23.3. IP Resources

The IP Router of Abilis CPX can manage up to 250 IP resources. The IP configuration of each resource is stored in the routing table.

The available commands for managing the IP resources are the following:

23.3.1. D P IP (Display Parameter IP resource)

It shows the IP resource table. By omitting the IP resource identifier, the command will show all the resources currently defined.

[08:32:56] ABILIS_CPX:d p ip

RES:Ip-1 - IP over LAN (LAN) --------------------------------------------------
Run    DESCR:LAN
       OPSTATE:UP             LOG:NO                 STATE-DETECT:NORMAL
       LANRES:Eth-1
       IPADD:192.168.029.254  MASK:255.255.255.000   
       REDIS:EXT     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:INSIDE    UPNP:NO         DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:YES     TRFA-MODE:TOTALS       
       - Lan ------------------------------------------------------------------
       LLOG:NO       arpcache:200    CACHETIMER:120     rxbuf:4     txbuf:14
       VLAN-ID:UNTAG 
RES:Eth-1 ---------------------------------------------------------------------
Run    DESCR:
       LOG:DS            MODE:AUTO         DUPLEX:HALF
       MAC-ADDR:FACTORY (00-E0-C5-54-A2-78) 
       dma-rxbuf:250     dma-txbuf:25      max-vlans:0
       ip-rxbuf:25       arp-rxbuf:5       pppoed-rxbuf:5    pppoes-rxbuf:25
     

RES:Ip-22 - IP over PPP (PPP) -------------------------------------------------
Run    DESCR:UMTS-DATA
       OPSTATE:UP             LOG:NO                 STATE-DETECT:NORMAL
       LOWRES:CtiSLink                               
       IPADD:RETRIEVE                                NEIGH:RETRIEVE
       REDIS:EXT     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:INSIDE    UPNP:NO         DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:NO      
       - Ppp ------------------------------------------------------------------
       PPPLOG:DS        NRTY3:NOMAX     PPP-ENC:RAW-PPP           RADIUS:NO
       DT-IN:300        DT-OUT:300      UDT-IN:NOMAX              UDT-OUT:NOMAX
       - Dial-in --------------------------------------------------------------
       DIAL-IN:NO    
       CGI:*                        SGI:DISABLED                 
       CDI:*                        SDI:*                        
       - Dial-out -------------------------------------------------------------
       TI:ALL,00:00-23:59           BOOT-DLY:0    
       DEP-RES:NONE                 DEP-RES-DOWN-DLY:0
       DIAL-OUT:YES     RTY:LIN     NRTY:300    NRTY2:3      TB:3    
       CGO:#                        SGO:#                        
       CDO:99                       SDO:#                        
       - Tcp-MSS/Lcp/IpCp -----------------------------------------------------
       TCP-MSS-CLAMP:NO                                           DNS:NO
       - Authentication -------------------------------------------------------
       USERNAME:test
       PASSWORD:********                          LOCAL:CHAP,PAP
       SERVNAME:                                  REMOTE:NONE
       REPEAT:0
RES:CtiSLink ------------------------------------------------------------------
Run    DESCR:HDLC_Over_ISDN_B-Channel
       LOG:DS     

RES:Ip-100 - IP virtual (VIRTUAL) ---------------------------------------------
Run    DESCR:
       OPSTATE:UP             LOG:NO
       P-IP:1
       IPADD:192.168.001.101  MASK:255.255.255.000
       REDIS:YES     HIDE:NO         RP:NONE            IPSEC:(NO)     VRRP:NO
       NAT:(OUTSIDE)                 DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO
[Note]Note

The “Not Saved (SAVE CONF)” message is displayed every time the table is modified but not saved with the save conf command.

[Note]Note

The “Not Refreshed (INIT)” message is displayed every time the table is modified but not refreshed with the initialization command init res:ip.

By specifying an IP resource identifier, the command will show the definition of the requested port. The IP resource identifier must be in the interval [0 - 250]. If does not exist any resource with that identifier, an error message is generated: “RESOURCE NOT PRESENT OR INACTIVE”.

[08:38:13] ABILIS_CPX:d p ip-1

RES:Ip-1 - IP over LAN (LAN) --------------------------------------------------
Run    DESCR:LAN
       OPSTATE:UP             LOG:NO                 STATE-DETECT:NORMAL
       LANRES:Eth-1
       IPADD:192.168.029.254  MASK:255.255.255.000   
       REDIS:EXT     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:INSIDE    UPNP:NO         DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:YES     TRFA-MODE:TOTALS       
       - Lan ------------------------------------------------------------------
       LLOG:NO       arpcache:200    CACHETIMER:120     rxbuf:4     txbuf:14
       VLAN-ID:UNTAG 
RES:Eth-1 ---------------------------------------------------------------------
Run    DESCR:
       LOG:DS            MODE:AUTO         DUPLEX:HALF
       MAC-ADDR:FACTORY (00-E0-C5-54-A2-78) 
       dma-rxbuf:250     dma-txbuf:25      max-vlans:0
       ip-rxbuf:25       arp-rxbuf:5       pppoed-rxbuf:5    pppoes-rxbuf:25
  

[14:47:53] ABILIS_CPX:d p ip-10

RESOURCE NOT PRESENT OR INACTIVE

Below the meaning of the most important parameters is shown:

IP over lan section

DESCR

Resource description. Max 79 chars. Spaces require double quotes (E.g. "str1 str2").

OPSTATE

Operative state [DOWN, UP].

LOG

State changes log and alarm generation [NO, D, S, A, L, T, ALL] [+E] (D: Debug Log; S: System Log; A: Alarm view; L: Local audible alarm; T: SNMP traps; +E: Extended Log of state changes, see ref. manual)

STATE-DETECT

Select IP resource state detection method [NORMAL - the state depends on lower interface only; PING - the state depends on lower interface state and on result of the PING procedure].

Certain interfaces or protocols like Ethernet and RFC1483 do not provide information about the actual connection to the network. In these cases, using alternative routes cannot be automatic. This Abilis feature allows to setup a periodic ping to a pair of IP hosts. If at least one host answers regularly, the interface is considered to be working (UP), if both hosts suffer of packet loss beyond a defined threshold, the interface is considered to be out of order (DOWN). The frequency of PINGs and the threshold-levels to change the state (UP/DOWN) are configurable. Enabling the PING procedure, the parameters of PING section are shown.

Refer to chapter Section 74.26, “How to use state detection of IP interfaces” to view a how to.

LANRES

Lower resource [NONE, Eth-XXX, EthUsb-XXX, VEth, IpoE-XXX].

IPADD

IP address of the resource in DDN [0-126.x.x.x, 128-223.x.x.x] or "DHCP". IPADD and MASK can be configured together in Slash Notation, by means of IPADD:x.x.x.x/nn, with 'nn' in [0..32].

MASK

Mask in DDN [240.0.0.0 - 255.255.255.255]. The mask can also be configured with IPADD in Slash Notation, by means of IPADD:x.x.x.x/nn, with 'nn' in [0..32].

DHCP-DNS

Retrieve primary and secondary DNS server through DHCP [NO, YES] <Only for IPADD:DHCP>.

DHCP-GW

Retrieve default gateway through DHCP [NO, YES] <Only for IPADD:DHCP>.

DHCP-GW-AD

Administrative distance assigned to the default route obtained from a DHCP server [0..255] <Only for IPADD:DHCP>.

REDIS

Create the related connected routing [NO: no route is created; YES: a destination route is added to IPR table, EXT: a source route is added to IPR table].

HIDE

Hide in RIP and OSPF updates [NO, YES].

RP

Routing protocols that will run on this interface [NONE, RIP, OSPF] Values can be joined using ',' character.

UPNP

Select UPNP mode [NO, LAN-CLIENT, LAN-SERVER, WAN] <Only for NAT:INSIDE/OUTSIDE>.

DIFFSERV

Differentiated Services Field (DS) management [NO, NET, BORDER].

NAT

NAT usage [NO, INSIDE, OUTSIDE, VPN, DMZ].

IPSEC

Enable/disable IPSEC [NO, YES].

VRRP

Enable/disable VRRP [NO, YES].

DDNS

Enable/disable DDNS [NO, YES].

OUTBUF

Number of outgoing buffers [1..255].

OUTQUEUE

Output Queue management [FIFO, FAIR, SRCIP, DSTIP].

MTU

Maximum output IP datagram size [64..1500 bytes].

INBUF

Number of incoming buffers [0..255].

INQUEUE

Input queue management [FIFO, FAIR, SRCIP, DSTIP] <Only for INBUF: not equal to 0>.

mru

Maximum input IP datagram size [1500 bytes].

SRCV

Source address validate [NO, YES].

OUTSPL

Output speed limitation activation [NO, YES, IPCOS].

OUTSP

Output speed limitation value [64..100000 Kbit/sec] <Only for OUTSPL: not equal to NO>.

OUTSP-HIGH

Output speed limitation value in presence of HIGH priority traffic [64..100000 Kbit/sec] <Only for OUTSPL:IPCOS>.

OUTSP-TOUT

Timeout to exit from OUTSP-HIGH: and return to OUTSP: [1..255 sec] <Only for OUTSPL:IPCOS>.

INSPL

Input speed limitation activation [NO, YES, IPCOS, OUTSPL] <Only for INBUF: not equal to 0>.

INSP

Input speed limitation value [64..100000 Kbit/sec] <Only for INSPL/OUTSPL: not equal to NO>.

INSP-HIGH

Input speed limitation value in presence of HIGH priority traffic [64..100000 Kbit/sec] <Only for INSPL:OUTSPL/IPCOS-HIGH and OUTSPL:IPCOS-HIGH>.

INSP-TOUT

Timeout to exit from INSP-HIGH: and return to INSP: [1..255 sec] <Only for INSPL:OUTSPL/IPCOS-HIGH and OUTSPL:IPCOS-HIGH>.

SPL-OVERHEAD

Overhead added by lower layer drivers which is used by speed-limit procedure. "AUTO" or a couple of values "enc,line", where:

  • 'enc' is the encapsulation type and can be [RAW-IP, RAW-PPP, FR-IETF, RFC1483-VCMUX, RFC1483-LLCMUX, RFC2364-VCMUX, RFC2364-LLCMUX, PPPOE, PPPOE-BRIDGED,IPOE-BRIDGED];

  • 'line' is the protocol type and can be [ETH, HDLC, AAL5, PTM].

    [Note]Note

    Only for INSPL/OUTSPL: not equal to NO.

TRFA section:

TRFA

Enables/disables traffic analysis.

TRFA-MODE

Select traffic analysis mode [TOTALS: saves the total global traffic; PROT: subdivides the registration for the main protocol models; IP: saves the totals for every single IP address; IP-PROT: subdivides the traffic by protocol, for every single crossing IP address].

IP-RESERVE

Reserves records in the traffic analysis data base: it represents the maximum IP number trace.<Only for TRFA-MODE:IP/IP-PROT>.

TRFA-SIDE

Selects IP address type [LOCAL: filters the traffic by destination IP address; REMOTE: filters the traffic by source IP address].<Only for TRFA-MODE:IP/IP-PROT>.

TRFA-IPADD

IP address filter. <Only for TRFA-MODE:IP/IP-PROT>

- '*': any IP address.

- 'LOCALNET': allowed only for TRFA-SIDE:LOCAL.

- a single IP address or two IP addresses separated by ':' (colon) [1.0.0.0-126.255.255.255, 128.0.0.0-223.255.255.255].

- the name of an IP/IR list between single quotes. (E.g.: * or LOCALNET or 150.1.1.1 or 192.1.0.0:192.1.0.9 or 'List').

Link section:

LCOMP

Set the compression type to use for an ip resource with subtype AIPT[-BCK], DL[-BCK], ML, BCH. Data Compression is available only under licence.[NO: compression not active, LZO1X: is often the best choice of all, LZO1B: is good with a large blocksize or with very redundant data, LZO1F: s good with a small blocksize or with binary data].

RIP section:

RIPSEND

Protocol used for sending updates [RIP1, RIP2B, RIP2M, NO] <Only for RP:RIP or RP:RIP,OSPF>.

RIPRECV

Protocol accepted for receiving updates [RIP1, RIP2, BOTH, NO] <Only for RP:RIP or RP:RIP,OSPF>.

RIPNU

Selection of normal updates vs. triggered updates [NO, YES] <Only for RP:RIP or RP:RIP,OSPF>.

RIPMETRIC

Assigned RIP metric [0..16] <Only for RP:RIP or RP:RIP,OSPF>.

OSPF section:

OAREA

Area ID which this IP port belongs to [#, 0.0.0.0-255.255.255.255] <Only for RP:OSPF or RP:RIP,OSPF>.

ONETTYPE

Type of network [BN, NBMA, PP, PMP] <Only for RP:OSPF or RP:RIP,OSPF>.

OPRIO

Interface priority [0..255] <Only for RP:OSPF or RP:RIP,OSPF>.

OCOST

OSPF output cost [1..65535] <Only for RP:OSPF or RP:RIP,OSPF>.

ORXMT

Retransmission interval [1..150 sec] <Only for RP:OSPF or RP:RIP,OSPF>.

OTRDEL

Transmit delay interval [1..30 sec] <Only for RP:OSPF or RP:RIP,OSPF>.

OHELLO

Hello interval [1..120 sec] <Only for RP:OSPF or RP:RIP,OSPF>.

ODEAD

Router dead interval [1..1200 sec] <Only for RP:OSPF or RP:RIP,OSPF>.

omax-nei

Maximum number of neighbors [0..255] <Only for RP:OSPF or RP:RIP,OSPF>.

OREM-RID

Remote Router ID [0.0.0.0-255.255.255.255] <Only for RP:OSPF or RP:RIP,OSPF>.

OPWD

Authentication password. From 0 up to 8 ASCII characters. Spaces are not allowed. <Only for AUTTYPE:SIMPLE><Only for RP:OSPF or RP:RIP,OSPF>.

OKEYID

Key ID [0..255] <Only for AUTTYPE:CRYPTO> <Only for RP:OSPF or RP:RIP,OSPF>.

OMD5KEY

MD5 secret key. From 0 up to 16 ASCII characters. Spaces are not allowed. <Only for AUTTYPE:CRYPTO><Only for RP:OSPF or RP:RIP,OSPF>.

DDNS section:

DDNS-FQDN

DDNS domain name. From 0 up to 64 characters in the range ['0'..'9', 'a'..'z', '-', '.']. Case is not preserved. <Only for DDNS:YES>.

Lan section:

ARP-RENEWAL-TIME

Lifetime of an item in the cache [15..65535 sec].

VLAN-ID

VLAN Identifier [0, 1..4094, UNTAG] <Only for LANRES:Eth/IpoE>.

PRIO-ARP

ARP priority over VLAN [0..7] <Only for VLAN-ID <> UNTAG>.

PING section:

P-LOC

Source IP address used for PING request (ECHO REQUEST) [1-126.x.x.x, 127.0.0.1, 128-223.x.x.x] or "R-ID" or "IPADD".

P-DST1

Ip address of the destination number 1 [1-126.x.x.x, 127.0.0.1, 128-223.x.x.x] or "#".

P-DST2

Ip address of the destination number 2 [1-126.x.x.x, 127.0.0.1, 128-223.x.x.x] or "#".

P-GW

Ip address of the gateway [1-126.x.x.x, 127.0.0.1, 128-223.x.x.x] or "#".

P-TOUT

Timeout for the reply reception (ECHO REPLY) [100..10000 msec].

P-TRY

Number of attempts considered for the state detection [2..50].

P-DLY-UP

Interval between attempts while state is UP [1..60 sec].

P-DLY-UP

Interval between attempts while state is UP [1..60 sec].

P-DLY-DN

Interval between attempts while state is DOWN [1..60 sec].

P-THR-UP

Percentage of successful attempts to declare state UP [10..100].

P-THR-DN

Percentage of successful attempts to declare state DOWN [0..90].

P-BURST

Number of requests sent at each attempt [1..10].

P-BURST-DLY

Interval between requests pertaining to the same attempt [0..1000 msec].

P-TTL

TTL value when transport layer doesn't provide one [DFT, 1..255].

23.3.2. A RES:IP (Add IP Resource)

It adds a new IP resource, identified by “IP-xx”.

Type the following command to display all the available types of IP resource.

[10:16:34] ABILIS_CPX:a res:ip ?

SUBTYPE:   Resource subtype.                                        <Mandatory>
           See also HELP SUBTYPE.

Ip resource subtypes:

X25PVC          IP over X.25 Pvc
X25BSVC         IP over X.25 Bsvc
LAN             IP over LAN
DL              IP over Dedicated Line
DL-BCK          IP over Dedicated Line with Abilis Back-up
BCH             IP over B-Channel
ML              IP over Multi-Links
AIPT            IP over IP (Abilis tunnel)
AIPT-BCK        IP over IP (Abilis tunnel) with Abilis Back-up
PPP             IP over PPP
VIRTUAL         IP virtual
LAN-PT          IP over LAN Passthrough

Some examples follow:

[12:18:12] ABILIS_CPX:a res:ip-10 subtype:lan

COMMAND EXECUTED

[12:18:20] ABILIS_CPX:d p ip-10

RES:Ip-10 - Not Running, Not Saved (SAVE CONF) --------------------------------
       - IP over LAN (LAN) ----------------------------------------------------
New    DESCR:
       OPSTATE:UP              LOG:NO                 STATE-DETECT:NORMAL
       LANRES:NONE
       IPADD:000.000.000.000   MASK:255.255.255.255   
       REDIS:EXT     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:NO                        DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:NO      
       - Lan ------------------------------------------------------------------
       ARP-RENEWAL-TIME:120          

[12:18:23] ABILIS_CPX:a res:ip-11 subtype:aipt

COMMAND EXECUTED

[12:22:13] ABILIS_CPX:d p ip-11

RES:Ip-11 - Not Running, Not Saved (SAVE CONF) --------------------------------
       - IP over IP (Abilis tunnel) (AIPT) ------------------------------------
New    DESCR:
       OPSTATE:UP              LOG:NO                 STATE-DETECT:NORMAL
                               LINK-FRAG:AIPT         LINK-FRAGSIZE:1480
       IPADD:000.000.000.000   MASK:255.255.255.255   NEIGH:000.000.000.000
       REDIS:YES     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:NO                        DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:NO      
       - Link -----------------------------------------------------------------
       LLOG:DS       LMPX:YES         LC:YES         LCOMP:NO      LCR:NO
       LT1:3000      LT3:9000         LN2:3                        LCRKEY:DFT
       - IP Tunnel ------------------------------------------------------------
       MODE:EXT                       D-TOS:0-N      V-TOS:0-D     C-TOS:0-D  
       MPX:NO        RS-BUF:100                      V-TOUT:100    V-RED:NONE
       PATH:SINGLE   LOCPORT:2111     REMPORT:2100   CR:NO         CRKEY:DFT
       OUT-IP:AUTO                                  
       LOCIPADD:OUT-IP                  REMIPADD:#


[12:23:06] ABILIS_CPX:a res:ip-12 subtype:dl

COMMAND EXECUTED

[12:23:31] ABILIS_CPX:d p ip-12

RES:Ip-12 - Not Running, Not Saved (SAVE CONF) --------------------------------
       - IP over Dedicated Line (DL) ------------------------------------------
New    DESCR:
       OPSTATE:UP              LOG:NO                 STATE-DETECT:NORMAL
       LOWRES:NONE
       LINK-ENC:RAW-IP         LINK-FRAG:NO           
       IPADD:000.000.000.000   MASK:255.255.255.255   NEIGH:000.000.000.000
       REDIS:YES     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:NO                        DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:NO      
       - Link -----------------------------------------------------------------
       LLOG:DS       LMPX:NO                         LCOMP:NO      LCR:NO
       LT1:1000      LT3:3000         LN2:3                        LCRKEY:DFT
[Caution]Caution

After adding a new IP resource, you must restart the Abilis to make the resource running (use the command warm start to reboot the Abilis).

23.3.3. C RES:IP (Clear IP Resource)

It removes the requested IP resource from the IP resource table.

[Caution]Caution

It's not possible to remove an IP resource on a running CPX with this command! It's needed to follow this sequence:

  1. Deactivate the IP resource with s inact res:ip-x command.

  2. Save the configuration with save conf command.

  3. Reboot the Abilis with the warm start command.

  4. Clear permanently the IP resource with c res:ip-x command.

[08:50:03] ABILIS_CPX:d p ip-5

RES:Ip-5 - IP over IP (Abilis tunnel) (AIPT) ----------------------------------
Run    DESCR:
       OPSTATE:UP              LOG:NO                 STATE-DETECT:NORMAL
                               LINK-FRAG:AIPT         LINK-FRAGSIZE:1480
       IPADD:000.000.000.000   MASK:255.255.255.255   NEIGH:000.000.000.000
       REDIS:YES     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:INSIDE    UPNP:NO         DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:NO      
       - Link -----------------------------------------------------------------
       LLOG:DS       LMPX:EXT         LC:YES         LCOMP:NO      LCR:NO
       LT1:3000      LT3:9000         LN2:3                        LCRKEY:DFT
       - IP Tunnel ------------------------------------------------------------
       MODE:EXT                       D-TOS:0-N      V-TOS:0-D     C-TOS:0-D  
       MPX:YES       RS-BUF:100                      V-TOUT:100    V-RED:NONE
       PATH:SINGLE   LOCPORT:2105     REMPORT:2100   CR:NO         CRKEY:DFT
       OUT-IP:AUTO                                  
       LOCIPADD:OUT-IP                  REMIPADD:#

[08:50:08] ABILIS_CPX:c res:ip-5

COMMAND NOT ALLOWED FOR 'RES:IP-5' BECAUSE IS RUNNING

[08:55:03] ABILIS_CPX:s inact res:ip-5

COMMAND EXECUTED

[08:55:25] ABILIS_CPX:save conf

VALIDATION IN PROGRESS ...
VALIDATION SUCCESSFULLY EXECUTED

SAVE EXECUTED

[15:07:05] ABILIS_CPX:warm start

At next reboot:

[08:58:31] ABILIS_CPX:c res:ip-5

THE SELECTED RESOURCE WILL BE DELETED.
PROCEED (N/Y)?y

THE COMMAND WILL DELETE ALL THE REFERENCES TO THE SELECTED RESOURCE.
PROCEED ANYWAY (N/Y)?y

PROCEEDING WITH RESOURCE DELETION...

COMMAND EXECUTED
[Warning]Warning

Deleting an IP resource also its references in IPR, IPACL , IPAD and RIP EXTERNAL will be deleted!!

23.3.4. S P IP (Set Parameter IP Resource)

It sets the parameters to their new values for the specified IP resource. Parameters of each IP resource can be separately configured depending of the connection.

The syntax of the command is:

s p ip-x [par:val...]

In the example below description, neighbour IP (NEIGH), subnet mask (MASK), LOCIPADD and REMIPADD parameters will be modified.

[09:00:43] ABILIS_CPX:d p ip-8

RES:Ip-8 - IP over IP (Abilis tunnel) (AIPT) ----------------------------------
Run    DESCR:
       OPSTATE:UP              LOG:NO                 STATE-DETECT:NORMAL
                               LINK-FRAG:AIPT         LINK-FRAGSIZE:1480
       IPADD:000.000.000.000   MASK:255.255.255.255   NEIGH:000.000.000.000
       REDIS:YES     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:INSIDE    UPNP:NO         DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:NO      
       - Link -----------------------------------------------------------------
       LLOG:DS       LMPX:EXT         LC:YES         LCOMP:NO      LCR:NO
       LT1:3000      LT3:9000         LN2:3                        LCRKEY:DFT
       - IP Tunnel ------------------------------------------------------------
       MODE:EXT                       D-TOS:0-N      V-TOS:0-D     C-TOS:0-D  
       MPX:YES       RS-BUF:100                      V-TOUT:100    V-RED:NONE
       PATH:SINGLE   LOCPORT:2108     REMPORT:2100   CR:NO         CRKEY:DFT
       OUT-IP:AUTO                                  
       LOCIPADD:OUT-IP                  REMIPADD:#

[09:01:18] ABILIS_CPX:s p ip-8 descr:To_Abilis_2 neigh:192.168.2.254 mask:255.255.255.0 locipadd:217.1.1.1 remipadd:217.2.2.2

COMMAND EXECUTED

[09:01:25] ABILIS_CPX:d p ip-8

RES:Ip-8 - Not Saved (SAVE CONF), Not Refreshed (INIT) -------------------------
        - IP over IP (Abilis tunnel) (AIPT) ------------------------------------
Run    DESCR:To_Abilis_2
       OPSTATE:UP              LOG:NO                 STATE-DETECT:NORMAL
                               LINK-FRAG:AIPT         LINK-FRAGSIZE:1480
       IPADD:000.000.000.000   MASK:255.255.255.000   NEIGH:192.168.002.254
       REDIS:YES     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:INSIDE    UPNP:NO         DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:NO      
       - Link -----------------------------------------------------------------
       LLOG:DS       LMPX:EXT         LC:YES         LCOMP:NO      LCR:NO
       LT1:3000      LT3:9000         LN2:3                        LCRKEY:DFT
       - IP Tunnel ------------------------------------------------------------
       MODE:EXT                       D-TOS:0-N      V-TOS:0-D     C-TOS:0-D  
       MPX:YES       RS-BUF:100                      V-TOUT:100    V-RED:NONE
       PATH:SINGLE   LOCPORT:2108     REMPORT:2100   CR:NO         CRKEY:DFT
       OUT-IP:AUTO                                  
       LOCIPADD:217.001.001.001         REMIPADD:217.002.002.002

23.3.4.1. Examples of REDIS parameter use

The REDIS parameter manages the entry in the IPR table for the specific IP resource. The following table shows the meaning of values:

NONo entry is created in the IPR table. Creating a route by hand is needed to use the IP resource.
YESA destination routing with the IPADD of the IP resource is automatically added in the routing table.
EXTA source routing with the IPADD of the IP resource is automatically added in the routing table.
[Note]Note

REDIS:NO can be always used, but every route must be created by hand.

Examples:

The parameter REDIS of IP-2 i set to NO, so in the ipr table there's no entry automatically generated and related with this ip address. If you want to use the IP-2 as gateway you must add a route by hand.

[15:34:07] ABILIS_CPX:d p ip-2

RES:Ip-2 - Not Saved (SAVE CONF) ----------------------------------------------
       - IP over LAN (LAN) ----------------------------------------------------
Run    DESCR:WAN
       OPSTATE:UP             LOG:NO               STATE-DETECT:NORMAL
       LANRES:Eth-2
       IPADD:DHCP    DHCP-GW:YES     DHCP-GW-AD:0       DHCP-DNS:YES
       REDIS:NO      HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:OUTSIDE   UPNP:NO         DIFFSERV:NO        DDNS:NO
       OUTBUF:250    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:YES     TRFA-MODE:TOTALS       
       - Lan ------------------------------------------------------------------
       ARP-RENEWAL-TIME:120          VLAN-ID:UNTAG
RES:Eth-2 ---------------------------------------------------------------------
Run    DESCR:
       LOG:DS            MODE:AUTO         DUPLEX:HALF       max-vlans:5
       MAC-ADDR:FACTORY (FC-AA-14-7F-2B-38) 
       ip-rxbuf:25       arp-rxbuf:5       pppoed-rxbuf:5    pppoes-rxbuf:25

[15:34:22] ABILIS_CPX:d d ip-2

RES:Ip-2 - IP over LAN (LAN) --------------------------------------------------
       WAN
       STATE:UP              LINK-STATE:LINKREADY
       CUR-IPADD:192.168.001.100    CUR-MASK:255.255.255.000
       OUTBUF:250   S-OUTBUF:1250   CUR-OUTSP:N/A      OUTSP-TOUT:N/A   
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:RAW-IP,ETH
       - Lan ------------------------------------------------------------------
       ARP-ITEMS:1           MAX-ARP-ITEMS:2000        VLAN-ID:UNTAG


[15:34:25] ABILIS_CPX:d ipr

- Not Saved (SAVE CONF) -------------------------------------------------------

Destination routes and conditional source routes:
+-+-+-+-+--------------------+--------------------+-----------------+----+---+
|B|P|S|H|     NET:/MASK:     |      MASK: or      |       GW: or    |IP: |AD:|
| | | | |                    |   SRNET:/SRMASK:   |      IPLB:      |    |   |
+-+-+-+-+--------------------+--------------------+-----------------+----+---+
|*|C| |*| 127.000.000.001/32 | 255.255.255.255    |                 |LOOP|  0|
|*|C| | | 192.168.030.001/32 | 255.255.255.255    |                 |R-ID|  0|
|*|C| | | 010.000.000.000/29 | 255.255.255.248    |                 |  12|  0|
|*|C| | | 192.168.000.000/24 | 255.255.255.000    |                 |  11|  0|
|*|S| | | 192.168.008.000/24 | 255.255.255.000    |                 |D 10|  1|
|*|C| | | 192.168.030.000/24 | 255.255.255.000    |                 |   1|  0|
+-+-+-+-+--------------------+--------------------+-----------------+----+---+

The parameter REDIS of IP-2 is set to YES, so in the ipr table there's an entry with provenience equal to C (refer to Section 23.2.1, “D IPR (Display IP Routing)”). The route automatically created is a destination route.

[15:38:00] ABILIS_CPX:d p ip-2

RES:Ip-2 - Not Saved (SAVE CONF) ----------------------------------------------
       - IP over LAN (LAN) ----------------------------------------------------
Run    DESCR:WAN
       OPSTATE:UP             LOG:NO               STATE-DETECT:NORMAL
       LANRES:Eth-2
       IPADD:DHCP    DHCP-GW:YES     DHCP-GW-AD:0       DHCP-DNS:YES
       REDIS:YES     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:OUTSIDE   UPNP:NO         DIFFSERV:NO        DDNS:NO
       OUTBUF:250    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:YES     TRFA-MODE:TOTALS       
       - Lan ------------------------------------------------------------------
       ARP-RENEWAL-TIME:120          VLAN-ID:UNTAG
RES:Eth-2 ---------------------------------------------------------------------
Run    DESCR:
       LOG:DS            MODE:AUTO         DUPLEX:HALF       max-vlans:5
       MAC-ADDR:FACTORY (FC-AA-14-7F-2B-38) 
       ip-rxbuf:25       arp-rxbuf:5       pppoed-rxbuf:5    pppoes-rxbuf:25

[15:38:22] ABILIS_CPX:d d ip-2

RES:Ip-2 - IP over LAN (LAN) --------------------------------------------------
       WAN
       STATE:UP              LINK-STATE:LINKREADY
       CUR-IPADD:192.168.001.100    CUR-MASK:255.255.255.000
       OUTBUF:250   S-OUTBUF:1250   CUR-OUTSP:N/A      OUTSP-TOUT:N/A   
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:RAW-IP,ETH
       - Lan ------------------------------------------------------------------
       ARP-ITEMS:1           MAX-ARP-ITEMS:2000        VLAN-ID:UNTAG

[15:38:25] ABILIS_CPX:d ipr

- Not Saved (SAVE CONF) -------------------------------------------------------

Destination routes and conditional source routes:
+-+-+-+-+--------------------+--------------------+-----------------+----+---+
|B|P|S|H|     NET:/MASK:     |      MASK: or      |       GW: or    |IP: |AD:|
| | | | |                    |   SRNET:/SRMASK:   |      IPLB:      |    |   |
+-+-+-+-+--------------------+--------------------+-----------------+----+---+
|*|C| |*| 127.000.000.001/32 | 255.255.255.255    |                 |LOOP|  0|
|*|C| | | 192.168.030.001/32 | 255.255.255.255    |                 |R-ID|  0|
|*|C| | | 010.000.000.000/29 | 255.255.255.248    |                 |  12|  0|
|*|C| | | 192.168.000.000/24 | 255.255.255.000    |                 |  11|  0|
|*|C| | | 192.168.001.000/24 | 255.255.255.000    |                 |   2|  0|
|*|S| | | 192.168.008.000/24 | 255.255.255.000    |                 |D 10|  1|
|*|C| | | 192.168.030.000/24 | 255.255.255.000    |                 |   1|  0|
|*|C| | | 000.000.000.000/0  | 000.000.000.000    | 192.168.001.001 |   2|  0|
+-+-+-+-+--------------------+--------------------+-----------------+----+---+

The parameter REDIS of IP-2 is set to EXT, so in the ipr table there's an entry with provenience equal to C (refer to Section 23.2.1, “D IPR (Display IP Routing)”). Two routes are automatically created: a destination route and a default route for that IP address.

Setting REDIS:EXT is useful to automatically generate a route when using two or more ADSL lines.

[15:27:59] ABILIS_CPX:d p ip-2

RES:Ip-2 - Not Saved (SAVE CONF) ----------------------------------------------
       - IP over LAN (LAN) ----------------------------------------------------
Run    DESCR:WAN
       OPSTATE:UP             LOG:NO               STATE-DETECT:NORMAL
       LANRES:Eth-2
       IPADD:DHCP    DHCP-GW:YES     DHCP-GW-AD:0       DHCP-DNS:YES
       REDIS:EXT     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:OUTSIDE   UPNP:NO         DIFFSERV:NO        DDNS:NO
       OUTBUF:250    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:YES     TRFA-MODE:TOTALS       
       - Lan ------------------------------------------------------------------
       ARP-RENEWAL-TIME:120          VLAN-ID:UNTAG
RES:Eth-2 ---------------------------------------------------------------------
Run    DESCR:
       LOG:DS            MODE:AUTO         DUPLEX:HALF       max-vlans:5
       MAC-ADDR:FACTORY (FC-AA-14-7F-2B-38) 
       ip-rxbuf:25       arp-rxbuf:5       pppoed-rxbuf:5    pppoes-rxbuf:25

[15:28:21] ABILIS_CPX:d d ip-2

RES:Ip-2 - IP over LAN (LAN) --------------------------------------------------
       WAN
       STATE:UP              LINK-STATE:LINKREADY
       CUR-IPADD:192.168.001.100    CUR-MASK:255.255.255.000
       OUTBUF:250   S-OUTBUF:1250   CUR-OUTSP:N/A      OUTSP-TOUT:N/A   
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:RAW-IP,ETH
       - Lan ------------------------------------------------------------------
       ARP-ITEMS:1           MAX-ARP-ITEMS:2000        VLAN-ID:UNTAG

[15:29:05] ABILIS_CPX:d ipr

- Not Saved (SAVE CONF) -------------------------------------------------------

Destination routes and conditional source routes:
+-+-+-+-+--------------------+--------------------+-----------------+----+---+
|B|P|S|H|     NET:/MASK:     |      MASK: or      |       GW: or    |IP: |AD:|
| | | | |                    |   SRNET:/SRMASK:   |      IPLB:      |    |   |
+-+-+-+-+--------------------+--------------------+-----------------+----+---+
|*|C| |*| 127.000.000.001/32 | 255.255.255.255    |                 |LOOP|  0|
|*|C| | | 192.168.030.001/32 | 255.255.255.255    |                 |R-ID|  0|
|*|C| | | 010.000.000.000/29 | 255.255.255.248    |                 |  12|  0|
|*|C| | | 192.168.000.000/24 | 255.255.255.000    |                 |  11|  0|
|*|C| | | 192.168.001.000/24 | 255.255.255.000    |                 |   2|  0|
|*|S| | | 192.168.008.000/24 | 255.255.255.000    |                 |D 10|  1|
|*|C| | | 192.168.030.000/24 | 255.255.255.000    |                 |   1|  0|
|*|C| | | 000.000.000.000/0  | 000.000.000.000    | 192.168.001.001 |   2|  0|
| |C| | |                    |[192.168.001.100/32]| 192.168.001.001 |   2|   |
+-+-+-+-+--------------------+--------------------+-----------------+----+---+

23.3.5. IP over LAN Passthrough (LAN-PT)

23.3.5.1. LAN-PT overview

It is frequent to meet a customer that owns premises with a consolidated situation of devices, gateways, LAN, Telco lines, and so on, and at the same time the desire to explore new possibilities offered by the market to improve performances, reduce costs, increase reliability, and so on.

The biggest obstacle is generally the fear of the work required in reconfiguring the customer device and the Telco routers as well as the possible outages during the experiments, and in some cases the coexistence can be very complicated even if all things are done in the right way.

With Abilis LAN Passthrough we solve all these problems by inserting the Abilis between the customer LAN and the Telco Gateway(s).

Two ethernet interfaces of Abilis are used, one toward customer LAN and one toward Telco gateways(s), giving the following opportunities:

  • Pass through or reroute IP traffic by means of the standard routing table;

  • Pass through ARP requests and responses;

  • Pass through of all other ethertypes (disabled by default);

  • Preserve source and destination MAC addresses for pass through traffic;

  • Speedlimit, prioritization, traffic shaping, access list, are applicable on pass through traffic too;

  • Only one IP address assigned from the lan ip range is needed, it is used for both Ethernet interfaces;

  • Abilis Lan Passthrough is compatible with VLAN and VRRP;

  • Multiple Lan Passthrough can operate simultaneously.

Figure 23.1. LAN-PT Insertion

LAN-PT Insertion

23.3.5.2. Configuring IP LAN-PT

The Abilis implementation belongs to an IP resource with the new subtype LAN-PT.

Type the following command to add new IP resource LAN-PT.

[08:46:48] ABILIS_CPX:a res:ip-17 subtype:lan-pt

COMMAND EXECUTED

[08:46:50] ABILIS_CPX:d p ip-17

RES:Ip-17 - Not Running, Not Saved (SAVE CONF) --------------------------------
       - IP over LAN Passthrough (LAN-PT) -------------------------------------
New    DESCR:
       OPSTATE:UP              LOG:NO                 STATE-DETECT:NORMAL
       LANRES:NONE             LANRES-PT:NONE         ETHERTYPE-PT:IPv4-ARP
       IPADD:000.000.000.000   MASK:255.255.255.255   
       REDIS:EXT     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:NO                        DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:NO      
       - Lan ------------------------------------------------------------------
       ARP-RENEWAL-TIME:120 
[Note]Note

The “Not Saved (SAVE CONF)” message is displayed every time the table is modified but not saved with the save conf command.

[Caution]Caution

After adding a new IP resource, you must restart the Abilis to make the resource running (use the command warm start to reboot the Abilis).

Configuration is like a LAN, with just a couple of new parameters: LANRES-PT and ETHERTYPE-PT.

LANRES-PT

Passtrough Lan resource [NONE, Eth-XXX, EthUsb-XXX].

ETHERTYPE-PT

Ethertypes for which passthrough is enabled [IPv4-ARP, ANY].

Type the following command to set the parameters for the IP over LAN-PT resource.

[11:43:57] ABILIS_CPX:s p ip-17 ipadd:192.168.29.206/24 lanres:eth-3 lanres-pt:ethusb-1

COMMAND EXECUTED

[11:44:01] ABILIS_CPX:d p ip-17

RES:Ip-17 - Not Saved (SAVE CONF), Not Refreshed (INIT) -----------------------
       - IP over LAN Passthrough (LAN-PT) -------------------------------------
Run    DESCR:
       OPSTATE:UP              LOG:NO                 STATE-DETECT:NORMAL
       LANRES:Eth-3            LANRES-PT:EthUsb-1     ETHERTYPE-PT:IPv4-ARP
       IPADD:192.168.029.206   MASK:255.255.255.000   
       REDIS:EXT     HIDE:NO         RP:NONE            IPSEC:NO       VRRP:NO
       NAT:NO                        DIFFSERV:NO        DDNS:NO
       OUTBUF:100    OUTQUEUE:FAIR   MTU:1500           
       OUTSPL:NO     
       INBUF:0                       mru:1500           SRCV:NO
       - TRFA section ---------------------------------------------------------
       TRFA:NO      
       - Lan ------------------------------------------------------------------
       ARP-RENEWAL-TIME:120          VLAN-ID:UNTAG
RES:Eth-3 ---------------------------------------------------------------------
Run    DESCR:
       LOG:DS            MODE:AUTO         DUPLEX:HALF       max-vlans:0
       MAC-ADDR:00-E0-4C-20-04-28
       ip-rxbuf:25       arp-rxbuf:5       pppoed-rxbuf:5    pppoes-rxbuf:25
RES:EthUsb-1 ------------------------------------------------------------------
Run    DESCR:
       LOG:DS            MODE:AUTO         DUPLEX:HALF       max-vlans:0
       MAC-ADDR:FACTORY (00-00-00-00-00-00) 
       ip-rxbuf:25       arp-rxbuf:5       pppoed-rxbuf:5    pppoes-rxbuf:25
[Note]Note

The “Not Saved (SAVE CONF)” message is displayed every time the table is modified but not saved with the save conf command.

[Note]Note

The “Not Refreshed (INIT)” message is displayed every time the table is modified but not refreshed with the initialization command init res:ip-17.

23.3.5.3. LAN-PT diagnostics and statistics

To display the diagnostics of the IP LAN-PT resource the following commands are used:

[11:59:55] ABILIS_CPX:d d ip-17     

RES:Ip-17 - IP over LAN Passthrough (LAN-PT) ----------------------------------
       STATE:UP              LINK-STATE:LINKREADY      
                             LINK-STATE-PT:LINKDOWN
       CUR-IPADD:192.168.029.206    CUR-MASK:255.255.255.000
       OUTBUF:100   S-OUTBUF:500    CUR-OUTSP:N/A      OUTSP-TOUT:N/A   
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:RAW-IP,ETH
       - Lan ------------------------------------------------------------------
       ARP-ITEMS:0           MAX-ARP-ITEMS:2000        VLAN-ID:UNTAG

The state of IP resource is UP if any of the two interfaces is UP.

Resource diagnostic are extended with LINK-STATE-PT, the state of for LANRES-PT interface.

A special procedure LOOP DETECTION is performed each time that the last interface goes UP, and if LOOP is detected the last interface is kept isolated. The condition is reset when the interface is disconnected.

The purpose of this procedure is to avoid serious problems to the LAN in case that both interfaces are connected to the same switch: LAN-PT does a packet passthrough which appears to the switch as a cable loop.

If loop is detected the situation looks like this one:

[12:19:55] ABILIS_CPX:d d ip-17

RES:Ip-17 - IP over LAN Passthrough (LAN-PT) ----------------------------------
       STATE:UP              LINK-STATE:LINKREADY
                             LINK-STATE-PT:LOOP-DETECTED
       CUR-IPADD:192.168.029.206    CUR-MASK:255.255.255.000
       OUTBUF:100   S-OUTBUF:500    CUR-OUTSP:N/A      OUTSP-TOUT:N/A   
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:RAW-IP,ETH
       - Lan ------------------------------------------------------------------
       ARP-ITEMS:0           MAX-ARP-ITEMS:2000        VLAN-ID:UNTAG
[19:10:22] ABILIS_CPX:

ARP resource diagnostics are extended with the interface where an IP/MAC address is located, of course known only after Abilis has sent packets to it.

[12:22:48] ABILIS_CPX:d d ip-17 arp

----+----------------+------------------+-----------+----------+-------------
  ID|IP              |MAC               |State      |Expiry (s)|LanRes
----+----------------+------------------+-----------+----------+-------------
   2|192.168.029.004 |BC-AE-C5-96-76-B7 |VALID      |        64|Eth-3
   4|192.168.029.207 |00-19-99-38-5C-CE |VALID      |       107|EthUsb-1 PT
----+----------------+------------------+-----------+----------+-------------

To display the statistics of the IP LAN-PT resource the following commands are used:

[12:09:17] ABILIS_CPX:d s ip-17

RES:Ip-17 - IP over LAN Passthrough (LAN-PT) ----------------------------------
       --- Cleared 0 days 00:31:41 ago, on 01/08/2017 at 11:37:55 -------------
       -----------|---INPUT---|--OUTPUT---|-----------|---INPUT---|--OUTPUT---|
       DG         |          0|          0|CHAR       |          0|          0|
       TCP        |          0|          0|ESP        |          0|          0|
       UDP        |          0|          0|AH         |          0|          0|
       ICMP       |          0|          0|DG-FRAG    |          0|          0|
       LOST-ACC   |          0|           |BAD-CHK    |          0|           |
       LOST-BUF   |          0|          0|BAD-HDR    |          0|           |
       LOST-LOOP  |           |          0|BAD-LEN    |          0|           |
       LOST-ADDR  |          0|          0|LONG       |          0|          0|
       LOST-OTHER |           |          0|SHORT      |          0|           |
       NO-ROUTE   |          0|           |SPL-OVFL   |          0|          0|
       TTL-EXP    |          0|          0|BAD-ENC-HDR|          0|           |
       IPP-DOWN   |          0|           |BAD-L-FRAG |          0|           |
       PING-MISSGW|           |          0|LOST-L-FRAG|          0|           |
       ------------------------------------------------------------------------
       - Lan ------------------------------------------------------------------
       -----------|---INPUT---|--OUTPUT---|-----------|---INPUT---|--OUTPUT---|
       ARP-REQ    |        124|          0|ARP-LONG   |          0|           |
       ARP-RESP   |          0|          0|ARP-SHORT  |          0|           |
       ARP-R-TOUT |           |          0|ARP-LOST   |           |          0|
       ------------------------------------------------------------------------

23.3.6. IP resources diagnostics and statistics

23.3.6.1. IP resources diagnostics

This command reports the current situation of the IP resource:

[14:27:28] ABILIS_CPX:d d ip-3          

RES:Ip-3 - IP over LAN (LAN) --------------------------------------------------
       LAN                                                                    
       STATE:UP              LINK-STATE:LINKREADY      
       CUR-IPADD:192.168.029.254    CUR-MASK:255.255.255.255
       OUTBUF:100   S-OUTBUF:500    CUR-OUTSP:250      OUTSP-TOUT:0     
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:RAW-IP,ETH
       - Lan ------------------------------------------------------------------
       ARP-ITEMS:1           MAX-ARP-ITEMS:2000        VLAN-ID:UNTAG

[14:27:41] ABILIS_CPX:d d ip-6

RES:Ip-6 - IP over IP (Abilis tunnel) (AIPT) ----------------------------------
       VPN1                                                                    
       STATE:UP              LINK-STATE:LINKREADY      
       CUR-IPADD:000.000.000.000    CUR-MASK:255.255.255.000
       OUTBUF:100   S-OUTBUF:500    CUR-OUTSP:N/A      OUTSP-TOUT:N/A   
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:RAW-IP,ETH
       - Link -----------------------------------------------------------------
       +--------+--- Global ----+------- P-Link -------+------- S-Link -------+
       | STATE: |     READY     |        READY         |   LINK-NOT-PRESENT   |
       +--------+---------------+----------------------+----------------------+
       - IP Tunnel ------------------------------------------------------------
       STATE:READY              MODE:EXT-CLIENT            PATH:SINGLE

[14:27:47] ABILIS_CPX:d d ip-11

RES:Ip-11 - IP over PPP (PPP) -------------------------------------------------
       STATE:DOWN            LINK-STATE:LINKDOWN       
       CUR-IPADD:N/A                CUR-MASK:N/A            
       OUTBUF:100   S-OUTBUF:500    CUR-OUTSP:N/A      OUTSP-TOUT:N/A   
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:N/A
       - PPP ------------------------------------------------------------------
       STATE:DELAYING            LCP-PH:DEAD           IPCP-PH:DEAD           
       LINK:DOWN                 LCP-ST:STARTING       IPCP-ST:STARTING       
       CUR-MTU:N/A               CUR-MRU:N/A
       LOC-IP:RETRIEVE          
       LOC-USER:                                                            
       REM-IP:RETRIEVE          
       REM-USER:                                                            

[14:28:07] ABILIS_CPX:d d ip-13

RES:Ip-13 - IP over Dedicated Line (DL) ---------------------------------------
       STATE:DOWN            LINK-STATE:LINKDOWN       
       CUR-IPADD:000.000.000.000    CUR-MASK:255.255.255.255
       OUTBUF:100   S-OUTBUF:500    CUR-OUTSP:N/A      OUTSP-TOUT:N/A   
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:N/A
       - Link -----------------------------------------------------------------
       +--------+--- Global ----+------- P-Link -------+------- S-Link -------+
       | STATE: |     DOWN      |   LINK-NOT-PRESENT   |   LINK-NOT-PRESENT   |
       +--------+---------------+----------------------+----------------------+

[14:28:09] ABILIS_CPX:d d ip-12

RES:Ip-12 - IP virtual (VIRTUAL) ----------------------------------------------
       STATE:DOWN            LINK-STATE:LINKDOWN       
       P-IP:Ip-11
       CUR-IPADD:010.023.000.010    CUR-MASK:255.255.128.000
       OUTBUF:100   S-OUTBUF:500    CUR-OUTSP:N/A      OUTSP-TOUT:N/A   
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:N/A

[14:28:25] ABILIS_CPX:d d ip-17

RES:Ip-17 - IP over LAN Passthrough (LAN-PT) ----------------------------------
       STATE:DOWN            LINK-STATE:LINKNOTPRESENT 
                             LINK-STATE-PT:LINKDOWN
       CUR-IPADD:192.168.029.206    CUR-MASK:255.255.255.255
       OUTBUF:100   S-OUTBUF:500    CUR-OUTSP:N/A      OUTSP-TOUT:N/A   
       INBUF:0      S-INBUF:0       CUR-INSP:N/A       INSP-TOUT:N/A   
       SPL-OVERHEAD:RAW-IP,ETH
       - Lan ------------------------------------------------------------------
       ARP-ITEMS:0           MAX-ARP-ITEMS:2000        VLAN-ID:UNTAG 

23.3.6.2. IP resources statistics

This command can help to understand what is happening, in case of troubles:

[14:43:25] ABILIS_CPX:d s ip-2

RES:Ip-2 - IP over LAN (LAN) --------------------------------------------------
       WAN                                                                     
       --- Cleared 3 days 12:48:02 ago, on 25/08/2017 at 02:02:45 -------------
       -----------|---INPUT---|--OUTPUT---|-----------|---INPUT---|--OUTPUT---|
       DG         |     511064|     496187|CHAR       |   76434784|   83934928|
       TCP        |       2225|       2314|ESP        |          0|          0|
       UDP        |     508593|     493873|AH         |          0|          0|
       ICMP       |        246|          0|DG-FRAG    |          0|          0|
       LOST-ACC   |          0|           |BAD-CHK    |          0|           |
       LOST-BUF   |          0|          0|BAD-HDR    |          0|           |
       LOST-LOOP  |           |          0|BAD-LEN    |          0|           |
       LOST-ADDR  |          0|          0|LONG       |          0|          0|
       LOST-OTHER |           |          0|SHORT      |          0|           |
       NO-ROUTE   |          0|           |SPL-OVFL   |          0|          0|
       TTL-EXP    |          0|          0|BAD-ENC-HDR|          0|           |
       IPP-DOWN   |          0|           |BAD-L-FRAG |          0|           |
       PING-MISSGW|           |          0|LOST-L-FRAG|          0|           |
       ------------------------------------------------------------------------
       - Lan ------------------------------------------------------------------
       -----------|---INPUT---|--OUTPUT---|-----------|---INPUT---|--OUTPUT---|
       ARP-REQ    |      11493|       2557|ARP-LONG   |          0|           |
       ARP-RESP   |       2557|       8973|ARP-SHORT  |          0|           |
       ARP-R-TOUT |           |          0|ARP-LOST   |           |          0|
       ------------------------------------------------------------------------

With reference to the shown interval of time («Cleared 3 days 12:48:02 ago») these counters show the number of:

DGIP datagrams.
CHARIncoming/outgoing bytes.
TCPTCP datagrams.
ESPIPsec Encapsulating Security Payload datagrams.
UDPUDP datagrams.
ICMPICMP datagrams.
DG-FRAGIP datagrams reassembled (in) or fragmented (out) at IP level.
LOST-ACCIP Datagrams discarded because they do not satisfy ACCESS LIST.
LOST-BUFDatagrams because the output buffer is full.
LOST-LOOPDatagrams discarded because the destination port is the same port they was received from.
LOST-ADDRNumber of discarded IP datagrams because of unacceptable address (e.g. loopback) in either source or destination, counted on incoming IPRES.
LOST-OTHERIP datagrams lost for other causes ( link down, command cancelled, bad port, …).
BAD-CHKNumber of incoming datagrams with bad IP header checksum.
BAD-HDRCounts both errors in header length fields (IHL and TOTAL_LENGTH) and IP version <> 4 (BAD-VER).
BAD-LENDatagrams discarded because the datagram length specified in the IP header doesn't match the actual datagram length.
LONGNumber of too long incoming datagrams. It must be counted when the size of the received datagram is > 1500.
SHORTNumber of too short incoming datagrams. It must be counted when the size of the received datagram is < 20. The size is the buffer length, not the length fields present in the IP datagram.
NO-ROUTEDatagrams discarded because a route was not found in the table.
SPL-OVFLOverflow in speed limit computation. Should never occur. If > 0 contact Abilis support.
TTL-EXPNumber of datagrams discarded because TTL reached the value 0.
IPP-DOWNHow many times IP resource went down.
PING-MISSGWNumber of STATE-DETECT PINGs that cannot be sent because a gateway is required but it is not configured.
BAD-ENC-HDROnly for ipres that supports encapsulation FR-IETF/RFC1483-LLCMUX (DL[-BCK], ML), when the encapsulation header is not correct.
BAD-L-FRAGOnly for ipres that supports link fragmentation (DL[-BCK], ML, AIPT[-BCK), when the LINK-FRAG header is not correct.
LOST-L-FRAGOnly for ipres that supports link fragmentation (DL[-BCK], ML, AIPT[-BCK), when a LINK FRAGMENT is discarded due to impossible reassembly.
ARP-REQIncoming/outgoing ARP requests.
ARP-RESPIncoming/outgoing ARP responses.
ARP-R-TOUTTimed out outgoing ARP requests.
ARP-LONGToo short incoming ARP messages.
ARP-SHORTToo long incoming ARP messages.
ARP-LOSTOutgoing ARP messages that couldn't be transmitted.

[Note]Note

If SPL-OVFL is greater than 0 consult Abilis support (tem@antek.it).

The LOST-BUF increases when the queue set in the OUTBUF parameter it runs out. On 100Mb/s lines set OUTBUF:250.

To see the last ten discarded packets by IPACL (ACCESS LIST), counted on LOST-ACC, insert the command debug res:iprtr lsn:25 cmd:ip-x.