Got it

VRRP both L3 interfaces are master on CE12804S

Latest reply: Dec 26, 2018 07:35:23 415 2 1 0

Hello, this is a case about CE12804S.


Issue Description


We have implemented configuration below in HA with VRRP and we noticed that for vlan1990 both L3 interfaces are master.



transparent.gif Alarm Information


<ssc-dccore-ph-1>dis vrrp int vla1990 verbose


Vlanif1990 | Virtual Router 1


State          : Master


Virtual IP     : 10.12.206.1


Master IP      : 10.12.206.2


PriorityRun    : 120


PriorityConfig : 120


MasterPriority : 120


Preempt        : YES   Delay Time : 20s   Remain : --


TimerRun       : 1s


TimerConfig    : 1s


Auth Type      : NONE


Virtual MAC    : 0000-5e00-0101


Check TTL      : YES


Config Type    : Normal


Create Time       : 2015-11-05 00:19+01:00


Last Change Time  : 2015-11-05 00:19+01:00


 

 

Vlanif1990 | Virtual Router 1


State          : Master


Virtual IP     : 10.12.206.1


Master IP      : 10.12.206.3


PriorityRun    : 100


PriorityConfig : 100


MasterPriority : 100


Preempt        : YES   Delay Time : 20s   Remain : --


TimerRun       : 1s


TimerConfig    : 1s


Auth Type      : NONE


Virtual MAC    : 0000-5e00-0101


Check TTL      : YES


Config Type    : Normal


Create Time       : 2015-11-05 00:19+01:00


Last Change Time  : 2015-11-05 00:19+01:00




transparent.gif Handling Process


1.    We checked configuration that looks ok:


#


interface Eth-Trunk7


 description Uplink ssc-srvdist-bc-1


 port link-type trunk


 port trunk pvid vlan 2


 port trunk allow-pass vlan 2 7 to 8 16 48 50 55 to 56 60 89 to 90 92 100


 port trunk allow-pass vlan 108 110 216 232 248 254 260 262 to 263 270 277 to 278


 port trunk allow-pass vlan 301 to 308 514 to 521 551 to 558 571 to 578 591 to 598 611 to 618 631 to 638 651 to 658 671 to 678 691 to 692


 port trunk allow-pass vlan 711 to 712 848 to 849 864 to 865 880 to 881 893 896 to 897 909 912 to 913 925 928 to 929


 port trunk allow-pass vlan 941 944 to 945 957 960 to 961 973 976 to 977 989 993 to 994 997 1040


 port trunk allow-pass vlan 1047 to 1048 1051 1054 1072 to 1073 1601 to 1608 1631 to 1638 1975 1980 to 1981 1983 to 1984 1986


 port trunk allow-pass vlan 1990 to 1991 2696 to 2701 2736 2744 2768 2776


 stp root-protection


 mode lacp-static


 trust dscp


#


#


interface 10GE1/0/32


 description FlashArray-2 (Nic 1)


 port default vlan 1990


 sflow sampling collector 1


 sflow counter collector 1


 sflow counter interval 30


 device transceiver 10GBASE-FIBER


#


 

2.    We check also the logs and noticed lots of flapping present:


Sep  8 2017 10:44:44+02:00 DST ssc-dcdist-ph-1 I_COMM/4/hwMflpVlanLoopAlarm_active(l):CID=0x807f0447-alarmID=0x095e0012;MAC flapping detected, VlanId = 1991, Original-Port = Eth-Trunk10, Flapping port 1 = Eth-Trunk1, port 2 = -. Check the network connected to the interface learning a flapping MAC address : 0000-5e00-0101.


Sep  8 2017 10:40:45+02:00 DST ssc-dcdist-ph-1 I_COMM/4/hwMflpVlanLoopAlarm_active(l):CID=0x807f0436-alarmID=0x095e0012;MAC flapping detected, VlanId = 1990, Original-Port = Eth-Trunk10, Flapping port 1 = Eth-Trunk1, port 2 = -. Check the network connected to the interface learning a flapping MAC address : 0000-5e00-0101.


Sep  8 2017 10:40:38+02:00 DST ssc-dcdist-ph-1 I_COMM/4/hwMflpVlanLoopAlarm_clear(l):CID=0x807f0436-alarmID=0x095e0012-clearType=service_resume;Mac flapping detection recovered in vlan 1990.


Sep  8 2017 10:34:38+02:00 DST ssc-dcdist-ph-1 I_COMM/4/hwMflpVlanLoopAlarm_clear(l):CID=0x807f0436-alarmID=0x095e0012-clearType=service_resume;Mac flapping detection recovered in vlan 263.


Sep  8 2017 10:24:43+02:00 DST ssc-dcdist-ph-1 I_COMM/4/hwMflpVlanLoopAlarm_active(l):CID=0x807f0436-alarmID=0x095e0012;MAC flapping detected, VlanId = 1990, Original-Port = Eth-Trunk10, Flapping port 1 = Eth-Trunk1, port 2 = -. Check the network connected to the interface learning a flapping MAC address : 0000-5e00-0101.


3.    Checked configuration on the VLANs and noticed there is command added “multicast drop-unknown”.


<ssc-dcdist-ph-1>dis cur conf vlan 1990


#


vlan 1990


description ssc_srv-mgmt07


igmp snooping enable


multicast drop-unknown


#


 

vlan 1990


description ssc_srv-mgmt07


igmp snooping enable


igmp snooping querier enable


multicast drop-unknown


#


transparent.gif Root Cause

 Unknown multicast flows are multicast data flows that match no entry in the multicast forwarding table. By default, the switch broadcasts unknown multicast flows in the corresponding VLAN. You can use the multicast drop-unknown command to configure the switch to drop unknown multicast flows, which reduces instant bandwidth usage compared with the broadcast mode.

transparent.gif Solution


We removed the multicast drop unknown function from VLAN 1990 and the VRRP Master/Backup state changed on normal on the VRRP peers.


<HUAWEI> system-view


[~HUAWEI] vlan 1990


[*HUAWEI-vlan10] undo multicast drop-unknown

We warmly welcome you to enjoy our community!


  • x
  • convention:

xiaomumu
Created Dec 24, 2018 01:39:59 Helpful(0) Helpful(0)

Learn more, great
View more
  • x
  • convention:

dagui
Created Dec 26, 2018 07:35:23 Helpful(0) Helpful(0)

We removed the multicast drop unknown function from VLAN 1990 and the VRRP Master/Backup state changed on normal on the VRRP peers.Can you provide a more detailed explanation?
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " Privacy."

My Followers

Login and enjoy all the member benefits

Login

Huawei Enterprise Support Community
Huawei Enterprise Support Community
Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.