Cisco :: Can A 1801 FE0 Port Be Sub-interfaced
Feb 11, 2013Can a Cisco 1801 FE0 port be sub-interfaced?
View 2 RepliesCan a Cisco 1801 FE0 port be sub-interfaced?
View 2 RepliesI have configured the following access-list on routers fa0 interface (i am using 1801)
access-list 111 permit ip any any log
and applied it in "in" direction on Fa0 interface.
Now when i am sending ssh packets to this interface its showing below
*May 14 05:09:00.104: %SEC-6-IPACCESSLOGP: list 111 permitted tcp 172.18.128.2(0) -> 172.18.128.146(0), 1 packet
why its not showing any port number ?
I have a cisco 1801 (fixed), and want to use the fe0 WAN port to connect to the internet via a virgin media cable modem.
I am having a few issues (partly as I am new to cisco) and despite reading numerous posts both here and other sites, I am still stuck on how to setup the WAN side, I have read about virtual dial up & dialer interface.
Writing my first router config from scratch for an 1801. I have wireless devices able to connect & authenticate with WPA. Wired devices can talk with wireless devices & on both interfaces devices obtain a DHCP lease. I can ping web based resources from the FA0 interface; the problem is, LAN devices can't ping has FA0. I'm pretty sure (well a hunch) that this is going to be down to NAT
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
!
hostname Router0
.[code]...
This is my first attempt at configuring an 1801 and I am getting extreamly low bandwidth.Tests show up/down speeds on around 100kbps. I can't see any reason with the possible exception of the show dsl capacity values which never seem to change. How to point out my config error.
View 3 Replies View RelatedIs it possible to log onto a router over the internet using a pooled IP address? I want to be able to manage some routers that are in different sites, these are just providing internet access to clients. these are 1801 and 877s
View 4 Replies View RelatedI have a Cisco 1801 that I am trying to set up for my DSL connection. I have configured the router but when I try to access a web site I receive the Http 404 page cannot be displayed error. I have checked my DNS server on the router & I believe that I have configured it correctly? I am hoping that one of you more experienced individual can take a look & tell me where I might have gone wrong. I have included the current running-configuration for your viewing pleasure.
View 4 Replies View RelatedI'm trying to set up an 1801 router with two WAN interfaces, fastethernet0 and fastethernet1. On the LAN side, I have two subnets. One subnet's internet traffic should be routed over fastethernet0, the other over fastethernet1.I've setup some route maps to accomplish this. I can surf the internet using subnet 192.168.2.0/24 fine, all traffic goes out of fastethernet0. However, and this is where the problem is, if I try to reach the internet using subnet 192.168.3.0/24, all packets go out interface fastethernet0 with the source address of fastethernet1!When I'm surfing the internet, from subnet 192.168.3.0/24, packets should be going out fastethernet1, now they're going out fastethernet0.
View 8 Replies View RelatedI'm having difficulty logging onto my 1801 router over the internet I can ping the device and tracert to it but I can't telnet or SSH ,Here is the config - Can you see whay this would happen. Its on ADSL link.
View 7 Replies View RelatedI have two offices - see attached diagram. They use 192.168.0.0/16 for private IP addreses.They're connected via site-to-site VPN. Mostly works well, except some traffic doesn't return and I think it's due to NAT?When a workstation in remote office tries to access web servers in the local office which using private IP addresses (e.g. .64.40), traffic never returns. The web servers in question are also accessible publically - the Cisco 1801 in local office has a static route:
Local1801# ip nat inside source static tcp 192.168.64.40 80 111.111.111.2 80 extendable
The problem seems to be with the local 1801 router. tcpdump confirms that return traffic exits out of ods1's external interface and tcpdump confirms that traffic does not come into remote workstation's interface (neither with .64.40 as source IP nor 111.111.111.2 as source IP)
Remote887# show ip nat translations - none.
Local1801# show ip nat translations
Pro Inside global Inside local Outside local Outside global
tcp 111.111.111.2:80 192.168.64.40:80 192.168.10.254:54990 192.168.10.254:54990
What I don't understand is why a nat translation entry is created. My understanding is that it should only happen when ip packets are sent to 111.111.111.2:80 I don't see that any packets would be sent to this IP address when accessing the site across the VPN - in fact the VPN peer address used is not this one.I cannot figure out why on earth this website cannot be accessed via private IP. I have tried clear ip nat translation * on both routers with no luck.
Relevant Cisco config snippets included below:
Local1801 VPN and NAT config
------------------------------------------
crypto map VPN-MAP 1 ipsec-isakmp
description "Local-Remote VPN"
set peer 222.222.222.222
set transform-set VPN-TRAFFIC
match address 101
[code]....
we have cisco 1801 router and want to configure for PPPoE.As our ISP has provided adsl connection having following settings:
Encapsulation: PPPoE
Multiplexing: LLC based
VPI = 0
VCI = 103
Login =xxxxx
Password =xxxxx
IP: dynamically from ISP
configuring cisco router 1801 for above configuration.
I have a number of Cisco 1801 routers connected to BT UK’s ADSL2+ Annex-A Wholesale Broadband Connect [WBC] services. The routers are experiencing connectivity issues. There is a cisco product bulletin that defines v4.0.0.18 as the version of ADSL Firmware required on the Cisco 1801 when connecting to this BT service.I would like to upgrade the ADSL Firmware for these routers but I cannot find v4.0.0.18 for the Cisco 1801 on CCO. All the 4.0.0.18 downloads appear to be for various flavours of 800. The Cisco product bulletin shows the 1801 as having the same chipset as the 857,867,877 and 887. Can I use the Firmware from one these 800 models? The MD5 Hash for the code suggests all of the these 800 model use the same code?
View 12 Replies View Relatedwhen I'm trying to configure my router 1801 with PPPOE I have the message below "% PPPoE config from vpdn-group is converted to pppoe-profile based config.% Continue PPPoE configuration under 'bba-group pppoe global'.
View 3 Replies View RelatedI have a Cisco 1801 Router, but whenever there is anything plugged into the integrated 8 port switch for example two computers, I cannot get them to ping each other. All of the ports are on the same vLAN.
I am a Cisco newbie, so sorry if this question/query is really basic. Is there anyway I can test the integrated switch to see if it is faulty.
ADSL line do not activate. Telco Confirmed Like is Okay . They have tested no issue observed. Router replaced but did not work. Supspecting Firmware not compatible with telco . Not sure how to confirm on this.
sh ver
Cisco IOS Software, C180X Software (C180X-ADVIPSERVICESK9-M), Version 12.4(4)XC7, RELEASE SOFTWARE (fc1)
Technical Support: http://www.cisco.com/techsupport
Copyright (c) 1986-2007 by Cisco Systems, Inc.
Compiled Tue 31-Jul-07 20:24 by alnguyen
ROM: System Bootstrap, Version 12.3(8r)YH8, RELEASE SOFTWARE (fc2)
XXXXXXXXXXXXXXXXXXXXXXX uptime is 30 minutes
System returned to ROM by reload at 18:48:26 UTC Wed Oct 10 2012
System image file is "flash:c180x-advipservicesk9-mz.124-4.XC7.bin"(code)
I have an FTP server that sits behind a cisco 1801 router.But now i want to add in FTP ports 21 and 20. I have added them in but i cant get it working via ftp.If i plug into the LAN and give my laptop an ip address on the same range as the server (192.168.2.100) then FTP works fine -
[code]...
Network Setup
===========
2 Site to Site VPN tunnels has been established, it is a hub and spoke topology. The hub is ASA5520 and the 2 spoke are a 1841 and 1801 router. The tunnel is able to pass traffic, it's a full tunnel VPN.The tunnel randomly disconnect for no reason. When I check the logs I can see some errors :
%CRYPTO-4-RECVD_PKT_INV_SPI: decaps: rec'd IPSEC packet has invalid spi for destaddr=x.x.x.x, prot=50, spi=0x5F822579(1602364793), srcaddr=y.y.y.y
%CRYPTO-4-IKMP_NO_SA: IKE message from y.y.y.y has no SA and is not an initialization offer
The actual address have been replace by x.x.x.x and y.y.y.y. I frequently have to peform clear crypto isakmp on the spoke routers to revive the VPN tunnels. Is there a way the tunnel can be re-establish again without manual intervention?This keep happening on a random basis and I have living with it for years. I have looked at cisco website troubleshooting tips and but no luck in finding out how to resolve it.
Below is my config on one of the spoke router:
==================================
Cisco IOS Software, C180X Software (C180X-ADVIPSERVICESK9-M), Version 12.4(24)T3, RELEASE SOFTWARE (fc2)
crypto isakmp policy 10encr 3deshash md5authentication pre-sharegroup 2crypto isakmp key @@@@@@ address y.y.y.ycrypto isakmp invalid-spi-recoverycrypto isakmp keepalive 30 periodiccrypto isakmp nat keepalive 20!!crypto ipsec transform-set tset1 esp-3des esp-md5-hmaccrypto ipsec df-bit clear!crypto map ipsecvpn 10 ipsec-isakmp
set peer y.y.y.yset transform-set tset1match address vpn@spoke!archivelog config hidekeys!!!!!interface FastEthernet0ip address x.x.x.x 255.255.255.248ip nat outsideip virtual-reassemblyduplex autospeed autocrypto map ipsecvpn!interface FastEthernet1!interface FastEthernet2!interface FastEthernet3!interface FastEthernet4!interface FastEthernet5!interface
[code]....
I have multiple customers with either 877 / 1801 routers with dsl issues, we keep dropping sync , get slow speeds etc,
I have already updated to firmware 4.018, in some cases it has resolved the issue in others it has not, BT say their lines are ok, but still i keep getting issues.
I have cisco 1801W . Earlier I am using ADSL dynamic IP address on RJ 11 through the ADSL Port but now the ISP change the connection to RJ45.
I am trying to configure it but unable to do this. ADSL line is okay because When I am connecting through the ISP router it is working fine. I have connected the ADSL RJ45 cable in the router fast ethernet 0.But I wanted to use Cisco 1801 Router so that I can use the ADSL as primary and ISDN as the backup.
Below is my configuration, eiteher this is possible to configure ADSL through RJ45 in 1801 and what configuration require for this.
Router#show ip int brief
Interface IP-Address OK? Method Status Protocol
FastEthernet0 unassigned YES DHCP up up
BRI0 unassigned YES unset administratively down down
BRI0:1 unassigned YES unset administratively down down
BRI0:2 unassigned YES unset administratively down down
[code].....
I am wondering what are the limits per routers for creating the vlans in vlan database? I have a 1801 router with the c180x-broadband-mz.151-3.T2 IOS and cant create more than 14 vlans.. How many does 2800 router support? Why I can't find this information anywhere on cisco.com?
View 7 Replies View RelatedI'm trying to use Cisco IP SLA to bench mark voice traffic peformance before and after I apply QoS to the network.
* I've setup IP SLA in both directions over a DSL connection between a 7600, and an 1801
* I've setup IP SLA in both directions over an Ethernet WAN link between a 7200 and another 7200
ip sla 1
udp-jitter 10.101.1.1 32770 source-ip 10.101.2.1 source-port 32770 codec g711alaw
frequency 30
!
ip sla schedule 1 life forever start-time now
!
ip sla responder
!
I have a problem in that I'm not getting any meaningful data from the IP SLA statistics for Voice Score Values:, or any data for Latency one-way time: for any of my tests(x 4).
After a day of testing it seems the MOS score never changes from 4.34, and the ICPIF never changes from 1 ?Is there something wrong with my config? Is this working properly or could this be a bug?
ADSL-R1#show ip sla statistics 1 details
Round Trip Time (RTT) for Index 1
Latest RTT: 48 milliseconds
Latest operation start time: *09:27:48.435 UTC Thu Jul 5 2012
Latest operation return code: OK
Over thresholds occurred: FALSE
[code]....
I have been struggling to find a DDNS provider from which the IP address can be updated from a Cisco device.One does not seem to support it, (Free-DDNS) other must be paid for (No-IP.org) while the free version does not update the IP address in my case, etc, etc.The device that is directly behind my modem is a Cisco 1801 router.My question is, which DDNS provider works for you when auto-updating the IP address via the Cisco router?
View 1 Replies View RelatedI came accross a Cisco 1801 router. As I understand it supposed to work with a dsl connection for internet access and configuration. I have cable internet access at home and since cisco routers are very versatile, I want to know if I can integrate this router into my home network, as a secondary router, and use it for its SSL vpn capabilities?
View 11 Replies View Relatedwe have a Cisco 1801 at one of our remote sites that uses an ADSL line for it's primary connection and ISDN as backup. Despite no apparent problems with the ADSL line the ISDN is repeatedly dialling the internet every 2-3 mins during office hours and considerable expense to the customer.
View 3 Replies View RelatedI have blown the dust of my Cisco 1801 and looked the books out to put a decent router on my network now I am running my own server however I have hit a few bumps but totally stick now.
DHCP is disabled and I can't remember the sub net. Connected with the console cable but finding my admin password isn't accepted. Running the password recovery but unable to access ROMMON using special command > break. I should get this but the ATA monitor library just loads and I get stuck on the password screen.
*** System received an abort due to Break Key *** signal= 0x3, code= 0x500, context= 0x813ac158 PC = 0x802d0b60, Vector = 0x500, SP = 0x80006030 rommon 1 > #
From what I gather (still green behind the ears) the ROMMON command has been disabled. Any way to get into my Cisco or do I need to reload the IOS on the flash card?
Here is my event log/putty output
Event log
2012-11-09 19:59:47 Opening serial device COM6
2012-11-09 19:59:47 Configuring baud rate 9600
2012-11-09 19:59:47 Configuring 8 data bits
[code]......
I have a 1801 router connected to a 3550 switch with a regular 802.1q trunk, and I am curious as to what may be causing the unknown protocol drops on the connected router interface.
The switch is without any configuration at all except the following for the trunk configuration on the interface connecting to the router.
Switch:
-interface FastEthernet0/1
-switchport trunk encapsulation dot1q
-switchport mode trunk
Router:
-Interface FastEthernet8
-switchport mode trunk
There is nothing connected to the switch other than the router so the dropped traffic must be originating from the switch itself.The unknown protocol drop counter on the router increments by one every 30 seconds, and I tried using a packet sniffer but nothing noticeble showed up.
I read elsewhere on these forums that it might be udld, but that is not enabled by default, and just to be sure I tried disabling it on the interface and as expected it said it was not enabled, so I am ruling that one out.I also read that it could be because the router is recieving traffic from other protocols than IP, but I do not see how it applies in this case.
what does a 3550 send every 30 seconds that my 1801 does not understand?Could it have something to do with STP?
I've recently purchased a Cisco catalyst 2960S-24TS-L & setup 3 V LANS 10 (no current IP),20 (192.168.2.1) and 30 (192.168.3.1) to reflect the router V LAN configuration & ip information. When connecting my PC to the switch to test connectivity on (2.1 & 3.1) I'm unable to connect to the the net but can successfully ping GW (int FE0.20 & FE0.30) 192.168.2.1 & 3.1.
The router is an Cisco 1801 & it seems this is where the configuration issue is but I'm unable to figure out how to complete the setup. It has been quite awhile since I've configured a Cisco router.
Ive never had this router connected to a switch so all router switch ports are in the default VLAN1 (192.168.1.2), with FE0 disabled. In trying to get the switch to communicate with the router I made the following router config modifications.
FE0 enabled with subinterfaces configured
FE0.10-currently no ip
FE0.20-192.168.2.1/27
FE0.30-192.168.3.1/27
I have two issues I want to resolve:
1) I do not know what additional steps are required to allow 2.1.& 3.1 V LANs to access the net.
2) I want to disable VLAN1 if possible & use the network IP for VLAN10 (192.168.1.0). I'm unsure how to do this as any change on VLAN1 immediately breaks router access and the router reconfiguration becomes more complicated with changes to the FW ACL etc.
I would like test multicast routing with cisco1801.i create 2 Vlan. Vlan 200 (192.168.200.x) affect Fastethernet 1, Vlan 130 (192.168.130.x) Fastethernet 5.
Version IOS is : adipservice-k9 124-9.t1
ip multicast-routing
#int Vlan 130
ip address 192.168.130.254 255.255.255.0
Ip pim dense-mode
#int Vlan 200
Ip address 192.168.200.254 255.255.255.0
Ip pim dense-mode
I used VLC for my test.When i connect source (224.10.10.10) and recever ( Udp://@224.10.10.10:1234), that's ok!But, source is on the Vlan 200 and reicever on the Vlan 130, is not good!I test with "sparse-mode", i have same problem.
I am having difficulty following the logic of the port-translation. Here is the configuration on a 5505 with 8.3,So I would have thought the outside access-list should reference the 'mapped' port but even with 3398 open I cannot remote desktop to the host. If I open 3389 then I can connect successfully.
View 12 Replies View RelatedOn the supervisor card of a cisco 6500 series, according to the following link, [URL] it only has 2 uplink ports on the card. Would I be correct in assuming that I only have those to ports that I can configure IP addresses on?
The cisco that is being devlivere is coming with a 48 port switch and 24 port fibre switch. Could I change any of those ports into a router port and configure IP addresses on those?
The supervisor card is a ws-sup-720-3b the 48 port switch is a ws-x6748-ge-tx the 24 port fibre switch is ws-x6724-sfp
I'm trying to enable port security on several 4507R's. When I try to configure a range of ports the switch will randomly put 1 or 2 in err-disable. It's different every time I apply the config to the same group of ports. However if I do them one at a time it seems to work. But I really don't want to configure 6 fully populated switches one port at a time. We also have a lot of 3750's and they gave me no problem using a port range. [code]
View 4 Replies View Relatedhow to: port forwarding to 2 different destinations based on incoming WAN port
The default HTTP service works fine: TCP80/80-> 192.168.0.55
I have a couple of IP security camera's I'd like to be able to access remotely that also listen on port 80. I tried TCP & UDP 8009/8009-> 192.168.0.9 without any luck. Not sure how to handle the port redirects on the RV042G? Seems simple and was on the Symantec, could be user training :-)
I was able to do port redirect with the Symantec Firewall I'm replacing.
if I can use the encrypted port as unencrypted ethernet ports? url.. Each individual port on the Cisco Nexus 5010 switch is numbered, and groups of ports are numbered based on their function. The ports are numbered top to bottom and left to right.There are 20 to 28 ports on the Cisco Nexus 5010 switch, depending on which GEM is installed.
The 20 fixed ports form group 1 and are named 1/port_number. Ports 1 through 16 are unencrypted Ethernet ports. Of these, ports 1 through 8 are 10-Gigabit Ethernet and 1-Gigabit Ethernet-capable ports. Ports 17 through 20 are encryption-capable Ethernet ports.