SPA122 FW 1.2.1 NAT-Bridge switching via IVR

Hi,
obviously the switching between bridge and NAT mode, using the IVR code 201# still isn't working in the latest firmware.
201 lets you chose between NAT (0) and bridge (1) for the yellow ethernet port - at least on the SPA-2102 and SPA-3102.
The SPA122 accepts the code (at least the friendly voice prompt lady says so) the device is then rebooting, but the setting itself remains unchanged.
Am I doing something wrong or can anyone recreate the behaviour?
Computers are like dachshounds - never do what they ought to ;-)
Eik

Option 66 is dedicated to name of TFTP server. If some CIsco devices allow full URL here, then it is non-standard extension. And undocumented, as far as I know. It is dangerous to depend on undocumented behavior.
Unfortunatelly, TFTP (only standard interpretation of option 66) offer no authentication nor encryption. It mean it can be used for provisioning of "Profile Rule" only. Separate HTTPS server is required for full provisioning then.
Options 159 and 160 are used by Cisco for "full URL" provisioning on many devices (including, for example SPA50xG phones). It's very bad news that the SPA1[12]2 doesn't support them.
HTTPS client is implemented within device already, so it's not software limitation nor computing power issue.
I would like to see support for options 159/160 (with https method allowed) on SPA1x2. Simple (e.g. no maintenance of TFTP server just for purpose of bootstrap provisioning of SPA1x2 devices, even it is easy) and unified (same system of secure bootstrap provisioning for all Cisco's SIP client devices) system reduce total cost of ownership.
Don't be confused by product specification ( http://www.cisco.com/en/US/prod/collateral/voicesw/ps6790/gatecont/ps10024/ps10029/datasheet_C78-691107.html . Yes, it mention the support of options 159 and 160, but it's not what we are speaking of here.
DHCP server within SPA122 can send those options to DHCP clients on LAN side.
But internal DHCP client doesn't ask those options from DHCP server on WAN side. Even worse - internal DHCP client will will fail at all when server inserts unsolicited option 160 to it's reply (i tried it with "https://test-provisioning.......cz/Cisco/Provisioning.php?PRVST=-2" URL, firmware 1.2.1(004) ).
Dan

Similar Messages

  • Can not administer Catalyst 2960 switch via console

    Hello,
    I want to configure my switch via console cable, the switch boots up normally, and there are no configurations present on the switch.  However, anything I type does not appear on the terminal client.  I used several terminal clients (TeraTerm, PuTTY, HyperTerminal), all latest versions as well as different PCs.  I even forced the switch to rommon mode, still, anything I type does not appear on the terminal client.
    Here's the output of TeraTerm:
    Boot Sector Filesystem (bs) installed, fsid: 2
    Base ethernet MAC Address: e8:40:40:06:f0:80
    Xmodem file system is available.
    The password-recovery mechanism is enabled.
    Initializing Flash...
    flashfs[0]: 542 files, 19 directories
    flashfs[0]: 0 orphaned files, 0 orphaned directories
    flashfs[0]: Total bytes: 32514048
    flashfs[0]: Bytes used: 11565056
    flashfs[0]: Bytes available: 20948992
    flashfs[0]: flashfs fsck took 11 seconds.
    ...done Initializing Flash.
    done.
    Loading "flash:/c2960-lanbasek9-mz.122-50.SE5/c2960-lanbasek9-mz.122-50.SE5.bin"...@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@@
    File "flash:/c2960-lanbasek9-mz.122-50.SE5/c2960-lanbasek9-mz.122-50.SE5.bin" uncompressed and installed, entry point: 0x3000
    executing...
                  Restricted Rights Legend
    Use, duplication, or disclosure by the Government is
    subject to restrictions as set forth in subparagraph
    (c) of the Commercial Computer Software - Restricted
    Rights clause at FAR sec. 52.227-19 and subparagraph
    (c) (1) (ii) of the Rights in Technical Data and Computer
    Software clause at DFARS sec. 252.227-7013.
               cisco Systems, Inc.
               170 West Tasman Drive
               San Jose, California 95134-1706
    Cisco IOS Software, C2960 Software (C2960-LANBASEK9-M), Version 12.2(50)SE5, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2010 by Cisco Systems, Inc.
    Compiled Tue 28-Sep-10 13:44 by prod_rel_team
    Image text-base: 0x00003000, data-base: 0x01400000
    Initializing flashfs...
    fsck: Disable shadow buffering due to heap fragmentation.
    flashfs[1]: 542 files, 19 directories
    flashfs[1]: 0 orphaned files, 0 orphaned directories
    flashfs[1]: Total bytes: 32514048
    flashfs[1]: Bytes used: 11565056
    flashfs[1]: Bytes available: 20948992
    flashfs[1]: flashfs fsck took 2 seconds.
    flashfs[1]: Initialization complete....done Initializing flashfs.
    Checking for Bootloader upgrade.. not needed
    POST: CPU MIC register Tests : Begin
    POST: CPU MIC register Tests : End, Status Passed
    POST: PortASIC Memory Tests : Begin
    POST: PortASIC Memory Tests : End, Status Passed
    POST: CPU MIC interface Loopback Tests : Begin
    POST: CPU MIC interface Loopback Tests : End, Status Passed
    POST: PortASIC RingLoopback Tests : Begin
    POST: PortASIC RingLoopback Tests : End, Status Passed
    POST: PortASIC CAM Subsystem Tests : Begin
    POST: PortASIC CAM Subsystem Tests : End, Status Passed
    POST: PortASIC Port Loopback Tests : Begin
    POST: PortASIC Port Loopback Tests : End, Status Passed
    Waiting for Port download...Complete
    This product contains cryptographic features and is subject to United
    States and local country laws governing import, export, transfer and
    use. Delivery of Cisco cryptographic products does not imply
    third-party authority to import, export, distribute or use encryption.
    Importers, exporters, distributors and users are responsible for
    compliance with U.S. and local country laws. By using this product you
    agree to comply with applicable laws and regulations. If you are unable
    to comply with U.S. and local laws, return this product immediately.
    A summary of U.S. laws governing Cisco cryptographic products may be found at:
    http://www.cisco.com/wwl/export/crypto/tool/stqrg.html
    If you require further assistance please contact us by sending email to
    [email protected].
    cisco WS-C2960-24TT-L (PowerPC405) processor (revision J0) with 65536K bytes of memory.
    Processor board ID FOC1510X4ZQ
    Last reset from power-on
    1 Virtual Ethernet interface
    24 FastEthernet interfaces
    2 Gigabit Ethernet interfaces
    The password-recovery mechanism is enabled.
    64K bytes of flash-simulated non-volatile configuration memory.
    Base ethernet MAC Address       : E8:40:40:06:F0:80
    Motherboard assembly number     : 73-12600-05
    Power supply part number        : 341-0097-03
    Motherboard serial number       : FOC15094MZG
    Power supply serial number      : DCA150583WQ
    Model revision number           : J0
    Motherboard revision number     : A0
    Model number                    : WS-C2960-24TT-L
    System serial number            : FOC1510X4ZQ
    Top Assembly Part Number        : 800-32797-01
    Top Assembly Revision Number    : F0
    Version ID                      : V09
    CLEI Code Number                : COM3L00BRE
    Hardware Board Revision Number  : 0x0A
    Switch Ports Model              SW Version            SW Image
    *    1 26    WS-C2960-24TT-L    12.2(50)SE5           C2960-LANBASEK9-M
    Press RETURN to get started!
    *Mar  1 00:00:31.381: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, changed state to down
    *Mar  1 00:00:32.556: %SPANTREE-5-EXTENDED_SYSID: Extended SysId enabled for type vlan
    *Mar  1 00:00:35.802: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan99, changed state to down
    *Mar  1 00:00:35.861: %SYS-5-CONFIG_I: Configured from memory by console
    *Mar  1 00:00:36.012: %SYS-5-RESTART: System restarted --
    Cisco IOS Software, C2960 Software (C2960-LANBASEK9-M), Version 12.2(50)SE5, RELEASE SOFTWARE (fc1)
    Technical Support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2010 by Cisco Systems, Inc.
    Compiled Tue 28-Sep-10 13:44 by prod_rel_team
    *Mar  1 00:00:36.037: %SSH-5-ENABLED: SSH 1.99 has been enabled
    *Mar  1 00:00:37.060: %LINK-5-CHANGED: Interface FastEthernet0/6, changed state to administratively down
    *Mar  1 00:00:37.094: %LINK-5-CHANGED: Interface FastEthernet0/7, changed state to administratively down
    *Mar  1 00:00:37.127: %LINK-5-CHANGED: Interface FastEthernet0/8, changed state to administratively down
    *Mar  1 00:00:37.161: %LINK-5-CHANGED: Interface FastEthernet0/9, changed state to administratively down
    *Mar  1 00:00:37.195: %LINK-5-CHANGED: Interface FastEthernet0/10, changed state to administratively down
    *Mar  1 00:00:37.228: %LINK-5-CHANGED: Interface FastEthernet0/11, changed state to administratively down
    *Mar  1 00:00:37.262: %LINK-5-CHANGED: Interface FastEthernet0/12, changed state to administratively down
    *Mar  1 00:00:37.362: %LINK-5-CHANGED: Interface FastEthernet0/13, changed state to administratively down
    *Mar  1 00:00:37.362: %LINK-5-CHANGED: Interface FastEthernet0/14, changed state to administratively down
    *Mar  1 00:00:37.362: %LINK-5-CHANGED: Interface FastEthernet0/15, changed state to administratively down
    *Mar  1 00:00:37.404: %LINK-5-CHANGED: Interface FastEthernet0/16, changed state to administratively down
    *Mar  1 00:00:37.446: %LINK-5-CHANGED: Interface FastEthernet0/17, changed state to administratively down
    *Mar  1 00:00:37.488: %LINK-5-CHANGED: Interface FastEthernet0/18, changed state to administratively down
    *Mar  1 00:00:37.497: %LINK-5-CHANGED: Interface FastEthernet0/19, changed state to administratively down
    *Mar  1 00:00:37.539: %LINK-5-CHANGED: Interface FastEthernet0/20, changed state to administratively down
    *Mar  1 00:00:37.572: %LINK-5-CHANGED: Interface FastEthernet0/21, changed state to administratively down
    *Mar  1 00:00:37.606: %LINK-5-CHANGED: Interface FastEthernet0/22, changed state to administratively down
    *Mar  1 00:00:37.639: %LINK-5-CHANGED: Interface FastEthernet0/23, changed state to administratively down
    *Mar  1 00:00:37.673: %LINK-5-CHANGED: Interface FastEthernet0/24, changed state to administratively down
    *Mar  1 00:00:37.690: %LINK-5-CHANGED: Interface GigabitEthernet0/1, changed state to administratively down
    *Mar  1 00:00:37.715: %LINK-5-CHANGED: Interface GigabitEthernet0/2, changed state to administratively down
    After the last line, I can not type any command at all.  I encountered this on three 2960 switches that we have here in our laboratory.  Can anybody help me on how I can get access to the switch via console?
    Thanks in advance.

    Have You Check your console Cable.
    also
    If u are using USB to Serial check driver are properly installed.
    else
    See Helpful Cisco Documentation
    http://www.cisco.com/en/US/products/hw/switches/ps700/products_tech_note09186a008010ff7a.shtml
    Do Rate Helpful Posts

  • Automatic graphic switch via Apple Script

    hi community,
    I would like to change the "Automatic graphics switching" (tick on / tick off) via an Apple Script. I made the following script and it works, except with line "click chckbox 2". Here it ticks the box "Show battery status in menu bar". With "click checkbox 1" it takes the "Lock-Button".
    I would be glad if anybode could tell me the right code for ticking the checkbox "automatic graphics switching" via Apple Script.
    Thanks a lot
    PS: Yes I know that tool gfx Status, but I wanna do this via Apple Script.
    tell application "System Preferences"
      activate
              set current pane to pane "com.apple.preference.energysaver"
              delay 0.5
              tell application "System Events"
                        tell process "Systemeinstellungen"
                                  tell window "Energie sparen"
      click checkbox 2
                                            delay 0.5
                                  end tell
                        end tell
              end tell
      quit
    end tell
    quit

    Hello
    You may try this. It works with MacBook Pro 2010 under 10.6.5.
    tell application "System Preferences"
        set current pane to pane id "com.apple.preference.energysaver"
    end tell
    tell application "System Events"
        tell process "System Preferences"
            tell window 1
                tell group 1 -- automatic graphics switching
                    tell checkbox 1 -- automatic graphics switching
                        click
                    end tell
                end tell
            end tell
        end tell
    end tell
    And the script below will set the option to the specified value.
    set_automatic_graphics_switching(0)
    on set_automatic_graphics_switching(i)
            integer i : status of automatic graphics switching
                0 : off (unchecked)
                1 : on    (checked)
        if i is not in {0, 1} then error "Invalid argument: " & i number 8000
        tell application "System Preferences"
            set _was_running to running
            set current pane to pane id "com.apple.preference.energysaver"
        end tell
        tell application "System Events"
            tell process "System Preferences"
                tell window 1
                    tell group 1 -- automatic graphics switching
                        tell checkbox 1 -- automatic graphics switching
                            if value ≠ i then click
                        end tell
                    end tell
                end tell
            end tell
        end tell
        if not _was_running then
            tell application "System Preferences" to quit
        end if
    end set_automatic_graphics_switching
    Hope this may help,
    H

  • Uplinking 2 x 2950SX switches via MTRJ ports

    Hi,
    While trying to connect 2 x 2950SX switches via their MTRJ ports, using a 2m MTRJ fibre cable, I received no activity on the ports.
    I have tested the ports using the WAN uplink and they activate, therefore I know the ports themselves are fine.
    I have tried two MTRJ cables, to rule out any cable failures, but the results were the same.
    Is there a limitation on the minimum distance of a MTRJ cable for connecting these switches, e.g. should I be using a 3m cable?
    Currently having to use a cross-over cable to link the switches.
    Thanks
    Colin

    Hi Amit,
    Thanks for your swift response. Really appreciate it.
    I have checked the cable and it is an MT-RJ to MT-RJ Multimode fibre cable, 2m in length. The uplink cable to the WAN is a 5m MT-RJ to SC Multimode cable and works fine in any port on either switch.
    I have checked the 2m cable and there are no breaks.
    I checked the configuration of the two switches and ensured that switchport mode trunk was enabled both ends.
    I don't understand why we don't get any link lights when the ports are connected.
    Thanks
    Colin

  • Can't get read-only access to my switches via http

    I set up a couple of users for read-only access to our switches via their web browsers. I set this up in Network Assistant. However when we try to log in, only a level 15 user is allowed to log in and there doesn't seem to be any way change this.
    I know in Network Assistant, you can choose which user level you want, but I don't see any way to do it via the web interface.
    What am I missing here?

    Implementing security within a switching environment is less intuitive than in a router. Switches, by design, tend to recognize only two levels of administrative access - user exec mode or privileged exec mode. Implementation of security at different access levels, level 15, etc, can be tricky and should be done at the command prompt, not in the GUI.
    You should reset your config and do not use Network Assistant for this purpose; it is "buggy."

  • ML wifi dropping fixed by no double NAT on APE, but no guest network in no NAT bridge mode.

    ML wifi connections drop on Airport Extreme with dual NAT
    I have a 2011 MBP, and a 2010 Airport Extreme.  Ever since installing Mountain Lion, the MBP constantly drops wifi connection to the Airport Extreme.  It doesn't drop wifi connection at the coffee shop. 
    Fixed by bridge mode
    So I started the AirPort Utility.  It informed me the AirPort Extreme (APE) has dual NAT, because the cable modem has NAT, and to change the APE to bridge mode.  I did that.  It fixed it!  No dropped wifi.  However, a few hours later, my neighbors came and told me the guest network is gone!  So it fixed it for me, but broke my neighbor's connection.  So I switched the APE back to NAT.  Now my neighbor has wifi but my ML wifi connection is now dropping all the time.
    No guest network in bridge mode
    The APE doesn't have a guest network in bridge mode:  http://www.dslreports.com/forum/r25840392-airport-extreme-bridge-mode-guest-conn ect

    Linc, I agree it shouldn't work in bridge mode.  I don't like that the Cable ISP is using NAT, but it is.  All of these devices attached to my Airport Express are working.
    From Aiport Utility:
         10.53.64.1     Internet router address
         10.53.73.8        Airport Express
    From System Preferences, Screen Sharing:
         10.53.65.66     MacBook Pro
         10.53.65.65     MacMini (ethernet connected)
                               Neighbor's Playstation (ethernet connected)
                               Neigbhors Windows laptop (wifi connected)
    From iPod Touch (http://techtips.salon.com/ipod-touch-ip-address-4209.html):
         10.53.65.153   iPod Touch 4th gen
         10.53.65.67     iPod Touch 3rd gen
    Traceroute (both with and without the AE) shows the first two hops identical private IP addresses.  So the AE is definitely in bridge mode, not routing.  The ISP is giving me a private IP address.
    Traceroute with Airport Extreme
    traceroute www.apple.com
    traceroute to e3191.c.akamaiedge.net (96.16.21.15), 64 hops max, 52 byte packets
    1  10.53.0.1 (10.53.0.1) 8.123 ms  7.218 ms  8.513 ms
    2  10.0.52.62 (10.0.52.62)  7.651 ms  8.257 ms  7.388 ms
    3  static.customer-201-116-nnn-nnn.uninet-ide.com.mx (201.116.nnn.nnn)  13.757 ms  8.553 ms  10.440 ms
    4  inet-bcs-snjosecabo-11-s4-2-0.uninet.net.mx (187.130.146.154)  15.486 ms  10.052 ms  10.098 ms
    5  bb-la-grand-4-pos0-4-2-0.uninet.net.mx (201.125.19.38)  42.289 ms  42.592 ms  42.945 ms
    6  12.89.4.5 (12.89.4.5)  43.300 ms  41.532 ms  42.443 ms
    ^C
    Traceroute from computer plugged directly into Cable Modem. with wifi turned off
    traceroute www.apple.com
    traceroute to e3191.c.akamaiedge.net (96.16.21.15), 64 hops max, 52 byte packets
    1  10.53.0.1 (10.53.0.1)  6.881 ms  7.050 ms  7.557 ms
    2  static.customer-201-116-nnn-nnn.uninet-ide.com.mx (201.116.nnn.nnn)  9.341 ms
        10.0.52.62 (10.0.52.62)  7.090 ms
        static.customer-201-116-nnn-nnn.uninet-ide.com.mx (201.116.nnn.nnn)  9.106 ms
    From the Cisco thread: 
    "3. Apr 10, 2010 2:43 AM (in response to chemilio)
    Re: Traceroute output: What is the first hop ip?
    It may depend on how the ISP do their network infrastructure.  I've seen internal IP addresses in the first few hops of a Cable ISP but I can't remember whether was it the 1st hop or 2nd hop onwards.
    9. May 17, 2011 1:33 PM (in response to chemilio)
    Re: Traceroute output: What is the first hop ip?
    Most ISPs use private RFC1918 IP address schemes for their private network. They effectively treat your street as a LAN, then perform NAT/PAT on your behalf at their CO. This means they can translate onto the public IPv4 or IPv6 internet and take a lot more control over the traffic generated by your network/PC"
    https://learningnetwork.cisco.com/thread/12254
    http://en.wikipedia.org/wiki/Private_network

  • Destination nat on switches

    we want destination nat to work. we have 6509 series swithces running HSRP. we have 2 locations. at these locations proxy servers do the the job of filtering and sending the web traffic. what we want is if the proxy server at location 1 goes down, we shd be able to nat the incoming traffic for proxy sever from user vlan to the proxy server of location b traffic. teh ios version is IOS (tm) MSFC2 Software (C6MSFC2-IS-M), Version 12.1(4)E3,what commands we need to run
    thanx

    Your problem is not going to be so much the nat as how you figure out when the proxy goes down.
    The only thing I have seen that can take action based on a external server is to use object tracking and policy routing. I don't think Nat has any ability to do this.
    Another solution that you may want to concider if your switches support it is to use server load balancing (SLB) to do this.
    There are a number of ways to configure this but it will depend on where your servers are located in relation to the switch. Since this is designed for load balancing first and redundacy second it may not end up being effectient.
    Now if you really want to use nat you could use the policy routing with the object track options and route the traffic to either another router or to loopback interfaces. This would be a variation of nat on a stick. In effect you would be rerouting your traffic though NAT interfaces based on availablilty. Both the policy routing track options and nat on a stick are not the most simple things to comfigure. The policy routing with track option is fairly new and I don't know if they have put it in the switch versions of the IOS yet.

  • Bridge switches to diff thumbnail when I correct images

    I have this aggravating problem on my home mac that doesn't happen on my laptop or any macs at my work. I open a thumbnail in the RAW browser in Bridge and make adjustments, then I select "done" and it goes back to the Bridge. However, the thumbnail I just adjusted isn't selected in then content panel anymore. It automatically selects the next image. I have to wait a bit before the thumbnail of the image I just adjusted appears. Then I can hit my back arrow and reselect it. This is a real pain. On all my other machines, Bridge holds the selection on the adjusted thumbnail(s) so I can actually see each one's image change according to my adjustment.
    Is there a way to set this on my machine? Anyone else had this problem? Is it a bug with my configuration? It is really annoying and inefficient. Any help is greatly appreciated. Thanks.
    Mac Dual 2.5 Ghz PowerPC G5, 1.5GB ram, OS 10.5.4
    I am using CS3.

    Whenever Bridge is starting to behave odd first thing to try is to reset
    preferences, restart Bridge holding down option key, choose reset
    preferences and after restarting Bridge reset the preferences again to your
    wishes and try again.
    I wonder if I figured this out. I bet it is the amount of RAM I have
    installed. I have lots more RAM in all the other machines.
    Any thoughts?

  • Trying to access remote switch via VLAN1 (which is shutdown)...

    We were trying some things to get multiple VLANs to pass through some wireless bridges. In the confusion, we have misconfigured the port and locked ourselves out of the far switch, lol. The local switch has VLAN1 (default), VLAN2 (data), and VLAN3 (voice). None of the VLANs are shutdown and the switch has an interface for both VLAN2 and VLAN3. The remote switch also has VLAN1, VLAN2, and VLAN3 (and it has an interface for VLAN2 and VLAN3). However, VLAN1 is shutdown. The port used to connect it to the local switch has always been using VLAN2. In the midst of some changes, that port got changed to VLAN1 :(  We can no longer access the remote switch at all. It does still show up in cdp neighbors on the local switch (although it says VLAN1 mismatch). Is there anyway we can get back into the remote switch without having someone go on site and perform a power cycle? Thanks.

    Here is the email from Planet Networing:
    About your inquiry:
    I have two WNAP-6305 bridges connecting two Cisco switches. The Cisco switches are configured for trunking, but only one VLAN is being passed through the bridges. Every other bridge that I've worked with will allow all VLANs to pass through. Is there a way to allow that with these units?
    Answer:
    The WNAP-6305’s SDK didn’t support tagged VLAN, so only the default VLAN can be passed through the WDS bridge.
    We’ll suggest you use WNAP-6350.

  • How to get Port Classifications for Logical Switch via scvmm console

    Hello  All,
    We are creating some automation tool based on SCVMM console scripts.
    In order to create vm we need to assign port classification  based on Virtual Switch and then logical switch. The problem is that I could not find any way to retrieve port classifications assigned to logical switch (Virtual Port tab in SCVMMs logical
    switch properties). There is Get-SCLogicalSwitch that return just name, description and some properties. There is also Get-SCUplinkPortProfileSet which returns Uplink tab data of SCVMMs logical switch properties. But no api to retrieve port classifications
    for switch. Get-SCPortClassification also doesn't return switch assignments. Any ideas how to get this data?

    I think you are looking for
    Get-SCVirtualNetworkAdapterPortProfileSet.
    This posting is provided "AS IS" with no warranties, and confers no rights. User assumes all risks.

  • Creating Logical Networks and Switches via SPF

    Hi,
    Is it possible to create Logical switches and logical networks in VMM by calling SPF REST APIs. I can see only a GET API for logical networks and none for Logical switches. If they exist can someone point me to a link to the documentation?
    Thanks,
    Venky

    Hi
    You can only get logical network information -
    http://msdn.microsoft.com/en-us/library/dn470018.aspx
    The purpose of SPF is to be used as web service for Tenants. As logical networks and switches are objects that are maintained by administrators they cannot be managed by SPF. Logical networks have get operation because you might want to create VLAN-based
    VM Networks depending on what is configured in Logical networks. For administrating logical switches and networks administrators will use PowerShell or the VMM console.

  • I cannot open JPG images in Camera RAW from Bridge or via "Open as" facility in Photoshop

    I am going crazy with Photoshop CC!!! I have been using Photoshop CC and Bridge CC since Feb 2014 and have a recurring problem, which comes back periodically after having been fixed with the aid of the Adobe Help Chat facility. Today the Chat facility is not on-line, so in desperation I'm hoping someone in the Community can help me.
    When I try to open a JPG file in Bridge I get the message "Bridge's parent application is not active. Bridge requires that aqualifying product has been launched at least once to enable this feature".
    When I try to open a JPG file in Photoshop using the "Open As" facility, I get the message "Could not complete your request because the file-format module cannot parse the file".
    I am running CC on a Dell laptop under Windows 7 64-bit.
    Can anyone help me please?
    Ian McFarlane

    I should add that JPGs edited with ACR usually need to be writable for ACR to be able to store the adjustment-settings inside themselves.  RAW files typically use an XMP sidecar to store settings, but JPGs typically don't.
    If the files weren't read/write then ACR would have no way to store the adjustments in them and so is smart enough to not make them available for editing.
    The other hint is that if you copy the files to your desktop--where the permissions are likely to be more friendly, they work.
    To check the permissions, right-click on one of the files in Explorer, select Properties from the context menu and look at the Security tab.  Look at the various user-groups, like Users, Authenticated Users, Administrators, etc, and see what access each has to one oft he problem files, and then to one of the files that works ok.
    You might also check the Effective Rights of a particular user to a particular file by clicking on the Advanced button in the Security tab.  Here is an example where I show only Read + Read & Execute access to an NEF for general users, but when I check my own logged in User (steve) I have Full Control which includes all the other access privileges, and this is either because I'm in the Administrators group or I am the owner, I'm not sure.  It is possible that Bridge or Photoshop is running in a user context other than your logged in user, or it's possible that another user accessed the files and changed the permissions to them.

  • Unstable Wireless Bridge Connection via 802.11a(Radio 1) of Aironet 1242

    Hi,
    I'm going to setup up an AP 1242 in a remote area to support b/g client via a 802.11a bridge link (all using AP 1242).
    Before the deployment, I tested the configuration in a lab environment. However, I found the bridge link will come up a while and suddenly gone. Resetting the root AP or the non-root AP cannot bring the connection up again. Sometimes, when I shutdown the b/g radio (radio 0) of the remote AP, the bridge link will be established again. Following is the log from the root AP.
    Thanks!
    *Apr  4 12:24:05.013: %LINK-5-CHANGED: Interface Dot11Radio0, changed state to r
    eset
    *Apr  4 12:24:05.054: %LINK-3-UPDOWN: Interface Dot11Radio1, changed state to up
    *Apr  4 12:24:05.665: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern
    et0, changed state to down
    *Apr  4 12:24:06.009: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio
    1, changed state to up
    *Apr  4 12:24:06.013: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio
    0, changed state to down
    *Apr  4 12:24:07.054: %LINK-3-UPDOWN: Interface BVI1, changed state to down
    *Apr  4 12:24:16.091: %DOT11-4-CANT_ASSOC: Interface Dot11Radio0, cannot associa
    te: No Response
    *Apr  4 12:24:16.811: %LINK-3-UPDOWN: Interface BVI1, changed state to up
    *Apr  4 12:24:17.811: %LINEPROTO-5-UPDOWN: Line protocol on Interface BVI1, chan
    ged state to upInternal error:  command failed                                                             <<<< Internal error:  command failed ??????
                                                                                                                                   <<<<don't know the meaning of this message
    *Apr  4 12:27:22.206: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to r
    eset
    *Apr  4 12:27:22.233: %LINK-3-UPDOWN: Interface Dot11Radio1, changed state to up
    *Apr  4 12:27:22.233: dot11_mgmt: bad cookie returned from driver for mac 003a.9         <<<<<003a.928.dad0 is radio 1 / non root bridge of remote AP
    928.dad0(expected 0x00000000, got 0x010ADAB0) - force driver to delete client             <<<<<don't know the meaning of this message
    *Apr  4 12:27:22.235: %LINK-5-CHANGED: Interface Dot11Radio1, changed state to r
    eset
    *Apr  4 12:27:22.262: %LINK-3-UPDOWN: Interface Dot11Radio1, changed state to up
    *Apr  4 12:27:23.513: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern
    et0, changed state to up
    *Apr  4 12:27:26.993: %DOT11-6-ASSOC: Interface Dot11Radio1, Station T9_QC168_Ca
    ntil 003a.9928.dad0 Reassociated KEY_MGMT[NONE]
    *Apr  4 12:27:28.465: %DOT11-4-MAXRETRIES: Packet to client 003a.9928.dad0 reach
    ed max retries, removing the client
    *Apr  4 12:27:28.465: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating
    Station 003a.9928.dad0 Reason: Previous authentication no longer valid
    *Apr  4 12:27:28.467: %DOT11-4-MAXRETRIES: Packet to client 003a.9928.dad0 reach
    ed max retries, removing the client
    *Apr  4 12:27:31.673: %DOT11-6-ASSOC: Interface Dot11Radio1, Station T9_QC168_Ca
    ntil 003a.9928.dad0 Reassociated KEY_MGMT[NONE]
    *Apr  4 12:27:32.687: %DOT11-6-ADD: Interface Dot11Radio1, Station 003a.9926.e76
    0 Associated to Parent 003a.9928.dad0
    *Apr  4 12:28:46.178: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating
    Station 003a.9928.dad0 Reason: Sending station has left the BSS
    *Apr  4 12:28:46.179: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating
    Station 003a.9926.e760
    *Apr  4 12:28:46.181: %DOT11-6-ASSOC: Interface Dot11Radio1, Station T9_QC168_Ca
    ntil 003a.9928.dad0 Reassociated KEY_MGMT[NONE]
    *Apr  4 12:28:47.196: %DOT11-6-ADD: Interface Dot11Radio1, Station 003a.9926.e76
    0 Associated to Parent 003a.9928.dad0
    *Apr  4 12:29:15.132: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern
    et0, changed state to down
    *Apr  4 12:29:32.442: %DOT11-4-MAXRETRIES: Packet to client 003a.9928.dad0 reach
    ed max retries, removing the client
    *Apr  4 12:29:32.442: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating
    Station 003a.9928.dad0 Reason: Previous authentication no longer valid
    *Apr  4 12:29:32.443: %DOT11-6-DISASSOC: Interface Dot11Radio1, Deauthenticating
    Station 003a.9926.e760
    *Apr  4 12:29:32.444: %DOT11-4-MAXRETRIES: Packet to client 003a.9928.dad0 reach
    ed max retries, removing the client
    *Apr  4 12:31:10.285: %DOT11-4-CANT_ASSOC: Interface Dot11Radio0, cannot associa
    te: Rcvd response from 003a.9928.2660 channel 6 2560
    *Apr  4 12:31:18.286: %DOT11-4-CANT_ASSOC: Interface Dot11Radio0, cannot associa
    te: AssociatingInternal error:  command failed
    *Apr  4 12:31:27.021: dot11_mgmt: bad cookie returned from driver for mac 003a.9
    928.2660(expected 0x00000000, got 0x010ADAB0) - force driver to delete client
    *Apr  4 12:31:29.107: %DOT11-4-UPLINK_ESTABLISHED: Interface Dot11Radio0, Associ
    ated To AP T9_SML_LT2_AP2 003a.9928.2660 [None]
    *Apr  4 12:31:29.108: %LINK-3-UPDOWN: Interface Dot11Radio0, changed state to up
    *Apr  4 12:31:30.108: %LINEPROTO-5-UPDOWN: Line protocol on Interface Dot11Radio
    0, changed state to up

    Thanks dmantill for reminding me to revisit the antenna and related stuff.
    As the setup is in a lab environment, the APs are put on a work bench next to each other, therefore, the radio output power was lowered.
    After adjusting the output powers, it works as expected.
    Thanks Surendra and dmantill.

  • Missing SET parameters on 3750 switch via Telnet?

    Hello. When I telnet into my 3750, and then I ENABLE to get priviledge commands, I want to SET the SPANNING-TREE parameter.
    I type SET ? and only get one option
    MEMORY set memory paramters
    When I type SHOW ?, I do see the parameter to show the SPANNING-TREE information.
    Is there something else I need to enable?
    Thanks, for your help...Jake

    ok, I figured out my problem...I feel like such a newb...
    I had to get into the CONFIG mode then many more options were possible.
    I figured out how to set the spanning-tree, then immediately got PORT-SECURITY errors about 1 every second. I didn't easily see how to disable that feature from Telnet, but was able to from the Cisco Network Assistant and/or the Java based web interface.
    Once I turned off/disabled Port security for that port a SHOW RUNNING-CONFIG did not even display anything for that port. Guess that's to be expected, I would have preferred to see disabled, but finally, FINALLY, I can communicate with the network and internet.
    All this just for testing purposes and a slow migration to the new switches.
    Jake

  • Mac OS X 10.5 Finder issues - Application switching via Command-Tab

    I have been having problems recently, when I would switch apps using command-tab, some applications don't show up. I haven't noticed this before, while using the integrated graphics card, but have noticed it since using the discreet card, related?

    I'm on a dual 2.7 G5 and I'm having this same issue - so I don't think it's the graphics card... not sure. Anyone have solutions? Or the same issue?

Maybe you are looking for