I have inserted a SIP-800 card into my CRS-8. I inserted the SPA into the SIP. I cannot find how I configure the SIP or the SPA. I have spent the day reading the manual but no where do I see the commands to activate or get the SIP up and running.
I am definitely not a fan of ios 8.3, and specialy the change about "nat". I trying to use this example : [URL]
everything is good except : global (outside) 1 interface nat (inside) 0 access-list inside_nat0_outbound nat (inside) 1 172.16.1.0 255.255.255.0 Because, this example is for an 8.2 ios (or above), and i have a 8.3.
Another question : What the bestway to use this example, but with a single "nat" for all outbound traffic (I want all outgoing traffic (on the main FW) to be seen from a single domain encryption)
i want to configure a new cisco 1812.what i want is : we have 5 external ip addresses from our ISP.we want that the FE0 ( wan port ) can route all those ip addresses.so when we put a firewall on port number 8 with 1 of the 5 external ip addresses we have internet.and when we put a firewall with another external ip adres on port 4 we have internet.
i looked but didn't find anything. I'm looking for a configuration guide, similar to the ASA Configuration Guide, that that can provide documentation on how to configure a Cisco 3925e router. I have my CCNA and a fair amount of real world experience configuring routers but ultimately what I am looking for is guidance on how to configure BGP on this beast. I learned a great deal about ASAs by running through the ASA Configuration Guide and I am hoping to do the same with the 3900 series ISRs.
We have a MPLS T1 installed at the main office. I just purchased ASA 5505 to configure site to site VPN connection. The ISP have VIP mapped with 1 block of public ip addresses.configure the asa 5505.
I would like to ask some thing for configuration on AP (AIR-LAP1141N-A-K9) but now i chnage IOS to stand along mean and i want to configure QOS on this AP? Any command how to configure QOS?
- the WAN consists of a in-house satellite network using comtech CDM-570 IP-Enabled Satellite Modems - there is a group of HUB tx modems, each one is shared for approx remote 10 sites with a total bandwidth tx 2048k - each remote site is to be guaranteed min 512k but can burst into the 2048 - remote sites must be somehow grouped to a member of each modem to set the bandwidth constraints - a single DMVPN/multipoint GRE is configured on HUB. all remote sites connect to this (redundancy comes later )
The challenge is how to configure the QoS on the HUB side to meet this policy, Currently, I use ip nhrp group MODEM1 on each remote site, and ip nhrp map group MODEM1 service-policy output MODEM1 on the HUB. This is working ok. This works nicely, however I am left with the constraint that within each modem group I must define a class for each site and set the guaranteed bandwidth. As the policy is applied pre-encapsulation, I must create a class with an acl matching the remote sites IP ranges. An administration nightmare and prone to failure! I want to avoid this if possible.
I have Switch 6509E wich is the core of the network, and we have 4 llink form 4 ISPs, all the link will work at the same time?how can I confiugure the BGP , as I know if I configure bgp it will work with one ISP as an active link,if that link goes down it will automatically begin to work with other ISP. My question is that how can configure the network so that,some vlans work with one ISP, some vlans with the others and so on.If configure it with route map I will have to track every time to change the confiration if the links goes down, but I do not want to track it, Can I do anything with BGP to implement this task?The core of the network is Switch 6509E, intervlan routing is implemented on it, no dynamic routing is enabled.The firewall module installed on it the implementing the NAT processes.
I have a Cisco 1802 to connect my company to ADSL over ISDN. But my boss wants to change the ISP. The propose was (still is) to configure de router with VPN, IPS and use the WAN port to connect the new ISP, that provides an Ethernet signal to 100Mbps.The WAN port will work with Ethernet signal (when we change of ISP)?Any good book (or a paper) to configure the router to work properly with VPN and IPS?
I have one router 2911 with the following image c2900-universalk9-mz.SPA.151-4.M4.bin I have two IPS on this routers and I tried to configure the IP SLA on this and I`m not able to do it and I don´t know why. I can configure almost everything but not the IP SLA command.this is the config:
track 10 ip sla 1 reachability delay down 10 up 1 ! track 20 ip sla 2 reachability delay down 10 up 1 !
[code]....
What I need to do in this case? or why cannot configure the IP SLA?
I am going to configure the NATing on ASR1002 and expecing to have near about 1Million nat translation. Will ASR1002 support 1million nat translations ? how many NAT translations are supportable on the ASR1002 ?I am going to configure NAT on ASR1002-5G/K9 U& have FLASR1-FWNAT-RED.
I am relatively new to Cisco CLI and on the diagram that I am attaching I want the 2008 server to do DHCP for everything behind E0 on the Soho 91. I have tried multiple configs and I seem to get close but never quite get it. I am thinking that adding a DHCP helper on E0 will work but I am not sure.
I currently have a Cisco 891 running with a FTP running on port 21. I currently have the NAT from external IP to and internal IP 192.168.12.6 for port 21. And the firewall allowing that traffic through and client software is working fine. However I need this FTP to be running on port 990 and anytime I change the NAT and the firewall, the external FTP clients connect but then drop when recieving the directory listing.
How to configure MAB (Mac Authentication Bypas) in ACS 5.2 or ACS 5.3.I have running tacas+ & radius on the ACS with a local database
I have entered already a list of MAC address in the Users and Identity Stores / Internal Identy Stores / Hosts .Also I have already a Access Policies configured. Access Policies / Service Selection Rules / MAB
And a group "Host Lookup" Host Lookup has the service type : Network Access And policy structure : Identity & Authorization.
I have a SF 300-24p.... How do I configure it to act use like a hub, with the uplink on G1... And How do you set all the ports to POE for ViOP phones, and these ip phones are going to get DHCP over network..
I'm trying to configure a Cisco 3800 with a WIC-2AM-V2 to do DDR. I've gotten it to work before, but it was a while and now the config doesn't seem to work. I'm using an Lo0 interface and ip unnumbered on the Dialer interface. Using debug dialer and debug ppp and see nothing at all trying to dial out.
############################################################## version 12.4 service timestamps debug datetime msec service timestamps log datetime msec service password-encryption ! hostname DDR
I'm baffled by a lot of new features of LMS4.2 and seem lost where to start looking.Our client needs to periodically make changes to switches to change their port settings.They have specific descriptions with a certain string. Let's say the description say "Cisco phone".The task is to create either template or ad-hoc Netconfig job that will send changes only to those switchports.
I want to create a VPN server on a linux Box for our company. I need to connect via VPN on private local company network and then i get the public ip address from here (company public ip address). This is because some of our system is only accessible from static company public ip, and the problem is the remote access (from home for example) to this systems.
How can i configure this VPN Server and what client can i use to connect and get the public ip address from the company and then connect to company systems?
I would like to configure & utilize the dual WAN / ISP to which we have subscribed. At present we are serving web-pages through our primary ISP which is working fine.
We have a business need that we have to set up a IPsec L2L tunnel (from multiple locations) to a business partner, we require that the connection can only be initiated from our side, not business partner side. I searched the web, one option is configure our side ASA to initate IKE only, this does not seem to meet our requirement, because once IPsec SA is up, IP layer traffic will flow freely in either direction; the other option people suggested is to use VPN filter in tunnel group policy, but the documention of how to use this vpn-filter to enforce one way traffic policy is not crystal clear to me; I actually configured reflexive ACL on core L3 switch before the traffic hits ASA to reflect/evalulate specific traffic to businness partner's LAN network, that worked well. However one of our branch office's core L3 switch is Cat4K which does not support reflexive ACL with the image it is currently running, so I am stuck again .