MAc address 0000.0000.0080
Has any one seen this:
2549009: Nov 21 03:26:59.310 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549015: Nov 21 03:42:03.536 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549018: Nov 21 03:50:58.894 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 302: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549020: Nov 21 04:00:40.298 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549022: Nov 21 04:03:10.011 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 254: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549024: Nov 21 04:48:00.609 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 56: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549028: Nov 21 05:35:37.949 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 254: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549030: Nov 21 06:03:22.173 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 56: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549033: Nov 21 06:49:11.174 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 301: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549036: Nov 21 07:03:39.286 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 340: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549042: Nov 21 07:51:24.704 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 340: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549049: Nov 21 08:26:59.979 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 330: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549053: Nov 21 08:34:32.180 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 340: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549056: Nov 21 08:38:53.740 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549069: Nov 21 09:19:37.811 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 254: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549081: Nov 21 10:06:18.762 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549086: Nov 21 10:38:55.559 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549088: Nov 21 11:00:02.806 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549099: Nov 21 11:43:22.277 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 340: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549101: Nov 21 11:46:43.689 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549104: Nov 21 11:50:52.590 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 350: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549106: Nov 21 12:05:22.439 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 302: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549108: Nov 21 12:46:25.336 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 301: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549110: Nov 21 12:47:12.656 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549116: Nov 21 13:08:33.962 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549120: Nov 21 14:05:46.457 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 320: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549125: Nov 21 14:27:59.722 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 340: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549135: Nov 21 15:07:31.530 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 302: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
2549143: Nov 21 17:17:18.229 GMT: %SPANTREE-5-ROOTCHANGE: Root Changed for vlan 302: New Root Port is GigabitEthernet0/2. New Root Mac Address is 0000.0000.0080
Seem like only the Root mac is changing and not the root bridge.
Hi ,
Seems you are getting superior BPDU from Gi0/2 . mac address 0000.0000.0080 below is Xerox corporation .
Do you have xeror switches in your network . Trace the mac and check if you have really a xeror switch and that suppose to be a root bridge. If not then decrease the xeror switch priority .
http://www.coffer.com/mac_find/?string=0000.0000.0080
If its not a switch then check why its generating a bpdu . If it is not require then shutdown the box or change the priority .
HTH
Regards,
VS.Suresh.
*Plz rate the usefull posts.
Similar Messages
-
HSRP - Duplicate address on Vlan, sourced by mac-address
Hi ,
Network structure
Switch A --- Customer firewall 1
|
Switch B --- Customer firewall2
May be some one can help me.
There was a nagious alert yesterday and on investigation I found the 'Duplicate address x.x.x.x(VIP) on Vlanxxx, sourced by 0006.b19c.c5d9' error
It a HA feed from our switches which is going to customer firewalls.
On further investigation I have found on our switch A the ARP table is not learning the VIP address from this mac-address where as on switch B is learning the VIP address through mac 0006.b10c.c8d9 which is customer sonic firewall which is not a normal behaviour.
Our switches are Cisco 3560 switch.
Please if you could let me know what causing this.Hi mcgowan,
Yes, there is duplicate MAC. But, its duplicate between interface vlan address and virtual MAC address on HSRP.
when I type command :
show mac address | i 0000.0c07.ac01
It shows me :
100 0000.0c07.ac01 STATIC CPU
I think this MAC generate by system on HSRP. Currently I shutdown interface vlan 100 on switch A, like as your suggestion. But the impact is my client will get trouble when switch B is down, because HSRP is not running well.
Regards,
Rakhmad -
ARP detstination mac-address 0000.0000.0000
Internet Router--->3550 Switch-->Nortel Contivity
63.169.164.134-->63.169.164.140--> 63.169.140.136
All the devices are having public IP addresses and are in Vlan 100.
Sometimes the Internet Router is not able to ping or connect to the Contivity where as the switch is able to access both the devices (Internet Rtr & Contivity).
While checking on the switch & Internet rtr i capture the following logs.
Switch#sh log
Mar 25 11:17:17.990 EDT: IP ARP: creating incomplete entry for IP address: 63.169.164.136 interface Vlan100
Mar 25 11:17:17.990 EDT: IP ARP: sent req src 63.169.164.140 0012.800b.a780,dst 63.169.164.136 0000.0000.0000 Vlan100
Internet RTR#sh log
Mar 25 11:17:17 EDT: IP ARP: rcvd req src 63.169.164.140 0012.800b.a780, dst 63.169.164.136 GigabitEthernet0/1
Mar 25 11:20:54 EDT: IP ARP: rcvd req src 63.169.164.138 0018.b964.66fc, dst 63.169.164.145 GigabitEthernet0/1
We have done a static ARPA entry in internet rtr for Contivity but still the issue remains same. The moment the issue persists again i tried to clear the arp on switch but it didn't make router to get reply from Contivity when i did the same clear arp-cache on internet rtr, it started getting communicate with Contivity.
I am not able to find the solution of this issue and the reason for that, now every time i have to do clear ip arp-cache on rtr whenever the issue comes down.
Also i want to understand the situation when a dest mac-address can be 0000.0000.0000.
Any help on this will be appreciated.
Thanks.Bhupesh
If a router receives a packet to forward to a destination address which is on a local LAN but the destination IP address does not appear in the arp table then the router creates an incomplete entry in the ARP table (it is incomplete because the router does not have the destination MAC address and is attempting to learn it). The router creates the incomplete entry in the ARP table and sends an ARP request. If the router receives an ARP response then it puts the destination MAC address into the ARP table and the entry is now complete. If no ARP response is received the router will purge the incomplete entry. Note that the router can not forward the IP packet that caused the incomplete entry and the router will drop that IP packet.
In considering the problem with contivity I had been assuming that the problem was on rtr. But it occurs to me that it is quite possible (and even likely given the fact that you mention which is that in the problem the switch can still ping contivity ) that the problem is on contivity. I wonder if for some reason contivity gets an incorrect MAC for rtr? I suspect that clear arp on rtr fixes the problem because as it clears the arp table I believe that rtr will send a gratuitous arp which refreshes the ARP entry in contivity. In the time of the problem can you check the table in contivity?
HTH
Rick -
Hi All
I did not type the following command. Why does it appear when I show run ? Which command can cause the issue? Thank you
mac-address-table static 0000.0c07.ac01 interface FastEthernet1/0 vlan 3Hello,
It looks as if you have HSRP configured. Mac address 0000.0c07.ac01 is the HSRP virtual mac address. 01 at the end of the mac represents the HSRP group number.
Hope this helps,
Please rate helpful answers.
Thanks. -
Mac-auth-bypass fails MAC: 0000.0000.0000
I have an old JetDirect that doesn't support 802.1x. I have enabled MAB on the port where it connects, but for some reason MAB fails. I enabled dot1x debug and will paste the output in a few here. I know my dot1x config is good.. i have clients authenticating via RADIUS to my ACS server. I also have another port using MAB, not a JetDirect though, both ports are configured identically. From the debugs, it seems that the switch can't glean the mac of the JetDirect. Any ideas? This is a 3750 with 12.2(44)SE2. I've tried to shut/no shut the interface, reset the JetDirect, nothing seems to work. I see no requests on my ACS server for this device's MAC address.
aaa authentication dot1x default group radius
aaa authorization network default group radius
radius-server host 192.168.x.x auth-port 1645 acct-port 1646
interface FastEthernet2/0/31
description A002 White
switchport access vlan 112
switchport mode access
switchport voice vlan 800
switchport port-security maximum 3
switchport port-security
switchport port-security aging time 2
switchport port-security violation restrict
switchport port-security aging type inactivity
srr-queue bandwidth share 10 10 60 20
srr-queue bandwidth shape 10 0 0 0
mls qos trust device cisco-phone
mls qos trust cos
auto qos voip cisco-phone
dot1x mac-auth-bypass eap
dot1x pae authenticator
dot1x port-control auto
dot1x host-mode multi-domain
dot1x violation-mode restrict
dot1x timeout tx-period 2
dot1x timeout supp-timeout 10
spanning-tree portfast
spanning-tree bpduguard enable
012729: May 5 14:51:31.672: dot1x-packet:dot1x_txReq: EAPOL packet sent out for the default authenticator
012730: May 5 14:51:32.586: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthernet2/0/31, changed state to up
012731: May 5 14:51:33.727: dot1x-packet:Received an EAP request packet from EAP for mac 0000.0000.0000
012732: May 5 14:51:33.727: dot1x-sm:Posting EAP_REQ on Client=4219220
012733: May 5 14:51:33.727: dot1x_auth_bend Fa2/0/31: during state auth_bend_request, got event 7(eapReq)
012734: May 5 14:51:33.727: @@@ dot1x_auth_bend Fa2/0/31: auth_bend_request ->auth_bend_request
012735: May 5 14:51:33.727: dot1x-sm:Fa2/0/31:0000.0000.0000:auth_bend_request_ request_action called
012736: May 5 14:51:33.727: dot1x-sm:Fa2/0/31:0000.0000.0000:auth_bend_request_ enter called
012737: May 5 14:51:33.727: dot1x-packet:dot1x_mgr_send_eapol :EAP code: 0x1 id: 0x2 length: 0x0005 type: 0x1 data:
012738: May 5 14:51:33.727: dot1x-ev:FastEthernet2/0/31:Sending EAPOL packet to group PAE address
012739: May 5 14:51:33.727: dot1x-ev:dot1x_mgr_pre_process_eapol_pak: Role determination not required on FastEthernet2/0/31.
012740: May 5 14:51:33.727: dot1x-registry:registry:dot1x_ether_macaddr called
012741: May 5 14:51:33.727: dot1x-ev:dot1x_mgr_send_eapol: Sending out EAPOL packet on FastEthernet2/0/31
012742: May 5 14:51:33.727: EAPOL pak dump Tx
012743: May 5 14:51:33.727: EAPOL Version: 0x2 type: 0x0 length: 0x0005
012744: May 5 14:51:33.727: EAP code: 0x1 id: 0x2 length: 0x0005 type: 0x1
012745: May 5 14:51:33.727: dot1x-packet:dot1x_txReq: EAPOL packet sent out for the default authenticator
012746: May 5 14:51:35.791: dot1x-ev:Received an EAP Timeout on FastEthernet2/0/31 for mac 0000.0000.0000
012747: May 5 14:51:35.791: dot1x-sm:Posting EAP_TIMEOUT on Client=4219220
012748: May 5 14:51:35.791: dot1x_auth_bend Fa2/0/31: during state auth_bend_request, got event 12(eapTimeout)
012749: May 5 14:51:35.791: @@@ dot1x_auth_bend Fa2/0/31: auth_bend_request ->auth_bend_timeout
012750: May 5 14:51:35.791: dot1x-sm:Fa2/0/31:0000.0000.0000:auth_bend_timeout_enter called
012751: May 5 14:51:35.791: dot1x-sm:Fa2/0/31:0000.0000.0000:auth_bend_request_timeout_action called
012752: May 5 14:51:35.791: dot1x_auth_bend Fa2/0/31: idle during state auth_bend_timeout
012753: May 5 14:51:35.791: @@@ dot1x_auth_bend Fa2/0/31: auth_bend_timeout ->auth_bend_idle
012754: May 5 14:51:35.791: dot1x-sm:Fa2/0/31:0000.0000.0000:auth_bend_idle_enter called
012755: May 5 14:51:35.791: dot1x-sm:Posting AUTH_TIMEOUT on Client=4219220
012756: May 5 14:51:35.791: dot1x_auth Fa2/0/31: during state auth_authenticating, got event 15(authTimeout)
012757: May 5 14:51:35.791: @@@ dot1x_auth Fa2/0/31: auth_authenticating -> auth_fallback
012758: May 5 14:51:35.791: dot1x-sm:Fa2/0/31:0000.0000.0000:auth_authenticating_exit called
012759: May 5 14:51:35.791: dot1x-sm:Fa2/0/31:0000.0000.0000:auth_fallback_ente r called
012760: May 5 14:51:35.791: dot1x_auth_mab : initial state mab_initialize has enter
012761: May 5 14:51:35.791: dot1x_auth_mab : during state mab_initialize, got event 2(mabStart)
012762: May 5 14:51:35.791: @@@ dot1x_auth_mab : mab_initialize -> mab_acquiring
012763: May 5 14:53:08.831: dot1x_auth_mab : during state mab_acquiring, got event 3(mabResult) (ignored)
HQ_1stFlr_3750#sh dot1x int fa2/0/31 det
Dot1x Info for FastEthernet2/0/31
PAE = AUTHENTICATOR
PortControl = AUTO
ControlDirection = Both
HostMode = MULTI_DOMAIN
Violation Mode = RESTRICT
ReAuthentication = Disabled
QuietPeriod = 60
ServerTimeout = 30
SuppTimeout = 10
ReAuthPeriod = 3600 (Locally configured)
ReAuthMax = 2
MaxReq = 2
TxPeriod = 2
RateLimitPeriod = 0
Mac-Auth-Bypass = Enabled (EAP)
Inactivity Timeout = None
Dot1x Authenticator Client List Empty
Port Status = UNAUTHORIZEDIs this jetdirect card using DHCP to get an IP address ? If not then the Jetdirect will not generate any outbound traffic for the switch to auhenticate. To test this use the front panel of the printer to send out a ping packet and see if that triggers the MAB.
-
How do i change my wan mac address 1841
Hi ,
I need to change my mac address / clone another on my network for my internet to work and have been googling but no answers ?
Any idea`s anyone ?
thank you ..ok...
As this forum seems to be full of cisco proffesionals its a bit sad that they do not have the time to answer questions that seem to be beneath them .. trivial to them but important to us that do not know.
So i have the answer and will post it for those who need to know it should they have a similar problem...
en > conf t> int XX > mac-address 0000.0000.0000
xx being the interface you need to change it on
> being enter
0000 being your mac in groups of 4 separated with a stop.
Hope this helps you.
thanks -
Cisco Aiornet 1042 with MAC address
Hi,
I have a Cisco Aiornet, model AIR-AP1042N-E-K9.
I need to configure the AP to only certain MAC access.
I'm doing the configuration through the console.
The wireless network is not showing up in devices, anyone know why?
version 15.2
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
hostname ap_disi
logging rate-limit console 9
enable secret 5 xxxxx.
aaa new-model
aaa group server radius rad_eap
aaa group server radius rad_mac
aaa group server radius rad_acct
aaa group server radius rad_admin
aaa group server tacacs+ tac_admin
aaa group server radius rad_pmip
aaa group server radius dummy
aaa authentication login default local
aaa authentication login eap_methods group rad_eap
aaa authentication login mac_methods local
aaa authorization exec default local
aaa accounting network acct_methods start-stop group rad_acct
aaa session-id common
no ip routing
no ip cef
dot11 syslog
dot11 ssid DISI-WLAN24
authentication open
dot11 ssid DISIWIFI
authentication open mac-address mac_methods
authentication key-management wpa version 2
infrastructure-ssid
dot11 guest
username Cisco password 7 xxxx
username Admin privilege 15 password 7 xxxx
bridge irb
interface Dot11Radio0
no ip address
no ip route-cache
encryption mode ciphers aes-ccm
ssid DISI-WLAN24
ssid DISIWIFI
antenna gain 0
speed basic-1.0 2.0 5.5 11.0 6.0 9.0 12.0 18.0 24.0 36.0 48.0 54.0 m0. m1. m2. m3. m4. m5. m6. m7. m8. m9. m10. m11. m12. m13. m14. m15.
station-role root
l2-filter bridge-group-acl
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 spanning-disabled
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
interface Dot11Radio1
description AP SITAS
no ip address
no ip route-cache
encryption mode ciphers aes-ccm
ssid DISIWIFI
antenna gain 0
peakdetect
no dfs band block
speed basic-6.0 9.0 12.0 18.0 24.0 36.0 48.0 54.0 m0. m1. m2. m3. m4. m5. m6. m7. m8. m9. m10. m11. m12. m13. m14. m15.
channel dfs
station-role root
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 spanning-disabled
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
interface GigabitEthernet0
no ip address
no ip route-cache
duplex auto
speed auto
l2-filter bridge-group-acl
no keepalive
bridge-group 1
bridge-group 1 spanning-disabled
no bridge-group 1 source-learning
interface BVI1
ip address 192.168.0.252 255.255.254.0
no ip route-cache
ipv6 address dhcp
ipv6 address autoconfig
ipv6 enable
ip default-gateway 192.168.1.254
ip forward-protocol nd
ip http server
ip http authentication aaa
no ip http secure-server
ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
ip radius source-interface BVI1
access-list 700 permit 8830.8a24.7eb5 0000.0000.0000
access-list 700 deny 0000.0000.0000 ffff.ffff.ffff
snmp-server view dot11view ieee802dot11 included
snmp-server community public view dot11view RO
snmp-server location DISI
snmp-server contact SITAS
snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart
snmp-server enable traps tty
snmp-server enable traps entity
snmp-server enable traps disassociate
snmp-server enable traps deauthenticate
snmp-server enable traps authenticate-fail
snmp-server enable traps dot11-qos
snmp-server enable traps switch-over
snmp-server enable traps rogue-ap
snmp-server enable traps wlan-wep
snmp-server enable traps config-copy
snmp-server enable traps config
snmp-server enable traps syslog
snmp-server enable traps cpu threshold
snmp-server enable traps aaa_server
snmp-server host 192.168.1.6 public
radius-server attribute 32 include-in-access-req format %h
radius-server vsa send accounting
bridge 1 route ip
line con 0
line vty 0 4
transport input all
sntp server 192.168.1.215
sntp broadcast client
endPlease refer: http://www.cisco.com/c/en/us/td/docs/wireless/access_point/12-4-25d-JA/Configuration/guide/cg_12_4_25d_JA/scg12-4-25d-JA-chap16-filters.html#wp1034897
-
WPA with local MAC address authentication
Can Cisco Aironet AP support WPA encryptions with local MAC address authentications as the current setup i have do not have a radius server to authenticate my users.
i tried configuring with local MAC address but no success.Try this:
conf t
access-list 700 deny xxxx.xxxx.xxxx 0000.0000.0000
access-list 700 deny xxxx.xxxx.xxxx 0000.0000.0000
access-list 700 permit 0000.0000.0000 ffff.ffff.ffff
dot11 association mac-list 700
Replace the xxxx.xxxx.xxxx with each host you want to allow on the AP. This will block any other MACs from accessing the AP. This is not by SSID, this is by AP, so let me know if this will work for you. -
Hi...
Whenever I telnet to the switch that my PC is connected to and type sho arp I get all the IP addresses of PCs connected to the switch while the hardware address is the same for all of them.
How can I get the mac addresses of the PCs connected to the ports?
ThanksYou should be getting the correct hardware address if the PCs are directly connected to the switch.
If you are connecting a group of PCs that pass through a router, then the single MAC that you are seeing is the MAC of the router interface connecting to the 2950.
To get the real MACs of the PCs, you'd need to look at the ARP table of the router.
Here's a sh arp from my switch:
Smack_2950#sho arp
Protocol Address Age (min) Hardware Addr Type Interface
Internet 172.16.1.254 190 000a.4144.d4bd ARPA Vlan1
Internet 172.16.1.198 3 0004.75db.07b9 ARPA Vlan1
Internet 172.16.1.57 74 00d0.5836.f441 ARPA Vlan1
Internet 172.16.1.29 - 0009.b74a.9580 ARPA Vlan1
Internet 172.16.1.127 81 0013.6042.8a8d ARPA Vlan1
Internet 172.16.1.77 0 0002.b349.c8c8 ARPA Vlan1
Smack_2950#
You might also try a sh mac-address-table, it'll give you MAC and switch-port that the MAC is connected to.
Here's an example:
Smack_2950#show mac-address-table
Mac Address Table
Vlan Mac Address Type Ports
All 0009.b74a.9580 STATIC CPU
All 0100.0ccc.cccc STATIC CPU
All 0100.0ccc.cccd STATIC CPU
All 0100.0cdd.dddd STATIC CPU
1 0002.b349.c8c8 DYNAMIC Fa0/24
1 0002.b349.c965 DYNAMIC Gi0/1
1 0004.75db.07b9 DYNAMIC Fa0/23
1 000a.4144.d4bd DYNAMIC Fa0/18
1 000d.613b.28e5 DYNAMIC Gi0/1
1 000e.a62d.abf1 DYNAMIC Gi0/1
1 000f.f73a.bc4d DYNAMIC Fa0/19
1 0010.7be7.a772 DYNAMIC Fa0/21
1 0011.240d.960f DYNAMIC Fa0/19
1 0013.6042.8a8d DYNAMIC Fa0/20
1 0030.4821.e689 DYNAMIC Fa0/24
1 00d0.5836.f441 DYNAMIC Fa0/22
56 0001.5c22.9982 DYNAMIC Fa0/12
56 000a.4144.d4bc DYNAMIC Fa0/13
100 0000.0c4a.5eca DYNAMIC Fa0/1
100 00c0.7b4c.9325 DYNAMIC Fa0/2
200 0000.0c5d.b3ee DYNAMIC Fa0/3
400 0010.7b80.2ecd DYNAMIC Fa0/8
300 0000.0c5c.f28c DYNAMIC Fa0/7
Total Mac Addresses for this criterion: 23
Smack_2950#
Check it out and let us know what you find.
