10-10-2022 05:06 AM
So something strange happened, basically out of nowhere clients in a vlan can't reach their gateway and can't get a IP address from our DHCP. I looked into it and checked if all VLANs are configured and port configuration, I checked the output from "show spanning-tree vlan 110", it seems fine, my core is roout and all ports are forwarding, the vlan exists on all switches between core and access, so I am out of ideas. Any help?
10-11-2022 02:12 AM
that give us hint that the VLAN is add to SW but the port not assign to VLAN !!
this can cause of dot1x dynamic VLAN, are you config any dot1x ?
try assing port to any vlan and connect SW to it and ping the GW, check if this work.
10-11-2022 02:18 AM
no we are no using any dot1x configuration. Other VLANs seem to work, my PC is in another VLAN and its working just fine.
10-11-2022 02:30 AM
there are not any port assing to any vlan except of VLAN1 ? why this happened?
10-11-2022 02:32 AM
That I do not know, but that does not seem to be the problem because other clients in some vlans seem to be working fine.
10-11-2022 02:48 AM
which vlan you face issue with and which not ?
10-11-2022 03:42 AM
vlan 110[AccessPoints] is having issues, vlan 160 is having issues, now it seems that the cause of all this is the before mentioned switch, which is experiencing the mac-flapping, it is a switch which a lot of other switches connect to.
10-11-2022 03:59 AM
cat#show spanning-tree vlan 110 detail
cat#show spanning-tree vlan 160 detail
please share the output of both
10-11-2022 06:45 AM
01-65#show spanning-tree vlan 110 detail
VLAN0110 is executing the rstp compatible Spanning Tree protocol
Bridge Identifier has priority 32768, sysid 110, address 247e.1218.e800
Configured hello time 2, max age 20, forward delay 15, transmit hold-count 6
Current root has priority 4206, address 0008.e3ff.fc28
Root port is 2377 (Port-channel1), cost of root path is 4
Topology change flag not set, detected flag not set
Number of topology changes 4 last change occurred 01:51:02 ago
from GigabitEthernet1/0/30
Times: hold 1, topology change 35, notification 2
hello 2, max age 20, forward delay 15
Timers: hello 0, topology change 0, notification 0, aging 300
Port 8 (GigabitEthernet1/0/8) of VLAN0110 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.8.
Designated root has priority 4206, address 0008.e3ff.fc28
Designated bridge has priority 32878, address 247e.1218.e800
Designated port id is 128.8, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
The port is in the portfast mode by portfast trunk configuration
Link type is point-to-point by default
Bpdu guard is enabled
Loop guard is enabled by default on the port
BPDU: sent 3341, received 0
Port 21 (GigabitEthernet1/0/21) of VLAN0110 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.21.
Designated root has priority 4206, address 0008.e3ff.fc28
Designated bridge has priority 32878, address 247e.1218.e800
Designated port id is 128.21, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
Link type is point-to-point
Loop guard is enabled by default on the port
BPDU: sent 3349, received 0
Port 29 (GigabitEthernet1/0/29) of VLAN0110 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.29.
Designated root has priority 4206, address 0008.e3ff.fc28
Designated bridge has priority 32878, address 247e.1218.e800
Designated port id is 128.29, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 2
Link type is point-to-point by default
Loop guard is enabled by default on the port
BPDU: sent 3347, received 7
Port 30 (GigabitEthernet1/0/30) of VLAN0110 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.30.
Designated root has priority 4206, address 0008.e3ff.fc28
Designated bridge has priority 32878, address 247e.1218.e800
Designated port id is 128.30, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
Link type is point-to-point
Loop guard is enabled by default on the port
BPDU: sent 3347, received 0
Port 31 (GigabitEthernet1/0/31) of VLAN0110 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.31.
