Re: [c-nsp] Netflow export error from C6506 (WS-X6704-10GE)

2011-08-12 Thread Jiri Prochazka
We use netflow export on our 6500's equipped with WS-X6704-10GE's and DFC3CXL and have no problem with it. Each device is exporting aprox. 15 Mbps of flows during peak hours. Current IOS being used is SXI5, but haven't had a problem with other releases.. Jiri Dne 12.8.2011 6:39,

Re: [c-nsp] Netflow export error from C6506 (WS-X6704-10GE)

2011-08-12 Thread Stas Bakulin
Jiri, can you tell me exactly full version of IOS and config for netflow that you are running. Stas Bakulin -- og...@kvant-telecom.ru | www.kvant-telecom.ru Tel: +7 473 233 0330 (128) On 12 August 2011 13:19, Jiri Prochazka

Re: [c-nsp] Brocade VS Cisco

2011-08-12 Thread Mark Tinka
On Thursday, August 11, 2011 09:42:39 PM Bradley Williamson wrote: We are looking at Brocade, Cisco, and Juniper for a couple of upcoming projects and I am familiar with both Cisco and Juniper, but not so much with Brocade. We have a few of their small switches in our network, but that’s

Re: [c-nsp] Brocade VS Cisco

2011-08-12 Thread Mark Tinka
On Friday, August 12, 2011 01:59:27 AM Saku Ytti wrote: I'm personally not seeing cisco tax myself. When I look boxes which meet my demand, everything is available roughly in same price range, assuming sales droid can realistically expect you to choose something else than Cisco. And what

Re: [c-nsp] Brocade Vs Cisco

2011-08-12 Thread Mark Tinka
On Friday, August 12, 2011 03:52:44 PM Gert Doering wrote: Recently, OS and TAC support quality at Juniper seriously went down the drain, so the original reason to want Juniper high quality operating system and very motivated company to iron out the remaining wrinkles seems to have been

Re: [c-nsp] Netflow export error from C6506 (WS-X6704-10GE)

2011-08-12 Thread Jiri Prochazka
Stas, version of ios is following - s72033_rp-ADVIPSERVICESK9_WAN-M (s72033-advipservicesk9_wan-mz.122-33.SXI5.bin) NetFlow config - sitel-trans-6503#show run | Inc flow ip flow-cache entries 256000 ip flow-cache timeout inactive 60 ip flow-cache timeout active 1 ip flow-capture vlan-id

Re: [c-nsp] ASA5520 has very high CPU

2011-08-12 Thread Dale Shaw
Hi, On Fri, Aug 12, 2011 at 10:17 PM, le luu le2...@yahoo.com wrote: I have a ASA5520 always has very high CPU 95% - 98% almost all time even that traffic goes thru the ASA is low. Anyone knows why ? No. It's impossible to say, based on the limited amount of information you've provided.

[c-nsp] LLQ QoS Question

2011-08-12 Thread Jeff Cartier
Hi All, Just a quick question to the group. We are about to deploy a few of our routers 'back to back' with the MPLS service providers routers. We will be doing all the markings on our routers and the SP router will be honouring the markings and ensuring QoS toward the MPLS. Since we will

Re: [c-nsp] mls qos trust dscp on 7600 port-channel breaks IS-IS?

2011-08-12 Thread Jared Gillis
Does anyone have any thoughts on this at all? Known Cisco bug? I really doubt it's the service-policy, as the policy is running on the Port-Channel right now with no problem. IS-IS only stops working across the interface when I add the mls qos trust dscp command to it. I have the exact same

Re: [c-nsp] Brocade VS Cisco

2011-08-12 Thread Mark Tinka
On Friday, August 12, 2011 07:39:50 PM harbor235 wrote: Mark, Can you elaborate on the ipv6 sw issues? We have some Foundry and we are getting ready for a limited ipv6 rollout? There was no v6 support for IS-IS when we tested some classic Foundry and new Brocade units back in '09. Not

Re: [c-nsp] BGP router upgrade

2011-08-12 Thread Mark Tinka
On Friday, August 12, 2011 09:31:08 PM Lars Eidsheim wrote: I am planning to upgrade our BGP edge from a Cisco 7200/NPE-G1. The NPE-G1 suits our needs at the moment, but as we are looking to interconnect with more services, do more localpeerings and implement IPv6 in near future this might a

Re: [c-nsp] Nexus 5K optimisation for iSCSI traffic

2011-08-12 Thread Tóth András
Hi Brad, I am not sure that FlexLink is safer than BPDU filter in any way. As the Configuration Guide points out, FlexLink will disable STP on the interface and it's required to ensure a loop-free topology. A port with BPDU filter is behaving in the same way as one with FlexLink because neither

Re: [c-nsp] DOM support on catalyst 4948 10GE

2011-08-12 Thread Tóth András
Hi Ruslan, Try upgrading the ROMMON to at least 12.2(31r)SGA4 or if possible to 12.2(44r)SG5. Best regards, Andras On Thu, Aug 11, 2011 at 12:14 PM, Ruslan Pustovoytov ru...@inbox.ru wrote: Hi all I need for digital diagnostic monitoring 10GE ports on Catalyst 4948 10GE switch. I check

Re: [c-nsp] DOM support on catalyst 4948 10GE

2011-08-12 Thread Tóth András
Hi Ruslan, Try upgrading the ROMMON to at least 12.2(31r)SGA4 or if possible to 12.2(44r)SG5. Best regards, Andras On Thu, Aug 11, 2011 at 4:18 PM, Ruslan Pustovoitov ru...@mostelekom.net wrote: Hi all I need for digital diagnostic monitoring 10GE ports on Catalyst 4948 10GE switch. I

Re: [c-nsp] BGP router upgrade

2011-08-12 Thread nigel cooper
If it helps, recently upgraded the corporate from a 7206 to 3925 for the corporate 1GB connection which works well and has no performance issues, full bgp table. Also using 7604s for the diverse production ISPs 10GB connex also no issues, full bgp table. Installed and forgotten. Cisco

[c-nsp] best way to get around IPSEC subnet Conflicts.

2011-08-12 Thread Brent Roberts
I am looking for the best way to get around IP conflicts (On the Far Side) in fully redundant Hardware solution. I am working in a large Scale Hosted application environment and every 5th or so customer has the same RFC1918 Address that every other small shop has. I have a Pair of ASA 5520's

Re: [c-nsp] Nexus 5K optimisation for iSCSI traffic

2011-08-12 Thread Tóth András
Let me add that my point is more about the rare situation when a downstream port on the blade switch gets connected (looped) with one of the upstream FEX switches, then you might face a loop. FlexLink is indeed better when you have 2 uplinks and you don't want them both to be active at the same

[c-nsp] 802.1q , tag and untag

2011-08-12 Thread Deric Kwok
Hi all How can I create the 802.1q vlan in cisco switch? How can I put the tag and untag on the port. ls it same as native vlan? Thank you so much ___ cisco-nsp mailing list cisco-nsp@puck.nether.net

Re: [c-nsp] 802.1q , tag and untag

2011-08-12 Thread Ramses Rios
Hi If you want to enable 802.1q in one switch port via CLI for example for GigabitEthernet1/0/5: interface GigabitEthernet1/0/5 switchport trunk encapsulation dot1q switchport trunk allowed vlan 2,800 { 2 and 800 are the VLANIDs included in this 802.1q link, vlan tag in L2} switchport mode

Re: [c-nsp] 802.1q , tag and untag

2011-08-12 Thread Randy
Deric - How about you engage in some RTFM (Read-The-Fucking-Manual) and Use-Goolge! You have tried it here before, tried it on NANOG last week: lo ping, spamming-tree, connection-disappearing...! enough said! Deric *wants-to-know* and *NOW* but Deric doesn't know what he wants to know. ./Randy

Re: [c-nsp] cisco-nsp Digest, Vol 105, Issue 41

2011-08-12 Thread Christopher J. Wargaski
Hey Brent-- I used to manage ASAs for several customers and ran into this frequently when they had IPsec LAN to LAN tunnels to their partners, software developers and the like. I resolved this problem by translating the destination subnet on my side of the tunnel. Just used another nat