PIX VPN Client Configuration - At my wit's end! [7:74363]

2003-08-26 Thread James Willard
Hi all,

Thanks in advance for reading this message. I am completely boggled on an
issue here that I have literally been trying to troubleshoot for some 12
hours now.

I'm trying to configure a PIX 515E for Cisco VPN Client connectivity.

Here are the relevant parts of my config:

:PIX Version 6.3(1)
interface ethernet0 auto
interface ethernet1 auto
interface ethernet2 auto
nameif ethernet0 outside security0
nameif ethernet1 inside security100
nameif ethernet2 dmz security50
access-list nonat permit ip 192.168.1.0 255.255.255.0 192.168.2.0
255.255.255.0 
access-list VPNUser_splitTunnelAcl permit ip 192.168.1.0 255.255.255.0 any 
ip local pool vpnusers 192.168.2.100-192.168.2.254
nat (inside) 0 access-list nonat
nat (inside) 10 0.0.0.0 0.0.0.0 0 0
sysopt connection permit-ipsec
crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac 
crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac 
crypto ipsec transform-set vpn esp-3des esp-md5-hmac 
crypto ipsec security-association lifetime seconds 300
crypto dynamic-map dynmap 30 set transform-set vpn
crypto map crypto-map-swa 20 ipsec-isakmp dynamic dynmap
crypto map crypto-map-swa interface outside
isakmp enable outside
isakmp identity address
isakmp nat-traversal 20
isakmp policy 1 authentication pre-share
isakmp policy 1 encryption 3des
isakmp policy 1 hash sha
isakmp policy 1 group 2
isakmp policy 1 lifetime 300
vpngroup VPNUser address-pool vpnusers
vpngroup VPNUser dns-server 192.168.1.23 192.168.1.22
vpngroup VPNUser wins-server 192.168.1.21 192.168.1.21
vpngroup VPNUser split-tunnel VPNUser_splitTunnelAcl
vpngroup VPNUser idle-time 1800
vpngroup VPNUser password 

Let's say the outside interface is 100.100.100.28. These are the networks:

100.100.100.28 255.255.255.240(outside)
192.168.1.0255.255.255.0  (inside)
192.168.2.0255.255.255.0  (vpn IP pool)
10.0.1.0   255.255.255.0  (dmz)

I can connect with the client just fine, but neither end can ping the other.
Say the client machine gets the IP 192.168.2.100 from the pool, it cannot
ping anything in 192.168.1.x. Conversely, nothing in 192.168.1.x can ping
192.168.2.100. The VPN Client side shows packets being encrypted but none
decrypted. The IPSec SA on the PIX shows packets being encrypted and none
decrypted.

Also worth noting is that the VPN client status shows Transparent
Tunneling: Inactive on the status page while connecting, even though isakmp
nat-traversal is enabled. An ethereal capture shows the client sending ESP
packets to the PIX but none are coming back.

Please, if anyone has any ideas I would love to hear them. This has been
driving me crazy!

Thanks,

James Willard
[EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=74363t=74363
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Sprint Internet Backbone and VoIP? [7:70665]

2003-06-16 Thread James Willard
My company is using Sprint's Internet backbone for VoIP. We initially
started our VoIP project as VoFR several years back using their FR
network but migrated to IP when we were able to get a good deal on full
IP T1s to every office. 

VoIP works pretty well across the backbone. Every office is no more than
2-5 hops away from each other. The problem with going across a backbone
is that you don't have end-to-end QoS and so we still experience some
voice dropouts at times. Something Sprint just started offering that
helped out a lot is their CoS option that for a $150 one-time setup fee
per site, they will apply a policy map to their gateway interface so
that as traffic crosses the slowest part of the link (the T1 between you
and Sprint), voice traffic will get priority. Of course, that's
something new they're offering and not all of their routers will support
that yet. We had to have a circuit moved from their Stockton to their
Anaheim POP because the router we were on in Stockton did not support
this yet.

We've played with a Sitara QosWorks box and got a lot better voice
quality than we ever did when we let the 3810s handle QoS, but again,
things still weren't perfect pin-drop quality. Anyway, Sprint is
pretty good about not letting their backbone get too congested before
building out, so the cause of problems is going to be traffic getting
jammed up on your T1 between yourself and Sprint and not the Sprint
backbone itself.

James

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
Ryan Finnesey
Sent: Sunday, June 15, 2003 1:48 AM
To: [EMAIL PROTECTED]
Subject: Sprint Internet Backbone and VoIP? [7:70665]


Is anyone using the Sprint Internet backbone for VoIP?  If so how is it
working and are you running the VoIP just in the states or outside of
the states?


Ryan




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=70729t=70665
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Voice degradation problem in Cisco VoIP network [7:63823]

2003-02-25 Thread James Willard
Regardless of bandwidth, the voice packets need to be given a higher
priority than the rest of the traffic. Voice is extremely time
sensitive, and jitter will occur if there's a one-way trip time of
around 200ms.

One thing to consider is whether or not you're truly using VoIP (which
is VoIPoFR in your case), or VoFR. They're similar, but still quite
different. If you're truly running VoIPoFR, the following is a link that
guides you through configuring QoS and improving voice quality:

http://www.cisco.com/en/US/tech/tk652/tk698/technologies_configuration_e
xample09186a0080094af9.shtml

(watch the line wrap)

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
K A
Sent: Tuesday, February 25, 2003 11:05 PM
To: [EMAIL PROTECTED]
Subject: Voice degradation problem in Cisco VoIP network [7:63823]


Hi,

I am getting voice degradation problem b/w our two sites. Both of these
2 sites are connected using Framerelay with a very good bandwidth.
Routers on both sides are 2600 Series with VoIP cards. Calls from one
PBX are forwarded to my 2600 router and then it will transmit the VoIP
packets to next 2600 Series which will get it back to the destination.

The problem is the voice quality which is really terrible. Can you
please kindly let me know what are the factors that I should work over
now.

I am new to Cisco Ip Telephony. So please let me know the basic points
or factors on which I should base my research now. I will do my hardwork
to resolve it if you guys can give me the basic points to work on.

I will really appreciate your co-operation.

Thanks alot in advance.

K Ali
i=63823t=63823
--
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=63832t=63823
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: OT : Routing Software [7:61668]

2003-01-23 Thread James Willard
Check out Zebra (www.zebra.org). It supports RIP, RIPv2, RIPng, OSPF,
IGMP, and BGP4. The interface was designed to be a clone of IOS for most
functions.

James Willard
[EMAIL PROTECTED]

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Shane Stockman
Sent: Thursday, January 23, 2003 9:46 AM
To: [EMAIL PROTECTED]
Subject: OT : Routing Software [7:61668]


I am looking for free routing software (RIP,OSPF,ISIS,BGP,DVMRP) for a
linux 
box.I would like to know as well where can I get X.21 serial cards and 
PCMCIA card slots for a PC as I would like to build a small network for 
practice.

Any notes would be appreciated if anyone has done something like this.

Thanks





_
The new MSN 8: advanced junk mail protection and 2 months FREE* 
http://join.msn.com/?page=features/junkmail




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=61694t=61668
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Automatic copying of the configuration scheduling [7:61538]

2003-01-21 Thread James Willard
You can check out Kiwi CatTools...

http://www.kiwisyslog.com/products.htm#cattools

(Hopefully the list didn't eat the URL, if so, go to
www.kiwisoftware.com and click on CatTools).

It's quite a useful program, and I use it extensively to monitor about
40 routers at work. Definitely a time saver for automating tasks and
backing up configs..

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Mr piyush shah
Sent: Wednesday, January 22, 2003 12:23 AM
To: [EMAIL PROTECTED]
Subject: Re: Automatic copying of the configuration scheduling [7:61538]


Dear all
I have been assigned the task of copying a series of configurations in a
router on a daily basis .I am tired of giving copy startup-config tftp
command in each router . I was wondering if is there any way wherein we
can automate this i.e copy startup-config tftp will run in each riuter
automaticall at 9:00 am daily morning ? 
I am in search of that kind of solution .Request you
to help me.
Thanks in advance.

Piyush


Missed your favourite TV serial last night? Try the new, Yahoo! TV.
   visit http://in.tv.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=61545t=61538
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Broadcast Packet [7:60738]

2003-01-09 Thread James Willard
Well first of all, how is the machine's networking configured? If your
network is supposed to have a /24 netmask (255.255.255.0) but you set it
to /25 (255.255.255.128) on that one machine, that would explain why
that machine thinks 10.0.3.127 is the correct broadcast address. What
netmask does that machine have?

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Azhar Teza
Sent: Thursday, January 09, 2003 3:12 PM
To: [EMAIL PROTECTED]
Subject: Broadcast Packet [7:60738]


I have a small network where users have been complaining of slowness.  I
decided to run sniffer and was really confused about a machine running
on ip address 10.0.3.10 sending a packet to a non-existing ip address
which is 10.0.3.127.  I understand that broadcast will be sent to all
the hosts in the network only to existing ip addresses, but don't
understand why the broadcast is going to 10.0.3.127.  It doesn't effect
the machine, but
ofcourse its taking the bandwidth on the ethernet wire.Thanks,

___
Join Excite! - http://www.excite.com
The most personalized portal on the Web!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=60740t=60738
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



SNMP Status: notPresent(6) [7:60633]

2003-01-08 Thread James Willard
Hi all,

I have a 3662 router with four NM-1E2W modules. In each of those modules
is a WIC-1DSU integrated T1 CSU/DSU module, thus giving me Serial 1/0,
2/0, 3/0, and 4/0. All four of those T1s are up and operational, but I
have a SNMP management web page that's not showing them as being up
because SNMP is showing:

interfaces.ifTable.ifEntry.ifDescr.1 = Serial1/0
interfaces.ifTable.ifEntry.ifDescr.2 = Serial2/0
interfaces.ifTable.ifEntry.ifDescr.3 = Serial3/0
interfaces.ifTable.ifEntry.ifDescr.4 = Serial4/0
..
interfaces.ifTable.ifEntry.ifOperStatus.1 = notPresent(6)
interfaces.ifTable.ifEntry.ifOperStatus.2 = notPresent(6)
interfaces.ifTable.ifEntry.ifOperStatus.3 = notPresent(6)
interfaces.ifTable.ifEntry.ifOperStatus.4 = notPresent(6)

I can't figure out why their status would be notPresent when it should
be up. I have a 3640 with the same integrated T1 modules that shows
up for the serial ports. Does anybody know what might be wrong?

Thanks,

James Willard
[EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=60633t=60633
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: SNMP Status: notPresent(6) [7:60633]

2003-01-08 Thread James Willard
Actually, that is a snmpwalk from linux. I should have mentioned that.
Snmpwalk shows notPresent for those particular serial ports, and up
for other similar hardware on different routers. The IOS release is
12.2.13, so perhaps it's just an unlucky release :). I'll check with the
TAC too, but I was wondering if this was just a configuration issue
somehow.

Thanks,

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] 
Sent: Wednesday, January 08, 2003 2:34 PM
To: [EMAIL PROTECTED]
Subject: RE: SNMP Status: notPresent(6) [7:60633]


Have you tried directly a snmpwalk from a linux? but I don't think you
have a problem with the monitoring a station because is working fine
with the other router. It sounds like a software problem, try to check
in TAC what bugs your version has and keep us informed

James Willard wrote:
 
 Hi all,
 
 I have a 3662 router with four NM-1E2W modules. In each of those 
 modules is a WIC-1DSU integrated T1 CSU/DSU module, thus giving me
 Serial 1/0,
 2/0, 3/0, and 4/0. All four of those T1s are up and
 operational, but I
 have a SNMP management web page that's not showing them as
 being up
 because SNMP is showing:
 
 interfaces.ifTable.ifEntry.ifDescr.1 = Serial1/0 
 interfaces.ifTable.ifEntry.ifDescr.2 = Serial2/0 
 interfaces.ifTable.ifEntry.ifDescr.3 = Serial3/0 
 interfaces.ifTable.ifEntry.ifDescr.4 = Serial4/0 ..
 interfaces.ifTable.ifEntry.ifOperStatus.1 = notPresent(6)
 interfaces.ifTable.ifEntry.ifOperStatus.2 = notPresent(6)
 interfaces.ifTable.ifEntry.ifOperStatus.3 = notPresent(6)
 interfaces.ifTable.ifEntry.ifOperStatus.4 = notPresent(6)
 
 I can't figure out why their status would be notPresent when it 
 should be up. I have a 3640 with the same integrated T1 modules that
 shows
 up for the serial ports. Does anybody know what might be
 wrong?
 
 Thanks,
 
 James Willard
 [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=60637t=60633
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: O/T more campus design issues [7:60136]

2003-01-02 Thread James Willard
Priscilla,

You'll need to either have a domain controller on each segment or set
the ip helper-address x.x.x.x on the DC-less interface on the router
that's routing the two segments. In other words, if ethernet0 is on
subnet 1 without a DC, and ethernet1 is on subnet 2 with a DC, place the
command on ethernet0. NetBIOS will attempt to resolve names by
broadcast, and the helper address will turn that broadcast into a
unicast towards the IP of the DC you specify in the config. Let me know
how that works.

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] 
Sent: Thursday, January 02, 2003 5:16 PM
To: [EMAIL PROTECTED]
Subject: O/T more campus design issues [7:60136]


You all remember my very simple campus network re-design that I've been
helping out with? It sure has been keeping me humble. ;-)

So we upgraded the single subnet to two subnets and two VLANs.

Everything is working OK except for Windows networking. The PCs on the
new subnet can't find a domain controller for authentication.

So, you can feel free to yell at me for not gathering more information
on the symptoms, but the client hasn't told me much. ;-) But does this
ring a bell with anyone? Are there standard recommendations on how to
handle this in a subnetted VLANed internetwork.

I'm not too well informed on Windows networking. My co-author wrote that
chapter in my troubleshooting book.

Thank-you so much!

Priscilla




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=60138t=60136
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: cisco router as DHCP server [7:58049]

2002-11-25 Thread James Willard
A quick search on Cisco.com's main page for IOS DHCP server reveals:

http://www.cisco.com/en/US/products/sw/iosswrel/ps1830/products_feature_
guide09186a008008743b.html

(Hopefully the list didn't eat the link as it often does, and watch the
line wrap..)

Before asking such a simple question, it's best to attempt to find the
answer on your own. It will build your own problem solving skills and
you might learn quite a bit more in the process... Just my $0.02

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
puro prasad
Sent: Monday, November 25, 2002 2:07 PM
To: [EMAIL PROTECTED]
Subject: cisco router as DHCP server [7:58049]


Hi all,
can a cisco router act as a DHCP server by itself?

Thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=58052t=58049
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Weird MC3810-VCM6 error [7:57916]

2002-11-22 Thread James Willard
This is just a hunch, but could you possibly have a high performance VCM
in a non-V3 MC3810 (i.e., MC3810 or MC3810-V)? It will say on the back
of the chassis what type it is. Only the V3 model supports the high
performance VCM, so using one in a non-V3 might cause that error...

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
cebuano
Sent: Friday, November 22, 2002 11:29 PM
To: [EMAIL PROTECTED]
Subject: Weird MC3810-VCM6 error [7:57916]


Hi group.
I'd like to know if anyone else has seen this strange error in MC3810
with VCM6. Basically, if I load an IOS that has no Voice feature, the
card is detected as. 1 6-DSP(slot2) Voice Compression Module(v01.K0) and
the router boots fine. If I load any image with Voice, the card is
detected as. 1 6-DSP(slot2) High Performance Compression Module(v01.K0)
and the router loops with this error.
 
c54x_state_readyWARNING: DSP type unknown  defaulted to C542
c54x_state_readyWARNING: DSP type unknown  defaulted to C542
c54x_state_readyWARNING: DSP type unknown  defaulted to C542
c54x_state_readyWARNING: DSP type unknown  defaulted to C542
 
Any ideas?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=57917t=57916
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: TFTP error message [7:57752]

2002-11-19 Thread James Willard
Well, that's basically how TFTP works on Unix-style systems. You have to
first create the file (i.e., 'touch cisco-confg'), then give everyone
write permissions to it (i.e., 'chmod 666 cisco-confg') before it can be
written by the TFTP server. As far as I know, there's no way to
circumvent that using the default tftp server - at least not according
to the man pages. It may be possible to find a third-party TFTP server
that will, or modify the source to one and compile your own if it's a
significant problem.

James Willard
[EMAIL PROTECTED]

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
supernet
Sent: Tuesday, November 19, 2002 10:35 PM
To: [EMAIL PROTECTED]
Subject: TFTP error message [7:57752]


I tried to set up a TFTP server on solaris. When I do write net on
router, I got TFTP: error code 2 received - Access violation error
message unless I create a destination file first. How do I fix this
problem? Many thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=57753t=57752
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: MC3810 - VoIP Requirements [7:57426]

2002-11-14 Thread James Willard
The MC3810 requires 64MB of RAM to run a VoIP feature set. You'll also
almost certainly need 16MB of flash as well. To support the 64MB of RAM,
you'll have to also get an updated BootROM. Those are free from Cisco's
1-800 line - part number BOOT-381V=. And of course, once you have all of
that, you'll also need to get a voice-enabled image (something with a
v5 in it). Also, the 3810 needs some sort of hardware to support your
VoIP needs. This includes a DSP module and some type of voice interface,
either digital (T1 or E1), or analog (EM, FXS, or FXO).

It's a lot to digest, but I hope it helps :).

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:nobody;groupstudy.com] On Behalf Of
HulaJoe
Sent: Thursday, November 14, 2002 3:06 AM
To: [EMAIL PROTECTED]
Subject: MC3810 - VoIP Requirements [7:57426]


Hello All,

I just purchased a 3810 to practice some Voice labs. I was hoping
someone could answer a quick question for me.

The 3810 I'm getting has 32 MB of RAM - Is this enough to run the 3810
as a VoIP GW ? Can someone give me some insight in regards to setting up
the 3810 to support VoIP ?

Thanks in advance!

Joe




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=57456t=57426
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: how can I get the boot rom upgrade for mc3810 [7:56733]

2002-11-02 Thread James Willard
You can order the bootROM's by calling Cisco's credit card orders
department at 1-800-553-6387 and choosing the To place a credit card
order, press ... option.

The part number is BOOT-381V= and it's a zero-cost item, so they'll only
charge you for shipping.

