RE: BGP question

2000-09-14 Thread Deloso, Elmer G.
Title: RE: BGP question Hi, From my own research/study on BGP i recall that: Local Preference - preference given to a BGP route to compare it with other routes TO THE SAME destination.         Since this is LOCAL to the AS, it does NOT get passed to EBGP neighbors. You use this..  

Security using Cisco technologies

2000-09-19 Thread Deloso, Elmer G.
Title: Security using Cisco technologies Hi, all. I need some info on how different Cisco technologies fare in real-world scenarios in implementing security for the network. For instance, I always come across this advice that access-lists should not be used as a replacement for other security

Re: Jobs

2000-09-20 Thread Deloso, Elmer G.
Title: Re: Jobs Stephane, Send me your resume as an attachment ( [EMAIL PROTECTED] ). Elmer

Monitoring/Troubleshooting Catalysts : what does this SYSLOG output mean?

2000-09-21 Thread Deloso, Elmer G.
Title: Monitoring/Troubleshooting Catalysts : what does this SYSLOG output mean? Hi, group. Just want to know why i'm getting this in my syslog on my 2912 whose port4 is connected by fiber to a 5500. I do know that there's a lot of trafiic coming into this port and once in a while the LED turn

Routing Tables

2000-07-13 Thread Deloso, Elmer G.
Title: Routing Tables When comparing Distance Vector with Link State protocols, although the procedures are different, isn't the end result for both the same? That is, having a complete map of the entire network? Please correct me if I'm missing something. Thanks. Elmer Deloso

Access-Lists

2000-07-24 Thread Deloso, Elmer G.
Title: Access-Lists Hi, all. If I can ping an IP address but can't access the site via browser, can you tell me where in the access-list this might be blocking the site? I can't find any entry that specifically denies www, and there is an entry "permit ip A.B.C.D" for that specific address. D

spanning-tree

2000-08-01 Thread Deloso, Elmer G.
Title: spanning-tree Hi, all. I 've tried increasing the port cost to have spanning-tree go in one direction, like SwitchA would be forwarding and SwitchB would be blocking. But it still ends up with SwitchB as the forwarding switch. Am i to configure another entry somewhere? Thanks in advanc

Easier way to do Access-lists

2000-08-17 Thread Deloso, Elmer G.
Title: Easier way to do Access-lists Hi, group. Below is a sample ACL, and I need to find out if there's an easier way to input these seemingly redundant entries. Thanks. access-list 111 permit tcp host 214.3.1.50 any range 6000 6063 log access-list 111 permit tcp any host 214.3.1.50 range 600

BGP4 implementation

2000-09-05 Thread Deloso, Elmer G.
Title: BGP4 implementation Hi, group. I need some help on filtering BGP4. The scenario is this: my routerA is set up with a T1 to routerB via static classB address. However, RouterB is also connected to other clouds running BGP4. I do want users in RouterB cloud to get to my network, but I don

RE: BGP4 implementation

2000-09-05 Thread Deloso, Elmer G.
CTED]] Sent: Tuesday, September 05, 2000 9:31 AM To: Deloso, Elmer G. Cc: '[EMAIL PROTECTED]' Subject: Re: BGP4 implementation Are all these routers in different AS's?  Same AS? Does routerA have only 1 transit connection, and thats routerB? If so, why even run BGP? There are

Using BGP: technical questions needing clarification

2000-09-08 Thread Deloso, Elmer G.
Title: Using BGP: technical questions needing clarification Hi, all. I've done quite a bit of reading on BGP Routing and still have some gray areas. 1. Loopback address - if this isn't assigned to a Physical interface, how exactly does this "eliminate dependency that would otherwise occur whe

2900 AutoInstall

2000-06-28 Thread Deloso, Elmer G.
Title: 2900 AutoInstall Hello, group. Is there an equivalent to an AutoInstall for 2900XL switches? For e.g., Hughes ATM switches not only query the BootP server for auto-configuration of its IP address, but also auto-download its configuration file. If there is a way to accomplish this with t

Spanning Tree

2000-07-03 Thread Deloso, Elmer G.
Title: Spanning Tree Hi, all. First of all, I just want to test if I'm able to post on the forum at all since I don't see any responses to my first posting. If this goes through, can someone tell me why would Spanning Tree Algorithm need a designated port when the root port has already been es

