Jump to content
Калькуляторы

[РЕШЕНО] PIM passive + IGMP Snooping на Cisco 3550-12G Мультикаст забивает канал, 3550 не отписывается от групп

2014-08-10 Решено, убрал в конфиге все про MVR.

 

Здравствуйте, столкнулся с проблемой: со временем кол-во IPGM групп на 3550 становится настолько большим (последний раз 164), что multicast трафик просто забивает канал, идут потери.

 

Во вложении схема подачи IPTV на жил. комплекс. В основании ЖК поставили Cisco WS-C3550-12G 12.2(52)SE (SW5 на схеме). От него на каждом гигабите висит cisco WS-C2960-48TC-S (SW6 на схеме) к которой подключены клиенты. На каждого клиента установлен Mikrotik RB750 ROS 5.26 с транковым uplink'ом, далее с 2960 по несколько портов выделено на жил площади абонентов.

 

Подозрение в неправильной работе IGMP snooping упало на 3550 (Sw5) потому, что в момент, когда в выводе

 

sw5# show ip igmp snooping groups vlan 256

 

показывает около 100 групп с одного порта sw6, в этот момент на sw6 показывает 5-10 групп.

 

Нашел в сети похожую схему, где с c4900m SVI pim passive > c3550-12G > Customer и такой проблемы не наблюдается, залил IOS 12.2(52)SE на SW5 - без толка.

В дебаге на SW5 Leave вижу, интерфейсы удаляются из подписки:

 

#debug ip igmp snooping group

 

 

 

Mar 8 09:32:12: IGMPSN: group: Leave for group 225.100.100.98 received on Vlan 256, port Gi0/4

Mar 8 09:32:12: IGMPSN: group: Leave for group 225.100.100.98 received on Vlan 256, port Gi0/5

Mar 8 09:32:13: IGMPSN: group: Deleting leave port on port Gi0/4, for 225.100.100.98 on Vlan 256

Mar 8 09:32:13: IGMPSN: group: Deleting leave port on port Gi0/5, for 225.100.100.98 on Vlan 256

Mar 8 09:32:14: IGMPSN: group: Leave for group 225.100.100.98 received on Vlan 256, port Gi0/7

Mar 8 09:32:15: IGMPSN: group: Deleting leave port on port Gi0/7, for 225.100.100.98 on Vlan 256

 

 

 

На графиках интерфейсов во вложении видно, как растет трафик. Особенно интересно на gi0/4 в 2:40 ночи попер резко трафик. По логам там порт клиента поднялся в 2:16.

 

В итоге приходится на SW5 делать no ip igmp snooping vlan 256 и обратно. Кто подскажет где косяк зарылся?

 

Ниже некоторые конфиги.

 

RB750

 

 

 

> routing igmp-proxy export

# mar/08/2014 10:27:46 by RouterOS 5.26

#

/routing igmp-proxy

set query-interval=2m5s query-response-interval=10s quick-leave=no

/routing igmp-proxy interface

add alternative-subnets=0.0.0.0/0 disabled=no interface=ether1-gateway \

threshold=1 upstream=yes

add alternative-subnets="" disabled=no interface=ether2-master-local \

threshold=1 upstream=no

 

 

 

SW1 (cisco WS-C3750-48TS 12.2(46)SE)

 

 

 

!

interface Vlan256

ip address 10.10.234.1 255.255.255.0

ip pim passive

end

 

#show ip igmp snooping vlan 256 detail

Global IGMP Snooping configuration:

-------------------------------------------

IGMP snooping : Enabled

IGMPv3 snooping (minimal) : Enabled

Report suppression : Enabled

TCN solicit query : Disabled

TCN flood query count : 2

Robustness variable : 2

Last member query count : 2

Last member query interval : 1000

 

Vlan 256:

--------

IGMP snooping : Enabled

IGMPv2 immediate leave : Disabled

Multicast router learning mode : pim-dvmrp

CGMP interoperability mode : IGMP_ONLY

Robustness variable : 2

Last member query count : 2

Last member query interval : 1000

Topology change : No

 

 

 

SW5 (Cisco WS-C3550-12G 12.2(52)SE)

 

 

 

#show ip igmp snooping vlan 256 detail

Global IGMP Snooping configuration:

-----------------------------------

IGMP snooping : Enabled

IGMPv3 snooping (minimal) : Enabled

Report suppression : Enabled

TCN solicit query : Disabled

TCN flood query count : 2

Last Member Query Interval : 1000

 

Vlan 256:

--------

IGMP snooping : Enabled

IGMPv2 immediate leave : Disabled

Explicit host tracking : Enabled

Multicast router learning mode : pim-dvmrp

Last Member Query Interval : 1000

Source only learning age timer : 10

CGMP interoperability mode : IGMP_ONLY

Topology change : No

 

 

 

SW6 (cisco WS-C2960-48TC-S 12.2(50)SE5)

 

 

 

#show ip igmp snooping vlan 256 detail

Global IGMP Snooping configuration:

-------------------------------------------

IGMP snooping : Enabled

IGMPv3 snooping (minimal) : Enabled

Report suppression : Enabled

TCN solicit query : Disabled

TCN flood query count : 2

Robustness variable : 2

Last member query count : 2

Last member query interval : 1000

 

Vlan 256:

--------

IGMP snooping : Enabled

IGMPv2 immediate leave : Disabled

Multicast router learning mode : pim-dvmrp

CGMP interoperability mode : IGMP_ONLY

Robustness variable : 2

Last member query count : 2

Last member query interval : 1000

Topology change : No

 

 

post-87545-022690600 1394259113_thumb.png

post-87545-059329100 1394259541_thumb.png

post-87545-044437900 1394442948_thumb.png

Edited by a-zazell

Share this post


Link to post
Share on other sites

Смоделировал отписку от группы, ниже дебаги. При этом на 3550 вывалилось:

 

Mar  8 12:24:11: IGMPSN: group: Leave for group 225.100.107.74 received on Vlan 256, port Gi0/7
Mar  8 12:24:11: IGMPSN: group: Created v2 leave port on port Gi0/7, for group 225.100.107.74 on Vlan 256
Mar  8 12:24:11: IGMPSN: group: Sending Group-Specific Query for group 225.100.107.74 on Vlan 256, port Gi0/7
Mar  8 12:24:12: IGMPSN: group: Deleting leave port on port Gi0/7, for 225.100.107.74 on Vlan 256

 

Смотрим группы, а там порт gi0/7 все еще висит, с**а.

 

#sh ip igmp snooping groups
Vlan      Group             Version     Port List
------------------------------------------------------------
256       225.100.107.74    v2          Gi0/7, Gi0/10

 

Вот дебаг с SW1, leave он видит:

 

Mar  8 12:25:11: L2MM: Add member: gda:0100.5e64.6b4a, removing Gi1/0/4
Mar  8 12:25:11: IGMPSN: mgt: deleted port Gi1/0/4 on gce 0100.5e64.6b4a, on Vlan 256
Mar  8 12:25:11: IGMPSN: mgt: try to delete group 225.100.107.74, on Vlan 256
Mar  8 12:25:11: IGMPSN: group: purge group 225.100.107.74 in vlan 256
Mar  8 12:25:11: IGMPSN: mgt: deleting group 225.100.107.74, on Vlan 256
Mar  8 12:25:11: IGMPSN: mgt: deleting gce 0100.5e64.6b4a, on Vlan 256

Share this post


Link to post
Share on other sites

Up! Поднял тему также здесь.

 

Вот сижу наблюдаю за этой группой 225.100.50.82 (которую никто не смотрит, её нет на коммутаторах доступа) и вижу по debug ip igmp snooping 225.100.50.82, при этом на SW6 тишина:

 

SW5 c3550

 

Mar 9 18:00:01: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.82, source 10.10.234.4 on Vlan 256, port Gi0/10 
Mar 9 18:02:02: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.82, source 10.10.234.5 on Vlan 256, port Gi0/10 
Mar 9 18:04:03: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.82, source 10.10.234.5 on Vlan 256, port Gi0/10 
Mar 9 18:06:04: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.82, source 10.10.234.5 on Vlan 256, port Gi0/10 
Mar 9 18:08:05: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.82, source 10.10.234.3 on Vlan 256, port Gi0/10 
Mar 9 18:10:06: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.82, source 10.10.234.5 on Vlan 256, port Gi0/10 

 

SW1 c3750

 

 

 

Mar 9 18:00:01: L2MM: Add member: gda:0100.5e64.3252, removing Gi1/0/4

Mar 9 18:00:01: IGMPSN: mgt: deleted port Gi1/0/4 on gce 0100.5e64.3252, on Vlan 256

Mar 9 18:00:01: IGMPSN: mgt: try to delete group 225.100.50.82, on Vlan 256

Mar 9 18:00:01: IGMPSN: group: purge group 225.100.50.82 in vlan 256

Mar 9 18:00:01: IGMPSN: mgt: deleting group 225.100.50.82, on Vlan 256

Mar 9 18:00:01: IGMPSN: mgt: deleting gce 0100.5e64.3252, on Vlan 256

Mar 9 18:00:01: IGMPSN: group: Group does not exist - Leave for group 225.100.50.82 received on Vlan 256, port Gi1/0/4 sends to router port

Mar 9 18:00:01: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:00:01: IGMPSN: group: Created group 225.100.50.82

Mar 9 18:00:01: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:00:01: L2MM: Add member: gda:0100.5e64.3252, adding Gi1/0/4

Mar 9 18:00:01: IGMPSN: mgt: added port Gi1/0/4 on gce 0100.5e64.3252, Vlan 256

Mar 9 18:00:01: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

Mar 9 18:00:01: IGMPSN: group: Forwarding 225.100.50.82 report to router ports

 

Mar 9 18:02:02: L2MM: Add member: gda:0100.5e64.3252, removing Gi1/0/4

Mar 9 18:02:02: IGMPSN: mgt: deleted port Gi1/0/4 on gce 0100.5e64.3252, on Vlan 256

Mar 9 18:02:02: IGMPSN: mgt: try to delete group 225.100.50.82, on Vlan 256

Mar 9 18:02:02: IGMPSN: group: purge group 225.100.50.82 in vlan 256

Mar 9 18:02:02: IGMPSN: mgt: deleting group 225.100.50.82, on Vlan 256

Mar 9 18:02:02: IGMPSN: mgt: deleting gce 0100.5e64.3252, on Vlan 256

Mar 9 18:02:02: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:02:02: IGMPSN: group: Created group 225.100.50.82

Mar 9 18:02:02: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:02:02: L2MM: Add member: gda:0100.5e64.3252, adding Gi1/0/4

Mar 9 18:02:02: IGMPSN: mgt: added port Gi1/0/4 on gce 0100.5e64.3252, Vlan 256

Mar 9 18:02:02: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

Mar 9 18:02:02: IGMPSN: group: Forwarding 225.100.50.82 report to router ports

Mar 9 18:02:02: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:02:02: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:02:02: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

 

Mar 9 18:04:03: IGMPSN: group: Group exist - Leave for group 225.100.50.82 received on Vlan 256, port Gi1/0/4, group state (1)

Mar 9 18:04:03: IGMPSN: group: Created v2 leave port on port Gi1/0/4, for group 225.100.50.82 on Vlan 256

Mar 9 18:04:03: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:04:03: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:04:03: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

Mar 9 18:04:03: IGMPSN: group: Forwarding 225.100.50.82 report to router ports

Mar 9 18:04:04: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:04:04: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:04:04: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

Mar 9 18:04:05: IGMPSN: group: Deleting leave port on port Gi1/0/4, for 4.48.73.64 on Vlan 256

 

Mar 9 18:06:04: L2MM: Add member: gda:0100.5e64.3252, removing Gi1/0/4

Mar 9 18:06:04: IGMPSN: mgt: deleted port Gi1/0/4 on gce 0100.5e64.3252, on Vlan 256

Mar 9 18:06:04: IGMPSN: mgt: try to delete group 225.100.50.82, on Vlan 256

Mar 9 18:06:04: IGMPSN: group: purge group 225.100.50.82 in vlan 256

Mar 9 18:06:04: IGMPSN: mgt: deleting group 225.100.50.82, on Vlan 256

Mar 9 18:06:04: IGMPSN: mgt: deleting gce 0100.5e64.3252, on Vlan 256

Mar 9 18:06:04: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:06:04: IGMPSN: group: Created group 225.100.50.82

Mar 9 18:06:04: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:06:04: L2MM: Add member: gda:0100.5e64.3252, adding Gi1/0/4

Mar 9 18:06:04: IGMPSN: mgt: added port Gi1/0/4 on gce 0100.5e64.3252, Vlan 256

Mar 9 18:06:04: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

Mar 9 18:06:04: IGMPSN: group: Forwarding 225.100.50.82 report to router ports

Mar 9 18:06:04: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:06:04: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:06:04: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

 

Mar 9 18:08:05: L2MM: Add member: gda:0100.5e64.3252, removing Gi1/0/4

Mar 9 18:08:05: IGMPSN: mgt: deleted port Gi1/0/4 on gce 0100.5e64.3252, on Vlan 256

Mar 9 18:08:05: IGMPSN: mgt: try to delete group 225.100.50.82, on Vlan 256

Mar 9 18:08:05: IGMPSN: group: purge group 225.100.50.82 in vlan 256

Mar 9 18:08:05: IGMPSN: mgt: deleting group 225.100.50.82, on Vlan 256

Mar 9 18:08:05: IGMPSN: mgt: deleting gce 0100.5e64.3252, on Vlan 256

Mar 9 18:08:05: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:08:05: IGMPSN: group: Created group 225.100.50.82

Mar 9 18:08:05: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:08:05: L2MM: Add member: gda:0100.5e64.3252, adding Gi1/0/4

Mar 9 18:08:05: IGMPSN: mgt: added port Gi1/0/4 on gce 0100.5e64.3252, Vlan 256

Mar 9 18:08:05: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

Mar 9 18:08:05: IGMPSN: group: Forwarding 225.100.50.82 report to router ports

Mar 9 18:08:05: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:08:05: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:08:05: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

 

Mar 9 18:10:06: L2MM: Add member: gda:0100.5e64.3252, removing Gi1/0/4

Mar 9 18:10:06: IGMPSN: mgt: deleted port Gi1/0/4 on gce 0100.5e64.3252, on Vlan 256

Mar 9 18:10:06: IGMPSN: mgt: try to delete group 225.100.50.82, on Vlan 256

Mar 9 18:10:06: IGMPSN: group: purge group 225.100.50.82 in vlan 256

Mar 9 18:10:06: IGMPSN: mgt: deleting group 225.100.50.82, on Vlan 256

Mar 9 18:10:06: IGMPSN: mgt: deleting gce 0100.5e64.3252, on Vlan 256

Mar 9 18:10:06: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:10:06: IGMPSN: group: Created group 225.100.50.82

Mar 9 18:10:06: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:10:06: L2MM: Add member: gda:0100.5e64.3252, adding Gi1/0/4

Mar 9 18:10:06: IGMPSN: mgt: added port Gi1/0/4 on gce 0100.5e64.3252, Vlan 256

Mar 9 18:10:06: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

Mar 9 18:10:06: IGMPSN: group: Forwarding 225.100.50.82 report to router ports

Mar 9 18:10:06: IGMPSN: group: Received IGMPv2 report for group 225.100.50.82 received on Vlan 256, port Gi1/0/4

Mar 9 18:10:06: IGMPSN: Add v2 group 225.100.50.82 member port Gi1/0/4, on Vlan 256

Mar 9 18:10:06: IGMPSN: group: Added port Gi1/0/4 to group 225.100.50.82

Mar 9 18:10:06: IGMPSN: group: Forwarding 225.100.50.82 report to router ports

 

 

 

Если я правильно понял, в момент, когда на 3750 группа удаляется из vlan256, с 3550 прилетает report на неё.

Share this post


Link to post
Share on other sites

Покажите конфиги, igmp роутер-порты и querier'ы со всех свитчей

Share this post


Link to post
Share on other sites

Покажите конфиги, igmp роутер-порты и querier'ы со всех свитчей

 

А конфиги какие хотите? Ниже querier и mrouter.

 

SW1

 

SW1#show ip igmp snooping querier detail
Vlan      IP Address               IGMP Version   Port
-------------------------------------------------------------
256       10.10.234.1              v2            Router

Global IGMP switch querier status
--------------------------------------------------------
admin state                    : Disabled
admin version                  : 2
source IP address              : 0.0.0.0
query-interval (sec)           : 60
max-response-time (sec)        : 10
querier-timeout (sec)          : 120
tcn query count                : 2
tcn query interval (sec)       : 10

SW1#show ip igmp snooping mrouter
Vlan    ports
----    -----
256    Router

 

SW2

 

SW2#sh ip igmp snooping querier
Vlan      IP Address     IGMP Version        Port
---------------------------------------------------
256       10.10.234.1    v2                  Gi0/1

SW2#sh ip igmp snooping mrouter
Vlan    ports
----    -----
256    Gi0/1(dynamic)

 

SW3

 

SW3#sh ip igmp snooping querier vlan 256 detail
IP address               : 10.10.234.1
IGMP version             : v2
Port                     : Gi0/8
Max response time        : 10s


Global IGMP switch querier status
--------------------------------------------------------
admin state                    : Disabled
admin version                  : 2
source IP address              : 0.0.0.0
query-interval (sec)           : 60
max-response-time (sec)        : 10
querier-timeout (sec)          : 120
tcn query count                : 2
tcn query interval (sec)       : 10

SW3#sh ip igmp snooping mrouter vlan 256
Vlan    ports
----    -----
256    Gi0/8(dynamic)

 

SW4

 

SW4#sh ip igmp snooping querier vlan 256 detail
IP address               : 10.10.234.1
IGMP version             : v2
Port                     : Gi1/0/2
Max response time        : 10s


Global IGMP switch querier status
--------------------------------------------------------
admin state                    : Disabled
admin version                  : 2
source IP address              : 0.0.0.0
query-interval (sec)           : 60
max-response-time (sec)        : 10
querier-timeout (sec)          : 120
tcn query count                : 2
tcn query interval (sec)       : 10

SW4#sh ip igmp snooping mrouter vlan 256
Vlan    ports
----    -----
256    Gi1/0/2(dynamic)

 

SW5

 

SW5#sh ip igmp snooping mrouter
Vlan    ports
----    -----
256    Gi0/10(dynamic)

SW5#sh ip igmp snooping querier detail
Vlan      IP Address        IGMP Version   Port
----------------------------------------------------------------
256       10.10.234.1       v2             Gi0/10

Global IGMP switch querier status
--------------------------------------------------------
admin state                    : Disabled
admin version                  : 2
source IP address              : 0.0.0.0
query-interval (sec)           : 60
max-response-time (sec)        : 10
querier-timeout (sec)          : 120
tcn query count                : 2
tcn query interval (sec)       : 10

 

SW6

 

SW6#show ip igmp snooping querier detail
Vlan      IP Address               IGMP Version   Port
-------------------------------------------------------------
200       192.168.88.1             v2            Fa0/48
256       10.10.234.1              v2            Gi0/1


Global IGMP switch querier status
--------------------------------------------------------
admin state                    : Disabled
admin version                  : 2
source IP address              : 0.0.0.0
query-interval (sec)           : 60
max-response-time (sec)        : 10
querier-timeout (sec)          : 120
tcn query count                : 2
tcn query interval (sec)       : 10

SW6#show ip igmp snooping mrouter
Vlan    ports
----    -----
200    Fa0/48(dynamic)
256    Gi0/1(dynamic)

Share this post


Link to post
Share on other sites

а почему не фильтруите на портах группы к которым клиент просится? создайте IGMP профиль на access коммутаторе и вешайте на клиентские порты дропая всякую х**ню.

 

ip igmp profile "x"

permit

range x.x.x.x

end

!

int fa0/x

igmp filter "profile"

ip igmp max-groups "х"<---- в добавок можно

end

Share this post


Link to post
Share on other sites

а почему не фильтруите на портах группы к которым клиент просится?

 

Проблема не в лишних группах. Провел экперимент: добавил в MFC RB750 группу 225.100.50.112, поток пошел - на SW5 группа создалась. Затем удалил её на RB750, на SW6 она пропала, на SW5:

 

Mar 10 12:52:58: IGMPSN: group: Leave for group 225.100.50.112 received on Vlan 256, port Gi0/7
Mar 10 12:52:58: IGMPSN: group: Created v2 leave port on port Gi0/7, for group 225.100.50.112 on Vlan 256
Mar 10 12:52:58: IGMPSN: group: Sending Group-Specific Query for group 225.100.50.112 on Vlan 256, port Gi0/7
Mar 10 12:52:59: IGMPSN: group: Deleting leave port on port Gi0/7, for 225.100.50.112 on Vlan 256

 

Группа осталась в таблице и теперь каждые 2 мин (querier-timeout (sec) : 120 ??) вижу:

 

Mar 10 13:00:39: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.5 on Vlan 256,  port Gi0/10
Mar 10 13:02:39: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.5 on Vlan 256,  port Gi0/10
Mar 10 13:04:40: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.3 on Vlan 256,  port Gi0/10
Mar 10 13:06:40: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.3 on Vlan 256,  port Gi0/10
Mar 10 13:08:41: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.5 on Vlan 256,  port Gi0/10
Mar 10 13:10:42: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.5 on Vlan 256,  port Gi0/10
Mar 10 13:12:43: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.4 on Vlan 256,  port Gi0/10
Mar 10 13:14:43: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.4 on Vlan 256,  port Gi0/10
Mar 10 13:16:44: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.3 on Vlan 256,  port Gi0/10
Mar 10 13:18:45: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.4 on Vlan 256,  port Gi0/10
Mar 10 13:20:46: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.4 on Vlan 256,  port Gi0/10
Mar 10 13:22:47: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.4 on Vlan 256,  port Gi0/10
Mar 10 13:24:47: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.4 on Vlan 256,  port Gi0/10

 

При этом в сниффире 10.10.234.[345] нет ничего по этой группе, и на SW6 в дебаге тихо (debug ip igmp snooping 225.100.50.112).

