• Breaking News

    [Android][timeline][#f39c12]

    Monday, November 26, 2018

    [Update] youtube-dl merged Cisco Live video download support Networking

    [Update] youtube-dl merged Cisco Live video download support Networking


    [Update] youtube-dl merged Cisco Live video download support

    Posted: 26 Nov 2018 10:53 AM PST

    OP: https://www.reddit.com/r/networking/comments/9rr381/i_wrote_a_custom_youtubedl_extractor_for_cisco/

    As of the 2018.11.23 release, youtube-dl upstream supports Cisco Live video downloads. As before, no account/login necessary.

    BTW:
    All the metadata for every presentation, including video and slide deck URLs, are readily available (or inferred) via a single API call. It wouldn't take a whole lot of effort to put together a much more user-friendly index of the whole library, or maybe a Chrome/FF plugin that embeds them right in the library's website. I'm too busy to take that on, but if anyone wants to, I'd be glad to point you in the right direction with the API side of things!

    submitted by /u/austindcc
    [link] [comments]

    Clarifications about Cisco WS-C3850-24XS-S

    Posted: 26 Nov 2018 05:34 AM PST

    Just need to verify:

    Can I connect 24 X 10GB transceivers to it? Can each port be a 10GB link?

    Is it stackable?

    Can I uplink (trunk) it to a Juniper EX3300 stack? If so, how?

    Thanks!

    submitted by /u/poopa
    [link] [comments]

    Basic question - are we getting ripped off?

    Posted: 26 Nov 2018 04:33 PM PST

    Hi,

    I'm not terribly experienced when it comes to networking so some insight would be appreciated.

    We've got Fibre400 (a 400Mbps line) into our office and our IT provider is suggesting we move to Ubiquiti Unifi ACPRO (up to 1300Mbps and low rate of 450Mbps). Our old access point was rated to (450mbps speeds with an average of 200mbps)

    My question is – given our line has a theoretical cap of 400Mbps, the new AP won't give us too much upside (if any)? Or am I missing something?

    submitted by /u/akkatracker
    [link] [comments]

    OSPF Area numbering

    Posted: 26 Nov 2018 01:37 PM PST

    I'm working on a new OSPF design at work and it got me thinking about OSPF Area numbering. What do you guy/girls use? Anything in particular like physical building address or just increments of 5 or 10?

    submitted by /u/Drekalots
    [link] [comments]

    Restoring Firepower FMC or FTD Sensors?

    Posted: 26 Nov 2018 02:45 PM PST

    Has anyone had to restore a failed FMC or FTD sensor? We are using 4100s, and both virtual and physical FMC for different environments...

    I'm going through TAC at the moment to find out what the actual process is, and so far it seems like if your FTD fails and needs to be replaced, you need to...

    • import and configure a new logical device (seems like this is all doable by importing the XML export)
    • delete failed sensor from FMC
    • register new sensor with FMC
    • MANUALLY configure all the interfaces, security zones, NAT rules etc...

    This seems like the only way. Cisco confirmed this and that there is no backup for the sensors, and the device configuration isn't saved or backed up on the FMC

    To restore a failed virtual FMC, you need to

    • Deploy and update a new FMC
    • Install the VDB and snort rules you had when you backed up
    • Restore your FMC backup

    I'm not sure if you then need to register your FMCs again, and how much of the device configuration of those is retained.

    It seems that only the interface configuration is imported.

    Has anyone had the misfortune of having to RA or restore an FMC or FTD before?

    I hate these things so much, and every day it seems like there's another WTF thing made known about them...

    submitted by /u/s0dapop
    [link] [comments]

    Ethernet switches for filtering by EtherType

    Posted: 26 Nov 2018 10:01 AM PST

    Hi everyone,

    we're trying to filter packets by EtherType, so packets with EtherType X are not transmitted from VLAN or port X to Y. It might as well just drop all packets with a certain EtherType, it's not really important.

    I couldn't really find any switches which support this feature and I'm not even sure what to search for really. We're currently using mostly HP ProCurve/Aruba switches which don't seem to support this feature.

    I found a document on the HP website which explains a feature which looks like the one we want.

    They use a ProCurve 5406zl in this document which we have, however ours doesn't seem to support this feature.

    Does anyone have an idea what I could look for and point me into the right direction?

    submitted by /u/z1n
    [link] [comments]

    Urgent Help Please! Novice "VoIPer" been left high and dry. "Call declined" message on desk phone

    Posted: 26 Nov 2018 12:16 PM PST

    Hi all,

    As the title says, i am very new to VoIP and need help with an issue that's causing m,y client a whole lot of grief which causes me a lot of grief.

    So the client has a My PBX with 4 handsets and the service provider is CallClear, which is a South African company i think. I am in SA as well.

    The clients office is situated in a bad place limiting connection options so the internet is a 6mbps download and 2mbps upload line.

    On random outbound calls to random numbers they often get a "call declined" message displayed on the handsets LCD. If they try again an hour or 2 hours later it will go through. The inbound calls are fine. I have tried using the VoIP system through an LTE device with super fast speeds and the same thing happens. so its not bandwidth related. I have spoken to Call Clear and they say its got nothing to do with them and everything is goof on theirs side.

    So it must be the actual PBX settings? Correct?

    Has anyone experienced this before? or have any ideas?

    Which settings should be checked on all PBX? Keep in mind i don't know anything about VoIP but i can following instructions and network tasks.

    Please help! THANK YOU

    submitted by /u/operatorxx
    [link] [comments]

    How do I determine if Firepower modules are managed by ASDM or FMC?

    Posted: 26 Nov 2018 03:47 PM PST

    I work for an MSP and will be tasked with upgrading some ASA 5506-X's that are in a client environment I'm not very familiar with. I have some basic documentation.

    Also, seeing as this is my first ASA with Firepower upgrade - any tips, tricks or gotchas?

    submitted by /u/1010101011111000111
    [link] [comments]

    Terminate solid twisted pair to UBNT in-wall AP?

    Posted: 26 Nov 2018 08:10 AM PST

    I'm thinking about installing some UBNT in-wall APs into an existing environment with low-voltage boxes, wall plates and solid-core twisted pair cabling.

    What's the best way to get the solid cable connected to the 8P8C socket on the back of the AP?

    Options that have occurred to me so far:

    • Snap the existing keystone jack free from its wall plate, stuff it into the box with a 6" patch lead.
    • Re-terminate the wire into something like this toolless plug
    • Re-terminate the wire into something like this (2 pair only - I'd probably shop for a 4 pair option) pigtail connector

    What's the right way to deal with this?

    Do I need to shop carefully for a punchdown solution that matches the gauge of wires in the wall, or is 110 punch stuff a one-size-fits-all soft of deal?

    The plan includes pushing PoE+ down this wire for passthrough to hardwired PoE devices downstream of the AP.

    submitted by /u/kWV0XhdO
    [link] [comments]

    Shortest Path Bridging (SPB) Open Standard

    Posted: 26 Nov 2018 03:34 PM PST

    I have a client who have s Avaya solution with this protocol as Core. But I need a solution for new switches who can work with a similar standard. I have seen TRILL but not sure if this going to work. Any Suggestion

    submitted by /u/marcoslug
    [link] [comments]

    BiDi between cisco nexus not working

    Posted: 26 Nov 2018 03:31 PM PST

    before i start looking for an IOS upgrade just wanted to check here.

    I have a Nexus9000 C9372TX and a Nexus9000 C93108TC-EX (C9372TX ios nxos.7.0.3.I2.2a.bin & C93108TC ios nxos.7.0.3.I4.3.bin)

    in port 53 on both a QSFP-40G-SR-BD

    Ethernet1/53 transceiver is present type is QSFP-40G-SR-BD name is CISCO-AVAGO part number is AFBR-79EBPZ-CS2 revision is 01 serial number is AVFx nominal bitrate is 20600 MBit/sec per channel Link length supported for 50/125um OM3 fiber is 100 m cisco id is 13 cisco extended id number is 220 -------------- Ethernet1/53 transceiver is present type is QSFP-40G-SR-BD name is CISCO-AVAGO part number is AFBR-79EBPZ-CS2 revision is 01 serial number is AVFx nominal bitrate is 20600 MBit/sec per channel Link length supported for 50/125um OM3 fiber is 100 m cisco id is 13 cisco extended id number is 220 

    on the c9372tx i get no lights in the transceiver

    on my C93108TC the transceiver is lit.

    c9372tx

    Eth1/53 1 eth access down check speed-group config auto(D) --

    C93108TC

    Eth1/53 1 eth access down Link not connected auto(D) --

    tried removing the speed group but i get

    C9372TX-10G-01(config-if)# no speed-group 10000 ERROR: Ethernet1/53: Configuration does not match the port capability. 

    any help thanks!

    submitted by /u/jasonbrown23
    [link] [comments]

    Openbgpd Router Filters

    Posted: 26 Nov 2018 05:23 AM PST

    Is it possible to announce Prefix X (Originates in AS X) which peers with AS Y towards Upstream in AS Z?

    AS Y peers downstream with AS X and upstream with AS Z.

    Is there some kind of way to specify outgoing filters per neighbor in Openbgpd?

    Help would be appreciated

    Thanks in advance

    submitted by /u/m_vgt
    [link] [comments]

    RA leakage across VLANs

    Posted: 26 Nov 2018 02:08 PM PST

    Hello everyone, I have been on this issue for a few weeks now and have leveraged our Cisco support(we use ASA firewalls) for assistance but figured it couldn't hurt to reach out to this subreddit. To make a long story short we have several IPv6 subnets in our lab environments and for sometime noticed prefixes from one subnet/VLAN were being advertised on different VLANs. After escalating with Cisco we got a Senior Engineer that helped us out tremendously. We are using SLAAC and not DHCPv6. On our ASA we have multiple subinterfaces/VLANs that have IPv6 enabled and had address autoconfig enabled. Once we disabled address autoconfig the subinterfaces stopped populating themselves with multiple global addresses and this in turn stopped advertisements of the other prefixes through the RA . This made sense to me and this seems to have solved our issue with the exception of just one VLAN.

    For some reason we have one VLAN where our VMs and devices are still generating global addresses from prefixes on other VLANs. We even have a packet capture from a server that shows the local link address of one of the ASAs subinterface on a different VLAN doing its RA. For now we are suppressing RA on all subinterfaces except for two which we need working for some of our dev teams. We do need to have RA enabled on every ipv6 network in the future for SLAAC to work on devices in those VLANs.

    The subinterfaces connect to our switching environment, on the switchport end it is just a trunk port allowing only VLANs we specify(they match the subinterface VLANs on the link). We even had DELL(our switch vendor) check the config and they gave the thumbs up. Though I might need to have them do debugging next time.

    Has anyone heard or seen something similar to this? I have also connected a laptop to a switchport to rule out VMware virtual networking from the equation(DELL network support after analyzing our pcap tried to pass the buck to VMware). So it would be ASA< --> userstack trunkport - userstack accessport <--> laptop. Even with this the laptop was populating addresses based on prefixes from other VLANs in addition to it's own VLAN.

    I have removed certain description and ipv4 information:

    ASA INTERFACE - VLAN 700 is the one with the problem, VMs/devices get global addresses populated from other VLANs, in addition to its own.

    interface Ethernet0/1.1

    vlan 700

    security-level 60

    ipv6 address fd0f:f1c3:ba53:c101::1/64

    ipv6 enable

    ipv6 nd prefix fd0f:f1c3:ba53:c101::/64

    SWITCH INTERFACE - FYI vlan 780/781 are not ipv6 enabled

    spanning-tree portfast

    switchport mode trunk

    switchport trunk allowed vlan 700,780-781

    ASA INTERFACE - used as a test to see if the prefixes listed here appear on VLAN 700, now being RA suppressed

    interface Ethernet0/3.3

    vlan 774

    security-level 60

    ipv6 address fd0f:f1c3:ba53:c105::1/64

    ipv6 enable

    ipv6 nd prefix fd0f:f1c3:ba53:c105::/64

    ipv6 nd suppress-ra

    SWITCH INTERFACE

    spanning-tree portfast

    switchport mode trunk

    switchport trunk allowed vlan 768,772,774,776,778

    ASA INTERFACE - used as a test to see if the prefixes listed here appear on VLAN 700, now being RA suppressed

    interface Ethernet0/2.2

    vlan 712

    security-level 60

    ipv6 address fd0f:f1c3:ba53:c107::1/64

    ipv6 enable

    ipv6 nd prefix fd0f:f1c3:ba53:c107::/64

    ipv6 nd suppress-ra

    SWITCH INTERFACE

    spanning-tree portfast

    switchport mode trunk

    switchport trunk allowed vlan 712,719,764

    SWITCH INTERFACE the test laptop was connected to:

    spanning-tree portfast

    switchport access vlan 700

    Any help or thoughts are appreciated. As of right now on Friday I have a 24 hour maintenance window. I will be plugging in a laptop directly to the ASA interface holding VLAN700. I checked and the laptop has drivers capable of VLAN tagging(tested and working) so I will tag it on VLAN700 and see if global addresses from other prefixes/VLANs show up. This is something Cisco suggested to see if perhaps it is the switching setup causing a VLAN leak or something.

    EDIT: Forgot to add our DELL switches are not RA guard capable.

    submitted by /u/mvindell
    [link] [comments]

    Does Cisco 1921 support 110/11 from ISP?

    Posted: 26 Nov 2018 12:30 PM PST

    Hello - I have 110/11 from my ISP and I was wondering will the Cisco 1921 support the full throughput? If not, please someone recommend me the correct one.

    Thanks!

    submitted by /u/D1TAC
    [link] [comments]

    Windows won't take static routes from DHCP VPN

    Posted: 26 Nov 2018 12:14 PM PST

    Hello,

    We use the Windows VPN with RRAS from Windows, it works great (been doing it for 2 decades). We've been pushing static routes through DHCP (option 121, and is very common). This has worked flawlessly - until today. We have a few machines at a specific customer that VPN in just fine, but not a single static route comes from DHCP. Performing a route print confirms this on a working and non-working machine. This works fine on Vista+ so it isn't a OS version difference.

    I've tried netsh int ip reset but that didn't effect anything. I've also checked all of the network settings and they all seem clean and normal, no manual metrics or other oddities. The machines are remote, so I'd like to avoid the "nuke it from orbit route". (see what I did there?)

    Turning off split tunneling does make things work, but that is expected. Naturally, we want spit tunneling on.

    Clearly something on the client side on a few machines is messed up, but I can't find where it is or even what it is.

    Any ideas?

    submitted by /u/gibsurfer84
    [link] [comments]

    Layer 3 to access with OSPF - area design question

    Posted: 26 Nov 2018 08:11 AM PST

    I am designing my first office with layer 3 up-links to the access switches. There will be 2 core switches and 30+ access switches across multiple IDF's with a single /31 up-link to each core.

    I have a question on whether each access switch needs to be in a unique area (1,2,3...), or can I put all access switches in area 1, with up-links back to the two core switches (area 0 / ABR's)? I'm thinking of of just using area 1 for all access switches to make the configurations easier.

    Any design or performance issues you could see from this? Would you put each access switch in a unique area?

    I'm following this packet pushers example for reference and plan on adding BFD, using /31's with OSPF set to point-to-point for the crosslinks, totally stubby.

    packet pushers example

    I appreciate any advice or real world experience you have!

    submitted by /u/food-and-stuff
    [link] [comments]

    [JunOS] Can i disable some VLAN's from an MSTP instance?

    Posted: 26 Nov 2018 11:56 AM PST

    I have a ring topolgy of switches. Here is running MSTP to avoid loops. Something like this http://www.hoggnet.com/NWWPics/Ethernet-Ring.png

    At the same time every switch runs OSPF between each other. Every switch has an exclusive VLAN that goes to the next. OSPF runs between the irb's interfaces as point-to-point.

    What i want to know is if i can disable those VLANs(the ones that runs OSPF) to run spanning tree.

    submitted by /u/pepelui94
    [link] [comments]

    MX v Nexus v ASR for Campus Core

    Posted: 26 Nov 2018 05:57 AM PST

    We're looking to upgrade our existing 6x 6800/Sup2T core with something a bit more beefy. We're running BGP/OSPF, MPLS, dual stacked v4/6, QinQ, a bunch of SPM, etc... This supports a user population of tens of thousands on the campus. There are some semi-independent IT groups on campus, so we serve both as an enterprise core and an ISP at times. Currently we're not hitting walls insofar as routes or forwarding speeds so much as forwarding DHCP requests and such. We have a massive wireless user base that can result in a lot of that traffic being concentrated. We're going to be bumping up from 1/10/40G to 10/40/100G at the core. Building switches aggregate directly into the core routers ATM. We have a mix of Cisco and Juniper in the access switch environment, so it's unlikely we'll be able to use too many fancy proprietary features outside of the cores and management isn't big on those anyway.

    Cisco and Juniper are largely where we're looking and they are pointing us at the Nexus 7700 and MX960 lines (possibly also an ASR model soon). I gather Cisco doesn't have an offering in the Catalyst line currently they feel comfortable pushing for our environment.

    Curious about the hows and whys people are going with Cisco/Juniper at the core in general. Within those brands, curious about specific models people like/hate and why. The kinds of things the SEs won't tell us. It isn't helping that the data sheets feel light on particulars beyond raw forwarding speeds.

    submitted by /u/drdoakcom
    [link] [comments]

    Cisco ASA 5508-x (Limit/Block Downloads but not affecting the internet/intranet speed)

    Posted: 25 Nov 2018 10:23 PM PST

    Hello Everyone,

    I have an internet speed of 20Mbps, as my topic states, I would just like to know how to achieve this. I tried creating a Service Policy Rule, but what happened was, it made the segment/vlan's download and upload speed to 5Mb.

    This config is easier on FortiGate 100D, as you can just input a limit of like 10Mb, and users will be prompted with a "You can't download this file as it is larger than the size provided by your IT Administrator",

    I am very new to Cisco ASA. Any help would be much appreciated.

    Thank you,

    submitted by /u/grinboy
    [link] [comments]

    Sonicwall IP address pool exhausted

    Posted: 26 Nov 2018 10:43 AM PST

    I have researched this topic for a couple weeks now, to no avail. I am having an issue with a Sonicwall NSA 2600. I am not the person who set this appliance up and there is no documentation. When users are logging in via the SSLVPN they are getting IP address pool exhausted. Currently, the DHCP is not enabled on the Sonicwall, from what I can tell. We have 27 licenses for SSLVPN connections and 37 IP addresses assigned to the IP address pool. I am wondering if anyone has any ideas on how to remedy this issue?

    submitted by /u/inferno19d
    [link] [comments]

    Aruba access points in different colors?

    Posted: 26 Nov 2018 10:40 AM PST

    Does Aruba offer any access point in a color other than white? Someone asked if we could source them in a black color and I don't think it is possible based on all the images I have seen.

    Perhaps a mount kit that hides the color of the AP and is black?

    submitted by /u/InternetPersonv6
    [link] [comments]

    Connecting Wireless Router to Firewall - Please Help!!!

    Posted: 26 Nov 2018 10:30 AM PST

    Hello,

    Have a bit of a problem I thought you good folk here could help me with. I'm good with IT but networking isn't one of my strong points let's say.

    Anyway, I'm working for a company and I have been tasked with hooking one of their internet connections up to a firewall, a FortiGate 60d.

    We use the WiFi from the ISP router, so in an ideal world I understand I would configure the FortiGate to act as the router which it can do and the ISP router used as an access point.

    Internet --> FortiGate--> ISP Router --> Internal Network

    However the FortiGate has no more ethernet ports available save for WAN 2 and the DMZ port, so as far as my knowledge goes I'm not able to connect things this way.

    So, I have to set things up in the following way as I understand:

    Internet --> ISP Router --> FortiGate--> Internal Network

    Is there a way to do this with what I have available and what settings do I need?

    Thanks

    submitted by /u/RedComet91
    [link] [comments]

    No comments:

    Post a Comment

    Fashion

    Beauty

    Travel