I am looking for a guide on how to Harden my VPN router. Specifically I am looking for what ACL rules I should be applying on my public exposed interface to ensure only L2L and RA VPNs can establish.
Should I only enable the following ports and deny everything else? IP Protocol Type=UDP, UDP Port Number=500IP Protocol Type=UDP, UDP Port Number=4500IP Protocol Type=ESP (value 50).
I was curious how I could harden my router to make it secure besides strong passwords and the following obvious things:WPA2 Wireless enabled, etc.I notice you can't disable SSID on my ea6500. Shame.
Cisco router 3945 when unpacked from the box and powered on , it was not able to find boot loader image and booted in ROMMON mode. tried to boot from the external flash and tftp but still not able to.
We replaced router chassis 2 times and both the times faced the same problem.
I am selecting a router, let's say to be used as a VoIP Gateway (C3945 + PRI ports).If I order the "Security license" included (bundle C3945-VSEC/K9), what is the benefit of getting the security license for a gateway router? Today in the organization we don't see an immediate application for the security license, but I would like some feedback on ways that it could benefit the organization if future security policies are implemented in the future.
imagine I am selecting a router, let's say to be used as a VoIP Gateway (C3945 + PRI ports).
If I order the "Security license" included (bundle C3945-VSEC/K9), what is the benefit of getting the security license for a gateway router? Today in the organization we don't see an immediate application for the security license, but I would like some feedback on ways that it could benefit the organization if future security policies are implemented in the future.
I have an e2000 wireless router. I have the latest software version for the Cisco software.I have noticed that Cisco sets up the same password to access the router setup page as the wireless password..Anyone that connects to the main SSID will be able to connect to the setup page at 192.168.1.1...I know that I can change the password in the linksys setup page to whatever I want, but then when I open the Cisco software, it wants me to change the password to match what the administrator password is.Don't they realize that a wireless password is different than the Administrator password to access the router settings?
I want to use cisco connect with the Router E1200. There is a wireless connection between laptop and E1200 Router. When I run the "Cisco Connect" after couple minutes searching It can not find the Router and I have to put an (Router name SSID) and password.
I have managed to get the tunnel up and working and we are sending data via the tunnel from our Cisco VPN router to the Draytek and onto the clients server. (they , the client, have acknowledged that they are recieving and sending packets back to us).But, we never see any returning packets at our VPN tunnel endpoint. When we send I see the encrypted packet count go up , but the packet decrypt remains at zero, this is using show crypto ipsec sa | begin x.x.x.x.
We do have other working VPN solutions, but this is the first connecting to a Draytek. The ACL's are matching, and they have NAT turned off. The routing is fine or else the tunnel would not come up as are all the tunnel parameters, else our packets would not arrive at their server.
I configured dmvpn at cisco router 2900. one hub router and 3 spokes. all of them are working normally but tomorrow i see one error at at one spoke router.
error: Maximum Tx Bandwidth limit of 85000 Kbps reached for Crypto functionality with securityk9 technology package license
I have a CISCO 851W router in the garage that I want to connect to my Linksys router in the office, which is connected to the internet.The 851W is connected from it's WAN port to Lan port 1 of the Linksys router. Now, currently that ethernet cable is a straight-through cable. Does it have to be crossover? If so, I can fix that.
I want the default gateway for the CISCO router to be 192.168.2.1. I am not sure how to configure that. [URL]
i'm currently doing task in this packet tracer, i've already completed 100% but i noticed that there are certain router cant send packet to the main router,i think the best way is to add default route, and i already add default route but it doesnt come out on the routing table,problem : HQ router cant send packet to ISP router?
I have two mac laptops and am trying to copy a directory with a number of PDFs in it. The files aren't particularly large, but there are many of them. At some point in the process the router stops and must be turned off and on before it will respond again either wirelessly or wired. I have tried the same experiment with both devices wired and the router works fine. I have tried changing the MTU, channel, beacon setting, etc. as other forum posts have tried. I tried reflashing the firmware, resetting to factory defaults and reconfiguring. So far no success. Cisco support wants me to return the router. Frankly I'm at the point of considering the former Linksys/Cisco products complete rubbish. I am going to have to buy a new router even if I return this one since I can't be without a router for any length of time.
We have a home use WRT160N router linked to a PC desktop and two wireless laptops, Yesterday bought a new I-Phone, but could not link to my network (entered the security key many times). I accidentally connected to computer fix it firm that linked to my PC and wanted a large sum to fix the problem which he said was due to large number of temp?? internet files and once removed he would change the IP address of the desktop computer? Is this diagnosis logical and can I do it on my own. The router is definetely working - both laptops access the internet and I was recently able to hook up a Samsung Blu-Ray player using the same security code I used for the I-Phone.
The router had firmware 2.0.x(?) and I tried to update to the latest FW, according to the webpage that's
FW_E1000_2.1.02.006_US_20130115.bin
Hardware is E1000 v2 according to sticker on back.The firmware update failed (no reason given) and the router now hangs in limbo where all it does is flashing the power LED.I set my PC to 19?2.168.1.2 and TFTP'd the firmware over to 192.168.1.1 - no errors reported and 192.168.1.1 is pingable. Held reset for 30s, then powered down the router for another 30s. On power-up the router still flashes the power LED.
