ASR1002 or cisco4451-X
I need advice on choosing a platform for the following situation,
The router being selected are the ones to be at the HUB site, and they would handle the following scenarios...per router:
Receiving at least 1000 routes from the main VPN
GRE backup tunnel to at least 150 spoke sites
The previous GRE tunnels might be protected by IPSEC....not really decided yet if tunnel termination would be or in Firewall in front of it, but the GRE would be terminated here
More than 150 BGP peers
Per GRE tunnel QoS policy (Parent child scenario, shaping + HQF)
The Sum of all aggregated WAN BW should be around 500Mbps ...for now
Is the 4451 sufficient for this requirements, I haven't seen any platform limits for this new router, and I'm afraid things like almost 200 BGP peer and per tunnel QoS could be too much for this platform to handle
Any comments ?
Thanks in advance,
Kind regards,
Bruno
Hi Leo,
From 4451 datasheet you can go up to 2Gbps starting at 1Gbps of forwarding performance !!! this gives me some margin to grow
And how about the more than 150 BGP peers (1000+ routes total) and per GRE tunnel QoS service-policy (150+ grew tunnels) ? Can the 4451 handle this numbers ? I don't see this limits anywhere :(
I do prefer the ASR-1002 because it's truly a Edge router .... but this is a small infrastructure (150+ spokes) and I do feel looking only at forwarding performance it 4451 could be sufficient, question marks on the BGP and QoS+GRE stuff...but the price between both platforms is different !!!!
Thank's for your help,
Kind regards,
Bruno Fernandes
Thank's for the help
Similar Messages
-
How to set min-password length on ASR1002?
How to set min-password length on ASR1002?
Try:
security passwords min-length
I'm not positive if it's supported in your version of IOS-XE but it is in some. -
What is the Max Nat Session supported on ASR 1002 with ASR1002-5G/K9
Hello,
I am going for ASR 1002 With ASR1002-5G/K9 ESP, Can any 1 help me to know how many NAT translation is possible.
As I got the Datasheet for ASR1000 it say’s 1M translation is Supported by ESP10 but it’s not giving any information regarding ESP5.
Thanks in advanceFirewall or NAT: 250,000 sessions and 50,000 sessions-per-sec setup rate
This is from the datasheet. Pls check.
Table 3. Cisco ASR 1000 Series 5-Gbps ESP Module Performance and Scaling
Regards
Durga Prasad - Datasoft Comnet
Pls rate helpful posts
Sent from Cisco Technical Support Android App -
Hi fols,
We got ASR 1002 for use as LNS and move VPDN settings from 7204 to ASR1002... Looks like PPPoE interfaces (customers works pefect) but MLP Bundle cant establish :(
Cisco Console Log:
Feb 13 05:00:13 104.234.254.1 21010: Feb 13 10:00:12.732: %CPPOSLIB-3-ERROR_NOTIFY: SIP0: cpp_cp: cpp_cp encountered an error -Traceback= 1#adfdffd320bd4b50a075756a85bafaca errmsg:7FB80973B000+121D cpp_common_os:7FB80C74C000+D8D5 cpp_common_os:7FB80C74C000+D7D4 cpp_common_os:7FB80C74C000+19A3E cpp_ifm:7FB81F747000+A158 cpp_mlppp_svr_lib:7FB815BBB000+C2F1 cpp_mlppp_svr_lib:7FB815BBB000+1CCA8 cpp_mlppp_svr_smc_lib:7FB815DF9000+2D28 cpp_common_os:7FB80C74C000+11E6E cpp_common_os:7FB80C74C000+118AA cpp_common_os:7FB80C74C000+116EB evlib:7FB80B72C0
Feb 13 05:00:13 104.234.254.1 21011: Feb 13 10:00:12.733: %FMFP-3-OBJ_DWNLD_TO_CPP_FAILED: SIP0: fman_fp_image: MLP bundle 174, link 170 download to CPP failed
Radius Log (look as well):
Fri Feb 13 04:59:41 2015 : Auth: Login OK: [[email protected]] (from client asr-lns1.xxxxx.com port 3445 cli BHVLPQ1004W lag-39:53)
Fri Feb 13 04:59:41 2015 : Info: Existing IP: x.x.x.x (did cli BHVLPQ1004W lag-39:53 port 3445 user [email protected])
Fri Feb 13 05:00:12 2015 : Auth: Login OK: [[email protected]] (from client asr-lns1.xxxxx.com port 3009 cli BHVLPQ1004W lag-39:53)
Fri Feb 13 05:00:12 2015 : Info: Existing IP: x.x.x.x (did cli BHVLPQ1004W lag-39:53 port 3009 user [email protected])
My Debug settings:
2# sh debug
PPPoE:
PPPoE protocol events debugging is on
PPPoE data packets debugging is on
PPPoE control packets debugging is on
PPPoE protocol errors debugging is on
MLP:
Multilink fragments debugging is on
Multilink events debugging is on
First bytes of multilink packet debugging is on
VTEMPLATE:
Virtual Template errors debugging is on
Virtual Template subinterface debugging is on
#sh log | in MLP
:01:13.742: Vi109 MLP: Dropped link Vi110 from bundle [email protected]
Feb 13 10:01:13.742: Vi109 MLP: Dropped last link, removing bundle [email protected]
Feb 13 10:01:13.742: Vi109 MLP: Removing bundle '[email protected]'
Feb 13 10:01:15.392: Vi111 MLP: Request add link to bundle
Feb 13 10:01:15.392: Vi111 MLP: Adding link to bundle
Feb 13 10:01:15.392: Vi111 MLP: Requested bundle vaccess creation
Feb 13 10:01:15.392: Vi111 MLP: Determine clone source for SSS
Feb 13 10:01:15.392: Vi111 MLP: Link is Virtual-Access, clone from Virtual-Template 1
Feb 13 10:01:15.395: Vi111 MLP: Determine clone source for SSS
Feb 13 10:01:15.395: Vi111 MLP: Link is Virtual-Access, clone from Virtual-Template 1
Feb 13 10:01:15.396: Vi111 MLP: SSS connect, bundle interface Vi112
Feb 13 10:01:15.396: Vi112 MLP: Changing bundle bandwidth from 100000 to 2000000
Feb 13 10:01:15.396: Vi112 MLP: Interleaving disabled
Feb 13 10:01:15.396: Vi112 MLP: Ready to finish adding link Vi111 to bundle
Feb 13 10:01:15.396: Vi111 MLP: Computed frag size 7499992 exceeds MTU, changed to 1496
Feb 13 10:01:15.396: Vi112 MLP: Update bundle bandwidth 2000000 set 2000000
Feb 13 10:01:15.396: Vi111 MLP: Change transmit status from Init to Enabled, transmit links 1
Feb 13 10:01:15.397: Vi112 MLP: Added first link Vi111 to bundle [email protected]
Feb 13 10:01:15.397: Vi111 MLP: Updating bundle's PPP handle[0xCE000105] in SSS context
Feb 13 10:01:15.398: Vi112 MLP: Received segment updated message for bundle
Feb 13 10:01:15.402: %FMFP-3-OBJ_DWNLD_TO_CPP_FAILED: SIP0: fman_fp_image: MLP bundle 179, link 178 download to CPP failed
Feb 13 10:01:17.694: Vi112: MLP: Bundle has 1/2 desired links, requesting another
Feb 13 10:01:43.097: Vi111 MLP: Change transmit status from Enabled to Idle, transmit links 0
Feb 13 10:01:43.097: Vi112 MLP: No previous member for idle link in '[email protected]'
Feb 13 10:01:43.097: Vi112 MLP: Update bundle bandwidth 2000000 set 2000000
Feb 13 10:01:45.102: Vi111 MLP: Request drop link from bundle Vi112
Feb 13 10:01:45.103: Vi112 MLP: Removing link Vi111 from bundle [email protected]
Feb 13 10:01:45.103: Vi111 MLP: Change transmit status from Idle to Init, transmit links 0
Feb 13 10:01:45.103: Vi112 MLP: Bundle bandwidth 2000000 unchanged
Feb 13 10:01:45.103: Vi112 MLP: Dropped link Vi111 from bundle [email protected]
Feb 13 10:01:45.103: Vi112 MLP: Dropped last link, removing bundle [email protected]
Feb 13 10:01:45.103: Vi112 MLP: Removing bundle '[email protected]'
2# sh ppp multilink
Virtual-Access126
Bundle name: [email protected]
Remote Username: [email protected]
Remote Endpoint Discriminator: [3] 4c60.de51.dd67
Local Endpoint Discriminator: [1] asr1002
Bundle up for 00:00:25, total bandwidth 2000000, load 1/255
Receive buffer limit 12192 bytes, frag timeout 1000 ms
Bundle is Distributed
Using relaxed lost fragment detection algorithm.
0/0 fragments/bytes in reassembly list
0 lost fragments, 0 reordered
0/0 discarded fragments/bytes, 0 lost received
0x0 received sequence, 0x0 sent sequence
Platform Specific Multilink PPP info
NOTE: internal keyword not applicable on this platform
Interleaving: Enabled, Fragmentation: Enabled
Member links: 1 (max 16, min 2)
BHVLPQ1004W:Vi125 (x.x.x.x), since 00:00:25, 7500000 weight, 1496 frag size, unsequenced
No inactive multilink interfaces
Border-ASR1002#sh users | in xxxxx
Vi129 [email protected] PPPoVPDN never
Vi130 [email protected] MLP Bundle 00:00:06
NO IP ASSIGNED and this SESSIONs will be close in 30-50 sec. Then start again by circle.
interface Virtual-Template1
ip unnumbered Loopback100
no ip redirects
no ip proxy-arp
ip mtu 1460
ip tcp adjust-mss 1420
load-interval 60
no peer default ip address
keepalive 30
ppp mru match
ppp authentication pap chap xxx-netwrok.com
ppp authorization xxx-netwrok.com
ppp accounting xxx-netwrok.com
ppp ipcp dns 8.8.8.8
ppp multilink
ppp multilink links minimum 2
ppp multilink interleave
ppp multilink endpoint string asr1002
end
interface Loopback100
ip address x.x.x.x 255.255.255.255
end
#sh ppp statistics
Type PPP Statistic TOTAL SINCE CLEARED
4 Transition Packet Drop 2 2
5 Interrupt Transition Packet Drop 5 5
14 PPP Handles Allocated 16620 16620
15 PPP Handles Freed 13971 13971
16 LCP Renegotiations 17 17
17 NCP Renegotiations 3 3
18 NCP Negotiations Failed 348 348
19 PPP Encapped Interfaces 4583 4583
24 LCP Timeout+ 2892 2892
25 NCP Timeout+ 89257 89257
26 LCP Timeout- 793 793
27 NCP Timeout- 9542 9542
28 Authentication Timeout 1984 1984
29 Configure-Ack Id mismatch 9 9
30 Configure-Nak/Reject Id mismatch 21 21
Type PPP MIB Counters PEAK CURRENT
1 Links at LCP Stage 13 2
2 Links at Unauthenticated Name Stage 240 0
3 Links at Authenticated Name Stage 4 0
7 Links at Local Termination Stage 2650 2647
8 MLP Links at LCP Stage 1 0
9 MLP Links at Unauthenticated Name Stage 1 0
10 MLP Links at Authenticated Name Stage 1 0
14 MLP Links at Local Termination Stage 3 0
20 Successful LCP neogtiations 14497 14497
22 Entered Authentication Stage 14497 14497
28 IPCP UP Sessions 2650 2647
48 CHAP authentication attempts 2 2
49 CHAP authentication successes 1 1
51 PAP authentication attempts 14495 14495
52 PAP authentication successes 7397 7397
53 PAP authentication failures 6141 6141
95 Total Sessions 2651 2647
96 Non-MLP Sessions 2650 2647
97 MLP Sessions 1 0
98 Total Links 2654 2649
99 Non-MLP Links 2653 2649
100 MLP Links 2 0
Type PPP Disconnect Reason TOTAL SINCE CLEARED
11 Missed too many keepalives 177 177
12 PPP Renegotiating 18 18
15 LCP failed to negotiate 1694 1694
17 Received LCP TERMREQ from peer 1465 1465
18 Received LCP TERMACK from peer while OPEN 2 2
24 Removing MLP Bundle 412 412
27 MLP Kill Link 4 4
29 Lower Layer disconnected 3187 3187
37 Received disconnect from Session Manager 174 174
54 User failed PAP authentication 6141 6141
55 AAA Server did not respond 695 695
57 Authentication timeouts exceeded 2 2
If i try look show interface for two interface in bundle i see like this:
Border-ASR1002#sh int Vi24
Virtual-Access24 is up, line protocol is up
Hardware is Virtual Access interface
Interface is unnumbered. Using address of Loopback100 (x.x.x.x)
MTU 1442 bytes, BW 2000000 Kbit/sec, DLY 100000 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation PPP, LCP Open, multilink Open
REQsent: IPCP
MLP Bundle vaccess, cloned from Virtual-Template1
Vaccess status 0x44, loopback not set
Keepalive set (30 sec)
DTR is pulsed for 5 seconds on reset
Border-ASR1002#sh int Vi28
Virtual-Access28 is up, line protocol is up
Hardware is Virtual Access interface
MTU 1500 bytes, BW 2000000 Kbit/sec, DLY 100000 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation PPP, LCP Open, multilink Open
Link is a member of Multilink bundle Virtual-Access24
PPPoVPDN vaccess, cloned from Virtual-Template1
Vaccess status 0x44
Protocol l2tp, tunnel id 64648, session id 34181, loopback not set
Keepalive set (30 sec)
DTR is pulsed for 5 seconds on reset
Looks like normal. but in 30-60 sec this crashed... and sure we have not one customers with MLP... i hope we have around 20-30... so should be tonns MLP :)
Sure i lose few hours for find solutions but without luck. Nobody have exacly answer to this question.
I got abolutely working configuration from working NAS (7201 and 7204) and move it to ASR... thats what i have with MLP :((((
Can someone try help me investigate in figure our this....
I found same thread on ciscoforums where guys tell "need update ios" but someone update it and have same issue, so i hope issue not in IOS version.
Cisco IOS Software, IOS-XE Software (X86_64_LINUX_IOSD-UNIVERSAL-M), Version 15.3(2)S1, RELEASE SOFTWARE (fc1)
IOS XE Version: 03.09.01.S
System image file is "bootflash:/asr1002x-universal.03.09.01.S.153-2.S1.SPA.bin"
If you need anything else, like more debug or more info ... just ask me... i will wait there for your questions.
Thanks a lot.!
/// Update
Little bit more debug from bootflash:/tracelogs/cpp_cp_F0-0.log.7749.20150213111013
02/13 11:09:07.734 [errmsg]: (ERR): %CPPOSLIB-3-ERROR_NOTIFY: cpp_cp encountered an error -Traceback= 1#adfdffd320bd4b50a075756a85bafaca errmsg:7FB80973B000+121D cpp_common_os:7FB80C74C000+D8D5 cpp_common_os:7FB80C74C000+D7D4 cpp_common_os:7FB80C74C000+19A3E cpp_ifm:7FB81F747000+A158 cpp_mlppp_svr_lib:7FB815BBB000+C2F1 cpp_mlppp_svr_lib:7FB815BBB000+1CCA8 cpp_mlppp_svr_smc_lib:7FB815DF9000+2D28 cpp_common_os:7FB80C74C000+11E6E cpp_common_os:7FB80C74C000+118AA cpp_common_os:7FB80C74C000+116EB evlib:7FB80B72C000+B8E7 evlib:7FB80B72C000+E1B0
02/13 11:09:07.735 [buginf]: (debug):
-Traceback=1#adfdffd320bd4b50a075756a85bafaca cpp_common_os:7FB80C74C000+11445 cpp_common_os:7FB80C74C000+D7D9 cpp_common_os:7FB80C74C000+19A3E cpp_ifm:7FB81F747000+A158 cpp_mlppp_svr_lib:7FB815BBB000+C2F1 cpp_mlppp_svr_lib:7FB815BBB000+1CCA8 cpp_mlppp_svr_smc_lib:7FB815DF9000+2D28 cpp_common_os:7FB80C74C000+11E6E cpp_common_os:7FB80C74C000+118AA cpp_common_os:7FB80C74C000+116EB evlib:7FB80B72C000+B8E7 evlib:7FB80B72C000+E1B0 cpp_common_os:7FB80C74C000+13B43 :400000+6061 c:7FB7FC394000+1E514 :400000+5CC9
02/13 11:09:07.735 [cpp-mlppp]: (warn): [cpp_mlp_tx_link_create:3260] cpp_ifm_tx_chan_create_on_if failed link=1563 (retval='CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory)
02/13 11:09:07.735 [cpp-mlppp]: (warn): [cpp_mlp_svr_bundle_add_link_cmn:5035] cpp_mlp_tx_link_create failed link=1563 (retval='CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory)
02/13 11:09:41.978 [cpp-ifm]: (ERR): cpp_ifm_tx_chan_create_on_if.806: failed to find channel for parent if_h 100-'CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory
02/13 11:09:41.980 [errmsg]: (ERR): %CPPOSLIB-3-ERROR_NOTIFY: cpp_cp encountered an error -Traceback= 1#adfdffd320bd4b50a075756a85bafaca errmsg:7FB80973B000+121D cpp_common_os:7FB80C74C000+D8D5 cpp_common_os:7FB80C74C000+D7D4 cpp_common_os:7FB80C74C000+19A3E cpp_ifm:7FB81F747000+A158 cpp_mlppp_svr_lib:7FB815BBB000+C2F1 cpp_mlppp_svr_lib:7FB815BBB000+1CCA8 cpp_mlppp_svr_smc_lib:7FB815DF9000+2D28 cpp_common_os:7FB80C74C000+11E6E cpp_common_os:7FB80C74C000+118AA cpp_common_os:7FB80C74C000+116EB evlib:7FB80B72C000+B8E7 evlib:7FB80B72C000+E1B0
02/13 11:09:41.981 [buginf]: (debug):
-Traceback=1#adfdffd320bd4b50a075756a85bafaca cpp_common_os:7FB80C74C000+11445 cpp_common_os:7FB80C74C000+D7D9 cpp_common_os:7FB80C74C000+19A3E cpp_ifm:7FB81F747000+A158 cpp_mlppp_svr_lib:7FB815BBB000+C2F1 cpp_mlppp_svr_lib:7FB815BBB000+1CCA8 cpp_mlppp_svr_smc_lib:7FB815DF9000+2D28 cpp_common_os:7FB80C74C000+11E6E cpp_common_os:7FB80C74C000+118AA cpp_common_os:7FB80C74C000+116EB evlib:7FB80B72C000+B8E7 evlib:7FB80B72C000+E1B0 cpp_common_os:7FB80C74C000+13B43 :400000+6061 c:7FB7FC394000+1E514 :400000+5CC9
02/13 11:09:41.981 [cpp-mlppp]: (warn): [cpp_mlp_tx_link_create:3260] cpp_ifm_tx_chan_create_on_if failed link=1563 (retval='CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory)
02/13 11:09:41.981 [cpp-mlppp]: (warn): [cpp_mlp_svr_bundle_add_link_cmn:5035] cpp_mlp_tx_link_create failed link=1563 (retval='CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directory)
02/13 11:10:13.049 [cpp-ifm]: (ERR): cpp_ifm_tx_chan_create_on_if.806: failed to find channel for parent if_h 100-'CPP Interface Database' detected the 'warning' condition 'IFDB detected error in API': No such file or directoryOriginally Posted by CRAIGDWILSON
Look in your logs for any issues zmd-messages.log regarding accessing
"AppData". If so, that could be a known issue they are looking at,
though it is not really new but there are reports back to even 11.2.x
The reports are more of a timing issue on boot, but perhaps it could
relate to logon if that happened soon enough, though non of the reports
are for logon events.
On 6/25/2014 2:26 AM, thsundel wrote:
>
> Hi!
> Anyone else have problems with bundles not installing/launching on
> schedule with 11.3FRU1 agent? Also bundles set to launch at user login
> doesn't work first time the user logs in after workstation is booted, if
> they logout and in again then it will work?
>
> Thomas
>
>
Craig Wilson - MCNE, MCSE, CCNA
Novell Technical Support Engineer
Novell does not officially monitor these forums.
Suggestions/Opinions/Statements made by me are solely my own.
These thoughts may not be shared by either Novell or any rational human.
Nope, nothing refering to appdata (only thing it finds is appdatalrucache but that is probably not what you are asking for)...
I've now tried assiging the bundle both to device and to user but still nothing happes, works fine on our 11.2.x agent workstations.
Thomas -
Suspecting ESP 10 to fail in ASR1002
ASR1002 Cisco doesnt recognise ESP 10 module. Log is attached. We need to decide wether the chassi is OK or it is also affected.
We have conducted the following experiment: turned on the ASR1002 without ESP module and assigned 192.168.0.2 adress to an interface.
After that tried to ping 192.168.0.2 from outside, all pings have been lost.
Does the ASR1002 have to respond on the interface without ESP module?
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.
cisco Systems, Inc.
170 West Tasman Drive
San Jose, California 95134-1706
Cisco IOS Software, IOS-XE Software (PPC_LINUX_IOSD-ADVENTERPRISEK9-M), Version 15.1(3)S1, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2011 by Cisco Systems, Inc.
Compiled Sat 08-Oct-11 01:16 by mcpre
Cisco IOS-XE software, Copyright (c) 2005-2011 by cisco Systems, Inc.
All rights reserved. Certain components of Cisco IOS-XE software are
licensed under the GNU General Public License ("GPL") Version 2.0. The
software code licensed under GPL Version 2.0 is free software that comes
with ABSOLUTELY NO WARRANTY. You can redistribute and/or modify such
GPL code under the terms of GPL Version 2.0. For more details, see the
documentation or "License Notice" file accompanying the IOS-XE software,
or the applicable URL provided on the flyer accompanying the IOS-XE
software.
% failed to initialize nvram
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
[email protected].
cisco ASR1002 (2RU) processor with 1700171K/6147K bytes of memory.
4 Gigabit Ethernet interfaces
32768K bytes of non-volatile configuration memory.
4194304K bytes of physical memory.
7798783K bytes of eUSB flash at bootflash:.
--- System Configuration Dialog ---
Would you like to enter the initial configuration dialog? [yes/no]: no
Press RETURN to get started!
*Dec 12 16:40:24.348: %ASR1000_RP_NV-3-NV_ACCESS_FAIL: Initial read of NVRAM contents failed
*Dec 12 16:40:31.211: %LINK-3-UPDOWN: Interface Lsmpi0, changed state to up
*Dec 12 16:40:31.211: %LINK-3-UPDOWN: Interface EOBC0, changed state to up
*Dec 12 16:40:31.211: %LINEPROTO-5-UPDOWN: Line protocol on Interface VoIP-Null0, changed state to up
*Dec 12 16:40:31.212: %LINEPROTO-5-UPDOWN: Line protocol on Interface LI-Null0, changed state to up
*Dec 12 16:40:31.212: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to down
*Dec 12 16:40:31.212: %LINK-3-UPDOWN: Interface LIIN0, changed state to up
*Dec 12 16:40:31.350: %NETCLK-5-NETCLK_MODE_CHANGE: Network clock source not available. The network clock has changed to freerun
*Dec 12 16:40:31.440: %ASR1000_MGMTVRF-6-CREATE_SUCCESS_INFO: Management vrf Mgmt-intf created with ID 1, ipv4 table-id 0x1, ipv6 table-id 0x1E000001
*Dec 12 16:40:31.715: %DYNCMD-7-PKGINT_INSTALLED: The command package 'platform_trace' has been succesfully installed
*Dec 12 16:40:33.429: %LINEPROTO-5-UPDOWN: Line protocol on Interface Lsmpi0, changed state to up
*Dec 12 16:40:33.430: %LINEPROTO-5-UPDOWN: Line protocol on Interface EOBC0, changed state to up
*Dec 12 16:40:33.430: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to down
*Dec 12 16:40:33.430: %LINEPROTO-5-UPDOWN: Line protocol on Interface LIIN0, changed state to up
*Dec 12 16:40:23.540: %IOSXE-5-PLATFORM: R0/0: xinetd[32286]: xinetd Version 2.3.14 started with no options compiled in.
*Dec 12 16:40:23.554: %IOSXE-5-PLATFORM: R0/0: xinetd[32286]: Started working: 1 available service
*Dec 12 16:40:34.225: %DYNCMD-7-CMDSET_LOADED: The Dynamic Command set has been loaded from the Shell Manager
*Dec 12 16:40:58.021: %LINK-5-CHANGED: Interface GigabitEthernet0/0/0, changed state to administratively down
*Dec 12 16:40:58.022: %LINK-5-CHANGED: Interface GigabitEthernet0/0/1, changed state to administratively down
*Dec 12 16:40:58.022: %LINK-5-CHANGED: Interface GigabitEthernet0/0/2, changed state to administratively down
*Dec 12 16:40:58.023: %LINK-5-CHANGED: Interface GigabitEthernet0/0/3, changed state to administratively down
*Dec 12 16:40:58.023: %LINK-5-CHANGED: Interface GigabitEthernet0, changed state to administratively down
*Dec 12 16:40:59.021: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/0, changed state to down
*Dec 12 16:40:59.022: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/1, changed state to down
*Dec 12 16:40:59.022: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/2, changed state to down
*Dec 12 16:40:59.023: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/3, changed state to down
*Dec 12 16:41:02.525: %ASR1000_OIR-6-REMSPA: SPA removed from subslot 0/0, interfaces disabled
*Dec 12 16:41:02.527: %SPA_OIR-6-OFFLINECARD: SPA (4XGE-BUILT-IN) offline in subslot 0/0
*Dec 12 16:41:02.531: %ASR1000_OIR-6-INSCARD: Card (fp) inserted in slot F0
*Dec 12 16:41:02.532: %ASR1000_OIR-6-INSCARD: Card (cc) inserted in slot 0
*Dec 12 16:41:02.532: %ASR1000_OIR-6-ONLINECARD: Card (cc) online in slot 0
*Dec 12 16:41:02.536: %ASR1000_OIR-6-INSSPA: SPA inserted in subslot 0/0
*Dec 12 16:41:02.743: %SYS-5-RESTART: System restarted --
Cisco IOS Software, IOS-XE Software (PPC_LINUX_IOSD-ADVENTERPRISEK9-M), Version 15.1(3)S1, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2011 by Cisco Systems, Inc.
Compiled Sat 08-Oct-11 01:16 by mcpre
*Dec 12 16:41:05.577: %SPA_OIR-6-ONLINECARD: SPA (4XGE-BUILT-IN) online in subslot 0/0
Router>
Router>en
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#in
Router(config)#int
Router(config)#interface lo
Router(config)#interface loo
Router(config)#interface loopback 0
Router(config-if)#ip ad
Router(config-if)#ip address 19
*Dec 12 16:42:04.778: %LINEPROTO-5-UPDOWN: Line protocol on Interface Loopback0, changed state to up2.1
Router(config-if)#ip address 192.168.0.1 255.255.255.0
Router(config-if)#exit
Router(config)#exit
Router#sho
Router#show run
Router#show running-config int
Router#show running-config interface
*Dec 12 16:42:18.204: %SYS-5-CONFIG_I: Configured from console by consolelo
Router#show running-config interface lo0
Router#show running-config interface loo
Router#show running-config interface loopback 0
Building configuration...
Current configuration : 65 bytes
interface Loopback0
ip address 192.168.0.1 255.255.255.0
end
Router#ping 192.168.0.1
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 192.168.0.1, timeout is 2 seconds:
Success rate is 0 percent (0/5)
Router#sho
Router#show in
Router#show in
Router#show inte
Router#show interfaces lo
Router#show interfaces loo
Router#show interfaces loopback 0
Loopback0 is up, line protocol is up
Hardware is Loopback
Internet address is 192.168.0.1/24
MTU 1514 bytes, BW 8000000 Kbit/sec, DLY 5000 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation LOOPBACK, loopback not set
Keepalive set (10 sec)
Last input never, output never, output hang never
Last clearing of "show interface" counters never
Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
Queueing strategy: fifo
Output queue: 0/0 (size/max)
5 minute input rate 0 bits/sec, 0 packets/sec
5 minute output rate 0 bits/sec, 0 packets/sec
0 packets input, 0 bytes, 0 no buffer
Received 0 broadcasts (0 IP multicasts)
0 runts, 0 giants, 0 throttles
0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort
0 packets output, 0 bytes, 0 underruns
0 output errors, 0 collisions, 0 interface resets
0 unknown protocol drops
0 output buffer failures, 0 output buffers swapped out
Router#
Router#
*Dec 12 16:43:06.922: %TRANSCEIVER-6-INSERTED: SIP0/0: transceiver module inserted in GigabitEthernet0/0/0
Router#sho
Router#show run
Router#show running-config in
Router#show running-config interface gi0/0/
% Incomplete command.
Router#show running-config interface gi0/0
% Incomplete command.
Router#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)#in
Router(config)#int
Router(config)#interface gi0/0
% Incomplete command.
Router(config)#interface gi0/0/0
Router(config-if)#no shu
Router(config-if)#no shutdown
Router(config-if)#ip ad
Router(config-if)#ip address 192.1
*Dec 12 16:43:44.764: %LINK-3-UPDOWN: Interface GigabitEthernet0/0/0, changed state to down68.2.
*Dec 12 16:43:43.813: %LINK-3-UPDOWN: SIP0/0: Interface GigabitEthernet0/0/0, changed state to down1
*Dec 12 16:43:47.440: %LINK-3-UPDOWN: Interface GigabitEthernet0/0/0, changed state to up
*Dec 12 16:43:46.437: %LINK-3-UPDOWN: SIP0/0: Interface GigabitEthernet0/0/0, changed state to up
*Dec 12 16:43:48.440: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/0, changed state to up
Router(config-if)#ip address 192.168.2.1 255.255.255.0
Router(config-if)#exit
Router(config)#exit
Router#sho
Router#show run
Router#show running-config int
Router#show running-config interface
*Dec 12 16:43:56.015: %SYS-5-CONFIG_I: Configured from console by consolegi
Router#show running-config interface gigabitEthernet 0/0/0
Building configuration...
Current configuration : 94 bytes
interface GigabitEthernet0/0/0
ip address 192.168.2.1 255.255.255.0
negotiation auto
end
Router#ping 192.168.2.2
Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 192.168.2.2, timeout is 2 seconds:
Success rate is 0 percent (0/5)
Router#sho
Router#show in
Router#show inte
Router#show interfaces gi
Router#show interfaces gigabitEthernet 0/0/0
GigabitEthernet0/0/0 is up, line protocol is up
Hardware is 4XGE-BUILT-IN, address is 8843.e100.7300 (bia 8843.e100.7300)
Internet address is 192.168.2.1/24
MTU 1500 bytes, BW 1000000 Kbit/sec, DLY 10 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation ARPA, loopback not set
Keepalive not supported
Full Duplex, 1000Mbps, link type is auto, media type is LX
output flow-control is off, input flow-control is off
ARP type: ARPA, ARP Timeout 04:00:00
Last input never, output 00:00:27, output hang never
Last clearing of "show interface" counters never
Input queue: 0/375/0/0 (size/max/drops/flushes); Total output drops: 0
Queueing strategy: fifo
Output queue: 0/40 (size/max)
5 minute input rate 0 bits/sec, 0 packets/sec
5 minute output rate 0 bits/sec, 0 packets/sec
17 packets input, 2015 bytes, 0 no buffer
Received 0 broadcasts (0 IP multicasts)
0 runts, 0 giants, 0 throttles
0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
0 watchdog, 17 multicast, 0 pause input
0 packets output, 0 bytes, 0 underruns
0 output errors, 0 collisions, 4 interface resets
0 unknown protocol drops
0 babbles, 0 late collision, 0 deferred
0 lost carrier, 0 no carrier, 0 pause output
0 output buffer failures, 0 output buffers swapped out
Router#sho
Router#show pl
Router#show platform
Chassis type: ASR1002
Slot Type State Insert time (ago)
0 ASR1002-SIP10 ok 00:06:40
0/0 4XGE-BUILT-IN ok 00:03:56
R0 ASR1002-RP1 ok, active 00:06:40
F0 unknown 00:06:40
P0 ASR1002-PWR-AC ok 00:05:28
P1 ASR1002-PWR-AC ps, fail 00:05:28
Slot CPLD Version Firmware Version
0 07120202 12.2(33r)XNC
R0 08011017 12.2(33r)XNC
F0 N/A N/A
Router#
System Bootstrap, Version 12.2(33r)XNC, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 2009 by cisco Systems, Inc.
Current image running: Boot ROM0
Last reset cause: PowerOn
Last reset at: Fri Dec 12 16:48:51 UTC 2014
ASR1002-RP1 platform with 4194303 Kbytes of main memory
Warning: filesystem is not clean
Located asr1000rp1-adventerprisek9.03.04.01.S.151-3.S1.bin
Image size 312873272 inode num 13, bks cnt 76386 blk size 8*512
Boot image size = 312873272 (0x12a61138) bytes
Missing or illegal ip address for variable DEFAULT_GATEWAY
Using midplane macaddr
Missing or illegal ip address for variable IP_ADDRESS
Missing or illegal ip address for variable IP_SUBNET_MASK
Package header rev 0 structure detected
Calculating SHA-1 hash...done
validate_package: SHA-1 hash:
calculated 61d80af0:032b96a1:6b3b2b5c:667f969a:ad8e4c9f
expected 61d80af0:032b96a1:6b3b2b5c:667f969a:ad8e4c9f
Image validated
%IOSXEBOOT-4-FILESYS_ERRORS_CORRECTED: (rp/0): bootflash contained errors which were auto-corrected.
Restricted Rights Legend
Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.
cisco Systems, Inc.
170 West Tasman Drive
San Jose, California 95134-1706
Cisco IOS Software, IOS-XE Software (PPC_LINUX_IOSD-ADVENTERPRISEK9-M), Version 15.1(3)S1, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2011 by Cisco Systems, Inc.
Compiled Sat 08-Oct-11 01:16 by mcpre
Cisco IOS-XE software, Copyright (c) 2005-2011 by cisco Systems, Inc.
All rights reserved. Certain components of Cisco IOS-XE software are
licensed under the GNU General Public License ("GPL") Version 2.0. The
software code licensed under GPL Version 2.0 is free software that comes
with ABSOLUTELY NO WARRANTY. You can redistribute and/or modify such
GPL code under the terms of GPL Version 2.0. For more details, see the
documentation or "License Notice" file accompanying the IOS-XE software,
or the applicable URL provided on the flyer accompanying the IOS-XE
software.
% failed to initialize nvram
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
If you require further assistance please contact us by sending email to
[email protected].
cisco ASR1002 (2RU) processor with 1700171K/6147K bytes of memory.
4 Gigabit Ethernet interfaces
32768K bytes of non-volatile configuration memory.
4194304K bytes of physical memory.
7798783K bytes of eUSB flash at bootflash:.
--- System Configuration Dialog ---
Would you like to enter the initial configuration dialog? [yes/no]:
% Please answer 'yes' or 'no'.
Would you like to enter the initial configuration dialog? [yes/no]:
% Please answer 'yes' or 'no'.
Would you like to enter the initial configuration dialog? [yes/no]: no
Press RETURN to get started!
*Dec 12 16:52:16.032: %ASR1000_RP_NV-3-NV_ACCESS_FAIL: Initial read of NVRAM contents failed
*Dec 12 16:52:24.113: %LINK-3-UPDOWN: Interface Lsmpi0, changed state to up
*Dec 12 16:52:24.114: %LINK-3-UPDOWN: Interface EOBC0, changed state to up
*Dec 12 16:52:24.114: %LINEPROTO-5-UPDOWN: Line protocol on Interface VoIP-Null0, changed state to up
*Dec 12 16:52:24.115: %LINEPROTO-5-UPDOWN: Line protocol on Interface LI-Null0, changed state to up
*Dec 12 16:52:24.11
Router>5: %LINK-3-UPDOWN: Interface GigabitEthernet0, changed state to down
*Dec 12 16:52:24.115: %LINK-3-UPDOWN: Interface LIIN0, changed state to up
*Dec 12 16:52:24.361: %NETCLK-5-NETCLK_MODE_CHANGE: Network clock source not available. The network clock has changed to freerun
*Dec 12 16:52:24.656: %ASR1000_MGMTVRF-6-CREATE_SUCCESS_INFO: Management vrf Mgmt-intf created with ID 1, ipv4 table-id 0x1, ipv6 table-id 0x1E000001
*Dec 12 16:52:25.151: %LINEPROTO-5-UPDOWN: Line protocol on Interface Lsmpi0, changed state to up
*Dec 12 16:52:25.152: %LINEPROTO-5-UPDOWN: Line protocol on Interface EOBC0, changed state to up
*Dec 12 16:52:25.152: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0, changed state to down
*Dec 12 16:52:25.152: %LINEPROTO-5-UPDOWN: Line protocol on Interface LIIN0, changed state to up
*Dec 12 16:52:25.546: %DYNCMD-7-PKGINT_INSTALLED: The command package 'platform_trace' has been succesfully installed
*Dec 12 16:52:28.680: %DYNCMD-7-CMDSET_LOADED: The Dynamic Command set has been loaded from the Shell Manager
*Dec 12 16:52:15.830: %IOSXE-5-PLATFORM: R0/0: xinetd[31943]: xinetd Version 2.3.14 started with no options compiled in.
*Dec 12 16:52:15.844: %IOSXE-5-PLATFORM: R0/0: xinetd[31943]: Started working: 1 available service
*Dec 12 16:52:50.090: %LINK-5-CHANGED: Interface GigabitEthernet0/0/0, changed state to administratively down
*Dec 12 16:52:50.091: %LINK-5-CHANGED: Interface GigabitEthernet0/0/1, changed state to administratively down
*Dec 12 16:52:50.091: %LINK-5-CHANGED: Interface GigabitEthernet0/0/2, changed state to administratively down
*Dec 12 16:52:50.091: %LINK-5-CHANGED: Interface GigabitEthernet0/0/3, changed state to administratively down
*Dec 12 16:52:50.092: %LINK-5-CHANGED: Interface GigabitEthernet0, changed state to administratively down
*Dec 12 16:52:51.090: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/0, changed state to down
*Dec 12 16:52:51.091: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/1, changed state to down
*Dec 12 16:52:51.092: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/2, changed state to down
*Dec 12 16:52:51.092: %LINEPROTO-5-UPDOWN: Line protocol on Interface GigabitEthernet0/0/3, changed state to down
*Dec 12 16:52:57.608: %ASR1000_OIR-6-REMSPA: SPA removed from subslot 0/0, interfaces disabled
*Dec 12 16:52:57.609: %SPA_OIR-6-OFFLINECARD: SPA (4XGE-BUILT-IN) offline in subslot 0/0
*Dec 12 16:52:57.613: %ASR1000_OIR-6-INSCARD: Card (cc) inserted in slot 0
*Dec 12 16:52:57.613: %ASR1000_OIR-6-ONLINECARD: Card (cc) online in slot 0
*Dec 12 16:52:57.615: %ASR1000_OIR-6-INSSPA: SPA inserted in subslot 0/0
*Dec 12 16:52:57.819: %SYS-5-RESTART: System restarted --
Cisco IOS Software, IOS-XE Software (PPC_LINUX_IOSD-ADVENTERPRISEK9-M), Version 15.1(3)S1, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2011 by Cisco Systems, Inc.
Compiled Sat 08-Oct-11 01:16 by mcpre
*Dec 12 16:53:00.828: %SPA_OIR-6-ONLINECARD: SPA (4XGE-BUILT-IN) online in subslot 0/0
Router>en
Router#sho
Router#show pla
Router#show platform
Chassis type: ASR1002
Slot Type State Insert time (ago)
0 ASR1002-SIP10 ok 00:02:40
0/0Are you able to download and install other applications for your Mac?
Try following along with this Apple doc -> Troubleshooting iTunes installation on Mac OS X -
Hi,
I have recently purchased ASR1002-RP1-ESP5 with 2 x 4K Broadband licenses to be used as LNS. Cisco have sent me PAK files for the licenses however when I try to enter the licenses into the device I get an error message saying that Licensing is not supported on this platform.
Does anyone have any experience with this platform and installation of the broadband licenses?
When I spoke to Cisco TAC they told me that for this particular model the licensing is on "trust" basis where you buy license and do not install it on the actual router - similar to what 7200 used to do.
Thanks,
MichalHello Michal,
Yes, it is true. Almost all licenses are honor-based ones. There are a few exceptions but they are mainly on the ASR1001.
There is detailed information about the different licenses for ASR1K routers here:
http://www.cisco.com/en/US/prod/collateral/routers/ps9343/product_bulletin_c07-448862.html
Warm Regards,
Rose -
Hi,
our company is going to purchase a Cisco ASR 1002 and we need to make it Redundant.
I know about the Software Redundancy in Cisco ASR1002 with two IOS on a single Route Processor but If we want to make it Hardware by using two ASR1002 at our location than how can we achieve this ?
We want to make our ASR 1002 Hardware Redundant means we want inter-chassis Redundancy between both the ASRs.
As Inter-chassis Redundancy means that if our Active chassis will goes down than our Secondary chassis takes over.
As I found a link of Inter-chassis Redundancy on ASR1002
http://www.cisco.com/en/US/docs/routers/asr1000/configuration/guide/sbcu/sbc_interHA.pdf
One thing more I want to tell you that according to this link it is mentioned that the secondary chassis will start forwarding the call signalling and Media Forwarding but we are having only Data traffic not Voice traffic.
So, can anybody tell that we can use this Inter-chassis feature in our ASR 1002. If their is any requirement for any special license or module than we can purchase it also.
Thanks & Regards,
Rahul Chhabra
Network Engineer
Spooster IT ServicesI know this thing about HSRP, but I want to know that is their any other method of inter-chassis Redundancy like the ASA failover in which all the information is Replicated to Secondary ASA while failover.
-
ASR1002 crawls when installing BGP Full Internet table
hi all,
I have an ASR1002/ESP10 and I have 2 or 3 peers that are sending me FIRT. When I filter with route-maps the incoming announcements, I'm keeping about 3K routes and everything is fine. But when i try to remove the incoming filters, then the ASR1002 tries to install the FIRT into the FIB and this results in the ASR1002 crawling and becoming unresponsive (while it is installing the FIRT into the FIB).
Is that normal? Is there a way, to tell the ASR to install the FIB with a slower rate, in order to have CPU power for the rest of the tasks. Do you also know if this influences forwarding performance of the router?
thanx,
Sp.Disclaimer
The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.
Liability Disclaimer
In no event shall Author be liable for any damages whatsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.
Posting
Tracking your 2911's CPU usage will provide an indication of how hard it's being "worked".
I've attached a later Cisco document that better documents expected and recommended performance levels for various ISRs. (NB: in that document, you'll see a 2911 is only recommended for up to 35 Mbps.)
PS:
BTW, running full BGP with your two ISPs, hoping to obtain optimal performance, really doesn't. What actually works much better, if you're licensed for it, is Cisco's PfR technology (which will work fine with just a default to both ISPs). -
Cisco ASR1002-X Netflow version 5 performance
Hello,
customer is asking me regarding 1:1 Netflow version 5 on ASR1002-X.
Is it fully supported?
Is there any known caveat?
I suspect it lowers stability of the system, and need to be sure.
Thank you,
Josef BalounAre you referring to the sampling ratio? 1:1 sampling is sending all traffic conversations for NetFlow analysis using sampling. This can result in an increase in CPU and memory utilization on the device - so if this is a traffic heavy network, 1:1 sampling is not recommended.
Regards,
Don Jacob
http://www.solarwinds.com/netflow-traffic-analyzer.aspx
PS: Dont forget to rate and close helpful answers. -
Hi, There is any conflict between OTV on ASR1002 and wccp on Wave-694 configured in the same scenario?
My scenario is 3 sites with ASR1002 for OTV cloud, a wave-694 at each site configured for wccp, and a 6807 in VSS mode as CORE-LAN. I wan to know if theres any conflict between wccp and OTV,
Attached is the logical mapHi,
In order for the packet to be picked up by WCCP ... you'll need to have the packet Layer-3 routed (i.e. from one subnet to another).
But one of the reasons for using OTV - is that you want to stretch the Layer-2 subnet between several locations ("bridging" across a Layer-3 network).
So you'll never reach a layer 3 interface (SVI or routed) when communicating within the same VLAN/subnet.
As I see your installation you only have one option (although with two flavours) here - that is to use some kind of "bridging" interception between the ASR and the 6800-VSS.
Don't know whether this interface is 1Gigabit or 10Gigabit, but you could look into :
1) using an "ordinary" Inline adapter on the WAVE-694 (this only works with 1Gigabit connection)
2) using some kind of APPNAV interception where the adapter intercepts the bridged packet - this supports 10Gigabit connection, but you'll have NO failover, if the APPNAV device (which can be the WAVE-694 with a special module) of the APPNAV modules fails.
Check this : www.cisco.com/go/appnav
Best Regards
Finn Poulsen -
I am trying to bring up an IPSec tunnel between an ASR1002 and a 2821. The tunnel itself works. Only the 2821 shows hits against its access list. Only the 2821 shows packets being encrypted with no decrypted packets.
I purchased the firewall and IPSec license for the ASR. My understanding is that the license is only honorary and no special software is required. I purchased the 10 G encryption processor.
Is there something special on the ASR that needs to be done to get the ASR to start encrypting? Are there any examples?Hi Jatin,
thanks for the response . it was a mistake from my side , forgot to check the IOS version . Anyone get into this trap please check whether you are running K9 .
but does this command activate any feature specific license ? i think it only activates the base license right ?
license boot level {adventerprise | advipservices |ipbase}
for example if i want to evaluate following feature " Index 6 Feature: broadband_4k " how i can activate
but after upgrading the k9, these license activated automatically hence now RTU license are not honourd type license ?
Index 19 Feature: ipsec
Period left: Life time
License Type: Permanent
License State: Active, Not in Use
License Count: Non-Counted
License Priority: Medium
Thanks & Regards,
E.A.Gobinath -
ASR1002 ntp update-calendar not accepteed
Hello ,
Recently we have upgraded from a cisco 7200 envirounment to an ASR1002 having to migrate the configs as well.
The command "ntp update-calendar" is not accepted in the config migration , any reason why ? doesnt the ASR
have an internal hardware clock ?
Any advice would be appreciated ,
Thanks,
Valentin.ZHi,
Unfortunately, these features are all Platform and IOS dependent. With Cisco devices, there is no one IOS and feature set that fits all. You would need to refer to the config guide and command reference guide for your specific platform and IOS version to find the equivalent to ntp update-calendar command.
from the data sheet:
Offer Stratum-3 clock circuitry, building integrated timing supply (BITS) input and output (BITS output available on ASR1000-RP2 only)
More info here:
http://www.cisco.com/en/US/prod/collateral/routers/ps9343/data_sheet_c78-441072.html
HTH -
ASR1002 WCCP L2 Forwarding Redirection setup
Hi WCCP experts,
Two questions please.
According to
IP Application Services Configuration Guide, Cisco IOS XE Release 3S (Cisco ASR 1000).
• The following limitation applies to WCCP Layer 2 Forwarding and Return feature:
Layer 2 redirection requires that content engines be directly connected to an interface on each WCCP router.
Q1. Will it work if there is a L2 switch between the WCCP router and conte engines?
Right now we have the WCCP ASR1002 router connected to a L2 switch trunk port. One of the sub-interfaces will be used for the connection to content engines.
. For content engines running Application and Content Networking System (ACNS) software, use the wccp
custom-web-cache command with the l2-redirect keyword to configure L2 redirection. For content
engines running Cisco Wide Area Application Services (WAAS) software, use the wccp tcp-promiscuous
command with the l2-redirect keyword to configure L2 redirection.
Q2. I have Blue Coat as content engines. What configuration commands ASR1002 should have for L2 redirection?
Thanks
CedarHi Cedar,
If i am not wrong the directly connected actually means that ASR and CE or in your case Blue coat proxy should be in the same subnet. If they are in the same subnet then of course you can use switch in between.
http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/ipapp/configuration/xe-3s/iap-xe-3s-book/iap-wccp.html#GUID-CAE67F60-CD04-4134-9E7B-995E76608216
Have a look at the link above and look at L2 redirection and return.
