Cisco :: Get Tcam Utilization By Using Snmp On ASR100x?
Apr 21, 2012How to get tcam utilization by using snmp on ASR100x?
View 2 RepliesHow to get tcam utilization by using snmp on ASR100x?
View 2 RepliesI have 1 x SG300 28P in Layer 3 mode which is the default gateway for all the IP phones that will be installed. The PC's ont he network will use the existing default gateway which is another router. I will have another 2 x SG300 28P devices in layer 2 mode which are connected to the Layer 3 SG300 28P.
My question - Are the IP's that registered against the TCAM limit only the devies which physically plug into the SG300 28P switches ? I assume other computers on the network which are plugged into another switch and don't use the default gateway of the SG300 (its only for voice) they then wouldn't be registered in the TCAM ?
The site has around 65 computers currently and obviously plugging in 65 IP phones we're going to hit a limit of over 100 IP's. My thoughts were to potentially keep the computers and Phones seperate on a couple of the switches to keep the IP's in the TCAM to a minimum..
I'd like to know what is "masks" in the output of show platform tcam utilization. What does 784 mean? What effect has the number of mask in the amount of supported unicast direct routes?
I'm having trouble comparing the capacity of theese two switches, regarding unicast directly-connected routes. I know the second switch has cpu utilization issues and ip unicast failed routes over 4096 arp entries. What would be the case for the first one?
Switch 1:
CAM Utilization for ASIC# 0 Max Used
Masks/Values Masks/values
Unicast mac addresses: 784/6272 12/26
IPv4 IGMP groups + multicast routes: 144/1152 6/26
[Code]...
I have a cisco 1841, Im trying to write an app which will get the Interface Utilization on my 2 atm interfaces and fast eth 0/0 interface.
I’ve been reading up and have got as far as downloading the codeplex snmp library project. I’m using the snmpget app to get details off my 1841 successfully, but I now need to know the OID for interface utilization and how to define which interface to get.
I have a problem with SNMP. I using Cisco 3845 in distribution layer. >600 subinterfaces. When my managment system send response - the cpu Utilization on cisco3845 near 100%. I want to prohibited my Cisco answer on response about interface status.
View 2 Replies View RelatedI matched the traffic statistics on one of my Cisco ASA site-site tunnels with the OID:1.3.6.1.4.1.9.9.171.1.4.3.1.1.25.4142 (cipSecTunHistInOctets). I was real proud of myself for a few days until I checked the history and found the OID wasnt working.After some troubleshooting I found that the last four digits (4142 in this case) change whenever the tunnel drops and re-establishes itself. Any way to collect tunnel utilization history on an ASA with SNMP? Is there a different OID I can use thats based on the endpoint IP?
View 2 Replies View RelatedHow to get the Snmp OID for polling the in and out utilization for the CIsco 1900 Series Router interfaces.
View 1 Replies View RelatedI've created a BVI2 where I bridged dot11 0.2 and vlan2 in order to have wired and wireless clients in the same vlan.Some wired client are not reachable from the lan. Wireless clients have no pbl in reaching each other.Monitoring a MAC address that is supposed to be behind the FA2 I have noticed that it moves to vlan2 when in fact it should be behind the FA2.Of course when "show mac-address-table" says it is behind Fa2 the ping to that MAC address works whereas when the TCAM reports it is behind vlan2 it doesn't. Once the MAC address is behind the vlan2 if I clear the mac-address-table and that mac-address is still put behinf Fa2 then the pings works again, sometime I have to perform twice the clear command before the MAC address goes back to the right location.I'd like to understand why the router moves that MAC address from Fa2 to vlan2 and that's the reason for my question in the subject.I don't have any problems for port Fa0 and Fa1."Show int fa2" doesn't show any problem/errors or the likes.BTW even if I force that MAC address to be statically behind FA2 the ping works fine but then stops and if I do "show mac-add" the static entry for it is still there... so looks like there us something that overrides that static entry. If clear everything and I have the mac-address be behind Fa2 then everything starts to work again. I used Fa3 instead of Fa2 and I get the same results.
