Problem with telnet to router
i am unable to telnet to my router.whenever i telnet to it, i get a black screen without any login prompt and when i press enter in the blank screen it returns back to my cmd prompt.
i have enabled transport input telnet in my line vty 0 4.
line vty 0 4
access-class 27 in
privilege level 15
password 7 0234a1912234cd1258
login
transport input telnet
access list 27 has our specific clients ip and wildcard specified and implicit deny at end
when i did sh ip access-list 27, i got hits from the ips in access list but it connects to blank screen and then goes back to cmd while telnetting
Similar Messages
-
Problem with telnet on solaris 9
Hi all,
I have a problem with telnet on my sun fire v440 server with solaris 9 system, whenever I telnet to this server as a normal user ,after entering the username and password ,the user environment will switch to root. but i have checked the 'id' as i telnet the system ,it was not root. Pls refer the below message as i login the server:
SunOS 5.9
login: prad
Password:
Last login: Thu Apr 14 11:14:54 from 10.60.64.59
Sun Microsystems Inc. SunOS 5.9 Generic May 2002
You have mail.
root@T-Server02 # id
uid=1017(prad) gid=10(staff)
root@T-Server02 # cat /etc/passwd | grep prad
prad:x:1017:10::/export/home/prad:/bin/sh
root@T-Server02 # ls -lrt profile*
-rwxrwxrwx 1 prad other 174 Feb 7 2008 local.profile
-rw-r--r-- 1 prad other 144 Feb 7 2008 backupprofile
root@T-Server02 # pwd
*/export/home/prad*
root@T-Server02 #
Does any one have idea on how to solve this problem?Thanks . I'm pretty new in SUN OS, and not quite get your point . Here is the local.profile showed as below:
This is a newly happened issue, I think we haven't change any profile setting in server:
SunOS 5.9
login: prad
Password:
Sun Microsystems Inc. SunOS 5.9 Generic May 2002
You have mail.
root@T-Server02 # more local.profile
*# Copyright (c) 2001 by Sun Microsystems, Inc.*
*# All rights reserved.*
*# ident "@(#)local.profile 1.10 01/06/23 SMI"*
stty istrip
PATH=/usr/bin:/usr/ucb:/etc:.
export PATH
root@T-Server02 # -
Well my iphone 5 does not remember my home network. This is not a problem with the wifi router as the ipad works absolutely fine. The wifi loses it connection in just 2 minutes. So could you please fix this problem.
Not unless the modem is causing a problem.
What you want to do is get it to work reliably over Ethernet first, then tackle wifi. Power off the modem. On your macbook, delete the Ethernet configuration and the Wifi configuration. Power up the modem, then connect the mac via Ethernet. Create the new Ethernet configuration and see if you can connect. -
Pls help me.i have a problem with WRT54G wireless router.
Dear all, Now i got face some problem with WRT54G wireless router.The problem is after i connect to the internet...the wireless will automatic drop..is that any ppl here got face this and got any solution to solve it...?thanks for sharing..
hi...logon to router's setup page and try changing channel to 11, go to advanced wireless settings, try changing transmission rate to 54Mbps, beacon interval to 50, fragmentation and RTS threshold to 2304, also try upgrading latest firmwar on the router...check whether it maks any difference or not and let me know.
-
Problem with Cisco 861W router and outgoing VPN
We have a Cisco 861W router that is blocking an outgoing PPTP on the internal access point only. The outgoing VPN works when the traffic is through a wired connection or the connection is on another access point. We fail to make a connection only when connection to the 861W's internal Access Point.
Here is the Access Point Configuration:
Current configuration : 2100 bytes
version 12.4
no service pad
service timestamps debug datetime msec
service timestamps log datetime msec
no service password-encryption
hostname obap
enable secret 5 $1$.1RF$go1D7WITXUn3s8TUaw3tC.
no aaa new-model
dot11 syslog
dot11 ssid OLIVER
authentication open
authentication key-management wpa
guest-mode
wpa-psk ascii 0 XXXXXXXXXXX
username XXXXXX privilege 15 secret 5 $1$Wc0K$OzcQDDQfjHP6La31eXMoG/
bridge irb
interface Dot11Radio0
no ip address
no ip route-cache
encryption mode ciphers aes-ccm tkip
ssid OLIVER
antenna gain 0
station-role root
bridge-group 1
bridge-group 1 subscriber-loop-control
bridge-group 1 block-unknown-source
no bridge-group 1 source-learning
no bridge-group 1 unicast-flooding
bridge-group 1 spanning-disabled
interface GigabitEthernet0
description the embedded AP GigabitEthernet 0 is an internal interface connecti
ng AP with the host router
no ip address
no ip route-cache
bridge-group 1
no bridge-group 1 source-learning
bridge-group 1 spanning-disabled
interface BVI1
ip address 192.168.0.2 255.255.255.0
no ip route-cache
ip http server
no ip http secure-server
ip http help-path http://www.cisco.com/warp/public/779/smbiz/prodconfig/help/eag
bridge 1 route ip
banner login ^CC
% Password change notice.
Default username/password setup on AP is cisco/cisco with priv¾ilege level 15.
It is strongly suggested that you create a new username with privilege level
15 using the following command for console security.
username <myuser> privilege 15 secret 0 <mypassword>
no username cisco
Replace <myuser> and <mypassword> with the username and password you want to
use. After you change your username/password you can turn off this message
by configuring "no banner login" and "no banner exec" in privileged mode.
^C
line con 0
privilege level 15
login local
no activation-character
line vty 0 4
login local
cns dhcp
end
obap#
Here is the Router's Configuration:
Current configuration : 5908 bytes
! No configuration change since last restart
version 15.0
no service pad
service tcp-keepalives-in
service tcp-keepalives-out
service timestamps debug datetime msec localtime show-timezone
service timestamps log datetime msec localtime show-timezone
service password-encryption
service sequence-numbers
hostname obrouter
boot-start-marker
boot-end-marker
logging buffered 51200
logging console critical
enable secret 5 $1$i9XE$DjxFVAEC9nC4/r6EQKCd6/
no aaa new-model
memory-size iomem 10
clock timezone PCTime -5
clock summer-time PCTime date Apr 6 2003 2:00 Oct 26 2003 2:00
crypto pki trustpoint TP-self-signed-1856757619
enrollment selfsigned
subject-name cn=IOS-Self-Signed-Certificate-1856757619
revocation-check none
rsakeypair TP-self-signed-1856757619
crypto pki certificate chain TP-self-signed-1856757619
certificate self-signed 01
3082024D 308201B6 A0030201 02020101 300D0609 2A864886 F70D0101 04050030
31312F30 2D060355 04031326 494F532D 53656C66 2D536967 6E65642D 43657274
69666963 6174652D 31383536 37353736 3139301E 170D3036 30313032 31323030
34345A17 0D323030 31303130 30303030 305A3031 312F302D 06035504 03132649
4F532D53 656C662D 5369676E 65642D43 65727469 66696361 74652D31 38353637
35373631 3930819F 300D0609 2A864886 F70D0101 01050003 818D0030 81890281
8100B1A4 FB786547 3D582260 03DB768D 116BDE9A 309FBA04 B53F77B0 BFE32344
7C3439B3 97192B36 760A9411 1D5C7549 8D86F532 ABA44F53 0D08B7F4 A9A747D5
071330C3 65BF25A8 927F3596 29BB5A80 90C8D169 22268476 3B8DDE1E FDB7170D
B4820D03 5580A849 A92C7E76 9AC10867 505A2FEE 64360741 7F9DBDBF 3D79982C
F81D0203 010001A3 75307330 0F060355 1D130101 FF040530 030101FF 30200603
551D1104 19301782 156F6272 6F757465 722E6272 75736868 6F672E63 6F6D301F
0603551D 23041830 168014D8 5BC2FFB2 967A4C7B 11B44122 5C8D31F7 749B9230
1D060355 1D0E0416 0414D85B C2FFB296 7A4C7B11 B441225C 8D31F774 9B92300D
06092A86 4886F70D 01010405 00038181 005901F1 C239074B B8213567 CF7B65BF
DAFE4557 69B2A3B1 5F2593C7 A54B9598 23FD5E7A 563AA6E0 AFB25801 FA0061E8
F9545372 DB600B3A BE68AE65 1EDA593E 6A0C96B8 5A4136AF 393F9AAC 651E1C36
B8B7C6C0 47936C24 D2ECE9A5 9446EE32 FC7461FA AD8CF1CE A7FBF341 07E9C3C6
505AB88D 0E7FCAFC 5792298A E5E4D1FE CC
quit
no ip source-route
ip dhcp excluded-address 192.168.0.1 192.168.0.99
ip dhcp pool ccp-pool1
import all
network 192.168.0.0 255.255.255.0
