I have a clientless VPN configured for webmail on an ASA 5510. However for some reason it also displays in the drop down of the Anyconnect client, and consequently if you try and connect you do not get redirected to the webmail page. Does any know how i can either remove the entry from the drop down of the Anyconnect client, or force the webpage to open if connection is granted via the AnyConnect client?
I try to map LDAP Group to ASA Group policy following documentation:
[URL]
This is a config for ASA 8.0. I would have expected it to work on 8.4 as well but I do run into problems. The mapping as shown in LDAP Debug and ASA Log will actually happen but it is overwritten by the "GPnoAccess" Group Policy configured locally in the Tunnel Group. From earlier works with RADIUS I would have expected the user specific Attribute to be "stronger"? ASA Log:
AAA retrieved user specific group policy (correct Policy) for user = XXX AAA retrieved default group policy (GPnoAccess) for user = XXX
I have a website account with fatcow. I created the website with Dreamweaver software and uploaded it to fatcow via port 21.My internet connection was via xplornet and I had no access problems. I upgraded to xplornet's new g4 system and now I can no longer access my account online or upload to my website.We have two computers. The first is a desktop system that has the dreamweaver software. The second is a laptop which connects wirelessly. We share the signal through a dlink router. The modem is a viasat Surfbeam 2 residential satellite modem.1. When I attempt to login to the fatcow control panel, the tab shows successfully authenticated and then re-directs me back to the login page. This happens on both the laptop and the desktop.
I have tried bypassing the router and the problem still exists.I took the laptop to the computer center and I can login to the account no problem.I used a free proxy server page on the internet and can login from my home system on my desktop no problem.I have completely turned off virus scan and firewalls. It doesn't work. I have tried IE7, Chrome, Firefox and they all have the same problem. The laptop runs IE8 and has the same problem.I can ping the page successfully. I can traceroute the page successfully. I can't nslooup any site at all. I get the domain not existant message.My ip and dns settings are the automatically find option.I have renewed ips and dumped the dns cache.Using alternate dns addresses doesn't rectify the problem. When I attempt to upload via dreamweaver, I connect but within seconds I get a Dreamweaver message that says "Connection to remote host has been lost. Click refresh to continue" and the log reads "FTP Error. Dreamweaver could not connect to server." I haven't taken my desktop anywhere to try to see if it works on a different network. I'm in a remote location (hence the satellite internet)and it is an hours drive to the nearest private internet connection and a 2 hour drive to the nearest public connection.
We have a Linksys WRT120N wireless router set up at one of our small offices. I noticed recently when trying to log in to the router to make some admin configurations that it will not accept the login credentials when trying to log in from IE10 browser. Works fine from Chrome, IE9, ect. logging in to a linksys router with IE10?
In what order the 8 cables go into the octal plug.The cable is a X.21.DTE 8 LEAD OCTAL part No 72-1100-01. The cables are not in numerical order (as in 0 to 7 as per the serial ports). I'm trying to trace cables and don't have a spare cable to examine. So far I think the order is 0,4,5,1, 2,6,7,3?
I am implementing traffic export on the WAN interface of my 3725 router. I use a dialer interface for PPPoE which is applied to the Fa0/0 interface. This dialer WAN interface has Zone Based Firewall, NAT Outside, ACLs applied to it, as well as IP Traffic Export for an IPS. In what order would each of these items process a packet? In other words, is the order something like ZBF, ACL, IP Traffic Export, then NAT? How would QoS fit into something like this as well? I am asking because I am wondering how much processing the packets receive before they are mirrored over to my IPS.
I recently upgraded my 2811 router with an AC- IP power supply, and installed a HWIC-4ESW-POE, with an Inline Power Daughter Card (ILPM-4) installed on the HWIC.
The second I turned the router's power on, there was a spark and a burning smell. Everything still works, except POE. Examining the card, I see it caused a circuit on the ILPM-4 motherboard to blow, and there is black residue everywhere. This is a Genuine Cisco power supply, but why it's done this.
Furthermore, when the power supply was first installed, it had so much electricity (and I know this is why the card got toasted) that touching the end of the console cable or an Ethernet cable connected to the router, or even the router chassis, would cause you to get a small electric shock, like touching a mild electric fence. Clearly, the power supply I installed is "too-powerful", but it is a 2811-AC-IP and nothing should have caused this.
i'm working on a QoS troubleshooting issue, I want to know the order how the QoS ACLs will be getting processed.For example I have configured the ACLs AF11, AF12 and AF13, in what order switch will process the ACL? does it in a ascending order fashion?
I was wondering to understand if there is an specific license in order to enable NBAR2 in my ISRG2 892 with IOS 15.2(3)T. If not, what is the basic license I need to have for NBAR2 ?
I have got two 878 integrated services routers and I need to configure them as transparent bridges in order to connect 2 remote sites over ATM.
As I'm testing the topology, I configured two switches (representing the sites) at each end with a VTP domain. VTP works while the switches are connected directly with eachother, but it won't work with the bridges in the middle. [code]
I'm trying to find out what is the minimum downtime for a Cisco 2800 series LAN interface configured as DHCP client, in order to initiate a new DHCP discover. How much time does it need to take for the Cisco to "sense" the phy disconnection ?
