Question about CAR , the BURST size and MTU [7:23754]

2001-10-22 Thread Hamid
Hi group Reviewing cisco's white paper on CAR (rate-limit) I found that cisco uses a bucket to determine the traffic rate. Cisco recommends the burst size to be : Burst size =Desired Rate(in bits) /8 * 1.5 and it says that if the burst size is smaller the client won't reach the desired rate. M

Re: PIX with PAT and VPN [7:23490]

2001-10-22 Thread Theodore stout
I tried this and it did not work. When IPSEC negociates a VPN session between the two PIX's, it will PAT an internal device from Network A as 206.112.71.5 and use 206.112.71.5:500 for the negociation. Once another device wishes to access a device behind 206.112.71.6, it will have to use 206.112

Cisco Token Ring switch config [7:23756]

2001-10-22 Thread Jacques Allison
What is the steps needed on a 3920 Token Ring switch to configure vlans and a switch IP address that can be used for management (ping-able from network) Regards, Jacques Allison Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=23756&t=23756

HSSI interface flapping - reg [7:23757]

2001-10-22 Thread Kannan Sadagopan
We are running bgp on one of our HSSI interfaces and the interfaces are flapping for a maximum of 4 seconds flapping at least 10 times a day. What could be the reason for the same? Please throw some light on this problem. K. Sadagopan Message Posted at: http://www.groupstudy.com/form/read.ph

Aironet Access points Range [7:23758]

2001-10-22 Thread IT Guy
Hi guys, Need to clear an small confusion?? As we know Range for 350 AP at 11 mbps is 130 ft??What does it mean?? 130 ft horizontal or vertical or both??? Thanks for removing my confusion. _ Get your FREE download of MSN Explor

RE: CBAC Performance Issues [7:23573]

2001-10-22 Thread Wright, Jeremy
Thanks Keyur for the info -Original Message- From: Keyur Shah [mailto:[EMAIL PROTECTED]] Sent: Friday, October 19, 2001 4:26 PM To: 'Wright, Jeremy'; Keyur Shah; [EMAIL PROTECTED] Cc: '[EMAIL PROTECTED]' Subject: RE: CBAC Performance Issues [7:23573] If you setup your acl to monitor

Re: HSSI interface flapping - reg [7:23757]

2001-10-22 Thread Patrick Ramsey
Dude, it could be any number of things... Bad card, bad csu, bad circuit, bad software, misconfiguration If you have a circuit that is flapping like that, the first thing you should do is call the telco. while they're looking at it, check your configs against a basic config. Make sure nothi

RE: GBIC: WS-G5484 / WS-G5486 [7:22675]

2001-10-22 Thread Ole Drews Jensen
Thanks Rik, Have you done this on a 3500? I have tried to locate a copper GBIC for it, but the only one I can find is the GigaStack module that I use in both my 3548's to stack them with FD Gb. Thanks, Ole ~~~ Ole Drews Jensen Systems Network Manager CCNP, M

a question from lan switching book [7:23764]

2001-10-22 Thread xie rootstock
another side effect of a collision domain is the propagation of frames through the network, if the network uses shared network technology. all stations in the repeater based network share the bandwidth, what is the shared network technology? and what is other technology in the switch? thanks Me

Route Reflectors and Peer Groups [7:23765]

2001-10-22 Thread Lupi, Guy
Below is an excerpt from a Cisco case study on multiple route reflectors within a cluster: An important thing to note, is that peer-groups were not used in the above configuration. If the clients inside a cluster do not have direct IBGP peers among one another and they exchange updates through th

Re: ospf point-to-multipoint [7:23655]

2001-10-22 Thread Alex Lee
I posted similar question about three/four weeks ago. Got some answers but still have doubt. Hope someone can shed some light on this question. Section 9.5. of RFC 2328 : Quote On broadcast networks and physical point-to-point networks, Hello packets are sent every HelloInterval seconds to the IP

RE: a question from lan switching book [7:23764]

2001-10-22 Thread Mike Sweeney
Shared is your basic hub or bridge.. layer two.. no switching.. what one workstation/host/device sees, all will see. MikeS Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=23768&t=23764 -- FAQ, list archives, and subscription info:

terminal and router [7:23770]

2001-10-22 Thread Cisco Breaker
Hi all, I am trying to use a windows CE platform to configure routers or modems but I cant do it. I installed different kind of emulation programs and set the baud rate to 9600 blah blah also used VT100 but nothing works. I checked the cable and verified that it is working. Has anybody tried this

OSPF Route Summarization Trick Question [7:23771]

2001-10-22 Thread John Neiberger
Okay, this doesn't quite qualify as a trick question but I'm having trouble finding the answer. I hope it's not too obvious or I'll be embarrassed. :-) While working on one of the Fatkid's labs I see the following in the Hints sections: 3. There are two built in OSPF methods to summarize OS

RE: a question from lan switching book [7:23764]

2001-10-22 Thread John Neiberger
I'm coming in at the end of this thread so I apologize if I'm stating something that someone else already covered. I wanted to nitpick a little, perhaps because I need more coffee, as usual, A hub is a layer one technology since it's simply a multiport physical repeater. It is truly shared.

Re: HSSI interface flapping - reg [7:23757]

2001-10-22 Thread MADMAN
Could be a bug, there is a similiar nasty one on the PA-T3, CSCdt68049 Dave Patrick Ramsey wrote: > > Dude, it could be any number of things... Bad card, bad csu, bad circuit, > bad software, misconfiguration > > If you have a circuit that is flapping like that, the first thing you shoul

Re: EIGRP load balancing - variance command [7:23623]

2001-10-22 Thread MADMAN
Keep in mind that EIGRP nor other protocols load balance per se but the switching mechanism is what's important. Also a variance of 128 seems pretty weird, try something more reasonable like 2 Dave kwock99 wrote: > > I have tried some basic testing on the EIGRP load balancing. For simplici

Re: OSPF Route Summarization Trick Question [7:23771]

2001-10-22 Thread Jonathan Hays
Here's my guess. I've included the first two for clarity. 1. Inter-area route summarization with commands of the form "area 1 range 10.1.2.0 255.255.224.0" 2. External route summarization with commands of the form "summary-address 10.1.2.0 225.255.224.0" 3. Static route of the form "i

Re: OSPF Route Summarization Trick Question [7:23771]

2001-10-22 Thread John Neiberger
I thought of that solution (#3) but I wasn't sure if that was what he was referring to. Usually, in the context of CCIE lab studies, the labs state that you can't use static routes. However, this wasn't part of the lab, it was just in the Hints section of a lab so that restriction might not have

Re: over 1700 passing ccie written every month [7:23680]

2001-10-22 Thread Wojtek Zlobicki
Juniper Cert > Uh, what exactly is the JCIE? > > > > > > > > > ""Wojtek Zlobicki"" wrote in message > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > > Soon we will see > > > > John Doe > > Studying for CCNA,CCNP,CCIE,JCIE,MSCE(ALL),NET+,CNE > > > > > Of course "CCIE Written" isn't a certificati

RE: OSPF Route Summarization Trick Question [7:23771]

2001-10-22 Thread John Neiberger
Yep, distribute-lists could work in conjuction with Jonathan's suggestion of redistributing a static route. I wanted to know how to suppress the more-specific subnets and a distribute list would work. It would be pretty unwieldy for more than a few routes but it definitely would work. Are you t

Re: OT: Enable secret hacking [7:23670]

2001-10-22 Thread Drew - Home
> The reason I asked was to see if other peoples impression was the same as > mine. I've got the tools for the level 7 passwords, but was under the > impression that the enable secret was almost impossible. This is a dangerous assumption. Nothing is impossible, and this has little to do with th

RE: a question from lan switching book [7:23764]

2001-10-22 Thread Mike Sweeney
hehehe.. maybe *I* needed more coffee :) Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=23781&t=23764 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure vi

Re: Intervlan Connectivity is not working? [7:23744]

2001-10-22 Thread Brant Stevens
Are you trunking on any other ports? You need to trunk between switches if you want routing amongst multiple VLANs to become redundant via the MSFCs... - Original Message - From: "Washington Rico" To: Sent: Monday, October 22, 2001 12:10 AM Subject: Intervlan Connectivity is not workin

RE: a question from lan switching book [7:23764]

2001-10-22 Thread xie rootstock
is shared means that there is a 10M ethernet, if there are 10 station in this network, every station has the 1M? or is shared means that there is a 10M ethernet, if there are 10 station in this network every station has the 10M bandwidth when you transmisstion, (csma/cd) after this station trasmi

why switch can not devide the broadcast? [7:23784]

2001-10-22 Thread xie rootstock
as i know, every ip packet changed at layer 2 to frame, that means all frame or bit flowing at the network or should said at the physical line, not ip, when the ip (actuall, it had changed to frame)met the bridge or switch which going to check their table for deciding if it is at inside the netwo

RE: OSPF Route Summarization Trick Question [7:23771]

2001-10-22 Thread Jim Dixon
I was thinking of using an ACL with Distribute List. Your paragraph states that the solutions must work with any router and any protocol. Static Routes would be my first choice here provided the lab directions didn't prevent this choice. What did the directions for the LAB state? Were there any

RE: HSSI interface flapping - reg [7:23757]

2001-10-22 Thread Angel Leiva
Kannan, Is your router running on a multi-homed ISP environment? Is so, you could have a case of large BGP advertisements from your ISPs causing high router CPU utilization cycles that actually influence the "HSSI interface flapping". I'd suggest that you check the following: 1. Monitor CPU ut

RE: a question from lan switching book [7:23764]

2001-10-22 Thread Leigh Anne Chisholm
Think of it like this. Shared is as many people in a 10 foot by 10 foot room as you can stuff. The size of the room can be an analogy for the bandwidth of the network and the number of people in the room are analogous to PC's connected to the shared bandwidth. The rules of conversation are this

Cisco router question [7:23787]

2001-10-22 Thread Andy Lawrence
I need to find an Isdn router that supports IPSec passthrough. I don't necessarily need it to be able to act as an end point of a Vpn tunnel just for it to pass the traffic ! I can't seem to find any explicit documentation on this although I believe that Cisco routers are more likely to support i

RE: a question from lan switching book [7:23764]

2001-10-22 Thread John Neiberger
You're closer to being correct on your first answer, but each station won't get exactly 1MB. Ethernet is shared medium. In CSMA/CD, the MA means Multiple Access. All stations on that link are competing for bandwidth on the link. If 9 of the stations are idle and one station wants to transmit i

RE: OSPF Route Summarization Trick Question [7:23771]

2001-10-22 Thread John Neiberger
In this particular lab static routes were forbidden. It was an OSPF lab and one of the instructions was to configure summarization between areas. The Hints section was there to prompt us on different ways this might be accomplished. Since it's a training lab they're trying to make us think of d

Re: Intervlan Connectivity is not working? [7:23744]

2001-10-22 Thread MADMAN
He doesn't need to trunk between switches, this is a single switch with two MSFC's. Your HSRP looks fine but are the interfaces up?? If you have no switch ports active in the designated VLANs the MSFC VLAN will not come active. The management VLAN stuff is VTP, nothing to do with your probl

RE: ospf point-to-multipoint [7:23655]

2001-10-22 Thread adam lee
I guess the best way is to set up some routers in each environment and look at some debugs. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Alex Lee Sent: Monday, October 22, 2001 7:07 AM To: [EMAIL PROTECTED] Subject: Re: ospf point-to-multipoint [7:2365

Re: a question from lan switching book [7:23764]

2001-10-22 Thread Drew - Home
> is shared means that there is a 10M ethernet, if there are 10 station in > this network, every station has the 1M? > > or is shared means that there is a 10M ethernet, if there are 10 station in > this network every station has the 10M bandwidth when you transmisstion, > (csma/cd) after this sta

pix firewall training docs [7:23794]

2001-10-22 Thread Joe Black
just wanted to see if anyone is interested in selling their Cisco Pix Firewall Advanced training guides email me... thanks Joe Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=23794&t=23794 -- FAQ, list archives, and subsc

Re: a question from lan switching book [7:23764]

2001-10-22 Thread Jonathan Hays
Geat explanation! And one of the best analogies I've seen yet. If you're not an instructor you ought to be... Leigh Anne Chisholm wrote: > Think of it like this. Shared is as many people in a 10 foot by 10 foot > room as you can stuff. The size of the room can be an analogy for the > bandwidth

Re: Intervlan Connectivity is not working? [7:23744]

2001-10-22 Thread Brant Stevens
My bad... Theres the msfcautostate disble command which should eliminate the need to have an active port in a given VLAN before the interface comes up... - Original Message - From: "MADMAN" To: "Brant Stevens" Cc: Sent: Monday, October 22, 2001 12:55 PM Subject: Re: Intervlan Connect

PIX subnet access-lists [7:23797]

2001-10-22 Thread John Zei
Does anyone know the access-list command that would allow an entire subnet into an ftp site. Here are some examples of what I've tried: access-list acl_out permit tcp host 212.113.2.0 255.255.255.0 host 124.49.114.6 eq ftp access-list acl_out permit tcp host 212.113.2.0 255.255.255.0 host 124.49.

RE: a question from lan switching book [7:23764]

2001-10-22 Thread Priscilla Oppenheimer
At 10:14 AM 10/22/01, Mike Sweeney wrote: >Shared is your basic hub Hub or cabling, i.e. 10Base2 or 10Base 5. All stations hear each other's frames. They all contend for and share the bandwidth. They are affected by each other's collisions. >or bridge.. A bridge divides up collision domains.

Re: PIX subnet access-lists [7:23797]

2001-10-22 Thread John Zei
I think it's access-list acl_out permit tcp 212.113.2.0 255.255.255.0 host 124.49.114.6 eq ftp Is that right? Thanks John ""John Zei"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Does anyone know the access-list command that would allow an entire subnet > into an ftp site.

RE: PIX subnet access-lists [7:23797]

2001-10-22 Thread Lange, Eric
I don't think you want to use the 'host' command when specifying a subnet. Try this: access-list acl_out permit tcp 212.113.2.0 255.255.255.0 host 124.49.114.6 eq ftp -Eric -Original Message- From: John Zei [mailto:[EMAIL PROTECTED]] Sent: Monday, October 22, 2001 12:32 PM To: [EMAIL PR

Re: a question from lan switching book [7:23764]

2001-10-22 Thread Drew - Home
In this environment > where only 1 PC can speak at a time, that PC is able to use the entire > bandwidth of the pipe to send one frame. That frame travels at 10 Mbps. Specifically, the frame doesn't actually travel at 10mbs. The frame travels at the speed of electrical current on a medium. Thi

opinion on AS5224 please [7:23802]

2001-10-22 Thread fartcatcher
Hello everyone, you may remember me. I was asking about a dialup solution a couple of weeks ago. I've managed to gind an AS5224 used for around $3,000 cdn. Are these good machines? Is there anything I should be wary of? It's running ios 11.2. Thanks, fc Message Posted at: http://www.groups

Re: ospf point-to-multipoint [7:23655]

2001-10-22 Thread Alex Lee
Can you shed some light on what debug commands which could tell us whether the packets are unicasted or multicast ? ""adam lee"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > I guess the best way is to set up some routers in each environment and look > at some debugs. Mess

Re: Intervlan Connectivity is not working? [7:23744]

2001-10-22 Thread Andrew Cook
I thought the same thing, but if you have two independent MSFCs in a chassis, both with a VLAN interface configured (same vlan) and the vlan is configured on the switch but with no port members, the MSFC interfaces do indeed come up. I verified this in my lab. However, same scenario with the MSFC

WAY OT: Cache Server Comparison [7:23805]

2001-10-22 Thread John Neiberger
Sorry for posting this far off-topic but I knew I could get some great answers here. We're replacing our cache server and we're considering a couple of options, primarily the Z-50 from Stratacache and the F5 EdgeFX. My boss at this point won't consider the F5 product unless it participates in th

Re: ospf point-to-multipoint [7:23655]

2001-10-22 Thread John Neiberger
debug ip packet >>> "Alex Lee" 10/22/01 12:18:50 PM >>> Can you shed some light on what debug commands which could tell us whether the packets are unicasted or multicast ? ""adam lee"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > I guess the best way is to set up some route

Scripting Router Configs [7:23810]

2001-10-22 Thread [EMAIL PROTECTED]
Does anyone have a good solution for scripting a router configuration? PERL is a great scripting language, but serial support under Windows seems lacking. TeraTerm is ok, but has a poor language and is not at all portable. Thanks in advance, Patrick Message Posted at: http://www.groupstudy.

RE: WAY OT: Cache Server Comparison [7:23805]

2001-10-22 Thread Ouellette, Tim
John, Have you taken a look at Network Applicate netcache boxes. Btw: if you ever need load balancers, take a hard look at F5's Big IP Load Balancers. Excellent features and the GUI is just plan bad a$$. Wouldn't trade our 64 of them for anything (well, maybe a new house for myself, that's about

RE: Cisco Study Library for Sale [7:23047]

2001-10-22 Thread Will's e-mail
It is so nice to see the response from this caring and compassionate group. I am so glad that I work in an industry with such helpful peers. I have received I email in response and that said what I had wasn't worth anything. That may be, I don't know anymore. I guess I would have to say that I hav

AW: terminal and router [7:23770]

2001-10-22 Thread Maissen Sacha
Hi The CE-Handhelds are build to make connections to other PCs. So you can use a strait cable to connect a CD-Handheld to a PC, but if you want to connect a Cisco-Router you need a cross RS232-Cable to connect to the Router-RS232 9PIN. Use the standard rolled cable and the adapter RJ45 to DB9 (F)

Re: Cisco router question [7:23787]

2001-10-22 Thread Study Hard
Any router that can forward IP can forward IPSec. IPSec scrambles the payload, but there will be a standard, run-of-the-mill IP header for the router to examine. Layer 2 encapsulations should be unaffected. HTH --- Andy Lawrence wrote: > I need to find an Isdn router that supports IPSec >

Re: WAY OT: Cache Server Comparison [7:23805]

2001-10-22 Thread Brad Nixon
John, I would also check the Personal Content Cache from Nortel. It is based on Volera's cache software and works great with their Alteon web switches to provide load balancing and web cache redirection. Performance is pretty impressive, too. http://www.nortelnetworks.com/products/01/pcc/index.htm

Re: Intervlan Connectivity is not working? [7:23744]

2001-10-22 Thread MADMAN
You must either have the msfcautostate disabled or a bug:) I just thought I see for myself again though I know I've seen it several times. This switch is running 6.3.1 and IOS 12.1(8a)E4. SRM is really new, haven't set it up yet but you can get the flexwan redundancy in the config-sync mode a

Ask for suggestions about network security career [7:23816]

2001-10-22 Thread swei yang
Just got CCNP last week. Not sure what to do next. I more interested in network security file. Show I go for CCIE or Cisco's security cert. If I really want join in computer/network security fild as my career, what's the best way to achieve it? Thanks for your suggestion. __

Re: Cisco Study Library for Sale [7:23047]

2001-10-22 Thread Patrick Bass
Why don't you put them on e-bay ? Your upset because no one wants to buy your books ? Sorry about your brain tumor and all, but trust me, not everyone on the list is like the jerk who left you the first e-mail. If I were you, I'd try e-bay. ""Will's e-mail"" wrote in message [EMAIL PROTECTED]

RE: Cisco Study Library for Sale [7:23047]

2001-10-22 Thread Puckette, Larry (TIFPC)
Will, I understand why you say what you do. I have learned it's safer to be a lurker on this list as well because of the few participants that have to advertise their 'superiority complex' to the world. Most are not that way though. It's just easier to see and remember the worst of people. Your ci

Re: over 1700 passing ccie written every month [7:23680]

2001-10-22 Thread nrf
Uh, there is no such thing as the JCIE. Don't you mean the JNCIE? ""Wojtek Zlobicki"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Juniper Cert > > > > Uh, what exactly is the JCIE? > > > > > > > > > > > > > > > > > > ""Wojtek Zlobicki"" wrote in message > > [EMAIL PROT

Re: over 1700 passing ccie written every month [7:23680]

2001-10-22 Thread Wojtek Zlobicki
I did :( And was corrected :) ""nrf"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Uh, there is no such thing as the JCIE. Don't you mean the JNCIE? > > > > > > > ""Wojtek Zlobicki"" wrote in message > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > > Juniper Cert > > > > >

RE: a question from lan switching book [7:23764]

2001-10-22 Thread xie rootstock
i am clear now, and thank you very very much for explain this point to me Leigh Anne Chisholm wrote: > > Think of it like this. Shared is as many people in a 10 foot > by 10 foot > room as you can stuff. The size of the room can be an analogy > for the > bandwidth of the network and the numbe

RE: a question from lan switching book [7:23764]

2001-10-22 Thread xie rootstock
thanks all kindly answers, :) Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=23822&t=23764 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [

Re: Route Reflectors and Peer Groups [7:23765]

2001-10-22 Thread Henry D.
Hi there, Did you ever get an answer, or figured this out ? I can't quite get a clearer understanding of what they're talking about in the excerpt you submitted either. I was looking at the BGP case studies on cisco's web site and I still can't get it. Thanks ""Lupi, Guy"" wrote in message [EM

can not understand this sentence [7:23824]

2001-10-22 Thread xie rootstock
why 2 repeaters only gains five meters of distance?simply because it increases the number of ports avaiable in the system from lan switching please help me again Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=23824&t=23824 -- FA

Re: Aironet Access points Range [7:23758]

2001-10-22 Thread Neal Rauhauser
The AP350 is a 100 milliwatts or +20dBm. The 'duck' antenna that ships with the unit has 2.2dBi of gain. The dBi rating indicates gain over an isotropic radiator - a theoretical perfect point radiator in free space. The 2.2 dB of gain indicates that there is a little bit of focusing of the radi

Off list, but help with High spec PC....... [7:23826]

2001-10-22 Thread Neal, Tim
Hi all, I'm finally looking for a high spec PC for home, but don't want to go to the space age and pay for it - if you know what I mean. I'm looking for mega performance from current specs...Best options look like building the system and I'm after some advise as where to go 1. The AMD At

Re: can not understand this sentence [7:23824]

2001-10-22 Thread Priscilla Oppenheimer
At 08:21 PM 10/22/01, xie rootstock wrote: >why 2 repeaters only gains five meters of distance?simply because it >increases the number of ports avaiable in the system > >from lan switching It sounds like you're reading a book on switching when you should be reading a book on basic Ethernet. Look

RE: Ask for suggestions about network security career [7:23816]

2001-10-22 Thread Dan Faulk
Would be interested in this subject as well. I'm at that point where I could go either way and have concentrated on subjects common to both CCIE R/S and CCIE Security but must commit to one path soon as it may well be I only get one shot at getting this right(for once). Security is pulling a lot o

how to use F/R end-to-to keepalive feature? [7:23831]

2001-10-22 Thread john zou
hi, Refer to the link: http://www.cisco.com/univercd/cc/td/doc/product/software/ios121/121cgcr/wan_ c/wcdfrely.htm#xtocid2218540 Frame Relay end-to-end keepalives enable monitoring of PVC status for network monitoring or backup applications and are configurable on a per-PVC basis with configur

how to use end-to-end keepalive feature? [7:23832]

2001-10-22 Thread john zou
Hi, Refer to the link: http://www.cisco.com/univercd/cc/td/doc/product/software/ios121/121cgcr/wan_ c/wcdfrely.htm#xtocid2218540 Frame Relay end-to-end keepalives enable monitoring of PVC status for network monitoring or backup applications and are configurable on a per-PVC basis with configurab

RE: Ask for suggestions about network security career [7:23816]

2001-10-22 Thread Don Claybrook
I'm looking at this issue from the non-CCIE-of-any-sort-as-yet perspective, but doesn't the security CCIE require all of the knowledge of a R/S CCIE, plus the security components? And if so, why not get the R/S CCIE first and then work on the security CCIE? In this way, you could blow right past

SPF timer in OSPF [7:23834]

2001-10-22 Thread Jerry Seven
Hi, In OSPF, is SPF algorithms running periodically or just invoked when route change happens? If the first one is true, what's the command to change it? I saw "timer spf" in CCO, but seems for other purpose. Thanks, Jerry _ Do You Yahoo

Summarizing OSPF to IGRP in lab. [7:23835]

2001-10-22 Thread Ryan Ngai Hon Kong
Hi! I guess this question might shoot up several times, but I'm trying my luck here if someone could point/reforward back the similar question earlier. My question scenario is summarizing and redistributing OSPF /25 or above mask into IGRP route. As we can see here, the IGRP might advertise and

Help in setting up a lab!! [7:23836]

2001-10-22 Thread Alexandre Carvalho
Dear Router/switches gurus!! Here goes a simple question that will help me out a lot from now one.. I just bought the following equipments from a company that ran out of business: 4 2511 3 AS2511RJ 1 2501 3 catalyst 1200 (older than my grandma!!!) I heard that the IOS of the 1200 is similar to

Re: SPF timer in OSPF [7:23834]

2001-10-22 Thread malay patel
FYI, I belive, SPF algorithms calculates new routing table when ever there are changes. Malay Patel --- Jerry Seven wrote: > Hi, > > In OSPF, is SPF algorithms running periodically or > just invoked when route > change happens? If the first one is true, what's > the command to change it? >

Re: Off list, but help with High spec PC....... [7:23826]

2001-10-22 Thread Wojtek Zlobicki
Do you want to buy online ? Newegg.com apparently has very good pricing and great service. > 1. The AMD Athlon chips are faster and much cheaper than building an > equivalent Pentium system? Pentium ? Whats that ? :) > 2. There's not usually too much difference in the chip prices either, $10

Committed Access Rate calculations [7:23839]

2001-10-22 Thread Jon Tucker
rate-limit output access-group 101 2000 24000 32000 conform-action set-prec- transmit 5 exceed-action set-prec-transmit 0 rate-limit output access-group 102 1000 24000 32000 conform-action set-prec-transmit 5 exceed-action drop rate-limit output 800 16000 24000 conform-action set-pre

RE: Upgrading IOS image on 2500 series routers. [7:23713]

2001-10-22 Thread Chuck Larrieu
I had to set this up myself recently. Don't you have to add the interface command to indicate which interface is the TFTP server address. MANAGER(config)#ip tftp ? source-interface Specify interface for source address in TFTP connections mine didn't work until I added this command. Chuck -

Re: Switching exam question [7:23497]

2001-10-22 Thread Jonathan Hays
Good point. Although I did not originate this thread, a hearty thanks to all posters!! I learned something here... Priscilla Oppenheimer wrote: > That makes sense. A hierarchical network design is already a tree! > > Thanks. > > Priscilla > > At 10:55 PM 10/19/01, Leigh Anne Chisholm wrote: > >

RE: Cisco Token Ring switch config [7:23756]

2001-10-22 Thread JffryH(Yahoo)
1. To create broadcast domain, you need at least one TrCRF and one TrBRF. Associate TrCRF with TrBRF you create, assign ring#, bridge# to them. Note that switch call both TrCRF and TrBRF vlan but they are not the same. If you want analogy to transparent bridge type of switch, TrBRF will more like

RE: Cisco Token Ring switch config [7:23756]

2001-10-22 Thread JffryH(Yahoo)
1. To config VLAN, http://www.cisco.com/univercd/cc/td/doc/product/lan/cat3920/ct3920ug/vlantut.htm 2. To setup telnet management. http://www.cisco.com/univercd/cc/td/doc/product/lan/cat3920/ct3920ug/config.htm#39377 http://www.cisco.com/univercd/cc/td/doc/product/lan/cat3920/ct3920ug/console.htm

RE: Route Reflectors and Peer Groups [7:23725]

2001-10-22 Thread JffryH(Yahoo)
1. You don't need to worry about this issue after IOS 12.0. Some version of 11.3 also support that and Also have no such problem. Just discard all the restriction and you will be OK. http://www.cisco.com/warp/public/459/29.html 2. The restriction is now a history. If you want to know: it is becaus

Re: help with troubleshooting Cisco VPN connection [7:23695]

2001-10-22 Thread chris
In your config below the vpn client is being assigned an address that is on a different subnet than the inside interface of the pix and there is no sign of a router on that subnet (no default inside route to a router). BTW, you may want to get rid of the conduit permit any any! Chris ""Anh Lam"

RE: IP Tunnel on different port? [7:23750]

2001-10-22 Thread JffryH(Yahoo)
Mostly, it will not work. Because firewall may look into the packet of ftp and http and decide to deny them. Also, your protected lab may not be visible from outside, e.g. firewall will block all traffic to, say, ip address of your router. If that case, no packets can arrive to your router. You

Re: AW: OT: Enable secret hacking [7:23670]

2001-10-22 Thread Mike Sweeney
You were thinking along my lines with parallel processing. I have a feeling it's not too difficult anymore to set up the killer cluster.. more then likely using virtual connections.. But then again, if someone wants in that badly.. I would worry more about "social engineering" which is always a

Re: Design Question - Spanning-tree Protocol. [7:23614]

2001-10-22 Thread K Paré
I agree with Henry. If you have EtherChannel configured on the uplinks, you should not have any blocked ports as EtherChannel allows parallel links to be treated by spanning tree as one link. Do a "show port channel" and ensure Channel Status says "channel" to ensure EtherChannel is enabled on the

RE: Help in setting up a lab!! [7:23836]

2001-10-22 Thread Kevin Campbell
didn't you just ask me this on ebay -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Alexandre Carvalho Sent: Monday, October 22, 2001 10:10 PM To: [EMAIL PROTECTED] Subject: Help in setting up a lab!! [7:23836] Dear Router/switches gurus!! Here goes a

How can it be done? Help [7:23842]

2001-10-22 Thread Calvin Sung
Dear all, I am not sure if it work or not. I go through the study material of BGP but I haven't heard of this kind of solution. Would you comment on it? I got a vendor purposing a solution for load balancing internet traffic. Here are the details. We got 2 internet providers. One of them is spe

Bad mask /27 [7:23844]

2001-10-22 Thread JimYam
I have a Cat 2900XL. If I confg "ip add 10.86.115.128 255.255.255.224" on VLAN 1, I will get an error of "Bad mask /27 for address 10.86.115.128" Have you encountered this problem and how can I fix it? Thanks. Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=23844&t=23844 -

Re: Bad mask /27 [7:23844]

2001-10-22 Thread Priscilla Oppenheimer
With that subnet mask, the address you are configuring has a node of 0. Priscilla At 12:03 AM 10/23/01, JimYam wrote: >I have a Cat 2900XL. If I confg > >"ip add 10.86.115.128 255.255.255.224" on VLAN 1, I will get an error of > >"Bad mask /27 for address 10.86.115.128" > >Have you encountered t

BGP default-originate bug [7:23847]

2001-10-22 Thread Chuck Larrieu
found a good one yesterday while going through a series of BGP neighbor options entering the command "neighbor a.b.c.d default-originate" causes a router reload. every time. I did a search on CCO and came up with Bug Id : CSCdr53754, which states that: The default originate command is deprecate

Re: Help in setting up a lab!! [7:23836]

2001-10-22 Thread EA Louie
> Here goes a simple question that will help me out a lot from now one.. > I just bought the following equipments from a company that ran out of > business: > > 4 2511 > 3 AS2511RJ > 1 2501 > 3 catalyst 1200 (older than my grandma!!!) Your grandma is only 9 years old? ;-) of course, the 'Cresce

RE: Bad mask /27 [7:23844]

2001-10-22 Thread Chuck Larrieu
change the address to 10.86.115.129. you are attempting to use the network address as a node address. HTH Chuck -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of JimYam Sent: Monday, October 22, 2001 9:04 PM To: [EMAIL PROTECTED] Subject: Bad mask /27 [7

Re: Bad mask /27 [7:23844]

2001-10-22 Thread David C Prall
0-31 32-63 64-95 96-127 128-159 160-191 192-223 224-255 Are your address ranges. 128 is the network address and 159 is your broadcast. David C Prall [EMAIL PROTECTED] http://dcp.dcptech.com - Original Message - From: "JimYam" To: Sent: Tuesday, October 23, 2001 12:03 AM Subject: B

Re: Bad mask /27 [7:23844]

2001-10-22 Thread John Neiberger
With a /27 mask, 10.86.115.128 is a subnetwork address. You should use 10.86.115.129, the first available host address in that subnet. HTH, John On Tue, 23 Oct 2001 00:03:42 -0400, JimYam wrote: | I have a Cat 2900XL. If I confg | | "ip add 10.86.115.128 255.255.255.224" on VLAN 1, I will

RE: Bad mask /27 [7:23844]

2001-10-22 Thread Dave
JimYam, 10.86.115.128 would be the "network" address if you are using a mask of 255.255.255.224. Trying configuring the switch with 10.86.115.129. Using a mask of 255.255.255.224 creates subnets of 32 addresses, of which the first and last address in each subnet will be the network and broadcas

Re: Bad mask /27 [7:23844]

2001-10-22 Thread JimYam
Thanks Everyone, Oops! Didn't pay attention. That got me...:-) Jim ""John Neiberger"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > With a /27 mask, 10.86.115.128 is a subnetwork address. You should use > 10.86.115.129, the first available host address in that subnet. > > H

Re: Scripting Router Configs [7:23810]

2001-10-22 Thread Geoff Zinderdine
Expect is the defacto standard for any scripted interaction with network devices. It is an awesome little app that uses Tcl and is available for free. Expect you can download from: http://expect.nist.gov/ Tcl for Windows you can get from: http://www.activestate.com/Products/ActiveTcl/download.p

Re: Slow wan link. TCP traffic "ok", UDP not okay. Please help! [7:23853]

2001-10-22 Thread Chuck Larrieu
validating this thought, I have had reason to upgrade my router pod IOS images of late. Cisco's router Software Loader uses TFTP to copy new images into flash via a direct ehternet to ethernet connection. copying 16 meg images takes an inordinate amount of time, especially considering there are on

Re: How can it be done? Help [7:23842]

2001-10-22 Thread Brian
You could have the asia specific provider just send you their routes and default to the other. Bri - Original Message - From: "Calvin Sung" To: Sent: Monday, October 22, 2001 8:50 PM Subject: How can it be done? Help [7:23842] > Dear all, > > I am not sure if it work or not.

  1   2   >