I am a Cisco guy, and have all my Cisco Routers/Switches syslogs being sent to my linux syslog server with syslog-ng running on it, and those logs piped to MySql to allow me to view the logs web based with PHP-Syslog-ng, and all works fine.
We just got two Extreme Summit X250's in and I have...
Thanks for all you alls help. I got it working this morning.
It was two factors as you all stated.
1. The old 2900XL was using "isl", and I had to set it to 802
2. I had to add "all" to the switchport trunk allowed on both switch ports.
It worked no problem after that.
The dotqtunneling was put there, just as a test since it was uplinking to an Avaya 363 that was passing all tags and VLANS. The CDP part I will fix, since I hadn't noticed it while trying to get the devices to talk.
I have since as a test, took the 3750 and 363 out of the picture and I am now...
Also, I know that bypassing the 363 probably would do the trick, the problem with this is:
1. The buildings are kinda far apart, so 2950 LX to 2950 LX will not work.
2. 3750 to media converter to 2950 can not be done, because my company will not let me use a media converter to do this. This...
Here are the configs. I couldn't get the 363s overall config, but I do have its uplink ports to the 2950 and 3750 dot1q tag and bound to all. Will be ports gi1/0/12 on 3750s config, and port 7 on 2950's config.
Here is 1st device - 7204
!
version 12.4
no service pad
service tcp-keepalives-in...
I have a slight problem I am trying to fix. Here is the scenario and equipment:
- Avaya 363 - 1G GBIC on port 51 (192.168.8.3)
- Cisco 3750 - 1G GBIC on port Gi1/0/12, and 100MB GBIC on port Gi1/0/1 (192.168.8.251)
- Cisco 2900 - 100MB fiber interface (192.168.8.36)
The 363 is connected to...
I should know the answer to this; but thought I'd ask the experts first.
Scenario:
- Will bring up a "new" domain with Windows 2003 Servers as DCs.
- Will take existing Windows 2000 "member" servers, not DCs, out of there "exisiting" domain to workgroup, and then add them to the "new" domain...
Here is the example of what I did:
1. Layer 3 Switch with vlans 10.10.60.X, 61.X, 62.X, etc. Configured routing on the switch. Default vlan ip: 10.10.60.254 and gave each of the other vlans .254. Enable groupings on it to allow them to talk to each other.
2. Pix 506e set up host networks...
Just curious as to I have looked everywhere in the PDM and other than the Logging area, I do not see exactly what I am looking for and would like to know if it is even possible.
I would like to receive email alerts if a user visits inappropriate web sites, I know with sonic wall I could do...
Also, I installed the Cisco VPN client on the end users laptops and configured the newly created VPN Group. I now have access to internal network and my servers can get access to the internet after removing the old access rule for the old vpdn users.
You may also have to put in an access rule once the inside part is changed to outside. I was having the same problem; but figured it out. I will look at my config.
I got it figured out. I used the ole VPN for Dummies way. I used the VPN Wizard for a Remote Access and got it working fine so far. Thanks for the reply.
I have configured a cisco vpn client group called:
cvpngrp and created a password for that group, on a pix 506e.
I have configured a pool for it to use for ip addresses, 192.168.66.100 - 200.
I have not messed with tunneling, etc. for now. I did set a dns server, and domain for the cvpngrp...
Would downloading and installing Cisco VPN Client help in this matter? I believe I failed to mention the end user's are using Windows VPN setup to connect in the present setup.
I tried switching the name 192.168.60.0 VPNConnections to name 192.168.66.0 VPNConnections to see if it would route to 10.10.66.0, to no avail. I still need to put in the access rule for it, and it breaks my NAT for 10.10.66.0 and my nssvrs still can't access the internet.
I can get around...
Here is my config:
Building configuration...
: Saved
:
PIX Version 6.3(5)
interface ethernet0 auto
interface ethernet1 auto
nameif ethernet0 outside security0
nameif ethernet1 inside security100
enable password cJeHXX82LEJIszn0 encrypted
passwd cJeHXX82LEJIszn0 encrypted
hostname sens-nspix...
It would be more helpful if you were to post if:
192.168.1.0 and 2.0 are two different locations joined by a site to site VPN and the ips of the outside interfaces for both sites. I assume 1.0 and 2.0 are the inside interfaces for two different pix's?, or are both inside subnets/VPNs on one pix?
Here is my scenario that I am having problems with:
1. Users login to VPN using their vpn username and password as in config:
vpdn username XXXXX password *********
they obtain an ip address of: 192.168.60.XXX
The main pix ip address is 10.10.60.XXX and they could originally get anywhere...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.