이 문서에서는 WAAS Express 작업을 해결하는 방법에 대해 설명합니다.
WAAS Express는 라우터와 같은 디바이스에서 실행되는 IOS에 내장된 WAAS 기능입니다.WAAS Central Manager는 WAAS 네트워크의 다른 WAAS 장치와 함께 WAAS Express 장치를 관리할 수 있습니다.이 문서에서는 WAAS Express 장치 작업의 문제를 해결하는 방법에 대해 설명합니다.
참고:WAAS Express Central Manager 지원은 WAAS 버전 4.3.1에서 도입되었습니다. 이 섹션은 이전 WAAS 버전에는 적용되지 않습니다.
WAAS Express 이미지 버전을 확인하려면 WAAS Express 라우터에서 show waas status 명령을 사용합니다.WAAS Central Manager에서 WAAS Express 이미지 버전을 보려면 My WAN > Manage Devices를 선택합니다.
waas-express# show waas status IOS Version: 15.1(20101018:232707) <----- IOS version WAAS Express Version: 1.1.0 <----- WAAS Express version . . .
WAAS Express 라이센스는 두 가지 종류로 제공됩니다.평가판 라이센스(12년간 유효함) 및 영구 라이센스WAAS Express 디바이스에서 show waas status 명령을 사용하여 라이센스 정보를 표시합니다.
waas-express# show waas status IOS Version: 15.1(20101018:232707) WAAS Express Version: 1.1.0 . . . WAAS Feature License License Type: Evaluation <----- Indicates an evaluation license Evaluation total period: 625 weeks 0 day Evaluation period left: 622 weeks 6 days
WAAS Express 디바이스에서 show waas status 명령을 사용하여 WAAS가 활성화된 인터페이스 집합을 나열합니다.이 명령은 디바이스에서 지원하는 최적화 유형도 표시합니다.일부 WAAS Express 라우터 모델은 DRE를 지원하지 않습니다.
waas-express# show waas status IOS Version: 15.1(20101018:232707) WAAS Express Version: 1.1.0 WAAS Enabled Interface Policy Map GigabitEthernet0/1 waas_global <----- Interfaces on which optimization is enabled GigabitEthernet0/2 waas_global Virtual-TokenRing1 waas_global Virtual-TokenRing2 waas_global GigabitEthernet0/0 waas_global Virtual-TokenRing10 waas_global WAAS Feature License License Type: Evaluation Evaluation total period: 625 weeks 0 day Evaluation period left: 622 weeks 6 days DRE Status : Enabled <----- Indicates DRE is supported LZ Status : Enabled + Entropy Maximum Flows : 50 <----- Number of optimized connections supported Total Active connections : 0 <----- Total number of connections active Total optimized connections : 0 <----- Total number of optimized connections
참고:WAAS는 WAN 인터페이스에서만 활성화되어야 합니다.최적화된 연결을 여러 WAN 인터페이스를 통해 라우팅하는 경우 WAAS를 모든 WAN 인터페이스에 적용해야 합니다.
참고:논리적 또는 가상 인터페이스에서 WAAS가 활성화된 경우 해당 물리적 인터페이스에서 구현하지 않아도 됩니다.
WAAS Express 디바이스에서 show waas connection 명령을 사용하여 최적화된 연결 집합을 나열합니다.통과 연결은 포함되지 않습니다.
waas-express# show waas status ConnID Source IP:Port Dest IP:Port PeerID Accel 1999 64.103.255.217 :59211 192.168.4.2 :1742 0021.5e57.a768 TLD <----- TFO, LZ and DRE are applied 1910 64.103.255.217 :56860 192.168.4.2 :61693 0021.5e57.a768 TLD 1865 64.103.255.217 :59206 192.168.4.2 :23253 0021.5e57.a768 TLD
Central Manager에서 유사한 정보를 보려면 WAAS Express 디바이스를 선택한 다음 Monitor > Optimization > Connections Statistics를 선택하여 Connections Summary Table을 확인합니다.
WAAS Express 디바이스에서 show waas statistics application 명령을 사용하여 각 애플리케이션으로 분류된 최적화된 데이터를 나열합니다.WAAS Express 장치는 통과 데이터를 표시하지 않습니다.이 데이터는 WAAS Central Manager에서 TCP 관련 차트를 생성하는 데 사용됩니다.
waas-express# show waas statistics application Number of applications : 1 Application: waas-default TCP Data Volumes Connection Type Inbound Outbound Opt TCP Plus 53001765483 41674120 Orig TCP Plus 0 87948683030 Opt TCP Only 1165 863 Orig TCP Only 60 0 Internal Client 0 0 Internal Server 0 0 TCP Connection Counts Connection Type Active Completed Opt TCP Plus 50 126 Opt TCP Only 0 71 Internal Client 0 0 Internal Server 0 0 Pass Through Connection Counts Connection Type Completed PT Asymmetric 0 PT Capabilities 0 PT Intermediate 0 PT_Other 0 Connection Reset: 0 Cleared connections 0
WAAS Express 디바이스에서 show waas alarms 명령을 사용하여 디바이스에 있는 경보와 해당 상태를 나열합니다.
waas-express# show waas alarms WAAS status: enabled Alarms Connection limit exceeded: on <----- on indicates this alarm is active. off indicates inactive Too many peers discovered: off WAAS license expired: off WAAS license revoked: off WAAS license deleted: off High CPU: off
Central Manager에서 모든 디바이스에 대한 경보를 보려면 My WAN > Alerts를 선택합니다.위에 나열된 경보 외에도 WAAS Express 및 WAAS Central Manager 장치의 시계가 동기화되지 않은 경우 경보가 발생합니다.
WAAS Express 디바이스에서 show waas statistics peer 명령을 사용하여 WAAS Express 디바이스의 피어 디바이스를 나열합니다.
waas-express# show waas statistics peer Number of Peers : 1 Peer: 0021.5e57.a768 TCP Data Volumes Connection Type Inbound Outbound Opt TCP Plus 597068158 5212151 Orig TCP Plus 0 6867128187 Opt TCP Only 0 0 Orig TCP Only 0 0 Internal Client 0 0 Internal Server 0 0 TCP Connection Counts Connection Type Active Completed Opt TCP Plus 50 0 Opt TCP Only 0 0 Internal Client 0 0 Internal Server 0 0 Pass Through Connection Counts Connection Type Completed PT Asymmetric 0 PT Capabilities 0 PT Intermediate 0 PT_Other 0 Connection Reset: 0 Cleared connections 0 Router#show waas statistics aoim Total number of peer syncs: 1 Current number of peer syncs in progress: 0 Number of peers: 1 Number of local application optimizations (AO): 3 Number of AO discovery successful: 1 Number of AO discovery failure: 0 Local AO statistics Local AO: TFO Total number of incompatible connections: 0 Version: 0.11 Registered: Yes Local AO: HTTP Total number of incompatible connections: 0 Version: 1.1 Registered: Yes Local AO: SSL Total number of incompatible connections: 0 Version: 1.0 Registered: Yes Peer AOIM Statistics Number of Peers : 1 Peer: 0027.0d79.c215 <--- Peer ID Peer IP: 20.0.0.2 <--- Peer IP Peer Expiry Time: 00:00:02 Peer Compatible: Yes Peer active connections: 0 Peer Aoim Version: 1.0 Peer sync in progress: No Peer valid: Yes Peer Software Version: 4.4.3(b4) Peer AOs: Peer AO: TFO Compatible: Yes Version: 0.20 Peer AO: HTTP Compatible: Yes Version: 1.4 Peer AO: SSL Compatible: Yes Version: 1.0 Router#show waas statistics dre peer DRE Status: Enabled Current number of connected peers 0 Current number of active peers 1 Peer-ID 0027.0d79.c215 <--- Peer ID Hostname waasx1-b-wae.cisco.com <--- Peer hostname IP reported from peer 20.0.0.2 <--- Peer IP Peer version 4.4.3(b4) Cache: Cache in storage 0 B Age 00:00:00 AckQ: AckQ in storage 0 B WaitQ: WaitQ in storage 0 B WaitQ size 0 B Sync-clock: Local-head 0 ms Local-tail 0 ms Remote-head 18609143000 ms Curr-sync-clock 24215235228 ms Encode Statistics DRE msgs: 1 R-tx total: 0 R-tx chunk-miss: 0 R-tx collision: 0 Bytes in: 0 Bytes out: 0 Bypass bytes: 178 Compression gain: 0% Decode Statistics DRE msgs: 4 Bytes in: 299 Bytes out: 277 Bypass bytes: 51 Compression gain: 0% Nacks generated: 0
Central Manager에서 유사한 정보를 보려면 Monitor > Topology를 선택합니다.
다음과 같은 문제로 인해 WAAS Express 장치가 중앙 관리자에서 오프라인 상태로 전환될 수 있습니다.
WAAS Express 디바이스에서 HTTPS 서버 컨피그레이션을 확인하려면 show ip http server secure status 명령을 사용합니다.
waas-express# show ip http server secure status HTTP secure server status: Enabled HTTP secure server port: 443 HTTP secure server ciphersuite: 3des-ede-cbc-sha des-cbc-sha rc4-128-sha HTTP secure server client authentication: Disabled HTTP secure server trustpoint: local HTTP secure server active session modules: ALL
이 버전의 WAAS-Express는 TFO, LZ 및 DRE를 포함하는 전송 최적화를 지원합니다.
WAAS-Express 버전 1.0은 IOS 소프트웨어 릴리스 15.1(3)T1에 도입되었습니다.
WAAS-Express 버전 1.5는 IOS 소프트웨어 릴리스 15.1(4)M에 도입되었습니다.이 릴리스는 최적화 외에도 PA(Performance Agent)라는 내장형 모니터링 기능을 지원합니다. PA에 대한 자세한 내용은 CPA 페이지(CCO)를 참조하십시오.
Recommended WAAS-Express IOS image: 15.1(3)T1 Recommended WAE version: >= 4.3.1 Recommended WCM version: 4.4.5a
IOS 버전 | WAE 버전 | WAAS CM 버전 | 알려진 문제 |
---|---|---|---|
15.1(3)T1 | 5.0.1 | 4.4.5 | 데이터 센터 측에서 시작된 연결은 최적화되지 않습니다.CSCtz82646 |
이 버전의 WAAS-Express는 전송 최적화를 지원하는 것 외에도 HTTP Express, SSL Express 및 CIFS Express AO를 비롯한 일부 애플리케이션 최적화를 지원합니다.
Recommended WAAS-Express IOS image: 15.2(4)M1 Recommended WAE version: 5.0.1 Recommended WCM version: 5.0.1
IOS 버전 | WAE 버전 | WAAS CM 버전 | 알려진 문제 |
---|---|---|---|
15.2(4)M1 | <4.4.3c | <5.0.1 | HTTP-Express Accelerator에는 4.4.3c 이상이 필요합니다.연결에는 http 최적화가 없지만 TDL이 있습니다. |
15.2(4)M1 | <5.0.1 | <4.4.5a | WCM에 표시된 연결 통계에 분류자 이름이 없습니다. |
15.2(4)M1 | <5.0.1 | <5.0.1 | CSCub21189:정책 맵 변경 사항이 WAAS-Express 디바이스와 제대로 동기화되지 않음 CSCtw50988:중소기업:파일을 다운로드하는 동안 연결 재설정 CSCtr07216:잘못된 hdr이 있는 트랜잭션이 WAAS-X <-> WAE 케이스에서 올바르게 처리되지 않음 CSCua49764:HTTPS가 만든 WExp 인증서 - 업그레이드 후 WExp가 오프라인으로 전환됨 |
15.2(3)T1 | <5.0.1 | <5.0.1 | CSCub21189:정책 맵 변경 사항이 WAAS-Express 디바이스와 제대로 동기화되지 않음 CSCtw50988:중소기업:파일을 다운로드하는 동안 연결 재설정 CSCtr07216:잘못된 hdr이 있는 트랜잭션이 WAAS-X <-> WAE 케이스에서 올바르게 처리되지 않음 CSCua49764:HTTPS가 만든 WExp 인증서 - 업그레이드 후 WExp가 오프라인으로 전환됨 |
15.2(3)T | <5.0.1 | <5.0.1 | CSCtx82427:IOS-WAAS:EOT(End of Transfer) 시 SSL 연결 재설정 CSCtz08485:호환되지 않는 HTTP-AO 감지 실패(%WAAS-3-WAAS_LZ_CONN_ABORT) CSCtu19564:dt21에서 Waas+VPN+ZBFW+NAT+NETFLOW로 충돌이 관찰됨 CSCtz85134:다시 로드 후 WAAS Express SSL-Express가 자체 서명 신뢰 지점을 변경합니다. CSCua22313:WAAS Express 2.0에서 IE6 conn 옵션과 함께 HTTPS 페이지가 표시되지 않음 CSCtw50988:중소기업:파일을 다운로드하는 동안 연결 재설정 CSCty04359:수동으로 생성한 WExp 인증서 - 업그레이드 후 Wexp가 오프라인으로 전환됨 CSCtr07216:잘못된 hdr이 있는 트랜잭션이 WAAS-X <-> WAE 케이스에서 올바르게 처리되지 않음 |
Router#sh license | beg WAAS_Express
