Page 1 of 1

DNS-REPLY traffic triggered user-port shutdown of interface

Posted: 08 May 2020 09:26
by mreza
Hi,

What means :

5/08/20 1:39:37 DNS-REPLY traffic triggered user-port shutdown of interface 1/24
5/08/20 1:39:37 Triggered by packet[0..63] :
5/08/20 1:39:37 000C29CB 0FBF00A0 572A713B 81000001 08004500 0028C4E9 00004006 1FE6C0

Re: DNS-REPLY traffic triggered user-port shutdown of interface

Posted: 11 May 2020 14:28
by silvio
you have configured the userport feature at your access ports. At port 1/24 some device has answered to a dns query.
Check your config with
> show configuration snapshot qos

Check the violation with
> show interface port

if there is a port down (permanent) you can release it with
> inteface 1/24 clear-violation-all

If this device is now a regulary device you have to change your portgroup (now without 1/24). Maybe you have configured filter dns - than the port isn't down - but the dns replies will delete.
regards
Silvio