Page 1
No part of this manual may be reproduced or transmitted in any form or by any means without prior written consent of New H3C Technologies Co., Ltd. Except for the trademarks of New H3C Technologies Co., Ltd., any trademarks that may be mentioned in this document are the property of their respective owners.
Page 2
Contents Hardware ······································································································· 1 What models does the H3C SR8800-F router series include? ·································································· 1 Can I install MPUs of different models on the same router? ······································································ 1 Does the router support DC power supplies? ···························································································· 1 Can the power supplies be hot swapped? ································································································· 1 Can power supplies of different models be installed on the same router? ·················································...
Can I add an MPU to an IRF fabric if it runs a different software version than the global active MPU? ···· 9 Can I remove both the MPUs in a subordinate chassis? ··········································································· 9 Can I run LACP MAD on any Ethernet link aggregations? ········································································ 9 Can I use an IRF fabric as the intermediate device to detect multi-active collisions for another IRF fabric? Why are network interfaces that were shut down by MAD still down after an IRF merge? ······················...
Page 4
Does the router support the super VLAN configuration? ········································································· 22 Which route in the FIB table has higher priority for packet forwarding when a route obtained from the routing table conflicts with a host route obtained from the ARP table? ···························································· 22 How does the router handle an ICMP ping packet whose size exceeds 1500 bytes? ·····························...
Page 5
Do I need to configure a QoS policy to redirect packets to be NATed to a NAT service card? ··············· 32...
Page 6
Hardware This section contains the most frequently asked questions about the router hardware. Q. What models does the H3C SR8800-F router series include? A. See Appendix A in the installation guide for the router series. Q. Can I install MPUs of different models on the same router? A.
Page 7
Q. Can the fan speed automatically adjusted to adapt to the cooling requirements? A. Yes. Q. Are the fan trays and power supplies hot swappable? A. Yes. As a best practice, hot-swapping a component when there is a minimum influence on the service and finish the hot-swapping as quickly as possible.
Page 8
Q. What subcards are available for the SPEX/CSPEX cards? A. See Appendix B in the installation guide for the router. Q. Does the router provide crossbar module redundancy? A. Yes. Crossbar modules are built in MPUs, and crossbar module redundancy is implemented through MPU redundancy.
Page 9
Q. How can I empty the recycle bin? A. Use the reset recycle-bin command. If a file in the recycle bin is corrupt, use the reset recycle-bin command with the /force option to delete the file. Q. Is software hotfix supported? A.
Page 10
If garbled characters are displayed on the terminal, settings on the configuration terminal might be incorrect. The correct terminal settings are as follows: • Bits per second—9600 bps • Flow control—None • Parity—None • Stop bits—1 • Data bits—8 • Terminal display type—VT100 If you are running the terminal software SecureCRT, you must deselect the DTR/DSR option and RTS/CTS option for flow control.
Page 11
|<1> Boot System |<2> Enter Serial SubMenu |<3> Enter Ethernet SubMenu |<4> File Control |<5> Restore to Factory Default Configuration |<6> Skip Current System Configuration |<7> BootWare Operation Menu |<8> Skip Authentication for Console Login |<9> Storage Device Operation |<0> Reboot ============================================================================ Ctrl+Z: Access EXTEND-ASSISTANT MENU Ctrl+F: Format File System...
Page 12
|<6> Skip Current System Configuration |<7> BootWare Operation Menu |<8> Skip Authentication for Console Login |<9> Storage Device Operation |<0> Reboot =========================================================================== Ctrl+Z: Access EXTENDED ASSISTANT MENU Ctrl+F: Format File System Enter your choice(0-9): Warning:All files on flash will be lost! Are you sure to format? [Y/N] Y Press Ctrl+F to format the flash memory.
Page 13
• If GR or NSR is not configured, the switchover will interrupt forwarding services. Q. Why should I wait for all LPUs to operate correctly before I save the running configuration? A. The configuration is saved on the flash memory or CF card. During startup, the router configures LPUs by loading the configuration to memory.
Q. Why can't I bind a physical interface to or remove it from an IRF port in IRF mode? A. In IRF mode, you must shut down a physical interface before you bind it to or remove it from an IRF port.
Q. Can I use an IRF fabric as the intermediate device to detect multi-active collisions for another IRF fabric? A. Yes. You must assign the two IRF fabrics different domain IDs for correct split detection. Q. Why are network interfaces that were shut down by MAD still down after an IRF merge? A.
Q. What attack prevention features does the router support? A. The router supports protection against link layer, ARP, network layer, and transport layer attacks, as shown in Table Table 1 Attack prevention types Attack prevention types Description Prevents the attack of packets with different source MAC MAC address attack addresses or VLANs by limiting the maximum number of prevention...
Page 17
Attack prevention types Description Prevents MLD packet attacks by limiting the MLD packet rate on a per-MAC basis or by limiting the rate of MLD packets delivered to the CPU on a per-interface basis. • Source-MAC-based MLD suppression—When the number of MLD packets from a MAC address MLD suppression exceeds the threshold within the check interval, the device drops MLD packets from the MAC address.
Attack prevention types Description Prevents DHCP flood attacks by limiting the DHCP packet rate on a per-MAC basis or by limiting the rate of DHCP packets delivered to the CPU on a per-interface basis. • MAC-based DHCP flood attack prevention—If the number of DHCP packets from the same MAC address reaches the upper limit in the detection duration, the server determines that the client is...
To perform local authentication when the HWTACACS server is not reachable, specify a HWTACACS scheme, and then the local keyword when you configure the authentication method. For example, configure the default authentication method for the ISP domain abc as follows: <Sysname>...
Q. How do I prevent gateway spoofing when the router acts as a gateway? A. When receiving an ARP packet from a device that acts as a gateway, the router (the gateway) sends a gratuitous ARP packet to modify the spoofed ARP entries. If a large number of attack packets exist, the router detects the incoming interface of the attack packets, captures the packets to obtain packet information, and applies an ACL to filter the attack packets.
Field Description Number of packets dropped because the output rate of the interface exceeded the Underruns output queuing capability. buffer failures Number of packets dropped because the transmit buffer of the interface ran low. aborts Packets that failed to be forwarded at the MAC layer due to network congestion. Number of frames that the interface operating in half duplex mode deferred to deferred transmit because of detected collisions.
Q. Does the MTU configuration affect only the fragmentation of packets sent to the CPU? A. Yes. Q. Are the MAC address entries the same across the interface cards on the router? A. Yes. When MAC address entries change on a card, the MAC address entries are automatically synchronized to all cards.
• Per-flow load sharing—Load shares traffic on a per-flow basis. The load sharing mode classifies packets into flows and forwards packets of the same flow on the same link. This mode can be one or any combination of the following traffic classification criteria: Source or destination MAC address.
• After you execute the speed auto command on a MIC-XP2L, MIC-XP2L-LAN, MIC-XP4L1, MIC-XP5L, and MIC-XP5L1 interface subcard, the interface can negotiate a speed with its peer and operate at 10, 100, or 1000 Mbps. • Interfaces 1 and 2 on the MIC-XP2L or MIC-XP2L-LAN interface subcards form an interface group.
Q. What is the difference between regular termination and user VLAN termination? What are the usage scenarios? A. According to the creation method of VLAN termination related entries, VLAN termination on sub-interfaces include regular termination and user VLAN termination. • Regular termination—Includes regular Dot1q termination (vlan-type dot1q vid) and regular QinQ termination (vlan-type dot1q vid second-dot1q).
Q. Is the secondary IP address still valid when the primary IP address is removed from a Layer 3 Ethernet interface? A. Yes. The primary and secondary IP addresses are independent on a Layer 3 Ethernet interface. The secondary IP address on a Layer 3 Ethernet interface is still valid after you remove the primary IP address from that interface.
Q. Does the router support cross-card port mirroring? A. The local mirroring group supports cross-card port mirroring. The mirroring source and destination can reside on different cards of a router. Q. Does the router support remote port mirroring? A. Yes. The router supports remote port mirroring. Q.
and reception. This feature requires the support of special network chips. For more information, see BFD configuration in High Availability Configuration Guide Q. Which load sharing modes are supported by the router? A. The router supports the following load sharing modes: •...
Q. What are the preferences of different routing protocols? A. Routing protocols, including static routing, each have a preference by default. If they find multiple routes to the same destination, the router selects the route with the highest preference as the optimal route.
After the configuration, the router accepts only the FEC-label mappings containing 32-bit prefixes from LDP peer 1.1.1.9. To remove the label acceptance policy and accept non-32-bit prefixes from the LDP peer, execute the reset mpls ldp peer command. More LSPs will be created as a result, using up the LSP resources on the router.
• Receiver hosts can join only the multicast groups that the specified ACL permits. If the specified ACL does not exist or the ACL does not have any valid rules, receiver hosts cannot join any multicast groups. • The multicast group policy takes effect on all ports in the specified VLANs. •...
Interface QoS policy Port mirroring Flow mirroring Remarks type The source port Layer 2 must be assigned Supported on only on Supported on only aggregate to the aggregate member ports. on member ports. interface interface as a member port. A QoS policy containing flow mirroring configuration...
Q. What are the restrictions and guidelines for configuring the interval argument for the oam loopback command? A. H3C recommends that you configure the value of the interval argument as 10. With OAM F5 Loopback cell transmission and retransmission detection enabled, the local end checks the PVC state of the remote end by sending OAM F5 loopback cells.
H3C recommends that you configure the oam cc command on both ends. If the PVC on one end is down, the other end can detect the down event in 3 seconds and change its own PVC to down...
Q. What are the restrictions and guidelines for configuring the schedule value for a WFQ queue on an ATM interface? A. H3C recommends that you configure a schedule value larger than 10 for the WFQ queue on an ATM interface. By default, the schedule value for the WFQ queue is 1. The following is a sample configuration.
This section contains the most frequently asked questions about NAT. Q. How does the router perform NAT? A. The router can perform traditional NAT and twice NAT: • Traditional NAT applies to the interface that connects the public network. It translates the source IP addresses of outgoing packets and destination IP addresses of incoming packets.
Need help?
Do you have a question about the SR8800-F Series and is the answer not in the manual?
Questions and answers