Guest

Cisco IOS Software Releases 12.3 T

Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

Table Of Contents

Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

Contents

Prerequisites for the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

Restrictions for the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

Information About the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

General Satellite Network Components

Satellite

Hub

VSATs

Satellite Network Management and Provisioning

Outbound and Inbound Directions in a Satellite Communications Network

NM-1VSAT-GILAT Network Module LEDs

How to Configure the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module

Prerequisites

Restrictions

Examples

Troubleshooting Tips

What to Do Next

Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module

Configuring IP Addresses Locally

Configuring IP Addresses from the Hub

Compatibility Between Local Configuration and Configuration from the Hub

Verifying Satellite Network Connectivity for the NM-1VSAT-GILAT Network Module

Prerequisites

Examples

Troubleshooting Tips

What to Do Next

Troubleshooting Satellite Network Connectivity for the NM-1VSAT-GILAT Network Module

Prerequisites

Examples

Enabling or Disabling VSAT Route Update Messages to the Hub from the NM-1VSAT-GILAT Network Module

Prerequisites

Restrictions

Examples

Configuring Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link

Hub Dial Backup Mode

Prerequisites

Restrictions

What to Do Next

Verifying Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link

Prerequisites

Examples

Troubleshooting Tips

Configuring Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link

Router Dial Backup Mode

Prerequisites

Configuring Router Dial Backup by Using a Floating Static Route

Configuring Router Dial Backup by Using a Backup Interface

Verifying Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link

Prerequisites

Examples

Troubleshooting Tips

Configuring NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link

Prerequisites

Configuring Satellite Backup by Using a Floating Static Route

Configuring Satellite Backup by Using a Backup Interface

Verifying NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Floating Static Route

Prerequisites

Examples

Troubleshooting Tips

Verifying NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Backup Interface

Prerequisites

Restrictions

Examples

Troubleshooting Tips

Configuring HSRP Redundancy for the NM-1VSAT-GILAT Network Module

Configuring Homogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module

Configuring Heterogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module

What to Do Next

Verifying HSRP Redundancy for the NM-1VSAT-GILAT Network Module

Prerequisites

Examples

Troubleshooting HSRP Redundancy for the NM-1VSAT-GILAT Network Module

Prerequisites

Examples

Configuring IP Multicast Routing for the NM-1VSAT-GILAT Network Module

Prerequisites

Restrictions

Examples

Troubleshooting Tips

Troubleshooting Voice over IP for the NM-1VSAT-GILAT Network Module

Dedicated Access (DA) and Random Access (RA) Modes

Requirements for Automatic Activation and Deactivation of DA Mode

Configuration of Optimum Codec Payload Size in DA Mode

When DA Mode Is Not Available

Restrictions

Examples

What to Do Next

Configuring Integrated TCP Acceleration and Encryption

Prerequisites

Configuring the VSAT Router for ITAE

Examples

Upgrading VSAT Firmware

Examples

Configuration Examples for the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

Configuring Hub Dial Backup for the NM-1VSAT-GILAT Network Module—Primary Satellite Link with a Backup ISDN BRI Link: Example

Configuring Hub Dial Backup for the NM-1VSAT-GILAT Network Module—Primary Satellite Link with a Backup Modem Link: Example

Configuring Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link—Floating Static Route: Example

Configuring Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link—Backup Interface: Example

Configuring NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Floating Static Route: Example

Configuring NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Backup Interface: Example

Configuring Homogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module—Shared ODU: Example

Configuring Heterogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module—Primary Satellite Link with a Backup Terrestrial Link: Example

Configuring Heterogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module—Backup Satellite Link for a Primary Terrestrial Link: Example

Configuring IP Multicast Routing for the NM-1VSAT-GILAT Network Module: Example

Additional References

Related Documents

Standards

MIBs

RFCs

Technical Assistance

Command Reference

apply (satellite initial configuration)

debug satellite firmware

debug satellite

end (satellite initial configuration)

exit (satellite initial configuration)

id aa-group

id software group

id vsat

interface satellite

mode download

mode two-way

outbound data-pid

outbound data-rate

outbound frequency

outbound id

outbound modulation-type

outbound sync ip address

outbound viterbi-rate

password (satellite initial configuration)

service-module backup interface

service-module backup mode

service-module ip address

service-module ip redundancy

service-module itae

service-module routing redistribute

service-module satellite backup

service-module satellite configuration

service-module satellite cw-mode

service-module satellite status

show (satellite initial configuration)

show controllers satellite

show interfaces satellite

test satellite satellite mfg link

upgrade satellite satellite

Feature Information for the Cisco IP VSAT Satellite WAN Network Module

Glossary


Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)


OL-5899-02
First Published: June 12, 2006
Last Updated: June 20, 2007

The NM-1VSAT-GILAT network module provides Cisco modular access routers with two-way satellite WAN connectivity in Gilat© SkyEdge© or compatible satellite communications networks. The NM-1VSAT-GILAT network module functions as the indoor unit (IDU) of a very small aperture terminal (VSAT), or earthbound station of a satellite communications network. A "very small" dish antenna is called the outdoor unit (ODU) of a VSAT. As the IDU, the NM-1VSAT-GILAT network module serves as the interface between the ODU and the VSAT LAN. The ODU receives and sends signals to a satellite, and the satellite sends and receives signals from an earthbound central hub, which controls the entire operation of the satellite network.

Finding Feature Information in This Module

Your Cisco IOS software release may not support all of the features documented in this module. To reach links to specific feature documentation in this module and to see a list of the releases in which each feature is supported, use the "Feature Information for the Cisco IP VSAT Satellite WAN Network Module" section.

Finding Support Information for Platforms and Cisco IOS Software Images

Use Cisco Feature Navigator to find information about platform support and Cisco IOS and Catalyst OS software image support. To access Cisco Feature Navigator, go to http://www.cisco.com/go/cfn. An account on Cisco.com is not required.

Contents

Prerequisites for the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

Restrictions for the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

Information About the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

How to Configure the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

Configuration Examples for the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

Additional References

Command Reference

Feature Information for the Cisco IP VSAT Satellite WAN Network Module

Glossary

Prerequisites for the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

The firmware version on the NM-1VSAT-GILAT network module must be compatible with the Cisco IOS software release and feature set on the router:

For software compatibility information, see the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT) Data Sheet.

To view the Cisco IOS release and feature set on the router, enter the show version command in privileged EXEC mode.

To view the firmware version on the NM-1VSAT-GILAT network module, enter the service-module satellite slot/0 status command in privileged EXEC mode.

The NM-1VSAT-GILAT network module requires an associated central hub, which monitors and controls the satellite network. You must therefore take one of the following actions:

Subscribe to a service from a Gilat SkyEdge satellite service provider, who will operate the hub and install an ODU.

Purchase and operate your own Gilat SkyEdge hub equipment, obtain and install an ODU, and acquire the appropriate satellite bandwidth to operate a satellite communications network.

The NM-1VSAT-GILAT network module can be used in one-way mode with SkyEdge-compatible equipment with the following configuration:

IPE: SkyStream SMR Series (SMR-24/25/26)

Modulator: A DVB-S compliant modulator, registered at www.dvb.org. DVB-S compliant modulators are Newtec, EF-DATA 2020M, and Sencore ASM 988A. Any other modulator must be approved by Gilat.

For the DVB-S (QPSK) OB symbol rate: maximum = 30 Msps or 48.38 Mbps

Coding rate: 1/2, 2/3, 3/4, 5/6, 7/8

See the "Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module" section for more details.

Install the NM-1VSAT-GILAT network module in the router chassis, connect the network module to the ODU, and connect the network module to the external power supply. See the "Connecting Cisco IP VSAT Satellite WAN Network Modules" chapter of the Cisco Network Modules Hardware Installation Guide.

The hub must be configured to connect to the NM-1VSAT-GILAT network module.

If you plan to use Protocol Independent Multicast (PIM), Open Shortest Path First (OSPF), or Enhanced Interior Gateway Routing Protocol (EIGRP) on the router satellite interface, then the hub must be configured to enable transparent tunneling of the protocol packets.


Note For hardware-related prerequisites, see the "Connecting Cisco IP VSAT Satellite WAN Network Modules" chapter of the Cisco Network Modules Hardware Installation Guide.


Restrictions for the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

The NM-1VSAT-GILAT network module is supported only in Gilat SkyEdge-compatible satellite communications networks. For more information, go to http://www.gilat.com/.


Note In one-way mode, the NM-1VSAT-GILAT network module can operate with SkyEdge-compatible equipment. See the section Prerequisites for the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT), for more information about the non-SkyEdge hub requirements for one-way mode.


The NM-1VSAT-GILAT network module is designed for Ku-band and C-band satellite networks using the Gilat SkyEdge Frequency and Time Division Multiple Access (FTDMA) technology. The NM-1VSAT-GILAT network module is not compatible with these items:

Other frequency bands, such as Ka-band

Other satellite TDMA systems, including Digital Video Broadcasting-Return Channel by Satellite (DVB-RCS), and Data Over Cable Service Interface Specification (DOCSIS)

Other media access methods, such as Single Channel Per Carrier (SCPC)

If you use IP routing protocols other than Routing Information Protocol Version 2 (RIPv2), then one of the following actions is required:

On the VSAT router, enable VSAT route update messages to the hub. See the "Enabling or Disabling VSAT Route Update Messages to the Hub from the NM-1VSAT-GILAT Network Module" section.

On the hub router, configure static routes to the VSAT router networks.

If you enable Network Address Translation (NAT) on the VSAT router, then you must disable route update messages to the hub. See the "Enabling or Disabling VSAT Route Update Messages to the Hub from the NM-1VSAT-GILAT Network Module" section.

PIM and RIP are not compatible on the satellite interface. Also, a specific configuration is required for the satellite link to support IP multicast routing. See the "Configuring IP Multicast Routing for the NM-1VSAT-GILAT Network Module" section.

If a large number of VSATs send PIM, OSPF, or EIGRP protocol packets to the hub, then the inbound channel may become saturated. Extremely large satellite networks may be required to use only the RIPv2 routing protocol, because the VSAT software on the NM-1VSAT-GILAT network module automatically optimizes RIPv2 packets for inbound channel bandwidth. To reduce inbound channel saturation caused by PIM, OSPF, or EIGRP, increase the hello intervals on the VSAT router satellite interface:

For PIM, use the ip pim query-interval command.

For OSPF, use the ip ospf hello-interval command.

For EIGRP, use the ip hello-interval eigrp command.

When using encryption over the satellite network, one of the following methods should be used to enable TCP acceleration:

Integrated Acceleration and Encryption (ITAE) Mode to perform TCP acceleration on the VSAT module and encryption with Cisco IOS software. See Configuring Integrated TCP Acceleration and Encryption.

Rate Based Satellite Control Protocol (RBSCP), a Cisco IOS software feature

An external Performance Enhancement Proxy (PEP) device to perform TCP acceleration before encryption on Cisco IOS software. Contact your satellite service provider for information.

Voice over IP (VoIP) calls are extremely sensitive to jitter and delay, both of which are inherent in typical satellite links. The NM-1VSAT-GILAT network module can use dedicated access (DA) bandwidth over the satellite link to ensure that VoIP calls receive the highest quality of service. To enable the use of DA bandwidth during VoIP calls, you must set up an integrated VoIP gateway by taking one of the following actions on the router in which the NM-1VSAT-GILAT network module is installed:

Configure a VoIP gateway solution, such as Cisco Unified CallManager Express (Cisco Unified CME).

Install a hardware VoIP gateway, such as one of the following voice-enabled modules: NM-HDV, NM-HDA, NM-HD-1V, NM-HD-2V, NM-HD-2VE, or EVM-HD.

Enable the Cisco Multiservice IP-to-IP Gateway feature.

For information about these voice applications, see the Cisco IOS Voice Configuration Library.

Do not enable Cisco Discovery Protocol on the satellite interface. By default, Cisco Discovery Protocol is disabled on the satellite interface to avoid unnecessary traffic.

Both the Cisco IOS software on the router and the VSAT software on the NM-1VSAT-GILAT network module apply QoS features to satellite traffic. These QoS features are applied separately and sequentially. For outbound traffic (that is, traffic sent by the hub and received by the VSAT), the VSAT software QoS features are applied first, followed by the Cisco IOS QoS features. The sequence is reversed for inbound traffic.

Because of delays that are inherent to satellite links, using TFTP results in long file-download times. Therefore, do not use TFTP to download a new Cisco IOS image over the satellite link. Instead, use FTP, which performs faster downloads by leveraging the NM-1VSAT-GILAT network module's TCP acceleration feature.

For more information about using FTP, see the "Copying an Image from an FTP Server to a Flash Memory File System" section of the "Loading and Maintaining System Images" chapter of the Cisco IOS Configuration Fundamentals Configuration Guide.

Booting the router from a network server over the satellite link is not supported, because the bootup process may time out before the satellite link comes up. Therefore, if you use the following commands, make sure that you do not specify the satellite network or interfaces:

boot system command in global configuration mode

boot command in ROM monitor mode


Note For hardware-related restrictions, see the "Connecting Cisco IP VSAT Satellite WAN Network Modules" chapter of the Cisco Network Modules Hardware Installation Guide.


Information About the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

To configure the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT) feature, you should understand the following concepts:

General Satellite Network Components

Satellite Network Management and Provisioning

Outbound and Inbound Directions in a Satellite Communications Network

NM-1VSAT-GILAT Network Module LEDs


Note For NM-1VSAT-GILAT network module features and benefits, supported hardware and software, and other product information, see the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT) Data Sheet.


General Satellite Network Components

Figure 1 shows a satellite communications network that includes NM-1VSAT-GILAT network modules.


Note Not shown in Figure 1 are the terrestrial WAN connections that are also commonly used to connect VSAT routers to the Internet or an intranet. A terrestrial WAN connection can be used to back up a satellite link or can serve as a primary link that is backed up by a satellite link.


Figure 1 Satellite Communications Network Using the NM-1VSAT-GILAT Network Module

1

Corporate headquarters/campus

4

Dish antenna (ODU) at VSAT

2

Dish antenna at hub

5

NM-1VSAT-GILAT network module at VSAT

3

Satellite in space

6

Local network at VSAT; for example, a branch office network connected to an Ethernet port on the router


At a high level, the many components of an enterprise satellite communications network can be divided into three categories:

Satellite

Hub

VSATs

Satellite

Placed in orbit around the earth, a satellite is a specialized repeater that receives radio-frequency signals from earth stations and retransmits them to other earth stations. The satellite also amplifies the signals and switches the frequencies between the uplink and the downlink carriers. Gilat SkyEdge systems use geostationary satellites with a fixed satellite-to-earth delay of about 250 ms.

Hub

The central hub—sometimes referred to as the "master earth station" but most often simply called the "hub"—contains many components, including:

Large dish antenna (15 to 36 feet [4.5 to 11 meters] in diameter)

Satellite network management system (NMS) and provisioning stations, from which a network operator can monitor and control all components of the enterprise satellite communications network

Baseband equipment that handles satellite access, routing between the hub and remote earth stations, dial backup, quality of service (QoS), TCP acceleration, and HTTP acceleration

Optional components: web caches, MPEG transport coder/decoder, application server farms, and audio/video broadcast programming devices


Note Throughout this document, the "hub" refers specifically to a Gilat SkyEdge hub, unless otherwise stated.


VSATs

A very small aperture terminal (VSAT) is an earth station that can be divided into two areas:

Indoor unit (IDU), which generally serves to connect the local network to the hub through the satellite link. The IDU components vary, depending on the functions required, but the components typically include these items:

Integrated receiver decoder (IRD) for the tuning

Demodulation and decoding of L-band or other type of intermediate frequency (IF) passed from the dish

End-user input/output

Outdoor unit (ODU), which includes a "very small" dish antenna (2 to 6 feet [0.5 to 2 meters] in diameter) and its components, shown in Figure 2. The ODU is typically mounted on a building roof or outer wall, or placed on the ground.

The NM-1VSAT-GILAT network module functions as the IDU of a VSAT and is connected to the ODU through coaxial cables. A power supply is connected to the NM-1VSAT-GILAT network module to provide power over the coaxial cables to the ODU.

Figure 2 ODU Components

Figure
Callout
ODU Component
Function
1

Low noise block converter
(LNB)

Amplifies and converts high-frequency satellite signals into lower-frequency signals.

2

Transmit reject filter

Filters out transmitted signals so that only signals received from the satellite enter the LNB.

3

Feed horn

Captures signals from and transmits energy to the reflector.

4

Orthomode transducer
(OMT)

Separates transmitted signals from received signals, which have different polarization and frequency.

5

Solid state block converter and power amplifier
(SSPA)

Amplifies and converts the low-frequency signals from the IDU to high-frequency signals for transmission across the satellite link.

6

Reflector

Concave dish surface that focuses the energy received from the satellite to the feed horn and that transfers the energy transmitted by the feed horn to the satellite.


Satellite Network Management and Provisioning

The satellite network is provisioned and managed primarily from the central hub, where the network management system (NMS) is used to manage satellite access, configure the VSAT software on the NM-1VSAT-GILAT network module, and monitor and control all components of the satellite network.

From the VSAT, the Cisco IOS software on the router is used to perform the initial configuration of the NM-1VSAT-GILAT network module to establish the backbone link to the hub. The Cisco IOS software is also used to configure VSAT IP addresses and Cisco IOS software features. Some features require configuration from both the hub NMS and the VSAT router Cisco IOS software.

You can use the following tools to monitor your NM-1VSAT-GILAT network module from the VSAT:

CiscoView

Network-based Simple Network Management Protocol (SNMP)—CiscoWorks and MIB browsers

Cisco IOS CLI—service-module satellite slot/0 status command and various show and debug commands

Outbound and Inbound Directions in a Satellite Communications Network

The outbound direction applies to signals transmitted from the hub to the VSAT. Within a VSAT network, the outbound direction applies to RF communication from the dish antenna (ODU) to the NM-1VSAT-GILAT network module (IDU). From the VSAT perspective, the outbound direction is the receive path. Gilat SkyEdge outbound signals include user data and timing data that are compatible with the Digital Video Broadcasting-Satellite (DVB-S) standard.

The inbound direction applies to signals transmitted from the VSAT to the hub. Within a VSAT network, the inbound direction applies to RF communication from the NM-1VSAT-GILAT network module to the dish antenna. From the VSAT perspective, the inbound direction is the transmit path. Inbound signals include user data and retransmission requests.

NM-1VSAT-GILAT Network Module LEDs

The NM-1VSAT-GILAT network module has six LEDs, shown in Figure 3 and described in Table 1.

Figure 3 NM-1VSAT-GILAT Network Module LEDs

Table 1 NM-1VSAT-GILAT Network Module LED Descriptions 

Figure
Ref.
LED
State
Meaning
Possible Causes and Corrective Actions

1

EXT DC

Blinking

ODU power DC level is correct, and the VSAT1 software on the network module is running.

Normal indication. No action required.

Steady on

ODU power supply is connected properly, but the VSAT software on the network module is not running.

Wait until the VSAT software completes the boot process.

Off

ODU power supply is not connected or is outside the specified DC range.

Check ODU power supply connections. See the "Connecting Cisco IP VSAT Satellite WAN Network Modules" chapter of the Cisco Network Modules Hardware Installation Guide.

2

RX LOCK

On

DVB2 (outbound3 ) receiver is locked.

Normal indication. No action required.

Off

NM-1VSAT-GILAT network module does not see or recognize the DVB carrier signal from the hub.

The VSAT parameters are configured incorrectly. See the "Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module" section.

The network module is not properly connected to the LNB.4 Check the RF5 cables or contact your satellite service provider.

The dish antenna is misaligned. Contact your satellite service provider.

There is a hub failure, or the hub is configured incorrectly. Contact your satellite service provider.

3

SYNC

On

NM-1VSAT-GILAT network module is synchronized with the hub timing.

Normal indication. No action required.

Off

NM-1VSAT-GILAT network module is not synchronized with the hub timing.

If the RX LOCK LED is also off, then see the corrective actions for RX LOCK.

If the RX LOCK LED is on while the SYNC LED is off, then the following apply:

The VSAT parameters are configured incorrectly. See the "Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module" section.

There is a hub failure, or the hub is configured incorrectly. Contact your satellite service provider.

4

ON LINE

On

IP connectivity to the hub is fully established.

Normal indication. No action required.

Off

IP connectivity to the hub was unsuccessful.

If the SYNC LED is also off, then see the corrective actions for SYNC.

If the SYNC LED is on while the ON LINE LED is off, then the following apply:

There is a problem somewhere in the return path from the network module to the hub. Check the cabling between the RF-OUT connector and the SSPA.6

The SSPA may not be working. Contact your satellite service provider.

The dish antenna is misaligned. Contact your satellite service provider.

There is a hub failure, or the hub is configured incorrectly. Contact your satellite service provider.

5

TX

Flickering

Inbound7 transmission is in progress.

Normal indication. No action required.

Off

No inbound transmission is in progress.

If you are concerned about the TX LED being off, then try to ping the hub or another destination on the other side of the satellite link. If the TX LED does not flicker during the ping, then the network module is not attempting to send data to the hub.

Wait until the VSAT software completes the boot process.

Verify that your Cisco IOS software configuration is correct.

The VSAT software has failed. Contact your satellite service provider.

6

EN

On

The router Cisco IOS software recognizes the network module.

Normal indication. No action required.

Off

The router Cisco IOS software does not recognize the network module.

Verify that the network module is properly installed in the router chassis. See the "Installing Cisco Network Modules in Cisco Access Routers" chapter of the Cisco Network Modules Hardware Installation Guide.

1 VSAT = very small aperture terminal

2 DVB = Digital Video Broadcasting

3 The receive direction at the remote VSAT is called the outbound direction from the hub. See the "Outbound and Inbound Directions in a Satellite Communications Network" section.

4 LNB = low noise block converter

5 RF = radio frequency

6 SSPA = solid state block converter and power amplifier

7 The transmit direction at the remote VSAT is called the inbound direction to the hub. See the "Outbound and Inbound Directions in a Satellite Communications Network" section.


How to Configure the Cisco IP VSAT Satellite WAN Network Module (NM-1VSAT-GILAT)

This section contains the following procedures:

Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module (required)

Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module (optional)

Configuring IP Addresses from the Hub (optional)

Verifying Satellite Network Connectivity for the NM-1VSAT-GILAT Network Module (optional)

Troubleshooting Satellite Network Connectivity for the NM-1VSAT-GILAT Network Module (optional)

Enabling or Disabling VSAT Route Update Messages to the Hub from the NM-1VSAT-GILAT Network Module (optional)

Configuring Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link (optional)

Verifying Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link (optional)

Configuring Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link (optional)

Verifying Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link (optional)

Configuring NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link (optional)

Verifying NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Floating Static Route (optional)

Verifying NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Backup Interface (optional)

Configuring HSRP Redundancy for the NM-1VSAT-GILAT Network Module (optional)

Verifying HSRP Redundancy for the NM-1VSAT-GILAT Network Module (optional)

Troubleshooting HSRP Redundancy for the NM-1VSAT-GILAT Network Module (optional)

Configuring IP Multicast Routing for the NM-1VSAT-GILAT Network Module (optional)

Troubleshooting Voice over IP for the NM-1VSAT-GILAT Network Module (optional)

Configuring Integrated TCP Acceleration and Encryption (optional)

Upgrading VSAT Firmware (optional)

Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module

This section describes how to perform the initial configuration of VSAT parameters that are required for the NM-1VSAT-GILAT network module to establish a satellite backbone link to the hub. Typically, this task is performed only once by an installation technician.

After the NM-1VSAT-GILAT network module establishes a link to the hub, the satellite network management system at the hub is used to configure the VSAT software on the NM-1VSAT-GILAT network module.

The initial VSAT parameters are saved directly to the nonvolatile memory on the NM-1VSAT-GILAT network module. The commands do not appear in the router configuration, even though you configure the parameters through the Cisco IOS CLI.


Note The parameter values are provided by your satellite service provider and are typically configured by an installation technician. If this task was already performed by an installation technician, then do not attempt to further modify any of the parameters, and proceed directly to the "Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module" section.


Prerequisites

Read the "Outbound and Inbound Directions in a Satellite Communications Network" section.

Obtain the following items from your satellite service provider:

The password required to enter satellite initial configuration mode. Each NM-1VSAT-GILAT network module has a unique, factory-installed default password. After the initial configuration mode is accessed, a user-defined password of up to 32 alpha-numeric characters can be set for future access.

Initial VSAT parameter values. You must configure the exact parameter values that are provided by your satellite service provider.

Restrictions

If an installation technician performs this configuration task, then do not attempt to further modify the parameters, and proceed directly to the "Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module" section.

SUMMARY STEPS

1. enable

2. service-module satellite slot/0 configuration

3. Enter the password.

4. id aa-group number

5. id software group number

6. id vsat number

7. mode download
or
no mode download

8. mode two-way
or
no mode two-way

9. outbound pid management number

10. outbound data-rate rate

11. outbound frequency frequency

12. outbound id number

13. outbound modulation-type {DVB | TURBO_QPSK | 8PSK}

14. outbound sync ip address address

15. outbound viterbi-rate {1/2 | 1/4 | 2/3 | 3/4 | 3/4(2.05) | 3/4(2.1) | 3/4(2.6) | 5/6 | 6/7 | 7/8 | 8/9}

16. password <new password>

17. show

18. apply

19. exit
or
end

20. service-module satellite slot/0 status

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

(Optional) Enables privileged EXEC mode.

Enter your password if prompted.

Note You can perform this entire task in user EXEC mode; therefore, this step is optional.

Step 2 

service-module satellite slot/0 configuration

Example:

Router# service-module satellite 1/0 configuration

Enters satellite initial configuration mode.

Step 3 

Enter the password.

Example:

Password: <mypassword>

Reminder: changing any parameters will result in a software reset of the module.

If this is the first time you are accessing this mode, enter the VSAT initial configuration mode password supplied by the service provider. Otherwise, enter the user-defined password.

Step 4 

id aa-group number

Example:

Router(sat-init-config)# id aa-group 336

Configures the asynchronous acknowledgement group ID.

The number argument is in the range from 256 to 511.

Step 5 

id software group number

Example:

Router(sat-init-config)# id software group 598

Configures the operational software group ID.

The number argument is in the range from 512 to 767.

Step 6 

id vsat number

Example:

Router(sat-init-config)# id vsat 1284

Configures the component physical address (CPA).

The CPA uniquely identifies the VSAT endpoint in the satellite network.

The number argument is in the range from 1280 to 8100.

Note Even in homogeneous HSRP setups, each NM-1VSAT-GILAT network module must have a unique CPA.

Step 7 

mode download


or

no mode download

Example:

Router(sat-init-config)# mode download

Enables operational code download mode for the NM-1VSAT-GILAT network module.

or

Disables operational code download mode for the NM-1VSAT-GILAT network module.

Step 8 

mode two-way


or

no mode two-way

Example:

Router(sat-init-config)# mode two-way

Specifies two-way operational mode.

or

Specifies one-way operational mode. This mode is used with third-party hubs. The NM-1 VSAT-GILAT network module is able to operate only outbound (from hub to VSAT) for user traffic when third-party hubs are used.

Step 9 

outbound pid management number

Example:

Router(sat-init-config)# pid management 3000

Specifies the outbound packet identifier (PID).

The number argument is in the range from 1 to 8190.

Step 10 

outbound data-rate rate

Example:

Router(sat-init-config)# outbound data-rate 450000

Specifies the outbound data rate.

The rate argument is in the range from 250000 to 73000000 bits per second.

Step 11 

outbound frequency frequency

Example:

Router(sat-init-config)# outbound frequency 950000

Specifies the outbound frequency.

The frequency argument is in the range from 950000 to 2150000 kilohertz.

Step 12 

outbound id number

Example:

Router(sat-init-config)# outbound id 95

Specifies the outbound VSAT ID.

The number argument is in the range from 0 to 255.

Step 13 

outbound modulation-type {DVB | TURBO_QPSK | 8PSK}

Example:

Router(sat-init-config)# outbound modulation-type DVB

Specifies the outbound modulation type.

Step 14 

outbound sync ip address address

Example:

Router(sat-init-config)# outbound sync ip address 10.2.2.2

Specifies the outbound synchronization IP address.

Step 15 

outbound viterbi-rate {1/2 | 1/4 | 2/3 | 3/4 | 3/4(2.05) | 3/4(2.1) | 3/4(2.6) | 5/6 | 6/7 | 7/8 | 8/9}

Example:

Router(sat-init-config)# outbound viterbi-rate 3/4(2.6)

Specifies the outbound Viterbi code rate.

Step 16 

password <new password>

Example:

Router(sat-init-config)# password vsatuser

(Optional) Sets the user-defined password for VSAT initial configuration mode. The command is used the first time this mode is accessed to replace the factory-installed default password with your user-defined password.

Step 17 

show

Example:

Router(sat-init-config)# show

Displays the initial configuration parameters for the NM-1VSAT-GILAT network module.

Verify that you configured the satellite parameters correctly.

Step 18 

apply

Example:

Router(sat-init-config)# apply

Applying changed parameters to the satellite 
module.
Parameter update succeeded. Module is now 
resetting.
Example:

Router(sat-init-config)# apply

% No new or changed parameters to apply.

(Optional) Saves any changed parameters to the NM-1VSAT-GILAT network module nonvolatile memory, and resets the NM-1VSAT-GILAT network module.

This step automatically occurs when you enter the exit or end command in Step 19.

Step 19 

exit


or

end

Example:

Router(sat-init-config)# exit

Exits satellite initial configuration mode, saves any changed parameters to the NM-1VSAT-GILAT network module nonvolatile memory, and resets the NM-1VSAT-GILAT network module.

If no parameters are changed, then the NM-1VSAT-GILAT network module is not reset.

Step 20 

service-module satellite slot/0 status

Example:

Router# service-module satellite 1/0 status

Displays status information related to the hardware and software on the NM-1VSAT-GILAT network module.

Verify that the link to the hub (BackBone Status) is UP.

You may need to wait a minute for the system to complete the reset process. The process is complete when the operational mode (Oper Mode) is OPERATIONAL instead of BOOT.

Examples

This section provides the following examples:

apply Command: Sample Output

show (satellite initial configuration) Command: Sample Output

end or exit Command in Satellite Initial Configuration Mode: Sample Output

service-module satellite status Command—Normal Operational Mode: Sample Output

service-module satellite status Command—During Reset Process: Sample Output

apply Command: Sample Output

The following example shows what appears when you enter the apply command after changing some initial configuration parameters:

Router(sat-init-config)# apply 
Applying changed parameters to the satellite module.
Parameter update succeeded. Module is now resetting.
Router(sat-init-config)#

The following example shows what appears when you enter the apply command when no parameters have been changed:

Router(sat-init-config)# apply 
% No new or changed parameters to apply.
Router(sat-init-config)#

show (satellite initial configuration) Command: Sample Output

The following example shows the satellite initial configuration parameters:

Router(sat-init-config)# show 
!
! Initial Configuration Parameters:
!
id aa-group 298
id software group 598
id vsat 6201
mode download
mode two-way
outbound data-pid 514
outbound data-rate 15000000
outbound frequency 1201000
outbound id 2
outbound modulation-type DVB
outbound sync ip address 172.16.0.3
outbound viterbi-rate 1/2
!
!
Router(sat-init-config)#

end or exit Command in Satellite Initial Configuration Mode: Sample Output

The following example shows what appears when you enter the end or exit command after changing one or more initial configuration parameters:

Router(sat-init-config)# end 

Applying changed parameters to the satellite module.
Parameter update succeeded. Module is now resetting.
Router#

The following example shows what appears when you enter the end or exit command when no parameters have been changed:

Router(sat-init-config)# end 
Router#

service-module satellite status Command—Normal Operational Mode: Sample Output

The following example shows that the link to the hub (BackBone Status) is up, indicating that you correctly configured the initial VSAT parameters:

Router# service-module satellite 2/0 status 
Getting status from the satellite module, please wait..

Software Versions, OS:15.4.5.12, RSP:3.4.5.5, MBC:2.0.4.3
HW Version:00008000
CPA Number:6101, DPS CPA:5
Workgroup: 257, SW Group: 512, Download: YES
Service Module Uptime:00:06:40, Router Uptime:1 day, 20 hours, 26 minutes
Current router clocktime:*03:11:22.641 UTC Tue Dec 2 2003
Oper Mode:OPERATIONAL, In Dial Backup:NO, Standby:NO, One-Way:NO
RBCP Received Packets:44, RBCP Sent Packets:41
Bit Error Rate:0e-0, Signal to Noise Ratio:12.4453
IP Address/Mask:10.22.1.1/255.255.255.252
Service Module MAC:00:A0:AC:00:20:60
RX Lock:LOCKED, Sync Lock:LOCKED
BackBone Status:UP, Two-Way Mode:YES, DA/RA Mode:RA
Outbound Modulation Type:DVB, OB Code Rate:3/4
Outbound Unicast Packets:61, OB Multicast Packets:23547
Outbound ID:2, OB PID:514, OB Freq:1201000, OB Bit Rate:30000000
Outbound Sync IP address: 172.22.0.3
Inbound Start Freq:1201176, IB Stop Freq:1209336
Inbound Data Rate:307200, IB Freq Offset:0
Inbound Packets:3553
BackBone Hub Link Status:UP
BackBone Received Packets:1, BB Sent:3552
BackBone Received Retransmitted:0, BB Sent Retrans:0
Service Module Eth RX:3550, TX:47110
Service Module Eth Multicast RX:1, Multicast TX:23563
Bufs Configured:5000, Bufs Free:4951
Internal Software State parameters:
   Service Module SW State Var:3
   General IOS FSM:LINK_UP, HSRP FSM:ACTIVE, HSRP VSAT Mode:ACTIVE
   Lost Beats Total:0, Lost Beats This Retry:0
VOIP DA calls:
 NONE

Router#

service-module satellite status Command—During Reset Process: Sample Output

The following examples show what would appear if the NM-1VSAT-GILAT network module was still resetting itself when you entered the service-module satellite status command:

Router# service-module satellite 1/0 status 
   Getting status from the satellite module, please wait..

% Satellite1/0 card is busy. Status is not available. Try later.

Router# service-module satellite 1/0 status 
Getting status from the satellite module, please wait..

Software Versions, OS: 15.4.5.12, RSP: 0.0.0.0, MBC: 2.0.4.3
HW Version: 00008000
CPA Number: 6103, DPS CPA: 0
Workgroup: 257, SW Group: 513, Download: YES
Service Module Uptime: 00:00:20, Router Uptime: 4 days, 4 hours, 29 minutes
Current router clocktime: *19:07:35.935 UTC Tue Jul 11 2006
Oper Mode: BOOT, In Dial Backup: NO, Standby: NO
RBCP Received Packets: 0, RBCP Sent Packets: 0
Eb/No: 10.9283, Flags: 0xEEEE
IP Address/Mask: 0.0.0.0/0.0.0.0
Service Module MAC: 00:A0:AC:06:15:00
RX Lock: LOCKED, Sync Lock: NOT LOCKED
BackBone Status: DOWN, Two-Way Mode: YES, Access Mode: INVALID
Outbound Modulation Type: DVB, OB Code Rate: 3/4
Outbound Unicast Packets: 0, OB Multicast Packets: 0
Outbound ID: 2, OB PID: 514, OB Freq: 1201000, OB Bit Rate: 30000000
Outbound Sync IP address: 172.2.0.3
Inbound Start Freq: 1190140, IB Stop Freq: 1193710
Inbound D
ata Rate: 768000, IB Freq Offset: 0
COUNTERS OMITTED. Not available at this time.
Internal Software State parameters:
   Service Module SW State Var: 0
   General IOS FSM: LINK_DOWN, HSRP FSM: N/A, HSRP VSAT Mode: N/A
   Lost Beats Total: 176, Lost Beats This Retry: 0
VOIP DA calls:
  NONE

Troubleshooting Tips

Make sure that you configure the exact satellite initial configuration parameters that are provided by your satellite service provider. To view the configured parameter values, use one of the following commands:

service-module satellite slot/0 status command in privileged EXEC mode

show command in satellite initial configuration mode

What to Do Next

Proceed to the "Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module" section.

Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module

This section describes how to configure the two IP addresses that are required to use the NM-1VSAT-GILAT network module. The two required IP addresses are:

One IP address for the router satellite interface, which is the internal interface that connects the router to the installed NM-1VSAT-GILAT network module

One IP address for the NM-1VSAT-GILAT network module

The two methodologies that perform this configuration are:

Configuring IP Addresses Locally

Configuring IP Addresses from the Hub

Either methodology may be used. See the "Compatibility Between Local Configuration and Configuration from the Hub" section.

Configuring IP Addresses Locally

This section describes how to implement configuration of the IP addresses locally. The IP address for the router satellite interface is configured with the ip address command. The IP address for the NM-1VSAT-GILAT network module is configured with the service-module ip address command.

Both the ip address command and the service-module ip address command are entered in satellite interface configuration mode.


Note Your satellite service provider may assign one or both of the required IP addresses.


Automatically Configured IP Address and Mask for the NM-1VSAT-GILAT Network Module

If you configure the router satellite interface with an IP address and subnet mask with these conditions:

The IP address leaves a remainder of 2 when the last octet is divided by 4

The subnet mask has /30 or fewer masking bits

then the system automatically configures the IP address and subnet mask on the NM-1VSAT-GILAT network module with these results:

The IP address is 1 less than the IP address you configured for the router satellite interface.

The subnet mask is /30.

You can override the automatically configured IP address and mask by manually entering the service-module ip address command.


Note The automatically configured IP address does not appear in the router configuration because the service-module ip address command is considered to be set to its default value. Similarly, if you manually configure an IP address and subnet mask that is identical to the automatically configured IP address and subnet mask, the service-module ip address command does not appear in the router configuration.


IP Address Requirements for IP Multicast and Non-RIPv2 Routing Protocols

If you use Protocol Independent Multicast (PIM) or any unicast routing protocols other than Routing Information Protocol Version 2 (RIPv2) on the satellite interface, then you must configure IP addresses and subnet masks as follows:

To the VSAT router, the hub router and all VSATs in the satellite network appear to be on the same subnet.

To the NM-1VSAT-GILAT network module, all VSATs in the satellite network appear to be on separate subnets.

To satisfy the above requirements, use the following rules to configure IP addresses:

The VSAT router satellite interface must have a subnet mask with equal or fewer masking bits than the subnet mask configured for the NM-1VSAT-GILAT network module.

Regardless of the actual subnet masks you configure, both IP addresses must belong in the same subnet that you assign to the NM-1VSAT-GILAT network module.


Tip The automatically configured IP address and mask on the NM-1VSAT-GILAT network module comply with the requirements for supporting PIM and non-RIPv2 routing protocols on the VSAT router satellite interface. See the "Automatically Configured IP Address and Mask for the NM-1VSAT-GILAT Network Module" section.


See Figure 4 for sample IP address assignments that enable support of PIM and non-RIPv2 routing protocols on the satellite network.

Figure 4 Sample IP Addresses for PIM or Unicast Routing Protocols Other Than RIPv2

Restrictions

If your satellite service provider assigns one or both of the required IP addresses, then you must configure those exact IP addresses.

If you use Protocol Independent Multicast (PIM) or any unicast routing protocols other than Routing Information Protocol Version 2 (RIPv2), such as OSPF, on the satellite interface, then you must assign IP addresses according to the rules stated in the "IP Address Requirements for IP Multicast and Non-RIPv2 Routing Protocols" section.

SUMMARY STEPS

1. enable

2. configure terminal

3. interface satellite slot/0

4. ip address address mask

5. service-module ip address address mask

6. end

7. show running-config | begin Satellite

8. ping router-sat-int-address

9. ping satellite-nm-address

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 3 

interface satellite slot/0

Example:

Router(config)# interface satellite 1/0

Enters satellite interface configuration mode.

Step 4 

ip address address mask

Example:

Router(config-if)# ip address 10.0.0.6 255.255.255.0

Sets the IP address for the router satellite interface, which is the internal interface that connects the router to the installed NM-1VSAT-GILAT network module.

Step 5 

service-module ip address address mask

Example:

Router(config-if)# service-module ip address 10.0.0.1 255.255.255.252

(Optional) Sets the IP address for the NM-1VSAT-GILAT network module.

This step is required when the following message appears after you perform Step 4:

%VSAT-6-PIMINCOMPADDR:The IP address configured 
on Satellite1/0 requires a manually configured 
IP address for the satellite module

If the previous message does not appear, then this step is optional, because the NM-1VSAT-GILAT network module IP address was automatically configured. See the "Automatically Configured IP Address and Mask for the NM-1VSAT-GILAT Network Module" section.

Perform this step if you want to override the automatically configured IP address.

Step 6 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

Step 7 

show running-config | begin Satellite

Example:

Router# show running-config | begin Satellite

Displays the running configuration, beginning with the first line that contains the text string "Satellite".

Verify that the router satellite interface and NM-1VSAT-GILAT network module IP addresses are configured properly.

Note that the command is case-sensitive.

Step 8 

ping router-sat-int-address

Example:

Router# ping 10.0.0.6

Assesses basic network connectivity.

Verify that you can ping the IP address configured on the router satellite interface, which is the internal interface that connects the router to the NM-1VSAT-GILAT network module.

Step 9 

ping satellite-nm-address

Example:

Router# ping 10.0.0.1

Assesses basic network connectivity.

Verify that you can ping the IP address configured on the NM-1VSAT-GILAT network module.

Examples

This section provides the following examples:

Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module: Using the Automatically Configured IP Address for the NM-1VSAT-GILAT Network Module: Example

Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module: Overriding the Automatically Configured IP Address for the NM-1VSAT-GILAT Network Module: Example

Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module: Manually Configuring Both IP Addresses: Example

Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module:
Using the Automatically Configured IP Address for the NM-1VSAT-GILAT Network Module: Example

In the following example, the router satellite interface IP address is configured as 10.0.0.6. Because the last octet of the IP address leaves a remainder of 2 when divided by 4, the system automatically configures the IP address for the NM-1VSAT-GILAT network module.

Although the NM-1VSAT-GILAT network module IP address and mask do not appear in the router configuration, you know that the IP address is 1 less than the IP address of the router satellite interface and has a subnet mask of /30. In this case, the NM-1VSAT-GILAT network module is automatically configured with the following IP address and mask: 10.0.0.5 255.255.255.252.

!
interface Satellite 1/0
 ip address 10.0.0.6 255.255.255.0
!

Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module:
Overriding the Automatically Configured IP Address for the NM-1VSAT-GILAT Network Module: Example

In the following example, the router satellite interface IP address is configured as 10.0.0.6. Because the last octet of the IP address leaves a remainder of 2 when divided by 4, the system automatically configures the IP address and mask for the NM-1VSAT-GILAT network module as 10.0.0.5 255.255.255.252.

Nevertheless, the NM-1VSAT-GILAT network module IP address and mask are manually configured as 10.0.0.1 255.255.255.0 to override the automatically derived IP address and mask. Notice that the IP addresses for both the router satellite interface and the NM-1VSAT-GILAT network module appear in the running configuration.

!
interface Satellite 1/0
 ip address 10.0.0.6 255.255.255.0
 service-module ip address 10.0.0.1 255.255.255.0
!

Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module:
Manually Configuring Both IP Addresses: Example

In the following example, the router satellite interface is assigned an IP address (10.0.0.7), the last octet of which does not leave a remainder of 2 when divided by 4. The system displays a message to manually configure the IP address for the NM-1VSAT-GILAT network module. Notice that the IP addresses for both the router satellite interface and the NM-1VSAT-GILAT network module appear in the running configuration.

Router(config)# interface satellite 1/0 
Router(config-if)# ip address 10.0.0.7 255.255.255.0 

%VSAT-6-PIMINCOMPADDR:The IP address configured on Satellite1/0
      requires a manually configured IP address for the satellite module

Router(config-if)# service-module ip address 10.0.0.6 255.255.255.0 
Router(config-if)# end 
Router# show running-config | begin Satellite 

interface Satellite 1/0
   ip address 10.0.0.7 255.255.255.0
   service-module ip address 10.0.0.6 255.255.255.0
.
.
.

Troubleshooting Tips

If you cannot ping either IP address, then enter the show interfaces satellite command in privileged EXEC mode to verify that the satellite interface is up. If the satellite interface is down, then bring up the interface by entering the no shutdown command in satellite interface configuration mode.

If you cannot ping the NM-1VSAT-GILAT network module IP address, then enter the service-module satellite slot/0 status command in privileged EXEC mode to display the operational mode (Oper Mode), which should be OPERATIONAL. If the operational mode is BOOT, then you need to wait for the NM-1VSAT-GILAT network module to complete a boot process. If the operational mode is not OPERATIONAL or BOOT, then one of the following has occurred:

The initial VSAT parameters were not configured properly. Notify the installation technician or see the "Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module" section.

A problem at the hub is preventing the NM-1VSAT-GILAT network module from connecting to the hub. Contact your satellite service provider for help.

What to Do Next

Proceed to the "Verifying Satellite Network Connectivity for the NM-1VSAT-GILAT Network Module" section.

Configuring IP Addresses from the Hub

This section describes how to implement centralized configuration of the VSAT module IP addresses from the hub. The IP address is configured at the hub NMS by the satellite service provider. The satellite interface is configured with DHCP to obtain the IP address from the VSAT module. A DHCP server is part of the VSAT firmware, and has to be enabled by the service provider.

Because the IP address for the NM-1VSAT-Gilat network module is configured remotely from the hub, the service-module ip address command, which is used to configure the network module locally, is disabled in centralized IP address configuration.

Prerequisites

Your service provider must do the following:

Configure the VSAT IP address at the hub NMS and push it to the VSAT.

Enable the DHCP server in the VSAT firmware.

To verify that all of this is done, examine the value of the Flags parameter in the service module status output.

Router# service-module satellite 1/0 status 
Getting status from the satellite module, please wait..
Software Versions, OS: 15.4.5.12, RSP: 3.4.5.5, MBC: 2.0.4.3
HW Version: 00008000
CPA Number: 6101, DPS CPA: 5
Workgroup: 257, SW Group: 513, Download: YES
Service Module Uptime: 00:01:16, Router Uptime: 2 days, 22 hours, 58 minutes
Current router clocktime: *04:08:44.310 UTC Mon Mar 4 2002
Oper Mode: OPERATIONAL, In Dial Backup: NO, Standby: NO
RBCP Received Packets: 33, RBCP Sent Packets: 38
Eb/No: 10.9324, Flags: 0x0007		    
IP Address/Mask: 10.0.0.1/255.255.255.252
Service Module MAC: 00:A0:AC:06:14:ED
RX Lock: LOCKED, Sync Lock: LOCKED
BackBone Status: UP, Two-Way Mode: YES, Access Mode: RA
. . . 

Table 2 gives the values and interpretations of the Flag bits.

When all of these bits are on (giving the Flags parameter a cumulative value of 0x0007), the NM-1VSAT-GILAT network module can assign the IP address to the satellite interface.

Table 2 Flag Bits for Hub Configuration of IP Addresses

Bit Number
Hexadecimal Flag Value
Meaning

00

0x0001

VSAT has received the configuration table from the hub.

01

0x0002

VSAT has its IP address as configured from the hub.

02

0x0004

The DHCP server in the VSAT firmware is enabled.


SUMMARY STEPS

1. enable

2. configure terminal

3. interface satellite slot/0

4. ip address dhcp [client-id interface-name] [hostname host-name]

5. end

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 3 

interface satellite slot/0

Example:

Router(config)# interface satellite 1/0

Enters satellite interface configuration mode.

Step 4 

ip address dhcp [client-id interface-name] [hostname host-name]

Example:

Router(config-if)# ip address dhcp

Obtains the IP address of the interface from the VSAT module using DHCP.

Step 5 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

What to Do Next

Proceed to the "Verifying Satellite Network Connectivity for the NM-1VSAT-GILAT Network Module" section.

Compatibility Between Local Configuration and Configuration from the Hub

If you attempt to configure the satellite interface locally with an address that does not match the address that has already been configured at the hub, the hub address will take precedence, and an error message describing the condition will be generated. To configure the IP address locally, the VSAT IP address at the hub should be configured to 0.0.0.0.

Verifying Satellite Network Connectivity for the NM-1VSAT-GILAT Network Module

This section describes how to verify that your router can connect to the satellite communications network using the NM-1VSAT-GILAT network module.

Prerequisites

Complete the tasks in these sections:

Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module

Configuring IP Addresses Locally, or Configuring IP Addresses from the Hub

SUMMARY STEPS

1. enable

2. service-module satellite slot/0 status

3. ping {host-name | ip-address} source lan-ip-address
or
telnet {host-name | ip-address}
or
traceroute

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

service-module satellite slot/0 status

Example:

Router# service-module satellite 1/0 status

Displays status information related to the hardware and software on the NM-1VSAT-GILAT network module.

Verify that the output says:

In Dial Backup: NO

Standby: NO

BackBone Status: Up

Step 3 

ping {host-name | ip-address} source lan-ip-address


or

telnet {host-name | ip-address}


or

traceroute

Example:

Router# ping 172.16.0.4 source 10.2.0.1

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

These commands attempt to reach a destination on the other side of the satellite link to verify that the satellite link is up.

Note If you use the ping or traceroute command, you must specify the source IP address as the IP address of a LAN interface on your router.1

1 Use the IP address of any interface on your router except for the IP addresses assigned to the NM-1VSAT-GILAT network module and to the router satellite interface.

Examples

This section provides the following examples:

service-module satellite status Command: Sample Output

ping Command: Sample Output

traceroute Command: Sample Output

service-module satellite status Command: Sample Output

The following example shows that the backbone link to the hub is up, and that the NM-1VSAT-GILAT network module is not in hub dial backup mode or in Hot Standby Router Protocol (HSRP) standby mode. This means that the NM-1VSAT-GILAT network module has, in fact, established a connection to the hub over the satellite link (air).

Router# service-module satellite 1/0 status 

Getting status from the satellite module, please wait..

Software Versions, OS: 15.4.5.12, RSP: 3.4.5.5, MBC: 2.0.4.3
HW Version: 00008000
CPA Number: 6101, DPS CPA: 5
Workgroup: 257, SW Group: 513, Download: YES
Service Module Uptime: 00:00:55, Router Uptime: 3 days, 22 hours, 3 minutes
Current router clocktime: *03:13:01.924 UTC Tue Mar 5 2002
Oper Mode: OPERATIONAL, In Dial Backup: NO, Standby: NO
RBCP Received Packets: 14, RBCP Sent Packets: 13
Eb/No: 10.9483, Flags: 0x0007
IP Address/Mask: 9.0.0.1/255.255.255.252
Service Module MAC: 00:A0:AC:06:14:ED
RX Lock: LOCKED, Sync Lock: LOCKED
BackBone Status: UP, Two-Way Mode: YES, Access Mode: RA
Outbound Modulation Type: DVB, OB Code Rate: 3/4
Outbound Unicast Packets: 0, OB Multicast Packets: 0
Outbound ID: 2, OB PID: 514, OB Freq: 1201000, OB Bit Rate: 30000000
Outbound Sync IP address: 172.2.0.3
Inbound Start Freq: 1190140, IB Stop Freq: 1193710
Inbound Data Rate: 768000, IB Freq Offset: 0
Inbound Packets: 0
BackBone Received Packets: 0, BB Sent: 2
BackBone Received Retransmitted: 0, BB Sent Retrans: 0
Service Module Eth RX: 3, TX: 0
Service Module Eth Multicast RX: 3, Multicast TX: 0
Bufs Configured: 1500, Bufs Free: 1449
Internal Software State parameters:
   Service Module SW State Var: 3
   General IOS FSM: LINK_UP, HSRP FSM: N/A, HSRP VSAT Mode: N/A
   Lost Beats Total: 53, Lost Beats This Retry: 0
VOIP DA calls:
 NONE

ping Command: Sample Output

The following example shows the outcome of a successful ping command to a destination on the other side of the satellite link. The specified source IP address belongs to the router LAN interface.

Router# show running-config interface fastethernet0/0 

Building configuration...

Current configuration:110 bytes
!
interface FastEthernet0/0
 ip address 10.2.0.1 255.255.255.0
 load-interval 30
 speed 100
 full-duplex
end

Router# ping 172.16.0.4 source 10.2.0.1 

Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 172.16.0.4, timeout is 2 seconds:
Packet sent with a source address of 10.2.0.1
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 136/147/160 ms
Router#

traceroute Command: Sample Output

The following example shows the outcome of a successful traceroute command to a destination on the other side of the satellite link or hub dial backup link. The source IP address belongs to the router LAN interface.

Router# traceroute 

Protocol [ip]:
Target IP address: 172.16.0.4 
Source address: 10.2.0.1 
Numeric display [n]:
Timeout in seconds [3]:
Probe count [3]:
Minimum Time to Live [1]:
Maximum Time to Live [30]:
Port Number [33434]:
Loose, Strict, Record, Timestamp, Verbose[none]:
Type escape sequence to abort.
Tracing the route to 172.16.0.4

  1  *  *  *
  2  *  *  *
  3 192.168.1.5 148 msec 140 msec 160 msec
  4 172.17.5 140 msec 160 msec 140 msec
  5 172.16.0.4 160 msec *  152 msec

Troubleshooting Tips

If the ping and traceroute commands fail to reach a destination on the other side of the satellite link, make sure that you specify a source IP address that is not configured on the satellite interface. We recommend using the IP address of a LAN interface on your router, such as a Fast Ethernet interface, as the source IP address for the ping and traceroute commands.

Check the LEDs on the NM-1VSAT-GILAT network module faceplate. See the "NM-1VSAT-GILAT Network Module LEDs" section.

See the "Troubleshooting Satellite Network Connectivity for the NM-1VSAT-GILAT Network Module" section.

What to Do Next

Proceed to the "Enabling or Disabling VSAT Route Update Messages to the Hub from the NM-1VSAT-GILAT Network Module" section.

Troubleshooting Satellite Network Connectivity for the NM-1VSAT-GILAT Network Module

This section describes how to use the Cisco IOS CLI to troubleshoot failure of the router to connect to the satellite communications network using the NM-1VSAT-GILAT network module.

You can also check the LEDs on the NM-1VSAT-GILAT network module faceplate to troubleshoot satellite network connectivity. See the "NM-1VSAT-GILAT Network Module LEDs" section.

Prerequisites

Before using debug commands, read and understand the Important Information on Debug Commands document.

SUMMARY STEPS

1. enable

2. service-module satellite slot/0 status

3. show

4. debug satellite rbcp

5. debug satellite errors

6. debug satellite events

7. debug scp {data | async | errors | timeouts | packets | all}

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

service-module satellite slot/0 status

Example:

Router# service-module satellite 1/0 status

Displays status information related to the hardware and software on the NM-1VSAT-GILAT network module.

Determine whether the link to the hub (BackBone Status) is UP or DOWN. You may need to wait a minute for the system to complete the reset process. The process is complete when the operational mode (Oper Mode) is OPERATIONAL instead of BOOT.

If the BackBone Status remains DOWN, then proceed to Step 3.

Step 3 

show

Example:

Router(sat-init-config)# show

Displays the initial configuration parameters for the NM-1VSAT-GILAT network module.

Verify that you configured the initial VSAT parameters correctly. See the "Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module" section.

If the initial VSAT parameters are correctly configured, then proceed to Step 4.

Step 4 

debug satellite rbcp

Example:

Router# debug satellite rbcp

Displays Router Blade Configuration Protocol (RBCP) management messages between Cisco IOS software and the network module.

Verify communication between the router and the NM-1VSAT-GILAT network module.

If messages are being sent between the router and the NM-1VSAT-GILAT network module, then continue.

Step 5 

debug satellite errors

Example:

Router# debug satellite errors

(Optional) Displays satellite link error conditions.

This command is useful for detecting unusual conditions when troubleshooting unexpected behavior.

Because this command typically generates very little output, you can enter the command every time you troubleshoot satellite network connectivity.

Step 6 

debug satellite events

Example:

Router# debug satellite events

(Optional) Displays debug information for software events, such as the periodic heartbeats from the NM-1VSAT-GILAT network module to the Cisco IOS software on the router.

Step 7 

debug scp {data | async | errors | timeouts | packets | all}

Example:

Router# debug scp all

(Optional) Displays management messages between Cisco IOS software and the network module that are more detailed than the debug satellite rbcp command output.

Note If a content engine (CE) network module is installed in the same router, the debug scp command displays management messages for both the Cisco IP VSAT satellite WAN network module (NM-1VSAT-GILAT) and the CE network module (NM-CE-BP).

Examples

This section provides the following examples:

service-module satellite status Command: Sample Output

show (satellite initial configuration) Command: Sample Output

debug satellite rbcp Command: Sample Output

debug satellite events Command: Sample Output

debug satellite scp Command: Sample Output

service-module satellite status Command: Sample Output

The following example shows that the NM-1VSAT-GILAT network module is in boot mode after a reset, so that the link to the hub (BackBone Status) is down. In this situation, you need to wait until the NM-1VSAT-GILAT network module completes the boot process.

Router# service-module satellite 1/0 status 

Getting status from the satellite module, please wait..

Software Versions, OS: 15.4.5.12, RSP: 0.0.0.0, MBC: 2.0.4.3
HW Version: 00008000
CPA Number: 6103, DPS CPA: 0
Workgroup: 257, SW Group: 513, Download: YES
Service Module Uptime: 00:00:20, Router Uptime: 4 days, 4 hours, 29 minutes
Current router clocktime: *19:07:35.935 UTC Tue Jul 11 2006
Oper Mode: BOOT, In Dial Backup: NO, Standby: NO
RBCP Received Packets: 0, RBCP Sent Packets: 0
Eb/No: 10.9283, Flags: 0xEEEE
IP Address/Mask: 0.0.0.0/0.0.0.0
Service Module MAC: 00:A0:AC:06:15:00
RX Lock: LOCKED, Sync Lock: NOT LOCKED
BackBone Status: DOWN, Two-Way Mode: YES, Access Mode: INVALID
Outbound Modulation Type: DVB, OB Code Rate: 3/4
Outbound Unicast Packets: 0, OB Multicast Packets: 0
Outbound ID: 2, OB PID: 514, OB Freq: 1201000, OB Bit Rate: 30000000
.
.
.

show (satellite initial configuration) Command: Sample Output

The following example shows the satellite initial configuration parameters:

Router(sat-init-config)# show 
!
! Initial Configuration Parameters:
!
id aa-group 298
id software group 598
id vsat 6201
mode download
mode two-way
outbound data-pid 514
outbound data-rate 15000000
outbound frequency 1201000
outbound id 2
outbound modulation-type DVB
outbound sync ip address 172.22.0.3
outbound viterbi-rate 1/2
!
!
Router(sat-init-config)#

debug satellite rbcp Command: Sample Output

With the debug satellite rbcp command enabled, you can verify communication between the router and the NM-1VSAT-GILAT network module by monitoring RBCP messages between the Cisco IOS software and the NM-1VSAT-GILAT network module. In the following example, the NM-1VSAT-GILAT network module requests updates to the routing table, and the router responds to the request.

Router# debug satellite rbcp 
...

The NM-1VSAT-GILAT network module requests IP route information:

*May 16 09:18:54.475:Satellite1/0 RBCP Request msg Recd:IPROUTE_REQ(0x22)

The Cisco IOS software acknowledges that it received the message from the NM-1VSAT-GILAT network module:

*May 16 09:18:54.475:Satellite1/0 RBCP Response msg Sent:IPROUTE_REQ(0x22)

The Cisco IOS software sends the IP route information to the NM-1VSAT-GILAT network module:

*May 16 09:18:54.475:Satellite1/0 RBCP Request msg Sent:IPROUTE_UPD(0x23)

The NM-1VSAT-GILAT network module acknowledges that it received the routing update from the Cisco IOS software:

*May 16 09:18:54.475:Satellite1/0 RBCP Response msg Recd:IPROUTE_UPD(0x23)

debug satellite events Command: Sample Output

The following example shows how to monitor the periodic heartbeats that the NM-1VSAT-GILAT network module sends to the Cisco IOS software:

Router# debug satellite events 

satellite major software events debugging is on
*May 16 09:32:15.575:Satellite1/0 FSM transition LINK_UP-->LINK_UP, ev=got_heartbeat
*May 16 09:32:32.363:Satellite1/0 FSM transition LINK_UP-->LINK_UP, ev=got_heartbeat

debug satellite scp Command: Sample Output

The following example shows management messages between the Cisco IOS software on the router and the NM-1VSAT-GILAT network module.

Router# debug scp all 

*Aug 31 09:26:19.221:scp-rx:SA:01/02 DA:0F/02 Op:0071 Sq:0D15 Ln:0014 I:00
*Aug 31 09:26:19.221:000:10 00 00 03 00 00 00 02 00 0E 0D 08 00 0E 0D 08 ................
*Aug 31 09:26:19.225:010:00 00 00 01                                     ....
*Aug 31 09:26:19.229:scp-tx:SA:0F/02 DA:01/02 Op:0071 Sq:0D15 Ln:0014 I:01
*Aug 31 09:26:19.229:000:00 00 9C 40 00 00 00 02 00 0E 0D 08 00 0E 0D 08 ...@............
*Aug 31 09:26:19.233:010:00 00 00 01                                     ....
*Aug 31 09:26:30.492:scp-rx:SA:01/02 DA:0F/02 Op:0022 Sq:0D17 Ln:0000 I:00
*Aug 31 09:26:30.492:scp-rx:SA:01/02 DA:0F/02 Op:0026 Sq:0D18 Ln:0000 I:00
*Aug 31 09:26:30.492:scp-tx:SA:0F/02 DA:01/02 Op:0022 Sq:0D17 Ln:0000 I:01
*Aug 31 09:26:30.504:scp-tx:SA:0F/02 DA:01/02 Op:0023 Sq:9DC1 Ln:0018 I:00
*Aug 31 09:26:30.504:000:00 00 00 01 00 00 00 01 08 7B 60 00 FF FF FF 00 .........{`.....
*Aug 31 09:26:30.508:010:3E 01 00 06 00 00 00 01                         >.......
*Aug 31 09:26:30.508:scp-rx:SA:01/02 DA:0F/02 Op:0023 Sq:9DC1 Ln:0018 I:01
*Aug 31 09:26:30.508:000:00 00 00 01 00 00 00 01 08 7B 60 00 FF FF FF 00 .........{`.....
*Aug 31 09:26:30.512:010:3E 01 00 06 00 00 00 01                         >.......
*Aug 31 09:26:30.508:scp-tx:SA:0F/02 DA:01/02 Op:0026 Sq:0D18 Ln:0000 I:01
*Aug 31 09:26:30.516:scp-tx:SA:0F/02 DA:01/02 Op:0027 Sq:9DC2 Ln:0008 I:00
*Aug 31 09:26:30.516:000:00 00 00 00 00 00 00 00                         ........
*Aug 31 09:26:30.520:scp-rx:SA:01/02 DA:0F/02 Op:0027 Sq:9DC2 Ln:0008 I:01
*Aug 31 09:26:30.524:000:00 00 00 00 00 00 00 00                         ........
*Aug 31 09:26:36.009:scp-rx:SA:01/02 DA:0F/02 Op:0071 Sq:0D1A Ln:0014 I:00
*Aug 31 09:26:36.009:000:10 00 00 03 00 00 00 02 00 0E 0D 0D 00 0E 0D 0D ................
*Aug 31 09:26:36.009:010:00 00 00 01                                     ....
*Aug 31 09:26:36.013:scp-tx:SA:0F/02 DA:01/02 Op:0071 Sq:0D1A Ln:0014 I:01
*Aug 31 09:26:36.013:000:00 00 9C 40 00 00 00 02 00 0E 0D 0D 00 0E 0D 0D ...@............

Enabling or Disabling VSAT Route Update Messages to the Hub from the NM-1VSAT-GILAT Network Module

By default, when a change occurs in the routing table, the router sends RBCP messages to the NM-1VSAT-GILAT network module. In turn, the NM-1VSAT-GILAT network module sends the route updates to the hub, which has a routing database that includes the routing table of every VSAT router in the satellite network.

This section describes how to disable or, if already disabled, how to enable the route update messages to the hub. Disabling the route update messages conserves satellite link bandwidth when the hub does not need to know the entire routing table of the VSAT router. For example, if you enable Network Address Translation (NAT) on the VSAT router, the hub should not learn the NAT local addresses.

Prerequisites

Complete the tasks in these sections:

Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module

Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module

Restrictions

If you enable NAT on the VSAT router, then you must disable route update messages to the hub.

If you disable route update messages to the hub, then the hub must learn the remote VSAT routing database through one of the following methods:

You use RIPv2 as the only routing protocol on your VSAT router. The hub can understand and track RIPv2 route updates.

On the hub router, configure static routes to the VSAT router networks.

SUMMARY STEPS

1. enable

2. configure terminal

3. interface satellite slot/0

4. no service-module routing redistribute
or
service-module routing redistribute

5. end

6. show running-config

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 3 

interface satellite slot/0

Example:

Router(config)# interface satellite 1/0

Enters satellite interface configuration mode.

Step 4 

no service-module routing redistribute


or

service-module routing redistribute

Example:

Router(config-if)# no service-module routing redistribute

Disables VSAT route update messages to the hub.

or

Enables VSAT route update messages to the hub.

Step 5 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

Step 6 

show running-config

Example:

Router# show running-config

Displays the running configuration.

Verify your configuration.

If you disabled VSAT route update messages, then the no service-module routing redistribute command appears in the satellite interface configuration.

If you enabled VSAT route update messages, then the command does not appear in the configuration because that is the default setting.

Examples

A configuration example follows.

Disabling VSAT Route Update Messages to the Hub: Example

In the following example, the VSAT router does not send route update messages to the hub:

!
interface Satellite 1/0
 ip address 10.0.0.6 255.255.255.0
 service-module ip address 10.0.0.1 255.255.255.0
 no service-module routing redistribute
!

Configuring Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link

When you use the NM-1VSAT-GILAT network module to provide your primary network connectivity over the satellite link, you can set up a backup terrestrial link in either hub dial backup mode or router dial backup mode. This section describes how to configure hub dial backup mode.

For information about router dial backup mode, see the "Configuring Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link" section.

Hub Dial Backup Mode

Hub dial backup mode maintains TCP connections during transitions between primary and backup links. Note, however, that hub dial backup mode provides backup for the satellite link, but not for the NM-1VSAT-GILAT network module hardware, the router satellite interface, or other router interfaces.

If the satellite link goes down (for example, because of rain fade) in hub dial backup mode, the NM-1VSAT-GILAT network module connects to the hub using dial-on-demand routing (DDR). Common DDR backup links use ISDN BRIs, modems on auxiliary ports, and T1/E1 lines.

The NM-1VSAT-GILAT network module always encapsulates packets using a satellite backbone protocol before sending the packets over the satellite link. In hub dial backup mode, the NM-1VSAT-GILAT network module continues to encapsulate the packets using the satellite backbone protocol before sending the packets over the dial backup link to the hub; this is how hub dial backup mode maintains TCP connections during transitions between the primary satellite link and the dial backup link. Therefore, hub dial backup mode works only when the NM-1VSAT-GILAT network module itself is functioning properly.

Figure 5 shows a sample network topology for hub dial backup mode.

Figure 5 Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link—Sample Network Topology

Prerequisites

Configure the WAN interface or dial-up modem for the backup link. See the Cisco IOS Dial Technologies Configuration Guide, the Cisco IOS Interface and Hardware Component Configuration Guide, or the Cisco IOS Wide-Area Networking Configuration Guide.

Configure the remote access server (RAS) at the hub to accept calls from the VSAT router in which the NM-1VSAT-GILAT network module is installed.

Configure the IP addresses for the router satellite interface and the NM-1VSAT-GILAT network module. See the "Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module" section.

On the VSAT router, configure a static route to the hub network that contains the dial backup server. Typically, an installation technician configures hub dial backup mode, including the static route to the dial backup server. If you need to configure hub dial backup mode yourself, then get the dial backup server network address from your satellite service provider.

Restrictions

Hub dial backup mode works only when the NM-1VSAT-GILAT network module itself is functioning properly. Therefore, hub dial backup mode provides backup for the satellite link, but not for the satellite interface or the NM-1VSAT-GILAT network module hardware.

Do not configure hub dial backup if you are using a homogeneous HSRP setup. Hub dial backup mode is not compatible with homogeneous HSRP, which is described in the "Configuring HSRP Redundancy for the NM-1VSAT-GILAT Network Module" section.

SUMMARY STEPS

1. enable

2. configure terminal

3. interface satellite slot/0

4. service-module backup interface interface-type interface-number

5. service-module backup mode hub

6. exit

7. ip route backup-server-prefix mask backup-interface-type backup-interface-number

8. end

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 3 

interface satellite slot/0

Example:

Router(config)# interface satellite 1/0

Enters satellite interface configuration mode.

Step 4 

service-module backup interface interface-type interface-number

Example:

Router(config-if)# service-module backup interface bri 0/0

Defines the interface to use as backup to the satellite link.

Step 5 

service-module backup mode hub

Example:

Router(config-if)# service-module backup mode hub

Specifies hub dial backup mode.

Step 6 

exit

Example:

Router(config-if)# exit

Exits satellite interface configuration mode.

Step 7 

ip route backup-server-prefix mask backup-interface-type backup-interface-number

Example:

Router(config)# ip route 192.168.255.0 255.255.255.0 bri 0/0

Establishes a static route through the backup interface to the hub dial backup server network.

Step 8 

end

Example:

Router(config)# end

Returns to privileged EXEC mode.

What to Do Next

Proceed to the "Verifying Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link" section.

Verifying Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link

This section describes how to verify successful configuration of a backup terrestrial link in hub dial backup mode when you use the NM-1VSAT-GILAT network module to provide your primary network connectivity over the satellite link.

Prerequisites

Complete the task described in the "Configuring Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link" section.

SUMMARY STEPS

1. enable

2. ping {host-name | ip-address} source lan-ip-address
or
telnet {host-name | ip-address}
or
traceroute

3. service-module satellite slot/0 backup initiate
or
Disconnect the external power supply from the ODU PWR connector on the NM-1VSAT-GILAT network module.

4. service-module satellite slot/0 status

5. ping {host-name | ip-address} source lan-ip-address
or
telnet {host-name | ip-address}
or
traceroute

6. service-module satellite slot/0 backup terminate
or
Reconnect the external power supply to the ODU PWR connector on the NM-1VSAT-GILAT network module.

7. service-module satellite slot/0 status

8. ping {host-name | ip-address} source lan-ip-address
or
telnet {host-name | ip-address}
or
traceroute

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

ping {host-name | ip-address} source lan-ip-address


or

telnet {host-name | ip-address}


or

traceroute

Example:

Router# ping 172.16.0.4 source 10.2.0.1

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

Attempt to reach a destination on the other side of the satellite link to verify that the satellite link is up.

Note If you use the ping or traceroute command, you must specify the source IP address as the IP address of a LAN interface on your router.1

Step 3 

service-module satellite slot/0 backup initiate


or

Disconnect the external power supply from the ODU PWR connector on the NM-1VSAT-GILAT network module.

Example:

Router# service-module satellite 1/0 backup initiate

Initiates a test of the hub dial backup link for the NM-1VSAT-GILAT network module.

or

Brings down the satellite link by cutting off power to the dish antenna.

Step 4 

service-module satellite slot/0 status

Example:

Router# service-module satellite 1/0 status

Displays status information related to the hardware and software on the NM-1VSAT-GILAT network module.

Verify that the output says, "In Dial Backup: YES" and "BackBone Status: Up."

Step 5 

ping {host-name | ip-address} source lan-ip-address


or

telnet {host-name | ip-address}


or

traceroute

Example:

Router# ping 172.16.0.4 source 10.2.0.1

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

Attempt to reach a destination on the other side of the satellite link to verify that the dial backup link is up.

Note If you use the ping or traceroute command, you must specify the source IP address as the IP address of a LAN interface on your router.1

Step 6 

service-module satellite slot/0 backup terminate


or

Reconnect the external power supply to the ODU PWR connector on the NM-1VSAT-GILAT network module.

Example:

Router# service-module satellite 1/0 backup terminate

Terminates the test of the hub dial backup link for the NM-1VSAT-GILAT network module.

or

Brings up the satellite link by reconnecting power to the dish antenna.

Step 7 

service-module satellite slot/0 status

Example:

Router# service-module satellite 1/0 status

Displays status information related to the hardware and software on the NM-1VSAT-GILAT network module.

Verify that the output says, "In Dial Backup: NO" and "BackBone Status: Up."

Step 8 

ping {host-name | ip-address} source lan-ip-address


or

telnet {host-name | ip-address}


or

traceroute

Example:

Router# ping 172.16.0.4 source 10.2.0.1

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

Attempt to reach a destination on the other side of the satellite link to verify that the satellite link is up.

Note If you use the ping or traceroute command, you must specify the source IP address as the IP address of a LAN interface on your router.1

1 Use the IP address of any interface on your router except for the IP addresses assigned to the NM-1VSAT-GILAT network module and to the router satellite interface.

Examples

This section provides the following examples:

ping Command: Sample Output

traceroute Command: Sample Output

service-module satellite status Command: Sample Output

show interfaces summary Command: Sample Output

ping Command: Sample Output

The following example shows the outcome of a successful ping command to a destination on the other side of the satellite link or hub dial backup link. The source IP address belongs to the router LAN interface.

Router# show running-config interface fastethernet0/0 
Building configuration...

