Cisco ASR 9000 Series Routing Configuration Manual page 700

Aggregation services router
Hide thumbs Also See for ASR 9000 Series:
Table of Contents

Advertisement

Verify Data Plane Security Configurations
Command or Action
Example:
On xTR:
RP/0/RSP1/CPU0:VKG-1#sh lisp vrf default session
Sessions for VRF default, total: 1, established: 1
Peer
204.1.0.1
RP/0/RSP1/CPU0:VKG-1#
On MSMR:
sh lisp vrf default session
Sessions for VRF default, total: 2, established: 2
Peer
201.1.0.1
202.1.0.1
RP/0/RSP0/CPU0:VKG-4#
Step 4
show lisp decapsulation filter
Example:
RP/0/RSP0/CPU0:lisp9-a9k-1#show lisp eid-table se2 decapsulation
filter
LISP decapsulation filter for EID table vrf se2 (IID 16777212),
5 entries
Source RLOC
22:22::10
33:33::20
88:88::30
99:99::30
110:110::40
RP/0/RSP0/CPU0:lisp9-a9k-1#
Step 5
show cef vrf [locator-vrf] address_family lisp decapsulation [ instance-id
EID-instance-ID ] detail location RLOC-facing LC
Example:
RP/0/RSP0/CPU0:lisp9-a9k-1#show cef ipv6 lisp decapsulation
instance-id 16777212 loc 0/0/cpu0
Number of EID tables handling LISP payload received in this table:
3
Transport LISP ipv6 packets received in VRF: default, Instance
ID: 16777212
Payload IPv4 is
Payload IPv6 is
Payload switched in VRF : se2 (0xe000001d/0xe080001d)
H/W driver signalled
Binding in retry
Source RLOC Prefix Filter
Lookup statistics (s/w) :
Misses
Matches (historic)
H/W driver signalled
Binding in retry
Platform space
Len
Prefix
128
22:22::10
128
33:33::20
128
88:88::30
Cisco ASR 9000 Series Aggregation Services Router Routing Configuration Guide, Release 5.3.x
670
State
Up/Down
Up
06:49:05
State
Up/Down
Up
06:48:49
Up
06:48:36
Added by
MS 190::190
MS 190::190
MS 190::190
MS 190::190
MS 190::190
: decapsulated
: decapsulated
: active
: no
: enabled
: 8
: 0
: active
: no
: allocated
Action
Matches Attributes
accept
0 h/w [active, plt space]
accept
0 h/w [active, plt space]
accept
0 h/w [active, plt space]
Purpose
In/Out
Users
0/1
1
In/Out
Users
1/0
0
2/0
0
On a LISP device, to display decapsulation
filter-related data for the selected source
RLOCs, use the show lisp decapsulation filter
command in the EXEC configuration mode.
In this example, decapsulation filter
information is displayed on an (P)xTR for
Instance-ID (IID 16777212). In this output,
five source RLOC addresses are defined, and
all members of this list were defined within the
list provided by the reliable transport session
with the Map-Server.
In this example, decapsulation filter summary
information is displayed on an (P)xTR.
Implementing Data Plane Security

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents