Applying access-list to 2950 ethernet port
When applying the following accesslist to port 22 on my 2950 I get the following message:
access-list 101 permit tcp host 192.168.31.250 any eq www
access-list 101 permit tcp host 192.168.31.250 any eq 443
access-list 101 permit tcp host 192.168.31.250 any eq domain
access-list 101 permit tcp host 192.168.31.250 any established
access-list 101 deny ip any any
crete-sw01(config-if)#ip access-group 101 in
%Error: Access-list with 'TCP flags' keyword is not supported on Ethernet Interf
ace.
Please refer to the Software Configuration Guide for all the supported keywords
Is it possible to get around this?
Hello Andy,
my mistake, it looks like the 2950 does not accept the ´established´ keyword...
I guess you need to apply the access list inbound to the Ethernet interface on your router.
Cisco 2950 Switches
Configuring Network Security with ACLs
Unsupported Features
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat2950/12122ea5/2950scg/swacl.htm#wp1043901
Regards,
GP
Similar Messages
-
Access to serial and ethernet port in FPGA for cRIO-9068
hi
i want to know if i can Access to serial and ethernet port in FPGA for cRIO-9068 like camera IP
thanks for helpdalyto wrote:
thanks
but how i can i acquire image with IP camera and fpga ???
The Ethernet hardware interface in the cRIO is not directly connected to the FPGA backplane in a way that you could directly access it. Even if you could it would be a pretty bad idea to try to do. A fully operational TCP/IP network stack implementation in the FPGA would not leave much resources for anything else even on the biggest FPGAs available. That doesn't include support for the typical image compression algorithmes which are even more complicated to implement on FPGA. Even if you would go to highly optimized VHDL code directly it would be a pretty difficult thing to do!
In fact implemenintg the MAC and PHY of an ethernet interface on the FPGA is totally trivial in comparison. The IP level could also be implemented fairly easily in the FPGA but anything above that is going to give you bad headaches and still will be very limited in number of connections and packet sizes it can support.
Rolf Kalbermatter
CIT Engineering Netherlands
a division of Test & Measurement Solutions -
Looking for an Access Point with 2 Ethernet ports and powered via PoE
Hi Gurus,
I am looking for an Access Point with 2 Ethernet ports and the access point can be powered via PoE. I have been assigned with a requirement where the rooms need to have access point as well as an Ethernet Cable provided from the Access Point as a backup for connectivity.
The room only has one data cable coming from the main IT room as well does not have a spare power socket to power the Access Point. Will be good if it can be centrally controlled or controller based.
Any recommendations?
Regards
JFor the backup plan, the cheapest solution may be to just run a couple new cat5e drops to the room(est cost $250). If not then purchase a small Cisco POE switch for the room(est cost $2k). For wireless I would purchase a POE enabled Cisco AP. But you will need to verify the POE switch/blade you will be connecting the AP to can power the AP you buy. I got burned by that issue when we purchased some Cisco 1251 AP's with dual radios and they needed more power than our 4500 POE blades could handle. We were told we would need to purchase new 48 port 10/100/1000 blades or power injectors. Our Cisco sales vendor took the heat for that mistake.
Posted by WebUser Steven Kinney from Cisco Support Community App -
Static nat with port redirection 8.3 access-list using un-nat port?
I am having difficulty following the logic of the port-translation and hoping someone can shed some light on it. Here is the configuration on a 5505 with 8.3
object network obj-10.1.1.5-06
nat (inside,outside) static interface service tcp 3389 3398
object network obj-10.1.1.5-06
host 10.1.1.5
access-list outside_access_in line 1 extended permit tcp any any eq 3389 (hitcnt=3)
access-group outside_access_in in interface outside
So I would have thought the outside access-list should reference the 'mapped' port but even with 3398 open I cannot remote desktop to the host. If I open 3389 then I can connect successfully. What gives?
Thanks in advance..Hello,
I would be more than glad to explain you what is going on!
The thing is since 8.3 NAT is reviewed before the acl so, the ASA receives the packet on the outside interface, checks for a existing connection, if there is none it will un-nat the packet and then check the ACL.
After the packet in un-natted what we have is the private ip addresses and the real ports. so that is why on this versions you got to point the ACL to the private ip addresses and ports.
Regards,
Julio
Rate helpful posts -
Looking for an Access Point with 2 Ethernet ports
Hi,
I am looking for an AP with two ethernet ports. Is there any model of Cisco is available with 2 ethernet ports?
Regards,
Nomanpros:
If an access swich/switch port failed then AP still forward traffic through other switch once power restored through other port.
when PoE failed on its connected switch, it may still work via other port.
Having two ethernet port on AP may require to talk to different switches/stack to achieve AP port redundancy through lag or stateful switch over when cable/switch/AP port failure.
if one physical port become bad on AP, it can be still used with other.
(However, AP/physical port failure can be takencare at RF level using self healing.)
cons:
require additional switch and its config maintanece
currently, AP doesn't require 2 physical port for data transfer perspective.
Require x2 PoE ports.
Additional port increases the cost on AP.
it is possible cisco may make it in future. -
Access-list on CSS11501 Management port??
Hi there,
I know you can apply acl's to circuits, but is it possible to apply them to the management port as well?
regards,
RadboudThanks Gilles, I think I will use one of the fast ethernet ports as the management port
grtz
Radboud -
Why can't I access the internet via ethernet port on my Airport Express?
I have an Airport Extreme base station and two Airport Express units. The Extreme is connected by ethernet to a BT Home Hub (BT is the internet provider). The network works for all the other computers that have Airport cards BUT I want to connect a Mac Mini (no airport card) by ethernet to the Express, but no matter how I try re-jigging the settings on the base station and Express, it won't connect. Mac Mini WILL connect when wired directly to the Extreme base station, so it's not the port. Also, I have been able to stream iTunes to the Express units so they are functioning in that respect. What am I doing wrong or not doing? Do I need to set up a WDS? Is there a bridging mode? Do I need to have a relay? Surely internet via the Express is possible!
The Airport Express units are the A1088 variety. The Extreme is A1354. Originally I set up the base station to create a network and got the Expresses to 'join network'. However, since that didn't work, I dug a little deeper and investigated WDS and bridge settings. The base station wireless mode is 'Create a network'. I selected 'allow this network to be extended' and made sure that the channel used was the same as the Express units. I have set up one Express to be a WDS remote and one to be a WDS relay on the same channel of the same network with the same password. I have specified the MAC address of the base as the main and the other MAC addresses in the appropriate places for the Expresses. I have tried selecting the 802.11b/g radio mode manually as well as in automatic. Access control is off for all units. I have tried the base station connection setting on 'Off (bridge mode)' and 'share a public IP address'. Am I just missing something?
-
Setting up 2nd Ethernet port for NAS connection
Hi
I want to split out my internet and NAS drive access across my two Ethernet ports.
Port 1 is connected to my router and connects to the internet.
Port 2 is connected to a gigabit switch and then into two NAS drives. I have set up the second ethernet port with a manual ip and it says it is connected. But when I use Command K to connect to the ip address of the NAS, it cannot connect. Previously this worked fine when everything was going out of Ethernet port 1.
I suspect I have not set up Ethernet port 2 correctly. So far I have set it up for manual configuration and given it an ip address of 192.168.1.17 (the NAS is 192.168.1.18, Ethernet 1 is 192.168.119). Nothing else has been entered.
Any advice gratefully received. ThanksPing the destination address 192.168.1.19 from a terminal window and see if it responds.
-
WS-C3524-XL-EN , mac access-list , ssh ..
does this switch CATALYST 3500 24 PORT 10/100 SWITCH WITH 2 GBIC SLOTS, ENTERPRISE EDITION with last IOS running on, support SSH , and mac access-list to secure the port with mac
thanksThere is IOS software for the 3550 that supports ssh. You have to have cco login with priviledges - There is a "strong cryptographic (3DES) location on CCO for that software. Go to downloads for 3550 and look for the link.
-
Port Forwarding & Access List Problems
Good morning all,
I am trying to set up port forwarding for a Webserver we have hosted here on ip: 192.168.0.250 - I have set up access lists, and port forwarding configurations and I can not seem to access the server from outside the network. . I've included my config file below, any help would be greatly appreciated! I've researched a lot lately but I'm still learning. Side note: I've replaced the external ip address with 1.1.1.1.
I've added the bold lines in the config file below in hopes to forward port 80 to 192.168.0.250 to no avail. You may notice I dont have access-list 102 that i created on any interfaces. This is because whenever I add it to FastEthernet0/0, our internal network loses connection to the internet.
version 12.4
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
hostname pantera-office
boot-start-marker
boot-end-marker
no logging buffered
enable secret 5 $1$JP.D$6Oky5ZhtpOAbNT7fLyosy/
aaa new-model
aaa authentication login default local
aaa session-id common
dot11 syslog
ip cef
no ip dhcp use vrf connected
ip dhcp excluded-address 192.168.0.1 192.168.0.150
ip dhcp excluded-address 192.168.0.251 192.168.0.254
ip dhcp pool private
import all
network 192.168.0.0 255.255.255.0
dns-server 8.8.8.8 8.8.4.4
default-router 192.168.0.1
ip auth-proxy max-nodata-conns 3
ip admission max-nodata-conns 3
ip domain name network.local
multilink bundle-name authenticated
crypto pki trustpoint TP-self-signed-4211276024
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-4211276024
revocation-check none
rsakeypair TP-self-signed-4211276024
crypto pki certificate chain TP-self-signed-4211276024
certificate self-signed 01
3082025A 308201C3 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 34323131 32373630 3234301E 170D3132 30383232 32303535
31385A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D34 32313132
37363032 3430819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100B381 8073BAC2 C322B5F5 F9595F43 E0BE1A27 FED75A75 68DFC6DD 4C062626
31BFC71F 2C2EF48C BEC8991F 2FEEA980 EA5BC766 FEBEA679 58F15020 C5D04881
1D6DFA74 B49E233A 8D702553 1F748DB5 38FDA3E6 2A5DDB36 0D069EF7 528FEAA4
93C5FA11 FBBF9EA8 485DBF88 0E49DF51 F5F9ED11 9CF90FD4 4A4E572C D6BE8A96
D61B0203 010001A3 8181307F 300F0603 551D1301 01FF0405 30030101 FF302C06
03551D11 04253023 82217061 6E746572 612D6F66 66696365 2E70616E 74657261
746F6F6C 732E6C6F 63616C30 1F060355 1D230418 30168014 31F245F1 7E3CECEF
41FC9A27 62BD24CE F01819CD 301D0603 551D0E04 16041431 F245F17E 3CECEF41
FC9A2762 BD24CEF0 1819CD30 0D06092A 864886F7 0D010104 05000381 8100604D
14B9B30B D2CE4AC1 4E09C4B5 E58C9751 11119867 C30C7FDF 7A02BDE0 79EB7944
82D93E04 3D674AF7 E27D3B24 D081E689 87AD255F B6431F94 36B0D61D C6F37703
E2D0BE60 3117C0EC 71BB919A 2CF77604 F7DCD499 EA3D6DD5 AB3019CA C1521F79
D77A2692 DCD84674 202DFC97 D765ECC4 4D0FA1B7 0A00475B FD1B7288 12E8
quit
username pantera privilege 15 password 0 XXXX
username aneuron privilege 15 password 0 XXXX
archive
log config
hidekeys
crypto isakmp policy 1
encr 3des
authentication pre-share
group 2
crypto isakmp key xxxx address 2.2.2.2
crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
crypto map SDM_CMAP_1 1 ipsec-isakmp
description Tunnel to 2.2.2.2
set peer 2.2.2.2
set transform-set ESP-3DES-SHA
match address 100
interface FastEthernet0/0
description $ETH-WAN$
ip address 2.2.2.2 255.255.255.0
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
crypto map SDM_CMAP_1
interface FastEthernet0/1
description $ETH-LAN$
ip address 192.168.0.1 255.255.255.0
ip nat inside
ip virtual-reassembly
duplex auto
speed auto
interface Serial0/0/0
no ip address
shutdown
ip forward-protocol nd
ip route 0.0.0.0 0.0.0.0 1.1.1.1
no ip http server
ip http authentication local
no ip http secure-server
ip nat inside source route-map SDM_RMAP_1 interface FastEthernet0/0 overload
ip nat inside source static tcp 192.168.0.254 20 1.1.1.1 20 extendable
ip nat inside source static tcp 192.168.0.254 21 1.1.1.1 21 extendable
ip nat inside source static tcp 192.168.0.252 22 1.1.1.1 22 extendable
ip nat inside source static tcp 192.168.0.252 25 1.1.1.1 25 extendable
ip nat inside source static tcp 192.168.0.250 80 1.1.1.1 80 extendable
ip nat inside source static tcp 192.168.0.252 110 1.1.1.1 110 extendable
ip nat inside source static tcp 192.168.0.250 443 1.1.1.1 443 extendable
ip nat inside source static tcp 192.168.0.252 587 1.1.1.1 587 extendable
ip nat inside source static tcp 192.168.0.252 995 1.1.1.1 995 extendable
ip nat inside source static tcp 192.168.0.252 8080 1.1.1.1 8080 extendable
ip nat inside source static tcp 192.168.0.249 8096 1.1.1.1 8096 extendable
access-list 1 remark CCP_ACL Category=2
access-list 1 permit 192.168.0.0 0.0.0.255
access-list 100 remark CCP_ACL Category=4
access-list 100 remark IPSec Rule
access-list 100 permit ip 192.168.0.0 0.0.0.255 10.0.100.0 0.0.0.255
access-list 101 remark CCP_ACL Category=2
access-list 101 remark IPSec Rule
access-list 101 deny ip 192.168.0.0 0.0.0.255 10.0.100.0 0.0.0.255
access-list 101 permit ip 192.168.0.0 0.0.0.255 any
access-list 102 remark Web Server ACL
access-list 102 permit tcp any any
snmp-server community public RO
snmp-server enable traps snmp authentication linkdown linkup coldstart warmstart
snmp-server enable traps vrrp
snmp-server enable traps ds1
snmp-server enable traps tty
snmp-server enable traps eigrp
snmp-server enable traps envmon
snmp-server enable traps flash insertion removal
snmp-server enable traps icsudsu
snmp-server enable traps isdn call-information
snmp-server enable traps isdn layer2
snmp-server enable traps isdn chan-not-avail
snmp-server enable traps isdn ietf
snmp-server enable traps ds0-busyout
snmp-server enable traps ds1-loopback
snmp-server enable traps ethernet cfm cc mep-up mep-down cross-connect loop config
snmp-server enable traps ethernet cfm crosscheck mep-missing mep-unknown service-up
snmp-server enable traps disassociate
snmp-server enable traps deauthenticate
snmp-server enable traps authenticate-fail
snmp-server enable traps dot11-qos
snmp-server enable traps switch-over
snmp-server enable traps rogue-ap
snmp-server enable traps wlan-wep
snmp-server enable traps bgp
snmp-server enable traps cnpd
snmp-server enable traps config-copy
snmp-server enable traps config
snmp-server enable traps entity
snmp-server enable traps resource-policy
snmp-server enable traps event-manager
snmp-server enable traps frame-relay multilink bundle-mismatch
snmp-server enable traps frame-relay
snmp-server enable traps frame-relay subif
snmp-server enable traps hsrp
snmp-server enable traps ipmulticast
snmp-server enable traps msdp
snmp-server enable traps mvpn
snmp-server enable traps ospf state-change
snmp-server enable traps ospf errors
snmp-server enable traps ospf retransmit
snmp-server enable traps ospf lsa
snmp-server enable traps ospf cisco-specific state-change nssa-trans-change
snmp-server enable traps ospf cisco-specific state-change shamlink interface-old
snmp-server enable traps ospf cisco-specific state-change shamlink neighbor
snmp-server enable traps ospf cisco-specific errors
snmp-server enable traps ospf cisco-specific retransmit
snmp-server enable traps ospf cisco-specific lsa
snmp-server enable traps pim neighbor-change rp-mapping-change invalid-pim-message
snmp-server enable traps pppoe
snmp-server enable traps cpu threshold
snmp-server enable traps rsvp
snmp-server enable traps syslog
snmp-server enable traps l2tun session
snmp-server enable traps l2tun pseudowire status
snmp-server enable traps vtp
snmp-server enable traps aaa_server
snmp-server enable traps atm subif
snmp-server enable traps firewall serverstatus
snmp-server enable traps isakmp policy add
snmp-server enable traps isakmp policy delete
snmp-server enable traps isakmp tunnel start
snmp-server enable traps isakmp tunnel stop
snmp-server enable traps ipsec cryptomap add
snmp-server enable traps ipsec cryptomap delete
snmp-server enable traps ipsec cryptomap attach
snmp-server enable traps ipsec cryptomap detach
snmp-server enable traps ipsec tunnel start
snmp-server enable traps ipsec tunnel stop
snmp-server enable traps ipsec too-many-sas
snmp-server enable traps ipsla
snmp-server enable traps rf
route-map SDM_RMAP_1 permit 1
match ip address 101
control-plane
line con 0
logging synchronous
line aux 0
line vty 0 4
scheduler allocate 20000 1000
end
Any/All help is greatly appreciated! I'm sorry if I sound like a newby!
-EvanHello,
According to the config you posted 2.2.2.2 is your wan ip address and 1.1.1.1 is the next hop address for your wan connection. The ip nat configuration for port forwarding should look like
Ip nat inside source static tcp 192.168.0.250 80 2.2.2.2 80
If your provider assigns you a dynamic ipv4 address to the wan interface you can use
Ip nat inside source static tcp 192.168.0.250 80 interface fastethernet0/0 80
Verify the settings with show ip nat translation.
Your access list 102 permits only tcp traffic. If you apply the acl to an interface dns won't work anymore (and all other udp traffic). You might want to use a statefull firewall solution like cbac or zbf combined with an inbound acl on the wan interface.
Best Regards
Lukasz -
Ethernet port 0/0 on Cisco 2600 unable to access NM-ESW-16 ports
Is it possible to config the E0/0 port on the Cisco 2600 router to access the FE ports on the on-board NM-ESW-16? There is only one Ethernet port on the router.
Thanks for the reply. However, we are unclear how to accomplish this. I tried the no switchport mode command on a FE port on the switch. Afterwards, I tried to assign an IP adddress and mask to the port. The switch responded saying that an IP address cannot be applied to a L2 port. What I need to understand is how to re-assign a L2 port as a L3 port. Thanks for any added help.
kjjscharff -
No internet access via ethernet port
Hi, have been using my emac via ethernet cable to router, for many months with NO problem accessing internet and others cabled to same router also having no problem and I have used my Pwr Mac wtih no problem and have never had to make any specific settings to either to access the net via the router which gets its wifi signal from elsewhere. With system preferences > network > ethernet open I can see the the router is being recognized cause it appears or dissappears as soon as I plug or unlug the ethernet cable. I open "Activity Monitor" and occasionally, very briefly, there will be data incoming( green spikes ) or outgoing( red spikes ). HD verified OK, ran disk permnissions and scripts. Have not yet run Apple or other( Micro-mat ) hardware testing programs tho I will later. Does anyone know if there is a PLIST file that can get corrupted that would affect ethernet port functioning properly? My guess it is hardware but since I can see the router is recognized makes me wonder about corrupt file ergo a system error or possibly inloaded some file that caused conflict. I also booted from my external drive and tried accessing from the cloned OS system and still did not work. The cloned system is the original has never been updated, nor has any of the applications in clone, so, if it was "system" problem the clone should have worked. However, I had cloned user ergo newest documents, library etc, so that would be the only possible source of conflicts when booted from clone system....Thx Ran
Ping test should be interesting.
Start by pinging router address. Should be able to ping building router if you can figure out it's address.
Could you go wireless to building net? You might buy a usb dongle.
USB dongle
Introducting RokIt, a new wireless USB adapter that is compatible with Mac OS 10.3, 10.4, and 10.5 Leopard.
http://rokland.com/store/productinfo.php?productsid=319
Newer Technology MAXPower 802.11n/g/b USB Adapter. The easiest way to add Wireless Connectivity to ANY computer! 2 Year Warranty.
http://eshop.macsales.com/item/Newer%20Technology/MXP802NU2C/
There are usb to ethernet cable.
You could try another browser.
*MAC Address*
Every ethernet port has a unique MAC Address. A router can block on a MAC Address. That is why I suggest you check out your router.
Note MAC is not Mac. MAC is all upper case.
definition: http://en.wikipedia.org/wiki/Mac_address
*Ethernet port hardware*
I'd say this was some kind of strange hardware problem.
*Dns problem?*
It has symptoms of a DNS problem. The little traffic is a symptom of the problem. You said all the numbers were the same, however.
Verify DNS
apple > system preferences > network
Double click on network connection you are using.
Pick the TCP/IP tab.
Verify that you have a DNS Server. If you do not, look on your windows machine and see what the net address is. You can also pick using DHCF and still enter you DNS server address.
You can use
harddrive > applications > utilities > network utility
to diagnose the situation.
You can ping google.com. Result:
Ping has started ...
PING google.com (64.233.167.99): 56 data bytes
64 bytes from 64.233.167.99: icmp_seq=0 ttl=244 time=215.362 ms
64 bytes from 64.233.167.99: icmp_seq=1 ttl=244 time=279.597 ms
64 bytes from 64.233.167.99: icmp_seq=2 ttl=244 time=189.747 ms
64 bytes from 64.233.167.99: icmp_seq=3 ttl=244 time=250.657 ms
64 bytes from 64.233.167.99: icmp_seq=4 ttl=244 time=183.232 ms
64 bytes from 64.233.167.99: icmp_seq=5 ttl=244 time=243.753 ms
64 bytes from 64.233.167.99: icmp_seq=6 ttl=244 time=173.108 ms
64 bytes from 64.233.167.99: icmp_seq=7 ttl=244 time=230.239 ms
64 bytes from 64.233.167.99: icmp_seq=8 ttl=244 time=180.639 ms
64 bytes from 64.233.167.99: icmp_seq=9 ttl=244 time=232.177 ms
--- google.com ping statistics ---
10 packets transmitted, 10 packets received, 0% packet loss
round-trip min/avg/max/stddev = 173.108/217.851/279.597/33.615 ms
If that does work, try pinging 64.233.167.99 Result:
Ping has started ...
PING 64.233.167.99 (64.233.167.99): 56 data bytes
64 bytes from 64.233.167.99: icmp_seq=0 ttl=244 time=189.655 ms
64 bytes from 64.233.167.99: icmp_seq=1 ttl=244 time=213.471 ms
64 bytes from 64.233.167.99: icmp_seq=2 ttl=244 time=257.873 ms
64 bytes from 64.233.167.99: icmp_seq=3 ttl=244 time=172.745 ms
64 bytes from 64.233.167.99: icmp_seq=4 ttl=244 time=226.723 ms
64 bytes from 64.233.167.99: icmp_seq=5 ttl=244 time=171.883 ms
64 bytes from 64.233.167.99: icmp_seq=6 ttl=244 time=260.308 ms
64 bytes from 64.233.167.99: icmp_seq=7 ttl=244 time=172.963 ms
64 bytes from 64.233.167.99: icmp_seq=8 ttl=244 time=198.840 ms
64 bytes from 64.233.167.99: icmp_seq=9 ttl=244 time=181.215 ms
--- 64.233.167.99 ping statistics ---
10 packets transmitted, 10 packets received, 0% packet loss
round-trip min/avg/max/stddev = 171.883/204.568/260.308/32.247 ms
If pinging 17.254.3.183 works but pinging Google.com doesn't. You have a bad DNS Server address.
BDAqua suggests in a post.
You can use OpenDNS for looking up web addresses.
Put these numbers in Network>TCP/IP>DNS Servers for a try...
208.67.222.222
208.67.220.220
I think they now pretend you need to join to use, but you don't.
https://www.opendns.com/homenetwork/start/device/apple-osx-tiger
(Please note that you do not need to a joint Open DNS to use it.)
http://discussions.apple.com/message.jspa?messageID=5908432#5908432
Google provides free dns lookup too. There numbers are:
8.8.8.8
8.8.4.4
Robert
=======================================================
I suggest that you try pinging Google.com.
Macintosh-HD -> Applications -> Utilities -> Terminal
mac $ ping -c4 google.com
PING google.com (64.233.187.99): 56 data bytes
64 bytes from 64.233.187.99: icmp_seq=0 ttl=245 time=177.617 ms
64 bytes from 64.233.187.99: icmp_seq=1 ttl=245 time=251.899 ms
64 bytes from 64.233.187.99: icmp_seq=2 ttl=245 time=169.291 ms
64 bytes from 64.233.187.99: icmp_seq=3 ttl=245 time=250.119 ms
--- google.com ping statistics ---
4 packets transmitted, 4 packets received, 0% packet loss
round-trip min/avg/max/stddev = 169.291/212.232/251.899/38.894 ms
mac $ ping -c4 64.233.187.99
PING 64.233.187.99 (64.233.187.99): 56 data bytes
64 bytes from 64.233.187.99: icmp_seq=0 ttl=245 time=176.723 ms
64 bytes from 64.233.187.99: icmp_seq=1 ttl=245 time=247.889 ms
64 bytes from 64.233.187.99: icmp_seq=2 ttl=245 time=176.890 ms
64 bytes from 64.233.187.99: icmp_seq=3 ttl=245 time=244.623 ms
--- 64.233.187.99 ping statistics ---
4 packets transmitted, 4 packets received, 0% packet loss
round-trip min/avg/max/stddev = 176.723/211.531/247.889/34.744 ms
mac $
Analysis: If you cannot ping Goolge.com but you can ping 64.233.187.99, then you need to enter you dns address. For some reason Mac OS X sometimes doesn't set the dns. You can set it manually.
apple > system preferences > network
tcp/ip tab and enter address of dns servers
example 162.33.160.100
You will need to use a different number.
PS.
You are a little short on stating results. You state what you did, but I have to guess the result.
Did: X
Result: Y
Did:
1) Power Book's ethernet cable plugged into router port 5. Working to yahoo.com.
2) Unplugged power book's ethernet cable from router
3) Plugged eMac's ethernet cable into port 5.
Result: eMac using Firefox was not able to access yahoo.com
Robert -
Using printer's ethernet port as an access point
Hi there,
I have an HP LaserJet Pro 200 color MFP M276nw wirelessly connected to my network. I also have an HP LaserJet 5P, which was connected to my network / wireless router via an ethernet cable using a D-Link DP-301P+ print server. Don't judge...I love that old dinosaur and I use it exclusively for all black and white printing, and it has an envelope feeder. I moved and it's no longer possible for me to have my router in the same room as my printers.
Is it possible to use the HP LaserJet Pro 200 color MFP M276nw's ethernet port as an access point for the HP LaserJet 5P using the Link DP-301P+?
Thank you in advance for your help.Hi,
Sounds very interesting, 3:30AM now (I'm watching FIFA games), I will talk with my Networks guys when they come to work and update later.
Regards.
Updated: Talking with the Network guy, he said this may noy work and his recommendation: use LAN over power.
BH
**Click the KUDOS thumb up on the left to say 'Thanks'**
Make it easier for other people to find solutions by marking a Reply 'Accept as Solution' if it solves your problem. -
Can I connect an external hard drive to one of the ethernet port of the airport extreme and access it from my Mac or PC?
If this hard drive is part of a NAS device, then yes it should be accessable from either a Mac or PC while connected to the AirPort Extreme Base Station (AEBS) by Ethernet.
-
Access-list port range question
Hi,
I would like to clarify the exact operation of the below command:
/* Style Definitions */
table.MsoNormalTable
{mso-style-name:"Table Normal";
mso-tstyle-rowband-size:0;
mso-tstyle-colband-size:0;
mso-style-noshow:yes;
mso-style-priority:99;
mso-style-qformat:yes;
mso-style-parent:"";
mso-padding-alt:0in 5.4pt 0in 5.4pt;
mso-para-margin:0in;
mso-para-margin-bottom:.0001pt;
mso-pagination:widow-orphan;
font-size:11.0pt;
font-family:"Calibri","sans-serif";
mso-ascii-font-family:Calibri;
mso-ascii-theme-font:minor-latin;
mso-fareast-font-family:"Times New Roman";
mso-fareast-theme-font:minor-fareast;
mso-hansi-font-family:Calibri;
mso-hansi-theme-font:minor-latin;
mso-bidi-font-family:"Times New Roman";
mso-bidi-theme-font:minor-bidi;}
ip access-list extended VoiceACL
permit udp any any range 16384 16387
Thus the range statement in the above access list specify that it allow only three ports "16384 to 16387". Is that correct ? Bit confused with this command. One of my friend said that the range statement not just specify 3 ports,but it specify the starting port as 16384 and the end port number 32771 [16384+16387].
/* Style Definitions */
table.MsoNormalTable
{mso-style-name:"Table Normal";
mso-tstyle-rowband-size:0;
mso-tstyle-colband-size:0;
mso-style-noshow:yes;
mso-style-priority:99;
mso-style-qformat:yes;
mso-style-parent:"";
mso-padding-alt:0in 5.4pt 0in 5.4pt;
mso-para-margin:0in;
mso-para-margin-bottom:.0001pt;
mso-pagination:widow-orphan;
font-size:11.0pt;
font-family:"Calibri","sans-serif";
mso-ascii-font-family:Calibri;
mso-ascii-theme-font:minor-latin;
mso-fareast-font-family:"Times New Roman";
mso-fareast-theme-font:minor-fareast;
mso-hansi-font-family:Calibri;
mso-hansi-theme-font:minor-latin;
mso-bidi-font-family:"Times New Roman";
mso-bidi-theme-font:minor-bidi;}
Value1] = starting port number
[Value2] + [Value1] = end port number
Thanks
NachiHi Nachi,
This represent the ports ranging between the first number and the last number included, in your case this is actually 4 ports: 16384, 16385, 16386 and 16387
Regards,
Raphael
Maybe you are looking for
-
Public Folder Migration from Exchange 2007 to 2013 fails RelinquishedWlmStall budget limitations
I have been trying to migrate approx 50 public folders from Exchange 2007 to Exchange 2013 for several months. I have followed every link I can find on how to do the migration properly. It will stay in a queued state for hours until the MRS is rest
-
Can't create a computer to computer network
Hi, I have a 1.8Ghz iMac G5 and my partner recent bought a iBook 12". The iBook came with built in airport and so I puchased a airport extreme card for the iMac so we could wirelessly connect the two computers. The iMac has 10.3.9 and the iBook has 1
-
Adobe Acrobat Pro 9 - expire document HELP
I am using Adobe Acrobat Pro 9 and I'm trying to figure out a way to have a document expire after 1 day when I send out via email? I've searched and emailed Adobe but got no help and I need an answer quickly. Can anyone lead me in the right direction
-
IMessage crashing in iOS 8.2
My iPhone 6 64 GB that I recently updated to iOS 8.2 refused to delete text messages without freezing, coming to a white screen and then asking me to send a text message because my inbox is empty. I have reset network settings, turned iMessages on an
-
Hi All, How to go Base table, over which the datasource is built, has data, for the selection condition in the info package. thanks & Regards, Bharathi.