cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

Who Me Too'd this topic

LACP Nego-fail issue between firewall and CPE router - Expected Behaviour?

L2 Linker

Hi Live,

 

I'm experiencing an issue with a setup of aggregated ethernet interfaces configured with LACP simply for redundancy connections between our HA Active/Passive firewalls and Cisco ISR 4451 routers.

 

I'm wondering what steps to take as regards packet captures on firewall interfaces to figure out why negotiation will fail.

Or is this expected behaviour?

 

ethernet1/1 and ethernet1/2 = AE1

 

Virtual IP (public/ default gateway) presented to firewalls from CPE Cisco routers.

 

SirchRettop_1-1603974307593.png

 

SirchRettop_0-1603973539042.png

So far we have tried all modes of LACP and transmission rates w/ active, passive, fast, slow but there has been still no change as regards ethernet1/2 and lacp negotiation failure with the router interface of GE0/0/2

 

I have reviewed >less mp-log l2ctrld.log but no indicators there either.

 

SirchRettop_2-1603974600046.png

 

As far as I'm aware, physical layer 1 hasn't been checked.

 

Interface and AE/LACP settings

SirchRettop_4-1603975405930.png

 

SirchRettop_5-1603975432038.png

 

SirchRettop_3-1603975359628.png

>show lacp aggregate-ethernet ae1

SirchRettop_6-1603975735329.png

 

Who Me Too'd this topic