dns-server 216.49.160.10 216.49.160.66
default-router 192.168.0.1
ip cef
no ip bootp server
ip domain name brushhog.com
ip name-server 216.49.160.10
ip name-server 216.49.160.66
license udi pid CISCO861W-GN-A-K9 sn FTX155281FY
username tech38 privilege 15 secret 5 $1$d/4Z$n/23EsXbzfHF5XfJ8Nv.y0
ip tcp synwait-time 10
ip ssh time-out 60
ip ssh authentication-retries 2
interface FastEthernet0
interface FastEthernet1
interface FastEthernet2
interface FastEthernet3
interface FastEthernet4
description $ES_WAN$$FW_OUTSIDE$
no ip address
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
duplex auto
speed auto
pppoe-client dial-pool-number 1
interface wlan-ap0
description Service module interface to manage the embedded AP
ip unnumbered Vlan1
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
arp timeout 0
interface Wlan-GigabitEthernet0
description Internal switch interface connecting to the embedded AP
interface Vlan1
description $ETH-SW-LAUNCH$$INTF-INFO-HWIC 4ESW$$ES_LAN$$FW_INSIDE$
ip address 192.168.0.1 255.255.255.0
no ip redirects
no ip unreachables
no ip proxy-arp
ip flow ingress
ip nat inside
ip virtual-reassembly
ip tcp adjust-mss 1412
interface Dialer0
ip address negotiated
no ip redirects
no ip unreachables
no ip proxy-arp
ip mtu 1452
ip flow ingress
ip nat outside
ip virtual-reassembly
encapsulation ppp
dialer pool 1
dialer-group 1
ppp authentication chap pap callin
ppp chap hostname XXXXXXXXXXXXX
ppp chap password 7 XXXXXXXXXXXXXXXX
ppp pap sent-username XXXXXXXXXXXXXX password 7 XXXXXXXXXXX
no cdp enable
ip forward-protocol nd
ip http server
ip http authentication local
ip http secure-server
ip http timeout-policy idle 60 life 86400 requests 10000
ip nat inside source static tcp 192.168.0.25 80 interface Dialer0 80
ip nat inside source list 1 interface Dialer0 overload
ip route 0.0.0.0 0.0.0.0 Dialer0
logging trap debugging
access-list 1 remark INSIDE_IF=Vlan1
access-list 1 remark CCP_ACL Category=2
access-list 1 permit 192.168.0.0 0.0.0.255
dialer-list 1 protocol ip permit
no cdp run
control-plane
banner exec ^C
% Password expiration warning.
Cisco Configuration Professional (Cisco CP) is installed on this device
and it provides the default username "cisco" for one-time use. If you have
already used the username "cisco" to login to the router and your IOS image
supports the "one-time" user option, then this username has already expired.
You will not be able to login to the router with this username after you exit
this session.
It is strongly suggested that you create a new username with a privilege level
of 15 using the following command.
username <myuser> privilege 15 secret 0 <mypassword>
Replace <myuser> and <mypassword> with the username and password you
want to use.
^C
banner login ^CAuthorized access only!
Disconnect IMMEDIATELY if you are not an authorized user!^C
line con 0
login local
no modem enable
transport output telnet
line aux 0
login local
transport output telnet
line 2
no activation-character
no exec
transport preferred none
transport input all
line vty 0 4
privilege level 15
login local
transport input telnet ssh
scheduler max-task-time 5000
scheduler allocate 4000 1000
scheduler interval 500
end
Any help would be appreciatedHello,
i have the same problem with router CISCO861W-GN-E-K9. Version 12.4(22r)YB5, RELEASE SOFTWARE (fc1)
Can someone help?
Thank you.
Here is my config for internal AP and router. -
Problem with Telnet and Escript/Fscript
I have a lot a problems using Telnet and Escript/Fscript with Forte
3.0.G.2.
Does anyone has the same trouble or any experience about that.
Thanks for your answers.
To unsubscribe, email '[email protected]' with
'unsubscribe forte-users' as the body of the message.
Searchable thread archive <URL:http://pinehurst.sageit.com/listarchive/>I use EScript and FScript through telnet sessions all the time, and I
don't have any problems. Can you give more information on the problems
you are experiencing? Are there any error messages? Does it hang? Any
other information about the platforms and process you are using?
