Home Resources Staff Blogs

NetCraftsmen Staff Blogs

Our blog space holds articles on a variety of technical topics.

Carole Warner ReeceI've recently been looking at BGP designs using route reflectors (RR). As a best practice for RR designs, the logical iBGP sessions should follow the physical topology. But what could happen if you don't follow this practice?


If you have recently migrated to a Cisco UC appliance model or plan on migrating, you may have asked yourself this question.  Cisco provides some recommendations in their various installation guides.  I happen to like copSSH myself and I thought I would provide some information on the application and how I like to use it.

 


Recently I have had a few customers that needed to have a basic queuing function but did not want to have a Contact Center/ACD application in their environment.  In one instance, the customer was led to believe that they would need a UCCX server to do basic queuing.  This is simply not true, there is an option available to administrators.

 


SNMP Testing with net-snmp

Posted by: Rob Chee

Tagged in: snmp , net-snmp

With most network management systems and network security systems, SNMP is a critical component. One great tool for checking SNMP functionality is net-snmp. This tool works with Windows and Linux. From a security perspective, this net-snmp can be used as another troubleshooting tool to ensure that Cisco MARS and Cisco NCM are working correctly.

One basic tool, included with the toolset, is snmpwalk. This can be used to determine the OIDs used for a network device. Here's a partial execution of the command against a Cisco 2523 router.


Carole Warner ReeceYou probably know a couple of ways to use BGP in an enterprise environment. Most commonly, BGP has been used in the enterprise to provide connectivity to the Internet, supporting multihoming solutions, traffic policies, and summarization. BGP has also been used in the core of  large enterprise environments as a tool to enhance network scalability and support separate administrative control domains. However, another way to use BGP in the enterprise is on a single router supporting  networking virtualization with VRF-Lite. (VRF-Lite is also known as Multi-VRF).


David Hailey recently posted a blog on the differences between Integrated Message and Unified Messaging.  After reading Hailey's blog I was reminded of a design discussion with a customer over messaging options on Unity Connection.  With Unity Connection you have multiple options on how you handle voice messaging for a subscriber.  The conversation on UM versus Integrated Messaging can also be extended to include voicemail only, voicemail relay, and voicemail accept and relay.

 


I've been working with two customers that I'd describemy face as "rural fiber network providers". For background info, see http://www.netcraftsmen.net/resources/blogs/rural-fiber-networking.html. As I noted there, one of my customers had the need for some IP multicast (IPmc) within a VRF, initially at least, to support IP telephony. Since it is a school system, I have a suspicion multicast "channels" of video might be lurking in their future.


Rural Fiber Networking

Posted by: Pete Welcher

I've been working with two customers that I'd my facedescribe as "rural fiber network providers". Their designs and business objectives differ somewhat. (For more about one, Google "Michael Minnich" and "fiber farms" -- and thanks to Mike for getting me and Chesapeake Netcraftsmen involved in his project, and to Brian / Scott and BCC for their project. They're the entrepreneurs, putting their credit at risk to make their vision happen!) 


Solving ASA Slowness

Posted by: Pete Welcher

Tagged in: web logging , slow application behavior , slow , router , NAT , firewall , ASA

I just spent some time on an interesting and somewhat my faceobscure ASA troubleshooting problem. It ended up being resolved by a note in some of the Cisco web pages, something I suspect is an often-missed but important little tidbit. And I suspect it is quietly a potential problem or irritant for all those of us who missed it. It applies to any router or firewall doing NAT. 


Creating Policies with Cisco NCM

Posted by: Rob Chee

Tagged in: NCM

Do you have security policy requirements that need to be enforced on your routers and switches?  One option to accomplish this task is to periodically check the configurations of all routers and switches. This approach is painful and time consuming.  Another option is to use an application to automate this process.  This is one of the areas where Cisco Network Compliance Manager (NCM) can assist.  With NCM you can create policies that regularly check for elements of your security policy and alert you if they are not being met.  NCM does this by first grabbing the router and switch configurations on a periodic basis.  NCM then matches these configurations against the NCM policies that you create to meet your security policy.  Here’s an example showing how this would be configured within NCM.


<< Start < Prev 1 2 3 Next > End >>

Tags

10 Gbps Ethernet 3G 7z 802.11 802.11 basics 802.11 course 802.11 project management 802.11 Traffic Flows 802.11 Wireless LAN 802.11n About Chesapeake NetCraftsmen Acrobits Acrobits Softphone AD Group Membership AD SSO Advanced Settings Tool alias anti-spoofing filters anti-virus anyconnect AnyConnect VPN AP vendor API Apple Apple iPhone ASA AT&T Attacks Attendant Console AXL Background Images Backup bandwidth BDP BFD BGP BGP neighbor soft-reconfiguration BGP redistribution BGP Route Reflector Design BGP Soft Reset bit error rate Bluetooth Boolean Expressions botnets bug business case C-MUG Call Globalization Call Optimization Call Queuing CallManager CallManager Express case study CCA CCDE CCDE practical CCDE written CCDE written practice CCIE CCIE Written CEF Certification CFUR Cisco 6500 Cisco 7200 Cisco Call Manager Cisco CallManager Cisco Design Zone Cisco Express Forwarding Cisco Live Cisco MPLS Cisco Phone Designer Cisco router Cisco switch Cisco TFTP Cisco Unified Presence Cisco VPN Client Cisco WebEx class of restriction CLI cloud computing CM co-channel interference COBRAS Communications Manager compliance configuration management configuration policy Contact Center Contact Center Express copSSH Corporate Directory CRS CRS Scripts CSA MC CUCM CUCM CLI CUCM troubleshooting CUCME CUPS customer mpls vpn customer mpls wan cygwin data center data center consolidation data center design data center infrastructure data center interconnect data center migration debug debugging design device configuration device discovery device groups device modeling devicelistx diagnostic tools diagnostics dial plan Directory Synchronization DirSync DNS SRV dual carrier MPLS VPN dual carrier MPLS WAN dual data center Dual WAN routing Dynagen Dynamips EIGRP email email security enterprise mpls vpn Enterprise MPLS WAN EoL2TPv3 EoMPLS ESX server NIC teaming etherchannel etherchannel mismatch Ethernet over MPLS event analysis event logs Exchange Expect Export extended VLAN failure domains Fast Rerouting FDCC fiber cuts fiber farm file transfer FIPS 140 Firefox firewall firmware upgrade full mesh fusion fusion router H.323 Hairpin Hairpin calls high availability iBGP IGP IIS Resource impact of packet loss Import Infrastructure Integrated Messaging interface groups IOS 12.4 IOS SSL ip multicast IP Phone Services IPCCX iPhone iPhone SIP Clients IPS IPv6 IPv6 addressing IPv6 addressing plan IPv6 Summit ISAKMP Java JRE jumbo L2 MPLS VPN L2 over L3 Lab large VLAN Layer 2 Layer 2 over Layer 3 Layer 2 Switching Layer 2 tunnel Layer 3 OOB layer 3 switching LDAP load balancer load balancing local preference Local Route Groups logparser mac address flapping malware MARS Mathis equation Mathis formula Meeting Center Message Store Configuration Wizard MGCP Microsoft Migration moving server virtually between zones MPLS MPLS QoS mpls routing MPLS VPN MPLS VPN customer routing MPLS VPN WAN MPLS WAN MSS MTTR Multi-VRF multicast multicast best practices multicast in a vrf multicast vrf lite Music On Hold MWI NAC NAC API NAC Appliance NAC design NAC roles NAC Server NAT NAT Traversal NCCM NCM net-snmp NetCraftsmen recruiting netflow NetMRI NetMRI trial Network Address Translation network analysis Network Compliance Manager network discovery network health network hygiene network management network monitoring network outages Nexus Nexus 2000 Nexus 5000 Nexus 7000 NMS Non Stop Forwarding Non-Stop Forwarding NSF OMB openSSH OSI layer OTV Out-of-band Outlook P2V packet captures packet loss PAT Patching PCA PCI PCI audit performance routing PERL netflow interpreter PERL script Personal Communications Assistant PfR Phone Customization physical to virtual conversion PIN security ping-pong PIX podcast port-based EoMPLS port-channel port-security sticky pre-site survey prefix-list Presence presentation problem management protocol analysis pseudo-wire pseudowire PWE Q.SIG QoS QoS in 6500 QoS with VSL radio considerations radio frequency redistribution redundancy REGEX REGEX practice regular expression Replication Restore Return Receipt RF RisPort ROI route reflectors router Routing convergence routing loop RSS feeds RTT rural fiber network script Security security patches server configuration server etherchannel SFTP shared services show ip cache flow SIP SIP Clients for iPhone SIP VoIP Phone for iPhone SLA slow slow application behavior smime snmp SNMP ifIndex snmp polling snmp traps SOAP spanning tree Spanning Tree loop SQL SRST SSL Certificate SSL VPN SSO standard network architecture standardization Stateful Switchover static routes Sup720-10G syslog TAC TCL TCP TCP performance TCP Ports TCP throughput test Testing throughput tools top of rack topology trace trojan troubleshooting Troubleshooting 802.11 TTL exceeded UC UC 7x UC Operations UC500 UC520 UCCX UDP Ports UM Unified Communications Unified Messaging Unity Unity Connection Unity troubleshooting Upgrade Using 10G ports Sup720 Using XML UTIM virtual desktop virtual machine virtual pod Virtual Switch Link virtualization vlan vlan-based EoMPLS VMWare VMware products VMware vSphere 4.0 glossary vmworld Voice voicecon Voicemail Voicemail Relay VoIP VoIP Metrics VoIP over 3G voip troubleshooting VPN VRF VRF into GRE vrf lite VRF-Lite VSL vSphere VSS WAN WAP vendor web logging WebEx WebEx Meeting Center WebEx Meeting Center for iPhone WeePhone weight WiFi WiFi Basics WiFi channels WiFi course WiFi vendors WinPCAP wireless wireless course wireless LAN wireless project management Wireless Project Plan Wireless Project Planning wireless requirement gathering WLAN WLAN course WLAN project management WLAN Traffic Flows WSUS X-Lite xconnect zeus
NetCraftsmen