AAA Command ASR1000-IOS-XE-Troubleshooting-ISG
AAA Command ASR1000-IOS-XE-Troubleshooting-ISG
AAA Command ASR1000-IOS-XE-Troubleshooting-ISG
ISG Accounting
Topology
Configuration
RADIUS Config
PPP-Client-1 Configuration
BRAS-ASR1K Configuration
QFP (Quantum Flow Processor) / ESP (Embedded Switch Processor) Show Commands
show platform hardware qfp active feature subscriber session
show platform hardware qfp active feature subscriber segment id
show platform hardware qfp active feature subscriber session id
show platform hardware qfp active feature subscriber segment id
show platform hardware qfp active feature subscriber session id
show platform hardware qfp active feature subscriber state feature accounting
Introduction
This document describes remediation of ISG Accounting feature applied to PPPoE Session with Traffic
Class "Internet" on ASR1000 with Cisco IOS® XE.
Components Used
The information in this document was created from the devices in a specific lab environment. All of the
devices used in this document started with a cleared (default) configuration. If your network is live, ensure
that you understand the potential impact of any command.
ISG Accounting
Included in this document is Configuration, verification of the feature in Cisco IOS® XE, verification of
programming in the Linux Kernel, verification of programming of the the feature in hardware (QFP/ESP)
and the debugs associated from Session initialisation to completion.
The ISG accounting feature gathers usage statistics on the overall session or service of the client.
In this example, ISG accounting was applied to the traffic-class Internet (Service) which was applied via the
RADIUS Attributes from the User and Service Profile on the RADIUS Server.
https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/isg/configuration/xe-3s/isg-xe-3s-book/isg-
accounting.html
Topology
Configuration
RADIUS Config
Framed-Protocol = PPP,
Service-Type = Framed,
Cisco-Account-Info += "AINTERNET",
Cisco-AVPair += "accounting-list=ACCNT_LIST1",
PPP-Client-1 Configuration
interface GigabitEthernet0/3/0
no ip address
duplex auto
speed auto
pppoe-client dial-pool-number 2
interface Dialer2
mtu 1492
ip address negotiated
encapsulation ppp
dialer pool 2
dialer idle-timeout 0
dialer persistent
aaa new-model
server 192.168.111.9
deadtime 3
interface Loopback2
interface GigabitEthernet2/0/4.200
interface GigabitEthernet2/3/4
no ip address
negotiation auto
cdp enable
interface Virtual-Template2
ip unnumbered Loopback2
keepalive 60
!
ip local pool syd-dhcp 192.0.2.1 192.0.2.6
Verification of ISG Accounting in Cisco IOS® XE and association with AAA/RADIUS Servers.
Quarantined: No
average: 9
acct queue=AAA_ML_ACCT_SHELL
acct queue=AAA_ML_ACCT_AUTH_PROXY
acct queue=AAA_ML_ACCT_NET
IP Address: 192.0.2.3
Idle Time: 0
CT Call Handle: 0
NET: Username=PPPoE-Client-1
stop_has_been_sent=N
Attribute list:
--------
NET: Username=PPPoE-Client-1
stop_has_been_sent=N
Attribute list:
Flow id is 1
No authen data
--------
Accounting:
log=0x1000000020C241
Events recorded :
CALL START
ATTR REPLACE
NET UP
IPCP_PASS
INTERIM START
VPDN NET UP
FLOW UP
update method(s) :
PERIODIC
Interface: Virtual-Access2.1
Switch-ID: 15701
Policy information:
Framed-Protocol 0 1 [PPP]
service-type 0 2 [Framed]
ssg-account-info 0 "AInternet"
Framed-Protocol 0 1 [PPP]
service-type 0 2 [Framed]
ssg-account-info 0 "AInternet"
ssg-service-info 0 "IInternet"
accounting-list 0 "ACCNT_LIST1"
ssg-service-info 0 "IInternet"
accounting-list 0 "ACCNT_LIST1"
Framed-Protocol 0 1 [PPP]
service-type 0 2 [Framed]
ssg-account-info 0 "AInternet"
Framed-Protocol 0 1 [PPP]
service-type 0 2 [Framed]
ssg-account-info 0 "AInternet"
name "Internet"
Classifiers:
4294967294 In 0 0 - Drop
Features:
Accounting:
Configuration Sources:
Service "Internet":
Version 1:
SVM ID : B20001F1
Profile : 7F7439BF3510
ssg-service-info 0 "IInternet"
accounting-list 0 "ACCNT_LIST1"
Feature : Accounting
: 000000 00 00 B2 00 01 F1 00 00 ........
: 000008 00 00 00 00 7F 74 3A 09 .....t:.
: 000010 31 58 00 00 7C 0F 00 00 1x..|...
: 000018 00 01 00 00 00 00 00 00 ........
Total sessions: 1
--------------------------------------------------
Interface: Virtual-Access2.1
Switch-ID: 15701
Features:
Accounting:
Common ACL:
Switch-ID: 15701
Switch-ID: 15701
Class: SSS
State: Active
Session ID 900
Class: ADJ
State: Active
Session ID 900
Switching Mode 1
Switch-ID: 15701
Class: SSS
State: Active
5057A8D802D800270D2B4FB4886411000B560000
Class: ADJ
State: Active
Segment-ID: 19798
Class: SSS
State: Active
Class: ADJ
State: Active
Segment-ID: 19798
Class: SSS
State: Active
Class: ADJ
State: Act
------------------------------------------------------------------------
----------------------------------------------------------------------
-----------------------------------------------------------------------------------
Flow Information:
Filter Name
-----------------------------------------------------------------------------
ACL-Internet-In
Filter Name
-----------------------------------------------------------------------------
ACL-Internet-Out
-----------------------------------------------------------------------------------
---------------------------------------------------------------------------------------------
Session ID: 80
EVSI type: PPP
QFP if handle: 80
TC feature enabled
session
-----------------------------------------------------------------------------------
Flow Information:
Flows activated/attached: 1/1
Filter Name
-----------------------------------------------------------------------------
ACL-Internet-In
Filter Name
-----------------------------------------------------------------------------
ACL-Internet-Out
-------- show plat hard qfp act feature subscriber segment id 0x0000005000004D56 --------
EVSI: 80
Is conditional debug: 0
Is SIP: 1
Macstring length: 20
vcd: 0
mtu: 1492
physical if handle: 49
Input Classes: 1
------------------------------------------------------
Output Classes: 1
------------------------------------------------------
-----------------------------------------------------------------------------------
-------- show plat hard qfp act feature subscriber segment id 0x0000005000005D57 --------
EVSI: 80
Is conditional debug: 0
Is SIP: 0
Segment status: BOUND
Macstring length: 0
Input Classes: 1
------------------------------------------------------
Output Classes: 1
------------------------------------------------------
-------- show plat hard qfp act feature subscriber session id 16908315 --------
QFP if handle: 81
session
QFP (Quantum Flow Processor) / ESP (Embedded Switch Processor) Show Commands
Verification of Traffic Class "Internet" and ISG Accounting programmed into the QFP/ESP
show platform hardware qfp active feature subscriber session
----------------------------------------------------------------------------------------
show platform hardware qfp active feature subscriber segment id <LTERM Session>
EVSI: 80
Is conditional debug: 0
Is SIP: 0
Macstring length: 0
Input Classes: 1
------------------------------------------------------
Output Classes: 1
Session ID: 80
QFP if handle: 80
TC feature enabled
session
show platform hardware qfp active feature subscriber segment id <Segment ID>
EVSI: 80
Is conditional debug: 0
Is SIP: 1
Macstring length: 20
vcd: 0
mtu: 1492
physical if handle: 49
Input Classes: 1
------------------------------------------------------
Output Classes: 1
------------------------------------------------------
QFP if handle: 81
session
show platform hardware qfp active feature subscriber state feature accounting
BRAS-ASR1K#show platform hardware qfp active feature subscriber state feature accounting
Total Install: 2
Total Remove : 1
Total Query : 0
Total Update : 0
QFP Number 0:
acct_dbg_cfg: 0x00000000
Warning: Use debug commands with caution. In general, it is recommended that these commands
only be used under the direction of your router technical support representative when remediating
specific problems. Enabling debugging can disrupt operation of the router when internetworks are
experiencing high load conditions. Hence, if logging is enabled, the access server can intermittently
freeze as soon as the console port gets overloaded with log messages.
debug radius
Debug Output
Aug 30 02:06:47.976: SSM SM ID LOCK: [PPPoE Discovery Daemon:id_lock:19798] locker <SIP>: count
0 --> 1
Aug 30 02:06:47.976: SSS PM: ANCP not enabled on 'GigabitEthernet2/3/4' - not retrieving default shaper
value
Aug 30 02:06:47.976: SSS PM: ANCP not enabled on 'GigabitEthernet2/3/4' - not retrieving default shaper
value
Aug 30 02:06:47.978: SSM SM ID LOCK: [SSS Manager:id_lock:19798] locker <SSS>: count 1 --> 2
Aug 30 02:06:47.980: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Username key not found in set
domain key API
Aug 30 02:06:47.980: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Username key not found in set
domain key API
Aug 30 02:06:47.980: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Updated NAS port for AAA ID
2931
Aug 30 02:06:47.983: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Username key not found in set
domain key API
Aug 30 02:06:47.983: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Username key not found in set
domain key API
Aug 30 02:06:47.985: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: RULE: Looking for a rule for
event session-start
Aug 30 02:06:47.986: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: SIP [PPPoE] can provide more
keys
Aug 30 02:06:47.986: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Policy reply - Need More Keys
Aug 30 02:06:47.986: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Asking client for more keys
Aug 30 02:06:47.986: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Policy reply - Need More Keys
Aug 30 02:06:47.986: SSM SM ID LOCK: [SSS Manager:id_unlock:19798] locker <SSS>: count 2 --> 1
Aug 30 02:06:47.986: SSM CM[19798]: deallocate segment: SSM ID still in use: postpone deallocate
Aug 30 02:06:47.986: SSM CM[19798]: provision segment: standby RP received existing id from active RP
Aug 30 02:06:47.986: SSM XDR[19798]: SSM provison segment, slots no slots (0x0) 0x0 not ready,
message suppressed
Aug 30 02:06:47.986: SSM CM[19798]: [PPPoE] provision first allocated base now, reserved earlier
Aug 30 02:06:48.019: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Username key does not have a
delimiter in set domain key API
Aug 30 02:06:48.019: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Username key not found in set
domain key API
Aug 30 02:06:48.022: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: RULE: Looking for a rule for
event session-start
Aug 30 02:06:48.022: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: SIP [PPP] can provide more keys
Aug 30 02:06:48.022: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Policy reply - Need More Keys
Aug 30 02:06:48.022: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: IDMGR: ask for authen status
Aug 30 02:06:48.023: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Event <idmgr did not get keys>,
State: need-more-keys to need-more-keys
Aug 30 02:06:48.023: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Asking client for more keys
Aug 30 02:06:48.023: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Policy reply - Need More Keys
Aug 30 02:06:48.028: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Username key does not have a
delimiter in set domain key API
Aug 30 02:06:48.028: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Username key does not have a
delimiter in set domain key API
Aug 30 02:06:48.032: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Access type PPP: final key
Aug 30 02:06:48.032: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Event <got process config req>,
State: need-more-keys to need-more-keys
Aug 30 02:06:48.032: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Apply config request set to AAA
list
