Switching IPS4240 from PROMISCUOUS to INLINE MODE

Hi, what's the best way to cut over from PROMI to INLINE MODE? Right now we have our IPS 4240 connected to a hub sitting between our firewall and our Catalyst switch and running in PROMISCUOUS MODE. Our INLINE pair is set up. How can I set the IPS for INLINE MODE? Should I just connect 1 interface into the hub, and the other interface into our Catalyst 4507? Pleae see attached diagram.
Tahnks in advance!

Hi, what's the best way to cut over from PROMI to INLINE MODE? Right now we have our IPS 4240 connected to a hub sitting between our firewall and our Catalyst switch and running in PROMISCUOUS MODE. Our INLINE pair is set up. How can I set the IPS for INLINE MODE? Should I just connect 1 interface into the hub, and the other interface into our Catalyst 4507? Pleae see attached diagram.
Tahnks in advance!

Similar Messages

  • Router NME IPS - use promiscuous and inline mode simultaneous

    Hi all,
    we are using the IPS module NME-IPS-K9 on a Cisco 2951 router. We like to use the IPS in promiscuous and inline mode simultaneous. For example traffic from a client to a server should pass through the IPS. But the IPS should only recieve a copy of the VoIP traffic.
    In the interface configuration mode the following command is set.
         ids-service-module monitoring promiscuous access-list 101
    If I try to set a interface to inline mode I get the following message:
         "Only either Inline or Promiscuous
         monitoring is supported on the router at one time.
         Please remove Promiscuous monitoring on all interfaces
         before configuring Inline monitoring. Only either Inline or Promiscuous
         monitoring is supported on the router at one time.
         Please remove Promiscuous monitoring on all interfaces
         before configuring Inline monitoring."
    Is there any way to use promiscuous and inline monitoring at the same time? Is there a firmware update available which includes this feature? Any other idears?
    IOS version of the router: 15.0(1)M4
    IPS version:  7.0(2)E4
    Kind Regards

    In promiscuous mode your sensor doesn't affect the traffic but it only listen and analyze it.
    In inline mode you direct all your traffic on this network segment you want to protect to IPS and it analyze it and block some actions according to your settings.
    It is the main difference. Which mode to prefer must be your decision.

  • Changing IPS from promiscous mode to Inline mode

    Hi Experts,
    We are changing our IPS (aip-ssm10) mode of operation from promiscous to Inline mode. Is there any caveats or anything i need to take into consideration before doing the switch? Is there a possibility to roll back incase something doesn't go the way we planned?
    I look forward to your responses.

    changing from promiscous to inline and back is done with the ips-command in the ASA MPF-config. So if you run into problems you can easily switch back.
    What you should do before changing to inline:
    - check your alerts for false positives and eliminate them first.
    - if you can't eliminate all, make sure that the risk-rating doesn't exeed the threshold for the automatic deny-action if configured.
    - and of course keep monitoring your events after the switch to inline.
    Sent from Cisco Technical Support iPad App

  • IDSM2 on 6500-IOS inline mode support?

    Hi,
    I have an IDSM-2 running IPS5.1(1d) software (recently upgraded from 4.x) that is sitting on a 6500 IOS.
    The IPS device manager shows gi0/7 and gi0/8 as both in Promiscuous mode. There is no option to change the mode to inline and pair them.
    Is it so that IDSM-2 currently supports only Promiscuous mode?
    If so, then this module is still acting as an IDS despite running IPS5.1. Isn't it? What is the advantage that I get after upgrading it from 4.x to 5.1?
    -- Vasanth

    There are 2 pieces to the puzzle.
    There is the IDSM-2 version and what it supports, but also the Cat 6K Native IOS version and what it supports.
    IDSM-2 v5.1(1d) supports
    a) Promiscuous mode,
    b) InLine Interface Pair mode (2 interfaces are paired for inline monitoring), and also
    c) InLine Vlan Pair mode (2 vlans on a single interface are paired for inline monitoring, you will also see it called inline-on-a-stick)
    But for these features to be used, the switch code must also support configuring the switch side of the IDSM-2 for each of these 3 features.
    Native IOS Versions prior to 12.2(18)SXE will support only Promiscuous mode on the IDSM-2.
    12.2(18)SXE and later versions will support InLine Interface Pair mode on the IDSM-2.
    No Native IOS versions currently support InLine Vlan Pair mode on the IDSM-2 (a new Native IOS versions with this support is currently in development).
    So to get Inline (IPS) functionality you need to be running a Native IOS version 12.2(18)SXE or later, and on the IDSM-2 run IPS versions 5.1 (or even the older 5.0).
    (NOTE: Cat OS 8.5(1) does support all 3 modes of the IDSM-2. So if you are using Cat OS instead of Native IOS, then run version 8.5(1) to have access to all of the features of IPS 5.1(1) on the IDSM-2)
    If you are running a Native IOS version prior to 12.2(18)SXE then the IDSM-2 can only be operated in Promiscuous mode even if 5.1(1) is loaded on the IDSM-2.
    However, even in promiscuous mode the IPS 5.1(1) software does have a few advantages.
    There are several engines, and engine parameters that are only supported in the 5.1 version and not the 4.0 version. So there are several signatures that are either a) not even created for 4.x sensors, or b) the 4.x signature is not as precise as the 5.x signature in the new engines.
    (These new engines have proved invaluable in writing signatures to detect some of the new attacks that have come out over the past year.)
    There are of course other advantages as well:
    For example:
    1) Risk Rating to better aid in prioritization of alerts.
    2) More flexible fitlering mechanism for alerts that allows for fitlering individual actions
    The 2 features above are just 2 of the new features that have been added in 5.0 and 5.1 that apply to both promiscuous and inline modes.

  • VTP from server to client mode

    Hi,
    I have couple switches setup in VTP server mode. All of them have the same VTP revision number, but most of them should be in VTP client mode.
    Will switching some of them (but the one I really want to have in VTP server mode) into VTP client mode have negative impact on the network? I do know that if you change a switch (with the highest rev #) from client mode to server mode I could end up with problems. However, in my case it will be switching them from server to client mode with all of them with the same Rev #.
    Thanks for the help

    Hello,
    change the switches in question to VTP transparent mode first, and then to client mode, that will reset the revision and prevent any possible conflicts.
    In addition, in case you need to change the root switch as well, in general the VTP server switch should also be the root for your VLANs. You can set the switch as root by configuring it as:
    spanning-tree vlan x priority 0
    HTH,
    GP

  • HELP!:TB switching to/from car/desktop mode on its own and won't connect to computer

    When I charge my Thunderbolt, it will randomly switch to/from desktop mode on its own. Also, it won't recognize the VZW car mount any longer. I have the app to turn on the car mode, but occasionally it will turn off, on its own, as well.
    In addition to all this, my computer can't find my TB, no matter what setting I use to "Connect to PC"!
    Can anyone help?

    Thank you lemew for your reply.
    Hello snowbdr88
    The problems your describing with your device, sound very irritating. Let's get this fixed as soon as possible.
    Did this issue start after you downloaded an application? If so please delete the application and retest.
    Please power the device in safe mode and retest. Here's the link for safe mode: http://support.verizonwireless.com/clc/devices/knowledge_base.html?id=40136
    Here are the instructions for USB connection:
    USB Mass Storage Mode: Allows user to transfer files between PC and device's MicroSD Card.
    The device must contain a memory card and be connected to a PC via a USB cable for this feature to work.
    From the home screen, touch and hold the window shade (located at the top of the screen). 
    Drag the window shade to the bottom of the screen
    Enable USB Mass Storage
    From the window shade, touch option below Ongoing Notification options, the below window will display once user
    has connected device to PC. 
    Please let me know if you are still experiencing these issues.
    Thank you
    JoeL_VZW
    Please follow us on twitter @vzwsupport

  • IDSM-2 load balancing on inline mode is it possible ..?

