I have a ME-3400EG-12CS-M switch the ports 13 thru 16 have sfp's and are connection to other 3560 switches over fiber. The GIG 0/1 on the 3400 connects to the long haul sonet transport electrically. The IOS is Version 12.2(55)SE3. I can't ping or log into the 3400 unless I am at one of the 3560 switches hanging off of the NNI ports 13 thru 16. I think it is because the max number of NNI ports are 4 and I can't change the GIG 0/1 to a NNI port. Can I make config changes to the UNI port so that it will act like a NNI port with out upgrading the IOS to allow for more NNI ports?
I have been told there is a limit (8) on the number of source ports that can be mirrored to a given destination port. I can find no specifications or other documentation to corroborate this claim. Any factual data to confirm or refute this claim?
Been looking around in my routers settings for something that even comes close to limiting bandwidth on a specific port, or mac address, but the only thing I can find is priority settings like "Low, Normal, High, and Highest" I did however see this:
I am not 100% sure if I can specifically set bandwidth limit per port or mac address, cause I don't see an option to do that, so I presume it just limits the whole network as one...
Recently our company purchased 3 Lynksys SGE2010p, At the moment they work as a stack but as we are implementing UCCX we need to mirror 15 ports but during the provisioning i've noticed that the limit is 8 ports per stack. I'm wondering whether this is a known issue or just a known limitation . I believe that most probably i'll need to move back to stand alone mode so i could configure 8 mirrored ports per switch.
We need to have one connection with less internet bandwidth assigned to it than all other other connections. Basically it is a separate conection from all others, incoming just from one switch port and separate VLAN.I know this can be done on the switch by limiting the bandwidth allocated to a port,
however, is it possible to have the speed limited down, just before it goes to the internet, ie, on the ASA, rather than doing it on the switch?The firewall is an ASA 5505.
Is it possible to rate limit on a L2 trunk port on a 3750?
current port config and ios are as follows;
interface GigabitEthernet1/0/50 description *** Connection to Fiber Link *** switchport trunk encapsulation dot1q switchport trunk allowed vlan 1,172 switchport mode trunk end flash:c3750-advipservicesk9-mz.122-46.SE.bin
i was wondering if the "srr-queue bandwidth limit 10" command would work to limit the output from this interface to be 10 % of the port bandwidth and then the same command could be done on the other side.
I want to limit the bandwidth going to remote site on the switch connecting to our netapp.We have a 4 port channel group setup on our 3750x switch going to our netapp storage. We have a Wan 100mb link to our remote site and we want only 60MBs of that link to be used for Netapp traffic all other local traffic needs to use the full amount of the bandwidth to the netapp.
Is possible to allocate bandwidth in this way and how would I go about this? We dont have access to the routers for the link and they plug directly into a port on our cisco.
I have a 9-year old PPPoE DSL modem at home whose ethernet port is only 10mbps. For some reason I am unable to establish PPPoE connection on my E1000 when connected to this modem (PPPoE login is correct, as it works with a different router when connected to the same modem). Someone suggested that the problem may be that the DSL modem is unable to negotiate Ethernet connection because E1000's WAN port is 10/100mbps (autosensing failing?). The suggestion was to manually set the router's WAN port to 10mbps. Is there such a switch somewhere on the E1000 - I cannot find it in web admin console anywhere?
Any other guesses as to why the router and the modem cannot connect?
FWIW, the dsl modem is a SpeedStream 5360 E1000 hardware v 2.1; firmware 2.1.02
I have one user who doesn't receive a beep when he reaches an internal DN's voicemail. You will hear the attendant say that the person is not available and then the recorded name, but there's never a beep and consequently cannot leave a voicemail.
i am installing a CWLMS 4.0 and everything was good until i have reached the discovery for the devices, i am dealing with a bank setup and the branches is connected using layer 3 MPLS, branches are located behind the ISP router, so as a cdp neighbor i cant see anything but the ISP router at my Core.
so i cant see the branches routers as neighbors to my (seed Device) Core, and i have tried to use the ping sweep and i could not reach them also. and also to add them manually as we were doing before in the earlier versions of CWLMS, using the Devices and Credintials, this option is removed from the LMS 4.0 as i have red in a document.
1- snmp is configured on all devices. 2- access-list is configured on all devices. 3- i am able to reach the LAN Devices without any problems and the configuration is the same on all of the devices.
How do I limit broadcast/mulitcast traffic on a switchport to e.g. 5000 pps ? I don't want the port to shut down, just block or drop broadcast traffic that exceeds 5000 pps.
I want to configure switch port bandwidth limit for my Catalyst 2960-48, is there any hardware / ios limitation? can I configure it at all 48 switch ports?
url...I discovered that it would be possible to be protected from portscan, i mean when someone scan our nework/host from outside, the attacker will see all the 65535 ports as "open" (in that way it will be more difficult for an attacker to perform customized attacks...)So I have follow the setup in that link: policy-map global_policy class class-defaults set connection embryonic-conn-max 15 per-client-embryonic-max 3 service-policy global_policy global . The problem is that I don't have the exepected result..If i do a portscan over Internet from an external host to my hosts the portscan is successfully working and I can view my open ports...I have also tried to set this through a "match" in an access-list but without any sucess.
I am trying to setup QuickVPN on my RV180W and having no luck. My client log shows "Remote gateway wasn't reached" "Failed to connect". The client is Win7 64-bit. I have created the firewall rule for icmpv4 on my windows 7 client but still no luck. I checked with my ISP and they say all ports are open. I have created the VPN user.
I am working in an environment with 6 4402 all running 6.0.119.4 code and WCS 6.0.196.0. I keep getting an alert from WCS that the controllers cannot be reached "Controller '10.x.x.x' is unreachable. - Controller Name: 'Name'"
Now when I go to access the WLC through HTTPS I have no access at all but controller still responds to ICMP, HTTP, Telnet, SSH. I know I should have HTTP and Telnet disabled but since HTTPS keeps failing I would have no way to get into the controller. Is this a known issue in the 6.0.199.4 code? should I consider upgrading? The only fix I have found to work is to disable HTTPS reboot controller enable HTTPS and reboot again.
We have a 2960 switch (switch2), whose Management IP cannot be reached/Ping'd. Could not Ping . We have checked the following, but still no clue on the root cause. Haven't tried a reboot yet.
Topology.
All switches are cascaded through trunk and allows all v lan's.
Switch 2 has correct ARP entries for the other switches that we try to ping.Mac address table is fine.Switches other than Switch 2 has proper ARP and Mac entries.This Mgmt v lan is not pruned across any trunks. (we are able to ping switch3 crossing switch2 when tried from switch1)Switches are running PVST and convergence is fine.No access list to deny the traffic.Tried sut/no shut on the V lan interface.
I want to be able to send snmp traps to my NMS alerting our NOC to when we reach our configured max-associations on an ap. We currently use both 1130 AG and 1140-2N in autonomous mode, no controller. I have found a debug command "debug dot11 station connection failure" and the output of a test AP shows us the fact that the maximum number was reached. I need to find if it is possible to trap on such information.
I have two Aironet 1242AG access points. Currently, one of those access points is in use with an SSID of ABCWIFI.
I want to extend the wireless network to an area that can't be reached by copper or fiber. So, I've purchased another 1242AG. What I'm not sure of is how to configure it. Should I use it as a repeater or in a root-bridge/non-root bridge configuration?
What I'm most confused about is, what do I do with the second radio? Do I use the 5Ghz as the "backhaul" with a completely separate SSID and then broadcast the normal SSID over the 2.4Ghz? Or, do I even use the second radio at all? The key is that the same SSID is used in all locations because the devices in use need to move seemlessly between access points
In the process of migrating from ACS 4.1 to ACS 5.3. Authentication works fine, but having issues with authorization on the Juniper WXC-3400 devices. In ACS 4.1 we were passing TACACS+Shell (exec) Custom attributes Privilege level=15, which allowed a user to login with read/write privileges. In ACS 5.3 tried setting the Shell Profiles common task to 15 for both Default and Maximum (one at a time, and together), as well as setting the Custom Attributes for priv-lvl=15 (with and without Common Tasks set).
We purchased ME 3400 switch and trying to implement it. But its quite surprising in the ME3400 configuration guide that the switch does not support VTP. When I checked in Feature navigator under feature "VTP" i could see ME3400 supports VTP. But when i get into CLI of ME3400, i am not getting any option of configuring VTP. I could see in some sites VMPS is supported in ME3400.
I would like to confirm the following: 1. Does VTP support present in ME3400 or not? If not, what would be the reason that it is not included in ME3400. 2. If not what is the alternative.
Network is already running VTP of around 30 switches.
Is it possible to enable an absolute value rate limit using QOS on a HP ProCurve 5406 switch for a particular IP range on a specific port? Is there a way to configure our HP 5406 with an absolute rate limit on "WAN" port for that server's IP range? I would like to limit it to only being capable of sending 1Mbps worth of traffic over the head end at once.Everything in the documentation points towards priority queues, which as far as I can tell, isn't really what I want.Baring accomplishing this goal using rate limiting is there a better way to prevent our services from accidentally saturating this connection?i thimkong about somthing like that:
class ipv4 rate-limit-port-A1 match ip 10.136.0.0/16 any exit policy qos port-a1-ratelimit class servers-to-be-slowed action rate-limit kbps 1000 exit interface A1 service-policy port-a1-ratelimit inI'm not sure about this.
I have a problem at a place where 5 ME3400 switches are connected in a straight line. I can't do much about the topology of that place, but the problem is they are all DHCP Snooping, but uni cast replies from the dhcp server further up the hierarchy gets eaten by the first switch! I can't really see why it not only inspects in and whines about it not being for itself - it then drops the message.
What have we done wrong (apart from the actual layout of that place, which I can't really change)?
Sep 28 13:49:29: DHCP_SNOOPING: received new DHCP packet from input interface (GigabitEthernet0/1) Sep 28 13:49:29: DHCP_SNOOPING: process new DHCP packet, message type: DHCPOFFER, input interface: Gi0/1, MAC da: 7444.012d.debd, MAC sa: 0013.1a4a.65c7, IP da: XX.YY.186.7, IP sa: XX.YY.186.1, DHCP ciaddr: 0.0.0.0, DHCP yiaddr: XX.YY.186.7, DHCP siaddr: 0.0.0.0, DHCP giaddr: 0.0.0.0, DHCP chaddr: 7444.012d.debd Sep 28 13:49:29: DHCP_SNOOPING: binary dump of option 82, length: 20 data: [Code] ......
It really should just send it on, as with any uni cast not on the switch itself - it should go out Gi0/2 really. Why isn't it?
All the trunks are trusted, DAI is on (I've tried shutting it off, as well), port-security is used but it's actually not dying on the switch having the client computer, but the first one in the chain with dhcp snooping.
Amongst other things this was pulled from #show log
Dec 15 11:01:38 WST: %SYS-2-CHUNKEXPANDFAIL: Could not expand chunk pool for REP Cam Flush . No memory available -Process= "Chunk Manager", ipl= 4, pid= 1-Traceback= D9BAA8 D9C1F4 1738F20 A6E77C A6524CDec 15 11:01:46 WST:
I am a lucky enduser of an 3400 ME switch.i admin an 80 comp LAN with segments splitted by unmanaged layer 2 switches.Now i want ti use a 3400 me switch .I connect an ethernet cable between the console port of switch and lan computer dell server application windows 7 ethernet port.What's next?I browse the cisco site,download configuration assistent but nothing.I installed a hyperterminal and wait for call ,nothing.So,what's next?how can i give an ip to cisco swith?
i have dell vostro 3400 running on windows 7 ultimate 64 bit.Few days back i reinstalled windows .since then i am unable to find the appropriate drivers for my wi fi.system does not detect any wi fi networks. i can acces the internet on wired LAN. Need pinpointing the exact drivers and the order of installation so that it starts working
I have a dell vostro 3400, and I can connect to any wifi network, and while other computers can get internet through them, I can only get limited access. Also, I am running connectify(internet sharing program), a virtual wifi router and I can connect devices to it, but they cannot get internet through it (even when my laptop gets it through Ethernet). Is this a hardware problem? Software, OS? I've had the comp for over a year and it's always worked perfectly.
We are using cisco ME 3400 E series switch. Which port we can use as CFM port ? We configured CFM in gig port.Is all the ports will act as CFM port or any separate CLI command is there for enable ?