70
© Cisco Systems 2007 Catalyst 6500 Bootcamp Switch Management and Operation Vimala Veerappan CSSTG Technical Marketing Engineer

Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

  • Upload
    others

  • View
    12

  • Download
    0

Embed Size (px)

Citation preview

Page 1: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 BootcampSwitch Management and Operation

Vimala Veerappan

CSSTG Technical Marketing Engineer

Page 2: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Agenda

Introduction

Smartport Macros

Configuration Rollback

EEM

Smartcall HomeSmartcall Home

Netflow

NAM

ERSPAN

Tools

Page 3: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementIntroduction

Once the Catalyst 6500 is installed - what then

makes it much easier to administer and manage

than other available switch solutions…

THE ANSWER…..

Smartports -- Auto-Secure -- Auto-QoS -- Flash Sizes

Config Rollback -- EEM -- Smart Call Home -- LLDPConfig Rollback -- EEM -- Smart Call Home -- LLDP

TDR -- GOLD -- LLDP -- Netflow Top Talkers -- SNMP

Subsystem ISSU -- PISA -- ERSPAN -- and much more…

Let’s Explore This In More Detail

Page 4: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementService Deployment - Cisco Supplied Smartport Macros

Also built into the Catalyst 6500 is a set of default Smartport macros that are ready to go…

Global config

options for STP,

Err-Disable, VTP

Router config

options for

trunking, STP Err-Disable, VTP

and UDLD

Desktop config options

for switchport, STP and

port security

Phone config options for switchport, STP, port security and Auto-QoS

trunking, STP

and QoS

Switch config options

for switchport and STP

Page 5: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementConfiguration Management - Config Rollback

Configuration rollback provides a way to archive and save older configurations so that they may be

recovered as and when needed…

Configuration rollback allows the user to specify

how many older configuration versions they

wish to archive (up to 14 copies)…

Page 6: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementConfiguration Management - Command History Log

The Catalyst 6500 IOS maintains a command history log - one log is kept for enable commands and the

other log for configuration commands - the number of commands kept in the log is configurable…

6500#show history

del disk0:init.txt

configure replace disk0:oldconfig-1

yes

show ver

show power

show ip int brief

archive config

Administrator

show history

6506(config)#do show history

archive

path disk0:oldconfig

maximum 10

write-memory

exit

router ospf 1

do show history

Enable Mode History

Config Mode History

Page 7: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementConfiguration Management - Flash Size

Large flash sizes allow for multiple IOS images to be stored locally on the Supervisor - this saves time

and effort in copying IOS images from other locations when they are needed…

Page 8: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementEasy Diagnostics - GOLD

Generic Online Diagnostics can check the health of hardware components and verify proper operation of

the system at run time or boot time …

Automated action based on diagnostics results

Detect and identify problems before they result in network downtime!

Configure online diagnostics and check diagnostics results

Verify hardware functionalities

Page 9: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Embedded Event ManagerWhat is it?

EEM is an IOS technology that runs on the Catalyst 6500’s control plane. It is a combination of processes designed to monitor key system parameters such as CPU utilization, interface errors,

counters, SNMP and SYSLOG events, and act on specific events or thresholds/counters that are

exceeded…

The first release of the EEM

implementation (in Rockies 3.1

with Software Modularity) is based

on V2.1.5

Page 10: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Embedded Event ManagerHow can it be used?

Bring a backup link up

when a packet drop

threshold has been

Send a page message

to operations if any

unauthorized hardware

These are a few of the many uses

that EEM can be applied to…

threshold has been

exceeded…

Send an email alert

when a configuration

change is made in

production hours…

unauthorized hardware

in installed/removed

Generate custom

SYSLOG on scheduled

GOLD diagnostic run

highlighting H/W issue..

Run specific

commands at set time

intervals to assist in

capacity planning

Generate custom login

message based on

user-id that logs in

Page 11: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementSimplified Operation - EEM

Embedded Event Manager provides a means to automate the operational management in real time -

EEM monitors for specific events on the switch and can invoke pre defined actions to correct, take

remedial action and report the event to network operations…

Page 12: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Embedded Event ManagerBasic EEM Architecture

Page 13: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Embedded Event ManagerDetailed Architecture

Page 14: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Embedded Event ManagerEvent Detectors

Page 15: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Embedded Event ManagerEvent Detectors

Provides persistent EEM counters that can be set by policies - a

policy can be triggered when a specific counter crosses a

Parses CLI commands for regular expression matches and

published an event on a successful match

Will allow IOS Applications or EEM Policies to publish application

specific events

policy can be triggered when a specific counter crosses a

threshold…

Generates an event when a specific IDB port generic statistics

counter crosses a threshold (above or below).

