vpnclient notifications [7:52118]

2002-08-26 Thread Delic Darko

Any hints how to send notification to vpnclient from PIX. Looked at cisco
documentation but could not find any references for this.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52118&t=52118
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



DCT,DTE [7:52117]

2002-08-26 Thread Mohamed Saro

When I connect two routers 4500 with DCE octal cable directly to DTE v.35
cable connected to another router 2500 the interfaces going up and down any
configuration tips?

[GroupStudy.com removed an attachment of type application/ms-tnef which had
a name of winmail.dat]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52117&t=52117
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Tonight's Homily - Test Writing and Preparing for Tests [7:52116]

2002-08-26 Thread Chuck's Long Road

This evening's study time was spent writing a Study Lab exercise.

As some of you know, I'm writing a Study Guide for on of those places that
sells study materials. Part of the deal is writing a couple of lab exercises
so that those who plunk down their hard earned dough walk away with some
sense of value received.

It's one thing to write quick and dirty labs for Groupstudy. I've done any
number of those over the past couple of years, trying to illustrate a point,
or examine a mystery that's come up on this list.

It's something else completely to write something that you expect somebody
else to pay for.  I know how I feel when I pay for something, only to be
disappointed at the quality or the content. So I am working hard to produce
something of value. And herein lies tonight's lesson.

As a result of my work of the past couple of weeks, I believe I'm starting
to understand the subtlety of the various study materials, and of the CCIE
Lab exam itself. It's not about banging out a few questions. It's even less
about banging out some difficult questions. It's about choosing topics
wisely. It's about choosing test topics that require a test taker to think,
to add two plus two, or more importantly, to see that in adding two plus two
one must take into account binary, octal, and hex.

The lab exercise in question is a basic Catalyst 3550 orientation lab.
Connect a few routers, configure a few vlans. Pretty basic, isn't it? So
where is the value, I asked myself? I revisit the set of tasks. Let's change
that list a bit. Some ports should be port-based vlan ports. Others should
be L3 ports. Let's test L3 by setting up three different routing protocols
on the switch, each peering with a different router. Ah, but those
particular ports are L2 only, assigned to vlans. Now what?  ( The solution
doesn't seem to work, until I notice I have mistaken odd numbered ports for
even numbered ports. I'm reminded of my last trip through the Lab. "Ms.
Proctor, I think the cabling is wrong. I'm seeing things I shouldn't be
seeing on the vlans." -  "No, Mr. Test Taker, the cabling is not wrong.
Perhaps you should look at your configurations again."  Ironically, L2 was
my best percentage scoring section. ) Then let's add the requirement that
one user in each of two different routing domains need communicate via SNA.
Now what?

So I construct a story for this practice lab. I begin to look at the various
components of that story. Does it make sense? More importantly, does it
work? If my router is connected to a port that is physically in a vlan, and
I configure the switch to talk to that router via OSPF, can I make it work?
Will my scenario hold water? Another evening's work, and I believe I should
have something decent for my editor.

Having been through the CCIE Lab twice, I can say with assurance that one
should never bet the house nor anything else one values on whether or not
something will be tested. Oh, it's pretty well known what the core topics
are. Generations of CCIE Lab candidates have been tripped up by things like
redistribution, classful limitations of routing protocols, and a whole bunch
of things that depend upon based L3 reachability. It is never the protocols
themselves, but some knob, some configuration subtlety, some second or third
thing that must be invoked to solve the problem.

I'm seeing this from the other side now. How to work a question so that the
answer is what I want to test. How to test to prove that what I think should
happen really does. For example, will the Mac access-list really do what I
think it should? I can't test because I don't have SNA machines to connect.
The routing still works over the links where the MAC filter is applied. Is
that indication that the L2 filter is not working? And how in tarnation does
one change the management vlan on these new switches? The documentation is
strangely silent on the matter, and the commands given for the 3500 series
switches don't work on the 3550's, as near as I can tell.

Sometimes it seems like I'm peeling an onion. The more layers I remove, the
more layers appear.

But you know, here at the end of this evening, I feel smarter. I feel like
some great revelation is about to hit me. So I want to come back for more.

Shadows dancing on a wall. Firelight on a cool evening. Stillness. Peace.

Goodnight everyone.

--

www.chuckslongroad.info

still  a  work in progress,
but on line for your enjoyment




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52116&t=52116
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Looking for ISDN Simulator [7:52114]

2002-08-26 Thread HUNG NGUYEN

Hello,

I'm looking for ISDN simulator for my CCIE lab. I
wonder if anyone can point me to the right place to
buy one (as cheap as possible :-) ). or if someone
wants to sell back.

Thank you,
AH

__
Do You Yahoo!?
Yahoo! Finance - Get real-time stock quotes
http://finance.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52114&t=52114
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: IPv6 despair (IOS 12.2T psychosis) [7:52032]

2002-08-26 Thread Jenny McLeod

Neal Rauhauser wrote:
> 
> BGP is funny with RIB-failure, OSPF is weird with dropping
> subnets
> that are visible elsewhere in a simple network, NAT some times
> explodes
> depending on version, EIGRP is a little screwy, and now I've
> got a truly
> exceptional problem :-(
> 
>   I've got a working async config - two 1750s back to back with
> aux
> ports, Paradyne 3820 plus modems, and a Teltone pots simulator.
> The
> router running 12.1.15 dials the other, can telnet to it, etc,
> but the
> 12.2T box can not ping, telnet, or anything. YES! I'm not
> kidding -
> complete failure from one side, but the box on the other side
> can cross
> the link.
> 
Sounds rather like a bug I came across a few weeks ago.  Should be in the
archives.  Resolution for me - turn off ip route caching.

