HWIC-4t 1/e1

I have a questions my router 2911 programming with a map hwic-4t 1/e1 for three bonded t1 with ppp.

The router and the Hwic are fresh out of the box. I have a very simple setup. I have 3 lines leased t1 bonded through AT & T to Time Warner Telecom router using xxx.xxx.xxx.x45 at their end and xxx.xxx.xxx.x46 for my dissertation.

I installed the Hwic and then did these activation orders and to set up to work with them as I was told:

(Basic...)

> activate

#config t

main g) #hostname

g) #no ip domain-lookup

(SSH...)

password g) #username

main.com g domain name) #ip

generate g) #crypto rsa key

g) #512

g) #ip ssh worm 2

g) #line vty 0 5

local line) #login

line) #transport of entry ssh

line) #exit

(install hwic)

#card g) type t1

g) #network - clock - participate wic 0

(config hwic controllers)

g) #controller T1 0/0/0

er) #faming ESF

B8ZS er) #linecode

er) #Fdl att

er source line) #clock

ESF distance line er) #loopback

#cablelength er) short-110

er) #crc - threshold 320

detection of er) yellow #no

er) #exit (repeated for 0/0/1 and 0/0/2)

(internal interfaces)

g) #int g0/0

f) #ip address 10.0.0.254 255.25.255.0

f stop) #no

(Destination of last resort)

g) #ip route 0.0.0.0 0.0.0.0 xxx.xxx.xxx.x45

(multilink ppp Panel)

g) #int 1 multilink Panel

f) #ip add xxx.xxx.xxx.x46 255.255.255.252 (I get an error saying here that it overlaps a static route in the routing table). (so it does not accept it)

f) #no cdp enable

f) #ppp multilink Panel

multilink Panel group f) #ppp 1

f) #exit

(Adding interfaces to a Multilink Group 1)

g) #int T1 0/0/0 (I get an error saying here an entry not valid 1 0 0/0/0) (so I tried 'int T1?' and all I get isthen I tried "interface?" to see all possible interfaces and all I get are:

Async, Auto-modele, BVI, CDMA-Ix, CTunnel, Dialer, Embedded-service-engine, GigE, group async, LongReachEthernet, looping, LIM, Multilink, Null, Port Channel, Tunnel, KEEN, Pseudowire virtual-PPP, model-Virtual, virtual-TokenrRing, vmi range

-At this point I don't know what to do? I had expected:

g) #int T1 0/0/0

f) #no ip address

f) #encap PPP

f) #no fair-queue

f) #ppp multilink Panel

multilink Panel group f) #ppp 1

f) #exit

(repeated for 0/0/1 and 2/0/0, but obviously if I can't do it in the configuration interface, I can't put these commands)

-So I went NAT...

g) #access - list 5 permit 10.0.0.0 0.0.0.255

g) #ip nat inside interface 5 source T1 0/0/0 overload list (obviously it did not work, so I tried 'ip nat inside source list 5 interface t1 overload')

-He took but I think it has something to do with? tunnel? (I do not really understand the tunnels)

g) #int g0/0

f) #ip nat inside

f) #exit

g) #int T1 0/0/0 (even once did not work so I used "int T1" and it took)

f) #ip nat outside

# exit f)

In each controller interface add "hours of channel-group 0 1 - 24.

This will create serials. Configure each of
No ip addr
ENCAP PPP
Multilink PPP
Multilink PPP 1 Panel group

On int 1 multilink Panel Add your IP address, multilink PPP and multilink ppp Group 1 Panel

Sent by Cisco Support technique iPad App

Tags: Cisco Network

Similar Questions

  • HWIC-AP

    Hi all.

    I have an HWIC-AP on a configured 2801 like this:

    interface Dot11Radio0/3/0

    10.1.2.1 IP address 255.255.255.0

    no ip-cache cef route

    no ip route cache

    !

    SSID ordered

    open authentication

    Comments-mode

    !

    base speed - 1.0 2.0 basic basic-5, 5 6.0 9.0 basic-11, 0 12.0 18.0 24.0 36.0 48.0 54.0

    root of station-role

    And the DHCP server looks like this:

    dhcp WLAN IP pool

    Network 10.1.2.0 255.255.255.0

    10.1.2.1 - default router

    Server DNS XXX XXX

    A wireless client can successfully connect to the radio and gets an IP address from the pool, but cannot access the internet or other local networks VIRTUAL resources. Wireless devices must be in their own subnet.

    Do I have to configure address?

    Thank you for any help or examples.

    Marc

    Hosts on other VLANs can talk to each other (i.e., VLAN-to-VLAN)?

    Can other guests out to the Internet ok?

    It would help if you could post your complete (sterilized) config.

    If you configure bridging inter - vlan, it is almost the same as not no VLANS at all... VLAN is to separate broadcast domains, the bridges connect / join / merge broadcast domains.

    This looks like a thing of routing or addressing. OR you may need to associate the group with one of the routed interfaces wireless bridge.

    You may also at your disposal for configuration GUI... try aiming a browser on the router and see options to come.

    Post your configs.

    Good luck

    Scott

  • HWIC-AP more Call Manager Express?

    It took me some time and many transfers of tftp to finally find an IOS which works very well with the HWIC-AP (wireless access point module) for a router in 2801.

    What I was asking: is there an IOS which supports both HWIC-AP and also includes the Call Manager Express (CME)?

    What feautures would you find using the IOS search engine?)

    Thanks for all the ideas.

    Marc

    Use the IOS 12.4 (2) T1 or later to support the CME and HWIC-AP

  • HWIC-AP-AG vs HWIC-AP-G

    Will be the use of one or the other HWIC-APs allow speeds of access connections 108Mbs with a G wireless client?

    Hi Randall,.

    Unfortunately not. The number 108Mbs is the combinaton of 802.11 g and 802. 11 data, and flow with subtraction due to overload, the actual rate is much lower. Take a look;

    Comparison of approximate throughput for 802. 11A, 802. 11B and 802.11 g

    802. 11b data Rate (Mbit/s) = 11 approximate throughput (Mbit/s) = 6

    802.11 g (No 802 11b clients in the cell) Data Rate (Mbit/s) = 54 approximate throughput (Mbit/s) = 22

    802. 11A data Rate (Mbit/s) = 54 approximate throughput (Mbit/s) = 25

    Since this great doc.

    http://www.Cisco.com/en/us/products/HW/wireless/ps430/products_white_paper09186a00801d61a3.shtml

    I hope this helps!

    Rob

  • Cisco 2911 + 3 G-HWIC-HSPA

    Hi guys,.

    I am trying to configure this module first time in my life and ran into a problem.

    When I do it, "display cell security x/x/x ' it keeps reports my SIM status as deleted. I reinstalled several times now, and now I'm starting to think that the micro SIM will not be managed by this module.

    No one knows about it? It is hard to find on google, spent the last hour of some research on it. I could find only this document Cisco:

    Taking SIM card; in accordance with the standard ISO-7816-2 (mechanical SIM)

    And an example configuration would be much appreciated.

