Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,I am getting a very wierd issue over a VPN:Headend: ASA5510 Encrypted networks: 172.21.160.0/24172.21.161.0/24172.21.190.0/24Remote: 3560-X(originally I had it as any network as I wanted to get all traffic outbound from the remote site to come thr...
Hi Guys,I have upgraded a2 X ASR 9001 routers from 4.3.1 to 5.1.0, everything seems to be ok but they are not in production so haven 't had a propoer test.My concern is that I am getting the below erro whenever I boot them:RP/0/RSP0/CPU0:Sep 24 14:49...
Hi guys,On the ASR 9001 do we have integrated eboc ports that are seperate to the 4 X 10GE ports?Also, do we have to use 2 inter-rack links? I have all 4 of my 10GE ports allocated and I was aware of the 2 eobc ports but didn't know i needed the inte...
Hello,I am trying to sort out a HSRP solution.We have two routers that each have their own WAN connection, both receive a default route through EBGP.On the internal interface we configure HSRP - we used to track through IPSLA but now the liscenes hav...
Hi everyone,I am wondering what IP addresses to give to my management vlan on the switches in my network?I have 3 LAN's but I think getting a result for one can probbably apply to the other 2.There are 8 or so switches, some of the access layer switc...
Thanks a lot for your reply, unfiortunately I don't have access to the kit right now but as I said phase 1 is up so that's what sh crypto isakmp will show and phase 2 is up for each subnet, I can see decaps and encaps on both ends.In regards to NAT -...
Dumpster,If you are adding a sVLAN on your edge switches then yes all traffic that arrives at your PE will have at least the sVLAN tag on it.I believe the reason that STP is working is because these packets are tagged with the cVLAN (and the sVLAN as...
Thanks a lot for your reply, do you know if you can port channel the mgmt ports + 1 X 10 GE link for IRL?I know this wouldn't be great but it would be temporary until I could get some modules!!
You will probably get away with using VTI's or GRE based IPsec tunnels and then running a routing protocol over it, if one of the ipsec tunnels is down then there won't be any routes over that tunnel, leaving the route down the 'other tunnel'.Try lo...