ER8411 Policy routing / Bandwidth control upstream modem MAC/IP addressing bug

ER8411 Policy routing / Bandwidth control upstream modem MAC/IP addressing bug

ER8411 Policy routing / Bandwidth control upstream modem MAC/IP addressing bug
ER8411 Policy routing / Bandwidth control upstream modem MAC/IP addressing bug
2024-09-05 23:50:35 - last edited 2024-09-06 15:15:44
Model: ER8411  
Hardware Version: V1
Firmware Version: 1.2.1 / 1.2.2 beta

I have finally discovered what is causing some issues on my network with random connectivity loss on some vlans and it is to do with policy routing and bandwidth control.

 

My setup:

 

Virgin Business UK, 5 static IPs, Hitrons Chita ISP modem which establishes a GRE tunnel to VMB datacentre, and the 5 statics are accessible over that GRE tunnel to the LAN ports on the modem without any extra NAT, which can then be used by third party routers for internal gateways, nat etc.  I would imagine your technical team are aware of how this works.

 

In my case, i have 3 links to my ER8411 WAN ports to facilitate my use of 3 of my public IPs to distribute over my VLans using policy routing to keep internal and public networks on seperate public IPs.  nothing unusual.  This works perfectly internally to assign different external IPs per network.  I have policy routing enabled to force different VLANs onto different wan ports on my ER8411 to, for example, ensure my public wifi network always goes out on a different IP to an internal network.

 

However, on both 1.2.1 and 1.2.2 beta firmware, as soon as the policy routing and bandwidth control "kicks in" after a router reboot, the upstream Hitrons modem ends up with at least one of the WAN ports on the ER8411 reporting 2 different IP addresses to the Hitrons, causing packet losses through NAT on traffic going back into my networks

 

Image below

 

As you can see, the WAN port with MAC ending 4E-14 is now reporting 2 IP addresses (both in my public IP range) one of which overlaps with WAN port MAC ending 4E-14

 

4E-13 is set on my ER8411 as static ending .90 and 4E-14 is set as static ending .92

 

Before policy routing is activated on the router when it boots, each WAN port has its own singular IP address with no overlap.

 

  0      
  0      
#1
Options
6 Reply
Re:ER8411 Policy routing upstream modem MAC addressing bug
2024-09-06 13:39:25

 Upon further testing, this seems to be a weird bug caused by interaction between policy routing and bandwidth control (bandwidth set per network on the WAN interface i have set that network to use via policy routing)

 

With policy routing enabled and bandwidth control off, results are normal.

 

With bandwidth control on and policy routing off, results are normal.

 

When both are enabled it exhibits the behaviour in my post above.

 

Policy routing ON and bandwidth control OFF have been normal for an entire day now, and persists even after a reboot.

 

  0  
  0  
#2
Options
Re:ER8411 Policy routing upstream modem MAC addressing bug
2024-09-09 03:32:16

Hi @GRL 

Thanks for posting in our business forum.

I have informed the dev team to look into this issue you've reported. Just let you know this. Will get back to you as soon as I am updated.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  1  
  1  
#3
Options
Re:ER8411 Policy routing upstream modem MAC addressing bug
2024-09-13 00:56:25

Hi @GRL 

Thanks for posting in our business forum.

We failed to reproduce the symptoms you reported with our test device.

Will you be able to remote debug this with us? If possible, what would be your time zone?

Are you okay to share the backup with us before I arrange a remote?

If you agree to share the backup, I will create a ticket for you and you are supposed to reply to the email with the backup.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  1  
  1  
#4
Options
Re:ER8411 Policy routing upstream modem MAC addressing bug
2024-09-13 07:52:30

  @Clive_A 

 

Yes, go ahead and produce the ticket and i will share my config and some other findings i have made

  0  
  0  
#5
Options
Re:ER8411 Policy routing upstream modem MAC addressing bug
2024-09-13 08:08:54

Hi @GRL 

Thank you so much for taking the time to post the issue on TP-Link community!

To better assist you, I've created a support ticket via your registered email address, and escalated it to our support engineer to look into the issue. The ticket ID is TKID240929172, please check your email box and ensure the support email is well received. Thanks!

Once the issue is addressed or resolved, welcome to update this topic thread with your solution to help others who may encounter the same issue as you did.

Many thanks for your great cooperation and patience!

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  1  
  1  
#6
Options
Re:ER8411 Policy routing / Bandwidth control upstream modem MAC/IP addressing bug
2024-09-13 08:09:17

Hi @GRL 

Please attach a diagram of your network as well. Thanks.

Best Regards! If you are new to the forum, please read: Howto - A Guide to Use Forum Effectively. Read Before You Post. Look for a model? Search your model NOW Official and Beta firmware. NEW features! Subscribe for the latest update!Download Beta Here☚ ☛ ★ Configuration Guide ★ ☚ ☛ ★ Knowledge Base ★ ☚ ☛ ★ Troubleshooting ★ ☚ ● Be kind and nice. ● Stay on the topic. ● Post details. ● Search first. ● Please don't take it for granted. ● No email confidentiality should be violated. ● S/N, MAC, and your true public IP should be mosaiced.
  1  
  1  
#7
Options