Cisco WAN :: Will 3945 Work On 208 V Single Phase
Mar 12, 2013Will the 3945 router work on 208 V single phase (line to line)? I know it mentions 100-240 VAC, but would the line-to-line issue cause a problem?
View 1 RepliesWill the 3945 router work on 208 V single phase (line to line)? I know it mentions 100-240 VAC, but would the line-to-line issue cause a problem?
View 1 RepliesWe just purchased a Nexus 7010 switch and we are at a stand still with our COLO trying to figure out what power source should be provided. APC recommends a 50amp 3phase vertical cabinet PDU (AP7867). What type of power sourcereakers will be sufficient in handling the Nexus 7k /w (3) power supplies? Do the COLO need to provide single phase or 3 phase power recepticals?
View 7 Replies View Relatedconnecting a Cisco 3945 Router to an Ethernet WAN Link. The service provider has provided a 100M Ethernet Single Mode Fiber handoff to the customer premises with SC Connector. The CPE configuration proposed for this setup is like this.
Cisco 3945
EHWIC-1GE-SFP-CU (EHWIC 1 port dual mode SFP(100M/1G) or GE(10M/100M/1G)
GLC-FE-100LX 100BASE-LX SFP for FE port.
Since the SFP has LC Connector, i suppose i need to have an SC-LC Cable for connecting the Ethernet link. Do i need anything else, apart from above?
i tried to configured L2TP connection on ASA5505.Phase 1 and Phase 2 are completed but Windows Client doesn't work. [code]
View 4 Replies View Relatedconnecting a Cisco 3945 Router to an Ethernet WAN Link. The service provider has provided a 100M Ethernet Single Mode Fiber handoff to the customer premises with SC Connector. The CPE configuration proposed for this setup is like this. [code]
Since the SFP has LC Connector, i suppose i need to have an SC-LC Cable for connecting the Ethernet link. Do i need anything else, apart from above?
Type: WRVS4400N Wireless-N Gigabit Security Router with VPN.I bought it last week. Its single port forwarding has an issue. I can only use that function for a couple or hours. Then the forwarding does not work. I have to reboot the router to make it available again.
View 1 Replies View RelatedWe've just purchased a WS-C3750-24FS-S, only to find that the 100baseFX ports will not work over Single Mode fibre, backhaul links. Any way or a device that convert from MM to SM?
View 2 Replies View RelatedI want to setup a vpn tunnel from a Cisco VPN Client in the internet over a fritzbox to the Cisco 876 (Version 15.1(4)M3) so that the vpn tunnel terminates at the Cisco 876.For that reason I used the command "crypto map mymap" on the int fastethernet 1. When I try to connect, the VPN Client opens the window for username and password but then ends with the message "not connected". When I do "debug crypto isakmp" the Cisco 876 shows the message: "phase 2 SA policy not acceptable!". [code]
View 3 Replies View RelatedHow to do the above thing.
View 3 Replies View RelatedI have a site to site ipsec tunnel setup between an ASA5510 and a 2951 Router. The ASA 5510 is on a 10.x subnet with a few vlans behind it. There are also 7 other ASA5505 that connect to this box with ipsec.
The 2951 is on a 10.x subnet with multiple vlans behind it (10.x and 192.x subnets).
When I had ACL to allow traffic from 10.20.0.0 (ASA) to 192.168.111.0 (2951 - voice vlan) the connection comes online and is stable.
The minute I add any of the following, the connection drops off with Phase 2 errors: 10.20.0.0 to 10.1.200.0 10.20.1.0 to 10.1.1.0
I can add a second 10.20.0.0 to 192.168.10.0 with no problem at all. The issue only seems to occur when attempting to add traffic from 10 to 10 on the tunnel.
I have a little problem with a Easy VPN, this is the topology:
-One router 2811: This is the Easy-client (Who has a ip address by dhcp)
-One ASA 5540: This is the Easy-server
Configuration is simple, from one side ASA 5580 with soft asa844-5-smp-k8.bin, from another side: ASA 5520 with asa845-k8.bin. Between them is builded IPsec LAN-to-LAN.Usually it works fine, but: In random time I can get error in logs something like that on ASA 5520: %ASA-5-713904: Group = x.x.x.200, IP = x.x.x.200, Phase 2 rekey collision, found centry 0x6cec9d28 or on ASA 5580: %ASA-5-713904: Group = x.x.x.234, IP = x.x.x.234, Phase 2 rekey collision, found centry 0x00007ffe782dfa60 The main problem that if this error is occured on 5520 - all continues to work (only this message is appear in log).
If this problem occured on 5580 - tunnel stopped his work. One thing that works - it is drop crypto SA (clear crypto ikev1 sa x.x.x.234), after that tunnel reinitialized and all starts work again. As far as I know, this problem was on 5520 to version 8.4.2 and was solved in 8.4.3. But, as you see, in version for 5580 (-smp) this bug is still present in newer versions.
I am trying to set up a site to site VPN tunnel using GRE over IPSEC. Below is the configuration from both routers and debug output. I'm scratching my head on this one. I'm using two Cisco 7600 routers with SSC-400 SPA modules and 720 Supervisors. The IOS on R1 is 12.2 SXI2 and R2 has 12.2 SXI3.
View 1 Replies View RelatedI am configuring VPN on an 831 rotuer using a dynamic-map configuration. I can connect to the network and I can see phase 1 and 2 complete from the debugs however from what I can tell I can only ping across the VPN. I can't connect to and web services or RDP to any hosts on the local network. Here is a copy of my config.
version 12.4
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
service password-encryption
service sequence-numbers
[code]....
Just setup a site to site vpn between 2 ASA 5520 Firewalls in two locations but vpn doesn't work even though i see phase 2 completed on the logs. I can't ping across the LANs.
View 2 Replies View RelatedI am migration an IPsec site to site VPN config to a new ASR1001 router «facing» a Linux box (ipsec-tools + racoon). As the Debian Linux does not offer VTI, I am using a crypto map.
The working config is given below with the corresponding logs on the Linux side.
When I try to apply this previously working config to the ASR1001, I get the following error :
000855: *Dec 12 18:28:21.859 UTC: %ACE-3-TRANSERR: IOSXE-ESP(14): IKEA trans 0x1350; opcode 0x60; param 0x2EE; error 0x5; retry cnt 0
Dec 12 18:50:19 FAKE-AUCH-GW racoon: INFO: initiate new phase 1 negotiation: 194.214.196.2[500]<=>130.120.124.8[500]
Dec 12 18:50:19 FAKE-AUCH-GW racoon: INFO: begin Identity Protection mode.
Dec 12 18:50:19 FAKE-AUCH-GW racoon: INFO: received Vendor ID: CISCO-UNITY
Dec 12 18:50:19 FAKE-AUCH-GW racoon: INFO: received Vendor ID: DPD
Dec 12 18:50:19 FAKE-AUCH-GW racoon: INFO: received Vendor ID: draft-ietf-ipsra-isakmp-xauth-06.txt(code)
Got a classical remote access vpn with Cisco VPN Client and ASA-5520, Some weeks ago I noticed in my ASA logs this severity 5 Message. Group = xyz, Username = abc, IP = 84.n.n.n, Duplicate Phase 2 packet detected. No last packet to retransmit. This message comes with every connect, but then connections works fine.
Remark: See ASA ADSM:
- 1. Duplicated Phase II (!!)
- 2. Phase I
- 3. Phase II
I need to check and possibly change which Network address is allowed down a tunnel and check our Phase 2 IPSEC proposal. How would I do this on a VPN3000?
View 3 Replies View RelatedI am trying to find out what the 'normal' operating temperature of the CPU in a 3945 router is? We have just replaced some 2800 routers for 3945's and the NMS server initially complained about the new router CPU temperature being too high. Compared to the 2800 the CPU temperature is much hotter - 50 degrees celcius as opposed to 20-smothing degrees. I have searched but can't find what are considered 'normal'?
This is the output:
router#sho environment allSYSTEM POWER SUPPLY STATUS==========================Internal Power Supply 1 Type: DCInternal Power Supply 1 12V Output Status: Normal
[Code].....
We have recentrly replaced a 1700 router with Cisco 3945 router (Core Router) and the Channalised E1 interface is configured as given below: [code]
The issue happens intermittenly and makes network not reahable.Status of the links are UP/UP - No traffic forwarded through the link (Ser 0/0/0:1 and Ser 0/0/0:2) and at the same time not able to ping the local IP Address as well - 10.5.10.1/10.7.10.1.No issue on the Ser 0/0/0:0 link - Working fine.If you replace the new router with the old one all are working fine.
Our company have purchase new cisco 3945 and install SM ES3G-24-P.
Etherswitch already configure and can access service module. But assigned VLAN in a port and and ping the host connected on is RTO from the router.
Do i need to upgrade the IOS of the chassis so that the SM installed be detect as ordinary GE port?
How to find the maximum number of PRIs supported on a given router:
Let's say I need to find maximum number of PRIs I can connect on a C3945.
I see that I could buy for example (4) VWIC3-4MFT-T1/E1. The C3945 comes with (4) EHWICs where such VWIC3-4MFT-T1/E1 cards can be inserted. Since each VWIC3 has (4) ports each, that would be total of 16 PRIs.
Then let's say I want to put more Service Modules and allow me to expand it further. The C3945 can support up to (4) service modules.
If I want to put the maximum number of PRIs possible, is it right I could install (4) NM-8CE1T1-PRI. That would give me maximum of 48 PRIs in a C3945.
I wanted to confirm if the NM-2W is compatible with 3845 (says it is compatible) and 3945.I wanted increase WIC density in these routers to install ISDN HWIC-4B-S/T 4-port ISDN BRI High-Speed WAN Interface Card.However, i am not sure if these cards are compatible on the NM-2W. Is there any other NM* module that can extend WIC density on those routers.
View 1 Replies View RelatedI have 2 Cisco routers 3945. Use HSRP for links failover. Does exist any possibility (any protocol) which makes routers configuration's automatic synchronization (as failover for ASA firewalls)? I mean, if I will make any configuration changes on the Active router, automticly will taken this changes by the Standby router.
View 3 Replies View RelatedTransceiver integration within Cisco 3945.I need to supervise the DOM (Digital optical monitoring) capability of LX laser integrated within CISCO 3945.But after study of the Cisco DataSheet on transceiver module compatibility:
[URL]
I've seen that the SFP-GE-L model which supports DOM cannot be integrated within Cisco 3945.As specified in the datasheet, the only model of LX lasers compliant with CISCO 3945 is GLC-LH-SM (without DOM).However, after study of this datasheet, I can see that Cisco propose this Tranceiver model with DOM capability: GLC-LH-SMD But, so far I can't figure out if this model (GLC-LH-SMD) with the DOM capability is supported on Cisco 3945 and can be monitored through monitoring tools? If not, is there an other alternative to supervise the DOM capability with transceiver (LX) to be intergated within Cisco 3925?
We want to implement HSRP between two 3945 ISRs:
RouterModelIOSModuleR1Cisco 3945 Integrated Service
Routerc3900-universalk9-mz.SPA.151-1.T.binNME-AIR-WLC12-K9
R2Cisco 3945 Integrated Service
Routerc3900-universalk9-mz.SPA.151-4.M1.binNME-AIR-WLC25-K9
The issue that we are experimenting is that, although the module's interfaces are up and HSRP in correctly configured, the show standby summary displays that the Active router is local in both routers. We also have some GigabitEthernet in the routers and they are correctly running HSRP. Does the WLC Modules physically support HSRP?
Does 3945 support nat for SCTP ?
View 3 Replies View RelatedI have to replace the 3745 which is our edge router (running (C3745-ADVIPSERVICESK9-M), Version 12.4(23), RELEASE SOFTWARE (fc1)) with (I think) a 3900 (drawing from memory, I haven't actually seen the device yet).In an ideal world, I SHOULD be able to just set term length to "0", do a show run, copy that off to a text file, and then paste it into the new one...
View 19 Replies View RelatedI need to upgrade a router from a 2811 to a 3945.
2811 has the following modules:
I have a Ethernet module (SM-ES3G-16-P) installed in a 3945 router and noticed during first boot no licenses are active at all. I would assume at a mimimum ipbase would be active. With this module, does static routing work with just ipbase?
Example:
interface g0/1
no switchport
ip addr 192.168.254.2 255.255.255.0
[code]....
I have some lags on my 3945 router. From show ip nat statistics there is following output:
BR1#show ip nat statistics
Total active translations: 20 (0 static, 20 dynamic; 20 extended)
Peak translations: 8877, occurred 1w0d ago
Outside interfaces:
GigabitEthernet0/0, GigabitEthernet0/1
[code].....
Is Cisco 3945 router support URL based filtering . For example to block website [URL] but not the main site [URL].
View 1 Replies View RelatedI reported a really strange issue on a Cisco Router 3945. Here below info about release software used: [code] Please look at a brief extract of router running configuration file: [code] It’s an easy configuration of Extended ACL and the application on an Ethernet interface. The expected result is:
- The interface works properly (because access list is permitting every kind of data traffic in input)
- Checking “show access-list 180”, the counter of matched packets increments for all the packets that are forwarded inside the fa0/0/1.
But actually the Fastethernet 0/0/1 drops all the packets as if all the packets don’t match with access list (And this behavior is really incredible). The interface couldn't be used anymore because any kind of data traffic is denied.