Thursday, October 11, 2018

OSPF over Dell s4810 tunnels - not possible?

Hello,

This is a bit of followup to my previous post, please refer for a little background.

We're trying to run OSPF (or other dynamic routing) between our two locations. We are hoping to avoid having to exchange routing directly with the MPLS provider(requiring protocol redistribution) by running a tunnel between the layer 3 switches at the two sites.

The Layer3 switches are Dell S4810 at Site A, and S4048 at Site B. They are running FTOS 9.10 and 9.11, respectively.

I was able to get the tunnel working between the two devices(pinging works), but cannot run OSPF on the tunnel. Nothing appears in the CLI, and "show ip ospf" seems to ignore it completely. I checked the logging, and I find this error:

Oct 11 16:55:29 %STKUNIT2-S:CP %IFMGR-5-TNLIP_OSPFV2_CONFLICT: OSPFv2 is not usable on tunnel 5120 with IPv4 outer header Oct 11 16:55:29 %STKUNIT1-M:CP %IFMGR-5-TNLIP_OSPFV2_CONFLICT: OSPFv2 is not usable on tunnel 5120 with IPv4 outer header 

I have been unable to find helpful via Google that matches any portion of this error.
Does this mean it has to run IPv6? We do not currently have IPv6 anywhere on our network, and that seems a bit of a hassle.
Is this an MTU or encryption issue? Default MTU is 1554 on both ends.

CONFIG SNIPS

SITE A:

! interface Tunnel 10 ip address 10.10.1.1/30 tunnel destination 10.25.192.1 tunnel source 10.66.127.201 tunnel mode ipip shutdown ! router ospf 1 network 192.168.100.0/24 area 0 network 10.10.1.0/30 area 0 #sho int tunnel Tunnel 10 is up, line protocol is up Hardware is Tunnel Tunnel mode ipip Tunnel source 10.66.127.201, Tunnel destination 10.25.192.1 Tunnel dscp mapped Tunnel flow-label 0 Tunnel hop-limit 64 Tunnel keepalive destination 10.10.1.2 interval 6 attempts 4 Tunnel keepalive state up, time since last change: 00:30:49 Address is e4:f0:04:3f:58:17, Current address is e4:f0:04:3f:58:17 Interface index is 1224741888 Internet address is 10.10.1.1/30 Mode of IPv4 Address Assignment : MANUAL DHCP Client-ID(61): e4f0043f5817 ARP type: ARPA, ARP Timeout 04:00:00 Last clearing of "show interface" counters 00:40:46 Queueing strategy: fifo Input Statistics: 6010 packets, 814626 bytes Output Statistics: 6013 packets, 592732 bytes Time since last interface status change: 00:30:49 #sho ip ospf Routing Process ospf 1 with ID 192.168.100.10 Virtual router default Supports only single TOS (TOS0) routes It is Flooding according to RFC 2328 SPF schedule delay 5000 msecs, Hold time between two SPFs 10000 msecs Convergence Level 0 Min LSA origination 0 msec, Min LSA arrival 1000 msec Min LSA hold time 5000 msec, Max LSA wait time 5000 msec Number of area in this router is 1, normal 1 stub 0 nssa 0 Area BACKBONE (0) Number of interface in this area is 1 SPF algorithm executed 49 times Area ranges are #sho ip ospf interface TenGigabitEthernet 1/10 is up, line protocol is down Internet Address 192.168.100.10/24, Area 0 Process ID 1, Router ID 192.168.100.10, Network Type BROADCAST, Cost: 1 Transmit Delay is 1 sec, State DOWN, Priority 1 Designated Router (ID) 0.0.0.0, Interface address 0.0.0.0 Backup Designated Router (ID) 0.0.0.0, Interface address 0.0.0.0 Timer intervals configured, Hello 10, Dead 40, Wait 40, Retransmit 5 Neighbor Count is 0, Adjacent neighbor count is 0 #sho ip route Codes: C - connected, S - static, R - RIP, B - BGP, IN - internal BGP, EX - external BGP,LO - Locally Originated, O - OSPF, IA - OSPF inter area, N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2, E1 - OSPF external type 1, E2 - OSPF external type 2, i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, IA - IS-IS inter area, * - candidate default, > - non-active route, + - summary route <SNIP> Destination Gateway Dist/Metric Last Change ----------- ------- ----------- ----------- <SNIP> C 10.10.1.0/30 Direct, Tu 10 0/0 03:14:40 #ping 10.10.1.2 Type Ctrl-C to abort. Sending 5, 100-byte ICMP Echos to 10.10.1.2, timeout is 2 seconds: !!!!! Success rate is 100.0 percent (5/5), round-trip min/avg/max = 0/8/20 (ms) 

SITE B:

! interface Tunnel 10 ip address 10.10.1.2/30 tunnel destination 10.66.127.201 tunnel source 10.25.192.1 tunnel keepalive 10.10.1.1 attempts 4 interval 6 tunnel mode ipip no shutdown ! router ospf 10 network 10.25.192.0/23 area 2 network 10.25.195.0/24 area 2 network 10.10.1.1/30 area 0 passive-interface Vlan 2 passive-interface Vlan 4 passive-interface Vlan 40 passive-interface Vlan 41 #sho int tunnel Tunnel 10 is up, line protocol is up Hardware is Tunnel Tunnel mode ipip Tunnel source 10.25.192.1, Tunnel destination 10.66.127.201 Tunnel dscp mapped Tunnel flow-label 0 Tunnel hop-limit 64 Tunnel keepalive destination 10.10.1.1 interval 6 attempts 4 Tunnel keepalive state up, time since last change: 00:00:47 Address is f4:8e:38:0c:d6:bb, Current address is f4:8e:38:0c:d6:bb Interface index is 1224741888 Internet address is 10.10.1.2/30 Mode of IPv4 Address Assignment : MANUAL DHCP Client-ID(61): f48e380cd6bb Internet address is 10.10.1.2/30 Mode of IPv4 Address Assignment : MANUAL DHCP Client-ID(61): f48e380cd6bb ARP type: ARPA, ARP Timeout 04:00:00 Last clearing of "show interface" counters 00:48:35 Queueing strategy: fifo Input Statistics: 22 packets, 2716 bytes Output Statistics: 29 packets, 2608 bytes Time since last interface status change: 00:01:04 #sho ip ospf interface Vlan 1 is up, line protocol is up Internet Address 10.25.192.1/23, Area 2 Process ID 10, Router ID 192.168.2.1, Network Type BROADCAST, Cost: 1 Transmit Delay is 1 sec, State BDR, Priority 1 Designated Router (ID) 192.168.2.2, Interface address 10.25.192.2 Backup Designated Router (ID) 192.168.2.1, Interface address 10.25.192.1 Timer intervals configured, Hello 10, Dead 40, Wait 40, Retransmit 5 Neighbor Count is 1, Adjacent neighbor count is 1 Adjacent with neighbor 192.168.2.2 (Designated Router) Vlan 6 is up, line protocol is up Internet Address 10.25.195.1/24, Area 2 Process ID 10, Router ID 192.168.2.1, Network Type BROADCAST, Cost: 1 Transmit Delay is 1 sec, State BDR, Priority 1 Designated Router (ID) 192.168.2.2, Interface address 10.25.195.2 Backup Designated Router (ID) 192.168.2.1, Interface address 10.25.195.1 Timer intervals configured, Hello 10, Dead 40, Wait 40, Retransmit 5 Neighbor Count is 1, Adjacent neighbor count is 1 Adjacent with neighbor 192.168.2.2 (Designated Router) #show ip route Codes: C - connected, S - static, R - RIP, B - BGP, IN - internal BGP, EX - external BGP,LO - Locally Originated, O - OSPF, IA - OSPF inter area, N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2, E1 - OSPF external type 1, E2 - OSPF external type 2, i - IS-IS, L1 - IS-IS level-1, L2 - IS-IS level-2, IA - IS-IS inter area, * - candidate default, > - non-active route, + - summary route <SNIP> Destination Gateway Dist/Metric Last Change ----------- ------- ----------- ----------- <SNIP> C 10.10.1.0/30 Direct, Tu 10 0/0 03:13:36 #ping 10.10.1.1 Type Ctrl-C to abort. Sending 5, 100-byte ICMP Echos to 10.10.1.1, timeout is 2 seconds: !!!!! Success rate is 100.0 percent (5/5), round-trip min/avg/max = 0/8/20 (ms) 



No comments:

Post a Comment