RE: take me off this list, Please! [7:65428]

2003-03-14 Thread Schneider, Matt
ha ha

-Original Message-
From: Symon Thurlow [mailto:[EMAIL PROTECTED]
Sent: Friday, March 14, 2003 3:55 PM
To: [EMAIL PROTECTED]
Subject: RE: take me off this list, Please! [7:65428]


Why? Are you a bad doctor?

-Original Message-
From: Edgar A. Howard [mailto:[EMAIL PROTECTED] 
Sent: 14 March 2003 13:45
To: [EMAIL PROTECTED]
Subject: take me off this list, Please! [7:65428]


Someone please get me off this list. I have tried everything. I used 
the website. Nothing works!  My patients is running out.
-edgar
=

 This email has been content filtered and
 subject to spam filtering. If you consider
 this email is unsolicited please forward
 the email to [EMAIL PROTECTED] and
 request that the sender's domain be
 blocked from sending any further emails.

=



=




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=65470&t=65428
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Problem with Cicso VPN Client 3.6.3.B-k9 connecting to a [7:65296]

2003-03-13 Thread Matt Mullen
If you can't ping out from the XP box then you have some other issue,  but
if the problem is only accessing the XP box from other machines then check
the following:
 
1.  Make sure that the Firewall Always On is not checked in the VPN Client
settings.  This setting is in effect even when the VPN Client is not in
use.  Keep in mind you will want to turn this back on if you connect this
machine directly to the Internet and you aren't using the Windows XP built
in firewall.
 
2.  If the Firewall Always On is unchecked,  make sure that the Windows XP
Personal Firewall is not turned on for your network interface.   This is
located under the Advanced tab of your network adapter settings.
 
 

-Original Message- 
From: d tran [mailto:[EMAIL PROTECTED] 
Sent: Tue 3/11/2003 8:30 AM 
To: [EMAIL PROTECTED]; [EMAIL PROTECTED] 
Cc: 
Subject: Problem with Cicso VPN Client 3.6.3.B-k9 connecting to a pix



Hi,

I have Cisco VPN client version 3.6.3.B-k-9 (latest version) running
windows XP

Service Pack 1.  The IP address of this window machine is 172.16.1.200. 

I set up extended authentication on the Pix firewall for remote Cisco VPN
users

and everything is working great.  The outside interface of the firewall is
172.16.1.1

with a netmask of 24

The problem is that whenever the windows is rebooted, no one on the
172.16.1.0/24

network can ping this Windows XP machine.  I do have a unix machine on the

same network (172.16.1.100).  Basically the windows XP machine can not do

anything because it has no network connectivity.  Even the firewall can not
ping

the Windows XP machine.  The only way for this to work is for me to
"uninstall"

Cisco VPN Client and reboot the Windows XP box.  After the reboot, windows
is

working again.  Now under Windows XP Task Manager, I do see a process

"CVPND.exe" running that I don't recall with previous versions of Cisco VPN
Client.

Anyone has run into this problem before? 

Regards,

David



-
Do you Yahoo!?
Yahoo! Web Hosting - establish your business online




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=65296&t=65296
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: VoIP from behind PIX [7:60859]

2003-01-10 Thread Matt Hill
Good luck..

However you will get latency and jitter issues during the time the PIXs
encrypt/decrypt the voice packets...

Matt

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf
Of
> Simer Mayo
> Sent: Friday, 10 January 2003 6:05 PM
> To: [EMAIL PROTECTED]
> Cc: [EMAIL PROTECTED]
> Subject: VoIP from behind PIX
> 
> 1. Will PIX 515 handle VoIP traffic?
> 2. Will PIX 501 handle VoIP traffic?
> 3. Can we VPN between 2 (site-to-site) and pass VoIP traffice thru the
> VPN
> 
> Thanks
> 
> Simer




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=60859&t=60859
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Configuring A digi portserver for cisco anyone!!! [7:58453]

2002-12-03 Thread Matt
Does anybody have an idea on how to configure a digi portserver (terminal)
so i can connect through it to my cisco routers.
I have set up an ip address of 10.0.0.1 for the terminal server and can log
in no problem whatsoever,however, Whilst i am in the root mode i cannot
reverse telnet to any of the ports as it comes up with the following:-

> telnet 10.0.0.1 2001
err#43  : telnet  : access to this port denied.

I am using hyperterminal as the emulation program and i can  reverse telnet
into the routers if i change the setup of hyperterminal by keeping the ip
address as 10.0.0.1 though changing the port to 2001.

Im sure there must be a way for me to log into the digi portserver and then
navigate to any of the routers without having to exit the current connection
and then re establish a new one to the new port.

Apologies if this off topic and a bit confusing though im getting confused
with it.

If anyone has a sample config of a digi portserver, that would be most
helpful as well...

Cheers

Matt




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=58453&t=58453
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: 640-901 BSCI [7:57599]

2002-11-18 Thread Matt Crawford
I'm curious how you studied for the IS-IS part.  I studied the CiscoPress
book on IS-IS and CCIE Routing and still failed that part.  Fortunately I
did well enough on the rest to pass it.  I guess the BCSI class would be the
best way to go - if someone else pays for it.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=57657&t=57599
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: abort a ping [7:57644]

2002-11-18 Thread Matt Crawford
ctrl ^ x is how you leave a session (such as telnet) with another device. 
that is all you need to know about it.  it may get you out of a ping as well
but i don't think of that as anything you would need to know for an exam. 
just remember that it gets you out of a session, but leaves the session
connected.  hit enter to rejoin the last session, and disconnect to end it.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=57655&t=57644
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cable Broadband Question!!!! [7:54700]

2002-10-02 Thread Matt

Hi,

Can anyone offer me any advice on whether it's possible to configure one of
my cisco routers to work as a cable broadband router instead of having to
purchase a model that specifically does the task.

I currently have a 1601R, 1603R and 2 x 2503 and im sure  somebody last year
had something posted about being able to use one of these routers..

Any help would be appreciated

Matt
CCNA

UK




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=54700&t=54700
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: 9/11 [7:53084]

2002-09-11 Thread Matt James

I believe Dave is referring to Sujal's ambiguous post, which could
easily be mis-interpreted !





Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=53103&t=53084
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: PIX Failover [7:51491]

2002-08-16 Thread matt

yes, it will sync automatically, or you can force it
with "write standby"

HTH,
ms
--- "Steven A. Ridder"  wrote:
> Speaking of stateful PIX's, if I make a change on 1
> PIX, and it has failover
> on, will it automatically make a change on the other
> PIX?
> 
> 
> ""Gaz""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > In article , [EMAIL PROTECTED]
> > says...
> > > Hi,
> > >
> > > In a Stataful configuration, and two PIX are
> interconnected via a
> > > dedicated Failover Fastethernet, in case of the
> Active unit's Internal
> > > interface fails, is there any method to shift
> traffic to the Standby
> > > unit's Internal interface to maintain
> connectivity, thanks.
> > >
> > > Leo
> > > Best Regards.
> > Not sure what you mean there. That's what failover
> does unless I'm
> > misunderstanding your question.
> >
> > You configure the main IP address for the
> interface and you configure a
> > failover address. If the Pix's decide that the
> active one has a problem
> > (power,interface down etc) the secondary pix takes
> over the main IP
> > address.
> > If the primary is still contactable it will have
> the failover IP address
> > on its inside interface.
> >
> > That's why it's safe to telnet to the main IP
> address and you know that
> > you're on the active Pix, but by console you need
> to do a show fail to
> > make sure the device you're on is primary active
> or secondary active
> > before you make changes.
> >
> > Regards,
> >
> > Gaz
[EMAIL PROTECTED]


__
Do You Yahoo!?
HotJobs - Search Thousands of New Jobs
http://www.hotjobs.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=51524&t=51491
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Flash init failed (permission denied). [7:47825]

2002-07-02 Thread Matt Mullins

You are in ROM MON mode on the switch.  You need to run the suggested
commands

flash_init
load_helper
boot

once you do a flash_init and load_helper you can use the ? to see what
command are available.  You will probably need to load an image onto your
switch using xmodem before it will boot properly.


""Marian Iordanescu""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi group,
>
> I have the folowing problem. have Found You the solution for this
> problem yet?
>
> C2950 Boot Loader (CALHOUN-HBOOT-M) Version 12.0(5.3)WC(1), MAINTENANCE
> INTERIM
> SOFTWARE
> Compiled Mon 30-Apr-01 07:56 by devgoyal
> WS-C2950-24 starting...
> Base ethernet MAC Address: 00:07:84:f9:09:40
> Unable to initialize flash device at 0xBF00 -- device not found.
> Xmodem file system is available.
> Initializing Flash...
> ...no flash filesystems found.
>
> The system has been interrupted, or encountered an error
> during initializion of the flash filesystem.  The following
> commands will initialize the flash filesystem, and finish
> loading the operating system software:
>
> flash_init
> load_helper
> boot
>
> switch: dir flash:
> unable to stat flash:/: permission denied
> switch: flash_init
> Initializing Flash...
> ...no flash filesystems found.
> switch: copy xmodem: flash:c2950-c3h2s-mz.120-5.3.WC.1.bin
> Begin the Xmodem or Xmodem-1K transfer now...
> CCBB0flash:c2950-c3h2s-mz.120-5.3.WC.1.bin: permission denied
> switch:
>
>
> Thank you in advance ,
>
> Marian




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=47943&t=47825
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: BPX [7:47008]

2002-06-20 Thread Schneider, Matt

not

-Original Message-
From: Lupi, Guy 
Sent: Thursday, June 20, 2002 12:27 PM
To: [EMAIL PROTECTED]
Subject: RE: BPX [7:47008]


It looks like they do:

http://www.800teachme.com/cgi-bin/teachme/viewcourse.cgi?LIS1000D92&AZ

Has anyone ever gone to one of their classes?  If so, are they worth the
money?

*-Original Message-
*From: craig mcguinness [mailto:[EMAIL PROTECTED]]
*Sent: Thursday, June 20, 2002 11:38 AM
*To: [EMAIL PROTECTED]
*Subject: RE: BPX [7:47008]
*
*
*BPX is not an ATM protocol, it is an ATM Switch. It is part of Cisco's
*former Stratacom line of Carrier ATM switches. I believe
*Telecordia may still offer classes on the BPX, IGX and MGX.
*
*
*




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=47090&t=47008
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: max number of Sub interfaces [7:45288]

2002-05-28 Thread Matt Street

check out the link below for your answer

http://www.cisco.com/warp/public/63/idb_limit.html

Matt Street

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Steven A. Ridder
Sent: Tuesday, May 28, 2002 3:43 PM
To: [EMAIL PROTECTED]
Subject: max number of Sub interfaces [7:45288]


Is there a max number of subinterfaces a router can handle before it slows
down?  Is this number constrained by memory on a router?  But from a general
design perspecitive, is there a limit to the number?  Could I do 1000
subinterfaces on a router with no performance degredation?

--
RFC 1149 Compliant

Get in my head:
http://sar.dynu.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=45290&t=45288
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Fast Ether Channel [7:45271]

2002-05-28 Thread Schneider, Matt

just fast ethernet and giga ethernet

-Original Message-
From: Reza [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, May 28, 2002 1:44 PM
To: [EMAIL PROTECTED]
Subject: Fast Ether Channel [7:45271]


Dear Group,
Does Fast EtherChannel support Ethernet, Fast Ethernet and Gigabit Ethernet?

Thanks
Reza




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=45275&t=45271
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco 7400's [7:43536]

2002-05-07 Thread Matt Street

I am writing this wondering how many of you have installed the Cisco 7400's
in your networks.  We recently installed 2 in our network and we had nothing
but hardware problems with them.  One of the boxes had a bad etherent port
and the other had a bad hssi card.  Needless to say it was a nightmare.  So
now that we have the boxes installed they are re-booting from software
forced crashes.  We opened a case with Cisco and they acknowledged that the
7400's have hardware issues and they are sending us 2 of the newer models
that resolve the initial models problems.  Have any of you out there
experienced the same problems as we have?  And if so did the newer
replacement boxes resolve the issues?  Thanks for any input.

Matt Street




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=43536&t=43536
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: WIC-1ADSL, Qwest DSL [7:41713]

2002-04-17 Thread Matt Fisher

Mark, I should have started with the config on
http://www.cisco.com/warp/public/794/wicadsl_rfc_irb_nat_1.html

After a lot of trial and error (and trying to not take my web site offline
to much in the process), I managed to get a working configuration.

Here is my configuration, minus a few unrelated lines, in case it helps
somebody else.  The config below bridges ATM0/0 and fa0/0 (my DMZ) then my
private network is behind fa0/1.  Now back to resetting all of my security
back up...

!
bridge irb
! 
interface ATM0/0
 no ip address
 no atm ilmi-keepalive
 no cdp enable
 pvc 0/32 
  encapsulation aal5snap
 !
 bundle-enable
 dsl operating-mode auto
 bridge-group 1
 hold-queue 224 in
!
interface FastEthernet0/0
 no ip address
 no cdp enable
 bridge-group 1

interface FastEthernet0/1
 description Connected to private network
 ip address 192.168.1.1 255.255.255.0
 ip nat inside
!
interface BVI1
 ip address ###.###.###.### 255.255.255.248
 ip access-group 100 in
 ip nat outside
!
!
ip nat inside source list 1 interface BVI1 overload
!
bridge 1 protocol ieee
bridge 1 route ip


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=41786&t=41713
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



WIC-1ADSL, Qwest DSL [7:41713]

2002-04-16 Thread Matt Fisher

Anybody out there setup a WIC-1ADSL with Qwest DSL in Bridging mode.

I've got a Cisco 2621 and want to bridge the ADSL connection with fa0/0 (and
NAT fa0/1).  I'm able to get the ATM session up, but can't get IP traffic to
flow.

Of the configs at:
http://www.cisco.com/warp/public/794/
the one at:
http://www.cisco.com/warp/public/794/wicadsl_rfc_6400irb.html
looks like it is close to what I want, but the config as listed doesn't
work.  (Can't put the same IP address on two different interfaces.)

Any thoughts...

Matt



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=41713&t=41713
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: 4006 Power Supplies [7:41257]

2002-04-12 Thread matt

I can add this.In the past year I have replaced 3
power supplies on 3 different 4006's.  I would
probably vote to have the extra one's in.

HTH

ms


--- x  wrote:
> Jeff,
> We just bought a Cisco 4006 switch.  Our reseller
> and
> our Cisco rep both told us we need two power
> supplies
> to run it and one for redundancy.  They both went on
> to say the power supply is the first thing to go. 
> They sold me on it so I got all three power
> supplies.
> 
> I got the switch a few weeks ago and I threw in the
> two 10/100 blades and the extra power supply.  I
> unplugged one power supply and it still seemed fine.
> 
> I decide to unplug another and leave only one
> running
> just to see if it would die.  It ran for 30 minutes
> until I decided to plug it back in, keep in mind I
> didn't have anything attached at the time.
> 
> I am guessing if you really wanted to you could get
> away with one, but when your spending that
> much(think
> it was around $14k to $15k) an extra $600 or so to
> protect your investment is no big deal.  I also like
> the fact that if two powersupplies die it will still
> probably run and I can take my time replacing them. 
> A
> good night's sleep is worth $600 to me.
> 
> 
> --- Jeffrey Reed  wrote:
> > Im trying to understand power redundancy in the
> > Cisco 4006 switch. Reading
> > through the online information, Cisco seems to
> imply
> > you must have at least
> > two power supplies up and running at all times.
> The
> > 3rd power supply
> > provides redundancy. Other vendors allow you to
> run
> > at least a partially
> > populated chassis on one power supply. If I have a
> > 4006 with SUPII and one
> > 48-port blade, do I really need three power
> > supplies? Anyone have experience
> > with 4006s and power supplies?
> > 
> > Thanks!!
> > 
> > Jeffrey Reed
> > Classic Networking, Inc.
> > Cell 717-805-5536
> > Office 717-737-8586
> > FAX 717-737-0290
> [EMAIL PROTECTED]
> 
> 
> __
> Do You Yahoo!?
> Yahoo! Tax Center - online filing with TurboTax
> http://taxes.yahoo.com/
[EMAIL PROTECTED]


__
Do You Yahoo!?
Yahoo! Tax Center - online filing with TurboTax
http://taxes.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=41295&t=41257
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Whats the difference between Classful & Classless??? [7:38874]

2002-03-19 Thread Matt Saunders

Thanks Group, i appreciated that..


