Re: cisco switches

2000-09-14 Thread John Kaberna
Well last time I checked this was a study group. And Cisco might care for their tests. So, it might be a good idea to know the difference. Its not that hard. I believe 4000 and up run switch IOS and everything below that is router type IOS. John - Original Message - From: Priscilla O

Re: max no of connections for vty

2000-09-15 Thread John Kaberna
You can't that I know of. - Original Message - From: jason yee <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Thursday, September 14, 2000 10:24 PM Subject: max no of connections for vty > hi , > I am a instructor currently delivering CCNA course.The > setup of the classroom consi

Re: foundation 2.0

2000-09-15 Thread John Kaberna
It is live.  I am scheduled for it this Monday although I'm going to push it back one day.  I'll let you guys know how it is.  I haven't even started studying for it so I don't expect much.   John   Jim Yam <[EMAIL PROTECTED]> wrote in message 8ps56r$31o$[EMAIL PROTECTED]">news:8ps56r$31o$[E

Re: Formatting the Flash

2000-09-15 Thread John Kaberna
Just boot the router as normal. Then from exec mode type: erase flash: Why would you want to do that though? Then you wont have an IOS to boot from. What do you mean what is the register values for booting in boot prompt? Not sure what you mean by that. John - Original Message - Fr

Re: BGP study question

2000-09-15 Thread John Kaberna
Its pretty simple actually.  Basically they both accomplish the same thing.  But the local pref is exactly that.  Local to the AS.  MED values are carried in to the next AS.  But, when an AS receives a MED value it does not propogate that value to other AS's.  Maybe someone else can explain

Re: Dial on Demand Routing

2000-09-15 Thread John Kaberna
This should be no problem. It will depend on hardware and IOS version too. But, I'd need to see a network drawing to tell you how to do it if you had the right stuff. Especially if you have firewalls in place. John - Original Message - From: Chris C. Burton <[EMAIL PROTECTED]> To: <[EM

Re: AS Number

2000-09-15 Thread John Kaberna
http://www.arin.net/cgi-bin/whois.pl - Original Message - From: Benny Leong (HTHK - Senior Engineer II - iServices Development, NNSD) <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Thursday, September 14, 2000 11:54 PM Subject: AS Number > Hi, > > I would like to know the AS # of an

Re: Re[2]: max no of connections for vty

2000-09-15 Thread John Kaberna
When I tried my only options were to start with 0-4 and end with 1-4.Not sure why it would be different. - Original Message - From: Thomas Peroutka <[EMAIL PROTECTED]> To: John Kaberna <[EMAIL PROTECTED]> Cc: jason yee <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>

Re: max no of connections for vty

2000-09-15 Thread John Kaberna
I tried on my 2600 at home. Wouldnt allow it. Have you actually done it? - Original Message - From: Thomas Peroutka <[EMAIL PROTECTED]> To: jason yee <[EMAIL PROTECTED]> Cc: <[EMAIL PROTECTED]> Sent: Friday, September 15, 2000 12:59 AM Subject: Re: max no of connections for vty router

Re: max no of connections for vty

2000-09-15 Thread John Kaberna
Maybe it works on 2500's and not 2600's. Anyone have a 2600 to try on? - Original Message - From: Atif Awan <[EMAIL PROTECTED]> To: John Kaberna <[EMAIL PROTECTED]>; Thomas Peroutka <[EMAIL PROTECTED]>; jason yee <[EMAIL PROTECTED]> Cc: <[EMAIL P

Re: max no of connections for vty

2000-09-15 Thread John Kaberna
Ok I think that settles it then. I'm running 12.07T 3DES/FW/IDS on my router not the Enterprise version. So that should solve Jason's problem. That is, if he has enough flash to run an enterprise version. John - Original Message - From: <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent:

Re: 2948G L3, route between Vlan

2000-09-16 Thread John Kaberna
I know this is being picky but there's no such thing as an RSM for the 6500. Only the 5500. Essentially its the same thing but the 6500's use MSFC cards instead. John - Original Message - From: jason yee <[EMAIL PROTECTED]> To: BB <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent: Friday, S

