Cisco WAN :: 2821 / Netflow Not Working On Multilink Interface
Feb 18, 2013
I have a Cisco 2821 with two serial interfaces bundled using PPP multilink. I want to monitor traffic flow (net flow) on the multilink interface. I have tried configuring ip route-cache flow/ ip flow ingress / egress but no luck.The other thing is when I do sh ip cache flow I guess I should see the multilink interface in both Source and destination columns which is not happening (not showing in destination column).The other router with same config but with ATM sub-interface working properly (same IOS). Are there any hits on this ? Also, is it possible to use SPAN feature ? The monitoring server is at some other site (coming via WAN).
View 1 Replies
ADVERTISEMENT
Feb 14, 2012
MPLS customer with 4 T1s in a multilink. If one of the T1s drops there is a brief delay in traffic picking back up and I actually lose packets from premise back to CO. You can see this loss both with pinging across the circuit and with techs on either end running JPerf. It can take as long as 6 seconds for the reconvergence to actually happen on the multilink and traffic picks back up. In my experience this is normal behavior for Mulitlinks
I'd also like to note that it is indeed much quicker reconvergence when you physically pull the T1, any of the T1s, rather than administratively shutting down one of them and I understand that the hardware is quicker than software and that's a good thing, obviously. I've tried this with and without ppp mulitlink fragment disabled on either end and every other combo between the two. Each of the 4 serial interfaces are on line timing and I tried free-running just on the off chance that it could imrpove the loss, but it gets worse.....back to line timing. I've even tried this on other CPE platforms like two different versions of Adtran CPEs and I get the same thing. Currently I have a new 2821 CPE in place and still get the same thing. Still see a brief amount of traffic loss up to 6-7 seconds or so at times.
7600 side:
interface Multilink592
ip vrf forwarding ******************
ip address *************************
load-interval 30
no peer neighbor-route
ppp multilink
ppp multilink group 592
ppp multilink fragment disable
no cdp enable
service-policy output VPN-TEMPLATE-2(code)
View 6 Replies
View Related
Oct 16, 2011
I have a question regarding mlppp and bonding mpls T1 circuits. For the longest time we have been able to get by on one T1 circuit coming into our 3845 router. Well this T1 has now become congested and they are wanting to add bandwidth to this T1. We connect to the phone company via an MPLS T1 currently. So now it appears as though we are going to purchase another MPLS T1 circuit and bond the two T1's together. The way our network is currently set up, we utilize the same AS number on all of our remote routers regardless of location. Keep in mind I don't have any sort of mlppp set up at this moment, so unfortunately I can't post any configs. I'm just questioning the design portion and how to go about doing this.
Here is where my dilemma begins........
For every MPLS circuit we order on the remote end, we specifiy an IP for the remote router itself and one for the provider to assign to their equipment (the bgp neighbor statements). Now granted i'm no BGP extraordinaire, not even a novice really, but I don't understand how I am going to bring two T1 circuits into the same router (basically with 2 pairs of IP's). In order to bond the two T1's together, i'll need to create a multilink interface and assign an IP to that, but yet I still have 2 SETS of ip addresses. And if that isn't enough of a dilemma, I also need to spedify a neighbor statement in order for my AS to bind to the adjacent provider AS, but yet I have two IP addresses for that as well.
View 2 Replies
View Related
Oct 15, 2012
I am configuring ISDN Interface on 2 Cisco 886VA Version 15.2(3)T . I am unable to set ppp multilink on the BRI0 interface and on the dialer interface. It's like the command doen't exist anymore.How can I fix that so that i can have 128 K bandwidth between ma 2 sites ?.
Router1#conf t
Enter configuration commands, one per line. End with CNTL/Z.
Router1(config)#int bri0
Router1P(config-if)#ppp multilink
[code]....
View 2 Replies
View Related
May 5, 2013
I have customer that we have configured netflow on the 2821 router that their traffic is on. Currently the company they have contracted with for the analysis is seeing data duplication. Below is the configuration for the interface and the router
Cisco 2821;
interface GigabitEthernet0/0
description TVC-FI-Ethernet-Fiber-Ethernet link
ip address 216.255.164.33 255.255.255.248 secondary
ip address 192.168.5.1 255.255.255.0 secondary
ip address 216.255.166.129 255.255.255.128 secondary
[code]....
View 2 Replies
View Related
May 8, 2012
I have configured multicast (ip pim dense-mode) on two 2911 routers that are connected by a Multilink (3Mbps) Wan connection.The configuration work fine for awhile and sometimes all day but at some point one of the Multilink interfaces stop passing multicast traffic.I perform a sh multilink 1 on the interfaces and one interfaces show the multicast packets incrementing and the other does not, it just stops.The only fix for this is to hard reboot both routers and the multicast traffic begins to flow once again.
View 3 Replies
View Related
Nov 1, 2011
I just finished setting up a bundle of (2) T1's in a multilink bundle and I'm having issues with one of the T1's not wanting to join the bundle.
The router I'm using on the remote office location is a 3620 router running code c3620-i-mz.121-1c.bin
The campus router which is a 7206 is setup the same exact way with multilink 240 and like I've said, serial 0/0 is joined to the bundle just fine, so we are running off one T1 connection.
The serial interface that is not working is: serial 0/1
Here is a show-run:
interface Multilink240
ip address 172.18.xxx.xxx 255.255.255.252
ip route-cache flow
ip ospf network point-to-point
service-policy output PhonesFirst
ppp multilink
[code].....
View 3 Replies
View Related
Mar 20, 2013
Is it possible to configure more than one layer 3 interface for netflow on a 3845? I can't seem to do it. Is there something I am missing?
View 2 Replies
View Related
Nov 2, 2011
i want to monitor interface traffic in/out by eem and the if the values is overer than some value i will change the policy. for example my router is 2821 is have 2 fastEthernet port , i want to monitor the traffic on fasE1/0 if traffic over than 80Mbps i will change some configuration ( example: change next-hop on static route) for via traffic to interface fasE1/1 for reduce the traffic on interface fasE1/0?
View 6 Replies
View Related
Aug 17, 2011
Cisco 2951 w/ HWIC-4ESW
IOS 15.0(1)M5
#sh ip flow int
Vlan533
ip flow ingress
ip flow egress
#
The SVI sends the flow data just fine, however I also continue to receive flow data from most other interfaces.
I have attached a screenshot of one of our netflow collectors indicating that many of the interfaces are sending flow data even though not configured to do so. We have two different netflow collectors, from different vendors and both confirm the same interfaces sending flow data.
Normally I wouldn't care and ignore it, however one of them uses a license limit by interface and is a bit problematic.
View 2 Replies
View Related
Sep 22, 2011
I have a problem with the command mls qos trust dscp, I used the ios c2800nm-ipvoice_ivs-mz.124-25f.bin but i can not enable dont show me the complete command in the interface Ethernet o Giga. I want to configuring mls qos trust dscp.
View 1 Replies
View Related
Apr 8, 2013
I am having an issue pinpointing why my 2821 router is discarding so many packets when transferring data to our second site. The traffic flows from the local lan, to the router, where it is redirected via WCCP to a WAN optimization device, back to the router and over a GRE tunnel to the second site where the same process happens. The traffic does get there, but the LAN/Repeater router interfaces have around 20,000-60,000 input drops an hour. From the output below, it looks like traffic is being dropped by the RP.
I just restarted the router as a last resort, and here is what has accumulated in the last 30 min:
FastEthernet0/0/1 is up, line protocol is up
Hardware is Fast Ethernet, address is 0025.840c.7680 (bia 0025.840c.7680)
[code]....
And CPU never goes above 40%
100
90
80
70
[code]...
View 17 Replies
View Related
Jan 23, 2011
I have some issue on Card Hwic-D-9ESW with Router 2821, i was install card 9ESW in to router 2821 on slot 2 and 3. After I show run, the Cisco Router 2821 have interface F0/3/0 - F0/3/8.and i configure V lan already and interface up also.
When i connect PC to port F0/3/0, the interface is up, but i cannot pint go interface, i mean it request time out. My question is, Is it correct that i install card into slot 2 and 3?
What is the problem all port up but i cannot ping to interface?
Note: the same V lan
View 2 Replies
View Related
Mar 25, 2012
we're facing a weird issue lately with a Cisco 2821.An interface stops responding after a few hours.The only way to bring it 'up' again is:
Hardcode: duplex or speed
or
shutdown -> no shutdown
there are no errors in the "sho interface" and no errors or entries in the log.
FastEthernet0/0/0 is up, line protocol is up
Hardware is Fast Ethernet, -
Description: Infopoint
MTU 1500 bytes, BW 100000 Kbit/sec, DLY 100 usec,
reliability 255/255, txload 1/255, rxload 1/255
[code]....
View 17 Replies
View Related
Apr 17, 2012
I have a router cisco 3825, it is configured with netflow for monitoring traffic with WhatsUpGold, but I can't monitor this router I don't know what is the problem.Device: Router Cisco 3825 IOS: C3825-ADVENTERPRISEK9-M 12.4. [code]
I have a switch4500 12.2 and a router 2801 IOS 15.1 and this device work well with the WhatsUp but these devices have the same configuration.I see diferents ouputs when I use show ip flow export, this output is for a router that work well with WhatsUp. [code]
View 3 Replies
View Related
Mar 13, 2012
Any major difrrence between Netflow v/s Netflow-Lite?
I am trying to understand if Cisco 4948E can do the same job as Cisco 4500E or not and difference between Netflow v/s Netflow-Lite will work for me to select correct product.
View 2 Replies
View Related
May 20, 2013
we have made migration from CISCO 2821 to ASR1002-X.Cisco router is used as LNS for our ADSL links, using L2TP protocol. On 2821, everything worked fine. Migrating with same config on ASR1002-X, everything worked except L2P sessions.
We wanted to debug but no debug is displayed about L2TP or PPP in console with commands :
- debug aaa authentication
- debug aaa authorization
- debug radius
- debus vpdn l2x-events
- debus vpdn l2x-errors
- debus vpdn l2x-packet
- debug ppp negotiation
- debug ppp authentication
We don't understand why no debug log ??? Is it a bug in IOS XE ?show vpdn session all and show vpdn tunnel all gave "%No active L2TP tunnels"
Here our configuration :
sh ver
Cisco IOS Software, IOS-XE Software (X86_64_LINUX_IOSD-UNIVERSALK9-M), Version 1
5.2(4)S1, RELEASE SOFTWARE (fc3)
Technical Support: [URL]
Copyright (c) 1986-2012 by Cisco Systems, Inc.
Compiled Sat 06-Oct-12 13:03 by mcpre
[code]....
View 23 Replies
View Related
Mar 14, 2013
i've configured Cisco VPN CLient on a router 2821, and it is working fine.I could access inside resourses normally>the problem is that when i connect with VPN i lost connectivity to internet? What is wrong with my configuration? Below the running config of the router.
CISCO2821#sh run
Building configuration...
Current configuration : 5834 bytes
!
version 12.4
[Code].....
View 3 Replies
View Related
Feb 26, 2006
I have three E1 as a part of Multilink group. If any one goes down. loadbalancing between the rest of the two E1 does not work...
View 2 Replies
View Related
Mar 7, 2012
I have a Cisco 1841,c1841-ipbase-mz.124-20.T4.bin, with 2x HWIC-1ADSL-M.I have managed to bond 2x DSL with PPP multlink with the config below and traffic is being sent equally across both DSL circuits. However if i disconnect either of the DSL cables connectivity fails. I was expecting connectivity to continue to work just over the one circuit. [code]
View 1 Replies
View Related
Jun 15, 2011
I think I have my PPP multilink setup correctly. Though I am getting AL lights on one of my connections via a VWIC2-2MFT-T1/E1 card. One AL light is on at each location. Though I checked with my ISP and they said it was my network cables as everything looked good on their end. Currently one T1 circuit is connected at each end so users do not see a disruption. This is a new install with two routers and the config is shown below.
