This discussion has been locked.
You can no longer post new replies to this discussion. If you have a question you can start a new discussion

Sophos XG OSPF über RED Verbindungsabbrüche

Hallo in die Runde

seit geraumer Zeit versuchen wir Routen via OSPF zwischen zwei SG 230 mit Firmware SFOS 18.5.1 MR-1-Build326 (XG)

über einen RED-Tunnel auszutauschen. die OSPF Nachbarn tauschen die Routen, jedoch disconnected dann ständig der RED-Tunnel.

deaktiviere ich OSPF, steht der Tunnel.

Was kann da das Problem sein?.

gebaut haben wir es nach dieser Anleitung:  support.sophos.com/.../KB-000038170



Added TAGs
[edited by: Erick Jan at 3:05 AM (GMT -7) on 30 May 2023]
Parents
  • Hi DeveshM,

    I couldn't determine the UDP flood, here are the logs

    ospfd.log

    2021/11/26 12:50:06 OSPF: Packet[DD]: Neighbor 6.6.6.22: Initial DBD from Slave, ignoring.
    2021/11/26 12:50:06 OSPF: Packet[DD]: Neighbor 6.6.6.22 Negotiation done (Master).
    2021/11/26 12:50:06 OSPF: nsm_change_state(6.6.6.22, Loading -> Full): scheduling new router-LSA origination
    2021/11/26 12:50:12 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:50:12 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:50:12 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:50:12 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:51:22 OSPF: nsm_change_state(6.6.6.22, Full -> Deleted): scheduling new router-LSA origination
    2021/11/26 12:51:22 OSPF: DR-Election[1st]: Backup 0.0.0.0
    2021/11/26 12:51:22 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:51:46 OSPF: DR-Election[1st]: Backup 0.0.0.0
    2021/11/26 12:51:46 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:51:46 OSPF: Packet[DD]: Neighbor 6.6.6.22: Initial DBD from Slave, ignoring.
    2021/11/26 12:51:46 OSPF: Packet[DD]: Neighbor 6.6.6.22 Negotiation done (Master).
    2021/11/26 12:51:46 OSPF: nsm_change_state(6.6.6.22, Loading -> Full): scheduling new router-LSA origination
    2021/11/26 12:51:52 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:51:52 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:51:52 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:51:52 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:53:02 OSPF: nsm_change_state(6.6.6.22, Full -> Deleted): scheduling new router-LSA origination
    2021/11/26 12:53:02 OSPF: DR-Election[1st]: Backup 0.0.0.0
    2021/11/26 12:53:02 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:53:16 OSPF: DR-Election[1st]: Backup 0.0.0.0
    2021/11/26 12:53:16 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:53:16 OSPF: Packet[DD]: Neighbor 6.6.6.22: Initial DBD from Slave, ignoring.
    2021/11/26 12:53:16 OSPF: Packet[DD]: Neighbor 6.6.6.22 Negotiation done (Master).
    2021/11/26 12:53:16 OSPF: nsm_change_state(6.6.6.22, Loading -> Full): scheduling new router-LSA origination
    2021/11/26 12:53:22 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:53:22 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:53:22 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:53:22 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:54:32 OSPF: nsm_change_state(6.6.6.22, Full -> Deleted): scheduling new router-LSA origination

    red.log

    Fri Nov 26 12:47:19 2021 REDD INFO: Red devices: Connected: 1 Disconnected 0 Enabled: 1 Disabled: 0
    Fri Nov 26 12:48:23 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:49:55 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:51:38 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:52:20 2021 REDD INFO: Red devices: Connected: 1 Disconnected 0 Enabled: 1 Disabled: 0
    Fri Nov 26 12:53:10 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:54:42 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:56:24 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:57:21 2021 REDD INFO: Red devices: Connected: 0 Disconnected 1 Enabled: 1 Disabled: 0
    Fri Nov 26 12:57:57 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:59:29 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 13:01:01 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 13:02:22 2021 REDD INFO: Red devices: Connected: 0 Disconnected 1 Enabled: 1 Disabled: 0
    Fri Nov 26 13:02:33 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    

    zebra.log

    2021/10/13 10:44:47 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/13 10:44:47 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/13 10:44:47 ZEBRA: client 10 says hello and bids fair to announce only rip routes
    2021/10/13 10:44:47 ZEBRA: client 11 says hello and bids fair to announce only bgp routes
    2021/10/13 10:44:50 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/13 11:37:07 ZEBRA: Terminating on signal
    2021/10/13 11:37:07 ZEBRA: IRDP: Received shutdown notification.
    2021/10/13 11:39:25 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/13 11:39:25 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/13 11:39:25 ZEBRA: client 10 says hello and bids fair to announce only bgp routes
    2021/10/13 11:39:35 ZEBRA: client 12 says hello and bids fair to announce only rip routes
    2021/10/13 11:40:23 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/13 13:00:49 ZEBRA: Terminating on signal
    2021/10/13 13:00:49 ZEBRA: IRDP: Received shutdown notification.
    2021/10/13 13:02:19 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/13 13:02:19 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/13 13:02:19 ZEBRA: client 10 says hello and bids fair to announce only rip routes
    2021/10/13 13:02:19 ZEBRA: client 11 says hello and bids fair to announce only bgp routes
    2021/10/13 13:03:16 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/13 14:28:49 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/13 14:28:49 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/13 14:28:49 ZEBRA: client 10 says hello and bids fair to announce only rip routes
    2021/10/13 14:28:49 ZEBRA: client 11 says hello and bids fair to announce only bgp routes
    2021/10/13 14:28:51 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/14 08:02:48 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/14 08:02:48 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/14 08:02:48 ZEBRA: client 10 says hello and bids fair to announce only bgp routes
    2021/10/14 08:02:48 ZEBRA: client 12 says hello and bids fair to announce only rip routes
    2021/10/14 08:03:44 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/14 15:00:31 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/14 15:00:31 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/14 15:00:31 ZEBRA: client 10 says hello and bids fair to announce only bgp routes
    2021/10/14 15:00:32 ZEBRA: client 12 says hello and bids fair to announce only rip routes
    2021/10/14 15:00:33 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/14 15:27:22 ZEBRA: ####Applied static route successfully
    2021/10/14 16:33:04 ZEBRA: client 13 disconnected. 0 ospf routes removed from the rib
    2021/10/14 16:33:05 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/30 15:42:59 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/30 15:42:59 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/30 15:43:00 ZEBRA: client 10 says hello and bids fair to announce only bgp routes
    2021/10/30 15:43:03 ZEBRA: client 12 says hello and bids fair to announce only ospf routes
    2021/10/30 15:43:09 ZEBRA: client 13 says hello and bids fair to announce only rip routes
    2021/10/30 15:43:34 ZEBRA: ####Applied static route successfully
    

Reply
  • Hi DeveshM,

    I couldn't determine the UDP flood, here are the logs

    ospfd.log

    2021/11/26 12:50:06 OSPF: Packet[DD]: Neighbor 6.6.6.22: Initial DBD from Slave, ignoring.
    2021/11/26 12:50:06 OSPF: Packet[DD]: Neighbor 6.6.6.22 Negotiation done (Master).
    2021/11/26 12:50:06 OSPF: nsm_change_state(6.6.6.22, Loading -> Full): scheduling new router-LSA origination
    2021/11/26 12:50:12 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:50:12 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:50:12 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:50:12 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:51:22 OSPF: nsm_change_state(6.6.6.22, Full -> Deleted): scheduling new router-LSA origination
    2021/11/26 12:51:22 OSPF: DR-Election[1st]: Backup 0.0.0.0
    2021/11/26 12:51:22 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:51:46 OSPF: DR-Election[1st]: Backup 0.0.0.0
    2021/11/26 12:51:46 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:51:46 OSPF: Packet[DD]: Neighbor 6.6.6.22: Initial DBD from Slave, ignoring.
    2021/11/26 12:51:46 OSPF: Packet[DD]: Neighbor 6.6.6.22 Negotiation done (Master).
    2021/11/26 12:51:46 OSPF: nsm_change_state(6.6.6.22, Loading -> Full): scheduling new router-LSA origination
    2021/11/26 12:51:52 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:51:52 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:51:52 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:51:52 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:53:02 OSPF: nsm_change_state(6.6.6.22, Full -> Deleted): scheduling new router-LSA origination
    2021/11/26 12:53:02 OSPF: DR-Election[1st]: Backup 0.0.0.0
    2021/11/26 12:53:02 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:53:16 OSPF: DR-Election[1st]: Backup 0.0.0.0
    2021/11/26 12:53:16 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:53:16 OSPF: Packet[DD]: Neighbor 6.6.6.22: Initial DBD from Slave, ignoring.
    2021/11/26 12:53:16 OSPF: Packet[DD]: Neighbor 6.6.6.22 Negotiation done (Master).
    2021/11/26 12:53:16 OSPF: nsm_change_state(6.6.6.22, Loading -> Full): scheduling new router-LSA origination
    2021/11/26 12:53:22 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:53:22 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:53:22 OSPF: DR-Election[1st]: Backup 6.6.6.22
    2021/11/26 12:53:22 OSPF: DR-Election[1st]: DR     6.6.6.21
    2021/11/26 12:54:32 OSPF: nsm_change_state(6.6.6.22, Full -> Deleted): scheduling new router-LSA origination

