Cisco RV120W traffic redirect

I have a RV 120W VPN where I wish to route HTTP traffic from local host to remote proxy server. How can i do it.

I have a RV 120W VPN where I wish to route HTTP traffic from local host to remote proxy server. How can i do it.

Similar Messages

  • Need Help on Configuring the Site to Site VPN from Cisco 2811 to Websense Cloud for web Traffic redirect

    Hi All,
    I need help on Configuring the Site to Site VPN from Cisco 2811 to Websense Cloud for web Traffic redirect
    2811 having C2800NM-ADVIPSERVICESK9-M
    2811 router connects to the Internet SW then connects to the Internet router.
    Note- For Authentication am using the Device ID & Pre share key. I am worried as all user traffic goes with PAT and not firing up my tunnel for port 80 traffic. Can you please suggest what can be the issue ?
    Below is router config for VPN & NAT
    crypto keyring ISR_Keyring
      pre-shared-key hostname vpn.websense.net key 2c22524d554556442d222d565f545246
    crypto isakmp policy 1
    encr 3des
    authentication pre-share
    group 2
    crypto isakmp keepalive 10
    crypto isakmp profile isa-profile
       keyring ISR_Keyring
       self-identity user-fqdn [email protected]
       match identity user vpn-proxy.websense.net
    crypto ipsec transform-set ESP-NULL-SHA esp-null esp-sha-hmac
    crypto map GUEST_WEB_FILTER 10 ipsec-isakmp
    set peer vpn.websense.net dynamic
    set transform-set ESP-NULL-SHA
    set isakmp-profile isa-profile
    match address 101
    interface FastEthernet0/1
    description connected to Internet
    ip address 216.222.208.101 255.255.255.128
    ip access-group HVAC_Public in
    ip nat outside
    ip virtual-reassembly
    duplex full
    speed 100
    no cdp enable
    crypto map GUEST_WEB_FILTER
    access-list 101 permit tcp 192.168.8.0 0.0.3.255 any eq www
    access-list 103 deny   ip 192.168.8.0 0.0.3.255 host 85.115.41.187 log
    access-list 103 deny   ip 192.168.8.0 0.0.3.255 host 85.115.41.181 log
    access-list 103 deny   ip 192.168.8.0 0.0.3.255 host 85.115.41.182 log
    access-list 103 deny   ip 192.168.8.0 0.0.3.255 86.111.216.0 0.0.1.255
    access-list 103 deny   ip 192.168.8.0 0.0.3.255 116.50.56.0 0.0.7.255
    access-list 103 deny   ip 192.168.8.0 0.0.3.255 86.111.220.0 0.0.3.255
    access-list 103 deny   ip 192.168.8.0 0.0.3.255 103.1.196.0 0.0.3.255
    access-list 103 deny   ip 192.168.8.0 0.0.3.255 177.39.96.0 0.0.3.255
    access-list 103 deny   ip 192.168.8.0 0.0.3.255 196.216.238.0 0.0.1.255
    access-list 103 permit ip 192.168.8.0 0.0.3.255 any
    ip nat pool mypool 216.222.208.101 216.222.208.101 netmask 255.255.255.128
    ip nat inside source list 103 interface FastEthernet0/1 overload
    ip nat inside source route-map nonat pool mypool overload

    How does Websense expect your source IPs in the tunnel? 192.168.8.0 0.0.3.255 or PAT'ed 216.222.208.101 ?
    Check
    show crypto isakmp sa
    show crypto ipsec sa
    show crypto session
    You'd better remove the preshared key from your post.

  • Cisco RV120W crashed several times a day

    Hello,
    we are using the Cisco RV120W for our little network. The latest firmware (1.0.4.10) is installed!
    But the router crashes about 6-10 times a day and have to be restarted. The Web Interface is also not available then.
    It is configured as the subnet 192.168.12.0/24
    The WAN connection is a static ip to a public subnet.
    VLAN 1 is the default LAN (see above).
    DHCP is enabled in that network and DNS proxy is disabled.
    VLAN 2 is 192.168.10.12 whitout DHCP.
    Ethernet Port 1 is configured as VLAN 2 for another subnet (192.168.10.0/24 from another router).
    The other ports an WLAN are using VLAN 1 (192.168.12.0/24).
    WLAN authentication is enabled (SSID 1) with a WPA2-PSK password.
    After i reboot the router the logs are empty and i just can see the logs while the router is running.
    after about 30 minutes i copied the logs from the router:
    These are the "error" logs:
    Sat Jan  1 01:02:17 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Sat Jan  1 01:02:22 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Sat Jan  1 01:02:37 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Fri Aug 30 15:25:40 2013(CET) [rv120w][System][FIREWALL] fwPPTPGenericRules.c: inet_aton failed
    Fri Aug 30 15:25:40 2013(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Fri Aug 30 15:25:57 2013(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Fri Aug 30 15:26:04 2013(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Fri Aug 30 15:26:15 2013(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Fri Aug 30 15:26:47 2013(CET) [rv120w][System][FIREWALL] fwPPTPGenericRules.c: inet_aton failed
    Fri Aug 30 15:26:48 2013(CET) [rv120w][System][PLATFORM] [BONJOUR_ERROR]: DNSServiceProcessResult returned -65537 stopping listen to mdnsd
    Fri Aug 30 15:26:51 2013(CET) [rv120w][System][PLATFORM] [BONJOUR_ERROR]: Signal Sent to bonjourClient Failed
    Fri Aug 30 15:26:52 2013(CET) [rv120w][System][PLATFORM] [BONJOUR_ERROR]: DNSServiceProcessResult returned -65537 stopping listen to mdnsd
    Fri Aug 30 15:26:54 2013(CET) [rv120w][System][PLATFORM] [BONJOUR_ERROR]: Signal Sent to bonjourClient Failed
    Fri Aug 30 15:26:58 2013(CET) [rv120w][System][PLATFORM] [BONJOUR_ERROR]: Signal Sent to bonjourClient Failed
    Fri Aug 30 15:27:00 2013(CET) [rv120w][Local0-wireless][UDOT11] wpaAuthRecvPTKMsg2: mic check failed
    Fri Aug 30 15:27:01 2013(CET) [rv120w][Local0-wireless][UDOT11] wpaAuthRecvPTKMsg2: mic check failed
    Fri Aug 30 15:27:01 2013(CET) [rv120w][System][PLATFORM] [BONJOUR_ERROR]: Signal Sent to bonjourClient Failed
    Fri Aug 30 15:27:01 2013(CET) [rv120w][Local0-wireless][UDOT11] wpaAuthRecvPTKMsg2: mic check failed
    Fri Aug 30 15:27:02 2013(CET) [rv120w][System][EVTDSPTCH] umiIoctl (43, UMI_CMD_DB_UPDATE(4)) failed. table=FirewallRules row=101
    Fri Aug 30 15:27:27 2013(CET) [rv120w][Local0-wireless][UDOT11] wpaAuthRecvPTKMsg2: mic check failed
    Fri Aug 30 15:27:28 2013(CET) [rv120w][Local0-wireless][UDOT11] wpaAuthRecvPTKMsg2: mic check failed
    Fri Aug 30 15:27:28 2013(CET) [rv120w][Local0-wireless][UDOT11] wpaAuthRecvPTKMsg2: mic check failed
    Fri Aug 30 15:27:52 2013(CET) [rv120w][System][FIREWALL] fwPPTPGenericRules.c: inet_aton failed
    And these are the "warning" logs:
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] CVMSEG size: 2 cache lines (256 bytes)
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] CPU revision is: 000d0601
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Determined physical RAM map:
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL]  memory: 0000000003800000 @ 0000000000700000 (usable)
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Built 1 zonelists.  Total pages: 14116
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Primary instruction cache 32kB, virtually tagged, 4 way, 64 sets, linesize 128 bytes.
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Primary data cache 16kB, 64-way, 2 sets, linesize 128 bytes.
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] PID hash table entries: 256 (order: 8, 2048 bytes)
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Using 300.000 MHz high precision timer.
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Dentry cache hash table entries: 8192 (order: 4, 65536 bytes)
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Inode-cache hash table entries: 4096 (order: 3, 32768 bytes)
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Calibrating delay using timer specific routine.. 600.35 BogoMIPS (lpj=1200701)
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Mount-cache hash table entries: 256
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Checking for the multiply/shift bug... no.
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Checking for the daddi bug... no.
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Checking for the daddiu bug... no.
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Enabling Octeon big bar support
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] PCI Status: PCI 32-bit
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] IP route cache hash table entries: 512 (order: 0, 4096 bytes)
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] TCP established hash table entries: 2048 (order: 3, 32768 bytes)
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] TCP bind hash table entries: 2048 (order: 2, 16384 bytes)
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] /proc/octeon_perf: Octeon performace counter interface loaded
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Total HugeTLB memory allocated, 0
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] RAMDISK driver initialized: 1 RAM disks of 500000K size 1024 blocksize
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] GACT probability NOT on
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Mirror/redirect action on
    Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] u32 classifier
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL]     Performance counters on
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL]     Actions configured
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack version 2.4 (224 buckets, 1792 max) - 352 bytes per conntrack
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rtsp v0.6.21 loading
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_nat_rtsp v0.6.21 loading
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_tables: (C) 2000-2006 Netfilter Core Team
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] netfilter PSD loaded - (c) astaro AG
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ipt_time loading
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Bootbus flash: Setting flash for 16MB flash at 0x1ec00000
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL]  Amd/Fujitsu Extended Query Table at 0x0040
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] phys_mapped_flash: CFI does not contain boot bank location. Assuming top.
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] cavium-ethernet: Cavium Networks Octeon SDK version 1.7.3, build 264
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for hardware offload succeed
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for flow cache succeed
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for brcm Tag succeed
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for vlan enabled succeed
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Pool 0 size 2048 No 1024
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Pool 1 size 128 No 1024
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Pool 3 size 128 No 640
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] global cache allocation start 0
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Ipforward global cache allocation sucessfull
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for IMP port status
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for 802.1x enabled port
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for blocking non EAP packets status
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Interface 0 has 2 ports (GMII)
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] 996
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] 999
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] 1037
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] 1039
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] port ko 0
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] port ko 1
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] led module init...
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] umi: module license 'unspecified' taints kernel.
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] eth0: 100 Mbps Full duplex, port  0, queue  0
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] eth1: 100 Mbps Full duplex, port  1, queue  1
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] PF_key: Initialized Security Policy Database.
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] IPsec: Initialized Security Association Processing.
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] BUG: at kernel/softirq.c:138 local_bh_enable()
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Call Trace:[<ffffffff80121150>][<ffffffff80121150>][<ffffffff8014b2e0>][<ffffffff802c58ec>][<c0000000002231ac>][<c000000000229460>][<c0000000001eea80>][<c000000000229eb4>][<ffffffff802c0a00>][<ffffffff8011ae80>][<ffffffff8011ae80>][<ffffffff801
    Sat Jan  1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] HTB: quantum of class 10001 is big. Consider r2q change.
    Sat Jan  1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL]
    <4>Intializing the 8021P-DSCP Remark Module
    Sat Jan  1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for _8021p task IMP portPCI: Enabling device 0000:00:03.0 (0000 -> 0002)
    Sat Jan  1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] vap0: Broadcom BCM432c 802.11 Wireless Controller 5.60.120.9
    Sat Jan  1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_pptp version 3.1 loaded
    Sat Jan  1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] ip_nat_pptp version 3.0 loaded
    Sat Jan  1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] COEX: downgraded chanspec 0x2e09 to 0x2b0b: channel 5 used by exiting BSSs
    Sat Jan  1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] COEX: downgraded chanspec 0x2e0b to 0x2b0d: channel 6 used by exiting BSSs
    Sat Jan  1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] COEX: downgraded chanspec 0x2d03 to 0x2b01: channel 6 used by exiting BSSs
    Sat Jan  1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] COEX: downgraded chanspec 0x2e09 to 0x2b0b: channel 6 used by exiting BSSs
    Sat Jan  1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] COEX: downgraded chanspec 0x2e0b to 0x2b0d: channel 6 used by exiting BSSs
    Sat Jan  1 01:01:51 2000(CET) [rv120w][System][PLATFORM] IPv6 not configured on the interface
    Fri Aug 30 15:27:01 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Fri Aug 30 15:27:01 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Fri Aug 30 15:27:01 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Fri Aug 30 15:27:06 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Fri Aug 30 15:27:32 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Fri Aug 30 15:27:32 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Fri Aug 30 15:27:32 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Fri Aug 30 15:27:32 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    hope you can help me!
    EDIT: This is a log file from today in the morning:
    [rv120w]Sat Jan 1 01:01:41 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:system op=23 row=1
    [rv120w]Sat Jan 1 01:01:43 2000(CET) [rv120w][System][PLATFORM] [BONJOUR_DEBUG]: Getting the results of Sql Query: SELECT value FROM environment WHERE name='BONJOUR_DEFAULT_SERVICE_NAME'
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][System][PLATFORM] [BONJOUR_DEBUG]: Performing SqlQry : UPDATE bonjourDefaultServices SET textRecord = 'model=RV120W;deviceType=Router;deviceDescr=Wireless-N-VPN-Router;slaves=0;fmVersion=1.0.4.10;PIDVID=RV12
    W-E V01;MACAddress=00077D150BCA;serialNo=SER15320A9Q
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Linux version 2.6.21.7-Cavium-Octeon ([email protected]) (gcc version 4.1.2 (Cavium Networks Version: 1_6_0, build 34)) #1 Mon Jun 18 13:30:50 IST 2012
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] CVMSEG size: 2 cache lines (256 bytes)
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] CPU revision is: 000d0601
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Determined physical RAM map:
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] memory: 0000000003800000 @ 0000000000700000 (usable)
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Wasting 100352 bytes for tracking 1792 unused pages
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Initrd not found or empty - disabling initrd
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] On node 0 totalpages: 14336
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL]   DMA zone: 220 pages used for memmap
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL]   DMA zone: 0 pages reserved
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL]   DMA zone: 14116 pages, LIFO batch:3
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL]   Normal zone: 0 pages used for memmap
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Built 1 zonelists. Total pages: 14116
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Kernel command line: bootoctlinux 0x3000200 mtdparts=phys_mapped_flash:512k(bootloader)ro,5632k(kernel),8704k(rootfs),1024k(data),128k(bootload-env) console=ttyS0,115200
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Primary instruction cache 32kB, virtually tagged, 4 way, 64 sets, linesize 128 bytes.
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Primary data cache 16kB, 64-way, 2 sets, linesize 128 bytes.
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Synthesized TLB refill handler (49 instructions).
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Synthesized TLB load handler fastpath (64 instructions).
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Synthesized TLB store handler fastpath (67 instructions).
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Synthesized TLB modify handler fastpath (64 instructions).
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] PID hash table entries: 256 (order: 8, 2048 bytes)
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Using 300.000 MHz high precision timer.
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Dentry cache hash table entries: 8192 (order: 4, 65536 bytes)
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Inode-cache hash table entries: 4096 (order: 3, 32768 bytes)
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Memory: 53600k/57344k available (3099k kernel code, 3688k reserved, 669k data, 1788k init, 0k highmem)
    [rv120w]Sat Jan  1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Calibrating delay using timer specific routine.. 600.35 BogoMIPS (lpj=1200702)
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Mount-cache hash table entries: 256
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Checking for the multiply/shift bug... no.
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Checking for the daddi bug... no.
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Checking for the daddiu bug... no.
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] NET: Registered protocol family 16
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Enabling Octeon big bar support
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] PCI Status: PCI 32-bit
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] NET: Registered protocol family 2
    [rv120w]Sat Jan 1 01:01:44 2000(CET) [rv120w][Kernel][KERNEL] Time: MIPS clocksource has been installed.
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] IP route cache hash table entries: 512 (order: 0, 4096 bytes)
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] TCP established hash table entries: 2048 (order: 3, 32768 bytes)
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] TCP bind hash table entries: 2048 (order: 2, 16384 bytes)
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] TCP: Hash tables configured (established 2048 bind 2048)
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] TCP reno registered
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] /proc/octeon_perf: Octeon performace counter interface loaded
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Total HugeTLB memory allocated, 0
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] squashfs: version 3.0 (2006/03/15) Phillip Lougher
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] JFFS2 version 2.2. (NAND) (C) 2001-2006 Red Hat, Inc.
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] io scheduler noop registered
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] io scheduler cfq registered (default)
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Serial: 8250/16550 driver $Revision: 1.90 $ 4 ports, IRQ sharing enabled
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] RAMDISK driver initialized: 1 RAM disks of 500000K size 1024 blocksize
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] loop: loaded (max 8 devices)
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] PPP generic driver version 2.4.2
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] PPP BSD Compression module registered
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] MPPE/MPPC encryption/compression module registered
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] NET: Registered protocol family 24
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] slram: not enough parameters.
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] i2c /dev entries driver
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] GACT probability NOT on
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Mirror/redirect action on
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] u32 classifier
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL]     Performance counters on
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL]     Actions configured
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack version 2.4 (224 buckets, 1792 max) - 352 bytes per conntrack
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rsh: registering helper for port #0: 514/TCP
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rsh: helper match ip   0.0.0.0:514-0.0.0.0:0
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rsh: helper match mask 0.0.0.0:64512-0.0.0.0:64512
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rtsp v0.6.21 loading
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] net/ipv4/netfilter/ip_conntrack_rtsp.c: ip_conntrack_rtsp_init: port #0: 554
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_nat_rtsp v0.6.21 loading
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_tables: (C) 2000-2006 Netfilter Core Team
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ipt_account 0.1.7 : Piotr Gasid³o <[email protected]>, http://www.barbara.eu.org/~quaker/ipt_account/
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] netfilter PSD loaded - (c) astaro AG
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ipt_time loading
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rpc_tcp: registering helper for port #0: 111/TCP
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rpc_tcp: helper match ip   0.0.0.0:0->0.0.0.0:111
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rpc_tcp: helper match mask 0.0.0.0:0->0.0.0.0:65535
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rpc_tcp: disabling Legato NetWorker support for port 0/TCP
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ipt_rpc: registering match [rpc] for;
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ipt_rpc:   port 111 (UDP|TCP);
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rpc_udp: registering helper for port #0: 111/UDP
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rpc_udp: helper match ip   0.0.0.0:0->0.0.0.0:111
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rpc_udp: helper match mask 0.0.0.0:0->0.0.0.0:65535
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] TCP cubic registered
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] NET: Registered protocol family 1
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] NET: Registered protocol family 10
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] IPv6 over IPv4 tunneling driver
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] NET: Registered protocol family 17
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] 802.1Q VLAN Support v1.8 Ben Greear <[email protected]>
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] All bugs added by David S. Miller <[email protected]>
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] serial8250: ttyS0 at MMIO 0x1180000000800 (irq = 42) is a 16550A
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Bootbus flash: Setting flash for 16MB flash at 0x1ec00000
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] phys_mapped_flash: Found 1 x16 devices at 0x0 in 8-bit bank
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Amd/Fujitsu Extended Query Table at 0x0040
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] phys_mapped_flash: CFI does not contain boot bank location. Assuming top.
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] number of CFI chips: 1
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] cfi_cmdset_0002: Disabling erase-suspend-program due to code brokenness.
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] 5 cmdlinepart partitions found on MTD device phys_mapped_flash
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] Creating 5 MTD partitions on "phys_mapped_flash":
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] 0x00000000-0x00080000 : "bootloader"
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] 0x00080000-0x00600000 : "kernel"
    [rv120w]Sat Jan 1 01:01:45 2000(CET) [rv120w][Kernel][KERNEL] 0x00600000-0x00e80000 : "rootfs"
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] 0x00e80000-0x00f80000 : "data"
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] 0x00f80000-0x00fa0000 : "bootload-env"
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Freeing unused kernel memory: 1788k freed
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] cavium-ethernet: Cavium Networks Octeon SDK version 1.7.3, build 264
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for hardware offload succeed
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for flow cache succeed
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for brcm Tag succeed
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for vlan enabled succeed
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Pool 0 size 2048 No 1024
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Pool 1 size 128 No 1024
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Pool 3 size 128 No 640
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] global cache allocation start 0
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Ipforward global cache allocation sucessfull
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for IMP port status
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for 802.1x enabled port
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for blocking non EAP packets status
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Interface 0 has 2 ports (GMII)
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] 996
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] 999
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] 1037
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] 1039
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] port ko 0
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] port ko 1
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] led module init...
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] umi: module license 'unspecified' taints kernel.
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] NET: Registered protocol family 32
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] kernel UMI module loaded
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] eth0: 100 Mbps Full duplex, port 0, queue 0
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] eth1: 100 Mbps Full duplex, port 1, queue 1
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Initializing PF_KEY V2 Key Management socket interface.
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] NET: Registered protocol family 15
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] PF_key: Started key_timehandler
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] PF_key: Initialized Security Policy Database.
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] IPsec: Initialized Security Association Processing.
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] XLR8 IPSec Framework Initialized
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Software Backend Registered with XLR8 IPSec Framework
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Adding AH4 protocol processing.
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Adding ESP4 protocol processing.
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Adding IPCOMP4 protocol processing.
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Adding packet sink.
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] BUG: at kernel/softirq.c:138 local_bh_enable()
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Call Trace:[<ffffffff80121150>][<ffffffff80121150>][<ffffffff8014b2e0>][<ffffffff802c58ec>][<c0000000002231ac>][<c000000000229460>][<c0000000001eea80>][<c000000000229eb4>][<ffffffff802c0a00>]
    <ffffffff8011ae80>][<ffffffff8011ae80>][<ffffffff801
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] HTB: quantum of class 10001 is big. Consider r2q change.
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL]
    <4>Intializing the 8021P-DSCP Remark Module
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for _8021p task IMP portPCI: Enabling device 0000:00:03.0 (0000 -> 0002)
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] vap0: Broadcom BCM432c 802.11 Wireless Controller 5.60.120.9
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] HDLC line discipline: version $Revision: 4.8 $, maxframe=4096
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] N_HDLC line discipline registered.
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] Loading mii
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] using bcm switch bcm5395
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] privlegedID 4094 wanporttNo: 5
    [rv120w]Sat Jan 1 01:01:46 2000(CET) [rv120w][Kernel][KERNEL] eth1: no IPv6 routers present
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0: no IPv6 routers present
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] Loading ifDev module
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_pptp version 3.1 loaded
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] ip_nat_pptp version 3.0 loaded
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] COEX: downgraded chanspec 0x2e09 to 0x2b0b: channel 6 used by exiting BSSs
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] COEX: downgraded chanspec 0x2e0b to 0x2b0d: channel 6 used by exiting BSSs
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] COEX: downgraded chanspec 0x2e09 to 0x2b0b: channel 6 used by exiting BSSs
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] COEX: downgraded chanspec 0x2e0b to 0x2b0d: channel 6 used by exiting BSSs
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] vap0: no IPv6 routers present
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] IPsec: device down: eth0
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] device eth0 entered promiscuous mode
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] bdg1: port 1(eth0) entering learning state
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] device eth0 left promiscuous mode
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] bdg1: port 1(eth0) entering disabled state
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: add 33:33:00:00:00:01 mcast address to master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: add 01:00:5e:00:00:01 mcast address to master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: add 33:33:ff:15:0b:ca mcast address to master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: del 33:33:ff:15:0b:ca mcast address from vlan interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: del 33:33:ff:15:0b:ca mcast address from master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: del 01:00:5e:00:00:01 mcast address from vlan interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: del 01:00:5e:00:00:01 mcast address from master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: del 33:33:00:00:00:01 mcast address from vlan interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: del 33:33:00:00:00:01 mcast address from master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] IPsec: device down: eth0.1
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] device eth0.1 entered promiscuous mode
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: dev_set_promiscuity(master, 1)
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] device eth0 entered promiscuous mode
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: add 01:00:5e:00:00:01 mcast address to master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: add 33:33:00:00:00:01 mcast address to master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: add 33:33:ff:15:0b:ca mcast address to master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] bdg1: port 1(eth0.1) entering learning state
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] IPsec: device down: vap0
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] device vap0 entered promiscuous mode
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] bdg1: port 2(vap0) entering learning state
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: add 33:33:00:00:00:01 mcast address to master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: add 01:00:5e:00:00:01 mcast address to master interface
    [rv120w]Sat Jan 1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: add 33:33:ff:15:0b:ca mcast address to master interface
    [rv120w]Sat Jan  1 01:01:47 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: del 33:33:ff:15:0b:ca mcast address from vlan interface
    [rv120w]Sat Jan 1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: del 33:33:ff:15:0b:ca mcast address from master interface
    [rv120w]Sat Jan  1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: del 01:00:5e:00:00:01 mcast address from vlan interface
    [rv120w]Sat Jan 1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: del 01:00:5e:00:00:01 mcast address from master interface
    [rv120w]Sat Jan  1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: del 33:33:00:00:00:01 mcast address from vlan interface
    [rv120w]Sat Jan 1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: del 33:33:00:00:00:01 mcast address from master interface
    [rv120w]Sat Jan  1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] IPsec: device down: eth0.2
    [rv120w]Sat Jan 1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: dev_set_promiscuity(master, 1)
    [rv120w]Sat Jan 1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: add 01:00:5e:00:00:01 mcast address to master interface
    [rv120w]Sat Jan 1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: add 33:33:00:00:00:01 mcast address to master interface
    [rv120w]Sat Jan 1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: add 33:33:ff:15:0b:ca mcast address to master interface
    [rv120w]Sat Jan 1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] bdg2: port 1(eth0.2) entering learning state
    [rv120w]Sat Jan 1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] bdg1: no IPv6 routers present
    [rv120w]Sat Jan 1 01:01:48 2000(CET) [rv120w][Kernel][KERNEL] bdg2: no IPv6 routers present
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][Kernel][KERNEL] eth0: no IPv6 routers present
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][Kernel][KERNEL] vap0: no IPv6 routers present
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][Kernel][KERNEL] eth0.2: no IPv6 routers present
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][Kernel][KERNEL] eth0.1: no IPv6 routers present
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][Kernel][KERNEL] bdg1: topology change detected, propagating
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][Kernel][KERNEL] bdg1: port 1(eth0.1) entering forwarding state
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][Kernel][KERNEL] bdg1: topology change detected, propagating
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][Kernel][KERNEL] bdg1: port 2(vap0) entering forwarding state
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][Kernel][KERNEL] bdg2: topology change detected, propagating
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][Kernel][KERNEL] bdg2: port 1(eth0.2) entering forwarding state
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][System][FIREWALL] ____/pfrm2.0/bin/ipset -A webFltr 192.168.10.12___
    [rv120w]Sat Jan 1 01:01:49 2000(CET) [rv120w][System][FIREWALL] restartStatus = 0 for LogicalIfName = LAN2
    [rv120w]Sat Jan 1 01:01:52 2000(CET) [rv120w][System][PLATFORM] IPv6 not configured on the interface
    [rv120w]Sat Jan 1 01:01:53 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:ipAddressTable op=18 row=5
    [rv120w]Sat Jan 1 01:01:53 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:18 rowId:5
    [rv120w]Sat Jan 1 01:01:53 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:18 rowId:5
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] manufacturingCo uses obsolete (PF_INET,SOCK_PACKET)
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:55 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:networkInterface op=18 row=9
    [rv120w]Sat Jan 1 01:01:55 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:18 rowId:9
    [rv120w]Sat Jan 1 01:01:55 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:01:56 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:18 rowId:9
    [rv120w]Sat Jan 1 01:01:56 2000(CET) [rv120w][System][PLATFORM] igmpMgmtDBUpdateHandler: update received: Table: networkInterface opCode: 18 rowId: 9
    [rv120w]Sat Jan 1 01:01:56 2000(CET) [rv120w][System][PLATFORM] igmpDisable: failed to disable IGMP proxy. IGMP proxy may not be running at all!
    [rv120w]Sat Jan 1 01:01:57 2000(CET) [rv120w][System][PLATFORM] Disabling Firewall Rule for DHCP Relay Protocol
    [rv120w]Sat Jan 1 01:01:57 2000(CET) [rv120w][System][PLATFORM] ddnsMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:18 rowId:9
    [rv120w]Sat Jan 1 01:01:58 2000(CET) [rv120w][System][FIREWALL] ____/pfrm2.0/bin/ipset -D webFltr 0.0.0.0___
    [rv120w]Sat Jan 1 01:01:58 2000(CET) [rv120w][System][FIREWALL] ____/pfrm2.0/bin/ipset -A webFltr 192.168.12.1___
    [rv120w]Sat Jan 1 01:01:58 2000(CET) [rv120w][System][FIREWALL] restartStatus = 1 for LogicalIfName = LAN
    [rv120w]Sat Jan 1 01:01:58 2000(CET) [rv120w][System][FIREWALL] Restarting Firewall For LAN Address Update from 0.0.0.0:192.168.12.1
    [rv120w]Sat Jan 1 01:01:59 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:ipAddressTable op=23 row=1
    [rv120w]Sat Jan 1 01:01:59 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:1
    [rv120w]Sat Jan 1 01:01:59 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:01:59 2000(CET) [rv120w][Kernel][KERNEL] printk: 30 messages suppressed.
    [rv120w]Sat Jan 1 01:01:59 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:01:59 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:1
    [rv120w]Sat Jan 1 01:02:01 2000(CET) [rv120w][System][FIREWALL] ____/pfrm2.0/bin/ipset -D webFltr 192.168.12.1___
    [rv120w]Sat Jan 1 01:02:01 2000(CET) [rv120w][System][FIREWALL] ____/pfrm2.0/bin/ipset -A webFltr 192.168.12.1___
    [rv120w]Sat Jan 1 01:02:01 2000(CET) [rv120w][System][FIREWALL] restartStatus = 1 for LogicalIfName = LAN
    [rv120w]Sat Jan 1 01:02:01 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:ipAddressTable op=23 row=1
    [rv120w]Sat Jan 1 01:02:01 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:1
    [rv120w]Sat Jan 1 01:02:01 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:02:01 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:1
    [rv120w]Sat Jan 1 01:02:03 2000(CET) [rv120w][System][FIREWALL] restartStatus = 1 for LogicalIfName = WAN1
    [rv120w]Sat Jan 1 01:02:03 2000(CET) [rv120w][System][FIREWALL] Restarting Firewall For WAN1 Address Update from 0.0.0.0:193.158.228.75
    [rv120w]Sat Jan 1 01:02:03 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:ipAddressTable op=23 row=2
    [rv120w]Sat Jan 1 01:02:03 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:2
    [rv120w]Sat Jan 1 01:02:04 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:02:04 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:2
    [rv120w]Sat Jan 1 01:02:04 2000(CET) [rv120w][Kernel][KERNEL] printk: 29 messages suppressed.
    [rv120w]Sat Jan 1 01:02:04 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:02:05 2000(CET) [rv120w][System][FIREWALL] ____/pfrm2.0/bin/ipset -D webFltr 192.168.2.1___
    [rv120w]Sat Jan 1 01:02:05 2000(CET) [rv120w][System][FIREWALL] ____/pfrm2.0/bin/ipset -A webFltr 192.168.10.12___
    [rv120w]Sat Jan 1 01:02:06 2000(CET) [rv120w][System][FIREWALL] restartStatus = 0 for LogicalIfName = LAN2
    [rv120w]Sat Jan 1 01:02:06 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:ipAddressTable op=23 row=5
    [rv120w]Sat Jan 1 01:02:06 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:5
    [rv120w]Sat Jan 1 01:02:06 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:02:06 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:5
    [rv120w]Sat Jan 1 01:02:08 2000(CET) [rv120w][System][FIREWALL] ____/pfrm2.0/bin/ipset -D webFltr 192.168.10.12___
    [rv120w]Sat Jan 1 01:02:08 2000(CET) [rv120w][System][FIREWALL] ____/pfrm2.0/bin/ipset -A webFltr 192.168.10.12___
    [rv120w]Sat Jan 1 01:02:08 2000(CET) [rv120w][System][FIREWALL] restartStatus = 0 for LogicalIfName = LAN2
    [rv120w]Sat Jan 1 01:02:08 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:ipAddressTable op=23 row=5
    [rv120w]Sat Jan 1 01:02:08 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:5
    [rv120w]Sat Jan 1 01:02:08 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:02:08 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:5
    [rv120w]Sat Jan 1 01:02:09 2000(CET) [rv120w][Kernel][KERNEL] printk: 56 messages suppressed.
    [rv120w]Sat Jan 1 01:02:09 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:02:10 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:dhcpCfgLoad op=23 row=1
    [rv120w]Sat Jan 1 01:02:10 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:resolverConfig op=23 row=2
    [rv120w]Sat Jan 1 01:02:13 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:resolverConfig op=23 row=2
    [rv120w]Sat Jan 1 01:02:14 2000(CET) [rv120w][Kernel][KERNEL] printk: 66 messages suppressed.
    [rv120w]Sat Jan 1 01:02:14 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:02:16 2000(CET) [rv120w][System][FIREWALL] restartStatus = 1 for LogicalIfName = WAN1
    [rv120w]Sat Jan 1 01:02:16 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:ipAddressTable op=23 row=2
    [rv120w]Sat Jan 1 01:02:16 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:2
    [rv120w]Sat Jan 1 01:02:17 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:02:17 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:2
    [rv120w]Sat Jan 1 01:02:18 2000(CET) [rv120w][System][NIMF] Setting LED [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:02:18 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    [rv120w]Sat Jan 1 01:02:18 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:networkInterface op=23 row=3
    [rv120w]Sat Jan 1 01:02:19 2000(CET) [rv120w][Kernel][KERNEL] printk: 50 messages suppressed.
    [rv120w]Sat Jan 1 01:02:19 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:02:20 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:02:20 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:02:21 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:02:21 2000(CET) [rv120w][System][PLATFORM] igmpMgmtDBUpdateHandler: update received: Table: networkInterface opCode: 23 rowId: 3
    [rv120w]Sat Jan 1 01:02:22 2000(CET) [rv120w][System][PLATFORM] igmpDisable: failed to disable IGMP proxy. IGMP proxy may not be running at all!
    [rv120w]Sat Jan 1 01:02:22 2000(CET) [rv120w][System][PLATFORM] Disabling Firewall Rule for DHCP Relay Protocol
    [rv120w]Sat Jan 1 01:02:22 2000(CET) [rv120w][System][PLATFORM] ddnsMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:02:23 2000(CET) [rv120w][System][FIREWALL] Restarting Firewall [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:02:23 2000(CET) [rv120w][System][NIMF] Setting LED [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:02:23 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    [rv120w]Sat Jan 1 01:02:23 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:networkInterface op=23 row=3
    [rv120w]Sat Jan 1 01:02:24 2000(CET) [rv120w][Kernel][KERNEL] printk: 85 messages suppressed.
    [rv120w]Sat Jan 1 01:02:24 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:02:25 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:02:25 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:02:26 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:02:26 2000(CET) [rv120w][System][PLATFORM] igmpMgmtDBUpdateHandler: update received: Table: networkInterface opCode: 23 rowId: 3
    [rv120w]Sat Jan 1 01:02:26 2000(CET) [rv120w][System][PLATFORM] igmpDisable: failed to disable IGMP proxy. IGMP proxy may not be running at all!
    [rv120w]Sat Jan 1 01:02:27 2000(CET) [rv120w][System][PLATFORM] Disabling Firewall Rule for DHCP Relay Protocol
    [rv120w]Sat Jan 1 01:02:27 2000(CET) [rv120w][System][PLATFORM] ddnsMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:02:28 2000(CET) [rv120w][System][FIREWALL] Restarting Firewall [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:02:28 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:NimfAFStatus op=23 row=1
    [rv120w]Sat Jan 1 01:02:28 2000(CET) [rv120w][System][PLATFORM] ddnsMgmtDBUpdateHandler:DBUpdate event: Table: NimfAFStatus opCode:23 rowId:1
    [rv120w]Sat Jan 1 01:02:28 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:resolverConfig op=23 row=2
    [rv120w]Sat Jan 1 01:02:29 2000(CET) [rv120w][Kernel][KERNEL] printk: 115 messages suppressed.
    [rv120w]Sat Jan 1 01:02:29 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:02:31 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:resolverConfig op=23 row=2
    [rv120w]Sat Jan 1 01:02:34 2000(CET) [rv120w][Kernel][KERNEL] printk: 133 messages suppressed.
    [rv120w]Sat Jan 1 01:02:34 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:02:35 2000(CET) [rv120w][System][FIREWALL] restartStatus = 1 for LogicalIfName = WAN1
    [rv120w]Sat Jan 1 01:02:35 2000(CET) [rv120w][System][FIREWALL] Restarting Firewall For WAN1 Address Update from 0.0.0.0:193.158.228.75
    [rv120w]Sat Jan 1 01:02:35 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:ipAddressTable op=23 row=2
    [rv120w]Sat Jan 1 01:02:35 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:2
    [rv120w]Sat Jan 1 01:02:35 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:02:35 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:2
    [rv120w]Sat Jan 1 01:02:37 2000(CET) [rv120w][System][NIMF] Setting LED [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:02:37 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    [rv120w]Sat Jan 1 01:02:37 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:networkInterface op=23 row=3
    [rv120w]Sat Jan 1 01:02:39 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:02:39 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:02:39 2000(CET) [rv120w][Kernel][KERNEL] printk: 133 messages suppressed.
    [rv120w]Sat Jan 1 01:02:39 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:02:40 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:02:41 2000(CET) [rv120w][System][PLATFORM] igmpMgmtDBUpdateHandler: update received: Table: networkInterface opCode: 23 rowId: 3
    [rv120w]Sat Jan 1 01:02:41 2000(CET) [rv120w][System][PLATFORM] igmpDisable: failed to disable IGMP proxy. IGMP proxy may not be running at all!
    [rv120w]Sat Jan 1 01:02:41 2000(CET) [rv120w][System][PLATFORM] Disabling Firewall Rule for DHCP Relay Protocol
    [rv120w]Sat Jan 1 01:02:42 2000(CET) [rv120w][System][PLATFORM] ddnsMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:02:49 2000(CET) [rv120w][Kernel][KERNEL] printk: 96 messages suppressed.
    [rv120w]Sat Jan 1 01:02:49 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:02:49 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:02:54 2000(CET) [rv120w][Kernel][KERNEL] printk: 30 messages suppressed.
    [rv120w]Sat Jan 1 01:02:54 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][Kernel][KERNEL] printk: 33 messages suppressed.
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Enabling Attack Check for 0
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Enabling Attack Check for 1
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Enabling Attack Check for 2
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Enabling Attack Check for 3
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Enabling Attack Check for 4
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Enabling Attack Check for 5
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Enabling Attack Check for 6
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Enabling ICSA Notification Item 0
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Enabling Management Access from Internet to port 8200
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Disabling Source MAC Filtering
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Adding MAC Filter Policy for Block & Permit Rest
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Restarting Source MAC Address Policy
    [rv120w]Sat Jan 1 01:03:00 2000(CET) [rv120w][System][FIREWALL] Enabling DOS Attacks
    [rv120w]Sat Jan 1 01:03:03 2000(CET) [rv120w][System][FIREWALL] fwPPTPGenericRules.c: inet_aton failed
    [rv120w]Sat Jan 1 01:03:03 2000(CET) [rv120w][System][FIREWALL] Restarting Firewall [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:03:03 2000(CET) [rv120w][System][NIMF] Setting LED [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:03:03 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    [rv120w]Sat Jan 1 01:03:03 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:networkInterface op=23 row=3
    [rv120w]Sat Jan 1 01:03:05 2000(CET) [rv120w][Kernel][KERNEL] printk: 102 messages suppressed.
    [rv120w]Sat Jan 1 01:03:05 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:03:05 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:03:06 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:03:06 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:03:07 2000(CET) [rv120w][System][PLATFORM] igmpMgmtDBUpdateHandler: update received: Table: networkInterface opCode: 23 rowId: 3
    [rv120w]Sat Jan 1 01:03:07 2000(CET) [rv120w][System][PLATFORM] igmpDisable: failed to disable IGMP proxy. IGMP proxy may not be running at all!
    [rv120w]Sat Jan 1 01:03:07 2000(CET) [rv120w][System][PLATFORM] Disabling Firewall Rule for DHCP Relay Protocol
    [rv120w]Sat Jan 1 01:03:07 2000(CET) [rv120w][System][PLATFORM] ddnsMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:03:08 2000(CET) [rv120w][System][FIREWALL] Restarting Firewall [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:03:08 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:NimfAFStatus op=23 row=1
    [rv120w]Sat Jan 1 01:03:08 2000(CET) [rv120w][System][PLATFORM] ddnsMgmtDBUpdateHandler:DBUpdate event: Table: NimfAFStatus opCode:23 rowId:1
    [rv120w]Sat Jan 1 01:03:08 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:resolverConfig op=23 row=2
    [rv120w]Sat Jan 1 01:03:10 2000(CET) [rv120w][Kernel][KERNEL] printk: 129 messages suppressed.
    [rv120w]Sat Jan 1 01:03:10 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:03:12 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:resolverConfig op=23 row=2
    [rv120w]Sat Jan 1 01:03:15 2000(CET) [rv120w][Kernel][KERNEL] printk: 99 messages suppressed.
    [rv120w]Sat Jan 1 01:03:15 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:03:15 2000(CET) [rv120w][System][FIREWALL] restartStatus = 1 for LogicalIfName = WAN1
    [rv120w]Sat Jan 1 01:03:15 2000(CET) [rv120w][System][FIREWALL] Restarting Firewall For WAN1 Address Update from 0.0.0.0:193.158.228.75
    [rv120w]Sat Jan 1 01:03:15 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:ipAddressTable op=23 row=2
    [rv120w]Sat Jan 1 01:03:15 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:2
    [rv120w]Sat Jan 1 01:03:16 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:03:16 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: ipAddressTable opCode:23 rowId:2
    [rv120w]Sat Jan 1 01:03:17 2000(CET) [rv120w][System][NIMF] Setting LED [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:03:17 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    [rv120w]Sat Jan 1 01:03:17 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:networkInterface op=23 row=3
    [rv120w]Sat Jan 1 01:03:19 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:03:19 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:03:20 2000(CET) [rv120w][Kernel][KERNEL] printk: 132 messages suppressed.
    [rv120w]Sat Jan 1 01:03:20 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:03:20 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:03:20 2000(CET) [rv120w][System][PLATFORM] igmpMgmtDBUpdateHandler: update received: Table: networkInterface opCode: 23 rowId: 3
    [rv120w]Sat Jan 1 01:03:21 2000(CET) [rv120w][System][PLATFORM] igmpDisable: failed to disable IGMP proxy. IGMP proxy may not be running at all!
    [rv120w]Sat Jan 1 01:03:21 2000(CET) [rv120w][System][PLATFORM] Disabling Firewall Rule for DHCP Relay Protocol
    [rv120w]Sat Jan 1 01:03:21 2000(CET) [rv120w][System][PLATFORM] ddnsMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:03:22 2000(CET) [rv120w][System][FIREWALL] Restarting Firewall [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:03:22 2000(CET) [rv120w][System][NIMF] Setting LED [0]:[1] For WAN1
    [rv120w]Sat Jan 1 01:03:22 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    [rv120w]Sat Jan 1 01:03:22 2000(CET) [rv120w][System][PLATFORM] platformHandleDBUpdate:networkInterface op=23 row=3
    [rv120w]Sat Jan 1 01:03:24 2000(CET) [rv120w][System][PLATFORM] pptpdMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:03:24 2000(CET) [rv120w][System][PLATFORM] options.pptpd file found
    [rv120w]Sat Jan 1 01:03:25 2000(CET) [rv120w][System][PLATFORM] upnpMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:03:25 2000(CET) [rv120w][Kernel][KERNEL] printk: 186 messages suppressed.
    [rv120w]Sat Jan 1 01:03:25 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack: table full, dropping packet.
    [rv120w]Sat Jan 1 01:03:25 2000(CET) [rv120w][System][PLATFORM] igmpMgmtDBUpdateHandler: update received: Table: networkInterface opCode: 23 rowId: 3
    [rv120w]Sat Jan 1 01:03:25 2000(CET) [rv120w][System][PLATFORM] igmpDisable: failed to disable IGMP proxy. IGMP proxy may not be running at all!
    [rv120w]Sat Jan 1 01:03:26 2000(CET) [rv120w][System][PLATFORM] Disabling Firewall Rule for DHCP Relay Protocol
    [rv120w]Sat Jan 1 01:03:26 2000(CET) [rv120w][System][PLATFORM] ddnsMgmtDBUpdateHandler:DBUpdate event: Table: networkInterface opCode:23 rowId:3
    [rv120w]Sat Jan 1 01:03:27 2000(CET) [rv120w][System][FIREWALL] Restart

    This sounds like you may have a faulty unit.  I'd recommend opening a case with STAC to troubleshoot or RMA the device.  Let me know if you have any questions.  Have a wonderful day!
    -Trent Good
    ** Please rate useful posts! **

  • PRSM Offbox Enable CX Traffic Redirection

    Hi
    Iv'e got PRSM (Offbox) 9.3 installed.
    I've imported an ASA5585-X Failover Pair - Each with a CX module in it (great)
    How on earth do you set a traffic redirection policy to send the traffic through the CX module(s)!!
    Im pulling my hair out, if you add the 'traffic redirection' tab is says 'no items found.'
    Im not surprised, its not enabled - I want to turn it on with PRSM!
    This software is awful!
    Pete

    Hi Pete. Take a break on what hair you have left and check the CX Module Quick Start Guide for the ASDM method.
    Short answer is you use a service policy rule (policy-map). The CLI for it is explained in more detail in the ASA CX User Guide.
    You can technically configure this bit on the ASA from PRSM but you'd have to first import and manage the ASA itself (not just the CX modules). I've not tried that method as PRSM is a poor tool for managing an ASA. Even Cisco kind of steers you away from that option in their documentation

  • Service Insertion/Service Graphs & Policy based traffic redirection

    Hi,
    My question is to use policy based service insertion/service graphs between the EPGs communications to redirect traffic to ASA firewall & F5 slb.
    Below are Cisco ACI components:
    1- Spines & Leafs
    2- APIC Controllers
    3- Cisco ASA Firewall attached to the APIC via device package
    4- F5 SLB attached to the APIC via device package
    I have the below scenario for the communication between the EPGs e.g:
    WEB-EPG (consumer)
    APP EPG (provider) (consumer for DB)
    DB (provider)
    I want to use contract that includes filter on port 80 to permit and action for service insertion to provide SLB (F5) service between the WEB & APP communications.
    I want to use contract that includes filter on port any* to permit and action for service insertion to provide firewall (ASA) service between the APP & DB communications.
    Can I do policy based "traffic redirection" through service graphs in the contract's service insertion?
    Is it supported in version 1.0(3i)?
    I believe, NSH (Network services header) will add in the VXLAN header before reaching the dest VNID and redirect the traffic to the clusters of the services node i.e. SLB or FW, Then traffic will reach the destination address after striping all services.  
    Regards,
    Anser

    Hello Muhammad, 
    traffic redirection is not supported on 1.0(3i) , while NSH is still submitted to IETF as a draft from industry vendors , I think try to avoid waiting for it.
    Regards
    Mohammed ElSherbiny

  • Traffic Redirection tab not visible in PRSM single device mode

    I am using a 5515-X in single device mode.  Software is  version 9.2.1.2-69.
    I noticed a couple things that I am not sure are a problem or not.  When I go to the configuration overview tab PRSM shows mode of the ASA CX as "unknown".  Also the User Guide says I should see a "traffic redirection" tab under configuration policies/settings but I don't see that.
    I guess I can configure traffic redirection with ASDM but just wondering if this is normal, or cosmetic bug or something else?
    Thanks,
    Diego

    If you're running single device mode (on-box PRSM) you cannot manage the ASA configuration like you can with the off-box PRSM. Note this section of the user guide which states:
    "Traffic Redirection—(ASA, Multiple Device mode only.) Configure traffic redirection from the ASA to its CX module."

  • Guest Wireless traffic redirect to Proxy Server

    I have Guest WLAN and i want to redirect all the traffice to Proxy Server. We use Cisco Ironport.
    Cisco proxy Ironport has the ip 10.X.X.X.
    We also have NCS Server. Can anybody tells me where i can configure this
    best regards and thanks in advance

    Muzaffar:
    If you have web-auth configured you may have problems with the redirection if the users are using manual proxy server configured.
    For that, you better enable WebAuth proxy redirection on wireless controller.
    Here is the config example
    http://www.cisco.com/en/US/products/ps10315/products_configuration_example09186a0080b8a909.shtml
    HTH
    Amjad

  • Cisco ISE - CWA Redirect

    Why are the ISE nodes needed to be defined in the web authentication redirect acl that is configured locally on the switch?
    All the documentation that I've found states this. I've setup my 2yr old ISE environment this way and was advised in the beginning to do so. But after thinking the whole authentication process through and then testing out my theories I don't understand why the ISE nodes need to be defined in the switch redirect acl. I am now testing with a simple "redirect www & 443" acl and it is working as expected.
    The client connects to the network and, for our environment, is requested to do dot1x until that times out and then it shifts to mab. At which point, I do not have an authz rule defined for my test machine and therefore matches my catch-all authz rule of CWA which sends a CWA DACL. The switch lays the acls on the interface in this order: 1. Redirect 2. DACL 3. PACL. In my DACL I have access to the ISE nodes allowed (just to be safe) and the redirection still works because my test machine is not sending any www/443 traffic to the ISE nodes that I'm aware of (CWA is 8443).
    Can someone explain (in detail) why a client machine would send www/443 traffic to the ISE nodes and therefore need to be defined in the CWA redirect acl local to the switch.

    Poonam,
    I appreciate the response. I understand the process and flow of CWA but I still don't see why the ISE nodes need to be defined (as deny statements or at all) in the redirect acl that is locally configured on the switch. Let me try to explain it better (sorry for the novel):
    1. a default PACL is statically applied to an unused interface. For my environment our PACL is a simple "permit ip any any" which allows an open fallback in case communication to ISE fails.
    2. A client plugs in and the switch begins talking dot1x to the client. During this time the PACL is the ONLY acl that is applied to the interface/client.
    3. The client does not run dot1x and therefore the switch eventually fails over to mab. At this time, the CWA authz rule comes into effect and ISE sends the DACL to the switch via radius and also references which RACL (redirect acl) to use.
    4. Not many people seem to understand this part....The switch then rebuilds the ACL that is applied to the interface/user. The switch creates an ACL that consists of ALL THREE ACLs. The first portion of this ACL is the RACL with permit statements (which are the deny RACL statements configured on the switch) and then redirect statements (which are the permit RACL statements configured on the switch) and then the DACL from ISE is the next portion of this new ACL and then the very last portion is the original static PACL that is configured on the port.
    Again, I've tested this out over and over again on several different platforms (6500, 3700, 3800) and because, during the stage where the interface is in CWA state, the ACL that is applied to the interface is ALL THREE ACLs in the order of RACL>DACL>PACL....it doesn't seem to make sense that you need to define the ISE nodes in the RACL because all you need to define is what traffic you want to redirect. You define what traffic you want allowed in the DACL which is where you state access to the ISE nodes (either complete access or only 8443 access).
    Let me give you this example. Say I have the following confgured:
    CONFIGURED SWITCH INTERFACE ACL (PACL)
      ip access-list standard ACL-ALLOW
       permit ip any any
    CONFIGURED SWITCH REDIRECT ACL (RACL)
      ip access-list extended ACL-WEBAUTH-REDIRECT
       permit tcp any any eq www 443
    CONFIGURED ISE DOWNLOADABLE ACL (DACL)
      permit tcp any host <psn01> eq 8443
      permit udp any host <dns01> eq 53
      deny ip any any
    Then the process would look like this:
    1. During dot1x negotiation the acl that is used is this:
    permit ip any any     <<<<<PACL
    2. Once CWA is in effect then the acl looks like this:
    redirect tcp host <host ip> any eq www 443             <<<<<<RACL
    permit tcp host <host ip> host <psn01 ip> eq 8443       <<<<<<DACL
    permit udp host <host ip> host <dns01 ip> eq 53       <<<<<<DACL
    deny ip any any      <<<<<<DACL
    permit ip any any      <<<<<<PACL

  • Cisco ISE - CWA redirect in another way than cisco-av-pair?