Access List & Catalyst

2000-07-07 Thread Deloso, Elmer G.
Title: Access List & Catalyst Hi, all. Is there a way to implement access-lists on Catalyst ports/VLAN's? Just curios because I could not find any reference to ACL in the IOS documentation for the switch. My goal is actually to be able to say to a switch,"Only allow this MAC address to go thro

SAP filters

2000-07-11 Thread Deloso, Elmer G.
Title: SAP filters Hello, group. In my review for ACRC, I came across several areas that were not easy to digest. One of them is SAP filters. It says: when SAP input filter is in place, the propagated SAP updates represent the entire table, but contain only a subset of all services. When a SAP

SMTP access list

2000-07-12 Thread Deloso, Elmer G.
Title: SMTP access list Hi, all. Just to verify my understanding of extended access-lists: this continues to parse the entries even after a match has already been found, so if the first few lines have a "permit" and later down the last few lines it encounters a "deny", what does the router do?

Re: High CPU Utilisation

2001-01-29 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hello to all. As a follow-up, we found out the cause of this sudden spike in IP traffic from the intranet hitting the gateway router and causing a CPU utilisation spike which lasts untill all of this particular traffic is sent. Basically it is a database update from a UNIX box that runs via remote

Routing table entries

2001-02-02 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hi all. Why is it that one can traceroute to a destination IP address A.B.C.D. however when you do a show ip route A.B.C.D it says the address is not on the routing table? I'm getting my routes from an ISP via OSPF which lists several routes learned from it as an OSPF neighbor. Comments anyone?

Can this be summarised on the ACL?

2001-02-06 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hi,group. I'd like to verify if there is a way to define a mask to summarise this. Basically, i'd like to be able to summarise range 172.18.0.0 to 172.31.0.0 with a mask so I'll have one entry on the access-list. I can see doing a 172.16.0.0 0.0.15.255, however i want to EXCLUDE 172.17.0.0 network

Another strange routing behaviour

2001-02-16 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hi, all. I might have posted something similar to this not too long ago but I might not have beed specific enough. Here's the story: HostA ---Router1---Router9HostB If i traceroute from within Router1 to HostB, it goes through. But if i do the same from HostA, it stop

Advertising networks in OSPF

2001-02-22 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hello, all. I would like to confirm if this is correct: do you need an to have an IP address assigned to the same router that you want to advertise the IP's network out via OSPF? I noticed this with my test routers where I need to advertise say 144.20.0.0 which belongs to RouterA but is not doing

Re:Advertising networks in OSPF

2001-02-23 Thread Deloso, Elmer G (WPNSTA Yorktown)
Alan, Thanks for the reminder. I did finally remember the redistribute static command and got it working the way it's supposed to. On another note, I've decided to do away with OSPF and do static routes instead since I've got only a few networks to advertise anyway. What compelled me to ditch OSPF

Router software crash

2001-03-14 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hi, group. Can someone explain why my 2514 keeps recycling the boot phase over and over? Here's the output with the error in bold letters. Thanks. Router>sh ver Cisco Internetwork Operating System Software IOS (tm) 2500 Software (C2500-D-L), Version 12.0(6), RELEASE SOFTWARE (fc1) Copyright (c) 19

Bandwidth Monitoring software

2001-01-11 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hi, all. Can anyone suggest an easy tool that you can use to check a segment's generated traffic, e.g. if you want to check how much kbps / mbps is going through a part/segment of your network? This would help pinpoint the segment(s) that hog the available bandwidth. I know that TrafficDirector d

strange switching behaviours

2001-01-16 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hi, group. I thought that if you use a Switch, e.g. 2924XL, each port gives you dedicated line, and if you use a Hub all ports share the bandwidth. However while playing with SnifferPro I can see all the traffic on the pure IP network, including IPX/SAP, whereas if I connect Sniffer to a FastHub40

Re: starnge switching behaviuors

2001-01-16 Thread Deloso, Elmer G (WPNSTA Yorktown)
Eric, Thanks for the reply. I still have to sort out the sniffer capture i did last night. But i think you're likely on the right track here. I'll keep you informed. Elmer Deloso _ FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.ht

Strange Router CPU Utilisation

2001-01-19 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hello, gang. I'd like to know if anyone has seen this behaviour of a 4505 (v.11.2) where it is able to handle heavy traffic throughout the day with no more than a 50% cpu utilisation max but shows a few periods of spikes up to 98% when there is no WAN traffic say 4am or 9pm. These spikes show up a

Re:strange router CPU utilisation

2001-01-19 Thread Deloso, Elmer G (WPNSTA Yorktown)
I apologise for not being specific. I did not use the MRTG output as a measure of CPU utilisation, but rather to alert me when the spike in traffic occurs and then look into the CLI for the % CPU utilisation. I'm hoping it's not a scheduled ICMP barrage coming from the inside, but I'll find out so

IP accounting

2001-01-23 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hello, group. Can someone give me feedback on implementing IP Accounting on the gateway router? I'd like to know it's plus / minus sides, cpu/memory load issues, etc. CCO doesn't seem to have much info on it. Thanks in advance. Elmer Deloso _ FAQ, list archives, a

RE: Some Great Cisco BGP Links

2000-09-25 Thread Deloso, Elmer G (WPNSTA Yorktown)
Title: RE: Some Great Cisco BGP Links http://www.cisco.com/univercd/cc/td/doc/product/software/ios113ed/113ed_cr/n p1_c/1cbgp.htm http://www.cisco.com/warp/customer/459/21.html http://www.cisco.com/warp/customer/459/22.html http://www.cisco.com/cpress/cc/td/doc/cisintwk/ics/icsbgp4.htm

Cisco links

2000-10-03 Thread Deloso, Elmer G (WPNSTA Yorktown)
Title: Cisco links Group, I hope these links provide answers to questions still banging on many heads like mine when reviewing for these exams. From Vo-IP to SRB, etc. Elmer http://www.cisco.com/univercd/cc/td/doc/product/software/ios113ed/113ed_cr/np1_c/ http://www.cisco.com/univercd/cc/td/

RE: Token Ring Network Reference - SC30-3374-02

2000-10-04 Thread Deloso, Elmer G (WPNSTA Yorktown)
Title: RE: Token Ring Network Reference - SC30-3374-02 Try this link. http://www.networking.ibm.com/tra/whitepapers/TR00-3.htm HTH, Elmer

RE: SmartCertify CBT software for study

2000-10-10 Thread Deloso, Elmer G (WPNSTA Yorktown)
Title: SmartCertify CBT software for study Don't believe the salesman. If I had to do it again I wouldn't waste my money on CBT. I've used their MCSE and ICRC products and I think it's a waste of time and money. Dealing with them is like buying from a used car salesman ( my personal experi

Access-list and switching

2000-10-19 Thread Deloso, Elmer G (WPNSTA Yorktown)
Title: Access-list and switching Hi, group. Is there a way to implement access-list type of security on Catalyst 2924? I know that to do Layer -3 switching will need at least the 4000 series. Short of implementing a VLAN, is there a way I can tell the port or switch to allow only certain IP ad

Non-ISL InterVLAN Routing

2001-04-03 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hi,Group. I have been searching for sample configurations on InterVLAN routing without using ISL (bec. I don't have a FE interface) and I could not find any on CCO. My questions then are: 1. Is my only option then to use subinterfaces on the Ethernet port on the "Router-on-a-stick" design? Meani

RE: ATM in home lab [7:287]

2001-04-12 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hi. I've done some research into this setup and the dollar figures. First of all, the books indicate you can do direct ATM router-to-ATM router without any switch in between. But even a 4500-M ATM module costs around $4275. I'm referring to the NM-1A-T3 which is a DS-3. If you know of a cheaper pr

RE: Catalyst worth the price? [7:2250]

2001-04-27 Thread Deloso, Elmer G (WPNSTA Yorktown)
Ejay, The 1924's are not modular, and they sell on e-bay for as low as $450. I just picked up a 2912XL-EN for $650. All 12 ports are 10/100, and it has a faster CPU. HTH. Elmer Deloso -Original Message- From: Hire, Ejay [mailto:[EMAIL PROTECTED]] Sent: Friday, April 27, 2001 9:58 AM To:

RE: port number list on DOS [7:2809]

2001-05-02 Thread Deloso, Elmer G (WPNSTA Yorktown)
DOS in a Windows environment would use "netstat -a". I think you need a TCP Client plugin to get this same functionality in a pure DOS environment. Elmer -Original Message- From: Priscilla Oppenheimer [mailto:[EMAIL PROTECTED]] Sent: Tuesday, May 01, 2001 5:39 PM To: [EMAIL PROTECTED] Sub

RE: Skyline Computer Corporation [7:2833]

2001-05-02 Thread Deloso, Elmer G (WPNSTA Yorktown)
I learned a few weeks ago that Wendell Odom is one of the 5 CCIE's working for www.skylinecomputer.com. One of these 5 gentlemen is a double CCIE. They might have more by now. They also have a training centre in Reno, NV. Elmer -Original Message- From: William E. Gragido [mailto:[EMAIL P

RE: IOS upgrade, failure [7:3513]

2001-05-08 Thread Deloso, Elmer G (WPNSTA Yorktown)
Phil, If this is the case, please explain then why i was able to upgrade my 2516 from a 10.2 to 12.1(8) when there were no boot rom chips on the board? The two 1/2-inch squares were empty. Yet the sh ver says it has IGS-RXBOOT something. Am i missing someting here? I did put 16F-16D in it. But I r

Unable to Erase FLASH. [7:4065]

2001-05-10 Thread Deloso, Elmer G (WPNSTA Yorktown)
hi, all. i'm trying to upgrade a 16Mb FLASH in my 2516, but either the RouterSoftware Loader or doing copy tftp flash can't erase the existing Flash code. Here's what I get... Router(boot)#copy tftp flash System flash directory: No files in System flash [0 bytes used, 16777216 available, 16777216

RE: Gear for CCNP and CCIE preperation! [7:4058]

2001-05-10 Thread Deloso, Elmer G (WPNSTA Yorktown)
I just started putting together my lab which consists of 4500 - 4 port serial, 2 Ether 4500 - 2 port serial, 2 Ether, 1 TR 2503 2504 2514 2516 I based this on the interface requirements to follow allong Stephen Hutnik's CCIE Lab Study Guide. All 2500's are ver.12 series, 4500's are 11.3. OC-3 Sin

RE: Simulate ATM [7:4981]

2001-05-18 Thread Deloso, Elmer G (WPNSTA Yorktown)
Phil, I'm a novice when it comes to ATM, so does it mean I won't be able to practice PVC's if I just connect the two ATM interfaces on my 4500 back-to-back? What would I be able to do or not do if I don't have an ATM switch in between the routers? Unfortunately, the ATM book by CiscoPress has all

Examine: Doyle's protocol analyser [7:5241]

2001-05-21 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hi, all. Does anybody know the name of the company that wrote the "Examine" protocol analyser featured in Jeff Doyle's Routing TCP/IP Vol.1? Thanks. Elmer Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=5241&t=5241 -- FAQ, list

ATM int are up, unable to ping. [7:5901]

2001-05-25 Thread Deloso, Elmer G (WPNSTA Yorktown)
Hi, everyone. I've just installed a single-mode ATM module on each of my 4500's, both routers recognize the card. I configure them as shown below, however I can't ping even the local ATM interface even though it shows as being up. I also icluded the debug output. Please tell me what's not right. T

RE:ATM int are up, unable to ping. [7:5934]

2001-05-25 Thread Deloso, Elmer G (WPNSTA Yorktown)
Based on 3 people that have so far concurred on using subinterfaces before you can ping, it seems that Hutnik's first Lab exercise in the ATM chapter is technically wrong. If I can prove this I will certainly send him an e-mail to clear up the issue. I'll try this tonight and post the working conf

RE: RE:ATM int are up, unable to ping. [7:5934]

2001-05-30 Thread Deloso, Elmer G (WPNSTA Yorktown)
s are more sane and yes I can ping, from both routers to the other router. So, the lab is correct BUT they forgot the little thing about the clock if you're directly back-to-back. Plugged them both back into the LS-1010, took the clock off and things are back to normal. Nice little diversion

RE: Back to back Serial for Cisco 2621 [7:6497]

2001-05-30 Thread Deloso, Elmer G (WPNSTA Yorktown)
I just got 6 b2b serials from Robert Lowery for $24. I prefer these over the others because they're only 3 ft long and costs less than half the regular b2b cables. Not only that but they're a lot lighter too. Perfect for home lab setup. His e-mail is [EMAIL PROTECTED] Elmer -Original Message--

RE: Back to back Serial for Cisco 2621 [7:6497]

2001-05-31 Thread Deloso, Elmer G (WPNSTA Yorktown)
TED]] Sent: Wednesday, May 30, 2001 6:14 PM To: Deloso, Elmer G (WPNSTA Yorktown) Subject: Re: Back to back Serial for Cisco 2621 [7:6497] I'm assuming that was $24 each? -e- - Original Message - From: "Deloso, Elmer G (WPNSTA Yorktown)" To: Sent: Wednesday, May 30, 2001