I am getting some weir behaviour in my LMS 4.2 setup. I am doing and Archiveupdate job and am receiving a partial success for roughly 1400 devices. Here is some output.
Execution Result:
STARTUP
CM0057 PRIMARY STARTUP Config fetch SUCCESS, archival failed for
xxxxxx Cause: CM0210 Unable to generate
processed config Action: Verify that archive exists for device.
RUNNING
[code]...
I went on and checked the dcmaservice log file.I found the following entry at the same time of this particulair job
ERROR,[Thread-72920],com.cisco.nm.xms.xdi.pkgs.SharedDcmaIOS.analyzer.IOSConfigletRules,loadRules,42,Could not locate configlet rule file : com/cisco/nm/xms/xdi/pkgs/SharedDcmaIOS/analyzer/IOSConfigletRules.ser
[ date taken out ],ERROR,[Thread-72920],com.cisco.nm.rmeng.dcma.configmanager.DeviceArchiveManager,archiveNewVersionIfNeeded,1115,CM0210 Unable to generate processed config
I then searched if I had the IOSConfigletRules.set file on the box. And no it is not there. My question is this the reasson that I have som manny partial sucess archive results?
have some problems with setting up jobs for the backup running config on my switches. Have RW and RO contact with everyone and can change the config in editor, but do not get config.txt
We are in the process of upgrading the bandwidth at a few offices. Each currently have a 2xT-1 connection but have high utilization on the circuit which is why they are being upgraded. We are trying to decide b/t either a partial DS3 or metro ethernet connection. Are there pros/cons b/t the two in order to decide which to go with? Cost is not an issue. Some say going with a partial DS3 circuit offers benefits over metro ethernet such as network-based failover, end-to-end availability is better with DS-3 and QoS.
a customer of us asked if C2911 (to be bought) is ok for partial BGP routes.This is the situation: 2 cisco 2911, each peering with 3 other AS (AS1, AS2, AS3), and maybe, in the future, at a small IXP (AS4, AS5, AS6, AS7).They will accept defaults plus partial routes from upstream AS1, AS2, AS3.When deployed at the IXP they also will accept partial routes from AS4-7.So, is 2911 ok for that configuration?the default route is included in the first row of as-path, isn't it?I have no experience with partial routes, only with full (for our datacenter) and default only (for other customers).
We had an interesting situation after an electrical storm moved through where a few of our dual WAN clients didn't have any Internet connectivity. Generally speaking, they are on a wireless broadband and something like DSL/cable/T1. One customer in particular has a cisco 1941 router setup for dual WAN which tested fine during install (pull either connection, external IP changes dynamically and no difference is noticed by user). Well, this storm knocked the wireless broadband out enough that it wasn't usable, but would respond to pings randomly. Because the wireless is the fastest of the two connections it has a higher priority but because it was down but still responded to some pings, the traffic didn't go through the DSL that didn't go down. how to make the dual WAN more reliable in these partial-down situations? I thought about playing with the network service detection (we have a customer on an RV042 who experienced the same problem) but am not real sure what I could change that would make the connection more reliable, especially on the 1941 router.
We are running Sharepoint 2007(sp3 and wss sp3) on a dell pe2950 running Server 2003 std x64 sp2, 4 146gb 15k sas raid 10, 16gb ram, dual xeon 516 3ghz. the network card is a quad port intel 1gb pci-x server nic. Was running broadcom net xtreme dual port onboard, and had the same issue.
We are losing partial network connection, after about 14-15 hours of the machine working correctly. What happens is that it cannot ping, or access, any machines not on the same network segment(this machine is on 192.168.3.* and cannot access machines, or be accessed from 192.168.2.*, 192.168.4.*, etc, etc). what i have found is that when i try to ping 192.168.2.210(our dns, dhcp server). its times out about 20 times and replies 2-3 times, and then repeats the cycle all over again. i have done a winsock reset on the machine, and sometimes it starts back up and works again, sometimes it doesn't.
