background image

 

Corporate Headquarters:

Copyright © 2001. Cisco Systems, Inc. All rights reserved.

Cisco Systems, Inc., 170 West Tasman Drive, San Jose, CA 95134-1706 USA

Catalyst 6000 Family Content Switching Module 
Installation and Configuration Note

Product Number: WS-X6066-SLB-APC

This publication contains the procedures for installing and configuring the Catalyst 6000 family Content 
Switching Module (CSM).

This publication does not contain the instructions to install the Catalyst 6000 family switch chassis. For 
information on installing the switch chassis, refer to the 

Catalyst 6000 Family Installation Guide

.

Note

For translations of the warnings in this publication, see the 

“Translated Safety Warnings” section on 

page 54

.

Contents

This publication consists of these sections:

Overview, page 2

Safety Overview, page 8

System Requirements, page 9

Required Tools, page 11

Installing the Content Switching Module, page 11

Verifying the Installation, page 15

Upgrading to a New Software Release, page 16

Configuring the Content Switching Module, page 19

Writing and Restoring Configurations, page 34

Configuration Examples, page 35

Configuring Probes for Health Monitoring, page 46

Configuring Route Health Injection, page 51

Содержание CATALYST 6000

Страница 1: ...formation on installing the switch chassis refer to the Catalyst 6000 Family Installation Guide Note For translations of the warnings in this publication see the Translated Safety Warnings section on page 54 Contents This publication consists of these sections Overview page 2 Safety Overview page 8 System Requirements page 9 Required Tools page 11 Installing the Content Switching Module page 11 Ve...

Страница 2: ...onnections limit traffic to individual servers These connections are configured so that multiple connections from the same client are stuck to the same real server using source IP addresses source IP subnets cookies secure socket layer SSL or redirected using the Hypertext Transfer Protocol HTTP requests Policies manage traffic by defining where to send client requests for information Configuring ...

Страница 3: ...ithms Weighted round robin Weighted least connections Connection high low watermarks Source address based hashing algorithm Flow and URL Identification URL regular expression match Cookie regular expression match SSL1 session ID match Source IP address Standard ACLs Security Source IP address and URL expression match and AC entry match Statistics Packets through normal and special switching Connec...

Страница 4: ... supervisor engine LEDs refer to the Catalyst 6000 Family Module Installation Guide During the normal initialization sequence the status LED changes from Off to Red Orange and then Green Table 2 describes the status LED operation Health Monitoring TCP HTTP ICMP Telnet FTP Other Features SSL session ID cookie and source IP address based sticky connections Fragmented IP frames support MTU2 of 9000 L...

Страница 5: ...g for the supervisor engine to grant power The module is not online The module is not receiving power which could be caused by the following Power is not available to the CSM Module temperature is over the limit1 1 Enter the show environment temperature mod command to display the temperature of each of four sensors on the CSM Red The module is released from reset by the supervisor engine and is bo...

Страница 6: ...re the CSM to operate in a secure router mode For more information see the Secure Router Mode Configuration section on page 37 You can set up a fault tolerant configuration in either the secure router or single subnet bridged mode using redundant CSMs For more information see the Fault Tolerant Configuration section on page 38 Using multiple VLANs single subnet bridge mode and secure router mode c...

Страница 7: ... Figure 3 you enter www fox com Step 2 The client contacts a DNS server to locate the IP address associated with the URL you entered Step 3 The DNS server sends the IP address of the virtual IP VIP to the client Step 4 The client uses that IP address CSM VIP to send the HTTP request to the CSM Step 5 The CSM receives the request with the URL makes a load balancing decision and selects a server For...

Страница 8: ...vez dans une situation pouvant causer des blessures ou des dommages corporels Avant de travailler sur un équipement soyez conscient des dangers posés par les circuits électriques et familiarisez vous avec les procédures couramment utilisées pour éviter les accidents Pour prendre connaissance des traductions d avertissements figurant dans cette publication consultez la section Translated Safety War...