Current configuration:110 bytes
!
interface FastEthernet0/0
 ip address 10.2.0.1 255.255.255.0
 load-interval 30
 speed 100
 full-duplex
end

Router# ping 172.16.0.4 source 10.2.0.1 

Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 172.16.0.4, timeout is 2 seconds:
Packet sent with a source address of 10.2.0.1
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 136/147/160 ms

traceroute Command: Sample Output

The following example shows the outcome of a successful traceroute command to a destination on the other side of the satellite link or hub dial backup link. The source IP address belongs to the router LAN interface.

Router# traceroute 
Protocol [ip]:
Target IP address: 172.16.0.4 
Source address: 10.2.0.1 
Numeric display [n]:
Timeout in seconds [3]:
Probe count [3]:
Minimum Time to Live [1]:
Maximum Time to Live [30]:
Port Number [33434]:
Loose, Strict, Record, Timestamp, Verbose[none]:
Type escape sequence to abort.
Tracing the route to 172.16.0.4

  1  *  *  *
  2  *  *  *
  3 192.168.1.5 148 msec 140 msec 160 msec
  4 172.17.5 140 msec 160 msec 140 msec
  5 172.16.0.4 160 msec *  152 msec

service-module satellite status Command: Sample Output

The following example shows that the NM-1VSAT-GILAT network module is using dial backup to connect to the hub:

Router# service-module satellite 1/0 status 
Getting status from the satellite module, please wait..

Software Versions, OS: 15.4.5.12, RSP: 3.4.5.5, MBC: 2.0.4.3
HW Version: 00008000
CPA Number: 6101, DPS CPA: 5
Workgroup: 257, SW Group: 513, Download: YES
Service Module Uptime: 00:00:55, Router Uptime: 3 days, 22 hours, 3 minutes
Current router clocktime: *03:13:01.924 UTC Tue Mar 5 2002
Oper Mode: OPERATIONAL, In Dial Backup: YES, Standby: NO
RBCP Received Packets: 14, RBCP Sent Packets: 13
Eb/No: 10.9483, Flags: 0x0007
IP Address/Mask: 9.0.0.1/255.255.255.252
Service Module MAC: 00:A0:AC:06:14:ED
RX Lock: LOCKED, Sync Lock: LOCKED
BackBone Status: UP, Two-Way Mode: YES, Access Mode: RA
Outbound Modulation Type: DVB, OB Code Rate: 3/4
Outbound Unicast Packets: 0, OB Multicast Packets: 0
Outbound ID: 2, OB PID: 514, OB Freq: 1201000, OB Bit Rate: 30000000
Outbound Sync IP address: 172.2.0.3
Inbound Start Freq: 1190140, IB Stop Freq: 1193710
Inbound Data Rate: 768000, IB Freq Offset: 0
Inbound Packets: 0
BackBone Received Packets: 0, BB Sent: 2
BackBone Received Retransmitted: 0, BB Sent Retrans: 0
Service Module Eth RX: 3, TX: 0
Service Module Eth Multicast RX: 3, Multicast TX: 0
Bufs Configured: 1500, Bufs Free: 1449
Internal Software State parameters:
   Service Module SW State Var: 3
   General IOS FSM: LINK_UP, HSRP FSM: N/A, HSRP VSAT Mode: N/A
   Lost Beats Total: 53, Lost Beats This Retry: 0
VOIP DA calls:
  NONE

show interfaces summary Command: Sample Output

The following example shows interface packet counters while the hub dial backup link is in use and working properly. Notice that the number of packets that pass through the satellite interface is twice the number of packets that pass through the dial backup interface.

The NM-1VSAT-GILAT network module always encapsulates packets using a satellite backbone protocol before sending the packets over the satellite link. In hub dial backup mode, the NM-1VSAT-GILAT network module continues to encapsulate the packets using the satellite backbone protocol before sending the packets over the dial backup link to the hub; this is how hub dial backup mode maintains TCP connections during transitions between the primary satellite link and the dial backup link. Therefore, all packets from the VSAT to the hub over the dial backup link still need to enter and exit the NM-1VSAT-GILAT network module, even when the satellite link is down because of a rain-fade event.

Router# show interfaces summary 

 *:interface is up
 IHQ:pkts in input hold queue     IQD:pkts dropped from input queue
 OHQ:pkts in output hold queue    OQD:pkts dropped from output queue
 RXBS:rx rate (bits/sec)          RXPS:rx rate (pkts/sec)
 TXBS:tx rate (bits/sec)          TXPS:tx rate (pkts/sec)
 TRTL:throttle count

  Interface              IHQ   IQD  OHQ   OQD  RXBS RXPS  TXBS TXPS TRTL
------------------------------------------------------------------------
  Async1                   0     0    0     0     0    0     0    0    0
* FastEthernet0/0          0     0    0     0  1000    1  1000    1    0
* BRI0/0                   0     0    0     0     0    0     0    0    0
* BRI0/0:1                 0     0    0     0  1000    1  1000    1    0
  BRI0/0:2                 0     0    0     0     0    0     0    0    0
  Async2                   0     0    0     0     0    0     0    0    0
  FastEthernet0/1          0     0    0     0     0    0     0    0    0
  Serial0/2                0     0    0     0     0    0     0    0    0
  Serial0/3                0     0    0     0     0    0     0    0    0
* Satellite1/0             0     0    0     0  2000    2  2000    2    0
* Virtual-Access1          0     0    0     0  1000    1  1000    1    0
NOTE:No separate counters are maintained for subinterfaces
     Hence details of subinterface are not shown

Troubleshooting Tips

If the ping and traceroute commands fail to reach a destination on the other side of the satellite link, make sure that you specify a source IP address that is not configured on the satellite interface. We recommend using the IP address of a LAN interface on your router, such as a Fast Ethernet interface, as the source IP address for the ping and traceroute commands.

If you view interface packet counters, such as those that appear in show interfaces summary command output, the satellite interface displays twice as many packets as the dial backup interface while the hub dial backup link is in use and working properly. See the "show interfaces summary Command: Sample Output" section.

Make sure that your backup terrestrial link is working properly. See the Cisco IOS Dial Technologies Configuration Guide, the Cisco IOS Interface and Hardware Component Configuration Guide, or the Cisco IOS Wide-Area Networking Configuration Guide.

Configuring Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link

When you use the NM-1VSAT-GILAT network module to provide your primary network connectivity over the satellite link, you can set up a backup terrestrial link in either hub dial backup mode or router dial backup mode. This section describes how to configure router dial backup mode.

For information about hub dial backup mode, see the "Configuring Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link" section.

Router Dial Backup Mode

If the satellite link goes down in router dial backup mode, the router uses dial-on-demand routing (DDR) to send data out a different interface. Common DDR backup links use ISDN BRIs, modems on auxiliary ports, and T1/E1 lines.

Unlike hub dial backup mode, router dial backup mode does these things:

Tears down and reestablishes TCP connections during transitions between primary and backup links

Does not require that the NM-1VSAT-GILAT network module work properly while the backup link is in use

Figure 6 shows a sample network topology for router dial backup mode.

Figure 6 Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link—Sample Network Topology

Prerequisites

Configure the WAN interface or dial-up modem for the backup link. See the Cisco IOS Dial Technologies Configuration Guide, the Cisco IOS Interface and Hardware Component Configuration Guide, or the Cisco IOS Wide-Area Networking Configuration Guide.

Configure the dial peer router (that connects to an intranet or the Internet) to accept calls from the VSAT router in which the NM-1VSAT-GILAT network module is installed.

Configure the IP addresses for the router satellite interface and the NM-1VSAT-GILAT network module. See the "Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module" section.

Perform one of the following tasks in this section, depending on your preferred method of configuration:

Configuring Router Dial Backup by Using a Floating Static Route

Configuring Router Dial Backup by Using a Backup Interface

Configuring Router Dial Backup by Using a Floating Static Route

This section describes how to use a floating static route to configure a selected interface as the backup to the satellite interface.

In general, floating static routes are static routes that are used to back up other static routes or dynamic routes learned through configured routing protocols. A floating static route is configured with a less efficient administrative distance than the routing protocol or static route it is backing up. As a result, the preferred static route or dynamic route learned through the routing protocol is always used in preference to the floating static route. If the preferred static route or dynamic route is lost, the floating static route will be used in its place.

For more general information about floating static routes, see these tech notes:

Sample Configuration: Using Floating Static Routes and Dial-on-Demand Routing

Evaluating Backup Interfaces, Floating Static Routes, and Dialer Watch for DDR Backup

SUMMARY STEPS

1. enable

2. configure terminal

3. interface satellite slot/0

4. service-module backup mode router

5. exit

6. ip route prefix mask {ip-address | interface-type interface-number} distance

7. end

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 3 

interface satellite slot/0

Example:

Router(config)# interface satellite 1/0

Enters satellite interface configuration mode.

Step 4 

service-module backup mode router

Example:

Router(config-if)# service-module backup mode router

Specifies router dial backup mode.

Note Because router dial backup mode is the default setting for this command, this command does not appear in the router configuration.

Step 5 

exit

Example:

Router(config-if)# exit

Exits satellite interface configuration mode.

Step 6 

ip route prefix mask {ip-address | interface-type interface-number} distance

Example:

Router(config)# ip route 0.0.0.0 0.0.0.0 BRI0/0 200

Establishes a static route and defines the next hop.

By specifying an administrative distance, you flag the static route as one that can be overridden by a static or dynamic route with a lower administrative distance.

Enter an administrative distance that is greater than the administrative distance of the satellite link.

Step 7 

end

Example:

Router(config)# end

Returns to privileged EXEC mode.

What to Do Next

Proceed to the "Verifying Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link" section.

Configuring Router Dial Backup by Using a Backup Interface

This section describes how to configure a selected interface as the backup interface for the primary satellite interface. A backup interface is an interface that stays idle until the primary line goes down; then it is activated.

For more general information about backup interfaces, see the Evaluating Backup Interfaces, Floating Static Routes, and Dialer Watch for DDR Backup tech note.

SUMMARY STEPS

1. enable

2. configure terminal

3. interface satellite slot/0

4. service-module backup mode router

5. backup interface interface-type interface-number

6. end

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 3 

interface satellite slot/0

Example:

Router(config)# interface satellite 1/0

Enters satellite interface configuration mode.

Step 4 

service-module backup mode router

Example:

Router(config-if)# service-module backup mode router

Specifies router dial backup mode.

Step 5 

backup interface interface-type interface-number

Example:

Router(config-if)# backup interface bri 0/0

Defines the interface to use as backup to the satellite link.

Step 6 

end

Example:

Router(config)# end

Returns to privileged EXEC mode.

What to Do Next

Proceed to the "Verifying Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link" section.

Verifying Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link

This section describes how to verify successful configuration of a backup terrestrial link in router dial backup mode when you use the NM-1VSAT-GILAT network module to provide your primary network connectivity over the satellite link.

Prerequisites

Complete one of the tasks in the "Configuring Router Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link" section.

SUMMARY STEPS

1. enable

2. ping {host-name | ip-address} source lan-ip-address
or
telnet {host-name | ip-address}
or
traceroute

3. Disconnect the external power supply from the ODU PWR connector on the NM-1VSAT-GILAT network module.

4. show interfaces satellite slot/0

5. ping {host-name | ip-address}
or
telnet {host-name | ip-address}
or
traceroute {host-name | ip-address}

6. Reconnect the external power supply to the ODU PWR connector on the NM-1VSAT-GILAT network module.

7. show interfaces satellite slot/0

8. ping {host-name | ip-address} source lan-ip-address
or
telnet {host-name | ip-address}
or
traceroute

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

ping {host-name | ip-address} source lan-ip-address


or

telnet {host-name | ip-address}


or

traceroute

Example:

Router# ping 172.16.0.4 source 10.2.0.1

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

Attempt to reach a destination on the other side of the satellite link to verify that the satellite link is up.

Note If you use the ping or traceroute command, you must specify the source IP address as the IP address of a LAN interface on your router.1

Step 3 

Disconnect the external power supply from the ODU PWR connector on the NM-1VSAT-GILAT network module.

Brings down the satellite link by cutting off power to the dish antenna.

Step 4 

show interfaces satellite slot/0

Example:

Router# show interfaces satellite 1/0

Displays general interface settings and traffic rates for the router satellite interface, which is the internal interface that connects the router to the installed NM-1VSAT-GILAT network module.

Verify that the output says, "Line protocol is down."

If the output says "Line protocol is up," then repeat this step until the output says, "Line protocol is down."

Step 5 

ping {host-name | ip-address}


or

telnet {host-name | ip-address}


or

traceroute {host-name | ip-address}

Example:

Router# ping 172.16.0.4

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

Attempt to reach a destination on the other side of the satellite link to verify that the dial backup link is up.

Step 6 

Reconnect the external power supply to the ODU PWR connector on the NM-1VSAT-GILAT network module.

Brings up the satellite link by reconnecting power to the dish antenna.

Step 7 

show interfaces satellite slot/0

Example:

Router# show interfaces satellite 1/0

Displays general interface settings and traffic rates for the router satellite interface, which is the internal interface that connects the router to the installed NM-1VSAT-GILAT network module.

Verify that the output says, "Line protocol is up."

If the output says "Line protocol is down," then repeat this step until the output says, "Line protocol is up."

Step 8 

ping {host-name | ip-address} source lan-ip-address


or

telnet {host-name | ip-address}


or

traceroute

Example:

Router# ping 172.16.0.4 source 10.2.0.1

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

These commands attempt to reach a destination on the other side of the satellite link to verify that the satellite link is up.

Note If you use the ping or traceroute command, you must specify the source IP address as the IP address of a LAN interface on your router.1

1 Use the IP address of any interface on your router except for the IP addresses assigned to the NM-1VSAT-GILAT network module and to the router satellite interface.

Examples

This section provides the following examples:

ping Command: Sample Output

traceroute Command: Sample Output

show interfaces satellite Command: Sample Output

ping Command: Sample Output

The following example shows the outcome of a successful ping command to a destination on the other side of the satellite link. The source IP address belongs to the router LAN interface.

Router# show running-config interface fastethernet0/0 

Building configuration...

Current configuration :110 bytes
!
interface FastEthernet0/0
 ip address 10.2.0.1 255.255.255.0
 load-interval 30
 speed 100
 full-duplex
end

Router# ping 172.16.0.4 source 10.2.0.1 

Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 172.16.0.4, timeout is 2 seconds:
Packet sent with a source address of 10.2.0.1
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 136/147/160 ms
Router#

traceroute Command: Sample Output

The following example shows the outcome of a successful traceroute command to a destination on the other side of the satellite link. The source IP address belongs to the router LAN interface.

Router# traceroute 

Protocol [ip]:
Target IP address: 172.16.0.4 
Source address: 10.2.0.1 
Numeric display [n]:
Timeout in seconds [3]:
Probe count [3]:
Minimum Time to Live [1]:
Maximum Time to Live [30]:
Port Number [33434]:
Loose, Strict, Record, Timestamp, Verbose[none]:
Type escape sequence to abort.
Tracing the route to 172.16.0.4

  1  *  *  *
  2  *  *  *
  3 192.168.1.5 148 msec 140 msec 160 msec
  4 172.17.5 140 msec 160 msec 140 msec
  5 172.16.0.4 160 msec *  152 msec

show interfaces satellite Command: Sample Output

The following example shows that the satellite link is up.

Router# show interfaces satellite 2/0 

Satellite1/0 is up, line protocol is up
  Hardware is I82559FE, address is 0008.e35f.7370 (bia 0008.e35f.7370)
  Internet address is 10.0.0.6/24
.
.
.

Troubleshooting Tips

Make sure that your backup terrestrial link is working properly. See the Cisco IOS Dial Technologies Configuration Guide, the Cisco IOS Interface and Hardware Component Configuration Guide, or the Cisco IOS Wide-Area Networking Configuration Guide.

Configuring NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link

This section describes how to configure the satellite link as a backup to a primary terrestrial link such as Frame Relay or DSL.

A backup satellite link provides a higher level of resiliency than modem or ISDN BRI backup links. If the cables of a primary link are severed in a "backhoe" event, then it is likely that all terrestrial circuits from the building are out of service. A satellite communications network provides total path diversity without the need to provide a second cable entrance facility.

Figure 7 shows a sample network topology for NM-1VSAT-GILAT network module satellite backup for a terrestrial link.

Figure 7 NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Sample Network Topology

Prerequisites

Configure the terrestrial link and verify network connectivity over that link.

Configure the IP addresses for router satellite interface and the NM-1VSAT-GILAT network module. See the "Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module" section.

If Cisco Express Forwarding is enabled on your router, then you must also enter the ip cef table adjacency-prefix validate command in global configuration mode.

Perform one of the following tasks in this section, depending on your preferred method of configuration:

Configuring Satellite Backup by Using a Floating Static Route

Configuring Satellite Backup by Using a Backup Interface

Configuring Satellite Backup by Using a Floating Static Route

This section describes how to use a floating static route to configure the satellite interface as a backup to another interface.

In general, floating static routes are static routes that are used to back up other static routes or dynamic routes learned through configured routing protocols. A floating static route is configured with a less efficient administrative distance than the routing protocol or static route it is backing up. As a result, the preferred static route or dynamic route learned through the routing protocol is always used in preference to the floating static route. If the preferred static route or dynamic route is lost, the floating static route will be used in its place.

For more general information about floating static routes, see the Evaluating Backup Interfaces, Floating Static Routes, and Dialer Watch for DDR Backup tech note.

SUMMARY STEPS

1. enable

2. configure terminal

3. ip route prefix mask satellite slot/0 distance

4. end

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 3 

ip route prefix mask satellite slot/0 distance

Example:

Router(config)# ip route 0.0.0.0 0.0.0.0 satellite 1/0 200

Establishes a static route and defines the next hop.

By specifying an administrative distance (such as 200 in the example), you flag the static route as one that can be overridden by a static or dynamic route with a lower administrative distance.

Enter an administrative distance that is greater than the administrative distance of the primary link.

Step 4 

end

Example:

Router(config)# end

Returns to privileged EXEC mode.

What to Do Next

Proceed to the "Verifying NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Floating Static Route" section.

Configuring Satellite Backup by Using a Backup Interface

This section describes how to configure the satellite interface as the backup interface for a selected primary interface. A backup interface is an interface that stays idle until the primary line goes down; then it is activated.

For more general information about backup interfaces, see the Evaluating Backup Interfaces, Floating Static Routes, and Dialer Watch for DDR Backup tech note.

SUMMARY STEPS

1. enable

2. configure terminal

3. interface type number

4. backup interface satellite slot/0

5. end

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 3 

interface type number

Example:

Router(config)# interface serial 0/2

Enters interface configuration mode.

Specify the primary interface that you want to back up with the satellite interface.

Note You can back up a subinterface, such as when you want to back up a Frame Relay link.

Step 4 

backup interface satellite slot/0

Example:

Router(config-if)# backup interface satellite 1/0

Configures the satellite interface as a backup interface.

Step 5 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

What to Do Next

Proceed to the "Verifying NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Backup Interface" section.

Verifying NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Floating Static Route

This section describes how to verify successful configuration of satellite backup for a terrestrial link by using a floating static route.

Prerequisites

Complete the task in the "Configuring NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link" section.

SUMMARY STEPS

1. enable

2. ping {host-name | ip-address}
or
telnet {host-name | ip-address}
or
traceroute {host-name | ip-address}

3. Disconnect the cables attached to the primary interface, and proceed to Step 8.
or
If you do not have physical access to the router, proceed to Step 4.

4. configure terminal

5. interface type number

6. shutdown

7. end

8. show interfaces satellite slot/0

9. ping {host-name | ip-address} source lan-ip-address
or
telnet {host-name | ip-address}
or
traceroute

10. Reconnect the cables attached to the primary interface, and proceed to Step 15.
or
If you do not have physical access to the router, proceed to Step 11.

11. configure terminal

12. interface type number

13. no shutdown

14. end

15. ping {host-name | ip-address}
or
telnet {host-name | ip-address}
or
traceroute {host-name | ip-address}

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

ping {host-name | ip-address}


or

telnet {host-name | ip-address}


or

traceroute {host-name | ip-address}

Example:

Router# ping 172.16.0.4

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

These commands attempt to reach a destination on the other side of the terrestrial link to verify that your primary link is up.

Step 3 

Disconnect the cables attached to the primary interface, and proceed to Step 8.

or

If you do not have physical access to the router, proceed to Step 4.

Physically brings down the terrestrial link.

or

Proceeds to instructions for disabling the interface.

Step 4 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 5 

interface type number

Example:

Router(config)# interface serial 0/2

Enters interface configuration mode.

Specify the primary interface or subinterface that you backed up with the satellite interface.

Step 6 

shutdown

Example:

Router(config-if)# shutdown

Disables the interface.

Step 7 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

Step 8 

show interfaces satellite slot/0

Example:

Router# show interfaces satellite 1/0

Displays general interface settings and traffic rates for the router satellite interface, which is the internal interface that connects the router to the installed NM-1VSAT-GILAT network module.

Verify that the output says, "Line protocol is up."

If the output says "Line protocol is down," then repeat this step until the output says, "Line protocol is up."

Step 9 

ping {host-name | ip-address} source lan-ip-address


or

telnet {host-name | ip-address}


or

traceroute

Example:

Router# ping 172.16.0.4 source 10.2.0.1

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

These commands attempt to reach a destination on the other side of the satellite link to verify that the satellite link is up.

Note If you use the ping or traceroute command, you must specify the source IP address as the IP address of a LAN interface on your router.1

Step 10 

Reconnect the cables attached to the primary interface, and proceed to Step 15.

or

If you do not have physical access to the router, proceed to Step 11.

Physically brings up the terrestrial link.

or

Proceeds to instructions for enabling the interface.

Step 11 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 12 

interface type number

Example:

Router(config)# interface serial 0/2

Enters interface configuration mode.

Specify the primary interface or subinterface that you backed up with the satellite interface.

Step 13 

no shutdown

Example:

Router(config-if)# no shutdown

Enables the interface.

Step 14 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

Step 15 

ping {host-name | ip-address}


or

telnet {host-name | ip-address}


or

traceroute {host-name | ip-address}

Example:

Router# ping 172.16.0.4

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

Attempt to reach a destination on the other side of the terrestrial link to verify that your primary link is up.

1 You can use the IP address of any interface on your router except for the IP addresses assigned to the NM-1VSAT-GILAT network module and to the router satellite interface.

Examples

This section provides the following examples:

ping Command: Sample Output

traceroute Command: Sample Output

ping Command: Sample Output

The following example shows the outcome of a successful ping command to a destination on the other side of the satellite link. The specified source IP address belongs to the router LAN interface.

Router# show running-config interface fastethernet0/0 

Building configuration...

Current configuration:110 bytes
!
interface FastEthernet0/0
 ip address 10.2.0.1 255.255.255.0
 load-interval 30
 speed 100
 full-duplex
end

Router# ping 172.16.0.4 source 10.2.0.1 

Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 172.16.0.4, timeout is 2 seconds:
Packet sent with a source address of 10.2.0.1
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 136/147/160 ms
Router#

traceroute Command: Sample Output

The following example shows the outcome of a successful traceroute command to a destination on the other side of the satellite link or hub dial backup link. The source IP address belongs to the router LAN interface.

Router# traceroute 

Protocol [ip]:
Target IP address: 172.16.0.4 
Source address: 10.2.0.1 
Numeric display [n]:
Timeout in seconds [3]:
Probe count [3]:
Minimum Time to Live [1]:
Maximum Time to Live [30]:
Port Number [33434]:
Loose, Strict, Record, Timestamp, Verbose[none]:
Type escape sequence to abort.
Tracing the route to 172.16.0.4

  1  *  *  *
  2  *  *  *
  3 192.168.1.5 148 msec 140 msec 160 msec
  4 172.17.5 140 msec 160 msec 140 msec
  5 172.16.0.4 160 msec *  152 msec

Troubleshooting Tips

If the ping and traceroute commands fail to reach a destination on the other side of the satellite link, make sure that you specify a source IP address that is not assigned to the router satellite interface or to the NM-1VSAT-GILAT network module. We recommend using the IP address of a LAN interface on your router, such as a Fast Ethernet interface, as the source IP address for the ping and traceroute commands.

Verifying NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link—Backup Interface

This section describes how to verify successful configuration of satellite backup for a terrestrial link by using a backup interface.

Prerequisites

Complete the task in the "Configuring NM-1VSAT-GILAT Network Module Satellite Backup for a Terrestrial Link" section.

Restrictions

Do not enter the shutdown command to bring down the primary interface. The primary interface must be administratively up for the specified backup interface to work.

SUMMARY STEPS

1. enable

2. ping {host-name | ip-address}
or
telnet {host-name | ip-address}
or
traceroute {host-name | ip-address}

3. Disconnect the cables attached to the primary interface and proceed to Step 9.
or
If you do not have physical access to the router, then access the Cisco IOS CLI of the router on the other end of the primary terrestrial link and proceed to Step 4.

4. configure terminal

5. interface type number

6. shutdown

7. end

8. Access the Cisco IOS CLI of the router in which the NM-1VSAT-GILAT network module is installed.

9. show interfaces satellite slot/0

10. ping {host-name | ip-address} source lan-ip-address
or
telnet {host-name | ip-address}
or
traceroute

11. Reconnect the cables attached to the primary interface, and proceed to Step 17.
or
If you do not have physical access to the router, then access the Cisco IOS CLI of the router on the other end of the primary terrestrial link and proceed to Step 12.

12. configure terminal

13. interface type number

14. no shutdown

15. end

16. Access the Cisco IOS CLI of the router in which the NM-1VSAT-GILAT network module is installed.

17. ping {host-name | ip-address}
or
telnet {host-name | ip-address}
or
traceroute {host-name | ip-address}

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

ping {host-name | ip-address}


or

telnet {host-name | ip-address}


or

traceroute {host-name | ip-address}

Example:

Router# ping 172.16.0.4

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

These commands attempt to reach a destination on the other side of the terrestrial link to verify that your primary link is up.

Step 3 

Disconnect the cables attached to the primary interface and proceed to Step 9.

or

If you do not have physical access to the router, then access the Cisco IOS CLI of the router on the other end of the primary terrestrial link and proceed to Step 4.

Physically brings down the terrestrial link.

or

Proceeds to instructions for disabling the terrestrial link by disabling the interface on the neighboring router that connects to the primary interface on which the backup interface command is entered.

Step 4 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 5 

interface type number

Example:

Router(config)# interface serial 0/2

Enters interface configuration mode.

Specify the primary interface or subinterface that you backed up with the satellite interface.

Step 6 

shutdown

Example:

Router(config-if)# shutdown

Disables the interface.

Step 7 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

Step 8 

Access the Cisco IOS CLI of the router in which the NM-1VSAT-GILAT network module is installed.

Step 9 

show interfaces satellite slot/0

Example:

Router# show interfaces satellite 1/0

Displays general interface settings and traffic rates for the router satellite interface, which is the internal interface that connects the router to the installed NM-1VSAT-GILAT network module.

Verify that the output says, "Line protocol is up."

If the output says "Line protocol is down," then repeat this step until the output says, "Line protocol is up."

Step 10 

ping {host-name | ip-address} source lan-ip-address


or

telnet {host-name | ip-address}


or

traceroute

Example:

Router# ping 172.16.0.4 source 10.2.0.1

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

Attempt to reach a destination on the other side of the satellite link to verify that the satellite link is up.

Note If you use the ping or traceroute command, you must specify the source IP address as the IP address of a LAN interface on your router.1

Step 11 

Reconnect the cables attached to the primary interface, and proceed to Step 17.

or

If you do not have physical access to the router, then access the Cisco IOS CLI of the router on the other end of the primary terrestrial link and proceed to Step 12.

Physically brings up the terrestrial link.

or

Proceeds to instructions for reenabling the terrestrial link by enabling the interface on the neighboring router that connects to the primary interface on which the backup interface command is entered.

Step 12 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 13 

interface type number

Example:

Router(config)# interface serial 0/2

Enters interface configuration mode.

Specify the primary interface or subinterface that you backed up with the satellite interface.

Step 14 

no shutdown

Example:

Router(config-if)# no shutdown

Enables the interface.

Step 15 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

Step 16 

Access the Cisco IOS CLI of the router in which the NM-1VSAT-GILAT network module is installed.

Step 17 

ping {host-name | ip-address}


or

telnet {host-name | ip-address}


or

traceroute {host-name | ip-address}

Example:

Router# ping 172.16.0.4

Assesses basic network connectivity.

or

Logs in to a host that supports Telnet.

or

Displays the routes that packets take through a network to their destinations.

Attempt to reach a destination on the other side of the terrestrial link to verify that your primary link is up.

1 You can use the IP address of any interface on your router except for the IP addresses assigned to the NM-1VSAT-GILAT network module and to the router satellite interface.

Examples

This section provides the following examples:

ping Command: Sample Output

traceroute Command: Sample Output

ping Command: Sample Output

The following example shows the outcome of a successful ping command to a destination on the other side of the satellite link. The specified source IP address belongs to the router LAN interface.

Router# show running-config interface fastethernet0/0 
Building configuration...

Current configuration:110 bytes
!
interface FastEthernet0/0
 ip address 10.2.0.1 255.255.255.0
 load-interval 30
 speed 100
 full-duplex
end

Router# ping 172.16.0.4 source 10.2.0.1 

Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 172.16.0.4, timeout is 2 seconds:
Packet sent with a source address of 10.2.0.1
!!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 136/147/160 ms
Router#

traceroute Command: Sample Output

The following example shows the outcome of a successful traceroute command to a destination on the other side of the satellite link or hub dial backup link. The source IP address belongs to the router LAN interface.

Router# traceroute 

Protocol [ip]:
Target IP address: 172.16.0.4 
Source address: 10.2.0.1 
Numeric display [n]:
Timeout in seconds [3]:
Probe count [3]:
Minimum Time to Live [1]:
Maximum Time to Live [30]:
Port Number [33434]:
Loose, Strict, Record, Timestamp, Verbose[none]:
Type escape sequence to abort.
Tracing the route to 172.16.0.4

  1  *  *  *
  2  *  *  *
  3 192.168.1.5 148 msec 140 msec 160 msec
  4 172.17.5 140 msec 160 msec 140 msec
  5 172.16.0.4 160 msec *  152 msec

Troubleshooting Tips

If the ping and traceroute commands fail to reach a destination on the other side of the satellite link, make sure that you specify a source IP address that is not assigned to the router satellite interface or to the NM-1VSAT-GILAT network module. We recommend using the IP address of a LAN interface on your router, such as a Fast Ethernet interface, as the source IP address for the ping and traceroute commands.

Configuring HSRP Redundancy for the NM-1VSAT-GILAT Network Module

This section describes how to configure homogeneous and heterogeneous HSRP redundancy when you use the NM-1VSAT-GILAT network module. To configure HSRP redundancy for the NM-1VSAT-GILAT network module, you should understand the following concepts:

HSRP

Preemption, Priority, and Tracking

Homogeneous HSRP Redundancy for the NM-1VSAT-GILAT Network Module

Heterogeneous HSRP Redundancy for the NM-1VSAT-GILAT Network Module

HSRP

The Hot Standby Router Protocol (HSRP) provides high network availability because it routes IP traffic from hosts on LANs without relying on the availability of any single router. HSRP is used in a group of routers for selecting an active router and a standby router. An active router is the router of choice for routing packets; a standby router is a router that takes over the routing duties when an active router fails, or when preset conditions are met.

For more information about HSRP, see the "Configuring IP Services" chapter of the Cisco IOS IP Configuration Guide, Release 12.3.

Preemption, Priority, and Tracking

HSRP uses priority and preemption to determine which router is active and which routers are in standby mode. How you configure priority and preemption sets one of the following behaviors:

Once a secondary router takes over as the active router, it remains active until the next event occurs.

A secondary router is active only when the primary router is down. When the primary router becomes available, the primary router becomes active while the secondary router returns to standby mode.

Preemption allows a router to become the active router when its priority is higher than that of all other routers in the hot standby group. If preemption is disabled on a router, the router assumes control as the active router only if it receives information indicating that no router is in the active state.

Tracking allows you to specify an interface that the HSRP process should monitor to alter the priority for a given hot standby router. If the specified interface line protocol goes down, the HSRP priority is reduced. This means that another HSRP router with higher priority can become the active router. The amount by which the hot standby priority for the router is decreased (or increased) when the tracked interface goes down (or comes back up) can be configured, but the amount is 10 by default.

For more information on HSRP tracking, preemption, and priority settings, see the How to Use the standby preempt and standby track Commands tech note.

Homogeneous HSRP Redundancy for the NM-1VSAT-GILAT Network Module

Homogeneous HSRP redundancy refers to a setup in which each router in the hot standby group is equipped with an NM-1VSAT-GILAT network module.

If you have only two routers in your hot standby group, then one outdoor unit (ODU) can be shared by two HSRP-redundant NM-1VSAT-GILAT network modules. Note that a Gilat SkyEdge-equipment certified installer must set up this hardware configuration, including connecting the power supply and the NM-1VSAT-GILAT network modules to the ODU.

Figure 8 and Figure 9 show homogeneous HSRP setups for the NM-1VSAT-GILAT network module.

Figure 8 Homogeneous HSRP Redundancy Setup Using Separate ODUs

Figure 9 Homogeneous HSRP Redundancy Setup Using a Shared ODU

Heterogeneous HSRP Redundancy for the NM-1VSAT-GILAT Network Module

Heterogeneous HSRP redundancy refers to a setup in which not all routers in the hot standby group are equipped with an NM-1VSAT-GILAT network module. For example, in a two-router heterogeneous HSRP setup, you can choose one of the following scenarios:

The primary router uses a terrestrial link, whereas the secondary router uses a satellite link.

The primary router uses a satellite link, whereas the secondary router uses a terrestrial link.

Figure 10 shows a heterogeneous HSRP setup for the NM-1VSAT-GILAT network module.

Figure 10 Heterogeneous HSRP Redundancy Setup

Perform one of the following tasks, depending on whether or not you have an NM-1VSAT-GILAT network module installed in each router in the hot standby group.

Configuring Homogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module

Configuring Heterogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module

Configuring Homogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module

This section describes how to configure HSRP redundancy for the satellite link when you have an NM-1VSAT-GILAT network module in each router in the hot standby group.

If you instead want to configure HSRP redundancy for the satellite link when not all routers in the hot standby group are equipped with an NM-1VSAT-GILAT network module, then go to the "Configuring Heterogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module" section.

Prerequisites

For the routers in the hot standby group, connect a LAN interface (typically the lowest-numbered Ethernet interface) of each router to the same network.

An NM-1VSAT-GILAT network module must be installed in each router in the hot standby group.

If two HSRP-redundant NM-1VSAT-GILAT network modules share one ODU, a Gilat SkyEdge-equipment certified installer must set up the hardware configuration, including connecting the power supply and the NM-1VSAT-GILAT network modules to the ODU.

With the one exception of the component physical address (CPA), which must be unique for each NM-1VSAT-GILAT network module, the initial VSAT configuration parameters must be identical for all NM-1VSAT-GILAT network modules in the homogeneous HSRP setup. See the "Configuring the Initial VSAT Parameters for the NM-1VSAT-GILAT Network Module" section.

Configure the same IP address on the satellite interface for all routers in the hot standby group. Similarly, configure the same IP address on the NM-1VSAT-GILAT network module for all routers in the hot standby group. See the "Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module" section.

Restrictions

If you have a separate account with your satellite service provider for each NM-1VSAT-GILAT network module in your homogeneous HSRP setup, then do not perform this task. Instead, see the "Configuring IP Services" chapter of the Cisco IOS IP Configuration Guide for normal HSRP configuration.

Do not use more than two routers in the hot standby group if one ODU is connected to two HSRP-redundant NM-1VSAT-GILAT network modules.

All routers in the hot standby group must have the same configured HSRP priority.

Do not configure homogeneous HSRP if you are using hub dial backup. Homogeneous HSRP is not compatible with hub dial backup mode, which is described in the "Configuring Hub Dial Backup for the NM-1VSAT-GILAT Network Module Satellite Link" section.

When an HSRP transition occurs, the NM-1VSAT-GILAT network modules in both the active router and the standby routers automatically reset. Therefore, it takes about 2 minutes for the satellite interface to come up and pass traffic after an HSRP transition.

SUMMARY STEPS

1. Access the Cisco IOS CLI of the primary router.

2. enable

3. configure terminal

4. interface interface

5. ip address ip-address mask

6. standby [group-number] ip [virtual-ip-address]

7. standby [group-number] name group-name

8. standby [group-number] track satellite slot/0 [decrement priority]

9. standby [group-number] preempt [delay {minimum seconds | reload seconds | sync seconds}]

10. exit

11. interface satellite slot/0

12. service-module ip redundancy group-name

13. end

14. Access the Cisco IOS CLI of the secondary router.

15. Complete Step 2 to Step 13 on the secondary router.

16. Repeat Step 14 and Step 15 for any additional secondary routers.

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

Access the Cisco IOS CLI of the primary router.

Step 2 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 3 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 4 

interface interface

Example:

Router(config)# interface fastethernet 0/0

Enters interface configuration mode for the primary LAN interface on which you want to enable HSRP for the router.

Step 5 

ip address ip-address mask

Example:

Router(config-if)# ip address 10.123.96.3 255.255.255.0

Sets the IP address for the LAN interface.

For all routers in the hot standby group, the HSRP-enabled LAN interfaces must belong to the same IP subnet.

Step 6 

standby [group-number] ip [virtual-ip-address]

Example:

Router(config-if)# standby 1 ip 10.0.0.100

Activates HSRP and optionally sets the virtual IP address for the hot standby group.

Step 7 

standby [group-number] name group-name

Example:

Router(config-if)# standby 1 name grp-hsrp

Configures the name of the hot standby group.

The group-name argument that you enter in this step must match the group-name argument that you enter in Step 12.

Step 8 

standby [group-number] track satellite slot/0 [decrement priority]

Example:

Router(config-if)# standby 1 track satellite 1/0

Monitors the satellite interface and alters the priority of the hot standby router if the satellite interface line protocol goes down.

The priority is the amount by which the hot standby priority for the router is decreased (or increased) when the tracked interface goes down (or comes back up). The default value is 10.

Step 9 

standby [group-number] preempt [delay {minimum seconds | reload seconds | sync seconds}]

Example:

Router(config-if)# standby 1 preempt

Example:

Router(config-if)# standby 1 preempt delay minimum 90

Enables preemption on the router and optionally configures a preemption delay.

A minimum preemption delay is useful for avoiding HSRP transitions during rain-fade or other transient events that bring down the satellite link for a short time.

Step 10 

exit

Example:

Router(config-if)# exit

Exits interface configuration mode.

Step 11 

interface satellite slot/0

Example:

Router(config)# interface satellite 1/0

Enters satellite interface configuration mode.

Step 12 

service-module ip redundancy group-name

Example:

Router(config-if)# service-module ip redundancy grp-x

(Optional) Links the primary HSRP interface status to the satellite interface.

Do not perform this step if each hot standby router and NM-1VSAT-GILAT network module is equipped with an ODU.

Perform this step if one ODU is shared by two HSRP-redundant NM-1VSAT-GILAT network modules.

The group-name argument that you enter in this step must match the group-name argument entered in Step 7.

Step 13 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

Step 14 

Access the Cisco IOS CLI of the secondary router.

Step 15 

Complete Step 2 to Step 13 on the secondary router.

Step 16 

Repeat Step 14 and Step 15 for any additional secondary routers.

Configuring Heterogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module

This section describes how to configure HSRP redundancy when not all routers in the hot standby group are equipped with an NM-1VSAT-GILAT network module.

If you instead want to configure HSRP redundancy for the satellite link when you have an NM-1VSAT-GILAT network module in each router in the hot standby group, then go to the "Configuring Homogeneous HSRP Redundancy with the NM-1VSAT-GILAT Network Module" section.

For heterogeneous HSRP redundancy, choose one of the following scenarios:

The primary router uses a terrestrial link, whereas the secondary router uses a satellite link.

The primary router uses a satellite link, whereas the secondary router uses a terrestrial link.

In both cases of heterogeneous HSRP redundancy, you need to configure the HSRP priority on the primary router to be higher than the HSRP priority of the secondary router. The difference in priority numbers must be small enough that tracking the WAN link (satellite or terrestrial) of the primary router determines which router becomes active, and which router goes to standby. For more information about priority and tracking, see the "Preemption, Priority, and Tracking" section.

Prerequisites

For the routers in the hot standby group, connect a LAN interface (typically the lowest-numbered Ethernet interface) of each router to the same network.

If multiple routers in the hot standby group contain an NM-1VSAT-GILAT network module, then each NM-1VSAT-GILAT network module requires a separate ODU.

Configure the IP addresses for the router satellite interface and the NM-1VSAT-GILAT network module. See the "Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module" section.

Configure the terrestrial link on the secondary router. See the Cisco IOS Dial Technologies Configuration Guide, the Cisco IOS Interface and Hardware Component Configuration Guide, or the Cisco IOS Wide-Area Networking Configuration Guide.

SUMMARY STEPS

1. Access the Cisco IOS CLI of the primary router.

2. enable

3. configure terminal

4. interface type number

5. ip address ip-address mask

6. standby [group-number] ip [virtual-ip-address]

7. standby [group-number] name group-name

8. standby [group-number] priority priority

9. standby [group-number] track satellite slot/0 [decrement priority]
or
standby [group-number] track type number [interface-priority]

10. standby [group-number] preempt [delay {minimum seconds | reload seconds | sync seconds}]

11. end

12. Access the Cisco IOS CLI of the secondary router.

13. Complete Step 2 to Step 11 on the secondary router.

14. Repeat Step 12 and Step 13 for each additional secondary router.

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

Access the Cisco IOS CLI of the primary router.

Step 2 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 3 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 4 

interface type number

Example:

Router(config)# interface fastethernet 0/0

Enters interface configuration mode for the primary LAN interface on which you want to enable HSRP for the router.

Step 5 

ip address ip-address mask

Example:

Router(config-if)# ip address 10.123.96.3 255.255.255.0

Sets the IP address for the LAN interface.

For all routers in the hot standby group, the HSRP-enabled LAN interfaces must belong to the same IP subnet.

Step 6 

standby [group-number] ip [virtual-ip-address]

Example:

Router(config-if)# standby 1 ip 10.0.0.100

Activates HSRP and optionally sets the virtual IP address for the hot standby group.

Step 7 

standby [group-number] name group-name

Example:

Router(config-if)# standby 1 name grp-x

Configures the name of the hot standby group.

Step 8 

standby [group-number] priority priority

Example:

Router(config-if)# standby 1 priority 105

(Optional) Configures HSRP priority.

The priority argument is a number in the range from 1 (lowest priority) to 255 (highest priority).

The default priority is 100.

Step 9 

standby [group-number] track satellite slot/0 [decrement priority]


or

standby [group-number] track type number [interface-priority]

Example:

Router(config-if)# standby 1 track satellite 1/0

Example:

Router(config-if)# standby 1 track serial 1/0

Monitors the satellite interface and alters the priority of the hot standby group if the satellite interface line protocol goes down.

or

Monitors the terrestrial link and alters the priority of the hot standby group if the tracked interface line protocol goes down.

We recommend performing this step when you want the status of the satellite link or terrestrial link to determine which router becomes active.

The priority argument is the amount by which the hot standby priority for the router is decreased (or increased) when the tracked interface goes down (or comes back up). The default value is 10.

Step 10 

standby [group-number] preempt [delay {minimum seconds | reload seconds | sync seconds}]

Example:

Router(config-if)# standby 1 preempt

Example:

Router(config-if)# standby 1 preempt delay minimum 90

Enables preemption on the router and optionally configures a preemption delay.

On a router with an HSRP-tracked satellite interface, you can use a minimum preemption delay to avoid HSRP transitions during rain-fade or other transient events that bring down the satellite link for a short time.

Step 11 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

Step 12 

Access the Cisco IOS CLI of the secondary router.

Step 13 

Complete Step 2 to Step 11 on the secondary router.

Step 14 

Repeat Step 12 and Step 13 for each additional secondary router.

What to Do Next

Proceed to the "Verifying HSRP Redundancy for the NM-1VSAT-GILAT Network Module" section.

Verifying HSRP Redundancy for the NM-1VSAT-GILAT Network Module

This section describes how to verify successful HSRP configuration for the NM-1VSAT-GILAT network module.

Prerequisites

Configure HSRP. See the "Configuring HSRP Redundancy for the NM-1VSAT-GILAT Network Module" section.

SUMMARY STEPS

1. enable

2. show standby

3. service-module satellite slot/0 status

4. Repeat this procedure for all routers in the hot standby group.

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

show standby

Example:

Router# show standby

Displays HSRP information.

Verify that the router is in the intended HSRP state, either active or standby.

Verify that preemption is enabled.

Verify that the correct standby routers are listed.

Verify that the correct interfaces are being tracked on the router.

Verify that the HSRP group name in the "IP redundancy name" field is correct.

Step 3 

service-module satellite slot/0 status

Example:

Router# service-module satellite 1/0 status

Displays status information related to the hardware and software on the NM-1VSAT-GILAT network module.

For a router in standby state, verify that the output says, "Standby: YES."

For the router in active state, verify that the output says, "Standby: NO."

Step 4 

Repeat this procedure for all routers in the hot standby group.

Examples

This section provides the following examples:

show standby Command: Sample Output

service-module satellite status Command: Sample Output

show standby Command: Sample Output

The following example shows the output of the show standby command when entered on a hot standby router in the active state. The router is equipped with an NM-1VSAT-GILAT network module, and the satellite interface is tracked by the HSRP process.

Router# show standby 

FastEthernet0/0 - Group 1
  State is Active 
    2 state changes, last state change 00:53:09
  Virtual IP address is 10.123.96.100
  Active virtual MAC address is 0000.0c07.ac01
    Local virtual MAC address is 0000.0c07.ac01 (v1 default)
  Hello time 3 sec, hold time 10 sec
    Next hello sent in 2.556 secs
  Preemption enabled 
  Active router is local 
  Standby router is 10.123.96.3, priority 100 (expires in 8.168 sec)
  Priority 100 (default 100)
    Track interface Satellite2/0 state Up decrement 10 
  IP redundancy name is "grp-x" (cfgd) 

service-module satellite status Command: Sample Output

The following example shows the status of a hot standby router and NM-1VSAT-GILAT network module in the active state. If the hot standby router was in the standby state, then the "Standby" field would say "YES."

Router# service-module satellite 2/0 status 

Getting status from the satellite module, please wait..

Software Versions, OS: 15.4.5.12, RSP: 3.4.5.5, MBC: 2.0.4.3
HW Version: 00008000
CPA Number: 6101, DPS CPA: 5
Workgroup: 257, SW Group: 513, Download: YES
Service Module Uptime: 00:00:55, Router Uptime: 3 days, 22 hours, 3 minutes
Current router clocktime: *03:13:01.924 UTC Tue Mar 5 2002
Oper Mode: OPERATIONAL, In Dial Backup: NO, Standby: NO
RBCP Received Packets: 14, RBCP Sent Packets: 13
Eb/No: 10.9483, Flags: 0x0007
IP Address/Mask: 9.0.0.1/255.255.255.252
.
.
.

Troubleshooting HSRP Redundancy for the NM-1VSAT-GILAT Network Module

This section describes how to troubleshoot the HSRP configuration for the NM-1VSAT-GILAT network module.

Prerequisites

Before using debug commands, read and understand the Important Information on Debug Commands tech note.

SUMMARY STEPS

1. enable

2. debug standby

3. debug satellite hsrp

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

debug standby

Example:

Router# debug standby

(Optional) Displays HSRP state changes and debugging information regarding transmission and receipt of HSRP packets.

Use this command to determine whether or not hot standby routers recognize one another and take the proper actions.

Step 3 

debug satellite hsrp

Example:

Router# debug satellite hsrp

(Optional) Displays debug information for HSRP events on the NM-1VSAT-GILAT network module.

Examples

This section provides the following examples:

debug standby Command: Sample Output

debug satellite hsrp Command: Sample Output

Combined Sample Output for the debug satellite hsrp and debug standby Commands

debug standby Command: Sample Output

The following example shows how to display HSRP state changes and debugging information about the transmission and receipt of HSRP packets:

Router# debug standby 
HSRP debugging is on
Router#

Two routers, one active and one standby, recognize each other as members of hot standby group 1:

*Dec  6 02:08:46.032:HSRP:Fa0/0 Grp 1 Hello  in  10.123.96.3 Standby pri 100 vIP 
10.123.96.100
*Dec  6 02:08:46.648:HSRP:Fa0/0 REDIRECT adv in, Passive, active 0, passive 1, from 
10.123.96.15
*Dec  6 02:08:47.364:HSRP:Fa0/0 Grp 1 Hello  out 10.123.96.2 Active  pri 100 vIP 
10.123.96.100
*Dec  6 02:08:49.028:HSRP:Fa0/0 Grp 1 Hello  in 10.123.96.3 Standby pri 100 vIP 
10.123.96.100
*Dec  6 02:08:50.365:HSRP:Fa0/0 Grp 1 Hello  out 10.123.96.2 Active  pri 100 vIP 
10.123.96.100
*Dec  6 02:08:52.089:HSRP:Fa0/0 Grp 1 Hello  in 10.123.96.3 Standby pri 100 vIP 
10.123.96.100
*Dec  6 02:08:53.365:HSRP:Fa0/0 Grp 1 Hello  out 10.123.96.2 Active  pri 100 vIP 
10.123.96.100
*Dec  6 02:08:55.085:HSRP:Fa0/0 Grp 1 Hello  in 10.123.96.3 Standby pri 100 vI

The active router is forced to standby status by disabling the primary HSRP interface, Fast Ethernet 0/0:

Router# configure terminal 
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# interface fastethernet 0/0 
Router(config-if)# shutdown 
Router(config-if)# exit 

*Dec 6 02:09:05.365:HSRP:Fa0/0 Grp 1 Hello out 10.123.96.2 Active pri 100 vIP 
10.123.96.100
*Dec 6 02:09:05.617:HSRP:Fa0/0 REDIRECT adv in, Passive, active 0, passive 2, from 
10.123.96.3
*Dec 6 02:09:07.085:HSRP:Fa0/0 Grp 1 Hello in 10.123.96.3 Standby pri 100 vIP 
10.123.96.100
*Dec 6 02:09:07.317:HSRP:Fa0/0 API Software interface going down
*Dec 6 02:09:07.317:HSRP:Fa0/0 API Software interface going down
*Dec 6 02:09:07.317:HSRP:Fa0/0 Interface down
*Dec 6 02:09:07.317:HSRP:Fa0/0 Grp 1 Active:b/HSRP disabled
*Dec 6 02:09:07.317:HSRP:Fa0/0 Grp 1 Active router is unknown, was local
*Dec 6 02:09:07.317:HSRP:Fa0/0 Grp 1 Standby router is unknown, was 10.123.96.3
*Dec 6 02:09:07.317:HSRP:Fa0/0 Grp 1 Resign out 10.123.96.2 Active pri 100 vIP 
10.123.96.100
*Dec 6 02:09:07.317:HSRP:Fa0/0 Grp 1 Active -> Init
*Dec 6 02:09:07.317:%HSRP-6-STATECHANGE:FastEthernet0/0 Grp 1 state Active -> Init
Router#
*Dec 6 02:09:07.317:HSRP:Fa0/0 Grp 1 Redundancy "grp-x" state Active -> Init
*Dec 6 02:09:07.317:HSRP:Fa0/0 Redirect adv out, Passive, active 0 passive 2
*Dec 6 02:09:07.317:HSRP:Fa0/0 Grp 1 Resign out 10.123.96.2 Init    pri 100 vIP 
10.123.96.100
*Dec 6 02:09:07.325:HSRP:Fa0/0 API MAC address update
*Dec 6 02:09:07.325:HSRP:Fa0/0 API Add active HSRP addresses to ARP table
*Dec 6 02:09:07.817:%SYS-5-CONFIG_I:Configured from console by console
*Dec 6 02:09:09.317:%LINK-5-CHANGED:Interface FastEthernet0/0, changed state to 
administratively down
*Dec 6 02:09:09.317:HSRP:API Hardware state change
*Dec 6 02:09:10.318:%LINEPROTO-5-UPDOWN:Line protocol on Interface FastEthernet0/0, 
changed state to down
*Dec 6 02:09:35.743:HSRP:Fa0/0 Redirect adv out, Passive, active 0 passive 2
*Dec 6 02:10:04.924:HSRP:Fa0/0 Redirect adv out, Passive, active 0 passive 2
*Dec 6 02:10:31.834:HSRP:Fa0/0 Redirect adv out, Passive, active 0 passive 2
*Dec 6 02:10:59.571:HSRP:Fa0/0 Redirect adv out, Passive, active 0 passive 2
*Dec 6 02:11:29.329:HSRP:Fa0/0 Redirect adv out, Passive, active 0 passive 2
*Dec 6 02:11:56.034:HSRP:Fa0/0 Redirect adv out, Passive, active 0 passive 1

debug satellite hsrp Command: Sample Output

The following example shows the debug satellite hsrp messages that appear when the active router is forced to standby status because the HSRP-tracked satellite interface is shut down:

Router# configure terminal 
Enter configuration commands, one per line. End with CNTL/Z.
Router(config)# interface satellite 1/0 
Router(config-if)# shutdown 
Router(config-if)# end 
Router#
01:03:48:%SYS-5-CONFIG_I:Configured from console by console
01:03:49:%LINK-5-CHANGED:Interface Satellite1/0, changed state to administratively down
01:03:50:%LINEPROTO-5-UPDOWN:Line protocol on Interface Satellite1/0, changed state to 
down
01:04:22:%HSRP-6-STATECHANGE:FastEthernet0/0 Grp 1 state Active -> Speak
01:04:22:HSRP-sat:IPred group grp-x update state ACTIVE --> SPEAK
01:04:22:Satellite1/0 HSRP-sat:fsm crank ACTIVE-->STANDBY
01:04:22:Satellite1/0 HSRP-sat:send standby msg STANDBY
01:04:32:HSRP-sat:IPred group grp-x update state SPEAK --> STANDBY
01:04:32:Satellite1/0 HSRP-sat:fsm crank STANDBY-->STANDBY
01:04:32:Satellite1/0 HSRP-sat:send standby msg STANDBY
01:04:42:Satellite1/0 HSRP-sat:send standby msg STANDBY
01:04:52:Satellite1/0 HSRP-sat:standby msg STANDBY deferred, not in operational state
01:05:02:Satellite1/0 HSRP-sat:standby msg STANDBY deferred, not in operational state
01:05:12:Satellite1/0 HSRP-sat:standby msg STANDBY deferred, not in operational state
01:05:22:Satellite1/0 HSRP-sat:standby msg STANDBY deferred, not in operational state
01:05:32:Satellite1/0 HSRP-sat:standby msg STANDBY not sent, already in state
01:06:47:%VSAT-5-STANDBY_MODE:Satellite1/0 module configured for standby mode
01:09:32:Satellite1/0 HSRP-sat:fsm crank STANDBY-->STANDBY-UP

