WCCP version 2 on Catalyst 4507 w/SupII+
Hello,
I am try to do a lab with WAAS but I have a switch Catalyst 4507 with Supervisor II+.
When I am doing the configuration, I can´t use the "ip wccp redirect exclude in" on the vlan where reside the WAAS.
The show version is:
MBO-SW-01#
MBO-SW-01#
MBO-SW-01#sh ver
Cisco IOS Software, Catalyst 4500 L3 Switch Software (cat4500-IPBASEK9-M), Version 12.2(53)SG1, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2009 by Cisco Systems, Inc.
Compiled Fri 30-Oct-09 14:39 by prod_rel_team
Image text-base: 0x10000000, data-base: 0x11D20300
ROM: 12.2(31r)SGA1
Dagobah Revision 226, Swamp Revision 34
MBO-SW-01 uptime is 4 weeks, 6 days, 22 hours, 14 minutes
Uptime for this control processor is 4 weeks, 6 days, 22 hours, 15 minutes
System returned to ROM by power-on
System restarted at 16:57:06 CCS Mon May 10 2010
System image file is "bootflash:/cat4500-ipbasek9-mz.122-53.SG1.bin"
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html you require further assistance please contact us by sending email to
[email protected]. WS-C4507R (MPC8245) processor (revision 10) with 262144K bytes of memory.
Processor board ID FOX1151GHMY
MPC8245 CPU at 266Mhz, Supervisor II+
Last reset from PowerUp
7 Virtual Ethernet interfaces
48 FastEthernet interfaces
26 Gigabit Ethernet interfaces
511K bytes of non-volatile configuration memory.
If
cisco
Configuration register is 0x102
MBO-SW-01#
MBO-SW-01#
MBO-SW-01#
MBO-SW-01#sh mod
Chassis Type : WS-C4507R
Power consumed by backplane : 40 Watts
Mod Ports Card Type Model Serial No.
---+-----+--------------------------------------+------------------+-----------
1 2 Supervisor II+ 1000BaseX (GBIC) WS-X4013+ JAE12035A3E
3 24 10/100BaseTX (RJ45)V, Cisco/IEEE WS-X4224-RJ45V JAE1038BPFF
4 24 10/100BaseTX (RJ45)V, Cisco/IEEE WS-X4224-RJ45V JAE1041D5JM
5 24 10/100/1000BaseT (RJ45)V, Cisco/IEEE WS-X4524-GB-RJ45V JAE11517SDQ
M MAC addresses Hw Fw Sw Status
--+--------------------------------+---+------------+----------------+---------
1 001f.9e15.32c0 to 001f.9e15.32c1 4.5 12.2(31r)SGA 12.2(53)SG1 Ok
3 0016.4617.b1b8 to 0016.4617.b1cf 2.3 Ok
4 0018.18b5.85e8 to 0018.18b5.85ff 2.3 Ok
5 0017.0ec4.6350 to 0017.0ec4.6367 2.3 Ok
Mod Redundancy role Operating mode Redundancy status
----+-------------------+-------------------+----------------------------------
1 Active Supervisor SSO Active
MBO-SW-01#
MBO-SW-01#sh ip wccp
Global WCCP information:
Router information:
Router Identifier: 192.168.166.1
Protocol Version: 2.0
Service Identifier: 61
Number of Service Group Clients: 0
Number of Service Group Routers: 0
Total Packets s/w Redirected: 0
Process: 0
CEF: 0
Redirect access-list: -none-
Total Packets Denied Redirect: 0
Total Packets Unassigned: 0
Group access-list: -none-
Total Messages Denied to Group: 0
Total Authentication failures: 0
Total Bypassed Packets Received: 0
Service Identifier: 62
Number of Service Group Clients: 0
Number of Service Group Routers: 0
Total Packets s/w Redirected: 0
Process: 0
CEF: 0
Redirect access-list: -none-
Total Packets Denied Redirect: 0
Total Packets Unassigned: 0
Group access-list: -none-
Total Messages Denied to Group: 0
Total Authentication failures: 0
Total Bypassed Packets Received: 0
MBO-SW-01#
MBO-SW-01#
MBO-SW-01#
MBO-SW-01#sh ip wccp in
MBO-SW-01#sh ip wccp interfaces
WCCP interface configuration:
FastEthernet3/5
Output services: 0
Input services: 1
Mcast services: 0
Exclude In: FALSE
MBO-SW-01#
Who can I do, to get this work????
Thank a lot
Hi Zach,
Thanks for your answer, but I don´t have clearly the scenario of your answer.
I´m attaching the Logical Topology; and the configuration is this:
Configration of the Edge Site:
MBO-RT-03#
MBO-RT-03#sh run
Building configuration...
Current configuration : 10757 bytes
version 12.4
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime localtime
service timestamps log datetime localtime
service password-encryption
service sequence-numbers
hostname MBO-RT-03
boot-start-marker
boot-end-marker
ip wccp 61
ip wccp 62
ip cef
interface FastEthernet0/0
description TRONCAL LAN
no ip address
duplex auto
speed auto
interface FastEthernet0/0.202
description *** Vlan for Connection with WAE / Edge ***
encapsulation dot1Q 202
ip address 10.201.201.1 255.255.255.248
ip wccp redirect exclude in
interface FastEthernet0/0.210
description *** Vlan for Users ***
encapsulation dot1Q 210
ip address 192.168.166.129 255.255.255.128
ip wccp 61 redirect in
interface FastEthernet0/1
description *** WAN LINK - EMULATION ***
bandwidth 128
ip address 10.100.100.2 255.255.255.252
ip wccp 62 redirect in
ip nbar protocol-discovery
ip flow ingress
load-interval 30
duplex auto
speed auto
traffic-shape rate 128000 128000 128000 1000
router eigrp 1600
passive-interface default
no passive-interface FastEthernet0/1
network 10.100.100.2 0.0.0.0
network 10.201.201.1 0.0.0.0
network 192.168.166.128 0.0.0.127
no auto-summary
control-plane
line con 0
privilege level 15
password 7 121A150402181B00787B7578
login authentication userauthen
line aux 0
line vty 0 4
session-timeout 5
privilege level 15
password 7 121A150402181B00787B7578
login authentication userauthen
scheduler allocate 20000 1000
end
MBO-RT-03#
MBO-RT-03#
MBO-RT-03#
MBO-RT-03#sh ip wccp
Global WCCP information:
Router information:
Router Identifier: 192.168.166.129
Protocol Version: 2.0
Service Identifier: 61
Number of Service Group Clients: 1
Number of Service Group Routers: 1
Total Packets s/w Redirected: 39212
Process: 0
CEF: 39212
Service mode: Open
Service Access-list: -none-
Total Packets Dropped Closed: 0
Redirect Access-list: -none-
Total Packets Denied Redirect: 0
Total Packets Unassigned: 0
Group Access-list: -none-
Total Messages Denied to Group: 0
Total Authentication failures: 0
Total Bypassed Packets Received: 0
Service Identifier: 62
Number of Service Group Clients: 1
Number of Service Group Routers: 1
Total Packets s/w Redirected: 38171
Process: 0
CEF: 38171
Service mode: Open
Service Access-list: -none-
Total Packets Dropped Closed: 0
Redirect Access-list: -none-
Total Packets Denied Redirect: 0
Total Packets Unassigned: 0
Group Access-list: -none-
Total Messages Denied to Group: 0
Total Authentication failures: 0
Total Bypassed Packets Received: 0
MBO-RT-03#
MBO-RT-03#
MBO-RT-03#
MBO-RT-03#sh ip wccp inter
WCCP interface configuration:
FastEthernet0/1
Output services: 0
Input services: 1
Mcast services: 0
Exclude In: FALSE
FastEthernet0/0.210
Output services: 0
Input services: 1
Mcast services: 0
Exclude In: FALSE
FastEthernet0/0.202
Output services: 0
Input services: 0
Mcast services: 0
Exclude In: TRUE
MBO-RT-03#
MBO-RT-03#
MBO-RT-03#sh ver
Cisco IOS Software, 2801 Software (C2801-ADVENTERPRISEK9-M), Version 12.4(24)T2, RELEASE SOFTWARE (fc2)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2009 by Cisco Systems, Inc.
Compiled Mon 19-Oct-09 18:21 by prod_rel_team
ROM: System Bootstrap, Version 12.3(8r)T8, RELEASE SOFTWARE (fc1)
MBO-RT-03 uptime is 4 hours, 55 minutes
System returned to ROM by reload at 11:39:53 CCS Wed Jun 16 2010
System image file is "flash:c2801-adventerprisek9-mz.124-24.T2.bin"
This product contains cryptographic features and is subject to United
States and local country laws governing import, export, transfer and
use. Delivery of Cisco cryptographic products does not imply
third-party authority to import, export, distribute or use encryption.
Importers, exporters, distributors and users are responsible for
compliance with U.S. and local country laws. By using this product you
agree to comply with applicable laws and regulations. If you are unable
to comply with U.S. and local laws, return this product immediately.
A summary of U.S. laws governing Cisco cryptographic products may be found at:
http://www.cisco.com/wwl/export/crypto/tool/stqrg.html you require further assistance please contact us by sending email to
[email protected]. 2801 (revision 5.0) with 240640K/21504K bytes of memory.
Processor board ID FTX0926W2NP
2 FastEthernet interfaces
1 Serial(sync/async) interface
1 Virtual Private Network (VPN) Module
2 Voice FXO interfaces
3 DSPs, 40 Voice resources
DRAM configuration is 64 bits wide with parity disabled.
191K bytes of NVRAM.
62720K bytes of ATA CompactFlash (Read/Write)
If
Cisco
Configuration register is 0x2102
MBO-RT-03#
And the Core Site has a 4507R with this configuration:
MBO-SW-01#sh run
Building configuration...
Current configuration : 33778 bytes
! Last configuration change at 16:54:12 CCS Wed Jun 16 2010 by dsalazar
! NVRAM config last updated at 16:05:21 CCS Wed Jun 16 2010 by dsalazar
version 12.2
service nagle
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime localtime
service timestamps log datetime localtime
service password-encryption
service compress-config
service udp-small-servers
service tcp-small-servers
service sequence-numbers
hostname MBO-SW-01
boot-start-marker
boot system flash bootflash:/cat4500-ipbasek9-mz.122-53.SG1.bin
boot-end-marker
logging buffered 1024000
logging console critical
enable secret 5 $1$vzCG$bkRWJO0nJuUvYq5mmU8G00
username cps privilege 15 password 7 011016174B18110B731C1F59
username CNAC_User privilege 0 password 7 096F602829040401595C557A
aaa new-model
aaa authentication login default local-case group radius enable
aaa authentication dot1x default group radius
aaa authorization network default group radius
qos
qos aggregate-policer Prueba 128000 bps 1000 byte conform-action transmit exceed-action drop
ip subnet-zero
ip wccp 61
ip wccp 62
policy-map QoS_Prueba
class class-default
police aggregate Prueba
interface FastEthernet3/5
description *** WAN LINK - Emulation ***
no switchport
bandwidth 128
ip address 10.100.100.1 255.255.255.252
ip wccp 62 redirect in
load-interval 30
service-policy output QoS_Prueba
interface Vlan2
description *** Vlan of Server ***
ip address 192.168.162.1 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
ip wccp 61 redirect in
interface Vlan910
description *** Vlan for WAE / Core and Mgmt ***
ip address 10.200.200.1 255.255.255.248
router eigrp 1600
passive-interface default
no passive-interface Vlan1
no passive-interface Vlan710
no passive-interface FastEthernet3/5
no auto-summary
eigrp stub connected summary
eigrp event-logging
network 10.0.2.1 0.0.0.0
network 10.100.100.1 0.0.0.0
network 172.16.0.1 0.0.0.0
MBO-SW-01#
MBO-SW-01#sh ip wccp
Global WCCP information:
Router information:
Router Identifier: 192.168.166.1
Protocol Version: 2.0
Service Identifier: 61
Number of Service Group Clients: 0
Number of Service Group Routers: 0
Total Packets s/w Redirected: 0
Process: 0
CEF: 0
Redirect access-list: -none-
Total Packets Denied Redirect: 0
Total Packets Unassigned: 0
Group access-list: -none-
Total Messages Denied to Group: 0
Total Authentication failures: 0
Total Bypassed Packets Received: 0
Service Identifier: 62
Number of Service Group Clients: 0
Number of Service Group Routers: 0
Total Packets s/w Redirected: 0
Process: 0
CEF: 0
Redirect access-list: -none-
Total Packets Denied Redirect: 0
Total Packets Unassigned: 0
Group access-list: -none-
Total Messages Denied to Group: 0
Total Authentication failures: 0
Total Bypassed Packets Received: 0
MBO-SW-01#
MBO-SW-01#sh ip wccp in
MBO-SW-01#sh ip wccp interfaces
WCCP interface configuration:
FastEthernet3/5
Output services: 0
Input services: 1
Mcast services: 0
Exclude In: FALSE
Vlan2
Output services: 0
Input services: 1
Mcast services: 0
Exclude In: FALSE
MBO-SW-01#
As you can see on the Catalyst 4507R the following stats are 0
Number of Service Group Clients: 0
Number of Service Group Routers: 0
for the services 61 and 62.
In the Router that start reflect a diferent value.
I can appreciate a technical information about how can I configure WCCP for the comunication between the Catalyst 4507 with Sup II+ with the WAE 474.
I probed with other router instead the catalyst 4507 and the configuration and communication were succesfully; that was for verify posible error of configuration on WAEs; but the final objetive is to use the catalyst 4507R.
Thank for your assistance.
Similar Messages
-
Do your versions of catalyst support video?
Hi,
I am really new to Catalyst but I have spent hours on tutorials and I think I am getting the hang of it. The problem I am having is that I cannot seem to add any video to my work. When I go to the Prerelease help page, there is a section on video that says you call up the file menu then scroll down to the "import" tab then "video/sounds". That feature does not exist on my version of Catalyst. It may be just that I am a noob and don't know what exactly to do or maybe it's that I got a "funny" version. Help?
Thank You
Collin Davies.I'm glad you enjoyed the videos. I hope to create some more after customers get their hands on beta II.
The beta release date isn't public yet, so I am sorry I can't share that. I am very excited to see what customers think of all the new features and polish our team has added to Catalyst since beta I. Stay tuned...
Definitely experiement with Illustrator and Photoshop with Catalyst. Catalyst supports round trip editing of artwork and components to Illustrator. And although direct round trip editing to Photoshop isnt' supported, customers have been able to edit from Catalyst to Illustrator first, and then launch and edit parts of the Illustrator file in Photoshop.
Ty -
[SOLVED] Different versions of catalyst-utils
I updated the system today and wasn't able to boot intoo X. After all the reason for that was that I had installed a newer version of catalyst-utils that doesn't support my video-card. There is community/catalyst-utils 12.8-0.3 and catalyst-hd234k/catalyst-utils 12.6-1. I can only use the later.
Still when I run a system update pacman want's to update to the community package. How can I prevent?
Last edited by miro279 (2012-10-05 05:35:38)I don't want to skip any further updates. I'm using a repository for older ati cards, eg catalyst-hd234k, the community repository is for the newer cards.. Problem is that both packages have the same name and the community one has the newer version. I'd need a way to somewho blacklist the community version.
I don't know how this was handled before, mayb the version numbers where the same? Community version was updated today which seems to have caused the problem.. -
Catalyst 4507 Sup V-10GE problem
Hello,
We have two Catalyst 4507 connected to two sites at the same city throught a black fiber. We use the Gigabit Ethernet ports on the Sup V-10GE to connect the fiber via Cisco CWDM.
It is the second time that the superviser enginge V-10GE is frozen; L1 and L2 are correct on the switch, the link is well connected. but the switch does not response to IP requests like ping and ssh (L3 does not work). We should reboot the switch to resolve the problem.
Why did it happen? Is it a bug of the Sup V-10GE?
Thank you.
Jessie DongWhen the problem is present do you have console connection? how is the proc cpu? Have you check the STP when the issue is there? Is chaging the uplink port to antoher port regain connectivity to the switch? Wihtout much more info, there no way to tell whether you are running into a bug or not.
-
Cryptographic IOS versions on Catalyst Switches
1. Where can one find the differences between Catalyst switch IOS with cryptographic features and without cryptographic features?
2. In order to access Cat switches over SSH and HTTPS, do we require Cryptographic versions of the Cat IOS?
3. What does "k9" stands for in IOS names? e.g. "3560-ipservicesk9"
ThanksHi
Answer to Q1 :
Best plase to compare the Catos and IOS is
www.cisco.com/go/fn
there you can search by ios names or platforms or features and compare images.
Answer to Q2 :
Yes you need Cryptographic version
Answer to Q3 :
K9 stand for Cryptographic version if you have ipservicesk9 you can do SSH in the feature navigator if you search the ios without K9 you will find this :
IP SERVICES W/O Crypto
that means this catos does not support Cryptographic.
Best Regards Bahman Mozaffari.
Please Rate if Helpful. -
Last version Cisco Catalyst 2960-24PC-L Switch (bugs study)
Hi team,
I need know, what´s the last IOS version to Cisco Catalyst 2960-24PC-L Switch and understand the bug study about these versions?
How make a bug study?
If you have any information, please let me know.
Regards,
Yerko.Latest release as of January 14th is 15.0.2-SE5 (Release Nov 6, 2013)
There aren't any public utilities in the Cisco website that provides you with a bug study.
We have a bug tracker https://tools.cisco.com/bugsearch/?referring_site=popular but it will be extremely time consuming to identify each bugs and if you are affected.
If you are a Cisco Advanced customer with optimization services in your contract, this deliverable can be done for you at no cost. -
i have redundant 4507 and 4503 connected by 2 gigabit in the main bulding and 4 other bukding contains 4503 , i want to make vlans "around 8 vlans" for my campus. how can i start making this vlans and which protocol i use.
and how can i use vtp in this design.
all catalyst connected to the main 4507 and 4503 by fiber optic.Hi
Assuming that you want your links from your other switches to be Layer 2.
1) You need to make the links between your other switches and your two core switches trunk links.
2) You need to make the 4507 & the 4503 switches vtp servers. You will need to setup a vtp domain name (and optionally a password)
3) Make your other switches are setup as vtp clients using the same vtp domain name. To be absolutely sure you don't mess up the network firstly put your other switches back into VTP transparent mode. Then make them vtp clients.
4) Create your vlans on one of the vtp server switches. You should then see these get propogated to the other switches.
5) Set spanning-tree root for the vlans to be one of your core 4500 switches and spanning-tree secondary to be the other switch.
6) Create Layer 3 SVI's on the 4507 & 4503 and run HSRP between them. ie. if you have created a vlan 10 and the subnet range is 192.168.1.0/24 your SVI config would look like:
4507 switch
interface vlan 10
ip address 192.168.1.2
standby 10 ip 192.168.1.1
standby 10 prio 110
standby 10 auth "add a string here"
standby 10 preempt
4503 switch
interface vlan 10
ip address 192.168.1.3
standby 10 ip 192.168.1.1
standby 10 prio 100
standby 10 auth "add a string here"
Do this for all the vlans. Do a no shut on the interfaces.
6) If all your layer 3 interfaces are on the 4507 & 4503 then you don't need to run a dynamic routing protocol. If you do want to run one i suggest EIGRP as it is easy to configure and fast to converge but as i say you don't really need one in your setup.
I have attached a link to the 4500 config guide for IOS. Your IOS may differ but most of it is pretty much the same.
HTH
Jon -
Hi
I have a stack of 3750s with IP Services and 2 WAAS appliances connected to the stack. I am running wccp in the stack and redirecting traffic to the WAAS appliances using a redirect acl. I read in the command guide for the 3750 that ONLY permit entries are supported. I have a appox 20 vlans and there are local traffic flowing between some of them.
My questions is if I can`t use deny entries in the redirect acl in the switch, how can I stop the local traffic between the vlans getting redirected unnecessarly. The local traffic will be redirected to the WAAS appliance and then just go bypass and go back to the switch stack or does WCCP handle this in someway so only the first packets for each session gets redirected?
BR
CJ EkmanHey CJ,
Option 1: another option you might consider is intercepting closer to the WAN edge, if that's an available option for you.
Again, like Patrick mentioned it depends on your network / IP design but if you intercept closer to the WAN edge you should be able to avoid engineering a redirect ACL altogether.
Option 2: depending on the 3750 platform and code upgrade options, some of the latest 3750 IOS versions include support for deny entries for WCCP redirect ACLs. Check out these release notes (look at the very last bullet point in this list):
http://www.cisco.com/en/US/docs/switches/lan/catalyst3750x_3560x/software/release/12.2_58_se/release/notes/OL24338.html#wp1009434
Hope this helps!
-Chet -
I have a Catalyst 4507R as a core switch.
The Data center has more than 40 servers, but I need two of these 40 servers communicate only among themselves and with the remaining company networks.
Can you help me?
RegardsDisclaimer
The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.
Liability Disclaimer
In no event shall Author be liable for any damages whatsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.
Posting
So the two special servers need to NOT communicate with just the other 38 servers? If so, place in different subnet/VLAN from other servers and use ACL(s).
Or, if your equipment supports, place the two special servers within a PVLAN community separate from your other servers. -
Dear all,
i have an Catalyst WS-C4507R-E with the following module:
---+-----+--------------------------------------+------------------+-----------
1 18 1000BaseX (GBIC) WS-X4418 JAE0531010T
2 18 10GE (X2), 1000BaseX (SFP) WS-X4606-X2-E JAE173302S4
3 4 Sup 7-E 10GE (SFP+), 1000BaseX (SFP) WS-X45-SUP7-E CAT1740L0A3
5 24 10/100/1000BaseT (RJ45) WS-X4424-GB-RJ45 JAB0546053T
but the 10 GE module work fine but have the following log:
Feb 23 03:51:25.676: %SFF8472-5-THRESHOLD_VIOLATION: Te2/3: Rx power low alarm; Operating value: -40.0 dBm, Threshold value: -13.9 dBm.
The transciver is Cisco, changed the cable but the problem is always same.
what's the problem?
Thanks alot for cooperation.
AngeloDisclaimer
The Author of this posting offers the information contained within this posting without consideration and with the reader's understanding that there's no implied or expressed suitability or fitness for any purpose. Information provided is for informational purposes only and should not be construed as rendering professional advice of any kind. Usage of this posting's information is solely at reader's own risk.
Liability Disclaimer
In no event shall Author be liable for any damages whatsoever (including, without limitation, damages for loss of use, data or profit) arising out of the use or inability to use the posting's information even if Author has been advised of the possibility of such damage.
Posting
You're just using the the patch cord between devices?
If so, with 10g SR, and any 50/125, I agree, I wouldn't expect that to be the issue. -
Information from Catalyst 4507 by SNMP
Hello community!
I need to get access to egp and host catalogs by snmp. I have the following switch's configuration:
snmp-server community public RO
snmp-server community privete RW
Can you help me why doesn't it work?What version of IOS are you running?
Exterior Gateway Protocol (EGP) is BGP predecessor. I doubt that anybody is still running it.
The support for EGP has been removed from IOS, at the same time as IGRP, in the 12.2T train. Therefore support for EGP is not available in 12.3 and up.
If you're still using a old OS, we can find details on what exactly you want to manage in EGP.
If you mean BGP, you can configure the device for BGP traps and BGP related data, you can configure BGP traps or poll using CISCO-BGP4-MIB.
-Thanks
Vinod -
Packets Dropped In Hardware By CPU Subport on Catalyst 4507
CHAN4507#sh platform cpu pac stat
Packets Dropped In Hardware By CPU Subport (txQueueNotAvail)
CPU Subport TxQueue 0 TxQueue 1 TxQueue 2 TxQueue 3
0 0 0 0 71498709
3 105952 0 0 0
Packets Dropped In Processing Overall
Total 5 sec avg 1 min avg 5 min avg 1 hour avg
3914397 0 0 0 0
Packets Dropped In Processing by CPU event
Event Total 5 sec avg 1 min avg 5 min avg 1 hour avg
Input Acl 338853 0 0 0 0
SA Miss 13 0 0 0 0
Packets Dropped In Processing by Priority
Priority Total 5 sec avg 1 min avg 5 min avg 1 hour avg
Normal 3913388 0 0 0 0
Medium 21642 0 0 0 0
High 996 0 0 0 0
Crucial 3553902 0 0 0 0
Packets Dropped In Processing by Reason
Reason Total 5 sec avg 1 min avg 5 min avg 1 hour avg
SrcAddrTableFilt 2 0 0 0 0
L2DstDrop 15 0 0 0 0
AclActionDrop 338853 0 0 0 0
NoFloodPorts 3575527 0 0 0 0
Total packet queues 16
Packets Received by Packet Queue
Queue Total 5 sec avg 1 min avg 5 min avg 1 hour avg
Esmp 3264762238 132 133 132 132
Control 58750153 1 1 1 1
Host Learning 2278841 0 0 0 0
L3 Fwd Low 12359420458 2263 2016 1155 719
L2 Fwd Highest 2 0 0 0 0
L2 Fwd High/Medium 107 0 0 0 0
L2 Fwd Low 71680133 2 3 2 2
L3 Rx Highest/High/Med 26231554 1 1 1 1
L3 Rx Low 19491956 0 1 1 0
RPF Failure 23 0 0 0 0
ACL fwd(snooping) 4041317 0 0 0 0
ACL log, unreach 120354109 15 13 12 11
Packets Dropped by Packet Queue
Queue Total 5 sec avg 1 min avg 5 min avg 1 hour avg
L2 Fwd Low 732 0 0 0 0
Can anyone answer my following questions?
1. What goes into TxQueue 3?
2. Can we identify any specific ports particularly affected by these drops?
3. Is there some way to rearrange ports on the chassis to reduce drops?check out the following link :
http://www.cisco.com/en/US/products/hw/switches/ps663/products_tech_note09186a00804cef15.shtml
hope this helps -
Cisco Catalyst 4503 + WAAS with WCCP
Hello community!
Do I need to intercept traffic with WCCP on a Cisco Catalyst 4503! Does anyone have a sample configuration for this scenario?
I tried several settings, but without success.
I have this alarm in Cisco WAAS:
WCCP router 10.10.10.10 unusable for service id: 62 reason: Assignment method mismatch with router
Thank's
David ThimottiWCCP router 10.10.10.10 unusable for service id: 62 reason: Assignment method mismatch with router
That indicates your WAAS device is sending an assignment method (probably HASH) that is not supported by this 4500.
In the 4500 scenario WAAS must be L2 adjacent, and configured for L2-redirect and MASK assignment, and L2-return (if your version of WAAS supports it).
http://www.cisco.com/en/US/partner/docs/switches/lan/catalyst4500/12.2/15.02SG/configuration/guide/wccp.html#wp1000978
I'm not sure what version of WAAS you are running.
If running WAAS 5.x your config will look like this (since the defaults are l2-redirct, mask, and l2 return).
wccp router-list 1 10.10.10.10
wccp tcp-promiscuous service-pair 61 62
router-list-num 1
enable
exit
http://www.cisco.com/en/US/docs/app_ntwk_services/waas/waas/v531/command/reference/glob_cfg.html#wp2067854
If running WAAS 4.x your config will look like this:
wccp version 2
wccp router-list 1 10.10.10.10
wccp tcp-promiscuous service-pair 61 62 failure-detection 30
wccp tcp-promiscuous service-pair 61 62 router-list-num 1
wccp tcp-promiscuous service-pari 61 62 l2-redirect mask-assign l2-return
http://www.cisco.com/en/US/docs/app_ntwk_services/waas/waas/v441/command/reference/glob_cfg.html#wp2067854 -
Where can I find 'old' version of ATI catalyst 8.11
I think I'm not the only person who can't use the current version of catalyst with arch64 (2.6.28 kernel).
It starts first time but on repeat starting it gives black screen and I can only reboot by log in with ssh.
The previous vesion of catalyst worked.
I tried to install 8.11 from the ATI page without success. The beta version 9.1 installs but server doesn't start (error, no screen found).
To my knowlege, the vesa driver can't be used with dual head setting, so an old catalyst version is my last hope. I couln't find a arch server which still hols the old package. Can anyone help me here ?.
Many thanks
frHi I was not able to rebuild PKGBUILD for 8.11 (i'm just a user). However here my intrem (hopefully ) silution:
First I start fluxbox via startx.
After exit X I have to
rm .Xauthority
sudo cp /etc/ati/amdpcsdb.default /etc/ati/amdpcsdb
With those steps I can restart X
I don't know what the steps do and I do not know if this can be automated (running whenever X is closed down).
Maybe someone can help here and knows why this method works ?
O'm on arch x86_64, kernel 2.6.28 with a HIS radeon 4650 card -
Hello
We're setting up an scenario with datacenter with three WAEs using WCCP to distribute the load.
The core switches are catalyst 6500 so we're using redirect in. L2 redirection and mask to optimize forwarding of redirected packet.
the problem is that the three WAEs are not equal. Two are 612-2GB and the other is a 7341, so we want to use the weight parameter of the wccp tcp-promiscuous command, but I'm not sure if this parameter works also with the mask mode or only with hash mode. And couldn' t find a definitive answer in the documentation.
It's possible?
Regards, FernandoFernando,
Typically we don't see/ nor recommend using such different devices, especially in the data center. The 7341 can handle up to 12000 concurrent optimized connections, and the 612-2GB can only handle up 4800 concurrent optimized connections. So, in the event of a 7341 failure you will lose more than half of the connection capacity you data center can handle.
However, you can use the weight keyword with mask assignment. I just confirmed in my lab two WAEs connected to a 6500 with the following config:
WAE 14.110.3.19
wccp router-list 1 14.110.3.17
wccp tcp-promiscuous mask src-ip-mask 0xf dst-ip-mask 0x0
wccp tcp-promiscuous router-list-num 1 weight 90 l2-redirect mask-assign
wccp version 2
WAE 14.110.3.20
wccp router-list 1 14.110.3.17
wccp tcp-promiscuous mask src-ip-mask 0xf dst-ip-mask 0x0
wccp tcp-promiscuous router-list-num 1 weight 10 l2-redirect mask-assign
wccp version 2
6500 output:
pdi-6500#sh ip wccp 61 det
WCCP Cache-Engine information:
Web Cache ID: 14.110.3.20
Protocol Version: 2.0
State: Usable
Redirection: L2
Packet Return: GRE
Packets Redirected: 0
Connect Time: 00:00:45
Assignment: MASK
Mask SrcAddr DstAddr SrcPort DstPort
0000: 0x0000000F 0x00000000 0x0000 0x0000
Value SrcAddr DstAddr SrcPort DstPort CE-IP
0014: 0x0000000E 0x00000000 0x0000 0x0000 0x0E6E0314 (14.110.3.20)
0015: 0x0000000F 0x00000000 0x0000 0x0000 0x0E6E0314 (14.110.3.20)
Web Cache ID: 14.110.3.19
Protocol Version: 2.0
State: Usable
Redirection: L2
Packet Return: GRE
Packets Redirected: 68
Connect Time: 00:00:39
Assignment: MASK
Mask SrcAddr DstAddr SrcPort DstPort
0000: 0x0000000F 0x00000000 0x0000 0x0000
Value SrcAddr DstAddr SrcPort DstPort CE-IP
0000: 0x00000000 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0001: 0x00000001 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0002: 0x00000002 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0003: 0x00000003 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0004: 0x00000004 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0005: 0x00000005 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0006: 0x00000006 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0007: 0x00000007 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0008: 0x00000008 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0009: 0x00000009 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0010: 0x0000000A 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0011: 0x0000000B 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0012: 0x0000000C 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
0013: 0x0000000D 0x00000000 0x0000 0x0000 0x0E6E0313 (14.110.3.19)
So you will see the WAE with weight of 90 took 14 of the 16 available buckets.
Sorry for the confusion on the original update.
Regards,
Mike Korenbaum
Cisco WAAS PDI Help Desk
http://www.cisco.com/go/pdihelpdesk
Maybe you are looking for
-
hi, recently i bought macbook pro with retina display and installed windows 8 professional original software also. but in windows 8 track pad/ TOUCHPAD is not working properly. can you help me with providing drivers for trackpad to work on windows 8
-
PSE 8 will not install on my iMac
I've been trying to install PSE 8 on my iMac for the last 8 hours and I've searched and read until my mind feels foggy... I just installed Snow Leopard OS X 10.6.2 and then tried to install PSE 8. After I insert the installation disk I get a PSE 8 d
-
How to invoke AM method that accepts parameter other than string
Hi I need to pass 2 date parameters to my AM method. I checked the jdev doc and found the below method that can be used for any of the parameter other than String public Serializable invokeMethod(String methodName, Serializable[] methodParams, Class[
-
O-R Relations in Sun J2EE SERVER/OC4j
The O-R Mappings in Sun J2EE SERVER using Deployer Tool Not working ... I badly need help....
-
Tool availability for Archival Solution similar to ILM Assistant?
Can you suggest some other tool or facility which will give ILM Assistant like features? We want to archive data on date basis. ILM Assistant does not provide archiving solution. Is there any other tool available for the same? Regards, Archana.