Router 1-----
controller T1 0/0/0
cablelength long 0db
channel-group 0 timeslots 1-24
(code)
View 1 Replies
View Related
Feb 6, 2013
I have two Cisco Routers 3800 series for my internet traffic (2 ISP). I configure HSRP on the interfaces gigabitethernet and at the main router I put the multilink interface to track. When the connection drops to the main router traffic does not switch on my second router.
View 1 Replies
View Related
Apr 3, 2003
Customer site connected to a PE using 2 x E1 circuits aggregated using Multilink PPP. The CE is a 1760, and the PE is a 7206. This is the customer HQ site.
Connected to the same PE are three other sites from the same customer. Each is connected with a single E1, again each CE is a 1760.
During some testing the customer did some large file transfers concurrently from each of the three remote sites into the HQ, so we had data coming into the PE via the three E1's (6Mbps) and then being routed onto the 4 Mbps Multilink PPP interface into the HQ, which is a potential bottleneck. This test failed miserably with packets being dropped on the output interface on the PE facing the HQ.
But then if Multilink PPP encap is removed, and we just connect the HQ using one E1 with HDLC encapsulation, the test works, even though we have half the bandwidth to the HQ, so an even greater potential bottleneck.
View 5 Replies
View Related
Jul 18, 2011
I am looking for any other compression methods I can use for my PPP multilink connection. The PPP multilink compression is composed of two T1 lines. There are no slip sec errors or packet errors that I saw recently. R1 is a 1911 and R2 is a 2911.
R1 sh compress:
Multilink1
Software compression enabled
uncompressed bytes xmt/rcv 184340310/27355186
compressed bytes xmt/rcv 126395743/14139585
Compressed bytes sent: 126395743 bytes 774 Kbits/sec ratio: 1.458
[code]....
View 5 Replies
View Related
Jan 5, 2011
We have 4 data T1s providing our office with 6Mbs of internet bandwidth.I have been trying to track down the reason(s) for the steadily increasing frame and abort errors on the Multilink interface of our new router.We have a new 2961 with 2 2 port T1 interface cards (VWIC2-2MFT-T1/E1).
At first it looked like the T1s were completely clean, but after diving down a bit the last of the 4 T1s does appear to have a decent amount of slip and error seconds.Is that something that would cause the Multilink interface to show input, frame, and abort errors?Any config or debug commands I should start with to narrow down what might be causing this problem?
Config snippets:
card type t1 0 0card type t1 0 1!controller T1 0/0/0clock source internalcablelength short 440channel-group 0 timeslots 1-24description HCFD-XXXXXX!controller T1 0/0/1clock source internalcablelength short 440channel-group 0 timeslots 1-24description HCFD-XXXXXX!controller T1 0/1/0clock source internalcablelength short 440channel-group 0 timeslots 1-24description HCFD-XXXXXX!controller T1 0/1/1clock source internalcablelength short 440channel-group 0 timeslots 1-24description HCFD-XXXXXX!interface Multilink1ip address X.X.X.X 255.255.255.252ip nat outsideip virtual-reassemblyppp multilinkppp multilink group 1ppp multilink fragment disable!interface Serial0/0/0:0description T1 : HCFD-XXXXXXno ip addressencapsulation pppppp
[code]....
View 2 Replies
View Related
Jun 11, 2012
One of my customer has raised a new requirement for implementation of short sequence number format support in PPP multilink header for Cisco MWR 2941 E1/T1 serial interface, whereas router is supporting long sequence number format.here is the output of "debug ppp negotiation" command:-Currently in the MWR debugging logs we can see that by default MWR is sending long sequence header format as below
*Mar 13 01:32:55.438: Se0/2:0 LCP: O CONFREQ [REQsent] id 238 len 25
*Mar 13 01:32:55.438: Se0/2:0 LCP: MagicNumber 0x26CDF693 (0x050626CDF693)
*Mar 13 01:32:55.438: Se0/2:0 LCP: MRRU 1500 (0x110405DC)
*Mar 13 01:32:55.438: Se0/2:0 LCP: EndpointDisc 2 16.16.16.11 (0x1307021010100B)
*Mar 13 01:32:55.438: Se0/2:0 LCP: MultilinkHdrFmt seq long classes 2 (0x1B040202)
While as per the requirement PPP multilink header should support short sequence.
