Cisco Wireless :: Cat4500 / Duplicate IP Address On Vlan?
Feb 18, 2009
I am getting the following error messge on Cat4500:
Feb 18 23:37:53.098: %IP-4-DUPADDR: Duplicate address 10.237.66.3 on Vlan601, sourced by 001d.096b.4858
Feb 18 23:38:58.092: %IP-4-DUPADDR: Duplicate address 10.237.66.3 on Vlan601, sourced by 001d.096b.47ed
I am using 2 anchor controllers 5508 as DHCP server. Anchor controller A is primary and anchor controller B is secondary. From time to time, client will complain "duplicate IP address error" when they try to connect guest wireless.First question: both anchor controller should have a recorder of IP address which is assigned to each PC, right?Second question: is there any way this type of issue can be avoided?
I have two 2960's in this new environment that I am administering. I am receiving a message on one unit (Designate it 2960-2) of %IP-4-DUPADDR: Duplicate address 192.168.168.8 on Vlan1, sourced by 3037.a63e.540. The "sourced by" address is the 2960-1. I do not know how these units were originally set up. How can I determine where the duplicate address is originating from.When I perform an ARP -a the address that corresponds to the 192.168.168.8 is the mac address of the ethersvi interface on the 2960-1. I
I am using LMS 4.0.1 to monitor the data center network devices. I have two core switches, each core switch has an ACE module installed on it. I have configured many virtual context on each ACE module, and these ACE contexts are acting as primary and standby roles. The problem i faced with is LMS reports the virtual ip address configured on each ace context as duplicate ip address, and i didn't know how to deal with it. As to my understanding, this should be the normal behavior due to my setup, but how can i remove this alarm on LMS 4.0.1?
ISE 1.1.3 Cisco 3750 switches Windows XP / 7 / 2008 clients
I'm having some weird issues were if a client connects to a switchport and happens to be using a static IP address then the client warns of a duplicate address problem. Also the client will then only show the default gateway within ipconfig even though the IP address / mask is still in the GUI network properties of the adaptor. This is happening with Windows 7 and Windows 2008 devices.
Windows XP clients don't get the issue.
Some clients will use 802.1x native supplicant and some will be authenticated based on MAB. Not noticed the problem with 802.1x clients but it always occurs on MAB.
I came across a similar issue here: URL
Going of that blog I tried using the "ip device tracking delay probe delay" command but the switches don't recognise the "delay" keyword.
The switches are 3750 switches running version 12.2(58)SE2.
All I have is "count, interval, use-svi" as extra options.
Catalyst 4500 switch guide has "delay" option but no "count, interval or use-svi".
The only way I have managed to avoid the problem is using the second solution which is a registry hack on each client. This is fine for the odd server but not realistic when there will be hundreds of other clients.
We've had issues with our Exchange 2010 server (running on ESXi 4.1) since its default gateway was changed to our new ASA 5510. They manifested as frequent Outlook client connection dropouts or as IP address conflicts whenever Exchange was rebooted. The temporary fix was to disable the Exchange server NIC, bounce the ASA and enable the server's NIC again. We saw poor performance from Exchange after a while again, but after some research and testing I realised that disabling proxyarp on the inside interface fixed the problem permanently.
However I've now realised that the client VPN no longer routes properly because proxyarp is disabled on the inside interface, so I still have a problem.
Recently I had came across 1 issue where one of the server IP had conflicted with VIP of Nexus core switch. The blade server was physically connected to Nexus Distribution switch which in turn connects to Nexus core. Neither Nexus core nor distribution had generate any logs in regards to IP conflict which ideally happens on Cisco catalyst switches. I haven't find any document on cisco as well as on internet for this issue . I dont know what logging need to enable on Nexus for this specific case . There are different logging levels define for every feature like hsrp, ip,monitor etc...
We have Nexus 7k with latest release 4.2(6) Software BIOS: version 3.22.0 kickstart: version 4.2(6) system: version 4.2(6)
I've run in to this on 3750G's in a various sized stacks. We apply port security for a mac address on a single port (not existing on more than one port - that's a different issue that appears in multiple posts already).In this case:
1) We do a 'sho mac address-table and see that the device with the mac address in question lives on one port, port 1/0/x.
2) We apply mac port security for this exact same mac address to the same port it is already attached to. switch(config)#int g2/0/2 switch(config-if)#switchport port-security mac-address 001a.1ec8.abcd
3) Get this error: 'Found duplicate mac-address 001a.1ec8.abcd'.We again confirm that that is the only port on the entire switch that has this mac-address.Try the command again, same error.
4) We do a bunch of show commands, get in and out of the switch, go back and then try it again, and now it works, same command, same port and same mac address.
