MPLS with one router
We are a ADSL service provider
In part of our network all DSLAMs are connected to a switch
DSLAMs are working in L2 mode
I want to seperate customers using VLAN
Each customer will have unique vlan and for evry vlan there will be a subinterface on router
Is it possible to have L3VPN MPLS on this singel router ?
I think you are trying to isolate each customer routes from the other. This can be done.
You'd need to configure a VRF instance for each customer and map the subinterfaces to the appropriate VRF instance.
This can be done without configuring MPLS on the router. This is called VRF lite.
Click on the link below for additional information -
http://www.cisco.com/en/US/partner/products/hw/switches/ps4324/products_configuration_guide_chapter09186a00804d78d0.html
Hope this helps,
Pankaj
Similar Messages
-
Late 2013 15" Retina Macbook Pro - wifi connection timeout with one router
Hi,
I've recently purchased a new Macbook Pro retina 15 inch late 2013 model. Everything is fine at home, but at work I cannot connect to one wireless router (Netgear WAG102). The computer tries to connect but I get a connection timeout error after a few seconds for every attempt.
I have tried every suggestion for wifi issues that I can find on the forums, and have reset the router.
A colleague has also recently purchased the same computer except 13 inch model - he has exactly the same problem.
Any suggestions? I suspect given that two of us have the same problem that there is an incompatibility with the MBP and this particular router. I notice that there are quite a few discussions about similar issues with the macbook pro.I too have a MBP Retina, 15", late 2013, and am having wifi connection issues. I've tried several fixes suggested on these discussions and by Apple. Nothing corrects the problem. I've been told it's my router, but I find that difficult to believe give that my wife has a MBP 13" 2012 (non retina), that has no issues at all, nor do our iPhones. It's just my MBP Retina.
My issue seems to be when waking from sleep, I lose the wifi connection. I have to turn wifi of then on again, and it reconnects. The only thing that corrects the problem for me is when I disable bluetooth. I have the magic mouse and it's basically useless becuase I need bluetooth on for it to work.
I find this to be an annoying problem. This is my first MacBook, and I really like it, but this wifi thing is bad. Never had this problem with my Windows machines. -
IChat failing with one router only
Whenever I use iChat on my home netgear router it is a crapshoot as to whether or not it is going to be able to connect to the AIM server. 9 out of 10 times it "attempts" to connect but in less than a second fails and pops up a message saying "iChat lost the connection to the aim account *aim handle*. The server connection was unexpectedly lost." I have never had an issue on any other router, and every once in a while (about 1 in 10) it'll pop right open and continue to work until the next time I disconnect from the network by either going to sleep or removing the computer from the apartment. Sometimes i can fix it by putting the computer to sleep and waking it over and over until it connects.
I have checked through the netgear's settings and cannot find any mention of the ports for AIM being blocked.
Please help, this is incredibly annoying.as well as the info for Defcom can you tell us if you know how to access the set up pages of the Netgear ?
If so is it set to do UPnP ?
In iChat > Preferences > Accounts > Server settings what port is iChat currently using to login ?
9:31 PM Wednesday; February 3, 2010
Please, if posting Logs, do not post any Log info after the line "Binary Images for iChat" -
I'm currently signed onto my home network and want to go on with another computer but don't remember my password for my network. Does anyone know where to find this? It's a password that I set myself, not the one that came with my router.
It's in your Keychain on the computer you usually use to connect to your network - the "kind" will be "AirPort Network Password".
Your Keychain can be opened by using the Keychain Access program. It is in your Utilities Folder.
Open Keychain Access, and type airport in the search field. You will see a number of entries. Choose the one with the name of your wireless network, open it, and check the box next to "show password". Before it reveals itself you will be asked for your login password - the one you use to log in to your MacBook.
The network password will appear in the box.
Quit Keychain Access. -
Make a router out of a simple notebook with one NIC (buy a second NIC)
Hello all,
Before starting, I think I must say hello to you because I'm new here : this is my first post . So, in fact, I'm working with Linux since 5 years. I'm running Gentoo on my workstation and my old server, Ubuntu on my notebook and for family, and finaly, I'm running Red Hat at work place for workstation and servers. I'm a Linux and JBoss administrator .
I've decided to run/try Arch because it seams to growth with rock-solid ideas and it's a binary distribution. I now prefer a binary distribution for my server, because it's taking too much time to let old computer or notebook compile the whole world (alone or not ...). I prefer now looking around and learn another Linux distribution. This is why I started to install my first Arch Linux : I will try to run a server on a simple notebook. In fact, it's a working machine, but without any graphics capabilities (memory has burned...), and so, perfect for a little server low consumption. I want it to replace my current server/router running Gentoo on an old Pentium 3.
For now, I've encountered these little problem :
- LID problem when screen is close : reboot never work (power off just after the BIOS, when the LID state is "screen closed"...) => disable LID connection (unplugged from motherboard)
- ssh problem => must now use "/etc/hosts.allow" to let remote machine to be connected
- try routing packet with one NIC => for now, doesn't work ...
- try to get X11 Forwarding => doesn't work too, but it will works quickly
My infrastructure is just a server/router splitting in two part for the LAN at home :
- one part is LAN with all workstations
- the other part is LAN_router which is another network with only the ADSL router to access internet
So, its looking like this : <machine1> => <switch> => <[eth1]server/router[eth0]> => <switch> => <router_ADSL> => INTERNET
All is fine ... with the old machine ... for the new one, it has only one network interface ... The question is : how to do routing with only one NIC ???
In theory, I "should" work ... but .. some component can have some little hard time to do the right things .. and for me, is not working right now.
The first try is to use one interface with one IP aliasing, like this :
2: eth0: <BROADCAST,MULTICAST,UP,LOWER_UP> mtu 1500 qdisc pfifo_fast state UP qlen 1000
link/ether 00:1d:e4:a3:d5:1a brd ff:ff:ff:ff:ff:ff
inet 10.2.1.8/26 brd 10.2.1.63 scope global eth0
inet 10.2.1.66/26 brd 10.2.1.127 scope global eth0:0
inet6 fc80::21a:e2ff:fea3:d56a/64 scope link
valid_lft forever preferred_lft forever
Two sub network are used :
- 10.2.1.0/26
- 10.2.1.64/26
I must have 2 ip on one NIC, so aliasing can be used (when testing, the new server/router is able to ping a workstation and the ADSL router ; it can also use internet). I've heart there is some problem with "iptables" to set forwarding rules when using IP Aliasing ... but I prefer try myself . It doesn't work for now, probably because of this. But, is there a way to use a "workaround" ? For example, if "iptables" is not able to play with aliasing, and so, interface such as "eth0:0", may be there is a way to tell it, like this :
[root@serveurn ~]# iptables-save
# Generated by iptables-save v1.4.10 on Sun Dec 12 17:30:01 2010
*nat
:PREROUTING ACCEPT [0:0]
:INPUT ACCEPT [0:0]
:OUTPUT ACCEPT [0:0]
:POSTROUTING ACCEPT [0:0]
-A POSTROUTING ! -d 10.2.1.0/26 -o eth0 -j SNAT --to-source 10.2.1.66
COMMIT
# Completed on Sun Dec 12 17:30:01 2010
# Generated by iptables-save v1.4.10 on Sun Dec 12 17:30:01 2010
*filter
:INPUT DROP [0:0]
:FORWARD ACCEPT [0:0]
:OUTPUT ACCEPT [9:932]
-A INPUT -m state --state RELATED,ESTABLISHED -j ACCEPT
-A INPUT -i lo -j ACCEPT
-A INPUT -p icmp -j ACCEPT
-A INPUT -s 10.2.1.0/26 -p tcp -m tcp --dport 22 -j ACCEPT
-A FORWARD -m state --state RELATED,ESTABLISHED -j ACCEPT
COMMIT
# Completed on Sun Dec 12 17:30:01 2010
... use the interface "eth0" (for the whole throughput) and do SNAT for all excepted for the LAN network ? But it seams to not work ...
I got a second idea : if it wan't work with aliasing ... may be can I use virtual interface and bridge ... create a bridge with "eth0" and "tap0" so I can add more than one ip in the machine .. and may be, will be able to route packet from these two interface ???
But for now, I have to understand why X11 Forwarding don't work ...
EDIT: xorg problem solved : xorg-auth was requested ...
Last edited by loopx (2011-01-09 18:08:28)fukawi2 wrote:" ...it is dirty and nasty and shouldn't be done unless you're stuck on a deserted island and your only hope of rescue is building a router out of 2 coconuts, a sea shell and a single NIC that was washed up on the beach in the last storm. "
PRICELESS !!
@loopx: Honestly: return the USB NIC you just got, buy a compatible device(maybe an asus rt-n16) and install dd-wrt. You'll be a lot happier....
Last edited by Daniel_F (2011-01-10 00:34:08) -
RA VPN into ASA5505 behind C871 Router with one public IP address
Hello,
I have a network like below for testing remote access VPN to ASA5505 behind C871 router with one public IP address.
PC1 (with VPN client)----Internet-----Modem----C871------ASA5505------PC2
The public IP address is assigned to the outside interface of the C871. The C871 forwards incoming traffic UDP 500, 4500, and esp to the outside interface of the ASA that has a private IP address. The PC1 can establish a secure tunnel to the ASA. However, it is not able to ping or access PC2. PC2 is also not able to ping PC1. The PC1 encrypts packets to PC2 but the ASA does not to PC1. Maybe a NAT problem? I understand removing C871 and just use ASA makes VPN much simpler and easier, but I like to understand why it is not working with the current setup and learn how to troubleshoot and fix it. Here's the running config for the C871 and ASA. Thanks in advance for your help!C871:
version 15.0
no service pad
service timestamps debug datetime msec localtime
service timestamps log datetime msec localtime
service password-encryption
hostname router
boot-start-marker
boot-end-marker
enable password 7 xxxx
aaa new-model
aaa session-id common
clock timezone UTC -8
clock summer-time PDT recurring
dot11 syslog
ip source-route
ip dhcp excluded-address 192.168.2.1
ip dhcp excluded-address 192.168.2.2
ip dhcp pool dhcp-vlan2
network 192.168.2.0 255.255.255.0
default-router 192.168.2.1
ip cef
ip domain name xxxx.local
no ipv6 cef
multilink bundle-name authenticated
password encryption aes
username xxxx password 7 xxxx
ip ssh version 2
interface FastEthernet0
switchport mode trunk
interface FastEthernet1
interface FastEthernet2
interface FastEthernet3
interface FastEthernet4
description WAN Interface
ip address 1.1.1.2 255.255.255.252
ip access-group wna-in in
no ip redirects
no ip unreachables
no ip proxy-arp
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
no cdp enable
interface Vlan1
no ip address
interface Vlan2
description LAN-192.168.2
ip address 192.168.2.1 255.255.255.0
ip nat inside
ip virtual-reassembly
interface Vlan10
description router-asa
ip address 10.10.10.1 255.255.255.252
ip nat inside
ip virtual-reassembly
ip forward-protocol nd
no ip http server
no ip http secure-server
ip nat inside source list nat-pat interface FastEthernet4 overload
ip nat inside source static 10.10.10.1 interface FastEthernet4
ip nat inside source static udp 10.10.10.2 500 interface FastEthernet4 500
ip nat inside source static udp 10.10.10.2 4500 interface FastEthernet4 4500
ip nat inside source static esp 10.10.10.2 interface FastEthernet4
ip route 0.0.0.0 0.0.0.0 1.1.1.1
ip route 10.10.10.0 255.255.255.252 10.10.10.2
ip route 192.168.2.0 255.255.255.0 10.10.10.2
ip access-list standard ssh
permit 0.0.0.0 255.255.255.0 log
permit any log
ip access-list extended nat-pat
deny ip 192.168.2.0 0.0.0.255 192.168.100.0 0.0.0.255
permit ip 192.168.2.0 0.0.0.255 any
ip access-list extended wan-in
deny ip 192.168.0.0 0.0.255.255 any
deny ip 172.16.0.0 0.15.255.255 any
deny ip 10.0.0.0 0.255.255.255 any
deny ip 127.0.0.0 0.255.255.255 any
deny ip 169.255.0.0 0.0.255.255 any
deny ip 255.0.0.0 0.255.255.255 any
deny ip 224.0.0.0 31.255.255.255 any
deny ip host 0.0.0.0 any
deny icmp any any fragments log
permit tcp any any established
permit icmp any any net-unreachable
permit udp any any eq isakmp
permit udp any any eq non500-isakmp
permit esp any any
permit icmp any any host-unreachable
permit icmp any any port-unreachable
permit icmp any any packet-too-big
permit icmp any any administratively-prohibited
permit icmp any any source-quench
permit icmp any any ttl-exceeded
permit icmp any any echo-reply
deny ip any any log
control-plane
line con 0
exec-timeout 0 0
logging synchronous
no modem enable
line aux 0
line vty 0 4
access-class ssh in
exec-timeout 5 0
logging synchronous
transport input ssh
scheduler max-task-time 5000
end
ASA:
ASA Version 9.1(2)
hostname asa
domain-name xxxx.local
enable password xxxx encrypted
xlate per-session deny tcp any4 any4
xlate per-session deny tcp any4 any6
xlate per-session deny tcp any6 any4
xlate per-session deny tcp any6 any6
xlate per-session deny udp any4 any4 eq domain
xlate per-session deny udp any4 any6 eq domain
xlate per-session deny udp any6 any4 eq domain
xlate per-session deny udp any6 any6 eq domain
passwd xxxx encrypted
names
ip local pool vpn-pool 192.168.100.10-192.168.100.35 mask 255.255.255.0
interface Ethernet0/0
switchport trunk allowed vlan 2,10
switchport mode trunk
interface Ethernet0/1
switchport access vlan 2
interface Ethernet0/2
shutdown
interface Ethernet0/3
shutdown
interface Ethernet0/4
shutdown
interface Ethernet0/5
shutdown
interface Ethernet0/6
shutdown
interface Ethernet0/7
shutdown
interface Vlan1
no nameif
no security-level
no ip address
interface Vlan2
nameif inside
security-level 100
ip address 192.168.2.2 255.255.255.0
interface Vlan10
nameif outside
security-level 0
ip address 10.10.10.2 255.255.255.252
ftp mode passive
clock timezone UTC -8
clock summer-time PDT recurring
dns server-group DefaultDNS
domain-name xxxx.local
object network vlan2-mapped
subnet 192.168.2.0 255.255.255.0
object network vlan2-real
subnet 192.168.2.0 255.255.255.0
object network vpn-192.168.100.0
subnet 192.168.100.0 255.255.255.224
object network lan-192.168.2.0
subnet 192.168.2.0 255.255.255.0
access-list no-nat-in extended permit ip 192.168.2.0 255.255.255.0 192.168.100.0 255.255.255.0
access-list vpn-split extended permit ip 192.168.2.0 255.255.255.0 any
pager lines 24
logging enable
logging asdm informational
mtu inside 1500
mtu outside 1500
no failover
icmp unreachable rate-limit 1 burst-size 1
no asdm history enable
arp timeout 14400
no arp permit-nonconnected
nat (inside,outside) source static lan-192.168.2.0 lan-192.168.2.0 destination static vpn-192.168.100.0 vpn-192.168.100.0 no-proxy-arp route-lookup
object network vlan2-real
nat (inside,outside) static vlan2-mapped
route outside 0.0.0.0 0.0.0.0 10.10.10.1 1
timeout xlate 3:00:00
timeout pat-xlate 0:00:30
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
timeout tcp-proxy-reassembly 0:01:00
timeout floating-conn 0:00:00
dynamic-access-policy-record DfltAccessPolicy
user-identity default-domain LOCAL
aaa authentication ssh console LOCAL
aaa authentication http console LOCAL
http server enable
http 192.168.2.0 255.255.255.0 inside
http 10.10.10.1 255.255.255.255 outside
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart
crypto ipsec ikev1 transform-set ESP-AES-256-SHA esp-aes-256 esp-sha-hmac
crypto ipsec security-association pmtu-aging infinite
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set pfs group1
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set ikev1 transform-set ESP-AES-256-SHA
crypto dynamic-map SYSTEM_DEFAULT_CRYPTO_MAP 65535 set reverse-route
crypto map outside_map 65535 ipsec-isakmp dynamic SYSTEM_DEFAULT_CRYPTO_MAP
crypto map outside_map interface outside
crypto ca trustpool policy
crypto ikev1 enable outside
crypto ikev1 policy 30
authentication pre-share
encryption aes-256
hash sha
group 2
lifetime 86400
telnet timeout 5
ssh 192.168.2.0 255.255.255.0 inside
ssh 10.10.10.1 255.255.255.255 outside
ssh timeout 20
ssh version 2
ssh key-exchange group dh-group1-sha1
console timeout 0
threat-detection basic-threat
threat-detection statistics access-list
no threat-detection statistics tcp-intercept
webvpn
anyconnect-essentials
group-policy vpn internal
group-policy vpn attributes
dns-server value 8.8.8.8 8.8.4.4
vpn-tunnel-protocol ikev1
split-tunnel-policy tunnelspecified
split-tunnel-network-list value vpn-split
default-domain value xxxx.local
username xxxx password xxxx encrypted privilege 15
tunnel-group vpn type remote-access
tunnel-group vpn general-attributes
address-pool vpn-pool
default-group-policy vpn
tunnel-group vpn ipsec-attributes
ikev1 pre-shared-key xxxx
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum client auto
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect ip-options
inspect netbios
inspect rsh
inspect rtsp
inspect skinny
inspect esmtp
inspect sqlnet
inspect sunrpc
inspect tftp
inspect sip
inspect xdmcp
inspect icmp
service-policy global_policy global
prompt hostname context
no call-home reporting anonymous
call-home
profile CiscoTAC-1
no active
destination address http https://tools.cisco.com/its/service/oddce/services/DDCEService
destination address email [email protected]
destination transport-method http
subscribe-to-alert-group diagnostic
subscribe-to-alert-group environment
subscribe-to-alert-group inventory periodic monthly
subscribe-to-alert-group configuration periodic monthly
subscribe-to-alert-group telemetry periodic daily
Cryptochecksum:40c05c90210242a42b7dbfe9bda79ce2
: endHi,
I think, that you want control all outbound traffic from the LAN to the outside by ASA.
I suggest some modifications as shown below.
C871:
interface Vlan2
description LAN-192.168.2
ip address 192.168.2.2 255.255.255.0
no ip nat inside
no ip proxy-arp
ip virtual-reassembly
ip access-list extended nat-pat
no deny ip 192.168.2.0 0.0.0.255 192.168.100.0 0.0.0.255
no permit ip 192.168.2.0 0.0.0.255 any
deny ip 192.168.2.0 0.0.0.255 any
permit ip 10.10.10.0 0.0.0.255 any
ASA 5505:
interface Vlan2
nameif inside
security-level 100
ip address 192.168.2.1 255.255.255.0
Try them out and response.
Best regards,
MB -
Webvpn GW's on one router with domain names
Hi,
I'm trying to configure multiple WebVPN gateways on one router using one front door VRF and multiple back door VRF's. Think of this like a cloud service provider with several customers using different VRFs and one Internet VRF used for the incoming connections for the remote users.
Doing so, several scenarios arise:
Using one gateway and several context with a seperate VRF for each.
Please let me know if I am wrong here:
I can only assign one trustpoint because I only have one gateway. This means that all users connecting can only use one domain name like "*.isp.com". This also implies the use of a wildcard certificate.
Using several gateways and several context with a seperate VRF for each.
I can only assign multiple trustpoints because I only have one gateway. This means that users connecting can use multiple domains name like "webvpn.clientA.com" and "webvpn.clientB.com".
I would prefer the first situation but then I run into a second problem:
There are several commands related to hostname and up till now I have not figured out which one does exactly what:
ROUTER(config)#webvpn gateway WEB_GW
ROUTER(config-webvpn-gateway)#hostname
ROUTER(config)#webvpn context CUST1_CT
ROUTER(config-webvpn-context)#gateway WEB_GW domain
ROUTER(config-webvpn-context)#gateway WEB_GW virtual-host
Is there anyone who can explain to me what exactly does what?
My personal guest is that I only need to configure the virtual-host like this" CUST1_CT -> virtual-host cust1.isp.com and CUST2_CT -> virtual-host cust2.isp.com". But I'm not sure about this and up till now I have not found any documentation that describes this very clearly.I think for this to work correctly and be able to split traffic between the 2 ISPs, you would need to use BGP, because default is going to use one ISP or the other.
If you can use BGP, this link will help you in load shearing between multiple ISPs when you have one router.
http://www.cisco.com/c/en/us/support/docs/ip/border-gateway-protocol-bgp/13762-40.html#conf4
HTH -
NAT and Routed Network with Two ISP's on one router
I'm sure this has been done covered many times, but I am not finding it.
I have two ISP connections.
With ISP-A I have a /30 between us and 200.100.100.0/24 is routed to me via the /30 for thsi example we will say the /30 is 1.1.1.1 on isp end and 1.1.1.2 on my end
With ISP-B I have a 100.0.0.0/29 subnet. and the ISP gateway is on that subnet at 100.0.0.1
On the inside of my network I have devices using both 200.100.100.x addresses and devices on 192.168.100.x that need to use NAT.
I would like all of the devices on 200.100.100.x addresses to continue using ISP-A as their gateway.
Everything on 192.168.100.x should use NAT and go out ISP-B
I have tried
ip nat inside source route-map ISP-A interface GigabitEthernet0/1 overload
route-map ISP-B permit 10
match ip address 101
match interface GigabitEthernet0/1
set ip next-hop 100.0.0.1
route-map ISP-A permit 10
match ip address 111
match interface Multilink1
set ip next-hop 1.1.1.1
The problem comes when I have default routes to ISP-A in the router than none of the ISP-B traffic works, and vice versa.I think for this to work correctly and be able to split traffic between the 2 ISPs, you would need to use BGP, because default is going to use one ISP or the other.
If you can use BGP, this link will help you in load shearing between multiple ISPs when you have one router.
http://www.cisco.com/c/en/us/support/docs/ip/border-gateway-protocol-bgp/13762-40.html#conf4
HTH -
Multiple WAN connections all through one router with load balancing?
I am setting up a network in my dormatory for myself and about 20 friends. about half of us have DSL connections at the moment. Is there a way to have all the DSL connections (possibly run through cheap home DSL routers) all connect into a cisco router that then acts as the gateway for our entire network? woudl it be possible for each internet request to go out over the connection that has the least load AND also be able to use some sort of load balancing, so one user cant use all of the outgoing/incoming bandwidth?
If you have any ideas please let me knowHi Ian,
To get this working, you would either need to use something like PPP to bundle your links together or use a dynamic protocol.
In bundling the links, you could make them appear as one link, with a single IP address each end and the router takes care of distributing the load. To implement this though, you would need control of both sides of the link, or be terminating with one carrier who is happy to implement this for you.
The second is to use a dynamic protocol (such as eigrp, ospf, etc), which can build up a map of the network to router from point a to point b. For this you also need control of the link.
I can't think of another method, unless you can control the link from both sides. Your other option it to pool your money and buy a larger link or a leased line. If you bought a leased line or two, your carrier would be more than happy to talk to you about routing over that, but generally you're looking at mega bucks for that.
HTH,
Mark -
HI,
Diagram, CE--PE-mbgp vpn--P--PE2---ext....
When I use RIP v2 between PE and P or PE2, if I use /32 loopback0, everything is ok for the VPN MPlS
But, if I use /24 as loop0, the P(or PE2) will have correct routes learned from PE router through MP-iBGP and assigned correct labels and forwarded labels to other neighbor router.
but, that label pair doesn' show up in "show mpls forwarding" table, so ,ping failed here.
If I change back to /32, it shows up, everythign is cool.
so far, I know Ospf may have problem with /32 /24 loop0. but, If I use /24 for loop0 but use ip os net p-p on loop 0 or use Isisi, it seems no such problem.
any suggestions why this happened to RIp?
pengSystem image file is "flash:c2600-telco-mz.123-10.bin"
HI,
The above is my exact IOS version.
this problem is consistent.
again, the diagram is like following,
CE-PE1-mp-ibgp--PE2-interAS--PE3--mpipbg--PE4
on CE and PE1 , just use simple routing.
On PE1 and PE2, it's Mp-iBGP in one AS and PE3 and pE4 are another AS.
PE2 and PE3 run as "next-hop-self" for PE1 and PE4 in VPN MPLS
Les's say, one route A from CE goes to PE1, and it's been assigned a label 101.
As PE1 and PE2 are mp-ibgp, it's running RIP v2, route A with label 101 is sent over to PE1.
PE1 assign a new VPN label 202 paired to 101 and send to neighbor PE2
If /32 is used, "show mpls forwarding" has "202/101 44:1:route A (44:1 is RD).
But, if /24 is used, it doesn't have this on that "show"
but, it indeed, has that 202/101 in "show bgp vpn all labels" for that route A.
and, it succussfuly send that label 202 and route A to PE3 , etc.
But, packet failes here.
hope this will clear my questions.
Please take a look.
many thanks
Peng Li -
Need Help with Linksys router broadband-b
I have a Linksys wireless-B broadband router for some reason it just went crazy on me. My wireless card is a wireless - G . Now when i had Verizon DSL i got this router and a USB wireless adaptor from verizon. I had the usb adaptor on my wife computer and the router and modem on my notebook for six months we had there dsl service until we moved to a nother city. Once we had all of our service's transfered to the new home we could not get verizon DSL there.
So for a nother six months we had to use dial up and being that we run a home business dial up was just not up to the task. Well we got rid of dish network just to get cable T.V. just to get the cable broadband service. That's when i got a wireless card for my notebook anyway for six months the network was working just fine with the router and my wireless card.
Until Sept this year just a few weeks ago the router started going crazy. Before my note book was config for windows to connect linksys was connecting and i would see all conection in the site survey, and my own network also. Until a few weeks a go my network would not show .
So i call linksys the have me download some up dated firmware that would not install on my notebook or my wife computer after being on the phone for hours with linksys they come to tell me that the router is ok and working alright after all the test and steps they took me through with the router. Linksys tells me that there is something wrong with my PCM slot on my notebook or either my linksys wireless card. Ok First of all i can pick up signal on other networks and go on line like the Hilton Hotel when i go in there parking lot, Second i can pick up othr networks and get on line that are not secured sometimes so this tells me that there is Nothing wrong with my PCMI slot or the wireless card.
Now i took my router across the street to a friend house and guess what he gets a signal off the router with his notebook but i can not and when we plug the router in the AC outlet the internet light was flashing like crazy and my wireless card was not even in my notebook so that tells me that someone close was pulling signal off my router but i cant.
Can someone please explain this to me i want to get another router wireless - G this time but if there is something that can be done to get this one working like it should that would really help.
The Notebook has been checked out and config and that works well when i hook the either net plug in from the modem the router was config as well but i just can't get a connected to the router when i use the wireless card.Yes press and hold the reset button in back for 30 seconds and release. Wait 10 seconds and power cycle the router. Now connect to 192.168.1.1 username blank, password 'admin'. Now try.
-
I need advise and help with this problem .
First , I have been with Mac for many years ( 14 to be exact ) I do have some knowledge and understanding of Apple product .
At the present time I'm having lots of problems with the router so I was looking in to some info , and come across one web site regarding : port forwarding , IP addresses .
In my frustration , amongst lots of open web pages tutorials and other useless information , I come across innocent looking link and software to installed called Genieo , which suppose to help with any router .
Software ask for permission to install , and about 30 % in , my instinct was telling me , there is something not right . I stop installation . Delete everything , look for any
trace in Spotlight , Library . Nothing could be find .
Now , every time I open Safari , Firefox or Chrome , it will open in my home page , but when I start looking for something in steed of Google page , there is
''search.genieo.com'' page acting like a Google . I try again to get raid of this but I can not find solution .
With more research , again using genieo.com search eng. there is lots of articles and warnings . From that I learn do not use uninstall software , because doing this will install more things where it come from.
I do have AppleCare support but its to late to phone them , so maybe there some people with knowledge , how to get this of my computer
Any help is welcome , English is my learned language , you may notice this , so I'm not that quick with the respondGenieo definitely doesn't help with your router. It's just adware, and has no benefit to you at all. They scammed you so that they could display their ads on your computer.
To remove it, see:
http://www.thesafemac.com/arg-genieo/
Do not use the Genieo uninstaller! -
How many RE1000 on one Router.
How many RE1000 extenters can be attaced to one router ?
That's incorrect.
Wired access points can use the same SSID and create a wireless roaming network... Good wireless clients should be able to roam seamlessly between access points wired to the same network.
And with the advantage of full bandwidth this solution is far superior to repeaters... -
Multiple devices on one router (E1200)
Hello, I've been having this issue with my E1200 ever since I got it. It just can't handle more than one computer. With just my computer connected playing League of Legends, the connection is fine usually about 30-40 Mbps with 100 ping and no lag and I have the 50 down and 5 up from Time Warner (It's not TWC's fault because when I test it connected to the modem I get maximum speeds). But as soon as another computer goes on the Internet or does some simple browsing or video watching, the speeds decrease drastically for both computers down to less than 10 Mbps and gaming is horrendous getting pings ranging from 400-1000 constant. I've been in contact with Linksys support free many times but I can't anymore because to do not wish to spend money for support that should've solved this problem by now. They've told me to configure settings such as turning off WMM, reducing MTU to the appropriate number and changing security mode to WPA2 personal but none of those things made it able to support more than 1 computer without speed drops. I need help because it drives me nuts lagging constantly and I've restored the router so many times already.
That is pretty much my experience with that router (E1200v2), but only when a device with a poor signal is connected. If you get the offending device closer to the router, you may notice that the lag does not occur. It seems like the router behaves like this (affecting all connected devices) only when it's forcing itself through a weak signal.
Things that help:
- Connect the PC/console you play on via a wired connection. Wired connections are not affected by this issue
- Optimize your wireless settings: Get rid of 2.4 GHz phones, baby monitors, etc. (if you have any), and use inSSIDer to determine and use the best possible channel in your home
Things that don't help;
- Messing with WMM (leave it always enabled, unless some issue forces you to disable it)
- Using WPA2. Use it anyway, though. Never use WEP or leave your network open
- DMZ/Port Forwarding/Triggering
- Setting Up Internet Access Priority. This is not an Internet bandwidth issue, but a physical signal issue, apparently -
I have very thin, colored lines that have shown up on my IMac monitor screen. I don't know where they came from or how to get rid of them. I'm concerned now because I started with one and now have three. Does any know why this occurs or how to get rid of them?
I got an address from Applecare, although I can't place my hand on it right now. I didn't bother persuing the letter route myself as I didn't expect much. I know that the location was Cork, Ireland though as that where the UK Applecare is based as far as I'm aware. The best thing to do is to call Applecare (if it's free) and discuss the issue. State that you are not happy wit the fact that you will have to pay to have the problem resolved especiiay if it is an ongoing problem that has not been resolved. I ended up speaking to a senior manager of the Applecare team who then proceeded to tell me about mailing in my grievence to customer services division or something like that.
If I can find the address I may post it if I'm allowed.
In the case of age, Schools usually have a 5-year life-cycle as they tend to be used differently than consumer machines, i.e. being used constantly on a daily basis for at least 12 hours with no break. you would expect issues to appear after a few years, but I expect problems that arise through defects to be resolved and stay resolved. As I mentioned we had machines for around 2 years before the lines appeared and sent them to be repaired. I'm happy with that. What I am unhappy about is the fact that the problem has reappeared exactly in the same way and now I'm left with around 7 machines that I either pay loads to repair or, the more likely replace the machines with newer ones since the age is now big enough to warrant the replacement.
Sorry for the lengthy moan, but these are the reasons I purchased Apple ahrdware in the first place to avoid the "not our problem" stance some PC vendors usually take, similar to the Dell monitors thread mentioned in here somewhere.
Maybe you are looking for
-
Unable top convert the status of idoc from 03 to 12
Hi experts, I am working on idoc scenario on ECC6.0.I am pushing the idoc from R/3 system to PI7.0.I have done all the prerequisites involved to pushing idoc----- maintain Rfc destinations,maintain port,partner profile,distribution model.... But when
-
I am trying to simulate a digital clock for counting 0-60 seconds using two seven seg displays two 7447 two 7493 and two clock generators on Multisim but the problem is i cannot workout the frequency input to be given to the two 7493 ic's connected t
-
Im going to make a site to advertise my own web site services now taking on advice people have given me on here i want to get it all into one page I was thinking having groups of related items inside a main fixed width containing DIV, and a different
-
I'm working with iPhoto. Photos are not showing up on the Events page for me to organize. I've gone to the Photos section and organize them into events. However, they do not appear on the Events page. What am I doing wrong?
-
Additional contact was created after logging into icloud
Hi My apple ID was created in my contacts after I log on to my icloud account. Had to browse through all my contacts to find out as I was cleaning up my contacts. Did anyone else experience the same issue?