Страница 9: ...erá causar danos físicos Antes de começar a trabalhar com qualquer equipamento familiarize se com os perigos relacionados com circuitos eléctricos e com quaisquer práticas comuns que possam prevenir possíveis acidentes Para ver as traduções dos avisos que constam desta publicação consulte a secção Translated Safety Warnings Traduções dos Avisos de Segurança neste documento Advertencia Este símbolo...

Страница 10: ...talyst 6000 family chassis except for the slots occupied by the supervisor engine and the standby supervisor engine The CSM operates on power supplied by the chassis Note Slot 1 is reserved for the supervisor engine Slot 2 can contain an additional supervisor engine in case the supervisor engine in slot 1 fails If a redundant supervisor engine is not required you can insert the CSM in slots 2 thro...

Страница 11: ...e Antistatic mat or antistatic foam Caution Whenever you handle the supervisor engine or switching modules always use a wrist strap or other grounding device to prevent electrostatic discharge ESD See the Installing the Content Switching Module section on page 11 for more information Installing the Content Switching Module To install the CSM into the Catalyst 6000 family switch perform the steps i...

Страница 12: ...interfaces to shut down For more information about hot swapping modules refer to the Catalyst 6000 Family Module Installation Guide To install the CSM into the Catalyst 6000 family switch perform these steps Step 1 Make sure you take the necessary precautions to prevent ESD damage Warning During this procedure wear grounding wrist straps to avoid ESD damage to the card Do not directly touch the ba...

Страница 13: ...T AT U S 2 3 4 5 6 7 8 LI N K LI N K LI N K LI N K LI N K LI N K LI N K 8 PORT GIGABIT ETHERNET WS X6408 1 LI N K ST AT U S 2 3 4 5 6 7 8 LI N K LI N K LI N K LI N K LI N K LI N K LI N K 24 PORT 100FX WS X6224 ST AT US 24 PORT 100FX WS X6224 ST AT US 24 PORT 100FX WS X6224 ST AT US 24 PORT 100FX WS X6224 ST AT US 1 LI NK 2 LI NK 3 LI NK 4 LI NK 5 LI NK 6 LI NK 7 LI NK 8 LI NK 9 LI NK 10 LI NK 11 L...

Страница 14: ...M T RES ET CONSOLE Switch Load 100 1 DTE DCE PCMCIA EJECT PORT 1 LI NK PORT 2 LI NK 8 PORT GIGABIT ETHERNET WS X6408 1 LI N K ST AT U S 2 3 4 5 6 7 8 LI N K LI N K LI N K LI N K LI N K LI N K LI N K 8 PORT GIGABIT ETHERNET WS X6408 1 LI N K ST AT U S 2 3 4 5 6 7 8 LI N K LI N K LI N K LI N K LI N K LI N K LI N K 8 PORT GIGABIT ETHERNET WS X6408 1 LI N K ST AT U S 2 3 4 5 6 7 8 LI N K LI N K LI N K...

Страница 15: ...ge Module n has been inserted This message does not appear however if you are connected to the Catalyst 6000 family switch through a Telnet session Step 10 Use a screwdriver to tighten the captive installation screws on the left and right ends of the CSM This completes the CSM installation procedure Verifying the Installation When you install the CSM into the Catalyst 6000 family switch the module...

Страница 16: ...ter or Router config ip slb Note Online help shows the default configuration values and ranges available to commands Upgrading to a New Software Release This section describes the three methods on how to upgrade the CSM Upgrading from the Supervisor Engine Bootflash page 17 Upgrading from a PCMCIA Card page 18 Upgrading Over the Network page 18 Note When upgrading to a new software release you mus...

Страница 17: ...tion Note for instructions on loading images into bootflash Step 1 Enable the TFTP server to supply the image from bootflash as follows Router Router enable Router conf t Router config tftp server sup bootflash c6slb apc revision num bin Router config Step 2 Set up a session between the supervisor engine and the CSM Router session CSM slot number 0 Step 3 Load the image from the supervisor engine ...

Страница 18: ... upgrade slot0 c6slb apc revision num bin Note The supervisor engine can only be installed in chassis slot 1 or slot 2 Step 4 Reboot the CSM by power cycling the CSM or by issuing the following commands on the supervisor engine console router config t Router config power cycle module slot number Upgrading Over the Network Upgrade the CSM from an external TFTP server as follows Step 1 Create a VLAN...

