RE: NetFlow ?

2001-04-06 Thread roger . gore

NetFlow switching is supported by IOS 11.1 (7200, 7500, and RSP7000
hardware), 11.2 and 11.2P (7200, 7500, and RSP7000), 11.3 and 11.3T (7200,
7500, and RSP7000), 12.0 (1720, 2600, 3600, 4500, 4700, AS5800, 7200,
uBR7200, 7500, RSP7000, and RSM), 12.0(3)T and later (1600, 1720, 2500,
2600, 3600, 4500, 4700, AS5300, AS5800, 7200, uBR7200, 7500, RSP7000, RSM,
MGX8800 RPM, and BPX 8650).

But...Cisco tells me you must have and pay for the Enterprise IOS plus buy a
license for each NetFlow collector you export netflow cache data to.
Basically, they told me it's illegal to have netflow switching enabled
without purchasing the license for it!  Yet it's a feature on straight IP
IOS!

The feature improves (speeds) packet switching and on routers with
significantly large acl's can reduce CPU utilization by 50% or more...


NetFlow Packaging: 

 "Cisco 7200/7500/RSM---Although NetFlow functionality is physically
included in all software images for these platforms, customers must purchase
a
NetFlow Feature License in order to be licensed for its use. NetFlow
licenses
are sold on a per-node basis.

 "Cisco 1000/1600/2500/2600/3600/4000/AS5800 Series--- NetFlow
functionality
is supported only in Plus images for these platforms. Customers are required
to
purchase an appropriate Plus image in order to utilize NetFlow functionality
on
these platforms.


If you would like to review the entire Netflow White Paper, you can see it
on-line at :

http://www.cisco.com/warp/public/cc/pd/iosw/ioft/neflct/tech/napps_wp.htm


Roger Gore
CCNA
CONUS TNOSC
Ft Huachuca, AZ
[EMAIL PROTECTED]
DSN 879-1237
COM 520 538-1237

-Original Message-
From: andre F [mailto:[EMAIL PROTECTED]]
Sent: Friday, April 06, 2001 13:28
To: [EMAIL PROTECTED]
Subject: NetFlow ?


Hello,

I'm trying to find out about NetFlow.  In the past NetFlow was only
supported in the higher end routers like the 7000 series.  I've noticed
that the feature called CEF has enabled NetFlow on lower end routers and
switches.  Does anyone know if NetFlow or CEF with NetFlow is supported
on the 3600 series routers?  If so, what are the drawbacks of using it
on it?  I'm not sure why it was only supported on the higher end
equipment, so I'm curious what problems I might run into running it on a
lower end router?  Or if it's not supported on the 3600 series any
suggestions would be appreciated!  I don't want to put the money out for
something high end like a 7000 series.

Thank You,
Andre
_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: flatbed scanner free

2001-03-21 Thread roger . gore

Touche' Mr Smith.You got an RFC # for that?
Thx
Roger

-Original Message-
From: Steve Smith [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, March 21, 2001 08:42
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: RE: flatbed scanner free



Come on Roger, everyone knows that all MGX switches have to boot with the
flatbed IOS, it has something to do with layer 2.546.

-Original Message- 
From: [EMAIL PROTECTED] [ mailto:[EMAIL PROTECTED]
mailto:[EMAIL PROTECTED] ] 
Sent: Wednesday, March 21, 2001 9:21 AM 
To: [EMAIL PROTECTED]; [EMAIL PROTECTED] 
Subject: RE: flatbed scanner free 


And this has what to do with Cisco routers / internetworking, Steve? 

-Original Message- 
From: steve [ mailto:[EMAIL PROTECTED] mailto:[EMAIL PROTECTED] ] 
Sent: Wednesday, March 21, 2001 08:09 
To: [EMAIL PROTECTED] 
Subject: flatbed scanner free 


Hi, 

Future Tech Marketing, the leaders in direct marketing, has just three days 
left in our new client promotion.  Call us at 877-798-9331 x 601 to qualify 
for your complementary flatbed scanner. 

Best Regards, 

Steve 
FTS Marketing 
-- 
To be removed from our database, please reply 
to this email with the subject "REMOVE". 

_ 
FAQ, list archives, and subscription info: 
http://www.groupstudy.com/list/cisco.html
http://www.groupstudy.com/list/cisco.html  
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED] 

_ 
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
http://www.groupstudy.com/list/cisco.html  
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED] 


_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Economic downturn--Impact on Cisco Certification aspirations?

