Cisco Switching/Routing :: ASR 1001 False Environmental Alert

Dec 18, 2011

I have a few new ASR 1001s throwing false environmental alerts.According to the logs, the inlet temp is in excess of 100 degrees C.When I telnet to the routers, they're well within tolerance (30-32C),Running 15.1(1)S and bug toolkit shows no related issues or caveats.

View 1 Replies


ADVERTISEMENT

Cisco :: 3845 Router - DFM 3.0.2 False Alert On E1 Controller

Jul 20, 2011

I have the following problem with DFM 3.0.2:
 
One of my customers has got a Cisco 3845 router with some E1 controllers in it. DFM sometimes generates an alert that says the controllers are flapping, meanwhile there is no syslog, or snmp-trap generated in the router itself. If the cables disconnected/connected, or a shut/no shut command was issued ont the interfaces, the router generates the syslog and snmp-trap as it is required.
 
So in a nutshell it seems that there is no flapping ont the controller, but for some reason DFM thinks that there was one.
 
I searched for bugs, but wasn't be able to find anything relevant neither in DFM, nor in the IOS itself (c3845-advsecurityk9-mz.124-24.T2.bin)

View 2 Replies View Related

Cisco VPN :: ASA 5505 - AnyConnect 3.1 Captive Portal False Alert Stops Users Connecting?

Dec 29, 2012

I am having problems with a customer's ASA 5505 with Anyconnect 3.1 - it is generating captive portal false-alerts which are stopping users from connecting. This issue began when I upgraded from Anyconnect 2.4 to 3.1, and it appears like this: A user downloads and installs the Anyconnect client and is able to connect fine, to begin with. However, once they reboot their computer and try to reconnect, the VPN session will not come up and they receive the error message below."The service provider in your current location is restricting access to the internet. You need to log on with the service provider before you can establish a VPN session. You can try this by visiting any website with your browser." 
 
Reading other posts, it seems this message appears when a captive portal is restricting internet access. It must be a false alert in this case as there is nothing of the sort here. Apparently, Anyconnect 3.1 can generate a false alert like so if the name of the firewall's SSL certificate doesn't match the CName listed on the Client Profile. I've set this up to match, to no avail. Although users can connect by reauthenticating through the SSL VPN login web page, I am stumped as to how to get rid of this captive portal error that pops up when they try to use the Anyconnect client.

View 4 Replies View Related

Cisco Switching/Routing :: CGS2520 Console Connection Triggers False Alarms?

Aug 13, 2012

Everytime the console port is plugged in, the alarm contacts (1-4) randomly assert (trigger) and then clear themselves in random orders. Nothing is plugged into the ALARM port and all Alarm setting are default. Below is the syslog message and Alarm Settings:
 
 CGS2520-C#show env allSYSTEM TEMPERATURE is OKSystem Temperature Value: 45 Degree CelsiusPOWER SUPPLY 1A TEMPERATURE is OKPOWER SUPPLY 1B TEMPERATURE is DisabledPOWER SUPPLY 1A Temperature Value: 49 Degree

[Code]......

View 3 Replies View Related

Cisco Switching/Routing :: Memory Status Alert Logs On Nexus 7K?

Mar 22, 2012

Below memory status alerts of are seen on our syslog server for Nexus 7K switch(Default VDC).
 
PLATFORM-2-MEMORY_ALERT_RECOVERED: Memory Status Alert : CRITICAL ALERT RECOVERED
PLATFORM-2-MEMORY_ALERT_RECOVERED: Memory Status Alert : MINOR ALERT RECOVERED
PLATFORM-2-MEMORY_ALERT_RECOVERED: Memory Status Alert : SEVERE ALERT RECOVERED
 
Memory threshold Not created on Nexus. Can we ignore this alert or does it impact our current network traffic?

View 5 Replies View Related

Cisco Switching/Routing :: Apply A QOS For Traffic LAN In ASR 1001?

Jan 31, 2013

i want to apply a QOS for my trafic LAN, in my ASR 1001 , the LAN is connected with ge0/0/0 interface and it configured with the service instance to bridge vlan 1 ( i do that for OTV ) i put  service policy in "service instance 1" to marking data with ef31  but i noticed that the class "plateform_datacenter" match the trafic and  the ACL associate to this class not mach any trafic trafic !
 
tha policy-map march trafic for Datacenter  :
 sh policy-map interface gigabitEthernet 0/0/0 service instance 1
GigabitEthernet0/0/0: EFP 1
Service-policy input: MARKING-OTV
Class-map: Platforme_DC (match-any) 

[code].....

View 9 Replies View Related

Cisco Switching/Routing :: ASR 1001 - Trace Route / HSRP / VRF

Mar 24, 2013

when i make a trace route on an ASR 1001 router to 172.23.30.7 I get the following output:
 
VRF info: (vrf in name/id, vrf out name/id)
  1 192.168.99.192 0 msec
    192.168.99.191 1 msec
    192.168.99.192 0 msec
  2 172.23.30.243 1 msec 1 msec 1 msec
  3 172.23.30.7 1 msec 1 msec 1 msec
 
Is there a loop between 192.168.99.191 and .192 (this are two routers with hsrp .190) or is this normal behavior when using trace route on an asr 1001?

View 2 Replies View Related

Cisco Switching/Routing :: ASR 1001 - IKE Phase 2 SA Expires Immediately

Dec 11, 2012

I am migration an IPsec site to site VPN config to a new ASR1001 router «facing» a Linux box (ipsec-tools + racoon). As the Debian Linux does not offer VTI, I am using a crypto map.
 
The working config is given below with the corresponding logs on the Linux side.
 
When I try to apply this previously working config to the ASR1001, I get the following error :
 
000855: *Dec 12 18:28:21.859 UTC: %ACE-3-TRANSERR: IOSXE-ESP(14): IKEA trans 0x1350; opcode 0x60; param 0x2EE; error 0x5; retry cnt 0
 
Dec 12 18:50:19 FAKE-AUCH-GW racoon: INFO: initiate new phase 1 negotiation: 194.214.196.2[500]<=>130.120.124.8[500]
Dec 12 18:50:19 FAKE-AUCH-GW racoon: INFO: begin Identity Protection mode.
Dec 12 18:50:19 FAKE-AUCH-GW racoon: INFO: received Vendor ID: CISCO-UNITY
Dec 12 18:50:19 FAKE-AUCH-GW racoon: INFO: received Vendor ID: DPD
Dec 12 18:50:19 FAKE-AUCH-GW racoon: INFO: received Vendor ID: draft-ietf-ipsra-isakmp-xauth-06.txt(code)

View 8 Replies View Related

Cisco Switching/Routing :: Deploy OTV Using ASR 1001 Between 2 Data-centers?

Apr 9, 2013

deploy OTV using ASR 1001 between 2 data-centers? We want to acquire HSRP localization there, but at this moment I can only see lots docs are saying how to do this on N7K, not ASR. I saw it has a FHRP filtering enabled by default when the OTV configuration is done, and also see there is a access-list created by default call otv_filter_fhrp, Im just wondering besides this IP ACL there should be MAC ACL applied?

View 3 Replies View Related

Cisco Switching/Routing :: ASR 1001 - Adding Redundant Power Supply?

Dec 23, 2012

I was wondering if I am able to add a redundant power supply to an asr 1001 router that is in production without losing connectivity or causing any diruption to the Users  - is it hotswappable?

View 1 Replies View Related

Cisco Switching/Routing :: ASR 1001 - Configure CoPP / Unwanted Traffic?

Oct 30, 2012

I'm configuring CoPP for an ASR 1001 router with consolidated IOS XE Version: 03.07.01.S.  And I'm trying to use 'DROP' command under policy map to drop.un wanted traffic. But the drop command is not listed.

[code]...

View 6 Replies View Related

Cisco Switching/Routing :: ASR 1001 - License Required To Create IPSec Tunnel?

Oct 26, 2011

what license do I need to create a IPSEC tunnel? I have an ASR 1001, running? [code]

View 2 Replies View Related

Cisco Application :: ANM 5.2.1 Device Down False Alarms?

Jan 5, 2013

Facing false alarm issues with ANM 5.2.1. Basically ANM is sending device down (ACE-30 module) messages occasionally, but in real the device has never went down.
 
Message:
 
ANM Server Host Name        : anm-1
ANM Server IP Address        : 10.9.20.1
Device ID                              : AGG-B:3
Component Name                  : AGG-B:3
Severity                               : info

[code]....

View 7 Replies View Related

Cisco :: C2900 False And Delayed SNMP Cold Start Traps

May 31, 2012

I am seeing SNMP coldstart traps that either are delayed by many hours or are false (e.g. right after receiving the coldstart trap a query to sysUptime shows the nodes been up for days).I seen this twice this week in a new network environment for me for two different C2900s running C2900-UNIVERSALK9-M Version 15.0(1)M3 Assuming the coldstart traps are coming from the actual source nodes,   I am curious what could be going on here.
 
1) One guess I have is possibly the  system clock changed could cause the SNMP agent to send a false cold start trap. Then my guess is in the device log I should see a system time change syslog message.
 
2) I recall hearing once that syslog and possible traps messages are held in configurable buffer who default value is 1 and if not sent are held and then suffer a delayed sent.  Is it true for both traps and syslog ? In the past I assumed this was simply the logging history buffer  and applicable to syslog traps only.  My assumption in the past was that last trap or last syslog message is sometimes held on reload and sent immediately after restart regardless of device connectivity to the management target.  
 
I always assumed coldstart traps are never delayed for any reason and that they were pretty accurate substitutes  for system reload syslog messages. Does anyknow know any reason for false or delayed coldstart traps on a C2900  with IOS 15.0(1) ?

View 1 Replies View Related

Cisco Application Networking :: ACE 4710 SNMP False Linkup / Down Trap Notification?

Feb 6, 2013

We have two ACE4710 in a failover configuration with Software version A4(2.0). SNMP is setup and the receiver is able to receive SNMP traps.The issue is we are receiving a linkDown trap notification at least once every other day, followed shortly by a linkUp notification a minute later. We have checked all layer 2 devices connected to the ACE and cannot see any evidence that any link actually disconnected. We experienced no traffic lost, but this could be because a couple of the ACE links are bundled. The trap notification does not actually indicate which interface changed status. All links are Gigabits, and there are no packet drops either on the ACE or the layer 2 switch.

View 3 Replies View Related

Linksys Wireless Adapters :: AE3000 USB Adapter – False Network Detection?

Apr 17, 2013

I recently purchased a Linksys AE3000 Dual-Band Wireless-N USB Adapter as an upgrade to my Dell Desktop Computer and to compliment the Linksys EA4500 Router that I recently installed. Generally it seems to work well and the 2.4 GHz network status typically shows speed to be 450 Mbps. However, I’ve discovered if the computer goes to sleep based on my power plan, when it comes out of sleep the “Available Networks” will show the network I’m connected to (2.4 GHz network) and a false network identified as “Other Network” with a Red “X” where signal strength would normally be. When I mouse over it; it shows Network Name: Other Network; Signal Strength: Excellent; Security Type: Unsecured; Radio Type: Unknown; and SSID: Other Network.
 
Initially I thought this was an anomaly caused by having both bands of the Router (2.4 and 5.0 GHz) set to the same SSID, so I changed the 5.0 GHz band to a different SSID and set my Media Players to access the new SSID. However, now when the computer comes out of sleep mode, Available Networks will initially only show the Router’s 2.4 GHz SSID and the phantom “Other Network”. It takes a while before the Router’s 5.0 GHz SSID shows up. We live in the country, so there are no other networks close to us, just my home network. It never shows the “Other Network” when I start or restart the computer and if I disable the adapter and then enable it, the phantom network goes away until the computer goes into and out of sleep mode again. Also, I uninstalled and then reinstalled the Driver and then reinstalled the Adapter using the Cisco Connect Software and the problem still exists. Finally, I disabled the Router’s 5.0 GHz network and the phantom network no longer appears under any conditions. The Dell (Atheros Communications) Wireless Card in the computer doesn’t have this issue under any scenario. On both the AE3000 and Atheros Adapters the 2.4 GHz network shows a signal strength of Excellent (5 out of 5 bars) and the 5 GHz network shows Good (3 out of 5 bars).
 
How to correct this issue? With the issues I’m having with the EA4500 and the AE3000; they are both probably going back to Amazon.

View 2 Replies View Related

Linksys Wireless Router :: Weird WRT54G2 Errors False Disconnects

Nov 24, 2011

I am directly plugged into the router on my computer, and it is used wireless for the rest of the computers in the house.  Frequently (3-4 times a day usually, sometimes more like every 20 mins, other days not at all), the router and Network Magic will tell me my computer has lost internet connection, and browsers and any program I try to start won't be able to connect to the internet.  However, I know the connection is still live because any program that was running and accessing the internet beforehand (multi player games and instant messaging programs, for example) still run fine with their connection and I can continue to play or chat online until I close that program.  
 
Trying the 'Repair Connection' on network magic doesn't work, but unplugging and replugging the power cable to the router fixes the issue(again, so I know it's the router and not the internet)whatever reason the router is deciding to tell me it's not active and refuse access to the internet for new programs when existing connections don't show any problems.

View 3 Replies View Related

To Get Security Alert From Cisco

Apr 10, 2012

I would like to receive Cisco's email alert for bugs, security vulnerability, etc. if there is such service.

View 3 Replies View Related

Cisco :: Getting Alert In WCS 7.0.172.0 - DoS / CTS Flood

Dec 12, 2011

I have WCS 7.0.172.0 where as i have very frequent alert about DoS : CTS flood In channel 60, the system has detected 212 CTS frames in the last minute, which matches the traffic pattern of the form of denial-of-service attack, CTS (Clear-To-Send) attack. A wireless denial-of-service attacker may suspend the wireless media for communication by taking advantage of the privilege of CTS frame to reserve RF medium for transmission. By transmitting back to back CTS frames, an attacker can force other wireless devices sharing the RF medium to hold back its transmission until the attacker stops transmitting the CTS frames. The system detects the abuse of CTS frames for denial-of-service attack.  

View 2 Replies View Related

Cisco :: Lms 4.2 Interface Down Alert

May 5, 2012

I receive email when an interface comes  down but because i have a lot of routers with a lot of interfaces i can' tell which one came down , is there any way to include the description under the interface in the email ?
 
Also can i monitor  the existence/not of specific  route in the routing table and receive email ?

View 2 Replies View Related

Cisco :: LMS 4.2 Critical Alert In Email?

Jan 31, 2013

I have an issue with my lms 4.2 installation.I have created a fault notication group which sends me an email when an alert is active on a device.Some of the devices are deleted from the inventory, but when I restart my deamon manager. I receive alerts for all the devices I have deleted in the past.I get this email in my inbox.When I check "Monitor - SNMP traps - fault notification group" I can't see any of the devices for which I receive the email alert? 
 
EVENT ID                = 00024PS
TIME                    = Fri 01-Feb-2013 11:03:59 CET
STATUS                  = Active
SEVERITY                = Critical
MANAGED OBJECT          = switch
MANAGED OBJECT TYPE     = Switches and Hubs

[code]....

View 2 Replies View Related

Cisco :: SCE1010 Alert Not Enough Disk Space

Apr 14, 2013

My SCE1010 show the alert "Not enough disk space" in log.I find old discuss , someone say can delete the file: /tffs0/SYSTEM/PREVDBG.TXT , because the file is too big.But I don't confirm  delete the file will not effect system work fine. [code]

View 8 Replies View Related

Cisco Wireless :: WAP321 - Email Alert Blank

Mar 27, 2013

I have a WAP321 here, which is running at firmware version 1.0.3.4. The E-Mail Alert setup works for me, meaing I receive notification E-Mails from the Access Point. I am wondering however, why those E-Mails are blank, meaning, I only receive header information (to, from, date, subject) but no body content. I was expecting to receive the error message as content of the E-Mail Alert.

View 5 Replies View Related

Cisco Firewall :: Does ASA 5500 Have Email Alert Function

Oct 7, 2012

If asa finds the abnormal behavior, can set up and send email to administrative mailbox?

View 6 Replies View Related

Cisco Firewall :: ASA 5520 Email Alert Configuration

Apr 26, 2010

I am trying to setup email alert on our ASA 5520 so that i can receive emails to my exchange account below is the configuration [code] The smtp server is in our internal network.first i am not able to ping 172.17.1.12 as ping is blocked.i did this confgi like two days before..but ca see alerts and error messages through asdm but no mail is  coming in.

View 5 Replies View Related

Cisco :: LMS 4.1 Email Alert When Stack / Switch Not Responding

Oct 31, 2012

With LMS 4.1.How do i create an Email alert when stack/switch become non responsive?

View 1 Replies View Related

Cisco WAN :: QoS With ASR 1001

Apr 15, 2013

I've an ASR1001 with 15.1(2)S code on it connected to out ISP, we've been get some complaints about performance and I'm seeing drop on the output policy. Checking the bandwidth consumption we have plenty spare when drops are occuring, there's 300Mb/s.  Details below, any suggestions gratefully received
 
The policy is to guarantee the following bandwidth:
Outbound policy:
class 1 => 50% guaranteed
class 2 => 8% guaranteed
class 3 => 1% guaranteed
class 4 => 5% guaranteed
class 5 => 1% guaranteed
class 6 => 5% guaranteed
class  => 7% guaranteed
class 8 => 7% guaranteed
class default => not configured
 
config :
 
policy-map priority
class 1
priority percent 50
class 2
priority percent 8
class 3
priority percent 1
class 4(code)

View 9 Replies View Related

Need Software To Get Alert If User Installing Any Program

Mar 3, 2011

Is there a software out there, that will send me an alert when a user is installing a program on there computer? Whether is sends me an email or a text, really dont care. I have a guy in one of our remote locations that likes to install his own IT Tools on everyone's computer and i need to know when he is doing this.

View 1 Replies View Related

Limited Or No Connectivity Alert When Connected Through Router?

Feb 18, 2013

I connected my desktop with n300netgear -router. It was working fine until I reset it.After that I am facing this problem of not able to access internet. It shows limited or no no connectivity. But when I plug the internet cable directly to my desktop its working fine. When I connect it via router.

C:Documents and Settings
agaraj>ipconfig /all

Windows IP Configuration[code].....

View 7 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.3 - Active Sessions Are Over Limit Email Alert

Aug 19, 2012

I have recently enabled the SMTP alert function in ACS 5.3. It seems to work well for most of the alerts. One thing though, the active sessions are over limit warning that comes up every so often. I know it is not impacting operations and it is ACS's way of clearing out sessions that had no accounting stop, but how do I disable this alert from being sent by e-mail from ACS 5.3?

View 3 Replies View Related

Cisco WAN :: Does ASR 1001 With IP Base Support BGP

May 15, 2012

I just would like to confirm if the ASR 1001 with IP Base license can support the normal BGP features such as remote-peering IPV4, Local-AS.
 
I am not looking for advanced features such as Route Reflectors, VPLS, L2 VPN, etc.

View 1 Replies View Related

Cisco WAN :: ASR 1001 Console Locking Up

Dec 29, 2012

i have 1001 ASR which boots up ok but shows a warning "filesystem is not clean" and thereafter the image is validated well, it shows up the following two messages and just goes idle from there. [code]

View 6 Replies View Related

Cisco WAN :: ASR 1001 IPBASE Will Support BGP

Feb 20, 2011

We are going to purchase ASR 1001 with ipbase, BGP is our basic requirment if we purchase ipbase(SLASR1-IPB) it will support BGP.

ProductDescriptionASR1001Cisco ASR1001 System,Crypto, 4 built-in GE, Dual P/SASR1001-PWR-ACCisco ASR1001 AC Power SupplyCAB-IND-RAPower Cord India, Right AngleSASR1001UK9-32SCisco ASR 1001 IOS XE - ENCRYPTION UNIVERSALSLASR1-IPBCisco ASR 1000 IP BASE LicenseM-ASR1K-1001-4GBCisco ASR1001 4GB DRAM

View 3 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved