[c-nsp] 4908-L3 Core Layer

2007-05-04 Thread Masood Ahmad Shah
I just got worried about 4908-L3 to use in core layer. I have some doubts.. Is 4908-L3 support route-maps along with access-list? I'm gonna process 200Mbps traffic while applying access-list and route-maps along with 1000 of static routes.. Please suggest if someone have good/bad experience

Re: [c-nsp] RELATED: Feedback on: Security Advice for Routers and Switches

2007-05-08 Thread Masood Ahmad Shah
message warning about another station using the same address it was assigned. workaround disable ip local-proxy-arp Regards, Masood Ahmad Shah BLOG: http://www.weblogs.com.pk/jahil/ [EMAIL PROTECTED] wrote: Hi, Alan, Did you try to disable ICMP redirects? (no ip redirects on the VLAN

[c-nsp] Sup2, PFC2 and MSFC2 Access/Distribution aggregation

2007-05-08 Thread Masood Ahmad Shah
there who have had experience with the equipment listed below as I'm gonna purchase this one. Supervisor Engine 2,Policy Feature Card 2 (PFC2),Multilayer Switch Feature Card 2 (MSFC2) and SFM2 (optional) What do you guys suggest? Regards, Masood Ahmad Shah BLOG: http://www.weblogs.com.pk/jahil

Re: [c-nsp] DHCP snooping with PIX 7.22 as dhcp server fails

2007-07-18 Thread Masood Ahmad Shah
The caveat with DHCP snooping is that you must establish a trust relationship with downstream DHCP snoopers on a trunk port: Switch(config-if)# ip dhcp relay information trusted Regards, Masood Ahmad Shah Nexlinx http://www.weblogs.com.pk/jahil/ -Original Message- From: [EMAIL

Re: [c-nsp] PPPoE issues // ACS provide the same IP.

2007-07-24 Thread Masood Ahmad Shah
Well, it prevents customers from obtaining IPs, which is good not bad. What I suggest better you use NAS to allocate IPs instead ACS. If you really want to you ACS to assign IPs than you may need to check duplicate pools entry for the same network. Regards, Masood Ahmad Shah -Original

Re: [c-nsp] cisco 851

2007-07-24 Thread Masood Ahmad Shah
http://www.cisco.com/warp/public/794/827pppoe_client.html cheers :) Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Aman Chugh Sent: Friday, June 22, 2007 6:34 PM To: Peter Walker Cc: cisco-nsp@puck.nether.net Subject: Re

[c-nsp] 7507 GEIP Controller

2007-07-25 Thread Masood Ahmad Shah
: IOS Version 12.4(3a) Controller Router# sh ver | inc GEIP 1 GEIP controller (1 GigabitEthernet). 1 GEIP controller (1 GigabitEthernet) Regards, Masood Ahmad Shah ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https

Re: [c-nsp] 7507 GEIP Controller

2007-07-25 Thread Masood Ahmad Shah
Uart 6 0 9000/9000 Error Interrupt 786692017 8604/9000 NMI Interrupt Handler Router# #show align No alignment data has been recorded. No spurious memory references have been recorded. Regards, Masood Ahmad Shah -Original Message- From: Rodney Dunn [mailto:[EMAIL

Re: [c-nsp] Cisco PIX VPN address pool

2007-07-30 Thread Masood Ahmad Shah
You may need to play with dhcpd lease things... dhcpd lease 3600 Regards, Masood Ahmad Shah BLOG: http://www.weblogsl.com.pk/jahil/ -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Scott Klassen Sent: Saturday, July 28, 2007 12:58 AM To: cisco-nsp

Re: [c-nsp] VPLS over Tunnels

2007-08-07 Thread Masood Ahmad Shah
VPLS uses edge routers that can learn, bridge and replicate on a VPN basis. These routers are connected by a full mesh of tunnels, enabling any-to-any connectivity. Here's the URL... http://www.cisco.com/en/US/products/ps6648/products_ios_protocol_option_home .html Regards, Masood Ahmad Shah

Re: [c-nsp] 7204vxr freeze-up question

2007-08-15 Thread Masood Ahmad Shah
Well, which IOS version you run? I know there are some issues with Intel chipset while it gets connected into cisco GBIC. I strongly suggest updating driver of NIC (if there is), upgrade IOS or change your NIC to check it out... Regards, Masood Ahmad Shah -Original Message- From

Re: [c-nsp] automatically enable debugs after a reload

2007-08-22 Thread Masood Ahmad Shah
support the config command 'do', you could modify the config off of the router and add a 'do debug...' command to the end then copy the config back directly into the startup-config. It's messy I know, but it does work. Regards, Masood Ahmad Shah Nexlinx BLOG: http://www.weblogs.com.pk/jahil

Re: [c-nsp] 7204vxr freeze-up question

2007-08-22 Thread Masood Ahmad Shah
you can't update the drivers for your radio unit and you may need to consult with vendor. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Adam Greene Sent: Wednesday, August 22, 2007 11:44 PM To: cisco-nsp@puck.nether.net

Re: [c-nsp] E1 controller - clock problems with 'line' fine with 'internal'

2007-08-22 Thread Masood Ahmad Shah
or clock source primary on one E1, and clock source internal on the others. Regards, Masood Ahmad Shah Nexlinx BLOG: http://www.weblogs.com.pk/jahil/ -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Ras Sent: Wednesday, August 22, 2007 5:14 PM To: c-nsp

Re: [c-nsp] gigabit ports/modules for 7507 and 7513 routers

2007-08-24 Thread Masood Ahmad Shah
Supported GE modules are GEIP and GEIP+... Maximum data throughput 350 Mbps to 400n Mbps. It can vary in some circumstanz. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Mark Tinka Sent: Thursday, August 09, 2007 9:22 AM

[c-nsp] Cisco 7500 CPU SDRAM/Packet SDRAM

2007-08-24 Thread Masood Ahmad Shah
Can someone describe the functions and difference between CPU SDRAM and Packet SDRAM for platform 7500. Also the difference of SRAM and DRAM for same platform. Regards, Masood Ahmad Shah ___ cisco-nsp mailing list cisco-nsp@puck.nether.net

Re: [c-nsp] cap'ing each host/ip to bw limits

2007-09-13 Thread Masood Ahmad Shah
Packeteer packet shaper is bestGo for it... Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Phil Bedard Sent: Thursday, September 13, 2007 9:08 PM To: matthew zeier Cc: cisco-nsp@puck.nether.net Subject: Re: [c-nsp

Re: [c-nsp] MTU settings/GRE tunnel

2007-09-20 Thread Masood Ahmad Shah
packet is received. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Nick Kraal Sent: Thursday, September 20, 2007 12:51 PM To: cisco-nsp@puck.nether.net Subject: [c-nsp] MTU settings/GRE tunnel Dear all, We are setting up

Re: [c-nsp] ATM + 7505

2007-09-20 Thread Masood Ahmad Shah
Well, I don't think one can connect ATM25 with OC3 interface coz the chipset being used for ATM 25 is different. The only thing left is ATM25 chipset module or interface, I don't know exactly; if it exist or not Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED

Re: [c-nsp] MTU settings/GRE tunnel

2007-09-21 Thread Masood Ahmad Shah
Please always CC to mailing list so others can see it and share their experience/thoughts Regards, Masood Ahmad Shah -Original Message- From: Nick Kraal [mailto:[EMAIL PROTECTED] Sent: Friday, September 21, 2007 10:54 PM To: Masood Ahmad Shah Subject: Re: [c-nsp] MTU settings/GRE

Re: [c-nsp] 7507 IOS ver. recommendation: 12.0S or 12.2S or whatever?

2007-09-21 Thread Masood Ahmad Shah
googling for more. Regards, Masood Ahmad Shah From: Aaron [mailto:[EMAIL PROTECTED] Sent: Saturday, September 22, 2007 12:36 AM To: Masood Ahmad Shah Cc: [EMAIL PROTECTED]; cisco-nsp@puck.nether.net Subject: Re: [c-nsp] 7507 IOS ver. recommendation: 12.0S or 12.2S or whatever? Unless

[c-nsp] Swtich Broadcast/Multicast

2007-09-25 Thread Masood Ahmad Shah
again when it falls below 25%. For Multicast traffic, the port should forward again when it falls below 15%. Please suggest recommended settings. Regards, Masood Ahmad Shah ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net

Re: [c-nsp] Swtich Broadcast/Multicast

2007-09-25 Thread Masood Ahmad Shah
I have come to this solution and I hope things will get smooth by using these interface mode commands storm-control broadcast level 30 25 storm-control broadcast level 25 15 what do you guys suggest? Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto

[c-nsp] single interface multiple VRF

2007-10-04 Thread Masood Ahmad Shah
Is it Possible to have 2 or more VRF tables existing on one single Interface Eth/Serial. If the answer is yes, how do you guys do that. Regards, Masood Ahmad Shah ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman

Re: [c-nsp] single interface multiple VRF

2007-10-04 Thread Masood Ahmad Shah
guys use VRF when you bound to terminate all of your client on single or two interfaces along with GRE tunnel IP Source and Destination VRF membership. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Masood Ahmad Shah Sent: Friday

Re: [c-nsp] GE over copper port adapter for a 7206VXR

2007-10-10 Thread Masood Ahmad Shah
Not Cat5... You need to have Cat 5e or Cat 6... Simple Cat 5 will not work for 1000BaseT Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Bob Chan Sent: Wednesday, October 10, 2007 4:14 AM To: Vincent Aniello Cc: cisco-nsp

Re: [c-nsp] Port Traceroute utility?

2007-11-06 Thread Masood Ahmad Shah
UNIX: http://michael.toren.net/code/tcptraceroute/ Windows: http://tracetcp.sourceforge.net/ Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jonathan Charles Sent: Wednesday, November 07, 2007 12:03 AM To: cisco-nsp

Re: [c-nsp] Dialup problems on a AS5300

2007-11-26 Thread Masood Ahmad Shah
http://www.cisco.com/warp/public/108/mica-hw-ts-17882.html Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Justin Shore Sent: Tuesday, November 27, 2007 4:16 AM To: 'Cisco-nsp' Subject: [c-nsp] Dialup problems on a AS5300

Re: [c-nsp] ATM Switching Design Issue

2007-11-30 Thread Masood Ahmad Shah
Just to let you guys know... I got the answer, from a pure circuit standpoint, no; And it can't be considered a cross connect. I would need external MUX/DACS system to do that. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf

[c-nsp] ATM Switching Design Issue

2007-11-30 Thread Masood Ahmad Shah
I want to use Cisco 3660 for atm aggregation. Like I have two IMA 4 port E1 Port adapter modules, ATM OC3, multimode Port adapter, 1 port and they all comes in the same chassis Cisco 3660. I want to know is it possible with Cisco 3660, Does 3660 support it if the answer is yes then how can I make

Re: [c-nsp] ospf external route showing as updated quite so often in routing table

2007-12-01 Thread Masood Ahmad Shah
it somewhere or on some router? Regards, Masood Ahmad Shah http://www.weblogs.com.pk/jahil/ -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Kumar, Prashanth Sent: Thursday, November 29, 2007 8:16 AM To: cisco-nsp@puck.nether.net Subject: [c-nsp] ospf external

[c-nsp] ATM Interface (range pvc feature)

2007-12-04 Thread Masood Ahmad Shah
)# I tried different IOS version 12.2 and 12.3, but it did not help. I'm running now with c3660-telcoentk9-mz.123-22.bin. It would be nice, If someone can confirm the support of range command under ATM interface in 3600 series routers. Regards, Masood Ahmad Shah

[c-nsp] parallel tunnels / different traffic classes

2007-12-11 Thread Masood Ahmad Shah
Does Cisco IOS support multiple parallel tunnels carrying different traffic classes for a long time. If the answer is yes, please share some experience. Regards, Masood Ahmad Shah ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https

Re: [c-nsp] default route behavoir

2007-12-11 Thread Masood Ahmad Shah
life forever start-time now Tracking: track 1 rtr 1 reachability Secondary Route: ip route 0.0.0.0 0.0.0.0 secondary-gateway track 1 Not tested, but it should work fine :) Cheers, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Scott

Re: [c-nsp] default route behavoir

2007-12-11 Thread Masood Ahmad Shah
Well, Cisco 3560 support IP SLA. The following Cisco routers and switches support IP SLA. http://download.dartware.com/contrib/probes/Cisco_IP_SLA_Probe_Users_Guide.d oc Regards, Masood Ahmad Shah -Original Message- From: Adrian Chadd [mailto:[EMAIL PROTECTED] Sent: Wednesday

Re: [c-nsp] Bridging two VLANs together

2007-12-12 Thread Masood Ahmad Shah
Well, If I understand you are talking about inter-vlan bridging. Yes it should work fine. You may need to add bridge 2 protocol ieee It's bridge protocol global configuration command to define the type fo STP. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED

Re: [c-nsp] Something like MTR, but forced path

2007-12-19 Thread Masood Ahmad Shah
/en/US/products/ps6815/products_ios_protocol_group_home. html Regards, Masood Ahmad Shah BLOG: http://www.weblogs.com.pk/jahil/ -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Tuc at T-B-O-H.NET Sent: Wednesday, December 19, 2007 6:38 PM To: Ed Ravin Cc

Re: [c-nsp] Happy New Year !

2007-12-31 Thread Masood Ahmad Shah
Happy New year Wish to clear CCIE this year. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Hash!!! Sent: Monday, December 31, 2007 5:38 PM To: cisco-nsp@puck.nether.net; 'certification Cisco' Subject: [c-nsp] Happy New Year ! GS, Hoping that this

Re: [c-nsp] Scheduling daily reload

2008-01-02 Thread Masood Ahmad Shah
Why the heck your service provider (upstream ISP) not using ppp keepalives. They should use ppp keepalives on their BRAS. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Gert Doering Sent: Wednesday, January 02, 2008 2:54 PM

Re: [c-nsp] MTU Issue on QinQ Eth link with MPLS

2008-01-03 Thread Masood Ahmad Shah
Well, better you check current MTU settings using command # sh interfaces | inc MTU And cheers :) Yes of course you need to adjust routers MTU as well; if you are running with MPLS or gre Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED

Re: [c-nsp] Tunnel a VLAN across the WAN?

2008-01-03 Thread Masood Ahmad Shah
this tunnel must be switched through software. The larger number of packets forwarded through this tunnel increases CPU utilization. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jeffrey Ollie Sent: Thursday, January 03, 2008

Re: [c-nsp] BGP soft reconfiguration inbound

2008-01-05 Thread Masood Ahmad Shah
I have had experienced that sometime BGP session goes down/up if you add or remove soft-reconfiguration inbound. I will try to check this tonight if I get time. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Peter Rathlev

Re: [c-nsp] tcpdump on ios?

2008-01-11 Thread Masood Ahmad Shah
On juniper router you can use monitor traffic interface . AFAK with Cisco you need to mirror a port and put it to some linux or windows box along with packet sniffer tools ether-real, tcpdump so and so... Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto

Re: [c-nsp] tcpdump on ios?

2008-01-11 Thread Masood Ahmad Shah
Oh, don't use it on production router with high number of packets. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Scott McGrath Sent: Saturday, January 12, 2008 2:14 AM To: matthew zeier Cc: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] tcpdump on ios?

Re: [c-nsp] tcpdump on ios?

2008-01-11 Thread Masood Ahmad Shah
to it the one running packet sniffer tool. Mirror router switch port to sniffer machine and sniff whatever you want t. Oh sorry for writing about Juniper; I was just working on it a while ago :) Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED

Re: [c-nsp] tcpdump on ios?

2008-01-13 Thread Masood Ahmad Shah
and rollback n can really make backing out of changes a no brainer. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Aamer Akhter (aakhter) Sent: Sunday, January 13, 2008 1:31 AM To: Saku Ytti; cisco-nsp@puck.nether.net Subject

Re: [c-nsp] Snmp restart on router

2008-01-18 Thread Masood Ahmad Shah
If you want to restart SNMP process on Cisco router, you can use commands as listed below... no snmp-server community whatever-it-is snmp-server community whatever-it-is by doing this you will have restarted snmp process :) Why you want to restart SNMP process? Regards, Masood Ahmad Shah

Re: [c-nsp] Concentrator and DHCP server problem

2008-01-18 Thread Masood Ahmad Shah
debug logs I can see that your dhcp server address has been configured 172.28.32.13 instead of your listed dhcp server address 172.28.33.13; might be typo error :) Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of wasim hasan Sent

Re: [c-nsp] MPLS on CAT5500

2008-01-18 Thread Masood Ahmad Shah
Someday ago I was talking to one of my Juniper friend and he was saying that you can't use one Cisco box as P and PE simultaneously though you can use Juniper. If it worked and work like a charm, please share your experience. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL

Re: [c-nsp] Stress testing.

2008-01-18 Thread Masood Ahmad Shah
you can test (SYN flood and ICMP) using hping www.hping.org. Whenever I configure a firewall I always use this tool. Hmm BGP testing I never come across this before. If you found one please share. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL

Re: [c-nsp] Snmp restart on router

2008-01-19 Thread Masood Ahmad Shah
Yea, Absolutely correct, if you do no snmp community string the UDP listener exist and it has been verified by using ip socket and show proc cpu | inc SNMP... I tried to find some other ways but no luck The only answer is to restart router device. Regards, Masood Ahmad Shah

Re: [c-nsp] need clarification..

2008-01-24 Thread Masood Ahmad Shah
A simple google search will get you back with millions :) below mentioned link is one of them http://www.petri.co.il/csc_how_router_interfaces_get_their_names_on_cisco_ro uters.htm Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED

Re: [c-nsp] OT: CCVP Bootcamp in Dubai, India or South Africa

2008-01-25 Thread Masood Ahmad Shah
I suggest you consult to ipexpert.com. They are going well for such trainings since years... Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Felix Nkansah Sent: Friday, January 25, 2008 7:11 PM To: Cisco certification; cisco

[c-nsp] MPLS PE to PE over GRE/IPIP

2008-01-28 Thread Masood Ahmad Shah
I'm in process to connect two or more Provider Edge router using GRE/IPIP tunnels. What were your experiences? If the answer is yes than I would love to ask how do you connect a PE to another PE using the GRE/IPIP tunnel interfaces. Keeping in mind that I'm going to carry multiple customers

Re: [c-nsp] Top 10 Network Engineering Tools

2008-01-28 Thread Masood Ahmad Shah
don't like telnet anymore) nmap (TCP/UDP port scanner) gogle (www.google.com) Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Joseph Jackson Sent: Tuesday, January 29, 2008 1:23 AM To: Cisco Subject: [c-nsp

Re: [c-nsp] MAC address from cisco IOS switches

2008-01-28 Thread Masood Ahmad Shah
I don't have any problem with below Cisco snmp query while retrieving learned mac table from a Cisco switch. snmpwalk -v2c -c nexsecure 192.168.0.1 RFC1213-MIB::atPhysAddress I suggest you must run with -v2c instead of -v 1 Regards, Masood Ahmad Shah -Original Message- From: [EMAIL

Re: [c-nsp] ISDN backup for MPLS CE Router

2008-01-31 Thread Masood Ahmad Shah
reachability Secondary Route: ip route 0.0.0.0 0.0.0.0 secondary-gateway track 1 Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Zitouni Rachid Sent: Tuesday, January 22, 2008 8:45 PM To: Ali, Rijas: BB UAE (IT); cisco-nsp

Re: [c-nsp] ISDN backup for MPLS CE Router

2008-01-31 Thread Masood Ahmad Shah
that you are getting correct next-hop interface while running with ISDN backup and vice versa... The easiest way you use static route for backup interface if it is being supported :) Yea You can use Dialer watch as well as IPSLA or dialer watch along with IPSLA... Regards, Masood Ahmad Shah

Re: [c-nsp] PPPoE L2 timeout recovery

2008-02-04 Thread Masood Ahmad Shah
. The only solution for this problem is to contact your ISP or check your line stability. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jason Gurtz Sent: Tuesday, February 05, 2008 12:25 AM To: cisco-nsp@puck.nether.net

Re: [c-nsp] OSPF router gets separated from a broadcast domain

2008-02-04 Thread Masood Ahmad Shah
Is there any low end Cisco router for the multipoint L2TPV3 tunnel to configure MPLS VPN over IP Tunnel. I just can't buy Cisco 12000 only for the multipoint L2TPV3 tunnel. I was expecting a support of tunnel mode l2tpv3 in Cisco 7500 but I just can't see it. :( Regards, Masood Ahmad Shah

[c-nsp] Multipoint L2TPV3 tunnel / MPLS VPN over IP Tunnel

2008-02-04 Thread Masood Ahmad Shah
Is there any low end Cisco router for the multipoint L2TPV3 tunnel to configure MPLS VPN over IP Tunnel. I just can't buy Cisco 12000 only for the multipoint L2TPV3 tunnel. I was expecting a support of tunnel mode l2tpv3 in Cisco 7500 but I just can't see it. :( Regards, Masood Ahmad Shah

Re: [c-nsp] Multipoint L2TPV3 tunnel / MPLS VPN over IP Tunnel

2008-02-05 Thread Masood Ahmad Shah
Well, router is 7507 running with 12.4(16) rsp-jk9o3sv-mz.124-16.bin... I believe that 12.4 enterprise image is supporting such features... Is there any special release to get the advantages of multipoint L2TPV3 tunnel over 7500 or 7200... Regards, Masood Ahmad shah -Original Message

Re: [c-nsp] External Firewall

2008-03-24 Thread Masood Ahmad Shah
Normally people would put like show below.. WAN-Router-Firewall--LAN-Switch Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Sridhar Ayengar Sent: Monday, March 24, 2008 9:55 PM To: Cisco NSPs Subject: [c-nsp

Re: [c-nsp] concentrator issues since PUBLIC interface move

2008-03-31 Thread Masood Ahmad Shah
Whenever you change a subnet (network); you need to check to check/update the following.. Update your routing table accordingly. Update concentrator or between router access lists. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf

Re: [c-nsp] MST operation...

2008-04-01 Thread Masood Ahmad Shah
) # show spantree summary mst # show spantree mst configuration # show spantree statistics mst mod/port instance ( mod/port the one connected to secondary switch) Regards, Masood Ahmad Shah BLOG: http://www.weblogs.com.pk/jahil/ -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL

Re: [c-nsp] IOS pirating requests

2008-04-02 Thread Masood Ahmad Shah
Oh yea what is an IOS? April fool's day :) kidding IOS (Internet Operating System) is the software used on the vast majority of cisco systems routers and all current Cisco network switches. Oh don't ask what is an operating system :) Regards, Masood Ahmad Shah -Original Message

Re: [c-nsp] 7606(SUP32) 12.2(33)SRB2 arp-table problem.

2008-04-02 Thread Masood Ahmad Shah
Well, By default cisco IOS keeps learned ARP entries for 3 hours 59 minutes.. There might be some network scanner (worm or virus) around and scanning your network all the time. Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED

Re: [c-nsp] OT: Check Point v Cisco PIX (ASA 5500 Series)

2008-04-04 Thread Masood Ahmad Shah
termination. Oh yea you will not face any issue like icmp response packets or tcp flags... mtr is working fine too :) Regards, Masood Ahmad Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of [EMAIL PROTECTED] Sent: Friday, April 04, 2008 12:39 PM

Re: [c-nsp] If BGP is running on a circuit, if you ping the other end you get loss. kill the BGP (and thus the traffic..) no more loss.

2008-05-02 Thread Masood Ahmad Shah
I have written blog to your asked question about Netflow packets collecting/forwarding issue... http://weblogs.com.pk/jahil/archive/2008/05/02/how-to-netflow-with-csico-650 0.aspx Regards, Masood A Shah -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of

Re: [c-nsp] 3550-48 - 3560-48TS-E migration?

2008-05-15 Thread Masood Ahmad Shah
/catalyst3560/software/release/1 2.2_25_see/configuration/guide/swsdm.html#wp1077854 Regards, Masood Ahmad Shah BLOG: http://www.weblogs.com.pk/jahil/ -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Jon Lewis Sent: Thursday, May 15, 2008 7:24 PM To: cisco-nsp

[c-nsp] OSPF on Secondary IP addresses.

2008-06-11 Thread Masood Ahmad Shah
when you need to build adjacency on secondary IP address instead of primary IP. Oops I can't find any parameter (when I configure secondary address on Cisco Router) like preferred/primary . thanks to juniper guys for providing it ;) J Thanks in advance. Regards, Masood Ahmad Shah

[c-nsp] PPPoE tunnel and Firewall

2008-07-24 Thread Masood Ahmad Shah
I’m really getting confused while adding firewall for DSL subscribers. I want to protect my PPPoE subscriber from malicious traffic. Adding a firewall between DSLAMs and BRAS is kinda confused for me. The final topology is going to be like

Re: [c-nsp] MPLS PE Routers for a Mobile Carrier?

2008-08-03 Thread Masood Ahmad Shah
MPLS VPN, TE and QoS, If all you need in one BOX than better you go for Juniper M Series. Juniper M10i or M120/320. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Saku Ytti Sent: Sunday, August 03, 2008 1:41 AM To: cisco-nsp@puck.nether.net Subject:

Re: [c-nsp] OT - 802.3an - 10Gig over Cat 6a

2008-09-17 Thread Masood Ahmad Shah
I would recommended Juniper MX or EX Switches; it's time to enjoy line rate along with stable network operating system (JUNOS) + application/services ( MPLS, VPLS, QiQ etc) :) Regards, Masood BLOG: http://www.weblogs.com.pk/jahil/ -Original Message- From: [EMAIL PROTECTED]

Re: [c-nsp] cisco 7507 vs ssg 550

2008-09-17 Thread Masood Ahmad Shah
You can't replace Cisco 7500 with SSG550 (Firewall); Coz POS (OC3) is currently not available for SSG platform; Second SSG can run screenos only not JUNOS; screenos is the operating system for integrated Firewall/IPSec VPN solutions. Third SSG purpose-built security appliance, I would definitely

Re: [c-nsp] Conditional BGP

2008-10-18 Thread Masood Ahmad Shah
A nice book on BGP Practical BGP By Russ White Regards, Masood BLOG: http://www.weblogs.com.pk/jahil -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Mark Boolootian Sent: Wednesday, September 24, 2008 6:06 AM To: [EMAIL PROTECTED] Cc:

Re: [c-nsp] RSP4 as route server? - seeking suggestions and opinions

2008-12-21 Thread Masood Ahmad Shah
You can also use JUNOS olive. http://juniper.cluepon.net/index.php/Olive Regards, Masood -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Cory Ayers Sent: Sunday, December 21, 2008 1:45 AM To: Ang Kah Yik Cc:

[c-nsp] JUNOS funny or bad poetry

2009-01-07 Thread Masood Ahmad Shah
JUNOS guys promise they would not make it boring! If you don't want to configure something on JUNOS, spend some time with JUNOS haiku. http://weblogs.com.pk/jahil/archive/2009/01/07/juniper-junos-funny-poetry.as px ___ cisco-nsp mailing list

Re: [c-nsp] Per packet load balancing with low latency applications

2009-01-15 Thread Masood Ahmad Shah
Using CRTP along with MLPPP will have positive impact on your voice and low latency issues. -Original Message- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Joe Provo Sent: Thursday, January 15, 2009 5:33 PM To:

Re: [c-nsp] BGP default-originate route

2009-01-15 Thread Masood Ahmad Shah
The default route is not announced to BGP neighbors, even if it's in the IP routing table and BGP table. This was true in old IOS releases, 12.4 and 12.2SRC announce BGP default route like any other network. To announce a default route to a BGP neighbor, you can configure neighbor

Re: [c-nsp] OSPF not propagating - But for only one route...?

2009-02-02 Thread Masood Ahmad Shah
To redistribute static routes to subnets of classful networks you use redistribute static subnets under the ospf router configuration. Regards, Masood Blog: http://weblogs.com.pk/jahil/ redistributing statics/connected networks. For some reason 1 static route will not redistribute from the

Re: [c-nsp] WS-6500-SFM insertion into production box, much of an impact?

2009-02-08 Thread Masood Ahmad Shah
Yea it is hot-swappable. You must install the Switch Fabric Module in either slot 5 or slot 6 of the Catalyst 6506 switch. For redundancy, you can install a standby Switch Fabric Module. The module first installed functions as the primary module. When you install two Switch Fabric Modules at the