Cisco 3750 Vs 3550?
Mar 21, 2007What're the main differences between a 3550 and 3750? (basic 24 port models i.e.3750-TS)
View 4 RepliesWhat're the main differences between a 3550 and 3750? (basic 24 port models i.e.3750-TS)
View 4 RepliesI have just bought a switch Cisco 3750. However, when I plugged in the uplink. The link is set to half-duplex only (auto-negoiation).
Below is the error in the "Diagnostic Log" of the log:
03:54:52: %CDP-4-DUPLEX_MISMATCH: duplex mismatch discovered on FastEthernet1/0/18 (not full duplex), with sw6.hkg3.asianetcom.net GigabitEthernet0/21 (full duplex).
I have tried to set the port to "Full" in Cisco. But, the link drops immediately. Could anyone tell me how to fix that?
I'm trying to find out why a single interface is causing packet loss on my entire network.
The network consists of four 2924's trunked to a 3550. I have about 20 vlans and a single default route for all traffic my uplink.
The network is perfect until I enable a single server. After I issue a 'no shut' on the interface packet loss is anywhere from 5% to 20% for anything going through the 3550 or even pings from the 3550 to other switches or the uplink.
Here's the statistics/settings of the interface after 1 minute of activity:
Code:
interface FastEthernet0/1
description 228
switchport access vlan 58
switchport mode dynamic desirable
speed 100
duplex full
spanning-tree portfast
FastEthernet0/1 is up, line protocol is up (connected)
Hardware is Fast Ethernet, address is 0014.f2e6.df01 (bia 0014.f2e6.df01)
Description: 228
MTU 1500 bytes, BW 100000 Kbit, DLY 100 usec,
reliability 255/255, txload 1/255, rxload 6/255
Encapsulation ARPA, loopback not set
Keepalive set (10 sec)
Full-duplex, 100Mb/s, media type is 10/100BaseTX
input flow-control is off, output flow-control is unsupported
ARP type: ARPA, ARP Timeout 04:00:00
Last input never, output 00:00:00, output hang never
Last clearing of "show interface" counters 00:01:01
Input queue: 0/75/0/0 (size/max/drops/flushes); Total output drops: 0
Queueing strategy: fifo
Output queue: 0/40 (size/max)
5 minute input rate 2536000 bits/sec, 924 packets/sec
5 minute output rate 341000 bits/sec, 469 packets/sec
60922 packets input, 21630544 bytes, 0 no buffer
Received 0 broadcasts (0 multicasts)
0 runts, 0 giants, 0 throttles
0 input errors, 0 CRC, 0 frame, 0 overrun, 2 ignored
0 watchdog, 0 multicast, 0 pause input
0 input packets with dribble condition detected
31585 packets output, 2859788 bytes, 0 underruns
0 output errors, 0 collisions, 0 interface resets
0 babbles, 0 late collision, 0 deferred
0 lost carrier, 0 no carrier, 0 PAUSE output
0 output buffer failures, 0 output buffers swapped out
Transmit FastEthernet0/1 Receive
3583183 Bytes 27018085 Bytes
39516 Unicast frames 76403 Unicast frames
46 Multicast frames 0 Multicast frames
0 Broadcast frames 0 Broadcast frames
0 Discarded frames 0 No dest, unicast
0 Too old frames 0 No dest, multicast
0 Deferred frames 0 No dest, broadcast
0 1 collision frames
0 2 collision frames 0 FCS errors
0 3 collision frames 0 Oversize frames
0 4 collision frames 0 Undersize frames
0 5 collision frames 0 Collision fragments
0 6 collision frames
0 7 collision frames 4355 Minimum size frames
0 8 collision frames 56237 65 to 127 byte frames
0 9 collision frames 1205 128 to 255 byte frames
0 10 collision frames 14 256 to 511 byte frames
0 11 collision frames 67 512 to 1023 byte frames
0 12 collision frames 14528 1024 to 1518 byte frames
0 13 collision frames
0 14 collision frames 0 Flooded frames
0 15 collision frames 3 Overrun frames
0 Excessive collisions 0 VLAN filtered frames
0 Late collisions 0 Source routed frames
0 Good (1 coll) frames 0 Valid oversize frames
0 Good(>1 coll) frames 0 Pause frames
0 Pause frames 0 Symbol error frames
0 VLAN discard frames 0 Invalid frames, too large
0 Excess defer frames 0 Valid frames, too large
0 Too large frames 0 Invalid frames, too small
3672 64 byte frames 0 Valid frames, too small
34066 127 byte frames
2152 255 byte frames
110 511 byte frames
38 1023 byte frames
28 1518 byte frames
CPU utilization for five seconds: 13%/3%; one minute: 12%; five minutes: 9%
77 1317620 3220725 409 9.27% 8.35% 6.20% 0 IP Input
How does 1400 packets/second (4mbits) cause my 3550 to drop packets?
