01-30-2024 05:41 AM - edited 01-30-2024 05:44 AM
Hi team,
I am trying to configure ePBR on NCS540 (iosxr). When I try to attach the classes map "cm-providerz-tenanta", to the policy-map type pbr "pm-providerz-clients", I get an error. The command "show configuration failed" writes that cm-providerz-tenanta does not exist. But the current configuration has cm-providerz-tenanta. You can see it in the screenshot I attached. Can you please suggest other ways to customize epbr on NCS540? Thanks
Solved! Go to Solution.
01-30-2024 09:47 AM - edited 01-30-2024 09:47 AM
Hi @config ,
It looks like a limitation specific to the NCS540. What does your ACL look like. You could maybe use some other forms of filtering (such as match source-address or destination-address) as suggested by the following document:
Regards,
01-30-2024 05:48 AM
transmit
add transmit under default class map
MHM
01-30-2024 07:09 AM
Impossible
01-30-2024 07:16 AM
When i were configuring ePBR on the NCS 540, I ran into another problem. Cisco bug serach tool described this problem here https://bst.cisco.com/quickview/bug/CSCvy21699 . Can you tell me if this problem is fixed in the new OS?
01-30-2024 07:22 AM
Hi @config ,
Your class-map needs to be of type traffic as follow:
class-map type traffic match-any cm-providerz-tenanta
match access-group ipv4 al-providerz-tenanta
end-class-map
!
Please delete it and reconfigure it and it should work.
Regards,
01-30-2024 08:20 AM - edited 01-30-2024 08:20 AM
@Harold Ritter faster than me
you dont specify the class type
you need to specify type by
class-map type traffic match-any cm-providerz-tenanta
and also under policy use
class type traffic <name>
NOTE:- for default as I mention before use transmit
thanks
MHM
01-30-2024 09:16 AM
@Harold Ritter , @MHM Cisco World
When i use specify the class type "traffic" in class-map cm-providerz-tenanta, i can't match access-group "al-providerz-tenanta". I have attached screenshot below.
01-30-2024 09:26 AM
class-map type traffic match-any cm-providerz-tenanta
match access-group ipv4 al-providerz-tenanta
end-class-map
commit
if not work share the ACL you use in class map
MHM
01-30-2024 09:47 AM - edited 01-30-2024 09:47 AM
Hi @config ,
It looks like a limitation specific to the NCS540. What does your ACL look like. You could maybe use some other forms of filtering (such as match source-address or destination-address) as suggested by the following document:
Regards,
02-01-2024 05:17 AM
@Harold Ritter Thank you. That helped. And I found out that pbr is configured in vrf, not in the interface.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide