Cisco Wireless :: Context Aware Licenses Difference For MSE 3310?
Mar 11, 2012
I am getting a hard time in order to understand the real difference between the two types of context aware licenses for the MSE:
1 . AIR-CAS-1KC-K9 - Context Aware License For 1K Clients and Tags (RSSI based)
2. AIR-CAS-1KT-K9 - Context Aware License For 1K Tags(RSSI, Chokeponts and TDOA)
For a regular network without any devices with tags such as RFID, I understand I do not need to get the .2, only .1, even though the .1 also is shared with clients at 1K of each. Also, the .2 does not say clients, only tags and advanced features as TDOA. Going through the Q&A it does not clearly says the difference, when to use one or the other.
View 3 Replies
ADVERTISEMENT
Feb 6, 2011
I would like to know does MSE 3350 supports HA mode,I have 2 M|SE 3350 appliance and I want to configure one as primary and second as redundent for the primary,I am not finding any documentation for the same in the cisco website.
View 2 Replies
View Related
Oct 21, 2009
Does the MIR feature on the MSE 3350 requires the Context-Aware Service to work? I read that the system uses location, signal strength and coverage data in conjunction with monitor mode APs at each exit to trigger the roam. I just don't know if MIR does this on it's own or needs to get location from Context-Aware service.
View 2 Replies
View Related
Jan 13, 2013
difference between License types on Cisco Prime Infra 1.2 as below
Base License
Lifecycle management License
compliance management license
Automated deployment Gateway
Assurance Management License.
View 4 Replies
View Related
May 7, 2013
Is it possible to use 1 or 2 of the 4 gigabit ethernet ports from one ACE straight into the other ACE for redundancy? So ACE_01 gig0/4 to ACE_02 gig0/4.If so, is it a case of just having the layer 3 config instead of trunking etc..Also - is it possible to create a context within the same vlan as the Admin context?
View 4 Replies
View Related
Jul 1, 2012
On my production environment I have a firewall with already two contexts defined (15% of CPU used) and I want to add a new one.
This context is going to use the same interfaces as the others contexts. When I will enable the context, can I have some sort of repercussion on these two context ?
View 3 Replies
View Related
Jan 13, 2013
I have two ASA 5510 in an Active/Active failover configuration; On the first ASA I have a license for five security contexts, on the second one I have the default two. On the pair I configured seven security contexts and everything works as expected; so far so good. Let's suppose now that the first ASA (the one with the license for 5 contexts) goes up in smoke; all the contexts migrate to the surviving firewall and life is still good. But what happens if, for some reason, I need to reboot the second ASA before the first one is repaired? My guess is that it will come up with just its own license for two contexts and that I will not be able to operate all my virtual firewalls.
View 2 Replies
View Related
Apr 26, 2012
MSE can not boot.MSE show error log. [code] How to recovery MSE 3310,I find in documents not show method recovery. Any solution recovery MSE 3310
View 2 Replies
View Related
Feb 24, 2013
I've got an MSE 3310 that came with four-post rails for rack mounting. These came without instructions and we are having a hard time figuring out exactly how they work. They say General Devices C-300-S-124-RC-MOD
View 4 Replies
View Related
Jun 8, 2012
I recently configured CISCO 3310 box with MSE version 7.2. Services are up and running in the box, I could add the MSE to WCS and also able to track the location using WCS. However, I could not connect the third party software to MSE web services to get the location information there. When I hit the server url "https://<my mse>" I get list of possible services like:
Error 404 - Not Found.No service matched or handled this request.
Known services are:
http://my server:8880/hs/
http://my server:8880/mdp/
http://my server:8880/admin/
[code]....
I browsed through the documentation (CAS_71.pdf) and found a text saying:
Note Port 80 will be enabled on the MSE if the enable HTTP command was entered on MSE. Ports 8880 and 8843 will be closed on the MSE when the CA-issued certificates are installed on the MSE. I am running the test system so I do not really want to install CA signed certificate, so I used self signed certificate and restarted the server, but it did not work.
View 10 Replies
View Related
May 11, 2011
I am trying to upgrade an MSE from version 6 to 7.0.201.204. I am able to copy across all the files and have tried using WCS and FTP for the CISCO-MSE-L-K9-7-0-201-0-64bit.bin file but the installation procedure always fails.
I will download all the images again tonight. Is there a way to delete the images from the /opt/installers/ directory?
Also the upgrade procedure in the 7.0.201.204 is pretty bad, there is no detail in any of the steps.
Here is output from the upgrade -
[root@SDC-MSE-01 installers]# dirCISCO-MSE-L-K9-7-0-201-0-64bit.bin database_installer_part3_4.zipdatabase_installer_part1_4.zip database_installer_part4_4.zipdatabase_installer_part2_4.zip
[Code].....
View 6 Replies
View Related
Mar 24, 2013
I have a scenario where I may have to run VRFs on a router that is currently facing an ISP as a BGP peer. peering two BGP peers, one of which is VRF aware (and hence configured within the address-family ipv4 vrf X subsection) and the other is not? (the BGP aware and internet facing segment will go into its own VRF where previously this router was only in that VRF and hence had no awareness).Are there any caveats or restrictions? Does the presence of the VRF throw the ISP peer?
View 3 Replies
View Related
Jul 18, 2012
Are the RV042 and RV082 routers SIP AWARE?I haven't had any luck finding documentation stating such.
View 2 Replies
View Related
Jul 5, 2011
After install the License for 25 AP more to a wlc 5508 with 100 AP base license and reboot WLC, the License base for 100 AP´s and this new one 25+, it's not anymore on the system, after reboot the WLC show 0 AP´s supported, and the only one license appear are 500 AP evaluation with Time expires.
View 1 Replies
View Related
Apr 17, 2013
I have 2 5508 that are currently running as active with 150 licenses each. I want to go to HA SSO can 100 of the licenses be relicensed to the primary since it only requires 50 licenses to convert an active license 5508 to standby HA SSO?
View 3 Replies
View Related
Apr 13, 2012
I installed Ad-Aware Pro 30 day trial. I enabled safe browsing but it doesn't allow me to open some websites. Ok, perhaps thats the point of safe-browsing but I need to enter those sites. So, I decided to disable it, but I don't know how. I clicked "off" on Ad-Aware's "Home" window, but the sites still not working. Theres a possibility that the websites I'm trying to enter are not going to work after I disable safe-browsing because there's something wrong with internet(I'll open another topic for that). But still, I'd like to see Firefox's "cannot found" window, not Ad-Aware's.
View 9 Replies
View Related
Feb 22, 2012
I performed a software reboot on the MSE3310. After the reboot the MSE was no longer visible on the network. I went and consoled into the device and it was operational. I ran the msed stop and msed start commands. I got this message when it tried to load eth0.Bringing up interface eth0: e1000 device eth0 does not seem to be present, delaying initialization.Earlier in the day I had updgraded the firmware from 6.0 to 7.0.230.0.
View 6 Replies
View Related
Sep 16, 2007
do i still need ACS if i have the NAC appliance say 3310.
View 3 Replies
View Related
Dec 20, 2011
Yesterday I discovered the primary and secondary CAS were both in active state and reporting their fellow peer as dead (I did this using ./fostate.sh), causing authentication errors on the network. I had to stop the perfigo process on the primary one to restore service.
After closer investigation I have discovered that when I put my laptop on the same subnet as their eth2 interfaces (eth0, eth1 and serial are not used for heartbeat only eth2), I can ping the eth2 ip address for the primary device, but can't ping that of the secondary device. See configs and outputs below. I am also wondering why the secondary CAS shows its eth0 and eth1 interfaces as fake0 and fake1.
[root@CAS-SEC ~]# ifconfig eth2
eth2 Link encap:Ethernet HWaddr 00:1F:29:5D:1C:6C
inet addr:172.29.254.10 Bcast:172.29.254.11 Mask:255.255.255.252
UP BROADCAST RUNNING MULTICAST MTU:1500 Metric:1
RX packets:11205 errors:0 dropped:0 overruns:0 frame:0
[code].....
View 2 Replies
View Related
Mar 13, 2011
We have a cisco services contract with IBM that supplies us access to the usb drivers, firmwares etc, and we have a Cisco 5508 6.x running ~30 Cisco 1252's, some 1231's and (potentially) some 1262's once the firmware update is done.
We have a base-count license(permanent) of 50AP's, no expiry
So I guess my questions are:
1) When flashing the new firmware - do the licenses require any sort of modification, or will they work as per normal
2) Are any serial numbers or codes required to be entered once the 7.0.98 firmware is installed?
3) I assume that the old firmware/config becomes 2nd in line to the primary boot option of the firmware during boot process?
View 6 Replies
View Related
Jul 19, 2010
We'll be implementing Cisco NAC guest server for Guest Wireless users, ( Model #3310), the question is do we need to configure separate physical interface for User authentication requests( from Wireless ) and a separate Interface for Guest server to talk to AD for SSO?
View 2 Replies
View Related
Aug 27, 2012
The rouge access points being detected by the 5508 WLC are not showing up on the Context Aware tab of NCS? I have a MSE 3310 installed and configured and it shows to be syncronizing with the WLC. I'm sure I am missing some part of the configuration just not sure where.
View 3 Replies
View Related
Feb 12, 2012
I have a Cisco SG200 26 Port Switch, 2 Cisco WAP4410N Access points, and a VLAN aware Router. I have created 4 VLAN's. For the sake of this conversation lets call them.