Страница 19: ...rating mode csm content switching mode which disables the rp router processing mode This example shows how to enable the csm mode Router config ip slb mode csm SLB in Application Processor Complex board rp SLB in IOS system Router config ip slb mode csm You must configure VLANs on the Catalyst 6000 family switch before you configure VLANs for the CSM VLAN IDs must be the same for the switch and th...

Страница 20: ... client and the server side This example shows how to configure the Layer 3 VLAN interface Router Router enable Router config Router config interface vlan 130 Router config if ip address 10 10 1 10 255 255 255 0 Router config if no shutdown Router vlan exit Figure 7 shows an overview of the configuration process Required and optional operations are shown Note Configuring policies is not necessary ...

Страница 21: ...ave or restore your configurations or to work with advanced configurations refer to the following sections Writing and Restoring Configurations page 34 Configuration Examples page 35 Configuring Probes for Health Monitoring page 46 Configuring Route Health Injection page 51 Configuring VLANs The CSM requires configuration for client side and server side VLANs when you install the module in a Catal...

Страница 22: ...ic router backup using an active standby router that allows active and standby routers in an HSRP group to exchange messages and respond to topology changes by selecting a new active router dynamically Because traffic can come from both the virtual and physical MAC addresses of the gateway the CSM uses two entries per virtual IP gateway configured You can configure only seven client gateways on th...

Страница 23: ...e CSM used by probes and ARP requests on this particular VLAN2 2 The no form of this command restores the defaults Step 3 Router config slb vlan client gateway ip address Configure the gateway IP address Enter this command only in the client submode Command Purpose Step 1 Router config ip slb vlan vlanid server Configure the server side VLANs and enter the server VLAN mode1 1 Enter the exit comman...

Страница 24: ...gure server farms you must perform the following Create the server farm Configure the server farm Create real servers Configure the real servers To configure server farms perform this task Command Purpose Step 1 Router config ip slb serverfarm serverfarm name Create and name a server farm and enter the server farm configuration mode1 2 1 Enter the exit command to leave a mode or submode Enter the ...

Страница 25: ...and to return to the menu s top level 2 The no form of this command restores the defaults Step 2 Router config slb real weight weighting value Optional Set the weighting value for the virtual server predictor algorithm to assign the server s workload capacity relative to the other servers in the server farm if the round robin or least connection is selected2 Step 3 Router config slb real maxconns ...

Страница 26: ...erver farm cannot forward traffic The server farm associated with a policy receives all the requests that match that policy When the CSM is able to match policies it selects the policy that appears first in the policy list Policies are located in the policy list in the sequence in which they were bound to the virtual server You can reorder the policies in the list by removing policies and reenteri...

Страница 27: ... access lists Step 6 Router config slb policy serverfarm serverfarm name Configure the server farm serving a particular load balancing policy Only one server farm can be configured per policy2 Step 7 Router config slb policy set ip dscp dscp value Mark traffic with a dscp value if packets matched with the load balancing policy2 1 Enter the exit command to leave a mode or submode Enter the end comm...

Страница 28: ...fig slb sfarm exit Router config ip slb policy policy_url_1 Router config slb policy serverfarm pl_url_url_1 Router config slb policy url map url_1 Router config slb policy exit Router config ip slb serverfarm pl_url_url_2 A leading in a range Do not match any in the range All other characters represent themselves a Alert ascii 7 b Backspace ascii 8 f Form feed ascii 12 n Newline ascii 10 r Carria...

Страница 29: ...ssociate it with a policy Router config ip slb serverfarm pl_stick Router config slb sfarm real 10 8 0 18 Router config slb real inservice Router config slb sfarm real 10 8 0 19 Router config slb real inservice Router config slb real exit Router config slb sfarm exit Router config ip slb sticky 1 cookie foo timeout 100 Router config ip slb policy policy_sticky_ck Router config slb policy serverfar...

Страница 30: ... the menu s top level 2 The no form of this command restores the defaults Step 2 Router config slb vserver virtual ip address tcp port Set the IP address for the virtual server optional port number or name and the connection coupling and type2 Step 3 Router config slb vserver serverfarm serverfarm name Note Before you can associate a server farm with the virtual server you must configure the serve...

Страница 31: ... details of the upper layer protocol to detect the beginning or end of a UDP message exchange Detection of UDP connection termination is based on a configurable idle timer Protocols requiring multiple simultaneous connections to the same real server such as FTP are supported Internet Control Management Protocol ICMP messages such as ping destined for the virtual IP address are also handled To conf...

Страница 32: ...he menu s top level 2 The no form of this command restores the defaults Step 2 Router config slb dfp agent ip address port activity timeout retry count retry interval Configure time intervals between keepalive messages number of consecutive connection attempts or invalid DFP reports and the interval between connection attempts2 Step 3 Router show ip slb dfp weights agent ip address port detail Dis...

Страница 33: ...ent Network Address Translation NAT pools NAT converts the source IP address of the client requests into an IP address on the server side VLAN Use the NAT pool name in the server farm submode using the nat command to specify which connections need to be client NATed To configure client NAT pools perform this task Step 5 Router config redirect v idle duration Set the CSM connection idle timer for t...

Страница 34: ...tions refer to the Catalyst 6000 Family IOS Software Configuration Guide Step 3 Router config slb serverfarm nat clientpool name Associate the configured NAT pool with the server farm Step 4 Router show ip slb natpool name pool name detail Display the NAT configuration 1 Enter the exit command to leave a mode or submode Enter the end command to return to the menu s top level 2 The no form of this ...

Страница 35: ... 37 Fault Tolerant Configuration page 38 Configuring HSRP page 43 Single Subnet Bridge Mode Configuration In the single subnet bridge mode configuration the client and server side VLANs are on the same subnets Figure 9 shows how the single subnet bridge mode configuration is set up Figure 9 Single Subnet Bridge Mode Configuration Note The addresses in Figure 9 refer to the steps in the following t...

Страница 36: ...ent Create the client side VLAN 2 and enter the SLB VLAN mode1 Step 6 Router config slb vlan client ip addr 192 158 38 10 255 255 255 0 Assign the CSM IP address on VLAN 2 Step 7 Router config slb vlan client gateway 192 158 38 20 Define the client side VLAN gateway to Router A Step 8 Router config slb vlan client gateway 192 158 38 21 Define the client side VLAN gateway to Router B Step 9 Router ...

Страница 37: ...form this task Command Purpose Step 1 Router config vlan database Enter the VLAN mode1 Step 2 Router vlan vlan 2 Configure a client side VLAN2 Step 3 Router vlan vlan 3 Configure a server side VLAN Step 4 Router vlan exit Exit to have the configuration take effect Step 5 Router config ip slb vlan 2 client Create the client side VLAN 2 and enter the SLB VLAN mode Step 6 Router config slb vlan clien...

Страница 38: ...ly configured CSMs One CSM is configured as the primary the other is configured as the secondary Each CSM connected to the same client and server side VLANs Communication between the CSMs is provided by a shared private VLAN A network that sees the redundant CSMs as a single entity With Cisco IOS Release 12 1 8 E and later you must configure Quality of Service QoS on each CSM in the fault tolerant...

Страница 39: ... configure QoS for fault tolerance enter the following commands Router Router enable Router configure terminal Router config Router config class map match any Venus Router config cmap match access group name Venus Router config cmap Router config cmap exit Router config policy map Venus Router config pmap class Venus Router config pmap c trust cos Router config pmap c exit Router config pmap exit ...

Страница 40: ...ackup commands in the ip slb ft configuration mode to enable or disable sticky connection backup for the CSMs Configuring fault tolerant sticky connections requires the following Specifying the server farm for which you are establishing fault tolerant sticky connections using the ip slb serverfarm command Enabling the fault tolerant sticky connections while in the server farm submode If no router ...

Страница 41: ...P address default gateway 192 158 39 20 Alias IP address default gateway 192 158 38 20 Alias IP address default gateway 192 158 39 20 Alias IP address default gateway 192 158 38 20 IP address 48427 VLAN 9 Server A Server B A B Content Services Gateway Content Services Gateway Command Purpose Step 1 Router config ip slb vlan 2 client Create the client side VLAN 2 and enter the SLB VLAN mode1 Step 2...

