Loss of default gateway - to auto-shutdown radio

Hi,
I need a solution where, if an access point looses its connection to its default gateway, that it automatically shuts the radio down. And when the default gateway is again available, the radio is automatically turned on again. By connection, I do not just mean that the AP FastEthernet port link status changes.
Some kind of functionality like the 'track rtr reachability' that probes the default gateway, and takes action if the default gateway cannot be reached.
How to, if at all possible...
Problem is that wireless equipment will connect to the access point if the radio is up but the access point does not have access to its default gateway (for some error reason other than the local Ethernet link, but also that...)
Thanks
Johnny

Hi,
unfortunately that does not solve this problem:
Router (def. gw for WAP)
Switch 1
Switch 2
Wireless Access Point (WAP)
If switch 1 is down or if the link from switch 1 to the router is down, then the WAP radio will still be up. I need for it to handle a loss to its default gateway, not just its local ethernet wire.
Tx
Johnny

Similar Messages

  • Default gateway arp lookup failed

    Hi there
    On a 5500 series WLC I see I have an issue where peap clients get randomly disconnected with these errors
    MAX_EAPOL_KEY_RETRANS: 1x_ptsm.c:444 Max EAPOL-key M1 retransmissions exceeded for client 24:77:03:35:79:34
    AAA-6-ARP_LOOKUP_FAIL: radius_db.c:3232 Default gateway arp lookup failed.
    aaaQueueReader: Aug 31 19:12:14.938: %AAA-4-RADIUSMSG_SEND_FAILED: radius_db.c:3567 Unable to send RADIUS message to
    Any ideas?
    Thanks
    Naresh
    Sent from Cisco Technical Support iPhone App

    (Cisco Controller) >show wlan 1
    WLAN Identifier.................................. 1
    Profile Name..................................... SSID1
    Network Name (SSID).............................. SSID1
    Status........................................... Enabled
    MAC Filtering.................................... Disabled
    Broadcast SSID................................... Enabled
    AAA Policy Override.............................. Enabled
    Network Admission Control
      Radius-NAC State............................... Disabled
      SNMP-NAC State................................. Disabled
      Quarantine VLAN................................ 0
    Maximum number of Associated Clients............. 0
    Number of Active Clients......................... 0
    Exclusionlist Timeout............................ 60 seconds
    Session Timeout.................................. 1800 seconds
    CHD per WLAN..................................... Enabled
    Webauth DHCP exclusion........................... Disabled
    Interface........................................ i_wifi
    Multicast Interface.............................. Not Configured
    WLAN ACL......................................... unconfigured
    DHCP Server...................................... Default
    DHCP Address Assignment Required................. Enabled
    Static IP client tunneling....................... Disabled
    Quality of Service............................... Silver (best effort)
    Scan Defer Priority.............................. 4,5,6
    Scan Defer Time.................................. 100 milliseconds
    WMM.............................................. Allowed
    WMM UAPSD Compliant Client Support............... Disabled
    Media Stream Multicast-direct.................... Disabled
    CCX - AironetIe Support.......................... Enabled
    CCX - Gratuitous ProbeResponse (GPR)............. Disabled
    CCX - Diagnostics Channel Capability............. Disabled
    Dot11-Phone Mode (7920).......................... Disabled
    Wired Protocol................................... None
    IPv6 Support..................................... Disabled
    Passive Client Feature........................... Disabled
    Peer-to-Peer Blocking Action..................... Drop
    Radio Policy..................................... All
    DTIM period for 802.11a radio.................... 1
    DTIM period for 802.11b radio.................... 1
    Radius Servers
       Authentication................................ 1.1.1.1 1812
       Authentication................................ 1.2.1.1 1812
       Accounting.................................... 1.1.1.1 1813
       Accounting.................................... 1.2.1.1 1813
       Dynamic Interface............................. Enabled
    Local EAP Authentication......................... Disabled
    Security
       802.11 Authentication:........................ Open System
       Static WEP Keys............................... Disabled
       802.1X........................................ Disabled
       Wi-Fi Protected Access (WPA/WPA2)............. Enabled
          WPA (SSN IE)............................... Disabled
          WPA2 (RSN IE).............................. Enabled
             TKIP Cipher............................. Disabled
             AES Cipher.............................. Enabled
          Auth Key Management
             802.1x.................................. Enabled
             PSK..................................... Disabled
             CCKM.................................... Enabled
             FT(802.11r)............................. Disabled
             FT-PSK(802.11r)......................... Disabled
    FT Reassociation Timeout......................... 20
    FT Over-The-Air mode............................. Enabled
    FT Over-The-Ds mode.............................. Enabled
    CCKM tsf Tolerance............................... 1000
       CKIP ......................................... Disabled
       Web Based Authentication...................... Disabled
       Web-Passthrough............................... Disabled
       Conditional Web Redirect...................... Disabled
       Splash-Page Web Redirect...................... Disabled
       Auto Anchor................................... Disabled
       H-REAP Local Switching........................ Disabled
       H-REAP Local Authentication................... Disabled
       H-REAP Learn IP Address....................... Enabled
       Client MFP.................................... Optional
       Tkip MIC Countermeasure Hold-down Timer....... 60
    Call Snooping.................................... Disabled
    Roamed Call Re-Anchor Policy..................... Disabled
    SIP CAC Fail Send-486-Busy Policy................ Enabled
    SIP CAC Fail Send Dis-Association Policy......... Disabled
    Band Select...................................... Disabled
    Load Balancing................................... Disabled
    Mobility Anchor List
    WLAN ID     IP Address            Status

  • OS got slower & macbook is taking auto shutdown.

    Im using macbook pro late 2011 ans running os is os x maverics. suddenly my macbook got hang and i turned off it by holding the power button. but after that when im tyring to turning on it again then it doesn't turn on as like before. some kind of unusual things are happening. some times it takes auto shutdown. but when im trying to turn on it by holding the power button around 10 seconds then it able to turn on but takes much time to turn on. and os works so much slower than before. i dont know what is the problem and what is going on. Is there any hardware problem or problem with the OS?

    6/30/14 1:30:39.000 AM kernel[0]: memorystatus_thread: idle exiting pid 466 [cfprefsd]
    6/30/14 1:30:39.776 AM com.apple.launchd[1]: (com.apple.cfprefsd.xpc.daemon[466]) Idle-exit job was jettisoned. Will bypass throttle interval for next on-demand launch.
    6/30/14 1:30:39.777 AM com.apple.launchd[1]: (com.apple.cfprefsd.xpc.daemon[466]) assertion failed: 13D65: launchd + 43413 [425516B6-9F3E-342F-87B3-EC461EBA6A1A]: 0x9
    6/30/14 1:30:40.000 AM kernel[0]: memorystatus_thread: idle exiting pid 135 [cfprefsd]
    6/30/14 1:30:40.106 AM com.apple.launchd.peruser.501[128]: (com.apple.cfprefsd.xpc.agent[135]) Idle-exit job was jettisoned. Will bypass throttle interval for next on-demand launch.
    6/30/14 1:30:40.106 AM com.apple.launchd.peruser.501[128]: (com.apple.cfprefsd.xpc.agent[135]) assertion failed: 13D65: launchd + 43413 [425516B6-9F3E-342F-87B3-EC461EBA6A1A]: 0x9
    6/30/14 1:30:47.421 AM WindowServer[84]: disable_update_timeout: UI updates were forcibly disabled by application "Skype" for over 1.00 seconds. Server has re-enabled them.
    6/30/14 1:30:47.815 AM WindowServer[84]: common_reenable_update: UI updates were finally reenabled by application "Skype" after 1.39 seconds (server forcibly re-enabled them after 1.00 seconds)
    6/30/14 1:36:20.562 AM xpcproxy[576]: assertion failed: 13D65: xpcproxy + 3438 [D559FC96-E6B1-363A-B850-C7AC9734F210]: 0x2
    6/30/14 1:36:21.349 AM com.apple.SecurityServer[21]: Killing auth hosts
    6/30/14 1:36:21.350 AM com.apple.SecurityServer[21]: Session 100024 destroyed
    6/30/14 1:36:21.353 AM com.apple.SecurityServer[21]: Session 100029 created
    6/30/14 1:36:22.386 AM xpcproxy[580]: assertion failed: 13D65: xpcproxy + 3438 [D559FC96-E6B1-363A-B850-C7AC9734F210]: 0x2
    6/30/14 1:36:23.483 AM accountsd[585]: assertion failed: 13D65: liblaunch.dylib + 25164 [38D1AB2C-A476-385F-8EA8-7AB604CA1F89]: 0x25
    6/30/14 1:36:32.456 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [CalDAVAccountRefreshQueueableOperation :: home container is nil, a DEPTH:1 PROPFIND didn't include a response for the requested collection]
    6/30/14 1:36:33.521 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [Account refresh failed with error: Error Domain=CoreDAVHTTPStatusErrorDomain Code=401 "The operation couldn’t be completed. (CoreDAVHTTPStatusErrorDomain error 401.)" UserInfo=0x7fa11b41fca0 {AccountName=Facebook, CalDAVErrFromRefresh=YES, CoreDAVHTTPHeaders=<CFBasicHash 0x7fa11dc09340 [0x7fff72e79f00]>{type = immutable dict, count = 10,
    entries =>
      0 : X-FB-Rev = <CFString 0x7fa11da16220 [0x7fff72e79f00]>{contents = "1309750"}
      1 : Content-Type = <CFString 0x7fa11b679a80 [0x7fff72e79f00]>{contents = "text/plain; ; charset="utf-8""}
      2 : Pragma = <CFString 0x7fa11b6dd960 [0x7fff72e79f00]>{contents = "no-cache"}
      3 : Connection = <CFString 0x7fa11b6760d0 [0x7fff72e79f00]>{contents = "keep-alive"}
      6 : Date = <CFString 0x7fa11b6eb550 [0x7fff72e79f00]>{contents = "Sun, 29 Jun 2014 19:34:42 GMT"}
      8 : X-FB-Debug = <CFString 0x7fa11b685df0 [0x7fff72e79f00]>{contents = "ueJFAGSQX8hFXGgwZGRXbr6xZSmxnS/8XVR/xDQmLU0bJ/rpDlmh7nAAGpR96U5boueDl7lB3+MsvA B5bZNxDg=="}
      9 : Www-Authenticate = <CFString 0x7fa11da1b070 [0x7fff72e79f00]>{contents = "OAuth realm="Facebook WebDAV", Basic realm="Facebook WebDAV""}
      10 : Content-Length = <CFString 0x7fff72e61ba0 [0x7fff72e79f00]>{contents = "40"}
      11 : Cache-Control = <CFString 0x7fa11b6e5990 [0x7fff72e79f00]>{contents = "private, no-cache, no-store, must-revalidate"}
      12 : Expires = <CFString 0x7fa11b6daad0 [0x7fff72e79f00]>{contents = "Sat, 01 Jan 2000 00:00:00 GMT"}
    6/30/14 1:36:33.526 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [Adding [<CalDAVAccountRefreshQueueableOperation: 0x7fa11b7b8dc0; Sequence: 0>] to failed operations.]
    6/30/14 1:36:37.775 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [Account refresh failed with error: Error Domain=CoreDAVHTTPStatusErrorDomain Code=503 "The operation couldn’t be completed. (CoreDAVHTTPStatusErrorDomain error 503.)" UserInfo=0x7fa11b5bbe00 {AccountName=Yahoo, CalDAVErrFromRefresh=YES, CoreDAVHTTPHeaders=<CFBasicHash 0x7fa11b416540 [0x7fff72e79f00]>{type = immutable dict, count = 11,
    entries =>
      0 : Server = <CFString 0x7fa11b4e25c0 [0x7fff72e79f00]>{contents = "YTS/1.20.13"}
      1 : Content-Type = <CFString 0x7fa11b4ddaa0 [0x7fff72e79f00]>{contents = "text/html; charset=UTF-8"}
      2 : Retry-After = <CFString 0x7fa11b4e56f0 [0x7fff72e79f00]>{contents = "3600"}
      3 : Via = <CFString 0x7fa11d90eb80 [0x7fff72e79f00]>{contents = "HTTP/1.1 calgate022.cal.bf1.yahoo.com (YahooTrafficServer/1.20.13 [c s f ]), HTTP/1.1 calgate022.cal.bf1.yahoo.com (YahooTrafficServer/1.20.13 [c s f ])"}
      4 : Age = <CFString 0x7fff72e5bb80 [0x7fff72e79f00]>{contents = "0"}
      5 : P3P = <CFString 0x7fa11d916eb0 [0x7fff72e79f00]>{contents = "policyref="http://info.yahoo.com/w3c/p3p.xml", CP="CAO DSP COR CUR ADM DEV TAI PSA PSD IVAi IVDi CONi TELo OTPi OUR DELi SAMi OTRi UNRi PUBi IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC GOV""}
      6 : Date = <CFString 0x7fa11b4f5c90 [0x7fff72e79f00]>{contents = "Sun, 29 Jun 2014 19:34:51 GMT"}
      7 : Transfer-Encoding = <CFString 0x7fff725a2ea0 [0x7fff72e79f00]>{contents = "Identity"}
      8 : Connection = <CFString 0x7fa11d9039e0 [0x7fff72e79f00]>{contents = "keep-alive"}
      11 : Cache-Control = <CFString 0x7fa11d91cb00 [0x7fff72e79f00]>{contents = "private"}
      12 : Vary = <CFString 0x7fa11b493740 [0x7fff72e79f00]>{contents = "Accept-Encoding"}
    6/30/14 1:39:36.969 AM com.apple.IconServicesAgent[586]: IconServicesAgent launched.
    6/30/14 1:39:51.373 AM Viber[590]: FAILURE: Job com.viber.osx is not loaded in launchd.
    6/30/14 1:39:51.373 AM Viber[590]: SMLoginItemSetEnabled failed!
    6/30/14 1:39:54.976 AM usernoted[164]: ApplePushService: entitlement check for 'com.apple.developer.aps-environment' failed for 'Viber' (590)
    6/30/14 1:39:55.409 AM Viber[590]: find_shared_window: WID 267
    6/30/14 1:39:55.409 AM Viber[590]: CGSOrderWindowListWithGroups: invalid window ID (267)
    6/30/14 1:39:55.420 AM Viber[590]: CGSOrderWindowList: NULL list pointer or empty list
    6/30/14 1:39:55.591 AM Viber[590]: setShowsApplicationBadge: is not yet implemented for the NSApp dockTile
    6/30/14 1:42:07.714 AM mDNSResponder[41]: Double NAT (external NAT gateway address 192.168.200.138 is also a private RFC 1918 address)
    6/30/14 1:43:16.816 AM firefox[602]: stat on /Users/shuvo/Library/Application Support/Firefox/Profiles/wjhguyie.default/sessionstore.js: No such file or directory
    6/30/14 1:43:23.279 AM WindowServer[84]: CGXSetWindowListSystemAlpha: Invalid window 205 (index 0/1)
    6/30/14 1:43:27.760 AM WindowServer[84]: CGXSetWindowListSystemAlpha: Invalid window 293 (index 0/1)
    6/30/14 1:44:16.000 AM kernel[0]: memorystatus_thread: idle exiting pid 564 [WiFiKeychainProx]
    6/30/14 1:44:16.061 AM com.apple.launchd.peruser.501[128]: (com.apple.wifi.WiFiKeychainProxy[564]) Idle-exit job was jettisoned. Will bypass throttle interval for next on-demand launch.
    6/30/14 1:44:16.061 AM com.apple.launchd.peruser.501[128]: (com.apple.wifi.WiFiKeychainProxy[564]) assertion failed: 13D65: launchd + 43413 [425516B6-9F3E-342F-87B3-EC461EBA6A1A]: 0x9
    6/30/14 1:44:16.000 AM kernel[0]: memorystatus_thread: idle exiting pid 578 [xpcd]
    6/30/14 1:44:16.332 AM com.apple.launchd[1]: (com.apple.xpcd.00000000-0000-0000-0000-000000000000[578]) Exited: Killed: 9
    6/30/14 1:44:16.000 AM kernel[0]: memorystatus_thread: idle exiting pid 585 [accountsd]
    6/30/14 1:44:16.561 AM CalendarAgent[176]: /SourceCache/Accounts/Accounts-336.9/ACAccountStore.m - __60-[ACAccountStore _connectToRemoteAccountStoreUsingEndpoint:]_block_invoke - 130 - The connection to ACDAccountStore was interrupted.
    6/30/14 1:44:16.689 AM com.apple.launchd.peruser.501[128]: (com.apple.accountsd[585]) Idle-exit job was jettisoned. Will bypass throttle interval for next on-demand launch.
    6/30/14 1:44:16.689 AM com.apple.launchd.peruser.501[128]: (com.apple.accountsd[585]) assertion failed: 13D65: launchd + 43413 [425516B6-9F3E-342F-87B3-EC461EBA6A1A]: 0x9
    6/30/14 1:44:16.000 AM kernel[0]: memorystatus_thread: idle exiting pid 580 [com.apple.iCloud]
    6/30/14 1:44:16.840 AM com.apple.launchd[1]: (com.apple.iCloudHelper[580]) Exited: Killed: 9
    6/30/14 1:44:17.152 AM WiFiKeychainProxy[614]: [NO client logger] <Nov 10 2013 18:30:13> WIFICLOUDSYNC WiFiCloudSyncEngineCreate: created...
    6/30/14 1:44:17.152 AM WiFiKeychainProxy[614]: [NO client logger] <Nov 10 2013 18:30:13> WIFICLOUDSYNC WiFiCloudSyncEngineRegisterCallbacks: WiFiCloudSyncEngineCallbacks version - 0, bundle id - com.apple.wifi.WiFiKeychainProxy
    6/30/14 1:44:17.909 AM xpcproxy[617]: assertion failed: 13D65: xpcproxy + 3438 [D559FC96-E6B1-363A-B850-C7AC9734F210]: 0x2
    6/30/14 1:44:22.203 AM com.apple.NotesMigratorService[619]: Joined Aqua audit session
    6/30/14 1:44:22.225 AM com.apple.time[131]: Interval maximum value is 946100000 seconds (specified value: 9223372036854775807).
    6/30/14 1:44:22.373 AM com.apple.internetaccounts[576]: An instance 0x7fa79b003a90 of class IMAPMailbox was deallocated while key value observers were still registered with it. Observation info was leaked, and may even become mistakenly attached to some other object. Set a breakpoint on NSKVODeallocateBreak to stop here in the debugger. Here's the current observation info:
    <NSKeyValueObservationInfo 0x7fa79b003bb0> (
    <NSKeyValueObservance 0x7fa79b003b40: Observer: 0x7fa79b002940, Key path: uidNext, Options: <New: NO, Old: NO, Prior: NO> Context: 0x7fff8224143b, Property: 0x7fa798f6bab0>
    6/30/14 1:44:22.380 AM com.apple.internetaccounts[576]: An instance 0x7fa798f77cb0 of class IMAPMailbox was deallocated while key value observers were still registered with it. Observation info was leaked, and may even become mistakenly attached to some other object. Set a breakpoint on NSKVODeallocateBreak to stop here in the debugger. Here's the current observation info:
    <NSKeyValueObservationInfo 0x7fa798f8e490> (
    <NSKeyValueObservance 0x7fa798f8e320: Observer: 0x7fa798f88770, Key path: uidNext, Options: <New: NO, Old: NO, Prior: NO> Context: 0x7fff8224143b, Property: 0x7fa798f6bab0>
    6/30/14 1:44:22.918 AM accountsd[620]: assertion failed: 13D65: liblaunch.dylib + 25164 [38D1AB2C-A476-385F-8EA8-7AB604CA1F89]: 0x25
    6/30/14 1:45:12.838 AM firefox[602]: CGSNewCIFilterByName
    6/30/14 1:45:12.838 AM WindowServer[84]: CGXSetCIFilterValues: Invalid filter 0
    6/30/14 1:45:12.838 AM WindowServer[84]: CGXSetWindowFilter: Invalid filter 0
    6/30/14 1:45:14.057 AM firefox[602]: CGSNewCIFilterByName
    6/30/14 1:45:14.057 AM WindowServer[84]: CGXSetCIFilterValues: Invalid filter 0
    6/30/14 1:45:14.057 AM WindowServer[84]: CGXSetWindowFilter: Invalid filter 0
    6/30/14 1:45:15.422 AM firefox[602]: CGSNewCIFilterByName
    6/30/14 1:45:15.422 AM WindowServer[84]: CGXSetCIFilterValues: Invalid filter 0
    6/30/14 1:45:15.422 AM WindowServer[84]: CGXSetWindowFilter: Invalid filter 0
    6/30/14 1:46:13.978 AM update_dyld_shared_cache[624]: could not open DSC '/private/var/folders/zz/zyxvpxvq6csfxvn_n0000000000000/C/PKInstallSandboxManag er/6A03764A-9F13-47B7-AC7A-E730EB9C2E11.activeSandbox/Root/var/db/dyld/dyld_shar ed_cache_i386': No such file or directory; bailing
    6/30/14 1:46:33.652 AM com.apple.SecurityServer[21]: Killing auth hosts
    6/30/14 1:46:33.653 AM com.apple.SecurityServer[21]: Session 100028 destroyed
    6/30/14 1:46:55.505 AM firefox[602]: CGSNewCIFilterByName
    6/30/14 1:46:55.505 AM WindowServer[84]: CGXSetCIFilterValues: Invalid filter 0
    6/30/14 1:46:55.505 AM WindowServer[84]: CGXSetWindowFilter: Invalid filter 0
    6/30/14 1:47:00.101 AM xpchelper[625]: Info.plist does not contain an XPCService dictionary: /System/Library/Frameworks/Security.framework/Versions/A/XPCServices/SecurityAg ent.xpc
    6/30/14 1:47:24.198 AM com.apple.WebKit.WebContent[301]: ERROR: ITSExceptionHandler: {message:"TypeError: 'null' is not an object (evaluating 'document.querySelector("#header").removeClassName')", url:"https://se.itunes.apple.com/htmlResources/3F28/da-storefront-autoinstallations.j s", lineNumber:"326"}
    6/30/14 1:47:33.403 AM sandboxd[669]: ([213]) storeagent(213) deny mach-lookup com.apple.dock.server
    6/30/14 1:47:41.762 AM WindowServer[84]: disable_update_timeout: UI updates were forcibly disabled by application "Safari" for over 1.00 seconds. Server has re-enabled them.
    6/30/14 1:47:42.528 AM WindowServer[84]: common_reenable_update: UI updates were finally reenabled by application "Safari" after 1.77 seconds (server forcibly re-enabled them after 1.00 seconds)
    6/30/14 1:50:09.000 AM kernel[0]: process PluginProcess[694] caught causing excessive wakeups. Observed wakeups rate (per sec): 522; Maximum permitted wakeups rate (per sec): 150; Observation period: 300 seconds; Task lifetime number of wakeups: 45449
    6/30/14 1:50:09.811 AM ReportCrash[703]: Invoking spindump for pid=694 wakeups_rate=522 duration=87 because of excessive wakeups
    6/30/14 1:50:15.945 AM spindump[704]: Saved wakeups_resource.spin report for PluginProcess version 9537 (9537.76.4) to /Library/Logs/DiagnosticReports/PluginProcess_2014-06-30-015015_SHUVOs-MacBook- Pro.wakeups_resource.spin
    6/30/14 1:54:27.658 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [CalDAVAccountRefreshQueueableOperation :: home container is nil, a DEPTH:1 PROPFIND didn't include a response for the requested collection]
    6/30/14 1:54:30.824 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [Account refresh failed with error: Error Domain=CoreDAVHTTPStatusErrorDomain Code=401 "The operation couldn’t be completed. (CoreDAVHTTPStatusErrorDomain error 401.)" UserInfo=0x7fa11dc03730 {AccountName=Facebook, CalDAVErrFromRefresh=YES, CoreDAVHTTPHeaders=<CFBasicHash 0x7fa11d951ed0 [0x7fff72e79f00]>{type = immutable dict, count = 10,
    entries =>
      0 : X-FB-Rev = <CFString 0x7fa11b7f3c90 [0x7fff72e79f00]>{contents = "1309750"}
      1 : Content-Type = <CFString 0x7fa11b740ba0 [0x7fff72e79f00]>{contents = "text/plain; ; charset="utf-8""}
      2 : Pragma = <CFString 0x7fa11b750e00 [0x7fff72e79f00]>{contents = "no-cache"}
      3 : Connection = <CFString 0x7fa11b7fbad0 [0x7fff72e79f00]>{contents = "keep-alive"}
      6 : Date = <CFString 0x7fa11b701990 [0x7fff72e79f00]>{contents = "Sun, 29 Jun 2014 19:52:38 GMT"}
      8 : X-FB-Debug = <CFString 0x7fa11b7f3f40 [0x7fff72e79f00]>{contents = "f6pS+qb1sxeFmrIFiHnx/qVcAZTrfTXOKwS/bJOlFv3s9jKszLpEGuU20a/V8dJKnCX5+5qRJtWN5X vjGJ8Bow=="}
      9 : Www-Authenticate = <CFString 0x7fa11dc047a0 [0x7fff72e79f00]>{contents = "OAuth realm="Facebook WebDAV", Basic realm="Facebook WebDAV""}
      10 : Content-Length = <CFString 0x7fff72e61ba0 [0x7fff72e79f00]>{contents = "40"}
      11 : Cache-Control = <CFString 0x7fa11b7e8320 [0x7fff72e79f00]>{contents = "private, no-cache, no-store, must-revalidate"}
      12 : Expires = <CFString 0x7fa11dc00cf0 [0x7fff72e79f00]>{contents = "Sat, 01 Jan 2000 00:00:00 GMT"}
    6/30/14 1:54:30.881 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [Adding [<CalDAVAccountRefreshQueueableOperation: 0x7fa11b70f700; Sequence: 0>] to failed operations.]
    6/30/14 1:54:32.902 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [Account refresh failed with error: Error Domain=CoreDAVHTTPStatusErrorDomain Code=503 "The operation couldn’t be completed. (CoreDAVHTTPStatusErrorDomain error 503.)" UserInfo=0x7fa11b60c350 {AccountName=Yahoo, CalDAVErrFromRefresh=YES, CoreDAVHTTPHeaders=<CFBasicHash 0x7fa11d94a3a0 [0x7fff72e79f00]>{type = immutable dict, count = 11,
    entries =>
      0 : Server = <CFString 0x7fa11b7ceb10 [0x7fff72e79f00]>{contents = "YTS/1.20.13"}
      1 : Content-Type = <CFString 0x7fa11b74aaa0 [0x7fff72e79f00]>{contents = "text/html; charset=UTF-8"}
      2 : Retry-After = <CFString 0x7fa11b7b5060 [0x7fff72e79f00]>{contents = "3600"}
      3 : Via = <CFString 0x7fa11b7b03e0 [0x7fff72e79f00]>{contents = "HTTP/1.1 calgate065.cal.bf1.yahoo.com (YahooTrafficServer/1.20.13 [c s f ]), HTTP/1.1 calgate065.cal.bf1.yahoo.com (YahooTrafficServer/1.20.13 [c s f ])"}
      4 : Age = <CFString 0x7fff72e5bb80 [0x7fff72e79f00]>{contents = "0"}
      5 : P3P = <CFString 0x7fa11dc0da30 [0x7fff72e79f00]>{contents = "policyref="http://info.yahoo.com/w3c/p3p.xml", CP="CAO DSP COR CUR ADM DEV TAI PSA PSD IVAi IVDi CONi TELo OTPi OUR DELi SAMi OTRi UNRi PUBi IND PHY ONL UNI PUR FIN COM NAV INT DEM CNT STA POL HEA PRE LOC GOV""}
      6 : Date = <CFString 0x7fa11dc0d2e0 [0x7fff72e79f00]>{contents = "Sun, 29 Jun 2014 19:52:46 GMT"}
      7 : Transfer-Encoding = <CFString 0x7fff725a2ea0 [0x7fff72e79f00]>{contents = "Identity"}
      8 : Connection = <CFString 0x7fa11b79b490 [0x7fff72e79f00]>{contents = "keep-alive"}
      11 : Cache-Control = <CFString 0x7fa11b7a4f80 [0x7fff72e79f00]>{contents = "private"}
      12 : Vary = <CFString 0x7fa11b7abfd0 [0x7fff72e79f00]>{contents = "Accept-Encoding"}
    6/30/14 1:57:07.804 AM mDNSResponder[41]: Double NAT (external NAT gateway address 192.168.200.138 is also a private RFC 1918 address)
    6/30/14 2:08:14.000 AM kernel[0]: CODE SIGNING: cs_invalid_page(0x1000): p=724[GoogleSoftwareUp] final status 0x0, allowing (remove VALID) page
    6/30/14 2:09:27.111 AM System Events[768]: .sdef warning for part of complex type 'any | number | boolean | date | list | record | text | data' used in suite 'Property List Suite': 'data' is not a valid type name.
    6/30/14 2:09:27.112 AM System Events[768]: .sdef warning for type 'text | missing value | any' attribute 'uniqueID' of class 'XML element' in suite 'XML Suite': AppleScript ID references may not work for this property because its type is not NSNumber- or NSString-derived.
    6/30/14 2:12:07.847 AM mDNSResponder[41]: Double NAT (external NAT gateway address 192.168.200.138 is also a private RFC 1918 address)
    6/30/14 2:12:17.427 AM xpcproxy[805]: assertion failed: 13D65: xpcproxy + 3438 [D559FC96-E6B1-363A-B850-C7AC9734F210]: 0x2
    6/30/14 2:12:18.032 AM launchctl[808]: launchctl: Dubious permissions on file (skipping): /Library/LaunchAgents/com.adobe.AAM.Updater-1.0.plist
    6/30/14 2:12:18.183 AM com.apple.authd[71]: Sandbox denied authorizing right 'system.install.app-store-software.standard-user' for authorization created by '/System/Library/CoreServices/Software Update.app/Contents/Resources/SoftwareUpdateConfigData' [806]
    6/30/14 2:12:18.191 AM sandboxd[669]: ([806]) SoftwareUpdateCo(806) deny authorization-right-obtain system.install.app-store-software.standard-user
    6/30/14 2:12:18.660 AM com.apple.WebKit.WebContent[301]: ERROR: ITSExceptionHandler: {message:"TypeError: 'null' is not an object (evaluating 'document.querySelector("#header").removeClassName')", url:"https://se.itunes.apple.com/htmlResources/3F28/da-storefront-autoinstallations.j s", lineNumber:"326"}
    6/30/14 2:12:22.579 AM parentalcontrolsd[818]: StartObservingFSEvents [849:] -- *** StartObservingFSEvents started event stream
    6/30/14 2:12:25.397 AM loginwindow[44]: magsafeStateChanged state changed old 1 new 2
    6/30/14 2:12:25.641 AM com.apple.WebKit.WebContent[301]: ERROR: ITSExceptionHandler: {message:"TypeError: 'null' is not an object (evaluating 'document.querySelector("#header").removeClassName')", url:"https://se.itunes.apple.com/htmlResources/3F28/da-storefront-autoinstallations.j s", lineNumber:"326"}
    6/30/14 2:12:27.629 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [Account refresh failed with error: Error Domain=CoreDAVHTTPStatusErrorDomain Code=401 "The operation couldn’t be completed. (CoreDAVHTTPStatusErrorDomain error 401.)" UserInfo=0x7fa11db5c6a0 {AccountName=Facebook, CalDAVErrFromRefresh=YES, CoreDAVHTTPHeaders=<CFBasicHash 0x7fa11d9367a0 [0x7fff72e79f00]>{type = immutable dict, count = 10,
    entries =>
      0 : X-FB-Rev = <CFString 0x7fa11b531d70 [0x7fff72e79f00]>{contents = "1309750"}
      1 : Content-Type = <CFString 0x7fa11b5b3ba0 [0x7fff72e79f00]>{contents = "text/plain; ; charset="utf-8""}
      2 : Pragma = <CFString 0x7fa11d86bbd0 [0x7fff72e79f00]>{contents = "no-cache"}
      3 : Connection = <CFString 0x7fa11db25b50 [0x7fff72e79f00]>{contents = "keep-alive"}
      6 : Date = <CFString 0x7fa11b5e0d30 [0x7fff72e79f00]>{contents = "Sun, 29 Jun 2014 20:10:36 GMT"}
      8 : X-FB-Debug = <CFString 0x7fa11b50ecc0 [0x7fff72e79f00]>{contents = "zolqpAa8lg+9+Xfww+shGS2X1L6sLe32VyE0DU5xA3hRp61Nvb6HU2S8mfYQIL3t0GxGnCeo1WM5nV NFVgSi9A=="}
      9 : Www-Authenticate = <CFString 0x7fa11b531510 [0x7fff72e79f00]>{contents = "OAuth realm="Facebook WebDAV", Basic realm="Facebook WebDAV""}
      10 : Content-Length = <CFString 0x7fff72e61ba0 [0x7fff72e79f00]>{contents = "40"}
      11 : Cache-Control = <CFString 0x7fa11b5cc680 [0x7fff72e79f00]>{contents = "private, no-cache, no-store, must-revalidate"}
      12 : Expires = <CFString 0x7fa11b5c2030 [0x7fff72e79f00]>{contents = "Sat, 01 Jan 2000 00:00:00 GMT"}
    6/30/14 2:12:27.664 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [Adding [<CalDAVAccountRefreshQueueableOperation: 0x7fa11b7d97f0; Sequence: 0>] to failed operations.]
    6/30/14 2:12:27.746 AM loginwindow[44]: magsafeStateChanged state changed old 2 new 1
    6/30/14 2:12:29.536 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [Account refresh failed with error: Error Domain=NSURLErrorDomain Code=-1005 "The network connection was lost." UserInfo=0x7fa11b7bf240 {NSUnderlyingError=0x7fa11d904e90 "The network connection was lost.", NSErrorFailingURLStringKey=https://[email protected]/principals/users/abusoyaibshuvo ///[email protected]/principals/users/abusoyaibshuvo/, NSErrorFailingURLKey=https://[email protected]/principals/users/abusoyaibshuvo ///[email protected]/principals/users/abusoyaibshuvo/, AccountName=Yahoo, CalDAVErrFromRefresh=YES, NSLocalizedDescription=The network connection was lost.}]
    6/30/14 2:12:29.605 AM CalendarAgent[176]: [com.apple.calendar.store.log.caldav.queue] [Adding [<CalDAVAccountRefreshQueueableOperation: 0x7fa11b7be4f0; Sequence: 0>] to failed operations.]
    6/30/14 2:12:48.049 AM com.apple.launchd[1]: (com.apple.qtkitserver[726]) Could not terminate job: 3: No such process
    6/30/14 2:12:48.049 AM com.apple.launchd[1]: (com.apple.qtkitserver[726]) Using fallback option to terminate job...
    6/30/14 2:13:07.854 AM WindowServer[84]: disable_update_timeout: UI updates were forcibly disabled by application "Finder" for over 1.00 seconds. Server has re-enabled them.
    6/30/14 2:13:08.334 AM WindowServer[84]: common_reenable_update: UI updates were finally reenabled by application "Finder" after 1.48 seconds (server forcibly re-enabled them after 1.00 seconds)
    6/30/14 2:16:00.782 AM Console[822]: setPresentationOptions called with NSApplicationPresentationFullScreen when there is no visible fullscreen window; this call will be ignored.

  • The Default Gateway Is Not Available / Problem

    Hello, I recently purchased this HP Pavileon laptop, and I've been encountering this problem very often (every 2-10 minutes).  This problem is getting extremely frustrating as absolutely nobody has been able to provide a fix for this issue.
    When the laptop is on battery mode (this does not happen when plugged in); I commonly get disconnected from my wi-fi connection and to fix it, I must run the troubleshooter. This temporarily fixes the issue by resetting the wi-fi adapter.
    What I have tried and has not worked:
    * Turn off to save power option in the driver settings (in Device Manager) untickets
    * Updated drivers
    * New power plan
    * Tried different drivers
    * Complete system restore
    The wireless adapter is Realtek RTL 8188EE.  Upon running the troubleshooter, this is all the information from the detailed information section:
    Windows Network Diagnostics
    Publisher details
    Issues foundThe default gateway is not available
    The default gateway is not availableThe default gateway is a device that connects a local network or computer to the Internet. A broadband modem or router is usually the default gateway.
    Fixed
    Reset the "WiFi" adapter
    Completed
    Investigate router or broadband modem issues
    Not run
    Issues found
    Detection details
    6The default gateway is not availableFixed
    The default gateway is a device that connects a local network or computer to the Internet. A broadband modem or router is usually the default gateway.
    Reset the "WiFi" adapterCompleted
    This can sometimes resolve an intermittent problem.
    Network Diagnostics LogFile Name: 2D0FE1F0-C2C2-43B5-A857-2D2B3C4B8A51.Repair.1.etl Investigate router or broadband modem issuesNot run
    If you're connected to a hotspot or domain network, contact the network administrator. Otherwise: 1. Unplug or turn off the device. 2. Once all the lights on the device are off, wait at least 10 seconds. 3. Turn the device on or plug it back in to the power outlet. To restart a router or modem that has a built-in battery, press and quickly release the Reset button.
    Detection details
    Diagnostics Information (Network Adapter)
    Details about network adapter diagnosis:
    Network adapter WiFi driver information:
    Description . . . . . . . . . . : Realtek RTL8188EE 802.11b/g/n Wi-Fi Adapter
    Manufacturer . . . . . . . . . : Realtek Semiconductor Corp.
    Provider . . . . . . . . . . . : Realtek Semiconductor Corp.
    Version . . . . . . . . . . . : 2012.2.827.2013
    Inf File Name . . . . . . . . . : C:\WINDOWS\INF\oem8.inf
    Inf File Date . . . . . . . . . : 12 September 2013 10:17:00
    Section Name . . . . . . . . . : HP8188ee.ndi
    Hardware ID . . . . . . . . . . : pci\ven_10ec&dev_8179&subsys_197d103c
    Instance Status Flags . . . . . : 0x180200a
    Device Manager Status Code . . : 0
    IfType . . . . . . . . . . . . : 71
    Physical Media Type . . . . . . : 9
    Diagnostics Information (Wireless Connectivity)
    Details about wireless connectivity diagnosis:
    Information for connection being diagnosed
    Interface GUID: 7c04789b-0b43-472c-abd6-a84cb31e9053
    Interface name: Realtek RTL8188EE 802.11b/g/n Wi-Fi Adapter
    Interface type: Native WiFi
    Connection incident diagnosed
    Auto Configuration ID: 1
    Connection ID: 1
    Connection status summary
    Connection started at: 2014-07-24 04:19:49-759
    Profile match: Success
    Pre-Association: Success
    Association: Success
    Security and Authentication: Success
    List of visible access point(s): 0 item(s) total, 0 item(s) displayed
    Connection History
    Information for Auto Configuration ID 1
    List of visible networks: 1 item(s) total, 1 item(s) displayed
    BSS Type PHY Security Signal(RSSI) Compatible SSID
    Infra <unknown> Yes 100 Yes Matt
    List of preferred networks: 1 item(s)
    Profile: Matt
    SSID: Matt
    SSID length: 4
    Connection mode: Infra
    Security: Yes
    Set by group policy: No
    Connect even if network is not broadcasting: No
    Connectable: Yes
    Information for Connection ID 1
    Connection started at: 2014-07-24 04:19:49-759
    Auto Configuration ID: 1
    Profile: Matt
    SSID: Matt
    SSID length: 4
    Connection mode: Infra
    Security: Yes
    Pre-Association and Association
    Connectivity settings provided by hardware manufacturer (IHV): No
    Security settings provided by hardware manufacturer (IHV): No
    Profile matches network requirements: Success
    Pre-association status: Success
    Association status: Success
    Last AP: 98-fc-11-88-61-b8
    Security and Authentication
    Configured security type: WPA2-PSK
    Configured encryption type: CCMP(AES)
    802.1X protocol: No
    Key exchange initiated: Yes
    Unicast key received: Yes
    Multicast key received: Yes
    Number of security packets received: 0
    Number of security packets sent: 0
    Security attempt status: Success
    Connectivity
    Packet statistics
    Ndis Rx: 34302
    Ndis Tx: 32619
    Unicast decrypt success: 0
    Multicast decrypt success: 0
    Unicast decrypt failure: 0
    Multicast decrypt failure: 0
    Rx success: 0
    Rx failure: 0
    Tx success: 0
    Tx failure: 0
    Tx retry: 0
    Tx multiple retry: 0
    Tx max lifetime exceeded: 0
    Tx ACK failure: 0
    Roaming history: 0 item(s)
    Diagnostics Information (Wireless Connectivity)
    Details about wireless connectivity diagnosis:
    For complete information about this session see the wireless connectivity information event.
    Helper Class: Auto Configuration
    Initialise status: Success
    Information for connection being diagnosed
    Interface GUID: 7c04789b-0b43-472c-abd6-a84cb31e9053
    Interface name: Realtek RTL8188EE 802.11b/g/n Wi-Fi Adapter
    Interface type: Native WiFi
    Result of diagnosis: There may be problem
    Diagnostics Information (Wireless Network Adapter)
    Details about wireless network adapter diagnosis:
    For complete information about this session see the wireless connectivity information event.
    Helper Class: Native WiFi MSM
    Initialise status: Success
    Information for connection being diagnosed
    Interface GUID: 7c04789b-0b43-472c-abd6-a84cb31e9053
    Interface name: Realtek RTL8188EE 802.11b/g/n Wi-Fi Adapter
    Interface type: Native WiFi
    Profile: Matt
    SSID: Matt
    SSID length: 4
    Connection mode: Infra
    Security: Yes
    Connect even if network is not broadcasting: No
    Result of diagnosis: There may be problem
    Network Diagnostics LogFile Name: 2D0FE1F0-C2C2-43B5-A857-2D2B3C4B8A51.Diagnose.0.et​l
    Other Networking Configuration and LogsFile Name: NetworkConfiguration.cab Collection information Computer Name: LAPTOP Windows Version:6.3Architecture:x64Time:24 July 2014 04:34:47
    Windows Network Diagnostics Detects problems with network connectivity. Package Version:1.0Publisher:Microsoft Windows

    Run the HP Support Asssitant's Tune up application. There should be a new BIOS available. sp66866
    Have you installed the latest Windows 8.1 updates?
    Do not install optional video graphics updates.
    I was runnning into a similar problem with my HP product loan Envy Spectre 13 TouchSmart Ultrabook until I did the updates. I had upgraded my wireless router to a model with 802.11AC specification.
    Invoke the Device Manager and ensure that the box next to Allow this computer to turn off this device to save power is unchecked.
    ****Please click on Accept As Solution if a suggestion solves your problem. It helps others facing the same problem to find a solution easily****
    2015 Microsoft MVP - Windows Experience Consumer

  • VPN Clients getting different default gateways

    Hello,
         We have a new Cisco ASA 5520 and are trying to setup the VPN with split tunneling.  We mostly have clients running XP and the problem is that some of the clients connect (using Cisco Anyconnect 2.5) and the split tunneling works as expected --these clients keep their default gateway-- and then some clients connect and get a default gateway of 192.168.119.1 (our VPN addresses subnet) and of course these users cannot connect to the internet while connected to the VPN.
    Here is our config:
    ASA Version 9.1(1)
    hostname xxxxxx
    names
    name 178.239.80.0 Deny178.239.80.0 description 178.239.80.0
    name 74.82.64.0 Deny74.82.64.0 description 74.82.64.0
    name 173.247.32.0 Deny173.247.32.0 description 173.247.32.0
    name 193.109.81.0 Deny193.109.81.0 description 193.109.81.0
    name 204.187.87.0 Deny204.187.87.0 description 204.187.87.0
    name 206.51.26.0 Deny206.51.26.0 description 206.51.26.0
    name 206.53.144.0 Deny206.53.144.0 description 206.53.144.0
    name 67.223.64.0 Deny67.223.64.0 description 67.223.64.0
    name 93.186.16.0 Deny93.186.16.0 description 93.186.16.0
    name 216.9.240.0 Deny216.9.240.0 description 216.9.240.0
    name 68.171.224.0 Deny68.171.224.0 description 68.171.224.0
    ip local pool PAIUSERS 192.168.119.10-192.168.119.100 mask 255.255.255.0
    interface GigabitEthernet0/0
    nameif outside
    security-level 0
    ip address 63.86.112.194 255.255.255.192
    interface GigabitEthernet0/1
    nameif inside
    security-level 100
    ip address 192.168.129.5 255.255.255.192
    interface GigabitEthernet0/2
    nameif dmz
    security-level 10
    ip address 192.168.20.10 255.255.255.0
    interface GigabitEthernet0/3
    nameif vpn_dmz
    security-level 25
    ip address 192.168.30.10 255.255.255.0
    interface Management0/0
    management-only
    shutdown
    nameif management
    security-level 100
    ip address 192.168.102.4 255.255.255.0
    object network obj-192.168.119.0
    subnet 192.168.119.0 255.255.255.0
    access-list outside_access_in extended permit ip host 192.168.119.11 host 192.168.35.23
    access-list outside_access_in extended permit object-group TCPUDP any4 object-group DM_INLINE_NETWORK_3 object-group UDP_TCP_Domain inactive
    access-list outside_access_in extended permit udp any4 object obj-192.168.30.11 eq isakmp
    access-list outside_access_in extended permit ip any4 object obj-192.168.30.11
    access-list outside_access_in extended permit udp any4 object obj-192.168.30.11 object-group UDP10000
    access-list outside_access_in extended permit udp any4 object-group DM_INLINE_NETWORK_7 eq domain inactive
    access-list outside_access_in extended permit tcp any4 object-group DM_INLINE_NETWORK_8 eq domain inactive
    access-list outside_access_in extended permit tcp host 216.81.43.190 host 192.168.35.30 eq ssh inactive
    access-list outside_access_in extended permit tcp host 216.81.43.190 object obj-192.168.35.30 object-group DM_INLINE_TCP_6 inactive
    access-list outside_access_in extended permit tcp any4 object-group DM_INLINE_NETWORK_9 eq www inactive
    access-list outside_access_in extended permit tcp any4 object obj-192.168.30.11 eq www
    access-list outside_access_in extended permit esp any4 object obj-192.168.30.11
    access-list outside_access_in extended permit tcp any4 object obj-192.168.35.41 eq www
    access-list outside_access_in extended permit tcp any4 object obj-192.168.35.41 eq https
    access-list outside_access_in extended permit tcp any4 host 192.168.35.34 eq https
    access-list outside_access_in extended permit object-group TCPUDP any4 object obj-192.168.35.30 object-group Ports_UDpTCP
    access-list outside_access_in extended permit tcp any4 object obj-192.168.35.30 object-group DM_INLINE_TCP_7
    access-list outside_access_in extended permit tcp any4 object obj-192.168.35.30 eq ftp
    access-list outside_access_in extended permit object-group TCPUDP any4 host 63.86.112.248
    access-list outside_access_in extended permit udp any4 host 162.95.80.115 eq isakmp
    access-list outside_access_in extended permit tcp any4 host 162.95.80.115 object-group Ports_115
    access-list outside_access_in extended permit udp any4 host 162.95.80.115 object-group Ports_2746_259
    access-list outside_access_in extended permit object-group TCPUDP any4 host 63.86.112.245 object-group Service_Group_245 inactive
    access-list outside_access_in extended permit object-group TCPUDP any4 object obj-192.168.35.40 object-group UDP_TCP_Domain
    access-list outside_access_in extended permit tcp any4 object obj-192.168.35.40 object-group DM_INLINE_TCP_2
    access-list outside_access_in extended permit tcp any4 object obj-192.168.129.11 object-group DM_INLINE_TCP_1
    access-list outside_access_in extended permit object-group TCPUDP any4 object obj-192.168.129.11 object-group UDP_TCP_Domain
    access-list outside_access_in extended permit tcp any4 object obj-192.168.129.11 object-group Network_Service_2703_6277
    access-list outside_access_in extended permit udp any4 object obj-192.168.129.11 object-group UDP_443
    access-list outside_access_in extended permit ip any4 host 192.168.101.75 inactive
    access-list outside_access_in extended permit tcp any4 host 64.78.239.50 eq www
    access-list outside_access_in extended permit tcp any4 host 64.78.239.54 object-group TCP_4445
    access-list outside_access_in extended permit icmp any4 any4
    access-list outside_access_in extended permit udp any4 object obj-192.168.35.40 object-group UDP_443
    access-list outside_access_in extended permit tcp any4 host 63.86.112.204 object-group DM_INLINE_TCP_5
    access-list outside_access_in extended permit tcp any4 host 63.86.112.204
    access-list outside_access_in extended permit udp any4 host 63.86.112.204
    access-list outside_access_in extended permit object-group TCPUDP any4 host 192.168.102.12 object-group Network_Server_1194
    access-list outside_access_in extended permit tcp any4 host 192.168.102.12 eq www
    access-list outside_access_in extended permit tcp any4 host 192.168.102.12 eq https
    access-list outside_access_in extended permit object-group TCPUDP any4 object obj-192.168.35.41 object-group Network_Server_1194
    access-list outside_access_in extended permit tcp any4 object obj-192.168.35.12 eq www
    access-list outside_access_in extended permit tcp any4 object obj-192.168.35.12 object-group DM_INLINE_TCP_3
    access-list outside_access_in extended permit tcp any4 host 63.86.112.193 object-group Network_Service_TCP_1194
    access-list outside_access_in extended deny tcp object Deny206.51.26.0 object obj-192.168.35.40 eq https
    access-list outside_access_in extended deny tcp object Deny193.109.81.0 object obj-192.168.35.40 eq https
    access-list outside_access_in extended deny tcp object Deny204.187.87.0 object obj-192.168.35.40 eq https
    access-list outside_access_in extended deny tcp object Deny206.53.144.0 object obj-192.168.35.40 eq https
    access-list outside_access_in extended deny tcp object Deny216.9.240.0 object obj-192.168.35.40 eq https
    access-list outside_access_in extended deny tcp object Deny67.223.64.0 object obj-192.168.35.40 eq https
    access-list outside_access_in extended deny tcp object Deny93.186.16.0 object obj-192.168.35.40 eq https
    access-list outside_access_in extended deny tcp object Deny68.171.224.0 object obj-192.168.35.40 eq https
    access-list outside_access_in extended deny tcp object Deny74.82.64.0 object obj-192.168.35.40 eq https
    access-list outside_access_in extended deny tcp object Deny178.239.80.0 object obj-192.168.35.40 eq https
    access-list outside_access_in extended deny tcp object Deny173.247.32.0 object obj-192.168.35.40 eq https
    access-list vpn_dmz_access_in extended permit ip host 192.168.35.23 192.168.119.0 255.255.255.0
    access-list vpn_dmz_access_in extended permit gre host 192.168.30.11 any4
    access-list vpn_dmz_access_in extended permit tcp any4 host 23.0.214.60 eq https
    access-list vpn_dmz_access_in extended permit udp object-group DM_INLINE_NETWORK_28 any4
    access-list vpn_dmz_access_in extended permit tcp any4 object obj-192.168.35.105 object-group DM_INLINE_TCP_4
    access-list vpn_dmz_access_in extended permit esp any4 object obj-192.168.35.105
    access-list vpn_dmz_access_in extended permit tcp any4 object obj-192.168.35.105
    access-list vpn_dmz_access_in extended permit icmp any4 object obj-192.168.35.105
    access-list vpn_dmz_access_in extended permit tcp any4 host 192.168.129.11
    access-list vpn_dmz_access_in remark RDP
    access-list vpn_dmz_access_in extended permit tcp any object-group DM_INLINE_NETWORK_1 eq 3389
    access-list vpn_dmz_access_in extended permit icmp any4 object obj-192.168.35.23
    access-list inside_nat0_outbound extended permit ip any4 192.168.119.0 255.255.255.0
    access-list ftp-timeout extended permit tcp host 216.81.43.190 host 63.86.112.248
    access-list ftp-timeout extended permit tcp host 63.86.112.248 host 216.81.43.190
    access-list ftp-timeout extended permit tcp host 192.168.35.30 host 216.81.43.190
    access-list ftp-timeout extended permit tcp host 216.81.43.190 host 192.168.35.30
    access-list Split_Tunnel_List remark northwoods
    access-list Split_Tunnel_List standard permit host 192.168.35.23
    access-list Split_Tunnel_List remark paits2
    access-list Split_Tunnel_List standard permit host 192.168.35.198
    access-list Split_Tunnel_List standard deny 192.168.102.0 255.255.255.0
    access-list AnyConnect_Client_Local_Print extended deny ip any4 any4
    access-list AnyConnect_Client_Local_Print extended permit tcp any4 any4 eq lpd
    access-list AnyConnect_Client_Local_Print remark IPP: Internet Printing Protocol
    access-list AnyConnect_Client_Local_Print extended permit tcp any4 any4 eq 631
    access-list AnyConnect_Client_Local_Print remark Windows' printing port
    access-list AnyConnect_Client_Local_Print extended permit tcp any4 any4 eq 9100
    access-list AnyConnect_Client_Local_Print remark mDNS: multicast DNS protocol
    access-list AnyConnect_Client_Local_Print extended permit udp any4 host 224.0.0.251 eq 5353
    access-list AnyConnect_Client_Local_Print remark LLMNR: Link Local Multicast Name Resolution protocol
    access-list AnyConnect_Client_Local_Print extended permit udp any4 host 224.0.0.252 eq 5355
    access-list AnyConnect_Client_Local_Print remark TCP/NetBIOS protocol
    access-list AnyConnect_Client_Local_Print extended permit tcp any4 any4 eq 137
    access-list AnyConnect_Client_Local_Print extended permit udp any4 any4 eq netbios-ns
    access-list IS_Split_Tunnel standard permit 192.168.102.0 255.255.255.0
    access-list IS_Split_Tunnel standard permit 192.168.82.0 255.255.255.0
    access-list IS_Split_Tunnel standard permit 192.168.35.0 255.255.255.0
    nat (inside,outside) source static object-192.168.35.0 object-192.168.35.0 destination static obj-192.168.119.0 obj-192.168.119.0 no-proxy-arp route-lookup
    nat (inside,outside) source static obj-192.168.82.0 obj-192.168.82.0 destination static obj-192.168.119.0 obj-192.168.119.0 no-proxy-arp route-lookup
    nat (inside,outside) source static obj-192.168.102.0 obj-192.168.102.0 destination static obj-192.168.119.0 obj-192.168.119.0 no-proxy-arp route-lookup
    webvpn
    enable outside
    enable inside
    enable dmz
    anyconnect-essentials
    anyconnect image disk0:/anyconnect-win-2.5.2014-k9.pkg 1
    anyconnect image disk0:/anyconnect-macosx-i386-2.5.2014-k9.pkg 2
    anyconnect profiles pairemoteuser disk0:/pairemoteuser.xml
    anyconnect enable
    tunnel-group-list enable
    group-policy PAIGroup internal
    group-policy PAIGroup attributes
    vpn-tunnel-protocol ssl-clientless
    webvpn
      url-list value PAI
    group-policy PAIUSERS internal
    group-policy PAIUSERS attributes
    wins-server value 192.168.35.57
    dns-server value 192.168.35.57
    vpn-tunnel-protocol ikev2 ssl-client ssl-clientless
    split-tunnel-policy tunnelspecified
    split-tunnel-network-list value Split_Tunnel_List
    default-domain none
    webvpn
      anyconnect firewall-rule client-interface private value vpn_dmz_access_in
      anyconnect profiles value pairemoteuser type user
    group-policy PAIIS internal
    group-policy PAIIS attributes
    wins-server value 192.168.35.57
    dns-server value 192.168.35.57
    vpn-tunnel-protocol ikev2 ssl-client ssl-clientless
    split-tunnel-policy tunnelspecified
    split-tunnel-network-list value IS_Split_Tunnel
    default-domain none
    webvpn
      anyconnect firewall-rule client-interface private value vpn_dmz_access_in
      anyconnect profiles value pairemoteuser type user
    group-policy DfltGrpPolicy attributes
    banner value Welcome to PAI
    wins-server value 192.168.35.57
    dns-server value 192.168.35.57
    address-pools value PAIUSERS
    webvpn
      anyconnect firewall-rule client-interface public none
      anyconnect firewall-rule client-interface private value vpn_dmz_access_in
      anyconnect ask enable default anyconnect timeout 5
    group-policy Anyconnect internal
    : end

    Check is the users fall into DfltGrpPolicy because it has no split tunneling active.
    Michael
    Please rate all helpful posts

  • ACE30, bridging using default gateway

    Good afternoon,
    I have a strange behaviour with some ACE30 running A5 release :
    Setup is in bridge mode, working correctly with a default gateway set in the context.
    For some reason, some return traffic is being routed on the ACE instead of being bridged.
    On what conditions would the ace decide to route the traffic of simply bridge it from the server vlan to the client vlan.
    Regards,
    Luc

    interface vlan 337
      description Vip Lan
      ip address 10.32.5.4 255.255.255.0
      peer ip address 10.32.5.5 255.255.255.0
      no normalization
      access-group input Any
      nat-pool 1 10.32.5.254 10.32.5.254 netmask 255.255.255.0 pat
      service-policy input L4_LB_VIP_337
      no shutdown
    interface vlan 171
      bridge-group 17
      no normalization
      mac-sticky enable
      no icmp-guard
      access-group input Any
      service-policy input Administration
      service-policy input PM_MM_171_VIP
      no shutdown
    interface vlan 173
      bridge-group 17
      no normalization
      mac-sticky enable
      no icmp-guard
      access-group input Any
      no shutdown
    what we see is the a server in vlan 173 has return traffic getting droppped on the first firewall next to vlan 337
    what is even more strange is that the user isn't complaining....
    On the context we used to see 100K concurrent connections, nows that we migrated the routed services to another context we are at 1/10 of the connections
    sadly no capture as we migrated the services.

  • Firefox 3.6.8 will not start. I have to go to safe start, click reset to default, ok, then the shutdown box appears, I click cancel and it will open. I have rest profile, uninstalled and reinstalled, clicked alll he boxes on safe start, tried an older ver

    Firefox 3.6.8 will not start. I have to go to safe start, click reset to default, ok, then the shutdown box appears, I click cancel and it will open. I have rest profile, uninstalled and reinstalled, clicked alll he boxes on safe start, tried an older version need help. in English
    == This happened ==
    Every time Firefox opened
    == either after I last updated to 3.6.6 or .7 or reset my inernet exploerer values to default

    I had same problem where Firefox 3.6.8 would not start or open. Spent many hours trying different things to fix it. Uninstall of previous version and reinstall did not make any difference. Finally, after uninstalling Firefox, I searched for Firefox folders and files on my computer, deleted and removed all Firefox folders and files - deleted anything and everything related to Firefox so that it will be as if I was going to download Firefox for the first time ever. Then, using another browser, I downloaded Firefox 3.6.8 and installed it. It could be that some Add-Ons or something else from the older version of Firefox or profile was interfering with the new one. It was easier to delete remove everything and install all over again clean than to figure out which part was causing the problem.
    Keep in mind, when you delete all Firefox folders and files from your computer, you are deleting all your bookmarks and all your Add-ons. If you want to keep those bookmarks, you might want to save the URLs someplace safe to bookmark them again before deleting them. You need to re-install the Add-ons also. Upon installation, it asks if you want to import bookmarks and settings from another browser or settings you might have. I imported them from my other browser. Now, Firefox works. I also installed up-to-date Add-ons.
    I hope this helps. Always keep more than one browser functioning on your computer, just in case one fails.

  • How im suppose to fix the auto shutdown problem in my iphone 3gs after updating to ios 5.1.1 this problem has made me a mobile ****** in my house and an loser in thing care so if any solution to this problem let me know

    how im suppose to fix the auto shutdown problem in my iphone 3gs after updating to ios 5.1.1 this problem has made me a mobile ****** in my house and an loser in thing care so if any solution to this problem let me know

    What "auto shutdown problem" are you talking about?

  • Mythtv, auto shutdown no longer working, scheduler.cpp ?

    Following a recent update the automatic shutdown of my backend is no longer working (well, at least not reliably).
    I have 3 scripts set up in the relevant sections of the mythtv-setup to check if myth is ok to shut down, set the new wakeup time and perform the actual shutdown. These scripts still work alright, but the backend is not initiating the shutdown any more in some cases.
    Lots of trial and error makes me think that this is somehow related to scheduler.cpp, but I am not sure if this is the case or how to fix it.
    I think I have established a pattern:
    Scenario 1:
    - Boot backend
    - do nothing else (e.g. start remote frontend or mythfrontend on the backend)
    - automatic shutdown does not work
    Scenario 2:
    - Boot backend
    - start remote frontend
    - shut down frontend
    - automatic shutdown does not work
    - restart backend service (without reboot)
    - automatic shutdown works
    I also notice that in scenario 2 (when automatic shutdown works) there are a whole heap of these kind of messages right until shutdown occurs:
    2013-04-29 19:18:07.592125 N [660/738] Expire autoexpire.cpp:641 (SendDeleteMessages) - Expiring 156 MB for 1073 at 2013-04-13T11:50:20Z => Hulk
    2013-04-29 19:18:07.632899 E [660/660] CoreContext mainserver.cpp:2610 (DoHandleDeleteRecording) - ERROR when trying to delete file: myth://192.168.1.103:65103:6543/1070_20120126203445.mpg. File doesn't exist. Database metadata will not be removed.
    2013-04-29 19:18:07.889638 E [660/660] CoreContext mainserver.cpp:2610 (DoHandleDeleteRecording) - ERROR when trying to delete file: myth://192.168.1.103:65103:6543/1022_20120206192600.mpg. File doesn't exist. Database metadata will not be removed.
    In scenario 2 (successful) I see the following in the log just before the above auto expire stuff:
    Scheduler scheduler.cpp:2307 (HandleRunSchedulerStartup) - Scheduler: Seem to be woken up by USER
    then a whole heap of auto expiry stuff and finally:
    Scheduler scheduler.cpp:2862 (CheckShutdownServer) - CheckShutdownServer returned - OK to shutdown
    2013-04-29 19:19:55.276775 N [660/735] Scheduler scheduler.cpp:2947 (ShutdownServer) - Running the command to set the next scheduled wakeup time :-
    sudo /home/laffi/scripts/MythSetWakeup 1367229120
    2013-04-29 19:19:55.372582 N [660/735] Scheduler scheduler.cpp:2974 (ShutdownServer) - Running the command to shutdown this computer :-
    sudo /home/laffi/scripts/MythShutdown
    In scenario 1 (unsuccessfull shutdown) I also get
    Scheduler scheduler.cpp:2307 (HandleRunSchedulerStartup) - Scheduler: Seem to be woken up by USER
    and then autoexpiry, but then, once a frontend connects:
    ProcessRequest mainserver.cpp:1385 (HandleAnnounce) - adding: frontend as a client (events: 0)
    I don't get autoexpiry of files and no shutdown, both of which I believe are initiated by scheduler.cpp
    I also noticed the following in the logs when auto shutdown does not work:
    2013-04-29 15:40:36.046359 I [648/848] ProcessRequest mainserver.cpp:1385 (HandleAnnounce) - adding: mythbackend as a client (events: 1)
    which does not seem to appear in the logs when auto shutdown works.
    Any ideas ? I have found very little (next to none) regarding scheduler.cpp when searching.

    The other side of the VPN is a TMG server hosted at our main office.  I can connect to it off site, and others were connected to it remotely as well, but for some reason users at that remote site can no longer connect to the VPN.
    I talked to my ISP wondering if there was something that was blocked due to the change from dhcp to static IP addresses, but they don't see anything.

  • Windows 8.1 Pro Need command to disable "Use default gateway on remote network" option on VPN connection"

    Hello!
    I want to create bat script to create several VPN connection.
    There is powershell command to create vpn connection:
    add-vpnconnection -name "Test VPN" -serveraddress "vpn.example.com" -splittunneling -tunneltype "pptp"
    And I need to create VPN connection without the option "Use default gateway on remote network" option on VPN connection"
    Or modify this option on existent VPN connection with command.
    Please help me to find command option or other command to disable "Use default gateway on remote network" option on VPN connection" feature.

    http://technet.microsoft.com/nl-nl/library/ee431701%28v=ws.10%29.aspx RouteIPv4TrafficOverRAS True – Add a default gateway on the VPN connection False – Do not add default gateway on the VPN connection

  • Giving up default gateway in Solaris 10

    Good Morning !!!
    Hi ..
    could you tell me, how can i add default gateway in solaris 10?
    i mean , i wanted give up as follows:
    rute add default 100.110.120.130
    but it does not work !!
    Thanks.

    Could you post the output from what you're doing? This because beside the typo the following command should work when your root.
    route add default 100.110.120.130 Another option is the following command, but then you need to reboot the system afterwards.
    echo "100.110.120.130"  > /etc/defaultrouter

  • How to setup default gateway in a DHCP client. The default gateway will be the Ip address of the server that has RRAS installed, hence routing cabalities.

    How to setup default gateway in a DHCP client. The default gateway will be the Ip address of the server that has RRAS installed, hence routing cabalities.

    Hi Bill,
    Thank you for replying back...Yes, I was actually asking how do you set the default gateway address on the DHCP server?,
    I believe I got the answer below:
    To configure the DHCP default gateway option Click Start, point to Administrative Tools and then click DHCP. In the console tree, expand the applicable DHCP server, expand IPv4, and then right-click Scope Options Click Configure Options, check 003
    Router, type the applicable Server name and IP address, and then click OK.
    Thank you

  • Changing Router IP while keeping default Gateway

    Hello-  I have a Linksys WRT150N Wireless Router.  The default (out of the box) IP Address is 192.168.1.1, which is also the default Gateway.  I would like to know if it is possible to change the IP address to 192.168.1.2 while keeping the Gateway on 192.168.1.1.  The problem I run into is that when I do change the IP to 192.168.1.2, the Gateway also changes to that address.  I see it is possible under Automatic Configuration - DHCP  to change the IP and the Subnet Mask, but not the Gateway.  Any ideas?  Thank you
    Message Edited by thutter on 05-20-2008 05:36 AM

    No it won't be possible for you to do the settings i.e., to change the ip address to 192.168.1.2...better keep in the same & do the settings.

  • Default Gateway when connected to VPN

    Thanks for reading!
    This is probably a dump question so bear with me...
    I have set up a VPN connection with a Cisco ASA 5505 fronting internet, with the customers environment behind it (on the same subnet), When connected ot the VPN I can reach the inside Router fronting me and one switch behind the Router (every switch is connected to the router), but nothing else.
    My beet is that the Router is messing with my connection, but,, nevermind that!, the setup ain't complete anyway... my question is more related to the Gateway I'm missing when I'm, from the outside, is connected to the VPN on the ASA, could this mess it up? Shouldn't I have a Standard-Gateway in the ipconfig settings in windows?
    This is who it looks like now:
            Anslutningsspecifika DNS-suffix . : VPNOFFICE
            IP-adress . . . . . . . . . . . . : 10.10.10.1
            Nätmask . . . . . . . . . . . . . : 255.255.255.0
            Standard-gateway  . . . . . . . . :
    The internal network is :
    172.16.12.0 255.255.255.0
    Below is my config for the ASA, thanks a lot!!!!!!!
    !FlASH PÅ ROUTERN FRÅN BÖRJAN
    !asa841-k8.bin
    hostname DRAKENSBERG
    domain-name default.domain.invalid
    enable password XXXXXXX
    names
    interface Vlan1
    nameif inside
    security-level 100
    ip address 172.16.12.4 255.255.255.0
    interface Vlan10
    nameif outside
    security-level 0
    ip address 97.XX.XX.20 255.255.255.248
    interface Ethernet0/0
    switchport access vlan 10
    interface Ethernet0/1
    interface Ethernet0/2
    interface Ethernet0/3
    interface Ethernet0/4
    interface Ethernet0/5
    interface Ethernet0/6
    interface Ethernet0/7
    ftp mode passive
    clock timezone CEST 1
    clock summer-time CEDT recurring last Sun Mar 2:00 last Sun Oct 3:00
    dns server-group DefaultDNS
    domain-name default.domain.invalid
    object-group protocol TCPUDP
    protocol-object udp
    protocol-object tcp
    access-list nonat extended permit ip 172.16.12.0 255.255.255.0 10.10.10.0 255.255.255.0
    access-list MSS_EXCEEDED_ACL extended permit tcp any any
    access-list VPN-SPLIT-TUNNEL remark VPN SPLIT TUNNEL
    access-list VPN-SPLIT-TUNNEL standard permit 172.16.12.0 255.255.255.0
    tcp-map MSS-MAP
      exceed-mss allow
    pager lines 24
    logging enable
    logging timestamp
    logging buffer-size 8192
    logging console notifications
    logging buffered notifications
    logging asdm notifications
    mtu inside 1500
    mtu outside 1500
    ip local pool VPN 10.10.10.1-10.10.10.40 mask 255.255.255.0
    icmp unreachable rate-limit 1 burst-size 1
    icmp permit any inside
    icmp permit any outside
    asdm image disk0:/asdm-625-53.bin
    no asdm history enable
    arp timeout 14400
    global (outside) 1 interface
    nat (inside) 0 access-list nonat
    nat (inside) 1 172.16.12.0 255.255.255.0
    route outside 0.0.0.0 0.0.0.0 97.XX.XX.17 1
    timeout xlate 3:00:00
    timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
    timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
    timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
    timeout uauth 0:05:00 absolute
    dynamic-access-policy-record DfltAccessPolicy
    aaa authentication ssh console LOCAL
    http server enable
    http 172.16.12.0 255.255.255.0 inside
    no snmp-server location
    no snmp-server contact
    snmp-server enable traps snmp authentication linkup linkdown coldstart
    crypto ipsec transform-set ESP-AES-256-MD5 esp-aes-256 esp-md5-hmac
    crypto ipsec transform-set ESP-DES-SHA esp-des esp-sha-hmac
    crypto ipsec transform-set ESP-DES-MD5 esp-des esp-md5-hmac
    crypto ipsec transform-set ESP-AES-192-MD5 esp-aes-192 esp-md5-hmac
    crypto ipsec transform-set ESP-3DES-MD5 esp-3des esp-md5-hmac
    crypto ipsec transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
    crypto ipsec transform-set ESP-AES-128-SHA esp-aes esp-sha-hmac
    crypto ipsec transform-set ESP-AES-192-SHA esp-aes-192 esp-sha-hmac
    crypto ipsec transform-set ESP-AES-128-MD5 esp-aes esp-md5-hmac
    crypto ipsec transform-set ESP-3DES-SHA esp-3des esp-sha-hmac
    crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1
    crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set transform-set ESP-AES-128-SHA ESP-AES-128-MD5 ESP-AES-192-SHA ESP-AES-192-MD5 ESP-AES-256-SHA ESP-AES-256-MD5 ESP-3DES-SHA ESP-3DES-MD5 ESP-DES-SHA ESP-DES-MD5
    crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
    crypto map outside_map interface outside
    crypto isakmp enable outside
    crypto isakmp policy 10
    authentication pre-share
    encryption 3des
    hash sha
    group 2
    lifetime 86400
    crypto isakmp policy 65535
    authentication pre-share
    encryption 3des
    hash sha
    group 2
    lifetime 86400
    telnet timeout 5
    ssh 172.16.12.0 255.255.255.0 inside
    ssh timeout 5
    console timeout 0
    threat-detection basic-threat
    threat-detection statistics access-list
    group-policy VPNOFFICE internal
    group-policy VPNOFFICE attributes
    dns-server value 215.122.145.18
    vpn-tunnel-protocol IPSec
    split-tunnel-policy tunnelspecified
    split-tunnel-network-list value VPN-SPLIT-TUNNEL
    default-domain value VPNOFFICE
    split-dns value 215.122.145.18
    msie-proxy method no-proxy
    username admin password XXXXXX privilege 15
    username Daniel password XXXXX privilege 0
    username Daniel attributes
    vpn-group-policy VPNOFFICE
    tunnel-group VPNOFFICE type remote-access
    tunnel-group VPNOFFICE general-attributes
    address-pool VPN
    default-group-policy VPNOFFICE
    tunnel-group VPNOFFICE ipsec-attributes
    pre-shared-key XXXXXXXXXX
    class-map MSS_EXCEEDED_MAP
    match access-list MSS_EXCEEDED_ACL
    class-map inspection_default
    match default-inspection-traffic
    policy-map type inspect dns preset_dns_map
    parameters
      message-length maximum 512
    policy-map global_policy
    class inspection_default
      inspect dns preset_dns_map
      inspect ftp
      inspect h323 h225
      inspect h323 ras
      inspect netbios
      inspect rsh
      inspect rtsp
      inspect skinny 
      inspect esmtp
      inspect sqlnet
      inspect sunrpc
      inspect tftp
      inspect sip 
      inspect xdmcp
      inspect icmp error
      inspect pptp
      inspect ipsec-pass-thru
      inspect icmp
    class MSS_EXCEEDED_MAP
      set connection advanced-options MSS-MAP
    service-policy global_policy global
    privilege cmd level 3 mode exec command perfmon
    privilege cmd level 3 mode exec command ping
    privilege cmd level 3 mode exec command who
    privilege cmd level 3 mode exec command logging
    privilege cmd level 3 mode exec command failover
    privilege cmd level 3 mode exec command packet-tracer
    privilege show level 5 mode exec command import
    privilege show level 5 mode exec command running-config
    privilege show level 3 mode exec command reload
    privilege show level 3 mode exec command mode
    privilege show level 3 mode exec command firewall
    privilege show level 3 mode exec command asp
    privilege show level 3 mode exec command cpu
    privilege show level 3 mode exec command interface
    privilege show level 3 mode exec command clock
    privilege show level 3 mode exec command dns-hosts
    privilege show level 3 mode exec command access-list
    privilege show level 3 mode exec command logging
    privilege show level 3 mode exec command vlan
    privilege show level 3 mode exec command ip
    privilege show level 3 mode exec command ipv6
    privilege show level 3 mode exec command failover
    privilege show level 3 mode exec command asdm
    privilege show level 3 mode exec command arp
    privilege show level 3 mode exec command route
    privilege show level 3 mode exec command ospf
    privilege show level 3 mode exec command aaa-server
    privilege show level 3 mode exec command aaa
    privilege show level 3 mode exec command eigrp
    privilege show level 3 mode exec command crypto
    privilege show level 3 mode exec command vpn-sessiondb
    privilege show level 3 mode exec command ssh
    privilege show level 3 mode exec command dhcpd
    privilege show level 3 mode exec command vpnclient
    privilege show level 3 mode exec command vpn
    privilege show level 3 mode exec command blocks
    privilege show level 3 mode exec command wccp
    privilege show level 3 mode exec command webvpn
    privilege show level 3 mode exec command module
    privilege show level 3 mode exec command uauth
    privilege show level 3 mode exec command compression
    privilege show level 3 mode configure command interface
    privilege show level 3 mode configure command clock
    privilege show level 3 mode configure command access-list
    privilege show level 3 mode configure command logging
    privilege show level 3 mode configure command ip
    privilege show level 3 mode configure command failover
    privilege show level 5 mode configure command asdm
    privilege show level 3 mode configure command arp
    privilege show level 3 mode configure command route
    privilege show level 3 mode configure command aaa-server
    privilege show level 3 mode configure command aaa
    privilege show level 3 mode configure command crypto
    privilege show level 3 mode configure command ssh
    privilege show level 3 mode configure command dhcpd
    privilege show level 5 mode configure command privilege
    privilege clear level 3 mode exec command dns-hosts
    privilege clear level 3 mode exec command logging
    privilege clear level 3 mode exec command arp
    privilege clear level 3 mode exec command aaa-server
    privilege clear level 3 mode exec command crypto
    privilege cmd level 3 mode configure command failover
    privilege clear level 3 mode configure command logging
    privilege clear level 3 mode configure command arp
    privilege clear level 3 mode configure command crypto
    privilege clear level 3 mode configure command aaa-server
    prompt hostname context
    Cryptochecksum:aaa1f198bf3fbf223719e7920273dc2e
    : end

    I didn't realise I had that crypto settings on, thanks my bad!!!
    But... the 172.16.12.0 network is directly connected, the Router (that to be honest is a firewall) / switches is all on the same subnet (172.16.12.X/24), so sorry I didn't explain thoroughly, was more wondering about the GW and didn't want to overcomplicate things..
    The Firewall/Router dosen't do any routing, so it should work right (I you count out the firewalling in the firewall and so forth, there shouldn't be any problems accomplishing this with the ASA)? The Firewall is more a DHCP for the clients/Firwall for the clients.. this will change in the future.. it will be removed,
    the vpn network is staticly routed back to my ASA in that firewall...
    I don't like this solution.. but this is who it looks.. for now..
    (VPN network is 10.10.10.X/24)
    But... shouldn't I see a default gateway under ipconfig when I'm connected to the VPN from internet, on the vpn client that's vpned in, is this correct?
    THANKS for all the help!

  • Changing default gateway on sbs08

    Hello,
    I need to change the default gateway on my small business server 2008 from 192.168.1.207 to 192.168.1.208. The server is used for exchange 2007 and pretty much runs our network.
    My manager said this is a big job and I need to read up on DNS, MX records and changing SMTP server IP addresses but I cant see what else I would
    need to do. 
    Any help is greatly appreciated!
    Thanks!

    Hi Nuh,
    If you are just looking to change just the gateway IP address, then FOVIA is correct. Just run the Connect to Internet Wizard. For all intensive purposes, your gateway is your firewall or router. Ex. below.
    IP Address:   192.168.1.2  <-This is IP address for the server
    Subnet:       255.255.255.0
    Default Gateway:  192.168.1.207  <- This is the IP address for your gateway, the one that you need to change.
    Now, if you manager is asking you to change physically change the gateway(firewall/router) and reconfigfure it and the network, then this "big job" does make sense when dealing DNS, MX records and such. If not, then just run the wizard and you should be
    gold.

Maybe you are looking for