I am a beginner, and my customer complaining about the internet connection performance which is very slow, the network description is given below:
Description:
The building has four floors and each floor has one mount rack which contains one 26 port switch + 16 port switch. and each floor has 32 pc as well.
- 4, Cisco SR2024 un managed switches.
- 4, Cisco SR2016 un managed switches.
- 1, Cisco access point for internet connection.
- 1, Active directory server.
- 1, Mail Server.
- Internet ADSL connection, 1 MB speed.
This is the current topology.
*Note:The links and cable type "100BASE-TX under Cat 5" among all switches.
*Note:Whenever I connect to the main router "Access point" the internet becomes very fast.
We currently support a third party VOIP software. Recently we have had issues with our T38 faxing to our SIP Trunk provider because our FW (sonicwall) doesn't support Nating the connection address within the SDP packet of the T.38 reinvite. This has caused us to look at alternate solutions. I have been in discussion with CISCO sales engineers and can't get a straight answer on which one of their products support this(RFC 3362, T.38 protocol used by our VOIP server)We were looking at replacing our sonicwall with an ASA but it seems it doesn't support RFC 3362 either . However, the sales engineer thinks that their regular routers will. So If I purchase a cisco router, i.e 8xx or 2621XM the question is where do I put it in my current topograpy. Currently we our at a Datacenter and our drop into our cabinet comes right into the Sonicwall and we have all NAT handled there, routing to different LAN ports on the Sonicwall. On LAN side all we have are standard switches supporting all of our Servers.
If I buy a Cisco router to handle my NAT issue for faxing.Do I put it on the WAN or LAN side of my FW?Do I setup the router to handle all of my NATing or just the NATing of my VOIP server that is having issues with the T.38? Would I need a Sonicwall FW if I purchased a CISCO 891?
We have Cisco 4507-R installed at customer site which got hang twice and became normal after getting booted.I have analyzed show tech-support for this switch after reboting but not found relevant logs for hang issue,
i have a simple router on a stick config which is providing dhcp to a customer SSID. however i don't want employees to stay on it and eat the band width since its open. the lease is set to an hour, is there anyway that i could set it so that once your lease expired it can't be renewed for 4 about 8 hours? I am using a cisco 2600 router in this setup.
since a couple of days I've a strange behavior in my Spanning-Tree Topology.Every time I plug in a new Switch ( e.g. WS-2960S ) a topology change on my root bridge occurs and all client losing connection to the default gateway.The root bridge is also the default gateway.
Nov 28 11:14:12.865: STP: VLAN0001 Topology Change rcvd on Gi4/48 VLAN0001 is executing the ieee compatible Spanning Tree protocol Bridge Identifier has priority 0, sysid 1, address 0019.aa37.e040 Configured hello time 2, max age 20, forward delay 15 We are the root of the spanning tree
our pair of Nexus 7000 are configured with RSTP.On the Edge-Switches we have seen an STP topology change in all connected vlans.On N7k the topology has also changed what we`ve only seen in the output of the stp details [code]
I like to configure a logging for topology changes, but i havn't found a command.
Is there an opportunity to get this logging-messages on n7k?
current topology is build from 4 6500 switches connected in a ring topology. Using Port channel (2x 10Gbit) links to connect left side top and bottom 6500's (DC1), 10 G bit link to connect right side 6500's (DC2) In between a 1 G bit link is used to connect top 6500's (DC1-DC2) and the same for bottom 6500's (DC1-DC2).
Path costs are 5 and 6 so the T5/4 from bottom right is blocking. Bandwidth demands are increasing, so thinking about adding extra 1 G bit links to the existing ones and create ether channels. Path costs here are 4 and 5, so T5/4 from bottom right is still blocking, but when the bottom 2 G bit port-channel is loosing one 1 G bit link the path costs of both directions become equal. So I am worried that STP will not re converge and leave me with a congested 1 G bit link. I cannot test this setup in a lab, are there any options for STP to re-converge here?
i have made a topology in packet tracer related to etherchannel configuration.i am using 2 3560 switches and 1 2950 switch. Now what i want is to bundle up the redundant links between these 3 switches. The links fa0/1-3 between 2950_1 and 3560_1 switches have been bundled up but when i try to bundle the links fa0/4-6 of 3560_1 to fa0/4-6 of 3560_2 it wont work. i am using channel-group 1 mode desirable between the 3560 switches. secondly if i want to assign ip to port channels then it has to be of same subnet between 2 3560 switches right and it must be same between 2950_1 and 3560_1. But these 2 subnets should be different from one another.
We are upgrading a customer network and have found that users of a particular application [which is very bursty/bandwidth hungry] have experienced a marked performance drop. I see lots of output drops on the interfaces. This is only happening on 2960S-48 the rest of the users on 2960PSTL [all PoE] are not having nearly as bad a time.I have tried various QoS configs with little success. I have seen on some other blogs that the 2960S has less buffers than the rest of the family.
Removing QoS or upping the users to 1Gb cures the performance problem.
My customer has an SR2016 device which has never really worked consistantly. They were assured that they would always be able to upgrade it to a comparable Cisco unit, if they wanted to. When I told them that the program appears to have ended they were very disappointed since the impression they got was that the upgrade did not have an expiration date. They are now ready to replace this unit with another manufacturers. Is this program still in affect and/or what can be done for this customer?
After some time LMS stops to refresh network topology (not changing colors for devices which lost/found). However, if I restart topology services devices are refreshed.
Checked the processes. Everything is fine but there is a process named "1018". But I did not found any job with this number.
i create a network topology ( i attached picture) and i don't know what exactly IP addresses should be assigned to routers and switches + there should be five VLAN's created and just one vlan (vlan 2) must see others vlans (for management purposes) and others vlans should not see each other. So i need that: 1) What IP addresses should be on routers and switches 2) How to create a 5 vlans, that they should not see each other, but one should see all, for example where i have to put "tagged" ports where "untagged" or "not member" ports etc.
i create a network topology ( i attached picture) and i don't know what exactly IP addresses should be assigned to routers and switches + there should be five VLAN's created and just one vlan (vlan 2) must see others vlans (for management purposes) and others vlans should not see each other. So i need that: 1) What IP addresses should be on routers and switches 2) How to create a 5 vlans, that they should not see each other, but one should see all, for example where i have to put "tagged" ports where "untagged" or "not member" ports etc.
how can i connect two offices in the same town.these two offices are separated by two kilometres.each office has ten rooms.how can i provide a secure intranet between the two offices ,what media can be used and hardware to provide a secure intranet via the two offices.
As we know when multiple PCs share same link"line" they will need multiple access protocol like CSMA/CD to protected from collision,,share link like "bus topology" need multiple access protocol "CSMA/CD" but in star topology"switch not hub" PC0 connect to port0 ,,PC1 connect to port1 PCn connect to portn then every PC connect to separate port ,, and the switch mange the network"by using MAC" then why we need to used CSMA/CD in star topology"switch"???
I have a problem where clients cannot roam between Cisco 1231g-e-k9 and recently installed cisco 1242g-e-k9 access points.. On looking at the CDP option on the 1231 and 1242 access points they are all aware of each other. However if I use the Network View option I see a different picture. All the 1231 access points can see each other but not see the 1242's. Network View on the1242 shows all the 1231's but none of the 1242's. The 1231 are running ver. 12.3(8)JEB and the 1242's are running ver. 12.4(21a)JA1.
I need to connect 4-6 laptops in a mesh network topology. What equipment do I need (switches, hubs cable etc..) and how should I create the connection?
How do you assign each customer to a vlan ? and what kit do you use at the core to roll out VLANS to each pop? We are thinking of using Juniper kit - putting customers on there own VLAN, and having a managed service like TR-069 on those VLANS.Is it do-able and what does everyone use for a TR-069 server - I've been looking on the net and havent had much joy in finding a server - or is it not as easy as I understand it to be.
I need two vpn tunnels from one ASA5510 to two customer endpoints but with the same host on the remote side, the two tunnels are for redundancy reasons. Can I just configure two tunnels with the same host on the remote side and assume the ASA will understand to just use one of the tunnels when both active or the one left when one is down? Or do I need extra configuration for that.
We have a new remote site for customer which only have 3G connection and to add more pain to that they have dynamic IP address.the easist possible solution was EZY VPN.....client has 2800 router with 3G and at our end we have ASA.....the issue is that , that always server (clients nehind) asa initiate connection to the remote site ie to 3G.....the rule of thumb is that whenever client(ie EZY VPN) will initiate conection the tunnel will establish.
I run a small coffee shop and want to offer free wifi to my customers while also having a secure network for my point of sale/internal network. What is the best way to do this on a limited budget? And what is the best way to protect the secure network?
I'm part way through trying to set a Catalyst 4510R to factory defaults, One thing I'm stumped on is how do i remove the Customer Disclaimer eg what commands do i need to remove this and any other customer text within the switch, below is copy of text from the switch with customers details omitted.
I have a Cisco 3750 switch stack and am performing QOS against a number of SVI vlans on per customer basis. I have 8 customers, each with a /29 public subnet and each with an SVI as a gateway within that /29 range. I then have a "routable" SVI vlan for routing upstream to the internet. [code]
The service policy attached to the interfaces above is supposed to perform policing on download and upload traffic. The service policy is attached to the Routable VLAN for download policing and the Customer VLAN for upload policing. For example, traffic entering the routable VLAN will be policed based on traffic matching an access list to the customers IP range (download). Traffic entering the customer VLAN will be policed based on traffic matching an access list from the customers IP range (upload).The command I am using to police is as follows - police 10485500 966080 exceed-action drop.The problem I am experiencing is traffic into the routable VLAN is being successfully policed down to the 10Mbps i have specified on a per customer basis (download).Traffic entering the customer VLAN is NOT being policed at all (upload).I am limited as to the use of the parent policy map I have specified on the interface, as I can only assign it in one direction (input).
one of my customer has CSACS & has bought CSACS-5-BASE-LIC, at the time of registration i ,had put the end customer as my company, how to change the end customer details on the license.
Had sent a mail to licenseing@cisco.com, they changed the end user details at there end, but the same is not reflecting on the physical box at the customer site.
I am looking for a simple First name, surname and email in exchange to unlimited free access to our wifi. Would want the data to load on to Infusionsoft?
We use a Flex7500 with local switching and centeral authentication. My question is can i use the Customer's radius server in order to authenticate? or should my WLC have IP conncetivity to any radius server im adding?I guess what i'm really asking is should my WLC know the radius server or does the request can go back to the AP and from there to customer radius on his subnet?
we've had an issue with our network, we have 2 6509 connected with redundancy, which are connected with 2 x 4900 Switches, from which are connected to a ESX Chassis for visualization, the thing is that the ESX stopped working, and the 4900 switches, and the main core were suffering from overload, they hang on it very well, in order to stop the overload, one of the links to the ESX Chassis were disconnected from one of the 4900 switches. The CPU usage from the 4900 and the core(6509) went down below 40%, and then they started to migrate the virtual servers from the chassis to another 2 chassis that were added right after. They were actually working well, but suddenly the 6509 changed to the other supervisor after everything was OK. We were wondering what could have been the cause of this, maybe the virtual servers migrations, maybe the overload from the ESX ? We also had a few question, is there any need to reload the cores every few months as a planned task ? Because the cores have been up for more than 1 year. And also is there any kind of of tool to monitor the CPU status, or the status overall from the cores or the switches ?
I am implementing a guest wireless network to work alongside my internal network. The guest network will use the existing switching network and will be separated by VLANs. I have the ASA set so that traffic can get to it and out to the Internet. I can set up a workstation on the same VLAN as my guest network and can route inside my network (strictly doing this for testing purposes). Where I am having problems is with the Catalyst 4506 switches and the ip routing. I had two separate "ip route" statements defined on my switches.
ip route 10.200.2.0 255.255.255.0 10.200.2.254 ip route 0.0.0.0 0.0.0.0 10.100.100.254
I have discovered that the traffic is always following the default route despite the fact that my IP address on my test workstation falls in the 10.200.2.x network. I was looking at documentation and found that it is possible to set up policy-based routing on the core switches. Can you have two "ip route" statements defined like this to segreate traffic or do I have to use PBR for routing (or a combination) in this case? If I define PBR then how does that impact my existing routing? I need to make sure that I can still route the existing traffic while I'm configuring this change.
I am trying to get my workstation to talk to a workstation on a different sub-net through a Cisco 3560 switch. The switch is running the following IOS version: [code]
My primary network is 172.16.0.0 and I am trying to connect to a device on a 192.168.111.0 sub-net. [code]
What would be the best way to get the two workstations talking via the switch?
i have an issue with the lms 4.2 Topology Data Collection. After installation the Topology Data Collection was running normaly, but since first server reload the Topo Data Collect under Inventory > Dashboards > Device Status > Collection Summary is "frozen".Is there any option to stop this process elsewhere? I cannot find anything under jobs in running state or so. Clicking on Schedule only give me the option to start data collection, but lms always returns that the process is running.
1)i have problem in LMS 4.2 , he shows most devices not connected to topology sitting lonly even though the have cdp enable , how to force these to join the topology
2)why some devices are shown unreachable , even though i can ping them from lms server and gets reply, also they have community and cdp configured
On a LMS 4.0.1 :I want to know what is the right way to change the telnet program on the campus mgr map (topology services map), when right-clicking a device icon and selecting telnet.I would like to use a tool of mine, and not to launch a telnet command from the IE browser.I changed the default telnet of Windows in the registry, but the program is still launched as a telnet URL in the browser and this is not what I would like to do.