background preloader

Cisco

Facebook Twitter

Cisco EVPN Part 3 (VXLAN with MP-BGP) 10Min. Cisco Firepower Management Center for VMWare 6.4.0.7 Build 53 (fpmc.hrz.uni-giessen.de) - g065. Cisco Firepower Threat Defense Configuration Guide for Firepower Device Manager, Version 6.2.2 - Getting Started [Cisco Firepower NGFW] If you connect to Firepower Device Manager through the inside interface, you might find that the setup wizard hangs when you click Next during step 1, where you configure the outside interface.

Cisco Firepower Threat Defense Configuration Guide for Firepower Device Manager, Version 6.2.2 - Getting Started [Cisco Firepower NGFW]

Note that normally it takes a while to complete this step, so hanging means that it continues for 10+ minutes. If you refresh the browser, you will see that you have lost the connection to Firepower Device Manager. (If you connected through the management IP address, the wizard does not hang, but you might still have a problem as described in the symptoms below.) The most likely reason this happens is that both the outside and inside interfaces were assigned addresses on the same subnet, which results in the inside interface losing its configuration. The default configuration includes a static address on the inside interface, and a DHCP server, so that the device is functional and can pass traffic and support attached workstations immediately after you complete the setup wizard. How To Send a Customized Trap Using EEM. Starting with the Embedded Event Manager (EEM) version 3.0, it is possible to generate a customized trap from an IOS device.

How To Send a Customized Trap Using EEM

This trap can either be an existing trap (e.g. one which the device already supports) or a completely new trap with a customized enterprise, trap Object Identifier (OID), and variable bindings (varbinds). Customized traps can be sent from both applet and Tcl policies. To determine if your device supports EEM 3.0, run the following command: Router#show event manager version The first line of the output is the EEM version. EEM script to capture logs when Double-... Problem Double-bit ECC error causes LC reboot as soon as the error is seen, hence we do not have sufficient time to capture all the logs whenever Double-bit ECC error is seen.

EEM script to capture logs when Double-...

In eXR system the issue is more severe as the logs captured after Double-bit ECC error is stored in LC disk. The logs are lost incase the LC is replaced with a different LC. Solution. Cisco EEM Best Practices. Introduction In the years since the introduction of Cisco's Embedded Event Manager (EEM) many EEM policies have been developed inside and outside of Cisco.

Cisco EEM Best Practices

In the development of those policies many lessons have been learned about what works best and what does not. ESXi and Flow Control – Rickard Nobel. How to enable and verify Ethernet Flow Control for VMware ESXi with iSCSI / NFS.

ESXi and Flow Control – Rickard Nobel

Flow Control could help physical switches to prevent frame drops under very high network traffic congestion. Flow Control is typically used in IP storage networks. The Ethernet standard 802.3x defines the usage of Flow Control and the Pause Frame fields. It is often recommended from storage vendors to enable Flow Control on the Ethernet networks used for IP based storage (iSCSI and NFS). In this blog post we shall see how to enable Flow Control on ESXi and the physical switches and also how to verify on both sides that Flow Control has been successfully negotiated.

Verify with your specific SAN / NFS vendor what their recommendations are for Flow Control for the storage network with ESXi. Flow Control was defined in the 802.3x standard as early as 1997, but is not really commonly used. The PAUSE period on 1 Gbit/s ports can be maximum 34 milliseconds. GRE Tunnel MTU, Interface MTU, and Frag... - Cisco Community. Whenever we create tunnel interfaces, the GRE IP MTU is automatically configured 24 bytes less than the outbound physical interface MTU.

GRE Tunnel MTU, Interface MTU, and Frag... - Cisco Community

Ethernet interfaces have an MTU value of 1500 bytes. Tunnel interfaces by default will have 1476 bytes MTU. 24 bytes less the physical. Why do we need tunnel MTU to be 24 bytes lower (or more) than interface MTU? Because GRE will add 4 bytes GRE header and another 20 bytes IP header. If your outbound physical interface is configured as ethernet, the frame size that will cross the wire is expected be 14 bytes more, 18 bytes if link is configured with 802.1q encapsulation. What is output flow-control? - 60111. Troubleshoot TX Pauses on Nexus 2232. Introduction This document describes the information in order to help troubleshoot Transmit (TX) pauses on Nexus 2232 Host Interface (HIF) ports.

Troubleshoot TX Pauses on Nexus 2232

It focusses on traffic in the Host to Network (H2N) direction (traffic that comes in from the servers towards network, south to north). It does not cover scenarios related to Network to Host (N2H) traffic flows. Cisco 880 bzw. 890 Router Konfiguration am ADSL oder VDSL Anschluss inkl. VPN und IP TV - Administrator. Designing Large-Scale IP Internetworks.

From DocWiki This article focuses on the following design implications of the Enhanced Interior Gateway Routing Protocol (IGRP), Open Shortest Path First (OSPF) protocols, and the Border Gateway Protocol (BGP): Enhanced IGRP, OSPF, and BGP are routing protocols for the Internet Protocol (IP).

Designing Large-Scale IP Internetworks

An introductory discussion outlines general routing protocol issues; subsequent discussions focus on design guidelines for the specific IP protocols. Implementing Routing Protocols The following discussion provides an overview of the key decisions you must make when selecting and deploying routing protocols. Network Topology The physical topology of an internetwork is described by the complete set of routers and the networks that connect them.

Some routing protocols do not use a logical hierarchy. Other protocols require the creation of an explicit hierarchical topology through establishment of a backbone and logical areas. Figure: Hierarchical network. Kann der Cisco 866VAE VDSL Vectoring (und ein Blick in die DSL Firmware) - Administrator. TL;DR Version Antwort: Nein¹ (ausgenommen die WLAN-Modelle), und er wird es wohl auch nie können.

Kann der Cisco 866VAE VDSL Vectoring (und ein Blick in die DSL Firmware) - Administrator

Original-Ton des Cisco Supports: (…) we found on a documentation from BU team expert in the technology and they have informed that the issue here is that the ISR 866/867VAE series had no testing performed for Vectoring and these are not designed to have upgradable firmware, so there is no firmware release made for these series of routers. Currently none of these routers support the G.993.2 Vector friendly mode. Configuring Cisco SSL VPN AnyConnect (WebVPN) on Cisco IOS Routers. Our Web SSL VPN article written back in 2011 introduced this new wave of VPN services.

Configuring Cisco SSL VPN AnyConnect (WebVPN) on Cisco IOS Routers

This article extends the topic by covering the installation and configuration of Cisco’s SSL AnyConnect VPN for Cisco IOS Routers. Web SSL VPN delivers the following three modes of SSL VPN access: • Clientless - Clientless mode provides secure access to private web resources and will provide access to web content. This mode is useful for accessing most content that you would expect to access in a web browser such as Internet access, web-based intranet, webmail etc. Getting Started with NETCONF/YANG – Par... - Cisco Community. Introduction Cisco has recently introduced NETCONF/YANG support across the enterprise network portfolio. This capability is available in the 16.3 XE code for routers and switches. Monitoring Cisco router NAT translations. TAC said it's in development, but not supported at the moment. In the meantime, I found a script to run cli commands, export it to a MIB which NPM should be able to read and chart: It seems to be working on my ISR 4451 with code: Cisco IOS XE Software, Version 03.16.02.S - Extended Support Release Cisco IOS Software, ISR Software (X86_64_LINUX_IOSD-UNIVERSALK9-M), Version 15.5(3)S2, RELEASE SOFTWARE (fc2) I'm going to copy and paste, in case this page disappears:

Cisco EEM Best Practices - Cisco Community. Introduction In the years since the introduction of Cisco's Embedded Event Manager (EEM) many EEM policies have been developed inside and outside of Cisco. In the development of those policies many lessons have been learned about what works best and what does not. This document strives to outline some of the best practices that have been identified over the years when it comes to Cisco EEM policy design and development. File Naming Convention.

Eem: server has no available thread - Cisco Community. Cli Value 2 Snmp Expr MIB - Cisco Community. SNMP OID to get active static NAT numbe... - Cisco Community. IOS-XE supports the SNMP MIB since 3.15 version And there are at least two methods for a manipulating expression-MIB 1) With EEM Tcl script (The right way) I.e this Tcl script: Cli Value 2 Snmp Expr MIB. Cisco EEM Best Practices - Cisco Community. Introduction In the years since the introduction of Cisco's Embedded Event Manager (EEM) many EEM policies have been developed inside and outside of Cisco.

In the development of those policies many lessons have been learned about what works best and what does not. This document strives to outline some of the best practices that have been identified over the years when it comes to Cisco EEM policy design and development. File Naming Convention. First Hop Redundancy Protocols Configuration Guide, Cisco IOS Release 15M&T - FHRP—HSRP BFD Peering [Cisco IOS 15.4M&T]

Configuring BFD on Nexus NX-OS. BDF is listed in the CCIE Data Center Lab Blueprint as, “1.2.c – Implement BFD for dynamic routing protocols”. In this blog post, I’ll be explaining BFD and going over it’s relevance for dynamic routing protocols. Without further ado. Bidirectional Forwarding Detection. Hot Standby Router Protocol (HSRP): Frequently Asked Questions. Introduction This document addresses the most frequently asked questions related to Hot Standby Router Protocol (HSRP). Q. Configuring vPC to Suspend Orphan Ports – Majornetwork. Routing over Nexus 7000 vPC peer-link? Yes and No.

This is a Nexus 7000 design question that comes up from time to time: In a Nexus 7000 Vpc environment, how can I form a layer 3 adjency between the two switches. Lets say I want to run OSPF and want to create two SVIs on the two switches connected via Vpc, Will the neighborship relation be formed over the Vpc Peer link or is the peer link only designed for control traffic for Vpc. Some people believe that in order to form an L3 adjacency between two Nexus 7000 vPC peer switches you must provision a separate link (other than the peer link) to use for L3 routing. Route-Maps for IP Routing Protocol Redistribution Configuration.

Introduction This document describes commands that you can use to configure route-maps that are applied with the redistribute command of dynamic routing protocols. How to Capture Packets on Cisco Devices... - Cisco Community. We all know that sometimes we need to see the packets. Often however, getting a packet capture in the right place, or spanning the right VLAN’s, can take time. To make capturing packets easier, many Cisco products allow packet captures to be done directly on the devices. Technology and Support - Cisco Community. The Cisco Learning Network Store. Cisco Data Center Virtual Machine Fabric Extender (VM-FEX) Cisco Stealthwatch. Cisco Nexus Series Switches - Password Recovery Procedure for Cisco NX-OS.