If I set up a mirror port and monitor an entire VLAN with ACLs configured on the VE, will packets that would be dropped by the ACLs be mirrored to the mirror port or are they dropped before getting mirrored?
These are hard to find and expensive. Here in this thread you can find several concepts for self self-made solutions. I went the way as described in the following post: cut mini-USB phone cable --> keystone --> standard Cisco console cableI've tried to find one of the Mini-USB to Serial cables but they seem to be very rare. Anyone have a good source for them? I'm tempted to just cut up a Mini-usb cable and rig something up.
I built a mini-usb to RJ45 so I could use my standard Cisco cable and then I saw that it was in fact booting, it just sits at "Starting Kernel" for a long time before moving along..
Here is the pinout for the contraption I made. Seems to be working well.
Code:Mini-USB Keystone (568B) ======== =============== 1 (VCC) N/C 2 (UART RX) 6 (Grn) 3 (UART TX) 3 (Grn/Wht) 4 (Reserved) N/C 5 (GND) 4 (Blue)
I have used those same cables on ubiquiti,solarflare,chelsio and intel I am about to use on my newly aquired 6450-48p I will report backI've have been able to use this dac passive sfp+ cable between a Mellanox CX3 and a ICX6450 without issues. When I did this I was using Ubuntu 20.04 and whatever its default drivers were.
I will be terminating a GRE tunnel on the switch - does that mean I should only terminate a tunnel on the primary LAG port? What if the primary LAG port goes down? Will the secondary LAG port still work with the tunnel?Layer 3 requirements:
The LAG is rejected if any of the secondary LAG port has any Layer 3 configurations, such as IPv4 or IPv6 address, OSPF, RIP, RIPng, IS-IS, and so on.
Weird. I have a MCX354A-FCBT and have used a 1M Mellanox QSFP+ DAC and a 5M HPE "BladeSystem" QSFP+ DAC without any issues on my 6610. It doesn't seem to be picky at all.I'm sure its the Mellanox - I ordered QSFP+ cables made for Mellanox / Cisco and they would only work at 10Gbps - once reprogrammed to Brocade / Brocade they showed up as 40Gbps even though I used a Cisco n3k switch
Yes, I was stupid, but I found the answer by myself.I am locked out from my ICX 7250.
I uploaded my config file to the ICX via TFTP. This before I downloaded and updated a little bit.
But after reload I cannot login any more to the console and ssh. The password is not accepted.
Did I missed something to do before uploading the file?
show run
, the password is not included for security reasons. Only five dots are shown. And when I upload this config again, guess what? My new password is .....
.!
telnet timeout 10
no telnet server
username admin password .....
!
!
ICX7150-C12 Switch#copy tftp flash 192.168.1.30 mnz10114.bin
client-certificate client RSA certificate
client-private-key client RSA private key
fips-primary-sig Primary signature file
fips-secondary-sig Secondary signature file
fips-ufi-primary-sig Primary ufi signature file
fips-ufi-secondary-sig Secondary ufi signature file
local-pri Primary code image on the local unit
local-sec Secondary code image on the local unit
pe-id-pri Copy PE primary image to unit specified by unit-id
pe-id-sec Copy PE secondary image to unit specified by unit-id
primary Primary code image
secondary Secondary code image
trust-certificate SSL Trust certificate
ICX7150-C12 Switch#show version
Copyright (c) Ruckus Networks, Inc. All rights reserved.
UNIT 1: compiled on Sep 22 2019 at 23:54:26 labeled as SPS08090d
(28660224 bytes) from Primary SPS08090d.bin (UFI)
SW: Version 08.0.90dT211
Compressed Primary Boot Code size = 786944, Version:10.1.15T225 (mnz10115)
Compiled on Thu Jan 31 07:08:55 2019
HW: Stackable ICX7150-C12-POE
==========================================================================
UNIT 1: SL 1: ICX7150-C12-2X1G POE 12-port Management Module
Serial #:FEK3833R0RC
Software Package: BASE_SOFT_PACKAGE
Current License: 2X1G
P-ASIC 0: type B160, rev 11 Chip BCM56160_B0
==========================================================================
UNIT 1: SL 2: ICX7150-2X1GC 2-port 2G Module
==========================================================================
UNIT 1: SL 3: ICX7150-2X10GF 2-port 20G Module
==========================================================================
1000 MHz ARM processor ARMv7 88 MHz bus
8192 KB boot flash memory
2048 MB code flash memory
1024 MB DRAM
Curious on the decibel level with your replacement?For another data point for those trying to make things a little quieter, I threw a Delta EFB0412VHD-F00 into my ICX7250-24 and it worked well. Switch boots fine, and it's significantly quieter than the stock Foxconn monstrosity.
Sadly I have no scientific method to measure this. My "butt dyno" says it's much, much quieter.Curious on the decibel level with your replacement?
As I learned the hard way - the management port 'reuses' a MAC of one of the regular switches ports (see https://forums.servethehome.com/ind...erful-10gbe-40gbe-switching.21107/post-289899).I just received my ICX6610. I updated the firmware per the guide linked in the OP. However, I am confused about the part where I switch from the management port to a normal port to be able to SSH to the switch. Isn't that the point of the management port?
I just want to make sure I am doing things correctly before I rack the switch at the datacenter. My plan was to use our OOB link to connect to the management port to be able to SSH. Do I need to connect it to a normal port instead? And if so, what's the point of the management port?
I am curious. What about AISIC temperatures in your ICX 7250-24?For another data point for those trying to make things a little quieter, I threw a Delta EFB0412VHD-F00 into my ICX7250-24 and it worked well. Switch boots fine, and it's significantly quieter than the stock Foxconn monstrosity.
To follow-up on this topic.
Additionally, to the two Delta EFB0412VHD-F00 in the chassis today I installed the Sunon MF60101V3-1000U-A99 on top of the ASIC. I connected the Sunon in parallel to one of the chassis fans so it also will slow down in fan mode 1. After running a couple of hours in idle mode at room temperature I get these stable temperatures. Look OK to me. Unfortunately, I did not note the temperatures in the original setup with Foxconn fans.
Just in case someone is asking. I am not planning to use heavy PoE load. Two devices only.Code:Fan controlled temperature: Rule 1/2 (MGMT THERMAL PLANE): 62.4 deg-C Rule 2/2 (AIR OUTLET NEAR PSU): 42.5 deg-C
Thank you!As I learned the hard way - the management port 'reuses' a MAC of one of the regular switches ports (see https://forums.servethehome.com/ind...erful-10gbe-40gbe-switching.21107/post-289899).
So when those two end up on the same network (as is likely in a home setup) then there are collisions.
If you have a completely separate circuit for OOB management then it should be fine.
Or using a virtual interface. This is what I found in the manual:As I learned the hard way - the management port 'reuses' a MAC of one of the regular switches ports (see https://forums.servethehome.com/ind...erful-10gbe-40gbe-switching.21107/post-289899).
So when those two end up on the same network (as is likely in a home setup) then there are collisions.
If you have a completely separate circuit for OOB management then it should be fine.
NOTE
All physical IP interfaces on Ruckus FastIron Layer 3 devices share the same MAC address. For this reason, if more than
one connection is made between two devices, one of which is a Ruckus FastIron Layer 3 device, Ruckus recommends
the use of virtual interfaces. It is not recommended to connect two or more physical IP interfaces between two routers.