Dan, I wish I could give you two stars. Your answer
got me thinking (usually a bad thing), and I found this
Microsoft site:
hxxp://technet.microsoft.com/en-us/library/78dae136-9600-4f2c-87d3-381448f888df.aspx
(Change hxxp to http. I'm not sure if links are allowed, and did not want to tick off...
My new e-mail server is Exchange 2003 SP2.
My legacy server is Exchange 5.5 . They coexist
in the same domain.
The Exchange 5.5 server is the one facing the Internet.
Users are slowly being migrated to the 2003 server, and
eventually I'll decommission the legacy (5.5) server.
Exchange 5.5...
This is a problem where only one side of the conversation
is heard. No problem with the earpiece, but switched out
handsets, 2-prong adapters, and the phone itself.
Something SHOULD work with a handset, but nothing does.
Only the earpiece...
And there is not a volume control on the handset or...
I have a similar problem. Out of the blue one day,
our attendant console handset stopped working.
It is a 302B1-A-03 ... Anyhow, swapped out two-prong
adapters, coiled cords, etc, and only a headset style
unit worked, where you can unplug the headset half-way
down the cord.
Finally decided to...
the quick and dirty way is:
ip load-sharing per-packet
on each interface.
Anyone can correct me if I am wrong, but I believe
that if one interface is experiencing most of the traffic,
but the traffic from the others does not add up to the remainder of the bandwidth, the higher usage interface...
It is not clear in the documentation, but to enable the
port-based and signature filtering, you need to place the WebSense Network Agent on a machine (mine is separate
from the WebSense server) that can monitor packets on the LAN. If you do not wish for this type of filtering, then the web...
You need two ethernet interfaces (like a 2611).
Here is Cisco's page on routers behind cablemodems:
http://www.cisco.com/warp/public/109/router_behind_cm_19268.shtml
One caveat: Make sure you have an IOS that has the
following interface-based command:
ip address dhcp
and also an IOS that...
We had some timing issues with PIX integrated WebSense
on PIX OS 6.3(4) and earlier, so we upgraded to 7.0(1).
Besides the extra functionality, it fixed the timing
issues with WebSense. I won't go into detail, but
you will need to research which platforms version 7.0(1)
will work on, and if you...
The Nat0 was not the problem. I think it was lack of
ICMP to the router. Sorry, I'm not 100% sure what
corrected it, but it sees the Cisco Trust Agent now.
As for the NAT translation errors, I believe that was
answered earlier, but is there a way I can adjust the
timing so this does not...
The PIX is the VPN endpoint, as you can see from the
config and the "diagram" listed above. Then there is a
router "behind" the PIX. I am trying to authenticate
with a policy server on the LAN, which will then give
the correct token to the CSACS server, which in turn
will allow access through...
Thank you LloydSev for correcting me using the word
"possibly" to preface my answer so I would not be wrong.
Also, thank you for correcting me by specifying which
new build I spoke of.
Since you already know, and can correct or make more
specific, much or all of what I know, I choose not to...
Correct. This is not available on the 501 yet, and possibly
not on the 506, either. Also, the 7.0(1) build on an
unrestricted 515e requires that the firewall have 128Mb
of memory.
And one more thing... I show 208.x in the errors, yet
216.x in the config. Ignore this, this is just me hiding
my real external address. In fact, it starts with neither
of these octets. Just know that the 208 or 216 are in place of my external internet-capable Class C.
Well, still not having Cisco Trust Agent auth, even
after the addition of the 10.1.0.0 network on ACL 6.
Still, I feel the problems may be related.
Anyone see any glaring errors in my config?
I see none.
Whoops... I may see the CTA auth problem, in that
access-list 6 needs to also include 10.1.0.0 network.
But that still doesn't explain the translation errors I
get. Please advise on that.
the network goes like this...
Please note that traffic appears to be going smoothly,
it is just that I get the translation errors now,
and my Cisco Trust Agent on my VPN client can no longer
authenticate. Once again, before going to 7.0(1), my
config worked fine at 6.3(4).
Here it is:
PIX Version 7.0(1)
names
name...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.