02-26-2017 09:42 AM - edited 03-08-2019 09:30 AM
I have an ospf conenction that is stuck in EXSTART state between a Nexus and an ASR. I already put in the ip ospf mtu-ignore on both the ASR interface and the Nexus interface, however it is still stuck in EXSTART. I am also not seeing anything on the logs showing why it is not going beyond the EXSTART state. Please let me know if anyone has any ideas as to why this is happening:
2017 Feb 26 17:07:15.804881 ospf: 20 [8248] Neighbor not declared DR, ignoring
2017 Feb 26 17:07:15.804889 ospf: 20 [8248] Walking neighbor 10.51.103.238 (0x86665a4), state EXSTART
2017 Feb 26 17:07:15.804899 ospf: 20 [8248] This nbr 10.51.103.238 promoted to current dr
2017 Feb 26 17:07:15.804909 ospf: 20 [8248] (default) ospf_ha_if_update: interface Vlan103, if_flags_ext 0x1
2017 Feb 26 17:07:15.804938 ospf: 20 [8248] (default) PSS entry for interface Vlan103 updated, state DR, DR 10.253.3.3, BDR 10.253.3.2
2017 Feb 26 17:07:15.804951 ospf: 20 [8248] Elected 10.253.3.3 as DR, 10.253.3.2 as BDR
2017 Feb 26 17:07:15.804960 ospf: 20 [8248] (default) ospf_ha_if_update: interface Vlan103, if_flags_ext 0x1
2017 Feb 26 17:07:15.804984 ospf: 20 [8248] (default) PSS entry for interface Vlan103 updated, state BDR, DR 10.253.3.3, BDR 10.253.3.2
2017 Feb 26 17:07:15.804995 ospf: 20 [8248] Interface Vlan103 ---> BDR
2017 Feb 26 17:07:15.805020 ospf: 20 [8248] (default) Nbr 10.51.103.238: EXSTART --> EXSTART, event ADJOK
2017 Feb 26 17:07:15.805063 ospf: 20 [8248] (default) Nbr 10.51.103.238: INIT --> EXSTART, event TWOWAYRCVD
2017 Feb 26 17:07:15.805104 ospf: 20 [8248] (default) Sending DBD to 10.51.103.238 on Vlan103
2017 Feb 26 17:07:15.805119 ospf: 20 [8248] (default) Sent DBD with 0 entries to 10.51.103.238 on Vlan103
2017 Feb 26 17:07:15.805130 ospf: 20 [8248] (default) mtu 1500, opts: 0x42, ddbits: 0x7, seq: 0x5285847e
2017 Feb 26 17:07:15.805143 ospf: 20 [8248] (default) out pkt on Vlan103: auth md5: key AAAAAAAAAAA, key id 22 Seq 0x1b93512 (time 0x58b30b43)
2017 Feb 26 17:07:15.805156 ospf: 20 [8248] ip_cl_output (0x8664600 188 0xf6818ca0)
2017 Feb 26 17:07:15.805173 ospf: 20 [8248] ip_cl_output: good send
2017 Feb 26 17:07:15.805183 ospf: 20 [8248] (default) sent: prty:5 DDESC to 10.51.103.238/Vlan103
2017 Feb 26 17:07:15.810889 ospf: 20 [8248] (default) LSA 10.253.3.2(0x1)10.253.3.2 (0x80004113) (0xb404) (375)(O), area 0.0.0.0 generation supressed, contents unchanged
2017 Feb 26 17:07:17.155980 ospf: 20 [8248] ip_cl_output (0x8664600 6 0xf6818ca0)
2017 Feb 26 17:07:17.156016 ospf: 20 [8248] ip_cl_output: good send
2017 Feb 26 17:07:19.466008 ospf: 20 [8248] ip_cl_output (0x8664600 6 0xf6818ca0)
2017 Feb 26 17:07:19.466040 ospf: 20 [8248] ip_cl_output: good send
2017 Feb 26 17:07:20.709323 ospf: 20 [8248] (default) aging slot 52
2017 Feb 26 17:07:20 NexusNJ9kB %ARP-3-DUP_VADDR_SRC_IP: arp [7461] Source address of packet received from 0000.0c07.ac3e on Vlan62(port-channel2) is duplicate of local virtual ip, 10.51.62.250
2017 Feb 26 17:07:21.611371 ospf: 20 [8248] (default) Sending DBD to 10.51.103.238 on Vlan103
2017 Feb 26 17:07:21.611404 ospf: 20 [8248] (default) Sent DBD with 0 entries to 10.51.103.238 on Vlan103
2017 Feb 26 17:07:21.611419 ospf: 20 [8248] (default) mtu 1500, opts: 0x42, ddbits: 0x7, seq: 0x5285847e
2017 Feb 26 17:07:21.611471 ospf: 20 [8248] (default) out pkt on Vlan103: auth md5: key AAAAAAAAAAA, key id 22 Seq 0x1b93518 (time 0x58b30b49)
2017 Feb 26 17:07:21.611485 ospf: 20 [8248] ip_cl_output (0x8664600 188 0xf6818ca0)
2017 Feb 26 17:07:21.611504 ospf: 20 [8248] ip_cl_output: good send
2017 Feb 26 17:07:21.611516 ospf: 20 [8248] (default) sent: prty:5 DDESC to 10.51.103.238/Vlan103
2017 Feb 26 17:07:21.726031 ospf: 20 [8248] (default) LAN hello out, ivl 10/40, options 0x02, mask /24, prio 1, dr 10.51.103.238, bdr 10.51.103.249 nbrs 1 on Vlan103 (area 0.0.0.0)
2017 Feb 26 17:07:21.726058 ospf: 20 [8248] (default) out pkt on Vlan103: auth md5: key AAAAAAAAAAA, key id 22 Seq 0x1b93518 (time 0x58b30b49)
2017 Feb 26 17:07:21.726071 ospf: 20 [8248] ip_cl_output (0x8664600 188 0xf6818ca0)
2017 Feb 26 17:07:21.726089 ospf: 20 [8248] ip_cl_output: good send
02-26-2017 10:10 AM
Can you post configs from both devices?
02-26-2017 12:11 PM
I am not allowed to post the whote config I can show the interfaces though:
intterface Vlan103
no shutdown
ip address 10.51.103.249/24
ip ospf authentication message-digest
ip ospf message-digest-key 22
ip ospf cost 101
no ip ospf passive-interface
ip router ospf 20 area 0.0.0.0
ip ospf mtu-ignore
router ospf 20
router-id 10.253.3.2
area 0.0.0.0 authentication message-digest
log-adjacency-changes
auto-cost reference-bandwidth 1000
passive-interface default
router ospf 20 vrf LAN
router-id 10.253.3.3
auto-cost reference-bandwidth 1000
capability vrf-lite
area 0 authentication message-digest
passive-interface default
no passive-interface GigabitEthernet0/0/1.646
no passive-interface Port-channel11.101
no passive-interface Port-channel11.102
no passive-interface Port-channel11.103
interface Port-channel11.103
bandwidth 10000000
encapsulation dot1Q 103
vrf forwarding LAN
ip address 10.51.103.238 255.255.255.0
ip nat inside
ip nat allow-static-host
ip ospf authentication message-digest
ip ospf message-digest-key 22 md5
ip ospf mtu-ignore
ip ospf 20 area 0
ip ospf cost 1
end
02-26-2017 03:04 PM
A couple of things"
1-It appears that one device has OSPF running in the global routing table and the other one in vrf LAN.
2-Also, one device is using a vlan and the other one a Portchannel.
Can you clarify?
HTH
02-26-2017 03:36 PM
YES the ASR has it in a VRF and the nexus has it in a a global
YES the Port Channel is using VPC to another NEXUS, but I am only trying to join this 1 NEXUS to ospf using that 1 port channel interface
02-27-2017 06:26 AM
Not sure if I understand what you mean by "YES the Port Channel is using VPC to another NEXUS, but I am only trying to join this 1 NEXUS to ospf using that 1 port channel interface" Do you have a diagram you can provide?
Also, have you tried removing all the authentication parameters from both devices and test?
HTH
02-26-2017 04:19 PM
I wonder if the following is relevant
2017 Feb 26 17:07:20 NexusNJ9kB %ARP-3-DUP_VADDR_SRC_IP: arp [7461] Source address of packet received from 0000.0c07.ac3e on Vlan62(port-channel2) is duplicate of local virtual ip, 10.51.62.250
Maybe try a different OSPF process number for the VRF
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide