Cat 4006 ports leaving /joining
Hi,
I'm experiencing this problem in my 4006 Switch. This has a only one Uplink to 3750 L3 Switch. What happens , in normal case , I'm getting this error eventhough hosts (PC's )connected with these ports are ON only (no reboot). In normal case, ports are leaving /joining which makes me feeling something to do STP.
Regards,
Raju
2005 Dec 01 04:02:21 %PAGP-5-PORTFROMSTP:Port 4/28 left bridge port 4/28
2005 Dec 01 04:01:27 %PAGP-5-PORTTOSTP:Port 3/47 joined bridge port 3/47
2005 Dec 01 04:01:06 %PAGP-5-PORTFROMSTP:Port 3/47 left bridge port 3/47
2005 Dec 01 04:00:51 %PAGP-5-PORTTOSTP:Port 4/47 joined bridge port 4/47
2005 Dec 01 04:00:24 %PAGP-5-PORTFROMSTP:Port 4/47 left bridge port 4/47
2005 Dec 01 03:59:59 %PAGP-5-PORTTOSTP:Port 3/14 joined bridge port 3/14
2005 Dec 01 03:59:44 %PAGP-5-PORTTOSTP:Port 3/47 joined bridge port 3/47
2005 Dec 01 03:59:39 %PAGP-5-PORTFROMSTP:Port 3/14 left bridge port 3/14
2005 Dec 01 03:59:25 %PAGP-5-PORTFROMSTP:Port 3/47 left bridge port 3/47
2005 Dec 01 03:59:02 %PAGP-5-PORTTOSTP:Port 3/14 joined bridge port 3/14
2005 Dec 01 03:58:58 %PAGP-5-PORTTOSTP:Port 4/47 joined bridge port 4/47
2005 Dec 01 03:58:42 %PAGP-5-PORTFROMSTP:Port 3/14 left bridge port 3/14
2005 Dec 01 03:58:37 %PAGP-5-PORTFROMSTP:Port 4/47 left bridge port 4/47
2005 Dec 01 03:57:42 %PAGP-5-PORTTOSTP:Port 3/47 joined bridge port 3/47
2005 Dec 01 03:57:22 %PAGP-5-PORTFROMSTP:Port 3/47 left bridge port 3/47
2005 Dec 01 03:57:12 %PAGP-5-PORTTOSTP:Port 4/47 joined bridge port 4/47
2005 Dec 01 03:57:07 %PAGP-5-PORTTOSTP:Port 5/20 joined bridge port 5/20
2005 Dec 01 03:56:59 %PAGP-5-PORTTOSTP:Port 3/14 joined bridge port 3/14
2005 Dec 01 03:56:51 %PAGP-5-PORTFROMSTP:Port 4/47 left bridge port 4/47
2005 Dec 01 03:56:49 %PAGP-5-PORTFROMSTP:Port 5/20 left bridge port 5/20
2005 Dec 01 03:56:40 %PAGP-5-PORTFROMSTP:Port 3/14 left bridge port 3/14
Hello Raju,
basically, the message means that your ports are flapping, which could be caused by speed/duplex mismatches. Can you verify that both the switch and the user PC have the same settings (either auto or fixed duplex/speed setting)?
Also, make sure you have 'spanning-tree portfast' configured on your user ports...
HTH,
GP
Similar Messages
-
Configuration required in Cat 4006 to forward errors to syslog server
Hi,
I have setup a Kiwi syslog server. I want to configure in my Cat 4006 switch to forward the following messages to my syslog server
1. configuration changes
2. Vlan creation /modification
3. Power supply failures/module failures/temperature
4. When the processor utlization exceeds more than 75% , it should send a alert message to syslog server
5. Switch restart
6. Trap for any changes in Uplink ports only. There are 4 uplinks to other Switches from 4006. If any problem with these ports (uplink), it should send message to syslog server , not for all ports
Thanks in advance
RajuHi
I feel this link will be of some help to u in configuring different severity levels for different facilities available.
http://www.cisco.com/en/US/partner/products/hw/switches/ps663/products_configuration_guide_chapter09186a00800d81c8.html
By default for abnormal temp conditions u will get logs in the syslog server if u have already pointed the logs to the syslog server..
regds -
Hi,
We have all three of your services (TV, Internet and phone) and I'm very new to setting up a network, and need help with the activation of the CAT 5 ports in my home. The current setup for the internet service is: Coaxial cable, to the Actiontec router, LAN to computer. The home is only a couple of years old, and each room has a wall panel that includes a CAT 5 port and coaxial outlet.
The home also has a "junction box" or central panel inside the master bedroom, which appears to feed the phone lines and coaxial outlets. There is an open ethernet port on the panel, along with a few loose coaxial cables. Would I be able to activate all the CAT 5 ports in the home, by moving the router within the panel, and connecting the open port on the panel to the WAN port on the Actiontec router, along with a connecting one of the coaxial cables?
I would appreciate your help.I presume you have FIos?
If your house is wired with ethernet, why cant you take an ethernet wire from your actiontec lan port, run it to the outlet in the office....now it's feeding the junction box in the master bedroom. If you have a panel/switch where the other cat5's are plugged in, they should now be distributing the internet to the other outlets.
The other option...If your Ont is feeding coax to a splitter in the junction box, you could hook up your actiontec to the splitter and then run the Lan out to your panel/switch feeding the other rooms.
Remember...LAN....NOT...WAN -
Cat 4006 S3 - Attached hosts Net access very slow prior to reboot
I have a CAT 4006 sup III running 12.1(11b)EW1 with a number of servers attached. Users started having problems accessing servers. After investigating all the impacted servers were connected to the same switch. The switch was appeared to be operating normally. Show proc cpu, show proc mem, show logging, and ping tests all normal. Warm booted switch and asics on sup failed bootup diag. Cold boot of the switch got it back up and running. Cisco Tac reviewed the post problem sh tech with no findings.
Any ideas?No L2 loops and it was a hopefully isolated incident. We have to switches that are identical in hardware and IOS and only one was impacted.
clients of systems attached to the switch would have intermittently slow or non existent access to the host systems. Problems included saving files on network drives, email down, very slow or failed logins, application launches were slow or failed.
No messages were showing up in the switch log, let alone messages referred in the tech note. We have had asic issues on line cards in the past. Those instances were on different switches and created volumes of errors.
Layer 2 seemed fine. Pings were worked without fail. Console broadcast messages from host systems on the impacted switches made it out to clients.
Keep thinking it wasn't a switch problem but the reboot did fix the issue.
I will be replacing the sup card and doing a IOS upgrade this weekend. -
Air Port Express Joining a non-Apple Wireless N Network
So, I've been using my AEn router for some time now to join my wireless G network for iTunes and to use the ethernet port.
Decided to buy a Linksys Wireless N Dual Band router to replace my older wireless G router.
Much to my surprise and disappointment, AEn can only join an existing B/G wireless network.
Anyone heard if Apple is going to open this up to allow joining a wireless N network with a firmware update?My Express will only 'join' my Netgear WNDR3700's 2.4ghz 'N' band. Within seconds after joining the 5ghz band it loses link. See if your Netgear's log shows "WLAN access rejected: incorrect security", as mine does. Mind you, I've matched the security settings on the AE with the Netgear a number of times. My MB Pro is at a farther distance than the AE yet has a full signal to the 5ghz band. FYI there are no cordless phones in my house and there are no other known 5ghz networks close to my house.
Berni81 wrote:
Hi Boys,
I have the same setup with my new Netgear WNDR3700 (replaces my good old WRT45G) with the AEn as client. the netgear gives me 2.4Ghz and 5Ghz 802.11n networks. i can connect the AE to both and brigde the LAN port and listen musik over analog audio connection. The only thing what drives me crazy is i need optical out, and this only work well when the AE is connected to the bgn 2.4GHz WLAN. it stops working and doing reboots if i start to play musik from itunes.
with the bgn connection it shows me a rate of 54, so no 802.11n speeds (distance AP-AE 5m sight)
maybe we have to wait for final 802.11n firmwares?
is their anybody who has the same issue with other nAPs and the AE?
best regards
Berni -
I'm trying to fix a condition where my cat sups CPUs are running 80% and higher all day. I have read that having POE line cards adds to the cpu overhead. Should turning off inlinepower device detection lessen the load on the cpu? id set port inlinepower mod/port off
Hi
These 2 links can be helpful to understand the main reason for the spike in cpu utilisation which can help u out in troubleshooting the same.
You can find out the process which takes out the max of the CPU cycle,once you are done with the findings about the process you can start off proceeding with containing the same.
http://www.cisco.com/en/US/products/hw/switches/ps663/products_tech_note09186a00804cef15.shtml
http://www.cisco.com/en/US/products/hw/switches/ps663/products_tech_note09186a0080094956.shtml#highcpu
regds -
Does the Sup IV module running IOS software allow for NAT configuration? If so, what release?
No. Not supported due to hardware limitations.
-
Cat 2960 shows mac address port as "Drop"
Hi all
I am configuring a Cat 2960 port for connecting a VOIP phone, authenticated by MAB. On connecting the phone, I get the port authenticated and assigned to the correct VLAN, with LLDP-MED advertising the correct voice vlan. However, I then see no traffic from the phone on the switch. I can see the MAC address of the phone is learned in the right VLANs, but the mac address is showing as "Drop", which normally means the address is statically configured to be blocked. There is no static mac address table blocking configured on the switch. Can anyone suggest why this is happening?
Switch Version
Switch Ports Model SW Version SW Image
* 1 50 WS-C2960-48TC-L 15.0(1)SE3 C2960-LANBASEK9-M
Port configuration
interface FastEthernet0/1
description "Standard user port"
switchport access vlan 9
switchport mode access
network-policy 1
no logging event link-status
srr-queue bandwidth share 5 10 40 55
priority-queue out
authentication host-mode multi-auth
authentication order dot1x mab
authentication priority dot1x mab
authentication port-control auto
authentication timer reauthenticate server
mab eap
mls qos trust dscp
no snmp trap link-status
macro description vanilla_port
dot1x pae authenticator
dot1x timeout tx-period 3
dot1x timeout supp-timeout 3
spanning-tree portfast
end
LLDP-MED network-policy
network-policy profile 1
voice vlan 835
Authentication (debug radius) result
Jul 30 11:42:19.600: %AUTHMGR-5-START: Starting 'mab' for client (0004.f297.6668) on Interface Fa0/1 AuditSessionID 0AF0042200000063616A0592
Jul 30 11:42:19.650: %MAB-5-SUCCESS: Authentication successful for client (0004.f297.6668) on Interface Fa0/1 AuditSessionID 0AF0042200000063616A0592
Jul 30 11:42:19.650: %AUTHMGR-7-RESULT: Authentication result 'success' from 'mab' for client (0004.f297.6668) on Interface Fa0/1 AuditSessionID 0AF0042200000063616A0592
Jul 30 11:42:20.682: %AUTHMGR-5-SUCCESS: Authorization succeeded for client (0004.f297.6668) on Interface Fa0/1 AuditSessionID 0AF0042200000063616A0592
Resulting Switchport config - voice vlan is 835
CLBdg640Test-AS2960-0#show int fa0/1 switchport
Name: Fa0/1
Switchport: Enabled
Administrative Mode: static access
Operational Mode: static access
Administrative Trunking Encapsulation: dot1q
Operational Trunking Encapsulation: native
Negotiation of Trunking: Off
Access Mode VLAN: 9 (NATIVE-DISCARD)
Trunking Native Mode VLAN: 1 (default)
Administrative Native VLAN tagging: enabled
Voice VLAN: 835 (VOICE)
Administrative private-vlan host-association: none
Administrative private-vlan mapping: none
Administrative private-vlan trunk native VLAN: none
Administrative private-vlan trunk Native VLAN tagging: enabled
Administrative private-vlan trunk encapsulation: dot1q
Administrative private-vlan trunk normal VLANs: none
Administrative private-vlan trunk associations: none
Administrative private-vlan trunk mappings: none
Operational private-vlan: none
Trunking VLANs Enabled: ALL
Pruning VLANs Enabled: 2-1001
Capture Mode Disabled
Capture VLANs Allowed: ALL
Protected: false
Unknown unicast blocked: disabled
Unknown multicast blocked: disabled
Appliance trust: none
LLDP neighbor info showing voice vlan 835
CLBdg640Test-AS2960-0#sh lldp neighbors fa0/1 detail
Chassis id: 0.0.0.0
Port id: 0004.f297.6668
Port Description - not advertised
System Name - not advertised
System Description - not advertised
Time remaining: 3558 seconds
System Capabilities: T
Enabled Capabilities: T
Management Addresses - not advertised
Auto Negotiation - supported, enabled
Physical media capabilities:
100base-T2(HD)
100base-TX(FD)
100base-T4
10base-T(FD)
Media Attachment Unit type - not advertised
Vlan ID: - not advertised
MED Information:
MED Codes:
(NP) Network Policy, (LI) Location Identification
(PS) Power Source Entity, (PD) Power Device
(IN) Inventory
Inventory information - not advertised
Capabilities: NP
Device type: Endpoint Class III
Network Policy(Voice): VLAN 835, tagged, Layer-2 priority: 5, DSCP: 46
PD device, Power source: PSE, Power Priority: High, Wattage: 6.5
Location - not advertised
Total entries displayed: 1
MAC address table showing "Drop" port for learned address in VLAN 835
CLBdg640Test-AS2960-0#sh mac address-table address 0004.f297.6668
Mac Address Table
Vlan Mac Address Type Ports
9 0004.f297.6668 STATIC Fa0/1
835 0004.f297.6668 DYNAMIC Drop
Total Mac Addresses for this criterion: 2Thanks for updating the problem raarons!
-
Assigning multiple ports/interfaces to a VLAN-Switch-IOS
Hi,
I am trying to assign ports/Interfaces to VLAN 2 but need to assign the whole blade or many ports on two or three blades to VLAN 2. Switch CAT 4500 running Cisco IOS - I can only do one port/interface at a time:
Switch-4500(config)# interface fastEthernet 0/2
Switch-4500(config-if)# switchport access VLAN 2
vlan Set VLAN when interface is in access mode
So this way, as explained above one port at a time gets assigned to a VLAN. I need to do multiple ports. how can I do this if possible at all.
Thanks,
MasoodThanks for getting back to me. You know, I have taken over this network just recently and have realized that the company that was taking care of this network had done this way:
1 main subnet (Uers, Servres,WS, ect)- VLAN2
1 Development Subnet - VLAN 3 - still active but not in use
So all of my switches, i.e. two CAT 4006, Two CAT 3560, and one New 4500 (just purchased) all on VLAN 2. the main CAT switch has VLAN 3 information since the DEV subnet connects to it as well.
Now , I am trying to create 4 or 5 functional VLANS for my main network (currently has all my switches and Three Routers in it and VLAN 2).
2 CAT 4006 switch
1 CAT 4500 Switch
2 CAT 3560
1 CAT 3550
2 CAT 2948-G-TX
2 Border or Gateway Routers Cisco 2621
1 gateway Router 2621 (Connects this office to a remote extention to this office using a point to point T1 and at th eother end - Private IP, connects to Internet Via an ISP).
My two border Router - public IP and connects two T1a, one prim and the other one shadow.
I guess my question is:
what would be the best way to create VLAN 2,3,4,5,6
using the above switches and routers and have Intervlan communications through Truncking and management through VTP or else.
I want to create VLANs in such a way that if a user belong to VLAN2 seats at 12 flr and another user belong to this same VLAN 2 seats at 14 floor makes no difference, so independent of users location - how do I do the port assignment on the switches to do this? No resource or network file resource segmentation needed sonce all users wil acess same information.
I really appreciate your sugestions and help.
Regards,
Masood -
Hi, which type cable do I need to start a hard wire connection between my Airport extreme and my macbook Air, is it a double ended male USB
because there is no cat-5 port in the notebookIf you want to connect the AirPort Extreme to the MacBook Air via Ethernet, you'll need one of these (requires a late 2010 MacBook Air or later and OS X Lion (10.7.4) or later): http://store.apple.com/us/product/MD463ZM/A/thunderbolt-to-gigabit-ethernet-adap ter
-
How can I get a Mac laptop on the Internet to upgrade it from OS 9.1 to OS X? it only has a CD-ROM drive..... no USB port or cat 5 port.
The three notebooks which may have had Mac OS 9.1 have these identifier articles as well, which you can also
look on the frame of your screen:
http://support.apple.com/kb/ht2287 - Powerbook G3
http://support.apple.com/kb/ht3065 - Powerbook G4
http://support.apple.com/kb/ht1772 - iBook -
Switch port in dot1x multi-auth mode stops passing traffic
Dear All,
I am experiencing a problem on a Catalyst 4510 (cat4500-ipbasek9-mz.122-53.SG.bin) with 802.1x configured. Client PCs are connected via a mini desktop switch to a Cat 4510 switched port in multi-auth mode. The configuration of the port follows:
interface GigabitEthernet2/34
switchport mode access
ip arp inspection limit rate 30
authentication host-mode multi-auth
authentication port-control auto
authentication periodic
authentication timer reauthenticate server
dot1x pae authenticator
dot1x timeout tx-period 5
dot1x max-reauth-req 6
spanning-tree portfast
ip verify source vlan dhcp-snooping
end
It happens from time to time that the Cat 4510 port stops passing traffic. Reconnecting the mini switch recovers the communication. Client PCs connected to the mini switch seem to be authorized at the moment when the problem occures. The RADIUS Termination-Action attribute is set to RADIUS-Request. The problem is not present if "authentication periodic" is disabled.
Did anyone experience a simmilar problem? Any advice?
Thanks.
MirekWe have the same issue on 3750E switch running 12.2.(58)SE
-
More than one process bind() to a multicast port.
Hi,
I found one strange behavior when there are more than one process bind() to the same multicast port. The problem is as the following:
If there is a process bind to a port, say 2000 and joined a multicast group. This process did not do a SO_REUSEADDR,
before bind() and join the multicast group. Later on, I have another program in the same host joining the same multicast group with the same port number (with SO_REUSEADDR), the second process will not be able to receive any data from the multicast group (with the same port number) eventhough the second process can join the multicast group successfully.
However, if both process call setsockop with SO_REUSEADDR, both process can receive multicast data from the multicast group. The simplest fix is to have both set SO_REUSEADDR. But the problem is, the first application is an off-the-shelf software and we do not have source code to it.
I wonder if this is a problem with Solaris. Any thoughts?
Thanks,
ShaoHi,
I found the answer to this question. Basically, according to the source code (Solaris 8 Foundation Source), ip6.c, line #2510, multicast data is forwarded to all "listeners" only if the first "binder" has a SO_REUSEADDR set. What that mean is, if the first "binder" does not set SO_REUSEADDR before bind(), any subsequent bind() with SO_REUSEADDR is meaningless (in practical terms).
My question is, is this behavior correct? I think it's much better to allow subsequent listeners (successfully bind and joined the multicast group) to be able to receive data. The reason is that if the first binder does not set SO_REUSEADDR before bind() the port and joined the multicast group should not deny any "late comers" to join in and participate in the multicast group. "Fixing the code" is not always practical especially if one of the application is a third-party application. Or reject bind() if the first "binder" does not allow SO_REUSEADDR.
Any comment?
Regards,
Shao -
Dear All,
I have created a CATS profile for Leave request and I assigned TS: 40007901
but when I enter the time sheet it is sending the request to the superior but it is not updating the master record after approving from the superior.
This is the message it is sending to the superiors inbox: Runtime error TIME_OUT has occurred
So pl. let me know the solution.
Is there any other standard task and Workflow existing for Leave request approval for 2 levels
Regards,
Sushma.Sorry, There is only one level of Approval is required.
-
4006: 802.1x support?
EOL has been announced for Cat 4006. Is anyone out there using 802.1x on these switches. If yes, could you please let me know what is the IOS.
The cisco feature selection tool (http://tools.cisco.com/ITDIT/CFN/jsp/index.jsp) says 8.4(11)GLX is available on CAT4000 with 802.1x. Not sure if it's the same.
Thanks
RaviThe 4006 can have either sup 1 or sup 2 which are no longer being sold, these run CatOS. 4006 Chassis can alos support Supervisor Engine III (WS-X4014), and Supervisor Engine IV (WS-X4515) which runs IOS. 802.1x feature was first supported in version 6.2 for CatOS and since 12.1(19)EW on IOS.
CatOS Release Notes:
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat4000/relnotes/ol_2117.htm
CAt IOS Release Notes:
http://www.cisco.com/univercd/cc/td/doc/product/lan/cat4000/relnotes/ol_2170.htm
So, I hope this answers your questions:
Is anyone out there using 802.1x on these switches. If yes, could you please let me know what is the IOS.
A: Sup1 and Sup2 for Ca4000 can only run CatOS. 802.1x had been supported since 6.2. Sup2+, Sup3 and Sup4 runs IOS and 802.1x had been supported since 12.1(19)
The cisco feature selection tool (http://tools.cisco.com/ITDIT/CFN/jsp/index.jsp) says 8.4(11)GLX is available on CAT4000 with 802.1x. Not sure if it's the same.
A: 802.1x is 802.1x for CatOS or Cat IOS just the CLI will change so one and the same
Please rate all posts.
Maybe you are looking for
-
I currently have Mavericks Version 10.9.5. I have a 1.8 GHz Intel Core i5. My total storage is 250.14. I have an 8 gigabyte memory. I have done everything When I try to use the Install OSX Yosemite, it says, "an error occurred while preparing the ins
-
I'm trying to make a screen object(digitB1_mc) move in one of two different directions, depending upon the current cicumstances. I drew the Motion Tween _B1_12 and saved it as a preset for the first direction. I drew the Motion Tween _B1_21 and saved
-
Os 10.2.8 drivers for lucent waveLAN/ieee wireless card
I can't believe I'm the first to ask this but my search came up empty. I have a Wallstreet P3, 233Mhz, with OS 10.2.8 installed; repartitioning the drive erased 9.2.2, for which I have no install disks. I just got a Lucent waveLAN card from eBay that
-
How to install Oracle Application Testing Suite on ubuntu 12.4 64 bits?
Hi Guys, I am trying to install Oracle Application Testing Suite on ubuntu 12.4 64 bits, I have downloaded the application (Oracle Application Testing Suite 12.1.0.1.0 - Complete Install ) from http://www.oracle.com/technetwork/oem/app-test/index-084
-
Two external LCD on Satellite Pro P100-324
Hello friends I have Satellite Pro P100-324 with GeForce Go 7900 GS graphic card. I need to work with two external LCD displays. One primary and second as secondary in DualView. But this is not working under Windows XP SP2. In Vista Home Basic it wor