两台防火墙堆叠后,做了冗余备份,一端口断开后,怎么查看防火墙是否自动切换到备端口,如何查看流量是否正常
(0)
最佳答案
查看冗余组状态即可。
# 显示冗余组信息。可以看到优先级高的Node 1为主节点,Node 1和Node 2下面的成员接口都处于UP状态。
[Sysname-redundancy-group-aaa] display redundancy group aaa
Redundancy group aaa (ID 1):
Node ID Slot Priority Status Track weight
1 Slot1 100 Primary 255
2 Slot2 50 Secondary 255
Preempt delay time remained : 0 min
Preempt delay timer setting : 1 min
Remaining hold-down time : 0 sec
Hold-down timer setting : 1 sec
Manual switchover request : No
Member interfaces:
Member failover groups:
Node 1:
Node member Physical status
GE1/0/1 UP
GE1/0/2 UP
Track info:
Track Status Reduced weight Interface
1 Positive 255 GE1/0/1
2 Positive 255 GE1/0/2
Node 2:
Node member Physical status
GE2/0/1 UP
GE2/0/2 UP
Track info:
Track Status Reduced weight Interface
3 Positive 255 GE2/0/1
4 Positive 255 GE2/0/2
(2) 冗余组内主备倒换后的显示信息
# 手工关闭接口GigabitEthernet1/0/2,显示冗余组信息。可以看到优先级低的Node 2为主节点,Node 1的成员接口GigabitEthernet1/0/2故障(DOWN),GigabitEthernet1/0/1被协议关闭(DOWN(redundancy down)),Node 2的成员接口转发报文。
[Sysname-redundancy-group-aaa] quit
[Sysname] interface gigabitethernet 1/0/2
[Sysname-GigabitEthernet1/0/2] shutdown
[Sysname-GigabitEthernet1/0/2] display redundancy group aaa
Redundancy group aaa (ID 1):
Node ID Slot Priority Status Track weight
1 Slot1 100 Secondary -255
2 Slot2 50 Primary 255
Preempt delay time remained : 0 min
Preempt delay timer setting : 1 min
Remaining hold-down time : 0 sec
Hold-down timer setting : 1 sec
Manual switchover request : No
Member interfaces:
Member failover groups:
Node 1:
Node member Physical status
GE1/0/1 DOWN(redundancy down)
GE1/0/2 DOWN
Track info:
Track Status Reduced weight Interface
1 Negative 255 GE1/0/1
2 Negative 255 GE1/0/2 (Fault)
Node 2:
Node member Physical status
GE2/0/1 UP
GE2/0/2 UP
Track info:
Track Status Reduced weight Interface
3 Positive 255 GE2/0/1
4 Positive 255 GE2/0/2
(0)
<F1070>dis redundancy group
Redundancy group Internet (ID 1):
Node ID Slot Priority Status Track weight
1 Slot1 100 Primary 255
2 Slot2 50 Secondary -255
Preempt delay time remained : 0 sec
Preempt delay timer setting : 2 sec
Remaining hold-down time : 0 sec
Hold-down timer setting : 1 sec
Manual switchover request : No
Member interfaces:
Node 1:
Node member Physical status
GE1/0/4 UP
Track info:
Track Status Reduced weight Interface
1 Positive 255 N/A
3 Positive 255 N/A
Node 2:
Node member Physical status
GE2/0/1 UP
Track info:
Track Status Reduced weight Interface
2 Negative 255 N/A
4 Negative 255 N/A
注意字段Status 和 Track weight,一般1框的Status显示secondary就是切换成功了,可以在2框查看设备的业务口流量大小,来进一步确认2框接口有流量上来:
<F1070>dis int g 1/0/1
GigabitEthernet1/0/1
Current state: UP
Line protocol state: UP
Description: GigabitEthernet1/0/1 Interface
Bandwidth: 1000000 kbps
Maximum transmission unit: 1500
Allow jumbo frames to pass
Broadcast max-ratio: 100%
Multicast max-ratio: 100%
Unicast max-ratio: 100%
Internet protocol processing: Disabled
IP packet frame type: Ethernet II, hardware address: 3c8c-40b4-0926
IPv6 packet frame type: Ethernet II, hardware address: 3c8c-40b4-0926
Media type is twisted pair, loopback not set, promiscuous mode not set
1000Mb/s, Full-duplex, link type is autonegotiation
Output flow-control is disabled, input flow-control is disabled
Last link flapping: 2 weeks 4 days 18 hours 10 minutes
Last clearing of counters: 09:08:03 Wed 03/10/2021
Current system time:2021-03-23 14:29:29 Beijing+08:00:00
Last time when physical state changed to up:2021-03-04 20:19:08 Beijing+08:00:00
Last time when physical state changed to down:2021-03-04 20:15:57 Beijing+08:00:00
Peak input rate: 7543 bytes/sec, at 2021-03-11 22:13:04
Peak output rate: 62 bytes/sec, at 2021-03-10 09:08:29
Last 5 second input: 8 packets/sec 802 bytes/sec 0% //关注这个字段
Last 5 second output: 0 packets/sec 0 bytes/sec 0%
Input (total): 7946948 packets, 777251528 bytes
0 unicasts, 2969516 broadcasts, 4977432 multicasts, 0 pauses
Input (normal): 7946948 packets, 777251528 bytes
0 unicasts, 2969516 broadcasts, 4977432 multicasts, 0 pauses
Input: 0 input errors, 0 runts, 0 giants, - throttles
0 CRC, 0 frame, 0 overruns, 0 aborts
0 ignored, - parity errors
Output (total): 38082 packets, 11919666 bytes
0 unicasts, 0 broadcasts, 38082 multicasts, 0 pauses
Output (normal): 38082 packets, 11919666 bytes
0 unicasts, 0 broadcasts, 38082 multicasts, 0 pauses
Output: 0 output errors, 0 underruns, - buffer failures
0 aborts, 0 deferred, 0 collisions, 0 late collisions
0 lost carrier, 0 no carrier
(0)
暂无评论
亲~登录后才可以操作哦!
确定你的邮箱还未认证,请认证邮箱或绑定手机后进行当前操作
举报
×
侵犯我的权益
×
侵犯了我企业的权益
×
抄袭了我的内容
×
原文链接或出处
诽谤我
×
对根叔社区有害的内容
×
不规范转载
×
举报说明
暂无评论