I work with the topology view in LMS 4.1. I can see all the links between the differrent switches (N7K, 3750, 3040).I miss only the links between the different N7K's. This links have one special thinks: they are configured as " rate-mode dedicated force" In the N7K cli this interfaces are displayed with the SN too.
sw-bb13# show cdp ne.The links to sw-bb11 and sw-bb21 are not painted in the topoloyview.
We have a problem with the Layer2 view of the Topology java applet in Cisco Prime LMS 4.2.The Layer2 view shows all the ethernet interfaces links but not the ones in the serial interfaces.All devices have CDP and SNMP (read-only) enabled, and theirs neighbors can be seen with "show cdp neighbors" in both sides of those links.
The regular problem with the LMS topology and WAN Links when you see the branches are disconnected from the HQ BUT in my case the branches are already connected via Layer2 links but unfortunately some intermediate layer2 modem/switch exist in some branches which prevent CDP discovery but you will find both HQ and branch router in the same subnet .
I have problem with topology view in LMS 4.2.1, it doesn't show the tunnels connecting branches, though both devices are shown in sh cdp neighbour command output. If I choose Show Devices in Admin > Collection Settings > Data Collection, it is showing cdp neighbours correctly.
im trying to figure out the right way of configuring cdp on devices so that they dont show the links as etherchannels segments linked together, i have several port-channels in the network and the layer 2 view seems all messy.
I'm using LMS 4.0, after I auto discovery device, I can see all of devices on my network but I cannot view the links connect between the ASR 9000 and Catalyst 6509. I've just checked cdp neighbor on these devices, I can see the full of neighbors.
I attach 2 file, with the visio topology and the topology view on LMS , and I'm 100% sure about the connections between these devices are used. I try to re-discovery many times but it not work correctly.
I am trying to setup 4 cameras to view with remote live view. I set up my server with IP addresses of 192.168.1.80 .... 85. The screen has only the option for 1 video channel. I have seen on-line screen shots that have options for channel 1 through 8. I want to assign each camera to a different channel so I will be able to use remote live view to show all 4 cameras at the same time. I can only show one at a time. Do I need a different version than 3.3 or some obscure windows 7 setting?
i have an issue with the lms 4.2 Topology Data Collection. After installation the Topology Data Collection was running normaly, but since first server reload the Topo Data Collect under Inventory > Dashboards > Device Status > Collection Summary is "frozen".Is there any option to stop this process elsewhere? I cannot find anything under jobs in running state or so. Clicking on Schedule only give me the option to start data collection, but lms always returns that the process is running.
1)i have problem in LMS 4.2 , he shows most devices not connected to topology sitting lonly even though the have cdp enable , how to force these to join the topology
2)why some devices are shown unreachable , even though i can ping them from lms server and gets reply, also they have community and cdp configured
On a LMS 4.0.1 :I want to know what is the right way to change the telnet program on the campus mgr map (topology services map), when right-clicking a device icon and selecting telnet.I would like to use a tool of mine, and not to launch a telnet command from the IE browser.I changed the default telnet of Windows in the registry, but the program is still launched as a telnet URL in the browser and this is not what I would like to do.
have ether-channel across 2 switches?i am new in cisco LMS . now i am in client site installing cisco LMS 4.1 in UCS server-rack version. we did it well for the installation, and the LMS working properly until i cannot open topology service.
I have a customer who wants to disable cdp on all switches for securtity reasons. The same customer has also LMS 4.0 installed.
When disabling cdp, does it affect the topology services on LMS? Can you still see the topology tab on device manager or the topology map of the entire network?
I config the routers with EIGRP and also write Static route between two PC before remove the link between router0 and router1 , destination is reachable , but when remove this connection , packet from pc1 to pc0 will drop in a loop and never reach to destination , is it possible to have a Link state routing protocol and static route at the same network like this scenario , how to prevent loop in this topology static route is configure as bellow :
I am running LMS 4.2 , using that i am monitering some switches . I am using topology services also. In that i am getting veiw of all connected devices with links. But bandwidth utilization is for those links are not showning in topology veiw .
Is there any settings to be done in LMS 4.2.2 or any configuration changes to done on my switches ? to find the traffic flow bandwidth utilization.
I installed LMS 4.0.1 and every module works from the local server. Http login from a remote system, topology services does not start, complains about java version. I followed the link to install the java version, it then complains about some Ansiserver stuff.
the client os is win7 64 bits, eplorer version is 7.
When i try to launch topology services in LMS 4.0 i get prompted to install a java plugin. When i install this it tells me to restart the browser but nothing is changed, it asks me if i want to install the java plugin again.
I'm trying to make an attached topology. This router should be attached to 2 different ISPs on both WAN interfaces (ISP1 with IP address - A.B.C.D, and ISP2 with IP W.X.Y.Z) and I want to use DMZ, too. My idea is to make a L2/L3 segmentation with 2 VLANs - Vlan RED for DMZ (private network 192.168.1.0/24) and vlan BLUE for Internal network (network 192.168.2.0/24). I checked in the manual that vlans are supported, but I can't see anything about 802.1q, can I use one trunk port or I should use 2 physical cables?
There should be inter-vlan routing and basic stateful firewall, so PCs in Vlan Blue should be able to initiate connections to DMZ servers, but the opposite should be denied. Router should make a port forwarding on its both WAN interfaces and forward incomming traffic (from Internet) to DMZ servers (with NAT). Both DMZ servers and internal PCs should have an internet access with NAT over both WAN uplinks.
Can I use RV042G for this setup and if not at all - are there any cisco SMB device which can do this?
Attached is BGP confederation configuration and Topology. They are taken from "Routing TCP/IP Volume 2" book.AS 65000 is designed as a backbone AS connected to non-backbone AS 65535, 65534 and 65533. All are member AS's in AS 1200.I have couple of questions as i think some parts of Sunshine's and Talisman's configurations are incorrect.
1. The next-hop-self keyword is mentioned only for Panorama router, why the keyword wasn't mentioned for Nakiska and Talisman routers? .. As we know, the next hop is preserved throughout the confederation, therefore, next hop self should be configured in all member AS's inside the confederation. The same thing with Talisman, why the next hop keyword wasn't mentioned for Lakeridge and Sunshine?
2. Why the remote-as keyword wasn't mentioned for Panorama in Sunshine's configuration while the keyword was mentioned correctly for every neighbor routers in Talisman's configuration?
3. I don't understand the below statements that are stated in the book, as it conflicts with the rule "MEDs are preserved throughout the confederation"
"AS 65000 can safely send MEDs to AS 65535. A route that includes 65000 in its AS_PATH is not accepted by Sunshine or Talisman, so MEDs sent from those routers to AS 65535 are not seen by other member AS's".
I am trying to configure MSTP on Layer-2 network at work. We have multiple switches connected on Wireless point-to-point links with redundent links.MSTP is configured with multiple regions. All the servers are located in RegionA and other regions are connected to RegionA via multiple links.
There are 3 SG-300-10 switches in RegionA --- SwitchA_1, SwitchA_2 and SwitchA_3.One of the simple regions (RegionB) has a single SF-300-08 switch (SwitchB) connected to SwitchA_2 via port e7 and SwitchA_3 via port e8. Hello Time, Forward Delay and Max Age are at their default values of 2, 15 and 20 respectively. The link between SwitchB (port e7) ---- SwitchA_2 is the primary link with cost 200,000 and the link between SwitchB (port e8) ---- SwitchA_3 is the backup link with cost 500,000.
The log on SwitchB is shows in the table below. As it is seen from the table there are frequent topology changes for very short duration (1-4 seconds) before the topology settles back to the configured one. (Primary link forwarding and secondary link blocking). During this time there have been no link failures reported.Same thing is also observed within RegionA (SwitchA_1, SwitchA_2 and SwitchA_3 are connected to each other).
How to stop these frequent topology changes? The topology changes within RegionA causes a lot of PPPoE sessions to reset and re-establish.Is there any way to find out what triggers these topology changes?
21474646232011-May-24 13:54:15Warning%STP-W-PORTSTATUS: e7 of instance 1: STP status Forwarding21474646242011-May-24 13:54:15Warning%STP-W-PORTSTATUS: e7 of instance 0: STP status Forwarding21474646252011-May-24 13:54:15Warning%STP-W-PORTSTATUS: e8 of instance 1: STP status Blocking21474646262011-May-24 13:54:15Warning%STP-W-PORTSTATUS: e8 of instance 0: STP status Blocking21474646272011-May-24 13:54:13Warning%STP-W-PORTSTATUS: e8 of instance 1: STP status Forwarding21474646282011-May-24 13:54:13Warning%STP-W-PORTSTATUS: e8 of instance 0: STP status Forwarding21474646292011-May-24 13:54:13Warning%STP-W-PORTSTATUS: e7 of instance 1: STP status Blocking21474646302011-May-24 13:54:13Warning%STP-W-PORTSTATUS: e7 of instance 0: STP status Blocking21474646312011-May-24 12:53:22Warning%STP-W-PORTSTATUS: e7 of instance 1: STP status Forwarding21474646322011-May-24 12:53:22Warning%STP-W-PORTSTATUS: e7 of instance 0: STP status Forwarding21474646332011-May-24 12:53:22Warning%STP-W-PORTSTATUS: e8 of instance 1: STP status Blocking21474646342011-May-24 12:53:22Warning%STP-W-PORTSTATUS: e8 of instance 0: STP status
I'm designing a new topology to access to the Internet using Cisco2921 NAT and MS ISA Firewall. I'm going to use ISA as a proxy to public some internal services and to provide internet access for my users. ISA won’t use NAT. It will route traffic. Cisco 2921 will handle NAT, ISP Failover and IPSec VPN to datacenters.
