RE: BGP Connectivity Problem [7:74100]

2003-08-19 Thread [EMAIL PROTECTED]
What about mobile IP or VPN to border router and get an internal IP for the tftp server's point of view... Just in a typing mood. Martijn -Oorspronkelijk bericht- Van: Eddie [mailto:[EMAIL PROTECTED] Verzonden: maandag 18 augustus 2003 15:06 Aan: [EMAIL PROTECTED] Onderwerp: Re: BGP

RE: PIX xlate question [7:74012]

2003-08-19 Thread [EMAIL PROTECTED]
I think the config is too complex for what it (seems) needs to do. If you used PDM, you also can start over from scratch, think you rules over hard, draw a map with all the interfaces and subnets. What is the propose of these rules (nat 2 / glob 2 ) together? is there some mail/www server

RE: Data Center Design [7:74126]

2003-08-19 Thread [EMAIL PROTECTED]
Also I always say you need to do some reading on your own, physical or network design. That said, check the data center safe white paper at the site, you know. I studied myself trough cases for my CISSP (physical security, data contingency, disaster recovery, hot/warm/cold backup site / data

RE: PIX and Router Setup Question [7:74141]

2003-08-19 Thread HORVATH TAMAS
Hi! If there is not another reason, which you didn't mention, the easiest method to solve your problem, if you do not configure NAT on PIX. In this case internal adresses will be seen by the router, so you have to configure the router to NAT the web and e-mail servers in statioc way, and to know

RE: PIX and Router Setup Question [7:74141]

2003-08-19 Thread Chirag Arora
Just disable the nat function on PIX for inside network using the nat 0 command...the traffic will reach the router with private source IP where u can nat... Chirag Arora -Original Message- From: Michael Barnhart [mailto:[EMAIL PROTECTED] Sent: Tuesday, August 19, 2003 8:36 AM To:

Cisco Wireless [7:74157]

2003-08-19 Thread Johan Bornman
Is there a utility/software available to sniff wireless communication to confirm for instance that the 128bit encryption is doing what it suppose to do? This e-mail may contain confidential information and may be legally privileged and is intended only for the person to whom it is addressed. If

RE: PIX and Router Setup Question [7:74141]

2003-08-19 Thread Joel Satterley
You'd be better off just using NAT on the PIX, it's what it was made for. Then just secure the 1721 as a perimeter router. NAT'ing twice could cause problems. -Original Message- From: Michael Barnhart [mailto:[EMAIL PROTECTED] Sent: 19 August 2003 04:06 To: [EMAIL PROTECTED] Subject:

ISDN dialer rotatry groups [7:74159]

2003-08-19 Thread Ants
Hi, have a C3640 with ISDN dialin capability currently around 40 dialer interfaces setup and would like to streamline memory used.. rotary groups will give me that function but not sure on how to set it up and how exactly it works with 'hunting' phone numbers also pro's and cons of using this

problem after upgrading 3620 IOS [7:74160]

2003-08-19 Thread star star7
i get a message that memory is not enough for decompressing the IOS image after upgrading my 3620 with 12.2 IOS , but i have 32MB DRAM , and 16MB flash , it says you have to manually set the memory space , what is the problem , how i do it previous IOS was 11.1 Message Posted at:

RE: Cisco Wireless [7:74157]

2003-08-19 Thread Dom
IIRC, AirSnort should be able to do this. Best regards, Dom Stocqueler SysDom Technologies Visit our website - www.sysdom.org -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: 19 August 2003 09:31 To: [EMAIL PROTECTED] Subject: Cisco Wireless [7:74157] Is

RE: Is it possible to upgrade 2500 series to a 2600 se [7:74122]

2003-08-19 Thread Karl HUTCHINSON
Not a problem really. Why only yesterday I upgraded my 50cc Honda Melody Scooter to a full blown race proven Ducati 999 SP3 Superbike with only a spanner and a couple of nuts. Mind you I had to take the nuts back later to their institution as they were missed about tea time. A CCNA???

Re: ISDN dialer rotatry groups [7:74159]

2003-08-19 Thread Devrim Yener KUCUK
Hi Dialer rotary-groups are point-to-multipoint interfaces for ex:this is a dialer rotary group sample int bri x dialer rotary y To: Sent: Tuesday, August 19, 2003 11:49 AM Subject: ISDN dialer rotatry groups [7:74159] Hi, have a C3640 with ISDN dialin capability currently around 40 dialer

RE: Cisco Wireless [7:74157]

2003-08-19 Thread [EMAIL PROTECTED]
If you want check that the association is encrypted, try checking the association table. For checking that traffic is encrypted try Airopeek, Airsnort etc. Martijn -Oorspronkelijk bericht- Van: Johan Bornman [mailto:[EMAIL PROTECTED] Verzonden: dinsdag 19 augustus 2003 10:31 Aan:

RE: Data Center Design [7:74126]

2003-08-19 Thread [EMAIL PROTECTED]
Try sans.org / reading room/ for papers on disaster recovery, data security. for network data center design try cisco.com SAFE whitepaper. Like I said, this is a high responsibility. Really do consider hiring a 3th party consultant, if only to set up things. Martijn Time Frame

Re: problem after upgrading 3620 IOS [7:74160]

2003-08-19 Thread Manuel Rojas
What feature set are you trying to install? For example, the 12.2(1) IP PLUS feature set requires 48MB DRAM and 16MB Flash whereas the IP only feature set requires only 32MB DRAM and 8MB Flash. If you are trying to intall all feature sets then you will need at least 64MB DRAM and 16MB Flash.

Re: PIX and Router Setup Question [7:74141]

2003-08-19 Thread Greg Owens
I would let the Firewall handle the NATing. If you just want the router to perform NAT, you need to use NAT 0 on the PIX. The border router should only do basic filtering and routing. From: Michael Barnhart Date: 2003/08/18 Mon PM 11:06:03 EDT To: [EMAIL PROTECTED] Subject: PIX and Router

RE: PIX and Router Setup Question [7:74141]

2003-08-19 Thread [EMAIL PROTECTED]
Tell me if I am wrong: (off my hat) Nat on pix only would cause me to use the 1700 as router/ routed subnet between pix1700. Because I am using a private range, I need to address a packet from a private IP address and to internet / from internet to a private ip address. Wich would not work.

Linux [7:74168]

2003-08-19 Thread Johan Bornman
Which website(s) is the best to get the know how with Linux - beginner level This e-mail may contain confidential information and may be legally privileged and is intended only for the person to whom it is addressed. If you are not the intended recipient, you are notified that you may not use,

Re: ISDN dialer rotatry groups [7:74159]

2003-08-19 Thread Devrim Yener KUCUK
Hi Dialer rotary-groups are point-to-multipoint interfaces for ex:this is a dialer rotary group sample int bri x dialer rotary y To: Sent: Tuesday, August 19, 2003 1:27 PM Subject: Re: ISDN dialer rotatry groups [7:74159] Hi Dialer rotary-groups are point-to-multipoint interfaces for

RE: ISDN dialer rotatry groups [7:74159]

2003-08-19 Thread [EMAIL PROTECTED]
if you mean nvram, OK, I am not aware of RAM usage per dialer int. Ants, Dialin so you need a lot dialer int for callback destinations/routing? A rotary group is a designation for a group of physical interfaces (grouped together with a rotary number) that dialer interfaces can use so that you

RE: Is it possible to upgrade 2500 series to a 2600 se [7:74171]

2003-08-19 Thread Dom
Did you get SmartNet for the Ducati or did the licence for the Honda cover it? Best regards, Dom Stocqueler SysDom Technologies Visit our website - www.sysdom.org -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: 19 August 2003 11:55 To: [EMAIL PROTECTED]

IPSEC with 2 ISPs to Single destination [7:74173]

2003-08-19 Thread CCNP .CA
Configuration setup. Site to site vpn. /- ISP 1 R1 ---ISP 2 ISP 3 --- R3 Physical Interfaces: R1 has 2 interfaces connected to 2 ISPs R3 has 1 interface connected to 1 ISP. Logical: R1 has 2 IPSEC encapsulated GRE tunnels to R3. 1 Single Endpoint. R3 has

Re: Linux [7:74168]

2003-08-19 Thread Manuel Rojas
Take whatever it is that you are trying to do and google it. Add the words 'linux' and 'HOWTO'. for example, linux sendmail HOWTO I've yet to find a site that is a complete source of HOWTO's, not to mention that some HOWTO's can be written more confusing than others. If you're running redhat

RE: problem after upgrading 3620 IOS [7:74160]

2003-08-19 Thread Andrew Larkins
The new IOS is heavy on DRAM - the only way to solve this would be to upgrade the DRAM memory in the box or have a smaller feature set code. It is very important to read the memory requirements before uploading the code. Newer images can use up to 64MB and greater of DRAM Andrew -Original

RE: PIX and Router Setup Question [7:74141]

2003-08-19 Thread Joel Satterley
What's your reason for having the subnet between the 1700 PIX private ? Maybe I'm missing something here, but the PIX is a firewall should be firewalling, not the router. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: 19 August 2003 12:52 To: [EMAIL

Re: DSL over Dry Copper [7:74117]

2003-08-19 Thread Dain Deutschman
Here is an interesting link about dry copper... http://www.panix.com/~oppedahl/lads/ Dain Deutschman wrote in message news:[EMAIL PROTECTED] Hi All, Does anyone know if Cisco makes a product similar to the Pairgain Campus HRS or Celsian G250 LAN Extenders? I want to create a dsl connection

Re: DSL over Dry Copper [7:74117]

2003-08-19 Thread Dain Deutschman
I used a couple of Pairgain Campus HRS devices to do this a couple of years ago. We had an occasional disruption of service...but overall it worked very well. To order dry copper you just call your phone company and ask the about it. A couple of years ago it was appr. $70 p/m from qwest at each

Re: DSL over Dry Copper [7:74117]

2003-08-19 Thread MADMAN
You first need to find out if your local teleco even sells it. I don't think it is a business most providers are interested in. Dave Ryan Finnesey wrote: How do you order dry copper? Ryan -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] Sent: Monday,

Re: Cisco Secure VPN 642-511 [7:73919]

2003-08-19 Thread Alex Lee
Just received e-mail from Cisco that they would send me the INFOSEC letter of recognition after I signed the Cisco Certification Agreement. I am spending time on other interesting stuffs which is not Cisco and not sure if I would sit for recert. Kevin Wigle wrote in message news:[EMAIL

Re: DSL over Dry Copper [7:74117]

2003-08-19 Thread
Ryan Finnesey wrote in message news:[EMAIL PROTECTED] How do you order dry copper? call your local burglar alarm company first. ask exactly what they order from your telco. then call the telco and order that. since this is dry pair, it does you no good unless you have another side, meaning you

RE: Linux [7:74168]

2003-08-19 Thread Paul Ingram
Hello, Try http://linux.org or http://www.linuxcentral.com/_v3/ http://www.isu.edu/departments/comcom/unix/workshop/unixindex.html Also a good book that is not focused on one vendor is the LPIC Bible. And of course always O'Reilly has many on *nix. Also Using Linux ISBM: 078716232 Last year

Hello Computers [7:74137]

2003-08-19 Thread Jesse Loggins
Does anyone here have any experience with the Hello Computers CCIE Written Bootcamp? They claim to train you for the CCIE written in two days, and guarantee that you will pass after their training. Yet they only use Bruno's Book. I am not an employee or advertiser for this company nor am I looking

RE: Possible Errata Additions: CCIE(TM): Cisco Certifi [7:74184]

2003-08-19 Thread Marco P. Rodrigues
I was hoping someone from the publishing company or even an author would have read my message. An author did and confirmed these errors and several more. I figured they were wrong just wanted to confirm. Just scary to think if mistakes like this are made on material I understand imagine stuff I'm

RE: DSL over Dry Copper [7:74117]

2003-08-19 Thread [EMAIL PROTECTED]
What about the 2950 series LRE ? Long reach ethernet? Tell us about the specs, you have them. Cisco Long Range Ethernet (LRE) solution leverages Very High Data Rate Digital Subscriber Line (VDSL) technology to dramatically extend Ethernet services over existing Category 1/2/3 twisted pair

RE: BGP Connectivity Problem [7:74100]

2003-08-19 Thread [EMAIL PROTECTED]
Not completely on topic, sorry It is about a router, not a pc box. Martijn -Oorspronkelijk bericht- Van: Jansen, M Verzonden: dinsdag 19 augustus 2003 8:15 Aan: Eddie; [EMAIL PROTECTED] Onderwerp: RE: BGP Connectivity Problem [7:74100] What about mobile IP or VPN to border

Has anybody tested Mimisc's Virtual Lab (simulator) ? [7:74182]

2003-08-19 Thread Chris
It looks promising. They say it fully supports the Cisco IOS. http://www.gambitcomm.com/site/products/index_vlab.html Thanks for your opinions Chris Message Posted at: http://www.groupstudy.com/form/read.php?f=7i=74182t=74182 -- **Please support

RE: Linux [7:74168]

2003-08-19 Thread Schlotterer, Matthew
All the documentation you will need is here. http://www.tldp.org/ This is pretty good as well. http://wwwacs.gantep.edu.tr/linux/rute/ -Original Message- From: Manuel Rojas [mailto:[EMAIL PROTECTED] Sent: Tuesday, August 19, 2003 9:32 AM To: [EMAIL PROTECTED] Subject: Re: Linux

RE: DSL over Dry Copper [7:74117]

2003-08-19 Thread Daniel Cotts
We did it several years ago using some 3Com gear (still have it boxed up somewhere). We had an office site two blocks from the CO. Loop length wasn't an issue. We gave them lots of business so they gave us dry pair at a nominal cost (IIRC less than $5 per month per line). The problem is when a

Re: Linux [7:74168]

2003-08-19 Thread rick
On Tue, 19 Aug 2003, Johan Bornman wrote: Which website(s) is the best to get the know how with Linux - beginner level Try Justlinux. Rick This e-mail may contain confidential information and may be legally privileged and is intended only for the person to whom it is addressed. If

RE: IPSEC with 2 ISPs to Single destination [7:74173]

2003-08-19 Thread Reimer, Fred
I think you want the next hop in your route-maps to be 192.168.10.2 and 192.168.20.2 respectively. Send it through the GRE tunnel. Fred Reimer - CCNA Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338 Phone: 404-847-5177 Cell: 770-490-3071 Pager: 888-260-2050 NOTICE; This

RE: OT Microsoft worm [7:74045]

2003-08-19 Thread Daniel Cotts
Should that happen we had best all have contingency plans in place to share information - think POTS and fax. Cisco will have to have a way to get info and IOS updates out to customers. Maybe a BIG CD burner and FedEx delivery. -Original Message- From: Chuck Whose Road is Ever Shorter

CIT Exam Question [7:74195]

2003-08-19 Thread Dave Neipert
I will be taking the CIT exam this week and would like to know what is considered passing. When taking the Transcender exams my average score was around 85%; if anyone has any information it would be greatly appreciated! Thanks! Message Posted at:

RE: Cisco Wireless [7:74157]

2003-08-19 Thread Priscilla Oppenheimer
Johan Bornman wrote: Is there a utility/software available to sniff wireless communication to confirm for instance that the 128bit encryption is doing what it suppose to do? Is it WEP? Then it is not likely doing what it is supposed to do. With a tool such as AirSnort or Kismet and enough

virus found in sent message Re: Re: My details [7:74196]

2003-08-19 Thread
A virus was found in an Email message you sent. This Email scanner intercepted it and stopped the entire message reaching its destination. The virus was reported to be: Worm.Sobig.F Please update your virus scanner or contact your IT support personnel as soon as possible as you have a

Trunking ISL and 802.1Q on the same Interface [7:74197]

2003-08-19 Thread johnman johnman
Have couple of VLAN some with ISL and other with 802.1Q. Can I trunk all of them (ISL and 802.1Q) on one physical fastethernet on my 2620 router ? _ Add photos to your messages with MSN 8. Get 2 months FREE*.

RM Process? [7:74198]

2003-08-19 Thread [EMAIL PROTECTED]
I have 2 AS5300 that have been rebooting pretty consistently. I upgraded both of them and I am still having the issue. I am seeing the following error: 00:20:31: %SYS-2-MALLOCFAIL: Memory allocation of 6000 bytes failed from 0x6032D3BC, alignment 0 Pool: Processor Free: 4353544 Cause: Memory

RE: Trunking ISL and 802.1Q on the same Interface [7:74197]

2003-08-19 Thread Reimer, Fred
No you don't (have a couple of VLANs, some with ISL and others with 802.1q). The trunking protocol is not an attribute of a VLAN, it is an attribute of a physical (trunking) port. You have some VLANs, put them on whatever trunk port you desire. Fred Reimer - CCNA Eclipsys Corporation, 200

RE: What cables need to be used for an AS2511-rj [7:73987]

2003-08-19 Thread Chibwe, Oliver J, NEO
Use Octal cable I can't remenber the P/N but if you go to E-bay and seach you get for $19-16 and if you can't find please let me knowwill help some more. Thank you Ollie ATT Common Backbone 866-397-7309 Opt 1 -Original Message- From: Natchaya Radhikulkaralak [mailto:[EMAIL

Re: Trunking ISL and 802.1Q on the same Interface [7:74197]

2003-08-19 Thread MADMAN
johnman johnman wrote: Have couple of VLAN some with ISL and other with 802.1Q. Can I trunk all of them (ISL and 802.1Q) on one physical fastethernet on my 2620 router ? VLANs don't run trunk encapsulations, trunks do so I don't understand your question. The trunk encap is how

Re: Data Center Design [7:74126]

2003-08-19 Thread Stevo
I'd be interested in both those docs Larry... Larry Letterman wrote in message news:[EMAIL PROTECTED] Are you interested in doing the ground up, or just the network Side..I have been involved in both... Larry Letterman Cisco Systems -Original Message- From: [EMAIL PROTECTED]

RE: can't ping any ip on the network from SC0 [7:74064]

2003-08-19 Thread Doan Nguyen
Hitesh, I'm assuming you're running two separate OS, one for the msfc and one for the cat switch. On the MSFC if you've enable routing on it, you should be able to ping all other IPS. However under your CAT OS, this is what you need to do for your SCO to ping out. Assign an IP address to your

RE: GRE Tunnel Recursive Routing Error [7:74035]

2003-08-19 Thread Doan Nguyen
You're getting a race condition because you're injecting the tunnel's ip address into your control plane routing. Your tunnel protocol is using your routing to transfer payload from one end to another. However when you use the ip address of the tunnel and injecting it into your routing protocol,

RE: PIM Mode question [7:73108]

2003-08-19 Thread Doan Nguyen
Steve, I'm working on multicast design a new DoD network. At this level we are a pretty big network with OC192 pipes. At this level I rather not use any dense mode type of implementation with my multicast design if possible. Got too many other protocols to deal with already. I'm currently at

VPN Client [7:74205]

2003-08-19 Thread Tunde Kalejaiye
hi guys, will a vpn client that can run 3DES connect to a router running DES? if no is it still possible to get the DES version? cant seem to find it on cisco website. regards, Tunde Message Posted at: http://www.groupstudy.com/form/read.php?f=7i=74205t=74205

Configuring 3750 Switches [7:74210]

2003-08-19 Thread Azhar Teza
Hi Folks, Has anyone configured 3750 switches in a Stacking Mode? What I understand that it creates a one virtual switch. 1) I have five 3750 switches, and I need to know if I will have to create five virtual interfaces say for the managment. If I choose to go with VLAN 5 subnet 172.16.10.0/24

RE: ISDN Commands [7:73347]

2003-08-19 Thread Doan Nguyen
do a show isdn ? this should list all the options for ISDN that you can do. It's been several years since I worked with ISDN but I know it's there. Message Posted at: http://www.groupstudy.com/form/read.php?f=7i=74209t=73347 -- **Please support

Re: VPN Client [7:74205]

2003-08-19 Thread Darren Ward
Yes, the 3DES client will negotiate DES with a DES only router or pix. It comes down to crypto policy configuration, it can only negotiate what's on offer from the VPN gateway. Darren On Tue, 19 Aug 2003, Tunde Kalejaiye wrote: hi guys, will a vpn client that can run 3DES connect to a

RE: Trunking ISL and 802.1Q on the same Interface [7:74197]

2003-08-19 Thread Reimer, Fred
No you don't (have a couple of VLANs, some with ISL and others with 802.1q). The trunking protocol is not an attribute of a VLAN, it is an attribute of a physical (trunking) port. You have some VLANs, put them on whatever trunk port you desire. Fred Reimer - CCNA Eclipsys Corporation, 200

RE: how does firewall switch port block Blaster [7:74092]

2003-08-19 Thread Richard Campbell
Thanks so much.. I think most of the company will get the worm bcoz of the laptop mobile user, they connect to net from their home and infected by the worm as there is no personal firewall on the laptop and then they connect to office network and infect others. How about blocking switch

RE: VPN Client [7:74205]

2003-08-19 Thread Reimer, Fred
It depends on the configuration of the hub. If the hub supports both 3DES and DES, then the client will be able to connect. What, exactly are you asking??? Fred Reimer - CCNA Eclipsys Corporation, 200 Ashford Center North, Atlanta, GA 30338 Phone: 404-847-5177 Cell: 770-490-3071 Pager:

RM Process? [7:74198]

2003-08-19 Thread [EMAIL PROTECTED]
I have 2 AS5300 that have been rebooting pretty consistently. I upgraded both of them and I am still having the issue. I am seeing the following error: 00:20:31: %SYS-2-MALLOCFAIL: Memory allocation of 6000 bytes failed from 0x6032D3BC, alignment 0 Pool: Processor Free: 4353544 Cause: Memory

Re: Trunking ISL and 802.1Q on the same Interface [7:74197]

2003-08-19 Thread MADMAN
johnman johnman wrote: Have couple of VLAN some with ISL and other with 802.1Q. Can I trunk all of them (ISL and 802.1Q) on one physical fastethernet on my 2620 router ? VLANs don't run trunk encapsulations, trunks do so I don't understand your question. The trunk encap is how

RE: BSCI 640-901 [7:74056]

2003-08-19 Thread Nick Ooka
Congratulations on passing the BSCI exam! One comment on your book list. I'm a little surprised that you didn't include Jeff Doyle's Routing TCP/IP vol.1 in your library. It's a thick book(over 1,000 pages), but it covers IGP fairly well. Also, for BGP, I used Halabi's Internet Routing