Catalyst 5500 Sup IIIF [7:73948]

2003-08-14 Thread Stevo
Hey Peeps,

Does anyone know the part number for a Sup IIIF card for a Cat5500??  I've
searched around and can't find it!

Thanks

Stevo




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73948&t=73948
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: CCIE Lab Setup [7:73612]

2003-08-14 Thread David Power
It is for R&S (ccie)
Thanks


>From: "Nakul Malik" 
>Reply-To: "Nakul Malik" 
>To: [EMAIL PROTECTED]
>Subject: Re: CCIE Lab Setup [7:73612]
>Date: Wed, 6 Aug 2003 16:00:46 GMT
>
>Which track are you studying for?
>
>If you need a PIX and like most of us cant afford to buy everything you 
>need
>for your lab, i would suggest building your own. I dont know how this 
>stands
>legally, but from a technical aspect it is possible to build your own PIX
>clone. You can find detailed documentation on the net on how to do this.
>
>-Nakul
>
>
>""David Power""  wrote in message
>news:[EMAIL PROTECTED]
> > Hello,
> > I have three 2500 routers (2x2503 and 1x2514) with the budget of 1000$ I
>am
> > planning to buy some more routers for my CCIE home lab. Which routers or
> > switches I must have ( with in my $ limits or couple hundred more).
> > Every suggestion will be appreciated
> > David
> >
> > _
> > Protect your PC - get McAfee.com VirusScan Online
> > http://clinic.mcafee.com/clinic/ibuy/campaign.asp?cid=3963
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
>http://www.groupstudy.com/list/cisco.html
>**Please support GroupStudy by purchasing from the GroupStudy Store:
>http://shop.groupstudy.com
>FAQ, list archives, and subscription info: 
>http://www.groupstudy.com/list/cisco.html

_
Add photos to your messages with MSN 8. Get 2 months FREE*.  
http://join.msn.com/?page=features/featuredemail




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73620&t=73612
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: hsrp and icmp redirects [7:73972]

2003-08-14 Thread YASSER ALY
Can u provide a simple ascii diagram for your topology including the WAN
connection to reach the remote branches.

>From: "Robert Kimble" > >Ok. > >I'll try to explain what happened as
best as I can. > >We have two 6509's each with an msfc and until last
night we were only using >the msfc on one of them. > >Last night I
brought up the second msfc and set up hsrp between the two. > >everything
worked great here in the office last night. However, this morning >our
branch offices had no connectivity to us. > >My boss went in and turned
off icmp redirects on the vlan interfaces on the >second msfc and
everything was fine. > >1. I thought icmp redirects were disabled
automatically when you configure >hsrp on an interface. > >2. How did
turning off the redirects fix the problem? (I would ask my boss >but I
probably look bad enough). > >Any way. > >Please let me know if you need
GroupStudy by purchasing from the GroupStudy Store:
>http://shop.groupstudy.com >FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html



Add photos to your messages with MSN 8. Get 2 months FREE*.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73978&t=73972
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Safe Security Exam -->9E0-131 CSI or [7:73971]

2003-08-14 Thread chan Lu
What is the passing score for the SAFE test?


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73976&t=73971
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


2501 VPN [7:73977]

2003-08-14 Thread Henry Volentine
I need assistance configuring VPN between a Cisco 2501 and a Cisco 827H. 
Both routers have IOS that supports VPN.  The 2501 is connected to the ISP
via a 768kb fractional T1 and the 827H has an ADSL connection to the same
ISP.  If anyone could please send sample configurations for either router, I
would appreciate it.  [EMAIL PROTECTED]


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73977&t=73977
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: PIM Mode question [7:73108]

2003-08-14 Thread steve telford
Thanks for the info Doan

Is this info from experience of large multicast deployment?

What also I was trying to get at is the question of whether with the
enhancement of auto-rp listener is the need for sparse-dense totally negated?

This would be regardless of the overhead issues of using auto-rp in the
first place, for instance in a LAN environment where the overhead is bearable.

Steve


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73973&t=73108
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: New Remote Access exam 642-821 vs the old current [7:73592]

2003-08-14 Thread Don S
I'm currently going through the new BCRAN course for this exam on
Knowledgenet.com.  There is NO X.25 in the entire course.  You are correct,
Cable and DSL are covered as is VPN.  TACACS+ and AAA is definetly part of
the course, also.

Don


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73975&t=73592
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


hsrp icmp redirects NEVERMIND [7:73974]

2003-08-14 Thread Robert Kimble
Wow.

It must've been a late night last night.

I figured out the problem.

It had nothing to do with icmp.

Thank you!


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73974&t=73974
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: multiple ospf processes & route insertion [7:73727]

2003-08-14 Thread Jason J
Dear Fred
"Wow, um, err, no offense, but you're a CCNP? And confused about the concept
of a route table? "
everyone could get confused about anything :). especially in some
2 or 3 am morning. first sorry about that.

"There can't be the same route for BGP and a static in the 
active routing table concurrently. That is unless you do something weird
like set the administrative distance of the static route equal to that of
the BGP route, but I'm not even sure about that. "
yes, i do saw two same routes ,one from EBGP ,one from static.
both them are 192.168.0.0/17. one AD is 20 another is 110.

best regards.

Jason J. CCNP P.R.C
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73843&t=73727
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: traffic flow [7:73495]

2003-08-14 Thread [EMAIL PROTECTED]
That's what i said, use a ws with SNIFFER in between, INSTANT graphs.

Martijn 


-Oorspronkelijk bericht-
Van: Doan Nguyen [mailto:[EMAIL PROTECTED]
Verzonden: donderdag 7 augustus 2003 22:11
Aan: [EMAIL PROTECTED]
Onderwerp: RE: traffic flow [7:73495]


Netlfow would be your best way of doing this but you will need a netflow
server and I think that costs additional money.  AFter that you would need
to write scripts to parse out the netflow data, because it's not pretty to
look at.

ip accounting is a quick and intrusive way to do accounting of ip traffic
but it is stresful to your router and would only give you the biggest IP
pair talker.
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73863&t=73495
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco inspection fee for used gear?? [7:73788]

2003-08-14 Thread Gary Crouch
This is out right theft by the hardware venders 
You pad for the software when you bought you should be able to transfer it.
We sould demand right to transfer or buycot these companies

-Original Message-
From: Colin Weiner [mailto:[EMAIL PROTECTED]
Sent: Sunday, August 10, 2003 6:40 PM
To: [EMAIL PROTECTED]
Subject: Cisco inspection fee for used gear?? [7:73788]


Interesting article about buying used network equipment (I buy all my lab
stuff of ebay or other vendors)

http://www.infoworld.com/article/03/08/08/31FEfair_1.html


"I made the mistake of showing a visiting Cisco rep the 2611 router I'd
purchased on eBay for $1,200," says Mark Payton, director of IT at the
Vermont Academy, a school in Saxtons River, Vt. "Not only are they asking me
to pay to relicense the software, but they are expecting me to get a
one-year SmartNet maintenance agreement and to pay an inspection fee."


Colin
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73885&t=73788
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: multiple ospf processes & route insertion [7:73727]

2003-08-14 Thread Jason J
er.Sorry about that!
I Think i make a mistake, I did no see two same routes from  two different
routing protocols. in fact, one is "61.168.0.0",another
is" 161.168.0.0" .
really sorry for put so much trouble on you.
everything comes from my experiments's wrong result. 
the wrong result comes to the wrong conclusion.

so ,really thanks a lot , Zomber and Fred. 
for pointing out my mistake, so i can get a chance to learn more.

Jason.J CCNP P.R.C
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73818&t=73727
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: New CCNP 642-8x1 exams [7:73598]

2003-08-14 Thread Kaminski, Shawn G
After looking over the blueprints, there aren't a lot of differences between
the old exams and the new exams that I can see. There are some newer topics,
but I really don't see enough change between the old exams and the new exams
to get nervous about. I noticed that Cisco likes to take a topic from an old
blueprint and re-word it so that it looks different in a new blueprint, even
though it's the same topic. 

Here's what I've noticed "most of the time" in the past when Cisco releases
a new version of a particular exam: The core topics are always covered,
regardless of whether you're taking an old exam or a new exam. Cisco likes
to re-word questions taken from old exams and put them on new exams.
However, they still cover the same topics. Know these core topics and you
have 90% of the exam covered. The other 10% may be new questions covering
new technologies, etc.

Just my opinion.

Shawn K.  

-Original Message-
From: Alan Ho [mailto:[EMAIL PROTECTED] 
Sent: Wednesday, August 06, 2003 8:12 AM
To: [EMAIL PROTECTED]
Subject: New CCNP 642-8x1 exams [7:73598]

We all know that the existing CCNP (640-xxx) will no longer be available
after Sept and will be replaced by the new 642-8x1 series. However there is
no preparation materials (e.g. Cisco Press books) available as of today.

Can someone let us know the differences between the current exams and the
642- series so that we can prepare to sit the new exams in Oct/Nov?

I tried the Cisco Certification sites and print out the exam syllabus of
both but cannot make out the difference as they are presented in different
formats.

Thank you

Alan
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73675&t=73598
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


FW: cisco back to back cable [7:71992]

2003-08-14 Thread [EMAIL PROTECTED]
or maybe try alternating the dce/dte settings on the serial interfaces
-Original Message-
From: LINSEN Jurgen (BMB) [mailto:[EMAIL PROTECTED]
Sent: 08 August 2003 09:37 AM
To: [EMAIL PROTECTED]
Subject: RE: cisco back to back cable [7:71992]


Sure you're using a cross cable?

-Original Message-
From: KW S [mailto:[EMAIL PROTECTED] 
Sent: Monday, July 07, 2003 6:22 PM
To: [EMAIL PROTECTED]
Subject: cisco back to back cable [7:71992]


Dear All

I have a 2501 and 2505 and I am trying to set up a homelab..These 2
routers come with a cable which is a DB60(DTE) and the other end is a
DB60(DCE).This is wat that is label on the cable. Anyway, I try to
connect this cable to the serial interface of the 2 routers...and both
the routers are showing serial is down and line protocol is down.

I guess I have used the wrong cable...or maybe I have missed out
something.

Please comment..

Regards, kws
 DISCLAIMER 

"This e-mail and any attachment thereto may contain information which is
confidential and/or protected by intellectual property rights and are
intended for the sole use of the recipient(s) named above.
Any use of the information contained herein (including, but not limited to,
total or partial reproduction, communication or distribution in any form) by
other persons than the designated recipient(s) is prohibited.
If you have received this e-mail in error, please notify the sender either
by telephone or by e-mail and delete the material from any computer".

Thank you for your cooperation.

For further information about Proximus mobile phone services please see our
website at http://www.proximus.be or refer to any Proximus agent.
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73711&t=71992
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: RE: PIX translation problem [7:72567]

2003-08-14 Thread Greg Owens
changing the timeout value worked, so the problem is fixed

Thanks all
> 
> From: "Reimer, Fred" 
> Date: 2003/08/08 Fri AM 11:26:37 EDT
> To: [EMAIL PROTECTED]
> Subject: RE: PIX translation problem [7:72567]
> 
> 

Greg Owens
202-398-2552

[GroupStudy removed an attachment with a content-type header it could not
parse.]
[Content-Type: null; name="replyAll"]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73744&t=72567
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: CCNP and future CCIE lab setup [7:73696]

2003-08-14 Thread R. Benjamin Kessler
I think they're suggesting that you make a short cross-over male to female
cable (instead of the standard male to male patch cable).

The idea being that you could still use your standard patch cables and where
a cross-over cable was required and simply connect the short cross-over to
one end.

Does this clear it up for you or are you more confused?

~~
R. Benjamin Kessler
Network Engineer
CCIE #8762, CISSP, CCSE
Kessler Consulting
Email:  [EMAIL PROTECTED]
http://www.kesslerconsulting.com
Phone: 260-625-3273
 

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] 
Sent: Friday, August 08, 2003 5:10 PM
To: [EMAIL PROTECTED]
Subject: RE: CCNP and future CCIE lab setup [7:73696]

I honestly do not know what you are referring to.  A plug on one side and a
jack on the other?  I am probably missing something simple but nothing rings
a bell!!!  Of course, I am a girl from Thailand and maybe my "slang" English
is not up to par.  Hee hee

Can you please explain what that is about?
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73762&t=73696
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: 642-801 [7:73509]

2003-08-14 Thread Mwalie W
Hello,

I also did the Beta, but I did not find QoS.

One may also be aware that it is a lot easier to now fail this exam, because
the passing score is 776. With the exam that broad, one has to actually be
well prepared for this one:-)

Plus, there is plenty of BGP, IS-IS and OSPF.

Good Luck!


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73584&t=73509
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


BGP and QOS Beta exams [7:73599]

2003-08-14 Thread Peter Walker
Folks

I have seen a few mentions of the BGP and QOS beta exams recently (also 
mentioning the results).

My question is, am I the only person still waiting for results for these 
exams?  My Vue exam history shows


Tue February 18, 2003 02:30 PM
641-661: BGP
Corefacts, Cambridge, GBR
taken

Thu March 27, 2003 02:00 PM
643-641: Quality of Service
Corefacts, Cambridge, GBR
taken


and certmanager doesnt mention either.  Is it time to start chasing 
vue/cisco?

As an aside, I took the CCNP support beta last year and never actually 
received results at all, although it did show up in certmanager as a pass 
about 3 months after I had given up waiting and passed the non beta version.

Thanks

Peter




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73599&t=73599
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: multiple ospf processes & route insertion [7:73727]

2003-08-14 Thread Jason J
Dear Zsombor:
"You can't put the same interface into multiple OSPF processes but that
doesn't mean that the two processes can't learn about the same network."
 if you can't learn put one interface into multiple OSPF processes,
then except you redistribute the direct donnected and static, how
could they learn the same address ,learn from each other?
 i think the same condition exist on other routes ,how could a network
link's status be share with other ospf process without put
the sme interface into multiple OSPF processes?

best regards

Jason J CCNP P.R.C



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73797&t=73727
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: 2620xm w/WIC-1DSU-T1 [7:73634]

2003-08-14 Thread Greg Hauser
Martijn- thanks for the url.  This hit the topic squarely on point as I too
had the same question.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73669&t=73634
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: multiple ospf processes & route insertion [7:73727]

2003-08-14 Thread Zsombor Papp
The process with the lower administrative distance will install the prefix
into the routing table. If the administrative distances are the same (and
they are by default), then the process that "comes first" will install the
route. In other words, it is not deterministic unless you change the default
admin distance.

What are you trying to achieve with these ~3 OSPF routing processes?

Thanks,

Zsombor

p b wrote:
> 
> 
> I'm considering a routing architecture where devices in the
> network would run ~3 OSPF routing processes.
> 
> I think each routing process will be handling the routing
> of non-overlapping address blocks and thus the routes they
> give to the forwarding table should be disjoint.
> 
> However, I'd like to understand what happens if two processes
> each were to provide the same prefix to the forwarding table.
> Specifically, what are the rules to determine which prefix
> is put into the routing table?
> 
> Also be interested in any learnings folks might have had when
> they've run multiple OSPF processes.
> 
> Thanks
> 


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73741&t=73727
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Multicasting [7:72403]

2003-08-14 Thread Doan Nguyen
If you're using PIM Dense-Sparse mode you will need to designate an RP
router because the DR needs to know where to send the (*,G) to join and the
source DR needs to register the SA messages to the RP.

What you can do for this case is 


R1-SP1---SP2-R2


make either R1 or R2 the RP.
Assign a static RP-to-group mapping to the router that is not the RP to
point to the one that is assigned the RP.  If you're using static RP mapping
then all you need on your tunnel interface is PIM-SM.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73687&t=72403
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Networkers 2002 PDFs [7:73522]

2003-08-14 Thread Reimer, Fred
O.K.

How

About

This

http://www.cisco.com/networkers/nw03/post/presos.html

Is

That

Better???

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: John Neiberger [mailto:[EMAIL PROTECTED] 
Sent: Tuesday, August 05, 2003 2:26 PM
To: [EMAIL PROTECTED]
Subject: RE: Networkers 2002 PDFs [7:73522]

Fred,

You've been bitten by the "URL in the first line" problem. If the first line
in a post is a URL it sometimes gets munged. It's helpful to add some
padding at the beginning to get the URL off of the first line.

John

>>> Reimer, Fred 8/5/03 12:23:39 PM >>>

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: YASSER ALY [mailto:[EMAIL PROTECTED] 
Sent: Tuesday, August 05, 2003 10:54 AM
To: [EMAIL PROTECTED] 
Subject: Networkers 2002 PDFs [7:73522]

Dear All,

  Anybody knows the URL to download Cisco networkers 2002 PDFs

Are PDFs for 2003 available for download ?

Regards,
Yasser

_
Add photos to your messages with MSN 8. Get 2 months FREE*. 
http://join.msn.com/?page=features/featuredemail 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com 
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com 
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73554&t=73522
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-14 Thread Herold Heiko
VPN client won't be possible for this project (no software installation,
need vpn lan to lan). Pix can't be used due to managerial issues, doesn't
like them :(.
So the only remaining possibilities (beside stuff like D-Link I really
wouldn't bet my security on) are routers or possibly a nokia fw-1 box.

400kb/s should probably be ok, otherwise a 831 will be more than enough I
think.
I'll discover soon if my testing budget gets approved, I'd hate to research
and drool and then later hear "we'll outsource this" just when I hope to get
hands-on experience on this stuff :(.

Bye
Heiko


-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 11:30 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> Just let them go on performance, not on command set?
> 
> I remember about 400Kb/s 3des for the 806/820's
> the 830's should do 2Mb/s for 3des.
> 
> 1700's VPN bundle carry a xtra crypto card. At least 2Mbit. 
> Watch for the
> amount of VPN connections, too many access-lists's etc. (cpu power)
> 
> A pix 501 or small vpn client could also do the job?
> 
> Martijn 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: donderdag 7 augustus 2003 11:04
> Aan: Jansen, M; [EMAIL PROTECTED]
> Onderwerp: RE: Cisco 806 ? [7:73613]
> 
> 
> No, it is unrelated - I just remembered the 1000 series being limited
> (regarding at least NTP) and feared the 800 series, being the 
> replacement
> for the 1000 series, could have the same limitations.
> 
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EMAIL PROTECTED]
> -- +39-041-5907073 ph
> -- +39-041-5907472 fax
> 
> > -Original Message-
> > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > Sent: Thursday, August 07, 2003 10:51 AM
> > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > Subject: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > What about NTP? Should it read NAT?
> > 
> > Martijn 
> > 
> > -Oorspronkelijk bericht-
> > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > Verzonden: donderdag 7 augustus 2003 8:10
> > Aan: [EMAIL PROTECTED]
> > Onderwerp: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > Thanks!
> > I just wanted to double check - some hears ago I got burnt in 
> > a similar
> > situation, with a 1003 and (no) NTP if I remember correctly.
> > Heiko
> > 
> > -- 
> > -- PREVINET S.p.A. www.previnet.it
> > -- Heiko Herold [EMAIL PROTECTED]
> > -- +39-041-5907073 ph
> > -- +39-041-5907472 fax
> > 
> > > -Original Message-
> > > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > > Sent: Thursday, August 07, 2003 8:04 AM
> > > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > > Subject: RE: Cisco 806 ? [7:73613]
> > > 
> > > 
> > > It does. It is IOS. Just do your CLI thing.
> > > 
> > > Martijn 
> > > 
> > > -Oorspronkelijk bericht-
> > > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > > Verzonden: woensdag 6 augustus 2003 17:21
> > > Aan: [EMAIL PROTECTED]
> > > Onderwerp: Cisco 806 ? [7:73613]
> > > 
> > > 
> > > Hi,
> > > 
> > > for some tests I need something cheap to play with, having 2 
> > > eth, vpn and
> > > (static) nat capability. Could anybody confirm if a 806 with 
> > > a "IP/FW PLUS
> > > 3DES" image does support IPSEC and NAT at the same time ?
> > > From the docs I'd say it does support both but can I have a 
> > > vpn tunnel, and
> > > nat inside the local network, and nat outside the remote (on 
> > > the other end
> > > of the tunnel) network ?
> > > The other endpoint would be a pix or a fw-1 although that 
> > > shouldn't matter.
> > > Couldn't find any configrmation of this in the docs :(
> > > Thanks
> > > Heiko
> > > 
> > > -- 
> > > -- PREVINET S.p.A. www.previnet.it
> > > -- Heiko Herold [EMAIL PROTECTED]
> > > -- +39-041-5907073 ph
> > > -- +39-041-5907472 fax
> > > **Please support GroupStudy by purchasing from the 
> GroupStudy Store:
> > > http://shop.groupstudy.com
> > > FAQ, list archives, and subscription info:
> > > http://www.groupstudy.com/list/cisco.html
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
> > http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73655&t=73613
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: 3550 Policing [7:73627]

2003-08-14 Thread Reimer, Fred
For TCP traffic you want to use:

1) 1518 bytes * (window size * 2)
2) rate / 8000

Whichever is HIGHER.  The minimum is 8000 bytes on the 3550.  You want to
use this so that the policer does not take effect before TCP flow control
kicks in.  The formula uses 8000 because the policer uses a 0.125ms policing
interval, so there are 8000 of these in one second, which is what your rate
is measured in.  So, for 3Mbps your burst would be 375 bytes, which is below
the minimum configurable value of 8000.  If you want to take TCP window size
in consideration, then the burst would be 64512 (Windows XP, at least on my
machine) * 2 * 1518 = 195,858,432 bytes.  Sounds ridiculous.  Even a 16K
window size would be about 50MB.

I don't get the 1518 * (window size * 2) formula, but that was the formula
in one of the Networkers troubleshooting sessions.  Then again, I went to
all three troubleshooting sessions (2900/3500, 4500, and 6500) and in each
and every one of them the presenters explained how to calculate the burst
rate differently.  The 3550 was the one with that formula though.  The 6500
used rate / 4000, so I assume it's policing interval is 0.25ms instead of
0.125ms.

Take a guess and go with it. ;-)

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: Erek Riccobuano [mailto:[EMAIL PROTECTED] 
Sent: Wednesday, August 06, 2003 3:48 PM
To: [EMAIL PROTECTED]
Subject: 3550 Policing [7:73627]

I want to police traffic on a 3550 so that one port is set to 3Mbs another
is 10Mbs and another is 1.5Mbs. How do I calculate the burst?

The CCO give a formula like below but I can't make sense of it.

Burstmin (bits) = Rate (bps) / 8000 (1/sec) 

My configs so far are below. Am I going about this the right way? All I want
to do is limit each customer to the bandwidth agreed upon.

access-list 100 permit ip any any

class-map match-all customer1
 match access-group 100

policy-map customer1
  class customer1
police 300  exceed-action drop

interface FastEthernet0/16
 service-policy input customer1

Thank you,

Erek
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73632&t=73627
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Access Internet via the corporate PIX [7:73563]

2003-08-14 Thread [EMAIL PROTECTED]
Build the tunnel first. Use HQ or RO dns. Make sure users cannot HTTP direct
through firewall, enable direct HTTPS trough it if you want. MAybe also no
ftp etc, no direct dns?

I believe you need an inside next hop proxy-server. Until 6.2 atleast pix
does not route ip between 2 ipsec tunnels. 

User's Get request forwarded to deamon through tunnel, fetched from cache or
Inet, reply to browser through tunnel.

Proxy will also do a nice job filtering mobile code and keeping surfing
behaviour in line with policies.

I'd say you should already should have it.

Martijn



-Oorspronkelijk bericht-
Van: johnman johnman [mailto:[EMAIL PROTECTED]
Verzonden: dinsdag 5 augustus 2003 23:06
Aan: [EMAIL PROTECTED]
Onderwerp: Access Internet via the corporate PIX [7:73563]


I am building a vpn tunnel PIX-to-PIX both connected to the internet.
I would like theusers at the  remote site to access the internet only via 
the the corporate PIX.


Remote PIX 501:  Inside net 192.168.2.0/24  outside x.x.x.x
Corporate PIX 515: Inside net 192.168.1.0/24  outisde IP y.y.y.y

How would I build the access-list to force the remote users behind the PIX 
501 to access the internet via the PIX 515 at the corporate site ?

_
STOP MORE SPAM with the new MSN 8 and get 2 months FREE*   
http://join.msn.com/?page=features/junkmail
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73601&t=73563
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Access server 2511 Reverse Telnet [7:73656]

2003-08-14 Thread Oliver Hensel
Hi Wallis.

You have to use a crossover cable, not the normal
straight through. If you have the one with octal
cables, you can use a RJ45-RJ45 connector and then
another crossover cable.

Best regards,

Oliver

Wallis Short sagte:
> HI All
>
> I was wondering if any of you guys have come across reverse telnet
> problems
> with the 2511 access server?
> Basically I have 8 devices connected and when I reverse telnet to them all
> is OK, but on when I try and connect to a 2900 XL switch I get this :
> Termserver#telnet 192.168.1.1 2006
> Trying 192.168.1.1, 2006 ..Open
>
> And thats it, nothing else. No command prompt or anything comes up on the
> screen
>
> I have configured telnet connections as exactly the same as all my other
> devices, I have IOS 12.0(5.2).
>
> Any ideas ??
> Cheers
> Wallis
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
>


-- 
Oliver Hensel
telematis Netzwerke GmbH
mailto:[EMAIL PROTECTED]
   Siemensstrasse 23, D-76275 Ettlingen
   Tel: +49 (0) 7243-3448-0, Fax: -498
visit us:  http://telematis.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73660&t=73656
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-14 Thread Herold Heiko
No, it is unrelated - I just remembered the 1000 series being limited
(regarding at least NTP) and feared the 800 series, being the replacement
for the 1000 series, could have the same limitations.

Heiko

-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 10:51 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> What about NTP? Should it read NAT?
> 
> Martijn 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: donderdag 7 augustus 2003 8:10
> Aan: [EMAIL PROTECTED]
> Onderwerp: RE: Cisco 806 ? [7:73613]
> 
> 
> Thanks!
> I just wanted to double check - some hears ago I got burnt in 
> a similar
> situation, with a 1003 and (no) NTP if I remember correctly.
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EMAIL PROTECTED]
> -- +39-041-5907073 ph
> -- +39-041-5907472 fax
> 
> > -Original Message-
> > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > Sent: Thursday, August 07, 2003 8:04 AM
> > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > Subject: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > It does. It is IOS. Just do your CLI thing.
> > 
> > Martijn 
> > 
> > -Oorspronkelijk bericht-
> > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > Verzonden: woensdag 6 augustus 2003 17:21
> > Aan: [EMAIL PROTECTED]
> > Onderwerp: Cisco 806 ? [7:73613]
> > 
> > 
> > Hi,
> > 
> > for some tests I need something cheap to play with, having 2 
> > eth, vpn and
> > (static) nat capability. Could anybody confirm if a 806 with 
> > a "IP/FW PLUS
> > 3DES" image does support IPSEC and NAT at the same time ?
> > From the docs I'd say it does support both but can I have a 
> > vpn tunnel, and
> > nat inside the local network, and nat outside the remote (on 
> > the other end
> > of the tunnel) network ?
> > The other endpoint would be a pix or a fw-1 although that 
> > shouldn't matter.
> > Couldn't find any configrmation of this in the docs :(
> > Thanks
> > Heiko
> > 
> > -- 
> > -- PREVINET S.p.A. www.previnet.it
> > -- Heiko Herold [EMAIL PROTECTED]
> > -- +39-041-5907073 ph
> > -- +39-041-5907472 fax
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
> > http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73649&t=73613
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Gigabit Ethernet & Collisions [7:73555]

2003-08-14 Thread David j
Is it really working at gigabit speed?, there are several interfaces which
are able to work at 10/100/1000 speeds

Neil Andersen wrote:
> 
> What would cause show interface for a Gigabit interface to show
> increasing collisions?  My understanding is that Gigabit
> Ehternet only runs in FULL DUPLEX.
> 
> Thanks,
> Neil




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73569&t=73555
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Loopback Interface [7:73305]

2003-08-14 Thread John Neiberger
You've got it! They can be used for iBGP, DNS resolution, GRE tunnel
endpoints, OSPF/BGP Router IDs, route summarization...the list goes on.

>>> Robert Edmonds 8/5/03 3:26:35 PM >>>
So, if I understand correctly, aside from OSPF router ID's and the like,
just use a loopback interface when you want an always up/up interface.
That's pretty simple.

""John Neiberger""  wrote in message
news:[EMAIL PROTECTED]
> Exactly right. Sometimes it's nice to have a virtual interface whose
status
> is not tied directly to a physical interface. We've mentioned several
> configurations where this is the case. From the routers perspective it
may
> have a couple of special properties, since it's virtual, but it's still
just
> another interface, as Dave said.
>
> >>> MADMAN 8/5/03 1:25:25 PM >>>
> I think your thinking way too hard about this;)  A loobback is
> nothing more than a logical interface as opposed to a physical
> interface.  As far as the routing process is concerned it's just another
> interface.  Don't know how to articulate it any further.
>
>Dave
>
> Robert Edmonds wrote:
> > You gentlemen have pointed out some good uses for loopback interfaces.
> > However, my dilema still remains that I have yet to have somebody
solidly
> > explain loopback interfaces in a way that my simple mind can
understand.
> I
> > have also been unsuccessful in finding any website that accomplish
this.
> > Any takers?
> >
> > Robert
> >
> > ""p b""  wrote in message
> > news:[EMAIL PROTECTED]
> >
> >>terminate iBGP sessions on
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com 
> > FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html 
> >
>
>
> -- 
> David Madland
> CCIE# 2016
> Sr. Network Engineer
> Qwest Communications
> 612-664-3367
>
> "Government can do something for the people only in proportion as it
> can do something to the people." -- Thomas Jefferson
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com 
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html 
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com 
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com 
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73566&t=73305
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Pix 506e, 1721 router [7:73521]

2003-08-14 Thread Robert Perez
you said vpn pix-2-pix, so how does the router come into play?  If he is
just a transit device you need not do anything.

-Original Message-
From: zak spaniol [mailto:[EMAIL PROTECTED] 
Sent: Tuesday, August 05, 2003 12:57 PM
To: [EMAIL PROTECTED]
Subject: Re: Pix 506e, 1721 router [7:73521]


I am going to be performing a VPN pix to pix configuration, the only part I
am not sure of is how to configure router.  Any suggestion?
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73547&t=73521
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


How to study..Self or Classes [7:73624]

2003-08-14 Thread Paul Ingram
Hello,
I have a simple question.  Has anyone used Knowledgenet for thee CCNP cert?

I have put together the following lab and I am not sure I should go for the
classes or just do the self pace thing.  Also if I self pace I am not sure I
will be able to get the new exam materal.  Does anyone know if CISCo Press
is going to put it out?  I heard they where not.  I guess there is SYBEX. 
Are they good?

Lab and thing i have missed please let me know:
2 - Cisco 2610 Router, 64/16
2 - Cisco NM-1V 1-Slot Voice Network Module
2 - VIC-2FXS 2-Port Voice Interface Card
1 - WIC-1B-S/T 1-Port ISDN/BRI WAN Interface Card (for the 2610)
1 - WIC-1B-U 1-Port ISDN/BRI WAN Interface Card (for the 2610)
1 - Vconsole 4 port 2S/T-2U ISDN Simulator (all 4 can be used at once)
1 - 2511 16/16
1 - 2503 16/16
1 - 2507 16/16
2 - Cisco 4500M Router
2 - Cisco NP-1A One-Port OC3 ATM Module
2 - Cisco NP-4T Four-Port Serial Module
2 - Cisco NP-2E One-Port Ethernet Module
2 - AGS+ with 6 Ethernet, 4 serial, 2 token ring, 2 FDDI ports each (still
trying to fiuge out the type of DCE DTE cables to use on the AGS+..Any Help?)
1 - Cisco WS-C1912 Switch
1 - 3550
1 - 2950
1 - 1201
7 - PII 400 256mb ram 10gb HDD systems.  OS anything from Windows 2003 Adv
Server to Linux.
1 - System config with Smoothwall as a firewall (3 Nics)

Thanks,
~Paul~


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73624&t=73624
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-14 Thread [EMAIL PROTECTED]
It does. It is IOS. Just do your CLI thing.

