cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
885
Views
0
Helpful
2
Replies

ASR 9001 MAC AND ARP ISSUE

ashley_dew
Level 1
Level 1

Hi,

I have an arp and ping timeout issue. ASR has the arp entry on its lan interface but cannot ping the ip address. I have a nexus in the same LAN and can ping the same LAN.

Topology;

ASR 1 ---- NEXUS 1 ---- WAN L2 LINK ---- NEXUS 2 ---- ASR 2

IP address is on NEXUS 2 and ASR 2 can this ip address but not ASR 1.

Clear arp on ASR 1, ping works for a while and then stops.

I have checked no proxy arp anywhere, no mac conflicts.

I have got MHSRP configured on the LAN interface and WAN interface.

The WAN link is also a L2 Link from the same provider.

Is possible that this caused by the fact that ASR is learning the MAC from LAN interface and the WAN interface is getting confused due to the WAN link loop?

If so, how can I check it?

I am having no clue. Please help.

Thanks and Regards,

2 Replies 2

Reza Sharifi
Hall of Fame
Hall of Fame

Hi,

So, is ASR-1 and Nexus-1 running as layer-3? Can you post "sh run" and point out the interfaces connecting them together?

HTH

Dear Reza,

The NEXUS is normally running in L2 however I have added ip address on the NEXUS for testing purposes.

 ASR 1

Building configuration...
!! IOS XR Configuration 5.3.4
!! Last configuration change at Tue Aug 15 10:18:10 2017 by THYM
!
hostname CBV-ASR1
domain name tmm.dc
domain name-server 10.81.90.3
vrf ORPEA
 address-family ipv4 unicast
 !
!

ntp
 server 10.81.90.18
!
object-group network ipv4 LANUCOPIA
 host 172.16.50.1
!
ipv4 access-list 89
 10 permit ipv4 host 172.16.50.13 any
!
ipv4 access-list abf-1
 1 permit ipv4 172.16.52.0/23 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 10 permit ipv4 10.100.53.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 --More-- !! IOS XR Configuration 5.3.4
!! Last configuration change at Tue Aug 15 10:18:10 2017 by THYM
!
hostname CBV-ASR1
domain name tmm.dc
domain name-server 10.81.90.3
vrf ORPEA
 address-family ipv4 unicast
 !
!

ntp
 server 10.81.90.18
!
object-group network ipv4 LANUCOPIA
 host 172.16.50.1
!
ipv4 access-list 89
 10 permit ipv4 host 172.16.50.13 any
!
ipv4 access-list abf-1
 1 permit ipv4 172.16.52.0/23 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 10 permit ipv4 10.100.53.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 11 permit ipv4 10.100.73.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 12 permit ipv4 10.101.13.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 13 permit ipv4 10.101.31.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 14 permit ipv4 10.101.41.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 15 permit ipv4 10.101.45.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 16 permit ipv4 10.101.51.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 17 permit ipv4 10.101.73.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 18 permit ipv4 10.102.1.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 19 permit ipv4 10.102.31.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 20 permit ipv4 10.102.41.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 21 permit ipv4 10.102.77.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 22 permit ipv4 10.102.99.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 23 permit ipv4 10.103.17.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
 24 permit ipv4 10.104.57.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.1
!
ipv4 access-list abf-2
 1 permit ipv4 172.16.54.0/23 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 10 permit ipv4 10.100.52.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 11 permit ipv4 10.100.78.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 12 permit ipv4 10.100.82.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 13 permit ipv4 10.100.84.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 14 permit ipv4 10.100.88.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 15 permit ipv4 10.100.90.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 16 permit ipv4 10.101.16.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 17 permit ipv4 10.101.18.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 18 permit ipv4 10.101.52.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 19 permit ipv4 10.101.54.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 20 permit ipv4 10.101.96.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 21 permit ipv4 10.102.14.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 22 permit ipv4 10.102.20.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 23 permit ipv4 10.102.48.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 24 permit ipv4 10.102.70.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 25 permit ipv4 10.102.94.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 26 permit ipv4 10.103.2.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 27 permit ipv4 10.103.98.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
 28 permit ipv4 10.106.66.0/24 any default nexthop1 vrf ORPEA ipv4 172.16.50.2
!
interface MgmtEth0/RSP0/CPU0/0
 ipv4 address 10.81.90.1 255.255.255.240
!
interface MgmtEth0/RSP0/CPU0/1
 ipv4 address 10.81.90.17 255.255.255.252
 speed 1000
 duplex full
!
interface TenGigE0/0/2/0
 description vers N2/SFR MID 0000000005820751
!
interface TenGigE0/0/2/0.52
 vrf ORPEA
 ipv4 address 172.16.53.252 255.255.254.0
 encapsulation dot1q 52
 ipv4 access-group abf-1 ingress
!
interface TenGigE0/0/2/0.54
 vrf ORPEA
 ipv4 address 172.16.55.252 255.255.254.0
 encapsulation dot1q 54
 ipv4 access-group abf-2 ingress
!
interface TenGigE0/0/2/0.92
 ipv4 address 10.81.92.1 255.255.255.240
 encapsulation dot1q 92
!
interface TenGigE0/0/2/1
 shutdown
!
interface TenGigE0/0/2/2
 description vers NEXUS1-ETH1/1
!
interface TenGigE0/0/2/2.50
 vrf ORPEA
 ipv4 address 172.16.50.21 255.255.255.224
 encapsulation dot1q 50
!
interface TenGigE0/0/2/2.56
 ipv4 address 172.16.56.11 255.255.255.0
 encapsulation dot1q 56
!
interface TenGigE0/0/2/3
 shutdown
!
router static
 address-family ipv4 unicast
  0.0.0.0/0 10.81.90.3
  0.0.0.0/0 MgmtEth0/RSP0/CPU0/0
 !
 vrf ORPEA
  address-family ipv4 unicast
   10.100.1.0/24 172.16.52.1
   10.100.52.0/24 172.16.54.26
   10.100.53.0/24 172.16.52.27
   10.100.73.0/24 172.16.52.37
   10.100.78.0/24 172.16.54.39
   10.100.82.0/24 172.16.54.41
   10.100.84.0/24 172.16.54.42
   10.100.88.0/24 172.16.54.44
   10.100.90.0/24 172.16.54.45
   10.101.13.0/24 172.16.52.57
   10.101.16.0/24 172.16.54.58
   10.101.18.0/24 172.16.54.59
   10.101.31.0/24 172.16.52.66
   10.101.41.0/24 172.16.52.71
   10.101.45.0/24 172.16.52.73
   10.101.51.0/24 172.16.52.76
   10.101.52.0/24 172.16.54.76
   10.101.54.0/24 172.16.54.77
   10.101.73.0/24 172.16.52.87
   10.101.96.0/24 172.16.54.98
   10.102.0.0/24 172.16.54.100
   10.102.1.0/24 172.16.52.101
   10.102.14.0/24 172.16.54.107
   10.102.20.0/24 172.16.54.110
   10.102.31.0/24 172.16.52.116
   10.102.41.0/24 172.16.52.121
   10.102.48.0/24 172.16.54.124
   10.102.70.0/24 172.16.54.135
   10.102.77.0/24 172.16.52.139
   10.102.94.0/24 172.16.54.147
   10.102.99.0/24 172.16.52.150
   10.103.2.0/24 172.16.54.151
   10.103.17.0/24 172.16.52.159
   10.103.98.0/24 172.16.54.199
   10.104.57.0/24 172.16.52.229
   10.106.66.0/24 172.16.55.80
  !
 !
!
router hsrp
 interface TenGigE0/0/2/0.52
  address-family ipv4
   hsrp 1
    authentication Ns_0L.69
    preempt delay 2
    priority 110
    address 172.16.53.254
    track TenGigE0/0/2/0.52 30
    track TenGigE0/0/2/2.50 30
    track object VPLSN2 30
   !
  !
 !
 interface TenGigE0/0/2/0.54
  address-family ipv4
   hsrp 2
    authentication Ns_0L.69
    preempt delay 2
    priority 90
    address 172.16.55.254
   !
  !
 !
 interface TenGigE0/0/2/2.50
  address-family ipv4
   hsrp 3
    authentication Ns_0L.69
    mac-address cc16.7efa.5fef
    preempt delay 2
    priority 110
    address 172.16.50.5
    track TenGigE0/0/2/0.54 30
    track TenGigE0/0/2/2.50 30
    track object VPLSN2 30
   !
   hsrp 4
    authentication Ns_0L.69
    mac-address cc16.7eff.5fef
    preempt delay 2
    priority 90
    address 172.16.50.6
   !
  !
 !
!
ssh server v2
ssh server vrf default
ipsla
 operation 1
  type icmp echo
   vrf ORPEA
   source address 172.16.53.252
   destination address 172.16.53.248
   frequency 60
  !
 !
 schedule operation 1
  start-time now
  life forever
 !
!
track VPLSN2
 type rtr 1 reachability
!
end

nexus 1

!Command: show running-config
!Time: Wed Aug 16 07:12:52 2017

version 7.0(3)IM3(2)
hostname CBV-NEXUS1
vdc CBV-NEXUS1 id 1
  limit-resource vlan minimum 16 maximum 4094
  limit-resource vrf minimum 2 maximum 4096
  limit-resource port-channel minimum 0 maximum 511
  limit-resource u4route-mem minimum 248 maximum 248
  limit-resource u6route-mem minimum 96 maximum 96
  limit-resource m4route-mem minimum 58 maximum 58
  limit-resource m6route-mem minimum 8 maximum 8

feature interface-vlan
feature sla sender


no ip domain-lookup
ip domain-name TMM.DC
ip access-list 89
  10 permit ip 172.16.50.13/32 any
copp profile strict
rmon event 1 log trap public description FATAL(1) owner PMON@FATAL
rmon event 2 log trap public description CRITICAL(2) owner PMON@CRITICAL
rmon event 3 log trap public description ERROR(3) owner PMON@ERROR
rmon event 4 log trap public description WARNING(4) owner PMON@WARNING
rmon event 5 log trap public description INFORMATION(5) owner PMON@INFO
snmp-server community TMM-ORPEA group network-operator
ntp server 10.81.9.3
ntp server 10.81.90.3

vlan 1,50,52,54,56,90-92,112,501,999
vlan 50
  name LAN-UCOPIA
vlan 52
  name HSRP1
vlan 54
  name HSRP2
vlan 56
  name Back2Back-UCOPIA
vlan 90
  name Management-ASR1-N9K-CBV
vlan 91
  name Management-ASR2-N9K-ULI
vlan 92
  name Management-collect
vlan 112
  name WAN-UCOPIA
vlan 501
  name WAN-@INTERNET

no spanning-tree vlan 50
spanning-tree vlan 1-3967 priority 0
vrf context management
hardware profile portmode 48x25G+2x100G+4x40G



interface Vlan1

interface Vlan50
  no shutdown
  mac-address cc16.7efa.50ef
  ip address 172.16.50.15/27

interface Vlan90
  no shutdown
  mac-address cc16.7efa.50bf
  management
  ip address 10.81.90.2/28

interface Vlan91
  no shutdown
  mac-address cc16.7efa.50af
  management
  ip address 10.81.91.5/28

interface Vlan92
  no shutdown
  mac-address cc16.7efa.50cf
  management
  ip address 10.81.92.2/28

interface Vlan501
  description VLAN WAN-@INTERNET
  no shutdown

interface Ethernet1/1
  description Trunk-vers-ASR
  switchport
  switchport mode trunk
  no shutdown

interface Ethernet1/2
  description UCOPIA-LAN
  switchport
  switchport access vlan 50
  spanning-tree port type edge
  speed 10000
  duplex full
  no shutdown

interface Ethernet1/3
  description FW-LAN
  switchport
  switchport access vlan 112
  spanning-tree port type edge
  no shutdown

interface Ethernet1/4
  description UCOPIA-WAN
  switchport
  switchport mode trunk
  switchport trunk allowed vlan 56,112
  spanning-tree port type edge
  speed 10000
  duplex full
  no shutdown

interface Ethernet1/5
  description MANAGEMENT-ASR
  switchport
  switchport access vlan 90
  spanning-tree port type edge
  speed 1000
  duplex full
  no shutdown

interface Ethernet1/6
  description FW-WAN-MANAGEMENT
  switchport
  switchport access vlan 90
  spanning-tree port type edge
  speed 1000
  duplex full
  no shutdown

interface Ethernet1/7
  description MANAGEMENT-UCOPIA
  switchport
  switchport access vlan 90
  spanning-tree port type edge
  speed 1000
  duplex full
  no shutdown

interface Ethernet1/8
  description Back2Back-UCOPIA
  switchport
  switchport access vlan 56
  spanning-tree port type edge
  no shutdown

interface Ethernet1/9

interface Ethernet1/10
  description WAN-@INTERNET
  switchport
  switchport access vlan 501
  speed 10000
  duplex full
  no shutdown

interface Ethernet1/11
  description WAN-FW
  switchport
  switchport access vlan 501
  speed 10000
  duplex full
  no shutdown

interface Ethernet1/12
  description WAN-INTERNET TEST
  switchport
  switchport access vlan 501
  speed 10000
  duplex full
  no shutdown

interface Ethernet1/13
  description LAN UCOPIA-TEST
  switchport
  switchport access vlan 50
  speed 1000
  duplex full
  no shutdown

interface Ethernet1/14
  switchport
  switchport mode trunk
  switchport trunk allowed vlan 50,56,112
  speed 10000
  duplex full
  no shutdown

interface Ethernet1/15

interface Ethernet1/16

interface Ethernet1/17

interface Ethernet1/18

interface Ethernet1/19
  speed 10000
  duplex full

interface Ethernet1/20
  speed 1000
  duplex full

interface Ethernet1/21
  speed 10000
  duplex full

interface Ethernet1/22

interface Ethernet1/23

interface Ethernet1/24

interface Ethernet1/25

interface Ethernet1/26

interface Ethernet1/27

interface Ethernet1/28

interface Ethernet1/29

interface Ethernet1/30

interface Ethernet1/31

interface Ethernet1/32

interface Ethernet1/33

interface Ethernet1/34

interface Ethernet1/35

interface Ethernet1/36

interface Ethernet1/37

interface Ethernet1/38

interface Ethernet1/39

interface Ethernet1/40

interface Ethernet1/41

interface Ethernet1/42

interface Ethernet1/43

interface Ethernet1/44
  description SERVEUR VLAN91
  switchport
  switchport access vlan 91
  spanning-tree port type edge
  speed 1000
  duplex full
  no shutdown

interface Ethernet1/45
  description LAN SERVEUR VLAN50
  switchport
  switchport access vlan 50
  spanning-tree port type edge
  speed 1000
  duplex full
  no shutdown

interface Ethernet1/46

interface Ethernet1/47
  description THYM-MANAGEMENT
  switchport
  switchport access vlan 90
  spanning-tree port type edge
  speed 1000
  duplex full
  no shutdown

interface Ethernet1/48
  description vers N2/SFR MID 0000000006504488 HORIZ
  switchport
  switchport mode trunk
  switchport trunk allowed vlan 50,52,54,56,90-92,112
  speed 10000
  duplex full
  no shutdown

interface Ethernet1/49

interface Ethernet1/50

interface Ethernet1/51

interface Ethernet1/52

interface Ethernet1/53

interface Ethernet1/54

interface mgmt0
  vrf member management
line console
line vty
boot nxos bootflash:/nxos.7.0.3.IM3.2.bin
ip route 0.0.0.0/0 10.81.90.3 name management
ip route 172.16.52.0/23 172.16.50.5
ip route 172.16.54.0/23 172.16.50.6
ip route 192.168.10.10/32 10.81.90.9 name THYM-Management
ip route 192.168.199.0/29 10.81.90.9 name THYM-Management

Interface E1 on Nexus is connected to g0/2/2 on ASR