CEF on 6500 and ACL?? [7:63136]

2003-02-16 Thread Newell Ryan D SrA 18 CS/SCBT
Running Hybrid mode SUPII/PFCII/MSFCII To my understanding with MLS (PFC 1), the IOS ACL determines the flow mask. And since it is route once switch many, any packets that match a deny statement will be denied and the enable packet will never make it. The full flow entry will not be in the MLS cac

FW: CEF on 6500 and ACL?? [7:63138]

2003-02-16 Thread Newell Ryan D SrA 18 CS/SCBT
Also do MLS commands on the MSFC do anything for CEF? -Original Message- From: Newell Ryan D SrA 18 CS/SCBT Sent: Monday, February 17, 2003 12:42 PM To: '[EMAIL PROTECTED]' Subject: CEF on 6500 and ACL?? Running Hybrid mode SUPII/PFCII/MSFCII To my understanding with MLS (P

CEF on 6500 and ACLs [7:63175]

2003-02-17 Thread Newell Ryan D SrA 18 CS/SCBT
With CEF (PFC 2) if there is an adjacency for the destination host, to my understanding, that packet will never be routed. It should just be rewritten by the PFC 2 (SP). If this correct then these are my questions. 1. How does an IOS ACL affect the rewrite on the switch? 2. Where on th

RE: CEF on 6500 and ACLs [7:63175]

2003-02-17 Thread Newell Ryan D SrA 18 CS/SCBT
and Qs or you get left behind. Thats why I love this job! -Original Message- From: Bob Sinclair [mailto:[EMAIL PROTECTED]] Sent: Tuesday, February 18, 2003 9:17 AM To: Newell Ryan D SrA 18 CS/SCBT; [EMAIL PROTECTED] Subject: Re: CEF on 6500 and ACLs [7:63175] Some comments in-line. It is

Ethernet Slot Time and Delay [7:63581]

2003-02-23 Thread Newell Ryan D SrA 18 CS/SCBT
If two 10 Base T Ethernet stations transmit at the same they receive data on there receive pins. Will both stations send out a 32 bit jam sequence? If both stations do send a jam signal, why is the slot time closely related to round trip propagation delay? I would think it would be one way. Ethern

FW: Ethernet Slot Time and Delay [7:63581]

2003-02-23 Thread Newell Ryan D SrA 18 CS/SCBT
roubleshootingnetworks.com www.priscilla.com Priscilla Oppenheimer wrote: > > Newell Ryan D SrA 18 CS/SCBT wrote: > > > > If two 10 Base T Ethernet stations transmit at the same they > > receive data on > > their receive pins. Will both stations send out a 32 bit jam &g

FW: Ethernet Slot Time and Delay [7:63659]

2003-02-24 Thread Newell Ryan D SrA 18 CS/SCBT
> 500 Meters?? It's 2500 meters. In one example of such a network, there can > be 5 segments, 4 repeaters (hubs), but only 3 segments can have end > systems. That's the infamous 5-4-3 "rule." It makes a lot of > assumptions. Really, the > size of the network depends on round-trip propagation delay

FW: Cant establish reverse telnet [7:63660]

2003-02-24 Thread Newell Ryan D SrA 18 CS/SCBT
Are you reverse telneting to the line the routers are connected to? -Original Message- From: McHugh Randy [mailto:[EMAIL PROTECTED] Sent: Tuesday, February 25, 2003 7:55 AM To: [EMAIL PROTECTED] Subject: Cant establish reverse telnet [7:63660] It appears that I cannot establish a telnet

RE: Cant establish reverse telnet [7:63660]

2003-02-24 Thread Newell Ryan D SrA 18 CS/SCBT
Show users would have displayed the line. I think you piped in 'show session'. I think show session shows outgoing telnet connections. And show user shows connections on the lines...vty,aux,con and tty. -Original Message- From: McHugh Randy [mailto:[EMAIL PROTECTED] Sent: Tuesday, February

FW: FW: Ethernet Slot Time and Delay [7:63659]

2003-02-26 Thread Newell Ryan D SrA 18 CS/SCBT
ou too B.A. -Original Message- From: Priscilla Oppenheimer [mailto:[EMAIL PROTECTED] Sent: Tuesday, February 25, 2003 9:21 AM To: [EMAIL PROTECTED] Subject: RE: FW: Ethernet Slot Time and Delay [7:63659] Newell Ryan D SrA 18 CS/SCBT wrote: > > > 500 Meters?? It's 2500 meters.

