wed Posted June 10, 2011 Posted June 10, 2011 (edited) Добрый день! Пытаемся внедрить схему ip unnumbered + dchp. Наблюдается проблема - пропадание пингов как на cisco так и на абонентов. Закономерности абсолютно не нашел. Конфиг циски: upgrade fpd auto version 12.2 no parser cache no service pad service timestamps debug datetime msec localtime service timestamps log datetime msec localtime service password-encryption service linenumber service counters max age 5 service unsupported-transceiver ! ip subnet-zero no ip source-route ! ! no ip dhcp relay information check ! ip dhcp snooping vlan 3-6,700-701 no ip dhcp snooping information option no ip dhcp snooping verify mac-address ip dhcp snooping ip flow-cache entries 262144 ip flow-cache timeout inactive 60 ip flow-cache timeout active 10 ip multicast-routing ip ssh version 2 no ip domain-lookup ip domain-name domain.ru mls aging long 128 mls aging normal 64 mls exclude acl-deny mls netflow interface mls flow ip interface-full no mls nde interface mls qos mls cef error action reset mls cef maximum-routes ipv6 1 ! interface Loopback2 ip address 1xx.2xx.1xx.33 255.255.255.240 secondary ip address 192.168.160.1 255.255.255.192 secondary ip address 192.168.160.65 255.255.255.192 secondary ip address 192.168.160.129 255.255.255.192 secondary ip address 192.168.120.1 255.255.255.0 secondary ip address 10.62.0.1 255.255.255.0 secondary ip address 10.62.1.1 255.255.255.0 secondary ip address 10.62.2.1 255.255.255.0 secondary ip address 10.62.3.1 255.255.255.0 secondary ip address 10.62.4.1 255.255.255.0 secondary ip address 10.62.5.1 255.255.255.0 secondary ip address 10.62.6.1 255.255.255.0 secondary ip address 10.62.7.1 255.255.255.0 secondary ip address 192.168.60.1 255.255.255.0 secondary ip address 192.168.61.1 255.255.255.0 secondary ip address 192.168.62.1 255.255.255.0 secondary ip address 192.168.130.1 255.255.255.0 secondary ip address 1xx.2xx.1xx.1 255.255.255.0 no ip redirects no ip proxy-arp ip route-cache same-interface ! interface GigabitEthernet2/1 switchport switchport access vlan 5 switchport mode access no cdp enable spanning-tree portfast edge ip dhcp snooping trust ! interface GigabitEthernet2/10 switchport switchport access vlan 3 switchport trunk native vlan 3 switchport trunk allowed vlan 3 switchport mode access no keepalive spanning-tree portfast edge ! interface GigabitEthernet2/20 description ### Kudr switchport switchport access vlan 700 switchport mode access spanning-tree portfast edge ! interface Vlan3 ip unnumbered Loopback2 ip helper-address 1yy.2yy.1yy.5 no ip redirects no ip proxy-arp ip flow ingress hold-queue 4096 in ! interface Vlan5 ip address 1yy.2yy.1yy.6 255.255.255.252 no ip redirects no ip proxy-arp ! interface Vlan700 ip unnumbered Loopback2 ip helper-address 1yy.2yy.1yy.5 no ip redirects no ip unreachables ip directed-broadcast no ip proxy-arp hold-queue 4096 in ! ip route 0.0.0.0 0.0.0.0 1yy.2yy.1yy.5 ip route 10.62.0.82 255.255.255.255 Vlan3 ip route 10.62.0.119 255.255.255.255 Vlan3 ip route 10.62.0.132 255.255.255.255 Vlan3 ip route 10.62.2.12 255.255.255.255 Vlan3 ip route 10.62.3.132 255.255.255.255 Vlan700 Вланы абонентов: sh int vl 3 Vlan3 is up, line protocol is up Hardware is EtherSVI, address is 001c.b0b7.fac0 (bia 001c.b0b7.fac0) Interface is unnumbered. Using address of Loopback2 (1xx.2xx.1xx.1) MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec, reliability 255/255, txload 10/255, rxload 4/255 Encapsulation ARPA, loopback not set Keepalive not supported ARP type: ARPA, ARP Timeout 04:00:00 Last input 00:00:00, output 00:00:00, output hang never Last clearing of "show interface" counters never Input queue: 0/4096/118014/3695 (size/max/drops/flushes); Total output drops: 0 Queueing strategy: fifo Output queue: 0/40 (size/max) 5 minute input rate 17801000 bits/sec, 5207 packets/sec 5 minute output rate 39377000 bits/sec, 5764 packets/sec L2 Switched: ucast: 15569932 pkt, 1600476133 bytes - mcast: 5459540 pkt, 493614944 bytes L3 in Switched: ucast: 2263582402 pkt, 1197685481055 bytes - mcast: 0 pkt, 0 bytes mcast L3 out Switched: ucast: 2537468848 pkt, 2320740147432 bytes mcast: 0 pkt, 0 bytes 2280979281 packets input, 1199294405756 bytes, 0 no buffer sh int vl 700 Vlan700 is up, line protocol is up Hardware is EtherSVI, address is 001c.b0b7.fac0 (bia 001c.b0b7.fac0) Interface is unnumbered. Using address of Loopback2 (1xx.2xx.1xx.1) MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec, reliability 255/255, txload 2/255, rxload 1/255 Encapsulation ARPA, loopback not set Keepalive not supported ARP type: ARPA, ARP Timeout 04:00:00 Last input 00:00:00, output 00:00:01, output hang never Last clearing of "show interface" counters never Input queue: 0/4096/328/19 (size/max/drops/flushes); Total output drops: 0 Queueing strategy: fifo Output queue: 0/40 (size/max) 5 minute input rate 3931000 bits/sec, 1219 packets/sec 5 minute output rate 9992000 bits/sec, 1453 packets/sec L2 Switched: ucast: 727993 pkt, 56602417 bytes - mcast: 806169 pkt, 98092209 bytes L3 in Switched: ucast: 305389304 pkt, 146009142229 bytes - mcast: 0 pkt, 0 bytes mcast L3 out Switched: ucast: 310168308 pkt, 274473600545 bytes mcast: 0 pkt, 0 bytes 306813088 packets input, 146130873867 bytes, 0 no buffer Received 701616 broadcasts (7447 IP multicasts) 0 runts, 0 giants, 9 throttles 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored 310576598 packets output, 274552978928 bytes, 0 underruns 0 output errors, 0 interface resets 0 output buffer failures, 0 output buffers swapped out Влан шлюза Интернета: sh int vl 4 Vlan4 is up, line protocol is up Hardware is EtherSVI, address is 001c.b0b7.fac0 (bia 001c.b0b7.fac0) Interface is unnumbered. Using address of Loopback2 (1xx.2xx.1xx.1) MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec, reliability 255/255, txload 1/255, rxload 1/255 Encapsulation ARPA, loopback not set Keepalive not supported ARP type: ARPA, ARP Timeout 04:00:00 Last input 00:13:43, output 00:13:43, output hang never Last clearing of "show interface" counters never Input queue: 0/75/4/4 (size/max/drops/flushes); Total output drops: 0 Queueing strategy: fifo Output queue: 0/40 (size/max) 5 minute input rate 0 bits/sec, 0 packets/sec 5 minute output rate 713000 bits/sec, 60 packets/sec L2 Switched: ucast: 23510 pkt, 1950816 bytes - mcast: 2356 pkt, 224303 bytes L3 in Switched: ucast: 392099 pkt, 157212196 bytes - mcast: 0 pkt, 0 bytes mcast L3 out Switched: ucast: 11476372 pkt, 16835118809 bytes mcast: 0 pkt, 0 bytes 418533 packets input, 159423856 bytes, 0 no buffer Received 2242 broadcasts (1 IP multicasts) 0 runts, 0 giants, 0 throttles 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored 11496874 packets output, 16837230197 bytes, 0 underruns 0 output errors, 0 interface resets 0 output buffer failures, 0 output buffers swapped out В чем может быть проблема? Неужели на интерфейс lo2 нельзя прописывать много ip? Почти все абоненты прописаны ip route вручную. При пингах с 10.62.0.132 на 10.62.2.12 потери бывают почти 20% причем вполне возможно что соседний хост 10.62.2.11 пингуется нормально. Edited June 10, 2011 by wed Вставить ник Quote
Recommended Posts
Join the conversation
You can post now and register later. If you have an account, sign in now to post with your account.