Re: Cisco SAFE Exam: My 2 cents [7:75212]

2003-09-10 Thread juniper
I took this exam a while back, i didn't take it serioulsy so I guess I need
not say more, anyways make sure you read the documents and know them cold
they are picky on this exam, some questions that have nothing to do
with the documentation but I guess the other exams you have possiblly taken
enroute to your CSSP should help, Sorry I can't offer adivce on what study
guides to use. JUST know the docs. in and out

Mark Kahugu

> ""Fred Wittenberg""  wrote in message
> news:[EMAIL PROTECTED]
> > Hello all,
> >
> > I'm planning on taking the SAFE exam to wrap up my CCSP soon...can
anyone
> > that
> > has passed/taken this offer what they used as study guides??
> >
> > TIA,
> >
> > FW
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=75215&t=75212
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Secure service stops for no reason.. [7:75189]

2003-09-10 Thread Aaron Ajello
ACS will show messages like that when it backs up the database.  It pauses,
or interupts services to perform the backup.  Normally the services should
pick right back up very quickly, but if it doesn't for some reason, you will
have to manually restart services.
The same thing happened once with the ACS system I administer.  So you might
want to check into if there is a correlation between when this happens and
when backups occur.

-Aaron






Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=75206&t=75189
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco PVST plus [7:75158]

2003-09-10 Thread Reimer, Fred
That is correct.  Or at least it can only support one VLAN in common with
the Cisco gear.  It can have all the VLANs it wants as long as it does not
have dual links to the Cisco gear, creating a loop which will not be blocked
with Spanning Tree, because it doesn't support PVST+.

BTW - what are "Hwa Wei" switches?

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: Han Chuan Alex Ang [mailto:[EMAIL PROTECTED] 
Sent: Wednesday, September 10, 2003 12:20 AM
To: [EMAIL PROTECTED]
Subject: Cisco PVST plus [7:75158]

hi, I am wondering what is the implication if I have a network whereby Cisco
Per Vlan Spanning Tree is implemented with PVST plus and I plug in a
external switch such as the Hwa Wei switch that doesn't seem to support
PVST. does it mean that I could only have one vlan on the hwa wei switches
itself. thank
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=75186&t=75158
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco ICS 7750 experiences [7:75005]

2003-09-08 Thread [EMAIL PROTECTED]
Keep it simple:

ONE SITE - ONE Partition, ONE GW, ONE Call Search Space, Etc..

Test with a group of 4 -5 phones with a single POTS line and make sure all
of your services (voicemail, transfer, 7 - digit calls, long distance,)
works and use the same template for all your IP phones using the
Auto-Register feature.  Email me off the list and I'll fix you up with some
simple single-site guidelines.

Rob H.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=75005&t=75005
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Vs. Low cost switches -Whats the Diff ? [7:74987]

2003-09-08 Thread dre
""Steven Aiello""  wrote in message ...
>So I know there is a big difference in the cost and performance of
> Cisco (even lower end models) and let say a netgear switch.  But where
> do the difference lay?  I know that there are memory issues and back
> plain differences in these 2 classes of switches.  But how do I find out
> what a lower cost switch will perform like.  I was doing some bench
> marking on a NetGear 100Mb switch, between a large file transfer off a
> Win2k Server and a client.  The through put was only a few Meg a best.
> The NIC in the server is a Gbit NIC and shouldn't be over whelmed by a
> simple file transfer.  (I was running this while every one else was out
> of office so I know that's not an issue).  I know that with Ethernet
> there is collisions and the like so I may not get true 100Mb performance
> but the results were horrible.  What should I look for even in lower
> cost switches to be sure I get at least decent performance out of them?

D-link makes the cheapest 8-port 10/100/1000 switch out there (as low
as $80).  SMC, Netgear, and Linksys (as well as others) also make
switches close to those prices.

Some Cat6 cabling and some cheap 1000BaseTX NIC's will do a lot
more than upgrading to any Cisco switch at the low-end.  However, at
the high-end of this (if you're really trying to push over 600Mbps
full-duplex
on a single host), you really want to consider things like Jumbo frames
and port buffer capacity, etc.  Cisco is one of the better manufacturers
at the high end of any Ethernet platform.  Others to consider include
Juniper Networks, Force-10 Networks, and maybe Foundry or
Extreme or even Riverstone, Nortel, or Enterasys.

There are often tests of switches and other network devices on
http://www.smallnetbuilder.com/.  I've seen them use Chariot, but
equally clever would be tests (online, public, or private) using industry
standard network test equipment including Spirent Smartbits, IXIA
(who also makes Chariot), and Agilent RT of all types and different
tests by different people for different scenarios.

There are actually no collisions in full-duplex mode Ethernet (and if
you are worried about performance, that would definitely help the
most, network-wise).  I guess I don't understand the problem you
are trying to solve.  It sounds like most anything would be overkill,
but an $80 port 10/100/1000 switch is cheap, and I would go that
route in most scenarios, and then move on to TCP or other
application performance tuning (do a seach on Google for
`TCP performance tuning' along with your operating system).
Upgrading to a more expensive switch would seem like a waste.
Using Intel 10/100/1000BaseTX NIC's is also a really good idea,
as that name is associated with performance (and cheaper cost).

-dre




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=75004&t=74987
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Vs. Low cost switches -Whats the Diff ? [7:74987]

2003-09-08 Thread Reimer, Fred
If you're not getting more than a few MB of transfer speed out of a 100Mb
link, then it is undoubtedly a autonegotiation / speed issue.

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: Priscilla Oppenheimer [mailto:[EMAIL PROTECTED] 
Sent: Monday, September 08, 2003 4:18 PM
To: [EMAIL PROTECTED]
Subject: RE: Cisco Vs. Low cost switches -Whats the Diff ? [7:74987]

Steven Aiello wrote:
> 
> Ok,
> 
>So I know there is a big difference in the cost and
> performance of
> Cisco (even lower end models) and let say a netgear switch. 
> But where
> do the difference lay?  I know that there are memory issues and
> back
> plain differences in these 2 classes of switches.  But how do I
> find out
> what a lower cost switch will perform like.  I was doing some
> bench
> marking on a NetGear 100Mb switch, between a large file
> transfer off a
> Win2k Server and a client.  The through put was only a few Meg
> a best.
> The NIC in the server is a Gbit NIC and shouldn't be over
> whelmed by a
> simple file transfer.  (I was running this while every one else
> was out
> of office so I know that's not an issue).  I know that with
> Ethernet
> there is collisions and the like so I may not get true 100Mb
> performance
> but the results were horrible.  

There shouldn't be collisions if it's all point-to-point full-duplex links,
i.e. each switch port just connects one device and is properly configured,
as is the end device.

Check the configs, but also be aware that throughput != capacity. Put
Ethereal on it and see what's really eating the bandwidth and causing delay.
Small window size maybe? Slow start? Non-optimized packet sizes? Slow server
response? Slow client turnaround with next request? I'll copy and paste a
few paragraphs from Troubleshooting Campus Networks on this topic below.

> What should I look for even in
> lower
> cost switches to be sure I get at least decent performance out
> of them?

Vendors, independent test labs, and trade journals often publish information
on the tests they have done to verify the performance of particular network
devices.  Network World used to do these. Of course, with the sucky economy,
maybe there are fewer of these test results published than there used to
be... A few places to check, including Network World:


*  The Interoperability Lab at the University of New Hampshire (IOL). See
www.iol.unh.edu for more information.
*  Miercom Labs. See www.miercom.com for more information.
*  KeyLabs. See www.keylabs.com for more information.
*  The Tolly Group. See www.tollygroup.com for more information.

Be sure to check other places too. Do a Google.


> 
> Even if you ramble on in this point, GREAT!  The more you know
> the
> better I say.

OK,  here's some rambling about performance in a TCP-based network:

The key question to answer is, "What is the size of the receiver's window
when it sends an ACK?" Here are some examples and their significance.

The Sender Does Not Approach the Receiver's Capacity
When the sender does not approach the receiver's capacity to receive and
process bytes, the receiver returns a Window Size (with an ACK) that is set
to its original, maximum value. The receiver is able to clear its buffer
just as fast as it is able to construct and send the ACK. When the Window
Size doesn't change, it is an indication that the reporting station has
sufficient communication resources to handle the task. If data packets are
acknowledged individually, it indicates that the sending station is not
transmitting data very aggressively. Perhaps the data cannot be constructed
in large blocks (as in the case when individual data records are retrieved
from a database). When the sender completely fills the receiver's window and
then stops to wait for an acknowledgment, it can indicate one of two things.
One is that the sender has a large block of data queued for transmission (as
with a file transfer). The other is that the receiver is busy doing other
tasks and can't get clock cycles for processing the received data and
constructing the ACK.

The Sender Begins to Approach the Receiver's Capacity
In our example, the sender is sending 1-KB data segments into an 8-KB
window. Imagine that an assessment of the Window Size in 

RE: Cisco Vs. Low cost switches -Whats the Diff ? [7:74987]

2003-09-08 Thread Priscilla Oppenheimer
Steven Aiello wrote:
> 
> Ok,
> 
>So I know there is a big difference in the cost and
> performance of
> Cisco (even lower end models) and let say a netgear switch. 
> But where
> do the difference lay?  I know that there are memory issues and
> back
> plain differences in these 2 classes of switches.  But how do I
> find out
> what a lower cost switch will perform like.  I was doing some
> bench
> marking on a NetGear 100Mb switch, between a large file
> transfer off a
> Win2k Server and a client.  The through put was only a few Meg
> a best.
> The NIC in the server is a Gbit NIC and shouldn't be over
> whelmed by a
> simple file transfer.  (I was running this while every one else
> was out
> of office so I know that's not an issue).  I know that with
> Ethernet
> there is collisions and the like so I may not get true 100Mb
> performance
> but the results were horrible.  

There shouldn't be collisions if it's all point-to-point full-duplex links,
i.e. each switch port just connects one device and is properly configured,
as is the end device.

Check the configs, but also be aware that throughput != capacity. Put
Ethereal on it and see what's really eating the bandwidth and causing delay.
Small window size maybe? Slow start? Non-optimized packet sizes? Slow server
response? Slow client turnaround with next request? I'll copy and paste a
few paragraphs from Troubleshooting Campus Networks on this topic below.

> What should I look for even in
> lower
> cost switches to be sure I get at least decent performance out
> of them?

Vendors, independent test labs, and trade journals often publish information
on the tests they have done to verify the performance of particular network
devices.  Network World used to do these. Of course, with the sucky economy,
maybe there are fewer of these test results published than there used to
be... A few places to check, including Network World:


•  The Interoperability Lab at the University of New Hampshire (IOL). See
www.iol.unh.edu for more information.
•  Miercom Labs. See www.miercom.com for more information.
•  KeyLabs. See www.keylabs.com for more information.
•  The Tolly Group. See www.tollygroup.com for more information.

Be sure to check other places too. Do a Google.


> 
> Even if you ramble on in this point, GREAT!  The more you know
> the
> better I say.

OK,  here's some rambling about performance in a TCP-based network:

The key question to answer is, "What is the size of the receiver's window
when it sends an ACK?" Here are some examples and their significance.

The Sender Does Not Approach the Receiver's Capacity
When the sender does not approach the receiver's capacity to receive and
process bytes, the receiver returns a Window Size (with an ACK) that is set
to its original, maximum value. The receiver is able to clear its buffer
just as fast as it is able to construct and send the ACK. When the Window
Size doesn't change, it is an indication that the reporting station has
sufficient communication resources to handle the task. If data packets are
acknowledged individually, it indicates that the sending station is not
transmitting data very aggressively. Perhaps the data cannot be constructed
in large blocks (as in the case when individual data records are retrieved
from a database). When the sender completely fills the receiver's window and
then stops to wait for an acknowledgment, it can indicate one of two things.
One is that the sender has a large block of data queued for transmission (as
with a file transfer). The other is that the receiver is busy doing other
tasks and can't get clock cycles for processing the received data and
constructing the ACK.

The Sender Begins to Approach the Receiver's Capacity
In our example, the sender is sending 1-KB data segments into an 8-KB
window. Imagine that an assessment of the Window Size in successive ACKs
looks like this:
8192, 7168, 6144, 6656, 6144, 7168, 7680, 7680, 7168, 8192
Notice that the size of the window is reduced by the received data segments
and the receiver is trying to clear the buffer and get the size of the
window back to its original value. If you study the sequence of values, you
can imagine the receiver struggling against the received data, as if it is a
person running up the down escalator in a store. The receiver is working
against the continuous stream of received data, and, although it is forced
back sometimes, it ultimately manages to return to the fully open window
(8192 KB).
This is normal behavior of the TCP sliding window. There is nothing wrong
here. However, this is an indication that the sender is making the receiver
work. In the next example, you'll see what happens when the receiver can't
keep up with the sender.

The Sender Overloads the Receiver's Capacity
With the constant receipt of 1-KB segments into an initial 8-KB window,
consider the following Window Size reports in successive ACKs:
8192, 7168, 6144, 6656, 6144, 7168, 7680, 7680, 7168, 6144, 5120, 4096,
3072, 2048, 10

Re: Cisco Vs. Low cost switches -Whats the Diff ? [7:74987]

2003-09-08 Thread neil K
Options like enhanced security, Enhanced QoS, protocol and technology
support.

neil
""Steven Aiello""  wrote in message
news:[EMAIL PROTECTED]
> Ok,
>
>So I know there is a big difference in the cost and performance of
> Cisco (even lower end models) and let say a netgear switch.  But where
> do the difference lay?  I know that there are memory issues and back
> plain differences in these 2 classes of switches.  But how do I find out
> what a lower cost switch will perform like.  I was doing some bench
> marking on a NetGear 100Mb switch, between a large file transfer off a
> Win2k Server and a client.  The through put was only a few Meg a best.
> The NIC in the server is a Gbit NIC and shouldn't be over whelmed by a
> simple file transfer.  (I was running this while every one else was out
> of office so I know that's not an issue).  I know that with Ethernet
> there is collisions and the like so I may not get true 100Mb performance
> but the results were horrible.  What should I look for even in lower
> cost switches to be sure I get at least decent performance out of them?
>
> Even if you ramble on in this point, GREAT!  The more you know the
> better I say.
>
> Thanks all,
> Steve
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74990&t=74987
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: ??? Cisco Express Forwarding ??? [7:74794]

2003-09-04 Thread Zsombor Papp
Just for the sake of clarity: "cache" in this context doesn't refer to a
faster-than-usual memory. The route cache is in the exact same RAM as the
routing table. For more details, see the documents Marko mentioned.

Thanks,

Zsombor

Steven Aiello wrote:
> 
> Another question,
> 
>   in CEF is the whole routing table held in a cache?  If so
> what is the
> diffrence between this and the routing table held in RAM?  Is
> the cache
> faster than the regular RAM in the router?
> 
> Thanks,
> Steve
> 
> 


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74821&t=74794
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: ??? Cisco Express Forwarding ??? [7:74794]

2003-09-04 Thread Brian McGahan
Steve,

There are a few reasons why a lookup through the CEF table is
faster than a lookup in the IP routing table.

A lookup in the IP routing table is done top down until a match
is found, much like how an access-list is processed.  The problem,
however, is that the IP table is not in any specific order, therefore,
the worst case lookup for a route is directly proportional to how many
prefixes exist in the IP routing table.  

The CEF table, on the other hand, takes a maximum of four
lookups before a match is found.  CEF uses four data structures, each
with 256 children, with each child having 256 children, etc.  This gives
us a maximum entry size of 2^32 (all IP address space).  These
structures are divided as follows:

Root
-0.0.0.0
-1.0.0.0
-2.0.0.0
..
-255.0.0.0

Suppose we're doing a lookup on the prefix 1.2.3.4.  First we
find the 1st child under the root (1.0.0.0)

Root
-1.0.0.0
--1.0.0.0
--1.1.0.0
--1.2.0.0
--...
--1.255.0.0

Under the child 1.0.0.0, we now find the 2nd child (1.2.0.0).
Next, we find the 3rd child under 1.2.0.0 (1.2.3.0), and finally the
fourth child under 1.2.3.0, (1.2.3.4).  Our final lookup is now as
follows:

Root
-1.0.0.0
--1.2.0.0
---1.2.3.0
1.2.3.4

As you can see, no matter which prefix we are doing a lookup on,
we have to do a maximum of 4 lookups in order to find it, unlike the
normal IP routing table, where our worst case lookup time is
proportional to the amount of prefixes in the table.

The next reason that CEF is faster than a normal lookup is the
adjacency table.  Every time a lookup is done in the IP routing table,
an addition lookup (recursive lookup) must be done to find the outgoing
interface for the next hop IP address.  In the case of CEF, this lookup
is already done for you in the adjacency table.  The adjacency table
provides us with the outgoing interface, and the destination layer 2
address that must be encapsulated in order to send the packet out said
interface.

Lastly, the main advantage of CEF is that the above mentioned
lookups are done *before* any traffic is sent.  In the case of the other
caching mechanisms, a cached entry is not created until the first packet
in the flow is fast-switched.  This follows the paradigm of route once,
switch many.  CEF on the other hand is just switch many, since the
routing lookup is already performed.


HTH,

Brian McGahan, CCIE #8593
[EMAIL PROTECTED] 

Internetwork Expert, Inc.
http://www.InternetworkExpert.com
Toll Free: 877-334-8987
Direct: 708-362-1418 (Outside the US and Canada)


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
Steven Aiello
Sent: Thursday, September 04, 2003 10:06 AM
To: [EMAIL PROTECTED]
Subject: ??? Cisco Express Forwarding ??? [7:74794]

Another question,

  in CEF is the whole routing table held in a cache?  If so what is the 
diffrence between this and the routing table held in RAM?  Is the cache 
faster than the regular RAM in the router?

Thanks,
Steve
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74811&t=74794
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: ??? Cisco Express Forwarding ??? [7:74794]

2003-09-04 Thread Marko Milivojevic
>   in CEF is the whole routing table held in a cache?  If so what is the
> diffrence between this and the routing table held in RAM?  Is the cache
> faster than the regular RAM in the router?

There are few excellent documents about this on our favourite website.

Watch for wrap.

