Cisco :: 6500 / 1250 - NCS Implementations And Configuration / VSS
			Mar 22, 2013
				I am new to the NCS implementations and configurations. I have one very  specific case with Cisco Prime Infrastructure 1.2 and autonomous APs  and several issues with Cisco VSS on 6500 switches. So here is the version from Prime:
 
NCS/admin# show version 
Cisco Application Deployment Engine OS Release: 2.0
ADE-OS Build Version: 2.0.1.038
[code]......
 
Well  the issue what we have now is that access point has been added but its  not recognized by the NCS prime. I have tried all three versions of SNMP  but I get the same result. The SNMP configuration is valid since I use  the same for my switching infrastructure. When I enter "debug snmp packets" and "terminal monitor" I can see the SNMP communication between Prime and Aironet 1250 which is standalone.
 
When  I switch to Life cycle theme and go to Operate > Device Monitor  Center I see all devices I have added. The Aironet 1250 is reachable but  under collection status I get Managed with Warnings. When I hover over  with my mouse I get "None available".
 
I  have successfully added my switching infrastructure in total, which is  operating perfectly for Catalyst 2960/3650/3750/4500 series but for 6500  under VSS I have some warnings. The device is recognized by the system  which is excellent and all is operational. I get the following errors  under Collection Status:
 
feature_sensorSNMP request timed outfeature_powerSupplyFanStatus-6kSNMP request timed outIdentityCapabilityThe device is unreachable.feature_flashdeviceSNMP request timed outsam_ipsla_featureThe device is unreachable. 
What can be done to resolve these issues ? I have attached a screenshot of this particular issue. The affected access point is 172.16.165.241.
	
	View 4 Replies
  
    
		
ADVERTISEMENT
    	
    	
        Dec 5, 2011
        We have an issue with our 6500 catalysts.
 
We are regularly seeing the error above on our cat6500 devices when executing  a 'sh run ' command:
 
We've seen this error for quite some time but the frequency seems to be increasing up to the point where it becomes problematic now because backups and other automated actions are failing regularly. 
 
We don't see multiple processes with the commando "sh config lock" at that time. But when we do a "sh users", we can see sometimes multiple users.
 
I supose it is possible for multiple users to do a logon at the same time, but not make changes at the same time.
 
We are using IOS  s72033-ipservicesk9_wan-mz.122-33.SXI7.bin. It seems that all switches with these IOSses seem to have the problem. But in the bug toolkit I can't find any reference to a bug...
	View 3 Replies
    View Related
  
    
	
    	
    	
        Mar 2, 2013
        I would like to configure a Management ip address on 6500 by giving ip to the SVI. Following is the configuration done
 
 1) int vlan X
    ip address 10.1.1.1 255.255.255.0
    no shut
 
However i am not able to reach this Switch IP from other subnet's. for ex:- 192.168.1.0/24.What next configuration should be done, in order to make this work. I dnt want to use any routing protocol.
	View 4 Replies
    View Related
  
    
	
    	
    	
        Jul 17, 2011
        In an IPSec port to DUT scenario, with Mode-Config set so as the DUT sends the IP address to the port, I get to a situation in which the DUT continuously enter the "Need config/address" state for the port, even if the port sends its ACK packet to every set IP address from the DUT.
 
The DUT is a Cisco 6500 Version 12.2 (33) SXI3, having Mode-Configuration configured to provide clients with IP addresses from a local pool. I enabled the "debug crypto isakmp" on Cisco, and below is an extract form the log file:
 
5d23h: ISAKMP:(80653):Need config/address      /* My comments here: This is the first Address configuration message from Cisco to port */
5d23h: ISAKMP: set new node 1768971286 to CONF_ADDR 
5d23h: ISAKMP: Sending private address: 94.94.0.164 
5d23h: ISAKMP:(80653): initiating peer config to 171.159.1.113. ID = 1768971286 
5d23h: ISAKMP:(80653): sending packet to 171.159.1.113 my_port 500 peer_port 500 (R) CONF_ADDR 
5d23h: ISAKMP:(80653):Input = IKE_MESG_INTERNAL, IKE_PHASE1_COMPLETE 
5d23h: ISAKMP:(80653):Old State = IKE_P1_COMPLETE  New State = IKE_CONFIG_MODE_SET_SENT
above debug messages that Cisco produces I can not realize why Cisco resends the IP adderss configuration message for remote peer. Any other methods to use so as to get the reason behind this behavior? Or any explanation to the above behavior?
	View 1 Replies
    View Related
  
    
	
    	
    	
        Apr 26, 2012
        Any step-by-step configuration guide of how to enable DAI on Cisco Catalyst 6500 Series Switches.
	View 1 Replies
    View Related
  
    
	
    	
    	
        Dec 20, 2011
        I got problem with wake on LAN software.. The software unable to ON all pc's remotely if sitting under different vlan. Everything is ok if using the same vlan. Below are the network diagram & switch configuration.
 
Layer 3 switch Intervlan routing configuration
  
ip forward-protocol udp 7
!
interface Vlan4
 description vlan Client-WOL
 ip address 172.22.51.253 255.255.254.0
 ip access-group Deny_HTTP_Vlan1 in
 ip helper-address 172.20.1.246
[code].....
 
After configured all the switches with the above setting, the software still cannot wake all the pc's using LAN. Base on sniffing, i can't find UDP port usage by the software. Attached here with print screen from wireshark.
	View 7 Replies
    View Related
  
    
	
    	
    	
        Aug 26, 2012
        I manage a small/medium sized campus network consisting of 4 Cisco 6500 series chassis (each with SUP720's) and a couple hundred Cisco 3550/3560/2960 edge switches. We recently completed a new leg of fiber that will make a completed loop between all of the 6500's .... before I make the pyhsical connection I need to figure out my OSPF entries on each 6500 switch.
	View 4 Replies
    View Related
  
    
	
    	
    	
        Apr 22, 2013
        I am migrating services from SUP720-3B to VS-SUP2T-10G= and moving to a VSS configuration  between a pair of Cat6506 distribution layer switches. I need to enable QoS on these switches, primarily to trust dscp and also to prioritise voice traffic. The autoqos feature works for some ports but does not work on port-channel interfaces and port-channel member interfaces. How can I apply the qos settings for these interfaces in line with what auto qos would normally provide. My line cards are as follows:
 
Civic_6506VSS#sho mod
Mod Ports Card Type                              Model              Serial No.
--- ----- -------------------------------------- ------------------ ----------- 
1    4  CEF720 4 port 10-Gigabit Ethernet      WS-X6704-10GE   
[Code].....
	View 1 Replies
    View Related
  
    
	
    	
    	
        Aug 27, 2012
        I am going to change a running 6500 switch. I am missing a best pratice doc for changing a cisco switch configuration. My question is if a startup-config has an error (due to typo mistake, or due to comands not supported on latest IOS) and I do copy tftp startup-config then what will happen ? I want to make sure when I do "reload" the switch then it should boot normally with the latest startup config !
	View 3 Replies
    View Related
  
    
	
    	
    	
        Dec 6, 2012
        what is the best configuration between vmware ESX server with 10 Physical NIC card and cisco 6500 , This ESX Server host 12 vm with VLAN 100,150.200.
	View 6 Replies
    View Related
  
    
	
    	
    	
        Apr 8, 2013
        I have Cisco 6500 with FWSM and ACE module which are in one central DC. Also we have four different Datacenter (Hub & spoke) and in our FWSM we have configured four contexts in central DC FWSM for each DC. Each DC servers are different VLAN and IP subnet. Now we have to configure ACE module for load balancing among those different subnet servers. What will be the design and configuration for this solution? Like routed or one-arm mode design.
 
Scenario Example:
1.  App Server01 
IP:192.168.11.5/24 
GW: 192.168.11.1 in FWSM
FWSM Context: DC1
Physical Location:DC1
VLAN:11
[code].....
 
Now customer requirement is we have to load balance using ACE between these App Servers which are in different context s in FWSM and one Server is not FWSM.  how to configure or design or placement of ACE and FWSM for above scenario.
	View 4 Replies
    View Related
  
    
	
    	
    	
        Apr 3, 2012
         I am facing problem about dot1ad global configuration command and my topology is here;
 
Notebook >> (access vlan 100) SW2960 (trunk)>> (trunk) C6500
 
First time I have create SVI interface on C6500 and enable trunk on interface that connected to SW2960 and SW2960 assigned access vlan 100 on port connected to Notebook. Then I tried to ping from Notebook to C6500 on SVI100 which work fine.
 
Second time I tried to enable MST on C6500 and after that everything still working and I can ping from Notebook to SVI100 on C6500.
 
Third time I tried on turn on dot1ad in global configuration mode and from now I can't ping from Notebook to C6500.
 
Forth time I tried to disable dot1ad from global configuration by "no dot1ad" command and then I can ping.
 
My intention is I would like to do EVC which require dot1ad in global configuration but I stuck in third step and don't know what's does it mean for this command and how I can resolve this issue?
 
Information on C6500
 IOS Software (s2t54-ADVENTERPRISEK9-M), Version 15.0(1)SY1
 Processor     SUP-2T
 Linecard       WS-X6824-SFP
	View 3 Replies
    View Related
  
    
	
    	
    	
        Jan 22, 2012
        I have a pair of 6500's setup with VSS and there is currently only one link between then. However one end of the link is on Po10 and the other end is on Po25.  If I move the Po25 over to Po10, will things break? It seems to be working fine now. I'm about to add a second link and I'm concerned about the current configuration.  It makes more sense to me to have both ends of the same link on the same port-channel ID.  I've seen documentation which states otherwise however.
 
interface Port-channel10
no switchport
no ip address
[Code]....
	View 2 Replies
    View Related
  
    
	
    	
    	
        Feb 29, 2012
        I have been having an annoying issue for the past few weeks with my ASA setup. We are using the ASA as our Remote Access Gateway and originally had it setup in a Active/Standby failover configuration using 2 x 5520 ASA's.The original setup of the devices was that the 2 x ASA were setup in a failover configuration, with both of them connecting back to the internal network via a 6500 device. Because of using failover I created a VLAN on the 6500 and put the two ports that connect the ASA's into that VLAN. I then configured the VLAN interface to be the EIGRP interface for the neighbour relationship to the ASA's.
 
The problem I am seeing is that the EIGRP neighbour relationship between the Active ASA and the 6500 keeps flapping. It occurs abour 4-5 times every day at randmon intervals. Sometimes the neighbour relationship will stay up for 6-7 hours, other times it flaps every 1-2 hours. I initially thought it was due to the failover configuration so I removed one of the ASA's and removed all of the failover configuration, but the EIGRP neighbour flapping problem still exisits.  [code] Since removing the failvoer configuration I am thinking it could be a physical cable problem?
	View 4 Replies
    View Related
  
    
	
    	
    	
        Jul 9, 2012
        I have seen conflicting information regarding downtime for this upgrade process and still have questions after reading  URL. In this scenario, we have a VSS with one SUP in each chassis.
 
Are the chassis or modules rebooted one at a time? For instance, if I issue an "issu loadversion", will this just load the code on the SUP in the standby chassis, or will it load the code on the modules as well? If it does load the code on the modules, then I will have to wait the longest time from the "show issue outage slot all" before issuing a "issu runversion", correct?
 
Also, what outage times have people seeen on modules that support pre-loading? I have not been able to find any documented information on this other than it is faster, and the link referenced above still shows a 5 minutes outage for a warm reset on one of the modules.
	View 7 Replies
    View Related
  
    
	
    	
    	
        Dec 12, 2012
        I was trying to configure copp on one of 6500 sup-2T. Is it ok to add customized policies to the default copp "policy-default-autocopp".When I created my own customized policy using policy-map, I get following error
 
control-plane service-policy input policy-custom
  
error: failed to install policy map policy-custom
	View 7 Replies
    View Related
  
    
	
    	
    	
        Jul 17, 2012
        how to convert configuration catos on 6500 to IOS image.
	View 3 Replies
    View Related
  
    
	
    	
    	
        Jun 11, 2012
        I have FWSM failover pair, Active/Active configuration, admin and another 4 context, few context active on first FWSM, other on second FWSM.I needed to add  VLANs 51 and 52 to FWSMI created VLANs on both Cat6500, created firewall vlan-group 3 a and put "firewall module1 vlan-group 3" on both cat6500Then I log in in system space on primary FWSM and created interface VLAN.Created VLANs automatically occured in system space on  Secondary FWSM.Then I wanted allocate VLAN 51 and 52 to context XY, so I went to part of configuration for context XY and "allocate-interface Vlan51" and  "allocate-interface Vlan52".
	View 1 Replies
    View Related
  
    
	
    	
    	
        Aug 20, 2012
        I have a 6500 switch and i recently removed a module (line card) from the switch. The problem is that the port configurations of the removed module still exhists in running configuration.  I was not aware of the right procedure,[URL] however, i would like to know whether it resolves if i reboot the switch.
	View 1 Replies
    View Related
  
    
	
    	
    	
        Mar 8, 2011
        In a multiple SSID setup, can Aironet 1240 & 1250 series AP supports different WEP key for different SSID
	View 3 Replies
    View Related
  
    
	
    	
    	
        Aug 10, 2011
        I have an Aironet 1250 Access Point.  I was asked to upgrade the software on the access point so I downloaded c1250-k9w8-tar.124-23c.JA5.tar and tried to upgrade it from IE9 browser window.  I allowed the upgrade to run overnight.  It ran for 900+ minutes before I unplugged the router.  I know it said not to interrupt the upgrade, but it seemed like something was wrong.So, I have the access point conntected to my computer with a blue cable and it is also connected to the network.  I tried running Hyperterminal hoping that I could set the ip address or otherwise connect to it.
 
The Hyperterminal printout gives me this:
APc89c.1dfd.189a#*Aug 22 20:10:03.523: %CAPWAP-3-DHCP_RENEW: Could not discover WLC using DHCP IP. Renewing DHCP IP.Not in Bound state.*Aug 22 20:10:12.027: %CAPWAP-3-ERRORLOG: Invalid event 38 & state 2 combination.*Aug 22 20:10:12.095: %DHCP-6-ADDRESS_ASSIGN: Interface GigabitEthernet0 assigned DHCP address 159.169.59.114, mask 255.255.255.0, hostname APc89c.1dfd.189a
Translating "CISCO-CAPWAP-CONTROLLER"...domain server (159.169.59.39) (159.169.59.25)
Translating "CISCO-LWAPP-CONTROLLER"...domain server (159.169.59.39) (159.169.59.25)
 
Is it possible to get this access point working again?  How would I get it working again?
	View 2 Replies
    View Related
  
    
	
    	
    	
        Nov 14, 2012
        When have downloaded the c1250-k9w7-tar.152-2.JA.tar and attempted to load into a 1250 via tftp the process aborts with the following message. [code]
	View 2 Replies
    View Related
  
    
	
    	
    	
        Sep 16, 2012
        a few day l have 3 AP Ligthweight 1250, today l was checking my infrastructure and l saw that these 3 AP can´t join to the controller, l reset the AP  to the, and its can not  join, l checked physicly the AP, and the Ethernet Led is in Amber permanent and the Radio Led is in Green permanet , i am searching the status led to find the fix but l have not found these convination led. and l can not access to the consolo port.
	View 2 Replies
    View Related
  
    
	
    	
    	
        Jan 5, 2011
        I have installed 4 unit Cisco Aironet 1250 acting as Autonomous AP each. I want to integrate these AP to Windows Active Directory for authentication level.
 
When I read configuration guide on Cisco Aironet, they must be authenticated via RADIUS server.
 
Is it possible that these AP directly authenticated to Active Directory via LDAP protocol?
	View 4 Replies
    View Related
  
    
	
    	
    	
        Aug 22, 2012
        I don't really know what I am doing and have had no Cisco training I have an Aironet 1250 Access Point.  I was asked to upgrade the software on the access point so I downloaded c1250-k9w8-tar.124-23c.JA5.tar and tried to upgrade it from IE9 browser window.  I allowed the upgrade to run overnight.  It ran for 900+ minutes before I unplugged the router.  I know it said not to interrupt the upgrade, but it seemed like something was wrong.
 
So, I have the access point conntected to my computer with a blue cable and it is also connected to the network.  I tried running Hyperterminal hoping that I could set the ip address or otherwise connect to it.
 
[code]....
	View 13 Replies
    View Related
  
    
	
    	
    	
        May 20, 2013
         I have a aeronet 1250 access point and i have a windows 2003  radius server configured to authenticate users. I need to configure the access point for radius authentication .
	View 1 Replies
    View Related
  
    
	
    	
    	
        Apr 3, 2008
        When using dipole antennas such as AIR-ANT 4941 with the 2.4 Ghz 1250 AP, must the antennas be spaced EXACTLY as far apart as the antenna connectors on the AP, or can the dipoles be spread further out, say to 4" spacing.
	View 20 Replies
    View Related
  
    
	
    	
    	
        May 7, 2012
        I need to upgrade a 1230 to the new Aironet 1250 at a location. I have only 2 external antennas at that location.
 
I understand that you still can run 802.11n with 2 antennas. But I can not find anywhere in WLC 5508 v7.2 that I can disable the middle nut (C)
	View 3 Replies
    View Related
  
    
	
    	
    	
        Oct 20, 2011
        I've just got a new AP 1250 series, and I was trying to configure the Radio for the 2.4Ghz spectrum using the interface dot11radio 0 and I've just noticed that this controller is not present so I cannot configure it so I wonder is it could be a HW problems as it looks to me or there is another way to enable this.
 
I never have an issue like this before so I want to first check with you before going back to our vendor.
 
Here is some of the details I get from the AP itself:
 
System image file is "flash:/c1250-k9w7-mx.124-10b.JDA3/c1250-k9w7-mx.124-10b.JDA3"
ap02#sh controllers dot11Radio 0                         ^% Invalid input detected at '^' 
[Code].....
	View 3 Replies
    View Related
  
    
	
    	
    	
        Mar 20, 2012
        I have a customer using 1250 AP with monopole antenna, he face frequent disconnection for voice clients during roaming. Phone is forced for reregistration to call manager during the hand off. Same customer has dipole antenna in a different floor with 1250 AP and there is no issue observed for voice clients. 
 
Is this an issue with monopole antenna ? Which is the best antenna to recommend for Cisco APs or wht is the occasion I need to use a dipole or monopole antenna ? How to understand the difference between them.
	View 2 Replies
    View Related
  
    
	
    	
    	
        Dec 29, 2012
        I can no longer open a http or https connection to the AP. I do have ssh access and I can log in with full privileges.
 
I was using the Web interface a few days ago and it did something strange during an update. The display of the web page became corrupted and no longer responded to my input.
 
I restarted it from an ssh session and I have also power cycled it via the power injector. Neither method has worked.
 
What should I do next or what additional info can I provide from an ssh shell?
 
Physical access is very difficult. It requires a 30' ladder after 10 p.m. So, I would like to avoid that if possible.
	View 7 Replies
    View Related
  
    
	
    	
    	
        Jan 13, 2012
        In my LAN, I have always been used an Aironet 1250 for internal use and always work fine. Now, I added a 3com AP but both AP are not correct. When I turned off the AIRONET 1250, the 3COM AP settings works fine. When both are turn on, the 3COM AP loses connectivity all the time.I have heard about the overlapping channels in 802.11b/g networks.
	View 8 Replies
    View Related
  
    
	
    	
    	
        Aug 25, 2010
        upgraded my home AP from Autonomous to Lwapp.  I was an Idiot and thought i was getting an IOS upgrade. I need to revert it back to autonomous and a simple "mode" button reset doesnt work.  I read that I need to Reload original IOS software, but It appears I cant get it without a support contract.  I cant afford servicenet and need to obtain old ios to revert to factory default 12.4(10b)JA1.  Do I need a contract to roll back?  Is there an archive (backup image) of the old IOS that could be still stored on the device.  I didnt back it up and need to obtain the image.
	View 5 Replies
    View Related