Frame Relay Hub And Spoke Resiliency?
Apr 7, 2011
I am having real problems trying to build resiliency into a hub and spoke frame relay scenario. I know the hub is a single point of failure. Is there any way to put some resilience into the network? There is 4 attached branch offices.
View 8 Replies
ADVERTISEMENT
Apr 23, 2013
Network is 10.254.0.0/16
snag.gy/3Y8aN.jpg This is the network image.
This is my subnetted connections: http:[url]....
I can ping R2 to R5 but not R5 to R2. I have spent about 10 hours going through my network and code to no avail. I think it is the frame relay that's causing the error but not sure.. I just checked and I think R6 and R5 are not getting their OSPF updates by trying show ip route
Here are my configs: http:[url]....
View 6 Replies
View Related
May 21, 2011
Main site have 8 departments and each department have 60 pc's,remaining sites each have 6 departments and in each department have 40 pc's and in the design of WAN connection you use frame relays and that is the 100% growng hosptals and clock speed is 64000 bits/sec and security must don't access the unautheraised users from out side....how can I do this?
View 5 Replies
View Related
Nov 10, 2011
Provider T1 handoff with two PVCs to their MPLS cloud to a 2911.One Internet PVC and one for the MPLS including a SIP trunk .
Is there a way to use QOS to have the router prioritize one PVC over the other.Always service the MPLS/SIP PVC over the Internet ONLY PVC?The MPLS/SIP PVC will have QOS for voice but needs to be prioritize.Other option will be to police down the Internet PVC to a value which will leave the required total Kb for the voice priority KB.(FR PIPQ works if the PVC is for voice only.)
View 1 Replies
View Related
Mar 24, 2012
working through a lab and can't seem to configure frame relay on subints. I assume it's not supported but this seems basic; am I doing something wrong?
View 4 Replies
View Related
Sep 21, 2012
I have been trying to make rip work on this frame relay with multipoint configuration (hub and spoke) and I also configured a loopback interface on each of the routers and configured rip with the loopback address. I observed that the routers (cisco 3600 series) are not sending or receiving any RIP updates through their serial interfaces but are sending through loopback interfaces i configured (debug ip rip).I can ping all routers but cant ping their loopback interfaces because RIP updates are not sent or received by them.
R1#debug ip rip
RIP protocol debugging is on
R1#
*Mar 1 00:09:46.759: RIP: sending v2 update to 224.0.0.9 via Loopback1 (1.1.1.1)
*Mar 1 00:09:46.763: RIP: build update entries - suppressing null update
[code]....
View 5 Replies
View Related
Apr 27, 2011
I started studying yesterday for CCNP Route and I'm already stuck. Stupid Frame relay. Basic topology attached, 1 Hub, 2 spokes. I have EIGRP working correctly and each spoke can see all routes correctly. The Hub is on a Multipoint interface with split horizon turned off.
View 15 Replies
View Related
Apr 2, 2012
I've a home lab which consists of three 2610xm routers and I have configured two routers back to back with FR subinterfaces. The commands are used are;
R1
frame relay switching
int s0/0
encap FR
no sh
clock rate 64000
frame-relay intf-type dce
[code].....
Everything works great with this config and I know how to configure without lmi too. My question is more for the CCNA exam and fill the gaps in so to speak. The question is when you configure FR with static mappings and inverse arp do you need actual frame relay switches on the other side of the link or can I configure on my home labs routers. I know I am gonna try and configure this as well, but can I configure multipoint on my third router with a different physical interface. Like R1 with s0/0 to R2 s0/0 and R1 s0/1 to R3 s0/0 with subinterfaces.
View 2 Replies
View Related
Sep 23, 2012
I 'm trying to set up a home lab with a couple of 28XX and 2651XM series routers.I would like to simulate a frame-relay connection between HQ, Branch1 and Branch2 . All of them are conneced to a PSTN switch (2811 router) via T1 cross over cables. The connectivity is like this. [code] I have configured all the routers and FR switch with necessary configuration. However the link between HQ and Branch1 is not coming up. On both the routers I could see the line protocol is down.I have pasted the configuration below.[code]
View 4 Replies
View Related
Dec 14, 2010
As U know cisco feature for frame-relay is creating mfr link and binding them to physical interfaces I did so but my MFR links doesn't get up?
PS. router is ASR1004
frame-relay switching
interface MFR0 description Virtual FR ---> Serial0/0/0 no ip address encapsulation frame-relay IETF frame-relay lmi-type ansi frame-relay intf-type dce frame-relay route 908 interface Serial0/0/0 908!interface MFR1 description Virtual FR ---> Serial0/2/4:0 no ip address encapsulation frame-relay IETF frame-relay lmi-type ansi frame-relay intf-type dce frame-relay route 900 interface Serial0/2/4:0 900
interface Serial0/0/0 (Smart serial interface) description Serial ---> E1 no ip address encapsulation frame-relay MFR1
interface Serial0/2/4:0 (E1 serial interface) description Link ---> S no ip address encapsulation frame-relay MFR0
View 1 Replies
View Related
Jun 14, 2012
I am installing an ASA 5520 and I have a problem on accepring the incoming traffic from an external office connected via Frame Relay.
On my OUTSIDE interface I have both the internet traffic and the external office traffic incoming. What comes from the external office is visible as 10.1.0.0/16.
I have to allow this traffic to enter the internal network, without any control. I would also keep the original IP address.
I have configured the Firewall but I don't know how to setup the NAT.
View 2 Replies
View Related
Mar 13, 2012
I'm looking to test fram relay connections in a lab environment i'm building at home. I have a couple of 2610 routers that are barebones and am looking to get some serial modules. Are (2) WIC-2T's all I would need to create those test connections? Also on a side note are the any modules for the 2610 that have fast ethernet connections. I would like to have that so I can create a router on a stick model off of the 2600's.
View 1 Replies
View Related
Dec 18, 2011
IOS 15.1(4)M1.
I am trying to setup my new 2901 running 15.1(4)M1 for frame realy via a VWIC3-1MFT-T1/E1 card. Now I have set up plenty of frame relay connections via older serial cards, but I just cannot find any documentation on how to do this on one of the new VWIC3-1MFT-T1/E1s. None of the commands I am used to seem to even exist. None of the
encapsulation frame-relay ietf
frame-relay interface-dlci 16 ietf
seems to be there. How to configure the card in IOS 15?
View 1 Replies
View Related
Feb 24, 2013
We have frame relay T1 circuit at one of our remote site. Which is connected to our core frame relay router which have DS3 circuit.Now we bought second T1 line at remote site and now I have to configure Bounded T1 with Cisco 1921 router.good config example or document on how to configure frame relay bounded T1 ?
View 1 Replies
View Related
Apr 21, 2009
I have a 3845 running 12.4.13a which I want to upgrade to 12.4.24.After upgrade one of the interface that is configured for frame relay doesn't work anymore.In fact is the "service-module t1 timeslots" commands that can not be executed and the router throws that error.I tested this behaviour on two 3845s and the result is the same.Is this a bug or is an workaround for it?
View 3 Replies
View Related
Sep 26, 2012
Transitioning from 3825 to 3945 (OS is 15.0(1r)M13 c3900-universalk9-mz.SPA.151-4.m4). Turning on FDL on the 3825 was easy but the same command on the 3945 doesn't work.
View 3 Replies
View Related
Jan 22, 2013
I have a NM-1CE1U working on my router 2600 , configured with frame-relay . But seems it does not work on my router 2811. I have check that the replacement is HWIC-1CE1T1-PRI , right ?
But the problem is these two modules have different interface type , I want to keep my cable interface type and find one module card working on 2800 or 2900 router , can configure frame-relay.
View 2 Replies
View Related
Jan 10, 2012
QoS on an MFR interface/subinterfaces. We have a remote site with two bundled T1's terminating on a 2951 router for a total bandwidth of 3072. The circuit is provided by Paetec and the subinterfaces are designated for internet and MPLS traffic respectively. The issue we are facing is with outbound voice quality. It seems that no matter how we apply QoS, either to the main MFR interface or the MFR subinterfaces, voice packets do not seem to be prioritized. We tried FRTS, which slowed the entire link down to a crawl, we tried applying a class map to the main interface as well as a service policy, none of which seemed to affect anything.
class-map match-all VOICE
match ip dscp ef
class-map match-any SIGNALING
match ip dscp af31
match ip dscp cs3 (code)
View 4 Replies
View Related
Jan 27, 2013
I have catalyst 3750 I want to controle traffics on every port I have tried Frame-Relay Traffice shaping and Quality of service but there is no support for these commands in the switch.do we have any way to limit traffic on every port in catalyst 3750 and 2960 switches ?
View 4 Replies
View Related
Nov 13, 2011
I need to get some low volume, interactive data, prioritized on frame relay PVCs across our network. I have followed the CBWFQ examples from cisco.com, but my test packets are still showing latency over 1 second. My lab set up has a corporate connected gateway router linked via FE to testrouter 50. TR51 has a T1 frame relay loop to another router acting as a frame relay switch. The other side of the FR switch has a 56k link to testrouter51. I am sourcing test pings from my desktop PC, that are marked as AF43, and leave at a rate of 1/second, when the response comes back in time. I am using a Smartbits to generate some default class traffic at a rate of about 56Kbps only in the 'outbound' direction, toward TR51, as this emulates a file copy from corporate to remote sites, that is causing the AF43 traffic to suffer. Here is the relevant config on the TR50 device:
class-map match-all rtu-data
match ip dscp af43
!
policy-map frame-56
class rtu-data
priority percent 20
class network-mgt-data
bandwidth percent 5(code)
View 1 Replies
View Related
May 19, 2011
Application is that need to configure the VOIP with the existing Frame relay network ,where VOFR command is not shown in the router when type yhe command router config#dial-peer voice 123 need vofr On the 3945 router where in the router it is not accepting the above command,
View 8 Replies
View Related
Aug 20, 2011
why the WAN protocols like Frame-relay, HDLC and PPP are called Layer2 protocols?What is the address scheme they use?
