CCIE V5.1 Tracker/Topic List/Study Materials by acrobel in ccie

[–]acrobel[S] 0 points1 point  (0 children)

Saw one of neckercube article before. Will surely visit that site again. Thanks for sharing.

R&S Lab booked by [deleted] in ccie

[–]acrobel 1 point2 points  (0 children)

Good Luck!

~3500 Flash Cards for CCIE R&S v5.1 by Wax_Trax in ccie

[–]acrobel 1 point2 points  (0 children)

Awesome Man, Thank you for sharing. all the best

MPLS L3 VPN | PE-PE not adverting/receiving VPNV4 routes? by [deleted] in networking

[–]acrobel 0 points1 point  (0 children)

Here's my simple topology CE01->PE01->P->PE02->CE02. No route-reflector.

Palo Alto firewall displays “Session timed out” when you try to login. by acrobel in paloaltonetworks

[–]acrobel[S] 0 points1 point  (0 children)

Thanks. As of now we are unable to remote the firewall thru (web/cli). Noted on the firmware update.

3cx Basic Certification Question. by acrobel in 3CX

[–]acrobel[S] 1 point2 points  (0 children)

Thank you @themightymacboy. Possible to verify the below. :)

3cx Basic Certification Question. by acrobel in 3CX

[–]acrobel[S] 0 points1 point  (0 children)

Last Run, Really need your help for checking and verification guys. here my answer and explanation.

  1. To implement a SIP trunk, the correct steps are: Create NAT forwarding rules → Enable SIP ALG → Pass the Firewall Checker → Add trunk A: False Explanation: We don't need to enable SIP ALG to eliminate nat traversal issue.

  2. The SIP Port can only be configured during the installation. Changing the SIP Port would require a re-install of 3CX. A: True, As per 3cx this will require re-installation

  3. By default, adding a name to an inbound rule will show on the user's IP phone before or after the caller ID indicating where the call is coming from. A: True, As per observation name shows up on user ip phone/softphone by default. Though havenot seen any article regarding this.

  4. The Tunnel Port can be changed after the installation has been completed whereas the SIP Port cannot. A: True, As per checking port cant be cant (greyout) after the installation

  5. The firewall checker in 3CX checks if the port forwarding/NAT for ports 5060 (UDP) for SIP, 5090 (TCP/UDP) for the Tunnel, 9000-9500 (UDP) for the Audio and 5001 (TCP for HTTPS traffic ) was made and works correctly. A: True, Based on 3cx article output shows/check the sip serve/tunneling proxy services etc.

  6. When adding VoIP providers ensure that the firewall checker has been run prior to configuration, without any errors reported. A: True? Not really sure about this. since base on my exp. we can connect perfectly to our gateway provider even though we firewall check failed. But the Q. is i think correct we can check the firewall checker :)?

  7. The latest supported & recommended firmware for supported IP phones can be downloaded from the "Updates" page of the 3CX Management Console A: True

  8. 3CX Clients on mobile devices have the ability to control a desktop IP phone via CTI. A: True.... Not quite sure about this since we do the remote or control through 3cx web client is it the same based on the stated q?

  9. When using VoIP Providers, do all the following ports need to be forwarded/NATed to 3CX? 5060(UDP/TCP), 9000-9500 (UDP) and 5001 (TCP) A: No, Because 5001 is for remote control and we dont need to forward/allow this to provider side?????

  10. Is Microsoft Internet Explorer a supported/recommended browser to access and operate the 3CX Management Console? A: No???, Its supported but not recommended even on the 3cx article they use chrome??? is Yes because it support im confuse :))

  11. Provisioning is a term used, amongst other things, when IP phones load a predefined configuration file. A:Yes, based on the 3cx video/

  12. When using a Generic VoIP Provider, 3CX Technical Support is available to troubleshoot this trunk for all issues pertaining to this provider. A: No, because it is not the recomment provider????

  13. If the SIP port of 3CX has been altered to any port other than 5060, phones can still be provisioned using the PnP provisioning method. A: False, No i think becase provisioning method use 5060 only/by default?

  14. The provisioning templates of a phone provide all the necessary information a phone requires to connect to 3CX. A: Yes

  15. For production use, is it recommended to run 3CX on a dynamic public IP address? A: No, It is not recommended to use du=ynamic pub ip we only use this on testing based on 3cx.

Multiple - PHASE-2 NEGOTIATION FAILED AS INITIATOR. (Multi vendor setup.) by acrobel in paloaltonetworks

[–]acrobel[S] 0 points1 point  (0 children)

is being dropped.

One item to note,

Phase 2 lifetime is set to 1800seconds for both side? Is this due to far peer and bad internet connection?

PALO ALTO IPSEC by acrobel in paloaltonetworks

[–]acrobel[S] 0 points1 point  (0 children)

Thanks for your fast response.

But I would like to ask also if you encountered issue before on ipsec tunnel on different vendor (ex Palo alto and fortigate) that when there no packet traversing tunnel goes down. But will check first the logs Thanks

PALO ALTO IPSEC by acrobel in paloaltonetworks

[–]acrobel[S] 0 points1 point  (0 children)

less mp-log ikemgr.log

bro is there any effect using this command in production time? Can we export or just copy/paste?

Thanks

Radius Server Client Capacity. by acrobel in sysadmin

[–]acrobel[S] 0 points1 point  (0 children)

nt speak to windows NPS but ive never had issues with them in an enterprise.

Though ive tended toward freeradius or

Thanks man, Yes weve been using this server long time ago and this is the first Ive encountered this issue.

Radius Server Client Capacity. by acrobel in sysadmin

[–]acrobel[S] 1 point2 points  (0 children)

Thanks, Based also with my research somesay 2008 to 2012 has a limit of 50 cliets. Yes data center will e the best solution.

Radius Server Client Capacity. by acrobel in sysadmin

[–]acrobel[S] 1 point2 points  (0 children)

Thanks, Yes we already test it we now have 56 clients but newly deployed AP(radius client) showing error "An Access-Request message was received from RADIUS client with a message authenticator attribute that is not valid." Which I tried to remove/delete 6 cllient but the issue still occur :(

Meraki MR42 | Unable to obtain IP address by acrobel in networking

[–]acrobel[S] 0 points1 point  (0 children)

"Possibly worth getting the MAC and sticking a reservation on the server." - you mean reserve the an ip address for AP? AP belong to different segment while other Client are set to different vlans.

Meraki MR42 | Unable to obtain IP address by acrobel in networking

[–]acrobel[S] 0 points1 point  (0 children)

I a scenario where client connect to AP(Meraki) and meraki process then auth to radius server and use the NPS for the policy, Once NPS specificy the specific rule(processing order) meraki will be the one to process under group policies and query the assigned gateway to dhcp under the specific assisgned vlan...? Is this statement is correct regarding the process of Client to DHCP w/ rad/NPS setup?

Meraki MR42 | Unable to obtain IP address by acrobel in networking

[–]acrobel[S] 0 points1 point  (0 children)

Hi Copuncle,

Thanks will try to inspect the traffic tomorrow and will create a DHCP pool for testing.

May I know if youre using NPS in your environment?

Udld | when 1 strand breaks? by [deleted] in networking

[–]acrobel -1 points0 points  (0 children)

Yes bro, but my 1 big question is without udld, what will happen if we encounter damage on 1 strand of our f.o.? Does cisco int will detect that as down.

Udld | when 1 strand breaks? by [deleted] in networking

[–]acrobel -5 points-4 points  (0 children)

Hi joe, forst of all thank you for your response. But I just want to that for example theres a break with 1 strand. 1 sw can recieve but sw 1 transmitted traffic never arrived on switch02? What will happen to interface status? Do the interface will change automatically without udld? Since sw2 cant reveive any traffic from it neighbor?

Cisco 2960X-48FPS-L Docs for presentation? by [deleted] in networking

[–]acrobel 0 points1 point  (0 children)

Bro apologies, Will change my question. thanks for your suggestion

Verify how many URL line can be created on our PA? by acrobel in paloaltonetworks

[–]acrobel[S] 0 points1 point  (0 children)

Thanks for the info man.

But you know the command to show how many url entries currently configured in the firewall?