2001-03-20 Thread roger . gore

i'll either be managing a .com / pre-ipo or a bankruptcy court's
network...either way, i'll be gainfully employed doing what i enjoy.
technology and the demand for it aren't going anywhere!

roger 

-Original Message-
From: Rich Chang [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, March 20, 2001 06:37
To: [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Subject: Economic downturn--Impact on Cisco Certification aspirations?


I thought IS would be a solid career, but now with some of the unpleasant 
DOT.COM stories in the news, is everyone cranking out the exams still? 
Hasthis had an impact on your morale?
_
Get your FREE download of MSN Explorer at http://explorer.msn.com

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Off topic(Kinda) Link to website which compares Book Prices

2001-03-19 Thread roger . gore

http://www.bestwebbuys.com/books/index.html

-Original Message-
From: Eric Gunn [mailto:[EMAIL PROTECTED]]
Sent: Monday, March 19, 2001 11:08
To: [EMAIL PROTECTED]
Subject: Off topic(Kinda) Link to website which compares Book Prices


I am going to be adding Caslow 2nd edition to my book collection and 
remember seeing a website that compared the prices of the various book 
stores when you search for a book. Would someone be kind
enough to post the link?

Thank You,

-Eric 

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: 2500 wont save config

2001-03-19 Thread roger . gore

You might try the "service compress-config" command...helped once on a 2600
router i have.  as imlied, it compresses the size of the config stored in
nvram.  
Roger

-Original Message-
From: Donald B Johnson Jr [mailto:[EMAIL PROTECTED]]
Sent: Monday, March 19, 2001 15:06
To: Adam Hickey; The.Rock; [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Subject: Re: 2500 wont save config


he didnt have time to read the technical part he had a really good paper
cert diatribe.
Don
- Original Message -
From: Adam Hickey [EMAIL PROTECTED]
To: The.Rock [EMAIL PROTECTED]; [EMAIL PROTECTED]
Cc: [EMAIL PROTECTED]
Sent: Monday, March 19, 2001 9:43 AM
Subject: Re: 2500 wont save config


 What does free memory have to do with trying to save a running-config
 (already in memory) to NVRAM (nothing but the startup-config there)? Last
 time I checked IOS, does not have any part in NVRAM. Plus, he didn't say
 anything about trying to upgrade IOS either.

 Are you sure he's the one with a paper cert? (I am only kidding, I know
you
 weren't picking on him) =P

 Adam Hickey
 [EMAIL PROTECTED]
 CCNA CCNP (in progress)
 _
 "And One!"


 - Original Message -
 From: "The.Rock" [EMAIL PROTECTED]
 Newsgroups: groupstudy.cisco
 To: [EMAIL PROTECTED]
 Sent: Monday, March 19, 2001 9:03 AM
 Subject: Re: 2500 wont save config


  It might not save due to lack of mem. Make sure you have enough room to
 hold
  both the current IOS as well as the one your trying to upgrade.
Otherwise
  you will need to delete one of them first. Being that your on IOS 10.3
 tells
  me that probably you don't have enough memory.
 
  And I see your title." LAN Engineer". I'm not picking on you, but it
  just seems that for the question you just asked, its not one that
someone
  would ask in your position. This goes back to the paper cert thing
 
 
  ""Plantier, William (Spencer)"" [EMAIL PROTECTED] wrote in
  message
  [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...
   I have a 2500 router with 10.3 IOS and I cant save the config. Any
   suggestions?
  
   Wm. Spencer Plantier
   LAN Engineer
   (919) 474-1300 ext 0873 Office
   (919) 474-1056 Fax
   (919)696-8848 Cell
   [EMAIL PROTECTED]
  
  
  
   _
   FAQ, list archives, and subscription info:
  http://www.groupstudy.com/list/cisco.html
   Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
  
 
 
 
 
  _
  FAQ, list archives, and subscription info:
 http://www.groupstudy.com/list/cisco.html
  Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
 

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Internet usage?

2001-03-13 Thread roger . gore

IP accounting!!!  hire a ccna to be your "IP accounting engineer" and pay
'em 78k/yearJust kidding :-)

i actually use NetHealth and find it to be a pretty good tool however i'm
not familiar with a feature on nethealth that will measure bw utilization
based on packet (payload) type.  i'm trying to find a way to measure total
bw consumption of the total available based on source IP / subnet.
nethealth can't do it.  there muxt be a way b/c this is what many isp's do
for billing, no?

thanks for asking the question.  

good luck.
roger
-Original Message-
From: Circusnuts [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, March 13, 2001 09:16
To: [EMAIL PROTECTED]; Rizzo Damian
Subject: Re: Internet usage?


