I have a dell powerconnect 2848 switch and setting up a vlan 3 an make port 1 mngt, port 48 uplink to layer 3 switch and tag vlan 1 and 3 to port 48 with cli commands for this setup. and also to untag ports 2-10 for computers
I have a rather large Cisco Lab and 3 of the routers I have are Cisco 2650s. Well they are only able to take the IOS version 12.4M and 12.4T is only compatible with the XM series.So I was thinking what would happen if I threw the 12.4T on the device, well I was surprised but it boots and functions with that image. So here is the question, is this usable in a LAB environment (CCNA/CCNP studies ect) the thing that would worries me is the memory. It is recommended the 12.4T IOS has (I think) 196D/48F. Well the 2650 non-xm only supports 128D/32F. The IOS fits on the 32 Flash (with 300k to spare) though what issues can/will i see in the future?
Code: Cisco IOS Software, C2600 Software (C2600-ADVENTERPRISEK9-M), Version 12.4(9)T2, RELEASE SOFTWARE (fc4) Technical Support: [URL] Copyright (c) 1986-2006 by Cisco Systems, Inc. Compiled Sat 18-Nov-06 14:32 by prod_rel_team
I have a Cisco 2650 with a simple config as follows:
version 12.3 service timestamps debug datetime msec service timestamps log datetime msec no service password-encryption ! hostname MaVI_Test [Code]....
I have 2 Procuve Switches one is 2650 were all the Department PC's & Wireless access points connected & second one is 2610 were i have the firewall connected,Active Directory & Windows DHCP Server
Switch 1- 2650 Ports Port 1-16 is used by HR Department Port17-32 is used by Finanace Department Port 33-34 is used by Access Points Port 41-48 is used by Users
Port 50 is used to uplink to switch 2610.What i wanted to achive is Isolcate Departments & Users & Access Points through VLAN from each other but they should be able to hit our Active directory for authentication, Firewall for internet & DHCP Server for IP's.
I want to use IP SLA to perform simple up/down monitoring of an IP host and to generate a syslog alert if the host goes down. I have a 2650XM router running 12.4(23) IP Voice IOS. My basic IP SLA config is hown below:
ip sla monitor 10 type echo protocol ipIcmpEcho 10.55.1.1 timeout 1000 frequency 10 ip sla monitor schedule 10 life forever start-time now.
I have a dell inspiron 2650 and I need to get into it thru my desktop because the inspiron has a virus and I was wondering if I can get rid of the virus with my virus protection
On my 2650 Router it just has only Telnet password.It has no enable mode password set.After reboot it is goes to prompt mode BB.I am unable to go to enable mode .how can i go back to enable mode on this router?
2650XM#$ Nov 5 23:10:13.929 MST: %SIGNATURE-3-NOT_ABLE_TO_PROCESS: %ERROR: Not able to process Signature in flash:2600-adventerprisek9-mz.124-25d.bin.Nov 5 23:10:41.963 MST: %SIGNATURE-3-NOT_ABLE_TO_PROCESS: %ERROR: Not able to process Signature in nvram:. Nov 5 23:11:26.642 MST: %SYS-2-EXCEPTIONDUMP: System Crashed, Writing Core....2650XM#$
Right now i am able to access the router . whats this error about -- is router going to crash or reboot?
There is a server doing DHCP. There are 4 ranges of IPs 1 for each VLAN.
The router is on Port 44. VLAN 1, 100, 200, 300 - Tagged
The Server is on Port 46. VLAN 1 - Untagged
The WAPs are on Ports 1, 11, 31 VLAN 1, 100, 200, 300 - Tagged
All other ports are on VLANs 100, 200 or 300 - Untagged
The WAPs all have VLANs 100, 200, 300. Each VLAN on a different SSID.
I have IP helper with the server IP on VLANs 100, 200, 300.
There are IPs from the different subnets on their respective VLANs in the switch.
The gateway for each subnet is on a different subinterface on the router.
The router is a linux box. (Untangle)
The WAPs are not able to talk to the server, therefore no computers on the wireless networks can get an IP.The server can only talk to the router if I change port 44 to untagged.What combination of tagged and untagged ports do I need to make everything talk?
Do I need to put the VLANs on the subinterfaces of the router?
I want to link them using fiber as they are almost 50 meters apart. What connectors should I use and what fiber optic cable can be connected to those connectors.I have found these connectors and cables on internet will these work
We have two publicly routable gateways attached to our A5500 switch that are expecting untagged traffic.
We currently have VLAN 10 as the untagged VLAN for Gateway 1, and VLAN30 as a tagged vlan for Gateway 2. Since both gateways are requiring untagged traffic, I need to make sure all ingress traffic from Gateway 2 gets tagged as VLAN30, while all egress traffic gets untagged.
The tricky part is they must come over the same port so I can't just tag it that way. I get the feeling this will require some static routes or VLAN Interfaces on the switch, but I'm not sure where to start.
I'm trying to configure Hp1810-24G and pfsense firewall with no success. I' would like to create two virtual lan on swich which share same internet connection. To simplifing I suppose
vlan 2 port 1-12 vlan 3 port 13-23 port 24 pfsense lan connection
What altready I do on pfsense I create vlan 2 called 1STVLAN VPID 2 and vlan 3 called 2NDVLAN VPID and assigned to them to LAN pfsense real port enabled and gived a static ip to them on HP procure I create two vlan with
vlan 2 port 1-12 untaged 13-23 Excluded 24 tagged vlan 3 port 1-12 exluded 13-23 untagged 24 tagged
the problem is that I don't be able to speak with pfesense (ping failed on real lan ip and virtual lan ips) so I don't have also internet connection.The ethernet card i'm using are old (i have built the pfesense computer on spare parts that I have at home) so can be a driver issue?
I have configured stack with 2 sge2010p switches. I want to connect this stack to the HP procurve switch using port agregation (LAG) technique. I want to use one ge port on each sge switch.How to configure it? Will it work witch port agregation on procurve?
So we recently moved our Comcast demarc to our new server room which resulted in moving the SMC modem from our old server room where it directly connects to the firewall - to a new room where it connects to a 2910 switch, LACP to our L3 switch, LACP to another 2910, then to Sonicwall.
Since the move our internet has been dropping off randomly for about 2-5 minutes then it will come back online. This happens anywhere from 10 to 50 times a day. Sometimes it happens a half hour apart, sometimes it is 15 minutes apart, sometimes it will go 8 hours without issue.
The modem has been replaced, the Comcast line has been "tested."
The modem remains online when we lose internet connectivity - I can connect to it using a laptop on it's lan port and ping out to google.com while an computer connected beyond the switch and sonicwall cannot connect.
I have run a constant ping from a home comptuer to the modem as well as to our sonicwall (both static addresses) and they both seem to go offline when we lose internet connectivity.
Since the issue started, I moved the Sonicwall so that it connects directly to the 2910 that the modem connects to, put it in a vlan with the modem so they only talk to each other and it still results in the same intermittent disconnects. I checked all the port statistics on both ports as well as the event logs, and trunk links and find nothing abnormal.
I take the switch out entirely and plug the modem directly into the firewall like it was prior to the whole move. Works fine.
Traffic is not an issue and the switch in question also connects all my production servers and iSCSI SAN together without issue.
I'm trying to determine what switches in the Procurve lineup will do Inter-VLAN routing on the same switch. Assume a basic 1 switch network.
I've determined that Procurve "Layer 3 Lite" will do static routing but not dynamic routing. So I would assume their Layer 2 switches do absolutely no routing. However I have a 2520 in front of me that HP claims is Layer 2 only yet I can route between VLAN's on that switch.
Router (with Internet Connection) is plugged into port 24 of the 1810.My asterisk server is plugged into Port 1 of the 1810.The 2520 is plugged into Port 2 of the 1810, and all of the VoIP phones are plugged into the 2520.Rest of the office computers are plugged into the remaining ports on the 1810.
After setting up the subnet and assigning an ip to the 1810, everything else just worked out of the box. I would imagine that I should segment and prioritize the network so that the VOIP traffic is isolated and is higher priority from everything else.
I tried playing around a bit, but the phones lost connectivity, so I just defaulted everything back for now.
What would the suggestions be for setting up the VLANS properly to do this?I would also need one of the office PC's (say the one plugged into port 13 of the 1810) to be able to access the asterisk server.Also, would it be more optimal to have the asterisk server on the PoE switch or the main switch?
we're running some HP ProCurve 2520's (24 port PoE for desktops/phones) and 2510's for our server racks. The CPU's are a bit weak from what we can tell and sometimes end up with issues on them. The specs on the EAS series look like a decent jump compared to the older HP's. However I've never worked with these ever.
My other option is to go back to Cisco. However to make it fit our budget, we have to dump gig switches for 10/100 + PoE. Which isn't really a major issue on the desktop switches. We'll naturally put gig versions on the server racks. I like our ProCurves, however they cause issues from time to time.
I've also considered going back to Adtran, however I haven't kept up with what they have to offer. I'm tempted to play it safe and go the Cisco route. We're using ASA5510's active/passive for routing/firewall (gig versions).
My current switch layout at work is very basic and offers no redundancy. I'd like to at least setup redundant core switches, so that if any of my switches would to fail, it would result in a smaller number of systems affected.
Current Core Switch: HP Procurve 3500yl-48G (3500yl-24G as cold spare) Internet Switch: 3com (forget model) User distribution switches: 9 Planet 10/100 Layer 2 Managed switches, and 2 Dell Powerconnect 5448 Server switches: 5 Procurve 2810-24Gs (1 in each server rack)
In addition, we have 50+ site to site VPNs using different 192.168.x.x subnets across 2 different VPN concentrators, several routers, and a pair of MPLS's.My first step to improve speed and reliance was to reconnect the user switches. The old distribution switches were daisy chained, and all users 120 users were on a single 1GB port on the core switch, and if switch 2 of 11 failed, I'd have 10 switches knocked out of the network. I've since connected them directly to the core switch, and the users have noticed the improvement.
I'll try to get a diagram, but it's basically a large hub and spoke. Each and every switch is connected directly to the single core switch. All of the internet sources are connected directly to the 3com and are on separate VLANs which are then connected to the core via a trunk, which then handles the routing. Currently, I'm using less than half of the ports on the current core switch, so I should still have enough ports on the 24G to at least maintain the critical systems. Each server switch is trunked to the core, as is the internet switch, but the user network is not (but probably should be). Instead they are connected via simple untagged uplinks.
I absolutely cannot afford new equipment right now, so whatever I do will require reusing existing equipment. I'd very much like to increase the bandwidth from the server switches to the core if at all possible. Is there an easy way to configure and Active-Active setup that would improve bandwidth? Or would It be active-passive and require a 2 port LAG on the 48 port (for speed), and a 3rd port for the 24 port (for redundancy).
NOTE: With any luck, we'll be dropping our analog phone system and replacing it with VOIP sometime within the next year. So I should be getting some extra budget to replace the distribution switches with POE. Until then, I'll have to live with my crappy Planets.
Any good 24 port rack mountable Gigabit switch, that is managed. Is a HP ProCurve 1800-24G 24 port gigabit ethe switch J9028B decent ? Will i be happy ? I have currently a Dell 5224, that works, but it's getting old and for the life of me can't find rack ears AT ALL!! and i want it mounted so i can finish my rack installation.
budget is around 250-300$ 24 ports all gigabit and manage able for vlans etc etc.
I work as Network administrator in a building products plant at Poland. We had core switch HP Procurve 6200yl with 5 vlans, and 11 Aironet 1240AG Access points without controller. I have a problem with create 2 wi-fi VLANs on the Cisco AP's and linked it with HP switch.
VLANs on the switch: 1 - Default (for office sutff) - working great, 2 - Production (for production stuff) - working great, 3 - Inter (for Router's) - working great, 4 - WMS - i need configure it as wireless, 5 - WiFi with Radius - i need configure it as wireless.VLANS on the Access Points: 4 - WMS - for warehouse terminals - WPA2, 5 - WiFi for office stuff with Radius.
I'm easily able to get it running a single SSID (non-VLAN) network and confirm that I can use that network fine. However, I need to set up these 2 VLANs. I can connect to it via telnet if that'll let me program it faster.
I have a problem putting a Cisco 1141 AP in repeater mode with a AP HP Procurve.Root AP is a the Procurve, but when try to put the Cisco AP with same SSID, Authentication, etc, I receive this error:
%DOT11-4-CANT_ASSOC: Interface Dot11Radio0, cannot associate: NO Aironet Extension IE
I try disable the Aironet Extensions and always get the same error all time. It's possible connect both APs?
I am having difficulties implementing Mac-auth on selected ports between an HP ProCurve 2510 and Cisco ACS 5.3.The 802.1x works just fine, but for selected ports I need to implement port-access with MAC-based authentication instead of regular 802.1X (yeah, I know, but this line of ProCurve switches only support one auth-mechanism per port!).The switch successfully forwards interesting MAC-auth requests for authentication to the ACS with CHAP/MD5, but the ACS reports this:
Logged At: April 16,2012 1:20:48.080 PM RADIUS Status: Authentication failed : 22056 Subject not found in the applicable identity store(s). NAS Failure: Username: 002655886b3d MAC/IP Address: 00-26-55-88-6b-3d Network Device:
[code].....
The ACS is configured to use the Internal Hosts database, where the client computer is configured like this;MAC-address: 00-26-55-88-6B-3D
I wanted to know if I can somehow setup my network to use a proxy for all connected devices?
For example I can go into Firefox proxy settings and setup to browse using proxy. Is there any way to do this at the router or switch level to not have to configure every device individually I have a wndr3700 router and a HP procurve 1810g switch and am thinking of building a pfsense box.
We have a HP Procurve 5412zl switch as our default gateway for all our VLANs from there the traffic will be going to a Cisco ASA 5515 and then to a Cisco 3800 Router then to our ISP.
We have yet to purchase the ASA but my question is about my future configuration. I will have the router of last resort on the 5412zl setup to point to the ASA inside interface, how does that work with multiple VLANs? For instance the ASA inside interface would be 10.0.0.1 but traffic could come from another VLAN via the switch with a 192.168.1.x address. Would the ASA just pass it on to the router? Or would it conside this spoofing and drop the packet?
Lastely, if we have WCCP set for the ASA's inside interface, how would it handle the redirect for multiple VLANs ip addresses? Would I use GRE for the redirect to my web filter?
I have a HP Procurve 5406 connected to a Cisco 3560 on a temporary cat5e connection and I have Mitel IP phones needing to go on the Cisco switch.Ive configured the HP Procurve port to TAGGING both VLAN 10 (data) and VLAN 20 (Voice). NO is selected for default VLAN 1.The Cisco is configured on the port with switchport encap dot1q and switchport mode trunk.
Ive configured an IP for interface VLAN 10 and i cannot ping it from across the network. The interfaces are up and happy. I have tried changing the VTP status from transparent to server (VTP pruning is off) ive tried setting allowed vlans 10,20. Still not a think. The worse thing is that i have a working Cisco switch with the HP procurve that i checked the config on and its the same! The only difference is that the media type is SX over SFP in that case.
p.s not that im at this stage yet but i initially configure the FastE ports as trunks with native vlans because i was using non-cisco phones. On a spare port i convigured the voice vlan 20 and i say on the mitel phone that it was looking on vlan20! I didnt expect that, i thought the Voice VLAN ID was carried on CDP enabled devices only.
Im trying to Connect a 2960-S Catalyst Switch to a 3560 Catalyst Switch. It worth pointing out im newish to switching although i know some commands and what they do This is my first time connecting 2 switches together.
They are connected via a crossover cable and have green lights flashing on the connected ports When i run "show CDP neighbours it sees the new switch Unable to ping new switch...just timesout Here is the the interface on the 3650
GigabitEthernet0/40 is up, line protocol is up (connected) Hardware is Gigabit Ethernet, address is 001b.532f.8428 (bia 001b.532f.8428) Description: Uplink to Switch 2 MTU 1500 bytes, BW 100000 Kbit, DLY 100 usec, [Code]....
How to stack a set of these switches with the copper 5G SFP on these switches. We currently have 4 switches stacked with Cat5e jumpers between S1&S2. We want to stop using this stacking method and go to the SFP. What is the best way to do this. Live would be preferable but whatever is the safest method is the way we will proceeed. Any goth'ca's in this process?
There seems to be a lot of conflicting information on what can and can't stack together in the 3750X range.
I know that LAN Base can only stack with other LAN Base switches.
Can IP Base stack with IP services in 3750X? I have also heard that the 15.x.x IOS restricts mixed feature set stacks?
I know that Cisco recommends that all switches in a stack have the same IOS and feature set but having all IP Services in a stack can get too expensive.