Re: [c-nsp] Nexus 7k Upgrade Path

2018-02-22 Thread Pavel Skovajsa
Definitely not a stupid question. While the double ISSU would work we generally would not do it for big jumps like that. The problem is that the whole procedure tended to be buggy so we are too afraid. Not speaking about crazy bugs we ran into half year later because "triggered by previous issu up

Re: [c-nsp] BGP not advertising supernet to RR's

2017-12-01 Thread Pavel Skovajsa
Its strange, you can try some other methods of creating the summary - maybe via "aggregate" way. Also instead of redist static you can also try "network" command. -pavel Dňa 3. 10. 2017 9:20 AM používateľ napísal: > Just stab in a dark, > Aren't you learning that /20 from RRs and your node th

Re: [c-nsp] Tabo Topic? Third party Maintenance

2017-02-06 Thread Pavel Skovajsa
Turns out this information is "kinda" hidden in various pdfs see for example Cisco TAC time presentations or cisco live about "what does sw version X bring over version Y to the table" -pavel Dňa 27.1.2017 11:24 používateľ "James Bensley" napísal: On 24 January 2017 at 17:54, Lee wrote: > On

Re: [c-nsp] FabricPath on Nexus Switches

2017-01-23 Thread Pavel Skovajsa
One interesting thing we ran into with FabricPath couple years ago is that you have to forget about the notion of "set of special vlans just for this switch" . In other words your list of vlans needs to be consistent and always the same in whole FabricPath. This is due to the fact that by default t

Re: [c-nsp] ASR Firmware 15.5(3)S4a

2016-10-26 Thread Pavel Skovajsa
> -Original Message- > From: cisco-nsp [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of > Mark Tinka > Sent: Wednesday, October 26, 2016 9:22 AM > To: Pavel Skovajsa ; Harry Hambi - Atos < > harry.ha...@bbc.co.uk> > Cc: cisco-nsp NSP > Subject: Re: [c-nsp

Re: [c-nsp] ASR Firmware 15.5(3)S4a

2016-10-26 Thread Pavel Skovajsa
On a similar topic of the software download portal. Does it happen to you that when you navigate those software download selections nothing happens after you click on them? I drives me mad sometimes as it comes and goes. -pavel Dňa 26.10.2016 11:30 používateľ "Harry Hambi - Atos" napísal: > Hi

Re: [c-nsp] huge amount of mcast traffic

2016-10-17 Thread Pavel Skovajsa
James, So all your customers are on 6708? Why thing you can try is check the internal architecture of the 6708 cards especially the egress replication asic.Probably also depends on which ports you have the customers connected... -pavel Dňa 13.10.2016 18:44 používateľ "Matthew Huff" napísal: >

Re: [c-nsp] Adventures while upgrading a dual sup-8 WS-C4510R+E

2016-10-17 Thread Pavel Skovajsa
Not that i recognize the error but with with the early sup8s i learned to always upgrade the rommon first. Also upgrade using REAL power cycle not a reload. I know - sounds like nonsense, unfortunatelly backed by number of TAC cases... -pavel On Tuesday, 11 October 2016, Sebastian Beutel < sebas

Re: [c-nsp] Cisco Advisor Tools

2016-10-07 Thread Pavel Skovajsa
Ziad, there is really no need for advisor tools since it is very simple. Cisco is selling only two metallic looking boxes with holes in them - something called a "router" and some other thing called a "switch". The difference is mainly just in color - "router" is black, and "switch" is silver. Jus

Re: [c-nsp] Cat6500 VLAN cannot be assigned to a routed port sub-if?

2016-09-19 Thread Pavel Skovajsa
It's a switch! -pavel On Mon, Sep 19, 2016 at 11:39 AM, Anders Löwinger wrote: > On 2016-09-19 10:19, Gert Doering wrote: > >> Things like that makes one wonder if Sup2T is intentionally trying to >> kill the platform... "too late, too limited, too stupid design decisions" >> (like, the new net

Re: [c-nsp] ip device tracking on IOS-XE

2016-08-09 Thread Pavel Skovajsa
In case it helps: TAC engineer advised us that a global command "no nmsp enable" disables the IPDT on all the Cisco switches. -pavel On Tue, Aug 9, 2016 at 6:50 PM, Sebastian Beutel < sebastian.beu...@rus.uni-stuttgart.de> wrote: > Hi Antoine, > > On Tue, Aug 09, 2016 at 09:24:55AM +0200, Antoin

Re: [c-nsp] 40G options for 6807

2016-07-13 Thread Pavel Skovajsa
Supposedly there will be new 40G, 10G and 100G modules in the coming months. See Sales Connect. -pavel On Wed, Jul 13, 2016 at 2:29 PM, Nick Cutting wrote: > Any new 40g modules coming out/been released for the 6807? > > Or still just > > WS-X6904-40G-2T > > Where is the love for this golden ch

