collapse

Search


User Info

 
 
Welcome, Guest. Please login or register.
Did you miss your activation email?

Show Posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.


Topics - adecisco

Pages: [1] 2
1
Security / CISCO ISE with Local Web Authentication
« on: June 19, 2015, 12:58:44 AM »
Hi there is there any video on Local Web Authentication (LWA) on switch rather than WLC I can watch. Or if you have valid documentation link it will be appreciated.

Thanks,

2
Voice (Collaboration) / Call conferencing
« on: October 25, 2014, 01:56:41 PM »
Which of Cisco phone support up to 10 conference call. And how can one ensure a single phone can accept 10 calls from external (E1) line to a single conferencing phone..

Thanks,

3
Other / HUAWEI hardware to Cisco hardware conversion.
« on: September 05, 2014, 04:01:25 AM »
Anybody have idea about how to go about the conversion huawei to cisco hardware?

Thanks,

4
Routing and Switching / AToM not passing traffic even with vc up.
« on: July 09, 2014, 06:43:40 AM »
Dear Community member,

I need you to assist to suggest possible reason for the following issues in the attached diagram.

1. IGP is OSPF

2. mpls is enable across the network.

3. reachability is confirm between the two end cisco router where AToM config is turn on.

4. The environment is mixture of cisco router and mikrotic as depicted in the diagram.

The following are the show command I got but could not find what may be the possible issues with the setup...

=======================================

RT_ATOM_1#ping mpls pseudowire 172.27.11.254 10 reply mode router-alert
Sending 5, 100-byte MPLS Echos to 172.27.11.254,
     timeout is 2 seconds, send interval is 0 msec:

Codes: '!' - success, 'Q' - request not sent, '.' - timeout,
  'L' - labeled output interface, 'B' - unlabeled output interface,
  'D' - DS Map mismatch, 'F' - no FEC mapping, 'f' - FEC mismatch,
  'M' - malformed request, 'm' - unsupported tlvs, 'N' - no label entry,
  'P' - no rx intf label prot, 'p' - premature termination of LSP,
  'R' - transit router, 'I' - unknown upstream index,
  'X' - unknown return code, 'x' - return code 0

Type escape sequence to abort.

*Jul  9 10:22:23.227: ATOM-disposition: incoming tag 117441733 in Fa0/0, size 108, packet dropped, Inband Control packet dropped.
*Jul  9 10:22:25.103: ATOM-disposition: incoming tag 117441733 in Fa0/0, size 108, packet dropped, Inband Control packet dropped.
*Jul  9 10:22:27.071: ATOM-disposition: incoming tag 117441733 in Fa0/0, size 108, packet dropped, Inband Control packet dropped.
*Jul  9 10:22:28.939: ATOM-disposition: incoming tag 117441733 in Fa0/0, size 108, packet dropped, Inband Control packet dropped.
*Jul  9 10:22:30.927: ATOM-disposition: incoming tag 117441733 in Fa0/0, size 108, packet dropped, Inband Control packet dropped.
Success rate is 0 percent (0/5)

=======================================================================
RT_ATOM_1#sho mpls l2transport vc 10 detail
Local interface: Fa8 up, line protocol up, Ethernet up
  Destination address: 172.27.11.254, VC ID: 10, VC status: up
    Output interface: Gi0, imposed label stack {142090 1221}
    Preferred path: not configured
    Default path: active
    Next hop: 172.27.1.1
  Create time: 00:25:32, last status change time: 00:19:08
  Signaling protocol: LDP, peer 172.27.11.254:0 up
    Targeted Hello: 172.27.11.252(LDP Id) -> 172.27.11.254
    Status TLV support (local/remote)   : enabled/not supported
      Label/status state machine        : established, LruRru
      Last local dataplane   status rcvd: no fault
      Last local SSS circuit status rcvd: no fault
      Last local SSS circuit status sent: no fault
      Last local  LDP TLV    status sent: no fault
      Last remote LDP TLV    status rcvd: not sent
    MPLS VC labels: local 1223, remote 1221
    Group ID: local 0, remote 0
    MTU: local 1500, remote 1500
    Remote interface description:
  Sequencing: receive disabled, send disabled
  VC statistics:
    packet totals: receive 0, send 4318
    byte totals:   receive 0, send 474880
    packet drops:  receive 0, seq error 0, send 0
=============================================================================
RT_ATOM_1#sho mpls l2transport binding
  Destination Address: 172.27.11.254,  VC ID: 10
    Local Label:  1223
        Cbit: 1,    VC Type: Ethernet,    GroupID: 0
        MTU: 1500,   Interface Desc: n/a
        VCCV: CC Type: CW [1], RA [2]
              CV Type: LSPV [2]
    Remote Label: 1221
        Cbit: 1,    VC Type: Ethernet,    GroupID: 0
        MTU: 1500,   Interface Desc: n/a
        VCCV: CC Type: CW [1], RA [2]
              CV Type: LSPV [2]
===========================================================================

RT_ATOM_1#sho mpls forwarding-table | i l2
1223       No Label   l2ckt(10)        0             Fa8        point2point

===========================================================================

RT_ATOM_2#sho mpls l2transport vc 10 detail
Local interface: Fa0/1 up, line protocol up, Ethernet up
  Destination address: 172.27.11.252, VC ID: 10, VC status: up
    Next hop: 172.27.14.25
    Output interface: Fa0/0, imposed label stack {550 1223}
  Create time: 00:11:53, last status change time: 00:08:18
  Signaling protocol: LDP, peer 172.27.11.252:0 up
    MPLS VC labels: local 1221, remote 1223
    Group ID: local 0, remote 0
    MTU: local 1500, remote 1500
    Remote interface description:
  Sequencing: receive disabled, send disabled
  VC statistics:
    packet totals: receive 2446, send 1553
    byte totals:   receive 224196, send 213523
    packet drops:  receive 15, seq error 0, send 0

==============================================================

RT_ATOM_1#sho mpls l2transport binding 10
  Destination Address: 172.27.11.254,  VC ID: 10
    Local Label:  1223
        Cbit: 1,    VC Type: Ethernet,    GroupID: 0
        MTU: 1500,   Interface Desc: n/a
        VCCV: CC Type: CW [1], RA [2]
              CV Type: LSPV [2]
    Remote Label: 1221
        Cbit: 1,    VC Type: Ethernet,    GroupID: 0
        MTU: 1500,   Interface Desc: n/a
        VCCV: CC Type: CW [1], RA [2]
              CV Type: LSPV [2]
yourname#
=====================================================
RT_ATOM_2#sho mpls l2transport binding 10
  Destination Address: 172.27.11.252,  VC ID: 10
    Local Label:  1221
        Cbit: 1,    VC Type: Ethernet,    GroupID: 0
        MTU: 1500,   Interface Desc: n/a
        VCCV: CC Type: CW [1], RA [2]
              CV Type: LSPV [2]
    Remote Label: 1223
        Cbit: 1,    VC Type: Ethernet,    GroupID: 0
        MTU: 1500,   Interface Desc: n/a
        VCCV: CC Type: CW [1], RA [2]
              CV Type: LSPV [2]

===========================================================

Looking at output of command sho mpls l2transport vc 10 detail it can be observed that ATOM_2 is sending and receiving packet but that is not the case for ATOM_1

What could be wrong with this scenario?

Your input will be appreciated.

Regards,

5
Security / INVALID SWITCH CONFIG-NAC AGENT LOG
« on: May 19, 2014, 07:15:39 PM »
Dear Team,

What can be made of this issues. You input will be appreciated.

Regards,

6
Security / EMPTY DASHBOARD
« on: April 22, 2014, 09:35:01 AM »
Has anyone experience a scenario where primary admin node dashboard was empty? What could be the cause? For your info the deployment is still working fine? Could it be that the information is purge by ISE?

7
Security / dhcp issues with wlc and ISE
« on: April 07, 2014, 07:11:28 AM »
Hi All,

What can go wrong with endpoint to getting dhcp via wlc?

To troubleshoot we remove radius server from ssid so that it can use open authentication.

But when ISE as radius server is configure it authenticate and authorize well but the endpoint will not get ip address.

Any help would be appreciated.

8
Routing and Switching / MTU MANIPULATION ISSUES NEED YOUR GUIDE
« on: March 21, 2014, 06:21:42 AM »
Hi there,

I am simulating an MPLS environment in other to understand how one can allowed desire MTU not to defragment.

From my topology R1 and R8 are CE and want to send minimum MTU size of 1600. Between interface MTU and IP MTU and MPLS mtu I am wondering how the manipulation can be done.

Thanks in advance.

9
Security / Custom Agent customization package
« on: March 10, 2014, 12:25:04 AM »
Hi there,

I have been trying to build a custom agent customization package for my client but most on the one I build cannot be uploaded by ise.

Anyone there has working agent customization I can use?

Your help will be appreciated.

Thanks,

10
Security / POLICY SET USE
« on: December 15, 2013, 10:40:31 PM »
Has anybody use policy set feature for multiple policy set configuration. Your experience will be highly appreciated as I am having a strange behavior in the setup.

Kindly share your thought.

11
Security / AGENT CUSTOMIZATION PACKAGE
« on: December 06, 2013, 02:21:59 AM »
Can any help with working agent customization package. The one I package displace the error in the attached.

I will appreciate if anyone can share one please.

"what is xml descriptor file missing in zip file"

Regards,

12
CCIE / CCIE RnS v5 IS FINALLY HERE
« on: December 04, 2013, 03:32:58 AM »
The anticipated track change is finally announced you can look them up here:


You are not allowed to view links. Register or Login

13
Security / AND THE CONFIG IS COMPLETED
« on: December 02, 2013, 02:16:55 AM »
The project so far is that the configuration is completed. Moving to phase of rolling out.

The earlier issues is solved WSUS is now working fine and Window update remediation is work perfectly well.

I am available for anybody who need answer question and clarifications if you are deploying the same.

14
Security / ISE PROJECT SO FAR
« on: November 28, 2013, 11:35:36 PM »
So far we keep moving forward on the project. Wired and guest services policies configuration are completed. Wireless in the roadmap as there are no wireless infrastructure.

But here is the current issues with WSUS remediation. DACL permitted WSUS server and remediation is meant to be automatic but NAC agent reports can't reach WSUS.

Further troubleshooting show ISE can reach WSUS. A pointer or client will be of help..

Thanks.

15
Security / DAY 3 OF ISE PROJECT
« on: November 26, 2013, 12:32:40 AM »
It's not quite eventful but had enough time to try out how one of the new feature of ISE; setup assistance works. After trying out how it will work I was able with hoping to leverage on it.

After running it everything was ok but auto can never replace custom. It can be right to say that setup wizard primary purpose is for demonstration at Proof of Concept, but another good thing about what I got is the way the setup assistance pull all the policy server addresses and ensure there were reference in acl created. The feature is quite good.

From the output I got I can now further modify it to suit  my need. I think this should may make a list in tips for faster deployment.

Day 3 quite finish with some mini configuration to test out how setup assistance will perform and some test were conducted. Hope to continue from there on DAY 4..

Pages: [1] 2
SimplePortal 2.3.5 © 2008-2012, SimplePortal