Ping from juniper to host successful from host to juniper unsuccessful

Verify you've permitted the Juniper to reply to Ping, by default it should not from any interface.
If you run a traceroute from LAN to 8.8.8.8 and you're missing the Juniper as a hop that would indicate it not responding to Ping

Have an issue i'm not sure how to resolve.  I have a client with a Juniper SRX100B.  3 interfaces are being used.  One is connected to the internet with a public IP.  Second is connected to MPLS network.  Third is connected to an HP Procurve 2610 and the port is configured as switchport access assigned to vlan.0. 
The MPLS interface and vlan.0 is dynamically routed with OSPF.  Show route has all needed route to reach other sites.
internet interface is untrusted
MPLS interface is trusted
Switch interface is trusted
When I ping from the Juniper I can ping any host on the network but when I ping from a host on the LAN it times out.  If I can ping from the juniper to a host on the LAN doesn't that mean routing is ok?
Don't know.
This topic first appeared in the Spiceworks Community

Similar Messages

  • Can't ping from DC1 behind TMG1 to DC2 behind TMG2 on a site-to-site VPN connection

    Hi,
    I have a weird problem. I have two TMG servers on each site in a hyper-v lab environment. I have been able to establish the site-to-site VPN successfully however when I ping from DC1 behind TMG1(on site 1) to TMG2, DC2, i am able to ping. However the opposite
    doesn't work. After some trial and error, I figured out that the one initiating the demand-dial request is able to ping the other site, not vice-versa..very strange. I would like to know whether ICMP requests could be achieved bi-directionally..
    Secondly, I am able to ping from TMG1 to all the clients sitting behind TMG2 (including the TMG host), however the clients sitting behind TMG1 can't ping TMG2 neither any of the clients behind it. I tried every possible combination under the firewall policies
    but of complete vain. hell, I am starting to develop a very bad feeling about this product because of making such simple tasks overly complex. I mean, if it were a Cisco or Sonicwall, we could have done this so easily. 
    What my final motive is to send LDAP requests from DC1 to DC2 and vice-versa over a site-to-site VPN so that I could set up 2 different sites in AD on different subnets and then proceed with configuring DAG. But if this simple thing turns out to be such
    major roadblock, dunno how am I gonna pass DAG traffic over it.
    Can someone PLEASE help me!! I am completely exhausted researching on this issue.
    Regards,
    Dman

    Hi,
    For site2site VPN, you must create proper network rule and network set and you need to create proper access rule to allow or deny the traffic between VPN network and any other network.
    http://technet.microsoft.com/en-us/library/bb838949.aspx
    Best Regards
    Quan Gu

  • Ping from lower security interface to a higher

    Hello,
    I have a Cisco 5520 ASA firewall with a direct connection to a Checkpoint firewall.  On the inside network of my ASA i have a server that needs to ping a server on the dmz on the Checkpoint and vice versa.  So i have the correct routing and firewall rules on both devices.
    I can successfully ping from my server on the INSIDE interface on the cisco asa to the server on the DMZ on Checkpoint but i cant ping in the other direction.
    Q Is this because i am trying to go from a lower security interface on the asa to a higher one?
    I cant be sure if the error is on my asa or the checkpoint because neither is showing anything in the logs?
    Everything else on both firewalls is fine.
    regards,
    Kevin

    Hi,
    Its hard to tell what the actual problem is at the moment.
    With regards to the "security-level" value, the situation is if the interface doesn't have an ACL configured on it then traffic sourced from networks behind it will be allowed to networks located behind interfaces of lower "security-level". If the source interface for the direction that is not working doesnt hold an ACL and has lower "security-level" than the destination interface then you will have to configure an interface ACL to allow this traffic.
    Then again, the problem might be as simple as the server simply rejecting the ICMP Echo but allowing itself to ICMP Echo some remote destination and receive an Echo Reply for that. In other words, the server can ICMP remote hosts but wont accept ICMP Echo from remote hosts. It might reply to hosts on the directly connected network. So if there is no clear reason for the traffic to not go through I would consider checking the server software firewall.
    It might also be that the working direction has been configured with Dynamic PAT and there is no correct translation for the other direction to enable sending ICMP to the server.
    You can easily test the ASA configuration with the "packet-tracer" so that would be the first natural step to determening the reason of the problem or atleast narrowing it down.
    packet-tracer input icmp 8 0
    In the above command you would use the interface nameif behind which the ICMP Echo is coming from (8 0 = ICMP Echo). The source IP address is obvious. The destination IP address should be the NAT IP address of the server IF there is NAT being performed. If NO NAT is done for the destination then you naturally use the real IP address.
    Hope this helps
    - Jouni

  • Unable to ping from mz to virtual interface of asa

    Dear All,
    one of my SNMP server 10.242.103.42 sits in MZ zone,and ACE 4710 is connected to core switch,coreswitch is connected to firewall asa.
    Now iam trying to ping from MZ zone SNMP server to loadbalancer ip 10.242.105.1,iam unable to ping my LB interface to discover SLB on my SNMP server.
    plese help me
    srinivas

    Is your device seeing the mac-address of the ASA in order to send the packets? What do the logs show on the firewall itself? Can you see the ARP entry on the ASA firewall for that host?
    Mike

  • How do I block pings from the outside to the ASA 5505 outside interface?

    I was asked to block pings from the internet to the outside interface of our ASA-5505 firewall.  I found a post that said to enter "icmp deny any outside", however that does not do it.
    I created an ACL to try and do the trick, also to no avail:
    access-list outside_in extended permit icmp any any echo-reply
    access-list outside_in in interface outside
    access-group outside_in in interface outside
    Anyone have a clue what I'm doing wrong?  I'm not the firewall guy as you can tell.  :/
    Thanks in advance...
    Block / Deny ICMP Echo (Ping) on Cisco ASA Outside Interface
    Most networks that you protect with a Cisco ASA device, will probably want to deny ICMP (maybe not all ICMP types, but a lot of network admins will want to block ICMP Echo, etc.) on the outside interface. This will make the network harder to find through external enumeration, but not impossible.
    ASA5505(config)#icmp deny any outside
    You will deny ICMP on the outside interface, but if you include ICMP as a protocol in the default global policy map, you can ping from the inside to any host on the outside, and it will be permitted back through the ASA, as it knows about the previous ICMP “connection

    You are allowing echo-reply, thus it will reply to a ping
    try this ACL:
    icmp deny any echo-reply outside
    From: 
    https://supportforums.cisco.com/thread/223769
    Eric

  • How to allow ping from inside to outside in 2900 router?

    Hi,
    I have a Cisco router 2900 with firewall, i need to know how can i allow the ping from self zone to outside zone, i trried to create policy from self to outside but i still didn't allow ping or tracert, i get that message when i try to ping from cisco router:
    "Unrecognized host or address, or protocol not running"
    any help will be appreciated.
    Thank you

