Hello, im troubleshooting an issue with BYOD iphones having trouble connecting to cisco call manager for Jabber IM, i suspect we have a NAT problem somewhere but cant determine it without more granular information from the phones themselves. Does anybody have any recommendations on apps that can ping, traceroute, or show open sockets? Also does anybody know how to view the DNS cache on an iphone?
Wednesday, January 16, 2019
I need help with flow control mechanisms and measurements.
Hello all, first time on this sub and I hope there is someone who can help me.
First thing i am looking for but failing is a source for Backpressure flow control. I know that bp is mainly a routing algorithm, but saw instances or tools which stated that they use it for regulating data flows.
Next thing is aspects to compare when looking at fc mechanisms. I know this sounds stupid, but i am in need for help. I already thought about comparing the transient time, so the time the mechanism requires to gain maximum throughput. I also noted package collision procedure, throughput potential and physical channel bandwidth usage but i dont know if these things are even worth to compare (or comparable at all)
I hope someone could help me with these questions
File Transfer Speeds
Hey guys, currently work for an MSP with multiple clients. One client only works remotely and began experiencing transfer speed issues between his laptop and the server. The user connects to the SonicWall TZ 300 via VPN.
User ran a speed test and Laptop download was 65 and Server download was 108. When transferring a file to the server (18MB), it takes about 40 seconds. From the server to the laptop, the same file took 2:18.
I'm trying to figure out what is choking the bandwidth, but I don't know where to start. I ran PingPlotter on the user's machine. Here's a screenshot: https://imgur.com/a/G2FnWNd
Any help/ideas would be helpful! I'm fairly new to networking
Why won't this VPN pass traffic!?
Frustrated here. I have a sonicwall and cisco rv110w. The rv110w is at a satellite site with only one user so we just used a router we had laying around. The sonicwall (nsa3600) has a few other site-to-site VPNs established fine. The satellite office has a xfinity w/o a static IP. I've registered with ddns though, so I've got a fqdn I used to get the VPN up and running. Usually on sonicwall if thing's don't match it'll spit out tons of warnings and errors in the logs. But there's nothing to be found when I check the logs but even though the VPN appears to be established I cannot pass any traffic between the sites. I've checked the settings and subnet's advertised, I've called sonicwall and they couldn't find the issue. I don't get it. Any help on this?
Laptops used at work and home
This might be a relatively easy answer I'm just not sure how to fix. Issue : Have a domain at work that authenticated users join but have to set the IPv4 DNS server address to specific IP on each system. The issue is the workers take their laptop home to work from there but don't have admin rights so they have to bring the system to us to set the DNS server back to automatic or they will have no internet connectivity at home. This is a pain in the neck whenever they forget to bring it to use take it home then can't use it. Any help would be greatly appreciated !!
Setup Internet access with Cisco 2921 and Palo Alto
I'm working in an issue and working through fallout from a previous Network Engineer's migration. Whom which is no longer on staff.
For one of our locations, all of traffic reaching the internet used to flow like this.
User -> Palo Alto FW -> Cisco ASA -> Cisco 2921 -> Internet
A recent migration removed the Cisco ASA from certain aspects of the infrastructure. It is still in place and many aspects of the network still follow the same path for access to the internet and work fine. However, some of them were required to bypass the Cisco ASA due to a requirement which I'm trying to figure out.
Here is a section from the Cisco 2921 config. IP Addresses are arbitrary
16.18.22.124 is Palo Alto outside Interface IP
16.18.22.96 is Border route Cisco 2921 Inside interface
interface GigabitEthernet0/1.6
description DATA
encapsulation dot1Q 6
ip address 16.18.22.125 255.255.255.224
no ip redirects
no ip unreachables
no ip proxy-arp
standby 0 ip 16.18.22.97
standby 0 preempt
no cdp enable
ip access-list extended In_2_Out
deny udp any any eq 3544 log
permit ip host 224.0.0.2 6.7.14.32 0.0.0.7 log
permit ip 6.7.43.32 0.0.0.7 host 13.16.7.5 log
permit ip 6.7.14.32 0.0.0.7 host 13.16.6.5 log
permit ip 16.18.22.64 0.0.0.63 any reflect Reflexive-LIST timeout 240 log
remark ------
remark ----
remark --
remark ----------------------------------------end of ACL
permit ip 16.18.22.96 0.0.0.31 any reflect Reflexive-LIST timeout 300 log
ip route 16.18.22.96 255.255.255.224 16.18.22.124
The Palo Alto has a PBF rule to route traffic from the associated internal subnet out of the interface with the 16.18.22.124/27 ip address. Next hop on the Palo Alto PBF rule is 16.18.22.97
Looking for network implementation risk/consequence list
Hey there folks, I'm looking for documents or articles of possible risks and consequences of implementing an already existing network to a new branch. any pointers? thanks.
Preference on MPLS WAN connection, if given a choice: BGP or OSPF?
Our provider is upgrading our connection (bandwidth and hardware), and they were going to connect to us with OSPF (the way they have always been doing it). I asked why not just hand us BGP. They told me that I can have it how ever I like.
The challenge that I have now, is that one of the senior engineers asked me what the benefits are, and suggested that I present the argument in our next meeting. My thought was mostly just having complete separation of routing protocols at the firewall (Palo Alto), and just redistribute at the edge into the LAN. No Internet on this connection, so no big BGP table.
Doing my homework on this now. Any input is greatly appreciated. Does it really matter? Is there any reason that we could leverage BGP to the provider, versus just extending our OSPF connection to them.
Network design with Juniper QFX for virtualization
Hello everyone,
I have to design a new network involving Juniper QFX5110-48S devices for a work project. This network aims to be used by virtualization clusters with servers and NetApp storage gears. There are 3 datacenters to interconnect with the QFXs. Working for a service provider, the DCs are linked with DWDM channels (on our own fibers) between each others (about 1 or 2 ms between each DC). The idea is to have a network topology like a triangle.
Virtualization Gear --- QFX 1 ------- QFX 2 --- Virtualization Gear | | | | +--- QFX 3 ---+ | | Virtualization Gear
I see a lot of designs based on EVPN and VXLAN technologies around here but I do not know much about these technologies. What would be your advice to design such topology?
Of course I know that gear should not be bought before having a proper design, but you know how management can be sometime.
Cheers
Tuesday, January 15, 2019
CME Issue
Hi
I have cisco 2811 and few 7961G cisco phones, CME verion 8.6, the phones not registering at all, the phone is getting DHCP Address which means connectivity is fine, I have done the following on the router
- NTP is set
- uploaded the phone config file (SCCP41.9-4-2SR1-1S.loads) <<<< could this be a problem
- TFTP Statement on the router (tftp-server flash:SCCP41.9-4-2SR1-1S.loads)
- Loaded the config files (load 7961 SCCP41.9-4-2SR1-1S.loads)
- created cnf file, ephone and dn.
ephone 1
device-security-mode none
mac-address 001E.7AC5.xxxx
type 7960
button 1:1
I have reset the cisco phones, what am I missing
Thanks