Re: [c-nsp] Cisco and microbursts

2016-05-19 Thread Pavel Skovajsa
Maybe they are just trying to uncover the fact that for example old 2621 router has slow clock on its ASIC (in this case mips cpu) but it actually is capable of having multiple of FastEthernet interfaces. They do not work really great, but possible :) If you speed up that 'asic' things are sudden

Re: [c-nsp] IOS XE Denali release date

2016-03-31 Thread Pavel Skovajsa
sorry, nothing for ASR and N1k - yet. -pavel On Thu, Mar 31, 2016 at 5:26 PM, Pavel Skovajsa wrote: > It has been available for a 2 months now for download, for example for > Catalyst 3650/3850 you can download the 16.1.2 image - > cat3k_caa-universalk9.16.01.02.SPA.bin > &

Re: [c-nsp] IOS XE Denali release date

2016-03-31 Thread Pavel Skovajsa
It has been available for a 2 months now for download, for example for Catalyst 3650/3850 you can download the 16.1.2 image - cat3k_caa-universalk9.16.01.02.SPA.bin The upgrade procedure is little complicated, I suggest you read here: http://www.cisco.com/c/en/us/td/docs/switches/lan/catalyst3650/

Re: [c-nsp] TX low alarm warning

2016-02-15 Thread Pavel Skovajsa
For some reason especially on 4500X 3.7 code we have also seen this message on ports which are left no shut, and they have an SFP in it. It was seriously polluting our logs so we wrote this: logging discriminator LOGFILTER mnemonics drops SFF8472-5-THRESHOLD_VIOLATION logging host x.y.z.w discrimi

Re: [c-nsp] Cisco iWAN Solution

2015-05-02 Thread Pavel Skovajsa
welcome, I would be interested in others opinion and experience as well, -pavel skovajsa On Sat, May 2, 2015 at 6:34 PM, Ranjith R wrote: > ​Hi . > > Can anyone please provide inputs on the Cisco iWAN solution . > > Thanks, > Ranjith​ > > On Fri, May 1, 2015 at 12:11

Re: [c-nsp] WLC5700 and Unparalleled scalable wireless solution

2014-09-29 Thread Pavel Skovajsa
searching for the "Converged Access" on Cisco Live pages. Cheers, -pavel skovajsa On Mon, Sep 29, 2014 at 9:39 AM, Matti Saarinen wrote: > > Hello, > > I just noticed that Cisco has a new wireles LAN controller namely 5700. > Its documentation tells that the system will

Re: [c-nsp] TAC hits a new record level of aggravation...

2014-02-01 Thread Pavel Skovajsa
window" nothing happens. Regards, -pavel skovajsa On Thu, Nov 7, 2013 at 12:13 PM, Antonio Soares wrote: > Another tool that is a nightmare. The new bug search tool: it hangs my IE > 9, > my FF 25, ... > > This is what FF tells me: > > "A script on this page may be busy

Re: [c-nsp] switching of monitored traffic

2013-09-28 Thread Pavel Skovajsa
It will switch it as any other incoming traffic. -pavel On Saturday, September 28, 2013, Ben Hammadi, Kayssar (NSN - TN/Tunis) wrote: > Dears, > > We are monitoring traffic from Switch A to Switch B with "monitor > session" , Switch B receive now all traffic handled by Switch A . > Does

Re: [c-nsp] ME3400E - Shaping vlans?

2013-09-26 Thread Pavel Skovajsa
Per Vlan Egress Shaping and Per vlan Ingress policing is definitely possible but not straightforward to configure since there are many limitations.For example you can't have a "match vlan" in output policy-map and you need to match against DCSP. For example: class-map match-any Video match ip dscp

Re: [c-nsp] ME-3400EG - Shaping

2013-05-11 Thread Pavel Skovajsa
Hello, see https://puck.nether.net/pipermail/cisco-nsp/2010-March/069379.html -pavel On Fri, May 10, 2013 at 1:09 AM, John Elliot wrote: > Hi, > > Ive read that the "older" version of the ME3400 (The non "E") had limited > granularity with shaping - Can anyone please confirm if the "E" version

Re: [c-nsp] Stability of NX-OS with FCoE/10GB

2013-01-28 Thread Pavel Skovajsa
We are running something very very similar (8x2232 FEX) per pair of 5596UP and so far they are doing fine. Just for fun, you might want to uprade to N1(3): kickstart image file is: bootflash:///n5000-uk9-kickstart.5.2.1.N1.3.bin kickstart compile time: 12/4/2012 1:00:00 [12/04/2012 09:53:21]

Re: [c-nsp] New Cisco ME3400 IOS?

2012-04-19 Thread Pavel Skovajsa
The new 12.2(58)EX is out there, can somebody please share experience with it? Also would be great if someone can shed some light on what is actually considered an 'Enhanced QoS buffer management' since from the release notes http://www.cisco.com/en/US/docs/switches/metro/me3400e/software/release/1

Re: [c-nsp] Trunking Private VLANs on 6509

2012-03-04 Thread Pavel Skovajsa
Hi, indeed there is no option for 'Private Vlan Trunk' on a 6500 nowdays. Some time ago this was possible with CatOS but somehow the support for this did not get into Native IOS. The only real 'solution' is to use some loopback cables that 'translate' the incoming dot1q tag. Obviously you would ne

Re: [c-nsp] 7600 SVI QoS

2011-11-18 Thread Pavel Skovajsa
I believe that is normal, see http://www.cisco.com/en/US/docs/switches/lan/catalyst6500/ios/12.2SXF/native/configuration/guide/qos.html#wp1726124 With a PFC3, you can attach policy maps to Layer 3 interfaces for application of PFC QoS to egress traffic. VLAN-based or port-based PFC QoS on Layer 2

Re: [c-nsp] VPLS/Layer2 Egress Policing

2011-10-27 Thread Pavel Skovajsa
This is by design since the WS-6748 cards are for LAN environment. You would need to use either a SPA module, or better the ES cards: http://www.cisco.com/en/US/prod/collateral/routers/ps368/data_sheet_c78-49152.html -pavel On Tue, Oct 25, 2011 at 10:14 AM, ar wrote: > Hi Guys. > > I am searchin

Re: [c-nsp] No Link between SFP-10G-LRM and X2-10GB-LX4?

2011-10-05 Thread Pavel Skovajsa
Hello, Really does it say to be incompatible? Since LX4 is longwave paralel solution (similar to WDM) and LRM is longwave serial solution. -pavel On Wed, Oct 5, 2011 at 7:40 PM, wrote: > Greetings, > > I have a 6509 with an X6716-10GE Card equipped with Cisco X2-10GB-LX4 10GE > modules and a C

Re: [c-nsp] PVLAN Promiscuous Trunk on 6500

2011-09-09 Thread Pavel Skovajsa
AFAIK this was only on CatOS for 6500 so not much useful right now. The private host feature applies vlan tag to the ingress traffic of the access port (not trunk), the private trunk does ingress traffic tag swap of multiple vlans coming in via trunk. So, if you have lot of free ports you might b

Re: [c-nsp] PBR on traffic originating from the router

2011-07-28 Thread Pavel Skovajsa
Hello Jay, you can a apply a route-map that would do PBR on the traffic generated by the router like this: route-map LocalPolicy permit 10 match ip address PingISP_A set interface Serial0/0/0 ip local policy route-map LocalPolicy Seems like your scenario perfectly matches the one describe

[c-nsp] ME3400 12.2(58)SE1 input CIR bug?

2011-05-16 Thread Pavel Skovajsa
exceed-action drop -pavel skovajsa ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/

Re: [c-nsp] Private VLANs for customer isolation on sup720/12.2(33)

2011-04-19 Thread Pavel Skovajsa
On Tue, Apr 19, 2011 at 4:38 PM, Phil Mayers wrote: > On 19/04/11 15:09, Pavel Skovajsa wrote: > >> In order to make use of this design the downstream switches (where you >> connect the customer devices), would need to understand private-vlans in >> > > Well, they

Re: [c-nsp] Private VLANs for customer isolation on sup720/12.2(33)

2011-04-19 Thread Pavel Skovajsa
iple secondary vlans over that port. This seems like is not your case. BTW I believe it is supported on latest CatOS...:) -pavel skovajsa On Tue, Apr 19, 2011 at 3:38 PM, Phil Mayers wrote: > All, > > We've got a pair of Cisco 6500/sup720 serving as our datacentre collapsed >

Re: [c-nsp] Multiple VRFs over site-to-site VPN? Possible?

2011-02-03 Thread Pavel Skovajsa
I have seen a similar idea, using MPLS inside DMVPN - see Ivan's blog http://blog.ioshints.info/2011/02/end-to-end-qos-marking-in-mplsvpn-over.html But you would need ISR for this, DMVPN (and MPLS) is not possible on A

Re: [c-nsp] Cisco 7401 - Buy/Get a specific IOS ?

2011-01-30 Thread Pavel Skovajsa
Seems like the images you are looking for are not the on Download Area since the box is EOL and nobody actually cares. They have been EOL'd long time so you cannot officially buy a service contract for them. Your only official path is trying to ask your cisco account rep. This document details the

Re: [c-nsp] PVLAN Question

2011-01-12 Thread Pavel Skovajsa
Actually there is a feature for this - "switchport private-vlan trunk" , but as far as I know it is only working on the C4500-ME sup http://www.cisco.com/en/US/docs/switches/lan/catalyst4500/12.1/12ew/configuration/guide/pvlans.html

Re: [c-nsp] 10G for 6506-E with Sup32-8Gb or replace with 4900M

2010-12-23 Thread Pavel Skovajsa
It is very interesting that a 2:1 8 port 10G X2 card is $37500 for C6509 and $7500 for 4900M (+ has the ability to use Twingig). So I would say if don't need the extension capacity of C6506-E go for something smaller like 4900M. Also if you will only need 2x10G in the future you also might explore

Re: [c-nsp] FTTH access switch

2010-12-03 Thread Pavel Skovajsa
I second this, very elegant solution. Currently the only issue we have with PVLANs is that they cannot be handed over as a dot1q trunk on our access layer - something like "switchport mode private-vlan trunk" does not exist. -pavel On Fri, Dec 3, 2010 at 8:01 AM, Mikael Abrahamsson wrote: > On

Re: [c-nsp] FTTH access switch

2010-12-02 Thread Pavel Skovajsa
Hello, Cisco is pretty expensive on one side, but they somehow know what they are doing, compared to other cheap switch vendors By talking to your cisco account rep you can find that you can get nice discount when ordering large quantities of switches, which can sometimes get you to prices som

Re: [c-nsp] Cisco ASR 9K Vs 7600

2010-12-01 Thread Pavel Skovajsa
On a lighter note, Not sure why you want to aproach the problem logically and from technology viewpoint, the people you are going to speak to are not going to understand your argumentation anyway :) I suggest you use some slides from this link I found on google (http://www.slideshare.net/Cisco

Re: [c-nsp] VSS and 3560, convergence measurement

2010-11-15 Thread Pavel Skovajsa
Hello Mkhail, Usually VSS convergence should be below 200ms, at least on paper I would try to turn off various "automatic features", starting with trunk negotiation (DTP) on one end of spectrum and undesirable portchannel on the other to find the culprit. -pavel On Sun, Nov 14, 2010 at 8:25

[c-nsp] Software Download Enhancements

2010-11-15 Thread Pavel Skovajsa
Hello all, I have just received notification below. -pavel Get Ready for Software Download Enhancements on Cisco Website To improve your experience with Cisco and protect your investment in Cisco Products, we’re pleased to announce the improvement of Software dow

Re: [c-nsp] Unexplainable packet loss

2010-09-19 Thread Pavel Skovajsa
On Sun, Sep 19, 2010 at 2:36 AM, ML wrote: >  On 9/18/2010 6:28 AM, Heath Jones wrote: >> >> Hi >> Firstly, when you say packet loss, what are you referring to? Is it just >> the icmp traffic, or are customers reporting faults with non icmp traffic >> or...? >> Is the 'internet gateway' the 7609 p

Re: [c-nsp] ASIC to switch port mapping

2010-09-13 Thread Pavel Skovajsa
Interesting enough, yesterday James Ventre posted a note where he found at least some minimal info about the 2960/3560/3750 buffer amount: http://networking.ventrefamily.com/2010/09/3560ge-and-3750ge-buffers.html Also, I have to say I have exactly the same experience as Gert - IPTV streaming box

Re: [c-nsp] full duplex mismatch speed - dynamips

2010-08-19 Thread Pavel Skovajsa
Hello, Actually it looks like a dynamips/IOS bug in the emulation of GT96100-FE - see http://7200emu.hacki.at/viewtopic.php?t=4484 or alternatively this one http://7200emu.hacki.at/viewtopic.php?t=121&postdays=0&postorder=asc&start=30 On the other side Gert is correct this is more a cosmetic issu

Re: [c-nsp] H323 and ASA (over my head...)

2010-08-15 Thread Pavel Skovajsa
Another alternative, as a quick fix you can try to turn off H.323 inspection and see whether it solved the issue. Welcome to the world of L7 -pavel On Sat, Aug 14, 2010 at 11:58 PM, Pete Lumbis wrote: > This could be anything from a non-standard H.323 stack to a bug in ASA code. > > > Closed by

Re: [c-nsp] CAT6509 module position in chassis

2010-08-11 Thread Pavel Skovajsa
We ran into one issue when the 10G 6708 module in slot 1 of C6509-E was shutting down due to high temperature. The Cisco suggestion was to put it into a free slot somewhere in the middle between the Sup (module 5) and module 1 as it supposedly has a better air flow. We replugged it into slot3 which

Re: [c-nsp] routing between VRF and global

2010-07-16 Thread Pavel Skovajsa
eir solution is to inject the routes into MP-BPG and import them in your VRF config. If you search the archives you may be able to find some examples as well. -pavel skovajsa On Fri, Jul 16, 2010 at 3:17 PM, Jeff Bacon wrote: > I have a mesh of 6500s connected via various gig fiber links. The 6500s

Re: [c-nsp] Speed problem and router seems to sluggish

2010-06-27 Thread Pavel Skovajsa
Hi Rudi, Just to expand on Gert's answer. Your guess is correct - it has everything to do with the fact you have a DFC3B in a 3BXL system. The moment you installed this card and booted up the box it failed back to common denominator of the size of the TCAM - nonXL system. If you have a lot of pref

Re: [c-nsp] Speed problem and router seems to sluggish

2010-06-26 Thread Pavel Skovajsa
My initial thought is that the old WS-X6704-10GE card is about 6/7 years old, has ridiculously low buffers and generally is a pain to work with. On the other side it should definitively do more than 150Mbps - so it is probably something else. One clue what might be wrong is the fact that Catalyst

Re: [c-nsp] Transfer speed issues on 3560G

2010-06-25 Thread Pavel Skovajsa
Check whether you are not running into high CPU issues due to IRQ, due to wrong SDM profile used.See http://www.cisco.com/en/US/products/hw/switches/ps5023/products_tech_note09186a00801e7bb9.shtml -pavel On Fri, Jun 25, 2010 at 5:52 PM, Brandon Ewing wrote: > Thanks to all the replies, on and of

Re: [c-nsp] mst over etherchannel + QoS

2010-06-16 Thread Pavel Skovajsa
* Frame Relay capture option for all serial links * Dialog to display an Ethernet switch MAC address table See - http://www.gns3.net/content/gns3-072 -pavel On Wed, Jun 16, 2010 at 3:35 PM, Pavel Skovajsa wrote: > Hello Ivan, > > no currently it is not possible to simulate (prope

Re: [c-nsp] mst over etherchannel + QoS

2010-06-16 Thread Pavel Skovajsa
Hello Ivan, no currently it is not possible to simulate (proper term is actually emulate) anything else "above" PVST+, as the only switch oriented card in dynamips is NM-16ESW - which only supports PVST+. Due to the proprietary hardware used in switches, I don't think you will find any other emul

Re: [c-nsp] ME3400 Output Drops

2010-05-14 Thread Pavel Skovajsa
Hello, All I can say is that this is normal in case of rapid traffic like video flow. FE ports of ME3400 with default configuration have output queue limited to 48 packets. It's not enough for burstable traffic, especially when the uplink of your ME3400 runs at 1Gb/s. If you don't need any QoS, ju

Re: [c-nsp] Lead time abating?

2010-05-09 Thread Pavel Skovajsa
Hello Jason, That is actually quite good. Depending on the model my experience is 100 and more days on C4500 or C6500, and 60 days on other stuff. There has been discussion about this recently, see: http://markmail.org/search/?q=Cisco+out+of+stock#query:Cisco%20out%20of%20stock+page:1+mid:ad32mqr

Re: [c-nsp] Purely Academic: Router swap and EIGRP doesn't work

2010-05-07 Thread Pavel Skovajsa
strange things happen all the time. Same IOS version as the one on 3662? Maybe a bug on that version that affects only 3620, which would be strange as 3620 and 3662 have same vendor of RISC processor, just different clocking. Basically, from the programmers viewpoint reinserting the network statem

Re: [c-nsp] 6500 line card mounted cable management bars (??)

2010-04-20 Thread Pavel Skovajsa
Maybe a picture will help. There is a "Cisco original" cabling management for C6509E-V chassis, that can be ordered as WS-C6509-V-E-CM. -pavel On Tue, Apr 20, 2010 at 9:01 PM, Brandon Applegate wrote: > We have some of these in the data center.  They fit the screws on the Cat > 6500 line cards,

Re: [c-nsp] 6500s SXI and EoMPLS

2010-03-17 Thread Pavel Skovajsa
Correct, the WS-X67xx are LAN based cards, and are not "supposed" to be used in SP environment. There are cards especially targeted for that - especially ES40/ES20+ with their EVC stuff. Of course they only work on C7600, and of course they are expensive as hell. For more info see [

Re: [c-nsp] WS-F6K-PFC3CXL= Cisco Catalyst 6500 Series Supervisor Engine 720 PFC-3CXL on Sup720-3B

2010-03-08 Thread Pavel Skovajsa
Yep it is, see http://www.cisco.com/en/US/docs/switches/lan/catalyst6500/ios/12.2SX/release/notes/ol_14271.pdf page 44, or http://www.cisco.com/en/US/docs/switches/lan/catalyst6500/hardware/Config_Notes/78_16220.html -pavel On Mon, Mar 8, 2010 at 8:12 PM, Tim Durack wrote: > Anyone know if:

Re: [c-nsp] Tunnel*** temporarily disabled due to recursive routing

2010-03-03 Thread Pavel Skovajsa
, O=Old State, Sh=Shadow State >> HDel=HWIDB Deleted State >> A=Admindown, D=Down, G=Going Down, I=Init >> R=Reset, T=Testing, U=Up, X=Deleted >> Router***# >> == >> === >> >> *

Re: [c-nsp] Tunnel*** temporarily disabled due to recursive routing

2010-03-03 Thread Pavel Skovajsa
== > > Router***#show arap console 0 > ^ > % Invalid input detected at '^' marker. > Router***#show ara > > == > =

Re: [c-nsp] PVLAN and trunks (for redundancy and more bandwidth), any idea?

2010-03-03 Thread Pavel Skovajsa
somebody know whether there is any way to make the Severity higher? -pavel skovajsa [1] http://tools.cisco.com/Support/BugToolKit/search/getBugDetails.do?method=fetchBugDetails&bugId=CSCso63119 On Wed, Feb 24, 2010 at 2:43 PM, Sven 'Darkman' Michels wrote: > -BEGIN PGP

Re: [c-nsp] Tunnel*** temporarily disabled due to recursive routing

2010-03-03 Thread Pavel Skovajsa
pond within 3 days I will simply close your case due to your ignorance. -pavel skovajsa Senior Junior Troubleshooting Architect/Manager p.s. alternatively you can ignore everything above and take a look at http://www.cisco.com/en/US/tech/tk365/technologies_tech_note09186a0080094690.shtml On Tue, Mar

Re: [c-nsp] 6500 SVI Question

2010-02-23 Thread Pavel Skovajsa
t "bandwidth" of 8000kb, which is tricky way of saying to the routing protocol to not to prefer the route over the tunnel and use it only as last resort Also, all serial interface have default bandwidth of 1024kb, eventough they might be fractional T1's or anything else. -pavel sk

Re: [c-nsp] vs ace4710 and cisco 6500-vss

2010-02-15 Thread Pavel Skovajsa
Hi Arne, according to http://www.cisco.com/web/DK/assets/docs/presentations/12233sxi_0109.pdf you need to run at least SXI on the VSS and A2(1.2) on ACE. -pavel On Mon, Feb 15, 2010 at 9:27 AM, Arne Larsen wrote: > Hi all. > > > Can someone give me a hint. I’m trying to install a ha-setup with

Re: [c-nsp] ISSU on SXF -> SXI

2010-02-11 Thread Pavel Skovajsa
Hello Randy, as far as I am aware the ISSU works only for SXI train onward. See http://www.cisco.com/web/DK/assets/docs/presentations/12233sxi_0109.pdf -pavel On Thu, Feb 11, 2010 at 5:15 PM, Randy McAnally wrote: > Anyone successfull with ISSU (SSO mode) with SXF -> SXI on a 6500 w/dual > sup7

Re: [c-nsp] QoS for MetroEthernet

2010-01-31 Thread Pavel Skovajsa
Hi Omar, No you definively should not take any special considerations for Metro link - you are the end customer the service is transparent to you - it moves packets back and forth. Therefore it is hard to tell what is the actual problem. It is easy to troubleshoot though - sniff it: a) sniff the

Re: [c-nsp] 7600 Rate Limiting Output

2010-01-30 Thread Pavel Skovajsa
tually I am using a SIP-600 with a SPA-5X1GE. > > Kevin > > > -Original Message- > From: Pavel Skovajsa [mailto:pavel.skova...@gmail.com] > Sent: Saturday, January 30, 2010 1:08 PM > To: Kevin Warwashana > Cc: cisco-nsp@puck.nether.net > Subject: Re: [c-nsp] 76

Re: [c-nsp] 7600 Rate Limiting Output

2010-01-30 Thread Pavel Skovajsa
Hi, It looks like you are trying to configure this on the WS-X67xy cards, which are basically the LAN/DC cards taken from 6500. These cards have very limited QoS capabilities as they are targetted for LAN/DC segment, not for service provider. Hence you cannot expect MUCH. If you need sophisticate

Re: [c-nsp] 10GE WAN options for 7606 for market data / micro-bursting

2010-01-30 Thread Pavel Skovajsa
The WS-X6704-10GE has: - Xenpacks - only 16MB buffers per port compared to 200MB on WS-X6708 - is about 5 years old. I remember this was the first 10G card we used in 6500 back in 2005/6 - traditionally targeted for LAN and DC segment with simple/none QoS -> hence the QoS implementation is simple b

Re: [c-nsp] PVLAN and trunks (for redundancy and more bandwidth), any idea?

2010-01-26 Thread Pavel Skovajsa
On Tue, Jan 26, 2010 at 3:15 PM, Sven 'Darkman' Michels wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > Hi Pavel, > > Pavel Skovajsa schrieb: >> Hi Sven, >> >> I had not exactly the same but similar issues but with 7606 - see >> h

Re: [c-nsp] PVLAN and trunks (for redundancy and more bandwidth), any idea?

2010-01-26 Thread Pavel Skovajsa
Hi Sven, I had not exactly the same but similar issues but with 7606 - see http://www.mail-archive.com/cisco-nsp@puck.nether.net/msg26651.html. I learned from TAC that the issue was with the fact that I used it in combination with VRFs and the traffic got incorrectly punted into 7606 MSFC CPU wher

Re: [c-nsp] OSPF Campus Design : Excessive SPF Runs

2010-01-15 Thread Pavel Skovajsa
Hi Jason, see below -pavel skovajsa On Fri, Jan 15, 2010 at 4:57 AM, Jason LeBlanc wrote: > Hello, > > We currently have Layer 3 Routed Access configured at all of our Metro Campus > locations.  There are a few obvious deviations from the best practice design > guides.   The c

Re: [c-nsp] PVLAN and trunks (for redundancy and more bandwidth), any idea?

2010-01-14 Thread Pavel Skovajsa
distribution layer that would not forward the traffic to the rest of the switching fabric, just to the uplink port into the core layer -> this is probably what the "private-vlan trunk" is trying to do. -pavel skovajsa On Wed, Jan 13, 2010 at 8:41 PM, Sven 'Darkman' M

Re: [c-nsp] Unicast flooding?

2010-01-13 Thread Pavel Skovajsa
Hello Frank, Does not sound really healthy - if you have gathered good evidence this is a good candidate for TAC. Anyway - you should probably upgrade to something other then SRB4 as TAC will tell you probably the same thing -pavel skovajsa On Wed, Jan 13, 2010 at 7:02 AM, Frank Bulk wrote

Re: [c-nsp] GRE tunnel optimization

2010-01-13 Thread Pavel Skovajsa
Hi Adam, The " ip tcp adjust-mss 1460" adjusts TCP traffic which IPsec is not, so you can safely remove it. Try to change the TCP MSS on the Sonicwalls - I suggest to something conservative - 1390 for example. If it won't help (or there is no knob for this on Sonicwalls) try to: - ping across GRE

Re: [c-nsp] PVLAN and trunks (for redundancy and more bandwidth), any idea?

2010-01-13 Thread Pavel Skovajsa
re http://www.cisco.com/en/US/docs/switches/lan/catalyst4500/12.2/31sga/configuration/guide/pvlans.html#wp1166138 - the trouble is that AFAIK currently it works only on C4500. -pavel skovajsa On Wed, Jan 13, 2010 at 7:03 AM, Sven 'Darkman' Michels wrote: > -BEGIN PGP SIGNED ME

Re: [c-nsp] VRF->Global route leaking in multi-VRF CE installation

2010-01-06 Thread Pavel Skovajsa
Hi Ross, The VRF route leaking is somehow complex stuff - there appears to be scattered documentation about it around CIsco site - see for example http://www.cisco.com/en/US/docs/ios/12_2sr/12_2sra/feature/guide/srbgprid.html What we do to dynamicly leak routing from one VRF to another is to do it

Re: [c-nsp] Data Center switch replacement

2009-12-18 Thread Pavel Skovajsa
t;inter-tower" field where the server people think that the network guys are responsible for their NIC settings, so we usually find misconfigured NICs - no teaming setup, incorrect teaming modes etc. etc. - so going with step-by-step is always better. Hope it helps, -pavel skovajsa On Fr

Re: [c-nsp] 7200 for BGP

2009-12-15 Thread Pavel Skovajsa
hi R. The G2 will certainly handle it, but I would look into the reason for having 75%, that sounds really bad. For the G1 and NPE400, I'd say you definitely need more memory - 512 MB or 1G to be fine. This is what Cisco says: The amount of memory required to store BGP routes depends on many fac

Re: [c-nsp] 6509 OIR logging for transceivers

2009-12-15 Thread Pavel Skovajsa
p, then you will get normal LINEPROTO-5-UPDOWN and LINK-3-UPDOWN message provided you have the 'logging event link-status' command under interface config. This is specific to 6500 though, all other switch models log LINK UP/DOWN by default. -pavel skovajsa On Tue, Dec 15, 2009 at 3:00 AM, Br

Re: [c-nsp] Cisco 4948-10GE

2009-12-07 Thread Pavel Skovajsa
Hi Renelson, do a show log after shutting/unshutting the ports it will most probably tell you the reason. Usual reason is UDLD, Loopguard, BPDUguard, Etherchannel misconfig etc. etc. When the port is already disabled you can see the reason why it got into that state using command 'show errdisable

Re: [c-nsp] [j-nsp] Network Liberation Movement???

2009-11-27 Thread Pavel Skovajsa
significantly strengthen the company’s position in China – one of the world’s fastest-growing markets – via the H3C offerings. In addition, the combination will add a large and talented research and development team in China that will drive the acceleration of innovations to HP’s networking

Re: [c-nsp] is a DWDM SFP a DWDM SFP?

2009-11-25 Thread Pavel Skovajsa
om/en/US/docs/interfaces_modules/transceiver_modules/compatibility/matrix/OL_6981.pdf>-pavel skovajsa On Wed, Nov 25, 2009 at 11:07 AM, Nick Hilliard wrote: > On 25/11/2009 03:53, Justin Shore wrote: > >> >> I REALLY wish all Cisco BUs would pick a set of optics and make them >

Re: [c-nsp] Secondary VLAN deployment on Metro ETTH

2009-11-25 Thread Pavel Skovajsa
Hi, yes that is right UNI ports can't talk to each other but only within one ME3400 switch. If you have more switches and want exactly the same "switchport protected" functionality on all of them, one solution is to implement PVLANs. See http://www.rfc-editor.org/internet-drafts/draft-sanjib-priv

Re: [c-nsp] Secondary VLAN deployment on Metro ETTH

2009-11-25 Thread Pavel Skovajsa
ot, 12 pings work, 13th does not ...Thinking about it now, maybe it has to do something with the number 13 :) -pavel skovajsa On Mon, Nov 23, 2009 at 3:47 PM, Pavel Skovajsa wrote: > Hi all, > > I am planning to implement Secondary VLANs feature on a Metro ETTH > based on ME3400+76k. I

