Re: [c-nsp] Prove it's not the network!

2008-05-14 Thread Justin Shore
Nathan wrote: > Proceed by elimination. If there is someone else in the office (I > suppose the T1 is not just for one person) whose Outlook is *not* > slow, and especially if "someone else" can be extended to "everybody > else" then the problem is not the network. > > Outlook can have severe spe

Re: [c-nsp] vlan tagging question

2008-05-14 Thread Chad Whitten
Thanks all. The vlan dot1q tag native was what we needed. On Wed, May 14, 2008 at 6:21 PM, Brad Henshaw <[EMAIL PROTECTED]> wrote: > Chad Whitten wrote: > >> I have a non-cisco access device connecting to a cisco 3750 via gigE. >> The 3750 interface is set for 802.1q trunking with two vlans - 100

Re: [c-nsp] vlan tagging question

2008-05-14 Thread Brad Henshaw
Chad Whitten wrote: > I have a non-cisco access device connecting to a cisco 3750 via gigE. > The 3750 interface is set for 802.1q trunking with two vlans - 100 and > 201. Vlan 201 is the native vlan on the cisco interface. Should the > access device be tagging packets on vlan 201 or leaving th

Re: [c-nsp] Cisco ACS tacacs console login fails.

2008-05-14 Thread Ramcharan, Vijay A
Just a hunch, Have you tried going into enable mode with your TACACS password? I see you have specified this: aaa authentication enable default group tacacs+ enable which probably indicates the device is looking to TAC+ for the enable password. Your log message also indicates "ACS password in

Re: [c-nsp] WDM equipment

2008-05-14 Thread Olson, Douglas
I've used all but the Brocade in past lives. It really depends on your requirements. Cisco has a nice plaform that supports a lot of topologies and features, but you will pay for it. Adva will be quite a bit cheaper, and they were always pretty aggressive on price to try to win the deals. Not as b

Re: [c-nsp] Old Aironet Gear Issus

2008-05-14 Thread Asbjorn Hojmark - Lists
> Hi ivor, I have a old CISCO AIR-AP1230B. But it's > firmware is very older.I want to updating the firmware.Can > you give me a new firmware for CISCO > AIR-AP1230B,Please.Thank you very much. Tom http://www.cisco.com/go/software > Wireless Software > Wireless Software > Access Points >

Re: [c-nsp] Prove it's not the network!

2008-05-14 Thread Chris Riling
Last time I had to solve a similar problem, it ended up being related to one application not honoring the TCP window size in the OS. Turns out the application would only use X K regardless of what you set the window to in the OS. It took many webex school bus sessions demonstrating the differences

Re: [c-nsp] Any to terminate a DSL loop on a 72xx or 75xx?

2008-05-14 Thread Chris Riling
You may be correct, I haven't personally had to set up a DSL modem in quite some time... I've configured the X3's, I know they can do bridge mode... According to the datasheets on Zoom's website, the X5's and X6's will do this as well, although I haven't had to do it on these models personally...

[c-nsp] Cisco Security Advisory: Cisco Unified Presence Denial of Service Vulnerabilities

2008-05-14 Thread Cisco Systems Product Security Incident Response Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Cisco Security Advisory: Cisco Unified Presence Denial of Service Vulnerabilities Advisory ID: cisco-sa-20080514-cup Revision 1.0 +- Summary

[c-nsp] Cisco Security Advisory: Cisco Unified Communications Manager Denial of Service Vulnerabilities

2008-05-14 Thread Cisco Systems Product Security Incident Response Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Cisco Security Advisory: Cisco Unified Communications Manager Denial of Service Vulnerabilities Advisory ID: cisco-sa-20080514-cucmdos Revision 1.0

Re: [c-nsp] Using same AS number

2008-05-14 Thread Rudy Setiawan
Thank you guys. I think I am going to try the allowas-in and see how it goes. :) Regards, Rudy On Wed, May 14, 2008 at 2:04 AM, Jonathan Crawford <[EMAIL PROTECTED]> wrote: > You can specify "neighbor allowas-in" to bypass this check. I'd > proceed carefully if using it... as you are defeating

[c-nsp] Cisco Security Advisory: Cisco Content Switching Module Memory Leak Vulnerability

