Cisco Infrastructure :: ACE10 IOS Information Required
Mar 21, 2011I tried to find the EOL or EOS of the IOS A2(1.6a) of our ACE10-6500-K9 module.what to do ?
View 1 RepliesI tried to find the EOL or EOS of the IOS A2(1.6a) of our ACE10-6500-K9 module.what to do ?
View 1 RepliesWe are looking at buying an ASR1001 but I'm confused by the Licenses and I've struggled to find the information in the cisco data sheets. The router will need to run IPSEC on gre tunnels and I figure that I need the IPSEC license (FLSASR1-IPSEC) do I also require the Advanced IP Services license? or is all that is required the IPSEC license? Is there some sort of list that shows the feature set of each license, they cost the same amount so I'm not sure which license fits what we require best or if we need both.
View 1 Replies View RelatedI am looking into buying an ASA5505 but I would like to know if it is going to work in my setup. I have an Internet connection and 2 seperate networks. I know that the ASA5505 has 8 ports and I would like to know if I can assign each port to a different network zone? I dont want to use VLAN but physical networks. I know it is possible with ASA5510 and above but I want to make sure I can do the same with a ASA5505 (Without the security upgrade). I want to get an ASA5505 unlimited users.
So an Internet connection (with multiple IPs), 2 seperate networks, I want to filter traffic between all 3 and route between them also.
I am new in networking. All my knowledge is based on books and no real life experience. At my job I am required to set up the network and configure all apparatus I never worked before with.
We have regular cable internet in the office. Modem is connected to Apple router (time capsule). No trouble. Now we are getting fibre optic in the office. Mngmnt has abought the following Cisco stuff:
Cisco Wireless Controller 2504
Cisco 3501 AP 802.11g/n Ctrlr based AP
Cisco ASA 5510 Firewall appliance
Cisco Power Injector AP3500 Series
According to my understding, the fibre optic point will be connected to ASA which will be further connected to wireless controller and then access point.
I cant find the requird info. The guides available at cisco are for when you use CLI and as a beginner I prefer to use GUI. While trying to config ASA, there are many questions I can't find the answers.
We had a fan fail on our 3845 edge router. No big deal; the other two fans kept the temperature easily within spec, and the module is a two minute hot swap. I opened a ticket, they sent me a replacement. Simple. (In fact, the router install docs note that the fans are essentially a "consumable" part, and will fail within a few years, depending on how hot and dusty your environment is.)
The fan module is actually the whole face plate of the router, blue plastic with a steel backing, status LEDs, and the three fans.That is all fine. But, Cisco won't take the failed part back for refurbishment, which in this case would be simply to replace the fans!
The replacement part came with the standard Cisco return packaging: a sticker with an RMA #, a "manual" paper UPS label, and instructions to use their on-line tool [URL]. But, when I entered the RMA number, I got a pop-up saying it was invalid, and I should call Cisco Asset Recovery, whose 800 number is also on the sticker.
They told me that this part is not returnable; that the RMA is only to ID the shipment so they can confirm I got it. They told me to just throw it out. They would not provide a printable return shipping label.
I'd feel bad throwing out even the substantial cardboard and foam packaging of this part, let alone the assembled unit!
Hasn't Cisco heard that there is a general industry movement to cut down on electronic waste? With the removal of six screws, I could swap the failed fan out of this assembly and replace only the fan. I'm glad Cisco didn't ask me to do that level of repair, but I certainly think they should -- I'd assumed that the replacement unit I'd received was a return "refurbished" with new fans.It seems a complete waste to just chuck out this whole thing.
Heck, even the tiny power supply bricks for the Aeronet APs have a little "no trash" sticker on them, with a link to [URL]. Why do they just dispose of router faceplace assemblies when the only issue is a fan that was expected to fail in the first place?
Attached photo shows the 3845 front piece, which is the fan assembly, and the package the replacement came in, which could be used to return this part, and then be reused. For comparison, the little black thing in front is an Aeronet 1131 power module, which has a Cisco Recycles sticker.
I have ACE10-6500-K9 installed in 6513 core switch with below mentioned sh version.
Software
loader: Version 12.2[121]
system: Version A2(2.0) [build 3.0(0)A2(2.0)]
system image file: [LCP] disk0:c6ace-t1k9-mz.A2_2_0.bin
[Code].....
I want to know that can i upgrade ACE10-6500-K9 to c6ace-t1k9-mz.A5_1_0 i.e version5 ? I tried to search cisco website but could not get proper upgrade or user guide.
the dynamic port range server load balancing supported for MS Exchange 2010
View 1 Replies View RelatedWe are using several contexts for each customer in our ACE module.One of the customer contexts needs to activate XML API to control their services.I've tried to activate it, but cannot get any http response, what can be missing?ACE10 version A2(3.6a)
class-map type management match-any HTTP-ALLOW_CLASS
2 match protocol http source-address 10.110.0.0 255.255.254.0
3 match protocol http source-address 10.60.208.80 255.255.255.248
class-map type management match-any HTTPS-ALLOW_CLASS
2 match protocol https source-address 10.110.0.0 255.255.254.0
3 match protocol https source-address 10.60.208.80 255.255.255.248
[code]....
It seem that ACE10 not support 12.2(33)SXJ1 IOS running on C6500. The box cannot detect the ACE module when power up. Currently the ACE10 running on system A2(30).
My challenge i have the ASA SM that compulsary to run on 12.2 (33) SXJ1 version. How to let these 2 module can running on the same C6500 box?
I trying configure ASN traffic load balance, but doesn't works.I have one Cisco Catalyst 6509 and onde Cisco Ace10 module, in my context "PanWEB" i have the interfaces above: [code] If i try to establish a telnet session(telnet 10.96.202.10 80) i see the SYN packet passing through the ACE and going to the real server, but, the server do not response the SYN packet. I done a capture in the server using wireshark and could see that the IP address of the destination is the VIP and not the rserver ip address , this is a problem? Why can not I have the SYN + ACK from the server?
View 5 Replies View RelatedI want to load balance between two webservers using ACE10 working in bridging mode, but when putting the VIP in the url i'm getting page not found, tried many configurations but didn't work, here is the latest one
logging enable
logging buffered 7
access-list ALL line 8 extended permit ip any any
[Code].....
how a static entry under a "sticky" performs Configuring Static IP Address Sticky Table Entries Cisco Documentation Says When you configure a static entry, the ACE enters it into the sticky table immediately. Configuring the ACE Action on Server Failure failaction purge # The purge keyword specifies that the ACE remove the connections to a real server if that real server in the server farm fails after you enter the command. The ACE sends a reset (RST) to both the client and the server that failed. Cisco Documentation Says If you do not configure this command, the ACE takes no action when a server fails
sample config
sticky ip-netmask 255.255.255.240 address source STICKY1
timeout 180 replicate sticky serverfarm SERVERFARM1 8 static client source 192.168.12.15 rserver SERVER1
Question1 - What happens if SERVER1 fails?
a) Does the ACE let the connections to SERVER1 timeout(default behaviour) and then load-balance new connections coming in deom 192.168.12.15 to another server in SERVERFARM1
ORb) Does the ACE reset the connections to SERVER1 immediately and starts load-balancing new conenction coming in from 192.168.12.15 to other servers in SERVERFARM1 ?
ORc) Does the ACE just drop the current and new connections from 192.168.12.15 till SERVER1 comes back up ?
OR d) Is it dealt differently?
Question2 - Now what happens if the failed server(SERVER1) comes back up after some time?
e) Does the ACE reset any current connections from 192.168.1.15 and starts sending them to SERVER1 ?
ORf) Does the ACE leave the current connections from 192.168.1.15 to other servers in SERVERFARM1 as they are and send any new connections
from 192.168.1.15 to SERVER1?
ORg) Is it dealt differently?
My guess is Question1 -> a) and Question2 -> e)
ACE model = ACE10-6500-K9
Version = A2(3.3)
I get a lot of information via RME or SNMP but not the RAM Information.
View 1 Replies View RelatedLooking for the loading information for Cisco ACS 5.4 running on a VM. After user and device authentication figures.
View 1 Replies View RelatedI'm currently running Cisco LMS 4.1. I need to see if there is a way in the LMS, either through the menu or via a report, that can give me the V LAN numbers, the description, the IP address, the Interface (SVI) the v LAN is on and the route it takes.
I've searched near and far and haven't come up with anything yet.
Its more for information purposes. I am trying to compile some information together to get a better understanding of them so anything generic would do. Such as what it looks for in the traffic to block attacks, negative impacts of performance and a couple of top products I could have a browse of and so on.
View 1 Replies View RelatedI am having problems trying to connect to my wi-fi. I first noticed that I had problems connecting to some types of unsecured wi-fi connections when I was "borrowing" from my neighbour while I waited for telus to install my internet. My two roommates would have no problem surfing but my computer was unable to get any connection to the internet (i could see the connections but never load a page)
Once telus came and installed the internet I was able to get a "fair" connection to the router and surf with decent speeds. About a week after I first started using the internet, my computer started being unable to connect the router. It seems that everything is getting worse and worse. It started by me having to restart the adapter a couple of times to make it work, to me having to delete the network profile and then redo it, to me only being able to connect by using the WPS.
And now my computer can't even get the information from the router through WPS! I would start to point the finger at telus, but every one of my roommates has no problems connecting to the internet, and it's not a range issue (i'm typing this up with my laptop while sitting beside my desktop).
I am in need of some information regarding licesnes on the ASA 5505.I have a client who is connecting their main office to a DR site via a site-to-site VPN. I understand that the standard license for the ASA 5505 is for 10 clients.Does the site-to-site connection consume one of these licenses?Does each endpoint communicating over the site-to-site VPN consume one license also?For example, if I have the site-to-site VPN and 10 servers on each side, would that mean that I need 21 licenses; 1 for the VPN and 20 for each server on each side?
View 4 Replies View RelatedI´m looking for a firewall for my company and am reading about both Cisco ASA 5505 with Security Plus bundle and Cisco ASA 5510 with Security Plus bundle and I have a few questions.This is the document i´m getting my information from.URL,It states the following:Cisco ASA 5505 Security Plus bundle,Includes Cisco ASA 5505, unlimited users, 8-port Fast Ethernet switch, stateful firewall, 25 IPsec VPN peers, 2 SSL VPN peers, stateless Active/Standby high availability, dual ISP support, DMZ support, 3DES/AES license, and 1 expansion slot.
View 5 Replies View RelatedBasically I am trying to do a bit of a clean up at work and replacing two dlink (home style) ADSL modems with a single Cisco 2901 router with 2 ADSL HWICs. On top of this I want to isolate the 2 connections from each other, that is I don't want to use them as fail-over or anything just as 2 seperate connections. To do this I am using VRF tunnels.So far I have been successful in the global config of the switch and everything works. And when I put the lan, atm and dialer interface into my VRF it connects up all fine.My issue that I am having is that DNS (which is being pulled from the ISP via ppp ipcp dns) seems to just populate the global dns view, not the view I created for the VRF. This results in DNS queries not being able to be resolved but all other traffic is fine (i.e. I can ping and access anything on the net, I just can't resolve names).
If I have 2 ADSL connections, on two VRF tunnels, how can I seperate their DNS information for each connection/VRF tunnel? especially if that information is different as they overwrite the global DNS config each time they connect.... I could (and have successfully tested) statically assigning DNS servers to each DNS view but I would rather rely on each ISP sending their DNS servers as opposed to me hard coding them.
We have 4 x 4xxx WLCs setup in our Core. I just created an AP group in one of WLC and in theory I should see that AP group in the other 3 x WLCs
For some reason, I do not see that AP group appear in other 3 x WLCs. Very much appreciated if someone could point me to the right information or trouble shooting steps.
i would like to get information from my ASA5520 using SNMP V2c such as :
-xtable entries
-ARP cache table
does it's possible or not ..
request for registration - wont submit - nothing happaens
View 1 Replies View RelatedMy IT Department has recently installed Kaspersky Endpoint Security 8 on our laptops. Through a conversation with my IT guy I found that they can literally see what we are installing/uninstalling, surfing etc on our machines. When I am at home I am connected to my own private wireless network with my work laptop and I RDP to my home computer to surf/download files etc to my home machine. My question is, can my IT department track what I am installing/surfing on my home PC that I am connected to RDP? I was thinking of putting my RDP on the outside so I can connect to my home network and surf securely without my IT department keeping tabs on my history.
View 1 Replies View RelatedI have a prob with my laptops,wireless setup although it shows wlan on it will not work without a connection to the router,netgear wgr614,I have gone into Devise Mng and found the following faults,Serial cable IRDA problem code 43 & SRTSPX code 24 not working.
View 1 Replies View RelatedA site identifies its user through IP address and cookies. My question is about IP address. Does a IP address contain information information about your geographic region? What do those digits in IP address mean? Some websites could tell where the user is located, how?
View 1 Replies View RelatedAt the school I live in various sites are blocked so I need to use a proxy to access them. Is there any way that someone could steal my password or something while I use one? Also, let's say that I use a proxy in one web browser (let's say Opera) to view a blocked site, but then use a different browser (Firefox) with my normal IP, would I be able to use Firefox with no worries if I need to check something like my bank account? Basically, can you restrict them to one program so you can use personal information on one and normal browsing on the other?
View 1 Replies View RelatedI currently set up two LAN networks. But one of them (Router 2) will be open (no password). Will this create a security compromise? Can the Router 2 Users access information of users of Router 1?
Modem WAN > Router 1 WAN
Router 1 LAN > Router 2 WAN
The router 1 and 2 are broadcasting different networks and SSID.Is there any setting that I need to change, or this configuration is perfectly safe? both of them have DHCP enabled.
I have a Cisco 2610 series router(Version 12.0(5)T1, c2600-i-mz.120-5.T1), which has a network module inserted. I would like to view the model of this network module. There are no "show inventory" or "show platform" commands. "Show version" doesn't list the network module as well. In addition, it appears to have a "show c2600" command, but this doesn't display any hardware information.
View 14 Replies View RelatedI keep seeing this message on outbound calls on our PRI cards, all 4 of them:
Cause i = 0x82E41C - Invalid information element contents
Call State i = 0x01
Display i = 'INVALID INFORMATION'
what it is or indeed if it would affect caller ID.
My customer has upgrade his 4506 from 6L-E to 7L-E 10GE.Ever since then if he run the command show dot1x interface gigabitEthernet x/x details some information are not been displayed (below are missing information)Is this intensional or do I need to kick this to TAC?
View 1 Replies View RelatedWhere can I find information on using debug on the SGE2010P switches? The information in the admin and reference guides is extermely limited.
View 1 Replies View RelatedMy site is thinking of using AP 2600 instead of the trusty AP 3502 since it has better thru put. Any experience on 2600 as we want to ensure stability for our deployment.
View 4 Replies View Related