NO IPv6 on ISR with HWIC-AP???
Hi,
i just tried to enable IPv6 on of our ISRs with a wireless HWIC and found out it is NOT SUPPORTED if you use VLANS because the irb feature does not support IPv6 at all :O
anyone got an idea when CSCej50923 will be fixed?
Hi,
i just tried to enable IPv6 on of our ISRs with a wireless HWIC and found out it is NOT SUPPORTED if you use VLANS because the irb feature does not support IPv6 at all :O
anyone got an idea when CSCej50923 will be fixed?
Similar Messages
-
ISR with Adobe Interactive Forms: java.io.FileNotFoundException
Dear SDN readers,
I am currently working on an ISR with Adobe Interactive Forms project, and I must say that I find the configuration rather complex, however until now I kept making progress.
Now I've come to the next error given by webdynpro, when testing the scenario from the testbutton in transaction QISRSCENARIO:
java.io.FileNotFoundException:
.\temp\webdynpro\public\sap.com\pcui_gp~isr\webdynpro\
Components\com.sap.pcui_gp.isr.isrprocessevent.showform.
VcISRShowForm\
..\..\sap.com\pcui_gp~isr\IsrForm\
~wd_key18_1135844968237\unknown.pdf
... <i>(some more info)</i> ... (The system cannot find the path specified)
Indeed, this path does not exist on our portal. I assume this has something to do with credential files, but since the ADS is running fine from ABAP I cannot see why.
Has anyone experienced this before, or can someone point me into a direction to look for?
Thanks in advance and best regards, HansFound it. The problem occurs on the conbination ECC SP8 and Netweaver 13.
See note 874130, but make sure to read it in German.
Message was edited by: Hans Gmelig Meyling -
How will the Time Capsule support IPv6 and coop with the new emerging security threats that will emerge due to the new technical possibilities that IPv6 provide?
Cross your fingers and hope.
Obviously if there is any big or known threat Apple will send out a firmware fix.
But the TC is designed to be end user simple device. It has no firewall that is visible at any rate. I don't know that it truly doesn't have a firewall but it is not part of the end user controls.
IMO if you have major security concerns that go beyond end device firewall, which is where Apple do put most of the security, since firewall in the router is plainly not a stop to anybody deliberately downloading an infected file or website, and most end users.. do not want a firewall that prevents them using the web like a business does, where only certain ports are allowed. Everything else tough luck.. you are not allowed to use it. Then TC is unsuitable for you anyway.. buy a proper firewall appliance. -
Failed to access IPv6 only site with Firefox
I am assessing my company IPv6 readiness with Firefox. We have our internal DNS (dual stack) set up now responding with IPv6 address only for the host name of a test web server. I configured a test Windows machine (dual stack), with said DNS, and was able to ping with the test web server with host name.
Now comes Firefox. I can access my test web server with IPv6 URL (http://[a:b:c:d:e:f:g:h] kind) but when I cut and paste the host name (the one I successfully pinged with) , no, Firefox can't access it. What could be the problem that cause Firefox to not resolve that name to the proper address? Ping works fine, why doesn't Firefox?Make sure you don't have IPv6 disabled.
See that network.dns.disableIPv6 is not set to true (from about:config). -
Imposible to deploy Ipv6 on lan with catalyst 2950t ?
Is it imposible to deploy Ipv6 on Lan enviroment with catalyst 2950T access switch?
Thanks[similar question was asked in "ask the expert" so posting the same answer here as well]
- snip -
Hello,
This is a common question which comes quite often – What should I do with my old Layer2 switches (e.g. Catalyst 2900, 3900, 5000, etc.)? The simple answer is; IPv6 is transparent on L2 switches so no need to worry about it. However; there are couple cases where you would need to take a closer look.
Rightly asked; one is MLD snooping. Yes, if you are planning to have real IPv6 Multicast deployment then you would need to have products which support MLD snooping at Layer2. If you are not deploying IPv6 Multicast then I would not worry about it much.
Another one is when you have intelligent services on WLAN; may be it’s not Catalyst switch but it’s a AP where you are running intelligent services such as QoS, or ingress ACLs on AP or maybe actual controller based environment where you have thin APs and fat controllers in the back-end, but you have a distributed policy at the edge, if you are doing this and using IPv4 based protocols then you have to make sure that those products supports equivalent configurations for IPv6 capabilities or you would have serious road blocks.