""Matt Saunders""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi Group,
>
> Im really struggling to understand the requirement in using the ip
classless
> command when you are configuring a default route.
>
> I noticed that RIP 2 is a classless protocol & RIP ver 1 is a classfull.
>
> Can anyone help me understand what the difference is (in simple terms!!)
as
> i want to move on with my studies though im sure this is something thats
> going to come up again
>
> Cheers
>
> Matt




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=38874&t=38874
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Whats the difference between Classful & Classless??? [7:38856]

2002-03-19 Thread Matt Saunders

Hi Group,

Im really struggling to understand the requirement in using the ip classless
command when you are configuring a default route.

I noticed that RIP 2 is a classless protocol & RIP ver 1 is a classfull.

Can anyone help me understand what the difference is (in simple terms!!) as
i want to move on with my studies though im sure this is something thats
going to come up again

Cheers

Matt




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=38856&t=38856
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Home Network [7:38818]

2002-03-19 Thread Matt Meiers

Go buy a cheap DSl router from one of those chain stores.  You can get one
for $100.00 or so.  It will do PPoE and simple NAT.  Then just put your
routers behind them.

Matthew Meiers, MCSA, MCSA, CCNA, CCDA
Senior Systems Engineer

-- Original Message --
From: "James Gruggett" 
Reply-To: "James Gruggett" 
Date:  Tue, 19 Mar 2002 11:45:48 -0500

>Hello everyone,
>
>I am in the process of setting up a home lab and I have a few questions.
>
>I will be running 2000 advanced server with various clients, I have a
>1900, 2900 series switches and two 2501 routers.
>
>My first question is how can I provide internet access to all my clients
>( will I have to use a proxy server for my clients) I have DSL (
>internal PCI modem) which I guess I will run on my 2000 server.
>
>Also, how could I add in my routers?
>
>Thanks in advance
>
>--
>
>
>
>James E. Gruggett MCSE
>Network Administrator
>Fedex Services
>901-263-7595
>
>[GroupStudy.com removed an attachment of type text/x-vcard which had a name
>of james.gruggett.vcf]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=38827&t=38818
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: BCRAN question [7:37481]

2002-03-06 Thread Schneider, Matt

when I took the exam I had several questions on ISDN and alot on x.25, I
did receive a couple on 700 series but not to many.

-Original Message-
From: John McCartney
To: [EMAIL PROTECTED]
Sent: 3/6/2002 5:07 PM
Subject: BCRAN question [7:37481]

I'd like to ask those that have passed the BCRAN was there a lot of ??'s
on
the 700 series? I'm reading it an its very dry and I'm trying to decide
if I
really need to focus on this aspect or focus on other areas. Any info is
appreciated, don't break the NDA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37487&t=37481
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Timed ACL on PIX? [7:37152]

2002-03-04 Thread matt

Hello all-

I was wondering if it is possible to have time
restricted ACL's on a PIX...similiar to what you can
do on a Checkpoint?  Something that can restrict
access to services depending on what time it is.  My
initial thoughts were NO...as we use conduits on our
PIX fleet and I am unaware of any such conduit based
command...but then I started looking and noticed the
time-range command and am wondering if it is possible
to use this feature on an ACL based PIX configuration?

Any help is appreciated,

thanks - matt

__
Do You Yahoo!?
Yahoo! Sports - sign up for Fantasy Baseball
http://sports.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37152&t=37152
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Time based ACL on PIX? [7:37198]

2002-03-04 Thread matt

Hi all-

I sent this out earlier but it didn't seem to post??
Anyway...I was wondering if it is possible to have
services behind a PIX restricted to time??  Kinda like
how you can with a Checkpoint.  Initially I was
thinking this was not possible as I have conduit based
configurations on all the PIX's I maintainand am
unaware of any such option on a conduit.  But then I
saw the time-range option for an extended ACL.  So, my
question:

Can this be used on a PIX to limit access to a service
to say 1 ipand only between certain hours?  Has
anyone does this...or is it even possible?

I hope this makes sense.

thanks,

matt

__
Do You Yahoo!?
Yahoo! Sports - sign up for Fantasy Baseball
http://sports.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37198&t=37198
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Setting up Catalyst 6500 as a Layer 2 switch [7:37177]

2002-03-04 Thread Matt Fisher

I am setting this up in VLAN 1.  So the vlan was already setup in the VLAN
database.  I do have the ports in question set to switchport mode access. 
All of the ports are in the same vlan.

Matt

--
Author: Larry Letterman (---.cisco.com)
Date:   03-04-02 15:21

Hi, 

Have you set the vlan in Vlan Database mode ? 
Have you set the ports in question to switchport mode access ? 
Have the ports in question been set to the vlan you want them to be in ? 

interface FastEthernet5/35 
description to Hop-1st floor 
no ip address 
udld enable 
switchport 
switchport access vlan 171 
switchport mode access 
switchport nonegotiate 


Larry Letterman 
Cisco Systems 
[EMAIL PROTECTED] [EMAIL PROTECTED] 



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37197&t=37177
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Setting up Catalyst 6500 as a Layer 2 switch [7:37177]

2002-03-04 Thread Matt Fisher

I'm trying to setup a Cat 6500 running IOS 12.1 (c6sup22-dsv-mz.121-8a.E5)
as a layer two switch and I'm running into some issues.  I have a group of
ports all on the same vlan, with "switchport" set to enable them as layer 2
switch ports.  Directed IP traffic flows fine, but broadcast traffic is not
flowing between the ports.

The short story of the problem.  In this test environment I have 5 NT
servers plugged into the Cat 6500 and they can't see each other view
"Network Neighborhood".

My current goal is to just get this switch to act like your basic unmanaged
switch (I'll work on the more interesting settings after I get this basic
functionality working.)

Any ideas what I might be missing?

Matt




! Example of the current configuration:

interface FastEthernet2/1
 no ip address
 switchport
!
interface FastEthernet2/2
 no ip address
 switchport
! 
interface Vlan1
 ip address 192.168.0.1 255.255.255.0
 no ip route-cache cef
 no ip mroute-cache


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37177&t=37177
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: ISP Question [7:37006]

2002-03-03 Thread Schneider, Matt

I'm in

-Original Message-
From: Craig Columbus
To: [EMAIL PROTECTED]
Sent: 3/3/2002 5:05 PM
Subject: Re: ISP Question [7:37006]

Ok, I'll bite...

Don't start buying equipment yet.  The technical component of an ISP is 
only one very small part of a big picture.  If you're seriously thinking

about starting an ISP, you first need to write a business plan that 
delineates your idea, your potential market, your competition, your 
management team, your organizational structure, your cashflow analysis, 
your initial funding, and your exit strategy.  This includes a full and 
honest SWOT (strengths, weaknesses, opportunities, and threats) 
analysis.  Once you've refined your plan, show it to people who know a
lot 
more about running a business than you do.  Go visit SCORE (look them up
in 
the phone book) and be prepared to rewrite everything you've written.
Once 
you've got a final product, then you're going to need funding.
Remember, 
you need to account for more than the technical equipment.  You'll have
to 
consider rents, leases, insurance, utilities, payroll, taxes, etc.  Once

you've got the funding, you can bring on qualified management and
engineers 
(read experienced in this field) and let them decide on the particular 
equipment you'll need.
If this sounds like too much to tackle, then you're not ready to run
your 
own business.  On the other hand, if you're financially well off (rich)
and 
are determined to go forward anyway, I'll be glad to walk you down the
path 
for a fee. ;-)

Good luck,
Craig

At 02:35 PM 3/1/2002 -0500, you wrote:
>Does anyone have a list of equipment for a company to become and ISP? I
>also want to buy a class of IP addresses and host them myself. Is there
>a link on Cisco to help someone like myself get started. Any help on
>this topic would be appreciated. I really don't know where to start





Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37111&t=37006
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: insufficent memory on a new 1603R, Help!!!!! [7:37082]

2002-03-02 Thread Matt Saunders

Hi "ME"

I will have a look down the local pc store to find some 72pin 16Mb Simm
Module.

Thanks for the info..


""ME""  wrote in message
news:[EMAIL PROTECTED].;
> The 1600's use old 72pin pc simms.  Find one 16mb or less and your good to
> go.
>
> ""Matt Saunders""  wrote in message
> news:[EMAIL PROTECTED].;
> > Hi all,
> >
> > Ive just recently brought a Cisco 1603R which came with a 4Mb Flash Card
&
> > 8Mb of Ram and im desperate to connect it to my other router (2503)
which
> is
> > running IOS (tm) 2500 Software (C2500-D-L), Version 12.0(9a) so i can
> > practise some commands etc.
> >
> > When i boot the 1603R i get the following:-
> >
> >  System Bootstrap, Version 12.0(3)T, RELEASE SOFTWARE (fc1)
> > Copyright (c) 1999 by cisco Systems, Inc.
> >
> >  Simm with parity detected, ignoring onboard DRAM
> >
> > System Bootstrap, Version 12.0(3)T, RELEASE SOFTWARE (fc1)
> >
> > Copyright (c) 1999 by cisco Systems, Inc.
> >
> > C1600 platform with 8192 Kbytes of main memory
> >
> >  program load complete, entry point: 0x2005000, size: 0x2e4e0d
> >
> > Self decompressing the image :
> > #
> >
> > ###
> [OK]
> >
> >  Cisco Internetwork Operating System Software
> >
> > IOS (tm) 1600 Software (C1600-NY-M), Version 12.1(6), RELEASE SOFTWARE
> (fc1)
> >
> > Copyright (c) 1986-2000 by cisco Systems, Inc.
> >
> > Compiled Wed 27-Dec-00 14:24 by kellythw
> >
> > Image text-base: 0x02005000, data-base: 0x0260D624
> >
> >  cisco 1603 (68360) processor (revision C) with 7680K/512K bytes of
> memory.
> >
> > Processor board ID 26436386, with hardware revision 0004
> >
> > Bridging software.
> >
> > X.25 software, Version 3.0.0.
> >
> > Basic Rate ISDN software, Version 1.1.
> >
> > 1 Ethernet/IEEE 802.3 interface(s)
> >
> > 1 Serial(sync/async) network interface(s)
> >
> > 1 ISDN Basic Rate interface(s)
> >
> > System/IO memory with parity disabled
> >
> > 8192K bytes of DRAM onboard
> >
> > System running from RAM
> >
> > 7K bytes of non-volatile configuration memory.
> >
> > 4096K bytes of processor board PCMCIA flash (Read/Write)
> >
> >  SYSTEM INIT: INSUFFICIENT MEMORY TO BOOT THE IMAGE!
> >
> >
> >
> > On the side of the flash card it says Version: 12.0(14), Image:
> > c1600-y-mz.120-14, Filename x00028c4.
> >
> > I gather the image is run from RAM and ive looked at the cisco website
> which
> > says that the above image is compatible with the memory i have got
though
> it
> > seems to me that the router is loading something different.
> >
> > Im sure i must be missing something here and any help would be
greatfully
> > received.
> >
> > Regards
> >
> > Matt
> >
> > (UK)




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37086&t=37082
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



insufficent memory on a new 1603R, Help!!!!! [7:37082]

2002-03-02 Thread Matt Saunders

Hi all,

Ive just recently brought a Cisco 1603R which came with a 4Mb Flash Card &
8Mb of Ram and im desperate to connect it to my other router (2503) which is
running IOS (tm) 2500 Software (C2500-D-L), Version 12.0(9a) so i can
practise some commands etc.

When i boot the 1603R i get the following:-

 System Bootstrap, Version 12.0(3)T, RELEASE SOFTWARE (fc1)
Copyright (c) 1999 by cisco Systems, Inc.

 Simm with parity detected, ignoring onboard DRAM

System Bootstrap, Version 12.0(3)T, RELEASE SOFTWARE (fc1)

Copyright (c) 1999 by cisco Systems, Inc.

C1600 platform with 8192 Kbytes of main memory

 program load complete, entry point: 0x2005000, size: 0x2e4e0d

Self decompressing the image :
#

### [OK]

 Cisco Internetwork Operating System Software

IOS (tm) 1600 Software (C1600-NY-M), Version 12.1(6), RELEASE SOFTWARE (fc1)

Copyright (c) 1986-2000 by cisco Systems, Inc.

Compiled Wed 27-Dec-00 14:24 by kellythw

Image text-base: 0x02005000, data-base: 0x0260D624

 cisco 1603 (68360) processor (revision C) with 7680K/512K bytes of memory.

Processor board ID 26436386, with hardware revision 0004

Bridging software.

X.25 software, Version 3.0.0.

Basic Rate ISDN software, Version 1.1.

1 Ethernet/IEEE 802.3 interface(s)

1 Serial(sync/async) network interface(s)

1 ISDN Basic Rate interface(s)

System/IO memory with parity disabled

8192K bytes of DRAM onboard

System running from RAM

7K bytes of non-volatile configuration memory.

4096K bytes of processor board PCMCIA flash (Read/Write)

 SYSTEM INIT: INSUFFICIENT MEMORY TO BOOT THE IMAGE!



On the side of the flash card it says Version: 12.0(14), Image:
c1600-y-mz.120-14, Filename x00028c4.

I gather the image is run from RAM and ive looked at the cisco website which
says that the above image is compatible with the memory i have got though it
seems to me that the router is loading something different.

Im sure i must be missing something here and any help would be greatfully
received.

Regards

Matt

(UK)




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37082&t=37082
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: TWO ISP AND ONE FAILURE [7:36371]

2002-02-25 Thread Schneider, Matt

2500 is BGP king

-Original Message-
From: Hire, Ejay [mailto:[EMAIL PROTECTED]]
Sent: Monday, February 25, 2002 1:27 PM
To: [EMAIL PROTECTED]
Subject: RE: TWO ISP AND ONE FAILURE [7:36371]


Do not say that a 2500 will not work for BGP.  It will work just fine for a
default-only or partial-routes setup, and I'm sure more than one member of
this group has set it up.

-ejay

-Original Message-
From: Patrick Ramsey [mailto:[EMAIL PROTECTED]]
Sent: Monday, February 25, 2002 11:05 AM
To: [EMAIL PROTECTED]
Subject: Re: TWO ISP AND ONE FAILURE [7:36371]


chances are bgp will not be availablefirst..he has to have the address
space...second...if he didn't plan for it before hand, he's probably got a
couple'a 2500's or 2600's Try running bgp on a 2500. (unless of
course he uses the same isp for both connections and they work with him on
setting up redundancy)  But at that point he still would not have his own
asn for bgp...