We are configuring a twice-nat to send traffic for scansafe, its on a asa5505 ve 8.4(3) on a remote location for the customes. The nat redirecion is working but we also have a VPN tunnel to the corporate network. Through the tunnel we need to reach a http server. The problem we are having is that when we add the scan-safe nat, all http traffic gets redirected to scansafe, includind the traffic to the http server on the corporate network.
10.2.1.0 ---<ASA5505> ---Internet,scansafe ---- <Corporate> --- 10.1.1.0 the http server is 10.1.1.75 the remote location network is 10.2.1.0/24
I tried to update my firmware on my DIR 615 by clicking the check now button within the routers parameters and got the file DIR615C1_FW311NAB04.bin The update bombed. I have hardware ver. C1 Firmware ver. 3.11NA dated June 23, 2009.Should I try and install the other firmwares in subsequent order, i.e. ver 3.11NA (dated 7/15/2009), then ver. 3.12 and then ver. 3.13 Or should the latest and greatest cover them all?
dwest.Wireless to router. No factory reset. ISP Ser. Cable ISP Router. Stand Alone.Modem Make & Model. I have to get up for that one, will have to report back tomorrow.
I have Centrino notebook, a Dell 600m. Most of the time I use WiFi with this notebook to communicate with the Internet and my desktop. However, when I want to backup my notebook to the desktop hard drive I prefer to use the 100 MBps speed instead of the 11 MBps speed of WiFi. I have setup the connections order in the Adapters and Bindings tab in the advanced menu item in the Network Connections such that the Local Area Connection (100 MBps) it above the Wireless Network Connection (11 MBps). Well, when I enable the Local Area Connection and plug it into my hub, a second little notification icon shows up in the indicating that the 100 MBps connection is active. When I perform the backup, both the wireless and wired connections show activity. Upon further investigation, I have found that data leaving my notebook is going via the wired connection data going to my notebook is using the WiFi network. Why is this and how can I have it use the wired connection for both upload and download?
By the way, I am using the built-in Windows XP networking software and am not using the Intel software.
We use a Flex7500 with local switching and centeral authentication. My question is can i use the Customer's radius server in order to authenticate? or should my WLC have IP conncetivity to any radius server im adding?I guess what i'm really asking is should my WLC know the radius server or does the request can go back to the AP and from there to customer radius on his subnet?
direct me to a document detailing the order that line cards are supposed to boot in a 6500? I'm noticing random boot sequences in some of my chassis,?Note: We currently run Sup720 3CXL for the most part.
I have 4 switches in a 3750-X stack.Here is the output from the stack why are the switches out of order and I'm not able to bring up switch 1 port 1.
switch 4 port 2 shows not connect it is I've checked the cables.
Power stack name: Powerstack-4 Stack mode: Power sharing Switch 1: Power budget: 695 Low port priority value: 22 High port priority value: 13 Switch priority value: 4 Port 1 status: Shut Port 2 status: Connected Neighbor on port 1: 0000.0000.0000 Neighbor on port 2: c471.fe84.e100
Switch 2: Power budget: 713 Low port priority value: 21 High port priority value: 12 Switch priority value: 3 Port 1 status: Connected Port 2 status: Connected Neighbor on port 1: c471.fe85.3000 Neighbor on port 2: c471.fe80.2800
Switch 4: Power budget: 697 Low port priority value: 19 High port priority value: 10 Switch priority value: 1 Port 1 status: Connected Port 2 status: Not connected Neighbor on port 1: c471.fe80.2800 Neighbor on port 2: 0000.0000.0000
Switch 3: Power budget: 710 Low port priority value: 20 High port priority value: 11 Switch priority value: 2 Port 1 status: Connected Port 2 status: Connected Neighbor on port 1: c471.fe84.e100 Neighbor on port 2: c471.fe7f.eb00s
when using egress netflow (v9) and output marking.
The topologie : Server <-----> R1 1>-----<1 R2 2>----<2 R3
R2 is a 7200 with c7200p-adventerprisek9-mz.124-15.T11.bin What I'm doing :- R2 forwards ping packets from Server to R3. When they arrive on R2, icmp packets are marked with CS3
- I change the DSCP to CS4 on R2 before forwarding packet to R3. I'm using for that an output service-policy on the R2-2 interface like this : interface ATM2/0.36 point-to-point
ip address 192.168.1.1 255.255.255.252 ip flow ingress ip flow egress
i have intermittent connectivity on the 2nd router that was installed on the network in order to extend range. 2nd router is connected to the original wireless router by an ethernet cable.
We have about 20 of the above WAPs in our company network and are quite satisfied with the performance.However occasionally we need to manually reboot the WAPs in order to resolve sporadic connectivity issues that cannot be resolved on the client devices. In order to optimize the performance we would like to automatically restart our WAPs at a certain time (e.g. at night) on a daily or weekly basis.We are currently using WAP4410N-fw-2.0.0.5-K9.
how to associate an AD group - which i have defined in users and identity stores/external identity stores/Active Directory/Directory attributes to associate with the relevant identity groups - Users and identity stores/identity groups Is there an example of this being done somewhere as i am having problems understanding how to do this from the user guide.All i want to do is associate identity groups with ad groups.