-Aging is default 300 -These are Cisco wireless AP's attached to the switch -This occurs on different switches with different ports using different mac addresses, always same symptoms.
The company I work for has a small network and it has a windows 2000 server. When the Canon iRC 2880 printer is connected the server gives a error saying that a duplicate name exits in the network. I tried changing the IP address as well. When I changed the IP address of the printer the duplicate IP address moved the new IP address.
I have some question about HSRP in 3750 switch. I have two Cisco 3750 switch which configured HSRP. Let say, we have interface vlan 100 that join in HSRP group member 1. The configuration on both switch is like as follows :
I have a WAP321 I am trying to set up. It's connected to gi1/23 and the switch system mode is set to router. The rest of the network works just fine.I have an SG500-28p and the port. [code] On the WAP321 wizard, configured IP address on my management vlan and also configured the default SSID on that vlan. That works. (I plan to remove that one) Then I add the two SSIDs for vlan 20 and 22 (private and public access) and I can't associate to either of the two additional SSIDs. I haven't configured any other settings beyond the wizard and adding the other two SSIDs. I do want cisco mobile ios (jabber) to work on the private network and also do have a couple spa525g2s that need to connect wireless.
I have a medium enviroment with 2 x Cat4500 switches and 50 x Cat3650 plus few Cat3750 switches. I'm looking for a network mapping tool to map all the network equipment so I can easy to manage or trouble shoot the network. It doesn't matter if it's free or paid but something I can try first before buy.
I recently had a issue with conecting Cat4500-E switches with SupIV to CAM. I have recieved error message "unable to control x.x.x.x".Whole problem was switch OID not in the database of CAM. For those experiencing the same problem go to on the CAM:
Device Management > Clean Access > Updates > Update CHECK "all" options and RUN UPDATE!
We have 3 Cat 4500 switches on three floors teh 3rd floor switch connects to the 2nd and 4th floor switches ,but we are receiving an alert from monitoring tool that " Interface(314) Backup-1Gb-Ring is Down at least 2 min on Switch: SOM500-4510-3FL the following output from "sh int status module 1 " shows the int 1/3 and 1/4 are 'inactive'local IT guy said If the status is inactive,the ports cannot be used and might lost the capability when he added 48-port blade into the 10th slot.
2nd Floor Port Name Status Vlan Duplex Speed TypeTe1/1 SOM500-Core1 connected trunk full 10G 10GBase-LRMTe1/2 SOM500-Core1 connected trunk full 10G 10GBase-LRMGi1/3 Backup-1Gb-Ring notconnect 1 full 1000 1000BaseSXGi1/4 Backup-1Gb-Ring connected trunk full 1000 1000BaseSX 3rd FloorPort Name Status Vlan Duplex Speed TypeTe1/1 SOM500-Core1 connected trunk full 10G 10GBase-LRMTe1/2 SOM500-Core1 connected trunk full 10G 10GBase-LRMGi1/3 Backup-1Gb-Ring inactive 1 full 1000 1000BaseSXGi1/4 Backup-1Gb-Ring inactive 1 full 1000
In our test set up, we have two WLC 5508 Controllers connected via Checkpoint UTM-1 firewall Inside and DMZ Interfaces. Both the WLC controllers are connected to the firewall via Cisco 3750 switch. On the Local (Inside) Controller, guest SSID is enabled and attached to the wireless management Interface. On the remote anchor controller, guest SSID is enabled and attached to the Management Interface as well. The following configs are replicated on both the Controllers.
SSID Name - guest Interface - Management ( VLAN 10 on Local and VLAN 20 on remote) - Mobility Group: Same configs at both ends SSID Anchor : Anchor SSID on local and local SSID on Anchor. AP: CAPWAP 3502 Management Subnet
[code]....
Is there any thing missing in the wireless configs and or the firewall rules as i could not see DHCP request back from the Anchor Controller. Also, after DHCP is obtained, the web authentication request will be redirected to an Amigopod device for authentication. In this case is the redirect URL congiguration to be performed only on the Anchor Controller or is this to be replicated on both the Local and Anchor Controllers.
OK so I am following the steps that i got from off the CISCO site on upgrading the IOS, when i get the the part where if says to:
redundancy reload peer
so after i do that i go to the standby supervisor and i see that it is in a continuous reboot loop. I stop the loop and i reload the sup to the original IOS cat4000-i9s.........
SO i look at the logs and this is what i see:
Aug 12 22:21:01.251: %C4K_REDUNDANCY-6-INIT: STANDBY:Initializing as STANDBY Supervisor *Aug 12 22:21:03.259: %CHKPT-3-IPCSESSION: STANDBY:Unable to open an IPC
I have a 4503-e with WS-X4013+TS supervisor and WS-X4548-GB-RJ45 card. I purchased a WS-X4648-RJ45-E card and installed but IOS says its unsupported. Supervisor is running 12.2(46)SG software and 12.2(31r)SGA firmware. Obviously I'm hoping this cars can be supported somehow. Do I need to upgrade software or firmware, or return the linecard and get equivalent supported card? Oh, system is running Catalyst 4500 L3 Switch Software. (cat4500-IPBASEK9-M)
My customer is seeing these Errors coming up on one of his 2504 WLC's (ver7.3) The MAC's and IP addresses Mentioned seem to be completely fictitious as the customers IP plan is way off these subnets and the vendor lookup tool cant resolve the MAC addresses.I can confirm that there is no conflict.I've seen them appear on other 2504's across his network on seperate occasions.
In testlab we use pim-sm with bootstrap router on sup7 with IOS-XE 03.04.00.SG. Any possibility to prevent non authorized rp from connecting to the candidate bootstrap routers? We found several security recommendations concerning limiting registering of sources at the rp, rate-limits etc, but no possibility to control rp connecting to the bsr.
8 Windows 2008 Servers - UN effected 5 Windows 2003 Servers - effected with dupe IP's
We have AP - A, B and C all configured static and outside of our DHCP scope
A - 104.240 B - 104.241 C - 104.242
WAP A is setup to allow the Mac's of A and B to repeat its signal. The issue starts about 1-2 minutes after I set B and C to client/repeater and select A in site survey then save the settings. Obviously its weird that only our 2003 servers are getting this error.
The system detected an address conflict for IP address 192.168.105.201 with the system having network hardware address *MAC ADDRESS OF ROUTER A*. Network operations on this system may be disrupted as a result.
I have multiple wireless access points plugged into a 3560X. When the wireless clients begin roaming they cause duplicate MAC enteries to be created and this causes the switch ports to flap. Is there a way to configure the switch to either ignore the duplicate MAC enteries on the switchports that have been connected to the APs or is there a way to have the ARP tables update and resolve the conflicting MAC enteries with out causing the switchport to flap?
I have a WLC 2504 with 5 AP licenses for which I have installed an adder license via GUI. The installation completed successfully, but I still cannot view the new license. The maximum number of APs is still showing as 5 and in fact I cannot add more that 5 APs. I tried installing the license file again, but now I get a "duplicate" error.
In the process of setting-up a E2500 Linksys router, I set-up my secured network which is working fine but also (I do not know how I did this??) set-up the same named network but it is unsecured. How do I delete this unsecured network.Do I need to set-up the router again?
I'm using .01 firware and I notice that after I reboot the router I get duplicate filenames on the HD attached to it with the video files. What folder or config file can I delete so it will do a clean rescan? please fix the E4200 media server in .02 firmware
I have a POE switch running 12.0(5). I have port 24 connected as a trunk connected to the main switch. I need to add an ip address on vlan 21 which is where the network vlan is. I created it but I can not seem to enable it. I have issued the no shut command several times, but doing "sh ip int brief" it keeps showing up as administively down.
i have a SG300-52 Switch, route mode is enabled, and it is using the latest IOS.I have created 4 Vlans in this switch, till this point its OK, but once i try to give ip addres to the created Vlan either from the GUI or CLI the switch is not responding. i have to go and manually reset the switch using a pin.
The customer has 4 6500 switches. 2 Physical locations, and 2 switches at each locations. The locations are connected via 1 200mpbs metro ethernet(layer 2). We ran into an issue during a DR exercise. We had created a VLAN for DR testing purposes, that did not have any SVI configured, but the VLAN did exist on one of the 6500s. When the customer restored a VM to the DR VLAN, we lost connectivity to the production server. After some troubleshooting, we found the cause to be the same mac address showing up, but in a different vlan. Once we removed the DR vlan from the 6500 all was well. It seems like switches are ignoring the VLAN in the mac address table, and forwarding to the incorrect ports. The switch is not reporting any mac flapping in the logs. No spanning tree topology changes are occurring. Code version is 12.2(33)SXJ2 on all switches.
I need to create several VLans on my switch.After reading the admin guide pdf, i still don't understand how to create any simple VLan.some tutorial or steps (with IE or Mozilla browser) how to create and use VLan, and to connect one VLan to another.For example,i need to create 3 VLans.
First Vlan consist of 5 ports (Vlan Name = Red) Second Vlan consist of 15 ports (Vlan Name = Green) Last Vlan consist of the rest of the ports (VLan Name = White)