-Patrick

>>> "sam sneed"  02/25/02 10:46AM >>>
You would want to use both HSRP and BGP in this case. HSRP will solve the
problem of changing the default gateway on the clients when a link fails.
BGP will be used for fault tolerance at the ISP side. Here is a sample doc I
got form the cisco site:

http://www.v-man.net/support/pdf/hsrp_bgp.pdf 

""Yassel Omar Izquierdo Souchay""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hello i have a frecuent porblem with one of my isp, i have two cisco
routers
> and each one to different isp. Frequentily i have to change the gateway of
> one of my servers, because one isp is failure.
> I want to know if with one of BGP, OSPF, RIP, NAT or other protocol i
could
> do the change automatically to the other active isp.
> It happening me right now. And when i have to do that i have to reset one
of
> my servers.. :S. Is a costs operatrion its a mail server.
> So if somebody knows how to resolve between routers with different isp
each
> one, how to route accross the other good gateway.
>
> Thnx in advance
> Yassl
>  Confidentiality Disclaimer   
This email and any files transmitted with it may contain confidential and
/or proprietary information in the possession of WellStar Health System,
Inc. ("WellStar") and is intended only for the individual or entity to whom
addressed.  This email may contain information that is held to be
privileged, confidential and exempt from disclosure under applicable law. If
the reader of this message is not the intended recipient, you are hereby
notified that any unauthorized access, dissemination, distribution or
copying of any information from this email is strictly prohibited, and may
subject you to criminal and/or civil liability. If you have received this
email in error, please notify the sender by reply email and then delete this
email and its attachments from your computer. Thank you.






Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36417&t=36371
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Problem telnetting into router with NAT enabled [7:35634]

2002-02-16 Thread Schneider, Matt

Try this command: 

ip nat inside source static tcp 192.168.1.1 23 209.xxx.xxx.xxx 23 extendable


This will map the telnet port of the outside IP address to the inside, 
should work for you, let us know. 


~I am having a problem telnetting into the router from the outside
~when I have NAT on the router. Once I take the ip nat outside command
~off the outside interface, I can telnet into the router from the
~outside. I can ping the NAT router regardless of whether ip nat outside
~is on the interface or not. Note that I do, of course, have the vty 0 4
~passworded. Here's the config (edited for bandwidth purposes):
~
~interface Ethernet0
~ ip address 209.xxx.xxx.xxx 255.255.255.0
~ ip nat outside
~!
~interface Serial0
~ ip address 192.168.1.1 255.255.255.252
~ ip nat inside
~ encapsulation ppp
~clockrate 200
~!
~ip nat inside source list 101 interface Ethernet0 overload
~!
~access-list 101 permit ip any any
~ip classless
~!
~vty 0 4
~password hrmm
~login
~!
~end
~
~   Packets are coming into the router from the telnetting host, and NAT
~tries to do a translation on it, but fails, I think..? NOTE in 
~the debug
~output: 209.xxx.xxx.xxx is the external router ip address and
~216.xxx.xxx.xxx is where I'm telnetting from. This is output from a
~debug ip nat detailed and debug ip nat port combined:
~
~04:09:59: NAT - SYSTEM PORT for 209.xxx.xxx.xxx: allocated port 0,
~refcount 55, localport -1, localaddr 0.0.0.0, flags 1, syscount 55
~04:09:59: NAT - SYSTEM PORT for 209.xxx.xxx.xxx: allocated port 23,
~refcount 2, localport -1, localaddr 0.0.0.0, flags 1, syscount 2
~04:09:59: NAT: Allocated Port for 209.xxx.xxx.xxx -> 209.xxx.xxx.xxx:
~wanted 23 got 2
~04:09:59: NAT: i: tcp (209.xxx.xxx.xxx, 23) -> (216.xxx.xxx.xxx, 3012)
~[0]
~04:09:59: NAT: TCP s=23->2, d=3012
~04:09:59: NAT: o: tcp (216.xxx.xxx.xxx, 3012) -> (209.xxx.xxx.xxx, 2)
~[51]
~04:09:59: NAT: TCP s=3012, d=2->23
~04:09:59: NAT: updated sys port: port 23, refcount 1, localport -1,
~localaddr 0.0.0.0, flags 1, syscount 1
~04:11:08: NAT: expiring 209.xxx.xxx.xxx (209.xxx.xxx.xxx) tcp 2 (23)
~
~  Any ideas?
~
~Kind Regards,
~Tim Booth
~MCDBA, CCNP, CCDP, CCIE written
~-
~Those who would give up essential liberty to purchase a little 
~temporary
~safety deserve neither liberty nor safety.
~Benjamin Franklin, 1759
~
~
~
~
~Report misconduct 
~and Nondisclosure violations to [EMAIL PROTECTED]
~




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35639&t=35634
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Ethernet or FastEthernet [7:35245]

2002-02-13 Thread Schneider, Matt

In the book that I read it says that you can only use fast ethernet or gig
ethernet

-Original Message-
From: Colin [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, February 12, 2002 8:20 PM
To: [EMAIL PROTECTED]
Subject: Ethernet or FastEthernet [7:35245]


Hello

I have been doing some reading on VLANs and Trunking and have read 
conflicting information. Can you use a 10Mbs Ethernet interface when 
running ISL or 801.1q or does the interface have to be FastEthernet? 
Some books/articles I've read say you must use at least a FastEthernet 
interface and others say you can use an Ethernet interface. Note: this 
is for my CCNP lab studies, not a production network.

Thanks
Colin




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35277&t=35245
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Loopback IP masking - 32 or 24 bits? or? [7:32345]

2002-01-17 Thread Schneider, Matt

you could also do a FLRP or as known in the industry as a Full Loopback
Reverse Path

-Original Message-
From: Lupi, Guy 
Sent: Thursday, January 17, 2002 4:16 PM
To: [EMAIL PROTECTED]
Subject: RE: Loopback IP masking - 32 or 24 bits? or? [7:32345]


Well, you could use part of the loopback subnet for a nat pool if your
loopback is a public IP address, that is one reason you may want more than a
/32 on the interface.  Just throwing things out there.

-Original Message-
From: Walker, Jim [mailto:[EMAIL PROTECTED]]
Sent: Thursday, January 17, 2002 3:42 PM
To: [EMAIL PROTECTED]
Subject: RE: Loopback IP masking - 32 or 24 bits? or? [7:32345]


Your friend is right. Why would you use anything other than a /32 bit mask
on a virtual interface?
You are not going to route using the loopback address are you?



Jim Walker
Master Network Engineer
Partners HealthCare System, Inc.
Information Systems / Technical Services & Operations
Tel. (617) 732-8803
Fax (617) 264-5130
This e-mail message and any attachments are confidential and may be
privileged.  If you are not the intended recipient, please notify me
immediately by replying to this message and please destroy all copies of
this message and attachments.  Thank you.



-Original Message-
From: Joshua Dughi [mailto:[EMAIL PROTECTED]]
Sent: Thursday, January 17, 2002 3:23 PM
To: [EMAIL PROTECTED]
Subject: Loopback IP masking - 32 or 24 bits? or? [7:32345]


Hi, all;

I recently started considering why I might want to have a 32-bit mask
for my loopbacks as opposed to some other scheme - for instance using
the regularly documented 24-bit mask on a loopback.

I am speaking of course, of:  Interface Loopback0
IP Address 10.0.0.1
255.255.255.0

versus approaching this matter in this fashion:

  Interface Loopback0
IP Address 10.0.0.1
255.255.255.255

So, my questions are: 1)
 Has any one here seen a detailed discussion of this matter?
Can you provide me a link to it?

   2) Based on what a friend of mine feels, his view is that there
is never any benefit to having a 24-bit, or 28, or 29-bit mask on a
loopback. In his view, loopbacks will always need to be, very logically,
used with 32-bit masks.

Can anyone please shed some light on this matter?

Thank you.

Joshua Dughi




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=32364&t=32345
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: full-duplex Ethernet cable? [7:31643]

2002-01-11 Thread Schneider, Matt

I can see you are a stable person

-Original Message-
From: Patrick Ramsey [mailto:[EMAIL PROTECTED]]
Sent: Friday, January 11, 2002 1:59 PM
To: [EMAIL PROTECTED]
Subject: Re: full-duplex Ethernet cable? [7:31643]


I don't know why it irritates me so much...it's really crazy but I can't
stand hearing people say NIC Card NIC...NICjust say it!...grin...

>>> "Allen May"  01/11/02 01:36PM >>>
Yep...and PIN Number, ACL List, etc.  I used to bug instructors by referring
to them as Network Interface Card Card's to point out what NIC Card really
was ;)

Allen
- Original Message -
From: "Patrick Ramsey" 
To: 
Sent: Friday, January 11, 2002 11:54 AM
Subject: RE: full-duplex Ethernet cable? [7:31643]


> Is NIC Card kinda like a FAT Table?  : p
>
> >>> "Daniel Cotts"  01/11/02 12:34PM >>>
> Unshielded Twisted Pair (UTP) uses two pair (four wires) on pins 1&2 and
3&6
> of an RJ-45 plug. Whether it runs as full or half duplex is determined by
> the connected equipment - NIC card, Hub, Switch, router, etc.
> If Ethernet is running over coax cable then it is limited to half duplex.
>
> > -Original Message-
> > From: mlh [mailto:[EMAIL PROTECTED]] 
> > Sent: Friday, January 11, 2002 10:56 AM
> > To: [EMAIL PROTECTED] 
> > Subject: full-duplex Ethernet cable? [7:31643]
> >
> >
> > Hi, there,
> >
> >
> > how many pairs of two-twisted cable are used for full-duplex
> > Ethernet ? what
> > is the
> > difference between full- and half- duplex cable?
> >
> > Thank you in advance.
> >
> >
> >
> > Regrads,
> >
> > mlh




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31664&t=31643
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Double NAT with PIX [7:31294]

2002-01-08 Thread matt

You should be able to have them point to a
non-overlapping subnet and NAT them back to the
desired 10.0.0.0/16.  Usually when I have done this in
the past, the customer was coming into a DMZ on my end
and I performed that there.  I don't see why you
wouldn't be able to do that here?

ms


--- "Ali, Abbas"  wrote:
> I have a 525 PIX and running normal configuration. 
> Inside network is in
> 10.0.0.0/16 segment and doing NAT with public
> address.  Here is the
> situation.  I have a client where I need to have an
> access through my PIX
> with VPN.  The client is using VPN Concentrator and
> also has 10.0.0.0/16 for
> their inside network.  They sent me the VPN Client
> CD that I installed in my
> laptop and gained access to their network through
> outside segment meaning I
> attached my PC between  my PIX's E0 and Internet
> router in otherwords
> bypassed PIX and configured my PC with public
> address.
> 
> Is it possible to connect to their network with me
> being attached to my
> Internal network.  The question is since both the
> networks mine and theirs
> are on the same LAN Segment how is it possible?
> 
> Thanks,
[EMAIL PROTECTED]


__
Do You Yahoo!?
Send FREE video emails in Yahoo! Mail!
http://promo.yahoo.com/videomail/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31298&t=31294
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Frame Relay Question [7:31210]

2002-01-07 Thread matt

Thanks to everyone for their replies.  As it turns
outseems to be a screw up on the provider's part. 
Thanks everyone for keeping me sane.

matt



--- "[EMAIL PROTECTED]"
 wrote:
> Because your provider has defined the PVC on their
> switch.
> Why?  A few possibilities spring to mind...
> a) your co-worker put in an incorrect or ambiguous
> order and the provider
> thought you wanted the third PVC
> b) your provider accidentally mis-configured the
> switch, and some other
> organisation may be currently asking them why they
> can't see the PVC that
> they ordered.
> c) somebody else in your organisation ordered the
> third PVC
> d) it's an old PVC and somebody forgot to cancel it
> when it was
> de-configured on the router and no longer required,
> or the provider
> cancelled it but forgot to de-configure it from the
> switch.
> e) any number of similar reasons
> 
> The relative likelihood of these depends partly on
> your organisation - how
> many different teams have their fingers in the pie,
> how complex the network
> is (i.e. how easy it is to accidentally mis-type a
> request), and partly on
> the provider.  If you're sure that the third PVC
> isn't required, chase it
> up with your provider - they should be able to say
> when (if) it was
> ordered.
> 
> JMcL
> 
> - Forwarded by Jenny Mcleod/NSO/CSDA on
> 08/01/2002 09:57 am -
> 
>   
>
> "matt"
>   
> cc:
> Sent by: Subject:   
>  Frame Relay Question
> [7:31210]
>
> nobody@groups
>
> tudy.com
> 
>   
>     
>   
>
> 08/01/2002
> 08:52
> am
>
> Please
> respond
> to
>
> "matt"
> 
>   
> 
>   
> 
> 
> 
> 
> So...I am looking at some frame links that a
> co-worker
> brought up not long ago.  I issue a "show
> frame-relay
> pvc" command and notice that there are 3 dlci's
> being
> seen by the router yet there are only 2 circuits. 
> The
> 3rd "unknown" dlci is listed as being unused.  So, I
> look through the config some more and confirm that
> the
> 3rd dlci is not defined anywhere in the config.  I
> am
> guessing my router is learning this dlci from the
> providers frame switch??  But why?
> 
> Feel free to correct me if I am wrong...and thanks
> in
> advance for the help.
> 
> matt
> 
> 
> __
> Do You Yahoo!?
> Send FREE video emails in Yahoo! Mail!
> http://promo.yahoo.com/videomail/
[EMAIL PROTECTED]


__
Do You Yahoo!?
Send FREE video emails in Yahoo! Mail!
http://promo.yahoo.com/videomail/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31224&t=31210
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Frame Relay Question [7:31210]

2002-01-07 Thread matt

So...I am looking at some frame links that a co-worker
brought up not long ago.  I issue a "show frame-relay
pvc" command and notice that there are 3 dlci's being
seen by the router yet there are only 2 circuits.  The
3rd "unknown" dlci is listed as being unused.  So, I
look through the config some more and confirm that the
3rd dlci is not defined anywhere in the config.  I am
guessing my router is learning this dlci from the
providers frame switch??  But why?

Feel free to correct me if I am wrong...and thanks in
advance for the help.

matt


__
Do You Yahoo!?
Send FREE video emails in Yahoo! Mail!
http://promo.yahoo.com/videomail/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31210&t=31210
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: How to Get Router IOS Back [7:31168]

2002-01-07 Thread matt s.

This link should help you:

http://www.cisco.com/warp/public/130/recovery_c2600.html

be careful of the word wrap.

HTH,

ms


--- Hasan Abbas  wrote:
> I have got a problem with Cisco IOS , I have Cisco
> 2620 Router and uploaded
> an IP Plus software via TFTP (copy tftp flash)
> 
> After Rebooting it does initialized its Voice Ports
> but not Ethernet Ports
> or EtherNet Controllers. Since its Ethernet is also
> not Responding How can I
> get My IOS back to its flash.
> 
> Does xmodem -r will work 
> 
> Can anybody will guide me how to get router back to
> working when somebody
> erased his flash and nvram and load IOS to flash
> using Rommon
> 
>  
> 
> Rgds,
> 
> Hasan
> 
>  
> 
> 
> 
> -
> Do You Yahoo!?
> Send FREE video emails in Yahoo! Mail.
[EMAIL PROTECTED]


__
Do You Yahoo!?
Send FREE video emails in Yahoo! Mail!
http://promo.yahoo.com/videomail/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31179&t=31168
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: 3500xl [7:31149]

2002-01-07 Thread matt shiite

yes, on the vty lines to restrict telnet access to the
switch.

ms




--- "James, Eric L." 
wrote:
> Anyone ever setup access-lists on a 3500 switch?
> thanks
[EMAIL PROTECTED]


__
Do You Yahoo!?
Send FREE video emails in Yahoo! Mail!
http://promo.yahoo.com/videomail/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=31171&t=31149
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: OT - Firewall performance Comparisons - is it quitting time [7:30862]

2002-01-03 Thread matt shiite

The testing I did was specific to the scenario where I
was having problems.  That scenario involves a pair of
535's fronting a high traffic news web site.  I took
all kinds of samples and averaged the packet size
distribution  (web traffic=pretty small) so when I was
working with Cisco we were able to have the smartbits
generate streams simulating the same type traffic we
were seeing in production.  