NetFlow on your Catalyst's  75XX's.  Cisco/NetScout RMON probes  NetHealth
applications such as Concord NetHealth (pretty good, but labor intensive) or
Tavve (browser accessed- best application I've used).

None of this comes cheap, but you are beginning to ask questions that a lot
of people don't.  Most decisions are based on reviews of the access-list 
if gaping holes are not found, a call into the Telco is made for bigger
Internet pipe.

Good Luck
Phil

- Original Message -
From: "Rizzo Damian" [EMAIL PROTECTED]
To: [EMAIL PROTECTED]
Sent: Tuesday, March 13, 2001 3:16 PM
Subject: Internet usage?




 
   Do any of you know of any software utilities that can track and monitor
  what percentage of internet bandwidth is being used by various tasks
  such as streaming video, http, mp3, java, etc...?
 
   Thanks.
 
 
 
 
 
 
  Damian Rizzo
  Senior IT Engineer
  Marakon Associates
  203-978-6341
  [EMAIL PROTECTED]
 

 _
 FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Internet usage?

2001-03-13 Thread roger . gore

The IP accounting was a joke..

So, you're saying if I have a class b subnetted out to 100 different
buildings on my MAN, and I want to know what % of my T-3 to the WAN the
10.20.20.x subnet is responsible for utilizing, Top Talkers will do it?!  

Odd...I just talked with the NetHealth engineer's a couple months ago and
they said it's not doable with their product.  Guess I'll need to call them
again.  Will also check a couple other of your suggestions.  Thanks for
passing along the information.

roger

-Original Message-
From: Circusnuts [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, March 13, 2001 09:42
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]; [EMAIL PROTECTED]
Subject: Re: Internet usage?


IP accounting can effect a production box almost as bad as issuing Debugs.
What you are looking for is on NetHealth.  You are looking for what they
call "Top Talkers."  You can catch it by protocol, bandwidth, etc.  It has
been about 6 months since I've used it, but remember finding a few run-a-way
servers on the local MAN with Concorde.  Now Concord was getting it's info
from a Nescout RMON probe also (may change the relate- abilty a little).

Phil

- Original Message -
From: [EMAIL PROTECTED]
To: [EMAIL PROTECTED]; [EMAIL PROTECTED]; [EMAIL PROTECTED]
Sent: Tuesday, March 13, 2001 5:31 PM
Subject: RE: Internet usage?


 IP accounting!!!  hire a ccna to be your "IP accounting engineer" and pay
 'em 78k/yearJust kidding :-)

 i actually use NetHealth and find it to be a pretty good tool however i'm
 not familiar with a feature on nethealth that will measure bw utilization
 based on packet (payload) type.  i'm trying to find a way to measure total
 bw consumption of the total available based on source IP / subnet.
 nethealth can't do it.  there muxt be a way b/c this is what many isp's do
 for billing, no?

 thanks for asking the question.

 good luck.
 roger
 -Original Message-
 From: Circusnuts [mailto:[EMAIL PROTECTED]]
 Sent: Tuesday, March 13, 2001 09:16
 To: [EMAIL PROTECTED]; Rizzo Damian
 Subject: Re: Internet usage?


 NetFlow on your Catalyst's  75XX's.  Cisco/NetScout RMON probes 
NetHealth
 applications such as Concord NetHealth (pretty good, but labor intensive)
or
 Tavve (browser accessed- best application I've used).

 None of this comes cheap, but you are beginning to ask questions that a
lot
 of people don't.  Most decisions are based on reviews of the access-list 
 if gaping holes are not found, a call into the Telco is made for bigger
 Internet pipe.

 Good Luck
 Phil

 - Original Message -
 From: "Rizzo Damian" [EMAIL PROTECTED]
 To: [EMAIL PROTECTED]
 Sent: Tuesday, March 13, 2001 3:16 PM
 Subject: Internet usage?


 
 
  
Do any of you know of any software utilities that can track and
monitor
   what percentage of internet bandwidth is being used by various tasks
   such as streaming video, http, mp3, java, etc...?
  
Thanks.
  
  
  
  
  
  
   Damian Rizzo
   Senior IT Engineer
   Marakon Associates
   203-978-6341
   [EMAIL PROTECTED]
  
 
  _
  FAQ, list archives, and subscription info:
 http://www.groupstudy.com/list/cisco.html
  Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

 _
 FAQ, list archives, and subscription info:
 http://www.groupstudy.com/list/cisco.html
 Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Well Known ports

2001-03-08 Thread roger . gore

if you're not filtering it ith an acl, it's (the traffic) not being stopped
by your routeri see this mind-set a lot from end users
(non-internetworkers).  

build an acl to permit the ports in question, apply it to the appropriate
interface and have the security guys try it.  if they say it still doesn't
work yet you see them on your logs, they definately ned to look elsewhere
for the problemfirewall? remote router? config error on their box or the
remote destination.

hth...
roger 

-Original Message-
From: Mannan Venkatesan [mailto:[EMAIL PROTECTED]]
Sent: Thursday, March 08, 2001 09:57
To: [EMAIL PROTECTED]
Subject: Well Known ports


Hi,
Will router listen to all well known ports? Our security guys are doing some
test and complaining that the TCP ports 78 and 79 are not opened on router.
Opening ports on router? I never heard about it. Any advice??


Thanks,
Mannan


_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: snmp polling access via fixed ip only?

2001-03-08 Thread roger . gore

snmp-server community comm_tring_here RW 15
snmp-server trap-source Loopback0 (or another interfcae)
snmp-server host 10.44.31.254 comm_tring_here  snmp

permit your snmp server(s) on acl 15hth.
roger

-Original Message-
From: mike moran [mailto:[EMAIL PROTECTED]]
Sent: Thursday, March 08, 2001 10:48
To: [EMAIL PROTECTED]
Subject: snmp polling access via fixed ip only?


Hi All,

Can I configure a Cisco switch/router to only send snmp rw/ro (rw anyway) to

a fixed nms station manager e.g. hp openview/ciscoworks on 10.44.31.254.


many tnx's

rgrds

Noel
_
Get your FREE download of MSN Explorer at http://explorer.msn.com

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Packet Drops

2001-03-08 Thread roger . gore

start with layer 1cable ok?  physical interface have chewing gum stuck
in it?

maybe trace back to the user.  ping each hop along the way.  isolate the
point of failure and look there first.

good luck.
roger

-Original Message-
From: Ray Smith [mailto:[EMAIL PROTECTED]]
Sent: Thursday, March 08, 2001 10:52
To: [EMAIL PROTECTED]
Subject: Packet Drops


Guys,

What would be some of the remedies to packet drops on a LAN?  I notice that 
one of our CAT 6500 trunk ports are showing steady increse of RUNTS and 
GIANTS while users are complaining of slowness and packet losses.  Any 
answers?


_
Get your FREE download of MSN Explorer at http://explorer.msn.com

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Static route Configuration Error

2001-03-07 Thread roger . gore

Your subnet mask is not correct.  If you want a static route for the host
10.100.10.1 then do it like this: ip route 10.100.10.1 255.255.255.255
192.168.1.1.

If you want to permit the 10.x.x.x network do it like this: 
ip route 10.0.0.0 255.0.0.0 192.168.1.1

work?
roger

-Original Message-
From: Navin Parwal [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, March 07, 2001 07:10
To: [EMAIL PROTECTED]
Subject: Static route Configuration Error


Hi ,
   My network design is as follows :
  I have two 2610 routers which are interconnected , on the first router
(Cisco2610) the configuration is as follows :

 1) Serial0/0- Ip address 192.168.1.1
Ethernet 10.100.10.1

On the second router (cisco2620) the configurations are as follows :

  2) Serial0/0 - 192.168.1.2
 Ethernet - 200.100.10.1

  I am able to successfully set the static route from the first router to
the second router by giving the command :
   ip route 200.100.10.0 255.255.255.0 192.168.1.2
 and ping the interfaces on the side of ethernet of 200.100.10.1

  but when I give the command for the second router ie.
  ip route 10.100.10.1 255.0.0.0 192.168.1.1 , I get an error which states
as follows :
   " % Inconsistent address and mask  " and I am unable to ping to
193.168.0.1

why am I getting this error and how can I correct this error .
  I can sucessfully set up my routing tables dynamically using either RIP or
IGRP , but I am unable to do so statically
   Will I have to change any configurations on the second router.
thanks in advance .

Navin Parwal



_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Telnet question

2001-03-06 Thread roger . gore

not sure what the default is but to set to 15 minutes.the command is
applied to the vty lines.  my suspicion (guess) is that the default timeout
would be 0 0 which is never! 

conf t
line vty 0 4
exec-timeout 15 0

roger

-Original Message-
From: Stuart Laubstein [mailto:[EMAIL PROTECTED]]
Sent: Tuesday, March 06, 2001 04:29
To: '[EMAIL PROTECTED]'
Subject: Telnet question


What is the default timeout time for telnet connection a to a cisco router.
And what is the command to extend this time? I cannot seem to find either. I
can use the absolute-timeout command but that would also kick someone out
who was working on the router. I just want to set the default timeout to 15
mins.

thanks

stuart

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: Switch Problem

2001-03-02 Thread roger . gore

Do a "sh ver" and it should tell you how it was recycledpower-on, memory
error, etc

this may tell you a great deal.

roger

-Original Message-
From: Stuart J Pittwood [mailto:[EMAIL PROTECTED]]
Sent: Friday, March 02, 2001 09:54
To: Cisco
Subject: Switch Problem


Hi,

Many of my users have been reporting network connectivity disapearing and
comming back about a min later.

While looking through the logs of one switch (a 2924M-CL-EN) I noticed it
had been rebooted recently.

What would make a switch reboot itself? The switch isn't anywhere near
capacity (according to the scale on the front).

Any help greatly appreciated
__
Stuart J Pittwood, CCNA
[EMAIL PROTECTED]
http://www.stuartpittwood.net

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: TACACS+ Server for Solaris WHERE?????

2001-03-01 Thread roger . gore

I'd try

http://www.sun.com

or

http://www.cnet.com

or 

http://www.computershopper.com

Isn't the Internet a wonderful place?!

-Original Message-
From: McCallum, Robert [mailto:[EMAIL PROTECTED]]
Sent: Thursday, March 01, 2001 06:29
To: 'Ccielab' (E-mail); Cisco@Groupstudy. Com (E-mail)
Subject: TACACS+ Server for Solaris WHERE?


Hello,

Can anyone let me know where I can fine a copy (free or otherwise) for a sun
solaris server.  Much appreciated.

Robert McCallum
10 days till first born is due, 6 months till CCIE lab due.Which
will be worse

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: How to stash more than 100 ACLs in a router

2001-02-28 Thread roger . gore

In my experience, it's the length of the acl's that hose your CPU, not the
quantity.  Fast switching aleviates this (CPU problems) a great deal anyway.
i turned on ip route-cache flow on a router with a HUGE acl and saw the cpu
(IP input) drop from 60% to 20%

Might named or timed acl's provide a solution?

Good luck.
Roger

-Original Message-
From: Plantier, William [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, February 28, 2001 08:10
To: 'ciscojolof'; [EMAIL PROTECTED]
Subject: RE: How to stash more than 100 ACLs in a router



You need to limit your ACLs because the more ACLs your CPU usage will go up.
-Original Message-
From: ciscojolof [mailto:[EMAIL PROTECTED]]
Sent: Wednesday, February 28, 2001 9:51 AM
To: [EMAIL PROTECTED]
Subject: How to stash more than 100 ACLs in a router


Guys,

I have a problem, in our network we are rate-limiting customers but we
cannot get more than 100 ACLs per router so once we have over 100 customers
we are compelled to install a second router.



_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]



RE: How to restrict multiple login?

2001-02-22 Thread roger . gore

I think you're asking if you can restrict users from establishing telnet or
ssh connections to your router...?

You can restrict telnet to the router with an acl applied to the vty
linesfor example...permit yourself and other authorized hosts, deny
everyone else.  i'm not familiar enough with radius to make a stabhope
this helps.

Roger

access-list 150 permit ip host x.x.x.x log
access-list 150 permit ip host x.x.x.x log
access-list 150 deny  ip any any log

conf t
line vty 0 4
access-class 150 in

-Original Message-
From: vikas patel [mailto:[EMAIL PROTECTED]]
Sent: Thursday, February 22, 2001 01:17
To: [EMAIL PROTECTED]
Subject: How to restrict multiple login?


Hi folks,
I am working in an ISP company, got Cisco 2511 router with inbuilt 
RAS(access server), IOS ver. 11.3(9).
I am using RADIUS from livingston ver. 2.0.1 beta 14 revision 5 for windows 
NT4.0 and Netcents ver. 6.0 for billing. I have contacted the netcents 
people and they says that the single/multi login facility is available with 
RADIUS only and not with there netcents billing s/w. And i think the RADIUS 
ver. that i am using is not supporting this single/multi login features. And

i am going to use this RADIUS b'coz its free.
How can i Restrict my customers for single login and multi-login into my 
cisco router. B'coz using the above radius and netcents i cannot block multi

user login in my network. Can u guys suggest some solution using the above 
only s/w's. And I am creating users in netcents+radius and these users are 
not the router users.
Is their any way thru cisco router commands to restrict my customers for 
single login?

Thanks in advance.
waiting for your reply.

kind regards
vikas patel
_
Get Your Private, Free E-mail from MSN Hotmail at http://www.hotmail.com.

_
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]