Re: [c-nsp] IPSEC behind NAT device problem

2007-10-18 Thread mihai
+ IPSEC protection but my PIX doesn't seem to support it. If you have any solution for this I'd be grateful. Thanks, Mihai ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http

Re: [c-nsp] VRF Tacacs leaking question

2008-01-29 Thread mihai
On Tue, January 29, 2008 10:33 am, [EMAIL PROTECTED] wrote: Hello all, I'm having some problems with a C7600 unto which I created several VRFs. One of these VRFs also contains a Tacacs server that I use for authenticating several devices inside that VRF. I also would like to

[c-nsp] VRF Tacacs leaking question

2008-01-29 Thread mihai
Hello all, I'm having some problems with a C7600 unto which I created several VRFs. One of these VRFs also contains a Tacacs server that I use for authenticating several devices inside that VRF. I also would like to authenticate the C7600 to it. How can I accomplish this or what suggestions

Re: [c-nsp] Netflow Export Problem

2008-02-08 Thread mihai
there is no alternative to have something like netflow info regarding the local vrf interfaces ? (these are not even MPLS but only vrf lite) Thanks, Mihai ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo

[c-nsp] Nexus 3064 - wrong interface traffic statistics

2013-12-16 Thread Mihai
Tx pause Regards, Mihai ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/

[c-nsp] IOS-XR 5.2 NG-MVPN

2015-02-28 Thread Mihai
Hello, Could someone enlighten me why an ASR9k doesn't generate an I-PMSI in the below configuration? I am trying to configure a NG-MVPN between Cisco ASR9K and Juniper MX using RSVP-TE. multicast-routing address-family ipv4 mdt source Loopback10 ! ! vrf mihai address-family ipv4

Re: [c-nsp] IOS-XR 5.2 NG-MVPN

2015-03-01 Thread Mihai
. On 03/01/2015 03:04 AM, Adam Vitkovsky wrote: Hello Mihai, Just shooting in the dark, I'd try enabling loopback 10 under multicast routing. Oh and since Juniper supports mLDP for NG-MVPN why would you bother enabling MPLS-TE? adam -Original Message- From: cisco-nsp [mailto:cisco-nsp

Re: [c-nsp] IOS-XR 5.2 NG-MVPN

2015-03-01 Thread Mihai
This is why I chose RSVP-TE for this test,to avoid a maintenance work:) On 03/01/2015 12:15 PM, Mark Tinka wrote: Given the major differences in how RSVP-TE and mLDP work, I think this would warrant a maintenance window. Mark. ___ cisco-nsp

Re: [c-nsp] BGP extcommunity in the default table

2016-02-13 Thread Mihai
Hi Adam, Yes, this is the way to do it, as already Saku told me yesterday:) Thank you all! On 02/13/2016 10:15 AM, Adam Vitkovsky wrote: Hi Mihai, Mihai Gabriel Sent: Friday, February 12, 2016 2:43 PM Hi Adam, I think the community should show up in the local bgp table event without

[c-nsp] Cisco ASA multicast

2018-05-12 Thread Mihai
suggests that multicast should not work, but maybe someone with more experience could make some suggestions. I am not interested on using GRE or other tunneling protocols on other devices behind the ASAs. Thanks, Mihai ___ cisco-nsp mailing list cisco

Re: [c-nsp] IOS XR and MPLSoMGRE

2018-05-17 Thread mihai
now. :)) I'm just wondering what other crazy thing will follow and re-invent the wheel :) Thanks for the long, detailed e-mail and for all the help!! mihai adam netconsultings.com ::carrier-class solutions for the telecommunications industry

Re: [c-nsp] IOS XR and MPLSoMGRE

2018-05-17 Thread mihai
along the way..this is not really a very detailed/documented topic. On 2018-05-17 00:02, Arie Vayner wrote: Mihai, Try checking this document: https://www.cisco.com/c/en/us/td/docs/routers/asr9000/software/asr9k_r6-1/lxvpn/configuration/guide/b-l3vpn-cg-asr9k-61x/b-l3vpn-cg60xasr9k_chapter_01

[c-nsp] IOS XR and MPLSoMGRE

2018-05-16 Thread mihai
next-hop encapsulate l3vpn MGRE Thanks in advance, Mihai ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/

Re: [c-nsp] IOS XR and MPLSoMGRE

2018-05-16 Thread mihai
out the route-map equivalent that would then build a tunnel to the nexthop received as it was the case with IOS XE. Have a feeling that I will get some headaches along the way..this is not really a very detailed/documented topic. On 2018-05-17 00:02, Arie Vayner wrote: Mihai, Try checking

[c-nsp] SNMP Temperature C3750 C2960

2007-07-22 Thread Mihai Tanasescu
anyone ever been confronted with the same problem ? Regards, Mihai ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/

Re: [c-nsp] SNMP Temperature C3750 C2960

2007-07-23 Thread Mihai Tanasescu
is not supported I presume (correct me if I'm wrong) that the previous chassisTempAlarm was what I was looking for (I guess it should become 2 = on in case of a heat problem) Thanks, Mihai ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https

[c-nsp] C3750 SDM prefer questions

2007-08-26 Thread Mihai Tanasescu
directly-connected IPv4 hosts 6K mac addresses (static+dynamic) and 2 K indirect IPv4 routes or is it a global limit for the whole stack (not a separate one for every switch) Please help me clarify this, as I'm getting a bit confused. Thanks, Mihai

[c-nsp] TCAM show mac-address-table count question

2007-08-26 Thread Mihai Tanasescu
Hello, I have a stack of 2xC3750 connected to each other and I have the following: #sh sdm prefer number of unicast mac addresses: 6K #show mac-address-table count displays Total Mac Address Space Available: 2012 with only 525 dynamic entries and 20 static present

Re: [c-nsp] IPSEC behind NAT device problem

2007-10-18 Thread Mihai Tanasescu
J. Oquendo wrote: Church, Charles wrote: Are you using AH? That doesn't work with NAT, at least it didn't last time I did a lot of VPN stuff. Chuck nonrandomseq is your friend I think this is the problem :) Will try and see if the situation changes tomorrow (I don't have

Re: [c-nsp] IPSEC behind NAT device problem

2007-10-18 Thread Mihai Tanasescu
+ IPSEC protection but my PIX doesn't seem to support it. If you have any solution for this I'd be grateful. Thanks, Mihai ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp

Re: [c-nsp] IPSEC behind NAT device problem

2007-10-18 Thread Mihai Tanasescu
J. Oquendo wrote: Church, Charles wrote: Are you using AH? That doesn't work with NAT, at least it didn't last time I did a lot of VPN stuff. Chuck nonrandomseq is your friend Hello, Can you help a bit here with some details regarding my schematic ? I have been

[c-nsp] VRF Route-leaking question

2008-01-13 Thread Mihai Tanasescu
Hello, I have some trouble with VRF and route leaking unfortunately and wanted some explanations or help if possible. I have 2 VRFs (out of many other) between which I leak routes (all routes currently). I can't have them in one VRF unfortunately. The problem: Ex: vrf aaa rd 1:1 route-target

Re: [c-nsp] VRF Route-leaking question

2008-01-13 Thread Mihai Tanasescu
Peter Rathlev wrote: Everything looks fine as far as I can tell. It could be a software-problem. According to the Error Message Decoder, the variant that mentions IP addresses is a software error: 1. %IP-3-LOOPPAK: Looping packet detected and dropped -\n src=[IP_address],

Re: [c-nsp] VRF-Lite Multicast question

2008-07-10 Thread Mihai Tanasescu
pim vrf vrf_default_4 rp-address 172.16.103.237 (VRF business takes default route from vrf_default_3) What am I missing or what would be the workaround in my case of setup ? Thanks and sorry for the long post, Mihai Arie Vayner (avayner) wrote: Hmm... Could you share some show ip mroute

Re: [c-nsp] VRF-Lite Multicast question

2008-07-10 Thread Mihai Tanasescu
Uptime/ExpiresVer DR AddressPrio/Mode I think the problem might be from here but don't know how to fix it :( - Mihai Mihai Tanasescu wrote: Hi Arie, Sorry for top posting but I guess this time it will be easier

Re: [c-nsp] VRF-Lite Multicast question

2008-07-10 Thread Mihai Tanasescu
Mihai Tanasescu wrote: Hello again, On a closer look I see for example: on RC1: RO-BUC-RC1#sh ip pim neighbor PIM Neighbor Table Mode: B - Bidir Capable, DR - Designated Router, N - Default DR Priority, P - Proxy Capable, S - State Refresh Capable Neighbor Interface

Re: [c-nsp] VRF-Lite Multicast question

2008-07-10 Thread Mihai Tanasescu
? (from the VRFs business and default_3 I can ping 172.16.103.237...via the default gateway; I don't have a specific route) Cheers, Mihai Mihai Tanasescu wrote: Mihai Tanasescu wrote: Hello again, On a closer look I see for example: on RC1: RO-BUC-RC1#sh ip pim neighbor PIM Neighbor Table

[c-nsp] high cpu load not by processes

2009-02-19 Thread Mihai Todor
. Thanks! Mihai ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/

Re: [c-nsp] high cpu load not by processes

2009-03-02 Thread Mihai Todor
by the CPU in interrupt mode I suppose. Cheers, Mihai -Original Message- From: Ge Moua [mailto:moua0...@umn.edu] Sent: Thursday, February 19, 2009 7:05 PM To: Mihai Todor Cc: cisco-nsp@puck.nether.net Subject: Re: [c-nsp] high cpu load not by processes sh proc cpu | ex 0.00 sh proc

[c-nsp] Problems creating a new BGP neighbor

2009-09-14 Thread Mihai Campean
neighbor to a peer-group? Thanks, -- Best regards, -- Mihai Campean ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/

Re: [c-nsp] Problems creating a new BGP neighbor

2009-09-15 Thread Mihai Campean
Hi Chris, I reloaded the box this morning, but I'll configure the command in order to prevent further issues :) Thanks:) Chris Mason (chrimaso) wrote: Hi Mihai, Check out CSCsz68307 - this occurs when someone attempts to configure an invalid IP address as a BGP peer - after that you

[c-nsp] QoS concerns

2010-06-10 Thread Mihai Todor
classes when available. Many thanks for any of your comments! Mihai ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https://puck.nether.net/mailman/listinfo/cisco-nsp archive at http://puck.nether.net/pipermail/cisco-nsp/

Re: [c-nsp] QoS concerns

2010-06-10 Thread Mihai Todor
. Thanks, Mihai -Original Message- From: Arie Vayner (avayner) [mailto:avay...@cisco.com] Sent: 10 iunie 2010 18:30 To: Mihai Todor; cisco-nsp@puck.nether.net Subject: RE: [c-nsp] QoS concerns Mihai, Please see inline. Arie -Original Message- From: cisco-nsp-boun...@puck.nether.net

[c-nsp] MSDP and my limited knowledge question

2012-09-03 Thread Mihai Tanasescu
the A flag - MSDP Adv candidate is missing and if I do a: show ip msdp peer peer ip advertise-sa, then I see nothing. What am I missing ? Am I running into any check that I am failing ? Can you help me out ? This subject is quite new to me. Thanks, Mihai

Re: [c-nsp] MSDP and my limited knowledge question

2012-09-03 Thread Mihai Tanasescu
- From: cisco-nsp-boun...@puck.nether.net [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of Mihai Tanasescu Sent: Monday, September 03, 2012 2:13 PM To: cisco-nsp@puck.nether.net Subject: [c-nsp] MSDP and my limited knowledge question Hi all, I have a simple test setup where I'm most

Re: [c-nsp] MSDP and my limited knowledge question

2012-09-05 Thread Mihai Tanasescu
Hi, On 9/4/12 11:18 AM, Phil Mayers wrote: On 09/03/2012 07:12 PM, Mihai Tanasescu wrote: b) if I put: 10.10.10.1/29 or /32 configured on S on a Loopback interface and on C4900: ip route 10.10.10.0 255.255.255.240 192.168.1.2 So, to be clear, you're doing this i.e. trying to source

Re: [c-nsp] MSDP and my limited knowledge question

2012-09-05 Thread Mihai Tanasescu
allowed. I could make it directly connected on the interfaces between C4900 and Linux but I thought there was a way around it without adding another device in between at the moment when I'm just testing. Thank you very much, Mihai adam -Original Message- From: cisco-nsp-boun

Re: [c-nsp] Nexus 3064 - wrong interface traffic statistics

2013-12-16 Thread Mihai Gabriel
the 7600 shows the correct counters because I know how much traffic is pushed through Nexus On Mon, Dec 16, 2013 at 11:34 PM, Nick Hilliard n...@foobar.org wrote: On 16/12/2013 21:31, Nick Hilliard wrote: first thing you want to do is set load-interval 30 on both sides of the link, then

[c-nsp] IGMP Question - failed to create...

2014-04-25 Thread Mihai Tanasescu
what is causing this. Did anyone else stumble upon such behavior ? Am I missing something that's really basic but escaping my eyes ? I'd be very grateful for any kind of advice :) even to read the manual if I missed something that was way too obvious. Thanks in advance, Mihai

Re: [c-nsp] AToM

2015-03-24 Thread Mihai Gabriel
Use a subinterfate (MUX-UNI) on 7600 instead of VLAN. On Tue, Mar 24, 2015 at 9:49 AM, Mohammad Khalil eng_m...@hotmail.com wrote: Hi all I am trying to establish AToM between 7613 and 3600 The module from the 7613 side is 7600 ES+ 20xGE SFP 3600#sh run int vlan 183 interface Vlan183 no

Re: [c-nsp] AToM

2015-03-25 Thread Mihai Gabriel
AFAIk, you cannot create AToM using SVI's in 7600 (we are using lan cards) On Wed, Mar 25, 2015 at 10:10 AM, Mohammad Khalil eng_m...@hotmail.com wrote: The issue is that the customer is connected to a switch connected to the 7613 and i Have a trunk to transport all Vlans for other customers

Re: [c-nsp] Whatsup Calls

2015-04-02 Thread Mihai Tanasescu
On 4/2/15 12:24 PM, Roland Dobbins wrote: On 2 Apr 2015, at 17:06, M K wrote: Whatsup released voice recently , i wonder does Cisco SCE has the ability to block it ? Why do you want to block a valuable service WhatsApp users have been requesting for quite some time?

Re: [c-nsp] Slightly off-topic - Network Monitoring software

2015-04-24 Thread Mihai Tanasescu
the package already provides, then you need to think a bit if it's really worth it Cacti - not really monitoring, albeit you can install a Threshold and Alerting plugin, plus you do have a nice weathermap Cheers, Mihai On 4/24/15 6:04 PM, Paul Stewart wrote: It also really depends on what you want out

[c-nsp] BGP extcommunity in the default table

2016-02-12 Thread Mihai Gabriel
Hi, I am trying to advertise a prefix with an extended route-target community in the IPv4 default table with no success. r1#sh route-map test route-map test, permit, sequence 10 Match clauses: Set clauses: extended community RT:65000:65000 Policy routing matches: 0 packets, 0 bytes

Re: [c-nsp] BGP extcommunity in the default table

2016-02-12 Thread Mihai Gabriel
:27 PM, Adam Vitkovsky <adam.vitkov...@gamma.co.uk> wrote: > Hi Mihai, > > > Mihai Gabriel > > Sent: Friday, February 12, 2016 10:56 AM > > To: cisco-nsp@puck.nether.net > > Subject: [c-nsp] BGP extcommunity in the default table > > > >

Re: [c-nsp] BGP extcommunity in the default table

2016-02-12 Thread Mihai Gabriel
Hi Adam, There is no VRF involved in this setup. I don't think I can use export maps in the default VRF. On Fri, Feb 12, 2016 at 3:43 PM, Adam Vitkovsky <adam.vitkov...@gamma.co.uk> wrote: > Hi Mihai, > > > Mihai Gabriel > > Sent: Friday, February 12, 2016 2

Re: [c-nsp] ASA cluster downgrade

2016-06-28 Thread Mihai Gabriel
don't usually notice > the failover. > > -Original Message- > From: cisco-nsp [mailto:cisco-nsp-boun...@puck.nether.net] On Behalf Of > Nick Hilliard > Sent: Tuesday, June 28, 2016 11:07 AM > To: Mihai Gabriel <mihaigabr...@gmail.com> > Cc: cisco-nsp@puck.neth

[c-nsp] ASA cluster downgrade

2016-06-28 Thread Mihai Gabriel
unit. Doing a failover to the standby unit will impact the services. Is there a way to achieve this without disabling the clustering feature and downgrading individually? Thanks, Mihai ___ cisco-nsp mailing list cisco-nsp@puck.nether.net https

[c-nsp] NCS5k - long downtime during optical failover

2023-06-10 Thread Mihai via cisco-nsp
Hi, I have 2 x NCS5k connected using 100G-LR4 Optomark optics over an optical protected circuit from my provider which uses ALS. A 3 seconds downtime can bee seen (tested with BFD, ICMP, OSPF, etc.) during a provider switchover from work to protection path (or vice versa) even though the

[c-nsp] Local switching on EVPN port

2024-02-02 Thread Mihai via cisco-nsp
Hi, On Cisco NCS I can configure local switching between two subinterfaces/vlans by adding them to a bridge domain as below: l2vpn bridge group X bridge-domain X interface Bundle-Ether1.10 l2vpn bridge group X bridge-domain X interface Bundle-Ether1.20 Once I enable EVPN on the physical

Re: [c-nsp] Local switching on EVPN port

2024-02-02 Thread Mihai via cisco-nsp
*From:* cisco-nsp on behalf of Mihai via cisco-nsp *Sent:* Friday, February 2, 2024 1:05:12 PM *To:* cisco-nsp@puck.nether.net *Subject:* [c-nsp] Local switching on EVPN port Hi, On Cisco NCS I can configure local switching between two subinterfaces