The findings were that the 535 will begin to show
problems at around 400mbs.  This can be slightly
improved if you make sure to limit logging levels
etc..

Another key thing to note is that we tested with 5.3.1
and 5.3.2  DO NOT USE 5.3.1 with a 535.  There are
many problems with that code and high traffic.  When
doing a "show block" you can see this by noticing that
the size 16384 block will be at zero with any
significant amount of traffic.  Do a clear block and
then show block...and you will see it will go right
back down to zero.  The 16384 block corresponds to the
PIX-1GE-66 (66mhz)cards...and 5.3.2 allocates more
resources for those cards.  Another thing to
note5.3.2 will still run out of blocks if you are
running stateful.  I have since turned that off...this
was just prior to 9-11-01 and the site did rather well
under a tremendous load of traffic.  I could go
on...but to sum it up

-the 535 is like any firewall..performance is impacted
directly by packet size

-5.3.2 was what cisco recommended after this testing
with 6.2 waiting to be released.

-535 will hold it's own at 300+ mbs of web traffic.

- the closer you get to 400mbs..the scarier it gets.

hope this helps,

ms

ms
--- Liz  wrote:
> I would like to know about the 535's also curious if
> you have worked with
> the 525's at all.  We just got two to replace some
> old 510's.
> Thanks,
> Liz
> ""matt shiite""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > I don't know too much about the Nokia boxes, but
> have
> > done quite a bit of work on Pix's.  I witnessed
> the
> > 515 fail at between 20-30 mbs  (a documented bug).
>  I
> > found that to be very lame.  Also, did quite a bit
> of
> > testing with cisco on the PIX 535.  If anyone
> cares to
> > see when that thing failslet me know.  You
> might
> > be suprised  :)
> >
> >
> > ms
> >
> >
> > --- Eric  wrote:
> > > The Checkpoint/Nokia 330 runs IPSO as the OS on
> > > hardened freeBSD. These will
> > > actually run routing protocols too, i.e.., RIP,
> > > OSPF, IGRP, etc Nice GUI
> > > too...They do dominate their market segment.
> > >
> > > Eric
> > >
> > > - Original Message -
> > > From: "Chuck Larrieu"
> > > To:
> > > Sent: Monday, December 31, 2001 1:50 PM
> > > Subject: OT - Firewall performance Comparisons -
> is
> > > it quitting time
> > > [7:30576]
> > >
> > >
> > > > I sure love slow days like today. I've
> discovered
> > > a whole new section on
> > > the
> > > > company intranet - a group that does
> performance
> > > and acceptability testing
> > > > for vendor equipment which we sell.
> > > >
> > > > So I'm looking over the firewall report -
> Cisco
> > > 515 versus several other
> > > > things.
> > > >
> > > > I have never seen or heard this before, but
> > > according to this doc,
> > > > Checkpoint on a Nokia 330 box outperformed the
> PIX
> > > 515 substantially. by
> > > > about 20% in terms of throughput. I have
> always
> > > heard that PIX outperforms
> > > > Checkpoint by a large margin. Maybe that was
> when
> > > compared to Checkpoint
> > > on
> > > > a Windoze box?
> > > >
> > > > Interesting to see in the results was that the
> > > Cisco 1601 with IP firewall
> > > > feature set outperformed the Cisco 2610 by a
> > > decent ( but not
> > > overwhelming )
> > > > margin. The PIX 515 looks to be about 50%
> faster
> > > than the 1601 and twice
> > > as
> > > > fast as the 2610.
> > > >
> > > > The PIX 515  was about twice as fast, in terms
> of
> > > throughput, than the
> > > $500
> > > > Netscreen 5XP ( low end ) firewall
> > > >
> > > > Granted, the testbed was limited in that there
> > > were just a few stations on
> > > > the inside trying to get to just a few
> stations on
> > > the outside. 

Re: Aeropoint - Cisco CSS 11000 Content switch [7:30711]

2002-01-03 Thread matt shiite

F5 is not a bad box...I can admit that.  But I still
think that alteon outperforms it.  see attached PDF:

just my opinion,

ms


--- "Scott M. Trieste"  wrote:
> Brant,
> 
> Great call on the BigIP.  I am a huge fan of F5's
> product line, and there
> BigIP -HA box is sooo sweet.
> 
> If anyone would like some heads up on these boxes,
> try www.f5networks.com or
> feel free to email me.
> 
> Thanks.
> 
> -Scott M. Trieste
> 
> ""Brant Stevens""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > Personally, I hate the CSS...  many issues,
> especially if you use it to
> > distribute load for applications other than HTTP;
> SQL comes to mind...
> Not
> > to mention that in my experience, Cisco support
> doesn't seem to know the
> box
> > too well...
> >
> > I'm a big Foundry fan...  BigIP is also a very
> solid product line...
> >
> > -Brant
> > - Original Message -
> > From: "John Neiberger"
> > To:
> > Sent: Wednesday, January 02, 2002 5:39 PM
> > Subject: Re: Aeropoint - Cisco CSS 11000 Content
> switch [7:30711]
> >
> >
> > > We've got one of the original Arrowpoint CSS 100
> switches and I love it.
> > >  They're pretty easy to configure and very
> reliable.
> > >
> > > However, we're going to be redesigning that
> portion of our network and
> > > we're seriously considering moving to the
> competing product by F5.  They
> > > have a new model that is just coming out called
> the Big IP 3000 that is
> > > exactly what we need.  Pricey, but I've heard
> nothing but great things
> > > about them.
> > >
> > > As far as the Cisco stuff goes, I'm sure you'd
> be happy with it.  I
> > > definitely love the one we have.
> > >
> > > HTH,
> > > John
> > >
> > > >>> "Byron"  1/2/02 3:16:04 PM >>>
> > > Hello-
> > >
> > > Can anyone share any successes stories and
> problem areas with the Cisco
> > > CSS
> > > 11000 Content Services Switch?  We're about to
> begin a migration of
> > > dual
> > > Local Directors (supporting large ASP model web
> farm) moving to the
> > > CSS
> > > 11000.  We're upgrading due to bugs and
> instability we've experienced
> > > with
> > > the LDs.  Would very much appreciate any
> experiences with the CSS
> > > 11000
> > > product.
> > >
> > > thx kindly.Byron
> > >
> > >
> > >
>
_
> > > Do You Yahoo!?
> > > Get your free @yahoo.com address at
> http://mail.yahoo.com
[EMAIL PROTECTED]


__
Do You Yahoo!?
Send your FREE holiday greetings online!
http://greetings.yahoo.com

[GroupStudy.com removed an attachment of type application/pdf which had a
name of Tolly_FINAL.pdf]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=30826&t=30711
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: SSL Accelerators [7:30724]

2002-01-02 Thread matt shiite

Personnally I have used the Alteon series
loadbalancers with their ISD ssl accelerator.  I can't
complain...they have worked like a champ. Just another
option for ya  :)


ms
--- Gaz  wrote:
> Not providing many/any answers here I'm afraid -
> just asking more questions.
> Is SSL that suitable for caching? I would have
> thought that most SSL traffic
> would be unique (Session ID's/transaction info etc).
> That's not a cocky question, I really don't know. I
> suppose there will be
> static content within the SSL pages.
> 
> I've used Intel SSL accelerators which seem to
> perform pretty well. We also
> do a fair bit of load balancing with Foundry
> Networks kit (Server Irons/Big
> Irons) and they're pretty nippy and pretty cheap
> compared to Cisco, and have
> the advantage that their CLI is very close to Cisco.
> I suppose it depends what scale you're doing it on.
> 
> From what I've seen of the Cisco CSS (Arrowpoint
> kit) they seem to offer
> greater functionality/flexibility than Foundry, but
> not seen much of them
> working in anger yet.
> 
> Be interesting to hear what Stratacache really mean
> by caching content in
> SSL-ready format.
> 
> 
> Gaz
> 
> ""John Neiberger""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > We are looking at buying some new load balancing
> switches and new cache
> > engines and somewhere in that mix we want to add
> SSL acceleration.  One
> > vendor that we're looking at sells load balancing
> switches with SSL
> > acceleration built-in.  Of course, they really
> like their way of doing
> > this.  The other vendor has a cache engine with
> SSL acceleration and
> > they say there is a significant performance
> increase by caching content
> > in SSL-ready format.
> >
> > Do any of you have any thoughts here?  The first
> vendor is F5 and I
> > really like the looks of their Big IP series.  The
> second vendor is
> > Stratacache and I really don't know much about
> them despite having
> > talked to them about this.  :-)
> >
> > Any tips?
> >
> > Thanks,
> > John
[EMAIL PROTECTED]


__
Do You Yahoo!?
Send your FREE holiday greetings online!
http://greetings.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=30737&t=30724
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Passive Interface Help [7:30648]

2002-01-02 Thread matt shiite

Are these routers directly connected?  If so, that
explains why you would still be able to ping. Did you
try to use loopback interfaces and see if those routes
are being announced?

ms


--- CCIEn2002  wrote:
> Thank you for the info. Now I am a little confused
> still on
> the passive interface. If it prevents routing
> updates
> from being sent out, why would one want a
> passive interface. From my understanding, a
> passive interface would not advertise is routing
> updates to its neighbor. If that is the case, I am
> perplexed
> on why I can ping a passive interface that is being
> advertised
> thru a routing protocol. In my case, my neighbor
> router
> is seeing an IGRP update for the Ethernet network.
> 
> Why would you make the Ethernet passive if you can
> still
> ping it and see its routing update from a
> neighboring router
> via the show ip route ?
> This is where I get confused by the definition of
> passive.
> 
> Any help..I am a rookie as you can see
> 
> David
> 
> 
> - Original Message -
> From: "cheekin" 
> To: ; 
> Sent: Wednesday, January 02, 2002 4:43 AM
> Subject: Re: Passive Interface Help [7:30648]
> 
> 
> > Hi,
> >
> > When you make the ethernet interface passive, it
> means no igrp updates
> will
> > be sent out on the ethernet interface.  It doesn't
> stop the serial
> interface
> > from advertising network 12.0.0.0 .  Which
> explains why you can still ping
> > to the ethernet interface.  If for some reason you
> do not want network
> > 12.0.0.0 to be advertised, remove the network
> 12.0.0.0 statement or use
> > distribute-list to filter out the route.
> >
> > Regards,
> > cheekin
> >
> > - Original Message -
> > From: 
> > To: 
> > Sent: Wednesday, January 02, 2002 15:03
> > Subject: Passive Interface Help [7:30648]
> >
> >
> > > Happy New Year!!
> > >
> > > I need a little help on what a passive
> > > interface is. From what I can gather, a passive
> > > interface does not advertise its route to its
> > > neighbor ? Now if that is the case, why can
> > > I still ping an interface that is set to
> passive.
> > > Please note: This is excluding directly
> connected
> > > routes.
> > >
> > > For example, I set my Cisco 2509 ethernet
> interface
> > > to passive. Why can I still ping the ethernet
> address
> > > from my neighboring router Cisco 4000 ? I am
> > > running IGRP. Why does the ethernet network show
> up in its routing table
> > for
> > > my Cisco 4000. From poking around with the
> passive interface command it
> > > seems that I can not ping my ethernet address
> only if I set the Serial
> > > interfaces to passive also.
> > > This seems odd. I thought if I made an ethernet
> interface passive, I
> > should
> > > not be able to ping it from a neighboring router
> or any other router
> since
> > > it is not being
> > > advertised.
> > >
> > > Below is a sample of me being able to ping
> serial 1 off
> > > my Cisco 2509 from my Cisco 4000. Serial 1 is
> "not"
> > > directly connected. Serial 1 is being
> advertised.
> > >
> > >
> > >
> > >
> > > Current configuration:
> > > !
> > > version 12.0
> > > service timestamps debug uptime
> > > service timestamps log uptime
> > > no service password-encryption
> > > !
> > > hostname Cisco2509
> > > !
> > > enable password router
> > > !
> > > ip subnet-zero
> > > ipx routing 0010.7be8.22f4
> > > !
> > > !
> > >  !
> > >  !
> > >  !
> > >  interface Ethernet0
> > >  ip address 12.11.12.1 255.255.255.240
> > >  no ip directed-broadcast
> > >  delay 1000
> > > !
> > > interface Serial0
> > >  ip address 172.16.18.1 255.255.255.240
> > >  no ip directed-broadcast
> > >  no ip mroute-cache
> > >  ipx network 3
> > >  no fair-queue
> > >  clockrate 100
> > > !
> > > interface Serial1
> > >  ip address 172.17.18.2 255.255.255.240
> > >  no ip directed-broadcast
> > >  clockrate 400
> > > !
> > > router igrp 1
> > >  passive-interface Ethernet0
> > >  passive-interface Serial0
> > >  passive-interface Serial1
> > >  offset-list 2 out 11000 Serial0
> > >  network 12.0.0.0
> > >  network 172.16.0.0
> > >  network 172.17.0.0
> > > !
> > > ip classless
> > > !
> > > access-list 2 deny   12.11.12.1
> > > !
> > > !
> > > !
> > > !
> > > !
> > > line con 0
> > >  transport input none
> > > line 1 8
> > > line aux 0
> > > line vty 0 4
> > >  password cisco
> > >  login
> > > !
> > > end
> > >
> > > Cisco2509#
> > >
> > >
> > >
> > > Cisco_4000>ping 172.17.18.1
> > >
> > > Type escape sequence to abort.
> > > Sending 5, 100-byte ICMP Echos to 172.17.18.1,
> timeout is 2 seconds:
> > > !
> > > Success rate is 100 percent (5/5), round-trip
> min/avg/max = 120/120/124
> ms
> > > Cisco_4000>ping 12.11.12.1
> > >
> > > Type escape sequence to abort.
> > > Sending 5, 100-byte ICMP Echos to 12.11.12.1,
> timeout is 2 seconds:
> > > .
> > > Success rate is 0 percent (0/5)
> > > Cisco_4000>
[EMAIL PROTECTED]


__
Do You Yahoo!?
Send your FREE holiday greetings online!
http:/

Re: OT - Firewall performance Comparisons - is it quitting time [7:30590]

2001-12-31 Thread matt shiite

I don't know too much about the Nokia boxes, but have
done quite a bit of work on Pix's.  I witnessed the
515 fail at between 20-30 mbs  (a documented bug).  I
found that to be very lame.  Also, did quite a bit of
testing with cisco on the PIX 535.  If anyone cares to
see when that thing failslet me know.  You might
be suprised  :)


ms


--- Eric  wrote:
> The Checkpoint/Nokia 330 runs IPSO as the OS on
> hardened freeBSD. These will
> actually run routing protocols too, i.e.., RIP,
> OSPF, IGRP, etc Nice GUI
> too...They do dominate their market segment.
> 
> Eric
> 
> - Original Message -
> From: "Chuck Larrieu" 
> To: 
> Sent: Monday, December 31, 2001 1:50 PM
> Subject: OT - Firewall performance Comparisons - is
> it quitting time
> [7:30576]
> 
> 
> > I sure love slow days like today. I've discovered
> a whole new section on
> the
> > company intranet - a group that does performance
> and acceptability testing
> > for vendor equipment which we sell.
> >
> > So I'm looking over the firewall report - Cisco
> 515 versus several other
> > things.
> >
> > I have never seen or heard this before, but
> according to this doc,
> > Checkpoint on a Nokia 330 box outperformed the PIX
> 515 substantially. by
> > about 20% in terms of throughput. I have always
> heard that PIX outperforms
> > Checkpoint by a large margin. Maybe that was when
> compared to Checkpoint
> on
> > a Windoze box?
> >
> > Interesting to see in the results was that the
> Cisco 1601 with IP firewall
> > feature set outperformed the Cisco 2610 by a
> decent ( but not
> overwhelming )
> > margin. The PIX 515 looks to be about 50% faster
> than the 1601 and twice
> as
> > fast as the 2610.
> >
> > The PIX 515  was about twice as fast, in terms of
> throughput, than the
> $500
> > Netscreen 5XP ( low end ) firewall
> >
> > Granted, the testbed was limited in that there
> were just a few stations on
> > the inside trying to get to just a few stations on
> the outside. Traffic
> > simulation was used for different types of traffic
> ( http, ftp, etc )
> > Granted there are  other issues, such as
> scalability.
> >
> > Still, it sure looks to be an interesting year
> ahead, in the security
> > products market.
> >
> > Happy New Year, everyone!
> >
> > Chuck
[EMAIL PROTECTED]


__
Do You Yahoo!?
Send your FREE holiday greetings online!
http://greetings.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=30590&t=30590
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: New York Study Group [7:23580]

2001-10-19 Thread Schneider, Matt

yes, lets start one, but no one who has the name GUY can be in it

-Original Message-
From: Philip Jache
To: [EMAIL PROTECTED]
Sent: 10/19/2001 8:24 PM
Subject: RE: New York Study Group [7:23580]

We could start one. 