    red.log

    Fri Nov 26 12:47:19 2021 REDD INFO: Red devices: Connected: 1 Disconnected 0 Enabled: 1 Disabled: 0
    Fri Nov 26 12:48:23 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:49:55 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:51:38 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:52:20 2021 REDD INFO: Red devices: Connected: 1 Disconnected 0 Enabled: 1 Disabled: 0
    Fri Nov 26 12:53:10 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:54:42 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:56:24 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:57:21 2021 REDD INFO: Red devices: Connected: 0 Disconnected 1 Enabled: 1 Disabled: 0
    Fri Nov 26 12:57:57 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 12:59:29 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 13:01:01 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    Fri Nov 26 13:02:22 2021 REDD INFO: Red devices: Connected: 0 Disconnected 1 Enabled: 1 Disabled: 0
    Fri Nov 26 13:02:33 2021 REDD INFO: server: New connection from 109.41.130.59 with ID b9ab485b3368a48 (cipher AES256-SHA256), rev1
    Reading REDv2 key from STDIN:
    Reading REDv2 key from STDIN:
    

    zebra.log

    2021/10/13 10:44:47 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/13 10:44:47 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/13 10:44:47 ZEBRA: client 10 says hello and bids fair to announce only rip routes
    2021/10/13 10:44:47 ZEBRA: client 11 says hello and bids fair to announce only bgp routes
    2021/10/13 10:44:50 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/13 11:37:07 ZEBRA: Terminating on signal
    2021/10/13 11:37:07 ZEBRA: IRDP: Received shutdown notification.
    2021/10/13 11:39:25 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/13 11:39:25 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/13 11:39:25 ZEBRA: client 10 says hello and bids fair to announce only bgp routes
    2021/10/13 11:39:35 ZEBRA: client 12 says hello and bids fair to announce only rip routes
    2021/10/13 11:40:23 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/13 13:00:49 ZEBRA: Terminating on signal
    2021/10/13 13:00:49 ZEBRA: IRDP: Received shutdown notification.
    2021/10/13 13:02:19 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/13 13:02:19 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/13 13:02:19 ZEBRA: client 10 says hello and bids fair to announce only rip routes
    2021/10/13 13:02:19 ZEBRA: client 11 says hello and bids fair to announce only bgp routes
    2021/10/13 13:03:16 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/13 14:28:49 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/13 14:28:49 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/13 14:28:49 ZEBRA: client 10 says hello and bids fair to announce only rip routes
    2021/10/13 14:28:49 ZEBRA: client 11 says hello and bids fair to announce only bgp routes
    2021/10/13 14:28:51 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/14 08:02:48 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/14 08:02:48 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/14 08:02:48 ZEBRA: client 10 says hello and bids fair to announce only bgp routes
    2021/10/14 08:02:48 ZEBRA: client 12 says hello and bids fair to announce only rip routes
    2021/10/14 08:03:44 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/14 15:00:31 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/14 15:00:31 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/14 15:00:31 ZEBRA: client 10 says hello and bids fair to announce only bgp routes
    2021/10/14 15:00:32 ZEBRA: client 12 says hello and bids fair to announce only rip routes
    2021/10/14 15:00:33 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/14 15:27:22 ZEBRA: ####Applied static route successfully
    2021/10/14 16:33:04 ZEBRA: client 13 disconnected. 0 ospf routes removed from the rib
    2021/10/14 16:33:05 ZEBRA: client 13 says hello and bids fair to announce only ospf routes
    2021/10/30 15:42:59 ZEBRA: ####The file fd = 9, Added ZEBRA read thread successfully
    2021/10/30 15:42:59 ZEBRA: Zebra 0.99.22 starting: vty@2709
    2021/10/30 15:43:00 ZEBRA: client 10 says hello and bids fair to announce only bgp routes
    2021/10/30 15:43:03 ZEBRA: client 12 says hello and bids fair to announce only ospf routes
    2021/10/30 15:43:09 ZEBRA: client 13 says hello and bids fair to announce only rip routes
    2021/10/30 15:43:34 ZEBRA: ####Applied static route successfully
    

Children