Switching

 View Only
last person joined: 8 hours ago 

Ask questions and share experiences about EX and QFX portfolios and all switching solutions across your data center, campus, and branch locations.
  • 1.  Mac Floating/ Mac Move

    Posted 03-12-2024 08:32

    Good morning,

    Currently we are dealing with access switches that are having a lot of mac moves that keep moving from the user ports to the trunk and back. What are some things to check? So far i have looked at the configurations like VSTP, loops, multicast forwarding, unnecessary User vlan tags etc. We have also went on site and verified all connections and did not find any physical loops. Please see attached of crude drawing the the buildings topology and log messages we see.  These are ex3400 running junos 20.4. Thank you for your time and assistance.

    Log of mac-move
    log


    ------------------------------
    ASHTON REYNOLDS
    ------------------------------


  • 2.  RE: Mac Floating/ Mac Move

    Posted 03-12-2024 20:16

    These kinds of frequent mac moves generally mean a loop happening.

    Your diagram for the switches shows a loop free topology.  So that would mean the loop is happening by some accidental cabling connecting two ports in this vlan.

    Since your local switch is bouncing between trunk and access port the next place to check is the same address move on the switch on the other side of the trunk.  Which two ports on this switch have the mac move.

    And so on till you get to the other access ports where the address is appearing.  Two of these access ports are cross connected then in some fashion, either directly of via another downstream switch connected to your topology.  So physically inspecting cabling to these access ports would find the issue.



    ------------------------------
    Steve Puluka BSEET - Juniper Ambassador
    IP Architect - DQE Communications Pittsburgh, PA (Metro Ethernet & ISP - Retired)
    http://puluka.com/home
    ------------------------------



  • 3.  RE: Mac Floating/ Mac Move

    Posted 03-13-2024 15:16

    Good afternoon,

    I checked the switch on the other end of the trunk and the mac addresses are learned on the interface that goes to the AN. It hasn't moved on any other interface. It seems the mac moves only resides on the AN's hanging off of the CAN switch. We made a time slot to go on site and inspect the cabling, we did take a look last week and found nothing but we will check again. 



    ------------------------------
    ASHTON REYNOLDS
    ------------------------------



  • 4.  RE: Mac Floating/ Mac Move

    Posted 03-14-2024 09:52

    bonjour Steve, 

       can I hop in the discussion with a question I was about to ask  about mac moves? 

    being confronted from time to time to those frequent mac move associated with a loop,  I'd like to receive some warning from my junipers that  they have actually mac adress move ? the system I think about for not to receive hundreds of emails would be for the switch to send these move warnings automatically to add to a  file located on a server somewhere. or add them to a file on the switch that would be sent to me every 15 mns 

    without going in details, can you take me through the steps  to program my switches in Junos  so I can get this kind of advanced warning that a client is in trouble ? 

    thanks,

    show ethernet-switching mac-learning-log | match move | no-more 
    Thu Mar 14 00:52:28 2024 vlan_name QinQ-3925 mac 80:8a:bd:c2:8a:42 was moved from ge-0/0/0.3925 to ge-0/0/11.3925 with flags: 0x2101f
    Thu Mar 14 00:52:28 2024 vlan_name QinQ-3925 mac 00:08:a2:12:af:60 was moved from ge-0/0/11.3925 to ge-0/0/0.3925 with flags: 0x2101f
    Thu Mar 14 00:52:28 2024 vlan_name QinQ-3925 mac 78:45:58:b7:5b:2d was moved from ge-0/0/0.3925 to ge-0/0/11.3925 with flags: 0x2101f



    ------------------------------
    MICHEL LAPOINTE
    GIRAT
    QC, Canada
    ------------------------------



  • 5.  RE: Mac Floating/ Mac Move

    Posted 03-14-2024 20:12

    Michel,

    From your description I think you could use the built in Junos feature called Event Policies.  This is the link to the whole event policy documentation section.

    https://www.juniper.net/documentation/us/en/software/junos/automation-scripting/topics/concept/junos-script-automation-event-notifications-and-policy-overview.html

    Under event policy triggers:

    You would create the policy to have triggers for the events like the mac moves.  Inside this you can also establish a minimum number of events before logging.

    Under event policy actions:

    The policy also has options for both local file creation and the uploading of those files to a remote server.



    ------------------------------
    Steve Puluka BSEET - Juniper Ambassador
    IP Architect - DQE Communications Pittsburgh, PA (Metro Ethernet & ISP - Retired)
    http://puluka.com/home
    ------------------------------



  • 6.  RE: Mac Floating/ Mac Move

    Posted 03-17-2024 13:19

    Good afternoon,

    We were able to get in early on the site and could not find any physical loops that any clients accidentally created. Would there be any other ideas we can look into? We looked into configs but found nothing. We are using dynamic vlan tagging with Cisco ISE and we see the Mac move clients keep dropping and authenticating when they move. Should we try to disable dot1x on the trunk? We also use unknown-multicast forwarding that points to the CAN, should it direct to the DN? We have similar set ups at different buildings but they do not have issues. The AN, CAN, are virtual chassis with 3 switches virtualized together. The AN are ex3400 and the CAN is ex4300. One additional question, how does unknown-multicast forwarding work? Does it just keep forwarding the unknown destination address to another switch to have it figure out where it should send/ have that switch flood the frame? 

    Thank you for the help and your time.



    ------------------------------
    ASHTON REYNOLDS
    ------------------------------



  • 7.  RE: Mac Floating/ Mac Move

    Posted 03-18-2024 11:35

    good luck finding the loop.

    my most recent one was caused by a wifi access point wich, after a power up started meshing with another one too close and mac adresses started moving because of that. disabling mesh option stopped the issue, with the tech swearing that this option was off before. 



    ------------------------------
    MICHEL LAPOINTE
    ------------------------------