RE: Cisco inspection fee for used gear?? [7:73788]

2003-08-14 Thread Gary Crouch
This is out right theft by the hardware venders You pad for the software when you bought you should be able to transfer it. We sould demand right to transfer or buycot these companies -Original Message- From: Colin Weiner [mailto:[EMAIL PROTECTED] Sent: Sunday, August 10, 2003 6:40 PM To:

CRC frame errors and carrier transitions [7:52225]

2002-08-28 Thread Gary Crouch
our WAN connections dies about once a month and we always get lots of frame error and carrier transitions Pac Bell does not have a clue to why this is happening the have blamed our Equpment Cisco 3640 with Adtran TSU LS or timing errors but general have no clue. is there any way to clean this conn

klez crashed our router [7:47323]

2002-06-24 Thread Gary Crouch
I user brought in the w32.klez.h.mm virus our virus software was able to stop it from spreading but our router 3640 router stop responding and had to be restarted. Can this virus attack shares on networks connected to the router? can klez spread across the router using other then smtp? we cur

tftp server crashes when uploading new image [7:20961]

2001-09-24 Thread Gary Crouch
I am trying to upgrade my 3640 router from 11.1 to 12.5 when I try yo TFTP I get a app error the instruction at "0x006e6900" referenced memory at "0x006e6900" the memory could not be "read" click ok to terminate the program. I have used the same file and TFTP server to upgrade our other 3640 rout

Re: NBAR ACL and Redcreek Ravlin VPN devices [7:20615]

2001-09-20 Thread Gary Crouch
adding a permit any any for the IP address of the ravlin device to the top of the access list should fix this problem I'll check and see if there is a more secure fix to this. you should only need ports IP 50 and 51, UDP port 500 to be open I'm guessing your using IPSEC let me know if this does n

bocking code red and nimda virus [7:20612]

2001-09-20 Thread Gary Crouch
this link explains it better http://www.cisco.com/warp/public/63/nbar_acl_codered.shtml note this may also block the download of exe files req's IOS 12.1 or better this link explains it better http://www.cisco.com/warp/public/63/nbar_acl_codered.shtml note this may also block the download of e

Re: nimda virus [7:20523]

2001-09-20 Thread Gary Crouch
you can use NBAR I have set it up to block code red and it is also blocking mimda enable cef and follow direction in below link this should block any new IIS hacking viruses command to enable cef ip cef http://www.cisco.com/warp/public/cc/so/cuso/epso/sqfr/scdam_wp.htm any one know if this ca

Re: PIX out of a PC.... [7:19419]

2001-09-11 Thread Gary Crouch
I currently have a PIX 1000 that has a bad motherboard\CPU and I am planing to upgrade it the only difference is that the Intel boards have PIX flash code burned in to the BOIS to make a PIX firewall all you should need is the BIOS loader with the PIX code and a flash card. you can buy a new 16 me

PIX static addreess translation updated [7:8090]

2001-06-11 Thread Gary Crouch
config as below Address translation unable to pass traffic to server farm Have static and conduits configured added static route on fire wall to Internal router have statics routes on internal router to ISP router also have routes on servers Internet router---Outside int /-PIX---Inside int---In

Re: PIX static address translation question [7:8031]

2001-06-11 Thread Gary Crouch
be blocking ICMP or ports also. Can the inside machine ping the inside interface of the PIX? ----- Original Message - From: "Gary Crouch" To: Sent: Monday, June 11, 2001 2:06 PM Subject: PIX static address translation question [7:8031] > we have servers hosted at a ISP and ha

Re: PIX static address translation question [7:8031]

2001-06-11 Thread Gary Crouch
/11/01 12:27PM >>> Gary, To ping through the PIX firewall make sure you have the "conduit permit icmp any any" applied (or if you have a newer PIX OS you can use the "access-list" command). See http://www.cisco.com/univercd/cc/td/doc/product/iaabu/pix/pix_v50/config/con

PIX static address translation question [7:8031]

2001-06-11 Thread Gary Crouch
we have servers hosted at a ISP and have a back port connection and would like to give a client access thur our back port using one of our external IP address I have configure a static address translation for the external ip address and added a route for the internal address I can pig the interna

Re: traceroute !A * !A meaning [7:915]

