I have a DIR-615 Rev. A1, and i'm trying to set up a DCHP reservation. Whenever I try, I get an error saying my MAC address must start with 00. I'm running Firmware 1.10.
On my EA4500 i've given my Sony Google TV Box (connected by wifi N) a static ip address under "DHCP Reservations". However is there any way to add a DNS server address to this reserved IP so that only the Google Box is affected by the DNS, all the other connected devices remain unaffected? Presently i enter the required DNS address in the google box but i would prefer to do it on the EA4500. I'm using the latest Cisco Cloud fw on my router.
I am having an issue with connecting to the internet on my laptop. I have never had this problem before and after google-ing it, it appears that a lot of other people have the same issue. I had a message pop up that said something along the lines of 'another user on your network has the same ip address as your computer.' I lsot my connection, but was then able to re-connect. However, now I am permanently disconnected from the internet. I have reset my wireless adapter and that hasn't worked. I'm currently using my mum's computer and her internet is working fine.
I would like to authorize a friend in my house to access my wifi I was told to go to http://192.1.1 and enter the MAC address of my friend. However on the site I was unable to enter the information into the box - how can I authorize my friend to use my wifi?
I am trying to configure ASA to assign same static ip address to certain user(User1) every time when he connect to network via AnyConnect client. We have Windows AD and use LDAP AAA server for authentication of VPN Remote Access users. I found in document "Cisco ASA 5500 Series Configuration Guide using the CLI, 8.2" in section "Configuring an External Server for Security Appliance User Authorization" explanation and configured ASA and User Properties in AD on exectly same way:First, I assigned static ip address in properties menu(dial in section) of User1 in Active Directory. Then I created ldap attribute map where I mapped msRADIUSFrameIPAddressattribute to IETF-Radius-Framed-IP-Address attribute. At the end I applied this ldap attribute map to AAA server group LDAP.
Although I set this up, whenever I connect using User1 credentials from AD I still get ip address from vpn pool instead static ip address that I configured. In output of debug ldap 255 command I found line "msRADIUSFramedIPAddress: value = -1062718956" but not any line that prove mapping above mentioned attributes.It seems like mapping is not working.All AnyConnect users get parameters from defined internal group policy on ASA,including addresses form pool,dns server etc. I want that User1 get static ip address and inherit all other parameters from group policy.
I have a problem with LMS 4.2 user tracking.When I generate a report on all my network all mac address are ok but there is no Hostname/Ip address in the result, except for 2 equipments.the only difference between these 2 equipements and the rest of the network is that they are connected on a not routed vlan. All the other phones, computers are connected on a routed vlan.I have a Nexus 5k as core and 2960 as access. Routing between vlans is done with the NexusMy DNS server is ok and reachable.
A short background. Our corporate SSID is being migrated from using PEAPv0 to EAP-TLS. This restricts access only to company notebooks. Additionally we have barcode scanners which are used to inventory assets. Those devices are not able to use EAP-TLS as they cannot be integrated in the domain and being unable to do certificate based authentication.
As a workaround we planned to use another SSID with access to the same network but using PEAPv0 as authentication method, basically the same SSID but with a different name. As this naturally allows anyone to access the corporate network with a valid username/password I now wanted to add another step into the authentication process - the MAC of the device. I know I can do the filtering at the WLAN controller, but as it has a limited database as well as the fact that it is cumbersome to maintain the MAC list on all the controllers I thought I can do it over our ACS system.
I am now trying to accomplish the following: The user gets authenticated via the internal user store, which is succesful. Now I want to authorize the user via the MAC address, which is stored in the internal host store of the ACS, if access is granted or not.
For this I created the following policy:
Service Selection Policy -- (Rule based result selection)
-- (NDG:Device Type in All Device Types:Wireless And RADIUS-IETF:Called-Station-ID contains <SSID>) | Result: PEAP access
-- Default | Result: DenyAccess
Service PEAP access Identity: Internal Users -- (Single result selection) Authorization -- (Rule based result selection) -- Internal Hosts:HostIdentityGroup in All Groups:Valid_MACs
When I then try to access the wireless network I won't get authenticated. The error I get, when I look into the logs is: 15039 Selected Authorization Profile is DenyAccess
Is it not possible to use one identity store as "attribute database" for the other identity store?
