Hi
My name is Demian Pecile, and I am starting to admin CMTS.
I have an Arris C3 and 50 CM550.
I have 2 questions ...
My RF is deep fiber so, 2 amplifiers max from optical node to the customer. I choose QAM64 (modulation profile 30) for upstream, and I have 50 for SNR and 40-43 for MER in each upstrem.
This values are ok ? I think they are great, but my next question make me think I am missing something.
I am having some cuts in some modems, for about 1-2 min, when don't reply to the pings from the CMTS. The strange thing (for me) is the modem remain online.
Some extra data.
My cable flap list show these modems are flaping.
0015.96xx.xxxx C1/0/U1.0 0 100.0000 0 238 238 JAN 25 13:51:53
0015.96xx.xxxx C1/0/U0.0 2 99.9333 396 98 100 JAN 25 13:25:27
0015.96xx.xxxx C1/0/U3.0 1 100.0000 0 6 7 JAN 25 12:41:38
and the logging history show a lot of TEK Invalid - Invalid Key Sequence Number and some Unable to Successfully Range CM - MAC Addr: 0015.96xx.xxxx.
So my question is, when the CM go unresponsive, they are adjusting freq, or having trouble with the Key encryption ?
I will apreciate any kind of help to know where to find and troubleshot this errors.
Thanks.
Demian
any idea ??? I still having the time outs problems, and I am going mad
How many upstreams do you have enabled?
Do you have any load-balancing enabled?
The real question is: are some of the upstreams residing in the same load balancing group separated?
If not, did you enable self-signing of the certificates? ( cable privacy accept-self-signed-certificate )
Did you remove the checking of the validity periods? ( no cable privacy check-cert-validity-periods )
What are your kek and tek lifetimes?
Hey briskola thanks for answer
How many upstreams do you have enabled? 4
Do you have any load-balancing enabled? nope, I disable the load-balancing because the upstream are serviving diferent areas.
The real question is: are some of the upstreams residing in the same load balancing group separated?
If not, did you enable self-signing of the certificates? ( cable privacy accept-self-signed-certificate ) yes
Did you remove the checking of the validity periods? ( no cable privacy check-cert-validity-periods ) I have now the bpi disabled and I am seeing cuts, but for a few seconds.
What are your kek and tek lifetimes? default from the C3 manual 600/600
cable privacy accept-self-signed-certificate
no cable privacy check-cert-validity-periods
cable privacy kek life-time 600
cable privacy tek life-time 600
Thanks and regards.
Demian