Cisco Practical Studies, Multiple MAC Address [7:35935]

2002-02-20 Thread Derek Gaff

Hi there

In the Cisco Press Practical Studies Book, page 1159 under Misc Cisco IOS
Software Configuration there as follows.

A mainframe resides on VLAN 2. It has three IP addresses: 165.10.10.100, 101
and 102. These IP Addresses correspond to a single MAC Address of
2200.0001.0001. Configure the Router R4, to support forwarding traffic to a
single MAC address for all these IP addresses.

Does anybody know were I can get some information on how to configure this as
I have looked around the Cisco web site and cannot find anything on this
(Maybe I am serching for the wrong thing).

Thanks in advance

Cheers

Derek




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35935&t=35935
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Trunk Port and multi-VLAN port [7:35859]

2002-02-20 Thread Alfredo Pulido

Ok, I will be more specific

Let's see, I have 3 Catalyst 3524 XL

configuration Catalyst 1:
int f0/1 -> trunk port with Catalyst 2
int f0/2 -> trunk port with Catalyst 2
int f0/3 -> trunk port with Catalyst 3
int f0/4 -> trunk port with Catalyst 3
int f0/5 -> vlan 1
int f0/6 -> vlan 2
int f0/7 -> I need vlan 1 and vlan 2
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Trunk Port and multi-VLAN port [7:35859]

2002-02-20 Thread Christopher Supino

With the trunks configured on the switches you definitely will not be
able to configure a multi-vlan port. I would recommend adding a second
NIC card to the box that needs to be a member of both VLANs and setting
up two switch ports one in vlan 1 and one in vlan 2.  Or, if it is a
Windows box, I believe that some vendors NICs support 802.1q trunking.
So you could trunk to the box, effectively putting it in both vlans.
Hope this helps.

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Alfredo Pulido
Sent: Wednesday, February 20, 2002 6:01 AM
To: [EMAIL PROTECTED]
Subject: Re: Trunk Port and multi-VLAN port [7:35859]


Ok, I will be more specific

Let's see, I have 3 Catalyst 3524 XL

configuration Catalyst 1:
int f0/1 -> trunk port with Catalyst 2
int f0/2 -> trunk port with Catalyst 2
int f0/3 -> trunk port with Catalyst 3
int f0/4 -> trunk port with Catalyst 3
int f0/5 -> vlan 1
int f0/6 -> vlan 2
int f0/7 -> I need vlan 1 and vlan 2
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35938&t=35859
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: NAT frustration [7:35928]

2002-02-20 Thread Nurudeen Aderinto

Dear Tim,

Your configuration looks faulty. You did not specified the port for static
"Ip nat inside source static 192.168.3.2 209.x.x.x " And some other things
there

Pathfinder
""Tim Booth""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Dear listers,
>
>   I am frustrated. I had this working perfectly, then my isp decided to
> change my ip address, then I had to change my configs and now it's not
> working. What I want to do is have NAT running on my 2511, be able to
> telnet into it, and have my dns server behind the nat in a private
> network. I was instructed earlier to have this partial config (IOS ver.
> 12.1(10) ):
> Interface ethernet0
> Ip address 209.x.x.x
> Ip nat outside
> !
> Interface s0
> Ip address 192.168.1.1
> Ip nat inside
> !
> !! Maps nat translation process
> Ip nat inside source list 101 interface Ethernet0 overload
> !! For dns server mapping
> Ip nat inside source static 192.168.3.2 209.x.x.x
> !
> !! Removes external address from nat process
> Access-list 101 deny ip host 209.x.x.x any
> !! Allows internal translation
> Access-list 101 permit ip 192.168.0.0 0.0.255.255 any
> !
> Ip route 0.0.0.0 0.0.0.0 e0 permanent
> Ip route 192.168.3.0 255.255.255.0 serial 0 permanent
> !
> end !! EOF
>   With the dns server mapping, nat forwards *all* outside traffic bound
> directly to the 209.x.x.x interface to 192.168.3.2; so pings from the
> interface don't work, and telnets to the interface don't work.  I had it
> working where it would only forward appropriate packets to the dns
> server, and also allow telnetting from the outside to the 2511. I must
> be missing something.
>
>   With or without the dns mapping all the private network clients are
> translated correctly. Telnet works fine from the inside. My
> understanding is that with cisco's NAT ALG, DNS translation is seamless
> *and* you still should be able to use that nat address for telnetting
> into the router. I'm not sure why it was working before, if it isn't
> supposed to work like this.
>
>   Any ideas? Am I forgetting something that is obvious?
>
> Confused,
> Tim Booth
> MCDBA, CCNP, CCDP, CCIE written
> -
> Those who would give up essential liberty to purchase a little temporary
> safety deserve neither liberty nor safety.
> Benjamin Franklin, 1759




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35937&t=35928
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Trunk Port and multi-VLAN port [7:35859]

2002-02-20 Thread Alfredo Pulido

Ok, but if my device is a router cisco with only 1 interface ethernet
example (Cisco 827). What is the solutions? I Install GigaStack module for
interconnect Switch and  so to eliminate trunk port  and I can hability
"mode multi".


--
--
 Alfredo Pulido   [EMAIL PROTECTED]
 Dept. Sistemas, IdecNet S.A.
 Juan XXIII 44 // E-35004 Las Palmas de Gran Canaria,
 Las Palmas // SPAIN
 Tel: +34 828 111 000   Fax: +34 828 111 112
 http://www.idecnet.com/
--
""Christopher Supino""  escribis en el mensaje
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Alfredo,
>
> There is one important difference. A multi vlan port strips the tags
> from the frames it passess for each vlan and a trunk port leaves the
> VLAN tags intact. So it really depends on what you are attempting to
> accomplish here. Can you be more specific?
>
>
> Christopher Supino
> CCNP, CCDP, MCSE, CNA5, ASE
> Senior Network Design Engineer
>
> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
> MADMAN
> Sent: Tuesday, February 19, 2002 11:49 AM
> To: [EMAIL PROTECTED]
> Subject: Re: Trunk Port and multi-VLAN port [7:35859]
>
>
> To what are you conecting the multivlan port?  Since a trunk is by
> definition multiple VLANs can you set up all the ports as trunks?
>
>   Dave
>
> Alfredo Pulido wrote:
> >
> > Hello ,
> > I have a problem, I have 3 Catalyst 3524XL EN, but I need enable
> > Trunk Port and Multi-Vlan in various Interfaces. I had read in Cisco
> Documentation
> > that is not possible "You cannot configure a multi-VLAN port when a
> > trunk
> is
> > configured on the switch." referents " Chapter 5 Creating and
> > Maintaining VLANs".
> > My questions is, How could I to solve this problem?  I will need
> install
> > a GigaStack module or something 1000Base-X GBIC module for eliminate
> > trunk port.
> >
> > Sincerely
> >
> > --
> > --
> >  Alfredo Pulido   [EMAIL PROTECTED]
> >  Dept. Sistemas, IdecNet S.A.
> >  Juan XXIII 44 // E-35004 Las Palmas de Gran Canaria,
> >  Las Palmas // SPAIN
> >  Tel: +34 828 111 000   Fax: +34 828 111 112
> >  http://www.idecnet.com/
> > --
> --
> David Madland
> Sr. Network Engineer
> CCIE# 2016
> Qwest Communications Int. Inc.
> [EMAIL PROTECTED]
> 612-664-3367
>
> "Emotion should reflect reason not guide it"
>
> [GroupStudy.com removed an attachment of type text/x-vcard which had a
name
> of Christopher Supino ([EMAIL PROTECTED]).vcf]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35939&t=35859
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Current CD Rom Documentation [7:35930]

2002-02-20 Thread ME

Last week they had the latest and greatest Dec 2000 ROM at the lab ;)

""Chuck""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> This post gives me a good excuse to break open the most recent doc CD that
I
> have - dated October 2001.
>
> this one contains the 12.2 documentation. It is in the new format, with
the
> drop down menus.
>
> The search engine is still crap, and your best bet is to continue to
> practice drilling down through the menus.
>
> I don't think it is a violation of NDA to mention that my last time
through
> the lab, the doc CD available to me was still using the old format. I
don't
> recall if 12.2 was on it or not. It may have been, but since 12.1 was what
> was advertised as the Lab IOS, I just went to the 12.1 doc section when I
> needed to look something up. Not that it mattered, because my pod had not
> yet been upgraded at the time.  ;->
>
> HTH
>
> Chuck
>
>
> ""McHugh Randy""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > Does anyone know where or how to obtain a current Cisco CD Rom
> documentation
> > CD with the latest IOS of like 12.2 on it without like taking an
official
> > Cisco course from a Training partner? I have a bunch of them are
outdated
> > with only up to IOS 12.1. They certainley seem to be difficult to
navigate
> > and do a search on . Any suggestions welcome.
> > Thank you,
> > Randy




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35941&t=35930
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



IDS 4210 help [7:35940]

2002-02-20 Thread Shane Stockman

I am currently setting up a IDS sensor 4210 and would like to know how to 
set up the command interface and the monitoring interface as I would like to 
manage it from my CSPM server.

I need to get the command interface to talk to the switch but I don't know 
where to set an ip address for it so that my CSPM software cna find it.

Thanks in advance.

_
Get your FREE download of MSN Explorer at http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35940&t=35940
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Review of Boson CCIE Security Pre-Qualification Test # 1 [7:35942]

2002-02-20 Thread Joshua Barnes

Like I said before, BOSON is heralded for some strange reason,  I think
that they are terrible.  The absolute best thing you can do in the
absence of hands on is read that book 3 times.  Your benefits are two
fold.  You get to be a doggone good reader and you might actually LEARN
something.

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Patrick Bass
Sent: Wednesday, February 20, 2002 1:31 AM
To: [EMAIL PROTECTED]
Subject: Review of Boson CCIE Security Pre-Qualification Test # 1
[7:35932]

There are a lot of errors in this exam.  Some of it is just being plain
wrong, more of it is "data-entry" type errors.
The author has always written me back when I notify him of an error; and
this has been, unfortunately, quite often.  Also,
one thing I do not like at all is the questions that have four answers,
and
it says "Select the 4 best answers" or whatever.
How hard would it have been to put a couple of extra answers in these
questions to at least making it challenging?  Finally,
some of the web-links cited in the answers have nothing to do with the
question; perhaps this are more of the "data-entry"
errors?

For $39 dollars, its hard to go wrong... but I've seen Boson put out
much
better quality stuff before.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35942&t=35942
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Intense School Spam [7:35944]

2002-02-20 Thread Paul Borghese

I am trying to track down the source of spam messages I received from
Intense School.   It turns out Intense School was using a list purchased and
run from Beach Front Quizzer.   I believe BFQ is collecting e-mail addresses
from this list but need additional proof before taking action.

If you have never had dealing with BFQ, but received the spam, please
contact me.  They told Intense School that their list was a "double" opt-in
list.  Frankly I never opted-in their list.

Thanks!

Paul




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35944&t=35944
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



China/Cisco connection [7:35946]

2002-02-20 Thread B.J. Wilson

An interesting article I came across this morning:

http://www.weeklystandard.com/Content/Public/Articles/000/000/000/922dgmtd.a
sp

Comments?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35946&t=35946
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: CCNP Boot camps [7:35927]

2002-02-20 Thread jONATHAN fOSTER

I would check into Global knowledge.
 I haven`t taken their boot camps but I have taken the standard 1 week cisco
course and it was top notch.
 They have more CCIE`s working for them than any other training company and
almost any company period.
 Thats why I would chose them.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35945&t=35927
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: CCNP Boot camps [7:35927]

2002-02-20 Thread Tel Khan

Where are you in the World?

I have heard a good response for www.Wavetech.com there expensive an based
in the uk.

How long did it take to obtain you BSCN?


Good luck 





Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35934&t=35927
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: CCNP Boot camps [7:35927]

2002-02-20 Thread Joshua Barnes

The best one is to not to go to one.  If you have two years expy in the
field with Cisco just brush up on a cramsession and go take the exam.
Shouldn't be too hard.  I despise keeping those market killers alive.

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
chris fong
Sent: Wednesday, February 20, 2002 12:07 AM
To: [EMAIL PROTECTED]
Subject: CCNP Boot camps [7:35927]

I have been offered a paid opportunity to attend a
CCNP boot camp of my choice. I have two years
experience in networking with Cisco equipment and have
already passed BSCN. The ability to acquire the CCNP
in two weeks time is very attractive. Does anybody
have any suggestions or recommendations on which CCNP
boot camp is best?

__
Do You Yahoo!?
Yahoo! Sports - Coverage of the 2002 Olympic Games
http://sports.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35943&t=35927
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



PIX Firewall authentication [7:35947]

2002-02-20 Thread sajith nair

Hi,
I have a customer with Proxy server and he want to
replace it with PIX.The customer want to authenticate
all users before they access internet.Whether the PIX
can support authentication thru a normal Windows NT
server than going thru a Radius/Tacacs server?I talked
with Cisco TAC and they told it is possible.But I am
confused.Can anyone of you can guide me please.
Thanks in advance.
Saj

__
Do You Yahoo!?
Yahoo! Sports - Coverage of the 2002 Olympic Games
http://sports.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35947&t=35947
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: China/Cisco connection [7:35946]

2002-02-20 Thread Chuck

so.

BFD, packets can be sniffed and access to certain sites can be blocked. so
what? nothing new here. We get questions on this list regularly about how to
do it. There are several companies, including but not only Cisco, who make a
lot of money selling content blocking products.

Most things in life can be used for good or evil. The internet is no
different. Corporate and government response to the internet is no
different.

BTW, does the US government filter access to the internet for it's employees
and from it's offices? bet they do!

Chuck


""B.J. Wilson""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> An interesting article I came across this morning:
>
>
http://www.weeklystandard.com/Content/Public/Articles/000/000/000/922dgmtd.a
> sp
>
> Comments?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35949&t=35946
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: What to choose? [7:35857]

2002-02-20 Thread Tim Lovelace

These arent the actual bootcamp labs. It is CCIE R&S Lab Exam Study Guide
(Version 3.00).

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Rogell, Dennis
Sent: Tuesday, February 19, 2002 6:33 PM
To: [EMAIL PROTECTED]
Subject: RE: What to choose? [7:35857]


Tim
ccbootcamp are excellent worth every penny

Dennis Rogell CNE,NNSS,NNSE, CCNP
nextiraone
Email : [EMAIL PROTECTED]
Phone: (954) 846-5128

> -Original Message-
> From: Tim Lovelace [SMTP:[EMAIL PROTECTED]]
> Sent: Tuesday, February 19, 2002 10:41
> To:   [EMAIL PROTECTED]
> Subject:  What to choose? [7:35857]
>
> Has anyone used either of the materials below, and if so are either/both
> worth purchasing? Thanks
>
>
> http://www.networkforce.com/lab/scenarios.html#TheCompleteLab1
>
> http://www.ccbootcamp.com/labstudy.htm




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35948&t=35857
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Review of Boson CCIE Security Pre-Qualification Test # 1 [7:35951]

2002-02-20 Thread Persio Pucci

I remember when I was studing for both my CCNA and CCNP that I checked out
some BOSON, Sybex and Cisco tests (Cisco ones came with CCNP Certification
Library).

IMHO, I think that BOSON is very very poor. Sybex seems to be a little
better, but still, I think that Cisco tests are the ones that are more
reallistic to the actual tests. I believe that nobody better than Cisco to
know a test of its own, right?

Persio

- Original Message -
From: "Joshua Barnes" 
To: 
Sent: Wednesday, February 20, 2002 10:43 AM
Subject: RE: Review of Boson CCIE Security Pre-Qualification Test # 1
[7:35942]


> Like I said before, BOSON is heralded for some strange reason,  I think
> that they are terrible.  The absolute best thing you can do in the
> absence of hands on is read that book 3 times.  Your benefits are two
> fold.  You get to be a doggone good reader and you might actually LEARN
> something.
>
> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
> Patrick Bass
> Sent: Wednesday, February 20, 2002 1:31 AM
> To: [EMAIL PROTECTED]
> Subject: Review of Boson CCIE Security Pre-Qualification Test # 1
> [7:35932]
>
> There are a lot of errors in this exam.  Some of it is just being plain
> wrong, more of it is "data-entry" type errors.
> The author has always written me back when I notify him of an error; and
> this has been, unfortunately, quite often.  Also,
> one thing I do not like at all is the questions that have four answers,
> and
> it says "Select the 4 best answers" or whatever.
> How hard would it have been to put a couple of extra answers in these
> questions to at least making it challenging?  Finally,
> some of the web-links cited in the answers have nothing to do with the
> question; perhaps this are more of the "data-entry"
> errors?
>
> For $39 dollars, its hard to go wrong... but I've seen Boson put out
> much
> better quality stuff before.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35951&t=35951
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: gre [7:35933]

2002-02-20 Thread Brian

I have seen the use of a permit gre in access lists to allow for Microsoft
pptp tunneling over a t1.  There are likely other similar uses.

Brian

- Original Message -
From: "kaushalender" 
To: 
Sent: Wednesday, February 20, 2002 12:03 AM
Subject: gre [7:35933]


> Hi, group
>
> What is gre and how is work.Why i can not browse the internet when i am
> using gre.
> plz help me i am facing probem in wccp v 1 .i have squid 2.3Stable4-10
> on redhat 7.2 .when i use tcpdump on linux it shows lots of gre packet
> coming on ethernet the packet r
>
> gre-proto-0x883e  such kind of packet r coming and my customer r
> not able to browse the internet .I am using 2610 router with 12.2(7) ios
> .plz help me




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35950&t=35933
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: PIX Firewall authentication [7:35947]

2002-02-20 Thread Roy

u can use the acs/windowns to authenticate the users


""sajith nair""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi,
> I have a customer with Proxy server and he want to
> replace it with PIX.The customer want to authenticate
> all users before they access internet.Whether the PIX
> can support authentication thru a normal Windows NT
> server than going thru a Radius/Tacacs server?I talked
> with Cisco TAC and they told it is possible.But I am
> confused.Can anyone of you can guide me please.
> Thanks in advance.
> Saj
>
> __
> Do You Yahoo!?
> Yahoo! Sports - Coverage of the 2002 Olympic Games
> http://sports.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35952&t=35947
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: VOIP Certification [7:35879]

2002-02-20 Thread Tim Medley

Kelly,

The CCNP Voice specialization was retired late last year. It was
replaced by the IP Telephony Support Specialist certification.

http://www.cisco.com/warp/public/10/wwtraining/certprog/cqs/iptel/

Anyway, I have taken the CIPT and CVoice exams. I mostly used the last 3
years of Cisco IPT experience, but I did use the Cisco Press, Voice over
IP Fundamentals for the CVoice exam.

There are a couple of other Cisco Press books that were not available
when I took the exams, but I would highly recommend them. Cisco
CallManager Fundamentals, Cisco IP Telephony (CIPT course book), Cisco
Voice over Frame Relay, ATM, and IP (CVoice course book) and Integrating
Voice and Data networks. All are Cisco Press books. Another good
resource is CCO.

Both tests were fair, the exam outline says it all. Lots of product
knowledge, product selection, CallManager Administration and features,
aand little QoS, were on the CIPT exam. The CVoice exam covered lots of
product knowledge, gateway selection, dial plans, call routing, gateway
configuration, some QoS, Cat 6509 configuration for voice and QoS, and
some basic atm and frame-relay knowledge.

I have not taken the DQoS exam yet. I am planning on taking the exam in
the next couple of weeks. I am using the Cisco Press IP QoS book as well
as some of the above CIPT and CVoice books to prepare.

Hope this helps.

Tim

Tim Medley - CCNP+Voice, CCDP
Sr. Network Architect
VoIP Group
iReadyWorld
 
p 704.943.3615
f 704.525.9119

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] 
Sent: Tuesday, February 19, 2002 2:03 PM
To: [EMAIL PROTECTED]
Subject: VOIP Certification [7:35879]

Has anyone out there attempted the CIPT, CVOICE, and QOS tests yet for
the
CCNP / Voice Specialization certification?  If so, what training did you
use
and what was the tone of the tests?

Thanks,
Kelley.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35953&t=35879
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



SNMP Vulnerabilities [7:35954]

2002-02-20 Thread Kevin Pan

Has anyone heard about the captioned problem on Cisco devices?

Please comment.

Rgds,
Kevin




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35954&t=35954
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: CCNP [7:35756]

2002-02-20 Thread Kaminski, Shawn G

Too expensive. There are other sites out there that have good reputations
that are much less expensive.

Shawn K.

-Original Message-
From: Lintemuth, Tom [mailto:[EMAIL PROTECTED]] 
Sent: Tuesday, February 19, 2002 9:58 AM
To: [EMAIL PROTECTED]
Subject: FW: CCNP [7:35756]


I have heard some good things about ftexp.com.

-Original Message-
From: Joshua Barnes [mailto:[EMAIL PROTECTED]]
Sent: Monday, February 18, 2002 3:09 PM
To: [EMAIL PROTECTED]
Subject: RE: CCNP [7:35756]


I have found that going through the book a couple of times is the best
thing.  The Boson's are heralded but I don't know why.  I think they suck.
JMO.

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Liko
Agosta
Sent: Monday, February 18, 2002 2:17 PM
To: [EMAIL PROTECTED]
Subject: CCNP [7:35756]

Whats the best test practise suite for CCNP

I am doing the exams in this order

a. switching
b. routing
c. remote access
d. support

whats the best for

a. switching
b. routing




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35955&t=35756
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: IDS 4210 help [7:35940]

2002-02-20 Thread Rob Webber

You will need to connect to the console of the IDS.  Log in as netrangr
(note: NO "e" in netrangr). Default Passord: "attack"  Then enter:
#sysconfig-sensor

You will see a menu:

1 - IP Address

2 - IP Netmask

3 - IP Host Name

4 - Default Route

5 - Network Access Control

6 - Communications Infrastructure

7 - Date/Time and Timezone

8 - Passwords

9 - Secure Communications

x - Exit

At a minimum you will need to configure 1, 2, 4, 5 and 6 (for #5 enter the
network that the CSPM server resides on. If its 192.168.15.0/24, enter
192.168.15.) For #6, write down the info you assign the IDS. You will need
this for the CSPM. You will need org. number (such as "1"), Node # (such as
"1") and org name (like your domain name).

HTH, Rob.

CCIE 6922

""Shane Stockman""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I am currently setting up a IDS sensor 4210 and would like to know how to
> set up the command interface and the monitoring interface as I would like
to
> manage it from my CSPM server.
>
> I need to get the command interface to talk to the switch but I don't know
> where to set an ip address for it so that my CSPM software cna find it.
>
> Thanks in advance.
>
> _
> Get your FREE download of MSN Explorer at
http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35956&t=35940
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: CCNP [7:35756]

2002-02-20 Thread Kaminski, Shawn G

I have used Boson in the past and some of them are good. However, I feel
that there are also other materials out there that are much less expensive
that cover more of what is on the exams. I think that some of the authors
for Boson/Quizware don't concentrate on what is actually being tested on and
just write a bunch of questions and answers. If you have to use Boson
products, you may want to check out Quizware.com, which is affiliated with
Boson. Their products have more material at a better price.  

Disclaimer: I have done work for Boson/Quizware

Shawn K.

-Original Message-
From: Roberts, Larry [mailto:[EMAIL PROTECTED]] 
Sent: Tuesday, February 19, 2002 8:57 PM
To: [EMAIL PROTECTED]
Subject: RE: CCNP [7:35756]


I have to agree with David on this.

I don't think that someone could just take the Boson's over and over and
pass ( at least not for the higher level tests ) but I think they do a good
job of focusing you on what is and isn't the more important parts of the
test.

I just took ( and passed YEA! ) the CCIE Security written today. I have been
studying for what seems an eternity, but was at an impass as to what I would
actually need to know for the test.

I purchased the CCIE Security practice exam last night and used it for that
last minute test my skills check. It brought to light some weak spots in my
understanding that I didn't realize where there. On those questions I
followed the links to the Cisco documents and re-learned the subject matter
over. I don't credit my passing to the test, but I do think that they helped
me improve my score , and MOST importantly my understanding of the subject.

Only complaint that I have with the Boson tests is that there tends to be a
large amount of grammatical errors, some of which can lead to confusion.

Although after taking the Security test in which there were some just plain
wrong questions, not to mention the ones that make no sense, that might help
them feel more similar :)

Thanks

Larry 

-Original Message-
From: David L. Blair [mailto:[EMAIL PROTECTED]] 
Sent: Tuesday, February 19, 2002 8:08 PM
To: [EMAIL PROTECTED]
Subject: Re: CCNP [7:35756]


I completely DISAGREE!!

Boson's test do not simulator the actual testing experience,  i.e.. the
vagueness of Cisco's test.  Boson's do test the level of knowledge needed to
pass a given test.

Disclaimer:  I have done some consulting for Boson in the past and present.
I used Boson's test for every Cisco test that I have passed which was before
I did any consulting for Boson.


"Through Complexity there is Simplicity,
   Through Simplicity there is Complexity"

David L. Blair - CCNP, CCNA, MCSE, CBE, A+, 3Wizard



""Joshua Barnes""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I have found that going through the book a couple of times is the best
> thing.  The Boson's are heralded but I don't know why.  I think they 
> suck. JMO.
>
> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf
> Of Liko Agosta
> Sent: Monday, February 18, 2002 2:17 PM
> To: [EMAIL PROTECTED]
> Subject: CCNP [7:35756]
>
> Whats the best test practise suite for CCNP
>
> I am doing the exams in this order
>
> a. switching
> b. routing
> c. remote access
> d. support
>
> whats the best for
>
> a. switching
> b. routing




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35957&t=35756
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Review of Vconsole CCIE Security Practice Exam [7:35959]

2002-02-20 Thread Patrick Bass

Review of Vconsole CCIE Security Practice Exam

At $50, this exam cost only a few more dollars than the Boson exam; but it's
money well spent.  The questions are very challenging and well written.
I've only seen a couple of errors.  The quality control here seems really
good.

One suggestion to improve this exam is to increase the pool of available
questions (there are 150 right now--but these are good solid questions).
This single addition would make a great exam simulation really awesome!

If you can only get one CCIE security exam simulation; this is the one you
should get.

I'm taking my real exam on Friday, so wish me luck!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35959&t=35959
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: SNMP Vulnerabilities [7:35954]

2002-02-20 Thread Wes

> Author: Kevin Pan ()
> Date:   02-20-02 09:56
> 
> Has anyone heard about the captioned problem on Cisco devices? 
> 
> Please comment. 
> 
> Rgds, 
> Kevin 

Yes, many Cisco devices affected.  However, it looks like you can only cause
the device to reset.  Software fixes being published now.

http://www.cisco.com/warp/public/707/cisco-malformed-snmp-msgs-pub.shtml

I'm not sure how "critical" a vulnerability it is, but regardless, check out
the security advisory and adjust your security stance accordingly.

--Wes



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35958&t=35954
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



FYI - From the SANS / Cisco Security Tool [7:35960]

2002-02-20 Thread Rogers Eric

Note for users of Cisco routers concerned about security: A router
security audit tool will be announced today, the result of cooperative
efforts by experts at the US National Security Agency, UUNET, and
Cable & Wireless, and tested and validated by many of the 170 member
organizations of the Center for Internet Security. The Router Audit
Tool performs an impressively comprehensive check of Cisco router
security, gives an overall score, and points the user to the specific
corrections for problems found.  The tool's authors will conduct a web
briefing today at 1:00 PM (1800 UTC). Both the tool and the briefing
are free.  Register in advance at: http://www.sans.org/webcasts


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35960&t=35960
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: China/Cisco connection [7:35946]

2002-02-20 Thread Chuck

hhh.. them commies, with the full cooperation of cisco, censoring
Groupstudy? Where are all the posts today?


""B.J. Wilson""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> An interesting article I came across this morning:
>
>
http://www.weeklystandard.com/Content/Public/Articles/000/000/000/922dgmtd.a
> sp
>
> Comments?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35961&t=35946
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Announces Global Rollout of New CCIE Security [7:35963]

2002-02-20 Thread ME

Has anyone heard about this one yet?

Differing from CCIE Security, the Cisco Security Specialist 1 demonstrates
an individual's proficiency in designing, installing, and supporting
Cisco-specific security solutions in three core areas of network security:
firewalls, intrusion detection systems and VPNs. Cisco Security Specialist 1
is one of the most difficult focused certifications to achieve, requiring
individuals to pass four rigorous courses and exams.
http://biz.yahoo.com/bw/020220/202213_1.html

Mark Egan, CCIE #8775




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35963&t=35963
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: can you bind two frame relay circuits? [7:35854]

2002-02-20 Thread nrf

I think you mean to say multilink FR.  Seems to me that it's rather
difficult to do PPP multilink on FR (unless, I suppose, you're doing PPPoFR,
but who the hell does that?)


""Michael Williams""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Assuming that you have more than one circuit to the same offsite, you
could
> use PPP Multilink to "bond" them together into a 512 or 768 connection.
>
> Mike W.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35964&t=35854
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Review of Vconsole CCIE Security Practice Exam [7:35959]

2002-02-20 Thread Patrick Bass

The URL to get this exam is : http://www.ccbootcamp.com/secpractest.asp
Several people have already sent me a private e-mail asking for this
contact, so I thought others might like it as well.
I hope GS doesn't strip the URL this time :-)

""Patrick Bass""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Review of Vconsole CCIE Security Practice Exam
>
> At $50, this exam cost only a few more dollars than the Boson exam; but
it's
> money well spent.  The questions are very challenging and well written.
> I've only seen a couple of errors.  The quality control here seems really
> good.
>
> One suggestion to improve this exam is to increase the pool of available
> questions (there are 150 right now--but these are good solid questions).
> This single addition would make a great exam simulation really awesome!
>
> If you can only get one CCIE security exam simulation; this is the one you
> should get.
>
> I'm taking my real exam on Friday, so wish me luck!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35962&t=35959
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: PIX Firewall authentication [7:35947]

2002-02-20 Thread Rafay Aslam

You can do authentication against Windows NT or Windows 2000 user database
Via PIX using Windows 2000 Radius Server, called Internet Authentication
Service, or Install RADIUS on Windows NT server, or If you wanna spend $2000
you can buy Cisco ACS software.

""sajith nair""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi,
> I have a customer with Proxy server and he want to
> replace it with PIX.The customer want to authenticate
> all users before they access internet.Whether the PIX
> can support authentication thru a normal Windows NT
> server than going thru a Radius/Tacacs server?I talked
> with Cisco TAC and they told it is possible.But I am
> confused.Can anyone of you can guide me please.
> Thanks in advance.
> Saj
>
> __
> Do You Yahoo!?
> Yahoo! Sports - Coverage of the 2002 Olympic Games
> http://sports.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35965&t=35947
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: can you bind two frame relay circuits? [7:35854]

2002-02-20 Thread Chuck

according to the information in the link, this feature is supported only on
the 12000 series. Anyone checked to see if the feature has been migrated
down to other platforms as newer IOS's are released?


""MADMAN""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> You want to get fancy you can try multilink frame relay:
>
>
http://www.cisco.com/univercd/cc/td/doc/product/software/ios120/120newft/120
limit/120s/120s17/17s_mfr.htm
>
>   Then again if you want it simple and to work do what Patrick aluded
> to, enable CEF and on the interface choose your favorite switching
> mechanism, per packet or per destination.
>
>   Dave
>
> Patrick Ramsey wrote:
> >
> > well you wouldn't really "bind" them...but, if you were using a routing
> > protocol such as ospf, then it could round robin packets for you.
> >
> > -Patrick
> >
> > >>> beth  02/19/02 10:34AM >>>
> > I have several 256k frame relay circuits some coming back to same host
> > circuit
> > my question is , is there anyway to way to bind a couple of these on a
> router
> > to increase bandwidth to 512k??
> > >  Confidentiality DisclaimerThis email and any files
> transmitted with it may contain confidential and
> > /or proprietary information in the possession of WellStar Health System,
> > Inc. ("WellStar") and is intended only for the individual or entity to
whom
> > addressed.  This email may contain information that is held to be
> > privileged, confidential and exempt from disclosure under applicable
law.
> If
> > the reader of this message is not the intended recipient, you are hereby
> > notified that any unauthorized access, dissemination, distribution or
> > copying of any information from this email is strictly prohibited, and
may
> > subject you to criminal and/or civil liability. If you have received
this
> > email in error, please notify the sender by reply email and then delete
> this
> > email and its attachments from your computer. Thank you.
> >
> > 
> --
> David Madland
> Sr. Network Engineer
> CCIE# 2016
> Qwest Communications Int. Inc.
> [EMAIL PROTECTED]
> 612-664-3367
>
> "Emotion should reflect reason not guide it"




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35966&t=35854
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Review of Boson CCIE Security Pre-Qualification Test # 1 [7:35967]

2002-02-20 Thread Brian Zeitz

The funniest thing about boson, is when they list the same answer 2 or 3
times. But list only one of them as right, ha hahha! Is it like this on
the real test? I would panic! 

-Original Message-
From: Joshua Barnes [mailto:[EMAIL PROTECTED]] 
Sent: Wednesday, February 20, 2002 8:44 AM
To: [EMAIL PROTECTED]
Subject: RE: Review of Boson CCIE Security Pre-Qualification Test # 1
[7:35942]

Like I said before, BOSON is heralded for some strange reason,  I think
that they are terrible.  The absolute best thing you can do in the
absence of hands on is read that book 3 times.  Your benefits are two
fold.  You get to be a doggone good reader and you might actually LEARN
something.

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Patrick Bass
Sent: Wednesday, February 20, 2002 1:31 AM
To: [EMAIL PROTECTED]
Subject: Review of Boson CCIE Security Pre-Qualification Test # 1
[7:35932]

There are a lot of errors in this exam.  Some of it is just being plain
wrong, more of it is "data-entry" type errors.
The author has always written me back when I notify him of an error; and
this has been, unfortunately, quite often.  Also,
one thing I do not like at all is the questions that have four answers,
and
it says "Select the 4 best answers" or whatever.
How hard would it have been to put a couple of extra answers in these
questions to at least making it challenging?  Finally,
some of the web-links cited in the answers have nothing to do with the
question; perhaps this are more of the "data-entry"
errors?

For $39 dollars, its hard to go wrong... but I've seen Boson put out
much
better quality stuff before.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35967&t=35967
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



VTP and gigastack connectors [7:35971]

2002-02-20 Thread dildog .

All,

I have a 3 3548's on a floor, the top and bottom ones are connected to 
the core 6509's by fiber GBIC's.  The middle one however is only connected 
via a giga stack connector to the top and bottom switch.

Configuration for Gig0/1 (the Gigastack connector)

interface GigabitEthernet0/1
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 1,7,1002-1005
switchport mode trunk
end



The middle switch does not have any VTP updates coming to it.

VTP Version : 2
Configuration Revision  : 1
Maximum VLANs supported locally : 254
Number of existing VLANs: 5
VTP Operating Mode  : Client
VTP Domain Name : XX
VTP Pruning Mode: Disabled
VTP V2 Mode : Enabled
VTP Traps Generation: Disabled
MD5 digest  : 0x49 0x95
Configuration last modified by x.x.1.249 at 2-5-02 20:01:45
switch#

Has anyone out ther passed VTP information via the gigastack connectors?  If 
so, is there a secret to get it to work correctly?  The switches that are 
connected to the 6509 do have updated VTP information.

Thanks.



_
Send and receive Hotmail on your mobile device: http://mobile.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35971&t=35971
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Protocol problem [7:35969]

2002-02-20 Thread Steve Smith

Hey gang this is a little OT but hear me out. I have notice, through
port scanning, that our new servers run protocol 17 "Quote of the Day"
with different little quotes on each one. What impact does or can this
have on a network. We are talking 30-40 servers?

Thanks!

Steve Smith MCSE, CCNA, CCDA
Data Networks Technical Manager
Freeliant Inc.
[EMAIL PROTECTED]

The brave may not live forever, but the cautious never live.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35969&t=35969
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



MLPS-VPN requirements [7:35972]

2002-02-20 Thread Stanzin Takpa

Hi !
  Can anybody know, what are the basic MPLS things that should be
configured there on the routers (backbone) before going for MPLS-VPN.
Thanks  

Stanzin Takpa
Astracon,
6560 S Greenwood Plaza Blvd.,
Engelwood, CO-80111
USA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35972&t=35972
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: VOIP Certification [7:35879]

2002-02-20 Thread

What did you use to study for the DQoS exam?  I am taking the Knowledgenet 
onling DQoS class now and I have purchased the Cisco IP QoS book from 
walmart.com


>From: "tony paparazzo" 
>Reply-To: "tony paparazzo" 
>To: [EMAIL PROTECTED]
>Subject: Re: VOIP Certification [7:35879]
>Date: Tue, 19 Feb 2002 20:39:21 -0500
>
>Im taking the CVoice tommorrow...I took the Dqos..Which wasnt that tough 
>but
>you needed a 860 to pass..Damn thats kind of high...Im a little nervous
>about cvoice..Its 130questions and 3 hours long, I have been doing vox and
>callmanger(since 2.4) for a few years now. Just hope Im up to speed with 
>the
>old world technologies..
>
>I have been using boson 1 and 2 for cvoice and I have read the CVoice book
>by ciscopress.
>
>Anyone else out there take this thing yet(cvoice)...Any last minute 
>feedback
>before tommorrow am would be REAAALLLY helpful
>
>
>""Rik Guyler""  wrote in message
>[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > I took the CIPT test and thought it not too difficult.  This exam covers
> > primarily Call Manager and general voice technology.  Fortunately for 
>you
> > there are finally resources being published for Call Manager but 
>hands-on
> > with the product will go a long way.  CCO offers a demo version you can
> > download.
> >
> > I haven't taken the QOS test yet but will soon.  I'm in the KnowledgeNet
> > placeware (online) class and I have to say it's very good, which 
>surprises
> > me.  If you work for a partner I believe you can get special pricing.
> >
> > Rik
> >
> > -Original Message-
> > From: Logan, Harold [mailto:[EMAIL PROTECTED]]
> > Sent: Tuesday, February 19, 2002 4:18 PM
> > To: [EMAIL PROTECTED]
> > Subject: RE: VOIP Certification [7:35879]
> >
> >
> > That's true, the CCNP Specializations are retired. There is however the
> > Cisco IP Telephony Specialist (CIPTS???) which has CCNP certification as
> > a prerequisite.
> >
> > I took the old CVoice exam (VoFR, VoATM, VoIP) to get the CCNP Voice
> > Specialization about a year ago. I used Global Knowledge's "Configuring
> > Cisco Voice over IP" by Elliot Lewis, edited by Keith O'Brien, ISBN
> > 1-928994-03-2. I used it in conjunction with various docs on cisco's
> > page, and that was enough to pass the exam, combined with the experience
> > I had at the time. There are probably better publications out there
> > nowadays, if nothing else because they're more up-to-date.
> >
> > I haven't taken the CIPT or QOS exams, and I don't know if the current
> > CVoice is the same exam as the old one. I thought about taking the other
> > two exams to get the Telephony specialization, but my CCNP Voice
> > specialization doesn't expire for another year, and my lab date is in
> > July.
> >
> > Good luck,
> > Hal
> >
> >
> >
> > -Original Message-
> > From: Jason [mailto:[EMAIL PROTECTED]]
> > Sent: Tuesday, February 19, 2002 3:16 PM
> > To: [EMAIL PROTECTED]
> > Subject: Re: VOIP Certification [7:35879]
> >
> >
> > Last I check, there is any CCNP specialisation track anymore !! ;-)
> >
> > ""Kelley Allen""  wrote in message
> > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > Has anyone out there attempted the CIPT, CVOICE, and QOS tests yet for
> > the
> > > CCNP / Voice Specialization certification?  If so, what training did
> > you
> > use
> > > and what was the tone of the tests?
> > >
> > > Thanks,
> > > Kelley.
_
Get your FREE download of MSN Explorer at http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35968&t=35879
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Different type of intervlan routing problem... [7:35595]

2002-02-20 Thread Sean Knox

Gandolf and Larry, thanks for the advice. The problem was the management
VLAN interface on the 3500XL. I just turned off the VLAN1 interface and
VLAN23 was routed again. Thanks again.