Martijn 

-Oorspronkelijk bericht-
Van: Herold Heiko [mailto:[EMAIL PROTECTED]
Verzonden: woensdag 6 augustus 2003 17:21
Aan: [EMAIL PROTECTED]
Onderwerp: Cisco 806 ? [7:73613]


Hi,

for some tests I need something cheap to play with, having 2 eth, vpn and
(static) nat capability. Could anybody confirm if a 806 with a "IP/FW PLUS
3DES" image does support IPSEC and NAT at the same time ?
>From the docs I'd say it does support both but can I have a vpn tunnel, and
nat inside the local network, and nat outside the remote (on the other end
of the tunnel) network ?
The other endpoint would be a pix or a fw-1 although that shouldn't matter.
Couldn't find any configrmation of this in the docs :(
Thanks
Heiko

-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73642&t=73613
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-14 Thread Herold Heiko
No sntp time source was available if I remember correctly, only novell
clients and servers, possibly a sco server several (isdn!) hops away.
Details are hazy now and I don't have access to the notes anymore since I
switched work some years ago, but I remember we had to live with an unsynced
clock and use the old "now the router says it's x o'clock so that log is
really from y o'clock" differential timing :(.
I think at that time on the remote network were only old netboot msdos
novell clients and we could not bring up the isdn line in order to sync the
clock or something like that. Hmm can't be, it would have synced happily
with sntp at least whenever the line was up, there must have been some other
reason. Possibly incompetence on our side :)

Heiko 

-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 11:10 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> Use SNTP?
> 
> http://www.cisco.com/univercd/cc/td/doc/product/software/ios12
> 1/121cgcr/fun_
> r/frprt3/frd3003.htm#1020770
> 
> 
> sntp server
> To configure a Cisco 1003, Cisco 1004, Cisco 1005, Cisco 
> 1600, Cisco 1720,
> Cisco 1750, or Cisco 800 router to use the Simple Network 
> Time Protocol
> (SNTP) to request and accept Network Time Protocol (NTP) 
> traffic from a
> stratum 1 time server, use the sntp server global 
> configuration command. The
> no form of the command removes a server from the list of NTP servers. 
> 
> sntp server {address | hostname} [version number]
> no sntp server {address | hostname}
> Syntax Description 
> 
> address 
>  IP address of the time server. 
>  
> hostname 
>  Host name of the time server. 
>  
> version number 
>  (Optional) Version of NTP to use. The default is 1. 
>  
> 
> 
> Defaults 
> 
> The router does not accept SNTP traffic from a time server. 
> 
> Command Modes 
> 
> Global configuration 
> 
> Command History 
> 
> Release  Modification  
> 11.2 
>  This command was introduced. 
>  
> 
> 
> Usage Guidelines 
> 
> SNTP is a compact, client-only version of the NTP. SNMP can 
> only receive the
> time from NTP servers; it cannot be used to provide time 
> services to other
> systems. 
> 
> SNTP typically provides time within 100 milliseconds of the 
> accurate time,
> but it does not provide the complex filtering and statistical 
> mechanisms of
> NTP. In addition, SNTP does not authenticate traffic, although you can
> configure extended access lists to provide some protection. 
> 
> Enter this command once for each NTP server. 
> 
> You must configure the router with either this command or the 
> sntp broadcast
> client command in order enable SNTP. 
> 
> SNTP time servers should operate only at the root (stratum 1) 
> of the subnet,
> and then only in configurations where no other source of 
> synchronization
> other than a reliable radio or modem time service is 
> available. A stratum 2
> server cannot be used as an SNTP time server. The use of SNTP 
> rather than
> NTP in primary servers should be carefully considered. 
> 
> Examples 
> 
> The following example enables the router to request and 
> accept NTP packets
> from the server at 172.21.118.9 and shows sample show sntp 
> command output: 
> 
> Router(config)# sntp server 172.21.118.9 
> Router(config)# end 
> Router# 
> %SYS-5-CONFIG: Configured from console by console 
> Router# show sntp 
> SNTP server Stratum Version Last Receive 
> 172.21.118.9 5 3 00:01:02Synced 
> Related Commands 
> 
> Command  Description  
> show sntp 
>  Shows information about the SNTP on a Cisco 1003, Cisco 
> 1004, Cisco 1005,
> Cisco 1600, Cisco 1720, or Cisco 1750 router. 
>  
> sntp broadcast client 
>  Configures a Cisco 1003, Cisco 1004, Cisco 1005, Cisco 1600, 
> Cisco 1720, or
> Cisco 1750 router to use the SNTP to accept NTP traffic from 
> any broadcast
> server. 
>  
> 
> 
> 
> Martijn 
> 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: donderdag 7 augustus 2003 11:04
> Aan: Jansen, M; [EMAIL PROTECTED]
> Onderwerp: RE: Cisco 806 ? [7:73613]
> 
> 
> No, it is unrelated - I just remembered the 1000 series being limited
> (regarding at least NTP) and feared the 800 series, being the 
> replacement
> for the 1000 series, could have the same limitations.
> 
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EMAIL PROTECTED]
> -- +39-041-5907073 ph
> -- +39-041-5907472 fax
> 
> > -Original Message-
> > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > Sent: Thursday, August 07, 2003 10:51 AM
> > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > Subject: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > What about NTP? Should it read NAT?
> > 
> > Martijn 
> > 
> > -Oorspronkelijk bericht-
> > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > Verzonden: do

RE: Timer for RIP [7:73774]

2003-08-14 Thread Jason J
Hi, 
  as far as i can see:
there are two kinds of possible reasons that corrupt the communication
between R3 and R5, physical and logical. 
if it is physical , R3 can detect it immediately, at the time ,maybe 
it will get a route from R2 telling a route to R5, so , R3 step into 
holddown, R2 can not get any update about Route to R5 from R3,until 
time's up for its Invalid timer, so R2 will come to holddown status,then
finnaly R3 can get correct route information to R5,in fact it's none! .
the same conditon will comes to R1 and R2 .
it's same for a logical corrupt..


Jason.J  CCNP P.R.C


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73779&t=73774
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Gigabit Ethernet & Collisions [7:73555]

2003-08-14 Thread Neil Andersen
What would cause show interface for a Gigabit interface to show increasing
collisions?  My understanding is that Gigabit Ehternet only runs in FULL
DUPLEX.

Thanks,
Neil


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73555&t=73555
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Port redirection on a PIX [7:73065]

2003-08-14 Thread Robert Edmonds
What about changing INTERFACE OUTSIDE to your NATed outside IP address?

""NetEng""  wrote in message
news:[EMAIL PROTECTED]
> I get the error "Invalid global IP address OUTSIDE".  I also tried it w/o
> 'interface'. If you can offfer any more help I would appreciate it as I
> really need to get this fixed. Thanks.
>
>
> ""Robert Edmonds""  wrote in message
> news:[EMAIL PROTECTED]
> > With regards to these two lines:
> >
> > > static (inside,outside) tcp interface ftp 192.168.0.1 ftp netmask
> > > 255.255.255.255 0 0
> > > static (inside,outside) tcp interface www 192.168.0.1 www netmask
> > > 255.255.255.255 0 0
> >
> > I believe they should read:
> >
> > static (inside, outside) tcp interface OUTSIDE ftp 192.168.0.1 ftp
netmask
> > 255.255.255.255
> > static (inside, outside) tcp interface OUTSIDE ftp 192.168.0.1 ftp
netmask
> > 255.255.255.255
> >
> > If I am wrong, I'm sure I will be severely reprimanded...I mean
corrected.
> >
> >
> > ""NetEng""  wrote in message
> > news:[EMAIL PROTECTED]
> > > I am still not able to connect to my web and ftp services. I have
pasted
> > the
> > > relative info below. Am I missing something or do is my config wrong?
> > > :
> > > PIX Version 6.1(3)
> > > nameif ethernet0 outside security0
> > > nameif ethernet1 inside security100
> > > access-list 101 permit icmp any any unreachable
> > > access-list 101 permit icmp any any time-exceeded
> > > access-list 101 permit icmp any any echo-reply
> > > access-list 102 permit tcp any any eq ftp
> > > access-list 102 permit tcp any any eq www
> > > pager lines 24
> > > interface ethernet0 10baset
> > > interface ethernet1 10full
> > > mtu outside 1500
> > > mtu inside 1500
> > > ip address outside dhcp setroute
> > > ip address inside 192.168.0.100 255.255.255.0
> > > global (outside) 1 interface
> > > nat (inside) 1 0.0.0.0 0.0.0.0 0 0
> > > static (inside,outside) tcp interface ftp 192.168.0.1 ftp netmask
> > > 255.255.255.255 0 0
> > > static (inside,outside) tcp interface www 192.168.0.1 www netmask
> > > 255.255.255.255 0 0
> > > access-group 102 in interface outside
> > >
> > > Thanks for the help so far
> > >
> > >
> > > ""Scott""  wrote in message
> > > news:[EMAIL PROTECTED]
> > > > static (inside,outside) tcp interface ftp 10.1.1.3 ftp netmask
> > > > 255.255.255.255 0 0
> > > >
> > > > Scott
> > > > ""NetEng""  wrote in message
> > > > news:[EMAIL PROTECTED]
> > > > > I'm trying to do port redirection on my PIX and here's the example
> > from
> > > > > Cisco. My problem is my outside interface is set for DHCP. How do
I
> > > change
> > > > > the command to reflect a dynamic outside address?
> > > > >
> > > > > static (inside,outside) tcp 172.18.124.99 ftp 10.1.1.3 ftp netmask
> > > > > 255.255.255.255 0 0




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73537&t=73065
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: multiple ospf processes & route insertion [7:73727]

2003-08-14 Thread Jason J
sorry , i think what i've said is totally wrong!.god damn.
i'am a little dizzy. confused about the concept of route table.
i'am just doing experiments on routers. dizzy.
since the same routes from different protocols can not be present
on the route table , but why do i saw there are the same 
route from BGP  and Static??
:(

Jason J CCNP P.R.C


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73786&t=73727
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-14 Thread John Neiberger
Hmm...that's interesting. I found Halabit to be very easy to understand, but
that was after reading Stewart. Stewart's book is incredibly easy to
understand, especially considering how short it is. Quite concise, yet
readable.

I have Doyle Vol. II but I stopped studying for attempt #2 before I got to
the BGP section. I should read through it as a refresher and to compare it
to Halabi.

But Dre? Despise?? :-)  That's pretty harsh! However, I guess I can
understand your point. BGP can be pretty easy to understand when it's
explained correctly, and can be very difficult to understand when explained
poorly.

John

""Pintens, Koen""  wrote in message
news:[EMAIL PROTECTED]
> I agree with Dre
> I also got both books and Jeff Doyle's is so much easier to read and
> understand then Halabi's
>
> Koen Pinten
> Network Engineer
>
> CCNP CCDP MCSE MCSA MCDBA
>
> > -Original Message-
> > From: dre [SMTP:[EMAIL PROTECTED]
> > Sent: Wednesday, August 06, 2003 10:55 AM
> > To: [EMAIL PROTECTED]
> > Subject: Re: Cisco BGP Exam [7:73516]
> >
> > ""juniper""  wrote in message ...
> > > Can anyone recommend a good book for the BGP exam
> >
> > I personally despise Halabi's "authortative, the BGP-bible" IRA
> > book.  It is awful.  It is the sole reason nobody understands BGP.
> > It's confusing, boring, and downright awful to read and understand
> > such simple concepts.
> >
> > I passed the Cisco BGP exam (took the beta), and I did not even
> > open Halabi or Stewart (I do like Stewart, but for this exam, his
> > information is not really on-topic).
> >
> > Normally, I'd say read the RFC's, but they are also not going to
> > help you on this exam.
> >
> > I used
> > a) the outline provided by Cisco
> > b) Jeff Doyle's TCP/IP Routing Volume II (first 318 pages)
> >
> > Jeff Doyle is the master of routing protocols...this misconception
> > that Volume II was not as good as Volume I reminds me of 14
> > year old pimply-faced kids arguing about Star Wars vs. Empire
> > or Matrix 1 vs. Matrix: Reloaded.  These are all good movies...
> > however, Star Wars: Episode I and II are more remniscient of
> > HalabiIMO.
> >
> > -dre
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
>
>
> **
> This electronic message together with any attachments is confidential. If
> you receive it in error: (i) you must not use, disclose, copy or retain
> it; (ii) please contact the sender immediately by reply email and then
> delete the emails. Views expressed in this email may not be those of the
> Airways Corporation of New Zealand Limited
> **
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73577&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


OT: Friday Funnies [7:73717]

2003-08-14 Thread Dom
A ventriloquist is touring the clubs and stops to entertain at a bar 
in a small town. He's going through his usual run of "dumb blonde" 
jokes, when a blonde woman in the 4th row stands on her chair and
says: "I've heard just about enough of your stupid blonde jokes, you 
creep! What makes you think you can stereotype women that way? What 
does a person's hair colour have to do with them as a human being? 
It's guys like you who keep women like me from being respected at work 
and in my community and from reaching our full potential... because 
you and your kind continue to perpetuate negative images against not 
only blondes, but women in general, all in the name of humour." 
Flustered, the ventriloquist begins to apologise, when the blonde 
yells, "You stay out of this Mister! I'm talking to that little 
B*d on your knee!"

Best regards,

Dom Stocqueler
SysDom Technologies
Visit our website - www.sysdom.org


===
IMPORTANT: This email is intended for the use of the individual
addressee(s)named above and may contain information that is confidential
privileged or unsuitable for overly sensitive persons with low
self-esteem, no sense of humour or irrational religious beliefs. If you
are not the
intended recipient, any dissemination, distribution or copying of this
email
is not authorised (either explicitly or implicitly) and constitutes
an irritating social faux pas. Unless the word absquatulation has been
used in its correct context somewhere other than in this warning, it
does not
have any legal or grammatical use and may be ignored. No animals were
harmed in the transmission of this email, although the poodle next door
is living on borrowed time, let me tell you. Those of you with an
overwhelming fear of the unknown will be gratified to learn that there
is
no hidden message revealed by reading this warning backwards, so just
ignore that
Alert Notice from Microsoft. However, by pouring a complete circle of
salt around yourself and your computer you can ensure that no harm
befalls
you and your pets. If you have received this email in error,
please add some nutmeg and egg whites and place it in a warm oven for 40
minutes. Whisk briefly and let it stand for 2 hours before icing.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73717&t=73717
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Access server 2511 Reverse Telnet [7:73656]

2003-08-14 Thread Wallis Short
HI All

I was wondering if any of you guys have come across reverse telnet problems
with the 2511 access server?
Basically I have 8 devices connected and when I reverse telnet to them all
is OK, but on when I try and connect to a 2900 XL switch I get this :
Termserver#telnet 192.168.1.1 2006
Trying 192.168.1.1, 2006 ..Open

And thats it, nothing else. No command prompt or anything comes up on the
screen

I have configured telnet connections as exactly the same as all my other
devices, I have IOS 12.0(5.2).

Any ideas ??
Cheers
Wallis


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73656&t=73656
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: 3550 Policing [7:73627]

2003-08-14 Thread mccloud mike
Traffic policing allows you to control the maximum rate. 
Traffic shaping is used to avoid congestion.

a good site that explains this
http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fqos_c/fqcprt4/qcfpolsh.htm#22120



alaerte Vidali wrote:
> 
> If you specify maximum burst you can have a behavior that
> remembers Shaping. Am I wrong?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73703&t=73627
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: IOS image.... [7:73481]

2003-08-14 Thread [EMAIL PROTECTED]
Buy online cco when you're partner/subscribe 


http://shop.cisco.com


Subscribtions should have latest.


Maybe ebay?



Martijn 

-Oorspronkelijk bericht-
Van: Shab Hanon [mailto:[EMAIL PROTECTED]
Verzonden: woensdag 6 augustus 2003 21:47
Aan: [EMAIL PROTECTED]
Onderwerp: Re: IOS image [7:73481]


Ya this is good link   . Thanks :)


Cheers,
Shab


 wrote in message
news:[EMAIL PROTECTED]
> Buy online cco when you're partner/subscribe or
>
> http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/index.htm
>
>
> Martijn
>
> -Oorspronkelijk bericht-
> Van: alaerte Vidali [mailto:[EMAIL PROTECTED]
> Verzonden: dinsdag 5 augustus 2003 17:05
> Aan: [EMAIL PROTECTED]
> Onderwerp: RE: IOS image [7:73481]
>
>
> Any recommendation in how to get the doc CD with 12.2 features?
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73646&t=73481
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Bad mask /24 for address ???? [7:73801]

2003-08-14 Thread Iwan Hoogendoorn
Thank you guys for your help!!!


