I use Cisco Meraki to manage a small group of iPads in my business. I choose it because I read it was free. But now suddenly I’m getting email that’s my Meraki Network will stop working at the end of the month without a license. Am I missing something?
Sunday, February 4, 2018
Going ‘almost’ 100% wireless..pitfalls?
I’m being tasked with providing an evaluation and recommendation on converting one of our floors to wireless only - for endpoints. Right now each desk is wired with a VOIP phone.
Just curious if anyone else is running wireless only in their company and how it worked out? I’m more curious on hearing the end-user reaction/experience and things that we maybe take for granted just working on wired.
Quick background...The solution would be architected with dual wireless LAN controllers, dual Cisco ISE and 802.11ac APs.
Can't figure out the cause of LAN broadcast traffic spilling over into WLAN zone on SonicWall
It seems that I have continual LAN broadcast traffic spilling over to my WLAN interface (X3). I have switches with basic LAN traffic and then for each switch, I have a few ports configured to connect to a SonicPoint AP. PVID of these SonicPoint ports is 2 and then I am also allowing VLAN 200 tagged traffic (for guest). These ports all trunk back to the X3 WLAN interface on my SonicWall and access between LAN and WLAN/WLAN guest are managed with access rules. Right now, LAN and WLAN have access to each other but WLAN guest only has access to WAN.
Common sense as well as SW support says that I should only be getting these messages if there is something else plugged into the ports besides SonicPoints or if something is mis-configured. The firewall rules don't seem to be a factor at all as I have both set deny any any and allow any any to and from LAN/WLAN. I have also checked all the physical connections as well as the configurations and nothing seems to have changed. I can't figure out the cause of this. It started a few weeks ago which coincidentally is around the time I upgraded the SW firmware & replaced the switch that it connects to. I want to say it's probably in related to one of those two things, but I was careful not to mess anything up and I can not spot any configurations that appear to be wrong.
Details: SonicWall Zones
- X0 LAN - 10.1.2.0/24
- X3 Wifi (connect to switch ports with PVID 2) 10.1.3.0/24
- X3:200 Wifi-Guest (connected to switch ports PVID 2) 192.168.1.0/24
SonicWall logs is constantly spouting these messages:
- Message: "Drop WLAN traffic from non-SonicPoint devices
- Source: 10.1.2.X (LAN devices), [port #], X3
- Destination IP & MAC: 10.1.2.255/FF:FF:FF:FF:FF:FF (broadcast traffic), [port #]
- IP Protocol: UDP
My Dell N3000 switch configs look like this (ports configured for SonicPoints):
switchport mode general
switchport general pvid 2
switchport general allowed vlan add 2
switchport general allowed vlan add 200 tagged
Any help is appreciated!
IBM Bladecenter VMNic to Cisco Switch
So im having a terrible time getting a 2 x vmnic team working with esxi 5.5 management.
Our current network setup (which i suspect is wrong) is that the back of the blade center for blade 1 for example vmnic 0 and vmnic2 both plug into they same cisco 3750 switch into ports gi1/0/7 and 8 respectively.
I can get both up and can ping the management interface which is 10.100.0.100.
As soon as I yank out the Vmnic2 physical interface a constant ping stops.
I can see that the mac address has swapped from vmnic2 to vmnic0 from the cisco switch.
When i plug vmnic2 back in the vmnic0 remains as active but does not allow the ping to start again. If I unplug vmnic0 then the ping restarts again. Is this all because I am using the team on one switch?
Fully Specified Default Route on Cisco Router
Hi Folks, got a short question about Route Lookups:
I want to configure a static default route to the Upstream Router.
I know if I just specify the outgoing interface for the route, it will lookup the MAC address for every unknown destination it gets, which is bad.
If I specify the next hop IP, it will always use the corresponding MAC as destination for unknown IPs. But this leeds always to a recursive route lookup for the next hop IP..
Will a fully specified static default route definately solve both problems?
Thanks in advance!
Gigabyte Negotiate issue
Hi everyone in this subreddit. Recently I have an issue with some of networking equipment and I'm running low of ideas. We work with a lot of wireless links of Cambium Networks carrier class line that supports gigabyte ports, the backbone switch are cisco 2960G and use FTP cables to connect the radios to Switch and in the beginning the port up to gigabyte, but suddenly the negotiation drops to 100FD or no link over the port. Sometimes with a reboot the link goes back to gigabyte, in other times is need to crimp the FTP cable again, but we are unable to find a patron of the issue... Any ideas???
3850 Switch Stack, how do you convert a slave into a standalone switch?
So I was given a 3850 switch and it thinks its switch 2. I cant seem to find any command to convert it to its own standalone switch, i tried turning off redundancy on the slave and also erase config - nothing seems to work. Also # no switch 2 provision doesnt work either.
Any dangers using tcpreplay?
I’m trying to understand tcpreplay and what actually happens when a pcap is replayed. I understand it to be stateless and that if malware is extracted from the pcap then that would be dangerous if executed but what about c2 traffic or malware traffic? Does the traffic get replayed outside of my internal network? Are the destinations in the pcap actually hit?
Thanks in advance for the help!
How to prevent IP Alias from routing
I'm probably doing something completely wrong, or missing something very small, but I have to fix this.. I have a Windows server with a dual adapter lag to a core switch. The server has a static IP on the lag, and the default route is on the same subnet. Due to an unforseen reason, I've had to temporarily enable NFS for this server and attach some storage to another server (VMware). In order to do this, I created a private subnet just for this connection and added an IP on this subnet as an alias on the lag interface. This NFS subnet should obviously not be routed, but the server is now deciding to use the new NFS subnet IP as the source for new routed flows instead of the original IP that is on the same subnet as the default route. How do I prevent this? Or should I not be using an alias to create a storage network, however temporary, in the first place?
Questions on VLANs for introduced security equipment
So my company is introducing some changes to our network that requires some planning but I'm not sure of best practices... we'll be adding card access to doors, IP cameras, time clocks, etc... I'm curious on the following:
Should each device/group of devices have their own VLAN? Should the VLANs be outside of the production network (172/20)?
Thanks in advance.