CCNP Cisco Networking Acad. questions [7:16180]

2001-08-15 Thread doug
starting school next week and was just wondering if it's worth the 2 year investment in time. Thanks Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=16180&t=16180 -- FAQ, list archives, and subscripti

Re: CCNP Cisco Networking Acad. questions [7:16180]

2001-08-16 Thread doug
Tom; Thanks for the advice. Yes, the many labs with the course is the main reason for my decision to take the class. Also, I'm not sure if I am the best self-study type person :) Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=1626

RE: cisco academy's routing skills final ,tough!!! [7:29212]

2001-12-15 Thread Doug
other questions, like from Boson or anything? C ya Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=29287&t=29212 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report m

RE: cisco academy's routing skills final ,tough!!! [7:29212]

2001-12-15 Thread Doug
Well, I am taking my test in Aurora, CO. We will have 2.5 hrs and no group...one shot...wonderful, huh! Wonder how they come up with this final? Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=29305&t=29212 -- F

Spanning tree explorer and all routes explorer

2000-07-31 Thread Doug
I am trying to distinguish whether a spanning tree explorer packet is a broadcast packet, while an all routes explorer packet is an multicast packet. Am I correct? Thanks... ___ UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html FAQ, list arch

Local Director config check

2001-03-19 Thread Doug Roberts
Thanks - I don't have anyone on staff that knows the LD any better than I, so I need a sanity check before I take down the company web site. :/ Optionally, is there any way to config the LD to fail over both 80 and 443 if one or the other fails? Doug Roberts,

Re: x.25 question help

2000-11-21 Thread Doug Laing
>From my studies, the maximum speed for X.25 is 2MB/s. Guy Tal wrote: > - Original Message - > From: "Zhang Jin" <[EMAIL PROTECTED]> > Newsgroups: groupstudy.cisco > To: <[EMAIL PROTECTED]> > Sent: Monday, November 20, 2000 7:58 PM > Subject: x.25 question help > > > Dear group, > > >

Re: Switching Black Book by Sean Odom and Hanson Nottingham

2000-12-10 Thread Doug Hammond
> > > >-andy > > > > > >On Sun, 10 Dec 2000, Stupid Idiot wrote: > > > > > > > > Holy crap Robin, that has to be the most blatant plug, > > > from a friend of an author, that I've ever seen! It's > > > morons like you

Re: CCIE Lab Preparation - Part 2

2000-12-10 Thread Doug Hammond
I know that story. Since I've been three times, without success, my company has decided not to pay for any more trips. Good planning on their part, after living and breathing the CCIE for the last year, I'm not going to drop it. I have to admit it is a highly motivating factor in wanting to pass.

Re: Please Delete - Just a Test

2000-09-19 Thread Doug Guth
I can see it "Kevin Wigle" wrote in message <003b01c02259$3825a9c0$[EMAIL PROTECTED]>... >I can't seem to post anymore. :-( > >**NOTE: New CCNA/CCDA List has been formed. For more information go to >http://www.groupstudy.com/list/Associates.html >_ >UPDATED

IGRP Process Domain???

2000-09-21 Thread Doug Laing
Please help me understand. In IGRP, what is an example of why you would want to have more than one process domains within a routing domain? (Ex. IGRP 10 and IGRP 20 within AS40) Thanks. **NOTE: New CCNA/CCDA List has been formed. For more information go to http://www.groupstudy.com/list/Assoc

Re: Garble @ the CLI Of A 2800 Switch...

2000-09-22 Thread Doug Laing
Try a straight through cable (regular cat 5 patch cable) instead of the cable provided. I had to do this with before on some Catalyst 5000s. Circusnuts wrote: > ATQ0H0 > > This is all I have @ the top left of the screen. I've tried all speeds (& > restarted Hyper Term everytime too :-) I'm

Voice over IP

2000-10-11 Thread Doug Guth
e this has been addressed before and apologize for the repetition... Doug Guth _ FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Re: Need advice from the experts

2000-10-11 Thread Doug Guth
Does it count when the author recommends the book? LOL Seriously, it is good stuff though... "William E Gragido" <[EMAIL PROTECTED]> wrote in message 000101c033b0$49f7a140$[EMAIL PROTECTED]">news:000101c033b0$49f7a140$[EMAIL PROTECTED]... > LOL! Nothing like a shameless plug now and again! >

BGP Load Balancing to 2 ISP's Q

2000-10-26 Thread Doug Guth
Can BGP really "load balance"? I have 2 ISP's with unequal pipes to them (one is 768k the other is full T1. It's a long story but that is what I have to work with for the forseeable future). I want to truely balance across the links. I know I can set the route maps and work with weight, local p

HSRP question

2000-11-21 Thread Doug Laing
When using HSRP, what happens when the primary gateway goes down, then back up? Does it become the primary again? Thanks. _ FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMA

Fast EtherChannel question

2000-11-21 Thread Doug Laing
Because I can't find definite answers in the material I have, I wanted to post it in a form of a question and see what you all think. What are not features in fast etherchannel. a-load balancing b-full duplex c-up to six interfaces bundled d-hsrp e-fault tolerant Thanks. ___

Pix: intercept and redirect

2001-03-22 Thread Doug Roberts
I've had a request to have our Pix firewall catch inbound traffic headed for host A and redirect it to host B. We do not have NAT enabled on the Pix (ver 5.1). Am I missing something? I don't see a way to do this. Doug == "There are a lot of interesting

New career(Off-subject)

2001-03-27 Thread Doug Snyder
I just wanted to thank everyone in this group. I was in a terrible job before, but now I am back with Cisco Routers and ATM. Hope the tech stocks bounce back soon. Roy Snyder Network Engineer (Again) __ Do You Yahoo!? Get email at your own domain

Re: Beware of VINCENT CHONG [7:1631]

2001-04-25 Thread Doug Snyder
Wise words --- Ronald James wrote: > hey RAMG, i feel bad for your experience, and thanks > for your kind warning. > whether who has the problem is not the problem of > the group; besides, how > could we determine who's fault if i only have one > sided information, and in > fact, i did not partc

unsubscribe [7:2301]

2001-04-27 Thread Doug Staz
unsubscribe cisco -Original Message- From: EA Louie [mailto:[EMAIL PROTECTED]] Sent: Friday, April 27, 2001 2:21 PM To: Subject: Re: Utilization/load Calculations [7:2167] You probably already saw Jennifer's post on the separation of rxload and txload and adjusting the load

Re: OT- Another cool thing about Cisco (Re: Cisco fire staff) [7:2418]

2001-04-28 Thread Doug Hammond
I absolutely have to agree. There are ways to lay people off that is dignified and respectful. Then there's the way NEC BNS did it! Last week, I was in my boss's office talking about something completely unrelated when he says "Oh, by the way" and hands me a lay-off notice. An hour later I'm hist

Re: Password Reset on PIX? [7:3627]

2001-05-08 Thread Doug Hammond
Is it just telnet? Can you use the console port? If not, you need to call the TAC and have them send you a utility which will reset a PIX password. No other way to do it that I know. ""Moahzam Durrani"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Something went wrong with our

Re: Olicom switch [7:5815]

2001-05-24 Thread Doug Hammond
Thanks Brad. That worked. For those like me that happen to fall into this problem, here's how to recover. On the Olicom is two reset buttons. The top one can be used to reset the switch. Press hard and keep it pressed for a few seconds, after which a menu will appear to allow you to download soft

Re: anybody ever connected 2600 AUX ports back2back? [7:5844]

2001-05-24 Thread Doug Hammond
Some thoughts - Try putting in this command on your async interface: async default routing Also what type of cable are you using? I've always used the cisco black cable. And try to hard-code the rxspeed and txspeed. I never trust auto-select. Why are you using async65? Wouldn't it be async1? ""NR

RE: T-1 module to 56/64K module pinout [7:6368]

2001-05-30 Thread Doug Lockwood
annel} together. If you want to follow up, I can ask my WAN Guru at work. HTH Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=6545&t=6368 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisc

RE: IS-IS queries [7:6638]

2001-05-31 Thread Doug Lockwood
en areas L2. Hopefully, I have answered some of your questions without mudding the water. HTH Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=6663&t=6638 -- FAQ, list archives, and subscription info: http://www

Re: IS-IS queries [7:6638]

2001-05-31 Thread Doug Lockwood
ell as the board. Good Luck Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=6715&t=6638 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure vi

RE: Need a helper to answer four questions [7:6974]

2001-06-03 Thread Doug Lockwood
es bandwidth on both links. Both designs are appropriate, depending on the nature of the traffic. Hope this helps. Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=7004&t=6974 -- FAQ, list archives, and

RE: RIPv1: why /32 route is distributed [7:7010]

2001-06-03 Thread Doug Lockwood
Just a thought. Are you really running rip V1 or are you running Rip V2 in compatibly mode. The first config would look like: Router Rip Net 172.10.0.0 The second would look like: Router rip version 1 net 172.10.0.0 Just a thought. Doug Message Posted at: http://www.groupstudy.com/form

RE: reverse telnet [7:6987]

2001-06-03 Thread Doug Lockwood
, the cable Rich is talking about is standard Ethernet patch cables. I use rj-45 couplers to attach the cable to the Cisco octal cable. Any computer store should have both. HTH Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=7028&am

RE: Help with irksome situation = ( [7:7102]

2001-06-04 Thread Doug Lockwood
You are missing a default route to the internet. ip route 0.0.0.0 0.0.0.0 206.107.237.x where x is the address of the cable modem. However if the 2521 can't see it, either somthing else is wrong. Are the interfaces Up,Up? A sh ip int bri should tell the tale on the 2501. HTH Doug Me

RE: no ip classless [7:7100]

2001-06-04 Thread Doug Lockwood
lassless and an icmp "timeout" error (after a long wait) with ip classless. This behavior prevents some routing loops, prevents traffic to nonexistant devices and is good design. Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=7136&t=7100

RE: Help with irksome situation = ( [7:7102]

2001-06-04 Thread Doug Lockwood
Peter; Spot on. NAT and a route. Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=7153&t=7102 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondi

Re: no ip classless [7:7100]

2001-06-04 Thread Doug Lockwood
, subnet not in table, forward to DG. Classful - attached net, subnet not in table, drop and generate ICMP to host. Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=7155&t=7100 -- FAQ, list archives, and subscription in

RE: Frame Relay Traffic Shaping [7:7137]

2001-06-04 Thread Doug Lockwood
the traffic shaping and blast away. HTH Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=7157&t=7137 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondi

RE: URGENT !!!!!!!!!!!!!!!!!!!!! [7:8061]

2001-06-11 Thread Doug Lockwood
If you know this, please disregard. T-1 crossovers, 56k and ethernet crossovers are all different. I beleive its 1&2 to 4&5 for t-1 1&2 to 7&8 for DDS{56k}, CDDI, and ATM 25 and 155. HTH Doug Message Posted at: http://www.groupstudy.com/form/read.php?f

RE: bgp [7:8282]

2001-06-12 Thread Doug Lockwood
Dwayne; The short answer is no. If static routes sufice for your current IGP, they will work for BGP as well. The key is not to rely on BGP to provide reachability within your AS. (network). I would strongly concider creating loopback addresses if you have multiple paths in your network. this wi

RE: null0 [7:8468]

2001-06-13 Thread Doug Lockwood
Nul0 has several applications. Security is a good one. Your point that martian routes can appear in the route table rather than exception processes is also a good point. It also is a good way to prevent routing loops on summary addresses, for example. Regards Doug Message Posted at: http

RE: Gre tunnel - ip and ipx packet loss -URGENT!!!!!!! [7:8190]

2001-06-14 Thread Doug Lockwood
ase, a SLA (service Level Agreement) would be the only effective cure. If the traffic travels through multiple ISP's the SLA becomes more challenging. HTH Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=8669&t=8190 --

RE: IBGP Lab - Can't get from IBGP to External BGP sit [7:8639]

2001-06-14 Thread Doug Lockwood
Feel free to email me @ [EMAIL PROTECTED] Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=8670&t=8639 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondi

RE: Passed the CCIE written by accident-should I retak [7:9733]

2001-06-24 Thread Doug Lockwood
First, Congratulations. My openion is the written exists to weed out people with NO experience. It has no other value. I would schedule my practical and get on with it. Good Luck. Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=9735&am

GBIC's for single mode fiber [7:34699]

2002-02-06 Thread Doug Korell
so, has anyone used them? Thanks. Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=34699&t=34699 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosu

Kentrox vs. Adtran CSU/DSU [7:38252]

2002-03-14 Thread Doug Korell
I have used Kentrox Satellite 651 CSU/DSU's before but looking at the Adtran TSU ACE CSU/DSU. Does anyone have an opinion of the Adtran? It's a little cheaper than the Kentrox and you don't have to buy the cables which are about $60 each for 10'. Thanks. Message Posted at: http://www.groupstudy.

Need help identifying PIX [7:38703]

2002-03-18 Thread Doug Korell
I inherited a PIX and need help identifying it. It's gray with a door in the front and small lock. Inside the door is a floppy drive on the right side and fan on the left. In the back the part number is 47-3158-01. The chassis is only idenified as a PIX and there is no model number. In the Show Ve

Re: what's wrong with CCIE today? [7:13151]

2001-07-20 Thread Doug Hammond
Hmm, maybe the fault lies in companies that only hire people who have a specific set of certifications to manage their networks. I, and for that matter several other non-CCIEs I know, could easily have handled your problem. I'm betting that you never even got the chance to see us, as the insisten

Upgrading 5500 supervisor software [7:26549]

2001-11-16 Thread Doug Korell
I will be upgrading the supervisor software on my 5500 from 4.5(3) to 5.5(9) and need to know a couple things: 1. Does anyone know about how long it takes to do the upgrade. 2. As for the steps, I should just have to tftp the new software to bootflash and then change the "set boot system flash"

RE: Upgrading 5500 supervisor software [7:26549]

2001-11-16 Thread Doug Korell
About the versions, I was reading in the following URL that 5.5(9) is the "Recommended Supervisor Software Version": http://www.cisco.com/univercd/cc/td/doc/product/lan/cat5000/c5krn/sw_rns/78_6583.htm But, in the 5.5(11) release notes, it says 5.5(7) is recommended: http://www.cisco.com/cgi-bi

Wireless LAN Specialization [7:27312]

2001-11-26 Thread Doug Justice
Hi. If anyone of you have sample questions and practice tests that could help me thru the Wireless LAN specialization, that would be very helpful. Any suggestions about the Wireless LAN exams? Thanks in advance. Doug

IOS Feature set comparisons [7:28750]

2001-12-10 Thread Doug Korell
Does anyone know where I can find a good listing or FAQ that compares IOS feature sets? I know how to use Feature Navigator on Cisco's website but I'm looking for something that will outline the major differences between them. Thanks. Message Posted at: http://www.groupstudy.com/form/read.php?f=

RE: cisco academy's routing skills final ,tough!!! [7:29212]

2001-12-14 Thread dick doug
H, interesting! I am taking this class and any help you can give me, would be much appreciated! I have heard it's a bear too. Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=29231&t=29212 -- FAQ, list

Cisco security books [7:31393]

2002-01-09 Thread Doug Korell
Does anyone have input on good overall Cisco security books? I saw two books on Cisco's website called "Designing Network Security" and "Managing Cisco Network Security". Anyone have an opinion on these? Thanks. Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=31393&t=31393 -

Clustering 3500XL switches [7:31668]

2002-01-11 Thread Doug Korell
ike is the (perceived) dependency of setting it up through the web interface. Personally, I like using command line and the web interface is too slow. Thanks. Doug Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=31668&t=31668 --

Checking overall LAN utilization [7:33256]

2002-01-25 Thread Doug Korell
I have checked individual switches and routers for utilization before but when asked what the average utilization of an entire network (mainly LAN) is, what exactly makes up this figure? I am working on getting a packet sniffer which I know will help take all the variables and give me an answer bu

RE: Checking overall LAN utilization [7:33256]

2002-01-28 Thread Doug Korell
I have a company that will be implementing a system that will be taking up quite a bit of bandwidth across the LAN and eventually the WAN. Since it is somewhat bandwidth intensive, they want to know what the average and peak utilization of the network is and what the peak hours are. I'm have a 550

What Path works?

2000-07-25 Thread Doug Guth
Looking for some feedback... There seem to be some different paths followed to CCNP. What have you found to be a balance between book smarts and real life prep for CCNP? ___ UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html FAQ, list archives,

Thanks, Passed the CCNA

2000-07-25 Thread Doug Guth
Thanks to all who post here. I have been reading quietly and learning. Passed the CCNA today. 1 down... tons to go Thanks Again ___ UPDATED Posting Guidelines: http://www.groupstudy.com/list/guide.html FAQ, list archives, and subscription info: http://www.g

Re: Great book for BCMSN

2000-08-19 Thread Doug Hammond
gt;news:[EMAIL PROTECTED]... > I recently bought the Exam Prep book for Cisco Switching by Sean Odom and > Doug Hammond and so far it appears to be a very informative book. They > really provide great information regarding each Cisco switch. So far a very > good read. > > Jeff > >

Re: different port numbers for reverse telnet operation?

2000-09-07 Thread Doug Guth
It is my understanding that the port numbers change by the router model. Is there a reference that lists the port numbers by the model for console, aux etc.. Thanks, Doug "IC Lee" wrote in message <8p4no5$i9b$[EMAIL PROTECTED]>... >When you do a reverse Telnet (from your

auto-negotiate not reliable

2000-09-11 Thread Doug Laing
Can someone explain to me why auto-negotiate on a Catalyst 5500 and a NIC is not always reliable. **NOTE: New CCNA/CCDA List has been formed. For more information go to http://www.groupstudy.com/list/Associates.html _ UPDATED Posting Guidelines: http://www.groupstu

Question for DR/BDR in OSPF

2000-09-12 Thread Doug Laing
This is a question for study purposes. I want to verify what I think the answer is: Let's say Router A is the Designated Router with priority of 100 and fails. Router B (Backup Designated Router) with priority of 90 becomes the DR and Router C with a priority of 80 becomes the BDR. If Router A

Custom queue

2000-09-13 Thread Doug Laing
Here is another study question for clarification. Assume the following configuration: queue-list 1 protocol ip 1 queue-list 1 protocol ipx 2 queue-list 1 protocol appletalk 3 queue-list 1 protocol ip 4 tcp 20 queue-list 1 default 5 queue-list 1 queue 1 byte-count 4500 A) Once the byte count in

Recommended Website for CCIE study?

2000-06-06 Thread Doug Laing
Does anyone have a recommended website that will help with the studies for the CCIE certification? NetworkStudyGuides.Com has been great for CCNA and CCNP, but I have not looked at the CCIE portion of this site yet. Thanks! ___ UPDATED Posting Guidelines: http://

Re: Loopback - why needed ?

2000-06-06 Thread Doug Laing
in their topological database. Doug Hans Schimek wrote: > Hi ! > > in the last few sample configurations i came across the term LOOPBACK. > what is this device needed for and why do i have to specify this. > concerning FRAME RELAY or ISDN for example.

RE: RAID question

2000-06-07 Thread Kantor, Doug
Title: RE: RAID question That really depends. I have always preferred using hardware RAID. If that is the case, the OS is fairly ignorant of what is going on. The main consideration is whether drivers exist for the NOS that you are using. NT 4 has the ability to do sofware RAID. If you are goi

Frame-Relay and split-horizon question

2000-06-13 Thread Doug Laing
When you have a point to multipoint frame-relay (partial mesh) setup and you disable split-horizon on the hub router's serial interface, does that also disable the spit-hoizon for the sub-interfaces as well? Thanks ___ UPDATED Posting Guidelines: http://www.groups

Re: frame-relay CRC

2000-06-13 Thread Doug Laing
CRC errors are physical layer errors. First thing to do is to have the line checked. (I have experienced many times where I had to prove to the service provider that the error was on their side and not on our client's equipment. Even though they claimed that the line tested fine). Brad Ellis w

VPN between PIX and Symantec Firewall [7:65369]

2003-03-14 Thread Doug Korell
I am trying to setup a site to site VPN between a PIX running 6.2.1 and Symantec Firewall 7.0. It is not making it past IKE and just keeps looping the IKE phase. It matches a policy and then loops over again. In the "show crypto isakmp sa" output, I get hundreds of "QM_IDLE" and every few seconds a

NAT overload as security [7:66015]

2003-03-22 Thread Doug S
On my home network, I rely almost exclusively on NAT overload for security. Even though I know it's not a security measure, I've yet to hear anyone with a good explanation of why it's not enough, at least for a home network. I know there's a bunch of really bright people here, so if anyone would

RE: CCIE Lab study group in Cincinnati? [7:66431]

2003-03-30 Thread Doug 45140
I would have been interested, however, with less than 29 days until my first attempt in RTP, and a new project looming with work, I don't think I can work in any extra time. If I tank too badly on the Lab, I'll let you know, and maybe we can work something out prior to my second attempt. Good luc

NT domain access after connecting through VPN [7:66618]

2003-04-01 Thread Doug Korell
I am using a PIX and VPN client 3.6 and getting in works just fine. Problem is I want to connect to NT domain resources across the board after logging into VPN. I know you can connect to network shares using alternate username and password but for things like remote event logs on the domain, you do

Re: NT domain access after connecting through VPN [7:66618]

2003-04-02 Thread Doug Korell
Thanks for your input. I'm looking around at other vendors to see what they offer with this. One thing I don't like with the PIX vpn is the lack of logging capabilites. I want to know when someone logged in, when the logged out, where they went, etc. I'm looking at the concentrators but don't remem

DHCP NACK problems [7:44671]

2002-05-21 Thread Doug Korell
This may or may not be a Cisco issue but I am running DHCP on a NT 4.0 server and it's been giving Nacks for the past 5 days and is causing a major headache. Every Nack has been coming from the same subnet as the DHCP server which seems even more strange. I've watched the packets being broadcasted

VPN Overhead [7:45719]

2002-06-03 Thread Doug Korell
We are currently using a VPN provider to get into the network but want to take more control and bring it in house. I did some testing though and found that the VPN was adding about 27% overhead compared to bypassing VPN and going direct to a server. I'm wondering if others have done testing and w

Combining T1's into one pipe [7:46942]

2002-06-18 Thread Doug Korell
I have two point to point T1's that I'm thinking about combining (known as NxT1). Both connections are going through the same routers at each end (4700 and 2600). I found some information on Cisco's website but they mention that it can be complex and talk about alternatives. Is anyone else doing

Need help with PIX VPN specs [7:47521]

2002-06-26 Thread Doug Korell
I am gathering information so I can propose a VPN solution to my company. We are currently using a vendor for VPN and would like to gain more control. Here's what I have so far: PIX running 6.2.1 with 56bit encryption Plan to buy RSA SecureID Ace Server and Keyfobs I plan to purchase the 168-bit

Vlan Design [7:23928]