For example, can you even get into FScript/EScript? If not, your
environment variables for the user may not be set (you have to have set,
at least, FORTE_ROOT and FORTE_NS_ADDRESS, or you have to use explicit
paths and the -fns flag).
Also, how are you invoking telnet (Unix-to-Unix, Windows-to-Unix,
etc.)? Which telnet client are you using?
More information would be really helpful in diagnosing your problem.
Regards,
-Katie
Pascale Voisin-Bouton-FX01314 wrote:
>
I have a lot a problems using Telnet and Escript/Fscript with Forte
3.0.G.2.
Does anyone has the same trouble or any experience about that.
Thanks for your answers.
To unsubscribe, email '[email protected]' with
'unsubscribe forte-users' as the body of the message.
Searchable thread archive <URL:http://pinehurst.sageit.com/listarchive/>--
Katie Carty
Senior Consultant
Forte Software, Inc.
http://www.forte.com
4801 Woodway Drive, Suite 300E
Houston, Texas 77056
vmail: (510) 986-3802
email: [email protected]
To unsubscribe, email '[email protected]' with
'unsubscribe forte-users' as the body of the message.
Searchable thread archive <URL:http://pinehurst.sageit.com/listarchive/> -
WRE54G wireless extender problem with WRT600N wireless router
My Vista laptops work fine with the WRT600N router but not with the WRE54G extender. On the other hand my XP laptop works fine with the wireless extender so I know that both router and extender are working. Linksys tech support told me that the WRE54G is not compatible with the WRT600N, which is simply not true. With my XP laptop the signal goes from poor (5-10 Mbps) without the extender to excellent (54 Mbps) with the extender. Also, the lower blue light on the extender blinks indicating data transmission. I can access the setup page of the extender only with the XP laptop and wired desktop computers but not the Vista laptops. I suspect there is a Vista network setting that is the problem. I've turned off the firewall but to no avail. I've also switched between mixed mode and G-only, which made no difference. Anybody have any suggestions?
pfl wrote:
I have a secure wireless network (WPA). Perhaps my 4-5 year old XP laptop is the only laptop on the planet that works with the WRE54G-WRT600N combination. But I can assure all the doubters that this laptop categorically works flawlessly when I would otherwise be out of range without an extender. Good luck to spalaw. Please let me know if you are get your WRT160n to work with the WRE54G, especially you're able to connect with a Vista laptop.
Hi
I am Afraid and wont be surprised if ya all people are nt able to use a N series Router with a G series Range Expander !
the Reasons is simple - N series is not BackWard Compatible as u check out the sources around. (Back Ward Compatible means compatible with the previous versions for its wireless Band , e:g - G band and B band.)
as far as my experience is concerned regarding the Range Expanders , me and my bud wasted a whole Week Configuring a WRT350N and WRE54G v3 , and it worked somehow on the seventh day for an hour and Lost the connection again! Dayumm !
and we tried setting up with the same expander with WRT54GS v7.2 , it worked like a charm.
Conclusion : " WRE54G is a g series 2.4 Ghz expander which will work fine with all g series router though may not work with N Serious routers."
and if you really wish to Use something which can actually Extend the range for ur N routers signals , Better go for WAP4400N !!!!!!
And if someone still wish to run around , wanna try some tweaks (which i dont preferr )!
for WRT600N , just enable 2.4ghz band . as Range expander doesnt support 5 Mhz.
Use Only standard Channels . e.g : 1,9,3,11 .(No Wide and stuff.)
Try using WEP encryption first . (cause thats how we made WRT350N worked for a while. sighs)
At last , Wish u Luck.
Pe@c3
"What u Give , is wht u better start expecting to take back".. - http://Forsakenbliss.wordpress.com -
Macbook Pro Problems with D-Link Router
My router D-link (Dl-624+A, model available in Asia) 802.11g/2.4 Ghz wireless router serves a G5 iMac, a G4 Aluminum Powerbook plus a Windows laptop and desktop. We have never experienced any problems with the network.
I have recently bought a 17" Macbook Pro 2.4 Ghz laptop (intel MBP) and have not been able, in any combination of modes, to join the network. A dialogue box simply says that there was an error trying to join the network.
I have no problems joining other wireless networks around town its so easy, just the one at home is the problem.
What is going on? Is there a fix? ThanksHi, my MacBook Pro can't connect to my D-Link DSL-G604T router via wireless too.
