Cisco Cisco 1700 2600 3600 3700 Series VPN Module 白皮書

下载
页码 55
 
 
© 2012 Cisco and/or its affiliates. All rights reserved. This document is Cisco Public Information. 
Page 45 of 55 
dual-active fast hello 
end 
Once Fast Hello has been configured, the existing configuration on the interface will be automatically removed and 
will only be restricted for Fast Hello configurations. Also, UDLD will be disabled on Fast Hello pairs. 
vss(config)# switch virtual domain 10 
vss(config-vs-domain)# dual-active detection fast hello 
vss(config-vs-domain)# exit 
Action Upon Dual-Active Detection 
Upon detecting the dual-active condition, the original active chassis enters into recovery mode and brings down all 
of its interfaces except the VSL and nominated management interfaces. This effectively removes the device from 
the network. 
To nominate specific interfaces to be excluded from being brought down during dual-active detection recovery, use 
the following commands: 
vss(config)#switch virtual domain 10 
vss(config-vs-domain)#dual-active exclude interface gigabitEthernet 1/5/3 
WARNING: This interface should only be used for access to the switch when in 
dual-active recovery mode and should not be configured for any other purpose 
vss(config-vs-domain)#dual-active exclude interface gigabitEthernet 2/5/3 
WARNING: This interface should only be used for access to the switch when in 
dual-active recovery mode and should not be configured for any other purpose 
vss(config-vs-domain)# 
To verify this configuration is correct, issue the following commands: 
vss#sh switch virtual dual-active summary 
Pagp dual-active detection enabled: Yes 
Ip bfd dual-active detection enabled: Yes 
Interfaces excluded from shutdown in recovery mode: 
Gi1/5/3 
Gi2/5/3 
In dual-active recovery mode: No 
You will see the following messages on the active virtual switch to indicate that a dual-active scenario has 
occurred: 
*Jun 26 16:06:36.157: %VSLP-SW2_SPSTBY-3-VSLP_LMP_FAIL_REASON: Port 5/4: Link 
down 
*Jun 26 16:06:36.782: %VSLP-SW1_SP-3-VSLP_LMP_FAIL_REASON: Port 5/4: Link down 
*Jun 26 16:06:36.838: %VSL-SW1_SP-5-VSL_CNTRL_LINK: vsl_new_control_link NEW VSL 
Control Link 5/5 
*Jun 26 16:06:37.037: %VSLP-SW1_SP-3-VSLP_LMP_FAIL_REASON: Port 5/5: Link down 
*Jun 26 16:06:37.097: %VSL-SW1_SP-2-VSL_STATUS: -======== VSL is DOWN ========- 
The following messages on the standby virtual switch console indicate that a dual-active scenario has occurred: 
*Jun 26 16:06:36.161: %VSL-SW2_SPSTBY-5-VSL_CNTRL_LINK: vsl_new_control_link NEW 
VSL Control Link 5/5