Cisco :: 1841 / Ip Flow-cache Timeout Active 2?

Aug 17, 2011

On my 1841 when i enter the "ip flow-cache timeout active 2" command it accepts this command with no errors.  But when i look at my running-config this does not list.I did the same thing on my 2811's and 3745 and it shows up in the running-config.  Should I assume if it doesnt' show up in my config file than it is not applied?  How can I verify that it is or isn't?

View 1 Replies


ADVERTISEMENT

Cisco WAN :: 2621XM / IP Accounting And / Or Ip Cache Flow Stats?

Dec 15, 2010

I have a Cisco 2621XM router with two ethernet interfaces that sits before a vendor supplied VPN router. I need to see the IP traffic incoming to my router from the WAN side (fasteth0/1 below). I setup ip cef, and ip flow ingress on the interface. However -- it seems that what I see when I use "ip cache flow" command doesn't have a very long history or life. What commands am I missing so that I can see a summary of the stats over say the last 5, 10 or 15 minutes? Is this the best config that can be used for this, or can I create a more summarized report just using the router HW and IOS? Basic current configuration:version 12.3service timestamps debug uptimeservice timestamps log uptimeservice password-encryption!hostname Littleboy!ip subnet-zeroip cef table event-log size 1024ip cefip cef accounting per-prefix non-recursive prefix-lengthip cef traffic-statistics load-interval 180!ip flow-cache entries 2048ip flow-cache timeout inactive 60!interface FastEthernet0/1 description Littleboy to vpn-wan ip address 10.1.0.1 255.255.255.252 ip flow ingress?

View 5 Replies View Related

Cisco WAN :: ASR1004 / Show Ip Cache Flow Is Slow And Stalls?

Jun 30, 2012

Ever since we switched to ASR1004 running XE15.1(2)S1, we have seen that the output of "show ip cache flow" stalls and is super slow to complete.  We have a few interfaces with "ip flow ingress" defined. What can be causing this slowness?  Any recommendations of commands to speed up the output?

View 1 Replies View Related

Cisco Switching/Routing :: How To Configure IP Cache Flow On C6500

Nov 28, 2012

I want to see net flow data.I have configured this command on the c6500.but I can to see data only below...How can I configration ip cache flow on the C6500? what is the problem?
  
int gi4/31
ip add x.x.x.x
ip route-cache flow 
c6500# show ip cache flow
Displaying software-switched flow entries on the MSFC in Module 5:

[code].....

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.3 Active Directory Users Cache?

Jun 9, 2013

I've successfully integrated ACS 5.3 with Active Directory for 802.1x implementation. Now i want to cache Active Directory users in ACS so that the user request from ACS does not go to AD every time.
 
After a certain time period the ACS database gets sync with AD.

View 3 Replies View Related

Cisco Application :: CSS 11503 Flow Idle Timeout Not Working As Expected?

Jan 20, 2012

I have a CSS 11503 with a basic content rule for TCP 10000 going to a few backend servers. I was looking into the default timeout values for flows and when testing using telnet the flow didn't terminate as expected?
 
For example, i have no 'timeout multiplier' specified in the config and when i look at the output of 'show flow-timeout default' it tells me the default 16 seconds timeout is in effect for *. With that in mind, i telnet to the content rule vip on TCP 10000 and on the backend server using wireshark i can see the TCP threeway handshake. With no data passing i'd expect the CSS to terminate this flow after 16 seconds.. yet it takes exactly 128 seconds before wireshark shows the RST and the flow is terminated. 128 being 8 times the default 16 second flow timeout.
 
If i try to force the connection to close early by specifiying 'flow-timeout-multiplier 2' in the content rule, or even a multiplier of 40, it still waits 128 seconds to close the telnet connection.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: 2347 - Update Is Not Active Terminal Session-Timeout

Aug 15, 2011

Our company has installed ACS Version: 5.1.0.44.6 Internal Build ID: B.2347 with patches: 5-1-0-44-5, 5-1-0-44-6. The security policy of our company includes a password change every 3 months. Our programmers had written a script that allows us to do it. When testing revealed that the script does not work. This is due to the fact that it is not possible to enter the mode "acs-config". In determining the reasons it was found that to enter this mode there is a limit on sessions (6 sessions). When the number of connections becomes larger than 6 then the script does not work. The documentation says that the update is not active sessions is set with terminal session-timeout. In this case, the terminal session-timeout 30. But after 30 minutes of the session will remain active. It interferes with our script.

View 1 Replies View Related

Cisco Firewall :: ASA 8.2(5) - Uauth Absolute Timeout Disabled And Inactivity Timeout Set To 48 Hour

Nov 26, 2012

ASA 8.2(5), uauth absolute timeout is disabled and inactivity timeout is set to 48 hours:
 
timeout xlate 48:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:00:00 absolute uauth 48:00:00 inactivity
timeout tcp-proxy-reassembly 0:01:00
timeout floating-conn 0:00:00
 
Users still get kicked out every 8 hours and they have to reauth. This is a logging message:
 
%ASA-5-109012: Authen Session End: user 'john', sid 839, elapsed 28801 seconds

View 1 Replies View Related

Cisco Firewall :: ASA 5520s From Active / Standby To Active / Active

Jul 17, 2012

I have a pair of ASA 5520s operating in failover pair as active/standby, having two contexts on them. I am planning to share the load and make it active/active making first context active on the primary unit and second context active on the secondary unit. My question is if this will disrupt any connectivity thru these firewalls when I do "no failover" on the active/standby and assign the contexts to different failover groups and enable the failover back.

View 6 Replies View Related

Cisco Firewall :: ASA 5585X Active / Active Failover Group Inter Routing

Mar 20, 2012

I am looking at deploying a pair of 5585X's in an active/active multiple context state.  I am creating Mulitple contexts that need to be able to route to each other.  I was going to deploy a type of Gateway context that has a shared interface to all of the other contexts, instead of sharing interfaces directly between the contexts, i beleive this will work as basically i am just cascadng the contexts and sharing interfaces.
 
The main problem i have come across, is that if i deploy active/active across two appliances using 2 failover groups i can not see a way to route between them, for example. 
 
I have Context 1, Context 2 and Context GW A including the shared interfaces of Con1 and Con2  in failover group 1 on appliance A with the respective standbys on Appliance 2. I have Context 2, Context 4 and Context GW B including the shared interfaces of Con 3 and Con 4 in failover group 2 on appliance B with the respective standbys on Appliance 1.
 
I need to be able to route traffic between Context GW A and GW B so that the contexts can communicate in normal operation and in failover.  I do not beleive that I can share an interface between contexts in two separate failover groups and to be honest without adding a L3 device between the appliances i am not sure if this is possible.

View 9 Replies View Related

Cisco Firewall :: ASA 5510 Configuration Modifications In Active / Active Mode

Dec 17, 2012

I have two ASA 5510s running in Active/Active mode. I need to make config changes on them. How do I go about it? Do I power off the secondary ASA and make the config changes on the primary and then power on the secondary ASA ? Or this another way to do this?

View 3 Replies View Related

Cisco Firewall :: ASA5520 - Active / Active Failover In Multiple Security Contexts With Dual ISP?

Jun 1, 2011

I have an ASA5520 in location A with an ISP connection and a matching ASA5520 in location B with a separate ISP connection. We have fiber connecting the two locations and vlans passing back and forth so I will be able to configure the failover via a vlan as well as extend the ISP's to each location via vlans. The Active/Active configuration with the multiple security contexts does not seem to be an issue but how is a redundant ISP configured in this mode?We want to have context A using the ASA in location A with ISP1 as the primary and failing over to ISP 2 in locaiton B We also want to have context B using the ASA in location B with ISP 2 as the primary and failing over to ISP1 in location A Would route tracking provide the desired result? Is there a better option?

View 1 Replies View Related

Cisco Switching/Routing :: 6509 Series Switches Support VSS Active-Active Chassis

Feb 7, 2012

The 6509 Series Switches support the scenario VSS Active-Active Chassis, I would like to setup both switch's as one virtual switch but working at the same time, not with Active - Stand By Chassis.
 
My plans it to create PortChannel accross both Switches 6509 in order to have 2 links one connected to one slot/switch and the other connected to slot/switch in the second 6509 for servers redundancy.

View 1 Replies View Related

Cisco Switching/Routing :: ASR1000 - Dual ISP Active / Active Connection On Single Router

Jun 10, 2012

I am working on a network which has two ISP connections (Active/Active) terminating on router (ASR1000). From the LAN side (6500 switch) all the traffic need to be route on ISP1 but some of the specific subnets like 10.250.0.0/16 need to be route on ISP2 connection.
 
I am planning to use PBR and NAT with route maps. any documents or refrences are provided.  
 
(access switches)---------(core switch)----------(routers)----------------(ISP1)
----------------------(ISP2) 

View 1 Replies View Related

Cisco WAN :: 4507 R - Active SUP Lost Connection And Standby Came Active

Apr 10, 2011

I faced one problem in our core switch 4507 R . Active sup lost connection and standby came active. We got lot of errors/alerts on console shown below. [Code] Also when I reloaded the switch with reload command only both sups got reloaded but I want to reload all the modules but reload command do not gives any options for that.

View 2 Replies View Related

Cisco Firewall :: 5520 - ASA Active / Active Failover And IPS Failure

Mar 30, 2011

I have 2 asa 5520 firewalls including and 1 AIP-SSM-10 module in each of them. the configuration is set using active/active failover and context mode.
 
Both of them run individualy the IPS module. The IPS is configured using inline mode and fail-open option. However when one of the module fails and the state is changing from up to init or anything else making the IPS to fail then failover is detected and ASA consider it as failover and bounce context to the other unit.
 
IPS soft is 6.0(4) and ASA soft is 8.0(3)
 
I have checked cisco doc and it is confusing to me. it says:  "The AIP-SSM does not participate in stateful failover if stateful failover is configured on the ASA failover pair." but it really does participate. Running is not really an option because of production network impact matter..

View 2 Replies View Related

Cisco VPN :: Active / Active ASA 5520 Remote VPN Access Limitations?

Sep 19, 2011

We have an Active/Active ASA 5520 setup, as i know in Active/Active setup there is no remote VPN access, So i could overcome this limitations?I have a solution but i dont know if it is ablecable or not? we have a spare ASA 5510, so i can use it behind Active/Active Firewalls and assign a public static NAT IP address to it and open all IPSEC and VPN ports and let the remote users to connect to it, is this ablecable setup or not?

View 1 Replies View Related

Cisco Firewall :: ASA5585-X Active / Active Failover Using Etherchannel?

Dec 27, 2011

its possible to set up active/active failover using etherchannel on 5585s? 

View 1 Replies View Related

Cisco Firewall :: How To Configure ASA5520 For Active / Active

Mar 17, 2013

How to Configure ASA5520 for Active/Active

View 8 Replies View Related

Cisco Application :: CSM Active / Active In 2 Redundant 6500s

May 7, 2007

our application team is mandating, that the solution we should come up with for SLB, should support Active/Active mode of SLB operation.
 
My question, is this mode of operation supported/accredited by Cisco, and what is the draw back from the traditional active/standby.

View 2 Replies View Related

Can't Clear The DNS Cache

Jan 27, 2011

I develop websites, and we moved a site from one server to another, and now I get the message the site has moved. I ran the cmd to clear the dns cache, but that didn't solve the issue. I tried stopping and restarting the client, that didn't work. It was already set to automatic. I am logged in to my laptop as an administrator. I tried to be the user Administrator, but it doesn't appear as a choice, but when I try to change my name, I get the message it is already in use. I am using XP Pro, SP3?

View 3 Replies View Related

Bad DNS Record Getting Into DNS Client Cache

Jun 8, 2011

Is there a way to check or record from where the Windows XP pro workstation is getting the wrong IP address and placing it into its DNS cache?

[code]...

View 3 Replies View Related

Have To Flush DNS Cache To Access PC?

Feb 7, 2011

I have to do ipconfig /flushdns from my Laptop to access my PC, on my local network, for some reason when the Laptop is booted up.After that all works like it should. I made a batch file to do that command during Windows start up. Is there any reason why I have to do this or is it just something quirky with Windows?Both computers have Windows 7 Pro 64 bit. Both use the same DNS servers.

View 8 Replies View Related

Cisco :: ARP Cache Contents When Pinging An Outside Host?

Apr 22, 2013

If we have the following setup:Host A (IP :192.168.1.1, Prefix/length : 24, GW : 192.168.1.254) connected to the Router A on int Fa0/1 (IP : 192.168.1.254), Router A is connected to Router B, Host B (IP :192.168.2.1, Prefix/length : 24, GW : 192.168.2.254),connected to Router B on int Fa0/1 (IP : 192.168.2.254).Using the mentioned setup, after Host A pings Host B successfully, which entry will be in the ARP cache of Host A to support the transmission ?.

View 3 Replies View Related

Cisco :: Clear ARP Cache From Server Side?

Dec 21, 2011

clear ARP cache from server side?

View 12 Replies View Related

Routers / Switches :: How To Clear Arp Cache

Feb 14, 2011

when i try to get on my network it keeps coming bk have to clear arp cache so i do the repair and it does not work becoz it cant clear it

View 2 Replies View Related

Clear The DNS Cache On ZyXEL P-660 Router?

Apr 1, 2013

How do I clear my router DNS cache on my ZyXEL P-660 router?I already cleared it on my PC with "ipconfig /flushDNS" in the command line but everyone sees my online IP camera, except me my online IP camera on LIVEwhen I try to access the camera URL i go to the router default/settings/home page

View 10 Replies View Related

Process Of Clearing The DNS Cache In Windows XP SP2?

Jan 13, 2013

what is the DNS cache? What is the process of clearing the DNS cache in windows XP SP2? And why do we need to clear the DNS cache?

View 12 Replies View Related

D-Link DIR-600 :: How To Clear Cache Of Router Every Now And Again

Dec 1, 2012

Every 2 minutes, I want to clear it, because some machines will be turned off. Currently, they will stay on on the left hand side of my host's window explorer.

View 1 Replies View Related

Cisco :: ASR1006 - Discovering Netflow Aggregation Cache

Sep 28, 2011

We have an ASR1006 and I'm just discovering net flow aggregation cache.
 
I tried prefix aggregation and worked fine. But i cant get any information when checking AS aggregation. All I get is 0 in source and destionation AS. [code]

View 1 Replies View Related

Cisco WAN :: Cache Engine 510 - Replacing Hard Drive

Jul 12, 2011

I have a 510a Cache engine and the IDE hard drive failed.  I installed a new blank hard drive, but I can't get it to boot off of the new hard drive. Currently,  I moved the original to Disk 1.  I switched the boot up disk to disk 1.  I was then able to setup the new hard drive (in disk 0).  Everything is functioning, but I don't want to keep the dead hard drive in there.  How do I setup a boot sector on the new hard drive?

View 3 Replies View Related

How To Clear The Cache Of A Broadband Wireless Router

Jan 13, 2011

i have a wireless-g broadband router and the cache is giving me headaches as i cannot access certain of my sites on a server in USA.

View 4 Replies View Related

Sharing :: Flush Dns And Clear Prefetch Cache?

Feb 27, 2013

I have been encountering a can't find server (not page not found error 404) message in two ways. Either using a hyperlink to open a new web page or returning to a tab will yield this error. Refreshing the page will render the page properly.The two cures I have found that look to be the most promising are to run ipconfig /flushdns from the command prompt and to clear the prefetch cache.

View 18 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved