Source IP and/or VLAN mismatch MX84

Trust
Comes here often

Source IP and/or VLAN mismatch MX84

Hello people,
has anyone ever seen these errors and can tell me the reason?
The errors always occur at XX:29:25 and XX:09:25.

 

Trust_0-1689230086440.png

 

- The clients are all configured to DHCP.

- The VLANs are configured Layer 3 on the switches.
- The DHCP server is on the MX84 (relay).


Here is the configuration of the switch ports

Trust_1-1689230167767.png

 

Thank you

6 Replies 6
alemabrahao
Kind of a big deal
Kind of a big deal

Are you 100% sure that no machine is configured with static IP?
 
Have you tried to check which ports of the Switches are connected to the source MAC?
I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
ww
Kind of a big deal
Kind of a big deal

Did you set the dhcp server to give out the  switch svi-ip as router/gateway 

RaphaelL
Kind of a big deal
Kind of a big deal

1- Does 10.201.10.76 belongs to vlan 340 ? RPF checks are failing. refer to the documentation below

2- The reason why it shows every 30 mins : Every 30 minutes, the top 3 offending clients are logged on dashboard in Network-wide > Event Log. These events are visible in the event log after filtering for Source IP and/or VLAN mismatch. 

3- Last resort you can disable the IP spoofing to temporarly allow the trafic.

 

 

 

https://documentation.meraki.com/MX/Firewall_and_Traffic_Shaping/IP_Source_Address_Spoofing_Protecti...

Trust
Comes here often

Hi guys and thanks for your answers.
I have followed these instructions.
https://documentation.meraki.com/MS/Layer_3_Switching/Layer_3_Switch_Example

This is my Transit VLAN

Trust_0-1689336830491.png

 

and on the Switch

 

Trust_1-1689336886107.png

Trust_2-1689336902673.png

 

as an example the VLAN 340 on the switch. As DHCP Relay I have chosen the Transit VLAN

 

Trust_4-1689337026584.png

 

This is my static route on the MX

Trust_5-1689337113384.png

 

and the DHCP server on the MX

Trust_8-1689337308269.png

 

this is my configuration for the switchport

Trust_7-1689337269289.png

 

this way I have created three VLANs on the switch and DHCP servers on the MX.

I am not sure where my mistake is.

 

I hope I have described everything understandably and you can help me.

Thanks a lot

Trust
Comes here often

any idea?

alemabrahao
Kind of a big deal
Kind of a big deal

Are you 100% sure that no machine is configured with static IP?
 
Have you tried to check which ports of the Switches are connected to the source MAC?
I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
Get notified when there are additional replies to this discussion.