Cisco WAN :: What Status Is Of 7204 VXR And 7206 VXR Routers
May 22, 2011
I would like to find out what the status is of the Cisco 7204 VXR and 7206 VXR routers?I understand they are EOLife and EOSale.Are they also EOSupport? we planning to upgrade 3 of them in our environment and management requires feedback around this.We thinking of going the ASR1000 route..
We have a leased line from one office to a DR site which we use to back up our data. We are using Cisco 7204 and and OC3 circuit. The data is sent in blocks (SRDF) and we are sending changes only. However, we are getting requests from compliance to further secure this connection since it is a leased line. I guess I need to know how secure SRDF traffic is and then if required, how to secure it.
Can we create a simple VPN between the two routers without having to use a VPN concentrator or Firewall? If so, what IOS would be required? How much impact will the VPN have on current bandwidth?
I need to know exactly how much bandwidth my service provider is giving me throught an MPLS network. My providers tells me that I am capped at 5 mbps with 4 T1 circuits but I believe that I am receiving 6 mbps.
I have a remote site in Dallas with a 2850 and another site as a head end in Michiagan which is a 7206 router.
What exactly can I do during non-business to test to see what the bandwidth is between the 2 locations? Is there some type of command that I can run on the router to test this?
We are migrating from a Microwave T1 WAN to a Fiber ring WAN which I'll be connecting to our providers Ciena Metro E switches. Eventually we are going to move away from the routers, but the network is a little too complex as well as spanned across a lot of miles. Since I am the only networking personnel here, I would like to first simply migrate to the fiber by simply moving the connection configs off of the T1 interfaces, and onto one of the Gig interfaces on the 7206 and on one of the Fe interfaces on the 3900 (which is actually a 3700 series because the line card on the 3900 is toast). If this works, I will need to purchase Fe line cards for the 7206, because I found out that the virtual interfaces do not support Policy Mapping for our QOS and Multicasting.
get a status on Mac Lion and/or Windows 7 64-bit SSL VPN support for the RV220W? QuickVPN (for Windows 7 64-bit users) and IPSecuritas (for Mac Lion users) are our current workarounds, but for folks that use/own their own equipment we prefer SSL VPN. This is why we retired our WRVS4400N v2 for the RV220W.
I was wondering if anyone has seen their VPN User Connection Status Table empty even though you know for sure clients are connected? I connect with my iPhone to the PPTP VPN successfully and it works fine but there's no entry for the connection on the VPN User Connection Status Table. Is that normal? Does the router only collect data about Windows clients?
RSTP port role in the switches are flapping if broadcast data is flowing through the ring. Also I've tried applying broadcast suppression to all the port to 64kbps for ports of 100Mbps/1Gbps, All the devices I'm using are L2 switches.
I have problem with RVS4000 fw 1.3.3.5. When you switch the status of IPS function (turn on or turn off), firewall rules don´t work from that moment until you restart the router!
I'm using a Thomson Technicolor 587nV3. I need to change my NAT status from strict to open. So I can play MW3 online and connect to my friends online games and so I can host multiplayer matches. I have windows 7 laptop to do any of the steps required. I've tried to bind my routers cone through Winscript but without any luck perhaps I done it wrong
I have a cisco 7204 vxr that terminates a 300 meg ethernet circuit asn well as an mpls DS-3. CPU increases along with utilization of the ethernet circuit. When the utilization gets to around 150 Mbps on the receive, the cpu is maxed out at 100%. I am wondering if the router can support the amount of traffic coming through it. The majority of the traffic is voip using g729 codec, so packet size is small. We are no where close to peak utilization and cpu is at 39%. Here is what I see currently:
#sh verCisco IOS Software, 7200 Software (C7200-ADVIPSERVICESK9-M), Version 12.4(15)T4, RELEASE SOFTWARE (fc2)Technical Support: [URL] 1986-2008 by Cisco Systems, Inc.Compiled Thu 13-Mar-08 10:40 by prod_rel_team ROM: System Bootstrap, Version 12.3(4r)T3, RELEASE SOFTWARE (fc1)BOOTLDR: 7200 Software (C7200-KBOOT-M), Version 12.3(15), RELEASE SOFTWARE (fc3) uptime is 3 years, 1 week, 3 days, 6 hours, 40 minutesSystem returned to ROM by Reload CommandSystem restarted at 08:26:49 UTC Wed May 14 2008System image file is "disk2:c7200-advipservicesk9-mz.124-15.T4.bin"
This product contains cryptographic features and is subject to UnitedStates and local country laws governing import, export, transfer anduse. Delivery of Cisco cryptographic products does not implythird-party authority to import, export, distribute or use encryption.Importers, exporters, distributors and users are responsible forcompliance with U.S. and local country laws. By using this product youagree to comply with applicable laws and regulations. If you are unableto comply with U.S. and local laws, return this product immediately.
is 633+ seconds (approximately 10 minutes) load time normal for a Cisco 7204 router? I find that it takes forever for the router to do :Self decompressing the image". I tried the latest IOS and tried different bootloaders but it doesnt seem improve it?
We have point to point metro ether net link terminating on 7204VXR router.On this point to point link we are configuring GRE over ip sec. Problem is when the traffic exceeding 8mbps we started getting packet drops. from the Cisco documentation it seems the tunnel bandwidth is by default 8mbps and there is parameter like Inherit/receive but those actually not change the tunnel interface bandwidth.If we just give tunnel bandwidth with bandwidth mentioned it allows me to give option of 100mbps but again the tunnel interface bandwidth remains 8mbpos only and probably that 100mbps is useful only for routing decisions.
i am using advance security 12.4.15T12 image. Whether this is a limitation or any other way to go beyond 8mbps for the tunnel interface (7204VXR-NPEG1 processor)
I need to route a subnet from a 7204 to 2 different gateway's which are not Cisco based. I cannot use HSRP, GLBP or VRRP as the other 2 gateways don't support theses protocols. Yet they do support OSPF, RIP, and BGP.... Take note that this setup is in a ISP scenario. How can I acheive gateway redundancy?
I need to configure BGP on our 7204 and 2811 router. The 7204 is our main router and currently running EIGRP internally. Our remote locations just moved to an MPLS connectivity and they have a 2811 router. I will need to configure BGP for the routing protocol. I have the AS number and the remote AS number. Attached is the the current configuration of the two routers.
We are replacing a DS3 Internet connection with a 100 Mbps fastE connection from a Tier 1 Provider. I currently have a Cisco 7204VXR with 512 Mb DRAM and 128 Mb of Flash and two 10/100 ports that is connected to the DS3. I also have a 3845 with 1 Gb of DRAM and 256 Mb of Flash with two 10/100/1000 ports available.
We are currently running BGP, below is the summary
BGP table version is 88880414, main routing table version 88880414 379041 network entries using 44347797 bytes of memory 379043 path entries using 19710236 bytes of memory(code)
I can't seem to find out what this means. Every 6 months or so, my 7204 locks up. I can't even get to it via the console port and I must reboot to access it. I noticed this alarm in my logs.( ASSERT CRITICAL PO1/0 Threshold Cross Alarm - B3) I've looked on-line but can't pinpoint it's meaning. Looks like a flapping interface but might be something else.
My router, a Cisco 7204 with NPE 300, is experiencing output drops and input errors on a fastethernet interface. I have a 100Mbps connection with less than 15Mbps utilization at peak times.
FastEthernet1/0 is up, line protocol is up Hardware is DEC21140, address is 0014.a985.1a1c (bia 0014.a985.1a1c) Internet address is 38.102.66.134/30 MTU 1500 bytes, BW 100000 Kbit, DLY 100 usec, reliability 255/255, txload 3/255, rxload 1/255
I was planning to buy 7204 VXR for my site's router for the following requirements:
- support for ATM, Serial, ISDN - support for 3 10/100/1000 ethernet interface - support for 2 WAN interface
However, I realized that the 7200 series will not be available for sale after September of this year!! Any "reasonable" replacement for 7204 VXR that meets the above requirements?
I have a 7204VXR Router, with Neflow. The collection for all interfaces is ok, but one interface (Gigabitethernet 1/0), is not showing the egress traffic in the pictures. The configuration has "ip route-cache flow", ip flow egress, and ip flow ingress set. But, is not showing the egress traffic.
I have a Cisco 7204 vxr router that does not have a valid image on the boot flash or on the pcmcia card (disk 2). I tried everything i could to try and get the router to recognize the flash but it keeps giving me a magic card error. I'm losing my mind slowly but surely.
The router boots into Rommon every time and the Rommon options for this router are horrible. No tftpdnld option. Can I get this router to boot from tftp, from Rommon?
I have a 7204VXR NPE-400 running c7200-adventerprisek9-mz.124-24.T3.bin at the moment. This device is being used as a firewall between zones in a service provider network.
My issue is we have a lab device on the corporate side that needs to talk SCTP to the core device. Since there is no option to match SCTP in ACLs or protocol matching, I can't really get this to pass properly. What is the new IOS versions support SCTP? Any options to pass this traffic through the firewall?
I'm looking for a Cisco device to run a full BGP table with a 60Mb link. And one of the main restrictions is that my traffic is almost 100% real-time (voip). So the average packet size is small. Today we own a Cisco 7204 NPE400 with 512Mb RAM. I think even though I upgrade it to a G2, due to the small average packet size, the router will be near to its limit. Maybe a Cisco 7300 NSE-150? Or should I think about a switch?
I am preparing to move two branch offices from a point to point T1 connection to Century Link Metro Ethernet.Currently my branch locations connect to my HQ 7204 router via a channelized DS3. I have a 4507R at HQ that I will connect the ME circuit to.We will also be moving our Internet connection on the ME circuit.Our service provider Clink will hand me a single Ethernet handoff for the Internet and branch office connections. For the first phase I will connect one branch office using ME. Once that is in place and tested we will move another office and so on. Then our final step is to move our web connection to the ME circuit.Each branch office has their own unique voice and data subnet. They each have a 2801 router and a 3560 switch. The routers are MGCP gateways with only one PSTN connection, a POTs 911 line on a FXO port.
So my questions are;
1 - Should I connect the ME directly in to the 3560 at the branch offices or use the Fa0/1 on the 2801? Fa0/0 is currently connected to the 3560.
2 - On my 4507R at HQ how will I configure the ME switch port? As a dot1q trunk port?
3 - Given that ME is basically a LAN connection will I have to re IP the branch office? HQ is 10.10.1.x/24. Branch is 10.10.166.x/24 (data) 192.168.166.x/24 (voice).
4 - On the 4507R will I need to configure a vlan interface for each branch subnet?
I attached two network diagrams. One represents our current topology (MEexisting) and the second represents the new ME circuit changes (MEprojected).
Im trying to configure a 7204 for radius login authentication, although the router is also configured with radius for VPN access. How can I configure it for both using 2 different raidus servers? the login via radius is working fine on another router, although that one is not doing VPN access so there's no conflict.
My config:
aaa group server radius RADIUS_AUTH server x.x.3.11 auth-port 1645 acct-port 1646 aaa authentication login networkaccess group radius local
[Code]....
For some reason, this does not work. I cannot access the router and authenticate via x.x.3.11 radius server. I think there's a conflict between the VPN and the login authentication but im unsure how to resolve this.
I was attempting to setup our 7204 Cisco router to use RADIUS for authentication via the AAA commands. I must have messed up when configuring it as it comes up via TELNET asking for a username and password but doesn't take my AD credentials. How might I login to this router to fix the config? Do I need to do a password recover process?
One note, I didn't save the running-config to startup-config, so if I restart the router will it load the startup-config, thus overwriting the running-config that wasn't working?
One of my newly installed router got reloaded ,showing me below error . The same IOS im using in another router and it works fine without any issue ,but this newly installed router gave me this problem. [code]
cisco 7204VXR (NPE-G1) processor (revision B) with 983040K/65536K bytes of memory.
I have two 7206 VXR routers with the VPN Service Adapter either side of a leased line (i.e. no provider between, pure layer two connectivity)A requirement is that traffic traversing the link is encrypted so I've configured an IPSec VPN between the two endpoints.During load testing we noticed a very severe performance hit when the VPN was enabled, disabling it again saw we were able to use almost 100% of the 1000Mbs line. The performance hit looks to be due to the increased MTU size when using IPSec, possible due to fragmentation.
I've read that the 7206 VXR can support 980Mbs (or there abouts) of throughput using AES providing the MTU size is 1400.Configuring this manually on each server in each data centre isn't feasible.As the link is effectively a point to point and we have control over the MTU size between the two routers, what options are available to increase the performance when the VPN is enabled?
I am attaching my current network topology, My problem is that i am having mpls & p2p link terminated on the 7206 router left side of diagram. now my problem is if i apply PBR on this 7206 router & tracer any host which are on right side of the diagram, it drops on IP 10.1.1.1..ideally it should go to my Core switch on right of the diagram.