Re: Passed CSIDS - now a CSS1 [7:41227]

2002-04-15 Thread Avi

Hi,

Congrats Gravy on becoming a CSS1.

Can u pls tell me for these exams which Boson exams did u use, i mean Exam 1
or 2 or 3 ???
How much did these Boson exams help u in preparing for these exams ???
How much time it took to prepare n clear all these 4 exams ???

Thanxs & Rgds,
Avtar.

"Chewy Gravy"  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Just finished the CSIDS exam, completing the series of four to become a
CSS1.
>
> My take, if anyone is interested, is below, and tests are in the order I
> took them:
>
> MCNS - I'm glad I took this one first, as it covered all the material of
> the next two exams.
> CSPFA - A slightly more focused rehash of MCNS. I referred back to MCNS
> quite a bit to clarify info.
> CSVPN - Again, most everything was covered in CSPFA and MCNS
> CSIDS - All in all, the easiest of the exams.
>
> In all cases, the only prep material I had was the courseware and Boson
> exams. I've worked with the Pix for 3 years, but unfortunately have no
> hands-on exposure to the CSDIS hardware.
>
> Almost all the tests were difficult, none terribly so, and the CSIDS exam
> was just this side of a joke. The tests were also better written than the
> CCNP/CCNA exams I've taken.
>
> If I wasn't so tired, this would be louder: woo hoo.
>
>
> Doug
> [EMAIL PROTECTED]
> =




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=41478&t=41227
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Question on PIX !!! [7:40489]

2002-04-05 Thread Avi

Hi,

I am facing a problem on PIX 515 as described below.
Firewall: Cisco PIX 515
Firewall Software Version: 4.4(7)

PIX setup:
--

Host   Mail Server
216.6.24.130   216.6.24.185  (216.6.24.0 => Public AddressesValid
Internet Addresses)
 |   |
 ---
|
|
|
| - 216.6.24.130   255.255.255.192
 PIX
| - 192.168.2.14 /30
|
|
| - 192.168.2.14 /30
Inside
   Router
| - 192.168.2.6 /30
|
|
| - 192.168.2.5 /30
  ISP
Router
|
| | Proxy
192.118.52.54
| |  Server
|
|| |   |



PIX Configuration:


PIX Version 4.4(7)
nameif ethernet0 outside security0
nameif ethernet1 inside security100
enable password 8Ry2YjIyt7RRXU24 encrypted
passwd AoM2ZahaIYl9kEoj encrypted
hostname nungunungu
fixup protocol ftp 21
fixup protocol http 80
fixup protocol h323 1720
fixup protocol rsh 514
fixup protocol smtp 25
fixup protocol sqlnet 1521
names
pager lines 24
logging on
no logging timestamp
no logging console
no logging monitor
no logging buffered
no logging trap
logging facility 20
logging queue 512
interface ethernet0 auto
interface ethernet1 100basetx
mtu outside 1500
mtu inside 1500
ip address outside 192.168.2.14 255.255.255.252
ip address inside 216.6.24.129 255.255.255.192
no failover
failover timeout 0:00:00
failover ip address outside 0.0.0.0
failover ip address inside 0.0.0.0
arp timeout 14400
nat (inside) 0 216.6.24.0 255.255.255.0 0 0
static (inside,outside) 192.168.2.0 216.6.24.0 netmask 255.255.255.0 0 0
conduit permit tcp host 216.6.24.177 eq smtp any
conduit permit tcp host 216.6.24.186 eq smtp any
conduit permit tcp any host 192.118.52.54 eq www
conduit permit icmp any any
conduit permit tcp host 216.6.24.189 host 216.6.24.5 eq ftp
conduit permit tcp host 216.6.24.189 host 216.6.24.5 eq ftp-data
conduit permit tcp host 216.6.24.185 host 216.6.24.40 eq smtp
conduit permit tcp host 216.6.24.185 host 216.6.24.10 eq smtp
conduit permit tcp host 216.6.24.185 host 216.6.24.5 eq smtp
conduit permit tcp host 216.6.24.185 host 216.6.24.19 eq 5001
conduit permit tcp host 216.6.24.185 host 216.6.24.10 eq 5001
conduit permit tcp host 216.6.24.185 host 216.6.24.5 eq 5001
conduit permit tcp host 216.6.24.184 host 216.6.24.21 eq 3306
conduit permit tcp host 216.6.24.184 host 216.6.24.28 eq 3306
conduit permit tcp host 216.6.24.10 eq domain any
conduit permit tcp host 192.118.52.54 eq 8080 any
conduit permit tcp host 192.118.52.54 eq 3180 any
conduit permit tcp host 192.118.52.54 eq www any
no rip outside passive
no rip outside default
no rip inside passive
no rip inside default
route outside 0.0.0.0 0.0.0.0 192.168.2.13 1
route inside 216.6.24.128 255.255.255.192 216.6.24.129 1
timeout xlate 3:00:00 conn 1:00:00 half-closed 0:10:00 udp 0:02:00
timeout rpc 0:10:00 h323 0:05:00
timeout uauth 0:05:00 absolute
aaa-server TACACS+ protocol tacacs+
aaa-server RADIUS protocol radius
no snmp-server location
no snmp-server contact
snmp-server community mic-test-03
no snmp-server enable traps
telnet 216.6.24.16 255.255.255.255
telnet timeout 15
terminal width 80


PROBLEM:
--

>From host 216.6.24.130 i am able to ping inside interface of the PIX but i
am not able to ping the outside inetrface, nor am i able to ping the inside
router. Sitting on the PIX i am able to to ping the inside host 216.6.24.130
and the servers, also i am able to ping ISP router and the Proxy server at
ISP premieses.

Why is my inside host not able to go beyond the inside interface of PIX ?
Have i missed on some configuration or have i typed certain command wrongly.
As 216.6.24.0 network are valid ip addresses so i don't want to use NAT.

Kindly assist me on this.

Thanxs & Rgds,
Avi.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=40489&t=40489
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



PIX Question !!! [7:40465]

2002-04-04 Thread Avi

Hi,

I am facing a problem on PIX 515 as described  below.
Firewall: Cisco PIX 515
Firewall Software Version: 4.4(7)

PIX setup:
-


  H - 216.6.24.130  255.255.255.192
   |
   |Public Accessed Servers(216.6.24.0 - Public
addresses)
   |
   | - 216.6.24.129  255.255.255.192
PIX
   | - 192.168.2.14 /30
   |
   |
   | - 192.168.2.13 /30
  R
   | - 192.168.2.6 /30
   |
   |
   | - 192.168.2.5 /30
  R   (ISP Router)
   |
   |
   |Proxy Server
   |  192.118.52.54

Following is the config:
--
PIX Version 4.4(7)
nameif ethernet0 outside security0
nameif ethernet1 inside security100
enable password 8Ry2YjIyt7RRXU24 encrypted
passwd AoM2ZahaIYl9kEoj encrypted
hostname nungunungu
fixup protocol ftp 21
fixup protocol http 80
fixup protocol h323 1720
fixup protocol rsh 514
fixup protocol smtp 25
fixup protocol sqlnet 1521
names
pager lines 24
logging on
no logging timestamp
no logging console
no logging monitor
no logging buffered
no logging trap
logging facility 20
logging queue 512
inerface ethernet0 auto
interface ethernet1 100basetx
mtu outside 1500
mtu inside 1500
ip address outside 192.168.2.14 255.255.255.248
ip address inside 216.6.24.129 255.255.255.192
no failover
failover timeout 0:00:00
failover ip address outside 0.0.0.0
failover ip address inside 0.0.0.0
arp timeout 14400
nat (inside) 0 216.6.24.0 255.255.255.0 0 0
static (inside,outside) 192.168.2.13 216.6.24.129 netmask 255.255.255.255 0
0
conduit permit tcp host 216.6.24.177 eq smtp any
conduit permit tcp host 216.6.24.186 eq smtp any
conduit permit tcp any host 192.118.52.54 eq www
conduit permit icmp any any
conduit permit tcp host 216.6.24.189 host 216.6.24.5 eq ftp
conduit permit tcp host 216.6.24.189 host 216.6.24.5 eq ftp-data
conduit permit tcp host 216.6.24.185 host 216.6.24.40 eq smtp
conduit permit tcp host 216.6.24.185 host 216.6.24.10 eq smtp
conduit permit tcp host 216.6.24.185 host 216.6.24.5 eq smtp
conduit permit tcp host 216.6.24.185 host 216.6.24.19 eq 5001
conduit permit tcp host 216.6.24.185 host 216.6.24.10 eq 5001
conduit permit tcp host 216.6.24.185 host 216.6.24.5 eq 5001
conduit permit tcp host 216.6.24.184 host 216.6.24.21 eq 3306
conduit permit tcp host 216.6.24.184 host 216.6.24.28 eq 3306
conduit permit tcp host 216.6.24.10 eq domain any
conduit permit tcp host 192.118.52.54 eq 8080 any
conduit permit tcp host 192.118.52.54 eq 3180 any
conduit permit tcp host 192.118.52.54 eq www any
no rip outside passive
no rip outside default
no rip inside passive
no rip inside default
route outside 0.0.0.0 0.0.0.0 192.168.2.13 1
route inside 0.0.0.0 0.0.0.0 216.6.24.129 1
timeout xlate 3:00:00 conn 1:00:00 half-closed 0:10:00 udp 0:02:00
timeout rpc 0:10:00 h323 0:05:00
timeout uauth 0:05:00 absolute
aaa-server TACACS+ protocol tacacs+
aaa-server RADIUS protocol radius
no snmp-server location
no snmp-server contact
snmp-server community mic-test-03
no snmp-server enable traps
telnet 216.6.24.16 255.255.255.255
telnet timeout 15
terminal width 80

