Source IP and/or VLAN mismatch MX84

Trust
Comes here often

Source IP and/or VLAN mismatch MX84

Hello people,
has anyone ever seen these errors and can tell me the reason?
The errors always occur at XX:29:25 and XX:09:25.

 

Trust_0-1689230086440.png

 

- The clients are all configured to DHCP.

- The VLANs are configured Layer 3 on the switches.
- The DHCP server is on the MX84 (relay).


Here is the configuration of the switch ports

Trust_1-1689230167767.png

 

Thank you

6 Replies 6
alemabrahao
Kind of a big deal
Kind of a big deal

Are you 100% sure that no machine is configured with static IP?
 
Have you tried to check which ports of the Switches are connected to the source MAC?
I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
ww
Kind of a big deal
Kind of a big deal

Did you set the dhcp server to give out the  switch svi-ip as router/gateway 

RaphaelL
Kind of a big deal
Kind of a big deal

1- Does 10.201.10.76 belongs to vlan 340 ? RPF checks are failing. refer to the documentation below

2- The reason why it shows every 30 mins : Every 30 minutes, the top 3 offending clients are logged on dashboard in Network-wide > Event Log. These events are visible in the event log after filtering for Source IP and/or VLAN mismatch. 

3- Last resort you can disable the IP spoofing to temporarly allow the trafic.

 

 

 

https://documentation.meraki.com/MX/Firewall_and_Traffic_Shaping/IP_Source_Address_Spoofing_Protecti...

Trust
Comes here often

Hi guys and thanks for your answers.
I have followed these instructions.
https://documentation.meraki.com/MS/Layer_3_Switching/Layer_3_Switch_Example

This is my Transit VLAN

Trust_0-1689336830491.png

 

and on the Switch

 

Trust_1-1689336886107.png

Trust_2-1689336902673.png

 

as an example the VLAN 340 on the switch. As DHCP Relay I have chosen the Transit VLAN

 

Trust_4-1689337026584.png

 

This is my static route on the MX

Trust_5-1689337113384.png

 

and the DHCP server on the MX

Trust_8-1689337308269.png

 

this is my configuration for the switchport

Trust_7-1689337269289.png

 

this way I have created three VLANs on the switch and DHCP servers on the MX.

I am not sure where my mistake is.

 

I hope I have described everything understandably and you can help me.

Thanks a lot

Trust
Comes here often

any idea?

alemabrahao
Kind of a big deal
Kind of a big deal

Are you 100% sure that no machine is configured with static IP?
 
Have you tried to check which ports of the Switches are connected to the source MAC?
I am not a Cisco Meraki employee. My suggestions are based on documentation of Meraki best practices and day-to-day experience.

Please, if this post was useful, leave your kudos and mark it as solved.
Get notified when there are additional replies to this discussion.
Welcome to the Meraki Community!
To start contributing, simply sign in with your Cisco account. If you don't yet have a Cisco account, you can sign up.
Labels