WISM Interface Grouping with different subnets

WISM v7.0 VLAN Select.
Anyone can confirm if the VLANs subnet to be configured under interface group MUST be having the same subnet.
Eg. VLAN1 - mask 255.255.255.248
      VLAN2 - mask 255.255.255.120
Would these two VLANs be able to work together in interface grouping?
Thanks in advance.
Cheers,
Wong

The subnet mask doesn't matter, but the smaller subnet will ge marked dirty first since it is a smaller subner.
Sent from Cisco Technical Support iPad App

Similar Messages

  • Can CSS115XX have 2 service group with different upstream?

    Hi,
      Just to ask if CSS can support the architect that 2 service group with different upstream.
      It seems if I set a default route then I can have only one upstream routing path.
      Thanks.

    you can configure mulitple gateway/upstream.
    The CSS by default select the correct route....the one that corresponds to the inbound request.
    So, if request came in from upstream-A the response will be sent through that same upstream.
    This behavior can be modified with the following command :
    CSS11503-2(config)# ip ecmp ?
      address             Choose among alternate paths based on IP addresses
      no-prefer-ingress   Do not prefer the ingress port for the reverse path
                          egress
      roundrobin          Alternate between equal paths in a roundrobin fashion
    CSS11503-2(config)# ip ecmp
    Gilles.

  • Availability Groups with different collations ??

    Hello,
    Is it possible to create several Availability Groups with different collations  ?
    I want to use a common SQL infrastructure for System Center.
    Thank you.
    Jérémy

    Do you mean that two nodes will have different collation? Try to avoid it,one example if your stored procedure uses JOin with a temporary table on the columns that are declared a varchar for example so you would get an error because. A tempdb has a different
    collation as your database has A tempdb gets collation while you install SQL server but you may create your database with different than server has collation.
    Best Regards,Uri Dimant SQL Server MVP,
    http://sqlblog.com/blogs/uri_dimant/
    MS SQL optimization: MS SQL Development and Optimization
    MS SQL Consulting:
    Large scale of database and data cleansing
    Remote DBA Services:
    Improves MS SQL Database Performance
    SQL Server Integration Services:
    Business Intelligence