PROBLEM


My problem is frm host 216.6.24.130  I can ping inside interface of PIX, but
I can't ping outside interface of PIX nor the internal router.
Also i am not able to ping the proxy server.
Sitting on the PIXI  am able to ping inside as well as outside, even the
Proxy server. Also outside hosts are able to reach the host 216.6.24.130.

Can someone pls throw some light on this as to where i am going wrong or i
am missing on some command.

Ur kind help will  be appreciated a lot.

Thanxs & Rgds,
Avi.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=40465&t=40465
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Question on PIX [7:40146]

2002-04-02 Thread Avi

Hi,

All the inside addresses are valid internet IP addresses i.e. 216.6.24.189,
so i need not do Nating.

Thanxs & Rgds,
Avi.

""[EMAIL PROTECTED], Jason Contractor (NSANAP N63)""
 wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Avi,
>
> Your not doing any type of nat translation for the inside network.  If you
> are not doing any Nat translations then the hosts inside will never be
able
> to get outside.
>
> -Original Message-
> From: Avi [mailto:[EMAIL PROTECTED]]
> Sent: Tuesday, April 02, 2002 9:01 AM
> To: [EMAIL PROTECTED]
> Subject: Question on PIX [7:40146]
>
> Hi,
>
> I am facing a problem on PIX 515 as described  below.
> Firewall: Cisco PIX 515
> Firewall Software Version: 4.4(7)
>
> PIX setup:
> -
>
> Host:
> 216.6.24.189
>
> ---R---PIX
--
> -R---
> 216.6.24.175172.16.10.1/30   172.16.10.2/30 192.168.2.6/30
> 192.166.2.5/30
>
>
> Following is the config:
> --
> PIX Version 4.4(7)
> nameif ethernet0 outside security0
> nameif ethernet1 inside security100
> hostname nungunungu
> fixup protocol ftp 21
> fixup protocol http 80
> fixup protocol h323 1720
> fixup protocol rsh 514
> fixup protocol smtp 25
> fixup protocol sqlnet 1521
> names
> pager lines 24
> logging on
> no logging timestamp
> no logging console
> no logging monitor
> no logging buffered
> no logging trap
> logging facility 20
> logging queue 512
> interface ethernet0 100basetx
> interface ethernet1 100basetx
> mtu outside 1500
> mtu inside 1500
> ip address outside 192.168.2.6 255.255.255.252
> ip address inside 172.16.10.2 255.255.255.252
> no failover
> failover timeout 0:00:00
> failover ip address outside 0.0.0.0
> failover ip address inside 0.0.0.0
> arp timeout 14400
> conduit permit tcp host 216.6.24.177 eq smtp any
> conduit permit tcp host 216.6.24.186 eq smtp any
> conduit permit tcp any host 192.118.52.54 eq www
> conduit permit icmp any any
> conduit permit tcp host 216.6.24.189 host 216.6.24.5 eq ftp
> conduit permit tcp host 216.6.24.189 host 216.6.24.5 eq ftp-data
> conduit permit tcp host 216.6.24.185 host 216.6.24.40 eq smtp
> conduit permit tcp host 216.6.24.185 host 216.6.24.10 eq smtp
> conduit permit tcp host 216.6.24.185 host 216.6.24.5 eq smtp
> conduit permit tcp host 216.6.24.185 host 216.6.24.19 eq 5001
> conduit permit tcp host 216.6.24.185 host 216.6.24.10 eq 5001
> conduit permit tcp host 216.6.24.185 host 216.6.24.5 eq 5001
> conduit permit tcp host 216.6.24.184 host 216.6.24.21 eq 3306
> conduit permit tcp host 216.6.24.184 host 216.6.24.28 eq 3306
> conduit permit tcp host 216.6.24.10 eq domain any
> conduit permit tcp host 192.118.52.54 eq 8080 any
> conduit permit tcp host 192.118.52.54 eq 3180 any
> conduit permit tcp host 192.118.52.54 eq www any
> no rip outside passive
> no rip outside default
> rip inside passive
> rip inside default
> route outside 0.0.0.0 0.0.0.0 192.168.2.5 1
>
>
> PROBLEM
> 
>
> Host 216.6.24.189 in the inside network can ping the internal interface of
> the PIX but can't ping the outside interface of the PIX nor any host in
the
> outside network.  Any host frm outside network can ping outside interface
of
> the PIX, but can't ping the inside interface of the PIX or any host in the
> inside network. Sitting on PIX i am able to ping hosts in the inside as
well
> as outside networks. Static routes have been defined on both the routers.
>
> Can someone pls help\guide me in solving this problem.
>
> Thanxs in advance.
>
> Rgds,
> Avtar.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=40159&t=40146
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Question on PIX [7:40146]

2002-04-01 Thread Avi

Hi,

I am facing a problem on PIX 515 as described  below.
Firewall: Cisco PIX 515
Firewall Software Version: 4.4(7)

PIX setup:
-

Host:
216.6.24.189

---R---PIX--
-R---
216.6.24.175172.16.10.1/30   172.16.10.2/30 192.168.2.6/30
192.166.2.5/30


Following is the config:
--
PIX Version 4.4(7)
nameif ethernet0 outside security0
nameif ethernet1 inside security100
hostname nungunungu
fixup protocol ftp 21
fixup protocol http 80
fixup protocol h323 1720
fixup protocol rsh 514
fixup protocol smtp 25
fixup protocol sqlnet 1521
names
pager lines 24
logging on
no logging timestamp
no logging console
no logging monitor
no logging buffered
no logging trap
logging facility 20
logging queue 512
interface ethernet0 100basetx
interface ethernet1 100basetx
mtu outside 1500
mtu inside 1500
ip address outside 192.168.2.6 255.255.255.252
ip address inside 172.16.10.2 255.255.255.252
no failover
failover timeout 0:00:00
failover ip address outside 0.0.0.0
failover ip address inside 0.0.0.0
arp timeout 14400
conduit permit tcp host 216.6.24.177 eq smtp any
conduit permit tcp host 216.6.24.186 eq smtp any
conduit permit tcp any host 192.118.52.54 eq www
conduit permit icmp any any
conduit permit tcp host 216.6.24.189 host 216.6.24.5 eq ftp
conduit permit tcp host 216.6.24.189 host 216.6.24.5 eq ftp-data
conduit permit tcp host 216.6.24.185 host 216.6.24.40 eq smtp
conduit permit tcp host 216.6.24.185 host 216.6.24.10 eq smtp
conduit permit tcp host 216.6.24.185 host 216.6.24.5 eq smtp
conduit permit tcp host 216.6.24.185 host 216.6.24.19 eq 5001
conduit permit tcp host 216.6.24.185 host 216.6.24.10 eq 5001
conduit permit tcp host 216.6.24.185 host 216.6.24.5 eq 5001
conduit permit tcp host 216.6.24.184 host 216.6.24.21 eq 3306
conduit permit tcp host 216.6.24.184 host 216.6.24.28 eq 3306
conduit permit tcp host 216.6.24.10 eq domain any
conduit permit tcp host 192.118.52.54 eq 8080 any
conduit permit tcp host 192.118.52.54 eq 3180 any
conduit permit tcp host 192.118.52.54 eq www any
no rip outside passive
no rip outside default
rip inside passive
rip inside default
route outside 0.0.0.0 0.0.0.0 192.168.2.5 1


PROBLEM


Host 216.6.24.189 in the inside network can ping the internal interface of
the PIX but can't ping the outside interface of the PIX nor any host in the
outside network.  Any host frm outside network can ping outside interface of
the PIX, but can't ping the inside interface of the PIX or any host in the
inside network. Sitting on PIX i am able to ping hosts in the inside as well
as outside networks. Static routes have been defined on both the routers.

Can someone pls help\guide me in solving this problem.

Thanxs in advance.

Rgds,
Avtar.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=40146&t=40146
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Routing Protocol

2000-11-08 Thread AVI


Can anyone tell me, Which is the only routing protocol to route other protocols
Is it EIGRP or BGP
Thanks
 

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: CIT Support Exam in CCNP 2.0 Track.

2000-08-23 Thread AVi

No Exam is not changed its the same

avi

"Eazhil" <[EMAIL PROTECTED]> wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi All,
> I would like to clarify,whether the exam is  changed
> for CIT 2.0.Is that anybody attended CIT Support exam
> after july 31st.The objectives are seems same in the
> cisco site.Please clarify regarding this.
>
> Thanks...Pal
>
> =
>
>
> __
> Do You Yahoo!?
> Send instant messages & get email alerts with Yahoo! Messenger.
> http://im.yahoo.com/
>
> ___
> UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
> FAQ, list archives, and subscription info: http://www.groupstudy.com
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
> ---


___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]