- Sean

-Original Message-
From: Gandolf [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, February 19, 2002 8:31 PM
To: [EMAIL PROTECTED]
Subject: Re: Different type of intervlan routing problem... [7:35595]


A problem I have come across on the 3500XL switches and dot1q trunking is
when the XL switch expected the packets on the native VLAN to be untagged
and the device on the other end of the trunk expects the packets to be
tagged.  This prevents communication through the trunk on the native VLAN.
The way to get around this is to set the native VLAN to a VLAN that does not
exist anywhere on your network such as VLAN 999.  This way all packets going
through the trunk are tagged and you will be able to route on vlan 24 again.


""Sean Knox""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi all, I'm having a problem with intervlan routing on a 3500XL. Port
> FastEthernet0/17 is an access link and the host, part of VLAN23, is
working
> fine and can traverse the network. FastEthernet 0/18 is a 802.1q trunk
link
> connected to a 802.1q aware host (a special network device my company
> makes). Vlan24 is defined as the native vlan for this link on both sides
> (the switch and 802.1q host). Connected to the 3500XL's FastEthernet 0/1
is
> a router with subifs defined with IP addresses and appropriate 802.1q VLAN
> tags for each vlan. VLAN23, our access link, is routed fine throughout the
> network. However, I can't ping the 802.1q host on VLAN24 from the
connected
> router or elsewhere. The 802.1q device has its default gateway set to the
> corresponding router subinterface. What am I missing? Below are the
relevant
> parts of the 3500XL config and router config.
>
> Thanks in advance!
> Sean
>
>
>
> Relevant parts of show running-config on 3500XL:
>
> interface FastEthernet0/1
>  duplex full
>  speed 100
>  switchport trunk encapsulation dot1q
>  switchport mode trunk
>
> interface FastEthernet0/17
>  duplex full
>  speed 100
>  switchport access vlan 23
>  spanning-tree portfast
>
> interface FastEthernet0/18
>  duplex half
>  speed 100
>  switchport trunk encapsulation dot1q
>  switchport trunk native vlan 24
>  switchport mode trunk
>  spanning-tree portfast
>
> interface VLAN1
>  ip address 10.6.200.2 255.255.255.0
>  no ip directed-broadcast
>  no ip route-cache
> !
> ip default-gateway 10.6.200.1
>
> Switch#show vlan
> VLAN Name StatusPorts
>   -
> ---
> 1default  activeFa0/2, Fa0/3, Fa0/4,
Fa0/5,
> Fa0/6, Fa0/7, Fa0/8,
Fa0/9,
> Fa0/10, Fa0/11, Fa0/12,
> Fa0/13,
> Fa0/14, Fa0/15, Fa0/16,
> Fa0/19,
> Fa0/20, Fa0/21, Fa0/22,
> Fa0/23,
> Fa0/24, Fa0/25, Fa0/26,
> Fa0/27,
> Fa0/28, Fa0/29, Fa0/30,
> Fa0/31,
> Fa0/32, Fa0/33, Fa0/34,
> Fa0/35,
> Fa0/36, Fa0/37, Fa0/38,
> Fa0/39,
> Fa0/40, Fa0/41, Fa0/42,
> Fa0/43,
> Fa0/44, Fa0/45, Fa0/46,
> Fa0/47,
> Fa0/48, Gi0/1, Gi0/2
> 24   VLAN0024 active
>
> VLAN Type  SAID   MTU   Parent RingNo BridgeNo Stp  BrdgMode Trans1
> Trans2
>  - -- - -- --    --
> --
> 1enet  11 1500  -  -  ---1002
1003
> 24   enet  100024 1500  -  -  ---0  0
>
> Router8510#show run
>
> interface FastEthernet1/0/4
>  description Core8500 to 3500XL
>  ip address 10.6.200.2 255.255.255.0
>  duplex full
>  speed 100
>
> interface FastEthernet1/0/4.23
>  encapsulation dot1Q 23
>  ip address 10.6.23.1 255.255.255.0
>
> interface FastEthernet1/0/4.24
>  encapsulation dot1Q 24
>  ip address 10.6.24.1 255.255.255.0




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35970&t=35595
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: SNMP Vulnerabilities [7:35954]

2002-02-20 Thread Brian

Here is a link off cert.org,
http://www.cisco.com/warp/public/707/cisco-malformed-snmp-msgs-pub.shtml.

Brian

- Original Message -
From: "Kevin Pan" 
To: 
Sent: Wednesday, February 20, 2002 6:56 AM
Subject: SNMP Vulnerabilities [7:35954]


> Has anyone heard about the captioned problem on Cisco devices?
>
> Please comment.
>
> Rgds,
> Kevin




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35973&t=35954
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: can you bind two frame relay circuits? [7:35854]

2002-02-20 Thread MADMAN

If you have been smokin crack you could do that:

http://www.cisco.com/univercd/cc/td/doc/product/software/ios121/121cgcr/wan_c/wcdfrely.htm#xtocid42

  I won't get on the CEF soapbox again though;)

  Dave

nrf wrote:
> 
> I think you mean to say multilink FR.  Seems to me that it's rather
> difficult to do PPP multilink on FR (unless, I suppose, you're doing
PPPoFR,
> but who the hell does that?)
> 
> ""Michael Williams""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > Assuming that you have more than one circuit to the same offsite, you
> could
> > use PPP Multilink to "bond" them together into a 512 or 768 connection.
> >
> > Mike W.
-- 
David Madland
Sr. Network Engineer
CCIE# 2016
Qwest Communications Int. Inc.
[EMAIL PROTECTED]
612-664-3367

"Emotion should reflect reason not guide it"




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35974&t=35854
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: can you bind two frame relay circuits? [7:35854]

2002-02-20 Thread MADMAN

Yes I have since you pointed that out.  Know what it means to
ASSume!!  It is a 12000 series only feature at this point.  

  Dave

Chuck wrote:
> 
> according to the information in the link, this feature is supported only on
> the 12000 series. Anyone checked to see if the feature has been migrated
> down to other platforms as newer IOS's are released?
> 
> ""MADMAN""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > You want to get fancy you can try multilink frame relay:
> >
> >
>
http://www.cisco.com/univercd/cc/td/doc/product/software/ios120/120newft/120
> limit/120s/120s17/17s_mfr.htm
> >
> >   Then again if you want it simple and to work do what Patrick aluded
> > to, enable CEF and on the interface choose your favorite switching
> > mechanism, per packet or per destination.
> >
> >   Dave
> >
> > Patrick Ramsey wrote:
> > >
> > > well you wouldn't really "bind" them...but, if you were using a routing
> > > protocol such as ospf, then it could round robin packets for you.
> > >
> > > -Patrick
> > >
> > > >>> beth  02/19/02 10:34AM >>>
> > > I have several 256k frame relay circuits some coming back to same host
> > > circuit
> > > my question is , is there anyway to way to bind a couple of these on a
> > router
> > > to increase bandwidth to 512k??
> > > >  Confidentiality DisclaimerThis email and any files
> > transmitted with it may contain confidential and
> > > /or proprietary information in the possession of WellStar Health
System,
> > > Inc. ("WellStar") and is intended only for the individual or entity to
> whom
> > > addressed.  This email may contain information that is held to be
> > > privileged, confidential and exempt from disclosure under applicable
> law.
> > If
> > > the reader of this message is not the intended recipient, you are
hereby
> > > notified that any unauthorized access, dissemination, distribution or
> > > copying of any information from this email is strictly prohibited, and
> may
> > > subject you to criminal and/or civil liability. If you have received
> this
> > > email in error, please notify the sender by reply email and then delete
> > this
> > > email and its attachments from your computer. Thank you.
> > >
> > > 
> > --
> > David Madland
> > Sr. Network Engineer
> > CCIE# 2016
> > Qwest Communications Int. Inc.
> > [EMAIL PROTECTED]
> > 612-664-3367
> >
> > "Emotion should reflect reason not guide it"
-- 
David Madland
Sr. Network Engineer
CCIE# 2016
Qwest Communications Int. Inc.
[EMAIL PROTECTED]
612-664-3367

"Emotion should reflect reason not guide it"




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35975&t=35854
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: PIX Firewall authentication [7:35947]

2002-02-20 Thread [EMAIL PROTECTED]

You can only authenticate users to ftp/telnet/http services.  Below url
should give you an idea of configs:

http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_61/config/mngacl.htm#xtocid4

Nabil

P.S.  I tested this concept in a lab about a year ago, it works pretty
good.




   
 
sajith
nair

cc:
Sent by: Subject: PIX Firewall
authentication [7:35947]
   
nobody@groups
   
tudy.com
   
 
   
 
   
02/20/2002
09:22
AM
   
Please
respond
to
sajith
nair
   
 
   
 




Hi,
I have a customer with Proxy server and he want to
replace it with PIX.The customer want to authenticate
all users before they access internet.Whether the PIX
can support authentication thru a normal Windows NT
server than going thru a Radius/Tacacs server?I talked
with Cisco TAC and they told it is possible.But I am
confused.Can anyone of you can guide me please.
Thanks in advance.
Saj

__
Do You Yahoo!?
Yahoo! Sports - Coverage of the 2002 Olympic Games
http://sports.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35977&t=35947
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Blocking ICQ and other Instant Messengers [7:35976]

2002-02-20 Thread Paul Pavlicko

Has anyone created an ACL to block all the Instant Messengers? If so, could
you send all the IP Addresses (or the ACL) that you use to block them.


Thanks,


Paul Pavlicko


**
Privileged/Confidential Information may be contained in this message. 
Unless you are the addressee (or authorized to receive for the 
addressee), you may not use, copy, deliver or disclose to anyone the 
message or any information contained in the message.  If you have 
received the message in error, please advise the sender by reply 
e-mail and delete the message.
**




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35976&t=35976
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



CCIE Practice Labs [7:35978]

2002-02-20 Thread Emilio

Hi Everyone,
I'm triying to practice more to CCIE Lab.

I want to rent some remote Lab to practice.

What companies offers this services???

Thanks a lot,
Emilio Caamaqo
CCNA, CCDA, CCNP
CCSI




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35978&t=35978
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



CSPM 2.3i and NT versus 2000 [7:35980]

2002-02-20 Thread Richard Deal

I'm about to run a trial of CSPM 2.3i for some IDS sensors that I have. I
noticed in the release notes that this version of the product only runs on
Windows NT 4.0; however, I  --REALLY-- would like to run this on Windows 200
server.

Has anyone had any success on running this on Windows 2000 server? If so,
what SP were you using for W2000 server? and what other things did you have
to do to get it up and running? Any of the functionality of 2.3i that you
couldn't get to function?

Thanks for the info!!!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35980&t=35980
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Review of Boson CCIE Security Pre-Qualification Test # 1 [7:35979]

2002-02-20 Thread Kevin St.Amour

I have had the same experience. Boson has been good to me but the CCIE 
qual test was just a mess. I even get quetions right, but it would mark 
them as wrong and have a blank for the right answer!!!?!??!*!(@&!

Brian Zeitz wrote:

>The funniest thing about boson, is when they list the same answer 2 or 3
>times. But list only one of them as right, ha hahha! Is it like this on
>the real test? I would panic! 
>
>-Original Message-
>From: Joshua Barnes [mailto:[EMAIL PROTECTED]] 
>Sent: Wednesday, February 20, 2002 8:44 AM
>To: [EMAIL PROTECTED]
>Subject: RE: Review of Boson CCIE Security Pre-Qualification Test # 1
>[7:35942]
>
>Like I said before, BOSON is heralded for some strange reason,  I think
>that they are terrible.  The absolute best thing you can do in the
>absence of hands on is read that book 3 times.  Your benefits are two
>fold.  You get to be a doggone good reader and you might actually LEARN
>something.
>
>-Original Message-
>From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
>Patrick Bass
>Sent: Wednesday, February 20, 2002 1:31 AM
>To: [EMAIL PROTECTED]
>Subject: Review of Boson CCIE Security Pre-Qualification Test # 1
>[7:35932]
>
>There are a lot of errors in this exam.  Some of it is just being plain
>wrong, more of it is "data-entry" type errors.
>The author has always written me back when I notify him of an error; and
>this has been, unfortunately, quite often.  Also,
>one thing I do not like at all is the questions that have four answers,
>and
>it says "Select the 4 best answers" or whatever.
>How hard would it have been to put a couple of extra answers in these
>questions to at least making it challenging?  Finally,
>some of the web-links cited in the answers have nothing to do with the
>question; perhaps this are more of the "data-entry"
>errors?
>
>For $39 dollars, its hard to go wrong... but I've seen Boson put out
>much
>better quality stuff before.
_
Do You Yahoo!?
Get your free @yahoo.com address at http://mail.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35979&t=35979
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: SNMP Vulnerabilities [7:35954]

2002-02-20 Thread Ladrach, Daniel E.

They key is to have a community string that is aplha-numeric, or hard to
crack. Also, I would recommend writing an access-list for an individual host
or hosts for the SNMP.

Daniel Ladrach
CCNA, CCNP
WorldCom


-Original Message-
From: Wes [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, February 20, 2002 10:49 AM
To: [EMAIL PROTECTED]
Subject: RE: SNMP Vulnerabilities [7:35954]


> Author: Kevin Pan ()
> Date:   02-20-02 09:56
> 
> Has anyone heard about the captioned problem on Cisco devices? 
> 
> Please comment. 
> 
> Rgds, 
> Kevin 

Yes, many Cisco devices affected.  However, it looks like you can only cause
the device to reset.  Software fixes being published now.

http://www.cisco.com/warp/public/707/cisco-malformed-snmp-msgs-pub.shtml

I'm not sure how "critical" a vulnerability it is, but regardless, check out
the security advisory and adjust your security stance accordingly.

--Wes




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35982&t=35954
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: can you bind two frame relay circuits? [7:35854]

2002-02-20 Thread nrf

You don't need to point that out to me.  I was always well aware that you
could do PPPoFR.  I just can't figure out too many reasons why you'd really
want to.





""MADMAN""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> If you have been smokin crack you could do that:
>
>
http://www.cisco.com/univercd/cc/td/doc/product/software/ios121/121cgcr/wan_
c/wcdfrely.htm#xtocid42
>
>   I won't get on the CEF soapbox again though;)
>
>   Dave
>
> nrf wrote:
> >
> > I think you mean to say multilink FR.  Seems to me that it's rather
> > difficult to do PPP multilink on FR (unless, I suppose, you're doing
> PPPoFR,
> > but who the hell does that?)
> >
> > ""Michael Williams""  wrote in message
> > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > Assuming that you have more than one circuit to the same offsite, you
> > could
> > > use PPP Multilink to "bond" them together into a 512 or 768
connection.
> > >
> > > Mike W.
> --
> David Madland
> Sr. Network Engineer
> CCIE# 2016
> Qwest Communications Int. Inc.
> [EMAIL PROTECTED]
> 612-664-3367
>
> "Emotion should reflect reason not guide it"




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35981&t=35854
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Protocol problem [7:35969]

2002-02-20 Thread Priscilla Oppenheimer

At 02:44 PM 2/20/02, Steve Smith wrote:
>Hey gang this is a little OT but hear me out. I have notice, through
>port scanning, that our new servers run protocol 17 "Quote of the Day"
>with different little quotes on each one. What impact does or can this
>have on a network. We are talking 30-40 servers?

A nit-picky thing about your terminology first: IP protocol 17 is actually 
UDP (0x11 in hex). TCP is protocol 0x06. The TCP port number 17 is "quote 
of the day."

Even with 30 to 40 servers sending quotes, this probably uses a very small 
amount of bandwidth. To know for sure you would have to know how often they 
send the quotes. But even if they send rather often, it's probably still a 
small amount of bandwidth. I'm assuming they don't send every millisecond 
or something silly like that.

Where are they sending the quotes? Are they broadcasts? Broadcasts don't 
use any more bandwidth, but as you know, they can cause performance 
problems at the recipients because they interrupt the CPUs. But, once 
again, if it's infrequent, this isn't a big deal.

Are the servers on a shared network? Probably not. But if they are on a 
shared Ethernet, for example, there might be a minor concern that they 
cause unnecessary collisions with more important packets. But this is 
probably somewhat rare and not a big deal.

Finally, consider the servers themselves. Do you have any tools to monitor 
how much memory, hard disk space, and CPU power sending quotes uses? 
Probably not much, but I'm just mentioning all the performance 
considerations I can think of in order to turn this into a "learning 
moment." ;-)

Unless there's a reason for the quotes, you could turn them off. My guess 
is that they aren't causing any problem, however. Is it where you got your 
cool quote below? I like it. If your users like the quotes, I would say, 
don't worry about their usage of network resources. But do some more 
research first on the details of how the quotes are sent before taking my
word.

Priscilla


>Thanks!
>
>Steve Smith MCSE, CCNA, CCDA
>Data Networks Technical Manager
>Freeliant Inc.
>[EMAIL PROTECTED]
>
>The brave may not live forever, but the cautious never live.


Priscilla Oppenheimer
http://www.priscilla.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35984&t=35969
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



CCIE study guide [7:35983]

2002-02-20 Thread Mark

I am looking for the best book to study from to obtain the CCIE written test.
Any suggestions would be greatly appreciated.

Thanks in advance

Mark




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35983&t=35983
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



PIX v6.2 [7:35987]

2002-02-20 Thread Clayton Dukes

Has anyone installed and used PPPoE with the new Pix 6.2 Beta?


Clayton Dukes
CCNA, CCDA, CCDP, CCNP, NCC
(h) 904-292-1881
(c) 904-477-7825
#rm -rf /bin/laden
#kill -9 /bin/laden




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35987&t=35987
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



EIGRP on GRE? [7:35988]

2002-02-20 Thread Tarek Sabry

Hi

Does the following make sense:


---(tunnel1)--MPLS-
-(tunnel1)

where on R1:
-
...
...
interface tunnel1
ip address 192.168.30.49 255.255.255.248
tunnel source x.x.x.x
tunnel destination x.x.x.x
...
...
router eigrp 1
network 192.168.30.48
redistribute static
...
...


In other words, can I:

- run EIGRP on a GRE tunnel?
- transport my static local routes across this MPLS cloud this way?
- use a VLSM network in EIGRP like I did?

Thanks a lot
Tarek




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35988&t=35988
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



16MB Flash (Read) & (Read/Write) on a 2524 ?? [7:35989]

2002-02-20 Thread Cisco Nuts

Hello,
Just upgraded the flash on 2 of my 2524 routers from 8 to 16 and on 
rebooting the router, I get this:

8192K bytes of processor board System flash partition 1 (Read ONLY)
8192K bytes of processor board System flash partition 2 (Read/Write)

I was expecting to see this as I saw when I upgraded my 2514:

16384K bytes of processor board System flash (Read ONLY)

I also see this in the #sh ru output:
partition flash 2 8 8

What is this cmd. exactly doing? Is there a way of getting one big 16mb 
flash so I can load the Enterprise IOS?

Thank you for your help.

BTW: I have this on my 2524:
ROM: System Bootstrap, Version 11.0(5), SOFTWARE
cisco 2524 (68030) processor (revision B) with 4096K/2048K bytes of memory

_
Join the worlds largest e-mail service with MSN Hotmail. 
http://www.hotmail.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35989&t=35989
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: MLPS-VPN requirements [7:35972]

2002-02-20 Thread Emilio

Hi,
I've configured MPLS twice.

A. IP CEF (In all routers speaking MPLS)
B. OSPF (In all the network)
C. mpls ip (In al routers and interface speaking MPLS)

For basic mpls it's all..
You have to validate that MPLS formed peers.

If you need more information, just said.

Regards,
Emilio Caamaqo

""Stanzin Takpa""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi !
>   Can anybody know, what are the basic MPLS things that should be
> configured there on the routers (backbone) before going for MPLS-VPN.
> Thanks
>
> Stanzin Takpa
> Astracon,
> 6560 S Greenwood Plaza Blvd.,
> Engelwood, CO-80111
> USA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35990&t=35972
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCIE Practice Labs [7:35978]

2002-02-20 Thread Kevin St.Amour

Fatkid.com

https://secure.fatkid.com/pricing.php

Emilio wrote:

>Hi Everyone,
>I'm triying to practice more to CCIE Lab.
>
>I want to rent some remote Lab to practice.
>
>What companies offers this services???
>
>Thanks a lot,
>Emilio Caamaqo
>CCNA, CCDA, CCNP
>CCSI
_
Do You Yahoo!?
Get your free @yahoo.com address at http://mail.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35991&t=35978
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCIE Practice Labs [7:35978]

2002-02-20 Thread Kevin St.Amour

Also check with your Cisco Rep in your Company. Durring this Eco 
downturn, you would be suprised what Cisco will let you have access to 
or do for you.

Kevin St.Amour wrote:

> Fatkid.com
>
> https://secure.fatkid.com/pricing.php
>
> Emilio wrote:
>
>> Hi Everyone,
>> I'm triying to practice more to CCIE Lab.
>>
>> I want to rent some remote Lab to practice.
>>
>> What companies offers this services???
>>
>> Thanks a lot,
>> Emilio Caamaqo
>> CCNA, CCDA, CCNP
>> CCSI
_
Do You Yahoo!?
Get your free @yahoo.com address at http://mail.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35992&t=35978
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: NAT frustration [7:35928]

2002-02-20 Thread Hire, Ejay

This is an easy one.  You only have one usable Ip address... Right?  The IP
nat inside source static  command is mapping all ports through on the
one usable ip to the DNS server, making it the only machine with internet
access.  Remove it and 
ip nat inside source static udp 192.168.3.2 53 209.x.x.x 53 
or if you are using a 12.x ios, and expect your Ip to change again in the
future.. Use
ip nat inside source static udp 192.168.3.2 53 interface ethernet 0 53

Also, your Access list/overload statement will work, but it's more
complicated than it should be.  This will work just fine..
access-list 1 permit 192.168.0.0 0.0.255.255
ip nat inside source list 1 interface ethernet 0 overload.

Good Luck, Contact me off-list if you need more help.

Thanks,
Ejay Hire
Lan/Wan Engineering Contractor (Available)
434-591-4564



-Original Message-
From: Tim Booth [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, February 19, 2002 11:56 PM
To: [EMAIL PROTECTED]
Subject: NAT frustration [7:35928]


Dear listers,

  I am frustrated. I had this working perfectly, then my isp decided to
change my ip address, then I had to change my configs and now it's not
working. What I want to do is have NAT running on my 2511, be able to
telnet into it, and have my dns server behind the nat in a private
network. I was instructed earlier to have this partial config (IOS ver.
12.1(10) ):
Interface ethernet0
Ip address 209.x.x.x
Ip nat outside
!
Interface s0
Ip address 192.168.1.1
Ip nat inside
!
!! Maps nat translation process
Ip nat inside source list 101 interface Ethernet0 overload
!! For dns server mapping
Ip nat inside source static 192.168.3.2 209.x.x.x 
!
!! Removes external address from nat process
Access-list 101 deny ip host 209.x.x.x any 
!! Allows internal translation
Access-list 101 permit ip 192.168.0.0 0.0.255.255 any
!
Ip route 0.0.0.0 0.0.0.0 e0 permanent
Ip route 192.168.3.0 255.255.255.0 serial 0 permanent
!
end !! EOF
  With the dns server mapping, nat forwards *all* outside traffic bound
directly to the 209.x.x.x interface to 192.168.3.2; so pings from the
interface don't work, and telnets to the interface don't work.  I had it
working where it would only forward appropriate packets to the dns
server, and also allow telnetting from the outside to the 2511. I must
be missing something. 

  With or without the dns mapping all the private network clients are
translated correctly. Telnet works fine from the inside. My
understanding is that with cisco's NAT ALG, DNS translation is seamless
*and* you still should be able to use that nat address for telnetting
into the router. I'm not sure why it was working before, if it isn't
supposed to work like this.

  Any ideas? Am I forgetting something that is obvious?

Confused,
Tim Booth
MCDBA, CCNP, CCDP, CCIE written
-
Those who would give up essential liberty to purchase a little temporary
safety deserve neither liberty nor safety.
Benjamin Franklin, 1759




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35995&t=35928
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: CSPM 2.3i and NT versus 2000 [7:35980]

2002-02-20 Thread John Allhiser

I couldn't get past the OS check in the install with 2.3 (90 day eval) on
2000.
Dropped it back to NT4 and installed without any problems.

We finally went with CSPM 3.0 & 2000.

John Allhiser CCNA MCSE
Network Engineer 
Business Men's Assurance
 

-Original Message-
From: Richard Deal [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, February 20, 2002 2:23 PM
To: [EMAIL PROTECTED]
Subject: CSPM 2.3i and NT versus 2000 [7:35980]


I'm about to run a trial of CSPM 2.3i for some IDS sensors that I have. I
noticed in the release notes that this version of the product only runs on
Windows NT 4.0; however, I  --REALLY-- would like to run this on Windows 200
server.

Has anyone had any success on running this on Windows 2000 server? If so,
what SP were you using for W2000 server? and what other things did you have
to do to get it up and running? Any of the functionality of 2.3i that you
couldn't get to function?

Thanks for the info!!!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35996&t=35980
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: DRAM and FLASH question [7:35600]

2002-02-20 Thread Arun Upadhyay

Check this
http://www.anthonypanda.com for memory and cables.

  

--- Ozzie Sutcliffe  wrote:
> talk to Brad
> 
> oz
[EMAIL PROTECTED]


=
Arun Upadhyay
CCIE (written passed )
MCSE,CCNA, CNA

__
Do You Yahoo!?
Yahoo! Sports - Coverage of the 2002 Olympic Games
http://sports.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35997&t=35600
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: PIX Firewall authentication [7:35947]

2002-02-20 Thread Brian

Yes, you can use http authentication proxy, combined with CiscoSecure to 
authenticate off an NT database.

Brian


On Wed, 20 Feb 2002, sajith nair wrote:

> Hi,
> I have a customer with Proxy server and he want to
> replace it with PIX.The customer want to authenticate
> all users before they access internet.Whether the PIX
> can support authentication thru a normal Windows NT
> server than going thru a Radius/Tacacs server?I talked
> with Cisco TAC and they told it is possible.But I am
> confused.Can anyone of you can guide me please.
> Thanks in advance.
> Saj
> 
> __
> Do You Yahoo!?
> Yahoo! Sports - Coverage of the 2002 Olympic Games
> http://sports.yahoo.com
I'm buying / selling used CISCO gear!!
email me for a quote

Brian Feeny, CCIE #8036   Netjam, LLC
[EMAIL PROTECTED] http://www.netjam.net
VISA/MC/AMEX/COD  phone: 318-212-0245
30 day warranty   fax:   318-212-0246




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35999&t=35947
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: 16MB Flash (Read) & (Read/Write) on a 2524 ?? [7:35989]

2002-02-20 Thread Steven A. Ridder

type part flash 1 in config mode.

If it turns into 1 giant read only flash, change confreg to 0x2101
""Cisco Nuts""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hello,
> Just upgraded the flash on 2 of my 2524 routers from 8 to 16 and on
> rebooting the router, I get this:
>
> 8192K bytes of processor board System flash partition 1 (Read ONLY)
> 8192K bytes of processor board System flash partition 2 (Read/Write)
>
> I was expecting to see this as I saw when I upgraded my 2514:
>
> 16384K bytes of processor board System flash (Read ONLY)
>
> I also see this in the #sh ru output:
> partition flash 2 8 8
>
> What is this cmd. exactly doing? Is there a way of getting one big 16mb
> flash so I can load the Enterprise IOS?
>
> Thank you for your help.
>
> BTW: I have this on my 2524:
> ROM: System Bootstrap, Version 11.0(5), SOFTWARE
> cisco 2524 (68030) processor (revision B) with 4096K/2048K bytes of memory
>
> _
> Join the worlds largest e-mail service with MSN Hotmail.
> http://www.hotmail.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35998&t=35989
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: CCIE study guide [7:35983]

2002-02-20 Thread Kaminski, Shawn G

That's a tough question because the CCIE Written covers such a large amount
of material. You should use more than one source. However, if I had my pick
of one book it would be CISCO Certification: Bridges, Routers & Switches for
CCIEs by Caslow. ISBN: 0130903892 

Just my opinion.

Shawn K.  

-Original Message-
From: Mark [mailto:[EMAIL PROTECTED]] 
Sent: Wednesday, February 20, 2002 3:40 PM
To: [EMAIL PROTECTED]
Subject: CCIE study guide [7:35983]


I am looking for the best book to study from to obtain the CCIE written
test. Any suggestions would be greatly appreciated.

Thanks in advance

Mark




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36000&t=35983
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Delay Metric in EIGRP [7:36001]

2002-02-20 Thread Yatou Wu

Hi,

In EIGRP, the delay metric is taken as configured in the interface of the 
router by the administrator, by default, or by measurement?

when the router calculates the metric, it needs to know the minimum 
bandwidth along the path, and also the delay along the path. how can the 
router pass the infor around? pass the total delay along the path, or delay 
of every link?

thanks

yatou

_
Get your FREE download of MSN Explorer at http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36001&t=36001
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: 16MB Flash (Read) & (Read/Write) on a 2524 ?? [7:35989]

2002-02-20 Thread Sasa Milic

Cisco Nuts wrote:
> 
> Just upgraded the flash on 2 of my 2524 routers from 8 to 16 and on
> rebooting the router, I get this:
> 
> 8192K bytes of processor board System flash partition 1 (Read ONLY)
> 8192K bytes of processor board System flash partition 2 (Read/Write)

You have to unpartition flash with "no partition flash" command. It
might be needed to erase flash firts, I'm not sure. You since it is
ReadOnly, set config register to "0x2101", reboot router, erase and
unpartition flash. While still in flash-load-helper image, upgrade
IOS.

Sasa
CCIE No 8635




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36003&t=35989
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: EIGRP on GRE? [7:35988]

2002-02-20 Thread Sasa Milic

Tarek Sabry wrote:
>
> In other words, can I:
> - run EIGRP on a GRE tunnel?

Yes, you can. Just be sure that tunnel destination address is known
by some other method. If, after EIGRP neighbors exchange routes, your
tunnel destination becomes available through EIGRP, tunnel will be
torn down, and "recursive routing" (or something like that) message
will be sent to syslog.

> - transport my static local routes across this MPLS cloud this way?

EIGRP over GRE supports everything that EIGRP supports.

> - use a VLSM network in EIGRP like I did?

No. You should either use "network 192.168.30.0", or
"network 192.168.30.48 0.0.0.7", in case that IOS supports it.


Sasa
CCIE No 8635




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36004&t=35988
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Delay Metric in EIGRP [7:36001]

2002-02-20 Thread Steven A. Ridder

I believe the delay is by default set on the interface by the router based
on the type of link it is.  I'm sure there's charts on CCO somewhere.  You
can change this info on the interface with the delay command, which is the
recommended way of changing a metric if you are forced to do so.  The router
dosen't pass the delay info of a link to other routers as a raw figure, it
calculates the BW and delay, then multiplies it by 256 and sends that
calculation to a neighbor, which is the metric.


""Yatou Wu""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi,
>
> In EIGRP, the delay metric is taken as configured in the interface of the
> router by the administrator, by default, or by measurement?
>
> when the router calculates the metric, it needs to know the minimum
> bandwidth along the path, and also the delay along the path. how can the
> router pass the infor around? pass the total delay along the path, or
delay
> of every link?
>
> thanks
>
> yatou
>
> _
> Get your FREE download of MSN Explorer at
http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36005&t=36001
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



quick question - router for regular dial in isp? [7:36006]

2002-02-20 Thread beth

Hello, i have a quick question. Can you use a regular 804 cisco router to
dial
into a regular dial in isdn isp account? not a dedicated account.
Thanks!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36006&t=36006
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Practical Studies, Multiple MAC Address [7:35935]

2002-02-20 Thread Vincent Miller

HSRP
standby use-bia [scope 
  interface] 

  Configure HSRP to use
the burned-in address of an interface as its virtual MAC address
  instead of the
preassigned MAC address (on Ethernet and FDDI) or the functional
  address (on Token Ring).


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36007&t=35935
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: CCIE Practice Labs [7:35978]

2002-02-20 Thread Rogell, Dennis

There are many but I have found ccbootcamp to be very good and real
challenging

hth
Dennis Rogell CNE,NNSS,NNSE, CCNP
nextiraone
Email : [EMAIL PROTECTED]
Phone: (954) 846-5128

> -Original Message-
> From: Emilio [SMTP:[EMAIL PROTECTED]]
> Sent: Wednesday, February 20, 2002 12:17
> To:   [EMAIL PROTECTED]
> Subject:  CCIE Practice Labs [7:35978]
> 
> Hi Everyone,
> I'm triying to practice more to CCIE Lab.
> 
> I want to rent some remote Lab to practice.
> 
> What companies offers this services???
> 
> Thanks a lot,
> Emilio Caamaqo
> CCNA, CCDA, CCNP
> CCSI




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35986&t=35978
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCIE Practice Labs [7:35978]

2002-02-20 Thread Scott H.

try www.ccbootcamp.com.  I have rented time from them and had no problems.
Their racks have everything you need.

""Emilio""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi Everyone,
> I'm triying to practice more to CCIE Lab.
>
> I want to rent some remote Lab to practice.
>
> What companies offers this services???
>
> Thanks a lot,
> Emilio Caamaqo
> CCNA, CCDA, CCNP
> CCSI




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35985&t=35978
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCIE study guide [7:35983]

2002-02-20 Thread Nick Lesewski

I used the study guide from CCBootcamp and the Bosons.  The book was great, 
and the bosons pounded it in.  By the way, you don't mention this, but I 
finished the CCNP process first, which I think is key...

Nic


>- Original Message -
>From: ""Mark"" 
>Newsgroups: groupstudy.cisco
>Sent: Wednesday, February 20, 2002 3:39 PM
>Subject: CCIE study guide [7:35983]
>
>
> > I am looking for the best book to study from to obtain the CCIE written
>test.
> > Any suggestions would be greatly appreciated.
> >
> > Thanks in advance
> >
> > Mark
_
Join the worlds largest e-mail service with MSN Hotmail. 
http://www.hotmail.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36002&t=35983
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: PIX Firewall authentication [7:35947]

2002-02-20 Thread Rik Guyler

Another option would be Websense for PIX.  This product will not only
authenticate the user but provide URL filtering and detailed reporting,
which the Proxy box doesn't do too well.  I install this product frequently
and hear nothing but good about it from our customers.

Check out www.websense.com for more info.

Rik

-Original Message-
From: Rafay Aslam [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, February 20, 2002 2:11 PM
To: [EMAIL PROTECTED]
Subject: Re: PIX Firewall authentication [7:35947]


You can do authentication against Windows NT or Windows 2000 user database
Via PIX using Windows 2000 Radius Server, called Internet Authentication
Service, or Install RADIUS on Windows NT server, or If you wanna spend $2000
you can buy Cisco ACS software.

""sajith nair""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi,
> I have a customer with Proxy server and he want to
> replace it with PIX.The customer want to authenticate
> all users before they access internet.Whether the PIX
> can support authentication thru a normal Windows NT
> server than going thru a Radius/Tacacs server?I talked
> with Cisco TAC and they told it is possible.But I am
> confused.Can anyone of you can guide me please.
> Thanks in advance.
> Saj
>
> __
> Do You Yahoo!?
> Yahoo! Sports - Coverage of the 2002 Olympic Games
> http://sports.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36008&t=35947
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: VTP and gigastack connectors [7:35971]

2002-02-20 Thread Rik Guyler

I have seen this before.  I don't remember the IOS versions in question but
it was an IOS bug.  Try upgrading the IOS on the 35xx switches to the latest
version.  Also, VTP domain is case sensitive, so when you set it on the
client, make sure you enter it correctly.

Rik

-Original Message-
From: dildog . [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, February 20, 2002 2:48 PM
To: [EMAIL PROTECTED]
Subject: VTP and gigastack connectors [7:35971]


All,

I have a 3 3548's on a floor, the top and bottom ones are connected to 
the core 6509's by fiber GBIC's.  The middle one however is only connected 
via a giga stack connector to the top and bottom switch.

Configuration for Gig0/1 (the Gigastack connector)

interface GigabitEthernet0/1
switchport trunk encapsulation dot1q
switchport trunk allowed vlan 1,7,1002-1005
switchport mode trunk
end



The middle switch does not have any VTP updates coming to it.

VTP Version : 2
Configuration Revision  : 1
Maximum VLANs supported locally : 254
Number of existing VLANs: 5
VTP Operating Mode  : Client
VTP Domain Name : XX
VTP Pruning Mode: Disabled
VTP V2 Mode : Enabled
VTP Traps Generation: Disabled
MD5 digest  : 0x49 0x95
Configuration last modified by x.x.1.249 at 2-5-02 20:01:45
switch#

Has anyone out ther passed VTP information via the gigastack connectors?  If

so, is there a secret to get it to work correctly?  The switches that are 
connected to the 6509 do have updated VTP information.

Thanks.



_
Send and receive Hotmail on your mobile device: http://mobile.msn.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36009&t=35971
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Delay Metric in EIGRP [7:36001]

2002-02-20 Thread Sasa Milic

The router DOES pass total delay and minumum bandwidth of the route
to neighbors.

check "show ip eigrp topologu  

Sasa
CCIE No 8635



"Steven A. Ridder" wrote:
> 
> I believe the delay is by default set on the interface by the router based
> on the type of link it is.  I'm sure there's charts on CCO somewhere.  You
> can change this info on the interface with the delay command, which is the
> recommended way of changing a metric if you are forced to do so.  The
router
> dosen't pass the delay info of a link to other routers as a raw figure, it
> calculates the BW and delay, then multiplies it by 256 and sends that
> calculation to a neighbor, which is the metric.
> 
> ""Yatou Wu""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > Hi,
> >
> > In EIGRP, the delay metric is taken as configured in the interface of the
> > router by the administrator, by default, or by measurement?
> >
> > when the router calculates the metric, it needs to know the minimum
> > bandwidth along the path, and also the delay along the path. how can the
> > router pass the infor around? pass the total delay along the path, or
> delay
> > of every link?
> >
> > thanks
> >
> > yatou
> >
> > _
> > Get your FREE download of MSN Explorer at
> http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36010&t=36001
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Blocking ICQ and other Instant Messengers [7:35976]

2002-02-20 Thread Rik Guyler

I wouldn't say this covers "all" of them but the most widely used IM apps.
This is used on a PIX and applied to the inside interface so modify as
necessary to fit your needs.

access-list inside deny tcp any any eq 1863
access-list inside deny tcp any any eq 5000
access-list inside deny tcp any any eq 5001
access-list inside deny tcp any any eq 5050
access-list inside deny tcp any any eq 5100
access-list inside deny tcp any any eq 1214
access-list inside deny tcp any any range 6665 6669
access-list inside deny udp any any eq 5000
access-list inside deny udp any any eq 5001
access-list inside deny udp any any eq 5050
access-list inside deny udp any any eq 5100
access-list inside deny udp any any eq 1214
access-list inside deny ip any host 64.12.161.153
access-list inside deny ip any 206.142.53.0 255.255.255.0
access-list inside deny ip any 64.245.58.0 255.255.254.0
access-list inside deny ip any 213.248.107.0 255.255.255.0
access-list inside deny ip any host 205.188.179.233


Rik

-Original Message-
From: Paul Pavlicko [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, February 20, 2002 3:06 PM
To: [EMAIL PROTECTED]
Subject: Blocking ICQ and other Instant Messengers [7:35976]


Has anyone created an ACL to block all the Instant Messengers? If so, could
you send all the IP Addresses (or the ACL) that you use to block them.


Thanks,


Paul Pavlicko


**
Privileged/Confidential Information may be contained in this message. 
Unless you are the addressee (or authorized to receive for the 
addressee), you may not use, copy, deliver or disclose to anyone the 
message or any information contained in the message.  If you have 
received the message in error, please advise the sender by reply 
e-mail and delete the message.
**




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36011&t=35976
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Why some routers have one E1/PRI port while others have two? [7:36012]

2002-02-20 Thread [EMAIL PROTECTED]

I would like to ask a dump question here: When I ask for a cisco 2600 router
with one ISDN PRI 30 interface from reseller, sometimes I got a router with
one "Channelized E1/PRI port", the other times the routers come to me with
two such ports, and the prices are the same. The reseller told me that there
is no difference between two versions of cisco 2600 routers, and he believes
that the two ports are in the same module, which means I can only use the
whole router for one PRI 30 connection.

I don't believe those two ports are limited to only one PRI 30 connection,
as the "sh ver" says there are two channelized E1/PRI ports. Has anyone used
them before for two PRI 30 connections?

Tony
-- 




__
Your favorite stores, helpful shopping tools and great gift ideas.
Experience the convenience of buying online with Shop@Netscape!
http://shopnow.netscape.com/

Get your own FREE, personal Netscape Mail account today at
http://webmail.netscape.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36012&t=36012
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Delay Metric in EIGRP [7:36001]

2002-02-20 Thread Steven A. Ridder

It's not in a packet that gets sent.


""Sasa Milic""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> The router DOES pass total delay and minumum bandwidth of the route
> to neighbors.
>
> check "show ip eigrp topologu
>
> Sasa
> CCIE No 8635
>
>
>
> "Steven A. Ridder" wrote:
> >
> > I believe the delay is by default set on the interface by the router
based
> > on the type of link it is.  I'm sure there's charts on CCO somewhere.
You
> > can change this info on the interface with the delay command, which is
the
> > recommended way of changing a metric if you are forced to do so.  The
> router
> > dosen't pass the delay info of a link to other routers as a raw figure,
it
> > calculates the BW and delay, then multiplies it by 256 and sends that
> > calculation to a neighbor, which is the metric.
> >
> > ""Yatou Wu""  wrote in message
> > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > Hi,
> > >
> > > In EIGRP, the delay metric is taken as configured in the interface of
the
> > > router by the administrator, by default, or by measurement?
> > >
> > > when the router calculates the metric, it needs to know the minimum
> > > bandwidth along the path, and also the delay along the path. how can
the
> > > router pass the infor around? pass the total delay along the path, or
> > delay
> > > of every link?
> > >
> > > thanks
> > >
> > > yatou
> > >
> > > _
> > > Get your FREE download of MSN Explorer at
> > http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36013&t=36001
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Delay Metric in EIGRP [7:36001]

2002-02-20 Thread Steven A. Ridder

Oops, I looked it up and what do you know... these's a nice field for
bandwidth and delay.
""Steven A. Ridder""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> It's not in a packet that gets sent.
>
>
> ""Sasa Milic""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > The router DOES pass total delay and minumum bandwidth of the route
> > to neighbors.
> >
> > check "show ip eigrp topologu
> >
> > Sasa
> > CCIE No 8635
> >
> >
> >
> > "Steven A. Ridder" wrote:
> > >
> > > I believe the delay is by default set on the interface by the router
> based
> > > on the type of link it is.  I'm sure there's charts on CCO somewhere.
> You
> > > can change this info on the interface with the delay command, which is
> the
> > > recommended way of changing a metric if you are forced to do so.  The
> > router
> > > dosen't pass the delay info of a link to other routers as a raw
figure,
> it
> > > calculates the BW and delay, then multiplies it by 256 and sends that
> > > calculation to a neighbor, which is the metric.
> > >
> > > ""Yatou Wu""  wrote in message
> > > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > > Hi,
> > > >
> > > > In EIGRP, the delay metric is taken as configured in the interface
of
> the
> > > > router by the administrator, by default, or by measurement?
> > > >
> > > > when the router calculates the metric, it needs to know the minimum
> > > > bandwidth along the path, and also the delay along the path. how can
> the
> > > > router pass the infor around? pass the total delay along the path,
or
> > > delay
> > > > of every link?
> > > >
> > > > thanks
> > > >
> > > > yatou
> > > >
> > > > _
> > > > Get your FREE download of MSN Explorer at
> > > http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36014&t=36001
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Access List Builder [7:36015]

2002-02-20 Thread Justin M. Clark

Does anyone know of an application that will build an access list for you?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36015&t=36015
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Trunk Modes Perspective [7:36016]

2002-02-20 Thread Pierre-Alex GUANEL

In the "real world" when would you set a trunk type in "auto" rather than
"desirable"?

Both will be triggered when the connected device is set to "on", "desirable"
(or auto when setup with "desirable").

Thank you,

Pierre-Alex




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36016&t=36016
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: IDS 4210 help [7:35940]

2002-02-20 Thread Chee Kin

Login as root.  The default password is "attack".
You need to login as root to run "sysconfig-sensor".

Login as netrangr to monitor the IDS status and to check log files.

Regards,
cheekin

- Original Message -
From: "Rob Webber" 
To: 
Sent: Wednesday, February 20, 2002 11:05 PM
Subject: Re: IDS 4210 help [7:35940]


> You will need to connect to the console of the IDS.  Log in as netrangr
> (note: NO "e" in netrangr). Default Passord: "attack"  Then enter:
> #sysconfig-sensor
>
> You will see a menu:
>
> 1 - IP Address
>
> 2 - IP Netmask
>
> 3 - IP Host Name
>
> 4 - Default Route
>
> 5 - Network Access Control
>
> 6 - Communications Infrastructure
>
> 7 - Date/Time and Timezone
>
> 8 - Passwords
>
> 9 - Secure Communications
>
> x - Exit
>
> At a minimum you will need to configure 1, 2, 4, 5 and 6 (for #5 enter the
> network that the CSPM server resides on. If its 192.168.15.0/24, enter
> 192.168.15.) For #6, write down the info you assign the IDS. You will need
> this for the CSPM. You will need org. number (such as "1"), Node # (such
as
> "1") and org name (like your domain name).
>
> HTH, Rob.
>
> CCIE 6922
>
> ""Shane Stockman""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > I am currently setting up a IDS sensor 4210 and would like to know how
to
> > set up the command interface and the monitoring interface as I would
like
> to
> > manage it from my CSPM server.
> >
> > I need to get the command interface to talk to the switch but I don't
know
> > where to set an ip address for it so that my CSPM software cna find it.
> >
> > Thanks in advance.
> >
> > _
> > Get your FREE download of MSN Explorer at
> http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36017&t=35940
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



exec-timeout 0 0 ?? [7:36018]

2002-02-20 Thread Cisco Nuts

Hello,
What does this cmd. #exec-timeout 0 0 exactly do? I am confused. Does it set 
the console timeout to 0 min 0 sec or to infinitynever time out...which 
is what I want on my routers :-)
Which one?
Thank you.


_
Get your FREE download of MSN Explorer at http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36018&t=36018
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Access List Builder [7:36015]

2002-02-20 Thread William Pearch

Funny you should ask - I was at a Cisco 'thang' today and Solsoft was
demonstrating their Visual Security Policy Management product.  As close
as I can come to describing it is to call it Visual Basic for routers
and VPNs.  Kind of pricy - $15K for the small enterprise edition, but it
will modify ALL the access lists to allow data flows.  And other cool
stuff. :)
http://www.solsoft.com is the url.  No financial relationship, never
used the product, it just looks 'kewl'.

TTFN,
Bill

-Original Message-
From: Justin M. Clark [mailto:[EMAIL PROTECTED]] 
Sent: Wednesday, February 20, 2002 3:14 PM
To: [EMAIL PROTECTED]
Subject: Access List Builder [7:36015]


Does anyone know of an application that will build an access list for
you?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36019&t=36015
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Access List Builder [7:36015]

2002-02-20 Thread Kevin St.Amour

Gold Wire (I think)

Justin M. Clark wrote:

>Does anyone know of an application that will build an access list for you?
_
Do You Yahoo!?
Get your free @yahoo.com address at http://mail.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36020&t=36015
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: exec-timeout 0 0 ?? [7:36018]

2002-02-20 Thread Steven A. Ridder

makes the time infinity.
""Cisco Nuts""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hello,
> What does this cmd. #exec-timeout 0 0 exactly do? I am confused. Does it
set
> the console timeout to 0 min 0 sec or to infinitynever time
out...which
> is what I want on my routers :-)
> Which one?
> Thank you.
>
>
> _
> Get your FREE download of MSN Explorer at
http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36021&t=36018
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: exec-timeout 0 0 ?? [7:36018]

2002-02-20 Thread Bill K.

Never timeout.

""Cisco Nuts""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hello,
> What does this cmd. #exec-timeout 0 0 exactly do? I am confused. Does it
set
> the console timeout to 0 min 0 sec or to infinitynever time
out...which
> is what I want on my routers :-)
> Which one?
> Thank you.
>
>
> _
> Get your FREE download of MSN Explorer at
http://explorer.msn.com/intl.asp.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36022&t=36018
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Access List Builder [7:36015]

2002-02-20 Thread Kevin Wigle

Yes, but it's not cheap...

Access Control List Manager
Cisco ACL Manager is an add-on application to CW2000 RME. ACL Manager
provides a Web interface to a set of applications that manage the access
lists of Cisco devices in enterprise network environments. It dramatically
reduces the time needed to develop new filters and maintain existing traffic
filters in large-scale deployments of Cisco devices.

Simple Administration
ACL Manager provides a wizard and template-based approach to simplifying the
setup, management, and optimization of Cisco IOS-based IP and Internetwork
Packet Exchange (IPX) traffic filtering and device access control. ACL
Manager significantly reduces the time required to manage and administrate
ACLs using the command-line interface (CLI) of Cisco IOS Software.

Components
ACL Manager includes an access list editor, policy template manager, network
and service class managers for scalability, access list navigation tools for
troubleshooting, and automated distribution of access list updates.

Template Manager
A template manager allows users to develop access control list templates and
deploy them in a timely and consistent manner. This reduces the time
required to deploy multiple changes in the network. It also reduces the
inherent errors introduced by the traditional way of managing ACLs.

Tracking Approach
ACL Manager provides a structured approach to tracking changes. You can
track who made the changes and when the changes were made as well as when
the changes were deployed in the network. As ACL numbers become more
consistent with regards to naming conventions and use, this will lead to
increased reliability in the network.

Troubleshooting
The ability for users to troubleshoot is enhanced because they can associate
comments with the access list or the entries within the access lists
themselves.

Ordering Information
ACL Manager is part of the Routed WAN Management Solution. For more
information on ACL Manager and the Routed WAN Management Solution go to:
http://www.cisco.com/warp/customer/cc/pd/wr2k/rtwnmn/



Kevin Wigle


- Original Message -
From: "Justin M. Clark" 
To: 
Sent: Wednesday, 20 February, 2002 19:13
Subject: Access List Builder [7:36015]


> Does anyone know of an application that will build an access list for you?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36024&t=36015
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: exec-timeout 0 0 ?? [7:36018]

2002-02-20 Thread Thom Castognalia

Phil - It will make your timeout infinity.  If you want to set your timeout
to absolutely nothing, do the command, "no exec"


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36023&t=36018
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Review of Boson CCIE Security Pre-Qualificatio [7:35951]

2002-02-20 Thread Thom Castognalia

Ive used boson quite a bit in the past, some exams are good, some exams
really suck.  It depends on the author.  Boson doesnt really seem to have a
lot of "quality control."


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36025&t=35951
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Delay Metric in EIGRP [7:36001]

2002-02-20 Thread Priscilla Oppenheimer

At 07:03 PM 2/20/02, Steven A. Ridder wrote:
>It's not in a packet that gets sent.

It is actually. Here's a packet for you:

DLC:  - DLC Header -
   DLC:  Destination = Station Cisco1053E80
   DLC:  Source  = Station Cisco1002E75
   DLC:  Ethertype   = 0800 (IP)
IP: - IP Header -
   IP: Version = 4, header length = 20 bytes
   IP: Type of service = 00
   IP:   000.    = routine
   IP:   ...0  = normal delay
   IP:    0... = normal throughput
   IP:    .0.. = normal reliability
   IP: Total length= 68 bytes
   IP: Identification  = 0
   IP: Flags   = 0X
   IP:   .0..  = may fragment
   IP:   ..0.  = last fragment
   IP: Fragment offset = 0 bytes
   IP: Time to live= 2 seconds/hops
   IP: Protocol= 88 (EIGRP)
   IP: Header checksum = 4C3F (correct)
   IP: Source address  = [172.16.10.2] Charlotte
   IP: Destination address = [172.16.10.1] Albany
   IP: No options
EIGRP: - Enhanced IGRP Header -
   EIGRP:
   EIGRP: Version= 2
   EIGRP: Opcode = 1 (Update)
   EIGRP: EIGRP Checksum = E17D (correct)
   EIGRP: Flags (unused) = 
   EIGRP: Flags  = 0001
   EIGRP:      ..0. = Conditionally receive mode is not 
required
   EIGRP:      ...1 = Is an initial update packet
   EIGRP: Sequence number  = 1
   EIGRP: Acknowledgment number= 0
   EIGRP: Autonomous System number = 100
   EIGRP:
   EIGRP: Protocol ID  = 0x01 (IP)
   EIGRP: Type Code= 0x0102 (IP Internal Routes)
   EIGRP: Field length = 28
   EIGRP: Next hop address= 0 (use source IP addr)
   EIGRP: Time delay (10 msec/256)= 512000
   EIGRP: Path bandwidth (2,560,000,000/kbps) = 1657856
   EIGRP: Min/max transmission unit (MTU) = 1500
   EIGRP: Hop count   = 0
   EIGRP: Reliability (error percentage)  = 250
   EIGRP: Load utilization percentage = 1
   EIGRP: Reserved
   EIGRP: Prefix length in bits   = 24
   EIGRP: IP Destination Address  = 0.172.16.40

Priscilla



>""Sasa Milic""  wrote in message
>[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > The router DOES pass total delay and minumum bandwidth of the route
> > to neighbors.
> >
> > check "show ip eigrp topologu
> >
> > Sasa
> > CCIE No 8635
> >
> >
> >
> > "Steven A. Ridder" wrote:
> > >
> > > I believe the delay is by default set on the interface by the router
>based
> > > on the type of link it is.  I'm sure there's charts on CCO somewhere.
>You
> > > can change this info on the interface with the delay command, which is
>the
> > > recommended way of changing a metric if you are forced to do so.  The
> > router
> > > dosen't pass the delay info of a link to other routers as a raw figure,
>it
> > > calculates the BW and delay, then multiplies it by 256 and sends that
> > > calculation to a neighbor, which is the metric.
> > >
> > > ""Yatou Wu""  wrote in message
> > > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > > Hi,
> > > >
> > > > In EIGRP, the delay metric is taken as configured in the interface of
>the
> > > > router by the administrator, by default, or by measurement?
> > > >
> > > > when the router calculates the metric, it needs to know the minimum
> > > > bandwidth along the path, and also the delay along the path. how can
>the
> > > > router pass the infor around? pass the total delay along the path, or
> > > delay
> > > > of every link?
> > > >
> > > > thanks
> > > >
> > > > yatou
> > > >
> > > > _
> > > > Get your FREE download of MSN Explorer at
> > > http://explorer.msn.com/intl.asp.


Priscilla Oppenheimer
http://www.priscilla.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36026&t=36001
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



%Error: No System flash chip information available - Help ?? [7:36028]

2002-02-20 Thread Cisco Nuts

Ok,
Just tried to unpartition and partition my flash and then this error msg. 
when I do a #sh ver . help!! :-)

%Error: No System flash chip information available

Here is what happened:
First configed-register to 0x2101...Reloaded...
Then a erase flash cmd.
Remote(boot)#erase flash
Partition   SizeUsed  Free  Bank-Size  State  Copy Mode
  1 8192K   5180K 3011K 8192K  Read/Write Direct
  2 8192K   7918K  273K 8192K  Read/Write Direct

[Type ? for partition directory; ? for full directory; q to abort]
Which partition? [default = 1] 2

System flash directory, partition 2:
File  Length   Name/status
  1   8108960  /c2500-js-l_112-17.bin
[8109024 bytes used, 279584 available, 8388608 total]

Erase flash device, partition 2? [confirm]
Are you sure? [yes/no]: y
Erasing device...  ...erased

Next step did a:
Remote(boot)(config)#partition flash 2 16 to make it one big 16MB

Then did a #sh flash
Remote(boot)#sh flash

System flash directory, partition 1:
File  Length   Name/status
  1   5304572  80135005.bin
[5304636 bytes used, 11472580 available, 16777216 total]
16384K bytes of processor board System flash (Read/Write)

%Error: No System flash chip information available

Can anyone help?? Thank you.


_
Join the worlds largest e-mail service with MSN Hotmail. 
http://www.hotmail.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36028&t=36028
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: exec-timeout 0 0 ?? [7:36018]

2002-02-20 Thread Engelhard M. Labiro

> What does this cmd. #exec-timeout 0 0 exactly do? I am confused.
> Does it set the console timeout to 0 min 0 sec or to infinitynever
> time out...which  is what I want on my routers :-)
> Which one?

The later is right. "0 0" means there will be no timeout for the
configured mode.

HTH




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36029&t=36018
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Delay Metric in EIGRP [7:36001]

2002-02-20 Thread Priscilla Oppenheimer

The delay part of the EIGRP composite metric is not measured. It's based on 
the type of interface. Each type of interface has a default value. You can 
change it, although this is risky and not recommended.

Because EIGRP is a distance-vector protocol, the router sends route updates 
that list networks. For each network, the router states the different parts 
of the composite metric:

1) The delay to get to the network, which is a cumulation of all interface 
delays.

2) The bandwidth to that network, which is the minimum bandwidth for all 
interfaces.

3) Reliability which is not used by default, but you can configure the 
router to use it. If used, the reliability is measured and represents how 
much of the bandwidth to the network is in use.

4) Load which is not used by default, but you can configure the router to 
use it. If used, the load is measured and represents the fraction of 
packets that arrive at the network undamaged.

The router also sends the following info, which is not part of the metric, 
but useful for other routers to know:

1) MTU is the maximum packet size that can be sent along the entire path 
without fragmentation. (That is, it is the minimum of the MTUs of all the 
networks involved in the path.)

2) The hop count is simply the number of routers that a packet will have to 
go through to get to the destination.

3) Next hop is the address of the router to use to get to the destination, 
which is usually the router sending the update.

Priscilla

At 05:15 PM 2/20/02, Yatou Wu wrote:
>Hi,
>
>In EIGRP, the delay metric is taken as configured in the interface of the
>router by the administrator, by default, or by measurement?
>
>when the router calculates the metric, it needs to know the minimum
>bandwidth along the path, and also the delay along the path. how can the
>router pass the infor around? pass the total delay along the path, or delay
>of every link?
>
>thanks
>
>yatou
>
>_
>Get your FREE download of MSN Explorer at http://explorer.msn.com/intl.asp.


Priscilla Oppenheimer
http://www.priscilla.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36030&t=36001
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Why some routers have one E1/PRI port while others have [7:36031]

2002-02-20 Thread Sasa Milic

You got NM-2CE1/PRI for the price of NM-1CE1/PRI ? Well, that's great :)

You can definitely use both ports.

Sasa

"[EMAIL PROTECTED]" wrote:
> 
> I would like to ask a dump question here: When I ask for a cisco 2600
router
> with one ISDN PRI 30 interface from reseller, sometimes I got a router with
> one "Channelized E1/PRI port", the other times the routers come to me with
> two such ports, and the prices are the same. The reseller told me that
there
> is no difference between two versions of cisco 2600 routers, and he
believes
> that the two ports are in the same module, which means I can only use the
> whole router for one PRI 30 connection.
> 
> I don't believe those two ports are limited to only one PRI 30 connection,
> as the "sh ver" says there are two channelized E1/PRI ports. Has anyone
used
> them before for two PRI 30 connections?
> 
> Tony
> --
> 
> __
> Your favorite stores, helpful shopping tools and great gift ideas.
> Experience the convenience of buying online with Shop@Netscape!
> http://shopnow.netscape.com/
> 
> Get your own FREE, personal Netscape Mail account today at
> http://webmail.netscape.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36031&t=36031
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Cisco Practical Studies, Multiple MAC Address [7:35935]

2002-02-20 Thread ellis steve

I vaguely remember doing something like this before.

Don't quote me as correct but try (in global conf):

   " arp A.B.C.D H.H.H arpa "
  where A.B.C.D = IP address
H.H.H = MAC

You can put multiple entries in for different IP , same MAC.

I guess then do a sh ip arp and see if it is up in lights.

Hope this works for you.

Cheers








Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36032&t=35935
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCIE study guide [7:35983]

2002-02-20 Thread Thom Castognalia

I just spent $90 and bought the book from boot camp (ISBN 1931881006).  It
says it comes with a CD-ROM of 250+ questions.  After I get it, and take my
test in a couple weeks, I'll let you know what I think of it!  Does anyone
know who wrote the book?  (I'm sure I'll find out when I get it in a couple
days, I'm just curious)


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36027&t=35983
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: exec-timeout 0 0 ?? [7:36018]

2002-02-20 Thread Chuck

and if you want to have a ton of fun, set it to something like 0 1 ;->


""Thom Castognalia""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Phil - It will make your timeout infinity.  If you want to set your
timeout
> to absolutely nothing, do the command, "no exec"




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36033&t=36018
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: can you bind two frame relay circuits? [7:35854]

2002-02-20 Thread Chuck

this news will surely disappoint the woman who posted the question. If
memory serves,she works for a company that probably does not have 12xxx's in
their lineup

Chuck

""MADMAN""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Yes I have since you pointed that out.  Know what it means to
> ASSume!!  It is a 12000 series only feature at this point.
>
>   Dave
>
> Chuck wrote:
> >
> > according to the information in the link, this feature is supported only
on
> > the 12000 series. Anyone checked to see if the feature has been migrated
> > down to other platforms as newer IOS's are released?
> >
> > ""MADMAN""  wrote in message
> > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > You want to get fancy you can try multilink frame relay:
> > >
> > >
> >
>
http://www.cisco.com/univercd/cc/td/doc/product/software/ios120/120newft/120
> > limit/120s/120s17/17s_mfr.htm
> > >
> > >   Then again if you want it simple and to work do what Patrick aluded
> > > to, enable CEF and on the interface choose your favorite switching
> > > mechanism, per packet or per destination.
> > >
> > >   Dave
> > >
> > > Patrick Ramsey wrote:
> > > >
> > > > well you wouldn't really "bind" them...but, if you were using a
routing
> > > > protocol such as ospf, then it could round robin packets for you.
> > > >
> > > > -Patrick
> > > >
> > > > >>> beth  02/19/02 10:34AM >>>
> > > > I have several 256k frame relay circuits some coming back to same
host
> > > > circuit
> > > > my question is , is there anyway to way to bind a couple of these on
a
> > > router
> > > > to increase bandwidth to 512k??
> > > > >  Confidentiality DisclaimerThis email and any
files
> > > transmitted with it may contain confidential and
> > > > /or proprietary information in the possession of WellStar Health
> System,
> > > > Inc. ("WellStar") and is intended only for the individual or entity
to
> > whom
> > > > addressed.  This email may contain information that is held to be
> > > > privileged, confidential and exempt from disclosure under applicable
> > law.
> > > If
> > > > the reader of this message is not the intended recipient, you are
> hereby
> > > > notified that any unauthorized access, dissemination, distribution
or
> > > > copying of any information from this email is strictly prohibited,
and
> > may
> > > > subject you to criminal and/or civil liability. If you have received
> > this
> > > > email in error, please notify the sender by reply email and then
delete
> > > this
> > > > email and its attachments from your computer. Thank you.
> > > >
> > > > 
> > > --
> > > David Madland
> > > Sr. Network Engineer
> > > CCIE# 2016
> > > Qwest Communications Int. Inc.
> > > [EMAIL PROTECTED]
> > > 612-664-3367
> > >
> > > "Emotion should reflect reason not guide it"
> --
> David Madland
> Sr. Network Engineer
> CCIE# 2016
> Qwest Communications Int. Inc.
> [EMAIL PROTECTED]
> 612-664-3367
>
> "Emotion should reflect reason not guide it"




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36034&t=35854
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: MLPS-VPN requirements [7:35972]

2002-02-20 Thread Chuck

try this one:

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fswt
ch_c/swprt3/xcftagov.htm#1007630
watch the wrap

you might have to scroll down a bit - this is from the Cisco Configuration
Guide on CCO

HTH

Chuck


""Stanzin Takpa""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi !
>   Can anybody know, what are the basic MPLS things that should be
> configured there on the routers (backbone) before going for MPLS-VPN.
> Thanks
>
> Stanzin Takpa
> Astracon,
> 6560 S Greenwood Plaza Blvd.,
> Engelwood, CO-80111
> USA




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36035&t=35972
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



  1   2   >