customer have some device like below:
and he found that the OLT can't communicate with switch.
the port in switch is down
1. first the port in switch is down, so we check the switch first ,we disable auto-negotiation, and force set speed and duplex manually, after that the port is up, but the 2 device still can't ping each other.
2. after more information, customer said the OLT is in route mode, so it's not because the vlan.
3. in OLT there are some security function, after check the status, we found that they are enabled.
4. we suggest customer to disable these functions.
security anti-ipspoofing enable
security anti-macspoofing control-protocol ipv6oe disable
security anti-macspoofing disable
security anti-ipv6spoofing disable
and indeed, now it is working:
PING 192.168.105.227: 56 data bytes, press CTRL_C to break
Reply from 192.168.105.227: bytes=56 Sequence=1 ttl=255
Reply from 192.168.105.227: bytes=56 Sequence=2 ttl=255
Reply from 192.168.105.227: bytes=56 Sequence=3 ttl=255
Reply from 192.168.105.227: bytes=56 Sequence=4 ttl=255
Reply from 192.168.105.227: bytes=56 Sequence=5 ttl=255
--- 192.168.105.227 ping statistics ---
5 packet(s) transmitted
5 packet(s) received
0.00% packet loss
round-trip min/avg/max = 4/5/10 ms
1.the port auto-negotiation cause the port of switch down.
2.the security function cause the 2 deivces can't reach each other.
set the port force to 1000M, connected.and need to disable 2 security functions .
auto-negotiation function sometime will not work well for defferent devices. we need to force it manually.
security function should be enable follow the network design.