Airport can see my wireless connection and asks for the WEP password to connect. I put the password key in and an error pops up saying it cannot connect. I can connect via an Ethernet cable. Also, my previous system PowerBook G4 is able to connect via to the router via wireless, hence there is nothing wrong with my network.
Based on the suggestions from other threads, I tried to set my security to WPA instead of WEP. However, after I set my security to WPA, and tried to connect to my wireless network, the AirPort popup only gives me 4 options for the Wireless Security:
WEP Password
WEP 40/128-bit hex
WEP 40/128-bit ASCII
LEAP
There isn't an option to use WPA. Can anyone advise? -
Problems with linksys wireless router please help!
Me and my 2 flat mates share a wireless network, and for some reasons if cannot connect to it. I have vista home premium and a belkin dongle. We used a Linksys router to begin with, not sure which model, but we recently had to buy a new one because that did not belong to us. I can see the network so the dongle picks up the signal but every time I connect and put in the network key I either get Not close enough to the net work point (the router is about 5 meters away) The network key is incorrect (I created the password and it works on the other two people lap tops) The network has timed out. Sometimes I can connect to the network for a moment then it kicks me off. The connection wizard shows the network at full signal. I’m not sure what the problem is, I have done a full restore on my computer and the dongle was installed onto my computer via the disc it came with. I do have another dongle that is a Linksys one; however it does the same thing. Not sure what the problem is here, can anyone help before I have to go out and buy long network cable and have wires all over my flat i have a heap of work that needs doing this week so any ideas would be really helpfull
I would first try and bring your computer (if possible) closer to the connection point. That way it will have full time to connect. Also sometimes some materials in the walls mess with connections due to the type of material. Sometimes if your IP address is not quite right you will connect but then get booted offline. Sometimes if you don’t broadcast your ssid you cannot connect. (one of my Visa Networks does this ssid broadcast must be on).
Are you using WPA or WEP because Sometimes WEP is not as stable with some wireless modems/ so changing to WPA might solve your problem
With Knowledge… Impossible means nothing.
Credentials
Computer experience: 11 years
Cisco networks experience: 8 years
Network administrator: 6 years
N.E.T. networks experience: 6 years
Linksys networks experience: 6 years
Recent additions: A+ | Networks+ | Linux+ | Security+ -
Airport Extreme Problems with 802.11b router
I have a Netgear MR314 LAN and wireless router. I have a G3 iMac and 2 G3 iBooks with Airport Express cards and they work fine with the wireless connection with this router. I have a 12 inch G4 iBook with an Airport Extreme card running 10.4.3. Every time when this iBook connects with the wireless router it works for about 10 minutes and then the router locks up. If I re-set my cable modem and the router then the system will work again.
Because the router only goes up to the speed of 802.11b and not the 802.11g potential speed of the Airport Extreme I know that the card has to run at the slower speed when it connects with my router.
I am trying to determine whether my Airport Extreme card is defective. Any suggestions?
iBook G4 1.2 GHz Mac OS X (10.4.3)I have updated the firmware in the router and that seems to have fixed the problem.
ibook 12 Inch G4 1.2 GHz Mac OS X (10.4.4) -
WPA2 Problems with Linksys WAG120N Router
Hi,
with this router (wpa2 and b+g+n) the connection lost after minutes and the routers hangs up.
I will test today with b+g.
Does anyone also have problems with this router and the pb?
I don't want use WPA.
Regards
VolkerI had problem with my Router... The playbook would not see the router, or when it would it would disconnect after a few seconds.. I changed one setting and fixed it. All I did was change the wireless channel it was set at 12 - changed it to 2 and it connects every single time now. I didn't change the wireless type or encryption, just the channel and it works 100% now. I did a few tests and it seems to work fine in any channel apart from 12 (maybe RIM didn't think anyone would use that?) If your set to automatic, worth setting it manually just in case. So worth checking.
-
Problems with non-Apple Router's connection
Hello everyone,
Hope all of you have a nice day.
I just bought a new airport Express, but i do not know how to configure the AE to connect internet.
My situation is: i'm living in a dormitory, and connecting to internet via my university's network. Therefore, in my room. there is only 1 LAN
cable for you to plug in to your computer. The computer has to be set into static ip address.
