ip nat overloading question [7:46037]

2002-06-07 Thread Telemachus Luu

Hi,

I have a question regarding dynamic natting using ip nat overloading.  I
have the following configuration.

ip nat pool test 66.66.66.32 66.66.66.63 netmask 255.255.255.224
ip nat inside source list 1 pool test overload
access-list 1 permit 10.0.0.0 0.0.255.255

From internal, I can ping the outside fine.  When I do a sh ip nat trans, I
see the inside/outside global and local tables and they are fine.  However,
from a host out in the internet, a ping to the inside global address of
66.66.66.33 generates a time to live exceeded.  A traceroute from the
outside to that address results in a routing loop between the external nat
interface of my nat router and my isp router.

I tried entering in ip route 66.66.66.32 255.255.255.224 null0 to resolve
the issue, however, my pings and traceroutes simply stop at my nat router.  

What can I do to make it appear as if my nat pool address range terminates
on the router so a host out in the internet can ping that interface?

thanks,
Telemachus




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=46037t=46037
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



SPAN question for 6000 IDSM [7:33757]

2002-01-30 Thread Telemachus Luu

Hi,

How do I go about SPANning multiple vlans to a port.  I have a 6000 IDSM
blade in slot 9 and the monitoring port is 1.  However, I can only span one
vlan (one ingress session for both directions) at any one time.

set span vlan# 9/1

Running this command again for another vlan will only make the previous vlan
inactive for SPANning.
My goal is to SPAN several (15) vlans or ALL the vlans.  Any suggestions?

thanks,
Telemachus




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=33757t=33757
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Frame Relay help please .. thanks [7:29002]

2001-12-12 Thread Telemachus Luu

Hi,

I am having some issues bringing up a 64k frame relay circuit.  Wcom seems
to think it's a bad csu as they aren't able to loop it.  As a result, I did
some testing on my end.  I enabled inward bound looping on the dsu also.
For some reason, the line protocol for the serial interface comes up for
about 10 seconds, the comes back down.  When I do a shut and then a no shut,
again, it comes back up for about 10 seconds and then goes back down.
Here's the current config and a sh int ser...  LMI enq for send and receive
still increment even when line protocol is in down state... If I set the
csu/dsu to loopback, shouldn't the line protocol stay in up state forever?
If so, what could be the issue here?

interface Serial3/3
 ip address 10.252.0.1 255.255.0.0
 encapsulation frame-relay
!

Serial3/3 is up, line protocol is down (looped)
  Hardware is M4T
  Internet address is 10.252.0.1/16
  MTU 1500 bytes, BW 1544 Kbit, DLY 2 usec, 
 reliability 255/255, txload 1/255, rxload 1/255
  Encapsulation FRAME-RELAY, crc 16, loopback not set
  Keepalive set (10 sec)
  LMI enq sent  136, LMI stat recvd 0, LMI upd recvd 0, DTE LMI down
  LMI enq recvd 146, LMI stat sent  0, LMI upd sent  0
  LMI DLCI 1023  LMI type is CISCO  frame relay DTE
  FR SVC disabled, LAPF state down
  Broadcast queue 0/64, broadcasts sent/dropped 0/4, interface broadcasts 0
  Last input 00:00:09, output 00:00:09, output hang never
  Last clearing of show interface counters 00:20:31
  Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
  Queueing strategy: weighted fair
  Output queue: 0/1000/64/0 (size/max total/threshold/drops) 
 Conversations  0/1/256 (active/max active/max total)
 Reserved Conversations 0/0 (allocated/max allocated)
  5 minute input rate 0 bits/sec, 0 packets/sec
  5 minute output rate 0 bits/sec, 0 packets/sec
 150 packets input, 2035 bytes, 0 no buffer
 Received 0 broadcasts, 0 runts, 0 giants, 0 throttles
 1 input errors, 0 CRC, 0 frame, 1 overrun, 0 ignored, 0 abort
 184 packets output, 2415 bytes, 0 underruns
 0 output errors, 0 collisions, 22 interface resets
 0 output buffer failures, 0 output buffers swapped out
 36 carrier transitions DCD=up  DSR=up  DTR=up  RTS=up  CTS=up

Any help would be appreciated..

thanks




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=29002t=29002
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Logging source ip for telnet sessions [7:27585]

2001-11-28 Thread Telemachus Luu

Hi,

At my last company, I was able to configure logging for all telnet sessions
into the routers.  The logs displayed the source IP of the client and of
course the timestamp.  I have since forgotten how to enable this.  Can
someone please advise?

thanks...




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=27585t=27585
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Logging source ip for telnet sessions [7:27585]

2001-11-28 Thread Telemachus Luu

Without the use of ACL logging.

thanks...

-Original Message-
From: Telemachus Luu [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, November 28, 2001 1:45 PM
To: [EMAIL PROTECTED]
Subject: Logging source ip for telnet sessions [7:27585]


Hi,

At my last company, I was able to configure logging for all telnet sessions
into the routers.  The logs displayed the source IP of the client and of
course the timestamp.  I have since forgotten how to enable this.  Can
someone please advise?

thanks...




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=27587t=27585
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Linux Syslogd and multiple device question [7:21910]

2001-10-03 Thread Telemachus Luu

Hi,

I have multiple nodes and have set up logging to a syslog server.
Currently, in my /etc/syslog.conf, I have local0.debug through local7.debug
being used writing to separate log files.  On the first 8 devices, I have
set logging facility local0 throught local7 for each device accordingly.
However, how can I setup logging for the device beyond the 8th?  I know I
can setup the same facility and parse out the info by IP, but I would prefer
to have separate files for each device.  Any suggestions?

Thanks.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=21910t=21910
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



6509 Console into MSM [7:9858]

2001-06-25 Thread Telemachus Luu

How does one console into the MSM on a Cat 6509?  I can console into the
switch and session into the msm, but would like to know the console method.

Thanks,
Telemachus




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7i=9858t=9858
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Can't telnet after applying nat

2001-01-22 Thread Telemachus Luu

hello,

I have two e interfaces.  On e0/0, I applied ext ip 207.x.x.1, on e0/1, I
applied int 192.168.1.1.  I labeled e0/0 with ip nat outside, and e0/1 with
ip nat inside.  in global, i configured ip nat inside source list 1
interface e0/0 overload, where acl 1 is permit any.  Traffic passes though
fine, and everything works great.  However, I am unable to telnet to router
using EXTERNAL ip.  I can however, telnet using internal ip from internal
network of course.  I did not set any configuration for access-class, in
fact i have no other acls at all.  Any suggestions on what I might be doing
wrong???


thanks
telemachus

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



Network services firms

2001-01-03 Thread Telemachus Luu

Hi,

I know this might not be the right place to ask this question, but I am
doing some market analysis on U.S. companies that provide network services,
specifically: infrastructure, high availability, and network security.  I
have a list of some 40 public companies, mainly vendor firms like IBM and
Lucent that have network services arms, and system integration houses that
provide network services.  However, I wanted to gather some private
companies as well.  I am also looking for profitability and efficiency info
such as operating margins, profit margins, rev/employee, etc.  If someone
could send me some links or suggestions, I would greatly appreciate it.


thanks
Telemachus


_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]