05-27-2025 12:40 AM
HI Team
i configured sdwan lab . i am able to reach controllers from vedges . i create device template .when i try to apply , it show device offline
if any body help to solve this
Regards
05-27-2025 03:53 AM
@Gagandeep_Singh_1997 hi, is this devices added to manager at least once? or is it offline from the beginning?
05-29-2025 02:19 AM
its how offine in vmanage but in cli i am able to reach via controllers
05-27-2025 10:31 PM
Would you be able to show us the topology and running-config of each device?
Can you paste the output of a show control connections and show control connections-history on the affected device? @Kasun Bandara asks a good question too.
What stage is the vEdge getting to if you were to look on the SD-WAN Manager (vManage) on the 'Configuration' > 'Devices' page and choosing the WAN Edge next to the three dots and choosing 'Device Bringup'.
Can you confirm that your SD-WAN Control Components have built DTLS/TLS control connections to each other? You may need to run additional commands on each of the SD-WAN Control Components, or use the GUI, to confirm this.
Please let us know if you've any further questions on that!
05-29-2025 02:23 AM
now issue come i regenerate CA root Certificate with same Organization name . all controller are synched . i also installed same CA root in vedges . After activate vedge , vmanage show "certificate not installed then i do it manually option and manaully sign csr request of vedge and upload in vmanage . now certificate is showing installed in vmanage
but still show vedge down
when i do show control connection in vedge
PEER PEER PEER SITE DOMAIN PEER PRIVATE PEER PUBLIC LOCAL REMOTE REPEAT
TYPE PROTOCOL SYSTEM IP ID ID PRIVATE IP PORT PUBLIC IP PORT LOCAL COLOR STATE ERROR ERROR COUNT DOWNTIME
------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
vbond dtls 0.0.0.0 0 0 192.168.1.2 12346 192.168.1.2 12346 default challenge_resp RXTRDWN BIDNTVRFD 84 2025-05-29T03:34:02-0400
vbond dtls 0.0.0.0 0 0 192.168.1.2 12346 192.168.1.2 12346 default up RXTRDWN VECRTREV 0 2025-05-29T02:58:02-0400
vmanage dtls 1.1.1.1 1 0 192.168.1.1 12646 192.168.1.1 12646 default up RXTRDWN VECRTREV 0 2025-05-29T02:58:02-0400
vmanage dtls 1.1.1.1 1 0 192.168.1.1 12346 192.168.1.1 12346 default tear_down DISTLOC NOERR 0 2025-05-29T02:48:05-0400
vbond dtls 0.0.0.0 0 0 192.168.1.2 12346 192.168.1.2 12346 default tear_down DISTLOC NOERR 0 2025-05-29T02:48:05-0400
05-29-2025 04:22 AM
Here see sir when i run activate cmd
But show online and reachable
and in cli
CONTROLLER
PEER PEER PEER SITE DOMAIN PEER PRIV PEER PUB GROUP
TYPE PROT SYSTEM IP ID ID PRIVATE IP PORT PUBLIC IP PORT LOCAL COLOR PROXY STATE UPTIME ID
-------------------------------------------------------------------------------- -------------------------------------------------------------------------------- ------------------------
vbond dtls 0.0.0.0 0 0 192.168.100.3 12346 192.168.100.3 12346 default - up 0:00:06:07 0
vmanage dtls 1.1.1.1 1 0 192.168.100.1 12346 192.168.100.1 12346 default No up 0:00:05:47 0
but if saw certificate
vedge2# show control local-properties
personality vedge
sp-organization-name viptela sdwan
organization-name viptela sdwan
root-ca-chain-status Installed
certificate-status Not-Installed
certificate-validity Not Applicable
certificate-not-valid-before Not Applicable
certificate-not-valid-after Not Applicable
dns-name 192.168.100.3
site-id 2
domain-id 1
protocol dtls
tls-port 0
system-ip 2.2.2.1
chassis-num/unique-id 867391ba-8fa4-3c5b-93ed-cb406e15c1b0
serial-num No certificate installed
subject-serial-num N/A
token d61c9b0368c84cffa00ab9b0dd7b1afe
keygen-interval 1:00:00:00
retry-interval 0:00:00:19
no-activity-exp-interval 0:00:00:20
--More--
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide