Re: CCIE techniques [7:29251]

2001-12-16 Thread [EMAIL PROTECTED] (Katson PN Yeung)

In case the lab don't allow notepad to do cut-and-paste, I will enter
all essential basic configuration at the banner motd Z

Such as:

banner motd Z
 no ip domain-loop
 no logging console
 ip classless
 line con 0
 exec-time 0 0
 alias exec inf show ip int brief
 alias exec i show ip route
 alias exec ci clear ip route *
 
host R
Z


It is perfectly legal.

On 14 Dec 2001 16:18:05 -0500, [EMAIL PROTECTED] (juno vtv)
wrote:

I have read about many techniques that people are using to improve in their
lab studies.  I was wondering if anybody would like to share their
techniques?  What do you do to improve speed, accuracy,
troubleshooting,etc?  If you have any ideas or advice, please share your
thoughts.  Thanks!


-junovtv




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=29330t=29251
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: T in IOS software [7:9053]

2001-07-23 Thread Katson PN Yeung

T in IOS release stands for Terrible.

Please do not deploy any T chain IOS in your live environment (even the new
feature seems attractive.).


STRAND Scott  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 Just curious. But what does the 'T' stand for in IOS releases?

 c2600-i-mz.121-4.bin
 c2600-i-mz.121-4.T1

 Thanks,
 Scott




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=13332t=9053
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Block Icq With Pix Firewall [7:12601]

2001-07-18 Thread [EMAIL PROTECTED] (Katson PN Yeung)

Apart from port filtering.

I may also config my name server to response a false ip address for
icq.com domain. :)



On 17 Jul 2001 11:49:35 -0400, [EMAIL PROTECTED] (Allen May) wrote:

Well...since ICQ uses a wide range of ports it may be easier just to block
access to the ICQ authentication server...

- Original Message -
From: Farhan Ahmed 
To: 
Sent: Tuesday, July 17, 2001 3:59 AM
Subject: RE: Block Icq With Pix Firewall [7:12601]


 outbound 10 deny 0 0 icqport tcp

 apply (inside) 10 outgoing_src

 -Original Message-
 From: Makis
 To: [EMAIL PROTECTED]
 Sent: 7/17/01 12:13 PM
 Subject: Block  Icq With Pix Firewall [7:12601]

 Hi

 How can i block Icq through Pix Firewall ?
 Any ideas ?

 Makis




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=12815t=12601
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCIE Group in Singapore. [7:12253]

2001-07-18 Thread [EMAIL PROTECTED] (Katson PN Yeung)

For me, I heard Beijing is even more harsh and straight I choosed
Singapore. My day is 6Aug.



On 13 Jul 2001 12:22:12 -0400, [EMAIL PROTECTED] (Kevin Schwantz)
wrote:

David,

Good luck to you. Many Singaporeans choose to do the lab elsewhere because
rumour has it that the procter is VERY harsh. I hear that he has never
passed a first timer.

Kevin

David Schaer  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 I'm in Florida, but am testing in Singapore 11/21.

 Kevin Schwantz  wrote in message
 [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
  Hi Ronnie,
 
  I'm from one of the major ISP's in Singapore. What about you?
 
  Kevin
 
  Ronnie Tan  wrote in message
  [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
   Anyone from Singapore studying for CCIE Lab ? Schedule to take my lab
 this
   November. Would like to form a study group to pool resources together.
   Thanks.
  
  
   Ron Tan
   [EMAIL PROTECTED]
  
   
   Get free email and a permanent address at http://www.amexmail.com/?A=1




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=12816t=12253
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: 100MB uplink to ISP [7:5026]

2001-05-20 Thread Katson PN Yeung

Hi Hans,

Please note, 7206VXR has two PCI buses , each supports up to 600Mbps, slot0
,1,3,5 connects to PCI mb1,
slot2,4,6 connects to PCI mb2.

You can look at for all PA required bus bandwidth point (kinda marking
scheme), for atm is 300, for I/O with
1FE is 200, for FE-TX is 200. The max bandwidth point for each PCI bus is
600.

Therefore, you can place two PA-A3 to mb2 (total bandwidth point = 600, max
allowed bandwidth point), and then one PA-A3 to mb1. Since mb1 is included
slot 0, in case it is NPE-300 the bandwidth point on mb1 will become 500.

So, somthing like this:


|5PA-A3   |6PA-A3  |
|3|4PA-A3  |
|1|2   |

| 0NPE-300 |


If you ever want to put another high-speed interface to either PA slot, you
will have an error message of max bandwidth exceed on your console. You
can, however, put an extra PA-FE to it and ignore the error message. BUT, I
found if I do that, all the FE ports (PA, or NPE300) will have a serious
level of interface reset. in whatever traffic rate.

Suppose your ATMs are for incoming and outgoing traffic and not for
transit, then all the ATMs are pumping data toward the FE on NPE-300. So,
you can imagine it is not an effective configuration.

You may find this link useful:
http://www.cisco.com/univercd/cc/td/doc/product/core/7206/port_adp/3471pac6.
htm

If I were you, I will not go for 7206vxr since the initial config is already
hitting the max. Neither 7507. if you don't mind, I will recommend a
Juniper M5 with 2 dual ATM pics and 1 Quad FE pic. and you still have
one pic slot for expansion.

I am not associated with Juniper Networks in any way it is just my
thought about Cisco 7206vxr series.


