Overview
Describes how to troubleshoot common BFD issues efficiently.
This section explains how to identify and resolve common BFD issues.
If you experience issues with BFD, start by checking the control connection between Cisco SD-WAN Manager and the edge router by running the show sdwan control connections command.
Device#show sdwan control connections
PEER PEER CONTROLLER
PEER PEER PEER SITE DOMAIN PEER PRIV PEER PUB GROUP
TYPE PROT SYSTEM IP ID ID PRIVATE IP PORT PUBLIC IP PORT LOCAL COLOR PROXY STATE UPTIME ID
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
vsmart dtls 172.16.255.19 100 1 10.0.5.19 12355 10.0.5.19 12355 lte No up 0:12:45:44 0
vsmart dtls 172.16.255.20 200 1 10.0.12.20 12356 10.0.12.20 12356 lte No up 0:15:59:45 0
vmanage dtls 172.16.255.22 200 0 10.0.12.22
If you identify issues with pushing the device template to the device, collect debug logs on the edge device as shown below.
debug netconf all
request platform soft system shell
tail -f /var/log/confd/cia-netconf-trace.log
If Cisco SD-WAN Manager has successfully pushed the configuration to the device and the issue still persists, run the show sdwan running-config command to view all details related to BFD.
If the transport-side BFD session is down, check the packet filter data under the Cisco Catalyst SD-WAN tunnel interface to ensure that you have allowed the BFD packets to pass through on the transport side. Look for allow-service bgp and allow-service bfd in the output.
Device#show sdwan running-config | sec sdwan
tunnel mode sdwan
sdwan
interface GigabitEthernet1
tunnel-interface
encapsulation ipsec
color lte
allow-service bgp
allow-service bfd
……………