Re: another OT: why you UNIX guys look down on we NT guys? [7:6936]

2001-06-02 Thread Me

My final reply on this.

""Kelly Hair""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Jason -
>
>Regarding your barb on
> Unix experts should be CCIEs -  by the same token we should could also
state
> that all NT admins are on the same level as all script kiddies...
Please...
> there are some good/great NT admins out there who are very technical.

I'm very glad you finally agree. See, it's not that difficult.. in case you
have not notice, this whole thread started with some silly "unix guru"
putting down NT people. :-)


>
> You never answered the Windows 3.1 AS question...   Would you trust your
> Enterprise to this?

To answer your Q, I have run enterprise on this. I have moved on, (which is
something you should think about)

> There are Unix systems that are still running from
> that um.. time period.  For some fun reading, Jason, check out
> http://www.sciam.com/1998/1198issue/1198techbus2.html   Perhaps the link
is
> a little old but it is one example of how many organizations are
attempting
> to use Windows NT in the Enterprise.  Hopefully, the IRS does not...
Then
> again, 4 billion later and they still have problems perhaps that could be
> their new answer.   If only that flat tax would pass... sigh...

I still have DOS running ocassionally, as have been mentioned before, all OS
has it's place. So stick that in your thick skull

>
> If Cisco is working on a GUI then they are going the same path as Lucent
and
> others before them.   I cannot wait until the know it all manager
configures
> the network and does not understand why it doesn't work... I mean.. all
the
> pretty lines with a thunderbolt connected to a ring here and a bar
there...
> Guess there will always be work for IT folks :)

So the reason why Cisco should be working on a GUI is so that there will be
work for pple like you ?

>
> One last thing.. could you send me some mail offline from this mailing
list?
> You are listed as an anonymous poster and I would love to continue this
> conversation in a more private forum.

In fact, let's don't even continue this conversation, public or private.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=6936&t=6936
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: another OT: why you UNIX guys look down on we NT guys? [7:6937]

2001-06-02 Thread Me

Guess I have not read any CCNA books recently

I won't even bother to flame you for the "joke??" . When you find me a unix
admin who can plan the deployment of 50,000 workstation and successfully
roll it out, we can discuss again

""Michael L. Williams""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> In case you haven't noticed, most CCNA books point out the fact that the
IOS
> uses a "Unix-ish" shell, with command line completion, etc. just like
Unix.
>
> Some of the low end equipment, like the 700 series and the 1900s allow you
> to use a web interface, but virtually everything else is command line.
>
> Can you provide facts showing that the IOS *isn't* Unix-ish?  Perhaps
Cisco
> is working on a GUI, (don't flame me for this ... it's a joke), they're
> working on a GUI so all the NT admins can have a chance at becoming Cisco
> gurus =)
>
> Mike W. (former NT admin)
>
> "Jason"  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > Oh, now the IOS is Unixish ?? Phew, so by that token, all Unix experts
> would
> > be CCIE... so I guess the number would include all the so call
Unix/Linux
> > "experts"
> > I don't remember mentioning that the ATM runs NT, most of them actually
> run
> > OS2. The extra $$ you save from using open?? source OS would be waste on
> > support
> >
> > In case you have not notice, Cisco is working on a GUI
> >
> >
> >
> > ""Kelly Hair""  wrote in message
> > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > "Jason" -
> > >
> > > By your logic, Windows NT 3.1 is all you need for your Enterprise to
> > > succeed.  Good luck in that endevour!
> > >
> > > In response to your other point, yes, I would trust my ATM server to
> > Linux.
> > > The blue screen is pretty but I would prefer to have money instead.
> Oh..
> > > not to mention the extra money I would have from using a an open
source
> OS
> > > rather than an M$ one...
> > >
> > > Perhaps Cisco should throw out the Unixish IOS and replace it with a
GUI
> > so
> > > everyone could write configs for routers.  Sounds like a grand idea...
> > >
> > > Regards,
> > > Kelly
> > >
> > > > What was your point ? That Multics sucks , and by the same token,
> > > > therefore Unix sucks and NT/W2K rules !!! At least, NT/W2K was based
> on
> > > > a working operating system. Anyone of you notice that Unix is all
> about
> > > > ego ? If Unix is finished in 1 month, why are there still people
> > > > working on it ? On the other hand, if Unix is perfect, why the hell
> are
> > > > people working on it ? If Unix promotes innovation, why is nobody
> using
> > > > it ? Would you trust you ATM machine to Linux ?
> > > >
> > > >
> > > >
> > > > ""Jim Dixon""  wrote in message
> > > > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > >> THE PROGRAMMING LANGUAGE B
> > > >>
> > > >> ABSTRACT
> > > >> B is a computer language designed by D. M. Ritchie and K. L.
> Thompson,
> > > >> for primarily non-numeric applications such as system programming.
> > > >> These typically involve complex logical decision-making, and
> > > >> processing of integers, characters, and bit strings. On the H6070
TSS
> > > >> system, B programs are usually much easier to write and understand
> > > >> than assembly language programs, and object code efficiency is
almost
> > > >> as good. Implementation of simple TSS subsystems is an especially
> > > >> appropriate use for B. This
> > > > technical
> > > >> report contains a description of the MH-TSS (Honeywell 6070)
version
> > > >> of B (by S. C. Johnson), and a tutorial introduction to most of the
> > > >> features of the language (by B. W. Kernighan).
> > > >>
> > > >> Ken Thompson
> > > >>  The principal inventor of the Unix operating system and author of
> > > >> the B language, the predecessor of C.
> > > >>
> > > >> In the early days Ken used to hand-cut Unix distribution tapes,
often
> > > >> with
> > > > a
> > > >> note that read "Love, ken". Old-timers still use his first name
> > &

Re: another OT: why you UNIX guys look down on we NT guys? [7:6976]

2001-06-03 Thread Me

You must be a GREAT GURU who couldn't even even figure out how the
groupstudy news server works and how you have been getting your mails.. ha
ha ha
Could someone tell this poor guy how the news server for groupstudy have
been configured so that he can understand  I think it's too complicated
!!! In any case, don't bother emailing me because talking to you would be a
absolute waste of time if you cannot understand a simple news-server, how
can I even discuss anything technical with you ha ha ha.

Let's end this...


""Michael L. Williams""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> You don't even deserve a rebuttal, "[EMAIL PROTECTED]".  You won't
even
> say who you are.. 50,000 workstations my ass while you're making
up
> fake credentials, why not just say it was 100,000 workstations or 1
million.
>
> "Me"  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > Guess I have not read any CCNA books recently
> >
> > I won't even bother to flame you for the "joke??" . When you find me a
> unix
> > admin who can plan the deployment of 50,000 workstation and successfully
> > roll it out, we can discuss again
> >
> > ""Michael L. Williams""  wrote in message
> > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > In case you haven't noticed, most CCNA books point out the fact that
the
> > IOS
> > > uses a "Unix-ish" shell, with command line completion, etc. just like
> > Unix.
> > >
> > > Some of the low end equipment, like the 700 series and the 1900s allow
> you
> > > to use a web interface, but virtually everything else is command
> line.
> > >
> > > Can you provide facts showing that the IOS *isn't* Unix-ish?  Perhaps
> > Cisco
> > > is working on a GUI, (don't flame me for this ... it's a joke),
they're
> > > working on a GUI so all the NT admins can have a chance at becoming
> Cisco
> > > gurus =)
> > >
> > > Mike W. (former NT admin)
> > >
> > > "Jason"  wrote in message
> > > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > > Oh, now the IOS is Unixish ?? Phew, so by that token, all Unix
experts
> > > would
> > > > be CCIE... so I guess the number would include all the so call
> > Unix/Linux
> > > > "experts"
> > > > I don't remember mentioning that the ATM runs NT, most of them
> actually
> > > run
> > > > OS2. The extra $$ you save from using open?? source OS would be
waste
> on
> > > > support
> > > >
> > > > In case you have not notice, Cisco is working on a GUI
> > > >
> > > >
> > > >
> > > > ""Kelly Hair""  wrote in message
> > > > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > > > "Jason" -
> > > > >
> > > > > By your logic, Windows NT 3.1 is all you need for your Enterprise
to
> > > > > succeed.  Good luck in that endevour!
> > > > >
> > > > > In response to your other point, yes, I would trust my ATM server
to
> > > > Linux.
> > > > > The blue screen is pretty but I would prefer to have money
instead.
> > > Oh..
> > > > > not to mention the extra money I would have from using a an open
> > source
> > > OS
> > > > > rather than an M$ one...
> > > > >
> > > > > Perhaps Cisco should throw out the Unixish IOS and replace it with
a
> > GUI
> > > > so
> > > > > everyone could write configs for routers.  Sounds like a grand
> idea...
> > > > >
> > > > > Regards,
> > > > > Kelly
> > > > >
> > > > > > What was your point ? That Multics sucks , and by the same
token,
> > > > > > therefore Unix sucks and NT/W2K rules !!! At least, NT/W2K was
> based
> > > on
> > > > > > a working operating system. Anyone of you notice that Unix is
all
> > > about
> > > > > > ego ? If Unix is finished in 1 month, why are there still people
> > > > > > working on it ? On the other hand, if Unix is perfect, why the
> hell
> > > are
> > > > > > people working on it ? If Unix promotes innovation, why is
nobody
> > > using
> > > > > > it ? Wou

Re: another OT: why you UNIX guys look down on we NT guys? [7:6977]

2001-06-03 Thread Me

We never knew , cause it is the only instance I ever know of that a trainee
has been "kicked" out of class for not meeting pre-requisite...


""Brian""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> training for a mouse, how does an admin like that make it through the day?
>
> Brian "Sonic" Whalen
> Success = Preparation + Opportunity
>
>
> On Thu, 31 May 2001, Jason wrote:
>
> > This is becoming one of those why do NT guys look down on Unix guys
> > thing. I once seen a Unix admin attend a NT course and was rejected
by
> > the trainer on the first day because he doesn't know how to use a mouse,
> and
> > the trainer insisted that he is not going to train someone how to use
the
> > mouse on a Admin course.
> >
> >
> > ""Priscilla Oppenheimer""  wrote in message
> > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > There really was an NB which stood for New B. It's wasn't a joke. ;-)
> > >
> > > Priscilla
> > >
> > > At 07:11 PM 5/31/01, Howard C. Berkowitz wrote:
> > > >Basic Computer Programming Language, which became B, which became C.
> > > >
> > > >
> > > > >B and New B.
> > > > >
> > > > >Priscilla
> > > > >
> > > > >At 06:39 PM 5/31/01, Howard C. Berkowitz wrote:
> > > > >>  >Want to make any UNIX-head apoplex?  Remind them that DOS is
UNIX
> > > >subset.
> > > > >>>The multi-tasking & multi-threaded functions were dropped because
> > there
> > > > >>>weren't enough bits in the registers for the Intel 8088. These
were
> > > added
> > > > >>>back in when the hardware for PC's was available. However, they
did
> > add
> > > > >>>better mnemonics for the UNIX commands so 'ls' became 'dir'.
'Easy'
> > > > >>>translates to 'stupid' somehow. But even so it's UNIX!  DOS is
UNIX!
> > > > >>>tee-hee.
> > > > >>>
> > > > >>>DOS clowns.
> > > > >>>UNIX dweebs.
> > > > >>>NT geeks.
> > > > >>>Cisco nerds.
> > > > >>>Where's Diane Arbus when we need her?
> > > > >>>
> > > > >>>- susan
> > > > >>
> > > > >>
> > > > >>Get back to the origins of the name UNIX.  Pronounced aloud, is
there
> > > > >>an English word that comes to mind?
> > > > >>
> > > > >>The ancestor of UNIX is MULTICS.  UNIX is castrated MULTICS.
> > > > >>
> > > > >>Extra credit for the two predecessors of C. (No, the first one
isn't
> > A).
> > > > >
> > > > >
> > > > >Priscilla Oppenheimer
> > > > >http://www.priscilla.com
> > > 
> > >
> > > Priscilla Oppenheimer
> > > http://www.priscilla.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=6977&t=6977
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: another OT: why you UNIX guys look down on we NT guys? [7:7020]

2001-06-03 Thread Me

LOL  Like I said, you don't understand. :-)


""Michael L. Williams""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Yes, please.. let's end this
>
> I understand news servers, Sir.  I've configured and installed many of
them.
> They're not complex.  I understand them enough to know that if you weren't
> scared to, you could take 10 seconds in your news reader to enter your
REAL
> name and e-mail address.  I also understand that you're not brave enough
to
> because all you've given is nothing but fake names, e-mail addresses, and
> credentials the whole time.
>
> Please don't waste anymore bandwidth until you're ready to stop hiding
> behind a shield of anonymity.
>
> "Me"  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > You must be a GREAT GURU who couldn't even even figure out how the
> > groupstudy news server works and how you have been getting your mails..
ha
> > ha ha
> > Could someone tell this poor guy how the news server for groupstudy have
> > been configured so that he can understand  I think it's too
> complicated
> > !!! In any case, don't bother emailing me because talking to you would
be
> a
> > absolute waste of time if you cannot understand a simple news-server,
how
> > can I even discuss anything technical with you ha ha ha.
> >
> > Let's end this...
> >
> >
> > ""Michael L. Williams""  wrote in message
> > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > You don't even deserve a rebuttal, "[EMAIL PROTECTED]".  You won't
> > even
> > > say who you are.. 50,000 workstations my ass while you're
making
> > up
> > > fake credentials, why not just say it was 100,000 workstations or 1
> > million.
> > >
> > > "Me"  wrote in message
> > > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > > Guess I have not read any CCNA books recently
> > > >
> > > > I won't even bother to flame you for the "joke??" . When you find me
a
> > > unix
> > > > admin who can plan the deployment of 50,000 workstation and
> successfully
> > > > roll it out, we can discuss again
> > > >
> > > > ""Michael L. Williams""  wrote in message
> > > > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > > > In case you haven't noticed, most CCNA books point out the fact
that
> > the
> > > > IOS
> > > > > uses a "Unix-ish" shell, with command line completion, etc. just
> like
> > > > Unix.
> > > > >
> > > > > Some of the low end equipment, like the 700 series and the 1900s
> allow
> > > you
> > > > > to use a web interface, but virtually everything else is command
> > > line.
> > > > >
> > > > > Can you provide facts showing that the IOS *isn't* Unix-ish?
> Perhaps
> > > > Cisco
> > > > > is working on a GUI, (don't flame me for this ... it's a joke),
> > they're
> > > > > working on a GUI so all the NT admins can have a chance at
becoming
> > > Cisco
> > > > > gurus =)
> > > > >
> > > > > Mike W. (former NT admin)
> > > > >
> > > > > "Jason"  wrote in message
> > > > > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > > > > Oh, now the IOS is Unixish ?? Phew, so by that token, all Unix
> > experts
> > > > > would
> > > > > > be CCIE... so I guess the number would include all the so call
> > > > Unix/Linux
> > > > > > "experts"
> > > > > > I don't remember mentioning that the ATM runs NT, most of them
> > > actually
> > > > > run
> > > > > > OS2. The extra $$ you save from using open?? source OS would be
> > waste
> > > on
> > > > > > support
> > > > > >
> > > > > > In case you have not notice, Cisco is working on a GUI
> > > > > >
> > > > > >
> > > > > >
> > > > > > ""Kelly Hair""  wrote in message
> > > > > > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > > > > > "Jaso

Re: RE:UNIX NT BEATING A DEAD OS [7:7063]

2001-06-04 Thread Me

Actually it's for here or to go, Sir ;-)

""MIRSKY Carl""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I wish I had thought of it... :-)  Anyway, can we PLEASE end this now?  We
> ALL have our own opinions, and as is was stated several times, there is no
> one OS that can do it all  Just like anything else.  I think what we
should
> be more concerned with is how we can all unite and keep this exceptional
> industry going, so we can continue to earn a decent living and be able to
> afford to have groups like this (THANKS PAUL).  Otherwise instead of
asking
> UNIX or NT, we will be asking PAPER or PLASTIC ?!?!?!
>
> Carl.
>
>
>
> -Original Message-
> From: Donald B Johnson jr [mailto:[EMAIL PROTECTED]]
> Sent: Monday, June 04, 2001 11:37 AM
> To: MIRSKY Carl; [EMAIL PROTECTED]
> Subject: Re: another OT: why you UNIX guys look down on we NT guys?
> [7:6820]
>
>
> that was awesome
> Thank You,
>
> Don Johnson
>
>
>
>
> - Original Message -
> From: "MIRSKY Carl"
> To:
> Sent: Friday, June 01, 2001 1:12 PM
> Subject: RE: another OT: why you UNIX guys look down on we NT guys?
[7:6820]
>
>
> > Soapbox on:
> >
> > I think this says it all and that's all's I know.  (Courtesy of your
> friends
> > at Brainbuzz.com)
> >
> >
>
http://cramsession.brainbuzz.com/video/everyossucks/default.asp?OSsucks=Open
> >
> > Soapbox Off:
> >
> >
> > "Put yer seat belt on, I wanna try somethin'. I saw it in a cartoon once
> and
> > I'm pretty sure it'll work !"
> >,
> >   /'^ ^'\
> >  ((o)-(o))
> > --oOOO--(_)--OOOo-
> > Carl Mirsky CCNP,CCDP,MCSE,SCSA,
> > Technical Solutions Architect
> > Covansys ( www.covansys.com )
> > 1750 E. Golf Rd. #1100
> > Schaumburg, IL  60173
> > E-mail: [EMAIL PROTECTED]
> > Ph: 847-969-3054
> >   .oooO
> > (   )  Oooo.
> > -\ (---(   )---
> >   \_)   ) /
> >(_/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=7064&t=7063
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



port needed open for dlsw (tcp encap) [7:34981]

2002-02-09 Thread ME

With dlsw, useing tcp encap, what tcp ports do I need open in an access-list
to allow dlsw to work?  TCP 2065 by itself is not enough.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=34981&t=34981
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



DLSW access-list problem - more info [7:34985]

2002-02-09 Thread ME

I can see the the dlsw connection is useing tcp 2065, but seems to be
another piece missing... (dlsw peer works fine without acces-list).

Any help would be appreciated... I fly to SJ tomorow for the lab on
Monday...

Thanks!

R0-R1#sh access-list 101

Extended IP access list 101

permit udp any any eq rip (23 matches)

permit tcp any any eq 2065 (39 matches)

permit tcp any any eq bgp

deny ip any any (105 matches)

R0-R1#

R0-R1#

DLSw: CONN: peer 150.20.12.2 open failed due to partner close

DLSw: peer 150.20.12.2(2065), old state DISCONN, new state DISCONN

R0-R1#

DLSw: passive open 150.20.12.2(11021) -> 2065

DLSw: action_b(): opening write pipe for peer 150.20.12.2(2065)

R0-R1#

DLSw: dlsw_tcpd_fini() for peer 150.20.12.2(2065)

DLSw: tcp fini for peer 150.20.12.2(2065) while blocking

R0-R1#

DLSw: CONN: peer 150.20.12.2 open failed due to partner close

DLSw: peer 150.20.12.2(2065), old state DISCONN, new state DISCONN

R0-R1#

DLSw: passive open 150.20.12.2(11022) -> 2065

DLSw: action_b(): opening write pipe for peer 150.20.12.2(2065)

R0-R1#

DLSw: dlsw_tcpd_fini() for peer 150.20.12.2(2065)

DLSw: tcp fini for peer 150.20.12.2(2065) while blocking




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=34985&t=34985
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: DLSW access-list problem - more info [7:34985]

2002-02-09 Thread ME

Useing access-list 101 deny ip any any log I found:%SEC-6-IPACCESSLOGP: list
101 denied tcp 150.20.12.2(2065) -> 150.20.12.1(11048), 1 packet (and other
such ports around 11000).
Based on that - the following works...
access-list 101 permit udp any any eq rip

access-list 101 permit tcp host 150.20.12.2 host 150.20.12.1 eq 2065

access-list 101 permit tcp host 150.20.12.2 host 150.20.12.1 est

access-list 101 permit tcp any any eq bgp

access-list 101 deny ip any any log


""Charles Manafa""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> DLSW uses port 2065 for read, and 2067 for write
>
> CM
>
> - Original Message -
> From: "ME"
> To:
> Sent: Saturday, February 09, 2002 10:05 PM
> Subject: DLSW access-list problem - more info [7:34985]
>
>
> > I can see the the dlsw connection is useing tcp 2065, but seems to be
> > another piece missing... (dlsw peer works fine without acces-list).
> >
> > Any help would be appreciated... I fly to SJ tomorow for the lab on
> > Monday...
> >
> > Thanks!
> >
> > R0-R1#sh access-list 101
> >
> > Extended IP access list 101
> >
> > permit udp any any eq rip (23 matches)
> >
> > permit tcp any any eq 2065 (39 matches)
> >
> > permit tcp any any eq bgp
> >
> > deny ip any any (105 matches)
> >
> > R0-R1#
> >
> > R0-R1#
> >
> > DLSw: CONN: peer 150.20.12.2 open failed due to partner close
> >
> > DLSw: peer 150.20.12.2(2065), old state DISCONN, new state DISCONN
> >
> > R0-R1#
> >
> > DLSw: passive open 150.20.12.2(11021) -> 2065
> >
> > DLSw: action_b(): opening write pipe for peer 150.20.12.2(2065)
> >
> > R0-R1#
> >
> > DLSw: dlsw_tcpd_fini() for peer 150.20.12.2(2065)
> >
> > DLSw: tcp fini for peer 150.20.12.2(2065) while blocking
> >
> > R0-R1#
> >
> > DLSw: CONN: peer 150.20.12.2 open failed due to partner close
> >
> > DLSw: peer 150.20.12.2(2065), old state DISCONN, new state DISCONN
> >
> > R0-R1#
> >
> > DLSw: passive open 150.20.12.2(11022) -> 2065
> >
> > DLSw: action_b(): opening write pipe for peer 150.20.12.2(2065)
> >
> > R0-R1#
> >
> > DLSw: dlsw_tcpd_fini() for peer 150.20.12.2(2065)
> >
> > DLSw: tcp fini for peer 150.20.12.2(2065) while blocking




