VLAN port assignment on LMS 4.2

I have noticed that only the auxiliary(Voice) vlan is showing up on new deployed switch ports even though both Data and Voice vlans are configured.  Since the native vlan does not show up, the technicians are unable to assign other vlans on the ports.  Any idea what causes this behavior?                   

ok, shell or shell_enable ?
i'll try it,thanks。
LMS02/sysadmin# ?
Exec commands:
  application   Application Install and Administration
  clock         Set the system clock
  configure     Enter configuration mode
  copy          Copy commands
  debug         Debugging functions (see also 'undebug')
  delete        Delete a file
  dir           List files on local filesystem
  exit          Exit from the EXEC
  forceout      Force Logout all the sessions of a specific system user
  halt          Shutdown the system
  mkdir         Create new directory
  nslookup      DNS lookup for an IP address or hostname
  patch         Install System or Application Patch
  ping          Ping a remote ip address
  ping6         Ping a remote ipv6 address
  reload        Reboot the system
  rmdir         Remove existing directory
  shell         Access the shell by using the password
  shell_enable  Enable access to shell by setting password
  show          Show running system information
  ssh           SSH to a remote ip address
  tech          TAC commands
  telnet        Telnet to a remote ip address
  terminal      Set terminal line parameters
  traceroute    Trace the route to a remote ip address
  undebug       Disable debugging functions (see also 'debug')
  write         Write running system information
LMS02/sysadmin#

Similar Messages

  • LMS 4.0 VLAN Port Assignment Cat3750X

    Hello together
    Have installed LMS 4.0 at a customer. The main switches he uses are the following ones:
    WS-C3750X-24P-S (1.3.6.1.4.1.9.1.1224)
    First problem I faced was with lack of support for Cisco View and the mentioned device. This is fixed with the following package Cisco View Device Update: Cat3750.cv50.13-0.zip. Have tested this today.
    But now to my new problem. One reason for Cisco View usage is VLAN assignement. Unfortunately this is not supported with the Cat3750 devices and Cisco View like with other devices. So I thought I show the customer how to do it with the VLAN Port Assignement:
    Configuration > Workflows > VLAN > Configure Port Assignment
    Unfortunatly it seems that this is not supported with these devices. From the following document I can't find something which underlines the lack of support: http://www.cisco.com/en/US/docs/net_mgmt/ciscoworks_lan_management_solution/4.0/device_support/table/lms40sdt.html#Cisco Catalyst 3750 Series Switches
    It even seems it should be supported. See picture in the bottom from the above link.
    My question to the community:
    - Does anybody else have the same switches? If yes, does Configure Port Assignment work in LMS 4.0
    - @Cisco, is this feature really not supported with the following device: WS-C3750X-24P-S? If yes, are any patches planned with release date.
    Thanks for any feedback.
    Erich

    Hi Joseph
    Thanks for your feedback. Have asked the customer to do the following steps and send me a screen shot:
    - Configuration > Workflows > VLAN > Configure Port Assignment
    - Select Domain Selector
    - Choose a Domain of a Switch C3750X
    - Click on List Ports
    Actually the same thing what I have done during my installation Onsite. When I have done the above steps I only have received a empty windows. Now, a week later it seems to work. Enclosed a screen shot with evidence for all those you have the same devices in use.
    Happy that it works. Funny, that it didn't worked when I was onsite. Sorry for the inconvenience and thanks for your feedback / support.
    Erich

  • VLAN Port Assignment failed on Campus Manager 5.1

    Dear All,
    i deploying LMS 3.1  in my organization.
    I finalized the installation and  all looks fine BUT   when i try to assign a port to a different VLAN in Campus Manager (5.1)  i am getting the following error message.
    There were some errors during operation."
    Error occured moving port Gi1/8 in device 10.x.y.z  into vlan with index XY.
    Cause:An error occured while performing SNMP operation.
    Action:Examine and save the server log file and report the error to the product administrator for further action.
    VLAN Port Assignment failed
    any idea?
    here is simply the config  related to SNMP on my switch.
    snmp-server community XXXXXXXX
    snmp-server host 10.X.Y.Z version 2c XXXXXXXX
    snmp-server enable informs
    snmp-server enable traps 
    do i miss anything else?  any recommendation? Why i am getting that error message?
    Thank you for your support and asistance.
    Kind Regards,
    mico

    Hi Joe,
    thank you so much for your kind reply. I configured the snmp RW community string on the switch matching the credentials  on the LMS server but still getting the same error message when i try to assign ports no a different VLAN
    here is my commands for the switch:
    snmp-server community xxxxxx ro
    snmp-server community yyyyyy rw
    snmp-server host x.y.w.z version 2c yyyyyy
    snmp-server enable informs
    snmp-server enable traps
    and on the LMS server i set the values:
    snmp-server community xxxxxx ro
    snmp-server community yyyyyy rw

  • Dynamic VLAN/SSID assignment using 4402/MS IAS

    Greetings,
    In short we have a WLC4402 (50 AP license) and approx 30 1252s LAPs in place. Right now we have three VLANs/SSIDs in place - one for admin, one for teachers and one for students. The WLC uses a MS Windows 2003 server running IAS for PEAP authentication. The clients are Windows XP, the SSID is entered manually based on "pre-designation" of the laptop's "type" (either admin, teacher or student).
    This is working fine. However more and more frequently our users have been "sharing" laptops so a student may need to use a teacher's laptop and vice-versa. In short we would like to use dynamic VLAN/SSID assignment so that if a student does have a teacher's laptop the "student" VLAN/SSID would be assigned to them when log in (and the proper ACLs, QoS policies, etc would be applied)
    We have found documentation on how to perform this with an ACS but is there anything available for this configuration with a MS IAS server.
    Any input/information would be greatly appreciated.
    Joe

    Shaun,
    My LAG - etherchannel interface
    interface Port-channel8
    description WLC-portchannel
    switchport
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 1,3,24-26
    switchport mode trunk
    end
    My 2 WLC Fiber ports:
    Current configuration : 382 bytes
    interface GigabitEthernet7/47
    description CiscoWLC-LAG-Ports
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 1,3,24-26
    switchport mode trunk
    service-policy output autoqos-voip-policy
    qos trust cos
    auto qos voip trust
    tx-queue 3
    bandwidth percent 33
    priority high
    shape percent 33
    spanning-tree bpdufilter enable
    channel-group 8 mode on
    end
    2200-3A#sh run int g7/48
    Building configuration...
    Current configuration : 382 bytes
    interface GigabitEthernet7/48
    description CiscoWLC-LAG-Ports
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 1,3,24-26
    switchport mode trunk
    service-policy output autoqos-voip-policy
    qos trust cos
    auto qos voip trust
    tx-queue 3
    bandwidth percent 33
    priority high
    shape percent 33
    spanning-tree bpdufilter enable
    channel-group 8 mode on
    end
    I use vl1 for ap mgmt, vl3 for hotspot, and vl24-26 for WPA2 clients and wireless voip devices.
    One of my AP switchports on the same switch. I let the trunk port to the AP carry a range of vlan's, and then a manage the vlans assigned to clients with IAS and the WLC.
    interface FastEthernet4/48
    description AP-PoE
    switchport trunk encapsulation dot1q
    switchport trunk allowed vlan 1-1004
    switchport mode trunk
    service-policy output autoqos-voip-policy
    qos trust cos
    auto qos voip trust
    tx-queue 3
    bandwidth percent 33
    priority high
    shape percent 33
    end
    Jim

  • ISA550 Deny access to management login on some vlans/ports

    Hi,
    I tried to create a firewall ACL rule that would deny access to http/https on the router for some vlans/ports, but it seems like the rule is just ignored.
    Also; I can ping all interfaces on the router even between to vlans that are using a same level zone. Even connect to the management login from a different access vlan port.
    The main issue is that I don't really like to expose a webserver on a securitydevice to everyone on the LAN side. And I would also like to isolate all vlans and create exceptions if I need to.
    Anyone know if this is possible?

    Hi Prithvi Manduva,
    Thank you for replying!
    I have tried to set up two simple rules to illustrate my problem. My configuration is this:
    VLAN 1: DEFAULT  in zone OFFICE
    VLAN 2: CONFIG in zine CONFIG
    With Vlan 1 and 2 assigned to port 2 and port 3 in access mode-
    DHCP is enabled on both vlans with subnets of 192.168.5.0/24 for OFFICE and 192.168.10.0/24 for CONFIG
    CONFIG_IP is 192.168.10.1
    DEFAULT_IP is 192.168.5.1
    Using these two rules:
    #     FromZone     ToZone     Service     SourceIP     DestinationIP     Action
    1     CONFIG     Any     HTTP     Any     CONFIG_IP     Permit  
    2     Any     Any     HTTP     Any     DEFAULT_IP     Deny  
    I would think that this would allow the CONFIG zone to access port 80 on config IP, and also deny all other zones to access port 80 on the default gateway for Office (DEFAULT_IP)
    I also tried to create a simple Deny ICMP Echo Request to the DEFAULT_IP, but it looks like it's just ignored.
    In short, it looks like I can't deny anything to any of the IP addresses of the interfaces on the router.

  • Dynamic VLAN/SSID assignment w/IPv6

    I have followed the answer in this discussion which instructs on how to get Dynamic VLAN/SSID assignments using WLCs + MS IAS:
    https://supportforums.cisco.com/thread/339396
    This works great for IPv4.  This does not appear to work for IPv6.
    I have CT2504 WLCs running v7.0.116.0 and AP 3502s.  I have a Windows 2003 IAS working for 802.1x authentication using PEAP and per-user/group dynamic VLAN/SSID assignments.  Based on who you authenticate as, you are placed on the appropriate VLAN.
    However, IPv6 does not function properly.  I believe this is due to the nature that the WLC only bridges IPv6 from the Interface Group that the WLAN is assigned to and/or whatever Multicast VLAN you assign.
    If I connect as a user assigned to the same matching VLAN as the WLAN Interface / Multicast VLAN, IPv6 works just fine.  I do not even have to have the "Enable IPv6" box checked in the Advanced tab, nor does the "Multicast Vlan Feature" need to be enabled - IPv6 still works.
    If I connect as a user that is assigned to a different VLAN than the WLAN Interface / Multicast VLAN, I see the IPv6 Router Advertisement from the WLAN Interface / Multicast VLAN, and not the VLAN that "Allow AAA Override" switched me to.  Naturally since I'm getting as IPv6 prefix for a different VLAN, when I try to route traffic through the IPv6 default gateway (which isn't on the VLAN I'm connected to), it doesn't work.
    One work-around to have IPv6 support is to use distinct, non-dynamic per VLAN/SSID assignments.  This is ugly and doesn't scale (16 max SSIDs).
    Has anyone else experienced this and know of a solution?
    For now I'll just have to set the WLAN Interface to a VLAN which does not have IPv6 enabled and my wireless users won't have IPv6 unless they VPN on top of Wifi.  Rather disappointing.

    this sounds alot like another implication of IPv6 with "more than one VLAN on the same SSID".
    see this thread:
    https://supportforums.cisco.com/thread/2157621?tstart=60
    not with dynamic vlan, but vlan select - which, on the L2/L3 on SSID-side is essentially the same.
    as mentioned in the thread, 7.2 has a feature that "automatically sends the correct RA to the correct clients via L2  wireless unicast. By unicasting the RA, clients on the same WLAN, but a  different VLAN, do not receive the incorrect RA."
    lucky for you, 7.2 is available for the 2504 - with my WiSM1s I am out of luck :-(
    so this feature *could* solve this problem, as the problem is that the wrong IPv6-RAs are broadcasted for the client (because the SSID is the same)

  • Hp officejet j6450 port assignment changes each time i start up.

    When I startup, the printer always comes up in "offline status", and I cannot figure out how to reset to online.  The problem seems to be that each time the printer syncs up with the wireless router, the port assignments change, so I have to "discover" the correct port and reset that via the Windows control panel properties for the printer.  How can I set this such that the port assignment remains constant?  or is there some simpler solution?  Thanks.

    Let's set a static IP address for the printer:
    - Print a Network Config Page from the front of the printer. Note the printer's IP address.
    - Type that IP address into a browser to reveal the printer's internal settings.
    - Choose the Networking tab, then Wireless along the left side, then the IPv4 tab.
    - On this screen you want to set a Manual IP. You need to set an IP address outside the range that the router automatically sets (called the DHCP range). You can find the DHCP range of the router using its internal settings page or in its manual. Use the CD that came with your router or type the router's IP address (ends in .1) into a browser.
    - Use 255.255.255.0 for the subnet (unless you know it is different, if so, use that)
    - Enter your router's IP (on the Network Config Page) for the gateway and first DNS. Leave the second one blank.
    - Click 'Apply'.
    Now, shut down the router and printer, start the router, wait, then start the printer.
    After this you may need to redo 'Add a Printer' using the new IP address.
    Say thanks by clicking "Kudos" "thumbs up" in the post that helped you.
    I am employed by HP

  • Port assignment for Online library

    I'm sitting behind a rather stern firewall and it's blocking
    access to Device Central CS4's Online Library. I need to know the
    port assignement for the feature in order to request access from
    our IT staff. Any info on this question will be greatly
    appreciated.

    WorldofCables One Stop Store for USB Cables, DVI Cables,
    Firewire Cables, Monitor Cables, Adapters, PC Cables, Connectors,
    Audio Video Cables, Gaming Accessories, PDA & Phone
    Accessories, iPOD Accessories.
    http://www.worldofcables.com/store/default.asp

  • Port Assignment SIA and CMS

    Hi,
    I need to change port assignment on SIA and CMS.
    How do I change ports on these services?
    Br,
    Sonni

    stop the sia and go into it's properties from the CCM. I believe they can both be set there as well as in the CMC > Servers > CMS
    Regards,
    Tim

  • Query to get all ports assigned and used by EBS instance.

    Hi,
    Can some one pleaase help to get
    Query to get all ports assigned and used by EBS instance.
    Help is appreaciated.
    Regards,
    Milan

    MILAN RATHOD wrote:
    Hi,
    Can some one pleaase help to get
    Query to get all ports assigned and used by EBS instance.
    Help is appreaciated.
    Regards,
    MilanIn addition to the thread referenced above by Helios, please check the context files and (Oracle E-Business Suite R12 Configuration in a DMZ [ID 380490.1] -- F. List of Ports to Open in a DMZ Configuration).
    Thanks,
    Hussein

  • UCS VLAN Port Count Limit

    hi, Cisco:
    Is there any way to INCREASE the VLAN Port Count Limit of 6000 Per FInterconnect running 1.4(2b)?
    Imagine I have 4 vNIC and 10 selected VLAN Per Service Profile and 2 vHBA.
    So in this case, how many VLAN ports will be used? Is it 60 or 40? Assuming it is 60, Does it man that I CAN ONLY HAVE 100 Service Profiles?
    just wondering WHY is the VLAN Port Count Limit So Low? How about the other fabric and how DOES it contribute to the VLAN Port Count Limit?
    Please advise.
    Really appreciate it as we are rolling and rolling out UCS in droves.
    SiM

    Hey KP,
    The VLAN port count is accrued on an individual FI basis.  So each FI gets 6000 VLAN port counts.  This total is made up from a combination of Uplink ports (Border Interfaces) as well as virtual ports (Access Ports or HBAs).  You can see the current allocaiton by:
    UCS-250-B# scope fabric-interconnect b
    UCS-250-B /fabric-interconnect # show vlan-port-count
    VLAN-Port Count:
        VLAN-Port Limit Access VLAN-Port Count Border VLAN-Port Count Alloc Status
        6000            95                     114                    Available
    UCS-250-B /fabric-interconnect #
    The border (uplink) interfaces are pretty easy to understand.  The Access VLAN Port Count is incremented for each VLAN on each vNIC defined, as well as any HBAs. 
    So in your example, if you have 4 vNICs with 10 VLANs defined on each, plus two HBAs you would have 4 x 10 + 2 = 42 VLAN port counts for this service profile. 
    The only time this count comes into consideration is with an adaptor that can create multiple virtual ports such as the Palo (M81KR-VIC) adaptor.  We have many cloud providers with 20+ Chassis who never hit the max limit. 
    This limitation brings in "good design" practices.  If you want to define 4 vNICs for your service profiles, do you really need all 10 VLANs allowed on each of the 4 vNICs?  Crafting an individual vNIC for different purposes such as VMotion, Management, iSCSI etc is a great idea.  But I don't need to allow each & every VLAN on these various purpose NICs.  Just allowing all VLANs on ALL  vNICs is the only way you'll likely exceed the 6000 VLAN port count limit.  This again, would probably identify a design concern more than system limitation.
    Let me know if you have any other questions/concerns.
    Regards,
    Robert

  • Desbloquear puertos Port Secutity con LMS 4.2

    Hola Chicos Buenos Dias.
    Por favor ayudenme, como puedo desbloquear puertos por medio del cisco prime lms 4.2. En mi trabajo voy a delegar esta funcion al helpdesk y no quiero darle acceso a los Switch´s.
    Tenemos aproximadamente 2000 Switch´s Catalyst 2960 TTL y 3960.
    Muchas Gracias.
    Saludos
    Hi Guys Good Morning.
    Please help, as I can unlock through ports cisco prime lms 4.2. In my work I will delegate this function to the helpdesk and I will not give you access to the Switch's.
    We have approximately 2000 Switch Catalyst 2960's and 3960 TTL.
    Thank you.
    regards

    Hola Chicos Buenos Dias.
    Por favor ayudenme, como puedo desbloquear puertos por medio del cisco prime lms 4.2. En mi trabajo voy a delegar esta funcion al helpdesk y no quiero darle acceso a los Switch´s.
    Tenemos aproximadamente 2000 Switch´s Catalyst 2960 TTL y 3960.
    Muchas Gracias.
    Saludos
    Hi Guys Good Morning.
    Please help, as I can unlock through ports cisco prime lms 4.2. In my work I will delegate this function to the helpdesk and I will not give you access to the Switch's.
    We have approximately 2000 Switch Catalyst 2960's and 3960 TTL.
    Thank you.
    regards

  • Dynamic interface port assignment

    Good Day,
    I am setting up a 4402 (50 ap license ver 5.0) that will manage about 40 aps. Following the Cisco docs, I have created two ap manager intefaces for load balancing. Each physical port is attached to one of two Cat 6509s (no lag).
    Our network ultimately connects to a router (over which I have no control) with six 100 mps ports each representing a subnet/vlan. So my intent is to create six dynamic interfaces each coresponding to a vlan for load balancing and bandwidth optimization.
    My question regards assinging each dynamic interface to a physical port. Simple logic would have me assinging 3 interfaces to port #1 and three to port #2, then assigning a proportionate number of aps to each interface.
    Is it that simple, or are there other considerations.
    Thanks

    You're correct. Creating a dynamic interface for each VLAN is exactly what you need to do. This will load-balance the traffic from the multiple VLANs across your links.
    I would highly recommend that you consider LAGging the two uplinks. It provides better load-balancing and better redundancy. Since you're connecting to a 6509, you can LAG between two blades for redundancy purposes.
    Whether you LAG or not is completely up to you, of course. But you seem to be good to go if you want to leave them unLAGged.
    Jeff

  • ACE: Can the ft-vlan port be used for other vlans or not?

    Hi People,
    I am a bit confused reading cisco's documentation. I am now using the ft-vlan in a dedicated port (no other vlans), but I would like to use it as a normal port in order to use it in a context.
    From cisco website:
    "You cannot use this dedicated FT VLAN Ethernet port for normal network traffic; it must be dedicated for redundancy only.
    When you specify an Ethernet port or a port-channel interface as a dedicated FT VLAN, you have the option to either configure the dedicated VLAN as the only VLAN associated with the Ethernet port or port-channel interface, or to allocate it as part of a VLAN trunk link (see "(config-if) switchport trunk allowed vlan"). Note that the ACE automatically includes the FT VLAN in the VLAN trunk link. If you choose to configure VLAN trunking, it is not necessary for you to assign the FT VLAN in the trunk link along with the other VLANs."
    First it says, you cannot use this port for other traffic, and then it says this port can be a trunk port. If the port is trunk, then obviously you pass other vlans too. Right? or not? So can the port that has the ft-vlan be used in a context with other vlans?
    thanks,
    george

    Then simply do not use the 'ft-port' command.
    This command "auto" configure the interface to be switchtrunk with one vlan  allowed.
    If you reconfigure the interface with your own switchport command, all you risk is some kind of collision or a future software version which will deny this kind of configuration.
    Here is what I use to have vlan 500 part of a normal trunk interface.
    But be aware, that if your interface is overloaded, FT traffic could get dropped and therefore you will end up with 2 active units causing major traffic disuption.
    This is why we recommend to run FT on its own interface with no other traffic.
    Generating configuration....
    interface gigabitEthernet 1/1
      switchport access vlan 1000
      shutdown
    interface gigabitEthernet 1/2
      shutdown
    interface gigabitEthernet 1/3
      switchport trunk native vlan 20
      switchport trunk allowed vlan 10-500
      no shutdown
    interface gigabitEthernet 1/4
      shutdown
    ft interface vlan 500
      ip address 192.168.77.2 255.255.255.0
      peer ip address 192.168.77.1 255.255.255.0
      no shutdown
    Gilles.

  • Any way to find unused ports in Prime LMS 4.2.3 ?

    Hi all,
    We have just installed Prime LMS 4.2.3 (about a week ago), and it is pretty much working as expected, except for one thing - I cannot get any data back from the reclaim ports report.
    I have tried both the Ports Up and Ports Down options, and have even taken the time frame down to one day, but always receive a "no records" result. Has anyone got this working?
    Pretty much every other report I've tried so far returns results, just not this one.... We really need to use it to determine (over a period of time) what our actual port usage is for our replacement schedule over the next few years.
    -Pete

    Hi Afroz,
    The detailed device report is really useful, as it contains the time of the port change - I ran it for the switch I was interested in, and then exported the data into Excel and sorted on port status and change date to get the info I needed.
    I also ran the "Reclaim up ports" again with the interval set for 15 days with zero result, however when I changed this to 5 days I started to get some info - my guess is that the data that is needed  for this report is collected once every week or so.
    My server has been running for nearly two weeks now, so I will let it do it's thing for about a month, then run the report again to get some better statistics.
    Thanks for your suggestions, much appreciated !
    -Pete

Maybe you are looking for

  • ITunes 7 Help: No longer able to import new songs onto iPod

    Hello, I'm experiencing a bad problem that is completely preventing me from adding new songs to my iPod. This problem started when I got the new iTunes 7. Whenever I connect my iPod and drag and drop the songs, it would appear as if iTunes is importi

  • PSD files aren't supported in Photoshop CS6?

    Hi, I have Photoshop CS6 on my Macbook Pro OS X. But I can't open PSD files because I get the mention doesn't support it. Both Safari (gives me a gray screen) and Finder can not open it. Does anyone one know what I can do to solve this problem? I tri

  • How to display a char as most detailed node of a hierarchy?

    Hi specialists, BEx 7.0 knows a function "Display the Row Hierarchically and Expand Till" (Query-Properties --> Data Formating) This function positions a characteristic instead in an own column as further node in the hierarchy - tree. I know that sim

  • HT4922 Can't get Java to run

    Installed Java 7.25 and Safari says it doesn't detect Java at all???

  • Syncing more than 1 iPad to an iTunes account

    Hi, I want to buy 10 iPads for our business and use them as a sales tool, is it possible to have 1 itunes account with all our company assets pictures, videos, etc and then sync each of the 10 iPads to the same iTunes account ? Thanks Paul