    Hi jcarvaja
    here is the used configuration:
    Building configuration...
    Current configuration : 5584 bytes
    ! Last configuration change at 09:00:20 UTC Tue Apr 9 2013 by admin
    version 15.1
    service timestamps debug datetime msec localtime show-timezone
    service timestamps log datetime msec localtime show-timezone
    no service password-encryption
    service udp-small-servers
    service tcp-small-servers
    service sequence-numbers
    hostname Router
    boot-start-marker
    boot-end-marker
    security authentication failure rate 3 log
    security passwords min-length 6
    no logging buffered
    no logging console
    enable secret 5
    no aaa new-model
    no ipv6 cef
    ip source-route
    ip gratuitous-arps
    ip icmp rate-limit unreachable 1
    ip cef
    ip name-server 163.121.128.134
    ip name-server 163.121.128.135
    ip port-map user-custom-fleet port tcp 2000 list 1
    multilink bundle-name authenticated
    crypto pki token default removal timeout 0
    crypto pki trustpoint TP-self-signed-324261422
    enrollment selfsigned
    subject-name cn=IOS-Self-Signed-Certificate-324261422
    revocation-check none
    crypto pki certificate chain TP-self-signed-324261422
    certificate self-signed 01
      30820229 30820192 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
      30312E30 2C060355 04031325 494F532D 53656C66 2D536967 6E65642D 43657274
      69666963 6174652D 33323432 36313432 32301E17 0D313330 34303930 38343034
      375A170D 32303031 30313030 30303030 5A303031 2E302C06 03550403 1325494F
      532D5365 6C662D53 69676E65 642D4365 72746966 69636174 652D3332 34323631
      34323230 819F300D 06092A86 4886F70D 01010105 0003818D 00308189 02818100
      B8ABD60F 8C879B3B BC1C1643 48059AD2 F940A700 6D58161E 37D53E6E E028B806
      61EAA942 CED2A3C6 3FB3A47E 20E05B10 0941A9D8 38FFA6F9 D2B9E52C 225A57BA
      14F8842A A26E7E02 38E9F7C8 328504D0 5C3EEE41 CC75B237 BBD07CBA 1A850540
      2A5AAFAD 4553FB03 0E366211 9AC09967 4DC03082 0AF546A3 F6AA2739 1D8A8AA9
      02030100 01A35330 51300F06 03551D13 0101FF04 05300301 01FF301F 0603551D
      23041830 16801428 FEEB3910 B7A1D374 1F86BCD5 96CEDF75 8DF11E30 1D060355
      1D0E0416 041428FE EB3910B7 A1D3741F 86BCD596 CEDF758D F11E300D 06092A86
      4886F70D 01010405 00038181 006BBF7A 430905F6 D5B27B0D 96315504 87816DAA
      B5EA86D9 6E9A1D58 7B328C88 A6A358D0 00D035A9 8CDDEC41 15AF0108 F5CB1072
      B0485D7D CFC0D0CB 71E9B153 FB7B8B40 40C157E4 B254D01C 890D615F D8395545
      F0B47E0B 57341EB2 C0CE0039 DC18EAD6 078986F0 A5A5D04F D5041DB6 23CAA002
      4901248C 95B61A0B 3ED5B26A EF
          quit
    license udi pid CISCO2901/K9 sn FCZ1526C3JL
    object-group service Outside-Reply
    icmp echo-reply
    username admin privilege 15 secret 5
    redundancy
    ip finger
    ip tcp synwait-time 10
    ip ssh time-out 60
    ip ssh authentication-retries 2
    class-map type inspect match-any Deny_ALL
    match access-group name dwdwd
    class-map type inspect match-any Inside-Outside
    match protocol http
    match protocol https
    match protocol dns
    class-map type inspect match-any ICMP_RQST
    match protocol icmp
    policy-map type inspect Inside-Outside
    class type inspect Inside-Outside
      inspect
    class class-default
      drop
    policy-map type inspect Self_to_Outside
    class type inspect ICMP_RQST
      inspect
    class class-default
      drop
    policy-map type inspect Outside_to_Self
    class type inspect Deny_ALL
      pass log
    class class-default
      drop
    zone security IN
    zone security OUT
    zone-pair security Self_to_Outside source self destination OUT
    service-policy type inspect Self_to_Outside
    zone-pair security Outside_to_Self source OUT destination self
    service-policy type inspect Outside_to_Self
    zone-pair security Inside-Outside source IN destination OUT
    service-policy type inspect Inside-Outside
    interface GigabitEthernet0/0
    ip address 101.101.100.245 255.255.255.0
    ip mask-reply
    ip directed-broadcast
    ip flow ingress
    duplex auto
    speed auto
    interface GigabitEthernet0/1
    description $FW_INSIDE$
    ip address 49.31.152.80 255.255.255.248
    ip mask-reply
    ip directed-broadcast
    ip flow ingress
    zone-member security IN
    duplex auto
    speed auto
    interface Serial0/0/0
    no ip address
    ip mask-reply
    ip directed-broadcast
    ip flow ingress
    encapsulation frame-relay IETF
    no fair-queue
    frame-relay lmi-type q933a
    interface Serial0/0/0.16 point-to-point
    description $FW_OUTSIDE$
    ip address 172.17.18.122 255.255.255.252
    ip mask-reply
    ip directed-broadcast
    ip flow ingress
    ip verify unicast reverse-path
    zone-member security OUT
    frame-relay interface-dlci 16  
    interface Serial0/0/1
    no ip address
    ip mask-reply
    ip directed-broadcast
    ip flow ingress
    shutdown
    clock rate 2000000
    ip forward-protocol nd
    ip http server
    ip http access-class 2
    ip http authentication local
    ip http secure-server
    ip route 0.0.0.0 0.0.0.0 Serial0/0/0.16
    ip identd
    ip access-list extended ICMP
    remark CCP_ACL Category=128
    permit ip any any
    ip access-list extended deeef
    remark CCP_ACL Category=128
    permit ip any any
    ip access-list extended dwdwd
    remark CCP_ACL Category=1
    permit object-group Outside-Reply any any
    access-list 1 remark CCP_ACL Category=1
    access-list 1 permit 196.219.234.77
    access-list 2 remark Auto generated by SDM Management Access feature
    access-list 2 remark CCP_ACL Category=1
    access-list 2 permit 101.101.100.0 0.0.0.255
    access-list 2 permit 10.20.10.0 0.0.1.255
    no cdp run
    control-plane
    line con 0
    login local
    transport output telnet
    line aux 0
    login local
    transport output telnet
    line vty 0 4
    login local
    transport input all
    line vty 5 15
    login local
    transport input all
    scheduler allocate 20000 1000
    end

  • Can ping from Windows to Mac but not from Mac to Windows

    Hi all!
    New owner of a Mac Mini. Know nothing about it, so NewBie Alert!
    Windows PC with two NIC's. One connected to the internet, one connected to the Mac by using a crossover cable. Internet Connection Sharing on the Windows PC and the Mac can go out to the internet so there is connectivity between the Mac and the Windows PC.
    The problem: I cannot ping the Windows PC from the Mac. I can ping the Mac from the Windows PC, so my suspicion is that it has something to do with a firewall on the Mac, but as far as i know the firewall on the Mac is switched off. On the Windows PC the firewall is definitely switched off.
    Who can help me getting this working?
    Thanks,
    Ton.

    There can be multiple problems here:
    - no ping service provided on the Windows PC
    - ping traffic blocked by a firewall at either end
    - pinging the wrong host: You have two NICs in your Windows PC, with two IP addresses, and two host names. Only one of the two will be visible from the Mac. Use "ipconfig" at a command prompt to get the two IP addresses, or look at the Properties of your Network connections.
    - Name resolution problem: Try using the IP address with the ping command, not a host name.
    Ping from the Windows PC to the MAC, and observe the reported IP address. Make sure the IP address you use to ping from the Mac is in the same subnet, i.e. the first three numbers must be the same, like
    192.168.1.100 vs. 192.168.1.101
    What is the result of the ping operation, i.e. "host not reachable", "unknown host", or "no response".
    Tilman
    Mac Mini PPC   Mac OS X (10.4.6)  

  • Xconnect problem. cant ping from CE to CE

    Hi Guys,
    I'm having issues with my xconnect tunnel. i couldn't ping from CE to CE. is theres something that i missed in my config?
    CE2#sh run int Gi0/0.1104
    Building configuration...
    Current configuration : 201 bytes
    interface GigabitEthernet0/0.1104
    encapsulation dot1Q 1104
    ip vrf forwarding admin
    ip address 10.210.64.193 255.255.255.252
    ip router isis Admin
    end
    PE2#sh run int Gi0/0.1104
    Building configuration...
    Current configuration : 222 bytes
    interface GigabitEthernet0/0.1104
    description Admin:EoMPLS to PE1
    encapsulation dot1Q 1104
    xconnect 10.215.0.133 1104 encapsulation mpls
    service-policy input police_1M
    service-policy output shape_1M
    end
    PE2#sh xconnect all
    Legend: XC ST=Xconnect State, S1=Segment1 State, S2=Segment2 State
    UP=Up, DN=Down, AD=Admin Down, IA=Inactive, NH=No Hardware
    XC ST Segment 1 S1 Segment 2 S2
    ------+---------------------------------+--+---------------------------------+--
    UP ac Gi0/0.1105 1105(Eth VLAN) UP mpls 10.215.0.109:1105 UP
    UP ac Gi0/0.1107 1107(Eth VLAN) UP mpls 10.215.0.109:1107 UP
    UP ac Gi0/0.1104 1104(Eth VLAN) UP mpls 10.215.0.133:1104 UP
    UP ac Gi0/0.1106 1106(Eth VLAN) UP mpls 10.215.0.133:1106 UP
    PE2#ping 10.215.0.133
    Type escape sequence to abort.
    Sending 5, 100-byte ICMP Echos to 10.215.0.133, timeout is 2 seconds:
    Success rate is 100 percent (5/5), round-trip min/avg/max = 4/4/4 ms
    ===========================================================================
    CE1#sh run int Fa0/1.1104
    Building configuration...
    Current configuration : 255 bytes
    interface FastEthernet0/1.1104
    description Admin:EoMPLS to CE2
    encapsulation dot1Q 1104
    ip address 10.210.64.194 255.255.255.252
    ip router isis area_0054
    clns mtu 1467
    clns router isis area_0054
    isis circuit-type level-2-only
    end
    PE1#sh run int Gi0/1.1104
    Building configuration...
    Current configuration : 224 bytes
    interface GigabitEthernet0/1.1104
    description Admin:EoMPLS to PE2
    encapsulation dot1Q 1104
    xconnect 10.214.254.107 1104 encapsulation mpls
    service-policy input police_1M
    service-policy output shape_1M
    end
    PE1#ping 10.214.254.107
    Type escape sequence to abort.
    Sending 5, 100-byte ICMP Echos to 10.214.254.107, timeout is 2 seconds:
    Success rate is 100 percent (5/5), round-trip min/avg/max = 4/4/4 ms

    I still couldnt reach it.. but i can see it on my ldp neighbor.
    PE2#$ping mpls ipv4 10.215.0.133/32 source 10.214.254.107 reply mode ipv4
    Sending 5, 100-byte MPLS Echos to 10.215.0.133/32,
         timeout is 2 seconds, send interval is 0 msec:
    Codes: '!' - success, 'Q' - request not sent, '.' - timeout,
      'L' - labeled output interface, 'B' - unlabeled output interface,
      'D' - DS Map mismatch, 'F' - no FEC mapping, 'f' - FEC mismatch,
      'M' - malformed request, 'm' - unsupported tlvs, 'N' - no label entry,
      'P' - no rx intf label prot, 'p' - premature termination of LSP,
      'R' - transit router, 'I' - unknown upstream index,
      'X' - unknown return code, 'x' - return code 0
    Type escape sequence to abort.
    Success rate is 0 percent (0/5)
    PE2#sh mpls ldp neigh
    Peer LDP Ident: 10.215.0.133:0; Local LDP Ident 10.214.254.107:0
            TCP connection: 10.215.0.133.13109 - 10.214.254.107.646
            State: Oper; Msgs sent/rcvd: 15109/15097; Downstream
            Up time: 18:11:49
            LDP discovery sources:
              Targeted Hello 10.214.254.107 -> 10.215.0.133, active, passive
            Addresses bound to peer LDP Ident:
              10.215.0.133    172.16.8.97     172.16.8.101    10.210.64.117
              10.210.64.253   10.210.64.105   10.210.64.193   10.210.64.189
              10.210.64.85    10.210.64.81

  • Mac mini won't visit websites or do ping from the terminal.

    I'm having some issues with my internet connection.
    The Mac mini does have good wireless connection to my router (a Belkin) but most of the time it won't open any websites (or even ping xxx.xxx.xxx.xxx from the terminal). Then suddenly it will and works for some minutes and then it won't again.
    I can connect to my wireless router via 192.168.2.1 and it says the internet connection is on.
    Does anyone have any idea on what the problem can be and perhaps how to solve it?
    The Airport in the Mac mini is a Broadcom BCM43xx 1.0 (5.10.91.27).

    Welcome to the discussion forums!
    During the times that you can't ping xxx.xxx.xxx.xxx, are you able to connect to your wireless router via 192.168.2.1 ?
    If yes, then it seems the difficulty is somewhere between the router, your dsl/cable modem, and your ISP (Internet Service Provider).
    When things are working OK, are you able to ping xxx.xxx.xxx.xxx successfully?

  • Packet loss when pinging from/to a cisco 3560e switch

    I see Packet loss when pinging from/to a cisco 3560e switch. CPU utilization is normal.
    Switches are running with IOS c3560e-universalk9-mz.122-35.SE5.bin.
    Packet loss is observed for all the devices irrespective of directly connected or remote devices.
    If i do self pinging, there are no packet loss.
    I don't see any error on interface.
    Can anyone please help me in resolving this issue.

    TCB       Local Address           Foreign Address        (state)
    03737C48  10.47.0.229.60053       10.41.81.55.49         CLOSEWAIT
    039ACDC4  10.47.0.229.61929       10.41.35.250.49        CLOSEWAIT
    03B316C0  10.47.0.229.27544       10.41.81.55.49         CLOSEWAIT
    038228F0  10.47.0.229.16506       10.41.35.250.49        CLOSEWAIT
    039C3D04  10.47.0.229.15207       10.41.81.55.49         CLOSEWAIT
    039A9BD0  10.47.0.229.52983       10.41.81.55.49         CLOSEWAIT
    0394152C  10.47.0.229.22425       161.61.35.250.49       CLOSEWAIT
    037D811C  10.47.0.229.21117       10.41.81.55.49         CLOSEWAIT
    039C12BC  10.47.0.229.37437       10.41.81.55.49         CLOSEWAIT
    03933B84  10.47.0.229.34085       161.61.35.250.49       TIMEWAIT
    03B32340  10.47.0.229.45729       10.41.81.55.49         CLOSEWAIT
    038247D0  10.47.0.229.32816       10.41.81.55.49         CLOSEWAIT
    039A92D8  10.47.0.229.38680       161.61.35.250.49       CLOSEWAIT
    037370F0  10.47.0.229.13212       10.41.81.55.49         CLOSEWAIT
    037D85F0  10.47.0.229.38728       10.41.81.55.49         CLOSEWAIT
    03B2B284  10.47.0.229.23428       10.41.81.55.49         CLOSEWAIT
    03B2ADB0  10.47.0.229.56836       10.41.81.55.49         CLOSEWAIT
    0394BFF0  10.47.0.229.23257       161.61.35.250.49       CLOSEWAIT
    036604DC  10.47.0.229.44437       10.41.81.55.49         CLOSEWAIT
    0394C700  10.47.0.229.22          192.37.184.211.61639   ESTAB
    039B9A68  10.47.0.229.20543       10.41.81.55.49         CLOSEWAIT
    03739B28  10.47.0.229.15392       10.41.81.55.49         CLOSEWAIT
    TCB       Local Address           Foreign Address        (state)
    0392EA48  10.47.0.229.13862       10.41.81.55.49         CLOSEWAIT
    0365E23C  10.47.0.229.27856       10.41.81.55.49         CLOSEWAIT
    03817C0C  10.47.0.229.64929       10.41.81.55.49         CLOSEWAIT
    039357C8  10.47.0.229.22088       10.41.81.55.49         CLOSEWAIT
    037375C4  10.47.0.229.21832       10.41.81.55.49         CLOSEWAIT
    039C20E8  10.47.0.229.18169       10.41.81.55.49         CLOSEWAIT
    03716D08  10.47.0.229.61993       10.41.81.55.49         CLOSEWAIT
    039A74E4  10.47.0.229.62948       10.41.81.55.49         CLOSEWAIT
    03655480  10.47.0.229.14052       10.41.81.55.49         CLOSEWAIT
    039407F0  10.47.0.229.49643       161.61.35.250.49       CLOSEWAIT
    039A53AC  10.47.0.229.13233       10.41.81.55.49         CLOSEWAIT
    03739FFC  10.47.0.229.16605       10.41.81.55.49         CLOSEWAIT
    039B82B8  10.47.0.229.16458       10.41.35.250.49        CLOSEWAIT
    039BEBA4  10.47.0.229.64377       10.41.81.55.49         CLOSEWAIT
    03741980  10.47.0.229.13866       10.41.81.55.49         CLOSEWAIT
    03B3ABF8  10.47.0.229.19365       10.41.81.55.49         CLOSEWAIT
    039B5810  10.47.0.229.24768       10.41.81.55.49         CLOSEWAIT
    03956E48  10.47.0.229.55980       161.61.35.250.49       CLOSEWAIT
    03946820  10.47.0.229.65053       161.61.35.250.49       CLOSEWAIT
    037DBE94  10.47.0.229.15283       10.41.81.55.49         CLOSEWAIT
    039A4854  10.47.0.229.48562       10.41.81.55.49         CLOSEWAIT
    TCB       Local Address           Foreign Address        (state)
    03B33320  10.47.0.229.29803       10.41.81.55.49         CLOSEWAIT
    03B3B79C  10.47.0.229.12142       10.41.81.55.49         CLOSEWAIT
    03713C9C  10.47.0.229.63799       10.41.81.55.49         CLOSEWAIT
    039BBECC  10.47.0.229.14763       10.41.81.55.49         CLOSEWAIT
    03656E40  10.47.0.229.16357       10.41.81.55.49         CLOSEWAIT
    0362A73C  10.47.0.229.62450       10.41.81.55.49         CLOSEWAIT
    039B878C  10.47.0.229.64402       161.61.35.250.49       CLOSEWAIT
    03826CFC  10.47.0.229.16108       10.41.81.55.49         CLOSEWAIT
    03B2CA34  10.47.0.229.17634       10.41.81.55.49         CLOSEWAIT
    03AD78D0  10.47.0.229.15249       161.61.35.250.49       CLOSEWAIT
    03AD967C  10.47.0.229.20389       161.61.35.250.49       CLOSEWAIT
    03B2C560  10.47.0.229.37079       10.41.81.55.49         CLOSEWAIT
    039C5128  10.47.0.229.24711       10.41.81.55.49         CLOSEWAIT
    03822F74  10.47.0.229.54866       10.41.81.55.49         CLOSEWAIT
    0372C5FC  10.47.0.229.13298       10.41.81.55.49         CLOSEWAIT
    0372D278  10.47.0.229.12407       10.41.81.55.49         CLOSEWAIT
    039A33D0  10.47.0.229.36573       10.41.81.55.49         CLOSEWAIT
    039BCEF8  10.47.0.229.53853       10.41.81.55.49         CLOSEWAIT
    039C02D8  10.47.0.229.53725       10.41.81.55.49         CLOSEWAIT
    039B5CE4  10.47.0.229.58027       10.41.81.55.49         CLOSEWAIT
    0381866C  10.47.0.229.17100       10.41.81.55.49         CLOSEWAIT
    TCB       Local Address           Foreign Address        (state)
    039BB374  10.47.0.229.53148       10.41.81.55.49         CLOSEWAIT
    03AD3634  10.47.0.229.19716       161.61.35.250.49       CLOSEWAIT
    0362DAA4  10.47.0.229.19479       10.41.81.55.49         CLOSEWAIT
    0365AE60  10.47.0.229.62209       10.41.81.55.49         CLOSEWAIT
    0362D5D0  10.47.0.229.41327       10.41.81.55.49         CLOSEWAIT
    037D7C48  10.47.0.229.58283       10.41.81.55.49         CLOSEWAIT
    03955474  10.47.0.229.33810       161.61.35.250.49       CLOSEWAIT
    0373B15C  10.47.0.229.23331       10.41.81.55.49         CLOSEWAIT
    036628D0  10.47.0.229.46856       10.41.81.55.49         CLOSEWAIT
    03819584  10.47.0.229.19861       10.41.81.55.49         CLOSEWAIT
    0394D000  10.47.0.229.64732       10.41.35.250.49        CLOSEWAIT
    0394B760  10.47.0.229.19967       161.61.35.250.49       CLOSEWAIT
    039B6BD4  10.47.0.229.40096       10.41.81.55.49         CLOSEWAIT
    03AD7150  10.47.0.229.65184       10.41.35.250.49        CLOSEWAIT
    039BC3A0  10.47.0.229.64702       10.41.81.55.49         CLOSEWAIT
    03B3A724  10.47.0.229.60399       10.41.81.55.49         CLOSEWAIT
    037145E0  10.47.0.229.43951       10.41.81.55.49         CLOSEWAIT
    03955EDC  10.47.0.229.29015       161.61.35.250.49       TIMEWAIT
    0365FB34  10.47.0.229.13961       10.41.81.55.49         CLOSEWAIT
    03828D54  10.47.0.229.12743       10.41.81.55.49         CLOSEWAIT
    037DB40C  10.47.0.229.23708       10.41.81.55.49         CLOSEWAIT
    TCB       Local Address           Foreign Address        (state)
    039AF814  10.47.0.229.15100       10.41.81.55.49         CLOSEWAIT
    0392E344  10.47.0.229.23399       10.41.35.250.49        CLOSEWAIT
    0393DC3C  10.47.0.229.15393       161.61.35.250.49       CLOSEWAIT
    03AD85D0  10.47.0.229.40932       161.61.35.250.49       TIMEWAIT
    039574CC  10.47.0.229.25935       10.41.35.250.49        CLOSEWAIT
    03738B74  10.47.0.229.58656       10.41.81.55.49         CLOSEWAIT
    039AD91C  10.47.0.229.56760       10.41.81.55.49         CLOSEWAIT
    03B3BC70  10.47.0.229.15058       10.41.81.55.49         CLOSEWAIT
    03B2DC54  10.47.0.229.51131       161.61.35.250.49       CLOSEWAIT
    03B393F0  10.47.0.229.11957       10.41.35.250.49        CLOSEWAIT
    039B2610  10.47.0.229.33728       10.41.81.55.49         CLOSEWAIT
    03B311EC  10.47.0.229.18047       10.41.81.55.49         CLOSEWAIT
    039A8E04  10.47.0.229.52022       161.61.35.250.49       CLOSEWAIT
    0365D460  10.47.0.229.12241       10.41.81.55.49         CLOSEWAIT
    03B33E78  10.47.0.229.47640       10.41.81.55.49         CLOSEWAIT
    0372C128  10.47.0.229.60323       10.41.81.55.49         CLOSEWAIT
    03661CD8  10.47.0.229.39923       10.41.81.55.49         CLOSEWAIT
    0393C73C  10.47.0.229.41864       10.41.35.250.49        CLOSEWAIT
    03829584  10.47.0.229.56673       161.61.35.55.49        CLOSEWAIT
    0362AC10  10.47.0.229.31952       10.41.81.55.49         CLOSEWAIT
    039BF078  10.47.0.229.22636       10.41.81.55.49         CLOSEWAIT
    TCB       Local Address           Foreign Address        (state)
    0365CF8C  10.47.0.229.14476       10.41.81.55.49         CLOSEWAIT
    039B443C  10.47.0.229.59226       10.41.81.55.49         CLOSEWAIT
    0393E794  10.47.0.229.56282       10.41.35.250.49        CLOSEWAIT
    03657740  10.47.0.229.25769       10.41.81.55.49         CLOSEWAIT
    03B2F6E8  10.47.0.229.19328       10.41.81.55.49         CLOSEWAIT
    0373AC88  10.47.0.229.25766       10.41.81.55.49         CLOSEWAIT
    039B213C  10.47.0.229.28882       10.41.81.55.49         CLOSEWAIT
    039C07AC  10.47.0.229.38201       10.41.81.55.49         CLOSEWAIT
    03AD8DD0  10.47.0.229.23002       10.41.35.250.49        CLOSEWAIT
    03739048  10.47.0.229.29572       10.41.35.250.49        CLOSEWAIT
    039BA464  10.47.0.229.32273       10.41.81.55.49         CLOSEWAIT
    03B31E6C  10.47.0.229.32521       10.41.81.55.49         CLOSEWAIT
    0365EBE0  10.47.0.229.41319       10.41.81.55.49         CLOSEWAIT
    03938804  10.47.0.229.62841       10.41.35.250.49        CLOSEWAIT
    039A1AF8  10.47.0.229.12758       10.41.81.55.49         CLOSEWAIT
    039B7DE4  10.47.0.229.20921       10.41.81.55.49         CLOSEWAIT
    036549F8  10.47.0.229.51903       10.41.81.55.49         CLOSEWAIT
    03714CC8  10.47.0.229.45145       10.41.81.55.49         CLOSEWAIT
    037425F8  10.47.0.229.56492       10.41.81.55.49         CLOSEWAIT
    03B39D74  10.47.0.229.18174       10.41.81.55.49         CLOSEWAIT

  • ISR 3945 - SNMP trap set up to recieve option pings from ASR1006

    I am working on a set up : ISR 3945 - Receiving  option pings from another device (ASR) and sending a snmp trap (say ex: if a link down on a dial-peer ) to snmp server if those option ping fails.
    - Need inputs on SNMP config
    Thanks in advance.

    Hi.
    the easiest way is to get the snmp-server trap source command to work.
    when you say it's not working, do you mean the branches still use the external interface as the source? or that it's sourced properly from vlan1 but somehow doesn't get encrypted?
    what ios version are you running on the branches? maybe this is a bug and newer versions get it to work?
    if you want to through another way than snmp-server trap source, then an ipsec redesign might be needed. As you noticed dmvpn would be the easiest. another solution would be dynamic lan-to-lan from branch to headend with gre tunnels (similar to dmvpn), and then force the route to the management network via GRE, this way the snmp trap source would default to use the tunnel ip address.
    Regards,
    Fadi.

  • Disregard a ping from the internet???

    A common feature of non-Apple routers is the ability to disregard pings from the internet which greatly improves security. I cannot figure out how to tell the APBS to ignore pings on the WAN port. I know this can be done with the Mac OS 10.5 software firewall, but this is not nearly as secure as doing it at the entry point into my entire network (the APBS router).

    Hi Cezar,
    Thanks for your reply and apologies for my delay getting back to you.
    We were effectively thinking to encapsulate a Java or Python call within an ODI procedure, but we were hoping in having an out-of-the-box starting point within ODI.
    Will try and see: if you could give me some additional details about it, that would be great!
    Thanks again,
    scagliaf

  • Is there any way to do a "ping" FROM an RT controller?

