[c-nsp] Troubleshooting basic ISIS

Kasper Adel karim.adel at gmail.com
Tue Jun 14 18:34:55 EDT 2016


Hi,

I am trying to find why on a simple setup, routes are not being advertised
across between PE1 and PE2.

CPE1--(L1)--PE1----(L1L2)----PE2----(L1)---CPE2
CPE1--(broadcast)--PE1----(L1L2)----PE2----(broadcast)---CPE2


I keep seeing this in the log, but the neighbors are up

RP/0/RSP0/CPU0:asr9k-pe2#RP/0/RSP1/CPU0:Jun 14 15:28:58.751 : isis[1010]:
%ROUTING-ISIS-5-AUTH_FAILURE_DROP : Dropped L2 LSP from Bundle-Ether6 SNPA
a60c.0900.0009 due to authentication TLV not found
RP/0/RSP0/CPU0:Jun 14 15:28:58.751 : isis[1010]:
%ROUTING-ISIS-5-AUTH_FAILURE_DROP : Dropped L2 LSP from Bundle-Ether6 SNPA
a60c.0900.0009 due to authentication TLV not found

RP/0/RSP0/CPU0:asr9k-pe2#sh isis neighbors be6 de
Tue Jun 14 15:32:35.995 PDT

IS-IS core neighbors:
System Id      Interface        SNPA           State Holdtime Type IETF-NSF
crs-pe1  BE6              *PtoP*         Up    28       L1L2 Capable
  Area Address(es): 49.0001
  IPv4 Address(es): 200.200.6.2*
  IPv6 Address(es): fe80::a40c:9ff:fe00:9*
  Topologies: 'IPv4 Unicast' 'IPv6 Unicast'
  Uptime: 2d18h

RP/0/RSP0/CPU0:asr9k-pe2#sh run router isis
Tue Jun 14 15:34:23.515 PDT
router isis cor
!
router isis core
 net 49.0001.0000.0000.0004.00
 nsr
 nsf ietf
 nsf lifetime 120
 trace detailed 1000000 standard 1000000 severe 1000000
 log adjacency changes
 lsp-gen-interval initial-wait 20
 lsp-gen-interval maximum-wait 2000 initial-wait 0 secondary-wait 200 level
2
 log pdu drops
 lsp-refresh-interval 65000
 max-lsp-lifetime 65535
 lsp-password hmac-md5 encrypted XXX level 2
 address-family ipv4 unicast
  metric-style wide
  metric-style wide level 1
  metric-style wide level 2
  mpls traffic-eng level-2-only
  mpls traffic-eng router-id Loopback0
  mpls traffic-eng multicast-intact
  spf-interval maximum-wait 2000 initial-wait 50 secondary-wait 100 level 2
  maximum-paths 32
 !

Thanks


More information about the cisco-nsp mailing list