How to initiate a ssh from CATOS? [7:64556]

2003-03-05 Thread Newell Ryan D SrA 18 CS/SCBT
Trying to connect to another Cisco device via secure shell. I can do it from the IOS to CATOS. But I do not know the command to go from CATOS to any other device. Thanks! Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=64556&t=64556 -

RE: OT - CDP: Is it treated as a 'vulnerability' in yo [7:65379]

2003-03-14 Thread Newell Ryan D SrA 18 CS/SCBT
Reading the CDP vulnerability link, I cannot determine how a hacker can trigger the attack. Reading the email trail it seems that you are worried about the info displayed in the frame. If that is what your company is trying to avoid, here is an idea. Why not disable it on a per port basis. That is

Is 'troubleshooting campus netwroks' enough for CIT?? [7:65732]

2003-03-19 Thread Newell Ryan D SrA 18 CS/SCBT
I have read a part of this book. It seems to line up with the CIT. Will this be enough reading material to pass the CIT? Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=65732&t=65732 -- FAQ, list archives, and subscription info: h

FW: Is 'troubleshooting campus netwroks' enough for CIT?? [7:65780]

2003-03-19 Thread Newell Ryan D SrA 18 CS/SCBT
exam. -Original Message- From: Newell Ryan D SrA 18 CS/SCBT [mailto:[EMAIL PROTECTED] Sent: Wednesday, March 19, 2003 7:11 PM To: [EMAIL PROTECTED] Subject: Is 'troubleshooting campus netwroks' enough for CIT?? [7:65732] I have read a part of this book. It seems to line up wit

Is 'troubleshooting campus netwroks' enough for CIT?? [7:66017]

2003-03-23 Thread Newell Ryan D SrA 18 CS/SCBT
I have read a part of this book. It seems to line up with the CIT. Will this be enough reading material to pass the CIT? Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=66017&t=66017 -- FAQ, list archives, and subscription info: h

RE: Is 'troubleshooting campus networks' enough for CIT [7:66045]

2003-03-23 Thread Newell Ryan D SrA 18 CS/SCBT
Yes, it is a retransmit. I have already taken the test and passed by the way! I have also used the book to pass a couple of Sniffer Test. I think it is great. ___ Priscilla Oppenheimer www.troubleshootingnetworks.com www.priscilla.com Message Posted at: http://ww

VTP modes Server/Client vs Transparent [7:57650]

2002-11-18 Thread Newell Ryan D SrA 18 CS/SCBT
Network is migrating from ATM to Gigabit Ethernet. Transparent mode was default VTP for all distribution layer switches. We had hubs for all access layer switches. With the new migration to Gigabit switches would be at all access layer buildings. Would it be beneficial to run transparent abroad or

FW: VTP modes Server/Client vs Transparent [7:57650]

2002-11-19 Thread Newell Ryan D SrA 18 CS/SCBT
JMHO ""Newell Ryan D SrA 18 CS/SCBT"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Network is migrating from ATM to Gigabit Ethernet. Transparent mode was > default VTP for all distribution layer switches. We had hubs for all access > layer s

RE: Connecting DSL to Synchronous Serial Port [7:60930]

2003-01-13 Thread Newell Ryan D SrA 18 CS/SCBT
Yes there is. From my experience with this I know that ADC sells a modular SDSL modem. You can use either an ethernet, RS-530, V.35, or RS-449 interface with this modem. The serial card is FLEX module with two data ports and 1 DSX port. The data port interfaces are a mini-SCSI 26 pin port. ADC off

FW: Cisco 3640 Router ATM PVC Problem [7:61077]

2003-01-14 Thread Newell Ryan D SrA 18 CS/SCBT
What commands are you typing in? To create a PVC the syntax is int atm 1 atm pvc 6 0 106 aal5snap I think you are missing the 'atm' before pvc. There are several ways to hook the 3640s back to back. If they are within fastethernet distance limitations you could use the fastethernet interfaces. -

RE: Cisco 3640 Router ATM PVC Problem [7:61077]

2003-01-14 Thread Newell Ryan D SrA 18 CS/SCBT
Try to add atm in front of that. -Original Message- From: Ken Chipps [mailto:[EMAIL PROTECTED]] Sent: Wednesday, January 15, 2003 3:23 PM To: 'Newell Ryan D SrA 18 CS/SCBT'; [EMAIL PROTECTED] Subject: RE: Cisco 3640 Router ATM PVC Problem [7:61077] I am using a sample configur

RE: Cisco 3640 Router ATM PVC Problem [7:61077]

2003-01-15 Thread Newell Ryan D SrA 18 CS/SCBT
Seventh command protocol ip 10.0.2.2 broadcast > > The sixth command is where it fails. It does not recognize the pvc. > > -----Original Message- > From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of > Newell Ryan D SrA 18 CS/SCBT > Sent: Tuesday, January 14, 2003 11:

RE: Cisco 3640 Router ATM PVC Problem [7:61077]

2003-01-15 Thread Newell Ryan D SrA 18 CS/SCBT
aaa.bbb.7.250 255.255.255.252 secondary > ip address 10.1.19.2 255.255.255.0 > atm pvc 1 0 35 aal5snap > map-group TGN > appletalk cable-range 10119-10119 10119.2 > appletalk zone ATM > ! > > ! > map-list TGN > ip 10.1.19.1 atm-vc 1 broadcast > ip aaa.bbb.7.249 a

RE: Cisco 3640 Router ATM PVC Problem [7:61077]

2003-01-15 Thread Newell Ryan D SrA 18 CS/SCBT
th command no shutdown > Fifth command ip address 10.0.2.1 255.255.255.0 > Sixth command pvc 1 32 > Seventh command protocol ip 10.0.2.2 broadcast > > The sixth command is where it fails. It does not recognize the pvc. > > -Original Message- > From: [EMAIL PROTECTED] [mail

RE: User Privilege Level [7:60469]

2003-01-16 Thread Newell Ryan D SrA 18 CS/SCBT
I know the thread is about dead but until you get TACACS+ server there are some commands you could implement to help the situation. The port is being disabled for a reason. You can configure the port to renable after 30 secs. using the command set errdisable-timeout enable all set errdisable-timeo

RE: NETBIOS on WAN [7:61237]

2003-01-16 Thread Newell Ryan D SrA 18 CS/SCBT
IP helper will send NETBIOS broadcast and change the packet to a unicast to the address given. But I not really sure it will solve your problem. I have a few questions before I try to answer your question. 1. Is there a DHCP server involved? 2. Do have Domain Controllers? 3. Do you want the browse

Telnet SYN/ACK pkt reply on TCP source port 3-6!!?? [7:61659]

2003-01-23 Thread Newell Ryan D SrA 18 CS/SCBT
I tried to telnet to a distant end 3660 router. Connection would timeout. I was able to ping the router from my PC. The router could telnet to the router that was between my PC and itself. Ran capture and the data yielded this IP Source 10.0.0.1 Destination 10.0.1.2 TCP SYN destination port 2

RE: Telnet SYN/ACK pkt reply on TCP source port 3-6!!?? [7:61661]

2003-01-23 Thread Newell Ryan D SrA 18 CS/SCBT
m 1-6. Sorry for sending this in. I should of thought about it a little bit more :-( -Original Message- From: Newell Ryan D SrA 18 CS/SCBT Sent: Thursday, January 23, 2003 7:51 PM To: '[EMAIL PROTECTED]'

test [7:51328]

2002-08-13 Thread Newell Ryan D SrA 18 CS/SCBT
Test Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=51328&t=51328 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

CCNP okinawa japan [7:51329]

2002-08-13 Thread Newell Ryan D SrA 18 CS/SCBT
Are there any people in the Okinawa area going for CCNP? Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=51329&t=51329 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and

FW: Duplicate packets with same SEQ #'s... [7:53024]

2002-09-10 Thread Newell Ryan D SrA 18 CS/SCBT
Is it possible that you are doing a dump on a link that the packet must transverse to and fro to get to the destination. You stated that you did this dump off of one of your core switches. I'm assuming your spanning or port mirroring the port or vlan possibly. If these PC's are on separate networ

Exec shell+console+AAA [7:53590]

