L3 Core Switch VLAN Traffic Monitoring With IPS
Jun 9, 2012I have a L3 core switch with multiple VLANs setup. Is there a way to place an IPS so as to monitor the traffic passing between, lets say, VLANS 1-3 and VLANs 4-10?
View 19 RepliesI have a L3 core switch with multiple VLANs setup. Is there a way to place an IPS so as to monitor the traffic passing between, lets say, VLANS 1-3 and VLANs 4-10?
View 19 RepliesWe have a L3 core switch with multiple VLANs setup. Is there a way to place an IPS so as to monitor the traffic passing between, lets say, VLANS 1-3 and VLANs 4-10?
View 3 Replies View RelatedI have a requirement to monitor all traffic going from the internal LAN to the cloud. The LAN is a layer 2 VLAN which spans multiple Cisco 4507 switched and other smaller switches.
The VLAN has an IP address which the hosts use as the default gateway.
The exit port is on a Cisco 3600X switch connecrted to 4507 #1 via a 10G fiber link. 4507 #1 connects the rest of the LAN. Those switches interconnect via 10G fiber and 1G copper links.
Currently the monitor host is connected to a 1G copper port, configured as a monitor port, on one of the backside 4507s The switch manager says he has the switches configured so that I can see all traffic on the VLAN.
I need to create a DMZ Vlan. Core switch is a 6509. FW is an ASA5520. Need to create a VLAN for DMZ purposes for outside facing servers. NAT is used on ASA.
View 7 Replies View Relatedi'm already has one internet connection is connecting directly to the Core Switch 6509,Vlan 500 (1921.168.1.0) and the Switch is route any internet request with default route:
SW6509-conf)# ip route 0.0.0.0 0.0.0.0 10.170.10.10
10.170.10.10 is --> Next hop for the DSL router internal IP, and it's working fine.
The Problem: We have a new internet connection with new Vlan 600 (172.16.1.0) another ISP/ with another DSL router, so i need your kindly support and suggest how to connect both of them to exit from the Core Switch 6509. is it ok if i make another default route to the Next hop to the new DSL router as:
SW6509-conf)# ip route 0.0.0.0 0.0.0.0 10.80.10.10
10.80.10.10 is --> Next hop for the new DSL router internal IP.
is there any way like default route , route-map or any other features to :
route Vlan 500 (192.168.1.0) to exit from DSL 1 --> 10.170.10.10
route Vlan 600 (172.16.1.0) to exit from DSL 2 --> 10.80.10.10
We have an SG300 managed switch located in a small business of less than 10 PCs. There has been an ongoing issue with Internet speed. Is there any way that I can monitor the router for traffic so that I can see what might be causing the problem? I would like to focus on the WAN port and Internet activity particularly.
View 1 Replies View RelatedI have some specific traffic that I am attempting to pull off of VLAN 310 at the router, apply a route-map that sends this specific traffic back down to the switch on VLAN 55 (and the private address) and once it hits the switch apply a route-map on that VLAN 55 interface directing the same traffic over to the 72.x.x.9 address which goes through a FAP box back up to the router on another interface.
I have attached the config information, I know this isnt the best practice way to do this however right now this is how I have to do this.When runing a trace from the net traffic stops at .2 and when running a trace from my test /30 it stops at .2 as well. I am not sure what to do at this point
[code]...
We've had problems with our internet router losing connection to the internet. All traffic stops, a reboot resolves the problem. The router only has a public IP and it's connect through a dummy switch to the ASA as shown. I want to be able to monitor netflow or something and wondered if I could add a static route to the 10.x.x.x network and then add the netflow commands. Here is kind of how it looks, I simplified it some by removing unnecessary devices
View 2 Replies View RelatedI have a questions about protecting my network. My parent's have rented out my room, since I'm going to college, and I was wondering if there was a way to monitor the traffic that is going on in my network. Once the guy moved in, the wireless connection speed drastically decreased. I was barely able to sure the internet on my laptop. I currently have about 8 devices connected to my network. I am running a wired connection for my desktop so I don't feel any lag, but everything else runs on wifi.
View 1 Replies View Relatedhow do I monitor a computer through the wireless router
View 1 Replies View RelatedIs there any traffic interruption if turning on TE in a working MPLS core?
View 8 Replies View Relatedhow can I monitor and prioritise traffic on a ASR 1002? Currently we have allowed another organization to use our 1GB link and we would like to monitor what sort of traffic flows through it and want to prioritise the traffic depending on the applications.
View 1 Replies View RelatedI am new to the PIX firewall. And recently implemented the PIX 506e in my network. I wants to know how we can monitor the system that is generating the more traffic on Network through Firewall.
View 4 Replies View RelatedWe currently have a 3/3 Etherloop. We dont have any internal IT as we are still small and while not a networking guy I can at least understand what is going on. Right now at peaks we are hitting 100% utilization.
We run a call center in house so I am trying to determine at the very least how much of this traffic is from voice data compared to everything else.Was running through our networking configuration and it just seems off to me. The following is the flow.
-Etherloop Demarcation >
-Cisco Integrated Access Device >
-D-Link DIR 655 Wireless Router >
-24port HP Procurve switch >
-24port HP Procruve switch >
Everything up to the first switch is a single line. The first switch has all ports running out except 1 which goes to the second switch. The second switch runs out to machines as well.
I am at the networking level where I understand a switch but have no idea what the IAD really does between the etherloop modem and the wireless router.
For some reason I feel like the router should not be setup in that manner and should be off of the switch. With the cisco IAD running directly to the first switch. So my 2 big questions are.
1. Does this setup even make sense.
2. Whats the easiest way to monitor traffic, at the very least it would be nice to see real time up/down and be able to log in. Then I guess using ports figure out what is being used by voice. My first guess was just putting a machine between the IAD and first switch and monitor and log the traffic.
I'm thinking of switching to another ISP which is faster and cheaper than who I'm currently with. Only problem is they have data caps. Any way to log inbound/outbound traffic usage with this router so that I can make sure I'm not going to hit monthly limits?
View 5 Replies View Relatedi'm going mad on following problem. I'm trying to get 2 networks seeing each other while one of the network is a non VLAN network and the other one is a VLAN network.They should use the same interface so i added VLAN e0/0.122 to the interface e0/0.Send a ping from my asa to both gw-IP's made me happy at first. In second in figured out that i cannot reach any client in the other network. For testing purpose i created an permit acl to any/any for both networks, but the packets still get dropped by the default implicit rule. (deny any/anyMaybe i'm to stupid for this
View 10 Replies View RelatedIn my Company there is a core Switch 4500 series , to which in the 1st module servers are connected and in the second module 2960 , 3750 series Switches are connected, problem is that the Utilization of Core switch is very high and the core gets hanged. the configuration of the senerio is VTP domain i.e core is Server and the rest are Clients....
View 12 Replies View Relatedthere are more than 15 servers which include xen,esx,vmware,also san etc..which are connected to L3 core switch directly. And vlans are created for each.....xen,iscsi,vmware,xen,server. wanted to know is there any other technology other than directly connecting servers to core switch and assigning vlans that can be used in place?
View 4 Replies View RelatedI am facing issue with LMS 4.0. The Core Switch is showing in RED color,and device type as UNKNOWN. It was working fine but some how it is showing this problem.
View 14 Replies View RelatedHow to configure SLA monitoring in 3560 switch. I have 2 DSL links terminating in switch and want to do WAN failover. I know how to do in ASA and router. I found IP SLA and track commands on switch but don't know exactly how to use them.
View 2 Replies View RelatedI want my core switch auto failover to other route if the primary route is link down it will go to the secondary route
example
ip route 0.0.0.0 0.0.0.0 1.1.1.1
ip route 0.0.0.0 0.0.0.0 2.2.2.2 100
if my core switch detect next-hop 1.1.1.1 it will re-route and go to the 2.2.2.2 for the next-hop my core switch using static route and cant support ip sla
Is this a good idea to connect access layer directly to core layer with fiber and omit the distribution layer?
View 2 Replies View RelatedI am getting following error in Cisco 6509 switch.BUt there is no impact in the switch.
: %MAC_MOVE-SP-4-NOTIF: Host 0000.0c07.ac01 in vlan 694 is flapping between port Te8/1 and port Te7/1
29:33.959: %MAC_MOVE-SP-4-NOTIF: Host 0000.0c07.ac01 in vlan 269 is flapping between port Te7/1 and port Te8/1
[Code].....
I tried to implement WLC5508 in my network but when I came to connect it to the switch core which is a Catalyst 4000 the link didn't get up. This switch module is a fastethernet, I wonder if that might be the problem since I also tried connecting my laptop to the WLC and the link got up.
If that might be the cause, is it possible to get WLC to 100 Mbps?
What is the VPC configuration template with two core 6509 switch.Pls find the attachment for Network topology.
View 3 Replies View RelatedMy CORE Switch 4507R Suddenly restarted (Powe is good) , and gets the business down for 30 Mts,my boss came to me and asks why it has restarted , what is the root cause of this restart, i dont have any syslog or NMS enabled in my network to be informed
View 6 Replies View RelatedDHCP configuration on CISCO core switch 4507R switch.With one vlan and multipul vlan both configuration using any ip address range.
View 3 Replies View RelatedI got new task moving WS-3560X24 port layer 3 core switch from one branch to be moved to my branch and connect WS3560 layer 3 core switch my site network. Both core switch has got 3-4 cisco 2960 switch underneath and lots of vlan offcourse. I am thinking about creating etherchannel between these two switch.
View 2 Replies View Relatedwe need to relocate our core switch 6500 with sup 720 to another bldg
what is the command to gracefully shut it down I mean power off
I was told one can just switch off the power
what is location of flash file in 6500 Series switch and how can we take back of IOS image for 6500 series.
View 4 Replies View Relatedi have configure new ACE 30 module on top of 6500 core switch , the issues am facing whenver i want to access to https://ACE_IP and after i enter the user name and the password , it's forwared me to the follwoing page: is there anything should i configure to avoid this page ?
View 1 Replies View Relatedi configure the uplinks as etherchannel, i configure two svi interface on core switch int vlan 51(192.168.51.1) and int vlan 50(192.168.50.0) for this two svi int i configured two dhcp pool , when any of the pc is requesting for dhcp add i am getting dhcp request failed/
View 7 Replies View RelatedI'm trying to decide what switch to use as a core for 500 users. I'm currently looking at either 2 x 3750X stacks or 2 x 4500s with dual SUPs and PSUs, both options will provide the number of switchports required without the need for additonal access layer swiches. Which switch option is best to go for here? All of our services will be located in our data centre which will be connected using 2 1000Mbps MPLS circuits. I wont need any advanced L3 features and we are not likley to scale over 450 users. Also is it ok to use the dual switch stacks or chassis to provide the collapsed core/access layer or is it best to have a dedicated core (using one of the above options with less switchports) and having a dedicated accesss layer using 2960Gs for example. Our structured cabling terminates in a single comms room so we wont need to distribute switches throughout the office.
View 3 Replies View Related