
Policing provides a method for protecting CPU bound control plane packets by policing packets transmited to CPU with a specified
rate and from undesired or malicious traffic. This is done at each CPU queue on each unit.
FP Entries for Distribution of NDP Packets to Various CPU Queues
•
At present generic mac based entries in system flow region will take IPv6 packets to CPU.
– OSPFv3 – 33:33:0:0:0:5 – Q7
– - 33:33:0:0:0:6 – Q7
– IPv6 Multicast – 33:33:0:0:0:0 – Q1
•
Add/remove specific ICMPv6 NDP protocol entry when user configures the first ipv6 address in the front panel port
– Distribute ICMPv6 NS/RS packets to Q5.
– Distribute ICMPv6 NA/RA packets to Q6.
FP is installed for all Front panel ports.
NDP Packets
Neighbor discovery protocol has 4 types of packets NS, NA, RA, RS. These packets need to be taken to CPU for neighbor discovery.
•
Unicast NDP packets:
– Packets hitting the L3 host/route table and discovered as local terminated packets/CPU bound traffic. For CPU bound traffic
route entry have CPU action. Below are packets are CPU bound traffic.
* Packets destined to chassis.
* Route with Unresolved Arp
* Unknown traffic in IP Subnet range
* Unknown traffic hitting the default route entry.
•
Multicast NDP packets
– NDP packets with destination MAC is multicast
* DST MAC 33:33:XX:XX:XX:XX
•
NDP Packets in VLT peer routing enable
– VLT peer routing enable cases each VLT node will have route entry for link local address of both self and peer VLT node. Peer
VLT link local entry will have egress port as ICL link. And Actual link local address will have entry to CopyToCpu. But NDP
packets destined to peer VLT node needs to be taken to CPU and tunneled to the peer VLT node..
•
NDP packets in VLT peer routing disable case
– NDP packets intended to peer VLT chassis taken to CPU and tunnel to peer.
The following table describes the protocol to queue mapping with the CPU queues increased to be 12.
Table 15. Redirecting Control Traffic to 12 CPU queues
CPU Queue
Weights
Rate (pps)
Protocol
0
100
1300
BFD
1
1
300
MC
Control Plane Policing (CoPP)
237
Содержание S4048-ON
Страница 1: ...Dell Configuration Guide for the S4048 ON System 9 9 0 0 ...
Страница 146: ...Figure 14 BFD Three Way Handshake State Changes 146 Bidirectional Forwarding Detection BFD ...
Страница 477: ...Figure 68 Inspecting Configuration of LAG 10 on ALPHA Link Aggregation Control Protocol LACP 477 ...
Страница 480: ...Figure 70 Inspecting a LAG Port on BRAVO Using the show interface Command 480 Link Aggregation Control Protocol LACP ...
Страница 481: ...Figure 71 Inspecting LAG 10 Using the show interfaces port channel Command Link Aggregation Control Protocol LACP 481 ...
Страница 522: ...Figure 87 Configuring Interfaces for MSDP 522 Multicast Source Discovery Protocol MSDP ...
Страница 523: ...Figure 88 Configuring OSPF and BGP for MSDP Multicast Source Discovery Protocol MSDP 523 ...
Страница 524: ...Figure 89 Configuring PIM in Multiple Routing Domains 524 Multicast Source Discovery Protocol MSDP ...
Страница 528: ...Figure 91 MSDP Default Peer Scenario 1 528 Multicast Source Discovery Protocol MSDP ...
Страница 529: ...Figure 92 MSDP Default Peer Scenario 2 Multicast Source Discovery Protocol MSDP 529 ...
Страница 530: ...Figure 93 MSDP Default Peer Scenario 3 530 Multicast Source Discovery Protocol MSDP ...
Страница 633: ...Policy based Routing PBR 633 ...
Страница 777: ...Figure 119 Single and Double Tag TPID Match Service Provider Bridging 777 ...
Страница 778: ...Figure 120 Single and Double Tag First byte TPID Match 778 Service Provider Bridging ...