Index 12 Feature: WAAS_Express
Period left: Life time
License Type: RightToUse
License State: Active, In Use <---- License is Active
License Count: Non-Counted
License Priority: Low
Router#show waas status
IOS Version: 15.2(2.9)T
WAAS Express Version: 2.0.0
WAAS Enabled Interface Policy Map
GigabitEthernet0/1 waas_global
WAAS Feature License
License Type: Evaluation
Evaluation total period: 0 seconds <---- License is expired.
Evaluation period left: 0 seconds
단계별 자세한 WAAS-Express 등록 프로세스는 다음 문서를 확인하십시오.WAAS Express 구축 설명서
debug ip http all debug ssl openssl errors debug ssl openssl ext debug ssl openssl msg debug ssl openssl states
router#show run | include crypto pki trustpoint crypto pki trustpoint TP-self-signed-4046801426 <-- Indicate this is non-persistent trustpoint
Router#show crypto pki trustpoints status State: Keys generated ............. Yes (General Purpose, non-exportable) <--- check if this shows “No” for the self-signed certificate Issuing CA authenticated ....... Yes <--- check if this shows “No” for the self-signed certificate Certificate request(s) ..... Yes <--- check if this shows “No” for the self-signed certificate Router#show crypto pki trustpoints status Trustpoint TP-self-signed-2330253483: Issuing CA certificate configured: Subject Name: cn=IOS-Self-Signed-Certificate-2330253483 Fingerprint MD5: 3F5E9EB4 6BD680FE 8A1C1664 0939ADCB <--- Check fingerprints before and after upgrade Fingerprint SHA1: DFF10AF4 83A90CAD 71528B3C CCD4EF0C E338E501 Router General Purpose certificate configured: Subject Name: cn=IOS-Self-Signed-Certificate-2330253483 Fingerprint MD5: 3F5E9EB4 6BD680FE 8A1C1664 0939ADCB Fingerprint SHA1: DFF10AF4 83A90CAD 71528B3C CCD4EF0C E338E501 State: Keys generated ............. Yes (General Purpose, non-exportable) Issuing CA authenticated ....... Yes Certificate request(s) ..... Yes Router#show crypto pki certificates … Validity Date: start date: 20:16:14 UTC May 26 2011 <--- Check whether these dates are valid end date: 20:16:14 UTC May 24 2016 … Provide outputs for following commands: show crypto pki certificates storage show crypto pki trustpoints show crypto key storage show crypto key pubkey-chain rsa show crypto key mypubkey all show crypto key mypubkey rsa show ip http server all
WAAS CM 및 WAAS-Express 클럭이 동기화되어야 하므로 클록을 동기화하도록 NTP 서버를 구성하는 것이 좋습니다.
show waas statistics pass-through를 사용하여 통과 통계/이유를 검증합니다.연결이 통과(pass-through)되는 이유를 확인합니다.
