Incoming Relays and Remote IP

Hi Everyone,
First off, I want to mention what a great community you have here. We've had our appliance for a month now, and all the configuration questions we had so far were easily found in this forum. With that said, I was wondering if someone can assist us with understanding how Content Filters work on an Incoming Relay.
Currently we have 2 filters configured on our IronPort. The first filter is a single condition that will drop messages based on SBRS being <= 4.0. This works fine with us as we are dropping connections when they are received by the ironport, and this filter just basically drops emails where the CASE filter determine that there was no spam found.
Our second filter is the one we are having trouble with. We want our second filter to put emails in the Ironport Spam Quarantine when the SBRS score is between -4.0 and 1.0, and ONLY if the email has been received by the incoming relay. Currently our filter looks like this using the "only when all conditions are met" test case:
Condition:
1) When the remote-ip is our internal relay (we only have one)
2) When the SBRS score is <= -1.0
3) When the SBRS score is > -4.0
Action:
Insert header X-Ironport-Quarantine value Quarantine.
This filter does not appear to be working for us, and I assume its because when the email is parsed by the incoming relay, the "remote-ip" in our condition testing no longer takes the form of our incoming relay, but ip address it parsed from the header. Can someone confirm if my assumption is correct, and recommend a possible solution for us?
Thanks!

I would probably implement this with a message filter which is entered from the command line. The good thing with message filters is that it's:
1. more powerful and allows you to do more advanced IF conditions
2. same actions as the content filters were are created mostly from the GUI interace.
3. has pretty much the same functionality as the content filters plus more.
Here are the steps that you should need.
1. Replace the IP of "138.88.33.191" with the IP of the incoming relay. If there are multiple ip addresses for the incoming relay then use this:
remote-ip == '(138.88.33.191|138.88.33.192|138.88.33.193)'
2. Use the following message filter.
Remember, replace the IP that I used in the sample below with the real IP of the incoming relay.
Quarantine_suspect_sendergroup_emails:
if ( remote-ip == '138.88.33.191' ) AND ( reputation > -4.1 ) AND ( reputation < -0.9 )
insert-header('X-Ironport-Quarantine','1');
3. Enter the above message filter into the command line using the kb article below. Once the changes are commited, go to "System Administration > Trace" on the web interface and test it out.
4. Also, the above message filter would replace the content filter so you don't need that anymore.
Also, email pipeline wise, the message filters occur before the workqueue processing. Workqueue is basically anti-spam, anti-virus, content filters.
Let me know if you have any questions or getting different results than expected.
KB articles that may be useful:
1. How do I add a new message filter to my IronPort Appliance?
http://tinyurl.com/mg8kp
Hi Everyone,
First off, I want to mention what a great community you have here. We've had our appliance for a month now, and all the configuration questions we had so far were easily found in this forum. With that said, I was wondering if someone can assist us with understanding how Content Filters work on an Incoming Relay.
Currently we have 2 filters configured on our IronPort. The first filter is a single condition that will drop messages based on SBRS being <= 4.0. This works fine with us as we are dropping connections when they are received by the ironport, and this filter just basically drops emails where the CASE filter determine that there was no spam found.
Our second filter is the one we are having trouble with. We want our second filter to put emails in the Ironport Spam Quarantine when the SBRS score is between -4.0 and 1.0, and ONLY if the email has been received by the incoming relay. Currently our filter looks like this using the "only when all conditions are met" test case:
Condition:
1) When the remote-ip is our internal relay (we only have one)
2) When the SBRS score is <1> -4.0
Action:
Insert header X-Ironport-Quarantine value Quarantine.
This filter does not appear to be working for us, and I assume its because when the email is parsed by the incoming relay, the "remote-ip" in our condition testing no longer takes the form of our incoming relay, but ip address it parsed from the header. Can someone confirm if my assumption is correct, and recommend a possible solution for us?
Thanks!

Similar Messages

  • Airport Express relay and remote no longer work

    After upgrading to Snow Leopard 10.6.4 from Tiger 10.4.11, my two Airport Express units (one relay, one remote) will no longer work. My Airport Extreme Base unit is fine, and our desktops and laptops still connect to the wireless. However, I want to be able to use the Express units to extend our wireless through the rest of the house and play iTunes, as I did before upgrading.
    I have spent days trying to fix this, and I have probably worn out the hard reset by now. I have checked to see if I need any updates, but my screen assures my I am fine. The two express units are sometimes recognized by the Airport Utility, sometimes not. Usually when I try to do a manual set-up, I am told that an error occurred with the configuration for the Express unit.
    Any advice/sympathy is appreciated. If I can't fix this, I guess I have two semi-expensive paperweights. Bear in mind, I love my Macs and Apple products in general, but right now, the whole thing is reminding me of Dell ****.

    Any advice out there? I've even taken bypassed my main Extreme base to plug the ethernet connection directly into the Mac desktop to do software updates that might have been missed by going through the Extreme and wifi. While it did install one security update, it didn't affect the Express units.
    I'm wondering about firmware. I have checked over and over for software updates, and my system assures me that everything is up to date. However, I'm concerned that somehow I'm missing a firmware update. My Airport Utility tells me my Extreme is running on Version 5.7, and on the few times one of the Express units shows up, it shows as running Version 6.#.
    Do I need to manually install a firmware update, and if so, how? I terrified that I will mess up the ONE wifi unit that is functioning.
    Ironically, my Extreme base is the oldest in my batch-both of the Express units are newer than it.

  • Difference between relay and remote?

    I have (4) Airport Expresses connected via WDS to an Airport Extreme Base Station. What's the difference between setting up an Airport Express as a remote vs a relay? Thanks!

    Since you have all "n" AirPorts, I suggest (for better performance) that you take advantage of this model's "extend a network" feature instead of attempting a 802.11g WDS configuration. If you don't get the coverage at the 2nd floor guest room that you are looking for, we can reconfigure for the WDS.
    With the "extend" method, you can add additional "n" AirPorts to the main in a "star" pattern for coverage, but you would not be able to daisy-chain them like in the 802.11g WDS where you use relays & remotes.
    If this sounds like it's worth a try, the following is the basic setup steps:
    o If practical, place the base stations in near proximity to each other during the setup phase. Once done, move them to their desired locations.
    o Open AirPort Utility and select the base station that will connect to the Internet.
    o Choose Manual Setup from the Base Station menu, or double-click the base station to open the configuration in a separate window. Enter the base station password if necessary.
    o Click AirPort in the toolbar, and then click Wireless.
    o Choose “Create a wireless network” from the Wireless Mode pop-up menu, and then select the “Allow this network to be extended” checkbox.
    o Next, select the base station that will extend this network, and choose Manual Setup from the Base Station menu, or double-click the base station to open its configuration in a separate window. Enter the base station password if necessary.
    o Choose “Extend a wireless network” from the Wireless Mode pop-up menu, and then choose the network you want to extend from the Network Name pop-up menu.
    o Enter the base station network and base station password is necessary.
    o Click Update to update the base station with new network settings.
    (ref: Page 46 of "Designing AirPort Networks Using AirPort Utility.)

  • WDS Set up - Help Needed! Airport Extreme with one Relay and one remote

    Hi Guys,
    I need a bit of help. I am feeling quite stupid and frustrated. I am having some difficulty with setting up a WDS network with:
    Base station: Airport extreme (current version)
    Relay: Airport Express (current version)
    Remote: Airport Express (current version)
    I start by cold resetting the three units. The Base station is connected via Ethernet. The setup I wish to get going is a simple base - relay - remote.
    I go through the utility manager and set up the base station, first as "create a wireless network" enter the ISP details etc etc. Its green light. Everything is fine. Then manually configure the Base Station. Hold down option key hit Participate in a WDS. I then select main enter + and add the Mac Id's for the intended Relay unit and Remote Unit (12 character and numeric string). At this stage I am only adding the intended Relay unit and Remote units MAC number.
    Question 1: Do I need to add the base unit's MAC number itself under: WDS Remotes? even I am setting it up as Main?
    I am careful to note the security settings and the the Wireless Network name to match these in the relay and remote set up. Under the Wireless tab I leave the Radio Mode: as Automatic (802.11a/n - 802.11b/g/n). I make sure the base has "allow this network to be extended" ticked. Under Radio Channel selection I edit it to reference channel 1 for 2.4Ghz (5 Ghz leave as Auto). I am careful when setting up the Relay and remote to match the Radio Channel. (Although I tired many channels as I thought maybe interference was a factor and denying the fact its obviously my set up skills as a factor).
    Question 2: Do you need to disable Guest networks? I would think it does not matter as I have tired turning it off and has not made any difference.
    Under Access Control I leave as default, Not enabled.
    Next I hit update and and error message comes up. WDS Error as it can not find other units. Ok fine as the relay and remote are not yet set up. So I ignore and can get to the stage where the base unit is working and green light with an internet connection.
    I then proceed to set up the Relay unit. Doing the same steps as above with a couple of differences being I add the MAC numbers and select the WDS Mode (Relay for Relay and Remote for Remote. I add the Main base station (i.e Airpot Extreme MAC No.) when prompted and then + the Remotes MAC number. The same for the Remote except I only need to add the base station's main no.
    Question 3. Do I need to add the Relay's own MAC number to its own setup? This seems doubtful as with the base station but tired with and without for good measure with no success.
    The 2.4Ghz channels are all set to 1. Radio mode set to Auto. Although even when I try to manually set them to all identical it doesn't seem t help.
    Then the problems begin. The base unit is Green and the Relay and Remote say they are not connected to the internet. I assume since I have not seen a WDS Error message then the units are set up correctly or as I ignored it on the base unit. But when click unignore the error seems to work itself out.
    Question 4. I need help to understand why I have no internet. The remote / relay says something about no IP number and I don't really understand what I should do? Do I need to go back the Airport Utility Manager and start messing about with the TCP/IP, DHCP, NAT ? The base is set up PPPoE and the relay and remote are set to Bridge.
    It is really puzzling me why the relay and remote flash amber with error messages related to the IP number? I have tried turning off the base station and router and then on again but no joy.
    Can anyone please enlighten me or give me a few ideas? I am doing something very obviously stupid and I guess the fix is something simple that I have overlooked.
    I did spend the time and go through the threads and search online, So I am not trying to waste anyone's time I referenced the two links to get a second opinion:
    http://broadcast.oreilly.com/2009/03/taming-an-airport-express-wds.html
    http://www.macobserver.com/tmo/article/settingup_an_airport_relay_with_airportexpress/
    Any help much appreciated!

    Versed wrote:
    I need a bit of help.
    Welcome to Apple's discussion groups.
    My WDS experience is limited to "main" and "remote" configurations (no "relay"), so I'm not posting from direct experience, but below is what I think would work in your case.
    I go through the utility manager and set up the base station, first as "create a wireless network" enter the ISP details etc etc. Its green light. Everything is fine. Then manually configure the Base Station. Hold down option key hit Participate in a WDS. I then select main enter + and add the Mac Id's for the intended Relay unit and Remote Unit
    I don't think the "main" unit needs to be told about the "remote" unit, only about the "relay" unit.
    Question 1: Do I need to add the base unit's MAC number itself under: WDS Remotes? even I am setting it up as Main?
    You'd never enter the MAC address of a unit into its own configuration, if that's what you mean. I also don't think that you'd need to enter the MAC address of the main into the remote and conversely.
    I am careful to note the security settings and the the Wireless Network name to match these in the relay and remote set up. Under the Wireless tab I leave the Radio Mode: as Automatic (802.11a/n - 802.11b/g/n).
    Five things have to match in a WDS configuration: network name, encryption type, network password, band, and channel.
    I make sure the base has "allow this network to be extended" ticked.
    I don't think that's important for a WDS configuration.
    Question 2: Do you need to disable Guest networks?
    I wouldn't think that matters.
    Under Access Control I leave as default, Not enabled.
    That's fine.
    WDS Error as it can not find other units. Ok fine as the relay and remote are not yet set up.
    Right.
    I then proceed to set up the Relay unit. Doing the same steps as above with a couple of differences being I add the MAC numbers and select the WDS Mode (Relay for Relay and Remote for Remote. I add the Main base station (i.e Airport Extreme MAC No.) when prompted and then + the Remotes MAC number. The same for the Remote except I only need to add the base station's main no.
    I think this should be the MAC address of the relay station, not that of the main station.
    Question 3. Do I need to add the Relay's own MAC number to its own setup?
    No.

  • Incoming relays question

    Guys , we deploy singe Ironport at customer location . Ironport is a primary mx , where local isp is a secondary mx , and we are getting lot of spam via secondary mx . I defined secondary mx in the incoming relays and able to see bad sbrs scores on the log , but now how should I block it ? in the content filters or the policy ?
    thank's for answer

    I'll let someone else address your question directly, I'm going to offer a different take on the matter. Get rid of the secondary MX entirely. They're more trouble than they're worth, and they don't really gain you that much extra reliability. They're a back door for spam to leak in through, and as such they are purposely attacked by spammers. And even if you successfully filter out the spam, you'll be doing so the hard way because you'll be throwing away messages that you've already accepted rather than refusing them entirely based on bad SBRS scores.
    We've been running without backup MX servers for years with no problem. Then again, our infrastructure is a little more built out. We have a server farm of IronPort units with a high-availability pair of load balancers in front of it. That makes us pretty much immune to single-server failures, although a power failure or network outage could still take us down. Still, how bad is that really? If we have a failure that bad, we're going to have more important things to worry about than just our e-mail (such an outage would take down lots of other stuff), and our incoming mail will simply sit on the sending servers until we come back up. If we're down long enough for those servers to give up and bounce the mail then we really do have more important things to worry about.

  • Configuring UC540 with 2x SPA525G2 (local and remote site)

    Just got this new system installed and not sure to get full capability.
    Here's my setup and feel free to send comments to help improve configuration.
    I have two SPA525G2 phone one local connected to the UC540 and the other one is remote and connected over the built-in VPN
    I have 4 incoming lines and we need to have both phone ringing all the time.
    On each phone at least one user extension button, one monitor button to see the status of the remote extension, and one group voicemail
    So that left me with only 2 buttons to control the 4 incoming lines.
    How should i do this setup on the two remaining buttons ?

    Hello Pierre,
    There are a lot of different approaches. The following are some of the approaches:
    1. create a group for each if the incoming lines and put the extensions of the two phones in these groups.
    2. Create extension for each line and make overlay buttons which include these extensions.
    3. Use B-ACD or AA and send the calls there and then forward to the extensions of the phones.
    HTH,
    Alex
    *Please rate helpful posts.

  • Server 2003 routing and remote access not passing VPN traffic

    I've inherited a network that has two IP scopes that are routed through a Windows 2003 server with Routing and Remote Access.  I can ping both sides (we'll call them HQ and Plant) internally.  My firewall has an IP from the HQ IP scope and when
    I connect via VPN, I can see all the devices on the HQ network including the network card that is in the routing server for that "side".  However, if I'm connected via VPN, I cannot get to any of the IPs on the Plant side, not even the card
    in the routing server.  The buck stops on the server.
    I should mention, that the firewall assigns IP addresses that are on the HQ scope, so all VPN connections will have an address from that side.
    I'm lost on how to get this set up so my VPN traffic coming in from the HQ side can be routed to the Plant devices. 

    Hi,
    To be honest, your statement confused me a bit.
    VPN is used for external client get access to internal resource. When we setup VPN server, we usually have two NICs. We need choose a NIC that will be used when client initiate
    a connection request. I prefer to call it external NIC card. The internal one will work as DHCP relay agent. So this is a single way connection. You cannot dial from internal to external.
    If I misunderstood you, please elaborate what you are trying to do.
    Hope this helps.

  • Incoming PPP-Connection (Remote Access)

    Long ago when using OS9 you could connect to the internet via telephone line, modem and "remote access". There although has been a menue-item "accept incoming calls" and someone outside could ring up your mac and establish a filesharing-connection.
    I am looking for this option under OS X 10.4. You can do outgoing PPP-connections, of course, but there seems to be no easy way to allow incoming connections. I searched google and the apple support site, but the only information I found is to set up "pppd" in the terminal. Unfortunately I am not a experienced user, so I tried to set up "pppd" as shown in <http://www.freebsd.org/doc/en_US.ISO8859-1/books/handbook/ppp.html> (PPP as server), but I does not work (may be, because there is no "kermit" on the mac? But how to use "chat"?)
    Is there any body to help?
    MacBook Pro   Mac OS X (10.4.7)  

    No Luck, man!
    What I would like to see happen is that my internal modem would wait for a "call-back" call from the ISP server I connect to.
    The way the connection works is that I call the ISP number and then the ISP server hangs up, yet the modem keeps waiting until it gets a call back from the server.
    The problem with Mac is that it does not wait for the call-back when the line gets hung up. As soon as the line gets hung up, Mac disconnects, unlike MS Windows.
    This feature works perfectly well in MS Windows XP and all older versions and I believe it used to work in older versions of Mac OS, as well.
    I am seriously thinking to get rid of my Mac if this feature does not work! This feature is so important to me b/c that's the only way I could get connected to my employer’s Intranet resources.
    I hope apple puts this feature back from older versions. It's so simple to fix, just make the modem wait for the call-back.
    I would appreciate any help from any one of you "mac geeks"..

  • Relay vs Remote Base Station

    I have setup a WDS network with my airport express units.
    What is the difference between a relay station and a remote base station in a WDS network?
    Thanks
    Mike

    Yes, so lets say I have two aiport express. One of them is in my bedroom and it gets good reception from my router. And the second one is in lets say my den, and it doesn't get so good reception from my router, but it is close to my bedroom... Would I have both the bedroom and den airport express as REMOTE, or would i put the bedroom one as a RELAY and the den as a REMOTE, or the other way around. I have a WDS network setup.. or does it matter?
    Thanks

  • Remote System and Remote Key Mapping at a glance

    Hi,
    I want to discuss the concept of Remote System and Remote Key Mapping.
    Remote System is a logical system which is defined in MDM Console for a MDM Repository.
    We can define key mapping enabled at each table level.
    The key mapping is used to distinguish records at Data Manager after running the Data Import.
    Now 1 record can have 1 remote system with two different keys but two different records cannot have same remote system with same remote key. So, Remote key is an unique identifier for record for any remote system for each individual records.
    Now whenever we import data from a Remote System, the remote system and remote key are mapped for each individual records. Usually all records have different remote keys.
    Now, when syndicating back the record with default remote key is updated in the remote system that is sent by xml file format.
    If same record is updated two times from a same remote system, the remote key will be different and the record which is latest contains highest remote key.
    Now, I have to look at Data Syndication and Remote key.
    I have not done Data Syndication but my concept tell if there is duplicate record with same remote system but different remote keys both will be syndicated back. But if same record have two remote keys for same remote system then only the default remote key is syndicated back.
    Regards
    Kaushik Banerjee

    You are right Kaushik,
    I have not done Data Syndication but my concept tell if there is duplicate record with same remote system but different remote keys both will be syndicated back.
    Yes, but if they are duplicate, they needs to be merged.
    But if same record have two remote keys for same remote system then only the default remote key is syndicated back.
    This is after merging. So whichever remote key has tick mark in key mapping option(default) , it will be syndicated back.
    Pls refer to these links for better understanding.
    https://www.sdn.sap.com/irj/servlet/prt/portal/prtroot/com.sap.km.cm.docs/library/uuid/80eb6ea5-2a2f-2b10-f68e-bf735a45705f
    https://www.sdn.sap.com/irj/servlet/prt/portal/prtroot/com.sap.km.cm.docs/library/uuid/7051c376-f939-2b10-7da1-c4f8f9eecc8c%0c
    Hope this helps,
    + An

  • Search for [Remote Key] and [Remote System] in Data Manager

    Hello all
    I would like to be able to search on the remote key and the remote system in the MDM Data Manager is that not possible? I thought I remembered seeing that possibility under the Free-Form Search but now I can't find it.
    I have, however, found this in the Data Manager reference guide:
    REMOTE SYSTEM AND REMOTE KEY FIELDS
    MDM uses the remote systems defined in the Remote Systems table
    within the MDM Console to store and maintain key mapping information
    for each record or text attribute. It does this using a virtual “key
    mapping” field that you never see in the MDM Client.
    This virtual key mapping field is very much like a qualified lookup field
    into a virtual key mapping qualified lookup table.
    Key Mapping information stored in virtual lookup field
    The Remote System and Remote Key fields are normally not visible;
    however, they do appear in several places in the MDM Client.
    Specifically, both fields: (1) appear in the File > Export dialogs in Record
    mode for exporting value pairs; (2) are recognized by the File > Import
    dialog in Record mode for importing value pairs; and (3) appear in the
    Edit Key Mappings dialogs in both Record mode and Taxonomy mode,
    for viewing and editing value pairs.
    Is there any way to search on the value in the remote key from the Data Manager?

    Not sure search i think not possible.
    But you can see keys as mentioned:
    Enable Key mapping in Console.
    MDM Client maens MDM Data Manager.
    They do appear in several places in the MDM Client or Data Manager. Three different methods to see in DM are given already below:
    Specifically, both fields: (1) appear in the File > Export dialogs in Record mode for exporting value pairs; (2) are recognized by the File > Import dialog in Record mode for importing value pairs; and (3) appear in the Edit Key Mappings dialogs in both Record mode and Taxonomy mode, for viewing and editing value pairs.
    BR,
    Alok

  • Remote Control and Remote View Problem

    Hi,
    I work at a High School running Netware 6.0 SP5 and Zen works 4.01 ir7.
    Remote Control and Remote View works great but I noticed one problem.
    We have a logo of the school that is forced down on to the desktop when a
    user logs in through group policies. This logo works perfect for the
    desktop wall paper and loads every time a user logs in.
    When I Remote Control or Remote View a computer the users desktop wall
    paper turns from the logo being forced down through group policies to the
    desktop to a blue desktop wall paper.
    I would prefer the desktop wall paper staying the schools logo when I
    Remote Control or Remote View because if the desktop wall paper changes to
    the blue color I mentioned above when I Remote Control or Remote View the
    users computer, they will know that someone is taking over their computer
    which sometimes we dont want them knowing.
    We have Windows 98SE computer running Novell Client 3.4 and we have some
    computers running Windows XP Professional SP1 and Windows XP Professional
    SP2 both running Novell Client 4.91 SP2.
    The Remote Control and Remote View problem of the desktop wall paper
    changing on the users computer occurs on all operating systems mentioned
    above.
    Is there a solution to my above problem? When Remote Controlling and
    Remote Viewing someone's computer I don't want the desktop wall paper to
    change.
    Thanks!

    Bpilon,
    It appears that in the past few days you have not received a response to your
    posting. That concerns us, and has triggered this automated reply.
    Has your problem been resolved? If not, you might try one of the following options:
    - Do a search of our knowledgebase at http://support.novell.com/search/kb_index.jsp
    - Check all of the other support tools and options available at
    http://support.novell.com.
    - You could also try posting your message again. Make sure it is posted in the
    correct newsgroup. (http://support.novell.com/forums)
    Be sure to read the forum FAQ about what to expect in the way of responses:
    http://support.novell.com/forums/faq_general.html
    If this is a reply to a duplicate posting, please ignore and accept our apologies
    and rest assured we will issue a stern reprimand to our posting bot.
    Good luck!
    Your Novell Product Support Forums Team
    http://support.novell.com/forums/

  • Unplugging all network devices from Fios router prevents DVR freezing and remote control lock ups.

    All,
    I recently had a Verizon tech visit my house due to constant DVR and remote control freezing. TV content was freezing whether it was locally recorded, pulled from another DVR in the house, or On Demand. On a hunch after the tech tested everything and was about to leave, he unplugged my gigabit switch from the Fios router. Lo and behold everything started running perfectly. Since to the tech, the problem was solved, he closed the case and was on his way. The probem is of course I have more devices than the built in router switch provides ports for. My network is compised of an 8 port Netgear gigabit switch downstream from the Fios router with two wireless access points (with their own built in gigbait switches) connecting to the Netgear gigabit switch. There are no loops in the switch topology. I've tried changing out the router, the gigabit switch, removing the wireless acces points individually as well as plugging the access points directly into the Fios router switch (one at a time with no Netgear switch in the middle) and all scenarious cause the DVR/remote control freeezing to come back. The only devices I can plug into the Fios router without causing freezes are PC's....anything with it's own switch essentially brings the network to it's knees. If anyone has an idea how to get my network back in one piece AND make the DVR's/remotes behave, I'd greatly appreciate the help!
    My Fios equipment:
    MI-424WR GEN-3I  rev I (eye) running firmware 40.19.36
    5 Motorola HD-DVRs all QIP 7232-2 running software release 1.9.1 platform build 25.39 (Oct. 22, 2012)
    Specific config:
    75/35 Fios connecting via ethernet from ONT. Set-top boxes connect to Fios router coax port via powered splitter.
    *All SNR/dB mesasurements taken by the tech from the set-top boxes and router are well within spec.
    Fios router provides DHCP addressing. Wireless N access points are configured for roaming with the same SSID and non-overlapping channels. Access points are not providing routing or IP adressing...all layer 3 and up services still provided by Fios router
    Diagram:
    ONT
      |
    Fios Router ---------Cable Splitter---------Set Top Boxes
      |
    Netgear Switch
      |           |
    WAP1    WAP2

    WayfarerII wrote:
    ... DVR ... remote ... freezing ... TV ... whether ... locally recorded, pulled from another DVR ... 
    ... tech ... unplugged my gigabit switch from the Fios router ... and ... everything started running perfectly ...   
    ... config:
    75/35 Fios ... via ethernet from ONT ... Set-top boxes connect to Fios router via powered splitter ...
    ONT
      |
      | cat5
      |
    Fios Router ---------Cable Splitter---------Set Top Boxes
      |
    Netgear Switch
      |           |
    WAP1    WAP2
    I am inclined to echo several of the "tns" comments, particularly with respect to your splitter.  My layout is based on a standard 8-port splitter of the type usually supplied in a VZ install.  In addition I do have a ChannelPlus device that functions as a powered splitter, but its use is limited to distribution of secondary TV signals to older analog TVs.  My first point then is that this may be an offender as "tns" has suggested.
    In addition, I'd describe your wiring as "non-standard" (red-colored items in the above diagram)  As you're no doubt aware, with 75/35 you don't really need Cat5e from the ONT (your original diagram).  It seems the highest tiers do require it, but in "standard" installations this run is coax directly to an 8-port non-powered splitter (below diagram), then from that splitter via coax to all STBs and CableCards, other TVs, et.), and also to the Actiontec.   Subsequent feeds from the Actiontec to wired devices (including WAPs) are via Ethernet (typically Cat 5e).
    In fact I don't immediately see how your STBs get additional services such as On Demand and IMG with the wiring shown in your diagram (perhaps someone can help me out here).  In "standard" installs the Actiontec must be connected via coax to the ONT to provide such services to other network clients.  I don't see that requirement being met here.
    For starters I'd recommend that you change your service from WAN Ethernet to WAN coax.  This can easily be accomplished over the telephone.  Then I'd run coax directly from the ONT to the Actiontec as in my revised diagram below (blue-colored items).  If your setup can manage with this arrangement, I think it will help greatly with the "freezing" issue.
    ONT - - - - - - coax - - - - -
                                             |
    Fios Router --- coax--- Standard 8-Port Splitter --- coax --- Set Top Boxes
    |cat5
    Netgear Switch
    |cat5           |cat5
    WAP1 WAP2
    Subsequent Note:  You provided additional info while I was composing a response, and I'd  like to offer another comment.  Structured wiring "panels" of the type usually available are pre-configured to provide data, phone and video.  This usually means that one is in certain respects limited by the ideas of the panel designer.  I have what can be called a structured wiring layout, but it really is composed of individual small custom networks for  each service (automation, security, video, data, telco, etc.), configured so that all wiring terminates in "home run" fashion at a central panel (a few details here: http://forums.verizon.com/t5/Home-Networking/Cmon-Show-Us-Your-Network/m-p/481733#M765 ).  This layout makes it easier to make adjustments (and there have been quite a few over the intervening years).  I'm thinking that in your case you may have to abandon the powered splitter (presumably) built into the panel in order to avoid your present fix.
    Subsequent Subsequent Note:   From your description it seems that you are using more than a single "whole house" DVR to supply programming to other devices.  This is a bit puzzling to me because somewhere along the line I recall reading that only a single whole house DVR was allowed on the network.  Can you elaborate a bit?

  • Iphone 5s cannot call out any calls, but still can receive incoming calls and sms

    Hi
    anyone experiencing this problem? After buying iphone 5s less than 2 months which I never did in the past, I could no longer make any phone calls out, yet i still can receive incoming calls and data.
    Could someone kindly assist in this? 

    Contact your carrier. Phone functions are a carrier responsibility. Have them check your account. Are you seeing any error messages?

  • IPhone 4 Can't receive incoming calls and sms after 3G has been activated

    I can't receive incoming calls and sms on my iPhone 4 after the 3G connection has been activated and used actively by me. Outgoing calls and messages do work and as long as I use the Wi-Fi connection everything's fine but the problem appears after switching to 3G. Any help? Thx in advance!  

    I think the next step is to do a reset by holding the sleep and home buttons down at the same time until the Apple logo appears.  If you haven't done this before, keep holding the buttons when the turn off slider appears.  The screen will go black and after what seems like an eternity, actually several seconds, the Apple logo will appear.  When the logo appears, release the buttons.

Maybe you are looking for

  • Issue in XML Invoice lines

    Hi, I designed layout for invoice report in xmlp 5.6.2, I have issue when i preview the output, instead of two Invoice lines i am getting 8 times with the repeating of 2 lines.I given the following tags.... Before line : <?for-each:G_INVOICE_LINES?>

  • How to compile EJB 3.0 in command line

    Dear all, I want to know how to using command line to compile the EJB 3.0 bean. I have a set of source written in EJB 3.0, if i put in NetBeans and help me to build a ear, it works. But when i try to using command mode , it has problem. The Step to c

  • How can I print every other page rather than every page?

    I want to print certain pages of documents because some have information on page that I don't need. But I can't find a way to select certain pages (like 1,3). The print add-on mentioned in another question didn't work ... didn't even given an option

  • Field names for AP invoices

    Hi All experts I would like to have the table and field names for the below for vendor invoices header data and transaction data: Digiscribe# SAP Document # Document Date Vendor Name Vendor ID# invoice# invoice Date# Invoice Amount Check# Check Date

  • Script Outbound. How introduce multiple numbers in a "Place call"?

    Hi, i'm trying to implement a script to make multiple outbound calls in a UCCX system but i don't know how can introduce several phones. The idea is simple but this step is critical: 1-take the first phone number and make the call. 2-take the secornd