I am having issues with ARP broadcast from our network devices which has Failover virtual IP configured for 2 x physical NIC connection.
Our setup is 2 x DELL N3024F switch connect to 02 x DELL 6224F switch. Default VLAN 1.
a. DELL N3024F switch is not stacked, it has VRRP configured for L3 routing
b. DELL 6224F switch is stacked with port -channel Link Aggregation
c. Port Gi1/0/2 on DELL N3024F SW-01 connect (RJ45) to 1/g1 on DELL 6224F SW-01
d. Port Gi1/0/2 on DELL N3024F SW-02 connect (RJ45) to 2/g1 on DELL 6224F SW-02
Logging message received sample:
Nov xx 10:20:36 172.168.XX.XX-1 ARP[ipMapForwarding]: ipmap_arp_api.c(1149) 391233 %% Received ARP Reply on interface Vl1 with bad target IP address 255.255.255.255. Sender IP is 172.168.XX.XXX, sender MAC is 00:25:97:XX:XX:XX.
These messages flooded and caused DELL N3024F switch to disconnect interface Gi1/0/2 port from DELL 6224F switch. Everytime this happens to either DELL N3024F switch, I have to power reboot the affected switche to get the connection up again.
Am i missing some configuration not properly done for DELL N3224F switch?
DELL 6224F switch is not showing any errors for the same ARP broadcast, and most of the devices is connected to through it.
That’s right, it should stop it from sending ARP packets to a backup router. You do not need to enable portfast, portfast puts the ports into forwarding mode right away, rather than the normal learning process. Typically this is only enabled on edge devices that connect directly to client devices.
It is probably because the port channel is going to each of the VRRP switches, so some traffic is getting sent to the backup VRRP router. If you don’t have the port channel and just had individual links going to each switch it probably would not give the errors.
I just need to disable the port channel link aggregation on DELL 6224F switch for the 2 ports connected to both of the DELL N3024F switch. Is this right?
Do I need to enable auto portfast on both DELL 6224F & N3024F switches?
I tried to configured the 2 ports on DELL 6224F which is connected to DELL N3024F switches.
But, I found that both ports is not member of any port-channel, although under #show interfaces configuration, the Link Aggregate is shown as Admin state - Up.
console#show interfaces configuration
Port Type Duplex Speed Neg Admin State ----- ------------------------------ ------ ------- ---- ----- 1/g1 Gigabit - Level Full 1000 Auto Up 1/g2 Gigabit - Level N/A Unknown Auto Up 1/g3 Gigabit - Level N/A Unknown Auto Up 1/g4 Gigabit - Level Full 1000 Auto Up 1/g5 Gigabit - Level N/A Unknown Auto Up 1/g6 Gigabit - Level N/A Unknown Auto Up 1/g7 Gigabit - Level N/A Unknown Auto Up 1/g8 Gigabit - Level N/A Unknown Auto Up 1/g9 Gigabit - Level N/A Unknown Auto Up 1/g10 Gigabit - Level Full 1000 Auto Up 1/g11 Gigabit - Level N/A Unknown Auto Up 1/g12 Gigabit - Level N/A Unknown Auto Up 1/g13 Gigabit - Level N/A Unknown Auto Up 1/g14 Gigabit - Level N/A Unknown Auto Up 1/g15 Gigabit - Level N/A Unknown Auto Up 1/g16 Gigabit - Level N/A Unknown Auto Up 1/g17 Gigabit - Level Full 1000 Auto Up 1/g18 Gigabit - Level Full 1000 Auto Up 1/g19 Gigabit - Level Full 1000 Auto Up --More-- or (q)uit 1/g20 Gigabit - Level Full 1000 Auto Up 1/g21 Gigabit - Level Full 100 Auto Up 1/g22 Gigabit - Level Full 100 Auto Up 1/g23 Gigabit - Level Full 100 Auto Up 1/g24 Gigabit - Level Full 100 Auto Up 1/xg1 10G - Level N/A Unknown Auto Up 1/xg2 10G - Level N/A Unknown Auto Up 1/xg3 10G - Level N/A Unknown Auto Up 1/xg4 10G - Level N/A Unknown Auto Up 2/g1 Gigabit - Level Full 1000 Auto Up 2/g2 Gigabit - Level N/A Unknown Auto Up 2/g3 Gigabit - Level Full 1000 Auto Up 2/g4 Gigabit - Level N/A Unknown Auto Up 2/g5 Gigabit - Level N/A Unknown Auto Up 2/g6 Gigabit - Level N/A Unknown Auto Up 2/g7 Gigabit - Level Full 1000 Auto Up 2/g8 Gigabit - Level N/A Unknown Auto Up 2/g9 Gigabit - Level Full 1000 Auto Up 2/g10 Gigabit - Level N/A Unknown Auto Up 2/g11 Gigabit - Level N/A Unknown Auto Up 2/g12 Gigabit - Level N/A Unknown Auto Up 2/g13 Gigabit - Level N/A Unknown Auto Up 2/g14 Gigabit - Level N/A Unknown Auto Up --More-- or (q)uit 2/g15 Gigabit - Level N/A Unknown Auto Up 2/g16 Gigabit - Level N/A Unknown Auto Up 2/g17 Gigabit - Level Full 1000 Auto Up 2/g18 Gigabit - Level N/A Unknown Auto Up 2/g19 Gigabit - Level Full 1000 Auto Up 2/g20 Gigabit - Level Full 1000 Auto Up 2/g21 Gigabit - Level Full 100 Auto Up 2/g22 Gigabit - Level Full 100 Auto Up 2/g23 Gigabit - Level N/A Unknown Auto Up 2/g24 Gigabit - Level Half 10 Auto Up 2/xg1 10G - Level N/A Unknown Auto Up 2/xg2 10G - Level N/A Unknown Auto Up 2/xg3 10G - Level N/A Unknown Auto Up 2/xg4 10G - Level N/A Unknown Auto Up
Ch Type Admin State --- ------------------------------ ----- ch1 Link Aggregate Up ch2 Link Aggregate Up ch3 Link Aggregate Up ch4 Link Aggregate Up --More-- or (q)uit ch5 Link Aggregate Up ch6 Link Aggregate Up ch7 Link Aggregate Up ch8 Link Aggregate Up ch9 Link Aggregate Up ch10 Link Aggregate Up ch11 Link Aggregate Up ch12 Link Aggregate Up ch13 Link Aggregate Up ch14 Link Aggregate Up ch15 Link Aggregate Up ch16 Link Aggregate Up ch17 Link Aggregate Up ch18 Link Aggregate Up ch19 Link Aggregate Up ch20 Link Aggregate Up ch21 Link Aggregate Up ch22 Link Aggregate Up ch23 Link Aggregate Up ch24 Link Aggregate Up ch25 Link Aggregate Up ch26 Link Aggregate Up ch27 Link Aggregate Up --More-- or (q)uit ch28 Link Aggregate Up ch29 Link Aggregate Up ch30 Link Aggregate Up ch31 Link Aggregate Up ch32 Link Aggregate Up ch33 Link Aggregate Up ch34 Link Aggregate Up ch35 Link Aggregate Up ch36 Link Aggregate Up ch37 Link Aggregate Up ch38 Link Aggregate Up ch39 Link Aggregate Up ch40 Link Aggregate Up ch41 Link Aggregate Up ch42 Link Aggregate Up ch43 Link Aggregate Up ch44 Link Aggregate Up ch45 Link Aggregate Up ch46 Link Aggregate Up ch47 Link Aggregate Up ch48 Link Aggregate Up
Flow Control:Enabled
Here's the interface detail for 1/g1 & 2/g1:
console#show interfaces detail ethernet 1/g1
Port Type Duplex Speed Neg Admin Link State State ----- ------------------------------ ------ ------- ---- ----- ----- 1/g1 Gigabit - Level Full 1000 Auto Up Up
Port Description ---- -------------------------------------------------------------------------- 1/g1
VLAN Name Egress rule ---- --------------------------------- -----------
Forbidden VLANS: VLAN Name ---- ---------------------------------
Port 1/g1 Enabled State: Forwarding Role: Designated --More-- or (q)uit Port id: 128.1 Port Cost: 20000 Port Fast: No (Configured: no ) Root Protection: No Designated bridge Priority: 32768 Address: 80:00:5C:26:0A:FB:B5:9D Designated port id: 128.1 Designated path cost: 40000 CST Regional Root: 80:00:5C:26:0A:FB:B5:9D CST Port Cost: 0 BPDU: sent 1107868, received 133
console#show interfaces detail ethernet 2/g1
Port Type Duplex Speed Neg Admin Link State State ----- ------------------------------ ------ ------- ---- ----- ----- 2/g1 Gigabit - Level Full 1000 Auto Up Up
Port Description ---- -------------------------------------------------------------------------- 2/g1
VLAN Name Egress rule ---- --------------------------------- -----------
Forbidden VLANS: VLAN Name ---- ---------------------------------
Port 2/g1 Enabled State: Forwarding Role: Designated --More-- or (q)uit Port id: 128.53 Port Cost: 20000 Port Fast: No (Configured: no ) Root Protection: No Designated bridge Priority: 32768 Address: 80:00:5C:26:0A:FB:B5:9D Designated port id: 128.53 Designated path cost: 40000 CST Regional Root: 80:00:5C:26:0A:FB:B5:9D CST Port Cost: 0 BPDU: sent 804242, received 82
Next, I did a #show spanning-tree port-channel detail, the results for the 2 ports as follow:
Spanning tree Enabled (BPDU flooding : Disabled) Portfast BPDU filtering Disabled mode rstp CST Regional Root: 80:00:5C:26:0A:FB:B5:9D Regional Root Path Cost: 0 ROOT ID Address 00:0A:DC:6D:43:40 Path Cost 40000 Root Port 1/g19 Hello Time 2 Sec Max Age 20 sec Forward Delay 15 sec Bridge ID Priority 32768 Address 80:00:5C:26:0A:FB:B5:9D Hello Time 2 Sec Max Age 20 sec Forward Delay 15 sec
Number of topology changes 4694 last change occurred 0d2h17m49s ago Times: hold 6, hello 2, max age 20, forward delay 15
Port 1/g1 Enabled State: Forwarding Role: Designated Port id: 128.1 Port Cost: 20000 Port Fast: No (Configured: no ) Root Protection: No Designated bridge Priority: 32768 Address: 5C:26:0A:FB:B5:9D Designated port id: 128.1 External path cost: 20000 CST Regional Root: 80:00:5C:26:0A:FB:B5:9D CST Port Cost: 0 --More-- or (q)uit BPDU: sent 1108017, received 133
Port 2/g1 Enabled State: Forwarding Role: Designated Port id: 128.53 Port Cost: 20000 Port Fast: No (Configured: no ) Root Protection: No Designated bridge Priority: 32768 Address: 5C:26:0A:FB:B5:9D Designated port id: 128.53 External path cost: 20000 CST Regional Root: 80:00:5C:26:0A:FB:B5:9D CST Port Cost: 0 BPDU: sent 804408, received 82
Last, I did a #show tech-support
from the "Show Isdp Neighbors", it knows of the N3204F switch as follow:
***************** Show Isdp Neighbors *****************
Capability Codes: R - Router, T - Trans Bridge, B - Source Route Bridge, S - Switch, H - Host, I - IGMP, r - Repeater Device ID Intf Holdtime Capability Platform Port ID ---------------------- ------- --------- ------------ -------------------- ---------------------- CN0WKWF42829859G0004A0 1/g1 171 R N3024F Gi1/0/2 CN0FN848282982390047A1 1/g17 173 R PCT6224F 1/0/17 CN0FN8482829829H0024A1 1/g18 172 R PCT6224F 1/0/16 CN0FN848282982390040A1 1/g19 153 R PCT6224F 1/0/12 CN0FN848282982390026A1 1/g20 160 R PCT6224F 1/0/13 CN0WKWF4282985AA0044A0 2/g1 149 R N3024F Gi1/0/2 CN0FN848282982390039A1 2/g17 173 R PCT6224F 1/0/17 CN0FN848282982390027A1 2/g19 175 R PCT6224F 1/0/12 CN0FN848282982390050A1 2/g20 177 R PCT6224F 1/0/13
Sorry for my limited knowledge of the proper CLI and configuration for L3 managed switches;
How do I proceed to configure the 2 specific ports for connection to 2 x N3024F switch (VRRP routing enabled)?
I need to resolve this problem as its giving me nightmares whenever the 2 port is disabled.
The DELL 6224F switch was not configured by me as it was done by a previous vendor.
The 2 x new DELL N3024F switches is added to support new windows 2012 servers and network data concentrators.
From 1 of the N3024F switch config:
No Configured Ports for Port-channel
***************** Show Storm-control *****************
802.3x Flow Control Mode....................... Enable
***************** Show PVST/RPVST Summary ***************** Neither PVST nor Rapid-PVST is enabled
***************** Show Spanning-tree ***************** Spanning Tree: Enabled - BPDU Flooding: Disabled - Portfast BPDU Filtering: Disabled Mode: rstp CST Regional Root: 80:00:F8:B1:56:97:67:12 Regional Root Path Cost: 0 ROOT ID Priority 32768 Address 000A.DC6D.4340 Path Cost 60000 Root Port Gi1/0/2 Hello Time: 2s Max Age: 20s Forward Delay: 15s Transmit Hold Count: 6s Bridge Max Hops: 20 Bridge ID Priority 32768 Address F8B1.5697.6712 Hello Time: 2s Max Age: 20s Forward Delay: 15s Interfaces
Name State Prio.Nbr Cost Sts Role Restricted --------- -------- --------- --------- ---- ----- ---------- Gi1/0/1 Enabled 128.1 0 DIS Disb No Gi1/0/2 Enabled 128.2 20000 FWD Root No
***************** Show Isdp Neighbors *****************
Capability Codes: R - Router, T - Trans Bridge, B - Source Route Bridge, S - Switch, H - Host, I - IGMP, r - Repeater Device ID Intf Holdtime Capability Platform Port ID ------------------------ --------- --------- ---------- ---------------- --------- CN0FN848282982390042A16 Gi1/0/2 175 R PCT6224F 2/0/1
***************** Show Lldp Remote-device All ***********
LLDP Remote Device Summary
Local Interface RemID Chassis ID Port ID System Name --------- ------- ------------------- ----------------- ----------------- Gi1/0/2 1 5C:26:0A:FB:B5:9D 2/0/1
Can you post the VRRP config from the N3024s? Is it always the same port that gets disabled? The ARP request is getting sent to 255.255.255.255 which is what happens when it doesn’t know where to send the packet. Is the default gateway on the 6224s set to the IP of the VRRP IP?
DELL-Josh Cr
Community Manager
•
9694 Posts
•
43679 Points
2226
0
Posted November 30th, 2016 09:00
That’s right, it should stop it from sending ARP packets to a backup router. You do not need to enable portfast, portfast puts the ports into forwarding mode right away, rather than the normal learning process. Typically this is only enabled on edge devices that connect directly to client devices.