  • ACS 5.0 having issues with different subnet AAA Clients

    Dear All,
    I am getting weird issue. My ACS 5.0 is in subnet 10.1.1.0/24. All the AAA clients which are in the same subnet can communicate with the ACS but different subnet cannot.
    I have checked the firewall between them, Its allow any any with all services.
    One more thing I have faced today is that now from only one switch (10.1.2.10) can access ACS but switches in the same subnet (10.1.2.0/24) cant access ACS as same previous issue.
    Following are the logs of one switch(10.1.2.10) in different subnet can access ACS :
    Working Switch with Same configuration:
    SW-A#test aaa group tacacs+ test cisco legacy
    Attempting authentication test to server-group tacacs+ using tacacs+
    User was successfully authenticated.
    SW-A#
    *Nov 17 00:05:52.041: AAA: parse name=<no string> idb type=-1 tty=-1
    *Nov 17 00:05:52.041: AAA/MEMORY: create_user (0x1B1FD04) user='test' ruser='NULL' ds0=0 port='' rem_addr='NULL' authen_type=ASCII service=LOGIN priv=1 initial_task_id='0', vrf= (id=0)
    *Nov 17 00:05:52.041: TAC+: send AUTHEN/START packet ver=192 id=3237327729
    *Nov 17 00:05:52.041: TAC+: Using default tacacs server-group "tacacs+" list.
    *Nov 17 00:05:52.041: TAC+: Opening TCP/IP to 10.1.1.2/49 timeout=5
    *Nov 17 00:05:52.041: TAC+: Opened TCP/IP handle 0x1B44D48 to 10.1.1.2/49
    *Nov 17 00:05:52.041: TAC+: 10.1.1.2 (3237327729) AUTHEN/START/LOGIN/ASCII queued
    SW-A#
    *Nov 17 00:05:52.243: TAC+: (3237327729) AUTHEN/START/LOGIN/ASCII processed
    *Nov 17 00:05:52.243: TAC+: ver=192 id=3237327729 received AUTHEN status = GETPASS
    *Nov 17 00:05:52.243: TAC+: send AUTHEN/CONT packet id=3237327729
    *Nov 17 00:05:52.243: TAC+: 10.1.1.2 (3237327729) AUTHEN/CONT queued
    *Nov 17 00:05:52.444: TAC+: (3237327729) AUTHEN/CONT processed
    *Nov 17 00:05:52.444: TAC+: ver=192 id=3237327729 received AUTHEN status = PASS
    *Nov 17 00:05:52.444: AAA/MEMORY: free_user (0x1B1FD04) user='test' ruser='NULL' port='' rem_addr='NULL' authen_type=ASCII service=LOGIN priv=1 vrf= (id=0)
    Logs from the same subnet switch (10.1.2.20) which cannot access ACS:
    SW-B#test aaa group tacacs+ test cisco legacy
    Attempting authentication test to server-group tacacs+ using tacacs+
    No authoritative response from any server.
    SW-B#
    *Oct 20 00:54:12.834: AAA: parse name=<no string> idb type=-1 tty=-1
    *Oct 20 00:54:12.842: AAA/MEMORY: create_user (0x1A6F3F0) user='test' ruser='NULL' ds0=0 port='' rem_addr='NULL' authen_type=ASCII service=LOGIN priv=1 initial_task_id='0', vrf= (id=0)
    *Oct 20 00:54:12.842: TAC+: send AUTHEN/START packet ver=192 id=3281146755
    *Oct 20 00:54:12.842: TAC+: Using default tacacs server-group "tacacs+" list.
    *Oct 20 00:54:12.842: TAC+: Opening TCP/IP to 10.1.1.2/49 timeout=5
    *Oct 20 00:54:12.842: TAC+: Opened TCP/IP handle 0x1B1E888 to 10.1.1.2/49
    *Oct 20 00:54:12.842: TAC+: 10.1.1.2 (3281146755) AUTHEN/START/LOGIN/ASCII queued
    SW-B#
    *Oct 20 00:54:12.943: TAC+: (3281146755) AUTHEN/START/LOGIN/ASCII processed
    *Oct 20 00:54:12.943: TAC+: received bad AUTHEN packet: type = 0, expected 1
    *Oct 20 00:54:12.943: TAC+: Invalid AUTHEN/START/LOGIN/ASCII packet (check keys).
    *Oct 20 00:54:12.943: TAC+: Closing TCP/IP 0x1B1E888 connection to 10.1.1.2/49
    *Oct 20 00:54:12.943: TAC+: Using default tacacs server-group "tacacs+" list.
    *Oct 20 00:54:12.943: AAA/MEMORY: free_user (0x1A6F3F0) user='test' ruser='NULL' port='' rem_addr='NULL' authen_type=ASCII service=LOGIN priv=1 vrf= (id=0)
    Waiting for your responses.
    Regards,
    Anser

    Ok, cool,
    So this usually means that the switch is sourcing the requests from a difernet interface that is configured on the ACS.
    I would guess that the ACS is reporting unknown NAS...
    Can you please use the "ip tacacs source-interface" command to make sure the switch will source the Tacacs+ packets from the interface with the IP address for which you have the ACS configured to?
    HTH,
    Tiago
    If  this helps you and/or answers your question please mark the question as  "answered" and/or rate it, so other users can easily find it.

  • Sonicwall connect with different subnet Mitel VOIP system

    You can add a VLAN sub interface to interface X3, just click the Add Interface button at the button under all the current interfaces you have under Network Interface.Select the Zone you want to assign to this
    Select the VLAN you want to assign to the new interface
    Select the parent Interface (in this case X)Personally I would create a new zone for this(called Mitel VOIP or similar)to allow you to customise your Access rules as they work with zones rather than interfaces. If you setup the interface zone as trusted then the access rules will be automatically setup to allow all traffic in both directions to and from your other trusted zones. If it is setup as an untrusted zone then the traffic should be blocked to all other trusted zones (but I'm not toosure about the other direction - it's been a while since I've setup a sub interface).
    ...

    In my SonicWALL NSA 2400
    at X0 Parent interface LAN IP is 192.168.3.1/24
    X1 interface WAN IP assigned by ISP.
    X2 interface WLAN IP is 192.168.10.1/24
    our all switches are L2 switch.
    192.168.3.1 Network
    connected to running all our workstation, printer, pretty much everything. I
    have different subnet physically different system Using Mitel VOIP phone system
    using 192.168.2.1/24.
    Is there anyway can I set up the VLAN in SonicWALL’s X3 interface and connect
    the cable in X3 interface to the 192.168.2.1/24
    network switch. And can I manage the Mitel system from
    192.168.3.1/24 network connected workstation.
    Any suggestions would be appreciated.
    This topic first appeared in the Spiceworks Community

  • Multiple groups with different permissions on a sharepoint

    Let me start by saying that I am fiarly new to OS X Server. In my school district we are running server 10.3.3, and I am having one heck of a time trying to figure out how to give access to a sharepoint to more than one group, and give them different access ie: the students have the ability to read what is in the folder, but the teachers can put things in there or make changes to the items in there, the main reason we are trying to get this done is for our accounting department. The ladies in the accounting office need to share some documents with the office managers at the different schools, but don't want them accidentally changing them, and we don't want anyone/everyone to be able to access them.
    If there are any free updates available that can fix this I would be willing to download them, but I don't think we have the money to upgrade to 10.4 server.

    As you surmised, all the tools to make this easy are in 10.4 (ACLs, nested groups etc...)
    Since you need a solution that works with 10.3.3, Id try the following:
    A = accounting office users
    B = office mangers
    C = all users in A + all users in B
    Folder 1 is the folder of shared documents.
    Volume 1 is the sharepoint containing Folder 1
    in WGM
    share Volume 1, with Owner: root R/W Group: C R/W Everyone: none
    Set the privs on Folder 1 to Owner: root R/W Group: A R/W Everyone: R
    This allows members of group C to mount the volume , but only the accounting folks (A) can write to the files in Folder 1. All other users (the folks in group B) will only have read access to folder 1. The public at large won't be able to mount the volume in the first place.
    Hope this makes sense
    - Leland

  • Customer and customer group with different credit limit.

    HI All,
    we have customers belonging to a group. Every single Customer of the group must have its own credit limit and the group must have another credit limit too. Example.
    Customer 1: Limit u20AC 100.000
    Customer 2: Limit u20AC 350.000
    Customer 3: Limit u20AC 400.000
    Group 1: Limit u20AC 700.000
    I used the customer hierarchy and now each customer have the high-level customer "10000":
    Group 1 = Customer "10000" (Account Group 0012)
    so Customer 1 + customer 2 + customer 3  limit can not exceed limit group 1 (u20AC 700.000)
    How can fix ?
    Thanks in advance.
    Antonio

    thank you for your reply
    in my system, each customer is paying, but the group 1 no. The credit limit is not shared but different. If CLI1 exceeds its limit, I lock the sales orders, but if an individual does not exceed the limit I have to check the sum of CLI1 CLI2 CLI3 exceeds the limit of u20AC 700,000.
    example:
    CLI1: Limit u20AC 100,000
    CLI1: credit exposure u20AC 55,000
    Group 1: Limit u20AC 700,000
    CLI1 CLI2 CLI3: credit exposure u20AC 670,000
    New Customer Order CLI1: value u20AC 35,000
    The sales order is blocked because it does not exceed the limit CLI1 (100,000 u20AC) but exceeds the limit of a Group (700,000 u20AC)
    Thanks
    Antonio

  • Publishing an iCal group with different options for each calendar

    I work at a University and I've my various functions organized into their own calendar; I've a Office calendar for my office activities, a Class calendar for my class activities, a Club calendar for my club activities, and of course a personal calendar. The personal calendar is not published.
    As a general rule, the folks from each fuction know to go to the calendar I've published for them to keep track of their activities. But they also need to see when I'm available, and for that they need to see my entire calendar.
    They need to see what activity I'm engaged in because some of the time I've blocked out is inflexible - class times for example, or departmental meetings - so they know those times are unavailable; but some of the time I've blocked out is relatively flexible - like when I'm listed as being in the office working on a project.
    I can publish them all as a group, but there is one universal setting as to whether each calendar in the group shows details or not. Is there a way to customize what is shown for each calendar in the group? Basically, I don't want the details of my personal calendar published with the rest, but they need to see that I have that time blocked out for something so they know I'm not available. If I don't publish my personal calendar, gaps show up on the grouped calendar that really is not there - it's not time available for someone to schedule an activity.
    And one other question - is there a setting that preserves the colors of the various calendars when published? Right now they all show up as one color. It would help each group if they could scan the complete calendar for their activities.

    Hi K.
          I don't think it's possible to have those text properties vary in a text-ring, but you might be able to accomplish your goal using a pict-ring - using images of formatted text.  In the example (attached) Paint was used to create the pictures then import them into the pict-ring.  Here Unclebump shows how to use "Draw Text at Point.vi" to create formatted text in a picture control, though, I have no idea how to copy such pictures out of the pictures control!
    Cheers!
    "Inside every large program is a small program struggling to get out." (attributed to Tony Hoare)
    Attachments:
    FormattedTextPicRing.vi ‏14 KB

  • Can i use cisco 2951 cme 9 router to connect different branch location ip phones together with different subnet?

    hi all,
    I want to do VoIP , with cisco 2951 router with cme 9.0. I just want to know can i connect differnt branch  ip phone in differnt subnet in single centralized cme router 2951.
    that is for differnt branch ip phone there is differnt dhcp pool and then interVlan routing or as such.
    i have already done it for 1 location ,can i uses that single router to connect there all branch office?
    thank you
    regards,
    vishakha

    Yes that works. The phones get an IP from the local site with the info where to reach the TFTP-Server (which is typically the CME). From there the phones load a config file and learn the IP of the CME. The rest is pure routing from the phone to the CME.
    I don't know where marin and thana is, just make sure that the delay and jitter between the sites is inside an accepted range of < 150ms (latency) and < 30 ms (jitter).
    Don't stop after you've improved your network! Improve the world by lending money to the working poor:
    http://www.kiva.org/invitedby/karsteni

  • Two Interface implementation with different signatures

    Hallo,
    I'm searching a solution for the following problem:
    I have an Interface which has to have the following methods names:
    deleteObject()
    moveObject()
    and besides that I must have to classes which implements this interface, but because of the nature of the programm these classes have the following signatures:
    class 1.
    public static boolean deleteObject(File objectToDelete)
    public static boolean moveObject(File srcObjectPath, File dstObjectPath, SVNRevision revision, boolean isRename)
    class 2.
    public void moveObject(Folder rFolder, FSObject rFSObject)
    public void deleteObject(FSObject rFSObject) but unfortunately I cant see how to solve this problem, bearing in mind that that the signatures of the methods of the second class cant be manipulated, the signatures of the first one are flexible?
    Thanks in advance
    Christian Rosenfeld

    well, the story is like that: I have finished my master thesis which includes programming. This thesis contributes to an already existing big project.
    The original implementation of the integrated file browser has the follwoing methods:
    public void moveObject(Folder rFolder, FSObject rFSObject)
    public void deleteObject(FSObject rFSObject)My implementation which is a total new implementation of the file browser, which also has version control, must have same named methds (deleteObject, moveObject). Now because of the nature of the programm that I have implemented, these methods have the following signatures:
    public static boolean deleteObject(File objectToDelete)
    public static boolean moveObject(File srcObjectPath, File dstObjectPath, SVNRevision revision, boolean isRename)Now for some reason that I dont really understand, the subervisor is asking about an interface which will allow him to choose between the two implementations, like:
    interface FileOperations{
          moveObject(...);
          deleteObject(...);
    }but what shall the signatures of the interface be? supposing that the signatures of my methods can be manipulated, ist possible to find a suitable interface?
    Christian
    Edited by: ChristianRosenfeld on Sep 22, 2008 1:57 AM

  • Different Groups with different rights possible on same Datasync1.2.4

    Hi,
    is it possible to configure datasync for one group syncing all mail and appointments and for an other group only syncing appointments?
    Do I have to setup two datasync servers, or could this be solved by an additional connector?
    Markus

    sorry wrong forum

  • WRV200 IPSEC VPN to a remote site with 2 different subnets

    Hi,
    My old WRV54G had no problem with this! I'm trying to connect an IPSEC tunnel back to a router at my main office, there are two Subnets there 192.168.0.0/24 and 10.171.131.0/24. In my old router I would set up two tunnels to the same gateway with different subnets and everything would work fine.
    When I do this with the WRV200 both tunnels come up but in the view of the VPN status they both have the remote network listed as 192.168.0.0 /24 and I can't seem to get them both to work. If I delete the 192.168.0.0/24 tunnel (tunnel #A) and just use the tunnel#B I can connect to the 10 network.
    Anyone been able to get this working?

    Hi,
    Ok, so the first thing you will have to think about is the encryption domain of the existing L2L VPN. Since your aim is to publish a Web server from another site through a L2L VPN connections you have to consider what the source addresses for the Web server connections can be?
    It might be that you would need to have the source address for the L2L VPN in DC1 as "any" and naturally on DC2 the destination would be "any".
    Though in that case it would probably cause problems if the Web server would need to use the DC2 Internet connections for something. This is because we would have now defined that traffic from the Web server to "any" destination IP address should be tunneled to the L2L VPN.
    One other option might be that you actually configure DC1 site so that all incoming traffic from the Internet towards the 111.111.111.111 will have their source address translated to a single IP address (to be decided) before entering the L2L VPN. This would eliminate the need to use the "any" in the L2L VPN configurations because the Web server would see all connections come from a single IP address and therefore would not cause problems for the DC2 Web server IF it needs to access or be accessed through the local DC2 Internet connection.
    Judging by your examples it would seem that you are using a 8.2 or older software level. Would you be willing to share some current configurations (with masked public IP addresses) or should I just give you some example configurations?
    Most important ones would naturally be current NAT configurations and configuration related to the L2L VPN connection.
    - Jouni

  • WiSM interface vlan requirement

    Can anyone tell me why the AP-Manager and Management interfaces have to be on the same VLAN? I'm probably missing something about WiSM operations but if I'd appreciate the input.
    thanks
    js

    That is the only supported way. Any other way will not work. This goes for any WLC configuration and not just the WiSM. The management interface so you can manange the wlc it is aslo the defaut interface used when an ap first joins the wlc and then the ap-manager is used for the lwapp tunnel. If you have the management and ap-manager interfaces on a different subnet, then you will see a vlan mismatch on the switch. Also it is important to note that both these interfaces need to be native vlan on the trunk port.

  • Essbase cannot union mutliple groups with Essbase filter

    Hi All,
    I got a problem to provisioning on Shared Service.
    In some case, I need to grant multiple filters to a Essbase users, say user01.
    However, each user can associated one Essbase filter only.
    For better management, I create multiple groups with different filters and assign the user, user01, into the groups.
    For first two groups are working normally. However, Essbase cannot "union" all filters from multiple groups after the users join the third groups.
    However, I try to combine the three filter into a filter with three rows. It is working!!!
    It is because there are large number of users in external LDAP. It is unmanageable when combining multiple filters into a filters. Is there any way to solve this problem? or is there any better approach to do the security ?
    Thanks in advance!!!
    Regards,
    TKC

    Thanks for your reply.
    I have following structure in Essbase. I try to make it simple to understand.
    Dept (dimension)
    |_C00
    |_CTTL
    |_C01
    |_C02
    Project (dimension)
    |_GEN
    |_P01
    |_P02
    |_P03
    |_PI
    |_A
    |_P01 (shared member)
    |_B
    |_P02 (shared member)
    |_P03 (shared member)
    Group A with Filter F01
    Read - CTTL, IDESCENDENT(A)
    Group B with Filter F02
    Read - C01, P01, P02
    User joins A and B group.
    The end result of user is that
    he can access CTTL of P01 only
    he can access C01 of P01 and P02 only
    he cannot access C02 of any Project dimension
    he cannot access CTTL of P03
    However, I found that when I change to metaread. The result is going wrong.
    he can access C01 of P01, P02 and P03 only.
    It is because I need to block user to view members which he cannot access.
    I need "metaread" function.
    So somebody tell me how to achieve this? Thanks in advance.
    Edited by: user070322 on Jan 4, 2009 8:37 PM
    Edited by: user070322 on Jan 5, 2009 6:04 PM

