<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: is it a bug? msfc and fwsm on 7609 who drop echo reply packe in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556115#M615937</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The FWSM seems to be sending the reply out.&lt;/P&gt;&lt;P&gt;You need to open a TAC case so, we can gather ELAM capture and see where the reply packet is getting lost.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 22 Nov 2010 03:38:02 GMT</pubDate>
    <dc:creator>Kureli Sankar</dc:creator>
    <dc:date>2010-11-22T03:38:02Z</dc:date>
    <item>
      <title>is it a bug? msfc and fwsm on 7609 who drop echo reply packet?</title>
      <link>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556110#M615932</link>
      <description>&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;Device:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;7609#show module &lt;BR /&gt;Mod Ports Card Type Model Serial No.&lt;BR /&gt;--- ----- -------------------------------------- ------------------ -----------&lt;BR /&gt;1 48 CEF720 48 port 1000mb SFP WS-X6748-SFP SAL10425EVS&lt;BR /&gt;2 16 16 port 1000mb GBIC ethernet WS-X6416-GBIC SAL093069EP&lt;BR /&gt;3 6 Firewall Module WS-SVC-FWM-1 SAD11040045&lt;BR /&gt;4 8 Network Analysis Module WS-SVC-NAM-2 SAD105000NK&lt;BR /&gt;5 2 Supervisor Engine 720 (Active) WS-SUP720-BASE SAD083408HL&lt;BR /&gt;9 48 CEF720 48 port 10/100/1000mb Ethernet WS-X6748-GE-TX SAL1013H2RL&lt;BR /&gt;&lt;BR /&gt;Mod MAC addresses Hw Fw Sw Status&lt;BR /&gt;--- ---------------------------------- ------ ------------ ------------ -------&lt;BR /&gt;1 001a.a2a2.e988 to 001a.a2a2.e9b7 1.10 12.2(14r)S5 12.2(18)SXD1 Ok&lt;BR /&gt;2 000c.8515.d810 to 000c.8515.d81f 2.5 5.4(2) 8.3(0.156)RO Ok&lt;BR /&gt;3 001a.6d66.1bdc to 001a.6d66.1be3 4.1 7.2(1) 3.2(11) Ok&lt;BR /&gt;4 001b.2a65.4dcc to 001b.2a65.4dd3 4.2 7.2(1) 3.5(1b) Ok&lt;BR /&gt;5 0011.92e7.0148 to 0011.92e7.014b 3.1 7.7(1) 12.2(18)SXD1 Ok&lt;BR /&gt;9 0017.5954.1be0 to 0017.5954.1c0f 2.3 12.2(14r)S5 12.2(18)SXD1 Ok&lt;BR /&gt;&lt;BR /&gt;Mod Sub-Module Model Serial Hw Status &lt;BR /&gt;--- --------------------------- ------------------ ------------ ------- -------&lt;BR /&gt;1 Centralized Forwarding Card WS-F6700-CFC SAL1050AHXE 4.0 Ok&lt;BR /&gt;5 Policy Feature Card 3 WS-F6K-PFC3A SAD08260420 2.3 Ok&lt;BR /&gt;5 MSFC3 Daughterboard WS-SUP720 SAD08300FAP 2.2 Ok&lt;BR /&gt;9 Centralized Forwarding Card WS-F6700-CFC SAL1004BEJA 2.0 Ok&lt;BR /&gt;&lt;BR /&gt;Mod Online Diag Status &lt;BR /&gt;--- -------------------&lt;BR /&gt;1 Pass&lt;BR /&gt;2 Pass&lt;BR /&gt;3 Pass&lt;BR /&gt;4 Pass&lt;BR /&gt;5 Pass&lt;BR /&gt;9 Pass&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;Topology:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;host(172.16.44.154/16 gw 172.16.1.10)--(interface vlan1 172.16.1.10/16)msfc(interface vlan249 192.168.249.2/24)--(inside 192.168.249.1/24)fwsm&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #f8fafd;"&gt;at msfc ,take 172.16.1.10 as sourse ping 192.168.249.1, pass~&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #f8fafd;"&gt;at fwsm, ping 192.168.249.2 and 172.16.1.10,&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; pass~&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #f8fafd;"&gt;at host, ping 172.16.1.10 and 192.168.249.2,&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; pass~&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #f8fafd;"&gt;at host, ping 192.168.249.1&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; time out....&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #f8fafd;"&gt;at fwsm, debug icmp trace, as show &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #333333; background-color: #f8fafd;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ICMP echo request (len 32 id 2 seq 52238) 172.16.44.154 &amp;gt; 192.168.249.1&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ICMP echo reply (len 32 id 2 seq 52238) 192.168.249.1 &amp;gt; 172.16.44.154&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ICMP echo request (len 32 id 2 seq 52494) 172.16.44.154 &amp;gt; 192.168.249.1&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ICMP echo reply (len 32 id 2 seq 52494) 192.168.249.1 &amp;gt; 172.16.44.154&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ICMP echo request (len 32 id 2 seq 52750) 172.16.44.154 &amp;gt; 192.168.249.1&lt;BR /&gt;&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; ICMP echo reply (len 32 id 2 seq 52750) 192.168.249.1 &amp;gt; 172.16.44.154&lt;BR /&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; there has echo reply packet&amp;nbsp; sending back to msfc ,so ping on msfc is ok&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; but this host is directly connect on (7609 WS-X6748-GE-TX) ,gateway is also on&amp;nbsp; this msfc .&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;why this host has not receive the echo reply packet? who drop the packet?&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;on 7609's config ,there has no acl deny the icmp or deny the packet&amp;nbsp; from 192.168.249.1.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;This failure occurred after a 7609 restart,cold start ~ &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;i'm sorry for my poor english~&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 19:12:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556110#M615932</guid>
      <dc:creator>rbc01524101</dc:creator>
      <dc:date>2019-03-11T19:12:10Z</dc:date>
    </item>
    <item>
      <title>Re: is it a bug? msfc and fwsm on 7609 who drop echo reply packe</title>
      <link>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556111#M615933</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;Hi Zhijie.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;I am not aware of any such bug on version 3.2(11).&amp;nbsp; However, since ICMP trace is showing us the reply coming back.&amp;nbsp; We need to have a quick check on the MAC address to which the reply is send across.&amp;nbsp; One of easy way to find this out is capture on FWSM vlan nameif as Inside.&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;show run access-list cap&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;! If there is no ACL&lt;/SPAN&gt;&lt;SPAN style="color: #003366;"&gt; then add&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;access-list cap per icmp ho 172.16.44.154 ho 192.168.249.1&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;access-list cap per icmp&amp;nbsp; ho 192.168.249.1 ho 172.16.44.154&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;!RUN a capture&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;cap in in in ac cap pa 1522 bu 2048000&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;!&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;show cap in&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;Along with show cap in, can you please share &lt;/SPAN&gt;&lt;SPAN style="color: #003366;"&gt;show route, show arp from FWSM and show arp, show interface from MSFC.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #003366;"&gt;-Deepak&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Nov 2010 12:30:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556111#M615933</guid>
      <dc:creator>Deepak Sharma</dc:creator>
      <dc:date>2010-11-20T12:30:22Z</dc:date>
    </item>
    <item>
      <title>Re: is it a bug? msfc and fwsm on 7609 who drop echo reply packe</title>
      <link>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556112#M615934</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I see the SUP is running &lt;SPAN style="color: #000000; background-color: #e6ecf9;"&gt;12.2(18)SXD1 Ok.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you have DEC (Distributed ether channel) configured?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could be CSCee10005&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;amp;bugId=CSCee10005"&gt;http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&amp;amp;bugId=CSCee10005&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Upgrade the switch past 12.2(18)SXF7 or above and see if the problem persist.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Pls. open a TAC case where we can gather an ELAM capture on the SUP and see if this is this defect for sure.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 20 Nov 2010 16:44:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556112#M615934</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2010-11-20T16:44:56Z</dc:date>
    </item>
    <item>
      <title>Re: is it a bug? msfc and fwsm on 7609 who drop echo reply packe</title>
      <link>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556113#M615935</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thank you for answer my problem~&lt;/P&gt;&lt;P&gt;as follow yours step~&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;FWSM# show running-config access-list cap&lt;BR /&gt;access-list cap extended permit icmp host 172.16.44.154 host 192.168.249.1 &lt;BR /&gt;access-list cap extended permit icmp host 192.168.249.1 host 172.16.44.154&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i&amp;nbsp; capture icmp on fwsm inside ,as&amp;nbsp; show&amp;nbsp; ,there are echo reply packets sending back on inside ~&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;FWSM# show capture in&lt;BR /&gt;14 packets seen, 14 packets captured&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 1: 06:24:16.326613650 802.1Q vlan#249 P0 172.16.44.154 &amp;gt; 192.168.249.1: icmp: echo request&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 2: 06:24:16.326613650 802.1Q vlan#249 P0 192.168.249.1 &amp;gt; 172.16.44.154: icmp: echo reply&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 3: 06:24:21.326618900 802.1Q vlan#249 P0 172.16.44.154 &amp;gt; 192.168.249.1: icmp: echo request&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 4: 06:24:21.326618900 802.1Q vlan#249 P0 192.168.249.1 &amp;gt; 172.16.44.154: icmp: echo reply&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 5: 06:24:27.326624400 802.1Q vlan#249 P0 172.16.44.154 &amp;gt; 192.168.249.1: icmp: echo request&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 6: 06:24:27.326624400 802.1Q vlan#249 P0 192.168.249.1 &amp;gt; 172.16.44.154: icmp: echo reply&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 7: 06:24:32.326629900 802.1Q vlan#249 P0 172.16.44.154 &amp;gt; 192.168.249.1: icmp: echo request&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 8: 06:24:32.326629900 802.1Q vlan#249 P0 192.168.249.1 &amp;gt; 172.16.44.154: icmp: echo reply&lt;BR /&gt;&amp;nbsp;&amp;nbsp; 9: 06:24:38.326635400 802.1Q vlan#249 P0 172.16.44.154 &amp;gt; 192.168.249.1: icmp: echo request&lt;BR /&gt;&amp;nbsp; 10: 06:24:38.326635400 802.1Q vlan#249 P0 192.168.249.1 &amp;gt; 172.16.44.154: icmp: echo reply&lt;BR /&gt;&amp;nbsp; 11: 06:24:43.326640900 802.1Q vlan#249 P0 172.16.44.154 &amp;gt; 192.168.249.1: icmp: echo request&lt;BR /&gt;&amp;nbsp; 12: 06:24:43.326640900 802.1Q vlan#249 P0 192.168.249.1 &amp;gt; 172.16.44.154: icmp: echo reply&lt;BR /&gt;&amp;nbsp; 13: 06:24:49.326646400 802.1Q vlan#249 P0 172.16.44.154 &amp;gt; 192.168.249.1: icmp: echo request&lt;BR /&gt;&amp;nbsp; 14: 06:24:49.326646400 802.1Q vlan#249 P0 192.168.249.1 &amp;gt; 172.16.44.154: icmp: echo reply&lt;/P&gt;&lt;P&gt;--------------------------------------------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;FWSM# show arp &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; inside 192.168.249.2 001c.0f5f.9f80 &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; eobc 127.0.0.51 0000.1500.0000 &lt;BR /&gt;FWSM# show route&lt;/P&gt;&lt;P&gt;S&amp;nbsp;&amp;nbsp;&amp;nbsp; 172.16.0.0 255.255.0.0 [1/0] via 192.168.249.2, inside &lt;BR /&gt;C&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.249.0 255.255.255.0 is directly connected, inside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-----------------------------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;7609#show arp | include Vlan249&lt;BR /&gt;Internet&amp;nbsp; 192.168.249.1&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 190&amp;nbsp;&amp;nbsp; 001a.a1e8.f880&amp;nbsp; ARPA&amp;nbsp;&amp;nbsp; Vlan249&lt;BR /&gt;Internet&amp;nbsp; 192.168.249.2&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -&amp;nbsp;&amp;nbsp; 001c.0f5f.9f80&amp;nbsp; ARPA&amp;nbsp;&amp;nbsp; Vlan249&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;route table on 7609&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;C&amp;nbsp;&amp;nbsp;&amp;nbsp; 172.16.0.0/16 is directly connected, Vlan1&lt;/P&gt;&lt;P&gt;C&amp;nbsp;&amp;nbsp;&amp;nbsp; 192.168.249.0/24 is directly connected, Vlan249&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show interface on msfc vlan 1 &amp;amp; vlan 249&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;7609#show interfaces vlan 1&lt;BR /&gt;Vlan1 is up, line protocol is up &lt;BR /&gt;&amp;nbsp; Hardware is EtherSVI, address is 001c.0f5f.9f80 (bia 001c.0f5f.9f80)&lt;BR /&gt;&amp;nbsp; Internet address is 172.16.1.10/16&lt;BR /&gt;&amp;nbsp; MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec, &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; reliability 255/255, txload 8/255, rxload 5/255&lt;BR /&gt;&amp;nbsp; Encapsulation ARPA, loopback not set&lt;BR /&gt;&amp;nbsp; ARP type: ARPA, ARP Timeout 04:00:00&lt;BR /&gt;&amp;nbsp; Last input 00:00:00, output 00:00:00, output hang never&lt;BR /&gt;&amp;nbsp; Last clearing of "show interface" counters never&lt;BR /&gt;&amp;nbsp; Input queue: 0/75/459251/5008 (size/max/drops/flushes); Total output drops: 0&lt;BR /&gt;&amp;nbsp; Queueing strategy: fifo&lt;BR /&gt;&amp;nbsp; Output queue: 0/40 (size/max)&lt;BR /&gt;&amp;nbsp; 5 minute input rate 20227000 bits/sec, 5876 packets/sec&lt;BR /&gt;&amp;nbsp; 5 minute output rate 33828000 bits/sec, 5841 packets/sec&lt;BR /&gt;&amp;nbsp; L2 Switched: ucast: 1636079710 pkt, 1357522746776 bytes - mcast: 12149250 pkt, 1273235343 bytes&lt;BR /&gt;&amp;nbsp; L3 in Switched: ucast: 2282459590 pkt, 1127987063561 bytes - mcast: 0 pkt, 0 bytes mcast&lt;BR /&gt;&amp;nbsp; L3 out Switched: ucast: 1924966687 pkt, 1097019117087 bytes mcast: 0 pkt, 0 bytes&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 2294761071 packets input, 1129321570674 bytes, 0 no buffer&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Received 11749391 broadcasts (374947 IP multicast)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 runts, 0 giants, 2100 throttles&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 1926528109 packets output, 1097512924676 bytes, 0 underruns&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 output errors, 0 interface resets&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 output buffer failures, 0 output buffers swapped out&lt;BR /&gt;7609#show interfaces vlan 249&lt;BR /&gt;Vlan249 is up, line protocol is up &lt;BR /&gt;&amp;nbsp; Hardware is EtherSVI, address is 001c.0f5f.9f80 (bia 001c.0f5f.9f80)&lt;BR /&gt;&amp;nbsp; Internet address is 192.168.249.2/24&lt;BR /&gt;&amp;nbsp; MTU 1500 bytes, BW 1000000 Kbit, DLY 10 usec, &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; reliability 255/255, txload 1/255, rxload 1/255&lt;BR /&gt;&amp;nbsp; Encapsulation ARPA, loopback not set&lt;BR /&gt;&amp;nbsp; ARP type: ARPA, ARP Timeout 04:00:00&lt;BR /&gt;&amp;nbsp; Last input 03:15:11, output 03:15:11, output hang never&lt;BR /&gt;&amp;nbsp; Last clearing of "show interface" counters never&lt;BR /&gt;&amp;nbsp; Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0&lt;BR /&gt;&amp;nbsp; Queueing strategy: fifo&lt;BR /&gt;&amp;nbsp; Output queue: 0/40 (size/max)&lt;BR /&gt;&amp;nbsp; 5 minute input rate 0 bits/sec, 0 packets/sec&lt;BR /&gt;&amp;nbsp; 5 minute output rate 0 bits/sec, 0 packets/sec&lt;BR /&gt;&amp;nbsp; L2 Switched: ucast: 44441 pkt, 5192054 bytes - mcast: 11 pkt, 704 bytes&lt;BR /&gt;&amp;nbsp; L3 in Switched: ucast: 99338 pkt, 8534297 bytes - mcast: 0 pkt, 0 bytes mcast&lt;BR /&gt;&amp;nbsp; L3 out Switched: ucast: 97625 pkt, 6779924 bytes mcast: 0 pkt, 0 bytes&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 143784 packets input, 13726267 bytes, 0 no buffer&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Received 11 broadcasts (0 IP multicast)&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 runts, 0 giants, 0 throttles&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 141858 packets output, 11912555 bytes, 0 underruns&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 output errors, 3 interface resets&lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; 0 output buffer failures, 0 output buffers swapped out&lt;BR /&gt;7609#&lt;/P&gt;&lt;P&gt;-------------------------------------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;7609#show etherchannel summary &lt;BR /&gt;Group&amp;nbsp; Port-channel&amp;nbsp; Protocol&amp;nbsp;&amp;nbsp;&amp;nbsp; Ports&lt;BR /&gt;------+-------------+-----------+-----------------------------------------------&lt;BR /&gt;272&amp;nbsp;&amp;nbsp;&amp;nbsp; Po272(SU)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Gi3/1(P)&amp;nbsp;&amp;nbsp; Gi3/2(P)&amp;nbsp;&amp;nbsp; Gi3/3(P)&amp;nbsp;&amp;nbsp; Gi3/4(P)&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Gi3/5(P)&amp;nbsp;&amp;nbsp; Gi3/6(P)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Nov 2010 01:05:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556113#M615935</guid>
      <dc:creator>rbc01524101</dc:creator>
      <dc:date>2010-11-22T01:05:18Z</dc:date>
    </item>
    <item>
      <title>Re: is it a bug? msfc and fwsm on 7609 who drop echo reply packe</title>
      <link>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556114#M615936</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;i'm sorry ,i have not the access level for login in the &lt;STRONG&gt;Bug Toolkit~&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and there has not anything about dec config on 7609, there are 6G autoconfig by system~&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Group&amp;nbsp; Port-channel&amp;nbsp; Protocol&amp;nbsp;&amp;nbsp;&amp;nbsp; Ports&lt;BR /&gt;------+-------------+-----------+-----------------------------------------------&amp;nbsp;&amp;nbsp; &lt;BR /&gt;272&amp;nbsp;&amp;nbsp;&amp;nbsp; Po272(SU)&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; -&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Gi3/1(P)&amp;nbsp;&amp;nbsp; Gi3/2(P)&amp;nbsp;&amp;nbsp; Gi3/3(P)&amp;nbsp;&amp;nbsp; Gi3/4(P)&amp;nbsp;&amp;nbsp; &lt;BR /&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Gi3/5(P)&amp;nbsp;&amp;nbsp; Gi3/6(P)&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Nov 2010 01:30:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556114#M615936</guid>
      <dc:creator>rbc01524101</dc:creator>
      <dc:date>2010-11-22T01:30:46Z</dc:date>
    </item>
    <item>
      <title>Re: is it a bug? msfc and fwsm on 7609 who drop echo reply packe</title>
      <link>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556115#M615937</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The FWSM seems to be sending the reply out.&lt;/P&gt;&lt;P&gt;You need to open a TAC case so, we can gather ELAM capture and see where the reply packet is getting lost.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;-KS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Nov 2010 03:38:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556115#M615937</guid>
      <dc:creator>Kureli Sankar</dc:creator>
      <dc:date>2010-11-22T03:38:02Z</dc:date>
    </item>
    <item>
      <title>Re: is it a bug? msfc and fwsm on 7609 who drop echo reply packe</title>
      <link>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556116#M615938</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;thank you , i will upgrade the&amp;nbsp; ios to test it.~&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 23 Nov 2010 08:33:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/is-it-a-bug-msfc-and-fwsm-on-7609-who-drop-echo-reply-packet/m-p/1556116#M615938</guid>
      <dc:creator>rbc01524101</dc:creator>
      <dc:date>2010-11-23T08:33:54Z</dc:date>
    </item>
  </channel>
</rss>