Aug 30 02:06:48.032: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: SSS PM: Add per-user profile
info to policy context
Aug 30 02:06:48.032: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Root SIP PPPoE
Aug 30 02:06:48.032: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Enable PPPoE parsing
Aug 30 02:06:48.032: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Enable PPP parsing
Aug 30 02:06:48.032: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Event <make request>, state changed
from idle to authorizing
Aug 30 02:06:48.032: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Active key set to Auth-User
Aug 30 02:06:48.032: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Authorizing key PPPoE-Client-1
Aug 30 02:06:48.033: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Spoofed AAA reply sent for key
PPPoE-Client-1
Aug 30 02:06:48.033: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Received an AAA pass
Aug 30 02:06:48.033: SSS AAA AUTHOR [uid:900][AAA ID:2931]: [7F7439B43390]:Reply message not
exist
Aug 30 02:06:48.034: COA_HA: [ERR] Unable to get coa_ctx from shdb 0x55000356
Framed-Protocol 0 1 [PPP]
service-type 0 2 [Framed]
ssg-account-info 0 "AInternet"
Aug 30 02:06:48.039: SSS AAA AUTHOR [uid:900][AAA ID:2931]: SIP PPP[7F756CC2B030] parsed as
Success
Aug 30 02:06:48.039: SSS AAA AUTHOR [uid:900][AAA ID:2931]: SIP PPP[7F756DAD3800] parsed as
Ignore
Aug 30 02:06:48.039: SSS AAA AUTHOR [uid:900][AAA ID:2931]: SIP PPPoE[7F756CCD6BF0] parsed
as Success
Aug 30 02:06:48.039: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Event <service not found>, state
changed from authorizing to complete
Aug 30 02:06:48.039: SSS AAA AUTHOR [uid:900][AAA ID:2931]: No service authorization info found
Aug 30 02:06:48.039: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Active Handle present - B6000D41
Aug 30 02:06:48.039: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Freeing Active Handle; SSS Policy
Context Handle = 8B000F38
Aug 30 02:06:48.040: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Event <free request>, state changed
from complete to terminal
Aug 30 02:06:48.040: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: RULE: Looking for a rule for
event session-start
Aug 30 02:06:48.041: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Event <rcvd keys>, State: need-
more-keys to check-auth-needed
Aug 30 02:06:48.041: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Handling Authorization Check
Aug 30 02:06:48.041: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Event <send auth>, State: check-
auth-needed to authorizing
Aug 30 02:06:48.041: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Authorization:Fetching method list
from SIP:PPPoE
Aug 30 02:06:48.041: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Authorization:Failed method list
access from SIP:PPPoE
Aug 30 02:06:48.041: SSS PM ERROR: Policy context is NULL or missing action in get aaa author passwd
list API
Aug 30 02:06:48.041: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Root SIP PPPoE
Aug 30 02:06:48.041: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Enable PPPoE parsing
Aug 30 02:06:48.041: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Enable PPP parsing
Aug 30 02:06:48.041: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Event <make request>, state changed
from idle to authorizing
Aug 30 02:06:48.041: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Active key set to Auth-User
Aug 30 02:06:48.041: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Authorizing key PPPoE-Client-1
Aug 30 02:06:48.042: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Set authorization profile type default
- user
Aug 30 02:06:48.043: SSS AAA AUTHOR [uid:900][AAA ID:2931]: AAA request sent for key PPPoE-
Client-1
Aug 30 02:06:48.043: SSS PM [7F7439B42FB0][AAA ID:2931]: key lists to append are empty
Aug 30 02:06:48.043: SSS PM [7F7439B42FB0][AAA ID:2931]: Authen status update; is now "unauthen"
Aug 30 02:06:48.043: SSS PM [7F7439B42FB0][AAA ID:2931]: IDMGR: assert authen status "unauthen"
Aug 30 02:06:48.043: SSS PM [7F7439B42FB0][AAA ID:2931]: IDMGR: service not started yet; cannot
update
Aug 30 02:06:48.043: SSS PM [7F7439B42FB0][AAA ID:2931]: Did not update authen status to IDMGR
Aug 30 02:06:48.043: SSS PM [7F7439B42FB0][AAA ID:2931]: Username key not found in set domain
key API
Aug 30 02:06:48.043: SSS PM [7F7439B42FB0][AAA ID:2931]: Username key not found in set domain
key API
Aug 30 02:06:48.043: SSS PM [7F7439B42FB0][AAA ID:2931]: Updated NAS port for AAA ID 2931
Aug 30 02:06:48.043: SSS PM [7F7439B42FB0][AAA ID:2931]: IDMGR: send event Session Update
Aug 30 02:06:48.044: SSS PM [7F7439B42FB0][AAA ID:2931]: Client block is NULL in get client block
with handle D8000F3B
Aug 30 02:06:48.046: SSS PM [7F7439B42FB0][AAA ID:2931]: RULE: Looking for a rule for event
service-start
Aug 30 02:06:48.046: SSS PM [7F7439B42FB0][AAA ID:2931]: RULE: Intf CloneSrc Vt2: service-rule
any: None
Aug 30 02:06:48.046: SSS PM [7F7439B42FB0][AAA ID:2931]: RULE: Intf InputI/f Gi2/3/4: service-rule
any: None
Aug 30 02:06:48.046: SSS PM [7F7439B42FB0][AAA ID:2931]: RULE: Glob: service-rule any: default-
internal-rule
Aug 30 02:06:48.046: SSS PM CCM: Found SHDB handle 0x55000356 for policy context
0x7F7439B43390
Aug 30 02:06:48.046: SSS PM HA: Dynsess not required shdb = 0x55000356 spol_ctx = 0x7F7439B43390
Aug 30 02:06:48.046: SSS PM CCM: Set PM HA as not ready (session 0x55000356) successfully
Aug 30 02:06:48.046: SSS PM HA: Adding an action (type APPLY-SERVICE) into the PM HA queue
Aug 30 02:06:48.046: SSS PM HA: NE: Did not find any duplicate service-apply action
Aug 30 02:06:48.046: SSS PM HA: Setting current elem, from 0x0 to 0x7F742BC50EE0
Aug 30 02:06:48.046: SSS PM CCM: New bulk session (shdb 0x55000356), ctx 0x7F7439B43390,
dsess_hdl 0x0, APPLY-SERVICE OK
Aug 30 02:06:48.047: SSS PM [7F7439B42FB0][AAA ID:2931]: RULE[0]: This service Internet is marked
as not cancelled
Aug 30 02:06:48.049: SSS AAA AUTHOR [uid:900][AAA ID:0]: Authorization:Fetching method list from
SIP:Web-service-logon
Aug 30 02:06:48.049: SSS AAA AUTHOR [uid:900][AAA ID:0]: Authorization:Failed method list access
from SIP:Web-service-logon
Aug 30 02:06:48.049: SSS AAA AUTHOR [uid:900][AAA ID:0]: Root SIP PPPoE
Aug 30 02:06:48.049: SSS AAA AUTHOR [uid:900][AAA ID:0]: Enable PPPoE parsing
Aug 30 02:06:48.050: SSS AAA AUTHOR [uid:900][AAA ID:0]: Enable PPP parsing
Aug 30 02:06:48.050: SSS AAA AUTHOR [uid:900][AAA ID:0]: Enable Web-service-logon parsing
Aug 30 02:06:48.050: SSS AAA AUTHOR [uid:900][AAA ID:0]: Event <make request>, state changed
from idle to authorizing
Aug 30 02:06:48.050: SSS AAA AUTHOR [uid:900][AAA ID:0]: Active key set to Apply-Service
Aug 30 02:06:48.050: SSS AAA AUTHOR [uid:900][AAA ID:0]: Authorizing key Internet
Aug 30 02:06:48.050: SSS AAA AUTHOR [uid:900][AAA ID:0]: Set authorization profile type to service
Aug 30 02:06:48.050: SSS AAA AUTHOR [uid:900][AAA ID:0]: AAA request sent for key Internet
Aug 30 02:06:48.056: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Received an AAA pass
Aug 30 02:06:48.056: SSS AAA AUTHOR [uid:900][AAA ID:2931]: [7F7439B43390]:Reply message not
exist
Framed-Protocol 0 1 [PPP]
service-type 0 2 [Framed]
ssg-account-info 0 "AInternet"
Aug 30 02:06:48.062: SSS AAA AUTHOR [uid:900][AAA ID:2931]: SIP PPP[7F756CC2B030] parsed as
Success
Aug 30 02:06:48.062: SSS AAA AUTHOR [uid:900][AAA ID:2931]: SIP PPP[7F756DAD3800] parsed as
Ignore
Aug 30 02:06:48.062: SSS AAA AUTHOR [uid:900][AAA ID:2931]: SIP PPPoE[7F756CCD6BF0] parsed
as Success
Aug 30 02:06:48.062: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Event <service not found>, state
changed from authorizing to complete
Aug 30 02:06:48.062: SSS AAA AUTHOR [uid:900][AAA ID:2931]: No service authorization info found
Aug 30 02:06:48.062: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Active Handle present - 3D000D42
Aug 30 02:06:48.062: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Attr list is NULL, apply config
handle [25001CF0] not reset
Aug 30 02:06:48.062: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Freeing Active Handle; SSS Policy
Context Handle = 8B000F38
Aug 30 02:06:48.062: SSS PM: PROFILE-DB: Hash value matches that of the existing profile
Aug 30 02:06:48.062: SSS AAA AUTHOR [uid:900][AAA ID:2931]: Event <free request>, state changed
from complete to terminal
Aug 30 02:06:48.062: RADIUS: Received from id 21691/88 192.168.111.9:1645, Access-Accept, len 277
Aug 30 02:06:48.063: SSS AAA AUTHOR [uid:900][AAA ID:0]: Received an AAA pass
ssg-service-info 0 "IInternet"
accounting-list 0 "ACCNT_LIST1"
Aug 30 02:06:48.068: SSS AAA AUTHOR [uid:900][AAA ID:0]: SIP PPP[7F756CC2B030] parsed as
Success
Aug 30 02:06:48.068: SSS AAA AUTHOR [uid:900][AAA ID:0]: SIP PPP[7F756DAD3800] parsed as
Ignore
Aug 30 02:06:48.068: SSS AAA AUTHOR [uid:900][AAA ID:0]: SIP PPPoE[7F756CCD6BF0] parsed as
Success
Aug 30 02:06:48.068: SSS AAA AUTHOR [uid:900][AAA ID:0]: Event <service not found>, state changed
from authorizing to complete
Aug 30 02:06:48.068: SSS AAA AUTHOR [uid:900][AAA ID:0]: No service authorization info found
Aug 30 02:06:48.068: SSS AAA AUTHOR [uid:900][AAA ID:0]: Active Handle present - FD000D43
Aug 30 02:06:48.068: SSS PM [uid:900][7F7439B42FB0][AAA ID:2931]: Attr list is NULL, apply config
handle [0] not reset
Aug 30 02:06:48.068: SSS AAA AUTHOR [uid:900][AAA ID:0]: Freeing Active Handle; SSS Policy
Context Handle = D8000F3B
Aug 30 02:06:48.069: SSS PM: PROFILE-DB: create "Internet"/7F7439BF3510 hdl 74001D20 ref 1
Aug 30 02:06:48.069: SSS AAA AUTHOR [uid:900][AAA ID:0]: SVM download for "Internet" ok
Aug 30 02:06:48.069: SSS AAA AUTHOR [uid:900][AAA ID:0]: Event <free request>, state changed from
complete to terminal
Aug 30 02:06:48.069: COA_CCM: Free session - Ignoring policy context 0x7F7439B42BD0 (not our
session)
Aug 30 02:06:48.069: SSS PM CCM: [ERR] Free session - Ignoring policy context 0x7F7439B42BD0 (not
our HA session)
Aug 30 02:06:48.069: SSS PM [7F7439B42BD0][AAA ID:0]: SSS PM: destroy all user profile info from
policy context
Aug 30 02:06:48.069: SSS PM: PROFILE-DB: incremented ref "Internet"/7F7439BF3510 hdl 74001D20
ref 2
Aug 30 02:06:48.070: SSS PM [uid:900][7F7439B42FB0][AAA ID:2931]: Event <srvf not found>, State:
authorizing to check-auth-needed
Aug 30 02:06:48.070: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: RULE: Looking for a rule for
event session-service-found
Aug 30 02:06:48.082: SSM SM ID LOCK: [SSS Manager:id_lock:23895] locker <SIP>: count 0 --> 1
Aug 30 02:06:48.082: SSM XDR[23895]: SSM provison segment, slots no slots (0x0) 0x0 not ready,
message suppressed
Aug 30 02:06:48.082: SSM SM ID LOCK: [SSS Manager:id_lock:19798] locker <SSF>: count 0 --> 1
Aug 30 02:06:48.083: SSM SM ID LOCK: [SSS Feature Manager:id_lock:19798] locker <SSF>: count 1 --
>2
Aug 30 02:06:48.083: Accounting: Apply outbound direction from Service Profile configuration
Aug 30 02:06:48.084: Accounting[uid:900]: Trying to get the sync data for ctx[7F743A303CF0] type[3]
Aug 30 02:06:48.088: Accounting[uid:900]: iedge acct context is NULL or acct accuracy not enabled
Aug 30 02:06:48.088: Accounting[uid:900]: Obtained record(7F743A14CD90) from SSS CQ lib
Aug 30 02:06:48.088: Accounting: iEdge Accounting send flow start record success to AAA.
Aug 30 02:06:48.088: Accounting: Update inbound direction from Service Profile configuration
Aug 30 02:06:48.090: SSM XDR[19798]: SSM feature install, slots no slots (0x0) 0x0 not ready, message
suppressed
Aug 30 02:06:48.090: SSM XDR[19798]: SSM feature install, slots no slots (0x0) 0x0 not ready, message
suppressed
Aug 30 02:06:48.090: SSM XDR: SSM feature update, slots no slots (0x0) 0x0 not ready, message
suppressed
Aug 30 02:06:48.094: SSS PM [uid:900][7F7439B43390][AAA ID:2931]: Null client block; Cannot update
RP
Aug 30 02:06:48.094: SSS PM CCM: Found SHDB handle 0x55000356 for policy context
0x7F7439B43390
Aug 30 02:06:48.094: SSS PM CCM: dynsess handle for shdb handle 0x55000356 not yet available (need
to create one)
Aug 30 02:06:48.094: SSS PM CCM: policy_ha_ccm_update_session: There are 1 READY actions and 0
SYNCED actions, so mark CCM READY
Aug 30 02:06:48.094: SSS PM CCM: Set PM HA as sync ready (session 0x55000356) successfully
Aug 30 02:06:48.096: SSM XDR[19798]: SSM update segment, slots no slots (0x0) 0x0 not ready, message
suppressed
Aug 30 02:06:48.096: SSM CM[23895]: [Lterm] provision second allocated base now, never reserved
Aug 30 02:06:48.096: SSM CM[23895]: CM FSM: st Down, ev Prov seg->Open
Aug 30 02:06:48.096: SSM CM[23895]: [SSS] shQ request send ready event
Aug 30 02:06:48.096: SSM CM[23895]: [ADJ] shQ request send ready event
Aug 30 02:06:48.096: SSM SM[SSS:Lterm:23895]: Found segment data: Prov -> Ready
Aug 30 02:06:48.096: SSM SM[ADJ:Lterm:23895]: Found segment data: Prov -> Ready
Aug 30 02:06:48.097: SSM FH FH[19798:ft 7512:7512]: Install feature: Idle -> Installed
Aug 30 02:06:48.098: SSM FH FH[19798:ft 7512:7512]: Install feature: Idle -> Installed
Aug 30 02:06:48.099: SSM CM FH[19798]: check ready all: failed for class SSS
Aug 30 02:06:48.099: SSM FH FH[19798:ft 7512:7512]: Feature data ready: Installed -> Ready
Aug 30 02:06:48.099: SSM CM FH[19798]: check ready all: failed for class ADJ
Aug 30 02:06:48.099: SSM FH FH[19798:ft 11609:11609]: Install feature: Idle -> Installed
Aug 30 02:06:48.101: SSM FH FH[19798:ft 11609:11609]: Install feature: Idle -> Installed
Aug 30 02:06:48.101: SSM CM FH[19798]: check ready all: failed for class SSS
Aug 30 02:06:48.101: SSM FH FH[19798:ft 11609:11609]: Feature data ready: Installed -> Ready
Aug 30 02:06:48.101: SSM CM FH[19798]: check ready all: failed for class ADJ
Aug 30 02:06:48.102: SSM FH FH[19798:ft 11609:11609]: Update feature: no state change, Ready
Aug 30 02:06:48.102: SSM FH FH[19798:ft 11609:11609]: Update feature: no state change, Ready
Aug 30 02:06:48.102: SSM CM[19798]: [SSS] shQ request send ready event
Aug 30 02:06:48.102: SSM CM[19798]: [ADJ] shQ request send ready event
Aug 30 02:06:48.102: SSM SM[SSS:PPPoE:19798]: Found segment data: Prov -> Ready
Aug 30 02:06:48.103: SSM CM[23895]: [SSS] shQ request send ready event
Aug 30 02:06:48.103: SSM FH FH[19798:ft 7512:7512]: Bind feature: Ready -> Active
Aug 30 02:06:48.103: SSM FH FH[19798:ft 11609:11609]: Bind feature: Ready -> Active
Aug 30 02:06:48.103: SSM SM[ADJ:PPPoE:19798]: Found segment data: Prov -> Ready
Aug 30 02:06:48.103: SSM CM[23895]: [ADJ] shQ request send ready event
Aug 30 02:06:48.103: SSM FH FH[19798:ft 7512:7512]: Bind feature: Ready -> Active
Aug 30 02:06:48.103: SSM FH FH[19798:ft 11609:11609]: Bind feature: Ready -> Active
Aug 30 02:06:48.104: SSM SM[ADJ:Lterm:23895]: Found segment data: no state change, Active
Aug 30 02:06:48.104: SSM CM[19798]: [PPPoE] send client event, type=Segment event
Aug 30 02:06:48.104: SSM CM[23895]: [Lterm] send client event, type=Segment event
Aug 30 02:06:48.104: SSS PM: ANCP not enabled on 'GigabitEthernet2/3/4' - not retrieving default shaper
value
Aug 30 02:06:48.105: SSS PM: ANCP not enabled on 'GigabitEthernet2/3/4' - not retrieving default shaper
value
Aug 30 02:06:48.106: Vi2.1 IPCP AUTHOR: Start. Her address 0.0.0.0, we want 0.0.0.0
Aug 30 02:06:48.106: Vi2.1 IPCP AUTHOR: Done. Her address 0.0.0.0, we want 0.0.0.0
Aug 30 02:06:48.107: Vi2.1 LCP: O PROTREJ [Open] id 2 len 10 protocol CDPCP (0x01010004)
Aug 30 02:06:48.107: Vi2.1 IPCP: I CONFACK [REQsent] id 1 len 10
Aug 30 02:06:48.144: Vi2.1 Added to neighbor route AVL tree: topoid 0, address 192.0.2.3
<<<SNIP>>>
Aug 30 03:35:00.977: SSS PM: ANCP not enabled on 'GigabitEthernet2/3/4' - not retrieving default shaper
value
Aug 30 03:35:00.977: SSS PM: ANCP not enabled on 'GigabitEthernet2/3/4' - not retrieving default shaper
value
Aug 30 03:35:35.914: EPC CP: Checking for file options based on wireshark support
Aug 30 03:35:35.915: EPC CP: Prv. attached if GigabitEthernet2/0/4.200 dir 3, new if to attach Control
Plane dir 1
Aug 30 03:35:35.915: EPC CP: Prv. attached if GigabitEthernet2/0/4.200 dir 3, new if to attach Control
Plane dir 2
Aug 30 03:35:39.726: EPC CP: Checking for file options based on wireshark support
Aug 30 03:35:39.726: EPC CP: Wireshark and file options are not supported
Aug 30 03:35:40.305: EPC CP: Checking for file options based on wireshark support
Aug 30 03:35:40.305: EPC CP: Wireshark and file options are not supported
Aug 30 03:35:41.049: EPC CP: Checking for file options based on wireshark support
Aug 30 03:35:41.049: EPC CP: Wireshark and file options are not supported
Aug 30 03:35:41.404: EPC CP: Checking for file options based on wireshark support
Aug 30 03:36:42.885: Accounting[uid:900]: Dynamic record gathering started for ctx 7F743A303CF0
Aug 30 03:36:42.885: Accounting[uid:900]: Control info records gathering started for ctx 7F743A303CF0
Aug 30 03:36:45.912: %PIM-5-NBRCHG: VRF C1: neighbor 10.11.0.7 DOWN on interface Tunnel4 DR
Aug 30 03:36:45.912: %PIM-5-DRCHG: VRF C1: DR change from neighbor 10.11.0.7 to 10.11.0.2 on
interface Tunnel4