Страница 42: ...ation take affect 1 xEnter the exit command to leave a mode or submode Enter the end command to return to the menu s top level 2 The no form of this command restores the defaults Command Purpose Command Purpose Step 1 Router config ip slb vlan 2 client Create the client side VLAN 2 and enter the SLB VLAN mode1 1 Enter the exit command to leave a mode or submode Enter the end command to return to t...

Страница 43: ... those changes so that both the HSRP primary Switch 1 and HSRP secondary Switch 2 share the same knowledge of the network In the example configuration two CSMs one in Switch 1 and one in Switch 2 are configured to forward traffic between a client side and a server side VLAN Client VLAN 136 Note The client VLAN is actually an internal CSM VLAN network the actual client network is on the other side ...

Страница 44: ...andby 2 priority 110 preempt standby 2 ip 10 100 0 1 Step 2 Configure Switch 2 FT2 HSRP secondary as follows interface FastEthernet3 6 ip address 10 100 0 3 255 255 0 0 standby 2 priority 100 preempt standby 2 ip 10 100 0 1 Client Network 10 100 16 HSRP ID 2 Gateway 10 100 0 1 VLAN 136 Client Network HSRP ID 1 Gateway 10 6 0 1 With tracking ON VLAN 272 Server Network Gateway 10 5 0 1 via Secure Su...

Страница 45: ...ess 10 6 0 245 255 255 0 0 gateway 10 6 0 1 ip slb vlan 272 server ip address 10 5 0 2 255 255 0 0 alias 10 5 0 1 255 255 0 0 ip slb vlan 71 ft ip slb ft group 88 vlan 71 priority 30 preempt interface Vlan136 ip address 10 6 0 2 255 255 0 0 standby 1 priority 100 preempt standby 1 ip 10 6 0 1 standby 1 track Fa3 6 10 Step 2 Configure VLANs on HSRP FT2 as follows ip slb mode csm ip slb vlan 136 cli...

Страница 46: ... retried Failed the real server fails to reply after a specified number of consecutive retries You are notified and the CSM adjusts incoming connections accordingly Probes continue to a failed server until the server becomes active again The CSM supports probes used to monitor real servers Configuring a probe involves the following Entering the probe submode Naming the probe Specifying the probe t...

Страница 47: ...igure a probe Router config ip slb probe probe1 tcp Router config slb probe tcp interval 120 Router config slb probe tcp retries 3 Router config slb probe tcp failed 300 Router config slb probe tcp open 10 Router config slb probe tcp receive 10 Command Purpose Router config ip slb probe probe name http icmp telnet tcp ftp smtp dns Specify a probe type and a name1 probe name is the name of the prob...

Страница 48: ...is command restores the defaults Router config slb probe retries retry count Set the number of failed probes that are allowed before marking the server as failed1 Range 0 65535 Default 3 Router config slb probe failed failed interval Set the time in seconds to wait before probing a failed server1 Range 5 65535 Default 300 seconds Router config slb probe open open timeout Set the maximum time to wa...

Страница 49: ...numbers Step 4 Router config slb probe http header field name field value Configure a header field for the HTTP probe Multiple header fields may be specified1 Step 5 Router config slb probe http request method get head url path Configure the request method used by an HTTP probe1 get Directs the HTTP get request method directs the server to get this page head Directs the HTTP head request method di...

Страница 50: ...figuration submode All the ip slb probe common options are supported except open which is ignored Command Purpose Step 1 Router config ip slb probe probe name tcp Configure a TCP probe and enter the TCP probe submode1 1 The no form of this command restores the defaults Step 2 Router config slb probe tcp expect failed interval open receive retries Configure the intervals to wait between probes of a...

Страница 51: ...de the load balancing services over the other devices if the services are no longer available on the other devices or one CSM can provide the services because it is logically closer to the client systems than other server load balancing devices Note RHI is restricted to intranets because the CSM advertises the VIP address as a host route and most routers do not propagate the host route information...

Страница 52: ...t to the VIP address without any verification that the VIP address is available The real servers attached to the VIP might not be active Note By default the CSM will not advertise the configured VIP addresses Routing to VIP Addresses With RHI With RHI the CSM sends advertisements to the MSFC when VIP addresses become available and withdraws advertisements for VIP addresses that are no longer avail...

Страница 53: ...VIP address it receives from the CSM The routing protocol running on the MSFC sends routing table updates to other routers When a VIP address becomes unavailable its route is no longer advertised the entry times out and the routing protocol propagates the change Note For RHI to work on the CSM the MSFC in the chassis in which the CSM resides must run Release 12 1 7 E or later and must be configure...

Страница 54: ...022 Class A CISPR22 Class A AS NZS 3548 Class A and VCCI Class A EN55024 EN300 386 EH50082 1 EN55022 Class B CISPR22 Class B VCCI Class B AS NZ 3548 Class B 8 FCC Federal Communications Commission 9 CFR Code of Federal Regulations 10 ICES Interference Causing Equipment Standard Warning Before you install operate or service the system read the Site Preparation and Safety Guide This guide contains i...

Страница 55: ...egynner å arbeide med systemet Aviso Antes de instalar funcionar com ou prestar assistência ao sistema leia o Guia de Preparação e Segurança do Local Este guia contém informações de segurança importantes que deve conhecer antes de trabalhar com o sistema Advertencia Antes de instalar manejar o arreglar el sistema le aconsejamos que consulte la Guía de prevención y preparación de una instalación Es...

Страница 56: ...os ESD causados à placa use fitas de ligação à terra para os pulsos Para evitar o risco de choque eléctrico não toque directamente na parte posterior com a mão ou com qualquer ferramenta metálica Advertencia Usartiras conectadas a tierra en las muñecas durante este procedimiento para evitar daños en la tarjeta causados por descargas electrostáticas No tocar el plano posterior con las manos ni con ...

Страница 57: ...pericolose del chassis trattengono le interferenze elettromagnetiche EMI che possono scombussolare altri apparati e avviano il flusso d aria di raffreddamento attraverso il chassis Non operate il sistema se le schede e i pannelli non sono in posizione Advarsel Blanke ytterplater deksler har tre viktige funksjoner De forhindrer utsettelse for farlig spenning og strøm inni kabinettet de inneholder e...

Страница 58: ...ined and qualified personnel should be allowed to install or replace this equipment Waarschuwing Installatie en reparaties mogen uitsluitend door getraind en bevoegd personeel uitgevoerd worden Varoitus Ainoastaan koulutettu ja pätevä henkilökunta saa asentaa tai vaihtaa tämän laitteen Avertissement Tout installation ou remplacement de l appareil doit être réalisé par du personnel qualifié et comp...

Страница 59: ...roduct documentation from the Networking Products MarketPlace http www cisco com cgi bin order order_root pl Registered Cisco com users can order the Documentation CD ROM through the online Subscription Store http www cisco com go subscription Nonregistered CCO users can order documentation through a local account representative by calling Cisco corporate headquarters California USA at 408 526 720...

Страница 60: ...rograms are also available Customers and partners can self register on Cisco com to obtain additional personalized information and services Registered users can order products check on the status of an order access technical support and view benefits specific to their relationships with Cisco To access Cisco com go to the following website http www cisco com Technical Assistance Center The Cisco T...

Страница 61: ...case To obtain a directory of toll free numbers for your country go to the following website http www cisco com warp public 687 Directory DirTAC shtml P1 and P2 level problems are defined as follows P1 Your production network is down causing a critical impact to business operations if service is not restored quickly No workaround is available P2 Your production network is severely degraded affecti...

Страница 62: ...ve Play and Learn and Discover All That s Possible are service marks of Cisco Systems Inc and Aironet ASIST BPX Catalyst CCDA CCDP CCIE CCNA CCNP Cisco the Cisco Certified Internetwork Expert logo Cisco IOS the Cisco IOS logo Cisco Press Cisco Systems Cisco Systems Capital the Cisco Systems logo Empowering the Internet Generation Enterprise Solver EtherChannel EtherSwitch FastHub FastSwitch GigaSt...

Отзывы: