You can create interface VLAN 10 with a nameif of 50 (leave interface VLAN 1 with the default nameif of 100) so any devices on VLAN 10 cannot initiate a connection with VLAN 1 BUT can nat and go out the Outside interface onto the Internet.
One question - does that 5505 have the Base license or...
Management wants a delay in case the main link flaps or is being tested by the service provider. They are afraid this would cause the critical applications at the remote site to hose.
I just used dynamic routing protocols for this; eBGP over the MPLS cloud (primary link), and EIGRP over a GRE-over-IPSec tunnel (backup link). It fails over and back properly. However, I still wish to have a five minute delay for connectivity to resume over to the primary link once it has been...
I used the neighbor x.x.x.x allowas-in command on the AS 65001 routers on both sides of the "cloud", now they are exchanging routes via eBGP. This was the result I wanted.
Thanks for the idea!
Ross Perot was right...
I am trying to duplicate a production environment in a lab. The "remote site" router is BGP AS 65001, it has a neighborship with a router in the "cloud" that is BGP AS 12345 (not actual), then the other end of the "cloud" is adjacent to the "HQ" router which is also BGP AS 65001.
In the actual...
Hello. I am looking into implementing a WAN backup solution for some remote sites. The primary WAN connection right now is over MPLS to the router's serial interface, my company wants to have a backup internet connection to connect to the router's second fastethernet interface. If the main MPLS...
I bought a guide for SUSE Linux server and it showed me how. Not only can I create different subnet scopes, but I can bind manual DHCP to MAC addresses.
Ross Perot and Ralph Nader were right...
I am trying to set up a DHCP server using SUSE 10.0. I can create one DHCP scope for the same subnet as the server's NIC, but I want to create more DHCP scopes in different subnets.
Anyone know how I can do this?
VlanX does not currently have an SVI.
I have the two access ports shut down which are to be bridged together. Bpduguard and bpdufilter are enabled on both ports.
The IPs of the devices to be migrated cannot be changed (long story). That is why I want to bridge vlan 1 and vlan X together until migration is complete.
The IP gateway is still on VLAN 1. Once the devices are all migrated, we will take the SVI off VLAN 1 and put the same IP gateway address on the new VLAN, which does not have an SVI now.
There are about two hundred devices on this IP subnet spread over about thirty or more downstream switches...
Hello.
We are in process of migrating IP connectivity for network devices in one subnet from VLAN 1 to another VLAN. We are planning to connect a crossover cable on the core switch which will bridge an access port in VLAN 1 to an access port in the new VLAN. There are no other access ports...
If a router interface has a route map applied to it, and a packet does not match ANY of the match statements in the route map, does the packet still get routed as normal, or does it get dropped?
My home network is also a lab. I just want to try something different and gain some experience with the ASA 5505.
There's no better way for me to learn other than by getting my hands dirty... :)
Any state, any entity, any ideology
that fails to recognize the worth, the dignity, the rights...
I have a Cisco 1811 router with an IOS firewall. This router has two routed ports (one of which connects to the ISP) and eight switched ports, from which I use one VLAN to connect to my PCs and printers, and a second VLAN for my girlfriend's son's PC only (it's loaded with spyware and malware -...
t0mm0.
I must chime in and tell you I love that banner. Please do not take offense if I copy it and use it for my home router. :)
Any state, any entity, any ideology
that fails to recognize the worth, the dignity, the rights of man;
that state is obsolete.
Rod Serling, 1961
The Cisco 2960 has a dual-purpose uplink port (one SFP and one RJ45). You may need to go in to interface config mode and hard-code it as an SFP module:
(config-if)# media-type sfp
I ran into this before when the fiber uplink port on a 2960 did not work properly...
Any state, any entity...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.