Quantcast
Channel: Ethernet Switching topics
Viewing all 2326 articles
Browse latest View live

Latency is abnormal on EX3400

$
0
0

I have 2 EX3400 switches that connected each other with a copper cable directly .

When I did a ping test each other via  Lay2  or  Lay3 interface . The latency average was around 18ms.

Also I connected a EX3400 to Cisco router (Huawei router ,Juniper EX4200 ) directly via Lay2 or Lay 3 . The latency average was around 15ms.

But when I used two EX4200 switches to do the Ping test VIA L2 & L3 . The Latency was no more than 2ms .

I don't know if this related to interface routing bridging (irb) on EX3400 .

Anyone can help me with this ? Thx

  •  


VLAN Swap on Access Switch port - Best way to test it is working?

$
0
0

Hi Everyone, 

 

If I set up VLAN Translation (swap) on a Access Switch EX4200 port, how would it be the best way to test that it is working correctly, i.e swapping the VLAN? I would be using the following config on the EX4200 access port:

 

root@access> show configuration vlans
vlan-100 {
   vlan-id 100;
   interface {
      ge-0/0/0.0 {
         mapping {
            10 {
               swap;

 

Since VLAN Swap can only be set up on a Access port, can I connect another switch (e.g EX2200) into that port and have it act as a "Customer Device" with VLAN-10 for example and then have the swap to VLAN-100 occur on the EX4200

 

Any help appreciated. 

 

 

Format Installing a QFX fabric

$
0
0

Hi everyone

 

I have a downtime window to perform a format install on the entire fabric.

 

Am I correct in thinking that I can disconnect and do each individual switch separately and then lastly upgrade the master routing engine and add the configuration back to it before reconnecting the other switches and, because they are all pre-provisioned,  the other spine and all the leafs will automatically connect themselves into a fabric, including automatically configuring their own inter-switch links?

 

Will I have to do anything with any licenses or license files when I reconnect all the devices into a fabric?

 

Thanks

Unable to commit COS config on EX4600 with Junos 14.1

$
0
0

Hi Experts, 

 

The below configuration is working fine on EX4600 switch with Junos 18.1.

set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af11
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af12
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af13
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af21
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af22
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af23
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af31
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af32
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af33
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af41
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af42
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class assured-forwarding loss-priority low code-points af43
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class network-control loss-priority low code-points nc1
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class network-control loss-priority low code-points nc2
set class-of-service classifiers dscp "DSCP Classifier" forwarding-class expedited-forwarding loss-priority low code-points ef
set class-of-service classifiers ieee-802.1 EF forwarding-class expedited-forwarding loss-priority low code-points 101
set class-of-service classifiers inet-precedence EF forwarding-class expedited-forwarding loss-priority low code-points 101

set class-of-service interfaces xe-* scheduler-map "Scheduler Map"
set class-of-service interfaces xe-* unit * classifiers dscp "DSCP Classifier"

set class-of-service scheduler-maps "Scheduler Map" forwarding-class best-effort scheduler best-effort-scheduler
set class-of-service scheduler-maps "Scheduler Map" forwarding-class expedited-forwarding scheduler expedited-scheduler
set class-of-service scheduler-maps "Scheduler Map" forwarding-class assured-forwarding scheduler assured-scheduler
set class-of-service scheduler-maps "Scheduler Map" forwarding-class network-control scheduler strict-priority-scheduler
set class-of-service schedulers best-effort-scheduler transmit-rate percent 35
set class-of-service schedulers best-effort-scheduler buffer-size percent 40
set class-of-service schedulers best-effort-scheduler priority low
set class-of-service schedulers assured-scheduler transmit-rate percent 25
set class-of-service schedulers assured-scheduler buffer-size percent 25
set class-of-service schedulers assured-scheduler priority low
set class-of-service schedulers expedited-scheduler transmit-rate percent 30
set class-of-service schedulers expedited-scheduler buffer-size percent 30
set class-of-service schedulers strict-priority-scheduler buffer-size percent 5
set class-of-service schedulers strict-priority-scheduler priority strict-high


but once i used same configuration on EX4600 with JUNOS 14.1X53-D47.6, it gives following error.

 

([edit class-of-service classifiers dscp "DSCP Classifier" forwarding-class]
'assured-forwarding'
forwarding class undefined: assured-forwarding)

 

Do i have to configure any extra parameter on EX4600 with JUNOS 14.1X53-D47.6? Please advise.

 

Thank you
Badar

Configure acx5448 function as switch?

$
0
0

Hi all,

 

 

May i know whether someone here can share how to configure ACX5448 as function layer 2 switch. I means trunk and access port configuration. As i'm check the acx5448 dont have know interface-mode trunk. So what knob that i need to use?

 

Thanks and appreciate your feedback.

 

Sflow Issue

$
0
0

Hello Guys,
I have fastnetmon and Juniper EX4200 series and my switches send sflow to fastnetmon but i think calculation is wrong in fastnetmon,maybe i have missed a setting or set wrong values,
these are my FNM values :
# Limits for Dos/DDoS attacks
threshold_pps = 280000
threshold_mbps = 1400
threshold_flows = 3500
threshold_tcp_mbps = 100000
threshold_udp_mbps = 200
threshold_icmp_mbps = 250

threshold_tcp_pps = 100000
threshold_udp_pps = 400000
threshold_icmp_pps = 100000

ban_for_tcp_bandwidth = off
ban_for_udp_bandwidth = on
ban_for_icmp_bandwidth = on

ban_for_tcp_pps = off
ban_for_udp_pps = on
ban_for_icmp_pps = on


average_calculation_time = 1
average_calculation_time_for_subnets = 1

and here is my juniper sflow settings :
sFlow : Enabled
Sample limit : 300 packets/second
Polling interval : 20 second
Sample rate egress : 1:2048: Disabled
Sample rate ingress : 1:20000: Enabled
Agent ID : 172.x.x.x
Source IP address : 172.x.x.x

and my switch has 2x 10gb (LACP) and connected to my core switches.

any idea which part should i edit ?

THank you.

EX3400 link mode half duplex

$
0
0

Hi,

We have EX3400 with JUNOS 18.2R3-S1.7 vesion virtual chassis configuation.

on port ge-1/0/12 i saw that port link mode is half duplex. i tried to hard core full duplex and commit the config but still its showing link mode half duplex. please suggest how can i configure full duplex. Their is no ethernet cable connected on interface.

 

--> switch1# set interfaces ge-1/0/12 link-mode full-duplex

 

switch1#show interfaces ge-1/0/12
Physical interface: ge-1/0/12, Enabled, Physical link is Down
Interface index: 814, SNMP ifIndex: 630
Link-level type: Ethernet, MTU: 1514, LAN-PHY mode, Link-mode: Half-duplex, Speed: 100mbps, Duplex: Full-Duplex, BPDU Error: None, Loop Detect PDU Error: None,
Ethernet-Switching Error: None, MAC-REWRITE Error: None, Loopback: Disabled, Source filtering: Disabled, Flow control: Disabled, Auto-negotiation: Enabled,
Remote fault: Online, Media type: Copper, IEEE 802.3az Energy Efficient Ethernet: Disabled, Auto-MDIX: Enabled

CoS on QFX irb

$
0
0

I have qfx 5120 with junos version 18.4R2-S3

Hi, i have topology like on picture in attachment and config:

set interfaces xe-0/0/0 unit 0 family inet filter input QOS-FILTER-ACCESS
set interfaces xe-0/0/0 unit 0 family inet address 10.48.82.1/30
set interfaces xe-0/0/1 unit 0 family inet filter input QOS-FILTER-ACCESS
set interfaces xe-0/0/1 unit 0 family inet address 10.48.82.5/30
set interfaces xe-0/0/2 unit 0 family inet filter input QOS-FILTER-ACCESS
set interfaces xe-0/0/2 unit 0 family inet address 10.48.82.9/30
set interfaces xe-0/0/3 unit 0 family inet filter input QOS-FILTER-ACCESS
... etc

set interfaces et-0/0/50 unit 0 family ethernet-switching interface-mode trunk
set interfaces et-0/0/50 unit 0 family ethernet-switching vlan members to_SW1-0
set interfaces et-0/0/50 unit 0 family ethernet-switching vlan members to_SW1-1

set vlans to_SW1-0 vlan-id 422
set vlans to_SW1-0 l3-interface irb.422
set vlans to_SW1-1 vlan-id 411
set vlans to_SW1-1 l3-interface irb.411


set interfaces irb unit 411 family inet address 10.48.200.10/31
set interfaces irb unit 422 family inet address 10.48.200.4/31


set class-of-service classifiers dscp MY-DSCP import default
set class-of-service classifiers dscp MY-DSCP forwarding-class BETTER-BE loss-priority low code-points 011010
set class-of-service classifiers dscp MY-DSCP forwarding-class WORST-BE loss-priority low code-points 011100
set class-of-service classifiers dscp MY-DSCP forwarding-class UDP-CLASS loss-priority low code-points 011110
set class-of-service drop-profiles LATE-DROP interpolate fill-level 90
set class-of-service drop-profiles LATE-DROP interpolate fill-level 100
set class-of-service drop-profiles LATE-DROP interpolate drop-probability 0
set class-of-service drop-profiles LATE-DROP interpolate drop-probability 100
set class-of-service drop-profiles EARLY-DROP interpolate fill-level 80
set class-of-service drop-profiles EARLY-DROP interpolate fill-level 100
set class-of-service drop-profiles EARLY-DROP interpolate drop-probability 0
set class-of-service drop-profiles EARLY-DROP interpolate drop-probability 100
set class-of-service drop-profiles UDP-DROP interpolate fill-level 99
set class-of-service drop-profiles UDP-DROP interpolate fill-level 100
set class-of-service drop-profiles UDP-DROP interpolate drop-probability 0
set class-of-service drop-profiles UDP-DROP interpolate drop-probability 100
set class-of-service forwarding-classes class BETTER-BE queue-num 1
set class-of-service forwarding-classes class WORST-BE queue-num 2
set class-of-service forwarding-classes class UDP-CLASS queue-num 5
set class-of-service interfaces et-0/0/50 scheduler-map MY-SCHED-MAP
set class-of-service interfaces et-0/0/50 unit * classifiers dscp MY-DSCP
set class-of-service scheduler-maps MY-SCHED-MAP forwarding-class BETTER-BE scheduler MY-AF31-sched
set class-of-service scheduler-maps MY-SCHED-MAP forwarding-class WORST-BE scheduler MY-AF32-sched
set class-of-service scheduler-maps MY-SCHED-MAP forwarding-class network-control scheduler MY-NETW-CONTROL-sched
set class-of-service scheduler-maps MY-SCHED-MAP forwarding-class best-effort scheduler MY-BE-sched
set class-of-service scheduler-maps MY-SCHED-MAP forwarding-class UDP-CLASS scheduler MY-AF33-UDP-sched
set class-of-service schedulers MY-AF31-sched transmit-rate percent 10
set class-of-service schedulers MY-AF31-sched buffer-size percent 10
set class-of-service schedulers MY-AF31-sched priority low
set class-of-service schedulers MY-AF31-sched drop-profile-map loss-priority low protocol any drop-profile LATE-DROP
set class-of-service schedulers MY-AF32-sched transmit-rate percent 5
set class-of-service schedulers MY-AF32-sched buffer-size percent 5
set class-of-service schedulers MY-AF32-sched priority low
set class-of-service schedulers MY-AF32-sched drop-profile-map loss-priority low protocol any drop-profile EARLY-DROP
set class-of-service schedulers MY-NETW-CONTROL-sched transmit-rate percent 1
set class-of-service schedulers MY-NETW-CONTROL-sched buffer-size percent 1
set class-of-service schedulers MY-NETW-CONTROL-sched priority low
set class-of-service schedulers MY-NETW-CONTROL-sched drop-profile-map loss-priority low protocol any drop-profile LATE-DROP
set class-of-service schedulers MY-BE-sched transmit-rate percent 82
set class-of-service schedulers MY-BE-sched buffer-size percent 82
set class-of-service schedulers MY-BE-sched priority low
set class-of-service schedulers MY-BE-sched drop-profile-map loss-priority low protocol any drop-profile EARLY-DROP
set class-of-service schedulers MY-AF33-UDP-sched transmit-rate percent 2
set class-of-service schedulers MY-AF33-UDP-sched buffer-size percent 2
set class-of-service schedulers MY-AF33-UDP-sched priority low
set class-of-service schedulers MY-AF33-UDP-sched drop-profile-map loss-priority low protocol any drop-profile UDP-DROP

set firewall family inet filter QOS-FILTER-ACCESS term 100 from destination-port 666
set firewall family inet filter QOS-FILTER-ACCESS term 100 then loss-priority low
set firewall family inet filter QOS-FILTER-ACCESS term 100 then forwarding-class WORST-BE
set firewall family inet filter QOS-FILTER-ACCESS term 100 then accept
set firewall family inet filter QOS-FILTER-ACCESS term 100 then dscp af32
set firewall family inet filter QOS-FILTER-ACCESS term 200 from destination-port 8890
set firewall family inet filter QOS-FILTER-ACCESS term 200 then loss-priority low
set firewall family inet filter QOS-FILTER-ACCESS term 200 then forwarding-class BETTER-BE
set firewall family inet filter QOS-FILTER-ACCESS term 200 then accept
set firewall family inet filter QOS-FILTER-ACCESS term 200 then dscp af31
set firewall family inet filter QOS-FILTER-ACCESS term 300 from protocol udp
set firewall family inet filter QOS-FILTER-ACCESS term 300 then loss-priority low
set firewall family inet filter QOS-FILTER-ACCESS term 300 then forwarding-class UDP-CLASS
set firewall family inet filter QOS-FILTER-ACCESS term 300 then accept
set firewall family inet filter QOS-FILTER-ACCESS term 300 then dscp af33
set firewall family inet filter QOS-FILTER-ACCESS term 900 then accept


sw832> show interfaces queue et-0/0/50   
Physical interface: et-0/0/50, Enabled, Physical link is Up
  Interface index: 652, SNMP ifIndex: 527
Forwarding classes: 12 supported, 8 in use
Egress queues: 10 supported, 8 in use
Queue: 0, Forwarding classes: best-effort
  Queued:
    Packets              :          199573359267                688668 pps
    Bytes                :       118773722228134            6597883488 bps
  Transmitted:
    Packets              :          199573358553                688668 pps
    Bytes                :       118773721721756            6597883488 bps
    Tail-dropped packets : Not Available  
    RL-dropped packets   :                     0                     0 pps
    RL-dropped bytes     :                     0                     0 bps
    Total-dropped packets:                   714                     0 pps
    Total-dropped bytes  :                506378                     0 bps
Queue: 1, Forwarding classes: BETTER-BE
  Queued:
    Packets              :                614192                     0 pps
    Bytes                :              46713415                     0 bps
  Transmitted:
    Packets              :                614192                     0 pps
    Bytes                :              46713415                     0 bps
    Tail-dropped packets : Not Available  
    RL-dropped packets   :                     0                     0 pps
    RL-dropped bytes     :                     0                     0 bps
    Total-dropped packets:                     0                     0 pps
    Total-dropped bytes  :                     0                     0 bps
Queue: 2, Forwarding classes: WORST-BE
  Queued:
    Packets              :               2334111                     0 pps
    Bytes                :             178743523                     0 bps
  Transmitted:
    Packets              :               2334111                     0 pps
    Bytes                :             178743523                     0 bps
    Tail-dropped packets : Not Available  
    RL-dropped packets   :                     0                     0 pps
    RL-dropped bytes     :                     0                     0 bps
    Total-dropped packets:                     0                     0 pps
    Total-dropped bytes  :                     0                     0 bps
Queue: 3, Forwarding classes: fcoe
  Queued:
    Packets              :                     0                     0 pps
    Bytes                :                     0                     0 bps
  Transmitted:
    Packets              :                     0                     0 pps
    Bytes                :                     0                     0 bps
    Tail-dropped packets : Not Available  
    RL-dropped packets   :                     0                     0 pps
    RL-dropped bytes     :                     0                     0 bps
    Total-dropped packets:                     0                     0 pps
    Total-dropped bytes  :                     0                     0 bps
Queue: 4, Forwarding classes: no-loss   
  Queued:
    Packets              :                     0                     0 pps
    Bytes                :                     0                     0 bps
  Transmitted:
    Packets              :                     0                     0 pps
    Bytes                :                     0                     0 bps
    Tail-dropped packets : Not Available  
    RL-dropped packets   :                     0                     0 pps
    RL-dropped bytes     :                     0                     0 bps
    Total-dropped packets:                     0                     0 pps
    Total-dropped bytes  :                     0                     0 bps
Queue: 5, Forwarding classes: UDP-CLASS
  Queued:
    Packets              :             475938138                   530 pps
    Bytes                :           66113969292                558176 bps
  Transmitted:
    Packets              :             475938138                   530 pps
    Bytes                :           66113969292                558176 bps
    Tail-dropped packets : Not Available  
    RL-dropped packets   :                     0                     0 pps
    RL-dropped bytes     :                     0                     0 bps
    Total-dropped packets:                     0                     0 pps
    Total-dropped bytes  :                     0                     0 bps
Queue: 7, Forwarding classes: network-control
  Queued:
    Packets              :                332353                     4 pps
    Bytes                :              67792482                  3760 bps
  Transmitted:
    Packets              :                332353                     4 pps
    Bytes                :              67792482                  3760 bps
    Tail-dropped packets : Not Available  
    RL-dropped packets   :                     0                     0 pps
    RL-dropped bytes     :                     0                     0 bps
    Total-dropped packets:                     0                     0 pps
    Total-dropped bytes  :                     0                     0 bps
Queue: 8, Forwarding classes: mcast
  Queued:
    Packets              :                     0                     0 pps
    Bytes                :                     0                     0 bps
  Transmitted:
    Packets              :                     0                     0 pps
    Bytes                :                     0                     0 bps
    Tail-dropped packets : Not Available  
    RL-dropped packets   :                     0                     0 pps
    RL-dropped bytes     :                     0                     0 bps
    Total-dropped packets:                     0                     0 pps
    Total-dropped bytes  :                     0                     0 bps

 

My idea is that this will work this way:
For each irb, the transmit rate defined in the rules will be highlighted, i.e. on each irb interface, when fully loaded, 5 percent of the band will be guaranteed for WORST-BE traffic, 10 percent for BETTER-BE, and so on. Right?

 


Unable to connect using remote desktop to endpoints on Dot1x ports

$
0
0

Hi Experts,
Using EX2200 with OS version 15.1r and integrating with Cisco Identity Service Engine (ISE).

I am able to integrate the switch with ISE without any issues and dot1x authentications are working as expected.

The issue that seen is, when the user tries to take the remote session of the endpoint which is on the dot1x enabled port, then endpoint that we are trying to connect loses its IP address.

Post closing remote desktop application, the endpoint regains the IP address.

 

There are no ACLs, just VLAN assigned on the inteface. But, able to take remote of the endpoints connected to non dot1x ports without any issues...

 

Is there anything missing from the configuration?

Has anyone before seen this issue?

 

Any pointers much appreiciated.

VQFX and Cisco VIOS LACP PORT CHANNEL WITH TWO LINKS?

$
0
0



Hi how is possible to connect Juniper VQFX with Cisco VIOS in port channel with LACP?

Here is my onfiguration but it doesn't work...

 

 

Juniper VQFX side configuration:
root@vqfx-re# run show configuration interfaces ae0
aggregated-ether-options {
minimum-links 1;
lacp {
active;
periodic slow;
force-up;
}
}
unit 0 {
family ethernet-switching {
interface-mode trunk;
vlan {
members all;
}
storm-control default;
}
}

 

root@vqfx-re# run show interfaces terse ae0
Interface Admin Link Proto Local Remote
ae0 up up
ae0.0 up up eth-switch

 

root@vqfx-re# run show interfaces terse xe-0/0/2
Interface Admin Link Proto Local Remote
xe-0/0/2 up up
xe-0/0/2.0 up up aenet --> ae0.0

 

root@vqfx-re# run show interfaces terse xe-0/0/3
Interface Admin Link Proto Local Remote
xe-0/0/3 up up
xe-0/0/3.0 up up aenet --> ae0.0



Cisco configruation side:

interface Port-channel1
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate

interface GigabitEthernet1/1
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
media-type rj45
no negotiation auto
channel-protocol lacp
channel-group 1 mode active


interface GigabitEthernet1/2
switchport trunk encapsulation dot1q
switchport mode trunk
switchport nonegotiate
media-type rj45
no negotiation auto
channel-protocol lacp
channel-group 1 mode active


Switch#show interfaces status
Gi1/1 notconnect trunk auto auto unknown
Gi1/2 notconnect trunk auto auto unknown
Po1 connected trunk auto auto







XSTP : Interface ge-0/0/44 is not enabled for Ethernet Switching

$
0
0

Hi,

We have Model: ex4300-48p Junos: 18.1R3-S6.1

While i am changing interface range i am getting below error. please suggest, how to fix

 

SWITCH# run show configuration |display set |match interface-range
set interfaces interface-range SERVER-PORTS member-range ge-0/0/12 to ge-0/0/45
set interfaces interface-range SERVER-PORTS unit 0 family ethernet-switching interface-mode access
set interfaces interface-range ALL-RSTP-ENABLE member-range ge-0/0/12 to ge-0/0/45


{master:0}[edit]
SWITCH# delete interfaces interface-range SERVER-PORTS member-range ge-0/0/12 to ge-0/0/45

{master:0}[edit]
SWITCH# set interfaces interface-range SERVER-PORTS member-range ge-0/0/12 to ge-0/0/43

{master:0}[edit]
SWITCH# commit check
[edit protocols rstp]
'interface'
XSTP : Interface ge-0/0/44 is not enabled for Ethernet Switching
error: configuration check-out failed

 

--> Once this error get clear i will push below config

set interfaces ge-0/0/44 unit 0 family inet no-redirects
set interfaces ge-0/0/44 unit 0 family inet address 10.12.17.3/30
set protocols ospf area 0.0.0.0 interface ge-0/0/44.0

EX3300: Connect dumb switch to Mgmt port

$
0
0

Hi!

Looking for some pointers, I'm trying to connect a small dumb switch to the OOB mgmt port of the ex3300.

I have the switch configured with a static ip for mgmt, when I connect a client to the dumb switch (using a static ip in the same subnet), I can't reach the static ip of the mgmt interface. The vme port is displayed as "Oper status down".

 

Connecting directly without the dumbswitch works obviously.

 

Is this not possible to set up? If it is, what sort of configuration is needed.

 

Thanks in advance,

/J

Audio Video Bridging (AVB) support on EX4300-48MP

$
0
0

Hi can anyone confirm if EX4300-48MP switch supports AVB.

DHCP server unable to lease IP

$
0
0

Hi,

We have EX4200 junos [12.3R3.4]

We are able to see end device mac in show ethernet switcing-table but did't get ip details in DHCP binding and show arp

Please suggest how to fix it.

 

SwitchEX4200# run show interfaces vlan.28
Logical interface vlan.28 (Index 118) (SNMP ifIndex 598)
Flags: SNMP-Traps 0x0 Encapsulation: ENET2
Input packets : 7650
Output packets: 87
Protocol inet, MTU: 1500
Flags: None
Addresses, Flags: Is-Preferred Is-Primary
Destination: 10.70.50.32/28, Local: 10.70.50.46, Broadcast: 10.70.50.47

SwitchEX4200# run show helper statistics
BOOTP:
Received packets: 349204
Forwarded packets: 531386
Dropped packets: 28
Due to no interface in DHCP Relay database: 0
Due to no matching routing instance: 0
Due to an error during packet read: 0
Due to an error during packet send: 28
Due to invalid server address: 0
Due to no valid local address: 0
Due to no route to server/client: 0

SwitchEX4200# run show configuration |display set |match dhcp
set system services dhcp pool 10.70.50.32/28 address-range low 10.70.50.33
set system services dhcp pool 10.70.50.32/28 address-range high 10.70.50.45
set system services dhcp pool 10.70.50.32/28 router 10.70.50.46

{master:0}[edit]
SwitchEX4200# run show configuration |display set |match 28
set system services dhcp pool 10.70.50.32/28 address-range low 10.70.50.33
set system services dhcp pool 10.70.50.32/28 address-range high 10.70.50.45
set system services dhcp pool 10.70.50.32/28 router 10.70.50.46
set interfaces vlan unit 28 family inet address 10.70.50.46/28
set vlans test vlan-id 28
set vlans test l3-interface vlan.28

{master:0}[edit]
SwitchEX4200# run show configuration |display set |match test
set interfaces ge-0/0/40 unit 0 family ethernet-switching vlan members test
set interfaces ge-0/0/41 unit 0 family ethernet-switching vlan members test
set interfaces ge-0/0/42 unit 0 family ethernet-switching vlan members test
set interfaces ge-0/0/43 unit 0 family ethernet-switching vlan members test
set interfaces ge-0/0/44 unit 0 family ethernet-switching vlan members test
set interfaces ge-0/0/45 unit 0 family ethernet-switching vlan members test
set vlans test vlan-id 28
set vlans test l3-interface vlan.28

SwitchEX4200# run show system services dhcp binding
IP address Hardware address Type Lease expires at
10.70.50.33 74:d2:7c:c2:7e:a2 dynamic 2014-03-26 04:29:06 UTC

{master:0}[edit]
SwitchEX4200# run show system services dhcp statistics
Packets dropped:
Total 35589
Bad hardware address 564

Messages received:
BOOTREQUEST 0
DHCPDECLINE 0
DHCPDISCOVER 12
DHCPINFORM 0
DHCPRELEASE 0
DHCPREQUEST 12

Messages sent:
BOOTREPLY 0
DHCPOFFER 12
DHCPACK 12
DHCPNAK 0

Access port on ACX5448 ?

$
0
0

Hi all,

 

 

Previously i have open thread regarding ACX5448 and the issue already solved on trunk port configuration. But now the issue on access port. I'm try to configure access port on ACX5448 but not work. I try made ACX5448 access port same as switch. It means end device such as PC dont need to confgure anything. Just configure what vlan-id on access port on ACX5448. Currnt situation all the end device that connected to ACX need to configure vlan-id instead supposedly the end device just need to configure unit 0 only.

 

Thanks and appreciate any help in here whether it's limitation on ACX5448 or not?

 


can`t add my juniper EX3300 switch to librenms through snmp

$
0
0

Hi all

i know its just snmp configuration but for some reason it is not working for me ,so maybe you can help me 

i have a bit complicated setup : i setup librenms on EC2 on aws cloud ,and i`m trying to add my datacenter switch throgh its management ip address but my managment network is completly isloated from AWS traffic so i had to nat the traffic and i`m allowing all traffic on my firewall and i`m allowing all udp traffic on the EC2 

The ping from librenms is working and im able to add the switch by using only ping 

but when i try to add the switch using snmp ,i can`t and i get the error message ` Could not connect to sw1, please check the snmp details and snmp reachability`and ` SNMP v2c: No reply with community private`

here is the configuration of snmp v2 on sw1

view all {
oid .1;
}
community private {
view all;
authorization read-write;
}
trap-group spacenet {
targets {
10.x.x.243;
}
}

Can you please help me on by pointing out if there is something i need to check or add on the switch configuration ?does anyone knows how to check snmp reachability on the switch (other than wireshark }?

25GbE on QFX5200: FEC does not work properly

$
0
0

On a QFX5200 we have channelized a 100GbE QSFP+ with Breakout cable into 4x 25GbE. Config is as following:
set interfaces et-0/0/18:0 native-vlan-id 100
set interfaces et-0/0/18:0 mtu 9192
set interfaces et-0/0/18:0 gigether-options fec fec91
set interfaces et-0/0/18:0 unit 0 family ethernet-switching interface-mode trunk
set interfaces et-0/0/18:0 unit 0 family ethernet-switching vlan members 100
...
set interfaces et-0/0/18:0 unit 0 family ethernet-switching storm-control STORMCONTROL
set interfaces et-0/0/18:1 native-vlan-id 100
set interfaces et-0/0/18:1 mtu 9192
set interfaces et-0/0/18:1 gigether-options fec fec91
set interfaces et-0/0/18:1 unit 0 family ethernet-switching interface-mode trunk
set interfaces et-0/0/18:1 unit 0 family ethernet-switching vlan members 100
...
set interfaces et-0/0/18:1 unit 0 family ethernet-switching storm-control STORMCONTROL
set interfaces et-0/0/18:2 native-vlan-id 100
set interfaces et-0/0/18:2 mtu 9192
set interfaces et-0/0/18:2 gigether-options fec fec91
set interfaces et-0/0/18:2 unit 0 family ethernet-switching interface-mode trunk
set interfaces et-0/0/18:2 unit 0 family ethernet-switching vlan members 100
...
set interfaces et-0/0/18:2 unit 0 family ethernet-switching storm-control STORMCONTROL
set interfaces et-0/0/18:3 native-vlan-id 100
set interfaces et-0/0/18:3 mtu 9192
set interfaces et-0/0/18:3 gigether-options fec fec91
set interfaces et-0/0/18:3 unit 0 family ethernet-switching interface-mode trunk
set interfaces et-0/0/18:3 unit 0 family ethernet-switching vlan members 100
...
set interfaces et-0/0/18:3 unit 0 family ethernet-switching storm-control STORMCONTROL
set forwarding-options storm-control-profiles STORMCONTROL all bandwidth-percentage 5
set forwarding-options storm-control-profiles STORMCONTROL all no-unknown-unicast
set forwarding-options storm-control-profiles STORMCONTROL all no-multicast

 

But regarding FEC the output shows a difference:

show interfaces et-0/0/18:0
Physical interface: et-0/0/18:0, Enabled, Physical link is Up
Interface index: 680, SNMP ifIndex: 585
Link-level type: Ethernet, MTU: 9192, LAN-PHY mode, Speed: 25000mbps, BPDU Error: None, Loop Detect PDU Error: None, Ethernet-Switching Error: None, MAC-REWRITE Error: None,
Loopback: Disabled, Source filtering: Disabled, Flow control: Disabled, Media type: Fiber
Device flags : Present Running
Interface flags: SNMP-Traps Internal: 0x4000
Link flags : None
CoS queues : 10 supported, 10 maximum usable queues
Current address: 2c:21:31:c6:d7:0b, Hardware address: 2c:21:31:c6:d7:0b
Last flapped : 2020-03-17 08:10:33 CET (01:43:16 ago)
Input rate : 0 bps (0 pps)
Output rate : 2184 bps (3 pps)
Active alarms : None
Active defects : None
PCS statistics Seconds
Bit errors 0
Errored blocks 0
Ethernet FEC Mode : FEC74
Ethernet FEC statistics Errors
FEC Corrected Errors 0
FEC Uncorrected Errors 0
FEC Corrected Errors Rate 0
FEC Uncorrected Errors Rate 0
PRBS Statistics : Disabled
Interface transmit statistics: Disabled

 

Background
Within Juniper Tech Note "QFX5200 25GbE Fiber Optic Interface Interoperability Testing" (https://www.juniper.net/documentation/en_US/release-independent/solutions/information-products/pathway-pages/qfx5200-25gbe-interop-tn.pdf) on page 4 is written "...the IEEE 802.3by standard has defined Clause 91 with Reed-Solomon FEC (RS-FEC) for 25Gb Ethernet..." and so we coded "set interfaces et-0/0/18:0 gigether-options fec fec91" but the show interfaces cmd shows "Ethernet FEC Mode : FEC74".
This might the current default and only valid parm regarding Release note 18.1R1:
"FEC support for 25-gigabit and 50-gigabit channel speeds (QFX5210 switches)—Starting with Junos OS Release 18.1R1, you can configure forward error correction (FEC) clauses CL74 and CL91 on QFX5210 switches. FEC CL91 can be configured on 100-gigabit interfaces and FEC CL74 can be configured on 25-gigabit and 50-gigabit interfaces. Because the FEC clauses are applied by default on these interfaces, you must disable the FEC clauses if you do not want to apply them."
FEC74 means Base-R FEC
FEC91 meens RS-FEC

 

Question
Does this behavior reflect the standard 802.3by correctly? We have a connection to a 25GbE OSA7 card (IBM System z) and the log shows an error with Refcode 2E432104 which meens "During Link init of OSA adapter the channel has detected an incorrect FEC (Forward Error Correction) mode. Please check the FEC Mode on your switch port. Correct FEC Mode is RS-FEC (Reed Solomon) specified by the IEEE 25Gbase-SR specification."
Does anybody has experience with FEC on 25GbE?

How to exclude DHCPv6 from dhcp-security and DAI?

$
0
0

Hello!

Tell me please,

How to exclude processing DHCPv6 requests from PC from the service dhcp-security and DAI on the EX 2300? Or how to put a pre-filter on the EX 2300 in the DHCPv6 packets from the PC. I'm with the inclusion of security at the ports of the IP-packet starts blocking of DAI for DHCPv6.

Set interface speed on QFX5100-48T VCF

$
0
0

Hello,

we have VCF with QFX5100-48T as leaf. Currently running 18.2R3-S2.9 flex."
Leaf is RJ45 10G switch. After reboot of server link stays down and autonefogiation is reported as "Incomplete". Strange is that I interface is reported as media type fiber.

Physical interface: xe-2/0/30, Enabled, Physical link is Down                                                                                                                                                                                              [126/11171]
  Interface index: 789, SNMP ifIndex: 772, Generation: 291      
  Description: description                          
  Link-level type: Ethernet, MTU: 1514, LAN-PHY mode, Link-mode: Auto, Speed: Auto, BPDU Error: None, Loop Detect PDU Error: None, Ethernet-Switching Error: None, MAC-REWRITE Error: None, Loopback: Disabled, Source filtering: Disabled, Flow control: Disabled,
  Auto-negotiation: Enabled, Remote fault: Offline, Media type: Fiber

I also can't set speed manualy there is just missing option in settings:

snajdr@srv-10g-juniper# show| compare                                                                                              
[edit interfaces xe-2/0/30 ether-options]               
-  auto-negotiation;                                       
+  no-auto-negotiation;                                                                                                            
{master:0}[edit interfaces xe-2/0/30]                                                                                                                                                                                                                                 
snajdr@srv-10g-juniper# commit                                                                                                     
[edit interfaces xe-2/0/30]                                                                                                        
  'ether-options'                                        
    Configure interfaces <interface-name> speed, as auto negotiation is disabled
error: configuration check-out failed                                                                                              
{master:0}[edit interfaces xe-2/0/30]                                                                                              
snajdr@srv-10g-juniper# set speed            
                            ^                                                                                                      
syntax error.                                        

I have speed manualy configured on some same switches which are not in VCF.

Anybody ever experienced this and resolved it?

Non-Juniper 100GBASE -BXSR Equivalent?

$
0
0

I'm trying to find out what the non-Juniper nomenclature is for 100GBASE-BXSR, which is 100Gb over MM LC--does anyone know? Is this 100GBASE-SR2? Or 100GBASE-SRBD? As far as I can tell BXSR is Juniper's naming.

Viewing all 2326 articles
Browse latest View live


<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>