question [7:12456]

2001-07-16 Thread Christian Rautscher

Hi all,

i know that for the CCNP Exam
there was a unique Exam (Exam,Nr. 640403).

Can somebody tell me if this exam doens't 
exist anymore and give me some information
which exam i have to do, to get CCNP?

Thankyou all for your help.

Christian




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12456&t=12456
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



C2948G-L3 support for IP policy [7:12458]

2001-07-16 Thread Engelhard M. Labiro

Hi group,
I have two routers R1 and R2 in front of C2948-L3 switch
and a Lotus Notes server and several servers behind 
the C2948 switch. I want to control the traffic coming to
and going out from the Lotus Notes server goes through
R2 only and the others traffic should goes to router R1.
Does it possible to use  route-map command at the Catalyst
2948 to control the traffic as the above scenario ?
Appreciate for any help.

EML




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12458&t=12458
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: measuring VPN speed [7:12419]

2001-07-16 Thread shella kevin

tunnel depend upon the performance of the internet. Its hard to predict. 
mmhhh ! may be any software on your machine you can install and try to 
calculate ? :-)) let me know too if you find one !


>From: "Farhan Ahmed" 
>Reply-To: "Farhan Ahmed" 
>To: [EMAIL PROTECTED]
>Subject: measuring VPN speed [7:12419]
>Date: Sun, 15 Jul 2001 13:48:11 -0400
>
>lets say i have 64k connection on both ends
>if i built up a vpn what will be the speed of the tunnel
>
>any thoughts?
_
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12459&t=12419
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: question [7:12456]

2001-07-16 Thread Remmert Veen

Hey Christian,

This is what the Cisco website says:

For CCNP you have to take:
- 640-503 Routing (BSCN)
- 640-504 Switching (BCMSN)
- 640-505 Remote Access (BCRAN)
- 640-506 Support (CIT)

You can also combine the first three into a single exam (usefull for cust
reduction!):
- 640-509 Foundations

So to answer your question: there are at least 2 exams you have to take to
be a CCNP (640-506 + 640-509). However, I'd recommend the 'long' way of
taking each exam separately. Doing the 3-in-1 is a tough one!

Hope this helps.

Rgds,
Remmert


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12460&t=12456
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



connecting two routers back to back using BRI0 [7:12461]

2001-07-16 Thread sami natour

Hi all ,
Can I connect two routers back to back using BRI0 S/T
what is the required pin assignment for the cable ?
what is the required configuration ?

Thanks 
sami ,

__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12461&t=12461
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



2926 or 2901? [7:12462]

2001-07-16 Thread Stephen Flint

Hi,

Would someone respond to my question regarding the CAT 2926 or 2901?  Do

these routers really have the same set commands as the CAT 5000s?  And
if so what do these routers usually sell for?

Thanks,
Steve




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12462&t=12462
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



IPSec problem [7:12463]

2001-07-16 Thread Vyacheslav Luschinsky

I have a very strange problem with IPSec, namely with ISAKMP. When it is
time for next key exchange between piers (one in an hour) it goes well
without any problem but all IPSec traffic is droped with messages like
CRYPTO_ENGINE: packets dropped: State = 0 conn_id=2000, pak=81749C44 
when I do "clear crypto sa" it starts working till next rekeying.
Why could it happen?


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12463&t=12463
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: question [7:12456]

2001-07-16 Thread Moh'd, Quayoom

Christian 
The exam 640-403 (ACRC) is replaced by 640-503 Routing (BSCN)
Mohammed
> -Original Message-
> From: Christian Rautscher [SMTP:[EMAIL PROTECTED]]
> Sent: Mon, July 16, 2001 11:06 AM
> To:   [EMAIL PROTECTED]
> Subject:  question [7:12456]
> 
> Hi all,
> 
> i know that for the CCNP Exam
> there was a unique Exam (Exam,Nr. 640403).
> 
> Can somebody tell me if this exam doens't 
> exist anymore and give me some information
> which exam i have to do, to get CCNP?
> 
> Thankyou all for your help.
> 
> Christian




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12464&t=12456
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Book Donation [7:12465]

2001-07-16 Thread Syed Ali

Hello
I am beginning to start my preperation for CCNA.So
please do guide me about something relating to the
subject.If u have some material online like good
dumps , or u wanna donate soom books please do mail me
back , which would certainly be helpful in my
preperation for the exam. If u have some suggestion
please do drop in a mail. 
Its my second email
Thanks 
Shan
 
 


> Do You Yahoo!?
> Get your free @yahoo.co.uk address at
> http://mail.yahoo.co.uk
> or your free @yahoo.ie address at
> http://mail.yahoo.ie
[EMAIL PROTECTED] 


Do You Yahoo!?
Get your free @yahoo.co.uk address at http://mail.yahoo.co.uk
or your free @yahoo.ie address at http://mail.yahoo.ie




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12465&t=12465
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco vs. V.92 [7:12466]

2001-07-16 Thread Mehmet ILGAZ

Does anybody upgrade AS5300 or 58000 to support v.92 modem protocol?
Which plattforms support v.92?
Thanks




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12466&t=12466
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Catalyst 3920 token ring switch [7:12467]

2001-07-16 Thread Ruen-Chze Loh

Hi,
Can anyone let me know the steps to configure the
Catalyst 3920 for IP management, so that the Catalyst
3920 can be managed from one of the token rings ? 

Thank-you.


__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12467&t=12467
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: IPSec problem [7:12463]

2001-07-16 Thread Farhan Ahmed

send me the exact error
debug

-Original Message-
From: Vyacheslav Luschinsky [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 3:06 PM
To: [EMAIL PROTECTED]
Subject: IPSec problem [7:12463]


I have a very strange problem with IPSec, namely with ISAKMP. When it is
time for next key exchange between piers (one in an hour) it goes well
without any problem but all IPSec traffic is droped with messages like
CRYPTO_ENGINE: packets dropped: State = 0 conn_id=2000, pak=81749C44 
when I do "clear crypto sa" it starts working till next rekeying.
Why could it happen?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12468&t=12463
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: IPSec problem [7:12463]

2001-07-16 Thread Farhan Ahmed

i would say if u wana overcome this problem in short time
make the tunnel again 

-Original Message-
From: Luschinsky Slava [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 3:54 PM
To: Farhan Ahmed
Subject: RE: IPSec problem [7:12463]


I try to establish tunnel between two routers. I send you two logs from
every router.  Second router first starts negotiation for new SA after
"clear cry sa" then after an hour it starts new key exchange and after that
first router begins to drop packets..


send me the output debug crypto engine 

-Original Message-
From: Vyacheslav Luschinsky [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 3:06 PM
To: [EMAIL PROTECTED]
Subject: IPSec problem [7:12463]


I have a very strange problem with IPSec, namely with ISAKMP. When it is
time for next key exchange between piers (one in an hour) it goes well
without any problem but all IPSec traffic is droped with messages like
CRYPTO_ENGINE: packets dropped: State = 0 conn_id=2000, pak=81749C44 
when I do "clear crypto sa" it starts working till next rekeying. Why could
it happen?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12469&t=12463
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: IPSec problem [7:12463]

2001-07-16 Thread Farhan Ahmed

show crypto cisco key-timeout 
After an encrypted communication session is established, it is valid for a
specific length of time. After this length of time, the session times out. A
new session must be negotiated, and a new DES (session) key must be
generated for encrypted communication to continue. Use this command to
change the time that an encrypted communication session will last before it
expires (times out): 


  
Loser#show crypto cisco key-timeout
Session keys will be re-negotiated every 30 minutes

Use these commands to determine the length of time before the DES keys are
renegotiated

i would say if u wana overcome this problem in short time
make the tunnel again 

-Original Message-
From: Luschinsky Slava [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 3:54 PM
To: Farhan Ahmed
Subject: RE: IPSec problem [7:12463]


I try to establish tunnel between two routers. I send you two logs from
every router.  Second router first starts negotiation for new SA after
"clear cry sa" then after an hour it starts new key exchange and after that
first router begins to drop packets..


send me the output debug crypto engine 

-Original Message-
From: Vyacheslav Luschinsky [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 3:06 PM
To: [EMAIL PROTECTED]
Subject: IPSec problem [7:12463]


I have a very strange problem with IPSec, namely with ISAKMP. When it is
time for next key exchange between piers (one in an hour) it goes well
without any problem but all IPSec traffic is droped with messages like
CRYPTO_ENGINE: packets dropped: State = 0 conn_id=2000, pak=81749C44 
when I do "clear crypto sa" it starts working till next rekeying. Why could
it happen?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12470&t=12463
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Alert: HTTP bug makes nearly all Cisco routers vulnerable [7:12471]

2001-07-16 Thread Oke Oyebanji

Hi Everybody,

This was a released from TechRepublic on Cisco routers vulnerablity early 
this morning, please do check it out and take necessary precaution. For 
details check:

 http://www.techrepublic.com/article.jhtml?id=r00220010716mco02.htm

Have a nice day.

Kind regards,
Banji.


_
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.

[GroupStudy.com removed an attachment of type application/msword which had a
name of Cisco Routers Bugs.doc]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12471&t=12471
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: dialer idle-timeout [7:12256]

2001-07-16 Thread Stuart Potts

Best practice for speed at which b channels come up is the following


dialer load-threshold 2 (dont use 1, there are a few issues, 2 = .78%)
load-interval 30 (defualt is 5 minutes, this is the a moveing weighted
average at which load is calculated)


also to bring up b channels v.fast configure

ppp timeout multilink link add 1

you can then configure dialer pools, and for each pool specify the maximum
number of b channels allowed per group.
ie

dialer pool-member 1 max-link 10
then

int dialer 2
dialer pool 1



regards

-Stuart.








-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Farhan Ahmed
Sent: Sunday, July 15, 2001 10:46 AM
To: [EMAIL PROTECTED]
Subject: RE: dialer idle-timeout [7:12256]


wrong dialer load threshold is for bringing up the second link
u can put maximum numb on idle time out or use fast idle command

-Original Message-
From: Vette Boy [mailto:[EMAIL PROTECTED]]
Sent: Sunday, July 15, 2001 8:18 PM
To: [EMAIL PROTECTED]
Subject: Re: dialer idle-timeout [7:12256]


Configue the dialer load threshold to 0 for the link
to be always up.

VB

--- "Michael L. Williams"
wrote:
> I would have to say that the idle-timer is for pure
> idle time. not just
> interesting traffic AFAIK interesting traffic is
> only used to initiaite
> the dial, but after that any traffic is enough to
> keep the link open..
> BUT (now that I've looked it up) I'M WRONG!
> Damn I hate when that
> happens.
>
> from Cisco's site:
>
> "Interesting packets are packets that pass the
> restrictions of the access
> lists. These packets either initiate a call (if one
> is not already in
> progress) or reset the idle timer if a call is in
> progress. Uninteresting
> packets are transmitted if the link is active, but
> dropped if the link is
> not active. Uninteresting packets do not initiate
> calls or reset the idle
> timer."
>
> Good call Charles..
>
> Mike W.
>
> "Charles Manafa"  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > Interesting traffic will bring up the link, and
> maintain it. Whilst the
> link
> > is up, any traffic can cross the link, but only
> interesting traffic can
> > reset the idle timer.
> >
> > CM
> >
> > > -Original Message-
> > > From: Burnham, Chris
> [mailto:[EMAIL PROTECTED]]
> > > Sent: 13 July 2001 11:39
> > > To: [EMAIL PROTECTED]
> > > Subject: dialer idle-timeout [7:12256]
> > >
> > >
> > > I am currently working throught the "Caslow ,
> Pavlichenko Cisco
> > > Certification Book" I have a query on page 163
> that you guy's
> > > and girl's
> > > maybe able to help me with.
> > >
> > > It states that the DDR connection is maintained
> as long as
> > > "interesting
> > > traffic" is transferred over the connection
> before the
> > > dialer-idle-timeout
> > > occurs.?
> > >
> > > Is this correct?? I was alway's under the
> impression that the
> > > interesting
> > > traffic only determined what brought up the link
> & once the
> > > link was up it
> > > would stay up regardless of traffic type
> crossing the ISDN link
> > >
> > > I would like to hear your opinions
> > >
> > > Chris Burnham,
> > > Systems Engineer,
> > > Delphis Consulting Plc.
> > > Tel:   +(44) 020 7916 0200
> > > Mob: +(44) 07799403576
> > > [EMAIL PROTECTED]
> > >
> > >
> > > This e-mail and any files transmitted with it
> are intended
> > > solely for the
> > > addressee and are confidential. They may also be
> legally privileged.
> > > Copyright in them is reserved by Delphis
> Consulting PLC
> > > ["Delphis"] and they
> > > must not be disclosed to, or used by, anyone
> other than the
> > > addressee. If
> > > you have received this e-mail and any
> accompanying files in
> > > error, you may
> > > not copy, publish or use them in any way and you
> should
> > > delete them from
> > > your system and notify us immediately.E-mails
> are not secure.
> > >  Delphis does
> > > not accept responsibility for changes to e-mails
> that occur
> > > after they have
> > > been sent.  Any opinions expressed in this
> e-mail may be
> > > personal to the
> > > author and may not necessarily reflect the
> opinions of Delphis.
[EMAIL PROTECTED]


__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12472&t=12256
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Alert: HTTP bug makes nearly all Cisco routers vulnerable [7:12473]

2001-07-16 Thread Farhan Ahmed

this is too ugly
i just try
http://192.168.5.1/level/29/exec/
on my 2503
and i m in
ha

-Original Message-
From: Oke Oyebanji [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 4:38 PM
To: [EMAIL PROTECTED]
Subject: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12471]


Hi Everybody,

This was a released from TechRepublic on Cisco routers vulnerablity early 
this morning, please do check it out and take necessary precaution. For 
details check:

 http://www.techrepublic.com/article.jhtml?id=r00220010716mco02.htm

Have a nice day.

Kind regards,
Banji.


_
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.

[GroupStudy.com removed an attachment of type application/msword which had a
name of Cisco Routers Bugs.doc]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12473&t=12473
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Accessories for sale [7:9510]

2001-07-16 Thread RamG

Message addressed to Mr. Mark Rose

Pls watch your mail for refund towards two mismatch rack mount sold.

Tx / RamG





""RamG""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I have following items for sale.
>
> a) 4 Pairs of Rack Mount Kit - 2500 series - USD.7 Each
>
> b) Two 4MB Flash Intel - 2500 series - USD.20 Each
>
> c) 4 Black Box Media Filters - USD.6 Each
>
> d) 1 Type 3 Media Filter - USD.6
>
> e) 4 LAN UPT Cat 5 Patch Cable - USD.2 Each
>
> If it interests anybody contact me directly.  Pls note shipping will be
> extra.
>
> TX  /  RamG




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12474&t=9510
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Please help!!!!!!!!!! ARP Cache [7:12475]

2001-07-16 Thread NK Sat

Hi Everybody,
  I need some help on this issue.. I am having Cisco 3600 router with some 
16 Class-C connected to the Fast Ethernet as secondary addresses.   My host 
were not able to ping the router across the ethernetat all... I was seeing 
the ARP entry of my host on the router but not able to ping the host from 
the router and vice-versa across the ethernet..when i cleared the 
arp-cache everything is working...( Notsure when the trouble may come 
back) Can somebody tell
1)  What is the size of the ARP-CACHE, where i can see it and how i can 
manipulate it.

2) If i have "n" hosts and "n" is the maximum hosts the Arp-cache can 
accomidate when "n+1" host try to get to a host it will send a brodcast and 
get the MAC and get itself into the ARP-Cache removing the oldest entry in 
the ARP right? Apparently this does NOT seem to be happening.. Is my 
understanding wrong  or is this a weird cisco IOS stuff! which needs 
the regular upgrade


Any help is greatly appreciated.

Thanks
Satish

_
Get your FREE download of MSN Explorer at http://explorer.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12475&t=12475
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: dialer idle-timeout [7:12256]

2001-07-16 Thread Vette Boy

Thankx Mike.

VetteBoy



--- "Michael L. Williams" 
wrote:
> I think what he was saying is that if you configure
> the load threshold to 0
> that the "other" links (i.e. the second BRI line in
> a Dialer group or other
> PPP multilink) would come up automaticall and stay
> up the entire time.  Then
> as long as there is interesting traffic to reset the
> idle timer, the other
> links will also stay up.  The fast idle command
> should only have any bearing
> when there are other calls waiting to be
> placed..
> 
> Mike W.
> 
> "Farhan Ahmed"  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > wrong dialer load threshold is for bringing up the
> second link
> > u can put maximum numb on idle time out or use
> fast idle command
> >
> > -Original Message-
> > From: Vette Boy [mailto:[EMAIL PROTECTED]]
> > Sent: Sunday, July 15, 2001 8:18 PM
> > To: [EMAIL PROTECTED]
> > Subject: Re: dialer idle-timeout [7:12256]
> >
> >
> > Configue the dialer load threshold to 0 for the
> link
> > to be always up.
> >
> > VB
> >
> > --- "Michael L. Williams"
> > wrote:
> > > I would have to say that the idle-timer is for
> pure
> > > idle time. not just
> > > interesting traffic AFAIK interesting
> traffic is
> > > only used to initiaite
> > > the dial, but after that any traffic is enough
> to
> > > keep the link open..
> > > BUT (now that I've looked it up) I'M WRONG!
> > > Damn I hate when that
> > > happens.
> > >
> > > from Cisco's site:
> > >
> > > "Interesting packets are packets that pass the
> > > restrictions of the access
> > > lists. These packets either initiate a call (if
> one
> > > is not already in
> > > progress) or reset the idle timer if a call is
> in
> > > progress. Uninteresting
> > > packets are transmitted if the link is active,
> but
> > > dropped if the link is
> > > not active. Uninteresting packets do not
> initiate
> > > calls or reset the idle
> > > timer."
> > >
> > > Good call Charles..
> > >
> > > Mike W.
> > >
> > > "Charles Manafa"  wrote in message
> > > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > > Interesting traffic will bring up the link,
> and
> > > maintain it. Whilst the
> > > link
> > > > is up, any traffic can cross the link, but
> only
> > > interesting traffic can
> > > > reset the idle timer.
> > > >
> > > > CM
> > > >
> > > > > -Original Message-
> > > > > From: Burnham, Chris
> > > [mailto:[EMAIL PROTECTED]]
> > > > > Sent: 13 July 2001 11:39
> > > > > To: [EMAIL PROTECTED]
> > > > > Subject: dialer idle-timeout [7:12256]
> > > > >
> > > > >
> > > > > I am currently working throught the "Caslow
> ,
> > > Pavlichenko Cisco
> > > > > Certification Book" I have a query on page
> 163
> > > that you guy's
> > > > > and girl's
> > > > > maybe able to help me with.
> > > > >
> > > > > It states that the DDR connection is
> maintained
> > > as long as
> > > > > "interesting
> > > > > traffic" is transferred over the connection
> > > before the
> > > > > dialer-idle-timeout
> > > > > occurs.?
> > > > >
> > > > > Is this correct?? I was alway's under the
> > > impression that the
> > > > > interesting
> > > > > traffic only determined what brought up the
> link
> > > & once the
> > > > > link was up it
> > > > > would stay up regardless of traffic type
> > > crossing the ISDN link
> > > > >
> > > > > I would like to hear your opinions
> > > > >
> > > > > Chris Burnham,
> > > > > Systems Engineer,
> > > > > Delphis Consulting Plc.
> > > > > Tel:   +(44) 020 7916 0200
> > > > > Mob: +(44) 07799403576
> > > > > [EMAIL PROTECTED]
> > > > >
> > > > >
> > > > > This e-mail and any files transmitted with
> it
> > > are intended
> > > > > solely for the
> > > > > addressee and are confidential. They may
> also be
> > > legally privileged.
> > > > > Copyright in them is reserved by Delphis
> > > Consulting PLC
> > > > > ["Delphis"] and they
> > > > > must not be disclosed to, or used by, anyone
> > > other than the
> > > > > addressee. If
> > > > > you have received this e-mail and any
> > > accompanying files in
> > > > > error, you may
> > > > > not copy, publish or use them in any way and
> you
> > > should
> > > > > delete them from
> > > > > your system and notify us
> immediately.E-mails
> > > are not secure.
> > > > >  Delphis does
> > > > > not accept responsibility for changes to
> e-mails
> > > that occur
> > > > > after they have
> > > > > been sent.  Any opinions expressed in this
> > > e-mail may be
> > > > > personal to the
> > > > > author and may not necessarily reflect the
> > > opinions of Delphis.
> > [EMAIL PROTECTED]
> >
> >
> > __
> > Do You Yahoo!?
> > Get personalized email addresses from Yahoo! Mail
> > http://personal.mail.yahoo.com/
[EMAIL PROTECTED]


__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/fo

Source Quench [7:12477]

2001-07-16 Thread Amit Gupta

Hi All,

I am getting a " Source Quench message " from one of
my HP-UX Servers when I try to ping it from an NT
machine / Switch 

I am getting the following msg when I ping the server
from the external router
Sending 5, 100-byte ICMP Echos to x.x.x.x timeout is 2
seconds:
Q  

However if I ping the same server from a Unix machine
/ server, it is ok.

Could it be a problem with the server NIC

Thanks & Regards

Amit



   



__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12477&t=12477
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Alert: HTTP bug makes nearly all Cisco routers vulnerable [7:12478]

2001-07-16 Thread cisco skin

Check your MSFC's!!!


""Oke Oyebanji""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi Everybody,
>
> This was a released from TechRepublic on Cisco routers vulnerablity early
> this morning, please do check it out and take necessary precaution. For
> details check:
>
>  http://www.techrepublic.com/article.jhtml?id=r00220010716mco02.htm
>
> Have a nice day.
>
> Kind regards,
> Banji.
>
>
> _
> Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.
>
> [GroupStudy.com removed an attachment of type application/msword which had
a
> name of Cisco Routers Bugs.doc]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12478&t=12478
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: 2926 or 2901? [7:12462]

2001-07-16 Thread Hire, Ejay

The Catalyst 2900 (non-xl/non-l3) series are the fixed configuration
versions of the Catalyst 5000 series.  With Ram/flash upgrades, they can run
the newest version of the CatOs.  They support an external RP.

HTH
-Ejay

-Original Message-
From: Stephen Flint [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 6:30 AM
To: [EMAIL PROTECTED]
Subject: 2926 or 2901? [7:12462]


Hi,

Would someone respond to my question regarding the CAT 2926 or 2901?  Do

these routers really have the same set commands as the CAT 5000s?  And
if so what do these routers usually sell for?

Thanks,
Steve




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12479&t=12462
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCprep.com Lab time [7:12453]

2001-07-16 Thread Brad Ellis

Preston,

www.ccbootcamp.com
www.fatkid.com

-Brad
""Preston Kilburn""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> All, I have a question for you, have any of you rented a lab from
> CCprep.com?  I was wondering if it was worth the $45 or so an hour. Also,
> are there any other places to connect up with a lab to tinker with??
>
> -P.Kil




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12480&t=12453
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: urgent question related to vtp [7:11687]

2001-07-16 Thread Hire, Ejay

having you configure VTP, but do you need VTP? (assume a small network with 
few VLANs)
A:  No, you don't have to use it, but you will have to configure your vlan's
manually on every switch.

Q:  How does VTP interact with trunks, if at all? I can configure a trunk to

carry traffic for a subset of the VLANs that VTP advertises, can't I? (not 
sure why I would want to, but I'm just confirming your point that VTP is 
misnamed, e.g. it is not a trunking protocol)
A:  VTP's only interaction with trunks is "pruning", removal of unused VLANS
from trunks where they are not in use. Pruning is supposedly disabled by
default, but I've had issues with it and always explicitly turn it on or
off.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12481&t=11687
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Off Topic: DNS issue !!! [7:12448]

2001-07-16 Thread Hire, Ejay

Do you have reverse DNS setup for the IP address of your mail server?  If
not, AOL/MSN and a few others will drop your inbound (to them) smtp.

-Original Message-
From: Raees Ahmed Shaikh [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 1:50 AM
To: [EMAIL PROTECTED]
Subject: Off Topic: DNS issue !!! [7:12448]


Dear Friends,

I am facing a very strange problem with our Mailing System Exchange5.5sp4.
The issue is that we are not able to send email message to some of the sites
on the internet.  Most of the other popular sites , you can say 90% of the
sites are reachable by our email clients.  But when the clients try to send
message to those few site, they get and Non-Delivery-Report saying that the
mail could not be delivered.  Strange enough  that email address is
reachable through yahoo, hotmail and other sites.  

I have checked our router for any access-list blocking but I am sure nothing
is of that sort, no access-lists are controlling those addresses. Our ISP
from whom we are connected to the internet is also able to reach that sites.
But we using the ISP's DNS servers for name resolution cannot connect to
those particular hosts.

One strange behavior though, when I tried to trace route a website add, for
that particular mail host, I is taking more than 15 hops and then declared
unreachable by our Static Router, No Dynamic protocol is running between us
and our ISP, we are using default route.

Any help or insights would be valuable and really be appreciated.

I know this has nothing to do with Cisco, but the fact is Applications, and
User Usability is driving the Technology. so this mail is not so uncommon
for a Cisco SE.

Thanks and Regards,

S. Raees

[GroupStudy.com removed an attachment of type image/jpeg which had a name of
Glacier Bkgrd.jpg]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12483&t=12448
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



quest on IPsec [7:12484]

2001-07-16 Thread ciscos ccie

Hi Friends,

I would like to know whether IPSEC works with loadbalancing in a VPN..Pls 
pass on some good url's if you have come across..


Look forward to ur replies...

Regards / Thangs
_
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12484&t=12484
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: [sc] Flash Upgrde problem on Cisco 2600 [7:12446]

2001-07-16 Thread john, Dang

Hi John,
the console serial port keep bursting unreadable string,
do you refer to serial 0 sync/async port ?
please advise,
JD


- Original Message -
From: "DOCSIS ATP Rack#2" 
To: "john, Dang" ; "Jeff Theobalt" ;
"Fawad Alam" ; 
Cc: 
Sent: Sunday, July 15, 2001 11:38 PM
Subject: Re: [sc] Flash Upgrde problem on Cisco 2600


> John,
>
> You can recover from a catastrophic failure by reloading via the serial
port
> using Xmodem or Zmodem (I think).  I've done this before - it's painful -
> but you can recover.  I'm not sure if this is what is required - but if
your
> router is brain dead and can't tftp - this this is your only choice.  It
> happened to me with a 3620 - took about 2hrs. before I was completely
> back up.
>
> Good Luck,
> John
>
> - Original Message -
> From: "john, Dang" 
> To: "Jeff Theobalt" ; "Fawad Alam" ;
> 
> Cc: 
> Sent: Sunday, July 15, 2001 8:52 PM
> Subject: Re: [sc] Flash Upgrde problem on Cisco 2600
>
>
> > Hello every one,
> > I need help for reinstall flash program into Cisco 3810
> > concentrator router, I think I mess up the flash after
> > I reload the upgrade ISO,12.0
> > any one can give me some advise,
> > thank you
> >
> >
> > - Original Message -
> > From: "Jeff Theobalt" 
> > To: "Fawad Alam" ; 
> > Cc: 
> > Sent: Friday, May 18, 2001 12:55 PM
> > Subject: Re: [sc] Flash Upgrde problem on Cisco 2600
> >
> >
> > > That is because it is unformatted  and there is no IOS on the flash.
> > >
> > >
> > > Therefore, you will need to format the flash . Once this is done
> complete
> > > the following steps exactly to load IOS to the new flash:
> > >
> > > when in rommon this is what needs to be done
> > >
> > > rommon>IP_ADDRESS= ip address of the router
> > > rommon>IP_SUBNET_MASK= subnet amsk
> > > rommon>DEFAULT_GATEWAY= gateway if tftp server is on different subnet
> > > rommon>TFTP_SERVER= ip address of tftp server
> > > rommon>TFTP_FILE= name IOS file on the tftp server
> > >
> > > rommon>boot
> > >
> > > this should fix your problem
> > >
> > > -Jeff
> > >
> > >
> > > - Original Message -
> > > From: Fawad Alam 
> > > To: 
> > > Cc: 
> > > Sent: Friday, May 18, 2001 8:35 AM
> > > Subject: [sc] Flash Upgrde problem on Cisco 2600
> > >
> > >
> > > > In order to increase flash on my 2600 Router I ordered 16MB Kingston
> > > Flash.
> > > > I removed the original 8 MB flash and inserted this new 16MB flash
and
> > the
> > > > message I am getting is:
> > > > rommon 1 > boot
> > > > device does not contain a valid magic number
> > > > boot: cannot open "flash:"
> > > > boot: cannot determine first file name on device "flash:"
> > > >
> > > > What should I do for the router to recognize this new flash??
> > > >
> > > > Thanks...
> > > >
> > > >
> >
_
> > > > Get Your Private, Free E-mail from MSN Hotmail at
> > http://www.hotmail.com.
> > > >
> > > >
> > > > --
> > > > To unsubscribe:  echo unsubscribe cisco-cert | mail
> > [EMAIL PROTECTED]
> > > >
> > >
> > >
> > > --
> > > To unsubscribe:  echo unsubscribe cisco-cert | mail
> [EMAIL PROTECTED]
> >
> >
> > --
> > To unsubscribe:  echo unsubscribe cisco-cert | mail
[EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12446&t=12446
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Alert: HTTP bug makes nearly all Cisco routers vulnerable [7:12487]

2001-07-16 Thread Sean Young

This Cisco bug will BITE only if you use local account.  If you use
TACACS for Authentication, Authorization and Accounting (AAA), then you
do NOT to have to worry about this bug.  I've been trying to test it in
the lab without success because I use TACACS.  If anyone think I am
wrong, please contact me and straight me out. 

Sean

>From: "cisco skin" >Reply-To: "cisco skin" >To: [EMAIL PROTECTED]
>Subject: Re: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12478] >Date: Mon, 16 Jul 2001 10:37:54 -0400 > >Check your MSFC's!!!
> > >""Oke Oyebanji"" wrote in message
>[EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > > Hi Everybody, > > > >
This was a released from TechRepublic on Cisco routers vulnerablity early
> > this morning, please do check it out and take necessary precaution.
For > > details check: > > > >
http://www.techrepublic.com/article.jhtml?id=r00220010716mco02.htm > > >
> Have a nice day. > > > > Kind regards, > > Banji. > > > > > >
_
> > Get Your Private, Free E-mail from MSN Hotmail at
http://www.hotmail.com. > > > > [GroupStudy.com removed an attachment of
type application/msword which had >a > > name of Cisco Routers Bugs.doc]
misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Get your FREE download of MSN Explorer at http://explorer.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12487&t=12487
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: [sc] Flash Upgrde problem on Cisco 2600 [7:12442]

2001-07-16 Thread john, Dang

Hello every one,
I need help for reinstall flash program into Cisco 3810
concentrator router, I think I mess up the flash after
I reload the upgrade ISO,12.0
any one can give me some advise,
thank you


- Original Message -
From: "Jeff Theobalt" 
To: "Fawad Alam" ; 
Cc: 
Sent: Friday, May 18, 2001 12:55 PM
Subject: Re: [sc] Flash Upgrde problem on Cisco 2600


> That is because it is unformatted  and there is no IOS on the flash.
>
>
> Therefore, you will need to format the flash . Once this is done complete
> the following steps exactly to load IOS to the new flash:
>
> when in rommon this is what needs to be done
>
> rommon>IP_ADDRESS= ip address of the router
> rommon>IP_SUBNET_MASK= subnet amsk
> rommon>DEFAULT_GATEWAY= gateway if tftp server is on different subnet
> rommon>TFTP_SERVER= ip address of tftp server
> rommon>TFTP_FILE= name IOS file on the tftp server
>
> rommon>boot
>
> this should fix your problem
>
> -Jeff
>
>
> - Original Message -
> From: Fawad Alam 
> To: 
> Cc: 
> Sent: Friday, May 18, 2001 8:35 AM
> Subject: [sc] Flash Upgrde problem on Cisco 2600
>
>
> > In order to increase flash on my 2600 Router I ordered 16MB Kingston
> Flash.
> > I removed the original 8 MB flash and inserted this new 16MB flash and
the
> > message I am getting is:
> > rommon 1 > boot
> > device does not contain a valid magic number
> > boot: cannot open "flash:"
> > boot: cannot determine first file name on device "flash:"
> >
> > What should I do for the router to recognize this new flash??
> >
> > Thanks...
> >
> >
_
> > Get Your Private, Free E-mail from MSN Hotmail at
http://www.hotmail.com.
> >
> >
> > --
> > To unsubscribe:  echo unsubscribe cisco-cert | mail
[EMAIL PROTECTED]
> >
>
>
> --
> To unsubscribe:  echo unsubscribe cisco-cert | mail [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12442&t=12442
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



connectivity between SUN and CISCO with X.25 [7:12482]

2001-07-16 Thread Infotech

Dear Group,

Has anybody worked on this type of connectivity:-
x.25  Ethernet   x.25
SUN BOX>CISCO2620cisco2620

RE: ISDN Help [7:12365]

2001-07-16 Thread Hire, Ejay

This should fix it.

Interface bri 0
no ip nat inside
interface dialer 0 
no ip nat inside
ip nat outside
exit 
access-list 1 permit 10.0.0.0 0.255.255.255
access-list 1 permit 172.16.0.0 0.15.255.255
access-list 1 permit 192.168.0.0 0.0.255.255
no ip nat inside source list 1 interface BRI0 overload
ip nat inside source list 1 interface Dialer 0 overload
ctrl-z
Additionally, unless they've said otherwise, you don't need to exchange RIP
updates with your ISP.  You can remove the RIP stuff from the

-Original Message-
From: dt [mailto:[EMAIL PROTECTED]]
Sent: Saturday, July 14, 2001 4:54 PM
To: [EMAIL PROTECTED]
Subject: ISDN Help [7:12365]


Hi,
I am pretty new so please be patient. I am wearing my flame retardant suit.

I am trying to configure my ISDN BR. I am running a Cisco 804. Everything
connects just fine. I can ping the inside interface on the router, the
outside interface (dialer) which get an IP address from my ISP. I can ping
the interfaces of my nodes on the LAN. I authenticate to the ISP Radius
server. From the router everything seems to resolve just fine but from my
inside network ( I run NAT)  I can only ping the router interfaces. I can
not ping anything beyond my outside interface.

I know I must be missing something basic but I just can't figure it out. Any
help will be greatly appreciated.

Thanks

Dave T

Here is my sh run from the router.

