Actually it did happen to our DC in early january that N5K-A has all the 32 ports down and we rebooted that unit to restore it. The peer keepalive link is working because it is using the mgmt interface. therefore N5K-B will shut down all its PO ports assuming N5K-A will function as the brain, but as all the ports are down.. none of the traffic are being forwarded.
... View more
Hi, I am some questions in relation to (https://supportforums.cisco.com/thread/2230776) I have a pair of n5K (A & B) running vpc with VPC Portchannel (e.g 10) uplink to core switches running VSS. my downstream VPC Portchannels (e.g 20) to servers/enclosures. and a VPC peer link Po30 between both. And lastly peer keepalive link over the mgmt0 interface. A is vpc role primary and B is secondary. i wanna ask, in the event of all port channels fail on n5k-A, the 32 ports module on the n5k fail, meaning the uplink to core and downstream links to ensclosure are down.. BUT the mgmt0 link is UP and Running because it is not a same module... What will/should happen? Base on my testing, B will not take over because peer keepalive link is up, it will suspend all its vpc ports assuming A will be Active... but in reality, A ports all fail and VPC will not work. How should i protect against this? I also tried use object tracking on A only, track on all uplink port-channel and downstream portchannel, it does failover to B OK with above simulation, but when i manual no shut the Port channels on A -- Simulating the ports recovered, the continuous ping-test to the enclosure Failed.. Only after a reboot of B, it will normalize everything. Before normalize, the B is showing vpc role secondary, opration primary. vice-versa for A showing operation secondary hope someone can share some insight on this
... View more
Hi Paolo, so what i need to do are: 1) ask the local loop provider to change the 3 x NTU settings f rom unframed to Framed. 2) ask the PE router provider to configure their 3 x G703 cards to use timeslots as well. doing the above at least can get my circuits up and running with 3 x 1984kbps combine. am i right?
... View more
Hi All, i bought the wrong interface cards vwic3-1mft-e1/t1 and it is not working when my vendor trying to set it up. Need some advise from you guys, if it is possible to configure the e1/t1 card to run on this g703 unframe link? understand the con will be 1984kbps instead of full 2048kbps. Thanks in advance.
... View more
I see. ok thanks. that means i can only make it points to one of the WLC in either US or EU datacenter. if lets say i point it to US datacenter.. and i have a pair of WLC in the DMZ, since i can only point to one of it, is it redundant to have a pair in the DMZ?
... View more
Hi George, Thanks for the reply. what you mentioned is after the AP connected to the WLC (the public IP configure on the AP during the initial setup). what i wish to achieve is something before that, that is to say if the AP fails to connect to the 1st public IP of WLC in US Data Center, it will attempt the 2nd public IP of WLC in EU Data Center.
... View more
Hi all, may i ask if the AP is able to configure 2 public ip address of the DMZ-WLCs? like ip 1.1.1.1 in my US data center, whereas a second ip 2.2.2.2 in my EU data center?
... View more
Hi Gurus, I have a question regarding the use of distribute list out to only advertise deafult route to certain eigrp neighbor. Current Scenario: i have 3 routers sitting in a same vlan1 on the switch running eigrp. Name them A, B & C. I need to advertise to C from A just default route only while keeping same to B. i cant just use distribute-list out interface as literally all 3 of them in the same vlan interface. i read that distribute-list gateway can helps in restricting to certain neighbor, but it mentions only work for incoming advertisement. For info, i do not have access/control of router C. what's the best way for me to achieve this on router A. Thankyou
... View more
Hi All, not sure if you guys encounter this, my environment is using FAC to control IDD calls. It works perfectly on my desk phone, but on my mobile 8.1, it's not working. when i try to dial to overseas number, it wouldnt prompt me for the FAC code and it will just "call failed" after a while. May i know if there are any solution to this?
... View more
Hi All, I have attached a current setup for my new site. im pretty new in QoS settings, so need some advise of the config to be set. Basically, i have enable "Auto QoS" on the access switchports connecting to CISCO IP phones. But i need advise on what are the QoS settings to be configure for the following interfaces. 1) I'm running port channel between Access 1 n 2, same for Core 1 n Access 1, vice versa. I cant configure auto qos on etherchannel port, therefore what will be the preferred setup? Based on what i have read, i will only need this 2 config.. Am i right? A) mls QOS B) on the etherchannel interface "mls qos trust cos" or "mls qos trust dscp" 2) Between the Core switches and the firewall will be layer 3, therefore i am assuming these 2 config settings will be needed on core switches. Am i right? A) mls QoS B) since it's layer 3, "mls qos trust dscp" 3) There are some questions i would like to ask.. A) Auto-Qos will mark the packets as DSCP or COS? from the generated config, i see only "mls qos trust cos" B) Since there will be layer 3 involve when accessing to MPLS cloud, should i just stick with "mls qos trust dscp" be it layer 2 or layer 3 interfaces? (including port-channel - Qustion 1B) 4) Im using checkpoint firewall, for now, there isnt any QOS settings. so im just preparing the interface connecting between Core - Firewall by enabling "mls qos trust dscp".. Will the MPLS routers receive the packets with the correct marking? will it be reset by the firewall? Thanks in advance for my long-winded thread
... View more
Hi All, need some help on this. on the ASDM, im unable to view the those RDP uploaded (RDP) thus unable to create bookmark items with RDP:// url types. Those previous bookmarks i have created are still working fine, therefore i'm sure that RDP is working properly but JUST not showing on the ASDM and allowing me to configure it. But if i use the method of export and import bookmarks, i can still create the rdp entry inside the xml file and upload to the firewall.. It works fine too. fyi. my ASDM is 6.31 ASA 8.04 JRE 1.6 u7 (i have uninstalled my java 1.6u17)
... View more
Hi Folks, Just like to clarify on something, i heard that when we perform write mem on the ASA/PIX. the current TCP sessions that passes through the firewalls will be dropped or terminated. Is that true/myth? TIA
... View more
Thanks for the clarification on these terms. I notice that my firewall A is using CSD but firewall B is not. will the restoring of config from A with CSD on B cause any conflict? Correction: I see that i can choose not to backup CSD config.. Just DAP alone. but may i ask, Bookmarks fall into which category?
... View more