Incompatibility of Version H/w stacking Cisco 3850
I have a cisco failure 3850. I got a new switch and the IOS was lower than my pile to course, so I've updated. When I do a show worm IOS looks right but when I do a show the H/W version parameter are different. What causes my carpet to fail?
Hi Kurt,.
That will not cause the battery to fail, you just need to make sure that the version of IOS and the level of license are the same between the members of the battery and make sure you turn the switch before plugging in the battery again.
HTH
Julio
Tags: Cisco Network
Similar Questions
-
ESXi->; Cisco 3850->; router upstream routing does not
Please see the attached diagram.
I currently have the installation of "router on the stick" and I move to lass on Cisco 3850 battery. Initially, I moved VLAN100. I can ping to each of the directly connected devices (i.e. the router 3850 and 2911). I can't do a ping to a virtual machine on vlan 100 router and vice versa. Here's what works what doesn't work.
Work in both sense
VM (172.16.100.51) <->GW on IVR (172.16.100.254)
VM (172.16.100.51) <->an another IVR (172.16.230.254)
VM (172.16.100.51) <->Int L3 on 3850 (10.2.2.2)
L3 on 3850 (10.2.2.2) int <->int L3 on 2911 (10.2.2.1)
SVI on 3850 (172.16.100.254) <->int L3 on 2911 (10.2.2.1)
Does not not in both directions:
VM (172.16.100.51) <->L3 interface on 2911 (10.2.2.1)
VM (172.16.100.51) <->else NOT routed on 3850
I have following routes on 2911 and 3850.
3850:
IP route 0.0.0.0 0.0.0.0 10.2.2.12911:
IP route 172.16.100.0 255.255.255.0 10.2.2.2
IP route 172.16.230.0 255.255.255.0 10.2.2.2
If in theory everything that comes from 172.16.100.51 no 3850 premises must be sent to 10.2.2.1 since it is the default route on 3850.
I suspect that this is a problem with the license. I have IP Base feature set stack license 3850. I have checked using the license to show and display the version controls.
According to this FAQ Cisco, http://www.cisco.com/c/en/us/products/collateral/switches/catalyst-3850-..., routing should work because I do not have more than 16 static routes and I'm only using base L3 routing features.
I am at a loss here. What is going on? Can someone please confirm?
I bought WS-C3850-24 t-S,
http://www.Cisco.com/c/en/us/TD/docs/switches/LAN/catalyst3850/software/...
thinking that I would be able to use Lass and keep all traffic to get into the routers as switches upstream of our most ancient were only L2.
It looks like an upgrade for all IP Services features is possible.
https://cisco3850.wordpress.com/2015/04/22/licensing-for-cisco-catalyst-....
That I have to upgrade the image so or can I just pass the license using the built-in commands described here.
http://www.Cisco.com/c/en/us/TD/docs/switches/LAN/catalyst3850/software/...
I hope that I don't have to reboot switches because this configuration is currently using this stack as the core and distribution.
Any help is appreciated.
Thank you
Turning and the "IP routing" did?
->->->->->->-> -
Dear all
I have updated IOS based cisco 3850, he came to Flash, but still is not in "sh version" command and also I can't boot from this new IOS, to mention the steps start the new IOS.
Thanks and greetings
Jean Luc
3850 normaly use command: software install file flash:cat3k_caa-universalk9.SPA.03.06.01.SE.150-1.EZ1.bin
-
New Version of the stack is available
Just in case where someone missed it, version battery 5.10.01 is now available from:
http://APS.toshiba-tro.de/Bluetooth/pages/download.php
I have already noticed the new version of Toshiba Bluetooth stack.
However, thanks for the information
It s useful for others -
Cisco 3850 - Direct Connect APs
Can you not - APs to connect directly to a 3850. For example, if you had several offices in a branch of the site and your MC 3850 was in the Bay of server and had 2960 s in other offices. Could you connect your APs to 2960 switch and make them joined MC 3850?
I read that must be connected directly to the 3850, however it supports flexconnect APs?
If you'd be grateful if someone could shed some light.
Thank you
3850 will not support flexconnect. You must also connect the AP to 3850 (no transitional interrrupteurs as 2960).
Refer to this Q & A to answer your two questions
http://www.Cisco.com/en/us/prod/collateral/switches/ps5718/ps12686/qa_c67-722110.html
HTH
Rasika
-
Ontario Regulation the upgrade of Version 4.0 of Cisco IDS to 5.0
Dear Happs / marcabal
I have one of the IDS 4215 4.1 (1) Version with the details attached. I want the same thing to 5.0 and 6.0. So I install the 5.0 (1e) S149 major to upgrade to 5.0 first release
The following is written in the read me file for the package of service IPS-K9-maj-5.0-1e-S149.rpm.pkg
"For ID-4215, you must also make sure that you have upgraded the BIOS to the version.
5.1.7 and the ROMMON version 1.4 "
So I downloaded the upgrade utility mentioned above; However, I need to know following
(1) how to check the current BIOS and the ROMMON Version in ID
2) to upgrade the BIOS and ROMMON Version, can I do my dekstop (Windows XP) as a server TFTP we manage remote (LINE of LEASE), customer IDS, or do I need to have a local instead of customers himself (in the cisco IDS network beach only) which can be made as TFTP server
(3) also please let me know how do I know the IDS 4.0 license and if no license is available then, can still update us to version 5.0?
There is no version 4.x license, licenses began only in version 5.0.
You can improve your 4215 to version 5.1 or 6.0 unlicensed.
The minimum versions of BIOS update and forms are easily searched on CCO.
-
In fact, one of my clients has two Cisco 5508 wireless LAN controllers installed in a site and back up and running now. one of them running software version 7.4 and the other running software version 7.6. Each of them works as a stand-alone controller with number of access points. Based on this scenario, answer below concerns:
Can we transfer all active licenses at one of them and use it as a HA free of charge?
Up to which version of the software, we can improve these controllers without any extra charge?
What we must do if we want to move two of them to version 8 software?
Waiting to hear from you soon about my concerns.
Here are a few notes:
-Only licenses Adder can be reheberges to another controller. Base license cannot be rehosted unless the unit is THAT RMA would be.
-Too long the WLC has a minimum of 50 access point license, so that the unit can be used for HA N + 1 or AP SSO.
s ' it use SSO of AP, the WLC must have connections to subnets for layer 2 even due to the IP address of the interface.
HA N + 1 can be used in sites different especially if the subnet do not align
-Scott
-
Hi experts,
is it possible to integrate 3850 Cisco switch with Active Directory so that users can be authenticated via AD prior to accessing the network.
I am confused between incorporating the switch AD and ACS. I know that ACS will be used for authentication of access management.
Grateful if someone can clarify this for me.
Thank you
Haitham Jneid
ACS to be integrated with AD to recover the database user/group - Yes
dot1x must be configured between the switch and DCC - ACS and Yes, as I said, this is where you will configure the authentication and authorization of dot1x strategies.
in this case wired to users once that they plug their laptop on a switch port enabled for authentication of the dot1x, the switch will be contact ACS and ACS already has the AD database. ACS verifies if the user is in the database and allow the access or not. Yes based on your authentication and authorization of dot1x strategies.
Please note and mark the correct comment if you find it useful. *
-
Change the certificate used by a Cisco 3850
I have a new L3 3850 switch. He had a self-signed certificate installed when I first started the switch. The certificate is displayed either 512 or 1024 in length. I would like to create a key of 2048 in length. Can I issue the command generated rsa encryption key and specify the length of 2048 and I get a new cert. I can't just understand hw to make the new cert as the active cert.
When he started it first, here is the configuration of the switch section:
Crypto pki trustpoint TP-self-signed-127070658
enrollment selfsigned
name of the object cn = IOS - Self - signed - certificate - 127070658
revocation checking no
rsakeypair TP-self-signed-127070658
!
!
TP-self-signed-127070658 crypto pki certificate chain
certificate self-signed 01 nvram:IOS - Self-Sig #1.cer
When I create new cert and validate them with the copy running-config startup-config and then recharge, it will show that the new cert is stored in NVRAM:private - config, but it does not show the cert when I cd in NVRAM: and issue the dir command. What is the right order to get the new cert to use.
Here are the results of the dir command:
2049 rw-1897
startup-config 2050-3821
private-config 2051 rw-1897
base-config 1 0
rf_cold_starts 2 cpu_trap.eci of
- rw - 1079 4 rw-1072
cpu_threshold_trap.eci 6 - rw - 886
memory_trap.eci 7 - rw - 858
rf_trap.eci 8 rw-3123
wireless_trap.eci 11 - rw - 270
ma_trap_keyword 12-86
- persistent data 14 - rw - 578
IOS-Self-Sig #1.cer -rw-0 15
ifIndex-table William Coats
I was wondering how to do it myself, so I took him as a small project on our laboratory 3650. The documentation leaves to be desired, but I finally thought to it.