[Cisco IOS Switching Paths]
http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fswtch_c/swprt1/


[How to Choose the Best Router Switching Path for Your Network]
http://www.cisco.com/en/US/tech/tk827/tk831/technologies_white_paper09186a00800a62d9.shtml


Marko.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74805&t=74794
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco ICS 7750 experiences [7:74578]

2003-09-02 Thread [EMAIL PROTECTED]
Hi, Hugo
I am prepare the same project, would you pls give me a suggestion?
thnaks!
Stone
- Original Message - 
From: 
To: ; 
Cc: 
Sent: Friday, August 29, 2003 12:01 PM
Subject: Re: Cisco ICS 7750 experiences


> I just deployed one for a single site manufacturing new construction.  150
IP
> phones 7940s / 7960s, IPCC, Unity Unified, etc.  It took me about two days
to
> get all of the builds completed because of the patches you have to add,
but I
> got it configured pretty quick and, once it was up and I was making calls 
> across my PSTN, the only issues I had were a little echo.  Other than
that, it is
> a good system.  VERY SCALABLE, yet compact.  I like it.
> 
> Rob Hugo
> Senior Network Engineer
> STL Technology Partners
> 
> 
> ___
> You are subscribed to the GroupStudy.com CCIE R&S Discussion Group.
> 
> Subscription information may be found at: 
> http://www.groupstudy.com/list/CCIELab.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74578&t=74578
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco ICS 7750 experiences [7:74481]

2003-08-31 Thread Paul Ingram
Hello,
I will be rolling out IPCC express and the 7750 in early Nov. at our call
center (65 agents) and HQ 27 VP exec types.  These two sites will be
contacted by a PtP T1 just for voice.  I am a little worried about call
quality; did you get the echo taken care of?  Any other tips you can pass on
would be great.  We have very simple call flow so the IPCC I am not to
worried about but the whole project could effect 70% of our revenue (the
call center) which equals about 80 million so I am stressed. :(
I have decide to have 1 7940 on each desk and media termination points
installed on the PCs for the CC agents to use.  I feel this gives them the
opportunity to use basically the soft phone but not relying on the PC for
the sound card.  Also not all desk our on the generator so if we lose power
everyone will still have a phone.  All network equipment will be on the
generator.  I am hoping by not using the PC sound card some of the voice
quality problems will not be an issue.

Let me know how it goes.

~Paul~

> -Original Message Snip-

> got it configured pretty quick and, once it was up and I was making calls
> across my PSTN, the only issues I had were a little echo.  Other than
> that,
> it is
> a good system.  VERY SCALABLE, yet compact.  I like it.
> 
> Rob Hugo
> Senior Network Engineer
> STL Technology Partners

---
{This E-mail scanned for viruses by Declude Virus/McAfee}




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74574&t=74481
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco ICS 7750 experiences [7:74481]

2003-08-29 Thread [EMAIL PROTECTED]
I just deployed one for a single site manufacturing new construction.  150
IP
phones 7940s / 7960s, IPCC, Unity Unified, etc.  It took me about two days
to
get all of the builds completed because of the patches you have to add, but
I
got it configured pretty quick and, once it was up and I was making calls 
across my PSTN, the only issues I had were a little echo.  Other than that,
it is
a good system.  VERY SCALABLE, yet compact.  I like it.

Rob Hugo
Senior Network Engineer
STL Technology Partners




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74481&t=74481
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco CIM cds... are they really worth it? [7:74375]

2003-08-26 Thread Todd Powell
Yes, but cost is a major issue for most people. They can't go out and
buy a switch and 3 routers for a home lab. The next best is a CD

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of
Joseph R. Taylor
Sent: Tuesday, August 26, 2003 7:00 AM
To: [EMAIL PROTECTED]
Subject: RE: Cisco CIM cds... are they really worth it? [7:74375]

Good Morning,
The Cisco CIM's give you useful commands and router and switching
scenarios. Nothing compares to actually working on the equipment. CIM's
and
actual lab equipment is best.
JoeT MCSE, CCNP
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74405&t=74375
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco CIM cds... are they really worth it? [7:74375]

2003-08-26 Thread Joseph R. Taylor
Good Morning,
The Cisco CIM's give you useful commands and router and switching
scenarios. Nothing compares to actually working on the equipment. CIM's and
actual lab equipment is best.
JoeT MCSE, CCNP


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74399&t=74375
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: cisco ttcp [7:74276]

2003-08-23 Thread Dom
You need the enterprise version of IOS.

Best regards,

Dom Stocqueler
SysDom Technologies
Visit our website - www.sysdom.org

-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] 
Sent: 23 August 2003 10:21
To: [EMAIL PROTECTED]
Subject: cisco ttcp [7:74276]


Hi

I tried to use TTCP (test tcp) to measure thruput and apparently it is
not supported by the IOS that I am using. I am using 12.0,IP feature
sets. Have anyone managed to run ttcp

Is there other tools that I can use to test thruput ?

Any comments is appreciated

Regards,kws
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74277&t=74276
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Wireless [7:74157]

2003-08-19 Thread Priscilla Oppenheimer
Johan Bornman wrote:
> 
> Is there a utility/software available to "sniff" wireless
> communication to
> confirm for instance that the 128bit encryption is doing what
> it suppose to
> do?

Is it WEP? Then it is not likely "doing what it is supposed to do." With a
tool such as AirSnort or Kismet and enough traffic (4 million packets or
so), a hacker can determine the WEP key.

See here for one of many articles on the problem. It also has links to
AirSnort and Kismet info.

http://www.oreillynet.com/pub/a/wireless/excerpt/wirlsshacks_chap1/index.html

Priscilla


> 
> 
> 
> "This e-mail may contain confidential information and may be
> legally privileged and is intended only for the person to whom
> it is addressed. If you are not the intended recipient, you are
> notified that you may not use, distribute or copy this document
> in any manner whatsoever. Kindly also notify the sender
> immediately by telephone, and delete the e-mail. When addressed
> to clients of the company from where this e-mail originates
> ("the sending company ") any opinion or advice contained in
> this e-mail is subject to the terms and conditions expressed in
> any applicable terms of business or client engagement letter .
> The sending company does not accept liability for any damage,
> loss or expense arising from this e-mail and/or from the
> accessing of any files attached to this e-mail."
> 
> "At present, the integrity of e-mail across the Internet cannot
> be guaranteed and messages sent via this medium are potentially
> at risk.  The recipient should scan any attached files for
> viruses.  All liability arising as a result of the use of this
> medium to transmit information by or to e-Innovation is
> excluded to the extent permitted by law."
> >>>
> 
> 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74194&t=74157
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Secure VPN 642-511 [7:73919]

2003-08-19 Thread Alex Lee
Just received e-mail from Cisco that they would send me the INFOSEC letter
of recognition after I signed the Cisco Certification Agreement.

I am spending time on other interesting stuffs which is not Cisco and not
sure if I would sit for recert.



""Kevin Wigle""  wrote in message
news:[EMAIL PROTECTED]
>>
> >
> on the same page is an INFOSEC Professional link.  Cisco has been granted
> rights to award this cert.  It is NOT a Cisco cert.  Which is cool because
> once it is awarded there is no need to recertify, it is permanent.
>
> Which is opposite to everything Cisco does - especially CCSP - to recert
> CCSP you have to take all 5 exams again.  Hopefully by the time people get
3
> years in CCSP Cisco will have a single recert exam like they do for
> CCIE/CCDP/CCNP
>
> I might do the security exams once to get the INFOSEC cert and then forget
> the recert on the Cisco stuff.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74180&t=73919
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Wireless [7:74157]

2003-08-19 Thread [EMAIL PROTECTED]
If you want check that the association is encrypted, try checking the
association table. 
For checking that traffic is encrypted try Airopeek, Airsnort etc. 

Martijn 


-Oorspronkelijk bericht-
Van: Johan Bornman [mailto:[EMAIL PROTECTED]
Verzonden: dinsdag 19 augustus 2003 10:31
Aan: [EMAIL PROTECTED]
Onderwerp: Cisco Wireless [7:74157]


Is there a utility/software available to "sniff" wireless communication to
confirm for instance that the 128bit encryption is doing what it suppose to
do?



"This e-mail may contain confidential information and may be legally
privileged and is intended only for the person to whom it is addressed. If
you are not the intended recipient, you are notified that you may not use,
distribute or copy this document in any manner whatsoever. Kindly also
notify the sender immediately by telephone, and delete the e-mail. When
addressed to clients of the company from where this e-mail originates ("the
sending company ") any opinion or advice contained in this e-mail is subject
to the terms and conditions expressed in any applicable terms of business or
client engagement letter . The sending company does not accept liability for
any damage, loss or expense arising from this e-mail and/or from the
accessing of any files attached to this e-mail."

"At present, the integrity of e-mail across the Internet cannot be
guaranteed and messages sent via this medium are potentially at risk.  The
recipient should scan any attached files for viruses.  All liability arising
as a result of the use of this medium to transmit information by or to
e-Innovation is excluded to the extent permitted by law."
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74161&t=74157
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Wireless [7:74157]

2003-08-19 Thread Dom
IIRC,

AirSnort should be able to do this.

Best regards,

Dom Stocqueler
SysDom Technologies
Visit our website - www.sysdom.org


-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] 
Sent: 19 August 2003 09:31
To: [EMAIL PROTECTED]
Subject: Cisco Wireless [7:74157]


Is there a utility/software available to "sniff" wireless communication
to confirm for instance that the 128bit encryption is doing what it
suppose to do?



"This e-mail may contain confidential information and may be legally
privileged and is intended only for the person to whom it is addressed.
If you are not the intended recipient, you are notified that you may not
use, distribute or copy this document in any manner whatsoever. Kindly
also notify the sender immediately by telephone, and delete the e-mail.
When addressed to clients of the company from where this e-mail
originates ("the sending company ") any opinion or advice contained in
this e-mail is subject to the terms and conditions expressed in any
applicable terms of business or client engagement letter . The sending
company does not accept liability for any damage, loss or expense
arising from this e-mail and/or from the accessing of any files attached
to this e-mail."

"At present, the integrity of e-mail across the Internet cannot be
guaranteed and messages sent via this medium are potentially at risk.
The recipient should scan any attached files for viruses.  All liability
arising as a result of the use of this medium to transmit information by
or to e-Innovation is excluded to the extent permitted by law."
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74162&t=74157
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Safe Security Exam -->9E0-131 CSI or [7:73971]

2003-08-18 Thread Karl HUTCHINSON
Sybex has books for the new CCSP coming out in November/December too late
for the CCS1 conversion but if your starting from scratch...


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74097&t=73971
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Safe Security Exam -->9E0-131 CSI or [7:73971]

2003-08-18 Thread Karl HUTCHINSON
Sybex has books for the new CCSP coming out in November/December too late
for the CCS1 conversion but if your starting from scratch...


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=74096&t=73971
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-14 Thread Jose Linero Welcker
Internet Routing Architechtures - Second Edition - Sam Halabi

This is a complete BGP guide, and tat is enough to the BGP exam

Regards,

Jose


>From: "juniper" 
>Reply-To: "juniper" 
>To: [EMAIL PROTECTED]
>Subject: Cisco BGP Exam [7:73516]
>Date: Tue, 5 Aug 2003 14:00:03 GMT
>
>Hi,
>Can anyone recommend a good book for the BGP exam
>Mark
>**Please support GroupStudy by purchasing from the GroupStudy Store:
>http://shop.groupstudy.com
>FAQ, list archives, and subscription info: 
>http://www.groupstudy.com/list/cisco.html

_
Charla con tus amigos en lmnea mediante MSN Messenger: 
http://messenger.yupimsn.com/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73535&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Security Advisory: Cisco IOS Interface B [7:73738]

2003-08-14 Thread Charles Church
Check out:

http://www.cisco.com/warp/public/707/cisco-sa-20030717-blocked.shtml

Everything you need to know about it on one page.  It lists the versions
vulnerable and what version for the same train that it's fixed in.  If you
stay in the same train (12.1.5 and 12.1.19 are the same train, as are
12.1.5T and 12.1.15T5), you shouldn't have any problems with hardware
compatibility.  Always check the hardware compatibility matrix before
choosing a URL.  I couldn't find it on CCO, but it's there somewhere.  It's
a tool where you put a check mark next to all the parts of your router -
chassis itself, NMs, PAs, WICs, VICs, etc.  Then it'll tell you what
software is compatible with everything.  I might add that the vulnerability
is easy to do, using Linux or even Windows.  Locked up my home router last
night using NMAP.

Chuck Church
CCIE #8776, MCNE, MCSE
Wam!Net Government Services
13665 Dulles Technology Dr. Ste 250
Herndon, VA 20171
Office: 703-480-2569
Cell: 703-819-3495
[EMAIL PROTECTED]
PGP key: http://pgp.mit.edu:11371/pks/lookup?search=chuck+church&op=index


- -Original Message-
From: Mr piyush shah [mailto:[EMAIL PROTECTED]
Sent: Monday, August 04, 2003 2:51 PM
To: [EMAIL PROTECTED]
Subject: Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4
[7:73471]

Dear all
Recently there was an article on Cisco Security
Advisory which stated that all Cisco routers/switches
having IOS as their operating system,their Interfaces
will be blocked by IPv4 Packets.In this regard,i have
a querry.
Is it that all the router having IOS will be blocked
or certain specific IOS ?
Also they have given fixes at the bottom of that
article which states about access-list,do one need to
go ahead with implementation of these Acess-lists?
Kindly help.
Thanks in advance.

 Piyush




Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html

--

Date: Fri, 8 Aug 2003 07:36:33 GMT
From: "LINSEN Jurgen (BMB)" 
Subject: RE: cisco back to back cable [7:71992]

Sure you're using a cross cable?

- -Original Message-
From: KW S [mailto:[EMAIL PROTECTED]
Sent: Monday, July 07, 2003 6:22 PM
To: [EMAIL PROTECTED]
Subject: cisco back to back cable [7:71992]


Dear All

I have a 2501 and 2505 and I am trying to set up a homelab..These 2
routers come with a cable which is a DB60(DTE) and the other end is a
DB60(DCE).This is wat that is label on the cable. Anyway, I try to
connect this cable to the serial interface of the 2 routers...and both
the routers are showing serial is down and line protocol is down.

I guess I have used the wrong cable...or maybe I have missed out
something.

Please comment..

Regards, kws
 DISCLAIMER 

"This e-mail and any attachment thereto may contain information which is
confidential and/or protected by intellectual property rights and are
intended for the sole use of the recipient(s) named above.
Any use of the information contained herein (including, but not limited to,
total or partial reproduction, communication or distribution in any form) by
other persons than the designated recipient(s) is prohibited.
If you have received this e-mail in error, please notify the sender either
by telephone or by e-mail and delete the material from any computer".

Thank you for your cooperation.

For further information about Proximus mobile phone services please see our
website at http://www.proximus.be or refer to any Proximus agent.
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html

--

End of Cisco Certification Digest V2 #2646
**

-
You are currently subscribed to the Cisco Certification Digest.  This
digest contains a companion website at http://www.groupstudy.com.  To
unsubscribe from this list send a message to [EMAIL PROTECTED]
with the body containing:

unsubscribe cisco-digest [EMAIL PROTECTED]

If that does not work, follow the instructions at:
http://www.groupstudy.com/list/help.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73738&t=73738
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-14 Thread Reimer, Fred
Why don't you consider the VPN Concentrator 3002 Hardware Client.  It offers
LAN-to-LAN VPN capabilities, can be remotely upgraded automatically, etc.
You can even get one with an 8-port 10/100 switch for the small locations.
The CVPN3002-8E-BUN-K9 lists for $1,195.  It cost more than a 831, at $649,
but it does come with the 8-port switch...

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: Herold Heiko [mailto:[EMAIL PROTECTED] 
Sent: Thursday, August 07, 2003 6:10 AM
To: [EMAIL PROTECTED]
Subject: RE: Cisco 806 ? [7:73613]

VPN client won't be possible for this project (no software installation,
need vpn lan to lan). Pix can't be used due to managerial issues, doesn't
like them :(.
So the only remaining possibilities (beside stuff like D-Link I really
wouldn't bet my security on) are routers or possibly a nokia fw-1 box.

400kb/s should probably be ok, otherwise a 831 will be more than enough I
think.
I'll discover soon if my testing budget gets approved, I'd hate to research
and drool and then later hear "we'll outsource this" just when I hope to get
hands-on experience on this stuff :(.

Bye
Heiko


-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 11:30 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> Just let them go on performance, not on command set?
> 
> I remember about 400Kb/s 3des for the 806/820's
> the 830's should do 2Mb/s for 3des.
> 
> 1700's VPN bundle carry a xtra crypto card. At least 2Mbit. 
> Watch for the
> amount of VPN connections, too many access-lists's etc. (cpu power)
> 
> A pix 501 or small vpn client could also do the job?
> 
> Martijn 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: donderdag 7 augustus 2003 11:04
> Aan: Jansen, M; [EMAIL PROTECTED]
> Onderwerp: RE: Cisco 806 ? [7:73613]
> 
> 
> No, it is unrelated - I just remembered the 1000 series being limited
> (regarding at least NTP) and feared the 800 series, being the 
> replacement
> for the 1000 series, could have the same limitations.
> 
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EMAIL PROTECTED]
> -- +39-041-5907073 ph
> -- +39-041-5907472 fax
> 
> > -Original Message-
> > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > Sent: Thursday, August 07, 2003 10:51 AM
> > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > Subject: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > What about NTP? Should it read NAT?
> > 
> > Martijn 
> > 
> > -Oorspronkelijk bericht-
> > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > Verzonden: donderdag 7 augustus 2003 8:10
> > Aan: [EMAIL PROTECTED]
> > Onderwerp: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > Thanks!
> > I just wanted to double check - some hears ago I got burnt in 
> > a similar
> > situation, with a 1003 and (no) NTP if I remember correctly.
> > Heiko
> > 
> > -- 
> > -- PREVINET S.p.A. www.previnet.it
> > -- Heiko Herold [EMAIL PROTECTED]
> > -- +39-041-5907073 ph
> > -- +39-041-5907472 fax
> > 
> > > -Original Message-
> > > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > > Sent: Thursday, August 07, 2003 8:04 AM
> > > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > > Subject: RE: Cisco 806 ? [7:73613]
> > > 
> > > 
> > > It does. It is IOS. Just do your CLI thing.
> > > 
> > > Martijn 
> > > 
> > > -Oorspronkelijk bericht-
> > > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > > Verzonden: woensdag 6 augustus 2003 17:21
> > > Aan: [EMAIL PROTECTED]
> > > Onderwerp: Cisco 806 ? [7:73613]
> > > 
> > > 
> > > Hi,
> > > 
> > > for some tests I need something cheap to play with, having 2 
> > > eth, vpn and
> &g

RE: Cisco Security Advisory: Cisco IOS Interface Blocked by [7:73707]

2003-08-14 Thread George Murage
The Advisory affects *ALL* routers and switches running IOS versions below
12.3

The access-lists are a work-around / stop-gap measure until you upgrade your
IOS to a release that has a fix for the vulnerability. However, with what I
have seen and heard over the last few weeks, use the access-lists and
*don't* upgrade your IOS without proper planning. I have seen some
overzealous network engineers crash their routers by loading the wrong IOS
for the hardware(DRAM/Flash) they currently have.

HTH
George Murage


-Original Message-
From: Mr piyush shah [mailto:[EMAIL PROTECTED] 
Sent: Monday, August 04, 2003 2:51 PM
To: [EMAIL PROTECTED]
Subject: Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4
[7:73471]

Dear all
Recently there was an article on Cisco Security
Advisory which stated that all Cisco routers/switches
having IOS as their operating system,their Interfaces
will be blocked by IPv4 Packets.In this regard,i have
a querry.
Is it that all the router having IOS will be blocked
or certain specific IOS ?
Also they have given fixes at the bottom of that
article which states about access-list,do one need to
go ahead with implementation of these Acess-lists?
Kindly help.
Thanks in advance.

 Piyush




Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73707&t=73707
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco CCNA 640-801 exam review [7:73950]

2003-08-14 Thread Simon Watson
Good Review

However one correction, you've mentioned that EIGRP is a link state routing
protocol, when it is a "hybrid" distance vector protocol.

Take Care

Simon.
- Original Message -
From: "Andy Barkl" 
To: 
Sent: Wednesday, August 13, 2003 2:18 AM
Subject: Cisco CCNA 640-801 exam review [7:73950]


> Here is my Cisco CCNA 640-801 exam review;
> http://www.tcpmag.com/Exams/article.asp?EditorialsID=77
>
> I hope it helps you with your studies.
> Good luck!
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73956&t=73950
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Safe Security Exam -->9E0-131 CSI or [7:73971]

2003-08-14 Thread Reimer, Fred
You're kidding me, right?  I'm taking that exam tomorrow...

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: annlee [mailto:[EMAIL PROTECTED] 
Sent: Thursday, August 14, 2003 3:08 PM
To: [EMAIL PROTECTED]
Subject: Re: Cisco Safe Security Exam -->9E0-131 CSI or [7:73971]

chan Lu wrote:
> What is the passing score for the SAFE test?
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
> 
825
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73981&t=73971
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Safe Security Exam -->9E0-131 CSI or [7:73971]

2003-08-14 Thread annlee
chan Lu wrote:
> What is the passing score for the SAFE test?
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
> 
825




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73980&t=73971
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco CCNA 640-801 exam review [7:73950]

2003-08-14 Thread Andy Barkl
A correction will be made to the article.

-Original Message-
From: Kevin Wigle [mailto:[EMAIL PROTECTED] 
Sent: Tuesday, August 12, 2003 7:49 PM
To: Andy Barkl; [EMAIL PROTECTED]
Subject: Re: Cisco CCNA 640-801 exam review [7:73950]

well.. I glanced over it and I noticed that you say that EIGRP is a
link
state routing protocol...

CCO says that EIGRP is "an enhanced distance vector protocol"

I hope potential students learn the "Cisco" definition for the exam!

Kevin Wigle

- Original Message - 
From: "Andy Barkl" 
To: 
Sent: Tuesday, August 12, 2003 9:18 PM
Subject: Cisco CCNA 640-801 exam review [7:73950]


> Here is my Cisco CCNA 640-801 exam review;
> http://www.tcpmag.com/Exams/article.asp?EditorialsID=77
>
> I hope it helps you with your studies.
> Good luck!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73959&t=73950
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco CCNA 640-801 exam review [7:73950]

2003-08-14 Thread Andy Barkl
I guess I'm not perfect in every way. :)

-Original Message-
From: Simon Watson [mailto:[EMAIL PROTECTED] 
Sent: Tuesday, August 12, 2003 7:51 PM
To: Andy Barkl; [EMAIL PROTECTED]
Subject: Re: Cisco CCNA 640-801 exam review [7:73950]

Good Review

However one correction, you've mentioned that EIGRP is a link state
routing
protocol, when it is a "hybrid" distance vector protocol.

Take Care

Simon.
- Original Message -
From: "Andy Barkl" 
To: 
Sent: Wednesday, August 13, 2003 2:18 AM
Subject: Cisco CCNA 640-801 exam review [7:73950]


> Here is my Cisco CCNA 640-801 exam review;
> http://www.tcpmag.com/Exams/article.asp?EditorialsID=77
>
> I hope it helps you with your studies.
> Good luck!




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73958&t=73950
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Secure VPN 642-511 [7:73919]

2003-08-14 Thread Kevin Wigle
I'm for the check CCO part of your post.

Visit
http://www.cisco.com/en/US/learning/le3/le30/le13/learning_learning_path.html

and you'll see all the Specialist certifications.  They are not going
anywhere - yet.

The CCSP is still going strong:
http://www.cisco.com/en/US/learning/le3/le2/le37/le54/learning_certification_type_home.html

on the same page is an INFOSEC Professional link.  Cisco has been granted
rights to award this cert.  It is NOT a Cisco cert.  Which is cool because
once it is awarded there is no need to recertify, it is permanent.

Which is opposite to everything Cisco does - especially CCSP - to recert
CCSP you have to take all 5 exams again.  Hopefully by the time people get 3
years in CCSP Cisco will have a single recert exam like they do for
CCIE/CCDP/CCNP

I might do the security exams once to get the INFOSEC cert and then forget
the recert on the Cisco stuff.

If you get the CCSP you'll also have the credits to be a Firewall Spec, IDS
Spec and a VPN Spec.  It would make for a crowded business card.

The specs are good for 2 years, the CCSP is good for 3 years.  Which is also
weird as you used the specs to get CCSP but they expire first.

I'm sure there are "good" reasons for these certification oddities.

Kevin Wigle
CCDP CCNP MCSE CBE Security+

- Original Message - 
From: "Reimer, Fred" 
To: 
Sent: Tuesday, August 12, 2003 9:45 AM
Subject: Cisco Secure VPN 642-511 [7:73919]


> Change of subject, and a massive trim.
>
> The KnowledgeNet course was good.  I took the "Express" "with Mentor."
> Contrary to their recommendations, I didn't see much value in their
mentors.
> Not to say that they are not knowledgeable or anything, just that 90% of
the
> time my "questions" for the mentors were corrections in the Cisco
> courseware.  The course was for the new test.  I believe there were a few
> questions on the test that were not covered in the course.
>
> You get the Cisco courseware documentation, and access to their on-line
> power-point type slides with an instructor basically saying the same thing
> as is in the courseware.  However, they do talk about some things that are
> not in the manuals.  You should have six weeks to go through it.  I'd
> suggest taking a day off or spending a Saturday to go through the whole
> course, but that's just me.  I can't do the one hour here and there thing.
>
> They also include "labs" or simulations of setting up the hardware.
> However, they don't have an actual lab.  I think they are working on that,
> but I found it very useful to have a "real" 3000 available to go through
the
> menus.
>
> If you haven't taken this test before, don't skip the practice thing in
the
> beginning.  One of the simulations worked a bit differently than I was
> expecting, and although I'm sure I knew what I was doing I'm not sure if I
> got credit for that question.
>
> Know all the menus, and what items are on the actual configuration
screens.
>
> I have a side question myself.  Cisco changed their specialist program, so
> that now apparently there isn't a Firewall Specialist, VPN Specialist, and
> IDS Specialist, but rather just one Security Specialist.  So does that
mean
> that I can't use the "VPN Specialist" designation anymore and have to wait
> until I pass all of the tests?  What about that INFOSEC designation, is
that
> still valid?
>
> Perhaps I should just login to the new Certifications Community site and
> check there.
>
> http://forums.cisco.com/eforum/servlet/CertCom?page=main
>
> Fred Reimer - CCNA
>
>
> Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
> Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050
>
>
> NOTICE; This email contains confidential or proprietary information which
> may be legally privileged. It is intended only for the named recipient(s).
> If an addressing or transmission error has misdirected the email, please
> notify the author by replying to this message. If you are not the named
> recipient, you are not authorized to use, disclose, distribute, copy,
print
> or rely on this email, and should immediately delete it from your
computer.
>
>
> -Original Message-
> From: Truman, Michelle, RTSLS [mailto:[EMAIL PROTECTED]
> Sent: Tuesday, August 12, 2003 9:17 AM
> To: Reimer, Fred; [EMAIL PROTECTED]
> Subject: RE: VPN Best Hardware to use? [7:73793] LITTLE OT: [7:73793]
>
> Can you comment on that particular Knowledgenet class? I'm signed up to
> take it in the not too distant future.
> Thanks,
>
> Michelle
>
> Michelle Truman   CCIE # 8098
> Principal Technical Consultant
> AT&T Solutions Center
> mailto:[EMAIL PROTECTED]
> Work: 651-998-0949
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73951&t=73919
--
**Please support GroupStudy by purc

RE: Cisco inspection fee for used gear?? [7:73788]

2003-08-14 Thread John Neiberger
There are two separate issues here. The first is the software licensing, and
I'd agree with you that if you own the router *and* have a valid license for
the software then you should be able to sell the router along with the
software license to whomever you please. Cisco feels differently and if you
use their software then you have agreed to the wording of the license that
explains their opinion and lays down the restrictions.

Secondly, you have the inspection problem and the blame for that falls
squarely on the users. For quite a while it was common for someone to buy
hardware that they *knew* was faulty, and then get cheap smartnet for it so
they could get a working replacement. Cisco finally caught on to this and we
now have to get used equipment inspected before it can be covered.

I know, it sucks, but blame those who abused the SmartNet program. This is
their fault.

John

>>> Gary Crouch 8/11/03 1:15:02 PM >>>
This is out right theft by the hardware venders 
You pad for the software when you bought you should be able to transfer it.
We sould demand right to transfer or buycot these companies

-Original Message-
From: Colin Weiner [mailto:[EMAIL PROTECTED] 
Sent: Sunday, August 10, 2003 6:40 PM
To: [EMAIL PROTECTED] 
Subject: Cisco inspection fee for used gear?? [7:73788]


Interesting article about buying used network equipment (I buy all my lab
stuff of ebay or other vendors)

http://www.infoworld.com/article/03/08/08/31FEfair_1.html 


"I made the mistake of showing a visiting Cisco rep the 2611 router I'd
purchased on eBay for $1,200," says Mark Payton, director of IT at the
Vermont Academy, a school in Saxtons River, Vt. "Not only are they asking
me
to pay to relicense the software, but they are expecting me to get a
one-year SmartNet maintenance agreement and to pay an inspection fee."


Colin
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com 
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html 
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com 
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73891&t=73788
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: cisco back to back cable [7:71992]

2003-08-14 Thread [EMAIL PROTECTED]
In dutch, to keep things easy.

Denk dat je eerst even de  zaken moet proberen.

controle kabel
checken met commando sh controller serial, zie je een interface type staan,
dus die dce/dte

sh interface serial x
Router# show interfaces serial 
Serial 0 is up, line protocol is up 
   Hardware is MCI Serial 
   Internet address is 131.136.190.203, subnet mask is 255.255.255.0 
   MTU 1500 bytes, BW 1544 Kbit, DLY 2 usec, rely 255/255, load 1/255 
   Encapsulation HDLC, loopback not set, keepalive set (10 sec) 
   Last input 0:00:07, output 0:00:00, output hang never 
   Output queue 0/40, 0 drops; input queue 0/75, 0 drops 
   Five minute input rate 0 bits/sec, 0 packets/sec 
   Five minute output rate 0 bits/sec, 0 packets/sec 
   16263 packets input, 1347238 bytes, 0 no buffer 
   Received 13983 broadcasts, 0 runts, 0 giants 
   2 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 2 abort 
1 carrier transitions 
22146 packets output, 2383680 bytes, 0 underruns 
0 output errors, 0 collisions, 2 interface resets, 0 restarts check onderaan
dte/dce/rts/cts signalen moeten werken

configuratie
standaard configuratie
de ene is dce  (moet commando clockrate bv 64000 bij)  
ander is dte geen clockrate



Martijn


-Oorspronkelijk bericht-
Van: LINSEN Jurgen (BMB) [mailto:[EMAIL PROTECTED]
Verzonden: vrijdag 8 augustus 2003 9:37
Aan: [EMAIL PROTECTED]
Onderwerp: RE: cisco back to back cable [7:71992]


Sure you're using a cross cable?

-Original Message-
From: KW S [mailto:[EMAIL PROTECTED] 
Sent: Monday, July 07, 2003 6:22 PM
To: [EMAIL PROTECTED]
Subject: cisco back to back cable [7:71992]


Dear All

I have a 2501 and 2505 and I am trying to set up a homelab..These 2
routers come with a cable which is a DB60(DTE) and the other end is a
DB60(DCE).This is wat that is label on the cable. Anyway, I try to
connect this cable to the serial interface of the 2 routers...and both
the routers are showing serial is down and line protocol is down.

I guess I have used the wrong cable...or maybe I have missed out
something.

Please comment..

Regards, kws
 DISCLAIMER 

"This e-mail and any attachment thereto may contain information which is
confidential and/or protected by intellectual property rights and are
intended for the sole use of the recipient(s) named above.
Any use of the information contained herein (including, but not limited to,
total or partial reproduction, communication or distribution in any form) by
other persons than the designated recipient(s) is prohibited.
If you have received this e-mail in error, please notify the sender either
by telephone or by e-mail and delete the material from any computer".

Thank you for your cooperation.

For further information about Proximus mobile phone services please see our
website at http://www.proximus.be or refer to any Proximus agent.
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73713&t=71992
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: cisco back to back cable [7:71992]

2003-08-14 Thread LINSEN Jurgen (BMB)
Sure you're using a cross cable?

-Original Message-
From: KW S [mailto:[EMAIL PROTECTED] 
Sent: Monday, July 07, 2003 6:22 PM
To: [EMAIL PROTECTED]
Subject: cisco back to back cable [7:71992]


Dear All

I have a 2501 and 2505 and I am trying to set up a homelab..These 2
routers come with a cable which is a DB60(DTE) and the other end is a
DB60(DCE).This is wat that is label on the cable. Anyway, I try to
connect this cable to the serial interface of the 2 routers...and both
the routers are showing serial is down and line protocol is down.

I guess I have used the wrong cable...or maybe I have missed out
something.

Please comment..

Regards, kws
 DISCLAIMER 

"This e-mail and any attachment thereto may contain information which is
confidential and/or protected by intellectual property rights and are
intended for the sole use of the recipient(s) named above.
Any use of the information contained herein (including, but not limited to,
total or partial reproduction, communication or distribution in any form) by
other persons than the designated recipient(s) is prohibited.
If you have received this e-mail in error, please notify the sender either
by telephone or by e-mail and delete the material from any computer".

Thank you for your cooperation.

For further information about Proximus mobile phone services please see our
website at http://www.proximus.be or refer to any Proximus agent.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73708&t=71992
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-14 Thread Cisco Nuts
Here is what I think is the trick to understand Halabi:

It is NOT for entry level people nor is it for people who use it as a
study book for any exam.

That is why the book is called "Internet Routing Architectures" not "BGP
cram session book for the CCXX exams"..The word Architectures should
mean something, right?

I have found out that the book really makes sense after you work with BGP
in your job on a day-to-day basis. Atleast, it did for me and now I have
read it many times and still refer to it once in a while, when I try to
help some customers with their BGP configs and issues. Initially, I found
it hard to comprehend so I do feel other's pain :-(

Yes, please do not be so harsh about any author. Where in the book does
it say that it should be used a study guide for any exam, even the CCIE
is NOT mentioned. So how can you be so harsh about it. It is indeed
called the Bible for a reason. And same of his OSPF design guide.

I have used Caslow, Stewart, Halabi, Doyle and Parkhurst and  best of all
Cisco's BGP case studies. They are all good books/materials and should be
used accordingly.

As I always tell people, BGP is NOT for the faint-hearted :-)

And, yes, the BGP beta exam was one of the most difficult exams that I
took but managed to get a 857.

Peace.   No flames please !!

Just my 2 cents!!

CN

>From: "John Neiberger" >Reply-To: "John Neiberger" >To:
[EMAIL PROTECTED] >Subject: Re: Cisco BGP Exam [7:73516] >Date: Wed, 6
Aug 2003 01:59:34 GMT > >Hmm...that's interesting. I found Halabit to be
very easy to understand, but >that was after reading Stewart. Stewart's
book is incredibly easy to >understand, especially considering how short
it is. Quite concise, yet >readable. > >I have Doyle Vol. II but I
stopped studying for attempt #2 before I got to >the BGP section. I
should read through it as a refresher and to compare it >to Halabi. >
>But Dre? Despise?? :-) That's pretty harsh! However, I guess I can
>understand your point. BGP can be pretty easy to understand when it's
>explained correctly, and can be very difficult to understand when
explained >poorly. > >John > >""Pintens, Koen"" wrote in message
>news:[EMAIL PROTECTED] > > I agree with Dre
> > I also got both books and Jeff Doyle's is so much easier to read and
> > understand then Halabi's > > > > Koen Pinten > > Network Engineer > >
> > CCNP CCDP MCSE MCSA MCDBA > > > > > -Original Message- > > >
From: dre [SMTP:[EMAIL PROTECTED] > > > Sent: Wednesday, August 06,
2003 10:55 AM > > > To: [EMAIL PROTECTED] > > > Subject: Re: Cisco BGP
Exam [7:73516] > > > > > > ""juniper"" wrote in message ... > > > > Can
anyone recommend a good book for the BGP exam > > > > > > I personally
despise Halabi's "authortative, the BGP-bible" IRA > > > book. It is
awful. It is the sole reason nobody understands BGP. > > > It's
confusing, boring, and downright awful to read and understand > > > such
simple concepts. > > > > > > I passed the Cisco BGP exam (took the beta),
and I did not even > > > open Halabi or Stewart (I do like Stewart, but
for this exam, his > > > information is not really on-topic). > > > > > >
Normally, I'd say read the RFC's, but they are also not going to > > >
help you on this exam. > > > > > > I used > > > a) the outline provided
by Cisco > > > b) Jeff Doyle's TCP/IP Routing Volume II (first 318 pages)
> > > > > > Jeff Doyle is the master of routing protocols...this
misconception > > > that Volume II was not as good as Volume I reminds me
of 14 > > > year old pimply-faced kids arguing about Star Wars vs. Empire
> > > or Matrix 1 vs. Matrix: Reloaded. These are all good movies... > >
> however, Star Wars: Episode I and II are more remniscient of > > >
HalabiIMO. > > > > > > -dre > > > **Please support GroupStudy by
purchasing from the GroupStudy Store: > > > http://shop.groupstudy.com >
> > FAQ, list archives, and subscription info: > >
http://www.groupstudy.com/list/cisco.html > > > > > >
** >
> This electronic message together with any attachments is confidential.
If > > you receive it in error: (i) you must not use, disclose, copy or
retain > > it; (ii) please contact the sender immediately by reply email
and then > > delete the emails. Views expressed in this email may not 

Re: Cisco CCNA 640-801 exam review [7:73950]

2003-08-14 Thread Kevin Wigle
well.. I glanced over it and I noticed that you say that EIGRP is a link
state routing protocol...

CCO says that EIGRP is "an enhanced distance vector protocol"

I hope potential students learn the "Cisco" definition for the exam!

Kevin Wigle

- Original Message - 
From: "Andy Barkl" 
To: 
Sent: Tuesday, August 12, 2003 9:18 PM
Subject: Cisco CCNA 640-801 exam review [7:73950]


> Here is my Cisco CCNA 640-801 exam review;
> http://www.tcpmag.com/Exams/article.asp?EditorialsID=77
>
> I hope it helps you with your studies.
> Good luck!
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73955&t=73950
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-14 Thread
""Jose Linero Welcker""  wrote in message
news:[EMAIL PROTECTED]
> Internet Routing Architechtures - Second Edition - Sam Halabi
>
> This is a complete BGP guide, and tat is enough to the BGP exam


interesting. have not taken the exam yet, so I can't comment. But I strognly
recommend Bill Parkhurst's "Cisco BGP 4 Command and Configuration Reference"
for CCIE Lab prep and anything to do with Cisco BGP studies. It can't hurt.



>
> Regards,
>
> Jose
>
>
> >From: "juniper"
> >Reply-To: "juniper"
> >To: [EMAIL PROTECTED]
> >Subject: Cisco BGP Exam [7:73516]
> >Date: Tue, 5 Aug 2003 14:00:03 GMT
> >
> >Hi,
> >Can anyone recommend a good book for the BGP exam
> >Mark
> >**Please support GroupStudy by purchasing from the GroupStudy Store:
> >http://shop.groupstudy.com
> >FAQ, list archives, and subscription info:
> >http://www.groupstudy.com/list/cisco.html
>
> _
> Charla con tus amigos en lmnea mediante MSN Messenger:
> http://messenger.yupimsn.com/
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73630&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Secure VPN 642-511 [7:73919]

2003-08-14 Thread Peter Walker
Assorted comments in line.

--On 12 August 2003 13:45 + "Reimer, Fred"  
wrote:

>
> You should have six weeks to go through it.  I'd
> suggest taking a day off or spending a Saturday to go through the whole
> course, but that's just me.  I can't do the one hour here and there thing.

Hmmm, you should try running through the knowledgenet course after work in 
the evening, then heading back into the office at midnight and configuring 
your first concentrator before 8:30am when people start arriving for their 
days work.  That wasnt fun :-)

>
> They also include "labs" or simulations of setting up the hardware.
> However, they don't have an actual lab.  I think they are working on that,
> but I found it very useful to have a "real" 3000 available to go through
> the menus.
>

Yep.

> I have a side question myself.  Cisco changed their specialist program, so
> that now apparently there isn't a Firewall Specialist, VPN Specialist, and
> IDS Specialist, but rather just one Security Specialist.  So does that
> mean that I can't use the "VPN Specialist" designation anymore and have
> to wait until I pass all of the tests?  What about that INFOSEC
> designation, is that still valid?
>

I think you have things in reverse.  The Security specialist cert is being 
/ has been retired.  The three new specialist exams and CCSP replaced it. 
If you are interested, I expressed my opinion on that change in some detail 
(either on this list or security ie dot com) a while back. (I wasnt very 
complementary about the new specialist certs)


Regards

Peter Walker
CC[NID]P, CISSP, CSS1, etc
(yeah, my current employer is a reseller)




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73937&t=73919
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: cisco back to back cable [7:71992] ENGLISH version, so to [7:73714]

2003-08-14 Thread [EMAIL PROTECTED]
url

do a no shut on serial intf
clock dce say 64000
then
sh controllers ser x 

Look at the   DCD=up  DSR=up  DTR=up  RTS=up  CTS=up

you have a working cable, interface 2x

http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fint
er_r/irfshoap.htm#1019003

http://www.cisco.com/en/US/tech/tk713/tk507/technologies_configuration_examp
le09186a0080094504.shtml

LET OP DE ONDERSTE REGEL DAN IS IE UP!

spicey#show interfaces serial 1
Serial1 is up, line protocol is up 
  Hardware is HD64570
  Internet address is 5.0.2.2/24
  MTU 1500 bytes, BW 1544 Kbit, DLY 2 usec, 
 reliability 255/255, txload 1/255, rxload 1/255
  Encapsulation PPP, loopback not set
  Keepalive set (10 sec)
  LCP Open
  Open: IPCP
  Last input 00:00:01, output 00:00:01, output hang never
  Last clearing of "show interface" counters 00:09:27
  Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
  Queueing strategy: weighted fair
  Output queue: 0/1000/64/0 (size/max total/threshold/drops) 
 Conversations  0/1/256 (active/max active/max total)
 Reserved Conversations 0/0 (allocated/max allocated)
  5 minute input rate 0 bits/sec, 0 packets/sec
  5 minute output rate 0 bits/sec, 0 packets/sec
 130 packets input, 3392 bytes, 0 no buffer
 Received 0 broadcasts, 0 runts, 0 giants, 0 throttles
 0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 0 abort
 129 packets output, 3378 bytes, 0 underruns
 0 output errors, 0 collisions, 0 interface resets
 0 output buffer failures, 0 output buffers swapped out
 0 carrier transitions
 DCD=up  DSR=up  DTR=up  RTS=up  CTS=up


Martijn 

-Oorspronkelijk bericht-
Van: Jansen, M 
Verzonden: vrijdag 8 augustus 2003 12:36
Aan: 'LINSEN Jurgen (BMB)'; [EMAIL PROTECTED]
Onderwerp: RE: cisco back to back cable [7:71992]


In dutch, to keep things easy.

Denk dat je eerst even de  zaken moet proberen.

controle kabel
checken met commando sh controller serial, zie je een interface type staan,
dus die dce/dte

sh interface serial x
Router# show interfaces serial 
Serial 0 is up, line protocol is up 
   Hardware is MCI Serial 
   Internet address is 131.136.190.203, subnet mask is 255.255.255.0 
   MTU 1500 bytes, BW 1544 Kbit, DLY 2 usec, rely 255/255, load 1/255 
   Encapsulation HDLC, loopback not set, keepalive set (10 sec) 
   Last input 0:00:07, output 0:00:00, output hang never 
   Output queue 0/40, 0 drops; input queue 0/75, 0 drops 
   Five minute input rate 0 bits/sec, 0 packets/sec 
   Five minute output rate 0 bits/sec, 0 packets/sec 
   16263 packets input, 1347238 bytes, 0 no buffer 
   Received 13983 broadcasts, 0 runts, 0 giants 
   2 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored, 2 abort 
1 carrier transitions 
22146 packets output, 2383680 bytes, 0 underruns 
0 output errors, 0 collisions, 2 interface resets, 0 restarts check onderaan
dte/dce/rts/cts signalen moeten werken

configuratie
standaard configuratie
de ene is dce  (moet commando clockrate bv 64000 bij)  
ander is dte geen clockrate



Martijn


-Oorspronkelijk bericht-
Van: LINSEN Jurgen (BMB) [mailto:[EMAIL PROTECTED]
Verzonden: vrijdag 8 augustus 2003 9:37
Aan: [EMAIL PROTECTED]
Onderwerp: RE: cisco back to back cable [7:71992]


Sure you're using a cross cable?

-Original Message-
From: KW S [mailto:[EMAIL PROTECTED] 
Sent: Monday, July 07, 2003 6:22 PM
To: [EMAIL PROTECTED]
Subject: cisco back to back cable [7:71992]


Dear All

I have a 2501 and 2505 and I am trying to set up a homelab..These 2
routers come with a cable which is a DB60(DTE) and the other end is a
DB60(DCE).This is wat that is label on the cable. Anyway, I try to
connect this cable to the serial interface of the 2 routers...and both
the routers are showing serial is down and line protocol is down.

I guess I have used the wrong cable...or maybe I have missed out
something.

Please comment..

Regards, kws
 DISCLAIMER 

"This e-mail and any attachment thereto may contain information which is
confidential and/or protected by intellectual property rights and are
intended for the sole use of the recipient(s) named above.
Any use of the information contained herein (including, but not limited to,
total or partial reproduction, communication or distribution in any form) by
other persons than the designated recipient(s) is prohibited.
If you have received this e-mail in error, please notify the sender either
by telephone or by e-mail and delete the material from any computer".

Thank you for your cooperation.

For further information about Proximus mobile phone services please see our
website at http://www.proximus.be or refer to any Proximus agent.
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.co

Re: Cisco Safe Security Exam -->9E0-131 CSI or 642-541 CSI [7:73971]

2003-08-14 Thread NKP
I can understand Andrew , i had missed mine by 3 percent as well in  the
first attempt , then cleared it on the second go .

-- 

Navin Parwal

MCSE,MCT,CCNP , CCDP,  CCSP, CCIE (R/S) # 12026
Technosys


""Andrew Larkins""  wrote in message
news:[EMAIL PROTECTED]
> Hi,
>
> From what I read on CCO regarding this cert is as follows:
>
> 1. Your CSS1 is valid for 2 years from the date you got it.
> 2. You have until 30 Sept 2003 to covert to CCSP otherwise when your CSS1
> expires (in 2 years) you have to rewrite all the exams again.
> 3. 9E0-131 is the exam to do before 30 Sept 03.
>
> I have my CSS1 and need to upgrade now. I tried the SAFE exam in April and
> missed by 1%. Been a little lazy since then, so now I have to write before
> end Sept 03.
>
> Regards
>
> Andrew
>
> -Original Message-
> From: Godswill Oletu [mailto:[EMAIL PROTECTED]
> Sent: 10 August 2003 05:54
> To: [EMAIL PROTECTED]
> Subject: Cisco Safe Security Exam -->9E0-131 CSI or 642-541 CSI
> [7:73795]
>
>
> Hi,
>
> I will appreciate comments from anyone who have recently written the Cisco
> SAFE exam. Since the 9E0-131 will be retired on 9/30/03, am thinking of
> taking
> the 642-541 exam. All I have is the 7 safe white papers.
>
> However, I think its only one of the white papers that deals with the exam
> topics, I will need inputs from people who are studying for the exam or
had
> written the exam already. Do one need to read all 7 white papers? Comments
> about the relevancy of the white papers to the exam would be appreciated
as
> well.
>
> I have put off this exam till this last minute, one have started studying
> for
> this exam, especially since one have just less than 2 months to upgrade
from
> CSS1 to CCSP else one will loss his CSS1 designation.
>
> Thanks.
> Godswill
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73971&t=73971
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-14 Thread John Neiberger
Hmm...that's interesting. I found Halabit to be very easy to understand, but
that was after reading Stewart. Stewart's book is incredibly easy to
understand, especially considering how short it is. Quite concise, yet
readable.

I have Doyle Vol. II but I stopped studying for attempt #2 before I got to
the BGP section. I should read through it as a refresher and to compare it
to Halabi.

But Dre? Despise?? :-)  That's pretty harsh! However, I guess I can
understand your point. BGP can be pretty easy to understand when it's
explained correctly, and can be very difficult to understand when explained
poorly.

John

""Pintens, Koen""  wrote in message
news:[EMAIL PROTECTED]
> I agree with Dre
> I also got both books and Jeff Doyle's is so much easier to read and
> understand then Halabi's
>
> Koen Pinten
> Network Engineer
>
> CCNP CCDP MCSE MCSA MCDBA
>
> > -Original Message-
> > From: dre [SMTP:[EMAIL PROTECTED]
> > Sent: Wednesday, August 06, 2003 10:55 AM
> > To: [EMAIL PROTECTED]
> > Subject: Re: Cisco BGP Exam [7:73516]
> >
> > ""juniper""  wrote in message ...
> > > Can anyone recommend a good book for the BGP exam
> >
> > I personally despise Halabi's "authortative, the BGP-bible" IRA
> > book.  It is awful.  It is the sole reason nobody understands BGP.
> > It's confusing, boring, and downright awful to read and understand
> > such simple concepts.
> >
> > I passed the Cisco BGP exam (took the beta), and I did not even
> > open Halabi or Stewart (I do like Stewart, but for this exam, his
> > information is not really on-topic).
> >
> > Normally, I'd say read the RFC's, but they are also not going to
> > help you on this exam.
> >
> > I used
> > a) the outline provided by Cisco
> > b) Jeff Doyle's TCP/IP Routing Volume II (first 318 pages)
> >
> > Jeff Doyle is the master of routing protocols...this misconception
> > that Volume II was not as good as Volume I reminds me of 14
> > year old pimply-faced kids arguing about Star Wars vs. Empire
> > or Matrix 1 vs. Matrix: Reloaded.  These are all good movies...
> > however, Star Wars: Episode I and II are more remniscient of
> > HalabiIMO.
> >
> > -dre
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
>
>
> **
> This electronic message together with any attachments is confidential. If
> you receive it in error: (i) you must not use, disclose, copy or retain
> it; (ii) please contact the sender immediately by reply email and then
> delete the emails. Views expressed in this email may not be those of the
> Airways Corporation of New Zealand Limited
> **
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73577&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-14 Thread Herold Heiko
No sntp time source was available if I remember correctly, only novell
clients and servers, possibly a sco server several (isdn!) hops away.
Details are hazy now and I don't have access to the notes anymore since I
switched work some years ago, but I remember we had to live with an unsynced
clock and use the old "now the router says it's x o'clock so that log is
really from y o'clock" differential timing :(.
I think at that time on the remote network were only old netboot msdos
novell clients and we could not bring up the isdn line in order to sync the
clock or something like that. Hmm can't be, it would have synced happily
with sntp at least whenever the line was up, there must have been some other
reason. Possibly incompetence on our side :)

Heiko 

-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 11:10 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> Use SNTP?
> 
> http://www.cisco.com/univercd/cc/td/doc/product/software/ios12
> 1/121cgcr/fun_
> r/frprt3/frd3003.htm#1020770
> 
> 
> sntp server
> To configure a Cisco 1003, Cisco 1004, Cisco 1005, Cisco 
> 1600, Cisco 1720,
> Cisco 1750, or Cisco 800 router to use the Simple Network 
> Time Protocol
> (SNTP) to request and accept Network Time Protocol (NTP) 
> traffic from a
> stratum 1 time server, use the sntp server global 
> configuration command. The
> no form of the command removes a server from the list of NTP servers. 
> 
> sntp server {address | hostname} [version number]
> no sntp server {address | hostname}
> Syntax Description 
> 
> address 
>  IP address of the time server. 
>  
> hostname 
>  Host name of the time server. 
>  
> version number 
>  (Optional) Version of NTP to use. The default is 1. 
>  
> 
> 
> Defaults 
> 
> The router does not accept SNTP traffic from a time server. 
> 
> Command Modes 
> 
> Global configuration 
> 
> Command History 
> 
> Release  Modification  
> 11.2 
>  This command was introduced. 
>  
> 
> 
> Usage Guidelines 
> 
> SNTP is a compact, client-only version of the NTP. SNMP can 
> only receive the
> time from NTP servers; it cannot be used to provide time 
> services to other
> systems. 
> 
> SNTP typically provides time within 100 milliseconds of the 
> accurate time,
> but it does not provide the complex filtering and statistical 
> mechanisms of
> NTP. In addition, SNTP does not authenticate traffic, although you can
> configure extended access lists to provide some protection. 
> 
> Enter this command once for each NTP server. 
> 
> You must configure the router with either this command or the 
> sntp broadcast
> client command in order enable SNTP. 
> 
> SNTP time servers should operate only at the root (stratum 1) 
> of the subnet,
> and then only in configurations where no other source of 
> synchronization
> other than a reliable radio or modem time service is 
> available. A stratum 2
> server cannot be used as an SNTP time server. The use of SNTP 
> rather than
> NTP in primary servers should be carefully considered. 
> 
> Examples 
> 
> The following example enables the router to request and 
> accept NTP packets
> from the server at 172.21.118.9 and shows sample show sntp 
> command output: 
> 
> Router(config)# sntp server 172.21.118.9 
> Router(config)# end 
> Router# 
> %SYS-5-CONFIG: Configured from console by console 
> Router# show sntp 
> SNTP server Stratum Version Last Receive 
> 172.21.118.9 5 3 00:01:02Synced 
> Related Commands 
> 
> Command  Description  
> show sntp 
>  Shows information about the SNTP on a Cisco 1003, Cisco 
> 1004, Cisco 1005,
> Cisco 1600, Cisco 1720, or Cisco 1750 router. 
>  
> sntp broadcast client 
>  Configures a Cisco 1003, Cisco 1004, Cisco 1005, Cisco 1600, 
> Cisco 1720, or
> Cisco 1750 router to use the SNTP to accept NTP traffic from 
> any broadcast
> server. 
>  
> 
> 
> 
> Martijn 
> 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: donderdag 7 augustus 2003 11:04
> Aan: Jansen, M; [EMAIL PROTECTED]
> Onderwerp: RE: Cisco 806 ? [7:73613]
> 
> 
> No, it is unrelated - I just remembered the 1000 series being limited
> (regarding at least NTP) and feared the 800 series, being the 
> replacement
> for the 1000 series, could have the same limitations.
> 
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EM

RE: Cisco 806 ? [7:73613]

2003-08-14 Thread [EMAIL PROTECTED]
It does. It is IOS. Just do your CLI thing.

Martijn 

-Oorspronkelijk bericht-
Van: Herold Heiko [mailto:[EMAIL PROTECTED]
Verzonden: woensdag 6 augustus 2003 17:21
Aan: [EMAIL PROTECTED]
Onderwerp: Cisco 806 ? [7:73613]


Hi,

for some tests I need something cheap to play with, having 2 eth, vpn and
(static) nat capability. Could anybody confirm if a 806 with a "IP/FW PLUS
3DES" image does support IPSEC and NAT at the same time ?
>From the docs I'd say it does support both but can I have a vpn tunnel, and
nat inside the local network, and nat outside the remote (on the other end
of the tunnel) network ?
The other endpoint would be a pix or a fw-1 although that shouldn't matter.
Couldn't find any configrmation of this in the docs :(
Thanks
Heiko

-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73642&t=73613
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-14 Thread Herold Heiko
No, it is unrelated - I just remembered the 1000 series being limited
(regarding at least NTP) and feared the 800 series, being the replacement
for the 1000 series, could have the same limitations.

Heiko

-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 10:51 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> What about NTP? Should it read NAT?
> 
> Martijn 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: donderdag 7 augustus 2003 8:10
> Aan: [EMAIL PROTECTED]
> Onderwerp: RE: Cisco 806 ? [7:73613]
> 
> 
> Thanks!
> I just wanted to double check - some hears ago I got burnt in 
> a similar
> situation, with a 1003 and (no) NTP if I remember correctly.
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EMAIL PROTECTED]
> -- +39-041-5907073 ph
> -- +39-041-5907472 fax
> 
> > -Original Message-
> > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > Sent: Thursday, August 07, 2003 8:04 AM
> > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > Subject: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > It does. It is IOS. Just do your CLI thing.
> > 
> > Martijn 
> > 
> > -Oorspronkelijk bericht-
> > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > Verzonden: woensdag 6 augustus 2003 17:21
> > Aan: [EMAIL PROTECTED]
> > Onderwerp: Cisco 806 ? [7:73613]
> > 
> > 
> > Hi,
> > 
> > for some tests I need something cheap to play with, having 2 
> > eth, vpn and
> > (static) nat capability. Could anybody confirm if a 806 with 
> > a "IP/FW PLUS
> > 3DES" image does support IPSEC and NAT at the same time ?
> > From the docs I'd say it does support both but can I have a 
> > vpn tunnel, and
> > nat inside the local network, and nat outside the remote (on 
> > the other end
> > of the tunnel) network ?
> > The other endpoint would be a pix or a fw-1 although that 
> > shouldn't matter.
> > Couldn't find any configrmation of this in the docs :(
> > Thanks
> > Heiko
> > 
> > -- 
> > -- PREVINET S.p.A. www.previnet.it
> > -- Heiko Herold [EMAIL PROTECTED]
> > -- +39-041-5907073 ph
> > -- +39-041-5907472 fax
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
> > http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73649&t=73613
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-14 Thread Herold Heiko
VPN client won't be possible for this project (no software installation,
need vpn lan to lan). Pix can't be used due to managerial issues, doesn't
like them :(.
So the only remaining possibilities (beside stuff like D-Link I really
wouldn't bet my security on) are routers or possibly a nokia fw-1 box.

400kb/s should probably be ok, otherwise a 831 will be more than enough I
think.
I'll discover soon if my testing budget gets approved, I'd hate to research
and drool and then later hear "we'll outsource this" just when I hope to get
hands-on experience on this stuff :(.

Bye
Heiko


-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 11:30 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> Just let them go on performance, not on command set?
> 
> I remember about 400Kb/s 3des for the 806/820's
> the 830's should do 2Mb/s for 3des.
> 
> 1700's VPN bundle carry a xtra crypto card. At least 2Mbit. 
> Watch for the
> amount of VPN connections, too many access-lists's etc. (cpu power)
> 
> A pix 501 or small vpn client could also do the job?
> 
> Martijn 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: donderdag 7 augustus 2003 11:04
> Aan: Jansen, M; [EMAIL PROTECTED]
> Onderwerp: RE: Cisco 806 ? [7:73613]
> 
> 
> No, it is unrelated - I just remembered the 1000 series being limited
> (regarding at least NTP) and feared the 800 series, being the 
> replacement
> for the 1000 series, could have the same limitations.
> 
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EMAIL PROTECTED]
> -- +39-041-5907073 ph
> -- +39-041-5907472 fax
> 
> > -----Original Message-
> > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > Sent: Thursday, August 07, 2003 10:51 AM
> > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > Subject: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > What about NTP? Should it read NAT?
> > 
> > Martijn 
> > 
> > -Oorspronkelijk bericht-
> > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > Verzonden: donderdag 7 augustus 2003 8:10
> > Aan: [EMAIL PROTECTED]
> > Onderwerp: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > Thanks!
> > I just wanted to double check - some hears ago I got burnt in 
> > a similar
> > situation, with a 1003 and (no) NTP if I remember correctly.
> > Heiko
> > 
> > -- 
> > -- PREVINET S.p.A. www.previnet.it
> > -- Heiko Herold [EMAIL PROTECTED]
> > -- +39-041-5907073 ph
> > -- +39-041-5907472 fax
> > 
> > > -Original Message-
> > > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > > Sent: Thursday, August 07, 2003 8:04 AM
> > > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > > Subject: RE: Cisco 806 ? [7:73613]
> > > 
> > > 
> > > It does. It is IOS. Just do your CLI thing.
> > > 
> > > Martijn 
> > > 
> > > -Oorspronkelijk bericht-
> > > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > > Verzonden: woensdag 6 augustus 2003 17:21
> > > Aan: [EMAIL PROTECTED]
> > > Onderwerp: Cisco 806 ? [7:73613]
> > > 
> > > 
> > > Hi,
> > > 
> > > for some tests I need something cheap to play with, having 2 
> > > eth, vpn and
> > > (static) nat capability. Could anybody confirm if a 806 with 
> > > a "IP/FW PLUS
> > > 3DES" image does support IPSEC and NAT at the same time ?
> > > From the docs I'd say it does support both but can I have a 
> > > vpn tunnel, and
> > > nat inside the local network, and nat outside the remote (on 
> > > the other end
> > > of the tunnel) network ?
> > > The other endpoint would be a pix or a fw-1 although that 
> > > shouldn't matter.
> > > Couldn't find any configrmation of this in the docs :(
> > > Thanks
> > > Heiko
> > > 
> > > -- 
> > > -- PREVINET S.p.A. www.previnet.it
> > > -- Heiko Herold [EMAIL PROTECTED]
> > > -- +39-041-5907073 ph
> > > -- +39-041-5907472 fax
> > > **Please support GroupStudy by purchasing from the 
> GroupStudy Store:
> > > http://shop.groupstudy.com
> > > FAQ, list archives, and subscription info:
> > > http://www.groupstudy.com/list/cisco.html
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
> > http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73655&t=73613
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco inspection fee for used gear?? [7:73788]

2003-08-14 Thread Gary Crouch
This is out right theft by the hardware venders 
You pad for the software when you bought you should be able to transfer it.
We sould demand right to transfer or buycot these companies

-Original Message-
From: Colin Weiner [mailto:[EMAIL PROTECTED]
Sent: Sunday, August 10, 2003 6:40 PM
To: [EMAIL PROTECTED]
Subject: Cisco inspection fee for used gear?? [7:73788]


Interesting article about buying used network equipment (I buy all my lab
stuff of ebay or other vendors)

http://www.infoworld.com/article/03/08/08/31FEfair_1.html


"I made the mistake of showing a visiting Cisco rep the 2611 router I'd
purchased on eBay for $1,200," says Mark Payton, director of IT at the
Vermont Academy, a school in Saxtons River, Vt. "Not only are they asking me
to pay to relicense the software, but they are expecting me to get a
one-year SmartNet maintenance agreement and to pay an inspection fee."


Colin
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73885&t=73788
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Safe Security Exam -->9E0-131 CSI or [7:73971]

2003-08-14 Thread chan Lu
What is the passing score for the SAFE test?


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73976&t=73971
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Safe Security Exam -->9E0-131 CSI or 642-541 CSI [7:73859]

2003-08-12 Thread Andrew Larkins
Hi, 

>From what I read on CCO regarding this cert is as follows:

1. Your CSS1 is valid for 2 years from the date you got it.
2. You have until 30 Sept 2003 to covert to CCSP otherwise when your CSS1
expires (in 2 years) you have to rewrite all the exams again.
3. 9E0-131 is the exam to do before 30 Sept 03.

I have my CSS1 and need to upgrade now. I tried the SAFE exam in April and
missed by 1%. Been a little lazy since then, so now I have to write before
end Sept 03.

Regards

Andrew

-Original Message-
From: Godswill Oletu [mailto:[EMAIL PROTECTED]
Sent: 10 August 2003 05:54
To: [EMAIL PROTECTED]
Subject: Cisco Safe Security Exam -->9E0-131 CSI or 642-541 CSI
[7:73795]


Hi,

I will appreciate comments from anyone who have recently written the Cisco
SAFE exam. Since the 9E0-131 will be retired on 9/30/03, am thinking of
taking
the 642-541 exam. All I have is the 7 safe white papers.

However, I think its only one of the white papers that deals with the exam
topics, I will need inputs from people who are studying for the exam or had
written the exam already. Do one need to read all 7 white papers? Comments
about the relevancy of the white papers to the exam would be appreciated as
well.

I have put off this exam till this last minute, one have started studying
for
this exam, especially since one have just less than 2 months to upgrade from
CSS1 to CCSP else one will loss his CSS1 designation.

Thanks.
Godswill
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73859&t=73859
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-10 Thread Nakul Malik
I dont think i agree with you. I really liked Sam Halabi's OSPF Design Guide
and his BGP Case studies. I admit they can be a bit daunting the first time
around, but then they are not meant to be Exam guides.In fact, i really like
the writing style and find myself wishing there were more docs written in
the same style. I am not against authors who explain technical subjects by
giving anologies to football games and mountain climbing and the like, bu it
really starts to bug you when you are sitting in your office, up for 2 days
in a row trying to solve a complicated problem and you have to read about
how  classes in C++ are like flour or some stupid anology refering to a
fishing trip. I myself prefer the direct and to the point approach, no
frills for me.
Another excellent resource for BGP, and well written are Avi Freedman's BGP
presentations.
Just my opinion though.

-Nakul


""juniper""  wrote in message
news:[EMAIL PROTECTED]
> Hi,
> Can anyone recommend a good book for the BGP exam
> Mark
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73617&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-09 Thread [EMAIL PROTECTED]
What about NTP? Should it read NAT?

Martijn 

-Oorspronkelijk bericht-
Van: Herold Heiko [mailto:[EMAIL PROTECTED]
Verzonden: donderdag 7 augustus 2003 8:10
Aan: [EMAIL PROTECTED]
Onderwerp: RE: Cisco 806 ? [7:73613]


Thanks!
I just wanted to double check - some hears ago I got burnt in a similar
situation, with a 1003 and (no) NTP if I remember correctly.
Heiko

-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 8:04 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> It does. It is IOS. Just do your CLI thing.
> 
> Martijn 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: woensdag 6 augustus 2003 17:21
> Aan: [EMAIL PROTECTED]
> Onderwerp: Cisco 806 ? [7:73613]
> 
> 
> Hi,
> 
> for some tests I need something cheap to play with, having 2 
> eth, vpn and
> (static) nat capability. Could anybody confirm if a 806 with 
> a "IP/FW PLUS
> 3DES" image does support IPSEC and NAT at the same time ?
> From the docs I'd say it does support both but can I have a 
> vpn tunnel, and
> nat inside the local network, and nat outside the remote (on 
> the other end
> of the tunnel) network ?
> The other endpoint would be a pix or a fw-1 although that 
> shouldn't matter.
> Couldn't find any configrmation of this in the docs :(
> Thanks
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EMAIL PROTECTED]
> -- +39-041-5907073 ph
> -- +39-041-5907472 fax
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73647&t=73613
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-09 Thread [EMAIL PROTECTED]
Just let them go on performance, not on command set?

I remember about 400Kb/s 3des for the 806/820's
the 830's should do 2Mb/s for 3des.

1700's VPN bundle carry a xtra crypto card. At least 2Mbit. Watch for the
amount of VPN connections, too many access-lists's etc. (cpu power)

A pix 501 or small vpn client could also do the job?

Martijn 

-Oorspronkelijk bericht-
Van: Herold Heiko [mailto:[EMAIL PROTECTED]
Verzonden: donderdag 7 augustus 2003 11:04
Aan: Jansen, M; [EMAIL PROTECTED]
Onderwerp: RE: Cisco 806 ? [7:73613]


No, it is unrelated - I just remembered the 1000 series being limited
(regarding at least NTP) and feared the 800 series, being the replacement
for the 1000 series, could have the same limitations.

Heiko

-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 10:51 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> What about NTP? Should it read NAT?
> 
> Martijn 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: donderdag 7 augustus 2003 8:10
> Aan: [EMAIL PROTECTED]
> Onderwerp: RE: Cisco 806 ? [7:73613]
> 
> 
> Thanks!
> I just wanted to double check - some hears ago I got burnt in 
> a similar
> situation, with a 1003 and (no) NTP if I remember correctly.
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EMAIL PROTECTED]
> -- +39-041-5907073 ph
> -- +39-041-5907472 fax
> 
> > -Original Message-
> > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > Sent: Thursday, August 07, 2003 8:04 AM
> > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > Subject: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > It does. It is IOS. Just do your CLI thing.
> > 
> > Martijn 
> > 
> > -Oorspronkelijk bericht-
> > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > Verzonden: woensdag 6 augustus 2003 17:21
> > Aan: [EMAIL PROTECTED]
> > Onderwerp: Cisco 806 ? [7:73613]
> > 
> > 
> > Hi,
> > 
> > for some tests I need something cheap to play with, having 2 
> > eth, vpn and
> > (static) nat capability. Could anybody confirm if a 806 with 
> > a "IP/FW PLUS
> > 3DES" image does support IPSEC and NAT at the same time ?
> > From the docs I'd say it does support both but can I have a 
> > vpn tunnel, and
> > nat inside the local network, and nat outside the remote (on 
> > the other end
> > of the tunnel) network ?
> > The other endpoint would be a pix or a fw-1 although that 
> > shouldn't matter.
> > Couldn't find any configrmation of this in the docs :(
> > Thanks
> > Heiko
> > 
> > -- 
> > -- PREVINET S.p.A. www.previnet.it
> > -- Heiko Herold [EMAIL PROTECTED]
> > -- +39-041-5907073 ph
> > -- +39-041-5907472 fax
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
> > http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73653&t=73613
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: cisco back to back cable [7:71992]

2003-08-08 Thread Daniel Cotts
One more possible issue.
Recently I installed a back-to-back cable in my lab. On the DCE end I
verified the cable: sh controllers s 0 - It showed DCE.
I then configured the interface;
config t
int s0
clock rate 130
ip address 
no shut
end
The router returned an error message that seemed to indicate that it thought
there wasn't a DCE cable on that interface.
Now interface s1 was configured for a DCE cable and it worked just fine.
OK, reload the router.
no change
Power off the router
Now it works.
IOS ver 11.3 on a 2514.

> -Original Message-
> From: LINSEN Jurgen (BMB) [mailto:[EMAIL PROTECTED]
> Sent: Friday, August 08, 2003 2:37 AM
> To: [EMAIL PROTECTED]
> Subject: RE: cisco back to back cable [7:71992]
> 
> 
> Sure you're using a cross cable?
> 
> -Original Message-
> From: KW S [mailto:[EMAIL PROTECTED] 
> Sent: Monday, July 07, 2003 6:22 PM
> To: [EMAIL PROTECTED]
> Subject: cisco back to back cable [7:71992]
> 
> 
> Dear All
> 
> I have a 2501 and 2505 and I am trying to set up a homelab..These 2
> routers come with a cable which is a DB60(DTE) and the other end is a
> DB60(DCE).This is wat that is label on the cable. Anyway, I try to
> connect this cable to the serial interface of the 2 routers...and both
> the routers are showing serial is down and line protocol is down.
> 
> I guess I have used the wrong cable...or maybe I have missed out
> something.
> 
> Please comment..
> 
> Regards, kws
>  DISCLAIMER 
> 
> "This e-mail and any attachment thereto may contain 
> information which is
> confidential and/or protected by intellectual property rights and are
> intended for the sole use of the recipient(s) named above.
> Any use of the information contained herein (including, but 
> not limited to,
> total or partial reproduction, communication or distribution 
> in any form) by
> other persons than the designated recipient(s) is prohibited.
> If you have received this e-mail in error, please notify the 
> sender either
> by telephone or by e-mail and delete the material from any computer".
> 
> Thank you for your cooperation.
> 
> For further information about Proximus mobile phone services 
> please see our
> website at http://www.proximus.be or refer to any Proximus agent.
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info: 
> http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73731&t=71992
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-08 Thread Herold Heiko
Thanks!
I just wanted to double check - some hears ago I got burnt in a similar
situation, with a 1003 and (no) NTP if I remember correctly.
Heiko

-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 8:04 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> It does. It is IOS. Just do your CLI thing.
> 
> Martijn 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: woensdag 6 augustus 2003 17:21
> Aan: [EMAIL PROTECTED]
> Onderwerp: Cisco 806 ? [7:73613]
> 
> 
> Hi,
> 
> for some tests I need something cheap to play with, having 2 
> eth, vpn and
> (static) nat capability. Could anybody confirm if a 806 with 
> a "IP/FW PLUS
> 3DES" image does support IPSEC and NAT at the same time ?
> From the docs I'd say it does support both but can I have a 
> vpn tunnel, and
> nat inside the local network, and nat outside the remote (on 
> the other end
> of the tunnel) network ?
> The other endpoint would be a pix or a fw-1 although that 
> shouldn't matter.
> Couldn't find any configrmation of this in the docs :(
> Thanks
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EMAIL PROTECTED]
> -- +39-041-5907073 ph
> -- +39-041-5907472 fax
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73643&t=73613
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-07 Thread dre
""juniper""  wrote in message ...
> Can anyone recommend a good book for the BGP exam

I personally despise Halabi's "authortative, the BGP-bible" IRA
book.  It is awful.  It is the sole reason nobody understands BGP.
It's confusing, boring, and downright awful to read and understand
such simple concepts.

I passed the Cisco BGP exam (took the beta), and I did not even
open Halabi or Stewart (I do like Stewart, but for this exam, his
information is not really on-topic).

Normally, I'd say read the RFC's, but they are also not going to
help you on this exam.

I used
a) the outline provided by Cisco
b) Jeff Doyle's TCP/IP Routing Volume II (first 318 pages)

Jeff Doyle is the master of routing protocols...this misconception
that Volume II was not as good as Volume I reminds me of 14
year old pimply-faced kids arguing about Star Wars vs. Empire
or Matrix 1 vs. Matrix: Reloaded.  These are all good movies...
however, Star Wars: Episode I and II are more remniscient of
HalabiIMO.

-dre




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73570&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-07 Thread Manuel Rojas
Avi Freedmans BGP presentations are a good source to read but I'd try to
read Routing TCP/IP vol II first and then read the presentations to help
strenghten your understanding of BGP.

I don't believe Freedmans presentations are as detailed as the exam
would like, but if I am wrong then please let me know and send a url
where we can all go and review them.


On Wed, 2003-08-06 at 09:14, Nakul Malik wrote:
> I dont think i agree with you. I really liked Sam Halabi's OSPF Design
Guide
> and his BGP Case studies. I admit they can be a bit daunting the first time
> around, but then they are not meant to be Exam guides.In fact, i really
like
> the writing style and find myself wishing there were more docs written in
> the same style. I am not against authors who explain technical subjects by
> giving anologies to football games and mountain climbing and the like, bu
it
> really starts to bug you when you are sitting in your office, up for 2 days
> in a row trying to solve a complicated problem and you have to read about
> how  classes in C++ are like flour or some stupid anology refering to a
> fishing trip. I myself prefer the direct and to the point approach, no
> frills for me.
> Another excellent resource for BGP, and well written are Avi Freedman's BGP
> presentations.
> Just my opinion though.
> 
> -Nakul
> 
> 
> ""juniper""  wrote in message
> news:[EMAIL PROTECTED]
> > Hi,
> > Can anyone recommend a good book for the BGP exam
> > Mark
> > **Please support GroupStudy by purchasing from the GroupStudy Store:
> > http://shop.groupstudy.com
> > FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73619&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco 806 ? [7:73613]

2003-08-07 Thread [EMAIL PROTECTED]
Use SNTP?

http://www.cisco.com/univercd/cc/td/doc/product/software/ios121/121cgcr/fun_
r/frprt3/frd3003.htm#1020770


sntp server
To configure a Cisco 1003, Cisco 1004, Cisco 1005, Cisco 1600, Cisco 1720,
Cisco 1750, or Cisco 800 router to use the Simple Network Time Protocol
(SNTP) to request and accept Network Time Protocol (NTP) traffic from a
stratum 1 time server, use the sntp server global configuration command. The
no form of the command removes a server from the list of NTP servers. 

sntp server {address | hostname} [version number]
no sntp server {address | hostname}
Syntax Description 

address 
 IP address of the time server. 
 
hostname 
 Host name of the time server. 
 
version number 
 (Optional) Version of NTP to use. The default is 1. 
 


Defaults 

The router does not accept SNTP traffic from a time server. 

Command Modes 

Global configuration 

Command History 

Release  Modification  
11.2 
 This command was introduced. 
 


Usage Guidelines 

SNTP is a compact, client-only version of the NTP. SNMP can only receive the
time from NTP servers; it cannot be used to provide time services to other
systems. 

SNTP typically provides time within 100 milliseconds of the accurate time,
but it does not provide the complex filtering and statistical mechanisms of
NTP. In addition, SNTP does not authenticate traffic, although you can
configure extended access lists to provide some protection. 

Enter this command once for each NTP server. 

You must configure the router with either this command or the sntp broadcast
client command in order enable SNTP. 

SNTP time servers should operate only at the root (stratum 1) of the subnet,
and then only in configurations where no other source of synchronization
other than a reliable radio or modem time service is available. A stratum 2
server cannot be used as an SNTP time server. The use of SNTP rather than
NTP in primary servers should be carefully considered. 

Examples 

The following example enables the router to request and accept NTP packets
from the server at 172.21.118.9 and shows sample show sntp command output: 

Router(config)# sntp server 172.21.118.9 
Router(config)# end 
Router# 
%SYS-5-CONFIG: Configured from console by console 
Router# show sntp 
SNTP server Stratum Version Last Receive 
172.21.118.9 5 3 00:01:02Synced 
Related Commands 

Command  Description  
show sntp 
 Shows information about the SNTP on a Cisco 1003, Cisco 1004, Cisco 1005,
Cisco 1600, Cisco 1720, or Cisco 1750 router. 
 
sntp broadcast client 
 Configures a Cisco 1003, Cisco 1004, Cisco 1005, Cisco 1600, Cisco 1720, or
Cisco 1750 router to use the SNTP to accept NTP traffic from any broadcast
server. 
 



Martijn 


-Oorspronkelijk bericht-
Van: Herold Heiko [mailto:[EMAIL PROTECTED]
Verzonden: donderdag 7 augustus 2003 11:04
Aan: Jansen, M; [EMAIL PROTECTED]
Onderwerp: RE: Cisco 806 ? [7:73613]


No, it is unrelated - I just remembered the 1000 series being limited
(regarding at least NTP) and feared the 800 series, being the replacement
for the 1000 series, could have the same limitations.

Heiko

-- 
-- PREVINET S.p.A. www.previnet.it
-- Heiko Herold [EMAIL PROTECTED]
-- +39-041-5907073 ph
-- +39-041-5907472 fax

> -Original Message-
> From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> Sent: Thursday, August 07, 2003 10:51 AM
> To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> Subject: RE: Cisco 806 ? [7:73613]
> 
> 
> What about NTP? Should it read NAT?
> 
> Martijn 
> 
> -Oorspronkelijk bericht-
> Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> Verzonden: donderdag 7 augustus 2003 8:10
> Aan: [EMAIL PROTECTED]
> Onderwerp: RE: Cisco 806 ? [7:73613]
> 
> 
> Thanks!
> I just wanted to double check - some hears ago I got burnt in 
> a similar
> situation, with a 1003 and (no) NTP if I remember correctly.
> Heiko
> 
> -- 
> -- PREVINET S.p.A. www.previnet.it
> -- Heiko Herold [EMAIL PROTECTED]
> -- +39-041-5907073 ph
> -- +39-041-5907472 fax
> 
> > -Original Message-
> > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]
> > Sent: Thursday, August 07, 2003 8:04 AM
> > To: [EMAIL PROTECTED]; [EMAIL PROTECTED]
> > Subject: RE: Cisco 806 ? [7:73613]
> > 
> > 
> > It does. It is IOS. Just do your CLI thing.
> > 
> > Martijn 
> > 
> > -Oorspronkelijk bericht-
> > Van: Herold Heiko [mailto:[EMAIL PROTECTED]
> > Verzonden: woensdag 6 augustus 2003 17:21
> > Aan: [EMAIL PROTECTED]
> > Onderwerp: Cisco 806 ? [7:73613]
> > 
> > 
> > Hi,
> > 
> > for some tests I need something cheap to play with, having 2 
> > eth, vpn and
> > (static) nat capability. Could anybody confirm if a 806 with 
> > a "IP/FW PLUS
> > 3DES" image does support IPSEC and NAT at the same time ?
> > From the docs 

Re: Cisco BGP Exam [7:73516]

2003-08-07 Thread John Neiberger
 juniper 8/5/03 8:32:50 AM >>>
>Hi,
>Can anyone recommend a good book for the BGP exam
>Mark

My two personal favorite BGP books are:

Internet Routing Architectures, 2nd Edition, by Halabi

BGP4: Interdomain Routing in the Internet, by Stewart

If you have a subscription to CertificationZone, Howard has some wonderful
BGP tutorials that I referred to often when studying for the CCIE written
some time ago. [Disclaimer: I have done a minor amount of work for CZ.]

Oh, I almost for the BGP Command Reference by Cisco Press. Excellent book,
and well worth your time and money.

HTH,
John




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73523&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco BGP Exam [7:73516]

2003-08-06 Thread Mwalie W
Hello,

I did BGP beta and I found that Internet Routing Architectures does not
cover everything required on the exam, especially if one does not have
hands-on experience. This is the reason I suffered, despite passing the exam
(to my surprise).

You can also supplement with Cisco ISP Essentials (Cisco Press) as well as
Cisco's website. And, of course, John Stewart's book as mentioned. Internet
Routing Architectures was the main book, but I also found it difficult in
some cases. Cisco ISP Essentials is very nice, and make sure you absorb it
completely.

What I can say is this: If you absorb completely "Internet Routing
Architectures" and "Cisco ISP Essentials" and then make sure that you get
right every question that that you are able to get right, you will pass the
exam.

I think there is no single best book for this exam.

Good Luck

Mwalie
CCDP, CCNA


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73578&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco BGP Exam [7:73516]

2003-08-05 Thread Pintens, Koen
I agree with Dre
I also got both books and Jeff Doyle's is so much easier to read and
understand then Halabi's

Koen Pinten
Network Engineer

CCNP CCDP MCSE MCSA MCDBA

> -Original Message-
> From: dre [SMTP:[EMAIL PROTECTED]
> Sent: Wednesday, August 06, 2003 10:55 AM
> To:   [EMAIL PROTECTED]
> Subject:  Re: Cisco BGP Exam [7:73516]
> 
> ""juniper""  wrote in message ...
> > Can anyone recommend a good book for the BGP exam
> 
> I personally despise Halabi's "authortative, the BGP-bible" IRA
> book.  It is awful.  It is the sole reason nobody understands BGP.
> It's confusing, boring, and downright awful to read and understand
> such simple concepts.
> 
> I passed the Cisco BGP exam (took the beta), and I did not even
> open Halabi or Stewart (I do like Stewart, but for this exam, his
> information is not really on-topic).
> 
> Normally, I'd say read the RFC's, but they are also not going to
> help you on this exam.
> 
> I used
> a) the outline provided by Cisco
> b) Jeff Doyle's TCP/IP Routing Volume II (first 318 pages)
> 
> Jeff Doyle is the master of routing protocols...this misconception
> that Volume II was not as good as Volume I reminds me of 14
> year old pimply-faced kids arguing about Star Wars vs. Empire
> or Matrix 1 vs. Matrix: Reloaded.  These are all good movies...
> however, Star Wars: Episode I and II are more remniscient of
> HalabiIMO.
> 
> -dre
> **Please support GroupStudy by purchasing from the GroupStudy Store:
> http://shop.groupstudy.com
> FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html


**
This electronic message together with any attachments is confidential. If
you receive it in error: (i) you must not use, disclose, copy or retain
it; (ii) please contact the sender immediately by reply email and then
delete the emails. Views expressed in this email may not be those of the
Airways Corporation of New Zealand Limited
**




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73573&t=73516
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Security Advisory: Cisco IOS Interface Blocked by [7:73474]

2003-08-04 Thread Eyabane Patasse
Piyush,
the answer to your question is YES. you better implement this fix before 
your router gets attacked. the access list implementation consists in 
blocking protocols 53(swipe), 55 (IP Mobility), 77 (Sun ND), and 103 (PIM) 
from cloging up you interface queues. the advisory was pretty straight 
forward.


>From: "Mr piyush shah" 
>Reply-To: "Mr piyush shah" 
>To: [EMAIL PROTECTED]
>Subject: Cisco Security Advisory: Cisco IOS Interface Blocked by IPv4 
>[7:73470]
>Date: Mon, 4 Aug 2003 11:50:57 GMT
>
>Dear all
>Recently there was an article on Cisco Security
>Advisory which stated that all Cisco routers/switches
>having IOS as their operating system,their Interfaces
>will be blocked by IPv4 Packets.In this regard,i have
>a querry.
>Is it that all the router having IOS will be blocked
>or certain specific IOS ?
>Also they have given fixes at the bottom of that
>article which states about access-list,do one need to
>go ahead with implementation of these Acess-lists?
>Kindly help.
>Thanks in advance.
>
>  Piyush
>
>
>
>
>Send free SMS using the Yahoo! Messenger. Go to
>http://in.mobile.yahoo.com/new/pc/
>**Please support GroupStudy by purchasing from the GroupStudy Store:
>http://shop.groupstudy.com
>FAQ, list archives, and subscription info: 
>http://www.groupstudy.com/list/cisco.html

_
The new MSN 8: advanced junk mail protection and 2 months FREE*  
http://join.msn.com/?page=features/junkmail




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73474&t=73474
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


RE: Cisco Security Advisory: Cisco IOS Interface Block [7:73471]

2003-08-04 Thread alaerte Vidali
Hi,

As stated on Cisco page, specific IP packet could block the interface. 

You can use access-lists to block those packets or upgrade the IOS.


All vulnerable IOS are in the list:

http://www.cisco.com/warp/public/707/cisco-sa-20030717-blocked.shtml

Regards


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73472&t=73471
--
**Please support GroupStudy by purchasing from the GroupStudy Store:
http://shop.groupstudy.com
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html


Re: Cisco Routers and Switches [7:72852]

2003-07-29 Thread Paul H
Survey says Ebay. We built our home lab for way under any of the other
packages (includes VOIP). 10 routers and 2 switches with remote access to do
labs from anywhere.

Good luck and happy shopping,
NT2

 wrote in message
news:[EMAIL PROTECTED]
> Hi there,
>
> Can you please advise any good resource to buy used/refurbished/cheap
Cisco
> gear?
>
> Thanks.
> Bharat




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73179&t=72852
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco ACS [7:73107]

2003-07-29 Thread [EMAIL PROTECTED]
Should be easier even with cco guest login.
Try the cisco ftp site, ftp.cisco.com or was it ftp-eng.cisco.com 

Martijn 

-Oorspronkelijk bericht-
Van: Shane Stockman [mailto:[EMAIL PROTECTED]
Verzonden: maandag 28 juli 2003 17:08
Aan: [EMAIL PROTECTED]
Onderwerp: Cisco ACS [7:73107]


Does anyone have a link as to where  can I download an evaluation of Cisco 
ACS 3.2 on Cisco's website ?

Thanks

_
Rain coat or t-shirt?  Find out with MSN Weather 
http://www.msn.co.za/weather/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=73149&t=73107
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco menu logins [7:72931]

2003-07-24 Thread Maximus
SOCOM BROTHER!!!

{-)
- Original Message - 
From: "Tom Martin" 
To: 
Sent: Thursday, July 24, 2003 11:48 AM
Subject: Re: Cisco menu logins [7:72931]


> But I should keep the "All your base are belong to us" line in there??? :)
>
> It's a lab router!
>
> - Tom
>
> Reimer, Fred wrote:
>
> >If you use this in production you probably don't want to put "Welcome" in
> >there.  Plenty of note in Cisco course material on why not...
> >
> >Fred Reimer - CCNA
> >
> >
> >Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
> >Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050
> >
> >
> >NOTICE; This email contains confidential or proprietary information which
> >may be legally privileged. It is intended only for the named
recipient(s).
> >If an addressing or transmission error has misdirected the email, please
> >notify the author by replying to this message. If you are not the named
> >recipient, you are not authorized to use, disclose, distribute, copy,
print
> >or rely on this email, and should immediately delete it from your
computer.
> >
> >
> >-Original Message-
> >From: Tom Martin [mailto:[EMAIL PROTECTED]
> >Sent: Thursday, July 24, 2003 9:47 AM
> >To: [EMAIL PROTECTED]
> >Subject: Cisco menu logins [7:72931]
> >
> >A couple of days ago I came across a new (to me anyway) Cisco feature,
> >menus. So naturally I configured a router with menus to see how it
> >works... Everything seems to work fine, except the login option.
> >
> >When Telneting to this router, I use the username and password as
> >specified within the configuration file (attached in its entirety at the
> >end of this post). Note: The "login authentication default" command
> >isn't under the line configuration because it's default. After logging
> >in the menu immediately appears as expected.
> >
> >All of the menu options work, but when I choose option 3 (which requires
> >a second authentication), the command never runs! Here is an example
> >where I re-authenticate properly:
> >
> >... text omitted ...
> >9  Sign off
> >
> > Enter your selection, HUMAN: 3
> >Login required
> >
> >User Access Verification
> >
> >Username: fry
> >Password:
> >
> >--More--
> >Welcome to my Cisco router
> >  All your base are belong to us.
> >... text omitted ...
> >
> >Here is the output when I do not authenticate properly
> >
> >... text omitted ...
> >9  Sign off
> >
> > Enter your selection, HUMAN: 3
> >Login required
> >
> >User Access Verification
> >
> >Username: alsdkfj;alsdkfj
> >Password:
> >
> >% Authentication failed.
> >
> >--More--
> >Welcome to my Cisco router
> >  All your base are belong to us.
> >... text omitted ...
> >
> >Has anyone ever successfully configured menus with a secondary
> >authentication? Any ideas???
> >
> >- Tom
> >
> >Full router configuration
> >-
> >Current configuration : 1593 bytes
> >!
> >version 12.2
> >service timestamps debug datetime msec
> >service timestamps log datetime msec
> >no service password-encryption
> >!
> >hostname Rtr-3
> >!
> >logging queue-limit 100
> >enable secret 5 $1$F30N$HeewMLSkB0BkSZWKFr9BP1
> >!
> >username fry password 0 guy
> >aaa new-model
> >!
> >!
> >aaa authentication login default local
> >aaa session-id common
> >ip subnet-zero
> >!
> >!
> >no ip domain lookup
> >!
> >mpls ldp logging neighbor-changes
> >!
> >!
> >!
> >!
> >!
> >!
> >!
> >!
> >!
> >no voice hpi capture buffer
> >no voice hpi capture destination
> >!
> >!
> >mta receive maximum-recipients 0
> >!
> >!
> >!
> >!
> >interface Loopback0
> >  ip address 1.0.0.1 255.255.255.0
> >!
> >interface FastEthernet0/0
> >  no ip address
> >  shutdown
> >  duplex auto
> >  speed auto
> >!
> >interface Serial0/0
> >  no ip address
> >  shutdown
> >!
> >interface FastEthernet0/1
> >  ip 

RE: Cisco menu logins [7:72931]

2003-07-24 Thread Reimer, Fred
If you use this in production you probably don't want to put "Welcome" in
there.  Plenty of note in Cisco course material on why not...

Fred Reimer - CCNA


Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050


NOTICE; This email contains confidential or proprietary information which
may be legally privileged. It is intended only for the named recipient(s).
If an addressing or transmission error has misdirected the email, please
notify the author by replying to this message. If you are not the named
recipient, you are not authorized to use, disclose, distribute, copy, print
or rely on this email, and should immediately delete it from your computer.


-Original Message-
From: Tom Martin [mailto:[EMAIL PROTECTED] 
Sent: Thursday, July 24, 2003 9:47 AM
To: [EMAIL PROTECTED]
Subject: Cisco menu logins [7:72931]

A couple of days ago I came across a new (to me anyway) Cisco feature, 
menus. So naturally I configured a router with menus to see how it 
works... Everything seems to work fine, except the login option.

When Telneting to this router, I use the username and password as 
specified within the configuration file (attached in its entirety at the 
end of this post). Note: The "login authentication default" command 
isn't under the line configuration because it's default. After logging 
in the menu immediately appears as expected.

All of the menu options work, but when I choose option 3 (which requires 
a second authentication), the command never runs! Here is an example 
where I re-authenticate properly:

... text omitted ...
9  Sign off

 Enter your selection, HUMAN: 3
Login required

User Access Verification

Username: fry
Password:

--More--
Welcome to my Cisco router
  All your base are belong to us.
... text omitted ...

Here is the output when I do not authenticate properly

... text omitted ...
9  Sign off

 Enter your selection, HUMAN: 3
Login required

User Access Verification

Username: alsdkfj;alsdkfj
Password:

% Authentication failed.

--More--
Welcome to my Cisco router
  All your base are belong to us.
... text omitted ...

Has anyone ever successfully configured menus with a secondary 
authentication? Any ideas???

- Tom

Full router configuration
-
Current configuration : 1593 bytes
!
version 12.2
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
!
hostname Rtr-3
!
logging queue-limit 100
enable secret 5 $1$F30N$HeewMLSkB0BkSZWKFr9BP1
!
username fry password 0 guy
aaa new-model
!
!
aaa authentication login default local
aaa session-id common
ip subnet-zero
!
!
no ip domain lookup
!
mpls ldp logging neighbor-changes
!
!
!
!
!
!
!
!
!
no voice hpi capture buffer
no voice hpi capture destination
!
!
mta receive maximum-recipients 0
!
!
!
!
interface Loopback0
  ip address 1.0.0.1 255.255.255.0
!
interface FastEthernet0/0
  no ip address
  shutdown
  duplex auto
  speed auto
!
interface Serial0/0
  no ip address
  shutdown
!
interface FastEthernet0/1
  ip address dhcp
  duplex auto
  speed auto
!
interface Serial0/1
  no ip address
  shutdown
!
ip http server
ip classless
!
!
!
!
menu TEST title ^C
 Welcome to my Cisco router
   All your base are belong to us.
^C
menu TEST prompt ^C Enter your selection, HUMAN: ^C
menu TEST text 1 Show IP routing stuff
menu TEST command 1 show ip route
menu TEST text 2 Show IP protocol info
menu TEST command 2 show ip protocol
menu TEST text 3 Show the time
menu TEST command 3 show clock
menu TEST options 3 login
menu TEST command bye menu-exit
menu TEST text 9 Sign off
menu TEST command 9 exit
menu TEST line-mode
!
!
radius-server authorization permit missing Service-Type
call rsvp-sync
!
!
mgcp profile default
!
dial-peer cor custom
!
!
!
!
line con 0
  logging synchronous
line aux 0
line vty 0 4
  autocommand  menu TEST
!
!
end




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72941&t=72931
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco menu logins [7:72931]

2003-07-24 Thread Tom Martin
But I should keep the "All your base are belong to us" line in there??? :)

It's a lab router!

- Tom

Reimer, Fred wrote:

>If you use this in production you probably don't want to put "Welcome" in
>there.  Plenty of note in Cisco course material on why not...
>
>Fred Reimer - CCNA
>
>
>Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338
>Phone: 404-847-5177  Cell: 770-490-3071  Pager: 888-260-2050
>
>
>NOTICE; This email contains confidential or proprietary information which
>may be legally privileged. It is intended only for the named recipient(s).
>If an addressing or transmission error has misdirected the email, please
>notify the author by replying to this message. If you are not the named
>recipient, you are not authorized to use, disclose, distribute, copy, print
>or rely on this email, and should immediately delete it from your computer.
>
>
>-Original Message-
>From: Tom Martin [mailto:[EMAIL PROTECTED] 
>Sent: Thursday, July 24, 2003 9:47 AM
>To: [EMAIL PROTECTED]
>Subject: Cisco menu logins [7:72931]
>
>A couple of days ago I came across a new (to me anyway) Cisco feature, 
>menus. So naturally I configured a router with menus to see how it 
>works... Everything seems to work fine, except the login option.
>
>When Telneting to this router, I use the username and password as 
>specified within the configuration file (attached in its entirety at the 
>end of this post). Note: The "login authentication default" command 
>isn't under the line configuration because it's default. After logging 
>in the menu immediately appears as expected.
>
>All of the menu options work, but when I choose option 3 (which requires 
>a second authentication), the command never runs! Here is an example 
>where I re-authenticate properly:
>
>... text omitted ...
>9  Sign off
>
> Enter your selection, HUMAN: 3
>Login required
>
>User Access Verification
>
>Username: fry
>Password:
>
>--More--
>Welcome to my Cisco router
>  All your base are belong to us.
>... text omitted ...
>
>Here is the output when I do not authenticate properly
>
>... text omitted ...
>9  Sign off
>
> Enter your selection, HUMAN: 3
>Login required
>
>User Access Verification
>
>Username: alsdkfj;alsdkfj
>Password:
>
>% Authentication failed.
>
>--More--
>Welcome to my Cisco router
>  All your base are belong to us.
>... text omitted ...
>
>Has anyone ever successfully configured menus with a secondary 
>authentication? Any ideas???
>
>- Tom
>
>Full router configuration
>-
>Current configuration : 1593 bytes
>!
>version 12.2
>service timestamps debug datetime msec
>service timestamps log datetime msec
>no service password-encryption
>!
>hostname Rtr-3
>!
>logging queue-limit 100
>enable secret 5 $1$F30N$HeewMLSkB0BkSZWKFr9BP1
>!
>username fry password 0 guy
>aaa new-model
>!
>!
>aaa authentication login default local
>aaa session-id common
>ip subnet-zero
>!
>!
>no ip domain lookup
>!
>mpls ldp logging neighbor-changes
>!
>!
>!
>!
>!
>!
>!
>!
>!
>no voice hpi capture buffer
>no voice hpi capture destination
>!
>!
>mta receive maximum-recipients 0
>!
>!
>!
>!
>interface Loopback0
>  ip address 1.0.0.1 255.255.255.0
>!
>interface FastEthernet0/0
>  no ip address
>  shutdown
>  duplex auto
>  speed auto
>!
>interface Serial0/0
>  no ip address
>  shutdown
>!
>interface FastEthernet0/1
>  ip address dhcp
>  duplex auto
>  speed auto
>!
>interface Serial0/1
>  no ip address
>  shutdown
>!
>ip http server
>ip classless
>!
>!
>!
>!
>menu TEST title ^C
> Welcome to my Cisco router
>   All your base are belong to us.
>^C
>menu TEST prompt ^C Enter your selection, HUMAN: ^C
>menu TEST text 1 Show IP routing stuff
>menu TEST command 1 show ip route
>menu TEST text 2 Show IP protocol info
>menu TEST command 2 show ip protocol
>menu TEST text 3 Show the time
>menu TEST command 3 show clock
>menu TEST options 3 login
>menu TEST command bye menu-exit
>menu TEST text 9 Sign off
>menu TEST command 9 exit
>menu TEST line-mode
>!
>!
>radius-server authorization permit missing Service-Type
>call rsvp-sync
>!
>!
>mgcp profile default
>!
>dial-peer cor custom
>!
>!
>!
>!
>line con 0
>  logging synchronous
>line aux 0
>line vty 0 4
>  autocommand  menu TEST
>!
>!
>end




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72942&t=72931
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco Routers and Switches [7:72852]

2003-07-24 Thread Thomas Salmen
ebay?

/thomas

> 
> 
> Hi there,
> 
> Can you please advise any good resource to buy 
> used/refurbished/cheap Cisco
> gear?
> 
> Thanks.
> Bharat




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72865&t=72852
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco Routers and Switches [7:72852]

2003-07-23 Thread Stevo
www.ebay.com

 wrote in message
news:[EMAIL PROTECTED]
> Hi there,
>
> Can you please advise any good resource to buy used/refurbished/cheap
Cisco
> gear?
>
> Thanks.
> Bharat




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72859&t=72852
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco 2621 & Window NLB...Slightly off topic [7:72496]

2003-07-22 Thread nettable_walker
This is a 10BASET hub ?

""Duncan Wallace""  wrote in message
news:[EMAIL PROTECTED]
> Quick question for the group.  I have a 2621, 1 of the FA ports connected
to
> a hub. from there, I have 2 servers running win2K's network load
balancing.
> Pretty simple config to cluster 2 web servers with a VIP and virtual mac
> based on that VIP. For the life of me, I cannot get one of the web servers
> to repond to requests...
>
> So, my question would be, has anyone deployed this before? And, run into
> problems because of the router ?
>
>
>
> Thanks,
>
> Duncan Wallace
> Sr. Systems Engineer
> Pacific Star Communications
> 15714 SW 72nd Ave.
> Portland, OR 97224
> Work:503-403-3000
> Cell:971-506-8164
> [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72755&t=72496
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: cisco IOS [7:72454]

2003-07-17 Thread Tom Martin
KW S,

You need to obtain Smartnet on the routers. Once you do you will get a 
CCO and download access. Contact your local Cisco partner for more 
information:

http://tools.cisco.com/WWChannels/LOCATR/jsp/partner_locator.jsp

- Tom

KW S wrote:
> Dear all
> 
> Does anyone know where I can download cisco IOS. I am not a cco member and
> therefore unable to access the cisco cco site.
> 
> I just bought 2 used cisco 2501 and I want to upgrade the IOS to a more up
> to date version. Does ver 12.0 works on a 2501 ? what is the requirement to
> run ios ver 12.0 ?
> 
> Regards, kws




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72491&t=72454
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re : Cisco security exams in great demand [7:72086]

2003-07-09 Thread Mr piyush shah
Hi all
I am planning to appear for CCSP EXAMS .May I request
people from Mumbai ,India to have off-line discussion
to have joint efforts.This will help us in sharing
idea ,study material etc.Interested people can email
me offline on [EMAIL PROTECTED] . 
Thanks in davance .
Piyush



Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72086&t=72086
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re : Cisco security exams in great demand [7:72087]

2003-07-09 Thread Mr piyush shah
Hi all
I am planning to appear for CCSP EXAMS .May I request
people from Mumbai ,India to have off-line discussion
to have joint efforts.This will help us in sharing
idea ,study material etc.Interested people can email
me offline on [EMAIL PROTECTED] . 
Thanks in davance .
Piyush



Send free SMS using the Yahoo! Messenger. Go to
http://in.mobile.yahoo.com/new/pc/




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72087&t=72087
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: cisco back to back cable [7:71992]

2003-07-08 Thread DeVoe, Charles (PKI)
Perhaps a copy of the configs would be helpful here.

-Original Message-
From: KW S [mailto:[EMAIL PROTECTED]
Sent: Monday, July 07, 2003 12:22 PM
To: [EMAIL PROTECTED]
Subject: cisco back to back cable [7:71992]


Dear All

I have a 2501 and 2505 and I am trying to set up a homelab..These 2 routers
come with a cable which is a DB60(DTE) and the other end is a DB60(DCE).This
is wat that is label on the cable. Anyway, I try to connect this cable to
the serial interface of the 2 routers...and both the routers are showing
serial is down and line protocol is down.

I guess I have used the wrong cable...or maybe I have missed out something.

Please comment..

Regards, kws




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72038&t=71992
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco catalyst 3548 and Radius [7:71991]

2003-07-08 Thread Andrew Larkins
those commands are only there after you enable aaa new model.

-Original Message-
From: Robert Perez [mailto:[EMAIL PROTECTED]
Sent: 07 July 2003 18:03
To: [EMAIL PROTECTED]
Subject: Cisco catalyst 3548 and Radius [7:71991]


Hi all,

I am configuring Radius on a cat 3548 and I do not have the global config
"radius" command available.  Anyone know what the commands ought to be to
create a server, key, etc.. Normally it is Radius-server key, radius-server
host..  Can't figure it out..  

I have IOS  12.0(5.2)XU




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72016&t=71991
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco catalyst 3548 and Radius [7:71991]

2003-07-07 Thread Tom Martin
Robert,

Kind of annoying isn't it? I looked a while ago and the short answer was 
it's not there and you can't do it. Some quick checking on Cisco's site 
showed that they might finally have released it in newer code though:

http://www.cisco.com/en/US/partner/products/hw/switches/ps637/prod_release_note09186a00800c8102.html#xtocid17

The release notes are for 12.0(5)WC5a, which might not even be the 
latest. Perhaps you just need to update your software?

- Tom

Robert Perez wrote:
> Hi all,
> 
> I am configuring Radius on a cat 3548 and I do not have the global config
> "radius" command available.  Anyone know what the commands ought to be to
> create a server, key, etc.. Normally it is Radius-server key, radius-server
> host..  Can't figure it out..  
> 
> I have IOS  12.0(5.2)XU




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72009&t=71991
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: cisco back to back cable [7:71992]

2003-07-07 Thread Brian
You need to set clock on one, I leave it as an exercise to the poster to
figure out which.


Brian

The path to a desireable destination
is often more difficult than the path to stay where you are.

On Mon, 7 Jul 2003, KW S wrote:

> Dear All
>
> I have a 2501 and 2505 and I am trying to set up a homelab..These 2 routers
> come with a cable which is a DB60(DTE) and the other end is a
DB60(DCE).This
> is wat that is label on the cable. Anyway, I try to connect this cable to
> the serial interface of the 2 routers...and both the routers are showing
> serial is down and line protocol is down.
>
> I guess I have used the wrong cable...or maybe I have missed out something.
>
> Please comment..
>
> Regards, kws




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=72000&t=71992
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: cisco back to back cable [7:71992]

2003-07-07 Thread Munoz, Mike
Did you set up the clock rate on the DCE side?  I'm assuming you have HDLC
encapsulation on both ends.

Here is a link that you can refer to on the command:
http://www.cisco.com/en/US/partner/products/sw/iosswrel/ps1831/products_comm
and_reference_chapter09186a00800880c2.html#1019126
Watch the wrap.

Good luck on your studies.
Mike

-Original Message-
From: KW S [mailto:[EMAIL PROTECTED]
Sent: Monday, July 07, 2003 9:22 AM
To: [EMAIL PROTECTED]
Subject: cisco back to back cable [7:71992]


Dear All

I have a 2501 and 2505 and I am trying to set up a homelab..These 2 routers
come with a cable which is a DB60(DTE) and the other end is a DB60(DCE).This
is wat that is label on the cable. Anyway, I try to connect this cable to
the serial interface of the 2 routers...and both the routers are showing
serial is down and line protocol is down.

I guess I have used the wrong cable...or maybe I have missed out something.

Please comment..

Regards, kws




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71998&t=71992
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco Training [7:71811]

2003-07-05 Thread Bikespace
I can see that point of view too, although it's an expensive 12 days, it may
be the only way if you're that busy.
When my employer needed CCNP a few years ago, I negotiated study leave
rather than going on the courses, so I could sit at home with the books and
a bunch of routers. They save a couple of grand per week.
I think it depends on what level you're at. If you've done a fair bit of
hands on anyway, then the courses can waste a lot of time going over old
ground.

 I prefer the book and a bit of peace and quiet with the mobile phone turned
off. Luckily my insomnia gives me a few hours after my family go to bed. If
your family are still at home during the day, study leave may not be a good
thing.
You could always leave the book in the bathroom and do it bit by bit.
Careful if you read for too long though you can lose the use of your legs
completely :-)

Horses for courses I suppose.

Good Luck anyway

Bikespace

""Amazing""  wrote in message
news:[EMAIL PROTECTED]
> if you use the bootcamp training with one thing in mind -- passing the
> tests -- not learning, then you will get your money's worth.  people
> criticize this type of training but for me it was a way to take 12 days
away
> from all other distractions, study and pass the four exams.  no i am not a
> "paper" cert, and had five years hands-on job experience prior to trying
to
> pass any tests.  i also just passed the CCNP-Recert test last week.
>
> i used ccprep and it was worth every penny (http://www.ccprep.com)
>
>
> ""John Brandis""  wrote in message
> news:[EMAIL PROTECTED]
> > Hi,
> >
> > Any one ever been to one of these 5 day training places for various CCNP
> > exams ? Are they any good, or am I just better of reading the book again
> and
> > working on the labs with my own gear (yes I have quite a few routers
here,
> > but never the time)
> >
> > I am on my quest for CCNP then on to CCIE, however between work and
being
> a
> > dad, I just never get the time any more
> >
> > Thanks for your feedback
> >
> >
> > **
> >
> > This email message (and attachments) may contain information that is
> > confidential to Solution 6. If you are not the intended recipient you
> cannot
> > use, distribute or copy the message or attachments.  In such a case,
> please
> > notify the sender by return email immediately and erase all copies of
the
> > message and attachments.  Opinions, conclusions and other information in
> > this message and attachments that do not relate to the official business
> of
> > Solution 6 are neither given nor endorsed by it.
> >
> > *




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71936&t=71811
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco Training [7:71811]

2003-07-04 Thread Amazing
if you use the bootcamp training with one thing in mind -- passing the
tests -- not learning, then you will get your money's worth.  people
criticize this type of training but for me it was a way to take 12 days away
from all other distractions, study and pass the four exams.  no i am not a
"paper" cert, and had five years hands-on job experience prior to trying to
pass any tests.  i also just passed the CCNP-Recert test last week.

i used ccprep and it was worth every penny (http://www.ccprep.com)


""John Brandis""  wrote in message
news:[EMAIL PROTECTED]
> Hi,
>
> Any one ever been to one of these 5 day training places for various CCNP
> exams ? Are they any good, or am I just better of reading the book again
and
> working on the labs with my own gear (yes I have quite a few routers here,
> but never the time)
>
> I am on my quest for CCNP then on to CCIE, however between work and being
a
> dad, I just never get the time any more
>
> Thanks for your feedback
>
>
> **
>
> This email message (and attachments) may contain information that is
> confidential to Solution 6. If you are not the intended recipient you
cannot
> use, distribute or copy the message or attachments.  In such a case,
please
> notify the sender by return email immediately and erase all copies of the
> message and attachments.  Opinions, conclusions and other information in
> this message and attachments that do not relate to the official business
of
> Solution 6 are neither given nor endorsed by it.
>
> *




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71914&t=71811
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco Routers and RSA secureid [7:71715]

2003-07-04 Thread Kim Graham
Agreed

We have it functioning in a production environment currently.  Basically ,
point your devices to the CSACS and then point the CSACS to the Secure ID
server.

It is a nice feature but can take a bit of patience at first.  Not everyone
likes to carry a fob around with them to authenticate.  So be prepared to
have some users with long faces.

Kim


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71923&t=71715
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco Routers and RSA secureid [7:71715]

2003-07-04 Thread Scott M. Trieste
Robert,

You'll need both CiscoSecure ACS and RSA Secure ID (Server&Agent).

I am working with it on a similar project and it works perfectly.  Please
feel free to email me with any questions.

Regards,

-Scott

""Robert Perez""  wrote in message
news:[EMAIL PROTECTED]
> Anyone know if I Can I use RSA SecureID FOBS to authenticate access to a
> Router versus using tacacs+ to do the authentication??
>
> So basically the user tries to Telnet to a router to do config changes.  I
> want their ID to be auth'd against an RSA server.
>
>
> |
>  ---+
> | Bob Perez
> | Telecom Administrator
> | InterCept, Inc.
> | [EMAIL PROTECTED]  |
> | **Cisco CCNP, CCDP, CSPFA** |
>  -+
> | Phone  302.326.0700 x4242   |
> | Cell   302.420.6883 |
>  ---+- 
> |




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71908&t=71715
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco Training [7:71811]

2003-07-03 Thread Junoguy
I do agree with you on this however the I was referring to the "boot
camp" courses.  Had I taken all the courses individually that I took at
boot camp I would have gained a lot more from them.  During boot camp
you only learn the very minimum needed to get you throught the exams.
If you have the option to take the courses individually vs. taking the
boot camp, I would strongly suggest the individual courses.


Mario






-Original Message-
From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] 
Sent: Thursday, July 03, 2003 4:26 PM
To: [EMAIL PROTECTED]
Subject: RE: Cisco Training [7:71811]


I have to disagree with the previous answers.  I took the BSCI class
November 2002.  It was great.  Perhaps my experience level was lower but
I really learned a lot and the instructor was quite knowledgable and a
good teacher to boot.  I should have taken the test within a few weeks
of coming back from the class but I got side tracked on a project.  When
I hunkered down last month to prepare the class came back to me.  Also
this place used the Cisco books but supplemented them with their own
labs.  I was very pleased. I will agree that the classes are quite
expensive, but training is one of the reasons I work where I do.  I'm
taking another class this
month.   If it's provided by your employer jump on the chance.

David




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71870&t=71811
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco Training [7:71811]

2003-07-03 Thread David Vital
I have to disagree with the previous answers.  I took the BSCI class
November 2002.  It was great.  Perhaps my experience level was lower but I
really learned a lot and the instructor was quite knowledgable and a good
teacher to boot.  I should have taken the test within a few weeks of coming
back from the class but I got side tracked on a project.  When I hunkered
down last month to prepare the class came back to me.  Also this place used
the Cisco books but supplemented them with their own labs.  I was very
pleased. I will agree that the classes are quite expensive, but training is
one of the reasons I work where I do.  I'm taking another class this
month.   If it's provided by your employer jump on the chance.

David


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71853&t=71811
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco Training [7:71811]

2003-07-03 Thread Bikespace
In my opinion the courses are a quick cram if you haven't got the time. I
have used both. I did the switching course a few years ago, but had read the
book already. I got to Thursday before I learnt a single thing.
If you read the book and ask for clarification of things you don't
understand (using Groupstudy) then I think you come out the other side
knowing more.
If you want a week off work at a leisurely pace with more breaks than you've
had in the last two years and an early knock off time, then dig deep and get
on a course.
I may be being a little unfair there, but it doesn't take long to get
through most of the CCNP books if you allocate an hour or two a day, and if
you get one of the poorer instructors that's all he'll do anyway - read the
notes out to you. I always read through and don't go on to the next page
until I've understood the current one. Skim reading gets you nowhere. As I'm
going along I write down the bits that actually need to be learnt parrot
fashion (things like administrative distances/types of switching etc), and
by the end of it, I've understood all the topics and I've just got a cram
sheet to study.
Won't work for everyone, but it's one method.
Some lads in our office will read the book 5 times understanding a little
more each time. Doesn't work for me - I can read through 5 pages without
actually taking in anything because I'm still getting my head around the
previous topic.

My two penneth anyway.
Use your money on more lab kit.

Bikespace




""John Brandis""  wrote in message
news:[EMAIL PROTECTED]
> Hi,
>
> Any one ever been to one of these 5 day training places for various CCNP
> exams ? Are they any good, or am I just better of reading the book again
and
> working on the labs with my own gear (yes I have quite a few routers here,
> but never the time)
>
> I am on my quest for CCNP then on to CCIE, however between work and being
a
> dad, I just never get the time any more
>
> Thanks for your feedback
>
>
> **
>
> This email message (and attachments) may contain information that is
> confidential to Solution 6. If you are not the intended recipient you
cannot
> use, distribute or copy the message or attachments.  In such a case,
please
> notify the sender by return email immediately and erase all copies of the
> message and attachments.  Opinions, conclusions and other information in
> this message and attachments that do not relate to the official business
of
> Solution 6 are neither given nor endorsed by it.
>
> *




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71835&t=71811
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco Training [7:71811]

2003-07-03 Thread [EMAIL PROTECTED]
I have to agree.  I took the CCNP boot camp and although I was happy that I
passed the CCNP afterwards, I was very dissapointed with the course and the
knowledge I gained from it.  The course gives you just enough to get by the
exam. If I had to do it again I certainly would not have gone through the
boot camp.  I had a hard time relating the material I learn in class to real
world issue.  The course material was good for some referencing but not to
get you through real-world issue.  That is were the months or year(s) of
hands-on comes into play.  Whatever you decide to do try to get your company
to pay for it because it is not cheap.  If they dont...well atleast you will
have a tax right-off.  Good luck.   




Thanks, 

Mario Puras 
SoluNet Technical Support
Mailto: [EMAIL PROTECTED]
Direct: (321) 309-1410  
888.449.5766 (USA) / 888.SOLUNET (Canada) 



-Original Message-
From: rbx10 Defcom [mailto:[EMAIL PROTECTED]
Sent: Thursday, July 03, 2003 10:31 AM
To: [EMAIL PROTECTED]
Subject: RE: Cisco Training [7:71811]


The 5 day classes is call a bootcamp. They cram everything. Not a good idea
if you want to be a good cisco engineer.
I pass the CCNP by reading the books and taking a regular class, and messing
with some lab routers at my job.
My company paid for it. Try to get your company to pay it if possible.

By reading the Cisco press books (comes in a bundle of 4), and exam crams,
you'll be fine.

Take the time to read the materials. You'll be better off.

rbx10
ccie-wishman




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71834&t=71811
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco Training [7:71811]

2003-07-03 Thread rbx10 Defcom
The 5 day classes is call a bootcamp. They cram everything. Not a good idea
if you want to be a good cisco engineer.
I pass the CCNP by reading the books and taking a regular class, and messing
with some lab routers at my job.
My company paid for it. Try to get your company to pay it if possible.

By reading the Cisco press books (comes in a bundle of 4), and exam crams,
you'll be fine.

Take the time to read the materials. You'll be better off.

rbx10
ccie-wishman


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71816&t=71811
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco Training [7:71811]

2003-07-02 Thread Mwalie W
Hi,

You will succeed through self-study; I am now a CCDP through self-study and
it has taken me some time :)

I would say that those 5-day courses are far too expensive, especially now
that you have the equipment.

Unless you are in hurry to get the CCNP; if you are not, just study one
chapter per day. This is possible (one chapter per day), though for routing
(BSCI), it may take longer if you are completely new to those routing
protocols.

Honestly, there is no need to spend all the money on those 5-day courses,
according to me. I do not have any experience with networking and I have
steadily studied until I am now a CCDP, sucessfully doing 6 exams, though I
had to do Cisco Internetwork Design (CID 640-025) twice.

Also, when you buy your own materials, they remain with you after the tests.
Okay, self-study may be the hard way to acquire the knowledge, but by the
time you are ready for a test, you really feel you have got the
knowledgethis is the important thing to me.

Good Luck.

Mwalie


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71817&t=71811
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco and MED [7:69060]

2003-07-02 Thread Howard C. Berkowitz
>-
>  > From: John A. Kilpatrick [mailto:[EMAIL PROTECTED]
>>  Sent: Wednesday, May 14, 2003 5:35 AM
>>  To: [EMAIL PROTECTED]
>>  Subject: Cisco and MED [7:69060]
>>
>>
>>  One question I havewhy does Cisco refer to MED as
>>  "metric" all the time?
>>  I admittedly am new to BGP on Cisco (I've done it a bit on
>>  Junipers) but
>>  when you do a `show ip bgp` one of the columns is "metric",
>>  which appears to
>>  be MED, and when you do a route-map where you `set metric
>>  blah` it seems to
>  > set MED.  So in Cisco's use of BGP do they just call MED the "metric"?

It's really not so much Cisco versus Juniper as BGP-3 versus BGP-4, 
and later experience with BGP-4.

In BGP-3, the equivalent attribute was called "Inter-AS Metric."  The 
semantics were a little less worked out than in the first BGP-4 
specification. In general, the assumption was that it was an IGP 
metric redistributed into BGP.

When BGP-4 came out, the semantics were tightened so the attribute 
was for use with directly connected AS only (i.e., non-transitive) 
and with the restricted purpose of selecting among different exit 
points to the same AS (i.e., multi-exit discriminator).

With industry experience, however, there came to be recognized there 
were other applications for an adjacent-AS-only attribute, such as 
selecting among several directly peered AS at a multilateral exchange 
point. Hence, the knob to compare MED among several AS, with the 
constraint they all be adjacent, was defined. Avi Freedman did an 
excellent operational tutorial on this at the Denver NANOG -- I did 
the basic BGP tutorial and he did the intermediate.

I should mention that the IETF clarified, in some of the many, many 
drafts of the emerging RFC 1771 updates, some things that are more 
complex than a simple redistributed IGP metric -- how to treat the 
case of a missing MED: best or worst?  This resulted in another knob, 
since Cisco's default is the opposite of what the IETF finally 
decided later.

Things like BGP-deterministic-MED came into being to clarify more 
special cases of MED, and especially IGP metric redistribution, in 
reflectors and clusters. See RFC 3345.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71810&t=69060
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco Routers and RSA secureid [7:71715]

2003-07-02 Thread Scott M. Trieste
Robert,

You'll need both CiscoSecure ACS and RSA Secure ID (Server&Agent).

I am working with it on a similar project and it works perfectly.  Please
feel free to email me with any questions.

Regards,

-Scott

""Robert Perez""  wrote in message
news:[EMAIL PROTECTED]
> Anyone know if I Can I use RSA SecureID FOBS to authenticate access to a
> Router versus using tacacs+ to do the authentication??
>
> So basically the user tries to Telnet to a router to do config changes.  I
> want their ID to be auth'd against an RSA server.
>
>
> |
>  ---+
> | Bob Perez
> | Telecom Administrator
> | InterCept, Inc.
> | [EMAIL PROTECTED]  |
> | **Cisco CCNP, CCDP, CSPFA** |
>  -+
> | Phone  302.326.0700 x4242   |
> | Cell   302.420.6883 |
>  ---+- 
> |




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71806&t=71715
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: CISCO ATA-186 [7:71407]

2003-07-01 Thread - jvd
A while ago I looked up some info on the ATA. You need to configure a
gateway. This gateway acts as the CallAgent/CallManager. So your ATA will
contact the gateway when you want to make a call.

I therefore believe only one gateway is supported, and you will not be able
to be logged on to both networks.

Regards,
Janó


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71737&t=71407
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco VPN client [7:71690]

2003-07-01 Thread - jvd
I also once played with the VPN client. I read something that the VPN client
doesn't support broadcasts. This may not be your problem, but just something
to remember.

Regards,
Janó


Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71730&t=71690
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco VPN client [7:71690]

2003-07-01 Thread Erick B.
Do you have the Local LAN access option checked under
properties?

Erick

--- johnman johnman  wrote:
> I have a cisco vpn client  tunnel  from my computer
> to a PIX Firewall.  I 
> had set a pool of IP addresses in the PIX for all
> the remote vpn clients.   
> I would  like to Print to my local printer that is
> connected to my PC and I 
> cannot.
> 
> has  anybody got it working ?.
> 
>
_
> Tired of spam? Get advanced junk mail protection
> with MSN 8.  
> http://join.msn.com/?page=features/junkmail
[EMAIL PROTECTED]


__
Do you Yahoo!?
SBC Yahoo! DSL - Now only $29.95 per month!
http://sbc.yahoo.com




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71700&t=71690
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco frame-relay question [7:71500]

2003-06-29 Thread Mai Như Thành
I think frame-relay local-dlci is used for specifying which PVC should 
be used on a interface, or in other word tie a interface to a PVC, 
especially when using sub-interface. When using physical interface, you 
may use frame-relay map command or inverse-arp in case you have only one 
PVC for that interface
MNThC nh
Support Division
Vietnam Datacommunication Company (VDC)

Wilmes, Rusty wrote:

>It looks like it's used when LMI isn't available
>
>http://www.cisco.com/en/US/products/sw/iosswrel/ps5187/products_command_refe
>rence_chapter09186a008017cf53.html#1059567
>
>Note   The frame-relay local-dlci command is provided mainly to allow
>testing of the Frame Relay encapsulation in a setting where two servers are
>connected back-to-back. This command is not required in a live Frame Relay
>network.
>  
>

>-Original Message-
>From: Paresh Khatri
>To: [EMAIL PROTECTED]
>Sent: 6/26/2003 8:26 PM
>Subject: Cisco frame-relay question [7:71500]
>
>Hi all,
>
>What is the cisco "frame-relay local-dlci" command used for ? 
>
>Thanks in advance,
>Paresh.
-- 
MNThanh
Support Division, VDC1
292 Tay Son, Hanoi, Vietnam
Telephone: +84-4-5374165
Fax:   +84-4-5372781
Handphone: +84-91-3213801
Email: [EMAIL PROTECTED] / [EMAIL PROTECTED]




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71617&t=71500
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco frame-relay question [7:71500]

2003-06-28 Thread azhar soomro
This command is used to to set the source DLCI for use when LMI is not
supported. This command is mainly used for testing of frame-relay
encapsulation when two servers are connected back to back.
Thanks 
Azhar





Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71591&t=71500
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Cisco frame-relay question [7:71500]

2003-06-27 Thread Wilmes, Rusty
It looks like it's used when LMI isn't available

http://www.cisco.com/en/US/products/sw/iosswrel/ps5187/products_command_refe
rence_chapter09186a008017cf53.html#1059567

Note   The frame-relay local-dlci command is provided mainly to allow
testing of the Frame Relay encapsulation in a setting where two servers are
connected back-to-back. This command is not required in a live Frame Relay
network.

-Original Message-
From: Paresh Khatri
To: [EMAIL PROTECTED]
Sent: 6/26/2003 8:26 PM
Subject: Cisco frame-relay question [7:71500]

Hi all,

What is the cisco "frame-relay local-dlci" command used for ? 

Thanks in advance,
Paresh.




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71527&t=71500
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


RE: Fwd: Re: Cisco Store Su**ks Big time [7:71413]

2003-06-26 Thread J B
I'm Sorry I think I deleted the email address for reply
It should work by now


JBZsombor Papp wrote:
> 
> Well, since my "message to  was undeliverable"
> due to
> "error 550, mailbox unavailable", let me send it to
> groupstudy... although
> I am not quite sure if I want to help someone with a fake email
> address. :)
> 
> Thanks,
> 
> Zsombor
> 
> >Geez, you mean the CD that comes with the routers? I throw
> away at least
> >50 of them every year, so I can send you one free of charge.
> I'm not sure
> >what's the latest I can find though. Let me know if you are
> interested and
> >I'll look around.
> >
> >Thanks,
> >
> >Zsombor
> >
> >At 04:45 AM 6/26/2003 +, J B wrote:
> >>I ordered a Documentation CD from the Cisco Store more than 2
> months ago I'm
> >>still waiting.  After two months of emails back and forth
> they told the CD
> >>is back ordered.  I can believe Cisco service can be so bad.
> >>Is anyone out there willing to sell me a doc cd with a recent
> date.
> >>
> >>Thanks
> >>JB
> 
> 




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71460&t=71413
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Re: Cisco Store Su**ks Big time [7:71413]

2003-06-26 Thread Brian W.
I tried to reply to you directly, that was a nogo.  So, here it is,
http://cgi.ebay.com/ws/eBayISAPI.dll?ViewItem&item=3031476285&category=28034

Brian

- Original Message - 
From: "J B" 
To: 
Sent: Wednesday, June 25, 2003 9:45 PM
Subject: Cisco Store Su**ks Big time [7:71413]


> I ordered a Documentation CD from the Cisco Store more than 2 months ago
I'm
> still waiting.  After two months of emails back and forth they told the CD
> is back ordered.  I can believe Cisco service can be so bad.
> Is anyone out there willing to sell me a doc cd with a recent date.
>
> Thanks
> JB




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71423&t=71413
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


Fwd: Re: Cisco Store Su**ks Big time [7:71413]

2003-06-26 Thread Zsombor Papp
Well, since my "message to  was undeliverable" due to 
"error 550, mailbox unavailable", let me send it to groupstudy... although 
I am not quite sure if I want to help someone with a fake email address. :)

Thanks,

Zsombor

>Geez, you mean the CD that comes with the routers? I throw away at least 
>50 of them every year, so I can send you one free of charge. I'm not sure 
>what's the latest I can find though. Let me know if you are interested and 
>I'll look around.
>
>Thanks,
>
>Zsombor
>
>At 04:45 AM 6/26/2003 +, J B wrote:
>>I ordered a Documentation CD from the Cisco Store more than 2 months ago
I'm
>>still waiting.  After two months of emails back and forth they told the CD
>>is back ordered.  I can believe Cisco service can be so bad.
>>Is anyone out there willing to sell me a doc cd with a recent date.
>>
>>Thanks
>>JB




Message Posted at:
http://www.groupstudy.com/form/read.php?f=7&i=71441&t=71413
--
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]


  1   2   3   4   5   6   7   8   9   10   >