IOS feature set for subinterface routing . . .

I just acquired a couple of 2600s with single eth. interfaces. I would like to configure subinterfaces (one for public IP, the other for internal.) However, my current IOS insists that I can not assign IP addresses until I make the main interface a part of an ISL or dotq VLAN. Can someone tell me which feature I'm looking for in the feature navigator? I have a feeling I'm going to need to upgrade my routers from their current 32/8 mem.
-Shikamaru

Hi Shikamaru,
You need to have atleast IP PLUS feature IOS on your box to make encapsulation command working on subinterface.
Regards,
Ankur

Similar Messages

  • IOS feature set

    Guys I'm sure this is a goofy question but I can't seem to find the answer.
    I am wanting to know where a can find the difference between the different feature sets?
    Example: Entrprise plus, ip, ip plus, remote access server, etc etc
    Is there a feature break down of sorts that I can look to know whether I want the ip or ip plus feature set etc etc
    Thanks
    Jimmy

    Hi
    there are various types of packages which are defined for specific functions for eg. IP routing, Advanced routing, VPN encryption , voice etc.
    Cisco has made different types of packages for different reqirements.For Eg. If a customer is a simple SMB, the he can go for a simple IP feature IOS set.If its an corporate, he needs advanced functionalities such as BGP etc.So he can have IP/PLUS IOS feature set. and so on.....
    Please view the IOS packaging guide at the following link
    http://www.cisco.com/en/US/products/sw/iosswrel/ps5460/index.html
    The following is the link for router's IOS
    http://www.cisco.com/en/US/products/sw/iosswrel/ps5460/prod_bulletin09186a00801af451.html
    And the following is the link for Switchs
    http://www.cisco.com/en/US/products/sw/iosswrel/ps5460/prod_bulletin0900aecd80281b17.html
    Hope that will help.
    Pls rate helpful posts.
    Regards
    JD

  • Asking for IOS Feature Set

    Hi!
    Im planning to upgrade the IOs of our Cisco 7206 router. Just would like to clarify if what feature set does C7200-IS-M is? Actual output from "sh ver: (C7200-IS-M) 12.0(6)W5(14).
    Thanks in advance!
    udimpas

    Hello,
    Thanks for the reply. One more clarification, I have checked with the software advisor but IP Plus has a code of IS-MZ for newer versions. Or maybe because early versions(12.0) of IP Plus has a different code?
    Thanks again.
    Regards,
    udimpas

  • OSPF down-bit set for a route originated as static?

    If remote PE is redistributing a static route to VRF, local PE will get this route via BGP. Now suppose this local PE and CE is running OSPF and BGP VPNv4 route is redistributed to OSPF, will this PE set down-bit for type 5 LSAs advertised to CE?
    I am bit confused by RFC-4576, it states that "When a type 3, 5, or 7 LSA is sent from a PE to a CE, the DN bit MUST be set", my understanding is that only if the route is originated from OSPF (at remote PE) then PE will set down-bit in LSAs advertised to CE.

    Niranjan,
    IOS also set the tag to the BGP ASN on external routes as a loop avoidance mechanism as described in RFC 4577, section 4.2.5.2. According to the same RFC, this method has to be supported by default by any compliant implementation for backward compatibility purposes.
    RFC4576: Using a Link State Advertisement (LSA) Options Bit to Prevent Looping in BGP/MPLS IP Virtual Private Networks (VPNs)
    http://www.ietf.org/rfc/rfc4576.txt?number=4576
    RFC4577: OSPF as the Provider/Customer Edge Protocol for BGP/MPLS IP Virtual Private Networks (VPNs)
    http://www.ietf.org/rfc/rfc4577.txt?number=4577
    Regards,

  • BIS not enabling Google Mail feature set for Google Apps account

    I used to be a very happy BlackBerry user when we were still using Exchange and BES. Since then we have moved to Google Mail and my GSM provider is no longer giving me BES (no their GSM provider will either - BES is for coporations only now).
    Normally, on my Bold 9900 the Google Mail specific feature set (in particular OTA sync of Calendar and Contacts) is supposed to work through BIS. I can confirm this works just fine when I try to connect to my plain-vanilla GMail account over BIS.
    But my company calendar and address book is on the Google Apps domain, not my personal GMail account.
    However, my company mail, which is a Google Apps domain, can not be set up as Google Mail, even if I force it to talk to imap.gmail.com. Mail is setup and is delivered (as it would be for plain IMAP/POP access). But Contacts and Calenar are not available for sync.
    I tried to go through my GSM provider to have our company's domain name added to RIM/BIS Google Apps Domain lis to force BIS, but my GSM provider staunchly affirm that this is not their problem, but Googles, and anyhow, they can not contact RIM.
    What options do I have to force BIS to accept a given domain as being a Google Apps domain?

    Hello lkremkow
    Welcome to the Community
    This has been an issue with Google Mail / Gmail accounts. Please check the Article below.
    Unable to integrate or validate a Google Mail account with BlackBerry Internet Service
    Goodluck
    Ron
    Click "Accept as Solution" if your problem is solved. To give thanks, click thumbs up Blackberry Battery Saving Tips | Follow me on Twitter

  • Where to send feature request for router?

    Hi, does anyone know where to send feature requests for the router firmware? I want to suggest adding http://www.dnsomatic.com to the supported dynamic dns providers, as it would add tons of services with little work.

    xirian wrote:
    Hi, does anyone know where to send feature requests for the router firmware? I want to suggest adding http://www.dnsomatic.com to the supported dynamic dns providers, as it would add tons of services with little work.
    Today Verizon made available a new area on the forums called the Verizon Idea Exchange:
    http://forums.verizon.com/t5/Share-Your-Ideas-with-Verizon/idb-p/ideas
    Based on the FAQ Verizon has posted it appears this would be a good place to enter your request.
    Justin
    Verizon FiOS TV, Internet, and phone
    QIP6416-P1, IMG 1.7.1, Build 09.97
    Keller, TX 76248

  • Email message leave on server - is there a setting for this?

    I just got my Droid Charge, and my old Droid had a setting to leave the email messages on server. I use pop3 email to get my messages from my work email address, but I need to make sure the messages are left on the server and not removed when I view my email messages. Does anyone know if there is a setting, or does the phone leave the messages on the server, or does it pull them off? It is critical to me that they are left on the server when I am using my phone to view the email messages.

    Dear Red,
    Hmmm...are you using the native email app that came with the phone (NOT the Gmail app)?
    If so, try a soft reset of the phone by removing and reinstalling the battery.  That may be enough to recover the settings choice for incoming server in your email app.  I had/have a similar problem with "disappearing" settings relating to the Sound settings.  I am missing a setting that is apparently part of the basic feature set for the OS, but I can make it appear (for a short time) by doing a reset.  Once I turn off the phone and turn it back on, the setting again disappears .
    Anyway, give that a try and report back on sucess or not.

  • Why can't I configure BFD for static routes on IAD2431 on ios 15.1(2)T when Feature Nav says its in there

    I am trying to configure BFD for static routing on a 2431 running IOS 15.1(2)T to detect and route around simple multihoming faults.  According to Cisco Feature Navigator, BFD for static routes is supported on c2430-ik9o3s-mz.151-2.T.bin.  But when I follow the config guide steps to configure it, IOS does not recognize the commands, such as:
    ERC3-IAD2431-3(config)#int fa0/0
    ERC3-IAD2431-3(config-if)#bfd ?
    % Unrecognized command
    ERC3-IAD2431-3(config-if)#
    and:
    ERC3-IAD2431-3(config)#ip route static bfd fa0/0 172.19.113.241 
    % BFD is not supported on FastEthernet0/0
    ERC3-IAD2431-3(config)#
    Am I missing some prerequisite, or restriction?

    Vignesh,
    As requested:
    ERC3-IAD2431-3#show version
    Cisco IOS Software, 2400 Software (C2430-IK9O3S-M), Version 15.1(2)T, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2010 by Cisco Systems, Inc.
    Compiled Mon 19-Jul-10 16:23 by prod_rel_team
    ROM: System Bootstrap, Version 12.3(7r)T2, RELEASE SOFTWARE (fc1)
    ERC3-IAD2431-3 uptime is 1 week, 20 hours, 31 minutes
    System returned to ROM by reload at 15:45:52 EDT Mon Oct 27 2014
    System restarted at 15:47:56 EDT Mon Oct 27 2014
    System image file is "flash:c2430-ik9o3s-mz.151-2.T.bin"
    Last reload type: Normal Reload
    This product contains cryptographic features and is subject to United
    States and local country laws governing import, export, transfer and
    use. Delivery of Cisco cryptographic products does not imply
    third-party authority to import, export, distribute or use encryption.
    Importers, exporters, distributors and users are responsible for
    compliance with U.S. and local country laws. By using this product you
    agree to comply with applicable laws and regulations. If you are unable
    to comply with U.S. and local laws, return this product immediately.
    A summary of U.S. laws governing Cisco cryptographic products may be found at:
    http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
    If you require further assistance please contact us by sending email to
    [email protected].
    Cisco IAD2431 (R527x) processor (revision 4.1) with 250880K/11264K bytes of memory.
    Processor board ID FHK1444F1GM
    R527x CPU at 225MHz, Implementation 40, Rev 3.1
    2 FastEthernet interfaces
    48 Serial interfaces
    2 Channelized T1/PRI ports
    1 Virtual Private Network (VPN) Module
    DRAM configuration is 64 bits wide with parity disabled.
    63K bytes of non-volatile configuration memory.
    System fpga version is 250027
    System readonly fpga version is 250027
    Option for system fpga is 'system'.
    126976K bytes of ATA System CompactFlash (Read/Write)
    Configuration register is 0x2102
    ERC3-IAD2431-3#show int fa0/0
    FastEthernet0/0 is up, line protocol is up 
      Hardware is Gt96k FE, address is 5475.d026.3019 (bia 5475.d026.3019)
      Description: Uplink to TWC/Avaya VoIP Network
      Internet address is 24.30.210.144/27
      MTU 1500 bytes, BW 100000 Kbit/sec, DLY 100 usec, 
         reliability 255/255, txload 1/255, rxload 1/255
      Encapsulation ARPA, loopback not set
      Keepalive set (10 sec)
      Full-duplex, 100Mb/s, 100BaseTX/FX
      ARP type: ARPA, ARP Timeout 04:00:00
      Last input 00:00:00, output 00:00:00, output hang never
      Last clearing of "show interface" counters never
      Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
      Queueing strategy: fifo
      Output queue: 0/40 (size/max)
      5 minute input rate 2000 bits/sec, 3 packets/sec
      5 minute output rate 1000 bits/sec, 2 packets/sec
         40541 packets input, 6155984 bytes
         Received 20517 broadcasts (0 IP multicasts)
         0 runts, 0 giants, 0 throttles
         0 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
         0 watchdog
         0 input packets with dribble condition detected
         149623 packets output, 22178324 bytes, 0 underruns
         0 output errors, 0 collisions, 5 interface resets
         17 unknown protocol drops
         0 babbles, 0 late collision, 0 deferred
         0 lost carrier, 0 no carrier
         0 output buffer failures, 0 output buffers swapped out
    ERC3-IAD2431-3#show int fa0/1
    FastEthernet0/1 is up, line protocol is up 
      Hardware is Gt96k FE, address is 5475.d026.301a (bia 5475.d026.301a)
      Internet address is 172.19.113.242/29
      MTU 1500 bytes, BW 100000 Kbit/sec, DLY 100 usec, 
         reliability 255/255, txload 1/255, rxload 1/255
      Encapsulation ARPA, loopback not set
      Keepalive set (10 sec)
      Full-duplex, 100Mb/s, 100BaseTX/FX
      ARP type: ARPA, ARP Timeout 04:00:00
      Last input 00:00:44, output 00:00:05, output hang never
      Last clearing of "show interface" counters never
      Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
      Queueing strategy: fifo
      Output queue: 0/40 (size/max)
      5 minute input rate 0 bits/sec, 0 packets/sec
      5 minute output rate 0 bits/sec, 0 packets/sec
         14829 packets input, 3324508 bytes
         Received 7916 broadcasts (0 IP multicasts)
         0 runts, 0 giants, 0 throttles
         1 input errors, 0 CRC, 0 frame, 0 overrun, 0 ignored
         0 watchdog
         0 input packets with dribble condition detected
         78596 packets output, 7819210 bytes, 0 underruns
         0 output errors, 0 collisions, 13 interface resets
         0 unknown protocol drops
         0 babbles, 0 late collision, 0 deferred
         0 lost carrier, 0 no carrier
         0 output buffer failures, 0 output buffers swapped out
    ERC3-IAD2431-3#
    Thanks,
    Alfy

  • Do I need IOS firewall feature set on Catalyst 6500 for FW blade?

    Hi all,
    If I install a FW blade in Cat6500, should I need to have the IOS firewall feature set on Cat6500 itself?
    Thanks and Regards,
    mak

    Nope.
    The FWSM uses it's own OS based on PIX OS. While it uses SVIs configured in the MSFC, it otherwise runs autonomously from the Sup and MSFC, even in Native mode.
    Let me know if this helps by rating the post.
    Michael

  • Is it possible in IOS to have two static routes for the same subnet, one a higher priority and "failover" between the 2?

    Hi All
    Is it possible in IOS to have for a particular subnet:
    a) Two static routes?
    b) Make one static route a higher priority than the other?
    c) If one static router "goes down", failover to the lower priority static route?
    We have a l2tp/vpdn connection to a supplier which can be accessed via two vlans/routes. I would like to make one route the preferred one but the "route" to failover if the preferred route goes down.
    Again, many thanks in advance for all responses!
    Thanks
    John

    Hi John,
    Hope the below explaination will help you...
    R1(config)# ip route 0.0.0.0 0.0.0.0 2.2.2.2
    R1(config)# ip route 0.0.0.0 0.0.0.0 3.3.3.3 10
    If you notice the Administrative Distance for the secondary route pointing to ISP2 is increased to 10 so that it becomes the backup link.
    The above configuration with just two floating static routes partially accomplishes our requirement as it will work only in the scenario where the routers interfaces connected to the WAN link are in up/down or down/down status. But in a lot of situations we see that even though the links remain up but we are not able to reach the gateway, this usually happens when the issue is at the ISP side.
    In such scenarios, IP SLAs becomes an engineer's best friend. With around six additional IOS commands we can have a more reliable automatic failover environment.
    Using IP SLA the Cisco IOS gets the ability to use Internet Control Message Protocol (ICMP) pings to identify when a WAN link goes down at the remote end and hence allows the initiation of a backup connection from an alternative port. The Reliable Static Routing Backup using Object Tracking feature can ensure reliable backup in the case of several catastrophic events, such as Internet circuit failure or peer device failure.
    IP SLA is configured to ping a target, such as a publicly routable IP address or a target inside the corporate network or your next-hop IP on the ISP's router. The pings are routed from the primary interface only. Following a sample configuration of IP SLA to generate icmp ping targeted at the ISP1s next-hop IP.
    R1(config)# ip sla 1
    R1(config)# icmp-echo 2.2.2.2 source-interface FastEthernet0/0
    R1(config)# timeout 1000
    R1(config)# threshold 2
    R1(config)# frequency 3
    R1(config)# ip sla schedule 1 life forever start-time now
    The above configuration defines and starts an IP SLA probe.
    The ICMP Echo probe sends an ICMP Echo packet to next-hop IP 2.2.2.2 every 3 seconds, as defined by the “frequency” parameter.
    Timeout sets the amount of time (in milliseconds) for which the Cisco IOS IP SLAs operation waits for a response from its request packet.
    Threshold sets the rising threshold that generates a reaction event and stores history information for the Cisco IOS IP SLAs operation.
    After defining the IP SLA operation our next step is to define an object that tracks the SLA probe. This can be accomplished by using the IOS Track Object as shown below:
    R1(config)# track 1 ip sla 1 reachability
    The above command will track the state of the IP SLA operation. If there are no ping responses from the next-hop IP the track will go down and it will come up when the ip sla operation starts receiving ping response.
    To verify the track status use the use the “show track” command as shown below:
    R1# show track
    Track 1
    IP SLA 1 reachability
    Reachability is Down
    1 change, last change 00:03:19
    Latest operation return code: Unknown
    The above output shows that the track status is down. Every IP SLAs operation maintains an operation return-code value. This return code is interpreted by the tracking process. The return code may return OK, OverThreshold, and several other return codes.
    Different operations may have different return-code values, so only values common to all operation types are used. The below table shows the track states as per the IP SLA return code.
    Tracking
    Return Code
    Track State
    Reachability
    OK or over threshold
    (all other return codes)
    Up
    Down
    The Last step in the IP SLA Reliable Static Route configuration is to add the “track” statement to the default routes pointing to the ISP routers as shown below:
    R1(config)# ip route 0.0.0.0 0.0.0.0 2.2.2.2 track 1
    R1(config)# ip route 0.0.0.0 0.0.0.0 3.3.3.3 10
    The track number keyword and argument combination specifies that the static route will be installed only if the state of the configured track object is up. Hence if the track status is down the secondary route will be used to forward all the traffic.
    Please rate the helpfull posts.
    Regards,
    Naidu.

  • Deploying IOS firewall feature set

    Hi All,
    We are trying to deploy firewall feature in the 2811 router by suing the SDM 2.5. We choosed option for basic firewall setup. It required us to choose trusted and non-trusted interfaces and we did the same. It added access-list inbound on the trusted interface and ip inspect command on the un-trusetd interface.
    Also,Intially we want to allow all traffic from untrusted-interface to the trusted interface,so we manually allowed permit ip any to inside network block ?---Is that right ?
    We have another question,we would be having a another interface on that router to connect to a different network and preferrably doesn't want to configure that interface as trusted or non-trusted,in this scenario,if any traffic originated from non-defined interface will be able to access the trusted interface or also non-trusted interface ?
    Any help would be really appreciated
    Thanks
    Regards
    Anantha Subramanian Natarajan

    Hello Anantha,
    "Also,Intially we want to allow all traffic from untrusted-interface " That would entirely break the idea of deploying the IOS Firewall. Nature of statefull firewall that comes with IOS firewall feature set is, to block all traffic from an untrusted interface by default, then only allow the return traffic of connections, originated from a trusted interface (inspection). And you also can permit some traffic that you trust manually.
    "We have another question,we would be having a another interface on that router to connect to a different network and preferrably doesn't want to configure that interface as trusted or non-trusted,in this scenario,if any traffic originated from non-defined interface will be able to access the trusted interface or also non-trusted interface ?"
    If the inspection rule is applied to oubound direction of untrusted interface, feel free to unset other interfaces as trusted.
    Regards

  • Does editing a pre-fix set for bgp in IOS-XR cause a loss of network connectivity

    Hi,
    I have to edit an existing prefix-set for bpg in ios-xr.  When I went to do it the first time it told me it would wipe the existing information so I aborted the change.
    I have since read that you need to redo the whole list and add the new network you want.
    For example.
    existing
    pre-fix set TEST
    10.10.10.0/24,
    11.11.11.0/24
    new
    pre-fix set TEST
    10.10.10.0/24, 11.11.11.0/24, 12.12.12.0/24
    1st) is the above correct?
    2nd) when this is done will there be any drops in connectivity?
    Thank you.