IOS: c870-advipservicesk9-mz.151-3.T1.bin
I am seeing the following log messages appear on our border edge 7600 router (SUP720-3BXL) The messages seem to appear when tag switching has been enabled on the interface, so somehow related I presume. The MPLS forwarding table is very small however. [code]
I can't see anything that is using up the ACL_TCAM HI BANK using "show tcam global acl" There aren't any ACL's applied to any of the interfaces, or policy-maps. The only ACL's in use are for SNMP, ntp, and VTY. These are very small any way. Interface Gi1/22, and 1/1 have tag switching enabled. [code]
The router has a full BGP routing table learned via an upstream (EBGP) peer neighbor, and an IBGP peer. The CPU utilisation seems fine, as is memory usage. CEF seems to be running okay. It's currently running [code] Are prefix lists part of TCAM? Is the router over-resourced holding a full bgp routing table?
I had a lot of problems with TCAM table in the past and made changes in SDM ended whit that. But now want to be proactive and anticipate the problems in my TCAM table.
If the my template is "default desktop" they support a number of indirect IPv4 routes of 2k. I wanna know automatically by my management tools if this number reaches 1.9k.
That way I can take corrective actions before the problems starts on my network.
we have a WS-X6K-SUP2-2GE running CATOS software, we are facing a TCAM exhaustion.I would like to know the following:
1. during an exhaustion, based on what ACLs will be kept in hardware or moved to software? the name or number gives any precedence to an ACL over another ACL?
2. If the TCAM's utilisation was on the limit and we increased ACEs to a specific ACL, all the ACL will be moved to software or only the new entries?
We have a 3750 stack with a mix of 3750G and 3750X switches. The current active template on the switch is desktop default and we are running EIGRP on the switch with large routing table so we get the TCAM error that a specific prefix cannot be programmed in TCAM memory so it will be software forwarded.%PLATFORM_UCAST-4-PREFIX: One or more, more specific prefixes could not be programmed into TCAM and are being covered by a less specific prefix, and the packets may be software forwarded
This error is quite frequent on a daily basis. My question is that will this error create a high CPU situation and affect traffic processing on the stack causing ESX Hosts to become unresponsive?
following errors.
Nov 7 21:34:50: %EARL_NETFLOW-SP-STDBY-4-TCAM_THRLD: Netflow TCAM threshold exceeded, TCAM Utilization [99%]
Nov 7 21:44:44: %EARL_NETFLOW-SP-4-TCAM_THRLD: Netflow TCAM threshold exceeded, TCAM Utilization [91%]
I've already found this kinds of cases, in this community. So, It seems that Changing the current configuration to 'mls aging fast threshold ## time ## ' is most suitable in our situation.But, I don't know how to calculate the apt threshold value and time value.
[1] sh run | in mls
mls ip multicast flow-stat-timer 9
mls flow ip interface-full
no mls flow ipv6
no mls acl tcam share-global
mls cef error action freeze
[code]....
Any command similar to sup720 "show tcam counters" It doesn't work on Sup2t.....
View 2 Replies View RelatedI have a stack of 3750x switches running 15.0 (2) SE2 IOS. When I reload the switch stack, I am seeing the following message in the logs: IPv6 user port trust TCAM write failed.
View 2 Replies View RelatedI haven't covered this bit in my CCDA studies (yet) but I was thinking, what do people consider too much CPU utilization for:-
A) A switch during normal working hours? (Layer 2 Switch)
B) A Router during normal working hours?
I was thinking a normal level for a switch would be at max 10% and I would get worried at 50-60% if this lasted for several minutes at a time.For a Router I would expect higher utilization in general so I would think up to about 25% during normal usage and at worst case a prolonged period the same as the switch.This isn't something I see discussed very often, except maybe by me when a router goes mental and maxes out at 100%.
I have a Cisco 7506 end cpu utilization from my VIP 0 is going to 100%. The biggest traffic from my interface is aroud 100 Mbps and my bandwdth is 1000Mbps. Who know what could happend?
64556445650707820870990195455665559401024909987026556445558100 * 90 * 80 * * 70 * * 60 * * 50 * * 40 **** * 30 ******#* * 20 #######** * 10 * *** ******************* **********##########****** **** 0....5....1....1....2....2....3....3....4....4....5....5....6....6....7. 0 5 0 5 0 5 0 5 0 5 0 5 0 CPU% per hour (last 72 hours) * = maximum CPU% # = average CPU%
We have CPU reports set to run daily for some of our higher priority switches, and we've noticed that some of the data isn't meshing with what we see on the switch. We have one heavily utilized switch that reports near 100% CPU utilization sometimes. I can do a "show proc cpu history" on that switch and see that at least once an hour over 72 hours, we'll see a near 100% CPU utilization.
The problem is that these spikes never appeare on any of our reports. We'd like to see this info because even if the switch spikes for just a few seconds or a minute, it could still indicate that we may have issues. Without that in the report, we may never realize there could be a problem.
Is there a way for this info to show in the report? I'm under the impression that if LMS polls the switch and doesn't see a high utilization average, then maybe it doesnt' enter that in the report. I guess I'd just like to know how often it pulls this data, and how it decides wath the Min, Max, and Averages are.
how do i know someone is connected to my wireless
View 1 Replies View RelatedWe are currently running ACS 5.4.0.46.0a in a VMWare environement. We have 1 Primary and 1 Secondary running on our ESXi 5.0 cluster at our HQ and 1 secondary running on a standalone ESXi 5.0 at our DR site. All three instances were created at the same time and configure identical. The only difference being the physical box they are running from and that the secondary running on the ESXi cluster is the log collector. We are in the process of migrating from ACS 4.2 and only have 3 systems that authenticate to the new ACS 5.4 servers. Those systems are hardly ever used so there may be only 1 or 2 authenticates a day.
My concern is that the primary is running at around 30% cpu utilization constantly, and the secondaries are running at around 1%. Why the primary would be running the cpu that high when it should be pretty much idle most of the time? Or, how can I find out what process is running the cpu that high ?
We have configured 20 route in ASA 5520. The CPU usage goes to 100 % at the moment when we add a specific route.route inside 10.254.101.0 255. 255. 255.0 10.254.102.254 1.This is the same case when we add this route at the first cli or as the 10th cli or the 21 cli (errespective of the position of cli) There is an another route out of which 20 routes we have configured is route inside 10.254.103.0 255.255.255.0 10.254.102.254 1.The normal case if we dont add the problamatic route , then the CPU utilization is only 2 %.
View 1 Replies View RelatedI have 3845 router where 200 branches are connect. Ho have database server where branch are synch interval period.some of days observation cpu load average 70 % and sometimes it reaches 100 %.yesterday when I give command clear arp then instant cpu load reduce and 20 % yesterday cpu load 12-20 %. Today morning when I give command Cpu proc history then I found cpu load 60 % and at night it was 3 times reaches 100 %. so my question is after clear arp command at least 10 hours cpu utilization 20 % but after that it increase.so for any LAN broadcast it happend ? how i understand cpu high for Broadcasting or anything else.
View 2 Replies View RelatedWhat causes LMS 4.1 to have high memory utilization?
View 4 Replies View RelatedOur Router 7606 is in a problem with high CPU Utilization. We are using one EBGP and one IBGP session. We are also running OSPF with area 0 between two IBGP router to exchange few local networks. When bandwidth cross 100 MB than only CPU use become 100%. when bandwidth consumption is 80MB CPU use become 80% end so on.
Out put is when bandwidth consumption is 34MB
CPU utilization for five seconds: 44%/43%; one minute: 42%; five minutes: 30%
PID Runtime(ms) Invoked uSecs 5Sec 1Min 5Min TTY Process
78 44 9625 4 0.39% 0.03% 0.00% 2 Virtual Exec
13 40 375 106 0.07% 0.00% 0.00% 0 ARP Input
30 116 1098 105 0.07% 0.01% 0.00% 0 IPC Seat Manager
[code]....
I have a hight CPU utilisation problem in my CISCO7609-S routers. the cpu utilisation can rise 99% et this is usually. In the moment of hight CPU the the process CPU give the following:
the show processe cpu history give: show version
I have a 2811 that is really hitting the CPU hard. Nothing shows on CPU processes. It has an IPsec VPN tunnel back to HQ which also has a 2811 that terminates the VPN. The HQ has 2-3 IPsec tunnels to other remote sites. The CPU at the HQ avg 50% utilization during business hrs, peaks at about 80%. The remote one is very high 95% peaks, avg 80%-95% during business hours with bandwidth utilization of only 10-20Mbps. I read somewhere that its possible that fragmentation could be causing this. My question is, if I set the MTU to 1450 on the remote, I am guessing I will need to do all the other routers as well, the HQ and other remote sites? Siince they use the same outside interface to my HQ, is that correct?
View 3 Replies View RelatedWe have Cisco 2811 router and facing high CPU utilisation as 70%/67%;,IOS Runing :c2800nm-advsecurityk9-mz.124-3f.bin.
View 4 Replies View RelatedI am not sure if the issue I have is due to router's performance of my configuration. Currently I have 2621XM connected in my internal network where Fa0/1 is considered untrusted zone and Fa0/0 is considered trusted. It appears that traffic is limited to about 3.17MBps (Mega Bytes) between Fa0/0 and Fa0/1. There are ACLs on the Fa0/1 inbound and Fa0/0 inbound. I am also using ip inspect rules for the Fa0/1 outbound traffic. When I remove ip inspect policy from the Fa0/1 interface, the traffic speed bumps up to about 4.8MBps (which is about 38Mbps - Mega bits).
Each time the CPU utilization is: CPU utilization for five seconds: 99%/99%; one minute: 19%; five minutes: 4% PID Runtime(ms) Invoked uSecs 5Sec 1Min 5Min TTY Process
Access to the router during that time is veerrrryyyyyy slow! Does this mean I am hitting the maximum limit this router can handle?
High cpu utilization on cisco 7206 vxr router.[code]
View 2 Replies View RelatedWe are finally installing 5508 controllers at multiple sites. (Yaaaay) We have an existing SNMP mangement system (Zenoss) that will work fine with these 5508's if I can figure out which OIDs report things like CPU utilization, free mem, temp, number of clients etc. We already have modeler plugins that list the number of APs managed and will also show the wired interface stats. Attached are two files with the resutls of snmpwalk. One has the raw OIDs, the other has the OIDs with the symbolic prefixes.
Most of that I'm looking for seems to be missing. For example, in other Cisco forum posts, it was mentioned that CPU utilization was available via this OID:
agentCurrentCPUUtilization ......OID: 1.3.6.1.4.1.14179.1.1.5.1
[URL]
and, Free Mem was available here:
agentFreeMemory free RAM of in Kbytes ....OID: 1.3.6.1.4.1.14179.1.1.5.3
Problem is, none of those OIDs are returned when I walk the 5508. For example:
[ZenStatus]$ snmpwalk -Ofn -v2c -c M31eRt4 10.254.248.3 | grep -F "1.3.6.1.4.1.14179"
[ZenStatus]$
(nothing even close to the agentCurrentCPUUtilization OID is found)We are currently running 7.0.235.0 .
We have a VPN concentartor which is having few VPN and doing NAT (Static and PAT) as well. One of our customer has added huge number of serves so we have to do hundreds of static and PAT rules.we have really large number of customers which are growing and do so the NAT in VPN concentartor.
I am bit concern and want to know what will be the best way to check that how my VPN concentartor is doing .As we all know its a GUI i try to check few stuff but couldnt get any info.... the model number is 3015.
I am observing very high CPU utilization on my Cisco 7206VXR (NPE-G1) Router. We have done all the necessary troubleshooting but not able to identify root cause. [code]
View 10 Replies View RelatedI am running Cisco Prime 4.2(UNIX version) on a VM. CPU utilization will run between 90 and 100% constantly. Reloading the server will stabilize the CPU for a short period of time, however the CPU usage will always return to 90-100% utilization. Currently I have about 130 devices added to the system.
View 1 Replies View Related