Philip D'Ath

Member Since: Oct 25, 2001

User Badges:
  • Purple, 4500 points or more
  • Cisco Designated VIP,

    2017 WAN, LAN, VPN

English
Philip D'Ath commented on Cisco Anyconnect 4 in centos in VPN 4 hours ago

I'm using AnyConnect 4.3.03086 on Ubuntu 16.04.02 without issue.  Could you perhaps try another V4...

Philip D'Ath commented on SHA 1 to 2 and DH group migration in VPN 4 hours ago

Is it possible to do a "big bang" and change all your nodes in one hit, or are you only able to do...

Philip D'Ath commented on VPN Suppression Node in VPN 4 hours ago

I have never heard of such a thing.  What makes you think you have one?

Philip D'Ath commented on IKEv2 VPN with Cisco ASA and Juniper SRX. in VPN 4 hours ago

Something like: crypto ipsec ikev2 ipsec-proposal ESP-AES-256-SHA protocol esp encryption aes-256...

Philip D'Ath commented on ACL | Object-Group Configuration in WAN, Routing and Switching 4 hours ago

Looks good to me.

Philip D'Ath commented on FireSight Update Task Stuck in Waiting State in FireSIGHT System / 3D System 5 hours ago

You'll probably need to give it a restart. I would upgrade to the latest 6.2 code on everything to...

Philip D'Ath commented on FlexVPN with ACS integration in VPN 1 day ago

No one has replied yet, so I'll tell you what I do. I usually configure the head end (ISR4321 in...

Philip D'Ath commented on Unable to configure REP on Cisco 2960X in Small Business Switches 1 day ago

I have never heard of the 2960-X's having REP support.  To the best of my knowledge that requires a...

Philip D'Ath commented on AnyConnect 4.4 with Windows 10 login issue in VPN 1 day ago

Can they access their own AD controllers (by DNS name) while AnyConnect is connected?  I'm guessing...

Philip D'Ath commented on Meraki MX64 or MX64W purchase with MR33? in Dan Segovia 1 day ago

The AP capabilities built into the MX64W are very limited compared to an MR33.  I only use the...

Philip D'Ath commented on ASR 1001 Virtual Private Dial-ip Network (VPDN) IOS Required in Other Service Provider Subjects 1 day ago

Have you got any broadband session licences installed, like FLASR1-BB-4K? http://www.cisco.com/c/en...

Philip D'Ath commented on ASR 1001 Virtual Private Dial-ip Network (VPDN) IOS Required in Other Service Provider Subjects 1 day ago

No, you are highly unlikely to need to downgrade your router. Yes, you need to support contract to...

Philip D'Ath commented on mac address filtering for Cisco 1852 mobility express in Other Wireless - Mobility Subjects 1 day ago

Try: config macfilter add 34:f3:9a:0d:8a:d1 1 mangagement mac_filter 10.1.1.14

Philip D'Ath commented on Requirements to implement WAAS in Unified Computing 1 day ago

The 2911 will need an AX licence.  You can then run WAAS Express on the router itself, or install a...

Philip D'Ath commented on ASA : DHCP relay through VPN tunnel in Firewalling 1 day ago

You have to add the outside IP address of the ASA doing the DHCP Relay to the encryption domain at...

Philip D'Ath commented on ASA : DHCP relay through VPN tunnel in Firewalling 1 day ago

Because a switch behind the ASA sends the request from its IP address - which is in the encryption...

Philip D'Ath commented on Cisco Any connect VPN issue. in Network Management 2 days ago

The ASA configuration itself doesn't usually affect the performance, as long as the MTUs are...

Philip D'Ath commented on Requirements to implement WAAS in Unified Computing 2 days ago

I don't know if the CentralManager can run on a router.  You would normally run it on a WAVE...

Philip D'Ath commented on Cisco 3G MicroCell in Other Wireless - Mobility Subjects 3 days ago

Well, I did say I don't know the answer.  I'm just applying my knowledge of how it works in my...

Philip D'Ath commented on Port-Security on multiple switches in Physical Security 3 days ago

This is a bit of an overview. http://www.cisco.com/c/en/us/support/docs/switches/catalyst-3750-...

Philip D'Ath commented on Cisco Any connect VPN issue. in Network Management 3 days ago

This is often an MTU issue, or an issue with asymmetric circuits. What OS is your machine, and...

Philip D'Ath commented on Cisco 3G MicroCell in Other Wireless - Mobility Subjects 3 days ago

I don't know the answer, but I would say 99.999% no. These devices are heavily customised for the...

Philip D'Ath commented on WAAS on 4221 ISR in Other Network Infrastructure Subjects 3 days ago

I'm not sure of these answers. If you get the AX licence, it should support integrated WAAS.  Note...

Philip D'Ath commented on Port-Security on multiple switches in Physical Security 3 days ago

It is local to the switch.  It does not span switches.

Philip D'Ath commented on Traffic throttling on ASA only if at bandwidth limit in Firewalling 3 days ago

If you speak to your Cisco partner you may be able to get Charity pricing.  There are also schemes...

Philip D'Ath commented on Traffic throttling on ASA only if at bandwidth limit in Firewalling 3 days ago

Correct. You would find it much simpler using a Cisco Meraki MX though.https://meraki.cisco.com/...