1 generate a 2048 bit rsa key pair:
seclab-3650 (config) #crypto generate keys rsa 2048 2048-bit-key module label
2. create a trustpoint specifying registration self-signed and tell the TP to use this key pair
seclab-3650 (config) #cry pki trustpoint 2048-bit-TP
seclab-3650(ca-trustpoint) #enrollment selfsigned
seclab-3650(ca-trustpoint) #usage - server ssl
seclab-3650(ca-trustpoint) #on nvram:
seclab-3650(ca-trustpoint) #rsakeypair 2048-bit-key
seclab-3650(ca-trustpoint) #exit
3 register the trustpoint - at this point the switch will generate the 2048-bit certificate.
seclab-3650 (config) #crypto pki enroll 2048-bit-TP
% Include the serial number of the router in the name of the topic? [Yes/No]: Yes
% Include an IP address in the name of the topic? [None]:
Generate a self signed certificate router? [Yes/No]: Yes
Router self-signed certificate created successfully
seclab-3650 (config) #.
4. tell your ip http secure server to use this trustpoint
seclab-3650 (config) #ip http secure-trustpoint 2048-bit-TP
Once I did this, I can go to the switch via https and see the key of 2048 bits being used in the self-signed certificate. Click on the image below to enlarge:
-
Version control of the Cisco ISE via HTTPS
Hello.
Is it possible to check the ISE by Web GUI version? In the affirmative. where can I find the version number '? '
ARM
Bottom left there is a question mark with button 'help', hover over it and press "on Identity Services Engine.
-
Hello
hope someone can help me. "Apple support team email me back my application has been downloaded successfully but:
" Version mismatch - or CFBundleVersion ['30.1.0.2.95180'] ['1.0.1'] CFBundleShortVersionString in the file Info.plist is the version of the app in iTunes Connect [' 1.0' ']. '.
Apple then suggestted reject this binary of binary details page in iTunes Connect. unfortuntlately I have the same warning message again after the 2nd attempt.
Thnaks a lot
Feel free to ignore this warning from Apple. If you want more details, you can search for "dps version mismatch" and find a number of similar topics.
-
I can't version sets record in the stack!
I have been using Photoshop Elements 5.0. I had been editing my photos and rerecord
as an established version. After about making 6 pictures, all of a sudden
they do not save in version... stacked on top. The amended version seems to save in another
file, but not in my organizer. I didn't that I changed anything.
I use windows XP and is checked as to save it as version and I get all the other screens describing what defined a version is, but is not in the Organizer, when I get back.
Help?
In the Organizer in PSE 5, go to the file menu, select catalog, then select recover.
-
SPF % SFF8472-5-THRESHOLD_VIOLATION: WE stack 2960 X swtich
Hi all.
We install a 4x2960X new switches. of master swtich to the basic link. shows the battery captain
% SFF8472-5-THRESHOLD_VIOLATION: item in gi1/0/50: low power warning Rx; Running value:-20,3 dBm, threshold value:-17,0 dBm.
FPS is a cisco SFP and the version of the stack is c2960x-universalk9 - mz.150 - 2A .ex5 .bin.
could some please explain what is this way to journal.
Hello
That is right. The message does not damage anything.
HTH
-
3850 switch does not have wlan config.
Hello
I have a switch (running 03.03.05SE) 3850 functioning as WLC but it doesn´t take any configuration associated with an SSID.
After a power failure she set the SSID on the default configuration and I can´t reconfigure (web or CLI).
I tried to create a new wlan but it didn t work too.
Thank you.
Hey Mate,
2 weeks ago, I hit this bug on my stack of 3850 running the 3.6.3 version.
Below you will find the answer of the TAC engineer:
This is a known issue and the following bug filed:
Invalid configuration Wlan error trying to change to PSK AKM
Symptom:
Error when you attempt to replace AKM PSK in the wlan configuration.
%-configuration 2:wcm:Invalid WLAN switch. Dot1x or psk
the authentication must be configured in wpa
Workaround solution:
Reset the unit to default settings or configure the key to passwd obscure
Seems that the bug details are not public available and this is why does not have necessary permissions.