2001-10-23 Thread Doug Korell
I have worked with Vlans for another company that used a different Vlan for every department and then had a Vlan for the servers. This goes along with most design concepts except that at least 2 or more departments often shared a wiring closet. When tech support would plug in PCs, they often would

Etherchannel between 5509 and Intel Pro/100 NIC [7:25746]

2001-11-09 Thread Doug Korell
I am setting up etherchannel between a 5509 and two Intel Pro/100 server adapters and if I set the etherchannel mode to "desirable" on the 5509, it shows no ports are channeling. Using "auto" doesn't show channeling either. If I set it to "on", then of course it shows my ports are channeling but I

PPP Multilink ISDN BRI [7:56257]

2002-10-24 Thread Doug S
I haven't seen that any other's posters have had this problem, which makes me think I may be missing something really basic in the configuration. Any help is greatly appreciated I have MPPP configured on two routers' BRI interfaces with the load threshold set at one, so the second b channel shoul

OT: Server Inventory System [7:56240]

2002-10-25 Thread Doug Korell
I'm looking for something already out there that can keep an inventory of servers, contact names, documentation, etc. Instead of having a database for server hardware specifics, a folder for documentation, it would be nice to bring it all together. I'm not looking for something to actually detect h

Re: PPP Multilink ISDN BRI [7:56257]

2002-10-25 Thread Doug S
Thanks to both of you for considering the problem and providing input. I will try both suggestions, and believe that the 'isdn fast-rollover-delay (seconds)' will work. isdn fast-rollover-delay seconds Configures Time delay between consecutive dial

RE: 802.1Q trunking on 2500?? [7:56690]

2002-11-01 Thread Doug Oh
I have a couple of 2500's running 12.1(15) enterprize code, and they still do not allow for encapsulation on Ethernet interfaces. According to the documentation, encapsulation is supported only on FE interfaces. I have heard that the 2610s support it, however. Anyone else have additional informa

RE: Cisco Security Specialist [7:56675]

2002-11-01 Thread Doug Oh
The Cisco Press CQS books were sufficient for me. I did try to set up as many various configurations as I could in my own lab, and the PIX 501 was good to have for that piece of the tests. Good luck! Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=56716&t=56675

RE: Mobile IP not responding...help! [7:52215]

2002-11-13 Thread Doug Oh
I'm trying to play around with this as well, and have reviewed various forum histories to determine why my config is failing. Like Grad Alfons Canon reported on 7/28/01, my attempts give me the "MobileIP: Interface # add ip.add.re.ss rejected" message. One point of confusion for me is the "care-of

Re: trunking over ethernet [7:57539]

2002-11-16 Thread Doug Oh
On the 2611 platform, VLAN encapsulation is supported for Ethernet as of 12.1. Bridging on a subinterface is not supported until 12.2, however. Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=57547&t=57539 -- FAQ, list archives, an

OT: SMTP filter programs [7:58639]

2002-12-05 Thread Doug Korell
Just curious what others use to filter their SMTP traffic for viruses and spam. I am currently using Trend Micro Interscan and it's a piece of junk. It doesn't have one report option which the higher ups want to see. Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=58639&t=58639 -

RE: Load balancing & NAT [7:60663]

2003-01-09 Thread Doug S
The way PAT works when overloading multiple addresses is to overload the first address in the pool until ALL port numbers are used up. I can't point you to any publicly available documentation on this, but cut and pasted from Network Academy curriculum: "However, on a Cisco IOS router, NAT will

Re: Load balancing & NAT [7:60663]

2003-01-10 Thread Doug S
I liked the comment and definitely agree that some of the authors of Cisco training material should be named and publicly humiliated, although the sheer volume of mistakes could make this a somewhat overwhelming task for the public doing the humiliating. Still, I want to add my opinion that Cisco d

Using different fallback VLAN for dynamic vlans [7:49192]

