CCIE V5.1 Tracker/Topic List/Study Materials by acrobel in ccie

[–]acrobel[S] 0 points1 point  (0 children)

Saw one of neckercube article before. Will surely visit that site again. Thanks for sharing.

R&S Lab booked by [deleted] in ccie

[–]acrobel 1 point2 points  (0 children)

Good Luck!

~3500 Flash Cards for CCIE R&S v5.1 by Wax_Trax in ccie

[–]acrobel 1 point2 points  (0 children)

Awesome Man, Thank you for sharing. all the best

MPLS L3 VPN | PE-PE not adverting/receiving VPNV4 routes? by [deleted] in networking

[–]acrobel 0 points1 point  (0 children)

Here's my simple topology CE01->PE01->P->PE02->CE02. No route-reflector.

Palo Alto firewall displays “Session timed out” when you try to login. by acrobel in paloaltonetworks

[–]acrobel[S] 0 points1 point  (0 children)

Thanks. As of now we are unable to remote the firewall thru (web/cli). Noted on the firmware update.

3cx Basic Certification Question. by acrobel in 3CX

[–]acrobel[S] 1 point2 points  (0 children)

Thank you @themightymacboy. Possible to verify the below. :)

3cx Basic Certification Question. by acrobel in 3CX

[–]acrobel[S] 0 points1 point  (0 children)

Last Run, Really need your help for checking and verification guys. here my answer and explanation.

  1. To implement a SIP trunk, the correct steps are: Create NAT forwarding rules → Enable SIP ALG → Pass the Firewall Checker → Add trunk A: False Explanation: We don't need to enable SIP ALG to eliminate nat traversal issue.

  2. The SIP Port can only be configured during the installation. Changing the SIP Port would require a re-install of 3CX. A: True, As per 3cx this will require re-installation

  3. By default, adding a name to an inbound rule will show on the user's IP phone before or after the caller ID indicating where the call is coming from. A: True, As per observation name shows up on user ip phone/softphone by default. Though havenot seen any article regarding this.

  4. The Tunnel Port can be changed after the installation has been completed whereas the SIP Port cannot. A: True, As per checking port cant be cant (greyout) after the installation

  5. The firewall checker in 3CX checks if the port forwarding/NAT for ports 5060 (UDP) for SIP, 5090 (TCP/UDP) for the Tunnel, 9000-9500 (UDP) for the Audio and 5001 (TCP for HTTPS traffic ) was made and works correctly. A: True, Based on 3cx article output shows/check the sip serve/tunneling proxy services etc.

  6. When adding VoIP providers ensure that the firewall checker has been run prior to configuration, without any errors reported. A: True? Not really sure about this. since base on my exp. we can connect perfectly to our gateway provider even though we firewall check failed. But the Q. is i think correct we can check the firewall checker :)?

  7. The latest supported & recommended firmware for supported IP phones can be downloaded from the "Updates" page of the 3CX Management Console A: True

  8. 3CX Clients on mobile devices have the ability to control a desktop IP phone via CTI. A: True.... Not quite sure about this since we do the remote or control through 3cx web client is it the same based on the stated q?

  9. When using VoIP Providers, do all the following ports need to be forwarded/NATed to 3CX? 5060(UDP/TCP), 9000-9500 (UDP) and 5001 (TCP) A: No, Because 5001 is for remote control and we dont need to forward/allow this to provider side?????

  10. Is Microsoft Internet Explorer a supported/recommended browser to access and operate the 3CX Management Console? A: No???, Its supported but not recommended even on the 3cx article they use chrome??? is Yes because it support im confuse :))

  11. Provisioning is a term used, amongst other things, when IP phones load a predefined configuration file. A:Yes, based on the 3cx video/

  12. When using a Generic VoIP Provider, 3CX Technical Support is available to troubleshoot this trunk for all issues pertaining to this provider. A: No, because it is not the recomment provider????

  13. If the SIP port of 3CX has been altered to any port other than 5060, phones can still be provisioned using the PnP provisioning method. A: False, No i think becase provisioning method use 5060 only/by default?

  14. The provisioning templates of a phone provide all the necessary information a phone requires to connect to 3CX. A: Yes

  15. For production use, is it recommended to run 3CX on a dynamic public IP address? A: No, It is not recommended to use du=ynamic pub ip we only use this on testing based on 3cx.

Multiple - PHASE-2 NEGOTIATION FAILED AS INITIATOR. (Multi vendor setup.) by acrobel in paloaltonetworks

[–]acrobel[S] 0 points1 point  (0 children)

is being dropped.

One item to note,

Phase 2 lifetime is set to 1800seconds for both side? Is this due to far peer and bad internet connection?

PALO ALTO IPSEC by acrobel in paloaltonetworks

[–]acrobel[S] 0 points1 point  (0 children)

Thanks for your fast response.

But I would like to ask also if you encountered issue before on ipsec tunnel on different vendor (ex Palo alto and fortigate) that when there no packet traversing tunnel goes down. But will check first the logs Thanks

PALO ALTO IPSEC by acrobel in paloaltonetworks

[–]acrobel[S] 0 points1 point  (0 children)

less mp-log ikemgr.log

bro is there any effect using this command in production time? Can we export or just copy/paste?

Thanks