cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
5091
Views
7
Helpful
15
Replies

Routing issues between sites A & B via MPLS

kamran.khan
Level 1
Level 1

Hi All,

Hope you can help with this one or certainly point me in the right direction.

  • We have two MPLS circuits managed by two different suppliers, one carries VOICE the other DATA
  • We are to decommision the VOICE MPLS and have increased the bandwith of the DATA MPLS to carry VoIP traffic too.

Current config

  • At both of our sites A & B ,devices connected to the LAN have a default gateway of the VOICE providers Cisco 2600 router , which then goes into the LAN switching. (see diagram)
  • So what I am trying to achieve is toto simply replace these 2600 routers from the VOICE MPLS provider with our own so we dont have to change the default gateways at both sites.

Testing

  • Our Cisco 2600 routes are plugged into each LAN switching environment with two subinterfaces configured, one for voip and the other for data
  • The problem is from the router and respective subinterfaces we can get to the other sites destination without any issue, but if for example a user is at site A with Ip address 10.16.11.12/16 they cant ping the VOIP subnet at site B 10.3.11.0/24. But If a ping is issue from the Site A test router then the 10.3.11.0/24 subnet is reachable but only on the 10.3.12.0/24 configured subinterface.
  • So i guess what Im saying is 10.16.0.0/16 from the LAN needs to be able to get to 10.3.11.0/24
  • Note at site A 10.16.0.0/16 & 10.3.12.0/24 can communicate no problem and at site B 10.207.0.0/16 & 10.3.11.0/24 can communicate no problem.
  • We are using IP routing, should we be using route-maps?

Hope that makes sense!

many Thanks in advance

K

Please see attached configs and test network diagram

15 Replies 15

Hi Kishore,

please see the results requested:

From laptop (dg 10.16.10.145) to 10.3.11.230 (subinterface on Test rouber site B)

^C
C:\Documents and Settings\kam.khan>tracert 10.3.11.230

Tracing route to 10.3.11.230 over a maximum of 30 hops

  1    21 ms     1 ms     1 ms  10.16.10.145
  2     *        *        *     Request timed out.
  3     *        *        *     Request timed out.
  4     *        *        *     Request timed out.
  5     *        *        *     Request timed out.
  6     *        *        *     Request timed out.
  7     *     ^C

From laptop (dg 10.16.10.145) to 10.3.11.1 (VoIP serverr on site B)

:\Documents and Settings\kam.khan>tracert 10.3.11.1

racing route to 10.3.11.1 over a maximum of 30 hops

1    23 ms     1 ms     1 ms  10.16.10.145
2     *        *        *     Request timed out.
3     *        *        *     Request timed out.
4     *        *        *     Request timed out.
5     *        *        *     Request timed out.

From Test Router A (Subinterface10.16.10.145, 10.3.12.230) to 10.3.11.1 (VoIP server site B)

Test router SiteA#traceroute
Protocol [ip]:
Target IP address: 10.3.11.1
Source address: 10.3.12.230
Numeric display [n]:
Timeout in seconds [3]:
Probe count [3]:
Minimum Time to Live [1]:
Maximum Time to Live [30]:
Port Number [33434]:
Loose, Strict, Record, Timestamp, Verbose[none]:
Type escape sequence to abort.
Tracing the route to 10.3.11.1

  1 192.168.201.249 4 msec 4 msec 0 msec
  2 172.20.79.253 0 msec 4 msec 4 msec
  3 172.21.124.74 8 msec 12 msec 8 msec
  4 192.168.40.253 12 msec 8 msec 8 msec
  5 10.3.11.1 8 msec 8 msec 12 msec
Test router SiteA#

From Test Router A (Subinterface10.16.10.145) to 10.3.11.1 (VoiP server site B)

Test routerSiteA#traceroute
Protocol [ip]:
Target IP address: 10.3.11.1
Source address: 10.16.10.145
Numeric display [n]:
Timeout in seconds [3]:
Probe count [3]:
Minimum Time to Live [1]:
Maximum Time to Live [30]:
Port Number [33434]:
Loose, Strict, Record, Timestamp, Verbose[none]:
Type escape sequence to abort.
Tracing the route to 10.3.11.1

  1  *  *  *
  2  *  *  *
  3  *  *  *
  4  *  *  *
Test routerSiteA#


So it seems pretty obvious that the source address of 10.16.0.0/24 is not being allowed across the 19.168.201.253/192.168.40.253 path.

Just to compare in our production network and our production router whihc Im trying to replace I get the following from my laptop when trying to get to 10.3.11.1:

C:\Documents and Settings\kam.khan>tracert 10.3.11.1

Tracing route to 10.3.11.1 over a maximum of 30 hops

  1    76 ms     1 ms     1 ms  10.16.10.236
  2     8 ms     7 ms     7 ms  10.0.3.193
  3     8 ms     8 ms     8 ms  10.3.11.1

Trace complete.

C:\Documents and Settings\kam.khan>

So all traffic hits this router and im assuming the 10.16.10.236 has access lists on it with PBR allowing it to route all 10.16.0.0./16 traffic for 10.3.11.0/24  down its MPLS (of whihc 10.3.193 is its first hop). I want 10.16.10.145 to do this! But the problem is 10.16.0.0/16 goes another route!

Arhh!

what do you think?!

may be I need to get the ISP for the MPLS to do some source filtering...

Much thanks agian

kam

Review Cisco Networking for a $25 gift card