MWR configuration:
controller E1 0/2
framing NO-CRC4
clock source line
channel-group 0 timeslots 1-31
[code]....
View 0 Replies
View Related
Mar 31, 2011
We have a Cisco Access Control Server (TACACS+ version 5.1) with an additional 2 port NIC card. This produces 4 ports on the ACS server(G0 through G3).After initial setup of the ACS server with an IP address on G0, I connected a Windows 7server with IE8 to G0. The ACS web interface appears (after accepting certificate) and Ientered some user accounts and NDGs.I then connected the ACS server to a configured port with port-security on our 6500switch. The port becomes err-disabled since the MAC address does not match up. It appearsthat the onboard NIC on the ACS server is bonded thus producing the MAC address issue.To fix this connection issue, on the ACS server, I cleared out G0 and setup G2 (additiional NIC card) with the IP address. After connecting to the 6500 switch, the ACS server port works fine. I removed the connection to the 6500 and connected the Windows server to the ACS.I can ping the ACS server but the web interface is now unavailable unlike before. I do not get a certificate warning on IE, it just states that internet not available. On ACS, the 'show' status of acs shows all the processes are running and initialized. It has got me stumped as all I did was change NIC configurationon the ACS server.
View 8 Replies
View Related
Mar 5, 2012
I have a cisco asa 5010 where, during the process of configuring, the outside ports become down/down. The /0 port won't even reactivate after cycling power on the unit.Port /1 is the inside interface and it is not affected by the problems.I switched the outside port to port /3 and it worked for awhile then it stopped working. I switched it to Port /2 and the same thing.Port /2 and Port /3 are on after a power recycle but shut down completely (down/down) during the reconfiguration. It seems like a hardware failure, but I'm wondering if it could be anything else.
View 4 Replies
View Related
Nov 7, 2011
I'm actualy trying to bring two IPSec VPN on only one interface. I've successfully created a tunnel between Par and Barcelone and between Par and Mad. But I can't create it between Barcelone et Mad. We have a cisco ISR1921 in Mad and Barcelone, and a Netgear in Par.
Barcelone config:
crypto isakmp policy 10
encr 3des
authentication pre-share
[Code].....
View 7 Replies
View Related
May 11, 2013
How to make a Cisco 881 router finally work. I have the following configuration:
Current configuration : 2964 bytes
!
! No configuration change since last restart
version 15.1
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
[code].....
As much as I understand, the VPN tunnel is active.I can access the Internet, but I cannot access anything through the VPN tunnel.
View 3 Replies
View Related
Feb 5, 2012
i have here a ASA 5510 sec k9.
I build a Config with a DMZ,INSIDE and OUTSIDE Interface. My Plan is to use the IP-Address of the OUTSIDE Interface with PORT to setup a HTTP Server In the DMZ
But my Config doesn't work. And I have no Plan why .....
The Inside Interface have to work normal. The Traffic to the Internet is TRiggert from Inside with Dynamic PAT
ciscoasa(config)# exit
ciscoasa# show run
: Saved
:
ASA Version 8.4(1)
[Code].....
View 2 Replies
View Related
Jan 6, 2012
Can Cisco 881G cellular interface (Modem Firmware Version = K2_0_7_19AP C:/WS/FW) work with r-uim cards? I can't find correct answer in documentation .
View 2 Replies
View Related
Feb 3, 2013
C4948-10G switch running IOS 15.0(2)SG ?ACS 4.2 cannot authenticate on the vrf interface. The issue on vrf aaa authentication.
aaa new-model
!
!
aaa authentication login default group tacacs+ local
aaa authentication login no_tacacs local
aaa authentication enable default group tacacs+ enable
[code]....
View 13 Replies
View Related