Static PAT issue with 8.4
I have a simple small network setup here, and trying to setup a simple Static PAT on HTTPS, for some reason the NAT rule is dropping the packet. Here is the setup.
Internal Subnet: 172.31.0.0/24
External Internet DHCP
Host object: 172.31.0.13
There is also a SSL anyconnect VPN setup but is using port 444.
object network obj_any-01
nat (inside,outside) dynamic interface
object network LD-App01
nat (inside,outside) static interface service tcp https https
nat (inside,any) after-auto source static obj-172.31.0.0 obj-172.31.0.0 destination static Personal-VPN Personal-VPN no-proxy-arp
object network obj-172.31.0.0
subnet 172.31.0.0 255.255.255.0
object network Personal-VPN
subnet 172.31.1.0 255.255.255.0
object network obj_any-01
subnet 0.0.0.0 0.0.0.0
object network LD-App01
host 172.31.0.13
access-list inside_access_in extended permit ip any any
access-list inside_nat0_outbound extended permit ip 172.31.0.0 255.255.255.0 object Personal-VPN
access-list Personal-VPN-ACL standard permit 172.31.0.0 255.255.255.0
access-list outside_access_in extended permit icmp any any
access-list outside_access_in extended permit tcp any object LD-App01 eq https
access-group inside_access_in in interface inside
access-group outside_access_in in interface outside
Here is the packet trace
Phase: 1
Type: ROUTE-LOOKUP
Subtype: input
Result: ALLOW
Config:
Additional Information:
in 172.31.0.0 255.255.255.0 inside
Phase: 2
Type: ACCESS-LIST
Subtype: log
Result: ALLOW
Config:
access-group outside_access_in in interface outside
access-list outside_access_in extended permit tcp any object LD-App01 eq https
Additional Information:
Phase: 3
Type: IP-OPTIONS
Subtype:
Result: ALLOW
Config:
Additional Information:
Phase: 4
Type: HOST-LIMIT
Subtype:
Result: ALLOW
Config:
Additional Information:
Phase: 5
Type: NAT
Subtype: rpf-check
Result: DROP
Config:
object network LD-App01
nat (inside,outside) static interface service tcp https https
Additional Information:
Result:
input-interface: outside
input-status: up
input-line-status: up
output-interface: inside
output-status: up
output-line-status: up
Action: drop
Drop-reason: (acl-drop) Flow is denied by configured rule
Please Help...
Thanks,
Lee
Here is the current object list and the nat command with the failure message. I'm also running the current 8.4(3)
LD-FW01# show run ob
object network obj-172.31.0.0
subnet 172.31.0.0 255.255.255.0
object network Personal-VPN
subnet 172.31.1.0 255.255.255.0
object network obj_any-01
subnet 0.0.0.0 0.0.0.0
object network LD-App01
host 172.31.0.13
description Spiceworks
object service https
service tcp source eq https
object network outside_int_ip
host 76.188.84.144
LD-FW01# con t
LD-FW01(config)# object network LD-App01
LD-FW01(config-network-object)# nat (inside,outside) 1 source static LD-App01 $
ERROR: Address 75.188.84.144 overlaps with outside interface address.
ERROR: NAT Policy is not downloaded
Similar Messages
-
Static on my line - issue with cable in my neighbor's yard
After a bad rainstorm in January I started to get extremely bad static on my line and it was unusable. I contacted Verizon to schedule a repair. A week and a half later the technician came out, did some work and appeared to fix the problem. A day later it rained and the problem returned. Another repair request. Another week and a half. This time, the repair person called me and said that there was some issue with water getting into the line. He thought the problem was in my neighbor's yard, but he was having an issue getting into the yard. I'm not sure why as she is home all day during the weekdays. He also mentioned that he made some sort of repair with a circuit in the office. Again, the problem "seemed" to be fixed but soon returned.
What else can I do to get this resolved?Rain and older copper telephone service have always been an issue with one another, so it might be an especially hard problem to fix once and for all. If you want to do "your due diligence" then double check with your neighbor as to when a good day and time would be where the technician could go in their yard. Get their number for contact, and when you file another report make sure to give them both your numbers, and let them know the neighbor is giving access and right of way to Verizon to do the repair. If it's FIOS then it would be unusual that the problem is outside (not impossible) but real unusual. SO if FiOS is in your neck of the woods, you may want to just upgrade, it will likely fix your problem if it's really outside in the yards and the streets.
Also - when the static comes back, MAKE SURE it's coming from the street. It most likely is, but go ahead and make sure. Take your phone to where your outside Verizon box is located, open it up and plug it in (standard telephone test jacks are inside the Verizon box, they sometimes call it a NID)
If you get static even when plugged in at that box, then yes it's an outside problem that they need to fix.
If it's clear when you plug in at that box, then they don't need outside access, the trouble is inside your house.
Hope it helps. -
Windows 7 Pro DNS issue with static IP
0
down vote
favorite
I have been unable to solve a DNS problem I am having as follows:
I have a Windows 7 Professional (64 bit) computer running VirtualBox with a couple of Windows XP guests (not sure if this bit is relevant). After heavy file copying/transfer on both of the Windows XP machines, both the guest machines AND the host loose anything
DNS related, so I cannot call anything by name, but by direct IP works fine. The only resolution is to reboot the (host) machine and it will then work OK for a while until it happens again. The only trigger to make it seem to happen quicker is to re-initiate
the heavy file transfer and this then causes the DNS resolution to stop working again.
The machine has a fixed IP address, so it isn't related to DHCP.
I've tried the machine connected wired and wireless, no difference.
The IP settings are manual and I have tried giving it the DNS settings of the router (normal settings) and I have also tried giving it Google's DNS servers (8.8.8.8 & 8.8.4.4). No difference.
It seems to happen (sooner) during heavy traffic.
Other Windows 7 machines in the network work fine (though they are Home version, not Pro).
ONLY DNS fails, direct IP works OK.
Reboot seems only solution at the moment.
I am now lost as to what to try to resolve this issue, I do not really want to reload Windows 7 as it is a relatively new install... I have read about issues with wired connections on my router (BT Home Hub 2.0) so tried a wireless connection, still the
same.
Here is my ipconfig /all (it shows the BT Home Hub router DNS settings, but it also failed with Google's 8.8.8.8 and 8.8.4.4 entered here and also with the routers 192.168.1.254 (default).
Microsoft Windows [Version 6.1.7601]
Copyright (c) 2009 Microsoft Corporation. All rights reserved.
C:\Users\G>ipconfig /all
Windows IP Configuration
Host Name . . . . . . . . . . . . : e1
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No
Ethernet adapter Local Area Connection:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek PCIe GBE Family Controller
Physical Address. . . . . . . . . : 30-85-A9-AD-07-81
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::59f:484a:827f:42ba%11(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.1.87(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . : 192.168.1.254
DHCPv6 IAID . . . . . . . . . . . : 238060969
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1A-39-2B-4D-30-85-A9-AD-07-81
DNS Servers . . . . . . . . . . . : 217.32.171.21
213.120.234.30
NetBIOS over Tcpip. . . . . . . . : Enabled
Ethernet adapter VirtualBox Host-Only Network:
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : VirtualBox Host-Only Ethernet Adapter
Physical Address. . . . . . . . . : 08-00-27-00-28-56
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::8d2d:7418:381b:8dc0%15(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.56.1(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Default Gateway . . . . . . . . . :
DHCPv6 IAID . . . . . . . . . . . : 336068647
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-1A-39-2B-4D-30-85-A9-AD-07-81
DNS Servers . . . . . . . . . . . : fec0:0:0:ffff::1%1
fec0:0:0:ffff::2%1
fec0:0:0:ffff::3%1
NetBIOS over Tcpip. . . . . . . . : Enabled
Tunnel adapter isatap.{486D4DCC-9CB7-417E-A796-596E0E6B1D54}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter Teredo Tunneling Pseudo-Interface:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Teredo Tunneling Pseudo-Interface
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
Tunnel adapter isatap.{67455999-75A5-436E-9EAC-12B093363132}:
Media State . . . . . . . . . . . : Media disconnected
Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Microsoft ISATAP Adapter #2
Physical Address. . . . . . . . . : 00-00-00-00-00-00-00-E0
DHCP Enabled. . . . . . . . . . . : No
Autoconfiguration Enabled . . . . : Yes
C:\Users\G>
Any ideas where to look, or what other info to provide for any assistance?