    Hello.
    I'm trying to set up ISE as a CWA.
    I have made all the rules in both Authenticatin and Authorization, and I also see the clients hitting the right rules. The Authorizaton rule redirects the client to a captive web portal within ISE like this: cisco-av-pair = url-redirect=https://ip:port/portal/gateway?sessionId=SessionIdValue&portal=etc.
    But here is the problem: We use Aerohive as Accesspoints. And Aerohive does not support cisco-av-pair attributtes, since it's Cisco proprietary.
    Therefore, even if ISE says everything is fine, it's not, because Aerohive does not understand what's been sent to it.
    So the big question: Is there way to make the same redirect using standard radius attributes?
    Thank you.

    Unfortunately there isn't. I have done a project with ISE and Aerohive before and outside of basic 802.1x authentications, I was not able to deploy any of the other ISE features. There isn't an interoperability guide for ISE but just a compatibility one:
    http://www.cisco.com/c/en/us/td/docs/security/ise/1-2/compatibility/ise_sdt.html
    If could be wrong here so if someone else has done this before pls chime in.
    Thank you for rating helpful posts! 

  • Cisco 800 outbound redirect for Cloud Proxy

    Hey,
    I want to know if it's possible to redirect all outbound HTTP/HTTPS traffic to an external service on a custom port? Example below.
    Client points their browser to google.com (port 80) and the router should redirect this request to ExternalProxy:1234.
    Thanks for any help.

    Sounds like you need a route-map to change the next IP hop?
    This would be the best way to do it which will also verify the remote proxy server is available as well.
    ip sla monitor 1
    type echo protocol ipIcmpEcho <ip address of your proxy server>
    timeout 3000
    frequency 3
    ip sla monitor schedule 1 life forever start-time now
    track 123 rtr 1 reachability
    interface FastEthernet0/1
    ip address <x.x.x.x x.x.x.x>
    ip policy route-map REDIRECT-TO-PROXY
    ip access-list extended webtraffic
    ! Deny traffic from your proxy server from redirecting
      deny tcp host <ip address of your proxy server> any eq www
      deny tcp host <ip address of your proxy server> any eq https
      permit tcp <your ip network> <subnet mask> any eq www
      permit tcp <your ip network> <subnet mask> any eq https
    route-map REDIRECT-TO-PROXY permit 10
    match ip address webtraffic
    set ip next-hop verify-availability <ip address of your proxy server> 1 track 123
    If you don't already have a NAT rule setup to translate this traffic to the outside here is an example of that:
    Here is how my router is configured.
    interface FastEthernet0/0
     ip address dhcp hostname home-rtr-1
     ip nat outside
    interface FastEthernet0/1
     ip address 10.235.x.x 255.255.255.252
     ip nat inside
    ip nat inside source list 10 interface FastEthernet0/0 overload
    access-list 10 permit <your ip network> <your ip subnet>
    HTH

  • HTTPS traffic redirection

    How can I redirect the https requests to my CE. Would it work's in transparent mode? Could anyone send me a sample config?
    Thanks!

    Since there has been no response to your post, it appears to be either too complex or too rare an issue for other forum members to assist you. If you don't get a suitable response to your post, you may wish to review our resources at the online Technical Assistance Center (http://www.cisco.com/tac) or speak with a TAC engineer. You can open a TAC case online at http://www.cisco.com/tac/caseopen
    If anyone else in the forum has some advice, please reply to this thread.
    Thank you for posting.

  • WRVS4400N traffic redirection depend on host header

    Hello,
    I have a question related to WRVS4400N. Do you plan adding feature, in short described  as:
    - related to specific port , for  example port 80/HTTP
    - depend on the host header, router  to forward the traffic to internal IP1, IP2 and so on. Example - if i have Internet site A that i host on internal IP1, and Internet site B that i host on  internal IP2, router automatically to redirect the traffic to the necessary IPs  depend on the site names.
    And the s second question - do you  have such feature already made in other  products?

    While you can set up Single Port Forwarding to map incoming HTTP requests to a particular NAT IP on the LAN side of the Router, I dont see a way we can read the hostname out of the HTTP message and map to a particular device on the subnet, no.  Since your WebSite will DNS resolve to the WAN IP of the router, it would seem like we would be limited to one Webserver sitting behind that WAN IP.
    Adding a second Router will resolve this, and may be preferable if traffic rates will be high (more bandwidth per web host)

  • Cisco RV120W dropping NAS serveres

    Vi have a small business network including 2 QNAP 219 NAS servers. Several times we have noticed, the connection to the servers are lost. We have tried to restart the serveres without luck. But when we restart the router, all problems are gone and we can reconnect. It happens maybe one or twice a week. Annoying.                  

    Hi Clayton
    ·         We are on 1.0.4.10 firmware release
    ·         We could not ping the NAS in the situation
    ·         The error have been there for a couple of months
    ·         We have set up logging to see if anything goes into there
    Latest log file
    (The router was re-booted Sat Jan 4 11:35)
    Notification log *************************************************************************************************
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Linux version 2.6.21.7-Cavium-Octeon ([email protected]) (gcc version 4.1.2 (Cavium Networks Version: 1_6_0, build 34)) #1 Mon Jun 18 13:30:50 IST 2012
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Kernel command line:  bootoctlinux 0x3000200 mtdparts=phys_mapped_flash:512k(bootloader)ro,5632k(kernel),8704k(rootfs),1024k(data),128k(bootload-env) console=ttyS0,115200
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] slram: not enough parameters.
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] number of CFI chips: 1
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] cfi_cmdset_0002: Disabling erase-suspend-program due to code brokenness.
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] 5 cmdlinepart partitions found on MTD device phys_mapped_flash
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Creating 5 MTD partitions on "phys_mapped_flash":
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] 0x00000000-0x00080000 : "bootloader"
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] 0x00080000-0x00600000 : "kernel"
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] 0x00600000-0x00e80000 : "rootfs"
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] 0x00e80000-0x00f80000 : "data"
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] 0x00f80000-0x00fa0000 : "bootload-env"
    Warning log *************************************************************************************************
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] CVMSEG size: 2 cache lines (256 bytes)
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] CPU revision is: 000d0601
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Determined physical RAM map:
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL]  memory: 0000000003800000 @ 0000000000700000 (usable)
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Built 1 zonelists.  Total pages: 14116
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Primary instruction cache 32kB, virtually tagged, 4 way, 64 sets, linesize 128 bytes.
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Primary data cache 16kB, 64-way, 2 sets, linesize 128 bytes.
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] PID hash table entries: 256 (order: 8, 2048 bytes)
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Using 300.000 MHz high precision timer.
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Dentry cache hash table entries: 8192 (order: 4, 65536 bytes)
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Inode-cache hash table entries: 4096 (order: 3, 32768 bytes)
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Calibrating delay using timer specific routine.. 600.35 BogoMIPS (lpj=1200702)
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Mount-cache hash table entries: 256
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Checking for the multiply/shift bug... no.
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Checking for the daddi bug... no.
    Sat Jan  1 01:01:22 2000(CET) [rv120w][Kernel][KERNEL] Checking for the daddiu bug... no.
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Enabling Octeon big bar support
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] PCI Status: PCI 32-bit
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] IP route cache hash table entries: 512 (order: 0, 4096 bytes)
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] TCP established hash table entries: 2048 (order: 3, 32768 bytes)
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] TCP bind hash table entries: 2048 (order: 2, 16384 bytes)
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] /proc/octeon_perf: Octeon performace counter interface loaded
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Total HugeTLB memory allocated, 0
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] RAMDISK driver initialized: 1 RAM disks of 500000K size 1024 blocksize
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] GACT probability NOT on
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Mirror/redirect action on
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] u32 classifier
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL]     Performance counters on
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL]     Actions configured
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack version 2.4 (224 buckets, 1792 max) - 352 bytes per conntrack
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_rtsp v0.6.21 loading
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] ip_nat_rtsp v0.6.21 loading
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] ip_tables: (C) 2000-2006 Netfilter Core Team
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] netfilter PSD loaded - (c) astaro AG
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] ipt_time loading
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Bootbus flash: Setting flash for 16MB flash at 0x1ec00000
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL]  Amd/Fujitsu Extended Query Table at 0x0040
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] phys_mapped_flash: CFI does not contain boot bank location. Assuming top.
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] cavium-ethernet: Cavium Networks Octeon SDK version 1.7.3, build 264
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for hardware offload succeed
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for flow cache succeed
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for brcm Tag succeed
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Register the sysctl for vlan enabled succeed
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Pool 0 size 2048 No 1024
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Pool 1 size 128 No 1024
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Pool 3 size 128 No 640
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] global cache allocation start 0
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Ipforward global cache allocation sucessfull
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for IMP port status
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for 802.1x enabled port
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for blocking non EAP packets status
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] Interface 0 has 2 ports (GMII)
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] 996
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] 999
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] 1037
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] 1039
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] port ko 0
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] port ko 1
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] led module init...
    Sat Jan  1 01:01:23 2000(CET) [rv120w][Kernel][KERNEL] umi: module license 'unspecified' taints kernel.
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] eth0: 100 Mbps Full duplex, port  0, queue  0
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] eth1: 100 Mbps Full duplex, port  1, queue  1
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] PF_key: Initialized Security Policy Database.
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] IPsec: Initialized Security Association Processing.
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] BUG: at kernel/softirq.c:138 local_bh_enable()
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] Call Trace:[][][][][][][][][][][][Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] HTB: quantum of class 10001 is big. Consider r2q change.
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL]
    <4>Intializing the 8021P-DSCP Remark Module
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] Registerd the sysctl for _8021p task IMP portPCI: Enabling device 0000:00:03.0 (0000 -> 0002)
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] vap0: Broadcom BCM432c 802.11 Wireless Controller 5.60.120.9
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_pptp version 3.1 loaded
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] ip_nat_pptp version 3.0 loaded
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:24 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:25 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:26 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:26 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:01:29 2000(CET) [rv120w][System][PLATFORM] IPv6 not configured on the interface
    Sat Jan  1 01:02:22 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Sat Jan  1 01:02:22 2000(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Mon Feb  4 11:37:51 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Mon Feb  4 11:37:51 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Mon Feb  4 11:54:11 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Mon Feb  4 11:54:11 2013(CET) [rv120w][Kernel][KERNEL] ERROR:endChantRecv: protocol PNAC returned !OK
    Error log *************************************************************************************************
    Sat Jan  1 01:01:27 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_in: Frag of proto 17 (hook=0)
    Sat Jan  1 01:01:27 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_in: Frag of proto 17 (hook=0)
    Sat Jan  1 01:01:27 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_in: Frag of proto 17 (hook=0)
    Sat Jan  1 01:01:27 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_in: Frag of proto 17 (hook=0)
    Sat Jan  1 01:01:27 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_in: Frag of proto 17 (hook=0)
    Sat Jan  1 01:01:27 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_in: Frag of proto 17 (hook=0)
    Sat Jan  1 01:01:27 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_in: Frag of proto 17 (hook=0)
    Sat Jan  1 01:01:27 2000(CET) [rv120w][Kernel][KERNEL] ip_conntrack_in: Frag of proto 17 (hook=0)
    Sat Jan  1 01:01:50 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Sat Jan  1 01:01:55 2000(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Mon Feb  4 11:37:51 2013(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Mon Feb  4 11:37:57 2013(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Mon Feb  4 11:38:14 2013(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Mon Feb  4 11:38:22 2013(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Mon Feb  4 11:38:57 2013(CET) [rv120w][System][NIMF] nimfNetIfaceTblHandler: unable to get LedPinId
    Mon Feb  4 11:39:04 2013(CET) [rv120w][System][PLATFORM] [BONJOUR_ERROR]: DNSServiceProcessResult returned -65537 stopping listen to mdnsd
    Mon Feb  4 11:39:06 2013(CET) [rv120w][System][PLATFORM] [BONJOUR_ERROR]: Signal Sent to bonjourClient Failed
    Mon Feb  4 11:39:09 2013(CET) [rv120w][System][PLATFORM] [BONJOUR_ERROR]: Signal Sent to bonjourClient Failed
    Mon Feb  4 11:39:10 2013(CET) [rv120w][System][EVTDSPTCH] umiIoctl (43, UMI_CMD_DB_UPDATE(4)) failed. table=FirewallRules row=99
    Regards
    Soren

  • Cisco 11500 SSL redirection

    I'm attempting to redirect SSL from the base site to a different page on the same SSL site.  I want to redirect https://10.4.16.54/* to https://10.4.16.54/AHC/SitePages/Home.aspx.  If I enter https://10.4.16.54/AHC/SitePages/Home.aspx, site loads, but if I enter simply https://10.4.16.54, it times out.  The ssl_sharepoint service is my ssl_proxy_list.  Thanks for any help.
      content Sharepoint_https
        flow-timeout-multiplier 10
        sticky-inact-timeout 35
        vip address 10.4.16.54
        application ssl
        add service ssl_sharepoint
        advanced-balance ssl
        url "/*"
        port 443
        protocol tcp
        redirect "/AHC/SitePages/Home.aspx"
        active
      content Sharepoint_https_redirect
        vip address 10.4.16.54
        application ssl
        advanced-balance ssl
        flow-timeout-multiplier 10
        sticky-inact-timeout 35
        add service ssl_sharepoint
        port 443
        protocol tcp
        url "/AHC/SitePages/Home.aspx"
        active

    Hi Gary,
    First off I'll recommend you to clean up the URL and redirect command from your 443 rules, as 443 is encrypted the CSS is not able to look at layer 5 info within the traffic, making this commands useless for these rules.
    That being said; since you're using SSL termination your configuration for HTTPS-to-HTTPS redirect would look like this:
      content Sharepoint_https
        vip address 10.4.16.54
        application ssl
        advanced-balance ssl
        flow-timeout-multiplier 10
        add service ssl_sharepoint
        port 443
        protocol tcp
        active
      content Sharepoint_https_redirect
        vip address 10.4.16.54
        port 80
        protocol tcp
        url "/*"
        redirect "https://10.4.16.54/AHC/SitePages/Home.aspx"
        active
      content Sharepoint_http_Aspx
        vip address 10.4.16.54
        port 80
        advance-balance arrowpoint-cookie
        add service Sharepoint-1
        add service Sharepoint-2
        protocol tcp
        url "/AHC/SitePages/Home.aspx"
        active
    Here I'm assuming that you're not using backend SSL and your clear port is 80
    Basically, traffic comes as https://10.4.16.54, hits the encrypted rule that send the traffic to the SSL proxy list for decryption, once decrypted traffic is sent to the clear text content rule, since there's no URI the request matches the rule with the wildcard URL "/*". This rule performs a redirect an indicates to the client to come back this time with the URI described ... process starts all over but this time the request will match the second clear text rule as the URI is more specific.
    HTH
    Pablo

  • Cisco asa traffic flow

    Hi,
    Can somebody give the packet/traffic flow paths from a higher security interface to lower & viceversa..
    For eg: session > acl > xlate > etc...
    Are these checking different in both of the above scenarios ?

    Hi Felipe,
    But i do see find difference while reading the below URL.
    http://www.cisco.com/en/US/products/ps6120/products_tech_note09186a0080ba9d00.shtml
    I would like to know how is the traffic flow from outside to inside and inside to outside.
    Hope you go it...
    regards
    rajesh

Maybe you are looking for

  • How does the new shuttle control work in Apex 3.1?

    Hi, I have tried creating a shuttle type control in Apex 3.1. I have based it on a list of Items from my Items table. I can move Items from the left side to the right, and from there I can move them up & down, but whatever I do only seems to affect t

  • How to use u sb in i pad, how to use u sb in i pad

    how to use u sb in i pad, how to use u sb in i pad

  • External drive set up question

    Are FW 800 drives adequate? I have some extra eSATA drives, but the enclosure and the card would be quite a bit more than a couple of 1T FW 800 drives.

  • New name for the product?

    The name Oracle Express Edition seems to be causing a bit of confusion as there is already an Oracle Express in the stable, some kind of OLAP tool. So I was just wondering why Oracle went for a name so close to an existing product. I have a couple of

  • System copy method for BusinessObjects BI Enterprise XI 3.0 (Windows)

    Hi, We intend to replicate the same existing BOBJ system for use with another project's development. Does anyone know what is the easiest method of system copy for BusinessObjects BI Enterprise XI 3.0 (Windows)? Will a blank copy through Window's bac