CE6870 添加ipv6 策略路由失败问题解决

CE6870 添加ipv6 策略路由失败问题解决

问题

acl ipv6 number 3050
 rule 5 permit ipv6 destination FC00::7001:0/118
#
traffic classifier k_c1 type or
 if-match ipv6 acl 3050
#
traffic behavior k_b1
 redirect ipv6 nexthop FC00::48:174
#
traffic policy k_p1
 classifier k_c1 behavior k_b1 precedence 5
#
interface Eth-Trunk13
 undo portswitch
 ipv6 enable
 ip address 60.1.40.1 255.255.255.0
 ipv6 address FC00::1/112
 traffic-policy k_p1 inbound 
#
display traffic-policy applied-record 
Total records : 1
-------------------------------------------------------------------------------
Policy Type/Name                 Apply Parameter             Slot   State
-------------------------------------------------------------------------------
k_p1                             Eth-Trunk13 inbound            1   fail(4)     
-------------------------------------------------------------------------------
Fail reason:
   4 -- Insufficient ACL resources.


Error: Failed to apply the traffic policy k_p1 on slot 1. To check the cause, run the display traffic-policy applied-record command.




# display version 
Huawei Versatile Routing Platform Software
VRP (R) software, Version 8.120 (CE6870EI V200R001C00SPC700)
Copyright (C) 2012-2016 Huawei Technologies Co., Ltd.
HUAWEI CE6870-48S6CQ-EI uptime is 0 day, 1 hour, 7 minutes 
Patch Version: V200R001SPH007

添加ipv6 策略路由失败,报Insufficient ACL resources
同样版本的另外一台CE6870就没有问题

解决

在尝试N次后,手动编辑一个CE6870的配置,清空所有,只保留管理口配置. 通过ftp get 引用后重启,居然解决了。 只是仍未发现问题在哪里。-_-

ftp get host-ip x.x.x.x username xxxx soure xx.cfg
startup saved-configuration xx.cfg
reboot

配置

#
sysname HUAWEI
#
device board 1 board-type CE6870-48S6CQ-EI
#
drop-profile default
#
dcb pfc
#
dcb ets-profile default
#
undo anti-attack abnormal enable
undo anti-attack fragment enable
undo anti-attack icmp-flood enable
undo anti-attack tcp-syn enable
undo anti-attack udp-flood enable
#
arp learning strict
#
telnet ipv6 server disable
#
observe-port 1 interface 10GE1/0/31  
#
diffserv domain default
#
 #
 authentication-scheme default
 #
 authorization-scheme default
 #
 accounting-scheme default
 #
 domain default
 #
 domain default_admin
#
stack
#
interface MEth0/0/0
 ip address 192.168.1.243 255.255.255.0
#
interface 10GE1/0/1
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/2
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/3
#
interface 10GE1/0/4
#
interface 10GE1/0/5
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/6
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/7
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/8
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/9
#
interface 10GE1/0/10
#
interface 10GE1/0/11
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/12
#
interface 10GE1/0/13
#
interface 10GE1/0/14
#
interface 10GE1/0/15
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/16
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/17
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/18
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/19
 device transceiver 1000BASE-X
#
interface 10GE1/0/20
 device transceiver 1000BASE-X
#
interface 10GE1/0/21
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/22
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/23
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/24
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/25
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/26
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/27
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/28
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/29
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/30
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/31
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/32
 device transceiver 1000BASE-X
#
interface 10GE1/0/33
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/34
#
interface 10GE1/0/35
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/36
 loopback-detect enable
#
interface 10GE1/0/37
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/38
#
interface 10GE1/0/39
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/40
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/41
#
interface 10GE1/0/42
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/43
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/44
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/45
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/46
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/47
 device transceiver 10GBASE-FIBER
#
interface 10GE1/0/48
 device transceiver 10GBASE-FIBER
#
interface 100GE1/0/1
#
interface 100GE1/0/2
#
interface 100GE1/0/3
#
interface 100GE1/0/4
#
interface 100GE1/0/5
#
interface 100GE1/0/6
#
interface NULL0
#
ssh authorization-type default aaa
#
vm-manager
#
return

猜你喜欢

转载自blog.csdn.net/force_eagle/article/details/77244994
今日推荐