Philip Jache
Sports Illustrated
135 West 50th Street
New York, NY 10020




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=23606&t=23580
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Disable Telnet [7:23388]

2001-10-18 Thread Schneider, Matt

yes

-Original Message-
From: Chamak [mailto:[EMAIL PROTECTED]]
Sent: Thursday, October 18, 2001 1:11 PM
To: [EMAIL PROTECTED]
Subject: Disable Telnet [7:23388]


can I diable the Telnet on my router or can I restrict IP that can telnet to
the router ?


Mukul




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=23397&t=23388
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Jargon Dictionary [7:21964]

2001-10-04 Thread Schneider, Matt

nice


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
Sent: Thursday, October 04, 2001 12:13 AM
To: [EMAIL PROTECTED]
Subject: Re: Jargon Dictionary [7:21964]


A magic number is any combination of wins by team x or losses by team y.
Sorry I'm a baseball fan.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=22088&t=21964
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: NAT pool timeout [7:21206]

2001-09-26 Thread Schneider, Matt

On a cisco router you can set the lease time by going into config t, and
then into the dhcp pool name and issue the command lease 0-365 days, I think
the default lease time is 1 day.

-Original Message-
From: Quadri, Habeeb [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, September 26, 2001 4:05 PM
To: [EMAIL PROTECTED]
Subject: NAT pool timeout [7:21206]


Hi,

I am running out of addresses in nat pool. I understand that after certain
time period of inactivity addresses are timed out and return to the pool. I
would like to know, what is the default timeout for inactive addresses in
pool and how to reduce/manage timeout after a certain period of inactivity.
I researched CCO but things are not clear!!.  Any comments are appreciated.

Thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=21211&t=21206
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: 2600 routers and 10.0.0.0/8 networks [7:18786]

2001-09-06 Thread Matt

There is a small correction, we used 172.16.0.0/12 networks on the serial
interfaces, i think you figured that out anyways. The other is not in
RFC1918 :).

I don't understand this comment:
>If you're at R1, you're unable to ping R2's Ethernet interface because
>network 10 is directly connected.
Then why would pinging the serial interfaces on each router (R2+) work even
though 172.16.0.0 is directly connected via s0/0 and s0/1?.
I am just not understanding why the 10 network would not work, yet the
172.16 network would.  Why would I not get updates from 10.0.2.1 and the
others?  I have three interfaces directly connected on each router (except
for the first and last see below). I should be getting updates from both
networks, shouldn't I?

 || S0/0 172.16.1.1|| S0/0 172.16.2.1  ||
 | R1 || R2 |-| R3 |--etc...
 ||172.16.1.2 S0/1 ||  172.16.2.2 S0/1 ||
| F0/0 10.0.1.1   | F0/0 10.0.2.1 | F0/0
10.0.3.1
| |
|
| |
|
10.0.1.2   10.0.2.210.0.3.2

I have tried this on RouterSim and it worked fine.

""Leigh Anne Chisholm""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> That's kind of the problem Symon.  The problem is that network 10 exists
on
> both sides of the serial connection.
>
>
>   10.0.1.1  172.16.1.1   172.16.1.210.0.2.1
> E0S0   S0E0
>R1 R2
>--  ---  --
>Network 10  Network 172  Network 10
> Ethernet Serial  Ethernet
>
>
>
> What you have is a discontiguous network with Network 10.  You can't have
> that with a classful routing protocol.  That's basic CCNA-level network
> theory.  If your instructor was unable to understand why you couldn't ping
> the interfaces properly, I'd have strong reservations about their overall
> ability to teach an advanced networking course.
>
> If you're at R1, you're unable to ping R2's Ethernet interface because
> network 10 is directly connected.  It sends the ping out the E0 interface
> rather than routing it across the serial connection to R2.  If you're at
R2,
> you're unable to ping R1's Ethernet interface because network 10 is
directly
> connected.  It sends the ping out the E0 interface rather than routing it
> across the serial connection to R2.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=18854&t=18786
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



2600 routers and 10.0.0.0/8 networks [7:18786]

2001-09-06 Thread Matt

I was recently in a CCNP lab where we were to configure 15 new out of the
box 2600 series routers to get used to the new hardware using direct serial
connections between them (s0/0 & s0/1) using the networks 172.168.1-15.0.
Each router had a fast ethernet connection (f0/0) which we hooked to our PCs
using the networks 10.0.1-15.0.  We were using RIP and everything seemed to
be working fine.  We could ping each serial interface from the routers and
the PCs, but when we tried to ping the ethernet ports, it would not work.
(We were supposed to setup ACLs on the ethernet to stop icmp, but we had to
get them to work in the first place!).  We looked at every router and saw
nothing wrong in their config.  We noticed that the 10.0.0.0/8 networks were
not in the RIP updates, so we checked some more and then tried using IGRP.
Still nothing.  I know that 10.0.0.0/8 network is a private network, but so
is the 172.168.0.0/12 network we were using.  We ended up changing the
network on the fast ethernet and we got RIP updates from the new networks
and everything worked.  Does any one know why this would happen.  Why would
the 10.0.0.0/8 network not work but the other private network IPs work?

-Matt




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=18786&t=18786
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: load balance between 4 T1s [7:15692]

2001-08-13 Thread Schneider, Matt

are you saying that CEF is buggy?

-Original Message-
From: Scott M. Trieste [mailto:[EMAIL PROTECTED]]
Sent: Monday, August 13, 2001 2:11 PM
To: [EMAIL PROTECTED]
Subject: Re: load balance between 4 T1s [7:15692]


If your running this implementation with an ISP, chances are they won't use
a technology that has  proved buggy: CEF.  My recommendation would be to use
the load balancing feature of such IGP routing protocols like OSPF or EIGRP.

""khramov""  wrote in message
news:[EMAIL PROTECTED]...
> I am getting 4 T1s but I think I will have only one IP address.  How can
> I load balance 1IP between 4 T1s.
> thanks




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=15908&t=15692
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Keep losing Cisco 3640 startup config [7:14376]

2001-07-31 Thread Schneider, Matt

make sure the config register is set to 0x2102 and if not go into config
mode and type config-register 0x2102 and do a sh ver and at the bottom it
will tell you where the next boot will come from

-Original Message-
From: W. Alan Robertson [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, July 31, 2001 1:11 PM
To: [EMAIL PROTECTED]
Subject: Re: Keep losing Cisco 3640 startup config [7:14376]


I would begin by checking my config register...  It sounds like it may
be set to bypass the stored config.

- Original Message -
From: "kwock99" 
To: 
Sent: Tuesday, July 31, 2001 12:30 PM
Subject: Keep losing Cisco 3640 startup config [7:14376]


> Hi,
>
> I have a Cisco 3640 router and found that everytime I power down the
router,
> the startup config is missing and restart the "setup".
>
> I have "copy run start" many times.
>
> Anyone has the idea to fix it?
>
>
> Best regards
> Francis Tsui
[EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=14381&t=14376
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: OSPF and Access-lists [7:14229]

2001-07-30 Thread Schneider, Matt

ospf uses 224.0.0.5 and 224.0.0.6

-Original Message-
From: Dennis H [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 30, 2001 4:03 PM
To: [EMAIL PROTECTED]
Subject: Re: OSPF and Access-lists [7:14229]


Assuming you do not have any permit statements it would be dropped.  As far
as I know OSPF hello's use multicast addressing.  If I remember right it
uses 224.0.0.10 but I could be wrong...

Dennis


""Nabil Fares""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Greetings,
>
> Just an insanity check..If I have deny any any access list on an
> interface, would the ospf hello drop?
>
> Thanks,
>
> Nabil




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=14253&t=14229
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Dual T1 Bonding? [7:13914]

2001-07-26 Thread Schneider, Matt

interface Multilink1
 ip address x.x.x.x x.x.x.x
 no cdp enable
 ppp multilink
 multilink-group 1

interface Serial0
  no ip address
 encapsulation ppp
 ip mroute-cache
 no fair-queue
 ppp multilink
 multilink-group 1

interface Serial1
 no ip address
 encapsulation ppp
 ip mroute-cache
 no fair-queue
 ppp multilink
 multilink-group 1





-Original Message-
From: Howard C. Berkowitz [mailto:[EMAIL PROTECTED]]
Sent: Thursday, July 26, 2001 7:14 PM
To: [EMAIL PROTECTED]
Subject: Re: Dual T1 Bonding? [7:13914]


>Hello,
>
>We have a Cisco2621 with two T1 going to the same place.  Does anyone have
a
>link to some IOS examples that would allow them to be bonded together?  \
>
>We would like the ability to download at the combined T1 speed of 3 mb.
>Currently we seem to max out at only 1 T1 speed.  I did searches at Cisco
on
>bonding, but could not come up with anything.
>
>Thank you.
>Matt Goodhue

"Bonding," to be specific, is a layer 1 technique intended for 
videoconferencing, and is not supported by routers.  It's actually 
BONDING, an acronym for something that escapes me.

To do it on the router, look at multilink PPP for a layer 2 solution, 
and also per-packet and per-flow load balancing at layer 3.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=13917&t=13914
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Dual T1 Bonding? [7:13914]

2001-07-26 Thread Matt Goodhue

Hello,

We have a Cisco2621 with two T1 going to the same place.  Does anyone have a
link to some IOS examples that would allow them to be bonded together?  \

We would like the ability to download at the combined T1 speed of 3 mb.
Currently we seem to max out at only 1 T1 speed.  I did searches at Cisco on
bonding, but could not come up with anything.

Thank you.
Matt Goodhue




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=13914&t=13914
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Blocking the unsed IP [7:13514]

2001-07-24 Thread Schneider, Matt

yes


-Original Message-
From: Rajeev Karamchand [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, July 24, 2001 11:36 AM
To: [EMAIL PROTECTED]
Subject: Blocking the unsed IP [7:13514]


All

Is there a way to block all unused external IP 




=
Rajeev Karamchand
MCSE,MCSE+I,MCDBA,CCNA

__
Do You Yahoo!?
Make international calls for as low as $.04/minute with Yahoo! Messenger
http://phonecard.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=13521&t=13514
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: ptcm0600 [7:13425]

2001-07-23 Thread Matt

Hey, about two hours ago I got a message from someone saying that an email
exactly like this one is going around and the attachment is a worm. Watch
out!!!

Matt

 wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi! How are you?
>
> I send you this file in order to have your advice
>
> See you later. Thanks
>
> [GroupStudy.com removed an attachment of type application/mixed which had
a
> name of ptcm0600.xls.bat]
>
> [GroupStudy.com removed a section which didn't have a content-type header]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=13442&t=13425
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: VoFR [7:13434]

2001-07-23 Thread Matt

Oops, my bad.  I got in a hurry when I was posting this.  Here is what it
looks like.  Sorry about that.

dial-peer voice 5000 vofr
destination-pattern 5000
session target serial0/0 120

dial-peer voice 101 pots
port 1/0/1
destination-pattern 1001

Matt



""Tony Medeiros""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I am suprised that the IOS let you put a "port statment" under a VOFR dial
> peer.  Those are only for POTS peers.  Take it out and it might work.
> Tony M.
> #6172
>
> - Original Message -
> From: Matt
> To:
> Sent: Monday, July 23, 2001 5:05 PM
> Subject: VoFR [7:13434]
>
>
> > Hey, I am having trouble with VoFR.  I have a small lab setup with a
2600
> as
> > a frame switch and two routers (2600 and 3600) with FXS ports.  I can
get
> > VoIP to work just fine.  For VoFR I changed the dial-peer to VoFR and I
> > changed the destination pattern to use the serial interface and the
local
> > DLCI.  Other than that the configs are the same (just a plain Jane VoIP
> > config).  Is there something obvious that I am missing?
> >
> > dial-peer voice 100 vofr
> > port 1/0/0
> > destination-pattern 5000
> > session target serial0/0 120
> >
> > Thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=13440&t=13434
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



VoFR [7:13434]

2001-07-23 Thread Matt

Hey, I am having trouble with VoFR.  I have a small lab setup with a 2600 as
a frame switch and two routers (2600 and 3600) with FXS ports.  I can get
VoIP to work just fine.  For VoFR I changed the dial-peer to VoFR and I
changed the destination pattern to use the serial interface and the local
DLCI.  Other than that the configs are the same (just a plain Jane VoIP
config).  Is there something obvious that I am missing?

dial-peer voice 100 vofr
port 1/0/0
destination-pattern 5000
session target serial0/0 120

Thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=13434&t=13434
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Multiple OSPF areas on the same router [7:13108]

2001-07-20 Thread Schneider, Matt

are you running full bgp routes on the router that you want to put 6 areas
on.

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
Sent: Friday, July 20, 2001 1:55 PM
To: [EMAIL PROTECTED]
Subject: Re: Multiple OSPF areas on the same router [7:13108]


Guy,

 A router which belongs to multiple OSPF area's is called an Area
Border Router (ABR).   All ABR's must belong to area 0 (The OSPF Backbone
area) in addition to any other areas they belong to.   For each area a
router is a member of, it must store all of the LSA's for that area, and
participate in the Dykstra SPF calculations for that area.  So, the more
area's a router is a member of, the higher the CPU and memory load on the
router.   Recommendations for the maximum number of areas a  router should
belong to vary.   It isn't an exact science.  The number of routers, the
number of circuits (networks), and the stability of the circuits in each
area will affect the max number of areas you can support on a single ABR.
That said, 6 areas plus area 0 on a single router is probably to high.  3-4
areas plus area 0 is generally a good rule of thumb.   Again, keep in mind
there are many variables which affect how many areas a router can support
and so each situation must be considered individually.


 ---Jon





"Lupi, Guy" @groupstudy.com on 07/20/2001 01:29:41
PM

Please respond to "Lupi, Guy" 

Sent by:  [EMAIL PROTECTED]


To:   [EMAIL PROTECTED]
cc:

Subject:  Multiple OSPF areas on the same router [7:13108]


Lets say you have a router with 6 DS3s, has anyone ever heard that it is
not
a good practice to have each DS3 be its own area?  I was talking to someone
and they said that it may not be a good idea to have multiple areas on the
same router, but I have never heard that.  Thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=13118&t=13108
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: E1 interface [7:12864]

2001-07-18 Thread Matt

OK, so do you know the actual serial interface that I should order assuming
that they will provide the CSU/DSU?  Is there a WIC-E1?  I can't find it.
Thanks, by the way, you guys are a huge help...


""Winchester, Derek""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Correct. All you need is a serial interface. If you ask for a T1 or a E1
> they will always offer you a Pri or multiflex. Serial is the only
interface
> you should ask for when using a T1 or E1
>
> Derek S. Winchester
>
>
> -Original Message-
> From: Daniel Cotts [mailto:[EMAIL PROTECTED]]
> Sent: Wednesday, July 18, 2001 4:22 PM
> To: [EMAIL PROTECTED]
> Subject: RE: E1 interface [7:12864]
>
>
> My experience is that in Europe the Telco provides the CSU/DSU. They
should
> hand off to you as V.35 so all you need is a serial port. Verify this.
>
> > -Original Message-
> > From: Matt [mailto:[EMAIL PROTECTED]]
> > Sent: Wednesday, July 18, 2001 2:54 PM
> > To: [EMAIL PROTECTED]
> > Subject: E1 interface [7:12864]
> >
> >
> > Hey, I know that this sounds dumb, but I've never had to
> > install, configure,
> > or support an E1 interface.  So today I went to put together
> > a sales order
> > for someone installing a router in Europe, and the only E1
> > interfaces I can
> > find are PRI and multiflex (?) for doing voice and data.
> > Obviously I need
> > to get more info from the provider over there, but I'm
> > wondering what I'm
> > missing.  With a T1 interface, you just have to decide
> > whether or not it
> > gets an internal CSU/DSU or not and then order a WIC-T1 or a
> > WIC-1DSU-T1.
> > Help!
> > Report misconduct
> > and Nondisclosure violations to [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12883&t=12864
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



E1 interface [7:12864]

2001-07-18 Thread Matt

Hey, I know that this sounds dumb, but I've never had to install, configure,
or support an E1 interface.  So today I went to put together a sales order
for someone installing a router in Europe, and the only E1 interfaces I can
find are PRI and multiflex (?) for doing voice and data.  Obviously I need
to get more info from the provider over there, but I'm wondering what I'm
missing.  With a T1 interface, you just have to decide whether or not it
gets an internal CSU/DSU or not and then order a WIC-T1 or a WIC-1DSU-T1.
Help!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12864&t=12864
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCNA Logo [7:4966]

2001-07-11 Thread Matt Wehland

At 09:06 PM 7/10/01 -0400, you wrote:
>Follow the instructions on the cisco website concerning logos.  I think it
>took 24 hrs for them to email them to me.

I just signed up (finally, been certified for 4 months now), and just got 
the logos within minutes of asking for them.  It took me longer to find my 
testing paperwork than it did to sign up.
 From cisco's home page go to training & cert then go to tracking system 
and have fun.

Matt

Matt Wehland [EMAIL PROTECTED]
   Computer Network Specialist
MCSE CCNA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=11997&t=4966
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: IP helper addresses [7:11434]

2001-07-09 Thread Schneider, Matt

also tacacs

-Original Message-
From: Patrick Ramsey [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 09, 2001 9:59 AM
To: [EMAIL PROTECTED]
Subject: Re: IP helper addresses [7:11434]


both.

And remeber to disable all broadcasts you do not want forwarded.  By default
cisco forwards the following as well as bootp/dhcp:

no ip forward-protocol udp tftp
no ip forward-protocol udp domain
no ip forward-protocol udp time
no ip forward-protocol udp netbios-ns
no ip forward-protocol udp netbios-dgm

These commands can be put in global config to control all vlans supporting
ip helpers.

-Patrick

>>> "Wilson, Christian"  07/09/01 09:42AM >>>
If I enter two ip helper address statements referencing two different IP
addresses in my router configs, which one does the router use?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=11441&t=11434
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: tracking rogue dialup users [7:11145]

2001-07-05 Thread Matt Andreko

i work for an isp, and what happens is, the website will call us up, and say
"a user broke into our server at xx:xx am/pm" we then look at who was logged
on at that time, on that ip address, and we can tell their username, and
also if they have caller ID like we do, we can tell their phone number.
However, we don't give out that info without a court order, because of
privacy.  But we tell that to the website that was cracked.

- Original Message -
From:  - 
To: 
Cc: Security Basics (E-mail) 
Sent: Tuesday, July 03, 2001 4:15 AM
Subject: tracking rogue dialup users


> Greetz.
>
> Just a matter of interest.
>
> Say there is user A, he dials up to ISP J.
> User A breaks into server X.
> Server X has the ip, he contacts the isp
> How is the user tracked from there on...
>
> Do servers like CiscoSecure ACS keep track of the ip and the time
connected.
> The reason I am asking is in my little experience that I had with
> CiscoSecure ACS and their radius, I could not find such info on the logs.
> Is tacacs perhaps a little better, will it give me more info?  Or will
this
> user just get away with this -- Doubt it though
>
> Any help will be greatly appreciated.
>
> Ciao




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=11145&t=11145
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



HELP! PIM over GRE over IPSEC [7:11137]

2001-07-05 Thread Matt

I want to set multicast traffic through a GRE tunnel so that I don't have to
mess with my IPSEC tunnel.  In a lab I am trying just the PIM over GRE and I
can't make it work.  Any help would be appreciated.  Thanks..

Matt




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=11137&t=11137
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco ACL's [7:11114]

2001-07-05 Thread Schneider, Matt

Cisco access lists field guide by Gil Held and Kent Hundley, McGraw-Hill
Technical Expert

-Original Message-
From: Caballero, Eddie [mailto:[EMAIL PROTECTED]]
Sent: Thursday, July 05, 2001 4:37 PM
To: [EMAIL PROTECTED]
Subject: Cisco ACL's [7:4]


Hi,

Anyone know of a good book or source of information on Cisco
Access-lists.  Is there any sort of book with a plethora of examples and
information on the subject?

Thanks,

Eddie Caballero




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=5&t=4
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Found a good deal on FLASH memory [7:10744]

2001-07-04 Thread Matt Wehland

At 11:30 PM 7/2/01 -0400, Circusnuts wrote:
>Prices are low on a lot of the Cisco stuff, but this is good extreme for
2500
>FLASH...
>
>http://search.auctions.yahoo.com/search/auc?p=cisco+flash&alocale=0us&acc=us
>
>Phil

Are you sure it's 2500 compatible flash?  No where on the auction do I see 
what models it's for (although I may have missed it).  While this would be 
a great price for flash for the 2500 series, it seems about right for flash 
compatible with other models


Matt Wehland [EMAIL PROTECTED]
   Computer Network Specialist
MCSE CCNA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=11008&t=10744
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCNA scoring [7:10407]

2001-07-01 Thread Matt Holbert

The scoring is not weighted or curved; that is, your score is not based upon
others' score or giving certain questions more weight. It's kind of weird
the way Cisco figures your score. As soon as you pay your $100, you have
scored 300 points. If you get 0 questions right, you get a 300/1000. If you
get them all right, you get a 1000/1000.

Your Cisco score = 300 + (number right/65) * 700

So, with your 946, you missed 5 questions out of 65. You scored roughly
92.2%. You need to score 51/65 (78.5%) to pass.

Matt

""Sam Sneed""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I passed CCNA yesterday with a 946/1000(there is no integer divisible by
65
> that would give me this score so I know its curved).  I did not think I
was
> doing well throughout the exam yet I got a good score. When it started, I
> was  told that you need 849/1000 based on a score that ranges between 300
> and 1000. So is this graded on a curve? If I got 3 wrong would my score be
> 62/65= 954/1000? I don't think it works that way. I overstudied thinking I
> needed at least 55/65 to pass but I do not think this was the case. Why
> would they grade on a curve? If you can't answer 85% of the questions I
> think you should fail.  Are the CCNP exams graded on this weird scale and
as
> easy to pass as well? I recieved my MCSE a few months ago and honestly
think
> the scenario questions on  those test were harder than any of the
questions
> on th CCNA.Coming from a Computer Science background at Rutgers, I can
> guarantee the midterms and finals on my networking courses there were 100
> times more challenging than these exams.I barely needed a pen and paper
> throughout the whole CCNA.
>
>  Anyway before I digress any further I just wanted to know how the grading
> worked on the CCNP and the scores required to pass.
>
> Thanks.
>
> Sam Sneed
>  CCNA # 3,324,567,892
>   MSCE # 5,324,324,332




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=10577&t=10407
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Pix and iip options [7:10409]

2001-06-29 Thread Matt Holbert

This is the IP Router Alert option from RFC 2113.

http://www.faqs.org/rfcs/rfc2113.html

""BOURNE, KENNETH""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hello , my Pix 515 is logging large amounts of denies from a host because
of
> ip option 0x14. I checked cco for the system message 106012 it tells me
why
> it is denying it  but not what causes it .  Can someone please give me or
> point me to somewhere to find more info about ip option 0x14 and about ip
> options in general   ?
> thanks in advance.
>
> > |Ken Bourne,CCNA|Network Specialist|
> > |702-657-3432(direct)|702-524-1193(mobile)||[EMAIL PROTECTED]|




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=10487&t=10409
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Technical Questions [7:10427]

2001-06-29 Thread Matt Holbert

I'm pretty good at allocating address blocks in binary as well. What I'm not
good at is analyzing several decimal addresses (with variable-length masks)
to see if they overlap. I almost always am forced to write these out in
binary.

See additional in-line comment.

""Howard C. Berkowitz""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> >Open Forum might be more up to speed if your free-time consists of
working
> >address plans in binary or looking for probability in the pregnant chads
of
> >Fortran punch cards :o)
>
> There's something wrong with doing address plans in binary?  Best way
> to learn, once you realize you don't have to do all 32 bits in
> binary.  Seriously, when I plan an address structure, and I am
> documenting it, my primary mode is binary, and then converting to
> dotted decimal where appropriate.  Now, when I say planning address
> structures, it often is to say "a /19 here, split into 8 /21 for
   

I'll agree you're probably pretty good at subnetting in your head. Your
typing skills could be further honed, however.

:-)

> areas".
>
> Not boasting here, but when you've been doing these for what...15
> years or so, I can do a fair bit of subnetting in my head. There are
> tricks, but I wouldn't confuse a beginner with them.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=10485&t=10427
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: serial interfaces [7:7089]

2001-06-04 Thread Matt

Remeber the ? is your best friend.

Matt

""Adekola, Dennis D""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi guys
> Can anyone tel me if the config for the DCE is clockrate or clock rate
>
> Thanks
>
> Tade




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=7209&t=7089
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Apologize for these two Questions [7:7111]

2001-06-04 Thread Matt

I used the Global Knowledge MCSE study guides, the Trancender exam, and lots
of time in my Win2K lab.

The global knowledge books covered all of the material needed for me to pass
my exams.

There are also some good links avaiable at www.cramsession.com

Matt

""Reel, JohnX""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Comrades,
>
> Please do not fan the flame the flames of the religious O/S war... from
this
> message.
>
> I passed my Switch test this Saturday... Walking away with a big smile;
> Thank you all for your help!
>
> Due to my current Intel contract situation, I will be have to put my CCNP
> drive and desire on hold for three month while I migrate my MCSE 3.51
> certification to a MCSE 2K certification...  BUT, I will return as I
really
> enjoy Cisco and Networking more.
>
> Question 1:  Is there is a "MCSE study group" such as this one in
existence?
>
> Question 2:  Has anyone found a set of books that is really good?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=7208&t=7111
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco to Ravlin IPSEC Card [7:1868]

2001-04-26 Thread Matt Street

What model Ravlin are you using?  I have never heard of a Ravlin having a
IPSEC card.  The most common way of having Ravlins communicate is Ravlin to
Ravlin through a secure VPN between the two.  The router just forwards the
packets to the proper destination.  (IE packets sent from the Ravlin use the
Ravlins remote IP address in the header and thats what the router uses to
determine where to send the packet.)  I need some more information to know
what exactly you want done.


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Clare, Charles
Sent: Wednesday, April 25, 2001 10:26 AM
To: [EMAIL PROTECTED]
Subject: Cisco to Ravlin IPSEC Card [7:1868]


Has any one got a cisco router talking to a Ravlin IPSEC Card   Running
IPSEC ?

Charles

CCDP,CCNP+Voice, MCSE+I
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=2086&t=1868
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: FECN's and Dropped Packets... [7:110]

2001-04-10 Thread Matt Street

How long ago where the counters cleared on the router.  27 dropped packets
would not be a concern over a large period of time.  Same goes for the
FECN's.  Tell us when the stats where last cleared.

Matt Street
Network Engineer
USPS-Network Integration and Support
888-877-7662 ext 3798
pager 1800pagemci pin#3850330

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Rizzo Damian
Sent: Tuesday, April 10, 2001 4:59 PM
To: [EMAIL PROTECTED]
Subject: FECN's and Dropped Packets... [7:110]


Hi all...When I do a  "show frame-relay pvc" on our Internet Router, the
following statistics bother me;

  in FECN pkts 12974
  dropped pkts 27


We have recently been experiencing some noticeable slow downs on our
Internet connection, do these statistics prove that we have a problem
somewhere, or should I not be so concerned with these?  Thanks!



-Rizzo
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=112&t=110
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: linux on a 2500 ? Was: Programming under IOS

2001-04-05 Thread Matt Wehland

Well I've watched this thread for a couple of days and hoped someone else
would find the right answer (I didn't feel like digging).  I knew I had
seen something about this on my local Linux user group list several months
ago.  Unfortunately I couldn't find it in my mail archives, bookmarks,
general web searches or elsewhere.  After asking my local LUG for help and
then some more searching, here is the link to the uclinux-cisco project
(uclinux is a project for running linux on embedded system, uclinux-cisco
is a port to the cisco platform, 2500 series mostly)
There is source (~56MG) and several percompiled binaries.
   http://www.mcvax.org/~koen/uClinux-cisco2500/
Neat idea, and I do want to play with some of the precompiles kernels, but
I really have to ask myself, WHY?

What is the problem being solved by running linux on such an expensive
(for what you get) platform?

Any ideas, the web site seemed lacking in this kind of info.

Oh well, some of the most enjoyable things are done just for the hell of
it.

Matt Wehland
[EMAIL PROTECTED]
MCSE CCNA
_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Better do those V-labs while you can

2001-03-02 Thread Matt Holbert

I heard a while back they decided to do training only (no more network
services). Any idea who they cut? Programmers or networkers?

"Mask Of Zorro" wrote in message ...
>It was a bloodbath over at Metntor Technologies this morning - another big
>RIF. Better do those V-labs while they are still available... looks like it
>won't be long.
>
>
>Z
>_
>Get your FREE download of MSN Explorer at http://explorer.msn.com
>
>_
>FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
>Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
>


_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Trouble copy flash to TFTP, source file not found (Learn to type stupid)

2001-03-01 Thread Matt Wehland

< I am still sending this message as it may help someone else sometime >
Hello,
I am having trouble copying the IOS from my 2501 to my TFTP server (Cisco's 
NT server).  The TFTP server is up and working, I can copy configs in both 
directions.  When I try to copy the flash from the 2501 to the tftp server, 
I enter in the source file name, and then either accept the same name on 
the TFTP server or change it (changed in the following example).

I should be able to copy from the flash no matter what, right?

<--- Opps  --->
Just found my own answer, I think. I just copied the file name from a show 
ver (should work from anywhere the file name is displayed), into the 
clipboard and then 'pasted to host' from hyperterminal.
Worked just fine.
I wonder what I was mistyping. Oh just found it, I was typing a one instead 
of an 'L' here igs-ir-l
When I pasted the commands into my email client i could see the difference 
between the L and one, in Hyperterminal I couldn't tell the difference (I 
just checked again, whatever font is used in Hyperterminal the little 'L' 
and the 'one' are exactly the same, D*MN them)

Oh well
Moral of the story, Watch your typing, your fonts, and copy filenames if 
needed.

Matt Wehland

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Int E0 trouble shooting

2001-02-24 Thread Matt Wehland

Hello,
In my last message 'Thanks for the Archives' I mentioned that I had found 
the answer to my E0 'line protocol down' problem.  Well I lied, although 
turning off keepalive with the command 'no keepalive' under the E0 
interface gives the 'line protocol up' message, the interface isn't really 
working, seems no keepalive is good if you don't have anything to plug the 
router into.  I had the AUI transceiver connected to my no name 10/100 
switch.  The tranceiver (LanArt)was showing link down (1 blink).
I decided to plug it into my 1924 switch and it works fine.
Made up a crossover cable and connected the 1924 to the no-name 10/100 and 
it works fine, also.  I can connect from either the 10/100 uplink (25-26) 
or the regular 10MG ports (1-24)

Why will the 1924 talk to the no name, but the 2501 won't?

Is it possible something with the transceiver (I guess I could try the the 
same transceiver on the AUI port on the 1924 later)?

Some other misc. questions

I made up an ethernet loopback plug (RJ-45 with pins 1-3, 2-6) and plugged 
it into the transceiver on the 2501, still couldn't get the line 
up.  Unplug the transceiver and plug it back in (resetting it) and it 
works, line protocol up.

AUI transceiver loopback
I read about this beast in the archives, anyone know of a pinout?
Can it be used in place of a transceiver and a ethernet loopback?

Thanks,

Matt Wehland

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Thanks for the Archives (was to be-E0 line protocol down)

2001-02-23 Thread Matt Wehland

Thank you for the archives.

I was just playing with my new 2501 and was having a problem with the line 
protocol being down.  Looked through my books, looked on Cisco's site, 
couldn't find the answer (I'm sure it's on Cisco's site I just couldn't 
find it).
Wrote a message asking for help, but before sending, I remembered the 
archives.  Can't ask for help without trying there, can I?
Searched on 'line protocol down' and found my answer in about the fourth 
message I viewed.  'no keepalives'. Doh!

So this message is just a thank you and a reminder to check the archives 
before posting for help, the answer may already be in there.

Matt Wehland

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



HOWTO: Make your own Cisco console cable (RJ-45 to DB-9/DB-25)

2001-02-20 Thread Matt Wehland
n inch, making sure that the conductors are 
twisted enough to fit into the solder cup.
10b.  Heat the cup with the iron and insert wire(s).
10c.  Repeat until done.
DB-9 color code
  1 Org
  2 W/G
  3 Grn
  4 W/Brn
  5 Blu and W/Blu
  6 N/A
  7 Brn
  8 W/O
  9 N/A

11.  Check cable: another visible check, then plug it in and see if it 
works
11a.  If the cable works, put the hood on (if you have one)
11b.  Uniquely label the cable, both ends.  It may not seem like a big 
deal now, but it sure is nice when you have several routers terminating in 
the same place to be able to identify which cable goes to each 
device.  Even if your label is only a serial number such  as 1001, 1002, 
etc. you will be able to trouble shoot cabling problems without resorting 
to the old, tug the cable and see what moves routine (I've done enough of 
that in my life).
12.  Enjoy :-)

Hopefully I will get this on my web site soon.
I hope this helps somebody, if there are any major problems, corrections or 
advice please let me know-
Matt Wehland
[EMAIL PROTECTED]











   

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCIE and 2500 series issue

2001-02-17 Thread Matt Wehland

At 10:43 AM 2/17/01 -0500, you wrote:
>All,
>
>I have 2 guys at work that have passed the ccie written and are going to
>take the practical at the end of this month. I have 3 2500 series at home 2
>2501 and a 2503 along with a cisco 804. I have a chance to buy 3 more 2500
>at a very very good price,

Well if that price is very, very good, buy them, use them, and then sell 
for a profit.  You may find that they work just fine, and if the price is 
right <$600us, then you should be able to make some $ off of them to buy 
bigger toys.

Matt Wehland

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cisco Lab Tax Write Off

2001-02-15 Thread Matt Wehland

At 08:12 PM 2/14/01 -0500, you wrote:
>Are router's/switche's/isdn simulator's purchased for the home lab
>tax deductible.  Also, are the ciscopress textbook's tax deductible
>expense.
>
>Is anyone else claiming these on the Federal Taxes?
>
>TIA

Even if I can write them off, I wouldn't bother.  I plan on selling off 
most of my equipment in the future, so all I'm keeping track of is initial 
cost, upgrades, and them price I get for them, so I don't get taxed on the 
'Income' when I sell them.  And since I don't see the equipment 
depreciating much while I own it (even for a year) I should be fine.  If I 
were to write it off then I am stuck with the equipment.  Even if I keep 
going for more Cisco cert, how many 2501/02's do I need?  I would rather 
sell off some of the lower end equipment and buy higher end gear in the future.
Now if I were starting a school/online rack/router rental, and planned on 
keeping the gear forever then I would look into write off's.

How many people have keep the same equipment for more than a year?

Seems like a lot of the routers (from student labs) I look at are being 
sold to finance newer labs, or people are just getting out of their labs 
altogether.

Matt Wehland

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Broadcast LMI Keepalives?

2001-02-09 Thread Matt Street

As for your CKT issues the router is dropping LMI packets.  From just the
output given below it looks like the local bell probably has a transmit
issue from your site to the end carrier (ie WCOM).  I suggest opening a tkt
with your frame-relay provider to resolve the issue.  As for your broadcast
question I do not know the answer of the top of my head.  Could luck with
your Frame-Relay provider.

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
John Neiberger
Sent: Friday, February 09, 2001 11:57 AM
To: [EMAIL PROTECTED]
Subject: Broadcast LMI Keepalives?


We have a circuit that is having pretty severe problems.  No errors are
being seen at the router serial interface, but we are experiencing about 50%
packet loss (500 byte packets) incoming.  I've just noticed something else
that is odd.  For each incoming LMI response, the number of received
broadcasts increments.

Serial0 is up, line protocol is up
  Hardware is HD64570
  Description: 24.YBGA.xx
  MTU 1500 bytes, BW 1544 Kbit, DLY 2 usec, rely 255/255, load 2/255
  Encapsulation FRAME-RELAY, loopback not set, keepalive set (10 sec)
  LMI enq sent  235, LMI stat recvd 218, LMI upd recvd 0, DTE LMI up
  LMI enq recvd 0, LMI stat sent  0, LMI upd sent  0
  LMI DLCI 1023  LMI type is CISCO  frame relay DTE
  Broadcast queue 0/64, broadcasts sent/dropped 1135/0, interface broadcasts
1018
  Last input 00:00:00, output 00:00:00, output hang never
  Last clearing of "show interface" counters 00:39:18
  Input queue: 1/75/0 (size/max/drops); Total output drops: 0
  Queueing strategy: weighted fair
  Output queue: 0/1000/64/0 (size/max total/threshold/drops)
 Conversations  0/23/256 (active/max active/max total)
 Reserved Conversations 0/0 (allocated/max allocated)
  5 minute input rate 17000 bits/sec, 7 packets/sec
  5 minute output rate 14000 bits/sec, 9 packets/sec
 20505 packets input, 5242248 bytes, 0 no buffer
 Received 218 broadcasts, 0 runts, 0 giants, 0 throttles
 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort
 26000 packets output, 5145390 bytes, 0 underruns
 0 output errors, 0 collisions, 0 interface resets
   0 output buffer failures, 0 output buffers swapped out
0 carrier transitions
 DCD=up  DSR=up  DTR=up  RTS=up  CTS=up

Because some keepalives are being missed, does that cause the frame switch
to change the way it sends them?  I couldn't find any other example of LMI
keepalives causing the broadcast counters to increase, and I checked this on
interfaces using both Cisco and ANSI LMI.

any ideas?

thanks,
John


Find the best deals on the web at AltaVista Shopping!
http://www.shopping.altavista.com

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Official CIPT coursebook

2001-01-30 Thread Matt Holbert



Anyone willing to part with the official CIPT course book? Email if
interested


_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Curious Quirk.

2000-12-19 Thread Matt Holmquist

Hello all,

I ran across something interesting and wondered if any of you would know
the reason for this. I recently set up a ring of routers whose gateway
router was also a gateway router for another network. Both networks were
connected via ethernet to this gateway router. One of these networks is
connected as a secondary subnet on the primary fast-ethernet interface.
When setting up eigrp, it would only broadcast updates to the network that
was the primary subnet on that fast-ethernet interface.

Can anyone explain to me why this happened? Is this something just unique
to eigrp, or all routing protocols? I'm curious and puzzled. :)

Thanks,

Matthew M. Holmquist, CCNA
Consulting Engineer
Info Avenue Internet Services
803-802-4600
http://www.infoave.net
[EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



5509 cam table/HA Firewall problem

2000-10-24 Thread Matt Morrow


I have been having a problem with our HA Checkpoint Firewall-1 solution for
about 3 weeks now, and finally narrowed what the problem is. First a little
background...

Each Firewall has the same set of IP address/Mac addresses. One Firewall is
active, while the other is in standby mode.  Whenever there is a failover,
manual or otherwise, the active firewall's interfaces go down, while the
other firewall's interfaces come up. We are using (2) 5509's as our Ethernet
switches, that are connected via a LANE module that goes up to a pair of
8540 ATM switches connected by an OC12 trunk.

With each correspinding interface on each Firewall plugged into the same
switch, the failover is totally transparent.  As soon as the failover
happens, the switch updates it's CAM table by removing the old port
assignment, and adding the new one.  The issue is that we are trying to have
FWA plug into 5509A exclusively and FWB plug into 5509B exclusively.  When
we failover in that scenario, the new switch updates it's CAM entry, but the
old switch never removes his.  We have to wait for the "cam agingtime" to
expire before that entry will be cleared out, and can start passing traffic
again.

On a subnet with 500 PC's hooked up, are there any issues with setting the
agingtime down to 15 seconds, instead of the 5 minute default?  Is there a
cleaner solution to my problem?

Any help or insight would be greatly appreciated.

Sincerely,
Matt Morrow

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: DDS encapsulation in Australia

2000-10-17 Thread Matt Martin



    I would also add that it is only a physical media. Think
of it as a T-1, T-3, sonet etc.. The encapsulation has no bearing on the
physical media or farming in this
case. DDS is a older way of delivering a 56k circuit to ensure 1's
density on the
T-1 by inserting a 1 in every 8th bit of that particular DS0.
 
 
Jesmond Psaila wrote:

  You
can use both , you may even use frame over dds if you want, most of the
times it is presented to you in X.21, so higher layer encapsulation should
not matter, as long as both ends match.

-Original
Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED]]On Behalf Of John Covey
Sent: Tuesday, October 17,
2000 2:16 PM
To: [EMAIL PROTECTED]
Subject: Re: DDS encapsulation
in Australia
 
I'd say, more than likely ppp
""M.
A."" <[EMAIL PROTECTED]>
wrote in message 001201c0380f$e3689240$[EMAIL PROTECTED]">news:001201c0380f$e3689240$[EMAIL PROTECTED]...Hi
gang, This is a question
related to the DDS (I think it stands for Digital Data Service) WAN links
provided by Telstra in Australia.  What's the encapsulation to be
used on DDS links?  Is it PPP or HDLC? Also,
does anyone have an example configuration for DDS under serial interfaces? Much
appreciate any help! Martin







RE: You have received a George W. Bush Ecard from Matt Lange

2000-09-12 Thread Matt C. Lange

Again I apologize about the message, I was trying to be harmless about this.
Sorry did not think it would offend anyone.

Matt

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Stanfield Hilman B(Brad) CONT NSSG
Sent: Tuesday, September 12, 2000 11:43 AM
To: '[EMAIL PROTECTED]'; [EMAIL PROTECTED]
Subject: RE: You have received a George W. Bush Ecard from Matt Lange


Matt!

Keep your politics OUT of my mailbox AND off of this maillist!!!

Paul,

This rates right up there with the ericsson e-mail fraud message.
Can't something be done about these people?


Brad Stanfield
Network/Integration Engineer
[EMAIL PROTECTED]
Government Micro Resources
 Network Operations Control Center
Norfolk Naval Shipyard
Bldg 33 NAVSEA NCOE
757-393-9526
1-800-626-6622




-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
Sent: Monday, September 11, 2000 6:37 PM
To: [EMAIL PROTECTED]
Subject: You have received a George W. Bush Ecard from Matt Lange


[EMAIL PROTECTED], you have received a eCard from Matt Lange at e-mail
address [EMAIL PROTECTED]
To pick up your virtual postcard, go to the George W. Bush website at:
http://www.georgewbush.com/getpostcard.asp
Copy and paste the following postcard number: 320232569

**NOTE: New CCNA/CCDA List has been formed. For more information go to
http://www.groupstudy.com/list/Associates.html
_
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

**NOTE: New CCNA/CCDA List has been formed. For more information go to
http://www.groupstudy.com/list/Associates.html
_
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

**NOTE: New CCNA/CCDA List has been formed. For more information go to
http://www.groupstudy.com/list/Associates.html
_
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Router models?

2000-09-12 Thread Matt Wehland

At 08:22 PM 9/11/00 -0500, Yee, Jason wrote:
>thank you for the reply I will, any books or references I can use to
>memorise all these info

On book I like (although I really haven't read all of it) is
Cisco Router Handbook
George C Sackett
McGraw-Hill
ISBN 0-07-058098-7

I bought this as a reference manual more than a study aid for my CCNA.  The 
first part of the book goes over the Cisco product line with pictures and 
diagrams so you get info on what the different models are and get so see 
what they look like.
The next part is basic router stuff, configuring, loading IOS etc.
The last part goes over configuring routing protocols, RIP, OSPF, IEGRP, BGP.

Matt Wehland

**NOTE: New CCNA/CCDA List has been formed. For more information go to
http://www.groupstudy.com/list/Associates.html
_
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: You have received a George W. Bush Ecard from Matt Lange

2000-09-11 Thread Matt C. Lange

If you like socialism vote for Al Gore!

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Erik
Sent: Tuesday, September 12, 2000 12:47 AM
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: Re: You have received a George W. Bush Ecard from Matt Lange


Mr. Matt C. Lange, This is spam, and a very offensive one. before you come
here trying to learn networking, I suggest you learn basic netiquette,
please refer to: http://www.ietf.org/rfc/rfc1855.txt?number=1855
here is another one for you;
http://www.ietf.org/rfc/rfc1594.txt?number=1594

-Erik
- Original Message -
From: <[EMAIL PROTECTED]>
To: <[EMAIL PROTECTED]>
Sent: Monday, September 11, 2000 6:36 PM
Subject: You have received a George W. Bush Ecard from Matt Lange


| [EMAIL PROTECTED], you have received a eCard from Matt Lange at e-mail
address [EMAIL PROTECTED]
| To pick up your virtual postcard, go to the George W. Bush website at:
| www.donkeyshow.com



**NOTE: New CCNA/CCDA List has been formed. For more information go to
http://www.groupstudy.com/list/Associates.html
_
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

**NOTE: New CCNA/CCDA List has been formed. For more information go to
http://www.groupstudy.com/list/Associates.html
_
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: The H1-B visa program is a fraud.

