RE: 1720 crashing every week [7:66080]

2003-03-26 Thread Andrew Larkins
I agree - more than likely an IOS bug

-Original Message-
From: Daniel Cotts [mailto:[EMAIL PROTECTED]
Sent: 25 March 2003 17:16
To: [EMAIL PROTECTED]
Subject: RE: 1720 crashing every week [7:66080]


Yesterday, Dave asked some questions of you that would help pinpoint your
trouble. Best that you answer his questions. A wild guess is that there is a
bug in your IOS version. Check Bug Navigator.

> -Original Message-
> From: neil K. [mailto:[EMAIL PROTECTED]
> Sent: Tuesday, March 25, 2003 6:22 AM
> To: [EMAIL PROTECTED]
> Subject: 1720 crashing every week [7:66080]
> 
> 
> Hi Folks,
> 
> I got two 1720's connected with a two bri's. I am running PPP 
> multilink on
> them, it is basic ISDN setup with PPP Multilink,Also I have 
> set up a very
> high idle-timer on the dialer interface just to keep them up 
> indefinitely,
> but the routers crash every week and I have to manually reset 
> them and, then
> they work fine for a week.Any help will be highly appreciated.
> 
> Thanks,
> 
> neil




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66227&t=66080
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: OSPF Adjacency Question [7:66206]

2003-03-26 Thread Levent Ogut
network  xxx.xxx.xxx.14 0.0.0.3 area 1


""CiscoNewbie""  wrote in message
news:[EMAIL PROTECTED]
> Hi all.  my cisco router keeps reporting this error when trying to bring
up
> an adjacency accross a P2P link.
>
> OSPF: Rcv pkt from xxx.xxx.xxx.13, Serial0/0.1, area 0.0.0.1: src not on
the
> same network
>
> I am presuming that the issue here is the subnet mask that I have
specified
> the network statement as under OSPF.  My serial interface (frame-relay
> subinterface) has a /30 mask.  How should my network statement be
configured
> if the IP address of the interface is xxx.xxx.xxx.14?  I have tried the
> following:
>
> network xxx.xxx.xxx.0 0.0.0.255 area 1
>
> as well as:
>
> network xxx.xxx.xxx.12  0.0.0.3 area 1
>
> Neither one seemed to work.  I still got the same error.
>
> The other side is also on the same subnet and it has an IP address of
> xxx.xxx.xxx.13/30 configured as a P2P as well.  If the network statement
is
> not the issue, please advise.
>
> Thanks.
>
>
>
> -
> Do you Yahoo!?
> Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66228&t=66206
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Help on Catalyst 3550 [7:66072]

2003-03-26 Thread Juli Hato
Hi Earhart,

May turn off the STP on the Catalyst? What mostly will happen then. Thank 
YOu

Best Regards,
HATO


>From: "Joe Earhart (jearhart)" 
>Reply-To: "Joe Earhart (jearhart)" 
>To: [EMAIL PROTECTED]
>Subject: RE: Help on Catalyst 3550 [7:66072]
>Date: Tue, 25 Mar 2003 12:19:25 GMT
>
>Juli,
>Make sure you don't have bridging turned up on the IBM, spanning tree may 
>be
>shutting down one of the ports.
>
>-Original Message-
>From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Juli
>Hato
>Sent: Monday, March 24, 2003 10:57 AM
>To: [EMAIL PROTECTED]
>Subject: Help on Catalyst 3550 [7:66072]
>
>Hi all,
>
>I have a router IBM that has 2 ethernet ports. The IBM router connect to
>Cisco Catalyst 3550 that is not configured. When the router IBM connect to
>the switch one of the ethernet port from the IBM router got block by the
>Cisco Switch. All you have to know is that I need to ethernet ports from 
>the
>IBM router active. How to counteract with this. Thank you in advance.
>
>Best Regards,
>HATO
>
>
>
>
>
>_
>Add photos to your e-mail with MSN 8. Get 2 months FREE*.
>http://join.msn.com/?page=features/featuredemail
_
The new MSN 8: smart spam protection and 2 months FREE*  
http://join.msn.com/?page=features/junkmail




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66230&t=66072
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: NAT IP in DNS reply payload? [7:66224]

2003-03-26 Thread JP
Hi

Thanks for the help.It actually turned out to be quite a simple config in
the end and  i had no dns servers for name resolution.I actually had to
configure the natting on Enterasys equipment so i wanted to test it first on
the cisco stuff

But thanks for the feedback

Julian






""Charles Hammonds""  wrote in message
news:[EMAIL PROTECTED]
> from "Natting problem" thread...
>
>
http://www.cisco.com/en/US/tech/tk648/tk361/technologies_configuration_examp
le09186a0080093f30.shtml
>
>
> "...The inside device cannot use the IP address of the outside device
> because it is the same as the address assigned to itself (the inside
> device). Therefore, the inside device will send a DNS query for the
outside
> device's domain name. The inside device's IP address will be the source of
> this query, and that address will be translated to an address from the
> "test-loop" pool because the ip nat inside source list command is
> configured.
>
> The DNS server replies to the address which came from the pool "test-loop"
> with the IP address associated with the outside device's domain name in
the
> payload of the packet. The destination address of the reply packet is
> translated back to the inside device's address, and the address in the
> payload of the reply packet is then translated to an address from the pool
> "test-dns" because of the ip nat outside source list command. Therefore
the
> inside device learns that the IP address for the outside device is one of
> the addresses from the "test-dns" pool, and it will use this address when
> communicating with the outside device. The router running NAT takes care
of
> the translations at this point..."
>
>
> Is that accurate??? The "ip nat outside source" command will translate the
> IP in the PAYLOAD of the DNS reply packet even though it is not the
> source??? doesn't sound right and I am unable to test it rite now...
>
> Charles




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66231&t=66224
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: reload 3500XL switch [7:66222]

2003-03-26 Thread Levent Ogut
you can write a perl script to login router and perform the appropriate
command.
and make the script to run any time you want by means of cron


""milind tare""  wrote in message
news:[EMAIL PROTECTED]
> hi cisco buddy's,
>
>
>   I hv 3500 series access switch's in my networ. In
> that i need shutdown for some access switches. and
> shutdown time is night time. so i can't do mannually.
>
>Can anyone suggest me is there any command so i can
> get switch shutdown at specific time and it will start
> automatically. if i mention particular time.
>
> Thanks & Regards,
> Milind Tare
>
> __
> Do you Yahoo!?
> Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!
> http://platinum.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66229&t=66222
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: reload 3500XL switch [7:66222]

2003-03-26 Thread Steve Wilson
If all the complicated answers fail try putting a timer switch on the socket
that the device is powered from.

Steve Wilson
Network Engineer

-Original Message-
From: milind tare [mailto:[EMAIL PROTECTED] 
Sent: 26 March 2003 04:54
To: [EMAIL PROTECTED]
Subject: reload 3500XL switch [7:66222]

hi cisco buddy's,


  I hv 3500 series access switch's in my networ. In
that i need shutdown for some access switches. and
shutdown time is night time. so i can't do mannually.

   Can anyone suggest me is there any command so i can
get switch shutdown at specific time and it will start
automatically. if i mention particular time.

Thanks & Regards,
Milind Tare

__
Do you Yahoo!?
Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!
http://platinum.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66232&t=66222
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Help on Catalyst 3550 [7:66072]

2003-03-26 Thread Juli Hato
Hi palomar,

The switch is simply connected with two networks segment. There is no 
Inter-VLAN routing or EtherChannel! So the Catalyst is actived with no 
configuration when connected with other switch the router can. Only with 
CIsco Catalyst the one of the router IBM port come to block state. Do you 
have experience connect 2 cisco router port then connect them to one 
Catalyst?? Thanks alot for sharing.

Best Regards,
HATO


>From: "Orlando Palomar Jr  CCIE#11206" 
>Reply-To: "Orlando Palomar Jr  CCIE#11206" 
>To: [EMAIL PROTECTED]
>Subject: Re: Help on Catalyst 3550 [7:66072]
>Date: Tue, 25 Mar 2003 07:22:05 GMT
>
>Please state your intentions for configuring it this way. Are you
>configuring inter-VLAN routing? EtherChannel?
_
Tired of spam? Get advanced junk mail protection with MSN 8. 
http://join.msn.com/?page=features/junkmail




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66233&t=66072
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


how to add secondary IP privilige? [7:66234]

2003-03-26 Thread Mohamed Saro
Any ideas ?! 

[GroupStudy removed an attachment of type application/ms-tnef which had a
name of winmail.dat]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66234&t=66234
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: PING PROBLEM [7:66132]

2003-03-26 Thread Larry Letterman
The serial interface cant ping itself like the ethernet can..It will send the
packet to the remote end and then back..if the path between both serial
interfaces is not correct the local ping will
fail..turn off keepalives and see if the ping will work on the local end..

Larry Letterman
Network Engineer
Cisco Systems


  - Original Message -
  From: srinivas kunthuri
  To: [EMAIL PROTECTED]
  Sent: Tuesday, March 25, 2003 8:43 PM
  Subject: Re: PING PROBLEM [7:66132]


  Hi Larry,

  I did not understand what you are saying. I had pinged my local serial
  interface. it is giving request timed out. i had pinged the remote end
serial
  ip. it is giving reply. Can you tell me why it happend.


  Thanks,
  K.Srinivas
- Original Message -
From: Larry Letterman
To: srinivas kunthuri ; [EMAIL PROTECTED]
Sent: Wednesday, March 26, 2003 1:09 AM
Subject: Re: PING PROBLEM [7:66132]


to ping the serial interface usually it has to go to the remote end and
  then
  back...make sure the path from end to end is working...

Larry Letterman
Network Engineer
Cisco Systems


  - Original Message -
  From: srinivas kunthuri
  To: [EMAIL PROTECTED]
  Sent: Tuesday, March 25, 2003 2:11 AM
  Subject: PING PROBLEM [7:66132]


  Hi all

  I am having one doubt regarding ping. I had configured two routers at
two
  locations connected through SCPC PAMA VSATs.
  I had pinged to serial interface. It has given request timed out. but,
  the
  serial interface is up and line protocol is also up.
  I had pinged the other end serial ip. it is giving reply. what will be
  the
  reason. can any one explain me .

  Regards,
  K.Srinivas




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66235&t=66132
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Software IP Phone. [7:66236]

2003-03-26 Thread Stuart Pittwood
Just out of interest ...



Does anyone know if the SoftPhone will run over Citrix metaframe (XP)
and if so what degree of success people have had?



Cheers



_

Stuart Pittwood, CCNA, MCSE

IT Technician

Amery-Parkes Solicitors




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66236&t=66236
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: ping things [7:66155]

2003-03-26 Thread Peter P
OK If I use the loopback addr then I can see ext trace going right way.
Now I need to make the rtr use this addr as the source


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66237&t=66155
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Info about cisco IDS [7:66238]

2003-03-26 Thread ritul
Hi !

I want to know is Snort used with CISCO IDS ?

Ritul




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66238&t=66238
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: ebgp-multihop default value?? [7:66157]

2003-03-26 Thread Cisco Nuts
Thank you Priscilla for yet another awesome reply to my question.
Sincerely,
CN






>From: "Priscilla Oppenheimer" 
>Reply-To: "Priscilla Oppenheimer" 
>To: [EMAIL PROTECTED]
>Subject: RE: ebgp-multihop default value?? [7:66157]
>Date: Tue, 25 Mar 2003 21:45:20 GMT
>
>Cisco Nuts wrote:
> >
> > Hello,
> > Is the ebgp-multihop default value = 255 ??
> > From all the examples that I have seen and done, it has always
> > been set to a
> > number ex. 2 or 200 or 255 etc.  but doing an example from CCO,
> > is just uses
> > the cmd. # neighbor a.b.c.d ebgp-multihop - with no value and
> > it works!!
> > Thus, I am assuming that the ebgp-multihop default value = 255??
> > Anyone??
> > Thank you.
> > Sincerely,
> > CN
>
>Notice if you configure ebgp-multihop with no parameter, that the "show ip
>bgp neighbors" output for that neighbor says:
>
>   External BGP neighbor may be up to 255 hops away.
>
>If you specify a number, such as 2, you'll see:
>
>   External BGP neighbor may be up to 2 hops away.
>
>Not putting a parameter on the command makes life easier, but then again,
>BGP network operators don't care about easiness. :-) However, if you are
>going to put a parameter, you need to know the number of hops, which can be
>a little confusing because just going to a loopback on another router
>instead of a directly-connected interface counts as a hop.
>
>I checked with a sniffer by the way. On the 3-way handshakes, the routers
>use 255 for the IP TTL regardless, at least on my routers which are running
>IOS 11.0. That surprised me. But after the 3-way handshake, they start
>setting the TTL to 1 (if no ebgp-multihop), 255 (if ebgp-multihop is
>configured with no parameter), and the correct number (if ebgp-multihop is
>configured with an exact number).
>
>That seems like a misbehavior to me (i.e. setting the TTL to 255 for the
>three-way handshake). You could establish a connection with a router even
>though you couldn't do anything. You could establish so many that you could
>cause a DOS. I'll have to do some more testing of this.
>
>Priscilla
>
>
> >
> >
> >
> >
> >
> >
> >
> > _
> > STOP MORE SPAM with the new MSN 8 and get 2 months FREE*
> > http://join.msn.com/?page=features/junkmail
_
MSN 8 helps eliminate e-mail viruses. Get 2 months FREE*.  
http://join.msn.com/?page=features/virus




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66249&t=66157
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Philadelphia Area study groups [7:66247]

2003-03-26 Thread Murali Das
Any Philadelphia/ Reading Area study group around ?

I am studying for my CCIE written. Let me know if anyone was interested in
forming a team.

rgds,

Murali



-
Do you Yahoo!?
Yahoo! News - Today's headlines




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66247&t=66247
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Redistributing Static within RIP version 1 - what is this mask [7:66245]

2003-03-26 Thread [EMAIL PROTECTED]
With  the following configuration, RIP do not redistribute the static
route;  if the static route is changed to /24, it does redistribute.

R1

ip route 195.0.0.0 255.255.255.0 null 0
!
router rip
version 1
network 192.168.13.0
redistribute static

There is no other interfaces using the net 195.x.x.x

With the "ip route 195.0.0.0 255.255.255.0 null 0"  (/24), the route is
advertised:

Debug in R1 shows that it does not advertise the route 195.0.0.0
  With 195.0.0.0 255.255.255.0 it does advertise:
  1d00h:  network 10.0.0.0 metric 1
  1d00h:  network 192.168.13.0 metric 1
  1d00h:  network 195.0.0.0 metric 1

I did not find any notes about this behavior. The article "Behavior of RIP
and IGRP When Sending and
Receiving Updates" do not cover this.

Any thoughts?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66245&t=66245
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: ping things [7:66155]

2003-03-26 Thread Peter P
I can reach my end node by declaring the loopback address as the source. By
default the router is using the seril i/f address. Unless I use the loopback
as the source it dont work. So I need to understand how to fix this - I
imagine the intervening hops are where the trouble lies


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66244&t=66155
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: PING PROBLEM [7:66132]

2003-03-26 Thread Peter van Oene
At 09:58 AM 3/26/2003 +, Larry Letterman wrote:
>The serial interface cant ping itself like the ethernet can..It will send
the
>packet to the remote end and then back..if the path between both serial
>interfaces is not correct the local ping will
>fail..turn off keepalives and see if the ping will work on the local end..

With HDLC encap, the router should be able to ping itself IIRC.

Pete



>Larry Letterman
>Network Engineer
>Cisco Systems
>
>
>   - Original Message -
>   From: srinivas kunthuri
>   To: [EMAIL PROTECTED]
>   Sent: Tuesday, March 25, 2003 8:43 PM
>   Subject: Re: PING PROBLEM [7:66132]
>
>
>   Hi Larry,
>
>   I did not understand what you are saying. I had pinged my local serial
>   interface. it is giving request timed out. i had pinged the remote end
>serial
>   ip. it is giving reply. Can you tell me why it happend.
>
>
>   Thanks,
>   K.Srinivas
> - Original Message -
> From: Larry Letterman
> To: srinivas kunthuri ; [EMAIL PROTECTED]
> Sent: Wednesday, March 26, 2003 1:09 AM
> Subject: Re: PING PROBLEM [7:66132]
>
>
> to ping the serial interface usually it has to go to the remote end and
>   then
>   back...make sure the path from end to end is working...
>
> Larry Letterman
> Network Engineer
> Cisco Systems
>
>
>   - Original Message -
>   From: srinivas kunthuri
>   To: [EMAIL PROTECTED]
>   Sent: Tuesday, March 25, 2003 2:11 AM
>   Subject: PING PROBLEM [7:66132]
>
>
>   Hi all
>
>   I am having one doubt regarding ping. I had configured two routers at
>two
>   locations connected through SCPC PAMA VSATs.
>   I had pinged to serial interface. It has given request timed out.
but,
>   the
>   serial interface is up and line protocol is also up.
>   I had pinged the other end serial ip. it is giving reply. what will
be
>   the
>   reason. can any one explain me .
>
>   Regards,
>   K.Srinivas




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66251&t=66132
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: OSPF Adjacency Question [7:66206]

2003-03-26 Thread Murali Das
CiscoNewbie  wrote:
Hi all. my cisco router keeps reporting this error when trying to bring up
an adjacency accross a P2P link.

OSPF: Rcv pkt from xxx.xxx.xxx.13, Serial0/0.1, area 0.0.0.1: src not on the
same network

I am presuming that the issue here is the subnet mask that I have specified
the network statement as under OSPF. My serial interface (frame-relay
subinterface) has a /30 mask. How should my network statement be configured
if the IP address of the interface is xxx.xxx.xxx.14? I have tried the
following:

network xxx.xxx.xxx.0 0.0.0.255 area 1

as well as:

network xxx.xxx.xxx.12 0.0.0.3 area 1

try this 

network xx.xx.xx.14 0.0.0.0 area 1

Neither one seemed to work. I still got the same error.

The other side is also on the same subnet and it has an IP address of
xxx.xxx.xxx.13/30 configured as a P2P as well. If the network statement is
not the issue, please advise.

Thanks.



-
Do you Yahoo!?
Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!
Do you Yahoo!?
Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66248&t=66206
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: BGP Multihome 2 isp's [7:66137]

2003-03-26 Thread Cisco Nuts
Well, you are right!!
Why even use distribute-lists in the first place?
Route-maps are more flexible...
He can even match as-path 1 and set the filter-list to ^$. This way, in case 
he has to advertise networks in the future, he does not need to worry about 
adding it to the acl.
And for outbound, prefix-list/distribute-list takes precedence over a 
filter-list over a route-map.
And since this is 2 different ISP's, I would just load-share the traffic for 
outbound and inbound...
Prepend out one ISP for Inbound and set the wt. in on the other for 
outbound.
Or he can also just set 2 static default routes out with one having a higher 
AD
This way, he does not have to depend on the ISP's for the default - more 
control.
Well, that's just my 2c ;->






>From: "Charles D Hammonds" 
>Reply-To: "Charles D Hammonds" 
>To: [EMAIL PROTECTED]
>Subject: RE: BGP Multihome 2 isp's [7:66137]
>Date: Wed, 26 Mar 2003 01:58:49 GMT
>
>didn't even look at your config the first time 'round, but now that I do...
>
>if you're using distribute-lists, why match ip addr again in route-map 
>6128?
>remove the match clause and just set as-path prepend (if you must) since 
>you
>only have the one route. then you can get rid of access-list 30
>
>charles
>
>-Original Message-
>From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of
>Charles D Hammonds
>Sent: Tuesday, March 25, 2003 4:28 PM
>To: [EMAIL PROTECTED]
>Subject: RE: BGP Multihome 2 isp's [7:66137]
>
>
>that would work, but I would get at least each providers internal routes
>rather than just a default. and unless it's for financial reasons (i.e.
>billed per usage) I wouldn't prepend your AS on either link... just let the
>internet do its thing and choose the best path.
>
>Charles
>
>-Original Message-
>From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of J
>M
>Sent: Tuesday, March 25, 2003 3:21 AM
>To: [EMAIL PROTECTED]
>Subject: BGP Multihome 2 isp's [7:66137]
>
>
>we are multihomed to 2 isp's on 1 router I only want to send the one 
>network
>62.154.91.0
>
>and only want to recieve the default 0.0.0.0
>addit9onally i want to prepend our as 23484 outbound to 1 neighbor
>does this work?
>
>is there a better way?
>
>
>
>
>
>
>router bgp 23484
>  no synchronization
>  bgp log-neighbor-changes
>  network 62.154.91.0 mask 255.255.255.0
>  neighbor 146.223.74.37 remote-as 1239
>  neighbor 146.223.74.37 distribute-list 20 in
>  neighbor 146.223.74.37 distribute-list 10 out
>  neighbor 162.206.236.69 remote-as 6128
>  neighbor 162.206.236.69 distribute-list 20 in
>  neighbor 162.206.236.69 distribute-list 10 out
>  neighbor 162.206.236.69 route-map 6128 out
>  no auto-summary
>!
>ip classless
>no ip http server
>ip http access-class 1
>!
>access-list 10 permit 62.154.91.0 0.0.0.255
>access-list 20 permit 0.0.0.0 log
>access-list 30 permit 62.154.91.0 0.0.0.255
>
>
>route-map 6128 permit 30
>  match ip address 30
>  set as-path prepend 23484
>!
_
Add photos to your e-mail with MSN 8. Get 2 months FREE*.  
http://join.msn.com/?page=features/featuredemail




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66250&t=66137
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: ping things [7:66155]

2003-03-26 Thread Steve Wilson
Type in ping, press return and follow the on screen prompts. This will allow
you to use ping in extended mode to specify the source address or interface.

Steve Wilson
Network Engineer

-Original Message-
From: Peter P [mailto:[EMAIL PROTECTED] 
Sent: 26 March 2003 11:16
To: [EMAIL PROTECTED]
Subject: RE: ping things [7:66155]

OK If I use the loopback addr then I can see ext trace going right way.
Now I need to make the rtr use this addr as the source




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66241&t=66155
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: reload 3500XL switch [7:66222]

2003-03-26 Thread netman
I know you can set it to reload at a certain time, with the reload at
command, but that will only allow you a quick reload. I use it all the time
when I upgrade the IOS on the switches. Then I set them to reload during the
middle of the night...

Don
- Original Message -
From: "Steve Wilson" 
To: 
Sent: Wednesday, March 26, 2003 2:49 AM
Subject: RE: reload 3500XL switch [7:66222]


> If all the complicated answers fail try putting a timer switch on the
socket
> that the device is powered from.
>
> Steve Wilson
> Network Engineer
>
> -Original Message-
> From: milind tare [mailto:[EMAIL PROTECTED]
> Sent: 26 March 2003 04:54
> To: [EMAIL PROTECTED]
> Subject: reload 3500XL switch [7:66222]
>
> hi cisco buddy's,
>
>
>   I hv 3500 series access switch's in my networ. In
> that i need shutdown for some access switches. and
> shutdown time is night time. so i can't do mannually.
>
>Can anyone suggest me is there any command so i can
> get switch shutdown at specific time and it will start
> automatically. if i mention particular time.
>
> Thanks & Regards,
> Milind Tare
>
> __
> Do you Yahoo!?
> Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!
> http://platinum.yahoo.com
> [This E-mail scanned for viruses by Declude Virus]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66246&t=66222
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Help on Catalyst 3550 [7:66072]

2003-03-26 Thread Joe Earhart \(jearhart\)
It depends on what are you wanting to do with the (2) Ethernets coming from
the IBM router?  Trunk to the Cat?  Route (2) networks? Bridge?  I was just
saying that Spanning Tree is on by default on a catalyst and if by chance
the IBM router happened to be bridging then that is why one of the ports is
being shut down.

-Original Message-
From: Juli Hato [mailto:[EMAIL PROTECTED]
Sent: Wednesday, March 26, 2003 3:08 AM
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: RE: Help on Catalyst 3550 [7:66072]

Hi Earhart,

May turn off the STP on the Catalyst? What mostly will happen then. Thank
YOu

Best Regards,
HATO


>From: "Joe Earhart (jearhart)" 
>Reply-To: "Joe Earhart (jearhart)" 
>To: [EMAIL PROTECTED]
>Subject: RE: Help on Catalyst 3550 [7:66072]
>Date: Tue, 25 Mar 2003 12:19:25 GMT
>
>Juli,
>Make sure you don't have bridging turned up on the IBM, spanning tree may
>be
>shutting down one of the ports.
>
>-Original Message-
>From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of Juli
>Hato
>Sent: Monday, March 24, 2003 10:57 AM
>To: [EMAIL PROTECTED]
>Subject: Help on Catalyst 3550 [7:66072]
>
>Hi all,
>
>I have a router IBM that has 2 ethernet ports. The IBM router connect to
>Cisco Catalyst 3550 that is not configured. When the router IBM connect to
>the switch one of the ethernet port from the IBM router got block by the
>Cisco Switch. All you have to know is that I need to ethernet ports from
>the
>IBM router active. How to counteract with this. Thank you in advance.
>
>Best Regards,
>HATO
>
>
>
>
>
>_
>Add photos to your e-mail with MSN 8. Get 2 months FREE*.
>http://join.msn.com/?page=features/featuredemail
_
The new MSN 8: smart spam protection and 2 months FREE*
http://join.msn.com/?page=features/junkmail




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66243&t=66072
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


PING THINGS - THE SEQUEL [7:66242]

2003-03-26 Thread Peter P
When I traceroute or ping to a remote node from Router A - no reply. If so
an extended traceroute or ping using the source's loopback address - hey
presto- all works fine. So how do I get the route to use its loopback
address as the source - rather than the serial interface. Or cant I change
this? IF I cant change this then I seem to have to look at the routing in
the intervening hops and ensure all hops refer to this loopback address -
rather than the serial address on Router A. Yes?


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66242&t=66242
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Basic QOS Frame MPLS question [7:66210]

2003-03-26 Thread [EMAIL PROTECTED]
I don4t think so.

There are many QoS tool that you can use without MPLS.

For example, you can use "ip rtp priority", so the priority traffic will go
to a high priority queue. Also, the fragmentation options will help you to
avoid 'big' frames from starving the voice frames.

Low Latency Queueing for Frame Relay
http://www.cisco.com/univercd/cc/td/doc/product/software/ios121/121newft/121t/121t2/dtfrpqfq.htm#wp1033474


Link Fragmentation and Interleaving with Frame-Relay
http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fqos_c/fqcprt6/qcflfifr.htm

Frame Relay Header compression
http://www.cisco.com/univercd/cc/td/doc/product/software/ios112/rtphead.htm#xtocid63548







"Paul" @groupstudy.com em 25/03/2003 19:59:20

Favor responder a "Paul" 

Enviado Por:  [EMAIL PROTECTED]


Para:  [EMAIL PROTECTED]
cc:

Assunto:Basic QOS Frame MPLS question [7:66210]


Hi, Quick question to everyone 

At work I have a Frame Cloud that links all our sites together in a hub and
spoke manner.

At some of the sites I would like to extend our IP Telephony and perhaps
introduce Video Conferencing.

Assume I have adequate bandwidth throughout for video and IP telephony.

I would like to implement QOS. Am I correct in assuming that I can only
prioritise voice/video over the frame circuit, and that if I want to
implement
QOS I would have to 'swap' Frame for MPLS/Layer 4 Switching ???

Kind regards

Paul 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66252&t=66210
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Info about cisco IDS [7:66238]

2003-03-26 Thread Kent Hundley
AFAIK, no. Cisco IDS was purchased from the Wheel Group and previously
went by the name Netranger.

Regards,
Kent

On Wed, 2003-03-26 at 07:12, ritul wrote:
> Hi !
> 
> I want to know is Snort used with CISCO IDS ?
> 
> Ritul




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66255&t=66238
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


netscape 7.0 and 15327 ONS CTC [7:66253]

2003-03-26 Thread MADMAN
Hi,

   Was recently setting up a 15327 in the lab and ownloaded the CTC 
software.  I beat my head for a while trying ot get the GUI to work but 
couldn't.  I also had Netscape 4.79 and using it I was able to 
communicate with the 15327 via the CTC software.  Has anyone out there 
run into this??  Seems 7.0 Netscape isn't supported.

   Thanks

   Dave


-- 
David Madland
CCIE# 2016
Sr. Network Engineer
Qwest Communications
612-664-3367

I would rather have a German division in front of me than a French one 
behind me."
--- General George S. Patton




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66253&t=66253
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Redistributing Static within RIP version 1 - what is this [7:66254]

2003-03-26 Thread Steve Wilson
Maybe I'm simple but RIP v1 is classfull last time I looked. Also check for
the command IP SUBNET-ZERO, it may come in handy. 

Steve Wilson
Network Engineer

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] 
Sent: 26 March 2003 13:02
To: [EMAIL PROTECTED]
Subject: Redistributing Static within RIP version 1 - what is this mask
[7:66245]

With  the following configuration, RIP do not redistribute the static
route;  if the static route is changed to /24, it does redistribute.

R1

ip route 195.0.0.0 255.255.255.0 null 0
!
router rip
version 1
network 192.168.13.0
redistribute static

There is no other interfaces using the net 195.x.x.x

With the "ip route 195.0.0.0 255.255.255.0 null 0"  (/24), the route is
advertised:

Debug in R1 shows that it does not advertise the route 195.0.0.0
  With 195.0.0.0 255.255.255.0 it does advertise:
  1d00h:  network 10.0.0.0 metric 1
  1d00h:  network 192.168.13.0 metric 1
  1d00h:  network 195.0.0.0 metric 1

I did not find any notes about this behavior. The article "Behavior of RIP
and IGRP When Sending and
Receiving Updates" do not cover this.

Any thoughts?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66254&t=66254
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: OSPF Adjacency Question [7:66206]

2003-03-26 Thread CiscoNewbie
Hi and thanks for your reply.  I had already attempted what you suggested
and still the adjacency does not come up.
Can you (or any list member) clarify for me whether the network command
along with the wildcard mask have to match exactly as the interface for
which you are enabling OSPF is configured for?
Would the use of the network statement as follows work as well:
network xxx.xxx.xxx.14 0.0.0.3 area 1
or does it have to be netowrk "aligned"?
When the hello packets are exchanged, the mask is also carried, so where
does the router get the mask for the interface it is advertising?  Is it
derived from the network statement?
Can someone explain what the error that I was seeing means?
 
Thanks.
 
 
 
 Murali Das  wrote:
 
 CiscoNewbie  wrote: 
Hi all. my cisco router keeps reporting this error when trying to bring up
an adjacency accross a P2P link.

OSPF: Rcv pkt from xxx.xxx.xxx.13, Serial0/0.1, area 0.0.0.1: src not on the
same network

I am presuming that the issue here is the subnet mask that I have specified
the network statement as under OSPF. My serial interface (frame-relay
subinterface) has a /30 mask. How should my network statement be configured
if the IP address of the interface is xxx.xxx.xxx.14? I have tried the
following:

network xxx.xxx.xxx.0 0.0.0.255 area 1

as well as:

network xxx.xxx.xxx.12 0.0.0.3 area 1

try this 

network xx.xx.xx.14 0.0.0.0 area 1

Neither one seemed to work. I still got the same error.

The other side is also on the same subnet and it has an IP address of
xxx.xxx.xxx.13/30 configured as a P2P as well. If the network statement is
not the issue, please advise.

Thanks.



-
Do you Yahoo!?
Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!
Do you Yahoo!?
Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!


-
Do you Yahoo!?
Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66256&t=66206
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


AS5300 config [7:66259]

2003-03-26 Thread Oluseyi Lala
Hi all,pls I have a cisco AS5300 universal gateway that Im configuring for
VOIP,but Im having difficulting terminating my call.Earlier the config was
ok and I could send and receive call,but someone got into my system via the
web and altered it.I had to put all the config back to what it was before
the alteration,but now I cannot terminate my calls.what can I do to
troubleshoot this situation.

Oluseyi Olaolu Lala
Information Technology Dept
Cell Communications Limited
Tel.234-1-2900045,2348037136524
Fax:234-1-2618157




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66259&t=66259
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: ping things [7:66155]

2003-03-26 Thread MADMAN
The reason it doesn't work is someone somewhere doesn't have a route 
to your loopback interface.

   Dave

Peter P wrote:
> I can reach my end node by declaring the loopback address as the source. By
> default the router is using the seril i/f address. Unless I use the
loopback
> as the source it dont work. So I need to understand how to fix this - I
> imagine the intervening hops are where the trouble lies
-- 
David Madland
CCIE# 2016
Sr. Network Engineer
Qwest Communications
612-664-3367

I would rather have a German division in front of me than a French one 
behind me."
--- General George S. Patton




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66264&t=66155
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Basic QOS Frame MPLS question [7:66210]

2003-03-26 Thread Peter van Oene
At 02:08 PM 3/26/2003 +, [EMAIL PROTECTED] wrote:
>I don4t think so.
>
>There are many QoS tool that you can use without MPLS.

For what it's worth, MPLS is not a QOS tool.  It can be used as a component 
in a QOS strategy, but by itself, provides no QOS.

>For example, you can use "ip rtp priority", so the priority traffic will go
>to a high priority queue. Also, the fragmentation options will help you to
>avoid 'big' frames from starving the voice frames.
>
>Low Latency Queueing for Frame Relay
>http://www.cisco.com/univercd/cc/td/doc/product/software/ios121/121newft/121t/121t2/dtfrpqfq.htm#wp1033474
>
>
>Link Fragmentation and Interleaving with Frame-Relay
>http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fqos_c/fqcprt6/qcflfifr.htm
>
>Frame Relay Header compression
>http://www.cisco.com/univercd/cc/td/doc/product/software/ios112/rtphead.htm#xtocid63548
>
>
>
>
>
>
>
>"Paul" @groupstudy.com em 25/03/2003 19:59:20
>
>Favor responder a "Paul"
>
>Enviado Por:  [EMAIL PROTECTED]
>
>
>Para:  [EMAIL PROTECTED]
>cc:
>
>Assunto:Basic QOS Frame MPLS question [7:66210]
>
>
>Hi, Quick question to everyone 
>
>At work I have a Frame Cloud that links all our sites together in a hub and
>spoke manner.
>
>At some of the sites I would like to extend our IP Telephony and perhaps
>introduce Video Conferencing.
>
>Assume I have adequate bandwidth throughout for video and IP telephony.
>
>I would like to implement QOS. Am I correct in assuming that I can only
>prioritise voice/video over the frame circuit, and that if I want to
>implement
>QOS I would have to 'swap' Frame for MPLS/Layer 4 Switching ???
>
>Kind regards
>
>Paul 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66261&t=66210
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


BGP default-originate crashes the router everytime - Why?? [7:66258]

2003-03-26 Thread Cisco Nuts
Hello,
Everytime, I configure #nei a.b.c.d default-originate on my routers, it 
crashes the  router. I have tried this on different routers and it's the 
same result every time. Is this a problem on 25xx's series? My routers have 
16Flash and 16Dram.
Anyone with a similar experience?
Thank you.
Sincerely,
CN

Excerpt from my router:

AS1239-A(config-router)#nei 180.80.10.1 default-originate
AS1239-A(config-router)#

=== Flushing messages (21:04:23 UTC Mon Mar 1 1993) ===

Buffered messages:

00:00:12: %SYS-7-NV_BLOCK_INIT: Initalized the geometry of nvram
00:00:14: %LINK-3-UPDOWN: Interface Ethernet0, changed state to up
00:00:14: %LINK-3-UPDOWN: Interface Serial0, changed state to up
00:00:14: %LINK-3-UPDOWN: Interface Serial1, changed state to down
00:00:15: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0, changed 
state to up
00:00:15: %LINEPROTO-5-UPDOWN: Line protocol on Interface Serial0, changed 
state to up
00:01:54: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0, changed 
state to up
00:01:56: %LINEPROTO-5-UPDOWN: Line protocol on Interface Serial0, changed 
state to up
00:02:01: %LINK-5-CHANGED: Interface Serial1, changed state to 
administratively down
00:02:02: %LINEPROTO-5-UPDOWN: Line protocol on Interface Serial1, changed 
state to down
00:02:02: %SYS-5-CONFIG_I: Configured from memory by console
00:02:50: %SYS-5-RESTART: System restarted --
Cisco Internetwork Operating System Software
IOS (tm) 2500 Software (C2500-JK8OS-L), Version 12.2(1), RELEASE SOFTWARE 
(fc2)
Copyright (c) 1986-2001 by cisco Systems, Inc.
Compiled Fri 27-Apr-01 15:20 by cmong
00:03:10: %BGP-5-ADJCHANGE: neighbor 180.80.10.1 Up
01:20:21: %SYS-5-CONFIG_I: Configured from console by console
01:50:45: %SYS-5-CONFIG_I: Configured from console by console
19:09:35: %SYS-5-CONFIG_I: Configured from console by console
19:12:12: %BGP-5-ADJCHANGE: neighbor 160.60.10.1 Up
19:30:06: %SYS-5-CONFIG_I: Configured from console by console
19:52:26: %SYS-5-CONFIG_I: Configured from console by console
20:02:48: %SYS-5-CONFIG_I: Configured from console by console
20:11:47: %SYS-5-CONFIG_I: Configured from console by console
20:35:37: %SYS-5-CONFIG_I: Configured from console by console
20:44:02: %BGP-5-ADJCHANGE: neighbor 180.80.10.1 Down Interface flap
20:44:02: %SYS-5-CONFIG_I: Configured from console by console
20:44:04: %LINK-5-CHANGED: Interface Ethernet0, changed state to 
administratively down
20:44:05: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0, changed 
state to down
20:49:20: %SYS-5-CONFIG_I: Configured from console by console
20:49:21: %LINK-3-UPDOWN: Interface Ethernet0, changed state to up
20:49:22: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0, changed 
state to up
20:49:30: %BGP-5-ADJCHANGE: neighbor 180.80.10.1 Up
21:00:44: %BGP-5-ADJCHANGE: neighbor 180.80.10.1 Down Interface flap
21:00:45: %SYS-5-CONFIG_I: Configured from console by console
21:00:46: %LINK-5-CHANGED: Interface Ethernet0, changed state to 
administratively down
21:00:47: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0, changed 
state to down
21:01:19: %SYS-5-CONFIG_I: Configured from console by console
21:01:21: %LINK-3-UPDOWN: Interface Ethernet0, changed state to up
21:01:22: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0, changed 
state to up
21:01:47: %BGP-5-ADJCHANGE: neighbor 180.80.10.1 Up
Queued messages:
Exception: Illegal Instruction at 0x0 (PC)

System Bootstrap, Version 5.2(8a), RELEASE SOFTWARE
Copyright (c) 1986-1995 by cisco Systems
2500 processor with 14336 Kbytes of main memory

F3: 15343148+1154396+1180856 at 0x360

  Restricted Rights Legend

Use, duplication, or disclosure by the Government is
subject to restrictions as set forth in subparagraph
(c) of the Commercial Computer Software - Restricted
Rights clause at FAR sec. 52.227-19 and subparagraph
(c) (1) (ii) of the Rights in Technical Data and Computer
Software clause at DFARS sec. 252.227-7013.

   cisco Systems, Inc.
   170 West Tasman Drive
   San Jose, California 95134-1706



Cisco Internetwork Operating System Software
IOS (tm) 2500 Software (C2500-JK8OS-L), Version 12.2(1), RELEASE SOFTWARE 
(fc2)
Copyright (c) 1986-2001 by cisco Systems, Inc.
Compiled Fri 27-Apr-01 15:20 by cmong
Image text-base: 0x0307EE08, data-base: 0x1000


Compliance with U.S. Export Laws and Regulations - Encryption

This product performs encryption and is regulated for export
by the U.S. Government.

This product is not authorized for use by persons located
outside the United States and Canada that do not have prior
approval from Cisco Systems, Inc. or the U.S. Government.

This product may not be exported outside the U.S. and Canada
either by physical or electronic means without PRIOR approval
of Cisco Systems, Inc. or the U.S. Government.

Persons outside the U.S. and Canada may not re-export, resell,
or transfer this product by either physical or electronic means
without  prior approval o

Re: PING PROBLEM [7:66132]

2003-03-26 Thread Oluseyi Lala
hi i've check the last 2 suggestions and i feel it should work but if it
doesnt try to shut down the interface and then bring it up then use the
command sh int to see if all is up line protocol and all that


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66262&t=66132
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: booting a 2900 switch.... [7:66190]

2003-03-26 Thread Oluseyi Lala
hi there Alejandro,
the best way to xfer the ios is via a tftp server u have internet access go
to this site below

  Step 1 Enter the following URL in your browser Go To or Location field:
http://www.cisco.com/cgi-bin/tablebuild.pl/cat2900XL

Step 2 Login to Software Center if prompted.

Step 3 There are several images posted for the Catalyst 2900 Series XL.
Download one of the bin files:


Enterprise Edition Software: c2900XL-hs-mz-112.8.1-SA4.bin 


Standard edition software: c2900XL-h-mz-112.8.1-SA4.bin 
then u shud have a tftp server u can access,so after the download,just issue
the command at the prompt,enable prompt
so just type copy tftp://(ip address of the server) flash,this will copy the
new IOS to yr switch.i hope this helps u



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66257&t=66190
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: ping things [7:66155]

2003-03-26 Thread Peter van Oene
At 12:55 PM 3/26/2003 +, Peter P wrote:
>I can reach my end node by declaring the loopback address as the source. By
>default the router is using the seril i/f address. Unless I use the loopback
>as the source it dont work. So I need to understand how to fix this - I
>imagine the intervening hops are where the trouble lies

Make the serial interface reachable.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66260&t=66155
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


regulations [7:66267]

2003-03-26 Thread Stull, Cory
Where could I go to find information on network security regulations for
banks and medical offices?.  Information on firewalls and rules they have to
abide by and that sort of thing?
 
Thanks
 
God Bless our troops.
 
Cory Stull
CCNP,CCDP,MCSE4/2k
Communications Concepts Unlimited
262-814-7214




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66267&t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Info about cisco IDS [7:66238]

2003-03-26 Thread Will Gragido
And now it's OKENA as they are swapping out the OEM'd Entercept solution. 

Will Gragido CISSP CCNP CIPTSS CCDA MCP
9450 W. Bryn Mawr Ave.
Suite 325
Rosemont, Il 60018
www.ins.com
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Kent
Hundley
Sent: Wednesday, March 26, 2003 9:33 AM
To: [EMAIL PROTECTED]
Subject: Re: Info about cisco IDS [7:66238]

AFAIK, no. Cisco IDS was purchased from the Wheel Group and previously
went by the name Netranger.

Regards,
Kent

On Wed, 2003-03-26 at 07:12, ritul wrote:
> Hi !
> 
> I want to know is Snort used with CISCO IDS ?
> 
> Ritul




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66265&t=66238
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Eigrp neighbor loss [7:63925]

2003-03-26 Thread Nelson Herron
I believe I traced my neighbor loss to a problem with the IOS.  I had 12.1.3
EA running when I had the OSPF neighbor loss problem.  I upgraded it to
12.2.7 and the router held neighbors and routes all day yesterday.  It may
have been compounded by a possible backplane issue, but that would not seem
to account for the fact that it dropped the connection after 15 - 20 minutes
after resetting the interface not shutting the router off completely.  I
don't know if this is applicable to your case or not, and I know it's
non-trivial to change IOS on a production network to play with it.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66266&t=63925
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Basic QOS Frame MPLS question [7:66210]

2003-03-26 Thread Paul Jin
Paul wrote:
> 
> 
> I would like to implement QOS. Am I correct in assuming that I
> can only
> prioritise voice/video over the frame circuit, and that if I
> want to implement
> QOS I would have to 'swap' Frame for MPLS/Layer 4 Switching ???
> 
> Kind regards
> 
> Paul 
> 
> 

In a traditional FR type network, the FR switches cannot prioritize your
traffic because it cannot tell the difference between a high priority
packet.. So the QoS you would apply only gets applied to
your router's WAN interface.

There might be 10 FR switches in between your 2 routers, and none of them
can prioritize because it cannot distinguish traffic.

With MPLS, you can do QoS even within the cloud because for example, if you
set your VOIP to be prec 5 and require high priority, your MPLS cloud
(routers) can tell the difference and will treat your prec 5 traffic better
(if the provider has it congiured this way).

That is the key difference.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66271&t=66210
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Server Load Balancing Options [7:66272]

2003-03-26 Thread Jay Greenberg
Hello, would someone please validate this list, and or recommend less
alternatives?  I would appreciate it a lot!

Our requirements: 
1) Server Load Balancing (IP address translation) LAYER 3 ONLY
2) Server availability monitoring (ping?)
3) Redundant Switch Capability (SLB HSRP?)
4) medium load - DNS, LDAP, mail, radius, etc..

As far as I can tell, my options are

1) 6500 SLB CSM - 40-100 grand ?? what modules are needed here?
2) 6500 cat/native OS SLB ??? what modules are needed here?
3) 4840G - 30 grand
4) 7200 Router IOS SLB 
CCIE #11021




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66272&t=66272
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: OSPF Adjacency Question [7:66206]

2003-03-26 Thread Murali Das
Hi,
Probably I should have asked some more questions -
Hello packet has the following important fields that should match on both
routers trying to form adjacency -
1. Network Mask,
2. Hello Interval,
3. Options field
4. Router dead interval
Make sure that the neighboring interfaces are of same network type.
Are you using any authentications which may not be matching.
There is a possibility of accesslist also.
What does the debug ip ospf adj say ?
Murali
 
 CiscoNewbie  wrote:
Hi and thanks for your reply.  I had already attempted what you suggested
and still the adjacency does not come up.
Can you (or any list member) clarify for me whether the network command
along with the wildcard mask have to match exactly as the interface for
which you are enabling OSPF is configured for?
Would the use of the network statement as follows work as well: 
network xxx.xxx.xxx.14 0.0.0.3 area 1 
or does it have to be netowrk "aligned"? 
When the hello packets are exchanged, the mask is also carried, so where
does the router get the mask for the interface it is advertising?  Is it
derived from the network statement?
Can someone explain what the error that I was seeing means? 
 
Thanks. 
 
 
 
 Murali Das  wrote: 

 CiscoNewbie  wrote: 
Hi all. my cisco router keeps reporting this error when trying to bring up
an adjacency accross a P2P link.

OSPF: Rcv pkt from xxx.xxx.xxx.13, Serial0/0.1, area 0.0.0.1: src not on the
same network

I am presuming that the issue here is the subnet mask that I have specified
the network statement as under OSPF. My serial interface (frame-relay
subinterface) has a /30 mask. How should my network statement be configured
if the IP address of the interface is xxx.xxx.xxx.14? I have tried the
following:

network xxx.xxx.xxx.0 0.0.0.255 area 1

as well as:

network xxx.xxx.xxx.12 0.0.0.3 area 1

try this 

network xx.xx.xx.14 0.0.0.0 area 1

Neither one seemed to work. I still got the same error.

The other side is also on the same subnet and it has an IP address of
xxx.xxx.xxx.13/30 configured as a P2P as well. If the network statement is
not the issue, please advise.

Thanks.



-
Do you Yahoo!?
Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!
Do you Yahoo!?
Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!


-
Do you Yahoo!?
Yahoo! Platinum - Watch CBS' NCAA March Madness, live on your desktop!


-
Do you Yahoo!?
Yahoo! News - Today's headlines




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66268&t=66206
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Wireless AP Chaining [7:66270]

2003-03-26 Thread Williamson, Paul
Anyone know the maximum number of Wireless AP's you can chain of a single
wireless bridge
ie

Switch ---copper---> AP ~~~air~~~> AP ~~~air~~~> AP

Does cisco make an AP that supports this
Thanks
-Paul


PLEASE READ: The information contained in this email is confidential
and intended for the named recipient(s) only. If you are not an intended
recipient of this email you must not copy, distribute or take any 
further action in reliance on it and you should delete it and notify the
sender immediately. Email is not a secure method of communication and 
Nomura International plc cannot accept responsibility for the accuracy
or completeness of this message or any attachment(s). Please examine this
email for virus infection, for which Nomura International plc accepts
no responsibility. If verification of this email is sought then please
request a hard copy. Unless otherwise stated any views or opinions
presented are solely those of the author and do not represent those of
Nomura International plc. This email is intended for informational
purposes only and is not a solicitation or offer to buy or sell
securities or related financial instruments. Nomura International plc is
regulated by the Financial Services Authority and is a member of the
London Stock Exchange.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66270&t=66270
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: PING THINGS - THE SEQUEL [7:66242]

2003-03-26 Thread Larry Letterman
You need to find out why the routing process does not work with the serial
interfaces..if the loopback works, the serial interfaces should work also...

do you have any configs ?

Larry Letterman
Network Engineer
Cisco Systems


  - Original Message -
  From: Peter P
  To: [EMAIL PROTECTED]
  Sent: Wednesday, March 26, 2003 4:53 AM
  Subject: PING THINGS - THE SEQUEL [7:66242]


  When I traceroute or ping to a remote node from Router A - no reply. If so
  an extended traceroute or ping using the source's loopback address - hey
  presto- all works fine. So how do I get the route to use its loopback
  address as the source - rather than the serial interface. Or cant I change
  this? IF I cant change this then I seem to have to look at the routing in
  the intervening hops and ensure all hops refer to this loopback address -
  rather than the serial address on Router A. Yes?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66273&t=66242
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: regulations [7:66267]

2003-03-26 Thread COULOMBE, TROY
I would suggest your legal dept. for DEFINATIVE answers...
however, this might get you started:::

http://www.sans.org/rr/legal/

hth,
TroyC

-Original Message-
From: Stull, Cory [mailto:[EMAIL PROTECTED]
Sent: Wednesday, March 26, 2003 9:42 AM
To: [EMAIL PROTECTED]
Subject: regulations [7:66267]


Where could I go to find information on network security regulations for
banks and medical offices?.  Information on firewalls and rules they have to
abide by and that sort of thing?
 
Thanks
 
God Bless our troops.
 
Cory Stull
CCNP,CCDP,MCSE4/2k
Communications Concepts Unlimited
262-814-7214




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66277&t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: regulations [7:66267]

2003-03-26 Thread Robert Edmonds
I can't help too much with the banks, but I used to run the network for
hospital and supported several doctor's offices that used our network.  The
main thing you need to worry about there is that you meet the requirements
outlined in the HIPAA (Health Insurance Portability and Accountability Act
of 1996) regulations.  I hope you're up for some dry reading.  However, this
has been going on for quite a while, so they will be well aware of at least
the general ramifications.

www.wedi.org/snip

That should get you started.  It has plenty of information and links to
other sites.


""Stull, Cory""  wrote in message
news:[EMAIL PROTECTED]
> Where could I go to find information on network security regulations for
> banks and medical offices?.  Information on firewalls and rules they have
to
> abide by and that sort of thing?
>
> Thanks
>
> God Bless our troops.
>
> Cory Stull
> CCNP,CCDP,MCSE4/2k
> Communications Concepts Unlimited
> 262-814-7214




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66275&t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Wireless AP Chaining [7:66270]

2003-03-26 Thread Dave
You are not supposed to use more than 3 repeaters...

d-

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
Williamson, Paul
Sent: Wednesday, March 26, 2003 1:15 PM
To: [EMAIL PROTECTED]
Subject: Wireless AP Chaining [7:66270]

Anyone know the maximum number of Wireless AP's you can chain of a single
wireless bridge
ie

Switch ---copper---> AP ~~~air~~~> AP ~~~air~~~> AP

Does cisco make an AP that supports this
Thanks
-Paul


PLEASE READ: The information contained in this email is confidential
and intended for the named recipient(s) only. If you are not an intended
recipient of this email you must not copy, distribute or take any 
further action in reliance on it and you should delete it and notify the
sender immediately. Email is not a secure method of communication and 
Nomura International plc cannot accept responsibility for the accuracy
or completeness of this message or any attachment(s). Please examine this
email for virus infection, for which Nomura International plc accepts
no responsibility. If verification of this email is sought then please
request a hard copy. Unless otherwise stated any views or opinions
presented are solely those of the author and do not represent those of
Nomura International plc. This email is intended for informational
purposes only and is not a solicitation or offer to buy or sell
securities or related financial instruments. Nomura International plc is
regulated by the Financial Services Authority and is a member of the
London Stock Exchange.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66276&t=66270
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Clearing removed VIP250 interfaces/vlan ISL troubleshooting [7:66278]

2003-03-26 Thread Nick
First the troubleshooting, which might be of interest to people who use 
vlans and ISL.  Then my actual question. See below for commands pasted/etc.


Taking place on a Cisco 7507

So, I noticed by chance that there was ~50% packet loss from host to router 
and no latency. However, the host could reach the outside world with no 
packet loss and no latency. After delving into it, it looked as if the host 
could ping another subnet that was bound to the same vlan ISL(6/0.1) 
interface with no packet loss, but again packet loss to the actual router 
was %50. Packet loss to other vlans connected via the same ISL 
interface(6/0.2) was ~50% as well. So, I looked at the routers vlan/ISL 
information via sh vlan. Turns out that it had a failed and removed 
VIP250(0/1/0) card that was the old interface for the vlan/isl subnets. I 
believe the router is trying to send half the packets to the non-existent 
VIP250(0/1/0) isl interface. Now read on for the question


I don't want to do a reload on the router, so does anyone know of a way of 
"removing" this interface without reloading? It was removed successfully 
upon it's failure, that is, the cbus reported it as being gone and there is 
no way to 'configure  int fast 0/1/0'. I made sure of this before plugging 
in the 6/0 VIP250 and configuring it. Any suggestions on how to get rid of 
that thing outside of reloading would be appreciated, if such a thing is 
possible.





#sh vlan

Virtual LAN ID:  1 (Inter Switch Link Encapsulation)

vLAN Trunk Interfaces:  FastEthernet0/1/0.1   FastEthernet6/0.1

Protocols Configured:   Address:  Received:   
Transmitted:
IP  192.168.0.190   35459   27492
IP  192.168.0.190   35459   27492

Virtual LAN ID:  2 (Inter Switch Link Encapsulation)

vLAN Trunk Interfaces:  FastEthernet0/1/0.2   FastEthernet6/0.2

Protocols Configured:   Address:  Received:   
Transmitted:
IP  192.168.0.198  199982  165171
IP  192.168.0.198  199982  165171

--
Nick

alias life='cat /dev/urandom | grep 'born' | sed s/'born'/'die'/g >
/dev/null'
---
'What is a human being, then?'
'A seed.'
'A... seed?'
'An acorn that is unafraid to destroy itself in growing into a tree'
--David Zindell (excerpts from _The Broken God_)




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66278&t=66278
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: BGP default-originate crashes the router everytime - Why?? [7:66274]

2003-03-26 Thread The Long and Winding Road
""Cisco Nuts""  wrote in message
news:[EMAIL PROTECTED]
> Hello,
> Everytime, I configure #nei a.b.c.d default-originate on my routers, it
> crashes the  router. I have tried this on different routers and it's the
> same result every time. Is this a problem on 25xx's series? My routers
have
> 16Flash and 16Dram.
> Anyone with a similar experience?


this is a known bug with several versions of IOS 12.1. the answer is to
upgrade - or never issue the command

12.1.5Tx seems to be stable.
12.2.12a seems to be OK

when I ran into this a year or so ago I had to upgrade from 12.1.2 to
something like 12.1.10. As I said - the T train seems to be stable also.




> Thank you.
> Sincerely,
> CN
>
> Excerpt from my router:
>
> AS1239-A(config-router)#nei 180.80.10.1 default-originate
> AS1239-A(config-router)#
>
> === Flushing messages (21:04:23 UTC Mon Mar 1 1993) ===
>
> Buffered messages:
>
> 00:00:12: %SYS-7-NV_BLOCK_INIT: Initalized the geometry of nvram
> 00:00:14: %LINK-3-UPDOWN: Interface Ethernet0, changed state to up
> 00:00:14: %LINK-3-UPDOWN: Interface Serial0, changed state to up
> 00:00:14: %LINK-3-UPDOWN: Interface Serial1, changed state to down
> 00:00:15: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0,
changed
> state to up
> 00:00:15: %LINEPROTO-5-UPDOWN: Line protocol on Interface Serial0, changed
> state to up
> 00:01:54: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0,
changed
> state to up
> 00:01:56: %LINEPROTO-5-UPDOWN: Line protocol on Interface Serial0, changed
> state to up
> 00:02:01: %LINK-5-CHANGED: Interface Serial1, changed state to
> administratively down
> 00:02:02: %LINEPROTO-5-UPDOWN: Line protocol on Interface Serial1, changed
> state to down
> 00:02:02: %SYS-5-CONFIG_I: Configured from memory by console
> 00:02:50: %SYS-5-RESTART: System restarted --
> Cisco Internetwork Operating System Software
> IOS (tm) 2500 Software (C2500-JK8OS-L), Version 12.2(1), RELEASE SOFTWARE
> (fc2)
> Copyright (c) 1986-2001 by cisco Systems, Inc.
> Compiled Fri 27-Apr-01 15:20 by cmong
> 00:03:10: %BGP-5-ADJCHANGE: neighbor 180.80.10.1 Up
> 01:20:21: %SYS-5-CONFIG_I: Configured from console by console
> 01:50:45: %SYS-5-CONFIG_I: Configured from console by console
> 19:09:35: %SYS-5-CONFIG_I: Configured from console by console
> 19:12:12: %BGP-5-ADJCHANGE: neighbor 160.60.10.1 Up
> 19:30:06: %SYS-5-CONFIG_I: Configured from console by console
> 19:52:26: %SYS-5-CONFIG_I: Configured from console by console
> 20:02:48: %SYS-5-CONFIG_I: Configured from console by console
> 20:11:47: %SYS-5-CONFIG_I: Configured from console by console
> 20:35:37: %SYS-5-CONFIG_I: Configured from console by console
> 20:44:02: %BGP-5-ADJCHANGE: neighbor 180.80.10.1 Down Interface flap
> 20:44:02: %SYS-5-CONFIG_I: Configured from console by console
> 20:44:04: %LINK-5-CHANGED: Interface Ethernet0, changed state to
> administratively down
> 20:44:05: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0,
changed
> state to down
> 20:49:20: %SYS-5-CONFIG_I: Configured from console by console
> 20:49:21: %LINK-3-UPDOWN: Interface Ethernet0, changed state to up
> 20:49:22: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0,
changed
> state to up
> 20:49:30: %BGP-5-ADJCHANGE: neighbor 180.80.10.1 Up
> 21:00:44: %BGP-5-ADJCHANGE: neighbor 180.80.10.1 Down Interface flap
> 21:00:45: %SYS-5-CONFIG_I: Configured from console by console
> 21:00:46: %LINK-5-CHANGED: Interface Ethernet0, changed state to
> administratively down
> 21:00:47: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0,
changed
> state to down
> 21:01:19: %SYS-5-CONFIG_I: Configured from console by console
> 21:01:21: %LINK-3-UPDOWN: Interface Ethernet0, changed state to up
> 21:01:22: %LINEPROTO-5-UPDOWN: Line protocol on Interface Ethernet0,
changed
> state to up
> 21:01:47: %BGP-5-ADJCHANGE: neighbor 180.80.10.1 Up
> Queued messages:
> Exception: Illegal Instruction at 0x0 (PC)
>
> System Bootstrap, Version 5.2(8a), RELEASE SOFTWARE
> Copyright (c) 1986-1995 by cisco Systems
> 2500 processor with 14336 Kbytes of main memory
>
> F3: 15343148+1154396+1180856 at 0x360
>
>   Restricted Rights Legend
>
> Use, duplication, or disclosure by the Government is
> subject to restrictions as set forth in subparagraph
> (c) of the Commercial Computer Software - Restricted
> Rights clause at FAR sec. 52.227-19 and subparagraph
> (c) (1) (ii) of the Rights in Technical Data and Computer
> Software clause at DFARS sec. 252.227-7013.
>
>cisco Systems, Inc.
>170 West Tasman Drive
>San Jose, California 95134-1706
>
>
>
> Cisco Internetwork Operating System Software
> IOS (tm) 2500 Software (C2500-JK8OS-L), Version 12.2(1), RELEASE SOFTWARE
> (fc2)
> Copyright (c) 1986-2001 by cisco Systems, Inc.
> Compiled Fri 27-Apr-01 15:20 by cmong
> Image text-base: 0x0307EE08, data-base: 0x1000
>
>
> Compliance with U.S. Export Laws and Regulations - Encryption
>
> This product performs encryption

Message for Paul Borghese [7:66280]

2003-03-26 Thread Phil Barker
Paul,
Please see attached message.

Sorry, I don't have your personal email.

Regards,

Phil.

__
Do You Yahoo!?
Everything you'll ever need on one web page
from News and Sport to Email and Music Charts
http://uk.my.yahoo.com
X-Apparently-To: [EMAIL PROTECTED] via 216.136.175.14; 26 Mar
  2003 12:42:03 -0800 (PST)
Return-Path: <>
Received: from 216.136.175.16  (HELO web13806.mail.yahoo.com)
  (216.136.175.16) by mta153.mail.scd.yahoo.com with SMTP; 26 Mar 2003
  12:42:02 -0800 (PST)
Date: 26 Mar 2003 20:42:02 -
From: [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Subject: failure delivery
Content-Length: 720

Message from  yahoo.com.
Unable to deliver message to the following address(es).

:
66.220.63.9 does not like recipient.
Remote host said: 550 5.1.1 ... User unknown
Giving up on 66.220.63.9.

--- Original message follows.

Return-Path: 
Message-ID: 
Received: from [62.31.224.1] by web13806.mail.yahoo.com via HTTP; Wed, 26
Mar 2003 20:42:02 GMT
Date: Wed, 26 Mar 2003 20:42:02 + (GMT)
From: =?iso-8859-1?q?Phil=20Barker?= 
Subject: List Problems
To: [EMAIL PROTECTED]
MIME-Version: 1.0
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: 8bit

Paul,
I appear to be having a problem receiving regular
messages from the group. I seem to recall this
happening once before and you managed to tweak
something on the Server side. I believe it had
something to do with my account being yahoo based.

Could you take a look when you get the chance.

Kind Regards,

Phil.

__
Do You Yahoo!?
Everything you'll ever need on one web page
from News and Sport to Email and Music Charts




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66280&t=66280
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Message for Paul Borghese [7:66279]

2003-03-26 Thread Phil Barker
Paul,
Please see attached message.

Sorry, I don't have your personal email.

Regards,

Phil.

__
Do You Yahoo!?
Everything you'll ever need on one web page
from News and Sport to Email and Music Charts
http://uk.my.yahoo.com
X-Apparently-To: [EMAIL PROTECTED] via 216.136.175.14; 26 Mar
  2003 12:42:03 -0800 (PST)
Return-Path: <>
Received: from 216.136.175.16  (HELO web13806.mail.yahoo.com)
  (216.136.175.16) by mta153.mail.scd.yahoo.com with SMTP; 26 Mar 2003
  12:42:02 -0800 (PST)
Date: 26 Mar 2003 20:42:02 -
From: [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Subject: failure delivery
Content-Length: 720

Message from  yahoo.com.
Unable to deliver message to the following address(es).

:
66.220.63.9 does not like recipient.
Remote host said: 550 5.1.1 ... User unknown
Giving up on 66.220.63.9.

--- Original message follows.

Return-Path: 
Message-ID: 
Received: from [62.31.224.1] by web13806.mail.yahoo.com via HTTP; Wed, 26
Mar 2003 20:42:02 GMT
Date: Wed, 26 Mar 2003 20:42:02 + (GMT)
From: =?iso-8859-1?q?Phil=20Barker?= 
Subject: List Problems
To: [EMAIL PROTECTED]
MIME-Version: 1.0
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: 8bit

Paul,
I appear to be having a problem receiving regular
messages from the group. I seem to recall this
happening once before and you managed to tweak
something on the Server side. I believe it had
something to do with my account being yahoo based.

Could you take a look when you get the chance.

Kind Regards,

Phil.

__
Do You Yahoo!?
Everything you'll ever need on one web page
from News and Sport to Email and Music Charts




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66279&t=66279
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


BCRAN: 700 or 800 Series Router Commands? [7:66290]

2003-03-26 Thread Colin Weaver
Does anyone know if the Remote Access exam is still using the 700 series
router command set as the basis for potential questions?  The Cisco Press
books still have a chapter on the 700 series and the Cisco website still
shows the 700 series as part of the official Cisco curriculum but I want to
make sure before I buy equipment.

Thanks.

-Colin




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66290&t=66290
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


SOHO VPN Routers [7:66289]

2003-03-26 Thread Kai Bonrain
Hello,

The product overview for the Cisco SOHO 90 Series Secure Routers states it
will "provide secure connectivity to small remote offices with up to five
users".  What does this mean? Does it mean that if the 6th/7th/8th/etc. user
uses this SOHO router to a browse the Internet or use the VPN to communicate
to a host network via a peer SOHO VPNrouter, he/she will not be able to
(only 5 users allowed) OR does it mean the performance of the SOHO will
deteriorate.  If performance will deteriorate, what sort of performance
issues should I expect (disconnects, slowness, etc.)?  I am trying to
justify to use a higher VPN/Internet router, like the 1700 series.

TIA

KB  


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66289&t=66289
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: regulations [7:66267]

2003-03-26 Thread J B
Banks in the US are regulated by the FDIC and audits can extend to Internet
Banking.
JB


Robert Edmonds wrote:
> 
> I can't help too much with the banks, but I used to run the
> network for
> hospital and supported several doctor's offices that used our
> network.  The
> main thing you need to worry about there is that you meet the
> requirements
> outlined in the HIPAA (Health Insurance Portability and
> Accountability Act
> of 1996) regulations.  I hope you're up for some dry reading. 
> However, this
> has been going on for quite a while, so they will be well aware
> of at least
> the general ramifications.
> 
> www.wedi.org/snip
> 
> That should get you started.  It has plenty of information and
> links to
> other sites.
> 
> 
> ""Stull, Cory""  wrote in message
> news:[EMAIL PROTECTED]
> > Where could I go to find information on network security
> regulations for
> > banks and medical offices?.  Information on firewalls and
> rules they have
> to
> > abide by and that sort of thing?
> >
> > Thanks
> >
> > God Bless our troops.
> >
> > Cory Stull
> > CCNP,CCDP,MCSE4/2k
> > Communications Concepts Unlimited
> > 262-814-7214
> 
> 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66287&t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: regulations [7:66267]

2003-03-26 Thread Scott M. Trieste
Cory,

Look up the Graham-Leach-Bliley Act.

It's a governance that states certain security measures that financial
instutions should abide by.

Good Luck.

-Scott

""Stull, Cory""  wrote in message
news:[EMAIL PROTECTED]
> Where could I go to find information on network security regulations for
> banks and medical offices?.  Information on firewalls and rules they have
to
> abide by and that sort of thing?
>
> Thanks
>
> God Bless our troops.
>
> Cory Stull
> CCNP,CCDP,MCSE4/2k
> Communications Concepts Unlimited
> 262-814-7214




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66284&t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Wireless AP Chaining [7:66270]

2003-03-26 Thread Andrew Dorsett
On Wed, 26 Mar 2003, Dave wrote:

> You are not supposed to use more than 3 repeaters...

Now here is a question.  Why couldn't you use actual wireless bridge
units?  As long as you have addressing schemes and the TTL on the packets
is high enough, you should be able to bounce it down the line without
worrying about it.  Repeaters are usually just dumb relays.  But if you
use the smarts of the box and use its routing capabilities couldn't you
build line-of-sight pathways that are infinitely long?  Just remember you
have to have units with two cards and two antennas pointing in
opposite directions to accomplish this.  It's just like building a
Microwave relay network

Andrew
---

http://www.andrewsworld.net/
ICQ: 2895251
Cisco Certified Network Associate

"Learn from the mistakes of others. You won't live long enough to make all
of them yourself."




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66282&t=66270
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: regulations [7:66267]

2003-03-26 Thread J B
Banks in the US are regulated by the FDIC and audits can extend to Internet
Banking.
JB


Robert Edmonds wrote:
> 
> I can't help too much with the banks, but I used to run the
> network for
> hospital and supported several doctor's offices that used our
> network.  The
> main thing you need to worry about there is that you meet the
> requirements
> outlined in the HIPAA (Health Insurance Portability and
> Accountability Act
> of 1996) regulations.  I hope you're up for some dry reading. 
> However, this
> has been going on for quite a while, so they will be well aware
> of at least
> the general ramifications.
> 
> www.wedi.org/snip
> 
> That should get you started.  It has plenty of information and
> links to
> other sites.
> 
> 
> ""Stull, Cory""  wrote in message
> news:[EMAIL PROTECTED]
> > Where could I go to find information on network security
> regulations for
> > banks and medical offices?.  Information on firewalls and
> rules they have
> to
> > abide by and that sort of thing?
> >
> > Thanks
> >
> > God Bless our troops.
> >
> > Cory Stull
> > CCNP,CCDP,MCSE4/2k
> > Communications Concepts Unlimited
> > 262-814-7214
> 
> 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66288&t=66267
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Message for Paul Borghese [7:66279]

2003-03-26 Thread Paul Jin
I have had similar problems with yahoo before too.

On my CCIE list, I originally had it coming into my yahoo
account and it would be fine for a while, then for a long 
period, I would only get about 3-5 emails a day for a few weeks,
then back to normal.

After normal, then I would have problems where I am only getting a few
groupstudy emails again..




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66283&t=66279
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


3550s and L3 rate-limit (second attempt) [7:66291]

2003-03-26 Thread [EMAIL PROTECTED]
Hi.  I have a few questions that I need clarification on:


1) Is this the correct method to do L3 rate-limiting on a 3550?

access-list 101 permit ip any xxx.xxx.xxx.0 0.0.0.255
!
class-map match-any 768k_traffic
match access-group 101
!
policy-map 768k-DSL
class 768k_traffic
police 768000 768000 exceed-action drop
!
interface FastEthernet0/3
no switchport
ip address xxx.xxx.xxx.1 255.255.255.252
service-policy output 768k-DSL



2) After playing with the ingress/egress filtering statements, f0/3 accepts 
the service-policy command but it does not show up in the config (the 
original tests did show up)

interface FastEthernet0/3
no switchport
ip address xxx.xxx.xxx.1 255.255.255.252
no cdp enable




3) Can I not do L3 rate-limiting on the 3550 for both ingress and egress 
rate-limiting (if "input" is specified and an "output" command is entered, 
it wipes the "input" statement).

On the 2948G-L3s, I would use the rate-limit command and specify both input 
and output per interface.


Thanks, 
Mario Puras 
SoluNet Technical Support




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66291&t=66291
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: TCP SYNSENT Timeout [7:66178]

2003-03-26 Thread Marc Thach Xuan Ky
I don't know any Java but standard UNIX sockets allow a non-blocking
connect.  Thus you don't care what the underlying stack is doing, you
just time-out at the application layer.
rgds
Marc

John Neiberger wrote:
> 
> One of our programmers is asking me about this and I really don't have an
> answer.  I've checked RFC 793 and haven't spotted the answer yet.
> 
> Is there a default time specified in TCP to remain in the SYN SENT state?
> If a device sends a SYN and doesn't receive a response, is the timeout a
> built-in TCP parameter or is that a function of the application or
operating
> system?
> 
> I'm starting to think that this is specific to the operating system, but we
> have a need to make it specific to a certain connection without affecting
> all TCP connections.  To be specific, they're writing something in Java
> 1.3.1 (I think) and it doesn't have the capability to tweak TCP parameters.
> For a particular set of connections they'd like the timeout to be 10
> seconds, but it seems to be defaulting to 45.
> 
> They tell me that if we were using Java 1.4 they'd be able to adjust these
> parameters, which makes me think this is an application or OS-specific
> parameter and is only relevant to a particular TCP implementation and could
> vary from platform to platform.
> 
> Any thoughts on this?
> 
> Many thanks,
> John




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66286&t=66178
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Message for Paul Borghese [7:66279]

2003-03-26 Thread Paul Borghese
This is a problem with Yahoo.com.  I have sent them log files showing
their servers rejecting GroupStudy e-mails.  Last week they told me it
would be corrected in 24 hours, and it is not.

If you are using yahoo.com as your e-mail address, please complain to
them.

Thanks!

Paul Borghese

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
Phil Barker
Sent: Wednesday, March 26, 2003 3:44 PM
To: [EMAIL PROTECTED]
Subject: Message for Paul Borghese [7:66279]

Paul,
Please see attached message.

Sorry, I don't have your personal email.

Regards,

Phil.

__
Do You Yahoo!?
Everything you'll ever need on one web page
from News and Sport to Email and Music Charts
http://uk.my.yahoo.com
X-Apparently-To: [EMAIL PROTECTED] via 216.136.175.14; 26 Mar
  2003 12:42:03 -0800 (PST)
Return-Path: <>
Received: from 216.136.175.16  (HELO web13806.mail.yahoo.com)
  (216.136.175.16) by mta153.mail.scd.yahoo.com with SMTP; 26 Mar 2003
  12:42:02 -0800 (PST)
Date: 26 Mar 2003 20:42:02 -
From: [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Subject: failure delivery
Content-Length: 720

Message from  yahoo.com.
Unable to deliver message to the following address(es).

:
66.220.63.9 does not like recipient.
Remote host said: 550 5.1.1 ... User unknown
Giving up on 66.220.63.9.

--- Original message follows.

Return-Path: 
Message-ID: 
Received: from [62.31.224.1] by web13806.mail.yahoo.com via HTTP; Wed,
26
Mar 2003 20:42:02 GMT
Date: Wed, 26 Mar 2003 20:42:02 + (GMT)
From: =?iso-8859-1?q?Phil=20Barker?= 
Subject: List Problems
To: [EMAIL PROTECTED]
MIME-Version: 1.0
Content-Type: text/plain; charset=iso-8859-1
Content-Transfer-Encoding: 8bit

Paul,
I appear to be having a problem receiving regular
messages from the group. I seem to recall this
happening once before and you managed to tweak
something on the Server side. I believe it had
something to do with my account being yahoo based.

Could you take a look when you get the chance.

Kind Regards,

Phil.

__
Do You Yahoo!?
Everything you'll ever need on one web page
from News and Sport to Email and Music Charts




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66281&t=66279
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: PING THINGS - THE SEQUEL [7:66242]

2003-03-26 Thread Priscilla Oppenheimer
Peter P wrote:
> 
> When I traceroute or ping to a remote node from Router A - no
> reply. If so an extended traceroute or ping using the source's
> loopback address - hey presto- all works fine. So how do I get
> the route to use its loopback address as the source - rather
> than the serial interface. 

With extended ping, which you must have already figured out since you know
pinging with the loopback works. When you just do a normal ping the router
uses the closest interface to the one you're pinging. You can't change that.

> Or cant I change this? IF I cant
> change this then I seem to have to look at the routing in the
> intervening hops and ensure all hops refer to this loopback
> address - rather than the serial address on Router A. Yes?

Routing back to the loopback seems to already be working. What you need to
fix is the fact that the other routers don't seem to have a route to your
serial interface. That should relatively easy to fix.

Priscilla



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66292&t=66242
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: PING PROBLEM [7:66132]

2003-03-26 Thread Priscilla Oppenheimer
Peter van Oene wrote:
> 
> At 09:58 AM 3/26/2003 +, Larry Letterman wrote:
> >The serial interface cant ping itself like the ethernet
> can..It will send the
> >packet to the remote end and then back..if the path between
> both serial
> >interfaces is not correct the local ping will
> >fail..turn off keepalives and see if the ping will work on the
> local end..
> 
> With HDLC encap, the router should be able to ping itself IIRC.

It should be able to ping itself if the link is OK. The ping really does go
out and come back though, so the link does have to be OK or looped.

Priscilla

> 
> Pete
> 
> 
> 
> >Larry Letterman
> >Network Engineer
> >Cisco Systems
> >
> >
> >   - Original Message -
> >   From: srinivas kunthuri
> >   To: [EMAIL PROTECTED]
> >   Sent: Tuesday, March 25, 2003 8:43 PM
> >   Subject: Re: PING PROBLEM [7:66132]
> >
> >
> >   Hi Larry,
> >
> >   I did not understand what you are saying. I had pinged my
> local serial
> >   interface. it is giving request timed out. i had pinged the
> remote end
> >serial
> >   ip. it is giving reply. Can you tell me why it happend.
> >
> >
> >   Thanks,
> >   K.Srinivas
> > - Original Message -
> > From: Larry Letterman
> > To: srinivas kunthuri ; [EMAIL PROTECTED]
> > Sent: Wednesday, March 26, 2003 1:09 AM
> > Subject: Re: PING PROBLEM [7:66132]
> >
> >
> > to ping the serial interface usually it has to go to the
> remote end and
> >   then
> >   back...make sure the path from end to end is working...
> >
> > Larry Letterman
> > Network Engineer
> > Cisco Systems
> >
> >
> >   - Original Message -
> >   From: srinivas kunthuri
> >   To: [EMAIL PROTECTED]
> >   Sent: Tuesday, March 25, 2003 2:11 AM
> >   Subject: PING PROBLEM [7:66132]
> >
> >
> >   Hi all
> >
> >   I am having one doubt regarding ping. I had configured
> two routers at
> >two
> >   locations connected through SCPC PAMA VSATs.
> >   I had pinged to serial interface. It has given request
> timed out. but,
> >   the
> >   serial interface is up and line protocol is also up.
> >   I had pinged the other end serial ip. it is giving
> reply. what will be
> >   the
> >   reason. can any one explain me .
> >
> >   Regards,
> >   K.Srinivas
> 
> 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66297&t=66132
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: PING PROBLEM [7:66132]

2003-03-26 Thread Priscilla Oppenheimer
I don't know what an SCPC PAMA VSAT is :-), but on many types of WANs you
need a map statement to your own interface to be able to ping it.

It's true what other people said about the router sending a ping out the
serial interface and letting it bounce back from the other end when you ping
your own serial interface. Unbelievalbe but true. But also probably not
relevant. The fact that you can ping the other end means that the link is OK.

I bet it's the missing map statement.

Sending a config is always a good idea.

Priscilla

srinivas kunthuri wrote:
> 
> Hi all
> 
> I am having one doubt regarding ping. I had configured two
> routers at two
> locations connected through SCPC PAMA VSATs.
> I had pinged to serial interface. It has given request timed
> out. but, the
> serial interface is up and line protocol is also up.
> I had pinged the other end serial ip. it is giving reply. what
> will be the
> reason. can any one explain me .
> 
> Regards,
> K.Srinivas
> 
> 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66296&t=66132
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Wireless AP Chaining [7:66270]

2003-03-26 Thread Priscilla Oppenheimer
Andrew Dorsett wrote:
> 
> On Wed, 26 Mar 2003, Dave wrote:
> 
> > You are not supposed to use more than 3 repeaters...
> 
> Now here is a question.  Why couldn't you use actual wireless
> bridge
> units?  

Then you would be limited by the rule that you shouldn't have more than 7
bridges.

> As long as you have addressing schemes and the TTL on
> the packets
> is high enough, 

TTL is a routing (Layer 3) issue.

> you should be able to bounce it down the line
> without
> worrying about it.  Repeaters are usually just dumb relays. 
> But if you
> use the smarts of the box and use its routing capabilities

Does it really do routing??

> couldn't you
> build line-of-sight pathways that are infinitely long?  Just
> remember you
> have to have units with two cards and two antennas pointing in
> opposite directions to accomplish this.  It's just like
> building a
> Microwave relay network

Hmm. I don't know much about the PHY layer here. But that may be where the
issues are Good question.

Priscilla

> 
> Andrew
> ---
> 
> http://www.andrewsworld.net/
> ICQ: 2895251
> Cisco Certified Network Associate
> 
> "Learn from the mistakes of others. You won't live long enough
> to make all of them yourself."
> 
> 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66295&t=66270
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


VoIP: PBX - Router connection help [7:66299]

2003-03-26 Thread Angel Leiva
Hi everyone,

I am working on a Toll-Bypass project that involves two Cisco MC3810 routers
connected each with an Avaya Definity PBX G3Si via a channelized T1
interface. Both Cisco routers are VoIP dial-peers across the Internet cloud.

I am able to make VoIP calls between analog phone1 and phone2 connected to
the routers (see ASCII layout below). 

So far I haven't had much success making VoIP calls between a digital phone
connected to the PBX and an analog phone connected to routerB (nor routerA).

If anyone has implemented this type of configuration and can offer some
assistance, I'd be happy to forward further information, such as captured
debug and show command outputs, configuration files and diagrams for further
analysis.

Here is a simple layout of what I'm trying to implement:
--
 analog  analog   
 phone1  phone2 
   |   |
Digital-[PBX]~[RouterA][RouterB]--analog
phone^ ^  ^   ^   phone3
 | |  |   |  
   cat3   CT1 Internet FXS-port  

--

Below, there are relevant VoIP configuration lines on both routers:

routerA:

controller T1 0
 mode cas
 framing esf
 linecode b8zs
 no yellow generation
 no yellow detection
 ds0-group 1 timeslots 1 type fxo-loop-start
!
voice-port 0:1
 timeouts call-disconnect 3
 connection trunk YYY3302997
 description PBX Analog Line Site1 XXX-550-4482
 codec g711ulaw
!
voice-port 1/1
 connection plar YYY3302998
 description DTC analog phone1 XXX-550-4498
!
dial-peer voice 4498 pots
 description :Analog line in Site1- port FXS 1/1
 destination-pattern XXX5504498
 port 1/1
!
dial-peer voice 4482 pots
 description :PBX Digital line in Site1 across CT1 line
 destination-pattern XXX5504482
 port 0:1
!
dial-peer voice 2997 voip
 description :Peer connection to Site2 Analog line YYY3302997 (FXS port 1/2)
 destination-pattern YYY3302997
 session target ipv4:172.21.1.5
 codec g711ulaw
 ip qos dscp 5 media
!
dial-peer voice 2998 voip
 description :Peer connection to Site2 Analog line YYY3302998 (FXS port 1/1)
 destination-pattern YYY3302998
 session target ipv4:172.21.1.5
 ip qos dscp 5 media
!

routerB:


voice-port 1/1
 connection plar XXX5504498
 description Site2 local Phone YYY-330-2998
!
voice-port 1/2
 timeouts call-disconnect 3
 connection trunk XXX5504482 answer-mode
 description Site2 local Phone YYY-330-2997
 codec g711ulaw
 disconnect-ack
!
dial-peer voice 2998 pots
 description :Analog line in Site2 - port FXS 1/1
 destination-pattern YYY3302998
 port 1/1
!
dial-peer voice 2997 pots
 description :Analog line in Site2 - port FXS 1/2
 destination-pattern YYY3302997
 port 1/2
!
dial-peer voice 4482 voip
 description :Peer connection to Site1, PBX digital line XXX5504482
 destination-pattern XXX5504482
 session target ipv4:192.168.72.5
 codec g711ulaw
 ip qos dscp 5 media
!
dial-peer voice 4498 voip
 description :Peer connection to Site1 Analog line XXX5504498 (FXS port 1/1)
 destination-pattern XXX5504498
 session target ipv4:192.168.72.5
 ip qos dscp 5 media
!

Thanks,

Angel




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66299&t=66299
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: CID 640-025 [7:66103]

2003-03-26 Thread HulaJoe
Once more just in case - Has anyone taken the CID 3.0 exam in the last
couplf of months. Trying to find out if ATalk and IPX are still on it.

Thx!

Joe

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of
Alan Joseph
Sent: Monday, March 24, 2003 3:56 PM
To: [EMAIL PROTECTED]
Subject: RE: CID 640-025 [7:66103]


Reposting...

Does anyone out there in the wild vast yonder of Cisco Cert Land know if
Atalk and IPX are still on the CID 3.0 (640-025) test ?

It doesn't show up on the exam desciription...

http://www.cisco.com/warp/public/10/wwtraining/certprog/testing/current_exam
s/640-025.html

Mahalo!

Joe

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
Sent: Wednesday, March 12, 2003 1:10 PM
To: [EMAIL PROTECTED]
Subject: RE: What is a distributed/collapsed backbone? [7:65225]


According to CID "lingo" a collapsed backbone is a single router or switch
acting as a backbone in a campus design model. It contrasts with a
distributed backbone where routers or switches are spread out among floors
or buildings, all connected together via something like FDDI. (Yes, CID
still has FDDI in it!)

Maybe that picture you are looking at is an error.

Good luck with CID. It's a fun one! :-)

Priscilla

Marc Thach Xuan Ky wrote:
>
> Hi all,
> I thought I'd do 640-025 CID before it disappears, so I started
> reading
> the Ciscopress book, CID exam certification guide.  Now in
> chapter 2,
> section "Issues facing campus LAN designers" (I'm using Safari
> books
> online so I don't know the page number) it shows figs 2.4 and
> 2.5
> distributed and collapsed backbones respectively.  The
> distributed
> backbone shows per floor, one router and one switch, the
> collapsed
> backbone shows a single router for the building fanning out to
> one
> switch per floor.  Fair enough I guess, but the scenario 1, Q2
> in the
> same chapter asks what backbone to use in a particular case and
> then
> answers it with "distributed backbone" and a picture fig 2.8
> that looks
> rather like the collapsed backbone shown earlier.  I obviously
> have to
> learn Ciscospeak for the exam so can anybody tell me, which is
> it?
> rgds
> Marc




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66302&t=66103
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


CCIE R/S lab partner in Boston Area [7:66301]

2003-03-26 Thread Firesox
I am preparing for R/S lab I am taking this summer.
Anyone in Boston, MA area?

Thanks




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66301&t=66301
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Info about cisco IDS [7:66238]

2003-03-26 Thread Sales
The Cisco IDS uses Solaris Unix and has an interface that listens to
traffic (promiscuous mode) but does not have an IP address assigned to
it.  The traffic is then compared to signatures for pattern matching.


www.ccie4u.com
Rack Rentals and Lab Scenarios


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
ritul
Sent: Wednesday, March 26, 2003 7:12 AM
To: [EMAIL PROTECTED]
Subject: Info about cisco IDS [7:66238]

Hi !

I want to know is Snort used with CISCO IDS ?

Ritul




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66303&t=66238
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


CCIE Lab IOS Feature Set? [7:66304]

2003-03-26 Thread Mike Mihalas
I am in the process of putting together a CCIE practice lab. I have a bunch
of 2500 routers with varying memory. I know the lab uses 12.1 but my
question is what feature set do I need? Will IP do what I need or do I need
IP Plus, or even Enterprise. Since IPX is gone will just the basic IP image
do all I need?

Thanks,

Mike


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66304&t=66304
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


OSPF Tricks of the Trade [7:66308]

2003-03-26 Thread The Long and Winding Road
After wrestling with Solie this afternoon, it suddenly occurred to me that
there is a typical instruction in the various practice labs that can end up
driving you nuts if you look at it from one direction, but which is really
simple if looked at from another.

The topology: several routers over frame relay. Usually four routers. One
acts as hub, The others as spokes.

the instruction: you must use subinterfaces only on the hub. On the spokes
you MUST use the physical interfaces. two of the spoke routes connect to the
hub via one subinterface. The other router connects to the hub on the other
subinterface.

the catch: some bizarre restriction or other about network types, commands
that can or cannot be used, the usual BS.

It occurs to me that working backwards, you can solve most problems,
whatever the restrictions and twists.

Frame relay: OSPF default
- 

physical interface non broadcast

subinterface - p2ppoint-to-point

subinterface - multipoint  non broadcast

I think the knee jerk reaction is to create a multipoint subinterface for
the link to the two spoke routers, and a p2p subinterface for the link to
the single spoke router. Then moan in despair as you realize that the
instructions forbid the use of any ip ospf network commands anywhere.

But if you look from the higher level viewpoint, you see that the physical
and the multipoint subinterface default to the same type of OSPF network.
Life is easier after that.

Is this making sense? I'm at the end of a very long day, with too many
subtleties floating around in what's left of my brain.

Good night, everyone.







--
TANSTAAFL
"there ain't no such thing as a free lunch"




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66308&t=66308
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: CCIE Lab IOS Feature Set? [7:66304]

2003-03-26 Thread The Long and Winding Road
""Mike Mihalas""  wrote in message
news:[EMAIL PROTECTED]
> I am in the process of putting together a CCIE practice lab. I have a
bunch
> of 2500 routers with varying memory. I know the lab uses 12.1 but my
> question is what feature set do I need? Will IP do what I need or do I
need
> IP Plus, or even Enterprise. Since IPX is gone will just the basic IP
image
> do all I need?

you want to be able to practice with all of the various routing protocols,
as you accountable for them.

that usually means Enterprise Plus.


>
> Thanks,
>
> Mike




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66307&t=66304
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


CCIE Practice Labs - Redustribution Strategies [7:66306]

2003-03-26 Thread The Long and Winding Road
For the past couple of weeks I've been whacking out various CCIE practice
labs. I've also been suffering various degrees of euphoria and depression,
depending upon how badly I was suckered by the redistribution problems.

After a particularly long and frustrating day with the Cisco ASET Lab #1, it
suddenly occurred to me that there are many ways to do things, and for some
reason, I've been overlooking what may be the best way to deal with
redistribution.

Those of you who have worked these practice labs know how it goes. You read
through the lab, then you start configuring.

Step 1 - set up OSPF
Step 2 - set up RIP
Step 3 - redistribute between OSPF and RIP
Step 4 - set up EIGRP
Step 5 - redistribute between EIGRP and RIP
Step 6 - set up IS-IS
Step 7 - redistribute between IS-IS and OSPF
Step 8 - scream in anguish as you discover that your routing tables have
turned to trash and half your network becomes unreachable.

ASET #1 was particularly nasty in how it accomplished Step 8

Which brings me to the topic of this post. CCIE's and folks who've been
through the Lab without success - what do you think of this approach:

1) do NOT do any redistribution anyplace until all routing protocols have
been configured everywhere. Yes, I know that typically you have a section
with several steps, one of which is redistribution. But mark your place and
return after the IGPs are up and running and all routes for a particular IGP
are where they should be.

2) return to the first redistribution task. Before configuring anything,
refer to your diagram ( you DO write out a nice diagram, don't you? ) and
ask yourself: "after I do one way redistribution, what routes will appear
where?"

2a) Consider how administrative distance might change things

2b) Follow the redistribution to it's extreme. For example, if you
redistribute EIGRP into OSPF, what routers will these routes end up on? Will
there be any implications to the routing tables?

3) repeat step 2 for every redistribution point, each time considering the
totality of the contents of the redistributed routes. So if you have
redistributed IS-IS into OSPF, how do those redistributed routes flow
through the OSPF domain?

4) Keep an eye out for things like split horizon

5) every step along the way, consider what routers need to see what routes.
Watch for situations where necessary routes do not appear. ( you have
probably trashed it because of overzealous filtering. )

5) If problems occur, such as a routing loop, trace back where the problem
route came from, and see what can be done to evade the problem. Summary
routes work wonders sometimes. So do route-maps and distribute lists.

Re-reading this, I see that this topic does not lend itself well to text. I
can say with certainty that I now have a very clear vision of redistribution
methodology. I've tested it three times now with different labs, and I
believe I am solving the redistribution problems more quickly than ever. I
hope that I have painted enough of a picture that some of you can fill in
the rest.

Chuck


--
TANSTAAFL
"there ain't no such thing as a free lunch"




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66306&t=66306
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


SIP mystery [7:66309]

2003-03-26 Thread supernet
What's SIP registrar used for? Is it like DNS server that keep track of
individual client? But two SIP clients can call each other without
registrar, right? I'm lost, anyone can help me understand it? Thanks.
Yoshi




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=66309&t=66309
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]