Hans Stout  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 Hello group,

 I have a customer who wants to know which Cisco router (and appropriate
port
 adapters) he needs to provide three 100MB uplinks to three different
ISP4s.
 According to my own research, the 7206VXR with three OC-3 SONET-STM1 cards
 should do the job. Do you think this is the best solution ? I am not sure
if
 the 7206 can handle that much bandwidth.
 Thanks for your input in advance.

 Regards,

 Hans




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=5209t=5026
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Passed CCIE written exam [7:3140]

2001-05-04 Thread Katson PN Yeung

Congrad Vincent,

When and where will be your lab test?


Vincent Chong  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 Hi everyone;

 After 3 days intensive and fast track study, I decided to take
 exam today.

 I finally passed the exam.  It's my first try, I got a bare
 pass.  But pass is a just a pass.

 I would like to say thank you to people provide me precious
 information.

 The exam is not difficult if you know the things cool.

 Good luck to everyone.

 Vincent Chong
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=3176t=3140
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: what material about CCIE written exam [7:3177]

2001-05-04 Thread Katson PN Yeung

There are a lot.
1. Interconnections 2nd ed.
2. Cisco LAN switching
3. I.R.A
4. TCP/IP illustrated vol1.
5. ICRC and ACRC.
6. Caslow's B.R.S for CCIEs.


yudaocai  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 ciscocisco#,hi#!
 I passed the ccnp last month . I would pass the written of
CCIE at the end of Match.
 I have read the book (ccie professional depvelopment routing tcp/ip,volume
I which written by Jeff Doyle),
 what else books should i must read to pass the exam.
 do you have any suggestions?

 Thanks



 yudaocai
 [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=3177t=3177
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



upgrading boot and IOS...

2001-04-08 Thread Katson PN Yeung

Dear all,

I have an old 7507 and would like to upgrade the boot image and IOS to
12.0.x... can someone suggests:
1. The most reliable IOS version in 12.0.x?
2. I would most like to take away my ethernet and channelized T1 module.
(therefore, I have AIP, RSP2(64M ram), VIP+PA-FE-TX x 2, and SSIP8.



Please see my sh ver below:


Cisco Internetwork Operating System Software
IOS (tm) RSP Software (RSP-AJSV-M), Version 11.2(18)BC, EARLY DEPLOYMENT
RELEASE SOFTWARE (fc1)
Copyright (c) 1986-1999 by cisco Systems, Inc.
Compiled Thu 15-Apr-99 06:59 by krunyan
Image text-base: 0x600108A0, data-base: 0x60C3A000

ROM: System Bootstrap, Version 11.1(2) [nitin 2], RELEASE SOFTWARE (fc1)
BOOTFLASH: GS Software (RSP-BOOT-M), Version 11.1(6), RELEASE SOFTWARE (fc1)

7057old uptime is 7 weeks, 3 days, 3 hours, 28 minutes
System restarted by reload at 08:04:18 HKT Fri Feb 16 2001
System image file is "slot0:rsp-ajsv-mz_112-18_BC.bin", booted via slot0

cisco RSP2 (R4600) processor with 65536K bytes of memory.
R4600 processor, Implementation 32, Revision 2.0
Last reset from power-on
G.703/E1 software, Version 1.0.
SuperLAT software copyright 1990 by Meridian Technology Corp).
Bridging software.
X.25 software, Version 2.0, NET2, BFE and GOSIP compliant.
TN3270 Emulation software.
Primary Rate ISDN software, Version 1.0.
Chassis Interface.
1 SSIP controller (8 Serial).
1 AIP controller (1 ATM).
1 MIP controller (2 T1).
2 VIP2 controllers (2 FastEthernet)(8 Ethernet).
8 Ethernet/IEEE 802.3 interface(s)
2 FastEthernet/IEEE 802.3 interface(s)
39 Serial network interface(s)
1 ATM network interface(s)
2 Channelized T1/PRI port(s)
123K bytes of non-volatile configuration memory.

20480K bytes of Flash PCMCIA card at slot 0 (Sector size 128K).
8192K bytes of Flash internal SIMM (Sector size 256K).
No slave installed in slot 3.
Configuration register is 0x2102


Thanks a lot.
_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: More Info (OSPF and IP Classless)

2001-03-27 Thread Katson PN Yeung

"ip classless" or "no ip classless" only affect the way the router lookup
the ip route table. It does not related to how you define the ospf area or
how you redistribute the route (inc the default route).


""wind"" [EMAIL PROTECTED] wrote in message
99s3lo$8v1$[EMAIL PROTECTED]">news:99s3lo$8v1$[EMAIL PROTECTED]...
 Using different type area with differnet option redistribute default
route,
 still the same result?

 Would like to hear the result?

 rgds;
 Vincent

 "John Neiberger" [EMAIL PROTECTED] ¼¶¼g©ó¶l¥ó
 [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
  Here is a link verifying that my understanding of 'no ip classless' is
  correct!
 
  http://www.cisco.com/warp/public/105/21.html
 
  So, referring to my other threads, why is OSPF overriding classfull
 routing
  table lookups?  I'd rather not retype the whole thing, so if you'd like
 the
  details of my experiments, refer to the other threads.  I just wanted to
  post this link to show that I wasn't entirely crazy!  Maybe a little,
but
  not entirely.
 
  Regards,
  John the Not-entirely Insane (formerly John the Cheerful, PKA John the
  Monday Grump)
 
 
 
 
 
  ___
  Send a cool gift with your E-Card
  http://www.bluemountain.com/giftcenter/
 
 
  _
  FAQ, list archives, and subscription info:
 http://www.groupstudy.com/list/cisco.html
  Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
 


 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Autonomous Systems

2001-03-24 Thread Katson PN Yeung

I think it is related to traffic flow control within an organization.