JMcL 
> 
>   I've been running this stuff in a production network and I've
> just hit
> the wall - its all coming out in a week after I get back from
> class and
> some nice, conservative GD image is taking its place.
> 
>   I didn't even get to touch IPv6 in production ... the IPv4
> stuff is
> just too screwy.
> 
> 
> 
> -- 
> Neal Rauhauser CCNP, CCDP voice: 402-301-9555
> mailto:[EMAIL PROTECTED]   fcc  : k0bsd
> "I've seen the angels wearing their disguise,
> ordinary people leading ordinary lives" - Tracy Chapman
> 
> 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52113&t=52032
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Pix Firewall Logs [7:52099]

2002-08-26 Thread Elijah Savage III

I have my pix logging to a syslog server can anyone recommend a utility
for easily going through the logs?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52099&t=52099
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: 2500 Memory Question. [7:52097]

2002-08-26 Thread Chuck's Long Road

z
""Robert D. Cluett""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> All,
>
> Am I reading this correctly?  Is this stating that I do have 16MB Flash /
> 16MB DRAM but need to unpartition the flash?  If so, how do I unparitions
> Flash Memory?  Thanks in advance!

Router_3(config)#partition ?
  WORD  Partition system flash devices

Router_3(config)#partition flash ?
Number of partitions in device

Router_3(config)#partition flash

you'll forgive me if I do not actually enter the command. ;->

Chuck

--

www.chuckslongroad.info

still  a  work in progress,
but on line for your enjoyment




>
> Kennedy-2502 uptime is 4 minutes
> System restarted by power-on
> System image file is "flash:2:c2500-d-l.112-9", booted via flash
>
> cisco 2500 (68030) processor (revision L) with 14336K/2048K bytes of
memory.
> Processor board ID 06992214, with hardware revision 
> Bridging software.
> X.25 software, Version 2.0, NET2, BFE and GOSIP compliant.
> 1 Token Ring/IEEE 802.5 interface(s)
> 2 Serial network interface(s)
> 32K bytes of non-volatile configuration memory.
> 8192K bytes of processor board System flash partition 1 (Read/Write)
> 8192K bytes of processor board System flash partition 2 (Read/Write)
>
> Cluett




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52098&t=52097
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



2500 Memory Question. [7:52097]

2002-08-26 Thread Robert D. Cluett

All,

Am I reading this correctly?  Is this stating that I do have 16MB Flash /
16MB DRAM but need to unpartition the flash?  If so, how do I unparitions
Flash Memory?  Thanks in advance!

Kennedy-2502 uptime is 4 minutes
System restarted by power-on
System image file is "flash:2:c2500-d-l.112-9", booted via flash

cisco 2500 (68030) processor (revision L) with 14336K/2048K bytes of memory.
Processor board ID 06992214, with hardware revision 
Bridging software.
X.25 software, Version 2.0, NET2, BFE and GOSIP compliant.
1 Token Ring/IEEE 802.5 interface(s)
2 Serial network interface(s)
32K bytes of non-volatile configuration memory.
8192K bytes of processor board System flash partition 1 (Read/Write)
8192K bytes of processor board System flash partition 2 (Read/Write)

Cluett




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52097&t=52097
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Off Topic: VPN Router to Router Understanding? [7:52040]

2002-08-26 Thread Mark W. Odette II

Robert-

>From my understanding, the folks at Linksys take it for granted that you
will want to perform a "Split-Tunnel" operation, so that you can surf
the net off of your ISP's Gateway, and only send data that is intended
to be encrypted (data destined for the remote 'private' LAN) over the
tunnel.

I have not verified this myself, but I do know that they also allow
"Pass-Thru" for IPSec and PPTP... so on some models, you really can't
terminate a VPN tunnel ON the Linksys DSL Router, but others you can.


An easy way to find out if you're going out your remote network's
gateway for the net is to perform a Traceroute to an Internet Host
say 198.6.1.2 (a UUNet DNS Cache Server).  IF you're going out the
remote end of the tunnel to access the 'Net, then you'll see your LAN
IP, the Remote LAN IP for the second hop, and then the ISP side of the
Public IP subnet the remote tunnel device is connected to.  If you're
going directly to the net, you're second hop should be your ISP's end of
the DSL connection.
YMMV.

HTH,
Mark

-Original Message-
From: Robert D. Cluett [mailto:[EMAIL PROTECTED]] 
Sent: Sunday, August 25, 2002 11:02 AM
To: [EMAIL PROTECTED]
Subject: Off Topic: VPN Router to Router Understanding? [7:52040]

All,

My apologies for having to post this here, but I have not been able to
get
an answer from anyone.

The scenario is this, I have 2 linksys routers connected to each other
over
a VPN tunnel (dsl).  My question is, if I was to access the internet
would
it need to travel on the tunnel to the other linksys and out to the
internet, or would it simply travel my dsl connection to my ISP'd
gateway
router and out?  I am trying to understand what type of load I will be
putting on my dsl connection.

Any thoughts would help..thanks

Cluett




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52096&t=52040
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Books for the CCNP Routing Exam [7:52094]

2002-08-26 Thread Dave

I studied the Sybex book on 503 and passed 603.  I thought that it was very
thorough and it has lab exercises included, also.
- Original Message -
From: "Arun DK" 
To: 
Sent: Monday, August 26, 2002 3:34 PM
Subject: Books for the CCNP Routing Exam [7:52094]


> Hi,
>
>
>
> I need some recommenendation on good Study material for the rouoting Exam,
> CCNP , have cleared rest of the three using Cisco-Press Certification
books
>  for the routing i have a older book Cisco-press. with the change of the
> exams, i was not sure..if the same books would be helpful..It is for
version
> 2.0 2001 edition
>
>
>
> Arun
>
> [GroupStudy.com removed an attachment of type image/gif]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52095&t=52094
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: PA-MCX-8TE1 with Full T1 [7:52090]

2002-08-26 Thread Steven a

No Speed 64 is the default. But I will try it. Are your sure this card
supports straight no PRI T1? I have heard conflicting reports.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52093&t=52090
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Books for the CCNP Routing Exam [7:52094]

2002-08-26 Thread Arun DK

Hi,



I need some recommenendation on good Study material for the rouoting Exam,
CCNP , have cleared rest of the three using Cisco-Press Certification books 
 for the routing i have a older book Cisco-press. with the change of the
exams, i was not sure..if the same books would be helpful..It is for version
2.0 2001 edition



Arun

[GroupStudy.com removed an attachment of type image/gif]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52094&t=52094
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: pix and xlate timeouts [7:52048]

2002-08-26 Thread David Armstrong

Yes, and they're very annoying. I installed a 506 last Friday. Mostly the
problem is with users who are receiving their IP's via DHCP configured on
the PIX but occasionally a user with a static address has this problem.
CLEAR XLATE temporarily resolves  the problem. I was getting ready to delve
into the solution on CCO but thought I'd check here first.

Evidently I'm not alone. I'll reply here when the answer is found.

David Armstrong

""Jorge Gittins""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Has anyone here experienced problems with the new ios  6.2 on the pix. I
> have noticed when I installed it that some users can connect to the
> internet until I issue clear xlate command.
>
> These are my current timeouts:
>
>
> timeout xlate 3:00:00
> timeout conn 12:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323
> 0:05:00 s
> ip 0:30:00 sip_media 0:02:00
> timeout uauth 0:05:00 absolute




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52088&t=52048
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: IOS SLB [7:52089]

2002-08-26 Thread Chuck's Long Road

""Brian Zeitz""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Is there any way to make IOS SLB work on a 3550? I think that if these
> switches are going to be tested in the CCIE exam, they should allow the
> feature to be used. Ill IOS SLB only work on a 6500 and 7000 series?
> There is no way to play with SLB on smaller routers and switches is
> there?
>

Not that I've found so far, and I believe I've been through the
documentation fairly thoroughly. I won't claim I understand everything I've
read, but the only load-balancing references I have come across relate to
sharing across vlans and etherchannel links.

Right tool for the job? The 3550 has been deemed pretty much an access
switch. Cisco sells lots of other expensive things to do load sharing among
multiple servers.

Lastly, the CCIE Lab cannot possibly test everything of importance or
relevance. When trying to detemine Lab content, one question to ask might be
"what about this technology or feature can become complex in an interaction
with other equipment and other features?"

In other words, the CCIE Lab is not necessarily about configuring features
on equipment, but rather about successfully implementing a complex scenario.
It is true that there is some monkey work there, but it is far more true
that configuration requirements are designed to test one's ability to think
through implications. A particular requirement might state that you have to
do A. What it will not state is that as a result of doing A, you have to add
knobs B,C, and D, or else your redistribution is hosed, or your DLSw peers
flap, or you are now seeing routes that you should not be seeing.

HTH

--

www.chuckslongroad.info

still  a  work in progress,
but on line for your enjoyment
cisco.html
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52092&t=52089
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: PA-MCX-8TE1 with Full T1 [7:52090]

2002-08-26 Thread Daniel Cotts

You might want to specify the speed as well.

 channel-group 0 timeslots 1-24 speed 64

> -Original Message-
> From: Steven a [mailto:[EMAIL PROTECTED]]
> Sent: Monday, August 26, 2002 1:13 PM
> To: [EMAIL PROTECTED]
> Subject: PA-MCX-8TE1 with Full T1 [7:52090]
> 
> 
> Is it possible to configure an interface to support a full 
> non channellized
> T1? If so how?
> 
> The T1 interface goes up up but after I config the serial 
> interface goes UP
> UP then after about 10 seconds the serial goes up down. The 
> T1 never goes
> down.
> 
> 
> version 12.2 
> service timestamp 
> service timestamps log uptime 
> no service password-encryption 
> ! 
> hostname Router 
> ! 
> boot bootldr bootflash:c7200-boot-mz.120-17.S 
> card type t1 1 
> enable password 
> ! 
> ! 
> controller T1 1/0 
> framing esf 
> service-type data 
> clock source internal 
> linecode b8zs 
> cablelength short 110 
> channel-group 0 timeslots 1-24 
> ! 
> ! 
> interface Serial1/0:0 
> no ip address 
> !




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52091&t=52090
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



PA-MCX-8TE1 with Full T1 [7:52090]

2002-08-26 Thread Steven a

Is it possible to configure an interface to support a full non channellized
T1? If so how?

The T1 interface goes up up but after I config the serial interface goes UP
UP then after about 10 seconds the serial goes up down. The T1 never goes
down.


version 12.2 
service timestamp 
service timestamps log uptime 
no service password-encryption 
! 
hostname Router 
! 
boot bootldr bootflash:c7200-boot-mz.120-17.S 
card type t1 1 
enable password 
! 
! 
controller T1 1/0 
framing esf 
service-type data 
clock source internal 
linecode b8zs 
cablelength short 110 
channel-group 0 timeslots 1-24 
! 
! 
interface Serial1/0:0 
no ip address 
! 



