Cisco Switching/Routing :: 10Ge Between Catalysts 6500
Nov 18, 2012
I am in front of a choice what to select to deploy 10Ge in my datacenter to get four 6504e and two 3750x units connected to each other.All devices are located in 3-7 meters away from each other.The choice is whether to go for a multimode fiber and 10GBASE-SR X2 Modules OR cat7 UTP and 10GBASE-T X2 pluggable transceiver.Money wise it doesn't matter.Fiber looks less attractive since it's fragile and a bit harder to put in underfloor area.Cat7 is more attractive but there are 2 points:
1) I couldn't find ANY single photo of a 10GBASE-T (a module with a single RJ45 port). How does it look? Does it come with a cable or...??
What does RP drops entail? We are experiencing 0.23 % drops on an vlan int on one of our 6500. This interface is an L3 to a server-subnet. Doing a sh int vlan 238 switching shows 30935411 RP (Route Processing) drops.It was a bit unclear to me in the thread "Input queue drops on 6500 vlan interface" if RP drops was through the router, or to the router(mgmnt)?I can do a netdr to see what traffic goes to it. It should not generate CPU load, but I think I will wait until after hours before I try that command.
- do NETDR: -- debug netdr cap rx vlan 238 -- show netdr cap
Cisco Catalyst 6509 with Sup720-10GE IOS 12.2(33)SHX7. There are around 30 L3 vlans configured on the switch. I'm only interested for the traffic on one L3 vlan which is the connection to wan cloud.
I wanna see only the traffic that goes to and come from the wan. On other Catalyst where I have routed interfaces i successfully configured netflow. I read a lot in the forums and documentations but i didn't find the right one.
We had to transport one of our 4948 10 GE to another Data Centre and when we got it there and tried to power up its System Status LED was red and we cannot even get console to the device.
We can try to see if the switch is completely dead and needs replacing or is there something we can do to get it back up and running again?
I have a two Cisco 4510R each with two sup V-10GE redundant. The code on these sup modules are 12.2(31r)SG3. I need some assistance in getting this setup worked out. I have all four of the 10GE populated with appropriate optics. I setup a link from one 4510R to the other using these interfaces. From the documentation I found I had to use Tengi1/1 and Tengi2/2 as the redundant pair. I plugged the up link into these ports. The Tengi1/1 (active supervisor) links up and works fine. But when I look at the ports port Tengi2/2 it isn't showing link or active. Now port 2/1 (nothing plugged into it) is showing as active.
Now is the redundancy supposed to be 1/1 and 2/1? If so, the switch is in production, when I move the connection over from 2/2 to 2/1 will it cause a outage? The reason for this is I now have a system with a 10G port and would like to utilize one of the other 10G ports. Is that possible? Or does it have to be a lag/redundant up link to work (say to another switch)?
We have a scenario with 2 chassis, both with 2 supervisor Engine 2T, we try to make a configuration of VSS with the chassis and would link to know if is possible have 2 supervisor on chassis one and 2 supervisors on chassis 2 with VSS?
Router#sho switch virtual redundancy My Switch Id = 1 Peer Switch Id = 2 Last switchover reason = active unit removed Configured Redundancy Mode = sso Operating Redundancy Mode = sso
[code]....
would like to use the second supervisors for obteind the local redundancy en chassis 1 and 2, this is possible?
the actually version on four supervisors is: s2t54-ipservicesk9-mz.SPA.150-1.SY3.bin
I am trying to configure a 6509 as the passive receiver from a Dell Force10 10Ge switch with 2 sfp to 2 gig ports on our 6509 switch, I see LACP is up on both sides but cannot pass traffic, I have only 2 vlans that will carry across the aggregate link from our vmware boxes, this is just a temp until I get a 10ge in our 6509 chassis.
I am getting conflicting info about this, and need to get confirmations.Is the older 6513 (non E) model compatible with WS-X6407-10GE blade?The switch we're getting this for have WS-SUP720-3B, 6000W power supply, and WS-C6K-13SLT-FAN2.From what I read they are compatible if entered in slot 9-13, but I also heard that 10GE modules are not compatible with the non E chassis.
I am looking for 10 GE copper 24 ports switch. After any time I come N2K-C2232TM-10GE. However, this switch is fabric extender and it is used with Nexus 5K series switches.
My question is Can I use this Nexus 2K standalone as other L2 switches?
I will be adding two WS-X6716-10GE cards in a CAT6509 soon, and will create 4 port channels with 3 ports each in the new cards, but I do have a few questions:
1 - I will be adding cards in slots 3 and 8, can I mix and bundle ports from both modules into a single etherchannel, I mean, like two ports in slot 3 and 1 port in slot 8 to create a PortChannel ?! Or can I only bundle ports in the same card/port-group in a Etherchannel using this WS-X6716-10GE card?