  • Hunt Group with Pots lines in Call Manager

    Hello all.  I have a site with 12 Pots lines.  It is all configured via Call Manager.  We are using mgcp.  I asked the telco to setup the numbers to hunt which they said they did but still when I call the main number second time it just rings and eventually get some voicemail that is not from the call manager.  I think I need to setup Hunting in the Call Manager?  Is that correct?
    Line Group --> Add the extensions in here and set them up to hunt?
    Hunt List --> Create a Hunt list and associate a Line Group with it?
    Hunt Pilot --> I add all the extensions in here?

    Let's take one step back. What are you trying to accomplish? I am assuming you want to market one number but have the ability to accept multiple calls on that number. If that is the case, having the telco set up a hunt is the way to go.
    Beyond that, where do you want those calls from the PSTN to route? Are you wanting those calls to ring a hunt group on your side? If so, you will need to do the following:
         1. Configure a Line group. (Call Routing -> Route/Hunt -> Line Group) This is where you will be adding the extensions. You will also need to specify a distribution algorithm. The distribution algorith, is where you will be choosing how you want the extensions to ring. For instance, if you set the DA to broadcast, every extension in the line group will ring at the same time. Click Help --> this page, while you are in the line group configuration page to get more information about the settings you can modify and different algorithms you can use.
         2. Configure a Hunt List. (Call Routing -> Route/Hunt -> Hunt List) You will need to create a new Hunt List and add your line group to it. The hunt list is evaluated in a top down fashion. You can get pretty tricky with multiple line groups with different distribution algorithms in your hunt list, but if you just want something basic,just add the line group you made.
         3. Configure the Hunt Pilot. (Call Routing -> Route/Hunt -> Hunt Pilot) The hunt pilot will be the dialed number that triggers the hunt group. Make sure you select all the required settings. You will be selecting the hunt list you just made in this configuration page. Be sure to set a maximum hunt timer and final destination so that the calls do not just ring forever. You can get pretty granular with the settings in here. Reference the help --> this page document for more information.
         4. POINT THE FXO PORTS TO THE HUNT PILOT. This is very important. Calls to your analog lines will not trigger the hunt group unless you point the ports to the Hunt Pilot. If you are using MGCP/SCCP you will need to enter the hunt pilot in the "Attendant DN" field for EVERY FXO port. If you do not enter a value here, CUCM will have no idea what to do when the port rings. It will not answer the call if there is no value specified. This would explain why your calls were ending up with the telco voicemail service; CUCM was never answering the call.
    If you completed the above steps correctly, you should be able to call the main number multiple times and have the calls go to a hunt group on your side, no matter which line the call ends up coming in on.
    Let me know if you have any questions, this can be kind of tricky at first.
    PS, if the calls were going to a voicemail that wasn't from Call Manager (Unity Connection) call the telco and have them remove voicemail service from the lines, assuming you have configured Unity Connection to handle that.
    Hope this helps,
    Dallan

Maybe you are looking for

  • Internal dvd drive no longer plays idvd burned projects

    My internal dvd drive has been acting strange lately. It will play mass produced dvds but does not play my idvd projects, which it used to do. Anyone know if cleaning will help? If so, can you recommend a cleaner for an imac dvd drive? If cleaning wo

  • Transaction Variant and Screen Variant

    Hi I have created a transaction variant ZTX for transaction TX. The First screen of transaction ZTX IS Screen 0100 for example. The Screen variant is ZSVAR and only for the first screen of the transaction variant ZTX, which is created when creating t

  • Adobe Flash to develop apps for iOS

    Hi.  Is anyone using Adobe Flash CS5 or CS5.5 to develop applications for the iOS operating system?  I'd love to hear of your experiences, particularly with regards to getting the applications onto your devices once they have been published. Thanks.

  • Need to reinstall Photoshop cs5 for mac

    Where can I go to download Photoshop cs5 for mac, I have lost the disk

  • Downloads different file type.

    I'm downloading Word documents, from email for example, and they are being saved to hard drive as application files. Jeopardy files to be exact, a program I have for Classroom Jeopardy. Help????