<?xml version="1.0" encoding="utf-8" standalone="yes"?>
<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>Cisco on Aaron&#39;s Worthless Words</title>
    <link>https://a996c8ee.aww-3cz.pages.dev/tags/cisco/</link>
    <description>Recent content in Cisco on Aaron&#39;s Worthless Words</description>
    <generator>Hugo</generator>
    <language>en</language>
    <lastBuildDate>Wed, 04 Jul 2018 00:00:00 +0000</lastBuildDate>
    <atom:link href="https://a996c8ee.aww-3cz.pages.dev/tags/cisco/index.xml" rel="self" type="application/rss+xml" />
    <item>
      <title>Cisco Live 2018 - Yes, I Went Too</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2018/07/cisco-live-2018-yes-i-went-too/</link>
      <pubDate>Wed, 04 Jul 2018 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2018/07/cisco-live-2018-yes-i-went-too/</guid>
      <description>&lt;p&gt;It&amp;rsquo;s been a very busy month or so. June is always like that, it seems. There&amp;rsquo;s &lt;a href=&#34;http://www.arrl.org/field-day&#34;&gt;ARRL Field Day&lt;/a&gt;, which is always the last rainy weekend in June. This year, Cisco Live was in June, and that typically includes &lt;a href=&#34;http://techfieldday.com/event/clus18/&#34;&gt;Tech Field Day activities&lt;/a&gt;. Right before that, we had the whole family in town for a family reunion. There was all sorts of stuff going on. Now that most of that has blown over, I&amp;rsquo;ve collected my thoughts and wanted to talk about Cisco Live this year.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cisco Live US 2017 - The Plan So Far</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2017/02/cisco-live-us-2017-the-plan-so-far/</link>
      <pubDate>Tue, 21 Feb 2017 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2017/02/cisco-live-us-2017-the-plan-so-far/</guid>
      <description>&lt;p&gt;Put it on your calendar.  &lt;a href=&#34;http://www.ciscolive.com/us/&#34;&gt;Cisco Live US&lt;/a&gt; is June 25 - 29, 2017, in Las Vegas.  This is the largest conference I go to every year, and it&amp;rsquo;s the highlight of my professional year.  I&amp;rsquo;ve been going for a few years now and enjoy it for the content and camaraderie.  What are we doing this year?&lt;/p&gt;&#xA;&lt;p&gt;We&amp;rsquo;ll fly in on Friday again and do something.  No idea what, but I imagine we&amp;rsquo;ll throw out an invitation for dinner to the public and meet somewhere.  If you&amp;rsquo;re going to be in town, let me know, and we&amp;rsquo;ll meet up.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cisco Clock Issue - This Is Really Bad</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2017/02/cisco-clock-issue-this-is-really-bad/</link>
      <pubDate>Sun, 05 Feb 2017 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2017/02/cisco-clock-issue-this-is-really-bad/</guid>
      <description>&lt;p&gt;Check out &lt;a href=&#34;https://www.cisco.com/c/en/us/support/web/clock-signal.html#~overview&#34;&gt;this advisory&lt;/a&gt; from Cisco that came out a couple days ago.  You need to read it and act on it &lt;em&gt;immediately&lt;/em&gt;!  I&amp;rsquo;ll summarize for you : Thanks to a faulty clock signal component, certain Cisco devices will stop functioning after about 18 months and become really expensive bricks!  Reading through it, you&amp;rsquo;ll see phrases like &amp;ldquo;we expect product failures&amp;rdquo; and &amp;ldquo;is not recoverable.&amp;rdquo;  Seriously, what the hell? This really warms the heart.&lt;/p&gt;</description>
    </item>
    <item>
      <title>QoS?  Really?</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2016/08/qos-really/</link>
      <pubDate>Sat, 20 Aug 2016 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2016/08/qos-really/</guid>
      <description>&lt;p&gt;I wrote this post during Cisco Live and said &amp;ldquo;I&amp;rsquo;ll just give it a once-over tonight and publish it.&amp;rdquo;  That was something like 6 weeks ago now. What a loser I am.&lt;/p&gt;&#xA;&lt;hr&gt;&#xA;&lt;p&gt;Yes, really. QoS has actually gotten some attention this year. After how many years of living in the dark and being feared by junior and senior engineers alike, we&amp;rsquo;re seeing some really cool technologies coming out for it.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cisco Live 2016 - Everything Is Coming Together</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2016/04/cisco-live-2016-everything-is-coming-together/</link>
      <pubDate>Tue, 12 Apr 2016 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2016/04/cisco-live-2016-everything-is-coming-together/</guid>
      <description>&lt;p&gt;It seems that Cisco Live is about the only thing I blog about in the last&amp;hellip;well, few years.  At least I&amp;rsquo;m still writing, even if it is twice a year.  :)&lt;/p&gt;&#xA;&lt;p&gt;Here&amp;rsquo;s a summary about Cisco Live for those who live in a dark hole.  It&amp;rsquo;s July 10 - 14, 2016, in Las Vegas.  If you do anything with Cisco, you should go.  If you do anything with technology that isn&amp;rsquo;t Cisco, you should go.  Bring your significant other.  There&amp;rsquo;s plenty to do for everyone.  Anyway, on to the details for this year&amp;rsquo;s show.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cisco Live - The Complaints</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2015/06/cisco-live-the-complaints/</link>
      <pubDate>Tue, 16 Jun 2015 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2015/06/cisco-live-the-complaints/</guid>
      <description>&lt;p&gt;You should know by now that I always find something to complain about.  Is that a bad thing?  Probably.  Does it help improve things?  Absolutely!&lt;/p&gt;&#xA;&lt;p&gt;Again, I love going to Cisco Live every year.  Without question, it&amp;rsquo;s my favorite event of the year.  It&amp;rsquo;s a great event with great people and great things to do.  With that said, let&amp;rsquo;s look at what could have been a bit better this year.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cisco Live 2015 - Helping Others</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2015/06/cisco-live-2015-helping-others/</link>
      <pubDate>Sun, 14 Jun 2015 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2015/06/cisco-live-2015-helping-others/</guid>
      <description>&lt;p&gt;Another year, another Cisco Live.  Boy, was it a good one.  San Diego is a great city, and convention center there is plenty big to take care of all 25k attendees.  On top of that, the city itself is equipped to handle groups of 40 roaming the streets looking for food and entertainment.&lt;/p&gt;&#xA;&lt;p&gt;This year&amp;rsquo;s event had the usual stuff that everyone talks about - breakout session, keynotes, exams, etc. - but Cisco stepped outside of technology this year by helping others.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Recap - Cisco Live US 2014</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2014/05/recap-cisco-live-us-2014/</link>
      <pubDate>Sat, 31 May 2014 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2014/05/recap-cisco-live-us-2014/</guid>
      <description>&lt;p&gt;I don&amp;rsquo;t think I&amp;rsquo;m going to give a direct review of Cisco Live US this year.  The conference was great with lots of stuff going on, but I really can&amp;rsquo;t contribute any more than the vast library of other posts on the subject.  What I will do, though, is give my take on where I think the conference is headed.  These are all my thoughts and have little to do with reality in some cases.&lt;/p&gt;</description>
    </item>
    <item>
      <title>My Schedule for Cisco Live 2014</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2014/04/my-schedule-for-cisco-live-2014/</link>
      <pubDate>Fri, 18 Apr 2014 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2014/04/my-schedule-for-cisco-live-2014/</guid>
      <description>&lt;p&gt;Everything is in order for my trip to &lt;a href=&#34;http://www.ciscolive.com/us/?zid=cl-global-hinav/?cid=000334090&#34;&gt;Cisco Live 2014&lt;/a&gt; in &lt;a href=&#34;http://www.sanfrancisco.travel/&#34;&gt;San Francisco&lt;/a&gt;.  Conference passes are purchased.  Hotels are reserved.  Flights are booked.  It&amp;rsquo;s going to be a great event, and I can&amp;rsquo;t wait!&lt;/p&gt;&#xA;&lt;p&gt;Note:  My wife will be with me again this year, and she is trying to get a tour group going to look around the city while others are in sessions.  If you want to be in on the tourist action, &lt;a href=&#34;https://twitter.com/ReneeXD9&#34;&gt;contact her via Twitter&lt;/a&gt;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Taking the Old Approach to Cisco Live 2014</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2014/03/taking-the-old-approach-to-cisco-live-2014/</link>
      <pubDate>Tue, 25 Mar 2014 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2014/03/taking-the-old-approach-to-cisco-live-2014/</guid>
      <description>&lt;p&gt;I was just reading through &lt;a href=&#34;http://herdingpackets.net/2014/03/24/taking-a-new-approach-to-cisco-live-2014/&#34;&gt;Bob&amp;rsquo;s blog post from today&lt;/a&gt; and wanted to give a rebuttal of sorts.  In his post, Bob tells us that&amp;rsquo;s he&amp;rsquo;s going to be at Cisco Live US in San Francisco this year but he won&amp;rsquo;t be coming on the Full Conference pass like he usually does.  He&amp;rsquo;s going with the Social Event pass this year, which is actually a great, great way to attend.  I know several people who are thinking about scaling back to the Social Event pass as well, and there&amp;rsquo;s nothing wrong with doing it like that.  There are some things that it doesn&amp;rsquo;t get you, though.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Read This if  You&#39;re Going to Cisco Live in May!</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2014/03/read-this-if-youre-going-to-cisco-live-in-may/</link>
      <pubDate>Thu, 13 Mar 2014 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2014/03/read-this-if-youre-going-to-cisco-live-in-may/</guid>
      <description>&lt;p&gt;Do not tell anyone I told you, but I heard a rumor today.  It looks like the attendees will be in for quite a treat for the &lt;a href=&#34;http://www.ciscolive.com/us/attendees/activities/cae/?cid=000334090&#34;&gt;25th Anniversary of the Customer Appreciate Event&lt;/a&gt;.  It seems that we&amp;rsquo;re all going to be shipped off to AT&amp;amp;T Park for the show!  It&amp;rsquo;s the home of the San Francisco Giants and a beautiful stadium.  And guess who&amp;rsquo;s going to be there?  Yes, me.  And my wife.  And about 984572 of my friends.  But so will Lenny Kravitz and Imagine Dragons!&lt;/p&gt;</description>
    </item>
    <item>
      <title>Why Cisco Live Each Year?</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2014/02/why-do-i-try-my-best-to-go-to-cisco-live-each-year/</link>
      <pubDate>Wed, 26 Feb 2014 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2014/02/why-do-i-try-my-best-to-go-to-cisco-live-each-year/</guid>
      <description>&lt;p&gt;We all know what Cisco Live is, right?  Networkers?  The Cisco users&amp;rsquo; conference?  If not, then educate yourself, friend.  It takes place every year in different parts of the world.  I try my best to go every year to the US event and am lucky to be able to go this year.  It costs a &lt;a href=&#34;http://answers.yahoo.com/question/index?qid=20081128185653AALoGSD&#34;&gt;bagillion&lt;/a&gt; dollars and a week of my time; why am I so excited about going?  Easy answers in no particular order.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cisco Live 2013 Insights - Catalyst 3850</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2013/07/cisco-live-2013-insights-catalyst-3850/</link>
      <pubDate>Thu, 04 Jul 2013 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2013/07/cisco-live-2013-insights-catalyst-3850/</guid>
      <description>&lt;p&gt;Cisco Live is obviously the biggest networking event of the year, and Cisco likes to use all the attention to show off some of their new gear.  I must say I was impressed with some of the Enterprise offerings including the &lt;a href=&#34;http://www.cisco.com/en/US/products/ps13195/index.html&#34;&gt;6807-XL&lt;/a&gt;, the &lt;a href=&#34;http://www.cisco.com/en/US/products/ps13194/index.html&#34;&gt;6880-X&lt;/a&gt;, the &lt;a href=&#34;http://www.cisco.com/en/US/products/ps12522/index.html&#34;&gt;4451-X&lt;/a&gt;, and the &lt;a href=&#34;http://www.cisco.com/en/US/products/ps13204/index.html&#34;&gt;Sup 8-E for the 4500-E&lt;/a&gt; (check out the &lt;a href=&#34;http://www.cisco.com/en/US/prod/collateral/switches/ps9441/ps9402/data_sheet_c78-728187.html&#34;&gt;Nexus 7700&lt;/a&gt;, too, even though they aren&amp;rsquo;t Enterprise class).  Those boxes definitely gave me a bit of a tingle when I was checking them out, but my eyes opened up when I saw the 3850 in one of my sessions and on the show floor.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cisco Live 2013 Insights - Cisco Tactical Operations</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2013/07/cisco-live-2013-insights-cisco-tactical-operations/</link>
      <pubDate>Wed, 03 Jul 2013 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2013/07/cisco-live-2013-insights-cisco-tactical-operations/</guid>
      <description>&lt;p&gt;While walking through the World of Solutions, we ran across a big black truck with lots of antennas all over it.  It was obviously an emergency communications vehicle of some kind, but I was really surprised to see it was a Cisco truck.  It turns out that Cisco has a &lt;a href=&#34;http://www.cisco.com/web/about/doing_business/business_continuity/tacops.html#~one-overview,&#34;&gt;Tactical Operations&lt;/a&gt; group (&lt;a href=&#34;https://twitter.com/CiscoTACOPS&#34;&gt;Twitter&lt;/a&gt;) that was formed to provide disaster responders with much-needed communications for EMAs, fire, police, medical, etc.&lt;/p&gt;&#xA;&lt;p&gt;The big truck was the NERV - the Network Emergency Response Vehicle (&lt;a href=&#34;http://www.cisco.com/web/strategy/docs/gov/NERV_AAG.pdf&#34;&gt;PDF link&lt;/a&gt;).  It&amp;rsquo;s full of traditional HF, VHF, and UHF radios that the ham radio operators usually bring to these disasters.  This is a necessity when all phones, cell, and Internet are down.  It could be the only way fire fighters are able to call for reinforcements or the only way a hospital can call for more supplies.  The NERV, though, takes it to the next level.  On top of the radio gear, it is equipped with satellite uplinks for Internet access, wifi, and digital voice and video through UCS Express, IP phones, and Telepresence.  Analog voice is always the first method of communications restored via battery- or generator-powered gear, but an area will eventually need a network with voice and video.  That&amp;rsquo;s where the NERV comes in.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cisco Live 2013 Insights - Cisco Active Advisor</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2013/07/cisco-live-2013-insights-cisco-active-advisor/</link>
      <pubDate>Tue, 02 Jul 2013 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2013/07/cisco-live-2013-insights-cisco-active-advisor/</guid>
      <description>&lt;p&gt;Yes, I went to Cisco Live and survived.  It was the social event of the year, but the main focus is learning about the cool, new stuff.  One of the booths I visited was a demonstration of &lt;a href=&#34;http://www.cisco.com/en/US/products/ps13221/index.html&#34;&gt;Cisco Active Advisor&lt;/a&gt;.&lt;/p&gt;&#xA;&lt;p&gt;This is a cloud-based (BINGO!) application that keeps an eye on the lifecycles of your IOS devices.  Using the web interface, you can scan a range of IP addresses from your machine and have your gear automatically added to the service.  Once in there, you can see, among other things, the warranty and support contract information for your device.  If your contracts is about to expire, it&amp;rsquo;ll let you know via email.   It also tracks any vulnerabilities that may apply and emails you if any are detected.  This beats trusting your reseller to send you renewals or watching an RSS feed for PSIRTs and field notices.&lt;/p&gt;</description>
    </item>
    <item>
      <title>My Schedule for Cisco Live 2013</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2013/03/my-schedule-for-cisco-live-2013/</link>
      <pubDate>Sun, 31 Mar 2013 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2013/03/my-schedule-for-cisco-live-2013/</guid>
      <description>&lt;p&gt;I&amp;rsquo;m all set up to go to Cisco Live in Orlando this year.  Good thing, too, since I couldn&amp;rsquo;t make it to San Diego last time. It&amp;rsquo;ll be a great and fun time as usual, and I&amp;rsquo;m quite excited.&lt;/p&gt;&#xA;&lt;p&gt;As it turns out, &lt;a href=&#34;http://www.arrl.org/field-day&#34;&gt;ARRL Field Day&lt;/a&gt; happens to be the weekend leading up to the festivities.  I&amp;rsquo;ve been in contact with the local Orlando club, and they say the attendees are more than welcome to join them.  They are meeting at the &lt;a href=&#34;https://maps.google.com/maps?q=110+Andes+Ave+in+Orlando&amp;amp;client=ubuntu&amp;amp;channel=cs&amp;amp;hnear=110+Andes+Ave,+Orlando,+Orange,+Florida+32803&amp;amp;gl=us&amp;amp;t=h&amp;amp;z=16&#34;&gt;City of Orlando Emergency Operations Center&lt;/a&gt;, which is about 20 minutes away from the Convention Center.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The Usual End of the Year Tripe</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2012/12/the-usual-end-of-the-year-tripe/</link>
      <pubDate>Sun, 30 Dec 2012 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2012/12/the-usual-end-of-the-year-tripe/</guid>
      <description>&lt;p&gt;The year is finally coming to an end, so it&amp;rsquo;s time yet again to look at goals and embarrass myself by publicly admitting that I didn&amp;rsquo;t meet them.  Oh, well.  Let&amp;rsquo;s get this done so I can go back to sleep.&lt;/p&gt;&#xA;&lt;p&gt;I changed the layout of the blog, so the page with my goals isn&amp;rsquo;t really visible.  Here&amp;rsquo;s what I claimed I would do this past year.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;strong&gt;Select a CCIE training vendor&lt;/strong&gt; - Yeah&amp;hellip;this didn&amp;rsquo;t happen.  This is a very high-priced item, and I simply couldn&amp;rsquo;t afford the packages I wanted.  We&amp;rsquo;re talking $8k - $10k for everything.  Yikes!  I asked management at work to pay for it.  They said they would but that I would have to agree not to leave the company for some long length of time.  I didn&amp;rsquo;t want to put myself in a situation where finding a new job meant writing a check for $10k, so I decided to pass on it.  Without the financial backing, this ended with me just sighing pitifully on my couch.&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;Take the CCIE R&amp;amp;S lab&lt;/strong&gt; - Of course this didn&amp;rsquo;t happen without the first one.  I guess I could have bought the materials that I could and just got on a bus to Raleigh to see what happens.  This whole thing was complicated by the fact that the new job is 95% Juniper.  My waking hours at work and my study time at home were spent trying to figure out how Junos works; I tried my best, but it was just too difficult for me to study both at the same time.  For the trifecta of excuses, I also had an issue with my study area. I went from a 4-bedroom house to a 1-bedroom apartment when we moved for the new job.  There&amp;rsquo;s no quiet space at all to study at all - a huge problem I need to fix.&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;Pass JNCIA-Junos exam&lt;/strong&gt; - Wo!  I actually did this one.  I took this exam a few months back and passed it without any problems.  Good for me!  One out of three!&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;As for my goals, it really wasn&amp;rsquo;t a very good year.  Even for me, it was bad.  I&amp;rsquo;ll tell you, though, it&amp;rsquo;s very hard to study when you don&amp;rsquo;t have one subject or a place to do so.  Definitely things I need to work on in 2013.&lt;/p&gt;</description>
    </item>
    <item>
      <title>An Interesting Interview Story</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2012/08/an-interesting-interview-story/</link>
      <pubDate>Fri, 31 Aug 2012 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2012/08/an-interesting-interview-story/</guid>
      <description>&lt;p&gt;We&amp;rsquo;ve been looking for a new Network Engineer for quite a while but are having no luck at all.  There is plenty of talent out there, but finding a high-end Juniper guy is almost impossible around here.  We&amp;rsquo;ve loosened up our requirement for Juniper experience just to get someone in for interviews.  This led us to one prospect and an interesting story.&lt;/p&gt;&#xA;&lt;p&gt;This guy&amp;rsquo;s resume was very impressive.  For the last 5 years, he&amp;rsquo;s been the Network Architect at a very large company.  His experiences were off the chart.  Large-scale Enterprise deployments.  Monster PCI environments.  Years of Juniper experience.  Years of Cisco experience.  I had to talk to this guy, so I got a phone interview with him.&lt;/p&gt;</description>
    </item>
    <item>
      <title>CCIE R&amp;S Written - Epic WIN!</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/08/ccie-rs-written-epic-win/</link>
      <pubDate>Wed, 24 Aug 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/08/ccie-rs-written-epic-win/</guid>
      <description>&lt;p&gt;The wife and I had a romantic day driving several hours to a small town to take Cisco exams.  If this doesn&amp;rsquo;t get me some action, I don&amp;rsquo;t know what else to try.&lt;/p&gt;&#xA;&lt;p&gt;I&amp;rsquo;ve already used the phrases &amp;ldquo;skin of my teeth&amp;rdquo; and &amp;ldquo;a pass is a pass&amp;rdquo; on Twitter today for good reason.  Passing is a score of 790, and I blew that away with a 790.  One more lapse in concentration and I would have been making up more excuses instead of smiling.  I think I&amp;rsquo;ve mentioned this before, but I have this weird reaction to taking exams where I don&amp;rsquo;t get nervous at all until after I&amp;rsquo;m finished.  Walking into the testing center, I was fine.  Walking out, I was shaking like &lt;a href=&#34;http://www.cnn.com/2011/US/08/23/virginia.quake/&#34;&gt;Northern Virginia&lt;/a&gt;.  It was so bad that I could barely hold on to the door knob when trying to leave, so I guess that I&amp;rsquo;m really prouder than I thought I was.&lt;/p&gt;</description>
    </item>
    <item>
      <title>OSPF Notes - LSA Types</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/06/ospf-notes-lsa-types/</link>
      <pubDate>Thu, 02 Jun 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/06/ospf-notes-lsa-types/</guid>
      <description>&lt;p&gt;Yes, it is inevitable that I cover these.  I&amp;rsquo;m sure network types will be next.  Per my usual request, please correct my stupidity.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Type 1 - Router&lt;/strong&gt; : This LSA type lists all the routers by RID as well as the networks to which that router connects.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Type 2 - Network&lt;/strong&gt; : These LSAs represent broadcast network where more than one OSPF router may live.  Think Ethernet or multipoint segment.  These LSAs are flooded by the DR for that segment.&lt;/p&gt;</description>
    </item>
    <item>
      <title>OSPF Notes - Neighbor States</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/06/ospf-notes-neighbor-states/</link>
      <pubDate>Thu, 02 Jun 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/06/ospf-notes-neighbor-states/</guid>
      <description>&lt;p&gt;My prediction about covering network types was wrong.  I&amp;rsquo;m going to puke out some information about neighbor states for now.  As is always the case, corrections are welcome.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Down&lt;/strong&gt; : No hellos have been received from this router.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Attempt&lt;/strong&gt; : This state only applies to manually-configured neighbors on an NBMA network.  In this state, a router has sent unicast hellos to the neighbor but has not received any back from it.&lt;/p&gt;</description>
    </item>
    <item>
      <title>OSPF Notes - Message Types</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/06/ospf-notes-message-types/</link>
      <pubDate>Wed, 01 Jun 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/06/ospf-notes-message-types/</guid>
      <description>&lt;p&gt;I have had my nose deep in several books in preparation for my CCIE R&amp;amp;S written exam, so I haven&amp;rsquo;t been blogging much at all.  Now that I&amp;rsquo;ve made it to the more familiar topics, I&amp;rsquo;m hoping to get some notes posted.  I&amp;rsquo;ll start with OSPF message types.&lt;/p&gt;&#xA;&lt;p&gt;As always, please feel free to correct me here.  I&amp;rsquo;m learning just like the rest of us.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Hello&lt;/strong&gt; : These messages are used to establish neighbors and serve as keepalives among other things.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Home-grown IOU Scripts</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/05/home-grown-iou-scripts/</link>
      <pubDate>Mon, 16 May 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/05/home-grown-iou-scripts/</guid>
      <description>&lt;p&gt;I&amp;rsquo;m sure you&amp;rsquo;ve all heard of Cisco IOU by now, and I&amp;rsquo;m finally catching up with the other bloggers of the world by mentioning it.  It&amp;rsquo;s an executable version of an IOS image that runs on a Unix (or Unix-like) platform and it&amp;rsquo;s the backend behind &lt;a href=&#34;https://learningnetworkstore.cisco.com/market/prod/listSubCatLearnLab.se.work?TRGT=85&amp;amp;/nxt/rcrs/=2559&amp;amp;utm_source=go-shortcut&amp;amp;utm_medium=mixed&amp;amp;utm_content=go-url&amp;amp;utm_campaign=promo-cll&#34;&gt;Cisco&amp;rsquo;s Learning Labs&lt;/a&gt;.  Instead of running an emulator and loading up various images, you just run the executable and you&amp;rsquo;re on the console of a Cisco router.  It has layer 2 support, so you can fire up switches as well.  Being a binary makes it way more efficient than GNS3 will ever be, and the layer 2 support is a wonderful, wonderful feature to have.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Cisco Live 2011 Schedule</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/04/cisco-live-2011-schedule/</link>
      <pubDate>Fri, 29 Apr 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/04/cisco-live-2011-schedule/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://aconaway.com/wp-content/uploads/2011/04/bus-schedule-dec-2-2010-200.jpg&#34;&gt;&lt;img src=&#34;images/bus-schedule-dec-2-2010-200-150x150.jpg&#34; alt=&#34;&#34; loading=&#34;lazy&#34; title=&#34;bus-schedule-dec-2-2010-200&#34;&gt;&#xA;&lt;/a&gt;For the first time ever, I&amp;rsquo;m headed to Cisco Live - the big Cisco users conference in Las Vegas! I usually don&amp;rsquo;t go to these things since I wind up just hanging out by myself, but I&amp;rsquo;m meeting all sorts of people there - from bloggers to Tweeps to personal friends. It should be a huge blast, and I can&amp;rsquo;t wait to get there.&lt;/p&gt;&#xA;&lt;p&gt;For those interested, here&amp;rsquo;s my schedule.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post - Final Tally of 3750 Failures</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/03/stubby-post-final-tally-of-3750-failures/</link>
      <pubDate>Fri, 18 Mar 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/03/stubby-post-final-tally-of-3750-failures/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://aconaway.com/wp-content/uploads/2011/03/fail.png&#34;&gt;&lt;img src=&#34;images/fail.png&#34; alt=&#34;&#34; loading=&#34;lazy&#34; title=&#34;FAIL!&#34;&gt;&#xA;&lt;/a&gt;It&amp;rsquo;s pretty widely known that I hate Cisco 3750 switches. We&amp;rsquo;ve had so many hardware and software failures with them that I&amp;rsquo;ve got a seriously bad taste in my mouth. Since I&amp;rsquo;m leaving for a new company, I thought I&amp;rsquo;d publish some statistics while I still have access to the numbers.&lt;/p&gt;&#xA;&lt;p&gt;Total TAC cases &lt;a href=&#34;http://www.diocesisdemonteria.org/&#34;&gt;online casino usa european roulette&lt;/a&gt; opened related to 3750s: 21 Number of 3750G-12S-S replaced: 21 Number of 3750G-24TS replaced: 7 Total number of RMAs issued: 28 Total number of 3750s in the company: ~120 Failure rate: 23.3%&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post - Cisco IOS Petition</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/02/stubby-post-cisco-ios-petition/</link>
      <pubDate>Fri, 11 Feb 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/02/stubby-post-cisco-ios-petition/</guid>
      <description>&lt;p&gt;Greg Ferro has brought back &lt;a href=&#34;http://etherealmind.com/cisco-ios-petition-reloaded/&#34;&gt;the petition for Cisco to provide an emulator to the community for learning&lt;/a&gt;.  Since our current and only family of emulators is well on &lt;a href=&#34;http://tahoeheavenlyvacations.com/&#34;&gt;Garcinia Mangostana&lt;/a&gt; its way to oblivion, I ask that we all take the time and sign this petition.  To use a cliché, we need to act now before it&amp;rsquo;s too late.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post - Changing the Prompt on the ASA</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/01/stubby-post-changing-the-prompt-on-the-asa/</link>
      <pubDate>Thu, 20 Jan 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/01/stubby-post-changing-the-prompt-on-the-asa/</guid>
      <description>&lt;p&gt;RichardF commented on &lt;a href=&#34;http://aconaway.com/2010/11/22/running-commands-on-a-standby-asa-from-the-active/&#34;&gt;an article I wrote last November&lt;/a&gt; and mentioned the &lt;em&gt;prompt&lt;/em&gt; command in the ASA.  I never set aside any time to research it, but I finally took the time today while waiting for a maintenance window.&lt;/p&gt;&#xA;&lt;p&gt;This is one of those little things in life that make me happy.  Since the active ASA always has the same hostname and IP address, I find it hard to keep track of to which firewall I&amp;rsquo;m actually connected.  That &amp;ldquo;configurtions are no long in sync&amp;rdquo; message you get when you &lt;em&gt;conf t&lt;/em&gt; on the standby firewall really irks me.  With the &lt;em&gt;prompt&lt;/em&gt; command, I can see which firewall I&amp;rsquo;m on and in what state it is.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post - Null VTP Domain Scare</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2011/01/stubby-post-null-vtp-domain-scare/</link>
      <pubDate>Wed, 05 Jan 2011 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2011/01/stubby-post-null-vtp-domain-scare/</guid>
      <description>&lt;p&gt;Remember a few weeks back when I had a bad day?  I was actually at HQ that day to do some work for a project, but that got put off due to the extenuating circumstances.  When we finally got back around to do the work, we wound up adding a switch in the data center to extend a VLAN over to a rack.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Another Blow to Dynamips/Dynagen/GNS3</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/11/another-blow-to-dynamipsdynagengns3/</link>
      <pubDate>Tue, 30 Nov 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/11/another-blow-to-dynamipsdynagengns3/</guid>
      <description>&lt;p&gt;It looks like Cisco is trying to crack down on illegal distribution of their software.  I can&amp;rsquo;t really blame them since it&amp;rsquo;s their property.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Configuring an Active/Passive ASA Pair</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/11/configuring-an-activepassive-asa-pair/</link>
      <pubDate>Sat, 20 Nov 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/11/configuring-an-activepassive-asa-pair/</guid>
      <description>&lt;p&gt;A buddy asked for some help on configuring a pair of ASAs in active/passive mode, and, by pure coincidence, my newest project is to set up the same.  I&amp;rsquo;ve done it many time, but it&amp;rsquo;s one of those things that you don&amp;rsquo;t really do every day (unless you&amp;rsquo;re a VAR or something).  These things always get covered in rust very quickly in my head, but, once I get one or two details back to the surface, it all comes flooding back. I better take the time to jot down the details. &lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post - Changes to CCNA Voice, CCVP, and CCSP</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/stubby-post-changes-to-ccna-voice-ccvp-and-ccsp/</link>
      <pubDate>Wed, 20 Oct 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/stubby-post-changes-to-ccna-voice-ccvp-and-ccsp/</guid>
      <description>&lt;p&gt;I don&amp;rsquo;t usually cover news from Cisco, but they&amp;rsquo;ve changed some &lt;a href=&#34;http://www.cisco.com/web/learning/le3/learning_career_certifications_and_learning_paths_home.html&#34;&gt;certification&lt;/a&gt; stuff around again, and I thought I would bring it up.  This time they&amp;rsquo;ve changed the CCNA Voice, CCVP, and CCSP, so, if you&amp;rsquo;ve on those tracks, be careful what you&amp;rsquo;re studying!&lt;/p&gt;&#xA;&lt;h3 id=&#34;ccna-voice&#34;&gt;&lt;strong&gt;CCNA Voice&lt;/strong&gt;&lt;/h3&gt;&#xA;&lt;p&gt;Circle 28 February 2011 on your calendars.  That&amp;rsquo;s when the &lt;a href=&#34;http://www.cisco.com/web/learning/le3/le2/le0/le3/learning_certification_type_home.html&#34;&gt;CCNA Voice&lt;/a&gt; track gets a shakeup.  The IIUC (640-460) exam will be no more, and passing CVOICE (642-436) will no longer be a valid way to get the cert.  After the big day, you&amp;rsquo;ll have to take &lt;a href=&#34;https://learningnetwork.cisco.com/community/certifications/voice_ccna/icomm&#34;&gt;ICOMM&lt;/a&gt; &lt;a href=&#34;https://learningnetwork.cisco.com/community/certifications/voice_ccna/icomm&#34;&gt;(640-461)&lt;/a&gt;.  This seems to be a much broader exam instead of having the enterprise and commercial focuses in CVOICE and IIUC, respectively.  Look out for both CME- and CUCM-based topics including a troubleshooting section. &lt;/p&gt;</description>
    </item>
    <item>
      <title>CME Exercise #1</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/cme-exercise-1/</link>
      <pubDate>Thu, 07 Oct 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/cme-exercise-1/</guid>
      <description>&lt;p&gt;I tried something like this earlier this year with STP.  It got rave reviews (from my mother), so I figured I try it again.  &lt;/p&gt;&#xA;&lt;p&gt;Below is a list of requirements for configuring a router as a call processor.  In a lab or in your head, configure the router to support the features as listed.  This isn&amp;rsquo;t a contest or anything like that.  If you get it right, a virtual thumbs up is all I can afford to give you.  There are some licensing issues for running this stuff in GNS3/dynamips, so I can&amp;rsquo;t help you out on that.  I&amp;rsquo;ll just hint that GNS3 and dynamips will bind to real networks and that copies of a compatible IP softphone are available.&lt;/p&gt;</description>
    </item>
    <item>
      <title>IIUC Notes - Voice Ports and Dial Peers</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/iiuc-notes-voice-ports-and-dial-peers/</link>
      <pubDate>Mon, 04 Oct 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/iiuc-notes-voice-ports-and-dial-peers/</guid>
      <description>&lt;p&gt;More of my IIUC study notes.  As always, feel free to correct.  I really need to have a real post, don&amp;rsquo;t I?&lt;/p&gt;&#xA;&lt;p&gt;&lt;em&gt;&lt;strong&gt;show voice port summary&lt;/strong&gt;&lt;/em&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Shows the voice ports available for use&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;div class=&#34;highlight&#34;&gt;&lt;pre tabindex=&#34;0&#34; class=&#34;chroma&#34;&gt;&lt;code data-lang=&#34;fallback&#34;&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;R1#show voice port summary&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;                                          IN       OUT&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;PORT           CH   SIG-TYPE   ADMIN OPER STATUS   STATUS   EC&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;============== == ============ ===== ==== ======== ======== ==&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;50/0/1         1      efxs     up    up   on-hook  idle     y&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;50/0/1         2      efxs     up    up   on-hook  idle     y&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;50/0/2         1      efxs     up    up   on-hook  idle     y&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;50/0/2         2      efxs     up    up   on-hook  idle     y&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;50/0/3         1      efxs     up    up   on-hook  idle     y&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;50/0/4         1      efxs     up    up   on-hook  idle     y&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;50/0/5         1      efxs     up    up   on-hook  idle     y&lt;/span&gt;&lt;/span&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/div&gt;&lt;/blockquote&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;An ephone-dn shows up as efxs, so all these are ephone-dns.&lt;/li&gt;&#xA;&lt;li&gt;Channels are numbered 0-23; timeslots are numbered 1-24&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;&lt;strong&gt;FXS Ports&lt;/strong&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>IIUC Notes - More Phone Features</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/iiuc-notes-more-phone-features/</link>
      <pubDate>Sat, 02 Oct 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/iiuc-notes-more-phone-features/</guid>
      <description>&lt;p&gt;Here are some more notes from my IIUC studies.  As always, corrections requested.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Paging&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Broadcasts messages to a group for a one-way communication&lt;/li&gt;&#xA;&lt;li&gt;Paging groups are used to limit which phones get the broadcast&lt;/li&gt;&#xA;&lt;li&gt;Paging can be unicast or multicast&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Unicast groups limited to 10 members&lt;/li&gt;&#xA;&lt;li&gt;Multicast requires mcast support on the network&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Paging configurations can be unicast, multicast, or multiple-group&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;p&gt;!  Unicast Paging&lt;br&gt;&#xA;!  When 1044 is dialed, ephone 1 is paged&lt;br&gt;&#xA;R1(config)#ephone-dn 44&lt;br&gt;&#xA;R1(config-ephone-dn)#number 1044&lt;br&gt;&#xA;R1(config-ephone-dn)#paging&lt;br&gt;&#xA;R1(config-ephone-dn)#exit&lt;br&gt;&#xA;R1(config)#ephone 1&lt;br&gt;&#xA;R1(config-ephone)#paging-dn 44&lt;/p&gt;</description>
    </item>
    <item>
      <title>IIUC Notes - Phone Features</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/iiuc-notes-phone-features/</link>
      <pubDate>Fri, 01 Oct 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/10/iiuc-notes-phone-features/</guid>
      <description>&lt;p&gt;Here are some more notes from my IIUC studies.  As always, corrections requested.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Local Directory&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Allows users to look up names&lt;/li&gt;&#xA;&lt;li&gt;Allows names to show up when dialing or receiving a call&lt;/li&gt;&#xA;&lt;li&gt;Most phones have a directory button; some have a menu options for the directory&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;p&gt;R1(config)#ephone-dn 1&lt;br&gt;&#xA;R1(config-ephone-dn)#name Roger Smith&lt;/p&gt;&#xA;&lt;/blockquote&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Directory entries can be added manually&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;p&gt;R1(config-telephony)#directory entry 1 1700 Corporate Fax&lt;br&gt;&#xA;R1(config-telephony)#directory entry 2 1701 HR Fax&lt;/p&gt;&#xA;&lt;/blockquote&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;By default, sorting is done alphabetically by first name.&lt;/li&gt;&#xA;&lt;li&gt;Sorting can be changed&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;p&gt;R1(config-telephony)#directory last-name-first&lt;/p&gt;</description>
    </item>
    <item>
      <title>IIUC Notes - Getting Phones on the LAN</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/iiuc-notes-getting-phones-on-the-lan/</link>
      <pubDate>Thu, 30 Sep 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/iiuc-notes-getting-phones-on-the-lan/</guid>
      <description>&lt;p&gt;More study notes.  Correct if wrong, though I hope I get some of it right since I already since I&amp;rsquo;m an R&amp;amp;S guy.  :$&lt;/p&gt;&#xA;&lt;p&gt;**Switchport Configuration&lt;br&gt;&#xA;**&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;strong&gt;switchport mode access&lt;/strong&gt;:  This config makes the port an access port that carries the primary and voice VLAN traffic&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;switchport mode trunk&lt;/strong&gt;:  This config akes the port a trunk unconditionally, but it will still send DTP messages&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;switchport nonegotiate&lt;/strong&gt;:  This config keeps the port from sending DTP messages.&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;switchport mode dynamic auto&lt;/strong&gt;:  If the port receives DTP messages, it will become a trunk.  If not, it will be an access port.&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;switchport mode dynamic desirable&lt;/strong&gt;:  The port actively sends DTP messages trying to become a trunk.  This is the default configuration on a Cisco switch.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;&lt;strong&gt;Cisco IP Phone Boot Process&lt;/strong&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>IIUC Notes - Assigning Ephone-dns to Ephone Buttons</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/iiuc-notes-assigning-ephone-dns-to-ephone-buttons/</link>
      <pubDate>Thu, 23 Sep 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/iiuc-notes-assigning-ephone-dns-to-ephone-buttons/</guid>
      <description>&lt;p&gt;These are some of my notes on my IIUC studies.  Since I am a novice as voice stuff, please let me know what I get wrong.&lt;/p&gt;&#xA;&lt;p&gt;An &lt;strong&gt;ephone&lt;/strong&gt; is a representation of a phone.  It&amp;rsquo;s basically a structure of features that a phone will have. &lt;/p&gt;&#xA;&lt;p&gt;Configuration in CME:&lt;/p&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;p&gt;R1(config)#ephone 34  &amp;lt;&amp;ndash; This is just a tag and has nothing to do with an extension or phone&lt;br&gt;&#xA;R1(config-ephone)#mac-address 1111.2222.3333    &amp;lt;&amp;ndash; Assigns this ephone to the phone with that MAC address&lt;/p&gt;</description>
    </item>
    <item>
      <title>IIUC Notes - Powering Cisco Phones</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/iiuc-notes-powering-cisco-phones/</link>
      <pubDate>Tue, 21 Sep 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/iiuc-notes-powering-cisco-phones/</guid>
      <description>&lt;p&gt;Feel free to correct anything that is wrong or incomplete.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;Power over Ethernet (PoE)&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Can provide power to a Cisco phone, access point, security camera, etc., through the network cabling, eliminating the need to plug the phone into the wall for power.&lt;/li&gt;&#xA;&lt;li&gt;Generic term for providing power on the Ethernet cable&lt;/li&gt;&#xA;&lt;li&gt;Provides centralized power that can be put on a UPS&lt;/li&gt;&#xA;&lt;li&gt;Allows devices to be located away from power outlets&lt;/li&gt;&#xA;&lt;li&gt;Removes cabling clutter at the user&amp;rsquo;s desk&lt;/li&gt;&#xA;&lt;li&gt;Can be provided through PoE-enabled switches, power panels or inline couplers (power injectors)&lt;/li&gt;&#xA;&lt;li&gt;Oversubscription is common&#xA;&lt;ul&gt;&#xA;&lt;li&gt;If every device on a switch asks for full power, the switch may not be able to handle the load.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Of course, devices can be powered with a power brick at the desk&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;802.3af&lt;/p&gt;</description>
    </item>
    <item>
      <title>IIUC Notes - VoIP Structures</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/iiuc-notes-voip-structures/</link>
      <pubDate>Tue, 21 Sep 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/iiuc-notes-voip-structures/</guid>
      <description>&lt;p&gt;Feel free to correct.  No need to sugar-coat it; I&amp;rsquo;m pretty new at this stuff.  :)&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;Advantages of VoIP&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Reduces costs of communications:  Eliminates/reduces long distance and international call tolls&lt;/li&gt;&#xA;&lt;li&gt;Reduces costs of cabling:  No need for second network of phone lines&lt;/li&gt;&#xA;&lt;li&gt;Integrates all voice into one large network:  All your remote offices can be implemented/maintained/controlled centrally&lt;/li&gt;&#xA;&lt;li&gt;Provides mobility:  Moves, adds, and changes (MACs) are (nearly) eliminated since your phone is just a network node&lt;/li&gt;&#xA;&lt;li&gt;Allows use of IP Softphones&lt;/li&gt;&#xA;&lt;li&gt;Unifies emails, voice mails, and faxes:  All these can be treated as a single box for user messages&lt;/li&gt;&#xA;&lt;li&gt;Increases productivity:  Ringing multiple devices at the same time eliminates phone tag.   &amp;lt;&amp;mdash; pushing it, eh?&lt;/li&gt;&#xA;&lt;li&gt;Enhances communications:  Applications can be launched/updated from a voice call through application servers&lt;/li&gt;&#xA;&lt;li&gt;Provides open, compatible standards:  You can connect different vendor devices into the same VoIP network.   &amp;lt;&amp;mdash; I&amp;rsquo;ve never seen that happen&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;Cisco VoIP Structure&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post - Packetlife&#39;s Community Lab</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/stubby-post-packetlifes-community-lab/</link>
      <pubDate>Tue, 14 Sep 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/stubby-post-packetlifes-community-lab/</guid>
      <description>&lt;p&gt;I&amp;rsquo;m way behind in talking about this, but &lt;a href=&#34;http://packetlife.net/users/stretch/&#34;&gt;Jeremy Stretch&lt;/a&gt; over at &lt;a href=&#34;http://packetlife.net/&#34;&gt;Packetlife.net&lt;/a&gt; has a &lt;a href=&#34;http://packetlife.net/lab/&#34;&gt;community lab&lt;/a&gt; that is free to use.  This is a great resource for those of us who are too poor to have their own physical devices for Cisco studies.  All you need is an account on the site and a sense of community.&lt;/p&gt;&#xA;&lt;p&gt;There are two labs to reserve, and each contains a firewall, routers, and switches.  This is plenty of stuff to get your feet wet with the gear, let you research some functionality that Cisco promised is great, and to lab out something you&amp;rsquo;re looking to implement.  The lab is offered for free, but Jeremy is giving his time and money for this lab.  I think it would be a great idea to drop a few dollars to him via his donate link if you use his stuff.   If you&amp;rsquo;re a regular user and don&amp;rsquo;t donate, I ask that you do a moral inventory on yourself so you might see just how bad you are being.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post - GNS3 Vault for the Win!</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/stubby-post-gns3-vault-for-the-win/</link>
      <pubDate>Sat, 11 Sep 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/stubby-post-gns3-vault-for-the-win/</guid>
      <description>&lt;p&gt;I was thinking about firing off some GNS3 labs as exercises for everyone to use.  My thought was that I could generate a few small networks with a requirements doc and have people do the leg work as practice or for a study aid.  You know, configure OSPF over this frame relay network or GLBP for load-balancing gateways.  I gave up on that dream (like I do a lot of them), and wound up clicking around on &lt;a href=&#34;http://gns3vault.com/&#34;&gt;GNS3 Vault&lt;/a&gt;.  &lt;a href=&#34;http://twitter.com/ReneMolenaar&#34;&gt;Rene Molenaar&lt;/a&gt; has already thought ahead and developed about 60 labs exercises that can be downloaded.&lt;/p&gt;</description>
    </item>
    <item>
      <title>IIUC Notes - Old School Voice Stuff</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/iiuc-notes-old-school-voice-stuff/</link>
      <pubDate>Wed, 08 Sep 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/iiuc-notes-old-school-voice-stuff/</guid>
      <description>&lt;p&gt;These are the notes I&amp;rsquo;ve taken as I read through the study materials.  Feel free to correct anything you see.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;Analog phone signaling&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Misc&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Ground = positive = &lt;strong&gt;tip&lt;/strong&gt;&lt;/li&gt;&#xA;&lt;li&gt;Battery = negative = &lt;strong&gt;ring&lt;/strong&gt;&lt;/li&gt;&#xA;&lt;li&gt;Signaling uses specific frequencies for specific events&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;Loop start signaling&lt;/strong&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;When a circuit in the phone is completed (i.e., you take it off-hook), the CO detects it and provides services.&lt;/li&gt;&#xA;&lt;li&gt;Susceptible to &lt;strong&gt;glare&lt;/strong&gt;, where the phone requests dialtone at the same time that the CO sends a call.&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Can connect two different calls if in a business with multiple lines&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;Ground start signaling&lt;/strong&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;The circuit is temporarily completed to signal the CO for services&lt;/li&gt;&#xA;&lt;li&gt;Doesn&amp;rsquo;t connect any call to any phone directly&lt;/li&gt;&#xA;&lt;li&gt;Used in PBXes.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;Supervisory signaling&lt;/strong&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;On-hook:  Circuit is open&lt;/li&gt;&#xA;&lt;li&gt;Off-hook:  Circuit is completed&lt;/li&gt;&#xA;&lt;li&gt;Ringing:  AC current generated by CO to tell the phone to ring&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;Informational signaling&lt;/strong&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Gives information for the caller to use&lt;/li&gt;&#xA;&lt;li&gt;Dial tone&lt;/li&gt;&#xA;&lt;li&gt;Busy&lt;/li&gt;&#xA;&lt;li&gt;Ringback: the ring you hear when you call&lt;/li&gt;&#xA;&lt;li&gt;Confirmation:  the call is being attempted&lt;/li&gt;&#xA;&lt;li&gt;Congestion:  no lines available to make the call&lt;/li&gt;&#xA;&lt;li&gt;Receiver off-hook&lt;/li&gt;&#xA;&lt;li&gt;Reorder:  can&amp;rsquo;t make the call&lt;/li&gt;&#xA;&lt;li&gt;No such number:  can&amp;rsquo;t find the endpoint&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;Address signaling&lt;/strong&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Used to send digits&lt;/li&gt;&#xA;&lt;li&gt;Dual-tone multifrequency (DTMF):  uses two electrical signals to indicate a digit; touch tone&lt;/li&gt;&#xA;&lt;li&gt;Pulse:  flashes the circuit to indicate a digit; rotary dial&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Disadvantages of analog signaling&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Attenuation&lt;/li&gt;&#xA;&lt;li&gt;Repeaters can&amp;rsquo;t differentiate between call and noise&lt;/li&gt;&#xA;&lt;li&gt;One cable pair for each call; think about a pair for each call taking place in Manhattan right now&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;Digitizing voice&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post - What&#39;s an IDB?</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/stubby-post-whats-an-idb/</link>
      <pubDate>Fri, 03 Sep 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/09/stubby-post-whats-an-idb/</guid>
      <description>&lt;p&gt;I &lt;a href=&#34;http://twitter.com/aconaway/status/22554005934&#34;&gt;posed the philosophical question&lt;/a&gt; on Twitter the other day asking if single trunk links should be in an EtherChannel bundle just in case you need to expand later.  I didn&amp;rsquo;t really expect an answer, but the ever-verbose &lt;a href=&#34;http://twitter.com/WannabeCCIE&#34;&gt;@WannabeCCIE&lt;/a&gt; pointed out (in not so many words) that you should watch your IDBs.  What is that?&lt;/p&gt;&#xA;&lt;p&gt;That&amp;rsquo;s an &lt;a href=&#34;http://www.cisco.com/en/US/products/sw/iosswrel/ps1835/products_tech_note09186a0080094322.shtml&#34;&gt;interface descriptor block&lt;/a&gt;.  I admit that I&amp;rsquo;m not intimately familiar with them, bu they&amp;rsquo;re data structs in IOS used to keep track of the interfaces on that device.  They come in two flavors - hardware and software.  HWIDBs usually represent a physical interface but they also represent tunnels, SVIs, PortChannels, subinterfaces, and any other virtual interface that you can configure.  The SWIDBs represent the layer-2 encapsulation of each HWIDB, so you&amp;rsquo;ll see entries talking about Ethernet, HDLC, PPP, etc.  That means that every interface you have on a router consumes two IDBs (there are always exceptions).  That&amp;rsquo;s important because each platform and IOS version combination has a limit to the number IDBs that device supports.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Catalyst 3750s - Bad Luck with a Cisco Logo</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/08/catalyst-3750s-bad-luck-with-a-cisco-logo/</link>
      <pubDate>Tue, 31 Aug 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/08/catalyst-3750s-bad-luck-with-a-cisco-logo/</guid>
      <description>&lt;p&gt;Last week, &lt;a href=&#34;http://twitter.com/fletcherjoyce&#34;&gt;@fletcherjoyce&lt;/a&gt; posted &lt;a href=&#34;http://reloadin10.wordpress.com/2010/08/28/catalyst-3750-are-they-really-that-bad/&#34;&gt;an article on his blog&lt;/a&gt; about his positive experiences with Cisco&amp;rsquo;s 3750 switches.  If you follow my complaints &lt;a href=&#34;http://twitter.com/aconaway&#34;&gt;tweets&lt;/a&gt;, you know that I&amp;rsquo;ve had quite the opposite experience with them.  I would never pick on anyone, but I had to throw in my 2 cents.&lt;/p&gt;&#xA;&lt;p&gt;I&amp;rsquo;m guessing here, but we have about 50 3750 stacks in the enterprise.  Most of them are pairs, you wind up with roughly 120 switches.  Since we&amp;rsquo;ve done about 20 replacements over the last 5 years, that means we have a 17% failure rate.  That&amp;rsquo;s pretty horrible, isn&amp;rsquo;t it?&lt;/p&gt;</description>
    </item>
    <item>
      <title>Syncing IOS Versions on a 3750 Stack</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/08/syncing-ios-versions-on-a-3750-stack/</link>
      <pubDate>Mon, 16 Aug 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/08/syncing-ios-versions-on-a-3750-stack/</guid>
      <description>&lt;p&gt;For those that don&amp;rsquo;t know, when I say &amp;ldquo;stack&amp;rdquo;, I mean a group of 3750s connected together using the &lt;a href=&#34;http://www.cisco.com/en/US/prod/collateral/switches/ps5718/ps5023/prod_white_paper09186a00801b096a.html&#34;&gt;StackWise technology&lt;/a&gt;.  When you use a very expensive and very proprietary cable, your individual switches are combined into a single logical device.  This means you configure one device to control potentially many switches.&lt;/p&gt;&#xA;&lt;p&gt;To the point.  I&amp;rsquo;ve spent the last few weeks replacing a mess of 3750s in stacks.  These guys are very easy to replace, but the big problem I find is getting the IOS version in sync.  When the RMA comes, it&amp;rsquo;s inevitably got a different version on it, and you&amp;rsquo;ll see something like this.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Some Cisco Testing Advice</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/some-cisco-testing-advice/</link>
      <pubDate>Sat, 24 Jul 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/some-cisco-testing-advice/</guid>
      <description>&lt;p&gt;If you follow the blog, you know I&amp;rsquo;ve had quite an adventure getting my CCNP.  Finally, this past Monday, after what seemed liked years of struggling, I finished up my ROUTE test and got the email telling me I&amp;rsquo;d made it.  I&amp;rsquo;ve learned a lot over the course, but, more than the technical details, I learned more about how to prepare for the exams.  It&amp;rsquo;s too bad I hit the moment of enlightenment after I reached the end of the line.  Well, at least this line; there will be others very soon.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE - Epic Win!</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-epic-win/</link>
      <pubDate>Mon, 19 Jul 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-epic-win/</guid>
      <description>&lt;p&gt;Woohoo!  I passed the ROUTE test this morning.  That means I&amp;rsquo;m done with the CCNP track!  :)&lt;/p&gt;&#xA;&lt;p&gt;If you remember, &lt;a href=&#34;http://aconaway.com/2010/07/07/route-epic-fail-1/&#34;&gt;I took it over a week ago&lt;/a&gt; and had some bad luck on it.  Alright, bad luck is the wrong phrase.  I didn&amp;rsquo;t study enough and failed it.  This time, though, I had a special weapon on my side - &lt;a href=&#34;http://www.ciscopress.com/bookstore/product.asp?isbn=9781587058820&#34;&gt;the ROUTE Foundations book&lt;/a&gt;.  I haven&amp;rsquo;t used the Foundations books before, but, I saw some tweets about this one, so I picked it up off of Safari.  In just a couple pages, I realized that I was reading the answers to several questions directly out of the book.  It was amazing.  I only studied my weak points and wound up with 144 more points than I did last time.  I can&amp;rsquo;t say that was entirely because of the book, but I must say it was a big reason.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - Further IGP Redistribution</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-further-igp-redistribution/</link>
      <pubDate>Sun, 18 Jul 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-further-igp-redistribution/</guid>
      <description>&lt;p&gt;As always, corrections are requested.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;I&amp;rsquo;ve got IGRP and EIGRP both configured with the same AS number.  What&amp;rsquo;s special about this configuration?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;If both use the same AS number, then they automatically redistribute their routes into each other without using the &lt;em&gt;redistribute&lt;/em&gt; command.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;When redistributing one IGP into another, where&amp;rsquo;s a good place to filter routes?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;There&amp;rsquo;s no one good place, but at the router(s) that&amp;rsquo;s doing the redistribution is a good start.  There&amp;rsquo;s no need to send an IGP a bunch of routes it doesn&amp;rsquo;t need.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - Even More IGP Redistribution</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-even-more-igp-redistribution/</link>
      <pubDate>Sat, 17 Jul 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-even-more-igp-redistribution/</guid>
      <description>&lt;p&gt;I didn&amp;rsquo;t do so well on IGP redistribution the last time out, so here&amp;rsquo;s some more stuff to study.  As always, feel free to correct.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What three things are needed to be able to redistribute one routing protocol into another?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;1. One or more links into each routing protocol 2. A proper, working config for each protocol 3. The addition of the &lt;em&gt;redistribute&lt;/em&gt; command to one or more of the protocols&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE - Epic Fail (#1?)</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-epic-fail-1/</link>
      <pubDate>Thu, 08 Jul 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-epic-fail-1/</guid>
      <description>&lt;p&gt;I took the ROUTE test today and failed like I usually do.  That makes me 3-4 on these P-level tests if you&amp;rsquo;re scoring at home.  Don&amp;rsquo;t worry, though.  I&amp;rsquo;m not giving up.  :)&lt;/p&gt;&#xA;&lt;p&gt;In atypical fashion, I must say that the ROUTE test was a good test.  Let me say that again.  The ROUTE test was a good test.  I said good, though&amp;hellip;not great.  There were a few problems with it that I&amp;rsquo;ll get to, but, overall, this is the best test I&amp;rsquo;ve ever taken for a Cisco cert.  The questions were very well-written and there were no obvious omissions or wrong details.  I failed this test because I simply didn&amp;rsquo;t put in enough work.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - Controlling BGP</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-controlling-bgp/</link>
      <pubDate>Tue, 06 Jul 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-controlling-bgp/</guid>
      <description>&lt;p&gt;Corrections, please.  I skipped a bunch of BGP intro stuff to get to the juicy center.  I&amp;rsquo;ll see if I can come back later and finish the other parts for posterity.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Notes&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Is BGP route selection a controversial subject?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Yes.  If you ask 1000 network guys the best way to influence BGP, you&amp;rsquo;ll probably get 1000 different answers.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;At what position in the PA list of a BGP update do you find the weight attribute?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;You don&amp;rsquo;t.  Weight is a Cisco-proprietary thing.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - Branch Office Routing</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-branch-office-routing/</link>
      <pubDate>Mon, 05 Jul 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-branch-office-routing/</guid>
      <description>&lt;p&gt;Corrigeme, por favor.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Notes&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What do IPSec tunnels give you when a branch office is on a broadband connection?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Privacy through encryption Authentication of the remote peer through ISAKMP Delivery of private data over the public Internet&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What do you need to configure to get your branch router talking to the Internet?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;ISP connection configuration such as PPPoE or PPPoA DHCP server configuration for internal users NAT Firewall services like inspection and filtering&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - Implementing IPv6 in an IPv4 Network</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-implementing-ipv6-in-an-ipv4-network/</link>
      <pubDate>Sun, 04 Jul 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/07/route-notes-implementing-ipv6-in-an-ipv4-network/</guid>
      <description>&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Your boss says that ever host in the network needs to be converted over to IPv6 by the end of the day.  Which of multipoint tunnels, point-to-point tunnels, or native IPv6 would be the most appropriate to use to help with that conversion?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Native IPv6&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;The engineering department wants to permanently use IPv6 on their test boxes in two offices.  Which of multipoint tunnels, point-to-point tunnels, or native IPv6 would be the most appropriate to use?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Point-to-point tunnels&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - Routing IPv6</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-routing-ipv6/</link>
      <pubDate>Wed, 30 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-routing-ipv6/</guid>
      <description>&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Why would anyone develop a version of RIP that supports IPv6?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;I have no idea.  Boredom, maybe.  Whatever the case, it works just like RIPv2, which is pretty scary.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;In EIGRP for IPv4, there are several requirements for two routers to neighbor up.  Which of those is not true for EIGRP for IPv6?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;The two routers don&amp;rsquo;t need to be in the same subnet.  The concept of the link local address takes care of that need since neighbors always share a common medium like an Ethernet segment or a serial link.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - Intro to IPv6</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-intro-to-ipv6/</link>
      <pubDate>Tue, 29 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-intro-to-ipv6/</guid>
      <description>&lt;p&gt;&lt;strong&gt;Study Notes&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Exactly how big is an IPv6 address?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;It&amp;rsquo;s 128 bits long.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;This shouldn&amp;rsquo;t be on the test, but how many unique addresses is that?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;That&amp;rsquo;s 2^128 or a &amp;ldquo;3&amp;rdquo; with 38 zeros after it.  That&amp;rsquo;s also 2^95 addresses for each person on earth.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Surely we&amp;rsquo;re not writing in binary, are we?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;No way.  IPv6 uses 32 hex characters.  Each character is 4 bits, so we wind up with 128 bits of data.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - PBR and IP SLA</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-pbr-and-ip-sla/</link>
      <pubDate>Thu, 24 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-pbr-and-ip-sla/</guid>
      <description>&lt;p&gt;Feel free to correct.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What&amp;rsquo;s the most primitive way to get traffic destined to a single host to use a different path than your dynamic IGP dictates?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Use a static route.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What&amp;rsquo;s the most primitive way to get traffic sourced from a single host to use a different path than your dynamic IGP dictates?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Use policy-based routing (PBR).&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What&amp;rsquo;s the most primitive way to get traffic sourced from a single host and destined for another host to use a different path than your dynamic IGP dictates?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Use PBR.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - More IGP Redistribution</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-more-igp-redistribution/</link>
      <pubDate>Wed, 23 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-more-igp-redistribution/</guid>
      <description>&lt;p&gt;As always, feel free to correct.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Notes&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;When a router redistributes from one routing protocol to another, where does the router get the list of routes to redistribute?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;From the routing table.  Only IGP A&amp;rsquo;s routes (not topology or successors) are redistributed into IGP B&amp;rsquo;s domain.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What are two methods of filtering redistributed routes?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Use a &lt;em&gt;route-map&lt;/em&gt; in the &lt;em&gt;redistribute&lt;/em&gt; line or a &lt;em&gt;distribute-list&lt;/em&gt;.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Of the two methods for filtering, which one has more options?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;The route-map method has more options.  You can match on all sorts of stuff, including an ACL or interface, and filter based on that.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - IGP Redistribution</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-igp-redistribution/</link>
      <pubDate>Tue, 22 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-igp-redistribution/</guid>
      <description>&lt;p&gt;As always, feel free to correct.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;When you redistribute OSPF into EIGRP, what are you really redistributing?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Routes knows via OSPF Networks of OSPF-enabled interfaces&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What&amp;rsquo;s the default cost of an EIGRP route redistributed into OSPF?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;20&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What&amp;rsquo;s the default metric of an OSPF route redistributed into EIGRP?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;There is none since EIGRP has all those nifty k-values that have to be processed.  Routes actually won&amp;rsquo;t redistribute without them.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - OSPF Virtual Links and Frame Relay Stuff</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-ospf-virtual-links-and-frame-relay-stuff/</link>
      <pubDate>Mon, 21 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-ospf-virtual-links-and-frame-relay-stuff/</guid>
      <description>&lt;p&gt;Feel free to correct.  I feel like I&amp;rsquo;m missing a big piece here, so please fill in a gap if you see one.  Thanks.  :)&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;How many area 0s (zero) can you have in an OSPF implementation&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Just one.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;If my company merges with another company, and we&amp;rsquo;re both running OSPF, how can we get our networks routing together properly?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;The easiest thing to do is to connect your two area 0s together through some physical link.  If you can, you can use virtual links to connect an ABR to another ABR to extend the zones together.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - OSPF Filtering and Summarization</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-ospf-filtering-and-summarization/</link>
      <pubDate>Sun, 20 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-ospf-filtering-and-summarization/</guid>
      <description>&lt;p&gt;Feel free to correct all this stuff.  Additions are also welcome.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;How do I keep an area route from reaching a router in that area?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;You don’t.  That defeats the whole purpose of having the topology database on every router.  If you filtered one route from a router, there’s no way that SPF could calculate routes correctly.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Fine, then.  Where do I filter routes?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;You filter routes on an ABR or ASBR.  Since routers only have the whole topology for their area, it’s safe to filter routes from another area or from a redistributed routing protocol.  On a more technical note, you’re filtering type-3 LSAs on an ABR and type-5 LSAs on an ASBR.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - OSPF Topology Stuff</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-ospf-topology-stuff/</link>
      <pubDate>Sun, 20 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-ospf-topology-stuff/</guid>
      <description>&lt;p&gt;Feel free to correct.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;The obvious first question involves the common LSA types and their function.  Can you list them?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Type-1 - Router - Lists each router their connected IP addresses Type-2 - Network - Lists all the transit, or multiaccess, networks Type-3 - Net Summary - Defines a  host route for interarea routes; this is from the ABR Type-4 - ASBR Summary - Defines a host route for an external (to OSPF) route; this is from an ASBR Type-5 - AS External - Lists the networks advertised into OSPF from external sources (redistribution) Type-7 - NSSA External - External routes injected into a not-so-stubby area&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - OSPF Neighbor Relationships</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-ospf-neighbor-relationships/</link>
      <pubDate>Fri, 18 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-ospf-neighbor-relationships/</guid>
      <description>&lt;p&gt;Feel free to correct.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What are the definitions of the hello and dead intervals?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;The hello intervals is how often a router sends hello messages.  The dead interval is how long to wait before considering a neighbor dead from lack of hello messages; this is 4x the hello interval by default.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;How do you keep OSPF from trying to detect neighbors on an interface?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Don’t configure a &lt;em&gt;network&lt;/em&gt; statement for that interface Make that interface passive&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - Controlling Routes in EIGRP</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-controlling-routes-in-eigr/</link>
      <pubDate>Thu, 17 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-controlling-routes-in-eigr/</guid>
      <description>&lt;p&gt;Corrections welcome.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Why would you ever want to summarize routes?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Summarizing routes minimizes the routes advertised to the network.  For example, instead of advertising 192.168.0.0/24, 192.168.1.0/24…192.168.n.0/24, a router can advertise a single route to 192.168.0.0/16.  Keeping routing tables small saves hardware resources, minimizes convergence times, helps avoid route flapping, and makes the routing table easier to read for humans.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;When will an EIGRP router auto-summarize a route?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;If a router has interfaces that that are in different classes of network (Class A, B, C), then that router will auto-summarize those routes up to the classful boundary.  For example, if you have a 10.0.0.1/24 and a 192.168.100.1/30, the router will advertise 10.0.0.0/8 and 192.168.100.0/24.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - EIGRP Neighbor Relationships</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-eigrp-neighbor-relationships/</link>
      <pubDate>Thu, 17 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-eigrp-neighbor-relationships/</guid>
      <description>&lt;p&gt;Or neighborships, as they call it in the book.  What a terrible word.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;What settings must match between two routers in order to become EIGRP neighbors?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Both routers must be in the same primary subnet Both routers must be configured to use the same k-values Both routers must in the same AS Both routers must have the same authentication configuration (within reason) The interfaces facing each other must not be passive&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE Notes - EIGRP Topology Stuff</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-eigrp-topology-stuff/</link>
      <pubDate>Thu, 17 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-notes-eigrp-topology-stuff/</guid>
      <description>&lt;p&gt;&lt;strong&gt;Study Questions&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;How do you keep EIGRP from killing your WAN?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;You can use the &lt;em&gt;ip bandwidth-percent eigrp AS X&lt;/em&gt; command to limit the amount of bandwidth that EIGRP uses to update neighbors.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;How does EIGRP calculate how much bandwidth it can use for each frame relay PVC?&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;By default, EIGRP takes 50% of the (sub)interface&amp;rsquo;s configured bandwidth (with the &lt;em&gt;bandwidth&lt;/em&gt; command) to use for updates on NBMA (non-broadcast mutliaccess) networks like frame relay.  This value is divided equally among all the PVC configured on that interface.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE - Redistribution Nuance #2 - OSPF External Metric Types</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-redistribution-nuance-2-ospf-external-metric-types/</link>
      <pubDate>Sun, 06 Jun 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/06/route-redistribution-nuance-2-ospf-external-metric-types/</guid>
      <description>&lt;p&gt;&lt;a href=&#34;http://aconaway.com/2010/05/24/route-redistribution-nuance-1/&#34;&gt;Last time&lt;/a&gt;, we talked about a nifty little lab I set up for redistribution and how the OSPF ASBRs acted a little differently than I expected.  This time, let&amp;rsquo;s look at how changing external OSPF routes to a metric-type of 1 (E1) affects the routing tables.&lt;/p&gt;&#xA;&lt;p&gt;Here&amp;rsquo;s the network again.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;http://aconaway.com/wp-content/uploads/2010/05/redist21.png&#34;&gt;&lt;img src=&#34;images/redist21-300x138.png&#34; alt=&#34;&#34; loading=&#34;lazy&#34; title=&#34;Redistribution&#34;&gt;&#xA;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;The static routes are being redistributed into their respective IGPs, and EIGRP is being redistributed into OSPF.  Let&amp;rsquo;s look at the routing table on R1.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ROUTE - Redistribution Nuance #1 - Admin Distance FTW</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/05/route-redistribution-nuance-1/</link>
      <pubDate>Mon, 24 May 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/05/route-redistribution-nuance-1/</guid>
      <description>&lt;p&gt;I just got back from Global Knowledge&amp;rsquo;s ROUTE class, and I must say that it was a great class.  John Barnes puts on quite the show and is the best instructor I&amp;rsquo;ve ever had.  I digress, though.&lt;/p&gt;&#xA;&lt;p&gt;One of the topics we covered was route redistribution, so I went back to the hotel one night and fired off this network in GNS3 to study a bit.&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;http://aconaway.com/wp-content/uploads/2010/05/redist21.png&#34;&gt;&lt;img src=&#34;images/redist21-300x138.png&#34; alt=&#34;&#34; loading=&#34;lazy&#34; title=&#34;Redistribution&#34;&gt;&#xA;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;The object was to see how redistributing statics into OSPF and into EIGRP differ.  It was also an opportunity to see how EIGRP redistributes into OSPF (and OSPF into EIGRP, but I didn&amp;rsquo;t make it that far).  To do that, I redistributed 10.10.10.0/24 from R1 into OSPF and 10.10.20.0/24 from R4 into EIGRP.  I then had R2 and R5 redistribute all EIGRP routes into OSPF.  It&amp;rsquo;s a nice mix, but I saw some weirdness in the paths to 10.10.20.0/24.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post - VTP Clients Send Updates</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/05/stubby-post-vtp-clients-send-updates/</link>
      <pubDate>Tue, 18 May 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/05/stubby-post-vtp-clients-send-updates/</guid>
      <description>&lt;p&gt;VTP clients send VLAN updates.  Did you know that?&lt;/p&gt;&#xA;&lt;p&gt;I had a VTP server and client in the same VTP domain, and, when I cabled up the trunk, the client overwrote the VLAN database on the server.&lt;/p&gt;&#xA;&lt;p&gt;The moral of the story is that the best revision number will win no matter what the operating mode of the switch.&lt;/p&gt;</description>
    </item>
    <item>
      <title>SWITCH - Epic Fail</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/05/switch-epic-fail/</link>
      <pubDate>Thu, 06 May 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/05/switch-epic-fail/</guid>
      <description>&lt;p&gt;I did my standard 2ish-hour drive to the closest testing center today to take the SWTCH test (642-813).  Utter failure.  That’s 3 for those scoring at home.&lt;/p&gt;&#xA;&lt;p&gt;The test was the absolute worst I’ve ever taken.  I know that I complain a lot, but this is totally justified in my eyes.  My 4th grade spelling tests were better than this.  I’ve seen kindergarten plays with better production value.&lt;/p&gt;&#xA;&lt;p&gt;First of all, it was poorly written.  Whoever wrote those questions has a few pieces of information about English sentence structure missing from their skill set.  A sentence needs a verb, right?  Well, a lot of the sentences were missing those.  It’s kind of important to know what the whole point of the sentence is, or is that too much to ask?  The “drag this over here” exercise questions all started with the same 13-word phrase that left the question so long that it was unreadable.  A couple of commas would have been nice in some.  Others I just had to infer from the answers what they were trying to ask.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post - UplinkFast</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/04/stubby-post-uplinkfast/</link>
      <pubDate>Wed, 28 Apr 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/04/stubby-post-uplinkfast/</guid>
      <description>&lt;p&gt;I&amp;rsquo;ve got a few switches daisy chained together with single links and have enabled UplinkFast on them.  This switch is not the root bridge; F0/24 is the root port and F0/23 is a blocked alternate port. I&amp;rsquo;ve got &lt;em&gt;debug spanning-tree uplinkfast&lt;/em&gt; on to help out.&lt;/p&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;div class=&#34;highlight&#34;&gt;&lt;pre tabindex=&#34;0&#34; class=&#34;chroma&#34;&gt;&lt;code data-lang=&#34;fallback&#34;&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;SW3#sh span | incl 0/2[34]&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;Fa0/23           Altn BLK 3019      128.23   P2p&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;Fa0/24           Root FWD 3019      128.24   P2p&lt;/span&gt;&lt;/span&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/div&gt;&lt;/blockquote&gt;&#xA;&lt;p&gt;Now let&amp;rsquo;s unplug F0/24 and see what happens.&lt;/p&gt;</description>
    </item>
    <item>
      <title>SWITCH - STP Exercise #1</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/04/switch-stp-exercise-1/</link>
      <pubDate>Thu, 22 Apr 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/04/switch-stp-exercise-1/</guid>
      <description>&lt;p&gt;Here&amp;rsquo;s an STP exercise for you.  Given the bridge priorities, MAC addresses, and interface types in the diagram, calculate the root bridge, root ports, designated ports, and blocked ports.  You can click on the image to enlarge it.  I&amp;rsquo;ll post a solution in the next few days.  As always, feel free to comment and ridicule my utter idiocy.  Be gentle, though; I don&amp;rsquo;t usually post exercises like this.&lt;/p&gt;&#xA;&lt;p&gt;Send any configuration BPDUs questions my way.&lt;/p&gt;</description>
    </item>
    <item>
      <title>A Quick Intro to Google&#39;s Capirca</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/04/a-quick-intro-to-googles-capirca/</link>
      <pubDate>Sun, 11 Apr 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/04/a-quick-intro-to-googles-capirca/</guid>
      <description>&lt;p&gt;Yeled left a comment earlier this week asking if I&amp;rsquo;d seen &lt;a href=&#34;http://code.google.com/p/capirca/&#34;&gt;Google&amp;rsquo;s Capirca&lt;/a&gt;.  I&amp;rsquo;d heard of it and checked out some presentation slides on it, but I&amp;rsquo;d never actually tried it out, so, in keeping with the script, I downloaded it to see what it could do.  Remember, now, that I&amp;rsquo;ve been playing with it for about 2 hours now, so I&amp;rsquo;m no expert on its use.&lt;/p&gt;&#xA;&lt;p&gt;Capirca is a Python-based solution that Google came up with to automate ACL creation on their many thousands of routers around the world.  You can&amp;rsquo;t blame them for wanting to automate it, either.  How many times do you think they ran into problems with typos or keying errors from their network guys across those devices?&lt;/p&gt;</description>
    </item>
    <item>
      <title>ONT - Epic Fail Part 2</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/ont-epic-fail-part-2/</link>
      <pubDate>Fri, 19 Mar 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/ont-epic-fail-part-2/</guid>
      <description>&lt;p&gt;I took the ONT again today.  The stench of failure is upon me for a second time, and I&amp;rsquo;m beginning to think I&amp;rsquo;m not the god-like person that everyone thinks I am.  I went into the test very confidently.  I did extra time on my weak points from the last attempt and knew it inside and out.  I put hours and hours of lab time in and got other books and online materials involved.  I was absolutely convinced that I would blow this thing away, but, alas, it was not to be.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ASA 8.3.1 – Smart Tunnel and NAT Changes</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/asa-8-3-1-smart-tunnel-and-nat-changes/</link>
      <pubDate>Fri, 12 Mar 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/asa-8-3-1-smart-tunnel-and-nat-changes/</guid>
      <description>&lt;p&gt;&lt;em&gt;I’ll start off with a warning.  I’ve been running 8.3.1 on my home 5505 for a few hours now.  Not only is this not really enough time for a thorough review, it’s also not the environment to test enterprise-level configurations.  There are also a lot of details missing that I just don’t know about yet, so please do some research on your own to figure out what’s going to break if you upgrade your ASA.&lt;/em&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby Post: Cisco Has Changed the Internet*</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/stubby-post-cisco-has-changed-the-internet/</link>
      <pubDate>Tue, 09 Mar 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/stubby-post-cisco-has-changed-the-internet/</guid>
      <description>&lt;p&gt;*  For definitions of &amp;ldquo;changed&amp;rdquo; and &amp;ldquo;Internet&amp;rdquo;&lt;/p&gt;&#xA;&lt;p&gt;Today Cisco announced their new CRS-3 that replaces the CRS-1.  The CRS-3 has some damn impressive numbers for sure with 322Tbps, or about 1 LOC/sec (that&amp;rsquo;s a Library of Congress per second).  In three to five years, it might enable some technologies that we can&amp;rsquo;t use today, but I think &amp;ldquo;chang[ing] the Internet&amp;rdquo; is a bit of a stretch.  I&amp;rsquo;m sure it&amp;rsquo;s ultra-cheap, too.&lt;/p&gt;</description>
    </item>
    <item>
      <title>NBAR and HTTP Data Conversations</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/nbar-and-http-data-conversations/</link>
      <pubDate>Mon, 08 Mar 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/nbar-and-http-data-conversations/</guid>
      <description>&lt;p&gt;I’m still working on the ONT test and doing labs, so I marked up a lab for me to work.  I’m using the same setup as I did last time.  The two routers are 3640s running 12.4(25b).&lt;/p&gt;&#xA;&lt;p&gt;&lt;a href=&#34;http://aconaway.com/wp-content/uploads/2010/03/nbarclassmap1.png&#34;&gt;&lt;img src=&#34;images/nbarclassmap1_thumb.png&#34; alt=&#34;nbar-classmap1&#34; loading=&#34;lazy&#34; title=&#34;nbar-classmap1&#34;&gt;&#xA;&lt;/a&gt;&lt;/p&gt;&#xA;&lt;p&gt;Part of the lab was to identify HTTP traffic coming into F0/0 and mark it as CS3.  That’s pretty easy, right?  Of course, the lab I made up was a little more complicated, but the point comes clear with a simpler example.&lt;/p&gt;</description>
    </item>
    <item>
      <title>QoS Pre-classify and Class-map Order</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/qos-pre-classify-and-class-map-order/</link>
      <pubDate>Sat, 06 Mar 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/qos-pre-classify-and-class-map-order/</guid>
      <description>&lt;p&gt;I’m still studying for the ONT test, so I did some labs tonight.  One of them was to demonstrate the &lt;strong&gt;qos pre-classify&lt;/strong&gt; command for tunnel interfaces.  When you have a packet sent over a GRE tunnel, the ToS field gets copied to the GRE packet, but there’s no way to see the original packet’s higher-level headers on the way out the interface.  This can be a problem if your service policy needs to see protocol, port, IPs, etc.  The fix for that is to enable qos pre-classify on the tunnel interface and cyrpto map; doing so will provide a copy of the original packet to the physical interface to classify the packet thoroughly.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Stubby post: ROUTE Cert Kit Giveaway</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/stubby-post-route-cert-kit-giveaway/</link>
      <pubDate>Thu, 04 Mar 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/03/stubby-post-route-cert-kit-giveaway/</guid>
      <description>&lt;p&gt;Rofi at ITDualism is &lt;a href=&#34;http://itdualism.wordpress.com/2010/03/03/giveaway-route-cert-kit/&#34; title=&#34;ITDualism ROUTE Cert Kit Giveaway&#34;&gt;giving away a ROUTE cert kit&lt;/a&gt; to a random commenter.  Swing by there and put your name in the hat.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ONT - Epic Fail</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-epic-fail/</link>
      <pubDate>Tue, 16 Feb 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-epic-fail/</guid>
      <description>&lt;p&gt;I failed the ONT test today.  It was an utter lack of subject matter knowledge that did me in from the beginning.  When the first three questions mention things that I&amp;rsquo;ve never even heard, it&amp;rsquo;s going to be a long test.  I&amp;rsquo;ll take blame on it for sure, but the test was a lot darker than I imagined it would be.&lt;/p&gt;&#xA;&lt;p&gt;I heard from a couple people that the ONT test was the easiest of the 4 CCNP test.  I must say today&amp;rsquo;s test was a LOT harder than the ISCW test I took back in December.  Most of the questions were fair, but there were a few that were down-right evil or unanswerable.  Without giving too much away, there were some matching questions that had multiple items with multiple answers, rendering the answer to a guess.  I even ran into a CLI question about the WLC, which surely wasn&amp;rsquo;t mentioned anywhere I studied, and I don&amp;rsquo;t have a spare sitting around on which to test.  The icing, though, was the number of questions about FRTS; I know I need to understand it, but the magical question dice landed on that topic way too many times in my opinion.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ONT Notes - WLAN Management</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-wlan-management/</link>
      <pubDate>Sat, 13 Feb 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-wlan-management/</guid>
      <description>&lt;p&gt;&lt;strong&gt;Elements of Cisco Unified Wireless Network&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Client devices - Cisco compatible extensions on WLAN clients&lt;/li&gt;&#xA;&lt;li&gt;Mobility platform - allows configuration of LWAPs through WLCs&lt;/li&gt;&#xA;&lt;li&gt;Network unification - integration into the rest of the network with WLCs doing RF management, IPS, etc.&lt;/li&gt;&#xA;&lt;li&gt;World-class network management - centralized management through WCS&lt;/li&gt;&#xA;&lt;li&gt;Unified advanced services - supports advanced technologies and threat detection&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;&lt;strong&gt;WLAN Implementation&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;p&gt;Autonomous and LWAP&lt;/p&gt;&#xA;&lt;table&gt;&#xA;  &lt;thead&gt;&#xA;      &lt;tr&gt;&#xA;          &lt;th&gt;Category&lt;/th&gt;&#xA;          &lt;th&gt;Autonomous&lt;/th&gt;&#xA;          &lt;th&gt;LWAP&lt;/th&gt;&#xA;      &lt;/tr&gt;&#xA;  &lt;/thead&gt;&#xA;  &lt;tbody&gt;&#xA;      &lt;tr&gt;&#xA;          &lt;td&gt;Access Point&lt;/td&gt;&#xA;          &lt;td&gt;Autonomous APs&lt;/td&gt;&#xA;          &lt;td&gt;LWAPs&lt;/td&gt;&#xA;      &lt;/tr&gt;&#xA;      &lt;tr&gt;&#xA;          &lt;td&gt;Control&lt;/td&gt;&#xA;          &lt;td&gt;Individual configurations&lt;/td&gt;&#xA;          &lt;td&gt;Configuration through WLCs&lt;/td&gt;&#xA;      &lt;/tr&gt;&#xA;      &lt;tr&gt;&#xA;          &lt;td&gt;Dependency&lt;/td&gt;&#xA;          &lt;td&gt;Independent operations&lt;/td&gt;&#xA;          &lt;td&gt;Dependent on WLC&lt;/td&gt;&#xA;      &lt;/tr&gt;&#xA;      &lt;tr&gt;&#xA;          &lt;td&gt;Management&lt;/td&gt;&#xA;          &lt;td&gt;CiscoWorks WLSE and WDS&lt;/td&gt;&#xA;          &lt;td&gt;WCS&lt;/td&gt;&#xA;      &lt;/tr&gt;&#xA;      &lt;tr&gt;&#xA;          &lt;td&gt;Redundancy&lt;/td&gt;&#xA;          &lt;td&gt;Through APs&lt;/td&gt;&#xA;          &lt;td&gt;Through WLCs&lt;/td&gt;&#xA;      &lt;/tr&gt;&#xA;  &lt;/tbody&gt;&#xA;&lt;/table&gt;&#xA;&lt;p&gt;&lt;strong&gt;Wireless LAN Services Engine (WLSE)&lt;/strong&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>ONT Notes - 802.1x and Encryption on LWAPs</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-802-1x-and-encryption-on-lwaps/</link>
      <pubDate>Fri, 12 Feb 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-802-1x-and-encryption-on-lwaps/</guid>
      <description>&lt;ul&gt;&#xA;&lt;li&gt;Traditional WLAN weaknesses&#xA;&lt;ul&gt;&#xA;&lt;li&gt;SSID for security&lt;/li&gt;&#xA;&lt;li&gt;Vulnerable to rogue APs&lt;/li&gt;&#xA;&lt;li&gt;MAC filtering for security&lt;/li&gt;&#xA;&lt;li&gt;WEP&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;WEP weaknesses&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Disribution of static keys is not scalable&lt;/li&gt;&#xA;&lt;li&gt;WEP keys can be cracked easily&lt;/li&gt;&#xA;&lt;li&gt;Vulnerable to dictionary attacks&lt;/li&gt;&#xA;&lt;li&gt;No protection against rogue APs&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Benefits of 802.1x&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Centralized authentication through Radius via AAA&lt;/li&gt;&#xA;&lt;li&gt;Mutual authentication between client and auth server&lt;/li&gt;&#xA;&lt;li&gt;Can use multiple encryption algorithms (AES, WPA, TKIP, WEP)&lt;/li&gt;&#xA;&lt;li&gt;Automatic dynamic WEP keys&lt;/li&gt;&#xA;&lt;li&gt;Roaming&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Requirements of 802.1x&#xA;&lt;ul&gt;&#xA;&lt;li&gt;EAP-capable client (supplicant)&lt;/li&gt;&#xA;&lt;li&gt;802.1x-capable AP (authenticator)&lt;/li&gt;&#xA;&lt;li&gt;EAP-capable auth server&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;Table 1. Characteristics of the EAP variants&lt;/p&gt;</description>
    </item>
    <item>
      <title>ONT Notes - QoS On Wireless Networks</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-qos-on-wireless-networks/</link>
      <pubDate>Thu, 11 Feb 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-qos-on-wireless-networks/</guid>
      <description>&lt;ul&gt;&#xA;&lt;li&gt;Wireless LANs (WLANs)&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Extensions to wired LANs&lt;/li&gt;&#xA;&lt;li&gt;Carrier sense multiple access collision avoidance (CSMA/CA) as media access method&lt;/li&gt;&#xA;&lt;li&gt;Uses distributed coordinated function (DCF) for collision avoidance&lt;/li&gt;&#xA;&lt;li&gt;DCF is based on RF carrier sense, inter-frame spacing (IFS), and random wait timers&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Wifi QoS standards&#xA;&lt;ul&gt;&#xA;&lt;li&gt;802.11e&#xA;&lt;ul&gt;&#xA;&lt;li&gt;IEEE standard&lt;/li&gt;&#xA;&lt;li&gt;0-7 priority levels&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Wifi Multimedia (WMM)&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Four access categories&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Platinum (voice) - 6 or 7 802.11e&lt;/li&gt;&#xA;&lt;li&gt;Gold (video) - 4 or 5 802.11e&lt;/li&gt;&#xA;&lt;li&gt;Silver (BE) - 0 or 3 802.11e&lt;/li&gt;&#xA;&lt;li&gt;Bronze (Background) - 1 or 2 802.11e&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;WMM and 802.11e replace DCF with EDCF&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Cisco Split-MAC&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Splits functions between Lightweight access points (LWAPs) and WLAN controllers (WLCs)&lt;/li&gt;&#xA;&lt;li&gt;LWAPs handle real-time functions&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Beacon generation&lt;/li&gt;&#xA;&lt;li&gt;Probe transmission and response&lt;/li&gt;&#xA;&lt;li&gt;Power management&lt;/li&gt;&#xA;&lt;li&gt;802.11e/WMM scheduling and queuing&lt;/li&gt;&#xA;&lt;li&gt;Packet buffering&lt;/li&gt;&#xA;&lt;li&gt;Encryption/decryption&lt;/li&gt;&#xA;&lt;li&gt;Control frame/message processing&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;WLCs handle non-real-time functions&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Association/disassociation/reassociation&lt;/li&gt;&#xA;&lt;li&gt;802.11e/WMM resource reservation&lt;/li&gt;&#xA;&lt;li&gt;802.1x EAP&lt;/li&gt;&#xA;&lt;li&gt;Key management&lt;/li&gt;&#xA;&lt;li&gt;Authentication&lt;/li&gt;&#xA;&lt;li&gt;Fragmentation&lt;/li&gt;&#xA;&lt;li&gt;Ethernet-WLAN bridging&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;End-to-end QoS&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Step 1:  WLC copies DSCP from switch to outer DSCP and outer 802.1p and sends to LWAP over LWAPP tunnel&lt;/li&gt;&#xA;&lt;li&gt;Step 2:  LWAP copies outer DSCP from WLC to 802.11e/WMM field and sent to client&lt;/li&gt;&#xA;&lt;li&gt;Step 3:  LWAP copies 802.11e/WMM value from the client to outer DSCP and sends it to WLC&lt;/li&gt;&#xA;&lt;li&gt;Step 4:  WLC copies outer DSCP from WLAP to 802.1p (CoS) fields and sends it to the switch&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Web interface (do you even need to know this?)&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Controller&amp;gt;QoS Profiles&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Per-User Bandwidth Contracts - set avg data rate, burst data rate, avg real-time rate, and burst real-time rate&lt;/li&gt;&#xA;&lt;li&gt;Over the Air QoS&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Maximum RF usage per AP (%)&lt;/li&gt;&#xA;&lt;li&gt;Queue Depth - queue size before dropping packets&lt;/li&gt;&#xA;&lt;li&gt;Wired QoS Protocol - 802.1p or None&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Controller&amp;gt;WLANs&amp;gt;Edit&#xA;&lt;ul&gt;&#xA;&lt;li&gt;For each WLAN ID, set the QoS value:  plat, gold, silver, bronze&lt;/li&gt;&#xA;&lt;li&gt;WMM Policy&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Disabled - 802.11e/WMM QoS requests are ignored&lt;/li&gt;&#xA;&lt;li&gt;Allowed - 802.11e/WMM QoS requests are sent&lt;/li&gt;&#xA;&lt;li&gt;Required - 802.11e/WMM QoS requests are required&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;</description>
    </item>
    <item>
      <title>ONT Notes - AutoQoS</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-autoqos/</link>
      <pubDate>Wed, 10 Feb 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-autoqos/</guid>
      <description>&lt;ul&gt;&#xA;&lt;li&gt;AutoQoS benefits&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Automates QoS for most deployments&lt;/li&gt;&#xA;&lt;li&gt;Protects business-critical apps to maximize availability&lt;/li&gt;&#xA;&lt;li&gt;Simplifies QoS deployments&lt;/li&gt;&#xA;&lt;li&gt;Reduces configuration errors&lt;/li&gt;&#xA;&lt;li&gt;Cheaper, faster, and simpler deployments&lt;/li&gt;&#xA;&lt;li&gt;Follows DiffServ&lt;/li&gt;&#xA;&lt;li&gt;Allows complete control over QoS configs&lt;/li&gt;&#xA;&lt;li&gt;Allows modification of auto-generated configs&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;AutoQoS phases of evolution&#xA;&lt;ul&gt;&#xA;&lt;li&gt;AutoQoS VOIP - Early version that configures the basics without discovery&lt;/li&gt;&#xA;&lt;li&gt;AutoQoS for Enterprise - Second version that only runs on routers and uses two-step process&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Autodiscovery using NBAR&lt;/li&gt;&#xA;&lt;li&gt;Generation of class maps&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;AutoQoS key elements&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Application classification&lt;/li&gt;&#xA;&lt;li&gt;Policy generation&lt;/li&gt;&#xA;&lt;li&gt;Configuration&lt;/li&gt;&#xA;&lt;li&gt;Monitoring and reporting&lt;/li&gt;&#xA;&lt;li&gt;Consistency&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Interfaces that you can configure AutoQoS on&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Serial ifs with PPP and HDLC&lt;/li&gt;&#xA;&lt;li&gt;FR point-to-point subifs (NOT multipoint)&lt;/li&gt;&#xA;&lt;li&gt;ATM point-to-point subifs&lt;/li&gt;&#xA;&lt;li&gt;FR-to-ATM links&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Prerequsites&#xA;&lt;ul&gt;&#xA;&lt;li&gt;No Qos policy already configured on if&lt;/li&gt;&#xA;&lt;li&gt;CEF enabled on if&lt;/li&gt;&#xA;&lt;li&gt;Correct bandwidth configured on if&lt;/li&gt;&#xA;&lt;li&gt;IP address on low-speed if&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Configuring AutoQoS Enterprise on a router (NOT a switch)&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;strong&gt;auto qos discovery&lt;/strong&gt; - begins discovery process&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;auto qos&lt;/strong&gt; - generates and applies MQC-based policies&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Configuring AutoQoS VOIP&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;strong&gt;auto qos voip [ trust | cisco-phone ]&lt;/strong&gt;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Verifying AutoQoS on router&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;strong&gt;show auto discovery qos&lt;/strong&gt; - get autodiscovery results&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;show auto qos&lt;/strong&gt; - examine configuration generated&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Number of classes&lt;/li&gt;&#xA;&lt;li&gt;Classification options&lt;/li&gt;&#xA;&lt;li&gt;Marking options&lt;/li&gt;&#xA;&lt;li&gt;Queuing mechanisms&lt;/li&gt;&#xA;&lt;li&gt;Other QoS mechanisms&lt;/li&gt;&#xA;&lt;li&gt;If, subif, PVC where policy is applied&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;show policy-map interface&lt;/strong&gt; - look at if stats&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Verify AutoQoS VOIP&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;strong&gt;show auto qos&lt;/strong&gt;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;show policy-map interface&lt;/strong&gt;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;show mls qos maps&lt;/strong&gt; - shows CoS to DSCP mappings&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Possible issues with AutoQoS&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Too many traffic classes - manually consolidate some&lt;/li&gt;&#xA;&lt;li&gt;Configuration doesn&amp;rsquo;t change - rerun AutoQoS&lt;/li&gt;&#xA;&lt;li&gt;Configuration may not fit your situation - fine-tune it by hand&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Fine-tuning AutoQoS&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Use QPM&lt;/li&gt;&#xA;&lt;li&gt;CLI&lt;/li&gt;&#xA;&lt;li&gt;copy policy into editor, change, reapply&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;AutoQoS can match on characteristics besides ACLs and NBAR&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;strong&gt;match input interface&lt;/strong&gt;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;match cos&lt;/strong&gt;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;match ip precedence&lt;/strong&gt;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;match ip dscp&lt;/strong&gt;&lt;/li&gt;&#xA;&lt;li&gt;&lt;strong&gt;match ip rtp&lt;/strong&gt;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;</description>
    </item>
    <item>
      <title>ONT Notes - Pre-classify and End-to-end QoS</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-pre-classify-and-end-to-end-qos/</link>
      <pubDate>Thu, 04 Feb 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-pre-classify-and-end-to-end-qos/</guid>
      <description>&lt;ul&gt;&#xA;&lt;li&gt;VPNs (Didn&amp;rsquo;t ISCW cover this?)&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Provide&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Confidentiality&lt;/li&gt;&#xA;&lt;li&gt;Integrity&lt;/li&gt;&#xA;&lt;li&gt;Authentication&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Types&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Remote-access&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Client-initiated&lt;/li&gt;&#xA;&lt;li&gt;NAS-initiated&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Site-to-site&#xA;&lt;ul&gt;&#xA;&lt;li&gt;LAN-to-LAN&lt;/li&gt;&#xA;&lt;li&gt;Extranet&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;L3 Tunneling protocols&#xA;&lt;ul&gt;&#xA;&lt;li&gt;GRE&lt;/li&gt;&#xA;&lt;li&gt;IPSec&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Pre-classify allows traffic to be classified before being sent across a tunnel or crypto-ed.&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&lt;em&gt;qos pre-classify&lt;/em&gt;&lt;/li&gt;&#xA;&lt;li&gt;Provides a view into the original IP headers&lt;/li&gt;&#xA;&lt;li&gt;To classify on pre-tunnel header, apply the policy to the tunnel interface WITHOUT pre-classify.&lt;/li&gt;&#xA;&lt;li&gt;To classify on post-tunnel header, apply the policy to the physical interface WITHOUT pre-classify.&lt;/li&gt;&#xA;&lt;li&gt;To classify on pre-tunnel header, apply the policy to the physical interface WITH pre-classify.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;SLA - agreement with provider to guarantee QoS mechanisms across their network based on your markings.&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Assures availability, loss, throughput, delay, and jitter.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;End-to-end QoS&#xA;&lt;ul&gt;&#xA;&lt;li&gt;To be effective, each hop in the path must have QoS configured similarly.&lt;/li&gt;&#xA;&lt;li&gt;Necessary in three locations&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Campus - within the customer network&lt;/li&gt;&#xA;&lt;li&gt;The edges - customer facing the provider, provider facing customer&lt;/li&gt;&#xA;&lt;li&gt;On the provider network&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;QoS tasks&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Campus access switches&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Speed/duplex settings&lt;/li&gt;&#xA;&lt;li&gt;Classification&lt;/li&gt;&#xA;&lt;li&gt;Trust&lt;/li&gt;&#xA;&lt;li&gt;Phone/access switch configs&lt;/li&gt;&#xA;&lt;li&gt;Multiple queues on switch ports, including priority for VOIP&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Campus distribution&#xA;&lt;ul&gt;&#xA;&lt;li&gt;L3 policing and marking&lt;/li&gt;&#xA;&lt;li&gt;Multiple queues on switch ports, including priority for VOIP&lt;/li&gt;&#xA;&lt;li&gt;WRED&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;WAN edge&#xA;&lt;ul&gt;&#xA;&lt;li&gt;SLA definitions&lt;/li&gt;&#xA;&lt;li&gt;LLQ&lt;/li&gt;&#xA;&lt;li&gt;LFI&lt;/li&gt;&#xA;&lt;li&gt;WRED&lt;/li&gt;&#xA;&lt;li&gt;Shaping&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Provider cloud&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Capacity planning&lt;/li&gt;&#xA;&lt;li&gt;PHB&lt;/li&gt;&#xA;&lt;li&gt;LLQ&lt;/li&gt;&#xA;&lt;li&gt;WRED&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Enterprise campus QoS implementation&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Implement multiple queues to avoid congestion&lt;/li&gt;&#xA;&lt;li&gt;Assign VOIP and video to highest priority queue&lt;/li&gt;&#xA;&lt;li&gt;Esablish trust boundaries&lt;/li&gt;&#xA;&lt;li&gt;Use policing to rate-limit excess traffic&lt;/li&gt;&#xA;&lt;li&gt;Use hardware QoS when possible&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Control Plane Policing (CoPP)&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Applies QoS policy to traffic destined for the router&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Routing protocols&lt;/li&gt;&#xA;&lt;li&gt;Management protocols&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Can be used to avoid DOS attacks&lt;/li&gt;&#xA;&lt;li&gt;Applied to &lt;em&gt;control-plane&lt;/em&gt; in global config&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;</description>
    </item>
    <item>
      <title>ONT Notes - Congestion Avoidance, Policing, Shaping, and Link Efficiency</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-congestion-avoidance-policing-shaping-and-link-efficiency/</link>
      <pubDate>Wed, 03 Feb 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/02/ont-notes-congestion-avoidance-policing-shaping-and-link-efficiency/</guid>
      <description>&lt;ul&gt;&#xA;&lt;li&gt;Tail drop drawbacks&#xA;&lt;ul&gt;&#xA;&lt;li&gt;TCP synchronization - Dropping TCP packets from different flows can cause them all to window down and back up again at the same time in cycles.&lt;/li&gt;&#xA;&lt;li&gt;TCP starvation - Non-TCP or aggressive flows can starve everyone else out when TCP throttles back.&lt;/li&gt;&#xA;&lt;li&gt;No differentiated drop - Tail drop doesn&amp;rsquo;t care who you are, so you get dropped if the queue is full.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;RED - Random Early Detection&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Avoids tail drop by randomly dropping packets from the queue before it gets full&lt;/li&gt;&#xA;&lt;li&gt;Only dropped TCP flows slow down instead of everyone who has sent a packet since the queue filled&lt;/li&gt;&#xA;&lt;li&gt;Queues are smaller.&lt;/li&gt;&#xA;&lt;li&gt;Link utilization is more efficient&lt;/li&gt;&#xA;&lt;li&gt;Configured with&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Minimum threshold - start dropping when the queue is this size&lt;/li&gt;&#xA;&lt;li&gt;Maximum threshold - if the queue is this big, start tail dropping&lt;/li&gt;&#xA;&lt;li&gt;Mark probability denominator (MPD) - 1/MPD is the ratio of packets to drop when between the thresholds&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;WRED - Weighted RED&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Based on IP precedence or DSCP values&lt;/li&gt;&#xA;&lt;li&gt;Less-important packets are dropped more aggressively than important packets&lt;/li&gt;&#xA;&lt;li&gt;Applied to an interface, VC or a class within a policy map&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;CBWRED - Class based WRED&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Configured with CBWFQ&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Policing&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Limits subrate bandwidth (give you 100kbps on a T1)&lt;/li&gt;&#xA;&lt;li&gt;Limits traffic of certain applications&lt;/li&gt;&#xA;&lt;li&gt;Any traffic that exceeds police is dropped or re-classified; it&amp;rsquo;s a hard limit&lt;/li&gt;&#xA;&lt;li&gt;Inbound or outbound&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Shaping&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Sets a limit but buffers any in excess&lt;/li&gt;&#xA;&lt;li&gt;Requires memory to store the buffer&lt;/li&gt;&#xA;&lt;li&gt;Buffers = delay and/or jitter&lt;/li&gt;&#xA;&lt;li&gt;Outbound only&lt;/li&gt;&#xA;&lt;li&gt;Can respond to network signals like BECNs and FECNs&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Token and bucket&#xA;&lt;ul&gt;&#xA;&lt;li&gt;The queue is a bucket; if a byte of data needs to be sent, it needs a token.&lt;/li&gt;&#xA;&lt;li&gt;If there are enough tokens, the traffic is considered conforming.&lt;/li&gt;&#xA;&lt;li&gt;If there aren&amp;rsquo;t enough tokens, the traffic is considered exceeding, which triggers the drop (policing), re-classify (policing), or buffer (shaping).&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Frame relay traffic shaping (FRTS)&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Only controls frame relay traffic&lt;/li&gt;&#xA;&lt;li&gt;Applied on subif or DLCI&lt;/li&gt;&#xA;&lt;li&gt;Support fragmentation and interleaving&lt;/li&gt;&#xA;&lt;li&gt;Reacts to FECNs and BECNs&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Compression&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Removed redundancy and patterns in data&lt;/li&gt;&#xA;&lt;li&gt;Less data = less latency&lt;/li&gt;&#xA;&lt;li&gt;Hardware compression or hardware-assisted compression does not involve the main CPU&lt;/li&gt;&#xA;&lt;li&gt;Software compression does&lt;/li&gt;&#xA;&lt;li&gt;Payload compression&lt;/li&gt;&#xA;&lt;li&gt;Header compression&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Link fragmentation and interleaving&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Small data might be waiting for larger data pieces to finish sending&lt;/li&gt;&#xA;&lt;li&gt;Chunks data into smaller fragments so they don&amp;rsquo;t have to wait&lt;/li&gt;&#xA;&lt;li&gt;Interleaving shuffles flows in the Tx queue&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;</description>
    </item>
    <item>
      <title>Migrating CSM Serverfarms to Other Server VLANs</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/migrating-csm-serverfarms-to-other-server-vlans/</link>
      <pubDate>Mon, 25 Jan 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/migrating-csm-serverfarms-to-other-server-vlans/</guid>
      <description>&lt;p&gt;A coworker brought an interesting problem to me the other day.  He wanted to move a serverfarm from one server VLAN to another without taking an outage.  Since I didn&amp;rsquo;t want to have to come into the office late at night to do work, I decided to see what we could do.&lt;/p&gt;&#xA;&lt;p&gt;It turned out to be pretty easy.  We tend to think of CSM VLANs as pairs &amp;ndash; you have the client VLAN for the web servers where the vserver sits and the server VLAN where the serverfarm sits.  The CSM doesn&amp;rsquo;t know about these relationships; all it cares about is whether the servers are in a server VLAN, and we can use that to our advantage here.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ONT Notes - Queuing</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/ont-notes-queuing/</link>
      <pubDate>Sun, 24 Jan 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/ont-notes-queuing/</guid>
      <description>&lt;p&gt;Here are some more notes from my studies.  Of course, no one cares about them but me, but it&amp;rsquo;s my blog.  I’m sure someone will find it useful.  Please help to correct dumbass mistakes.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;Congestion&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Speed mismatch - traffic leaves a lower-bandwidth interface than the one it came in on&lt;/li&gt;&#xA;&lt;li&gt;Aggregation problem - lots of links with one egress of equal bandwidth&lt;/li&gt;&#xA;&lt;li&gt;Confluence problem - a bunch of traffic needs to egress out of the same interface&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;Queuing&lt;/p&gt;</description>
    </item>
    <item>
      <title>ONT Notes – Classification, Marking, and NBAR</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/ont-notes-classification-marking-and-nbar/</link>
      <pubDate>Fri, 22 Jan 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/ont-notes-classification-marking-and-nbar/</guid>
      <description>&lt;p&gt;Here&amp;rsquo;s another set of notes from my ONT studies.  I&amp;rsquo;m sure someone will find it useful.  Please help to correct dumbass mistakes.&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;Classification is done with traffic desriptors&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Ingress interface&lt;/li&gt;&#xA;&lt;li&gt;CoS value on ISL or 802.1P frames&lt;/li&gt;&#xA;&lt;li&gt;Source/destination IP address&lt;/li&gt;&#xA;&lt;li&gt;IP Precedence or DSCP value&lt;/li&gt;&#xA;&lt;li&gt;MPLS EXP&lt;/li&gt;&#xA;&lt;li&gt;Application type&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;Layer 3 QoS&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Type of Service (ToS) is 8-bit field.&lt;/li&gt;&#xA;&lt;li&gt;First 3 bits of ToS are the IP precedence.&lt;/li&gt;&#xA;&lt;li&gt;First 6 bits of ToS are the DSCP value.&lt;/li&gt;&#xA;&lt;li&gt;Last 2 bits of ToS are explicit congestion notification (ECN).&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;&#xA;&lt;p&gt;Layer 2 QoS&lt;/p&gt;</description>
    </item>
    <item>
      <title>ONT Notes - Intro to QoS</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/ont-notes-intro-to-qos/</link>
      <pubDate>Thu, 21 Jan 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/ont-notes-intro-to-qos/</guid>
      <description>&lt;p&gt;I&amp;rsquo;ll try to keep it a little shorter this time.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Major issues for converged enterprise networks&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Available bandwidth: competition among applications&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Fixes&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Increase bandwidth: More power!&lt;/li&gt;&#xA;&lt;li&gt;Properly queue based on classification and marking: QoS&lt;/li&gt;&#xA;&lt;li&gt;Compress: cRTP, TCP header compression, etc.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Delay: Lead time to get a packet to the destination&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Types of delay&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Processing delay: routing, switch delay&lt;/li&gt;&#xA;&lt;li&gt;Queuing delay: how long a frame stays in an output queue&lt;/li&gt;&#xA;&lt;li&gt;Serialization delay:  how long to put the frame on the wire&lt;/li&gt;&#xA;&lt;li&gt;Propagation delay: the time to cross the physical medium&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Jitter (delay variation): Variation is the delay&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Different delays mean different arrival times&lt;/li&gt;&#xA;&lt;li&gt;De-jitter buffers save up packets to reduce jitter (like the old CD writers)&lt;/li&gt;&#xA;&lt;li&gt;Fixes&#xA;&lt;ul&gt;&#xA;&lt;li&gt;More bandwidth&lt;/li&gt;&#xA;&lt;li&gt;Prioritize sensitive data and forward first&lt;/li&gt;&#xA;&lt;li&gt;Remark (reclassify) packets based on sensitivity&lt;/li&gt;&#xA;&lt;li&gt;Enable L2 payload compression: make sure compression delay isn&amp;rsquo;t worse than the jitter&lt;/li&gt;&#xA;&lt;li&gt;Use header compression&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;li&gt;Packet loss: Packets are lost in the network somewhere&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Fixes&#xA;&lt;ul&gt;&#xA;&lt;li&gt;More bandwidth&lt;/li&gt;&#xA;&lt;li&gt;Increase buffers space: more room for the queue on the interface&lt;/li&gt;&#xA;&lt;li&gt;Provide guaranteed bandwidth: Queuing and QoS&lt;/li&gt;&#xA;&lt;li&gt;Congestion avoidance&#xA;&lt;ul&gt;&#xA;&lt;li&gt;Random Early Detection (RED) and weighted RED (WRED) drop packets before the queue is full&lt;/li&gt;&#xA;&lt;li&gt;Selective dropping is better than FIFO or LIFO dropping&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;&lt;strong&gt;QoS History&lt;/strong&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>ONT Notes - VOIP Networks</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/ont-notes-voip-networks/</link>
      <pubDate>Sun, 10 Jan 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/ont-notes-voip-networks/</guid>
      <description>&lt;p&gt;Here are some of the notes I&amp;rsquo;ve been taking while reading over the ONT book. I hope it benefits somebody.  Feel free to correct any stupid mistakes as a paraphrase to avoid a lawsuit.&lt;/p&gt;&#xA;&lt;p&gt;There&amp;rsquo;s way too much info here.  I&amp;rsquo;ll refine the process a little better for the next topics.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;Benefits of Packet Telephony Networks&lt;/strong&gt;&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;More efficient use of bandwidth and equipment - Packet telephony networks don&amp;rsquo;t dedicate channels or a static bandwidth to a call; it&amp;rsquo;s just another network application.&lt;/li&gt;&#xA;&lt;li&gt;Consolidate network expense - The common infrastructure (IP-based networks) keeps you from having to support another distinct network for voice like in traditional PBX implementations.&lt;/li&gt;&#xA;&lt;li&gt;Improved employee productivity - The phone can be used for more than just phone calls by utilizing the XML interface to run applications or provide content from the network.&lt;/li&gt;&#xA;&lt;li&gt;Access to new communications devices - IP phones can communicate with computers, network gear, PDAs, etc., and not just the PBX.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;&lt;strong&gt;Packet Telephony Components&lt;/strong&gt;&lt;/p&gt;</description>
    </item>
    <item>
      <title>CSCtd31622 - CSM, Cookies, and the year 2010</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/csctd31622-csm-cookies-and-the-year-2010/</link>
      <pubDate>Fri, 08 Jan 2010 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2010/01/csctd31622-csm-cookies-and-the-year-2010/</guid>
      <description>&lt;p&gt;It seems that we have another piece of evidence that Cisco doesn&amp;rsquo;t like the CSM.  From what I&amp;rsquo;m able to creatively interpret, the software developers didn&amp;rsquo;t think anyone would be running the CSM for very long, so they set a variable that expires CSM-inserted cookies at 01:01:50GMT on 1 January 2010&lt;a href=&#34;#1&#34;&gt;1&lt;/a&gt;.  If you&amp;rsquo;re using cookies to make connections sticky, that means you may see some unexpected results; this shouldn&amp;rsquo;t affect the web servers&amp;rsquo; cookies.&lt;/p&gt;</description>
    </item>
    <item>
      <title>ASA and Proxy ARP</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/09/asa-and-proxy-arp/</link>
      <pubDate>Fri, 11 Sep 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/09/asa-and-proxy-arp/</guid>
      <description>&lt;p&gt;Wow.  A new entry.  Everyone sit down before you pass out.&lt;/p&gt;&#xA;&lt;p&gt;I&amp;rsquo;ve got a real-world example for you today.  We have an ASA 5540 installed at a business unit with interfaces in multiple networks, including one containing the production servers and another containing the accounting servers.  The production network sits on a 7600 that&amp;rsquo;s not ours, so, to avoid IP conflicts, we are statically NATting connections into that network.  The 7600 has with many, many VLANs, and, since the firewall production servers are on different VLANs, there&amp;rsquo;s an interface VLAN between us.  Sounds pretty straightforward, but it just wasn&amp;rsquo;t working when we try to connect between the interfaces.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Getting Temperature Data from a 6500 via SNMP</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/08/getting-temperature-data-from-a-6500-via-snmp/</link>
      <pubDate>Wed, 19 Aug 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/08/getting-temperature-data-from-a-6500-via-snmp/</guid>
      <description>&lt;p&gt;I apologize to my adoring fans (both of you) for the lack of posting.  I&amp;rsquo;m in the middle of moving, buying a new house, selling my current house, getting a mortgage, etc.  I&amp;rsquo;ve up until 11:30 nearly every night filling out forms and going through red tape.  Don&amp;rsquo;t get me started on getting money from a 401k!  Anyway&amp;hellip;&lt;/p&gt;&#xA;&lt;p&gt;I got in this morning, and a coworker was telling me that the data center&amp;rsquo;s HVAC was crippled due to an oil leak, and it was 90F in there.  D&amp;rsquo;oh!  It wasn&amp;rsquo;t quite that high, but it was warm.  Luckily, all of our network gear is on the end of the rows with AC, so we&amp;rsquo;re safe, but it got me thinking about monitoring temperature of our 6500s via SNMP.  I&amp;rsquo;ve done it via Cacti, but I never really looked how to do it manually.&lt;/p&gt;</description>
    </item>
    <item>
      <title>BCMSN Notes - EtherChannel Distribution</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/06/bcmsn-notes-etherchannel-distribution/</link>
      <pubDate>Tue, 23 Jun 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/06/bcmsn-notes-etherchannel-distribution/</guid>
      <description>&lt;p&gt;EtherChannel lets you aggregate links into one logical connection, but the distribution of traffic is not uniform.  It does not use per-packet load-balancing or the like to determine what interface in the bundle to use.  Instead, it uses a XOR function on packet information to generate a hash that is used to determine what interface to use.&lt;/p&gt;&#xA;&lt;p&gt;By default, the switch will use both the source and destination IP addresses to generate the hash, but there are lots of others.&lt;/p&gt;</description>
    </item>
    <item>
      <title>BCMSN Notes -- STP States</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/05/bcmsn-notes-stp-states/</link>
      <pubDate>Fri, 22 May 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/05/bcmsn-notes-stp-states/</guid>
      <description>&lt;p&gt;I&amp;rsquo;ve decided to take on the CCNP certification, so I&amp;rsquo;m going to wind up with a few posts will be more my own notes than anything.  :)&lt;/p&gt;&#xA;&lt;p&gt;A switch port on a 2960 comes up with a default configuration on VLAN 1.  What happens from the perspective of spanning-tree?&lt;/p&gt;&#xA;&lt;ul&gt;&#xA;&lt;li&gt;First, the port comes up on &lt;strong&gt;blocking&lt;/strong&gt; mode.  This is to make sure that loops aren&amp;rsquo;t created without first listening to the network to see what&amp;rsquo;s going on.&lt;/li&gt;&#xA;&lt;li&gt;Next, if the port may be a root or designated port, the port is moved to the &lt;strong&gt;listening&lt;/strong&gt; state.  In this state, the port can send and receives BPDUs only.  It can&amp;rsquo;t send traffic, but it can discover the other switches participating in STP.&lt;/li&gt;&#xA;&lt;li&gt;After the forwarding delay, the port goes into the &lt;strong&gt;learning&lt;/strong&gt; state.   In this state, the port can send and receive BPDUs as in listening, but it can now receive traffic.  It can&amp;rsquo;t yet send any.&lt;/li&gt;&#xA;&lt;li&gt;After the forwarding delay again, the port goes into the &lt;strong&gt;forwarding&lt;/strong&gt; state.  The port can now send and receive data.&lt;/li&gt;&#xA;&lt;/ul&gt;&#xA;&lt;p&gt;If the port is configured with &lt;em&gt;spanning-tree portfast&lt;/em&gt;, the mode goes from &lt;strong&gt;blocking&lt;/strong&gt; directly to &lt;strong&gt;forwarding&lt;/strong&gt; without going through these steps.  Obviously you don&amp;rsquo;t want a switch plugged into a port configured for portfast since you may wind up with a loop.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Using SSH to Run Commands on a Router or Switch</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/04/using-ssh-to-run-commands-on-a-router-or-switch/</link>
      <pubDate>Thu, 30 Apr 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/04/using-ssh-to-run-commands-on-a-router-or-switch/</guid>
      <description>&lt;p&gt;SSH is more than just a shell.  You can copy files from and to a server or piece of network gear with it.  You can use it to tunnel traffic.  Possibly my favorite, though, is to use SSH to run a command on a remote box without interacting with a shell.&lt;/p&gt;&#xA;&lt;p&gt;One of my biggest pet peeves with IOS (or pretty much any Cisco OS) is the lack of complex filtering.  Let&amp;rsquo;s say I want to look at all the downed ports and interfaces on modules 3 and 6 of my 6509.  I can&amp;rsquo;t easily do that with command from the IOS, but, on my Linux box, I can use multiple &lt;em&gt;grep&lt;/em&gt; commands to get exactly what I want really easily.  Let&amp;rsquo;s work through the example, shall we?&lt;/p&gt;</description>
    </item>
    <item>
      <title>Server NIC Aggregation to a Cisco Switch</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/04/server-nic-aggregation-to-a-cisco-switch/</link>
      <pubDate>Tue, 14 Apr 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/04/server-nic-aggregation-to-a-cisco-switch/</guid>
      <description>&lt;p&gt;Have you even noticed that your new servers all have 2 NICs on the board?  At least all of them that I&amp;rsquo;ve seen in the last 3 years have.  A lot of server admin actually use them in a NIC teaming scenario where both NICs are used as one logical device &amp;ndash; much the same as Etherchannel on a switch.  This provides some fault tolerance and availability in case of failure, which is good idea in most cases.&lt;/p&gt;</description>
    </item>
    <item>
      <title>RSPANs on Cisco Switches</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/03/rspans-on-cisco-switches/</link>
      <pubDate>Wed, 18 Mar 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/03/rspans-on-cisco-switches/</guid>
      <description>&lt;p&gt;We &lt;a href=&#34;http://aconaway.com/2009/03/13/spans-on-cisco-switches/&#34; title=&#34;AConaway.com -- SPANs on Cisco Switches&#34;&gt;discussed SPANs&lt;/a&gt; earlier, but let&amp;rsquo;s talk about RSPANs for a bit.&lt;/p&gt;&#xA;&lt;p&gt;Can anyone guess what the &amp;ldquo;R&amp;rdquo; means?  You guessed it &amp;ndash; &amp;ldquo;Remote&amp;rdquo;.  An RSPAN is a way to get traffic from a SPAN source on one switch to a SPAN destination on another switch that&amp;rsquo;s connected via a trunk.&lt;/p&gt;&#xA;&lt;p&gt;The basic premise is that a special VLAN is created on all the switches and allowed to traverse the trunks.  You then set up a SPAN session that copies your traffic to this special VLAN.  This VLAN then gets the traffic to the other switches through some voodoo magic to be used as source for a SPAN on another switch.&lt;/p&gt;</description>
    </item>
    <item>
      <title>SPANs on Cisco Switches</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/03/spans-on-cisco-switches/</link>
      <pubDate>Fri, 13 Mar 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/03/spans-on-cisco-switches/</guid>
      <description>&lt;p&gt;I can&amp;rsquo;t believe I haven&amp;rsquo;t blogged on this yet.  SPANs are one of my favorite things in the world.&lt;/p&gt;&#xA;&lt;p&gt;The switched port analyzer (SPAN) is a mechanism on Cisco switches that allows you to take traffic on one port and copy it to another.  It&amp;rsquo;s generally used to get traffic to a sniffer or IDS for analysis, but it&amp;rsquo;s a great tool to use to sample traffic from a host for troubleshooting.&lt;/p&gt;</description>
    </item>
    <item>
      <title>CSM Probe Status of ???</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/02/csm-probe-status-of/</link>
      <pubDate>Fri, 20 Feb 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/02/csm-probe-status-of/</guid>
      <description>&lt;p&gt;I must be bored since I&amp;rsquo;m posting again.&lt;/p&gt;&#xA;&lt;p&gt;A colleague asked me to change the failed value of a TCP probe today.  It was no big deal, but, when I looked to see the status of the change, I noticed interesting stati of the RIPs.&lt;/p&gt;&#xA;&lt;blockquote&gt;&#xA;&lt;div class=&#34;highlight&#34;&gt;&lt;pre tabindex=&#34;0&#34; class=&#34;chroma&#34;&gt;&lt;code data-lang=&#34;fallback&#34;&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;switch#sh mod csm 7 probe name TCP80-PROBE detail&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;probe           type    port  interval retries failed  open   receive&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;---------------------------------------------------------------------&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;TCP80-PROBE  tcp     80    20       3       120     10&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;Description: Quick fail recovery&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;recover = 3&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;real                  vserver         serverfarm      policy          status&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;------------------------------------------------------------------------------&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;192.168.1.45:80       VS01            FARM01        (default)       ???&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;192.168.1.44:80       VS01            FARM01        (default)       ???&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;192.168.1.43:80       VS01            FARM01        (default)       ???&#xA;&lt;/span&gt;&lt;/span&gt;&lt;span class=&#34;line&#34;&gt;&lt;span class=&#34;cl&#34;&gt;192.168.1.42:80       VS01            FARM01        (default)       ???&lt;/span&gt;&lt;/span&gt;&lt;/code&gt;&lt;/pre&gt;&lt;/div&gt;&lt;/blockquote&gt;&#xA;&lt;p&gt;It seems that when a change is made to a probe, the CSM discards the state of the probe and starts over.  If you catch it before the first probe is finished, you&amp;rsquo;ll get a status of &amp;ldquo;???&amp;quot;.  I&amp;rsquo;m just picturing the CSM saying &amp;ldquo;Uhh&amp;hellip;I&amp;hellip;don&amp;rsquo;t&amp;hellip;know&amp;rdquo;.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Fail Actions on CSM Serverfarms</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2009/02/fail-actions-on-csm-serverfarms/</link>
      <pubDate>Fri, 20 Feb 2009 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2009/02/fail-actions-on-csm-serverfarms/</guid>
      <description>&lt;p&gt;I&amp;rsquo;ve talked about &lt;a href=&#34;http://aconaway.com/2008/11/06/using-probes-on-the-csm/&#34; title=&#34;AConaway.com -- Using Probes on the CSM&#34;&gt;probes&lt;/a&gt; and stuff on the CSM, but I never mentioned what happens to the connections to a server that fails.  That is, if I&amp;rsquo;m connected to server A in a cluster and that server suddenly commits &lt;a href=&#34;http://en.wikipedia.org/wiki/Seppuku&#34; title=&#34;Wikipedia.com -- Seppuku&#34;&gt;ritual seppuku&lt;/a&gt;, what happens to my connection through the CSM?&lt;/p&gt;&#xA;&lt;p&gt;Remember how the CSM works?  You connect to the VIP, some state tables are updated, your packet&amp;rsquo;s destination IP is changed to a RIP, and the packet is forwarded.  The point I want to emphasize this time is the state table.  If you were to send another packet to the same VIP on the same port, the CSM would look in its state table and see that you&amp;rsquo;re already connected to a server and just forward you on over after a NAT.  What if that server has suddenly died?&lt;/p&gt;</description>
    </item>
    <item>
      <title>Configuring Dedicated Trunks for the CSM</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2008/11/configuring-dedicated-trunks-for-the-csm/</link>
      <pubDate>Mon, 24 Nov 2008 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2008/11/configuring-dedicated-trunks-for-the-csm/</guid>
      <description>&lt;p&gt;Did you catch the article on &lt;a href=&#34;http://aconaway.com/2008/10/10/configuring-fault-tolerance-on-the-csm/&#34; title=&#34;AConaway.com -- Configuring Fault Tolerance on the CSM&#34;&gt;setting up fault tolerance on the CSM&lt;/a&gt;?  In that article, I mentioned that Cisco recommends a dedicated trunk for the FT VLAN if you have two HA CSMs in two chassis.  Discuss amongst yourselves while I drone on.&lt;/p&gt;&#xA;&lt;p&gt;Why should you set up a dedicated trunk for this stuff?  The most obvious reason is to be sure that normal traffic doesn&amp;rsquo;t step on the syncing traffic.  Since we&amp;rsquo;re syncing state information as well as configuration, the frames need to arrive in a timely manner.  Any errors could potentially disrupt the FT process, which is bad.  You surely don&amp;rsquo;t want the primary to fail only to find out that the standby doesn&amp;rsquo;t have the complete or current config.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Using MAC Access-lists</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2008/10/using-mac-access-lists/</link>
      <pubDate>Mon, 27 Oct 2008 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2008/10/using-mac-access-lists/</guid>
      <description>&lt;p&gt;We ran into this today, and, though I knew it existed, I never actually saw it in the wild.  I&amp;rsquo;m talking about MAC access-lists.&lt;/p&gt;&#xA;&lt;p&gt;In the example setup, we have a DMZ off of a firewall that contains a whole mess of servers &amp;ndash; email, web, ftp, etc.  These should all be in the DMZ for sure, but they shouldn&amp;rsquo;t talk to each other.  If a bad guy was able to own my FTP server, he would have a nice platform to use to attack my email server.  That&amp;rsquo;s not cool, so we&amp;rsquo;ve put in MAC access-lists to help out.&lt;/p&gt;</description>
    </item>
    <item>
      <title>The Cisco Network Hierarchical Model</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2008/02/the-cisco-network-hierarchical-model/</link>
      <pubDate>Wed, 06 Feb 2008 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2008/02/the-cisco-network-hierarchical-model/</guid>
      <description>&lt;p&gt;I got my CCNP certification library the other day to finally get myself another cert, so I&amp;rsquo;ve been doing some reading of late. The thing I hate about certs is that, even if you have all the experience in the world, there&amp;rsquo;s always a whole mess of academic stuff that no one really knows or cares about. One of those things is the Cisco Network Hierarchical Model. This model is purely academic and comes with the caveat that you may or may not want to need to use this model in your situation. In other words, here&amp;rsquo;s what we recommend, but do what you want to make your network run properly.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Free and Awesome Network Tools</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/11/free-and-awesome-network-tools/</link>
      <pubDate>Sun, 18 Nov 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/11/free-and-awesome-network-tools/</guid>
      <description>&lt;p&gt;We all have limited budgets these days. Long gone are the days of unlimited resources and uncontrollable expansion of the network, so it&amp;rsquo;s important that any network dude or dudette pay attention to the open-source world. Below is a list of stuff I use at the office and at home to monitor, trend, and alert the network. All this stuff is free and runs on Linux to save even more cash.&lt;/p&gt;</description>
    </item>
    <item>
      <title>A Simple BGP Lab with Dynamips/Dynagen</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/11/a-simple-bgp-lab-with-dynamipsdynagen/</link>
      <pubDate>Sat, 10 Nov 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/11/a-simple-bgp-lab-with-dynamipsdynagen/</guid>
      <description>&lt;p&gt;I assume you take every word I say to heart and that you&amp;rsquo;ve been using Dynamips/Dynagen for a few days now, right? Good. That&amp;rsquo;s a start, but let&amp;rsquo;s break down a simple lab to make sure everyone&amp;rsquo;s on the same page. I run my labs on Linux most of the time, so you&amp;rsquo;ll see my commands for that platform. You&amp;rsquo;re a smart one, so you can figure out what to do on Windows. :)&lt;/p&gt;</description>
    </item>
    <item>
      <title>Dynamips and Dynagen</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/11/dynamips-and-dynagen/</link>
      <pubDate>Fri, 02 Nov 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/11/dynamips-and-dynagen/</guid>
      <description>&lt;p&gt;I&amp;rsquo;ve run across articles for these apps a thousand times, so I thought I&amp;rsquo;d get in on the action. &lt;a href=&#34;http://www.ipflow.utc.fr/index.php/Cisco_7200_Simulator&#34; title=&#34;Dynamips&#34;&gt;Dynamips&lt;/a&gt; and &lt;a href=&#34;http://www.dynagen.org/&#34; title=&#34;Dynagen&#34;&gt;dynagen&lt;/a&gt; are a pair of apps that make simulating Cisco routers very easy. I use them constantly at the office (and even at home on the couch) to try out new configs and even new IOS versions.&lt;/p&gt;&#xA;&lt;p&gt;Dynamips is the brains behind the operation. It was written to simulate Cisco 7200s for testing, but, eventually, it came to support several platforms, including 3600s, 3700s, and 2600s. You can use it to simulate a whole series of routers that are directly connected together through their interfaces, through virtual switches, or even connected to real interfaces on your box to pass traffic out through the real network. It uses real ]IOS images, so you can run whatever you can download. The problem with it is that it&amp;rsquo;s very complicated to use; if you did a fully-populated 7206, your command line would be 5 lines long and not make a lot of sense.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Monitoring the CSM with SNMP</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/10/49/</link>
      <pubDate>Wed, 24 Oct 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/10/49/</guid>
      <description>&lt;p&gt;I had an &lt;a href=&#34;http://aconaway.com/2007/10/02/getting-started-with-the-cisco-csm/&#34; title=&#34;AConaway -- Getting Started with the Cisco CSM&#34;&gt;article&lt;/a&gt; a few weeks ago about the Cisco CSM, which is a load-balancer module for the 6500 series switches. This thing is a pretty good device, but monitoring the connections to each VIP and RIP is not very straightforward. If you have an SNMP monitoring system like &lt;a href=&#34;http://cacti.net/&#34; title=&#34;Cacti -- Home Page&#34;&gt;Cacti&lt;/a&gt; or &lt;a href=&#34;http://oss.oetiker.ch/mrtg/&#34; title=&#34;MRTG -- Home Page&#34;&gt;MRTG&lt;/a&gt;, you need to know the OID to monitor, but it doesn&amp;rsquo;t work like anything else in the world.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Object Tracking and HSRP</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/10/object-tracking-and-hsrp/</link>
      <pubDate>Fri, 19 Oct 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/10/object-tracking-and-hsrp/</guid>
      <description>&lt;p&gt;We&amp;rsquo;ve done some tracking with HSRP in other articles, but there are lots and lots of ways to use object tracking on an HSRP device. In our example network, we tracked the interface, and, if it went down, we decremented the standby priority. What if just the line protocol goes down? How about if the BGP peer on the other end stops sending you routes? If you don&amp;rsquo;t know that object tracking is the answer, you didn&amp;rsquo;t read the title.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Intro to Policy Routing</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/10/intro-to-policy-routing/</link>
      <pubDate>Sat, 13 Oct 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/10/intro-to-policy-routing/</guid>
      <description>&lt;p&gt;I like [tag]layer-3[/tag] [tag]switch[/tag]es. They give some great flexibility and bang-for-the buck, but most people overlook one issue with these things that can cause security problems. Most people configure the [tag]VLAN[/tag]s, put an IP on the VLAN interfaces, and put it in production, but the packets don&amp;rsquo;t actually flow the way they think they do.&lt;/p&gt;&#xA;&lt;p&gt;Let&amp;rsquo;s check an example. Here&amp;rsquo;s what the proverbial you had in mind when you plugged your web server, management server, and firewall into your 3750.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Getting Started with the Cisco CSM</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/10/getting-started-with-the-cisco-csm/</link>
      <pubDate>Wed, 03 Oct 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/10/getting-started-with-the-cisco-csm/</guid>
      <description>&lt;p&gt;Cisco&amp;rsquo;s Content Switching Module (CSM) is an application accelerator. Or is it an application networking service module? I hate those fancy buzzwords &amp;ndash; it&amp;rsquo;s a load balancer. It&amp;rsquo;s a module for the 6500 series switches that lets you load balance services in any VLAN and can also be set up for high-availability. I could go on for a while about the features, but let&amp;rsquo;s keep it simple for now. A short tutorial, if you will.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Finding Hosts on Layer 2</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/09/44/</link>
      <pubDate>Thu, 27 Sep 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/09/44/</guid>
      <description>&lt;p&gt;Most firewalls should block [tag]ICMP[/tag] requests to them, so how do you know that your router or server has layer-2 connectivity to one? It&amp;rsquo;s pretty elementary, actually, but I&amp;rsquo;ve found that not a lot of people know this trick. If you ping the firewall, it will receive the ICMP packet and drop it per the rulebase. In this process, though, the firewall has to answer [tag]ARP[/tag] requests, which will be stored in the router or server&amp;rsquo;s ARP table. If you see it in there, you have connectivity.&lt;/p&gt;</description>
    </item>
    <item>
      <title>HSRP Interface Tracking</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/09/hsrp-interface-tracking/</link>
      <pubDate>Sun, 23 Sep 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/09/hsrp-interface-tracking/</guid>
      <description>&lt;p&gt;Remember the article on &lt;a href=&#34;http://aconaway.com/2007/08/20/router-on-a-stick/&#34; title=&#34;AConaway.com -- Router-on-a-stick&#34;&gt;router-on-a-stick&lt;/a&gt;? And the one on &lt;a href=&#34;http://aconaway.com/2007/08/21/running-hsrp-for-availability/&#34; title=&#34;AConaway.com -- Running HSRP for Availability&#34;&gt;HSRP&lt;/a&gt;? Let&amp;rsquo;s add to that example network, shall we? Let&amp;rsquo;s make those routers into edge routers so they connect your internal network to the Internet with some size circuit. Let&amp;rsquo;s just say they each terminate &lt;a href=&#34;http://en.wikipedia.org/wiki/DS3&#34; title=&#34;Wikipedia -- Digital Signal 3&#34;&gt;DS3s&lt;/a&gt; to different providers.&lt;/p&gt;&#xA;&lt;p&gt;Here&amp;rsquo;s our network now (I&amp;rsquo;m experimenting with Visio alternatives, so excuse the diagram footer there). Let&amp;rsquo;s assume that we have [tag]HSRP[/tag] set up like the HSRP article and that we have many sub-interfaces on the Ethernet side of the routers like the ROAS article. Also, Router1 is the HSRP active peer and each router has a default route pointing to the upstream ISP through interface Serial 0/0.&lt;/p&gt;</description>
    </item>
    <item>
      <title>SNMP v3 is Easy!</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/09/snmp-v3-is-easy/</link>
      <pubDate>Sun, 16 Sep 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/09/snmp-v3-is-easy/</guid>
      <description>&lt;p&gt;I finally got around to looking into [tag]SNMP[/tag] v3 and was shocked at how easy it actually is. When I first looked up info on it so many moons ago, I saw table after tables of views and privilege levels and thought I would have to put in a billion hours getting it customized. I settled down and went through some Google results and found a &lt;a href=&#34;http://taosecurity.blogspot.com/2006/08/snmp-v3-on-cisco-switch.html&#34; title=&#34;Taosecurity -- SNP v3 on Cisco Switch&#34;&gt;blog post by&lt;/a&gt; &lt;a href=&#34;http://taosecurity.blogspot.com/2006/08/snmp-v3-on-cisco-switch.html&#34; title=&#34;Taosecurity -- SNP v3 on Cisco Switch&#34;&gt;Richard Bejtlich&lt;/a&gt; that shows the simplest of configurations. Works like a champ!&lt;/p&gt;</description>
    </item>
    <item>
      <title>Setting Up SSH on IOS Devices</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/09/setting-up-ssh-on-ios-devices/</link>
      <pubDate>Wed, 05 Sep 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/09/setting-up-ssh-on-ios-devices/</guid>
      <description>&lt;p&gt;By default, most Cisco [tag]IOS[/tag] devices come configured to be accessed via telnet. This is probably fine for your house, but I really cringe when I run across corporate networks that use [tag]telnet[/tag] to access the devices. Telnet is old and out-dated and can be very dangerous. It&amp;rsquo;s in plain-text, which means that anyone who sees the packets can get your username and password. It also has no remote identification mechanism, so you can&amp;rsquo;t guarantee you&amp;rsquo;re talking to the device you think you are; you could be telnetting to a rogue device on your network without knowing it. [tag]SSH[/tag] gives you both things and more.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Running HSRP for Availability</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/08/running-hsrp-for-availability/</link>
      <pubDate>Wed, 22 Aug 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/08/running-hsrp-for-availability/</guid>
      <description>&lt;p&gt;In &lt;a href=&#34;http://aconaway.com/2007/08/20/router-on-a-stick/&#34; title=&#34;aconaway.com -- Router-on-a-stick&#34;&gt;the article describing a router-on-a-stick&lt;/a&gt;, I mentioned that I would use two routers that run HSRP for availability, so I figured that I would write up a short post on what it is and how it works.&lt;/p&gt;&#xA;&lt;p&gt;HSRP (Hot Standby Router Protocol) is a Cisco-proprietary protocol for establishing two or more layer-3 devices as a fault-tolerant gateway. Please note that it is not a &lt;em&gt;routing&lt;/em&gt; protocol like OSPF or BGP. HSRP provides availability and fault-tolerance&amp;hellip;it does not advertise routes. I actually found several Google results that said it was a routing protocol. Those were on the first page of the results, so be careful when searching! Webopedia.com is terrible.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Router-on-a-Stick</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/08/router-on-a-stick/</link>
      <pubDate>Mon, 20 Aug 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/08/router-on-a-stick/</guid>
      <description>&lt;p&gt;Ever heard of a router-on-a-stick? Go ahead and laugh&amp;hellip;everyone does. It&amp;rsquo;s a funny name for a very serious topic, though. A router-on-a-stick is a network configuration that uses a single router interface as a gateway for more than one network segment. You literally take a single Ethernet interface, put it on multiple VLANs, and set up the IP address stuff.&lt;/p&gt;&#xA;&lt;p&gt;Here&amp;rsquo;s how it works: The router is plugged into a port on a switch that is configured as a trunk that carries all the important VLANs. The router is configured with Ethernet sub-interfaces (just as you do frame-relay or ATM sub-interfaces) &amp;ndash; one for each VLAN. Piece of cake.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Common Cisco IOS Commands</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/08/common-cisco-ios-commands/</link>
      <pubDate>Fri, 17 Aug 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/08/common-cisco-ios-commands/</guid>
      <description>&lt;p&gt;Here&amp;rsquo;s a list of IOS commands that I use all the time that aren&amp;rsquo;t a part of the basics. I obviously use more than just these, and you do, too, but I hope there&amp;rsquo;s at least one eye-opener in there.&lt;/p&gt;&#xA;&lt;p&gt;&lt;strong&gt;&lt;em&gt;show env all&lt;/em&gt;&lt;/strong&gt;: Shows the environment status, including fan, power supplies, etc. Good for making sure the environment is alright. &lt;strong&gt;&lt;em&gt;show history&lt;/em&gt;&lt;/strong&gt;: Shows your command history since you logged onto the device. Good for remembering what command you put into get those stats the boss needs. Configuration changes don&amp;rsquo;t show up here. &lt;strong&gt;&lt;em&gt;show inventory&lt;/em&gt;&lt;/strong&gt;: Shows a nice list of what the device has hardware-wise. It&amp;rsquo;s good for a router with a bunch of modules or a switch with a bunch of cards. &lt;strong&gt;&lt;em&gt;show interface trunk&lt;/em&gt;&lt;/strong&gt;: Shows all the trunks on a switch along with pruning information. Good for making sure all VLANs are propagating around the network. &lt;strong&gt;&lt;em&gt;show interface capabilities&lt;/em&gt;&lt;/strong&gt;: Shows what the interface is capable of doing &amp;ndash; not just what&amp;rsquo;s its configured to do. &lt;strong&gt;&lt;em&gt;show interface counters&lt;/em&gt;&lt;/strong&gt;: Shows byte and packet information for every interface. Good for quickly showing statistics without having to look at all the &lt;em&gt;show interface&lt;/em&gt; garbage. &lt;strong&gt;&lt;em&gt;show mac-address-table&lt;/em&gt;&lt;/strong&gt;: Shows the CAM table on a switch. Good for tracking down where a host is plugged into. &lt;strong&gt;&lt;em&gt;show tcp brief&lt;/em&gt;&lt;/strong&gt;: Shows all TCP connections associated with the device like SSH sessions or BGP. &lt;strong&gt;&lt;em&gt;show users&lt;/em&gt;&lt;/strong&gt;: Shows who&amp;rsquo;s logged onto the device. Good for finding a line to clear to kick everyone off the box.&lt;/p&gt;</description>
    </item>
    <item>
      <title>Mixed-platform LANs and Spanning Tree</title>
      <link>https://a996c8ee.aww-3cz.pages.dev/posts/2007/08/mixed-platform-lans-and-spanning-tree/</link>
      <pubDate>Fri, 10 Aug 2007 00:00:00 +0000</pubDate>
      <guid>https://a996c8ee.aww-3cz.pages.dev/posts/2007/08/mixed-platform-lans-and-spanning-tree/</guid>
      <description>&lt;p&gt;We just an HP C-class blade chassis which included two GbE2c network modules.  These modules are Nortel switches running AlteonOS that connect the blades to the rest of your network.  When I turned these guys up the other day, every VLAN stopped working, so I ran down to the data center and unplugged the uplink.  I called HP and soon found out that the GbE2c doesn&amp;rsquo;t play nice with Cisco switches out-of-the-box.  Since we have a Cisco network (not now, I guess), we can into some problems.&lt;/p&gt;</description>
    </item>
  </channel>
</rss>
