No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

An NE40E and a Cisco Device Fail to Establish a GRE Tunnel

Publication Date:  2019-03-27 Views:  84 Downloads:  0

Issue Description

When an NE40E attempts to establish a GRE tunnel with a Cisco device, the involved interface is both physical Down and protocol Down. The number of the one-dimensional tunnel interface is the same as that of the three-dimensional tunnel interface.

Tunnel10 current state : DOWN (ifindex: 59)
Line protocol current state : DOWN 
Route Port,The Maximum Transmit Unit is 1500
Internet Address is 192.168.1.1/30
Encapsulation is TUNNEL, loopback not set
Tunnel source 1.1.1.1 (GigabitEthernet1/0/0), destination vrf test 1.1.1.2
Tunnel protocol/transport GRE/IP, key disabled
keepalive disabled
Checksumming of packets disabled
Current system time: 2018-09-25 13:31:59+08:00
    300 seconds input rate 0 bits/sec, 0 packets/sec
    300 seconds output rate 0 bits/sec, 0 packets/sec
    0 seconds input rate 0 bits/sec, 0 packets/sec
    0 seconds output rate 0 bits/sec, 0 packets/sec
    0 packets input,  0 bytes
    0 input error
    0 packets output,  0 bytes
    0 output error
    Input:
      Unicast: 0 packets, Multicast: 0 packets
    Output:
      Unicast: 0 packets, Multicast: 0 packets
   Input bandwidth utilization  :    0%
    Output bandwidth utilization :    0%

Handling Process

1. Check that both the outbound interface and tunnel interface are added to the VPN instance. The ping packets with the VPN instance and source IP address specified can be properly sent to the peer device.

2. Check the interface configuration. The NE40E V800R008 directly uses the IP address of a physical interface as GRE and the interface is added to the VPN instance. Therefore, the interface configuration is correct.
interface Tunnel10
ip binding vpn-instance test
ip address 192.168.1.1 255.255.255.252
tunnel-protocol gre
source GigabitEthernet1/0/0
destination vpn-instance test 1.1.1.2

3. Check the GigabitEthernet 1/0/0 configuration. It is found that a configuration command is missing.
interface GigabitEthernet1/0/0
 undo shutdown
 ip binding test
 ip address 1.1.1.1 255.255.255.252

Root Cause

The binding tunnel gre configuration does not exist on GigabitEthernet 1/0/0. Because the binding tunnel gre command is run on the loopback interface in the configuration example of the NE40E V800R008 product document, such configuration must be available on the outbound interface.

Solution

Run the following commands to resolve the problem:

GigabitEthernet1/0/0
binding tunnel gre
commit

END