Enjoy,

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:nobody;groupstudy.com] On Behalf Of
guest
Sent: Saturday, November 02, 2002 10:21 AM
To: [EMAIL PROTECTED]
Subject: how can I get the boot rom upgrade for mc3810 [7:56733]


I bought 2 mc3810, but I found I need to upgrade the boot rom first to
support 64mb Dram, how can order this from Cisco, I am an end user.Is
there some reseller can order this?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=56748t=56733
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Caveat for 12.1.11 ip address dhcp command? [7:50415]

2002-08-01 Thread James Willard

Mark,

I seem to recall from a document on CCO that Cisco's T releases were
on a separate release track than the release of the non-T releases of
the same version. In other words, 12.1 and 12.1T are parallel releases
that do not cross over. It's not until the next minor version (in this
case 12.2) where the previous version's T's are integrated into the
mainline IOS. Therefore any 12.2T's will become a part of 12.3 mainline
IOS. At least, that's my understanding of it all.

To get the ip address dhcp command, upgrade to a 12.2 IOS. I am using
12.2 on a 1605 at my house with a cable modem and DHCP address.

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Mark Yanalitis
Sent: Thursday, August 01, 2002 2:19 PM
To: [EMAIL PROTECTED]
Subject: Caveat for 12.1.11 ip address dhcp command? [7:50415]


I am putting a 2514 16f/16d behind an Ericcson cable modem. image
c2500-jos65i-L121.11-bin  Enterprise IP/FW plus 56des

When I issue the ip address dhcp command in (config-if)# 
for eth0 or eht1, I get a ^ error.  when I access help 
and issue ip address ?  I see no DHCP option.  

What gives?  This command was first added to IOS in 12.1(2)T.
I should have this command in 12.1(11).  Any ideas why it is not there?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=50429t=50415
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Supervisor Engines [7:50279]

2002-07-31 Thread James Willard

Basically,

Supervisor I: For the 4003 Chassis (3-slot 4000). Provides layer 2
switching
Supervisor II: For the 4006 Chassis (6-slot 4000). Provides layer 2
switching
Supervisor III: For the 4006 Chassis (6-slot 4000). Provides layer 2, 3,
and 4 switching.


James

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Stuart Pittwood
Sent: Wednesday, July 31, 2002 12:59 PM
To: [EMAIL PROTECTED]
Subject: Supervisor Engines [7:50279]


We're looking into replacing some of our old hubs/switches with a single
4000 series switch.
 
My question is what is the difference between supervisor engines I, II,
III?
 
Any help appreciated
Thanks
 
Stu




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=50281t=50279
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Supervisor Engines [7:50279]

2002-07-31 Thread James Willard

Argh.. My linefeeds were totally nuked. Here it is:


Supervisor I: Works only in the 4003 chassis. It does layer 2 switching
and runs CatOS (set-based commands).


Supervisor II: Works only in the 4006 chassis. It does layer 2 switching
and runs CatOS (set-based commands). Supervisor I and II are basically
the same thing, just for different chassis's.


Supervisor III: Works only in the 4006 chassis. It's the step up from
the Supervisor II and provides a much faster backplane, a higher
switching rate, layer 3 and 4 switching (routing), and it uses the
beloved IOS.


James

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
James Willard
Sent: Wednesday, July 31, 2002 1:16 PM
To: [EMAIL PROTECTED]
Subject: RE: Supervisor Engines [7:50279]


Basically,

Supervisor I: For the 4003 Chassis (3-slot 4000). Provides layer 2
switching Supervisor II: For the 4006 Chassis (6-slot 4000). Provides
layer 2 switching Supervisor III: For the 4006 Chassis (6-slot 4000).
Provides layer 2, 3, and 4 switching.


James

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Stuart Pittwood
Sent: Wednesday, July 31, 2002 12:59 PM
To: [EMAIL PROTECTED]
Subject: Supervisor Engines [7:50279]


We're looking into replacing some of our old hubs/switches with a single
4000 series switch.
 
My question is what is the difference between supervisor engines I, II,
III?
 
Any help appreciated
Thanks
 
Stu




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=50285t=50279
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: mc3810? [7:48519]

2002-07-10 Thread James Willard

The MC3810's all support VoIP, but you have to give the non-V3's a
ROM/Flash/RAM upgrade since the VoIP images require 64MB of RAM. Of course,
that requires upgrading the ROM too, because the existing ROM only
recognizes up to 32MB of RAM. You'll just need a DSP module, Analog Voice
Module, and whatever type of Analog Personality Module you'd like (EM, FXS,
FXO).

You may also want to look at the 1750-2V or -4V's if you only want a FXS
line or two to experiment with.

James Willard, CCNA
[EMAIL PROTECTED]

GEORGE  wrote :

 Does the mc3810 support voice over ip as well as voice atm ,or just the
 mc3810 v3.
 What would be better to be to practice more this model or a 2600 series?
 The mc3810  on a standalone what parts are required? If I wanted only to
 to regular analog phones FXS interface? I a bit confiused as to the
 parts that are necessary?
___
NOCC, http://nocc.sourceforge.net




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=48538t=48519
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: uploading config to pix [7:46606]

2002-06-14 Thread James Willard

Steven,

Write erase erases the configuration written to memory (stored in
NVRAM). The currently running configuration remains in tact until you
reboot the system. Basically, what you're doing is erasing the stored
config while keeping your current config, tftping a new config to the
stored config, and then promptly overwriting it with the current config
once you issue a write memory. What you should do is write erase the
NVRAM, tftp the new config to the NVRAM, and then reload. If it prompts
you to save configuration changes, answer NO because you already have
the configuration you want waiting for you in NVRAM :).

James

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of
Bates, Steven K HQISEC/SIGNAL
Sent: Friday, June 14, 2002 2:11 PM
To: [EMAIL PROTECTED]
Subject: uploading config to pix [7:46606]


I am trying to upload a config for a pix, one that I know is good and
works. I do a write erase on the pix to blow the old one away and then
do un upload via tftp but then when I do a wr mem, it still has the old
config.  Any ideas?  