2000-09-11 Thread Matt C. Lange

Lets kill them all!  hehehe

-Original Message-
From: William E Gragido [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, September 12, 2000 1:39 AM
To: [EMAIL PROTECTED]; Matt C. Lange; Sam Adams; [EMAIL PROTECTED];
[EMAIL PROTECTED]
Subject: RE: The H1-B visa program is a fraud.


I belive that this topic has a history of being regurgitated on this list.
H1B visas do one thing and that is weaken the economy of the nation by
allowing for a flood of underpriced competition into the market.  Its
unfortunate and although it may seem an abrupt attitude to adopt, I for one
do not believe that by believing this to be the truth makes a person a
xenophobe.

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
> [EMAIL PROTECTED]
> Sent: Monday, September 11, 2000 6:08 PM
> To: Matt C. Lange; Sam Adams; 'Dick Silva'; [EMAIL PROTECTED];
> [EMAIL PROTECTED]
> Subject: RE: The H1-B visa program is a fraud.
>
>
> /
> And while they have your job, ie, you're not working, your family
> is hungry,
> what is your point?
> \
>
>
>
> Quoting "Matt C. Lange" <[EMAIL PROTECTED]>:
>
> > Hey just remember they are willing to take the pay cut to get
> citizenship.
> > Also, 50,000 grand is like 1 millions over there so I have been
> told by a
> > Consultant from India.   They come here take away american jobs
> and  make
> > there nest egg and go back as kings.
> > Just my two cents, Oh and I am not racist I would feel the same
> if it were
> > someone form Germany as well.
> >
> >
> >
> > -Original Message-
> > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
> > Sam Adams
> > Sent: Monday, September 11, 2000 8:12 PM
> > To: 'Dick Silva'; [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > Subject: RE: The H1-B visa program is a fraud.
> >
> >
> > I don't know what controls are in place to enforce the law.  But I would
> > think that someone tooting his horn about cheap foreign workers
> is asking
> > for trouble.  Perhaps, you should show the article to the INS or the
> > appropriate agency to put these guys out of business.  Not only are they
> > exploiting the system and the American people but exploiting the foreign
> > workers as well.
> >
> > -Original Message-
> > From: Dick Silva [mailto:[EMAIL PROTECTED]]
> > Sent: Monday, September 11, 2000 12:43 PM
> > To: Sam Adams; [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > Subject: Re: The H1-B visa program is a fraud.
> >
> >
> > /
> > H-1Bs are not paid at market rate even though it is federal law.
> >
> > In Clearwater, FL there is a company that recruits only H-1Bs from other
> > countries.
> > One of their salesman was being interviewed by the local newspaper, St
> > Petersburg Times, and he was naming off the advantages of hiring foreign
> > workers, and I quote, "We just placed one man in Boston for
> $55k/yr if it
> > had been an American they would have had to pay $85K/yr".
> > I keep wondering about that level playing field George Bush Sr
> was always
> > talking about.
> >
> > Like the man said...The H-1B program is a fraud.
> >
> > -Original Message-
> > From: Sam Adams <[EMAIL PROTECTED]>
> > To: [EMAIL PROTECTED] <[EMAIL PROTECTED]>; [EMAIL PROTECTED]
> > <[EMAIL PROTECTED]>
> > Date: Monday, September 11, 2000 3:29 PM
> > Subject: RE: The H1-B visa program is a fraud.
> >
> >
> > >I thought H1-B were suppose to be paid at market rate?
> > >
> > >BTW, it takes about 3 months to transfer a H1-B so if the
> foreign workers
> > do
> > >not like their jobs then they have no recourse but work until it is
> > >transferred.  Or not work until it is transferred.  They don't have it
> > easy
> > >either.
> > >
> > >IMHO, it seems that the only winners are the companies who hire them.
> > >
> > >
> > >-Original Message-
> > >From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
> > >Dick Silva
> > >Sent: Monday, September 11, 2000 9:58 AM
> > >To: cryptobyte; ElephantChild; [EMAIL PROTECTED];
> [EMAIL PROTECTED]
> > >Subject: Re: The H1-B visa program is a fraud.
> > >
> > >
> > >/
> > >A thought that occurred to me is.how do all the H-1Bs get
> experience
> > >when supposedly the U.S. is so much more technically advanced than most
> > >other countries?
> > >
> > >Maybe U.S.

RE: The H1-B visa program is a fraud.

2000-09-11 Thread Matt C. Lange

Hey just remember they are willing to take the pay cut to get citizenship.
Also, 50,000 grand is like 1 millions over there so I have been told by a
Consultant from India.   They come here take away american jobs and  make
there nest egg and go back as kings.
Just my two cents, Oh and I am not racist I would feel the same if it were
someone form Germany as well.



-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Sam Adams
Sent: Monday, September 11, 2000 8:12 PM
To: 'Dick Silva'; [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: RE: The H1-B visa program is a fraud.


I don't know what controls are in place to enforce the law.  But I would
think that someone tooting his horn about cheap foreign workers is asking
for trouble.  Perhaps, you should show the article to the INS or the
appropriate agency to put these guys out of business.  Not only are they
exploiting the system and the American people but exploiting the foreign
workers as well.

-Original Message-
From: Dick Silva [mailto:[EMAIL PROTECTED]]
Sent: Monday, September 11, 2000 12:43 PM
To: Sam Adams; [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: Re: The H1-B visa program is a fraud.


/
H-1Bs are not paid at market rate even though it is federal law.

In Clearwater, FL there is a company that recruits only H-1Bs from other
countries.
One of their salesman was being interviewed by the local newspaper, St
Petersburg Times, and he was naming off the advantages of hiring foreign
workers, and I quote, "We just placed one man in Boston for $55k/yr if it
had been an American they would have had to pay $85K/yr".
I keep wondering about that level playing field George Bush Sr was always
talking about.

Like the man said...The H-1B program is a fraud.

-Original Message-
From: Sam Adams <[EMAIL PROTECTED]>
To: [EMAIL PROTECTED] <[EMAIL PROTECTED]>; [EMAIL PROTECTED]
<[EMAIL PROTECTED]>
Date: Monday, September 11, 2000 3:29 PM
Subject: RE: The H1-B visa program is a fraud.


>I thought H1-B were suppose to be paid at market rate?
>
>BTW, it takes about 3 months to transfer a H1-B so if the foreign workers
do
>not like their jobs then they have no recourse but work until it is
>transferred.  Or not work until it is transferred.  They don't have it easy
>either.
>
>IMHO, it seems that the only winners are the companies who hire them.
>
>
>-Original Message-
>From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
>Dick Silva
>Sent: Monday, September 11, 2000 9:58 AM
>To: cryptobyte; ElephantChild; [EMAIL PROTECTED]; [EMAIL PROTECTED]
>Subject: Re: The H1-B visa program is a fraud.
>
>
>/
>A thought that occurred to me is.how do all the H-1Bs get experience
>when supposedly the U.S. is so much more technically advanced than most
>other countries?
>
>Maybe U.S. corporations do not require H-1Bs to have experience because
they
>work for so much less.
>
>As I said,  just a thought.
>\
>-Original Message-
>From: cryptobyte <[EMAIL PROTECTED]>
>To: ElephantChild <[EMAIL PROTECTED]>; [EMAIL PROTECTED]
><[EMAIL PROTECTED]>; [EMAIL PROTECTED] <[EMAIL PROTECTED]>
>Date: Monday, September 11, 2000 11:28 AM
>Subject: Re: The H1-B visa program is a fraud.
>
>
>>>certifications, not jobs.>
>>
>>ElephantChild, I say it has alot to do " ... about getting certifications,
>>..."  If you have a Certification, but no experience, what is it called or
>>what is the state, status of your certification - you are a PAPER .
>>At least, that is what is advocated by some; therefore, at least, in part,
>>this is applicable whether you are a CCNA, CCDA, CCxx, CCIE, xNx, MSxx,
>>etc. [Extended to Novell, Micrsoft, ...]
>>
>>At least with Cisco devices, at the lower end, it is hard for people to
>>beg, borrow or steal an entry level position.  And then, to paraphrase,
>>they must pay there dues and proceed with their career.  At the upper end,
>>sacrifice and hard work, money, prestige, status and on going work to stay
>>current.
>>
>>In that it follows the path of least resistance, Capitalism starts to
>>acquire the properties of electricity.  Capitalism is a predicated on the
>>ability to produce and sell a product [or service] at the least expense
>>for the highest margin possible.  If your type of services are needed and
>>you are a bono fide, card carrying CCxx, MSxx, xNx, you have expectations
>>about market value, time in industry, what you know, who you know, how
>>much you know, etc.  To repeat, you have expectations of what you are
>>worth.
>>
>>What happens, since you want x money and you can't get any work because
>>you are just a PAPER  at your new expertise level because joe/jane doe
>>will do the work for a fraction of what you have come to expect, probably
>>deserve and the market used to bear.  [Union shops come to mind.]
>>
>>Suddenly, H1B and Certification are entwined - up to your and my neck.
>>Then, to take it a step further, what happens when an H1B starts under
>>cutting another H1

Chicago area study group

2000-09-07 Thread Matt W

Hello,
My name is Matt Wehland and I was wondering who else is in the Chicago 
(Illinois) area and studying for CCNA,CCNP.  I am currently working on my 
CCNA, but taking my time and over studying, getting ready to work on my 
CCNP.  Currently it is just a friend and my self, we worked on our MCSE's 
together (I was a 3.12 CNE years ago, also).
We have been studying with 1 2501, books, on-line simulators (free ones so 
far), and now Transcender for CCNA (useful when used as another tool, not a 
cheating aid).

Looking for anyone else in the Chicago Metro area getting together for a 
study group.  I live in Monee, my friend Brian lives in Glencoe.
Anyone know of any groups that currently meet?
If not, let me know if you just want to get together informally for 
labs/study sessions.


(O/T)  Will also help with MCSE studying, and I am interested in learning 
more Linux.

Matt Wehland (MCSE)
[EMAIL PROTECTED]

___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



hp internet advisor

2000-09-04 Thread Matt Zeniou



Hiya everyone,
 
I need help with finding info on 
"Hewlett-Packard's internet advisor" model  j2522a.  I've recently aquired one 
and know nothing about them. I've searched hp's site but found little info 
there.
 
thanks all
 
Matthew Zeniou CCNA


Re: One Objective in Routing 2.0

2000-08-29 Thread Matt Gravlin

Taken literally fields in the routing mean exactly that, fields in a routing
table. So if you issue a show ip route, there are several fields. Listed
below are those fields:

1. How the route was learned
2. Destination logical network or subnet
3. Administrative distance
4. Metric value (reachability factor)
5. Next hop logical address
6. Age of entry
7. Interface through which the route was learned and which packet will
leave\

Matt

"yangluobin" <[EMAIL PROTECTED]> wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Dear group,
>
> By looking at the objectives of Routing 2.0, I found the following
> topic:
> Describe the use of the fields in a routing table.
> Can anybody tell me about what is called the fields in a routing
> table and how to use these fields?
>
> Thanks in advance
> Luobin
>
>
>
> ___
> UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
> FAQ, list archives, and subscription info: http://www.groupstudy.com
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
>


___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: ip classless ?

2000-08-26 Thread Matt Gravlin

The ip classless command is used when setting up default routes. Cisco
routers (classful by default) expect a subnet mask when entering your static
ip route commands, so when you are setting up a default route, you must
specify ip classless, since no remote subnets will be in its routing table
for default routes.

Matt

""Yee, Jason"" <[EMAIL PROTECTED]> wrote in message
859B90209E2FD311BE5600902751445D2E7CF4@LYNX">news:859B90209E2FD311BE5600902751445D2E7CF4@LYNX...
> hi ,
>
> Anyone knows why when we use RIP or IGRP routing protocols and we have a
> default network command entered , we need to include ip classless?
>
> Any form of input will be greatly appreciated
>
>
> thanks
>
>
> Jason
>
> ___
> UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
> FAQ, list archives, and subscription info: http://www.groupstudy.com
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
> ---


___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: If u had to take one class

2000-08-06 Thread Matt C. Lange


WWW.mentortech.com and take the ECP course  taught by Andrew Bruce
Caslow..  Basically they give you very har labs and you build them.
They will let you know where you are weak.

Or I would suggest a BGP course and know your route maps cold!!

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Dennis E. Bates
Sent: Sunday, August 06, 2000 8:33 PM
To: [EMAIL PROTECTED]
Subject: If u had to take one class


Hi Group !!!

Just a question.  If your employer had agreed to pay for one and only one
class to help you prepare for your CCIE lab exam (you have already passed
your written).  What class would you take and where ?  I would like to use
the money to buy equipment, but unfortunatly, thats not my call.  I'm
thinking CATM or CVOICE since, i don't get much of a chance to put my hands
on ATM or Voip gear.  But then again maybe I should reinforce the meat and
potatoes topics like advanced OSPF or BGP ? Any suggestions as to the best
use of the one class?

Thanks,

Dennis


___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



BCMSN test

2000-08-05 Thread Matt C. Lange


I just took the BCMSN test and passed with an 825

Just to let you know there is not any ATM on this.  But have down cold all
aspects of Trunking.

Matt C. Lange
CCNP CCDP MCSE CSE ESE

___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



off subject

2000-08-01 Thread Matt C. Lange

Hello group,
I have been asking arround and it seems to me that UNIX admins are way more
desirable than router admins. I guess from what I have been hearing is that
if you are solid in unix you are pretty much set for life.  This is just
what I hear in the chicago area. Mainly HP-UX

Matt


___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Online test.

2000-07-31 Thread Matt C. Lange



Only the last 23 or least significant bits are transformed to the mac.

Corect answer is  01-00-5e-40-ff-2d

Lets look at how I got 40 out of the 192 part of the
first listing.
192 in binary is 1100
 ^
This bit does not migrate to the MAC it is always  
0(that is not used)
This is why it is possible to have 32
different IP Multicast address with the same MAC.( Don't worry though
Cisco says there won't be any harm in this).

I hope this helps

Matt C. Lange
CCNP CCDP MCSE CS



I didn't fair very well on BCMSN. Two questions that I though I got right
but were marked wrong were on Multicast IP address:

224.192.255.45 = My answer was 01-00-5E-C0-FF-2D and
224.163.163.45 = My answer was 01-00-5E-A3-A3-2D

Both were marked wrong on the test. What did I do wrong?
Regards,
Scott

David Ristau wrote:

> Zoiks ! Wiped my butt, 24/52  Cisco Network Acad never prepared me for
> that one..
> thanks
>
> Dave
>
> henry wrote:
> >
> > Each exam you can use six times.
> > many qiz is real qiz!
> > I use is prepare CVOICE, 60% qizs is same.
> >
> > Henry Zheng
> > <[EMAIL PROTECTED]> wrote in message
> > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > Requires CCO id.
> > > http://www.cisco.com/cgi-bin/front.x/wwtraining/colt/ColtLogin.pl
> > >
> > > Anyone tried that?
> > > Ryan
> > >
> > >
> > > ___
> > > UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
> > > FAQ, list archives, and subscription info: http://www.groupstudy.com
> > > Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
> > > ---
> >
> > ___
> > UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
> > FAQ, list archives, and subscription info: http://www.groupstudy.com
> > Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
> > ---
>
> ___
> UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
> FAQ, list archives, and subscription info: http://www.groupstudy.com
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



  1   2   >