2 - Do I need to issue the hw-module slot x oversubscription port-group y command in order to be able to bundle ports in the Etherchannel I need to create ?! I will be using 4 Etherchannels (LACP) with 3 ports each, running in trunk mode. So I guess, I will be using something like:
Is it possible that catalyst 4500 Supervisor Engine V-10GE WS-X4516-10GE works with WS-X4612-SFP-E?I know suprtvisor engine V-10GE is not support E-serious linecard, but when I use the configuration tool, I can choose these two products together. Is it a bug?I need novell IPX in this case, I find supervisor 6E & 7E are already not support, so I have no choice to choose V-10GE.
I have been trying to reset my Cisco 4507 R-E with sup 10GE engines, and I am not having any luck. I have followed the following document:
[URL]
I have tried "wr erase" and "erase startup-config." I cannot delete the vlan.dat file either. I am using the command "erase cat4000_flash:vlan.dat" and its not working either. I have done these commands several times with no success. When asked if I want to save the config changes, I am answering with a "no" I have not tried to depress the small "reset" button on the front of the sup engines as I read that this just restarts the switch.
I am trying to setup the management vrf on the 4948 10GE so that my TACACS requests will use that vrf for out-of-band purposes. The vrf is working properly because I can ping the TACACS server using the vrf but the logins do not work. I see this error in the tacacs debug:
TPLUS(00000016)/0: Connect Error No route to host
Looking at the release notes, it states that my version (12.2.54 SG1) does support vrf aware tacacs but the documentation seems to be a bit off because i do not get a server private command option as stated in the configuration doc after configuring a tacacs server group:
[URL]
Here is my config:
ip vrf mgmtVrf rd X:X ! interface FastEthernet1 ip vrf forwarding mgmtVrf ip address x.x.x.x
When i swapped a Sup v 10 ge for a Sup6 E Tonight in order to take advantage of the netflow capabilites of the Sup V - It came up with module unsupported for the following cards - WS-X4648-RJ45V-E Will these only work with the Sup6 E or what
ive updated my catalyst 4948-10GE to version 15.0(2)SG1.Now it is not possible to login by ssh or telnet on this switch. the access is established over the mgmt-Interface and vrf.i get a ping reply but login is no more possible now.is there an new feature in this version for vrf or remotelogin that has to be configured? if neccessary i can paste the running-config here.
I want to choose a pair of switches for our data center.What I need: 48 x 1GE access ports, 2 x 10GE uplink ports.Nice feature of 3750-X is stacking. So what features has 4948-10GE? Why I should prefer that switch?
we have Supervisor Engine 720 10GE (VS-S720-10G) in slot 5 on Catalyst 6509-E. Slot 6 is free. We need to replace VS-S720-10G. Is it possible the following scenario
1. we will insert new VS-S720-10G into the slot 6 2. then we will remove the faulty VS-S720-10G from the slot 5
Will everything work without interuptions. Is any document where I can find step-by-step procedure how to replace VS-S720-10G ?
Is it possible to use a 10GE interface on a sup720 and an interface from a 671610GE line card and create a port channel. I haven't found specific documentation on CCO stating you can. I have found the QOS queuing is differnet between the sup and line card.
We recently installed a WS-X6716-10GE module in slot 6 within a Cisco 6506. We are using two ports on the module (6/13 and 6/14), which are port channeled together to a Nexus 5548. Everything has been running fine for about a month and the card had a green light but the ports stopped communicating. The module was screwed into the chassis/slot. For problem determination reasons, we reconfigured ports 6/13 & 6/14 to 6/15 & 6/16 and moved the cables but the module was still not responding. We eventually pulled the module out of the slot and reinserted the module back into the slot, which reset the module and fixed the problem. Is there any way to determine if this was hardware problem with the module and it should be replaced, or is it a software bug/problem? We opened up a ticket with the TAC but we haven't heard back from them yet.
Cisco WS-C6506-E Cisco IOS Software, s72033_rp Software (s72033_rp-IPSERVICESK9-M), Version 12.2(33)SXI8, RELEASE SOFTWARE (fc2) Mod Ports Card Type Model --- ----- -------------------------------------- ------------------ 5 2 Supervisor Engine 720 (Active) WS-SUP720-3B 6 16 CEF720 16 port 10GE WS-X6716-10GE
We have two 6509 switches with one WS-X6704-10GE module in each of them. There is an optical cable between the two switches plugged in WS-X6704-10GE module on both sides. When you shut down the port on one side the other port still stays as up and you need phisycally to unplug the cable to have it down. The same behaviour is seen no matter on which of the two switches you shut down the port, the opposite one always stays as up and only removal of the cable makes it go down.
The ports are configured quite simply:
interface TenGigabitEthernet1/1 switchport switchport trunk encapsulation dot1q switchport trunk allowed vlan 1-10 no ip address udld port
I've 4500 Core Switch with 4507R chassis, Sup V-10GE(WS-X4516-10GE) along with 2 WS-X4306-GB line Cards, but now I require a line card for 14 more fiber up links and I cannot go with 3 of 4306 as there are only 2 slots left. I've checked and found that E series line cards does not work with Sup V Engine.
As per the link below, I found that "WS-X4448-GB-SFP" is compatible..
we have multiple Video production networks, with Video servers (AVID Unity ISIS) connected by 10GE fiber links to 4948-10GE switches. On almost every of these switches, I see more or less "Sequence-Err" interface errors. We do not currently have a known problem because this, and no other errors are seen. But I would like to understand the error, and therefore I would like to find out, what a sequence error means, what the cause is, and what the impact (to a frame) is?
By the way, it is well-known that the ISIS Video server does generate very excessive UDP data bursts. Maybe this matters? On Cisco doc I did not find an answer. The document "Troubleshooting Switch Port and Interface Problems" does unfortunately not refer to "sequence-err".
Here is an example output: WS-C4948-10GE#sh int t1/49 TenGigabitEthernet1/49 is up, line protocol is up (connected) [code].....
we have two 6509 catalyst. we bought two new SFM-capable 16 port 1000mb GBIC/WS-X6516A-GBIC module. but our catalysts doesnt support them. we don't know the reason. we tried on another 6500 series catalyst they worked.
here are the outputs from our 6509:
Core-SW-1#sh module Mod Ports Card Type Model Serial No. --- ----- -------------------------------------- ------------------ ----------- 1 0 1-subslot SPA Interface Processor-600 7600-SIP-600 JAE14090958 2 48 CEF720 48 port 10/100/1000mb Ethernet WS-X6748-GE-TX SAL1413DX2B 3 16 CEF720 16 port 10GE WS-X6716-10GE SAL1414EL2Q 4 1 Application Control Engine Module ACE20-MOD-K9 SAD1408036Z 5 5 Supervisor Engine 720 10GE (Active) VS-S720-10G SAL1414ERDT 6 5 Supervisor Engine 720 10GE (RPR-Warm) VS-S720-10G SAL1414ERE3 7 16 CEF720 16 port 10GE WS-X6716-10GE SAL1414ER93 8 16 SFM-capable 16 port 1000mb GBIC WS-X6516A-GBIC SAL1326SVBS(code)
As per my understanding 6509 all slots are dual channel, so 9 slot * 40 per slot (20 g in and 20 g out) = 360 GB How cisco claim the 720 ?? What about the 6513 chassic switch fabric connection?
I am seeing a strange situation on my 6500 switch?By having snmp walk on '1.3.6.1.4.1.9.9.109.1.1.1.1.3' (== cpmCPUTotal5sec), I came to know that there are two processor and the cpu util for switching processor is gone to 88 % and some time creeps to 99 %.
snmpwalk -v2c -c "removes" sw6500 '1.3.6.1.4.1.9.9.109.1.1.1.1.3' SNMPv2-SMI::enterprises.9.9.109.1.1.1.1.3.1 = Gauge32: 12 (--- this is for CPU of Router Processor ) SNMPv2-SMI::enterprises.9.9.109.1.1.1.1.3.3 = Gauge32: 99 (--- this is for CPU of Switching Processor )
but when I do sh process cpu on the console, all looks normal as it shows cpu utilization of RP. why the value is so high on the switching processor ?
For intervlan routing, Is 'IP routing' command enabled by default on a 6500 series switches based on the IOS?and on 3750 switches, do we need to enable the "ip routing" command manually for intervlan routing?
I'm looking to restrict Inter-VLAN routing through L3 switch (cisco 6500) and wanted to know best possible way to do it. I used VACL and achieved success to some extent, but my config is making clients take up to 5-6 mins to authenticate IP address from the DNS (bootps).My VACL config was as follows:
Subnet to restrict is 10.100.15.0 (VLAN 15) STEP 1: Created extended ACL to allow bootpc/bootps through DNS ip access-list extended EACL_DNS permit udp any eq bootps any permit udp any eq bootpc any
STEP 2: Created standard ACLs to allow only relevant subnet, server VLANs & some IPs from other subnets for printers/scanners etc.
ip access-list standard SACL_VLAN_15 permit 10.100.15.0 0.0.0.255 (the subnet I'm restricting) permit 10.100.50.0 0.0.0.255 (server VLANs) permit 10.100.25.45 0.0.0.0 (printer in another VLAN which has to have access in VLAN 15)
STEP 3: Created VLAN access list
vlan access-map VACL_15 10 match ip address EACL_DNS action forward vlan access-map VACL_15 20 match ip address SACL_15 action forward
STEP 4: Applying VLAN Access list on VLAN 15 vlan filter VACL_15 vlan-list 15 Though the above works, below is noted:
1. I'm still able to PING 10.100.15.2 (the switch virtual interface) from outside the subnet, which I don't intend to do so. Howeve all cients in the subnet have no connectivity from outside the VLAN 15.
2. As mentioned its taking quiet some time to negotiate with the DNS server at system boot time.