2008-05-14 Thread Cisco Systems Product Security Incident Response Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Cisco Security Advisory: Cisco Content Switching Module Memory Leak Vulnerability Advisory ID: cisco-sa-20080514-csm http://www.cisco.com/warp/public/707/cisco-sa-20080514-csm.shtml Revision 1.0 For Public Release 2008 May 14 1600 UTC (GMT

Re: [c-nsp] WDM equipment

2008-05-14 Thread Bruce Buchanan
I use some Transmode gear and have been quite happy with it. Bruce Bruce Buchanan Senior Network Technician Nexicom 5 King St. E., Millbrook, ON, LOA 1GO Phone: 705-932-4147 Cell: 705-750-7705 Web: http://www.nexicom.net Nexicom - Connected. Naturally. -Original Message- From: [EMAIL PR

Re: [c-nsp] WDM equipment

2008-05-14 Thread Marcelo Veriato Lima
Padtec, www.padtec.com.br low cost, very secure, optical route protection, transeiver protection and more. Uddin, Tahir wrote: > Adva WDM equipment has worked well for us in the past. > Also take a look at Cienna 4500, low cost, lots of flexibility on their > modules. > > Tahir > > -Origina

Re: [c-nsp] Prove it's not the network!

2008-05-14 Thread Joe Loiacono
NetQoS SA is an appliance. It can be placed anywhere but typically connects to a data center switch and aggreagte ports are SPAN'd to it. Among other graphs which are also valuable, the keys one for exonerating the network fall into the Server Response Time group. Here you will get four individ

Re: [c-nsp] WDM equipment

2008-05-14 Thread Uddin, Tahir
Adva WDM equipment has worked well for us in the past. Also take a look at Cienna 4500, low cost, lots of flexibility on their modules. Tahir -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jonathan Crawford Sent: Wednesday, May 14, 2008 3:35 AM To: [EMA

Re: [c-nsp] Fake Cisco Equipment News Articles - very interesting

2008-05-14 Thread Jared Mauch
On May 14, 2008, at 9:55 AM, Chris Burwel wrote: > Ted Mittelstaedt wrote: >>> >>> And if it is being injected at the source, where is it being made, >>> and by >>> whom? Is it being made in the same factories that make the non- >>> counterfeit >>> stuff? Using the same machinery, same dies,

Re: [c-nsp] vlan tagging question

2008-05-14 Thread Eric Van Tol
> -Original Message- > From: [EMAIL PROTECTED] [mailto:cisco-nsp- > [EMAIL PROTECTED] On Behalf Of Chad Whitten > Sent: Wednesday, May 14, 2008 9:10 AM > To: cisco-nsp@puck.nether.net > Subject: Re: [c-nsp] vlan tagging question > > Thanks for the reply. > > The device can understand 802.1q

Re: [c-nsp] vlan tagging question

2008-05-14 Thread Chad Whitten
Thanks for the reply. The device can understand 802.1q and can tag/untag frames. The cisco is outside my control and I have very little experience with the native vlan setting. My thinking is that the cisco config should be something like switchport mode trunk switchport trunk encapsulation dot

Re: [c-nsp] PIX questions

2008-05-14 Thread Raul Lopez Nevot
I'm sure you can have identity nat for two machines and PAT for others. You must combine static commands with alias commands: static (dmz,outside) publicip privateip netmask 255.255.255.255 alias (outside) privateip publicip 255.255.255.255 and then you can goal PAT for other addresses with nat a

Re: [c-nsp] vlan tagging question

2008-05-14 Thread Jeff Cartier
If the device is incapable of understanding IEEE 802.1Q then it will not be able to recognize and interpret the tagged frames, and will only understand the native/untagged vlans. It should only be communicating on the native vlan. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL

[c-nsp] vlan tagging question

2008-05-14 Thread Chad Whitten
I have a non-cisco access device connecting to a cisco 3750 via gigE. The 3750 interface is set for 802.1q trunking with two vlans - 100 and 201. Vlan 201 is the native vlan on the cisco interface. Should the access device be tagging packets on vlan 201 or leaving them untagged? -- Chad Whitten

Re: [c-nsp] Label swapping on 7600 ethernet line cards

2008-05-14 Thread Jose
Peter Rathlev wrote: > Hi Jose, > > On Tue, 2008-05-13 at 12:16 -0400, Jose wrote: > >> It was recently brought to my attention from a colleague that certain >> Ethernet line cards for the 7600 platform do not support label >> swapping. We currently have WS-X6148-GE-TX line cards and we are

Re: [c-nsp] CVR-X2-SFP

2008-05-14 Thread Simon Lockhart
On Wed May 14, 2008 at 01:56:20PM +0200, [EMAIL PROTECTED] wrote: > Who can tell me whether the Twingig CVR-X2-SFP are supported in 6500 module > WS-X6708-10G-3C ? No - they depend on an additional connector at the back of the slot which is only in the 3750E etc boxes. Simon -- Simon Lockhart |

[c-nsp] CVR-X2-SFP

2008-05-14 Thread jcovini
Who can tell me whether the Twingig CVR-X2-SFP are supported in 6500 module WS-X6708-10G-3C ? cheerios Jerome Covini ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net

Re: [c-nsp] Prove it's not the network!

2008-05-14 Thread Aaron R
I have heard of NetQoS. Is this an appliance or a piece of software? Where does it run? The site does not give much away. Cheers, Aaron. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Joe Loiacono Sent: Tuesday, May 13, 2008 11:56 PM To: Rick Martin Cc:

Re: [c-nsp] Interruptions when enabling "mls qos"

2008-05-14 Thread Andre Beck
Hi Peter, On Tue, May 13, 2008 at 10:28:55AM +0200, Peter Rathlev wrote: > > We're preparing a service window and need to enable this on a few edge > and distribution units, but we're unable to say exactly how much > disturbance the network can expect, e.g. if this would down > eBGP-sessions. Doe

Re: [c-nsp] Using same AS number

2008-05-14 Thread Phil Mayers
Rudy Setiawan wrote: > Hi all, > > As per BGP rule, that if a router sees its own AS in the path, it will > filter them out of the prefixes. > > So if I have two locations with different providers and no direct > connection to each other, what's the best way to be able to use the > same AS and ye

Re: [c-nsp] Using same AS number

2008-05-14 Thread Jonathan Crawford
You can specify "neighbor allowas-in" to bypass this check. I'd proceed carefully if using it... as you are defeating one of the loop detection mechanisms, filter well. -Jonathan -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Rudy Setiawan Sent: Tuesd

Re: [c-nsp] IPv6 load testing

2008-05-14 Thread Kevin Barrass
Cheers will try iperf out, just building 2 Linux PCs now as I type :0) Regards Kev -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Eric Van Tol Sent: 13 May 2008 17:33 To: Kevin Barrass; cisco-nsp@puck.nether.net Subject: Re: [c-nsp] IPv6 load testing

Re: [c-nsp] Fake Cisco Equipment News Articles - very interesting

2008-05-14 Thread Peter Rathlev
On Tue, 2008-05-13 at 22:43 -0700, Ted Mittelstaedt wrote: > People post on this list every day of problems they are having with Cisco > equipment, then proceed to lambast various Cisco IOS revisions for breaking > things. Well, how do I know that when someone reports X.Y.Z version of IOS > is ba

Re: [c-nsp] Using same AS number

2008-05-14 Thread Tom Storey
On 14/05/2008, at 4:06 PM, Rudy Setiawan wrote: > Hi all, > > As per BGP rule, that if a router sees its own AS in the path, it will > filter them out of the prefixes. > > So if I have two locations with different providers and no direct > connection to each other, what's the best way to be able

Re: [c-nsp] WDM equipment

2008-05-14 Thread Jonathan Crawford
There is also bti photonics... never used any of their active gear, but I'm very happy with their passive stuff. Jonathan -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Frank Bulk - iNAME Sent: Tuesday, May 13, 2008 10:56 PM To: 'Fredrik Jacobsson'; ci

Re: [c-nsp] SPAN for POS?

2008-05-14 Thread Hank Nussbacher
At 03:57 PM 13-05-08 +, [EMAIL PROTECTED] wrote: >Yes, use the switchport capture feature. > >http://www.cisco.com/en/US/docs/switches/lan/catalyst6500/ios/12.2SX/configuration/guide/sx_swcg.pdf >create the VACL first and then set a switchport as "capture". > >You can apply the VACL to a WAN in