2001-04-17 Thread Gary Crouch
you are correct This is a single 256k frame relay link >>> "Marty Adkins" 04/17/01 12:51PM >>> "Howard C. Berkowitz" wrote: > > Only a suggestion, but the fact that there are pairs of !A suggest > that there might be per-packet load balancing going on, and the ACL > applies only to one of the pa

traceroute !A * !A meaning [7:915]

2001-04-17 Thread Gary Crouch
what does the !A * 1A mean I think it mean blocked by access list am I right ? MCI-Frame#tracer 10.1.144.136 Type escape sequence to abort. Tracing the route to 10.1.144.136 1 192.168.228.53 !A * !A Thanks for the INFO what does the !A * 1A mean I think it mean blocked by access list

RE: Cable Pinout [7:60]

2001-04-10 Thread Gary Crouch
also the RJ45 Cable is a reverse cross over pin 1 goes to pin 8, pin 2 goes to pin 7, 3 goes to 6, 4 to 5, 5 to 4, 6 to 3, 7 to 2, 8 to 1. >>> "Garrison, Cyndi D." 04/10/01 09:37AM >>> DB-9 1- RX- 2- Ground 3- +5 Volt fused 4- Ground 5- TX- 6- RX+ 7- Ground 8- Ground 9- TX+ RJ45 1- Ground 2-

Re: PIX IOS upgrade

2001-04-03 Thread Gary Crouch
only thing I saw on Cisco site was a recommendation to upgrade one level at a time to avoid lossing Activation key make sure you write this down you can see be using the sh ver command also after you upgrade above 5.1 you can go back to 4.x something about damage to flash Good Luck >>> "Paul L H

Re: Strange problem, Pls help

2001-04-02 Thread Gary Crouch
I have the same problem at my site we are using BGP routing and when the link to our ISP thats provides us with the IP blocks goes down traffic goes out the other ling but tries to return on the down link because our bgp routes are be filter by the other provider that has agried to advertise them

Re: How do I backup the existing PIX ios 4.2 to a tftp server?

2001-03-29 Thread Gary Crouch
there should be a floppy behind the plate that has the IOS on it. if you can't find it I'll send you a copy of mine my ohter pix is = cuurently 4.2 and I will be upgrading that next as soon as I get the 5.3 version stable. I had problems with the conduit command not work and had to create access =

Conduit commands do not allow traffic to pass after 5.3(1)upgrade

2001-03-29 Thread Gary Crouch
after upgrading PIX 520 to 5.3(1) from 4.4 conduit commands do not allow = traffic to pass=20 I have to configure access-list and access-group for traffic to pass is = there a command to enable the conduits ? are there any other things you need to add to your old config after = upgraded to 5.3?

Re: How do I backup the existing PIX ios 4.2 to a tftp server?

2001-03-28 Thread Gary Crouch
command is=20 copy tftp://xxx.xxx.xxx.xxx/filename flash just sub your tftp address for the xxx.xxx.xxx.xxx and the name you want = the file called for filename besure to back up config as the upgrade wipes it out also copy down the = Activation Key number you will need it if you lose it during

Can not ping outside of PIX 520 after upgrade to 5.31

2001-03-27 Thread Gary Crouch
I have just finish upgrade our pix 520 from version 4.4 to 5.3(1) I am unable to ping the outside interface's ip address or anything outside = the fire wall from a pc attached to the inside interface I have tried=20 conduit permit icmp any any=20 and using an access-list to permit icmp any any an

Re: want a free copy of sniffer pro release 3.0

2001-03-16 Thread Gary Crouch
you can download a eval form the UK site. http://www.snifferpro.co.uk/downloads/default.htm >>> "roy" <[EMAIL PROTECTED]> 03/16/01 12:25AM >>> hi all i want a free copy of sniffer pro release 3.0, i have seen it in this = group before. who can kindly tell me the url to download it once more ? t

RE: TCPmag.com Salary Survey

2001-03-16 Thread Gary Crouch
try this link=20 http://tcpmag.com/salarysurvey/2001/default.asp? other link has old session attached >>> "John Neiberger" <[EMAIL PROTECTED]> 03/16/01 07:47AM >>> Hmmm...I wasn't able to get there either. I saw it a couple of days ago, though. I received a 500 Internal Server error so they m

smallest BGP Network size

2001-03-12 Thread Gary Crouch
What is the smallest network that can support BGP ? we have a /27 network with two ISP UUNET and @work=20 when the router is full configured for load balancing traffic going out = the @work connection does not come back router reports destionation net unreachable UUNET say /27 is not a problem=20