No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


Configuration Guide - Reliability

CloudEngine 12800 and 12800E V200R002C50

This document describes the configurations of Reliability, including BFD Configuration, VRRP Configuration, DLDP Configuration, Smart Link and Monitor Link Configuration, EFM Configuration, and CFM Configuration.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Licensing Requirements and Limitations for VRRP

Licensing Requirements and Limitations for VRRP

Involved Network Elements

Other network elements are required to support VRRP functions.

Licensing Requirements

IPv4 VRRP group is a basic feature of a switch and is not under license control.

IPv6 VRRP group can be used only on the device enabled with IPv6. IPv6 requires a license. By default, IPv6 of a newly purchased device is disabled. To use IPv6, apply for and purchase the license from the equipment supplier.

Version Requirements

Table 3-5 Products and minimum version supporting VRRP


Minimum Version Required

CE12804, CE12808, CE12812




CE12804S, CE12808S




Feature Limitations

When VRRP is used with other features, the following limitations apply:

  • If both VRRP and static ARP are configured on a VLANIF interface on a device, an IP address that is mapped to a static ARP entry cannot be used as a virtual IP address. If an IP address that is mapped to a static ARP entry on the device is used as a VRRP virtual IP address, the device generates incorrect host routes, affecting traffic forwarding.

  • Before configuring single-gateway load balancing, disable fast ARP reply.

  • The interval at which a device sends VRRP Advertisement packets cannot be less than the time that the device takes to perform an active/standby MPU switchover. If the interval is less than the switchover time, protocol flapping may occur during an active/standby MPU switchover. This interval can be set to a value greater than 1s.

  • The timeout interval at which the master sends gratuitous ARP packets must be shorter than the aging time of ARP entries on user devices.

  • In V100R005C00 and earlier versions, if both VRRP and traffic statistics are configured on a VLANIF interface, the traffic statistics function is invalid.

  • A VRRP group no longer sends VRRP advertisements periodically after it is configured to track the mVRRP status. Layer 2 switches under the gateway need to update their MAC address tables based on Gratuitous ARP packets or ARP Reply packets received from the gateway. If MAC address tables are reset on the Layer 2 switches under the gateway (due to switching on ring networks, TRILL AF switching, or port flapping), the Layer 2 switches may fail to learn the virtual MAC address of the gateway during a long period of time. As a result, traffic floods and packet loss will occur.

  • The distributed mode of packet forwarding of VRRP cannot be used with the TRILL gateway.

  • The distributed mode of packet forwarding of VRRP cannot be used with M-LAG.

VRRP and other features have the following associations:

  • When associating a VRRP group with a BFD session, the master and backup in the VRRP group must work in preemption mode. Set the preemption delay to 0 on the backup and a non-zero value on the master.

  • When associating a VRRP group with a BFD session, take note of the following limitations:

    • A VRRP group can be associated either only with a static BFD session or only with a static BFD session that has automatically negotiated discriminators.

    • If session-name bfd-configure-name is specified, the VRRP group can be bound only to the static BFD session with automatically negotiated discriminators.

    • If bfd-session-id is specified, the VRRP group can be bound only to the static BFD session.

    • After the value by which the priority increases is set, ensure that the priority of the backup is higher than the priority of the master.

  • If the VRRP group is bound to an mVRRP group, the mVRRP group maintains the VRRP group status, and the VRRP group is unable to monitor any BFD sessions.

  • If the VRRP group is associated with both a link BFD session and a peer BFD session and the backup detects the peer BFD session status change before it detects the link BFD session status change, the backup becomes the master. The backup transitions from Master to Initialize after it detects the peer BFD session status change. To prevent this problem, run the min-tx-interval command in the BFD session view to set the interval at which link BFD control packets are sent to be smaller than the interval at which peer BFD control packets are sent.

  • VRRP can be associated with an interface to implement an active/standby switchover. VRRP cannot be associated with an Eth-Trunk member interface.

  • When a VRRP group is associated with a static route, the device can detect only faults on the direct uplink.

  • After association between a VRRP group and a direct route is configured, an Interior Gateway Protocol (IGP) protocol cannot run on the VRRP-enabled interface. If an IGP protocol runs on the interface, the IGP protocol cannot retain the original cost of the imported direct route. As a result, the VRRP group cannot be associated with the direct route.

  • The direct route generated by the virtual IP address in a VRRP group can be imported by OSPF, IS-IS, and RIP. By default, this type of route can be advertised by OSPF, IS-IS, and RIP to the neighboring devices. In practice, a large number of routes may be generated by the virtual IP addresses in a VRRP group. If all of the routes are imported and advertised to the neighboring devices by OSPF, IS-IS, and RIP, there will be a heavy load on some devices on the networks and the network performance will be affected. In this situation, you can use the vrrp virtual-ip route-advertise disable command to disable OSPF, IS-IS, and RIP from advertising the routes generated by the virtual IP addresses in the VRRP group.

mVRRP configuration:

  • In an mVRRP, if a device has a virtual IP address, the device does not support load balancing.

  • Rapid VRRP switchback takes effect only for the mVRRP group. The mVRRP group monitors interfaces or other features in Reduced mode.

  • Rapid VRRP switchback takes precedence over the delay in recovering a VRRP group. For example, if you enable rapid VRRP switchback for VRRP group 1 and globally set the recovery delay to a non-zero value, the configured recovery delay does not take effect.

  • After you enable rapid VRRP switchback, this function is disabled if any of the following conditions is met:

    • The preemption delay is set to a non-zero value.

    • The non-preemption mode is used.

    • The mVRRP group is deleted.

Other limitations:

  • The VRID range varies depending on the interface card. The total number of virtual MAC addresses on VLANIF, VBDIF, and NVE interfaces of the device cannot exceed the maximum number of VRIDs.

    • CE-L48XS-EA, CE-L24XS-EA, CE-L24LQ-EA, CE-L48GS-EA, CE-L48GT-EA, CE-L48GS-EC, and CE-L48GT-EC: 1 to 7
    • CE-L36LQ-FD, CE-L12CQ-FD, CE-L24LQ-FD, CE-L36CQ-FD, CE-L36CQ-FG, CE-L36CQ-FD1, CE-L36CQ-SD, CE-L16CQ-FD, CE-L08CF-FG1, CE-L48XS-FDA, CE-L48XS-FG, CE-L48XS-FD1, and CE-L48XS-FD: 1 to 255

      Each card supports a maximum of sixteen VRIDs.

    • Other cards: 1 to 255

      Each card supports a maximum of eight VRIDs. Each VS in port group mode supports a maximum of eight VRIDs, and all VSs in port mode support a total of eight VRIDs.

  • If devices in a VRRP group use different VRRP versions, VRRP Advertisement packets may fail to be forwarded.

  • Set the preemption delay of the backup in a VRRP group to zero and configure the master in preemption mode, and set the preemption delay. On an unstable network, these settings allow a period of time for status synchronization between the uplink and downlink. If the preceding settings are not used, two masters will coexist and user devices may learn the incorrect address of the master.

  • When devices in a VRRP group restart, VRRP status flapping may occur. The delay should be set based on actual networking.

  • If the ping to a virtual IP address is enabled, a device on an external network can ping a virtual IP address. This exposes the device to ICMP-based attacks. The vrrp virtual-ip ping disable command can be used to disable the ping function.

  • The CE6810LI does not support IPv4 or IPv6 Layer 3 forwarding. After the IPv4 or IPv6 function is enabled on an interface of the CE6810LI, the configured IPv4 or IPv6 address can only be used to manage the switch.

Updated: 2019-03-21

Document ID: EDOC1000166606

Views: 126656

Downloads: 90

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Previous Next