I am having an issue with the user VPNs. For users connected via the AnyConnect VPN client, all of their Internet traffic goes out their local Internet connection, since I am using split tunneling. However, I need a specific public IP address to go through the VPN tunnel and out the DIA at the main office, rather than the user's local internet connection. I managed to have this IP address go through the tunnel to the ASA at the main office, but it appears that it gets blocked somewhere there, or maybe the return traffic gets blocked. I am using an ASA 5520 at the main office, with software version 8.3.
i have configured wlc 2504 .in that i have configured two interfaces.one is guest, 2nd is internal user, the pblm when user try to connect with that contain ssid user not getting ip address,
i have connected only one link between core to wlc on port 1.for guest interface i used port 4.but no physical link.
New install discovered router and switches at same location with no issues. However when running an acquisition on those switches most fields are populated except the ip address of end host associated with port. Mac address, port speed, etc. but no ip address info on per port basis. Using snmp v3 if that makes a difference.
I have a running L2TP/IPsec VPN setup with authentification against a radius server (freeradius2 witch mysql). I would like to have some of my VPN users get a fixed IP address instead of the dynamically assigned IP Pool.
The radius server is returning the correct parameters, I think.
It´s a Cisco 892 Integrated Service Router. Code...
At first I use ACS 4.2 to create static ip address user for remote access VPN,It's easy,just configuration it at user set>Client IP Address Assignment>Assign static IP address,but when I use ACS 5.2 I can't find it.I try to add IPv4 address attribute to user by read "ACS 5.2 user guide" ,it says this: [code] I do this,but it's not work.When I use EasyVPN client to connect ASA 5520,user could through authentication but will not get that static IP address which I configuration on Internal Users.so,what should I do,if anyboby knows how to use ACS 5.2 to create a static ip address user for remote access VPN.
We are running LMS Prime 4.2.3 on a Softappliance. We have a Cisco Switch behind a Non Cisco Layer-3 Device. In the end host tabe we see only the MAC-Addresses of the host connected to this switch. No IP-Address. The corresponding IP-Addresses are in the ARP-Table of this non Cisco Layer-3 Device. The arp table can also be read by snmp. Is it possible to get the ip address in the UT End Host Table in such an environment?
Actually I have a lab with ACS 5.3 running with 802.1x, but when when the user is successfully authenticated, it's assigned and IP address from the DHCP server, is there a way to assign a static IP address depending of login username??
At first I use ACS 4.2 to create static ip address user for remote access VPN,It's easy,just configuration it at user set>Client IP Address Assignment>Assign static IP address,but when I use ACS 5.2 I dont't know how to do it.
I try to add IPv4 address attribute to user by read "ACS 5.2 user guide" ,it says this:
Step 1Add a static IP attribute to internal user attribute dictionary: Step 2Select System Administration > Configuration > Dictionaries > Identity > Internal Users. Step 3Click Create. Step 4Add static IP attribute. Step 5Select Users and Identity Stores > Internal Identity Stores > Users. Step 6Click Create. Step 7Edit the static IP attribute of the user.
I just do it,but it's not work.When I use EasyVPN client to connect ASA 5520,user could success to authentication but will not get the static IP address which I configure on Internal Users,so the tunnel set up failed.I try to Configure a IP pool on ASA for ACS users get IP address,and use EasyVPN client to connect ASA , everything is OK,user authenticate successed.but when I kill IP pool coufigurations and use the "add a static IP address to user "configurations,EzVPN are failed. how to use ACS 5.2 to create a static ip address user for remote access VPN?
I have 5508 controller in my lab. I am working on a project to set up a public internet but with some condition.
- User should able to connect to the SSID without any authentication.
- Once user will connec to the SSID it should redirect to an external URL which indicates terms and condition and email address field.
- User should enter his/her email address in email addrss filed and click I accept button.
- Once that is done then he/she is allowed to access internet.
We are not sure how can we achive this as I do not know what should be the return value for WLC to allow that user to go through or what should be the settings on the WLC to redirect to the page.
I have seen a settings on web authentication for external URL but I guess it is only for username passwor or Radius authentication. While in this case I do not want to use any authentication just an accept buttor or Decline button and all good to go.
I have a Blackberry Playbook and have come into a problem with it.I can't set a Static IP on it so would setting a DHCP Reservation in my Linksys E2500 router act as a static IP?
I'm using TP Link router. I went to DHCP reservation list and provided mac address of a computer and ip address to reserve the ip address for the computer. But it still not changing my current ip address. I rebooted router, rebotted computer, but it still not changing to the reserved ip.
why my switch is not picking up a reserved address from the second pool below?console output with dhcp debugging on.ps. I have also tried 'hardware-address 0024.f769.bf40 1' which is hardware type 'other'
Config
ip dhcp excluded-address 172.23.23.1 172.23.23.49 ! ip dhcp pool main import all network 172.23.23.0 255.255.255.0
Two people went on a business trip with their laptop and when they came back they could no longer access the data server. Cannot map the network drive either.
1. Every desktop PC in office can see and access the data server fine.
2. We have a DHCP and DNS server (on one PC; Windows Server 2008), but we had to shut down the services because internet and email didn't work when the DHCP and DNS server service was on. I am confident that this is due to the recent shutdown of the company e-mail server (now outsourced) and the server settings needs to be reconfigured. The described symptom persists even when the DNS server service is stopped.
3. Upon taking a closer look at the DHCP reservation settings. The reservation status indicates as "Reservation (inactive)". I don't know the MAC address of the device, so I have no idea if the values are correct. Tried rebooting the server, delete and recreate the reservation, reboot router; no cigar.
4. Using the coworker's laptop, the data server is shown in the "Other devices" section even with the DHCP sever disabled, but shows error that it cannot access it.
5. All users, with the exception of the data server, have dynamic IPs assigned.
6. DHCP, DNS server is set to 10.10.10.2, Router is set to 10.10.1, Data server is set to 10.10.10.175. 10.10.10.2 is also an accounting server which can be accessed by everyone even in the midst of this mess.
I have simple set-up in my network with 2 routers connected to each other, 2nd router is just kind of wireless access point and switch to extend cable sockets upstairs.I have DHCP reservation on the first router and it works perfectly. Second router has DHCP server disabled, and I have configured DHCP reservation same as the first router, but it gives random IP addressess instead of reserved. how can I configure second router to obtain MAC DHCP RESERVATION TABLE from the 1st router?
Ever since I updated my firmware to 1.01 my web interface for the network settings screen has been random. Somtimes it shows a DHCP reservation list, sometimes it doesn't. Sometimes there are reservations, sometimes there are selectable radio buttons. I guess I'm just trying to figure out if this is a firmware issue or not. Ever since I updated the firmware it has been flakey.... But I was having issues with other stuff before that. When there are no reservations, sometimes i can't even select any computers because there aren't any in the drop down, when all of my hardware is online?
I purchased the Belkin N600DB, but I can't seem to find a way to reserve IP addresses for my connected devices. I need to run a server through the router, but (naturally) it keeps changing my local IP address. I cannot find the reservation utility.
We have 10MB dedicated Internet BW and want to run VC device and due to heavy traffic and BW high utilization at peak hours, VC performance is not sufficient. We would like to reserve 2MB for VC device. How much possible to fix up this configuration in ASA5505 version disk0:/asa724-k8.bin [URL]
I made a reservation then cancelled it online, but Sheraton Dallas Hotel charged my MC for one night for "No show ". Because they did not send me e-mail confirmation for both reservation and cancellation, I have no way to prove my cancellation. In e-mail they said: "At the time you booked your reservation online you did not have your email address noted" I have been traveling for the past 10 years and reserved Hotels online, and I never forgot to give my e-mail address not even once, so how could they said that I forgot this time ? I believe in keeping expenses low, if I don't give my e-mail address, I may end up paying expensive long distance call to communicate, as many hotels have no toll free numbers for dispute solving, so it's impossible that I forgot to gave my e-mail address! Unless someone manually erased my e-mail address for unknown reason. This I see as indication that a computer system error existed at that time What do you advice me to do to solve this problem ? Maybe computer system record ? In that case what particular system file I should ask them to mailed to me. Is there any way I can spot if there was any tampering? Like erased my e-mail entry, erased cancellation request?
When I'm in Setup -> Basic Setup -> click on DHCP Reservation, I don't see all entries I've created earlier but computers that connect still have the correct IP address on the network; I don't know if I can create additional entries if nothing appears
When I go to Status -> Local Network -> DHCP Client Table the list is blank but some computers are connected to the networkI'm using firmware 1.0.01 build 10 Feb 21, 2011, language = English, Firefox 4.0.1.Rebooting the router doesn't change anything, I can't see connected LAN equipment and DHCP Reservation is empty despite the fact I've created entries.Together with the "Access Restriction" which doesn't allow to block a computer from 10pm => 8am unless you create 2 rules + various issues with attached USB + 2.4Ghz signal that is far from optimal (never able to achieve more than 144-N-Mbps) and I ask myself if I will not contact the store where I purchased this unit and ask a refund (and buy something else from another brand...)