RE: BRI [7:70059]

2003-06-03 Thread Dom
Show isdn status then use debug isdn q921 for more detailed information. Best regards, Dom Stocqueler CTO - SysDom Technologies -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: 03 June 2003 10:33 To: [EMAIL PROTECTED] Subject: Re: BRI [7:70059] Hi ppl, i

RE: IP addressing [7:70057]

2003-06-03 Thread Larry Letterman
See Inline. Hi, Can someone please check below, to see if I am going in the right direction. I have 3 sites A B C A wants 500 users. - should be a /23 B wants 2000 users - should be a /21 c unknown up to 200 - should be a /24 IP address range I have is as follows:- 10.225.200.0 to 10

RTP Cisco User's Group Meeting - June 4 2003 [7:70061]

2003-06-03 Thread Stephen Alston
Folks, The Research Triangle Park (RTP) Cisco User's group will meet on June 4th from 12:00 to 1:00 PM in the first floor conference room of the Lake Building on Cisco's RTP campus. This meeting's topic will be TAC procedures and best practices. The meeting will also include a guided tour thr

Re: BRI [7:70059]

2003-06-03 Thread koh jef
Hi ppl, i'm encountering some issues on the 2nd channel, it takes quite a while for it to come up despite the 1st channel hits the threshold, is there any command that i can issue to monitor on the 2nd channel? thanks regards, jef Message Posted at: http://www.groupstudy.com/form/read.php?f=

Re: Wireless Spec. question [7:69842]

2003-06-03 Thread DW
By kit I mean questions about the Cisco devices (1200 / 350 / Bridges etc), and their abilities, specs etc. I had no questions on the CLI at all.. ""1 cisco"" wrote in message news:[EMAIL PROTECTED] > Do you mean cisco interface when talking about the KIT? > Any questions on the cli? Mess

IP addressing [7:70057]

2003-06-03 Thread maine dude
Hi, Can someone please check below, to see if I am going in the right direction. I have 3 sites A B C A wants 500 users. B wants 2000 users c unknown up to 200 IP address range I have is as follows:- 10.225.200.0 to 10.225.219.255 I have worked the following:- For A the range is 10

IOS for 2500 series router. [7:70056]

2003-06-03 Thread Amir Tahir
Hi, I will be thankful to you if you could let me know from where i can download IOS version for my Home Cisco 2500 series routers. Thanks & regards Amir Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=70056&t=70056 -- FAQ, list a

RE: OSPF over FR [7:70025]

2003-06-03 Thread Troy Leliard
Hi Catherine, Because you are using point to point sub interfaces on the one routea and one the other just using the real interface, OSPF behaves differently and has different helo / dead timers etc, and this is why you are not getting all your routes. You need to make sure that all ospf interfa

RE: PIX access-list [7:70022]

2003-06-03 Thread Troy Leliard
Silly thing to overlook, but best to check anyway is that you have applied the ACL to the correct interface Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=70053&t=70022 -- FAQ, list archives, and subscription info: http://www.group

PIX Access for Inside IP Pool [7:70050]

2003-06-03 Thread Danial Morison
Hi group, we have a pix 520 with 3 interfaces, what we want is to allow outside 10.20.20.0/24 to inside 10.16.206.21/32.Although 10.0.0.0/8 is defined as inside network. and the server 10.16.206.21 already has a static translation entry to a public IP address. static (inside,outside) 203.125.1

RE: Router Configuration Backups?? [7:70009]

2003-06-03 Thread Jens von Bülow
Check out RANCID - http://www.shrubbery.net/rancid/ RANCID - Really Awesome New Cisco confIg Differ Rancid monitors a router's (or device's) configuration, including software and hardware (cards, serial numbers, etc)

PIX 520 Static NAT [7:70049]

2003-06-03 Thread Danial Morison
Hi group, we have a pix 520 with 3 interfaces, what we want is to allow outside 10.20.20.0/24 to inside 10.16.206.21/32.Although 10.0.0.0/8 is defined as inside network. and the server 10.16.206.21 already has a static translation entry to a public IP address. static (inside,outside) 203.125.1

RE: multiple isakmp policies question-No authentication [7:70051]

2003-06-03 Thread Mark W. Odette II
Richard- Google is your friend Fluf-fluf http://www.cisco.com/warp/public/110/cvpn3k_pix_ias.html -Original Message- From: Richard Campbell [mailto:[EMAIL PROTECTED] Sent: Monday, June 02, 2003 11:37 PM To: [EMAIL PROTECTED] Subject: RE: multiple isakmp policies question-No authen

Lab prep in Sydney [7:70048]

2003-06-03 Thread Pichai Ruangroj
Hi, Where can I find a lab prep in Sydney? Please give me the contact of them. Thanks Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=70048&t=70048 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/c

Re: OSPF over FR [7:70025]

2003-06-03 Thread Danny Free
Catherine, You forget to define ospf network type in each frame interface. Add this interface config command: ip ospf network point-to-point Thank, Rivalino Exactly right but you will have to do 2 more things: 1)Since you changed the hello-interval to 30 on Router A's point-to-point subinte

RE: Virtual MAC and Port Security [7:70030]

2003-06-03 Thread Mark W. Odette II
David- it's been a while since I did this, but from what I understand you to say, you are trying to provide fault tolerance (fail-over) at the NIC level for these servers. I can't vouch for the 6500s, but on the 5500s that I used to manage, we used Intel NICs in a "teaming" fashion (which was to p

Re: appletalk stuff [7:69961]

2003-06-03 Thread Scott Nelson
Also, are you doing it via "one arm routing" or do you have separate interfaces in each vlan? ( fa0/0 in vlan or lan x, fa0/1 in vlan or lan y, etc., etc. ) http://www.cisco.com/warp/public/779/smbiz/service/knowledge/wan/subifs.htm You should definitely use sub-interfaces though.. ( Referen

RE: Multiple VLANs in a single switch port [7:69991]

2003-06-03 Thread Erick B.
Multiple-VLANs per port can be configured on certain models, but if you do multiple VLANs then you can't do dot1q or ISL trunks anywhere on the box. one or the other... thats the limitation. I wonder why cisco doesn't do protocol-based VLANs, etc like some other vendors. It's a sweet feature that

RE: multiple isakmp policies question-No authentication [7:70043]

2003-06-03 Thread Richard Campbell
Hi.. Sorry me again, I just realise that W2K can act as a RADIUS server, is it true?? I tried to installed cisco CSACS software on my W2K server, it prompt me that another program is using RADIUS port, pls disable it, it means my W2K server come with RADIUS? Where to configure it? the aaa.bb

RE: permit only even subnets [7:70039]

2003-06-03 Thread Peter Paul
To match the even subnets, use access-list 1 permit 192.168.0.0 0.0.254.255 To match the odd subnets, use access-list 1 permit 192.168.1.0 0.0.254.255 Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=70040&t=70039 -- FAQ, list ar

RE: Redistribute OSPF to RIPv1 [7:69969]

2003-06-03 Thread Peter Paul
you could try to configure area 1 range command at the abr, R2. Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=70041&t=69969 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report miscon

permit only even subnets [7:70039]

2003-06-03 Thread lost in space
Dear groupstudy members, Lets say we have these networks: 192.168.1.0/24 192.168.2.0/24 192.168.3.0/24 192.168.4.0/24 192.168.5.0/24 how do we permit only even subnets and deny all the odd subnets? what would be the network number and wildcard mask should i use in the access-list statement? sor

Cisco's BGP Course is Okay [7:70038]

2003-06-03 Thread Mwalie W
Hi All, This is just a comment arising after I read a paper in the current IEEE Communications Magazine. I was a little surprised. The paper is, of course, a refereed paper and was written by three guys, one of them a PhD. I was surprised because I could write the same paper just from the knowle

BGP Policy-based Routing -- applicable for inbound and outbound [7:70037]

2003-06-03 Thread Hinwoto
hi guys, Can BGP Policy-based routing be configured both on inbound and outbound interfaces ? I know that it is definitely for inbound interface. And can the policy-based routing also be used to alter the final destination of the packet ? I don't think there's an option to set that. Please, show

Fwd: Re: Problem with RSA ACE SERVER (aka SecureID) [7:70035]

2003-06-03 Thread Pete Felber
There used to be a key value called 'shared secret' that you had to configure on the ACE server as well as the 'requesting' device (and unfortuanately it was plain text). I haven't played with an ACE server for about 5yrs so that may have changed. Pete d tran wrote: >All, >I am trying to get

Re: OSPF over FR [7:70025]

2003-06-03 Thread Rivalino YMT.
Catherine, You forget to define ospf network type in each frame interface. Add this interface config command: ip ospf network point-to-point Thank, Rivalino On Mon, 2 Jun 2003, Catherine Wu wrote: > I am testing Hub-Spoke for OSPF over FR, > > I verified the neighbor adjacency,but I couldn't s

RE: multiple isakmp policies question-No authentication [7:70034]

2003-06-03 Thread Richard Campbell
Hi.. Daniel and Dear all, Thanks for the guide. May I know whether Remote VPN client to PIX515 can be authenticated by my W2K server or not? I recall I can in VPN3000. I am not familiar about RADIUS. May I ask whether I should install a RADIUS server on my network or the PIX515 itself can

Re: Multiple VLANs in a single switch port [7:69991]

2003-06-03 Thread koh jef
thanks guys, wat abt 4xxx, 5xxx, 6xxx series? well i m not talking abt trunking though... regards, jef Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=70032&t=69991 -- FAQ, list archives, and subscription info: http://www.groupstud

Re: [CISCO] OSPF over FR [7:70025]

2003-06-03 Thread Patrick Aland
Have you run any debug's (debug ip ospf events, etc) and are the routes showing in the ospf database (sh ip ospf data) and just not in the routing table? If so check out: http://www.cisco.com/warp/public/104/24.html On Mon, Jun 02, 2003 at 09:51:48PM +, Catherine Wu wrote: -- ---

Virtual MAC and Port Security [7:70030]

2003-06-03 Thread David Vital
I have several Servers that are going to be doing NIC pooling. So I'm supposed to see a virtual MAC address instead of the actual physical address of the NIC's. I run the NICs from one server to different switches for fault tolerance. If I have several 6500 series switches how can I set it up fo

Re: CCDP Recertification [7:69911]

2003-06-03 Thread Kevin Wigle
There are also Appletalk and 700 routers on the CCNP re-cert. I decided to review the 700 documentation on CCO. The 700 is not listed on the router list. Fortunately searching on the 700 brought me to the right docs, although most of the links say, end of sale, etc. Kevin Wigle - Original

RE: appletalk stuff [7:69961]

2003-06-03 Thread Priscilla Oppenheimer
It's funny that we are seeing this message after seeing all those complaints about the CCDP recert exam including AppleTalk! :-) =?WINDOWS-1255?Q?=F7=E5=F8=EF__=EC=E1 wrote: > > Does anyone have an idea on that: > we use 7200 in the center of a big bay-networks routers > we use ipx , ip and apple

RE: PIX access-list [7:70022]

2003-06-03 Thread Elijah Savage
This is possible because you are using win2k now and if that is the case for AD stuff you need to open port 445 also. -Original Message- From: jmullins1 [mailto:[EMAIL PROTECTED] Sent: Monday, June 02, 2003 4:52 PM To: [EMAIL PROTECTED] Subject: PIX access-list [7:70022] I'm trying to al

RE: Router Configuration Backups?? [7:70009]

2003-06-03 Thread Wilmes, Rusty
i believe solarwinds can alert you if the config changes. I don't think it will schedule the config backups. -Original Message- From: Stevo [mailto:[EMAIL PROTECTED] Sent: Monday, June 02, 2003 9:37 AM To: [EMAIL PROTECTED] Subject: Router Configuration Backups?? [7:70009] Hey Group, I

OSPF over FR [7:70025]

2003-06-03 Thread Catherine Wu
I am testing Hub-Spoke for OSPF over FR, I verified the neighbor adjacency,but I couldn't see route 2.2.2.2 and 3.3.3.3 in the routing table, RouterA#sh ip ospf nei Neighbor ID Pri State Dead Time Address Interface 3.3.3.3 1 FULL/ -00:01:4110.1

PIX access-list [7:70022]

2003-06-03 Thread jmullins1
I'm trying to allow inbound UDP traffic from the DMZ web server to the inside BDC. I'm getting the following: 2003-05-23 15:02:45 Local4.Critical 10.0.1.1 May 23 2003 15:02:19: %PIX-2-106006: Deny inbound UDP from 172.16.2.2/137 to 10.0.1.19/137 on interface dmz I have the following entries in t

LLQ on Ethernet subinterfaces [7:70020]

2003-06-03 Thread neil K
Can somebody tell me how to configure LLQ on Ethernet subinterfaces connected to two VLAN's. Will appreciate it. Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=70020&t=70020 -- FAQ, list archives, and subscription info: http://ww

RE: CCDP Recertification [7:69911]

2003-06-03 Thread jsicuran
Yes, the CCDP recert exam is old and messed up. The CCNP recert exam was updated for content over the last three years so it has bgp, hands on simulation and ISIS. IT will get better and tougher if the CCNP recert is any hint. Look at the current changes to the DP program. It will be more difficult

RE: Router Configuration Backups?? [7:70009]

2003-06-03 Thread Lupi, Guy
Kiwi CatTools works very well for configuration backups and is inexpensive (it might be free, I don't recall). http://www.kiwisyslog.com/ -Original Message- From: Stevo [mailto:[EMAIL PROTECTED] Sent: Monday, June 02, 2003 12:37 PM To: [EMAIL PROTECTED] Subject: Router Configuration Back

Re: Router Configuration Backups?? [7:70009]

2003-06-03 Thread Vincent Tocco
We use Pancho, it's a perl script that downloads the configs via snmp. Just setup a cron job on a unix box.. http://www.panchoproject.org/ After you setup that, you can run diff on the files to see if anything changed.. Maybe every night? -Vince Stevo wrote: > Hey Group, > > I have a number

RE: Router Configuration Backups?? [7:70009]

2003-06-03 Thread Kevin Stone
A number of perl scripts(I don't have links handy but check the archives) or Kiwi CatTools will back up the configs and let you know if they have changed. You can also use syslog to get notification of when it was changed. -Kevin > -Original Message- > From: [EMAIL PROTECTED] [mailto:[E

RE: CCDP Recertification [7:69911]

2003-06-03 Thread mailsub1
Congratulations! I just passed today (first time VERY lucky ;), and I have to agree that it is a crazy exam. A couple of the questions were so badly worded that I didn't understand them. I just thought that I'd add a few extra pointers for the unlucky ones who still have to take the exam. There a

RE: Router Configuration Backups?? [7:70009]

2003-06-03 Thread Pistone, Mike
CiscoWorks2000 will do all that and more, but that might be overkill for you. What you want can be acomplished with a few perl scripts and a few hours of programming. ___ Mike Pistone NASA - Russian Services Group Marshall Space Flight Center Huntsville, AL 35806

Re: PIX & Router [7:70001]

2003-06-03 Thread Darbi Yanitzi
No, you can not do that. ""Skarphedinsson Arni V."" wrote in message news:[EMAIL PROTECTED] > I have a router connected to a vlan trunk one for internet access, and one > for a remote branch,but then I have a pix that all my users connect throuhg, > and does the NAT, but then of course the users

Re: Multicasting Problem [7:69987]

2003-06-03 Thread Darbi Yanitzi
Do CGMP. wrote in message news:[EMAIL PROTECTED] > Hi All, > We need to enable multicasting support accross our network. Their are two > technologies available to limit the multicast > packets on the switch: 1) RGMP 2)CGMP. My routers support both these > technologies. Just wanted to know from th

PIM-SM Join Messages. [7:70014]

2003-06-03 Thread [EMAIL PROTECTED]
Hello, I have two questions here on the above. Are PIM joins sent multicast or unicast. Some docs says it's unicast, but I see it as multicast in my trace. Also, If a flow maintains state for a period of time, do PIM-Join messages get sent periodically to the RP or root of the source, if so how

Re: ccnp foundation 640-841, [7:69984]

2003-06-03 Thread Darbi Yanitzi
Not recently, but I took it a long time ago. Study the blueprint on Cisco's website. Cheers ""Hinwoto"" wrote in message news:[EMAIL PROTECTED] > hi guys,.. > > Has anybody taken this foundation exam 640-841 recently ? > Any advise.. please ..appreciate it. > Gonna give a shot .. > > cheers > hin

Router Configuration Backups?? [7:70009]

2003-06-03 Thread Stevo
Hey Group, I have a number of routers that don't get their configs backed up on a regular basis... does anyone have (or know of) any software products out there that will do the backups for me... or even better still, let me know if a config is changed by someone?? Thanks --Stevo Message Po

RFP response--- How to?-Help****** [7:70007]

2003-06-03 Thread J B
This question is for people with network management experience. I have to do a lot of things lately, and one of those things looks like is project management. The problem is that I'm not a project manager. How do you normally respond to RFP from clients. I think I understand what an RFP is, howe

Re: Multiple VLANs in a single switch port [7:69991]

2003-06-03 Thread Troy Leliard
Ofcourse you can only use the mswitchport mode multi if you dont have a trunk already... if you do you get the error Command rejected: One or more ports is already configured as a trunk port. Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=70006&t=69991 --

Re: Prolonged Batchlers Vs. CCNP ? [7:69483]

2003-06-03 Thread Carroll Kong
> This sort of thinking is why I've decided to skip the CCNP and just work on > the CCIE. As long as Cisco keeps it insanely difficult with the lab exam > being the majority of the work required it will be valuable. > > -- >John A. Kilpatrick Go for it! Skip the

Looking for a CCIE R&S studypartner in Holland [7:70005]

2003-06-03 Thread Iwan Hoogendoorn
Hello i am looking for someone who is allso preparing for CCIE LAB in The Netherlands... I live in Rotterdam... If someone is interested to be my study partner...please let me know... EMAIL = [EMAIL PROTECTED] TEL = +31647954616 Thank you! Message Posted at: http://www.groupstudy.com/form

RE: PIX Firewall 6.2.2 Inside network can not reach [7:69779]

2003-06-03 Thread Mark W. Odette II
Richard- As I had said in my last post, in analyzing his syntax, it appears he's trying to do Destination NAT and DNS Doctoring at the same time, for which it obviously doesn't work. I couldn't tell you if line 2 is auto-reversing what line 1 does by the PIX's operating code, but you are correct

RE: Multiple VLANs in a single switch port [7:69991]

2003-06-03 Thread Michael Montiverdi
Hi, I believe it depends on the switch, like Marco said. I have a Catalyst 3548XL and I can setup multiple vlans on one port. Thanks, Michael Montiverdi -Original Message- From: M.C. van den Bovenkamp [mailto:[EMAIL PROTECTED] Sent: Monday, June 02, 2003 9:15 AM To: [EMAIL PROTECTE

Re: Multiple VLANs in a single switch port [7:69991]

2003-06-03 Thread MADMAN
You don't say what type of switch so I'll assume a 2900/3500 switchport mode multi Dave koh jef wrote: > hi ppl, > > is there any way/s to configure mulitple VLANs in a single switch port? > > thanks!! > > regards, > > jef -- David Madland CCIE# 2016 Sr. Network Engineer Qwest Communi

RE: Multiple VLANs in a single switch port [7:69991]

2003-06-03 Thread Vikram JeetSingh
Sure there are! One is Multi Port and second, trunks. Search on CCO for details. Vikram -Original Message- From: koh jef [mailto:[EMAIL PROTECTED] Sent: Monday, June 02, 2003 5:43 PM To: [EMAIL PROTECTED] Subject: Re: Multiple VLANs in a single switch port [7:69991] hi pp

PIX & Router [7:70001]

2003-06-03 Thread Skarphedinsson Arni V.
I have a router connected to a vlan trunk one for internet access, and one for a remote branch,but then I have a pix that all my users connect throuhg, and does the NAT, but then of course the users in the remote branch that connect directly to the border router, cant access the internet as that ro

RE: Multiple VLANs in a single switch port [7:69991]

2003-06-03 Thread Peri Sophos
Put the port in trunk mode then multiple vlans can go in and out of the port. -Original Message- From: koh jef [mailto:[EMAIL PROTECTED] Sent: 02 June 2003 02:13 PM To: [EMAIL PROTECTED] Subject: Re: Multiple VLANs in a single switch port [7:69991] hi ppl, is there any way/s to con

RE: PIX to concentrator Problem ......Urgent [7:69988]

2003-06-03 Thread Steve Wilson
Check your network lists on the concentrator. They need to as explicit as possible. If you supernet any contiguous networks, ensure that you do not accidentally include a network that is really down another tunnel. Cheers, Steve Wilson CCNP CCDA Network Engineer -Original Message- From: [

RE: multiple isakmp policies question-No authentication [7:69996]

2003-06-03 Thread Richard Campbell
Hey... thanks.. finally I got response from my PIX515, but it just hang at securing communication channel stage (see below) and it doesn't authenticate the users. What config should I add to point it to my authentication server 192.168.1.201? For your info, my VPN client is installed at Win9

Re: Multiple VLANs in a single switch port [7:69991]

2003-06-03 Thread M.C. van den Bovenkamp
koh jef wrote: > is there any way/s to configure mulitple VLANs in a single switch port? Aside from ISL or 802.1Q trunking? The answer is 'it depends'. Mostly on what switch you're using. Most switches can't do it, but some can; Cisco's 2900 series can, for instance. Regards,

Problem with RSA ACE SERVER (aka SecureID) authentication for [7:69995]

2003-06-03 Thread d tran
All, I am trying to get the RSA ACE Server to authenticate VPN remote users that terminate VPN connection to my Pix firewall. So far it is not working and here is my scenario: Pix FW: Outside IP: 12.1.1.100 (netmask /21) Inside IP: 172.161.254 (netmask /24) DMZ IP: 172.18.1.254 (netmask /24