Share this post


Link to post
Share on other sites

Попробуйте сделать

 

no ip igmp snooping report-suppression

 

на sw5. Если поможет, то похоже на баг ПО (если никаких других особенностей в вашей сети нет, кроме тех, что вы указали)

Share this post


Link to post
Share on other sites

Еще раз полный дебаг при ручном создании/удалении подписки на 225.100.50.112.

 

SW5

 

 

 

SW5#sh deb

Group address debugging is on for 225.100.50.112

 

SW5#sh ip igmp snooping groups vlan 256

Vlan Group Version Port List

------------------------------------------------------------

256 225.100.50.7 v2 Gi0/7, Gi0/10

256 225.100.50.82 v2 Gi0/7, Gi0/10

256 225.100.50.112 v2 Gi0/7, Gi0/10

256 225.100.100.98 v2 Gi0/5, Gi0/7, Gi0/10

256 225.100.100.99 v2 Gi0/5, Gi0/7, Gi0/10

256 225.100.107.164 v2 Gi0/7, Gi0/10

 

Mar 10 14:05:02: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.4 on Vlan 256, port Gi0/10 vla

Mar 10 14:05:44: IGMPSN: group: Received V2 report for group 225.100.50.112 received on Vlan 256, port Gi0/7

Mar 10 14:05:44: IGMPSN: group: Added port Gi0/7 to group 225.100.50.112

Mar 10 14:06:01: IGMPSN: group: Received V2 report for group 225.100.50.112 received on Vlan 256, port Gi0/7

Mar 10 14:06:01: IGMPSN: group: Added port Gi0/7 to group 225.100.50.112

Mar 10 14:06:57: IGMPSN: group: Received V2 report for group 225.100.50.112 received on Vlan 256, port Gi0/7

Mar 10 14:06:57: IGMPSN: group: Added port Gi0/7 to group 225.100.50.112

Mar 10 14:07:25: IGMPSN: group: Leave for group 225.100.50.112 received on Vlan 256, port Gi0/7

Mar 10 14:07:25: IGMPSN: group: Created v2 leave port on port Gi0/7, for group 225.100.50.112 on Vlan 256

Mar 10 14:07:25: IGMPSN: group: Sending Group-Specific Query for group 225.100.50.112 on Vlan 256, port Gi0/7

Mar 10 14:07:26: IGMPSN: group: Deleting leave port on port Gi0/7, for 225.100.50.112 on Vlan 256

 

SW5#sg vlan 256

Vlan Group Version Port List

------------------------------------------------------------

256 225.100.50.7 v2 Gi0/7, Gi0/10

256 225.100.50.82 v2 Gi0/7, Gi0/10

256 225.100.50.112 v2 Gi0/7, Gi0/10

256 225.100.100.98 v2 Gi0/5, Gi0/7, Gi0/10

256 225.100.100.99 v2 Gi0/5, Gi0/7, Gi0/10

256 225.100.107.164 v2 Gi0/7, Gi0/10

 

Mar 10 14:09:03: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.4 on Vlan 256, port Gi0/10

Mar 10 14:11:04: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.5 on Vlan 256, port Gi0/10

Mar 10 14:13:05: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.4 on Vlan 256, port Gi0/10

Mar 10 14:15:06: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.4 on Vlan 256, port Gi0/10

 

 

 

SW6

 

 

 

SW6#sg

Vlan Group Type Version Port List

-----------------------------------------------------------------------

200 225.100.50.82 igmp v2 Fa0/39, Fa0/48

200 225.100.100.99 igmp v2 Fa0/38, Fa0/39,

Fa0/48

200 225.100.107.164 igmp v2 Fa0/38, Fa0/48

202 225.100.50.7 igmp v2 Fa0/29, Fa0/46

202 225.100.100.99 igmp v2 Fa0/29, Fa0/31,

Fa0/46

256 225.100.50.7 igmp v2 Fa0/46, Gi0/1

256 225.100.50.82 igmp v2 Fa0/48, Gi0/1

256 225.100.100.99 igmp v2 Fa0/46, Fa0/48,

Gi0/1

256 225.100.107.164 igmp v2 Fa0/48, Gi0/1

 

Mar 10 14:05:44: IGMPSN: group: Received IGMPv2 report for group 225.100.50.112 received on Vlan 256, port Fa0/47

Mar 10 14:05:44: L2MM: Add member: gda:0100.5e64.3270, adding Gi0/1

Mar 10 14:05:44: IGMPSN: mgt: added port Gi0/1 on gce 0100.5e64.3270, Vlan 256

Mar 10 14:05:44: IGMPSN: group: Created group 225.100.50.112

Mar 10 14:05:44: IGMPSN: Add v2 group 225.100.50.112 member port Fa0/47, on Vlan 256

Mar 10 14:05:44: L2MM: Add member: gda:0100.5e64.3270, adding Fa0/47

Mar 10 14:05:44: IGMPSN: mgt: added port Fa0/47 on gce 0100.5e64.3270, Vlan 256

Mar 10 14:05:44: IGMPSN: group: Added port Fa0/47 to group 225.100.50.112

Mar 10 14:05:44: IGMPSN: group: Forwarding 225.100.50.112 report to router ports

 

Mar 10 14:05:52: IGMPSN: group: Received IGMPv2 report for group 225.100.50.112 received on Vlan 256, port Fa0/47

Mar 10 14:05:52: IGMPSN: Add v2 group 225.100.50.112 member port Fa0/47, on Vlan 256

Mar 10 14:05:52: IGMPSN: group: Added port Fa0/47 to group 225.100.50.112

 

Mar 10 14:06:01: IGMPSN: group: Received IGMPv2 report for group 225.100.50.112 received on Vlan 256, port Fa0/47

Mar 10 14:06:01: IGMPSN: Add v2 group 225.100.50.112 member port Fa0/47, on Vlan 256

Mar 10 14:06:01: IGMPSN: group: Added port Fa0/47 to group 225.100.50.112

Mar 10 14:06:01: IGMPSN: group: Forwarding 225.100.50.112 report to router ports

 

Mar 10 14:06:57: IGMPSN: group: Received IGMPv2 report for group 225.100.50.112 received on Vlan 256, port Fa0/47

Mar 10 14:06:57: IGMPSN: Add v2 group 225.100.50.112 member port Fa0/47, on Vlan 256

Mar 10 14:06:57: IGMPSN: group: Added port Fa0/47 to group 225.100.50.112

Mar 10 14:06:57: IGMPSN: group: Forwarding 225.100.50.112 report to router ports

 

Mar 10 14:07:21: IGMPSN: group: Group exist - Leave for group 225.100.50.112 received on Vlan 256, port Fa0/47, group state (1)

Mar 10 14:07:21: IGMPSN: group: Created v2 leave port on port Fa0/47, for group 225.100.50.112 on Vlan 256

 

Mar 10 14:07:23: IGMPSN: group: Deleting leave port on port Fa0/47, for 2.61.187.120 on Vlan 256

Mar 10 14:07:23: L2MM: Add member: gda:0100.5e64.3270, removing Fa0/47

Mar 10 14:07:23: IGMPSN: mgt: deleted port Fa0/47 on gce 0100.5e64.3270, on Vlan 256

Mar 10 14:07:23: IGMPSN: group: Deleting port Fa0/47 from group 225.100.50.112 on Vlan 256

Mar 10 14:07:23: IGMPSN: mgt: try to delete group 225.100.50.112, on Vlan 256

Mar 10 14:07:23: IGMPSN: group: purge group 225.100.50.112 in vlan 256

Mar 10 14:07:23: IGMPSN: mgt: deleting group 225.100.50.112, on Vlan 256

Mar 10 14:07:23: IGMPSN: mgt: deleting gce 0100.5e64.3270, on Vlan 256

 

SW6#sg

Vlan Group Type Version Port List

-----------------------------------------------------------------------

200 225.100.50.82 igmp v2 Fa0/39, Fa0/48

200 225.100.100.99 igmp v2 Fa0/38, Fa0/39,

Fa0/48

200 225.100.107.164 igmp v2 Fa0/38, Fa0/48

202 225.100.50.7 igmp v2 Fa0/29, Fa0/46

202 225.100.100.99 igmp v2 Fa0/29, Fa0/31,

Fa0/46

256 225.100.50.7 igmp v2 Fa0/46, Gi0/1

256 225.100.50.82 igmp v2 Fa0/48, Gi0/1

256 225.100.100.99 igmp v2 Fa0/46, Fa0/48,

Gi0/1

256 225.100.107.164 igmp v2 Fa0/48, Gi0/1

 

 

Share this post


Link to post
Share on other sites

Для верности сделал shutdown всех портов где висят RB750 на коммутаторах доступа - c3550 все равно шлет:

 

Mar 10 14:47:22: IGMPSN: group: Group Query 225.100.50.112 received on Vlan 256, port Gi0/10
Mar 10 14:47:22: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.10.234.2 on Vlan 256,  port Gi0/10

 

При том, что порт с RB750 10.10.234.2 в down. Как-то так, пока помогает по крону no ip igmp snooping vlan256 и обратно 1 раз в 3 часа.

Share this post


Link to post
Share on other sites

Т.е. "no ip igmp snooping report-suppression" не помогает?

 

IGMPSN: group: Sending ... report(v2)

 

Такое бывает только если коммутатор работает как querier или как proxy (report-suppression)

 

uptime какой у sw5?

Share this post


Link to post
Share on other sites

Т.е. "no ip igmp snooping report-suppression" не помогает?

 

uptime какой у sw5?

 

Не помогает, uptime is 3 days, 18 hours, 55 minutes.

Share this post


Link to post
Share on other sites

Проведите такую диагностику:

Прокиньте ещё один влан с мультикастом от sw1 к sw6 и посмотрите что будет в нём. Если тоже самое, то выключайте igmp-snooping на sw5 в новом влане и если всё станет нормально, то значит проблема именно в igmp-snooping именно на sw5

Share this post


Link to post
Share on other sites

Проведите такую диагностику:

Прокиньте ещё один влан с мультикастом от sw1 к sw6 и посмотрите что будет в нём. Если тоже самое, то выключайте igmp-snooping на sw5 в новом влане и если всё станет нормально, то значит проблема именно в igmp-snooping именно на sw5

 

Прогнал Vlan 202, подписал RB750 на 225.100.50.112 - картина не изменилась, ниже дебаги:

 

SW5

 

 

 

SW5#

Mar 10 21:05:57: IGMPSN: group: Received V2 report for group 225.100.50.112 received on Vlan 202, port Gi0/7

Mar 10 21:05:57: IGMPSN: mgt: created gce 0100.5e64.3270, on Vlan 202

Mar 10 21:05:57: IGMPSN: mgt: added port Gi0/10 on gce 0100.5e64.3270, Vlan 202

Mar 10 21:05:57: IGMPSN: group: Created group 225.100.50.112

Mar 10 21:05:57: IGMPSN: mgt: added port Gi0/7 on gce 0100.5e64.3270, Vlan 202

Mar 10 21:05:57: IGMPSN: group: Added port Gi0/7 to group 225.100.50.112

Mar 10 21:05:57: IGMPSN: group: Forwarding 225.100.50.112 report to router ports

SW5#

SW5#sg vlan 202

Vlan Group Version Port List

------------------------------------------------------------

202 225.100.50.112 v2 Gi0/7, Gi0/10

 

SW5#

Mar 10 21:06:47: IGMPSN: group: Leave for group 225.100.50.112 received on Vlan 202, port Gi0/7

Mar 10 21:06:47: IGMPSN: group: Created v2 leave port on port Gi0/7, for group 225.100.50.112 on Vlan 202

Mar 10 21:06:47: IGMPSN: group: Sending Group-Specific Query for group 225.100.50.112 on Vlan 202, port Gi0/7

Mar 10 21:06:48: IGMPSN: group: Deleting leave port on port Gi0/7, for 225.100.50.112 on Vlan 202

SW5#

SW5#sg vlan 202

Vlan Group Version Port List

------------------------------------------------------------

202 225.100.50.112 v2 Gi0/7, Gi0/10

 

SW5#sg vlan 202

Vlan Group Version Port List

------------------------------------------------------------

202 225.100.50.112 v2 Gi0/7, Gi0/10

 

SW5#sg vlan 202

Vlan Group Version Port List

------------------------------------------------------------

202 225.100.50.112 v2 Gi0/7, Gi0/10

 

SW5#

Mar 10 21:08:05: IGMPSN: group: Sending proxy report(v2) for group 225.100.50.112, source 10.7.0.138 on Vlan 202, port Gi0/10

SW5#un all

All possible debugging has been turned off

 

 

 

SW6

 

 

 

SW6#sg

Vlan Group Type Version Port List

-----------------------------------------------------------------------

256 225.100.50.45 igmp v2 Gi0/1, Gi0/2

256 225.100.50.82 igmp v2 Gi0/1, Gi0/2

256 225.100.100.99 igmp v2 Gi0/1, Gi0/2

256 225.100.107.164 igmp v2 Gi0/1, Gi0/2

256 225.100.108.11 igmp v2 Gi0/1, Gi0/2

SW6#

Mar 10 21:05:57.783: IGMPSN: group: Received IGMPv2 report for group 225.100.50.112 received on Vlan 202, port Fa0/48

Mar 10 21:05:57.783: L2MM: Add member: gda:0100.5e64.3270, adding Gi0/1

Mar 10 21:05:57.791: IGMPSN: mgt: added port Gi0/1 on gce 0100.5e64.3270, Vlan 202

Mar 10 21:05:57.791: IGMPSN: group: Created group 225.100.50.112

Mar 10 21:05:57.791: IGMPSN: Add v2 group 225.100.50.112 member port Fa0/48, on Vlan 202

Mar 10 21:05:57.791: L2MM: Add member: gda:0100.5e64.3270, adding Fa0/48

Mar 10 21:05:57.791: IGMPSN: mgt: added port Fa0/48 on gce 0100.5e64.3270, Vlan 202

Mar 10 21:05:57.791: IGMPSN: group: Added port Fa0/48 to group 225.100.50.112

Mar 10 21:05:57.791: IGMPSN: group: Forwarding 225.100.50.112 report to router ports

Mar 10 21:06:00.526: IGMPSN: group: Received IGMPv2 report for group 225.100.50.112 received on Vlan 202, port Fa0/48

Mar 10 21:06:00.526: IGMPSN: Add v2 group 225.100.50.112 member port Fa0/48, on Vlan 202

Mar 10 21:06:00.526: IGMPSN: group: Added port Fa0/48 to group 225.100.50.112

Mar 10 21:06:04.703: IGMPSN: group: Received IGMPv2 report for group 225.100.50.112 received on Vlan 202, port Fa0/48

Mar 10 21:06:04.703: IGMPSN: Add v2 group 225.100.50.112 member port Fa0/48, on Vlan 202

Mar 10 21:06:04.703: IGMPSN: group: Added port Fa0/48 to group 225.100.50.112

SW6#

SW6#sg vlan 202

Vlan Group Type Version Port List

-----------------------------------------------------------------------

202 225.100.50.112 igmp v2 Fa0/48, Gi0/1

SW6#

SW6#

Mar 10 21:06:45.841: IGMPSN: group: Group exist - Leave for group 225.100.50.112 received on Vlan 202, port Fa0/48, group state (1)

Mar 10 21:06:45.841: IGMPSN: group: Created v2 leave port on port Fa0/48, for group 225.100.50.112 on Vlan 202

Mar 10 21:06:47.863: IGMPSN: group: Deleting leave port on port Fa0/48, for 2.61.187.120 on Vlan 202

Mar 10 21:06:47.863: L2MM: Add member: gda:0100.5e64.3270, removing Fa0/48

Mar 10 21:06:47.863: IGMPSN: mgt: deleted port Fa0/48 on gce 0100.5e64.3270, on Vlan 202

Mar 10 21:06:47.863: IGMPSN: group: Deleting port Fa0/48 from group 225.100.50.112 on Vlan 202

Mar 10 21:06:47.863: IGMPSN: mgt: try to delete group 225.100.50.112, on Vlan 202

Mar 10 21:06:47.863: IGMPSN: group: purge group 225.100.50.112 in vlan 202

Mar 10 21:06:47.863: IGMPSN: mgt: deleting group 225.100.50.112, on Vlan 202

Mar 10 21:06:47.863: IGMPSN: mgt: deleting gce 0100.5e64.3270, on Vlan 202

!

! здесь удалил все интерфейсы в IGMP proxy на RB750 и сделал reboot

!

Mar 10 21:07:34.914: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/48, changed state to down

Mar 10 21:07:35.921: %LINK-3-UPDOWN: Interface FastEthernet0/48, changed state to down

Mar 10 21:07:38.245: %LINK-3-UPDOWN: Interface FastEthernet0/48, changed state to up

Mar 10 21:07:40.258: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet0/48, changed state to up

!

! IGMP групп в 202 Vlan больше нет

!

SW6#sg vlan 202

SW6#sg vlan 202

SW6#sg vlan 202

SW6#un all

All possible debugging has been turned off

 

 

 

 

На SW6 все нормально, на SW5 снова "висяк" и proxy report полетели. Не совсем понимаю что должно произойти когда выключу snooping в новом 202 Vlan - выключил.

Share this post


Link to post
Share on other sites

Видимо РЕШЕНО, на первом этапе планировал сливать multicast по MVR, на SW5 была конфигурация:

 

mvr vlan 996
mvr querytime 10
mvr mode dynamic
mvr group 225.100.50.1 254
mvr group 225.100.100.98 2

 

обратите внимание, директивы mvr не указано

 

SW5#sh mvr
MVR disabled

 

Убрал все касательно MVR:

 

no mvr vlan 996
no mvr querytime 10
no mvr mode dynamic
no mvr
no mvr group 225.100.50.1 254
no mvr group 225.100.100.98 2
!

 

Повторил процедуру с Join/leave группы 225.100.50.112 и "О боги!" - все работает как надо:

 

 

 

SW5#

Mar 10 21:44:34: IGMPSN: group: Received V2 report for group 225.100.50.112 received on Vlan 256, port Gi0/7

Mar 10 21:44:34: IGMPSN: mgt: created gce 0100.5e64.3270, on Vlan 256

Mar 10 21:44:34: IGMPSN: mgt: added port Gi0/10 on gce 0100.5e64.3270, Vlan 256

Mar 10 21:44:34: IGMPSN: group: Created group 225.100.50.112

Mar 10 21:44:34: IGMPSN: mgt: added port Gi0/7 on gce 0100.5e64.3270, Vlan 256

Mar 10 21:44:34: IGMPSN: group: Added port Gi0/7 to group 225.100.50.112

Mar 10 21:44:34: IGMPSN: group: Forwarding 225.100.50.112 report to router ports

SW5#sg vlan 256

Vlan Group Version Port List

------------------------------------------------------------

256 225.100.50.11 v2 Gi0/7, Gi0/10

256 225.100.50.45 v2 Gi0/7, Gi0/10

256 225.100.50.112 v2 Gi0/7, Gi0/10

256 225.100.100.99 v2 Gi0/5, Gi0/7, Gi0/10

256 225.100.107.163 v2 Gi0/7, Gi0/10

256 225.100.107.164 v2 Gi0/7, Gi0/10

 

SW5#

Mar 10 21:44:47: IGMPSN: group: Received V2 report for group 225.100.50.112 received on Vlan 256, port Gi0/7

Mar 10 21:44:47: IGMPSN: group: Added port Gi0/7 to group 225.100.50.112

Mar 10 21:44:47: IGMPSN: group: Forwarding 225.100.50.112 report to router ports

Mar 10 21:44:50: IGMPSN: group: Leave for group 225.100.50.112 received on Vlan 256, port Gi0/7

Mar 10 21:44:50: IGMPSN: group: Created v2 leave port on port Gi0/7, for group 225.100.50.112 on Vlan 256

Mar 10 21:44:50: IGMPSN: group: Sending Group-Specific Query for group 225.100.50.112 on Vlan 256, port Gi0/7

Mar 10 21:44:51: IGMPSN: group: Deleting leave port on port Gi0/7, for 225.100.50.112 on Vlan 256

Mar 10 21:44:51: IGMPSN: mgt: deleted port Gi0/7 on gce 0100.5e64.3270, on Vlan 256

Mar 10 21:44:51: IGMPSN: group: Deleting port Gi0/7 from group 225.100.50.112 on Vlan 256

Mar 10 21:44:51: IGMPSN: group: Deleting group 225.100.50.112

Mar 10 21:44:51: IGMPSN: mgt: deleting group E1643270, on Vlan 256

Mar 10 21:44:51: IGMPSN: mgt: deleting gce 0100.5e64.3270, on Vlan 256

Mar 10 21:44:51: IGMPSN: group: Sending Leave for group 225.100.50.112, source 10.10.234.4 on Vlan 256

SW5#

SW5#sg vlan 256

Vlan Group Version Port List

------------------------------------------------------------

256 225.100.50.11 v2 Gi0/7, Gi0/10

256 225.100.50.45 v2 Gi0/7, Gi0/10

256 225.100.50.207 v2 Gi0/7, Gi0/10

256 225.100.100.99 v2 Gi0/5, Gi0/7, Gi0/10

256 225.100.107.163 v2 Gi0/7, Gi0/10

256 225.100.107.164 v2 Gi0/7, Gi0/10

 

 

 

Спасибо s.lobanov за внимание.

 

PS: Хотя цискоком говорит, что MVR не влияет на IGMP, но, видимо, в случае с указанными mvr groups и отключенным MVR - влияет. Ниже цитата со страницы:

 

Although MVR operates on the underlying mechanism of IGMP snooping, the two features operate independently of each other. One can be enabled or disabled without affecting the behavior of the other feature. However, if IGMP snooping and MVR are both enabled, MVR reacts only to join and leave messages from multicast groups configured under MVR. Join and leave messages from all other multicast groups are managed by IGMP snooping.

Share this post


Link to post
Share on other sites

вот поэтому я просил конфиги. местное комьюнити быстро бы указало на mvr, в том числе и я

Share this post


Link to post
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
Sign in to follow this