cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
565
Views
13
Helpful
3
Replies

NBAR support on CAT 6509 -

astanislaus
Level 2
Level 2

IS there a link which gives you the IOS version requirement and H/W requirement for a CAT6509 to provide NBAR Support?

=========================================

Getting the following message:

==============================

CEF or distributed CEF switching is required for NBAR 'protocol discovery' command

=========================================

Router#conf t

Enter configuration commands, one per line. End with CNTL/Z.

(config)#int vlan 1

(config-if)#ip nba

(config-if)#ip nbar pro

(config-if)#ip nbar protocol-discovery

CEF or distributed CEF switching is required for NBAR 'protocol discovery' command

(config-if)#

CR6509-02(config-if)#

CR6509-02(config-if)#

CR6509-02(config-if)#do sh run in vlan 1

Building configuration...

Current configuration : 399 bytes

!

interface Vlan1

description Default Router HSRP address

ip address x.x.x.x x.x.x.x

ip rip authentication mode md5

ip rip authentication key-chain RIP

ip route-cache flow

no ip mroute-cache

standby 1 ip x.x.x.x

standby 1 timers 5 15

standby 1 priority 110

standby 1 preempt

standby 2 ip x.x.x.x

standby 2 timers 5 15

standby 2 priority 110

standby 2 preempt

end

!

config-if)#ip c?

cef cgmp

(config-if)#ip ce

(config-if)#ip cef ?

accounting CEF accounting features for interface

(config-if)#^Z

#conf t

Enter configuration commands, one per line. End with CNTL/Z.

(config)#ip ce?

cef

(config)#ip cee

(config)#ip ce

(config)#ip cef ?

accounting Enable CEF accounting

distributed Distributed Cisco Express Forwarding

event-log CEF event log commands

interface CEF linecard commands

linecard CEF linecard commands

load-sharing Load sharing

nsf Set CEF non-stop forwarding (NSF) characteristics

table Set CEF forwarding table characteristics

traffic-statistics Enable collection of traffic statistics

================================

------------------ show module ------------------

Mod Ports Card Type Model Serial No.

--- ----- -------------------------------------- ------------------ -----------

2 10 WiSM WLAN Service Module WS-SVC-WISM-1-K9 SAD112305DC

3 24 CEF720 24 port 1000mb SFP WS-X6724-SFP SAL10019DP8

5 2 Supervisor Engine 720 (Active) WS-SUP720-3B SAL09486HHM

6 2 Supervisor Engine 720 (Hot) WS-SUP720-3B SAD091402G9

8 48 48-port 10/100/1000 RJ45 EtherModule WS-X6148A-GE-TX SAD094900PA

9 48 48-port 10/100/1000 RJ45 EtherModule WS-X6148A-GE-TX SAL09475WDG

Mod MAC addresses Hw Fw Sw Status

--- ---------------------------------- ------ ------------ ------------ -------

2 001b.d57a.a760 to 001b.d57a.a76f 2.0 12.2(14r)S5 12.2(18)SXF4 Ok

3 0016.47d6.7d88 to 0016.47d6.7d9f 2.3 12.2(14r)S5 12.2(18)SXF4 Ok

5 0013.c42e.e678 to 0013.c42e.e67b 4.4 8.1(3) 12.2(18)SXF4 Ok

6 0011.5cab.56f8 to 0011.5cab.56fb 4.3 8.1(3) 12.2(18)SXF4 Ok

8 0016.4695.e690 to 0016.4695.e6bf 1.3 8.4(1) 8.5(0.46)RFW Ok

9 0016.4669.8d50 to 0016.4669.8d7f 1.1 8.4(1) 8.5(0.46)RFW Ok

Mod Sub-Module Model Serial Hw Status

---- --------------------------- ------------------ ----------- ------- -------

2 Centralized Forwarding Card WS-SVC-WISM-1-K9-D SAD112303B7 2.0 Ok

3 Centralized Forwarding Card WS-F6700-CFC SAL10019C7V 2.0 Ok

5 Policy Feature Card 3 WS-F6K-PFC3B SAL09486J9D 2.1 Ok

5 MSFC3 Daughterboard WS-SUP720 SAL09486KD6 2.3 Ok

6 Policy Feature Card 3 WS-F6K-PFC3B SAD09110CR3 2.0 Ok

6 MSFC3 Daughterboard WS-SUP720 SAD091300GS 2.3 Ok

3 Replies 3

astanislaus
Level 2
Level 2

What are the warnings we should give customer if we get NBAR working? Should we warn customer about CPU spikes? Will packets get process switches on those interfaces with NBAR enabled.

lee.reade
Level 4
Level 4

Hi,

You can use the feature navigator to verify what version you need to enable this,

http://tools.cisco.com/ITDIT/CFN/jsp/index.jsp

Just search by feature and then select platform, 6500 sup720 from list,

However, since you are on sup7203b, you will almost defo have it already, just enable cef, with ip cef command,

If not then have a look at FN.

HTH

LR

NBAR is only officially supported on the Cat6500 using a Sup32-PISA supervisor module. The PISA card has the capability to do NBAR in hardware up to 2GBps

There is currently no Sup720-PISA option.

Sup32-PISA Data Sheet

http://www.cisco.com/en/US/prod/collateral/modules/ps2797/ps7209/product_data_sheet0900aecd805a6b87_ps6723_Products_Data_Sheet.html

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card