Designated root has priority 4206, address 0008.e3ff.fc28
Designated bridge has priority 32878, address 247e.1218.e800
Designated port id is 128.31, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
The port is in the portfast mode
Link type is point-to-point by default
Bpdu guard is enabled
Loop guard is enabled by default on the port
BPDU: sent 3345, received 0
Port 42 (GigabitEthernet1/0/42) of VLAN0110 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.42.
Designated root has priority 4206, address 0008.e3ff.fc28
Designated bridge has priority 32878, address 247e.1218.e800
Designated port id is 128.42, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
The port is in the portfast mode
Link type is point-to-point by default
Bpdu guard is enabled
Loop guard is enabled by default on the port
BPDU: sent 3346, received 0
Port 2377 (Port-channel1) of VLAN0110 is root forwarding
Port path cost 3, Port priority 128, Port Identifier 128.2377.
Designated root has priority 4206, address 0008.e3ff.fc28
Designated bridge has priority 16494, address 188b.45a8.fb00
Designated port id is 128.2393, designated path cost 1
Timers: message age 15, forward delay 0, hold 0
Number of transitions to forwarding state: 1
Link type is point-to-point
Loop guard is enabled by default on the port
BPDU: sent 10, received 3340
###
01-65#show spanning-tree vlan 160 detail
VLAN0160 is executing the rstp compatible Spanning Tree protocol
Bridge Identifier has priority 32768, sysid 160, address 247e.1218.e800
Configured hello time 2, max age 20, forward delay 15, transmit hold-count 6
Current root has priority 4256, address 0008.e3ff.fc28
Root port is 2377 (Port-channel1), cost of root path is 4
Topology change flag not set, detected flag not set
Number of topology changes 5 last change occurred 01:51:52 ago
from GigabitEthernet1/0/30
Times: hold 1, topology change 35, notification 2
hello 2, max age 20, forward delay 15
Timers: hello 0, topology change 0, notification 0, aging 300
Port 1 (GigabitEthernet1/0/1) of VLAN0160 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.1.
Designated root has priority 4256, address 0008.e3ff.fc28
Designated bridge has priority 32928, address 247e.1218.e800
Designated port id is 128.1, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
The port is in the portfast mode
Link type is point-to-point by default
Bpdu guard is enabled
Loop guard is enabled by default on the port
BPDU: sent 3374, received 0
Port 8 (GigabitEthernet1/0/8) of VLAN0160 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.8.
Designated root has priority 4256, address 0008.e3ff.fc28
Designated bridge has priority 32928, address 247e.1218.e800
Designated port id is 128.8, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
The port is in the portfast mode by portfast trunk configuration
Link type is point-to-point by default
Bpdu guard is enabled
Loop guard is enabled by default on the port
BPDU: sent 3366, received 0
Port 12 (GigabitEthernet1/0/12) of VLAN0160 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.12.
Designated root has priority 4256, address 0008.e3ff.fc28
Designated bridge has priority 32928, address 247e.1218.e800
Designated port id is 128.12, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
The port is in the portfast mode
Link type is point-to-point by default
Bpdu guard is enabled
Loop guard is enabled by default on the port
BPDU: sent 3373, received 0
Port 21 (GigabitEthernet1/0/21) of VLAN0160 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.21.
Designated root has priority 4256, address 0008.e3ff.fc28
Designated bridge has priority 32928, address 247e.1218.e800
Designated port id is 128.21, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 2
Link type is point-to-point
Loop guard is enabled by default on the port
BPDU: sent 3375, received 5
Port 23 (GigabitEthernet1/0/23) of VLAN0160 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.23.
Designated root has priority 4256, address 0008.e3ff.fc28
Designated bridge has priority 32928, address 247e.1218.e800
Designated port id is 128.23, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
The port is in the portfast mode
Link type is point-to-point by default
Bpdu guard is enabled
Loop guard is enabled by default on the port
BPDU: sent 3373, received 0
Port 29 (GigabitEthernet1/0/29) of VLAN0160 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.29.
Designated root has priority 4256, address 0008.e3ff.fc28
Designated bridge has priority 32928, address 247e.1218.e800
Designated port id is 128.29, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
Link type is point-to-point by default
Loop guard is enabled by default on the port
BPDU: sent 3372, received 11
Port 30 (GigabitEthernet1/0/30) of VLAN0160 is designated forwarding
Port path cost 4, Port priority 128, Port Identifier 128.30.
Designated root has priority 4256, address 0008.e3ff.fc28
Designated bridge has priority 32928, address 247e.1218.e800
Designated port id is 128.30, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
Link type is point-to-point
Loop guard is enabled by default on the port
BPDU: sent 3373, received 0
Port 99 (GigabitEthernet2/0/3) of VLAN0160 is designated forwarding
Port path cost 19, Port priority 128, Port Identifier 128.99.
Designated root has priority 4256, address 0008.e3ff.fc28
Designated bridge has priority 32928, address 247e.1218.e800
Designated port id is 128.99, designated path cost 4
Timers: message age 0, forward delay 0, hold 0
Number of transitions to forwarding state: 1
The port is in the portfast mode
Link type is point-to-point by default
Bpdu guard is enabled
Loop guard is enabled by default on the port
BPDU: sent 3377, received 0
Port 2377 (Port-channel1) of VLAN0160 is root forwarding
Port path cost 3, Port priority 128, Port Identifier 128.2377.
Designated root has priority 4256, address 0008.e3ff.fc28
Designated bridge has priority 16544, address 188b.45a8.fb00
Designated port id is 128.2393, designated path cost 1
Timers: message age 15, forward delay 0, hold 0
Number of transitions to forwarding state: 1
Link type is point-to-point
Loop guard is enabled by default on the port
BPDU: sent 11, received 3364
After reloading a switch, which is connected to the 01-65, the issues seem to be resolved on that switch. Other switches connected to 01-65 experience the same issues.
10-11-2022 08:39 AM
VLAN0110 is executing the rstp compatible Spanning Tree protocol
Topology change flag not set, detected flag not set
Number of topology changes 4 last change occurred 01:51:02 ago
from GigabitEthernet1/0/30
VLAN0160 is executing the rstp compatible Spanning Tree protocol
Topology change flag not set, detected flag not set
Number of topology changes 5 last change occurred 01:51:52 ago
from GigabitEthernet1/0/30
both face same TCN from same G1/0/30,
now check CDP see which switch connect to this port 
then go to that SW and do again 
show spanning tree VLAN 110/160 detail 
share it here 
10-12-2022 01:19 AM
On port Gi1/0/30 another Cisco Switch is connected it is a C1000
10-12-2022 03:13 AM
cat#show spanning-tree vlan 110 detail
cat#show spanning-tree vlan 160 detail
in C1000 also do same, 
we must follow the BPDU until we see from where this issue come from. 
10-11-2022 02:19 AM
The Switches are all connected and PING reachable
10-11-2022 01:49 AM
Also my Core-Switch said there was a broadcast-storm on both interfaces connecting to that switch.
10-11-2022 04:13 AM
Gary,
What switch (SW_MATM-4?) and interfaces was your Core-SW referring to concerning a broadcast-storm?
On SW_MATM-4, What is port Po1 connected to (CoreSW)?
Check the etherchannel configuration on SW_MATM-4 and CoreSW. Its possible that SW_MATM-4 shows the two links as one and CoreSW thinks its two.
---------------------------------------------------------------
Remember to mark helpful posts and mark the correct answer as a solution; It helps other users with similar questions.
10-11-2022 04:46 AM
is this port you connected the device with static IP still not working ?
why do you need Trunk port here ? try change to access port and check
interface GigabitEthernet1/0/5
description ## AP
switchport trunk native vlan 110
switchport mode trunk
storm-control broadcast level 0.80
storm-control multicast level 0.80
spanning-tree portfast edge
spanning-tree bpduguard enable
 
					
				
				
			
		
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide