About 'show ip routes' command on Content Engine

Hello!
I have a question.
CE has only one default static route configured, however the output below show that it has 361 cached routes:
#sh ip routes
Destination Gateway Netmask
Number of route cache entries: 361
^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^^
What does it mean?
ACNS version 5.3.7
The official documentation is silent in this case.
Thank you.

it's the same as the old version of ip route caching in IOS in the old days.
When the router had to go a routing decision it would cache it for later to speed up routing.
This is the same here.
The CE will cache any recent route lookup decision it had to take.
Gilles.

Similar Messages

  • Show ip route / routing table

    hi all,
    i have a question regarding the output of the "show ip route" command:
    C         192.168.30.0/24 is directly connected, Ethernet0                                  
                172.16.0.0/24 is subnetted, 1 subnets
    S          172.16.1.0 is directly connected, Ethernet0
                   192.168.38.0/24 is variably subnetted, 2 subnets, 2 masks
    S       192.168.38.0/24 is directly connected, Ethernet0
    S       192.168.38.0/25 [1/0] via 192.168.30.40
         10.0.0.0/32 is subnetted, 1 subnets
    C       10.1.1.1 is directly connected, Loopback1
    I understand why lines 4,5 and 6 are present. Its cause the network 192.168.38.0 is supposed to have a /24 mask but there is also a network with a /25 mask and thus it says this network is variably subnetted.
    But why doesnt it show the same for line 2 and 3? Shouldnt it say 172.16.0.0/16 is subnetted? I understand why is doesnt show "variably subnetted" as there is only on subnet but why not 172.16.0.0/16?
    And the same for the last two lines. Why not 10.0.0.0/8 but /32? Even though its a loopback interface still the network 10.0.0.0 is supposed to have a /8 mask by nature.
    And it might be a stupid question but does a static router always have a metric of 0? I guess so as they dont have to compete with other routes, right?
    I mean a static route goes always straight into the routing table and the metric is actually just for comparison reasons within a routing protocol to see what is the best route which should be suggested for being written into the routing table.
    Also i tried to put static routes permanently into the routing table with the "permanent" command but always when i detach the cable of the corresponding interface the routes get kicked out of the RT. Is there a trick or something i have to be aware of?
    thanks for any help!

    I will take the easy part of the question first. One of the basic principles of IOS is that it will put routes into the routing table is the corresponding interface is in the up state. And that IOS will withdraw a route from the routing table is the corresponding interface is in the down state. So when you disconnect the interface then the route using that interface is withdrawn.
    The more complex part of the question is the aspect of metrics with static routes. My explanation here would start from the point that the reason we use metrics is so that we can compare routes learned within a protocol and determine whether one is better than the other. This makes sense for RIP, it makes sense for OSPF, and it makes sense for EIGRP. But it does not make sense for static routes. To try to make it a bit more clear: if RIP or OSPF or EIGRP learn a route to a subnet that goes via FastEther0/0 and also learn a route to that subnet that goes via FastEther0/1 then we compare the routes and if one has a more attractive metric then that is the one that gets put into the routing table. But with static routes if there is a static route for a subnet that goes via FastEther0/0 and also a static route for that subnet that goes via FastEther0/1 then there is no comparison and both routes are put into the routing table. Since we do not do comparisons with static routes then there is no concept of metric associated with the static route and IOS puts a default value into the metric field of a static route.
    HTH
    Rick

  • Wacky integration of PIX,Content engine and router

    Dear All,
    I have got a situation...The situation is
    that I have a pix515e, Content Engine and
    Cisco 2620xm router...The 3 attachments contain each of the systems configuration..They are arranged in the following way..
    There is a 192.168.0.0 network ID running on the PIX inside network which is getting translated by pix to 172.16.1.11-172.16.2.254. The e0 of pix has got an IP address of 172.16.1.7. PIX firewall's gateway is the router's ethernet interface which is 172.16.1.3. I have allowed tcp etc traffic for the inside network.
    After PIX there is a content engine 565A which is getting connected via its gigabit interface with IP address of 172.16.1.2 to the network with wccp config.
    The router is running 172.16.1.3 on its ethernet interface with the wccp configuration on WAN facing interface..
    The problem is that I am able to access the Internet from inside of the PIX.. The PIX is translating perfectly...When the traffic reaches the router, it also translates into public addresses perfectly..The user's are accessing Internet without any problem..and i can see the nat maintained on router and pix..
    But the problem is that when i write sh wccp gre on content engine, it doesn't show any activity..This is the problem that content engine is not responding the way it should..
    Right now I am lost why the CE isn't working... If anyone has faced this scenerio before then any help will be greatly appreciated...
    Hoping for a response which resolves this...
    Regards,
    Noman Bari

    Dear Joerg,
    Thank you for your response... That night when I had posted my request for help, I went back to my hotel room, took a shower and focused on CE and router communication and what was configured on them (by some another consultant)...
    And then it struck to me that wccp was never enabled on the router in the global config(see the router config in my 1st posting)... once this glitch was removed, everthing now works .. This was never a pix issue bcuz I could see that it was working the way its suppose to work,xlating was happening, people were surfing the web and stuff but the show commands on CE and router weren't showing any activity..
    The following link on configuring Cisco Cache Software helped me enormously and I recommend to everyone working on CE..
    http://www.cisco.com/en/US/products/sw/conntsw/ps547/products_configuration_guide_book09186a0080087140.html
    Through this process I learned a very important lesson though...when you are troubleshooting a problem, never trust the configurations that have been done by the guy before you...start everything from the scratch by going through the documentation..
    and ofcourse this extremely useful Cisco Forum also...
    Regards,
    Noman Bari

  • About the output of "show dot11 associations" command.

    Hello.
    I have been made to the research of IP Phone 9971 . (Used by Wireless)
    The schematic diagram is shown below.
      CUCM
          |
      L3-SW
          |
      AP 1142 (FW:15.2(2)JB)
          |
      CP-9971 (FW:9.3(2))
    The results of the "show dot11 associations" command are output as follows.
    ap#show dot11 associations
    802.11 Client Stations on Dot11Radio0:
    SSID [XXXXXX]:
    MAC Address   IP Address      Device          Name                      Parent       State
    0026.cba3.0b9f 10.10.60.12     CP-7925       SEP0026CBA30B9F self           Assoc <-----Here!
    f0b4.799f.a9a4  10.10.60.10     unknown       -                              self           Assoc
    ap#
    I'm using the IP Phone 9971 (not CP-7925).
    But the output of "show dot11 associations" command, has become "CP-7925" on Device.
    What Is this by Design? Will it bug or?
    Thank you very much in advance.
    Shigeru Kubota

    Hi, Kayle
    Thanks a lot for replay.
    I am using an autonomous access point.(AP 1142)
    Device firmware is the latest version.
      (AP 1142 : 15.2(2)JB  ,  CP-9971 : 9.3(2))
    As with you, I'm guessing that the access point does not recognize the CP-9971 device, too.
    I'll try to contact the TAC.
    Thank you for your support.
    Best regards,
    Shigeru Kubota

  • Should the Content Engine work while the Inernet link is down ?

    I have installed CE590 in a client network
    The http saving performance is from 30 : 40 %
    My client want to make sure the CE is caching the web site
    He want to shutdown Serial port of the main router , and try to browse web sites. ( the Cached sites )
    Should he get a reply from the CE and browse the cached sites ??
    I mean , Can the PC browser ( while the internet is link is down ) open page like www.yahoo.com for example if it is cached on the CE ??
    Is there is any command of the CE that can display the name of the cahced web pages ?
    Note : Cisco Content Engine Software Release 3.11
    Can anyone help me ?
    Thanks
    Mohamed Abdallah

    Mohamed,
    Before you go any futher you need to upgrade the CE to ACNS 4.2.3. There are known issues with 3.1.1.
    To answer your question the CE will only server content if it can not access the internet if the object is fresh. By this I mean the object has not expired or the object does not need revalidation eg If modified since request.
    This could cause problems with broken pages etc etc.
    Your best option is to turn on transaction logging.
    transaction-logs enable
    You can then go to the local1/logs directory on the CE
    type working.log
    This will show you the urls that clients are requesting and if they got a hit / miss/ ims hit / ims miss etc etc.
    Overall your cache should always have access to the origin server for content.
    Cheers
    Phil

  • Smartfilter with Content Engine Module (NM-CE-BP-40G-K9) & ACNS on 3661

    I've been looking over the CCO docs, but can't find one that has sample configs for using a 3661 router containing content engine module, smartfilter, & ACNS. Topology is basically the following...
    (PC's)----(LAN Switch)-----(3661 w/content engine module)----(PIX)---(internet)
    I don't want to creat a new IP subnet for the 3 interfaces within the content engine module/router. I want to use the IP's from the current LAN IP Block.
    Any advice appreciated.

    I thought this might help.
    Easy NM-CE Configuration Guide!
    Router IOS:c3725-ik9o3s-mz.122-15.T2
    Content Engine Software: ACNS 5.0.3.5
    Configure basic router configuration as normal.
    Set the IP addresses for the Service Module (Content-Engine) using these commands:
    interface Content-Engine2/0
    ip address 10.1.1.1 255.255.255.0
    ip nat inside
    service-module external ip address 10.0.0.1 255.255.255.0
    service-module ip address 10.1.1.2 255.255.255.0
    service-module ip default-gateway 10.1.1.1
    Complete Config Example (DHCP and NAT for Lab):
    urrent configuration : 2440 bytes
    version 12.2
    service timestamps debug datetime msec
    service timestamps log datetime msec
    no service password-encryption
    hostname lab3745_NM-CE
    logging queue-limit 100
    enable password cisco
    ip subnet-zero
    ip wccp web-cache
    ip dhcp pool NM-ESW-16-POOL
    network 10.1.2.0 255.255.255.0
    domain-name cisco.com
    default-router 10.1.2.1
    dns-server 171.68.226.120 171.70.168.183
    lease 7
    ip audit notify log
    ip audit po max-events 100
    no voice hpi capture buffer
    no voice hpi capture destination
    mta receive maximum-recipients 0
    interface FastEthernet0/0
    ip address 172.16.12.108 255.255.255.0
    ip wccp web-cache redirect out
    ip nat outside
    duplex auto
    speed auto
    interface FastEthernet0/1
    no ip address
    shutdown
    duplex auto
    speed auto
    interface FastEthernet1/0
    no ip address
    interface FastEthernet1/1
    no ip address
    interface FastEthernet1/2
    no ip address
    interface FastEthernet1/3
    no ip address
    interface FastEthernet1/4
    no ip address
    interface FastEthernet1/5
    no ip address
    interface FastEthernet1/6
    no ip address
    interface FastEthernet1/7
    no ip address
    interface FastEthernet1/8
    no ip address
    interface FastEthernet1/9
    no ip address
    interface FastEthernet1/10
    no ip address
    interface FastEthernet1/11
    no ip address
    interface FastEthernet1/12
    no ip address
    interface FastEthernet1/13
    no ip address
    interface FastEthernet1/14
    no ip address
    interface FastEthernet1/15
    no ip address
    interface Content-Engine2/0
    ip address 10.1.1.1 255.255.255.0
    ip nat inside
    service-module external ip address 10.0.0.1 255.255.255.0
    service-module ip address 10.1.1.2 255.255.255.0
    service-module ip default-gateway 10.1.1.1
    interface Vlan1
    ip address 10.1.2.1 255.255.255.0
    ip nat inside
    ip local pool NM-ESW-16-POOL 10.1.2.2 10.1.2.254
    ip nat pool TEST-NAT-POOL 172.16.12.108 172.16.12.108 prefix-length 24
    ip nat inside source list 7 pool TEST-NAT-POOL overload
    ip http server
    no ip http secure-server
    ip classless
    ip route 0.0.0.0 0.0.0.0 172.16.12.254
    access-list 7 permit 10.1.2.0 0.0.0.255
    access-list 7 permit 10.1.1.0 0.0.0.255
    access-list 7 permit 10.0.0.0 0.0.0.255
    call rsvp-sync
    mgcp profile default
    dial-peer cor custom
    line con 0
    speed 115200
    line 65
    flush-at-activation
    no activation-character
    no exec
    transport input all
    line aux 0
    line vty 0 4
    password cisco
    login
    end
    reset service-module 2 to reboot the Content-Engine:
    service-module content-Engine 2/0 reload
    Within 30 Seconds Session from the Router to the Service Module:
    service-module content-engine session
    Enter Basic Configuration for Network Module:
    Password, etc…
    Configure The service Modeule using the command line interface:
    hostname NM-CE-BP
    ip domain-name CISCO.COM
    interface FastEthernet 0/0
    ip address 10.0.0.1 255.255.255.0
    exit
    interface FastEthernet 0/1
    ip address 10.1.1.2 255.255.255.0
    exit
    ip default-gateway 10.1.1.1
    primary-interface FastEthernet 0/1
    ip name-server 172.72.1.1
    wccp router-list 1 172.16.12.108
    wccp web-cache router-list-num 1
    wccp version 2
    username xxx password xxxx
    username xxxx privilege 15
    authentication login local enable primary
    authentication configuration local enable primary
    NM-CE-BP#exit
    You can use the command line interface to show statics from the Content Engine by using the show statistics screen command or use your web browers for a more graphical report.

  • Content engine 590

    trying to connect a content engine 590 to a cisco router which will have web-cache enabled.
    The diagram is like this: pc (lan)- fa0/0router-isp. the engine is on the same lan of fa0/0.
    One question bother me is the keyword "in" and "out" from ip wccp web-cache redirected in /out. Noticed new version supports the "in"option. Little confusion about the "in" and "out". Does "out" mean : if the pc send http via fa0/0 to router, since the keyword "out" the router will redirect the http out to the fa0/0 to engine? then keyword "in" is useless. Or the other way,"in" means allow incoming traffic from fa0/0 to be redirected? Confused.
    Hope to get a good explanation here. Thanks very much.

    in and out tells the router where to intercept the HTTP request from the client.
    So, you can intercept on inbound - incoming interface - interface where traffic enters the router. This is the "IN" keyword.
    You can also intercept it on outbound - outgoing interface - interface where traffic is normally forwarded by the router. This is the "OUT" keyword.
    In your case you want the 'in' on interface fa0/0.
    One reason to go for 'in' is much better performance than out.
    [but you could do out on the serial interface going to your isp]
    If the cache is on the same interface as the clients, you need the command 'ip route-cache same-interface' on interface fa0/0 to permit traffic to be redirected to the cache correctly.
    Regards,
    Gilles.

  • Content Engine NM ACNS/network access

    After searching Google and Cisco, here's my setup...
    2851 Router running 15.1T
    CE-NM-BP-80G-K9 in slot 1/0
    Bridge group 1 for LAN and Wireless WIC.
    Goal:  Either add the external CE interface to the LAN on the bridge group or use WCCP to cache traffic through the internal interface.
    I was able to access ACNS once, but I'm completely new to the design and it was only for testing with the IP scheme.  I reset the config, reloaded the router and now I can't access ACNS via the web gui nor can I access the network from the CE (ping or ftp).
    Interface ContentEngine 1/0 Config:
         ip address 10.0.0.1 255.255.255.0
         Service Module ip address 10.0.0.2 255.255.255.0
         Service Module external ip address 10.0.1.1 255.255.255.0
         Service Module ip default gateway 10.0.0.1
    Interface BVI1
         ip address 192.168.2.1 255.255.255.0
         using dhcp etc
    Service module config:
    CE#sh run
    ! ACNS version 5.5.3
    hostname CE
    http proxy incoming 80 8080
    ip domain-name mydomain.com
    interface FastEthernet external
    exit
    interface FastEthernet internal
    exit
    wmt evaluate
    wmt accept-license-agreement
    wmt enable
    ip name-server 8.8.8.8
    ip name-server 192.168.2.1
    wccp router-list 1 192.168.2.1
    wccp web-cache router-list-num 1
    wccp reverse-proxy router-list-num 1
    wccp wmt router-list-num 1
    wccp version 2
    username admin password 1 xxx
    username admin privilege 15
    username xxxx password 1 xxx uid 2001
    username xxxx privilege 15
    authentication login local enable primary
    authentication configuration local enable primary
    cdm ip 192.168.2.1
    ! End of ACNS configuration
    Here's what I get when attempting to ping:
    CE#ping 192.168.2.1
    connect: Network is unreachable
    CE#ping 10.0.0.1
    connect: Network is unreachable
    CE#ping 10.0.1.1
    connect: Network is unreachable
    And from the LAN:
    seth@Sony:~$ ping 192.168.2.1
    PING 192.168.2.1 (192.168.2.1) 56(84) bytes of data.
    64 bytes from 192.168.2.1: icmp_req=1 ttl=255 time=1.79 ms
    ^C
    --- 192.168.2.1 ping statistics ---
    1 packets transmitted, 1 received, 0% packet loss, time 0ms
    rtt min/avg/max/mdev = 1.799/1.799/1.799/0.000 ms
    seth@Sony:~$ ping 10.0.0.1
    PING 10.0.0.1 (10.0.0.1) 56(84) bytes of data.
    64 bytes from 10.0.0.1: icmp_req=1 ttl=255 time=1.39 ms
    64 bytes from 10.0.0.1: icmp_req=2 ttl=255 time=1.93 ms
    ^C
    --- 10.0.0.1 ping statistics ---
    2 packets transmitted, 2 received, 0% packet loss, time 1001ms
    rtt min/avg/max/mdev = 1.396/1.666/1.936/0.270 ms
    seth@Sony:~$ ping 10.0.0.2
    PING 10.0.0.2 (10.0.0.2) 56(84) bytes of data.
    ^C
    --- 10.0.0.2 ping statistics ---
    2 packets transmitted, 0 received, 100% packet loss, time 1006ms
    seth@Sony:~$ ping 10.0.1.1
    PING 10.0.1.1 (10.0.1.1) 56(84) bytes of data.
    ^C
    --- 10.0.1.1 ping statistics ---
    2 packets transmitted, 0 received, 100% packet loss, time 1007ms
    Page cannot be displayed when attempting to hit the CE on port 8001 or securely at 8003 although the CE shows it's listening
    CE#sh gui-server     
    GUI Server is enabled
    Listen on port 8001
    Secured GUI Server is enabled
    Secured GUI Listen on port 8003
    Let me know if there's some other pertinent info, but what am I missing?

    SOLVED --
    The mistake was my own...in writing this post and re-testing, I realized I had made a foolish mistake. I applied an access-list (which I forgot to include) to the "ip wccp web-cache redirect-list bypass_content_engine" in the global config of the router.
    When I installed service 95 for spoofing, I automatically added the same access list to it as well.
    This was not a good thing since the access list denied packets with a destination of our internal IP addresses from going through the content engine. This worked fine on the way *out* of the router. But as the now-spoofed packets returned, their destination was an inside IP address and they were pretty much discarded. Foolish Mistake!
    Removing the ACL from the "ip wccp 95" statement in the global config fixed the issue and I am spoofing fine.
    Sorry to waste time...
    David Hunter

  • Physical Interface not present in show ip route connected

    Hi,
    Thanks for reading my post.
    I have a reccurent issue with a CISCO881-K9.
    My WAN interface is regularly unsuable even if it's UP/UP. I can't even ping the interface from the router itself.
    A reboot solves the issue. But now I have time and I'd like to get a proper understanding of what's going on.
    The route doesn't appear in "show ip route connected".
    Router#show ip interface brief
    Interface                  IP-Address      OK? Method Status                Protocol
    FastEthernet0              unassigned      YES unset  up                    up
    FastEthernet1              unassigned      YES unset  down                  down
    FastEthernet2              unassigned      YES unset  down                  down
    FastEthernet3              unassigned      YES unset  down                  down
    FastEthernet4              X.Y.Z.82    YES NVRAM  up                    up
    Loopback0                  10.31.129.5     YES NVRAM  up                    up
    NVI0                       X.Y.Z.82    YES unset  up                    up
    Tunnel0                    10.32.129.1     YES NVRAM  up                    down
    Vlan1                      172.22.129.102  YES NVRAM  up                    up
    Router#ping X.Y.Z.82
    Type escape sequence to abort.
    Sending 5, 100-byte ICMP Echos to X.Y.Z.82, timeout is 2 seconds:
    Success rate is 0 percent (0/5)
    Router#
    Router#show ip route
    Gateway of last resort is X.Y.Z.81 to network 0.0.0.0
    S*    0.0.0.0/0 [1/0] via X.Y.Z.81
          10.0.0.0/8 is variably subnetted, 3 subnets, 2 masks
    R        10.30.129.0/24 [120/1] via 172.22.129.101, 00:00:08, Vlan1
    R        10.31.129.1/32 [120/1] via 172.22.129.101, 00:00:08, Vlan1
    C        10.31.129.5/32 is directly connected, Loopback0
          172.22.0.0/16 is variably subnetted, 3 subnets, 2 masks
    S        172.22.128.0/24 [1/0] via 172.28.28.254
    C        172.22.129.0/24 is directly connected, Vlan1
    L        172.22.129.102/32 is directly connected, Vlan1
          172.27.0.0/24 is subnetted, 1 subnets
    S        172.27.0.0 [1/0] via 172.28.28.254
          172.28.0.0/24 is subnetted, 1 subnets
    R        172.28.28.0 [120/2] via 172.22.129.101, 00:00:08, Vlan1
          172.30.0.0/24 is subnetted, 1 subnets
    S        172.30.1.0 [1/0] via 172.28.28.254
          172.31.0.0/24 is subnetted, 1 subnets
    S        172.31.0.0 [1/0] via 172.28.28.254
    S     192.0.0.0/16 [1/0] via 172.28.28.254
          192.168.48.0/32 is subnetted, 1 subnets
    S        192.168.48.247 [1/0] via 172.28.28.254
          192.168.84.0/32 is subnetted, 1 subnets
    S        192.168.84.247 [1/0] via 172.28.28.254
    S     192.168.101.0/24 [1/0] via 172.28.28.254
    R     192.168.104.0/24 [120/2] via 172.22.129.101, 00:00:08, Vlan1
    Router#show ip route connected
    Codes: L - local, C - connected, S - static, R - RIP, M - mobile, B - BGP
           D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
           N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
           E1 - OSPF external type 1, E2 - OSPF external type 2
           i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
           ia - IS-IS inter area, * - candidate default, U - per-user static route
           o - ODR, P - periodic downloaded static route, H - NHRP, l - LISP
           + - replicated route, % - next hop override
    Gateway of last resort is X.Y.Z.81 to network 0.0.0.0
          10.0.0.0/8 is variably subnetted, 3 subnets, 2 masks
    C        10.31.129.5/32 is directly connected, Loopback0
          172.22.0.0/16 is variably subnetted, 3 subnets, 2 masks
    C        172.22.129.0/24 is directly connected, Vlan1
    L        172.22.129.102/32 is directly connected, Vlan1
    interface FastEthernet4
     description WAN
     ip address X.Y.Z.82 255.255.255.252
     no ip proxy-arp
     ip flow ingress
     ip nat outside
     ip virtual-reassembly in
     ip tcp adjust-mss 1300
     duplex full
     speed 100
     keepalive 3
     crypto map MYSTREAM-MAP
     hold-queue 224 in
    end
    Router#show interfaces fastEthernet 4
    FastEthernet4 is up, line protocol is up
      Hardware is PQII_PRO_UEC, address is 4403.a738.3c02 (bia 4403.a738.3c02)
      Description: WAN
      Internet address is X.Y.Z.82/30
      MTU 1500 bytes, BW 100000 Kbit/sec, DLY 100 usec,
         reliability 255/255, txload 1/255, rxload 1/255
      Encapsulation ARPA, loopback not set
      Keepalive set (3 sec)
      Full-duplex, 100Mb/s, 100BaseTX/FX
      ARP type: ARPA, ARP Timeout 04:00:00
      Last input 00:00:06, output 00:00:35, output hang never
      Last clearing of "show interface" counters never
      Input queue: 0/224/0/0 (size/max/drops/flushes); Total output drops: 0
      Queueing strategy: fifo
      Output queue: 0/40 (size/max)
      5 minute input rate 0 bits/sec, 0 packets/sec
      5 minute output rate 0 bits/sec, 0 packets/sec
         26675 packets input, 1826301 bytes
         Received 12230 broadcasts (0 IP multicasts)
         0 runts, 0 giants, 0 throttles
         0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
         0 watchdog
         0 input packets with dribble condition detected
         44029 packets output, 8969818 bytes, 0 underruns
         0 output errors, 0 collisions, 4 interface resets
         0 unknown protocol drops
         0 babbles, 0 late collision, 0 deferred
         3 lost carrier, 0 no carrier
         0 output buffer failures, 0 output buffers swapped out
    Could you help on this? Or lead me to Tshoot that problem.
    By the way the interface 4 is connected to an ISP Modem (TWC in US).
    Thanks,
    William

    Hi,
    Thanks for your answer. I've checked the release notes and there is no bug about that.
    I think I must use the WAN interface which is fastethernet 4. I'm not able to change the patch cable for now.
    What could be the cause?
    show version
    Cisco IOS Software, C880 Software (C880DATA-UNIVERSALK9-M), Version 15.1(4)M4, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2012 by Cisco Systems, Inc.
    Compiled Wed 21-Mar-12 00:27 by prod_rel_team
    ROM: System Bootstrap, Version 12.4(22r)YB5, RELEASE SOFTWARE (fc1)
    Router uptime is 1 week, 3 hours, 6 minutes
    System returned to ROM by reload at 08:12:54 UTC Fri Oct 3 2014
    System restarted at 08:14:30 UTC Fri Oct 3 2014
    System image file is "flash:c880data-universalk9-mz.151-4.M4.bin"
    Last reload type: Normal Reload
    Last reload reason: Reload Command
    If you require further assistance please contact us by sending email to
    [email protected]
    Cisco 881 (MPC8300) processor (revision 1.0) with 236544K/25600K bytes of memory.
    Processor board ID FGL1652265J
    5 FastEthernet interfaces
    1 Virtual Private Network (VPN) Module
    256K bytes of non-volatile configuration memory.
    125440K bytes of ATA CompactFlash (Read/Write)
    License Info:
    License UDI:
    Device#   PID                   SN
    *0        CISCO881-K9           FGL1652265J
    License Information for 'c880-data'
        License Level: advsecurity   Type: Permanent
        Next reboot license Level: advsecurity
    Configuration register is 0x2102

  • Content Engine Network Module for Caching File Server Objects

    We have a content engine network module for a 2821 router located at a branch office that we'd like to use for clients to obtain locally cached file objects from a Windos server located at our headquarters or corporate office. I've been looking for some sample configs or documentation that will show me that this is possible and on how to do it since this is my first time ever doing. All I was able to find so far was the link below under "Support of Preloading of NTLM Authenticated Objects", but it seems incomplete in providing configuration tasks that most CCO doc's usually provide. Has anyone else had any luck finding some useful doc's or sample configs to get this accomplish? Thanks in advance.
    http://www.cisco.com/univercd/cc/td/doc/product/webscale/uce/acns55/55ldg/urlfiltr.htm#wp1158213

    You can't cache Windows Files using the Cache Engines.
    You CAN do this using WAFS though. I'd suggest looking at the WAFS (or upcoming WAAS) products, which use WCCP like the Cache Engines to transparently redirect Windows File Sharing requests.

  • Content Engine CE565 authentication cache

    I have a Content Engine CE565 running software version CE 5.1.7
    The commands <show users request-authenticated> and <show http-authcache> provide me with information on authenticated users, but I would like to know how to determine the time remaining for a user/ip address in the authcache. This is with the understanding that the authentication will timeout after the configured period of inactivity (in minutes).
    Also, is there a way to remove the authentication cached for single user/ip address? Understanding that the authentication cache resides in RAM. The only command that I am aware of is <clear users request-authenticated>, which clears all authenticated users. However, this requires all users to reauthenticate. TIA

    As far as I know, there is no way to clear a single user, only all of them by using the command you mentioned above. The command http authentication cache timeout can be used to configure the time between last access and cache removal.

  • Content Engine errors.

    Hi there,
    I'm having some problems with Content Engine.
    I would appreciate any help.
    It gives following errors:
    Jun 12 08:15:59 CE01 wccp: %CE-WCCP-5-500008: WCCP: A new view from
    the 25.25.25.25. Change number = 28
    Jun 12 08:15:59 CE01 wccp: %CE-WCCP-5-500014: WCCP: New CE notified of
    15.16.17.208
    Jun 12 08:15:59 CE01 wccp: %CE-WCCP-5-500026: New CE entry being
    created for 15.16.17.208 seen by router 25.25.25.25
    Jun 12 08:16:07 CE01 wccp: %CE-WCCP-4-500015: WCCP:No assignment sent:
    15.16.17.204 not in Router View
    Jun 12 08:16:08 CE01 wccp: %CE-WCCP-5-500008: WCCP: A new view from
    the 25.25.25.25. Change number = 29
    Jun 12 08:16:08 CE01 wccp: %CE-WCCP-5-500014: WCCP: New CE notified of
    15.16.17.204
    Jun 12 08:16:08 CE01 wccp: %CE-WCCP-5-500026: New CE entry being
    created for 15.16.17.204 seen by router 25.25.25.25
    Jun 12 08:16:17 CE01 wccp: %CE-WCCP-5-500019: WCCP: New WC in compute
    assign 15.16.17.204
    Jun 12 08:16:40 CE01 wccp: %CE-WCCP-3-500001: HTTP Proxy may be down,
    keepalives halted!
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: ds_getStruct got error :
    50 for key stat/cache/http/perf/throughput/requests/sum connection 5
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: ds_getStruct: unable to
    get `stat/cache/http/perf/throughput/requests/sum' from dataserver
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: unable to get http
    request throughput stats(error 50)
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: ds_getStruct got error :
    4 for key stat/cache/https/request connection 5
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: ds_getStruct: unable to
    get `stat/cache/https/request' from dataserver
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: unable to get https
    request throughput stats(error 4)
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: ds_getStruct got error :
    4 for key stat/cache/ftp connection 5
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: ds_getStruct: unable to
    get `stat/cache/ftp' from dataserver
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: unable to get
    ftp-over-http request throughput stats(error 4)
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: ds_getStruct got error :
    4 for key stat/cache/http/usage/cpu/sum connection 5
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: ds_getStruct: unable to
    get `stat/cache/http/usage/cpu/sum' from dataserver
    Jun 12 08:20:54 CE01 java: %CE-CMS-4-700001: unable to get cpu
    stats(error 4)

    Hi guys,
    I am really out of ideas!!!
    I've updated software couple times already.
    but nothing helps.
    it still gives same error:
    Jun 16 14:23:01 ponent exec_show_stats: %CE-CLI-3-170013: item stat/cache/http/usage/cpu/sum not found not found in dataserver
    Jun 16 14:23:01 ponent exec_show_stats: %CE-CLI-3-170013: item stat/cache/http/request not found not found in dataserver
    Jun 16 14:23:01 ponent exec_show_stats: %CE-CLI-3-170013: item stat/cache/https/request not found not found in dataserver
    Jun 16 14:23:01 ponent exec_show_stats: %CE-CLI-3-170013: item stat/cache/https/requests not found not found in dataserver
    Jun 16 14:23:01 ponent exec_show_stats: %CE-CLI-3-170013: item stat/cache/ftp-native not found not found in dataserver
    Jun 16 14:23:01 ponent exec_show_stats: %CE-CLI-3-170013: item stat/cache/ftp not found not found in dataserver
    Jun 16 14:23:02 ponent exec_show_stats: %CE-CLI-3-170013: item stat/wccp/bypass not found not found in dataserver
    Jun 16 14:23:02 ponent exec_show_stats: %CE-CLI-3-170013: item stat/wccp/bypass not found not found in dataserver
    Jun 16 14:23:52 ponent exec_rule: %CE-CLI-3-170013: Verifier not responding. when setting cfg/gl/cache/rule/stat/show (Error number: 32)
    Jun 16 14:23:52 ponent exec_show_stats: %CE-CLI-3-170013: item stat/cache/http/err not found not found in dataserver
    Jun 16 14:23:52 ponent exec_show_stats: %CE-CLI-3-170013: item stat/cache/https/err not found not found in dataserver
    Jun 16 14:24:37 ponent cfg_bin_urlfilter: %CE-CLI-3-170013: Verifier didn't respond. Need to re-register verifier. when setting /cfg/gl/cache/urlfilter/http/enable (Error number: 64)
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: ds_getStruct got error : 4 for key stat/cache/http/perf/throughput/requests/sum connection 5
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: ds_getStruct: unable to get `stat/cache/http/perf/throughput/requests/sum' from dataserver
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: unable to get http request throughput stats(error 4)
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: ds_getStruct got error : 4 for key stat/cache/https/request connection 5
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: ds_getStruct: unable to get `stat/cache/https/request' from dataserver
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: unable to get https request throughput stats(error 4)
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: ds_getStruct got error : 4 for key stat/cache/ftp connection 5
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: ds_getStruct: unable to get `stat/cache/ftp' from dataserver
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: unable to get ftp-over-http request throughput stats(error 4)
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: ds_getStruct got error : 4 for key stat/cache/http/usage/cpu/sum connection 5
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: ds_getStruct: unable to get `stat/cache/http/usage/cpu/sum' from dataserver
    Jun 16 14:24:45 ponent java: %CE-CMS-4-700001: unable to get cpu stats(error 4)
    Jun 16 14:24:47 ponent java: %CE-CMS-4-700001: ds_getStruct got error : 4 for key stat/cache/http/perf/throughput/requests/sum connection 5
    Jun 16 14:24:47 ponent java: %CE-CMS-4-700001: ds_getStruct: unable to get `stat/cache/http/perf/throughput/requests/sum' from dataserver
    Jun 16 14:24:47 ponent java: %CE-CMS-4-700001: unable to get http request throughput stats(error 4)
    Jun 16 14:25:15 ponent cfg_bin_urlfilter: %CE-CLI-3-170013: Verifier didn't respond. Need to re-register verifier. when setting /cfg/gl/cache/urlfilter/http/enable (Error number: 64)
    Jun 16 14:25:24 ponent writemem.sh: %CE-CLI-2-170054: running-config has 0 line(s)
    Jun 16 14:25:24 ponent exec_copy: %CE-CLI-3-170055: Copy running-config to startup-config failed!. status(1.20)
    please, any suggestion would be appreciated.

  • Content engine datapacket

    Hi
    I have a content engine ,its uses for transprancy proxy.
    i have two router .one router used for lan and remote connect(wccp enable) and another router connect only for internet.
    as example:
    router1:203.110.153.10
    content engine:203.110.153.11
    internet router(inside interface): 203.110.153.12
    now router1 gateway 203.110.153.12
    and content engine gw:203.110.153.12
    I confirure router1 that all http request redirect out to content engine.
    router1,contentengine and inside interface of internet router connect same switch cisco 3550.
    now problem is::
    when content engine not connected then the switch port which connect router1 data transfer 3Mb input/output.
    but when content engine connected ,then the switch port of content engine shows 4Mb data Input/output.
    I think data transfer increase becuse content engine internal communication with router1 and also internet router.
    am i right ?. or if i use transparent proxy then bandwith increase ?.
    pls anyone help me ?.
    thanks
    biplob

    Hello Biplob,
    as a matter of fact, the CE is supposed to actually decrease the amount of bandwidth...
    You say that data throughput goes up to 4MB, is that only right after you connect the Content Engine, or does it stay at that increased level ? In the first case, that could probably be explained by the CE starting to fill its cache. In the latter, you could try and turn on 'ip accounting' on the interface connecting router 1 to the 3550. The IP accounting data should at least tell you the source and destination of the increased traffic...
    Regards,
    GP

  • Content engine 510 - transparent proxy stand-alone

    Hello to all,
    after studying architecture examples about Content Engine 510, I found that there is two modes:
    1) standard proxy
    2) transparent proxy
    I need the transparent architecture !
    But every example about transparent mode seems to include a router or a switch with a particular level of software, that can send http requests to the Content Engine to have cache.
    I don't have any of these components.
    I simply need to have a Content Engine that receive any kind of IP protocols on one ethernet, and route it to the other ethernet plug, except that if it is http protocol, it will cache the pages.
    Is is simply impossible to configure the Content Engine 510 that way ?
    Is the transparent proxy mode always requires a router or a switch to give it the http flow ?
    If it is possible, where can I find some configuration examples ?
    Thanks to help a newbie in content engine...
    Olivier

    Olivier,
    You'll need to have a router running wccp in order to redirect http requests to the cache. Withouth this, the cache has no visibilty of traffic on your LAN.
    Regards,
    Dave

  • Show ip route, Why 46.1.1.4 is chosen as default route ?

    Dear All,
    Can you give some idea about this: when entering command "show ip route" the output is as the following. Why  46.1.1.4 is chosen as default route instead of 36.1.1.3 ? Thank you
    R6#sh ip route
    Gateway of last resort is 46.1.1.4 to network 0.0.0.0
         36.0.0.0/24 is subnetted, 1 subnets
    C       36.1.1.0 is directly connected, FastEthernet0/1
         67.0.0.0/24 is subnetted, 1 subnets
    C       67.1.1.0 is directly connected, Serial0/2
         78.0.0.0/24 is subnetted, 1 subnets
    S       78.1.1.0 [1/0] via 67.1.1.7
         46.0.0.0/24 is subnetted, 1 subnets
    C       46.1.1.0 is directly connected, Serial0/0
    S*   0.0.0.0/0 [1/0] via 46.1.1.4
                          [1/0] via 36.1.1.3
    R6(config)#do sh run | s route
    ip route 0.0.0.0 0.0.0.0 36.1.1.3
    ip route 0.0.0.0 0.0.0.0 46.1.1.4
    ip route 78.1.1.0 255.255.255.0 67.1.1.7

    Hello, the static default route is showing to two next hops, 46.1.1.4 and 36.1.1.3. They have the same Admin Distance and cost, if CEF is enabled it will load-share per session (src-dst IP pair)
    If the router was only using one of the routes, only one would be displayed.

Maybe you are looking for

  • WebLogic Admin server fails to start after reboot

    Hi Gurus, Weblogic Admin server won't start up after a server reboot. Note that weblogic was gracefully shutdown before the restart. Also note that the following files were accidentally deleted after the reboot (but I don't think that should cause an

  • Pages won't open AW6 DataBase

    I have a valuable database which I started making about 10 years ago. Now that my new machine has Pages rather than AppleWorks, nothing will open the old DB. I'd rather not turn it into a spreadsheet if possible as the DB formatting is the reason it

  • Can't login to wiki

    Hello everyone, I can't login to my local Mac OS Server Wiki and also I can't find Directory.app that seems to be needed to add a wiki user. Can anyone point me in the right direction?

  • Pages 5.0.1 file won't open

    I've read other posts.  My old docs still open in '09.  I've created new ones in 5.0.1 and have been able to open them.  Now I just created one, saved it to my desktop, tried to open it and I'm told I need to buy the upgrade, 5.0.1, which I'm using! 

  • Implement multiple remote interfaces

    Hi there, I wanted to write an RMI application with an remote object which implement two different remote interfaces, each has its own remote methods. eg: public class TestImpl implements Test1, Test2 { I only want to allow client to call the methods