Cisco Switching/Routing :: Cat6500 - Crypto Key Generate RSA Command Missing

Feb 10, 2013

I recently rebuilt the configuration of our Cat6500 multilayer device for use as a user stack. The device is funtioning as it should be, but I am unable to set SSH using the 'crypto key generate rsa' command. The crytop command isn't avaiable at all, which suggests a firmware issue.
 
I have configured a hostname and Ip domain-name and the image is the only one available.
 
The show version output is listed below.
show verCisco Internetwork Operating System SoftwareIOS (tm) s72033_rp Software (s72033_rp-IPSERVICES_WAN-VM), Version 12.2(18)SXF12, RELEASE SOFTWARE (fc2)Technical Support: [URL] Copyright (c) 1986-2007

[Code].....

View 2 Replies


ADVERTISEMENT

Cisco VPN :: 1941 Crypto Isakmp Policy Command Missing

Apr 19, 2011

I have been looking around and I can not find the " crypto isakmp policy " command on this Cisco Router 1941.  I just wanted to setup a regular IPSEC Lan to Lan tunnel and surprise, the command is not there.  Do I have the wrong IOS? I thought that a K9 image would do the trick. [code]

View 2 Replies View Related

Cisco Switching/Routing :: Radius Server Command Missing From Global Configuration Mode 4510R

Feb 22, 2013

I came across an interesting issue and thought I would see if anyone else has encountered it before contacting TAC.I have two Cisco Catalyst WS-4510R-E switches with a single Supervisor V module in each chassis.  Both Sup cards are now running 12.2(54) SG1; ipbasek9 firmware; yes, I plan to move both switches to 15 code but that's another story.  Anyways, prior to the upgrade the one switch was running 12.2 (33) code; I suspect the code was never upgraded; running ipbase non - K9 code.  The other switch was running 12.2(44) with K9 prior to upgrade to 12.2(54). 

View 2 Replies View Related

Cisco Switching/Routing :: Radius Server Command Missing From Global Configuration Mode 4510R-E

Apr 23, 2012

I have two Cisco Catalyst WS-4510R-E switches with a single Supervisor V module in each chassis.  Both Sup cards are now running 12.2(54) SG1; ipbasek9 firmware; yes, I plan to move both switches to 15 code but that's another story.  Anyways, prior to the upgrade the one switch was running 12.2 (33) code; I suspect the code was never upgraded; running ipbase non - K9 code.  The other switch was running 12.2(44) with K9 prior to upgrade to 12.2(54).  With the background set, one switch reports the following:SwitchA (config)#r?radius-server  redundancy regexp represourc rmon route-map router.

View 4 Replies View Related

Cisco Switching/Routing :: How To Clear Vty Line On Cat6500

Jun 19, 2012

how to clear vty line?  Please see below. A sh tcp <line number> shows that the TCB is waiting for TCP Process.  The TCP processs TCB is waiting for is SSH.  I believe because of this ssh process still running, the vty line cannot be cleared. 
 
sh users
   Line       User       Host(s)             Idle       Location
   1 vty 0     pf         10.10.20.8                                   9w1d 10.10.1.54
   2 vty 1     pf         10.10.1.16                                35w0d 10.10.1.54
   3 vty 2     pf         10.10.1.16                                 1y14w 10.10.1.54

[code].....

View 7 Replies View Related

Cisco Switching/Routing :: Meaning Of Crash Log Cat6500

Jan 1, 2012

What this crash means?  This is a 6509 with a single Sup720 Cisco IOS Software, s72033_rp Software (s72033_rp-ADVIPSERVICESK9_WAN-M), Version 12.2(33)SXI, RELEASE SOFTWARE (fc2)System returned to ROM by s/w reset at 04:42:07 PST8PDT Mon Jan 2 2012 (SP by bus error at PC 0x40C6681C, address 0x424B).

View 1 Replies View Related

Cisco Switching/Routing :: Upgrading IOS On Cat6500 Using ISSU

Jun 4, 2012

I am planning to upgrade my cat6500 using ISSU but can not find my doc to follow yet.

View 1 Replies View Related

Cisco Switching/Routing :: Cat6500 SUP-2T Service Module

Apr 12, 2012

Using the new SUP-2T, need to clarify one query. If we are using the new SUP-2T in VSS mode, will the new ASA service module and NAM-3 are supported?  From Cisco site, ASA module FAQ:
 
Q. Will the ASA Services Module support the Cisco Catalyst Virtual Switching System (VSS) at FCS?

A. Yes, depending on which supervisor you use. The ASA Services Module supports VSS either as a single firewall or as a failover pair of firewalls, when used with the Supervisor 720-10G (VS-S720-10G-3C and VS-S720-10G-3CXL). Transparent and multi- context modes also work with the VSS in this configuration. However, though the SUP 720-3B (WS-SUP720-3B and WS-SUP720-3BXL) is supported by the ASA Services Module, it is not capable of supporting the VSS. No reference to Supervisor-2T.

View 2 Replies View Related

Cisco Switching/Routing :: MAC Without Port Number Cat6500

Oct 30, 2012

We have IP device on the farm switch(cat6500, which is an access layer siwtch), with the gateway on the core switches (Nexus7000), on the core when I do show ip arp, I found the mac.But when I do sh mac add add of that mac there is no port attached to that mac.
 
Since that particular vlan only resides on the cat 6500 and two cores, so I logged in to the 6500, and when I show mac- in that vlan, I didn’t find that mac addresss. Instead, I found another mac address with last 8bit are the same of that mac.
 
Is it some kind VIP of the mac? How so, if no port, how can the switch forward the frame? [code]

View 1 Replies View Related

Cisco VPN :: C2921 / Setting ASA-Router VPN No Crypto Command Options

Jun 4, 2013

I am trying to set up vpn tunnel between ASA and router C2921 for site-to-site routing. This was described on many sites. However I do not have required option under crypto command.
 
g1c1router1(config)#crypto ?  key  Long term key operations  pki  Public Key components
 g1c1router1(config)#crypto
 
There are no crypto map etc options.
 
Some people suggested that I need crypto IOS. I have:

boot system flash:c2900-universalk9-mz.SPA.152-4.M3.bin 
license udi pid CISCO2921/K9 sn FGL171910C1
 
Do I have to generate some keys? How do I do it? crypto key generate ?

View 2 Replies View Related

Cisco Switching/Routing :: Check IOS Version On A Standby Sup On Cat6500?

Jan 11, 2012

I wonder whethere it is possible to check the the IOS version on the standby sup720 of a 6500? if yes, what command would you use?

View 5 Replies View Related

Cisco Switching/Routing :: How Many Span / Rspan Can Configure In Cat6500

Mar 16, 2011

i will be creating combination of SPAN and RSPAN on catalyst 6506 according to the link
 
[URL]
 
im planning to implement this on two 6506 switches will this work? or do i violate the number of monitor session? sorce span?
 
sw1
monitor session 1 source interface Fa5/18monitor session 1 destination interface Fa5/48
monitor session 2 source interface Fa6/34monitor session 2 destination interface

[Code].....

View 1 Replies View Related

Cisco Switching/Routing :: Ambiguous Error Message On Cat6500 VSS

Nov 15, 2012

I get a unclear log entry in a VSS system.

Me_Kr #1        ME_KR_ERROR_CNT_LTL_PARITY_ERR_ITRP_0_0[01C8] : INTR= 0001 MASK= 0001
Me_Kr #1        ME_KR_ERROR_CNT_LTL_PARITY_ERR_ITRP_0_0[01C8] : INTR= 0001 MASK= 0001
Me_Kr #1        ME_KR_ERROR_CNT_LTL_PARITY_ERR_ITRP_0_0[01C8] : INTR= 0001 MASK= 0001
Me_Kr #1        ME_KR_ERROR_CNT_LTL_PARITY_ERR_ITRP_0_0[01C8] : INTR= 0001 MASK= 0001

[code]....

View 1 Replies View Related

Cisco Switching/Routing :: IGMP And QoS On CAT6500 Platform With SUP720 Engine

Mar 27, 2013

I am having problems with IGMP and QoS on CAT6500 platform with SUP720 engine.The problem is, it seems that all IGMP packets are getting marked with DSCP 48 when sent out of the switch regardless of any input service policy. I found several articles saying that PFC QoS does not apply to IGMP packets. However in IOS 15 that should be possible, but I didn't get it to work there either. [code]

View 0 Replies View Related

Cisco Switching / Routing :: Catalyst4506-E - Unable To Generate Key For Ssh Access

Mar 13, 2012

I just find there is no "Crypto key generate" command line in my Catalyst4506-E with cat4500e-universal.SPA.03.01.01.SG.150-1.XO1.bin image. Is there any other command I can use to enable ssh access? this command is always able to use on other catalyst switch like 3750X.

View 4 Replies View Related

Cisco Switching/Routing :: Cat6500 / IPTV Multicast Network Devices High CPU Utilization?

Jan 30, 2013

i have a campus network with 2 core Cat6500 and multiple 4500 series distribution switches plus 2960 series access switches,we have deployed IPTV system in the network but currently 50 TVs are working through sattelite stream from streaming server Cisco's DCM 9900.we are planning to add more  300 TVs in the network and i am wondering that when all of them will be deployed then what will happen for switches cpu utilizations when all the Tvs will be running on the same time with different different channels.

View 1 Replies View Related

Cisco Switching/Routing :: CAT6500 / Duplicate Multicast Packets On A Span Session Port?

Apr 17, 2013

If I monitor a trunkport on the rootbridge in both directions  I get Duplicate Multicast Packets on the perticular VLAN.   The first guess is, that this is worked as designed and not a IOS Bug (Platform CAT6500 SUP720 IOS 12.2(33)SXI9 ) Until know I only found an old Cisco press link from 2002 with this subject.

View 2 Replies View Related

Cisco Switching/Routing :: 4503E Universal Crypto Image?

Apr 25, 2013

find what feature set is supported on this IOS S45EUK9-33-1511SG The client requires Layer 3 functionality so do i need to apply any license with it or it will perform  layer 3 routing (like rip, ospf, bgp, ipv6, ospfv3) ?

View 1 Replies View Related

Cisco Switching/Routing :: Nexus 5k / 5500 And 802.1AE - Layer 2 Crypto

May 4, 2011

There is very little and quite diverse Information regarding the if, where and how of a Nexus 5000 or 5500 series Switch and support for IEEE 802.1AE Link Layer Encryption (also called MACsec).
 
For example: the official FAQ denies that the Nexus 5500-series supports 802.1AE at all, while the data sheet says that only "downlink ports" are supported (host access).

On the Nexus 7000 platform the 802.1AE link layer encryption is part of TrustSec (feature cts) and much better documented.
 
The Question is: If and under which circumstances (configuration, L3 modules, license, NX/OS version) does a Nexus 5k or 5500 series Switch support 802.1AE on 1G or 10G interfaces that are directly connected to a Nexus 7000 (with the necessary cts feature licensed/configured)?

View 2 Replies View Related

Cisco WAN :: MLS QoS Map Command Missing On 2801

Oct 31, 2012

I am trying to run the following commands on a 2801 router, but the commands are missing:
 
mls qos
mls qos map cos-dscp 0 8 16 40 32 46 48 56
 
The only QoS command i have in global config is (no MLS qos) :
 
REMOTE-ROUTER1(config)#qos ?
restore-show-output  Restore old show output
shape-timer          Set the HQF shape timer interval
 
The router is running IOS:
 
System image file is "flash:c2801-ipbasek9-mz.151-4.M5.bin"
 
Am i just running the incorrect IOS or am i missing somehting, i need to change the QoS Map for my Nortel VoIP.  The VoIP phones connect to a 3750 PoE which used to conenct to a 2651XM to route VoIP and data traffic over the same copper pairs (WAN link to hub site) hence the need for a Service policy but being Nortel phones, require changing the cos-dscp map.  the 2801 is going to replace the 2651XM using a new HWIC.

View 4 Replies View Related

Cisco :: Missing IP Helper Address Command

Apr 6, 2012

I have a stack of 3750's running IOS 12.2(25). "IP forward-protocal" command is configured, but the IP helper command is just not an option to put on an interface. Any have any idea of why that could be?

View 2 Replies View Related

Cisco :: Missing Letters On Command Line

Mar 11, 2013

My 3550 is always 2 characters short on the command line. So my global configuration mode will look like this:Switch3550(config Say I wanted to enabled ftp, it would look like:Switch3550(config)# ftp enab.

View 2 Replies View Related

Cisco :: 3560 - Missing IPv6 Tunnel Command?

Sep 17, 2011

I've finally got my 3560 switch IPv6 capable (IP Services IOS), but I've stumbled upon something strange: I can configure a tunnel interface, but I can't put the tunnel in ipv6ip mode. The command is missing. I can choose GRE, IP in IP, and a bunch of other things, but no ipv6ip. I'm a bit desperate here and probably I am going to have to live with it, but just in case? I need the IPv6 tunnel for an uplink to a tunnel broker which only supports this type of tunnel, and I'm surprised this is missing.

View 4 Replies View Related

Cisco :: Missing Information On Sup 7L-E 10GE (show Command)

Oct 9, 2012

My customer has upgrade his 4506 from 6L-E to 7L-E 10GE.Ever since then if he run the command show dot1x interface gigabitEthernet  x/x details some information are not been displayed (below are missing information)Is this intensional or do I need to kick this to TAC?

View 1 Replies View Related

Cisco WAN :: ASR 1004 Bridge Group Command Missing

Jul 19, 2012

On the Cisco forums, an example is shown for how to  configure BVI and bridge-groups on an ASR1004 but the same command  (bridge-group) is not available under the interface on our ASR routers. We are running version of code: asr1000rp1-advipservicesk9.03.06.00.S.152-2.S.bin

View 1 Replies View Related

Cisco Wireless :: Missing Configuration Command In CLI (1140 AP)

Jun 16, 2012

I am trying to chang IP configuraton for my Cisco 1140 AP, but in CLI I dont have a "config" command (i used en before to enable administrative mode)
 
Bellow are the commands I can see:
 
AP7081.0506.d54a#?
Exec commands:
cd               Change current directory

[Code].....

