Currently I have two offices, one in London one in Jersey.
We are currently connected via a two 2mb leased PVC from our ISP. We do NOT use any VPN's currently.
We are putting in a third office in Jersey for DR purposes, which will be connected via a 10MB leased line.
Now... here come the...
We have two offices which both will have DR sites. The offices are connected to their DR sites via a dedicated leased line.
The offices and DR sites have a 2mb connection to the Internet with a PIX.
So the topology looks like this....
[Office 1] [Office 1...
I've got a VPN configured as follows
Nortel VPN Device --- Internet -- PIX -- Nortel VPN
Sadly, the PIX is dropping packets between Nortel boxes believing its a teardrop attack(I believe its because packet size is 1497, because the IPSec stuff is fragmenting the packets). I've disabled the...
We are using PAT to translate traffic from our 10.1.0.0 network to a static IP address.
The PIX is syslogging TCP packet denied messages from various web servers ebay/amazon etc etc from port 80 to a high level port 55643. The port exists in the xlate table.. and the IP addresses match!
I'm...
I'm having a problem. I've got a 827H with full feature set which I want to VPN to my PIX525E's.
The PIX's have a fixed IP, the 827H has an ASDL with a dynamically assigned address.
I want them to have an IPSec tunnel connecting them.
I've managed to get them talking in a fashion using the...
The replicas will be done by Double-Take failover software. I'll think about the bridging aspect. Will 2MB be enough for clustering?
NLBS will be used for Terminal services into our DR sites.
Doubletake appears to be the most cost-efficient and seems to hit our needs on the head. I was...
A long one, but I think it'll get ya'll thinking...
I'm installing an network for my company. They need to have two DR sites in both countries. The DR sites will have servers which will be replicated to the other site.
The DR sites will have 2MB direct leased lines to the main office in their...
Both sides are set to dot1q.. both have the same native VLAN too (1)
I'm not trunking multiple VLANs, I wish to load balance my uplinks from my 2950 into my 6509 for redundancy and throughput.
Any other thoughts?
Senario:-
2 x PC's Windows 2000 plugged into
Cisco 2950 with Dual EtherChannel Gigabit uplinks into
Cisco Catalyst 6509
The first PC can access servers fine at all times.
Second PC drops off intermittantly, but can see SOME servers via the uplink not others.
Port settings are the same on the...
Folks, I'm trying to create a trunk to my 6509 switch. Its fine until I have both Gigabit ports plugged in. Then is goes pants. Anything I've overlooked?
2950
!
interface Port-channel1
switchport mode trunk
no ip address
!
!
interface GigabitEthernet0/1
switchport mode trunk
no ip address...
Dontcha just hate when you come into a new company and it its a mess.
Our PIX configuration.. being a shining example of one.
4 vendors, 1 ISP and 2 technicians couldn't fix a problem we were having.
Not NATing packets for a particular destination. With some help.. I got there. But there...
I've given this some thought...
I'm going get our provider to allow the branch offices serial link to break out to the internet.. I'll stick another PIX at their side.
If I can get the PIX to let through the 10.4.0.0 traffic through the interface; then i'll do the same at their end with the...
Thanks for the reply..
The PVC terminates on the providers router on the external interface.
I'd assumed that the in and out on the same interface problem would apply.
Perhaps another interface on the pix? or a router in front splitting out the traffic? to split out the public/private traffic..?
Branch office - 10.4.0.0
Main office - 10.1.0.0
External interface of our PIX is connected to our providers router.
The router passes packets from the internet on its serial interface, as well as packets from a PVC from our branch offices.
We need NAT to work out to the big wide world...
Chaps/chapettes, I'm looking to do the following
Branch office - 515 - Internet - 525 - Main office
|
827H (ADSL)
|
Smaller branch office
I want the branch office 515(fixed ip leased line) to...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.