Current configuration:
!
version 12.0
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname backbone_r1
!
enable secret 5 x
enable password 
!
dial-peer voice 1 pots
 no call-waiting
 ring 0
 port 1
 destination-pattern xx
!
pots country US
ip subnet-zero
!
ip domain-name uswest.net
ip name-server 206.196.128.1
isdn switch-type basic-ni
!
!
!
interface Ethernet0
 ip address 172.16.0.2 255.255.0.0
 no ip directed-broadcast
 ip nat inside
!
interface BRI0
 ip address negotiated
 no ip directed-broadcast
 ip nat inside
 encapsulation ppp
 bandwidth 64
 dialer rotary-group 0
 dialer-group 1
 isdn switch-type basic-ni
 isdn spid1 
 isdn spid2 
 isdn incoming-voice modem
!
interface Dialer0
 ip address negotiated
 no ip directed-broadcast
 ip nat inside
 ip rip send version 1
 ip rip receive version 1
 encapsulation ppp
 bandwidth 64
 keepalive 32767
 dialer in-band
 dialer idle-timeout 300
 dialer string 3032541488
 dialer string 3032541186
 dialer hold-queue 10
 dialer load-threshold 10 outbound
 dialer-group 1
 ppp authentication pap callin
 ppp pap sent-username xxx password xxx
 ppp multilink
!
router rip

router rip
 network 10.0.0.0
 network 172.16.0.0
 network 192.168.0.0
!
ip nat inside source list 1 interface BRI0 overload
ip classless
ip route 0.0.0.0 0.0.0.0 Dialer0
!
dialer-list 1 protocol ip permit
dialer-list 1 protocol clns permit
dialer-list 1 protocol netbios permit
!
line con 0
 transport input none
 stopbits 1
line vty 0 4
 password
 login
!
end




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12485&t=12365
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: ISDN Help [7:12365]

2001-07-16 Thread dt

Well, I think I am getting closer. I went to the Cisco web site and read
about NAT. I know now, thanks to those from the group that replied, that
part of my problem was with the NAT entries and the inside/outside entries.

I reconfigured my router and just for a minute I was able to browse the web
and ping my firewall at work from a node on the private segment. Then it
fell out and I was back to only being able to ping inside and outside from
the router. Close but no cigar.

I have been working on this for hours on end and it has been one of the best
learning exercises I have had since building a Raptor firewall. But that is
another story.

I have been reading the threads on this site for quite a while. For the
newer people like me those who post to this group are a great resource.
Thanks to all of you.

So here is my new config. Any insight to my oversight is appreciated.

Thanks
dt

Current configuration:
!
version 12.0
no service pad
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname backbone_r1
!
enable secret
!
!
dial-peer voice 1 pots
 no call-waiting
 ring 1
 port 1
 destination-pattern x
!
pots country US
ip subnet-zero
ip dhcp excluded-address 172.16.0.2 172.16.0.3
!
ip dhcp pool 1
   network 172.16.0.0 255.255.0.0
   default-router 172.16.0.2
!
ip name-server 206.196.128.1
isdn switch-type basic-ni
!
!
!
interface Ethernet0
 description connected to EthernetLAN
 ip address 172.16.0.2 255.255.0.0
 no ip directed-broadcast
 ip nat inside
!
interface BRI0
 description connected to Internet
 no ip address
 no ip directed-broadcast
 ip nat outside
 encapsulation ppp
 dialer rotary-group 0
 isdn switch-type basic-ni
 isdn spid1 
 isdn spid2 x
 isdn voice-priority xx out off
 isdn voice-priority xxx in conditional
 isdn incoming-voice modem
 no cdp enable
!
interface Dialer0
 description connected to Internet
 ip address negotiated
 no ip directed-broadcast
 ip nat outside
 encapsulation ppp
 no ip split-horizon
 bandwidth 64
 dialer in-band
 dialer idle-timeout 1200
 dialer string 3032541488
 dialer string 3032541186
 dialer hold-queue 10
 dialer load-threshold 5 outbound
 dialer-group 1
 no cdp enable
 ppp authentication chap pap callin
 ppp chap hostname 
 ppp chap password 7 06
 ppp pap sent-username xxxr password 7 060
 ppp multilink
!
interface Dialer1
 no ip address
 no ip directed-broadcast
 no cdp enable
!
router rip
 version 2
 passive-interface Dialer0
 network 172.16.0.0
 no auto-summary
!
ip nat translation udp-timeout 600
ip nat translation finrst-timeout 90
ip nat translation dns-timeout 90
ip nat inside source list 1 interface Dialer0 overload
ip classless
ip route 0.0.0.0 0.0.0.0 Dialer0
!
access-list 1 permit 172.16.0.0 0.0.255.255
dialer-list 1 protocol ip permit
snmp-server community public RO
snmp-server location SOHO
snmp-server contact

!
line con 0
 exec-timeout 0 0
 password
 login
 transport input none
 stopbits 1
line vty 0 4
 password
 login
!
end


""dt""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi,
> I am pretty new so please be patient. I am wearing my flame retardant
suit.
>
> I am trying to configure my ISDN BR. I am running a Cisco 804. Everything
> connects just fine. I can ping the inside interface on the router, the
> outside interface (dialer) which get an IP address from my ISP. I can ping
> the interfaces of my nodes on the LAN. I authenticate to the ISP Radius
> server. From the router everything seems to resolve just fine but from my
> inside network ( I run NAT)  I can only ping the router interfaces. I can
> not ping anything beyond my outside interface.
>
> I know I must be missing something basic but I just can't figure it out.
Any
> help will be greatly appreciated.
>
> Thanks
>
> Dave T
>
> Here is my sh run from the router.
>
> Current configuration:
> !
> version 12.0
> no service pad
> service timestamps debug uptime
> service timestamps log uptime
> no service password-encryption
> !
> hostname backbone_r1
> !
> enable secret 5 x
> enable password 
> !
> dial-peer voice 1 pots
>  no call-waiting
>  ring 0
>  port 1
>  destination-pattern xx
> !
> pots country US
> ip subnet-zero
> !
> ip domain-name uswest.net
> ip name-server 206.196.128.1
> isdn switch-type basic-ni
> !
> !
> !
> interface Ethernet0
>  ip address 172.16.0.2 255.255.0.0
>  no ip directed-broadcast
>  ip nat inside
> !
> interface BRI0
>  ip address negotiated
>  no ip directed-broadcast
>  ip nat inside
>  encapsulation ppp
>  bandwidth 64
>  dialer rotary-group 0
>  dialer-group 1
>  isdn switch-type basic-ni
>  isdn spid1 
>  isdn spid2 
>  isdn incoming-voice modem
> !
> interface Dialer0
>  ip address negotiated
>  no ip directed-broadcast
>  ip nat inside
>  ip rip send version 1
>  ip rip receive version 1
>  encapsulation ppp
>  bandwidth 64
>  keepalive 32767
>  dialer in-band
>  dialer idle-timeout 300
>  dialer string 3

Re: [sc] Flash Upgrde problem on Cisco 2600 [7:12450]

2001-07-16 Thread DOCSIS ATP Rack#2

John,

No - the console port is where you do this - if you see an unreadable
string - then your baud rate, parity, #of bits, handshaking, may be wrong.
I believe 9600 - 8, 1 will work.  You can up the baud rate via the console.

Regards,
John

- Original Message -
From: "john, Dang" 
To: "DOCSIS ATP Rack#2" ; "Jeff Theobalt"
; "Fawad Alam" ; 
Cc: 
Sent: Sunday, July 15, 2001 9:59 PM
Subject: Re: [sc] Flash Upgrde problem on Cisco 2600


> Hi John,
> the console serial port keep bursting unreadable string,
> do you refer to serial 0 sync/async port ?
> please advise,
> JD
>
>
> - Original Message -
> From: "DOCSIS ATP Rack#2" 
> To: "john, Dang" ; "Jeff Theobalt" ;
> "Fawad Alam" ; 
> Cc: 
> Sent: Sunday, July 15, 2001 11:38 PM
> Subject: Re: [sc] Flash Upgrde problem on Cisco 2600
>
>
> > John,
> >
> > You can recover from a catastrophic failure by reloading via the serial
> port
> > using Xmodem or Zmodem (I think).  I've done this before - it's
painful -
> > but you can recover.  I'm not sure if this is what is required - but if
> your
> > router is brain dead and can't tftp - this this is your only choice.  It
> > happened to me with a 3620 - took about 2hrs. before I was completely
> > back up.
> >
> > Good Luck,
> > John
> >
> > - Original Message -
> > From: "john, Dang" 
> > To: "Jeff Theobalt" ; "Fawad Alam" ;
> > 
> > Cc: 
> > Sent: Sunday, July 15, 2001 8:52 PM
> > Subject: Re: [sc] Flash Upgrde problem on Cisco 2600
> >
> >
> > > Hello every one,
> > > I need help for reinstall flash program into Cisco 3810
> > > concentrator router, I think I mess up the flash after
> > > I reload the upgrade ISO,12.0
> > > any one can give me some advise,
> > > thank you
> > >
> > >
> > > - Original Message -
> > > From: "Jeff Theobalt" 
> > > To: "Fawad Alam" ; 
> > > Cc: 
> > > Sent: Friday, May 18, 2001 12:55 PM
> > > Subject: Re: [sc] Flash Upgrde problem on Cisco 2600
> > >
> > >
> > > > That is because it is unformatted  and there is no IOS on the flash.
> > > >
> > > >
> > > > Therefore, you will need to format the flash . Once this is done
> > complete
> > > > the following steps exactly to load IOS to the new flash:
> > > >
> > > > when in rommon this is what needs to be done
> > > >
> > > > rommon>IP_ADDRESS= ip address of the router
> > > > rommon>IP_SUBNET_MASK= subnet amsk
> > > > rommon>DEFAULT_GATEWAY= gateway if tftp server is on different
subnet
> > > > rommon>TFTP_SERVER= ip address of tftp server
> > > > rommon>TFTP_FILE= name IOS file on the tftp server
> > > >
> > > > rommon>boot
> > > >
> > > > this should fix your problem
> > > >
> > > > -Jeff
> > > >
> > > >
> > > > - Original Message -
> > > > From: Fawad Alam 
> > > > To: 
> > > > Cc: 
> > > > Sent: Friday, May 18, 2001 8:35 AM
> > > > Subject: [sc] Flash Upgrde problem on Cisco 2600
> > > >
> > > >
> > > > > In order to increase flash on my 2600 Router I ordered 16MB
Kingston
> > > > Flash.
> > > > > I removed the original 8 MB flash and inserted this new 16MB flash
> and
> > > the
> > > > > message I am getting is:
> > > > > rommon 1 > boot
> > > > > device does not contain a valid magic number
> > > > > boot: cannot open "flash:"
> > > > > boot: cannot determine first file name on device "flash:"
> > > > >
> > > > > What should I do for the router to recognize this new flash??
> > > > >
> > > > > Thanks...
> > > > >
> > > > >
> > >
> _
> > > > > Get Your Private, Free E-mail from MSN Hotmail at
> > > http://www.hotmail.com.
> > > > >
> > > > >
> > > > > --
> > > > > To unsubscribe:  echo unsubscribe cisco-cert | mail
> > > [EMAIL PROTECTED]
> > > > >
> > > >
> > > >
> > > > --
> > > > To unsubscribe:  echo unsubscribe cisco-cert | mail
> > [EMAIL PROTECTED]
> > >
> > >
> > > --
> > > To unsubscribe:  echo unsubscribe cisco-cert | mail
> [EMAIL PROTECTED]
> > >
> >
>
>
> --
> To unsubscribe:  echo unsubscribe cisco-cert | mail [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12450&t=12450
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Looking for a Reliable Network Journal/Magazine [7:12421]

2001-07-16 Thread Chuck Larrieu

someone was funnen ya.

I used to read a rag called Network Magazine. It has been a while, so I
don't have an address or a web site for you. I'm sure a google search will
get you there.

Chuck

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Kwame
Sent: Sunday, July 15, 2001 9:05 PM
To: [EMAIL PROTECTED]
Subject: Re: Looking for a Reliable Network Journal/Magazine [7:12421]


What does this response mean?

""Robert Hanley""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> --- Adwoa  wrote:
> > I'm looking for a reliable non-vendor based
> > journal/magazine devoted to
> > networking.  Any suggestions?
> [EMAIL PROTECTED]
>
>
> __
> Do You Yahoo!?
> Get personalized email addresses from Yahoo! Mail
> http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12488&t=12421
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



isochronous [7:12486]

2001-07-16 Thread Donald B Johnson jr

Does anyone have a link to some detailed information concerning isochronous,
pleisochronous, or any other flavor of communication. I did a couple of
searches and was not satisfied with the results.
Thanks
Don




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12486&t=12486
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: [sc] Flash Upgrde problem on Cisco 2600 [7:12445]

2001-07-16 Thread DOCSIS ATP Rack#2

John,

You can recover from a catastrophic failure by reloading via the serial port
using Xmodem or Zmodem (I think).  I've done this before - it's painful -
but you can recover.  I'm not sure if this is what is required - but if your
router is brain dead and can't tftp - this this is your only choice.  It
happened to me with a 3620 - took about 2hrs. before I was completely
back up.

Good Luck,
John

- Original Message -
From: "john, Dang" 
To: "Jeff Theobalt" ; "Fawad Alam" ;

Cc: 
Sent: Sunday, July 15, 2001 8:52 PM
Subject: Re: [sc] Flash Upgrde problem on Cisco 2600


> Hello every one,
> I need help for reinstall flash program into Cisco 3810
> concentrator router, I think I mess up the flash after
> I reload the upgrade ISO,12.0
> any one can give me some advise,
> thank you
>
>
> - Original Message -
> From: "Jeff Theobalt" 
> To: "Fawad Alam" ; 
> Cc: 
> Sent: Friday, May 18, 2001 12:55 PM
> Subject: Re: [sc] Flash Upgrde problem on Cisco 2600
>
>
> > That is because it is unformatted  and there is no IOS on the flash.
> >
> >
> > Therefore, you will need to format the flash . Once this is done
complete
> > the following steps exactly to load IOS to the new flash:
> >
> > when in rommon this is what needs to be done
> >
> > rommon>IP_ADDRESS= ip address of the router
> > rommon>IP_SUBNET_MASK= subnet amsk
> > rommon>DEFAULT_GATEWAY= gateway if tftp server is on different subnet
> > rommon>TFTP_SERVER= ip address of tftp server
> > rommon>TFTP_FILE= name IOS file on the tftp server
> >
> > rommon>boot
> >
> > this should fix your problem
> >
> > -Jeff
> >
> >
> > - Original Message -
> > From: Fawad Alam 
> > To: 
> > Cc: 
> > Sent: Friday, May 18, 2001 8:35 AM
> > Subject: [sc] Flash Upgrde problem on Cisco 2600
> >
> >
> > > In order to increase flash on my 2600 Router I ordered 16MB Kingston
> > Flash.
> > > I removed the original 8 MB flash and inserted this new 16MB flash and
> the
> > > message I am getting is:
> > > rommon 1 > boot
> > > device does not contain a valid magic number
> > > boot: cannot open "flash:"
> > > boot: cannot determine first file name on device "flash:"
> > >
> > > What should I do for the router to recognize this new flash??
> > >
> > > Thanks...
> > >
> > >
> _
> > > Get Your Private, Free E-mail from MSN Hotmail at
> http://www.hotmail.com.
> > >
> > >
> > > --
> > > To unsubscribe:  echo unsubscribe cisco-cert | mail
> [EMAIL PROTECTED]
> > >
> >
> >
> > --
> > To unsubscribe:  echo unsubscribe cisco-cert | mail
[EMAIL PROTECTED]
>
>
> --
> To unsubscribe:  echo unsubscribe cisco-cert | mail [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12445&t=12445
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: isochronous [7:12486]

2001-07-16 Thread Paul

If you haven't already try:

http://www.cisco.com/univercd/cc/td/doc/cisintwk/ita/itai.htm

http://www.webopedia.com/

http://www.worldcom.com/tools-resources/communications_library

Cheers, Paul


  - Original Message -
  From: Donald B Johnson jr
  To: [EMAIL PROTECTED]
  Sent: Monday, July 16, 2001 4:26 PM
  Subject: isochronous [7:12486]


  Does anyone have a link to some detailed information concerning
isochronous,
  pleisochronous, or any other flavor of communication. I did a couple of
  searches and was not satisfied with the results.
  Thanks
  Don




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12490&t=12486
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Alert: HTTP bug makes nearly all Cisco routers vulnerable [7:12489]

2001-07-16 Thread Liang Mark J Civ AFRL/PROI

You could always disable HTTP service on you routers.

mark

-Original Message-
From: Sean Young [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 8:29 AM
To: [EMAIL PROTECTED]
Subject: Re: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12487]


This Cisco bug will BITE only if you use local account.  If you use
TACACS for Authentication, Authorization and Accounting (AAA), then you
do NOT to have to worry about this bug.  I've been trying to test it in
the lab without success because I use TACACS.  If anyone think I am
wrong, please contact me and straight me out. 

Sean

>From: "cisco skin" >Reply-To: "cisco skin" >To: [EMAIL PROTECTED]
>Subject: Re: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12478] >Date: Mon, 16 Jul 2001 10:37:54 -0400 > >Check your MSFC's!!!
> > >""Oke Oyebanji"" wrote in message
>[EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > > Hi Everybody, > > > >
This was a released from TechRepublic on Cisco routers vulnerablity early
> > this morning, please do check it out and take necessary precaution.
For > > details check: > > > >
http://www.techrepublic.com/article.jhtml?id=r00220010716mco02.htm > > >
> Have a nice day. > > > > Kind regards, > > Banji. > > > > > >
_
> > Get Your Private, Free E-mail from MSN Hotmail at
http://www.hotmail.com. > > > > [GroupStudy.com removed an attachment of
type application/msword which had >a > > name of Cisco Routers Bugs.doc]
misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Get your FREE download of MSN Explorer at http://explorer.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12489&t=12489
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Help with MIB [7:8318]

2001-07-16 Thread LB

try
www.mibcentral.com

They have a mib search engine and give a  brief description for each mib.

LB

""art news""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hello all,
>
> I know this is off the topic but I would appreciate if any body knows the
> MIB and corresponding OID for backplane utilization of Catalyst 3500
> switches.
>
> Thanks
>
> _
> Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12491&t=8318
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Source Quench [7:12477]

2001-07-16 Thread Stephen Skinner

Hi,

The Source-Quench message comes from a server when it`s buffers are unable 
to process all the info bieng sent to it..

this usually means that the nt is set for 100/Full - the switch is set for 
100/full for the nt box , but the UX box (and its switch port)is only set 
for 10/half ...usually the switch is aet to auto .

without any special processing on the switch it will just send as many 
packets out of one port that it recieve`s from another...

check the settings on both servers and make sure there the same...

then try agian ...

happens to me all the time.and the server guys INsist it`s the network


HTH

steve



>From: "Amit Gupta" 
>Reply-To: "Amit Gupta" 
>To: [EMAIL PROTECTED]
>Subject: Source Quench [7:12477]
>Date: Mon, 16 Jul 2001 10:29:14 -0400
>
>Hi All,
>
>I am getting a " Source Quench message " from one of
>my HP-UX Servers when I try to ping it from an NT
>machine / Switch
>
>I am getting the following msg when I ping the server
>from the external router
>Sending 5, 100-byte ICMP Echos to x.x.x.x timeout is 2
>seconds:
>Q
>
>However if I ping the same server from a Unix machine
>/ server, it is ok.
>
>Could it be a problem with the server NIC
>
>Thanks & Regards
>
>Amit
>
>
>
>
>
>
>
>__
>Do You Yahoo!?
>Get personalized email addresses from Yahoo! Mail
>http://personal.mail.yahoo.com/
_
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12492&t=12477
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Alert: HTTP bug makes nearly all Cisco routers vulnerable [7:12493]

2001-07-16 Thread Chuck Larrieu

I remain curious about this. filtering http access sources from untrusted
interfaces and destined for router interfaces does not work? I'll have to
try this in the lab

access-list 101 deny tcp untrusted_network router_interface eq 80
access-list 101 permit ip any any

Chuck

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Liang Mark J Civ AFRL/PROI
Sent: Monday, July 16, 2001 8:39 AM
To: [EMAIL PROTECTED]
Subject: RE: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12489]


You could always disable HTTP service on you routers.

mark

-Original Message-
From: Sean Young [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 8:29 AM
To: [EMAIL PROTECTED]
Subject: Re: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12487]


This Cisco bug will BITE only if you use local account.  If you use
TACACS for Authentication, Authorization and Accounting (AAA), then you
do NOT to have to worry about this bug.  I've been trying to test it in
the lab without success because I use TACACS.  If anyone think I am
wrong, please contact me and straight me out.

Sean

>From: "cisco skin" >Reply-To: "cisco skin" >To: [EMAIL PROTECTED]
>Subject: Re: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12478] >Date: Mon, 16 Jul 2001 10:37:54 -0400 > >Check your MSFC's!!!
> > >""Oke Oyebanji"" wrote in message
>[EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > > Hi Everybody, > > > >
This was a released from TechRepublic on Cisco routers vulnerablity early
> > this morning, please do check it out and take necessary precaution.
For > > details check: > > > >
http://www.techrepublic.com/article.jhtml?id=r00220010716mco02.htm > > >
> Have a nice day. > > > > Kind regards, > > Banji. > > > > > >
_
> > Get Your Private, Free E-mail from MSN Hotmail at
http://www.hotmail.com. > > > > [GroupStudy.com removed an attachment of
type application/msword which had >a > > name of Cisco Routers Bugs.doc]
misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Get your FREE download of MSN Explorer at http://explorer.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12493&t=12493
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Looking for a Reliable Network Journal/Magazine [7:12421]

2001-07-16 Thread Ken Chipps

Try this list. It is extracted from a PowerPoint presentation, which is why
the formatting is odd looking. http://www.chipps.com/Periodicals.htm

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Chuck Larrieu
Sent: Monday, July 16, 2001 10:31 AM
To: [EMAIL PROTECTED]
Subject: RE: Looking for a Reliable Network Journal/Magazine [7:12421]


someone was funnen ya.

I used to read a rag called Network Magazine. It has been a while, so I
don't have an address or a web site for you. I'm sure a google search will
get you there.

Chuck

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Kwame
Sent: Sunday, July 15, 2001 9:05 PM
To: [EMAIL PROTECTED]
Subject: Re: Looking for a Reliable Network Journal/Magazine [7:12421]


What does this response mean?

""Robert Hanley""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> --- Adwoa  wrote:
> > I'm looking for a reliable non-vendor based
> > journal/magazine devoted to
> > networking.  Any suggestions?
> [EMAIL PROTECTED]
>
>
> __
> Do You Yahoo!?
> Get personalized email addresses from Yahoo! Mail
> http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12494&t=12421
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



async issues - still cant get it to dial [7:12496]

2001-07-16 Thread No Data

Im still stuggling with an async connection.  Using
Ejay's wonderful help last week Ive gotten my router
configured but I cant seem to get the modem to dial. 
Right now I am just trying to dial into a remote
dial-in server with ppp, pap authentication.  Here is
my config.

Current configuration:
!
version 12.1
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname Router
!
no logging console
!
!
!
!
!
memory-size iomem 25
ip subnet-zero
!
chat-script dial ABORT ERROR "" "AT Z" OK "ATDT \T"
TIMEOUT 30 CONNECT
!
!
!
interface Serial0
 physical-layer async
 no ip address
 encapsulation ppp
 dialer in-band
 dialer pool-member 1
 async mode dedicated
!
interface Serial1
 no ip address
 shutdown
!
interface FastEthernet0
 ip address 10.129.0.132 255.255.0.0
 speed auto
!
interface Dialer1
 ip address negotiated
 encapsulation ppp
 dialer remote-name ?
 dialer pool 1
 dialer string 1308334
 dialer hold-queue 100
 dialer-group 1
 ppp authentication pap
 ppp pap sent-username 'name' password 'password'
!
ip classless
ip route 0.0.0.0 0.0.0.0 10.129.0.1
ip route 150.150.0.0 255.255.0.0 Dialer1
no ip http server
!
dialer-list 1 protocol ip permit
!
line con 0
 transport input none
line 1
 no exec
 script dialer dial
 modem InOut
 modem autoconfigure type usr_courier
 transport input all
 stopbits 1
 flowcontrol hardware
line aux 0
line vty 0 4
 login
!
end


Im using an external usr_courier and have the pins all
set to defaults.  Does anyone have any ideas?

Ben

__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12496&t=12496
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Resume ... [7:12495]

2001-07-16 Thread Ho, John (JOHO)

Hello,
   Attached is a copy of my resume.
   Thank you for your consideration.


   John Ho


> 

[GroupStudy.com removed an attachment of type application/msword which had a
name of JH_RES.doc]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12495&t=12495
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: quest on IPsec [7:12484]

2001-07-16 Thread RANMA

The Presentation 2001 of Cisco website...
include a powerpoint talking about Advanced IPSEC Configuration.
1. IPSEC HSRP
2. IPSEC loadbalancing


""ciscos ccie""   Hi Friends,
>
> I would like to know whether IPSEC works with loadbalancing in a VPN..Pls
> pass on some good url's if you have come across..
>
>
> Look forward to ur replies...
>
> Regards / Thangs
> _
> Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12498&t=12484
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Claim your Free 4-In-1 Super Pen, it's been paid for by... [7:12497]

2001-07-16 Thread Michael Peled

At 10:32 AM 7/2/2001 -0400, you wrote:
>This Multifunction pen with PDA Stylus, Pencil and Red, Blue
>ball pen is for you  Free! All you have to do is to fill out the simple
>survey questions below from our sponsors.
>
>
>  No more Frustration looking for the right Pen!
>
>This lightweight efficient writing instrument lets you quickly switch
>from PDA stylus, to blue or red ballpoint pen, to a mechanical pencil by
>just depressing top button when you are looking at the indicator printed
>on the barrel. Fits comfortably in your hand with a no-slip metal
>textured grip. Everything you need is right at hand. So it's ideal for
>working on plane, in train and any cramped quarter. And now you can
>travel light at work or on the road with just this one Super "pen,"
>instead of a pocketful of things. The 4-in-1 pen reduces clutter and
>ends the frustration and wasted time of looking for the right instrument
>or switch between stylus and pen. Retract with quick release side
>button. Refills available.
>Similar item like this sell for more than $35 plus shipping and handling
>in retail store
>
>, but it will be yours Free.
>Our sponsor will assure you that your responses will in no way go into
>your personal profile.
>They are interested in statistical data only.
>
>
>
>Questions   Response
>Do you own or use any kind of PDA(Personal Digital Assistant)?  yes
>
>Do you own or use a digital camera or camcorder?yes
>
>Do you own or use a Sony game console such as PS1,PS2 or Gameboy?
>yes
>
>Do you own or use a MP3 player?
>no
>Do you own or use a DVD player? yes
>
>Group Profile:
>Area Code   713
>Gender:Male
>Age Group select below 31-45
>Income select below 60-80k
>This survey is intended for [EMAIL PROTECTED] If you are not the
>intended recipient, please fill out your email address at right. Thanks.
>
>After you selected your choices, don't forget to
>Links to some of our sponsors:
>
>
>   _
>
>   _
>
>
>This email is sent to [EMAIL PROTECTED] If you believe you did not
>belong to our sponsors customers list,
>you can remove your email address from our distribution list by clicking
>the link below.
>Click here
>   if
>you prefer not to receive future e-mail from us.
>Click here   to view our
>permission marketing policy.
Michael L. Peled
LAN/WAN/SECURITY Project Engineer

Schlumberger Network Solutions
SLB North America
5599 San Felipe
Suite 400
Houston, TX 77056
(713) 499-6513 Voice
(713) 403-7204 Fax
(713) 240-7579 Cell
email: [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12497&t=12497
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



ISDN status [7:12499]

2001-07-16 Thread SH Wesson

What does it mean when that L2 status is in state=init instead of 
state=established as in the following message.

Layer 2 Status:
TEI = 82, Ces = 1, SAPI = 0, State = MULTIPLE_FRAME_ESTABLISHED
TEI = 84, Ces = 2, SAPI = 0, State = MULTIPLE_FRAME_ESTABLISHED
TEI 82, ces = 1, state = 5(init)
spid1 configured, no LDN, spid1 sent, spid1 valid
Endpoint ID Info: epsf = 0, usid = 70, tid = 1
TEI 84, ces = 2, state = 5(init)
spid2 configured, no LDN, spid2 sent, spid2 valid
Endpoint ID Info: epsf = 0, usid = 71, tid = 1

Thanks.

_
Get your FREE download of MSN Explorer at http://explorer.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12499&t=12499
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



=?iso-8859-1?Q?Cisco=20study=20partners=20in=20West=20Michigan= [7:12500]

2001-07-16 Thread [EMAIL PROTECTED]

I currently live in Grand Rapids, Michigan, and am looking for a Cisco study
partner or two...  I have completed my CCNA, CCDA, BCMSN, BCRAN, CIT, and
plan on taking the BSCN in about 10 days.  I am interested in almost any
skill level, and I have a nice amount of lab equipment to offer towards
study.

Any interested parties?

Here is my current list of lab gear.

 3x 2501
 2x 2621
 1x 2612
 1x 4000 (4pt Serial & Token Ring)
 1x 3524
 1x 1604
 1x CS-506

If I had a working copy of Visio I would have a networkd diagram for you.

-- Kevin




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12500&t=12500
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: async issues - still cant get it to dial [7:12496]

2001-07-16 Thread No Data

I should be more specific I think.  Im not even
getting the modem to dial.  I think my problem is with
the chat script.  I checked 56k.com and still have no
idea how to write the script (yep, Im a complete
newbie with modems)  I believe I have the DIP switches
set correctly now (3 and 8 down for the USR modem). 
The initialization string that the cisco website says
to use is AT&F1S0=1 while 56k.com says AT&F1 should be
fine.  Maybe that narrows down the problem Im having.

Ben

--- Farhan Ahmed  wrote:
> are u getting the answer of access server or no
> is it stays on verifying password or ur router
> doesnt dial at all
> check your modem chat script at 56k.com
> send me 
> 
> debug ppp negotiation
> 
> 
> -Original Message-
> From: No Data [mailto:[EMAIL PROTECTED]]
> Sent: Monday, July 16, 2001 8:33 PM
> To: [EMAIL PROTECTED]
> Subject: async issues - still cant get it to dial
> [7:12496]
> 
> 
> Im still stuggling with an async connection.  Using
> Ejay's wonderful help last week Ive gotten my router
> configured but I cant seem to get the modem to dial.
> 
> Right now I am just trying to dial into a remote
> dial-in server with ppp, pap authentication.  Here
> is
> my config.
> 
> Current configuration:
> !
> version 12.1
> service timestamps debug uptime
> service timestamps log uptime
> no service password-encryption
> !
> hostname Router
> !
> no logging console
> !
> !
> !
> !
> !
> memory-size iomem 25
> ip subnet-zero
> !
> chat-script dial ABORT ERROR "" "AT Z" OK "ATDT \T"
> TIMEOUT 30 CONNECT
> !
> !
> !
> interface Serial0
>  physical-layer async
>  no ip address
>  encapsulation ppp
>  dialer in-band
>  dialer pool-member 1
>  async mode dedicated
> !
> interface Serial1
>  no ip address
>  shutdown
> !
> interface FastEthernet0
>  ip address 10.129.0.132 255.255.0.0
>  speed auto
> !
> interface Dialer1
>  ip address negotiated
>  encapsulation ppp
>  dialer remote-name ?
>  dialer pool 1
>  dialer string 1308334
>  dialer hold-queue 100
>  dialer-group 1
>  ppp authentication pap
>  ppp pap sent-username 'name' password 'password'
> !
> ip classless
> ip route 0.0.0.0 0.0.0.0 10.129.0.1
> ip route 150.150.0.0 255.255.0.0 Dialer1
> no ip http server
> !
> dialer-list 1 protocol ip permit
> !
> line con 0
>  transport input none
> line 1
>  no exec
>  script dialer dial
>  modem InOut
>  modem autoconfigure type usr_courier
>  transport input all
>  stopbits 1
>  flowcontrol hardware
> line aux 0
> line vty 0 4
>  login
> !
> end
> 
> 
> Im using an external usr_courier and have the pins
> all
> set to defaults.  Does anyone have any ideas?
> 
> Ben
> 
> __
> Do You Yahoo!?
> Get personalized email addresses from Yahoo! Mail
> http://personal.mail.yahoo.com/
[EMAIL PROTECTED]


__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12502&t=12496
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: async issues - still cant get it to dial [7:12496]

2001-07-16 Thread Farhan Ahmed

are u getting the answer of access server or no
is it stays on verifying password or ur router doesnt dial at all
check your modem chat script at 56k.com
send me 

debug ppp negotiation


-Original Message-
From: No Data [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 8:33 PM
To: [EMAIL PROTECTED]
Subject: async issues - still cant get it to dial [7:12496]


Im still stuggling with an async connection.  Using
Ejay's wonderful help last week Ive gotten my router
configured but I cant seem to get the modem to dial. 
Right now I am just trying to dial into a remote
dial-in server with ppp, pap authentication.  Here is
my config.

Current configuration:
!
version 12.1
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname Router
!
no logging console
!
!
!
!
!
memory-size iomem 25
ip subnet-zero
!
chat-script dial ABORT ERROR "" "AT Z" OK "ATDT \T"
TIMEOUT 30 CONNECT
!
!
!
interface Serial0
 physical-layer async
 no ip address
 encapsulation ppp
 dialer in-band
 dialer pool-member 1
 async mode dedicated
!
interface Serial1
 no ip address
 shutdown
!
interface FastEthernet0
 ip address 10.129.0.132 255.255.0.0
 speed auto
!
interface Dialer1
 ip address negotiated
 encapsulation ppp
 dialer remote-name ?
 dialer pool 1
 dialer string 1308334
 dialer hold-queue 100
 dialer-group 1
 ppp authentication pap
 ppp pap sent-username 'name' password 'password'
!
ip classless
ip route 0.0.0.0 0.0.0.0 10.129.0.1
ip route 150.150.0.0 255.255.0.0 Dialer1
no ip http server
!
dialer-list 1 protocol ip permit
!
line con 0
 transport input none
line 1
 no exec
 script dialer dial
 modem InOut
 modem autoconfigure type usr_courier
 transport input all
 stopbits 1
 flowcontrol hardware
line aux 0
line vty 0 4
 login
!
end


Im using an external usr_courier and have the pins all
set to defaults.  Does anyone have any ideas?

Ben

__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12501&t=12496
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Off Topic: DNS issue !!! [7:12448]

2001-07-16 Thread Ayers, Michael

I've seen this error with the Microsoft DNS caching servers and some
Internet Unix boxes.  Seems to be a DNS compatibility issue.  

Here is the Scenario.  You have a Microsoft DNS server that your exchange
server uses?  If so, try adding another Internet DNS server to the Exchange
server's DNS server search order. 

 


Thank You,


Michael Ayers
Network Engineer
 > OneNeck IT Services
(480) 539-2203
(800) 272-3077


 -Original Message-
From:   Raees Ahmed Shaikh [mailto:[EMAIL PROTECTED]] 
Sent:   Sunday, July 15, 2001 10:50 PM
To: [EMAIL PROTECTED]
Subject:Off Topic: DNS issue !!! [7:12448]

Dear Friends,

I am facing a very strange problem with our Mailing System Exchange5.5sp4.
The issue is that we are not able to send email message to some of the sites
on the internet.  Most of the other popular sites , you can say 90% of the
sites are reachable by our email clients.  But when the clients try to send
message to those few site, they get and Non-Delivery-Report saying that the
mail could not be delivered.  Strange enough  that email address is
reachable through yahoo, hotmail and other sites.  

I have checked our router for any access-list blocking but I am sure nothing
is of that sort, no access-lists are controlling those addresses. Our ISP
from whom we are connected to the internet is also able to reach that sites.
But we using the ISP's DNS servers for name resolution cannot connect to
those particular hosts.

One strange behavior though, when I tried to trace route a website add, for
that particular mail host, I is taking more than 15 hops and then declared
unreachable by our Static Router, No Dynamic protocol is running between us
and our ISP, we are using default route.

Any help or insights would be valuable and really be appreciated.

I know this has nothing to do with Cisco, but the fact is Applications, and
User Usability is driving the Technology. so this mail is not so uncommon
for a Cisco SE.

Thanks and Regards,

S. Raees

[GroupStudy.com removed an attachment of type image/jpeg which had a name of
Glacier Bkgrd.jpg]
Privileged/Confidential Information may be contained in this message or
attachments hereto.  Please advise immediately if you or your employer do
not consent to Internet email for messages of this kind.  Opinions,
conclusions and other information in this message that do not relate to the
official business of this company shall be understood as neither given nor
endorsed by it.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12503&t=12448
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



ccie security study group [7:12504]

2001-07-16 Thread Patrick Bass

There was some interest in a CCIE security study group...looks like one
already exists!
http://groups.yahoo.com/group/cciesecurity




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12504&t=12504
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Alert: HTTP bug makes nearly all Cisco routers vulnerable [7:12505]

2001-07-16 Thread Watson, Rick, CTR, OUSDC

As I understand it, excuse me if I am wrong, but this bug is focused on the
ability of newer routers to be managed via http, not so much to deny port 80
traffic. There is a means, by using a particular string, to gain admin level
privileges on the affected router. It has been said that using TACACS will
resolve this problem, as well as the 'no ip http server' command. Also this
bug affects IOS version 11.1 and above...so for all those using old IOS (I
am guilty also)...smile you're delay in upgrading has been worthwhile..!!



-Original Message-
From: Chuck Larrieu [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 12:00 PM
To: [EMAIL PROTECTED]
Subject: RE: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12493]


I remain curious about this. filtering http access sources from untrusted
interfaces and destined for router interfaces does not work? I'll have to
try this in the lab

access-list 101 deny tcp untrusted_network router_interface eq 80
access-list 101 permit ip any any

Chuck

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Liang Mark J Civ AFRL/PROI
Sent: Monday, July 16, 2001 8:39 AM
To: [EMAIL PROTECTED]
Subject: RE: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12489]


You could always disable HTTP service on you routers.

mark

-Original Message-
From: Sean Young [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 8:29 AM
To: [EMAIL PROTECTED]
Subject: Re: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12487]


This Cisco bug will BITE only if you use local account.  If you use
TACACS for Authentication, Authorization and Accounting (AAA), then you
do NOT to have to worry about this bug.  I've been trying to test it in
the lab without success because I use TACACS.  If anyone think I am
wrong, please contact me and straight me out.

Sean

>From: "cisco skin" >Reply-To: "cisco skin" >To: [EMAIL PROTECTED]
>Subject: Re: Alert: HTTP bug makes nearly all Cisco routers vulnerable
[7:12478] >Date: Mon, 16 Jul 2001 10:37:54 -0400 > >Check your MSFC's!!!
> > >""Oke Oyebanji"" wrote in message
>[EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > > Hi Everybody, > > > >
This was a released from TechRepublic on Cisco routers vulnerablity early
> > this morning, please do check it out and take necessary precaution.
For > > details check: > > > >
http://www.techrepublic.com/article.jhtml?id=r00220010716mco02.htm > > >
> Have a nice day. > > > > Kind regards, > > Banji. > > > > > >
_
> > Get Your Private, Free E-mail from MSN Hotmail at
http://www.hotmail.com. > > > > [GroupStudy.com removed an attachment of
type application/msword which had >a > > name of Cisco Routers Bugs.doc]
misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Get your FREE download of MSN Explorer at http://explorer.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12505&t=12505
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: isochronous [7:12486]

2001-07-16 Thread Donald B Johnson jr

I was looking for something more in-depth than a dictionary definition.



- Original Message -
From: "Paul" 
To: 
Sent: Monday, July 16, 2001 8:41 AM
Subject: Re: isochronous [7:12486]


> If you haven't already try:
>
> http://www.cisco.com/univercd/cc/td/doc/cisintwk/ita/itai.htm
>
> http://www.webopedia.com/
>
> http://www.worldcom.com/tools-resources/communications_library
>
> Cheers, Paul
>
>
>   - Original Message -
>   From: Donald B Johnson jr
>   To: [EMAIL PROTECTED]
>   Sent: Monday, July 16, 2001 4:26 PM
>   Subject: isochronous [7:12486]
>
>
>   Does anyone have a link to some detailed information concerning
> isochronous,
>   pleisochronous, or any other flavor of communication. I did a couple of
>   searches and was not satisfied with the results.
>   Thanks
>   Don




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12506&t=12486
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: ISDN status [7:12499]

2001-07-16 Thread John Neiberger

According to http://www.cisco.com/warp/public/129/bri_sh_isdn_stat.html,
a state of init or established means that the BRI is functioning
correctly.  Any other state indicates an error.

HTH,
John

>>> "SH Wesson"  7/16/01 10:43:36 AM >>>
What does it mean when that L2 status is in state=init instead of 
state=established as in the following message.

Layer 2 Status:
TEI = 82, Ces = 1, SAPI = 0, State = MULTIPLE_FRAME_ESTABLISHED
TEI = 84, Ces = 2, SAPI = 0, State = MULTIPLE_FRAME_ESTABLISHED
TEI 82, ces = 1, state = 5(init)
spid1 configured, no LDN, spid1 sent, spid1 valid
Endpoint ID Info: epsf = 0, usid = 70, tid = 1
TEI 84, ces = 2, state = 5(init)
spid2 configured, no LDN, spid2 sent, spid2 valid
Endpoint ID Info: epsf = 0, usid = 71, tid = 1

Thanks.

_
Get your FREE download of MSN Explorer at http://explorer.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12507&t=12499
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Resume ... [7:12495]

2001-07-16 Thread Ole Drews Jensen

John,

This is not a site for resumees.

However, if you follow the job link below, you can contact the companies
listed and/or see if they have any needs for something you're interested in.

Hth,

Ole

~~~
 Ole Drews Jensen
 Systems Network Manager
 CCNA, MCSE, MCP+I
 RWR Enterprises, Inc.
 [EMAIL PROTECTED]
~~~ 
 http://www.OleDrews.com/CCNP
~~~
 NEED A JOB ???
 http://www.oledrews.com/job
~~~


-Original Message-
From: Ho, John (JOHO) [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 11:33 AM
To: [EMAIL PROTECTED]
Subject: Resume ... [7:12495]


Hello,
   Attached is a copy of my resume.
   Thank you for your consideration.


   John Ho


> 

[GroupStudy.com removed an attachment of type application/msword which had a
name of JH_RES.doc]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12508&t=12495
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: isochronous [7:12486]

2001-07-16 Thread Paul

http://grouper.ieee.org/groups/1394/1/Documents/BR052R01.pdf

Best I have got!
  - Original Message -
  From: Donald B Johnson jr
  To: Paul ; [EMAIL PROTECTED]
  Sent: Monday, July 16, 2001 9:00 PM
  Subject: Re: isochronous [7:12486]


  I was looking for something more in-depth than a dictionary definition.



  - Original Message -
  From: "Paul" 
  To: 
  Sent: Monday, July 16, 2001 8:41 AM
  Subject: Re: isochronous [7:12486]


  > If you haven't already try:
  >
  > http://www.cisco.com/univercd/cc/td/doc/cisintwk/ita/itai.htm
  >
  > http://www.webopedia.com/
  >
  > http://www.worldcom.com/tools-resources/communications_library
  >
  > Cheers, Paul
  >
  >
  >   - Original Message -
  >   From: Donald B Johnson jr
  >   To: [EMAIL PROTECTED]
  >   Sent: Monday, July 16, 2001 4:26 PM
  >   Subject: isochronous [7:12486]
  >
  >
  >   Does anyone have a link to some detailed information concerning
  > isochronous,
  >   pleisochronous, or any other flavor of communication. I did a couple of
  >   searches and was not satisfied with the results.
  >   Thanks
  >   Don




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12509&t=12486
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Source Quench [7:12477]

2001-07-16 Thread Priscilla Oppenheimer

I doubt it's related to a problem with the NIC. If there were a problem 
with the NIC, it would probably be unable to respond at all or to send the 
source quench.

The server is just telling you that it doesn't have buffers or other 
resources to handle the ping. When you ping from the Unix machine, what is 
the timeout? Does the Unix machine send less often than the router, 
resulting in the server not getting overwhelmed?

What else is the server doing? I have seen Mac OS send source quench when 
pinged. I have never considered it a problem. The Mac is OK in every other 
respect.

I'm glad this topic came up again because I had previously said that source 
quench was obsolsete per RFC 1812. RFC 1812 is Requirements for IPv4 
Routers. A router should not send a source quench.

But a host may send a source quench. Per RFC 1122, Requirements for IP 
Hosts, "a host may send a source quench message if it is approaching, or 
has reached, the point at which it is forced to discard incoming datagrams 
due to a shortage of reassembly buffers or other resources."

Even though RFC 1122 is old, it has not been replaced as far as I can tell. 
So, source quench is not obsolete for hosts.

Priscilla

At 10:29 AM 7/16/01, Amit Gupta wrote:
>Hi All,
>
>I am getting a " Source Quench message " from one of
>my HP-UX Servers when I try to ping it from an NT
>machine / Switch
>
>I am getting the following msg when I ping the server
>from the external router
>Sending 5, 100-byte ICMP Echos to x.x.x.x timeout is 2
>seconds:
>Q
>
>However if I ping the same server from a Unix machine
>/ server, it is ok.
>
>Could it be a problem with the server NIC
>
>Thanks & Regards
>
>Amit
>
>
>
>
>
>
>
>__
>Do You Yahoo!?
>Get personalized email addresses from Yahoo! Mail
>http://personal.mail.yahoo.com/


Priscilla Oppenheimer
http://www.priscilla.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12510&t=12477
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: async issues - still cant get it to dial [7:12496]

2001-07-16 Thread Hire, Ejay

1. Reverse telnet to the modem to verify it is working okay.
2. Clear line x
3. debug dialer events & ping 150.150.x.x to see if it is activating the
dialer interface.
4. look confused.

-Original Message-
From: No Data [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 12:33 PM
To: [EMAIL PROTECTED]
Subject: async issues - still cant get it to dial [7:12496]


Im still stuggling with an async connection.  Using
Ejay's wonderful help last week Ive gotten my router
configured but I cant seem to get the modem to dial. 
Right now I am just trying to dial into a remote
dial-in server with ppp, pap authentication.  Here is
my config.

Current configuration:
!
version 12.1
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname Router
!
no logging console
!
!
!
!
!
memory-size iomem 25
ip subnet-zero
!
chat-script dial ABORT ERROR "" "AT Z" OK "ATDT \T"
TIMEOUT 30 CONNECT
!
!
!
interface Serial0
 physical-layer async
 no ip address
 encapsulation ppp
 dialer in-band
 dialer pool-member 1
 async mode dedicated
!
interface Serial1
 no ip address
 shutdown
!
interface FastEthernet0
 ip address 10.129.0.132 255.255.0.0
 speed auto
!
interface Dialer1
 ip address negotiated
 encapsulation ppp
 dialer remote-name ?
 dialer pool 1
 dialer string 1308334
 dialer hold-queue 100
 dialer-group 1
 ppp authentication pap
 ppp pap sent-username 'name' password 'password'
!
ip classless
ip route 0.0.0.0 0.0.0.0 10.129.0.1
ip route 150.150.0.0 255.255.0.0 Dialer1
no ip http server
!
dialer-list 1 protocol ip permit
!
line con 0
 transport input none
line 1
 no exec
 script dialer dial
 modem InOut
 modem autoconfigure type usr_courier
 transport input all
 stopbits 1
 flowcontrol hardware
line aux 0
line vty 0 4
 login
!
end


Im using an external usr_courier and have the pins all
set to defaults.  Does anyone have any ideas?

Ben

__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12511&t=12496
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: async issues - still cant get it to dial [7:12496]

2001-07-16 Thread Farhan Ahmed

use config maker 

-Original Message-
From: No Data [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 9:05 PM
To: [EMAIL PROTECTED]
Subject: RE: async issues - still cant get it to dial [7:12496]


I should be more specific I think.  Im not even
getting the modem to dial.  I think my problem is with
the chat script.  I checked 56k.com and still have no
idea how to write the script (yep, Im a complete
newbie with modems)  I believe I have the DIP switches
set correctly now (3 and 8 down for the USR modem). 
The initialization string that the cisco website says
to use is AT&F1S0=1 while 56k.com says AT&F1 should be
fine.  Maybe that narrows down the problem Im having.

Ben

--- Farhan Ahmed  wrote:
> are u getting the answer of access server or no
> is it stays on verifying password or ur router
> doesnt dial at all
> check your modem chat script at 56k.com
> send me 
> 
> debug ppp negotiation
> 
> 
> -Original Message-
> From: No Data [mailto:[EMAIL PROTECTED]]
> Sent: Monday, July 16, 2001 8:33 PM
> To: [EMAIL PROTECTED]
> Subject: async issues - still cant get it to dial
> [7:12496]
> 
> 
> Im still stuggling with an async connection.  Using
> Ejay's wonderful help last week Ive gotten my router
> configured but I cant seem to get the modem to dial.
> 
> Right now I am just trying to dial into a remote
> dial-in server with ppp, pap authentication.  Here
> is
> my config.
> 
> Current configuration:
> !
> version 12.1
> service timestamps debug uptime
> service timestamps log uptime
> no service password-encryption
> !
> hostname Router
> !
> no logging console
> !
> !
> !
> !
> !
> memory-size iomem 25
> ip subnet-zero
> !
> chat-script dial ABORT ERROR "" "AT Z" OK "ATDT \T"
> TIMEOUT 30 CONNECT
> !
> !
> !
> interface Serial0
>  physical-layer async
>  no ip address
>  encapsulation ppp
>  dialer in-band
>  dialer pool-member 1
>  async mode dedicated
> !
> interface Serial1
>  no ip address
>  shutdown
> !
> interface FastEthernet0
>  ip address 10.129.0.132 255.255.0.0
>  speed auto
> !
> interface Dialer1
>  ip address negotiated
>  encapsulation ppp
>  dialer remote-name ?
>  dialer pool 1
>  dialer string 1308334
>  dialer hold-queue 100
>  dialer-group 1
>  ppp authentication pap
>  ppp pap sent-username 'name' password 'password'
> !
> ip classless
> ip route 0.0.0.0 0.0.0.0 10.129.0.1
> ip route 150.150.0.0 255.255.0.0 Dialer1
> no ip http server
> !
> dialer-list 1 protocol ip permit
> !
> line con 0
>  transport input none
> line 1
>  no exec
>  script dialer dial
>  modem InOut
>  modem autoconfigure type usr_courier
>  transport input all
>  stopbits 1
>  flowcontrol hardware
> line aux 0
> line vty 0 4
>  login
> !
> end
> 
> 
> Im using an external usr_courier and have the pins
> all
> set to defaults.  Does anyone have any ideas?
> 
> Ben
> 
> __
> Do You Yahoo!?
> Get personalized email addresses from Yahoo! Mail
> http://personal.mail.yahoo.com/
[EMAIL PROTECTED]


__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12512&t=12496
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



CAT5500 [7:12514]

2001-07-16 Thread Michelle Sanderson

I'm receiving a used Catalyst5500 today and would like help checking that
everything works.  I know I can't test everything that quickly but, what
would you look for?  Can anyone give me a list of things I should at first
to be sure it is O.K?  It is CAT5500 chassis, supervisorII with MMF, and
WS-X5213A 12port module


-
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail - only $35 a year!
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12514&t=12514
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Looking for a Reliable Network Journal/Magazine [7:12421]

2001-07-16 Thread dre

BCR would fit that role nicely.
http://www.bcr.com/bcrmag/

I also like LightReading, but some people think they are vendor biased
(pro-Nortel, anti-Cisco).
http://www.lightreading.com/

-dre

""Adwoa""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I'm looking for a reliable non-vendor based journal/magazine devoted to
> networking.  Any suggestions?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12515&t=12421
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Looking for a Reliable Network Journal/Magazine [7:12421]

2001-07-16 Thread dre

Look at the source of the message.

-dre

""Kwame""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> What does this response mean?
>
> ""Robert Hanley""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > --- Adwoa  wrote:
> > > I'm looking for a reliable non-vendor based
> > > journal/magazine devoted to
> > > networking.  Any suggestions?
> > [EMAIL PROTECTED]
> >
> >
> > __
> > Do You Yahoo!?
> > Get personalized email addresses from Yahoo! Mail
> > http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12516&t=12421
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



wic-2a/s on 3640 [7:12517]

2001-07-16 Thread No Data

anyone have any experience with a wic-2a/s on a 3640. 
I have IOS version 11.1 and the card is not being
seen.  I think I have to upgrade to IOS version 12.x
in order for the router to see the card.  Can anyone
confirm this?

Ben

__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12517&t=12517
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: isochronous [7:12486]

2001-07-16 Thread Priscilla Oppenheimer

I don't have a link, but I can provide some advice. To understand these 
words, remember your linguistics or Greek classes from college. You did 
take such classes, I hope!? ;-) Math classes help also. What is an 
isosceles triangle, for example? A triangle with two equal sides. Iso means 
"equal" in Greek.

According to Webster's, isochronous or isochronal means uniform in time, 
having equal duration, recurring at regular intervals. For example, a 
multimedia application might require a transport that delivers data at 
regularly occurring, equal intervals. The intervals between data delivery 
events are all equal so that voice and video are not jerky.

Asynchronous means no timing. Adding an "a" negates something in Greek, 
such as an amoral person who has no morals. Data can be delivered at any 
time with asynchronous transmission.

