ALL 0 0.00 Ingress L2 SPAN ACL OTHER 0 0.00 Ingress RACL 2 2302 0.08 Ingress RACL IPv4 0 0.00 Ingress RACL IPv6 0 0.00 Ingress RACL MAC 0 0.00 Ingress RACL ALL 2 0.08 Ingress RACL OTHER 0 0.00 Ingress L3/VLAN QOS 24 488 4.68 Ingress L3/VLAN QOS IPv4 0 0.00 Ingress L3/VLAN QOS IPv6 0 0.00 Ingress L3/VLAN QOS MAC 0 0.00 Ingress L3/VLAN QOS ALL 24 4.68 Ingress L3/VLAN QOS OTHER 0 0.00 Ingress L3/VLAN SPAN ACL 0 256 0.00 Ingress L3/VLAN SPAN ACL IPv4 0 0.00 Ingress L3/VLAN SPAN ACL IPv6 0 0.00 Ingress L3/VLAN SPAN ACL MAC 0 0.00 Ingress L3/VLAN SPAN ACL ALL 0 0.00 Ingress L3/VLAN SPAN ACL OTHER 0 0.00 Ingress SUP 455 1 99.78 Ingress SUP IPv4 142 31.14 Ingress SUP IPv6 184 40.35 Ingress SUP MAC 39 8.55 Ingress SUP ALL 12 2.63 Ingress SUP OTHER 78 17.10 SPAN 0 512 0.00 SPAN IPv4 0 0.00 SPAN IPv6 0 0.00 SPAN MAC 0 0.00 SPAN ALL 0 0.00 SPAN OTHER 0 0.00 Egress RACL 2 1790 0.11 Egress RACL IPv4 0 0.00 Egress RACL IPv6 0 0.00 Egress RACL MAC 0 0.00 Egress RACL ALL 2 0.11 Egress RACL OTHER 0 0.00 Egress SUP 128 128 50.00 Egress SUP IPv4 0 0.00 Egress SUP IPv6 0 0.00 Egress SUP MAC 0 0.00 Egress SUP ALL 0 0.00 Egress SUP OTHER 128 50.00 Feature BFD 3 13 18.75 Feature BFD IPv4 1 6.25 Feature BFD IPv6 0 0.00 Feature BFD MAC 0 0.00 Feature BFD ALL 2 12.50 Feature BFD OTHER 0 0.00 Feature DHCP SNOOP 0 16 0.00 Feature DHCP SNOOP IPv4 0 0.00 Feature DHCP SNOOP IPv6 0 0.00 Feature DHCP SNOOP MAC 0 0.00 Feature DHCP SNOOP ALL 0 0.00 Feature DHCP SNOOP OTHER 0 0.00 Feature ARP SNOOP 0 2 0.00 Feature ARP SNOOP IPv4 0 0.00 Feature ARP SNOOP IPv6 0 0.00 Feature ARP SNOOP MAC 0 0.00 Feature ARP SNOOP ALL 0 0.00 Feature ARP SNOOP OTHER 0 0.00 Feature VxLAN OAM 0 2 0.00 Feature VxLAN OAM IPv4 0 0.00 Feature VxLAN OAM IPv6 0 0.00 Feature VxLAN OAM MAC 0 0.00 Feature VxLAN OAM ALL 0 0.00 Feature VxLAN OAM OTHER 0 0.00 Feature DHCPv6 RELAY 0 8 0.00 Feature DHCPv6 RELAY IPv4 0 0.00 Feature DHCPv6 RELAY IPv6 0 0.00 Feature DHCPv6 RELAY MAC 0 0.00 Feature DHCPv6 RELAY ALL 0 0.00 Feature DHCPv6 RELAY OTHER 0 0.00 Feature DHCP SNOOP FHS 0 4 0.00 Feature DHCP SNOOP FHS IPv4 0 0.00 Feature DHCP SNOOP FHS IPv6 0 0.00 Feature DHCP SNOOP FHS MAC 0 0.00 Feature DHCP SNOOP FHS ALL 0 0.00 Feature DHCP SNOOP FHS OTHER 0 0.00 Feature DOT1X 0 2 0.00 Feature DOT1X IPv4 0 0.00 Feature DOT1X IPv6 0 0.00 Feature DOT1X MAC 0 0.00 Feature DOT1X ALL 0 0.00 Feature DOT1X OTHER 0 0.00 Feature DOT1X Multi Auth 0 2 0.00 Feature DOT1X Multi Auth IPv4 0 0.00 Feature DOT1X Multi Auth IPv6 0 0.00 Feature DOT1X Multi Auth MAC 0 0.00 Feature DOT1X Multi Auth ALL 0 0.00 Feature DOT1X Multi Auth OTHER 0 0.00 Netflow/Analytics Filter TCAM 0 512 0.00 Netflow/Analytics Filter TCAM IPv4 0 0.00 Netflow/Analytics Filter TCAM IPv6 0 0.00 Netflow/Analytics Filter TCAM MAC 0 0.00 Netflow/Analytics Filter TCAM ALL 0 0.00 Netflow/Analytics Filter TCAM OTHER 0 0.00 Ingress CNTACL 0 0 0.00 Ingress CNTACL IPv4 0 0.00 Ingress CNTACL IPv6 0 0.00 Ingress CNTACL MAC 0 0.00 Ingress CNTACL ALL 0 0.00 Ingress CNTACL OTHER 0 0.00 Egress CNTACL 0 0 0.00 Egress CNTACL IPv4 0 0.00 Egress CNTACL IPv6 0 0.00 Egress CNTACL MAC 0 0.00 Egress CNTACL ALL 0 0.00 Egress CNTACL OTHER 0 0.00 LOU 4 11 26.66 Both LOU Operands 4 Single LOU Operands 0 LOU L4 src port: 2 LOU L4 dst port: 2 LOU L3 packet len: 0 LOU IP tos: 0 LOU IP dscp: 0 LOU ip precedence: 0 LOU ip TTL: 0 TCP Flags 0 16 0.00 Protocol CAM 2 244 0.81 Mac Etype/Proto CAM 0 14 0.00 L4 op labels, Tcam 0 0 30 0.00 L4 op labels, Tcam 1 0 62 0.00 L4 op labels, Tcam 7 0 1023 0.00 L4 op labels, Tcam 8 0 254 0.00 L4 op labels, Tcam 11 0 1023 0.00 L4 op labels, Tcam 12 0 1023 0.00 L4 op labels, Tcam 13 0 1023 0.00 L4 op labels, Tcam 14 0 1023 0.00 L4 op labels, Tcam 16 0 1023 0.00 L4 op labels, Tcam 17 0 1023 0.00 Ingress Dest info table 0 512 0.00 Egress Dest info table 0 512 0.00 Note: Ingress SUP region includes the Redirect region IPv4/IPv6 hosts and routes summary on module : 1 -------------------------------------------------- Configured System Routing Mode: Internet Peering Dynamic V6 Trie : True -------------------------------------------------- Max IPv4 Trie route entries: 1000448 Max IPv6 Trie route entries: 500224 Max TCAM table entries : 16384 Max V4 Ucast DA TCAM table entries : 10240 Max V6 Ucast DA TCAM table entries : 2048 Max native host route entries (shared v4/v6) : 32768 Max ARP entries: 32768 Max ND entries (Entries might overflow into tcam as Host-As-Route): 16384 Total number of IPv4 host trie routes used : 0 Total number of IPv4 host tcam routes used : 1 Total number of IPv4 LPM trie routes used : 0 Total number of IPv4 LPM tcam routes used : 1 Total number of IPv6 host trie routes used : 0 Total number of IPv6 host tcam routes used: 0 Total number of IPv6 LPM trie routes used : 0 Total number of IPv6 LPM tcam routes used : 3 Total number of IPv4 host native routes used in native tiles : 0 Total number of IPv6 host native routes used in native tiles : 0 Total number of IPv6 ND/local routes used in native tiles : 0 Total number of IPv6 host /128 learnt routes used in native tiles : 0 IPv4 Host-as-Route count : 2 IPv6 Host-as-Route count : 0 Nexthop count : 3 Percentage utilization of IPv4 native host routes : 0.00 Percentage utilization of IPv6 native host routes : 0.00 Percentage utilization of IPv6 ND/local routes : 0.00 Percentage utilization of IPv6 host /128 learnt routes : 0.00 Percentage utilization of IPv4 trie routes : 0.00 Percentage utilization of IPv6 trie routes : 0.00 Percentage utilization of IPv4 TCAM routes : 0.03 Percentage utilization of IPv6 TCAM routes : 0.14 Percentage utilization of nexthop entries : 0.00 IPv4/Ipv6 Mcast host entry summary ---------------------------------- Max Mcast Route Entries Limit = 0 Max Mcast V4 SA TCAM entries (S/m) = 0 Max Overflow Mcast v4 SA TCAM entries = 0 Max Overflow Mcast V4 DA TCAM entries = 0 Total number of IPv4 Multicast SA LPM routes used = 0 Percentage utilization of IPv4 Multicast SA LPM routes = 0.00 Used Mcast Entries = 0 Used MCIDX Count = 1 Used *,G Entries in HRT = 0 Used *,G Entries in LPM = 0 Used (S,G) Entries = 0 Used Mcast S/32 Entries in HRT = 0 Max Reserved Mcast S/32 and G/32 in LPM = 0 Used Mcast S/32 Entries in SA LPM = 0 Percentage utilization of S/32 in SA LPM = 0.00 Used Mcast G/32 Entries in DA LPM = 0 Percentage utilization of G/32 in DA LPM = 0.00 Max IPv6 Mcast Route Entries Limit = 0 Used IPv6 Mcast Entries = 0 Used IPv6 *,G Entries in HRT = 0 Used IPv6 *,G Entries in LPM = 0 Used IPv6 (S,G) Entries = 0 Used IPv6 Mcast S/128 Entries in HRT = 0 Mcast Mac entry summary ---------------------------------- Max Mcast Mac Route Entries Limit = 0 Used Mcast Mac Entries = 0 -------------------MPLS Hardware Resources------------------ Max Label Entries ( without ECMP ) = 1000 Max Label Entries ( with ECMP ) = 500 Used Label Entries = 0 No. of MPLS VPN Labels Used = 0 -------------------ECMP GROUP/TILE INFO------------------- ECMP group supported : Yes Max ECMP groups : 1022 ECMP groups used : 0 Max FC ECMP groups : 1024 FC ECMP groups used : 0 Num of ECMP group member tiles : 2 Num of ECMP group tiles : 1 QoS Resource Utilization ------------------------ Resource Module Total Used Free -------- ------ ----- ---- ---- Aggregate policers: 1 2047 25 2022 Distributed policers: 1 2047 0 2047 Policer Profiles: 1 2047 25 2022 я увидел только различие в поле Max V4 Ucast DA TCAM table entries и у ACL: Ingress RACL Netflow/Analytics Filter TCAM кто подскажет - куда копать - как получить почти 2 миллиона LPM ?
  20. победил, ошибка вместо channel-group 101 mode active нужно было указывать channel-group 101
  21. Решил побаловаться и подключить N2K-C2248TP-E свитч через FEX к моему N9K-C93180YC-EX судя по документации https://www.cisco.com/c/dam/en/us/td/docs/Website/datacenter/fexmatrix/fexmatrix.html N9K-C93180YC-EX работает с N2K-C2248TP-E в режиме NX-OS стоит NX-OS 9.3.3 смотрел на видео инструкцию - и все делал по ней. но не так все просто. итак, настройки install feature-set fex feature-set fex interface Ethernet1/47 no shutdown Eth1/47 -- connected routed full 10G SFP-H10GB-CU2M как видно порт поднят show fex ничего не выводит. далее, меняю настройки на порту 1/47 interface Ethernet1/47 switchport switchport mode fex-fabric fex associate 101 no shutdown 2020 Mar 18 14:27:28 93180YC-EX %FEX-5-FEX_PORT_STATUS_NOTI: Uplink-ID 0 of Fex 101 that is connected with Ethernet1/47 changed its status from Created to Configured 2020 Mar 18 14:27:28 93180YC-EX %ETHPORT-5-IF_DOWN_INITIALIZING: Interface Ethernet1/47 is down (Initializing) 2020 Mar 18 14:27:29 93180YC-EX %ETHPORT-5-SPEED: Interface Ethernet1/47, operational speed changed to 10 Gbps 2020 Mar 18 14:27:29 93180YC-EX %ETHPORT-5-IF_DUPLEX: Interface Ethernet1/47, operational duplex mode changed to Full 2020 Mar 18 14:27:29 93180YC-EX %ETHPORT-5-IF_RX_FLOW_CONTROL: Interface Ethernet1/47, operational Receive Flow Control state changed to off 2020 Mar 18 14:27:29 93180YC-EX %ETHPORT-5-IF_TX_FLOW_CONTROL: Interface Ethernet1/47, operational Transmit Flow Control state changed to off 2020 Mar 18 14:27:29 93180YC-EX %ETHPORT-5-IF_DOWN_NONE: Interface Ethernet1/47 is down (None) Eth1/47 -- down 1 auto auto SFP-H10GB-CU2M по команде show fex ничего не выводится. пытался переводить порт 1/47 в 10 гигабит принудительно - всё четно. далее - я решил сделать подобную настройку через порт чанел default interface eth1/47 interface port-channel101 switchport switchport mode fex-fabric fex associate 101 interface Ethernet1/47 switchport switchport mode fex-fabric fex associate 101 channel-group 101 mode active no shutdown 2020 Mar 18 14:31:43 93180YC-EX %FEX-5-FEX_PORT_STATUS_NOTI: Uplink-ID 0 of Fex 101 that is connected with Ethernet1/47 changed its status from Configured to Fabric Up 2020 Mar 18 14:31:43 93180YC-EX %FEX-5-FEX_PORT_STATUS_NOTI: Uplink-ID 1 of Fex 101 that is connected with Ethernet1/47 changed its status from Fabric Up to Connecting 2020 Mar 18 14:31:43 93180YC-EX %FEX-5-FEX_PORT_STATUS_NOTI: Uplink-ID 1 of Fex 101 that is connected with Ethernet1/47 changed its status from Connecting to Active 2020 Mar 18 14:31:43 93180YC-EX %ETHPORT-5-SPEED: Interface port-channel101, operational speed changed to 10 Gbps 2020 Mar 18 14:31:43 93180YC-EX %ETHPORT-5-IF_DUPLEX: Interface port-channel101, operational duplex mode changed to Full 2020 Mar 18 14:31:43 93180YC-EX %ETHPORT-5-IF_RX_FLOW_CONTROL: Interface port-channel101, operational Receive Flow Control state changed to off 2020 Mar 18 14:31:43 93180YC-EX %ETHPORT-5-IF_TX_FLOW_CONTROL: Interface port-channel101, operational Transmit Flow Control state changed to off 2020 Mar 18 14:31:53 93180YC-EX %ETH_PORT_CHANNEL-5-PORT_SUSPENDED: Ethernet1/47: Ethernet1/47 is suspended show fex FEX FEX FEX FEX Number Description State Model Serial ------------------------------------------------------------------------ --- -------- Connected N2K-C2248TP-E-1GE SSI155204GP вроде что то заработало, но тут пусто show fex 101 FEX 101 not found и через некоторое время статус меняется с Connected на offline куда копать ?
  22. не правы, мне свитч ругается что нет такой то лицензии - но так же пишет - что циска работает и верит мне что у меня есть лицуха - только я файлик потерял. любая лицензия их тех что я использовал активируется и работает бессрочно - только предупреждает - что айайай   в режиме internet peering залил полный фулл вью и отдельно в vrf еще 200.000 маршрутов 1 лям скушала и не упала в ошибки
  23. чуть дальше копаю, в режиме Configured System Routing Mode: LPM Heavy как только программируется более 500.000 маршрутов - свитч падает в консоль валится 2020 Mar 4 19:09:37 93180YC-EX %$ VDC-1 %$ %IPFIB-SLOT1-2-UFIB_ROUTE_CREATE: Unicast route create failed for INS unit 0, VRF: 1, 200.40.48.0/20, flags:0x0, intf:0xf8004, Error: FIB TCAM FULL For IP Routes(235) 2020 Mar 4 19:09:37 93180YC-EX %$ VDC-1 %$ %IPFIB-SLOT1-2-UFIB_ROUTE_CREATE: Unicast route create failed for INS unit 0, VRF: 1, 200.40.64.0/20, flags:0x0, intf:0xf8004, Error: FIB TCAM FULL For IP Routes(235) 2020 Mar 4 19:09:37 93180YC-EX %$ VDC-1 %$ %IPFIB-SLOT1-2-UFIB_ROUTE_CREATE: Unicast route create failed for INS unit 0, VRF: 1, 200.40.80.0/20, flags:0x0, intf:0xf8004, Error: FIB TCAM FULL For IP Routes(235) 2020 Mar 4 19:09:37 93180YC-EX %$ VDC-1 %$ %IPFIB-SLOT1-2-UFIB_ROUTE_CREATE: Unicast route create failed for INS unit 0, VRF: 1, 200.40.96.0/20, flags:0x0, intf:0xf8004, Error: FIB TCAM FULL For IP Routes(235) 2020 Mar 4 19:09:37 93180YC-EX %$ VDC-1 %$ %IPFIB-SLOT1-2-UFIB_ROUTE_CREATE: Unicast route create failed for INS unit 0, VRF: 1, 200.40.112.0/20, flags:0x0, intf:0xf8004, Error: FIB TCAM FULL For IP Routes(235) 2020 Mar 4 19:09:37 93180YC-EX %$ VDC-1 %$ %IPFIB-SLOT1-2-UFIB_ROUTE_CREATE: Unicast route create failed for INS unit 0, VRF: 1, 200.40.128.0/20, flags:0x0, intf:0xf8004, Error: FIB TCAM FULL For IP Routes(235) 2020 Mar 4 19:09:37 93180YC-EX %$ VDC-1 %$ %IPFIB-SLOT1-2-UFIB_ROUTE_CREATE: Unicast route create failed for INS unit 0, VRF: 1, 200.40.144.0/20, flags:0x0, intf:0xf8004, Error: FIB TCAM FULL For IP Routes(235) 2020 Mar 4 19:09:37 93180YC-EX %$ VDC-1 %$ %IPFIB-SLOT1-2-UFIB_ROUTE_CREATE: Unicast route create failed for INS unit 0, VRF: 1, 200.40.160.0/20, flags:0x0, intf:0xf8004, Error: FIB TCAM FULL For IP Routes(235) при этом show system internal forwarding route summary slot 1 ======= IP routes summary Max host route entries : 825344 Total number of IPv4 host routes used: 12 Max LPM table entries : 792576 Total number of IPv4 LPM routes used: 499105 IPv4 unicast route table space available как только значение в поле Total number of IPv4 LPM routes used выше 490.000 появляется сразу флуд далее show hardware internal forwarding table utilization .... Percentage utilization of IPv4 TCAM routes : 99.72 вот это поле падает в максимум. причем в момент программирования (увеличение значения Total number of IPv4 LPM routes used) данное поле (IPv4 TCAM) прыгало то в 60, то падало в 30, потом опять прыгало, падало. Но потом ушло в 99.72 и усе в режиме Configured System Routing Mode: Internet Peering show system internal forwarding route summary slot 1 ======= IP routes summary Max host route entries : 1041408 Total number of IPv4 host routes used: 11 Max LPM table entries : 1008640 Total number of IPv4 LPM routes used: 695589 IPv4 unicast route table space available все влезло и значение Percentage utilization of IPv4 TCAM routes : 55.98 в общем странная бабуйня. Пока что не могу понять почему в режиме LPM Heavy при наличии свободных LPM переполняется IPv4 TCAM