One of my customers claims that incorrect config and/or sw hw fault is causing problems in his LAN.
there are 4 vlans:
1 management, untagged (subnet 10.10.10.0/24) 2 net1 (subnet 10.1.2.0/24) 3 net2 (subnet 10.1.3.0/24) 4 net3 ( subnet 10.20.30.0/26 !! )each of the vlans 2-4 have its own router/gateway (x.x.x.1). Those routers are not managed by my customer neither me. I cannot see their config. They are connected to switch' ports: vlan2 - port Gi0/2, vlan3 - Gi0/3, vlan4 - Gi0/4
On vlan4 there are PC users running citrix client and connecting to remote server (vlan4 gateway act also as vpn tunnel)
The problem is that clients in vlan4 have randomly disconnected their citrix sessions for 1-30 minutes and then have link back again. During that periods vlan4 gateway is reachable from remote side, man tries to ping any of clients or switch (10.20.30.2) but those are unreachable. On same time ping from the switch does not reach vlan4 router.
In Log of the switch there are no layer2 broken-link errors concerning Gi0/4 port.
Do You can verify below config - can be a source of problems?
Please help
version 12.2 no service pad service timestamps debug uptime service timestamps log datetime service password-encryption service sequence-numbers ! hostname SW3560 ! logging buffered 128000 debugging ! username xxx privilege 15 password 0 xxx no aaa new-model clock timezone UTC 1 clock summer-time UTC recurring last Sun Mar 2:00 last Sun Oct 3:00 system mtu routing 1500 ip subnet-zero ip routing ! ! mls qos map cos-dscp 0 8 16 26 32 46 48 56 mls qos srr-queue input bandwidth 90 10 mls qos srr-queue input threshold 1 8 16 mls qos srr-queue input threshold 2 34 66 mls qos srr-queue input buffers 67 33 mls qos srr-queue input cos-map queue 1 threshold 2 1 mls qos srr-queue input cos-map queue 1 threshold 3 0 mls qos srr-queue input cos-map queue 2 threshold 1 2 mls qos srr-queue input cos-map queue 2 threshold 2 4 6 7 mls qos srr-queue input cos-map queue 2 threshold 3 3 5 mls qos srr-queue input dscp-map queue 1 threshold 2 9 10 11 12 13 14 15 mls qos srr-queue input dscp-map queue 1 threshold 3 0 1 2 3 4 5 6 7 mls qos srr-queue input dscp-map queue 1 threshold 3 32 mls qos srr-queue input dscp-map queue 2 threshold 1 16 17 18 19 20 21 22
23 mls qos srr-queue input dscp-map queue 2 threshold 2 33 34 35 36 37 38 39 48 mls qos srr-queue input dscp-map queue 2 threshold 2 49 50 51 52 53 54 55 56 mls qos srr-queue input dscp-map queue 2 threshold 2 57 58 59 60 61 62 63 mls qos srr-queue input dscp-map queue 2 threshold 3 24 25 26 27 28 29 30 31 mls qos srr-queue input dscp-map queue 2 threshold 3 40 41 42 43 44 45 46 47 mls qos srr-queue output cos-map queue 1 threshold 3 5 mls qos srr-queue output cos-map queue 2 threshold 3 3 6 7 mls qos srr-queue output cos-map queue 3 threshold 3 2 4 mls qos srr-queue output cos-map queue 4 threshold 2 1 mls qos srr-queue output cos-map queue 4 threshold 3 0 mls qos srr-queue output dscp-map queue 1 threshold 3 40 41 42 43 44 45 46 47 mls qos srr-queue output dscp-map queue 2 threshold 3 24 25 26 27 28 29 30 31 mls qos srr-queue output dscp-map queue 2 threshold 3 48 49 50 51 52 53 54 55 mls qos srr-queue output dscp-map queue 2 threshold 3 56 57 58 59 60 61 62 63 mls qos srr-queue output dscp-map queue 3 threshold 3 16 17 18 19 20 21 22 23 mls qos srr-queue output dscp-map queue 3 threshold 3 32 33 34 35 36 37 38 39 mls qos srr-queue output dscp-map queue 4 threshold 1 8 mls qos srr-queue output dscp-map queue 4 threshold 2 9 10 11 12 13 14 15 mls qos srr-queue output dscp-map queue 4 threshold 3 0 1 2 3 4 5 6 7 mls qos queue-set output 1 threshold 1 138 138 92 138 mls qos queue-set output 1 threshold 2 138 138 92 400 mls qos queue-set output 1 threshold 3 36 77 100 318 mls qos queue-set output 1 threshold 4 20 50 67 400 mls qos queue-set output 2 threshold 1 149 149 100 149 mls qos queue-set output 2 threshold 2 118 118 100 235 mls qos queue-set output 2 threshold 3 41 68 100 272 mls qos queue-set output 2 threshold 4 42 72 100 242 mls qos queue-set output 1 buffers 10 10 26 54 mls qos queue-set output 2 buffers 16 6 17 61 mls qos ! ! no file verify auto spanning-tree mode pvst spanning-tree extend system-id ! vlan internal allocation policy ascending ! interface GigabitEthernet0/1 switchport mode access macro description cisco-desktop ! interface GigabitEthernet0/2 switchport access vlan 2 switchport mode access macro description cisco-desktop ! interface GigabitEthernet0/3 switchport access vlan 3 switchport mode access macro description cisco-desktop ! interface GigabitEthernet0/4 switchport access vlan 4 switchport mode access macro description cisco-desktop ! interface GigabitEthernet0/5 switchport access vlan 2 switchport mode access macro description cisco-desktop . . . . ! interface GigabitEthernet0/23 switchport trunk encapsulation dot1q switchport mode trunk srr-queue bandwidth share 10 10 60 20 srr-queue bandwidth shape 10 0 0 0 queue-set 2 mls qos trust cos macro description cisco-switch auto qos voip trust spanning-tree link-type point-to-point ! interface GigabitEthernet0/24 switchport trunk encapsulation dot1q switchport mode trunk srr-queue bandwidth share 10 10 60 20 srr-queue bandwidth shape 10 0 0 0 queue-set 2 mls qos trust cos macro description cisco-switch auto qos voip trust spanning-tree link-type point-to-point ! interface GigabitEthernet0/25 switchport trunk encapsulation dot1q switchport mode trunk srr-queue bandwidth share 10 10 60 20 srr-queue bandwidth shape 10 0 0 0 queue-set 2 mls qos trust cos macro description cisco-switch auto qos voip trust spanning-tree link-type point-to-point ! interface GigabitEthernet0/26 switchport trunk encapsulation dot1q switchport mode trunk srr-queue bandwidth share 10 10 60 20 srr-queue bandwidth shape 10 0 0 0 queue-set 2 mls qos trust cos macro description cisco-switch auto qos voip trust spanning-tree link-type point-to-point ! interface GigabitEthernet0/27 switchport trunk encapsulation dot1q switchport mode trunk srr-queue bandwidth share 10 10 60 20 srr-queue bandwidth shape 10 0 0 0 queue-set 2 mls qos trust cos macro description cisco-switch auto qos voip trust spanning-tree link-type point-to-point ! interface GigabitEthernet0/28 switchport trunk encapsulation dot1q switchport mode trunk srr-queue bandwidth share 10 10 60 20 srr-queue bandwidth shape 10 0 0 0 queue-set 2 mls qos trust cos macro description cisco-switch auto qos voip trust spanning-tree link-type point-to-point ! interface Vlan1 ip address 10.10.10.1 255.255.255.0 ! interface Vlan2 ip address 10.1.2.3 255.255.255.0 ip access-group MY-ACL in ! interface Vlan3 no ip address ! interface Vlan4 ip address 10.20.30.2 255.255.255.192 ! ip classless ip route 0.0.0.0 0.0.0.0 10.1.2.1 ip route 10.20.30.0 255.255.255.0 10.20.30.1 ip http server ip http authentication local ! ip access-list extended MY-ACL permit ip host 10.1.2.1 10.10.10.0 0.0.0.255 permit ip host 10.1.2.16 10.10.10.0 0.0.0.255 permit ip host 10.1.2.17 10.10.10.0 0.0.0.255 deny ip any any log ! logging facility daemon logging 10.1.2.14 ! control-plane ! ! line con 0 login local length 0 line vty 0 4 login local length 0 line vty 5 15 login local length 0 ! end