1. 程式人生 > >Cisco UBR10012使用DRL保護cpu,防止high cpu問題

Cisco UBR10012使用DRL保護cpu,防止high cpu問題

high cpu ubr10012 drl

Cisco UBR10012在日常維護的過程中出現high cpu問題,經檢查是DHCPD Receive進程占用過高。

說明設備受到了過量的DHCP報文,為避免影響正常業務流量,配置DRL(Divert Rate Limit)對

UBR10012的CPU進行保護。

對DRL的解釋和配置方法可以參考以下官方文檔:

http://www.cisco.com/c/en/us/td/docs/cable/cmts/config_guide/b_cisco_cmts_networkmgmt_trblshting/b_cisco_cmts_networkmgmt_trblshting_chapter_01010.html

在UBR10012中DRL可以用於控制WAN口流量和RF口流量。具體實現腳本如下:

WANside流量:

service divert-rate-limit ip fib_rp_glean rate 20 limit 20

service divert-rate-limit ip fib_rp_dest rate 20 limit 20

service divert-rate-limit ip fib_rp_punt rate 20 limit 20

service divert-rate-limit max-rate wan fib_rp_dest rate 500 limit 100


RFside流量:(應用於RF mac domain)

interface Cable5/0/0

cable divert-rate-limit rate 10 limit 10

interface Cable5/0/1

cable divert-rate-limit rate 10 limit 10

.........................


添加trust-site:(此部分流量不受DRL控制,主要用於從DHCP server過來的報文)

service divert-rate-limit trusted-site X.X.X.X 255.255.255.255 tos 0 mask 0 vrf XXX

service divert-rate-limit trusted-site X.X.X.X 255.255.255.255 tos 0 mask 0 vrf XXX

service divert-rate-limit trusted-site X.X.X.X 255.255.255.255 tos 0 mask 0 vrf XXX

service divert-rate-limit trusted-site X.X.X.X 255.255.255.255 tos 0 mask 0 vrf XXX


具體數值按照需求修改。

本文出自 “anrbin_boke” 博客,請務必保留此出處http://anrbin.blog.51cto.com/12894439/1926128

Cisco UBR10012使用DRL保護cpu,防止high cpu問題