I have an HP OfficeJet J4500 that works fine with shareport on my Win7 x64 computer. the XP and Win2000 ones both have the same "partial page then lockup" problem. when this happens, the only way to disconnect shareport is to reboot the router. It shows connected to the same computer even if I reboot that computer. I started with V1?? from the install disk then tried 3 and finally 4 with no improvement. I have read several posts about this or similar problems. This is the primary reason I switched routers and bought the D-Link DIR-655, for the print server feature...
I try to use fe0 as outside, with dhcp from my ISP, and fe1-fe3 as inside on my Cisco 877. I have done this successfully before but now it just will not work. This has been a long weekend .
My ISP just forced DHCP on me (from static IP) and sent me this Xavi adsl modem. I successfully get IP addresses using DHCP from it with workstations, but not with my cisco. With current setup I get DHCP errors (DHCP: QScan: Timed out Selecting state%Unknown DHCP problem.). DHCP log is attached.
Setup is attached too, but the main parts are: ----------------------- interface FastEthernet0 switchport access vlan 2 !
I am interested to configure my slingbox with my ASA5505. I am currently able to use the device remotely when I connect via VPN. My concern is that the VPN uses too much bandwith and I would get better quality if I would able to forward the appropirate ports through the ASA5505 and connect directly from the outside.
WLC 5508: software version 7.0.98.0 Windows 7 Client Radius Server: Fedora Core 13 / Freeradius with LDAP storage backend
I have followed the guide at URL with respective to building the LDAP and free radius server. 802.1x authorization and authenication correctly work. The session keys are returned from the radius server and the wlc send the appropriate information for the client to generate the WEP key.
However, the WLC does not override the VLAN assignment, even though I was to believe I set everything up correctly. From the packet capture, you can see that verfication of client is authorized to use the WLAN returns the needed attributes:
Using ISE 1.1.1 and Switch 3650 12.2(55)SE6. I have a client (computer) that should be authenticated with MAB and then the switch port should be asigned a DACL and VLAN 90. I do get "Authorization succeeded" but directly after it fails and I can't figure out why. ISE only shows the successful authentication under "Live Authentications".
As you can se from the log below 802.1x fails, as it should, and then MAB succeed, asigns the VLAN and then fails:
Having no success with installing a wireless G+ router F5D7231-4, without any accompanying disc etc which I got second hand, neither can I complete Installation of a new Belkin wireless G USB adapter [with disc], keeps saying there's a missing shortcut that cant be found, my PC is Acer Aspire 5551 which has no wireless facility built in, all connected to a Virgin wired modem, is there a quick fix, I'm using windows 7 if that makes any difference,.
I'm trying to join a band new CSACS-1120 to our active directory without success. The process in it self should be pretty straigh forward, but so far no luck.
I've configured the relevant info under "Users and Identity Stores > External Identity Stores > Active Directory.
Active Directory Domain Name: xxx.com Username/Password : domain administrator account
When I test connection I get a info dialog "This machine is currently connected to domain xxx.com".After which I try to save changes which gives a reply ""This System Failure occurred: {0}. Your changes have not been saved. Click OK to return to the list page."
I've noticed that in the system log "show logging system tail" that I get a exception as soon as I enter the AD configuration page and subsequently every time I perform a action on that section.
Why the AD join keeps on failing and what the debug exception I'm getting means?
I just installed a DIR-601 cascaded with a WiFi G Netgear router. The D-Link is handling DHCP. I am having varying degrees of success with the WiFi signal. One XP laptop gets anything between 80Mbps and 150Mbps (can change while sitting in the same location), while another Win7 netbook does slightly worse. My Son's MacBook Pro never seems to do any better than 72Mbps.
I dedicated the D-Link to 802.11N and only allow these 3 devices to connect to it as N devices. All other WiFi devices are G and use the Netgear G router. I am using WPA2-Personal/AES and Auto bandwidth (40 does not seem to be a choice).Didn't experience such performance fluctuations with the Netgear G router.
we have an LMS 3.2 in which it cannot archive the configuration for a couple of routers. The output is the following:
Failed to fetch the configuration. Check the dcmaservice.log for details. TELNET: Failed to establish TELNET connection to x.x.x.x - Cause: connect timed out.
The issue is that i have configured all devices to be accessed through SSH first and then through telnet. I have tested SSH access from LMS with putty.
I have a cisco 870 router which I'm trying to connect to my ISP all the interfaces are in a up, up state. But I'm unable to ping any IP address on the internet. When I do a debug ppp I can see that the username and password are correct with the dialer 1 interface as there is no errors and I can see success. But when I shutdown the atm0 interface and then do a no shutdown I see a message called authentication failed.How does the atm0 interface work with the dialer,Also I spoke to the ISP and they can't see any connection being made but the debug shows success. I also get a default gateway via the ISP but it is the incorrect default gateway as I can't ping the internet and the ISP confirms that the default gateway is incorrect.
I try to connect two switch Catalyst 3750G without success.switch1 (192.168.2.10 vlan 2) <=> (192.168.2.11 vlan2) switch2.I use this configuration for swich1 [code]
We are trying to isolate the fault. From Aggregator a router, we are receiving MAC address of distant end ethernet interface of a SDH box and vice versa is also possible. However ther is no packet received. My question is does ping test is must to see if the path is through or just receiving MAC adress at both ends would mean that packets have to go over the path.
I purchased an E2500 wireless router. I am trying to replace a Netgear wilreless router with no success. During installation my laptop reaches about 25% and I get an error message. In short my laptop asks for an IP address with a password. Once I enter that information I receive an error message to call for assistance.
I have a not-so newly installed LMS4.2 Linux appliance. Here is my configuration archive summary:
Config Archival Status No. of Devices Successful 7 Failed 1338 Partially Successful0 Total1345 Configuration Never Collected 1338
[Code].....
Which seems to mean that SSH does not work, which is false as I manually connects to the device from the LMS host successfully. Network devices access is authenticated against ACS servers using TACACS+ so there should be no problem with credential discrepency here.
I have a question about a daily archive sync job. I have the job set to run by device type groups. My question is, when I delete or add devices, will they automatically be added to the job?
I just installed WRT54GH and wireless was working fine, after almost 3 hours passed I lost connection with it.I tried to connect using wireless with 3 different notebooks without success. Just using cable it works.I upgraded firmware from v1.0.010 to v1.0.01 but still not working.
I beleive in the past these devices could not be managed bij RME config management, but now it says in the supported device table:The following features are supported:Network Topology Layer 2 ServicesFault ManagementInventory CollectionConfiguration Deploy Protocols: TELNET, SSH, TFTP, RCPConfiguration Fetch Protocols: TELNET, SSH, TFTP, RCP.The password and enable pasword are correct and simply work when I try a telnet from the server.The gui is not CLI but menu driven.RME just says:TELNET: Failed to establish TELNET connection to 10.1.1.7 - Cause: Authentication failed on device 3 times. PRIMARY-RUNNING config Fetch Operation failed for TFTP. Could not detect SSH protocols running on the device.
I've inherited a server running Ciscoworks LMS 4.0 to manage our plethora of switches. Running 'Configuration > Configuration Archive > Synchronization' against a Catalyst 3750 switch called switch1 successfully retrieved the Running, Startup, and VLAN configs.Running the same command the following day on switch1 failed and returned this in the job execution result:Unable to get results of job execution for device. Retry the job after increasing the job result wait time using the option:Admin > Collection Settings > Config > Config Job Timeout Settings I modified the job result wait time setting to be 600 seconds, tried again and received the same timeout failure. I have also seen this same Failed message on other devices, but have never actually received the configs for them, so I feel switch1 is a better place to start.What are the first things I should check in CiscoWorks for a problem like this? Is there a particular software revision I should be on with LMS 4.0? What timeout value should be used for Archive Synchronization?
In our organisation we have multiple Nexus 5000 switches, which Cisco LMS 4.2.2 cannot get the running-config and startup-config from with the Archive Management process. When it does try to get them, I get a error as follows:
*** Device Details for SF-DERA-01 *** Protocol ==> Unknown / Not Applicable Selected Protocols with order ==> TFTP,SSH,SCP
Iam using LMS 3.2. In short, there is 2 type of router, 2800series and 2900series. These device already join to TACACS server. When I try to sync archive I got:
- failed on 2900series - successful on 2800series
I have doing same config (credential, snmp, protocol for sync archive), for those device on ciscoworks but why I find the error??