FWIW
Scott -
3850 stack member has no mac address.
I have a strange issue where a member in my 3850 stack has no mac address. This occurred after at duplicate address was discovered on the management interface. We have reboot the switch but no luck. still the same. see below:
BTRBRGBB1535A_Stack1#sho sw de
Switch/Stack Mac Address : 5ca4.8a0c.2d80 - Local Mac Address
Mac persistency wait time: Indefinite
H/W Current
Switch# Role Mac Address Priority Version State
*1 Active 5ca4.8a0c.2d80 1 V02 Ready
2 Member 0000.0000.0000 0 0 Provisioned
Stack Port Status Neighbors
Switch# Port 1 Port 2 Port 1 Port 2
1 DOWN DOWN None None
Any help would be appriciated.2 Member 0000.0000.0000 0 0 Provisioned
It's not "strange". It's a normal behaviour because the 2nd stack member hasn't joined the stack yet. It could be the that the 2nd stack member isn't powered up or it's not cabled properly. -
Static MAC address without configuration
Hello,
i am a german guy, so please excuse my bad english.
I have a question about static MAC addresses on a WS-C3750G-48TS Switch.
I have no static adresses configured on my switch, but see some when execute the "show mac address-table static" command. And i mean not the 0000.0c07.ac01 addresse for HSRP, Spanning-tree or something else, which are forwarded to the CPU, i mean entries like this:
Switch#show MAC address-table interface g2/0/47
Mac Address Table
Vlan Mac Address Type Ports
3 1212.1212.1212 STATIC Gi2/0/47
3 1414.1414.1414 STATIC Gi2/0/47
Total Mac Addresses for this criterion: 2
This entries not configured or dynamicly learned.
I suspected functions like gratitious-arp, but this is only for IP<->MAC translation. Then i have searched functions like gratitious-mac or mac-notification. I have searched for a function with tells the switchport: "Hey, that is my MAC address. There is no need to learn this address dynamicly", but with no luck.
Does anybody can tell me, why these MAC addresses are shown static, and not dynamicly?
Thanks for help.
ThomasHi Thomas,
Are there any port-security related configurations in interface Gi2/0/47? Could you post the running-configuration of this interface in concern, output of show mac-address-table interface Gi2/0/47 and also could you let me know what is connected to this interface?
Thanks,
Arun -
Hi,
What are mac address cpu entries?
Vlan Mac Address Type Ports
All 0100.0ccc.cccc STATIC CPU
All 0100.0ccc.cccd STATIC CPU
All 0180.c200.0000 STATIC CPU
All 0180.c200.0001 STATIC CPU
All 0180.c200.0002 STATIC CPU
All 0180.c200.0003 STATIC CPU
All 0180.c200.0004 STATIC CPU
All 0180.c200.0005 STATIC CPU
All 0180.c200.0006 STATIC CPU
All 0180.c200.0007 STATIC CPU
All 0180.c200.0008 STATIC CPU
All 0180.c200.0009 STATIC CPU
All 0180.c200.000a STATIC CPU
All 0180.c200.000b STATIC CPU
All 0180.c200.000c STATIC CPU
All 0180.c200.000d STATIC CPU
All 0180.c200.000e STATIC CPU
All 0180.c200.000f STATIC CPU
All 0180.c200.0010 STATIC CPU
All ffff.ffff.ffff STATIC CPU
also, what is last entry for? all ff's
thanks,
vishThey are just local MAC addresses belonging to the switch.
The last entry is the broadcast MAC address.
Perfectly normal. -
Fe80.0000.0000 flapping
Hi ,
I received many fe80.0000.0000 flapping on the switch. I can not find the mac fe80.0000.0000. Is it a normal mac address? How to resolve this problem?
Dec 10 08:25:42: %SW_MATM-4-MACFLAP_NOTIF: Host fe80.0000.0000 in vlan 223 is flapping between port Fa0/47 and port
Fa0/48
BR/
SamuelHello Sam,
Generally , we see this kind of mac flap if STP is not stable in the network or server connected on two ports and teaming is not working properly . But i checked this mac address and this seems not a valid mac address .
So it could be some kind of attacks . Please check what is connected on fa0/47 and port
Fa0/48 and verify the mac address of connected device . If connected device address matched then check the teaming configuration otherwise its a kind of attack . If require disconnect the host from the network ,.
HTH
Regards,
VS.Suresh.
*Plz rate the usefull posts * -
I have a single remote device attached to a 1700 sereis router. I need to ensure that if anyone disconnects the device, they can't easily plug anything elses in to the router and hence wanted to use a mac-adddress access list.
I have created an access list as follows:
access-list 700 permit xxxx.xxxx.xxxx 0000.0000.0000, but there appears to be no way to add this to the Fa0 interface on the router.
Can anyone confirm if this is possible on a router or does this only work on a switch?No, its the Ethernet local LAN interface of a routed link so no bridging going on.
Config below:
interface FastEthernet0
description Mufulira Post Office Post Office LAN
ip address xxx.xxx.xxx.xxx 255.255.255.248
ip access-group 120 in
no ip redirects
no ip unreachables
no ip proxy-arp
no ip mroute-cache
speed auto
full-duplex
no cdp enable
IP access lst 120 defines just a single host allowed in to a group of servers.
I'm having to tie everything down as much as possible as its for a remote ATM on the end of a Wireless backhaul link and our Risk people are trying to insist that we use mac address security as well. I am already running a GRE tunnel and IPSec 3DES over the routed portion of the link. -
[SOLVED] Lost MAC address on network card
It seems that my wired ethernet card has lost its MAC address. Some information/output:
# lspci|grep Ethernet
02:00.0 Ethernet controller: Marvell Technology Group Ltd. 88E8055 PCI-E Gigabit Ethernet Controller
The card uses the sky2 kernel module
# dmesg|grep sky2
sky2 0000:02:00.0: PCI INT A -> GSI 16 (level, low) -> IRQ 16
sky2 0000:02:00.0: setting latency timer to 64
sky2 0000:02:00.0: v1.22 addr 0xf7dfc000 irq 16 Yukon-2 EC Ultra rev 2
sky2 eth0: addr 00:00:00:00:00:00
Adding a line
#ifconfig eth0 hw ether <random-address-here>
to the startup-scripts makes it possible to use the nic, but it seems like a very temporary solution.
I don't know what can have caused this. Maybe the winter cold here in Norway erased some part of the nic's ROM?
- Does anybody have any idea how I can remedy this?
- Do I have to send the laptop in for repair to get it restored?
Last edited by kapelrud (2008-12-05 16:35:54)iBertus wrote:I suppose a driver bug could have corrupted the ROM on the network card. Do you have a Windows install that you can boot into to see if the card is working correctly with those drivers?
Using "ipconfig /all" on windows showed the same zeroed mac address, so I guess the problem isn't (wasn't) linux-specific.
I left the pc in my locker at school last night and when I started it up again this morning the mac had mysteriously returned! Maybe the university leprechaun was bored yesterday.
So I guess the problem is solved, for now... Thanks anyway!
Maybe you are looking for
-
Fields not in Order ..?
When I display data on the DSO or Cube the fields are not in order as compared to once in extract checker - datasource. Why so? On what does the sequence depend? It makes Reconcilation really tough.
-
Can't access tty; job control turned off
I have 1 HDD, 2 partitions, both are NTFS, on the first is installed windows 7 X64, and now Im trying to install Arch on the second partition. Just downloaded the Core install i686, created bootable usb with unetbootin in windows, and when I want to
-
Dear All Please let me know what are the registers will update from sales side in Factory sales & Export sales What is TR6 Challan and give me the Brief over view of it , Is it related to SD. Thanks supriya Edited by: Supriya K on Sep 17, 2008 12:27
-
Using Solution Database (IS01) in SolMan without TREX
Hi all, I just wanted to use the solution database within SolMan, which comes with the standard CRM functionality (IS01). Unfortunately I always receive dumps when creating (SAPSQL_ARRAY_INSERT_DUPREC) and searching (OBJECTS_OBJREF_NOT_ASSIGNED_NO) f
-
@@ServerName returns wrong value in SQL SERVER 2008
One of my production server configured as Mirror server. When i run @@ServerName query on Principal server i got right server name. but when i execute same query on mirror server it returns Principal server name. I have windows server 2008. I don't k