    Hi there .. I am currenty working on a project and need to find out as to whether etherchanelling load balancing can be configured between several IDSM-2 running on inline mode. The IPS 5.1 admin guide states that it is possible for IOS based switches having the IDSM-2 configured on promiscuous mode, however I have heard that it might also be possible to configure etherchannelling load balance when the IDSM-2 are on inline mode. Any help .. commments will be appreciated .. any links to refer to will be even better
    Thanks !!!

    To configure EtherChannel load balancing on IDSM-2, you must install Cisco IOS 12.2(18)SXE and have Supervisor Engine 720. Cisco IOS only supports promiscuous IDSM-2 EtherChanneling using VACL capture (not SPAN or monitor). Refer the URL
    http://www.cisco.com/en/US/products/hw/vpndevc/ps4077/products_configuration_guide_chapter09186a008055df92.html#wp1044800

  • IPS Inline Mode span configuration

    In IPS V5 Inline Mode, should the second interface (where a packet comes out) of a paired interface be configured as a span port or a regular port? Where can I find more info about this? Thanks.

    Need more information about your intended setup. Generally, the answer is "regular port". Your use of "span" leads me to believe you're implementing from a switch. In that case, be advised that if you're are attempting to loop back into the same switch that you originated from, you will need to have that second port in a different vlan. The sensor does not route, it is a "virtual wire"

  • IDSM on catalyst 6500 to provide IOS Inline mode support

    I am currently evaluating what kind of method to apply in my 6500. I would like to ask if IOS Version 12.2(33)SXI2a  support inline mode and inline vlan pair mode with IDSM-2???what configuration should be done with the switch in order for the multiple vlan traffic to flow with an inline interface of the IDSM2??? In my case I have 16 user vlans and 1 server vlan on catalyst 6500...The task is to protect the servers from users....The requirement is to configure inline mode to monitor the traffic from these 16 vlans when they access the servers...But as we know the IDSM-2 has only two logical sensing ports...So my question is how will you configure the switch to forward the traffic from these 16 vlans to the IDSM-2 module via only ONE sensing port, since the other sensing port will be configured in the server vlan???  Because as far as i know, when you configure inline mode on IOS,you will have to configure the sensing ports in access mode( While in CatOS, you configure these as TRUNK ports)...But this will work when you have only two vlans...But in my case, I have 16 vlans to monitor in inline mode..Please suggest any solution.
    Any urgent reply will be much grateful...
    Many Thanks in advance

    Hi Mubin,
       If you're looking to monitor all the traffic from the user VLANs to the server VLANs then the simplest way to configure the IDSM-2 would be inline on the server VLAN segment.  All traffic destined to the servers (from the users or anywhere else) has to traverse that VLAN.  Assuming you have something like this to start:
    VLAN 100-120 (users) ====== Switch ------ VLAN 200 (servers)
    you'd drop the IDSM-2 inline on VLAN 200 by using a helper VLAN:
    VLAN 100-120 (users) ====== Switch ----- VLAN 201 (server gateway) ----- IDSM-2 (bridging 201 to 200) ----- VLAN 200 (servers)
    To do this you'll need to perform the following steps:
    1.  Designate a new VLAN to use as a helper VLAN for your current server VLAN.  I'll use 201 for this example and assume your current server VLAN is 200.
    Create the helper VLAN on the switch:
    switch# conf t
    switch(config)# vlan 201
    2.  Configure the IDSM-2 to bridge the helper VLAN and the server VLAN (200-201)
    sensor# conf t
    sensor(config)# service interface
    sensor(config-int)# phsyical-interface GigabitEthernet0/7
    sensor(config-int-phy)# admin-state enabled
    sensor(config-int-phy)# subinterface-type inline-vlan-pair
    sensor(config-int-phy-inl)# subinterface 1
    sensor(config-int-phy-inl-sub)# vlan1 200
    sensor(config-int-phy-inl-sub)# vlan2 201
    sensor(config-int-phy-inl-sub)# description Server-Helper pair
    sensor(config-int-phy-inl-sub)# exit
    sensor(config-int-phy-inl)# exit
    sensor(config-int-phy)# exit
    sensor(config-int)# exit
    Apply Changes:?[yes]:
    3.  Configure the switch to trunk the helper and server VLANs to the IDSM-2 module.  I assume the module is in slot 5 in the example.  Replace the 5 with the correct slot for your deployment:
    switch# conf t
    switch(config)# intrusion-detection module 5 data-port 1 trunk allowed-vlan 200,201
    switch(config)# intrusion-detection module 5 data-port 1 autostate include
    *Warning! This next step may cause an outage if everything is configured correctly.  You'll probably want to schedule a window to do this.*
    4.  Finally, force the traffic from the server VLAN through the IDSM-2 by moving the server VLAN gateway from VLAN 200 (where it is currently) to the helper VLAN you created.  To do this, remove the SVI from VLAN 200 and apply the same IP address to VLAN 201.  I assume the current server gateway is 192.168.1.1/24
    switch# conf t
    switch(config)#int vlan 200
    switch(config-int)#no ip addr
    switch(config-int)#int vlan 201
    switch(config-int)#ip addr 192.168.1.1 255.255.255.0
    switch(config-int)#exit
    switch(config)#exit
    switch# wr mem
    Now, when the servers try to contact 192.168.1.1 (their gateway) they'll have to be bridged through the IDSM-2 to reach VLAN 201 and in the process all traffic destined to them or sourced from them will be inspected.  Do not put any hosts or servers in the helper VLAN (201) or they will not be inspected.
    Best Regards,
    Justin

  • Waas (4.2.1) in inline mode not optimizing

    Hello
    noob-question here regarding waas, sorry for that.
    But I've been reading all day and I can't understand why this isn't working.
    It seems traffic is not optimized, the graphs in the central manager are basically empty.
    I'm currently working on a deployment with 3xappliances
    Where 1 is the manager and 2 WAE
    Location of these WAE is pretty much in different continents.
    I will call them New York and Sydney from here.
    The hardware of the WAE's is
    New York      WAVE-274-K9
    Sydney         WAVE-574-K9
    And these are setup in inline mode.
    So basically we have a switch and an ASA on both sites, in between is the WAE listening to all VLANs.
    The ASA's are configured for inspect waas.
    Versions on all of them is 4.2.1.
    In NY all I'm seeing  when I issue 'sh stat conn' is
    PT in progress
    PT No peer
    This is making me think that somehow the WAE's are not finding each other.
    In the central manager under both WAE's
    Automatically Configure Peer is checked.
    However I'm not sure how to verify that they are actually discovering each other.
    Below are some show commands, not sure if they are to any help.
    Looking at the inlinegroup in New York
    sh int inlinegroup 1/1
    Interface is in intercept operating mode.
    WAN Port :
    ===========
    Device name        : eth1. Bypass master interface.
    Packets Received   : 368334207
    Packets Intercepted: 187076874
    Packets Bridged    : 181892022
    Packets Forwarded  : 190416781
    Packets Dropped    : 3
    Packets Received on native      : 0
    Active flows for this interface : 0
    and the inlinegroup in Sydney
    sh int inlinegroup 1/0
    Interface is in intercept operating mode
    WAN Port :
    ===========
    Device name        : eth2. Bypass master interface.
    Packets Received   : 2157944591
    Packets Intercepted: 2090403196
    Packets Bridged    : 73392781
    Packets Forwarded  : 1789726515
    Packets Dropped    : 49
    Packets Received on native      : 0
    Active flows for this interface : 0
    sh stat pass-trough in New York
    sh statistics pass-through
                          Outbound                 
    PT Client:
         Bytes                      120192829511
         Packets                       136188837
    PT Server:
         Bytes                       45736943268
         Packets                       126276288
    PT In Progress:
         Bytes                       43839787065
         Packets                        93203689
                          Active                    Completed
    Overall                                    4                   9456941
    No Peer                                    0                   6168740
    Rjct Capabilities                          0                         0
    Rjct Resources                             0                      1083
    Rjct No License                            0                         0
    App Config                                 0                    105544
    Global Config                              0                         0
    Asymmetric                                 0                      2280
    In Progress                                4                   3148696
    Intermediate                               0                         0
    Internal Error                             0                         0
    App Override                               0                         0
    Server Black List                          0                     30598
    AD Version Mismatch                        0                         0
    AD AO Incompatible                         0                         0
    AD AOIM Progress                           0                         0
    DM Version Mismatch                        0                         0
    Peer Override                              0                         0
    Bad AD Options                             0                         0
    Non-optimizing Peer                        0                         0
    Interception ACL                           0                         0
    And the same in Sydney
    sh stat pass-through
                          Outbound                 
    PT Client:
         Bytes                      797658174849
         Packets                      1233930472
    PT Server:
         Bytes                      574115264312
         Packets                      1097913979
    PT In Progress:
         Bytes                      570246018011
         Packets                      1445320890
                          Active                    Completed
    Overall                                    0                  66152228
    No Peer                                    0                  26131796
    Rjct Capabilities                          0                         0
    Rjct Resources                             0                        77
    Rjct No License                            0                         0
    App Config                                 0                    458147
    Global Config                              0                         0
    Asymmetric                                 0                     31142
    In Progress                                0                  39525953
    Intermediate                               0                         0
    Internal Error                             0                         2
    App Override                               0                         0
    Server Black List                          0                      5111
    AD Version Mismatch                        0                         0
    AD AO Incompatible                         0                         0
    AD AOIM Progress                           0                         0
    DM Version Mismatch                        0                         0
    Peer Override                              0                         0
    Bad AD Options                             0                         0
    Non-optimizing Peer                        0                         0
    Interception ACL                           0                         0
    I'm thinking about upgrading them all to the latest release 5.1.1.
    Do I have to jump to (for example) 4.3.1 and then to 5.1.1 ?

    Doesn't look like it was tested.  Checking why ...
    Zach

  • IPS 45xx/43xx/42xx appliance and Catalyst 6500 Inline Mode issues

    Hello to everyone!
    We have recently got our new IPS 4510 appliance and for now there is a task to develop a connection scheme to our backbone multilayer switch (Catalyst 6500).
    There are several server's and user's VLANs connected to 6500.
    6500 performs inter-vlan routing.
    The main task is to "insert" IPS appliance between traffic path from any VLAN to server's VLANs.
    The additional task is to provide failover in "fail-open" manner (We have only one 4510 appliance. So if 4510 fails then traffic should continue passing without inspections).
    As I understood from this document https://supportforums.cisco.com/docs/DOC-12206 the only way to implement Inline Mode when using multilayer switch is to "take out" default gateway address for inspected subnet on the other VLAN's SVI.
    If we replace IDSM-2 with IPS appliance I suppose we can use hardware bypass feature as a failover measure (in case if IPS fails then traffic between bridged VLANs will still be forwarded).
    But what if there are several VLANs that should be monitored?
    As I understand in such schema we will need to use addtional interface-inline-pair for each monitored VLAN.
    But what if we have 20 VLANs for servers and 50 VLANs for users?
    Can using of VLAN-group mode handle this problem?
    I am not sure but using of VLAN-groups cannot provide bridging between two different VLANs. Am I right?
    And will using of VLAN-group make hardware-bypass feature useless?
    I tryed to simulate the first scenario in Cisco Packet Tracer (i used a bridge to simulate an IPS appliance in interface-pair inline mode):
    May be this is a bug of Packet Tracer but traffic went through IPS only if it was sent from VLAN 10 to VLAN100.
    The return traffic from VLAN 100 to VLAN 10 went through the Catalyst directly.
    When Catalyst recieved the frame it said:
    "The frame destination MAC address matches the MAC address of the active VLAN interface."
    After that it decapsulates the PDU from the Ethernet frame and send IP packet directly to VLAN 10.
    Does it mean that there is a need to change SVI's mac address?
    Thanks for any advice in advance.

    Here is my guess of how to realise my scenario:
    Config on Cat6k should looks something like this:
    ip routing
    interface Ge1/0
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 10-12,110-112
    switchport mode trunk
    switchport nonegotiate
    switchport vlan mapping enable
    switchport vlan mapping 110 10
    switchport vlan mapping 111 11
    switchport vlan mapping 112 12
    interface Ge1/1
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 10-12
    switchport mode trunk
    switchport nonegotiate
    interface vlan 2
    ip address 10.0.2.1 255.255.255.0
    interface vlan 3
    ip address 10.0.3.1 255.255.255.0
    interface Vlan4
    ip address 10.0.4.1 255.255.255.0
    interface Vlan110
    ip address 10.0.10.1 255.255.255.0
    interface Vlan111
    ip address 10.0.11.1 255.255.255.0
    interface Vlan112
    ip address 10.0.12.1 255.255.255.0
    no interface Vlan10
    no interface Vlan11
    no interface Vlan12
    IPS should operate in VLAN-group inline mode. We could separate traffic by VLAN tag to inspect with different virtual sensors or we use one VS for all trunk traffic.
    Traffic routed from any VLAN to VLANs 10-12 should go through IPS.
    In case if IPS gets powered off - hardware-bypass feature should provide bridging between trunk ports.
    In theory it should work.
    Remained to test it in practice
    Thoughts / suggestions?    

  • Possible to use inline mode with Port Channel

    Hi,
    Just wondering if anyone has used inline mode with Port Channel configuration placing WAE device between router and switch. Any tips or gotcahs to be concerned about. We currently have inline mode running at this location but site would want redudancy built in through port channel.
    kind regards,
    Nigel

    Hi Nigel,
    This is not supported :
    Taken from here :
    http://www.cisco.com/c/en/us/td/docs/app_ntwk_services/waas/waas/v531/command/reference/cmdr/glob_cfg.html#wp1532575
    Best regards
    Finn Poulsen

  • How can i use IDSM-2 in inline mode for more than two VLANs?

    can i use the IDSM-2 in inline mode to be ips to more than two VLANS
    like this or it isn't
    intrusion-detection module 5 data port 1 access-vlan 10,20,30,40,50
    intrusion-detection module 5 data port 1 access-vlan 100,200
    thank u all for your help

    The IDSM-2 ports need to be configured as trunk ports with multiple vlans rather than as access ports.
    http://www.cisco.com/en/US/partner/products/hw/vpndevc/ps4077/products_configuration_guide_chapter09186a00807517eb.html#wp1068377
    And instead of creating an inline interface pair by pairing Gig0/7 with Gig0/8 within the IDSM-2 configuration, you would create inline vlan pairs.
    With an inline vlan pair you pair 2 vlans on the same interface.
    You can have up to 255 inline vlan pairs on each interface (assumining you keep the total traffic from all of the pairs within the IDSM-2s performance limit of around 500Mbps)
    How to create inline vlan pairs:
    http://www.cisco.com/en/US/partner/products/hw/vpndevc/ps4077/products_configuration_guide_chapter09186a00807517bb.html#wp1047852
    The other aspect you need to be aware of is that not all IOS versions will support configuring the IDSM-2 data ports as trunk ports for inline vlan pairs.
    Your best bet is to use 12.2(18)SXF4 or a later version on the 12.2(18)SXF train.
    The 12.2(33)SR train does not currently support the trunk feature for the IDSM-2.

  • Autorotate stops when switching view from popover

    Hi guys. This is my first post here (on my first iOS app) so please be gentle
    I have my iPad app set to Autorotate between both right and left home button landscape modes.
    Everything seams to be working fine when i build and run. Auto rotation works and only admit landscape modes.
    In my view controller i have a button linked to a popover with 4 other buttons to swich to 4 different views.
    When i switch to any of those other views autorotation stops working.
    All those views have the same code to accept autorotation:
    - (BOOL) shouldAutorotateToInterfaceOrientation: (UIInterfaceOrientation) interfaceOrientation {
    return (interfaceOrientation == UIInterfaceOrientationLandscapeRight || interfaceOrientation == UIInterfaceOrientationLandscapeLeft);
    The popover also has that code and is displaying the buttons in the correct way when I rotate the screen. I assume that the popover is autoratating fine, but the rest of the view stays upside down.
    I'm switching views from the popover with the following code:
    - (IBAction)GotoView02{
    View02ViewController *View02 = [[View02ViewController alloc] initWithNibName:nil bundle:nil];
    [self presentModalViewController:View02 animated:NO];
    Any ideas why autorotation stops working?

    Same problem here, happening both in the simulator and on the device itself.
    Have you found a solution yet?

  • HT4262 What do I have to do to my Apple Extreme to switch it from a DSL broadband modem to a cable modem?

    What do I have to do to my Apple Extreme to switch it from a DSL broadband modem to a cable modem?

    Did you do the factory reset of the AE?? That is necessary. The AE keeps too many values from the last setup to easily move to a new configuration.
    The quick method of factory reset.
    Please look at Time Capsule (TC) as the same thing as the Extreme.
    Power down the TC.
    Hold in reset. and keep holding it in. Be Gentle! It is a tiny surface mount switch with a plastic lever.. Attempting to push it out the other side of the TC will not make the switch turn on better.
    (I fix TC and have several reset levers bent over and jammed or broken off).
    Power on the TC.. remember with the reset held in.. this needs three arms.. a friend or power switch you can get to with your feet..
    Keep holding in reset for about 10sec until the front LED flashes rapidly.
    Release reset and wait .. the boot will be slow as it deletes previous setting.. only from router side and pulls out the factory defaults. No files are deleted on the hard disk.. but the name of the TC may change.
    The power cycle of the cable modem is very important.. it has to be off completely for 20min and sometimes longer.. overnight. Some battery backup version modems do not go off without removing the battery.. even unscrew the coax cable.
    Make sure when you power up the modem only the AE is plugged in. Make sure the AE is set to router mode.. DHCP + NAT.. and is plugged in WAN port to the LAN port of the modem.
    If you keep having trouble post again..
    We need to know the model of the AE and firmware it is running.
    Also what version utility on what OS you are setting it up from.

Maybe you are looking for

  • Is it possible to create a list of the contents of a portfolio

    I have the need to create a number of portfolios with different files based on the need of the individual in the organization and subject to document control procedures. As part of the document control procedure, I have to identify what versions of w

  • How to get modified values in selection screen

    address data  is filled in selection screen by default. if  we want to change the address on selection screen and pass it to another variable .how to handle this  please let me know

  • Mouse Settings For Dual Displays

    Hi Gang Just  started using Dual Displays for Final Cut. Was wondering if anyone had  some tips for maximizing mouse settings? Its taking some time aquiring control of the mouse. Should I go to Preferences for adjustments? Screen Shots: http://www.lo

  • How to (or can I even) concatenate BLOB

    One practice for storing images files is creating a table with a column (named IMG) of the BLOB data type, then inserting each image into the table. The result is the table contains multiple records: ROW1: img1 ROW2: img2 ROW3: img3 ROW4: img4 Now, f

  • Problems with value retorned by   FM: 'SPELL_AMOUNT' with language 'ES'

    Hi, I'm having problems with the FM 'SPELL_AMOUNT' with language 'ES'. When amount it's over 1 billion, the output is something like this: <b>Amount (NUM)</b>--<b>Actual output</b>-- <b>wanted output</b> 1.000.000.000, 00  - Un Millardo Millones - Un