Wccp customer-web-cache etc are all services and you can use any one or custom numbers as your network requirment. You can use 90 or web-cache which is for port 80 or 61, 62 etc.
You can see the list of well known service groups.
Regards,
Kanwal -
ASR1002-ESP10 CPU Stats at 0%
I am having trouble figuring out how to see my CPU usage on an ASR1002-ESP10 and I am convinced it is me doing something wrong...
I used to have a 7204VXR and configured FASTCEF to offload from the CPU. On that router when I started running traffic I would simply run "show processes CPU" to get an idea of what my CPU on the router was.
Now on the Cisco ASR1002 with ESP10 card I setup Distributed CEF which appeared to be the "new cool thing" that cisco implemented. Everything is working so well but I am confused because when I run "show processes cpu" on this bad boy it says 0% everytime.. Even while running very large loads.
So now I am wondering how to know when I hit my limits as it appears the distributed CEF is handling my entire load without even hitting 1% on the CPU...
One more example...
We do SIP and with our old router would scale equally as we increased total SIP paths. Around 4k channels we would be at 90%.... Obviously this new router is 8.5 times more powerful in terms of Packets Per Second but it scares me a bit that the CPU may stay at 0% and then when we hit X amount of channels that it will pull from CPU.. Another words my fear is that we run 30k channels and its 0% CPU but when we go to 32K channels the CPU is at 100% because maybe that ESP card is full at 30k and then the last 2k channels is all hitting CPU...
Maybe I did not explain it well but I guess the simple question is how do I monitor this since CPU is always 0%.oratest wrote:
Hi,
I am using Oracle 10.2.0.3.
Whenever I generate explain plan for any query, the very last line of explain plan is as below.
cpu costing is off (consider enabling it)_
It seems that optimizer didn't considerd CPU stats while generating plan for this.
How to enable CPU statistics here?
The parameter optimizer_mode value is "CHOOSE", and stats are being gathered at an interval of one week.In your version of the database, the default value of optimizer_mode is ALL_ROWS. Is there any reason why you have changed it? You may want to post the output of following executed in SQL*Plus
show parameter optimizer -
Hi all,
We are trying to connect an ASR1002-X with 6 SFP-GE-T to a C3750 Switch but the interface never came up in the ASR. They do in the C3750.
The SFP we are using are CISCO-FINISAR
The interfaces are configured in both sides with no negotiation auto and with speed 1000 and duplex full.
I've tested the SFP-GE-T from C3750 to C3750 and they work as spected.
I've googled around and, as far I can see many people with the same or very similar problem, no one have an answer for that.
Here is an output for the interfaces of ASR(0/0/0) and C3750 (1/0/1) that are connected to eachother.
GigabitEthernet0/0/0 is down, line protocol is down
Hardware is 6XGE-BUILT-IN, address is f07f.06d9.c000 (bia f07f.06d9.c000)
MTU 1500 bytes, BW 1000000 Kbit/sec, DLY 10 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation ARPA, loopback not set
Keepalive not supported
Full Duplex, 1000Mbps, link type is force-up, media type is T
output flow-control is on, input flow-control is on
ARP type: ARPA, ARP Timeout 04:00:00
Last input never, output never, output hang never
Last clearing of "show interface" counters 04:04:41
Input queue: 0/375/0/0 (size/max/drops/flushes); Total output drops: 0
Queueing strategy: fifo
Output queue: 0/40 (size/max)
5 minute input rate 0 bits/sec, 0 packets/sec
5 minute output rate 0 bits/sec, 0 packets/sec
0 packets input, 0 bytes, 0 no buffer
Received 0 broadcasts (0 IP multicasts)
0 runts, 0 giants, 0 throttles
0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
0 watchdog, 0 multicast, 0 pause input
0 packets output, 0 bytes, 0 underruns
0 output errors, 0 collisions, 18 interface resets
0 unknown protocol drops
0 babbles, 0 late collision, 0 deferred
0 lost carrier, 0 no carrier, 0 pause output
0 output buffer failures, 0 output buffers swapped out
C3750-Core(config-if)#do show int gi1/0/1
GigabitEthernet1/0/1 is up, line protocol is up (connected)
Hardware is Gigabit Ethernet, address is 0012.7f03.eb81 (bia
0012.7f03.eb81)
MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec,
reliability 255/255, txload 1/255, rxload 1/255
Encapsulation ARPA, loopback not set
Keepalive set (10 sec)
Full-duplex, 1000Mb/s, media type is 10/100/1000BaseTX
input flow-control is on, output flow-control is unsupported
ARP type: ARPA, ARP Timeout 04:00:00
Last input never, output 00:00:00, output hang never
Last clearing of "show interface" counters never
Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
Queueing strategy: fifo
Output queue: 0/40 (size/max)
5 minute input rate 0 bits/sec, 0 packets/sec
5 minute output rate 0 bits/sec, 0 packets/sec
0 packets input, 0 bytes, 0 no buffer
Received 0 broadcasts (0 multicasts)
0 runts, 0 giants, 0 throttles
0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
0 watchdog, 0 multicast, 0 pause input
0 input packets with dribble condition detected
5579 packets output, 448107 bytes, 0 underruns
0 output errors, 0 collisions, 11 interface resets
0 babbles, 0 late collision, 0 deferred
0 lost carrier, 0 no carrier, 0 PAUSE output
0 output buffer failures, 0 output buffers swapped out
Also, the output for sh hw-module subslot 0/0 transceiver 0 idprom brief
IDPROM for transceiver GigabitEthernet0/0/0:
Description = SFP or SFP+ optics (type 3)
Transceiver Type: = GE T (26)
Product Identifier (PID) = N/A
Vendor Revision = A0
Serial Number (SN) = MTC164805GW
Vendor Name = CISCO-FINISAR
Vendor OUI (IEEE company ID) = 00.90.65 (36965)
CLEI code =
Cisco part number =
Device State = Enabled.
Date code (yy/mm/dd) = 14/09/15
Connector type = LC.
Encoding = 8B10B
NRZ
Nominal bitrate = GE (1300 Mbits/s)
Minimum bit rate as % of nominal bit rate = not specified
Maximum bit rate as % of nominal bit rate = not specified
Any help?
Thanks in advanceOk, nevermind, is a know bug.
FYI: https://tools.cisco.com/bugsearch/bug/CSCud29930/?referring_site=bugqvinvisibleredir
Maybe you are looking for
-
How many accounts can I have on a itunes account?
How may devices can i have on 1 itunes account? And if I want to add another deviices?
-
Replacement for Acrobat 9 Pro Extended
Is there a replacement for Acrobat 9 Pro extended or a Acrobat 3 D version available Sergius
-
My initial problem with File Vault was that I am running out of space even though the drive has additional capacity. In an earlier post I learned that this is due to the fact that when File Vault is turned on it is effectively it's own volume. Unfort
-
Queue blocked after BPM error!
Hi, Is there any configuration steps to do in order to avoid incoming message to be blocked (Scheduled on outbound side) in the queue when there is a bpm error. Thanks in advance,
-
Is there a way to create pop-up from a rollover or text image that can be positioned and styled?