Combined Sample Output for the debug satellite hsrp and debug standby Commands

The following example shows HSRP-related debug output for both the router and the NM-1VSAT-GILAT network module when the router goes from the standby to active state because the HSRP-tracked satellite interface is reenabled:

Router# show debugging 

SATCOM:
  satellite HSRP events debugging is on

HSRP:
  HSRP Errors debugging is on
  HSRP Events debugging is on
  HSRP Packets debugging is on

The satellite interface is reenabled:

Router# configure terminal 
Router(config)# interface satellite 1/0 
Router(config-if)# no shutdown 
Router(config-if)# end 
Router#

The effective HSRP priority of the router changes as the tracked satellite interface comes up:

02:14:37:HSRP:Fa0/0 Grp 1 Hello in 10.123.96.2 Active pri 90 vIP 10.123.96.100
02:14:39:HSRP:Fa0/0 API 62.1.0.6 is not an HSRP address
02:14:39:HSRP:Fa0/0 Grp 1 Hello out 10.123.96.3 Standby pri 90 vIP 10.123.96.100
02:14:39:HSRP:Fa0/0 Grp 1 Track 1 object changed, state Down -> Up
02:14:39:HSRP:Fa0/0 Grp 1 Priority 90 -> 100
Router#

The router changes from standby to active state because its priority is now highest in the hot standby group, and preemption is enabled:

02:14:40:HSRP:Fa0/0 Grp 1 Hello in 10.123.96.2 Active pri 90 vIP 10.123.96.100
02:14:40:HSRP:Fa0/0 Grp 1 Standby:h/Hello rcvd from lower pri Active router 
(90/10.123.96.2)
02:14:40:HSRP:Fa0/0 Grp 1 Active router is local, was 10.123.96.2
02:14:40:HSRP:Fa0/0 Grp 1 Standby router is unknown, was local
02:14:40:HSRP:Fa0/0 Redirect adv out, Active, active 1 passive 3
02:14:40:HSRP:Fa0/0 Grp 1 Coup   out 10.123.96.3 Standby pri 100 vIP 10.123.96.100
02:14:40:HSRP:Fa0/0 Grp 1 Standby -> Active
02:14:40:%HSRP-6-STATECHANGE:FastEthernet0/0 Grp 1 state Standby -> Active

The HSRP status of the satellite interface is linked to the primary HSRP interface, Fast Ethernet 0/0, by the service-module ip redundancy command:

02:14:40:HSRP:Fa0/0 Grp 1 Redundancy "grp-x" state Standby -> Active
02:14:40:HSRP-sat:IPred group grp-x update state STANDBY --> ACTIVE
02:14:40:Satellite1/0 HSRP-sat:fsm crank STANDBY-UP-->ACTIVE-COND
02:14:40:HSRP:Fa0/0 Redirect adv out, Active, active 1 passive 2
02:14:40:HSRP:Fa0/0 Grp 1 Hello out 10.123.96.3 Active pri 100 vIP 10.123.96.100
02:14:40:HSRP:Fa0/0 REDIRECT adv in, Passive, active 0, passive 2, from 10.123.96.2
02:14:40:HSRP:Fa0/0 REDIRECT adv in, Passive, active 0, passive 1, from 10.123.96.15
02:14:40:HSRP:Fa0/0 Grp 1 Hello in 10.123.96.2 Speak   pri 90 vIP 10.123.96.100

Line protocols come up, and HSRP states become fully active:

02:14:41:%LINK-3-UPDOWN:Interface Satellite1/0, changed state to up
02:14:42:%LINEPROTO-5-UPDOWN:Line protocol on Interface Satellite1/0, changed state to up

02:14:43:HSRP:Fa0/0 Grp 1 Hello out 10.123.96.3 Active pri 100 vIP 10.123.96.100
02:14:43:HSRP:Fa0/0 Grp 1 Redundancy group grp-x state Active -> Active
02:14:43:HSRP-sat:IPred group grp-x update state ACTIVE --> ACTIVE
02:14:43:Satellite1/0 HSRP-sat:fsm crank ACTIVE-COND-->ACTIVE-COND
02:14:43:HSRP:Fa0/0 Grp 1 Hello in 10.123.96.2 Speak   pri 90 vIP 10.123.96.100
02:14:46:HSRP:Fa0/0 Grp 1 Hello out 10.123.96.3 Active pri 100 vIP 10.123.96.100
02:14:46:HSRP:Fa0/0 Grp 1 Redundancy group grp-x state Active -> Active
02:14:46:HSRP-sat:IPred group grp-x update state ACTIVE --> ACTIVE
02:14:46:Satellite1/0 HSRP-sat:fsm crank ACTIVE-COND-->ACTIVE-COND
02:14:46:HSRP:Fa0/0 Grp 1 Hello in 10.123.96.2 Speak   pri 90 vIP 10.123.96.100
02:14:49:HSRP:Fa0/0 Grp 1 Hello out 10.123.96.3 Active pri 100 vIP 10.123.96.100
02:14:49:HSRP:Fa0/0 Grp 1 Hello in 10.123.96.2 Speak   pri 90 vIP 10.123.96.100
02:14:50:HSRP:Fa0/0 Grp 1 Hello in 10.123.96.2 Standby pri 90 vIP 10.123.96.100
02:14:50:HSRP:Fa0/0 Grp 1 Standby router is 10.123.96.2
02:14:51:Satellite1/0 HSRP-sat:send standby msg ACTIVE
02:14:52:HSRP:Fa0/0 Grp 1 Hello out 10.123.96.3 Active pri 100 vIP 10.123.96.100
02:14:53:HSRP:Fa0/0 Grp 1 Hello in 10.123.96.2 Standby pri 90 vIP 10.123.96.100
02:14:55:HSRP:Fa0/0 Grp 1 Hello out 10.123.96.3 Active pri 100 vIP 10.123.96.100

Configuring IP Multicast Routing for the NM-1VSAT-GILAT Network Module

This section describes how to configure IP multicast routing over the satellite link.

For general information about IP multicast, see the "IP Multicast" part of the Cisco IOS IP Configuration Guide, Release 12.3.

Prerequisites

Configure the IP addresses for the router satellite interface and the NM-1VSAT-GILAT network module. See the "Configuring IP Addresses for the Router Satellite Interface and the NM-1VSAT-GILAT Network Module" section.

Your satellite service provider must configure the hub to support IP multicast.

Obtain the IP address of the Protocol Independent Multicast (PIM) rendezvous point (RP) from your satellite service provider. The IP address should be that of the hub router interface that connects to the hub protocol server.

Restrictions

You must implement IP multicast as described in this section. Otherwise, the satellite link cannot support IP multicast.

Because PIM and Routing Information Protocol (RIP) are not compatible on the satellite link, do not use RIP on the satellite interface. Instead, take one of the following actions:

Use another routing protocol on the satellite interface. See the Cisco IOS IP Configuration Guide, Release 12.3.

Configure a default route, or gateway of last resort, to the PIM RP. See the Configuring a Gateway of Last Resort Using IP Commands tech note.

SUMMARY STEPS

1. enable

2. configure terminal

3. ip multicast-routing

4. ip pim rp-address rp-address [access-list]

5. interface satellite slot/0

6. ip pim dr-priority 0

7. ip pim sparse-dense-mode

8. exit

9. interface type number

10. ip pim sparse-dense-mode

11. Repeat Step 9 and Step 10 for all other interfaces that will perform IP multicast routing.

12. end

13. show ip pim neighbor

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

configure terminal

Example:

Router# configure terminal

Enters global configuration mode.

Step 3 

ip multicast-routing

Example:

Router(config)# ip multicast-routing

Enables IP multicast routing on the router.

Step 4 

ip pim rp-address rp-address [access-list]

Example:

Router(config)# ip pim rp-address 192.168.1.5

Configures the IP address of a Protocol Independent Multicast (PIM) rendezvous point (RP) for a particular multicast group.

Provided by your satellite service provider, the PIM RP IP address should be that of the hub router interface that connects to the hub protocol server.

Step 5 

interface satellite slot/0

Example:

Router(config)# interface satellite 1/0

Enters satellite interface configuration mode.

Step 6 

ip pim dr-priority 0

Example:

Router (config-if)# ip pim dr-priority 0

Ensures that the VSAT router is never the designated router (DR).

Step 7 

ip pim sparse-dense-mode

Example:

Router(config-if)# ip pim sparse-dense-mode

Enables PIM on an interface and specifies the sparse-dense mode.

Step 8 

exit

Example:

Router(config-if)# exit

Exits satellite interface configuration mode.

Step 9 

interface type number

Example:

Router(config)# interface fastethernet 0/1

Specifies a router interface that is connected to hosts.

Step 10 

ip pim sparse-dense-mode

Example:

Router(config-if)# ip pim sparse-dense-mode

Enables PIM on an interface and specifies the sparse-dense mode.

Step 11 

Repeat Step 9 and Step 10 for all other interfaces that will perform IP multicast routing.

Step 12 

end

Example:

Router(config-if)# end

Returns to privileged EXEC mode.

Step 13 

show ip pim neighbor

Example:

Router# show ip pim neighbor

Lists the PIM neighbors discovered by the Cisco IOS software.

Verify that the PIM RP IP address appears to be reachable through the satellite interface.

Examples

A sample of command output follows.

Sample Output for the show ip pim neighbor Command

The following example shows that the PIM RP (192.168.1.5) appears to be reachable through the satellite interface:

Router# show ip pim neighbor 
PIM Neighbor Table
Neighbor          Interface                Uptime/Expires    Ver   DR
Address                                                            Prio/Mode
192.168.1.5       Satellite1/0             00:24:27/00:01:18 v2    1 / DR S

Troubleshooting Tips

Make sure that the satellite interface network is not associated with a RIP routing process while PIM is enabled on the satellite interface. For more information about RIP, see the Cisco IOS IP Configuration Guide, Release 12.3.

For general multicast troubleshooting information, see the following tech notes:

Basic Multicast Troubleshooting Tools

IP Multicast Troubleshooting Guide

Troubleshooting Voice over IP for the NM-1VSAT-GILAT Network Module

This section describes how to troubleshoot Voice over IP (VoIP) when you have problems making calls over the satellite link. You do not need to perform any special configuration tasks for VoIP to work over the satellite link; however, understanding the following concepts can help you troubleshoot problems.

Dedicated Access (DA) and Random Access (RA) Modes

VoIP calls are extremely sensitive to jitter and delay, both of which are inherent to typical satellite links. Therefore, the NM-1VSAT-GILAT network module provides two modes to connect to the hub:

Random access (RA) mode—Provides a typical, shared-bandwidth satellite link which is highly efficient and suitable for most data and streaming media transmissions, but which has inherent delays, jitter, and collisions.

Dedicated access (DA) mode—Provides a special channel, or slice of satellite time, that is dedicated to delay-sensitive applications such as VoIP. DA mode is a limited resource that is provisioned by your satellite service provider. Your satellite service provider can tell you how much DA bandwidth you can use.

Requirements for Automatic Activation and Deactivation of DA Mode

Automatic activation and deactivation of DA mode is available when you set up a VoIP gateway on the router in which the NM-1VSAT-GILAT network module is installed. The integrated VoIP gateway enables the NM-1VSAT-GILAT network module to use RA mode to connect to the hub, except when a VoIP call is placed over the satellite link; then the integrated VoIP gateway automatically activates DA mode. When all calls are terminated, the integrated VoIP gateway automatically deactivates DA mode.

To set up an integrated VoIP gateway that enables automatic activation and deactivation of DA mode, complete one of the following actions on the router in which the NM-1VSAT-GILAT network module is installed:

Configure a VoIP gateway solution, such as Cisco CallManager Express (Cisco CME).

Install a hardware VoIP gateway, such as one of the following voice-enabled modules: NM-HDV, NM-HDA, NM-HD-1V, NM-HD-2V, NM-HD-2VE, or EVM-HD.

Enable the Cisco Multiservice IP-to-IP Gateway feature.

For information about these voice applications, see the Cisco IOS Voice Configuration Library.

Configuration of Optimum Codec Payload Size in DA Mode

The satellite bandwidth allocation algorithm employed by Gilat SkyEdge satellite service providers uses parameters for bandwidth and packet rate to configure PDA time slot allocations for VoIP calls placed over the satellite link. This results in bandwidth savings or, alternately, in the ability to have more calls in a given bandwidth.

Consult with the service provider on configuration of optimum codec payload size for the NM-1VSAT-Gilat network module. The service provider determines time slot allocations and available bandwidth. The user then determines the optimum payload size, and configures the codecs accordingly in the VoIP gateway solution being used.

For information on optimizing payload size, see the tech note Voice Over IP - Per Call Bandwidth Consumption.

When DA Mode Is Not Available

If you hear a fast busy signal when you try to initiate a VoIP call, or when the call quality is extremely poor, then DA mode is probably not being used for the call. DA mode may be unavailable for one or more of the following reasons:

You have not set up a VoIP gateway on the router in which the NM-1VSAT-GILAT network module is installed. See the "Requirements for Automatic Activation and Deactivation of DA Mode" section.

You have exceeded the DA bandwidth that was provisioned by your satellite service provider. Wait until some calls are terminated or request more DA bandwidth from your satellite service provider.

The hub is not configured to support your DA mode connection. Contact your satellite service provider.

Restrictions

This section describes how to perform basic VoIP troubleshooting for the NM-1VSAT-GILAT network module. For more general VoIP troubleshooting information, see the Cisco IOS Voice Configuration Library.

SUMMARY STEPS

1. enable

2. service-module satellite slot/0 status

DETAILED STEPS

 
Command or Action
Purpose

Step 1 

enable

Example:

Router> enable

Enables privileged EXEC mode.

Enter your password if prompted.

Step 2 

service-module satellite slot/0 status

Example:

Router# service-module satellite 1/0 status

(Optional) Displays status information related to the hardware and software on the NM-1VSAT-GILAT network module.

Determine whether or not any VoIP calls are active.

Determine whether or not DA mode is activated.

Determine how much DA bandwidth is in use.

Compare the DA bandwidth in use with the DA bandwidth your satellite service provider provisioned for you.

Examples

An example of command output follows.

service-module satellite status Command: Sample Output

The following example shows the status of an active VoIP call. Note that dedicated access (DA) mode is in use, and you can see the bandwidth (26 kilobits per second) being used on the DA channels.

Router# service-module satellite 1/0 status 

Getting status from the satellite module, please wait..

Software Versions, OS: 15.4.5.12, RSP: 3.4.5.5, MBC: 2.0.4.3
HW Version: 00008000
CPA Number: 6101, DPS CPA: 5
Workgroup: 257, SW Group: 513, Download: YES
Service Module Uptime: 00:00:55, Router Uptime: 3 days, 22 hours, 3 minutes
Current router clocktime: *03:13:01.924 UTC Tue Mar 5 2002
Oper Mode: OPERATIONAL, In Dial Backup: NO, Standby: NO
RBCP Received Packets: 14, RBCP Sent Packets: 13
Eb/No: 10.9483, Flags: 0x0007
IP Address/Mask: 10.0.0.1/255.255.255.252
Service Module MAC: 00:A0:AC:06:14:ED
RX Lock: LOCKED, Sync Lock: LOCKED
BackBone Status: UP, Two-Way Mode: YES, Access Mode: DA
Outbound Modulation Type: DVB, OB Code Rate: 3/4
Outbound Unicast Packets: 0, OB Multicast Packets: 0
Outbound ID: 2, OB PID: 514, OB Freq: 1201000, OB Bit Rate: 30000000
Outbound Sync IP address: 172.2.0.3
Inbound Start Freq: 1190140, IB Stop Freq: 1193710
Inbound Data Rate: 768000, IB Freq Offset: 0
Inbound Packets: 0
BackBone Received Packets: 0, BB Sent: 2
BackBone Received Retransmitted: 0, BB Sent Retrans: 0
Service Module Eth RX: 3, TX: 0
Service Module Eth Multicast RX: 3, Multicast TX: 0
Bufs Configured: 1500, Bufs Free: 1449
Internal Software State parameters:
   Service Module SW State Var: 3
   General IOS FSM: LINK_UP, HSRP FSM: N/A, HSRP VSAT Mode: N/A
   Lost Beats Total: 53, Lost Beats This Retry: 0
VOIP DA calls:
VOIP DA calls:
   Call ID BW (kb)  Dst Port  Src Port  Dest Addr
  ======== =======  ========  ======== ==============
     16075     26      18310     16866  162.0.0.2

What to Do Next

If you continue to encounter VoIP problems while you have sufficient available DA bandwidth, and the service-module satellite slot/0 status command shows that your NM-1VSAT-GILAT network module uses DA mode for the VoIP calls, then troubleshoot your general VoIP setup. See the Cisco IOS Voice Configuration Library.

Configuring Integrated TCP Acceleration and Encryption

Integrated TCP Acceleration and Encryption (ITAE) is used to provide site-to-site VPN connections. An end-to-end VPN tunnel is created between the remote VSAT router and the VPN concentrator. Accelerated traffic is encrypted by Cisco IOS software before being sent over the satellite link. This traffic is first decrypted, and then TCP spoofing information is recovered at the VPN concentrator. Figure 11 shows the topology of such a setup.

Figure 11 Integrated TCP Acceleration and Encryption Setup

The configuration of this setup is done in three parts:

Configuring the VSAT router to set up the crypto tunnel from the VSAT router to the VPN concentrator

Configuring the hub to enable ITAE and set a pre-built access list of traffic to be encrypted (done by the service provider)

Configuring the VPN router to set up the VPN backbone tunnel between VSAT and VPN router (done by the service provider)

Prerequisites

Do the following before configuring the VSAT router.

Provide information to the service provider about which network needs to be secured and which cryptographic algorithm will be used. The service provider will need this information in order to configure the hub and VPN router. Have the service provider set up these configurations before continuing.

Make sure that the satellite interface line protocol is up and that there is IP connectivity between the VSAT router and the VPN concentrator.

Make sure that SkyEdge version 4.0 or later, required for ITAE, is being used.

The user can verify that ITAE is enabled and configured properly on the VSAT from the hub by issuing a service-module status command. Examine the output for the Flags parameter and for the Integrated TCP Acceleration and Encapsulation Statistic.

Router# service-module satellite 1/0 status 
Getting status from the satellite module, please wait..
Software Versions, OS: 15.4.5.12, RSP: 3.4.5.5, MBC: 2.0.4.3
HW Version: 00008000
CPA Number: 6103, DPS CPA: 5
Workgroup: 257,