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73850&t=73801
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: OSPF DR and BDR elections [7:73504]

2003-08-14 Thread Howard C. Berkowitz
At 8:08 PM + 8/6/03, Marko Milivojevic wrote:
>  > > I wonder what the logic for that is.
>>
>>  I wonder, too. :)
>
> The reason could be as simple as the possibility to reuse the code (or
>function-call). For that brief moment when there is BDR, but no DR, exactly
>the same code base can be used as if router has realized that DR just failed
>miserably :-).
>
> I just realized that my logic above actually makes sense. Of course,
>someone will correct me if I'm horribly wrong.
>

That's the exact reason it's done that way.  I think it's documented 
in the code in Moy's second book on implementation, but it might be 
the first.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73636&t=73504
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Largest CA Keylength on VPN 3000 [7:73409]

2003-08-14 Thread Reimer, Fred
Well, the manuals are wrong ;-)

The key size on the latest version of software is 2048 bits max.

It was not an allocation issue.

One pointer though, if you have to recreate your CA on a Microsoft platform
you may as well reformat the hard drive and start from scratch, as there is
no de-install for the SCEP add-on to IIS so you have to de-install the CA,
de-install IIS!, re-install IIS and the CA, then re-install SCEP, and even
then your CA is going to be all F'd up.  Somehow, I got to the point where
you could only request "user" and "efs" certs, not "web server" or "server"
certs like you can on another CA we have installed same version of
everything), plus you can't specify the OU, so you can't match that to a
group name.

We are using OpenSSL just fine, even on a Windows box with cygwin.

I hate Windows.

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] 
Sent: Wednesday, August 06, 2003 5:01 AM
To: [EMAIL PROTECTED]
Subject: RE: Largest CA Keylength on VPN 3000 [7:73409]

Is it a size or allocation issue?


CSCdv48299 
If fewer than three spots remain in the CA certificate store of a VPN 3000
Concentrator, and an attempt is made to install a CA certificate with
associated RAs, then the RA or RAs are installed (filling the store) and the
root certificate is not installed. This is incorrect behavior. Instead, the
software should check to see if there is enough room in the store before
installing a partial CA certificate. Partial certificates should not be
installed. If the RAs and the Root certificate cannot be installed, the
software should install nothing.

Or just RTFM below?

Martijn


Key Size
 -
man Yes
scep Yes
 The algorithm for generating the public-key/private-key pair, and the key
size. If you are requesting an SSL certificate, of if you are requesting an
identity certificate using SCEP, only the RSA options are available.

RSA 512 bits = Generate 512-bit keys using the RSA (Rivest, Shamir, Adelman)
algorithm. This key size provides sufficient security and is the default
selection. It is the most common, and requires the least processing.

RSA 768 bits = Generate 768-bit keys using the RSA algorithm. This key size
provides normal security. It requires approximately 2 to 4 times more
processing than the 512-bit key.

RSA 1024 bits = Generate 1024-bit keys using the RSA algorithm. This key
size provides high security, and it requires approximately 4 to 8 times more
processing than the 512-bit key.

man Yes
csep No
DSA 512 bits = Generate 512-bit keys using DSA (Digital Signature
Algorithm).

DSA 768 bits = Generate 768-bit keys using the DSA algorithm.

DSA 1024 bits = Generate 1024-bit keys using the DSA algorithm.


 

-Oorspronkelijk bericht-
Van: Reimer, Fred [mailto:[EMAIL PROTECTED]
Verzonden: zaterdag 2 augustus 2003 14:49
Aan: [EMAIL PROTECTED]
Onderwerp: Largest CA Keylength on VPN 3000 [7:73409]


Let's see if anyone here can answer faster than Cisco TAC.

 

What is the largest CA root key length supported by the Cisco VPN
Concentrator 3000 series hardware?  I have a 4096 bit key and it won't
accept the root key because it can't "validate" it.

 

Fred Reimer - CCNA

Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050

NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73604&t=73409
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://w

what are ip directed-broadcast and ip mroute-cache [7:73800]

2003-08-14 Thread Iwan Hoogendoorn
Can someone explain me what this is for and what is does?


ip directed-broadcast
ip mroute-cache

Thank You 

Iwan 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73847&t=73800
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Access server 2511 Reverse Telnet [7:73656]

2003-08-14 Thread Edward Moss
I had a similar problem with a PIX-501.  My solution was to add  'modem
cts-required' under the line configuration of the termainl server connected
to the PIX.

I dont think it is a cable issue... troubleshoot physical layer up.  If you
can use a computer with a rollover cable and it works, you should be able to
use an octal cable with no problems.  If you dont get a response, try the
same line of the octal cable on anohter device.  Now we know it's not the
device we are connecting to, and it's not the octal cable...   Boils down to
protocol or handshaking on the line.

Ed



Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73724&t=73656
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: CCNP and future CCIE lab setup [7:73696]

2003-08-14 Thread Reimer, Fred
"May I suggest making some very short ones with a plug on one end and a jack
on the other."

Make it at least 1 meter if you want to be in spec...

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: Daniel Cotts [mailto:[EMAIL PROTECTED] 
Sent: Friday, August 08, 2003 11:27 AM
To: [EMAIL PROTECTED]
Subject: RE: CCNP and future CCIE lab setup [7:73696]

You have a great start. Let's consider what you have. The 2500s are great.
In time, you will want to load an Enterprise version of IOS. That requires
16 MB Flash and 16 MB DRAM. There are many sources of third party DRAM and
Flash - check the archives.
You didn't say if the 2600s had any WIC cards. Two WIC-1Ts in each would be
great. I recently bought several at an average price of $50 each. Just be
patient.
Again, verify how much Flash and DRAM you need for all your routers to run
the images you want.
Back-to-back serial cables. Again several sources. I have purchased from Bob
Lowery, [EMAIL PROTECTED] Good prices and great service. Length depends on
how you group your routers. Three foot (one meter) is handy if the routers
are close together. Six foot or ten foot might also be useful.
Ethernet cables. You'll want some crossover cables. May I suggest making
some very short ones with a plug on one end and a jack on the other. Then
add a regular patch cord of the desired length to meet your needs.
Consider racking your equipment. Besides the full height racks you may have
at work, there are short portable racks made for musicians. The rack is part
of a shipping container. The discussions about these on groupstudy indicated
they were quite reasonably priced.
If you start with Routing, I would think that you have everything you need.
I'll assume, without checking, that the 8 A/S module has DB-60 interfaces.
Later when you do Remote Access an ISDN simulator would be a great addition.
CCO has many resources. There are many great books. Consider some of those
mentioned often on the list. Doyle "Routing TCP/IP" Vols I and II, "Cisco
LAN Switching" by Clark and Hamilton, the Cisco Press books for the
Networking Academy courses, etc.
Good luck and have fun. 

> -Original Message-
> From: Natchaya Radhikulkaralak [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 6:46 PM
> To: [EMAIL PROTECTED]
> Subject: CCNP and future CCIE lab setup [7:73696]
> 
> 
> Like the other person previously... I am trying to build a lab.
> 
> I am personally starting my Cisco track but I have recieved 
> some routers
> from my work.
> 
> I personally have 2-2501, 3-2503, 1-2504, 1-as2511-rj(which I 
> dont know how
> to use), 1-2611, 1-2612, 1-3640 w/ 8 a/s module: 2ME-2W 
> module: 4-port ISDN
> Bri module (dont know module name), 2-2912, 1-2950.
> 
> Can you also give me any suggestions?  Larus has mentioned a 
> backbone router
> but isnt the 3640 sufficient?  Overall... is there anything 
> else that i need
> to improve this other than 3550 switches which are way out of 
> my budget!!!?
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73740&t=73696
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


can ciscoview version before 5.0 support 2950&3550 [7:73854]

2003-08-14 Thread heat liu
there's no device package for catalyst 2950&3550 in the ciscoview version
4.0,4.1,4.2(before 5.0)
so ciscoview (version before 5.0)can't support catalyst 2950&3550?


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73854&t=73854
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: How to study..Self or Classes [7:73624]

2003-08-14 Thread Paul Ingram
Thanks!  You have said the exact reason I am going with Knowledgenet.  After
work it can be hard to stay focused in a book but if I have interaction
along with the book I feel I can keep my mind on it.  Also I am getting some
help from work also with the funds sowhy not.

~Paul~

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
> Mwalie W
> Sent: Wednesday, August 06, 2003 11:28 PM
> To: [EMAIL PROTECTED]
> Subject: RE: How to study..Self or Classes [7:73624]
> 
> Hello,
> 
> Knowledgenet courses are okay, but I feel they are by far expensive. You
> can
> use the money to get equipment.
> 
> The material at knowledgenet (for the Cisco courses like BSCI) is exactly
> what is in the Cisco course book that costs $60.00. The reason I like
> knowledgenet is that being interactive, I can study even when tired at
> night, just when reading a book is nearly impossible.
> 
> I think I have come to like knowledgenet; fortunately, I have not been
> paying for the courses.
> 
> Good Luck!
> 
> Mwalie
> CCDP
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html

---
{This E-mail scanned for viruses by Declude Virus/McAfee}




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73658&t=73624
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Back to Back Routers [7:73897]

2003-08-14 Thread Paul Carter
I have a 1601 router and a 2509 to practice with. I've connected them
with a DCE/DTE cable off the s0 ports on each router and set a clock
rate on the DCE end, the 1601. On Sundays I can use a fiber connection
with this setup. I have this coming in the e0 on the 1601. The E0 on the
2509 is crossover cabled to a PC.



10Mbps in at switch(10.140.240.1/30) --- (10.140.240.2/30) e0-1601 /
s0-1601(172.16.96.1/30) --- (172.16.96.2/30)s0-2509 /
e0-2509(10.140.240.161/27)  (10.140.240.162/27)PC

10.140.240.160 is my inside network

My problem seems to be a lack of bandwidth to the PC end. At speed test
sites on the net I'm only getting about 1.6 Mbps.
I think I may be bottlenecked somewhere in the router back to back
setup. The configs are close to what they were originally set up as to
keep my boss happy in case he needs one in a hurry. I've changed the
addresses to similar types of networks but private numbers. The ethernet
ports are ARPA and the serial ports HDLC. I've set bandwidth to
1Kbps at each port. I originally had the clock rate at 64000 but
didn't know if that was a bottleneck.


--
Router1601#sh run
Current configuration:
!
version 11.2(not enough memory to upgrade)
service timestamps debug datetime msec localtime show-timezone
service timestamps log datetime msec localtime show-timezone
service password-encryption
no service udp-small-servers
no service tcp-small-servers
!
hostname 1601
!
boot system flash
enable secret 5 
enable password 7 
!
ip subnet-zero
clock timezone PST -8
clock summer-time pdt recurring
!
interface Ethernet0
 description E0 10Mbps connection to Fiber
 ip address 10.140.240.2 255.255.255.252
 media-type 10BaseT
 no cdp enable
!
interface Serial0
 description S0 to 2509 S0
 ip address 172.16.96.1 255.255.255.252
 bandwidth 1
 clockrate 400
!
no ip classless
ip route 0.0.0.0 0.0.0.0 64.240.140.1
ip route 10.140.240.160 255.255.255.224 172.16.96.2
logging buffered 4096 debugging
snmp-server community  RO
!
snip Banner stuff
!
end


Router2509#sh run
Current configuration : 2227 bytes
!
version 12.1
no service single-slot-reload-enable
service timestamps debug datetime msec localtime show-timezone
service timestamps log datetime msec localtime show-timezone
service password-encryption
service udp-small-servers
service tcp-small-servers
!
hostname Router2509
!
boot system flash
enable password 7 
!
!
clock timezone PST -8
clock summer-time pdt recurring
ip subnet-zero
!
interface Ethernet0
 description to LAN
 ip address 10.140.240.161 255.255.255.224
!
interface Serial0
 bandwidth 1
 ip address 172.16.96.2 255.255.255.252
 no fair-queue
!
interface Serial1
 no ip address
 shutdown
!
no ip classless
ip route 0.0.0.0 0.0.0.0 172.16.96.1
ip route 10.140.240.160 255.255.255.224 10.140.240.162
no ip http server
!
end

Any ideas?
...
...
PC




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73897&t=73897
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Len Lee/CHI/NTRS is out of the office. [7:73712]

2003-08-14 Thread Len Lee
I will be out of the office starting  August 8, 2003 and will not return
until August 18, 2003.

I will not be checking my messages periodically .  If this is a firecall,
please reference the firecall list.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73712&t=73712
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: what are ip directed-broadcast and ip mroute-cache [7:73808]

2003-08-14 Thread Reimer, Fred
IP Directed Broadcast - used to send a directed broadcast packet, or a
packet to a whole remote subnet.  For instance, say you have your
workstation management software on subnet 10.1.1.0/24, and you have three
remote subnets 10.1.2.0/24, 10.1.3.0/24, and 10.1.4.0/24.  The workstations
have client software on them, so that the management software can poll for
configuration changes, push registry entries, etc.  You could have all of
the clients poll the server, but you may want to "push" a change also.  How
could you do this?  Well, you could ping all ~ 768 IP addresses to find each
client, or you could send a directed broadcast to each of the three subnets,
10.1.2.255, 10.1.3.255, and 10.1.4.255, and all workstations would receive
it (and hopefully reply).

IP mroute cache - well, that would be the multicast routing table cache,
just like the ip-route-cache unicast cache.  Kind of like fast switching for
multicast traffic...

HTH,

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: Iwan Hoogendoorn [mailto:[EMAIL PROTECTED] 
Sent: Sunday, August 10, 2003 9:25 AM
To: [EMAIL PROTECTED]
Subject: what are ip directed-broadcast and ip mroute-cache [7:73800]

Can someone explain me what this is for and what is does?


ip directed-broadcast
ip mroute-cache

Thank You 

Iwan 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73808&t=73808
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Loopback Interface [7:73305]

2003-08-14 Thread MADMAN
Dom wrote:
> OK Let me have a go at this - 
> 
> A router by definition has at least two interfaces, in most cases it has
> many more. 
> 
> How do we define the ip address of the router? 
> 
> Is it an Ethernet (LAN facing) interface or a (for example) Serial, HSSI
> or other WAN facing interface?
> 
> If any of these interfaces goes down (fails) then we cannot get to the
> router. 
> 
> This is why we set a loopback interface address - nothing to do with
> routing or metrics etc, just making sure that we can reach the router 

   You won't "get to" the router no matter how many loopbacks you have 
if your phyical connection/s fail!!! :)

   Dave

> 
> Best regards,
> 
> Dom Stocqueler
> SysDom Technologies
> Visit our website - www.sysdom.org
> 
> 
> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
> MADMAN
> Sent: 05 August 2003 19:47
> To: [EMAIL PROTECTED]
> Subject: Re: Loopback Interface [7:73305]
> 
> 
> I think your thinking way too hard about this;)  A loobback is 
> nothing more than a logical interface as opposed to a physical 
> interface.  As far as the routing process is concerned it's just another
> 
> interface.  Don't know how to articulate it any further.
> 
>Dave
> 
> Robert Edmonds wrote:
> 
>>You gentlemen have pointed out some good uses for loopback interfaces.
> 
> 
>>However, my dilema still remains that I have yet to have somebody 
>>solidly explain loopback interfaces in a way that my simple mind can 
>>understand.  I have also been unsuccessful in finding any website that
> 
> 
>>accomplish this. Any takers?
>>
>>Robert
>>
>>""p b""  wrote in message 
>>news:[EMAIL PROTECTED]
>>
>>
>>>terminate iBGP sessions on
>>
>>**Please support GroupStudy by purchasing from the GroupStudy Store: 
>>http://shop.groupstudy.com FAQ, list archives, and subscription info:
> 
> http://www.groupstudy.com/list/cisco.html
> 
> 
> 


-- 
David Madland
CCIE# 2016
Sr. Network Engineer
Qwest Communications
612-664-3367

"Government can do something for the people only in proportion as it
can do something to the people." -- Thomas Jefferson




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73562&t=73305
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Networkers 2002 PDFs [7:73522] (LINKS READY FOR DOWNLOAD!) [7:73596]

2003-08-14 Thread [EMAIL PROTECTED]
Only this once all level 2-3 READY FOR DOWNLOAD! 

Use them as flashcards in the subway..

RST-221 Router Architecture and Operation L2 Phillip Harris 2.8 MB  
RST-222 Catalyst Switch Architecture and Operation L2 Jeff Raymond 1.1 MB  
RST-231 Deploying IPv6 Networks L2 Raj Gulani 885 KB  
RST-241 Deploying OSPF L2 Ian Foo, Bill Parkhurst 1.8 MB  
RST-242 Deploying EIGRP L2 Russ White 2.5 MB  
RST-243 Deploying BGP-4 L2 Alvaro Retana 709 KB  
RST-251 Deploying MPLS Traffic Engineering L2 Eric Osborne 552 KB  
RST-252 Deploying L2 Transport and Tunneling Technologies L2 Eric Matkovich
1.5 MB  
RST-253 Deploying MPLS VPNs L2 Eric Osborne, Ajay Simha 1.5 MB  
RST-260 Deploying IP Multicast L2 Beau Williamson 687 KB  
RST-261 Deploying Inter-Domain IP Multicast L2 Michael McBride 1.4 MB  
RST-271 Deploying Campus Networks L2 Chetan Sharan 805 KB  
RST-321 Troubleshooting Router IOS Operation L3 Russ White, David Cook 3.3
MB  
RST-322 Troubleshooting Catalyst Switches L3 Todd Hollmann, Tom Settle 449
KB  
RST-341 Troubleshooting OSPF L3 Cliff Potts, Faraz Shamim 594 KB  
RST-342 Troubleshooting EIGRP L3 Don Slice 627 KB  
RST-343 Troubleshooting the Deployment of BGP-4 L3 Daniel Walton 1.4 MB  
RST-360 Troubleshooting IP Multicast L3 Bryan McLaughlin 1.1 MB  
RST-440 Advanced Routing Concepts and Developments L4 Alvaro Retana 1.0 MB  
RST-450 Advanced Concepts and Developments in MPLS L4 Bruce Davie 1.1 MB  

http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-221.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-222.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-232.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-241.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-242.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-243.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-251.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-252.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-253.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-260.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-261.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-271.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-321.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-322.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-341.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-342.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-343.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-360.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-440.pdf
http://www.cisco.com/networkers/nw02/post/presentations/docs/RST-450.pdf

Cheers

Martijn 

-Oorspronkelijk bericht-
Van: Jens Petter Eikeland [mailto:[EMAIL PROTECTED]
Verzonden: woensdag 6 augustus 2003 7:06
Aan: [EMAIL PROTECTED]
Onderwerp: RE: Networkers 2002 PDFs [7:73522]


Hi ,

Here are the complet url...

http://www.cisco.com/networkers/nw02/post/presentations/pres_routing.html

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of
YASSER ALY
Sent: 5. august 2003 16:54
To: [EMAIL PROTECTED]
Subject: Networkers 2002 PDFs [7:73522]


Dear All,

  Anybody knows the URL to download Cisco networkers 2002 PDFs

Are PDFs for 2003 available for download ?

Regards,
Yasser

_
Add photos to your messages with MSN 8. Get 2 months FREE*.
http://join.msn.com/?page=features/featuredemail
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73596&t=73596
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Nice to meet all of you. [7:73672]

2003-08-14 Thread Charles D Hammonds
and if you do happen upon a few neteng positions with Home Depot, be sure to
let me know. I am assuming that would be based outta the HQ in Atlanta and
would love to move there. I know you know absolutely nothing about me, but I
promise I'm a great guy, and totally qualified, and modest and all that
stuff...

Thanks
Charles D Hammonds, CCNP CCSA

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Behalf Of
Rob Wideman
Sent: Thursday, August 07, 2003 9:51 AM
To: [EMAIL PROTECTED]
Subject: Nice to meet all of you. [7:73672]


Hello everybody!

My name is Rob Wideman and I am a product of the Cisco Networking Academy as
presented by Davenport University in Midland Michigan.  I passed my CCNA and
CCNP tests while working for a national big box retail store.
Unfortunately,
I am still working for Home Depot while looking for work in our field of
choice.  ( I am also A+ and Network+, thought I'd backfill a little to help
get a position).  My problem is that with very little actual OTJ experience,
I
have found that I am almost unhireable because I am overqualified and yet
underqualified as well.  Any suggestions?

Rob Wideman
CCNP, CCNA, A+, Network +
[EMAIL PROTECTED]

P.S. I love the theoretical problems that are occasionally posted.
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73697&t=73672
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: OSPF summary address with Null 0 [7:73500]

2003-08-14 Thread Shab Hanon
Can you please give us the link to the CCIE power session.

Cheers.


""Reimer, Fred""  wrote in message
news:[EMAIL PROTECTED]
> From the CCIE Power Session:
>
> "Unless a question says so, you are not permitted to use**:
>
> Static routes (of any kind)
>
> Default routes
>
> **Dynamic routes to null are permitted"
>
> Floating statics are also allowed:
>
> "ip route 2.2.2.0 255.255.255.0 1.1.1.2 240
>
> * Uses a higher administrative distance so that dynamic protocols will
take
> precedence
>
> * Use only if explicitly allowed in a test question
>
> * Make sure the dynamic route actually exists when DDR is not active"
>
> HTH,
>
> Fred Reimer - CCNA
>
>
> Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
> Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050
>
>
> NOTICE; This email contains confidential or proprietary information which
> may be legally privileged. It is intended only for the named recipient(s).
> If an addressing or transmission error has misdirected the email, please
> notify the author by replying to this message. If you are not the named
> recipient, you are not authorized to use, disclose, distribute, copy,
print
> or rely on this email, and should immediately delete it from your
computer.
>
>
> -Original Message-
> From: Shab Hanon [mailto:[EMAIL PROTECTED]
> Sent: Tuesday, August 05, 2003 5:30 AM
> To: [EMAIL PROTECTED]
> Subject: OSPF summary address with Null 0 [7:73500]
>
> Hi everybody
> The case .. OSPF summary address with Null 0
>
> In all the case studies for CCIE R & S we told don't use static routes!
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


ip helper address [7:73533]

2003-08-14 Thread Janik James
Assume that you have a two routers between your host and dhcp server.
This means that you have a 4 interfaces you cna put "ip helper-address" on.
On which interface(s) you will put the above command.


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73533&t=73533
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: cisco back to back cable [7:71992] ENGLISH version, so to [7:73714]

2003-08-14 Thread [EMAIL PROTECTED]
url

do a no shut on serial intf
clock dce say 64000
then
sh controllers ser x 

Look at the   DCD=up  DSR=up  DTR=up  RTS=up  CTS=up

you have a working cable, interface 2x

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fint
er_r/irfshoap.htm#1019003

http://www.cisco.com/en/US/tech/tk713/tk507/technologies_configuration_examp
le09186a0080094504.shtml

LET OP DE ONDERSTE REGEL DAN IS IE UP!

spicey#show interfaces serial 1
Serial1 is up, line protocol is up 
  Hardware is HD64570
  Internet address is 5.0.2.2/24
  MTU 1500 bytes, BW 1544 Kbit, DLY 2 usec, 
 reliability 255/255, txload 1/255, rxload 1/255
  Encapsulation PPP, loopback not set
  Keepalive set (10 sec)
  LCP Open
  Open: IPCP
  Last input 00:00:01, output 00:00:01, output hang never
  Last clearing of "show interface" counters 00:09:27
  Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
  Queueing strategy: weighted fair
  Output queue: 0/1000/64/0 (size/max total/threshold/drops) 
 Conversations  0/1/256 (active/max active/max total)
 Reserved Conversations 0/0 (allocated/max allocated)
  5 minute input rate 0 bits/sec, 0 packets/sec
  5 minute output rate 0 bits/sec, 0 packets/sec
 130 packets input, 3392 bytes, 0 no buffer
 Received 0 broadcasts, 0 runts, 0 giants, 0 throttles
 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort
 129 packets output, 3378 bytes, 0 underruns
 0 output errors, 0 collisions, 0 interface resets
 0 output buffer failures, 0 output buffers swapped out
 0 carrier transitions
 DCD=up  DSR=up  DTR=up  RTS=up  CTS=up


Martijn 

-Oorspronkelijk bericht-
Van: Jansen, M 
Verzonden: vrijdag 8 augustus 2003 12:36
Aan: 'LINSEN Jurgen (BMB)'; [EMAIL PROTECTED]
Onderwerp: RE: cisco back to back cable [7:71992]


In dutch, to keep things easy.

Denk dat je eerst even de  zaken moet proberen.

controle kabel
checken met commando sh controller serial, zie je een interface type staan,
dus die dce/dte

sh interface serial x
Router# show interfaces serial 
Serial 0 is up, line protocol is up 
   Hardware is MCI Serial 
   Internet address is 131.136.190.203, subnet mask is 255.255.255.0 
   MTU 1500 bytes, BW 1544 Kbit, DLY 2 usec, rely 255/255, load 1/255 
   Encapsulation HDLC, loopback not set, keepalive set (10 sec) 
   Last input 0:00:07, output 0:00:00, output hang never 
   Output queue 0/40, 0 drops; input queue 0/75, 0 drops 
   Five minute input rate 0 bits/sec, 0 packets/sec 
   Five minute output rate 0 bits/sec, 0 packets/sec 
   16263 packets input, 1347238 bytes, 0 no buffer 
   Received 13983 broadcasts, 0 runts, 0 giants 
   2 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 2 abort 
1 carrier transitions 
22146 packets output, 2383680 bytes, 0 underruns 
0 output errors, 0 collisions, 2 interface resets, 0 restarts check onderaan
dte/dce/rts/cts signalen moeten werken

configuratie
standaard configuratie
de ene is dce  (moet commando clockrate bv 64000 bij)  
ander is dte geen clockrate



Martijn


-Oorspronkelijk bericht-
Van: LINSEN Jurgen (BMB) [mailto:[EMAIL PROTECTED]
Verzonden: vrijdag 8 augustus 2003 9:37
Aan: [EMAIL PROTECTED]
Onderwerp: RE: cisco back to back cable [7:71992]


Sure you're using a cross cable?

-Original Message-
From: KW S [mailto:[EMAIL PROTECTED] 
Sent: Monday, July 07, 2003 6:22 PM
To: [EMAIL PROTECTED]
Subject: cisco back to back cable [7:71992]


Dear All

I have a 2501 and 2505 and I am trying to set up a homelab..These 2
routers come with a cable which is a DB60(DTE) and the other end is a
DB60(DCE).This is wat that is label on the cable. Anyway, I try to
connect this cable to the serial interface of the 2 routers...and both
the routers are showing serial is down and line protocol is down.

I guess I have used the wrong cable...or maybe I have missed out
something.

Please comment..

Regards, kws
 DISCLAIMER 

"This e-mail and any attachment thereto may contain information which is
confidential and/or protected by intellectual property rights and are
intended for the sole use of the recipient(s) named above.
Any use of the information contained herein (including, but not limited to,
total or partial reproduction, communication or distribution in any form) by
other persons than the designated recipient(s) is prohibited.
If you have received this e-mail in error, please notify the sender either
by telephone or by e-mail and delete the material from any computer".

Thank you for your cooperation.

For further information about Proximus mobile phone services please see our
website at http://www.proximus.be or refer to any Proximus agent.
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73714&t=73714
-

RE: a token ring question [7:73908]

2003-08-14 Thread [EMAIL PROTECTED]
According to cco cat 3900/5000 can switch multicast on TR.

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fipr
mc_r/mult/1rfmult2.htm#1078651

ip multicast use-functional
To enable the mapping of IP multicast addresses to the Token Ring functional
address 0xc000.0004., use the ip multicast use-functional command in
interface configuration mode. To disable the function, use the no form of
this command. 

ip multicast use-functional
no ip multicast use-functional
Syntax Description 

This command has no arguments or keywords. 

Defaults 

IP multicast address are mapped to the MAC-layer address 0x... 

Usage Guidelines 
This command is accepted only on a Token Ring interface. 
Neighboring devices on the Token Ring on which this feature is used should
also use the same functional address for IP multicast traffic. 
Because there are a limited number of Token Ring functional addresses, other
protocols may be assigned to the Token Ring functional address
0xc000.0004.. Therefore, not every frame sent to the functional address
is necessarily an IP multicast frame. 

Examples 
The following example configures any IP multicast packets going out Token
Ring interface 0 to be mapped to MAC address 0xc000.0004.: 

interface token 0 
 ip address 1.1.1.1 255.255.255.0 
 ip pim dense-mode 
 ip multicast use-functional 

Martijn 


-Oorspronkelijk bericht-
Van: wj chou [mailto:[EMAIL PROTECTED]
Verzonden: dinsdag 12 augustus 2003 7:55
Aan: [EMAIL PROTECTED]
Onderwerp: a token ring question [7:73908]


Hi, 
Can token ring carry multicast traffic? And what's the ip address to mac
address mapping if it does?
Thanks! 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73909&t=73908
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-14 Thread
""Jose Linero Welcker""  wrote in message
news:[EMAIL PROTECTED]
> Internet Routing Architechtures - Second Edition - Sam Halabi
>
> This is a complete BGP guide, and tat is enough to the BGP exam


interesting. have not taken the exam yet, so I can't comment. But I strognly
recommend Bill Parkhurst's "Cisco BGP 4 Command and Configuration Reference"
for CCIE Lab prep and anything to do with Cisco BGP studies. It can't hurt.



>
> Regards,
>
> Jose
>
>
> >From: "juniper"
> >Reply-To: "juniper"
> >To: [EMAIL PROTECTED]
> >Subject: Cisco BGP Exam [7:73516]
> >Date: Tue, 5 Aug 2003 14:00:03 GMT
> >
> >Hi,
> >Can anyone recommend a good book for the BGP exam
> >Mark
> >**Please support GroupStudy by purchasing from the GroupStudy Store:
> >http://shop.groupstudy.com
> >FAQ, list archives, and subscription info:
> >http://www.groupstudy.com/list/cisco.html
>
> _
> Charla con tus amigos en lmnea mediante MSN Messenger:
> http://messenger.yupimsn.com/
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73630&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


E&M Back-to-Back Cable [7:73954]

2003-08-14 Thread Cruz Laiza
Hello

I want to connect E&M ports on Cisco routers back-to-back, but wandering how
it can be achieved. Seems Type 2 and 5 of E&M are
symmetrical, so theorically it seems possible, but pratically is it true?

If it is possible what kind of cable should I use ? Some kind of roll-over
or cross-over cable might be needed, but what kind of pin connections ?

Regrds, 


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73954&t=73954
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Bad mask /24 for address ???? [7:73801]

2003-08-14 Thread Iwan Hoogendoorn
I was trying to assign an IP address with an subnetmask to the interface E0
and i got this strange message:

Bad mask /24 for address 10.0.0.10


here is what i did:

RouterA(config)#int e0
RouterA(config-if)#ip add 10.0.0.10 255.255.255.0
Bad mask /24 for address 10.0.0.10


Can someone tell me what i did wron ...this is suposing to work right?

Thank You 

Iwan 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73848&t=73801
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Bad mask /24 for address ???? [7:73801]

2003-08-14 Thread Marco Eulenfeld
Hy Iwan,

> Bad mask /24 for address 10.0.0.10

you need the command : ip subnet-zero on your router here.


Regards,

Marco

[GroupStudy removed an attachment of type application/pgp-signature]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73803&t=73801
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: VPN Best Hardware to use? [7:73793]

2003-08-14 Thread [EMAIL PROTECTED]
That is adsl over isdn.

Thought to only COMMON flavours were adsl async up/down and sdsl sync
up/down freq ranges.

SEEMS YOU CAN USE A BRI WIC!!!

>

Developed by Ascend Communications (acquired by Lucent Technologies), ISDN
Digital Subscriber Line (IDSL) transmits data digitally across existing ISDN
lines, at a rate of 128 Kbps. The benefits of IDSL over ISDN are that the
former service offers always-on connections, transmits data via a data
network rather than the phone companybs voice network, and avoids per-call
fees by being billed at a flat-rate. 

http://www.cisco.com/en/US/partner/tech/tk175/tk349/technologies_q_and_a_ite
m09186a00800946d3.shtml

Q. What is IDSL?
IDSL is a cross between ISDN and xDSL. As with ISDN, it uses a single wire
pair to transmit full-duplex data at 128 Kbps and at distances of up to the
Revised Resistance Distance range of 15,000 to 18,000 feet. IDSL also uses a
2B1Q line code to enable transparent operation through the ISDN "U"
interface. IDSL is essentially a leased line ISDN Basic Rate Interface
(BRI), or an ISDN BRI that is not switched and does not contain signaling (a
D channel). IDSL and ISDN BRI use the same 2B1Q line modulation. On the
router, this equates to putting the BRI interface in a leased line
configuration. The line can be configured for a speed of 64 Kbps, 128 Kbps,
or 144 Kbps.

The frames that are going across the wire are standard High-Level Data Link
Control (HDLC) frames. IDSL can be configured with Point-to-Point Protocol
(PPP) or Frame Relay encapsulation for the leased line BRI interface. The
easiest way to think about it is as if the BRI interface was a slow speed
synchronous serial port. Also, existing Customer Premises Equipment (CPE)
(ISDN BRI terminal adapters, bridges, and routers) can be used to connect to
the central office.
  
   
  
 IDSL Frequently Asked Questions  
 
 
 
 
 Downloads   
IDSL Frequently Asked Questions
 
 
 
 
 





Questions
What is IDSL?
Does the Cisco 2500 series router support IDSL?
Does the Cisco 2600 support IDSL?
What routers support IDSL?
Is PPP over Frame Relay supported on IDSL?
Does a SPID or phone number need to be defined to configure IDSL?
Do I need the ISDN switch type command on the CPE when I configure IDSL?
Is the Cisco 804 IDSL router compatible with CopperMountain CE200?
Does the Cisco 804 IDSL router support PPP over Frame Relay?
Does the Cisco DSLAM chassis have IDSL modules?
What is the distance limitation for IDSL?
Does IDSL support voice?
How do I configure a basic IDSL interface?
Related Information





Q. What is IDSL?



IDSL is a cross between ISDN and xDSL. As with ISDN, it uses a single wire
pair to transmit full-duplex data at 128 Kbps and at distances of up to the
Revised Resistance Distance range of 15,000 to 18,000 feet. IDSL also uses a
2B1Q line code to enable transparent operation through the ISDN "U"
interface. IDSL is essentially a leased line ISDN Basic Rate Interface
(BRI), or an ISDN BRI that is not switched and does not contain signaling (a
D channel). IDSL and ISDN BRI use the same 2B1Q line modulation. On the
router, this equates to putting the BRI interface in a leased line
configuration. The line can be configured for a speed of 64 Kbps, 128 Kbps,
or 144 Kbps.

The frames that are going across the wire are standard High-Level Data Link
Control (HDLC) frames. IDSL can be configured with Point-to-Point Protocol
(PPP) or Frame Relay encapsulation for the leased line BRI interface. The
easiest way to think about it is as if the BRI interface was a slow speed
synchronous serial port. Also, existing Customer Premises Equipment (CPE)
(ISDN BRI terminal adapters, bridges, and routers) can be used to connect to
the central office.

Q. Does the Cisco 2500 series router support IDSL?



No. The Cisco 2500 series does not support IDSL because its BRI hardware
does not support channel aggregation.

Q. Does the Cisco 2600 support IDSL?



Yes. IDSL is currently supported with the ISDN WAN Interface Cards (WICs)
and network modules when they are configured in leased line mode.

Q. What routers support IDSL?



The following routers support IDSL:

800 b Cisco 801-805 ISDN, Serial, and IDSL Routers

1600 b Cisco 1600 Series Routers and WAN Interface Cards

1720 b Cisco 1720 Modular Access Router

1750 b Cisco 1750 Modular Access Router

2600 b Connecting WAN and Voice Interface Cards to a Network
 

Martijn 

-Oorspronkelijk bericht-
Van: Ryan Finnesey [mailto:[EMAIL PROTECTED]
Verzonden: woensdag 13 augustus 2003 7:53
Aan: Jansen, M; [EMAIL PROTECTED]
Onderwerp: RE: VPN Best Hardware to use? [7:73793]


That is a ADSL WIC or am I missing something?  We are looking to use IDSL
but can not find a router that supports 3DES and IDSL 
 
 
Ryan

-Original Message- 
Fro

RE: Access server 2511 Cable Tricks [7:73671]

2003-08-14 Thread Natchaya Radhikulkaralak
Thanks for helping a new Cisco gurl out!  I truly appreciate it.  I tried it
on my as2511 and it had a few hitches but I understand what i need to change.

Thanx


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73767&t=73671
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Loopback Interface [7:73305]

2003-08-14 Thread Robert Edmonds
Rusty, was there a URL here that was truncated?  If so, I would very much
like to see it.  n_guide_chapter09186a0080087da4.html#3302

""Wilmes, Rusty""  wrote in message
news:[EMAIL PROTECTED]
> n_guide_chapter09186a0080087da4.html#3302
>
> -Original Message-
> From: Robert Edmonds [mailto:[EMAIL PROTECTED]
> Sent: Tuesday, August 05, 2003 9:47 AM
> To: [EMAIL PROTECTED]
> Subject: Re: Loopback Interface [7:73305]
>
>
> You gentlemen have pointed out some good uses for loopback interfaces.
> However, my dilema still remains that I have yet to have somebody solidly
> explain loopback interfaces in a way that my simple mind can understand.
I
> have also been unsuccessful in finding any website that accomplish this.
> Any takers?
>
> Robert
>
> ""p b""  wrote in message
> news:[EMAIL PROTECTED]
> > terminate iBGP sessions on
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73635&t=73305
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: OSPF DR and BDR elections [7:73504]

2003-08-14 Thread Zsombor Papp
The DR is not chosen from the "remaining list." The DR is chosen from the
list of routers that declared themselves designated routers (this is why a
high-priority router that comes up late won't take over the DR role from an
existing DR), or if no router declared itself DR, then the BDR will become
DR (this is why a high-priority router that came up late won't necessarily
become DR even if the existing DR dies).

See RFC2328, Page 75 for more details.

Thanks,

Zsombor

DeVoe, Charles (PKI) wrote:
> 
> I am reading the CCNP/CCIP  BSCI Study Guide by Todd Lammle
> from Sybex.  In
> the OSPF section under the discussion of DR and BDR  (page 171)
> he says that
> the BDR is chosen first and that the DR is chosen from the
> reaming list.
> That seems illogical and backwards.  Can someone please confirm
> or deny and
> explain it.  Thanks
> 
> 


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73524&t=73504
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: traffic flow [7:73495]

2003-08-14 Thread Dom
Before applying a service policy, enable NetFlow to see source and
destination addresses and port numbers.

Best regards,

Dom Stocqueler
SysDom Technologies
Visit our website - www.sysdom.org


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
John Brandis
Sent: 05 August 2003 07:02
To: [EMAIL PROTECTED]
Subject: traffic flow [7:73495]


Hey All,

Got a question about traffic flow into and out of a branch office. I
have a branch office with only a handful of users, but with high demands
on the WAN. This particular office has a 256k/32k frame connection into
me (the HQ) but a crying out for greater bandwidth and pipe access. What
my problem is, is understanding how these users are using up all there
network bandwidth. I have no access list in place between me and them
(however I will be going down this road). Whats I want to do, is have a
look at the traffic and determine what type of traffic it is. I bet we
have people in that office just watching video of the CEO from the HQ. I
have enabled IP NBAR on the serial and Ethernet interfaces and have
noticed that 70% of the traffic, is unclassified. How can I view this
data to just get then router to tell me the IP source and the port
number associated with this traffic?

I also would like to put down a quality of service map for known
business applications, and grant them priority over any other traffic.
Has any one done this and if so can you send snippets of your config or
link to doco's

Thanks all for your help

John
Sydney Australia


**
This email and any files transmitted with it are confidential and
intended solely for the use of the individual or entity to whom they are
addressed. If you have received this email in error please notify the
system manager.

This footnote also confirms that this email message has been swept by
MIMEsweeper for the presence of computer viruses. www.solution6.com
**
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73499&t=73495
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: VPN Best Hardware to use? [7:73793]

2003-08-14 Thread Reimer, Fred
I would certainly hope that the remotes wouldn't use different platforms.  I
don't know the business model, but it sounds to me like it's some kind of
service offering or something.  Maybe they have a 2000 site Frame Relay
network used to offer a service or something, and they want to switch to
something more economical.  Instead of paying monthly circuit fees, pay a
one-time hardware cost (assuming they don't own the FR routers at the
customer end) and use the customer's Internet connection.  Why in the world
would you want different hardware at each customer site in that situation?
Standardize on one hardware platform, and build the cost of that hardware
into the business model...

If that's the case then the cost of a 3005 can be justified in a small
number of months, depending on your FR cost.  Certainly you would recoup
your cost and start making more money, due to less operating cost,
relatively quickly.

Now, if this is something else, like a company with 2000 offices throughout
the world, then I can see your point and you may end up with different
requirements.  But, that's not how it sounds so far.

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] 
Sent: Monday, August 11, 2003 6:57 AM
To: [EMAIL PROTECTED]
Subject: RE: VPN Best Hardware to use? [7:73793]

Despite all hw issues, you really need to 
- describe the business req's first
- translate to technical req's

(you are talking 2000+ sites)

And you will see that you'll need more than one platform for de Remotes.

Dependig on your hierarchy concerning 
- messaging
- authentication
- client-server
- webapps 
- desktop/register maintenance/management
- security man

You will need to or may want to build an hierarchical design. Keep in mind
that differen platfroms use different (HQ) fail-over or 2nd ip techniques.

Martijn


-Oorspronkelijk bericht-
Van: Ryan Finnesey [mailto:[EMAIL PROTECTED]
Verzonden: zondag 10 augustus 2003 4:36
Aan: [EMAIL PROTECTED]
Onderwerp: VPN Best Hardware to use? [7:73793]


I need to setup VPNs to about 2000 sites.  Each site will have an IDSL line
installed that will be used to connect to monitor network devices and
servers.  Some of the remote networks will be using the same network block. 
I am looking to know what the best hardware to use on each end is.  On my
end, would it be better to use a PIX or a 3030?  On the remote end, I was
looking at a PIX 501, SOHO 91 or the 831?


Thank you


Ryan
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73876&t=73793
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: 3500XL - duplicate IP and Windows NT/2000 server [7:73868]

2003-08-14 Thread Pat Donlon
Firesox wrote:
> I have a bunch of 3500XL switches thruout my customer's lan.
> They are having a problem with unknown mac keep appearing and disappearing
> from the network.
> 
> I can trace the mac-address of the unknown station by "show mac" from the
> swtich CLI.
> What's strange is that it appears at one switch, but a minute later it
> appears in the different switch.
> 
> what's even more strange is that all NT/2000 servers log shows there is an
> IP conflict with this mac address.
> Of course, the servers IP function stops due to this duplicate IP, but
comes
> back in a few minutes.
> All the servers report the duplicate IP comes from the same mac address.
> 
> Has anyone seen this problem?
> 
> Thanks
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
> 
I know that the NT team where I work had a batch of new HP netservers 
delivered last year with the built in NICs with all the same mac 
addresses. They had to perform a bios upgrade I think to fix the 
problem. You should probably try to find out where what port(s) the 
duplicate mac and IP appear.

Cheers

Pat




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73873&t=73868
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Nice to meet all of you. [7:73672]

2003-08-14 Thread Rob Wideman
Hello everybody!

My name is Rob Wideman and I am a product of the Cisco Networking Academy as
presented by Davenport University in Midland Michigan.  I passed my CCNA and
CCNP tests while working for a national big box retail store.  Unfortunately,
I am still working for Home Depot while looking for work in our field of
choice.  ( I am also A+ and Network+, thought I'd backfill a little to help
get a position).  My problem is that with very little actual OTJ experience,
I
have found that I am almost unhireable because I am overqualified and yet
underqualified as well.  Any suggestions?

Rob Wideman
CCNP, CCNA, A+, Network +
[EMAIL PROTECTED]

P.S. I love the theoretical problems that are occasionally posted.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73672&t=73672
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Safe Security Exam -->9E0-131 CSI or 642-541 CSI [7:73971]

2003-08-14 Thread NKP
I can understand Andrew , i had missed mine by 3 percent as well in  the
first attempt , then cleared it on the second go .

-- 

Navin Parwal

MCSE,MCT,CCNP , CCDP,  CCSP, CCIE (R/S) # 12026
Technosys


""Andrew Larkins""  wrote in message
news:[EMAIL PROTECTED]
> Hi,
>
> From what I read on CCO regarding this cert is as follows:
>
> 1. Your CSS1 is valid for 2 years from the date you got it.
> 2. You have until 30 Sept 2003 to covert to CCSP otherwise when your CSS1
> expires (in 2 years) you have to rewrite all the exams again.
> 3. 9E0-131 is the exam to do before 30 Sept 03.
>
> I have my CSS1 and need to upgrade now. I tried the SAFE exam in April and
> missed by 1%. Been a little lazy since then, so now I have to write before
> end Sept 03.
>
> Regards
>
> Andrew
>
> -Original Message-
> From: Godswill Oletu [mailto:[EMAIL PROTECTED]
> Sent: 10 August 2003 05:54
> To: [EMAIL PROTECTED]
> Subject: Cisco Safe Security Exam -->9E0-131 CSI or 642-541 CSI
> [7:73795]
>
>
> Hi,
>
> I will appreciate comments from anyone who have recently written the Cisco
> SAFE exam. Since the 9E0-131 will be retired on 9/30/03, am thinking of
> taking
> the 642-541 exam. All I have is the 7 safe white papers.
>
> However, I think its only one of the white papers that deals with the exam
> topics, I will need inputs from people who are studying for the exam or
had
> written the exam already. Do one need to read all 7 white papers? Comments
> about the relevancy of the white papers to the exam would be appreciated
as
> well.
>
> I have put off this exam till this last minute, one have started studying
> for
> this exam, especially since one have just less than 2 months to upgrade
from
> CSS1 to CCSP else one will loss his CSS1 designation.
>
> Thanks.
> Godswill
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73971&t=73971
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


2x2610 vs 2600 + 3640: WAS Re: CCIE Lab Setup [7:73612]

2003-08-14 Thread
""Vijay Ramcharan""  wrote in message
news:[EMAIL PROTECTED]
> Not exactly related to this but...
> Are there any drawbacks to using (2) 2610s for a lab instead of a 2600
> and a 3640 router?


JMHO, what you should be looking for is sufficient ports to run complex
practice scenarios and routers capable of running the IOS version that is
current in the Lab. \specific models may or may not be of importance.

( as an aside, I laugh my ass off every time I read a post from someone
expressing worry about the announced changes in IOS and addition of a 3725
to the Lab. At least when the 3550 switch was introduced there was reason
for some apprehension, ans nono of the rental racks had a 3550 in them ).
after all, a router is a router, and the routing protocol commands will work
exactly the same on a 25xx, 26xx, 36xx, etc.

I'm currently focusing on 12.2.something.Tsomething 12.2.15(T5)
maybe -everything is off at the moment.

I don't know about the 2610, but the 2611 is capable of running dot1q and
ISL trunks, plus if you use the enterprise basic image you can do IS-IS,
BGP, and MPLS.


>
>
> Vijay Ramcharan
>
>
> -Original Message-
> From: Natchaya Radhikulkaralak [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 7:44 PM
> To: [EMAIL PROTECTED]
> Subject: Re: CCIE Lab Setup [7:73612]
>
>
> Doesnt the vConsole ISDN simulator able to use SPIDs?  Even though it is
> 525 dollars... I thought it did use spids.  When you state to use a
> "backbone" router... what do you mean?
>
> Thomas Larus wrote:
> >
> > With $1,000 dollars, I would first buy a 4 port frame switch router,
> > perhaps a 2520.  I say 2520, not 2521 (Token ring), because the
> > ethernet port on the
> > 2520 allows it to serve as an additional router-- perhaps a
> > "backbone"
> > router that you would connect to using ethernet. $200-$300, if
> > you are
> > lucky.
> >
> > A 4500 with a NP-4T might be even better (but loud!!)  This will take
> > perhaps 300 dollars or so.  You could add another 4 serial ints
> > and/or a
> > bunch of ethernet ints, and this could definitely serve as a
> > full-fledged
> > lab router as well as a frame switch.
> >
> > If you can find a cheap ISDN simulator (vConsole or Euro ISDN PBX
> > gizmo that only does Basic-Net3 and no spids) for $400-500, you
> > probably ought to buy
> > it, since you already have two ISDN capable routers.  Then a
> > 1900 or 2820
> > switch for $100 to $200 so you have a VLAN-capable switch.  If
> > you have
> > enough money left over, you could pick up one more 2501.
> > (Always buy a 2503
> > or 2514 if you can get it for a little more than a 2501, of
> > course.)
> >
> > It's not a first-rate lab, but it is enough of you to learn a lot of
> > the most difficult lessons. You could go for more routers and no
> > ISDN sim, but
> > ISDN can be such a tricky technology it is worth spending a lot
> > of time on.
> > This is a close call, though.
> >
> > Tom Larus, CCIE #10,014
> >
> >
> > ""David Power""  wrote in message
> > news:[EMAIL PROTECTED]
> > > Hello,
> > > I have three 2500 routers (2x2503 and 1x2514) with the budget
> > of 1000$ I
> > am
> > > planning to buy some more routers for my CCIE home lab. Which
> > routers or
> > > switches I must have ( with in my $ limits or couple hundred
> > more).
> > > Every suggestion will be appreciated
> > > David
> > >
> > >
> > _
> > > Protect your PC - get McAfee.com VirusScan Online
> > > http://clinic.mcafee.com/clinic/ibuy/campaign.asp?cid=3963
> > > **Please support GroupStudy by purchasing from the GroupStudy
> > Store:
> > > http://shop.groupstudy.com
> > > FAQ, list archives, and subscription info:
> > http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73855&t=73612
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


DECsever 700 [7:73910]

2003-08-14 Thread Wilson, Gavin (KBPB)
Morning 

I am busy setting up a lab at the moment and will be accessing all devices
by going through a DECserver 700  (16 RJ45 ports). Could anyone please point
me to a configuration manual for this particular dec server as well as the
correct cable specs for dec to cisco console port connection. Any advice
would be much appreciated.

Thanks Gavin




This email and any files transmitted with it are intended solely for the 
addressee(s) and may be legally privileged and/or confidential.  If you have 
received this email in error you may not copy, forward or use the contents, 
attachments or information in any way.  Please destroy it and contact the 
sender via our switchboard on +44(0) 20 7475 6600 or via return email.  Any 
unauthorised use or disclosure may be unlawful.  Kleinwort Benson Private
Bank
give no warranty as to the accuracy or completeness of this email after it
is
sent over the Internet and accept no responsibility for change made after it 
was sent.  Any opinions expressed in this email may be personal to the
author
and may not necessarily reflect the opinions of Dresdner Bank or its 
affiliates. They may also be subject to change without notice.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73910&t=73910
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Distribution Router and OSPF [7:73933]

2003-08-14 Thread alaerte Vidali
R1 is a ABR router; it connects to the backbone area and to area 50.
R2 is a distribution router connected to router R1 through area 50.

R2 connects to 4 other routers in area 50.

I am wondering if there are concerns about R2 being a distribution router
without connecting to area 0.

area 0 (R1)--area 50 ---(R2)--area 50(R3,R4,R5,R6) 


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73933&t=73933
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


redundant Ip circuits [7:73710]

2003-08-14 Thread Rolo tomassi
Hi all,

Does anyone have a list of carriers that provide redundant IP circuits for
backup or load-balancing ?

rgds,

U.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73710&t=73710
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


c4224 problems [7:73517]

2003-08-14 Thread Robert Kimble
I know these are discontinued and I would do well not to use them, but

The company I work for has 3 of them laying around and they want me to build
a test network using them.

I've been playing around with one and I can't seem to save the running
config?!

I've read the software config documents on cisco.com and tried both copy run
start and write mem.

Both say they are building the config and then [ok].

c4224#copy run start
Destination filename [startup-config]?
Building configuration...
[OK]
c4224#

(then just for the heck of it):

c4224#write mem
Building configuration...
[OK]
c4224#

Now if I reload or power cycle the c4224 it doesn't save the config.

It just askes me if I want the initial config dialog and the prompt goes
back to "gateway".

Also, when I create vlans they don't show up in the "show vlan" command. But
that's another issue I guess.

Any way, has anyone else had problems saving their configs on a c4224?

-Bobby








Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73517&t=73517
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: c4224 problems [7:73517]

2003-08-14 Thread Robert Kimble
D'oh!

You're right.

I had to recover the password when I first got the switch and I forgot to
set the conf reg back to 0x2102.

My mistake.

Thanks for the help!


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73532&t=73517
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: 3500XL - duplicate IP and Windows NT/2000 server [7:73868]

2003-08-14 Thread Jeremy Porter
You may be able to track the MAC address to a specific manufacturer.
That should narrow down the source (unless it is a softcoded MAC).  Here
is a link to the the ieee OUI company_id address assignments.
http://standards.ieee.org/regauth/oui/oui.txt

Jeremy Porter, CCNP, CCDP

-Original Message-
From: Firesox [mailto:[EMAIL PROTECTED] 
Sent: Tuesday, August 12, 2003 7:50 AM
To: [EMAIL PROTECTED]
Subject: Re: 3500XL - duplicate IP and Windows NT/2000 server [7:73868]


The log on NT says

Duplicate IP found with the mac address xx.xx.xx.xx.xx.xx

All NT servers say the same thing with same exact mac addrss, but I
cannot
find the mac address at all.

The log on the switches show nothing interesting.



Thanks

 wrote in message
news:[EMAIL PROTECTED]
> Searching CCO, connot find a thing. Do you have logging enabled, if
yes
what
> do the switches say? Try a protocol sniffer(receive span a problem
server
> port), sometimes it is nice to see ip handle things. And learn a
lot...
>
> What did the NT system log say?
>
> Tried newer IOS? (long shot)
>
> Martijn
>
> -Oorspronkelijk bericht-
> Van: Firesox [mailto:[EMAIL PROTECTED]
> Verzonden: maandag 11 augustus 2003 14:19
> Aan: [EMAIL PROTECTED]
> Onderwerp: 3500XL - duplicate IP and Windows NT/2000 server [7:73868]
>
>
> I have a bunch of 3500XL switches thruout my customer's lan.
> They are having a problem with unknown mac keep appearing and
disappearing
> from the network.
>
> I can trace the mac-address of the unknown station by "show mac" from
the
> swtich CLI.
> What's strange is that it appears at one switch, but a minute later it
> appears in the different switch.
>
> what's even more strange is that all NT/2000 servers log shows there
is an
> IP conflict with this mac address.
> Of course, the servers IP function stops due to this duplicate IP, but
comes
> back in a few minutes.
> All the servers report the duplicate IP comes from the same mac
address.
>
> Has anyone seen this problem?
>
> Thanks
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73920&t=73868
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: OSPF summary address with Null 0 [7:73500]

2003-08-14 Thread Shab Hanon
Can any one tell us how to block a default route?

it is easy to block other routes by using ACL with distribution-list But
how to remove the default route which is being advertised by  "
default-information originate always "  command.








""Reimer, Fred""  wrote in message
news:[EMAIL PROTECTED]
> From the CCIE Power Session:
>
> "Unless a question says so, you are not permitted to use**:
>
> Static routes (of any kind)
>
> Default routes
>
> **Dynamic routes to null are permitted"
>
> Floating statics are also allowed:
>
> "ip route 2.2.2.0 255.255.255.0 1.1.1.2 240
>
> * Uses a higher administrative distance so that dynamic protocols will
take
> precedence
>
> * Use only if explicitly allowed in a test question
>
> * Make sure the dynamic route actually exists when DDR is not active"
>
> HTH,
>
> Fred Reimer - CCNA
>
>
> Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
> Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050
>
>
> NOTICE; This email contains confidential or proprietary information which
> may be legally privileged. It is intended only for the named recipient(s).
> If an addressing or transmission error has misdirected the email, please
> notify the author by replying to this message. If you are not the named
> recipient, you are not authorized to use, disclose, distribute, copy,
print
> or rely on this email, and should immediately delete it from your
computer.
>
>
> -Original Message-
> From: Shab Hanon [mailto:[EMAIL PROTECTED]
> Sent: Tuesday, August 05, 2003 5:30 AM
> To: [EMAIL PROTECTED]
> Subject: OSPF summary address with Null 0 [7:73500]
>
> Hi everybody
> The case .. OSPF summary address with Null 0
>
> In all the case studies for CCIE R & S we told don't use static routes!
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


what are ip directed-broadcast and ip mroute-cache [7:73800]

2003-08-14 Thread Iwan Hoogendoorn
Can someone explain me what this is for and what is does?


ip directed-broadcast
ip mroute-cache

Thank You 

Iwan 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73815&t=73800
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: VPN Best Hardware to use? [7:73793]

2003-08-14 Thread [EMAIL PROTECTED]
You mean? newest:

DSL WAN Interface Cards 
WIC-1ADSL-I-DG 1-port ADSLoISDN WAN Interface Card 

cco partner login:

http://www.cisco.com/en/US/partner/products/hw/routers/ps221/products_data_s
heet09186a0080088713.html


Martijn 


-Oorspronkelijk bericht-
Van: Ryan Finnesey [mailto:[EMAIL PROTECTED]
Verzonden: woensdag 13 augustus 2003 3:57
Aan: [EMAIL PROTECTED]
Onderwerp: RE: VPN Best Hardware to use? [7:73793]


You are right it is a service offering.   Right now, we are using ISDN
dial-up and would like to move to a full time connection.  We would not be
using the customerbs connection but will be installing a 144K IDSL or 192K
SDSL line.  What I am going to do on Friday in the lab ( If we get the lines
from Covad on time) is use a 7200 at the head end and a 1700 on the other
end run the IPSec and NAT on the 1700 and see how that goes.  The only
problem is I cannot find an IDSL WIC on CCO I only see an ADSL and SDSL.

 

 

Ryan

 
 
Message- 
From: [EMAIL PROTECTED] on behalf of Reimer, Fred 
Sent: Mon 8/11/2003 10:02 AM 
To: [EMAIL PROTECTED] 
Cc: 
Subject: RE: VPN Best Hardware to use? [7:73793]



I would certainly hope that the remotes wouldn't use different
platforms. 
I
don't know the business model, but it sounds to me like it's some
kind of 
service offering or something.  Maybe they have a 2000 site Frame
Relay 
network used to offer a service or something, and they want to
switch to 
something more economical.  Instead of paying monthly circuit fees,
pay a 
one-time hardware cost (assuming they don't own the FR routers at
the 
customer end) and use the customer's Internet connection.  Why in
the world 
would you want different hardware at each customer site in that
situation? 
Standardize on one hardware platform, and build the cost of that
hardware 
into the business model... 

If that's the case then the cost of a 3005 can be justified in a
small 
number of months, depending on your FR cost.  Certainly you would
recoup 
your cost and start making more money, due to less operating cost, 
relatively quickly. 

Now, if this is something else, like a company with 2000 offices
throughout 
the world, then I can see your point and you may end up with
different 
requirements.  But, that's not how it sounds so far. 

Fred Reimer - CCNA 


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338 
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050 


NOTICE; This email contains confidential or proprietary information
which 
may be legally privileged. It is intended only for the named
recipient(s). 
If an addressing or transmission error has misdirected the email,
please 
notify the author by replying to this message. If you are not the
named 
recipient, you are not authorized to use, disclose, distribute,
copy, print 
or rely on this email, and should immediately delete it from your
computer. 


-Original Message- 
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] 
Sent: Monday, August 11, 2003 6:57 AM 
To: [EMAIL PROTECTED] 
Subject: RE: VPN Best Hardware to use? [7:73793] 

Despite all hw issues, you really need to 
- describe the business req's first 
- translate to technical req's 

(you are talking 2000+ sites) 

And you will see that you'll need more than one platform for de
Remotes. 

Dependig on your hierarchy concerning 
- messaging 
- authentication 
- client-server 
- webapps 
- desktop/register maintenance/management 
- security man 

You will need to or may want to build an hierarchical design. Keep
in mind 
that differen platfroms use different (HQ) fail-over or 2nd ip
techniques. 

Martijn 


-Oorspronkelijk bericht- 
Van: Ryan Finnesey [mailto:[EMAIL PROTECTED] 
Verzonden: zondag 10 augustus 2003 4:36 
Aan: [EMAIL PROTECTED] 
Onderwerp: VPN Best Hardware to use? [7:73793] 


I need to setup VPNs to about 2000 sites.  Each site will have an
IDSL line 
installed that will be used to connect to monitor network devices
and 
servers.  Some of the remote networks will be using the same network
block. 
I am looking to know what the best hardware to use on each end is.
On my 
end, would it be better to use a PIX or a 3030?  On the remote end,
I was 
looking at a PIX 501, SOHO 91 or the 831? 


Thank you 


Ryan 
**Please support GroupStudy by purchasing from the GroupStudy Store:

http://shop.groupstudy.com 
FAQ, list archives, and subscription info: 
http://www.groupstudy.com/list/cisco.html 
**Please support GroupStudy by purchasing from t

Re: tcp [7:73518]

2003-08-14 Thread [EMAIL PROTECTED]
On Tuesday, August 5, 2003, at 10:14  AM, Howard C. Berkowitz wrote:
>
>
>> 2.Can receiver send ack before whole window comes in?
>
> Not for the window it's receiving, but for a previous window.
>
Unless you're Microsoft.

http://grotto11.com/blog/slash.html?+1039831658

This isn't to make this a MS-bashing thread.  More for information 
purposes that there are implementations out there that don't follow 
RFCs exactly, and there are some that practically throw them out the 
window.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73542&t=73518
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: GuideLine book for CCIE Written [7:73925]

2003-08-14 Thread Dennis Laganiere
Just because someone has something nice to say doesn't mean it was
self-generated... :-)

Thank you for the kind words Doug; I hope you do well on the exam...

--- Dennis Laganiere

- Original Message -
From: "Kaminski, Shawn G" 
To: 
Sent: Tuesday, August 12, 2003 1:57 PM
Subject: RE: GuideLine book for CCIE Written [7:73925]


> Who's Doug? Dennis' clone? :-)
>
> Shawn K.
>
> -Original Message-
> From: Thomas Larus [mailto:[EMAIL PROTECTED]
> Sent: Tuesday, August 12, 2003 1:51 PM
> To: [EMAIL PROTECTED]
> Subject: Re: GuideLine book for CCIE Written [7:73925]
>
> Look into Dennis Laganiere's and Brad Ellis' Study Guide for the CCIE
> written.  I got a deal on it through Amazon.com. "Laganiere" makes a good
> search term.
>
> Check out Dennis Laganiere's website, too.  www.laganiere.net  I am amazed
> how much advice he gives away.  As someone who is almost finished with a
> book of advice and learning labs, I can say that the amount of advice he
> gives away for free convinced me that I could not write a little book with
> just advice about preparing for the CCIE.  Thus, the advice is a small
part
> of my book, and the scenarios and explanations of the scenarios are the
> major part.
>
> Thanks, Doug, for making me work harder.
>
> Tom Larus, CCIE #10,014
>
>
> ""Piedrahita Orlando""  wrote in message
> news:[EMAIL PROTECTED]
> > Hi all my name is Orlando, and i am starting to peruse the CCIE written,
I
> > am aware that there is no magic book to prepare you for the test, i am
> > however looking for a book to be used as an "OUTLINE" to study.
Currently
> i
> > have bought the TCP IP Vol1 TCP IP Vol2 by Jeff Doyle and Lan switching
> from
> > CCIE Development by Kennedy Clark, Kevin Hamilton
> > Any recomendations, thank you!
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73957&t=73925
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: 7206 T1 Interface Cards [7:73739]

2003-08-14 Thread M.C. van den Bovenkamp
[EMAIL PROTECTED] wrote:

> Quick question, does anyone know off the top of their head if you can hot
> swap cards in a 7206? Has anyone done it?

Yes and yes.

Regards,

Marco.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73742&t=73739
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


VLAN Access maps and bridge ACLs [7:73844]

2003-08-14 Thread Dennis Laganiere
Does anybody have any good links for VLAN Access maps and bridge ACLs?  I've
gone through my Cisco library and the CCO, and haven't found much...

Thanks in advance for any help...

--- Dennis




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73844&t=73844
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Loopback Interface [7:73305]

2003-08-14 Thread Wilmes, Rusty
n_guide_chapter09186a0080087da4.html#3302

-Original Message-
From: Robert Edmonds [mailto:[EMAIL PROTECTED]
Sent: Tuesday, August 05, 2003 9:47 AM
To: [EMAIL PROTECTED]
Subject: Re: Loopback Interface [7:73305]


You gentlemen have pointed out some good uses for loopback interfaces.
However, my dilema still remains that I have yet to have somebody solidly
explain loopback interfaces in a way that my simple mind can understand.  I
have also been unsuccessful in finding any website that accomplish this.
Any takers?

Robert

""p b""  wrote in message
news:[EMAIL PROTECTED]
> terminate iBGP sessions on
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73568&t=73305
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: PIX translation problem [7:72567]

2003-08-14 Thread Reimer, Fred
Well, it depends on how big your global pool is.  Most people likely don't
have more than a Class C public address space from their ISP, so it's likely
less than 250 (because of static mappings for DMZ hosts).  If you use NAT,
then there is a one-to-one mapping from an internal host to an external IP
address in the pool.  If you use PAT, then you map many internal hosts to
one external IP address (up to 64,000, but more like 4,000 in practice).

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: Lynne Padgett [mailto:[EMAIL PROTECTED] 
Sent: Friday, August 08, 2003 11:15 AM
To: Reimer, Fred; [EMAIL PROTECTED]
Subject: RE: PIX translation problem [7:72567]

What is the maximum number of translations in a global pool on a PIX?  I
didn't realize there was a cap.  I was under the impression that the
number of translations was directly related to the PIX user/connection
license.

-Original Message-
From: Reimer, Fred [mailto:[EMAIL PROTECTED] 
Sent: Thursday, August 07, 2003 5:01 PM
To: [EMAIL PROTECTED]
Subject: RE: PIX translation problem [7:72567]

No, but I know what it means.  What kind of NAT are you doing?  A global
pool, or a single address doing PAT?  If it's a pool, then you can
define a
single address (or interface) to do PAT when the global pool runs out.
Or,
if you already have PAT and that is being exhausted, then you can define
a
backup PAT address in case the first PAT address is exhausted.

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information
which
may be legally privileged. It is intended only for the named
recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy,
print
or rely on this email, and should immediately delete it from your
computer.


-Original Message-
From: Greg Owens [mailto:[EMAIL PROTECTED] 
Sent: Friday, July 18, 2003 8:33 AM
To: [EMAIL PROTECTED]
Subject: PIX translation problem [7:72567]

have anybody seen this message.

07-15-2003  13:55:38Local4.Error192.168.1.1 Jul 15
2003
09:53:35:
%PIX-3-202001: Out of address translation slots!

  I told the customer to change the translation time-out


Greg Owens
202-398-2552

[GroupStudy removed an attachment with a content-type header it could
not
parse.]
[Content-Type: null; name="replyAll"]
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73733&t=72567
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: CCNP and future CCIE lab setup [7:73696]

2003-08-14 Thread Daniel Cotts
You have a great start. Let's consider what you have. The 2500s are great.
In time, you will want to load an Enterprise version of IOS. That requires
16 MB Flash and 16 MB DRAM. There are many sources of third party DRAM and
Flash - check the archives.
You didn't say if the 2600s had any WIC cards. Two WIC-1Ts in each would be
great. I recently bought several at an average price of $50 each. Just be
patient.
Again, verify how much Flash and DRAM you need for all your routers to run
the images you want.
Back-to-back serial cables. Again several sources. I have purchased from Bob
Lowery, [EMAIL PROTECTED] Good prices and great service. Length depends on
how you group your routers. Three foot (one meter) is handy if the routers
are close together. Six foot or ten foot might also be useful.
Ethernet cables. You'll want some crossover cables. May I suggest making
some very short ones with a plug on one end and a jack on the other. Then
add a regular patch cord of the desired length to meet your needs.
Consider racking your equipment. Besides the full height racks you may have
at work, there are short portable racks made for musicians. The rack is part
of a shipping container. The discussions about these on groupstudy indicated
they were quite reasonably priced.
If you start with Routing, I would think that you have everything you need.
I'll assume, without checking, that the 8 A/S module has DB-60 interfaces.
Later when you do Remote Access an ISDN simulator would be a great addition.
CCO has many resources. There are many great books. Consider some of those
mentioned often on the list. Doyle "Routing TCP/IP" Vols I and II, "Cisco
LAN Switching" by Clark and Hamilton, the Cisco Press books for the
Networking Academy courses, etc.
Good luck and have fun. 

> -Original Message-
> From: Natchaya Radhikulkaralak [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 6:46 PM
> To: [EMAIL PROTECTED]
> Subject: CCNP and future CCIE lab setup [7:73696]
> 
> 
> Like the other person previously... I am trying to build a lab.
> 
> I am personally starting my Cisco track but I have recieved 
> some routers
> from my work.
> 
> I personally have 2-2501, 3-2503, 1-2504, 1-as2511-rj(which I 
> dont know how
> to use), 1-2611, 1-2612, 1-3640 w/ 8 a/s module: 2ME-2W 
> module: 4-port ISDN
> Bri module (dont know module name), 2-2912, 1-2950.
> 
> Can you also give me any suggestions?  Larus has mentioned a 
> backbone router
> but isnt the 3640 sufficient?  Overall... is there anything 
> else that i need
> to improve this other than 3550 switches which are way out of 
> my budget!!!?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73734&t=73696
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Access server 2511 Reverse Telnet [7:73656]

2003-08-14 Thread Wallis Short
Hi Oliver
Many thanks for your reply. Just to clarify, I am using the Octal cable to
connect to the console of the switch. Are you saying I should connect a
crossover cable to the end of the octal cable and then connect the cross
over into the console port of the switch ??
Cheers
Wallis


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73663&t=73656
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: what are ip directed-broadcast and ip mroute-cache [7:73842]

2003-08-14 Thread \"\"[EMAIL PROTECTED]"\"
A quick explanation- please add on...

Mroute is for the multicast routing table...

Ip directed-boradcast allows a host to direct a physical broadcast to a
specific subnet it only effects broadcast medium...

-Original Message-
From: Iwan Hoogendoorn [mailto:[EMAIL PROTECTED] 
Sent: Sunday, August 10, 2003 9:25 AM
To: [EMAIL PROTECTED]
Subject: what are ip directed-broadcast and ip mroute-cache [7:73800]


Can someone explain me what this is for and what is does?


ip directed-broadcast
ip mroute-cache

Thank You 

Iwan 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html



For more information about Barclays Capital, please
visit our web site at http://www.barcap.com.


Internet communications are not secure and therefore the Barclays 
Group does not accept legal responsibility for the contents of this 
message.  Although the Barclays Group operates anti-virus programmes, 
it does not accept responsibility for any damage whatsoever that is 
caused by viruses being passed.  Any views or opinions presented are 
solely those of the author and do not necessarily represent those of the 
Barclays Group.  Replies to this email may be monitored by the Barclays 
Group for operational or business reasons.


**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73842&t=73842
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Bad mask /24 for address ???? [7:73801]

2003-08-14 Thread Brian W.
In the old classful world, 10. addresses had a class a 255.0.0.0 mask, you
tried ip classless in your config?

Brian

- Original Message - 
From: "Iwan Hoogendoorn" 
To: 
Sent: Sunday, August 10, 2003 6:27 AM
Subject: Bad mask /24 for address  [7:73801]


> I was trying to assign an IP address with an subnetmask to the interface
E0
> and i got this strange message:
>
> Bad mask /24 for address 10.0.0.10
>
>
> here is what i did:
>
> RouterA(config)#int e0
> RouterA(config-if)#ip add 10.0.0.10 255.255.255.0
> Bad mask /24 for address 10.0.0.10
>
>
> Can someone tell me what i did wron ...this is suposing to work right?
>
> Thank You
>
> Iwan
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73822&t=73801
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Distribution Router and OSPF [7:73933]

2003-08-14 Thread Reimer, Fred
Why would there be?  Not unless R3-R6 are in a different area, in which case
they would need to create a Virtual Link to R1.

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: alaerte Vidali [mailto:[EMAIL PROTECTED] 
Sent: Tuesday, August 12, 2003 1:42 PM
To: [EMAIL PROTECTED]
Subject: Distribution Router and OSPF [7:73933]

R1 is a ABR router; it connects to the backbone area and to area 50.
R2 is a distribution router connected to router R1 through area 50.

R2 connects to 4 other routers in area 50.

I am wondering if there are concerns about R2 being a distribution router
without connecting to area 0.

area 0 (R1)--area 50 ---(R2)--area 50(R3,R4,R5,R6) 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73941&t=73933
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: VPN Conncetion from Windows Client to nt domain [7:73720]

2003-08-14 Thread Reimer, Fred
Go in the client and choose Options | Windows Logon Properties and make sure
the "Enable start before logon" checkbox is checked.  Download the latest
client.  Enjoy.

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: Kai Bovermann [mailto:[EMAIL PROTECTED] 
Sent: Friday, August 08, 2003 8:05 AM
To: [EMAIL PROTECTED]
Subject: VPN Conncetion from Windows Client to nt domain [7:73720]

Dear all

We have a cisco vpn concentrator 3000 series for vpn connection.
What we want to do is to establish a vpn conncetion from a windows
client(W2k or WinXP Pro) to the concentrator and then log on to our domain
and then get the shares connected to the pc.
I created a vpn connection and it works proberbly. Only the log on to the
domain will not work.
It should go like this way that the user is logged on to the pc and then if
it is needed establish the vpn connection and get also logged on to the
domain and get the shares connected to the pc.

How can I do this ?

Thanks a lot

Kai
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73728&t=73720
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: mrtg [7:73702]

2003-08-14 Thread Dom
I have a word document I wrote a number of years ago describing how to
do this. Please email me if you require a copy. It is too long to paste
in this email.

Best regards,

Dom Stocqueler
SysDom Technologies
Visit our website - www.sysdom.org

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
Dan Metheny
Sent: 08 August 2003 06:49
To: [EMAIL PROTECTED]
Subject: Re: mrtg [7:73702]


This is actually quite simple - all you need to do is
have all of your individual node .cfg data go to the
same file (mrtg.cfg) instead of individual ones.  As
you go along, the data will simply append to the end
of your existing mrtg.cfg file.  In my most recent job
(aka I am now looking!) I had about 30 routers
configured in a single mrtg.cfg file.  As a side note,
MRTG integrates really well into What's Up Gold,
creating a nice "clickable" map that somewhat
resembles HP OpenView's Network Node Manager.

Dan Metheny

--- John Brandis  wrote:
> Hey All,
> 
> Still going with my traffic analysis. God a small
> problem with MRTG.
> Does any one here know how to integrate the output
> of multiple nodes
> through the instance of a single mrtg.cfg file? At
> the moment, I am
> using multiple mrtg.cfg. fles and have a hard tme
> navigating between all
> the different nodes..
> 
> John
> 
> 
> 
> 
> 
>
**
> This email and any files transmitted with it are
> confidential and
> intended solely for the use of the individual or
> entity to whom they
> are addressed. If you have received this email in
> error please notify
> the system manager.
> 
> This footnote also confirms that this email message
> has been swept by
> MIMEsweeper for the presence of computer viruses. www.solution6.com
>
**
> **Please support GroupStudy by purchasing from the
> GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html


__
Do you Yahoo!?
Yahoo! SiteBuilder - Free, easy-to-use web site design software
http://sitebuilder.yahoo.com
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73718&t=73702
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: 3500XL - duplicate IP and Windows NT/2000 server [7:73868]

2003-08-14 Thread Tom Martin
As far as the duplicate MACs go, it sounds like you have a layer-2 loop. 
Especially considering that all of your servers are experiencing the 
problem. When they ARP to verify that no other station has their IP, 
they see their own ARP and assume that another station is doing the same 
thing.

Layer-2 Loops will also cause MACs to appear to be sourced from 
different switches in the network.

Is STP enabled everywhere? Mismatched channelling will also cause the 
same behavior.

Firesox wrote:
> I have a bunch of 3500XL switches thruout my customer's lan.
> They are having a problem with unknown mac keep appearing and disappearing
> from the network.
> 
> I can trace the mac-address of the unknown station by "show mac" from the
> swtich CLI.
> What's strange is that it appears at one switch, but a minute later it
> appears in the different switch.
> 
> what's even more strange is that all NT/2000 servers log shows there is an
> IP conflict with this mac address.
> Of course, the servers IP function stops due to this duplicate IP, but
comes
> back in a few minutes.
> All the servers report the duplicate IP comes from the same mac address.
> 
> Has anyone seen this problem?
> 
> Thanks
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73892&t=73868
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-14 Thread Cisco Nuts
Here is what I think is the trick to understand Halabi:

It is NOT for entry level people nor is it for people who use it as a
study book for any exam.

That is why the book is called "Internet Routing Architectures" not "BGP
cram session book for the CCXX exams"..The word Architectures should
mean something, right?

I have found out that the book really makes sense after you work with BGP
in your job on a day-to-day basis. Atleast, it did for me and now I have
read it many times and still refer to it once in a while, when I try to
help some customers with their BGP configs and issues. Initially, I found
it hard to comprehend so I do feel other's pain :-(

Yes, please do not be so harsh about any author. Where in the book does
it say that it should be used a study guide for any exam, even the CCIE
is NOT mentioned. So how can you be so harsh about it. It is indeed
called the Bible for a reason. And same of his OSPF design guide.

I have used Caslow, Stewart, Halabi, Doyle and Parkhurst and  best of all
Cisco's BGP case studies. They are all good books/materials and should be
used accordingly.

As I always tell people, BGP is NOT for the faint-hearted :-)

And, yes, the BGP beta exam was one of the most difficult exams that I
took but managed to get a 857.

Peace.   No flames please !!

Just my 2 cents!!

CN

>From: "John Neiberger" >Reply-To: "John Neiberger" >To:
[EMAIL PROTECTED] >Subject: Re: Cisco BGP Exam [7:73516] >Date: Wed, 6
Aug 2003 01:59:34 GMT > >Hmm...that's interesting. I found Halabit to be
very easy to understand, but >that was after reading Stewart. Stewart's
book is incredibly easy to >understand, especially considering how short
it is. Quite concise, yet >readable. > >I have Doyle Vol. II but I
stopped studying for attempt #2 before I got to >the BGP section. I
should read through it as a refresher and to compare it >to Halabi. >
>But Dre? Despise?? :-) That's pretty harsh! However, I guess I can
>understand your point. BGP can be pretty easy to understand when it's
>explained correctly, and can be very difficult to understand when
explained >poorly. > >John > >""Pintens, Koen"" wrote in message
>news:[EMAIL PROTECTED] > > I agree with Dre
> > I also got both books and Jeff Doyle's is so much easier to read and
> > understand then Halabi's > > > > Koen Pinten > > Network Engineer > >
> > CCNP CCDP MCSE MCSA MCDBA > > > > > -Original Message- > > >
From: dre [SMTP:[EMAIL PROTECTED] > > > Sent: Wednesday, August 06,
2003 10:55 AM > > > To: [EMAIL PROTECTED] > > > Subject: Re: Cisco BGP
Exam [7:73516] > > > > > > ""juniper"" wrote in message ... > > > > Can
anyone recommend a good book for the BGP exam > > > > > > I personally
despise Halabi's "authortative, the BGP-bible" IRA > > > book. It is
awful. It is the sole reason nobody understands BGP. > > > It's
confusing, boring, and downright awful to read and understand > > > such
simple concepts. > > > > > > I passed the Cisco BGP exam (took the beta),
and I did not even > > > open Halabi or Stewart (I do like Stewart, but
for this exam, his > > > information is not really on-topic). > > > > > >
Normally, I'd say read the RFC's, but they are also not going to > > >
help you on this exam. > > > > > > I used > > > a) the outline provided
by Cisco > > > b) Jeff Doyle's TCP/IP Routing Volume II (first 318 pages)
> > > > > > Jeff Doyle is the master of routing protocols...this
misconception > > > that Volume II was not as good as Volume I reminds me
of 14 > > > year old pimply-faced kids arguing about Star Wars vs. Empire
> > > or Matrix 1 vs. Matrix: Reloaded. These are all good movies... > >
> however, Star Wars: Episode I and II are more remniscient of > > >
HalabiIMO. > > > > > > -dre > > > **Please support GroupStudy by
purchasing from the GroupStudy Store: > > > http://shop.groupstudy.com >
> > FAQ, list archives, and subscription info: > >
http://www.groupstudy.com/list/cisco.html > > > > > >
** >
> This electronic message together with any attachments is confidential.
If > > you receive it in error: (i) you must not use, disclose, copy or
retain > > it; (ii) please contact the sender immediately by reply email
and then > > delete the emails. Views expressed in this email may not be
those of the > > Airways Corporation of New Zealand Limited > >
** >
> **Please support GroupStudy by purchasing from the GroupStudy Store: >
> http://shop.groupstudy.com > > FAQ, list archives, and subscription
info: >http://www.groupstudy.com/list/cisco.html > > > > >Message Posted
at: >http://www.groupstudy.com/form/read.php?f=7&i=73577&t=73516
>-- >**Please support
GroupStudy by purchasing from the GroupStudy Store:
>http://shop.groupstudy.com >FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html


Thank you m.m.jansen02@kpn.com [7:73657]

2003-08-14 Thread Joseph R. Taylor
Martijn,
   Your response to the 2620XM WIC-1DSU-T1 cable pinout was very helpful.
Thank you,
   JoeT  MCSE, CCNP


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73657&t=73657
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


  1   2   3   4   >