Concerning
Christos
-
Cannot connect the switch Cisco Cisco SG300 - 28 p spend and traffic through VLANS
Try to connect the Cisco SG300 - 28 p switch to another switch and proceed 2 VLANS between them. Not doing any circuit. If I connect a computer to the port on the SG300 - 28 p I can access the VLAN 2 and take a DHCP address. However, when I connect to another switch on the port and connect it to a port on another switch secondary I am unable to access VLAN 2 and pull an IP address. I checked that the works of secondary switch (WS-C3560G-48PS-S) connected to the other 3500 s, but not this latest SG300 - 28 p. Here's the configuration for both, I'm leaving areas that shouldn't matter and add if necessary. Try to connect the SG300 - 28 p Port 26-WS-C3560 Port 1 port. Once again, if I connect a computer to port 26 on the SG300 - 28 p I access the VLAN 2 as expected, but not when I connect to channel 2 on the secondary switch.
Cisco SG300 - 28 p
!
interface vlan 1
Internet name
!
interface vlan 2
LAN name
IP 172.20.5.11 255.255.0.0
no ip address dhcp (this is the VLAN I'm moving)
!
interface vlan 3
private name
!
interface vlan 4
name of Nortel
!
interface vlan 101
name Video_Project
!
interface gigabitethernet26
Description VLAN2-ACCESS-CISCO3500
switchport mode access
switchport access vlan 2 (this goes to port 1 on the other Cisco 3500 switch to provide access 2 VLAN)Cisco 3500
!
interface Vlan1
NATCO Internet description
no ip address
no ip route cache
no ip mroute-cache
!
interface Vlan2
NATCO LAN description
IP 172.20.5.13 255.255.0.0
no ip route cache
no ip mroute-cache (this is the VLAN I'm moving)!
interface Vlan3
Description LHPrivate
no ip address
no ip route cache
no ip mroute-cache
!
interface GigabitEthernet0/1
switchport access vlan 2 (this is the port that I connect to the SG300 - 28 p)!
interface GigabitEthernet0/2
switchport access vlan 2 (this is the port I hang my computer to and trying to access VLAN 2 other switch)Hello
Yes, STP is the problem here. As you can see on your release of the Cisco 3500 switch, port Gi0/1 is BKN (The FEW is a shortened form of "Broken").
This is caused by an incompatibility of versions PLEASE used between the two switches. Small businesses (including series SG300) switches are use legacy STP or Rapid STP (your case), but uses templates to business (such as catalyst 3500) PVST + (each VLAN spanning tree version of STP).
Two versions between group of switches are compatible only under certain conditions. Important condition is that the two switchports needs to use a VLAN 1, vlan access/native and not any other number VLAN.
It is to make your communication work, you must:
- disable the STP at least 3500 Cisco switch:
- on overall global (Switch (config) # no vlan spanning tree 2)
- or by the base interface (switch(config-if) # no vlan spanning tree 2)
- change the configuration of your connection between two switches by following the path:
- change the switchport trunk (trunk switchport mode) mode
- do 1 VLAN as native vlan (vlan switchport trunk native 1)
- Towing VLAN 2 as vlan tagged on that Stump (switchport trunk allow vlan add 2)
- disable the STP at least 3500 Cisco switch:
Maybe you are looking for
-
I want the book "Home address" to come when I go to "write". It has been like that. Now I get "All addresses" and need to change to 'personal book. I tried selecting 'Personal', then send me an email. Does not work. Next time I click on write, place
-
Time Machine impossible to restore backups
Hello I had to restore my entire machine (because I am stupid) and when I went to access my Visual readers of Parallels, missing 2. It seems they were always absent (I went back I can. I'm not saying TM to ignore readers, and I see no reason why they
-
Each time you start Firefox, I received a message: [JavaScript] error: is null Maybe it's because I installed a few modules (including Greasemonkey scripts) or because of Java?I disabled modules (most of the tem), but nothing helped.
-
Wireless Desktop work with internal BT on Satellite P200
Hey,. I would like to buy a desktop computer (= keyboard-mouse combination) working with my internal bluetooth of my satellite P200 laptop wireless.But how do you know if this is going to work? I thought about the http://www.logitech.com/index.cfm/ke
-
How to change admin password in BIOS if the old password is forgotten in windows xp?
Can you tell me how to change the admin password in the BIOS under Windows XP if I forgot the original? Thank you.