Problem WCCP or routing

Hello

We have two centres of data logical LAN even.

Two routers ISP and two WAE 674 and the help of WCCP "evacuation-method negotiated return of interception-method wccp.

See the attached file.

The problem is when one of the interface WAN 'line' falls down, some of the network is not accessible from the side LAN and some.

We use BGP as routing protocol in the ISP routers.

Any suggestion for the problem?

Jan

Hi Jan,

What is suspect here is the WCCP.

When you configure, it allocates buckets if you use hash assignment. If you use a mask, it calculates the mask according to your destination / source ip address.

Now, what I understand is - if WAN fails, some networks is not accessible.

When LAN goes down, WCCP breaks down and starts running smooth.

A few questions:

1. what happens if LAN drops but WAN remains upward? WCCP remains active state / usable?

2 when WAN breaks down and the remains of the LAN upward, your WCCP is still in PLACE and so it continues to transmit packets of same WAN interface but because this interface is down, the packages ultimately die / gets blackholed.

3 another speculation is: asymmetric routing. When WAN is down but LAN is in place, you transfer a portion of the traffic off LAN but as WAN falls down, return packets can arrive on a different interface and creates an asymmetric routing.

To reduce this problem, please enter interface in three stages:

1 WAN - LAN - UP, down, is accessible from router ID?

2. IN WAN, LAN - down, is accessible router ID?

3. WAN downwards, towards the low LAN, is the accessible router ID?

CLI to capture logs:

2. show ip wccp
3 view the details of interface ip wccp
4 show ip wccp service
5 show ip wccp details
6. specify ip wccp internal (*)
7 show running-config
8 show ip wccp hash<61 62="">
9 sh wccp mask tcp-promised
10 HS tech

In addition, as you use GRE encapsulation for redirection of WCCP, the router uses the router address IP ID as its IP source address. The router ID IP address is the loopback address higher on the router, or if the loopback interface is not configured, the router ID IP address is the highest address of the physical interfaces. The router address IP ID is used as the source address for redirected packets from the router to the Cisco WAE and accordingly, it is also used as a destination address for the Cisco WAE to the router traffic, therefore, you must be sure that a route is defined between the router Cisco WAE. This is done by configuring a static route on the Cisco WAE to address IP router ID. The router ID can be identified with wccp routers see command on the Cisco WAE.

As in your case, you have multiple routers, a static route must be added to each router IDs. These router command to configure static routes is:

WAE (config) # ip route
Can you please try above and let us know if it works?
Kind regards.

Tags: Cisco DataCenter

Similar Questions

  • Problem with new router WRVS4400N

    I recently bought a new Cisco WRVS4400N router for our network which has 19 computers connected to a switch of 24 ports.  We currently use a D-Link router and migrate to the Cisco router.  The problem I have is that as soon as I connect one of our servers or the switch 24 ports to the Cisco router I can no longer access the internet or the connection to the network, I can also access the routers of each server configuration.  If I connect the router to make a stand-alone computer I can access the configuration and change things, but as soon as I connect the server or switch 24 ports everything dies (all lights are green on the router but if everything is connected).

    Has anyone experience this problem with this router?

    Any help would be greatly appreciated.

    Kind regards

    Shawn

    Hi Shawn,

    Thank you for posting. The server provides DHCP on your network? If so, disable the DHCP server on the WRVS4400N before you connect it to your network.

  • ASA5505 problem of asymmetric routing? (I think)

    Good evening everyone,

    I'm looking for suggestions for a solutoion I met today... I am installing a new router and firewall into an existing network. The router is an Edgewater VOIP router to a cable connection with static IP. The firewall is an ASA5505 (security more). There is a third-party router in the mixture (Cisco 1841) which has a PTP connection goes to another site. I'll try to verbally explain the architecture of the network:

    Unfortunately, the existing network was flattened on a 19 on which I'm not allowed to change so:

    VLAN 1 = data network (they used a large 19)

    VLAN 40 = voice (for VOIP phones)

    Edgewater Port 4 > UNTAG 1, tag 40 > ASA5505 Port 0

    Edgewater Port WAN > Cable Modem

    Edgewater DHCP Server for VLAN 40

    ASA5505 Port 0 > UNTAG 1, tag 40 > router Edgewater

    1 port ASA5505 > UNTAG 1, tag 40 > Cisco 2950 FE0/4 (set manually vlan the native 1 2950 to work)

    2 port ASA5505 > UNTAG 1, tag 40 > Cisco SG300 Gig1

    Voice of ASA5505 route 0.0.0.0 0.0.0.0 VLAN40_IP_OF_EDGEWATER

    ASA5505 data route 0.0.0.0 0.0.0; 0 VLAN1_IP_OF_EDGEWATER

    ASA5505 DHCPD for VLAN 1 (small subnet, the rest is ready for static with a gateway from the Cisco 1841 (infrastructure))

    Cisco 2950 4 > UNTAG 1, tag 40 > ASA5505 Port 1

    Cisco 2950 GIg1 > UNTAG 1, tag 40 > Cisco 2950 B

    DG of Cisco 2950 a = IP of Cisco 1841

    Cisco 2950 B Gig1 > UNTAG 1, tag 40 > Gig1 Cisco 2950 (rising MM fiber)

    Cisco 2950 B FE11 > UNTAG 1, tag 40 > Cisco 1841 FE0/0

    Cisco 2950B DG = IP of Cisco 1841

    Cisco 1841 FE0/0 0/0.1 dot1q native 0/0.40 dot1q 40 > FE11 Cisco 2950 B

    Road to Cisco 1841 ip 0.0.0.0 0.0.0.0 firewall VLAN 1 Interface IP (Changed to ip route ip VLAN40_NETWORK VLAN40_IP_OF_EDGEWATER and VLAN1_NETWORK VLAN1_IP_TO_ASA5505)

    Cisco also has internal IP routes through the private point of connection to another site...

    I'm replacing out of their existing connection is a sonicwall firewall and adding a few new POE switches for VOIP phones, VOIP router and an ASA5505. I can't play nice no matter what I tried. It seems that I am running into problems of asymmetric routing (ASA send me some)

    Deny TCP (no relation) on the VLAN 1 static and given dhcp VLAN40 DHCP handed the Edgewater works fine, I can browse on without any problem)...

    I'm not sure what the best approach is to do this. They need to keep the 1841 for now until a connection VPN of STS can be configured with the ASA5505 to their ASA5510 at the other site (months on the road by their budget). All of their PC is statically allocated and using their default gateway as the C1841.

    If you need output all configs I created so far or havy of suggestions on how to solve my problem, I'd love to hear about them. I tried everything short of re - structuring their entire network or deletion of my VOIP router that manages a large number of configurations for VOIP PBX phones.

    Thank you!

    Jon

    Apologies, but this is a very confusing description of how it is configured.  A diagram would probably help.

    If the new VoIP router's DHCP server for vlan 40 where are the customers compared to this?

    You have two lanes on the SAA pointing the VoIP router, what is the reasoning behind this?

    Why are you the ASA to the router VoIP trunking?

    The VoIP router can hand out DHCP addresses for a network, that it is not directly connected or is it why you extended vlan 40 completely out to the VoIP router?

    The router VoIP must give the vlan 40 IPs.

    I guess maybe it's to do with my lack of understanding as to exactly what does a VoIP router (as opposed to a normal router).

    So maybe you could clarify?

    Jon

    Jon

  • Microsoft Update problems with Belkin router

    I installed the last Microsoft Update (yesterday) and from that moment, my router works.  I confirmed that the router is fine (it sends the signal without problems to other devices) so I'm sure it was the Microsoft update that caused the problem. How to take care of this problem?  I have a Belkin F7D2301 Surf v1000.  Any help you could provide would be much appreciated.

    In fact I thought to it.  There was an update that was missing from my Belkin (for some reason, the update was not necessary before the update).  As soon as I installed the update (click on "check for updates"), the problem has been resolved.  Thanks for your help, if.

  • Problem with wag160N router wireless

    Hi all. Sorry for the typos etc I am new in the forum :-). Please, if the subject has moved to another subforum do it.

    So, here's the problem: last week, I bought the WAG160N wireless-N adsl2 + modem router (version 2) and yestreday I formatted my laptop 2, so today I decided to install a new one.

    I work 2 hours on it now, but still I can't find a solution. I started with the first cd, as required by the guide. Everything works well until the installation wizard step that attempts to connect to the router. At this point, he's looking for 5 minutes and then he said that he is not able to communicate with the router and wonder to check the connection again. I connected everything as it should (the gray wire of telephone jack to the socket of the router that says DSL, cable - ethernet - yellow of Gate 1 of the router ethernet for the laptop and then the AC/DC to the router and power.) I click next to the installation wizard, then he said to the power on the router... I do it and it checks then 5 minutes and again, he says that can't find it and tell me to double check and the story goes like this. I made 6 - 7 times but nothing. I also used the netwotk magical Wizard that was installed to fix the problem (because it recognizes that there is connection problem), but is not able to set in! What should I do? The ISP said that they don't sell Linksys products for their stores (I do not know the ISPS work on other countries, here they sell routers, adsl packs ect in their store) so they can't provide me with support. Can someone help me? Its the first time I use a linksys for me product and I don't know how to install it without the cd.

    I use windows vista pre sp2 on two laptops.

    I must also say that I have no problem with the ethernet connection the baudtec my ISP gave in the pack, that I bought when I activated my ADSL (2 years ago). IM connected with it now to view the topic.

    Sorry for my bad English and im sore right now that I can't think of what other info you might need, post and I will answer you.

    Thx for reading.

    Hello

    Connect your device directly to your pc via ethernet cable.

    Try to find the ip address of your device using the arp - a command

    Try to ping your router/adsl with address (192.168.1.1) ip of the device. u should get a response, if no response then in your pc check the LAN connection properties and enable DHCP.

    If you get always no response to ping the device, try and set an ip address in the range (192.168.1.1 or whatever your ip devices). Now, try to configure the device to cd Wizard help.

    Correct me if im wrong.

    Concerning

  • Signature problems, the wireless router.

    I have a problem of signing on the internet through a Linksys WRT54G2V1 wireless router model. I use Windows Vista Service Pack 2. When I start my computer, it is not the sign on the internet, even if it is connected to the wireless router. Address ip/4 shows 169.254.42.23. After I unplug the router for 20 seconds and then plug it in again, my computer will sign it on the internet. 192.168.1.100 is the ip/4 address. In the meantime, my wife's computer has no problem signing on the internet via the wireless router. When I start my computer, it uses the address 169.254. He has only started to do this recently. What should I do to fix my sign on the problem?

    Hello

    Have you tried the steps suggested by Yakub K for the same problem?

    If this isn't the case then try the steps and let us know the results.

    Put on the link: http://answers.microsoft.com/en-us/windows/forum/windows_vista-networking/problems-while-trying-to-access-internet-using/21c0ea5f-5ce7-4d9a-b4bd-28fafa4d023e.

  • Windows 7 a * beep * terrible internet connectivy problems due to router linksys!

    Well, it's a very long story which lasts for a total of 6 months, and I solved some problems, but simply kept coming. I'll tell you the problems that I meet now, to shorten the story. So in late November 2009, I upgraded my computer toshiba windows vista 64-bit for windows 7 64 bit with 4 GB of ram. Anyway, this computer is very good, fast, and I keep it in good condition. However, internet issues connectivy are the only bad thing. From my experience of 6 months with these issues under internet, I concluded that the problems are now: the computer cannot connect to the home network authication failed, but I KNOW for a fact the I typed the password of secuity in my network correctly and got all the correct network name and secuity settings! Second, I have the ip address conflict with another computer on my network, but I don't think it's the cause for prevents me loading of pages on the internet, since I changed the manuelly of ip address to the other pc to something else.

    Until that moment I really only have one problem. I think that this is due to miscommucations with my pc and the router. The weird thing is sometimes I'm able to do everything on the internet without any problem, but sometimes only. This is what is happening, I cannot connect to my network or you are disconnected, my internet is very very slow, the pages will be load but be blank.

    I use and roadrunner, so yes to wireless broadband.

    I don't really know the solution, but I know that all the other computers and devices on my network (2 wireless computers, a plugged into the router, 2 ipods, wii, xbox360) connect very well, but my computer is the only one that works on windows 7 and was made by toshiba.

    Other information that I need you say?

    Please help me!

    You makes me very happy and destroy my stress.

    Thank you, and best regurads you all faced with questions or help solve them.

    Thanks for the help guys, but I was finally able to buy a new router. AFAIK is linksys routers do not work so well, espeically bad with windows 7.

    It is used to say my experience. In any case the new router works pretty well so far. I don't have not been disconnected from the internet, so

    It's a good sign.

    Thank you, again.

    PS Si I tried one of your methods of guys to solve the problem, but thanks.

  • Problem setting default route

    I have a SG300-20 configured with 4 VLANS, 1, 10, 20, 30. It is configured to the L3.  I use this for my lab to the home network.  VLAN 1 is connected to my cable modem and gets it's IP address and the gateway via DHCP.  I have a host on VLAN 20 and VLAN 10.  I can ping from one host to another host very well.  I can ping the switch for the hosts and the switch to cable modem and internet.  I can't ping a host on the cable modem or the internet.

    Here is the relevant switch (hidden IPs) config:

    #sh int ip

    IP address I / F Type achieved priority status

    Broadcast

    ------------------- --------- ----------- ---------- ---------- -----------

    76.xxx.xxx.XX/20 vlan 1 disable invalid DHCP

    192.168.10.1/24 vlan 10 static disable invalid

    192.168.20.1/24 vlan 20 static disable invalid

    192.168.30.1/24 vlan 30 static disable invalid

    #sh ip route

    Maximum parallel paths: 1 (1 after reset)

    IP routing: enabled

    Codes: > - best, C - connected, S - static

    S 0.0.0.0/0 [1/2] via 76.xxx.xx.x, 21:43:15, vlan 1

    C 76.xxx.XX.0/20 is directly connected, vlan 1

    C 192.168.10.0/24 is directly connected, vlan 10

    192.168.20.0/24 C is directly connected, vlan 20

    C 192.168.30.0/24 is directly connected, vlan 30

    It would appear that the switch routes between all the VLAN except VLAN 1.   Any ideas what I'm missing here?

    Hi Brandon, I think the problem is that you expect from NAT to work. It feels like for me the VLAN 1 has the internet connection and you try to put the other 3 virtual local networks on the internet.

    In theory, you are right on but it does not work without NAT. The switch is not as compatible NAT.

    -Tom
    Please mark replied messages useful

  • CONNECTION PROBLEMS WITH THE ROUTER (NETGEAR) - no problem with the provider of speed as it has been checked__

    • Programs you have problems with - very slow connection with all pages
    • Error messages - on the profile of my son is unable to connect at all with the error message
    • Recent changes made to your computer - windows 7 but added meeting the problem before this
    • What you have already tried the problem - claimant contacted no problem with their connection

    Remember - this is a public forum so never post private information such as numbers of mail or telephone!

    Hello

    Reinstall the NIC drivers
    Reset the router and check.

  • Help for BBM blackBerry Smartphones &amp; Facebook does not not for 9320 - problem with "host Routing Table? -Virgin

    So, today I received my new 9320 at Virgin Mobile, first Blackberry & love the phone! but I can't use the BBM or Facebook app...

    At first I could not even access the browser while that connected to my wifi... then I phoned Virgin & they helped me to reset the settings on my BB that I could use the browser etc...

    I thought it was problem solved, until I discovered BBM and Facebook, use app world separate service? Anyway, I phoned up to Virgin because I wanted to do this job, they are included in my package & I did not understand why I can't access any of them...

    After a long phone call the problem has proved that the "host routing table" was empty and (according to in Virgin) there is a problem with new BlackBerry receiving these details... they said this isn't a problem on the end there & told me there is nothing more they can do so to click 'register now' and wait for the details...

    24 hours later and nothing, so I hope someone here can help me, make me a BB the whole point is things miss me actually lol and I feel now I'm paying for a phone contract I can't really use it, without any help from my provider?

    Any help?

    Or

    Anyone with a new BB knows something like that recently? Thank you

    Wow... Virgin you gave really there. You see, you PAY for 100% of your services and 100% of your formal support... at the moment, they seem to be or you deliver. Only they have the ability (in fact the RESPONSIBILITY!) to degenerate RIM requiring improved support of cases (from your description, it must be that... with a HRT empty, nothing that anyone here can do). End users have no free path to receive assistance from the RIM at all - only via the escalation. So, what I would do if I were you, is their ring back... but this time do not let you fob OFF... insist that, because you HAVE them, you have a contract with them and they are about to be in violation of this contract - they must solve your problem, degenerate into RIM if they wish.

    Good luck!

  • problem with WRVS4400N router.

    Hello

    I have a problem with the new WRVS4400N router.

    After you have connected to my modem infrastructure and configured WAN configuration with my ISP provider,

    ISP see I am connected, I see that I am connected, get a GREAT link and link of 70M, about speed.

    Yet not be able to access the web trying to leave a different devices (TABLET, laptop) or different (WiFi, Ethernet cable) connections.

    When I am connected directly to modem infrastructure, Internet access is successful.

    In addition, what router previous (EDIMAX) which was also connected and I tried, access to the web succeeded.

    Can you please help me solve this problem?

    Not able to understand what is the problem.

    Thank you

    Can you access the WebGUI of the WRVS4400N when it is connected to the modem catch up.

    This is a cable modem?

    Try restarting the Modem, then once all lights went solid/normal and modem is stable, restart the WRVS4400N and try again.

    What about Simon
    http://www.linksysinfo.org

  • Problem with IKEv2 routes w using PSK and RADIUS

    Hello

    I have a 7 881 + (15.2 (4) M2) connected to a 1001 ASR (03.07.01.S) via the Internet. The goal is to set up DVTI on the ASR, use FlexVPN on the CPE and inject crypto IKEv2 itineraries in the VRF on the EP for subnets protected on the SCE when using pre-shared key for authentication and RADIUS to return the attributes.

    I can get the tunnel works fine, but I can't get the cryptographic routes.

    My configs:

    7 881 + CPE:

    Crypto ikev2 keyring Keychain-CPE

    peer ASR

    address

    pre-shared key abcd

    !

    Profile of crypto ikev2 IKEV2-PROFILE-CPE

    match one address remote identity 255.255.255.255

    identity local fqdn cpe.ipsec.net

    sharing front of remote authentication

    sharing of local meadow of authentication

    Keyring key chain local-CPE

    DPD 30 2 periodic

    !

    Crypto ipsec transform-set esp - TFS-AES256-SHA-HMAC-aes 256 esp-sha-hmac

    tunnel mode

    !

    by default the crypto ipsec profile

    game of transformation-TFS-AES256-SHA-HMAC

    profile ikev2 IKEV2-PROFILE-CPE

    !

    Crypto ikev2 client flexvpn FLEX

    Peer 1

    Customer inside Loopback0

    customer connect Tunnel0

    !

    interface Loopback0

    IP 255.255.255.255

    !

    interface Tunnel0

    the negotiated IP address

    source of tunnel Dialer2

    ipv4 ipsec tunnel mode

    dynamic tunnel destination

    tunnel protection ipsec default profile

    PE OF THE ASR:

    Authorization group to the network IPSEC-AUTHOR of AAA AAA-GROUP-IPSEC-RADIUS

    !

    Crypto ikev2 60 2 dpd periodicals

    !

    Profile of crypto ikev2 IKEV2-PROFILE-ASR

    corresponds to fvrf FVRF

    match identity fqdn remote domain ipsec.net

    sharing front of remote authentication

    sharing of local meadow of authentication

    Keyring aaa IPSEC-AUTHOR

    AAA authorization user psk IPSEC-AUTHOR list

    virtual-model 1

    !

    Crypto ipsec transform-set esp - TFS-AES256-SHA-HMAC-aes 256 esp-sha-hmac

    tunnel mode

    !

    by default the crypto ipsec profile

    game of transformation-TFS-AES256-SHA-HMAC

    the value of RADU ikev2-profile

    answering machine only

    !

    type of interface virtual-Template1 tunnel

    no ip address

    source of tunnel GigabitEthernet0/0/3

    ipv4 ipsec tunnel mode

    tunnel vrf FVRF

    tunnel protection ipsec default profile

    Definition of RADIUS user name:

    CPE. IPSec.net

    Tunnel-Password = abcd,

    Framed-IP-Address = 172.16.0.254,

    Box-IP-Netmask = 255.255.255.254,

    Cisco-avpair = "ip:interface - config = vrf forwarding test",

    Cisco-avpair = "" ip:interface - config = address ip 172.16.0.255 255.255.255.254 ","

    Cisco-avpair = 'ipsec:route - value = interface',

    Cisco-avpair = "ipsec:route - value prefix = 32",

    Cisco-avpair = "ipsec:route - accept = any"

    The tunnel interface is coming on the CPE, the virtual access interface is implemented on the ASR. I could use BGP to Exchange routing between EP and CPE information, but I want to use IKE.

    I think the problem is because I don't know how to call a permission policy IKEv2 on PBS (in which I could set up a list of access for the ). But on the CPE, I have the following limitations:

    I want to use PSK for authentication, but no RADIUS server is available. So, the only other option for PSK authentication is a Keyring set locally, as there is no way to use a user name defined locally (local authentication) with a set of keys.

    So how can I trigger an IKEv2 authorization under the profile of IKEv2 policy?

    CPE (config-ikev2-profile) list of psk #aaa user authorization?

    The WORD AAA list name

    If I set a local aaa authorization list, then all authentication fails:

    AAA authorization network default local

    Profile of crypto ikev2 IKEV2-PROFILE-CPE

    by default the AAA user psk authorization list

    * 15:52:27.042 Dec 20 UTC: IKEV2-3-NEG_ABORT %: negotiation failed due to the ERROR: exchange Auth failed

    And there is no way to trigger that the authorization policy if I do not set the command above, is not it? I tried to modify the authorization policy by default with access list, but it is not taken into account.

    If I use a card with an access-list and IKEv2 encryption, I can get directions crypto on the ASR. But I want to use FlexVPN on the CPE.

    Is there a way to do this?

    Also the IOS configuration guides are not too useful

    Thank you

    Radu

    . "09:12:42.299 Dec 21 UTC: IKEv2:IKEv2 local AAA asks author ' 87.84.214.31 '.

    . "09:12:42.299 Dec 21 UTC: IKEv2:IKEv2 local AAA - political ' 87.84.214.31 ' does not exist.

    . 09:12:42.299 Dec 21 UTC: authorization IKEv2:IKEv2 162 error

    Not sure how resembles your config, but here it says that it cannot find

    ikev2 crypto 87.84.214.31 permission policy

    <...>

    If it is configured?

  • Problem setting 7606 router for authentication GANYMEDE +.

    Hello community support.

    I have two routers Cisco 7606 I tried in vain to have users authenticated using servers GANYMEDE +. As noted below, I have two servers (1.1.1.1 and 2.2.2.2) accessible via vrf OAM which is accessible from desktop to ssh login. The real IPS and FFS have been changed because it's a router of the company.

    I use two servers to authenticate on a lot other devices Cisco network that they work properly.

    I can reach the vrf servers and the source in use interface. I can also port telnet 49 if the source interface servers and the vrf.

    The server key is hidden, but at the time of configuration, I can see that it is correct.

    The problem is that after confuring for authentication RADIUS, the router always uses the password to enable instead of GANYMEDE. While debug output shows "incorrect password", why not the router authenticates using GANYMEDE? Why is he using the enable password?

    Please review the outputs below and help point out what I may need to change.

    PS: I have tried many other combinations, including obsolete without success, including the method proposed in this page.

    http://www.Cisco.com/en/us/docs/iOS/sec_user_services/configuration/guide/sec_vrf_tacas_svrs.html

    Please help I'm stuck.

    ROUTER #sh running-config | s aaa

    AAA new-model

    AAA server Ganymede group + admin

    Server name admin

    Server name admin1

    IP vrf forwarding OAM

    Ganymede IP interface-source GigabitEthernet1

    AAA authentication login admin group Ganymede + local activate

    AAA - the id of the joint session

    ROUTER #sh running-config | dry Ganymede

    AAA server Ganymede group + admin

    Server name admin

    Server name admin1

    IP vrf forwarding OAM

    Ganymede IP interface-source GigabitEthernet1

    AAA authentication login admin group Ganymede + local activate

    GANYMEDE Server Admin

    1.1.1.1 ipv4 address

    button 7 XXXXXXXXXXXXXXXXXXXX

    GANYMEDE Server admin1

    2.2.2.2 ipv4 address

    button 7 XXXXXXXXXXXXXXXXxxxx

    line vty 0 4

    authentication admin login

    ROUTER #sh Ganymede

    GANYMEDE + - public server:

    Server name: admin

    Server address: 1.1.1.1

    Server port: 49

    Opening of socket: 15

    Firm grip: 15

    Write-offs of socket: 0

    Socket errors: 0

    Socket timeouts: 0

    Failed connection attempts: 0

    Total packets sent: 0

    Recv packets total: 0

    GANYMEDE + - public server:

    Server name: admin1

    Server address: 2.2.2.2

    Server port: 49

    Opening of socket: 15

    Firm grip: 15

    Write-offs of socket: 0

    Socket errors: 0

    Socket timeouts: 0

    Failed connection attempts: 0

    Total packets sent: 0

    Recv packets total: 0

    Oct 22 12:38:57.587: AAA/BIND(0000001A): link i / f

    22 Oct 12:38:57.587: AAA/AUTHENTIC/LOGIN (0000001 a): Select method list "admin".

    Oct 22 12:38:57.587: AAA/AUTHENTIC/ENABLE(0000001A): action of treatment application LOGIN

    Oct 22 12:38:57.587: AAA/AUTHENTIC/ENABLE(0000001A): reported GET_PASSWORD

    Oct 22 12:39:02.327: AAA/AUTHENTIC/ENABLE(0000001A): action of treatment application LOGIN

    Oct 22 12:39:02.327: AAA/AUTHENTIC/ENABLE(0000001A): reported FAIL - wrong password

    22 Oct 12:39:04.335: AAA/AUTHENTIC/LOGIN (0000001 a): Select method list "admin".

    Oct 22 12:39:04.335: AAA/AUTHENTIC/ENABLE(0000001A): action of treatment application LOGIN

    Oct 22 12:39:04.335: AAA/AUTHENTIC/ENABLE(0000001A): reported GET_PASSWORD

    Oct 22 12:39:08.675: AAA/AUTHENTIC/ENABLE(0000001A): action of treatment application LOGIN

    Oct 22 12:39:08.675: AAA/AUTHENTIC/ENABLE(0000001A): reported FAIL - wrong password

    22 Oct 12:39:10.679: AAA/AUTHENTIC/LOGIN (0000001 a): Select method list "admin".

    Oct 22 12:39:10.683: AAA/AUTHENTIC/ENABLE(0000001A): action of treatment application LOGIN

    Oct 22 12:39:10.683: AAA/AUTHENTIC/ENABLE(0000001A): reported GET_PASSWORD

    Oct 22 12:39:14.907: AAA/AUTHENTIC/ENABLE(0000001A): action of treatment application LOGIN

    Oct 22 12:39:14.907: AAA/AUTHENTIC/ENABLE(0000001A): reported FAIL - wrong password

    ROUTER #sh worm

    Cisco IOS software, software of c7600rsp72043_rp (c7600rsp72043_rp-ADVIPSERVICESK9-M), Version 15.1 (3) S3, RELEASE SOFTWARE (fc1)

    Technical support: http://www.cisco.com/techsupport

    Copyright (c) 1986-2012 by Cisco Systems, Inc.

    Updated Saturday, March 30, 12 08:34 by prod_rel_team

    ROM: System Bootstrap, Version 12.2 SRE (33r), RELEASE SOFTWARE (fc1)

    BOOTLDR: Cisco IOS software, software c7600rsp72043_rp (c7600rsp72043_rp-ADVIPSERVICESK9-M), Version 15.1 (3) S3, RELEASE SOFTWARE (fc1)

    The availability of ROUTER is 7 weeks, 5 days, 16 hours, 48 minutes

    Availability for this control processor is 7 weeks, 5 days, 16 hours, 49 minutes

    System returned to ROM by reload (SP by charging)

    System restarted at 20:00:59 UTC Wednesday, August 28, 2013

    System image file is "sup - bootdisk:c7600rsp72043 - advipservicesk9 - mz.151 - 3.S3.bin.

    Last reload type: normal charging

    Reload last reason: power

    This product contains cryptographic features and is under the United States

    States and local laws governing the import, export, transfer and

    use. Delivery of Cisco cryptographic products does not imply

    third party approval to import, export, distribute or use encryption.

    Importers, exporters, distributors and users are responsible for

    compliance with U.S. laws and local countries. By using this product you

    agree to comply with the regulations and laws in force. If you are unable

    to satisfy the United States and local laws, return the product.

    A summary of U.S. laws governing Cisco cryptographic products to:

    http://www.Cisco.com/WWL/export/crypto/tool/stqrg.html

    If you need assistance please contact us by mail at

    [email protected] / * /.

    Processor CISCO7606 - S (M8500) Cisco (revision 1.1) with 3670016 K/K 262144 bytes of memory.

    Card processor ID FOX1623G61B

    PLINTH: RSP720

    CPU: MPC8548_E, Version: 2.1 (0 x 80390021)

    KERNEL: E500, Version: 2.2, (0 x 80210022)

    CPU:1200 MHz, CCB:400 MHz, DDR:200 MHz,

    L1: D-cache 32 KB active

    I'm hiding active 32 KB

    Last reset of tension

    3 virtual Ethernet interfaces

    76 of the gigabit Ethernet interfaces

    8 ten interfaces Ethernet Gigabit

    3964K bytes of non-volatile configuration memory.

    500472K bytes of the map of PCMCIA ATA internal (512 bytes sector size).

    Configuration register is 0 x 2102

    To resolve this problem. Please replace the below listed order

    AAA authentication login admin group Ganymede + local activate

    with;

    Enable AAA authentication login default local admin group

    You have set the group name server as a list of methods and instead use admin as a group of servers, you used Ganymede +.

    Note: Please ensure that you have local users and enable the password configured in the case of Ganymede inaccessible server.

    ~ BR
    Jatin kone

    * Does the rate of useful messages *.

  • VPN problem - "C1712 behind router Linksys ' connection to PIX515e

    Hi all

    I have a question about VPN (lan-to-lan).

    My setup is the following:

    10.1.20.x-[PIX515e_central site VPN concetrator]-(( ISP ))-[LINKSYS BEFSX41 router]-[Cisco1712_branch] - 192.168.14.x

    I would like to create tunnel VPN between C1712 and PIX515 (lan-to-lan), so users of 192.168.14.x would be able to connect to servers located on a central site in network 10.1.20.x.

    NAT - T is manually enabled on PIX and 'IPsec passtrough' is enabled on the Linksys router. Then what should I do now to create a VPN tunnel?

    What is the basic C1712 and PIX515e configuration to make it work?

    All other industries (8) work, but they are directly connected to the internet via C1712, so without router Linksys in front of him. Thus, PIX is already properly configured for this configuration.

    I guess that the installer with Linksys router does not work because of PAT.

    6.3 (4) version PIX

    C1712 Version 12.4

    Please advise!

    Thank you very much in advance!

    This line is incorrect on the router configuration:

    IP nat inside source list 6 interface FastEthernet0 overload

    Please, remove it and have her take:

    overload of IP nat inside source list 101 interface FastEthernet0

    Hope that solves this problem.

  • Problems setting up router WRT1900ac and fiber

    I feel that my question is so obscure that I won't be able to get a lot of help here, but I'll post anyway.

    First of all, I live in the Philippines. My ISP is PLDT. I have FTTH - fiber to the home. My internet connection is DHCP - no login or password. I thought that perhaps they checked the serial number on the modem to see if I was an authorized user but apparently not; They told me if I wanted to buy another optical modem, I could and that I wouldn't need to do anything to save it on the network, but that they could not provide me with a list of modems that would work.

    They delivered to me with a router/modem made by a company called FiberHome. "Like the big business of high-tech directly affiliated to belonging to the active state of oversight and Board of Directors of the Council of State, FiberHome Technologies is the company of the kernel located in Wuhan Optics Valley of China."

    The model number is AN5506-04-FG. There are very few configurable on this. Can I change my wifi network name (they insist that the name of the network begins with PLDTHOMEFIBR, no idea why) and a few passwords here and there. For the most part, I just post status on the LAN and WAN.

    Therefore, because it is so little that I can do with it that I decided that I needed a router/gateway and not simply an Extender. I bought the WRT1900ac.

    Brought it home, that he repaired, it connected via ethernet cable between a LAN port on the FiberHome on the Internet on the Linksys port.  I then used the WiFi on my iPad to try on the Linksys Setup, try with Safari and Chrome.

    Went to put in place and smart control of Linksys could not understand my internet connection, despite several reboots, power off and cable disconnected, etc.

    So I went to the manual configuration. I put the connection to a static IP address. Following the minimal instructions in the booklet of FiberHome, I put the IP address of the router to 192.168.1.28; the subnet mask of 255.255.255.0; This gateway 192.168.1.1 (internal IP of the fiber to the home, address) DNS of Google DNS.

    This would actually work - but only for a few minutes at a time. Then the network diagram would show that I was always connected to the FiberHome but no connection to Internet in addition. (Although my PC, connected to the FiberHome via a LAN cable, still had access to the internet.)

    I used the live chat Linksys to ask an agent to this topic. She said that my gateway setting is correct. She had me reset the router and try again, but he could not yet know the connection to the internet on its own. She had me download the iOS app and try there, but same result. So I received a ticket number and ended the chat session.

    Now, I tried to set the internet connection on the router at the bridge. But once I did, I was unable to connect to the router via WiFi. I needed to do a reset to be able to access it again.

    At this point I called my ISP. They told me that if I wanted to add another router like that, they would need to reset my router/modem FiberHome bridged mode. But they are unable to do it remotely and cannot (or don't want to) give me instructions on how to do it myself.  They need to send a technician to my home. They could not tell me when. I have to wait for a call. (I got a ticket number).

    This means that for now, I have a blue and black, sitting bins there, I can't do anything with.

    So I'm waiting, I thought I'd post this in the hope that someone might have some ideas configuration I could try or for the general amusement of peoples.

    Thank you!

    You may have a conflict between the two routers in IP subnet. In this case the WRT1900AC will change it's default subnet to 10.x.x.x instead of 192.168.1.1

    You can find the new IP address of the router by looking at a customers connect ITI information IP address appears as the default gateway.

Maybe you are looking for

  • Cannot move the window when hiding the menu bar

    I can't drag the window of firefox when hiding the menu bar. Looks like by dragging the empty box next to the tabs does not work. I have to activate the menu bar which is pretty ugly, whenever I want to move the window. Any advice?

  • Record from VCR on the Qosmio F10 - 101 - no video

    I read a lot of topics but I need some information additional regardin my problem I myself Qosmio F10-101 I tried to record from my VCR on computer, I connect the VCR output to monitor using the came with a computer cable laptop but audio is here and

  • Lenovo P780 - Sim Card problem

    Hello I bought lenovo P780 2 months back. Suddenly, he is not able to detect one of my sim cards, sim cards are active. Cannot send messages, make calls. Told that emergency calls only. Please suggest a solution.

  • Mail - printing problem

    Hello A part of the text of my emails do not print correctly. All seems perfect in the screen, but when I printed, part of the text seems to small places. I've tried three different printers: inkjet, Color Laser and Laser of BW. Everything is the sam

  • HP YOU ARE FRUSTRATING ME! Windows 7

    I got my laptop repaired by a person, and they have installed Windows 7 Ultimate on in after it crashed. Aparently this version of windows is COUNTERFEIT and almost 2 years later I am told that the computer no longer works. I went online HP Support a