Добрый день уважаемые коллеги. Столкнулись с такой проблемой. Используем Q-in-Q и DHCP. Проблема в том , что каким-то образом в клиентский vlan попадает второй mac с запросом dhcp. Похоже на коллизию . Q-in-Q vlan 198 cvid 1517. На порту клиента mac не меняется и он один.
e0:06:e6:11:67:16- не понятно от куда взялся, на коммутаторах не прослеживается , в базе не фигурирует как клиентский
a0:36:9f:23:12:69 - mac сервера
a0:b3:cc:79:40:d5- mac клиента (Ноутбук)
Код:
14:28:58.120566 a0:36:9f:23:12:69 > e0:06:e6:11:67:16, ethertype IPv4 (0x0800), length 320: 10.10.16.4.67 > 10.10.24.167.68: BOOTP/DHCP, Reply, length 278
14:28:58.120587 a0:36:9f:23:12:69 > e0:06:e6:11:67:16, ethertype IPv4 (0x0800), length 320: 10.10.16.4.67 > 10.10.24.167.68: BOOTP/DHCP, Reply, length 278
14:29:09.085940 a0:b3:cc:79:40:d5 > a0:36:9f:23:12:69, ethertype IPv4 (0x0800), length 356: 172.30.83.83.68 > 172.30.0.4.67: BOOTP/DHCP, Request from a0:b3:cc:79:40:d5, length 314
14:29:09.086062 a0:36:9f:23:12:69 > a0:b3:cc:79:40:d5, ethertype IPv4 (0x0800), length 286: 0.0.0.0.67 > 255.255.255.255.68: BOOTP/DHCP, Reply, length 244
14:29:09.099370 a0:b3:cc:79:40:d5 > ff:ff:ff:ff:ff:ff, ethertype IPv4 (0x0800), length 342: 0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from a0:b3:cc:79:40:d5, length 300
14:29:09.099371 a0:b3:cc:79:40:d5 > ff:ff:ff:ff:ff:ff, ethertype IPv4 (0x0800), length 342: 0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from a0:b3:cc:79:40:d5, length 300
14:29:09.130973 a0:36:9f:23:12:69 > a0:b3:cc:79:40:d5, ethertype IPv4 (0x0800), length 320: 172.30.0.4.67 > 172.30.83.83.68: BOOTP/DHCP, Reply, length 278
14:29:09.131662 a0:b3:cc:79:40:d5 > ff:ff:ff:ff:ff:ff, ethertype IPv4 (0x0800), length 368: 0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from a0:b3:cc:79:40:d5, length 326
14:29:09.131669 a0:b3:cc:79:40:d5 > ff:ff:ff:ff:ff:ff, ethertype IPv4 (0x0800), length 368: 0.0.0.0.68 > 255.255.255.255.67: BOOTP/DHCP, Request from a0:b3:cc:79:40:d5, length 326
14:29:09.131885 a0:36:9f:23:12:69 > a0:b3:cc:79:40:d5, ethertype IPv4 (0x0800), length 320: 172.30.0.4.67 > 172.30.83.83.68: BOOTP/DHCP, Reply, length 278
14:29:09.131919 a0:36:9f:23:12:69 > a0:b3:cc:79:40:d5, ethertype IPv4 (0x0800), length 320: 172.30.0.4.67 > 172.30.83.83.68: BOOTP/DHCP, Reply, length 278
Цепочка следущая
Клиент -> 17 порт DES-1210-28/ME 26 порт -> 2 порт DGS-3000-10TC 10 порт -> 9 порт DGS-3000-10TC 10 порт -> 9 порт DGS-3000-10TC 10 порт -> 10 порт DGS-3120-24SC 24 порт -> 18 порт DGS-3420-26SC 26 порт > 25 порт DGS-3627 5 порт -> сервер.
DES-1210-28ME. Все просто vlan добавлен 17 порт untag , 26 tag
DGS-3000-10TC
Код:
DGS-3000-10TC:admin#sh vlan port 2
Command: show vlan ports 2
Port VID Untagged Tagged Dynamic Forbidden
----- ---- -------- ------ ------- ---------
2 1 - X - -
2 198 X - - -
Код:
DGS-3000-10TC:admin#show qinq ports 2
Command: show qinq ports 2
Port ID: 2
---------------------------------------------------------
Role: UNI
Miss Drop: Disabled
Outer Tpid: 0x8100
Add Inner Tag: Disabled
На 3120,3420 qinq выключен, просто включен jumbo frame.
Почему-то каждые 7 мин в vlan клиента поступал запрос с mac e0:06:e6:11:67:16
Прошу мощи. Проблема только у двух клиентов , на разных адресас
Mac 1-го A0-B3-CC-79-40-D5 . 2-го A0-48-1C-0E-84-18
Код:
14:50:36.887646 a0:36:9f:23:12:69 > e0:06:e6:11:67:16, ethertype IPv4 (0x0800), length 320: (tos 0x10, ttl 128, id 0, offset 0, flags [none], proto UDP (17), length 306)
Client-Ethernet-Address e0:06:e6:11:67:16
172.30.83.83.68 > 255.255.255.255.67: [udp sum ok] BOOTP/DHCP, Request from e0:06:e6:11:67:16, length 300, xid 0x1946a620, Flags [none] (0x0000)
Client-Ethernet-Address e0:06:e6:11:67:16
Client-ID Option 61, length 7: ether e0:06:e6:11:67:16
172.30.83.83.68 > 255.255.255.255.67: [udp sum ok] BOOTP/DHCP, Request from e0:06:e6:11:67:16, length 300, xid 0x1946a620, Flags [none] (0x0000)
Client-Ethernet-Address e0:06:e6:11:67:16
Client-ID Option 61, length 7: ether e0:06:e6:11:67:16
14:57:37.894756 a0:36:9f:23:12:69 > e0:06:e6:11:67:16, ethertype IPv4 (0x0800), length 320: (tos 0x10, ttl 128, id 0, offset 0, flags [none], proto UDP (17), length 306)
Client-Ethernet-Address e0:06:e6:11:67:16
14:57:37.894776 a0:36:9f:23:12:69 > e0:06:e6:11:67:16, ethertype IPv4 (0x0800), length 320: (tos 0x10, ttl 128, id 0, offset 0, flags [none], proto UDP (17), length 306)
Client-Ethernet-Address e0:06:e6:11:67:16
172.30.83.83.68 > 255.255.255.255.67: [udp sum ok] BOOTP/DHCP, Request from e0:06:e6:11:67:16, length 300, xid 0xf9353b96, Flags [none] (0x0000)
Client-Ethernet-Address e0:06:e6:11:67:16
Client-ID Option 61, length 7: ether e0:06:e6:11:67:16
172.30.83.83.68 > 255.255.255.255.67: [udp sum ok] BOOTP/DHCP, Request from e0:06:e6:11:67:16, length 300, xid 0xf9353b96, Flags [none] (0x0000)
Client-Ethernet-Address e0:06:e6:11:67:16
Client-ID Option 61, length 7: ether e0:06:e6:11:67:16
15:04:32.902342 a0:36:9f:23:12:69 > e0:06:e6:11:67:16, ethertype IPv4 (0x0800), length 320: (tos 0x10, ttl 128, id 0, offset 0, flags [none], proto UDP (17), length 306)
Client-Ethernet-Address e0:06:e6:11:67:16
15:04:32.902360 a0:36:9f:23:12:69 > e0:06:e6:11:67:16, ethertype IPv4 (0x0800), length 320: (tos 0x10, ttl 128, id 0, offset 0, flags [none], proto UDP (17), length 306)
Client-Ethernet-Address e0:06:e6:11:67:16
172.30.83.83.68 > 255.255.255.255.67: [udp sum ok] BOOTP/DHCP, Request from e0:06:e6:11:67:16, length 300, xid 0x5759b913, secs 7424, Flags [Broadcast] (0x8000)
Client-Ethernet-Address e0:06:e6:11:67:16
Client-ID Option 61, length 7: ether e0:06:e6:11:67:16
172.30.83.83.68 > 255.255.255.255.67: [udp sum ok] BOOTP/DHCP, Request from e0:06:e6:11:67:16, length 300, xid 0x5759b913, secs 7424, Flags [Broadcast] (0x8000)
Client-Ethernet-Address e0:06:e6:11:67:16
Client-ID Option 61, length 7: ether e0:06:e6:11:67:16
Client-Ethernet-Address e0:06:e6:11:67:16
Client-Ethernet-Address e0:06:e6:11:67:16
172.30.83.83.68 > 255.255.255.255.67: [udp sum ok] BOOTP/DHCP, Request from e0:06:e6:11:67:16, length 300, xid 0x6a457604, Flags [none] (0x0000)
Client-Ethernet-Address e0:06:e6:11:67:16
Client-ID Option 61, length 7: ether e0:06:e6:11:67:16
172.30.83.83.68 > 255.255.255.255.67: [udp sum ok] BOOTP/DHCP, Request from e0:06:e6:11:67:16, length 300, xid 0x6a457604, Flags [none] (0x0000)
Client-Ethernet-Address e0:06:e6:11:67:16
Client-ID Option 61, length 7: ether e0:06:e6:11:67:16
15:11:19.967370 a0:36:9f:23:12:69 > e0:06:e6:11:67:16, ethertype IPv4 (0x0800), length 320: (tos 0x10, ttl 128, id 0, offset 0, flags [none], proto UDP (17), length 306)
Client-Ethernet-Address e0:06:e6:11:67:16
15:11:19.967389 a0:36:9f:23:12:69 > e0:06:e6:11:67:16, ethertype IPv4 (0x0800), length 320: (tos 0x10, ttl 128, id 0, offset 0, flags [none], proto UDP (17), length 306)
Client-Ethernet-Address e0:06:e6:11:67:16