Answer the question
In order to leave comments, you need to log in
RSTP - how to change root ports?
I have this ring. It worked fine for itself, blocking the port in the "Department of Chief Energy" and everything was fine. Then I got a "3CoM Communication Node" and when it appeared, its port was blocked and now traffic from the root to "HP" (above "Department of Chief Energy") runs through such a long chain. The quality of the connection has dropped a lot.
I tried to restart the "right wing", "HP" all to no avail. Traffic through the "3CoM Communication Center" does not want to run, even shoot yourself. There was a problem on the "Communication Node" there was an sfp module and it did not automatically determine the speed (because of this, its cost was 65535) - fixed it, the cost became 4. restarts do not help. Do you need to restart the root switch?
ps the saddest thing is that I can’t assign a root port through the hp1810 web face,
Question: how can I make sure that the gap is between the "Department of Chief Energy" and the "right wing"?
Answer the question
In order to leave comments, you need to log in
as a result:
sat and smoked protocols, on one switch there was an ancient protocol, changed to a fresh one. On one more switch on links edge was included, switched off. Included everywhere, except for trunk links, portfast\edge. I set the priority of the switch root to 12288.
Now topology changes on all switches are indicated correctly, if the link falls within 30-60 seconds, the traffic starts to bypass. So far I've only checked it on a couple of switches, I'll check the rest by the end of the week. While everything works - everything is stable.
Question: how can I make sure that the gap is between the "Department of Chief Energy" and the "right wing"?
you can try to put the port in one direction on the root switch, then, in theory, the ring will be reset.
priority(128), admin edge(non-edge), point-to-point(forced true) leave default for all ports?
Thanks for the diagram.
This is good.
Here I do not understand. These three switches are not sw1, sw2, sw5 by any chance, which are you talking about further? Apparently, I expressed myself incomprehensibly, I believe that on all switches it is necessary to achieve uniformity in the representation of the cost of the path (root path cost). Otherwise, we are left to guess how 16-bit and 32-bit values are mapped to each other, given that the field in the BPDU has a length of 32 bits. To understand this, you will need to study the BPDU dump and so on. Therefore, I ask you to bring the calculation of the cost of the path back to a single mode. Keywords for searching in the interface are root path cost short (16-bit version), root path cost long (32-bit version).
When I looked at the bridge id, I noticed a strange thing:
sw1, sw2, sw5 have root bridge id exactly the same as their bridge id. On the other switches everything is fine.
Please compare the STP configuration of the root switch and one of sw1/sw2/sw5.
General STP configuration and uplink ports to other switches ( pages 49,58 ).
Look at the legend, the values circled in red - what is this? Accidentally not STP activity on the interface?
RSTP is still off on the ports, as far as I can tell from the selection. Try enabling RSTP on these ports (Spanning tree per port section in the documentation).
Also check that on all links between switches, the Edge port mode must be turned off on each side. This mode is sometimes referred to as portfast.
Root guard, if it is active somewhere, also needs to be turned off for now.
Turned it on, indeed the switches saw the root bridge, the cost was normally calculated,
I suspect that for some reason BPDUs still do not go around the ring.
Please send the state of the uplink ports (in the sense of STP) for each switch with a full legend. Like here:
And please somehow mark where the switch is, so that the screenshots are not confused.
In general, since all switches have correctly identified the root switch, BPDUs in at least one direction of the ring traverse normally.
Further, after you have switched port 1 of switch sw3 from Edge mode to normal mode, please send again the status of the RSTP ports of all switches. The values of root port and root path cost on some of them should change. I propose to deal with vlans later.
ps Do you have any idea why the ring is not working?
nothing changed.
can't my ring not work because of this switch, which, in fact, consists of a process in the ring ...
Here is a rough topology diagram. There are a couple of ambiguities left - the sw5 switch model (judging by the MAC address, this is 3com, you have HP listed, but so far it’s not critical, I think) and the trunk from the root side to sw1 (on it, as I understand it, all vlans except 1 are tagged, so which Are there vlans on it at all?).
The most important thing is the settings of the links sw2 <-> sw3 and root <-> sw9. In each case, the untagged vlan is 1 on the one hand, and 350 on the other. As a result, they are actually merged on L2. Any host in vlan 1 can access any host in vlan 350, if desired. It is not yet clear why you have not yet observed a broadcast storm at all, as I understand it, there are conditions for it.
I suggest: 1) set untagged vlan 1
for port 49 of the root switch 2) switch
port 26 of the sw2 switch to access mode (set untagged vlan 1)
It is desirable to do this step by step. Considering the general originality of the network design, you should be prepared for its inoperability (including the failure of the managing vlan), although this is unlikely. That is, it is better to do this during non-working hours, you may have to roll back the settings on the spot using console access to the switch.
Yes, it's better to figure out which server uses which vlan. Since vlans 350 and 1 are actually combined, it will be easier to see which IP addresses from which prefixes are configured on which server/host and then map the prefix to the vlan number using the configuration of the router located behind the root switch .
I have a question
. Could you clarify what the e / d symbols in the STP column mean for the switches sw1 , sw2 , sw5 ? If we draw an analogy with the root switch, then this probably means enabled / disabled. That would explain a lot. Please check the difference between the settings for ports 25 and 26 of these switches ( sw1 , sw2 , sw5 ).
It seems to me, or is there still something wrong here, and the next time a switch is disconnected, the traffic will not go around?
Here is what happened with the screenshots you provided:
toster -rstp-costs.pdf
Here is what happened during emulation: toster-rstp-lab-results.pdf
like here ) for switches sw1-sw5.
@throughtheether
there are no more. Specialist checked everything.
sinful. Switches that are hp do not provide information about the bridge-id and I thought it was compiled according to the "Switch priority-max age: mac address" principle.
The information provided by the switch is:
@throughtheether
on all others untagged 1vlan.
As I understand it, the snag is in sw2 with untagged 350 vlan.
@throughtheether these vlans are not enabled on the servers. It's just that another provider enters the root switch on port 4, with a vlan through port 8, into which the router is plugged, it wraps this provider and sends it to sw2 so that telephony works there.
@throughtheether
In general, I thought that 2 minutes was not enough. I closed the ring again, waited 5 minutes, nothing came up, I decided to return 350vlan to sw3 on sw2 and everything started up the way I wanted it and sw5 says that port 26 is "Alternate". But here's the problem: sw1, sw2, sw3, sw4, sw5 say that the topology has changed (5 minutes ago), all other switches, incl. root says the topology changed 2 hours ago. although all switches recognize the root is true. It seems to me, or is there still something wrong here, and the next time a switch is disconnected, the traffic will not go around?
on sw5, this port is written alternate, but in fact there is 10 Mbps traffic and there is no place on the entire ring where there is no traffic
also noticed a strange thing
on sw1 designated bridge id:
25port 32768-00:15:77:fd:40:00 (id root bridge)
26port 32768-20:fd:f1:96:cb:90 (id this bridge)
on sw2 same story: id sw1 and id sw2
but on sw5 comes id sw4 and sw6
While everything works - everything is stable.
Didn't find what you were looking for?
Ask your questionAsk a Question
731 491 924 answers to any question