Cisco VPN :: 1921 Transmitting Of VoIP Traffic Through VPN

May 30, 2011

I am facing a problem with transmitting of VoIP traffic through VPN.
I have a 1921 router in my end where two ISP's terminate and load balancing is done over the ISP'S. I also have a site-to-site IPSEC VPN connection to remote location. Also I am having to analog phones connected to the network through an ATA. My Call manager is in the peer end and has public IP assigned to it. The IP phones get registered when coonected to general inernet connection.
The loadbalancing and VPN is working fine. Now I need to transmit the VoIP traffic over the VPN. I have configured the same but seems not working. [code]

View 5 Replies


Cisco WAN :: SIP And VoIP Priority On 1921

Oct 25, 2012

I am fairly new to Cisco, but am trying to configure a 1921 router to give higher priority to SIP/VoIP traffic (Port 5060) than everything else.The connection is only 4Mb and is getting hit hard by video streaming, I don't want to block this, just make a lower priority.Any ideas where I am going wrong?My current config is as below.The IP addresses have been changed for security reasons, but in reality are both in the same range, i.e. are both external IPs, so I am not sure if this is causing the problem.  Do I need NAT for QoS to work?

View 6 Replies View Related

Cisco :: Splitting Up VOIP Traffic?

Jun 26, 2012

I have a little weird request at work. One of our offices would like to split the VOIP traffic. At that office we have a 10MB primary and 3MB backup circuit. Currently the phones are routing over the 10MB circuit. The General Manager would like to use the 3MB backup circuit for VOIP traffic. For the 3MB we have two T1 lines bundled together in a multilink. Configuration is bellow if needed

3MB Circuit

View 19 Replies View Related

Cisco VPN :: 5505 VoIP Over VPN Traffic

Sep 26, 2012

I am tasked to connect my VoIP phones from remote site to my  corp site. Basically all remote phones will be registering into a VoIP server in corp site. I have a site to site  vpn tunnel established already from remote site to corp site. My hardware includes the following:

-Cisco ASA 5505
-Cisco small business POE switch SF300 24p
-Avaya 2015p VoIP phones
Successfully Register remote VoIP phones to corporate VoIP server have already configured vlan1 lan) and vlan2 public int(outside Internet) which my dmz only allows 2 per my basic asa licensing.When I connect my phones and register it states "subnet conflict" unable to register.

View 1 Replies View Related

Cisco WAN :: Traffic Going Across The Router Is UDP 1921

Feb 23, 2011

I'm attempting to set up a Cisco 1921 router running IOS15, and am having trouble with the NAT - it might be that what I am attempting is not possible. The only traffic going across the router is UDP, and the outside of the network canot be changed.

View 1 Replies View Related

Cisco WAN :: 1921 Won't Pass Traffic?

Jul 9, 2011

I can telnet to the router and ping places on the inside and outside. However when I connect a laptop to the inside interface I can ping to the outside for a bit but can't open a web page and then connectivity is gone all together. At first I thought it was a NAT issue but I know I am good on that front. I have attempted to change the speeds and duplex settings on the outside interface but it does not seem to work. Again if I take the cable from the outside interface and plug it into a laptop it works fine. The thing that makes me wonder is why can I connect to the outside interface and configure it just fine?

View 4 Replies View Related

Cisco Firewall :: ASA 5510 / QOS For VOIP Traffic To And From Internet

Apr 20, 2011

We are using an ASA 5510 as our gateway to our ISP.  All of our VOIP traffic is sent to an Internet SIP provider for our outbound calls.  Our pipe to the Internet is 100Mbps metro ethernet.  I am trying to find a way to provide QoS for this traffic so that I can reserve 20Mbps of the available 100Mbps pipe for VOIP traffic.From what I've been able to figure out so far I would use a combination of priority queues and traffic policing.  However, it seems that this is nearly impossible to accomplish because I cannot control the remote device that my ASA connects to because it is the ISP device.  I could police traffic on the inside interface of the ASA.  However, lets say that a client on our network starts downloading from an Internet host and the downloaded traffic saturates my Internet connection.  I could police this incoming (from the Internet) traffic on my outside interface of the firewall.  This would drop the packets but the bandwidth would have already been used by the time it reaches my firewall.Would the fact that I'm policing incoming traffic on my outside interface cause the sender to throttle down their transmit rate because packets are being dropped?  Would this achieve my goal of guaranteeing available bandwidth for my VOIP traffic by not allowing other traffic to saturate the link?Most documents I find regarding this topic describe providing QoS for VOIP traffic traversing a VPN connection in which case you could configure both end devices.

View 1 Replies View Related

Cisco Switches :: SF300 24p And VLan For VoIP Traffic?

Jan 2, 2012

I have a SF300 24 P and Iam trying to configure a voice vlan this is what I have done so far and it doesnt work.
1. create vlan 30 for voice traffic and enable it

2. Telephony OUI add my mac address for allworx phones

3. Port to VLAN add 30 has tagged, port to vlan 1 untagged

4. Vlan to port I try to add 30 and get this error (Port e15 is candidate in voice Vlan 30 and cant be configured as static member in the vlan.

5. Under Discovery LLDP, LLDP MED port  Setting Enable MED status, then all other options to yes
In my LLDP neighbor  information all my phones are there and says under port ID 0 ( my phones support LLDP and CDP)

View 1 Replies View Related

Cisco WAN :: 1921 Router Won't Route LAN To WAN Traffic

Feb 18, 2012

The router passes the Interface test for the WAN port in CCP but it still we cannot access the internet.  Here is my configuration:
Building configuration... 
Current configuration : 3663 bytes
! Last configuration change at 09:29:52 Chicago Mon Feb 20 2012 by fbcpekin
version 15.1


View 5 Replies View Related

Cisco Switching/Routing :: 2960 - VOIP Traffic Prioritization

Dec 28, 2011

I have a new VOIP implementation using 2960 switches. I want to prioritize voice traffic. After creating VLAN 2 I did the following:

Per Cisco, I did the following on my up-link ports:

switch port trunk allowed vlan 1,2
switch port mode trunk
switch port nonegotiate
priority-queue out
mls qos trust cos
switchport trunk allowed vlan 1,2
switchport mode trunk
switchport nonegotiate
priority-queue out
mls qos trust cos
spanning-tree port fast trunk
spanning-tree bpduguard enable
On my ports where a VOIP phone was plugged in, I did the following:
switch port trunk allowed v lan 1,2switchport mode trunk switch port no negotiate priority-queue outmls qos trust cos spanning-tree port fast trunk spanning-tree bpduguard enable
How can I verify that my voice traffic is being prioritized?

View 5 Replies View Related

Cisco Switching/Routing :: QOS For VOIP Traffic On Nexus 7000

Mar 4, 2012

regarding QOS on Nexus 7000. Our Nexus 7000's form a collapsed distribution/core layer, our access layer switches are are a mixture of Cisco 3750 & Cisco 4507. 3750 switches will connect to Nexus switches via 1Gb uplink, 4507 switches will connect via 10Gb uplinks. Each Nexus will be connected via 20Gb port channel, all servers connect to the Nexus switches via 1Gb links. We're implementing a new telephone system soon which will be using VOIP so I need to configure the switches to perform QOS. The IP phones will mark the RTP traffic with DSCP value EF and call signaling traffic CS3. I'm fine configuring qos on the access layer switches, its just the Nexus switches which I'm not sure about.
Do I actually need to configure any QOS parameters on the Nexus switches so they will prioritise the VOIP traffic. If my understanding  the Nexus switches will trust the DSCP values and assign the traffic to the relevent queues?
Just for information VOIP is the only traffic I will be marking QOS values

View 3 Replies View Related

Zyxel USG50 / How To Best Allow For Unfettered VOIP Traffic Behind A Security Firewall

Mar 12, 2013

I have a customer who has a Zyxel USG50 security firewall on their network. They utilize a cloud hosted voip solution called Vocalocity that provides SIP voip service to their Cisco phones. They have about 8 phones in a small office.the problem they are having is that as it stands now, all VOIP phones in the office are dynamically assigned addresses internally. However, the VOIP phones are having a ton of issues that we believe may be related to the firewall blocking traffic somehow or not playing nicely with the service.

- Some calls are dropped altogether
- Some calls do not ring all phones
- Some phones keep ringing even after a call is picked up

While Vocalocity has admitted that they have the "ghost ringing" issue going on with other customers, the dropped calls and not all phones ringing could be firewall related. We are trying to pinpoint what may be going on.i did open up all of the ports that the VOIP provider claims are used by their service, 5060-5090. However, some 5060 packets still seem like they are being blocked in the firewall logs.How does everyone else out there setup their VOIP phones internally to have unfettered access to the internet? Do you recommend just using the DMZ functionality (which I can do on this USG device) or bypassing the firewall altogether somehow? We have some spare switches and another home level Netgear router we can use for testing.

View 8 Replies View Related

Cisco Switching/Routing :: Firewall On 1921 K9 Blocking UDP Traffic?

Apr 18, 2012

I have a 1921 K9 with a 4 port 10/100/1000 EHWIC switch.

Interface 0/1 =
I have Active Directory setup on the network. When I attempt to join the domain from it joins but I get errors. After some troubleshooting using portqry I have found that the services related to class map DomainTrafficUDP are being reported by portqry as being filtered regardless of policy map settings (currently set to allow).
Building configuration... 
Current configuration : 18833 bytes
! Last configuration change at 11:20:25 NewYork Thu Apr 19 2012 by dave
! NVRAM config last updated at 13:56:45 NewYork Wed Apr 18 2012 by dave


View 2 Replies View Related

Cisco WAN :: 1921 - Traffic Control / Packet Priority And Bandwidth Limit

Nov 29, 2011

We have 3 sets of applications. The first does not require much bandwidth but is very critical, the other two is more bandwidth consuming but less critical. I would like to know if it's possible to reflect this priorities on the router configuration. Is it possible to set the ports 10000, 10001 and 10002 of the external IP have higher priority to be handled, for example? Also, is it possible to limit the bandwidth that goes through a set of ports?
I must prevent the 2 sets of less critical applications to strugle the critical ones. What router can provide this capabilities? Is the 1921 able to do this job?

View 2 Replies View Related

Cisco WAN :: 1921 Traffic Shaping Feature Is Not Supported In User Defined Class

Oct 29, 2011

I make qos on VPN Tunnel, but i make command service-policy output name, it show the error below Traffic Shaping feature is not supported in user defined class of parent level policy.My cisco router 1921, IOS : c1900-universalk9-mz.SPA.150-1.M5.bin

View 1 Replies View Related

Cisco Switching/Routing :: IP SLA Support On 1921/K9 Or 1921-SEC/K9?

Oct 5, 2012

We want to puchase new Cisco ISR 1921/K9 .   i want to know does it support the following sample IP-SLA commands
ip sla 2icmp-echo 500frequency 1ip sla schedule 2 life forever start-time now
track 10 rtr 1 reachability
delay down 1 up 1
track 20 rtr 2 reachability
delay down 1 up 1 
ip route track 10ip route track 20
Im asking above question because we will need to enable ip-sla  on  the mentioned router.   as i read on the cisco webside, it says Cisco-ISR-1921/K9-IP Base  support only  IP-SLA RESPONDER  feature nothing else. If  Cisco-921/K9  does not support the above commands , should i go for ordering Cisco-1921-SEC/K9 ? 

View 4 Replies View Related

Cisco :: WLC 4440 Aironets Transmitting Rogues

Aug 7, 2011

I am new to the wireless side of Cisco.
My current network has a Cisco WLC 4440 with a number of Aironets connected. I noticed that it says there are about 90% of my APs are rogues. closer investigation in the Rogue APs page shows SSIDs of a few businesses around. When i click on the mac address i see that the rogue is not on the wire but i have a number of APs dectecting each rogue.
Now the question is are my waps transmitting or repeating these rogues? If so how can i prevent it without sending a deauth to their wap which is not part of the good neighbour policy ( as i understand it)?
Not sure if this is part of the same question above too, but i do have a rogue client on an SSID that is not mine but shows up on my AP, what is legally right for me to do to prevent use of my network devices by the external client?

View 4 Replies View Related

Cisco Wireless :: Maximum Possible Transmitting Power In 1242AG-E-K9

Feb 28, 2013

My question is about the maximum possible transmitting power in a Cisco 1242AG-E-K9.I did an update of my AP on a new ios version and since then, the maximum power for me is limited to 17 dbm. I check this within the console and the "show controllers dot11radio0 | include Power:" command. I thought that I had 20dbm before the update, but unfortunately I can't proof this by myself because I have no AP left with the old firmware.
Is it possible that the upgrade did this? I read about the regulatory domains for the transmitting power. I live in Switzerland, so I thought I could use 100mW if I want to. I read it's not possible to use the 100mW at each speed but I think I should stull be able to select the 20dbm/100mW or am I missing something?

View 3 Replies View Related

Cisco Switches :: SG300-28P GBIC Port Not Transmitting

Oct 10, 2012

The switch has been set to Level 3 Routing.  Port 27 has been in use as a Fiber Transceiver with no problems for several weeks. This week I tried connecting a second Fiber Transceiver to Port 28, and it would not work.
Swapped the physical GBIC modules in the ports, and the situation remained exactly the same: Port 27 works, Port 28 would not work.
Connected to the copper-part of the combo Port 28, it immediately connected and worked fine.
Connected an external Fiber Transceiver Box in place of the GBIC in Port 28, and it immediately connected and worked fine.
Swapped the new Fiber jumper (Port 28) with the existing Fiber jumper (Port 27), and the new connection came up immediately and worked fine.  The existing connection would not work when connected to Port 28.
By "not working", I am not able to ping across the connection.  The link light comes on and blinks.  The transmit/receive statistics show as if data is processing on this switch, but on the other side of the Port 28 connection, the switch shows Transmit traffic, but no Recieve traffic.

View 13 Replies View Related

Internet Connection Is Continuously Transmitting And Receiving?

May 11, 2011

My internet connection is continuously transmitting and receiving, even when there is no application running! is there any way to find out what is being transmitted or received and how to reset the connection?

View 3 Replies View Related

Belkin Router F6D4230-4 Has Stopped Transmitting Wirelessly?

Oct 27, 2011

All the lights are on except the wireless one. Wireless network not locatable by laptop even when sitting next to router.

View 19 Replies View Related

Make A Router Stop Transmitting Wireless Signals?

Jan 17, 2011

what can make a router stop transmitting wireless signals and wlan no longer working

View 1 Replies View Related

Linksys Wireless Router :: EA4500 2.4GHz Not Transmitting

Apr 3, 2013

I purchased a EA4500 and at first I could connect to it through its default ciscoxxxxx ssid on my laptop which is 2.4GHz only.  I upgraded the firmware using the PC utility and now I can't find the 2.4GHz SSID no matter what settings I do.  I've disabled and enabled it multiple times, changed it to have no security or with security and enabled and disabled it and renabled it.  Nothing seems to work, but for some reason the 5GHz side I can connect to using a 5GHz device.  I've also tried disabling the 5GHz side, but still no 2.4GHz.

View 4 Replies View Related

Belkin Routers :: N150 / F9K1001V4 Has Stopped Transmitting

Nov 28, 2012

My router N150 Model# F9K1001V4 has stopped transmitting or will not sustain a signal?

View 1 Replies View Related

Linksys Wireless Adapters :: WMP54G Stops Transmitting And Drops Off Network For Moment

Apr 2, 2011

I'm having an issue with a 2 week old WMP54G pci adapter.  The behavior is as follows: I get a successful connection and excellent speeds, but every 10 seconds it stops transmitting and drops off the network for a moment.  Then everything comes right back.  10 seconds on, drop, 10 seconds on, drop.I've investigated possible sources of interference, but there aren't any strong networks coming though on the same or nearby channels.  Moreover, other devices sitting in essentially the same spot are connected consistently and show no variation in the signal strength.
Other info:  OS is Ubuntu 10.10, the machine is a Dell GX270. 

View 4 Replies View Related

Cisco WAN :: 2821 When Traffic Is Less Error Rate Is Low But With High Traffic It Is Increasing Drastically

Dec 11, 2010

We have cisoc 2821 at one of branch and created five sub inetrfaces for different vlans.Output of Show interface shows very frequent increase in the input error count.I have changed the physical cable and switch port on the other side.But still error rate is increasing.When the traffic is less error rate is low but with high traffic it is increasing drastically.My router process is very less(4%) only.What could be possible reason. [code]

View 8 Replies View Related

Cisco Firewall :: ASA5550 - Implement Traffic Shaping / Policing Primarily For P2P Traffic?

Mar 10, 2011

We are looking to implement traffic shaping/policing primarily for P2P traffic. As natively the ASA5550 is only capable of p2p inspection if the traffic is tunneled via port 80 is the AIP-SSM the way forward? We have 2 5550s in active/active failover config. As a side note we are also looking to implement an IDS/IPS system so could this module cover all?Is this module going to provide the desired outcome or is there another module/device out there better suited for this? I would prefer to use the ASA5550s as opposed to implementing another product if only that we can make use of the investment we already made on these devices.

View 1 Replies View Related

Cisco Firewall :: Traffic Limit For Internet Traffic Usig ASA 8.2

Nov 27, 2012

I am testing limit bandwith using my ASA 8.2, i am trying to limit internet access for certains users , i order to save Bandwith for the important things but i can´t get any limitation  
My configuration is the following, the acces list is just for my pc in order to test, and the service policy is  applied to outside interface (called internet in my case)  for incoming traffic
access-list Internet_mpc_1 extended permit ip host any class-map Internet-class-TEST match access-list Internet_mpc_1 policy-map Internet-policy-web class Internet-class-TEST police output 1024000 1500
service-policy Internet-policy-web interface Internet
With show service policy i can´t see any activity on the policy , but if i do a similar configuration for inside interface outgoing traffic i can see packets allowed and dropped

View 3 Replies View Related

Cisco Firewall :: ASA 5520 - Allow Traffic From DMZ To Internet And Block Traffic?

Apr 29, 2012

I have an ASA 5520 with the below config
Gi0/0: outside (Internet)
Gi0/1: inside (Internal users)
Gi0/2: DMZ (web servers, ftp, Mail etc..)
I have a SMTP relay deployed on the DMZ for mailing. I have also a mail servers installed in the internal lan,
I want to allow trafic from dmz to reach internal lan, and i want normally also allow stmp relay from dmz to reach Internet.
How can i block trafic from DMZ to reach Internal Lan (instead of smtp) if the to allow trafic from dmz to internet i must put ANY in the policy?
For allowing trafic from DMZ to reach Internet, the policy must be DMZ -----> ANY ----->Services., this policy means DMZ can implicity reach Internal Lan?

View 2 Replies View Related

Cisco LAN :: 2811 / Traffic-export Capturing Only Inbound Traffic?

Mar 19, 2013

We have a Cisco 2811 running ITP IOS.  On that router we run the SMPP service.  A client on the network connects to this service, and we need to capture the traffic for debug.
I've tried traffic-export, but I cannot see any outbound traffic.I'm guessing that this is due to the fact that the outbound SMPP traffic is not transit traffic as it is generated by the router itself.
Is there any way to capture the outbound traffic?

View 4 Replies View Related

Cisco WAN :: 3750 ME Traffic Shaping Downstream Traffic

Aug 4, 2011

I am trying to come up with the best way to traffic shape traffic with 3750 Me switches.  the traffic will be coming from a 6504 Sup-7203b downstream and going out the wan.  Core---L3---->6504--intvlan80--trunkport to--->3750Me---g/1/1/1-trunkport to---MetroE network--->int f0/0.80--branch router.  The idea is to use the 3750 to traffic shape the traffic going towards the wan/branch to 500 to match the contracted rate and then to use qos on shaped rate.  I tried to apply it to g1/1/1 using port based policies but it did not shape the traffic.  I changed everything to IP interfaces and it worked.  I need to break up the metroe into different vlans so I can bring branch offices in on different vlans.c

View 3 Replies View Related

Cisco VPN :: VOIP QoS Over L2L VPN On ASA5505

Jan 17, 2012

I have 4 remote sites that are using a ASA as thir firewall / router. I'm setting up a full mesh VPN between all the sites. One of the sites have a UC500 and the other sites access that UC over the VPN tunnels. I would like to set up some basic QoS for the VOIP traffic
The site that has the UC will have multiple vpn tunnles coming in from the remote sites. How will I do QoS with voice traffic on that site?

View 11 Replies View Related

Cisco VPN :: 5540 - VoIP Over VPN

May 21, 2013

I have a Cisco ASA 5540 running 8.2(5). When I dial a phone on the other of the the VPN the first time I get a blank after it rings(i.e when the voice mail get activated if someone picks the phone up), however works the second and consequent times i dial.

A little background. Two sites A and B connected via IPsec Tunnel. No problems in communication except for the VoIP issue. A Phone in on site A(172.17.168.x) and other on site B(192.168.103.x). Site A and Site B is connected via an IPsec tunnel on the Cisco ASA. First call fails. Second call works. Result of a packet trace is also the same. The UDP packet get drops when tried for the first time but subsequent ones pass.
First time
ASA5520# packet-tracer input inside udp 10000 10000 
Phase: 1
Subtype: input
Result: ALLOW
Additional Information:
in         outside

View 0 Replies View Related

Copyrights 2005-15, All rights reserved