Many thanks in advance.Hi,
This has just happened again, here is the content of the netstat results as requested...
If I kill the VirtualBox virtual machines, it starts working again. It is as if there are no ports left, but I am not occupying that many? Surely Windows 7 can cope with this?
I feel I am missing something important, but cannot put my finger on it...
Further below, I have re-run the netstat command AFTER I have closed the VirtualBox machines and the system works OK.
netstat results DURING ISSUE:
Active Connections
Proto Local Address Foreign Address State PID
TCP 0.0.0.0:21 0.0.0.0:0 LISTENING 1444
[FileZilla Server.exe]
TCP 0.0.0.0:25 0.0.0.0:0 LISTENING 1692
[MESMTPC.EXE]
TCP 0.0.0.0:80 0.0.0.0:0 LISTENING 4
Can not obtain ownership information
TCP 0.0.0.0:110 0.0.0.0:0 LISTENING 1660
[MEPOPS.EXE]
TCP 0.0.0.0:135 0.0.0.0:0 LISTENING 752
RpcSs
[svchost.exe]
TCP 0.0.0.0:143 0.0.0.0:0 LISTENING 1524
[MEIMAPS.exe]
TCP 0.0.0.0:445 0.0.0.0:0 LISTENING 4
Can not obtain ownership information
TCP 0.0.0.0:1221 0.0.0.0:0 LISTENING 4796
[VirtualBox.exe]
TCP 0.0.0.0:2199 0.0.0.0:0 LISTENING 4820
[VirtualBox.exe]
TCP 0.0.0.0:3306 0.0.0.0:0 LISTENING 1756
[mysqld.exe]
TCP 0.0.0.0:3389 0.0.0.0:0 LISTENING 1104
CryptSvc
[svchost.exe]
TCP 0.0.0.0:6901 0.0.0.0:0 LISTENING 4636
[WinVNC.exe]
TCP 0.0.0.0:6901 0.0.0.0:0 LISTENING 4636
[WinVNC.exe]
TCP 0.0.0.0:8300 0.0.0.0:0 LISTENING 3464
[sc_serv.exe]
TCP 0.0.0.0:8301 0.0.0.0:0 LISTENING 3464
[sc_serv.exe]
TCP 0.0.0.0:8360 0.0.0.0:0 LISTENING 3080
[sc_serv.exe]
TCP 0.0.0.0:8361 0.0.0.0:0 LISTENING 3080
[sc_serv.exe]
TCP 0.0.0.0:9022 0.0.0.0:0 LISTENING 4804
[VirtualBox.exe]
TCP 0.0.0.0:9023 0.0.0.0:0 LISTENING 4804
[VirtualBox.exe]
TCP 0.0.0.0:9080 0.0.0.0:0 LISTENING 4804
[VirtualBox.exe]
TCP 0.0.0.0:10001 0.0.0.0:0 LISTENING 4828
[VirtualBox.exe]
TCP 0.0.0.0:10002 0.0.0.0:0 LISTENING 4828
[VirtualBox.exe]
TCP 0.0.0.0:10003 0.0.0.0:0 LISTENING 4828
[VirtualBox.exe]
TCP 0.0.0.0:10011 0.0.0.0:0 LISTENING 4780
[VirtualBox.exe]
TCP 0.0.0.0:10012 0.0.0.0:0 LISTENING 4780
[VirtualBox.exe]
TCP 0.0.0.0:10013 0.0.0.0:0 LISTENING 4780
[VirtualBox.exe]
TCP 0.0.0.0:25566 0.0.0.0:0 LISTENING 3648
[TerrariaServer.exe]
TCP 0.0.0.0:30001 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30002 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30003 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30004 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30005 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30006 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30007 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30020 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30021 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30039 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30080 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30081 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30082 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30083 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30084 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30085 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30086 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30087 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30088 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30089 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30090 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30091 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30092 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30093 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30094 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30095 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30096 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30097 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30098 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30099 0.0.0.0:0 LISTENING 4788
[VirtualBox.exe]
TCP 0.0.0.0:30101 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30102 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30103 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30104 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30105 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30106 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30107 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30108 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30109 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30110 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30111 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30112 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30113 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30114 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30115 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30116 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30117 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30118 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30119 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30120 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30121 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30139 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30180 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30181 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30182 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30183 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30184 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30185 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30186 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30187 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30188 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30189 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30190 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30191 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30192 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30193 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30194 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30195 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30196 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30197 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30198 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30199 0.0.0.0:0 LISTENING 4812
[VirtualBox.exe]
TCP 0.0.0.0:30201 0.0.0.0:0 LISTENING 4796
[VirtualBox.exe]
TCP 0.0.0.0:30239 0.0.0.0:0 LISTENING 4796
[VirtualBox.exe]
TCP 0.0.0.0:33306 0.0.0.0:0 LISTENING 4796
[VirtualBox.exe]
TCP 0.0.0.0:49152 0.0.0.0:0 LISTENING 440
[wininit.exe]
TCP 0.0.0.0:49153 0.0.0.0:0 LISTENING 880
eventlog
[svchost.exe]
TCP 0.0.0.0:49154 0.0.0.0:0 LISTENING 1000
Schedule
[svchost.exe]
TCP 0.0.0.0:49156 0.0.0.0:0 LISTENING 508
[lsass.exe]
TCP 0.0.0.0:49157 0.0.0.0:0 LISTENING 500
[services.exe]
TCP 0.0.0.0:49158 0.0.0.0:0 LISTENING 3048
PolicyAgent
[svchost.exe]
TCP 127.0.0.1:8361 127.0.0.1:49364 ESTABLISHED 3080
[sc_serv.exe]
TCP 127.0.0.1:14147 0.0.0.0:0 LISTENING 1444
[FileZilla Server.exe]
TCP 127.0.0.1:14147 127.0.0.1:49162 ESTABLISHED 1444
[FileZilla Server.exe]
TCP 127.0.0.1:49162 127.0.0.1:14147 ESTABLISHED 3156
[FileZilla Server Interface.exe]
TCP 127.0.0.1:49212 127.0.0.1:49213 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49213 127.0.0.1:49212 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49214 127.0.0.1:49215 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49215 127.0.0.1:49214 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49216 127.0.0.1:49217 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49217 127.0.0.1:49216 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49218 127.0.0.1:49219 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49219 127.0.0.1:49218 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49220 127.0.0.1:49221 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49221 127.0.0.1:49220 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49222 127.0.0.1:49223 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49223 127.0.0.1:49222 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49224 127.0.0.1:49225 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49225 127.0.0.1:49224 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49226 127.0.0.1:49227 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49227 127.0.0.1:49226 ESTABLISHED 4288
[java.exe]
TCP 127.0.0.1:49364 127.0.0.1:8361 ESTABLISHED 3100
[Instore_Radioboss.exe]
TCP 192.168.1.87:139 0.0.0.0:0 LISTENING 4
Can not obtain ownership information
TCP 192.168.1.87:3389 217.156.134.12:22971 ESTABLISHED 1104
CryptSvc
[svchost.exe]
TCP 192.168.1.87:8360 81.148.248.221:1026 ESTABLISHED 3080
[sc_serv.exe]
TCP 192.168.1.87:25565 0.0.0.0:0 LISTENING 4288
[java.exe]
TCP 192.168.1.87:50644 37.139.0.151:8233 ESTABLISHED 4796
[VirtualBox.exe]
TCP 192.168.1.87:51019 81.27.96.46:21 TIME_WAIT 0
TCP 192.168.1.87:53126 192.168.1.86:445 ESTABLISHED 4
Can not obtain ownership information
TCP 192.168.1.87:60462 192.168.1.86:445 CLOSE_WAIT 4
Can not obtain ownership information
TCP 192.168.1.87:65029 37.139.0.151:8231 ESTABLISHED 4796
[VirtualBox.exe]
TCP 192.168.56.1:139 0.0.0.0:0 LISTENING 4
Can not obtain ownership information
TCP [::]:21 [::]:0 LISTENING
1444
[FileZilla Server.exe]
TCP [::]:25 [::]:0 LISTENING
1692
[MESMTPC.EXE]
TCP [::]:80 [::]:0 LISTENING
4
Can not obtain ownership information
TCP [::]:135 [::]:0 LISTENING
752
RpcSs
[svchost.exe]
TCP [::]:445 [::]:0 LISTENING
4
Can not obtain ownership information
TCP [::]:3306 [::]:0 LISTENING
1756
[mysqld.exe]
TCP [::]:3389 [::]:0 LISTENING
1104
CryptSvc
[svchost.exe]
TCP [::]:30239 [::]:0 LISTENING
4796
[VirtualBox.exe]
TCP [::]:49152 [::]:0 LISTENING
440
[wininit.exe]
TCP [::]:49153 [::]:0 LISTENING
880
eventlog
[svchost.exe]
TCP [::]:49154 [::]:0 LISTENING
1000
Schedule
[svchost.exe]
TCP [::]:49156 [::]:0 LISTENING
508
[lsass.exe]
TCP [::]:49157 [::]:0 LISTENING
500
[services.exe]
TCP [::]:49158 [::]:0 LISTENING
3048
PolicyAgent
[svchost.exe]
TCP [::1]:14147 [::]:0 LISTENING 1444
[FileZilla Server.exe]
UDP 0.0.0.0:123 *:*
964
W32Time
[svchost.exe]
UDP 0.0.0.0:500 *:*
1000
IKEEXT
[svchost.exe]
UDP 0.0.0.0:3702 *:*
964
EventSystem
[svchost.exe]
UDP 0.0.0.0:3702 *:*
964
EventSystem
[svchost.exe]
UDP 0.0.0.0:4500 *:*
1000
IKEEXT
[svchost.exe]
UDP 0.0.0.0:5355 *:*
1104
Dnscache
[svchost.exe]
UDP 0.0.0.0:53274 *:*
4780
[VirtualBox.exe]
UDP 0.0.0.0:53727 *:*
4788
[VirtualBox.exe]
UDP 0.0.0.0:54111 *:*
4828
[VirtualBox.exe]
UDP 0.0.0.0:54112 *:*
4828
[VirtualBox.exe]
UDP 0.0.0.0:54113 *:*
4780
[VirtualBox.exe]
UDP 0.0.0.0:55421 *:*
964
EventSystem
[svchost.exe]
UDP 0.0.0.0:58596 *:*
964
EventSystem
[svchost.exe]
UDP 0.0.0.0:59838 *:*
4812
[VirtualBox.exe]
UDP 0.0.0.0:62498 *:*
4796
[VirtualBox.exe]
UDP 127.0.0.1:1900 *:*
4172
SSDPSRV
[svchost.exe]
UDP 127.0.0.1:55045 *:*
4172
SSDPSRV
[svchost.exe]
UDP 192.168.1.87:137 *:*
4
Can not obtain ownership information
UDP 192.168.1.87:138 *:*
4
Can not obtain ownership information
UDP 192.168.1.87:1900 *:*
4172
SSDPSRV
[svchost.exe]
UDP 192.168.1.87:55043 *:*
4172
SSDPSRV
[svchost.exe]
UDP 192.168.56.1:137 *:*
4
Can not obtain ownership information
UDP 192.168.56.1:138 *:*
4
Can not obtain ownership information
UDP 192.168.56.1:1900 *:*
4172
SSDPSRV
[svchost.exe]
UDP 192.168.56.1:55044 *:*
4172
SSDPSRV
[svchost.exe]
UDP [::]:123 *:*
964
W32Time
[svchost.exe]
UDP [::]:500 *:*
1000
IKEEXT
[svchost.exe]
UDP [::]:3702 *:*
964
EventSystem
[svchost.exe]
UDP [::]:3702 *:*
964
EventSystem
[svchost.exe]
UDP [::]:4500 *:*
1000
IKEEXT
[svchost.exe]
UDP [::]:5355 *:*
1104
Dnscache
[svchost.exe]
UDP [::]:55422 *:*
964
EventSystem
[svchost.exe]
UDP [::]:58597 *:*
964
EventSystem
[svchost.exe]
UDP [::1]:1900 *:*
4172
SSDPSRV
[svchost.exe]
UDP [::1]:55042 *:*
4172
SSDPSRV
[svchost.exe]
UDP [fe80::59f:484a:827f:42ba%11]:1900 *:*
4172
SSDPSRV
[svchost.exe]
UDP [fe80::59f:484a:827f:42ba%11]:55040 *:*
4172
SSDPSRV
[svchost.exe]
UDP [fe80::11a6:2283:bc40:c0cb%16]:1900 *:*
4172
SSDPSRV
[svchost.exe]
UDP [fe80::11a6:2283:bc40:c0cb%16]:55041 *:*
4172
SSDPSRV
[svchost.exe] -
Was is most interesting, is that if I watch other content like MLB TV using the sound bar and optical cable, I don't have this issue, it's all very strange. Any suggestions?
Perhaps it's obvious to you, but what would I adjust in the midi settings? There's nothing obvious that speaks to this out of sync issue.
FYI, I just plugged my JBL creatures into the audio out (same physical jack as the digital out, though of course they use different technologies) and there is no sync problem with the audio played through them. Clearly it's an issue with the digital out, just wish I could figure out if it's my stereo or something in the computer. I have no other devices that accept a digital input, so can't swap the stereo out for anything else. -
NAT/PAT Setup with internal web server.
Environment:
Web Server inside and 10 internal workstations.
One external public IP address.
Cisco Router 806 with HTTP server enable.
Conditions:
External users have to be able to access the web server.
The internal users have to be able to access the web server via the "EXTERNAL" IP address. Since they are using an external DNS.
Scenario:
The internal workstation request from external DNS address for the web server.
DNS replies with external IP address.
Workstation attempts to connect to web server via external IP address.
Connection fails at the router showing the router's HTTP logon page.
We are trying to implement NAT/PAT inside, with static assignment to port 80 to the internal web server.
Thanks, Pat Askins.You need to use cisco NAT virtual interface,
Example:
your internal network web server ip 192.168.1.10/24 Fa0 router Fa1 Public Ip address 1.1.1.1
here is what you need to configure in NAT router to resolve your issue:
int fa0
ip nat enable
no ip redirects
int fa 1
ip nat enable
no ip redirects
ip nat source static tcp 192.168.1.10 80 1.1.1.1 80 overload
ip nat source list 1 interface fa0 overload
access-list 1 permit 192.168.1.0 0.0.0.255
now you can try access to your 1.1.1.1:80 from inside network. -
Hi,
I am having major WiFi issues with my Curve 8530. Everytime I connect to my wireless router, it takes a long time to connect to BIS, and then if I try to use basically any data at all, my router drops my Curve 8530. Sometimes it stays connected, but I cannot use App World at all, and email, and web browsing is all over the place in terms of speed, sometimes it is fast, while sometimes it is slow, and most of the time it stalls while loading a page. How do I configure my router for use with BIS and have it not drop my Curve 8530 everytime I use data over WiFi? BIS works perfectly over my cellular carriers network, so BIS is activated on my device. I have tried giving my BB a static IP, but that did not solve anything. My router is a Netgear WNR2000. Also, I have the latest device software installed on my BB, and all of my apps are up-to-date.Hi,
Have you had any luck and resolving your problem?
We have a similar problem but it's with iOS devices where only one can connect at a time. We have about 10 that need to connect. All other laptops and tablets connect fine.
Power cycling the AX411 fixes it temporarly.
Darren -
WAP4410N issues with Macbooks/Apple computers
/* Style Definitions */
table.MsoNormalTable
{mso-style-name:"Table Normal";
mso-tstyle-rowband-size:0;
mso-tstyle-colband-size:0;
mso-style-noshow:yes;
mso-style-priority:99;
mso-style-qformat:yes;
mso-style-parent:"";
mso-padding-alt:0in 5.4pt 0in 5.4pt;
mso-para-margin-top:0in;
mso-para-margin-right:0in;
mso-para-margin-bottom:10.0pt;
mso-para-margin-left:0in;
line-height:115%;
mso-pagination:widow-orphan;
font-size:11.0pt;
font-family:"Calibri","sans-serif";
mso-ascii-font-family:Calibri;
mso-ascii-theme-font:minor-latin;
mso-fareast-font-family:"Times New Roman";
mso-fareast-theme-font:minor-fareast;
mso-hansi-font-family:Calibri;
mso-hansi-theme-font:minor-latin;}
History:
I have 4 WAP4410N Access Points setup in a sorority house, one for each floor. The access points they had before were D-Link 2.4GHz POE APs. The reason for changing the access points was a lack of wireless coverage in the house. About 2 weeks ago I had a complaint that ALL apple computer users were only able to get to a webpage and if they tried to click a link they would get nothing, so they would have to disconnect and then reconnect to the SSID in order to get to another page. I contacted Cisco SB support and asked if they were aware of any issues with apple. The tech said yes and that I should update to 2.0.2.1 firmware, I was currently running 2.0.1.0. The tech also said that after upgrading the firmware reset the access point and reconfigure it, so I did this. I updated the firmware on all 4 APs and had one of the girls click a few links thinking that it was fixed since it worked. Well I have heard tonight that there still is an issue. I am having complaints for ALL apple computer users that after viewing 3 -5 pages/links they have to disconnect and reconnect to the SSID, then after so many more pages they have to do it all over again.
Question:
I noticed that there is another firmware update released for the WAP4410N, will this firmware (2.0.3.3) fix the issue I am having?
If so, should I upgrade the firmware and reset the AP's again and reconfigure them, or can I just update them and not re-configure them?
If not, should I change some of my settings? Any other suggestions?
Config:
Here is a brief of the config on the AP’s: (If my memory is correct)
Host Name: AP1, 2, 3, 4
Device Name: WAP4410N_AP1, 2, 3, 4
IP Settings: Static IP
IP Address: 192.168.1.2, 3, 4, 5
IPV6: Disabled
Force Lan Port Speed 100M: Disabled
Discovery (By Bonjour): Enabled
802.1X Supplicant: Disabled
Wireless Network Mode: B/G/N-Mixed
Wireless Channel: 1, 4, 8, 11
Wireless Isolation(between SSID) Disabled
Security Mode: WPA-Personal
WPA Algorithm: AES
Key Renewal: 3600
Serial #: SER141903**
Serial #: SER141900**
Serial #: SER141903**
Serial #: SER141903**
Other equipment in the setup:
ASA 5505 firewall
Cisco Small Business SD208P Switch with PoE
Thanks for the help.
Regards,
TravisDid you try the firmware upgrade and reconfiguring the wap4410ns travis? As a rule of thumb, I always factory reset and reconfigure the device just incase there is any glitches.
Also are you running all the access points through the unmanaged switch? If so, try to take it out of the mix and plug directly into the ASA. Try to eliminate all extra pieces in the mix so you can better understand where the failure is. Your connecting wirelessly and able to browse, your getting intermittent connectivity. Also approximately how many users are connecting to the access points at one time? Try to isolate one wap4410n and a mac and test browsing with it and see what happens. -
Issues with connection to Officejet Pro 8500
Hi folks,
I have a user at home with a Officejet 8500 connected to a BT home hub via wifi. it worked initially when we set it up a few months back however rarely and intermitantly since then. It notmally shows as offline in print properties and the HP app cant connect to it.
Some network basics
Router IP: 192.168.1.254
Printer IP: 192.168.1.66 (via DHCP)
Alt Printer IP: 192.168.1.100 (Static IP Attempt with no joy)
Other devices in network:
Desktop pc (Not work kit)
Iphone (his wifes)
Laptop PC (work kit)
We do have him connected via VPN however Im inclined not to believe that its aproblem witht hat as we have a dozen users with the same setup and the VPN dosent cause them headaces.
Pining the hostname of the printer results in a weird IP external IP address (87.239.20.209) not the local one. Ok so I put a change in the hostfile to point to the Printers IP. No joy there.
Tried a static IP.... you know just cos... (and in my mind best practice for a printer anyway!)
So Any ideas or any one experianced similar issues with this?
Cheers in advanced folksWe have been having offline issues with this same printer. I have tried to install all new software to a Win 7 64 bit computer but the full software cannot complete. It detects the printer on the network, goes through the network settings but when it gets to Installing Your Printer, it fails with this statement: 'Printer setup has failed to complete. Click retry to try installing the printer again or click next to continue installation without connecting to the printer now.'
Now, I am connected via the web to the printer and all is well on the status screen. I have updated the firmware too. I read through many blogs of others having the same issue with no real resolution. All those that were connected to it are now showing 'offline' even though they can ping it and access it directly on the web - but none can print. I have tried downloading and installing the HP Print and Scan Doctor but it needs the 'full' software installed in order to run.....but the full software cannot complete it's install because of the above.
I have always loved HP printers but this one deserves to be in the land fill! -
Performance issues with dynamic action (PL/SQL)
Hi!
I'm having perfomance issues with a dynamic action that is triggered on a button click.
I have 5 drop down lists to select columns which the users want to filter, 5 drop down lists to select an operation and 5 boxes to input values.
After that, there is a filter button that just submits the page based on the selected filters.
This part works fine, the data is filtered almost instantaneously.
After this, I have 3 column selectors and 3 boxes where users put values they wish to update the filtered rows to,
There is an update button that calls the dynamic action (procedure that is written below).
It should be straight out, the only performance issue could be the decode section, because I need to cover cases when user wants to set a value to null (@) and when he doesn't want update 3 columns, but less (he leaves '').
Hence P99_X_UC1 || ' = decode(' || P99_X_UV1 ||','''','|| P99_X_UC1 ||',''@'',null,'|| P99_X_UV1 ||')
However when I finally click the update button, my browser freezes and nothing happens on the table.
Can anyone help me solve this and improve the speed of the update?
