RE: Multicast filter does not avoid reply

From: Gajewski Mariusz (Mariusz.Gajewski@telekomunikacja.pl)
Date: Thu Apr 14 2005 - 07:55:07 GMT-3


Hi ,
        I just did gladston's config , with pim neighborship and mcast
routing disabled on both routers , tried pim sparse/sparse-dense/dense , the
effect is the same - ping is still going.
That makes me scratch my head ...
Per doc-cd :
"...IGMP filtering controls only group specific query and membership
reports, including join and leave reports. It does not control general IGMP
queries. IGMP filtering has no relationship with the function that directs
the forwarding of IP multicast traffic.."

So, no mcast routing , no pim neighborship and it's still working. Any
ideas ?

Mariusz

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of Bob
Sinclair
Sent: Thursday, April 14, 2005 1:18 AM
To: gladston@br.ibm.com; ccielab@groupstudy.com
Subject: Re: Multicast filter does not avoid reply

Gladston,

If you want to test the join filter, then do not make R3 a PIM neighbor.
Just do a join-group on the FastEthernet interface of R3. No PIM, no
multicast-routing.

HTH,

Bob Sinclair
CCIE #10427, CCSI 30427, CISSP
www.netmasterclass.net

  ----- Original Message -----
  From: gladston@br.ibm.com
  To: ccielab@groupstudy.com
  Sent: Wednesday, April 13, 2005 5:33 PM
  Subject: Multicast filter does not avoid reply

  Although 3550 is configured with igmp filter, and show commands shows it
is working, R3 reply to ping from R4.

  R3-----(fa0/2)CAT2(fa0/3)-----R4

  R3 and R4 are configured as PIM sparse-dense-mode. There is no RP. The
goal is to test IGMP filtering.

  nmcr4>ena
  nmcr4#p
  Protocol [ip]:
  Target IP address: 239.2.2.2
  Repeat count [1]: 99999
  Datagram size [100]:
  Timeout in seconds [2]:
  Extended commands [n]:
  Sweep range of sizes [n]:
  Type escape sequence to abort.
  Sending 99999, 100-byte ICMP Echos to 239.2.2.2, timeout is 2 seconds:

  Reply to request 0 from 172.16.34.3, 4 ms
  Reply to request 1 from 172.16.34.3, 4 ms

  Group 239.2.2.2 does not appear on 3550:

  CAT2#sh mac-address-table multicast vlan 34
  Vlan Mac Address Type Ports
  ---- ----------- ---- -----
    34 0100.5e00.0128 IGMP Fa0/1, Fa0/2
    34 0100.5e01.0101 IGMP Fa0/1, Fa0/2

  CAT configuration:

  ip igmp profile 5
      range 239.2.2.2 239.2.2.2
  !
  vlan 34
  !
  interface FastEthernet0/2
   switchport access vlan 34
   switchport mode access
   no ip address
   spanning-tree portfast
   ip igmp filter 5

  Isn't is strange? or may I missing something.

  R3 is the IGMP query. I was wondering if it would cause this:
  (as R3 is a router, 3550 forwards any multicast to the router, causing
this; well, it would happens even if R3 was not the querier)

  CAT2#sh ip igmp snooping querier v 34
  Vlan IP Address IGMP Version Port
  ---------------------------------------------------
  34 172.16.34.3 v2 Fa0/2

  _______________________________________________________________________
  Subscription information may be found at:
  http://www.groupstudy.com/list/CCIELab.html



This archive was generated by hypermail 2.1.4 : Tue May 03 2005 - 07:54:57 GMT-3