Re: [c-nsp] ME3400E - Shaping vlans?

2013-09-25 Thread Jeff Kell
On 9/25/2013 9:32 PM, CiscoNSP List wrote: Hi, Is it possible to shape vlans on the ME3400E? (i.e. Multiple vlans on a trunk port, shaping them at different speeds)? And to hop someone else's thread... isn't there some simple way of prioritizing a vlan over the others via CoS? It's

Re: iOS 7 update traffic

2013-09-23 Thread Jeff Kell
On 9/23/2013 9:36 PM, Joe Greco wrote: So then all the networks that have done $things to BitTorrent to demote it to second-rate traffic will suddenly have a bunch of very angry Apple fans whose downloads are mysteriously having issues. Just ask the Blizzard fans (World of Warcraft) about this

Re: iOS 7 update traffic

2013-09-19 Thread Jeff Kell
On 9/19/2013 5:29 PM, Warren Bailey wrote: So you understand things aren't always metro e.. That's what I was trying to say. I still have a coupler.. ;) Original message From: Fred Reimer frei...@freimer.org Actually, I started out with a 300 baud acoustic modem. You

Reducing unnecessary interference...

2013-09-15 Thread Jeff Kell
This is our first real production year on having wireless coverage in our residence halls. We had VERY limited availability before, typically some commons areas, but we finally obtained funding to go all-out. There have been some early complaints of weak spots or coverage holes. In

[c-nsp] Old mystery... receive vs transmit discards...

2013-09-10 Thread Jeff Kell
Over the years I've noticed the network monitors pointing out various of our lower-end Catalyst switches (29xx, 35xx, 37xx) reporting transmit discards or receive discards. Since we have some gig uplinks on some 10/100 switches, obviously some of this is to be expected. As time has gone by, we

[c-nsp] Small Catalysts, small buffers, drop preference ?

2013-09-03 Thread Jeff Kell
We have a fairly extensive access layer of smaller and mostly older Catalysts (2950s, 2960s) with building distribution 3550s/3560s as uplinks. We did some overhauls over the summer to get not only gig uplinks to the buildings, but gig uplinks to each access layer switch within the building.

[c-nsp] Odd ntp problem...

2013-08-30 Thread Jeff Kell
Ran across a strange one with NTP [again, had seen it happen once before, but thought it was a fluke...] Have a 6500 core running 12.2(33)SXI that is setup to sync to an external NTP source, and in turn provide NTP for our networked devices. Basic NTP configuration, with ntp logging, ntp

Re: [c-nsp] IOS 12 and 15

2013-08-28 Thread Jeff Kell
On 8/28/2013 10:46 PM, Mikael Abrahamsson wrote: Think of 15.x as 12.(5+x). There isn't that mcuh different when it comes to commands, it's mostly under the hood and of course new functionality. Is that true on the 6500? I've already made the 15.x jump on our lower-end Catalysts but the 6500

Re: [Paper] B4: Experience with a Globally-Deployed Software Defined

2013-08-17 Thread Jeff Kell
On 8/17/2013 7:14 PM, Arturo Servin wrote: Hacker will love SDN ... Yes. Traditional SDN is big, flat layer-2 network with global mac-address resolution, and a big fat Java applet managing the adjacency tables. What could *possibly* go wrong? Jeff

Re: CNN broadcasting online free? Hogging my bandwidth...

2013-08-14 Thread Jeff Kell
On 8/14/2013 9:24 PM, Zachary McGibbon wrote: It seems this started around 8am this morning and it was a macromedia tcp flash stream on port 1935. Wait until they throw some OctoShape P2P streaming video at you... Jeff

Re: [WIRELESS-LAN] XpressConnect...

2013-08-01 Thread Jeff Kell
On 8/1/2013 9:16 PM, Jason Cook wrote: We haven't had any reports of it showing up as malware. While by default most OS's these days work very well, we still find inconsistencies within each OS and there's always a percentage of Windows/Mac OS machines particularly that don't just work with

Re: Brighthouse issues

2013-07-30 Thread Jeff Kell
On 7/30/2013 10:55 PM, Jay Ashworth wrote: - Original Message - From: Jared Geiger ja...@compuwizz.net We are seeing that all our customers in the Brighthouse Orlando, FL market that would make outbound connections on TCP port 3306 suddenly can't connect to us now. This happened

Re: [WIRELESS-LAN] WLC 7.4.100.60(Beta Version)

2013-07-25 Thread Jeff Kell
On 7/25/2013 5:42 PM, Sharon Luciw wrote: :-) Ah those were the days with Apple talk cabling hanging from the celling all around us. And right along side Thick Ethernet cabling! Ahh, Appletalk over PhoneNET, StarNET, Farralon, and Gator boxes... gee thanks, that should disturb my sleep for

Wireless administrator position opening at UTC

2013-07-17 Thread Jeff Kell
UTC has an opening for a wireless administrator (any experience above and beyond certainly welcome, we're a small shop and we all wear several hats :) ). See https://ut.taleo.net/careersection/ut_chattanooga/joblist.ftl and search down for Wireless Network Administrator, Network Services. HR

Re: [c-nsp] Same static-route to different destination /

2013-07-17 Thread Jeff Kell
On 7/17/2013 7:30 PM, Muhammad Asim Hussain wrote: Please use port-channel load-balance src-dest-IP command at global config. Hope after this implementation both links will be equally load balance. Depending on platform, you may be able to randomize to a greater degree, e.g., 6500 Sup720

Re: One of our own in the Guardian.

2013-07-14 Thread Jeff Kell
On 7/13/2013 10:15 PM, Jima wrote: On 2013-07-13 14:44, Bill Woodcock wrote: http://www.guardian.co.uk/world/2013/jul/09/xmission-isp-customers-privacy-nsa I can happily state that XMission is my home ISP, with UTOPIA (city-involved fiber optic provider) as the local loop. (Really, who

Re: One of our own in the Guardian.

2013-07-14 Thread Jeff Kell
On 7/14/2013 3:37 PM, Warren Bailey wrote: I would imagine this cheap rural fiber showed up after the RUS stimulus? A former employer (GCI, in Anchorage Alaska) received quite a bit of money in the form of a grant/loan for a rural fiber network (I think they may have received the largest of

Re: One of our own in the Guardian.

2013-07-14 Thread Jeff Kell
On 7/14/2013 9:08 PM, Jima wrote: XMission does offer 1000/1000, as well; I seem to recall the price is something like $300/mo. For us, the problem was more finding remote sites that can push data rates anywhere near one's own limit (as it's enough of a problem at 100mbit), making the price

Re: [WIRELESS-LAN] Non-802.1x devices on wireless...

2013-07-05 Thread Jeff Kell
On 7/5/2013 2:12 PM, Brian Helman wrote: There are two distinct items here. I disagree that there is no difference between wired and wireless. A user with a strong connection hitting Netflix could easily kill users with marginal connection-speeds. In that case, whose experience are you

Re: Egress filters dropping traffic

2013-06-30 Thread Jeff Kell
On 6/30/2013 12:34 PM, Glen Kent wrote: Under what scenarios do providers install egress ACLs which could say for eg. 1. Allow all IP traffic out on an interface foo if its coming from source IP x.x.x.x/y 2. Drop all other IP traffic out on this interface. If you're an end node, it's BCP to

Re: Service provider T1/PPP question

2013-06-28 Thread Jeff Kell
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 6/28/2013 10:56 PM, Leo Bicknell wrote: If you're willing to do without modern features, you should be able to pick up a ton of gear that does all this for dirt cheap. A 7513 with channelized DS-3 cards is still quite spiffy for terminating

Re: [c-nsp] New Catalyst 6k chassis

2013-06-26 Thread Jeff Kell
On 6/26/2013 11:10 PM, Justin M. Streiner wrote: It just seems like the new 6k is positioned to poach prospective customers from the (arguably) higher-margin Nexus 7k product line. Now that you mention the N-word I have to ask (as we're looking into a deployment)... how much of it is ready for

Re: [WIRELESS-LAN] NAT recording

2013-06-20 Thread Jeff Kell
Our NAT is performed by our firewalls (Cisco ASAs) at the last hop before the border router. Everything inside (packet shaping, IPS/IDS, etc) is dealing with the internal addresses, the only use of the external IPs is when we receive external reports. We have adequate NAT pools to do 1-to-1

Re: net neutrality and peering wars continue

2013-06-20 Thread Jeff Kell
On 6/20/2013 10:26 PM, Jared Mauch wrote: Many things aren't as obvious as you state above. Take for example routing table growth. There's going to be a big boom in selling routers (or turning off full routes) when folks devices melt at 512k routes in the coming years. Indeed. We're

Re: 10gig coast to coast

2013-06-17 Thread Jeff Kell
On 6/17/2013 10:32 PM, George Herbert wrote: Also, what are reliability and redundancy requirements. 10 gigs of bare naked fiber is one thing, but if you need extra paths redundancy, figure that out now and specify. Is this latency, bandwidth, both? Mission critical, business critical,

Re: Blocking TCP flows?

2013-06-13 Thread Jeff Kell
Better still, http://dilbert.com/strips/comic/1996-09-07/ Jeff On 6/13/2013 6:41 PM, Christopher Morrow wrote: On Thu, Jun 13, 2013 at 6:37 PM, Phil Fagan philfa...@gmail.com wrote: fast Perl haha :) that's cute.

Re: Prism continued

2013-06-12 Thread Jeff Kell
On 6/12/2013 7:59 PM, Mike Hale wrote: It would make sense. It's a friggin' sick syslog analyzer. Expensive as hell, but awesome. Compare it to most any other SIEM (ArcSight?) and it's a bargain. But still, yeah. Jeff

Re: PRISM: NSA/FBI Internet data mining project

2013-06-06 Thread Jeff Kell
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 6/6/2013 9:22 PM, valdis.kletni...@vt.edu wrote: On Thu, 06 Jun 2013 21:12:35 -0400, Robert Mathews (OSIA) said: On 6/6/2013 7:35 PM, Jay Ashworth wrote: [ . ] Happily, none of the companies listed are transport networks: Could you be

Re: [WIRELESS-LAN] Non-802.1x devices on wireless...

2013-06-04 Thread Jeff Kell
On 6/4/2013 8:20 PM, Tim Cappalli wrote: We restrict some services on open. Also, as part of the registration process, their device will be configured for eduroam and the open SSID will be removed from their network list. They could hop back on if they want. It's their choice. If you have an

Re: [c-nsp] Possible spanning tree issue

2013-06-04 Thread Jeff Kell
On 6/4/2013 6:56 PM, Michael Sprouffske wrote: I attached a new switch to the network and it took down our contact center that doesn't touch this switch nor does the phone system. Is this spanning tree doing this? I don't see anything in the logs that show a change in spanning tree. I

Re: Headscratcher of the week

2013-05-31 Thread Jeff Kell
OK, here's a wild guess from left-field. Well, at least from left-field where I made at least one game-saving catch :) We had a similar case some years back, but it was a ramp-up in overall traffic we were looking at. If you're looking at latency, it could be related to traffic (do you have

Re: [WIRELESS-LAN] Wow vision veos

2013-05-24 Thread Jeff Kell
I guess the $64K question is... Is this more viable than Bonjour/AppleTV ? We're desperately seeking an alternative to the growing tide that wants just that... Jeff On 5/24/2013 10:18 PM, Walter Reynolds wrote: We talked to a re-seller today and were underwhelmed by this. There is no

Re: [WIRELESS-LAN] Wow vision veos: Will products using Miracast be an alternative?

2013-05-24 Thread Jeff Kell
On 5/24/2013 10:45 PM, Barron Hulver wrote: Will products using Miracast take hold and be an alternative? http://www.wi-fi.org/wi-fi-certified-miracast%E2%84%A2 In their FAQ... 7. How is Miracast related to Wi-Fi Direct? Wi-Fi Direct allows devices to connect directly to each other,

Re: Entry level WDM gear? follow-up

2013-05-17 Thread Jeff Kell
On 5/10/2013 9:56 AM, Jerimiah Cole wrote: On 05/08/2013 09:21 PM, Jeff Kell wrote: Ciena/Cyan/etc are way over our non-existant budget... what is the going recommendation to throw say 4-8 lambdas over a dark pair without breaking the bank? :) I've used http://www.omnitron-systems.com

Entry level WDM gear?

2013-05-08 Thread Jeff Kell
Apologies if this is a dumb newbie question, but this is one area of networking where I remain a virgin :) We have a local loop fiber to a regional fiber hut that has served us well for several years. It's carrying a 1550nm ER 10G circuit at the moment, but we're looking at another one, possibly

[Freesurfer] segfault during rfx with mri_glmfit

2013-05-07 Thread Alex Kell
hi freesurfers, i am running into a segfault whenever i try to use mri_glmfit to run a random effects analysis. (this is in the volume, not on the surface.) here's my call: mri_glmfit \ --y $ces_fpath \ --X $design_mat_fpath \ --C $c1_fpath \ --C $c2_fpath \ --C $c3_fpath \ --mask

Re: [Freesurfer] segfault during rfx with mri_glmfit

2013-05-07 Thread Alex Kell
drop I'll take a look. doug On 05/07/2013 10:24 AM, Alex Kell wrote: hi freesurfers, i am running into a segfault whenever i try to use mri_glmfit to run a random effects analysis. (this is in the volume, not on the surface.) here's my call: mri_glmfit \ --y $ces_fpath

Re: Data Center Installations

2013-05-01 Thread Jeff Kell
On 5/1/2013 7:57 PM, Mark Gauvin wrote: Zip ties have no reason to be in a dc grr They have their place, but decidedly not in data center racks where **nothing** is permanent/fixed very long :) Jeff

[c-nsp] Left-field trivia questions...

2013-05-01 Thread Jeff Kell
(1) Is it just me, or has cisco-nsp been spitting out ancient email messages for the last couple of days? I've gotten emails dating back to 2010, and it's not just the current timestamps, the embedded On month day, year, so-and-so wrote... is also old. (2) As my equipment this week has started

Re: [c-nsp] 7600 Sup720-3BXL Showing Max CEF table of 256K

2013-04-29 Thread Jeff Kell
On 4/29/2013 2:57 PM, Dan Benson wrote: Looking today, I was surprised to see that two of my Sup720-3BXLs are showing that I only have a MAX cef ability of 239K when all the docs I read show they should be defaulting to 512K. Try show platform hardware pfc mode and see if you're really

Re: [c-nsp] data center/mpls/vpls

2013-04-15 Thread Jeff Kell
On 4/15/2013 2:07 AM, Andrew Miehs wrote: I would like a pair of top-of-rack devices that can mirror one another if possible too, like cisco's 6509-vss thing.or at least like nexus vpc (multichassis link aggregation/bundling) The Nexus 5Ks are pretty cheap and good if you only need L2. I'm

Re: [c-nsp] 3560g switch - tagged vlans and untagged frames

2013-04-08 Thread Jeff Kell
On 4/9/2013 12:16 AM, Mike wrote: It it helps. I do also have dot1q native vlan tagging enabled. I just can't see inside of the switch and understand where my frames are going. If I put it into switchport mode access, and switchport access vlan 6, it all works fine and I see mac addresses in

Fiber plant APC vs UPC... once again...

2013-04-06 Thread Jeff Kell
We are looking into doing cableTV/HFC distribution on campus, and fiber runs for HFC typically run APC connectors to avoid reflectance on the analog HFC signal where it is significant. We we're looking at converting some existing data UPC to APC for existing runs, and on the new ones either do a

[c-nsp] 3750 stack inaccessible - memory leak

2013-04-04 Thread Jeff Kell
Each time my patience wears thin with TAC, I come here; it's typically more productive :) February 2011: 3750G stack stops answering to telnet/ssh with timeouts, serial console reports %% Low on memory; try again later. Gets blamed on CSCsu27706, fixed in 12.2(44); but we're now on 15.0(2).

Re: RFC 1149

2013-04-01 Thread Jeff Kell
On 4/1/2013 10:15 PM, Eric Adler wrote: Make sure you don't miss the QoS implementation of RFC 2549 (and make sure that you're ready to implement RFC 6214). You'll be highly satisfied with the results (presuming you and your packets end up in one of the higher quality classes). I'd also

[Freesurfer] denominator of the t-test in fsfast?

2013-03-31 Thread Alex Kell
freesurfers, i have a question about how t-tests are computed in fsfast. so t = ces/sqrt(cesvar), but how exactly is cesvar calculated? i thought it would be: cesvar = variance_of_residual *c*(X' * X)^-1*c' where X is the stim matrix and c is the contrast vector and ' denotes transpose

Re: Tier 2 ingress filtering

2013-03-28 Thread Jeff Kell
On 3/28/2013 7:49 PM, Saku Ytti wrote: On (2013-03-28 23:45 +), Rajiv Asati (rajiva) wrote: In fact, what makes it easier is that uRPF can be part of the template that can be universally applied to every edge port. There is incredible amount of L3 interfaces in the last mile, old ghetto

[c-nsp] HSRP v2 on 3750G

2013-03-26 Thread Jeff Kell
Anyone doing HSRP v2 on a 3750G (IP Services) ? Bonus points if on a VRF SVI ? Jeff ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/

Re: [c-nsp] VS-S2T-10G card with WS-X6748-SFP Card = DFC Problems

2013-03-25 Thread Jeff Kell
You can't do a CFC on a WS-X6716-10GE, can you? Jeff On 3/25/2013 1:46 PM, Phil Mayers wrote: On 25/03/13 17:35, Olivier CALVANO wrote: Hi i have a Cisco 6504E with a VS-S2T-10G and a small problems with two card: *Mar 25 17:20:06.375: %C6KENV-2-DFCMISMATCH: Module 2 DFC incompatible

Re: [c-nsp] VSS to vPC - vPC to Etherchannel

2013-03-16 Thread Jeff Kell
On 3/16/2013 8:34 PM, Andrew Miehs wrote: The cisco documentation recommends static as the recovery times are supposedly faster due to no negotiation. Not really sure if the downsides make up for that though. Yeah, you can screw up your network much faster that way :) We had been doing PAgP

Re: [c-nsp] STP active/listed on wrong port

2013-03-13 Thread Jeff Kell
On 3/13/2013 11:09 PM, Pete Templin wrote: I suspect a 'sh int status' might have shown this port in VLAN 1, and/or 'sh int tru' might not have shown this port trunking. Or if you're playing trunks, it's probably setup for native vlan 1. Jeff ___

Re: [Full-disclosure] how do I know the fbi is followin

2013-03-02 Thread Jeff Kell
On 3/2/2013 9:29 PM, Reed Loden wrote: Check your nearby WiFi SSIDs for "FBI Surveillance Van". That's always a dead giveaway that you're being monitored. Yeah, what is it with those guys? (or the ones that perpetuate the myth...)

Re: [c-nsp] VSS on 4500-x

2013-02-28 Thread Jeff Kell
On 2/28/2013 11:14 PM, CiscoNSP List wrote: Thanks Rick - How long have you been running your setup for? Exactly what I did for my SAN network -- replaced a stack of two 3750s with two 4500Xs using vss. Works flawlessly. How was the configuration migration? It was my understanding the

Re: 10 Mbit/s problem in your network

2013-02-26 Thread Jeff Kell
On 2/26/2013 10:57 PM, Owen DeLong wrote: In fact, many of the hotels that have solved this intelligently have simply placed DSLAMs in the phone room and run DSL to each room with a relatively inexpensive (especially when you buy 500 of them at a time) DSL modem in each room. Some also have

Re: Hotel internet connectivity

2013-02-26 Thread Jeff Kell
On 2/26/2013 11:35 PM, Jay Ashworth wrote: I don't spend a lot of time in a lot of hotels, but every hardwire I have seen with my own personal eyeballs was indeed DSL. Cheers, -- jra Hrmm... Ramada Inn, Okaloosa Island resort outside Fort Walton Beach (kinda your neighborhood Jay) two years

Re: [WIRELESS-LAN] Residence Hall Wireless survey

2013-02-24 Thread Jeff Kell
On 2/24/2013 7:45 PM, Bob Williamson wrote: What is considered to be too many clients per AP? We have 30 APs and 450 K-12 students (100 of which are dorm students). We also have a number of carts containing 15+ laptops the move around the school, carts with 15+ Ipads moving around the

[IM-Talk] Short-term packet loss...

2013-02-18 Thread Jeff Kell
We have been experiencing an increasing amount of short-term packet loss on our maps, typically on simple ping probes, showing a latency of just over 1 second. It would appear that the first ping or response is being dropped, and the second succeeds. We do have some large maps with lots of

Re: [c-nsp] ASA 8.4 NAT weirdness...

2013-02-18 Thread Jeff Kell
On 2/18/2013 6:25 PM, Garrett Skjelstad wrote: Meh. Everyone always complains when software changes. THAT is the universal law. Change is constant. Adapt and find the new cheese. =) Well, yes, except this release I suspect that someone cut the cheese :) Jeff

[c-nsp] ASA 8.4 NAT weirdness...

2013-02-17 Thread Jeff Kell
OK, now have ASA up on 8.4 software, and boy is it ever weird :) We do NAT extensively (all 1918 addressing inside). For public-facing servers, primarily web servers, we made a habit of translating them into a public /24 network (say x.y.z.*). The firewall atrributes for this was to simply

Re: The 100 Gbit/s problem in your network

2013-02-11 Thread Jeff Kell
On 2/11/2013 11:05 PM, Tim Durack wrote: Multicast is dead. Feel free to disagree. :-) Tim: Multicast is a vendor selling point, as you essentially need a coherent end-to-end solution to get it to work PROPERLY. Of course if it does not work PROPERLY, it will still largely work, albeit

Re: Fwd: Rollup: Small City Municipal Broadband

2013-02-02 Thread Jeff Kell
This has been a fascinating discussion :) While we don't quite qualify as a small city, we do have quite a dispersion of coverage across our residence halls and general campus. There is an ongoing RFP process to build out our own CATV distribution (or more generally, to avoid the resident CATV

Re: [c-nsp] sh interfaces transceiver detail ouput

2013-01-26 Thread Jeff Kell
I have similar values on 6500 / VS720 / 6716-10G mostly just transmit/receive power. Have never seen anything on a lesser/smaller Catalyst with one exception... we were trying some compatible optics on a link out of a 3750-12 stack. These particular compatibles show everything! All the

Re: [Freesurfer] Two questions: autocorrelation correction and vertex distance

2013-01-25 Thread Alex Kell
Hi Doug, Thanks for the information about how FS whitens the data. Is there a way to temporally whiten data without running a GLM (i.e., without running selxavg3-sess)? Alex On Tue, Jan 22, 2013 at 9:58 AM, Douglas N Greve gr...@nmr.mgh.harvard.eduwrote: On 01/19/2013 03:18 PM, Alex Kell

Re: [Freesurfer] Two questions: autocorrelation correction and vertex distance

2013-01-25 Thread Alex Kell
Whoops, I just saw your response in your response. My bad -- please ignore. Alex On Fri, Jan 25, 2013 at 10:37 AM, Alex Kell alexk...@mit.edu wrote: Hi Doug, Thanks for the information about how FS whitens the data. Is there a way to temporally whiten data without running a GLM (i.e

Re: [c-nsp] Cat6500 odd arp behavior

2013-01-24 Thread Jeff Kell
On 1/24/2013 3:24 PM, vinny_abe...@dell.com wrote: Thanks Andrew... I should have elaborated further. The hosts aren't directly connected to the 6500. The 6500 aggregates several TOR switches just doing pure layer 2, no trunking or tagging or anything. The 6500 provides an SVI for each VLAN

[TYPES/announce] Final CfP: Software Composition (SC) 2013 (deadline extended)

2013-01-23 Thread Stephen Kell
University, Sweden Program Chairs: Walter Binder, University of Lugano, Switzerland Eric Bodden, Technische Universität Darmstadt, Germany Publicity Chair: Stephen Kell, University of Lugano, Switzerland Program Committee: Danilo Ansaloni, University of Lugano, Switzerland Sven Apel, University

[Freesurfer] Two questions: autocorrelation correction and vertex distance

2013-01-19 Thread Alex Kell
Hi Freesurfers, I have two unrelated questions. 1. I want to pre-whiten some functional data without running a GLM on them (we're going to run the GLM in matlab). It looks like fsfast does autocorrelation correction as a part of the selxavg3-sess wrapper. I tried poking around on the wiki and

[c-nsp] Port-channel configuration stickiness...

2013-01-18 Thread Jeff Kell
After a few IOS updates in our maintenance window tonight, I had some port-channel trunks fail to come up *again* and this is becoming more than an occasional nuisance... perhaps others have seen this... We run a number of port-channel uplinks between Catalyst switches (3560s, 3750s, 4500s,

Re: Slashdot: UK ISP PlusNet Testing Carrier-Grade NAT Instead of IPv6

2013-01-17 Thread Jeff Kell
On 1/17/2013 6:50 PM, Owen DeLong wrote: Vonage will, in most cases fail through CGN as will Skype, Xbox-360, and many of the other IM clients. Not sure about Vonage, but Skype, Xbox, and just about everything else imaginable (other than hosting a server) works just fine over NAT with

Re: [c-nsp] Cisco 3850 switches

2013-01-17 Thread Jeff Kell
But 4500X VSS isn't official yet either :) Jeff On 1/17/2013 11:43 PM, Blake Pfankuch wrote: That's what it looks like to running IOS XE. I'm curious if they are maintaining the 3750 style stacking or going more with the 4500X style stacking... -Original Message- From: Andrew

Dreamhost hijacking my prefix...

2013-01-11 Thread Jeff Kell
Not sure how widespread their leakage may be, but Dreamhost just hijacked one of my prefixes... Possible Prefix Hijack (Code: 10) Your prefix:

Re: Dreamhost hijacking my prefix...

2013-01-11 Thread Jeff Kell
, Network Operations* kenneth.mc...@dreamhost.com Ph: 818-447-2589 www.dreamhost.com On Fri, Jan 11, 2013 at 7:23 AM, Jeff Kell jeff-k...@utc.edu wrote: Not sure how widespread their leakage may be, but Dreamhost just hijacked one of my prefixes

Re: [SHAME] Spam Rats

2013-01-09 Thread Jeff Kell
On 1/9/2013 11:41 PM, Mark Andrews wrote: $GENERATE, as someone else pointed out, solves that problem for you? (Does it scale for IPv6? I can't recall - but surely this could be scripted too.) No. A /64 has 18,446,744,073,709,551,616 addresses. Even if you had machines that supported

Re: Gmail and SSL

2013-01-02 Thread Jeff Kell
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 1/2/2013 10:31 PM, valdis.kletni...@vt.edu wrote: On Wed, 02 Jan 2013 12:10:55 -0800, George Herbert said: Google is setting a higher bar here, which may be sufficient to deter a lot of bots and script kiddies for the next few years, but it's

Re: Netflix transit preference?

2012-12-27 Thread Jeff Kell
On 12/27/2012 1:26 PM, Patrick W. Gilmore wrote: On Dec 27, 2012, at 13:19 , randal k na...@data102.com wrote: (We move ~1.4gbps to Netflix, and are thus not a candidate for peering. And they have no POP close.) Why don't you ask Netflix? And why not ask them for kit to put on-net?

Re: [c-nsp] Anyconnect ASA 5550

2012-12-26 Thread Jeff Kell
On 12/26/2012 3:05 PM, Ryan West wrote: On Wed, Dec 26, 2012 at 13:57:53, Blake Pfankuch wrote: Subject: [c-nsp] Anyconnect ASA 5550 Int gi 0/1 Ip address 10.10.10.11 255.255.255.0 standby 10.10.10.12 Nameif outside Secu 0 Without changing the actual interface IP, I cannot have my

Re: OpenFlow, please don't start a flame war...

2012-12-14 Thread Jeff Kell
On 12/14/2012 11:11 PM, eric-l...@truenet.com wrote: It's been about 2 years in since I've heard about the concept, and honestly I'm about ready to jump into test environments at my house. My questions are pretty basic, what distro would you recommend for a controller, and should I start by

[c-nsp] Etherchannel port hashing consistency?

2012-12-11 Thread Jeff Kell
Quick question... I have a stacked pair of 3750X switches currently feeding 2 trunks through some packet inspection devices and into ASA5540s. We're upgrading to 5585s, and looking at doing etherchannel trunks out of the 3750Xs and 5585s (now that ASAs support etherchannel). If the ASAs are

[Freesurfer] how is fsnr computed?

2012-12-06 Thread Alex Kell
in the whole brain mask (i.e., gm and wm)? separately, random other question: what are the h.dat, h.nii.gz, and h-offset.nii.gz file/volumes? thanks in advance! alex kell ___ Freesurfer mailing list Freesurfer@nmr.mgh.harvard.edu https

Re: [c-nsp] MST Experiences: was Re: Dell switches (specifically PowerConnect 7048P) and Ciscos

2012-11-28 Thread Jeff Kell
On 11/28/2012 5:38 PM, Bernie wrote: It's clearly highly relevant in some environments, but Dell is gaining market share with the STP functioning as-is. While I can bring discussions like this to management attention, the system is set up to listen to the people making sales decisions at

[c-nsp] Dell switches (specifically PowerConnect 7048P) and Ciscos

2012-11-26 Thread Kell, Jeff
We're doing an eval on some PowerConnect 7048P switches, and have run into spanning tree issues. They don't like PVST, but will spit out STP that in theory will revert a Cisco to STP (is this process contagious? or limited to the upstream?). That unfortunately requires an untagged vlan 1 on

Fiber terminations -- UPC vs APC

2012-11-19 Thread Jeff Kell
Looking for some guidance/references on the use of UPC versus APC terminations on fiber cabling. Traditionally we have done all of our fiber plant targeting data usage with UPC connectors. We are also looking at proposals for fiber distribution plant for video, and the possibility of using

Re: [c-nsp] 3750x Alternatives

2012-11-19 Thread Jeff Kell
If you seriously have 10G on the roadmap, 4500X looks sweet, you can get it in a 16-port version, SFP / SFP+ you upgrade as you are ready. A pair of them in a VSS deployment is going to be pretty steep however, especially if you need smart layer-3 (Enterprise). Otherwise perhaps a 4507E+R with a

Re: [c-nsp] 3750x Alternatives

2012-11-19 Thread Jeff Kell
On 11/19/2012 8:38 PM, Andrew Miehs wrote: The OP seemed to be having an issue with bursty traffic, which is why I would push him away from the 37xx product line. Yes. I continue to be disappointed at 2960/3560/3570 buffer performance (so much to the extent that we're currently deploying

Re: [c-nsp] Wireless Controllers, SVIs and WCCP

2012-11-18 Thread Jeff Kell
On 11/18/2012 6:20 PM, Andrew Miehs wrote: Although not a bad idea, it will be a little difficult to convince management that we now want to replace the controllers. The reason for MPLS is that we could just hang all the wireless gear off a wireless only PE, rather than requiring an extra hop

Re: Eaton 9130 UPS feedback

2012-11-13 Thread Jeff Kell
On 11/13/2012 6:42 PM, Tom Morris wrote: Sorry to say, I've used them and had them eat themselves. They just die mysteriously and let out lots of smoke when they do. When they do, however, they leave behind a perfectly good set of batteries. I'd recommend looking elsewhere... Does

Re: [WIRELESS-LAN] eduroam question(s)

2012-11-12 Thread Jeff Kell
Hey Julian, We recently went through this after cranking up eduroam officially this past fall. We have similar points of confusion, plus a bonus. Our email addresses are first-l...@utc.edu unless there are conflicts, in which case we use a middle initial or a suffix. Our official UTCid is a

Re: [WIRELESS-LAN] eduroam question(s)

2012-11-12 Thread Jeff Kell
On 11/12/2012 6:39 PM, Lee H Badman wrote: Does anyone keep stats on how much your Eduroam efforts get used? Like, other than just being in the club, is it really providing benefits that an easy-to-use guest network wouldn't? Not being snarky, but genuinely wondering. Well, again, I have a

Re: [WIRELESS-LAN] eduroam question(s)

2012-11-12 Thread Jeff Kell
On 11/12/2012 9:41 PM, Lee H Badman wrote: Also... Does anyone get a bit turned off about having yet another SSID in the air, or debranding your own in favor of pushing Eduroam as your SSID? Again, just wondering. Let's task Phillipe with figuring out a way to make the Eduroam underpinnings

Re: [c-nsp] leaking only a couple routes between 2 vrf's

2012-11-01 Thread Jeff Kell
On 11/1/2012 5:28 PM, Aaron wrote: What is a clean/easy way to leak a couple routes between two vrf's ? if you have links to docs or sites that explain this or you know how , lemme know please. Either an import route-map (filter imports), or route-map your redistribution into BGP (filter

Re: [c-nsp] Overflows During Microbursts on Cisco Switch

2012-10-30 Thread Jeff Kell
On 10/30/2012 10:37 AM, Gert Doering wrote: Hi, On Tue, Oct 30, 2012 at 09:00:25AM -0500, Ge Moua wrote: +1 for: * get a reasonable switch maybe something like a 2960-X (or higher) will provide for deeper buffers during micro-burst use case. As far as I have been told, the new E and X

Re: [c-nsp] SSH from inside a VRF in 12.2SRE

2012-10-21 Thread Jeff Kell
VRF-aware management functions are a pain... you want it everywhere, except when you get it, e.g., recent ip helper-address suddenly becoming vrf-aware caused us some major issues. Accepting VRFs at the COPP level (e.g., vrf-also on vty access lists) can screw you as well. I can see the

[c-nsp] ASA 8.x software and ICMP errors...

2012-10-17 Thread Jeff Kell
Have been noticing this for some time but did not consider it worth pursuing at the time, then recently had to try some traceroutes and nmaps from off-campus for testing purposes and now it's relevant... Our internal infrastructure is on private addresses. We have dynamic NAT enabled for the

Re: [c-nsp] Catalyst 3xxx IPv6 VRF Lite ?

2012-10-13 Thread Jeff Kell
On 10/13/2012 12:19 PM, Gregoire Huet wrote: Hello I've been told by Cisco that the feature would be available by 1st half of 2013. If it's added to existing hardware, I'd expect a new SDM profile and even lower numbers for everything else once the IPv6/VRF allocation is taken out :( A

[c-nsp] 4500 load check...

2012-09-25 Thread Jeff Kell
I'm looking for the 4500 (old SupIVs) equivalent of a switch load... For Cats 3550/3560/3750 I have a load macro looking at show controller utilization for active interfaces. For the 6500, a show mls stat gives you a fair idea. There doesn't seem to be a 4500 equivalent. There is the show

Client location / tracking...

2012-09-21 Thread Jeff Kell
I was wondering what other folks are doing for client location in cases where you have a problem with a client, random interference, trying to locate a stolen device, etc. We are an Aruba shop and have Airwave, which will get you in the general vicinity; but in crowded or multi-floor buildings

Re: [WIRELESS-LAN] Client location / tracking...

2012-09-21 Thread Jeff Kell
On 9/21/2012 2:37 PM, Cappalli, Tim G @ LSC-OIT wrote: I've used the AirWave Management Client on a laptop before which can help you hunt down a device. You can download it from inside the AirWave GUI under Documentation. But as far as I can tell, it only locates APs, not clients.

Re: [c-nsp] VMware teaming Nic's and multiple switches

2012-09-19 Thread Jeff Kell
We did cross-chassis port channels on 3750s for years. However, the new vCenter/ESX 5+ has this automatic link balancing thing. You setup the trunks all the same, no need for port-channels, and the vCenter host load-balances the vlans/hosts across the available links. Kinda ugly from the switch

Re: [c-nsp] Catalyst 6509 EOS/EOL

2012-09-18 Thread Jeff Kell
On 9/18/2012 10:16 AM, Antonio Soares wrote: It's possible to extend the support for the non-E 6500s with something they call Post Last Day of Support (Post-LDoS). Basically you have a price for the service that is the double of a 6500-E. But you can have the non-E supported until 31-Dec-2015.

Re: [WIRELESS-LAN] Xbox Interferers

2012-09-03 Thread Jeff Kell
On 9/3/2012 1:04 PM, Legge, Jeffry wrote: Now that I have Cisco CleanAir I am seeing a lot of Xbox interferers in dormitories. What if anything do you do about Xbox wireless? XBoxes, wireless printers, wireless BluRays, the interference just keeps on rolling in :( Jeff **

<    1   2   3   4   5   6   7   8   9   >