I was working on adding a Cisco 6513 to TACACS but ran into trouble. While I work on the issue offline (recreate and test another switch), I wanted to place this switch on radius temporarily.
For some reason i cant undo/delete the AAA commands in order to point to my radius server. Below was done via console: [code]
I disabled my telemetry port on the Cisco 6513 as a precaution. The IOS im using is "s72033-advipservicesk9_wan-mz.122-33.SXI5.bin".how to remove the AAA authentication statement. Hope its not intrusive cause i have a customer on the box.
we have a chassis 6513-E and a module WS-X6748-GE-TX, I'd like to know if could I put this module in any slot, since the documentation from Cisco says that any slot from a chassis 6500-E Series can support this module. And then in the documentation of WS-X6748-GE-TX says that this module is not compatible in the slots 1-8 of the 6513 chassis, only from 9th to 13th slots, in those slots from the 6513-E we already have 4x WS-X6748-GE-TX, and we'd like to know if could we put the module in the rest of the slots. The 6513, and 6513-E is kind of confusing.
NTP server When I setup NTP server to take time from [URL] everything is working fine but as soon as I reset my router during boot I can see that router is first trying to get time before it's even connected to ATM and when it can't get time from NTP server it's removing NTP line from configuration (ntp server uk.pool.ntp.org source Dialer0 ). How I setup to wait with sync and do it once ATM connection is up and established? Or How to get IOS to leave this line and sync with NTP every 10 min)?
We have a stack of 3 cisco swithes 3750s WS-C3750G-24TS 12.2(25)SEB4 .We plan to recover a switch from the stack as it is not needed any more The switch we plan to recover is the existing Master.If we change the priority (switch 1 priority) and make another switch the master using command line will we have any loss of connectivity to the servers conecting to the stack ?
I have 2 x 3750's in a stack, switch 2 is the master. We only have 5 hosts in each switch so we decided to move all hosts into switch to and removed switch 1 as we need it elsewhere. Anyway all worked fine, but I wanted to tidy the config up as it was still provisioned so I removed the provisioning for switch 1 and the config was now showing ports 2/0/1 to 2/0/24, I then wanted to renumber switch 2 in the stack to 1 and saved the config to NVRAM and reloaded and then disaster the switch reloaded with it provisioned with 2 switches. Switch 1 was now the main switch with no config on ports 1/0/1 to 1/0/24, but the correct config was still on 2/0/1 to 2/0/24 so I just copied those ports over switch 1's ports and then removed the second switch and all was good, but I did this all wrong, what is the best way to un-provision a switch from a stack and change the master?
The more I think about it when the switch 1 member was removed should I of copied the port config from the switch 2 (master) first and overlaid it on ports 1/0/1 to 1/0/24, renumber then master form 2 to 1 then rebooted, then removed the 2 switch from the provision?
We have a live stack with 4 Cat 3750 switches of mixed varieties. Switch 1 crashed the other day and didn't come back up. A power reset brought the switch online again, and switch 2 is now running as the stack master. We are going to replace switch 1 in a staged approach to minimise client downtime. Switch 1 is a ws-c3750-48ts and we will be replacing it with a ws-c3750g-48ts. I will be pre-provisioning and installing the new switch into the stack as switch 5 and configuing the ports to be the same as switch 1. The cables will then be moved over from switch 1 to switch 5 so the changeover time should be minimal. When all cutover, I'll power down switch 1, reconfigure the stack cables and remove switch 1 from the stack.
My question is to what occurs next. If I perform a 'no switch 1 provision ws-c3750-48ts' will I be left with switch 2 through to 5 (ie no switch 1)? I can live with this moving forward. I know I can renumber switch 5 to be switch 1 if I want, but my understanding is that I have to reload the member switch which is something I'd like to avoid at this stage. In my reading, I saw the statement - "Note: You cannot use the switch current-stack-member-number renumber new-stack-member-number global configuration command on a provisioned switch. If you do, the command is rejected." I'm a bit confused by this statement, I'm assuming that it is saying that if I do as above but don't issue the 'no switch 1 provision' command, I cannot renumber switch 5 to switch 1 but as long as I use the 'no switch 1 provision' command first, I can renumber switch 5 to switch 1? Will all of my switch 5 port configuration information and any associated references (eg port-channel configuration etc) be changed from gi5/0/x to gi1/0/x if I do renumber?
Today i received FWSM from cisco (RMA), I need to configure it as standby unit for existing FWSM active/standby setup.
IOS on RMAed FWSM is 2.3.4 and cisco VSS supports FWSM IOS 4.0.4 and later.My issue is, I cannot access FWSM (IOS 2.3.4) via session command from cisco 6513 but could successfully consoled it without any problem. I have reloaded it twice and also tried to disable and enable power on it.
VSS#sh module switch 2 Switch Number: 2 Role: Virtual Switch Standby Mod Ports Card Type Model Serial No. --- ----- -------------------------------------- ------------------ ----------- 2 6 Firewall Module WS-SVC-FWM-1 -----------
why I cannot access FWSM through session command ?Whether this is because of older IOS ? If yes then how to upgrade its IOS ?Is it possible to upgrade IOS via FWSM console ? if yes, Do i need to test on different slot ?
I am a bit confused by the output of 'show run' and 'show run switch-profile' that pertains to a port-channel interface configured in a switch-profile. My main gaol is to find out how can I add/remove the allowed vlans the port-channel (configured as trunk) carries. The setup is like this. I have 2 N5k in vPC domain and Etherner1/11 on both switches is configured as trunk vPC that connects to a core switch. When I issue ‘show run’ for the port-channel and physical interface I get the following output. [code] From above it seems the switch-profile configuration is missing the 'switchport trunk allowed vlan' in the port-channel interface. If want I to remove vlan 30 from the allowed vlan, should I go under the switch-profile mode and remove vlan 30 from the allowed list even though the switch-profile configuration seems to be missing this.
Well I have been back and forth on this a while now...I have a 6513E chassis that is getting prepped for prod. I am currently testing sso functionality and I can only get it to work using the following images on both Sup Cards.
If I try any other image, smaller or bigger in size...it forces my Sup card in mod 8 to recycle " proxy request from peer ". I have tried K9 images and non K9 images. Here is an output from sh redundancy.
Redundant System Information : Available system up time = 4 minutes Switch overs system experienced = 0 Standby failures = 0 Last switchover reason = none [code]...
I just read the Removing and Installing CompactFlash Memory Cards in Cisco 2800 Series Routers instructions and there was nothing said regading powering down the router. Are these CompactFlash cards hot swappable??
I have a new 6513 with 2 sup32's with IOS. This chassis will replace a working 6513 with 2 sup2's with CatOS.I need to pull the running config from the CatOS chassis and make it work on the IOS chassis. i can do this manually but was wondering if there are any trade secrets on doing this.
I am replacing a faulty sup720 on a 6513. It s the backup/hot not the active sup. It has the same IOS on it. Is it correct that all I need to do is remove the faulty and replace it with the new sup and do a wr mem? Fromwat I have read their should be no down time all connectivity should remain stable?
I have a 6513 with redundant sup 720-3B's that I cannot get onto. In short, one of the power supplies failed, it still passes traffic but I can't console or ssh to the box. Other than the two sup 720's, I have a 4 port 10gig card, a 16 port GBIC Card and an IDS module. I have tried removing the 10Gig, IDS and one of the sup's but still don't get anything on the console. I have rebooted the entire chassis and don't get anything on my console while booting. I have tried changing the speed of my terminal to every setting available incase someone has changed it at some stage but to no avail. I have tried swapping sup's, using only one at a time in the chassis but not getting anything. Is there anything else I can try to get onto this chassis? The power supply is a 3000w with a 32amp input. The failed power supply had tripped a switch, when i brought it back up, the power supply came out but the output failed LED is on. My #questions are, is there anything else I can do to try get onto the console, and is the power supply goosed when the RED LED is lit? I have reseated the power supply also but the same result.
My question is regarding VSS configuration on Cisco 6513 switches. My understanding is that the hardware and software configuration on the devices must be exactly the same for the VSS to function correctly. Do the Bootstrap versions also have to be identical?
The production switch is running Bootstrap Version 12.2(17r)SX5, while the new switch is running Bootstrap Version 12.2(17r)SX7.
I have a need to capture some traffic but my core 6513's are already using the limit of 2 span sessions. I can't edit any of the sessions either because I want to source traffic from vlans and you can only do one or the other. Is using a VACL with 'switchport capture' on the destination interface an option ? E.g. I want to source traffic from vlan 10,20,30,40 and send the all to interface Gi10/10 ? Is there any caveats ? I dont need to be too granular with the ACL's but just capture all traffic in those vlans.
Need your expert input in sorting out the below problem.I have a cisco 6513 switch which is going into SP mode after a reboot whci i have done during BCP activity in my organization.Below are the log for your reference.
I am getting conflicting info about this, and need to get confirmations.Is the older 6513 (non E) model compatible with WS-X6407-10GE blade?The switch we're getting this for have WS-SUP720-3B, 6000W power supply, and WS-C6K-13SLT-FAN2.From what I read they are compatible if entered in slot 9-13, but I also heard that 10GE modules are not compatible with the non E chassis.
We have 2 6513's that are linked via 2 10 gig interfaces, using an LACP channel.I received an alert this aft stating that the far 6513 was unreachable and the port channel int PO3 had gone down, the 2 10 gig interfaces had also gone down on either side. 5 mins later PO3 had resestablished itself and has been fine since. [code]
We have a pair of 6513s and upgraded the IOS version to 12.2(33)SXI4a. After the upgrade we noticed VTP Pruning was disabled: [code] Is there any effect to production we need to to consider when re-enabling? (In other words, do we need to wait until a maintenance window to enable?)Also, we are using VTP v2 (and v1...) on our VTP Client 3560 access switches.
We have a Cisco 6513 Switch. During some parts of the day it is having large amounts of transmit discards on a certain interface because of the amount of data we are pushing. We have determined it is a link problem and not a problem with the switch. The link cannot handle the amount of packets the switch is pushing out. I was wondering if there is a way to create a buffer or a way to regulate the maximum amount of packets that can leave that interface without losing any packets?
I have just buy a 10G card for Cat 6513, these are information: PDCMSFC-1>sh module
Mod Ports Card Type Model Serial No. --- ----- -------------------------------------- ------------------ ----------- 2 16 SFM-capable 16 port 1000mb GBIC WS-X6516A-GBIC SAL08373Z37 7 2 Supervisor Engine 720 (Active) WS-SUP720-BASE SAD08330322
Mod Sub-Module Model Serial Hw Status --- --------------------------- ------------------ ------------ ------- ------- 7 Policy Feature Card 3 WS-F6K-PFC3A SAD083207AL 2.4 Ok 7 MSFC3 Daughterboard WS-SUP720 SAD0832037Y 2.3 Ok
About card: WS-X6716-10G-3C
When I install this card on Cat 6513, has a message: " fan tray no support"
We currently run 1 Cisco 6509 (CatOS) for our production network. It has multiple vlans which feed distribution switches on each floor in 2 buildings. Essentially each floor is its own vlan. Each floor switch is connected back to the 6509 via fiber connections. We also have several production vlans that our VMware and AIX environments connect to.
I would like to phase out the the 6509 and replace it with a new 6513 chassis, sup720's etc. Currently it is sitting next to the 6509 in the rack. I need to limit downtime as much as possible but can get one shutdown window over a weekend. However I dont think it would be enough time to move all of the existing etherconnections etc etc
So I am looking to run them both at the same time and slowly migrate over to the 6513 over the next few months.My solution was to use the 6513 (IOS) in L2 mode only for now and trunk it back to the 6509 via 4 1 gig connections in a LACP config.
So the 6509 would still be handling all of the L3 routing for now.Once I had moved all of the fiber and ethernet connections over to the 6513, I would use the shutdown weekend to configure the 6513 for L3 and essentially turn off the 6509 at that point.
My questions are - Is there a better way to do this ? - By trunking the 6513 to the 6509 do I need to worry about any loop issues ? - I am aware of the oversubscription issue for the port channel and have spread the 4 interfaces over the different groups of asics.
I am working on Multicast scenario, There is one 6513E switch one 2960 switch. Two VRF's are configured in core switch (6513) IPTV-SRV and Villa-VRF IPTV-SRV vrf has IPTV server and Villa-VRF has IPTV i.e. client.
V LAN 30 is mapped to IPTV-SRV vrf with subnet address 192.168.30.0/24 V LAN 12 is mapped to Villa-VRF with sub net address 192.168.12.0/24
I did the following configuration for VRF but its not working . i am not an expert in multicast design but seems i did most of the configs.
I am looking for any assistance with an issue I am having. Within my network, I have two Net App enclaves that replicate with each other. These hang off of separate switches, one at our primary site and one off of our secondary site, just a few miles away. I can replicate from the primary site to the secondary site at 8GB per minute. From the secondary site back to the primary site, however, the replication passes at about 17MB per minute.
The configuration is exactly the same on both ends. The primary Net App enclave hangs off of a 6513 switch and the secondary Net App enclave hangs off of a Nexus5000. Trace routes and pings all show correct paths and connectivity. I have troubleshoot this for a few days and I have been unable to figure out what is causing the replication issues. The fact that this is bi-directional traffic and I am having problems one way is really throwing me off. There are no ACLs or firewalls present between the two switches.
I have been getting the logs in my cisco 6513 switch [code] On further investigating in the module 9 which has a DFC card also , we found the source of this error whether it is a source of any upcoming potential impact or can be simply ignored
I just upgraded my power supply's from 2500Watts to 4000watts, however the show power still shows 2500watts.how do i make the 6513 recongize the change? I do have 250volts at 30 amps connected to each power supply.
system power redundancy mode = redundant system power total = 2331.00 Watts (55.50 Amps @ 42V) system power used = 1741.74 Watts (41.47 Amps @ 42V) system power available = 589.26 Watts (14.03 Amps @ 42V)
I have 2 x 6513 each with dual supervisor 720, and need to recover the enable password, is there a better method than removing one supervisor, disabling redundancy and performing password recovery on the single active supervisor module , before re-inserting the second supervisor and re-enabling SSO/RPR on the still active module.
I can not enable to rapid- protocol in catalyst 6513, does not support for it, only support pvst.
Someone how can i enable to rpvst? You know if is necessary to upgrade IOS, it has s72033_rp-ENTSERVICESK9_WAN-M - 12.2(18)SXF9 IOS. The cisco software Advisor could not localized the features fot this IOS.
Currently we have a 6513 core (running IOS and doing limited routing) with VLAN Trunking to about a dozen 3560 edge switches, with various VLANs going to each of the edge switches. All works well. We are downsizing and replacing the 6513 core with a 3750G stack. We have the stack up and running in the lab, and want to slowly (as we move floors) migrate all of the edge switching to the 3750 stack.
The plan is to connect the 3750 stack to the 6513, then slowly migrate the edge switches to the stack (from the 6513). I would like to put in place 4 x 1GB trunk links between the 6513 and the 3750 stack before I start moving edge switches to ensure adequate bandwidth. Once all of the edge switches are on the new 3750 stack, I will start to decommission the 6513.
What is the best way to configure the links between the cores (old 6513 and new 3750 stack)? I can easily get the edge switches configured to the 3750, but am worried about the core links. I really want to avoid having to perform an all-at-once cutover of the cores. Another question is when do I try and migrate the VTP server role from the 6513 to the 3750 stack? I could simply make everything transparent, and ditch server-based VTP, as we rarely change or creat VLANs.