[c-nsp] Troubleshooting basic ISIS

Marc Binderberger marc at sniff.de
Wed Jun 15 05:41:42 EDT 2016


Hello Kasper,

is this configured on both PE1 and PE2?

 lsp-password hmac-md5 encrypted XXX level 2

The log message seems to indicate it is not configured on PE1.

Not sure about the missing routes though - what exactly is missing?


Regards, Marc




On Tue, 14 Jun 2016 15:34:55 -0700, Kasper Adel wrote:
> Hi,
> 
> I am trying to find why on a simple setup, routes are not being advertised
> across between PE1 and PE2.
> 
> CPE1--(L1)--PE1----(L1L2)----PE2----(L1)---CPE2
> CPE1--(broadcast)--PE1----(L1L2)----PE2----(broadcast)---CPE2
> 
> 
> I keep seeing this in the log, but the neighbors are up
> 
> RP/0/RSP0/CPU0:asr9k-pe2#RP/0/RSP1/CPU0:Jun 14 15:28:58.751 : isis[1010]:
> %ROUTING-ISIS-5-AUTH_FAILURE_DROP : Dropped L2 LSP from Bundle-Ether6 SNPA
> a60c.0900.0009 due to authentication TLV not found
> RP/0/RSP0/CPU0:Jun 14 15:28:58.751 : isis[1010]:
> %ROUTING-ISIS-5-AUTH_FAILURE_DROP : Dropped L2 LSP from Bundle-Ether6 SNPA
> a60c.0900.0009 due to authentication TLV not found
> 
> RP/0/RSP0/CPU0:asr9k-pe2#sh isis neighbors be6 de
> Tue Jun 14 15:32:35.995 PDT
> 
> IS-IS core neighbors:
> System Id      Interface        SNPA           State Holdtime Type IETF-NSF
> crs-pe1  BE6              *PtoP*         Up    28       L1L2 Capable
>   Area Address(es): 49.0001
>   IPv4 Address(es): 200.200.6.2*
>   IPv6 Address(es): fe80::a40c:9ff:fe00:9*
>   Topologies: 'IPv4 Unicast' 'IPv6 Unicast'
>   Uptime: 2d18h
> 
> RP/0/RSP0/CPU0:asr9k-pe2#sh run router isis
> Tue Jun 14 15:34:23.515 PDT
> router isis cor
> !
> router isis core
>  net 49.0001.0000.0000.0004.00
>  nsr
>  nsf ietf
>  nsf lifetime 120
>  trace detailed 1000000 standard 1000000 severe 1000000
>  log adjacency changes
>  lsp-gen-interval initial-wait 20
>  lsp-gen-interval maximum-wait 2000 initial-wait 0 secondary-wait 200 level
> 2
>  log pdu drops
>  lsp-refresh-interval 65000
>  max-lsp-lifetime 65535
>  lsp-password hmac-md5 encrypted XXX level 2
>  address-family ipv4 unicast
>   metric-style wide
>   metric-style wide level 1
>   metric-style wide level 2
>   mpls traffic-eng level-2-only
>   mpls traffic-eng router-id Loopback0
>   mpls traffic-eng multicast-intact
>   spf-interval maximum-wait 2000 initial-wait 50 secondary-wait 100 level 2
>   maximum-paths 32
>  !
> 
> Thanks
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/
> 


More information about the cisco-nsp mailing list