Re: line protocol down

2000-09-16 Thread John Kaberna
What the hell is turfing? Maybe I am stupid but I have never heard this term before. I am a firm believer in everyone having the right to say whatever he or she pleases. One cannot please everyone and anything someone says that is slightly controversial is bound to offend a bunch of people on t

Re: Foundation 2.0

2000-09-17 Thread John Kaberna
Foundation was available as of August 28th. There isn't an exam outline posted on CCO yet. If you are taking it in the next couple of days and don't know what's on it I suggest you consider rescheduling. This test covers Building Cisco Remote Access Networks, Building Multilayer Switch Network

Re: Cisco 3640 grunty enough for full-BGP routing?

2000-09-17 Thread John Kaberna
Title: Cisco 3640 grunty enough for full-BGP routing? This will work no problem.  I've done it at many sites.  My minimum recommended is exactly what you have.    John - Original Message - From: Jeff Wang To: [EMAIL PROTECTED] Sent: Sunday, September 17, 2000 9:17

Re: Cisco 3640 grunty enough for full-BGP routing?

2000-09-18 Thread John Kaberna
Title: Cisco 3640 grunty enough for full-BGP routing? The BGP routing table itself takes up less than 20MB of memory last time I checked (only a couple months ago).  I don't have access to a router running full BGP routes right this moment but someone should verify this.  I am fairly certain

Re: Route-Maps - BGP

2000-09-18 Thread John Kaberna
Shawn,   You still will not have true redundancy if you are using a single 3640.  If that router fails you will lose all 3 T1s.  Not sure what you are going to gain by moving this T1.  I think we will need a simple diagram to understand.  You mentioned BGP?  I thought these T1's were to a r

Re: PIX VPN Access

2000-09-18 Thread John Kaberna
You do not need an authentication server to use the VPN client. However, anyone that knows your pre-shared key will have access to your internal network. In order to use authentication you will need a TACACS or RADIUS server. What software version are you running? Also, do you have a failover

Re: Two WAN Links

2000-09-18 Thread John Kaberna
BGP will do the job "IF" you have a router more powerful that a 2621. Just put in 2 static routes with equal cost. Should load balance between the 2 links. Anyone disagree? I think we had a discussion on load balancing with static routes last week and someone verified this is the case. John

Re: Cisco 3640 grunty enough for full-BGP routing?

2000-09-19 Thread John Kaberna
ring. (Filtering a LOT...Like 80%). > > You can connect to a looking glass at www.merit.edu, and see the tables. > There is even a section you can ftp to to download the whole database. > > > Original Message Follows > From: "John Kaberna" <[EMAIL PROTE

Re: CCIE Questions...

2000-09-19 Thread John Kaberna
You people spend way too much time snitching. I bet a lot of you got beat up and teased frequently in high school. Let Cisco worry about its NDA. It doesn't need a bunch of dorky Boy Scouts (and Girls Scouts of course) doing its job for them. Geez people some of you need to get a life. John

Re: Router Bootup Problem

2000-09-19 Thread John Kaberna
If its new or under warranty call Cisco and get an RMA. Otherwise you'll have to buy a new one and xmodem an image on to it. John - Original Message - From: Peter Gray <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Tuesday, September 19, 2000 4:59 PM Subject: Router Bootup Problem

Re: CCIE Questions...

2000-09-19 Thread John Kaberna
u ask me. The only cert that means a thing in my opinion is the CCIE lab. John - Original Message - From: Louie Belt <[EMAIL PROTECTED]> To: 'John Kaberna' <[EMAIL PROTECTED]>; 'Lori S Carter' <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>; 'Brad

Re: PIX and OSPF

2000-09-19 Thread John Kaberna
Don't pass any info from the ISP inside.  Use the PIX as your default gateway for outbound traffic and on the PIX point the default to the inside ethernet of your Internet router.  On the Internet router point to your ISP.  Very standard practice.   John   Lorenzo Montezemolo <[EMAIL PROTECT

Re: Cisco 3640 grunty enough for full-BGP routing?

2000-09-19 Thread John Kaberna
87256 > > As you can see on this router, the output from sh ip bgp sum shows that the > BGP tables are really only 16Mb large, but the sh proc mem shows that the > BGP process overall uses about 71Mb. > > I hope this post helps the rest of the members of the list. > > > > -

Re: CCIE Questions...

2000-09-19 Thread John Kaberna
a large enough question database and changes the test frequently enough this won't be an issue. You people love to beat a dead horse don't you. John - Original Message - From: Miller, Nathan (AZ15) <[EMAIL PROTECTED]> To: John Kaberna <[EMAIL PROTECTED]>; Lori

Re: PIX and OSPF

2000-09-19 Thread John Kaberna
Like Howard mentioned early. Why would you do this? - Original Message - From: Omar Baceski <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Tuesday, September 19, 2000 3:05 PM Subject: RE: PIX and OSPF > let me explain > you must make a conduit that let pass the ospf unicast tra

Re: CCIE Questions...

2000-09-19 Thread John Kaberna
rofl over this line? :-) > > - Original Message - > From: John Kaberna > > Once again you are one of the many that fails to see my point. > > **NOTE: New CCNA/CCDA List has been formed. For more information go to > http://www.groupstudy.com/list/Associates.html >

Re: PIX and OSPF

2000-09-19 Thread John Kaberna
PIX and OSPF > because the pix will see the multicast traffic as broadcast, then dropiing > it, then not getting any adjacency on the routers. I had have the same > problem 2 weeks ago. exactly the same issue if you work with EIGRP. > > > -Mensaje original- > > De:

Re: PIX and OSPF

2000-09-19 Thread John Kaberna
this is not my scenario. > maybe there are no internet routers, and both are internals. just ask Nabil > Fares [SMTP:[EMAIL PROTECTED]] > > > > > -----Mensaje original- > > De: John Kaberna [SMTP:[EMAIL PROTECTED]] > > Enviado el: Tuesday, September 19, 2000

Re: PIX and OSPF

2000-09-20 Thread John Kaberna
;m useless. At least I know how to configure a PIX and design a proper network. I'll just add you to the list of the not so bright. John - Original Message - From: Nabil Fares <[EMAIL PROTECTED]> To: 'John Kaberna' <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]>

Bye

2000-09-20 Thread John Kaberna
Well the past couple weeks have been fun but reading through over 100 emails a day is too much.  I thought this list might have helped me along but mostly it just wasted valuable time.  There is never a shortage of stupid questions and people that don't know how to read the archives to get 8

Re: Bye

2000-09-21 Thread John Kaberna
You put a lot of thought in to that one huh genius.  Another moron.  - Original Message - From: RHM To: John Kaberna ; [EMAIL PROTECTED] Sent: Thursday, September 21, 2000 3:29 AM Subject: RE: Bye Are you gone yet?? rob -Original Message

Re: Bye

2000-09-21 Thread John Kaberna
around bragging about it like its a big deal.  If you guys really want me to scan them to prove your a bunch of jealous idiots I will.  - Original Message - From: Chris Larson To: RHM ; John Kaberna ; [EMAIL PROTECTED] Sent: Thursday, September 21, 2000 8:12 AM Subj

Re: Bye

2000-09-21 Thread John Kaberna
d. As everyone knows there is no such thing as stupid questions only stupid people. :) I wish you the best in your future endeavors as well. John - Original Message - From: Circusnuts <[EMAIL PROTECTED]> To: John Kaberna <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent:

Re: Bye

2000-09-21 Thread John Kaberna
now I'm washing lettuce. A few more months I'll be on fries. A couple of years. And I make assistant manager. And thats when the big bucks start rollin in. - Original Message - From: Juan Blanco <[EMAIL PROTECTED]> To: 'Chris Larson' <[EMAIL PROTECTED]

OT: HP Openview Training Materials

2001-04-05 Thread John Kaberna
Sorry to bother the group with such an off-topic. I'm wondering if anyone has taken the NNM classes and has a copy of the training material they could copy or sell. Please email me offline so as to not further disturb the group. Thanks in advance. John Kaberna CCIE #7146 NETC

Re: Security certification [7:34904]

