HTTP GET Packet Sequence
May 20, 2011
We have a web server running Joomla.There is a plugin to the website which downloads an iCal file from the internet via a URL. The site gives an error when retrieving this file. I can pull the file down manually via a browser, or doing a wget from the command line. However, the plugin fails. [code]I'm sure there's a packet being dropped in here somewhere, but from which side? Why on earth this would work fine through a browser or wget, but not via the PHP code which executes this GET?
View 3 Replies
ADVERTISEMENT
Jul 29, 2012
On my network I have a Netgear ReadNAS connected and I'm using an add-in (ReadyNAS Remote) that simplifies the log in to for both internet and LAN-users. However, I get a lot of the following entries in the log when that add-in is being used.
When an internet user log in via ReadyNAS Remote: "Blocked outgoing TCP packet from 192.168.0.xxx:3649 to xx.xxx.xxx.xxx:50125 with unexpected acknowledgement 3320366884 (expected 754541166 to 755655246)"
When a LAN-user log in via ReadyNAS Remote: "Blocked incoming TCP packet from 69.xxx.xxx.xx:80 to xx.xx.xx.xxx:50329 with unexpected sequence 3004123085 (expected 3004136875 to 3004393915)"
how to prevent them from occuring?
View 13 Replies
View Related
Feb 7, 2012
How to mirror port only http get packet on 4948 or 6500 ?
View 4 Replies
View Related
May 9, 2012
I am testing out some inspection options on an ASA 5505, and I am running into a situation in which applying a http inspection is dropping all outbound http traffic. I get a "protocol violation" error in the logs.
Here is the setup: I'm not sure why the web traffic is getting dropped.
policy-map type inspect dns preset_dns_map
parameters
message-length maximum client auto
[Code].....
View 2 Replies
View Related
Feb 3, 2013
I've no experience in VoIP and been ditched with looking at an IP trunking problem on our network.The users where getting dead lines or silent calls, but it seems after re-seating IP trunking card here and there around the network a few times, all is settled to normal. Unfortunately it's a third party that look after the majority of the telephony, and as they can't figure out why this happens they often say it must be a problem with the data WAN it traverses.So I started trying to figure something out, I have IPSLA monitoring setup in Solarwinds on most of the routers and all looks well from that aspect; MOS is 4.34 and Jitter is only 1ms at worst. I've taken a wireshark packet capture of the IP trunk by mirroring the port on the switch at a main site where I've been told a lot of calls are routed through. Inside wireshark I used the 'telephony> voip calls' tool and decoded all the calls. The output is showing most calls have 'Out of Seq' and 'Wrong Timestamp' at around 25-50%. Although these calls seem fine otherwise, and I took this capture whilst the fault was not occurring. I know I need to capture next time when the fault is occurring, but this is what I have for now.How can i fix this or even start to troubleshoot further?
p.s- each site has two routers running GLBP to the WAN, over two ISP locations. I read something about having consistent routing to avoid packets arriving out of sequence, but haven't found anything yet to say this is how I can/should do that.
View 9 Replies
View Related
Oct 12, 2011
Has anyone come across a ping cmd utility for windows with more functionality like the linux one? What I want really is sequence numbering and RTT measured with a few decimals.
View 3 Replies
View Related
Apr 25, 2011
I have a concern about my system. I am running Win XP Pro on my computer and when it boots up and I log in, it takes about two minutes with the internet first, AVG following and windows firewall last amongst other apps.Is there a way that I can increase my loading speeds plus changing the bootup sequence so I don't run high risk of infections from trojans or malware?
View 1 Replies
View Related
May 17, 2011
For about 3 minutes the 2.4GHz and 5GHz LEDs began to flash in sequence, [2.4-5-2.4-5-2.4-5-Both-Both], it just kept doing that. During that time wireless connections were unresponsive. When they went back to normal I checked the router and it didn't reboot or anything. This is the first anomaly I've ran into running the 2.05NA FW.
View 6 Replies
View Related
Apr 14, 2011
I just installed a new ACS 5.1 to authenticate wireless PEAP users, so I created an Access policy "WirelessUsers" with identity store being Windows Active directory and all domain users are selected, and create a service rule that dictates that if the authentication protocol is radius, network device belongs to WLC device group, the result service will be "WirelessUsers", so this part worked perfectely, all domain users are able to gain wireless access via their DOMAIN/usernames and domain passwords. Now I want ACS local indentity store users (those local usernames can be the same or different from their AD usernames) to be able to manage those controllers, so I created another access policy "DeviceAdminUsers" with identity store being local users, another service rule which says that if the authentication protocol is radius, network device belongs to WLC device group, the result service will be "DeviceAdminUsers". The problem is that with the setup, whenenve when I try to SSH to WLC, ACS always put me in "WirelessUsers" access policy, even the login name does not have DOMAIN pre-pended or the login name simly does not exist in AD. if I put the second rule in front of first rule, I am able to authenticate with ACS local username/password and gain access to WLC, but wireless users will fail to authenticate, because ACS is trying to put regular wiress users in "DeviceAdminUsers" access policy. I would expect if username does not exist in AD, ACS should proceed with next rule. Similar requirement was easily achieved in ACS 3.3.
View 5 Replies
View Related
Mar 2, 2012
I've heard mixed things about the use of DHCP release messages. I've heard that some operating systems don't bother with them at all, which makes sense because many users disconnect the network media without shutting down the workstation. Which operating systems actually send out release messages as part of their shutdown sequence?
View 5 Replies
View Related
Sep 14, 2011
When accessing the camera on mydlink, or on a browser using http://x.x.x.x/mjpg.cgi, I would expect the net bit rate to be substantially less than for a sequence of jpg's, since true motion-jpg uses a lossy form of intraframe compression typically yielding a 20:1 data reduction (according to wikipedia). Indeed, I can readily see this reduction in mjpg clips made on my Canon S5is camera. It's not clear whether that is happening with the d-link DCS-930L camera (640x480, quality "high", java).
View 5 Replies
View Related
Jan 17, 2012
I have a Dell Latitude E6410 laptop that does not have a Serial port or a Break key on the keyboard. I have a Prolific PL2303 USB-to-Serial adapter which is installed and I can access the CLI ok with this setup via HyperTerminal.
My problem is that I am unable to break into ROMMON using the break sequence Ctrl + Break (as there is no break key). I have also tried TeraTerm with the break sequence of Alt + B.
Additionally, I have tried setting the baud rate to 2600 and pressing the space bar for 10 seconds to no avail.
when I may need to break into ROMMON.
View 6 Replies
View Related
Oct 28, 2012
I have a 2514 Router that i have tried numerous times to access the break sequence and do a pwd reset, while connected to the console port.. How ever its whopping me good..
[code]....
View 4 Replies
View Related
Sep 23, 2012
I'm configuring a 2 PowerConnect in stack mode. I can't seem to resolve this error - Recieved Frame Check Sequence Errors.Both stacks are in the lastest firmware version 3.3.4.1. Physical connections are tight.
View 1 Replies
View Related
Jan 19, 2012
What key sequence to go into ROMMON mode from the console port for VSS system with 2 VS-S720-10G?
View 3 Replies
View Related
Jun 11, 2012
One of my customer has raised a new requirement for implementation of short sequence number format support in PPP multilink header for Cisco MWR 2941 E1/T1 serial interface, whereas router is supporting long sequence number format.here is the output of "debug ppp negotiation" command:-Currently in the MWR debugging logs we can see that by default MWR is sending long sequence header format as below
*Mar 13 01:32:55.438: Se0/2:0 LCP: O CONFREQ [REQsent] id 238 len 25
*Mar 13 01:32:55.438: Se0/2:0 LCP: MagicNumber 0x26CDF693 (0x050626CDF693)
*Mar 13 01:32:55.438: Se0/2:0 LCP: MRRU 1500 (0x110405DC)
*Mar 13 01:32:55.438: Se0/2:0 LCP: EndpointDisc 2 16.16.16.11 (0x1307021010100B)
*Mar 13 01:32:55.438: Se0/2:0 LCP: MultilinkHdrFmt seq long classes 2 (0x1B040202)
While as per the requirement PPP multilink header should support short sequence.
MWR configuration:
controller E1 0/2
framing NO-CRC4
clock source line
channel-group 0 timeslots 1-31
[code]....
View 0 Replies
View Related
Apr 14, 2013
we have multiple Video production networks, with Video servers (AVID Unity ISIS) connected by 10GE fiber links to 4948-10GE switches. On almost every of these switches, I see more or less "Sequence-Err" interface errors. We do not currently have a known problem because this, and no other errors are seen. But I would like to understand the error, and therefore I would like to find out, what a sequence error means, what the cause is, and what the impact (to a frame) is?
By the way, it is well-known that the ISIS Video server does generate very excessive UDP data bursts. Maybe this matters? On Cisco doc I did not find an answer. The document "Troubleshooting Switch Port and Interface Problems" does unfortunately not refer to "sequence-err".
Here is an example output:
WS-C4948-10GE#sh int t1/49
TenGigabitEthernet1/49 is up, line protocol is up (connected)
[code].....
View 2 Replies
View Related
May 29, 2012
I am doing image upgrade on Catalyst 6509-E. During TFTP image transfer to sup-bootflash I always see !!!!!!!!!!!!!!!!!o!!!!!!!!!! "o" out of sequence packet. Although the image size seems to be correct at the end but there is always some "o" packets.
I am assuming not, but I haven't tried loading with the image after seeing this.
View 2 Replies
View Related
Dec 3, 2012
We have a ACS 4.3.2 installed with users authenticating against an Active Directory database. The AD database not only authenticate the users but also assigns the group that is used to select IP address pool.Now the requirements require to use token authentication with SafeNet. This authentication uses the same username but the password is composed of the original password + OTP.The problem is that the SafeNet server doesn't return the group membership.I've read about the Identity Store Sequence in ACS 5.x and I think I could use it in the following sequence:! configure an Authentication Sequence using the SafeNet token server (this works with ACS 4.x)I configure an Attribute Retrieval Sequence against the AD database. This would use the username only, no password and would retrieve the group membership.
View 1 Replies
View Related
Jan 24, 2012
We are running ISE 1.0.4 with a requirement that on the surface is simple, but fails to execute properly no matter how I tweak it it. It is:
VPN users either need to be within a certain AD group or They need to authenticate against RSA.
I set authentication to use an identitysequence with RSA listed first, then AD second.
I set authorization to check identity server (using network access:AuthenticationIdentityStore).
- If it’s RSA, pass it.
- If it’s Active directory, AND the condition with a check on that group membership. Pass if both pass.
- Set the default authorization rule to deny access.
This should work. Here’s where it breaks down. It all stems from the fact that the same userIds exist in RSA and AD and that ISE steadfastly refuses to attempt the second identity server method listed in the sequence if RSA is listed first.
• If I list RSA first and the “authentication failed” policy is set to Reject: For users not in RSA that I want to authenticate against AD, it rejects – it attempts against RSA but never hits AD (second server listed in the Identity sequence). This is what is brokenThis works for users in RSA
• If I list the RSA server first and the “authentication failed” policy is set to continue Users not in RSA will pass authentication that shouldn’t because the network access: AuthenticationIdentityStore value will be pointing to the RSA server, regardless of whether they actually passed to that server or not.Effectively users can connect regardless of whether their password is right or notThis option sets it to proceed from authentication to authorization
• If I list AD first in the sequence Since the same ID exists in both AD and RSA, it’ll fail as bad password against AD. It'll never attempt against RSA.
Am I missing a simple fix for this? I have a testbed in which I can simulate the issue but since I don’t have an RSA server handy, I’m using an identity sequence with AD and fallback to internal. It works as I’d expect, falling back from AD to local if the user doesn't exist in AD. If the user is in AD, it never tries local and shows the attempt as a bad password.
View 3 Replies
View Related
Oct 10, 2011
I'm a beginner on networking, and now i've found a problem while i do an exercise.i have one pc connected at one allied telesys but the last one is a trasparent bridge...the AT is connected whit a fortigate the fortigate does nat..and is connected whit the modem.i can go on server, modem receive ping from pc..is everything right..settings.
View 1 Replies
View Related
Aug 27, 2012
I have reset my wireless connection numerous times, rebooted, tried wireless and wired and continue to have the same result - great signal; cannot connect to any webpage. Ran network diagnostics and everything seems to check out except the "DNS Server."
Microsoft Windows XP [Version 5.1.2600] (C) Copyright 1985-2001 Microsoft Corp. C:Documents and SettingsMarcy Musselman>ipconfig /all
Windows IP Configuration Host Name . . . . . . . . . . . . : MARCYS Primary Dns
[Code].....
View 8 Replies
View Related
Mar 1, 2012
I cannot access http sites unless I manually write the prefix https. The issue is mainly on Wordpress blog pages and I have to keep writing https if I want to access other blogger's page.For the time being I am using Chrome's extension "Https Enforcer" which slows down my browsing speed but eventually the sites open. I have to disable it if I have to use google images. I use windows 7, Chrome browser, Pocket Modem.
View 2 Replies
View Related
Jan 21, 2012
i had done inter-vlan routing , attached a DNS server to that network, i didn knw how to config a server to act as http??? so that i can view webpages forn systems of that network??
View 3 Replies
View Related
Sep 19, 2012
I'm following what I believe to be the instructions for allowing SSH and HTTPS access, but alas, I cannot use anything but HTTP for accessing this switch.
View 3 Replies
View Related
Feb 3, 2013
The white page keeps saying can not display web page. Network Diagnostics says Network connection; Connected
View 2 Replies
View Related
Apr 19, 2013
I am looking for a device that sits on a network and allows me to get to other devices on the network remotely, either through ports or through their mac addresses. Each of the device can be configured through a web address config page. As it stands right now, every time we have to change configs on one of the devices we have to send a tech out and pull each device out and manually configure it. I was wondering if anybody knew of a device that could do what I am asking.
View 1 Replies
View Related
Sep 30, 2011
This one is kicking my butt.I have an MPLS network with three stes.Site1 is where all my servers reside.Site2 and Site3 just have a few PC's.From Site2 and Site3 I cannot access the server at Site1 via http://IPADRESS.Of.Server.I am able to ping just fine.I thought it may be a router issue but... there is is a single PC at Site2 that can access it with out any issues.All the IP settings (Default GW, DNS, etc...) match the other PCs.The windows firewall is turned off on all PC's. AVG is disabled on the PCs.
View 9 Replies
View Related
Sep 12, 2011
how do I install Firefox if I cannot connect to the internet? Can I "save" it to a disc or flash drive from another computer.
View 7 Replies
View Related
Aug 13, 2011
My desktop PC has occasional hiccups in which I can't connect to any website (via any browser, I've tried Firefox, Chrome, Opera & IE) for short periods of time (usually ~1 minute) but all other Internet connectivity seems to be normal. (I can ping Google for instance, and I remain connected to Google Talk, but I can't load the Google website.)
I recently did a fresh install of XP Pro SP3 and am pretty confident that there is no malware running on the system. (I'm running Microsoft Security Essentials and Windows Firewall but I also did a Malware Bytes scan which uncovered nothing.) The desktop is connected wirelessly but I don't suspect an issue with the router because my laptop (via wireless) and my girlfriend's desktop (via wired) can surf the web just fine when my computer is experiencing issues.
I checked for proxies (both in the browser settings and in Windows settings) but everything appears to be setup correctly (that is, unproxied.) DNS is set to the proper DNS servers for my ISP (Cox) but I also tried switching to Google's DNS servers with no luck.
View 3 Replies
View Related
Jun 27, 2012
I have a small problem with a visual network on packet tracer. While i have two networks connected one ospf and one rip (v2) and they are fully functional with each other, i cant get access to the Http server on the ospf network from a host machine on the RIP network. (each network has a HTTP and one DNS - DHCP server). I will also include the Packet tracer file.
View 2 Replies
View Related
Mar 22, 2011
I have been doing a lot of research trying to find like an IT program to RDP for free to very little for personal use that is very easy to understand for the end user.An example of what I what I am speaking of, is if you deal with Verizon, or most major computer companies (Dell, etc) they can send you a URL or give you a code to use at a site, that basically lets them remote to your PC. It may require the user to install a small add on, or to allow some type of permissions, but doesn't require them to download huge programs or sign up for accounts.
I myself will create an account of course, and as I said even pay a small fee for a good program. But it's strictly for personal use and I am sure there is a good open source program I can use that I can just make a donation to.
View 6 Replies
View Related
May 26, 2012
My WLC 4400 have run the os 4.2.207.54, my ap type is AP1020.And client user authentication by web-auth.Sometimes my user complain cannot login web authentication, because he connot open the web login page.And I try to monitor the WLC by SNMP, I see the http no response.
View 1 Replies
View Related