Cisco WAN :: Enabling QoS In 877W
Jun 16, 2011Configuring QoS on my cisco877W for VoIP below is the current config. [code]
View 3 RepliesConfiguring QoS on my cisco877W for VoIP below is the current config. [code]
View 3 RepliesCisco 877W. I configured it for PPPoE. But once I plug in the ADSL line, the dialer interface will get IP Address. But after like 2 minutes the PPP link will go off and I will get this log message: "Interface Vi1 unbound from profile Di1".
View 2 Replies View RelatedI am using a company called Zen for adsl, I have 8 IP from XXX.XXX.XXX.248 to - XXX.XXX.XXX.255, Gateway is 254, Address 249-250-251-252-253 I would like to appear at the 4 sockets at back of router, and 252,253 will be used for a server...I understand I should be using Routed IP , but I cannot get it to work, I can ping out to google from the server, but the server is not live to the world. [code]
View 8 Replies View RelatedI had the Cisco 877W Router working in my old company. The old company was closed and I bring all of network equirments to new company.I am trying to setup this router to new company but lost menu, console cable and software CD.
View 2 Replies View RelatedI have a Cisco 877W in place with an ADSL connection, which is working fine. However I cannot get it to hand out a DHCP address. If I associate with the AP over wireless then set a static IP I have full connectivity, similarly if I connect over Eth0 and set a static IP I have full connectivity. So it does just seem to be DHCP. Below shows my config... Any thoughts on the issue? Is it access-list related?I have checked with Wireshark and I see the DHCP request being sent out, but I don't see a DHCP offer being returned
View 4 Replies View Relatedhow to configure WPA2 /AES on 877W. Also how to enable IPS on the router. My ios is 12.4.11T1
View 7 Replies View RelatedI am running an 877W in the home that for the most part works fine, however after being connected for a variable amount of time I partially loose my DSL connection. Line sync stays up, but the traffic is lost.
A shut/no sut of the atm or dialer interfaces does not resolve the issue, only a reload or power down/up will fix the prob short term till it happens again.
Am currently running advipservicesk9-mz.151-3.T1, but have also rolled back to advipservicesk9-mz.124-24.T5 which has the same issue. Have tried a 857W with the same results. So ruling out IOS and hardware, its pointing to a config issue. It has also only been an issue since changing from ADSL1 to ADSL2+.
interface ATM0
no ip address
no shutdown
no atm ilmi-keepalive
exit
[code]....
I've tries some changes mentioned here and from other sites, but no success yet...
I have a working easyvpn setup. We need to change the HQ ip address (current it is i.e 85.146.110.101). This is ACL is applied to Fastethenet conecting to ISP:
interface FastEthernet4
description $FW_OUTSIDE$$ETH-WAN$
ip address dhcp
ip access-group 101 in
ip inspect SDM_LOW out
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
crypto ipsec client ezvpn Acom
As soon as I apply again the ACL to interface Fastethernet 4, access to internet is lost. If I put original ACL 101 (with ip address 85.146.110.101) it works fine.
So I am wodering what wrong with may ACL? Should I make the change via SDM not CLI (to be honest I did not know/use SDM before today)?
I've an 877W with four V LANS, All bridged (group) onto a BVI which is bonded to ATM etc for ADSL:
c870-advipservicesk9-mz.124-15.T5.bin"
1 is the backbone, and for the switch, and has DHCP running and working with no problems - x.y.1.z . Multicast is enabled so that various multimedia bits of kit can find each other.
2 is the "primary" WiFi, which has android devices as they cannot handle SSID not being broadcast or devices that can only do wep.(WiFi radio) it has DHCP, x.y.2.z which works fine. Multicast is enabled so that various multimedia bits of kit can find each other.
3 is a secondary WiFi for the kids, "hidden" ssid. They are fire walled so that bugs can't infect any other windows PC DHCP x.y.3.z.
4 Is a secondary WiFi for our laptops, "hidden" ssid .
For some reason, DHCP is not working on 4. it was working until the good lady of the house quizzed why her net was not working... I've concentrated on vlan4, as there are no "local" access-lists definitions to stop anything. I've enabled debug ip dhcp server, and can see requests serviced on Vlan2, but not on 4, I've enabled/re enabled encryption/ shields on Vlan4, but still can't see dhcp requests arriving and do not see them being stopped somewhere. I can see that the station authenticates OK, but if I connect the same laptop to v lan 02, requests pour in and are answered, proving it's maybe not a Microsoft problem.
Let me just say, I'm more or less self taught with the the net, no real mentoring, so 'think' I have the general idea of the different layers, access-lists etc. so this config is probably not ideal, but it works.
version 12.4
no service pad
service timestamps debug datetime msec localtime show-timezone
service timestamps log datetime msec localtime show-timezone
[code]....
While i was looking around in my stuff in the office i have found a Cisco 877W ADSL router .. so i have decided to use it instead of the one i am using now which is provided by the ISP that's made by Huawei.Anyway i have a good knowledge about basic cisco router configuration but i had never configured ADSL Cisco router, so i looked around on Cisco website, and i was lucky to get this two linksCisco DSL Router Configuration and Troubleshooting Guide - Step-by-Step Configuration of PPPoA with a Dynamic IP Address - Cisco Systems[CODE]
View 7 Replies View RelatedLooking to setup a backup router for our disaster recovery plan. We currently have a Cisco 877W that was setup by our ISP. I can log into the device with Telnet and a console cable, but I am not good using IOS commands, so I would like to use CCA. Unfortunatley, I cannot access the router using the software. I assume something is disabled in the config. Like HTTP or something.
View 1 Replies View RelatedA client of mine is using a Cisco 877w wireless router, they have one IP phone connected to one of the RJ45 ports on the back of the router and their main desktop is also plugged directly into the router - this all functions perfectly.However, the router is in a private house and as such it provides connectivity for all other wireless devices such as iPhones, Ipads and Xbox Live etc. The problem is that the router only allows 5 devices to be connected at any one time and when a sixth attempts to connect to the router the first device (the IP phone) is diconnected automatically.
So my client can be using the IP phone for an important call and his son walks in with Iphone and Xbox, friends etc etc and the IP phone is immediatley disonnected from the router. I beleive that the router should allow more than 5 devices to connect and would hope there is a way of stopping the IP phone constantly being disconnected.I have already paid for "Cisco Engineers" to attend this site but they cannot get it working.
I would like to configure an 877w I just bought. It's connecting to a UK ADSL2+ link.I'm a penetration tester and I want to put the Cisco router in front of my existing firewall which has an IPS on it, so that it doesn't get in the way of port scans and vulnerability scans. My ISP has issued me with 14 usable addresses a/240 subnet and basically I want to be able to use the route with just the public IP addresses. I have configured Cisco routers before, but never with this type of configuration. It's always been single public IP address NAT'd through to one or two internal LAN's.
It will be nice if I could assign the wireless and fast ethernet ports to the same VLAN using the public addresses. I don't want to use DHCP I'm quite happy statically assigning IP addresses to the computers wireless and LAN interfaces. I am reasonably certain this is possible because not sure how to do it and a little busy at the moment carrying out penetration tests.
I have a Cisco 877w (configuration shown below) and i am trying to use a Photo Transfer App on my iPhone4s and iPad3 which allows transfer of photos and videos between the devices using WiFi, the only thing is i cannot get my devices to communicate with each other and i suspect that this is to do with the configuration of my router as the app works perfectly using bluetooth but obviously a lot slower. I cannot even ping the devices from my pc which is also on the same WiFi network. How i should tweak my config?
View 2 Replies View RelatedI'm having a business DSL-connection which requires a modem from the provider (It cannot be replaced by another modem/router)I want to know if it is possible to place the Cisco 877W-G-E-K9 behind the modem and set it up as an VPN-server.The internet connection wil be established in the modem/router of our provider.
View 20 Replies View RelatedI just bought myself a Cisco 877W in hope that I could touch up on my IOS skills. The configuration went well, however I have found that after configuring the Dot11Radio0 interface, the ADSL2+ has slowed down dramatically. I am still syncing at a decent speed (decent enough for how far I live from the exchange), but web browsing and other internet traffic is horrible. Originally, I was downloading at ~500kb/s, but now I can't even navigate to a website to perform testing. :
I have another ADSL2+ modem which works just fine (using it right now to write this post)
I originally thought this may have been a DNS issue. However, performing an nslookup on various sites from both the router itself and a client PC shows that resolution occurs in only a few seconds. With that said, there are some sites which will load in an instant (Google.com, for example) while others will simply refuse to load. DNS server (Server 2k8) is on the LAN with forwarders to ISP DNS addresses.
I'm replacing an 877W router with an C887VA-W-A-K9.The new router uses the service module for managing the AP independently - So I know I can't simply paste the config accross from the old one.
The current router is connected to an ISP with a VPN back to the head office router. DHCP is supplied from the router and clients connect to that via wireless.
I know I can type most of the commands in - but what is best practice going from an all-in-one to having a separate AP? What order should thing be entered?
I haven't worked with Cisco devices before (yepp, another one of those) but I am getting there. I have replaced my silly Draytek router now with a Cisco877 and it works perfectly fine. But the whole networking side of things such as NAT / ROUTE / ACLs is a BIT black magic.
Basically my problem is that I cannot get proper traffic through the tunnel
From any station behind the Cisco (Site2) I can ping the local IP of the Sonic, but none of the other stations. From behind the Sonic I can ping any station behind the Cisco but unable to connect on any port (RDP for example)
Bear in mind that a lot of settings are from forums, google and the sorts because as I mentioned, before I got this one I have limited experience with Cisco .. Everything configured is working fine, the internet connection, the incoming pptp VPN to the Cisco etc., just not the IPSec VPN.
I have a small CCENT/CCNA lab with a few switches and routers which I would like to connect to my D-link home router so that it can access the outside world. I have an 877W which I believe is supposed to be able to connect to a wifi network as a client.
I have seen reference to configuring a bridge but this is something outside of my current understanding. The idea is to have the 877W with it's wireless interface connected to my wireless network and the Lab connected to the 877's intergrated switch, using the 877 as a basic router connecting the two networks. I've scoured Google and put together a configuration using what I could find in forum posts and Cisco documentation. The D-link is set up for auto WPA/WPA2 Personal (TKIP or AES). I'm using an ASCII key with an update interval of 0. I've never had a problem with other devices trying to connecting to it.
At the moment the 877W seems to connect to the D-link but then lose it's association, from what I can see it looks like the 877 is trying to rotate the key? Once this happens my laptop loses it's wireless connection and I need to reboot the D-link to get it back. Interestingly the Windows 7 network icon shows three computers with a link between each as the network icon when this happens. It's as if the 877W acts as a Rogue access point and steals my client's connection. On one attempt the debug output showed the 877 geting an IP address from the D-link's DHCP so it does seem to connect initially.
Config and debug output are below.
Config:
!dot11 ssid MYSSIDauthentication openauthentication key-management wpainfrastructure-ssidwpa-psk ascii 7 MYWPAKEY
!interface Dot11Radio0ip address dhcpshutdown!encryption mode ciphers aes-ccm
[Code].....
I got the wireless up and working. one more issue, its that the clients take time to get an ip address and the ok light on the routers wireless side is blinking and not steady lit.
how do i get it steady and decrease the time for the clients to receive the ip address, both lan and wifi.
I have a Cisco 877W router that has been running flawlessly for nearly 2 years. During that time I've never had to manually reset the router, it has been more reliable than my ISP.However one month ago I left my business for a week and came back to find that the WLAN was no longer visible from my laptop. I searched google, tech forums, and these forums for conclusive explanations as to what is happening but found nothing.The main issue is an inability to see the network, old wireless devices that have been using the WLAN for a while have no trouble viewing the network or connecting to it.How ever, any time a new device is brought in (Samsung Galaxy Tab, new Laptops, and new Desktops) the WLAN is not available.I was able to make the device visible to my laptop by changing the country code on my network device to Region 1, but this is not an option for all devices or configurations.
I have changed the broadcast channels, shutting down the WLAN, configuring WLAN differently (through several different Security methods).My separate access points are usually visible by all clients, (I use D-LINK wifi routers configured to AP mode throughout my facility) however the Cisco just doesn't like to be seen?
I'm new to the Cisco world and have so far got internet and VPN working (without SDM) using the IOS commands.I have hit a stubling block with port forwarding ports 80 (http) and 443 (https) to my small business server for outlook web access.I need to forward port 80 and 442 to internal LAN server 192.168.10.1.The Cisco 877 has a local IP address of 192.168.10.254. [code]
View 6 Replies View RelatedI have the above router on 10.10.10.1 which I'm quite familiar with but I need reaching a VM residing on one of my internal MAC's. My cisco route table is as follows:
Gateway of last resort is 93.97.20.1 to network 0.0.0.0
93.0.0.0/21 is subnetted, 1 subnets
C 93.97.16.0 is directly connected, ATM0.1
10.0.0.0/24 is subnetted, 1 subnets
C 10.10.10.0 is directly connected, BVI1
S* 0.0.0.0/0 [1/0] via 93.97.20.1
The internal physical machine that contains the VM is 10.10.10.9 whose routing table is:
Routing tables
Internet:
Destination Gateway Flags Refs Use Netif Expire
default 10.10.10.1 UGSc 6 8 en0
10.10.10/24 link#4 UCS 5 0 en0
10.10.10.1 0:1b:2b:cc:7:8a UHLWI 7 1248 en0 284
10.10.10.9 127.0.0.1 UHS 0 86171 lo0
10.10.10.11 0:23:54:2a:6:d3 UHLWI 0 234 en0 150
10.10.10.30 0:9:34:28:60:2e UHLWI 0 25 en0 857
10.10.10.111 0:1d:ec:2:2d:2d UHLWI 1 1599 en0 721
10.10.10.255 link#4 UHLWbI 2 18609 en0
10.37.129/24 link#8 UC 2 0 vnic1
10.37.129.2 0:1c:42:0:0:9 UHLWI 1 2 lo0
10.37.129.255 link#8 UHLWbI 2 14046 vnic1
10.211.55/24 link#7 UC 2 0 vnic0
10.211.55.2 0:1c:42:0:0:8 UHLWI 0 2 lo0
10.211.55.255 link#7 UHLWbI 2 14046 vnic0
127 127.0.0.1 UCS 0 0 lo0
127.0.0.1 127.0.0.1 UH 5 214223 lo0
169.254 link#4 UCS 0 0 en0
The VM has a static IP of 10.211.55.5 and can obviously ping out to the rest of my lan but as of yet my router and other machines on the 10.10.10/24 subnet cannot reach the VM. I sort of presume this is a simple task of adding some kind of static route on my router and then all other machine will know how to get to the VM. So what do I need to do as I have about 40 or so customers already connected of whom I do not wish to suddenly halt their access due to my inexperienced attempts to create this route or new link(s)
I've created a BVI2 where I bridged dot11 0.2 and vlan2 in order to have wired and wireless clients in the same vlan.Some wired client are not reachable from the lan. Wireless clients have no pbl in reaching each other.Monitoring a MAC address that is supposed to be behind the FA2 I have noticed that it moves to vlan2 when in fact it should be behind the FA2.Of course when "show mac-address-table" says it is behind Fa2 the ping to that MAC address works whereas when the TCAM reports it is behind vlan2 it doesn't. Once the MAC address is behind the vlan2 if I clear the mac-address-table and that mac-address is still put behinf Fa2 then the pings works again, sometime I have to perform twice the clear command before the MAC address goes back to the right location.I'd like to understand why the router moves that MAC address from Fa2 to vlan2 and that's the reason for my question in the subject.I don't have any problems for port Fa0 and Fa1."Show int fa2" doesn't show any problem/errors or the likes.BTW even if I force that MAC address to be statically behind FA2 the ping works fine but then stops and if I do "show mac-add" the static entry for it is still there... so looks like there us something that overrides that static entry. If clear everything and I have the mac-address be behind Fa2 then everything starts to work again. I used Fa3 instead of Fa2 and I get the same results.
IOS: c870-advipservicesk9-mz.151-3.T1.bin
Probably this is a trivial question but I have not found any response to it. What I would like is to set my cisco 877W rotuer up in order to act as a DNS server which forwards DNS queries following these simple rules:
1.- If the name is within my local domain *.ib forward them to my local DNS 172.21.238.229 and .230, and
2.- Else forward them to the chosen public domains (i.e. 8.8.8.8 and 8.8.4.4).
I'm configuring a Cisco 877 router as my firewall.My WAN IP will be assigned dynamically with DHCP. I will also get my default route from DHCP.I will need to configure ip inspection and packet filtering.I will need to configure NAT, I will eventually need to also configure a dial-up VPN.
View 7 Replies View RelatedNTP server When I setup NTP server to take time from [URL] everything is working fine but as soon as I reset my router during boot I can see that router is first trying to get time before it's even connected to ATM and when it can't get time from NTP server it's removing NTP line from configuration (ntp server uk.pool.ntp.org source Dialer0 ). How I setup to wait with sync and do it once ATM connection is up and established? Or How to get IOS to leave this line and sync with NTP every 10 min)?
View 9 Replies View RelatedIve been struggling with this issue for a week now with an 877w (now with andvanced ip ios) in short my wireless network consists of
The internal dot11 sibinterface 0.11 radio (IP Address 10.0.1.1) which on bridge group 1 (IP Address 10.0.0.10) The SSID for the radio is on vlan 11 which has no ip address.
This works i can ping the internal network and internet
The guest dot11 sibinterface 0.10 radio (IP Address 10.0.3.1) which on bridge group 2 (IP Address 10.0.2.1) The SSID for the radio is on vlan 10 which has no ip address.
This dosnt work i get no no recived packets on the clients network stats and i cant ping any name servers or the radio ip address.The client is listed as being successfully accosated with the show dot11 assoc commmand
Ive tried taking the guest wireless and creating a new vlan for it (so its not on the same vlan as the tmg firewall interface) so that i have only the dot11 radio and vlan 12 on brige group 2 but the same thing happens no traffic on the guest vlan.
Ive turned off all authentication while testing this and the wireless network is currently in open mode until its fixed ive also only configured whats neccessry to test the wireless connectivity (no radius etc) that will be added later, Im also not using dhcp yet and the client is configured to the apporprite adderess staticly ie 10.0.1.1 10.0.3.2 its not a dhcp issue
!version 12.4no service padservice timestamps debug datetime msecservice timestamps log datetime msecno service password-encryption!hostname Router!boot-start-markerboot-end-marker!logging message-counter syslog!aaa
[Code].....
We had one 877W Cisco Soho Router ,I am planing to do a Site-Site VPN connection .while i configuring the router i am facing issue in assighning IP address in BVI interface .It gave me error "integrated routing and bridging is not configured bvi" .how can i resolve the issue .
View 1 Replies View RelatedWe have dlink dir320 router and cisco 877W.
The goal is to make a 877W to work as a wireless client of dlink dir320 and brigde the LAN&WLAN so than the LAN clients of 877W could take DHCP from Dlink 320 directly.
Here's the config of 877w:
!
bridge irb
!
dot11 ssid DLINK_SSID
[Code].....
Is the ADSL line interface on Cisco 877W not initialising a known issue? This interface on my router has been in this state for more than one month, with the rest of the router seemingly operational. The interface was connected directly to my ADSL broadband and worked well for two years. But then, about a month ago, the interface went down. I saw the exact moment this happened recorded as a syslog message. The only information was that the interface status had changed to down.
Initially I thought this was a matter of reload the router and all will be well. Did not happen. Then I thought my broadband connection was to blame. However, this option was quickly ruled out. So I went on to exhaust all troubleshooting options, including reflashing the router with the saved image and totally changing the configuration. Still no change. I have had to go back to my old BT home hub for internet access. In terms of speed this actually works a lot better than the Cisco router. But I would still rather have the router connected to my broadband line. What can I do to bring the ADSL interface back to life?
I have a Cisco 877W-K9 router, and I for the life of me can not work out how to enable multiple SSIDs on the AP whilst keeping them all to the same VLAN?
I know this may seem silly but basically for our clients we setup WPA-Enterprise for one SSID and WPA-PSK for the other to help ease migration between the two etc, however all I can seem to do at the moment is create multiple VLANs and use ip unnumbered vlan1 to sync them all into one, but this seems really silly.
I have an 877W router that I would like to have a 2nd pre-configured backup for. I was thinking of getting another 870 series (probably an 877) router, as the more expensive wireless option is not actually required. Am I right to assume that I could simply copy the contents of my current config.txt file onto the second router?
View 4 Replies View Related