Re: [c-nsp] BGP to OSPF redistribution

2010-01-13 Thread Tolstykh, Andrew
http://www.cisco.com/en/US/docs/ios/12_2t/12_2t8/feature/guide/ospfshmk. html Using a Sham-Link to Correct OSPF Backdoor Routing Although OSPF PE-CE connections assume that the only path between two client sites is across the MPLS VPN backbone, backdoor paths between VPN sites (shown in grey in

Re: [c-nsp] Cisco VPN and 64 bit Windows

2009-12-10 Thread Tolstykh, Andrew
Never had one in the last two years (10.5 through 10.6.2), connected pretty much constantly. TIA, Andrew -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Kaj Niemi Sent: Thursday, December 10, 2009 6:03 AM To: Ian

Re: [c-nsp] OT: Cisco WAAS Setup Scenario

2009-05-18 Thread Tolstykh, Andrew
If the WAE at the head office accelerates traffic going to a spoke site without a WAE, would the traffic be dropped? No If the hub site receives non-accelerated traffic from spoke sites without WAE, would the head office WAE drop the traffic? No Cisco WAAS is also transparent in the sense that

Re: [c-nsp] passive ftp static nat

2009-04-14 Thread Tolstykh, Andrew
Dan, In addition to the outbound CBAC inspection map you also need to create another ip inspect cbac_in map (add ftp/data app inspection) and apply it in the inbound direction on SVI VL800. Andrew Tolstykh Senior Network Analyst Integrys Business Support, LLC atolst...@integrysgroup.com (312)

Re: [c-nsp] Packet Loss on 6513

2009-04-08 Thread Tolstykh, Andrew
What is connected to your SUP-720 Gi7/1 interface? Can you post the output of 'show int gi7/1'? -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Mesiatowsky, Shawn Sent: Tuesday, April 07, 2009 11:11 AM To:

Re: [c-nsp] NBAR support for 7600-SIP-400 ?

2009-03-12 Thread Tolstykh, Andrew
Do you have ip flow ingress/egress or ip route-cache flow enabled on this interface? Also is this a P/PE MPLS router? SUP-32 supports NetFlow just fine. Thanks, Andrew -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Andy

Re: [c-nsp] Interesting NAToverload issue

2009-02-26 Thread Tolstykh, Andrew
Long term your client should consider migrating to the RPC over HTTPS connectivity model (single HTTPS connection per client). http://technet.microsoft.com/en-us/library/bb123741.aspx --- Exchange Server 2003 enabled users to use the Windows RPC over HTTP Proxy component to access

Re: [c-nsp] 6500 and VSS

2008-12-25 Thread Tolstykh, Andrew
SXH3a/4 spurious interrupts raised on the following events: Archive feature triggered on the write mem L3 port-channel bundle member interface addition with the IP address still configured on the member interface (symptoms include: freeze up for 30 seconds, spurious interrupts with the path to

Re: [c-nsp] SXI out

2008-11-12 Thread Tolstykh, Andrew
Link to the release notes / new features etc. http://www.cisco.com/en/US/docs/switches/lan/catalyst6500/ios/12.2SX/rel ease/notes/ol_14271.html#wp4208036 -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jared Mauch Sent: Wednesday, November 12, 2008 6:53

Re: [c-nsp] 2800 for VPN Server site-to-site and remote access

2008-07-07 Thread Tolstykh, Andrew
Use multiple statements within a single crypto map configuration: crypto map iosvpn 5 ipsec-isakmp set peer X.X.X.X set security-association lifetime seconds 28800 set transform-set aes-sha match address vpn_XXXgard5 reverse-route crypto map iosvpn 15 ipsec-isakmp set peer X.X.X.X set

Re: [c-nsp] 2800 for VPN Server site-to-site and remote

2008-07-07 Thread Tolstykh, Andrew
. Message: 2 Date: Mon, 07 Jul 2008 12:55:45 -0500 From: Tolstykh, Andrew [EMAIL PROTECTED] Subject: Re: [c-nsp] 2800 for VPN Server site-to-site and remote access To: [EMAIL PROTECTED], 'Everton Diniz' [EMAIL PROTECTED], 'cisco-nsp' cisco-nsp@puck.nether.net

Re: [c-nsp] Broadcast storm on Cat6500

2008-06-26 Thread Tolstykh, Andrew
Do you have NIC teaming activated on the server? show mac-address-table address HH.HH.HH -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of David Coulson Sent: Thursday, June 26, 2008 9:13 PM To: Cisco Subject: [c-nsp] Broadcast storm on Cat6500 We

Re: [c-nsp] Maintenance management

2008-05-19 Thread Tolstykh, Andrew
http://lamp.elasalle.com Awesome reports, SmartNet contract management (even if it was purchased from a 3rd party vendor), credit manager, ability to change coverage level, associate modules with the chassis, update site information etc. On 5/19/08 1:00 PM, Phil Mayers [EMAIL PROTECTED] wrote:

Re: [c-nsp] Cisco 7206VXR

2008-04-18 Thread Tolstykh, Andrew
Same issue with PID: PA-2FE-FX running on 12.4(19); crash dump on hard boot. Fixed by changing the image to 12.4(8d) - works like a charm. 12.4(17) should also work fine. HTH, Andrew -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jason Berenson Sent:

Re: [c-nsp] Cisco 7206VXR

2008-04-18 Thread Tolstykh, Andrew
this issue on both routers. -Original Message- From: Jason Berenson [mailto:[EMAIL PROTECTED] Sent: Friday, April 18, 2008 2:33 PM To: Tolstykh, Andrew Cc: Justin M. Streiner; cisco-nsp@puck.nether.net Subject: Re: [c-nsp] Cisco 7206VXR Andrew, It looks like it may be this G1. I'm

Re: [c-nsp] Wanting to learn Juniper...

2008-04-10 Thread Tolstykh, Andrew
That's just like your own opinion man (Big Lebowski). Cisco IOS is in fact extremely intuitive, there is nothing intuitive about the JunOS IMHO. I will get my JNCIE just to have it, but why in the world would I possibly deploy it in production when Cisco's gear is flawless? Configuration rollback

Re: [c-nsp] Cat6500 - Support for MPLS and IPv6

2008-04-01 Thread Tolstykh, Andrew
SXH2 is now available for download. Feature Navigator is not yet updated with the feature set for the SXH2 code though. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Gert Doering Sent: Monday, March 31, 2008 1:20 AM To: Juno Guy Cc:

Re: [c-nsp] CAB-SFP-50CM= question

2008-02-12 Thread Tolstykh, Andrew
: Tuesday, February 12, 2008 5:05 AM To: Tolstykh, Andrew Cc: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] CAB-SFP-50CM= question On Feb 12, 2008 5:21 AM, Tolstykh, Andrew [EMAIL PROTECTED] wrote: The interface will end up in the err-disabled state due to the unsupported gbic detected message

Re: [c-nsp] Snmp restart on router

2008-01-18 Thread Tolstykh, Andrew
This is not the case, removing and reapplying the SNMP community string wont reset the SNMP process. Even on the modular IOS attempting to restart the SNMP process will take down additional core processes. The answer that I got from my SE was no, clean SNMP process restart is not possible.

Re: [c-nsp] Telnet software with source port

2008-01-07 Thread Tolstykh, Andrew
http://www.nsauditor.com/network_tools/network_traffic_generator.html -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Ali, Rijas: BB UAE (IT) Sent: Monday, January 07, 2008 7:57 AM To: cisco-nsp@puck.nether.net Subject: [c-nsp] Telnet software with source

Re: [c-nsp] netflow collector feedback.

2007-09-21 Thread Tolstykh, Andrew
The information transmitted is intended only for the person or entity to which it is addressed and may contain confidential and/or privileged material. Any review, retransmission, dissemination or other use of, or taking of any action in reliance upon, this information by persons or entities

Re: [c-nsp] bgp connection refused

2007-09-05 Thread Tolstykh, Andrew
Incorrect local address, update your configuration with the appropriate source interface: Neighbor X.X.X.X update-source source interface Sep 5 17:15:50.359 GMT: BGP: 10.170.150.9 open active, local address 10.170.132.17 -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL

Re: [c-nsp] cannot ping MLPPP local IP address

2007-08-24 Thread Tolstykh, Andrew
Works fine on all Cisco gear. PRU-CORE01sho ip int brie | i Mu Multilink1 192.168.141.29 YES NVRAM up up Multilink2 192.168.141.50 YES NVRAM up up PRU-CORE01ping 192.168.141.29 Type escape sequence to abort. Sending 5, 100-byte ICMP Echos

Re: [c-nsp] CCIE SP Bootcamps

2007-08-10 Thread Tolstykh, Andrew
http://iementor.com/ -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Kim Onnel Sent: Friday, August 10, 2007 7:25 AM To: [EMAIL PROTECTED] Cc: cisco-nsp@puck.nether.net Subject: [c-nsp] CCIE SP Bootcamps Hello everyone, Please help me decide which

Re: [c-nsp] HP/Cisco LLDP/CDP

2007-08-09 Thread Tolstykh, Andrew
http://www.cisco.com/application/pdf/en/us/guest/products/ps7347/c1037/c dccont_0900aecd8064772c.pdf Also have in mind that Cisco just released a new firmware for their 3750, 3560, 2970, 2960 series switches supporting LLDP and of course CDP. -Original Message- From: [EMAIL PROTECTED]

Re: [c-nsp] Solarwinds Orion Cirrus - Thoughts?

2007-08-07 Thread Tolstykh, Andrew
Solarwinds Demo Website: http://npmv7.solarwinds.net/Login.asp Solarwinds Orion was rock solid supporting over 500 nodes. Installation was ridiculously easy. I had it for a little over two years and will highly recommend it. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL

Re: [c-nsp] Cisco 6509 VRRP no preemption

2007-08-01 Thread Tolstykh, Andrew
] Sent: Wednesday, August 01, 2007 6:00 AM To: Tolstykh, Andrew; cisco-nsp@puck.nether.net Subject: RE: [c-nsp] Cisco 6509 VRRP no preemption Here is the requested output: R1#show spanning-tree vlan 1100 detail VLAN1100 is executing the ieee compatible Spanning Tree protocol Bridge Identifier has

Re: [c-nsp] Cisco 6509 VRRP no preemption

2007-07-31 Thread Tolstykh, Andrew
Please post the output of the VRRP interface configuration and show vrrp all commands. By default VRRP will preempt for all configured groups. You need to disable preemption explicitly with no vrrp [group] preempt. By default, a preemptive scheme is enabled whereby a higher priority virtual

Re: [c-nsp] Cisco 6509 VRRP no preemption

2007-07-31 Thread Tolstykh, Andrew
31, 2007 3:33 PM To: cisco-nsp@puck.nether.net Cc: Tolstykh, Andrew Subject: RE: [c-nsp] Cisco 6509 VRRP no preemption We don't want the router to switch back if the original master recovers. My understanding from no preemption is that there will no switch back unless manual override