2002-02-08 Thread John Kaberna
It's value is fairly high although it's still a written test. It's fairly well known and most security people that work in the government have it. It is based mainly on theory not practical hands-on so it's a guide start prior to doing the more specialized vendor specific

Re: port needed open for dlsw (tcp encap) [7:34981]

2002-02-09 Thread John Kaberna
2067 John Kaberna CCIE #7146 NETCG Inc. www.netcginc.com (415) 750-3800 Instructor for CCIE R/S and Security 5-day class www.ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm ""ME"" wrote in message [EMAIL PROTECTED]">news:[EMA

Re: hiding an computer ( ip address ) using acces [7:34992]

2002-02-09 Thread John Kaberna
Plus if there are other hosts on the same LAN a router won't help as it doesn't interfere with traffic local to the LAN. John Kaberna CCIE #7146 NETCG Inc. www.netcginc.com (415) 750-3800 Instructor for CCIE R/S and Security 5-day class www.ccbootcamp.com __ CCI

Re: Best Materials For CCIE Written and Lab Exams [7:16196]

2001-08-15 Thread John Kaberna
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Those are good starting points but as you get the hang of lab work you'll want to start doing Fatkid, Solution Labs, and of course ccbootcamp. John Kaberna CCIE #7146 NETCG Inc Cisco Premier Partner www.netcginc.com (415) 750-3800 Fax: 750

Re: contractor rate [7:28260]

2001-12-07 Thread John Kaberna
ious to make a move. Its not unusual to start a new contract and have it terminated a month later. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 ""nrf"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > In answer to your direct question, yes t

Re: Cisco Press IDS Book - Recommendation [7:28450]

2001-12-07 Thread John Kaberna
is not cheap unless you know how to build one. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Did anyone read this book? I want to learn an prepar for the IDS exam. > > Cisco Secure Intrusion Detectio

Re: PIX On A PC? [7:28342]

2001-12-07 Thread John Kaberna
ably spend $500 bucks on a 501. If you do plan on building your own, there's not much more to it than building a skeleton PC. That's why there isn't much more info about how to do it. If you know about basic PC hardware then you can figure it out. John Kaberna CCIE #7146 www.ne

Re: Cisco Press IDS Book - Recommendation [7:28450]

2001-12-07 Thread John Kaberna
tunately they cannot be downloaded. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 ""NKP"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Hi John , > IDS sensor is available in NFR (Not for resell) to partners and > res

Re: OSPF/Frame -Network Type [7:28550]

2001-12-08 Thread John Kaberna
Randy did you try and specify OSPF neighbors? That should solve your problem. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 ""McHugh Randy"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > I have 4 routers with a frame switch inbe

Re: Recommendations on CSPFA exam? [7:29715]

2001-12-19 Thread John Kaberna
ouble (assuming you just do the Boson practice tests) is the IDSPM exam. Otherwise they are pretty easy. Good luck. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 __ CCIE Security Training www.netcginc.com/training.htm ""Zeke Gibson"" wrote in messag

Re: RE:How to Route using same subnet [7:29750]

2001-12-19 Thread John Kaberna
Bridging? John Kaberna CCIE #7146 NETCG Inc. www.netcginc.com (415) 750-3800 Instructor for CCBootcamp 5-day class www.ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm ""chan"" wrote in message [EMAIL PROTECTED]">news:[

Re: NetworkForce.com CCIE Lab Scenario [7:29676]

2001-12-20 Thread John Kaberna
ad of the third time. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 __ CCIE Security Training www.netcginc.com/training.htm ""Pham, James"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Hi, > > It's time to

OT: Call Manager and Military DSN [7:29805]

2001-12-20 Thread John Kaberna
is setup to work? John Kaberna CCIE #7146 NETCG Inc. www.netcginc.com (415) 750-3800 Instructor for CCBootcamp 5-day class www.ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=29805&

Re: NetworkForce.com CCIE Lab Scenario [7:29676]

2001-12-20 Thread John Kaberna
as they can think of there is bound to be some topics that are the same. John Kaberna CCIE #7146 NETCG Inc. www.netcginc.com (415) 750-3800 Instructor for CCBootcamp 5-day class www.ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm ""Pham, James"

Re: Call Manager and Military DSN [7:29805]

2001-12-20 Thread John Kaberna
Have you done this already Nigel? Any problems with calling routing for the DSN? John Kaberna CCIE #7146 NETCG Inc. www.netcginc.com (415) 750-3800 Instructor for CCBootcamp 5-day class www.ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm ""Ni

Re: Subject: OT: Call Manager and Military DSN [7:29805]

2001-12-21 Thread John Kaberna
Thanks for the great info Paul. 1. Is the Call Manager a DSN compliant switch? 2. Do you have to order a separate DSN compliant trunk from the Telco? John Kaberna CCIE #7146 NETCG Inc. www.netcginc.com (415) 750-3800 Instructor for CCBootcamp 5-day class www.ccbootcamp.com

Re: Subject: OT: Call Manager and Military DSN [7:29805]

2001-12-21 Thread John Kaberna
post what I find out. I am ex-military also but I didn't deal with this kind of stuff when I was in. John Kaberna CCIE #7146 NETCG Inc. www.netcginc.com (415) 750-3800 Instructor for CCBootcamp 5-day class www.ccbootcamp.com __ CCIE Security Training www.netcginc.com/trainin

Re: About ACS 2.3.5 for UNIX [7:30002]

2001-12-23 Thread John Kaberna
I'm running 2.3.6 on Solaris 8 with no problems. However, it's a lab and not a production environment. I do use it daily though as it is my TACACS server for all my networking devices in the lab. Try moving up to 2.3.6 if it's still available for download. John Kaberna CCIE

Re: About ACS 2.3.5 for UNIX [7:30002]

2001-12-24 Thread John Kaberna
He asked about running it on Solaris 8. If he's like me, the thought of using any security product on Windoze is frightening. I personally do not want NT/2000 handling any security if I can help it. That's why I still run 2.3.6 on Solaris. John Kaberna CCIE #7146 NETCG Inc. www.ne

Re: PIX FW question [7:31054]

2002-01-06 Thread John Kaberna
h one IP address. Just use port redirection. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 Instructor for 5-day CCIE class for ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm ""Bogdan Ungureanu"" wrote in message [EMAI

Re: EIGRP OVER DDR [7:30965]

2002-01-06 Thread John Kaberna
Try dialer watch. That is what is recommended for EIGRP. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 Instructor for 5-day CCIE class for ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm ""Barry"" wrote in message [EM

Re: OT Request; LAN/WAN monitoring software [7:31227]

2002-01-08 Thread John Kaberna
It's pretty fairly priced I think. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 Instructor for 5-day CCIE class for ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm ""Michael Smith"" wrote in message [EMAIL PROTECTED]"

Re: Cisco security books [7:31393]

2002-01-09 Thread John Kaberna
from Cisco Press is pretty good too. John Kaberna CCIE #7146 NETCG Inc. www.netcginc.com (415) 750-3800 Instructor for CCBootcamp 5-day class www.ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm ""Doug Korell"" wrote in message [EMAI

Re: disabling telnet access to catalyst switches [7:31499]

2002-01-09 Thread John Kaberna
Sorta. Just enable the use of permit lists and then don't create any entries. I do this to disable Telnet and enable only SSH. Works like a charm. switch (enable) set ip permit enable telnet John Kaberna CCIE #7146 NETCG Inc. www.netcginc.com (415) 750-3800 Instructor for CCBootcamp

Re: CSPFA Exam question [7:32390]

2002-01-18 Thread John Kaberna
u to copy tftp flash. Also remember that if you are changing your license features you need to upgrade from boot mode. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 Instructor for 5-day CCIE class for ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm

Re: pix problem [7:33184]

2002-01-25 Thread John Kaberna
check your logs. It will give you very good details on what is going on if you choose debugging. Just log to Syslog or the buffer. I didn't test any of these suggestions so I'm not 100% sure. But, if you get logging going that will definitely point you in the right direction of what

Re: help me with the pix problem! [7:33287]

2002-01-29 Thread John Kaberna
Are you reading your other thread? Several people have pointed out your problems. Please check the responses to your original post. You still have the same problems that people told you how to fix. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 Instructor for 5-day CCIE class for

Re: PIX % DNS Doctoring [7:33331]

2002-01-29 Thread John Kaberna
think that is way too long to have a UDP connection open. Just change the UDP timeout conn as shown below. The example is changed to one minute. timeout conn 1:00:00 half-closed 0:10:00 udp 0:01:00 rpc 0:10:00 h323 0:05:00 sip 0:30:00 sip_media 0:02:00 John Kaberna CCIE #7146 www.netcginc.com (4

Re: Cisco Works 2000 & Cisco Works for Windows [7:33321]

2002-01-29 Thread John Kaberna
sible unless your organization does a LARGE amount of business with Cisco or if your reseller does you a favor. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 Instructor for 5-day CCIE class for ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm

Re: Telnet to inside through VPN [7:33589]

2002-01-29 Thread John Kaberna
f the network just go to it first and then back to the inside interface of the PIX. John Kaberna CCIE #7146 www.netcginc.com (415) 750-3800 Instructor for 5-day CCIE class for ccbootcamp.com __ CCIE Security Training www.netcginc.com/training.htm ""Dante Martins"

Re: Two WAN conn.

2000-09-10 Thread John Kaberna
Can you run a routing protocol? If so, the router will automatically load balance across both links if they are both the same bandwidth. If you use default or static routes it will only use one link. - Original Message - From: Atif Awan <[EMAIL PROTECTED]> To: Gunjan Mathur <[EMAIL PROT

Re: BGP on 2600?

2000-09-10 Thread John Kaberna
You can run BGP on a 2600 with 64MB of RAM with full BGP routes, but I wouldn't suggest it. I've actually done it before If you have a very stable link it is possible. But, even with 128mb of memory the processor is not very fast to handle frequent route flaps. John - Original Message ---

Re: password and enblepass commands on catalyst 6509

2000-09-10 Thread John Kaberna
Just type set password or set enablepass. It will prompt you for the old password then tell you to enter the new password and confirm. It's not like a router where you do it all in one command. - Original Message - From: Lists Wizard <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]>; 'Cisco

Re: Two WAN conn.

2000-09-10 Thread John Kaberna
please tell me where you found this info. John - Original Message - From: Atif Awan <[EMAIL PROTECTED]> To: John Kaberna <[EMAIL PROTECTED]>; Gunjan Mathur <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent: Sunday, September 10, 2000 1:56 AM Subject: RE: Two WAN conn

Re: Two WAN conn.

2000-09-10 Thread John Kaberna
You can define as many default gateways and routes as you like. But will the router use all of them equally is the question. - Original Message - From: Atif Awan <[EMAIL PROTECTED]> To: John Kaberna <[EMAIL PROTECTED]>; Gunjan Mathur <[EMAIL PROTECTED]>; <[EMAIL PRO

Re: Job for Cisco professionals

2000-09-10 Thread John Kaberna
What country/countries are you looking to work in? - Original Message - From: Naveen Sharma <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]> Sent: Monday, September 10, 2001 10:29 AM Subject: Job for Cisco professionals > Dear friends, > > I am looking for job web sites for Cisco professiona

Re: Arp Broadcasts

2000-09-11 Thread John Kaberna
Blake, Yes it is possible and very common. You will need to configure ip helper-address on your router to forward DHCP broadcasts to your DHCP server. If you do a search on CCO for that you will get the documentation your looking for. John - Original Message - From: Traister, Blake (S

Re: You have received a George W. Bush Ecard from Matt Lange

2000-09-11 Thread John Kaberna
Geez would you damn Democrats quit whining about this already? I think he got the picture. I hope we dont have to hear ANY more replies on this. I'd rather have to delete the one spam email than delete the 15 complaints sent to the ENTIRE group. So, enough already! John - Original Messa

Re: The H1-B Visa Program is a fraud

2000-09-12 Thread John Kaberna
Waaa waaa w. Could you people create your own b!tching list to talk about this subject. The vast majority could care less. I woke up this morning after 7 hours of sleep and 70 of the 100 messages I had were on this stupid topic. It's getting really old deleting everyone's garbage. Opinions

Re: vlans and subnets

2000-09-12 Thread John Kaberna
Unless I have lost my mind reading the 70 crap emails this morning. You cannot have the same VLAN in 2 cities. VLAN information can only be carried through trunks (ie ISL, 802.1q) and these trunks cannot be configured over WAN links only LAN links such as Ethernet, ATM, and FDDI. VLAN's were c

Re: free Cisco VPN Book

2000-09-12 Thread John Kaberna
ARE YOU PEOPLE STUPID?? They don't want to send stuff to other countries likely because of the high cost of shipping overseas. Dammit people get a grip. Cisco is based in the US and I doubt they are going to stock these books all over the world. Amazing how clueless some of you people are. Jo

Re: 761 can't pull up line with URL names from clients

2000-09-12 Thread John Kaberna
Can you ping your DNS server?  You can always use DNS servers 198.6.1.1 and 198.6.1.3.  They are controlled by MCI/Worldcom/UUNET and anyone can use them for DNS resolving.  They are based in the US but extremely reliable.  You might want to try these just for testing purposes and find a lo

Re: cisco switches

2000-09-12 Thread John Kaberna
4000 series switches use 'set commands' as opposed to router IOS. Otherwise, you are correct in what you said Mark. John - Original Message - From: <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent: Tuesday, September 12, 2000 8:34 PM Subject: Re: cisco switches > I

Re: cisco switches

2000-09-12 Thread John Kaberna
RTFM = Read The F#cking Manuals? LOL This is a new one to me. John - Original Message - From: <[EMAIL PROTECTED]> To: <[EMAIL PROTECTED]>; <[EMAIL PROTECTED]> Sent: Tuesday, September 12, 2000 8:34 PM Subject: Re: cisco switches > In a message dated 9/12/00 10:49:08 PM Eastern Daylig

Re: Routing Registry

2000-09-12 Thread John Kaberna
I've never heard of a routing registry. What exactly are you referring to? John - Original Message - From: Yee, Jason <[EMAIL PROTECTED]> To: cisco@groupstudy. com (E-mail) <[EMAIL PROTECTED]> Sent: Tuesday, September 12, 2000 8:40 PM Subject: Routing Registry > hi all > > Anyone know

Re: line protocol down

2000-09-13 Thread John Kaberna
One of the things your carrier may require is the type after your DLCI number. Contact your carrier and they will tell you what it should be. Do you have external CSU's or using internal on the router? For example: interface Serial1.1 point-to-point frame-relay interface-dlci 659 IETF Your bg

Re: line protocol down

2000-09-13 Thread John Kaberna
I would also suggest clearing the counters. Often times when new circuits are brought up there is a burst of errors. John Good comments btw Erick. - Original Message - From: Erick B. <[EMAIL PROTECTED]> To: Yee, Jason <[EMAIL PROTECTED]>; cisco@groupstudy. com (E-mail) <[EMAIL PROTECTE

Re: ISL Trunking on Cat 5500

2000-09-13 Thread John Kaberna
As people have said before there is no such thing as a "true" administrative VLAN.  VLAN 1 is just the default.  When you do trunking you can tell it which VLAN's to trunk.  An ISL trunk is not part of any VLAN that is the whole point.  It just trunks groups of VLAN's.  If someone can say it

Re: free Cisco VPN Book

2000-09-13 Thread John Kaberna
d way to start my work day. Grow up > For the record, I live in South Africa, and to date, have received all but 2 > of the books that were classified as "free". This does work > > Andrew > > > > - Original Message - > > From: "John Kabe

Re: how to connect a router via the modem?

2000-09-13 Thread John Kaberna
Do you have access to an external US Robotics modem? If so I can help you fairly easily as I just did this 6 times in the last week. John - Original Message - From: Sim, CT (Chee Tong) <[EMAIL PROTECTED]> To: 'John Kaberna' <[EMAIL PROTECTED]>; 'Erick B.

Re: Training Documents? [7:46298]

2002-06-11 Thread John Kaberna
Go to www.fatkid.com if you want free CCIE labs. You didn't specify what kind of material you're looking for. ""John Stamos"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Hi Everyone, > > I'm new to the list and was wondering if there are any good websites that > offer free t

Re: which is the best Router for the following tasks [7:46288]

2002-06-11 Thread John Kaberna
2611 if you want Ethernet and 2621 if you want Fast Ethernet. I generally don't like to work with anything under a 2600. You can also look at the 1751. The problem with the 17XX series is they aren't rack mountable. ""Fab Perez"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]...

Re: Pix don't route [7:46356]

2002-06-12 Thread John Kaberna
You should be able to do exactly what you said as long as you have at least 2 public IP addresses. Use one for the interface and all regular users and use the other IP for the two servers. Create two different nat and global pairs. John Kaberna CCIE #7146 (R/S, Security) NETCG Inc

Re: Pix don't route [7:46356]

2002-06-12 Thread John Kaberna
What happens when the T1 provider goes down? Those IP's will no longer be reachable and the servers will be down. Without BGP I don't see how you are going to get the DSL circuit to take over the IP's that the T1 provider advertises. Assuming you have BGP, I would thing that policy routing and

Re: Training Documents? [7:46298]

2002-06-12 Thread John Kaberna
There is also a free lab #23 at www.ccbootcamp.com/download lab23beta_configs.zip lab23beta_preconfigs.zip newhintslab23beta.doc newlab23beta.doc newlab23beta.vsd ""John Stamos"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Hi Everyone, > > I'm new to the list and was wonderi

Re: CCIE Lab Exam Changes - Token Ring [7:46481]

2002-06-13 Thread John Kaberna
It will be Ethernet only. No TR interfaces at al will be in the lab. ""Khalsa Singh"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Thanks Ryan, > > I'm confused, so when cisco says, no token ring in the CCIE lab from oct > 2002 but DLSW will be there, what does that mean. Sh

Re: The end of Token Ring etc [7:46497]

2002-06-13 Thread John Kaberna
It's going to be replaced with more QoS and basic security stuff. No new topics, just an expansion of existing topics that aren't covered in as much detail. ""nrf"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > ""Michael Graham"" wrote in message > [EMAIL PROTECTED]">news:[E

Re: IDS Questions [7:46639]

2002-06-14 Thread John Kaberna
PIX's and routers capable of running IDS run a very limited version of IDS. I believe they only catch 59 signatures which isn't very much. It's not bad for a small company that has a PIX that would like to start down the path of having a true IDS some day. I'm not sure what you mean about Snort

Re: IDS Questions [7:46639]

2002-06-14 Thread John Kaberna
. ""John Kaberna"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > PIX's and routers capable of running IDS run a very limited version of IDS. > I believe they only catch 59 signatures which isn't very much. It's not bad > for a small

Re: IDS Questions [7:46639]

2002-06-14 Thread John Kaberna
I don't see why you'd get flamed for that except maybe from a die-hard Cisco employee and even then I doubt it. I prefer Snort a lot more than Cisco's IDS because of price and I do prefer the fact that you have nearly an entire industry of security people that work on Snort. There are very few s

Re: PIX Problem [7:47363]

2002-06-25 Thread John Kaberna
You cannot filter using FQDN. You can use websense to block certain URL's though. ""Mamoon Dawood"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Dear All, > > I the PIX firewall, Can I make an access list using the FQDN (eg: > www.yahoo.com) > instead of using IP address, s

Re: CSS1 exams [7:47308]

2002-06-25 Thread John Kaberna
Shahid is absolutely right. You do not need to go to training for this. The MCNS, PIX, and VPN exams are pretty easy if you read the CP books and have some experience with them. For IDS you can pass using just the Cisco Press book if you have a good memory. You're better off getting an NT4 serv

Re: CSS1 exams [7:47308]

2002-06-25 Thread John Kaberna
of are > turning up any hits on google. > > Having just passed the CCIE security written exam this morning I may be > interested in how to do this for my home lab. > > Thanks > > Peter > > --On Tuesday, June 25, 2002 3:37 PM -0400 John Kaberna > wrote: > > >

  1   2   >