The more the intermediate AS, the more difficult for the source to control
the forward and backward traffic flow. Ideally the traffic flow is
symmetrical, if the traffic flow is not symmetrical, some "stars" or
unnecessary large ping time may appear.

If the intermediate AS is a single AS (at least appeared to be a single AS
to external peers), it is a lot easier to control the traffic flow. Within
the intermediate AS, it can be confederation or route reflector, plus OSPF
or even static route to control internal routing behaviour. It will be a lot
simpler to maintain symmetrical traffic.


""Alassar, Sonia"" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED].
..
 Can someone tell me why a single autonomous system (AS) is better than
 having multiple autonomous systems?

 Sonia

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Pls help: ATM study materials

2001-01-29 Thread Katson PN Yeung

For me, I would recommend the book "Cisco ATM solution"
ISBN:1-57870-213-5


"Li Li Zhao" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 Dear all,

 My current project is all about ATM. But I never
 really touch ATM before.

 Anyone has idea on where I can find good ATM study
 materials?

 Thanks so much!!

 Best regards,
 lilly

 __
 Do You Yahoo!?
 Yahoo! Auctions - Buy the things you want at great prices.
 http://auctions.yahoo.com/

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Installed my first Juniper router :-)!

2001-01-27 Thread Katson PN Yeung

Well it is a bit off-topic, I have a M20 box and played it for a month. I
read all the docs already.

CLI-wise, yes, Juniper is a lot different from Cisco, but logical grouping
makes it a lot easier to read.

Another more powerful thing is the routing-policy part. I personally like it
a lot, but it also make my life difficult. Complex! And it is definitely not
for a new comer

Still got some more to share, but they are off-topic. so I skipped it,
let's go back to CCIE discussion.


""Net Bum"" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 Hi all,

 Just wanted to let you know how it went...

 It was an M5.  The thing that surprised me first was how much this router
 weighs.  I believe the chassis alone weighs 88 lbs.  I had a few interface
 cards so perhaps the total weight was around 100 lbs.  It took about 6
 inches of rack height and took two of us to mount it.

 As far as configuring it, the CLI took a little getting used to.  It looks
 somewhat like programming code (with indentations and hierarchies)... much
 different than Cisco's CLI.  Once you learn the CLI, it becomes much
easier
 to read and understand (because of the indentations and the logical
 groupings).  It took me about an hour or so to configure it.  My guess
would
 be about 15-20 minutes if I had to do it again.

 I'm more comfortable with Cisco's CLI, probably because I've used it
 more...but I have to admit that I like many of the features of Juniper's
 CLI.  They have the ability to save multiple older configs, just in case
you
 want to go back... which is kinda cool.

 One thing that I would like for the M5 to have would be an RJ45 console
 input instead of a DB9.  Also, I think my Cisco 7505 looks more stylish
:-).
   I like the black metal look more than the silver metalic look.  On the
 other hand, I have to admit that the M5 takes half the rack space of my
7505
 (which is what the boss likes).

 I guess what really matters is reliability and performance.  If it's
 anything like what my networker friend said, then I'm excited!  We'll see
 how it goes :-)...
 _
 Get your FREE download of MSN Explorer at http://explorer.msn.com

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CCIE reading: TCP/IP by Doyle Vol.1 or 2

2001-01-20 Thread Katson PN Yeung

Yes, this is very true that Dr. Perlman's book should be on the shelf
Here is my list (and the reading procedure.)

1. Interconnection 2nd edition
2. Routing TCP/IP vol 1
3. IRA. 1st edition
4. Caslow's 2nd edition.
5. Cisco ATM solution
6.Integrating Voice and data networks.

I have already finished 1-3 multiple times and I really find it is helpful
for my daily job. Now I am doing 4, after reading it from cover to cover, I
will go for a written test.

One more point, personally, I think Interconnection 2nd edition should be
read and understand before anything else...



"Craig Columbus" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 I haven't read Doyle's Vol2, but if volume1 is taken as an indicator, I'm
 sure it'll be a good reference.
 I've read the others that you have on your list, with the exception of the
 Rossi book, and can confirm that you should have them on your shelf.
 In addition, you really should obtain a copy of Interconnections by Radia
 Perlman.

 Craig

 At 09:29 AM 1/20/2001 -0600, you wrote:
 Hello,
 
 I am looking at obtaining the books that are "Required reading" for the
 CCIE lab, according to www.ccbootcamp.com. I have heard great things
about
 their perpetration labs and plan to buy them as soon as I can get my lab
 pieced together from optsys.
 
 The books listed are:
 
 Internet Routing Architectures, Bassam Halabi
 CCIE Prof. Development Routing TCP/IP Volume I, Jeff Doyle
 Cisco Certification Bridges, Routers, and Switches for CCIE's, Caslow
 Cisco Lan Switching (CCIE professional development)
 Cisco Catalyst Lan Switching Louis R Rossi, Louis D. Rossi, Thomas Rossi
 
 
 I noticed the TCP/IP book by Doyle has a Volume 1 and Volume 2. The first
 book  seems to be the foundation book while the second one goes into BGP.
 Multicasting, etc.
 
 The Architecture book by Halabib is a must have, from everyone that has
 read it. It  seems to be heavy in BGP more than other exterior routing
 protocols. Is Doyle vol 2 worth reading back to front or are their better
 reads one the list for that information?
 
