Cisco WAN :: Specific License In Order To Enable NBAR2 In ISRG2 892 With IOS
Aug 22, 2012
I was wondering to understand if there is an specific license in order to enable NBAR2 in my ISRG2 892 with IOS 15.2(3)T. If not, what is the basic license I need to have for NBAR2 ?
i had installed the SSL_VPN to the router C2911, running on IOS 15.0 But i couldn't see the SSL_VPN enable while i do show license feature? i did reload the router several time and accept the end user agreement.
attach the 01. show license feature 02. show license detail
How to share a specific folder via LAN and enable permissions.More specifically, I'd like to share this laptop (Win 7 OS) with my Android PMP and Linux laptop (Mint OS) and grant it "full control" (read and write permissions) without granting "Everyone" control and without adding separate users with pw onto this laptop.(scroll to end of the post to skip details)Let's say the folder that I want to share is called "Bouncy." I right-clicked on "Bouncy", clicked on "Preferences", then enabled " Share.."to "Network Path: \MYCPUNAMEBouncy" and allowed Guest and Homegroup read/write privileges. From my Linux, I "Connected to Server" but couldn't connect.Under "Advanced Sharing" in Windows 7, I clicked "Share this folder" and created a profile under "Share name" => "Share name: Bouncy".I can connect from the Linux, but can't write to the Win 7 folder.
In "Advanced Sharing", under "Permissions for Bouncy", the "Group: Everyone" only has Read permissions. I clicked on "Add" and "Selected the object type: Users, Groups, or Built-in security principles" "From this location: MYCPUNAME". Under "Enter the object names to select" I wasn't quite sure what to write, so I clicked on "Advanced". The search results from "Find names" with these settings yield a ton of names that I'll omit. I first clicked on "MYNAME" in "My Folder": "MYCPUNAME". No access from Linux.I then changed the permissions to "Network", allowed full control permissions and now was able add files from my Linux. Which is good.How do I make it so that only a few specific IP addresses or Users (PMP and Linux laptop) have full control? How do I make it so that a password is required to access from LAN with full control?
Based on what i am reading on the Catalyst 3850 datasheet, the controller functionality comes by default if i have a IP Base of IP Services license on the switch. Is this correct or do i need additional license to enable the controller functionality?What capabilities does below license provide ?
LIC-CT3850-UPG (Primary upgrade license SKU for Cisco 3850 wireless controller)
We are looking to find the number of maximum ARP Cache Entries for 1921 and 887VA series Routers. Do they go upto a limit that memory allows, or is there a maksimum arp cache entry limit for both of the router types?
We have created a sample configuration for ISRG2 2901 Router. The sample configuration is long, and with copy/paste it is possible to skip some lines, and it is difficult to ensure the configuration of every device is standardized due to this error possibility. What we are trying to achieve is first create a template from this sample configuration file, and then create configuration files for each device seperately and automatically. After creating this configuration instances, we want to be able to distribute the configuration files (and possibly the ios) to the devices during the staging phase. Since there are about 1000 2901 routers, creating configuration files is important?
From searching we have found the following tools:
1) CCE (Cisco Configuration Engine): This tool seems to be very efficient for distributing the created configuration files. We may use the serial number of the device, and it provides almost zero touch provisioning of the configuration files to the devices. Creating the configuration file from the template seems to be manual, i.e enter the ip addresses of the interfaces, the routing tables one by one for each device. How can we use velocity template for device configs?
2) Ciscoworks LMS Prime: It is possible to create a baseline template for the devices, and after getting the backup configuration of the routers, it is possible to compare the actual configuration of the device with the baseline template, and understand if there is any difference with each other. This is indeed very useful in order to keep the configuration standardized, we again could not find a way to create bulk configuration files from the baseline template.
3) Solarwinds Config Generator: This tool is useful for creating a configuration file from a template, but again not for automatically creating configuration files, and needs manual intervention.
4) Excel Macro: It seems that some people have achived to automatically create configuration files with using an excel macro, but we could not find a procedure or tip of how to achieving this.
5) Pearl or TCL/TK Script: Again since we are not software developers but from networking field, it is difficult to achieve a working form of this scripts or codes due to to lack of documentation and development experience.
I use a router RV082 with load balancing. My problem is when I try to access a specific site, I get the error message that my IP address changes and I can not use 2 ip address. I want to specify an ip range to always use the same WAN port.
Need assistance understanding how in ASDM/Configuration/Site-to-Site VPN/Connection Profiles/ "Any Entry" I can specify that I only want to offer an IKE Proposal of pre-share-aes-256-sha?
The IKE Proposal field has a number of possible options including: pre-share-aes-256-md5, pre-share-3des-md5, pre-share-aes-256-sha, pre-share-aes-192-sha, pre-share-3des-md5, pre-share-aes-sha and pre-share-3des-sha.
I am able to pick a specific IPSec Proposal w/o issue but when I attempt to do the same for the IKE Proposal, and click OK the choice does not "stick" but rather returns to the entire list as defined above.
What's the difference between VPN Plus license and Security Plus license. I have new 5520 shipped with VPN Plus license.Also does it require a seperate license for Anyconnect for Mobile and AnyConnect Essentials.
I’m stuck in some problem with installation of LMS4.0 in customer site.
- we purchase a LMS4.0(CWLMS-4.0-100-K9) but couldn’t install it on Windows server 2008 R2 64bit because those things don’t support each other. - I need to upgrade the LMS4.0 to LMS4.2 that is supporting Windows server 2008 R2 64bit. - So, I ordered following items via product update tool (url...) [code]
- In this status, how to install LMS4.2 with license for 100 devices? If I install R-PI12-BASE-K9 first, can i enter a licese for 100 devices for CWLMS-4.0-100-K9 into PI1.2?
Is it possible to enable an absolute value rate limit using QOS on a HP ProCurve 5406 switch for a particular IP range on a specific port? Is there a way to configure our HP 5406 with an absolute rate limit on "WAN" port for that server's IP range? I would like to limit it to only being capable of sending 1Mbps worth of traffic over the head end at once.Everything in the documentation points towards priority queues, which as far as I can tell, isn't really what I want.Baring accomplishing this goal using rate limiting is there a better way to prevent our services from accidentally saturating this connection?i thimkong about somthing like that:
class ipv4 rate-limit-port-A1 match ip 10.136.0.0/16 any exit policy qos port-a1-ratelimit class servers-to-be-slowed action rate-limit kbps 1000 exit interface A1 service-policy port-a1-ratelimit inI'm not sure about this.
! no ip dhcp use vrf connected ip dhcp excluded-address 192.168.1.1 192.168.1.63 ip dhcp excluded-address 192.168.1.192 192.168.1.254 !
[code]....
I want to assign a specific IP to a specifig host by MAC .. for example i want the ip 192.168.1.10 to be assign to the host "client1" by mac.I've been creating a new dhcp pool static:
! ip dhcp pool static host 192.168.1.10 255.255.255.0 hardware-address xxxx.xxxx.xxxx client-name client1 !
If there is a router ISRG2 2900 with SEC license and without HSEC license, there is a limit in count of cumulative encrypted VPN tunnels of 225. Which commands can show us a number of current tunnels on the router, so we can see if we are near this limit of 225?
In what order the 8 cables go into the octal plug.The cable is a X.21.DTE 8 LEAD OCTAL part No 72-1100-01. The cables are not in numerical order (as in 0 to 7 as per the serial ports). I'm trying to trace cables and don't have a spare cable to examine. So far I think the order is 0,4,5,1, 2,6,7,3?
I am implementing traffic export on the WAN interface of my 3725 router. I use a dialer interface for PPPoE which is applied to the Fa0/0 interface. This dialer WAN interface has Zone Based Firewall, NAT Outside, ACLs applied to it, as well as IP Traffic Export for an IPS. In what order would each of these items process a packet? In other words, is the order something like ZBF, ACL, IP Traffic Export, then NAT? How would QoS fit into something like this as well? I am asking because I am wondering how much processing the packets receive before they are mirrored over to my IPS.
I recently upgraded my 2811 router with an AC- IP power supply, and installed a HWIC-4ESW-POE, with an Inline Power Daughter Card (ILPM-4) installed on the HWIC.
The second I turned the router's power on, there was a spark and a burning smell. Everything still works, except POE. Examining the card, I see it caused a circuit on the ILPM-4 motherboard to blow, and there is black residue everywhere. This is a Genuine Cisco power supply, but why it's done this.
Furthermore, when the power supply was first installed, it had so much electricity (and I know this is why the card got toasted) that touching the end of the console cable or an Ethernet cable connected to the router, or even the router chassis, would cause you to get a small electric shock, like touching a mild electric fence. Clearly, the power supply I installed is "too-powerful", but it is a 2811-AC-IP and nothing should have caused this.
i'm working on a QoS troubleshooting issue, I want to know the order how the QoS ACLs will be getting processed.For example I have configured the ACLs AF11, AF12 and AF13, in what order switch will process the ACL? does it in a ascending order fashion?
I have got two 878 integrated services routers and I need to configure them as transparent bridges in order to connect 2 remote sites over ATM.
As I'm testing the topology, I configured two switches (representing the sites) at each end with a VTP domain. VTP works while the switches are connected directly with eachother, but it won't work with the bridges in the middle. [code]
I'm trying to find out what is the minimum downtime for a Cisco 2800 series LAN interface configured as DHCP client, in order to initiate a new DHCP discover. How much time does it need to take for the Cisco to "sense" the phy disconnection ?
We are configuring a twice-nat to send traffic for scansafe, its on a asa5505 ve 8.4(3) on a remote location for the customes. The nat redirecion is working but we also have a VPN tunnel to the corporate network. Through the tunnel we need to reach a http server. The problem we are having is that when we add the scan-safe nat, all http traffic gets redirected to scansafe, includind the traffic to the http server on the corporate network.
10.2.1.0 ---<ASA5505> ---Internet,scansafe ---- <Corporate> --- 10.1.1.0 the http server is 10.1.1.75 the remote location network is 10.2.1.0/24
I tried to update my firmware on my DIR 615 by clicking the check now button within the routers parameters and got the file DIR615C1_FW311NAB04.bin The update bombed. I have hardware ver. C1 Firmware ver. 3.11NA dated June 23, 2009.Should I try and install the other firmwares in subsequent order, i.e. ver 3.11NA (dated 7/15/2009), then ver. 3.12 and then ver. 3.13 Or should the latest and greatest cover them all?
dwest.Wireless to router. No factory reset. ISP Ser. Cable ISP Router. Stand Alone.Modem Make & Model. I have to get up for that one, will have to report back tomorrow.
I have Centrino notebook, a Dell 600m. Most of the time I use WiFi with this notebook to communicate with the Internet and my desktop. However, when I want to backup my notebook to the desktop hard drive I prefer to use the 100 MBps speed instead of the 11 MBps speed of WiFi. I have setup the connections order in the Adapters and Bindings tab in the advanced menu item in the Network Connections such that the Local Area Connection (100 MBps) it above the Wireless Network Connection (11 MBps). Well, when I enable the Local Area Connection and plug it into my hub, a second little notification icon shows up in the indicating that the 100 MBps connection is active. When I perform the backup, both the wireless and wired connections show activity. Upon further investigation, I have found that data leaving my notebook is going via the wired connection data going to my notebook is using the WiFi network. Why is this and how can I have it use the wired connection for both upload and download?
By the way, I am using the built-in Windows XP networking software and am not using the Intel software.