2002-07-18 Thread Doug Korell
I am setting up different closets in the building to use different VLAN's for the PC's. But, all printers will be on the their own VLAN. So what I would like to do is enter the printer MAC addresses in a table for using dynamic VLAN's and have a different fallback VLAN (if the MAC isn't in the tab

Anyone using Cisco ACS? [7:49602]

2002-07-24 Thread Doug Korell
Is anyone using Cisco Secure Access Control Server and if so, how do you like it? I am looking for something to work with PIX VPN, RSA SecurID key fobs, and possibly Cisco Aironet. My Cisco rep recommended ACS but I want to make sure I'm not rush into something that isn't going to work well. The m

Many errors on AUI-Ethernet converter to 6500 [7:51451]

2002-08-15 Thread Doug Korell
I have a DEC server that communicates to the network through an AUI to ethernet converter. It synchs up to the 6509 at 10mb/half duplex which is all that it will run at but I'm getting many many errors on the port. I have seen this with some other devices that we have to run the converters on. Bef

RE: Cisco Security Specialist 1: To self-study or not [7:54756]

2002-10-02 Thread Doug Oh
I completed this by self-study, and a moderate lab (3 routers at the time, a couple of PCs and the PIX 501). This sufficed for all but the IDS exam. For that, I built a FrankenIDS machine and created a Cisco Security Policy Manager to experiment/practice with. This allowed me to get a feel for

RE: Cisco Security Specialist 1: To self-study or [7:54767]

2002-10-03 Thread Doug Oh
Clearly, you cannot do DMZ scenarios, or get a real feel for multiple security levels. Also hot standby is not allowed. However, that said, it is completely compatible with the larger units' IOS, allowing you to use the current version and get hands-on feel for how it differs from the convention

Distributing Cisco VPN Client [7:72061]

2003-07-09 Thread Doug Korell
I am getting ready to roll out the Cisco VPN client (3.6.4) and looking for tips on the easiest way to do this. I currently have it on a FTP site and setup as a self extracting file that extracts to c:\temp and then launches setup.exe automatically. Now for the profile I want people to use. I do n

RE: Distributing Cisco VPN Client [7:72061]

2003-07-09 Thread Doug Korell
I agree about either way of setting up the profile is not secure. My thinking is if they know the group username and password, they can call up their buddy and tell them it. But if I never give it to them, then they need to know a little bit about the client and where that information is kept. Aut

RE: Microsoft IAS with Cisco Radius [7:72125]

2003-07-10 Thread Doug Korell
You should be able to since it's a standard RADIUS server. I've been using IAS for Cisco VPN authentication for about 6 months now. I am now implementing ACS though and what an advantage it has over IAS. If someone so much as farts on the network, I know about it. In IAS just setup each device tha

RE: Microsoft IAS with Cisco Radius [7:72125]

2003-07-10 Thread Doug Korell
Forgot about the user part. In IAS, Setup a remote access policy by domain groups. Create a domain group, throw the users in it that have access to the router and allow it in the policy. When the user logs into the router, it will go to IAS, go down the list of Remote Access Policies, and allow th

ACS 3.1 authenticating to ODBC conenction [7:72133]

2003-07-10 Thread Doug Korell
Anyone doing this to authenticate users? I'm following the CHAP example in the user guide and can't create the stored procedure. I'll provide more details is someone is able to help. Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=72133&t=72133 ---

techsoup.org [7:73477]

2003-08-04 Thread Doug Korell
Anyone used techsoup.org for non-profit Cisco ordering? An admin of $60 for a $3000 switch seems too good to be true. Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=73477&t=73477 -- **Please support GroupStudy by purchasing from th

One PIX, two ISP's, two statics for hosts [7:74739]

2003-09-03 Thread Doug Korell
I have hooked up a second ISP to my PIX. One ISP will handle all outbound web access and VPN (default route). The other will handle specific traffic to several companies (individual routes). I have some internal hosts that have statics assigned to the ISP that will handle specific traffic. But, at

  1   2   >