Cisco WAN :: 7613 Serial Interface Showing Up But Can't Ping
Feb 24, 2013
What would cause an interface to show up/up (looped), but you still can't ping that loop?...It is on a Cisco 7613 with an Enhanced FlexWan (WS-X6582- 2PA), with a Mx Serial PA, 8 ports (73-1580-10) and running IOS ver 12.2(33)SRE2 [code]
I have a remote site that still utilizes a single T1 connection to me. For multiple reasons we had to scrap the old T1 and have a new one put in. The old T1 resided on a T3 as channel 25. The new T1 is a standlone point to point. I removed the old config from my 7301 and programmed my 3725. I cannot figure out what is going on but the interface stays down/down. There is no loopback turned on, either manually or by the carrier. The AL LED stays amber regardless of whether or not I have a cable patched down. The CD LED remains green when I patch a cable down. LP is not light.I am using a straight through Ethernet cable to connect my 3725 to the smart jack. If you look at the show output below you will see DCD and CTS is down. Since the remote end was working and I just had the tech move the patch cable from one smart jack to another I am assuming the problem is on my side or with the carrierI already tried changing the clock sourced between internal and line. I also swapped out the WIC card for another one. I don't usually program T1 connections. [code]
Is it possible to simulate ISDN in a lab using a serial or ethernet interface. I want to setup FR and have ISDN running between a couple of routers with DoD routing.
We have a Cisco 1760 router . We are facing sevier packet drops in the serial interface.
When i swap the router with another router link is working working fine.
Troubleshooting steps taken
1. Swap the serial cable with another working cable : no change in state
2. Reconfigure the encapsulation commands (with PPP and HDLC) : no change in state
3. Try with a decreased MTU packet Ping : no change in state
4. Decreased the Input queue and increased the output queue size using hold-queue in command : Comparatively the packet drop is reducing but still a 10 percent drop is happening.
I'm having an issue that I can't quite understand. I set up a test lab to get familiar with EIGRP routing. I have a Cisco 3845-MB with 2 VWIC2-2MFT-T1/E1 cards.sh ip int brief shows UP UP status on all serial ports. I gave it an IP address but I'm having trouble pinging the serial interface IP. It's dropping pings to its own S 1/1/0 interface when pinging from console. I have known good T1 crossover cables 1&2 - 4&5.
Here is the "ip int brief" from 3845-MB
3845-MB#sh ip int brief Interface IP-Address OK? Method Status Prot ocol GigabitEthernet0/0 unassigned YES NVRAM administratively down down GigabitEthernet0/1 172.30.2.1 YES NVRAM up up Serial1/1/0:0 10.3.29.2 YES manual up up
Right now it's pinging itself at about 60 -90% success rate... and I can't figure out why it's dropping any packets at all. I have other issues with in the lab as well... but i think this might be my "core" issue.To make matters even more "weird" I've tried two different VWIC2-2MFT-T1/E1 cards and I drop pings with both of them.
Here is a sh run and a sh diag:
3845-MB#sh run Building configuration... Current configuration : 1434 bytes ! version 12.4 service timestamps debug datetime msec
I just recently bought a new Cisco 2611 for my home lab and am having trouble getting the serial port to work. I have tried multiple things such as erase startup, switching the cables to rule them out, and even changing IP addresses but none worked. [code]
I am trying to use the connected WIC2-2MFT, as the servial interface on my cisco 1841.But it does not show me the option, under configuration interface
[code] What should I do to make this enable on this list?I am attaching the show tech-support, and show version of this device.
I have a new 3560G to set up a small network for a remote site. I configured the vlan and an SVI as the gateway. The switch is also the DHCP server for the LAN. I configured Gi0/2 as L3 port, connecting to the nearest neighbor. My network runs EIGRP so i advertised the routes into the EIGRP process. The switch forms EIGRP neighbors and learns all routes in the enterprise network. The problems I'm having now are: 1. The switch learns all routes in my enterprise LAN and can ping devices in the enterprise LAN, but I can’t ping any interface on the switch from the enterprise LAN. 2.
I have existing cisco 2811 (Version 12.4(3c)). I try to add a HWIC serial card into the router but the new HWIC is not detected. There is no new interfece shows up when i do show run. This HWIC is a new card just bought it.
While I managed to connect to each router individually, I decided it was time to connect the routers together via serial; as I don't have any serial cables and need to buy some, what serial cables I need, as well as to ask whether I have the right cards in my router(s) that will allow me to do so.
I bought 3 1841 routers, and all have a 1 port serial WAN Interface Card (WIC 1-T); one router has 2 of these, and one router has a WIC-1B-S/T .. My question is, can I connect the routers with a serial cable via WIC 1-T, or do I need a 2-T
I just finished setting up a bundle of (2) T1's in a multilink bundle and I'm having issues with one of the T1's not wanting to join the bundle.
The router I'm using on the remote office location is a 3620 router running code c3620-i-mz.121-1c.bin
The campus router which is a 7206 is setup the same exact way with multilink 240 and like I've said, serial 0/0 is joined to the bundle just fine, so we are running off one T1 connection.
The serial interface that is not working is: serial 0/1
Here is a show-run:
interface Multilink240 ip address 172.18.xxx.xxx 255.255.255.252 ip route-cache flow ip ospf network point-to-point service-policy output PhonesFirst ppp multilink
I have a Cisco ASA 5505 and I have my internal and external interfaces configured but I currently cannot ping from the inside to an IP Address on the outside. I had this setup and working and I have another set of equirement that I am replacing that is working with my service provider so I know it is a configuration issue. When I ping 4.2.2.2 for example I get:
Destination host unreachable
Do I need to add a static route from my inside interface to my outside interfaces?
I have router cisco 1006 ... when I no shutdown the interface this appear to me.
Router(config)#interface gigabitEthernet 2/1/0 Router(config-if)#no Router(config-if)#no sh Router(config-if)#no shutdown Router(config-if)# *Jan 20 08:50:01.239: %LINK-3-UPDOWN: Interface GigabitEthernet2/1/0, changed state to down *Jan 20 08:50:01.140: %LINK-3-UPDOWN: SIP2/1: Interface GigabitEthernet2/1/0, changed state to down.
No date in the TOP-N Interface Errors portlet showing in LMS 4.1, but data for TOP-N Interface Utilization is displayed like expected. The Interface Errors poller show active(without errors) with same Instances as Interface Utilization.
I am using a Cisco ME 3800 switch with 24 Gig and 2 Tengigabit interface. But after configuring the Tengig int with ip add and negotiation it is no know visible in the switch. Instead TenGig I am seeing two (Gi0/1 and G0/2). Not even showing the Tengig in the running config.
some of the servers are not pinging from one switch but they are pingable from other redundant distribution switch. So I took the IP addresses from the redundant switch, with that I found MAC addresses from the access switch.But when I tried to see to which ports these MAC are addresses are connected to, multiple MAC addresses are resolving to the same switchport. like 5 MAC's are showing to 1 port and other 3 MAC's are showing to other port, like this there are many. All these MAC's belong to virtual servers.
we have a cissco 4506-e switch with ios version 03.02.05.SG . We ae currently facing a strange problem . Vlan interfaces configured in he switch are not showing input and output traffic, whereas the traffic is seen on the Gig interfaces mapped to the respective vlans . We also tried configuring the load-interval 30 , but there is no change . Interace 3/5 is mapped to vlan 5 . For this issue we have also done the IOS upgrade from 3.1.1SG to 3.2.5SG recently still the issue is same. [code]
We have 3 Cat 4500 switches on three floors teh 3rd floor switch connects to the 2nd and 4th floor switches ,but we are receiving an alert from monitoring tool that " Interface(314) Backup-1Gb-Ring is Down at least 2 min on Switch: SOM500-4510-3FL the following output from "sh int status module 1 " shows the int 1/3 and 1/4 are 'inactive'local IT guy said If the status is inactive,the ports cannot be used and might lost the capability when he added 48-port blade into the 10th slot.
2nd Floor Port Name Status Vlan Duplex Speed TypeTe1/1 SOM500-Core1 connected trunk full 10G 10GBase-LRMTe1/2 SOM500-Core1 connected trunk full 10G 10GBase-LRMGi1/3 Backup-1Gb-Ring notconnect 1 full 1000 1000BaseSXGi1/4 Backup-1Gb-Ring connected trunk full 1000 1000BaseSX 3rd FloorPort Name Status Vlan Duplex Speed TypeTe1/1 SOM500-Core1 connected trunk full 10G 10GBase-LRMTe1/2 SOM500-Core1 connected trunk full 10G 10GBase-LRMGi1/3 Backup-1Gb-Ring inactive 1 full 1000 1000BaseSXGi1/4 Backup-1Gb-Ring inactive 1 full 1000
I always though that sh mac address table dynamic interface xx/xx/xx was a subset of "sh mac address table" 6590 Version 12.2(33)SXI I have two mac addresses on downstream switches that will only show up when using
sh mac address-table dynamic interface Te4/10 * 903 0050.77a9.6e3c dynamic Yes 0 Te4/10 * 903 0050.77a9.5766 dynamic Yes 0 Te4/10
when using "old faithful"
sh mac address-table | inc 6e3c *nothing*
or
sh mac address-table dynamic | inc 6e3c *nothing*
nothing shows up?this vlan has no layer three interfaces
I am trying to configure a 4507 R chassis with Dual SUP but i cannot see teh switchpot mode trunk encapsulation dot1q?
I have typed:
interface GigabitEthernet5/1 description DOWNLINK toxxxxxx switchport mode trunk channel-group 11 mode on ! I have have searched all other commands and sub-commands but could only find dot1q-tunnel which I beleive is for QINQ or some QoS featues and lot for L2 encapsulations?
the puzzling is:
XXX-Core4507#sh int gi5/1 trunk
Port Mode Encapsulation Status Native vlan Gi5/1 off 802.1q notrnk-bndl 1 (Po11)
when I connect the dostribution switch a 3507 to this int gi 5/1, both interfaces do come up?