I have mrtg working fine on about 10 2650's, however now that I am trying to add 2950 and 3550's I cant seem to get MRTG to connect to get data.
I added the community the same as our other communities.
snmp-server community blah-r34d RO 30
snmp-server host 10.10.0.134 blah-r34d snmp
the 10.10.48.3 is the IP to vlan1 for the switch.
SNMP Error:
no response received
SNMPv1_Session (remote host: "10.10.48.3" [10.10.48.3].161)
community: "blah-r34d"
request ID: 554709748
PDU bufsize: 8000 bytes
timeout: 2s
retries: 5
backoff: 1)
at /usr/local/mrtg-2/bin/../lib/mrtg2/SNMP_util.pm line 627
SNMPWALK Problem for 1.3.6.1.2.1.1 on blah-r34d@10.10.48.3::::::v4only
at ./cfgmaker line 940
WARNING: Skipping blah-r34d@10.10.48.3: as no info could be retrieved
Is it possible to load the latest EMI IOS to 3550 SMI switch?
View 7 Replies View RelatedMy host has helped me to install a switch. However, I don't know how to configure using the command line. Could anyone help me?
I need to be able to connect to my Cisco switch using Cisco Network Assistant. If you know the command sequence,
Anyone know anything about cisco pix 501s? i need help setting one up if anyone can give me a hand.
View 14 Replies View RelatedI just got a Cisco PIX 501 from my IT Guy for home use and he didn't reset the firewall to default settings so there are ton of old commands in here.
Is there a command I can use to reset the firewall back to the factory default settings?
Or is there anyway I can flash it back to factory default settings?
I am interested to buy a Cisco ASA firewall. So far I have never played with this gears and I wonder if it is easy to setup.
Is there any software provided by Cisco to setup rules and ACL thru some graphic interface software ?
We are looking to replace our existing WatchGuard Firebox's with a hopefully more reliable firewall from Cisco's range although I'm a bit lost when it comes to the different ranges.
Could somebody suggest a firewall that is capable of:
1: Both NAT & Drop-in (bridge) mode
2: Pretty low bandwidth requirements, no more than 10mbit/s traffic
3: SNMP Monitoring
4: High availability pairing
I am on a tight budget for a Cisco firewall. I am browsing and seeing some affordable options in the x600 series.
Please tell me, which series is best?:
1600
2600
3600
The higher the better?..
Also what about submodels, like is 1650 better than 1600?
And how can I tell how much DRAM each one can take up to?
I see a lot of DDos related articles here at WHT. We've got hit multiple times by DDos and had to handle those attacks everytime with a different approach.
The largest one and the most well know one (we were in Times Mag, AP news, CNN, slashdot, you name it - just do a search about us on WHT) was Russian botnet cyberattack - we had to anaylyze netflow and then block everything on our edge routers, then on the firewall and then locally on the servers.
Since then we had number of other attacks, some of them we were not able to defend on the server level, while, as you can understand we can't do netwflow and manual intervention evey time somebody gets an attach.
We have very good scripts which allow to mitigate huge number of DDos attack, whet our scripts are finding attacking IPs and blocking them automatically - still some attacks could be blocked only on the router level.
I've read that Cisco Guard (I am interesed in 65xx version of it) suppose to mitigate DDos attacks in automatic mode.
after months of disruption moving servers into a new data centre, our once reliable colocation company has now had nearly 6 hours downtime in the last 16 hours. So much for network redundancy.
View 5 Replies View RelatedI am looking at picking up a switch to mess around with at home. I found the following within driving distance but have no idea of which one will give me more up to date, hands on experience. Any feedback is greatly appreciated.
Used Cisco WS-C5509 Chassis with power supply ( POWER SUPPLY 34-0870-01), and fan (WSC5509FAN)
Cisco WS-X5530-E2 Supervisor Engine III Modules
Cisco Systems WS-U5537-FETX CISCO 4 PORT 100BASETX UPLINK MODULE
Cisco WS-X5234-RJ45 Switch Modules X 8
$160 each.
Cisco WS-C5500 Chassis
POWER SUPPLY 34-0773-03
Cisco Ws-x5550 Supervisor Engine Iii G-series
WS-X5234-RJ45 X 11
For $200
Cisco WS-C5505 Chassis
Cisco WS-X5530-E2 Supervisor Engine III Modules
Cisco WS-U5533-FEFX-MMF Supervisor Engine III Uplink Modules
Cisco WS-X5225R Switch Modules X 2
For $140
I'm trying to learn about network. I bought Cisco 2950 for testing. I set it up and finding out the way to cap its ports at 20Mbps or 50Mbps. Do you know what command or how to do this?
Also what command to check the port speed or to uncap the port?
Other than eBay does anyone know of a supplier of Cisco gear that has good prices and knows their Cisco equipment?
View 14 Replies View RelatedI am setting up a small ccna lab and i have RIP working and i can ping my lan from both routers, but only certain hosts on the lan from the one router the setup is
LAN (192.168.1.0/255.255.255.0)
|
/
router 1 E0 192.168.1.45
Serial0 10.10.10.1
|
/
Serial0 10.10.10.2 (of router2)
|
/
E0 192.168.3.250
E1 192.168.2.250
Lo 192.168.5.4
I can ping 192.168.1.102 from router 2 and 192.168.1.45 but no not 192.168.1.201 ... or 192.168.1.1
also i can ping 192.168.5.4 from 192.168.1.102 which is a linux box and an ip route to tell it that 192.168.5.0 can be gotten from 192.168.1.45
What is the difference between the Cisco PIX and Cisco ASA Firewall Systems?
Also which firewall do you guys recommend for a rack of servers
I am currently looking at these Cisco switches:
- Cisco 2924 WS-C2924-XL-EN Enterprise Switch
- Cisco 2950 WS-C2950-24 Catalyst Switch
- Cisco 3512 WS-C3512-XL-EN Enterprise Switch
- Cisco 3524 WS-C3524-XL-EN Enterprise Switch
- Cisco 3548 WS-C3548-XL-EN Enterprise Switch
1) I was recommended to chose the XL-EN model switches because it seems they have more Memory, but the second one in the list (Catalyst) is not a XL-EN, is that going to have any affect performance wise? or it doesn't really matter?
2) I was also recommended to choose managed switches because that way I can use the SNMP features to measure bandwidth, are any of the switches above unmanaged?
3) I also want to be able to manage the switch remotely, web managed, are any of the switches above web-manageable?
4) Most importantly, when my datacenter give me a 100mbit drop, I dont know which port to plug it in in the 29** series. In the 35** I see it clearly but I am not able to see it in the 29**, any ideas?
5) On some of these switches I see a special port called "Console", what is it? where does that connect to?
6) Do any of the switches above not have a console port?
My network currently looks like this :
ISP ->> L3 Switch ->> Firewall (Transparent Mode) ->> Switch ->> Servers
I have a single /24 and my firewall is on x.2 and routes traffic for each of the servers.
Now i have a new Cisco ASA 5510 that i want to replace the aging firewall currently in place, however i dont want to put the firewall into transparent mode because i dont want to lose all the functionality.