98 - Intel Vpro
99 - Management
100 - General
101 - Guest
The Access points are capable of doing V LAN tagging so I plan on having them tag a guest network as V LAN 101. That can get sent to the V LAN aware router and out. No problem. I have some devices, or management pages that I don't want accessible from the general network. (Intel V pro KVM, Remote Management Cards, AP Config Menus, Switch config menu...) . I need to be able to take a V LAN unaware device, plug it into port 1, and have it communicate with V LAN 98, 99 and 100.
View 1 Replies
View Related
Jul 18, 2010
I'm trying to configure the NAC Profiler with a 3310 CAS Collector. In the "Edit Collector" menú, it shows all the modules as "Running", except for the NetWatch module which shows a state "Invalid configuration file (missingInternalAddress)".
I configured the eth3 interface of the CAS as a monitor interface in the Profiler (see attached image), and I tested that the SPANed traffic actually reaches that interface from the access switch. I'm using software version 3.1.0_24 in both the Profiler and the Collector.
View 2 Replies
View Related
Jun 9, 2003
I'm working for KOREA TELECOM, and currently providing MPLS VPN.We're planning to provide our customer with traffic report using NetFlow..
I read some documents which reads Netflow ver.9 can be enabled on Cisco GSR 12000 Series, but no mention about catalyst switches. Netflow ver 9 can be activated on catalyst 6500 series.. because the point where switch is located already have mpls encapsulated packet ( mpls vpn packet).
View 3 Replies
View Related
Aug 19, 2012
Ive got a customer asking for 2 products to be installed on an ASA 5520?
ASA 5500 SSL VPN 10 Premium User License and AnyConnect Essentials VPN License - ASA 5520 (750 Users)?
Am i correct in saying only one of those licences will actually be active at any time?
View 3 Replies
View Related
Feb 4, 2013
We have a 5520 ASA with a 100 user ssl license. We need to increase this but 250 is overkill. Is there an option to just add 50 more licenses or do we have to go up to 250?
View 2 Replies
View Related
Mar 6, 2011
Need to know the number of VPN licenses that is available,
1) I have site to site vpn connections.
2) SSL VPn (browser)
3) IPsec client vpn.
How many vpn connections are allowed? can multiple connections be made using the same username for IPsec VPn clients.?
View 2 Replies
View Related
Feb 15, 2011
Any trouble with IOS XR licenses dissapearing after a power off ?I was able to add them correctly, but after the power off "show licenses" gives and empty message, but the logs states the licenses are already there.I'm working with a CRS-3 with IOS XR version 4.0.1.
View 1 Replies
View Related
Apr 3, 2012
I have site with two links, one for internet traffic and one for voice, they have seperate public IP ranges. There is an existing site to site VPN between the site and a datacentre. The site device is a 2801 with a WIC-4ESW and the datacentre is an ASA 5510. The internet link is heavily contended and due to certain priority users complaining about the pseed of their connection, we decided to route these users over the voice link, and I did this using PBR. I created an SVI on the router and used one of the ports on the 4ESW to connect to the voice router.
I wanted to also create another site to site with a peer address on the voice link, so I configured a VRF, put the SVI into that VRF and created a static default route for the VRF. I set the VRF for a subnet of the existing LAN using PBR and I created a keychain for the VRF, set up an isakmp profile for that VRF and created the crypto map.
The site to site won't come up, and debugs are showing some weird stuff in the Proxy ID's and indicate that there is no crypto map exists for the interface.
I wish I could use VTI, but due tio the ASA at the remote end, I can't.The configs and debugs are below.
ip vrf VOICE_ROUTER
description **VRF for VPN PBR and QoS for Finance Users**
crypto keyring VPN2MH vrf VOICE_ROUTER
pre-shared-key address 2.2.2.2 key *********
[code]....
View 2 Replies
View Related
Jan 29, 2011
We are looking at buying an ASR1001 but I'm confused by the Licenses and I've struggled to find the information in the cisco data sheets. The router will need to run IPSEC on gre tunnels and I figure that I need the IPSEC license (FLSASR1-IPSEC) do I also require the Advanced IP Services license? or is all that is required the IPSEC license? Is there some sort of list that shows the feature set of each license, they cost the same amount so I'm not sure which license fits what we require best or if we need both.
View 1 Replies
View Related
Nov 9, 2011
is that possible to increase the number of SSL VPN User Licenses on ASA5510-SSL100-K9 using for example L-ASA-SSL-50= ?Is there any limitation ?
View 3 Replies
View Related
Sep 16, 2012
I have a cisco ASA5505, with base license, it appears I can only have 2 ssl/webvpn connection running at any one time. How can I upgrade only the webvpn portion to allow more licenses?
View 2 Replies
View Related