Steven Kell Bates
Senior Network Engineer
Technology Integration Center (TIC)
BLDG 53302, FT Huachuca
SIGNAL Corporation
comm 520.533.3998
DSN 821-3998




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=46619t=46606
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



VoIP Call Detail Reporting [7:43238]

2002-05-03 Thread James Willard

I have a network of about 21 offices that each have a MC3810 doing VoIP
between them. Now, I'm wanting to setup Call Detail Reporting (CDR) so that I
can basically just get a total number of minutes each month that the VoIP
lines are in use so that I can build some sort of dollar savings report. I'm
planning on writing my own system by setting the CDR information to log to a
linux box's syslog, parsing out the fields with utilities like awk and 'cut',
and entering them into a MySQL database where I can then use PHP to generate
pages on usage statistics. Sounds like a lot, hmm? Therefore, I'm wondering
if
anything exists that does this already before I start working on the project.
I've looked at CallManager product literature, but it seems to be overkill
for
just generating CDR reports since we don't have IP phones. Does anyone have
any suggestions?

Thanks,

James Willard, CCNA
[EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=43238t=43238
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: VoIP Call Detail Reporting [7:43238]

2002-05-03 Thread James Willard

Right, I was saying that I looked at CallManager but it seemed like overkill
since we don't use IP phones. Logging from the PBX is definitely not the
easiest place to pull information when we're talking about 21 PBXs where
it's hard to find two that are alike or even offer call logging.

Searching around on the Internet, I've found a syslog daemon called msyslogd
that has a MySQL module for direct insertion into a SQL database. This
should help out a little bit, but I'll still have to parse the data.

James

- Original Message -
From: Chris Charlebois 
To: 
Sent: Friday, May 03, 2002 1:41 PM
Subject: RE: VoIP Call Detail Reporting [7:43238]


 OK, if you don't have IP Phones, I assume that means you don't have
 CallManager.  The question then is what are you using for a PBX.  The
 easiest place to pull that information is from the phone switch.  I
haven't
 seen that information being collected at the voice gateway.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=43247t=43238
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Aggregate 3 T1's would this work. [7:33599]

2002-01-29 Thread James Willard

John,

What you want to look at is Cisco Express Forwarding (CEF). It allows load
balancing across multiple T1's. For each serial interface you would have
your own subnet (such as a /30) to your provider, because the serial
interfaces cannot be on the same subnet. Turn on CEF using ip cef globally
(you may want to ensure you have a recent IOS, as CEF was buggy early on).
Then, on each serial interface, issue either ip load-sharing per-packet or
ip load-sharing per-destination depending on how you want the load
distributed. To give you the full 4.5Mbps to any one site, use per-packet
load balancing.

James Willard, CCNA
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
John Jones
Sent: Tuesday, January 29, 2002 3:17 PM
To: [EMAIL PROTECTED]
Subject: Aggregate 3 T1's would this work. [7:33599]


I have a configuration question.
I have 3 dedicated T1's a router 3620 with three T1 CSU/DSU and one
FastEthernet ports installed. All dedicated T's are from the same ISP.
I want to aggregate the three T1's for increased bandwidth (4.5 Mbps)
Would I run into issues

Here is my config.  Would this work?


!
hostname Cisco3620
!
!
no ip name-server
!
ip subnet-zero
no ip domain-lookup
ip routing
!
interface Ethernet 0/0
 no description
 ip address 172.16.10.1 255.255.255.0
 !
interface Serial 0/0
 no shutdown
 ip address 1.1.1.2 255.255.255.248
 !
interface Serial 0/1
 no shutdown
 ip address 1.1.1.3 255.255.255.248
 !
interface Serial 1/0
 no shutdown
 ip address 1.1.1.4 255.255.255.248
 !
ip route 0.0.0.0 0.0.0.0 serial0/0
ip route 0.0.0.0 0.0.0.0 serial0/1
ip route 0.0.0.0 0.0.0.0 serial1/0

!
!
ip classless
no ip http server
!
end


I tried this config with Cisco's config maker and I get IP address errors on
the serial ports, specifically being on the same subnet.
Would this do basic aggregation?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=33600t=33599
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Aggregate 3 T1's would this work. [7:33599]

2002-01-29 Thread James Willard

Right, the remote router must also have ip cef capability. The cisco
equipment was assumed since this is a Cisco group :). In case of no Cisco
equipment on the far end, you can always just use static default routes as a
previous post suggested. It will, however, not give you true load balancing.

James

- Original Message -
From: Hartnell, George 
To: 
Sent: Tuesday, January 29, 2002 4:38 PM
Subject: RE: Aggregate 3 T1's would this work. [7:33599]


 Would this not also be a function of just what the ISP has/wants on the
far
 end?

 My hookup uses a 3Com Accessbuilder 6100 I-Mux --- HSSI---Cisco 7200.  The
 three T1's are inverse multiplexed on the 3Com.  Scaleable to 7 T1's.

 'Couse this is a 'Cisco' newsgroup

 Best, G.

  -Original Message-
  From: James Willard [mailto:[EMAIL PROTECTED]]
  Sent: Tuesday, January 29, 2002 12:33 PM
  To: [EMAIL PROTECTED]
  Subject: RE: Aggregate 3 T1's would this work. [7:33599]
 
 
  John,
 
  What you want to look at is Cisco Express Forwarding (CEF).
  It allows load
  balancing across multiple T1's. For each serial interface you
  would have
  your own subnet (such as a /30) to your provider, because the serial
  interfaces cannot be on the same subnet. Turn on CEF using
  ip cef globally
  (you may want to ensure you have a recent IOS, as CEF was
  buggy early on).
  Then, on each serial interface, issue either ip load-sharing
  per-packet or
  ip load-sharing per-destination depending on how you want the load
  distributed. To give you the full 4.5Mbps to any one site,
  use per-packet
  load balancing.
 
  James Willard, CCNA
  [EMAIL PROTECTED]
 
 
  -Original Message-
  From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
  John Jones
  Sent: Tuesday, January 29, 2002 3:17 PM
  To: [EMAIL PROTECTED]
  Subject: Aggregate 3 T1's would this work. [7:33599]
 
 
  I have a configuration question.
  I have 3 dedicated T1's a router 3620 with three T1 CSU/DSU and one
  FastEthernet ports installed. All dedicated T's are from the same ISP.
  I want to aggregate the three T1's for increased bandwidth (4.5 Mbps)
  Would I run into issues
 
  Here is my config.  Would this work?
 
 
  !
  hostname Cisco3620
  !
  !
  no ip name-server
  !
  ip subnet-zero
  no ip domain-lookup
  ip routing
  !
  interface Ethernet 0/0
   no description
   ip address 172.16.10.1 255.255.255.0
   !
  interface Serial 0/0
   no shutdown
   ip address 1.1.1.2 255.255.255.248
   !
  interface Serial 0/1
   no shutdown
   ip address 1.1.1.3 255.255.255.248
   !
  interface Serial 1/0
   no shutdown
   ip address 1.1.1.4 255.255.255.248
   !
  ip route 0.0.0.0 0.0.0.0 serial0/0
  ip route 0.0.0.0 0.0.0.0 serial0/1
  ip route 0.0.0.0 0.0.0.0 serial1/0
 
  !
  !
  ip classless
  no ip http server
  !
  end
 
 
  I tried this config with Cisco's config maker and I get IP
  address errors on
  the serial ports, specifically being on the same subnet.
  Would this do basic aggregation?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=33614t=33599
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Catalyst 2924G: 1000-T GBIC [7:30546]

2001-12-31 Thread James Willard

Is anyone aware of the possibility of the Cisco Catalyst 2924G switch ever
supporting a 1000-T GBIC (twisted pair gigabit ethernet) in its two 1000-X
slots? I have a C2924G, but it only supports 1000-SX, 1000-LX/LH, 1000-ZX
(all fiber). I'm just wondering if anyone has heard of support for the
1000-T is in the works for a future CatOS release.

Thanks,

James Willard
[EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=30546t=30546
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: BGP on the 1600 series??? [7:20209]

2001-09-17 Thread James Willard

Actually, the 1600 series running the IP Plus version of IOS does in fact
support BGP.

Cisco1605#config t
Enter configuration commands, one per line.  End with CNTL/Z.
Cisco1605(config)#router bgp 1
Cisco1605(config-router)#

I can't imagine it being very useful, but perhaps for a small view or lab
situation it could serve its purpose.

James Willard, CCNA
[EMAIL PROTECTED]

- Original Message -
From: Andras Bellak 
To: 
Sent: Monday, September 17, 2001 7:34 PM
Subject: RE: BGP on the 1600 series??? [7:20209]


 1600 series won't run bgp - I believe that 2500's will, and I know that
 2600's will.

 Andras Bellak
 Director, WAN Engineering
 [EMAIL PROTECTED]



 -Original Message-
 From: Cisco Nuts [mailto:[EMAIL PROTECTED]]
 Sent: Monday, September 17, 2001 2:06 PM
 To: [EMAIL PROTECTED]
 Subject: BGP on the 1600 series??? [7:20209]


 Hi,
 Do the 1600 series routers run BGP? I tried to configure bgp 100 on a
 1603
 and it gives me an unknown routing protocol error msg.? I am running
 IOS
 ver. 11.2(15)P. Do I have to upgrade the IOS to run BGP? Please advise.
 Thank you.


 _
 Get your FREE download of MSN Explorer at
 http://explorer.msn.com/intl.asp




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=20232t=20209
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: RE: how to build a pix firewall out of a PC box. [7:18335]

2001-09-05 Thread James Willard

I personally would be very surprised if this was in fact possible without
requiring some serious hardware hacking. It's curious that the original
poster of this message was extremely vague in the details and it makes you
wonder whether or not it was just an attempt to create a few hundred Me
too! messages, which seems to have worked nicely. Will everyone -please-
stop replying Me too! and just ask that the person post the details to the
group if in fact it really is possible, which I doubt seriously.

James Willard
[EMAIL PROTECTED]

- Original Message -
From: anyong 
To: 
Sent: Wednesday, September 05, 2001 3:23 AM
Subject: Re: RE: how to build a pix firewall out of a PC box. [7:18335]


 Very interesting post : D

 I've all the listed part apart from the flash card that need advice.

 Is these flash card just a ISA adaptor (converter) and insert a 16MB
PCMCIA
 flash card or there are some flash chips build on the ISA board? If not,
 what's the brand name? The Cisco brand cost 7xx!

 Thanks

 anyong


 udo konstantin  wrote in message
 [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
  Woww,
 
  please count me in to 
 
  Thanks
 
  Udo
 
  Vishal Punjabi  schrieb am 05.09.01:
   Me too
   Vishal
   -Original Message-
   From: samuel [mailto:[EMAIL PROTECTED]]
   Sent: Wednesday, September 05, 2001 1:07 PM
   To: [EMAIL PROTECTED]
   Subject: RE: how to build a pix firewall out of a PC box. [7:18335]
  
  
   Me to
  
   Samuel ho
  
  
   -Original Message-
   From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf
Of
   Tonton Rabena
   Sent: Wednesday, September 05, 2001 12:25 PM
   To: [EMAIL PROTECTED]
   Subject: Re: how to build a pix firewall out of a PC box. [7:18335]
  
   count me too..
  
   Richard  wrote in message
   [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
Count me in...
   
   
mike johnson  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 Hi Everyone,

 For those who are interested in learning Cisco PIX but
 do NOT want to spend a lot of money on buying an
 expensive PIX Firewall, I think I can help you.  I
 have instructions on how to build a PIX firewall by
 using a PC.  In case you didn't know, PIX firewall is
 essentially a PC with multiple interfaces.  I've
 successfully built several PIX firewall using my old
 PCs (i.e. pentium 200 MHz processor).  Actually, the
 PIX1 series (obsolete I know) is a PC with Intel
 EtherExpress Interface cards.  However, you must have
 an account with CCO in order the software and download
 the software.  The rest of the instructions on how to
 build a PIX firewall using PC is very simple.  Anyone
 interested in learning it, let me know.

 Mike

 __
 Do You Yahoo!?
 Get email alerts  NEW webcam video instant messaging with Yahoo!
Messenger
 http://im.yahoo.com
   _
   Do You Yahoo!?
   Get your free @yahoo.com address at http://mail.yahoo.com
 


 __
  Flug.de - 570.000 Nutzer, ein Ziel: der optimale Flug
  http://flug.de/sb/?PP=0-5-100-105-12




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=18612t=18335
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



T1 Question: What happens after the SmartJack? [7:18215]

2001-09-01 Thread James Willard

Hi gang,

Ok, this may sound like a stupid question, but as they say the only stupid
question is the one not asked. So, here it goes.

What exactly is the function of the smartjack on local-loop circuits? I
mean, I understand their function but I am a little unclear on exactly how
they fit in the scope of things. If I have a CSU/DSU which connects to the
demarc (smartjack), then it is the smartjack's job to regenerate that signal
and send it to the CO, correct? They also have the capability of being
placed in loopback. So, is there a special inband signal which the telco can
send which is picked up by just the smartjack and not the customer's CSU/DSU
which raises/drops loopback? Is there a normal smartjack -like device on the
telco side as well, or does the leased line connect directly to a CSU/DSU?

Thanks,

James Willard
[EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=18215t=18215
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: ambiguous command [7:17568]

2001-08-28 Thread James Willard

That isn't a NDA issue. That's something you can easily test on any
router that runs IOS. A quick test of telneting to a router and typing
show i results in the ambiguous command message followed by the
Router# prompt. There's your answer.

James Willard
[EMAIL PROTECTED]


Wright, Jeremy wrote:
 
 Can't answer- must respect NDA
 
 -Original Message-
 From:   jo carol [mailto:[EMAIL PROTECTED]]
 Sent:   Tuesday, August 28, 2001 3:08 PM
 To: [EMAIL PROTECTED]
 Subject:ambiguous command [7:17568]
 
 Hi
 I had a question on a test that said if after a command you
 get
  %ambiguous command will the router return to the original
 command or
 just router#
 Thanks
 [EMAIL PROTECTED]
-- 

-James Donavon Willard ([EMAIL PROTECTED])




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=17571t=17568
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: linux client not able to connect to VPN Concentrator 3000 [7:15982]

2001-08-14 Thread James Willard

As far as I know, The VPN3000 box doesn't support PPtP clients. However, if
you have CCO access then you'll be pleased to know that the unified VPN
client version 3.0.8 has appeared for Linux under the Software Center
section.

James Willard
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
suaveguru
Sent: Tuesday, August 14, 2001 3:10 AM
To: [EMAIL PROTECTED]
Subject: linux client not able to connect to VPN Concentrator 3000
[7:15981]


hi all

anyone knows whether cisco concentrator supports LINUX
pptp clients?

I tried using linux pptp client version 1.03 Kernel
(suse) 2.216 connecting to my VPN box , cisco
concentrator 3000 . I always run into error below are
my error logs :

any inputs will be greatly appreciated

Oct 26 19:01:44 carlsberg pppd[787]: pppd 2.4.0
started by root, uid 0
Oct 26 19:01:44 carlsberg pppd[787]: Using interface
ppp0
Oct 26 19:01:44 carlsberg pppd[787]: Connect: ppp0
 /dev/pts/0
Oct 26 19:01:44 carlsberg pppd[787]: sent [LCP ConfReq
id=0x1
  ]
Oct 26 19:01:47 carlsberg pppd[787]: sent [LCP ConfReq
id=0x1
  ]
Oct 26 19:01:48 carlsberg pppd[787]: rcvd [LCP ConfReq
id=0x1 ]
Oct 26 19:01:48 carlsberg pppd[787]: sent [LCP ConfRej
id=0x1 ]
Oct 26 19:01:50 carlsberg pppd[787]: sent [LCP ConfReq
id=0x1
  ]
Oct 26 19:01:50 carlsberg pppd[787]: rcvd [LCP ConfReq
id=0x2 ]
Oct 26 19:01:50 carlsberg pppd[787]: sent [LCP ConfRej
id=0x2 ]
Oct 26 19:01:52 carlsberg pppd[787]: rcvd [LCP ConfAck
id=0x1
  ]
Oct 26 19:01:53 carlsberg pppd[787]: sent [LCP ConfReq
id=0x1
  ]
Oct 26 19:01:53 carlsberg pppd[787]: rcvd [LCP ConfReq
id=0x3]
Oct 26 19:01:53 carlsberg pppd[787]: sent [LCP ConfAck
id=0x3]
Oct 26 19:01:53 carlsberg pppd[787]: rcvd [LCP TermReq
id=0x4]
Oct 26 19:01:53 carlsberg pppd[787]: sent [LCP TermAck
id=0x4]
Oct 26 19:01:55 carlsberg pppd[787]: rcvd [LCP TermReq
id=0x5]
Oct 26 19:01:55 carlsberg pppd[787]: sent [LCP TermAck
id=0x5]
Oct 26 19:01:56 carlsberg pppd[787]: sent [LCP ConfReq
id=0x1
  ]
Oct 26 19:02:17 carlsberg last message repeated 7
times
Oct 26 19:02:18 carlsberg pptp[789]:
log[call_callback:pptp_callmgr.c:88]:
Closing connection
Oct 26 19:02:18 carlsberg pppd[787]: Terminating on
signal 15.
Oct 26 19:02:18 carlsberg pppd[787]: Modem hangup
Oct 26 19:02:18 carlsberg pppd[787]: Connection
terminated.
Oct 26 19:02:19 carlsberg pppd[787]: Exit.
Oct 26 19:02:26 carlsberg init: Switching to runlevel:
6
Oct 26 19:02:29 carlsberg named[322]: named shutting
down
Oct 26 19:02:29 carlsberg named[322]: USAGE 1445857349
1445856928
CPU=0.01u/0s CHILDCPU=0u/0s
Oct 26 19:02:29 carlsberg named[322]: NSTATS
1445857349 1445856928 A=1
Oct 26 19:02:29 carlsberg named[322]: XSTATS
1445857349 1445856928 RR=2
RNXD=0 RFwdR=1 RDupR=0 RFail=0 RFErr=0 RErr=0 RAXFR=0
RLame=0 ROpts=0
SSysQ=1 SAns=1 SFwdQ=1 SDupQ=0 SErr=0 RQ=1 RIQ=0
RFwdQ=1 RDupQ=0 RTCP=0
SFwdR=1 SFail=0 SFErr=0 SNaAns=1 SNXD=0 RUQ=0 RURQ=0
RUXFR=0 RUUpd=0
Oct 26 19:45:08 carlsberg named[321]: starting
(/etc/named.conf).  named
8.2.3-REL Thu Mar  1 00:15:00 GMT 2001
^Iroot@ceesay:/usr/src/packages/BUILD/bind8-8.2.3/bin/named
Oct 26 19:45:08 carlsberg named[321]: hint zone 
(IN) loaded (serial 0)
Oct 26 19:45:08 carlsberg named[321]: carlsberg.zone:
WARNING SOA expire
value is less than SOA refresh+retry (36000 ) set,
using SOA minimum
instead
Oct 26 19:45:08 carlsberg named[321]: master zone
apc.edu.ph (IN) loaded
(serial 2001061401)
Oct 26 19:45:08 carlsberg named[321]: Zone
1.106.10.in-addr.arpa (file
carlsberg.1.106.10): No default TTL ($TTL )
set, using SOA minimum
instead
Oct 26 19:45:08 carlsberg named[321]:
carlsberg.1.106.10: WARNING SOA expire
value is less than 7 days (36)
Oct 26 19:45:08 carlsberg named[321]: master zone
1.106.10.in-addr.arpa
(IN) loaded (serial 2001061401)
Oct 26 19:45:08 carlsberg named[321]: master zone
localhost (IN) loaded
(serial 42)
Oct 26 19:45:08 carlsberg named[321]: master zone
0.0.127.in-addr.arpa
(IN) loaded (serial 42)
Oct 26 19:45:08 carlsberg named[321]: listening on
[127.0.0.1].53 (lo)
Oct 26 19:45:08 carlsberg named[321]: listening on
[203.87.142.27].53 (eth0)
Oct 26 19:45:08 carlsberg named[321]: listening on
[10.106.1.248].53 (eth1)
Oct 26 19:45:08 carlsberg named[321]: Forwarding
source address is
[0.0.0.0].1024
Oct 26 19:45:08 carlsberg named[322]: group = named
Oct 26 19:45:08 carlsberg named[322]: user = named
Oct 26 19:45:08 carlsberg named[322]: Ready to answer
queries.
Oct 26 19:52:05 carlsberg modprobe: modprobe: Can't
locate module Pentanet
Oct 26 19:52:54 carlsberg modprobe: modprobe: Can't
locate module Pentanet
Oct 26 19:53:06 carlsberg last message repeated 2
times
Oct 26 19:56:43 carlsberg pptp[3067]:
log[pptp_dispatch_ctrl_packet:pptp_ctrl.c:548]: Client
connection
established.
Oct 26 19:56:45 carlsberg pptp[3067]:
log[pptp_dispatch_ctrl_packet:pptp_ctrl.c:655]:
Outgoing call established
(call ID 0, peer's call ID 32573).
Oct 26 19:56:46 carlsberg modprobe: modprobe: Can't
locate module
char-major-108
Oct 26

Re: load balance between 4 T1s [7:15692]

2001-08-13 Thread James Willard

It will depend on your service provider. CEF has become much more stable in
the latest IOS releases. Sprint uses CEF for load-balancing multiple T1s
where the customer also has Cisco equipment. I don't know about other
providers since I mainly deal with Sprint. Is there anyone else out there
who can share their experiences with other ISPs?

James Willard
[EMAIL PROTECTED]

- Original Message -
From: Scott M. Trieste 
To: 
Sent: Monday, August 13, 2001 2:10 PM
Subject: Re: load balance between 4 T1s [7:15692]


 If your running this implementation with an ISP, chances are they won't
use
 a technology that has  proved buggy: CEF.  My recommendation would be to
use
 the load balancing feature of such IGP routing protocols like OSPF or
EIGRP.

 khramov  wrote in message
 news:[EMAIL PROTECTED]...
  I am getting 4 T1s but I think I will have only one IP address.  How can
  I load balance 1IP between 4 T1s.
  thanks




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=15905t=15692
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Two CPA2503 questions... [7:14445]

2001-07-31 Thread James Willard

Hello,

I recently convinced my employer to give me a Cisco CPA2503 (the white box
CiscoPro router) whose power supply died. I have two questions.

First of all, before I check into finding a replacement power supply, I read
on this list a long way back (probably 1999ish) about someone who had made
an outboard 2500 series power supply from a PC power supply. Unfortunately,
I can't get a search of the archives to turn up that post that I remembered.
Does anyone happen to have that link, or perhaps is the original poster
still lurking?

Secondly, is it true that you can order a replacement boot ROM for the
CPA2500 series and make them able to load standard 2500 series images? If
so, does Cisco charge for these boot ROMs, or are they like the other
routers where you pay for shipping only?

Thanks,

James Willard, CCNA
[EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=14445t=14445
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Sniffer Shareware [7:12520]

2001-07-16 Thread James Willard

I can personally vouch for Ethereal (http://www.ethereal.com/), which
someone mentioned earlier but didn't provide a link. It runs under both
Linux and Win32 platforms. It has a lot of nice features and it's completely
free. I recommend you check it out.

James Willard, CCNA
[EMAIL PROTECTED]


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
Yhladi Ghfaskovich
Sent: Monday, July 16, 2001 2:35 PM
To: [EMAIL PROTECTED]
Subject: Sniffer Shareware [7:12520]


Does anyone know if there is a sniffer-like shareware that can run on a pc?
Do anyone have
any cheap suggestions?

Thank you,




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=12589t=12520
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cable modem connection and a Cisco Router [7:8208]

2001-06-12 Thread James Willard

I use my 1605 at home for my cable modem connection. You need IOS 12.1 or
later to make the router act as a DHCP client. Use ip address dhcp on the
interface connected to the cable modem. One thing you have to be aware of
(or maybe someone can provide a workaround for me?) is that I have to
manually change the ip address of the NAT pool when my DHCP lease changes. I
can however specify the ethernet interface in the static port mapping
entries (PAT), which prevents me from having to change all of those.

James Willard, CCNA
[EMAIL PROTECTED]

- Original Message -
From: Juan Blanco 
To: 
Sent: Tuesday, June 12, 2001 1:40 PM
Subject: Cable modem connection and a Cisco Router [7:8208]


 Team,
 I have a cable modem connection, I want to be able to use my Cisco
1600
 router, does any ones know I could find some information of how doing
this,
 the problem
 that I see I that every time I reboot my router a new ip will be provided
 via DHCP...Is this possible, I have the impression that Cisco routers only
 works with static ip.

 Thanks in advanced on taking your time to reply

 JB




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=8211t=8208
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]