Now with most firewalls your outside subnet cannot be the same as your inside subnet, which is fine if you are using NAT but i dont want to NAT. I need all of my servers to remain with their public ip addresses.
So what is the ideal way to setup something like this? Request my ISP give me a /30 for the ASA outside interface or something? And then ask them to route my /24 through the /30 new subnet?
whether I can grant a specific vlan priority over all other traffic..and if so does anyone know an appropriate site where I can find documentation on how to do so?
View 0 Replies View RelatedIs there such a switch?
Do cisco do a 24 port 1000Mbs switch that you can control each port speed through a web based software?
Does anyone know of a place or have for sale a Cisco PIX firewall? I have looked into ebay but was wondering what else is out there?
View 3 Replies View RelatedFrom the posts in this forum it would appear that a number of forumites are colocation service providers and web hosters that use Cisco gear.
I was reviewing the Cisco End User License Agreement that was included in the router box. Under the General Limitations section, "Customer shall have no right, and Customer specifically agrees not to:", item (iv) states, "use or permit the Software to be used to perform services for third parties, whether on a service bureau basis or time sharing basis or otherwise, without the express written authorization of Cisco".
Does this mean that a service provider is required to acquire
a separate license similar to the Microsoft Service provider license?
I have a cisco 2960G switch that I used for colocation, the colocation provider does all the routing all I need is this switch. It's just a plug and play operation, however I now need to do some more difficult stuff.
So, I plugged their bandwidth uplink into port 20.
I have really no idea on how to setup anything other than the basic of the switch.
Is it possible to setup Private Vlans in this situation? I am in need of a setup like this:
All port 1-19 in private vlans, but still able to communicate with port 20 to get internet access. Port 1-19 cannot communicate with each other except by going through port 20, through the internet.
I also want to know if it's possible to statically assign each port with a specific IP? Just say I want all traffic to a static ip to only go to port 1? Is that possible? I want to be able to limit the control of IPs through the switch not through the server.
Right now all my IPs are assign on the server level, meaning the server can take each other IPs and mess with each other connections.
at 11x 2851's. When we got the quote they had added on Cisco Advanced IP SERVICES.
We arent sure if that is just the security bundle, or something they are trying to toss on for more money.
2851 w/ AC PWR,2GE,4HWIC,3PVDM,1NME-XD,2AIM,IP BASE,64F/256D
Cisco 2800 ADVANCED IP SERVICES
Maximum Compact and USB Flash
Four port 10/100 Ethernet switch interface card
Updated 1-Port T1/Fractional T1 DSU/CSU WAN Interface Card
64 to 256 MB CF Factory Upgrade for Cisco 2800 Series
256MB USB Flash Token for Cisco 1800/2800/3800 series
Cisco 2821/51 AC power supply
Power Cord,110V
Device manager for routers
256MB DDR DRAM Memory factory default for the Cisco 2800
8X5XNBD Hardware Replacement 2851 w/ AC PWR,2GE,4HWIC,3 (1 Year)
My understanding is that the IOS software running in most of their products is non-transferable. So clearly this prevents a user from receiving updates if they purchase used hardware (i.e. ebay). However, isn't it possible to purchase an IOS software license from Cisco for any of their supported product?
Their web site is a mess! I've spent, literally, hours on their site trying to figure out how to purchase such a license, or how to purchase a service plan that might entitle me to IOS updates.
And how does "SMARTnet" fit into this puzzle? Do I need a SMARTnet contract to download maintenance updates, even for *new* hardware that I've purchased?
i want a Cisco firewall suitable for one dedicated server protection, that server would host up to 30 vps
and i may buy another server in future, so what do you recommend?
from where can i get the price of cisco firewall?
View 4 Replies View RelatedOn used equipment (for example, 6509s), is there any possibility of getting IOS upgrades from Cisco? Is there any sort of re-certification process? My only concern with used equipment is that often times the firmware is years old.
View 14 Replies View RelatedI already get a new firewall for my server cisco ASA and I don't know how to config it
is there any rules to get protection from shell and virus trojan as example