Router#show waas statistics pass-through Pass Through Statistics: Overall: 0 No Peer: 0 Rejected due to Capabilities: 0 Rejected due to Resources: 0 Interface Application config: 0 <---- Traffic classified for pass-through? Interface Global config: 0 <---- Asymmetric route in the setup? Assymmetric setup: 0 Peer sync was in progress: 0 IOS WAAS is intermediate router: 0 Internal error: 0 Other end is in black list: 0 AD version mismatch: 0 Incompatable AO: 0 <---- Incompatible peer? Connection limit exceeded: 0 AOIM peertable full: 0 AOIM multiple sync request passthrough: 0 Others: 0
자동 검색 통계를 확인하거나 자동 검색 디버그를 사용합니다.
Use the following command to check the reason '''show waas statistics auto-discovery''' Enable following debugs for more information: debug waas infra error debug waas infra events debug waas auto-discovery error debug waas auto-discovery event debug waas auto-discovery op <---- Verbose debug
show policy-map type waas interface debug waas infra events
Network topology IOS version Configuration Following debugs and show commands: debug waas auto-discovery error debug waas auto-discovery event debug waas auto-discovery operation debug waas infra error debug waas infra event show waas statistics auto-disc show waas statistics pass show waas statistics aoim
이는 일반적으로 컨피그레이션 오류 때문입니다.HTTP-Express Accelerator 및 CIFS-Express Accelerator는 WAAS-Express 버전 2 이미지에서 기본적으로 비활성화되어 있습니다.Express Accelerator가 전역적으로 활성화되었는지 확인하십시오.
router#show waas status IOS Version: 15.2(4)M1 WAAS Express Version: 2.0.0 WAAS Enabled Interface Policy Map FastEthernet8 waas_global WAAS Feature License License Type: EvalRightToUse Evaluation total period: 8 weeks 4 days Evaluation period left: 7 weeks 4 days DRE Status : Enabled LZ Status : Enabled + Entropy CIFS-Express AO Status : Disabled SSL-Express AO Status : Enabled HTTP-Express AO Status : Disabled <---- HTTP Express AO is disabled by default Maximum Flows : 75 Total Active connections : 4 Total optimized connections : 4
참고:HTTP-Express AO는 기본적으로 활성화되어 있지 않습니다.
class HTTP
optimize tfo dre lz application Web accelerate http-express
Router#show waas connection detail ... Negotiated Policy: TFO, LZ, DRE Configured Accelerator: HTTP-Express Derived Accelerator: HTTP-Express Applied Accelerator: HTTP-Express Hist. Accelerator: None Bytes Read Orig: 174 ...
참고:CIFS-Express AO는 기본적으로 비활성화되어 있습니다.
class CIFS
optimize tfo dre lz application CIFS accelerate cifs-express
Router#show waas statistics accelerator cifs-express CIFS-Express AO Statistics ... Unsupported dialects / CIFS version: 0 Currently active unsupported dialects / CIFS version: 0 Unsupported due to signing: 0 ...
Router#show waas statistics accelerator ssl SSL-Express: Global Statistics ----------------- Time Accelerator was started: 16:31:37 UTC Jul 26 2012 ... Pipe through due to C2S cipher mismatch: 0 Pipe through due to C2S version mismatch: 0 Pipe through due to W2W cipher mismatch: 0 Pipe through due to W2W version mismatch: 0 Pipe through due to detection of non-SSL traffic: 0 Pipe through due to unknown reasons: 0 Total pipe through connections: 0 ...
SSL-Express Accelerator는 경로에 HTTP-Express Accelerator를 도입합니다.SSL-Express 및 HTTP-Express Accelerator가 모두 전역적으로 활성화되어 있는지 확인합니다.
Provide following show command outputs for debugging: show waas status show waas alarms show waas accelerator detail show waas accelerator http show waas accelerator smb show waas accelerator ssl show waas statistic global show waas statistic auto-discovery show waas statistic aoim show waas statistic pass-through
일반적으로 재설정 중인 흐름과 함께 오류 유형을 나타내는 오류 메시지도 있습니다.예를 들어
Aug 18 03:02:52.861: %WAAS-3-WAAS_TFO_DEC_FRAME_FAILED: IOS-WAAS failed to decode TFO frame for connection 100.2.0.107:50118--200.0.0.12:1494 (Unknown TFO frame rcvd, RST connection.)
디버그 로그 show 명령 로그 show-tech show-running config 네트워크 토폴로지 클라이언트 및 서버 세부사항과 연결에 사용되는 애플리케이션(및 버전(예: IE6)
debug waas infra error debug waas auto-discovery error debug waas aoim error debug waas tfo error debug waas lz error debug waas dre error debug waas accelerator ssl error debug waas accelerator http error debug waas accelerator cifs error
테스트 중에 라우터 충돌 및 역추적이 확인되었을 수 있습니다.이전 케이스 및 DTS에서 비슷한 알려진 문제를 검색합니다.또한 어떤 기능이 추락으로 인해 발생하는지 격리해야 합니다.ios-waas 또는 layer4-forwarding이 아닌 IOS 기능으로 인해 충돌/트레이스백이 발생하는 경우 해당 특정 기능 개발 팀/라우터 TAC에 적절히 연결해야 합니다.
성능이 저하된 원인은 다음과 같습니다.트래픽의 특성, 라우터의 로드, 네트워크 토폴로지 또는 패킷이 네트워크에서 삭제됩니다.저속 연결을 처리하려면 통과 또는 최적화되지 않은 연결과 관련하여 상대적 저하를 확인해야 합니다.
참고:패킷별 로드 공유는 지원되는 구축이 아닙니다.이는 기본 로드 공유 모드가 아닙니다.
연결이 끊어진 경우 알려진 문제가 없습니다. RCA가 문제를 해결할 수 있도록 개발 팀에 다음 정보를 제공하십시오.
Router#show waas connection ConnID Source IP:Port Dest IP:Port PeerID Accel 3336 192.168.22.99 :37797 192.168.42.99 :80 0016.9d39.20bd THDL Router#
Router#show waas connection client-port 37797 detail connection ID: 3336 Peer Id: 0016.9d39.20bd Connection Type: External Start Time: 19:45:34 UTC Dec 21 2011 Source IP Address: 192.168.22.99 Source Port Number: 37797 <------ Unique port number required for next step Destination IP Address: 192.168.42.99 Destination Port Number: 80 Application Name: Web Classifier Name: HTTP Peer Policy: TFO, LZ, DRE Configured Policy: TFO, LZ, DRE Negotiated Policy: TFO, LZ, DRE Configured Accelerator: HTTP-Express Derived Accelerator: HTTP-Express Applied Accelerator: HTTP-Express Hist. Accelerator: None Bytes Read Orig: 43056412 Bytes Written Orig: 25 Bytes Read Opt: 162 Bytes Written Opt: 43359878 Auto-discovery information: ---<snip>---
Router#show l4f flows | include 37797 F4DF6EA0 Proxy TCP 192.168.22.99:37797 192.168.42.99:80 Router#
Router#show l4f flow detail F4DF6EA0 Flow Address : F4DF6EA0 Index : 11 Idle Time : 0.004 Family : IPv4 Protocol : TCP VRF ID : 0 Address1 : 192.168.22.99:37797 Address2 : 192.168.42.99:80 State : L4F_STATE_PROXYING Flags : 0x00012000 App Context : 0x41D4728C CEF pak : 0x0 Endpoint1 FD 1073748479 State : EP-ESTAB Flags : 0x00000001 Client : L4F_FEATURE_WAAS Association : OUTPUT CEF Fwd State : 0xC20D2C74 Proc Fwd State: 0xC1E36EA8 TCB Address : 0xC01F0D9C <------ Address required for next step Endpoint2 FD 1073748480 State : EP-ESTAB Flags : 0x00000001 Client : L4F_FEATURE_WAAS Association : INPUT CEF Fwd State : 0xC20D2248 Proc Fwd State: 0xC1E36F20 TCB Address : 0x4002AB6C <------ Address required for next step
Router#show tcp tcb 0xC01F0D9C Connection state is ESTAB, I/O status: 1, unread input bytes: 31504 Connection is ECN Disabled, Mininum incoming TTL 0, Outgoing TTL 255 Local host: 192.168.42.99, Local port: 80 Foreign host: 192.168.22.99, Foreign port: 37797 Connection tableid (VRF): 0 Maximum output segment queue size: 50 Enqueued packets for retransmit: 0, input: 22 mis-ordered: 0 (0 bytes) Event Timers (current time is 0x85115B0): Timer Starts Wakeups Next Retrans 2 0 0x0 TimeWait 0 0 0x0 AckHold 10192 0 0x0 SendWnd 0 0 0x0 KeepAlive 20129 0 0x851FFF4 GiveUp 2 0 0x0 PmtuAger 0 0 0x0 DeadWait 0 0 0x0 Linger 0 0 0x0 ProcessQ 1 1 0x0 iss: 688070906 snduna: 688070932 sndnxt: 688070932 irs: 684581592 rcvnxt: 713368125 sndwnd: 6144 scale: 9 maxrcvwnd: 32767 rcvwnd: 1263 scale: 7 delrcvwnd: 0 SRTT: 6687 ms, RTTO: 59312 ms, RTV: 52625 ms, KRTT: 0 ms minRTT: 0 ms, maxRTT: 2857348 ms, ACK hold: 200 ms Status Flags: passive open, Timestamp echo present Option Flags: keepalive running, SACK option permitted, non-blocking reads non-blocking writes, win-scale, 0x200000, 0x1000000, 0x10000000 0x20000000 IP Precedence value : 0 Datagrams (max data segment is 1432 bytes): Rcvd: 20129 (out of order: 0), with data: 20127, total data bytes: 28786532 Sent: 30017 (retransmit: 0, fastretransmit: 0, partialack: 0, Second Congestion: 0), with data: 1, total data bytes: 25 Packets received in fast path: 53559, fast processed: 2, slow path: 21294 fast lock acquisition failures: 7, slow path: 0 Router# Router#show tcp tcb 0x4002AB6C Connection state is ESTAB, I/O status: 1, unread input bytes: 0 Connection is ECN Disabled, Mininum incoming TTL 0, Outgoing TTL 255 Local host: 192.168.22.99, Local port: 37797 Foreign host: 192.168.42.99, Foreign port: 80 Connection tableid (VRF): 0 Maximum output segment queue size: 50 Enqueued packets for retransmit: 50, input: 0 mis-ordered: 0 (0 bytes) Event Timers (current time is 0x8519A48): Timer Starts Wakeups Next Retrans 27124 0 0x8519D3B TimeWait 0 0 0x0 AckHold 2 0 0x0 SendWnd 0 0 0x0 KeepAlive 28560 0 0x85284A4 GiveUp 27121 0 0x8545964 PmtuAger 0 0 0x0 DeadWait 0 0 0x0 Linger 0 0 0x0 ProcessQ 19975 19975 0x0 iss: 2832065240 snduna: 2867154917 sndnxt: 2867205953 irs: 2835554554 rcvnxt: 2835554717 sndwnd: 261120 scale: 7 maxrcvwnd: 65535 rcvwnd: 65535 scale: 7 delrcvwnd: 0 bic_last_max_cwnd: 8388480 SRTT: 1000 ms, RTTO: 1003 ms, RTV: 3 ms, KRTT: 0 ms minRTT: 80 ms, maxRTT: 1000 ms, ACK hold: 200 ms Status Flags: active open Option Flags: keepalive running, SACK option permitted, Timestamp option used, non-blocking reads, non-blocking writes win-scale, 0x200000, 0x1000000, 0x10000000, 0x20000000 IP Precedence value : 0 Datagrams (max data segment is 1432 bytes): Rcvd: 28560 (out of order: 0), with data: 2, total data bytes: 162 Sent: 28672 (retransmit: 0, fastretransmit: 28, partialack: 3, Second Congestion: 0), with data: 28671, total data bytes: 35176602 Packets received in fast path: 21244, fast processed: 21240, slow path: 29668 fast lock acquisition failures: 21374, slow path: 0 Router#
