Wednesday, September 1, 2021

ZTP not working on Viptela SD-WAN

Hi, I have been tasked with testing and setting up a bunch of ISR 1100's for use with our SD-WAN environment. All of the config behind the scenes has been done as far as creating the template and the custom device values along with registering the device on vManage to.

The cert is showing as "installed" on Configure > Devices and also showing as "valid" on Configure > Certificates.

I have plugged the router into our network, it has obtained a DHCP address but nothing else happens. vManage never sees it and it never downloads the config. I'm stumped to be honest. The router itself can ping the Internet (8.8.8.8) so there is definitely connectivity out.

I have ran a "show control connections" and it returns nothing via the console port on the router. When running a "show control connections-history" command i can see it displays the following:

for "LOCAL ERROR > RXTRDWN" which indicates it receieved a "Received Teardown" message

for "REMOTE ERROR > BIDNTVRFD" which says it is a "Peer Board ID Cert not verified"

But when i do a:

"show orchastrator valid-vedges"......on both vBonds, it shows that the device as "valid"

At the moment i'm stumped, any help or input would be massively helpful.



No comments:

Post a Comment