Documente Academic
Documente Profesional
Documente Cultură
0934_04F9_c4
Advanced
OSPF/NLSP/ISIS and
Troubleshooting
Session 316
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
Topics
Review: What Is a Link
State Protocol?
Design Issues
Network Cores
Advanced Design Techniques
Scaling an LS IGP
Troubleshooting
316
0934_04F9_c4
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
LSP B
LSP A
LSP D
LSP C
Router As LSDB
LSP D
Router Bs LSDB
LSP B
LSP A
LSP C
LSP B
LSP A
LSP D
LSP C
Router Cs LSDB
316
0934_04F9_c4
LSP D
Router Ds LSDB
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
LSP/LSA flooding
High CPUBW
Fully meshed networks
316
0934_04F9_c4
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
10
316
0934_04F9_c4
11
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
12
15 Subnets (/30s)
316
0934_04F9_c4
13
Disadvantages
Full LSP flooding done over each VC
More configuration
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
14
316
0934_04F9_c4
15
PseudoNode (ISIS)
DIS (ISIS)
DR (OSPF)
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
16
Disadvantages
Requires full mesh between all routers
Useful if cloud has rerouting at layer 2
316
0934_04F9_c4
17
Point-to-Multipoint Model
OSPF only
All VCs configured on main interface
Each VC is treated as a regular
p2p link
One IP prefix for the cloud
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
18
Point-to-Multipoint Model
Advantages
SPF has complete view of topology
Easy configuration
Disadvantages
Full LSP flooding done over each PVC
Cannot have different metric for
each PVC
316
0934_04F9_c4
19
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
20
10
Router A
21
Mesh Groups
Mesh groups
Normal interface (normal flooding)
Blocked (never send LSPs over this interface)
Part of a mesh group
When LSP is received on non-mesh group
interfaceflood it out over all interfaces
(mesh group or not)
If LSP is received on mesh group interface
flood on non-mesh group interfaces
but dont flood on other interfaces in
this mesh group
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
22
11
LSP Is
Flooded Over
Non-Mesh Group
Interface ->
23
Advanced Design
Techniques
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
24
12
Tuning Timers
316
0934_04F9_c4
25
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
26
13
SPF Timers
316
0934_04F9_c4
27
SPF Timers
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
28
14
Adjacency Timers
316
0934_04F9_c4
29
LSP Refreshes
Originating router must periodically
refresh LSP
LSP/LSA will be flooded even on a
stable network
Default values:
OSPF: MaxAge is 60 min., refresh 30 min.
ISIS: MaxAge is 20 min., refresh 15 min.
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
30
15
316
0934_04F9_c4
31
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
32
16
Authentication
316
0934_04F9_c4
33
Authentication
OSPF
ISIS
interface ethernet1
ip address 10.1.1.1 255.255.255.0
interface ethernet0
ip router isis
isis password cisco level-2
router ospf 1
network 10.1.1.0 0.0.0.255 area 0
area 0 authentication messagedigest
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
34
17
Network Design
Area 0
Area 2
FDDI
Dual Ring
FDDI
Dual Ring
Area 1
Critical Site
35
Solution
Dont run OSPF on the Ethernet
Use static routes at the remote site
router
Redistribute connected for the
Ethernet on both routers
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
36
18
37
Dial-on-Demand Techniques:
Use virtual profiles
Virtual interface gets assigned to the
area associated with the calling router
Area configuration and IP address for
virtual interface are dynamic
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
38
19
Area 3
NAS
Area 4
Area 0
Dial Backup
Primary Link
316
0934_04F9_c4
39
Area 4
Area 1
Problem
Which area do I put my interface in?
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
40
20
316
0934_04F9_c4
41
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
42
21
316
0934_04F9_c4
43
LS Scaling Issues
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
44
22
OSPF Areas
One SPF per area, flooding done
per area
Watch out for overloading ABRs
45
Regular area
Stub area
Totally stubby area
Not so stubby area
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
46
23
Regular areas
Summary LSA from other areas injected
Specific links from other areas injected
External links injected
316
0934_04F9_c4
47
Regular Area
Backbone Area 0
An Area Forwards
the Following
Summary LSAs
Specific LSAs
Default External 0.0.0.0
Specific External Links
Area 51
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
48
24
49
Stub Area
Backbone Area 0
Area 51
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
50
25
51
Backbone Area 0
A Totally Stubby
Area Forwards
Default Link 0.0.0.0
Area 51
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
52
26
53
NSSA
An Area Forwards
the Following
Backbone Area 0
Summary LSAs
Specific LSAs
Default External 0.0.0.0
NSSA 51
ASBR Injects LSA Type 7
RIP
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
54
27
55
Summarization
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
56
28
Network Design
Advantages of running BGP in core
You could apply policies
Fewer routing updates
Less CPU utilization
Very scalable
Logical migration
316
0934_04F9_c4
57
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
58
29
Region 3
IGP 1
IGP 3
Region 2
Region 4
IGP 2
IGP 4
BGP Mesh
59
Core Design
If no policies requiredrun iBGP
between regions
Use eBGP if policy implemented
iBGP peers must be fully meshed
Run separate instance of IGP
just to carry peering and nexthop information
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
60
30
Migration Strategy
316
0934_04F9_c4
61
Migration Strategy
Redistribute local regional routes
into BGP
Originate default from each iBGP
peer into local IGP
If redundancy is requiredeach
region could have multiple
BGP peers
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
62
31
IGP 5
IGP 5
IGP 6
IGP 6
AS 64530
IGP 7
IGP 7
IGP 8
316
0934_04F9_c4
IGP 8
63
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
64
32
316
0934_04F9_c4
65
Troubleshooting
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
66
33
Troubleshooting
316
0934_04F9_c4
67
Troubleshooting (Cont.)
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
68
34
Troubleshooting (Cont.)
OSPF Database
3600-g1#sh ip ospf data
OSPF Router with ID (30.8.1.1) (Process ID 1)
Router Link States (Area 0)
Link ID
30.8.1.1
Link ID
30.8.1.1
30.8.1.2
30.8.3.2
ADV Router
30.8.1.1
Age
1592
Seq#
Checksum Link count
0x800001D0 0xA180
0
Seq#
Checksum
0x80000203 0x4153
0x8000027A 0x10AB
69
Troubleshooting (Cont.)
IP OSPF
3600-g1#sh ip ospf
Routing Process "ospf 1" with ID 30.8.1.1
Supports only single TOS(TOS0) routes
SPF schedule delay 5 secs, Hold time between two SPFs 10 secs
Minimum LSA interval 5 secs. Minimum LSA arrival 1 secs
Number of external LSA 0. Checksum Sum 0x0
Number of DCbitless external LSA 0
Number of DoNotAge external LSA 0
Number of areas in this router is 2. 1 normal 1 stub 0 nssa
External flood list length 0
Area BACKBONE(0) (Inactive)
Number of interfaces in this area is 2
Area has no authentication
SPF algorithm executed 8 times
Area ranges are
Number of LSA 1. Checksum Sum 0xA180
Number of DCbitless LSA 0
Number of indication LSA 0
Number of DoNotAge LSA 0
Flood list length 0
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
70
35
Troubleshooting (Cont.)
IP OSPF
Area 8
Number of interfaces in this area is 2
It is a stub area, no summary LSA in this area
Area has no authentication
SPF algorithm executed 11 times
Area ranges are
Number of LSA 5. Checksum Sum 0x22812
Number of DCbitless LSA 0
Number of indication LSA 0
Number of DoNotAge LSA 0
Flood list length 0
316
0934_04F9_c4
71
Troubleshooting (Cont.)
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
72
36
Troubleshooting (Cont.)
Mismatched hello
Do a debug ip ospf adjacency
r4-4k#debug ip ospf adj
OSPF adjacency events debugging is on
r4-4k#
OSPFmismatched hello parameters from 10.1.2.3
Pri State
1 FULL/ -
10.1.1.1
Serial2
73
Troubleshooting (Cont.)
Mismatched area ID
r9-2500#show ip ospf neighbor
r9-2500#
no neighbors
r9-2500#debug ip ospf adj
OSPF adjacency events debugging is on
r9-2500#
%OSPF-4-ERRRCV: Received invalid packet: mismatch area ID,
from backbone area must be virtual-link but not found from 10.1.2.1, Serial0.2
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
74
37
Troubleshooting (Cont.)
Database not getting synchronized
> > > OSPFsend DBD packet to 202.160.101.1 seq 0x7DB
> > > OSPFretransmitting request to neighbor 192.107.145.60
> > > OSPFdatabase request to 192.107.145.60
> > > OSPFsent LS REQ packet to 202.160.101.1length 48
> > > OSPFretransmitting dbd to nbr 192.107.145.60
> > > OSPFsend DBD packet to 202.160.101.1 seq 0x7DB
> > > OSPFreceive dbd from 192.107.145.60 seq 0x7DB
Probable causes
Slower link between the two routers
Slower router on the other end of the link
Solution
Increase the retransmission timer
316
0934_04F9_c4
75
Troubleshooting (Cont.)
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
76
38
Troubleshooting (Cont.)
Mismatched network types
r9-2500#show ip ospf interface s 0.2
Serial0.2 is up, line protocol is up
Internet Address 10.1.2.3/24, Area 0
Process ID 1, Router ID 10.1.2.3, Network Type BROADCAST, Cost: 64
r4-4k#show ip ospf interface s 0.1
Serial0.1 is up, line protocol is up
Internet Address 10.1.2.1/24, Area 0.0.0.0
Process ID 1, Router ID 10.1.2.1, Network Type POINT_TO_POINT, Cost: 64
316
0934_04F9_c4
77
Troubleshooting (Cont.)
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
78
39
Troubleshooting (Cont.)
316
0934_04F9_c4
79
Troubleshooting (Cont.)
IS-IS Interface
sh clns int eth0
Ethernet0 is up, line protocol is up
Checksums enabled, MTU 1497, Encapsulation SAP
ERPDUs enabled, min. interval 10 msec.
RDPDUs enabled, min. interval 100 msec., Addr Mask enabled
Congestion Experienced bit set at 4 packets
CLNS fast switching enabled
CLNS SSE switching disabled
DEC compatibility mode OFF for this interface
Next ESH/ISH in 22 seconds
Routing Protocol: IS-IS
Circuit Type: level-1-2
Interface number 0x1, local circuit ID 0x1
Level-1 Metric: 10, Priority: 64, Circuit ID: 00E0.1E5D.65D5.01
Number of active level-1 adjacencies: 1
Level-2 Metric: 10, Priority: 64, Circuit ID: 00E0.1E5D.65D5.01
Number of active level-2 adjacencies: 1
Next IS-IS LAN Level-1 Hello in 1 seconds
Next IS-IS LAN Level-2 Hello in 1 seconds
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
80
40
Troubleshooting (Cont.)
IS-IS neighborsensure proper
level and timers
316
0934_04F9_c4
81
Troubleshooting (Cont.)
IS-IS database
R1# show isis database
IS-IS Level-1 Link State Database
LSPID
LSP Seq Num
1921.6800.1001.00-00* 0x00000019
1921.6800.1005.00-00 0x0000000C
1921.6800.1005.01-00 0x00000009
LSP Checksum
0x2783
0x2179
0x40EC
LSP Checksum
0xFC45
0x4CB7
0x86A6
0x8558
LSP Holdtime
1153
1137
1141
881
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
ATT/P/OL
0/0/0
0/0/0
0/0/0
0/0/0
82
41
Troubleshooting (Cont.)
IS-IS database in detail
R1# show isis database detail
LSPID
LSP Seq Num LSP Checksum LSP Holdtime ATT/P/OL
00E0.1E5D.65D5.00-00* 0x00002EA0 0x10FC
614
0/0/0
Area Address: 00.0002
Area Address: 49
NLPID:
0xCC
IP Address: 150.100.1.254
Metric: 10 IP 172.27.148.0 255.255.255.0
Metric: 10 IP 150.100.1.0 255.255.255.0
Metric: 10 IS 00E0.1E5D.65D5.01
Metric: 0 ES 00E0.1E5D.65D5
IS-IS Level-2 Link State Database
LSPID
LSP Seq Num LSP Checksum LSP Holdtime ATT/P/OL
0002.0002.0002.00-00 0x000008AD 0x086C
428
0/0/0
Area Address: 49
Area Address: 00.0002
NLPID:
0xCC
IP Address: 172.27.148.253
Metric: 10 IS 00E0.1E5D.65D5.01
Metric: 10 IP 172.27.148.0 255.255.255.0
Metric: 20 IP 150.100.1.0 255.255.255.0
316
0934_04F9_c4
83
Troubleshooting (Cont.)
IS-IS database
Large variance in seq numbers
possible instabilities
Hold time consistently large
possible instabilities, look at spf-log
OL bit setoverload bit
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
84
42
Troubleshooting (Cont.)
ISIS spf-log
R1#sh isis spf-log
Level 1 SPF log
When Duration Nodes Count Triggers
01:41:31
4
3
1 PERIODIC
01:26:30
4
3
1 PERIODIC
01:11:30
4
3
1 PERIODIC
00:56:29
4
3
1 PERIODIC
00:11:27
4
3
1 PERIODIC
Level 2 SPF log
When Duration Nodes Count Triggers
01:58:39
8
3
1 PERIODIC
01:43:38
8
3
1 PERIODIC
01:28:38
8
3
1 PERIODIC
00:28:35
8
3
1 PERIODIC
00:13:34
4
3
1 PERIODIC
316
0934_04F9_c4
85
Troubleshooting
debug isis adj-packets
Rtr-B# debug isis adj-packets
ISIS-Adj: Rec L1 IIH from 00e0.1492.2c00 (FastEthernet4/0/0), cir type 1,
cir id 1921.6800.1005.01
ISIS-Adj: Sending L1 IIH on FastEthernet4/0/0
ISIS-Adj: Rec L1 IIH from 00e0.1492.2c00 (FastEthernet4/0/0), cir type 1,
cir id 1921.6800.1005.01
ISIS-Adj: Sending serial IIH on POS2/0/0
ISIS-Adj: Rec serial IIH from *PPP* on POS2/0/0, cir type 3, cir id 00
316
0934_04F9_c4
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
86
43
316
0934_04F9_c4
87
316
0934_04F9_c4
88
Copyright 1998, Cisco Systems, Inc. All rights reserved. Printed in USA.
0934_04F9_c4.scr
44