I installed an IP camera, and had to change my E1000 router settings to a static IP address. Now I can't access the router settings. 192.168.1.1 is still the default gateway, but it won't open in any browser.
I'm reluctant to do a reset because it took me quite a while to figure out how to get the IP camera and port forwarding working (it does!), and I'd hate to do it all again and come to the same place. I'm not very good at this stuff, and it's a small miracle that I did it once.
The standard Verizon router doesn't have Wireless N capability, so I got the WRT600N (first floor) a while back and connected it to one of the ports on the Verizon router (basement). I have the wireless turned off on Verizon router. My problem is that anything connecting to the WRT600N has extremely intermittent connectivity.
I just got E1000 cisco wireless router. Started setup, everything worked fine and replaced admin password with my own. For some reason got error message. tried to redo setup and got message router not recognized. used laptop and found out that wireless works fine. After few days noticed that there is a (mynetworkname) guest connection you can connect without any password. i don't need that stupid thing and my question is how to disable guest network? I cannot reach Main Menu from cd and have no idea where to look for it when i connect to router by web.
I I use a Linksys E3000 router. Sometimes when I look at the network map I see a device called "Unknown." It appears as though the two notebooks sometime are going through this device to access the Linksys E3000. (I've checked when both notebooks are on and I can determine what devices are connecting directly to the router and what devices are going through this unknown device.) Is there any way to determine what this unknown device is?
BEFSR81 v3.0.I selecting Enabled UPnP and now I cannot access the router. When I enter the default admin for the password in the Authentication Required screen. I get the following screen: 401 Authorization RequiredThis server could not verify that you are authorized to access. Either you supplied the wrong credentials(e.g., bad password), or your browser doesn't understand how to supply the credentials required.I didn't enter anything new into the username or password fields.
I currently have my wired cable internet hooked into my wrt310n. I have that hooked into a linksys 10/100 ef3124 switch. From there, I have cat5 run to the back of my house, where the wireless signal is weakest. I've got an E2000 router and would like to hook that in at the back of the house. What settings do I need to make in order to set up a completely new wireless network in the back of the house?
My main Internet connection is a frontier modem /router It is on the main level of the house. In the basement I am trying to set up the cisco E3000 through an Ethernet cable.
I have a Thomson TG585 v7 router which is in bridge mode. I also have a NetGear DGND3300v2 router which I would like to connect to the Thomson (eventually I will purchase a switch and connect another device along with the NetGear). The problem is that the NetGear only has 4 LAN ports and no WAN ports, which I assume you would need to set this up.
I have a Netcomm router which I've had working as my ADSL and my wireless AP.I connected a DLink router via ethernet so as to extend the range of my WIFI.This has worked, but now I cant log in to my DLink router.It started with IP 10.1.1.1After setting it up to not do automatic dhcp and then plugging it in to my Netcomm (which is on 192.168.1) I can no longer find the DLink, whether connected over ethernet or wireless. How it might have had its IP changed as it join the network?
I have a WRT54GS which works fine with Linux both from both wired and wireless computers using Linux. But I reinstalled Win XP and now I can't reestablish a connection following the EasyLink advisor. I did have a connection under Win XP before.
The last instruction on the Easylink advisor tells me to look for something marked "local" I don't find that word on the screen.
I just reset my router to the factory settings in order to make some changes to it. However, when I tried to change the SSID to a unique name, I was unable to connect my computer to the wireless network. I then reset my security settings and left the SSID to the default name "linksys_SES_54125" and it is working just fine. I tried to connect with two separate computers both running Windows 7. My router is the WRT54G v8
why I wouldn't be able to connect to my wireless network when I change the SSID?
My home computer accesses the Internet through an ADSL modem and a phone line. I added a wired router (Linksys BEFSR41).I've since bought a laptop computer, an iPhone4 and a wireless router (Linksys WRT160N).Again, on the advice of a friend, I ADDED the wireless router, so now have two routers connected.The devices are connected as follows:
-Wall jack to ADSL modem -ADSL modem to BEFSR41 -BEFSR41 to WRT160N -WRT160N to desktop computer.
As I understand Linksys routers, the default IP address for ALL Linksys routers is 192.168.1.1.Both the iPhone4 and the laptop are unable to connect to the wireless router.I'm assuming the two routers are conflicting with each other, so I thought I would remove the wired router..Can I change the IP address of the BEFSR41 router from 192.168.1.2?
Would this resolve the conflict between the two routers and allow the wireless devices to "see" the wireless router? What's the correct procedure for removing the BEFSR41 router from the system?
There is a way to block access to a website by password protecting it through my linksys router, which is one of thoe wrt54gs. I know I can completely block access of a website and can restrict the viewing hours of facebook at certain times through the router admin IP site but was wondering if it was possible to make it so you have to use a password to view said certain site. If there isn't is there any way maybe through a program or do I have to go through my ISP to see if they can do what I am asking for.