Wired Intelligent Edge

 View Only
last person joined: yesterday 

Bring performance and reliability to your network with the HPE Aruba Networking Core, Aggregation, and Access layer switches. Discuss the latest features and functionality of your switching devices, and find ways to improve security across your network to bring together a mobile-first solution
Expand all | Collapse all

Traceroute pb witch two CX 8325

This thread has been viewed 45 times
  • 1.  Traceroute pb witch two CX 8325

    Posted Apr 05, 2022 07:07 AM
    Hello !

    I'm a french user, i have a non blocking problem.

    I configured two CX 8325, VSX is OK.
    1 SVI per Vlan and active gateway enable

    When i do a traceroute from a linux machine to a computer (for example), the first hop is the SVI ip address and the second the computer but traceroute is incomplete. Same problem il i do the traceroute from the CX.

    Do you have any suggestions on this?

    thanks !

    ------------------------------
    Nicolas 
    ------------------------------


  • 2.  RE: Traceroute pb witch two CX 8325

    MVP GURU
    Posted Apr 05, 2022 11:36 AM
    Hi Nicolas, could you provide more details? host to host traceroute (when hosts belong to different routed VLANs) passing through a routing switch which acts as the router for involved VLANs looks good when, from the source host, the first hop is the routing switch (SVI IP Address) and the last hop is the target host...or I misunderstood what you wrote? where is the issue on your traceroute?

    ------------------------------
    Davide Poletto
    ------------------------------



  • 3.  RE: Traceroute pb witch two CX 8325

    Posted Apr 11, 2022 05:33 AM
    Hello, thanks for the reply.

    Example : Directly on one of the two CX switch, i can ping a host on a vlan but traceroute to the same host doesn't work  :

    PING 172.16.X.X (172.16.X.X) 100(128) bytes of data.
    108 bytes from 172.16.X.X: icmp_seq=1 ttl=128 time=0.222 ms
    108 bytes from 172.16.X.X: icmp_seq=2 ttl=128 time=0.208 ms
    108 bytes from 172.16.X.X: icmp_seq=3 ttl=128 time=0.233 ms
    108 bytes from 172.16.X.X: icmp_seq=4 ttl=128 time=0.300 ms
    108 bytes from 172.16.X.X: icmp_seq=5 ttl=128 time=0.174 ms

    --- 172.16.X.X ping statistics ---
    5 packets transmitted, 5 received, 0% packet loss, time 4090ms
    rtt min/avg/max/mdev = 0.174/0.227/0.300/0.043 ms
    LT60-C1# traceroute 172.16.X.X
    traceroute to 172.16.X.X (172.16.X.X), 1 hops min, 30 hops max, 3 sec. timeout, 3 probes
    1 172.16.X.X 0.221ms

    Traceroute incomplete, it remains blocked.

    Aruba Support just want me to upgrade firmware...
    Maybe there is another solution

    ------------------------------
    Nicolas 
    ------------------------------



  • 4.  RE: Traceroute pb witch two CX 8325

    EMPLOYEE
    Posted Apr 12, 2022 04:55 AM
    do you have ip icmp unreachable ?
    Any FW blocking ICMP unreachable message ?

    ------------------------------
    Vincent Giles
    ------------------------------



  • 5.  RE: Traceroute pb witch two CX 8325

    Posted Apr 12, 2022 05:17 AM
    yes, it's the default setting.
    No FW blocking ICMP.

    ------------------------------
    Nicolas 
    ------------------------------



  • 6.  RE: Traceroute pb witch two CX 8325

    MVP GURU
    Posted May 02, 2022 03:31 PM
    ICMP redirect is enable ?

    ------------------------------
    PowerArubaSW : Powershell Module to use Aruba Switch API for Vlan, VlanPorts, LACP, LLDP...

    PowerArubaCP: Powershell Module to use ClearPass API (create NAD, Guest...)

    PowerArubaCL: Powershell Module to use Aruba Central

    PowerArubaCX: Powershell Module to use ArubaCX API (get interface/vlan/ports info)..

    ACEP / ACMX #107 / ACDX #1281
    ------------------------------



  • 7.  RE: Traceroute pb witch two CX 8325

    Posted May 03, 2022 04:42 AM
    ICMP redirect is enable by default on CX, no ?

    ------------------------------
    Nicolas 
    ------------------------------



  • 8.  RE: Traceroute pb witch two CX 8325

    EMPLOYEE
    Posted May 03, 2022 05:08 AM
    show run all | inc redirect





  • 9.  RE: Traceroute pb witch two CX 8325

    Posted May 03, 2022 05:15 AM
    It's enable :

    C1# show run all | inc redirect
            ip icmp redirect

    ------------------------------
    Nicolas
    ------------------------------