[c-nsp] Need help with IPv6 CoPP
"Rolf Hanßen"
nsp at rhanssen.de
Wed May 8 11:49:03 EDT 2013
Hi,
I captured on the Sup2T (001c.0f1c.bc00) with "monitor capture start" +
"sh monitor capture buffer | inc 86DD":
len 130 , 3333.0000.0005 001c.0f1c.bc00 86DD
6E000000004C5901FE800000
len 114 , 3333.0000.0005 001c.0f1c.bc00 86DD
6E000000003C5901FE800000
len 90 , 3333.0000.0005 001c.0f1c.bc00 86DD
6E00000000245901FE800000
len 90 , 3333.0000.0016 001c.0f1c.bc00 86DD
6E00000000240001FE800000
len 94 , 001c.0f1c.bc00 0011.5d9b.a180 86DD
6E00000000285901FE800000
len 82 , 0011.5d9b.a180 001c.0f1c.bc00 86DD
6E000000001C5901FE800000
len 94 , 0011.5d9b.a180 001c.0f1c.bc00 86DD
6E00000000285901FE800000
len 90 , 3333.0000.0016 001c.0f1c.bc00 86DD
6E00000000240001FE800000
len 82 , 001c.0f1c.bc00 0011.5d9b.a180 86DD
6E000000001C5901FE800000
len 162 , 001c.0f1c.bc00 0011.5d9b.a180 86DD
6E000000006C5901FE800000
len 82 , 0011.5d9b.a180 001c.0f1c.bc00 86DD
6E000000001C5901FE800000
len 82 , 001c.0f1c.bc00 0011.5d9b.a180 86DD
6E000000001C5901FE800000
len 118 , 0011.5d9b.a180 001c.0f1c.bc00 86DD
6E00000000405901FE800000
len 246 , 001c.0f1c.bc00 0011.5d9b.a180 86DD
6E00000000C05901FE800000
len 130 , 3333.0000.0005 001c.0f1c.bc00 86DD
6E000000004C5901FE800000
len 90 , 3333.0000.0016 001c.0f1c.bc00 86DD
6E00000000240001FE800000
len 114 , 3333.0000.0005 001c.0f1c.bc00 86DD
6E000000003C5901FE800000
len 114 , 3333.0000.0005 0011.5d9b.a180 86DD
6E000000003C5901FE800000
len 114 , 3333.0000.0005 0011.5d9b.a180 86DD
6E000000003C5901FE800000
len 94 , 3333.0000.0005 0011.5d9b.a180 86DD
6E00000000285901FE800000
As far as I see everything directed to the Sup720 (0011.5d9b.a180) has
next header 0x59, which is 89 / OSPF.
kind regards
Rolf
> On 07/05/2013 13:05, "Rolf Hanßen" wrote:
>> So as far as I testet Sup2T only needs:
>> permit 89 FE80::/10 any
>>
>> Sup720 needs:
>> permit 89 FE80::/10 any
>> permit ipv6 FE80::/10 FE80::/10
>
> ok, odd.
>
>> Some minutes later:
>> 1w5d: %OSPFv3-5-ADJCHG: Process 1, Nbr 123.123.123.123 on Vlan25 from
>> EXSTART to DOWN, Neighbor Down: Too many retransmits
>
> If I were debugging this and if there were differences between the sup720
> and the sup2t, I would span the RP to see what sort of packets the sup2t
> is
> seeing. I don't have any sup2ts to test this out, but if you get a packet
> dump, you should be able to design a copp policy based on that.
>
> Nick
>
>
>
More information about the cisco-nsp
mailing list