    1) It is correct, when you create the new prefix-set with the same name as the old one, it overwrites the old one. Meaning that, it wont "append" to the old config, it creates a new prefix-set from scratch
    2) Depends on where are you referencing the prefix-set. For example, on BGP route-policy, there wont be any drop on BGP connectivity, you might even have to do a soft refresh in and out to refresh the advertised/filtered routes

  • Anyone having same prob as me? I updated to 8.1.3 and lost photo stream - all settings are set for photostream updating - the blue shirts at the Apple store seem to think that the feature was removed with the 8.1.3 update

    Is anyone having same prob as me? I updated to 8.3 and lost photo stream on my photos - all my settings are set for photostream updating - the blue shirts at the Apple store seem to think that the feature was removed from the phones with the 8.1.3 update but it is not mentioned anywhere on Apple's site

    found it
    http://gimutaowebsolution.com/missing-photos-on-ios-8-3-or-8-x/

  • Firewall feature set on router

    We have a router connected to the internet with the firewall feature set on it.  NAT is also being done (internet interface outside, LAN interface inside)
    There is an ACL applied to the internet interface in an outbound direction blocking all RFC 1918 adddresses, but the the internal network (192.168.1.0) still gets out, is this because NAT occurs before the outbound access-list is processed?
    Thanks

    What if someone horks up the vlan config accidentally or plugs something into the wrong port? Relying on that single layer for security is a bit risky, but that's just my opinion.
    Do you use just VLAN isolation elsewhere in your perimeter as the sole network security control?
    Out of curiousity, if it's open auth, how do you prevent company assets from connecting?

  • Why did the setting for my Linksys WRT54G router change spontaneously from encrypted to open mode?

    I unplugged power to my Linksys WRT54G (802.11g) router for about six days.  It had been set for WEP 128-bit encryption.  When I replugged it, it identified itself as an open (non-encrypted) network.  I could use it by setting up a new network connection (unencrypted) on my PC, but could not access it using the original (encrypted) PC network connection.
    After reinstalling the router, and setting it for WEP 128-bit encryption, it works fine again.
    Can anyone explain why the router spontaneously went from encrypted to non-encrypted mode, as a result of being powered down for several days?  (Is this a bug or a feature?  

    Thank you.  As noted, I reconfigured it & it works fine again.  But do you have any idea why it "lost" its encryption setting by being powered-down? 
    In particular, is this likely to happen in future if I power-down Linksys?  

Maybe you are looking for

  • I am not able to change the color of my icloud calendar.

    Hi, my icloud calendar changed the color of my personal calender to purple and I have no chance to undo that. Everytime I try to change it back to blue it automatically jumps back to purple. Does anybody have an idea to solve this issue? Kind regards

  • Need some assist - Load button for file retrieval

    Hi All I am trying to retrieval a simple text file to memory but some how I can only load the first item to memory. I am a beginner, hope some one can guide me Thanks       * This method initializes jButton3       * @return javax.swing.JButton      p

  • HP Officejet 4630 - How to get % Key on keypad

    I need to change to a new network.   I'm using the Wireless Setup Wizard.  I can't enter the password because I can't find the % sign.    I've tried everything I could find on HP forums and Internet search but I still can't find how to enter %.    I

  • Ending one credit card type when adding another

    Due to the change in our credit card processing from a flat rate to a percentage, I need to end our usage of a certain credit card type.  In the configuration, I do not see away to delimite the card type.  Yet deleting the credit card type from the l

  • Depreciation Repeat problem

    Dear Experts, I run the depreciation for two months ie. June and July and then subsequently posted additional assets in those periods. when i try to re run the depreciation in June it says only period 7 (July) can be posted in the repeat run. when i