Provides a generic HW fault detection framework for customers to

define their own fault coverage and corrective action(Catalyst 6500

Only Event Detector available in Whitney IOS release)…

This detector is used to generate an event when IOS memory leaks

occur, deadlocks or infinite loops are detected in IOS

Page 16: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Embedded Event ManagerEvent Detectors

This will publish an event when either a linecard is inserted or

removed from the chassis

Used as a placeholder for policies that are manually triggered via

the “event manager run <policy-name>” command

Generates an event for all Redundancy Framework notifications

Generates an event when a specific SNMP counter crosses a

threshold - either above or below

Generates an event for all Redundancy Framework notifications

and state transitions

Generates an event for IOS modularity process start,

normal/abnormal stop and restart events

This detector is used to generate an event when IOS memory leaks

occur, deadlocks or infinite loops are detected in IOS tasks

(processes)

Page 17: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Embedded Event ManagerEvent Detectors

Generates an event when a specific SYSLOG message is

generated - match is determined using a regular expression

Generates an event at a specific time or after a specific period (I.e.

countdown).

Page 18: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 Ethernet Linecard + EEM

Business Challenge

• To save $ by powering down IP phones when unused

• Locations include customer offices with operations 9am-5pm

Call ManagerBranch

GreenManagerGreen Campus

EEM

6500 12.2(18)SXF4500 Testing in progress

Time based POE using EEM

9am-5pm

Deployment Overview

� Use modular Catalyst linecards combined with Green EEM script from: www.cisco.com/go/eem

“The power savings from using this EEM script on the Catalyst6500 has saved us enough to cover the price of all our 6,000W power supplies!”

- Customer using the solution

� Usage based IP Phone on/ off for next generation IP phones

� Integration with Call Manager

� Monitoring and control with:Centralized Mgr

Next Steps

$ saved by deploying time-based PoE

� 15.4W * 5,000 off hrs * $.11/kWhr

= Savings of $85,000 per year for 10,000 phones

Page 19: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

LatencyNetworkJitter

Dist. ofStats

ConnectivityPacketLoss

FTP DNS DHCP TCPJitter ICMP UDPDLSW HTTP

NetworkPerformanceMonitoring

Service Level Service Level AgreementAgreement

(SLA)(SLA)MonitoringMonitoring

NetworkNetworkAssessmentAssessment

Multiprotocol Label

Switching (MPLS)

Monitoring

VoIP VoIP MonitoringMonitoring

AvailabilityTroubleShooting

Protocols/OperationsProtocols/Operations

Measurement MetricsMeasurement Metrics

ApplicationsApplications

LDP H.323 SIP RTP Radius Video

IP SLA – Embedded Performance Tool

•DHCP Operation•Distribution of Statistics•DNS Operation•FTP Operation•HTTP Operation•ICMP Echo Operation•ICMP Path Echo Operation•LSP Health Monitor•MPLS VPN Awareness•VoIP Threshold Traps

•Multi Operation Scheduler•One Way Measurement•Path Jitter Operation•Reaction Threshold•Scheduler•TCP Connect Operation•UDP Based VoIP Operation•UDP Echo Operation•UDP Jitter Operation

New Additions in 12.2(33)SXH

FTP DNS DHCP TCPJitter ICMP UDPDLSW HTTP LDP H.323 SIP RTP Radius Video

Page 20: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Proactive, real-time diagnostics and alerts

Automatic generation of Cisco service requests

A new solution available now for Catalyst 65500

Smart Call Home

requests

Personalized web reports

Secure, reliable

data transportCiscoSMARTnetService

www.cisco.com/go/smartcall

Page 21: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementSimplified Operation - Smart Call Home

Cisco TAC investigates

problem and suggests

remediation including

shipping replacement

parts if necessary

Customer implements

remediation and replaces

faulty part (if applicable)

GOLD runs diags, isolates fault and precise location

Detects GOLD events and sends to Call Home

Sends message to Cisco

TAC with precise

information and

diagnostics

faulty part (if applicable)

Page 22: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowIntroduction - What is Netflow?

NETFLOW Process

1. Inspect packets key fields and identify value

2. If key fields unique, create flow record

3. When flow terminates, export flow record to collector

Page 23: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowFirst the Hardware Part…

Netflow collection is a

hardware enabled feature

provided by the Policy

Feature Card (PFC)…

Both the Supervisor 720 and

Supervisor 32 are primed

with the PFC hardware to

support Netflow data

collection…

Page 24: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowControl Plane and Data Plane

Page 25: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowNetflow Capacities across the Supervisor family

Each of the Supervisors support for Netflow yields a different number of flows that can be

stored in the Netflow tables - the table below provides a summary of the Netflow capacities for

each of the Supervisors…

Table Size Hash Efficiency Effective Size Hash Key Size

Sup2 128K 25% 32K 17 bits

Sup720 128K 50% 64K 36 bitsSup720 128K 50% 64K 36 bits

Sup720-3B 128K 90% 115K 36 bits

Sup720-3BXL 256K 90% 230K 36 bits

Sup32-8GE 128K 90% 115K 36 bits

Sup32-10GE 128K 90% 115K 36 bits

Sup720-10GE-3C 128K 90% 115K 36 bits

Sup720-10GE-3CXL 256K 90% 230K 36 bits

Page 26: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowNetflow Hardware Record Format

Layer 3

Forwarding

Engine

(Tycho)

Netflow TCAM

Netflow Stats Table

Netflow Table Netflow Key Table Entry Records

Netflow Statistics Table Entry Records

IPv4

Key Table

Entry

Protocol/

Mask

4

VLAN/

VPN

12

Protocol

Type

8

IP DA

32

IP SA

32

SRC

Port

16

DST

PORT

16

Xtag

4

VPN

Valid

1

Re-Circ

1

Central

Rewrite

1

Primary

Input

1

First

Packet

Seen

FIN/RST Create

Time

Last Seen

timestamp

Byte

Count

Packet

Count

Threshold

Exceeded

Count

Bucket

Count

RPF Fail Cache

Update

Control

Bits

1 1 22 24 40 32 39 25 1 1 10

Netflow Table Entry

Netflow Stats Table Entry

Page 27: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowNetflow and the DFC

The Distributed Forwarding Card also has the

ability to collect its own set of Netflow statistics

independent of what is collected on the

Supervisor - this needs to be factored into the

design of a chassis with DFC’s..

Page 28: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowNetflow and the DFC

6500#show mls netflow ip module 3

Displaying Netflow entries in module 3

DstIP SrcIP Prot:SrcPort:DstPort Src i/f :AdjPtr

-----------------------------------------------------------------------------

Flows on each of the DFC modules can be interrogated from the CLI - the following

command output gives an example of what can be seen from the CLI output…

Pkts Bytes Age LastSeen Attributes

---------------------------------------------------

10.1.2.1 10.1.3.1 tcp :34138 :ftp Gi3/3 :0x0

8114 314332 22 11:22:41 L3 – Dynamic

10.44.10.1 10.6.31.5 tcp :14102 :telnet Gi3/22 :0x0

612 10134 61 11:23:51 L3 - Dynamic

Page 29: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowFlow Masks define the Flow

The setup below could contain one, three or

four flows depending on the flow mask in

use…

Flow mask - Source IP >>> Everything counted under

one flow

Flow mask - Dest IP >>> Three flows

Flow mask - Full Flow >>> Four flows

Page 30: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowSupported Flow Masks

The Catalyst 6500 supports the following flow masks - these are used to identify which pieces

of information in the header will be used as input into generating a key for flow lookups…

Page 31: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowLooking at Flows on the Switch CLI

6500#show mls netflow ip

Displaying Netflow entries in Supervisor Earl

DstIP SrcIP Prot:SrcPort:DstPort Src i/f :AdjPtr

-----------------------------------------------------------------------------

Pkts Bytes Age LastSeen Attributes

---------------------------------------------------

10.102.130.213 10.214.39.79 tcp :46528 :www :0x0

7 3766 17 15:47:37 L3 - Dynamic

10.230.215.148 10.155.22.221 tcp :51813 :45912 :0x0

25 21329 47 15:47:39 L3 - Dynamic

10.97.36.200 10.17.64.177 tcp :65211 :www :0x0

9 7664 17 15:47:38 L3 - Dynamic

10.90.33.185 10.46.13.211 tcp :27077 :60425 :0x0

10 5734 17 15:47:38 L3 - Dynamic

<…>

Page 32: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowLooking at Flows on the Switch CLI

C6500#show mls netflow table-contention detailed

Earl in Module 6

If a flow hashes to the same location as an existing flow (and there are no spare Alias CAM

entries), then the flow record is not created. Netflow tables are a finite resource, and as

such need to be managed to avoid the situation where flow records are not kept…

Earl in Module 6

Detailed Netflow CAM (TCAM and ICAM) Utilization

================================================

TCAM Utilization : 100%

ICAM Utilization : 0%

Netflow TCAM count : 130944

Netflow ICAM count : 0

Netflow Creation Failures : 270274

Netflow CAM aliases : 0

Page 33: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowNow the Software Part - Netflow Data Export (NDE)

Netflow Data Export is a software process that

retrieves the data from the Catalyst 6500 hardware

and exports it in a pre defined record format to a

configured Netflow collector.

The Netflow collector can represent the data in a

variety of graphical and tabular forms…

Page 34: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowVersion 5 Record Format

SRC IP

The Netflow v5 record format is shown below…

DEST IP

4 4

Next Hop RTR IP Addr

4

Inbound SNMP IFIndex

2

Outbound SNMP IFIndex

2

Packet CountPacket Count

4

Byte Count

4

4 4 2 2 1 1 1 1 2 2

0 4 8 12 14 16 20

Start Timestamp

4

End Timestamp

4

SRC Port

2

DEST Port

2

Padding

1

TCP Flags

1

L4 Protocol

1

TOS

1

SRC AS

2

DEST AS

2

SRC Mask

1

DEST Mask

1

Padding

2

24 28 32 34 36 37 38 39 40 42

44 45 46 48

Page 35: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowVersion 7 Record Format

SRC IP

The Netflow v7 record format is shown below…

DEST IP

4 4

Next Hop RTR IP Addr

4

Inbound SNMP IFIndex

2

Outbound SNMP IFIndex

2

Packet CountPacket Count

4

Byte Count

4

4 4 2 2 1 1 1 1 2 2

0 4 8 12 14 16 20

Start Timestamp

4

End Timestamp

4

SRC Port

2

DEST Port

2

Padding

1

TCP Flags

1

L4 Protocol

1

TOS

1

SRC AS

2

DEST AS

2

SRC Mask

1

DEST Mask

1

Flags

2

24 28 32 34 36 37 38 39 40 42

44 45 46 48

MLS Router Address

4

52

Page 36: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowVersion 8 Aggregate Record

Netflow v8 flow export uses separate aggregation caches to group flow records allowing it to

store a subset of the information contained in a version 5 record…

Page 37: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowVersion 8 Aggregate Record Format - Examples

Page 38: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NetflowVersion 9

Page 39: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementMonitoring - Netflow Top Talkers

Netflow Top Talkers is a new feature that presents information about the traffic flows that have consumed

the most bandwidth - these flows are displayed with the top talkers show command...…

Page 40: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementSwitch Management - Show Platform Hardware Capacity

The show platform hardware capacity command provides an at-a-glance view of system wide resource

consumption…

Page 41: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementSwitch Management - Show Sanity

The “show diagnostic sanity” command can be used to review the configuration for inconsistencies…

6506#show diagnostic sanity

Pinging default gateway 10.66.228.193

Type escape sequence to abort.

Sending 5, 100-byte ICMP Echos to 10.66.228.193, timeout is 2 seconds:

!!!!!

Success rate is 100 percent (5/5), round-trip min/avg/max = 1/1/4 ms

Could not verify boot image "disk0:s72033-advipservicesk9_wan-mz.122-33.SXH.bin"

specified in the boot string.

The following ports have UDLD disabled. Please enable UDLD for optimum config:

Gi6/2

The following ports have an unknown UDLD link state. Please enable udld on both

sides of the link:

Gi1/16

The following ports with mode set to desirable are not trunking:

Gi1/48, Gi4/12, Gi4/16

The following ports have portfast enabled:

Gi1/48

Page 42: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementEasy Diagnostics - TDR

Time Domain Reflectometry is a hardware feature built into selected Cisco linecards that runs cable tests

over copper cables to facilitate the troubleshooting and diagnosis of cable faults...…

TDR facilitates troubleshooting of Cable Faults REDUCING time to fix

and resolve…

Page 43: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementMonitoring - LLDP and LLDP-MED

Link Layer Discovery Protocol - Media Endpoint Discovery is a means to allow the switch to discover the

attached inline powered device and negotiate the power requirements to optimize power consumption in

the switch...…

Page 44: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementMonitoring - PISA NBAR

Two new Supervisor 32 options with built in PISA provides for hardware based NBAR that serves to

classify application traffic - traffic can be blocked, redirected or logged - traffic can also be classified

providing higher priority for applications deemed business critical...…

Page 45: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Application, Hosts,

Conversations, TopN, MPLS,

DiffServ, URLs …

Visibility into: Router, Switch, NetFlow, WAAS, NBAR, Unified Communications

App, Server, Network response times

Insight into app behavior

Cisco NAMFunction Overview

Trigger-based

Packet decode

Internal & remote storage

Quality Metrics for Voice and Video

Call attributes

Interfaces for key functions

Collaboration with best-of-breed reporting vendors

Page 46: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

� Port monitoring

� Flow monitoringApplications

Hosts

Conversations

Top N

VLANs

Feature Summary

VLANs

� Application Performance

Analytics

� Voice quality analytics

� Video quality monitoring

� QoS (DiffServ) monitoring

� MPLS monitoring

� Packet capture and decode

Page 47: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

• View traffic statistics on

all ports

• Traffic statistics include

utilization, bytes,

packets, broadcasts,

multicasts, and errors

• Drill-down on a

Switchport Monitoring

• Drill-down on a

particular port to obtain

more granular details

Page 48: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

� Learn what applications are running on the network, who’s using them, and

how much bandwidth they’re consuming

� Proactively spot bottlenecks before your network suffers blows to

performance

� Define and improve the consistency and quality of both individual and

overall network services

Flow Monitoring: Real-Time & Historical

Application DistributionConversation Pair StatisticsDetailed Host Statistics

� Understand network behavior before and after a business change

Page 49: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Applications

ServerNAM

Clients

Server Delay Application

Server

Network

Client

Delay

Application Performance Analysis

� Measure network round trip time, client response time, server response time, transaction times

� Troubleshoot application performance problems

�Perform pre- and post-deployment monitoring of app optimization & acceleration services

� Analyze application behavior and trends for capacity planning

� Define and assure application services levels

Total Delay

Client

Network

Server Delay Application

Delay

Network Delay

Page 50: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

• Perform multiple captures simultaneously

• View decodes while the data is still being captured

• Use triggers, filters, and a capture analysis toolkit

Packet Capture and Decode

a capture analysis toolkit to simplify problem identification and resolution

• Save captures onboard or remotely

Page 51: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

• IP telephony monitoring– Track active call attributes– Identify call quality degradation using

packet loss and jitter statistics– View call details for individual phones

• Real-time & historical flow monitoring– View distribution of VoIP protocols

• Application Performance Analytics– Measure Cisco Unified

Voice Monitoring

– Measure Cisco Unified Communications Manager response times

• QoS monitoring (DSMON)– View VoIP traffic by DSCP values

Page 52: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

� Provides real-time video packet loss statistics

� Includes src/dest address filter to monitor key RTP streams of interest

Delivery ProblemsTroubleshoot Video Delivery Problems

Voice Quality Monitoring

monitor key RTP streams of interest

� Key data includes RTP packet count, packet loss, and packet loss rate

� Enables alarm thresholds to be set on packet loss variables

� Logs RTP packet loss events as syslogs

Page 53: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

� Validate planning assumptions

and QoS allocations

� Detect incorrectly marked

or unauthorized traffic

QoS Monitoring

Ethernet Header

NAM-Embedded Traffic AnalyzerDSMONMIBDSMONMIB

FTPFTP SNMP ICMPhttp FTPSNMP

IP Header TCP Header EthernetFTP Data

(DSCP0)

((DSCP0))

(DSCP0) (DSCP24)(DSCP24) (DSCP26)(DSCP40)

Page 54: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

• Monitor vital switch/router resources

such as CPU usage, backplane

bandwidth, memory usage, temperature

and fan status, sysUpTime, and power

supply status

• Provides immediate information on the

health of critical network devices

Switch/Router Health Monitoring

health of critical network devices

Tight integration with the switch/router permits the NAM to monitor and track

important infrastructure health diagnostics

Page 55: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Switched Port Analyzer (SPAN) is a facility in the 6500 for sending a copy of a set of packets

or a data stream to a target port (in the same chassis). Its usual application is for sending a

copy of the data to a network sniffer or RMON probe.

SPAN Source Port

Understanding SPAN

SPAN

Copy of packet received here

SPAN Destination Port

SPAN Source Port

True Destination Port

Page 56: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Local Source Ports, Local VLAN’s and Local Destination Ports are all supported by the SPAN

process – traffic sourced from a source SPAN port, traffic destined to a source SPAN port, or

both source and destination traffic on a source SPAN port can be spanned to a SPAN

destination port

SPAN

Source

SPAN

Source

Receive Traffic Transmit Traffic

Understanding SPAN

Source

Port

SPAN

Destination

Port

Source

Port

SPAN

Destination

Port

Page 57: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Remote SPAN operates in a similar fashion to SPAN, except that the SPAN source and SPAN

destination ports are on different chassis

Understanding RSPAN

SPAN

Source

Port

SPAN

Destination

Port

SPAN Traffic

Page 58: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

A separate VLAN must be defined to support the transmission of RSPAN traffic across the

network

RSPAN VLAN RSPAN VLAN

Understanding RSPAN VLAN

SPAN

Source

Port

SPAN

Destination

Port

SPAN Traffic

The RSPAN VLAN cannot carry any other traffic apart from the RSPAN traffic itself

Page 59: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementMonitoring - SPAN/ERSPAN

SPAN and ERSPAN are replication techniques that can send a copy of data from a port/VLAN to a local

switchport or switch at a remote location (over an IP cloud)...…

Page 60: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

SPAN and VSS

In a Virtual Switching System, the number of SPAN sessions is limited to what the VSS Active

Supervisor can provide. SPAN capacity on the VSS Hot Standby is not factored into available

SPAN sessions…

Virtual Switch Domain

VSL

Switch 1 Supervisor Switch 2 Supervisor

VSS State : Active

SPAN Management: Active

Replication: Active

VSS State : Hot Standby

SPAN Management: In-Active

Replication: Active

Virtual Switching System is supported in 12(33)SXH1 which introduces the following SPAN

capabilities per Virtual Switching System Domain…

TX SPAN Sessions RX/Both SPAN Sessions Total SPAN Sessions

Virtual Switch Domain 14 2 16

Page 61: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 MIBs

ATM-MIB BGP4-MIB BRIDGE-MIB CISCO-AAL5-MIB CISCO-ALPS-MIB

CISCO-ATIM-EXT-MIB CISCO-ATM-PVC-MIB CISCO-BCP-MIB CISCO-BGP-POLICY-ACC CISCO-BSTUN-MIB

CISCO-BLUK-FILE-MIB CSCIO-BRIDGE-EXT-MIB CISCO-CABLE-DIAG-MIB CISCO-CALL-HISTORY CISCO-CALLHOME-MIB

CISCO-CAR-MIB CISCO-CASA-MIB CISCO-6K-CROSSBAR CISCO-CDP-MIB CISCO-CBQOS-MIB

CISCO-CONFIG-COPY CISCO-CONFIG-MAN CISCO-DHCP-SNOOPING CISCO-DLSW-EXT-MIB CISCO-DLSM-MIB

CISCO-DSPU-MIB CISCO-DYNAMICP-ARP CISCO-ENHANCED-IMAG CISCO-ENHANCED-MEMPOOL CISCO-ENTITY-ASSET

CISCO-ENTITY-DIAG-MIB CISCO-ENTITY-DISPLAY CISCO-ENTITY-EXT CISCO-FRU-CONTROL CISCO-ENTITY-SENSOR

CISCO-ENTITY-VENDOR CISCO-ENVMON CISCO-FLASH-MIB CISCO-FLEX-LINKS-MIB CISCO-FRAME-RELAY

CISCO-FTP-CLIENT CISCO-HSRP-EXT-MIB CISCO-HRSP-MIB CISCO-IETF-ATM2-PVC CISCO-IETF-IP-FORWAR

CISCO-IETF-IP-MIB CISCO-IF-EXTENSION CISCO-IMAGE-MIB CISCO-INTERFACEOPN CISCO-IP-TAP-MIB

CISCO-IPMROUTE-MIB CISCO-IP-STAT-MIB CISCO-L2-CONTROL CISCO-L2-TUNNEL-CONF CISCO-LAG-MIB

CISCO-MAC-NOTIFICAT CISCO-MEMORY-POOL CISCO-NDE-MIB CISCO-NETFLOW-MIB CISCO-NETINT-MIB

CISCO-NTP-MIB CISCO-PAE-MIB CISCO-PAGP-MIB CISCO-PIM-MIB CISCO-PING-MIB

CISCO-PORT-SECURITY CISCO-PORT-STORM CISCO-POWER-ETHERNET CISCO-PRIVATE-VLAN CISCO-PROCESS-MIB

CISCO-PRODUCTS-MIB CISCO-QOS-POLICY CISCO-QUEUE-MIB CISCO-RF-MIB CISCO-RMON-CONFIG

CISCO-RSRB-MIB CISCO-RTTMON-MIB CISCO-SLB-EXT-MIB CISCO-SLB-MIB CISCO-SNAPSHOT-MIB

CISCO-SONET-MIB CISCO-SRP-MIB CISCO-STACK-MIB CISCO-STP-EXT-MIB CISCO-STUN-MIB

CISCO-SVI-AUTOSTATE CISCO-SWITCH-ENGINE CISCO-SWITCH-MCAST CISCO-SWITCH-QOS CISCO-SYSLOG-MIB

CISCO-TAP2-MIB CISCO-TCP-MIB CISCO-UDLDP-MIB CISCO-VINES-MIB CISCO-VLAN-IFTABLE

CISCO-VLAN-MEMBER CISCO-VLAN-TRANSLAT CISCO-VPDN-MGMT-MIB CISCO-VTP-MIB DLSW-MIB

Page 62: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

ENTITY-MIB ETHERLIKE-MIB EXPRESSION-MIB HC-RMON-MIB IEEE8021-PAE-MIB

IEEE8023-LAG-MIB IF-MIB IGMP-MIB INT-SERV-GUARANTEED INT-SERV-MIB

INTERFACEOPN-MIB IPMROUTE-MIB ISDN-MIB MAU-MIB MPLS-LDP-MIB

MPLS-LSR-MIB MPLS-TE-MIB MPLS-VPN-MIB NOTIFICATION-LOG-MIB NOVELL-IPX-MIB

NOVELL-NLSP-MIB NOVELL-RIPSAP-MIB OLD-CISCO-APPLETALK OLD-CISCO-CHASSIS OLD-CISCO-CPU

OLD-CISCO-DECNET OLD-CISCO-FLASH OLD-CISCO-INTERFACE OLD-CISCO-IP-MIB OLD-CISCO-MEMORY

OLD-CISCO-NOVELL OLD-CISCO-SYS-MIB OLD-CISCO-TCP-MIB OLD-CISCO-TS-MIB OLD-CISCO-VINES-MIB

OLD-CISCO-XNS-MIB PIM-MIB POWER-ETHERNET-MIB RFC1213-MIB RFC1243-MIB

Critical 6500 MIBS

OSPF-MIB FRAME-RELAY-DTE-MIB DS3-MIB OSPF-MIB FRAME-RELAY-DTE-MIB

DS3-MIB RFC2006-MIB RMON-MIB RMON2-MIB RS-232-MIB

RSVP-MIB SMON-MIB SNA-SDLC-MIB SNMP-COMMUNITY-MIB SNMP-FRAMEWORK

SNMP-MPD-MIB SNMP-NOTIFICATION SNMP-TARGET-MIB SNMP-VACM-MIB SNMPv2-MIB

SONET-MIB TCP-MIB UDP-MIB

Critical MIBs for monitoring New MIBs in 12.2(33)SXH

Catalyst6500 MIBs - http://www.cisco.com/public/sw-center/netmgmt/cmtk/mibs.shtml

Page 63: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

CISCO-VIRTUAL-SWITCH-MIB has been defined to support SNMP access to the Virtual

Switching System Configuration - the following MIB variables are accessible to an SNMP

manager…

cvsGlobalObjects - Domain #, Switch #, Switch Mode

cvsCoreSwitchConfig - Switch Priority and Preempt

New VSS MIBS

cvsCoreSwitchConfig - Switch Priority and Preempt

cvsChassisTable - Chassis Role and Uptime

cvsVSLConnectionTable - VSL Port Count, Operational State

cvsVSLStatsTable - Total Packets, Total Error Packets

cvsVSLPortStatsTable - TX/RX Good, Bad, Bi-dir and Uni-dir Packets

This MIB will be the main vehicle though which Network Management stations access

information relevant to the operation of the Virtual Switching System…

CISCO-VIRTUAL-SWITCH-MIB

Page 64: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

NEW

What’s new for LMS 3.1

• VSS support

• Support for device Diagnostics

– GOLD

– EEM

– Smart Call Home

• PoE Management

• Best Practices and Discrepancy • Best Practices and Discrepancy Reporting

• EOS/EOL & PSIRT Reports

• Metro-E 802.1ag Ethernet Ping and Jitter Operation and auto IP SLA

Page 65: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Resource Manager Essentials

• Inventory Manager

– Detailed inventory collection and reporting

• Software Image Manager

– Complete software image mgmt, download and tracking

– Modular IOS support– Modular IOS support

• Configuration Manager

– Version control, archival, editing and reporting

– Network-wide config changes

• Change Audit Services– Single interface to view all

hardware, software, and configuration changes

NEW

Page 66: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Resource Manager Essentials

• Syslog Analyzer– Distributed collection, flexible reporting, and

action scripts to pinpoint network incidents

• PSIRT Report– PSIRT details, Announced date, Description ,

Severity, IOS Version (s) impacted, Image File Name (s), Fixed in IOS Version, Number of Devices Impacted, Devices affected due to PSIRT

• EoSale/EoLife Report

NEW

• EoSale/EoLife Report– Hardware Platforms with published EoX

bulletin, Cards/Modules with published EoX bulletin.

• Diagnostics & Tools– Troubleshoot device connectivity– Desktop integration of partner and customer

applications– User customizable Network-wide show

command tool

NEW

Page 67: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

PISA Campus Application Visibility Localized View and Aggregated Campus View

Aggregated View

QPM 4.1 Enhancements

� Support NBAR protocol discovery

� Enhanced PDLM support

� Improved UI experience

NetQoS NetVoyant 5.1

� Group PISA to provide an aggregated view of the application usage

� Event drill down capability for granular view

� Capacity planning

� Improved UI experience

Page 68: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

Catalyst 6500 ManagementSummary

The Catalyst 6500 provides a range of features that simplify both the management and ongoing

administration of the switch…

Page 69: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007

12.2(33)SXHShipping

12.2(33)SXIFCS – CQ4 2008

• IPSLA

• Configuration Rollback

• Customizable Smart Ports

• Power Limiting

• Netflow Top Talkers

• Per Interf. Netflow Data Export

• AutoQoS

• CallHome with EEM and

• System health check

• Config change tracking

• Config change checksum

• Flash MIB file type option

• CatOS MIB parity

• Show hardware capacity MIB

• Test TRAP

• IPSLA Enhancements

Half DomeFCS – 1st Half 2010

• Flexible Netflow

• XML Programmatic Interface

• Web Services

• New line card support with out software upgrade

• Connectivity Management Processor

• Increased no. of Tx/Rx SPAN sessions

Catalyst 6500 Feature Roadmap (Operation & Manageability)

• CallHome with EEM and GOLD

• LLDP and LLDP-MED

• MAC address notification

• Link error monitoring

• Port disable on errors

• Command history log

• VLAN Locking

• Incr. No. of ERSPAN sessions

• Distributed ERSPAN

• 50+ MIB objects

• IPSLA Enhancements

• SNMP, SYSLOG, HTTP IPv6 support

• Ethernet OAM IPSLA

• Config Diff utility

• Mini protocol analyzer

• Duplicate MAC indicator

• Traffic monit. Syslog (back plane and fabric)

• Rollback confirmed change

• MIB enhancements

• Syslog level granularity

sessions

• GOLD Enhancements

• IPSLA Enhancements

Page 70: Catalyst 6500 Bootcamp - Cisco · Easy Diagnostics -GOLD Generic Online Diagnostics can check the health of hardware components and verify proper operation of the system at run time

© Cisco Systems 2007