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52090&t=52090
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



IOS SLB [7:52089]

2002-08-26 Thread Brian Zeitz

Is there any way to make IOS SLB work on a 3550? I think that if these
switches are going to be tested in the CCIE exam, they should allow the
feature to be used. Ill IOS SLB only work on a 6500 and 7000 series?
There is no way to play with SLB on smaller routers and switches is
there?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52089&t=52089
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Test..(ignore..) [7:52087]

2002-08-26 Thread Rendezvous

regards,

~tha~ a.k.a rendezvous


" If we fill our hours with regrets of yesterday and with worries of
tomorrow, we will have no today in which to be thankful.
Turn your face to the sun and the shadows will fall behind you. "




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52087&t=52087
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: i`m a chinese [7:52060]

2002-08-26 Thread Bernard

Yes, but this is not always true.
As of version 12.1, you have to 25630;笑啊 first and then
你搞.

Hope this answers your Chinese question.

Bernard

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]
> Sent: Monday, August 26, 2002 6:07 AM
> To: [EMAIL PROTECTED]
> Subject: RE: i`m a chinese [7:52060]
> 
> 你搞笑啊




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52086&t=52060
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: written [7:45056]

2002-08-26 Thread Peter van Oene

How is that for a belated reply.  Resorted my msg box and got a little 
confused :)

At 02:17 PM 8/26/2002 +, you wrote:
>I would suggest that there is not always a right answer.  I have seen a few
>questions who's answers are at best very ambiguous.  On one of my recerts,
>I believe I spent more time writing comments than answering questions due
>to poorly worded questions.
>
>
>
>At 04:02 AM 5/26/2002 -0400, Kris Keen wrote:
> >It sounds like you dont know the topics. The exam is VERY VERY easy for
any
> >CCIE candidate, I find that if you are scoring 69% you do not know your
> >topics.
> >
> >There is always a right answer in the questions, instead of complaining
how
> >about you study the topics until you understand them?
> >
> >Cheers




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52085&t=45056
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Help on Configure WCCP [7:52084]

2002-08-26 Thread bdg_tech

Hi,

I've some question on configure wccp on my Cisco 2600 with IOS
C2600-IK8O3S-M, Version 12.2(7b) and squid version 2.4stable7.

When I run command on router : debug ip wccp event, I get massage of "
3d00h: WCCP-EVNT:???: Unknown msg_type 7 on FastEthernet0/1.1 from "IP
cache"  "

The show run on my router will be:

interface FastEthernet0/1
> no ip address
> no ip redirects
> duplex auto
> speed auto
> !
> interface FastEthernet0/1.1
> encapsulation isl 1
> ip address 202.162.214.193 255.255.255.248
> ip wccp web-cache redirect out

 Actually I'm using 3 vlan on my network. But right now, I'm trying to use
only 1 network for this wccp, so the user and proxy server are in Vlan 1.
My switch is Cisco 2924 XL-EN with IOS 12.0(5.2)XU. Please send me a message
( [EMAIL PROTECTED] ) if you need more
information. I really desperate to get help from you.

Regards

ER




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52084&t=52084
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: which switch series are CLI switches? [7:52074]

2002-08-26 Thread Dennis Laganiere

I put together a breakdown of which switches have which CLI, and a sample
configuration of each.  You'll find it at www.laganiere.net

I hope you find it useful...

--- Dennis

- Original Message -
From: "Metin Pasaoglu" 
To: 
Sent: Monday, August 26, 2002 5:15 AM
Subject: which switch series are CLI switches? [7:52074]


> hi,
>
>  i couldnt find any addresses or infirmation about which switches are CLI
> swtches or which are IOS command based. Can anyone give me information
about
> CLI switch series? i only know that catalsyt 4000, 5000, 6000 series and
> 2948G and 2980G series are CLI command-based.
>
>  Metin




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52083&t=52074
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Security Policy [7:52061]

2002-08-26 Thread Howard C. Berkowitz

At 11:01 AM + 8/26/02, Juan Blanco wrote:
>John,
>
>Security policy are for internal use and each security policy varies from
>company to company. If you do
>a search on the net for "security policy) you will find plenty of
>information that will help you to accomplish
>your goal. There is a lot of information on the Cisco web site, A good
>example is available in the book Managing Cisco Network Security.
>
>Thanks,
>
>Juan Blanco

I generally agree. One thing to remember is the security POLICY 
should be short (a page or two), approved and enforced by top 
management, cleared by legal, and be the basis for the security 
architecture and implementation.

For example, at the moment, I'm doing the policy and plan for a 
service provider that handles personal medical data. There are quite 
a number of specific legal requirements that apply to them.

Military systems have levels of security and work in different 
environments (e.g., all users have or do not have the same 
clearance), so there's no cookie-cutter approach there.

In the case I'm working with, I think some of the Drug Enforcement 
Administration directives for protecting systems that can 
electronically prescribe narcotics are vast overkill, but, so I know 
I meet them, I'm using some techniques that variously are used for 
nuclear weapons control and the identity of spies.

A large retail chain would have a different policy, as would a 
financial institution.

Frankly, I've never needed to use one of the books devoted to 
security policy. I do like _Internet Cryptography_ by Smith, and 
Annlee Hines' (an occasional list contributor) new book, _Planning 
for Survivable Networks_.  Far less readable, but with a great deal 
of information, are selected Rainbow Series books from the NSA 
(especially the "understanding" guides). See 
http://www.fas.org/irp/nsa/rainbow.htm

>
>-Original Message-
>From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
>John Brandis
>Sent: Monday, August 26, 2002 1:08 AM
>To: [EMAIL PROTECTED]
>Subject: Security Policy [7:52061]
>
>
>Hi All,
>
>does any one have a copy of a security policy (like a corporate security
>outline for the company) that they are willing to share, so I can create one
>using that as a template/guide ?
>
>Thanks all
>
>John
>Sydney, Australia
>
>
>**
>
>visit http://www.solution6.com
>
>UK Customers - http://www.solution6.co.uk
>
>*
>This email message (and attachments) may contain information that is
>confidential to Solution 6. If you are not the intended recipient you cannot
>use, distribute or copy the message or attachments.  In such a case, please
>notify the sender by return email immediately and erase all copies of the
>message and attachments.  Opinions, conclusions and other information in
>this message and attachments that do not relate to the official business of
>Solution 6 are neither given nor endorsed by it.
>*




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52082&t=52061
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



IP Telephony Troubleshooting [7:52080]

2002-08-26 Thread Vern Ross

I am preparing for Cisco's IPTT test using knowledgenets online course. 
Does anyone know if the material presented in their course is sufficient to
pass the exam or if there is another source of information for it.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52080&t=52080
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: written [7:45056]

2002-08-26 Thread Peter van Oene

I would suggest that there is not always a right answer.  I have seen a few 
questions who's answers are at best very ambiguous.  On one of my recerts, 
I believe I spent more time writing comments than answering questions due 
to poorly worded questions.



At 04:02 AM 5/26/2002 -0400, Kris Keen wrote:
>It sounds like you dont know the topics. The exam is VERY VERY easy for any
>CCIE candidate, I find that if you are scoring 69% you do not know your
>topics.
>
>There is always a right answer in the questions, instead of complaining how
>about you study the topics until you understand them?
>
>Cheers




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52081&t=45056
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: regarding Cisco Call Manager on Compaq [7:52069]

2002-08-26 Thread Vance Krier

Hi Mukesh,

"What is the Compaq hardware would be required to install,
SW-CCM-3.1-CPQ-V2=,> Cisco Call manager software?"
***If you're not buying the bundles from Cisco MCS-7825, 7835, etc, then
you'll need to put together a Compaq DL320(IDE Drives) or DL380 or IBM
according to the following web site www.cisco.com/go/swonly.

"Can the same software be installed on other hardware machines?"
***Yes, but its very much not supported.  Never do this is a production
environment.  I do it only for lab purposes.

"As Cisco Call Manger application runs on Windows 2000, will this part code
contains  Windows 2000 operatiing system also?"
***Yes, everything is included.

Hope this helps.
Vance



""Mukesh""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> HI
> What is the Compaq hardware would be required to install,
SW-CCM-3.1-CPQ-V2=,
> Cisco Call manager software?
> Can the same software be installed on other hardware machines? What are
the
> Cisco approved machines on which we can install Cisco Call Manager? As
Cisco
> Call Manger application runs on Windows 2000, will this part code contains
> Windows 2000 operatiing system also? Or if Customer need to have licensed
> Windows 2000 OS and service patches, then what is the exact software (
> Windows
> 2000 OS, service pathces, IIS upgrade ), would be required prior to Cisco
> Call
> Manager installation?
>
> Thanks and regards
> Mukesh




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52079&t=52069
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: routing problem? [7:52054]

2002-08-26 Thread Peter van Oene

ok.. I only asked because in telnet/ssh/tracert, the far end will try to 
resolve the dns address of the source ip before moving forward in the 
connection state machine.  this is in contrast to icmp echo's where a reply 
will occur.  beyond filters, this is really the only other common reason 
for this type of behavior.


At 05:50 AM 8/26/2002 -0700, you wrote:
>Peter,
>
>It times out. I am only using ip addresses to connect.
>
>Thanks for the assist
>
>Rod
>
>
>Peter van Oene wrote:
>>are you sure you are not dealing with dns resolution issues?  if you telnet
>>and wait for a good period of time, what happens?
>>
>>At 01:06 AM 8/26/2002 +, you wrote:
>> >Hello,
>> >
>> >This looks to be a very straight forward configuration, but it is
>> >giving me fits. It's a simple Multilink PPP setup.
>> >
>> >I can "ping" from Router A to Router B, but I can't do any
>> >TCP i.e. Telnet, SSH, Traceroute, etc.
>> >
>> >All I want to be able to do is telnet from
>> >Router A to Router B...
>> >
>> >The weird thing is, I can telnet from
>> >Router B to Router A.
>> >
>> >Please tell me if I have done something stupid.
>> >
>> >
>> >
>> >Router A
>> >
>> >ip subnet-zero
>> >!
>> >no ip bootp server
>> >!
>> >!
>> >!
>> >process-max-time 200
>> >!
>> >interface Multilink1
>> >  ip address 192.168.1.1 255.255.255.0
>> >  ip directed-broadcast
>> >  ip nat outside
>> >  no cdp enable
>> >  ppp multilink
>> >  multilink load-threshold 2 either
>> >  multilink-group 1
>> >!
>> >interface Ethernet0/0
>> >  no ip address
>> >  no ip directed-broadcast
>> >  no ip mroute-cache
>> >  shutdown
>> >  no cdp enable
>> >!
>> >interface Serial0/0
>> >  ip unnumbered Multilink1
>> >  ip directed-broadcast
>> >  encapsulation ppp
>> >  no ip mroute-cache
>> >  no fair-queue
>> >  service-module t1 clock source internal
>> >  ppp multilink
>> >  multilink-group 1
>> >!
>> >interface Serial0/1
>> >  ip unnumbered Multilink1
>> >  ip directed-broadcast
>> >  encapsulation ppp
>> >  no ip mroute-cache
>> >  no fair-queue
>> >  service-module t1 clock source internal
>> >  ppp multilink
>> >  multilink-group 1
>> >!
>> >interface FastEthernet1/0
>> >  ip address 172.16.XXX.XXX 255.255.0.0 secondary
>> >  ip address 209.17.XXX.XXX 255.255.255.0
>> >  ip directed-broadcast
>> >  no cdp enable
>> >!
>> >ip classless
>> >ip route 0.0.0.0 0.0.0.0 209.17.95.1
>> >ip route 209.17.XXX.144 255.255.255.240 Multilink1
>> >no ip http server
>> >
>> >
>> >
>> >
>> >Router B
>> >
>> >ip subnet-zero
>> >ip dhcp excluded-address 192.168.4.1 192.168.4.20
>> >!
>> >ip dhcp pool wc
>> >network 192.168.4.0 255.255.255.0
>> >default-router 192.168.4.1
>> >dns-server 206.13.XXX.12 206.13.XXX.12
>> >domain-name XXX.net
>> >lease 2
>> >!
>> >!
>> >!
>> >!
>> >process-max-time 200
>> >!
>> >interface Multilink1
>> >  ip address 192.168.1.2 255.255.255.0
>> >  ip directed-broadcast
>> >  ip nat outside
>> >  no cdp enable
>> >  ppp multilink
>> >  multilink load-threshold 2 either
>> >  multilink-group 1
>> >!
>> >interface Ethernet0/0
>> >  ip address 209.17.XXX.145 255.255.255.240
>> >  ip directed-broadcast
>> >  full-duplex
>> >!
>> >interface Serial0/0
>> >  ip unnumbered Multilink1
>> >  ip directed-broadcast
>> >  encapsulation ppp
>> >  no ip mroute-cache
>> >  no fair-queue
>> >  ppp multilink
>> >  multilink-group 1
>> >!
>> >interface Serial0/1
>> >  ip unnumbered Multilink1
>> >  ip directed-broadcast
>> >  encapsulation ppp
>> >  no ip mroute-cache
>> >  no fair-queue
>> >  ppp multilink
>> >  multilink-group 1
>> >!
>> >interface FastEthernet1/0
>> >  ip address 192.168.4.1 255.255.255.0
>> >  ip directed-broadcast
>> >  ip nat inside
>> >!
>> >ip nat translation timeout 43200
>> >ip nat inside source list 101 interface Ethernet0/0
>> >overload
>> >ip classless
>> >ip route 0.0.0.0 0.0.0.0 Multilink1
>> >no ip http server
>> >
>> >
>> >  Both routers are identical
>> >
>> >  Cisco Internetwork Operating System Software
>> >IOS (tm) C2600 Software (C2600-IS-M), Version 12.0(5)T1,  RELEASE
SOFTWARE
>> >(fc1)
>> >Copyright (c) 1986-1999 by cisco Systems, Inc.
>> >Compiled Tue 17-Aug-99 14:39 by cmong
>> >Image text-base: 0x80008088, data-base: 0x80B5E15C
>> >
>> >ROM: System Bootstrap, Version 11.3(2)XA4, RELEASE SOFTWARE (fc1)
>> >
>> >Rhapsody@FIC uptime is 1 week, 20 hours, 21 minutes
>> >System returned to ROM by power-on
>> >System image file is "flash:c2600-is-mz.120-5.T1"
>> >
>> >cisco 2610 (MPC860) processor (revision 0x202) with 32768K/8192K bytes of
>> >memory.
>> >Processor board ID JAD03342330 (2663084462)
>> >M860 processor: part number 0, mask 49
>> >Bridging software.
>> >X.25 software, Version 3.0.0.
>> >1 Ethernet/IEEE 802.3 interface(s)
>> >1 FastEthernet/IEEE 802.3 interface(s)
>> >2 Serial network interface(s)
>> >32K bytes of non-volatile configuration memory.
>> >16384K bytes of processor board System flash (Read/Write)
>> >
>> >Configuration register is 0x2102
>> >
>> >
>> >
>> >Any clues?
>> >
>> >Thanks
>

RE: i`m a chinese [7:52060]

2002-08-26 Thread wzx wzxlxb

你搞笑啊


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52077&t=52060
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Study For CCIE on the Road [7:51967]

2002-08-26 Thread Reza Sharifi

Thank you all for your responses. I tried all the web sites that you
recommended, but after all It seems like there is not much of these material
out there. Priscilla, it is good idea go for it. I will be one of your first
customer to buy the material. How about trying
"Internet Routing Architectures" for your first try?.

Reza



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52076&t=51967
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: GRE tunnelling [7:52050]

2002-08-26 Thread Peter van Oene

You might start with rfc 1701 and 1702

At 10:13 PM 8/25/2002 +, you wrote:
>Can some one let me know useful links to understand GRE tunnelling or can
>explain it.
>
>Thanks as always
>
>
>Jaspreet
>_
>
>Consultant
>
>
>Andrew NZ Inc
>Box 50 691, Porirua
>Wellington 6230, New Zealand
>Phone   +64 4 238 0723
>Fax +64 4 238 0701
>e-mail  [EMAIL PROTECTED]
>
>
>WARNING:  The contents of this e-mail and any attached files may contain
>information that is legally privileged and/or confidential to the named
>recipient.  This information is not to be used by any other person and/or
>organisation.  The views expressed in this document do not necessarily
>reflect those of Andrew NZ Inc   If you have received this e-mail and any
>attached files in error please notify the sender by reply e-mail and destroy
>your copy of this message.  Thank you.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52075&t=52050
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



which switch series are CLI switches? [7:52074]

2002-08-26 Thread Metin Pasaoglu

hi,

 i couldnt find any addresses or infirmation about which switches are CLI
swtches or which are IOS command based. Can anyone give me information about
CLI switch series? i only know that catalsyt 4000, 5000, 6000 series and
2948G and 2980G series are CLI command-based.

 Metin  


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52074&t=52074
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Traffic shaping and the Catalyst 6500 [7:52070]

2002-08-26 Thread Raj Santiago

HI,


  yes your right, the reason why you see soo little packets on your
rate-limit is due to the MLS encorporated into the cat 6500(you need to get
into engineering mode to remove it...).


yes there is a way out. Search for "CoS" rate limiting on the CCO for cat
6500{hybrid mode}. You can let the PFC do the rate-limiting.




cheers,

raj



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52073&t=52070
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Security Policy [7:52061]

2002-08-26 Thread Juan Blanco

John,

Security policy are for internal use and each security policy varies from
company to company. If you do
a search on the net for "security policy) you will find plenty of
information that will help you to accomplish
your goal. There is a lot of information on the Cisco web site, A good
example is available in the book Managing Cisco Network Security.

Thanks,

Juan Blanco

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
John Brandis
Sent: Monday, August 26, 2002 1:08 AM
To: [EMAIL PROTECTED]
Subject: Security Policy [7:52061]


Hi All,

does any one have a copy of a security policy (like a corporate security
outline for the company) that they are willing to share, so I can create one
using that as a template/guide ?

Thanks all

John
Sydney, Australia


**

visit http://www.solution6.com

UK Customers - http://www.solution6.co.uk

*
This email message (and attachments) may contain information that is
confidential to Solution 6. If you are not the intended recipient you cannot
use, distribute or copy the message or attachments.  In such a case, please
notify the sender by return email immediately and erase all copies of the
message and attachments.  Opinions, conclusions and other information in
this message and attachments that do not relate to the official business of
Solution 6 are neither given nor endorsed by it.
*




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52072&t=52061
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



FW: TUNNEL CONNECTION [7:52068]

2002-08-26 Thread BlackboxVN

Hi,

Try to use GRE tunnel, there is an example of our LAB which transports
IPX over IP tunnel:

IP TUNNEL LAB
=
OSPF AREA 0
   
   ISP_A 10.0.0.4/30   ISP_B
   (X)---(X)
  / \
 /   \
10.0.0.0/30 / \ 10.0.0.8/30
   /   \
  / \
 /  Tunnel   \
 Party_A  (X) ... (X)  Party_B
   |192.168.3.0/24 |
   |   ipx: 333|
   |   |
   |   |
   | RIP   |
   |   |
 -   -
 192.168.1.0/24  192.168.2.0/24
ipx: 111ipx: 222

PARTY_A
===

!
version 12.0
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname PARTY_A
!
!
ip subnet-zero
!
!
!
interface Loopback0
 ip address 192.168.1.1 255.255.255.0
 no ip directed-broadcast
!
interface Tunnel0
 ip address 11.0.0.1 255.0.0.0
 no ip directed-broadcast
 tunnel source Serial1
 tunnel destination 10.0.0.2
!
interface Ethernet0
 no ip address
 no ip directed-broadcast
 shutdown
!
interface Serial0
 no ip address
 no ip directed-broadcast
 shutdown
!
interface Serial1
 ip address 10.0.0.1 255.0.0.0
 no ip directed-broadcast
 encapsulation ppp
 clockrate 64000
!
ip classless
ip route 192.168.2.0 255.255.255.0 11.0.0.2
!
!
line con 0
 transport input none
line aux 0
line vty 0 4
!
end

--

PARTY_B
===
!
version 11.1
service udp-small-servers
service tcp-small-servers
!
hostname PARTY_B
!
!
ip subnet-zero
!
interface Loopback0
 ip address 192.168.2.1 255.255.255.0
!
interface Tunnel0
 ip address 11.0.0.2 255.0.0.0
 tunnel source Serial1
 tunnel destination 10.0.0.1
!
interface Ethernet0
 no ip address
 shutdown
! 
interface Serial0
 no ip address
 shutdown
!
interface Serial1
 ip address 10.0.0.2 255.0.0.0
 encapsulation ppp
!
interface BRI0
 no ip address
 shutdown
!
no ip classless
ip route 192.168.1.0 255.255.255.0 11.0.0.1
!
line con 0
line aux 0
line vty 0 4
 login
!
end


---

ISP_A
=

!
version 12.0
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname ISP_A
!
!
!
!
!
!
ip subnet-zero
!
!
!
!
process-max-time 200
!
interface FastEthernet0/0
 no ip address
 no ip directed-broadcast
 shutdown
!
interface Serial0/0
 ip address 10.0.0.2 255.255.255.252
 no ip directed-broadcast
 encapsulation ppp
!
interface BRI0/0
 no ip address
 no ip directed-broadcast
 shutdown
 isdn guard-timer 0 on-expiry accept
!
interface Serial0/1
 ip address 10.0.0.5 255.255.255.252
 no ip directed-broadcast
 encapsulation ppp
!
router ospf 1
 network 10.0.0.0 0.0.0.3 area 0
 network 10.0.0.4 0.0.0.3 area 0
! 
ip classless
no ip http server
!
!
line con 0
 transport input none
line aux 0
line vty 0 4
!
!
no scheduler allocate
end

---

ISP_B
=
!
version 12.0
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname ISP_B
!
!
!
!
!
!
ip subnet-zero
!
!
!
process-max-time 200
!
interface FastEthernet0/0
 no ip address
 no ip directed-broadcast
 shutdown
!
interface Serial0/0
 ip address 10.0.0.9 255.255.255.252
 no ip directed-broadcast
 encapsulation ppp
 clockrate 64000
!
interface BRI0/0
 no ip address
 no ip directed-broadcast
 shutdown
 isdn guard-timer 0 on-expiry accept
!
interface Serial0/1
 ip address 10.0.0.6 255.255.255.252
 no ip directed-broadcast
 encapsulation ppp
 clockrate 64000
!
router ospf 1
 network 10.0.0.4 0.0.0.3 area 0
 network 10.0.0.8 0.0.0.3 area 0
!
ip classless
no ip http server
!
!
line con 0
 transport input none
line aux 0
line vty 0 4
!
no scheduler allocate
end


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Eng. ABDALLAH QUQAS
Sent: Monday, August 26, 2002 4:26 PM
To: [EMAIL PROTECTED]
Subject: Ref: TUNNEL CONNECTION [7:52068]


Dear ALL,

How can I implement a tunneling connection between two routers (Cisco
3600) through already established leased line connection (serial line)
which has HDLC encapsulation up and running. and how clients workstation
contact the other side through that tunnel.

Kind Regards
abd quqas




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52071&t=52068
--
FAQ, list archiv

Traffic shaping and the Catalyst 6500 [7:52070]

2002-08-26 Thread Loken, Bjorn

This might be slightly off-topic, but I'll give it a shot anyway. 

I do occationally play around with a 6509 and try to come up with new things
to try. Lately I've started to look into limiting traffic over
VLAN-interfaces. The 6509 runs hybrid image, and what I did was as simple
as: 

conf t
int vlan 20
ip address 192.168.1.0 255.255.255.0
rate-limit input 200 375000 40 conform-action transmit exceed-action
drop
rate-limit output 200 375000 40 conform-action transmit
exceed-action drop

I noticed that a show interface rate-limit gave very few packets passing
into the VLAN when I transferred large amounts of data between that VLAN and
another one, so clearly the traffic goes through another path, i.e through
the switch and not the router. 

What I am wondering about is if there is any easy way to set up similar
shaping on the switch, without messing around with QoS, I just want to set a
hard limit for drop of traffic without qualifing the traffic in any way. 

Would this be feasable if I run the native mode, and use the same rate-limit
commands on the switch as well as the router? I'll play around with this
anyway in the near future, but if anyone has experiences to share I'm
listening :-)

 


Bjxrn H. Lxken
Seniorkonsulent
Cap Gemini Ernst & Young

+47 24 12 79 19 (office)
+47 48 10 20 94 (mobile)
+47 24 12 80 01 (fax)

http://www.no.cgey.com



This message contains information that may be privileged or confidential and
is the property of the Cap Gemini Ernst & Young Group. It is intended only
for the person to whom it is addressed. If you are not the intended
recipient, you are not authorized to read, print, retain, copy, disseminate,
distribute, or use this message or any part thereof. If you receive this
message in error, please notify the sender immediately and delete all copies
of this message.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52070&t=52070
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



regarding Cisco Call Manager on Compaq [7:52069]

2002-08-26 Thread Mukesh

HI
What is the Compaq hardware would be required to install, SW-CCM-3.1-CPQ-V2=,
Cisco Call manager software?
Can the same software be installed on other hardware machines? What are the
Cisco approved machines on which we can install Cisco Call Manager? As Cisco
Call Manger application runs on Windows 2000, will this part code contains
Windows 2000 operatiing system also? Or if Customer need to have licensed
Windows 2000 OS and service patches, then what is the exact software (
Windows
2000 OS, service pathces, IIS upgrade ), would be required prior to Cisco
Call
Manager installation?

Thanks and regards
Mukesh




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52069&t=52069
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Ref: TUNNEL CONNECTION [7:52068]

2002-08-26 Thread Eng. ABDALLAH QUQAS

Dear ALL,

How can I implement a tunneling connection between two routers (Cisco 3600)
through already established leased line connection (serial line) which has
HDLC encapsulation up and running.
and how clients workstation contact the other side through that tunnel.

Kind Regards
abd quqas




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52068&t=52068
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Security Policy [7:52061]

2002-08-26 Thread Munzir Khan

I think this will help you.


http://www.cisco.com/warp/public/126/secpol.html

Regards,


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52067&t=52061
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Security Policy [7:52061]

2002-08-26 Thread [EMAIL PROTECTED]

Hello John,

It might be difficult to get a company security policy.  Usually the
security policy is internal use only.  The second reason is, there should be
no general templates for security policy, as each company is unique and has
different preferences in taking risks.

There are some books that describe what should be inside the security
policy, and these big points can be used as guide lines. Will try to find
out some book titles.


Regards,
Leonard Ong, CISSP, CSS-1, CCSE, MCSE, 
 MCDBA, CCNP, CCDP, NSA, LCP
Network Security Specialist, APAC
NOKIA

Email.  [EMAIL PROTECTED]
Mobile. +65 9431 6184
Phone.  +65 6723 1724
Fax.+65 6723 1596



-Original Message-
From: ext John Brandis [mailto:[EMAIL PROTECTED]]
Sent: Monday, August 26, 2002 1:08 PM
To: [EMAIL PROTECTED]
Subject: Security Policy [7:52061]


Hi All,

does any one have a copy of a security policy (like a corporate security
outline for the company) that they are willing to share, so I can create one
using that as a template/guide ?

Thanks all

John
Sydney, Australia




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52066&t=52061
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco ACS ver 2.6 [7:52065]

2002-08-26 Thread Shane Stockman

I am running Cisco ACS 2.6 and I have remote users dialing into our network 
via analog and digital.The ACS authenticates them using the domain 
database.I would like to know which users didnot dial into the network for 
the last 30 days and have their accounts disabled automatically so that they 
would have to request access.

I would also not want their office logon to be disabled as it is the same 
username and password.

Is there anyway I could do this without affecting the other logon.

Thanks


_
MSN Photos is the easiest way to share and print your photos: 
http://photos.msn.com/support/worldwide.aspx




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52065&t=52065
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: routing problem? [7:52054]

2002-08-26 Thread Raj Santiago

Hi


 I have had this issue before, but with an isdn setup. The issue was to do
with "ip route-cache" not being implemented properly with NAT. I needed to
remove "ip route-cache" as a workaround. So try and remove "ip route-cache"
on all active interfaces. It’s a bug, but i have misplaced the bug id.


raj



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=52064&t=52054
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]