Philip D'Ath commented on Traffic throttling on ASA only if at bandwidth limit in Firewalling 3 days ago

Cisco IOS/IOS-XE routers (and Cisco Meraki MX security appliances) can do this, but not the ASAs.  ...

Philip D'Ath commented on GRE IPV6 Confusion! in WAN, Routing and Switching 3 days ago

Correct.

Philip D'Ath commented on GRE IPV6 Confusion! in WAN, Routing and Switching 3 days ago

It has to match the remote end - and it has to be a type that tunnels IPv6. So you could use a...

Philip D'Ath commented on ASA 5505 writes running-config to tftp for some machines, not others in Firewalling 4 days ago

What happens if you try to tftp put a file yourself from your own computer to the affected servers?

Philip D'Ath commented on GRE IPV6 Confusion! in WAN, Routing and Switching 4 days ago

http://www.cisco.com/c/en/us/td/docs/ios-xml/ios/interface/configuration/xe-3s/ir-xe-3s-book/ip6-...

Philip D'Ath commented on GRE IPV6 Confusion! in WAN, Routing and Switching 4 days ago

It is tunnelling IPv6 over IPv4.

Philip D'Ath commented on CPU in Network Management 4 days ago

Before doing anything I would upgrade to a gold star release to resolve as many already known about...

Philip D'Ath commented on 3850 fails software install while in stack. in LAN, Switching and Routing 4 days ago

The one running 3.6.6 - is it the same as the other models?  Some of the newer models (especially...

Philip D'Ath commented on Cisco 2821 in VPN 4 days ago

Try getting the remote VPN peers to reboot their devices. Failing that, you may be experiencing an...

Philip D'Ath commented on Traffic throttling on ASA only if at bandwidth limit in Firewalling 5 days ago

You can't do this.

Philip D'Ath commented on Requirements to implement WAAS in Unified Computing 5 days ago

http://www.cisco.com/c/en/us/products/routers/wide-area-application-services/index.html You need a...

Philip D'Ath commented on Juniper SRX to Cisco ASA Firewall Migration in Firewalling 5 days ago

1. Here is a guide of configuring active/standby failover - the most common type of ASA HA used.  ...

Philip D'Ath commented on Cisco 2821 in VPN 5 days ago

It is constantly trying to rebuild a VPN. I think the first thing I would do is move to a gold...

Philip D'Ath commented on Configuration CISCO 881 for pppoe in LAN, Switching and Routing 5 days ago

Try this configuration wizard. http://www.ifm.net.nz/cookbooks/800-isr-wizard.html Choose the 871...

Philip D'Ath commented on Forward traffic from Router 800 series in Southern California Cisco User Group (SCCUG) 5 days ago

Try looking at the output created by my Cisco 897 configuration wizard.  It will substantially...

Philip D'Ath commented on GRE Tunnel using HSRP addresses in WAN, Routing and Switching 5 days ago

There wont be any [email protected] Burts.  When using a GRE tunnel with an HSRP address the tunnel...

Philip D'Ath commented on Cisco 800 Series - unable to get to the internet in Small Business Routers 1 week ago

Are you sure your Internet circuit is working?

Philip D'Ath commented on Meraki WiFi Setup in Other Wireless - Mobility Subjects 1 week ago

Which country are you in?

Philip D'Ath commented on Meraki WiFi Setup in Other Wireless - Mobility Subjects 1 week ago

Meraki MS220P-8. https://meraki.cisco.com/products/switches/ms220-8 You could also go for the...

Philip D'Ath commented on ASA VPN not encrypting traffic in VPN 1 week ago

I would consider going to the next gold star release, 9.6(3). https://software.cisco.com/download/...

Philip D'Ath commented on Meraki WiFi Setup in Other Wireless - Mobility Subjects 1 week ago

For up to 24 access points being plugged into the switch, WS-C2960X-48LPS-L.  If more than 24...

Philip D'Ath commented on Meraki WiFi Setup in Other Wireless - Mobility Subjects 1 week ago

How many ports do you need?

Philip D'Ath commented on Ubuntu 16.04 recognize USB 3.0 on UCS C220 M4 in Unified Computing 1 week ago

Update only updates the software catalogs and nothing else.  You need to run the upgrade option to...

Philip D'Ath commented on Using a VPN tunnel on a router OUTSIDE our ASA in VPN 1 week ago

What model ASA do you have and what size circuit have you got? Are the users talking to servers in...

Bio

0804414F0015451A174B1C0D2E0B2D2E3E7B2C1613580D1B

User Badges:
  • Badge.
    Purple
    4500 points or more
  • Badge.
    Community Spotlight Award

    Member's Choice, May 2016

  • Badge.
    Community Spotlight Award

    Small Business, March 2016

  • Badge.
    Community Spotlight Award

    Best Publication, February 2016

  • Badge.
    Community Spotlight Award

    Questions Answered, January 2016

  • Badge.
    Community Spotlight Award

    Questions Answered, December 2015

  • Badge.
    Cisco Designated VIP

    2017 WAN, LAN, VPN

Philip D'Ath's Stats

Points5619
Discussion started 24
Answers marked as Correct 652
Endorsed 18
Content Rated 137
Website: