Unsolved
This post is more than 5 years old
4 Posts
0
27903
March 28th, 2012 06:00
Dell 6024f multicast snooping and filtering help required
Hello.
I have Dell Powerconnect 6024f switch and experiencing problems with switching multicast traffic with it.
I also have PC Streamer and 2 more switches (Edge-Core ES-3528M).
Multicast consumer device is notebook that is connected to one of Edge-Core's.
Topology looks like:
1. PC Streamer connected to port 24. Port 24 pvid is 50, port is vlan 50 untagged. PC Streamer is streaming 9 multicast groups - 230.111.1.1-230.111.1.9.
2. Ports 17 and 18 are connected to ES-3528M switches. These ports have vlan 50 enabled as tagged. Edge-Core's also have vlan 50 enabled as tagged.
3. Consumer notebook is connected to ES-3528M (the one who is on 6024f 17th port). ES-3528M has MVR correctly set up.
Once I turn on multicast streaming I can see 40mbit trafic on 6024f - on 24, 17 and 18 ports. It means traffic is present on every port that have vlan 50 enabled.
I can successfully "listen" for multicast stream on notebook.
BUT! I need no traffic to be sent to port 18 of 6024f - there are no consumers there at the time!
Looks like activating multicast snooping and filtering on 6024f should resolve my issue... but unfortunately - no :(
I've activated multicast snooping and bridge multicast filtering globally and on vlan 50 - but still I have 40mbit (full stream) on every port - 17, 18 and 24.
Please guide me to successful solutions for my task.
Thanks in advance,
with Best Regards,
Konstantin


DELL-Willy M
802 Posts
0
March 28th, 2012 10:00
Here are some trouble shooting steps for IGMP Snooping to manage and isolate Multicast traffic.
•Use show ip igmp snooping groups command to verify that no registration has been made (from another station?) for the additional groups.
•Use show bridge multicast filtering command to check if the port is configured to forward all traffic. Use bridge multicast forward-all remove command to change this status.
•Use show ip igmp snooping mrouter to check if port is an mrouter port (receives all multicast traffic)
•Use show bridge multicast address-table address command to check if addressed are configured statically on the port. Use bridge multicast address x.x.x.x remove command to remove entries.
•Check if some of the Multicast IP addresses received on the port are translated to the same MAC address (Multicast IP to MAC translation)
•Check if group is of type 224.0.0.0 - 239.128.0.0 (reserved multicast addresses).
Hope this helps,
Keep us updated.
poisoner
4 Posts
0
March 28th, 2012 14:00
Well, let me first attach my running config for 6024f (sorry for it's size - this switch is currently in production):
spanning-tree mode rstp
interface range ethernet g(1-12,14-24)
spanning-tree disable
exit
interface range ethernet g(1-12,14-18,20-24)
spanning-tree cost 20000
exit
interface ethernet g19
spanning-tree cost 2000000
exit
bridge multicast filtering
interface range ethernet all
switchport mode general
exit
vlan database
vlan 11-25,30-31,50,100-101,500,600,700
exit
interface ethernet g1
switchport general pvid 11
exit
interface ethernet g2
switchport general pvid 12
exit
interface ethernet g3
switchport general pvid 13
exit
interface ethernet g4
switchport general pvid 25
exit
interface ethernet g5
switchport general pvid 24
exit
interface ethernet g6
switchport general pvid 19
exit
interface ethernet g7
switchport general pvid 14
exit
interface ethernet g8
switchport general pvid 15
exit
interface ethernet g9
switchport general pvid 16
exit
interface ethernet g10
switchport general pvid 17
exit
interface ethernet g11
switchport general pvid 20
exit
interface ethernet g12
switchport general pvid 21
exit
interface ethernet g15
switchport general pvid 700
exit
interface ethernet g18
switchport general pvid 100
exit
interface ethernet g20
switchport general pvid 18
exit
interface ethernet g22
switchport general pvid 18
exit
interface ethernet g23
switchport general pvid 100
exit
interface ethernet g24
switchport general pvid 50
exit
interface ethernet g1
switchport general allowed vlan add 11 untagged
exit
interface range ethernet g(17-18,21)
switchport general allowed vlan add 11
exit
interface ethernet g2
switchport general allowed vlan add 12 untagged
exit
interface range ethernet g(17-18,21)
switchport general allowed vlan add 12
exit
interface ethernet g3
switchport general allowed vlan add 13 untagged
exit
interface range ethernet g(17-18,21)
switchport general allowed vlan add 13
exit
interface ethernet g7
switchport general allowed vlan add 14 untagged
exit
interface range ethernet g(17-18,21)
switchport general allowed vlan add 14
exit
interface ethernet g8
switchport general allowed vlan add 15 untagged
exit
interface range ethernet g(17-18,21)
switchport general allowed vlan add 15
exit
interface ethernet g9
switchport general allowed vlan add 16 untagged
exit
interface range ethernet g(17-18,21)
switchport general allowed vlan add 16
exit
interface ethernet g10
switchport general allowed vlan add 17 untagged
exit
interface range ethernet g(17-18,21)
switchport general allowed vlan add 17
exit
interface ethernet g22
switchport general allowed vlan add 18 untagged
exit
interface range ethernet g(17-18,20-21)
switchport general allowed vlan add 18
exit
interface ethernet g6
switchport general allowed vlan add 19 untagged
exit
interface range ethernet g(14,17-18,21)
switchport general allowed vlan add 19
exit
interface ethernet g11
switchport general allowed vlan add 20 untagged
exit
interface range ethernet g(17-18,21)
switchport general allowed vlan add 20
exit
interface range ethernet g(12,17-18,21)
switchport general allowed vlan add 21
exit
interface range ethernet g(12,17-18,21)
switchport general allowed vlan add 22
exit
interface range ethernet g(5,17-18,21)
switchport general allowed vlan add 23
exit
interface range ethernet g(5,17-18,21)
switchport general allowed vlan add 24
exit
interface ethernet g4
switchport general allowed vlan add 25 untagged
exit
interface range ethernet g(17-18,21)
switchport general allowed vlan add 25
exit
interface ethernet g24
switchport general allowed vlan add 50 untagged
exit
interface range ethernet g(17-18)
switchport general allowed vlan add 50
exit
interface ethernet g23
switchport general allowed vlan add 100 untagged
exit
interface range ethernet g(1-14,17-18,20-21,24)
switchport general allowed vlan add 100
exit
interface range ethernet g(15-16)
switchport forbidden vlan add 100
exit
interface range ethernet g(1-12,14,17-18,20-21,23)
switchport general allowed vlan add 101
exit
interface ethernet g15
switchport forbidden vlan add 101
exit
interface range ethernet g(17-18,20,23)
switchport general allowed vlan add 500
exit
interface ethernet g14
switchport general allowed vlan add 600
exit
interface ethernet g15
switchport general allowed vlan add 700 untagged
exit
interface vlan 11
name v11
exit
interface vlan 12
name v12
exit
interface vlan 13
name v13
exit
interface vlan 14
name v14
exit
interface vlan 15
name v15
exit
interface vlan 16
name v16
exit
interface vlan 17
name v17
exit
interface vlan 18
name v18
exit
interface vlan 19
name v19
exit
interface vlan 20
name v20
exit
interface vlan 21
name v21
exit
interface vlan 22
name v22
exit
interface vlan 23
name v23
exit
interface vlan 24
name v24
exit
interface vlan 25
name v25
exit
interface vlan 30
name v30
exit
interface vlan 31
name v31
exit
interface vlan 50
name multicast
exit
interface vlan 100
name v100
exit
interface vlan 101
name v101
exit
interface vlan 500
name v500
exit
interface vlan 600
name v600
exit
interface vlan 700
name v700
exit
ip igmp snooping
interface vlan 50
ip igmp snooping
exit
interface vlan 11
ip address 172.25.11.1 255.255.255.0
exit
interface vlan 12
ip address 172.25.12.1 255.255.255.0
exit
interface vlan 13
ip address 172.25.13.1 255.255.255.0
exit
interface vlan 14
ip address 172.25.14.1 255.255.255.0
exit
interface vlan 15
ip address 172.25.15.1 255.255.255.0
exit
interface vlan 16
ip address 172.25.16.1 255.255.255.0
exit
interface vlan 17
ip address 172.25.17.1 255.255.255.0
exit
interface vlan 18
ip address 172.25.18.1 255.255.255.0
exit
interface vlan 19
ip address 172.25.19.1 255.255.255.0
exit
interface vlan 20
ip address 172.25.20.1 255.255.255.0
exit
interface vlan 21
ip address 172.25.21.1 255.255.255.0
exit
interface vlan 22
ip address 172.25.22.1 255.255.255.0
exit
interface vlan 23
ip address 172.25.23.1 255.255.255.0
exit
interface vlan 24
ip address 172.25.24.1 255.255.255.0
exit
interface vlan 25
ip address 172.25.25.1 255.255.255.0
exit
interface vlan 50
ip address 172.25.50.1 255.255.255.0
exit
interface vlan 100
ip address 172.25.1.1 255.255.255.0
exit
interface vlan 101
ip address 172.25.2.1 255.255.255.0
exit
interface vlan 600
ip address 192.168.10.5 255.255.255.0
exit
interface vlan 700
ip address 10.200.0.1 255.255.255.0
exit
hostname test
management access-list 1
permit ip-source 172.25.1.0 mask 255.255.255.0 vlan 100
permit ip-source 172.25.1.0 mask 255.255.255.0 out-of-band-eth 1
exit
management access-class 1
logging 172.25.1.250 severity debugging facility local5
logging file debugging
username admin2 password c84258e9c39059a89ab77d846ddab909 level 15 encrypted
snmp-server community Dell_Network_Manager rw view DefaultSuper
snmp-server group public v1 context router read Default
snmp-server group public v1 context oob read Default
clock timezone 2
clock summer-time recurring eu zone utc
clock source sntp
sntp client poll timer 10800
sntp unicast client enable
sntp unicast client poll
sntp server 172.25.1.250 poll
interface vlan 100
sntp client enable
exit
interface out-of-band-eth 1
ip address 172.25.1.1 255.255.255.0
exit
interface out-of-band-eth 1
ip default-gateway 172.25.1.250
exit
logging OOB/172.25.1.250 severity debugging facility local5
Next, I'll post output of running commands you have suggested:
1. "show ip igmp snooping groups:"
Vlan IP Address Querier Ports
------ ------------------------ ------- -----------------------------------
50 224-239.239|111.1.2 Yes g17
Notebook --> ES 3528M --> 6024f (17th port) - currently viewing one of multicast streams (230.111.1.2)
2. "show bridge multicast filtering 50":
Filtering: Enabled
VLAN: 50
Forward-All
Port Static Status
------ --------- ---------
g17 - Forward(d)
g18 - Filter
g24 - Filter
3. "show ip igmp snooping mrouter":
VLAN Ports
------- ----------------------------------------
50 g17
4. "show bridge multicast address-table":
Vlan MAC address type Ports
------ ----------------------- -------- ------------------------------
50 01:00:5e:6f:01:02 dynamic g17
Forbidden ports for multicast addresses:
Vlan MAC address Ports
------ ----------------------- ------------------------------
5. Check if some of the Multicast IP addresses received on the port are translated to the same MAC address (Multicast IP to MAC translation)
There is no other multicast traffic except the one I'm using for my tests.
6. Check if group is of type 224.0.0.0 - 239.128.0.0 (reserved multicast addresses).
My multicast range is 230.111.1.1 - 230.111.1.9. So, yes, it is of multicast type :-)
I hope this info will help us to move further and achieve victory :)
Thanks in advance,
with Best Regards,
Konstantin
P.S. login/pass for accessing switch using config I've posted are admin2/admin2.
DELL-Willy M
802 Posts
1
March 28th, 2012 17:00
Have you tried running this on port 18 interface to try and stop the multicast?
bridge multicast forward-all {add |remove} {ethernetinterface-list | portchannelport-channelnumber-list}
Enables forwarding of all multicast packets on a port. Use the no form of this command to return to default.
More information is provided in the User Guide for Multicast Forwarding Support starting on page 317,
support.dell.com/.../ugbk4.pdf
poisoner
4 Posts
0
March 29th, 2012 00:00
Here is the sequence I've just executed on switch:
test# conf
test(config)# interface vlan 50
test(config-if)# bridge multicast forward-all remove ethernet g18
test(config-if)# ex
test(config)# ex
test# show bridge multicast filtering 50
Filtering: Enabled
VLAN: 50
Forward-All
Port Static Status
------ --------- ---------
g17 - Forward(d)
g18 - Filter
g24 - Filter
BTW, here are versions:
Software Version 2.0.0.13
Boot Version 1.0.0.13
Hardware Version 00.01.64
DELL-Willy M
802 Posts
1
March 29th, 2012 16:00
Here is a link to the current firmware download:
www.dell.com/.../DriverDetails
It looks like you are 2 versions behind on the firmware. The boot code you have is current and will not need to be updated.
You can run the command below on the VLAN 50 interface and it should stop.
bridge multicast forbidden forward-all add eth g18
poisoner
4 Posts
0
March 30th, 2012 01:00
I've succeeded in achieving my goal with using one more Edge-Core ES3528m. I've set it up between my streamer and 6024f swicth.
So current topology looks like:
PC Streamer --> ES 3528M(with activated snooping and MVR) --> 6024F (with bridge multicast forbidden on all ports) --> ES 3528m (with multicast consumer ).
I think this topology is suitable for me and I'll keep this one :)
Thanks for help!
P.S. I've tried to bridge multicast forbidden add eth g18 while streaming directly to 24th port of 6024f - still no luck - full stream is present on port g18.