    Thanks in advance,

    JI

    You use a correct micro-sim adapter?

  • Problem starting the Cisco 2821 router

    Hello world

    I have cisco 2821 router. I am facing problem starting.

    someone suggest me what is the problem.

    Thanks in advance...

    VERSION of the SOFTWARE system Bootstrap, Version 12.4 (13r) T, (fc1)
    Technical support: http://www.cisco.com/techsupport
    Copyright (c) 2006 by cisco Systems, Inc.

    The ECC memory initialization
    .
    C2821 platform of 262144 KB of main memory
    Main memory is configured for 64-bit with ECC active

    ReadOnly initialized ROMMON
    load complete, point of entry to the program: 0x8000f000, size: 0xcb80
    load complete, point of entry to the program: 0x8000f000, size: 0xcb80

    load complete, point of entry to the program: 0x8000f000, size: 0x26bc2cc
    Decompression of self-image: #.
    ################################################################################
    ################################################################################
    ################################################################################
    ################################################################################
    ################################################################# [OK]

    Smart init is enabled
    Smart init is sizing iomem
    MEMORY_REQ TYPE ID
    0003E8 0X003DA000 C2821 Mainboard
    1A 0X0025178C E3 0001AB
    0X00263F50 VPN on board
    0X000021B8 embedded USB
    Swimming pools public buffer 0X002C29F0
    Swimming pools public particle 0 X 00211000
    TOTAL: 0X00D65284

    If all memory conditions above are
    "UNKNOWN", you could use a non supported
    configuration or there is a software problem and
    the system may be compromised.
    Rounded IOMEM to: 14 MB.
    Using iomem of 5 percent. [14 mb / 256Mb]

    Legend restricted rights

    Use, duplication, or disclosure by the Government is
    subject to such restrictions as set out in paragraph
    (c) Commercial - limited computer software
    The rights to FAR clause 52.227 - 19 and subparagraph s
    (c) (1) (ii) rights to technical and computer data
    Clause of DFARS 252.227 - 7013 section software.

    Cisco Systems, Inc.
    170 West Tasman Drive
    San Jose, California 95134-1706

    Cisco IOS software, 2800 Software (C2800NM-ADVIPSERVICESK9-M), Version 12.4 T7 (9)
    Version of the SOFTWARE (fc3)
    Technical support: http://www.cisco.com/techsupport
    Copyright (c) 1986-2008 by Cisco Systems, Inc.
    Last updated Friday, January 10 08 16:35 by prod_rel_team
    Image text-base: 0x400B1E74 database: 0x434A9AC0

    ERROR detected on Bus PCI1
    Try REINSTALLING all the modules in the system
    pci1_int_cause 0 x 00000240,
    pci1_err_addr 0 x 00091009, pci0_err_cmd 0x0000000A
    PCI Master Read parity error
    Abort target PCI

    R0 = r1 = r2 FFFFFFFF FFFFFFFF = 0 r3 = 45 80000 r4 = 0
    R5 = 303 r6 = 0 A7 = 1 = 0 = 100000 r9 r8
    R10 = 0 r11 = 465E4369 r12 = 0 r13 = 465E436A r14 = 0
    R15 = r16 r17 8 = 0 = C100 r18 = 0 r19 3400 101 =
    R20 = r21 0 = 40096828 r22 = FFFFFFFF r23 = r24 FFFF00FF = 0
    R25 = 469AAC64 r26 = 0 = 469AAC60 r28 = 0 = 469AAC5C r29, r27
    R30 = 0 r31 = 469AAC58 r32 = r33 FFFFFFFF = r34 = FFFFFFFF FFFFFFFF
    R35 = r36 = r37 = r38 = r39 FFFFFFFF FFFFFFFF FFFFFFFF FFFFFFFF = FFFFFFFF
    R40 = FFFFFFFF = FFFFFFFF = FFFFFFFF = FFFFFFFF r44 r43 r42 r41 = FFFFFFFF
    R45 = r46 = r47 = r48 FFFFFFFF FFFFFFFF FFFFFFFF = r49 0 = 469AACD0
    R50 = 0 0 = 0 r53 r51 = r52 = 3040A 801 r54 = FFFFFFFF
    R55, r56 = FFFFFFFF = FFFFFFFF r58 r57 A000F000 = = 0 = 465E4358 r59
    R60 = r61 = r62 FFFFFFFF FFFFFFFF = r63 = 0 402E4B10
    GENS = 3400 103 mdlo_hi = my 0 = 251 00
    mdhi_hi = 0 = 0 badvaddr_hi = FFFFFFFF mdhi
    BadVAddr = cause = epc_hi 0 = FFFFFFFF FFFFFFFF
    EPC = 402E4B08 err_epc_hi = err_epc FFFFFFFF = FFFFFFFF

    ERR-1-FATAL %: interruption of the fatal error, reload
    err_stat = 0 x 0

    = Posts from Flushing (02: 37:51 UTC Wednesday, may 18, 2016) =.

    Messages in queue:

    02:37:51 UTC Wednesday, may 18, 2016: interrupt exception, signal CPU 22, PC = 0 x 0

    --------------------------------------------------------------------
    Software fault possible. On reccurence, you perceive
    crashinfo, 'show tech' and contact Cisco Technical Support.
    --------------------------------------------------------------------

    -Trace =
    $0: 00000000, AT: 00000000, v0: 00000000, v1: 00000000
    A0: 00000000, a1: 00000000, a2: 00000000, a3: 00000000
    T0: 00000000, t1: 00000000, t2: 00000000, t3: 00000000
    T4: 00000000, t5: 00000000, t6: 00000000, t7: 00000000
    s0: 00000000, s1: 00000000, s2: 00000000, s3: 00000000
    S4: 00000000, s5: 00000000, s6: 00000000, s7: 00000000
    T8: 00000000, t9: 00000000, k0: 00000000, k1: 00000000
    GP: 00000000, sp: 00000000, s8: 00000000, ra: 00000000
    EPC: 00000000, ErrorEPC: 00000000, GENS: 00000000
    MY: 00000000, MDHI: 00000000, BadVaddr: 00000000
    CacheErr: 00000000, DErrAddr0: 00000000, DErrAddr1: 00000000
    DATA_START: 0X434A9AC0
    Cause 00000000 (Code 0 x 0): Exception of interruption

    Writing crashinfo in flash: crashinfo_20160518-023752
    No reboot to warm storage
    System received a system error *.
    signal = 0 x 16, code = 0x0, context = 0 x 46905718
    PC = 0x40096d7c, Cause = 0 x 20, State Reg = 0 x 34008002

    Software Cisco IOS, 2800 Software (C2800NM-ADVIPSERVICESK9-M), Version 12.4 (9)T7
    Version of the SOFTWARE (fc3)

    OK, the router is running on a train of "T".

    ERROR detected on Bus PCI1
    Try REINSTALLING all the modules in the system
    pci1_int_cause 0 x 00000240,
    pci1_err_addr 0 x 00091009, pci0_err_cmd 0x0000000A
    PCI Master Read parity error
    Abort target PCI

    Remove any all NM/NME or WIC/HWIC cards and restart again.  If the router is able to start properly, upgrade the router to a higher version.  DO NOT use another "T" train if it is needed.  Use instead a train of "M".

  • WIC T1-1DSU vs VWIC2-1MFT-T1/E1

    Hi all

    I'm looking at a router of production with a VWIC2-1MFT-T1/E1 module, and none of the two parts of the serial p2p connection configurations of clock rate. Now I know, the VWIC2-1MFT-T1/E1, everything is configured under the controller interface. However I don't see any orders as with the WIC-1DSU clock rate. How does this work? Does this mean that there is a CDU/CSU at this place? I'm just used to seeing the WIC-1DSU-T1 more and have not worked with before multiflex modules.

    Thank you

    Hello

    If you have a WIC-1DSU-T1, WIC-1DSU-T1-V2 or HWIC-1DSU-T1, you pass under the clock interface source configuration and type of service-module t1:

    3845_2 (config) #int serial 0/1/0

    3845_2(Config-if) clock t1 source #-service module?

    clock use internal adapter

    clock to recover the line

    You have 2 options here as you can see. Internal provides synchronization and line gets by synchronizing. In a circuit back to back, it is recommended to configure one end as 'internal', while the other is "online". If your provider is in the middle to provide synchronization for both ends, the configuration of the 'line' is recommended, but it depends on the specifications of the circuit. You can use the "show-service module" (don't forget the counters to see compensation costs statistics) command to see if there are synchronizing issues. Basically, you need to focus on the 'Dry' value, this leaflet. If it increases, it is recommended to check if the synchronization is correctly configured. Sometimes you need to get the vendor involved to confirm the right configuration of synchronization, you should have.

    On the other hand, if you have a VWICX-XMFT-T1/E1 you must enter in the configuration of the controller and choose the right configuration of synchronization. It works essentially the same as in a WIC-1DSU-T1 hardware and similar.

    T1 #controller 3845_1 (config) 0/0/0

    3845_1(config-Controller) source of #clock?

    race free Free Running Clock

    Internal clock

    recovered clock line

    "The keyword which indicates a clock of free-running from the oscillator on the motherboard, which is used only for testing and back-to-back connections".

    http://www.Cisco.com/en/us/docs/iOS/12_2/12_2z/12_2zj/feature/guide/gthwecan.html

    To search for statistical use of the "show controllers t1 X/X/X" command and avoid using any command "loopback" so that it would affect the connection because it is used only for testing purposes. I hope this information helps and do not forget to note the useful messages.

    Kind regards.

  • Cisco 877W DHCP does not automatically fill the Windows/Mac customers with DNS server entries

    I have a 877W which was operational on Verizon for about 5 years. It never automatically distributed info DNS server for customers who get DHCP issued IP address. I have to manually enter the DNS entries to each client.  What happened to other sites where I've got installed on AT & T as well as 877 unified communications.

    Here is the config. Thanks in advance for the help.

    Building configuration...

    Current configuration: 7987 bytes
    !
    version 12.4
    no service button
    tcp KeepAlive-component snap-in service
    a tcp-KeepAlive-quick service
    horodateurs service debug datetime localtime show-timezone msec
    Log service timestamps datetime localtime show-timezone msec
    encryption password service
    sequence numbers service
    !
    Cod of hostname
    !
    boot-start-marker
    boot-end-marker
    !
    logging buffered debugging 51200
    recording console critical
    enable secret 5 jSwA $1$ $ 3B5lJNqm0ewh
    !
    AAA new-model
    !
    !
    AAA authentication local-to-remote login
    local remote of the AAA authorization network
    !
    AAA - the id of the joint session
    !
    resources policy
    !
    PCTime-6 timezone clock
    PCTime of summer time clock day April 6, 2003 02:00 October 26, 2003 02:00
    IP subnet zero
    IP cef
    No dhcp use connected vrf ip
    DHCP excluded-address IP 192.168.7.1 192.168.7.19
    DHCP excluded-address IP 192.168.7.70 192.168.7.254
    !
    IP dhcp pool sdm-pool1
    import all
    network 192.168.7.0 255.255.255.0
    router by default - 192.168.7.1
    DNS-server 68.238.96.12 68.238.112.12
    !
    !
    inspect the IP name DEFAULT100 cuseeme
    inspect the IP name DEFAULT100 ftp
    inspect the IP h323 DEFAULT100 name
    inspect the IP icmp DEFAULT100 name
    inspect the IP name DEFAULT100 netshow
    inspect the IP rcmd DEFAULT100 name
    inspect the IP name DEFAULT100 realaudio
    inspect the name DEFAULT100 rtsp IP
    inspect the IP name DEFAULT100 esmtp
    inspect the IP name DEFAULT100 sqlnet
    inspect the name DEFAULT100 streamworks IP
    inspect the name DEFAULT100 tftp IP
    inspect the tcp IP DEFAULT100 name
    inspect the IP udp DEFAULT100 name
    inspect the name DEFAULT100 vdolive IP
    synwait-time of tcp IP 10
    IP domain name cods.com
    name of the IP-server 68.238.96.12
    name of the IP-server 68.238.112.12
    property intellectual ssh time 60
    property intellectual ssh authentication-2 retries
    !
    !
    Crypto pki trustpoint TP-self-signed-437228204
    enrollment selfsigned
    name of the object cn = IOS - Self - signed - certificate - 437228204
    revocation checking no
    rsakeypair TP-self-signed-437228204
    !
    !
    TP-self-signed-437228204 crypto pki certificate chain
    certificate self-signed 01
    30820254 308201BD A0030201 02992101 300 D 0609 2A 864886 F70D0101 04050030
    2 060355 04031325 494F532D 53656 C 66 2 AND 536967 6E65642D 43657274 30312E30
    69666963 34333732 32383230 34301E17 303731 30313632 33333131 0D 6174652D
    395A170D 2E302C06 1325494F 03550403 32303031 30313030 30303030 5A 303031
    532D 5365 6C662D53 69676E65 4365 72746966 69636174 652 3433 37323238 642D
    06092A 86 4886F70D 01010105 32303430 819F300D 00308189 02818100 0003818D
    BF73E16C 24A3FB0B A44C83C8 45ACEC75 163C2F0A 87836F7F A43FEB72 0EF26AFA
    C7F35ED6 CBCC6853 5E82B0A6 1FD8020B F3630023 AB30B870 B3155EE6 86988910
    4ACF5121 1CBFF4DC B705DF1E 5D0D698F 06493 D 3DD8D036 42 FE450D21 E26A4DAF
    CE6BA806 81A9F451 0246698E DA7B49E3 160F115C E1104FA9 31FA3C15 CD 782 279
    02030100 01A37E30 7C300F06 03551 D 13 0101FF04 05300301 01FF3029 0603551D
    20821E63 11042230 6F64732E 6F666472 63697479 6E677370 69707069 72696E67
    732E636F 6D301F06 23 04183016 24 D 77493 80142FA3 03551D 52CF7094 B847B6EB
    1385E2E5 0F3A301D 0603551D 0E041604 142FA324 D7749352 CF7094B8 47B6EB13
    85E2E50F 3A300D06 092 HAS 8648 01040500 03818100 076EE499 12F46D79 86F70D01
    375B7EA6 C9279DA4 B32723B5 908C9FB8 D42CB978 BB24A8FE 73579A3D CA 5130, 87
    B7716644 7E13710D C6E6360C D0A36F7B F62540E2 0C33523B E50396B9 2EF66FA7
    56519E62 E55EAF3C E1D9BEC9 3AE67B59 75E61F06 B649E90A 2798F755 7A020F0A
    F8BDABFA 1EE37B6A A918560D DA45AD70 801BC66E 94D1468E
    quit smoking
    username privilege 15 secret $5 1jgO$sGD@#l4yTtLtYoEZbh/Wl steal551.
    !
    !
    door-key crypto vpn_ddaus
    pre-shared key address 0.0.0.0 0.0.0.0 - key stealthfortyfor5
    door-key crypto vpn_rmlfk
    address of pre-shared-key 205.30.134.22 key stealthfortyfor5
    !
    crypto ISAKMP policy 10
    md5 hash
    preshared authentication
    Group 2
    !
    crypto ISAKMP policy 30
    BA 3des
    preshared authentication
    Group 2
    invalid-spi-recovery crypto ISAKMP
    ISAKMP crypto keepalive 20
    !
    Configuration group isakmp crypto VPNRemote client
    key ConnectNow45
    pool ippool
    ISAKMP crypto vpnclient profile
    VPNRemote identity group match
    client authentication list for / remote
    Remote ISAKMP authorization list
    client configuration address respond
    Crypto isakmp CODS_DDAUS profile
    key ring vpn_ddaus
    function identity address 0.0.0.0
    Crypto isakmp CODS_RMLFK profile
    key ring vpn_rmlfk
    function identity address 205.30.134.22 255.255.255.255
    !
    !
    Crypto ipsec transform-set esp-3des esp-sha-hmac RIGHT
    !
    Crypto-map dynamic dynmap 10
    Set transform-set RIGHT
    vpnclient Set isakmp-profile
    Crypto-map dynamic dynmap 12
    Set transform-set RIGHT
    CODS_DDAUS Set isakmp-profile
    !
    !
    MYmap 1 ipsec-isakmp crypto map
    defined by peer 205.30.134.22
    Set transform-set RIGHT
    CODS_RMLFK Set isakmp-profile
    match address CODS_to_RMFLK
    map mymap 65535-isakmp ipsec crypto dynamic dynmap
    !
    Bridge IRB
    !
    !
    interface Loopback10
    IP 1.1.1.1 255.255.255.0
    !
    ATM0 interface
    no ip address
    route IP cache flow
    No atm ilmi-keepalive
    DSL-automatic operation mode
    !
    point-to-point interface ATM0.1
    Description $FW_OUTSIDE$ $ES_WAN$
    Check IP unicast reverse path
    inspect the DEFAULT100 over IP
    NAT outside IP
    IP virtual-reassembly
    PVC 0/35
    aal5snap encapsulation
    !
    Bridge-Group 2
    !
    interface FastEthernet0
    !
    interface FastEthernet1
    !
    interface FastEthernet2
    !
    interface FastEthernet3
    !
    interface Dot11Radio0
    no ip address
    no ip-cache cef route
    no ip route cache
    !
    encryption vlan 1 tkip encryption mode
    !
    SSID tsunami
    VLAN 1
    open authentication
    authentication wpa key management
    Comments-mode
    WPA - psk ascii 7 14231A0E01053324363F363B36150E050B08585E
    !
    base speed - 1.0 2.0 basic basic-5, 5 6.0 9.0 basic-11, 0 12.0 18.0 24.0 36.0 48.0 54.0
    root of station-role
    !
    interface Dot11Radio0.1
    encapsulation dot1Q 1 native
    no ip route cache
    no link-status of snmp trap
    No cdp enable
    Bridge-Group 1
    Bridge-group subscriber-loop-control 1
    Bridge-Group 1 covering-disabled people
    Bridge-Group 1 block-unknown-source
    No source of bridge-Group 1-learning
    unicast bridge-Group 1-floods
    !
    interface Vlan1
    Description $ETH - SW - LAUNCH, INTF-INFO-HWIC $$ $4ESW $FW_INSIDE$
    no ip address
    IP tcp adjust-mss 1452
    Bridge-Group 1
    !
    interface BVI1
    Description $ES_LAN$ $FW_INSIDE$
    192.168.7.1 IP address 255.255.255.0
    IP nat inside
    IP virtual-reassembly
    route IP cache flow
    IP tcp adjust-mss 1412
    !
    interface control2
    IP 70.14.49.134 255.255.255.0
    NAT outside IP
    IP virtual-reassembly
    crypto mymap map
    !
    local pool IP 10.10.10.1 ippool 10.10.10.254
    IP classless
    IP route 0.0.0.0 0.0.0.0 70.14.49.1
    !
    IP http server
    local IP http authentication
    IP http secure server
    IP http timeout policy slowed down 60 life 86400 request 10000
    overload of IP nat inside source list 133 interface control2
    !
    CODS_to_RMFLK extended IP access list
    IP 192.168.7.0 allow 0.0.0.255 192.168.1.0 0.0.0.255
    !
    recording of debug trap
    access-list 1 permit 192.168.7.0 0.0.0.255
    access-list 100 remark self-generated by the configuration of the firewall Cisco SDM Express
    Access-list 100 = 1 SDM_ACL category note
    access-list 100 deny ip 70.14.49.0 0.0.0.255 any
    access-list 100 deny ip 255.255.255.255 host everything
    access-list 100 deny ip 127.0.0.0 0.255.255.255 everything
    access ip-list 100 permit a whole
    access-list 101 permit ip 192.168.7.0 0.0.0.255 192.168.3.0 0.0.0.255
    access-list 133 deny ip 192.168.7.0 0.0.0.255 192.168.1.0 0.0.0.255
    access-list 133 deny ip 192.168.7.0 0.0.0.255 10.10.10.0 0.0.0.255
    access-list 133 deny ip 192.168.7.0 0.0.0.255 192.168.10.0 0.0.0.255
    access-list 133 deny ip 192.168.7.0 0.0.0.255 192.168.3.0 0.0.0.255
    access-list 133 allow ip 192.168.7.0 0.0.0.255 any
    not run cdp
    mymap permit 10 route map
    corresponds to the IP 111
    set ip next-hop 1.1.1.2
    !
    !
    control plan
    !
    Bridge Protocol ieee 1
    1 channel ip bridge
    Bridge Protocol ieee 2
    IP road bridge 2
    connection of the banner ^ CAuthorized access only!
    Unplug IMMEDIATELY if you are not an authorized user. ^ C
    !
    Line con 0
    no activation of the modem
    telnet output transport
    line to 0
    telnet output transport
    line vty 0 4
    privilege level 15
    transport input telnet ssh
    !
    max-task-time 5000 Planner
    Scheduler allocate 4000 1000
    Scheduler interval 500
    end

    Hello

    Can you try to remove the IMPORT ALL of the dhcp pool

    RES
    Paul

    Sent by Cisco Support technique iPad App

  • Dows routers Cisco 2921 supports WIC cards?

    I have trouble to install a frame relay service, because the seller sold me the WIC cards but I think that 2921 only supports cards HWIC

    Here the result to see the figure:

    Router Llano Mall
    ag321-VAC-rou-01 #sh diag | b WIC Slot 1:
    WIC Slot 1:
    Series 2T (12 in 1)
    Module WIC unsupported / disabled this slot machine
    Review of Board of revision 1.0 Hardware B0
    Serial number 32098957 part number 800-03181-02
    FRU part number WIC - 2T =
    Test the number of RMA history 0 x 0 00-00-00
    Type of PCI slot
    Format EEPROM 1 version
    Table of contents EEPROM (hex):
    0 X 20:01 12 01 00 01 E9 CA 8 D 50 6 02 00 00 00 00 0C
    0 X 30 : 58 00 00 00 04 04 08 00 FF FF FF FF FF FF FF FF

    Router Cumaná
    ag521-VAC-rou-01 #sh diag | b WIC Slot 0:
    WIC Slot 0:
    Daughter HWIC WAN card series 2T
    Hardware revision: 2.0
    Number of albums part together: 800-34379-01
    Review on board: A0
    Number of deviation: 115024
    Fab version: 02
    Serial number of PCB: FOC15023T8C
    History of the RMA tests: 00
    RMA number: 0-0-0-0
    RMA history: 00
    FAB part number: 28-8141-01
    Product number (FRU): HWIC-2 t
    Version identifier: V03
    CLEI Code: COUIA1RCAB
    EEPROM 4 format version
    Table of contents EEPROM (hex):
    0X00: 04 FF 40 05 89 41 02 00 C0 46 03 20 00 86 4 B 01
    0X10: 42 41 30 88 00 01 50 02 02 C1 8B 46 43 31 4F C1
    0x20: 35 30 32 33 54 38 43 03 00 81 00 00 00 00 04 00

    0 X 30: 85 1 1F CD 01 87 48 57 49 43 2D 32 54 89 56 CB
    0 X 40: 30 33 20 D9 02 40 C1 C6 8 A 43 55 49 41 31 52 4F
    0 X 50 : 43 41 42 FF FF FF FF FF FF FF FF FF FF FF FF FF
    0 X 60 : FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF
    0 X 70 : FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF

    Is there any command or any form can I use this card to put in place frame relay?

    Thanks in advance

    Alejandro

    It seems that he has not supported and an ISR G2 2921 would accept an HWIC-2 t instead.

    http://www.Cisco.com/en/us/products/ps10537/products_relevant_interfaces...

    Sent by Cisco Support technique iPhone App

  • Cisco No. 2851 with 2 - FPS?

    Hi all

    First of all you wishing all happy new year!

    I want to know if it is - it possible to connect 2-HWIC-SFP modules (1 GB) router Cisco No. 2851?

    A single.   See below (table 3).

    High-speed Cisco Gigabit Ethernet WAN Interface Card

  • Cannot access internet connected pc

    Hi all

    I will have questions, how to get to the internet from the PC. It is currently connected to the cisco 877w via FE0.

    The PC is able to enter the correct IP address. Even when I entered dns [8.8.8.8], I'm still not able to access the internet.

    Joined the config-

    ================================

    !

    version 12.4

    no service button

    horodateurs service debug datetime msec

    Log service timestamps datetime msec

    encryption password service

    !

    router host name

    !

    boot-start-marker

    boot-end-marker

    !

    !

    No aaa new-model

    !

    !

    dot11 syslog

    IP cef

    No dhcp use connected vrf ip

    DHCP excluded-address IP 192.168.1.254

    !

    IP dhcp pool HOME-DHCP

    import all

    network 192.168.1.0 255.255.255.0

    by default-router 192.168.1.254

    Server DNS 8.8.8.8

    !

    !

    no ip bootp Server

    8.8.8.8 IP name-server

    name of the IP-server 165.21.100.88

    !

    !

    !

    !

    !

    Archives

    The config log

    hidekeys

    !

    !

    !

    !

    !

    ATM0 interface

    no ip address

    No atm ilmi-keepalive

    DSL-automatic operation mode

    !

    point-to-point interface ATM0.1

    Description $ES_WAN$ $FW_OUTSIDE$

    penetration of the IP stream

    PVC 0/100

    aal5snap encapsulation

    Protocol ppp Dialer

    Dialer pool-member 1

    !

    !

    interface FastEthernet0

    !

    interface FastEthernet1

    !

    interface FastEthernet2

    !

    interface FastEthernet3

    !

    interface Dot11Radio0

    no ip address

    Shutdown

    base speed - 1.0 2.0 basic basic-5, 5 6.0 9.0 basic-11, 0 12.0 18.0 24.0 36.0 48.0 54.0

    root of station-role

    !

    interface Vlan1

    Description $ETH - SW - LAUNCH$ $INTF - INFO - HWIC-$4ESW $ES_LAN$ $FW_INSIDE$

    IP 192.168.1.254 255.255.255.0

    no ip redirection

    no ip unreachable

    no ip proxy-arp

    penetration of the IP stream

    IP nat inside

    IP virtual-reassembly

    IP tcp adjust-mss 1452

    !

    interface Dialer0

    the negotiated IP address

    no ip redirection

    no ip unreachable

    no ip proxy-arp

    penetration of the IP stream

    NAT outside IP

    IP virtual-reassembly

    encapsulation ppp

    Dialer pool 1

    Dialer-Group 1

    No cdp enable

    PPP authentication pap callin

    PPP pap sent-username [email protected] / * / 7 130 44185206173829 password

    !

    IP forward-Protocol ND

    IP route 0.0.0.0 0.0.0.0 Dialer0

    !

    no ip address of the http server

    no ip http secure server

    !

    !

    !

    !

    control plan

    !

    !

    Line con 0

    no activation of the modem

    line to 0

    line vty 0 4

    !

    max-task-time 5000 Planner

    end

    Can you ping your router 8.8.8.8? If so, you'll need is to configure the nat on the router:

    access-list 100 permit ip 192.168.1.0 0.0.0.255 any

    IP nat inside source list 100 interfaces dialer0 overload

    int vlan 1

    IP nat inside

    int dial0

    NAT outside IP

    HTH,
    John

    Please note all useful messages *.

  • I'm losing configuration when I turned off my Cisco 857 router

    I bought the new router Cisco 857 of the shop. Router must have been used before as I couln can't go inside with name of user and password default cisco/cisco.

    Well I followed digital and reset the password for the user name and password. Now I have finally connected to Cisco CP express on my IE browser.

    I discovered that someone was using a router in the shop that's why I countries: ' t log in to him in the first place. In any case the problem is that when I changed my configuration and applies the settings he remembers until I turned off. When I turn on again he remembers all the parameters of this shop.

    He returned everything back: IP address, former account to level 15 and password - just like after the password reset.

    I tried again and he again lost the settings. So I found instructions:

    http://www.Cisco.com/en/us/products/HW/routers/ps233/products_tech_note09186a00800a65a5.shtml

    I followed it and changed once again all the settings of the router. My settings are still lost after the power on/off. I noticed that when I do everything first bit it shows

    0x2102 not 0x2142 like they think that is password reset mode.

    Here is my output from Hyper Terminal:

    =============================

    Cisco#enable

    Cisco#show start

    Using 3359 out of 131072 bytes

    !

    version 12.4

    no service pad

    service timestamps debug datetime msec

    service timestamps log datetime msec

    no service password-encryption

    !

    hostname Cisco

    !

    boot-start-marker

    boot-end-marker

    !

    logging buffered 51200 warnings

    enable secret 5 $1$hpKF$Rc1tl6r45J8iHG7EN5jSk.

    !

    no aaa new-model

    !

    crypto pki trustpoint TP-self-signed-3185909327

    enrollment selfsigned

    subject-name cn=IOS-Self-Signed-Certificate-3185909327

    revocation-check none

    rsakeypair TP-self-signed-3185909327

    !

    !

    crypto pki certificate chain TP-self-signed-3185909327

    certificate self-signed 01 nvram:IOS-Self-Sig#5.cer

    dot11 syslog

    no ip dhcp use vrf connected

    ip dhcp excluded-address 10.10.10.1

    !

    ip dhcp pool ccp-pool

    import all

    network 10.10.10.0 255.255.255.248

    default-router 10.10.10.1

    lease 0 2

    !

    !

    ip cef

    no ip domain lookup

    ip domain name molinary.com

    !

    !

    !

    username admin privilege 15 secret 5 $1$jD3j$r6ROikgGsIlcMTGjkxFQ6.

    username username privilege 15 password 0 password

    !

    !

    archive

    log config

    hidekeys

    !

    !

    !

    !

    !

    interface ATM0

    no ip address

    shutdown

    no atm ilmi-keepalive

    dsl operating-mode auto

    !

    interface ATM0.1 point-to-point

    description $ES_WAN$

    ip nat outside

    ip virtual-reassembly

    pvc 0/38

    encapsulation aal5mux ppp dialer

    dialer pool-member 1

    !

    !

    interface FastEthernet0

    !

    interface FastEthernet1

    !

    interface FastEthernet2

    !

    interface FastEthernet3

    !

    interface Vlan1

    description $ETH-SW-LAUNCH$$INTF-INFO-HWIC 4ESW$$ES_LAN$

    ip address 10.10.10.1 255.255.255.248

    ip nat inside

    ip virtual-reassembly

    ip tcp adjust-mss 1452

    !

    interface Dialer0

    ip address dhcp

    encapsulation ppp

    dialer pool 1

    dialer-group 1

    no cdp enable

    ppp authentication chap pap callin

    ppp chap hostname [email protected]/* */

    ppp chap password 0 netgear01

    ppp pap sent-username [email protected]/* */ password 0 netgear01

    !

    ip forward-protocol nd

    !

    ip http server

    ip http access-class 23

    ip http authentication local

    ip http secure-server

    ip http timeout-policy idle 60 life 86400 requests 10000

    ip nat inside source list 1 interface ATM0.1 overload

    !

    access-list 1 remark INSIDE_IF=Vlan1

    access-list 1 remark CCP_ACL Category=2

    access-list 1 permit 10.10.10.0 0.0.0.7

    dialer-list 1 protocol ip permit

    no cdp run

    !

    control-plane

    !

    banner exec ^C

    % Password expiration warning.

    -----------------------------------------------------------------------

    Cisco Configuration Professional (Cisco CP) is installed on this device

    and it provides the default username "cisco" for  one-time use. If you have

    already used the username "cisco" to login to the router and your IOS image

    supports the "one-time" user option, then this username has already expired.

    You will not be able to login to the router with this username after you exit

    this session.

    It is strongly suggested that you create a new username with a privilege level

    of 15 using the following command.

    username privilege 15 secret 0

    Replace and with the username and password you

    want to use.

    -----------------------------------------------------------------------

    ^C

    banner login ^CAuthorized access only!

    Disconnect IMMEDIATELY if you are not an authorized user!^C

    !

    line con 0

    login local

    no modem enable

    line aux 0

    line vty 0 4

    privilege level 15

    login local

    transport input telnet ssh

    !

    scheduler max-task-time 5000

    end

    Cisco#

    Cisco#

    Cisco#

    Cisco#

    Cisco#

    Cisco#

    Cisco#

    Cisco#

    Cisco#show version

    Cisco IOS Software, C850 Software (C850-ADVSECURITYK9-M), Version 12.4(15)T12, R

    ELEASE SOFTWARE (fc3)

    Technical Support: http://www.cisco.com/techsupport

    Copyright (c) 1986-2010 by Cisco Systems, Inc.

    Compiled Fri 22-Jan-10 14:46 by prod_rel_team

    ROM: System Bootstrap, Version 12.3(8r)YI4, RELEASE SOFTWARE

    Cisco uptime is 20 minutes

    System returned to ROM by power-on

    System image file is "flash:c850-advsecurityk9-mz.124-15.T12.bin"

    This product contains cryptographic features and is subject to United

    States and local country laws governing import, export, transfer and

    use. Delivery of Cisco cryptographic products does not imply

    third-party authority to import, export, distribute or use encryption.

    Importers, exporters, distributors and users are responsible for

    compliance with U.S. and local country laws. By using this product you

    agree to comply with applicable laws and regulations. If you are unable

    to comply with U.S. and local laws, return this product immediately.

    A summary of U.S. laws governing Cisco cryptographic products may be found at:

    http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

    If you require further assistance please contact us by sending email to

    [email protected]/* */.

    Cisco 857 (MPC8272) processor (revision 0x400) with 59392K/6144K bytes of memory

    .

    Processor board ID FCZ140792J5

    MPC8272 CPU Rev: Part Number 0xC, Mask Number 0x10

    4 FastEthernet interfaces

    1 ATM interface

    128K bytes of non-volatile configuration memory.

    20480K bytes of processor board System flash (Intel Strataflash)

    Configuration register is 0x2102

    Cisco#

    Cisco#

    Cisco#

    Cisco#end

    Translating "end"

    % Unknown command or computer name, or unable to find computer address

    Cisco#reload

    Proceed with reload? [confirm]

    *Mar  1 01:19:27.786: %SYS-5-RELOAD: Reload requested  by username on console. R

    eload Reason: Reload Command.

    System Bootstrap, Version 12.3(8r)YI4, RELEASE SOFTWARE

    Technical Support: http://www.cisco.com/techsupport

    Copyright (c) 2006 by cisco Systems, Inc.

    C850 series (Board ID: 2-149) platform with 65536 Kbytes of main memory

    Booting flash:/c850-advsecurityk9-mz.124-15.T12.bin

    Self decompressing the image : ############################################## [O

    K]

    Restricted Rights Legend

    Use, duplication, or disclosure by the Government is

    subject to restrictions as set forth in subparagraph

    (c) of the Commercial Computer Software - Restricted

    Rights clause at FAR sec. 52.227-19 and subparagraph

    (c) (1) (ii) of the Rights in Technical Data and Computer

    Software clause at DFARS sec. 252.227-7013.

    cisco Systems, Inc.

    170 West Tasman Drive

    San Jose, California 95134-1706

    Cisco IOS Software, C850 Software (C850-ADVSECURITYK9-M), Version 12.4(15)T12, R

    ELEASE SOFTWARE (fc3)

    Technical Support: http://www.cisco.com/techsupport

    Copyright (c) 1986-2010 by Cisco Systems, Inc.

    Compiled Fri 22-Jan-10 14:46 by prod_rel_team

    Image text-base: 0x8002007C, data-base: 0x814E7240

    This product contains cryptographic features and is subject to United

    States and local country laws governing import, export, transfer and

    use. Delivery of Cisco cryptographic products does not imply

    third-party authority to import, export, distribute or use encryption.

    Importers, exporters, distributors and users are responsible for

    compliance with U.S. and local country laws. By using this product you

    agree to comply with applicable laws and regulations. If you are unable

    to comply with U.S. and local laws, return this product immediately.

    A summary of U.S. laws governing Cisco cryptographic products may be found at:

    http://www.cisco.com/wwl/export/crypto/tool/stqrg.html

    If you require further assistance please contact us by sending email to

    [email protected]/* */.

    Cisco 857 (MPC8272) processor (revision 0x400) with 59392K/6144K bytes of memory

    .

    Processor board ID FCZ140792J5

    MPC8272 CPU Rev: Part Number 0xC, Mask Number 0x10

    4 FastEthernet interfaces

    1 ATM interface

    128K bytes of non-volatile configuration memory.

    20480K bytes of processor board System flash (Intel Strataflash)

    no ip dhcp use vrf connected

    ^

    % Invalid input detected at '^' marker.

    SETUP: new interface NVI0 placed in "shutdown" state

    Press RETURN to get started!

    *Mar  1 00:00:03.952: %VPN_HW-6-INFO_LOC: Crypto engine: onboard 0  State change

    d to: Initialized

    *Mar  1 00:00:03.960: %VPN_HW-6-INFO_LOC: Crypto engine: onboard 0  State change

    d to: Enabled

    *Mar  1 00:00:07.244: %LINK-3-UPDOWN: Interface FastEthernet0, changed state to

    up

    *Mar  1 00:00:08.413: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

    et0, changed state to up

    *Mar  1 00:00:08.821: %SYS-5-CONFIG_I: Configured from memory by console

    *Mar  1 01:19:27.072: %LINK-3-UPDOWN: Interface Virtual-Access1, changed state t

    o up

    *Mar  1 01:19:27.352: %SYS-5-RESTART: System restarted --

    Cisco IOS Software, C850 Software (C850-ADVSECURITYK9-M), Version 12.4(15)T12, R

    ELEASE SOFTWARE (fc3)

    Technical Support: http://www.cisco.com/techsupport

    Copyright (c) 1986-2010 by Cisco Systems, Inc.

    Compiled Fri 22-Jan-10 14:46 by prod_rel_team

    *Mar  1 01:19:27.352: %SNMP-5-COLDSTART: SNMP agent on host Cisco is undergoing

    a cold start

    *Mar  1 01:19:27.436: %CRYPTO-6-ISAKMP_ON_OFF: ISAKMP is OFF

    *Mar  1 01:19:27.436: %CRYPTO-6-ISAKMP_ON_OFF: ISAKMP is OFF

    *Mar  1 01:19:27.540: %LINEPROTO-5-UPDOWN: Line protocol on Interface NVI0, chan

    ged state to down

    *Mar  1 01:19:28.072: %LINEPROTO-5-UPDOWN: Line protocol on Interface Virtual-Ac

    cess1, changed state to up

    *Mar  1 01:19:28.484: %LINEPROTO-5-UPDOWN: Line protocol on Interface Vlan1, cha

    nged state to up

    *Mar  1 01:19:28.484: %LINK-5-CHANGED: Interface ATM0, changed state to administ

    ratively down

    *Mar  1 01:19:28.848: %LINK-5-CHANGED: Interface NVI0, changed state to administ

    ratively down

    *Mar  1 01:19:28.932: %LINK-3-UPDOWN: Interface FastEthernet3, changed state to

    up

    *Mar  1 01:19:28.936: %LINK-3-UPDOWN: Interface FastEthernet2, changed state to

    up

    *Mar  1 01:19:28.940: %LINK-3-UPDOWN: Interface FastEthernet1, changed state to

    up

    *Mar  1 01:19:29.484: %LINEPROTO-5-UPDOWN: Line protocol on Interface ATM0, chan

    ged state to down

    *Mar  1 01:19:29.932: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

    et3, changed state to down

    *Mar  1 01:19:29.936: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

    et2, changed state to down

    *Mar  1 01:19:29.940: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

    et1, changed state to down

    *Mar  1 01:19:29.948: %LINEPROTO-5-UPDOWN: Line protocol on Interface FastEthern

    et0, changed state to upAuthorized access only!

    ===========================================

    Please help me as I am stuck and can't go any further....

    Hi Dragan,

    After you run the wizard Cisco CP Express, it should save the configuration set to update the flash on the router.  However, in your case, it seems this is not the case.  Therefore:

    1. Configure the device via Cisco CP Express--> do NOT turn off after that
    2. Connect to the router with Hyperterminal.  Enter the configuration mode by typing:
      Enable
      When you are prompted for a password to put in.  The line should now be router #.

      now type:

      write memory

      You see errors?  Otherwise, type:
      See the startup-config

      Check the output matches the configuration you've tried.  If Yes, then you are good to go.  If this is not the case, let us know all the errors you received.

  • 871 wireless configuration

    I'm trying to get a router 871 soho wireless connection to work.

    The SDM is useless.

    I tried to find documents on how and why and what to do - but no luck.

    Since this week. The DSL parts and fw works, but do not

    Wireless.

    I have a setup of open authentication - comments-mode activated.

    So I should be pretty wide open for connections.

    I can see the SSID on a client PC, but cannot connect.

    I use DHCP clients

    --------------------

    config below

    --------------------

    Bridge IRB

    !

    interface FastEthernet4

    Description $$$ FW_OUTSIDE$ $ES_WAN$ ETH - WAN

    no ip address

    no ip redirection

    no ip unreachable

    no ip proxy-arp

    route IP cache flow

    automatic duplex

    automatic speed

    enable PPPoE

    PPPoE-client dial-pool-number 1

    No cdp enable

    !

    interface Dot11Radio0

    no ip address

    !

    SSID 1138

    VLAN 1

    open authentication

    Comments-mode

    !

    Speed of the basic - 1.0 2.0 - basic basic-5, 5 6.0 9.0 basic-11, 0 12.0 18.0 24.0 36.0

    48.0 54.0

    root of station-role

    No cdp enable

    Bridge-Group 1

    Bridge-Group 1 covering-disabled people

    !

    interface Vlan1

    Description $ETH - SW - LAUNCH, INTF-INFO-HWIC $$ $4ESW $FW_INSIDE$

    IP 192.168.0.109 255.255.255.0

    IP access-group 102 to

    IP nat inside

    IP virtual-reassembly

    !

    interface Dialer1

    Description $FW_OUTSIDE$

    MTU 1492

    the negotiated IP address

    IP access-group 103 to

    inspect the DEFAULT100 over IP

    NAT outside IP

    IP virtual-reassembly

    encapsulation ppp

    Dialer pool 1

    No cdp enable

    PPP authentication pap callin

    PPP pap sent-username [email protected] / * / password xxx

    PPP ipcp dns request accept

    !

    IP classless

    IP route 0.0.0.0 0.0.0.0 Dialer1

    !

    IP http timeout policy slowed 5 life 86400 request 10000

    the IP nat inside source 1 list overload of the Dialer1 interface

    !

    recording of debug trap

    Note access-list 1 INSIDE_IF = BVI1

    Remark SDM_ACL category of access list 1 = 2

    access-list 1 permit 192.168.0.0 0.0.0.255

    Access-list 100 remark generated automatically by the configuration of the firewall Cisco SDM Express

    Access-list 100 = 1 SDM_ACL category note

    access-list 100 deny ip 255.255.255.255 host everything

    access-list 100 deny ip 127.0.0.0 0.255.255.255 everything

    access ip-list 100 permit a whole

    Access-list 101 remark generated automatically by the configuration of the firewall Cisco SDM Express

    Note access-list 101 = 1 SDM_ACL category

    access-list 101 deny ip 192.168.0.0 0.0.0.255 any

    access-list 101 permit icmp any any echo response

    access-list 101 permit icmp any one time exceed

    access-list 101 permit everything all unreachable icmp

    access-list 101 deny ip 10.0.0.0 0.255.255.255 everything

    access-list 101 deny ip 172.16.0.0 0.15.255.255 all

    access-list 101 deny ip 192.168.0.0 0.0.255.255 everything

    access-list 101 deny ip 127.0.0.0 0.255.255.255 everything

    access-list 101 deny ip 255.255.255.255 host everything

    access-list 101 deny host ip 0.0.0.0 everything

    access-list 101 deny ip any one

    access-list 102 remark self-generated by the configuration of the firewall SDM

    Note access-list 102 SDM_ACL category = 1

    access-list 102 refuse host ip 255.255.255.255 everything

    access-list 102 deny ip 127.0.0.0 0.255.255.255 everything

    access ip-list 102 permit a whole

    access-list 103 note self-generated by the configuration of the firewall SDM

    Note access-list 103 SDM_ACL category = 1

    access-list 103 deny ip 192.168.0.0 0.0.0.255 any

    access-list 103 permit icmp any any echo response

    access-list 103 allow icmp all once exceed

    access-list 103 allow all unreachable icmp

    access-list 103 deny ip 10.0.0.0 0.255.255.255 everything

    access-list 103 deny ip 172.16.0.0 0.15.255.255 all

    access-list 103 deny ip 192.168.0.0 0.0.255.255 everything

    access-list 103 deny ip 127.0.0.0 0.255.255.255 everything

    access-list 103 refuse host ip 255.255.255.255 everything

    access-list 103 refuse host ip 0.0.0.0 everything

    access-list 103 deny ip any any newspaper

    Dialer-list 1 ip protocol allow

    not run cdp

    !

    control plan

    !

    Bridge Protocol ieee 1

    1 channel ip bridge

    !

    max-task-time 5000 Planner

    Scheduler allocate 4000 1000

    Scheduler interval 500

    end

    interface Dot11Radio0

    no ip address

    !

    SSID 1138

    No vlan 1

    !

    interface Vlan1

    no address ip 192.168.0.109 255.255.255.0

    no nat inside ip

    Bridge-Group 1

    !

    interface BVI 1

    IP 192.168.0.109 255.255.255.0

    IP nat inside

    !

    end

    Cut these commands. I'm going to assume that if you make to a server and not the router DHCP. If you want to use the router, you will need to configure a DHCP pool.

  • Design of wireless network

    Hello

    I am looking for assistance in the design of a solution for a customer of our wireless. A basic outline of the network is attached. There are actually many other sites that are shown here, but I just wanted to keep things simple.

    The plan is to have a 1240AG access point on each connected remote site the WLC on the WAN. In time, the WCS will be managed by a WCS server.

    Each site is already divided into 2 subnets and it is not possible to add a new one for the AP and it's customers. In any case, there will be very few wireless traffic. The AP will run in mode H-HARVEST but there will be no required local communication. All traffic is always aimed at Headquarters (ie they use Citrix). So do these APs actually need to be switch locally H-Reap? If not then how would this work? A remote site AP can function as a H-REAP no?

    Some sites have their own 3560 switch and others simply a switch inside a 2801 router module.

    There is no need to have any VLANs sent across the WAN.

    DHCP is provided by the router at each remote site.

    I really need some advice on the best way to implement this solution, including but not limited to:

    Do I need to have a separate WLAN for each site?

    Will be DHCP from the router actually work?

    How should be configured the ports on the switch on the module HWIC?

    What benefits are there to having a WCS when there is just a single WLC? (I thought that WCS to manage several WLC).

    I skimmed the design guides and I'm still not clear about the best way to do it.

    Any help would be appreciated

    Thank you

    DH

    Not in H-REAP... the WLAN SSID that you create on the controller will always be equal to the management interface. This is how the AP and WLC will communicate. When you enable local switching, then you have the ability to map this ssid to a vlan local. I'm currently deploy 90 h PA - harvest with 27 sites and 2 4404 in the heart. I have 7 SSID and using the substitution of wlan. DHCP is local to the remote site and I use the same id of vlan to map the ssid. VLAN local native for the ap is also the same in all, but of couse subnets are different. It's a little different, how you look what interface you need to map the ssid for especially when doing h - harvest.

    Look at it this way... only if you have traffic returning to the WLC and the WLC putting back the traffic on the network is when the interface mapping is important... as in a normal installation of LWAPP.

  • WDS on in general and the 2800 series routers

    Hello, people!

    http://www.Cisco.com/en/us/Tech/tk722/tk809/technologies_q_and_a_item09186a00804d4421.shtml?backpack=true#QA3

    declares that the WDS is supported on 'some 2800 models', but cisco feature navigator tells me that it is only supported on the access points cisco; I couldn't find any documentation on the WDS configuration on routers also.

    Thanks to advice.

    The 2800 supports a wireless interface card, in which you can configure for WDS.

    HWIC-AP-G-A (=) Cisco 802. 11b / g card to Interface WLAN HWIC-AP for the Americas (the FCC configuration)

    HWIC-AP-AG-A (=) Cisco HWIC-AP WIFI 802.11a/b/g map interface to the Americas (the FCC configuration)

Maybe you are looking for