Simple “2 rules of thumb” which I always tell customers:
There is no way you put 10lbs of sugar in a 5lb bag.
Always have plan/testing/validation/pilot before introducing any new protocol/technology in your production network.
Please take a look at http://www.cisco.com/en/US/prod/collateral/iosswrel/ps6537/ps6553/at_a_glance_c45-625859.pdf and lot of good information regarding Enterprise dual-stack case studies and recommendations at www.cisco.com/go/ipv6. I would recommend you to also work with your Cisco Account and Services teams for smooth Dual-Stack deployment.
Regards,
Salman -
PVDM2-12DM compatibility with HWIC-1CE1T1-PRI
Hi there,
I'm hoping someone can assist. The setup i am trying to get working is the following
User dials in over POTS to an ISDN30 Line. The ISDN30 line (3rd Party Supplier) is connected to our 2911 via a HWIC-1CE1T1-PRI module. We have inserted a PVDM2-12DM into the router to handle the POTS call.
Problem we have is that we cannot seem to get a modem tone when the user dials in. The ISDN line connects and the debug modem command shows the modem SETUP & INIT phase - see below
Aug 13 12:58:52.341: CSM: MODEM_REPORT from 0/0/0:0, call_id=0x61, event=0x1, cause=0x0, dchan_idb=0x2B2C837C
Aug 13 12:58:52.341: CSM: called_number 'number removed' modem_pool 2AA6CE14 deny_call FALSE
Aug 13 12:58:52.341: CSM: Next free modem = 0/202; statbits = 10020
Aug 13 12:58:52.341: Modem 0/202 CSM: modem is allocated, modems free=-1
Aug 13 12:58:52.341: Modem 0/202 CSM: Incoming call from Unknown to 'number removed', id 0x61
Aug 13 12:58:52.341: Modem 0/202 CSM: (CSM_PROC_IDLE)<--ISDN_CALL
Aug 13 12:58:52.453: CSM: MODEM_REPORT from 0/0/0:0, call_id=0x61, event=0x4, cause=0x0, dchan_idb=0x2B2C837C
Aug 13 12:58:52.453: Modem 0/202 CSM: MODEM_REPORT rcvd DEV_CONNECTED for call_id 0x61
Aug 13 12:58:52.453: Modem 0/202 CSM: (CSM_PROC_MODEM_RESERVED)<--ISDN_CONNECTED
Aug 13 12:58:52.453: Modem 0/202 CSMV12: SETUP(Answer) ISDN 0/0:0
Aug 13 12:58:52.453: Modem 0/202 CSMV12: configured for Answer(A-law) mode, with Null signaling, 0x0 tone detection
Aug 13 12:58:52.453: Modem 0/202 CSMV12: INIT(Answer) ISDN 0/0:0
Aug 13 12:58:52.453: %ISDN-6-CONNECT: Interface Serial0/0/0:0 is now connected to N/A N/A
Aug 13 12:58:52.485: CSM: csm_modem_event called
Aug 13 12:58:52.485: Modem 0/202 CSM: (CSM_PROC_WAIT_FOR_CARRIER)<--CSM_EVENT_MODEM_SETUP Aug 13 12:58:52.341: CSM:
but there is no modem tone or any more output from the debug commands.
The ISDN line is working fine as a normal ISDN dial in is successful.
Has any one tried this before or is there a known issue with this solution?Updated the IOS but made no difference. Turns out i was missing the line 'network-clock-participate wic 0' Added this to the config and managed to get incoming POTS calls. Only problem now is that the PITS call won't stay up for more than 5 seconds. Looking at the Modem AT registry settings.
-
Hi Experts,
We are building a custom HR application to automate various HR processes
like New Hire, Termination, etc.. Due to certain internal issues we are
unable to use the standard business package for MSS (and hence PCR screens
with adobe forms). We have to create custom webdynpro abap screens for the
whole application. Now i would like to check if there is a possibility to
use the ISR framework with a custom webdynpro abap application.
I checked the transaction QISRSCENARIO but i could not find any option for
webydnpro abap in "Entry type for Web".
Have anyone of you tried such a scenario earlier with ISR's? Is there no way
that we can use webdynpro ABAP applications with ISRs? Or do we have any
work around for this.
Please send in your valuable comments.
Thanks in advance!!
Regards,
GayathriHi
First, The ISR Scenarios are not for iviews. They are just a part of a view. We can use webdynpro ABAP with the ISR Scenarios. We need to embed these forms into our webdynpro ABAP views and code accorsdigly to get the data. There are some standard components that are provided by SAP to handle ISR Forms with Webdynpro. Check these.
Regards,
Srikanth. -
IPv6 prefix delegation with AVPair ipv6:delegated-prefix
Dear all
I have a LNS running c7200-adventerprisek9-mz.124-24.T4.bin.
I am trying to delegate IPv6 prefixes to vpdn users as described in
http://www.cisco.com/en/US/customer/prod/collateral/iosswrel/ps6537/ps6553/whitepaper_c11-602131.html#wp9000270
From this whitepaper: "When the delegating provider edge router supports RFC 4818, only one user profile is stored for the RADIUS server. In addition the RADIUS server may be configured with a DNS server per user, which overwrites the providers edge router's default DNS server address configured in the DHCP pool"
Our Freeradius has the following user entry according to the mentioned whitepaper:
user@foobar Auth-Type = Local, Password == "foo"
Service-Type = Framed-User,
Framed-Protocol = "PPP",
Framed-IP-Address = "10.0.0.1",
Framed-IP-Netmask = "255.255.255.255",
Framed-MTU = "1492",
Framed-Compression = "Van-Jacobson-TCP-IP",
Cisco-AVPair = "ipv6:prefix#1=201:DB8:F1:0::/64",
Cisco-AVPair += "ipv6:delegated-prefix=201:DB8:AAAA::/48",
Cisco-AVPair += "lcp:interface-config=mtu 1460"
If I try to connect this user I get the PPP-Link established with prefix 201:DB8:F1:0::/64 as expected. But instead of providing the delegated prefix from the AVPair the router queries the radius server again for the user user@foobar-dhcpv6pd which I have not configured since I assume that this router "supports RFC 4818", right?
So why does it as for user@foobar-dhcpv6pd ?
Thanks for any hint,
GrischaHi,
RFC4818 is supported starting with 15.1(1)T or later. 151-2.T2a seems to have an issue though.
HTH
Laurent. -
Hi Experts,
We are building a custom HR application to automate various HR processes
like New Hire, Termination, etc.. Due to certain internal issues we are
unable to use the standard business package for MSS (and hence PCR screens
with adobe forms). We have to create custom webdynpro abap screens for the
whole application. Now i would like to check if there is a possibility to
use the ISR framework with a custom webdynpro abap application.
I checked the transaction QISRSCENARIO but i could not find any option for
webydnpro abap in "Entry type for Web".
Have anyone of you tried such a scenario earlier with ISR's? Is there no way
that we can use webdynpro ABAP applications with ISRs? Or do we have any
work around for this.
Please send in your valuable comments.
Thanks in advance!!
Regards,
GayathriHi
First, The ISR Scenarios are not for iviews. They are just a part of a view. We can use webdynpro ABAP with the ISR Scenarios. We need to embed these forms into our webdynpro ABAP views and code accorsdigly to get the data. There are some standard components that are provided by SAP to handle ISR Forms with Webdynpro. Check these.
Regards,
Srikanth. -
IPv6 not working with Netgear N450 CG3000Dv2
IPv6 is not working with my new Netgear cable modem router.Model N450/CG3000Dv2
Hardware Version R2.05A2
Software Version V1.02.10T
I called Comcast and Netgear support and they were no help.
IPv4 works but not IPv6 and the blue downstream channel LED never stops blinking.Can this be be made to work with IPv6 or should I take it back to the store?Yes, that will work because it is bypassing the router and modem is in bridge mode.
I am investigating this further, but in the mean while I have enabled dual stack on your device, can you check IPv6 on your end now? Should be up and running...
-Chirag -
IPv6 DNS Questions with DirectAccess
Hey,
I'm hoping someone can answer some fundamental questions that I am having around DirectAccess for a customer that I'm working with. We are putting in Direct Access with a more complicated scenario, but there are some fundamental questions about IPv6
that I cannot quite get answered. We have the tunnel established over IPHTTPS, however, I am not able to resolve internal resources.
We have a red x next to the DNS Monitoring in the Operations Console. DNS64 is green.
1) I know that you don't need IPv6 on our internal servers to use DirectAccess. However, in this situation they have IPv6 unbound from the NICs on all the servers except for the DA server (and the Windows 7 clients).
2) Brings me to the DNS question. Internal DNS servers do not have IPv6 bound to the NIC and they do not register AAAA records in DNS. Does that pose any issues with the NRPT?
Thanks for your help!
BobHello,
After talking with Microsoft support here was the actual issue.
First, the issue around the DNS going red:
Set-DAClientDnsConfiguration -DnsSuffix '.internal.company.com' -DnsIPAddress @('ipv6 address of the DA server') -Verbose -ComputerName 'DAServer.internal.company.com’
That fixed that issue, however, we were still having issues with the routing to internal servers.
We did the following further troubleshooting with Microsoft,
We checked if client was able to get to the IPv6 address of the server – failed
Checked if the client was able to get to the IPHTTPS address of the server – worked
On the DA server itself, we were unable to ping the IPv6 address of the server (fd58:c2f1:4a56:5555::1). We tried pinging this IP address using the IPHTTPS address on the DA server and that failed
as well.
Since we were unable to get to the IP address on the server itself, we just removed and re-added the IPv6 address of the server, on the Internal NIC, and we were then able to ping the server’s IPv6
address.
But, clients were still unable to connect.
So we realized that the forwarding must have not been enabled on the NICs.
We checked for Forwarding being enabled on the IPHTTPS and Internal interface of the DA server
and found that this was not enabled on the Internal interface.
Once we enabled this, client machine was then able to connect to internal resources over Direct Access.
To enable forwarding on the NIC we ran the below command,
netsh int ipv6 set int <interface_id> forwarding=enabled
Thanks,
Bob -
IPV6 on EA4500 with Roadrunner Time Warner Cable
How can I get IPV6 connectivity using rr. Does it has to be automatic or manual, Is there anyone with RR getting IPV6?
Linksys EA4500When i had the EA-4500 with comcast it was plug and play. With RR first make sure they have native IPV6 ready on there side alot of isp's dont yet comcast was ahead of the game with IPV6. Also make sure your modem is IPV6 ready again most are not. Make sure your router settings are enabled for ipv6 this should be enabled by default in the 4500 but worth a check. Lastly if your running windows xp ipv6 mujst be turned on in the computer. If the answer to all is yes then you should get this running a IPV6 test.
-
IPv6 - PPPOE Login with Cisco 886
Hi all,
i'm trying to get online with IPv6 with my Cisco 886. But i failed.
Perhaps you have any hints for me.
My Config:
interface Dialer0
description *** IPv6 ***
no ip address
ip flow ingress
ip virtual-reassembly in
encapsulation ppp
load-interval 30
dialer pool 1
ipv6 address autoconfig default
ipv6 enable
fair-queue
ppp authentication chap callin
ppp chap hostname USERNAME
ppp chap password PASSWORD
ppp pap refuse
no cdp enable
(This config works well with an Cisco 836!)
PPP protocol negotiation debugging tells me:
Jan 10 10:26:06.588 CET: Vi2 PPP: Phase is FORWARDING, Attempting
Forward
Jan 10 10:26:06.588 CET: Vi2 PPP: Queue IPCP code[1] id[1]
Jan 10 10:26:06.588 CET: Vi2 PPP: Queue IPV6CP code[1] id[1]
Jan 10 10:26:06.592 CET: Vi2 PPP: Phase is ESTABLISHING, Finish LCP
Jan 10 10:26:06.592 CET: Vi2 PPP: Phase is UP
Jan 10 10:26:06.592 CET: Vi2 PPP: Process pending ncp packets
Jan 10 10:26:06.592 CET: Vi2 IPCP: Redirect packet to Vi2
Jan 10 10:26:06.592 CET: Vi2 IPCP: I CONFREQ [UNKNOWN] id 1 len 10
Jan 10 10:26:06.592 CET: Vi2 IPCP: Address 192.168.1.13
(0x0306D918C00D)
Jan 10 10:26:06.592 CET: Vi2 LCP: O PROTREJ [Open] id 3 len 16
protocol IPCP (0x0101000C0306D918C00D)
Jan 10 10:26:06.592 CET: Vi2 IPV6CP: Redirect packet to Vi2
Jan 10 10:26:06.592 CET: Vi2 IPV6CP: I CONFREQ [UNKNOWN] id 1 len 14
Jan 10 10:26:06.592 CET: Vi2 IPV6CP: (0x010A021C0FFFFE38381B)
Jan 10 10:26:06.592 CET: Vi2 LCP: O PROTREJ [Open] id 4 len 20
protocol IPV6CP (0x01010010010A021C0FFFFE38381B)
Jan 10 10:26:06.596 CET: %LINEPROTO-5-UPDOWN: Line protocol on
Interface Virtual-Access2, changed state to up
What could be the reason for the IPV6CP Reject?
Best regards
HaraldHi Laurent,
if i change the dialer interface with "ip address negotiated" the probelm is still existent.
Furthermore i'm still wonding about the same config which is working on Cisco 836.
I'm using: "c880data-universalk9-mz.151-2.T3.bin"
Regards
Harald -
IPv6 Network Flood with Wireless Hyper-V Virtual Network
Recently, on our core switch (also our layer 3 router) we regularly see a high cpu load. This cpu load is the cause of packet loss and bad connections. This is happening for almost two weeks now.
Network inspection shows us that there is a flood of IPv6 Neighbor Advertisements originating from what seems the same IPv6 Address but from different Hardware (MAC) addresses. In each second there are up to a 1500 packets per second advertising
the same IPv6 address. See below for more details about these packets.
Tracing the MAC addresses to their owner learns that all clients are using Windows 8 with Hyper-V and that they have an External Virtual Network bound to their Wireless/WiFi Network Adapter. Removing this virtual network stops sending
those packets. Because multiple hosts are involved it may be necessary to remove this network on all of these hosts.
As is visible in the following packet dump this is an unsolicited neighbor advertisements, resulting in an update in the neighbor table on our IPv6 router. These updates are probably the course of the high cpu load.
Frame: Number = 188594, Captured Frame Length = 86, MediaType = ETHERNET
+ Ethernet: Etype = IPv6,DestinationAddress:[33-33-00-00-00-01],SourceAddress:[00-24-D7-76-C4-68]
- Ipv6: Next Protocol = ICMPv6, Payload Length = 32
+ Versions: IPv6, Internet Protocol, DSCP 0
PayloadLength: 32 (0x20)
NextProtocol: ICMPv6, 58(0x3a)
HopLimit: 255 (0xFF)
SourceAddress: FE80:0:0:0:6F7:E4FF:FE4A:2267
DestinationAddress:
FF02:0:0:0:0:0:0:1
- Icmpv6: Neighbor Advertisement, Target = FD00:4953:4E4C:20:6F7:E4FF:FE4A:2267
MessageType: Neighbor Advertisement, 136(0x88)
Code: 0 (0x0)
Checksum: 3593 (0xE09)
- NeighborAdvertisementFlag: 536870912 (0x20000000)
R: (0...............................) Not router
S: (.0..............................) Not solicited
O: (..1.............................) Override
Rsv: (...00000000000000000000000000000)
TargetAddress:
FD00:4953:4E4C:20:6F7:E4FF:FE4A:2267
- TargetLinkLayerAddress:
Type: Target Link-Layer Address, 2(0x2)
Length: 1, in unit of 8 octets
Address:
00-24-D7-76-C4-68
Because the target address is the same in all packets but the MAC address changes, it seems that there is something on the hosts that is forwarding/proxying these packets (and only those packets) back to the network it came from, but only
after changing the targetlinklayeraddress in the advertisement. This process is described in
RFC4389.
One host with this problem on the network will not resolve in a flood. Only when more hosts with this issue are active the flood occurs. It seems that two or more hosts are required to magnify the packets send by the others.
Hyper-V on Windows 8 makes use of a Network Bridge in software to enable the use of wireless network adapters. Is this the cause of all those packets?
Some of the hosts also had Windows Phone 8 SDK installed. The installation of this SDK enables some networks in Hyper-V. Maybe some configuration change is made enabling the proxying of those packets back to the network they came from?
After removing the SDK the hosts are still transmitting too much packets.
The first occurrence of this flood was on the day after Microsoft’s update Tuesday. Is it possible that one of the updates may be the cause of this? There is one mayor update
KB2770917 which includes updates to DHCPv6 and NDIS library’s. Again, removing this update does not solves the problem.
Updating our switch/router to a higher level of firmware may lessen the impact, this is something I can try. But it shall not solve the problem, the switch is not the source of the packets.
Hopefully somebody recognizes this issue. All ideas are welcome.
Regards,
MartijnHello today we have a little breakthrough. Our Accesspoints are connected to a Cisco C2960S Switch. We have enabled storm control on the switches. This blocks only the multicast packets that were flooding the wireless and the wired network.
We determined this using PRTG snmpv2 connection to the Cisco. Whenever the network flooding was occurring the packets per seconds went in the thousands. We now have put the following code on the Gbit interface: (The last line with the storm-control setting
fixed flooding the network at least partially because the multicast packets cannot leave the Accesspoint to travel to other accesspoints or to wired devices.)
Hope this helps others as well.
interface GigabitEthernet1/0/7
description AP06
switchport trunk allowed vlan 1-99,101-4094
switchport mode trunk
speed 1000
duplex full
storm-control multicast level pps 200 50
end -
I am trying to get NAT working on a Cisco 2801 with HWIC-4ESW.
I have a 2801 that had a failed Fe0/1 port. The Fe0/1 port was used to give sub-interface Fe0/0.200 access to internet. We installed a HWIC-4ESW into the 2801. I have successfully moved the sub-interfaces ( 0/0.1 , 0/0.100 , and 0/0.200 ) from the Fe0/0 to the HWIC-4ESW. I have reconfigured the Fe0/0 to connect to my ISP. However, I cannot get traffic from vlan200 to pass to the internet over Fe0/0. I have a guest wireless network set for vlan 200. Clients get an IP address in the appropriate range (192.168.200.0), but they cannot get to the internet. Below I have included the results of "sh ip int brief" and some of the "sh run". I think that it is something simple, but I canot get it working.
Help would be appreciated.
Interface IP-Address OK? Method Status Protocol
FastEthernet0/0 ***.**.244.194 YES manual up up
FastEthernet0/0.200 unassigned YES unset deleted down
Service-Engine0/0 192.168.100.254 YES TFTP up up
FastEthernet0/1 unassigned YES NVRAM administratively down down
FastEthernet0/1/0 unassigned YES unset up up
FastEthernet0/1/1 unassigned YES unset up up
FastEthernet0/1/2 unassigned YES unset administratively down down
FastEthernet0/1/3 unassigned YES unset administratively down down
Serial0/3/0:0 unassigned YES unset down down
Serial0/3/0:1 unassigned YES unset down down
Serial0/3/0:2 unassigned YES unset down down
Serial0/3/0:3 unassigned YES unset down down
Serial0/3/0:4 unassigned YES unset down down
Serial0/3/0:5 unassigned YES unset down down
Serial0/3/0:6 unassigned YES unset down down
Serial0/3/0:7 unassigned YES unset down down
Serial0/3/0:8 unassigned YES unset down down
Serial0/3/0:9 unassigned YES unset down down
Serial0/3/0:10 unassigned YES unset down down
Serial0/3/0:11 unassigned YES unset down down
Serial0/3/0:12 unassigned YES unset down down
Serial0/3/0:13 unassigned YES unset down down
Serial0/3/0:14 unassigned YES unset down down
Serial0/3/0:15 unassigned YES unset down down
Serial0/3/0:23 unassigned YES NVRAM up up
Vlan1 192.168.1.254 YES NVRAM up up
Vlan100 192.168.100.254 YES NVRAM up up
Vlan200 192.168.200.254 YES NVRAM up up
NVI0 ***.12.244.194 YES unset administratively down down
ip source-route
no ip dhcp use vrf connected
ip dhcp excluded-address 192.168.100.1 192.168.100.99
ip dhcp excluded-address 192.168.100.200 192.168.100.254
ip dhcp excluded-address 192.168.200.1 192.168.200.99
ip dhcp excluded-address 192.168.200.200 192.168.200.254
ip dhcp pool Phones
network 192.168.100.0 255.255.255.0
option 150 ip 192.168.100.254
default-router 192.168.100.254
dns-server 192.168.1.8
ip dhcp pool guestwireless
network 192.168.200.0 255.255.255.0
default-router 192.168.200.254
dns-server 8.8.8.8 8.8.4.4
ip cef
no ip domain lookup
ip domain name pwa.com
ip name-server 8.8.8.8
ip name-server 8.8.4.4
controller T1 0/3/0
pri-group timeslots 1-16,24
controller T1 0/3/1
shutdown
gw-accounting aaa
gw-accounting syslog
interface FastEthernet0/0
description Guestwireless route to internet
ip address ***.**.244.194 255.255.255.240
ip nat outside
ip virtual-reassembly
duplex auto
speed auto
interface Service-Engine0/0
ip unnumbered Vlan100
service-module ip address 192.168.100.200 255.255.255.0
service-module ip default-gateway 192.168.100.254
no cdp enable
interface FastEthernet0/1
no ip address
shutdown
duplex auto
speed auto
interface FastEthernet0/1/0
description trunk to switch
switchport mode trunk
duplex full
speed 100
interface FastEthernet0/1/1
description voice
switchport access vlan 100
interface FastEthernet0/1/2
shutdown
interface FastEthernet0/1/3
shutdown
interface Serial0/3/0:23
no ip address
encapsulation hdlc
isdn switch-type primary-ni
isdn incoming-voice voice
isdn supp-service name calling
no cdp enable
interface Vlan1
description Data
ip address 192.168.1.254 255.255.255.0
interface Vlan100
description voice vlan
ip address 192.168.100.254 255.255.255.0
h323-gateway voip bind srcaddr 192.168.100.254
interface Vlan200
description Guestwireless Data
ip address 192.168.200.254 255.255.255.0
ip nat inside
ip virtual-reassembly
ip forward-protocol nd
ip http server
ip http authentication local
ip http secure-server
ip http timeout-policy idle 60 life 86400 requests 10000
ip http path flash:
ip nat inside source list 10 interface FastEthernet0/0 overload
ip route 0.0.0.0 0.0.0.0 192.168.1.1
ip route 192.168.100.200 255.255.255.255 Service-Engine0/0
ip route 192.168.200.0 255.255.255.0 FastEthernet0/0
ip radius source-interface Vlan100
access-list 10 permit 192.168.200.0 0.0.0.255So, I just built this in the lab, and it seemed to work ok. I attached a sparse config, but it does let my host on the GuestWireless get the internet via NAT.
R2#sh ip nat translations vrf GuestWireless
Pro Inside global Inside local Outside local Outside global
icmp 17.12.244.194:5 192.168.200.1:5 1.1.1.1:5 1.1.1.1:5
R2#sh ip route vrf GuestWireless
Routing Table: GuestWireless
Codes: C - connected, S - static, R - RIP, M - mobile, B - BGP
D - EIGRP, EX - EIGRP external, O - OSPF, IA - OSPF inter area
N1 - OSPF NSSA external type 1, N2 - OSPF NSSA external type 2
E1 - OSPF external type 1, E2 - OSPF external type 2
i - IS-IS, su - IS-IS summary, L1 - IS-IS level-1, L2 - IS-IS level-2
ia - IS-IS inter area, * - candidate default, U - per-user static route
o - ODR, P - periodic downloaded static route
Gateway of last resort is 17.12.244.195 to network 0.0.0.0
17.0.0.0/28 is subnetted, 1 subnets
C 17.12.244.192 is directly connected, FastEthernet0/0
C 192.168.200.0/24 is directly connected, Vlan200
S* 0.0.0.0/0 [1/0] via 17.12.244.195
Maybe you are looking for
-
IPhoto with Adobe Photoshop Elements 4 and Adobe Bridge
I have not used iPhoto before now as I have been downloading photos from my Canon and Nikon cameras using their software. I have now moved everything into iPhoto but cannot find iPhoto using Adobe Bridge so I am unable to do any editing using Element
-
I have a new laptop and I want to set up a new account. Can I do this when I already have an account set up on my old laptop? what will have to the old account if I set up a new one? how do i set up a new account?
-
How to install driver for Windows 8.1 without physical connection
I have a Photosmart 7762 printer connected to a NAS box (with wiring all very difficult to get to behind various office units) and want to be able to print to it from a new Windows 8.1 PC that is installed (again with difficult to get to wiring) in a
-
Xslt ecc6 ISO-8859-1 problem when download xml file
Hello, i create an ABAP test program: *& Report Z_ABAP_TO_XML * *& Write the data from an internal ABAP table into an XML document, * *& and write it onto your frontend computer * RE
-
Using video from another site. (not YouTube)
I am working for a parent company and would like to use a video on my website from their website. I asked for the video and they said they cannot give it to me but would allow me to use it if I can figure out how to set up the source code. I have tri