View 5 Replies
View Related
Apr 21, 2013
I am looking for any PDF, recomendation, link for best approach for secondary ACS as resiliency.
View 4 Replies
View Related
Mar 7, 2012
I have a Cisco 1841,c1841-ipbase-mz.124-20.T4.bin, with 2x HWIC-1ADSL-M.I have managed to bond 2x DSL with PPP multlink with the config below and traffic is being sent equally across both DSL circuits. However if i disconnect either of the DSL cables connectivity fails. I was expecting connectivity to continue to work just over the one circuit. [code]
View 1 Replies
View Related
Oct 26, 2012
I have a site that is very dense, but not high throughput. I have 4x48 port switches all 3560 and 1 2851 router. The switches are pretty much full to the brim but the site is never completly lit, they just like to move around a lot. However i wanted to provide this site with as much redundnace as possible. So my first thought was to build redundant pathing with the switches so that they could loose a switch and not have a single point of failure. So therefore I built a ring. SW1 to SW2, SW2 to SW3, SW3 to SW4, SW4 to SW1. To make this even more redundant against port hardware failure, i used two uplinks for each and built an etherchannel. is it good practice to use Etherchannel and Spanning Tree together?So i now have a good redundant LAN switching topology. I have multiple VLANs at the site so I am using Rapid-PVST. I did not set priorities on the switches as I don't think that is really truly necessary, but correct me if I am wrong!Ok so next step is to make sure that my WAN connection for all of these switches is redundant. I have a 2851 router, with 1 of the built in interfaces dedicated to our ethernet hand-off WAN connection (MPLS in this case using BGP routing). The other would be used as an uplink. I also got an additional card for the Router so that i can have redudant local LAN connections. I then built up some IRB bridges so that I could uplink the Router to SW1 and SW3. Is it good practice to use IRB Bridging on a Router to provide redundancy?So at this site i have the first part running, and it works pretty well but I have had 1 strage issue, which has to do with after a failure and re-convergence of spanning-tree, it seems that DHCP starts failing to work. I actually had to go into each of my switches make a dummy VLAN interface and put on helper-addresses to get them to work. They are not L3 switches (programatically speaking) so they should just forward the broadcast packet onto the router, which DOES have the helper-addresses programmed,Also at another site I have the bridge router setup configured, just without so many switches, and no etherchannel between the switches. This seems to work flawlessly, but the site is very small so performance issues would be difficult to spot since they are just thin-clients coming back to a Citrix server over a single T1.
View 1 Replies
View Related
Feb 18, 2012
I'm setting up a L2L VPN Hub and Spoke. I have 3 sites (1 HUB and 2 SPOKES).
HUB-----------SPOKE1
|
|
|
SPOKE 2
HUB and SPOKE 1 is okay. My problem was the communication between HUB and SPOKE 2. PING failed on both directions. BTW, I am simulating this only in GNS3. :-). The configuration for HUB and SPOKE 1 are the same also for HUB and SPOKE 2.
Here is my show isakmp sa and ipsec sa on HUB
ciscoasa# sh isakmp sa
Active SA: 1
Rekey SA: 0 (A tunnel will report 1 Active and 1 Rekey SA during rekey)
Total IKE SA: 1
[Code].....
View 4 Replies
View Related
Nov 19, 2011
suppose i have 2 hub location and one spoke and i want to config DMVPN between them and want to keep 1 HUB as active and 2nd HUb as passive then how its possible.
View 2 Replies
View Related
Aug 12, 2012
I currently have a "hub" ASA 5505 that links to 4 sites running 877 routers. From the hub network i can connect to all sites fine but what i would like to do is to almost compartmentalise the various VPN links into little clusters.The hub ASA 5505 basically provides IP telephony through the VPN's from a PBX allowing the users at the other end of the VPN to make outgoing calls and recieve incoming calls. However, a couple of the sites would like to be able to call between eachother internally via the hub. This obviously requires traffic to be allowed between their various networks. Currently when you attempt an internal call it rings but there is no audio either way. I assume this is due to access list restrictions. I am not even sure whether what I am trying to achieve is possible. I've attached the hub and 2 spokes below. The ideal end result would be interconnectivity between the two spokes via the hub, from reading up it would seem that its possible but i can't quite get my head around it! Would it involve using different subnet masks at the hub?
View 1 Replies
View Related
Jan 12, 2012
i am trying to set up a tunnel connection between twO 2800 routers A<->B
1) destination ip is-204.x.x.x-ROUTER A2) source ip is 166.x.x.22-ROUTER B The router B has the modem connected to GE0/1 whose interface ip is 166.x.x.22 The ip-forward-protocol nd is configured as below
ip route 204.x.x.x 255.255.255.255 166.x.x.21
Also tunnel 1 configuration,isakmp policy are configured properly when i run show crypto isakmp sa it shows MM_NO_STATE,i checked the preshared key on both ends and they are same.whenever i remove the ip address of the interface Ge0/0 and ip route i can ping the 166.x.x.21 which is the modem gateway.when i revert back the configuration to the above ,the ip 166.x.x.21 cannot be pinged,the dsl connection is live though.ways to fix this so that i can make this tunnel state to QM_IDLE?
View 1 Replies
View Related
Jul 11, 2011
I want to build a "hub and spoke" topology for one of my clients. For the "HUB" , I'm planning to use an SA540, with a static public IP provided by a 4Mb SDSL. For the "spokes" (21 at the moment), I'm planning to use RV120. They will be behind a NAT, provided by a "SAGEM LIVEBOX", and a static public IP. The boss will connect to the HUB using Cisco VPN client, or quickVPN, and get access to all the spokes. Some spokes will have to connect to each other, via the HUB. I searched a long time on this forum and reading documentation, but I didn't find at the moment the answer to my question : is this topology suitable with the choosen hardwares ?
View 7 Replies
View Related
Mar 23, 2011
Imagine MPLS network. Total of 4 sites.
HQ-HUB is the only site with access to the Internet.
So if Site1 or Site2 or Site3 need to access the Internet, traffic will have to go through HQ-HUB and from there reach the Internet.I have routes 2851's on the spoke sites. Which command or mechanism you would explore in this case to make the spoke sites point to the HQ-HUB to reach the Internet?
Would you do this based on DNS settings or getting an access-list & static route defining when the spoke routers traffic need to go the internet, point to the HUB-HQ as the default?
View 3 Replies
View Related
Mar 26, 2012
I'm trying to set-up 3 remote access groups on an ASA5520 running version 8.4(3) software so that remote clients connected via Cisco VPN Client can also access spoke networks which are also connected to the ASA. I've previously set this up on ASAs running v7.2 software without issue but don't seem to be able to do the same here and can't for the life of me figure out what's wrong!
I have set-up the 3 remote access groups:
Group 1 - subnet 192.168.1.48/28Group 2 - subnet 192.168.2.0/25Group 3 - subnet 192.168.3.0/25
My remote access user groups can all connect to the head office subnet (10.0.0.0/8) without issue. But only one of the groups (192.168.1.48/28) appears to be able to access the spoke sites (172.30.10.0/24 and 172.30.20.0/24) that I have set-up. However, I can't see what the difference is between the 3 groups I have configured so can't understand why it works ok for one group and not the others?
When I use the packet tracer, it tells me that the flow is being dropped at the VPN encryption phase but why is that? How can I find out more? Here's the relevant config on my ASA:
!same-security-traffic permit intra-interface!crypto dynamic-map remoteuser 5 set transform-set ESP-3DES-MD5crypto dynamic-map remoteuser 5 set security-association lifetime seconds 28800crypto dynamic-map remoteuser 5 set security-association lifetime kilobytes 4608000!crypto map outside_map 65000 ipsec-isakmp dynamic remoteuser!ip local pool pool1clients 192.168.1.49-192.168.50.54ip local pool pool2clients 192.168.2.1-192.168.2.126ip local pool pool3clients 192.168.3.1-192.168.3.126!access-list split-tunnel-pool1 standard permit 10.0.0.0 255.0.0.0 access-list split-tunnel-pool1 standard permit 172.30.10.0 255.255.255.0 access-list split-tunnel-pool1 standard permit 172.30.20.0 255.255.255.0 !access-list split-tunnel-pool2 standard permit 10.0.0.0 255.0.0.0 access-list split-tunnel-pool2 standard permit 172.30.10.0 255.255.255.0access-list split-tunnel-pool2 standard permit 172.30.20.0 255.255.255.0 !access-list
[code].....
View 12 Replies
View Related
Aug 9, 2011
Is there any suggested upper limit to a single EIGRP hub-and-spoke design (i.e. with a single central router)?
Router is a 2900 ISR
I'm vaguely aware of a similar design limitation with OSPF areas where no single area should contain more than 40 - 80 routers. Could be heresay...
View 13 Replies
View Related