show waas statistics errors show waas statistics accelerator http-express show waas statistics accelerator cifs-express show waas statistics accelerator ssl-express show waas statistics accelerator ssl-express debug
show waas connection conn-id [id] debug show waas statistics accelerator http-express debug show waas statistics accelerator ssl-express debug
clear waas connection conn-id [id] Router(config-if)#no waas enable forced
Router#show waas status | include SSL-Express AO Status SSL-Express AO Status : Unavailable (security license not enabled) Router#show license detail securityk9 Index: 1 Feature: securityk9 Version: 1.0 License Type: RightToUse …
Router#show waas status | include SSL-Express AO Status SSL-Express AO Status : Unsupported Router#show license detail securityk9 % Error: No license for securityk9 found - License feature not found
Router#show running-config all | include waas-ssl-trustpoint Router#show crypto pki trustpoints <trustpoint-name> status WAAS#show crypto certificates WAAS#show crypto certificate-detail WORD
Router#show waas alarms ... WAAS SSL-Express CA enrolled trustpoint deleted: off WAAS SSL-Express router certificate deleted: off ...
Show commands used for further debugging and RCA: show waas statistics accelerator ssl show waas statistics accelerator ssl debug show waas statistics accelerator ssl ciphers show waas statistics accelerator ssl peering
WCM의 디바이스 그룹 간에 WAAS-Express 디바이스가 이동되면 새 디바이스 그룹 아래의 정책 정의가 적용되지 않는 경우가 있습니다.디바이스가 디바이스 그룹에서 할당 해제되면 디바이스가 마지막으로 소유한 백업 정책 집합에서 정책을 가져옵니다.
디바이스 그룹 간에 디바이스를 이동할 때는 다음 단계를 수행합니다.
* Go to the Policy Definitions page of that device and select the new device-group and click on Submit. OR * Go to device-group-1 -> Assign Devices page and unassign the device from this DG. * Go to device-group-2 -> Assign Devices page and assign the device to this DG. * Go to device-group-2 -> Policy Definitions page and click on 'Force DG settings' button.
이 영역에는 알려진 문제가 없습니다.다음 절차에 따라 로그를 수집하고 개발 팀에 제공하십시오.
* Disable waas on Waas-Express device * Clear statistics on WAAS-Express and core WAE * Enable waas on Waas-Express device * Let traffic run, disable waas on Waas-Express device * Collect statistics * Present screen-shots and show command outputs.
show tech-support show ip interface show ip virtual-reassembly show ip route show ip cef detail show ip cef internal show ip cef switching statistics show process cpu history
http://www.cisco.com/en/US/products/hw/iad/ps397/products_tech_note09186a00800b4447.shtml
연결 문제를 디버깅하려면 WAAS Express 디바이스에서 패킷을 캡처해야 할 수 있습니다.
IOS 패킷 캡처에 대한 자세한 내용은 다음 문서를 참조하십시오.IP 트래픽 내보내기.
Example to configure packet capture: ip traffic-export profile waas_wan mode capture bidirectional interface Serial0/0/0 ip virtual-reassembly out encapsulation frame-relay ip traffic-export apply waas_wan size 20000000 frame-relay map ip 10.0.0.2 557 broadcast no frame-relay inverse-arp frame-relay local-dlci 557 Use following commands to start, stop, copy and clear the buffer: traffic-export int s0/0/0 start traffic-export int s0/0/0 stop traffic-export int s0/0/0 copy ftp://username:password@192.168.1.116//tftpboot/ngwo.pcap traffic-export int s0/0/0 clear