    Hi. I was wandering if it is possible to do a "ping" from a PXI-RT controller.
    I'm planning to make an RT application which detects if certain windows PC is present on the network.
    Thank for your comments.
    Daniel R.

    A little while ao someone posted a Raw socket ping for Win2K. I've
    included the .llb here. You can use this from a PXI running Windows. I
    have not tried it with an RTOS system.
    I hope that this is of some help.
         Rob
    Attachments:
    Raw Socket Ping.zip ‏643 KB

  • WLC,I Need to ping from LWAPP while its controled via WLC

    Hi Folks
    in  WLC Term, and LWAP, how can i telnet for LWAP,i need to ping from the AP itself?how is that happend?is it impossible via Telnet after i get its ip address when i issued the sh ip dhcp binding?
    Rgds
    Ibrahim

    Q. Can I Telnet/SSH into an LWAPP based access point?
    A. In Wireless LAN Controller release 5.0  and later, the controller supports the use of Telnet or Secure Shell  (SSH) protocols to troubleshoot lightweight access points. You can use  these protocols in order to make debugging easier, especially when the  access point is unable to connect to the controller. You can configure  Telnet and SSH support only through the controller CLI.
    In order to enable Telnet or SSH connectivity on an access point, use the config ap {telnet | ssh} command. The Cisco lightweight access point associates with this Cisco  Wireless LAN controller for all network operation and in the event of a  hardware reset.
    config ap {telnet | ssh} {enable | disable} Cisco_AP
    Examples
    > config ap telnet enable cisco_ap1
    > config ap telnet disable cisco_ap1
    > config ap ssh enable cisco_ap2
    > config ap ssh disable cisco_ap2
    Q. How to configure global credentials for access points. What are the default user name and password in release 5.0?
    A. Cisco IOS access points are shipped from  the factory with Cisco as the default enable password. This password  allows users to log into the non-privileged mode and execute show and  debug commands, which poses a security threat. The default enable  password must be changed in order to prevent unauthorized access and to  enable users to execute configuration commands from the access point's  console port.
    In the controller software prior to release 5.0,  you can set the access point enable password only for access points that  are currently connected to the controller. In controller software  release 5.0, you can set a global use rname, password, and enable  password that all access points inherit as they join the controller.  This includes all access points that are currently joined to the  controller and any that join in the future. If desired, you can override  the global credentials and assign a unique username, password, and  enable password for a specific access point.
    For information on how to configure the global credentials of the AP, refer to Configuring Global Credentials for Access Points.

  • Ping from GPRS

    Dear All,
    I have a problem, I am personally develop a system which send ping to my server and server keep alive its session. My actual problem is if I use edge enabled phone and use edge connection then its work fine and if I use gprs then its stuck for a while and during this duration my midlet throw exception.
    Please help me. I'll be thankful to you.
    Yours,
    Ali

    Hi spawnn..
    I got some articles for you which might help you out.
    I have read about similar things but in your case you want to send a ping request so there is not much that can be done about it.
    I just went through some techtips and found that CDC and Foundation profiles do support "pinging" from mobile phones.
    http://java.sun.com/developer/J2METechTips/2001/tt0529.html
    Then there was this jIRC client that you can install in your mobile phone and invoke IRC commands from midlets.
    http://wirelessirc.sourceforge.net/
    I have also read about similar things in JXTA which is Java P2P and allows virtually any protocol. But well when said that it also requires higher processing power on client side i.e. mobile and as we know j2me enabled phones are scarce in memory.
    Hope that helps :-)

Maybe you are looking for

  • How to apply one exact menubar for multiple pages?

    I have a sidebar witch repeat itself over 7 other pages. If I come to neccesary to edit one or few components in sidebar's content, I have to cross all seven files and edit each individually. I came to conclusion that it would be much more confortabl

  • Still No Refund on closed Account!! - Very poor tr...

    It doesn t matter who or what time I speak to BT I just never get the service I used to receive!!! Having been a customer for over 10 years the final straw was receiving 3 emails within a day or so of charges increasing on my account!! First = Mmmm s

  • Material master update through BAPI

    Hello Experts, We are using BAPI_MATERIAL_SAVEREPLICA to update material master . It is required to update RefPlant:consumption (MARC-VRBWK) in forecast view . We could not find any field corresponding to MARC-VRBWK in table parameters PLANTDATA . Pl

  • 30 Inch Apple Monitor to share with a MacBook & Mac Pro

    I have a MacBook and a Mac Pro, I have (1) 30 Inch Apple Display. What hardware can I get to share the same monitor, say with a touch of a button or something, to share the display with both machines are running. I want to go back and forth with each

  • I have 3 +years of experience in SAP ABAP and BRFplus , want to move to australia from India.

    Hello Experts, I have around 3.5 years of experience in SAP -ABAP and SAP-BRFplus . I am based out of india and want to move to Australia.I am trained in ABAP OOPs And Webdynpro. Have worked for around 3 years in Infosys Limited and currently working