Home > HSRP IP Route Tracking

HSRP IP Route Tracking

May 13th, 2013 in Guide Go to comments

In this article we will discuss about HSRP and do a lab on it.

Quick reminder about HSRP

+ Hot Standby Router Protocol (HSRP) is a Cisco proprietary protocol.
+ With HSRP, two or more devices support a virtual router with a fictitious MAC address and unique IP address
+ Hosts use this IP address as their default gateway and the MAC address for the Layer 2 header
+ The virtual router’s MAC address is 0000.0c07.ACxx , in which xx is the HSRP group. Multiple groups (virtual routers) are allowed.
+ The Active router forwards traffic. The Standby router is backup and monitors periodic hellos (multicast to,
UDP port 1985) to detect a failure of the active router.
+ The active router is chosen because it has the highest HSRP priority (default priority is 100). In case of a tie, the router
with the highest configured IP address wins the election
+ A new router with a higher priority does not cause an election unless it is configured to preempt.

HSRP States

+ Initial: HSRP is not running.
+ Learn: The router does not know the virtual IP address and is waiting to hear from the active router.
+ Listen: The router knows the IP and MAC of the virtual router, but it is not the active or standby router.
+ Speak: Router sends periodic HSRP hellos and participates in the election of the active router.
+ Standby: Router monitors hellos from active router and assumes responsibility if active router fails.
+ Active:Router forwards packets on behalf of the virtual router.

Load balancing traffic across two uplinks to two HSRP routers with a single HSRP group is not possible. The trick is to use two
HSRP groups:
+ One group assigns an active router to one switch.
+ The other group assigns another active router to the other switch.

(Reference: SWITCH official Certification Guide)

That is all for the boring HSRP theory, let do a lab to understand more about HSRP! We will use the topology below for this lab:


IOS used: c3640-jk9s-mz.124-16.bin

Tasks in this lab:

+ Configure IP addresses as shown and run EIGRP on R2, R3, R4
+ Configure HSRP: R2 is the Active HSRP while R3 is the Standby HSRP
+ Tracking route to, traffic should goes to R3 once the route to is lost in R2 or the metric to R4’s loopback interface increases.

IP Address and EIGRP Configuration

R1 (configured as a host)
no ip routing
ip default-gateway //This is the virtual IP of HSRP group
interface FastEthernet0/0
ip address
no shutdown
interface FastEthernet0/0
ip address
no shutdown
interface FastEthernet1/0
ip address
no shutdown
router eigrp 1
interface FastEthernet0/0
ip address
no shutdown
interface FastEthernet1/0
ip address
no shutdown
router eigrp 1
interface Loopback0
ip address
interface FastEthernet0/0
ip address
no shutdown
interface FastEthernet1/0
ip address
no shutdown
router eigrp 1

HSRP Configuration

interface FastEthernet0/0
standby 10 ip
standby 10 priority 200
standby 10 preempt
interface FastEthernet0/0
standby 10 ip
standby 10 priority 150
standby 10 preempt

Note: The virtual IP address of HSRP group must be in the same subnet of the IP address on this interface (Fa0/0)

After entering above commands we will see R2 takes Active state after going from Speak to Standby:

%HSRP-5-STATECHANGE: FastEthernet0/0 Grp 10 state Speak -> Standby
*Mar 1 00:10:22.487: %HSRP-5-STATECHANGE: FastEthernet0/0 Grp 10 state Standby -> Active
*Mar 1 00:10:22.871: %SYS-5-CONFIG_I: Configured from console by console

The “show standby” command on R2 confirms its state:


Now R2 is in HSRP Active state with virtual MAC address of 00000c07.ac0a. Notice that the last two numbers of the MAC address (0a) is the HSRP group number in hexadecimal form (0a in hexa = 10 in decimal)

The “show standby” command on R3 reveals it is in Standby state:


Now we will see what happens if we turn off interface Fa0/0 on R2:
R2(config)#interface fa0/0



As we can see, the HSRP state of R2 went back to Init while the HSRP state of R3 moved to Active.

HSRP Tracking IP Route

In this part instead of tracking an interface going up or down we can track if the metric of a route to a destination changes or not. In particular we will try to track the route to the loopback interface of R4 ( First we should check the routing table of R2:


We learn that the metric to the loopback interface of R4 ( is 156160 and is summarized to prefix because EIGRP summarizes route by default.

Now add tracking ip routing to R2

R2(config)#track 1 ip route metric threshold
R2(config-track)#threshold metric up 61 down 62

and on interface fa0/0 add these commands to apply the track:

R2(config)#interface fa0/0
R2(config-if)#standby 10 track 1 decrement 60

The command track ip route metric threshold is used to track the metric change of a route. For example in this case the second command threshold metric up 61 down 62 specifies the low and high thresholds.

up: Specifies the up threshold. The state is up if the scaled metric for that route is less than or equal to the up threshold. The default up threshold is 254.
down: Specifies the down threshold. The state is down if the scaled metric for that route is greater than or equal to the down threshold. The default down threshold is 255.