Synchronous is similar to isochronous, but has the additional restriction 
that data is delivered at specific intervals. A common timing is 
established between communicating stations so that both sides know when it 
is OK to send data. There is a separate clocking signal used to get both 
sides "in synch." SONET is an example of a synchronous system. Manchester 
encoding and other LAN encodings are isochronous. With LAN technologies, 
clocking, which is embedded in the signal with the data, occurs at regular 
intervals, but the communicating stations do not synch up to a clock first.

For communications to be truly synchronous, they must share a clock. You 
are probably aware of WAN technologies that require a network clock.

Plesio means "almost" in Greek. Plesiochronous systems, such as the North 
American Digital Hierarchy and European E systems, are almost synchronous. 
They have almost all the same characteristics of a truly synchronous 
system: a clocking signal, data sent at specific intervals, etc. But the 
communicating stations are not sourced from the same clock and so, over the 
long term, get skewed from each other. The inaccuracy of timing will force 
a WAN switch, over time, to repeat or delete frames in order to handle 
buffer underflow or overflow. These are called frame slips.

I have also read that one of the problems with plesiochonuos systems is 
that it is hard to break out one channel. Although isolating a 64-Kbps 
channel from a DS-1 circuit is straightforward, isolating a 64-Kbps channel 
from a DS-3 trunk requires demultiplexing to the DS-1 level first. SONET 
does not have this problem.

Hope that didn't muddy the waters too much!? ;-)

Priscilla



At 11:26 AM 7/16/01, Donald B Johnson jr wrote:
>Does anyone have a link to some detailed information concerning isochronous,
>pleisochronous, or any other flavor of communication. I did a couple of
>searches and was not satisfied with the results.
>Thanks
>Don


Priscilla Oppenheimer
http://www.priscilla.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12519&t=12486
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: urgent question related to vtp [7:11687]

2001-07-16 Thread Priscilla Oppenheimer

At 10:42 AM 7/16/01, Hire, Ejay wrote:

>Q:  How does VTP interact with trunks, if at all?
>A:  VTP's only interaction with trunks is "pruning", removal of unused VLANS
>from trunks where they are not in use. Pruning is supposedly disabled by
>default, but I've had issues with it and always explicitly turn it on or
>off.

I'm so glad to hear you say that. I have had issues with pruning also. I 
thought it was only me! ;-)

Priscilla





Priscilla Oppenheimer
http://www.priscilla.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12518&t=11687
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Sniffer Shareware [7:12520]

2001-07-16 Thread Yhladi Ghfaskovich

Does anyone know if there is a sniffer-like shareware that can run on a pc?
Do anyone have
any cheap suggestions?

Thank you,




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12520&t=12520
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: async issues - still cant get it to dial [7:12496]

2001-07-16 Thread Dennis

Give this a try.  I have it working with USR external modems on 2610
routers--I am using dip switch settings 1 & 4 down everything else up on the
modem.

username  password 

chat-script backup "" "atdt \T" TIMEOUT 60 "CONNECT" \c
!
interface Serial0
 physical-layer async
 ip address negotiated
 encapsulation ppp
 dialer in-band
 dialer idle-timeout 1200
 dialer string 
 dialer-group 1
 no cdp enable
 ppp authentication pap
 ppp pap sent-username  password 

ip route 0.0.0.0 0.0.0.0 Serial0

dialer-list 1 protocol ip permit

line 33
 script dialer backup
 modem InOut
 transport input all
 speed 57600


""No Data""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Im still stuggling with an async connection.  Using
> Ejay's wonderful help last week Ive gotten my router
> configured but I cant seem to get the modem to dial.
> Right now I am just trying to dial into a remote
> dial-in server with ppp, pap authentication.  Here is
> my config.
>
> Current configuration:
> !
> version 12.1
> service timestamps debug uptime
> service timestamps log uptime
> no service password-encryption
> !
> hostname Router
> !
> no logging console
> !
> !
> !
> !
> !
> memory-size iomem 25
> ip subnet-zero
> !
> chat-script dial ABORT ERROR "" "AT Z" OK "ATDT \T"
> TIMEOUT 30 CONNECT
> !
> !
> !
> interface Serial0
>  physical-layer async
>  no ip address
>  encapsulation ppp
>  dialer in-band
>  dialer pool-member 1
>  async mode dedicated
> !
> interface Serial1
>  no ip address
>  shutdown
> !
> interface FastEthernet0
>  ip address 10.129.0.132 255.255.0.0
>  speed auto
> !
> interface Dialer1
>  ip address negotiated
>  encapsulation ppp
>  dialer remote-name ?
>  dialer pool 1
>  dialer string 1308334
>  dialer hold-queue 100
>  dialer-group 1
>  ppp authentication pap
>  ppp pap sent-username 'name' password 'password'
> !
> ip classless
> ip route 0.0.0.0 0.0.0.0 10.129.0.1
> ip route 150.150.0.0 255.255.0.0 Dialer1
> no ip http server
> !
> dialer-list 1 protocol ip permit
> !
> line con 0
>  transport input none
> line 1
>  no exec
>  script dialer dial
>  modem InOut
>  modem autoconfigure type usr_courier
>  transport input all
>  stopbits 1
>  flowcontrol hardware
> line aux 0
> line vty 0 4
>  login
> !
> end
>
>
> Im using an external usr_courier and have the pins all
> set to defaults.  Does anyone have any ideas?
>
> Ben
>
> __
> Do You Yahoo!?
> Get personalized email addresses from Yahoo! Mail
> http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12521&t=12496
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: wic-2a/s on 3640 [7:12517]

2001-07-16 Thread John Neiberger

At a minimum you need 12.0(7)XK or 12.1(1)T to support a WIC-2A/S.

HTH,
John

>>> "No Data"  7/16/01 12:27:10 PM >>>
anyone have any experience with a wic-2a/s on a 3640. 
I have IOS version 11.1 and the card is not being
seen.  I think I have to upgrade to IOS version 12.x
in order for the router to see the card.  Can anyone
confirm this?

Ben

__
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12523&t=12517
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: isochronous [7:12486]

2001-07-16 Thread Donald B Johnson jr

Thank You,

Donald B  Johnson Jr





- Original Message -
From: "Paul" 
To: 
Sent: Monday, July 16, 2001 10:33 AM
Subject: Re: isochronous [7:12486]


> http://grouper.ieee.org/groups/1394/1/Documents/BR052R01.pdf
>
> Best I have got!
>   - Original Message -
>   From: Donald B Johnson jr
>   To: Paul ; [EMAIL PROTECTED]
>   Sent: Monday, July 16, 2001 9:00 PM
>   Subject: Re: isochronous [7:12486]
>
>
>   I was looking for something more in-depth than a dictionary definition.
>
>
>
>   - Original Message -
>   From: "Paul"
>   To:
>   Sent: Monday, July 16, 2001 8:41 AM
>   Subject: Re: isochronous [7:12486]
>
>
>   > If you haven't already try:
>   >
>   > http://www.cisco.com/univercd/cc/td/doc/cisintwk/ita/itai.htm
>   >
>   > http://www.webopedia.com/
>   >
>   > http://www.worldcom.com/tools-resources/communications_library
>   >
>   > Cheers, Paul
>   >
>   >
>   >   - Original Message -
>   >   From: Donald B Johnson jr
>   >   To: [EMAIL PROTECTED]
>   >   Sent: Monday, July 16, 2001 4:26 PM
>   >   Subject: isochronous [7:12486]
>   >
>   >
>   >   Does anyone have a link to some detailed information concerning
>   > isochronous,
>   >   pleisochronous, or any other flavor of communication. I did a couple
of
>   >   searches and was not satisfied with the results.
>   >   Thanks
>   >   Don




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12522&t=12486
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: async issues - still cant get it to dial [7:12496] (FW) [7:12524]RE: async issues - still cant get it to dial [7:12496]

2001-07-16 Thread Hire, Ejay

No Problem.  May I forward these to the group?
-Ejay
P.s. It took me two weeks the first time I tried to make this work.

-Original Message-
From: No Data [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 2:07 PM
To: Hire, Ejay
Subject: RE: async issues - still cant get it to dial [7:12496]

Oh man, that worked.  Thank you so much.  Im now going
to try dial between two routers so if it isnt any
inconvience to you I will probably need more help
later today.  Again, thank you so much.

Ben

--- "Hire, Ejay"  wrote:
> >00:01:48: CHAT1: Chat script dial finished, status
> =
> >Connection timed out; remote host not responding
> 
> This indicates that the connection timed out.  I.e.
> the modem didn't finish
> negotiating before the timeout.  Let's increase the
> timeout in the
> Chatstring.  Also, I saw your post on groupstudy
> about the initialization
> string, let's change that as well.
> 
> Before:
> chat-script dial ABORT ERROR "" "AT&F1" OK "ATDT \T"
> TIMEOUT 30 CONNECT \c
> After:
> chat-script dial ABORT ERROR "" "AT&F&C1&D2" OK
> "ATDT \T" TIMEOUT 60 CONNECT
> \c
> 
> See if that helps.
> 
> -Ejay
> 
> -Original Message-
> From: No Data [mailto:[EMAIL PROTECTED]]
> Sent: Monday, July 16, 2001 1:25 PM
> To: Hire, Ejay
> Subject: RE: async issues - still cant get it to
> dial [7:12496]
> 
> 
> 1.  The modem works ok via reverse telnet
> 
> 2. OK
> 
> 3. here is the out put
> Router#ping 150.150.150.50
> 
> Type escape sequence to abort.
> Sending 5, 100-byte ICMP Echos to 150.150.150.50,
> timeout is 2 seconds:
> 
> 00:01:43: Se0 DDR: rotor dialout [priority]
> 00:01:43: Se0 DDR: Dialing cause ip (s=10.129.0.132,
> d=150.150.150.50)
> 00:01:43: Se0 DDR: Attempting to dial 1308334
> 00:01:43: CHAT1: Attempting async line dialer script
> 00:01:43: CHAT1: Dialing using Modem script: dial &
> System script: none
> 00:01:43: CHAT1: process started
> 00:01:43: CHAT1: Asserting DTR
> 00:01:43: CHAT1: Chat script dial started...
> 00:01:48: CHAT1: Chat script dial finished, status =
> Connection timed out; remot
> e host not responding
> 00:01:48: Se0 DDR: disconnecting call..
> Success rate is 0 percent (0/5)
> Router#
> 00:02:03: Se0 DDR: re-enable timeout
> 00:02:03: DDR: Dialing failed, 3 packets unqueued
> and
> discarded
> Router#
> 
> 4.  The look on my face is definately priceless at
> this point :)
> 
> In the debug the script looks like it is timeing
> out. 
> Here is the script that I have in there now.
> 
> chat-script dial ABORT ERROR "" "AT&F1" OK "ATDT \T"
> TIMEOUT 30 CONNECT \c
> 
> Any ideas?
> 
> Ben
> 
> PS thanks for the help.
> 
> --- "Hire, Ejay"  wrote:
> > 1. Reverse telnet to the modem to verify it is
> > working okay.
> > 2. Clear line x
> > 3. debug dialer events & ping 150.150.x.x to see
> if
> > it is activating the
> > dialer interface.
> > 4. look confused.
> > 
> > -Original Message-
> > From: No Data [mailto:[EMAIL PROTECTED]]
> > Sent: Monday, July 16, 2001 12:33 PM
> > To: [EMAIL PROTECTED]
> > Subject: async issues - still cant get it to dial
> > [7:12496]
> > 
> > 
> > Im still stuggling with an async connection. 
> Using
> > Ejay's wonderful help last week Ive gotten my
> router
> > configured but I cant seem to get the modem to
> dial.
> > 
> > Right now I am just trying to dial into a remote
> > dial-in server with ppp, pap authentication.  Here
> > is
> > my config.
> > 
> > Current configuration:
> > !
> > version 12.1
> > service timestamps debug uptime
> > service timestamps log uptime
> > no service password-encryption
> > !
> > hostname Router
> > !
> > no logging console
> > !
> > !
> > !
> > !
> > !
> > memory-size iomem 25
> > ip subnet-zero
> > !
> > chat-script dial ABORT ERROR "" "AT Z" OK "ATDT
> \T"
> > TIMEOUT 30 CONNECT
> > !
> > !
> > !
> > interface Serial0
> >  physical-layer async
> >  no ip address
> >  encapsulation ppp
> >  dialer in-band
> >  dialer pool-member 1
> >  async mode dedicated
> > !
> > interface Serial1
> >  no ip address
> >  shutdown
> > !
> > interface FastEthernet0
> >  ip address 10.129.0.132 255.255.0.0
> >  speed auto
> > !
> > interface Dialer1
> >  ip address negotiated
> >  encapsulation ppp
> >  dialer remote-name ?
> >  dialer pool 1
> >  dialer string 1308334
> >  dialer hold-queue 100
> >  dialer-group 1
> >  ppp authentication pap
> >  ppp pap sent-username 'name' password 'password'
> > !
> > ip classless
> > ip route 0.0.0.0 0.0.0.0 10.129.0.1
> > ip route 150.150.0.0 255.255.0.0 Dialer1
> > no ip http server
> > !
> > dialer-list 1 protocol ip permit
> > !
> > line con 0
> >  transport input none
> > line 1
> >  no exec
> >  script dialer dial
> >  modem InOut
> >  modem autoconfigure type usr_courier
> >  transport input all
> >  stopbits 1
> >  flowcontrol hardware
> > line aux 0
> > line vty 0 4
> >  login
> > !
> > end
> > 
> > 
> > Im using an external usr_courier and have the pins
> > all
> > set to defaults.  Does anyone have any ideas?
> > 
> > Ben




Message Posted at:

CCBOOTCAMP Labs [7:12526]

2001-07-16 Thread Yhladi Ghfaskovich

I am looking to start my CCIE study and have done some research on practice
labs.
It seems that the CCBOOTCAMP labs are the best known to this list.  Why
would
you buy this lab kit from someone who hasn't passed the CCIE lab?  I have
heard
that Marc Russell has failed the lab several times.  Doesn't this defeat the
purpose?
If this clown didn't pass the labs why would you go to him for study tools?.
His
product is also much more expensive than the other options out there. Does
anyone
have any experience with some of the other products out there?

Thank you,
Yhladi Ghfaskovich
CCNA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12526&t=12526
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Access List problem. [7:12525]

2001-07-16 Thread Robert Fowler

Someone sent me this and I just can't figure it out. I've been staring at it
and trying things since last week. Any ideas?


Jeff Doyle says this access-list can be rewritten with 3 lines and still
provide the same functionality.  Let me know if you guys figure out:

access-list 101 permit ip 172.22.30.6 0.0.0.0 10.0.0.0 0.255.255.255
access-list 101 permit ip 172.22.30.95 0.0.0.0 10.11.12.0 0.0.0.255
access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
access-list 101 permit ip 172.22.0.0 0.0.31.255 192.168.18.0 0.0.0.255
access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0 255.255.255.255

Have fun...


Thank You,
Robert Fowler




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12525&t=12525
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Resume ... [7:12495]

2001-07-16 Thread Peter Slow

It seemed pretty short. I guess you dont have a lot of experience.
/me ducks

-Original Message-
From: Ho, John (JOHO) [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 12:33 PM
To: [EMAIL PROTECTED]
Subject: Resume ... [7:12495]


Hello,
   Attached is a copy of my resume.
   Thank you for your consideration.


   John Ho


> 

[GroupStudy.com removed an attachment of type application/msword which had a
name of JH_RES.doc]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12527&t=12495
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Please help!!!!!!!!!! ARP Cache [7:12475]

2001-07-16 Thread Jonathan Hays

I ran into a sort of similar problem a while back with a PIX failover.
Wouldn't ping
until I cleared the arp cache on the router. The ping should have
repopulated the arp
cache but it didn't. Note that the default arp timeout is 4 hours (unlike
most hosts
where it is typically about 10 minutes).
--
Jonathan

NK Sat wrote:

> Hi Everybody,
>   I need some help on this issue.. I am having Cisco 3600 router with some
> 16 Class-C connected to the Fast Ethernet as secondary addresses.   My host
> were not able to ping the router across the ethernetat all... I was seeing
> the ARP entry of my host on the router but not able to ping the host from
> the router and vice-versa across the ethernet..when i cleared the
> arp-cache everything is working...( Notsure when the trouble may come
> back) Can somebody tell
> 1)  What is the size of the ARP-CACHE, where i can see it and how i can
> manipulate it.
>
> 2) If i have "n" hosts and "n" is the maximum hosts the Arp-cache can
> accomidate when "n+1" host try to get to a host it will send a brodcast and
> get the MAC and get itself into the ARP-Cache removing the oldest entry in
> the ARP right? Apparently this does NOT seem to be happening.. Is
my
> understanding wrong  or is this a weird cisco IOS stuff! which
needs
> the regular upgrade
>
> Any help is greatly appreciated.
>
> Thanks
> Satish
>
> _
> Get your FREE download of MSN Explorer at http://explorer.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12529&t=12475
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



TokenRing MAU/Switch (Singapore Readers !) [7:12528]

2001-07-16 Thread dec Mar

Hi,

I would like to buy/rent Tokenring mau/switch urgently  preferably with RJ45 
Connector.
The Singapore respondents are most welcome. Please reply to me separately.

thanks.
kr
singapore.
_
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12528&t=12528
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Access List problem. [7:12525]

2001-07-16 Thread Farhan Ahmed

i it working or not
what u want to allow disallow forget this1

-Original Message-
From: Robert Fowler [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 11:05 PM
To: [EMAIL PROTECTED]
Subject: Access List problem. [7:12525]


Someone sent me this and I just can't figure it out. I've been staring at it
and trying things since last week. Any ideas?


Jeff Doyle says this access-list can be rewritten with 3 lines and still
provide the same functionality.  Let me know if you guys figure out:

access-list 101 permit ip 172.22.30.6 0.0.0.0 10.0.0.0 0.255.255.255
access-list 101 permit ip 172.22.30.95 0.0.0.0 10.11.12.0 0.0.0.255
access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
access-list 101 permit ip 172.22.0.0 0.0.31.255 192.168.18.0 0.0.0.255
access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0 255.255.255.255

Have fun...


Thank You,
Robert Fowler




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12530&t=12525
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCBOOTCAMP Labs [7:12526]

2001-07-16 Thread Raul F. Fernandez-IGLOU

The labs in my humble opinion are good. I use them. They make you think and
are excellent material to help in the pursuit of the CCIE. Like everyhting
else, these labs are just tools and these tools will only get you so far. A
combination of reading, a lot of configuration(hands on) and
troubleshooting(hands on) and a little luck are keys. If I were you though,
I would worry about passing the CCIE written first. Anyway, why call him a
clown? I dont know the guy personally but you should be a bit more polite.

Raul
- Original Message -
From: "Yhladi Ghfaskovich" 
To: 
Sent: Monday, July 16, 2001 3:06 PM
Subject: CCBOOTCAMP Labs [7:12526]


> I am looking to start my CCIE study and have done some research on
practice
> labs.
> It seems that the CCBOOTCAMP labs are the best known to this list.  Why
> would
> you buy this lab kit from someone who hasn't passed the CCIE lab?  I have
> heard
> that Marc Russell has failed the lab several times.  Doesn't this defeat
the
> purpose?
> If this clown didn't pass the labs why would you go to him for study
tools?.
> His
> product is also much more expensive than the other options out there. Does
> anyone
> have any experience with some of the other products out there?
>
> Thank you,
> Yhladi Ghfaskovich
> CCNA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12531&t=12526
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Access List problem. [7:12525]

2001-07-16 Thread Allen May

I'll try ;)

Let's see:
172.anything from 10.anything
172.22.30.95 from 10.11.12.anything (redundant from above line)
172.22.30.anything denied from 192.168.18.27
172.22.0.0 0.0.31.255 from 192.168.18.anything (denied 1 line above)
172.22.anything deny 192.168.18.64 0.0.0.63 (taken care of 2 lines above)
permit all

So yeah...line 1, 3, and final permit all looks like it to me...

Allen

- Original Message -
From: "Robert Fowler" 
To: 
Sent: Monday, July 16, 2001 2:05 PM
Subject: Access List problem. [7:12525]


> Someone sent me this and I just can't figure it out. I've been staring at
it
> and trying things since last week. Any ideas?
>
>
> Jeff Doyle says this access-list can be rewritten with 3 lines and still
> provide the same functionality.  Let me know if you guys figure out:
>
> access-list 101 permit ip 172.22.30.6 0.0.0.0 10.0.0.0 0.255.255.255
> access-list 101 permit ip 172.22.30.95 0.0.0.0 10.11.12.0 0.0.0.255
> access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> access-list 101 permit ip 172.22.0.0 0.0.31.255 192.168.18.0 0.0.0.255
> access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0 255.255.255.255
>
> Have fun...
>
>
> Thank You,
> Robert Fowler




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12532&t=12525
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: [sc] Flash Upgrde problem on Cisco 2600 [7:12533]

2001-07-16 Thread Christopher M. Heffner

Is this for a 3810 or 2600 series router that you are trying to recover
??  The subject line says 2600 series but the original message says
trying to recover on a 3810 series router.  They do not work the same
way for recovery.  Which is it ??
 
Christopher M. Heffner
Certified Cisco Systems Instructor
CCSI, CCNA, CCDA, CCIE Candidate
MCT, MCSE, MCNI, MCNE, CLI, CLP, ASE, CTT, A+
  [EMAIL PROTECTED]
 
 
 
-Original Message-
From: Jade Tiger [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 1:34 PM
To: john, Dang; Jeff Theobalt; Fawad Alam; [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Subject: Re: [sc] Flash Upgrde problem on Cisco 2600
 
  
Hello John, 
Try tftp download from the ROMMON. It is designed for situation like the
one you described. 
Tiger 
  http://www.cisco.com/warp/public/471/
 
  "john, Dang"  wrote: 
Hello every one,
I need help for reinstall flash program into Cisco 3810
concentrator router, I think I mess up the flash after
I reload the upgrade ISO,12.0
any one can give me some advise,
thank you


- Original Message -
From: "Jeff Theobalt" 
To: "Fawad Alam" ; 
Cc: 
Sent: Friday, May 18, 2001 12:55 PM
Subject: Re: [sc] Flash Upgrde problem on Cisco 2600


> That is because it is unformatted and there is no IOS on the flash.
>
>
> Therefore, you will need to format the flash . Once this is done
complete
> the following steps exactly to load IOS to the new flash:
>
> when in rommon this is what needs to be done
>
> rommon>IP_ADDRESS= ip address of the router
> rommon>IP_SUBNET_MASK= subnet amsk
> rommon>DEFAULT_GATEWAY= gateway if tftp server is on different subnet
> rommon>TFTP_SERVER= ip address of tftp server
> rommon>TFTP_FILE= name IOS file on the tftp server
>
> rommon>boot
>
> this should fix your problem
>
> -Jeff
>
>
> - Original Message -
> From: Fawad Alam 
> To: 
> Cc: 
> Sent: Friday, May 18, 2001 8:35 AM
> Subject: [sc] Flash Upgrde problem on Cisco 2600
>
>
> > In order to increase flash on my 2600 Router I ordered 16MB Kingston
> Flash.
> > I removed the original 8 MB flash and inserted this new 16MB flash
and
the
> > message I am getting is:
> > rommon 1 > boot
> > device does not contain a valid magic number
> > boot: cannot open "flash:"
> > boot: cannot determine first file name on device "flash:"
> >
> > What should I do for the router to recognize this new flash??
> >
> > Thanks...
> >
> >

_
> > Get Your Private, Free E-mail from MSN Hotmail at
http://www.hotmail.com.
> >
> >
> > --
> > To unsubscribe: echo unsubscribe cisco-cert | mail
[EMAIL PROTECTED]
> >
>
>
> --
> To unsubscribe: echo unsubscribe cisco-cert | mail
[EMAIL PROTECTED]


--
To unsubscribe: echo unsubscribe cisco-cert | mail
[EMAIL PROTECTED]
 
  _  

Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail - only $35 a year!
http://personal.mail.yahoo.com/





Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12533&t=12533
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: [sc] Flash Upgrde problem on Cisco 2600 [7:12513]

2001-07-16 Thread Jade Tiger

Hello John, 
 
Try tftp download from the ROMMON. It is designed for situation like the one
you described.
 
Tiger 
 http://www.cisco.com/warp/public/471/

  "john, Dang"  wrote: Hello every one,
I need help for reinstall flash program into Cisco 3810
concentrator router, I think I mess up the flash after
I reload the upgrade ISO,12.0
any one can give me some advise,
thank you


- Original Message -
From: "Jeff Theobalt" 
To: "Fawad Alam" ; 
Cc: 
Sent: Friday, May 18, 2001 12:55 PM
Subject: Re: [sc] Flash Upgrde problem on Cisco 2600


> That is because it is unformatted and there is no IOS on the flash.
>
>
> Therefore, you will need to format the flash . Once this is done complete
> the following steps exactly to load IOS to the new flash:
>
> when in rommon this is what needs to be done
>
> rommon>IP_ADDRESS= ip address of the router
> rommon>IP_SUBNET_MASK= subnet amsk
> rommon>DEFAULT_GATEWAY= gateway if tftp server is on different subnet
> rommon>TFTP_SERVER= ip address of tftp server
> rommon>TFTP_FILE= name IOS file on the tftp server
>
> rommon>boot
>
> this should fix your problem
>
> -Jeff
>
>
> - Original Message -
> From: Fawad Alam 
> To: 
> Cc: 
> Sent: Friday, May 18, 2001 8:35 AM
> Subject: [sc] Flash Upgrde problem on Cisco 2600
>
>
> > In order to increase flash on my 2600 Router I ordered 16MB Kingston
> Flash.
> > I removed the original 8 MB flash and inserted this new 16MB flash and
the
> > message I am getting is:
> > rommon 1 > boot
> > device does not contain a valid magic number
> > boot: cannot open "flash:"
> > boot: cannot determine first file name on device "flash:"
> >
> > What should I do for the router to recognize this new flash??
> >
> > Thanks...
> >
> >
_
> > Get Your Private, Free E-mail from MSN Hotmail at
http://www.hotmail.com.
> >
> >
> > --
> > To unsubscribe: echo unsubscribe cisco-cert | mail
[EMAIL PROTECTED]
> >
>
>
> --
> To unsubscribe: echo unsubscribe cisco-cert | mail [EMAIL PROTECTED]


--
To unsubscribe: echo unsubscribe cisco-cert | mail [EMAIL PROTECTED]


-
Do You Yahoo!?
Get personalized email addresses from Yahoo! Mail - only $35 a year!
http://personal.mail.yahoo.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12513&t=12513
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



0x21042 instead of 0x2142 [7:12534]

2001-07-16 Thread Richard Bosire

Hellos'

I have a cisco 1601 router which I entered confreg 0x21042 instead of
0x2142 during password recovery.
Now, when i reboot the router I am getting
CCC on the console !!!

Anyone come across this before
cheers
./bosire



--
___
+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$

richard bosire
ccn[ap], ccd[ap], ccs[ae]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12534&t=12534
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Access List problem. [7:12525]

2001-07-16 Thread Jeremy Felt

I have a familiar feeling that I'm going to be completely off on this one,
but hopefully the correct answer will be posted so I can figure out why.

As long as the correct "deny" statements are there, it seems to me that the
other "permit" statements would be redundant when used with the "permit all"
statement at the end.

access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0 255.255.255.255


Looking forward to the answer,

- Jeremy Felt
[EMAIL PROTECTED]


- Original Message -
From: "Robert Fowler" 
To: 
Sent: Monday, July 16, 2001 2:05 PM
Subject: Access List problem. [7:12525]


> Someone sent me this and I just can't figure it out. I've been staring at
it
> and trying things since last week. Any ideas?
>
>
> Jeff Doyle says this access-list can be rewritten with 3 lines and still
> provide the same functionality.  Let me know if you guys figure out:
>
> access-list 101 permit ip 172.22.30.6 0.0.0.0 10.0.0.0 0.255.255.255
> access-list 101 permit ip 172.22.30.95 0.0.0.0 10.11.12.0 0.0.0.255
> access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> access-list 101 permit ip 172.22.0.0 0.0.31.255 192.168.18.0 0.0.0.255
> access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0 255.255.255.255
>
> Have fun...
>
>
> Thank You,
> Robert Fowler




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12535&t=12525
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCBOOTCAMP Labs [7:12526]

2001-07-16 Thread John Neiberger

I've have heard that the ccbootcamp labs are the hardest and most
complete labs available, which justifies the high price tag.  Whether
that's absolutely true or not, many people use them and feel that they
are great tools to prepare for the lab.

And you should refrain from calling people clowns on this list.  I
believe that Marc participates on the groupstudy list, or at least reads
it, and at least a few of his friends and associates actively
participate on the list.  Calling him a clown doesn't make you look very
good in this environment.  ;-)

Actually, I am getting the wiff of a trollI'm not sure, my sinuses
are a little stuffed up today, but I'd swear I can smell it

John

>>> "Yhladi Ghfaskovich"  7/16/01
1:06:45 PM >>>
I am looking to start my CCIE study and have done some research on
practice
labs.
It seems that the CCBOOTCAMP labs are the best known to this list. 
Why
would
you buy this lab kit from someone who hasn't passed the CCIE lab?  I
have
heard
that Marc Russell has failed the lab several times.  Doesn't this
defeat the
purpose?
If this clown didn't pass the labs why would you go to him for study
tools?.
His
product is also much more expensive than the other options out there.
Does
anyone
have any experience with some of the other products out there?

Thank you,
Yhladi Ghfaskovich
CCNA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12537&t=12526
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Be able to find out from which state a user is using Yahoo [7:12536]

2001-07-16 Thread Juan Blanco

People,
I would like to be able to know from which state a user is using the
yahoo messenger or the ISP to this user is connected to. I did try to do
this with an sniffer but it goes as far as
the yahoo messenger server.

Thanks

Tony




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12536&t=12536
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCBOOTCAMP Labs [7:12526]

2001-07-16 Thread Kevin Wigle

The labs are a collaborative effort and they do have at least one CCIE on
board.

You have "heard" that Marc Russell hasn't passed the labs several times.  If
I tell you to buy Cisco stock right now are you going to do that?

I don't know, your post seems to be just an excuse to start a flame war.

That's not needed here.

Kevin Wigle

- Original Message -
From: "Yhladi Ghfaskovich" 
To: 
Sent: Monday, 16 July, 2001 15:06
Subject: CCBOOTCAMP Labs [7:12526]


> I am looking to start my CCIE study and have done some research on
practice
> labs.
> It seems that the CCBOOTCAMP labs are the best known to this list.  Why
> would
> you buy this lab kit from someone who hasn't passed the CCIE lab?  I have
> heard
> that Marc Russell has failed the lab several times.  Doesn't this defeat
the
> purpose?
> If this clown didn't pass the labs why would you go to him for study
tools?.
> His
> product is also much more expensive than the other options out there. Does
> anyone
> have any experience with some of the other products out there?
>
> Thank you,
> Yhladi Ghfaskovich
> CCNA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12538&t=12526
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: 0x21042 instead of 0x2142 [7:12534]

2001-07-16 Thread John Neiberger

I'm going to assume that the router ignored the last '2' so you
effectively typed 0x2104.  But, since the thrid and fourth bit positions
in the last nibble aren't used, this is the same as 0x2100.  On a
2600/3600 that would cause it to boot to ROM monitor mode.  I'm not sure
what it does on a 1601.  :-)  

Try sending a break signal and see if you can get it to drop to rommon
(or whatever similar mode the 1601 has) and then reset the config
register from there.

Good luck!

John

>>> "Richard Bosire"  7/16/01 1:58:57 PM
>>>
Hellos'

I have a cisco 1601 router which I entered confreg 0x21042 instead of
0x2142 during password recovery.
Now, when i reboot the router I am getting
CCC on the console !!!

Anyone come across this before
cheers
./bosire



--
___
+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$

richard bosire
ccn[ap], ccd[ap], ccs[ae]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12539&t=12534
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



VIP2 [7:12540]

2001-07-16 Thread Lupi, Guy

Does anyone know if the VIP2 supports Gigabit ethernet?  I have a 7507 that
I need to put Gigabit Ethernet in but I only see a card for the VIP4.  Can
anyone confirm this?  Thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12540&t=12540
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCBOOTCAMP Labs [7:12526]

2001-07-16 Thread Donald B Johnson jr

maybe they don't want to pass.
Then they couldn't go anymore, if you know what I mean.
Do you know what I mean.
how are you doin?
Waas up



- Original Message -
From: "Raul F. Fernandez-IGLOU" 
To: 
Sent: Monday, July 16, 2001 12:38 PM
Subject: Re: CCBOOTCAMP Labs [7:12526]


> The labs in my humble opinion are good. I use them. They make you think
and
> are excellent material to help in the pursuit of the CCIE. Like everyhting
> else, these labs are just tools and these tools will only get you so far.
A
> combination of reading, a lot of configuration(hands on) and
> troubleshooting(hands on) and a little luck are keys. If I were you
though,
> I would worry about passing the CCIE written first. Anyway, why call him a
> clown? I dont know the guy personally but you should be a bit more polite.
>
> Raul
> - Original Message -
> From: "Yhladi Ghfaskovich"
> To:
> Sent: Monday, July 16, 2001 3:06 PM
> Subject: CCBOOTCAMP Labs [7:12526]
>
>
> > I am looking to start my CCIE study and have done some research on
> practice
> > labs.
> > It seems that the CCBOOTCAMP labs are the best known to this list.  Why
> > would
> > you buy this lab kit from someone who hasn't passed the CCIE lab?  I
have
> > heard
> > that Marc Russell has failed the lab several times.  Doesn't this defeat
> the
> > purpose?
> > If this clown didn't pass the labs why would you go to him for study
> tools?.
> > His
> > product is also much more expensive than the other options out there.
Does
> > anyone
> > have any experience with some of the other products out there?
> >
> > Thank you,
> > Yhladi Ghfaskovich
> > CCNA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12541&t=12526
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Off Topic: DNS issue !!! [7:12448]

2001-07-16 Thread Dennis Olson

I too have a similar problem that is yet unresolved. Mine however seems to
be to any site hosted by criticalpathway.net. Try pinging that
smtp.whateversiteitis.com or change smtp to mail and see if
criticalpathway.net ends up in the name.

- Original Message -
From: "Ayers, Michael" 
To: 
Sent: Monday, July 16, 2001 10:08 AM
Subject: RE: Off Topic: DNS issue !!! [7:12448]


> I've seen this error with the Microsoft DNS caching servers and some
> Internet Unix boxes.  Seems to be a DNS compatibility issue.
>
> Here is the Scenario.  You have a Microsoft DNS server that your exchange
> server uses?  If so, try adding another Internet DNS server to the
Exchange
> server's DNS server search order.
>
>
>
>
> Thank You,
>
>
> Michael Ayers
> Network Engineer
>  > OneNeck IT Services
> (480) 539-2203
> (800) 272-3077
>
>
>  -Original Message-
> From: Raees Ahmed Shaikh [mailto:[EMAIL PROTECTED]]
> Sent: Sunday, July 15, 2001 10:50 PM
> To: [EMAIL PROTECTED]
> Subject: Off Topic: DNS issue !!! [7:12448]
>
> Dear Friends,
>
> I am facing a very strange problem with our Mailing System Exchange5.5sp4.
> The issue is that we are not able to send email message to some of the
sites
> on the internet.  Most of the other popular sites , you can say 90% of the
> sites are reachable by our email clients.  But when the clients try to
send
> message to those few site, they get and Non-Delivery-Report saying that
the
> mail could not be delivered.  Strange enough  that email address is
> reachable through yahoo, hotmail and other sites.
>
> I have checked our router for any access-list blocking but I am sure
nothing
> is of that sort, no access-lists are controlling those addresses. Our ISP
> from whom we are connected to the internet is also able to reach that
sites.
> But we using the ISP's DNS servers for name resolution cannot connect to
> those particular hosts.
>
> One strange behavior though, when I tried to trace route a website add,
for
> that particular mail host, I is taking more than 15 hops and then declared
> unreachable by our Static Router, No Dynamic protocol is running between
us
> and our ISP, we are using default route.
>
> Any help or insights would be valuable and really be appreciated.
>
> I know this has nothing to do with Cisco, but the fact is Applications,
and
> User Usability is driving the Technology. so this mail is not so uncommon
> for a Cisco SE.
>
> Thanks and Regards,
>
> S. Raees
>
> [GroupStudy.com removed an attachment of type image/jpeg which had a name
of
> Glacier Bkgrd.jpg]
> Privileged/Confidential Information may be contained in this message or
> attachments hereto.  Please advise immediately if you or your employer do
> not consent to Internet email for messages of this kind.  Opinions,
> conclusions and other information in this message that do not relate to
the
> official business of this company shall be understood as neither given nor
> endorsed by it.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12542&t=12448
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: 0x21042 instead of 0x2142 [7:12534]

2001-07-16 Thread Ayers, Michael

Try this:  2104 and 2102 should look  the same, but 1042 would get you 1200
baud.  Try setting your console to 1200 and see if it works


Michael
 -Original Message-
From:   Richard Bosire [mailto:[EMAIL PROTECTED]] 
Sent:   Monday, July 16, 2001 12:59 PM
To: [EMAIL PROTECTED]
Subject:0x21042 instead of 0x2142 [7:12534]

Hellos'

I have a cisco 1601 router which I entered confreg 0x21042 instead of
0x2142 during password recovery.
Now, when i reboot the router I am getting
CCC on the console !!!

Anyone come across this before
cheers
./bosire



--
___
+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$

richard bosire
ccn[ap], ccd[ap], ccs[ae]
Privileged/Confidential Information may be contained in this message or
attachments hereto.  Please advise immediately if you or your employer do
not consent to Internet email for messages of this kind.  Opinions,
conclusions and other information in this message that do not relate to the
official business of this company shall be understood as neither given nor
endorsed by it.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12543&t=12534
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Access List problem. [7:12525]

2001-07-16 Thread no mail

I like Jeremy's answer.  It seems like the permit all at the end makes
everything else except the denies redundant.


""Jeremy Felt""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I have a familiar feeling that I'm going to be completely off on this one,
> but hopefully the correct answer will be posted so I can figure out why.
>
> As long as the correct "deny" statements are there, it seems to me that
the
> other "permit" statements would be redundant when used with the "permit
all"
> statement at the end.
>
> access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0 255.255.255.255
>
>
> Looking forward to the answer,
>
> - Jeremy Felt
> [EMAIL PROTECTED]
>
>
> - Original Message -
> From: "Robert Fowler"
> To:
> Sent: Monday, July 16, 2001 2:05 PM
> Subject: Access List problem. [7:12525]
>
>
> > Someone sent me this and I just can't figure it out. I've been staring
at
> it
> > and trying things since last week. Any ideas?
> >
> >
> > Jeff Doyle says this access-list can be rewritten with 3 lines and still
> > provide the same functionality.  Let me know if you guys figure out:
> >
> > access-list 101 permit ip 172.22.30.6 0.0.0.0 10.0.0.0 0.255.255.255
> > access-list 101 permit ip 172.22.30.95 0.0.0.0 10.11.12.0 0.0.0.255
> > access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> > access-list 101 permit ip 172.22.0.0 0.0.31.255 192.168.18.0 0.0.0.255
> > access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> > access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0
255.255.255.255
> >
> > Have fun...
> >
> >
> > Thank You,
> > Robert Fowler




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12544&t=12525
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Access List problem. [7:12525]

2001-07-16 Thread Allen May

Oh wait...4th line down is a permit so line 3 stays.  I see it in 4 lines.
Anybody else see it differently?


- Original Message -
From: "Allen May" 
To: 
Sent: Monday, July 16, 2001 2:44 PM
Subject: Re: Access List problem. [7:12525]


> I'll try ;)
>
> Let's see:
> 172.anything from 10.anything
> 172.22.30.95 from 10.11.12.anything (redundant from above line)
> 172.22.30.anything denied from 192.168.18.27
> 172.22.0.0 0.0.31.255 from 192.168.18.anything (denied 1 line above)
> 172.22.anything deny 192.168.18.64 0.0.0.63 (taken care of 2 lines above)
> permit all
>
> So yeah...line 1, 3, and final permit all looks like it to me...
>
> Allen
>
> - Original Message -
> From: "Robert Fowler"
> To:
> Sent: Monday, July 16, 2001 2:05 PM
> Subject: Access List problem. [7:12525]
>
>
> > Someone sent me this and I just can't figure it out. I've been staring
at
> it
> > and trying things since last week. Any ideas?
> >
> >
> > Jeff Doyle says this access-list can be rewritten with 3 lines and still
> > provide the same functionality.  Let me know if you guys figure out:
> >
> > access-list 101 permit ip 172.22.30.6 0.0.0.0 10.0.0.0 0.255.255.255
> > access-list 101 permit ip 172.22.30.95 0.0.0.0 10.11.12.0 0.0.0.255
> > access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> > access-list 101 permit ip 172.22.0.0 0.0.31.255 192.168.18.0 0.0.0.255
> > access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> > access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0
255.255.255.255
> >
> > Have fun...
> >
> >
> > Thank You,
> > Robert Fowler




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12545&t=12525
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



DNS and Firewalls [7:12547]

2001-07-16 Thread Nabil Fares

Greetings all,

Looking for methods to inform outside users that our network is down,
complete outage. Assuming users visiting our website, they'll redirected and
flagged with a banner advising network is down for now.  This method needs
to be fully automated.  Do you guys have any suggestion?

Thanks for your time.

Nabil

I hope my request is clear!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12547&t=12547
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Access List problem. [7:12525]

2001-07-16 Thread Allen May

True, but it won't block the specific addresses inside the subnets he
allowed all from above the deny all.


- Original Message -
From: "no mail" 
To: 
Sent: Monday, July 16, 2001 3:41 PM
Subject: Re: Access List problem. [7:12525]


> I like Jeremy's answer.  It seems like the permit all at the end makes
> everything else except the denies redundant.
>
>
> ""Jeremy Felt""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > I have a familiar feeling that I'm going to be completely off on this
one,
> > but hopefully the correct answer will be posted so I can figure out why.
> >
> > As long as the correct "deny" statements are there, it seems to me that
> the
> > other "permit" statements would be redundant when used with the "permit
> all"
> > statement at the end.
> >
> > access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> > access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> > access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0
255.255.255.255
> >
> >
> > Looking forward to the answer,
> >
> > - Jeremy Felt
> > [EMAIL PROTECTED]
> >
> >
> > - Original Message -
> > From: "Robert Fowler"
> > To:
> > Sent: Monday, July 16, 2001 2:05 PM
> > Subject: Access List problem. [7:12525]
> >
> >
> > > Someone sent me this and I just can't figure it out. I've been staring
> at
> > it
> > > and trying things since last week. Any ideas?
> > >
> > >
> > > Jeff Doyle says this access-list can be rewritten with 3 lines and
still
> > > provide the same functionality.  Let me know if you guys figure out:
> > >
> > > access-list 101 permit ip 172.22.30.6 0.0.0.0 10.0.0.0 0.255.255.255
> > > access-list 101 permit ip 172.22.30.95 0.0.0.0 10.11.12.0 0.0.0.255
> > > access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> > > access-list 101 permit ip 172.22.0.0 0.0.31.255 192.168.18.0 0.0.0.255
> > > access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> > > access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0
> 255.255.255.255
> > >
> > > Have fun...
> > >
> > >
> > > Thank You,
> > > Robert Fowler




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12546&t=12525
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: 0x21042 instead of 0x2142 [7:12534]

2001-07-16 Thread Harrison, Michael

The original problem may be that the register may be confused from too many
digits in the config register.  You tried to enter 0x21042.  Remember that
it is a 16bit register and can only accept 4 hex characters.  Do the break
sequence and reset it to the desired configuration.  
This link describes the config register in detail.
http://www.cisco.com/univercd/cc/td/doc/product/access/acs_fix/cis2000/c2000
qs/22812.htm





-Original Message-
From: Ayers, Michael [mailto:[EMAIL PROTECTED]]
Sent: Monday, July 16, 2001 4:35 PM
To: [EMAIL PROTECTED]
Subject: RE: 0x21042 instead of 0x2142 [7:12534]


Try this:  2104 and 2102 should look  the same, but 1042 would get you 1200
baud.  Try setting your console to 1200 and see if it works


Michael
 -Original Message-
From:   Richard Bosire [mailto:[EMAIL PROTECTED]] 
Sent:   Monday, July 16, 2001 12:59 PM
To: [EMAIL PROTECTED]
Subject:0x21042 instead of 0x2142 [7:12534]

Hellos'

I have a cisco 1601 router which I entered confreg 0x21042 instead of
0x2142 during password recovery.
Now, when i reboot the router I am getting
CCC on the console !!!

Anyone come across this before
cheers
./bosire



--
___
+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$;'+$;%+$

richard bosire
ccn[ap], ccd[ap], ccs[ae]
Privileged/Confidential Information may be contained in this message or
attachments hereto.  Please advise immediately if you or your employer do
not consent to Internet email for messages of this kind.  Opinions,
conclusions and other information in this message that do not relate to the
official business of this company shall be understood as neither given nor
endorsed by it.
Blue Cross Blue Shield of Florida, Inc., and its subsidiary and 
affiliate companies are not responsible for errors or omissions in this
e-mail message. Any personal comments made in this e-mail do not reflect the
views of Blue Cross Blue Shield of Florida, Inc.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12548&t=12534
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Access List problem. [7:12525]

2001-07-16 Thread Ayers, Michael

The first 3 conditions definitely don't overlap, so the deny is all you
need, but the next 2 lines kind of overlap, and using only the deny
statement  (line 5) would block traffic that the prior permit statement
(line 4) would have allowed.   The only way to get rid of one of the lines
is to see if there is a real weird wildcard mask that could do a deny that
looks like the permit and deny together, but I can't see it right off.  

DON'T DELETE LINE 4!  

The remaining deny statement would deny all traffic from 172.22.x.y to hosts
64-128 on the 192.168.18 network. 
Line 4 would have allowed the hosts from 172.22.0-31.x to all of the
192.168.18.x network.  These conditions overlap and need to be there
separately.


access-list 101 permit ip host 172.22.30.6 10.0.0.0 0.255.255.255
 Someone sent me this and I just can't figure it out. I've been staring at
it
> and trying things since last week. Any ideas?
>
>
> Jeff Doyle says this access-list can be rewritten with 3 lines and still
> provide the same functionality.  Let me know if you guys figure out:
>
> access-list 101 permit ip 172.22.30.6 0.0.0.0 10.0.0.0 0.255.255.255
> access-list 101 permit ip 172.22.30.95 0.0.0.0 10.11.12.0 0.0.0.255
> access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> access-list 101 permit ip 172.22.0.0 0.0.31.255 192.168.18.0 0.0.0.255
> access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0 255.255.255.255
>
> Have fun...
>
>
> Thank You,
> Robert Fowler
Privileged/Confidential Information may be contained in this message or
attachments hereto.  Please advise immediately if you or your employer do
not consent to Internet email for messages of this kind.  Opinions,
conclusions and other information in this message that do not relate to the
official business of this company shall be understood as neither given nor
endorsed by it.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12550&t=12525
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Access List problem. [7:12525]

2001-07-16 Thread Jeremy Felt

Thanks for the vote of support.  I'm still very new at this.  However, I
have this habit of second guessing myself all the time, and I'm pretty sure
my response was incorrect.

The first two permit statements can be considered redundant because there
are no deny statements leading to the "10.0.0.0" network.

So that means the 3 statements relating to network "192.168.18.0" need to be
reworked into 2.

The first statement denies ip traffic from "172.22.30.0-172.22.30.255"
access to the node "192.168.18.27".

The second statement permits ip traffic from "172.22.0.0-172.22.31.255" to
access any nodes from "192.168.18.0-192.168.18.255", this exludes the
traffic denied already above.

The third statement denies ip traffic from "172.22.0.0-172.22.255.255"
access to any nodes from "192.168.18.64-192.168.18.127".

If the second statement is taken out, then the third statement denies it
before it is able to get to the permit all statement.

In order for the second statement to be taken out, the third statement needs
to be modified so that traffic from "172.22.32.0-172.22.255.255" is denied
access to any nodes from "192.168.18.64-192.168.18.127".  I don't know if
this can be done by using a wildcard mask though, and I'm not able to figure
it out.

Sorry about the length, hopefully somebody can post the correct answer this
time.  :-p

- Jeremy Felt
[EMAIL PROTECTED]


- Original Message -
From: "no mail" 
To: 
Sent: Monday, July 16, 2001 3:41 PM
Subject: Re: Access List problem. [7:12525]


> I like Jeremy's answer.  It seems like the permit all at the end makes
> everything else except the denies redundant.
>
>
> ""Jeremy Felt""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > I have a familiar feeling that I'm going to be completely off on this
one,
> > but hopefully the correct answer will be posted so I can figure out why.
> >
> > As long as the correct "deny" statements are there, it seems to me that
> the
> > other "permit" statements would be redundant when used with the "permit
> all"
> > statement at the end.
> >
> > access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> > access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> > access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0
255.255.255.255
> >
> >
> > Looking forward to the answer,
> >
> > - Jeremy Felt
> > [EMAIL PROTECTED]
> >
> >
> > - Original Message -
> > From: "Robert Fowler"
> > To:
> > Sent: Monday, July 16, 2001 2:05 PM
> > Subject: Access List problem. [7:12525]

...[snipped message]...

> > > access-list 101 permit ip 172.22.30.6 0.0.0.0 10.0.0.0 0.255.255.255
> > > access-list 101 permit ip 172.22.30.95 0.0.0.0 10.11.12.0 0.0.0.255
> > > access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> > > access-list 101 permit ip 172.22.0.0 0.0.31.255 192.168.18.0 0.0.0.255
> > > access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> > > access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0
> 255.255.255.255
> > >
> > > Have fun...
> > >
> > >
> > > Thank You,
> > > Robert Fowler




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12549&t=12525
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Access List problem. [7:12525]

2001-07-16 Thread Jeremy Felt

After thinking on it a bit more, the wildcard mask I would use if it were
legal would be 0.0.223.255

This seems to accomplish the task, though according to my knowledge, it's
not useable.  So now I'm with Allen in 4 lines, not 3.

- Jeremy Felt
[EMAIL PROTECTED]


- Original Message -
From: "Jeremy Felt" 
To: 
Sent: Monday, July 16, 2001 4:22 PM
Subject: Re: Access List problem. [7:12525]


...[snip message].

> In order for the second statement to be taken out, the third statement
needs
> to be modified so that traffic from "172.22.32.0-172.22.255.255" is denied
> access to any nodes from "192.168.18.64-192.168.18.127".  I don't know if
> this can be done by using a wildcard mask though, and I'm not able to
figure
> it out.
>
> Sorry about the length, hopefully somebody can post the correct answer
this
> time.  :-p
>
> - Jeremy Felt
> [EMAIL PROTECTED]
>
>
> - Original Message -
> From: "no mail"
> To:
> Sent: Monday, July 16, 2001 3:41 PM
> Subject: Re: Access List problem. [7:12525]
>
>
> > I like Jeremy's answer.  It seems like the permit all at the end makes
> > everything else except the denies redundant.
> >
> >
> > ""Jeremy Felt""  wrote in message
> > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > I have a familiar feeling that I'm going to be completely off on this
> one,
> > > but hopefully the correct answer will be posted so I can figure out
why.
> > >
> > > As long as the correct "deny" statements are there, it seems to me
that
> > the
> > > other "permit" statements would be redundant when used with the
"permit
> > all"
> > > statement at the end.
> > >
> > > access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> > > access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64 0.0.0.63
> > > access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0
> 255.255.255.255
> > >
> > >
> > > Looking forward to the answer,
> > >
> > > - Jeremy Felt
> > > [EMAIL PROTECTED]
> > >
> > >
> > > - Original Message -
> > > From: "Robert Fowler"
> > > To:
> > > Sent: Monday, July 16, 2001 2:05 PM
> > > Subject: Access List problem. [7:12525]
>
> ...[snipped message]...
>
> > > > access-list 101 permit ip 172.22.30.6 0.0.0.0 10.0.0.0 0.255.255.255
> > > > access-list 101 permit ip 172.22.30.95 0.0.0.0 10.11.12.0 0.0.0.255
> > > > access-list 101 deny ip 172.22.30.0 0.0.0.255 192.168.18.27 0.0.0.0
> > > > access-list 101 permit ip 172.22.0.0 0.0.31.255 192.168.18.0
0.0.0.255
> > > > access-list 101 deny ip 172.22.0.0 0.0.255.255 192.168.18.64
0.0.0.63
> > > > access-list 101 permit ip 0.0.0.0 255.255.255.255 0.0.0.0
> > 255.255.255.255
> > > >
> > > > Have fun...
> > > >
> > > >
> > > > Thank You,
> > > > Robert Fowler




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=12552&t=12525
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



  1   2   >