Cisco 3750 will route outbound internal traffic.My routing for internal users on Cisco 3750 will look like this: [code] My question is about route from Cisco 2921 to my local network 192.168.0.0/22.If I use this route, I'll restrict my traffic from datacenter to go through ISA server BUT all responses from the Internet will go directly to 3750 too.I doubt about security and functionality of such solution. Of course I will public my internal resources to internet that way. It is on Cisco 2921
ip nat inside source static tcp 172.16.0.2 80 (my external IP) 80.I could use PBR to divide my traffic from datacenter and other traffic, but I don't know how to use PBR with IPSec VPN traffic.
After some time LMS stops to refresh network topology (not changing colors for devices which lost/found). However, if I restart topology services devices are refreshed.
Checked the processes. Everything is fine but there is a process named "1018". But I did not found any job with this number.
I have CISCO 2911 with SRE module for Wireless Lan controller software. also between my local network and CISCO router is a firewall, CISCO router is an edge router so router and my Lan are in different subnets. i want Wlan and Lan to be in a same subnet is it possible? In other words, can WLC and Access points be in different subnets? the case is that wireless devices should be behind the firewall.
I have users that are unable to save their changes to topology maps - when devices are moved in a map and the map is exited, the next time the user goes into the map it is back at the default layout. The unusual part is that this does not affect all users - I have two users with the same CiscoWorks rights, but only one can save map changes. The admin user is one that can't save map changes. I'm running LMS 2.2 on Solaris 2.8. The problem existed before and after I upgraded to Campus Manager IDU 11, and stopping and starting services hasn't worked.
Currently we have a 50mb pipe with our carrier SONIC. We have signed another contract with another provider here in town (Charter) to multihome our Internet connections in an active/active configuration. We have leased our /24 space through our carrier SONIC. ARIN has already approved our org-ID for an ASN and they will be sending us that once the billing portion is finished.
There a few design considerations I was hoping I could get some insight from the community on.. Before I start, the ultimate goal for us to use BOTH Internet connections in an active/active configuration - utilizing both pipes..
Disclaimer: I have gathered this design from a lot of other posts that have somewhat of a similiar topology with ASA-->3750-->router pair-->CPE--internet...
What kind of routes should I get from each carrier? I have been told that partial/partial routes plus a default route form each carrier is the way to go. Also, I've heard mention that full routes from both carriers are preferred. My ASR1001's can support ~500k routes. I know the global table is approximately ~337k routes. My goal is to use both pipes and use the best outbound path per carrier.
We will be leasing our /24 space from SONIC. I plan on running OSPF on the DC-Edge-SW1 in conjunction with iBGP - so I can default originate two equal cost routes back to my ASA. My confusion is when the traffic hits DC-Edge-SW1, there will be default equal-cost iBGP routes to both ASR1001's (DC-Edge-RT1 & DC-Edge-RT2). If the switch does not have the BGP table, it will just load-share across both ASR's. When the traffic hits the ASR's, will they know which carrier has the best path and route accordingly?
Should the iBGP connection between both routers be directly connected ? Or will it suffice through the L3 3750 connection? Also, with the limitations on the routes for the ASR1001 at ~500k. If we end up getting full routes from carriers and create a iBGP neighborship between both routers, will this exceed the route limitations on this platform? On both routes, I will have the network statement 'network 12.231.69.0 mask 255.255.255.0.' This is a leased network from SONIC, and we NAT everything on our ASA to 12.231.69.10. My question is, will this be a problem broadcasting this network from our AS to both carriers AS? Refer to bgp-design.jpg - is it a requirement that I use our leased public subnet 12.231.69.0/24 for the interfaces from ASA5510 -> 3750 -> ASR1001?
I have installed LMS 4.1 and discover all the devices (router/switches) but i want to show IP Phone on the LMS. I am unable to discover call manager in LMS 4.1 topology.
In Call Manager 8.6 in Cisco Serviceability under snmp setting i have enable the read community string and check snmp, MIB service are running.AM i using the correct proecdure. How can i get the Call Manager on LMS server so that i can see IP phones on LMS topology. 8.6 is installed on VM Ware.
i create a network topology ( i attached picture) and i don't know what exactly IP addresses should be assigned to routers and switches + there should be five VLAN's created and just one vlan (vlan 2) must see others vlans (for management purposes) and others vlans should not see each other. So i need that: 1) What IP addresses should be on routers and switches 2) How to create a 5 vlans, that they should not see each other, but one should see all, for example where i have to put "tagged" ports where "untagged" or "not member" ports etc.
i create a network topology ( i attached picture) and i don't know what exactly IP addresses should be assigned to routers and switches + there should be five VLAN's created and just one vlan (vlan 2) must see others vlans (for management purposes) and others vlans should not see each other. So i need that: 1) What IP addresses should be on routers and switches 2) How to create a 5 vlans, that they should not see each other, but one should see all, for example where i have to put "tagged" ports where "untagged" or "not member" ports etc.