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=34988&t=34985
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



transport input none [7:34996]

2002-02-09 Thread ME

Does anyone know the affect of entering 'transport input none' on the
console line?  Many of the IPExpert labs show it in their answer keys, but
niether they, not Cisco really explains why. (That I can find.)  Cisco shows
it in many of their show run examples everywhere - with no explanation.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=34996&t=34996
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: transport input none [7:34996]

2002-02-09 Thread ME

That makes it sound like I would make the console port useable, but that it
not what happens.  I know that it will stop all traffic when applied to the
async lines, but I don't see any effect on the console port or the aux port.


""somera cecilia""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> "transport input none" prevents any protocol selection on the line. This
> makes the port unusable by incoming connections




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35000&t=34996
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: port needed open for dlsw (tcp encap) [7:34981]

2002-02-09 Thread ME

port 2067 never gets hit...
R0-R1#sh access-list
Extended IP access list 101
permit udp any any eq rip (2 matches)
permit tcp any any eq 2065 (6 matches)
permit tcp any any eq 2067
permit tcp any any eq bgp
deny   ip any any log (9 matches)
R0-R1#
%SEC-6-IPACCESSLOGP: list 101 denied tcp 150.20.12.2(179) ->
150.20.12.1(11084),
 1 packet
%SEC-6-IPACCESSLOGNP: list 101 denied 103 150.20.12.2 -> 224.0.0.13, 1
packet

Useing access-list 101 deny ip any any log I found:%SEC-6-IPACCESSLOGP: list
101 denied tcp 150.20.12.2(2065) -> 150.20.12.1(11048), 1 packet (and other
such ports around 11000).
Based on that - the following works...
access-list 101 permit udp any any eq rip

access-list 101 permit tcp host 150.20.12.2 host 150.20.12.1 eq 2065

access-list 101 permit tcp host 150.20.12.2 host 150.20.12.1 est

access-list 101 permit tcp any any eq bgp

access-list 101 deny ip any any log

Does this look right?


""John Kaberna""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> 2067
>
> John Kaberna
> CCIE #7146
> NETCG Inc.
> www.netcginc.com
> (415) 750-3800
>
> Instructor for CCIE R/S and Security 5-day class www.ccbootcamp.com
> __
> CCIE Security Training
> www.netcginc.com/training.htm
>
>
> ""ME""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > With dlsw, useing tcp encap, what tcp ports do I need open in an
> access-list
> > to allow dlsw to work?  TCP 2065 by itself is not enough.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=34990&t=34981
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



OT: Network jobs in Dallas, TX? [7:35608]

2002-02-16 Thread ME

I'm new to the Dallas area and recently laid-off.  I was wondering if folks
here knew of anyone looking for somebody with 10 years network exp. and a
CCIE in the Dallas area?  If so please reply.

Thanks,

Mark Egan, CCIE #8775




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35608&t=35608
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: The proxy problem with pix 525? [7:35603]

2002-02-16 Thread ME

It's always a good idea to hard-code speed and duplex settings.
interface ethernet0 auto
interface ethernet1 auto
interface ethernet2 auto

""cage""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> R--FW--DMZ
>|
>   Inside
>|
>Proxy
> One proxy is connected to the inside switch connecting to the FW, but
> internal users are slow to the outside,but the DMZ users are good.why? I
> think something wrong with the proxy configuration!
> The config is follwing:
>
>
> sh conf
> : Saved
> :
> PIX Version 6.0(1)
> nameif ethernet0 outside security0
> nameif ethernet1 inside security100
> nameif ethernet2 dmz security50
> nameif ethernet3 intf3 security15
> nameif ethernet4 intf4 security20
> enable password 8Ry2YjIyt7RRXU24 encrypted
> passwd 2KFQnbNIdI.2KYOU encrypted
> hostname pixfirewall
> fixup protocol ftp 21
> fixup protocol http 80
> fixup protocol h323 1720
> fixup protocol rsh 514
> fixup protocol smtp 25
> fixup protocol sqlnet 1521
> fixup protocol sip 5060
> fixup protocol skinny 2000
> names
> access-list 101 permit tcp any host 202.99.33.66 eq domain
> access-list 101 permit udp any host 202.99.33.66 eq domain
> access-list 101 permit tcp any host 202.99.33.67 eq domain
> access-list 101 permit udp any host 202.99.33.67 eq domain
>
>
> access-list 101 permit tcp any host 202.99.33.69 eq smtp
> pager lines 24
> interface ethernet0 auto
> interface ethernet1 auto
> interface ethernet2 auto
> interface ethernet3 auto shutdown
> interface ethernet4 auto shutdown
> mtu outside 1500
> mtu inside 1500
> mtu dmz 1500
> mtu intf3 1500
> mtu intf4 1500
> ip address outside 202.99.34.26 255.255.255.248
> ip address inside 192.168.4.1 255.255.255.0
> ip address dmz 202.99.33.254 255.255.255.0
> ip address intf3 127.0.0.1 255.255.255.255
> ip address intf4 127.0.0.1 255.255.255.255
> ip audit info action alarm
> ip audit attack action alarm
> no failover
> failover timeout 0:00:00
> failover poll 15
> failover ip address outside 0.0.0.0
> failover ip address inside 0.0.0.0
>
>
> failover ip address dmz 0.0.0.0
> failover ip address intf3 0.0.0.0
> failover ip address intf4 0.0.0.0
> pdm history enable
> arp timeout 14400
> global (outside) 1 202.99.33.253 netmask 255.255.255.0
> global (dmz) 1 202.99.33.73 netmask 255.255.255.0
> nat (inside) 1 0.0.0.0 0.0.0.0 0 0
> nat (dmz) 0 202.99.33.0 255.255.255.0 0 0
> static (inside,outside) 202.99.33.74 192.168.4.250 netmask 255.255.255.255
0
> 0
> static (inside,dmz) 202.99.33.75 192.168.4.250 netmask 255.255.255.255 0 0
> access-group 101 in interface outside
> route outside 0.0.0.0 0.0.0.0 202.99.34.30 1
> timeout xlate 3:00:00
> timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 rpc 0:10:00 h323
> 0:05:00 sip 0:30:00 sip_media 0:02:00
> timeout uauth 0:05:00 absolute
> aaa-server TACACS+ protocol tacacs+
> aaa-server RADIUS protocol radius
> no snmp-server location
> no snmp-server contact
> snmp-server community public
> no snmp-server enable traps
> no floodguard enable
> no sysopt route dnat
>
>
> telnet timeout 5
> ssh timeout 5
> terminal width 80
> Cryptochecksum:c64047c1918e68b2c5136af635cd2a0d
>
> pixfirewall(config)#




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35605&t=35603
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Loading IOS on a 4000M [7:35689]

2002-02-17 Thread ME

Your np-6e cards may not be bad, you may just need newwer IOS to recognise
them.  If you have another router connect them via the serial cards and tftp
new code into the 4000M.

""Gragg Vaill""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I admit to being stuck, I have inherited a 4000M that is blank (no IOS)
> and for the life of me I cannot figure out how to get the IOS loaded on
> it. The console port is a DB-25 and I do not have a working Ethernet
> card for it. I do have a couple np-4t cards though. Speaking of Ethernet
> cards for this model, I have a couple np-6e cards that give the
> following error on boot up "%nim-2-badnimid: BAD NIM ID". I'm guessing
> that means the cards are bad (boy am I glad that they were part of the
> inheritance!) and if they aren't, what does the error mean and how would
> on go about fixing it? Thanks in advance for your time, I do greatly
> appreciate it.
>
> Gragg Vaill




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35693&t=35689
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Keeping Tunnel Up [7:35840]

2002-02-19 Thread ME

Also check your config for recursive routing over the tunnel.
http://www.cisco.com/warp/public/105/gre_flap.html

Mark Egan, CCIE #8775

""Aamer Kaleem""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I cannot keep an ip tunnel up when the primary wan link fails. I mean the
> Dial backup works fine with both backup interface and dialer watch-list,
but
> the tunnenl which was source from the failed serial link would not come up
> even though all routes are being learned thru BRI interface and are in
> routing table.
>
> Can some please guide me what should i do...
>
> Thank you,
>
> Aamer Kaleem




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35847&t=35840
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Current CD Rom Documentation [7:35930]

2002-02-20 Thread ME

Last week they had the latest and greatest Dec 2000 ROM at the lab ;)

""Chuck""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> This post gives me a good excuse to break open the most recent doc CD that
I
> have - dated October 2001.
>
> this one contains the 12.2 documentation. It is in the new format, with
the
> drop down menus.
>
> The search engine is still crap, and your best bet is to continue to
> practice drilling down through the menus.
>
> I don't think it is a violation of NDA to mention that my last time
through
> the lab, the doc CD available to me was still using the old format. I
don't
> recall if 12.2 was on it or not. It may have been, but since 12.1 was what
> was advertised as the Lab IOS, I just went to the 12.1 doc section when I
> needed to look something up. Not that it mattered, because my pod had not
> yet been upgraded at the time.  ;->
>
> HTH
>
> Chuck
>
>
> ""McHugh Randy""  wrote in message
> [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > Does anyone know where or how to obtain a current Cisco CD Rom
> documentation
> > CD with the latest IOS of like 12.2 on it without like taking an
official
> > Cisco course from a Training partner? I have a bunch of them are
outdated
> > with only up to IOS 12.1. They certainley seem to be difficult to
navigate
> > and do a search on . Any suggestions welcome.
> > Thank you,
> > Randy




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35941&t=35930
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Cisco Announces Global Rollout of New CCIE Security [7:35963]

2002-02-20 Thread ME

Has anyone heard about this one yet?

Differing from CCIE Security, the Cisco Security Specialist 1 demonstrates
an individual's proficiency in designing, installing, and supporting
Cisco-specific security solutions in three core areas of network security:
firewalls, intrusion detection systems and VPNs. Cisco Security Specialist 1
is one of the most difficult focused certifications to achieve, requiring
individuals to pass four rigorous courses and exams.
http://biz.yahoo.com/bw/020220/202213_1.html

Mark Egan, CCIE #8775




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=35963&t=35963
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



VPN Client 3.x to IOS VPN [7:36708]

2002-02-27 Thread ME

IOS just started to support the VPN Client 3.x (as apposed to the older
secure client that only supports 95/NT) with ver 12.2.7T. I have not been
able to find any information about it published on Cisco's public web site
yet. Any idea who might be working on the bleeding edge of IOS VPNs that
might know more about this?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36708&t=36708
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: VPN Client 3.x to IOS VPN [7:36708]

2002-02-28 Thread ME

I had 12.2.8T, but I had not been able to find this link.

Thanks!

""Kevin Douglas""  wrote in message
news:[EMAIL PROTECTED].;
> 12.2.7T never came out and is renamed 12.28T.  Have you seen the following
> URL :
>
>
>
http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122newft/122
t/122t8/ftunity.htm
>
> Kevin
>
> ME wrote:
>
> > IOS just started to support the VPN Client 3.x (as apposed to the older
> > secure client that only supports 95/NT) with ver 12.2.7T. I have not
been
> > able to find any information about it published on Cisco's public web
site
> > yet. Any idea who might be working on the bleeding edge of IOS VPNs that
> > might know more about this?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=36814&t=36708
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: insufficent memory on a new 1603R, Help!!!!! [7:37082]

2002-03-02 Thread ME

The 1600's use old 72pin pc simms.  Find one 16mb or less and your good to
go.

""Matt Saunders""  wrote in message
news:[EMAIL PROTECTED].;
> Hi all,
>
> Ive just recently brought a Cisco 1603R which came with a 4Mb Flash Card &
> 8Mb of Ram and im desperate to connect it to my other router (2503) which
is
> running IOS (tm) 2500 Software (C2500-D-L), Version 12.0(9a) so i can
> practise some commands etc.
>
> When i boot the 1603R i get the following:-
>
>  System Bootstrap, Version 12.0(3)T, RELEASE SOFTWARE (fc1)
> Copyright (c) 1999 by cisco Systems, Inc.
>
>  Simm with parity detected, ignoring onboard DRAM
>
> System Bootstrap, Version 12.0(3)T, RELEASE SOFTWARE (fc1)
>
> Copyright (c) 1999 by cisco Systems, Inc.
>
> C1600 platform with 8192 Kbytes of main memory
>
>  program load complete, entry point: 0x2005000, size: 0x2e4e0d
>
> Self decompressing the image :
> #
>
> ###
[OK]
>
>  Cisco Internetwork Operating System Software
>
> IOS (tm) 1600 Software (C1600-NY-M), Version 12.1(6), RELEASE SOFTWARE
(fc1)
>
> Copyright (c) 1986-2000 by cisco Systems, Inc.
>
> Compiled Wed 27-Dec-00 14:24 by kellythw
>
> Image text-base: 0x02005000, data-base: 0x0260D624
>
>  cisco 1603 (68360) processor (revision C) with 7680K/512K bytes of
memory.
>
> Processor board ID 26436386, with hardware revision 0004
>
> Bridging software.
>
> X.25 software, Version 3.0.0.
>
> Basic Rate ISDN software, Version 1.1.
>
> 1 Ethernet/IEEE 802.3 interface(s)
>
> 1 Serial(sync/async) network interface(s)
>
> 1 ISDN Basic Rate interface(s)
>
> System/IO memory with parity disabled
>
> 8192K bytes of DRAM onboard
>
> System running from RAM
>
> 7K bytes of non-volatile configuration memory.
>
> 4096K bytes of processor board PCMCIA flash (Read/Write)
>
>  SYSTEM INIT: INSUFFICIENT MEMORY TO BOOT THE IMAGE!
>
>
>
> On the side of the flash card it says Version: 12.0(14), Image:
> c1600-y-mz.120-14, Filename x00028c4.
>
> I gather the image is run from RAM and ive looked at the cisco website
which
> says that the above image is compatible with the memory i have got though
it
> seems to me that the router is loading something different.
>
> Im sure i must be missing something here and any help would be greatfully
> received.
>
> Regards
>
> Matt
>
> (UK)




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37083&t=37082
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: PIX PAT Problem!! Urgent [7:37052]

2002-03-02 Thread ME

What he wants do do works fine.  The static command works both ways.. Use
the static to define to ip and the port.  I use this myself.

""Leslie McIntosh""  wrote in message
news:[EMAIL PROTECTED].;
> Ivan,
>
> This is a shot in the dark, but here is what I am
> seeing scanning through my PIX book:
>
> NAT,GLOBAL commands are out because they require
> inside to outside commands.
>
> STATIC appears to be outbound only as well
>
> ROUTE appears that it could work and allows the
> if_name to be internal or external:
>
> ROUTE if_name ip_address netmask gateway_ip [metric]
> ROUTE if_name 205.11.1.0 255.255.255.0 10.1.1.100
>
> Try that.
>
> Thanks,
>
> Leslie McIntosh
>
>
> --- Ivan  wrote:
> > Hi all,
> >
> > That is Very very Urgent!!!Please Help!!!
> > Does anyone know that Can Cisco Pix Pat Ouside
> > address to Inside address?
> > for exampe:
> >
> > |---205.11.1.0---|
> > |
> > |
> > (outside Security  L 0)
> > (--PIX--)
> > (-Inside security L100)
> >  |
> >  |
> > |--10.1.1.0---|
> >
> > can 205.11.1.0 255.255.255.0   PAT to 10.1.1.100??
> >
> > Thank you very much for your kindly help
> >
> > ivan
> [EMAIL PROTECTED]
>
>
> =
> Leslie McIntosh
> Network Engineer
> CCNA, CNE, CNS, A+, Network+ Certified
> [EMAIL PROTECTED]
>
> __
> Do You Yahoo!?
> Yahoo! Sports - sign up for Fantasy Baseball
> http://sports.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37084&t=37052
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Pix NAT - Two to one [7:37179]

2002-03-04 Thread ME

Adding a second IP to the internal host is the only way I know of useing the
PIX.

""Rich""  wrote in message
news:[EMAIL PROTECTED].;
> Why not add an additional ip to the internal host and have two nats?
>
> - Original Message -
> From: "Gaz"
> To:
> Sent: Monday, March 04, 2002 3:06 PM
> Subject: Pix NAT - Two to one [7:37179]
>
>
> > Hi all,
> >
> > Has anybody tried NAT'ing two outside addresses to one internal (DMZ)
> > address on the same port (80) in some way.
> > Not too difficult to get round, as I can get the DNS of one site changed
> and
> > use the single address outside to single inside.
> > The advantage would be that when the web sites are separated, to two
> > machines inside, I would like to be able to change the pix settings
> > immediately rather than change DNS and wait a couple of days for DNS to
> > propagate.
> > I'm sure there may be some simple way of doing it, but I couldn't find
it
> > whilst playing about today.
> >
> > Any ideas welcome.
> >
> > Thanks,
> >
> > Gaz




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=37225&t=37179
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: CAT4003 and 3com [7:39084]

2002-03-21 Thread ME

3COM never auto-negotiates properly with Cisco, look for FCS errors on the
switch ports.  The best solution is to hardcode NICs to FD. The 'easiest'
solution is to hardcode the switchports to HD.

Mark Egan, CCIE #8775

 wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Greetings,
>
> Any knowing problems out there with 3com cards and cat 4000 switches?
> I've a customer complaining when they insert new win2k with 3com cards,
> the whole network slows down.  When the switch is rebooted everything is
> back to normal.  The problem repeats when the add more win2k machine.
>
> Any ideas
>
> ThanksNabil




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=39103&t=39084
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



inverse arp

2000-08-28 Thread me

Is there a command to discover ip addresses learn from inverse arp.






___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: List of ip protocols [7:62460]

2003-02-05 Thread Me
search for rfc1700

""Symon Thurlow""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> Hi all,
>
> Does anyone know of a reference list of ip protocols and their numbers
>
> For example gre = 47, tcp = 6? Etc
>
> Cheers,
>
> Symon




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=62548&t=62460
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Load Balancing and NAT [7:64904]

2003-03-12 Thread Me
Interesting.  I am looking at doing the same thing after my Sprint circuit
was down three times in three business days for ~4 hours each time.
Something that makes my situation difficult is I have control of the 1700 on
my quest circuit but not the sprint router, it is owned by sprint.  So I
have to leave the sprint router in place and run its eth0 to an ethernet wic
in the 1700 and let it hadle the load balancing.  I'm thinking of trying to
let the 1700 do NAT as well so the ip blocks of both quest and sprint
circuits to appear within the same NAT'ed block inside.  The other part of
the design I have is a vpn established between the firewall behind the
router and a firewall in my co-lo.  I'm thinking of trying to establish the
vpn with an ip on each isp's block for redundancy there then start settign
up all traffic in and out of my site to go through the vpn so I shouldn't
have to worry about the different ip blocks.

""Terry Oldham""  wrote in message
news:[EMAIL PROTECTED]
> Hello all,
>
>  I am attempting to setup a Cisco 1721 Router with load balancing and
> NAT so that we can provide a dual T1 connection to the network. This is
the
> first time I have done anything like this and I was wanting to know if
> anyone had any good pointers they could give me or any commands that I
> should beware of or add.
>
> Thanks,
>
> Terry O




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=65247&t=64904
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


PIX Exec-timeout [7:41382]

2002-04-13 Thread ME

How do you get the PIX to automatically log out the console if someone
forgets to log out?  The equivalent of exec-timeout in IOS?




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=41382&t=41382
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: PIX Exec-timeout [7:41382]

2002-04-13 Thread ME

This works fine for telnets, but doesn't affect console connections.  I
would like to automatically timeout a console session after x minutes.

""scott jensen""  wrote in message
[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> I apologize for previous incorrect information. (timeout conn)
>
> Try this instead...
>
> Cisco Secure PIX Firewall Documentation:
>
> http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/index.htm
>
> PIX Firewall Version 6.1 > Cisco PIX Firewall Command Reference
>
>
> show telnet timeout
>
> telnet timeout minutes  (telnet timeout 5)
>
> (The number of minutes that a Telnet session can be idle before being
closed
> by PIX Firewall. The default is 5 minutes. The range is 1 to 60 minutes.)
>
> "who" or "show who"  with "kill" works manually...




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=41395&t=41382
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



CPU utlization of a single voip cirtcuit

2000-11-09 Thread Yuen Me

Our company is planning to implement VoIP on top of existing cisco network 
and I'm conducting network audit. Can somebody advise me the resource 
consumption in term of CPU utilization / Buffer utilization across all 
platforms (26XX ... 75xx) for a single voip circuit ? My logic if my current 
4700 spends 40% CPU utilization on pure data and each voice circuits (50 
pps) consumes 2%, I should not put more than 10 circuits to keep cpu in the 
safe zone of 60%. Similar logics for buffer.

The assumption of voice circuit is: VoIP, G.729r8, no VAD.

If you have conducted such kind of network audit for voip implementation 
before, appreciate if you can share with me privately. Thanks.

Yuenme


_
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.

Share information about yourself, create your own public profile at 
http://profiles.msn.com.

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



On-demand pppoe on 1750

2000-11-15 Thread Yuen Me

Hi, I've sucessfully setup pppoe on 1750 for the ADSL line. However it's 
"always on" nature costs a lot of tariff. How can I change it this pppoe 
into on-demand so that only when there is packet, ppp session will be 
brought up. IOS is 12.1

I find nothing related in "vpdn-group" and "int dialer". Even I set the 
"dialer idle-timeout = 20", the session never drops.

Yuenme
_
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.

Share information about yourself, create your own public profile at 
http://profiles.msn.com.

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Transparent Briding over Frame Relay Hub and Spoke

2000-05-28 Thread Yuen Me

Hi all,

I tend to conclude the following statement and pls confirm whether I'm 
right:

"point to point" subinterface is the only option in the HUB to allow spoke 
to spoke packet forwarding happen in transparent bridging environment.

I've tried physical interface and multipoint subinterface on hub. I've 
tried:
- making the hub as the root bridge
- extensive map statements in the hub and spoke with "broadcast" keyword

All of them fail. I believe transparent bridge does not allow the packet 
received on one interface to be forwarded to the same interface again, even 
though the paths (DLCI) are different.

Yuenme


Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com

___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Transparent Briding over Frame Relay Hub and Spoke

2000-05-29 Thread Yuen Me

I would say not as trival as it looks. As I emphasized before, spoke to 
spoke connectivity is the goal. While neither physical interface, nor 
multipoint interface in the HUB will make spoke to spoke happen. No matter 
how many "frame-relay map bridge ??? broadcast" is put in.

It's neither a spanning tree issue. All ports in all bridges are in 
forwarding state.

Appreciate if anyone can show me a working config (again spoke to spoke) 
with hub config other than point to point subinterface

Yuenme

>From: "Ryan Moffett" <[EMAIL PROTECTED]>
>Reply-To: "Ryan Moffett" <[EMAIL PROTECTED]>
>To: "Yuen Me" <[EMAIL PROTECTED]>, <[EMAIL PROTECTED]>
>Subject: RE: Transparent Briding over Frame Relay Hub and Spoke
>Date: Sun, 28 May 2000 19:54:24 -0400
>
>You can configure transparent bridging over Frame Relay point-multipoint
>interfaces.
>
>See:
>http://www.cisco.com/univercd/cc/td/doc/product/software/ios120/12cgcr/wan_c
>/wcfrelay.htm#xtocid2427346
>
>Basically, on the point-multipoint subinterface, you need to associate the
>DLCI's with a bridge group using the "frame-relay map bridge" command.   An
>example is given here:
>http://www.cisco.com/univercd/cc/td/doc/product/software/ios120/12cgcr/wan_r
>/wrfrelay.htm#xtocid18778220
>
>Ryan
>
>-Original Message-
>From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
>Yuen Me
>Sent: Sunday, May 28, 2000 7:17 PM
>To: [EMAIL PROTECTED]
>Subject: Transparent Briding over Frame Relay Hub and Spoke
>
>
>Hi all,
>
>I tend to conclude the following statement and pls confirm whether I'm
>right:
>
>"point to point" subinterface is the only option in the HUB to allow spoke
>to spoke packet forwarding happen in transparent bridging environment.
>
>I've tried physical interface and multipoint subinterface on hub. I've
>tried:
>- making the hub as the root bridge
>- extensive map statements in the hub and spoke with "broadcast" keyword
>
>All of them fail. I believe transparent bridge does not allow the packet
>received on one interface to be forwarded to the same interface again, even
>though the paths (DLCI) are different.
>
>Yuenme
>
>
>Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com
>
>___
>UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
>FAQ, list archives, and subscription info: http://www.groupstudy.com
>Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
>
>___
>UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
>FAQ, list archives, and subscription info: http://www.groupstudy.com
>Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com

___
UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html
FAQ, list archives, and subscription info: http://www.groupstudy.com
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Transparent Briding over Frame Relay Hub and Spoke

2000-05-29 Thread Yuen Me

Thanks. These are partial config excluding ip stuff. Topology is as follows. 
The purpose is to bridge appletalk between a station on Spoke2's ethernet 
and the Spoke 1 BVI

HUB-SwitchSpoke1
  \
   \
\
 \Spoke2

HUB

decnet routing 9.4
decnet node-type routing-iv
!
interface Serial0
encapsulation frame-relay
clockrate 125000
ip address 193.1.1.4 255.255.255.0
no ip directed-broadcast
decnet cost 30
frame-relay map bridge 402 broadcast
frame-relay map bridge 403 broadcast
bridge-group 1
!
bridge 1 protocol ieee
bridge 1 priority 10
!

Spoke1

decnet routing 9.3
decnet node-type routing-iv
!
bridge irb
!
interface Serial0
no ip address
no ip directed-broadcast
encapsulation frame-relay
!
interface Serial0.304 point-to-point
ip address 193.1.1.3 255.255.255.0
no ip directed-broadcast
decnet cost 30
frame-relay interface-dlci 304
bridge-group 1
!
interface BVI1
no ip address
no ip directed-broadcast
appletalk cable-range 100-100 100.3
appletalk zone try
!
router eigrp 2497
redistribute ospf 2497 metric 100 1000 255 1 1500
network 193.1.1.0
!
bridge 1 protocol ieee
bridge 1 route appletalk
bridge 1 route decnet
bridge 1 route ip
no bridge 1 bridge ip

Spoke 2

decnet routing 9.2
decnet node-type area
!
interface Ethernet0
ip address 199.73.2.2 255.255.255.0
no ip directed-broadcast
decnet cost 10
bridge-group 1
!
interface Serial0
no ip address
no ip directed-broadcast
encapsulation frame-relay
!
interface Serial0.204 point-to-point
ip address 193.1.1.2 255.255.255.0
no ip directed-broadcast
decnet cost 30
frame-relay interface-dlci 204
bridge-group 1
!
bridge 1 protocol ieee
!




>From: "Ryan Moffett" <[EMAIL PROTECTED]>
>To: "Yuen Me" <[EMAIL PROTECTED]>
>Subject: RE: Transparent Briding over Frame Relay Hub and Spoke
>Date: Mon, 29 May 2000 18:52:56 -0400
>
>I have made this work before on several occasions.   Spoke to Spoke
>connectivity was not the goal, but it worked.  Please send me your
>configuration files and if you want, I can help.
>
>
>-Original Message-
>From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
>Yuen Me
>Sent: Monday, May 29, 2000 2:35 PM
>To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
>Subject: RE: Transparent Briding over Frame Relay Hub and Spoke
>
>
>I would say not as trival as it looks. As I emphasized before, spoke to
>spoke connectivity is the goal. While neither physical interface, nor
>multipoint interface in the HUB will make spoke to spoke happen. No matter
>how many "frame-relay map bridge ??? broadcast" is put in.
>
>It's neither a spanning tree issue. All ports in all bridges are in
>forwarding state.
>
>Appreciate if anyone can show me a working config (again spoke to spoke)
>with hub config other than point to point subinterface
>
>Yuenme
>
> >From: "Ryan Moffett" <[EMAIL PROTECTED]>
> >Reply-To: "Ryan Moffett" <[EMAIL PROTECTED]>
> >To: "Yuen Me" <[EMAIL PROTECTED]>, <[EMAIL PROTECTED]>
> >Subject: RE: Transparent Briding over Frame Relay Hub and Spoke
> >Date: Sun, 28 May 2000 19:54:24 -0400
> >
> >You can configure transparent bridging over Frame Relay point-multipoint
> >interfaces.
> >
> >See:
> >http://www.cisco.com/univercd/cc/td/doc/product/software/ios120/12cgcr/wan_
>c
> >/wcfrelay.htm#xtocid2427346
> >
> >Basically, on the point-multipoint subinterface, you need to associate 
>the
> >DLCI's with a bridge group using the "frame-relay map bridge" command.   
>An
> >example is given here:
> >http://www.cisco.com/univercd/cc/td/doc/product/software/ios120/12cgcr/wan_
>r
> >/wrfrelay.htm#xtocid18778220
> >
> >Ryan
> >
> >-Original Message-
> >From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of
> >Yuen Me
> >Sent: Sunday, May 28, 2000 7:17 PM
> >To: [EMAIL PROTECTED]
> >Subject: Transparent Briding over Frame Relay Hub and Spoke
> >
> >
> >Hi all,
> >
> >I tend to conclude the following statement and pls confirm whether I'm
> >right:
> >
> >"point to point" subinterface is the only option in the HUB to allow 
>spoke
> >to spoke packet forwarding happen in transparent bridging environment.
> >
> >I've tried physical interface and multipoint subinterface on hub. I've
> >tried:
> >- making the hub as the root bridge
> >- extensive map statements in the hub and spoke with "broadcast" keyword
> >
> >All of them fail. I believe transparent bridge does not allow the packet
> >received on one interface to be forwarded to the same interface again, 
&g

New to vlans...HELP [7:59655]

2002-12-20 Thread Me Morpheus
Hello.  I am new to the list and glad I found it.  I am just starting out
with vlans and I need some clarification.  Can someone clarify the following
statement:

I have the following layout:

I have 1 DSLAM with 2 ethernet ports (UPLINK and MNGT) that are both going
into a Cisco 2650 switch.  The switch is supposed to have 2 vlans, (A and
B). I also have a server that is connected to this switch.  The requirement
that was told to me was that the port connected to the server must be a
member of both VLANs and traffic sent from this port must be tagged (for
both vlans).  The port connected to the UPLINK port must be an untagged
member of one of the VLANs.  The port connected to the MGMT port must be an
untagged member of the other VLAN.

I am interested to know about what it means to have a port be part of an
untagged vlan and what it means to have traffic coming in from a port be
tagged for both vlans?

Can someone answer these question and preferrably post an example that would
show me what it means?

Thanks.

Dave

 

 



-
Do you Yahoo!?
Yahoo! Mail Plus - Powerful. Affordable. Sign up now




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=59655&t=59655
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: I need Boson Cisco Test Pack v3.22 demo for download !

2000-12-04 Thread Deal me In

I have had absolutely no problems with version 3.34 on Windows 2000 Pro and
Server and I started with
3.34 and not an earlier version. It is very much worth the money!!!
Rick

""John Hardman"" <[EMAIL PROTECTED]> wrote in message
90geq3$5to$[EMAIL PROTECTED]">news:90geq3$5to$[EMAIL PROTECTED]...
> It might be just as likely that he has Win2K which has lots of problems
> running the current 3.34 tests. I know I had to build out a NT 4 box to
run
> the current tests.
>
> $0.02
> --
> John Hardman CCNP MCSE+I
>
>
> ""Clayton Price"" <[EMAIL PROTECTED]> wrote in message
> 90flq2$327$[EMAIL PROTECTED]">news:90flq2$327$[EMAIL PROTECTED]...
> > A lot has been upgraded since 3.22.  Let me guess, you can't find a
crack
> > for anything newer than version 3.22
> >
> >
> > ""Romeo"" <[EMAIL PROTECTED]> wrote in message
> > 90fceq$df2$[EMAIL PROTECTED]">news:90fceq$df2$[EMAIL PROTECTED]...
> > > Hi there!
> > >
> > > Please, from where can I download Boson Cisco Test Pack v3.22 demo? It
> > > missing on Boson site.
> > >
> > > TIA
> > >
> > >
> > > _
> > > FAQ, list archives, and subscription info:
> > http://www.groupstudy.com/list/cisco.html
> > > Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
> > >
> >
> >
> > _
> > FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> > Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
> >
>
>
> _
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
>


_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Re: Boson vs. Colt ??????

2001-01-11 Thread Deal me In

I think that most of us are very capable of searching and using cracks and I
have used
them in the past when I feel a program is entirely over priced for no more
than it
does for me. In the case of the Boson exams they are well worth the $30 to
me for all
the hard work that is put into them. Some day you will look back and say why
is my
certification not worth anything more than the paper it is printed on
GO Boson!!
Rick


""Stull, Cory"" <[EMAIL PROTECTED]> wrote in message
0D7A05A19CE4D211BD050008C7330FE7258F19@CCUPDC">news:0D7A05A19CE4D211BD050008C7330FE7258F19@CCUPDC...
> There goes your groupstudy membership.  Its only $30 for crying out loud..
> These companies have to make money to stay in business to help us pass the
> exams.
>
> -Original Message-
> From: Stephen Skinner [mailto:[EMAIL PROTECTED]]
> Sent: Thursday, January 11, 2001 1:07 PM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: Re: Boson vs. Colt ??
>
>
> I AM ABOUT TO BECOME REALLY UNPOPULARbut i have a crack for ALL the
> BOSON test so you can get the FULL version for FREE.
>
> anybody!..
>
> Sorry priscilla
>
>
> >From: "John Huston" <[EMAIL PROTECTED]>
> >Reply-To: "John Huston" <[EMAIL PROTECTED]>
> >To: [EMAIL PROTECTED]
> >Subject: Re: Boson vs. Colt ??
> >Date: Thu, 11 Jan 2001 09:27:53 -0600
> >
> >Buy all of the Boson tests for the subject test that you are going to
take
> >test your knowledge.  The COLT tests are poorly written but will help you
> >with the "flavor" of the actual Cisco certification exam.
> >
> >[EMAIL PROTECTED]
> >
> >
> >""Rah Sta"" <[EMAIL PROTECTED]> wrote in message
> >[EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
> > > To All,
> > >
> > > Which practice exams are better for CCNP, Boson or Colt? Example:
BCRAN
> > > Opinions appreciated. Thanks
> > >
> > >
> > >  Raheem
> > > _
> > > Get your FREE download of MSN Explorer at http://explorer.msn.com
> > >
> > > _
> > > FAQ, list archives, and subscription info:
> >http://www.groupstudy.com/list/cisco.html
> > > Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
> > >
> >
> >
> >_
> >FAQ, list archives, and subscription info:
> >http://www.groupstudy.com/list/cisco.html
> >Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
>
> _
> Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.
>
> _
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
>
> _
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
> Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
>


_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]