Jump to content

Recommended Posts

Posted (edited)

Добрый день!

Пытаемся внедрить схему ip unnumbered + dchp.

Наблюдается проблема - пропадание пингов как на cisco так и на абонентов.

Закономерности абсолютно не нашел.

 

Конфиг циски:

upgrade fpd auto
version 12.2
no parser cache
no service pad
service timestamps debug datetime msec localtime
service timestamps log datetime msec localtime
service password-encryption
service linenumber
service counters max age 5
service unsupported-transceiver
!
ip subnet-zero
no ip source-route
!
!
no ip dhcp relay information check
!
ip dhcp snooping vlan 3-6,700-701
no ip dhcp snooping information option
no ip dhcp snooping verify mac-address
ip dhcp snooping
ip flow-cache entries 262144
ip flow-cache timeout inactive 60
ip flow-cache timeout active 10
ip multicast-routing
ip ssh version 2
no ip domain-lookup
ip domain-name domain.ru
mls aging long 128
mls aging normal 64
mls exclude acl-deny
mls netflow interface
mls flow ip interface-full
no mls nde interface
mls qos
mls cef error action reset
mls cef maximum-routes ipv6 1
!
interface Loopback2
ip address 1xx.2xx.1xx.33 255.255.255.240 secondary
ip address 192.168.160.1 255.255.255.192 secondary
ip address 192.168.160.65 255.255.255.192 secondary
ip address 192.168.160.129 255.255.255.192 secondary
ip address 192.168.120.1 255.255.255.0 secondary
ip address 10.62.0.1 255.255.255.0 secondary
ip address 10.62.1.1 255.255.255.0 secondary
ip address 10.62.2.1 255.255.255.0 secondary
ip address 10.62.3.1 255.255.255.0 secondary
ip address 10.62.4.1 255.255.255.0 secondary
ip address 10.62.5.1 255.255.255.0 secondary
ip address 10.62.6.1 255.255.255.0 secondary
ip address 10.62.7.1 255.255.255.0 secondary
ip address 192.168.60.1 255.255.255.0 secondary
ip address 192.168.61.1 255.255.255.0 secondary
ip address 192.168.62.1 255.255.255.0 secondary
ip address 192.168.130.1 255.255.255.0 secondary
ip address 1xx.2xx.1xx.1 255.255.255.0
no ip redirects
no ip proxy-arp
ip route-cache same-interface
!
interface GigabitEthernet2/1
switchport
switchport access vlan 5
switchport mode access
no cdp enable
spanning-tree portfast edge
ip dhcp snooping trust
!
interface GigabitEthernet2/10
switchport
switchport access vlan 3
switchport trunk native vlan 3
switchport trunk allowed vlan 3
switchport mode access
no keepalive
spanning-tree portfast edge
!
interface GigabitEthernet2/20
description ### Kudr
switchport
switchport access vlan 700
switchport mode access
spanning-tree portfast edge
!
interface Vlan3
ip unnumbered Loopback2
ip helper-address 1yy.2yy.1yy.5
no ip redirects
no ip proxy-arp
ip flow ingress
hold-queue 4096 in
!
interface Vlan5
ip address 1yy.2yy.1yy.6 255.255.255.252
no ip redirects
no ip proxy-arp
!
interface Vlan700
ip unnumbered Loopback2
ip helper-address 1yy.2yy.1yy.5
no ip redirects
no ip unreachables
ip directed-broadcast
no ip proxy-arp
hold-queue 4096 in
!
ip route 0.0.0.0 0.0.0.0 1yy.2yy.1yy.5
ip route 10.62.0.82 255.255.255.255 Vlan3
ip route 10.62.0.119 255.255.255.255 Vlan3
ip route 10.62.0.132 255.255.255.255 Vlan3
ip route 10.62.2.12 255.255.255.255 Vlan3
ip route 10.62.3.132 255.255.255.255 Vlan700

 

Вланы абонентов:

sh int vl 3
Vlan3 is up, line protocol is up
 Hardware is EtherSVI, address is 001c.b0b7.fac0 (bia 001c.b0b7.fac0)
 Interface is unnumbered. Using address of Loopback2 (1xx.2xx.1xx.1)
 MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec,
    reliability 255/255, txload 10/255, rxload 4/255
 Encapsulation ARPA, loopback not set
 Keepalive not supported
 ARP type: ARPA, ARP Timeout 04:00:00
 Last input 00:00:00, output 00:00:00, output hang never
 Last clearing of "show interface" counters never
 Input queue: 0/4096/118014/3695 (size/max/drops/flushes); Total output drops: 0
 Queueing strategy: fifo
 Output queue: 0/40 (size/max)
 5 minute input rate 17801000 bits/sec, 5207 packets/sec
 5 minute output rate 39377000 bits/sec, 5764 packets/sec
 L2 Switched: ucast: 15569932 pkt, 1600476133 bytes - mcast: 5459540 pkt, 493614944 bytes
 L3 in Switched: ucast: 2263582402 pkt, 1197685481055 bytes - mcast: 0 pkt, 0 bytes mcast
 L3 out Switched: ucast: 2537468848 pkt, 2320740147432 bytes mcast: 0 pkt, 0 bytes
    2280979281 packets input, 1199294405756 bytes, 0 no buffer

sh int vl 700
Vlan700 is up, line protocol is up
 Hardware is EtherSVI, address is 001c.b0b7.fac0 (bia 001c.b0b7.fac0)
 Interface is unnumbered. Using address of Loopback2 (1xx.2xx.1xx.1)
 MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec,
    reliability 255/255, txload 2/255, rxload 1/255
 Encapsulation ARPA, loopback not set
 Keepalive not supported
 ARP type: ARPA, ARP Timeout 04:00:00
 Last input 00:00:00, output 00:00:01, output hang never
 Last clearing of "show interface" counters never
 Input queue: 0/4096/328/19 (size/max/drops/flushes); Total output drops: 0
 Queueing strategy: fifo
 Output queue: 0/40 (size/max)
 5 minute input rate 3931000 bits/sec, 1219 packets/sec
 5 minute output rate 9992000 bits/sec, 1453 packets/sec
 L2 Switched: ucast: 727993 pkt, 56602417 bytes - mcast: 806169 pkt, 98092209 bytes
 L3 in Switched: ucast: 305389304 pkt, 146009142229 bytes - mcast: 0 pkt, 0 bytes mcast
 L3 out Switched: ucast: 310168308 pkt, 274473600545 bytes mcast: 0 pkt, 0 bytes
    306813088 packets input, 146130873867 bytes, 0 no buffer
    Received 701616 broadcasts (7447 IP multicasts)
    0 runts, 0 giants, 9 throttles
    0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
    310576598 packets output, 274552978928 bytes, 0 underruns
    0 output errors, 0 interface resets
    0 output buffer failures, 0 output buffers swapped out

 

Влан шлюза Интернета:

sh int vl 4
Vlan4 is up, line protocol is up
 Hardware is EtherSVI, address is 001c.b0b7.fac0 (bia 001c.b0b7.fac0)
 Interface is unnumbered. Using address of Loopback2 (1xx.2xx.1xx.1)
 MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec,
    reliability 255/255, txload 1/255, rxload 1/255
 Encapsulation ARPA, loopback not set
 Keepalive not supported
 ARP type: ARPA, ARP Timeout 04:00:00
 Last input 00:13:43, output 00:13:43, output hang never
 Last clearing of "show interface" counters never
 Input queue: 0/75/4/4 (size/max/drops/flushes); Total output drops: 0
 Queueing strategy: fifo
 Output queue: 0/40 (size/max)
 5 minute input rate 0 bits/sec, 0 packets/sec
 5 minute output rate 713000 bits/sec, 60 packets/sec
 L2 Switched: ucast: 23510 pkt, 1950816 bytes - mcast: 2356 pkt, 224303 bytes
 L3 in Switched: ucast: 392099 pkt, 157212196 bytes - mcast: 0 pkt, 0 bytes mcast
 L3 out Switched: ucast: 11476372 pkt, 16835118809 bytes mcast: 0 pkt, 0 bytes
    418533 packets input, 159423856 bytes, 0 no buffer
    Received 2242 broadcasts (1 IP multicasts)
    0 runts, 0 giants, 0 throttles
    0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
    11496874 packets output, 16837230197 bytes, 0 underruns
    0 output errors, 0 interface resets
    0 output buffer failures, 0 output buffers swapped out

 

 

В чем может быть проблема? Неужели на интерфейс lo2 нельзя прописывать много ip?

 

Почти все абоненты прописаны ip route вручную.

При пингах с 10.62.0.132 на 10.62.2.12 потери бывают почти 20%

 

причем вполне возможно что соседний хост 10.62.2.11 пингуется нормально.

Edited by wed

Join the conversation

You can post now and register later. If you have an account, sign in now to post with your account.

Guest
Reply to this topic...

×   Pasted as rich text.   Paste as plain text instead

  Only 75 emoji are allowed.

×   Your link has been automatically embedded.   Display as a link instead

×   Your previous content has been restored.   Clear editor

×   You cannot paste images directly. Upload or insert images from URL.

×
×
  • Create New...
На сайте используются файлы cookie и сервисы аналитики для корректной работы форума и улучшения качества обслуживания. Продолжая использовать сайт, вы соглашаетесь с использованием файлов cookie и с Политикой конфиденциальности.