Prev: PIX PDM problem
Next: PPPoE Server - WIth Nat
From: bod43 on 9 Nov 2009 20:14 On 9 Nov, 12:24, mikeyb <bami...(a)hotmail.com> wrote: > I'm trying to work out why enabling CEF on our 1712 causes web > browsing to stop. I want to enable CEF so I can prioritise SIP and > other traffic on our WAN connection and from google I understand that > cef is the first step towards doing this. however when I enable CEF I > get problems with normal browser traffic. The simplest way to prove > the problem is to try to watch the BBC live news channel, after > exactly and repeatably 29sec the stream stops. > Perhaps there is something wrong with the config , I don't know , it > has been working fine until I turned cef on and works fine if I turn > it off again (which I do quickly when my users start complaining).. > thanks for any pointers > Mike > > Software version is 12.3(7)T1 and the config is: Sounds like a bug. A few things might not work with CEF (as I vaguely recall) but this is usually implemented by the stuff that does not work with CEF, simply not using it even if enabled. I do not recall that any QoS does not work with CEF. If you point to the documents that recommend CEF then perhaps someone may comment on them. There has been a tendency to recommend CEF as some sort of panacea to fix all ills but mostly there is no special advantage to using it. (Certain load balancing being one exception where it can pay dividends.) What feature set do you have? How much DRAM? How much flash? It's all in the sh ver "Cisco IOS Software, C870 Software (C870-ADVIPSERVICESK9-M), Version 12.4(15)T7, RELEASE SOFTWARE (fc3) .... Cisco 877W (MPC8272) processor (revision 0x200) with 118784K/12288K bytes of memory. .... 24576K bytes of processor board System flash (Intel Strataflash)" It's best just to post the whole sh ver, perhaps removing the "Processor board ID .............." line to avoid possible identification? 12.3(7)T1 sounds pretty ancient. If you can why not upgrade? Avoid T code unless you need to use it. www.cisco.com/go/fn Image Name c1700-k9o3sy7-mz.124-25b.bin DRAM / Min Flash 96 / 32 Enterprise Product Number S17C7HK9-12425 Might be appropriate. IP/ADSL/FW/IDS PLUS IPSEC 3DES
From: Andrey Tarasov on 9 Nov 2009 22:32 mikeyb wrote: > I'm trying to work out why enabling CEF on our 1712 causes web > browsing to stop. I want to enable CEF so I can prioritise SIP and > other traffic on our WAN connection and from google I understand that > cef is the first step towards doing this. however when I enable CEF I > get problems with normal browser traffic. The simplest way to prove > the problem is to try to watch the BBC live news channel, after > exactly and repeatably 29sec the stream stops. > Perhaps there is something wrong with the config , I don't know , it > has been working fine until I turned cef on and works fine if I turn > it off again (which I do quickly when my users start complaining).. > thanks for any pointers > Mike > > Software version is 12.3(7)T1 and the config is: In famous words of Cisco TAC - "Upgrade to latest mainline and call us back!" :-) Andrey.
From: Dan Lanciani on 10 Nov 2009 00:33 In article <2c5b99f2-5d8b-4573-b333-231c2af0cd23(a)g23g2000yqh.googlegroups.com>, bamikeb(a)hotmail.com (mikeyb) writes: | I'm trying to work out why enabling CEF on our 1712 causes web | browsing to stop. I want to enable CEF so I can prioritise SIP and | other traffic on our WAN connection and from google I understand that | cef is the first step towards doing this. however when I enable CEF I | get problems with normal browser traffic. The simplest way to prove | the problem is to try to watch the BBC live news channel, after | exactly and repeatably 29sec the stream stops. | Perhaps there is something wrong with the config , I don't know , it | has been working fine until I turned cef on and works fine if I turn | it off again (which I do quickly when my users start complaining).. | thanks for any pointers I've had problems with CEF on point-to-point connections: http://groups.google.com/group/comp.dcom.sys.cisco/browse_thread/thread/ae30552d34027a4c/1c5f8d2ef417381a This particular problem was "fixed" in a later release in the sense that IOS now appears to automatically disable CEF on the serial interface. You might want to check your CEF adjacencies after the stream stops. Dan Lanciani ddl(a)danlan.*com
From: mikeyb on 10 Nov 2009 03:24 bod43, thanks for the reply > Sounds like a bug. > I was wondering this myself. > > If you point to the documents that recommend CEF > then perhaps someone may comment on them. > If I try: ip nbar protocol-discovery on the wan interface I get CEF or distributed CEF switching is required for NBAR 'protocol discovery' command > > What feature set do you have? > How much DRAM? > How much flash? > It's all in the sh ver > sho vers Cisco IOS Software, C1700 Software (C1700-K9O3SY7-M), Version 12.3(7) T1, RELEASE SOFTWARE (fc2) Technical Support: http://www.cisco.com/techsupport Copyright (c) 1986-2004 by Cisco Systems, Inc. Compiled Thu 22-Apr-04 09:44 by eaarmas ROM: System Bootstrap, Version 12.2(7r)XM4, RELEASE SOFTWARE (fc1) autogard1700 uptime is 4 days, 23 hours, 54 minutes System returned to ROM by reload at 08:14:43 UTC Thu Nov 5 2009 System restarted at 08:17:15 UTC Thu Nov 5 2009 System image file is "flash:c1700-k9o3sy7-mz.123-7.T1.bin" snip Cisco 1712 (MPC862P) processor (revision 0x101) with 85243K/13061K bytes of memory. MPC862P processor: part number 7, mask 0 1 Ethernet interface 5 FastEthernet interfaces 1 ISDN Basic Rate interface 1 Virtual Private Network (VPN) Module 32K bytes of NVRAM. 32768K bytes of processor board System flash (Read/Write) Configuration register is 0x2102 As you suggest I think an upgrade is very much in order. Mike
From: mikeyb on 10 Nov 2009 03:38
> > In famous words of Cisco TAC - "Upgrade to latest mainline and call us > back!" :-) > > Andrey. I suspected this might be needed, I assume this would be more economic that getting a new router, but what is the downside to putting new software on old kit? Mike |