Regards,
Ivan
P.S. The code for the procedure is below:
create or replace
PROCEDURE DWP.PROC_UPD
(P99_X_UC1 in VARCHAR2,
P99_X_UV1 in VARCHAR2,
P99_X_UC2 in VARCHAR2,
P99_X_UV2 in VARCHAR2,
P99_X_UC3 in VARCHAR2,
P99_X_UV3 in VARCHAR2,
P99_X_COL in VARCHAR2,
P99_X_O in VARCHAR2,
P99_X_V in VARCHAR2,
P99_X_COL2 in VARCHAR2,
P99_X_O2 in VARCHAR2,
P99_X_V2 in VARCHAR2,
P99_X_COL3 in VARCHAR2,
P99_X_O3 in VARCHAR2,
P99_X_V3 in VARCHAR2,
P99_X_COL4 in VARCHAR2,
P99_X_O4 in VARCHAR2,
P99_X_V4 in VARCHAR2,
P99_X_COL5 in VARCHAR2,
P99_X_O5 in VARCHAR2,
P99_X_V5 in VARCHAR2,
P99_X_CD in VARCHAR2,
P99_X_VD in VARCHAR2
) IS
l_sql_stmt varchar2(32600);
p_table_name varchar2(30) := 'DWP.IZV_SLOG_DET';
BEGIN
l_sql_stmt := 'update ' || p_table_name || ' set '
|| P99_X_UC1 || ' = decode(' || P99_X_UV1 ||','''','|| P99_X_UC1 ||',''@'',null,'|| P99_X_UV1 ||'),'
|| P99_X_UC2 || ' = decode(' || P99_X_UV2 ||','''','|| P99_X_UC2 ||',''@'',null,'|| P99_X_UV2 ||'),'
|| P99_X_UC3 || ' = decode(' || P99_X_UV3 ||','''','|| P99_X_UC3 ||',''@'',null,'|| P99_X_UV3 ||') where '||
P99_X_COL ||' '|| P99_X_O ||' ' || P99_X_V || ' and ' ||
P99_X_COL2 ||' '|| P99_X_O2 ||' ' || P99_X_V2 || ' and ' ||
P99_X_COL3 ||' '|| P99_X_O3 ||' ' || P99_X_V3 || ' and ' ||
P99_X_COL4 ||' '|| P99_X_O4 ||' ' || P99_X_V4 || ' and ' ||
P99_X_COL5 ||' '|| P99_X_O5 ||' ' || P99_X_V5 || ' and ' ||
P99_X_CD || ' = ' || P99_X_VD ;
--dbms_output.put_line(l_sql_stmt);
EXECUTE IMMEDIATE l_sql_stmt;
END;Hi Ivan,
I do not think that the decode is performance relevant. Maybe the update hangs because some other transaction has uncommitted changes to one of the affected rows or the where clause is not selective enough and needs to update a huge amount of records.
Besides that - and I might be wrong, because I only know some part of your app - the code here looks like you have a huge sql injection vulnerability here. Maybe you should consider re-writing your logic in static sql. If that is not possible, you should make sure that the user input only contains allowed values, e.g. by white-listing P99_X_On (i.e. make sure they only contain known values like '=', '<', ...), and by using dbms_assert.enquote_name/enquote_literal on the other P99_X_nnn parameters.
Regards,
Christian -
New HH3 - Issues with Kodak Printer and iPhone 3GS
Hello,
Here is the background:
Previously had a D-Link DSL-G624M router and everything connected wirelessly. This included 2 laptops, Kodak ESP 5250 Printer and iPhone 3GS. Router broadcasting on channel 6 (locked).
Since upgrading to Infinity replaced the D-Link with a HH3. Laptops connect fine but have issues with other wireless devices.
iPhone: Seems to lose internet (not necessarily wireless connection though) intermittently. The phone remains connected to the HH3 and can be seen in the DHCP table and Home Network screens. The iPhone also reports that it is connected to the HH3. However, when attempting to access the internet using either Safari or apps it doesn't work. This can be fixed by forgetting the network and re-joining or turning Airplane Mode on and then off.
Kodak ESP5250 Printer: This connects fine to the HH3 and remains in the DHCP table and Home Network with the correct IP Address. Laptop A is able to connect and print successfully. However, after putting the laptop into sleep mode and re-waking it it is unable to Print. The Printer is still connected to the HH3 and laptop claims it is 'Ready' but unable to print. The only way i have found to fix this is to re-install the entire Printer software!! However, Laptop B does not have this problem and can be put into Sleep mode, Hibernate or restart and the printer remain connected. I do not think it is a firewall issue as able to connect until re-waking from sleep.
You're probably thinking the same as me that this sounds like hardware issues and not the HH3. Maybe coincidence that it started happening after changing to HH3. Maybe something wrong with the iPhone or Laptop A and/or Printer?!? Tried setting a manual channel on the HH3 as suggested by other posts but this had no effect. (Used inSSIDer to determine best channel). Also increased the IP Address lease time from 1 Day to 21 Days - but again no difference.
Current situation: Connected the D-Link router to the HH3 using Ethernet cable. Disabled DHCP and DNS on the D-Link router and kept SSID different. Now connected all devices to the D-Link router and nothing to the HH3 and everything is working as it did previously. The iPhone remains stable and the Kodak printer remains connected to both Laptops after re-waking from Sleep Mode.
I haven't yet contacted BT but i'm leaning towards it being a dodgy HH3. Anyone have any suggestions??
Thanks,
Martyn...For starters, there's nothing wrong with your Iphone or Kodak prn. The issue is the HH3
I had a very similar issue connecting iMac, iPad, Macbook Pro, iPhone, Thinkpad and Canon prn via wireless to the HH3... Lots of disconnections, devices that couldn't log in, very low wireless speeds, printer not recognized, etc,etc
I went mad, pretty much did the same things as you did: inSSIDer, changing channels, re-installing whole softw drv !, reorientating HH3 position, manually assigning IPs and channels... nothing would seem to work!
Then I connected a Netgear router to HH3 via ethernet cable -like you did- and suddenly everything seemed to go back to normal. Here's what I found out after much head knocking:
1) The issue is the HH3, not that it's faulty but simply put it can't deal with lots of wireless traffic. The minute you connect several devices it gets clogged up
2) HH3 seem not to recognize WiFI printers that have a 'static' IP (not sure why)... this was a nightmare
3) if you have many devices connected, HH3 doesn't seem to 'like' Apple devices or wifi Airport powered (not sure why). After sleep mode these device can't pick up IP over the air, and you need to manually renew DHCP leases. There are several reports about this in Apple forums.
So here's what I did:
1) I ditched the HH3
2) I connected the Openreach router to a dual-band Netgear wndr3400 **cable** router (PPPoE connection)
3) I re-installed the prn drv in USB mode and then added wifi printer in wifi mode while usb connected
4) I created two-split WIFI networks; one in the channel 6/2.4Ghz frequency and another in the channels 44-48/5Ghz freq to which I assigned most devices (It seems BT Infinity wifi works best in 5Ghz channels)
Results: all devices recognised & connected via WiFI, no disconnections, steady WIFI speed almost as fast as ethernet cable, wifi prn prints fine from all devices... No more WIFI connnectivity issues.
I hope this helps, good luck
(note: my current issue is that my profile dropped from 34/8 to 21/2 during testing phase) -
Routing issue with ASA and UC540 phone system - at ASA???
Having an issue with routing from the PC at .242 to the CUE server at 10.1.10.1. The CUE server is built into the UC540 phone system. It is an internal piece of software that is used for voicemail and management. The UC540 is not only a call router, it is also an IOS router. It has it's own WAN connection as does the ASA.
Here are some facts:
1. Can ping the UC540's internal CUE server from the PC ( ping to 10.1.10.1 )
2. Can ping the UC540's VLAN 1 address from the PC ( ping to 10.1.10.1 )
3. The ASA is the default gateway for the PC.
4. I have a route inserted at the asa that is:
route 10.1.10.1 255.255.255.0 10.19.250.254 1
5. I have a nat statement that prevents NAT from occuring but I don't think this is necessary as the 10.1.10.0/24 network isn't otherwise defined on the ASA.
6. I cannot pull up a web page when I point the browser on the PC to the 10.1.10.1 address
7. I CAN pull up a web page on the PC when I create a static route on the PC iteslf :
route add 10.1.10.1 mask 255.255.255.0 10.19.250.254
Is is only with this route that I am able to get to the web GUI on the phone system.
8. The phone system has a loopback interface at 10.1.10.2 that serves as the gateway for the internal CUE server, the internal CUE server is at 10.1.10.1
9. The switch is a 2960 and has a trunk port to the phone system to allow for the voice vlan which is at 10.1.1.0/24, no issues with this vlan and phones are connecting to the system fine.
Since I can get the GUI to come up when I set a static route on the PC, then I would assume that the routing in the phone system with it's internal server is fine as it wouldn't work otherwise. Since I can successfully ping the CUE server from the PC, that would lead me to believe that the ASA's routing is setup correctly..... TCP traffic doesn't seem to get to/from the CUE server.
Here are the routing tables:
ASA:
Gateway of last resort is xxx.xxx.xxx.xxx to network 0.0.0.0
C xxx.xxx.xxx.xxx 255.255.255.252 is directly connected, outside
S 172.16.100.100 255.255.255.255 [1/0] via 38.97.193.65, outside
S 10.1.10.0 255.255.255.252 [1/0] via 10.19.250.254, inside
C 10.19.250.0 255.255.254.0 is directly connected, inside
S* 0.0.0.0 0.0.0.0 [1/0] via xx.xx.xx.xx, outside
The UC540 phone system's router side:
Gateway of last resort is xx.xx.xx.xx to network 0.0.0.0
S* 0.0.0.0/0 [1/0] via xx.xx.xx.xx
10.0.0.0/8 is variably subnetted, 7 subnets, 4 masks
C 10.1.1.0/24 is directly connected, BVI100
L 10.1.1.1/32 is directly connected, BVI100
C 10.1.10.0/30 is directly connected, Loopback0
S 10.1.10.1/32 is directly connected, Integrated-Service-Engine0/0
L 10.1.10.2/32 is directly connected, Loopback0
C 10.19.250.0/23 is directly connected, BVI1
L 10.19.250.254/32 is directly connected, BVI1
XX.0.0.0/8 is variably subnetted, 2 subnets, 2 masks
C XX.XX.XX.XX/29 is directly connected, FastEthernet0/0
L XX.XX.XX.XX/32 is directly connected, FastEthernet0/0
172.16.0.0/24 is subnetted, 1 subnets
S 172.16.100.0 [1/0] via 10.19.250.1
The UC540's internal CUE server:
Main Routing Table:
DEST GATE MASK IFACE
10.1.10.0 0.0.0.0 255.255.255.252 eth0
0.0.0.0 10.1.10.2 0.0.0.0 eth0
Any help appreciated!!!
Thanks!Hello,
Where you able to solve this problem? It does sound like an issue with TCP state checking on the ASA. The Firewall needs to see both sides of the traffic but the return traffic is going from your UC540 direct to the PC. The firewall essentially kills the traffic.
I would recommend disabling TCP state checking on the ASA and see if it works. Otherwise, you will need to stub route the UC540 as a separate VLAN off the ASA which needs to route through the ASA to reach the PC.
Here is a info page on the TCP State Bypass:
http://www.cisco.com/c/en/us/support/docs/security/asa-5500-x-series-next-generation-firewalls/111986-asa-tcp-bypass-00.html
Please let me know how it works out. -
I am having a routing issue with a 3550 switch. I have 5 vlans and I need one of the vlans to access a different router based on destination IP rather than our edge router. I have entered a static route on the 3550 that points to the secondary router whenever a certain network is tried to be accessed. My problem is I can't seem to get the traffic to flow correctly. When I trace route an address on the Internet the path shows as expected, the 3550 then my firewall then my edge router. When I trace an address that is on the other side of the secondary router I get the 3550 as the first hop, then nothing. I can ping the address so I know the path is up. What could be the issue? Thanks in advance.
Hello,
in addition to Mahmood´s post, what do you have defined as the next hop for the default route to the secondary router ? If you use an interface on the 3550 as the next hop, make sure that whatever is connected is in the same subnet, otherwise use the IP address of the next hop. So, let´s say your remote network is 192.168.1.0, and the secondary router is connected to FastEthernet0/1, your default route should look like this if the secondary router is in the same subnet (in this example, the IP address of the secondary router would be 172.16.1.2):
interface FastEthernet0/1
no switchport
ip address 172.16.1.1 255.255.255.252
ip route 192.168.1.0 0.0.0.255 FastEthernet0/0
Otherwise, try:
ip route 192.168.1.0 0.0.0.255 172.16.1.2
where 172.16.1.2 would be the address of the secondary router.
Does that make sense ?
Regards,
GNT -
SSL VPN (WebVPN) issues with IOS 15.0(1)M1
Hello everyone... I need your help!
I am having some weird issues with webvpn/anyconnect, please find the relevant information below;
Symptoms:
- AnyConnect Client prompts users with the following error:
"The secure gateway has rejected the agent's VPN connect or reconnect request. A new connection requires re-authentication and must be started manually. Please contact your network administrator if this problem persists."
Debug:
Mar 5 13:09:45:
Mar 5 13:09:45: WV-TUNL: Tunnel CSTP Version recv use 1
Mar 5 13:09:45: WV-TUNL: Allocating tunl_info
Mar 5 13:09:45: WV-TUNL: Allocating stc_config
Mar 5 13:09:45: Inserting static route: 172.25.130.126 255.255.255.255 SSLVPN-VIF36 to routing table
Mar 5 13:09:45: WV-TUNL: Use frame IP addr (172.25.130.126) netmask (255.255.255.255)
Mar 5 13:09:45: WV-TUNL: Tunnel entry create failed:IP= 172.25.130.126 vrf=77 session=0x67234340
Mar 5 13:09:45: HTTP/1.1 401 Unauthorized
Mar 5 13:09:45:
Mar 5 13:09:45:
Mar 5 13:09:45:
Mar 5 13:09:45: Deleting static route: 172.25.130.126 255.255.255.255 SSLVPN-VIF36 from routing table
Mar 5 13:09:45: WV-TUNL: Failed to install (addr 172.25.130.126, table_id 77) to TCP
Mar 5 13:09:45: WV-TUNL*: Received server IP packet 0x6692EB08:
Mar 5 13:09:45: WV-TUNL: CSTP Message frame received from user usr-test (172.25.130.126)
WV-TUNL: Severity ERROR Type USER_LOGOUT
WV-TUNL: Text: HTTP response contained an HTTP error code.
Mar 5 13:09:45: WV-TUNL: Call user logout function
Mar 5 13:09:45: WV-TUNL: Clean-up tunnel session (usr-test)
When the error occurs, the "SVCIP install TCP failed" counter increments:
VPN-Router1# show webvpn stats detail context CUSTOMER-VPN
[snip]
Tunnel Statistics:
Active connections : 1
Peak connections : 3 Peak time : 19:09:04
Connect succeed : 9 Connect failed : 5
Reconnect succeed : 0 Reconnect failed : 0
SVCIP install IOS succeed: 14 SVCIP install IOS failed : 0
SVCIP clear IOS succeed : 18 SVCIP clear IOS failed : 0
SVCIP install TCP succeed: 9 SVCIP install TCP failed : 5
DPD timeout : 0
[snip]
IOS Version Details:
Cisco IOS Software, 7200 Software (C7200-ADVIPSERVICESK9-M), Version 15.0(1)M1, RELEASE SOFTWARE (fc1)
System image file is "disk2:c7200-advipservicesk9-mz.150-1.M1.bin"
The router also runs IPSEC remote access VPN in addition to the webvpn/anyconnect scheme.
Config:
webvpn context CUSTOMER-VPN
title "SSL VPN for Customer"
ssl authenticate verify all
login-message "Enter username and passcode"
policy group CUSTOMER-VPN
functions svc-required
svc keep-client-installed
svc split include 10.1.16.0 255.255.240.0
svc split include 10.1.2.0 255.255.254.0
vrf-name CUSTOMER-VPN
default-group-policy CUSTOMER-VPN
aaa authentication list AAA-LIST
aaa authentication auto
aaa accounting list AAA-LIST
gateway vpn virtual-host customer.xx.com
logging enable
inservice
The error happens sporadically, at least once a week, and on different contexts. Does anyone have any clue on what can cause this issue? Any help is appreciated!Have you seen my post https://supportforums.cisco.com/message/2016069#2016069 ?
At that point in time we were running with local pool definition.
As the http 401 rc happens very sporadically we still gathering incident reports internally.
Will open a case if you did not yet.
cheers, Andy -
How do I get rid of lip-sync issues with iTunes 10.2.2.12?
Hi Everyone.
Firstly, a very Happy Easter!
I'm having lip-sync issues with iTunes playback on my PC. The video is largely smooth with the occaisional choppiness when the CPU is made to work hard. (Playback on my iPod Touch is fine).
The system stats for my PC are at the bottom of the post.
The sound is produced through a Creative Live Sound Blaster Live! 5.1 card.
Video is through a NVIDIA Geforce 6200 with 512Mb of RAM. (All video and audio drivers are up to date).
The physical set-up is that I have iTunes installed on the C drive and my media installed on an external USB hard-drive.This isn't just a problem with 10.2.2.12 - it's been there for the last few updates.
I suppose my main questions are:
Should iTunes and my media be on the same drive? (Which would mean the external drive as I'm short on space on the C drive).
Is there some combination of settings in QuickTime that will solve this? (I've tried different combinations, but it doesn't really help).
Is the spec (below) of my PC causing any issues.
Here's an Easter Egg for anyone able to help!!
All the best
BandAidUK.
System Information
Time of this report: 4/24/2011, 10:13:44
Machine name: DEREK
Operating System: Windows XP Professional (5.1, Build 2600) Service Pack 3 (2600.xpsp_sp3_gdr.101209-1647)
Language: English (Regional Setting: English)
System Manufacturer: Dell Computer Corporation
System Model: Dimension 8300
BIOS: Phoenix ROM BIOS PLUS Version 1.10 A07
Processor: Intel(R) Pentium(R) 4 CPU 3.00GHz
Memory: 3326MB RAM
Page File: 1273MB used, 3941MB available
Windows Dir: C:\WINDOWS
DirectX Version: DirectX 9.0c (4.09.0000.0904)
DX Setup Parameters: Not found
DxDiag Version: 5.03.2600.5512 32bit Unicode
Display Devices
Card name: NVIDIA GeForce 6200
Manufacturer: NVIDIA
Chip type: GeForce 6200
DAC type: Integrated RAMDAC
Device Key: Enum\PCI\VEN_10DE&DEV_0221&SUBSYS_02F3196E&REV_A1
Display Memory: 512.0 MB
Current Mode: 1280 x 1024 (32 bit) (60Hz)
Monitor: Plug and Play Monitor
Monitor Max Res: 1600,1200
Driver Name: nv4_disp.dll
Driver Version: 6.14.0012.6099 (English)
DDI Version: 9 (or higher)
Driver Attributes: Final Retail
Driver Date/Size: 10/22/2010 07:23:24, 6359552 bytes
WHQL Logo'd: Yes
WHQL Date Stamp: n/a
VDD: n/a
Mini VDD: nv4_mini.sys
Mini VDD Date: 10/22/2010 07:23:24, 9623680 bytes
Device Identifier: {D7B71E3E-4161-11CF-0D6D-FF2200C2CB35}
Vendor ID: 0x10DE
Device ID: 0x0221
SubSys ID: 0x02F3196E
Revision ID: 0x00A1
Revision ID: 0x00A1
Video Accel: ModeMPEG2_C ModeMPEG2_D ModeWMV9_B ModeWMV9_A
Deinterlace Caps: {6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(YUY2,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive
{335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(YUY2,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch
{6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(UYVY,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive
{335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(UYVY,YUY2) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch
{6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(YV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive
{335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(YV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch
{6CB69578-7617-4637-91E5-1C02DB810285}: Format(In/Out)=(NV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_PixelAdaptive
{335AA36E-7884-43A4-9C91-7F87FAF3E37E}: Format(In/Out)=(NV12,0x3231564e) Frames(Prev/Fwd/Back)=(0,0,0) Caps=VideoProcess_YUV2RGB VideoProcess_StretchX VideoProcess_StretchY DeinterlaceTech_BOBVerticalStretch
Registry: OK
DDraw Status: Enabled
D3D Status: Enabled
AGP Status: Enabled
DDraw Test Result: Not run
D3D7 Test Result: Not run
D3D8 Test Result: Not run
D3D9 Test Result: Not run
Sound Devices
Description: Creative SB Live! Series
Default Sound Playback: Yes
Default Voice Playback: Yes
Hardware ID: PCI\VEN_1102&DEV_0006&SUBSYS_10031102&REV_00
Manufacturer ID: 1
Product ID: 100
Type: WDM
Driver Name: P16X.sys
Driver Version: 5.12.0001.0129 (English)
Driver Attributes: Final Retail
WHQL Logo'd: Yes
Date and Size: 8/14/2003 16:58:12, 1296384 bytes
Other Files:
Driver Provider: Creative Technology Ltd.
HW Accel Level: Full
Cap Flags: 0xF5F
Min/Max Sample Rate: 8000, 96000
Static/Strm HW Mix Bufs: 64, 63
Static/Strm HW 3D Bufs: 64, 63
HW Memory: 0
Voice Management: No
EAX(tm) 2.0 Listen/Src: Yes, Yes
I3DL2(tm) Listen/Src: No, No
Sensaura(tm) ZoomFX(tm): No
Registry: OK
Sound Test Result: Not run
Description: SoundMAX Digital Audio
Default Sound Playback: No
Default Voice Playback: No
Hardware ID: PCI\VEN_8086&DEV_24D5&SUBSYS_01571028&REV_02
Manufacturer ID: 65535
Product ID: 65535
Type: WDM
Driver Name: smwdm.sys
Driver Version: 5.12.0001.7000 (English)
Driver Attributes: Final Retail
WHQL Logo'd: Yes
Date and Size: 3/22/2005 11:08:40, 260224 bytes
Other Files:
Driver Provider: Analog Devices
HW Accel Level: Full
Cap Flags: 0xF5F
Min/Max Sample Rate: 100, 192000
Static/Strm HW Mix Bufs: 33, 32
Static/Strm HW 3D Bufs: 33, 32
HW Memory: 0
Voice Management: Yes
EAX(tm) 2.0 Listen/Src: Yes, Yes
I3DL2(tm) Listen/Src: Yes, Yes
Sensaura(tm) ZoomFX(tm): Yes
Registry: OK
Sound Test Result: Not run
Sound Capture Devices
Description: Creative SB Live! Series
Default Sound Capture: Yes
Default Voice Capture: Yes
Driver Name: P16X.sys
Driver Version: 5.12.0001.0129 (English)
Driver Attributes: Final Retail
Date and Size: 8/14/2003 16:58:12, 1296384 bytes
Cap Flags: 0x41
Format Flags: 0xFFF
Description: Hauppauge WinTV 88x Audio Capture
Default Sound Capture: No
Default Voice Capture: No
Driver Name: hcw88aud.sys
Driver Version: 2.125.28070.0000 (English)
Driver Attributes: Final Retail
Date and Size: 3/12/2010 09:47:58, 13440 bytes
Cap Flags: 0x41
Format Flags: 0xCC0
Description: SoundMAX Digital Audio
Default Sound Capture: No
Default Voice Capture: No
Driver Name: smwdm.sys
Driver Version: 5.12.0001.7000 (English)
Driver Attributes: Final Retail
Date and Size: 3/22/2005 11:08:40, 260224 bytes
Cap Flags: 0x41
Format Flags: 0xCCC
DirectMusic
DLS Path: C:\WINDOWS\SYSTEM32\drivers\GM.DLS
DLS Version: 1.00.0016.0002
Acceleration: n/a
Ports: Microsoft Synthesizer, Software (Not Kernel Mode), Output, DLS, Internal, Default Port
Creative SB Live! Series, Software (Kernel Mode), Output, DLS, Internal
SoundMAX Digital Audio, Software (Kernel Mode), Output, DLS, Internal
Microsoft MIDI Mapper [Emulated], Hardware (Not Kernel Mode), Output, No DLS, Internal
Creative SB Live! Synthesizer [Emulated], Hardware (Not Kernel Mode), Output, No DLS, Internal
Creative SB Live! External MIDI [Emulated], Hardware (Not Kernel Mode), Output, No DLS, External
Microsoft GS Wavetable SW Synth [Emulated], Hardware (Not Kernel Mode), Output, No DLS, Internal
Creative SB Live! External MIDI [Emulated], Hardware (Not Kernel Mode), Input, No DLS, External
Registry: OK
Test Result: Not runSelect *List view* instead of *Album list view*. These are in the View menu or the boxes next to Search, on the right top of iTunes.
and the column next to it with a number in it that I have absolutely no idea what it's for. I want those two columns OUT.
In List view, you can turn off every column (in menu View > View options) except track name. -
I am having an issue with focus and CardLayout with Java 2 SDK, Standard Edition 1.4.0_01. I have created a small sample application to illustrate my problem. In general, I am trying to create a "Wizard" that the user will enter information and then press a "Next" button to proceed to the next step.
When the first card is displayed, the focus is on the first text field as expected.
When I go to the next card by clicking "Next", the focus is not on the text field that has requested it (through the requestFocusInWindow method). The focus is on the "Cancel" button, which is the next component to receive focus after the "Next" button on that panel. I do notice that if I use my mouse to bring focus to the window the text field will gain focus.
Similarly, when I proceed to the last card, the focus is not on the "Finish" button until the mouse moves over the window.
Is there something I am doing wrong or is there a bug with focus and CardLayout?
One other problem I have noticed is that the buttons no longer respond to the "Enter" key press and instead respond to the space bar. Any suggestions as to why this is the case?
Thanks,
S.L.
import java.awt.*;
import java.awt.event.*;
import javax.swing.*;
public class CardWindow extends JFrame implements ActionListener {
public CardWindow() {
setTitle("Focus Problems with CardLayout");
setDefaultCloseOperation(EXIT_ON_CLOSE);
cards = new JPanel();
cardLayout = new CardLayout();
cards.setLayout(cardLayout);
cards.add(createFirstNamePanel(), "FirstNamePanel");
cards.add(createLastNamePanel(), "LastNamePanel");
cards.add(createFullNamePanel(), "FullNamePanel");
getContentPane().add(cards,BorderLayout.CENTER);
getContentPane().add(createButtonPanel(), BorderLayout.SOUTH);
resetButtonPanel();
pack();
private JPanel createFirstNamePanel() {
JPanel panel = new JPanel();
JLabel lblDescriptionProjectName = new JLabel("Please enter your first name:");
txtFirstName = new JTextField(20);
panel.add(lblDescriptionProjectName);
panel.add(txtFirstName);
return panel;
private JPanel createLastNamePanel() {
JPanel panel = new JPanel();
JLabel lblDescriptionProjectName = new JLabel("Please enter your last name:");
txtLastName = new JTextField(20);
panel.add(lblDescriptionProjectName);
panel.add(txtLastName);
return panel;
private JPanel createFullNamePanel(){
JPanel panel = new JPanel();
lblFullName = new JLabel();
resetTextOnFullNamePanel();
panel.add(lblFullName);
return panel;
private JPanel createButtonPanel() {
buttonPanel = new JPanel();
btnPrevious = new JButton("< " + "Back");
btnPrevious.setMnemonic('B');
btnPrevious.addActionListener(this);
btnNext = new JButton("Next" + " >");
btnNext.setMnemonic('N');
btnNext.addActionListener(this);
btnCancel = new JButton("Cancel");
btnCancel.setMnemonic('C');
btnCancel.addActionListener(this);
btnFinish = new JButton("Finish");
btnFinish.setMnemonic('F');
btnFinish.addActionListener(this);
buttonPanel.add(btnPrevious);
buttonPanel.add(btnNext);
buttonPanel.add(btnCancel);
buttonPanel.add(btnFinish);
return buttonPanel;
private void resetTextOnFullNamePanel(){
lblFullName.setText("Your name is: " + getFirstName() + " " + getLastName());
private void resetButtonPanel(){
Component c[] = buttonPanel.getComponents();
for(int i = 0; i < c.length; i++){
c.setVisible(false);
switch(iWizardStep){
case FIRSTNAMEPANEL:
btnPrevious.setVisible(true);
btnNext.setVisible(true);
btnCancel.setVisible(true);
break;
case LASTNAMEPANEL:
btnPrevious.setVisible(true);
btnNext.setVisible(true);
btnCancel.setVisible(true);
break;
case FULLNAMEPANEL:
btnFinish.setVisible(true);
break;
buttonPanel.validate();
public void actionPerformed(ActionEvent e) {
Object object = e.getSource();
if (object == btnNext) {
btnNextPressed();
} else if (object == btnPrevious) {
btnPreviousPressed();
} else if (object == btnFinish) {
System.exit(0);
} else if (object == btnCancel) {
System.exit(0);
private void btnNextPressed() {
switch (iWizardStep) {
case FIRSTNAMEPANEL:
setFirstName(txtFirstName.getText());
break;
case LASTNAMEPANEL:
setLastName(txtLastName.getText());
resetTextOnFullNamePanel();
break;
iWizardStep++;
resetButtonPanel();
this.cardLayout.next(this.cards);
switch (iWizardStep) {
case LASTNAMEPANEL:
txtLastName.requestFocusInWindow();
break;
case FULLNAMEPANEL:
btnFinish.requestFocusInWindow();
break;
private void btnPreviousPressed() {
iWizardStep--;
resetButtonPanel();
this.cardLayout.previous(this.cards);
public void setFirstName(String value) {
firstName = value;
public String getFirstName() {
return firstName;
public void setLastName(String value) {
lastName = value;
public String getLastName() {
return lastName;
public static void main (String[] args) {
CardWindow c = new CardWindow();
c.show();
private CardLayout cardLayout;
private JPanel cards, buttonPanel;
private JTextField txtLastName, txtFirstName;
private JLabel lblFullName;
private JButton btnNext, btnPrevious, btnCancel, btnFinish;
private String firstName = "";
private String lastName = "";
private int iWizardStep = 0;
private static final int FIRSTNAMEPANEL = 0;
private static final int LASTNAMEPANEL = 1;
private static final int FULLNAMEPANEL = 2;Manfred,
Thanks for your reply. I tried requestFocus() and it gives the same results. Also Sun's 1.4.0 API (http://java.sun.com/j2se/1.4/docs/api/) mentions the following with respect to the requestFocus() method in the JComponent class:
Because the focus behavior of this method is platform-dependent, developers are strongly encouraged to use requestFocusInWindow when possible.
That is why I used requestFocusInWindow.
S.L.
Maybe you are looking for
-
Hi, My user has maintained a notes in the Data view and he is not able to see it in the data view but the notes he has maintained is clearly seen in /SAPAPO/SDP_NOTES. Kindly suggest...if it has something to do with authorization or data maintenance
-
How can I make a navigation dependend on the database content with JSF?
Hi, I want to navigate dynamicly between pages, but pages which addresses that are taken from database. I want to take a list of page's addresses (links) from database, and while application is running, I want to generate on my page that working link
-
Hi All, We are printing our month end AR statements using Xerox DP100 printers. We are using a SAP Script as the layout form. Everything works perfectly alright when a direct print is issued to the printer. But the scenario here is the statements are
-
Error when using same QueueSession in a multi threaded application
I have deployed a OSSJ Trouble Ticket refererence Implementation on Sun Java System App Server Platform Edition 8.1 default server. The TT server listens on queue MessageQueue and sends its reply on MessageReplyQueue The application that sends the re
-
How to ungroup pages in publisher layout office 2011 mac
hi all, I have a file about of 70 pages, 9 pages out of 70 appears as groups of pages and they are not movable. up or down, can any one guide me how to ungroup these pages to be separated and movable???? note that, iam using office 2011 version 14.