Then, how do we indicate the up value should be 61 and down value should be 62? This is because EIGRP routes are scaled by means of 2560 so if we divide the EIGRP metric (156160 in this case) by 2560 we will get 61 (156160 / 2560 = 61). 2560 is the default metric resolution value for EIGRP and can be modified by the track resolution command (for example: track resolution ip route eigrp 400). The table below lists the metric resolution for popular routing protocols.

Routing protocol Metric Resolution
Static 10
EIGRP 2560
RIP is scaled directly to the range from 0 to 255 because its maximum metric is less than 255

In this case if the metric for route to in the routing table is less than or equal to 61 then the state is up. If the metric is greater or equal to 62, the state is down. We can verify if the track is working correctly by the show track command.


When the state is Down, R2’s priority will be deduced by 60: 200 – 60 = 140 which is less than the priority of R3 (150) -> R3 will take the Active state of R2.



A very important note we wish to mention here is: the route for tracking should be exactly same as displayed in the routing table or the track would go down because no route is found. For example if we try tracking the route to the more specific route or the track would go down because EIGRP summarizes route by default before advertising through another major network. Let’s try this!

R2(config)#no track 1 ip route metric threshold
R2(config)#track 1 ip route metric threshold
R2(config-track)#threshold metric up 61 down 62

Now check if the track is working or not:


The track on R2 goes down so R2’s priority is reduced by 60 which causes R3 takes the Active state.

In this case if we wish to bring up the track route to we just need to use the “no auto-summary” command on R4 which causes R4 to advertise the more specific route of

R4(config)#router eigrp 1
R4(config-router)#no auto-summary

Now R4 advertises the detailed network and it matches with our tracking process so the tracking process will go up.



The GNS3 initial and final configs can be downloaded here:

Initial Configs: http://www.networktut.com/download/HSRP_initial.zip
Final Configs: http://www.networktut.com/download/HSRP_finalConfigs.zip

(Good reference: http://www.cisco.com/en/US/docs/ios/12_2sb/feature/guide/sbaiptrk.html)

Comments (17) Comments
Comment pages
1 2 324
  1. warrior_300
    June 25th, 2015

    Tell me, please, can this lab be in 300-135 TSHOOT v2? I thought, that in 300-135 are only Simlets and 13 trouble tickets.

  2. Abaidullah
    August 22nd, 2015

    TSHOOT 300-135
    How we identify HSRP related issue in exam?
    Does ipv4 ping go successful from client to webserver for HSRP Tickit? if ping goes successful means we have no issue with any router but with HSRP, and then we check HSRP configuration.

  3. Muhammad Younas
    September 8th, 2015

    Please guide me.in real exam he write it that this r the Eigrp or BGP Neighbours ticket please help me .me waiting

  4. Kal
    November 12th, 2015

    That’s a very good tutorial, just labbed it up and was def a top learn. Thanks :)

  5. Supa_Doopa
    March 4th, 2016

    Awesome!!! thank you soooo much! Labbing this up using this guide has really helped me get my head round this! :)

  6. LoLo
    March 9th, 2016

    Love it :) May Allah bless you dear.

  7. LoLo
    March 9th, 2016

    Many Thanks

  8. Lisadem
    April 26th, 2016

    Many thanks for this comprehensive explanation.

  9. Gats
    June 1st, 2016

    Thank you for the practical example, I now better understand how this works

  10. skymax
    July 18th, 2016


    Recently, I personally passed CCNP Route 300-101,SWITCH 300-115,TSHOOT 300-135 exams with full marks.
    I have purchased latest Premium vce dumps file that are 100% valid and I’m giving at nominal sharing cost.wanninayakegcb@gmail_com
    Hurry UP. Exam quest.. not change yet..

  11. Anonymous
    September 24th, 2016

    you are rockkkkkkkkkkkkkkkkk starrrrrrrrrrrrrrrrrrrrrrrrrrrrr…make me fully impressed

  12. ccnp
    November 9th, 2016

    do they mail your certificate automatically or do you have to pay for it???

  13. Anonymous
    November 16th, 2016

    good explanation

  14. Maani
    November 16th, 2016

    Thanks Networktut :)

  15. blog
    December 17th, 2016

    You’ll find it practically impossible to encounter well-informed people on this issue, however , you appear like you fully grasp exactly what you’re raving about! Excellent


  16. Queen
    January 10th, 2017

    breaking dawn mp3 – myfreemp3.review/search/breaking-dawn-mp3/
    download free music

  17. edi
    January 26th, 2017

    excellent explanation! Thank you Networktut!

Comment pages
1 2 324