Re: [c-nsp] Cisco AnyConnect VPN Client

2013-05-01 Thread Thomason, Simon
Where are you getting this information from? As of 8.4 they redid the licensing for anyconnect and also added ikev2 ipsec to the anyconnect suite unless I missed something. If you can get pics [cid:image001.png@01CC9AD5.10537C00] -Original Message- From:

Re: [c-nsp] Latest Nexus 5k NX-OS?

2013-05-01 Thread Thomason, Simon
on [cid:image004.gif@01CC2B42.71ED1320] http://www.twitter.com/racqofficial From: Ramesh Karki [mailto:rameshka...@gmail.com] Sent: Wednesday, 15 June 2011 9:37 AM To: Thomason, Simon Cc: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] Latest Nexus 5k NX-OS? It is better to stay with existing version until

Re: [c-nsp] Local printer will not print when connected to Cisco VPN client or checkpoint..Please help

2012-03-28 Thread Thomason, Simon
Does the printer have a default gateway as in able to see outside its own subnet? Can you ping/tracroute to it? -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Quinn Kuzmich Sent: Wednesday, 28 March 2012 12:04 PM To:

Re: [c-nsp] Local printer will not print when connected to Cisco VPN client or checkpoint..Please help

2012-03-28 Thread Thomason, Simon
Sorry I am pretty certain I total miss read this one. Split tunnelling will only work if you specify what is and is not interesting traffic for the VPN and local network. Depending on what client you are using you can enable local lan access in anyconnect (not certain if there is an option for

Re: [c-nsp] 2960S IOS

2012-03-21 Thread Thomason, Simon
Always a good idea to read the field notice and current / fixed bugs in your new IOS. There might be a bug but it might not be relevant to your situation. -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of John Elliot

Re: [c-nsp] 2960S IOS

2012-03-20 Thread Thomason, Simon
Hi John, I just upgrade our branch fleet of 2960s' to 15.0.1-SE2 if that helps. Cheers, Simon. -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of John Elliot Sent: Wednesday, 21 March 2012 9:13 AM To: cisco-nsp Subject:

Re: [c-nsp] 2960S IOS

2012-03-20 Thread Thomason, Simon
...@puck.nether.net] On Behalf Of Thomason, Simon Sent: Wednesday, 21 March 2012 9:16 AM To: 'John Elliot'; cisco-nsp Subject: Re: [c-nsp] 2960S IOS Hi John, I just upgrade our branch fleet of 2960s' to 15.0.1-SE2 if that helps. Cheers, Simon. -Original Message- From: cisco-nsp-boun

[c-nsp] Cisco ASA and ipads

2012-01-29 Thread Thomason, Simon
I am looking at allowing IPADS to from a VPN with our ASA to provide limited access. I would like to ideally have the IPAD connect with a cert and username password but have the ASA aware that the device connecting is an IPAD and heavily restrict its access. I really need the ASA to be aware

Re: [c-nsp] Cisco ASA and ipads

2012-01-29 Thread Thomason, Simon
30, 2012, at 9:54 AM, Thomason, Simon wrote: have the ASA aware that the device connecting is an IPAD and heavily restrict its access. Why does being an iPad make a device somehow undesirable and deserving of heavy restrictions? It can be argued that the iPad is at least superficially more

Re: [c-nsp] Cisco ASA and ipads

2012-01-29 Thread Thomason, Simon
be done right now. -Original Message- From: Christopher J. Pilkington [mailto:c...@0x1.net] Sent: Monday, 30 January 2012 3:16 PM To: Thomason, Simon Cc: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] Cisco ASA and ipads On Jan 29, 2012, at 22:28, Thomason, Simon simon.thoma

Re: [c-nsp] Cisco Nexus and HP Flexfabric

2011-12-15 Thread Thomason, Simon
Do you know what the limit to vlans on flexfabric is? As we seem to be running into an issues with Vlan limits right now and depending on which person/website I ask depends on the limit. -Original Message- From: cisco-nsp-boun...@puck.nether.net

Re: [c-nsp] Cisco 5k with HP flex Fabric

2011-12-13 Thread Thomason, Simon
Tried all of these things kind of lost on this one. Waiting to hear back from HP. -Original Message- From: HÃ¥vard Staub Nyhus [mailto:hny...@gmail.com] Sent: Tuesday, 13 December 2011 11:16 PM To: Thomason, Simon Cc: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] Cisco 5k with HP flex

[c-nsp] Cisco 5k with HP flex Fabric

2011-12-12 Thread Thomason, Simon
Hi All, Has anyone run into issues with adding new vlans to a VPC for HP blades? I have just provisioned a new network to pump down to my HP blades but have run into issues on the HP farm. Currently have 12 chassis spread over 2 sites with 2 new networks (1 per site) not working at all at one

[c-nsp] Cisco Branch router needs a reboot after updating MOH

2011-12-05 Thread Thomason, Simon
Hey All, Just to clear up levels of knowledge before I begin I only do the data side of the network but I am now chasing up a problem for our Voice team as each time they update the Music on hold on our branch routes they need to reboot the router to get the MOH to work properly. I for the

Re: [c-nsp] Cisco AnyConnect VPN Client

2011-11-03 Thread Thomason, Simon
http://www.cisco.com/en/US/prod/collateral/vpndevc/ps6032/ps6094/ps6120/data_sheet_c78-527494.html VPN Protocol Choice SSL (TLS and DTLS), and IPsec/IKEv2 New in AnyConnect 3.0 * AnyConnect now provides a choice of VPN protocols, allowing administrators to use whichever protocol best fits

Re: [c-nsp] Changing VLANs

2011-11-02 Thread Thomason, Simon
You could use EEM and tcl scripts to do this. -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Mohammad Khalil Sent: Thursday, 3 November 2011 4:15 AM To: cisco-nsp@puck.nether.net Subject: [c-nsp] Changing VLANs Hi all

Re: [c-nsp] Strange Cisco ASA5520 errors - Connection limit exceeded

2011-10-27 Thread Thomason, Simon
Sh activation-key ASA# sh activation-key Licensed features for this platform: Maximum Physical Interfaces : Unlimited perpetual Maximum VLANs : 150perpetual Inside Hosts : Unlimited perpetual Failover :

[c-nsp] Anyconnect 3.0 client as a service.

2011-10-18 Thread Thomason, Simon
Hello all, I just wanted to know if you could start the anyconnect 3.0 client on a windows xp machine as service or system process so normal users can not ctrl + alt + del and kill the process. Cheers, Simon T Members save 1%* p.a. on car loan rates with no ongoing fees. Apply today at

Re: [c-nsp] redundant Cat3560 trunk links

2011-10-09 Thread Thomason, Simon
Etherchannel? -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of zaidoon h Sent: Sunday, 9 October 2011 9:52 PM To: cisco-nsp@puck.nether.net Subject: [c-nsp] redundant Cat3560 trunk links How to connect redundant Cat3560

[c-nsp] WAAS Mobile client and IE7

2011-07-25 Thread Thomason, Simon
Hey All, Bit of a long shot but is anyone running WAAS mobile client and having issues with IE7. I have had reports and now able to replicate issues where IE7 will open and crash the WAAS mobile client. Currently have a tac case open but just wanted to see if anyone has run into an issues

Re: [c-nsp] Cisco Nexus 2248TP interface down/inactive

2011-07-21 Thread Thomason, Simon
More information is required! What interfaces are you working on? What makes you think it is a spanning-tree issue? Logs debugs? -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Renelson Panosky Sent: Friday, 22 July

[c-nsp] Nexus 2k - host ports

2011-06-23 Thread Thomason, Simon
Hey All, Just doing a little research at the moment for some design work and I found out that you can not plug a switch into a nexus2k as all ports are host ports. I am certain a least a few people on here have had a look into this and was just wondering if there is some kind of work around?

Re: [c-nsp] Latest Nexus 5k NX-OS?

2011-06-16 Thread Thomason, Simon
I just saw this email going over the release notes now. I did not see that CSCtn94753 was fixed but only skimming over right now. Flex links looks pretty interesting along with Orphan port shutdown. -Original Message- From: cisco-nsp-boun...@puck.nether.net

Re: [c-nsp] Wireless 802.1x authentication failures

2011-06-14 Thread Thomason, Simon
Are all the clients and server in sync with time? Just out of interest. -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Edward Iong Sent: Tuesday, 14 June 2011 4:53 PM To: engel.lab...@gmail.com Cc:

[c-nsp] Latest Nexus 5k NX-OS?

2011-06-14 Thread Thomason, Simon
Hey All, Was just wondering if anyone has started to use n5000-uk9.5.0.3.N1.1c.bin NX-OS? I have been advised this will fix a few issues with our monitoring solution Statseeker (nexus does not send correct snmp info to statseeker). Currently running on n5000-uk9.5.0.2.N2.1.bin so there are

Re: [c-nsp] CIsco 5548P with 2248TP

2011-06-02 Thread Thomason, Simon
Configuration would be a good starting point? I am assuming you have checked all the basic things; Plugged in and powered on? Cabled correctly (Multi or single mode cables)? Interface show fex or optic? -Original Message- From: cisco-nsp-boun...@puck.nether.net

Re: [c-nsp] problems with 6500 and syncing sup config.

2011-06-01 Thread Thomason, Simon
To: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] problems with 6500 and syncing sup config. On 06/01/2011 02:33 AM, Thomason, Simon wrote: Been getting the following error when doing a write me on a 6500. Jun 1 11:16:35.721 EST: %SYS-SPSTBY-4-CONFIG_NV_NEED_OVERRUN: Non config data present

[c-nsp] problems with 6500 and syncing sup config.

2011-05-31 Thread Thomason, Simon
Been getting the following error when doing a write me on a 6500. Jun 1 11:16:35.721 EST: %SYS-SPSTBY-4-CONFIG_NV_NEED_OVERRUN: Non config data present at the end of nvram needs to be overwritten to fit the configuration into nvram Jun 1 11:16:37.437 EST: %PFINIT-SP-1-CONFIG_SYNC_FAIL:

[c-nsp] Nexus 5k NX-OS upgrade issues VPC access port.

2011-04-12 Thread Thomason, Simon
Hey All, Just wanted to check something off with the subject matter experts. Last night did an upgrade on my pair of nexus 5k from 5.0.2N1.1 to 5.0.2.N2.1 and ran into and issues where after one device was rebooted one of my VPC failed until the second Nexus one was upgrade. I am pretty

[c-nsp] N5K with Generic Copper sfp

2011-03-21 Thread Thomason, Simon
Hey All, Was just wondering if anyone has had much luck using generic copper sfp in a nexus 5020? I have run into an issue with a generic SFP will not bring the port up on my 5k but a Cisco one work first time. I do know that Cisco will say to use a Cisco sfp but there is a rather big price

Re: [c-nsp] N5K with Generic Copper sfp

2011-03-21 Thread Thomason, Simon
wrote: On 3/21/2011 6:22 PM, Thomason, Simon wrote: Hey All, Was just wondering if anyone has had much luck using generic copper sfp in a nexus 5020? I have run into an issue with a generic SFP will not bring the port up on my 5k but a Cisco one work first time. I do know that Cisco will say

Re: [c-nsp] Ping test with DF bit and MTU / IP MTU value

2011-01-18 Thread Thomason, Simon
Hey Muhammad, If you set the MTU size to 1520 and set the DF (do not fragment bit) then it will tell all device to never fragment the packets... So if a single hope in the chain can not support the max size of the packet you are sending it will drop the packet. Sorry not certain if I missed

Re: [c-nsp] How to limit bandwidth on CISCO switch interfaces

2011-01-05 Thread Thomason, Simon
http://www.cisco.com/en/US/tech/tk543/tk545/technologies_tech_note09186a00800a3a25.shtml should cover you off. -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of JA Colmenares Sent: Thursday, 6 January 2011 2:54 PM To:

Re: [c-nsp] Layer Two tunneling question (advice needed)

2011-01-03 Thread Thomason, Simon
Do you have MPLS between your 6500 already as what you are talking about doing is a xconnect or EoMPLS which would rely on you already having an MPLS network? A xconnect would provide you with layer2 between sites and they are easy to setup as long as you already have the MPLS network in place.