 Thanks,
 
 -Eric Gunn
 
 _
 FAQ, list archives, and subscription info:
 http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: BGP Reg Expressions

2001-01-20 Thread Katson PN Yeung

I use a very very stupid method to do it. But it works I found that
all private AS path cannot be identified simply by the AS number That
is, you apply an ASpath filtering list likes "sh ip bgp reg ^65001_" will
not be able to display path beginning with 65001.

I tried serveral methods at last I found this.

"sh ip bgp reg ^.65001._".

Is this what you want?


"root" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 Hello,

 Does anyone know how to tell the router to allow all AS's except for
 Private AS's for Ingress traffic?  I know that .* tells it to allow all
 paths, but how do I exclude 65xxx (Private AS's)?

 I know about the keyword "remove-private-as", but this is for Egress
 (outbound) traffic.  As far as I know it's for when your using
 confederations and such.

 Is this something I need to be concerned with?  I'm not sure if this is
 something I should be spending my time on or not.   Is it necessary to
 block inbound Private AS's?  Please excuse my ignorance, I'm still
 learning!

 Thank You,
 Andre

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: How to check IDB?

2001-01-05 Thread Katson PN Yeung

Thanks Chris.

Your information is very useful.

Another question is, how can I know the IDB number for each IOS version? Any
place I can find such info?

Many thanks to you.



"Chris McCoy" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...

 There's an undocumented command for showing the IDBs:

 [---Snip from Phrack 56---]

 @sh idb

 This command shows the hardware and software interface
 databases.
 this is cisco's way of keeping track of how many
 interfaces are present
 on the system.. includes hardware and software
 interfaces (physical,
 subinterfaces etc).  there is a software limit of 1024
 i believe in
 ios 11 and 2048 in ios 12.  this is a global limit for
 the router.

 output:

 ctalkb#sh idb

 19 SW IDBs allocated (2296 bytes each)

 9 HW IDBs allocated (4008 bytes each)
 HWIDB#1   1   FastEthernet0/0 (Ether)
 HWIDB#2   2   Serial2/0:0 (Serial)
 HWIDB#3   3   Ethernet3/0 (Ether)
 HWIDB#4   4   Ethernet3/1 (Ether)
 HWIDB#5   5   Ethernet3/2 (Ether)
 HWIDB#6   6   Ethernet3/3 (Ether)
 HWIDB#7   7   Serial4/0 (Serial)
 HWIDB#8   8   Serial5/0 (Serial)
 HWIDB#9   9   Loopback0

 Have fun...

 Chris M.

 --- Katson PN Yeung [EMAIL PROTECTED] wrote:
  Dear all,
 
  When reading Caslow's book, there is a term called
  IDB (Interface Descriptor
  Block). It specifies the max number of interface the
  router can have.
 
  Anyone knows which IOS command can check the IDB
  number of a router?
 
  Thanks.
 
 
  _
  FAQ, list archives, and subscription info:
  http://www.groupstudy.com/list/cisco.html
  Report misconduct and Nondisclosure violations to
 [EMAIL PROTECTED]


 __
 Do You Yahoo!?
 Yahoo! Photos - Share your holiday photos online!
 http://photos.yahoo.com/

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Routing Problem

2000-12-30 Thread Katson PN Yeung

Hi, this is what I can think of. Correct me if I am wrong. Thanks.

If your route is too specific and not able to be accepted by your upstream
provider(s), the next good thing I can think of is to use a load balancer
and insert it between the firewall and the web servers.

- You obtain another block of IP from pacbell. Small size may do.
- You configure your IGP to include IP addresses from both government and
Pacbell.
- You configure EBGP so that both of your router knows the best routes to
return. Don't forget iBGP also. Set local preference if required. Also,
inject default (or u do your own) if necessary. You don't need to annouce
anything to ur upstream, therefore a private AS is needed.
- You use a single block of private IP for your webservers.
- At your load balancer, configure two IP maps. One map for IP of
governmental ISP, another map for IP from Pacbell.
- Configure ur DNS to announce 2(or more, if needed) IPs for any host you
need to load balance.

- Done -

There are pros and cons.
- The good thing is, you have another level of protection by the load
balancer. (Smurf, ICMP bomb, scanning won't hurt you now). You may even
consider throw away your PIXs.
- The bad thing is, you have to buy two load balancers.  :(
- Also, you have to make sure the IP packet with right source IP to get out
to the right uplink. Otherwise, the packet will be dropped by your ISP. This
may need route-map.

"Brian Wilcox" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 I am currently adding another circuit to an additional
 ISP for my network.  I want to be able to use the
 first circuit for a redundant backup but am not clear
 on how to accomplish this.

 The setup:
 (diagram located at
 http://www.geocities.com/bwilcox_email/Routing_Design.html)
 - watch word wrap
 Internal LAN connected to two PIX's, one in failover
 mode.  The PIX's current default route points to the
 old ISP (government).  All of our internal (public)
 addresses are from the Government ISP's address space,
 which we have a /25 block.  I'm currently NATing my 10
 net to this pool.  I have an internal web server that
 the users need access to from outside the network.
 I'm adding the new circuit via PacBell and would like
 traffic to take that route and failover to the
 Government ISP.

 First solution: do BGP.  Well, I can't.  I only have a
 /25, too specific, from the Government ISP and I have
 to maintain the same address space.  So my next
 thought would be to PAT everything out the PacBell
 circuit.  That's fine and dandy but then the web
 server will reply to the source with a different
 address.  I'd like to route the web server to the
 Government ISP.  The only way I can think of doing
 that is via some sort of route map or policy map.

 Any comments would be greatly appreciated.

 Thanks,  Brian

 __
 Do You Yahoo!?
 Yahoo! Photos - Share your holiday photos online!
 http://photos.yahoo.com/

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: BGP newbie question, interesting

2000-12-21 Thread Katson PN Yeung

In case you have 2 routers connect back-to-back with iBGP, you don't need
IGP.

""Shaw, Winston Mr 5 SIG CMD"" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 I saw this original question yesterday but got sidetracked before I could
 send a response.
 I think BGP needs TCP port 179 just to operate properly. You would need at
 least static routes(Ip routing)
 just to get BGP routers talking to each other. So it maybe semantical, BGP
 cannot get of the ground without some other
 "routing" already in place. If the IGP or statics fail, so does BGP.
 Bottom Line: BGP is fully dependent on TCP/IP, as it has no inherent way
of
 transporting its own packets.
 Once the TCP packet arrives at a BGP router it can strip away the TCP and
IP
 headers and deal with the hellos, updates,etc.

 Thoughts anyone ?

 Winston.



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Cisco 2900 Series switch crashes other switch:Any inputs ?

2000-12-21 Thread Katson PN Yeung

Please take a look at "auto-negotiation" feature of all the switches. Try to
turn this feature off and manually set the interconnected ports as 10-half,
10-full, 100-half and 100-full.

Hope this helps.

""Pradeep Kumar"" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 Hi Folks,


 1. I have 3 cases where a Cisco Cat 2912,2914 switch is crashing other
Layer 4-7 capable switch.

 2. On testing with a Sniffer, I noted a large number of Ethernet
collisions.

 Any inputs - why ?

 the problem dissapears when I remove the Cat 2900 series.

 Thanks for responses.

 Pradeep



___
 Visit http://www.visto.com/info, your free web-based communications
center.
 Visto.com. Life on the Dot.

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: 7505 Reboots randomly Please HELP

2000-12-21 Thread Katson PN Yeung

Inamul,

You are very lucky. Our 7507 routers came with 12.0.7T and it is so buggy.
Memory leakage, 50% packet lost between FE and ATM interface, random
reboot.blah blah

We immediately turn to 12.0.10GD and *most* of the problem solved.


""Desai, Inamul"" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 It has been running fine for past 6 months with same IOS and we have =
 not
 changed any thing on the router recently. I am=A0suspecting flash =
 memory or
 mem on VIP card. We do have SLA with Cisco,=A0 talked to=A0TAC and they
 do not think it's IOS cos 12.07T is solid and stable IOS.=20
 The router has PRI module and VIP2 but only one of PRI is being used.=20
 Last week, it went down 3 times in day so don't know what's going with =
 it.
 IOS won't even recognize VIP 50 card Cisco sent us and we put old one
 back.
 I will try booting without config and see what happens..
 =A0
 Thanks for help
 =A0
 Inamul

 =A0
 =A0
 =A0-Original Message-
 From: Bowen, Shawn [mailto:[EMAIL PROTECTED]]
 Sent: Thursday, December 21, 2000 1:11 PM
 To: Desai, Inamul; [EMAIL PROTECTED]
 Subject: RE: 7505 Reboots randomly Please HELP



 This is an issue with 12.07T, I have seen it a lot with AS5800's =
 running
 this code.=A0 Boot without a config let it get FULLY booted, then copy =
 start
 to run.=A0 This works for us, as it seems the router does not fully get
 initialized before certain configurations get loaded.=A0 Also, it seems =
 that
 console logging on the 5800 is what kills it when it runs out of memory
 after initializing all the modems on the 5800's(1400 of em!).=A0 Like I =
 said,
 I know why this happens on 5800s, I'm assuming the issue is following =
 to the
 7505's.=A0 One other note, if you have the back plane oversubscribed =
 with
 certain cards it will do this as well.

 Shawn=20

 -Original Message-=20
 From: [EMAIL PROTECTED] [ mailto:[EMAIL PROTECTED]
 mailto:[EMAIL PROTECTED] ]On Behalf Of Desai, Inamul=20
 Sent: Thursday, December 21, 2000 3:03 PM=20
 To: [EMAIL PROTECTED]=20
 Subject: 7505 Reboots randomly Please HELP=20


 We got 7505 router reboots randomly twice a week or=20
 when you write to config file. We gone thru changing=20
 VIP card, resetting all cards, resetting mem modules, swapping=20
 mem modules on VIP card, powering up and down and talked to Cisco.=20
 It's running IOS 12.0(7)T with RSM, VIP2 and one PRI module.=20
 No matter how many times you cold boot it, it brings all=20
 enable LEDs except one on fastEthenet card. It does help=20
 some time when I reset FLASH cards.=20
 D u think it's flash cards ?=20

 here is startup info:=20
 System Bootstrap, Version 5.3.2(3.2) [kmac 3.2], MAINTENANCE INTERIM=20
 SOFTWARE=20
 Copyright (c) 1994 by cisco Systems, Inc.=20
 RSP processor with 131072 Kbytes of main memory=20
 =
 

 =20
 Creading the file into memory...=20
 Self decompressing the image :=20
 #=20
 =
 

 =20
 ### =
 [OK]=20
 %DBUS-3-SW_NOTRDY: DBUS software not ready after HARD RESET, elapsed =
 12032,=20
 stat=20
 us 0x0=20
 -Traceback=3D 60192B5C 60195A84 60195B3C 6015444C 601546C8 60128990 =
 600109B0=20
 %DBUS-3-SW_NOTRDY: DBUS software not ready after HARD_RESET, elapsed =
 12032,=20
 stat=20
 us 0x0=20
 -Traceback=3D 60192B5C 60194BA0 60195008 6019845C 600F4E64 600F4ECC =
 600E9090=20
 600E9=20
 298 600EA3B0 600EA39C=20
 %DBUS-3-SW_NOTRDY: DBUS software not ready after RESET, elapsed 12032,=20
 status 0x=20
 40=20
 -Traceback=3D 60192B5C 60194EC0 60191AF4 60195054 6019845C 600F4E64 =
 600F4ECC=20
 600E9=20
 090 600E9298 600EA3B0 600EA39C=20
 System Bootstrap, Version 5.3.2(3.2) [kmac 3.2], MAINTENANCE INTERIM=20
 SOFTWARE=20
 Copyright (c) 1994 by cisco Systems, Inc.=20
 RSP processor with 131072 Kbytes of main memory=20
 =
 

 =20
 Creading the file into memory...=20
 Self decompressing the image :=20
 #=20
 =
 

 =20
 ### =
 [OK]=20
 %CBUS-3-CCBPTIMEOUT: CCB handover timed out, CCB 0x5800FF50, slot 3=20
 -Traceback=3D 601A5348 601A398C 601A3E3C 6019D4F0 600EE70C 600F4EFC =
 600E9090=20
 600E9=20
 298 600EA3B0 600EA39C=20
 %LINK-4-NOMAC: A random default MAC address of .0c9a.31e7 has=20
 been chosen. Ensure that this address is unique, or specify MAC=20
 addresses for commands (such as 'novell routing') that allow the=20
 use of this address as a default.=20
 %SYS-4-CONFIG_NEWER: Configurations from version 12.0 

Re: BGP newbie question, interesting

2000-12-19 Thread Katson PN Yeung

But remember, you have to do full iBGP peering inside your AS. When you have
two routers, it wouldn't be a problem for no IGP.

When you have more than two, unless they are connected by a share medium
(such as Ethernet) and peer using the connected interface, otherwise, you
have to make some intra-AS routing (by static route, for example.) before
you can do full peering. Remember, there should be a level 3 connectivity
before any BGP peering to occur.

That my 0.02.




"Dan West" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 Is it possible to run IBGP as the ONLY IGP for a
 particular network (AS)??

 I know all routers would know about outside networks,
 but how about different internal areas knowing about
 what other networks are advertising

 BGP seems so capable that it could almost be done
 without OSPF, EIGRP, etc

 thanks.

 =
 Dan West -- CCNA, CCNP (in progress)

 __
 Do You Yahoo!?
 Yahoo! Shopping - Thousands of Stores. Millions of Products.
 http://shopping.yahoo.com/

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: A challenge

2000-12-19 Thread Katson PN Yeung

Seems that at host A, you set the IP/mask as 10.1.1.2 255.255.255.255,
gateway point to 10.1.1.1...


"Brian" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...

 Here is an interesting challenge, that may not be so obvious to some of
 you.

 You were told to configure a network as follows:

 10.1.1.1/8 router
 10.1.1.2/8 hostA gw 10.1.1.1
 10.1.1.3/8 hostB gw 10.1.1.1
 10.1.1.4/8 hostC gw 10.1.1.1


 hostA cannot ping hostB or hostC.  hostB and hostC have no problem pinging
 eachother however, but cannot ping hostA.

 hostA does get a reply however from all hosts if it pings 10.1.1.255.
 What do you suppose the problem is?

 I'll let you know when someone posts the right answer.

 Brian





 ---
 Brian Feeny, CCNP+ATM, CCDP   [EMAIL PROTECTED]
 Network Administrator
 ShreveNet Inc. (ASN 11881)

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Question about Jeff Doyle book

2000-12-18 Thread Katson PN Yeung

Dear all,

I have a question about reading Jeff Doyle book. I am studying EIGRP.

At page 354, last paragraph. It said:
"Note that Langley was the only feasible successor to subnet 10.1.7.0
because Chanute's locally calculated metric is higher than Wright FD (1024 
768)"

I have performed a calculation for every step of this example. At that
stage, Chanute locally calculated metric to 10.1.7.0 should be (1 + 4) * 256
= 1280. And therefore, Chanute should advertise a distance of 1280 to
Wright. So, the last statement of the above paragraph should be "(1280 
768)", not "(1024  768)".

Well, it does not affect the whole example, just want to know if my
calculation is right or not or if it is a "bug" of the book.

Thanks.




_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: EIGRP FORMAT HEADER

2000-12-18 Thread Katson PN Yeung

|- 8 --|- 8 --|- 8 --|- 8 --|
-
|Version | Opcode |checksum |
|   flag|
|  Sequence |
|ACK|
|   Autonomous System Number|
|   TLVs|
-

version = eigrp version
Opcode  = 1 update, 2 query, 3 reply, 4 hello, 5 IPX SAP
Flag= 0x0001 init, 0x0002 conditional receive bit
Seq = 32 bit sequence num
Automous num = id number of the EIGRP domain
TLVs= 0x0001 EIGRP parameter
  0x0003 Sequence
  0x0004 IOS Software version
  0x0005 Next multicast sequence
  0x0102 IP int route
  0x0103 IP ext route
  0x0202 Appletalk int route
  0x0203 Appletalk ext route
  0x0204 Appletalk cable configuration
  0x0302 IPX int route
  0x0303 IPX ext route

""Jônatas Amorim"" [EMAIL PROTECTED] wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
 Hi,

 I was wondering if someone could please send me the EIGRP FORMAT HEADER.

 Tank in advance,

 Jônatas
 _
 Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: eXtreme ,juniper, Foundary and Cisco

2000-12-11 Thread Katson PN Yeung

This is very true. However, apart from the delivery, other routing switch 
vendor really did a good job. I am a Foundry Bigiron user and I am always 
satisfy with it's performance. Not mentioning the switching power and 
wirespeed ACL, it can be rebooted the box in 6 sec. EG. Last time I did a 
flash upgrade then reboot, it tooks 6 sec, then OSPF established in 10 sec, 
and no user notice that to them, it is just 10-12 icmp packet lost. 
Impressive?




At 01:43 ¤U¤È 2000/12/11 -0800, Magnus Thorne wrote:
Does anyone have any problems getting Cisco products?  I've heard from a few
friends that Cisco is having trouble delivering their equipment, so people
are turning to Extreme, Juniper, and Foundary.

-Mag


Magnus Thorne
eVoice, Inc.
1394 Willow Road
Menlo Park, CA 94025
Direct: 650.330.3974
Main: 650.330.3700
Cell: 650.799.6887
Fax: 650.330.3901

DON'T PAY THE PHONE COMPANY FOR VOICEMAIL!
Sign up at www.evoice.com or call 1.800.GET.EVOICE


-Original Message-
From: Bharat Suneja [mailto:[EMAIL PROTECTED]]
Sent: Monday, December 11, 2000 9:33 AM
To: [EMAIL PROTECTED]
Subject: Re: eXtreme ,juniper, Foundary and Cisco


I'd just like to point out one fact that most enterprises do give a lot of
thought before making purchase decisions - Extreme, Foundry, Juniper, et al
DO NOT have end-to-end solutions. Cisco does.

The former also do not have a trained pool of network engineers to recommend
and implement their products, whereas you'll find plenty of Cisco-trained,
Cisco-experienced network engineers, designers  support professionals.
Cisco IOS offers one consistent interface  CLI throughout most of its
product line. Cisco also offers an impressive range of Network Management
products that we're yet to see from other vendors.

It's an endless debate - but not all enterprise networks require the
performance  capabilities of a Juniper or a Foundry.

Having said that, let me also add that as things stand, by no means is Cisco
technologically the most superior throughout the length  breadth of its
entire prouduct line. Juniper, Extreme, Foundry and others do have their
niches that they fill quite effectively, and pose challanges to Cisco in
those markets.

And as someone correctly pointed out, the basic networking knowledge is
still required even to implement other vendors' products. I doubt the CCIE
will lose its value any time soon, but we just might see a deluge of CCNAs 
CCNPs bred on the ExamCrams, Transcenders  Bosons.

(I'm yet to determine how many of the people on this newsgroup have/have not
used Boson tests... :-)

Bharat Suneja


"Mohamed Heeba" [EMAIL PROTECTED] wrote in message
91B200CBBEC3D111992A00805F31E6CB8807A3@MINAMAIL">news:91B200CBBEC3D111992A00805F31E6CB8807A3@MINAMAIL...
  so wat do u think the value of Cisco Certificates in the market , how long
  time this value is going to retain its bright ??
 
   -Original Message-
   From: Andy Walden [SMTP:[EMAIL PROTECTED]]
   Sent: Monday, December 11, 2000 5:34 AM
   To: Mohamed Heeba
   Subject: Re: eXtreme and Cisco
  
  
   They won't die, but they are loosing a ton of market share. Juniper is
   really kicking them hard on the router side (7xxx-12xxx). Foundry and
   Extreme are kicking them hard on the enterprise side (5xxx-6xxx). At
some
   point its all going to add up and be very painful for Cisco. That is the
   price of being the big boy in town. They are slow and strapped down with
a
   huge existing customer based and bloated buggy IOS where the other
   manufacturers don't have that problem.
  
   andy
  
   On Mon, 11 Dec 2000, Mohamed Heeba wrote:
  
hi guys
just coming now from extreme presentation .looks like they have much
   more
stronger products than cisco (in giga swtiches of course )do u
think
guys that Cisco is going to die because of small focused companies
like
extreme and jinper ??? if anyone feel interested ..we would like to
   discuss
this
   
   
Mohamed
   
_
FAQ, list archives, and subscription info:
   http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
   
 
  _
  FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
  Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
 


_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: 
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report 

Re: BGP Regexp and filter question

2000-12-06 Thread Katson PN Yeung

Hi,

Actually, you can use a single as-path accesslist statement to do the same 
thing. (AS1 with it's immediate surrounding ASes only).

ip as-path access-list 1 permit ^1_[0-9]*$


At 07:27 PM 12/6/00 +0900, Jaeheon Yoo wrote:
Hi,

In my humble opinion, how about this one?

Let me suppose your provider's AS number is 1:

ip as-path access-list 4 permit ^1 [0-9]+$
ip as-path access-list 4 permit ^1$

You can also check threads "Help about BGP regular expression".
and "Internet Routing Architecture" pp. 370~378


On 6 Dec 2000 02:07:52 -0500, [EMAIL PROTECTED] (John Neiberger) wrote:

 I'm in a multihoming situation where, so far, one provider is telling me
 they can only send the full routing table without some special arrangements.
 This sounds like a load of bullhockey, but that's what they're saying.  So,
 here's the question...
 
 I only want to receive from both ISPs their routes and their customer
 routes.  Then, I'll have a default route to the better ISP with a backup
 default to the second ISP.
 
 Is there a way to filter out the routes I don't want using regular
 expressions?  I couldn't figure out how to accept an ISP's routes plus their
 customer routes while not accepting everything else.  One ISP tags those
 routes allowing me to filter by community attribute, but the other is
 playing dumb.  (The dumb one is Sprint, and it seems they are being a pain
 just because they can.)
 
 It's late, my brain is toast, and I'm tired of thinking about it. Regular
 expressions give me a headeache, anyway.  Any ideas on how to do this?
 
 Many thanks as always,
 John
 
 
 
 
 
 ___
 Tired of slow Internet? Get @Home Broadband Internet
 http://www.home.com/xinbox/signup.html
 
 _
 FAQ, list archives, and subscription info: 
 http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: 
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: BSCN questions --need help

2000-12-05 Thread Katson PN Yeung

Q.38 the answer should be:

C. It can be used, to specify the network number and subnet mask of the routes.

When using extended accesslist to do route filtering, the list will permit 
those route(s) which is/are *exactly match* the number of network prefix bit.


At 02:08 PM 12/5/00 +0800, you wrote:

Q.9 Ans should be C:Nonbroadcast multiaccess (NBMA) or
E:Point-to-multipoint
 Ans C is fully meshed n/w   and Ans E is for partially meshed
n/w

Q.10Ans C : DRs generated n/w link status and flood within the area.

Q.13Ans C : Agree

Q.27I think Ans C unless you want to change the physical BW

Q.29I think Ans B

Q.38.   Ans D. The meaning of extended Access List Use in a Distribute List
is different.
 The source parameters of the extended access list are used
to indicate the address
 of the network whose updates are to be permitted or denied.
The destination parameters
 of the extended access list are used to indicate the subnet
mask of that network.

Rgds,
Sam

  -Original Message-
  From: Mahesh Gupta [SMTP:[EMAIL PROTECTED]]
  Sent: Monday, December 04, 2000 5:54 PM
  To:   [EMAIL PROTECTED]
  Subject:  BSCN questions --need help
 
  Hi,
 
  Attached are some of the BSCN questions which are creating lot doubts in
  my mind. I found these questions on one of the web site while preparing
  for BSCN exam. Please help me in understanding them as web site's
  evaluation said that my answers were wrong.
 
  Please spare some time for these questions.. if possible today...
 
  Thanks a lot.
 
  Regards,
  Mahesh
 
 
 
  Here are the questions with my answers :-
 
 
  Question 9 of 40.
  Which OSPF mode of operation is unot/u supported over NBMA
  topologies on a Cisco router?
 A. Broadcast
 B. Nonbroadcast point-to-point
 C. Nonbroadcast multi-access
 D. Point-to-point
 E. Point-to-multipoint
  My answer :-  E as it is RPC mode and is not supported in some scenarios
  e.g. IP over ATM. Here I tried with option B as well but
  that was also wrong.
 
  Question 10 of 40.
  What generates an OSPF type-2 LSA?
 A. ABRs
 B. ASBRs
 C. DRs
 D. BDRs
 E. Each router for each area to which it belongs
  My answer :- C as Type 2  LSA's are Link LSA's.
 
  Question 13 of 40.
  Given the following configuration:
 
  outer ospf 20
  network 10.3.3.2 0.0.0.0 area 0
  network 10.4.4.1 0.0.0.0 area 3
  network 10.5.0.0 0.0.255.255 area 3
  area 0 range 10.3.0.0 255.255.0.0
  area 3 range 10.4.4.0 255.255.255.0
  area 3 range 10.5.0.0 255.255.0.0
 
  Which statement about the difference between the effects of line 6 and
  the effects of line 7 is true?
 A. Line 6 advertises a single subnet into area 3 while line 7
  advertises all subnets into area 3
 B. Line 6 generates a host advertisement while line 7 generates a
  subnet advertisement
 C. Line 6 creates a more specific entry in the routing table of a
  router belonging to area 3 than does line 7
 D. Line 6 advertises a single subnet into area 0 while line 7
  advertises all subnets into area 0
  My answer :-C seems to most logical...
 
 
  Question 27 of 40.
  Which of the following best completes the following statement?
 
  When configuring EIGRP for WAN interfaces, the BANDWIDTH statement is
  _.
A. required for Frame Relay only
 B. required for subinterfaces only
 C. not required
 D. only used for multipoint circuits
  My answer :- no clue as very generic question guess was A or D but
  both were wrong. I thought A becasue specially in
  framerelay multipoint networks we put bandwidth but not necessarily only
  on subinterfaces. We may want to use the bandwidth
  command directly on a interface so that we can change the default value
  of T1 (1.544MB).
 
  Question 29 of 40.
  When using Enhanced IGRP in large scalable networks, why is additional
  EIGRP configuration required?
 A. To be hierarchical
 B. To adjust only WAN bandwidth because EIGRP is preconfigured (Plug
  and Play)
 C. To be monitored by the administrator
 D. To create manually entered summary routes
  My answer :-  I tried A and D but both were wrong. any clue
 
  Question 37 of 40.
  Which is unot/u a benefit of manual route summarization in EIGRP
  networks?
 A. Smaller routing tables
 B. Boundaries for query packets
 C. More rapid convergence
 D. A route to the null interface
  My answer :-  C becasue if we limit query boundry, rapid concergence
  will automatically happen ??
 
  Question 38 of 40.
  Which statement about an extended IP access list is true when
  configuring a distribute-list to filter BGP route advertisements on a
  Cisco router?
 A. It cannot be used; only standard IP access lists can be configured
 
 B. It can be used, to specify the source and destination IP address
  of the routes
 C. It can be used, to specify the network number and subnet mask of
  the routes
 D.