Cisco ASA Config for PCI Compliant Office
We have a small business office, but due to PCI compliance we need to segment this into two internet networks (one ‘compliant’ and one for any other devices to use). We currently have a Draytek modem/wan load balancer which also has firewalling but this is very basic and doesn’t support seperate security policies on each vlan. As such, I have just purchased an ASA 5505 and would like some pointers to setting things up: VLANS: [...]
Continue Reading »What type of fiber do I need for a WS-G5484
I have bought two WS-2948G switches from cisco for a lab. I now need two buy to additional modules for them WS-G5484. I’ve never worked with fiber so I was wondering if there are differences in fiber cables and what type of fiber cable I should use on these? I noticed that there is LC, SC,ST,… Asked by Lucas Kauffman For 90-95% of the time basic MM OM2 or OM3 LC-to-LC will do just for [...]
Continue Reading »Cisco Aironet 1200 (AIR-AP1231G-A-K9) issues
I bought a Cisco Aironet AIR-AP1231G-A-K9 off of ebay and am having issues with it. The first and most alarming issue is the cycling of the status lights. I read the manual and it does not show that as a possible state. Here is a video of the status lights -> https://www.youtube.com/watch?v=ubuBkHCuwWg It does pull an IP address via DHCP on my Sonicwall, but is unreachable via web browser. I pinned out my own console [...]
Continue Reading »No luck with cisco site to site vpn
I have two ASA 5505 running 8.4. Both can access the Internet. ASA#1 has a VoIP gateway behind it that is being NATted, hence the extra rules. This is on ASA #1: interface Vlan1 nameif inside security-level 100 ip address 192.168.1.1 255.255.255.0 ! interface Vlan2 nameif outside security-level 0 ip address 10.10.10.1 255.255.255.224 !object network server host 192.168.1.100 object service voip-range service udp source range 9000 9049 object service sip-tcp service tcp source eq sip [...]
Continue Reading »Reloading Cisco 881w AP reloads the whole router?
This is about a Cisco router (881w) with the AP-WLAN interface. While on the AP interface (after having entered this command:) service-module wlan-ap 0 session If I enter this command: reload will this reload the whole router, or only the AP module? In other words, will I only lose Wifi connectivity, or the whole internet access during the reload process? Asked by Jonathan Rioux If you want only to reload the WLAN AP, type: service-module [...]
Continue Reading »x86 Router Benchmarks?
I have grow to prefer x86 based router OS’s like Vyatta and pfSense over their competitors Cisco and Juniper (I never really used Juniper, but still.). However, they feel “fake” to me, like “Frankenstein” routers. I think my greatest worry is that I am missing out on something by not using the main contenders. Are there any benchmarks out there that compare the main metrics (throuput, etc.) of x86 router operating systems to their proprietary [...]
Continue Reading »How to turn off CDP on a Cisco SD2005?
So I have this Cisco switch (Cisco SD2005) and I need to turn off the (probably) CDP: 14:58:53.235097 01:80:c2:00:00:01 (oui Unknown) > Broadcast, ethertype Unknown (0×8874), length 60: 0×0000: e008 8f4f d8c2 fa05 da4e 5010 0000 0000 …O…..NP….. 0×0010: 0000 0000 0000 0000 0000 0000 0000 0000 ……………. 0×0020: 0000 0000 0000 0000 0000 0000 0000 ………….. How can I do this? I’m not familiar with Cicso switches so I need a little description for [...]
Continue Reading »Cisco Routers charateristics
I use program called PRTG for monitoring Cisco routers. On each Cisco device I made an SNMP setup: snmp-server community public. So it means that NMS which will make an SNMP request to this device must have community string “public” in the request. Without this string it cannot be done nothing. Next step I started the program and press Auto-Discovery and It got me all my devices with CPU load, traffic load and other characteristics. [...]
Continue Reading »Cisco switch, how to determine MAC address of connected device or wake device up?
switch1#show interfaces descri … Fa0/13 up up Fa0/14 down down Fa0/15 up up … (the lights are also on on both ports 13 and 15) However: switch1#show mac-address-table 24 x.dc15.93a9 DYNAMIC Fa0/13 24 x.9931.296d DYNAMIC Fa0/11 24 x.2196.cf24 DYNAMIC Gi0/1 24 x.a947.fb81 DYNAMIC Fa0/11 24 x.b954.90c2 DYNAMIC Fa0/8 24 x.b976.a45c DYNAMIC Fa0/2 24 x.8f1c.f11b DYNAMIC Fa0/11 24 x.ba8e.f467 DYNAMIC Fa0/11 28 x.2196.cf24 DYNAMIC Gi0/1 28 x.f08a.6025 DYNAMIC Fa0/20 28 x.f08a.6026 DYNAMIC Fa0/19 28 x.f08a.6027 DYNAMIC [...]
Continue Reading »Win Server Admin vs Cisco admin [closed]
currently I am study in Linux System Administration but I seek another field related to network and security administration, now I have a question: which of these fields is better to master: Windows Server Administration or work in CISCO-related filed such as configuring routers? please notice that I want to have a coherence and consistent mastery of network and security. Asked by XinHua If you want a ‘mastery’ you’ll need to know a good amount [...]
Continue Reading »