2002-09-18 Thread Newell Ryan D SrA 18 CS/SCBT
Evening group, What I have a TACACS server and the setup we are trying to achieve goes as follows: I want the LAN admins to have minimal control on there switches in there area. We have accomplished that one the vty ports. Here is the config: Server user=test password=test12 service-shell set

Recall: Exec shell+console+AAA [7:53601]

2002-09-18 Thread Newell Ryan D SrA 18 CS/SCBT
Newell Ryan D SrA 18 CS/SCBT would like to recall the message, "Exec shell+console+AAA". Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=53601&t=53601 -- FAQ, list archives, and subscription info: http://www.g

Exec shell+console+AAA [7:53602]

2002-09-18 Thread Newell Ryan D SrA 18 CS/SCBT
Evening group, What I have a TACACS server and the setup we are trying to achieve goes as follows: I want the LAN admins to have minimal control on there switches in there area. We have accomplished that one the vty ports. Here is the config: Server user=test password=test12 service-shell set

Exec Shell + Console [7:53661]

2002-09-19 Thread Newell Ryan D SrA 18 CS/SCBT
Evening group, What I have a TACACS server and the setup we are trying to achieve goes as follows: I want the LAN admins to have minimal control on there switches in there area. We have accomplished that one the vty ports. Here is the config: Server user=test password=test12 service-shell set

RE: Exec Shell + Console [7:53661]

2002-09-19 Thread Newell Ryan D SrA 18 CS/SCBT
To: [EMAIL PROTECTED] Subject: Re: Exec Shell + Console [7:53661] 9/19/2002 9:40pm Thursday You could just tell your LAN admins not to change anything on the switches. ""Newell Ryan D SrA 18 CS/SCBT"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... >

Routed interfaces vs. Switched interfaces on 6500 [7:54170]

2002-09-25 Thread Newell Ryan D SrA 18 CS/SCBT
Referencing LAN Switching I have a question concerning routed vs. switched interfaces on the 6500 running in native IOS mode. If the diagram on page 832 is correct I'm confused about MLS. Does the PFC/NFFC have the ability of caching flows between an interface configured as a switched/routed inte

FW: Routed interfaces vs. Switched interfaces on 6500 [7:54170]

2002-09-25 Thread Newell Ryan D SrA 18 CS/SCBT
e information provided by the MSFC. Depending on the flow mask used, the next flow that comes through with the same destination address, may be able to be fast-switched (hope I used the right term) directly to the destination in question. Did I answer your question? Hope I have helped. "

AAA in console [7:54282]

2002-09-26 Thread Newell Ryan D SrA 18 CS/SCBT
How can I configure authorization on the console port? Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=54282&t=54282 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and No

FW: AAA in console [7:54282]

2002-09-26 Thread Newell Ryan D SrA 18 CS/SCBT
... Thanks, Duncan Wallace 12835 SW Thunderhead Way Beaverton, Or. 97008 503-646-5707 [EMAIL PROTECTED] -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]] On Behalf Of Newell Ryan D SrA 18 CS/SCBT Sent: Thursday, September 26, 2002 2:54 PM To: [EMAIL PROTECTED

FW: AAA in console [7:54282]

2002-09-26 Thread Newell Ryan D SrA 18 CS/SCBT
uld survive a password checker like "Getpass". Of course the console password was left outside the scope of AAA, as it provided the only way to access the device if the tacacs/radius server(s) were unreachable. HTH Nigel ----- Original Message - From: "Newell Ryan D SrA 18 CS/SCBT

Three 24 Gbps Switching Engines at 18 Mpps (Layer2)!?! [7:54833]

2002-10-03 Thread Newell Ryan D SrA 18 CS/SCBT
What does this mean. I was looking at table 21-112. The difference between supervisor engine I and supervisor engine II is that the I has 24 Gbps switching engine and the II has three 24 Gbps. Yet the pps remains the same(18Mpps). Is there a direct correlation between the switching fabric and the

Interface Vlan 'x' is up, line protocol is down [7:73428]

2003-08-02 Thread Newell Ryan D SrA 18 CS/SCBT
If I enable any vlan interface other than vlan 1 it will not enter an protocol up state unless a physical interface that has vlan 'x' assigned to it. Why is that? vlan database vlan 2 ! interface FastEthernet0/1 switchport access vlan 2 no shutdown ! interface Vlan2 ip address 2.2.2.2 255.0.0.