Troubleshooting Cisco Express Forwarding Routing Loops

Similar documents
Route Leaking in MPLS/VPN Networks

Troubleshooting LSP Failure in MPLS VPN

Contents. Introduction. Prerequisites. Requirements. Components Used

Adjust Administrative Distance for Route Selection in Cisco IOS Routers Configuration Example

Chapter 5: Maintaining and Troubleshooting Routing Solutions

Configure the IPv6 BGP Local Preference Feature

NAT Support for Multiple Pools Using Route Maps

How to Choose the Best Router Switching Path for Your Network

OSPF Routers Connected by a Point to Multipoint Link

GRE Tunnel with VRF Configuration Example

Understanding Cisco Express Forwarding

Implement Static Routes for IPv6 Configuration Example

The information in this document is based on Cisco IOS Software Release 15.4 version.

Configuring Basic MPLS Using OSPF

OSPF with Multi Area Adjacency Configuration Example

How BGP Routers Use the Multi Exit Discriminator for Best Path Selection

Policy Based Routing with the Multiple Tracking Options Feature Configuration Example

Troubleshooting High CPU Caused by the BGP Scanner or BGP Router Process

Troubleshooting Routing Solutions

MPLS Troubleshooting. Contents. Prerequisites. Document ID: Requirements. Components Used

MD5 Authentication Between BGP Peers Configuration Example

Communication Media Module IP Connectivity

BGP Policy Accounting

MPLS VPN Multipath Support for Inter-AS VPNs

IPv6 Tunnel through an IPv4 Network

Chapter 4 Lab 4-2, Controlling Routing Updates. Topology. Objectives. CCNPv7 ROUTE

Use NAT to Hide the Real IP Address of CTC to Establish a Session with ONS 15454

RealCiscoLAB.com. Chapter 2 Lab 2-2, EIGRP Load Balancing. Topology. Objectives. Background. CCNPv6 ROUTE

MPLS VPN--Inter-AS Option AB

Step 2. Manual configuration of global unicast and link-local addresses

LAB 9: Configure BGP Confederation

Chapter 7 Lab 7-1, Configuring BGP with Default Routing

Using NAT in Overlapping Networks

Ch. 5 Maintaining and Troubleshooting Routing Solutions. Net412- Network troubleshooting

Chapter 4 Lab 4-2, Redistribution Between EIGRP and OSPF

Asymmetric Routing with Bridge Groups on Catalyst 2948G L3 and 4908G L3 Switches

Chapter 1 Lab 1-1, Basic RIPng and Default Gateway Configuration

Introduction to MPLS APNIC

Module 6 Implementing BGP

Configuring IS IS over IPv6

DGS-1510 Series Gigabit Ethernet SmartPro Switch Web UI Reference Guide

FINAL EXAM - SLOT 2 TCP/IP NETWORKING Duration: 90 min. With Solutions

Introduction to MPLS. What is MPLS? 1/23/17. APNIC Technical Workshop January 23 to 25, NZNOG2017, Tauranga, New Zealand. [201609] Revision:

Configuring Redundant Routing on the VPN 3000 Concentrator

MPLS VPN Inter-AS Option AB

How to Verify Cisco Express Forwarding Switching

Achieve Optimal Routing and Reduce BGP Memory Consumption

Internet Routing Basics

MPLS VPN Carrier Supporting Carrier Using LDP and an IGP

BGP Link Bandwidth. Finding Feature Information. Prerequisites for BGP Link Bandwidth

RHI on the Content Switching Module Configuration Example

Back to basics J. Addressing is the key! Application (HTTP, DNS, FTP) Application (HTTP, DNS, FTP) Transport. Transport (TCP/UDP) Internet (IPv4/IPv6)

Routing Overview. Path Determination

Implementing Cisco IP Routing

How to Choose the Best Router Switching Path for

ibgp Multipath Load Sharing

MPLS for R&S CCIE Candidates

Smart Serial. Show interfaces. Shut down. logging synchronous

Static Routing and Serial interfaces. 1 st semester

Catalyst Switches for Microsoft Network Load Balancing Configuration Example

What Does the EIGRP DUAL 3 SIA Error Message Mean?

MPLS VPN Carrier Supporting Carrier Using LDP and an IGP

Troubleshooting High CPU Utilization Due to the IP Input Process

Chapter 6 Lab 6-3, Configuring IBGP and EBGP Sessions, Local Preference, and MED

Layer 3 Switch Processing. CEF-Based Multilayer Switches. Layer 3 Switch Processing (Cont.)

ibgp Multipath Load Sharing

OSPF Sham-Link Support for MPLS VPN

MPLS VPN Carrier Supporting Carrier IPv4 BGP Label Distribution

Homework 2: IP Due: 11:59 PM, Oct 20, 2016

Configuring Commonly Used IP ACLs

Adapted from the Synchronization example in g/case/studies/icsbgp4.html

BGP Link Bandwidth. Finding Feature Information. Prerequisites for BGP Link Bandwidth

Routing Basics. SANOG July, 2017 Gurgaon, INDIA

MPLS VPN C H A P T E R S U P P L E M E N T. BGP Advertising IPv4 Prefixes with a Label

Configuring IS IS for IP on Cisco Routers

Introduction to Computer Networks

Configuration and Management of Networks 2012

FSOS VPN Command Line Reference

IP Routing Protocol-Independent Commands

QoS Policy Propagation via BGP

BGP Best External. Finding Feature Information

BGP Routing and BGP Policy. BGP Routing. Agenda. BGP Routing Information Base. L47 - BGP Routing. L47 - BGP Routing

MPLS VPN Carrier Supporting Carrier IPv4 BGP Label Distribution

Final exam study Guide

Homework 3 Discussion

The Traceroute Command in MPLS

Configuring QoS Policy Propagation via Border Gateway Protocol

Routing Overview for Firepower Threat Defense

Lab 9.6.1: Basic EIGRP Configuration Lab

Failover with EIGRP Using VRF Configuration Example

Multicast Quick Start Configuration Guide

Multiprotocol Label Switching Virtual Private Network

cable modem dhcp proxy nat on Cisco Cable Modems

MPLS VPN Inter-AS IPv4 BGP Label Distribution

IP MultiLayer Switching Sample Configuration

RealCiscoLAB.com. Chapter 6 Lab 6-1, Configuring BGP with Default Routing. Configure BGP to exchange routing information with two ISPs.

Chapter 4: Manipulating Routing

Managing the Unicast RIB and FIB

IT Certification Exams Provider! Weofferfreeupdateserviceforoneyear! h ps://

CCIE R&S Techtorial MPLS

Transcription:

Troubleshooting Cisco Express Forwarding Routing Loops Document ID: 26083 Contents Introduction Prerequisites Requirements Components Used Conventions Network Diagram Problem Troubleshoot Solution Related Information Introduction This document helps troubleshoot Cisco Express Forwarding (CEF) routing loops and sub optimal routing caused by a valid cached Cisco Express Forwarding adjacency that points out the incorrect interface. An adjacency with an incorrect interface is created because of these reasons: A static route points directly to a multi access interface. A valid Cisco Express Forwarding adjacency is built as a result of Proxy Address Resolution Protocol (ARP) replies. Prerequisites Requirements Use these resources in order to better understand some of the concepts this document uses: Cisco Express Forwarding Overview Route Selection in Cisco Routers Components Used This document is not restricted to specific software and hardware versions. Conventions For more information on document conventions, refer to the Cisco Technical Tips Conventions. Network Diagram Router R1 connects to R3 via Serial 8/0, and router R2 connects to R4 via Serial 8/0. R1 and R2 are connected via Ethernet 0/0, as this figure shows.

R2 receives external Border Gateway Protocol (ebgp) prefix updates for 10.10.34.0/24 from R4. R2 propagates this prefix to R1 via internal BGP (ibgp). R2 has a static default route (0.0.0.0/0) that points to R4's Serial 8/0 IP address 10.10.24.4. R2 also has a back up floating default route (IP route 0.0.0.0 0.0.0.0 Ethernet0/0 10) that points to interface Ethernet 0/0 to route packets if the serial connection between R2 and R4 fails. R1 has a default route that points to R3's Serial 8/0 with the IP address 10.10.13.3. Problem IP traffic destined for 10.10.34.0/24 gets looped between R1 and R2. Observe the traceroute command output on R1. R1#traceroute 10.10.34.4 Type escape sequence to abort. Tracing the route to 10.10.34.4 1 192.168.12.2 20 msec 20 msec 20 msec 2 192.168.12.1 8 msec 12 msec 8 msec 3 192.168.12.2 8 msec 8 msec 12 msec 4 192.168.12.1 12 msec... Note that traffic destined for 10.10.34.4 hops between R1's Ethernet 0/0 (IP address 192.168.12.1) and R2's Ethernet 0/0 (IP address 192.168.12.2). Ideally, traffic from R1 destined for 10.10.34.0/24 needs to go to R2 because of the ibgp learned prefix 10.10.34.0/24. Then, from R2, the traffic should route to R4. However, the traceroute command output confirms a routing loop between R1 and R2. hostname R1 ip subnet zero ip cef R1

interface Ethernet0/0 ip address 192.168.12.1 255.255.255.0 interface Serial8/0 ip address 10.10.13.1 255.255.255.0 router bgp 11 no synchronization bgp log neighbor changes neighbor 10.10.13.3 remote as 12 neighbor 192.168.12.2 remote as 11 no auto summary ip route 0.0.0.0 0.0.0.0 10.10.13.3 R2 hostname R2 ip cef interface Ethernet0/0 ip address 192.168.12.2 255.255.255.0 interface Serial8/0 ip address 10.10.24.2 255.255.255.0 router bgp 11 no synchronization bgp log neighbor changes network 192.168.12.0 neighbor 10.10.24.4 remote as 10 neighbor 192.168.12.1 remote as 11 neighbor 192.168.12.1 next hop self no auto summary ip route 0.0.0.0 0.0.0.0 10.10.24.4 ip route 0.0.0.0 0.0.0.0 Ethernet0/0 10 Troubleshoot Since the packets destined for 10.10.34.4 get looped between R1 and R2, start to troubleshoot. First check the IP routing on R1. The show ip route 10.10.34.0 command output confirms the next hop of 192.168.12.2 for packets destined to 10.10.34.0/24. This matches with the traceroute command first hop, where packets are sent to next hop 192.168.12.2, which confirms that packets are switched correctly on R1. R1#show ip route 10.10.34.0 Routing entry for 10.10.34.0/24 Known via "bgp 11", distance 200, metric 0 Tag 10, type internal Last update from 192.168.12.2 00:22:59 ago Routing Descriptor Blocks: * 192.168.12.2, from 192.168.12.2, 00:22:59 ago Route metric is 0, traffic share count is 1 AS Hops 1 The next step is to check the IP routing table of R2. As this show ip route 10.10.34.0 command output shows, packets destined to 10.10.34.0 should be routed out to next hop 10.10.24.4 on Serial 8/0. However, the traceroute command shows packets switched back to R1 to the IP address 192.168.12.1. Further investigation is needed into why packets destined to 10.10.34.0 are switched on R2 to next hop 192.168.12.1 (as in the

output of the traceroute command) instead of to 10.10.24.4. R2#show ip route 10.10.34.0 Routing entry for 10.10.34.0/24 Known via "bgp 11", distance 20, metric 0 Tag 10, type external Last update from 10.10.24.4 00:42:32 ago Routing Descriptor Blocks: * 10.10.24.4, from 10.10.24.4, 00:42:32 ago Route metric is 0, traffic share count is 1 AS Hops 1 At this point it is important to understand that in a Cisco Express Forwarding switched network, a packet forwarding decision consists of: A routing table lookup for the longest prefix match. A forwarding information base (FIB) lookup. Since the routing table is verified, look at the Cisco Express Forwarding FIB. In the results of the show ip cef 10.10.34.4 detail command, note that Cisco Express Forwarding switches 10.10.34.4 out Ethernet 0/0 instead of next hop 10.10.24.4 out Serial 8/0 (as shown in the show ip route 10.10.34.0 command output). This discrepancy creates loops in the network. R2#show ip cef 10.10.34.4 detail 10.10.34.4/32, version 19, cached adjacency 10.10.34.4 0 packets, 0 bytes via 10.10.34.4, Ethernet0/0, 0 dependencies next hop 10.10.34.4, Ethernet0/0 valid cached adjacency The next step is to look at the Cisco Express Forwarding adjacency table and see how Cisco Express Forwarding learns to switch packets out Ethernet 0/0. Notice the adjacency is built because of ARP. R2#show adjacency ethernet 0/0 detail begin 10.10.34.4 IP Ethernet0/0 10.10.34.4(5) 50 packets, 2100 bytes AABBCC006500AABBCC0066000800 ARP 03:02:00 This show ip arp command output is confirmation. R2#show ip arp 10.10.34.4 Protocol Address Age (min) Hardware Addr Type Interface Internet 10.10.34.4 60 aabb.cc00.6500 ARPA Ethernet0/0 Next, find out why this ARP entry was created when there is an IP route in the routing table. Look at the routing table again. R2#show run include ip route 0.0.0.0 ip route 0.0.0.0 0.0.0.0 10.10.24.4 ip route 0.0.0.0 0.0.0.0 Ethernet0/0 10 If the serial connection fails between R2 and R4, all traffic is routed with the use of a floating static route out Ethernet 0/0 because R2 has a floating static route that points to the multi access interface Ethernet 0/0, and not to the Ethernet IP address 192.168.12.1 of R1. Therefore, for all unknown destinations, Router R2 sends out an ARP request through the Ethernet0/0 interface. In this case, R2 has lost the more specific route to the 10.10.34.0 network. Therefore, when the data packet arrives for the hosts on this network, it generates an ARP request via the Ethernet interface. Since Proxy ARP is enabled by default on R1's Ethernet interface and it has a default route that points to R3, it responds back with an Proxy ARP reply with its own MAC address.

Hence, R2 sends all traffic to R1, and R1 forwards all traffic with the use of its default route (0.0.0.0/0) out to AS 12, and consequently to 10.10.34.4 via the Internet. When R2 receives the proxy ARP reply from R1, it creates a /32 valid Cisco Express Forwarding adjacency that points out interface Ethernet 0/0. This Cisco Express Forwarding entry does not age out until the proxy ARP router R1 is present on the Ethernet segment. Thus, the /32 Cisco Express Forwarding entry continues to be used to Cisco Express Forwarding switch the packets, even after the serial connection between R2 and R4 is back up and the routing table default route points out Serial 8/0 towards AS 10. The result is a routing loop. Finally, look at the logs and see if the serial link (s8/0) flapped. This causes a floating static route to be installed in the routing table which then leads to proxy ARP and results in the installation of a Cisco Express Forwarding entry of 10.10.34.4/32 in the Cisco Express Forwarding FIB. R2#show log beg Ethernet0/0 [..] %LINEPROTO 5 UPDOWN: Line protocol on Interface Serial8/0, changed state to down %BGP 5 ADJCHANGE: neighbor 10.10.24.4 Down Interface flap %LINEPROTO 5 UPDOWN: Line protocol on Interface Serial8/0, changed state to up %BGP 5 ADJCHANGE: neighbor 10.10.24.4 Up The logs confirm the cause. In summary, these steps show the sequence of events: 1. Serial 8/0 on R2 goes down. 2. R2 has a packet destined to 10.10.34.4. 3. R2 follows the backup default route pointed directly to the Ethernet 0/0. 4. R2 sends an ARP request for 10.10.34.4. 5. R1 (Proxy) replies to the ARP request with its own MAC address to R2. 6. R2 now has an ARP entry for 10.10.34.4 with the MAC address of R1. 7. R2 creates a Cisco Express Forwarding adjacency for 10.10.34.4, and a 10.10.34.4/32 entry is installed in the Cisco Express Forwarding table (FIB) for this destination via Ethernet 0/0. This Cisco Express Forwarding entry is maintained for as long as the ARP entry is valid or until R1 is present on the Ethernet segment. 8. Serial 8/0 on R2 comes up. 9. R2 learns ebgp route 10.10.34.0/24 from R4 with next hop 10.10.24.4 and installs the route in the IP routing table. 10. R1 learns prefix 10.10.34.0/24 via ibgp from R2 and installs it in the IP routing table. 11. R1 has a packet destined for 10.10.34.4. 12. R1 looks into its routing table, matches ibgp prefix routes to R2, and routes to R2. 13. R2 receives a packet destined for 10.10.34.4. Since it already has a Cisco Express Forwarding entry for 10.10.34.4/32 that points to Ethernet 0/0 in its FIB table with the MAC address of R1, it sends the packet back to R1 without looking at the routing table. This creates a loop. Solution Replace the floating static route that points directly to the Ethernet 0/0 with one that points to a next hop address. R2(config)#no ip route 0.0.0.0 0.0.0.0 ethernet 0/0 10 R2(config)# ip route 0.0.0.0 0.0.0.0 192.168.12.1 10 When you have a static route that points to the next hop IP address instead of a multi access interface Ethernet 0/0, it stops R2 from sending ARP requests for all destinations. The packets are routed and switched based on the next hop 192.168.12.1. Therefore, any ARP Cisco Express Forwarding entries and loops are avoided.

Observe the Cisco Express Forwarding entry on R2 that points to the correct interface Serial 8/0. R2#show ip cef 10.10.34.4 10.10.34.0/24, version 32, cached adjacency to Serial8/0 0 packets, 0 bytes via 10.10.24.4, 0 dependencies, recursive next hop 10.10.24.4, Serial8/0 via 10.10.24.0/24 valid cached adjacency Related Information Troubleshooting Load Balancing Over Parallel Links Using Cisco Express Forwarding How to Verify Cisco Express Forwarding Switching Troubleshooting Prefix Inconsistencies with Cisco Express Forwarding Troubleshooting Incomplete Adjacencies with Cisco Express Forwarding Cisco Express Forwarding Support Page IP Routing Protocols Support Pages Technical Support & Documentation Cisco Systems Contacts & Feedback Help Site Map 2014 2015 Cisco Systems, Inc. All rights reserved. Terms & Conditions Privacy Statement Cookie Policy Trademarks of Cisco Systems, Inc. Updated: Aug 10, 2005 Document ID: 26083