Re: [c-nsp] (BGP) BFD on XR in vrf on sub-interface of bundle-ether interface

2019-06-28 Thread David Hubbard
What platform are you on? I ran into numerous issues with XR + BFD on NCS5501-SE hardware; worked with TAC and confirmed. It's broken for bundle interfaces (gives an error, won't take the config), broken for BGP (takes the config without error but doesn't work), and broken if VRRP is in use.

[c-nsp] cbgpPeer2AdvertisedPrefixes different than 'show bgp nei X advertised-routes'

2018-04-19 Thread David Hubbard
I’m curious if anyone has noticed issues with CISCO-BGP4-MIB values related to prefix counts on IOS XR? I’m querying a 6.2.3 device and seeing weird results. I’d like to monitor the number of prefixes advertised and received from eBGP peers. The mib defines cbgpPeerAcceptedPrefixes as a Counte

[c-nsp] IPv6 uRPF broken on NCS5500 XR 6.2.3?

2018-02-23 Thread David Hubbard
Hi all, curious if anyone has run into issues with IPv6 uRPF on NCS5500 and/or XR 6.2.3? I have an interface where I added: Ipv4 verify unicast source reachable-via any ipv6 verify unicast source reachable-via any and immediately lost my ability to talk to a BGP peer connected to it using a lo

Re: [c-nsp] XR on NCS5500 6.2.25 vs 6.2.3

2018-02-02 Thread David Hubbard
Ah that makes more sense; thanks! On 2/2/18, 10:31 AM, "James Jun" wrote: Hey, On Fri, Feb 02, 2018 at 01:46:26PM +0000, David Hubbard wrote: > However, in the release notes, both bootloader and MB-IOFPGA have bumped up revisions in 6.2.3, so it???s makin

[c-nsp] XR on NCS5500 6.2.25 vs 6.2.3

2018-02-02 Thread David Hubbard
I’m curious if anyone knows, specific to NCS5500 series, if there are actually two software trains in the 6.2.x series, where 6.2.3 and 6.2.25 are somehow treated differently, or, illogically, 3 is somehow higher than 25? I noticed that 6.2.3 was released after 6.2.25, which seems odd given 6.2

Re: [c-nsp] Does NCS behave like Nexus w/regard to vPC+VRRP active/active?

2017-12-17 Thread David Hubbard
e: On 16/12/17 02:01, David Hubbard wrote: > Seems like a glaring omission in this platform to not have an active/active layer 2 option. Remember: if they sold you one box that did everything, you'd buy fewer boxes.

Re: [c-nsp] Does NCS behave like Nexus w/regard to vPC+VRRP active/active?

2017-12-15 Thread David Hubbard
Ah, guess that was a dumb question, I didn’t realize Cisco’s mc-lag was still active-standby; ugh. Seems like a glaring omission in this platform to not have an active/active layer 2 option. On 12/15/17, 9:54 AM, "David Hubbard" wrote: Thanks all, yep, discovered no vpc co

Re: [c-nsp] Does NCS behave like Nexus w/regard to vPC+VRRP active/active?

2017-12-15 Thread David Hubbard
s industry:: > -Original Message- > From: cisco-nsp [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of > Brian Turnbow > Sent: Thursday, December 14, 2017 5:33 PM > To: 'David Hubbard'; 'cisco-nsp' > Subject: Re: [c-nsp]

[c-nsp] Does NCS behave like Nexus w/regard to vPC+VRRP active/active?

2017-12-14 Thread David Hubbard
Hey all, before I go too far down the configuration path, was curious if anyone knows off hand if the NCS5500 line (5501SE with IOS XR 6.2.25) behave like Nexus when you set up vPC + VRRP where data plane is active/active for forwarding? Thanks, David

Re: [c-nsp] NCS-5501/NCS-5502 as border/core routers

2017-08-23 Thread David Hubbard
Hey Simon, I’m going to be deploying the 5501se in the edge role to replace some Brocade MLXe’s that can no longer fit a full v4+v6 route table in CAM while also supporting VRF’s. I weighed several options but ultimately felt like the 2M FIB gave me a comfort level slightly higher than competin

Re: [c-nsp] OT Solarwinds Alternatives

2017-07-27 Thread David Hubbard
Been dramatically happier with Zabbix + ntop after moving off Solarwinds for both NMS and flow data analysis (NTA). Zabbix picked up all the monitoring pieces and felt way more polished than Nagios. We’re not only using zabbix for typical things like snmp and agent-based data collection / aler

Re: [c-nsp] BGP route influence question related to multi-path iBGP

2017-01-20 Thread David Hubbard
Ah, perfect, and so obvious now that I think about it. Easy to fix too as they already have an IGP on those links. Thanks! On 1/20/17, 12:38 PM, "Gert Doering" wrote: Hi, On Fri, Jan 20, 2017 at 05:10:56PM +0000, David Hubbard wrote: > Hello all, I have a setup

[c-nsp] BGP route influence question related to multi-path iBGP

2017-01-20 Thread David Hubbard
Hello all, I have a setup where one BGP AS exists at two physical locations, with an edge router at each location peered to different upstreams. The two edge routers are interconnected with a 40gig and 10gig link, each with its own interface/address, so there are two iBGP sessions between the s

Re: [c-nsp] Rec for full-table multi-peer bgp router?

2016-11-30 Thread David Hubbard
Thanks Gert & Peter. I’m going to look into the 9001. We have a bunch of Arista in the core doing ospf/ospfv3, the rep there suggested their 7280SR, which is 48 SFP+, 6 QSFP, and they claim it’s stable as a BGP router with limitations of 1.2M ipv4 / 768k ipv6 routes, simultaneously, no picking

[c-nsp] Rec for full-table multi-peer bgp router?

2016-11-30 Thread David Hubbard
Hi all, I’m looking for a recommendation of the most cost effective Cisco option for replacing some Brocade MLXe’s in dual stack border router roles. The MLXe’s have been great, but we’ve reached the point where the software is causing problems; specifically, you’re forced to choose a CAM profi

Re: [c-nsp] A switch with huge number of Mac address

2016-01-08 Thread David Hubbard
Perhaps check out Arista. If you’re willing to run two switches as a stack, the 7280 would work great for this. 256k MAC/ARP and 128k IPv6 neighbor cache with 48 SFP+, but depending on model, you have QSFP+/QSFP100/MXP ports that you can use to gain more 10gig ports, so potentially up to 72 10

Re: [c-nsp] Remote management console servers?

2015-07-14 Thread David Hubbard
We use and really like the Opengear's as well. Just keep in mind that you're still running a linux box so it should be treated as one. We had to quickly lock all of ours down back when that bash exploit happened as we had the web interface of the units exposed to the cell modem side. David >

[c-nsp] IPv6 ND cache size on NX9k?

2015-02-04 Thread David Hubbard
Hi all, does anyone know the IPv6 ND capacity on the Nexus 9k line? Or 9300 and 9500 specifically? I found ARP at 90k but can't find anything for IPv6. Thanks, David ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailma

Re: [c-nsp] Cisco.com randomly broken over ipv6?

2014-10-28 Thread David Hubbard
From: Lukas Tribus [mailto:luky...@hotmail.com] > > It doesn't have anything to do with IPv6. The whole page was severely broken the last few days on IPv4-only as well. As far as I can tell this was only > fixed today and due to browser caching and other mysteries it may appeared IPv6 related whil

[c-nsp] Cisco.com randomly broken over ipv6?

2014-10-28 Thread David Hubbard
I'm curious if anyone else finds Cisco's website to randomly malfunction when using IPv6? Especially in regards to support. Sometimes I can log in, sometimes I get navigation error (https://sso.cisco.com/autho/login/loginaction.html) Or, IPv6 http://www.cisco.com/cgi-bin/login gives me "The Page

Re: [c-nsp] OOB Device for remote DC's

2014-09-02 Thread David Hubbard
I've been using OpenGear devices with great results. Their ACM5500 is far better than the older 5000 series units because it now does LTE instead of only 3G. It has eight serial ports and they are wired so you can run ethernet directly into Cisco console ports. It comes with, and they sell, conn

Re: [c-nsp] Netflow analysis tools?

2014-05-19 Thread David Hubbard
The SolarWinds product's sflow stinks (I realize this is a Cisco list), and feature requests seem to go right in the trash can. Their marketing team will keep calling you for years after you abandon their products though so at least you get the opportunity to tell them what their product is mis

[c-nsp] Market for used ASR1k's?

2014-03-19 Thread David Hubbard
Hi all, just wondering if anyone has thoughts on whether there's a good market for used ASR1k's? I have a pair of ASR1004's, redundant power, ESP10, RP2, SIP10, (2) SPA-8X1GE-V2 per chassis, bunch of copper SFP's, firewall RTU, advanced ip services RTU. Wasn't sure if they'd be worth more selling

Re: [c-nsp] SC to LC converter

2013-10-14 Thread David Hubbard
I've had the (mis)fortune to be stuck with needing to do the same thing in a pinch and have actually used all three of the following SC-LC converters from Amazon: SC-LC single mode but big ugly adapter that blocks the adjacent slots: http://www.amazon.com/Diablo-Cable-Singlemode-Adapter-Converter/

Re: [c-nsp] Best Support of Tier 1 ISP

2013-07-09 Thread David Hubbard
We've been extremely happy with Internap's support. It is not uncommon to call them and have the person who answers the phone be able to give you fairly complex answers to routing and bgp questions. Every other provider we've used, and currently use, the most you get out of the initial phone call

[c-nsp] ipv6 on dot11radio interface of 1811?

2013-06-25 Thread David Hubbard
Hi all, I was wondering if there is an ios version that definitely lets you add ipv6 to the actual dot11radio interfaces of an 1811w? I've got 12.4(24)T8 on now and it doesn't let you but ipv6 works fine on the wired interfaces. I've found conflicting information online about whether it's a hardw

[c-nsp] 1811 questions (bridging, nat, etc)

2013-06-11 Thread David Hubbard
Hi all, trying to figure out how best to implement an 1811 at a remote office that ideally could use all three of the following: 1) Internal user NAT for ipv4 users on wired and wireless interfaces 2) site to site vpn 3) A few servers that need to be exposed/public but ideally have some ACL's in f

Re: [c-nsp] Route map matching, tags and community question

2013-04-22 Thread David Hubbard
From: Jon Lewis [mailto:jle...@lewis.org] > > On Mon, 22 Apr 2013, Gert Doering wrote: > > > Hi, > > > > On Mon, Apr 22, 2013 at 04:25:11PM -0400, David Hubbard wrote: > >> route-map upstream-one permit 10 > >> set community 1:123 > > >

[c-nsp] Route map matching, tags and community question

2013-04-22 Thread David Hubbard
Hi all, we've recently set up real time blackholing via a trigger router and a route map that applies to our 'redistribute static' clause in the BGP config. That route map just looks for a specific tag, changes local pref, sets the discard route and sets some communities that correspond to the req

Re: [c-nsp] Possible to talk ospfv3 with auth or encryption to Brocade?

2013-04-18 Thread David Hubbard
] > Sent: Thursday, April 18, 2013 12:06 PM > To: David Hubbard > Cc: cisco-nsp@puck.nether.net > Subject: RE: Possible to talk ospfv3 with auth or encryption > to Brocade? > > Hi David, > > Brocade's documentation is somewhat lacking in this area, and >

[c-nsp] Possible to talk ospfv3 with auth or encryption to Brocade?

2013-04-17 Thread David Hubbard
I'm wondering if anyone has a working ospfv3 setup between a Cisco and Brocade device? As best I can tell, Brocade's only possible setup is either no auth and no encryption, or, sha1 auth, sha1 encryption, esp packets. On the Cisco side, the only option that gives you esp packets is "ipv6 ospf en

Re: [c-nsp] Way to get 3rd party optics to work in UCS/FEX?

2013-04-12 Thread David Hubbard
12:05 PM > To: David Hubbard; 'Cisco Network Service Providers' > Subject: RE: [c-nsp] Way to get 3rd party optics to work in UCS/FEX? > > Are you talking about sfp/xfp 3rd party support in NXOS? If > so, would this > limitation apply to Cisco 5548UP as well ? Asking s

Re: [c-nsp] Way to get 3rd party optics to work in UCS/FEX?

2013-04-12 Thread David Hubbard
> > On 12 Apr 2013, at 16:09 , David Hubbard wrote: > > > Ah, that got me close but unfortunately the command > > isn't there: > > > > fab1-A(nxos)# service unsupported-transceiver > > ^ > > % Invalid command at '^'

Re: [c-nsp] Way to get 3rd party optics to work in UCS/FEX?

2013-04-12 Thread David Hubbard
(3)N2(2.02q) David > -Original Message- > From: Ryan West [mailto:rw...@zyedge.com] > Sent: Friday, April 12, 2013 8:02 AM > To: Joachim Tingvold > Cc: David Hubbard; cisco-nsp@puck.nether.net > Subject: Re: [c-nsp] Way to get 3rd party optics to work in UCS/FEX? > > Not entirel

Re: [c-nsp] Way to get 3rd party optics to work in UCS/FEX?

2013-04-11 Thread David Hubbard
o-Avago they're 'not validated'. > -Original Message- > From: Gordon Smith [mailto:gor...@gswsystems.com] > Sent: Thursday, April 11, 2013 9:37 PM > To: cisco-nsp@puck.nether.net > Cc: David Hubbard > Subject: Re: [c-nsp] Way to get 3rd party op

[c-nsp] Way to get 3rd party optics to work in UCS/FEX?

2013-04-11 Thread David Hubbard
I've got two 6120XP's and lots of left over Avago 10gig SFP's from an EMC deployment where too many were purchased. I tried to install a couple in our 6120's and it of course reports "SFP validation failed" and admin state "Disabled" as a result. Any undocumented command to get them to work? The

[c-nsp] Third party 10gig SFP+ in UCS fabric?

2013-04-04 Thread David Hubbard
Hi all, just curious if third party SFP+'s will work in the UCS 6120xp fabric interconnect? We have a bunch of Avago optics from a different project and I'd like to use them in the UCS. Thanks, David ___ cisco-nsp mailing list cisco-nsp@puck.nether.n

[c-nsp] Swap hsrp with vrrp in mixed physical/vmware environment?

2013-03-21 Thread David Hubbard
So this should be fun; I need to swich from HSRP to VRRP to facilitate bringing in a second vendor's hardware to interoperate. We run ipv4 and ipv6 (static assignments) and the VLANs are a mix of physical servers along with vmware guests on Cisco UCS with the fabric interconnects in end-host mode.

Re: [c-nsp] low cost reliable optics

2013-02-23 Thread David Hubbard
+1 on that Axiom's. Been using their equivalent for Cisco SFP's and Brocade 10gig XFP's with no issues so far over the better part of a year. > -Original Message- > From: cisco-nsp-boun...@puck.nether.net > [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Jason Baugher > Sent: Sat

[c-nsp] 4500-x neighbor table size?

2013-02-01 Thread David Hubbard
Hi all, does anyone have a link to specs for the 4500-x that includes the ND table size? I can only find ARP. Thanks, David ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck

[c-nsp] 4900M arp cache size?

2012-11-09 Thread David Hubbard
Does anyone have handy a reference for the 4900M's arp cache table size? I can only find max routes and max MAC's on the Cisco site. As a bonus, ipv6 neighbor cache would be useful to know too. Thanks! David ___ cisco-nsp mailing list cisco-nsp@puck

Re: [c-nsp] Small, Low Power Cisco Router Recommendation

2012-07-20 Thread David Hubbard
I'd go with a DD-WRT image http://www.dd-wrt.com/ on a good (meaning fast cpu and 64+ MB of flash mem) home router. It will do far more than a typical expensive small office router for a lot less, even things you may not think you'll need now but might later. I know you said no Linksys but the Ci

[c-nsp] Command to show communities being advertised to remote peer?

2012-06-05 Thread David Hubbard
Is there something I can run that is similar to "show ip bgp nei IP advertised-routes" that will include BGP communities that are being sent with the advertisements? Platform is ASR running 15.2. I'm trying to debug a remote blackhole setup that one of our upstreams is not seeing but the others a

[c-nsp] Possible to implement DHCP snooping and DAI in UCS environment?

2011-12-09 Thread David Hubbard
I was curious if anyone knows if it's possible to implement DAI (and its prerequisite dhcp snooping) in a UCS/vmware environment? The guests are on the same vlans as physical servers outside UCS, and that won't change since we're doing p2v migrations, so I think they would still be vulnerable to m

[c-nsp] C4K_HWPORTMAN-4-BLOCKEDTXQUEUE on Cat 4900M

2011-02-21 Thread David Hubbard
We have a server connected to a 4900M at 10gig and it's generating the following alerts: Feb 21 10:19:31.992: %C4K_HWPORTMAN-4-BLOCKEDTXQUEUE: Blocked transmit queue HwTxQId7 on Switch Phyport Te1/1, count=102512 I found https://supportforums.cisco.com/docs/DOC-4766 after some searching: Re

[c-nsp] UCS to 4900M to EMC iscsi performance

2010-12-03 Thread David Hubbard
Wondering if anyone has researched the same issue I'm having or has a best practices list. I have a Cisco UCS platform which is not production yet, so just me doing testing. It has multiple ten gig links to redundant fabrics in end host mode. Those each have ten gig links to a pair of 4900M's.

Re: [c-nsp] Adjusting MTU on 802.1q links

2010-12-03 Thread David Hubbard
From: Phil Mayers > > On 03/12/10 13:49, Matthew Huff wrote: > > I don't know why it never occurred to me, but on 802.1q trunk links, > > non-native vlans are encapsulated within 802.1q headers, therefore > > max packets would have to be fragmented. On trunks that support it, > > should standard p

Re: [c-nsp] No DOM support for X2 optics on Cat 4900M?

2010-11-25 Thread David Hubbard
I get this on my 4900M's with SR optics 12.2(54)SG: If device is externally calibrated, only calibrated values are printed. ++ : high alarm, + : high warning, - : low warning, -- : low alarm. NA or N/A: not applicable, Tx: transmit, Rx: receive. mA: milliamperes, dBm: decibels (milliwatts).

Re: [c-nsp] Jumbo frames on certain VLANs with UCS fabric?

2010-11-16 Thread David Hubbard
ge traffic to the EMC from vmware at ten gig. David > -Original Message- > From: Manu Chao [mailto:linux.ya...@gmail.com] > Sent: Tuesday, November 16, 2010 12:53 PM > To: David Hubbard > Cc: cisco-nsp@puck.nether.net > Subject: Re: [c-nsp] Jumbo frames on certain VL

[c-nsp] Jumbo frames on certain VLANs with UCS fabric?

2010-11-16 Thread David Hubbard
Hi all, I'm working on deploying a UCS system using iscsi to an EMC with only a pair of 4900M's in between. I'm having a bit of trouble wrapping my head around what I need to do to enable jumbo frames to make it from end to end on the storage vlan. What I've got so far: 1) Two redundant UCS fabr

[c-nsp] Source for 10gb SR OM3 cable in orange?

2010-10-21 Thread David Hubbard
Any chance anyone on the list knows of a source for 10 gig multimode OM3 cable in orange instead of the standardized aqua color? Ideally in SC to LC and 30m lengths. Need to connect some 4900M X2 10gb SR modules to UCS fabric extenders with SFP-10G-SR modules, and it needs to be orange cable for

Re: [c-nsp] Can UCS 6120XP be used for normal host connectivity?

2010-07-08 Thread David Hubbard
solated physical > segment. > > Hope this helps, let me know if you have questions and I'll try to > answer them from what issues we've run into with the UCS. > > Jeremy > > On 7/7/2010 5:24 PM, David Hubbard wrote: > > We're deploying a UCS setup that

[c-nsp] Can UCS 6120XP be used for normal host connectivity?

2010-07-07 Thread David Hubbard
We're deploying a UCS setup that involves some of the 20 port fabric interconnect switches which basically connect our UCS blade chassis to our EMC storage. I asked the sales rep today if we could plug a backup server at 10gig into one of the unused ports on one of the 6120's and she initially sai