Cisco 15454 2F BLSR interoperability with the Nortel LH combiner platform

Help anyone, my problem is the following:
The company I work for is interfacing with another company that is running a 2 Fiber BLSR topology with the ONS 15454. This device will be interfacing with our existing Nortel LH combiner platform running version 2.0. When we dicussed this application with Nortel, they told us that the Cisco 15454 will not interface with the Nortel LH combiner cards due to the fact that the Cisco 15454 two fiber BLSR implementation is proprieitary and not standards compliant in that it requires use of the K1 byte of the second STS-1. Basically, the Nortel combiner cards are not transparent to the second STS-1, so the K1 value input is losted. They claim they did not have this issue with other vendors' BLSR SONET devices, just Cisco's 15454.
Another way they decribed the problem was: "The Nortel LH combiner cards do not work with the 15454 BLSR topology because of a proprietary overhead usage conflict. The Cisco product uses an undefined overhead byte for a BLSR check sum which conflicts with Nortel combiner mapping of tributary defined overhead into unused overhead of the aggregate line."
I do not know what software version Nortel was running when they did this testing with the ONS 15454, but I thought maybe someone has heard this one before and that maybe Cisco corrected this problem with a later release. Help anyone!

K3 Byte remapping is required...
"The ONS 15454 uses the K3 overhead byte for BLSR automatic protection switching (APS) to allow an ONS 15454 BLSR to have more than 16 nodes. If a BLSR is routed through third-party equipment that cannot transparently transport the K3 byte, you can remap it to either the Z2, E2, or F1 bytes on OC48AS cards."
Cisco allows more than 16 nodes in a BLSR but the K1 byte only has 4 bits available for 16 nodes. Cisco has extended this range of Node IDs which is proporietary to Cisco. However, I believe if the ring does not exceed 16 nodes then the 15454 complies to Telcordia standards...

Similar Messages

  • How to configure Cisco ASA 5500 to work with the iPhone

    We have Cisco ASA 5510 (latest firmware version), and apparently, according to Cisco website it is compatible with new iPhone 3G's IPSec client:
    http://www.cisco.com/en/US/docs/security/vpnclient/cisco_vpnclient/iPhone/2.0/connectivity/guide/iphone.html
    We've setup our first iPhone properly. It connects fine to the network, shows VPN connection as active. Gets a private IP address. But does not let any traffic go to the internal network. We thought it might be DNS problem, but it cannot connect to Exchange server even when using IP address instead of DNS. No luck either.
    After checking ASA logs, we found that iPhone goes through Phase 1 authentication correctly. But then gives some kind of error, mentioning "Attribute 5".
    Has anybody been successful configuring ASA5500 series (in particular 5510) to be used with iPhone?
    I noticed that many people are having these problems.
    Please do not post to this topic if you have ANY OTHER Cisco device.
    Cisco specifies that iPhone is compatible only with Cisco ASA 5500 Security Appliances and PIX Firewalls. Neither Cisco IOS VPN routers nor the VPN 3000 Series Concentrators support the iPhone VPN capabilities.
    Let's keep this topic only for users of ASA 5500 series and PIX Firewalls.
    It would be extremely helpful for a large number of users if somebody posted a list of settings for ASA5500 or PIX firewall that DO work with iPhone 2.0
    Thank you!
    Oleg R

    We found the solution and a bug in Cisco firmware (seems to be a bug).
    First of all, thanks to our Chief Systems Architect Seb, here is a config that worked for us on a Cisco 5520 (latest firmware).
    access-list iphone_splitTunnelAcl standard permit <insert ip> <insert mask>
    access-list iphone_splitTunnelAcl standard permit <insert ip> <insert mask>
    crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac
    crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac
    crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac
    crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac
    crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
    crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
    crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac
    crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac
    crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac
    crypto ipsec transform-set iphone esp-3des esp-sha-hmac
    crypto ipsec transform-set iphone mode transport
    crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
    crypto dynamic-map SYSTEMDEFAULT_CRYPTOMAP 65535 set pfs
    crypto dynamic-map SYSTEMDEFAULT_CRYPTOMAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5 iphone
    crypto map outside_map 10 match address vpn
    crypto map outside_map 10 set transform-set ESP-AES-256-SHA
    crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEMDEFAULT_CRYPTOMAP
    crypto map outside_map interface outside
    crypto isakmp enable outside
    crypto isakmp policy 10
     authentication pre-share
     encryption 3des
     hash sha
     group 2
     lifetime 86400
    crypto isakmp policy 20
     authentication pre-share
     encryption aes-256
     hash sha
     group 5
     lifetime 86400
    crypto isakmp nat-traversal 20
    group-policy iphone internal
    group-policy iphone attributes
     wins-server value <insert ip> <insert ip>
     dns-server value <insert ip> <insert ip>
     vpn-tunnel-protocol IPSec
     ipsec-udp enable
     ipsec-udp-port 10000
     split-tunnel-policy tunnelspecified
     split-tunnel-network-list value iphone_splitTunnelAcl
     default-domain value <insert domain name>
    tunnel-group iphone type remote-access
    tunnel-group iphone general-attributes
     address-pool VPN-Pool
     authentication-server-group ActiveDirectory2
     default-group-policy iphone
    tunnel-group iphone ipsec-attributes
     pre-shared-key <insert pre-shared key>
    For iPhone you have to be using IPSec tab for configuration.
    We tried to set up this config using the wizards, but it would not work.
    Later it turned out that wizards by default set this setting:
    "crypto isakmp nat-traversal 20"
    equal to zero and there is no way to change it from the GUI.
    Only after we changed it (increased the value from 0 to 20) through the command line the connection started working perfectly.
    Please let me know how it works out for you.
    Message was edited by: Rogik
    Message was edited by: Rogik

  • Cisco VPN no longer works with the E4200

    VPN issue with the E4200.  Validated that VPN passthrough is enabled.  Using Cisco VPN as the client.  Used to work prior to the firmware upgrade so not sure what has changed.  Error code on the Cisco VPN client is "Secure VPN connection terminated by local client.  Reason 414.  Failed to establish a TCP connection."
    Any help would be appreciated.

    Hi all,
    i just had time to to a network capture
    The ip have been changed but btw :
    - 172.20.10.2 = A computer conntect to internet that will try to reach the vpn server behind the E4200
    - 77.56.226.107 = The internet valid ip address of the Linksys E4200 router.
    So below is the  proof that GRE protocol is not forwarded/passing the router.
    Frames 29/30/31 : Standard TCP/IP communication intialization. SYN, SNY ACK, ACK....
    Frames 32/34/36/37/38/39 : initialization of pp2p using port 1723
    Frame 43 : ACK of 39
    Frames 40,52,67,80... Request send using protocol 47 GRE... and the server not responding as the router blocks them...
    No.
    Time
    Source
    Destination
    Protocol
    Length
    Info
    28
    7.122278
    138.188.101.189
    172.20.10.2
    DNS
    198
    Standard query response A 77.56.226.107
    29
    7.141732
    172.20.10.2
    77.56.226.107
    TCP
    62
    49395 &gt; pptp [SYN] Seq=0 Win=8192 Len=0 MSS=1460 SACK_PERM=1
    30
    7.217517
    77.56.226.107
    172.20.10.2
    TCP
    62
    pptp &gt; 49395 [SYN, ACK] Seq=0 Ack=1 Win=5840 Len=0 MSS=1380 SACK_PERM=1
    31
    7.217835
    172.20.10.2
    77.56.226.107
    TCP
    54
    49395 &gt; pptp [ACK] Seq=1 Ack=1 Win=16560 Len=0
    32
    7.221922
    172.20.10.2
    77.56.226.107
    PPTP
    210
    Start-Control-Connection-Request
    34
    7.294936
    77.56.226.107
    172.20.10.2
    TCP
    54
    pptp &gt; 49395 [ACK] Seq=1 Ack=157 Win=6432 Len=0
    36
    7.351526
    77.56.226.107
    172.20.10.2
    PPTP
    210
    Start-Control-Connection-Reply
    37
    7.351622
    172.20.10.2
    77.56.226.107
    PPTP
    222
    Outgoing-Call-Request
    38
    7.428474
    77.56.226.107
    172.20.10.2
    PPTP
    86
    Outgoing-Call-Reply
    39
    7.445873
    172.20.10.2
    77.56.226.107
    PPTP
    78
    Set-Link-Info
    40
    7.453787
    172.20.10.2
    77.56.226.107
    GRE
    71
    Encapsulated PPP
    43
    7.549399
    77.56.226.107
    172.20.10.2
    TCP
    54
    pptp &gt; 49395 [ACK] Seq=189 Ack=349 Win=7504 Len=0
    52
    9.469811
    172.20.10.2
    77.56.226.107
    GRE
    71
    Encapsulated PPP
    67
    12.511434
    172.20.10.2
    77.56.226.107
    GRE
    71
    Encapsulated PPP
    80
    16.567525
    172.20.10.2
    77.56.226.107
    GRE
    71
    Encapsulated PPP
    81
    20.623443
    172.20.10.2
    77.56.226.107
    GRE
    71
    Encapsulated PPP
    83
    24.679479
    172.20.10.2
    77.56.226.107
    GRE
    71
    Encapsulated PPP
    85
    28.735523
    172.20.10.2
    77.56.226.107
    GRE
    71
    Encapsulated PPP
    86
    32.791514
    172.20.10.2
    77.56.226.107
    GRE
    71
    Encapsulated PPP
    87
    36.847452
    172.20.10.2
    77.56.226.107
    GRE
    71
    Encapsulated PPP
    88
    37.797042
    77.56.226.107
    172.20.10.2
    TCP
    54
    pptp &gt; 49395 [FIN, ACK] Seq=189 Ack=349 Win=7504 Len=0
    89
    37.797165
    172.20.10.2
    77.56.226.107
    TCP
    54
    49395 &gt; pptp [ACK] Seq=349 Ack=190 Win=16372 Len=0
    90
    37.801537
    172.20.10.2
    77.56.226.107
    TCP
    54
    49395 &gt; pptp [FIN, ACK] Seq=349 Ack=190 Win=16372 Len=0
    93
    37.876767
    77.56.226.107
    172.20.10.2
    TCP
    54
    pptp &gt; 49395 [ACK] Seq=190 Ack=350 Win=7504 Len=0

  • Cisco Switches and HP Interoperability with Spanning-Tree (RSTP)

    Hello All.
    I read a lot of information from this forum about Spaning-Tree interoperability between HP Switches and Cisco Switches.
    Rather than having questions I would like to post that I manage to configure successfully HP and Cisco using RSTP (802.1w).
    SWPADRAO]display stp root
    MSTID  Root Bridge ID        ExtPathCost IntPathCost Root Port
      0    32768.cc3e-5f3a-2939  0           0
    [SWPADRAO]display stp brief
    MSTID      Port                         Role  STP State     Protection
      0        GigabitEthernet1/0/47        DESI  FORWARDING    NONE
      0        GigabitEthernet1/0/48        DESI  FORWARDING    NONE
    [SWPADRAO]display stp instance 0
    -------[CIST Global Info][Mode RSTP]-------
    CIST Bridge         :32768.cc3e-5f3a-2939
    Bridge Times        :Hello 2s MaxAge 20s FwDly 15s MaxHop 20
    CIST Root/ERPC      :32768.cc3e-5f3a-2939 / 0
    CIST RegRoot/IRPC   :32768.cc3e-5f3a-2939 / 0
    CIST RootPortId     :0.0
    BPDU-Protection     :enabled
    Bridge Config-
    Digest-Snooping     :disabled
    TC or TCN received  :17
    Time since last TC  :0 days 0h:1m:52s
    SWNHAM17#show spanning-tree VLAN0001
     Spanning tree enabled protocol rstp
     Root ID    Priority    32768
                Address     cc3e.5f3a.2939
                Cost        4
                Port        26 (GigabitEthernet0/2)
                Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec  Bridge ID  Priority    61441  (priority 61440 sys-id-ext 1)
                Address     001b.54db.7200
                Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec
                Aging Time 300 Interface        Role Sts Cost      Prio.Nbr Type
    Gi0/1            Altn BLK 4         128.25   P2p
    Gi0/2            Root FWD 4         128.26   P2p
    SWNHAM18#show spanning-tree VLAN0001
     Spanning tree enabled protocol rstp
     Root ID    Priority    32768
                Address     cc3e.5f3a.2939
                Cost        4
                Port        26 (GigabitEthernet0/2)
                Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec  Bridge ID  Priority    61441  (priority 61440 sys-id-ext 1)
                Address     001b.0cbc.4300
                Hello Time   2 sec  Max Age 20 sec  Forward Delay 15 sec
                Aging Time 300 Interface        Role Sts Cost      Prio.Nbr Type
    Gi0/1            Desg FWD 4         128.25   P2p
    Gi0/2            Root FWD 4         128.26   P2p

    Hello, David.
    Your command doesn't work because it's made only for tha ports that has command "spanning-tree portfast" in them. Try change spanning tree mode at the HP switch to MSTP if this is possible.

  • I can´t activate the full screen view in lion with the shortcut keyboard combination, some help?

    When I started to use my new OS X 7 as a lot of you, I tried to test everything including all the keyboard shorcuts. The full screen view at first it worked normally but suddenly stopped working. I don´t know how to fixed this problem or if there is any way to change this keyboard command?

    Post in the Lion community forum

  • Cisco WLC 2500 - 802.1x with Vasco Radius SMS OTP

    Hello folks,
    I have what seems to be a complex implementation with many things that need to be done on a customers network and I wanted to be pointed in the right direction.
    The current scenario is such, the customer has a Cisco WLC 2500 device that has 3 access points(these are in the same AP group) connected to it. There is one SSID that I will call PRODUCTION here that some domain users use to connect to the local network. The customer has requested to have a GUEST SSID added to the WLC where guest users will connect to and recieve a SMS OTP for authentication.
    Correct me if I am wrong, but I will obviously need to segment the SSIDs to have them running on different subnets to ensure that guest users do not have access to the production network once they authenticate. In order to do this I will need to configure Dynamic VLAN assignment for the Cisco WLC and connect it to a 802.1x port on the switch.
    Now what is not clear is I am not interested in authenticating the users that connect via "Production SSID" and want to bypass authentication for those users and have them assigned to the default vlan (or maybe perhaps have them authenticate via LDAP on the AD), however I want to force the "GUEST" SSID users to authenticate so that they may recieve an SMS OTP (reason for this is to force guests to register their phone numbers to use the internet so that Illegal activity may be tracked).
    1)So would it be possible to bypass authentication(or authenticate them via LDAP) for the PRODUCTION SSID as only domain users would know the SSID password to log on and have them by default assigned to the production subnet (default vlan) but force the GUEST SSID users to another VLAN via 802.1x sms otp?
    2)*Important* Another issue that is not clear is will I be able to directly configure AAA Radius settings on the Cisco WLC to directly authenticate with the VASCO Radius OTP and recieve a challenge-response(required for OTP) during authentication? As I have seen from Ciscos Dynamic VLAN assignment docuementation (http://www.cisco.com/en/US/tech/tk722/tk809/technologies_configuration_example09186a008076317c.shtml) additional IETF Radius Perimeters are used such as Tunnel-Private-Group-ID etc are used which I can't seem to configure on the Vasco.
    I do beileve this is a great project in helping me understand the INs and OUTs of CISCO WLC as well as Wireless NAC, If anyone could enlighten me and point me in the right direction I would be forever in debt. Much appreciated.
    Best Regards
    Sinan Barghouthi - JNCIA-FWV , JNCIA-IDP , CCA-NS , TCSM-8.0

    On your WLAN you can enable AES and TKIP. Just know that some clients mau have issue when they see both TKIP and AES. Ive had pretty good success with this in the past. Dont forget, you also need to enable WMM allowed to get N rates.
    But you will need to configure AES on the client as well to support N rates.
    "Satisfaction does not come from knowing the solution, it comes from knowing why." - Rosalind Franklin
    ‎"I'm in a serious relationship with my Wi-Fi. You could say we have a connection."

  • FindByAltKey() is not working properly with the nullable elemens in the Key

    HI
    I am facing a problem while using findByAltKey(). I have an alternate key in my Entity Object with few nullable/non nullable columns.
    When I call finidByAltKey() with the key as a combination of non nullable columns It is working fine , that means the row iterator has some elements if that key exists in the Database.
    When I call findByAltKey() with the key as combination of nullable columns It is not working, that means the row iterator does not have any elements
    Key key = new Key(new Object[]
    { dataBean.getCapability(),dataBean.getFeasibilityFlag(),dataBean.getLineOfBusiness(),dataBean.getPriority(),dataBean.getDesGeoBegValue(),dataBean.getDesGeoEndValue(),dataBean.getDesGeoType(),dataBean.getOriGeoBegValue(),dataBean.getOriGeoEndValue(),dataBean.getOriGeoType() });
    RowIterator rows = vo.findByAltKey("NetworkFeasibilityAltKey",key,2,false);
    System.out.println(rows.hasNext());
    if(!rows.hasNext()){
    // Do this
    }else {
    // Do something else
    rows.hasNext() always givine me false value eventhough that key exists
    When I commit the row I am getting below exception
    oracle.jbo.TooManyObjectsException: JBO-28204: Too many objects match the alternate key oracle.jbo.Key[DEDS N DEDC 1 NJ null ST DEPERE null CT ] for entity sni.nm.model.entities.NetworkFeasibilityEO, key NetworkFeasibilityAltKey.
    I suspect null values are creating some problem...

    '''McAfee Site Advisor:''' https://support.mozilla.com/questions/837419
    Look for an updated version in about the 3rd week of July; hopefully they'll fix their many other errors besides, I don't think I've been able to use it since about Firefox 3.6.0 or maybe 3.6.6
    Be aware that if you currently choose to use McAfee Site Advisor it has some serious problems for Firefox users, check
    *http://kb.mozillazine.org/Problematic_extensions for some things to watch out for.
    *https://support.mozilla.com/questions/837877
    *https://community.mcafee.com/message/195191

  • Making a VoIP call with the Cisco 837 ADSL router

    I would greatly appreciate if could please provide some technical assistance to my questions below:
    Is it possible to make a VoIP call between two 837 ADSL Cisco routers over a 1Mbps ADSL broadband connection?
    If so, can I configure this VoIP connection using either a PPPoE or ATM WAN link?
    Is it possible to make a VoIP call using a Cisco 837 Router while simultaneously surfing the Internet? In other words do I need two public IP addresses i.e. one for accessing the internet and one for making the VoIP call or is one static IP address obtained from my ISP sufficent.
    It is possible to configure QoS parameters (e.g. RSVP, Voice precedence, Voice codec selection) on this 837 router using PPoE or can it only be done using an ATM WAN interface?
    Does the Cisco 837 router support both the H.323 and SIP communication protocols? Do I need to purchase a certain IOS operating system version for VoIP calling?
    Does the VoIP dial peers need to be configured with both a POTS and VoIP phone numbers or is only one number required?
    Do I need to obtain a special VoIP number from my VoIP service provider? or can I use existing POTS numbers or made up numbers within the dial peers as this situation involves making a private VoIP call between two branch offices using 837 ADSL routers and not via a VoIP service provider.
    Finally, can I use POTS ordinary telephones with the Cisco 837 for making VoIP calls or do I strictly need to purchase VoIP phones?
    My apologies for the number of questions asked here but I currently need to know the technical ability of the Cisco ADSL 837 as I am thinking of employing these routers in my company organisation.
    I await your feedback in due course.
    Thanks,
    Martin Healy

    Hi,
    I give you a sample config of my router.
    class-map voice
    match access-group 101
    policy-map mypolicy
    class voice
    priority 128
    class class-default
    fair-queue 16
    ip subnet-zero
    gateway
    interface Ethernet0
    ip address 20.20.20.20 255.255.255.0
    no ip directed-broadcast (default)
    ip route-cache policy
    ip policy route-map data
    interface ATM0
    ip address 10.10.10.20 255.255.255.0
    no ip directed-broadcast (default)
    no atm ilmi-keepalive (default)
    pvc 1/40
    service-policy output mypolicy
    protocol ip 10.10.10.36 broadcast
    vbr-nrt 640 600 4
    ! 640 is the maximum upstream rate of ADSL
    encapsulation aal5snap
    bundle-enable
    h323-gateway voip interface
    h323-gateway voip id gk-twister ipaddr 172.17.1.1 1719
    h323-gateway voip h323-id gw-820
    h323-gateway voip tech-prefix 1#
    router eigrp 100
    network 10.0.0.0
    network 20.0.0.0
    ip classless (default)
    no ip http server
    access-list 101 permit ip any any precedence critical
    route-map data permit 10
    set ip precedence routine
    line con 0
    exec-timeout 0 0
    transport input none
    stopbits 1
    line vty 0 4
    login
    voice-port 1
    local-alerting
    timeouts call-disconnect 0
    voice-port 2
    local-alerting
    timeouts call-disconnect 0
    voice-port 3
    local-alerting
    timeouts call-disconnect 0
    voice-port 4
    local-alerting
    timeouts call-disconnect 0
    dial-peer voice 10 voip
    destination-pattern ........
    ip precedence 5
    session target ras
    dial-peer voice 1 pots
    destination-pattern 5258111
    port 1
    dial-peer voice 2 pots
    destination-pattern 5258222
    port 2
    dial-peer voice 3 pots
    destination-pattern 5258333
    port 3
    dial-peer voice 4 pots
    destination-pattern 5258444
    port 4
    end

  • VTP3 interoperability with VTP2 in the same domain

    I'm trying to determine the best way to implement extended vlans in a network where all of the devices will not immediately support
    vtp3.  We do not need extended vlans campus wide, but only on the head of stack device in each closet of each building. These head of
    stack switches will be 3850's used as wireless access controllers.  The extended vlans will be for the building wireless networks.
    (the purchase of a 5760 is deferred until next year, so this is an interim wireless configuration). The majority of the switches in
    the network are vtp2 capable, but all are running in vtp1 mode because of a handful (maybe 5) that are vtp 1 only capable.  These
    5 will be removed from the network in the near future. 
    The VTP3 docs seem counterdictory.  They seem to imply that VTP3 and VTP2 are interoperable, and that
    vtp 2 switches will accept configuration changes from a vtp 3 primary server. (I know the reverse is not true and do not need that). But then the same doc explicitly states that all devices in the same domain have to run the same vtp version.  So which is true?  Can the core switch and
    the connecting 3850's run vtp3 with the extended vlan ranges, while the rest of the network switches remain at version 2, with the
    version 2 switches able to accept configuration changes for vlans 1-1005 from the version 3 primary vtp switch?  Also, if the vtp
    version 2 core switch is converted to vtp3, will the configuration version be reset to 0? If  vtp version 2 and 3 are not interoperable as just described, then how do we get the extended range higher number vlans in the network? 
    Would vtp transparent be an option?  But then wouldn't the core switch, as well as the rest of the switches in the network, have to
    be configured as transparent as well? And if the core switch (a 6509E running 12.2(17r)SX7) is converted from vtp 2 to transparent,
    will it retain the existing version 2 vlan database, or will all of the vlans need to be reconfigured on the switch?
    What is the best way to implement extended vlans in the situation?
    Please ask questions if you need more information to respond.

    Will, did you find a solution for the above then?

  • Mac-Address Locking on ML-1000 for the Cisco 15454

    Does anyone know if you can do mac-address locking on the ML-1000 card on the Cisco 15454. I would like to enter the command "mac-address-table secure", but it does not look like it is possible to do this.
    Thanks,
    Eric

    The command is not supported on the ML-1000 card.

  • An error when trying to connect with the Cisco AnyConnect.

    Good day!
    I connect from Windows 7 (also from Ubuntu) with the Cisco AnyConnect client 3.0 (and with Cisco AnyConnect Secure Mobility Client 3.1) and  get error a “The VPN client was unable to successfully verify the IP  forwarding table modifications. A VPN connection will not be  established.   No changes had been made to the  configuration  of my  asa5520 running 8.4(2) (ASDM 6.4(5)).
    I have license  (AnyConnect Premium Perpetual) supports 2  vpn connections.
    I read about this problem on different forums and cisco.com:
    disabled unused adapters, check install software (Adobe photoshop and Bonjour are not installed on my system).
    I made new configuration AnyConnect  in ASDM. But the problem remains the same...
    Please, help me find the way to solution in this situation!

    I have seen that error before but it usually clears up on its own.  I have a working theory though so perhaps this might help you.  I noticed that once you connect, 2 files are created in C:\ProgramData\Cisco\Cisco AnyConnect VPN Client.  I think that folder is different if using v3.x instead of 2.5.  Anyway, the files are routechangesv4.bin and routechangesv6.bin.  Try deleting each and then rebooting.  Try connecting again after that.
    My theory is that those files are not clearing up after disconnecting.  I think they are supposed to go away after disconnecting but I noticed in some cases that they don't.

  • Is it possible to purchase replacement Flash Card that came with the Cisco 1811 Router?

    I am in desperate need of a replacement Flash card that came included with the Cisco 1811 Router. I purchased the router used and it was working perfectly. I worked my way through all the information provided at cisco.com and had it pretty much configured the way I wanted it. Until the flash card got destroyed. A little embarassed to go into details how it was destroyed, let's just say my Grandson gave it a bath.
    It would be great if I could just purchase a replacement somehow with the IOS and SDM on it without purchasing a Cisco Service Agreement, etc. I purchased the router just to further my "Self Education". I have pretty much conquered all the aspects of the Cisco routers, etc. more or less developed for the Home Office user and moved on to bigger and better things. Since I was able to find a Cisco 1811 in good working condition very inexpensively I decided to go for it.
    Help from anyone would sure be appreciated.

    “Thank you for your question.  This community is for Cisco Small Business products and your question is in reference to a Cisco Elite/Classic product.  Please post your question in the Cisco NetPro forums located here: http://forums.cisco.com/eforum/servlet/NetProf?page=main  This forum has subject matter experts on Cisco Elite/Classic products that may be able to answer your question.”
    - Routers ----> Network Infrastructure Forum http://forum.cisco.com/eforum/servlet/NetProf;jsessionid=E0EEC3D9CB4E5165ED16933737822748.SJ3A?page=Network_Infrastructure_discussion

  • Highest supported Brocade DCX firmware version to be interoperable with Cisco Nexus 5020

    A Cisco Nexus 5020 (FCoE) switch is connected to Brocade DCX-B switch.
    5020 is at latest firmware level of 5.0.2.N2.1
    Brocade is at firmware level of 6.2.1b
    If we need to upgrade brocade firmware, what is the maximum revision we can go to? Is there some documentation available for interoperability between the code levels of the two hardwares?

    Hi Anwarul,
    Please refer to "Table 7-10     Nexus InterOp Matrix" near the end of this link:
    http://www.cisco.com/en/US/docs/switches/datacenter/mds9000/interoperability/matrix/Matrix7.html
    Regards,
    Ken

  • Can't Access WVC200 with the Cisco Video Monitoring System

    I have contacted the help desk but nothing is forthcoming.
    I need help to configure a WVC200 to with the Cisco video monitoring system. In the camera configuration there is no drop down item for a Linksys wvc200 camera only the WVC210 camera. Thus access is not possible. With my other camera WVC 210 there is no problem. Who can help?
    Also the Cisco video monitoring system cannot reduce in size (drag smwller) but only full screen or nothing.. how can I move the monitor to my other video screen.
    Mike

    Steven
    I know it is not a bug and that WVC 200 is not supported anymore but I find that a lame excuse. I only bought this 18 months ago and now Cisco does not support this. If it had been 5 years ago then I could accept.
    Why you can't add a wvc200 template in the Cisco video monitoring systemn I just do not know.
    Even the latest WVC200 fireware is only released this year.
    WVC200_EU_V1.2.2R00.bin
    Release Date: 20/APR/2010
    Size: 4096.00 KB (4194304 bytes
    Mike

  • Registering with the WebEx Data Center and the Cisco WebEx Node Management System

    Dear guys, ...
    Please help,
    i want to implement to webex node ASR1000, i have read in "Configuring the Cisco Webex Node for ASR 100.pdf", there is prerequisites to implement it, that is "Registering with the WebEx Data Center and the Cisco WebEx Node Management System"
    Can someone tell how to "Registering with the WebEx Data Center and the Cisco WebEx Node Management System"
    Are there any step by step documentation to "Registering with the WebEx Data Center and the Cisco WebEx Node Management System"?
    Thank you
    BR

    You should have received a PAK Key with your order.  Go to Cisco licensing and enter the PAK Key as this will start the process.  Once the PAK Key is validated a screen will be displayed to enter your request for ASR 100 integration.  It normally takes a few days to a couple of weeks to get the information back from WebEx needed to configure your ASR.
    If you did not get a PAK Key contact your WebEx rep to get the process started to integrate your ASR to your WebEx site.
    Hope this helps
    John

Maybe you are looking for