[c-nsp] Secondary VLAN deployment on Metro ETTH

2009-11-23 Thread Pavel Skovajsa
the problem might lie in having 3rd party switches placed *between* ME3400 - they have no idea about the PVLANs hence forward it according to their VLAN tables -> which are are NOT joined -> hence the traffic is flooded on them. -pavel skovajsa ___

Re: [c-nsp] Ethernet autonegotiation issue between Cat3560 and Cat2960

2009-11-23 Thread Pavel Skovajsa
Hi, I would approach this the indirect way - try shuffling the switches around to see which combinations work & which not. This is the "universal engineer" approach :) -pavel skovajsa On Sun, Nov 22, 2009 at 11:17 PM, Daniele Orlandi wrote: > On Sunday 22 November 2009 18:28

Re: [c-nsp] difference between WS-F6700-DFC3BXL and WS-F6700-DFC3CXL

2009-11-23 Thread Pavel Skovajsa
/ns224/ns668/net_qanda0900aecd80534905.html Hope it helps -pavel skovajsa On Mon, Nov 23, 2009 at 2:55 AM, Mark Tinka wrote: > On Monday 23 November 2009 08:34:32 am Ilya Balashov wrote: > >> I'm looking for upgrade my 7606 filled with X6704-GE and >>  X6748-SFP (all with

Re: [c-nsp] delay eBGP sessions on startup?

2009-11-23 Thread Pavel Skovajsa
EEM. :)) I my opinion asking Cisco for a knob is a last resort, should be used only when all the ideas fail. -pavel skovajsa On Mon, Nov 23, 2009 at 10:30 AM, wrote: > probably Cisco needs a knob very similar to vendor Juniper out-delay. you > can delay the time between when BG

[c-nsp] Cisco 3400 port shaping message limitation

2009-10-07 Thread Pavel Skovajsa
triggered when I applied the policy to the 3rd interface in a row Can somebody shed some light into this? Regards, Pavel Skovajsa ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http

Re: [c-nsp] Free NMS Tools

2009-07-18 Thread Pavel Skovajsa
Hi Saku, I fully symphatetize with everything you said. The problem is that there is NO system on the world with all of below, none of the Nagios/OpenNMS etc. system do automatically what you have decribed below. Most of them reduce their default activity to "let's ping it and see what happens".

Re: [c-nsp] OT: Network documentation tool

2009-07-18 Thread Pavel Skovajsa
Hi, I believe the way the networks you manage is documented is one of the main factors of the quality of everyday delivery. The reason for that is that the network is "supported/operated" by different people that actually built it, at least on the "early" levels of support. The corrolary is, that

[c-nsp] Dot1x stuck in guest-vlan

2009-06-02 Thread Pavel Skovajsa
ast end === Many thanks for any hints, Pavel Skovajsa ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/

[c-nsp] Simple Application performance assesment tool

2009-05-26 Thread Pavel Skovajsa
Hello all, Does somebody know of a good application performance assesment tool that would help me understand what is the current bandwidth per given application, something similar to simple Netflow collector but preferably end-user capture based that can be installed on end-user machine. I have sp

[c-nsp] DHCP server suited for option 82

2009-04-27 Thread Pavel Skovajsa
asily' configurable DHCP servers. Maybe I am looking wrong direction, can somebody tell me what DHCP server are you using if you need to hand out specific IPs for specific switch ports? Thanks, Pavel Skovajsa ___ cisco-nsp mailing list

Re: [c-nsp] Twingig part of 3560E delivery?

2009-01-26 Thread Pavel Skovajsa
us to > order TwinGig separately, even if it's for free. Configuration Tool offers > three options CVR-X2-SFP-2, CVR-X2-SFP-1 or CVR-X2-SFP-NONE. > > Regards, > Marek > > > On Mon, 26 Jan 2009, Pavel Skovajsa wrote: > >> Hello all, >> >> does somebody kn

[c-nsp] Twingig part of 3560E delivery?

2009-01-26 Thread Pavel Skovajsa
Hello all, does somebody know whether the CVR-X2-SFP are part of the delivery of 3650E say Cisco Catalyst 3560E-48TD or should I order them separately? Regards, Pavel Skovajsa ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https

[c-nsp] What to do with old Cisco kit

2009-01-14 Thread Pavel Skovajsa
Hello all, Can you please recommend a process by which one should properly dispose old Cisco kit, preferably by selling to refurbishing vendors etc. South Africa or EMEA preffered. Regards, Pavel Skovajsa ___ cisco-nsp mailing list cisco-nsp

[c-nsp] SM SFP over MM cable

2008-11-26 Thread Pavel Skovajsa
Hello, I have heard stories that normal LX single mode SFP works fine over any MM fiber. Is that true? Does it have any distance limitation? Is there any doc I can read so that I understand what are the various possibilities to mix/match various SM/MM SFPs etc. Regards, Pavel Skovajsa

  1   2   >