Here is the information:
IP address: 141.2.179.79
Sub: 255.255.254.0
default gateway: 141.2.179.254
dns: 141.2.22.74
i pluged the LAN cable to WAN port of AE, and manually configured the AE as:
1. Connect to internet using: Ethernet
2. Bridge mode
3. manual TCP/IP:
IP address: 141.2.179.79
Sub: 255.255.254.0
Router address: 141.2.179.254
DNS: 141.2.22.74
After the configuration, the LED goes green - means everything should be fine. But i still cannot connect my computer to internet when pluging the cable from the LAN port (AE and my laptop).
Hope someone has solutions for me
I appreciate your helps.I'm wondering if it's possible to get the Airport
Express and/or Airport Extreme to extend my wireless
network. I would like to keep my internet connection
going into the Belkin Router.
No this is not possible with your Belkin router.
However you could create a roaming network with the AEBS (Airport Extreeme Base Station) and the Belkin (join them via cable) and then extend the AEBS wireless part of the network with the Airport Express.
Cable Connection -> Belkin Router (on channel 1)
Belkin Router -> AEBS
AEBS (on channel 11) - ))))) Airport Express (also on channel 11) via WDS
You would need to ensure that the AEBS was configured to not distribute IP addresses.
You might as well use the Airport Extreme and extend it with the Airport Express and leave out the Belkin router. -
ASA 5505 - 2 Internet Connections, Problems with the Default Route
Hey there,
i have a Problem at a Customer Site at the moment. The customer uses an ASA 5505 with two internet connections attached to it. On the first connection (which is the only one in use at the moment) he has some Static-PAT's from Outside to Inside where he translates different services to the internal servers. He also has a site-2-site VPN terminating there and AnyConnect.
He now wants to switch the Internet Traffic from Inside to the new Internet Connection. Therefore changing the default route to that new ISPs Gateway. The problem now is, that no traffic recieved on the old "outside" Interface is transmitted back out of that old "outside" Interface. And this happens although the "same-security permit intra-interface" command is set.
Can you tell me what's wrong here? For every Static-PAT from outside to inside there is also a dynamic PAT from inside to outside. But the ASA seems to ignore this. I have not looked into the Logs yet, was too busy finding the problem because i had no real time window to test on the productive ASA.
Can it be achieved in any way? Having a default route on the ASA which leads any traffic to the second internet connection while still having connections on the first internet connection where no explicit route can be set? Because connections arrive from random IPs?
Many thanks for your help in advance!
SteffenPhillip, indeed , I have as well read may comments,it all depends on your environment as they all differ from one another, you best bet is to have a good solid plan for upgrade and fall back. You do have a justification to upgrade for features needed, so I would suggest the following:
1- Do a search again in forum for ASA code upgrades and look at comments from users that have gone through this process and note their impact in fuctionality if any. I believe this is good resource to collect information .
2- Very important , look into release notes for a particular version. For example version 8.0, look into open CAVEATS usually at the end of the link page, reading the open bugs gives you clues what has not yet been resolved for that particular code and if in fact could impact you in your environment, it is possible that a particular bug does not realy apply to your environment becuase you have yet not implemented that particualr configuration. Usually we all try to aim towards a GD (General Deployment) code which is what we all understand is most stable but not necesarily means you have to be stack in that code waiting for another GD release, in my personal experience I have upgraded our firewall from 7.2 to 8.0(3) long ago and had no issues, and recently upgraded to 8.0(4)when it was first release in August this year.
Release notes
http://www.cisco.com/en/US/products/ps6120/prod_release_notes_list.html
3- AS a good practice precaution -
a-Backup firewall configs in clear text as well as via tftp code.
b-Backup running code and ASDM version code currently running in firewall.
c- Save the output of " show version " to have as reference for all the feature licenses you currently have running as asll as activation keys - good info to have to compare with after upgrade.
d- Ensure that the code you will be using to upgrade also uses correct ASDM version code.
I think with thorough assesment and preparation you can indeed minimize impact.
Rgds
Jorge -
Problem with asa 5505 routing,nating
i have the asa 5505 with asdm 6.4(5). my inside lan is 192.168.0.0/24. the outside of asa is connected on lan 10.13.74.0/24 and i need over lan 10.13.74.0/24 connect on lan 10.15.100.0/24. i puted nat rule on asa 5505 and acl rule and users from lan 10.15.100.0/24 can connect on my server, but i can't connect on from inside of asa connecet on lan 10.15.100.0/24 and 10.13.74.0/24. my configuration asa is
Result of the command: "show running-config": Saved:ASA Version 8.4(2) !hostname ciscoasaenable password 8Ry2YjIyt7RRXU24 encryptedpasswd 2KFQnbNIdI.2KYOU encryptednames!interface Ethernet0/0 switchport access vlan 2!interface Ethernet0/1 switchport access vlan 3!interface Ethernet0/2!interface Ethernet0/3!interface Ethernet0/4!interface Ethernet0/5!interface Ethernet0/6!interface Ethernet0/7!interface Vlan1 nameif inside security-level 100 ip address 192.168.0.17 255.255.255.0 !interface Vlan2 nameif outside security-level 0 ip address 10.13.74.33 255.255.255.0 !ftp mode passiveobject network obj_any subnet 0.0.0.0 0.0.0.0object network server host 192.168.0.20object service ParagrafLex service tcp source eq 6190 destination eq 6190 object network sharepoint host 192.168.0.22access-list outside_access_in extended permit ip host 10.13.74.35 any access-list outside_access_in_1 extended permit ip any object server access-list outside_access_in_1 extended permit object ParagrafLex 10.15.100.0 255.255.255.0 object server access-list outside_access_in_1 extended permit object ParagrafLex any object server pager lines 24logging asdm informationalmtu inside 1500mtu outside 1500icmp unreachable rate-limit 1 burst-size 1no asdm history enablearp timeout 14400!object network obj_any nat (inside,outside) dynamic interfaceobject network server nat (any,any) static 10.13.74.34access-group outside_access_in in interface outside control-planeaccess-group outside_access_in_1 in interface outsideroute inside 0.0.0.0 0.0.0.0 10.13.74.1 1timeout xlate 3:00:00timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolutetimeout tcp-proxy-reassembly 0:01:00timeout floating-conn 0:00:00dynamic-access-policy-record DfltAccessPolicyuser-identity default-domain LOCALhttp server enablehttp 192.168.1.0 255.255.255.0 insidehttp 10.13.74.0 255.255.255.0 outsideno snmp-server locationno snmp-server contactsnmp-server enable traps snmp authentication linkup linkdown coldstart warmstarttelnet timeout 5ssh timeout 5console timeout 0dhcpd auto_config outside!threat-detection basic-threatthreat-detection statistics access-listno threat-detection statistics tcp-interceptwebvpn!class-map inspection_default match default-inspection-traffic!!policy-map type inspect dns preset_dns_map parameters message-length maximum client auto message-length maximum 512policy-map global_policy class inspection_default inspect dns preset_dns_map inspect ftp inspect h323 h225 inspect h323 ras inspect rsh inspect rtsp inspect esmtp inspect sqlnet inspect skinny inspect sunrpc inspect xdmcp inspect sip inspect netbios inspect tftp inspect ip-options !service-policy global_policy globalprompt hostname context no call-home reporting anonymousCryptochecksum:791a1fa6b6fcccaa3177fed821d1f392: end
what i do that connect on lan 10.15.100.0/24. i cant ping my outside interface, puted rules on acl, i enabled sevice policy rule for icmp ,but nothing. pleas help me
thanksmy configuration asa 5505 is now
Result of the command: "show running-config"
: Saved
ASA Version 8.4(2)
hostname ciscoasa
enable password 8Ry2YjIyt7RRXU24 encrypted
passwd 2KFQnbNIdI.2KYOU encrypted
names
interface Ethernet0/0
switchport access vlan 2
interface Ethernet0/1
interface Ethernet0/2
interface Ethernet0/3
interface Ethernet0/4
interface Ethernet0/5
interface Ethernet0/6
interface Ethernet0/7
interface Vlan1
nameif inside
security-level 100
ip address 192.168.0.17 255.255.255.0
interface Vlan2
nameif outside
security-level 0
ip address 10.13.74.33 255.255.255.0
ftp mode passive
object network obj_any
subnet 0.0.0.0 0.0.0.0
object network server
host 192.168.0.20
object service ParagrafLex
service tcp source eq 6190 destination eq 6190
object network sharepoint
host 192.168.0.22
object network uzzpro
range 10.13.74.40 10.13.74.45
object network share
host 192.168.0.22
object-group network internalnetwork
network-object 192.168.0.0 255.255.255.0
object-group network uzzpro-1
network-object object uzzpro
access-list outside_access_in extended permit ip host 10.13.74.35 any
access-list outside_access_in_1 extended permit ip any object server
access-list outside_access_in_1 extended permit object ParagrafLex 10.15.100.0 255.255.255.0 object server
access-list outside_access_in_1 extended permit object ParagrafLex any object server
access-list outside_access_in_1 extended permit ip any object share
access-list outside_access_in_1 extended permit icmp any object sharepoint echo-reply
access-list inside_access_out extended permit ip any any
pager lines 24
logging asdm informational
mtu inside 1500
mtu outside 1500
icmp unreachable rate-limit 1 burst-size 1
no asdm history enable
arp timeout 14400
object network obj_any
nat (inside,outside) dynamic interface
object network server
nat (inside,outside) static 10.13.74.34
object network share
nat (any,any) static 10.13.74.39
access-group inside_access_out out interface inside
access-group outside_access_in in interface outside control-plane
access-group outside_access_in_1 in interface outside
route inside 0.0.0.0 0.0.0.0 10.13.74.1 1
timeout xlate 3:00:00
timeout conn 1:00:00 half-closed 0:10:00 udp 0:02:00 icmp 0:00:02
timeout sunrpc 0:10:00 h323 0:05:00 h225 1:00:00 mgcp 0:05:00 mgcp-pat 0:05:00
timeout sip 0:30:00 sip_media 0:02:00 sip-invite 0:03:00 sip-disconnect 0:02:00
timeout sip-provisional-media 0:02:00 uauth 0:05:00 absolute
timeout tcp-proxy-reassembly 0:01:00
timeout floating-conn 0:00:00
dynamic-access-policy-record DfltAccessPolicy
user-identity default-domain LOCAL
http server enable
http 192.168.1.0 255.255.255.0 inside
http 10.13.74.0 255.255.255.0 outside
no snmp-server location
no snmp-server contact
snmp-server enable traps snmp authentication linkup linkdown coldstart warmstart
telnet timeout 5
ssh timeout 5
console timeout 0
dhcpd auto_config outside
threat-detection basic-threat
threat-detection statistics access-list
no threat-detection statistics tcp-intercept
webvpn
class-map inspection_default
match default-inspection-traffic
policy-map type inspect dns preset_dns_map
parameters
message-length maximum client auto
message-length maximum 512
policy-map global_policy
class inspection_default
inspect dns preset_dns_map
inspect ftp
inspect h323 h225
inspect h323 ras
inspect rsh
inspect rtsp
inspect esmtp
inspect sqlnet
inspect skinny
inspect sunrpc
inspect xdmcp
inspect sip
inspect netbios
inspect tftp
inspect ip-options
inspect icmp
service-policy global_policy global
prompt hostname context
no call-home reporting anonymous
Cryptochecksum:cde649be1382dd8249eca185657d9de7
: end -
My Atv2 is very slow with both AirPlay and rented and purchased content I spoke to apple rep and tried the things he suggested but the problem persists. Now it requires more lead time then the lenght of material being viewed. I haves broadband internet connection and airport extreme router so I don't think this should be a problem. Lately every time the unit goes to the screen saver an error message come up saying there was an error while loading content please try again later and you have to all over again. It is extremely frustrating. Any suggestions? What speed of transfer should I expect using AirPlay ?
I'm having the same issue. Ay fixes? Bought ATV today, music streams but videos don't and mirroring doesn't work either. Start mirror and severe lag then just drops. Been trying for couple hours. About ready to return it.
Maybe you are looking for
-
XML Parsing, how to get a specific tag?
Hello, I'm new to Flex, am trying to load some data from xml file using httpservice. all is right, but i dont know how to access to a specific tag. the xml mapping is showed in the picture : i try to access Device1, dataService.Lastresult.trames.tr
-
HT4847 how do i transfer my docs to icloud, does it work like a dropbox
how do i transfer my docs to icloud, does it work like a dropbox
-
IT 0041 Date Specifications - Can we add more fields?
Currently, one can only have up to 12 date types / dates in IT 0041. We are tracking subsitute start date assignments for each substitute teacher - which can result in multiple entries of this customer date type we created. I saw on SAP help that t
-
Hello Friends, I have a problem while executing a query. When I run any query from any role, by default it is opening other working workbook. After the refresh also, it is not doing anything, still shows the same workbook results. It is displaying th
-
Wrapping but truncating in WEBI with Arial Unicode MS font(Bold only)
hi, My Webi XI R3 report should support Localization. So we chose 'Arial Unicode MS' as standard font which can support single-byte as well as multi-byte languages. In webi report, Column headers are BOLD where as column values are REGULAR. We select