ASR1002 or cisco4451-X

I need advice on choosing a platform for the following situation,
The router being selected are the ones to be at the HUB site, and they would handle the following scenarios...per router:
Receiving at least 1000 routes from the main VPN
GRE backup tunnel to at least 150 spoke sites
The previous GRE tunnels might be protected by IPSEC....not really decided yet if tunnel termination would be or in Firewall in front of it, but the GRE would be terminated here
More than 150 BGP peers
Per GRE tunnel QoS policy (Parent child scenario, shaping + HQF)
The Sum of all aggregated WAN BW should be around 500Mbps ...for now
Is the 4451 sufficient for this requirements, I haven't seen any platform limits for this new router, and I'm afraid things like almost 200 BGP peer and per tunnel QoS could be too much for this platform to handle
Any comments ?
Thanks in advance,
Kind regards,
Bruno

Hi Leo,
From 4451 datasheet you can go up to 2Gbps starting at 1Gbps of forwarding performance !!! this gives me some margin to grow
And how about the more than 150 BGP peers (1000+ routes total) and per GRE tunnel QoS service-policy (150+ grew tunnels) ? Can the 4451 handle this numbers ? I don't see this limits anywhere :(
I do prefer the ASR-1002 because it's truly a Edge router .... but this is a small infrastructure (150+ spokes) and I do feel looking only at forwarding performance it 4451 could be sufficient, question marks on the BGP and QoS+GRE  stuff...but the price between both platforms is different !!!!
Thank's for your help,
Kind regards,
Bruno Fernandes
Thank's for the help

Similar Messages

  • How to set min-password length on ASR1002?

    How to set min-password length on ASR1002?

    Try:
    security passwords min-length
    I'm not positive if it's supported in your version of IOS-XE but it is in some.

  • What is the Max Nat Session supported on ASR 1002 with ASR1002-5G/K9

    Hello,
    I am going for ASR 1002 With ASR1002-5G/K9 ESP, Can any 1 help me to know how many NAT translation is possible.
    As I got the Datasheet for ASR1000 it say’s 1M translation is Supported by ESP10 but it’s not giving any information regarding ESP5.
    Thanks in advance

    Firewall or NAT: 250,000 sessions and 50,000 sessions-per-sec setup rate
    This is from the datasheet. Pls check.
    Table 3. Cisco ASR 1000 Series 5-Gbps ESP Module Performance and Scaling
    Regards
    Durga Prasad - Datasoft Comnet
    Pls rate helpful posts
    Sent from Cisco Technical Support Android App

  • ASR1002 MLP Bundle Problems

    Hi fols,
    We got ASR 1002 for use as LNS and move VPDN settings from 7204 to ASR1002... Looks like PPPoE interfaces (customers works pefect) but MLP Bundle cant establish :(
    Cisco Console Log:
    Feb 13 05:00:13 104.234.254.1 21010: Feb 13 10:00:12.732: %CPPOSLIB-3-ERROR_NOTIFY: SIP0: cpp_cp:  cpp_cp encountered an error -Traceback= 1#adfdffd320bd4b50a075756a85bafaca   errmsg:7FB80973B000+121D cpp_common_os:7FB80C74C000+D8D5 cpp_common_os:7FB80C74C000+D7D4 cpp_common_os:7FB80C74C000+19A3E cpp_ifm:7FB81F747000+A158 cpp_mlppp_svr_lib:7FB815BBB000+C2F1 cpp_mlppp_svr_lib:7FB815BBB000+1CCA8 cpp_mlppp_svr_smc_lib:7FB815DF9000+2D28 cpp_common_os:7FB80C74C000+11E6E cpp_common_os:7FB80C74C000+118AA cpp_common_os:7FB80C74C000+116EB evlib:7FB80B72C0
    Feb 13 05:00:13 104.234.254.1 21011: Feb 13 10:00:12.733: %FMFP-3-OBJ_DWNLD_TO_CPP_FAILED: SIP0: fman_fp_image:  MLP bundle 174, link 170 download to CPP failed
    Radius Log (look as well):
    Fri Feb 13 04:59:41 2015 : Auth: Login OK: [[email protected]] (from client asr-lns1.xxxxx.com port 3445 cli BHVLPQ1004W lag-39:53)
    Fri Feb 13 04:59:41 2015 : Info: Existing IP: x.x.x.x   (did  cli BHVLPQ1004W lag-39:53 port 3445 user [email protected])
    Fri Feb 13 05:00:12 2015 : Auth: Login OK: [[email protected]] (from client asr-lns1.xxxxx.com port 3009 cli BHVLPQ1004W lag-39:53)
    Fri Feb 13 05:00:12 2015 : Info: Existing IP: x.x.x.x   (did  cli BHVLPQ1004W lag-39:53 port 3009 user [email protected])
    My Debug settings:
    2# sh debug
    PPPoE:
      PPPoE protocol events debugging is on
      PPPoE data packets debugging is on
      PPPoE control packets debugging is on
      PPPoE protocol errors debugging is on
    MLP:
      Multilink fragments debugging is on
      Multilink events debugging is on
      First bytes of multilink packet debugging is on
    VTEMPLATE:
      Virtual Template errors debugging is on
      Virtual Template subinterface debugging is on
    #sh log | in MLP
    :01:13.742: Vi109 MLP: Dropped link Vi110 from bundle [email protected]
    Feb 13 10:01:13.742: Vi109 MLP: Dropped last link, removing bundle [email protected]
    Feb 13 10:01:13.742: Vi109 MLP: Removing bundle '[email protected]'
    Feb 13 10:01:15.392: Vi111 MLP: Request add link to bundle
    Feb 13 10:01:15.392: Vi111 MLP: Adding link to bundle
    Feb 13 10:01:15.392: Vi111 MLP: Requested bundle vaccess creation
    Feb 13 10:01:15.392: Vi111 MLP: Determine clone source for SSS
    Feb 13 10:01:15.392: Vi111 MLP: Link is Virtual-Access, clone from Virtual-Template 1
    Feb 13 10:01:15.395: Vi111 MLP: Determine clone source for SSS
    Feb 13 10:01:15.395: Vi111 MLP: Link is Virtual-Access, clone from Virtual-Template 1
    Feb 13 10:01:15.396: Vi111 MLP: SSS connect, bundle interface Vi112
    Feb 13 10:01:15.396: Vi112 MLP: Changing bundle bandwidth from 100000 to 2000000
    Feb 13 10:01:15.396: Vi112 MLP: Interleaving disabled
    Feb 13 10:01:15.396: Vi112 MLP: Ready to finish adding link Vi111 to bundle
    Feb 13 10:01:15.396: Vi111 MLP: Computed frag size 7499992 exceeds MTU, changed to 1496
    Feb 13 10:01:15.396: Vi112 MLP: Update bundle bandwidth 2000000 set 2000000
    Feb 13 10:01:15.396: Vi111 MLP: Change transmit status from Init to Enabled, transmit links 1
    Feb 13 10:01:15.397: Vi112 MLP: Added first link Vi111 to bundle [email protected]
    Feb 13 10:01:15.397: Vi111 MLP: Updating bundle's PPP handle[0xCE000105] in SSS context
    Feb 13 10:01:15.398: Vi112 MLP: Received segment updated message for bundle
    Feb 13 10:01:15.402: %FMFP-3-OBJ_DWNLD_TO_CPP_FAILED: SIP0: fman_fp_image:  MLP bundle 179, link 178 download to CPP failed
    Feb 13 10:01:17.694: Vi112: MLP: Bundle has 1/2 desired links, requesting another
    Feb 13 10:01:43.097: Vi111 MLP: Change transmit status from Enabled to Idle, transmit links 0
    Feb 13 10:01:43.097: Vi112 MLP: No previous member for idle link in '[email protected]'
    Feb 13 10:01:43.097: Vi112 MLP: Update bundle bandwidth 2000000 set 2000000
    Feb 13 10:01:45.102: Vi111 MLP: Request drop link from bundle Vi112
    Feb 13 10:01:45.103: Vi112 MLP: Removing link Vi111 from bundle [email protected]
    Feb 13 10:01:45.103: Vi111 MLP: Change transmit status from Idle to Init, transmit links 0
    Feb 13 10:01:45.103: Vi112 MLP: Bundle bandwidth 2000000 unchanged
    Feb 13 10:01:45.103: Vi112 MLP: Dropped link Vi111 from bundle [email protected]
    Feb 13 10:01:45.103: Vi112 MLP: Dropped last link, removing bundle [email protected]
    Feb 13 10:01:45.103: Vi112 MLP: Removing bundle '[email protected]'
    2# sh ppp multilink
    Virtual-Access126
      Bundle name: [email protected]
      Remote Username: [email protected]
      Remote Endpoint Discriminator: [3] 4c60.de51.dd67
      Local Endpoint Discriminator: [1] asr1002
      Bundle up for 00:00:25, total bandwidth 2000000, load 1/255
      Receive buffer limit 12192 bytes, frag timeout 1000 ms
      Bundle is Distributed
      Using relaxed lost fragment detection algorithm.
        0/0 fragments/bytes in reassembly list
        0 lost fragments, 0 reordered
        0/0 discarded fragments/bytes, 0 lost received
        0x0 received sequence, 0x0 sent sequence
      Platform Specific Multilink PPP info
        NOTE: internal keyword not applicable on this platform
        Interleaving: Enabled, Fragmentation: Enabled
      Member links: 1 (max 16, min 2)
        BHVLPQ1004W:Vi125  (x.x.x.x), since 00:00:25, 7500000 weight, 1496 frag size, unsequenced
    No inactive multilink interfaces
    Border-ASR1002#sh users | in xxxxx
      Vi129        [email protected] PPPoVPDN     never
      Vi130        [email protected] MLP Bundle   00:00:06
    NO IP ASSIGNED and this SESSIONs will be close in 30-50 sec. Then start again by circle.
    interface Virtual-Template1
     ip unnumbered Loopback100
     no ip redirects
     no ip proxy-arp
     ip mtu 1460
     ip tcp adjust-mss 1420
     load-interval 60
     no peer default ip address
     keepalive 30
     ppp mru match
     ppp authentication pap chap xxx-netwrok.com
     ppp authorization xxx-netwrok.com
     ppp accounting xxx-netwrok.com
     ppp ipcp dns 8.8.8.8
     ppp multilink
     ppp multilink links minimum 2
     ppp multilink interleave
     ppp multilink endpoint string asr1002
    end
    interface Loopback100
     ip address x.x.x.x 255.255.255.255
    end
    #sh ppp  statistics
    Type PPP Statistic                              TOTAL      SINCE CLEARED
    4    Transition Packet Drop                      2          2
    5    Interrupt Transition Packet Drop            5          5
    14   PPP Handles Allocated                       16620      16620
    15   PPP Handles Freed                           13971      13971
    16   LCP Renegotiations                          17         17
    17   NCP Renegotiations                          3          3
    18   NCP Negotiations Failed                     348        348
    19   PPP Encapped Interfaces                     4583       4583
    24   LCP Timeout+                                2892       2892
    25   NCP Timeout+                                89257      89257
    26   LCP Timeout-                                793        793
    27   NCP Timeout-                                9542       9542
    28   Authentication Timeout                      1984       1984
    29   Configure-Ack Id mismatch                   9          9
    30   Configure-Nak/Reject Id mismatch            21         21
    Type PPP MIB Counters                           PEAK       CURRENT
    1    Links at LCP Stage                          13         2
    2    Links at Unauthenticated Name Stage         240        0
    3    Links at Authenticated Name Stage           4          0
    7    Links at Local Termination Stage            2650       2647
    8    MLP Links at LCP Stage                      1          0
    9    MLP Links at Unauthenticated Name Stage     1          0
    10   MLP Links at Authenticated Name Stage       1          0
    14   MLP Links at Local Termination Stage        3          0
    20   Successful LCP neogtiations                 14497      14497
    22   Entered Authentication Stage                14497      14497
    28   IPCP UP Sessions                            2650       2647
    48   CHAP authentication attempts                2          2
    49   CHAP authentication successes               1          1
    51   PAP authentication attempts                 14495      14495
    52   PAP authentication successes                7397       7397
    53   PAP authentication failures                 6141       6141
    95   Total Sessions                              2651       2647
    96   Non-MLP Sessions                            2650       2647
    97   MLP Sessions                                1          0
    98   Total Links                                 2654       2649
    99   Non-MLP Links                               2653       2649
    100  MLP Links                                   2          0
    Type PPP Disconnect Reason                      TOTAL      SINCE CLEARED
    11   Missed too many keepalives                  177        177
    12   PPP Renegotiating                           18         18
    15   LCP failed to negotiate                     1694       1694
    17   Received LCP TERMREQ from peer              1465       1465
    18   Received LCP TERMACK from peer while OPEN   2          2
    24   Removing MLP Bundle                         412        412
    27   MLP Kill Link                               4          4
    29   Lower Layer disconnected                    3187       3187
    37   Received disconnect from Session Manager    174        174
    54   User failed PAP authentication              6141       6141
    55   AAA Server did not respond                  695        695
    57   Authentication timeouts exceeded            2          2
    If i try look show interface for two interface in bundle i see like this:
    Border-ASR1002#sh int Vi24
    Virtual-Access24 is up, line protocol is up
      Hardware is Virtual Access interface
      Interface is unnumbered. Using address of Loopback100 (x.x.x.x)
      MTU 1442 bytes, BW 2000000 Kbit/sec, DLY 100000 usec,
         reliability 255/255, txload 1/255, rxload 1/255
      Encapsulation PPP, LCP Open, multilink Open
      REQsent: IPCP
      MLP Bundle vaccess, cloned from Virtual-Template1
      Vaccess status 0x44, loopback not set
      Keepalive set (30 sec)
      DTR is pulsed for 5 seconds on reset
    Border-ASR1002#sh int Vi28
    Virtual-Access28 is up, line protocol is up
      Hardware is Virtual Access interface
      MTU 1500 bytes, BW 2000000 Kbit/sec, DLY 100000 usec,
         reliability 255/255, txload 1/255, rxload 1/255
      Encapsulation PPP, LCP Open, multilink Open
      Link is a member of Multilink bundle Virtual-Access24
      PPPoVPDN vaccess, cloned from Virtual-Template1
      Vaccess status 0x44
      Protocol l2tp, tunnel id 64648, session id 34181, loopback not set
      Keepalive set (30 sec)
      DTR is pulsed for 5 seconds on reset
    Looks like normal. but in 30-60 sec this crashed... and sure we have not one customers with MLP... i hope we have around 20-30... so should be tonns MLP :)
    Sure i lose few hours for find solutions but without luck. Nobody have exacly answer to this question.
    I got abolutely working configuration from working NAS (7201 and 7204) and move it to ASR... thats what i have with MLP :((((
    Can someone try help me investigate in figure our this....
    I found same thread on ciscoforums where guys tell "need update ios" but someone update it and have same issue, so i hope issue not in IOS version.
    Cisco IOS Software, IOS-XE Software (X86_64_LINUX_IOSD-UNIVERSAL-M), Version 15.3(2)S1, RELEASE SOFTWARE (fc1)
    IOS XE Version: 03.09.01.S
    System image file is "bootflash:/asr1002x-universal.03.09.01.S.153-2.S1.SPA.bin"
    If you need anything else, like more debug or more info ... just ask me... i will wait there for your questions.
    Thanks a lot.!
    /// Update
    Little bit more debug from bootflash:/tracelogs/cpp_cp_F0-0.log.7749.20150213111013
    02/13 11:09:07.734 [errmsg]: (ERR): %CPPOSLIB-3-ERROR_NOTIFY: cpp_cp encountered an error -Traceback= 1#adfdffd320bd4b50a075756a85bafaca   errmsg:7FB80973B000+121D cpp_common_os:7FB80C74C000+D8D5 cpp_common_os:7FB80C74C000+D7D4 cpp_common_os:7FB80C74C000+19A3E cpp_ifm:7FB81F747000+A158 cpp_mlppp_svr_lib:7FB815BBB000+C2F1 cpp_mlppp_svr_lib:7FB815BBB000+1CCA8 cpp_mlppp_svr_smc_lib:7FB815DF9000+2D28 cpp_common_os:7FB80C74C000+11E6E cpp_common_os:7FB80C74C000+118AA cpp_common_os:7FB80C74C000+116EB evlib:7FB80B72C000+B8E7 evlib:7FB80B72C000+E1B0
    02/13 11:09:07.735 [buginf]: (debug):
     -Traceback=1#adfdffd320bd4b50a075756a85bafaca   cpp_common_os:7FB80C74C000+11445 cpp_common_os:7FB80C74C000+D7D9 cpp_common_os:7FB80C74C000+19A3E cpp_ifm:7FB81F747000+A158 cpp_mlppp_svr_lib:7FB815BBB000+C2F1 cpp_mlppp_svr_lib:7FB815BBB000+1CCA8 cpp_mlppp_svr_smc_lib:7FB815DF9000+2D28 cpp_common_os:7FB80C74C000+11E6E cpp_common_os:7FB80C74C000+118AA cpp_common_os:7FB80C74C000+116EB evlib:7FB80B72C000+B8E7 evlib:7FB80B72C000+E1B0 cpp_common_os:7FB80C74C000+13B43 :400000+6061 c:7FB7FC394000+1E514 :400000+5CC9
    02/13 11:09:07.735 [cpp-mlppp]: (warn): [cpp_mlp_tx_link_create:3260] cpp_ifm_tx_chan_create_on_if failed link=1563 (retval='CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory)
    02/13 11:09:07.735 [cpp-mlppp]: (warn): [cpp_mlp_svr_bundle_add_link_cmn:5035] cpp_mlp_tx_link_create failed link=1563 (retval='CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory)
    02/13 11:09:41.978 [cpp-ifm]: (ERR): cpp_ifm_tx_chan_create_on_if.806: failed to find channel for parent if_h 100-'CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory
    02/13 11:09:41.980 [errmsg]: (ERR): %CPPOSLIB-3-ERROR_NOTIFY: cpp_cp encountered an error -Traceback= 1#adfdffd320bd4b50a075756a85bafaca   errmsg:7FB80973B000+121D cpp_common_os:7FB80C74C000+D8D5 cpp_common_os:7FB80C74C000+D7D4 cpp_common_os:7FB80C74C000+19A3E cpp_ifm:7FB81F747000+A158 cpp_mlppp_svr_lib:7FB815BBB000+C2F1 cpp_mlppp_svr_lib:7FB815BBB000+1CCA8 cpp_mlppp_svr_smc_lib:7FB815DF9000+2D28 cpp_common_os:7FB80C74C000+11E6E cpp_common_os:7FB80C74C000+118AA cpp_common_os:7FB80C74C000+116EB evlib:7FB80B72C000+B8E7 evlib:7FB80B72C000+E1B0
    02/13 11:09:41.981 [buginf]: (debug):
     -Traceback=1#adfdffd320bd4b50a075756a85bafaca   cpp_common_os:7FB80C74C000+11445 cpp_common_os:7FB80C74C000+D7D9 cpp_common_os:7FB80C74C000+19A3E cpp_ifm:7FB81F747000+A158 cpp_mlppp_svr_lib:7FB815BBB000+C2F1 cpp_mlppp_svr_lib:7FB815BBB000+1CCA8 cpp_mlppp_svr_smc_lib:7FB815DF9000+2D28 cpp_common_os:7FB80C74C000+11E6E cpp_common_os:7FB80C74C000+118AA cpp_common_os:7FB80C74C000+116EB evlib:7FB80B72C000+B8E7 evlib:7FB80B72C000+E1B0 cpp_common_os:7FB80C74C000+13B43 :400000+6061 c:7FB7FC394000+1E514 :400000+5CC9
    02/13 11:09:41.981 [cpp-mlppp]: (warn): [cpp_mlp_tx_link_create:3260] cpp_ifm_tx_chan_create_on_if failed link=1563 (retval='CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory)
    02/13 11:09:41.981 [cpp-mlppp]: (warn): [cpp_mlp_svr_bundle_add_link_cmn:5035] cpp_mlp_tx_link_create failed link=1563 (retval='CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory)
    02/13 11:10:13.049 [cpp-ifm]: (ERR): cpp_ifm_tx_chan_create_on_if.806: failed to find channel for parent if_h 100-'CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory

    Originally Posted by CRAIGDWILSON
    Look in your logs for any issues zmd-messages.log regarding accessing
    "AppData". If so, that could be a known issue they are looking at,
    though it is not really new but there are reports back to even 11.2.x
    The reports are more of a timing issue on boot, but perhaps it could
    relate to logon if that happened soon enough, though non of the reports
    are for logon events.
    On 6/25/2014 2:26 AM, thsundel wrote:
    >
    > Hi!
    > Anyone else have problems with bundles not installing/launching on
    > schedule with 11.3FRU1 agent? Also bundles set to launch at user login
    > doesn't work first time the user logs in after workstation is booted, if
    > they logout and in again then it will work?
    >
    > Thomas
    >
    >
    Craig Wilson - MCNE, MCSE, CCNA
    Novell Technical Support Engineer
    Novell does not officially monitor these forums.
    Suggestions/Opinions/Statements made by me are solely my own.
    These thoughts may not be shared by either Novell or any rational human.
    Nope, nothing refering to appdata (only thing it finds is appdatalrucache but that is probably not what you are asking for)...
    I've now tried assiging the bundle both to device and to user but still nothing happes, works fine on our 11.2.x agent workstations.
    Thomas

  • Suspecting ESP 10 to fail in ASR1002

    ASR1002 Cisco doesnt recognise ESP 10 module. Log is attached. We need to decide wether the chassi is OK or it is also affected.
    We have conducted the following experiment: turned on the ASR1002  without ESP module and assigned 192.168.0.2 adress to an interface.
    After that tried to ping 192.168.0.2 from outside, all pings have been lost.
    Does the ASR1002 have to respond on the interface without ESP module?
    subject to restrictions as set forth in subparagraph
    (c) of the Commercial Computer Software - Restricted
    Rights clause at FAR sec. 52.227-19 and subparagraph
    (c) (1) (ii) of the Rights in Technical Data and Computer
    Software clause at DFARS sec. 252.227-7013.
               cisco Systems, Inc.
               170 West Tasman Drive
               San Jose, California 95134-1706
    Cisco IOS Software, IOS-XE Software (PPC_LINUX_IOSD-ADVENTERPRISEK9-M), Version 15.1(3)S1, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2011 by Cisco Systems, Inc.
    Compiled Sat 08-Oct-11 01:16 by mcpre
    Cisco IOS-XE software, Copyright (c) 2005-2011 by cisco Systems, Inc.
    All rights reserved.  Certain components of Cisco IOS-XE software are
    licensed under the GNU General Public License ("GPL") Version 2.0.  The
    software code licensed under GPL Version 2.0 is free software that comes
    with ABSOLUTELY NO WARRANTY.  You can redistribute and/or modify such
    GPL code under the terms of GPL Version 2.0.  For more details, see the
    documentation or "License Notice" file accompanying the IOS-XE software,
    or the applicable URL provided on the flyer accompanying the IOS-XE
    software.
    % failed to initialize nvram
    This product contains cryptographic features and is subject to United
    States and local country laws governing import, export, transfer and
    use. Delivery of Cisco cryptographic products does not imply
    third-party authority to import, export, distribute or use encryption.
    Importers, exporters, distributors and users are responsible for
    compliance with U.S. and local country laws. By using this product you
    agree to comply with applicable laws and regulations. If you are unable
    to comply with U.S. and local laws, return this product immediately.
    A summary of U.S. laws governing Cisco cryptographic products may be found at:
    http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
    If you require further assistance please contact us by sending email to
    [email protected].
    cisco ASR1002 (2RU) processor with 1700171K/6147K bytes of memory.
    4 Gigabit Ethernet interfaces
    32768K bytes of non-volatile configuration memory.
    4194304K bytes of physical memory.
    7798783K bytes of eUSB flash at bootflash:.
             --- System Configuration Dialog ---
    Would you like to enter the initial configuration dialog? [yes/no]: no
    Press RETURN to get started!
    *Dec 12 16:40:24.348: %ASR1000_RP_NV-3-NV_ACCESS_FAIL: Initial read of NVRAM contents failed
    *Dec 12 16:40:31.211: %LINK-3-UPDOWN: Interface Lsmpi0, changed state to up
    *Dec 12 16:40:31.211: %LINK-3-UPDOWN: Interface EOBC0, changed state to up
    *Dec 12 16:40:31.211: %LINEPROTO-5-UPDOWN: Line protocol on Interface VoIP-Null0, changed state to up
    *Dec 12 16:40:31.212: %LINEPROTO-5-UPDOWN: Line protocol on Interface LI-Null0, changed state to up
    *Dec 12 16:40:31.212: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to down
    *Dec 12 16:40:31.212: %LINK-3-UPDOWN: Interface LIIN0, changed state to up
    *Dec 12 16:40:31.350: %NETCLK-5-NETCLK_MODE_CHANGE: Network clock source not available. The network clock has changed to freerun
    *Dec 12 16:40:31.440: %ASR1000_MGMTVRF-6-CREATE_SUCCESS_INFO: Management vrf Mgmt-intf created with ID 1, ipv4 table-id 0x1, ipv6 table-id 0x1E000001
    *Dec 12 16:40:31.715: %DYNCMD-7-PKGINT_INSTALLED: The command package 'platform_trace' has been succesfully installed
    *Dec 12 16:40:33.429: %LINEPROTO-5-UPDOWN: Line protocol on Interface Lsmpi0, changed state to up
    *Dec 12 16:40:33.430: %LINEPROTO-5-UPDOWN: Line protocol on Interface EOBC0, changed state to up
    *Dec 12 16:40:33.430: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to down
    *Dec 12 16:40:33.430: %LINEPROTO-5-UPDOWN: Line protocol on Interface LIIN0, changed state to up
    *Dec 12 16:40:23.540: %IOSXE-5-PLATFORM: R0/0: xinetd[32286]: xinetd Version 2.3.14 started with no options compiled in.
    *Dec 12 16:40:23.554: %IOSXE-5-PLATFORM: R0/0: xinetd[32286]: Started working: 1 available service
    *Dec 12 16:40:34.225: %DYNCMD-7-CMDSET_LOADED: The Dynamic Command set has been loaded from the Shell Manager
    *Dec 12 16:40:58.021: %LINK-5-CHANGED: Interface GigabitEthernet0/0/0, changed state to administratively down
    *Dec 12 16:40:58.022: %LINK-5-CHANGED: Interface GigabitEthernet0/0/1, changed state to administratively down
    *Dec 12 16:40:58.022: %LINK-5-CHANGED: Interface GigabitEthernet0/0/2, changed state to administratively down
    *Dec 12 16:40:58.023: %LINK-5-CHANGED: Interface GigabitEthernet0/0/3, changed state to administratively down
    *Dec 12 16:40:58.023: %LINK-5-CHANGED: Interface GigabitEthernet0, changed state to administratively down
    *Dec 12 16:40:59.021: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/0, changed state to down
    *Dec 12 16:40:59.022: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/1, changed state to down
    *Dec 12 16:40:59.022: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/2, changed state to down
    *Dec 12 16:40:59.023: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/3, changed state to down
    *Dec 12 16:41:02.525: %ASR1000_OIR-6-REMSPA: SPA removed from subslot 0/0, interfaces disabled
    *Dec 12 16:41:02.527: %SPA_OIR-6-OFFLINECARD: SPA (4XGE-BUILT-IN) offline in subslot 0/0
    *Dec 12 16:41:02.531: %ASR1000_OIR-6-INSCARD: Card (fp) inserted in slot F0
    *Dec 12 16:41:02.532: %ASR1000_OIR-6-INSCARD: Card (cc) inserted in slot 0
    *Dec 12 16:41:02.532: %ASR1000_OIR-6-ONLINECARD: Card (cc) online in slot 0
    *Dec 12 16:41:02.536: %ASR1000_OIR-6-INSSPA: SPA inserted in subslot 0/0
    *Dec 12 16:41:02.743: %SYS-5-RESTART: System restarted --
    Cisco IOS Software, IOS-XE Software (PPC_LINUX_IOSD-ADVENTERPRISEK9-M), Version 15.1(3)S1, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2011 by Cisco Systems, Inc.
    Compiled Sat 08-Oct-11 01:16 by mcpre
    *Dec 12 16:41:05.577: %SPA_OIR-6-ONLINECARD: SPA (4XGE-BUILT-IN) online in subslot 0/0
    Router>
    Router>en
    Router#conf t
    Enter configuration commands, one per line.  End with CNTL/Z.
    Router(config)#in
    Router(config)#int
    Router(config)#interface lo
    Router(config)#interface loo
    Router(config)#interface loopback 0
    Router(config-if)#ip ad
    Router(config-if)#ip address 19
    *Dec 12 16:42:04.778: %LINEPROTO-5-UPDOWN: Line protocol on Interface Loopback0, changed state to up2.1
    Router(config-if)#ip address 192.168.0.1 255.255.255.0
    Router(config-if)#exit
    Router(config)#exit
    Router#sho
    Router#show run
    Router#show running-config int
    Router#show running-config interface 
    *Dec 12 16:42:18.204: %SYS-5-CONFIG_I: Configured from console by consolelo
    Router#show running-config interface lo0
    Router#show running-config interface loo
    Router#show running-config interface loopback 0
    Building configuration...
    Current configuration : 65 bytes
    interface Loopback0
     ip address 192.168.0.1 255.255.255.0
    end
    Router#ping 192.168.0.1
    Type escape sequence to abort.
    Sending 5, 100-byte ICMP Echos to 192.168.0.1, timeout is 2 seconds:
    Success rate is 0 percent (0/5)
    Router#sho
    Router#show in
    Router#show in
    Router#show inte
    Router#show interfaces lo
    Router#show interfaces loo
    Router#show interfaces loopback 0
    Loopback0 is up, line protocol is up 
      Hardware is Loopback
      Internet address is 192.168.0.1/24
      MTU 1514 bytes, BW 8000000 Kbit/sec, DLY 5000 usec, 
         reliability 255/255, txload 1/255, rxload 1/255
      Encapsulation LOOPBACK, loopback not set
      Keepalive set (10 sec)
      Last input never, output never, output hang never
      Last clearing of "show interface" counters never
      Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
      Queueing strategy: fifo
      Output queue: 0/0 (size/max)
      5 minute input rate 0 bits/sec, 0 packets/sec
      5 minute output rate 0 bits/sec, 0 packets/sec
         0 packets input, 0 bytes, 0 no buffer
         Received 0 broadcasts (0 IP multicasts)
         0 runts, 0 giants, 0 throttles 
         0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort
         0 packets output, 0 bytes, 0 underruns
         0 output errors, 0 collisions, 0 interface resets
         0 unknown protocol drops
         0 output buffer failures, 0 output buffers swapped out
    Router# 
    Router#
    *Dec 12 16:43:06.922: %TRANSCEIVER-6-INSERTED: SIP0/0: transceiver module inserted in GigabitEthernet0/0/0
    Router#sho
    Router#show run
    Router#show running-config in
    Router#show running-config interface gi0/0/
    % Incomplete command.
    Router#show running-config interface gi0/0 
    % Incomplete command.
    Router#conf t
    Enter configuration commands, one per line.  End with CNTL/Z.
    Router(config)#in
    Router(config)#int
    Router(config)#interface gi0/0
    % Incomplete command.
    Router(config)#interface gi0/0/0
    Router(config-if)#no shu
    Router(config-if)#no shutdown 
    Router(config-if)#ip ad
    Router(config-if)#ip address 192.1
    *Dec 12 16:43:44.764: %LINK-3-UPDOWN: Interface GigabitEthernet0/0/0, changed state to down68.2.
    *Dec 12 16:43:43.813: %LINK-3-UPDOWN: SIP0/0: Interface GigabitEthernet0/0/0, changed state to down1
    *Dec 12 16:43:47.440: %LINK-3-UPDOWN: Interface GigabitEthernet0/0/0, changed state to up
    *Dec 12 16:43:46.437: %LINK-3-UPDOWN: SIP0/0: Interface GigabitEthernet0/0/0, changed state to up 
    *Dec 12 16:43:48.440: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/0, changed state to up
    Router(config-if)#ip address 192.168.2.1 255.255.255.0
    Router(config-if)#exit
    Router(config)#exit
    Router#sho
    Router#show run
    Router#show running-config int
    Router#show running-config interface 
    *Dec 12 16:43:56.015: %SYS-5-CONFIG_I: Configured from console by consolegi
    Router#show running-config interface gigabitEthernet 0/0/0
    Building configuration...
    Current configuration : 94 bytes
    interface GigabitEthernet0/0/0
     ip address 192.168.2.1 255.255.255.0
     negotiation auto
    end
    Router#ping 192.168.2.2
    Type escape sequence to abort.
    Sending 5, 100-byte ICMP Echos to 192.168.2.2, timeout is 2 seconds:
    Success rate is 0 percent (0/5)
    Router#sho
    Router#show in
    Router#show inte
    Router#show interfaces gi
    Router#show interfaces gigabitEthernet 0/0/0
    GigabitEthernet0/0/0 is up, line protocol is up 
      Hardware is 4XGE-BUILT-IN, address is 8843.e100.7300 (bia 8843.e100.7300)
      Internet address is 192.168.2.1/24
      MTU 1500 bytes, BW 1000000 Kbit/sec, DLY 10 usec, 
         reliability 255/255, txload 1/255, rxload 1/255
      Encapsulation ARPA, loopback not set
      Keepalive not supported 
      Full Duplex, 1000Mbps, link type is auto, media type is LX
      output flow-control is off, input flow-control is off
      ARP type: ARPA, ARP Timeout 04:00:00
      Last input never, output 00:00:27, output hang never
      Last clearing of "show interface" counters never
      Input queue: 0/375/0/0 (size/max/drops/flushes); Total output drops: 0
      Queueing strategy: fifo
      Output queue: 0/40 (size/max)
      5 minute input rate 0 bits/sec, 0 packets/sec
      5 minute output rate 0 bits/sec, 0 packets/sec
         17 packets input, 2015 bytes, 0 no buffer
         Received 0 broadcasts (0 IP multicasts)
         0 runts, 0 giants, 0 throttles 
         0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
         0 watchdog, 17 multicast, 0 pause input
         0 packets output, 0 bytes, 0 underruns
         0 output errors, 0 collisions, 4 interface resets
         0 unknown protocol drops
         0 babbles, 0 late collision, 0 deferred
         0 lost carrier, 0 no carrier, 0 pause output
         0 output buffer failures, 0 output buffers swapped out
    Router#sho
    Router#show pl
    Router#show platform 
    Chassis type: ASR1002             
    Slot      Type                State                 Insert time (ago) 
    0         ASR1002-SIP10       ok                    00:06:40      
     0/0      4XGE-BUILT-IN       ok                    00:03:56      
    R0        ASR1002-RP1         ok, active            00:06:40      
    F0                            unknown               00:06:40      
    P0        ASR1002-PWR-AC      ok                    00:05:28      
    P1        ASR1002-PWR-AC      ps, fail              00:05:28      
    Slot      CPLD Version        Firmware Version                        
    0         07120202            12.2(33r)XNC                        
    R0        08011017            12.2(33r)XNC                        
    F0        N/A                 N/A                                 
    Router#
    System Bootstrap, Version 12.2(33r)XNC, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 2009 by cisco Systems, Inc.
    Current image running: Boot ROM0
    Last reset cause: PowerOn
    Last reset at: Fri Dec 12 16:48:51 UTC 2014
    ASR1002-RP1 platform with 4194303 Kbytes of main memory
    Warning: filesystem is not clean
    Located asr1000rp1-adventerprisek9.03.04.01.S.151-3.S1.bin 
    Image size 312873272 inode num 13, bks cnt 76386 blk size 8*512
    Boot image size = 312873272 (0x12a61138) bytes
    Missing or illegal ip address for variable DEFAULT_GATEWAY
    Using midplane macaddr
    Missing or illegal ip address for variable IP_ADDRESS
    Missing or illegal ip address for variable IP_SUBNET_MASK
    Package header rev 0 structure detected
    Calculating SHA-1 hash...done
    validate_package: SHA-1 hash:
            calculated 61d80af0:032b96a1:6b3b2b5c:667f969a:ad8e4c9f
            expected   61d80af0:032b96a1:6b3b2b5c:667f969a:ad8e4c9f
    Image validated
    %IOSXEBOOT-4-FILESYS_ERRORS_CORRECTED: (rp/0): bootflash contained errors which were auto-corrected.
                  Restricted Rights Legend
    Use, duplication, or disclosure by the Government is
    subject to restrictions as set forth in subparagraph
    (c) of the Commercial Computer Software - Restricted
    Rights clause at FAR sec. 52.227-19 and subparagraph
    (c) (1) (ii) of the Rights in Technical Data and Computer
    Software clause at DFARS sec. 252.227-7013.
               cisco Systems, Inc.
               170 West Tasman Drive
               San Jose, California 95134-1706
    Cisco IOS Software, IOS-XE Software (PPC_LINUX_IOSD-ADVENTERPRISEK9-M), Version 15.1(3)S1, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2011 by Cisco Systems, Inc.
    Compiled Sat 08-Oct-11 01:16 by mcpre
    Cisco IOS-XE software, Copyright (c) 2005-2011 by cisco Systems, Inc.
    All rights reserved.  Certain components of Cisco IOS-XE software are
    licensed under the GNU General Public License ("GPL") Version 2.0.  The
    software code licensed under GPL Version 2.0 is free software that comes
    with ABSOLUTELY NO WARRANTY.  You can redistribute and/or modify such
    GPL code under the terms of GPL Version 2.0.  For more details, see the
    documentation or "License Notice" file accompanying the IOS-XE software,
    or the applicable URL provided on the flyer accompanying the IOS-XE
    software.
    % failed to initialize nvram
    This product contains cryptographic features and is subject to United
    States and local country laws governing import, export, transfer and
    use. Delivery of Cisco cryptographic products does not imply
    third-party authority to import, export, distribute or use encryption.
    Importers, exporters, distributors and users are responsible for
    compliance with U.S. and local country laws. By using this product you
    agree to comply with applicable laws and regulations. If you are unable
    to comply with U.S. and local laws, return this product immediately.
    A summary of U.S. laws governing Cisco cryptographic products may be found at:
    http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
    If you require further assistance please contact us by sending email to
    [email protected].
    cisco ASR1002 (2RU) processor with 1700171K/6147K bytes of memory.
    4 Gigabit Ethernet interfaces
    32768K bytes of non-volatile configuration memory.
    4194304K bytes of physical memory.
    7798783K bytes of eUSB flash at bootflash:.
             --- System Configuration Dialog ---
    Would you like to enter the initial configuration dialog? [yes/no]: 
    % Please answer 'yes' or 'no'.
    Would you like to enter the initial configuration dialog? [yes/no]: 
    % Please answer 'yes' or 'no'.
    Would you like to enter the initial configuration dialog? [yes/no]: no
    Press RETURN to get started!
    *Dec 12 16:52:16.032: %ASR1000_RP_NV-3-NV_ACCESS_FAIL: Initial read of NVRAM contents failed
    *Dec 12 16:52:24.113: %LINK-3-UPDOWN: Interface Lsmpi0, changed state to up
    *Dec 12 16:52:24.114: %LINK-3-UPDOWN: Interface EOBC0, changed state to up
    *Dec 12 16:52:24.114: %LINEPROTO-5-UPDOWN: Line protocol on Interface VoIP-Null0, changed state to up
    *Dec 12 16:52:24.115: %LINEPROTO-5-UPDOWN: Line protocol on Interface LI-Null0, changed state to up
    *Dec 12 16:52:24.11
    Router>5: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to down
    *Dec 12 16:52:24.115: %LINK-3-UPDOWN: Interface LIIN0, changed state to up
    *Dec 12 16:52:24.361: %NETCLK-5-NETCLK_MODE_CHANGE: Network clock source not available. The network clock has changed to freerun
    *Dec 12 16:52:24.656: %ASR1000_MGMTVRF-6-CREATE_SUCCESS_INFO: Management vrf Mgmt-intf created with ID 1, ipv4 table-id 0x1, ipv6 table-id 0x1E000001
    *Dec 12 16:52:25.151: %LINEPROTO-5-UPDOWN: Line protocol on Interface Lsmpi0, changed state to up
    *Dec 12 16:52:25.152: %LINEPROTO-5-UPDOWN: Line protocol on Interface EOBC0, changed state to up
    *Dec 12 16:52:25.152: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to down
    *Dec 12 16:52:25.152: %LINEPROTO-5-UPDOWN: Line protocol on Interface LIIN0, changed state to up
    *Dec 12 16:52:25.546: %DYNCMD-7-PKGINT_INSTALLED: The command package 'platform_trace' has been succesfully installed
    *Dec 12 16:52:28.680: %DYNCMD-7-CMDSET_LOADED: The Dynamic Command set has been loaded from the Shell Manager
    *Dec 12 16:52:15.830: %IOSXE-5-PLATFORM: R0/0: xinetd[31943]: xinetd Version 2.3.14 started with no options compiled in.
    *Dec 12 16:52:15.844: %IOSXE-5-PLATFORM: R0/0: xinetd[31943]: Started working: 1 available service
    *Dec 12 16:52:50.090: %LINK-5-CHANGED: Interface GigabitEthernet0/0/0, changed state to administratively down
    *Dec 12 16:52:50.091: %LINK-5-CHANGED: Interface GigabitEthernet0/0/1, changed state to administratively down
    *Dec 12 16:52:50.091: %LINK-5-CHANGED: Interface GigabitEthernet0/0/2, changed state to administratively down
    *Dec 12 16:52:50.091: %LINK-5-CHANGED: Interface GigabitEthernet0/0/3, changed state to administratively down
    *Dec 12 16:52:50.092: %LINK-5-CHANGED: Interface GigabitEthernet0, changed state to administratively down
    *Dec 12 16:52:51.090: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/0, changed state to down
    *Dec 12 16:52:51.091: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/1, changed state to down
    *Dec 12 16:52:51.092: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/2, changed state to down
    *Dec 12 16:52:51.092: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/3, changed state to down
    *Dec 12 16:52:57.608: %ASR1000_OIR-6-REMSPA: SPA removed from subslot 0/0, interfaces disabled
    *Dec 12 16:52:57.609: %SPA_OIR-6-OFFLINECARD: SPA (4XGE-BUILT-IN) offline in subslot 0/0
    *Dec 12 16:52:57.613: %ASR1000_OIR-6-INSCARD: Card (cc) inserted in slot 0
    *Dec 12 16:52:57.613: %ASR1000_OIR-6-ONLINECARD: Card (cc) online in slot 0
    *Dec 12 16:52:57.615: %ASR1000_OIR-6-INSSPA: SPA inserted in subslot 0/0
    *Dec 12 16:52:57.819: %SYS-5-RESTART: System restarted --
    Cisco IOS Software, IOS-XE Software (PPC_LINUX_IOSD-ADVENTERPRISEK9-M), Version 15.1(3)S1, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2011 by Cisco Systems, Inc.
    Compiled Sat 08-Oct-11 01:16 by mcpre
    *Dec 12 16:53:00.828: %SPA_OIR-6-ONLINECARD: SPA (4XGE-BUILT-IN) online in subslot 0/0
    Router>en
    Router#sho
    Router#show pla
    Router#show platform 
    Chassis type: ASR1002             
    Slot      Type                State                 Insert time (ago) 
    0         ASR1002-SIP10       ok                    00:02:40      
     0/0    

    Are you able to download and install other applications for your Mac?
    Try following along with this Apple doc -> Troubleshooting iTunes installation on Mac OS X

  • ASR1002 - licensing problem

    Hi,
    I have recently purchased ASR1002-RP1-ESP5 with 2 x 4K Broadband licenses to be used as LNS. Cisco have sent me PAK files for the licenses however when I try to enter the licenses into the device I get an error message saying that Licensing is not supported on this platform.
    Does anyone have any experience with this platform and installation of the broadband licenses?
    When I spoke to Cisco TAC they told me that for this particular model the licensing is on "trust" basis where you buy license and do not install it on the actual router - similar to what 7200 used to do.
    Thanks,
    Michal

    Hello Michal,
    Yes, it is true. Almost all licenses are honor-based ones. There are a few exceptions but they are mainly on the ASR1001.
    There is detailed information about the different licenses for ASR1K routers here:
    http://www.cisco.com/en/US/prod/collateral/routers/ps9343/product_bulletin_c07-448862.html
    Warm Regards,
    Rose

  • Redundancy in Cisco ASR1002

    Hi,
    our company is going to purchase a Cisco ASR 1002 and we need to make it Redundant.
    I know about the Software Redundancy in Cisco ASR1002 with two IOS on a single Route Processor but If we want to make it Hardware by using two ASR1002 at our location than how can we achieve this ?
    We want to make our ASR 1002 Hardware Redundant means we want inter-chassis Redundancy between both the ASRs.
    As Inter-chassis Redundancy means that if our Active chassis will goes down than our Secondary chassis takes over.
    As I found a link of Inter-chassis Redundancy on ASR1002
    http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/sbcu/sbc_interHA.pdf
    One thing more I want to tell you that according to this link it is mentioned that the secondary chassis will start forwarding the call signalling and Media Forwarding but we are having only Data traffic not Voice traffic.
    So, can anybody tell that we can use this Inter-chassis feature in our ASR 1002. If their is any requirement for any special license or module than we can purchase it also. 
    Thanks & Regards,
    Rahul Chhabra
    Network Engineer 
    Spooster IT Services

    I know this thing about HSRP, but I want to know that is their any other method of inter-chassis Redundancy like the ASA failover in which all the information is Replicated to Secondary ASA while failover.

  • ASR1002 crawls when installing BGP Full Internet table

    hi all,
    I have an ASR1002/ESP10 and I have 2 or 3 peers that are sending me FIRT. When I filter with route-maps the incoming announcements, I'm keeping about 3K routes and everything is fine. But when i try to remove the incoming filters, then the ASR1002 tries to install the FIRT into the FIB and this results in the ASR1002 crawling and becoming unresponsive (while it is installing the FIRT into the FIB).
    Is that normal? Is there a way, to tell the ASR to install the FIB with a slower rate, in order to have CPU power for the rest of the tasks. Do you also know if this influences forwarding performance of the router?
    thanx,
    Sp.

    Disclaimer
    The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.
    Liability Disclaimer
    In no event shall Author be liable for any damages whatsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.
    Posting
    Tracking your 2911's CPU usage will provide an indication of how hard it's being "worked".
    I've attached a later Cisco document that better documents expected and recommended performance levels for various ISRs.  (NB: in that document, you'll see a 2911 is only recommended for up to 35 Mbps.)
    PS:
    BTW, running full BGP with your two ISPs, hoping to obtain optimal performance, really doesn't.  What actually works much better, if you're licensed for it, is Cisco's PfR technology (which will work fine with just a default to both ISPs).

  • Cisco ASR1002-X Netflow version 5 performance

    Hello,
    customer is asking me regarding 1:1 Netflow version 5 on ASR1002-X.
    Is it fully supported?
    Is there any known caveat?
    I suspect it lowers stability of the system, and need to be sure.
    Thank you,
    Josef Baloun

    Are you referring to the sampling ratio? 1:1 sampling is sending all traffic conversations for NetFlow analysis using sampling. This can result in an increase in CPU and memory utilization on the device - so if this is a traffic heavy network, 1:1 sampling is not recommended.
    Regards,
    Don Jacob
    http://www.solarwinds.com/netflow-traffic-analyzer.aspx
    PS: Dont forget to rate and close helpful answers.

  • WAAS wccp and OTV on ASR1002

    Hi, There is any conflict between OTV on ASR1002 and wccp on Wave-694 configured in the same scenario?
    My scenario is 3 sites with ASR1002 for OTV cloud, a wave-694 at each site configured for wccp, and a 6807 in VSS mode as CORE-LAN. I wan to know if theres any conflict between wccp and OTV, 
    Attached is the logical map

    Hi,
    In order for the packet to be picked up by WCCP ... you'll need to have the packet Layer-3 routed (i.e. from one subnet to another).
    But one of the reasons for using OTV - is that you want to stretch the Layer-2 subnet between several locations ("bridging" across a Layer-3 network).
    So you'll never reach a layer 3 interface (SVI or routed) when communicating within the same VLAN/subnet.
    As I see your installation you only have one option (although with two flavours) here - that is to use some kind of "bridging" interception between the ASR and the 6800-VSS.
    Don't know whether this interface is 1Gigabit or 10Gigabit, but you could look into :
    1) using an "ordinary" Inline adapter on the WAVE-694 (this only works with 1Gigabit connection)
    2) using some kind of APPNAV interception where the adapter intercepts the bridged packet - this supports 10Gigabit connection, but you'll have NO failover, if the APPNAV device (which can be the WAVE-694 with a special module) of the APPNAV modules fails.
    Check this : www.cisco.com/go/appnav
    Best Regards
    Finn Poulsen

  • ASR1002 IPSec license

    I am trying to bring up an IPSec tunnel between an ASR1002 and a 2821. The tunnel itself works. Only the 2821 shows hits against its access list. Only the 2821 shows packets being encrypted with no decrypted packets.
    I purchased the firewall and IPSec license for the ASR. My understanding is that the license is only honorary and no special software is required. I purchased the 10 G encryption processor.
    Is there something special on the ASR that needs to be done to get the ASR to start encrypting? Are there any examples?

    Hi Jatin,
    thanks for the response . it was a mistake from my side , forgot to check the IOS version . Anyone get into this trap please check whether you are running K9 .
    but does this command activate any feature specific license ? i think it only activates the base license right ?
    license boot level {adventerprise | advipservices |ipbase}
    for example if i want to evaluate following feature " Index 6 Feature: broadband_4k " how i can activate
    but after upgrading the k9, these license activated automatically hence now RTU license are not honourd type license ?
    Index 19 Feature: ipsec                         
            Period left: Life time
            License Type: Permanent
            License State: Active, Not in Use
            License Count: Non-Counted
            License Priority: Medium
    Thanks & Regards,
    E.A.Gobinath

  • ASR1002 ntp update-calendar not accepteed

    Hello ,
    Recently we have upgraded from a cisco 7200 envirounment to an ASR1002 having to migrate the configs as well.
    The command "ntp update-calendar" is not accepted in the config migration , any reason why ? doesnt the ASR
    have an internal hardware clock ?
    Any advice would be appreciated ,
    Thanks,
    Valentin.Z

    Hi,
    Unfortunately, these features are all Platform and IOS dependent.  With Cisco devices, there is no one IOS and feature set that fits all.  You would need to refer to the config guide and command reference guide for your specific platform and IOS version to find the equivalent to ntp update-calendar command.
    from the data sheet:
    Offer Stratum-3 clock circuitry, building  integrated timing supply (BITS) input and output (BITS output available  on ASR1000-RP2 only)
    More info here:
    http://www.cisco.com/en/US/prod/collateral/routers/ps9343/data_sheet_c78-441072.html
    HTH

  • ASR1002 WCCP L2 Forwarding Redirection setup

    Hi WCCP experts,
    Two questions please.
    According to
    IP Application Services Configuration Guide, Cisco IOS XE Release 3S (Cisco ASR 1000).
    • The following limitation applies to WCCP Layer 2 Forwarding and Return feature:
    Layer 2 redirection requires that content engines be directly connected to an interface on each WCCP router.
    Q1. Will it work if there is a L2 switch between the WCCP router and conte engines?
    Right now we have the WCCP ASR1002 router connected to a L2 switch trunk port. One of the sub-interfaces will be used for the connection to content engines.
    . For content engines running Application and Content Networking System (ACNS) software, use the wccp
    custom-web-cache command with the l2-redirect keyword to configure L2 redirection. For content
    engines running Cisco Wide Area Application Services (WAAS) software, use the wccp tcp-promiscuous
    command with the l2-redirect keyword to configure L2 redirection.
    Q2. I have Blue Coat as content engines. What configuration commands ASR1002 should have for L2 redirection?
    Thanks
    Cedar

    Hi Cedar,
    If i am not wrong the directly connected actually means that ASR and CE or in your case Blue coat proxy should be in the same subnet. If they are in the same subnet then of course you can use switch in between.
    http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipapp/configuration/xe-3s/iap-xe-3s-book/iap-wccp.html#GUID-CAE67F60-CD04-4134-9E7B-995E76608216
    Have a look at the link above and look at L2 redirection and return.
    Wccp customer-web-cache etc are all services and you can use any one or custom numbers as your network requirment. You can use 90 or web-cache which is for port 80 or 61, 62 etc.
    You can see the list of well known service groups.
    Regards,
    Kanwal

  • ASR1002-ESP10 CPU Stats at 0%

    I am having trouble figuring out how to see my CPU usage on an ASR1002-ESP10 and I am convinced it is me doing something wrong...
    I used to have a 7204VXR and configured FASTCEF to offload from the CPU. On that router when I started running traffic I would simply run "show processes CPU" to get an idea of what my CPU on the router was.
    Now on the Cisco ASR1002 with ESP10 card I setup Distributed CEF which appeared to be the "new cool thing" that cisco implemented. Everything is working so well but I am confused because when I run "show processes cpu" on this bad boy it says 0% everytime.. Even while running very large loads.
    So now I am wondering how to know when I hit my limits as it appears the distributed CEF is handling my entire load without even hitting 1% on the CPU...
    One more example...
    We do SIP and with our old router would scale equally as we increased total SIP paths. Around 4k channels we would be at 90%.... Obviously this new router is 8.5 times more powerful in terms of Packets Per Second but it scares me a bit that the CPU may stay at 0% and then when we hit X amount of channels that it will pull from CPU.. Another words my fear is that we run 30k channels and its 0% CPU but when we go to 32K channels the CPU is at 100% because maybe that ESP card is full at 30k and then the last 2k channels is all hitting CPU...
    Maybe I did not explain it well but I guess the simple question is how do I monitor this since CPU is always 0%.

    oratest wrote:
    Hi,
    I am using Oracle 10.2.0.3.
    Whenever I generate explain plan for any query, the very last line of explain plan is as below.
    cpu costing is off (consider enabling it)_
    It seems that optimizer didn't considerd CPU stats while generating plan for this.
    How to enable CPU statistics here?
    The parameter optimizer_mode value is "CHOOSE", and stats are being gathered at an interval of one week.In your version of the database, the default value of optimizer_mode is ALL_ROWS. Is there any reason why you have changed it? You may want to post the output of following executed in SQL*Plus
    show parameter optimizer

  • ASR1002-X with SFP-GE-T

    Hi all,
    We are trying to connect an ASR1002-X with 6 SFP-GE-T to a C3750 Switch but the interface never came up in the ASR. They do in the C3750. 
    The SFP we are using are CISCO-FINISAR
    The interfaces are configured in both sides with no negotiation auto and with speed 1000 and duplex full.
    I've tested the SFP-GE-T from C3750 to C3750 and they work as spected.
    I've googled around and, as far I can see many people with the same or very similar problem, no one have an answer for that.
    Here is an output for the interfaces of ASR(0/0/0) and C3750 (1/0/1) that are connected to eachother.
    GigabitEthernet0/0/0 is down, line protocol is down
    Hardware is 6XGE-BUILT-IN, address is f07f.06d9.c000 (bia f07f.06d9.c000)
    MTU 1500 bytes, BW 1000000 Kbit/sec, DLY 10 usec,
    reliability 255/255, txload 1/255, rxload 1/255
    Encapsulation ARPA, loopback not set
    Keepalive not supported
    Full Duplex, 1000Mbps, link type is force-up, media type is T
    output flow-control is on, input flow-control is on
    ARP type: ARPA, ARP Timeout 04:00:00
    Last input never, output never, output hang never
    Last clearing of "show interface" counters 04:04:41
    Input queue: 0/375/0/0 (size/max/drops/flushes); Total output drops: 0
    Queueing strategy: fifo
    Output queue: 0/40 (size/max)
    5 minute input rate 0 bits/sec, 0 packets/sec
    5 minute output rate 0 bits/sec, 0 packets/sec
    0 packets input, 0 bytes, 0 no buffer
    Received 0 broadcasts (0 IP multicasts)
    0 runts, 0 giants, 0 throttles
    0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
    0 watchdog, 0 multicast, 0 pause input
    0 packets output, 0 bytes, 0 underruns
    0 output errors, 0 collisions, 18 interface resets
    0 unknown protocol drops
    0 babbles, 0 late collision, 0 deferred
    0 lost carrier, 0 no carrier, 0 pause output
    0 output buffer failures, 0 output buffers swapped out
    C3750-Core(config-if)#do show int gi1/0/1
    GigabitEthernet1/0/1 is up, line protocol is up (connected)
    Hardware is Gigabit Ethernet, address is 0012.7f03.eb81 (bia
    0012.7f03.eb81)
    MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec,
    reliability 255/255, txload 1/255, rxload 1/255
    Encapsulation ARPA, loopback not set
    Keepalive set (10 sec)
    Full-duplex, 1000Mb/s, media type is 10/100/1000BaseTX
    input flow-control is on, output flow-control is unsupported
    ARP type: ARPA, ARP Timeout 04:00:00
    Last input never, output 00:00:00, output hang never
    Last clearing of "show interface" counters never
    Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
    Queueing strategy: fifo
    Output queue: 0/40 (size/max)
    5 minute input rate 0 bits/sec, 0 packets/sec
    5 minute output rate 0 bits/sec, 0 packets/sec
    0 packets input, 0 bytes, 0 no buffer
    Received 0 broadcasts (0 multicasts)
    0 runts, 0 giants, 0 throttles
    0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
    0 watchdog, 0 multicast, 0 pause input
    0 input packets with dribble condition detected
    5579 packets output, 448107 bytes, 0 underruns
    0 output errors, 0 collisions, 11 interface resets
    0 babbles, 0 late collision, 0 deferred
    0 lost carrier, 0 no carrier, 0 PAUSE output
    0 output buffer failures, 0 output buffers swapped out
    Also, the output for sh hw-module subslot 0/0 transceiver 0 idprom brief
    IDPROM for transceiver GigabitEthernet0/0/0:
    Description = SFP or SFP+ optics (type 3)
    Transceiver Type: = GE T (26)
    Product Identifier (PID) = N/A
    Vendor Revision = A0
    Serial Number (SN) = MTC164805GW
    Vendor Name = CISCO-FINISAR
    Vendor OUI (IEEE company ID) = 00.90.65 (36965)
    CLEI code =
    Cisco part number =
    Device State = Enabled.
    Date code (yy/mm/dd) = 14/09/15
    Connector type = LC.
    Encoding = 8B10B
    NRZ
    Nominal bitrate = GE (1300 Mbits/s)
    Minimum bit rate as % of nominal bit rate = not specified
    Maximum bit rate as % of nominal bit rate = not specified
    Any help?
    Thanks in advance

    Ok, nevermind, is a know bug. 
    FYI: https://tools.cisco.com/bugsearch/bug/CSCud29930/?referring_site=bugqvinvisibleredir

Maybe you are looking for

  • How many accounts can I have on a itunes account?

    How may devices can i have on 1 itunes account?  And if I want to add another deviices?

  • Replacement for Acrobat 9 Pro Extended

    Is there a replacement for Acrobat 9 Pro extended or a Acrobat 3 D version available Sergius

  • Can't turn off File Vault

    My initial problem with File Vault was that I am running out of space even though the drive has additional capacity. In an earlier post I learned that this is due to the fact that when File Vault is turned on it is effectively it's own volume. Unfort

  • Queue blocked after BPM error!

    Hi, Is there any configuration steps to do in order to avoid incoming message to be blocked (Scheduled on outbound side) in the queue when there is a bpm error. Thanks in advance,

  • Popups in dreamweaver

    Is there a way to create pop-up from a rollover or text image that can be positioned and styled?