I'm currently working on a plan to migrate our 6500's over to our new 7010's. At the time of the migration I want to tighten up our OSPF design and configure OSPF for "passive-interface default" then allow only those interfaces that should have OSPF neighbors to send the hellos. The issue is that the command is not showing up under the OSPF process. What's even more interesting is that the Nexus 5.x Unicast Routing Configuration Guide shows that the "passive-interface default" command should be an option to enter.
I'm currently running version 5.1(4) (though looking to upgrade to 5.2 during my migration testing). I would rather configure the passive-interface via the routing process versus having to enter it on every interface.
We have built some policers to apply to vlan SVIs on our 7613 so that we can rate limit input and output traffic. We followed the Cisco formula and got this.
policy-map vlan-shape-3meg class class-default police cir 3000000 bc 562500 be 1125000 conform-action transmit exceed-action drop violate-action drop
There have been some complaints about this not actually meeting the limit. When I do a show policy-map interface xxx I get this. Based on that it looks like the Be value is being change to match the Bc value.
On a separate note, I noticed that every policer we built with the cisco formula actually ends up with a Tc greater than the max Tc of .125 seconds. It seems odd that a recommended formula would end up creating values outside the maximum allowed limits by the software.
I'm not a QoS expert so if any of this seems like basic stuff it's just because I'm a little slow on QoS.
One other thing...in order to apply policers input and output on an SVI does mls qos vlan-based have to be configured on the trunks tagged with the corresponding Vlan?
I've configured a lot vpn server for 857/1800, etc. But this has never happened.I configured 881 as VPN server using CP.Shared key, local group and local user authetication with split route.Local pool 192.168.100.1-254? I have acl for telnet which allows local pool IPs.I have acl to deny local network to local pool IPs for NAT.I've deleted the whole settings and re-run the wizard. It's still the same thing. I can connect from the VPN Client, but no traffic going through. The problem to me is isakmp with DPD. But why it is dead? Why no response from the server? If it is an error, why connection has no problem.
I have a cisco ASR 1002 I have plugged a host into an addressed port and the port comes up however the host cannot ping the router and the router cannot ping the host. Neither can router ping its self. I do the same on a cisco 2800 router and it works fine. What's goin on. Is it the fact that this is a ASR router ?
I have configured eigrp routing on cisco 1941 ISR with two interfaces advertised. However i can not ping the router interface on g 0/0 but can ping the device and computers attached to that network. When i ping from the same network i'm able to ping the interface but not from anyway else. i can also ping the other devices on other network from g 0/0 attached hosts. How can i enable ping to this interface so that i start monitoring the network?
Below i have attached the network configurations for the router;
I have lots of 857's routers in the field with mostly the latest OS - 12.4(15)T17 making ezVPN connections to a 2951 with 15.1(4)M5.All the 857's have lookback and vlan interfaces similar to :
interface Loopback0 ip address 50.43.8.1 255.255.255.255 ip tcp adjust-mss 1452 end
[code]....
Now lately for some or other reason we have instances where I can ping either the VLAN or the LOOPBACK interface, but not both. Or I have instances where the 2951 can ping all the interfaces on the 857, but the 857 can not ping the 2951. Or I have instances where the 2951 can not ping the 857, but the 857 can ping the 2951.The way I have been fixing this is either to add crypto ipsec client ezvpn SMS_VPN inside to the loopback interface, or if it is there already to remove it. This usually works for a few days, but then suddenly I have to reverse this again. If that does not work then I usually do lots of clear crypt sess and/or clear crypt ipsec client ezvpn on the 857, or clear crypt sess remote 857_ip_address from the 2951 and then suddenly it starts working again.
I have recently installed an ASA5510 at a site in South Africa to connect via VPN to a site in the UK (ASA5520). The VPN comes up fine with the 5520 in the UK, however, I can not connect to the inside interface over the VPN, but can access it from the internal LAN. All other hosts on the LAN are accessible over the VPN.
The 5510 also has another VPN to another site in SA and the 2nd site cannot ping the interface either.
I cannot seem to ping from the outside of my 5520 firewall to an inside network. I have a single physical outside interface connected to a Layer 2 switch, with a laptop connected to it. This is on network 10.11.131.0/28. From there, I cannot ping to the inside interface (which is a sub interface on G0/0) with network 10.11.130.0/24/ For some reason, it doesnt work.
Now. I had access-lists in place, but have removed them for testing and it still doesnt work. I have set the security level of inside and outside to 100, and entered the same-security-traffic permit inter-interface command - still no joy. Below is the relevant configuration.
I've had some issues with my 892 router. [code] When match address is set to acl-net12, I can't ping my router on external interface and tunnel is working very bad (15%-20% packet loss).If I change match address from acl-net12 to acl-net12-new then I can ping my router on external interface and vpn si working fine.
I have also an acl (set on external interface) which allow ping but it seems that is not working when acl-net12 is used on crypto map. [code]
I have a Cisco ASA 5505, the problem is I am not able to ping to outside natted interface (ip: 172.88.188.123 and 124 and 125) from inside network I have looked for ASA documentation through the internet and still got nothing.