ASR 1006 vs ASR 9001
Hi All:
I would appreciate if someone can share their lifetime experience and suggest me to finalize the right product between ASR 1006 or ASR 9001.
Requirements:
- We need full internet feed with IPv4 and IPv6.
-10 G & STM-16 interfaces for connectivity.
- 10 Gbps traffic need to be handled by the box.
- MPLS L3/L2 VPN's
I personally after going through IOS-XR feature, prefer this.
Need some expert thoughts in the light of real world experience.
Regards,
Hi Sayed,
ASR 9001 does not support STM-16 interfaces. It is purely 1 GE/10 GE platform.
If you are looking for an XR platform that supports STM-16 interfaces, you need to go with the 9006 (or 9904) , RSP-440, SIP-700 and POS SPA (for STM) and Typhoon 10GE linecard. (with Trident you might face an issue for the number of learned prefixes depending on the scale profile you choose: http://www.cisco.com/c/en/us/support/docs/routers/asr-9000-series-aggregation-services-routers/116999-problem-line-card-00.html)
If you decide to go with the ASR 1006, make sure you choose dual RP2 ( with 16GB mem), ESP-100 (or ESP-200) and SIP40. This should eliminate the TCAM exhaustion issue, if you decide to do NAT and ACL.; and guarantee and route-scale that might occur. (for the ASR 1000, I would recommend upgrading all of the memories)
HTH,
Michel.
Similar Messages
-
Command execution get very slow when AAA Authorization enable on ASR 1006
Without Authorization , I am able work smoothly with just click on ASR ...., But Once I enable Authorization it takes many secs to move to other command exampe ( If i hit config t or int gi1/0/1 , it take time to move to next command level) ...
These Authorization issue I am facing only on ASR and for Other Cisco Switches and Router its working fine wiith just a click.
Did any one face such issue , and how it is fix ...
See the Show version for ASR
Cisco IOS Software, IOS-XE Software (PPC_LINUX_IOSD-ADVIPSERVICESK9-M), Version 15.1(2)S, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2011 by Cisco Systems, Inc.
Compiled Thu 24-Mar-11 23:32 by mcpre
Cisco IOS-XE software, Copyright (c) 2005-2011 by cisco Systems, Inc.
All rights reserved. Certain components of Cisco IOS-XE software are
licensed under the GNU General Public License ("GPL") Version 2.0. The
software code licensed under GPL Version 2.0 is free software that comes
with ABSOLUTELY NO WARRANTY. You can redistribute and/or modify such
GPL code under the terms of GPL Version 2.0. For more details, see the
documentation or "License Notice" file accompanying the IOS-XE software,
or the applicable URL provided on the flyer accompanying the IOS-XE
software.
ROM: IOS-XE ROMMON
NOITDCRTRCORP01 uptime is 10 weeks, 6 days, 1 hour, 16 minutes
Uptime for this control processor is 10 weeks, 6 days, 1 hour, 19 minutes
System returned to ROM by reload
System restarted at 17:47:32 IST Thu Oct 4 2012
System image file is "bootflash:/asr1000rp1-advipservicesk9.03.03.00.S.151-2.S.bin"
Last reload reason: EHSA standby down
AAA Commands on ASR 1006
aaa new-model
aaa group server tacacs+ tacgroup
server 10.48.128.10
server 10.72.160.10
ip vrf forwarding Mgmt-intf
ip tacacs source-interface GigabitEthernet0
aaa authentication login default group tacgroup local
aaa authentication enable default group tacgroup enable
aaa accounting exec default start-stop group tacgroup
aaa accounting commands 1 default start-stop group tacgroup
aaa accounting commands 15 default start-stop group tacgroup
aaa accounting connection default start-stop group tacgroup
aaa accounting system default start-stop group tacgroup
aaa authorization commands 0 default group tacgroup none
aaa authorization commands 1 default group tacgroup none
aaa authorization commands 15 default group tacgroup none
aaa session-id common
tacacs-server host 10.48.128.10 key 7 13351601181B0B382F04796166
tacacs-server key 7 053B071C325B411B1D25464058I think your issue maybe related to your tacacs server. If you re-order the two servers (typically a 5 second timer before failover occurs) and see if that improves your performance:
You can try to debug the issue by referring to the command reference guide....i.e. debug tacacs...you can also try to telnet to both ip address to port 49 to see if the connection opens, in order to rule out issues where a firewall or routing to one of the tacacs servers is failing. I also noticed you have the shared secret and tacacs server defined for one of the servers, is the sam present for the other server that is in the server group?
server 10.48.128.10
server 10.72.160.10
to
server 10.72.160.10
server 10.48.128.10
Thanks,
Tarik Admani
*Please rate helpful posts* -
ASR 1006 shaping\policing on port-channel interfaces
Hello
I encountered a problem - ASR 1006 ignores shaping\policing configuration on a port-channel interfaces.
If I configure:
policy-map Shaping
class class-default
shape average 100000
interface TenGigabitEthernet0/0/0
no ip address
channel-group 1 mode active
interface Port-channel1.10
encapsulation dot1Q 10
ip address 1.0.0.1 255.255.255.0
service-policy output Shaping
With such configuration shaping doesn't work. But it works on ordinary tenGigabit interfaces...
I've tried several ios xe versions.. no changes
Are there any ristrictions with shaping on Port-channel interfaces?Hi,
Traditional QoS will not work for etherchannels. Please read to find suitable config for your case.
http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/qos_mqc/configuration/xe-3s/qos-mqc-xe-3s-book/qos-eth-int.html#GUID-6137A7B8-B2D1-4024-8AC9-E7EBEDD868C6 -
If i need a firewall,can ASR 1006 replace ASA 5580?
i check ASR 1006 config with ESP-40, the firewall permonce can reach 40G, ASA 5580 is 20G, can ASR 1006 replace ASA 5580, is there any function feature problem?
thank you!Fly,
There is no official documentation that states which L3 device can replace an ASA, since they are completely different devices with some capabilities in common.
I would strongly recommend that you reach your account manager at Cisco for this one. They will be able to provide you accurate info.
Mike. -
Maximum cos1 (voice traffic) supported by Cisco ASR 1006 router
Dear Team,
Please confirm the maximum cos 1 traffic supported by cisco ASR 1006 router.Yes, it would. If you are planning on terminating a single site on this router I would spread over multiple routers for redundancy.
Table 6 explains number of ports and channels providing you have the DSPs:
http://www.cisco.com/c/dam/en/us/products/collateral/routers/2800-series-integrated-services-routers-isr/product_data_sheet0900aecd8057f2e0.pdf -
Hi,
Is there any built-in WAAS and NME features or services in Cisco ASR 1006? Or is there any WAAS or NME module that can be installed in Cisco ASR 1006? I found that for Cisco ISR 1900, 2900, and 3900, WAAS and NME services can be enabled by installing SRE and NME module. But can't find any information for Cisco ASR 1006.
Really appreciate your help.
ThanksHi Marvin
There is no option for this.
on the 4510 the only options under the interface are
speed nonegotiate or no speed nonegotiate (for auto)
Similarly on the ASR no negotiation auto or negotiation auto. setting each device to auto/manual or manual/auto has no effect on the ASR port - its still down
Cheers -
ASR 1006 - SIP proxy function available?
Hi there,
I can't find a clear answer to this question.
Can a ASR 1006 act as a SIP proxy? I've many SIP clients at near end, a big SIP server at far end and an ASR 1006 in the middle. Currently we have a SIP adjacency for each SIP client, passing it to SIP server. But this is poorly manageable as the number of clients increases. Can I set somehow the ASR just to work as SIP proxy?
Thanks in advance,
FabioThis is not a new issue - can be seen here
388 -> 688 -> 6150 -> 6310 -> 6310i+1100+ E70-1(3.0633.09.04/crippled VoIP) -
I have an ASR 1006 that has been acting up ever since an ISSU from IOS-XE 3.7 to 3.11
Logs:
Apr 14 23:14:49.792: %CMRP-3-CHASSIS_MONITOR_READY_TIME_EXCEEDED: R1/0: cmand:
Reloading F1 because it has failed to become ready for packet processing
Apr 14 23:14:50.222: %IOSXE_OIR-6-OFFLINECARD: Card (fp) offline in slot F1
Apr 14 23:15:43.125: %IOSXE_OIR-6-ONLINECARD: Card (fp) online in slot F1
Apr 14 23:16:11.423: %CPPHA-7-START: F1: cpp_ha:
CPP 0 preparing image /tmp/sw/fp/1/0/fp/mount/usr/cpp/bin/qfp-ucode-esp10
Apr 14 23:16:12.579: %CPPHA-7-START: F1: cpp_ha:
CPP 0 startup init image /tmp/sw/fp/1/0/fp/mount/usr/cpp/bin/qfp-ucode-esp10
Apr 14 23:16:21.457: %CPPHA-7-START: F1: cpp_ha:
CPP 0 running init image /tmp/sw/fp/1/0/fp/mount/usr/cpp/bin/qfp-ucode-esp10
Apr 14 23:16:22.064: %CPPHA-7-READY: F1: cpp_ha:
CPP 0 loading and initialization complete
Apr 14 23:16:23.194: %IOSXE-6-PLATFORM: F1:
cpp_cp: Process CPP_PFILTER_EA_EVENT__API_CALL__REGISTER
Show Platform:
R0 ASR1000-RP1 ok, standby 1w1d
R1 ASR1000-RP1 ok, active 1w1d
F0 ASR1000-ESP20 ok, active 1w1d
F1 ASR1000-ESP20 init, standby 1w1d
P0 ASR1006-PWR-DC ok 1w1d
P1 ASR1006-PWR-DC ok 1w1d
Slot CPLD Version Firmware Version
0 09111601 12.2(33r)XNC
1 07091401 12.2(33r)XNC
R0 07062111 12.2(33r)XNC
R1 07062111 12.2(33r)XNC
F0 08041102 12.2(33r)XNC
F1 08041102 12.2(33r)XNC
This matches a bug but from a different platform and software revision.
CSCuf79397
Symptom: F1 is stuck in init state after the standby RSP reloads.
Conditions: This issue occurs on a reload or OIR of the standby RSP.
Workaround: Reload the standby RSP again.
We have done as this recommends, but it has made no difference.
Furthermore, EVCs are failing to process on this platform in its current state as well.
Thoughts?Hi Evan,
oh sorry, this is the forum for XR and those platforms. ASR1000 is better addressed in the respective forum for best answers.
But I checked a few things. the DDTS you highlight is still applicable, because it is in what we call platform independent code. This means that this change would benefit any platform running this SW. So there is a cahnce that you have the right match there.
I also verified the release you have vs the integration date of the ddts which is june/2013. The build time of your release is well before that I believe.
Any case for best continued follow up I would recommend you create a TAC case so that respective team can give you the final authorative answer.
regards
xander -
I can't use Aux port for ASR 1006, becouse i can't find it in configuration.
Version: asr1000rp2-advipservicesk9.03.07.05.S.152-4.S5.bin"
router#sho line ?
<0-16> First Line range
async-queue Show async-queue
console Primary terminal line
summary Quick line status summary
vty Virtual terminal
| Output modifiers
<cr>
router#sho line
Tty Typ Tx/Rx A Modem Roty AccO AccI Uses Noise Overruns Int
0 CTY - - - - - 0 0 0/0 -
* 1 VTY - - - - 1 4 0 0/0 -
* 2 VTY - - - - 1 16 0 0/0 -
* 3 VTY - - - - 1 2 0 0/0 -
4 VTY - - - - 1 3 0 0/0 -
Can you help me whith my problem?Hi,
I see you are using initiator unclassified ip-address. How exactly are you trying to trigger the session here? What type of traffic are you sending from your CPE? Please make sure you send a packet which 'crosses' the ISG box. A packet with destination the ISG will not trigger a session. Only a packet that needs to be forwarded by the ISG will. If you are not seeing anything with those debugs, it seems like no FSOL is seen to spawn the session.
Also, if your subscriber is connected with L2 network, why do you configure "ip subscriber routed"? This is conceptually wrong since you are telling to ISG that the subscriber is connecting via a L3 routed network which is not correct according to what you say.
Regards -
STM1 Back-to-Back Between ASR 9006 and ASR 903
Dear Gents,
Seeking your usual support to aid me to connect STM1 Back-to-Back between ASR 9006 and ASR 903.
