VRRP both L3 interfaces are master on CE12804S

Latest reply: Dec 26, 2018 07:35:23 287 2 1 0
Issue Description

We have implemented configuration below in HA with VRRP and we noticed that for vlan1990 both L3 interfaces are master.


transparent.gif Alarm Information

<ssc-dccore-ph-1>dis vrrp int vla1990 verbose

Vlanif1990 | Virtual Router 1

State          : Master

Virtual IP     : 10.12.206.1

Master IP      : 10.12.206.2

PriorityRun    : 120

PriorityConfig : 120

MasterPriority : 120

Preempt        : YES   Delay Time : 20s   Remain : --

TimerRun       : 1s

TimerConfig    : 1s

Auth Type      : NONE

Virtual MAC    : 0000-5e00-0101

Check TTL      : YES

Config Type    : Normal

Create Time       : 2015-11-05 00:19+01:00

Last Change Time  : 2015-11-05 00:19+01:00

 

 

Vlanif1990 | Virtual Router 1

State          : Master

Virtual IP     : 10.12.206.1

Master IP      : 10.12.206.3

PriorityRun    : 100

PriorityConfig : 100

MasterPriority : 100

Preempt        : YES   Delay Time : 20s   Remain : --

TimerRun       : 1s

TimerConfig    : 1s

Auth Type      : NONE

Virtual MAC    : 0000-5e00-0101

Check TTL      : YES

Config Type    : Normal

Create Time       : 2015-11-05 00:19+01:00

Last Change Time  : 2015-11-05 00:19+01:00


transparent.gif Handling Process

1.    We checked configuration that looks ok:

#

interface Eth-Trunk7

 description Uplink ssc-srvdist-bc-1

 port link-type trunk

 port trunk pvid vlan 2

 port trunk allow-pass vlan 2 7 to 8 16 48 50 55 to 56 60 89 to 90 92 100

 port trunk allow-pass vlan 108 110 216 232 248 254 260 262 to 263 270 277 to 278

 port trunk allow-pass vlan 301 to 308 514 to 521 551 to 558 571 to 578 591 to 598 611 to 618 631 to 638 651 to 658 671 to 678 691 to 692

 port trunk allow-pass vlan 711 to 712 848 to 849 864 to 865 880 to 881 893 896 to 897 909 912 to 913 925 928 to 929

 port trunk allow-pass vlan 941 944 to 945 957 960 to 961 973 976 to 977 989 993 to 994 997 1040

 port trunk allow-pass vlan 1047 to 1048 1051 1054 1072 to 1073 1601 to 1608 1631 to 1638 1975 1980 to 1981 1983 to 1984 1986

 port trunk allow-pass vlan 1990 to 1991 2696 to 2701 2736 2744 2768 2776

 stp root-protection

 mode lacp-static

 trust dscp

#

#

interface 10GE1/0/32

 description FlashArray-2 (Nic 1)

 port default vlan 1990

 sflow sampling collector 1

 sflow counter collector 1

 sflow counter interval 30

 device transceiver 10GBASE-FIBER

#

 

2.    We check also the logs and noticed lots of flapping present:

Sep  8 2017 10:44:44+02:00 DST ssc-dcdist-ph-1 %FEI_COMM/4/hwMflpVlanLoopAlarm_active(l):CID=0x807f0447-alarmID=0x095e0012;MAC flapping detected, VlanId = 1991, Original-Port = Eth-Trunk10, Flapping port 1 = Eth-Trunk1, port 2 = -. Check the network connected to the interface learning a flapping MAC address : 0000-5e00-0101.

Sep  8 2017 10:40:45+02:00 DST ssc-dcdist-ph-1 %FEI_COMM/4/hwMflpVlanLoopAlarm_active(l):CID=0x807f0436-alarmID=0x095e0012;MAC flapping detected, VlanId = 1990, Original-Port = Eth-Trunk10, Flapping port 1 = Eth-Trunk1, port 2 = -. Check the network connected to the interface learning a flapping MAC address : 0000-5e00-0101.

Sep  8 2017 10:40:38+02:00 DST ssc-dcdist-ph-1 %FEI_COMM/4/hwMflpVlanLoopAlarm_clear(l):CID=0x807f0436-alarmID=0x095e0012-clearType=service_resume;Mac flapping detection recovered in vlan 1990.

Sep  8 2017 10:34:38+02:00 DST ssc-dcdist-ph-1 %FEI_COMM/4/hwMflpVlanLoopAlarm_clear(l):CID=0x807f0436-alarmID=0x095e0012-clearType=service_resume;Mac flapping detection recovered in vlan 263.

Sep  8 2017 10:24:43+02:00 DST ssc-dcdist-ph-1 %FEI_COMM/4/hwMflpVlanLoopAlarm_active(l):CID=0x807f0436-alarmID=0x095e0012;MAC flapping detected, VlanId = 1990, Original-Port = Eth-Trunk10, Flapping port 1 = Eth-Trunk1, port 2 = -. Check the network connected to the interface learning a flapping MAC address : 0000-5e00-0101.

3.    Checked configuration on the VLANs and noticed there is command added “multicast drop-unknown”.

<ssc-dcdist-ph-1>dis cur conf vlan 1990

#

vlan 1990

description ssc_srv-mgmt07

igmp snooping enable

multicast drop-unknown

#

 

vlan 1990

description ssc_srv-mgmt07

igmp snooping enable

igmp snooping querier enable

multicast drop-unknown

#

transparent.gif Root Cause

 Unknown multicast flows are multicast data flows that match no entry in the multicast forwarding table. By default, the switch broadcasts unknown multicast flows in the corresponding VLAN. You can use the multicast drop-unknown command to configure the switch to drop unknown multicast flows, which reduces instant bandwidth usage compared with the broadcast mode.

transparent.gif Solution

We removed the multicast drop unknown function from VLAN 1990 and the VRRP Master/Backup state changed on normal on the VRRP peers.

<HUAWEI> system-view

[~HUAWEI] vlan 1990

[*HUAWEI-vlan10] undo multicast drop-unknown

  • x
  • convention:

xiaomumu
Created Dec 24, 2018 01:39:59 Helpful(0) Helpful(0)

Learn more, great
  • x
  • convention:

dagui
Created Dec 26, 2018 07:35:23 Helpful(0) Helpful(0)

We removed the multicast drop unknown function from VLAN 1990 and the VRRP Master/Backup state changed on normal on the VRRP peers.Can you provide a more detailed explanation?
  • x
  • convention:

Comment

Reply
You need to log in to reply to the post Login | Register

Notice Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " Privacy."
If the attachment button is not available, update the Adobe Flash Player to the latest version!
Login and enjoy all the member benefits

Login and enjoy all the member benefits

Login