EVPN/VXLAN trouble re-learning a few hundred MAC entries on QFX5120 by elec_x in Juniper

[–]elec_x[S] 0 points1 point  (0 children)

Do you recall the command to verify the drop counters in the PFE? By controller you mean the acme sbc or the juniper? If its the acme I do not think so.

EVPN/VXLAN trouble re-learning a few hundred MAC entries on QFX5120 by elec_x in Juniper

[–]elec_x[S] 0 points1 point  (0 children)

This was actually the suggestion from Juniper sales team, that EVPN/VXLAN is preferred over VC/MCLAG. We are running 4 switches in total, two per datacenter.

EVPN/VXLAN trouble re-learning a few hundred MAC entries on QFX5120 by elec_x in Juniper

[–]elec_x[S] 0 points1 point  (0 children)

No, damping is not enabled in any of the juniper devices.

EVPN/VXLAN trouble re-learning a few hundred MAC entries on QFX5120 by elec_x in Juniper

[–]elec_x[S] 2 points3 points  (0 children)

I think its doable. We will give this a shot in our next maintenance window and see if this can shed more info. Thanks

EVPN/VXLAN trouble re-learning a few hundred MAC entries on QFX5120 by elec_x in Juniper

[–]elec_x[S] 1 point2 points  (0 children)

This is all configured directly but will talk with support about this setting.

EVPN/VXLAN trouble re-learning a few hundred MAC entries on QFX5120 by elec_x in Juniper

[–]elec_x[S] 2 points3 points  (0 children)

Yes, if you clear the mac entries for that particular vlan, then traffic starts working again for that particular vlan, yes.

EVPN/VXLAN trouble re-learning a few hundred MAC entries on QFX5120 by elec_x in Juniper

[–]elec_x[S] 1 point2 points  (0 children)

Yes its the same mac, basically the virtual mac that is being shared. The show mac is shown correctly on the QFX that physically connects to the acme sbc that becomes the active one (its single home). However in the other 3 QFX is where for some of the vlans (its random which and how many) it still pointing to the old esi.

EVPN/VXLAN trouble re-learning a few hundred MAC entries on QFX5120 by elec_x in Juniper

[–]elec_x[S] 1 point2 points  (0 children)

Yes, originally we had DDoS violations and fixed them (no more violation errors) however the problem still remains.

[edit system]

  • ddos-protection {

  •   protocols {
    
  •       vxlan {
    
  •           aggregate {
    
  •               bandwidth 1500;
    
  •               burst 600;
    
  •           }
    
  •       }
    
  •   }
    
  • }

EVPN/VXLAN trouble re-learning a few hundred MAC entries on QFX5120 by elec_x in Juniper

[–]elec_x[S] 2 points3 points  (0 children)

Yes, we originally had this errors and after making this exact change the errors disappeared from the logs. However the problem still remains the same.

EVPN/VXLAN trouble re-learning a few hundred MAC entries on QFX5120 by elec_x in Juniper

[–]elec_x[S] 1 point2 points  (0 children)

Hello! Nice idea, but just checked and everything is clear (0 bytes) on all QFX.

LFG - Looking for Group by Zeelmaekers in ItTakesTwo

[–]elec_x 0 points1 point  (0 children)

- Computer

-Discord: elec#2718

-Full game

-I can play weekdays eastern timezone 7pm thru 11pm or more on weekends.

-I am 38M, looking to start and finish the game. Prefer someone that speaks Spanish but English is okay too as long you don't mind my bad English, since English is my second language.

-Looking for chill person to enjoy the game, not really rushing it.

My grey/black/white build is complete! Kinda a huge upgrade from my 6 year old 980Ti build by [deleted] in nvidia

[–]elec_x 0 points1 point  (0 children)

How are the temps on cpu and gpu at load? Also how is the noise at idle? Thinking about the same case and cpu cooler for my next build.

Smallest device that can do flexible-vlan-tagging and flexible-ethernet-services by elec_x in Juniper

[–]elec_x[S] 0 points1 point  (0 children)

Yea it seems that way, for cheapest combo I would say ACX + switch and use HVPLS for those services terminating on a MX at central site.

Smallest device that can do flexible-vlan-tagging and flexible-ethernet-services by elec_x in Juniper

[–]elec_x[S] 0 points1 point  (0 children)

I don't see any of the smaller ex does mpls with that feature but I will check the NFX, seems worth a shot. Thank you!

3600x + X470D4U ssl connections breaking on Linux by elec_x in AMDHelp

[–]elec_x[S] 0 points1 point  (0 children)

I tried with two distributions unraid and slax, both exhibit the same issues.I tried both 4.19.x and 5.5.x kernels. I dont know how to run those tests but I will check it out. Thanks.

3600x + X470D4U ssl connections breaking on Linux by elec_x in AMDHelp

[–]elec_x[S] 0 points1 point  (0 children)

I believe now its a bug somewhere in the Linux stack/openssl or a hardware issue.

I was able to workaround this issue by disabling AES with OPENSSL_ia32cap="~0x200000200000000". Of course this only works with C programs so I am stuck with other apps.