I have ASR 9006 comes with SPA-4XOC3-POS-V2 and SFP-OC3-MM using XR-A9K-PXK9-04.03 IOS-XR.
Also I have ASR 903 comes with A900-IMA4OS interface module with ONS-SI-155-SR-MM SFP using SASR903R1NPEK9-38S IOS-XE.
I'm using Multi Mode fiber cable between them and the interfaces never came UP UP.
Below the configuration i did to both sides.
ASR 903 configuration:
ASR903#sh run | sec contro
controller SONET 0/0/0
framing sdh
clock source internal
aug mapping au-4
au-4 1 pos
interfaces POS0/0/0.1
ip address 10.10.10.2 255.255.255.252
ASR 9006 configuration
ASR9006#sh running-config controller soNET 0/1/0/0
controller SONET0/1/0/0
framing sdh
clock source internal
interface POS0/1/0/0
ipv4 address 10.10.10.1 255.255.255.252
Thanks in advance.I think your 900 is running in an oc12/stm4 mode (as you seem to subrate the sonet controller), so they have a speed mismatch already although it looks like you're using the right STM1 optic.
also one side you will want to have use clock from line while the other internal, otherwise you'll get a lot of clock slips.
cheers
xander -
Dears,
i have cisco asr router 1006 and i need to check the license cube license.
i tried show license but it doesnt accept the command.
Please advise how to check the cube license and its ersial number.
BR,
HaythamHave you tried...
show facility-alarm status
to identify what the critical alarm is and then fix.
You may be able to also use
clear facility-alarm
However, most likely it could be some issue such as failed power supply, etc that will not clear. -
Extending vlan 301 through ASR 1006 (extending the broadcast domain)
Good evening everyone. My brain hurts trying to figure this out. I'm used to Layer 3 switches so this is different.
According to the documentation, this should be allowed using EVC and Bridge Domains. But there is one disclaimer in the documentation... if you've configured a channel-group on a physical ports, you can't have port-channels (or something like that).
I have configured multiple port-channels (for port redundancy), each port-channel having multiple sub-interfaces (for vlan creation on this beast). Each sub-interface has an ip address. Now it has come to my attention that there are two vlans that need to be extended from a remote office (via port-channel 3) to our Core (via port-channel 1). I want to be clear, I am trying to get this router to simply forward layer 2 traffic from port-channel 1 to port-channel 3. I tried the following:
example: vlans 300 and 301 need to be extended.
create additional sub-interfaces like this,...
int port-channel 1.300
encapsulation dot1q 300
int port-channel 1.301
encapsulation dot1q 301
int port-channel 3.300
encap dot1q 300
int port-channel 3.301
encap dot1q 3.301
But that didn't work. I tried evc and bdi but it's confusing as heck. Anyone got any ideas? Is this possible? Can you point me to a resource that can make it crystal clear for me?Thank you Reza. I was worried about that.
So I have an opportunity to re-configure this entire beast because of this. If I need to make this work, is the ASR the wrong choice or am I just going about it wrong?
I've read that if I had two ASRs I could implement OTV. Does that make sense?
http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/wan_otv/configuration/xe-3s/wan-otv-xe-3s-book/wan-otv-confg.html#GUID-DCB20ADF-1F8E-434B-AE97-54802879F34F -
How to enable SPA-5X1GE-V2 modules on ASR 1006
hi
I am facing some issue to activate
SPA-5X1GE-V2 modules on ASR 1006Could you tell us the 'show inventory', 'show platform' & 'show facility-alarm status' output please.
To my recollection once you plug it in you should be able to see it.
SQP-ASR1002-01#show inventory
NAME: "Chassis", DESCR: "Cisco ASR1006 Chassis"
PID: ASR1006 , VID: V05, SN: xxxxxxxxxx
NAME: "module 0", DESCR: "Cisco ASR1006 SPA Interface Processor 10"
PID: ASR1002-SIP10 , VID: , SN:
Are there any log messages that you see when plugging this module in?
Have you tried
Router(config)# hw-module subslot slot-number start
http://www.cisco.com/en/US/docs/interfaces_modules/shared_port_adapters/install_upgrade/ASR1000/ASRmin.html -
ASR 1006 with IOS 3.13.1S, NetFlow commands not working
Hi,
We have Cisco ASR1006 router with IOS asr1000rp1-advipservicesk9.03.13.01.S.154-3.S1-ext.bin, we have recently upgrade IOS from asr1000rp1-advipservicesk9.02.03.02.122-33.XNC2.bin.
After upgrading the IOS ip flow ingress and ip flow egress command is not working.
Please suggest on configuring NetFlow commands on this.
Regards
MACAlso try this link, found if you follow the URL above, and I have made some notes about configuring inbound and outbound flow monitoring :-
http://docwiki.cisco.com/wiki/Migrating_from_Traditional_to_Flexible_NetFlow#Flexible_NetFlow_Migration_in_Practice
That article was referred in these release notes but don’t follow the link in the release notes, use the link above as it seems to have moved;
http://www.cisco.com/c/en/us/td/docs/routers/asr1000/release/notes/asr1k_rn_rel_notes/asr1k_feats_important_notes_313s.html#pgfId-3455900
The syntax I have used is almost the same, except that I don’t think you can quite have the 2 options they mention in the last line;
flow exporter FlowExporter1
destination 192.168.9.101
transport udp 9996
export-protocol netflow-v5
source FastEthernet 0/1
flow monitor FlowMonitor1
record netflow ipv4 original-input
exporter FlowExporter1
cache timeout active 1
cache timeout inactive 15
interface FastEthernet 0/1
ip flow monitor FlowMonitor1 [input|output] <<< with the netflow record above only input is ok
According to the command reference I looked at when you use the ipv4 ‘netflow’ flow record with ‘original-input’, it can only monitor inbound packets and vice-versa for ‘original-output’, therefore I think you need the pair of settings as we have done.
[see here http://www.cisco.com/c/en/us/td/docs/ios/fnetflow/configuration/guide/12_2sr/fnf_12_2_sr_book/get_start_cfg_fnflow.html#wp1059480 ]
flow monitor FlowMonitor1
record netflow ipv4 original-input
flow monitor FlowMonitor2
record netflow ipv4 original-output
interface FastEthernet 0/1
ip flow monitor FlowMonitor1 input
ip flow monitor FlowMonitor2 output
Rgds
Ian -
ASR 1006, are the SIP and SPA cards Hot-swappable?
I can find references that the SPA cards should be hot-swappable in the form of documents stating you should shut down traffic before removing, but I can not find any clear reference that states that the SPA and the corresponding SIP modules can be pulled while the chassis is on.
Both modular SIPs and SPAs are hot-swappable in ASR1K:
http://www.cisco.com/c/en/us/td/docs/interfaces_modules/shared_port_adapters/install_upgrade/ASR1000/asr_sip_spa_hw/ASRmin.html#73220
http://www.cisco.com/c/en/us/td/docs/interfaces_modules/shared_port_adapters/install_upgrade/ASR1000/asr_sip_spa_hw/ASRsin.html#pgfId-1060193
(Text in the second link begins with "Cisco 7600 series router SIPs and SPAs", but that's a typo, the book is about ASR1K (the statement isn't wrong though - SIPs and SPAs are hot-swappable in the 7600 series as well))
Maybe you are looking for
-
Mini dvi to video adapter help pleaseeeeeeeeeeeeeeeeeeeeeeeeee
right, ive got a 20" intel imac. i bought a mini dvi to video adapter.it said it works with the intel macs. i maybe being a bit thick here but the end of the dvi seems to be a different size to the port on the mac. please help....................
-
Error when connecting to database in windows2000 professionnel
i have a database in unix and another database in windows 2000 professionnel when i want to connect using sqlplus to database in windows 2000 professionel from database in unix the message error will appear memory fault(coredump)
-
I have one hosted Database Server on which using SQL 2008 Web Edition now We want to change to SQL Standard edition # Server Config Dual Socket Server populated with 2 8 Core Processor # we use this Database server for our ecommerce Website .
-
Can't get transitions and text in 16:9
Hi all you helpful! I've edited a project shot in 16:9 and all video looks perfect. However as soon as I try to impose a title, a transition or text iMovie changes the aspect ratio to 4:3 for that particular clip. The same happens when I use still ph
-
How to change the language in iBooks back to English
How do I change back to the English language in iBooks?