View 5 Replies View Related

Cisco Wireless :: Aironet 1231G - Missing Channel Command?

Jun 14, 2011

I have two Aironet 1231Gs, that are both running the same version of fimware: Version 12.3(8)JEE
 
From the gui, I try and change the channel on the main radio interface--It works from one, and I get just a blank page on the other.  When I try and change it via the cli, I use the "channel" command in conf int mode, and it works one the one, but the other one, the "channel" command doesnt exist.

View 1 Replies View Related

Cisco WAN :: WS-C3560G-48TS / The Command Track Number Rtr Is Missing

Feb 21, 2012

I have a switch WS-C3560G-48TS.The version of IOS is:

WS-C3560G-48TS     12.2(58)SE2           C3560-IPSERVICESK9-M
  
The command "track number rtr" is missing. There are just three options there:
  
#track 10 ?
  interface  Select an interface to track
  ip         IP protocol
  list       Group objects in a list
 
Why is that so and where is rtr?I have the same switch with the following ios version:

WS-C3560G-24TS     12.2(50)SE1           C3560-IPSERVICESK9-M
 
rtr is present in there.

View 2 Replies View Related

Cisco VPN :: Missing Client Configuration Group Command - Old 2600 Router

May 9, 2012

I need to create a Cisco VPN Client connection: I am following the cisco vpn client link and I don't have the command crypto isakmep client configuration group XXXXX

[URL]

This is what I get: crypto isakmp client configuration ?  address-pool  Set network address for client

This is my show version, if there is an IOS that will work:

Cisco Internetwork Operating System Software
IOS (tm) C2600 Software (C2600-IK9S-M), Version 12.2(17a), RELEASE SOFTWARE (fc1)
Copyright (c) 1986-2003 by cisco Systems, Inc.

[Code].....

View 1 Replies View Related

Cisco Switching/Routing :: 3560 Download Not Available / Missing

Oct 11, 2012

I am currently doing an audit at a customer site, i.e. am checking if any IOS upgrades are needed. I have found that alot of IOS versions that the customer is running are not available in the Cisco Software Download area anymore. Taking IOS 12.2(44)SE2 for the 3560 for example: some earlier and later versions are available as downloads, but this exact version is not. It also is not listed as a deferred version.What is Cisco telling us with this exactly? Are these "missing" versions not supported anymore i.e. is an upgrade to a supported version adviseable?

View 2 Replies View Related

Cisco Switching/Routing :: 867VAE-K9 Is Missing OSPF?

Dec 12, 2012

I have a 867VAE-K9. On feature navigator it is listed as supporting OSPF. However when I go into config mode and type "router ?" BGP is there, but OSPF is not. Also, under my tunnel interfaces there is no support for any OSPF commands such as "ip ospf cost" etc. I'm in the process of raising a TAC. I have tried five or six different versions of IOS code that is available for this device, in each, we never see OSPF listed but sometimes see "router odr" or "router lisp"...

View 5 Replies View Related

Cisco Switching/Routing :: 2911 IP SLA Commands Missing?

Nov 13, 2011

I've got two routers, Cisco 2911's with 15.1(4)M1 on one and 15.0(1)M5 on another.
 
I'm trying to set up ip sla for vrrp tracking but the commands seem gimped?  I don't even have an option for ip sla <operation number>.  All I've got is ip sla responder/server/key-chain.

View 1 Replies View Related

Cisco Switching/Routing :: 6509 PBR Configured With Missing ACL

Apr 1, 2012

We have a working PBR route map on a 6509 switch and a 3750 switch, each in different locations.On both devices, the route-map is configured to match on one of multiple ACLs, then set the next hop to a directly-connected IP address, like so: [code]

When copying in the ACL contents for "ACL20", they were accidentally copied in to the ACL1 list, and ACL20 was never created. Shortly after this was done, the next hop router went unreachable in both locations. Pings failed and the 6509 and 3750 each lost the EIGRP adjacency to the 1.1.1.5 router. After troubleshooting, I removed "match ip address ACL20" and connectivity returned.
 
My question is...if a PBR route-map tries to match on a non-existent ACL, what happens? Does it mark the next hop unreachable (even though it's directly connected) or does it match for ALL traffic and send *everything* there (thus, making it appear unreachable, as if a broadcast storm was happening)?

View 5 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved