Search this Blog

Friday, May 28, 2010

spanning tree Trunk bpdus sent down access port caused blocking on other switch


We have 3 switches, A,B,C both B and C connect to A on a single connection, the connection from B to A is on a single vlan and just a normal access port, the connection from C to A was a trunk port with many vlans. For some reason when we added switch C, the access port on switch A went into blocking mode, the following errors were displayed

8w0d: %SPANTREE-7-RECV_1Q_NON_TRUNK: Received 802.1Q BPDU on non trunk GigabitEthernet0/23 VLAN196.

8w0d: %SPANTREE-7-BLOCK_PORT_TYPE: Blocking GigabitEthernet0/23 on VLAN0196. Inconsistent port type.

Is it right that the bpdu's from switch C's trunk will go out of the access port on the other switch and block the link?

you need to use
switchport mode access on both switches with switchport nonegotiate or you need to move to trunk configuration on both ends. using mode trunk on both sides. That is even if downstream switch is configured with switchport mode access it still talks DTP (switchport nonegotiate) if upstream switch is left at dynamic desirable it may turn on trunking, as a result of this it will start to send proprietary BPDUs that contain the vlan-id of the instance.

The other side doing a consistency check disables the port on receiving these unexpected BPDUs
8w0d: %SPANTREE-7-RECV_1Q_NON_TRUNK: Received 802.1Q BPDU on non trunk GigabitEthernet0/23 VLAN196.

Also do not disable STP on link but the link 802.1Q trunk on both ends.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

How do you calculate tje response time between two devices?


A simple ping will give you real time statistics-

TD-SW1#ping 10.1.2.17

Type escape sequence to abort.
Sending 5, 100-byte ICMP Echos to 10.1.2.17, timeout is 2 seconds: !!!!!
Success rate is 100 percent (5/5), round-trip min/avg/max = 1/2/8 ms

Please click here for the Cisco IPM tool that provides this facility. IPM is part of LMS suite.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Issues with ATA 186 (SCCP) not upgrading via TFTP


We are running several 7.1.2 / 7.1.3 installations and almost every ATA does not upgrade to the TFTP-supplied SCCP Software 3.2.4 but stays on 3.1.0. They register and seem to work AND they are not even listed as running on outdated software in CUCM. The ATAs are directly out of the box from our vendors and properly configured. We cannot see any problems in the traces.

Here is a workaround that works.
  1. The following procedure will get your ATAs to upgrade themselves. Download and modify the XMLDefault.cnf.xml file (remove all the load info for other phones).
  2. Place this file, along with the ATA030204SCCP090202A.zup file on your own TFTP server.
  3. When an AltTFTP server is specified, the ATA will get the config and load from your TFTP server and the upgrade should got through.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Thursday, May 27, 2010

CM Upgrade 4.1(3) to 7.1(3) - how do you add a phone type to CM 7.1?


We have successfully run the DMA and loaded it on our new CM 7.1 server. We have also successfully loaded our subscriber. So we are ready with our new environment running CM 7.1(3).

We have not moved the new updated HW to the production yet, we wanted to preform some tests. We ordered some new phone (9951) and We are trying to add them, but the phone type is not listed. We cannot for the process to add a new phone load. Can someone let us know how to add a phone type to CM 7.1(3)

You will need at least 7.1(3a)su1 but if you are going to upgrade before going into production we think 7.1(3b)su2 would be the way to go as it has many bug fixes .

Before using the Cisco Unified IP Phone with Cisco Unified Communications Manager, you must install the latest firmware on all Cisco Unified Communications Manager servers in the cluster.

Note You can install Cisco Unified Communications Manager 7.1(3) or 7.1(3a). After you install one of these releases, you must install Cisco Unified Communications Manager *** 7.1(3a)su1. ***

Please click here for release notes on Cisco Unified IP Phone 8900 and 9900 Series.

You can use the Software Upgrades options to perform the following types of installations and upgrades:
#
•Install/Upgrade—Use this option to upgrade the application software, install Cisco Unified Communications Manager Locale Installers and dial plans, and upload and install device packs, phone firmware loads, and other COP files.
#
•TFTP File Management—Use this option to upload various device files for use by the phones to the TFTP server. The TFTP server files that you can upload include custom phone rings, callback tones, and phone backgrounds.

Please click here for more information on Software upgrades.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

How do you display calling name through QSIG (cucm v7.1,gw 2821 H323,Nexspan)


We have a CUCM v7.1 and an Aastra Nexspan linked by QSIG. Calls works fine between the 2 systems, but we can't display the calling name in the two sides. The gateway is a cisco 2821 router, configured as a H323 gateway.

Try adding this to get the inbound CNAME to work

voice service voip
h323
h225 display-ie ccm-compatible

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Tuesday, May 25, 2010

How do you install advipservices licence on 3750E, 12.2(50)SE?


Unfortunately advipservices is not supported on the 12.2(50)SE but IPServices has all the same features. Advipservices is end of life and Cisco supports the same feature sets with either ipservices or advipservices licenses beginning with 12.2(50)SE.

Try the following sequence of actions on the switch to accept the license

vf1a-3#clear license agent sessions
vf1a-3#clear license agent counters
vf1a-3(config)#no license boot level ipservices
vf1a-3#cop run start
vf1a-3#reload

Please click here for more information on Cisco Software Activation and Compatibility Document, Release 12.2(50)SE

Please click here for more information on End-of-Sale and End-of-Life Announcement for the Cisco Catalyst 3750-E IOS Advanced IP Services Feature Set


Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Sunday, May 23, 2010

Top 5 Tech Support questions on Cisco System's products - Weekly Update for May 17th 2010

The most actively discussed Tech Support questions on the web for Cisco System's products (Week of May 17th 2010)

How to register 7921 wireless ip phone on CCM 4.2(3)


The callmanager details for our installation are as follows.

Cisco Unified call manager version : 4.2
Administration service release : System version : 4.2(3)
Cisco unified call manager administration version : 4.2(2)
Cisco unified call manager installation ID : CCM 4.2(3)
The callmanager is 4.2. But the 7921 device is not comming on Device > Phone

The latest Device Pack should be used. While you can search for the first device pack that the 7921 was introduced on your own, we recommend using the latest Device Pack.

ciscocm.4-2-3-DevPack-60

Please click here for the Cisco Unified CallManager Device Package 4.2.3 (60.0) release notes

Go to Support > Software Download. Go to the voice software section. Navigate under IP Telephony>Call Control>Cisco Unified Communications Manager (CallManager)>Cisco CallManager Version 4.2

From here, you can pick "Unified Communications Managr/CallManager Device Packages".

When you load the Device Package keep in mind that it will update firmware for ALL PHONES included in the package. If you do not want this new firmware pushed out to your non-7921 IP phones, you will need to take some additional measures. First, write down (or use a query to save) the current Device Defaults used by your cluster. When loading the Device Package on the Publisher, before you reboot modify the Device Defaults back to the firmware load IDs that were used prior to the Device Package install. You should only have to do this on the Publisher but it is a good idea to check the Device Defaults if/when you load the Device Package on the other servers in the cluster. Remember, when using a Device Package that contains new device definitations for your CM version, you must load it on all cluster nodes and you must reboot all nodes after loading the Device Package.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Friday, May 21, 2010

Registered IP Phone with status unknown in CCM phone list.


We are running CCM 6.1.1b. Recently, some registered phones show unknown status on the phone list, even though they are registered and functional. The phones show registered in the phone configuration but unknown in phone list. What causes this ?

Under Device > Phone the Status and IP address are not properly associated with the correct devices in the list when multiple devices are listed.

Conditions:

CUCM prior to 6.1.1.2104 performing a phone search that returns multiple results.

Workaround:

View the device status on the Phone page, or narrow the search so only a single phone is displayed.
1st Found-In
6.1(1.9901.11)

Fixed-In
6.1(1.9901.52)
7.0(0.39000.33)
6.1(0.39000.19)
6.1(1.2104.1)

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

2901 support for v2 WICs


After installing 2901 and the WICs I get a bootup message: wic card in location 0/0 has an unknown id. Has anyone been able to use v2 WICs in the new Cisco platforms?

Unfortunately according to Cisco's compatibility matrix you use hwic-1dsu-t1. Please click here for detailed information on the Module Support on Cisco’s Integrated Services Routers Generation 2

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

ADSL firmware upgrade on 887 router


We cannot find instructions on how to use the latest 4.0.18 ADSL firmware on an 887 router. We have downloaded adsl_alc_20190_4.0.018.bin from the website and copied it to flash, but cannot find any instructions on applying the firmware. Tried rebooting but made no difference.

You shouldn't have to do anything other than copy the file into flash and then reboot. The router should see the .bin file in flash and use that instead of the one built into the IOS.

Assuming the 887 behaves like the 877/857, the file has to be renamed to:

adsl_alc_20190.bin

and then you reboot.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Will MeetingPlace Express (MPE) integrate with UCM v8?


Since there won't be any new MPE but only MP 8 ,Cisco never tested MPE against CUCM 8.X. Officially it's not supported as it wasn't tested, but Cisco mentions that using H323 trunks should work.

Since the standard integration is H.323 it should definitely work as it is quite version agnostic.

The other part of the integration you might be using is to the user DB on CCM; again this is via AXL and the calls aren't likely to change enought to make it fail in version 8.0.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

CUCM Upgrade to 7.1.3b SU2 from 6.1.2.2000-1


We are planning to upgrade our current CUCM version 6.1.2 to CUCM 7.1.3b SU2. Can someone please confirm following:

Our CUCM system version is 6.1.2.2000-1 . We had migrated to this version from CM 4.x and it was a new install i.e. from a bootable iso dvd. Could someone please confirm if 6.1.2.2000-1 can be treated the same as 6.1.2.1000-13? Should we upgrade to 6.1.3b first and then to 7.1.3b since there are no direct upgrade paths from 6.1.2 to 7.1.3?

Yes you should first upgarde to 6.1.3b and then to 7.1.3b. Notes about Engineering Specials (ESs), Service Updates (SUs), and Windows Service Release (SR) Upgrades -

If you run a Linux or Windows Engineering Special (ES), a Service Update (SU), or a Windows Service Release (SR) for any version listed in the "Direct upgrade" tables in the following Supported Cisco Unified Communications Manager Upgrades, you can also upgrade to the target version for that section.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

SEP0015C67B502A DEVICE :: Error : 35003 Device Description has invalid format


We are uploading a database in CUCM 7.1. We already have both Phone and User Template and we created the BAT File to insert Phone$Users but, When we did the process to insert Phones this error appears in Job scheduler log. Can someone help?

You have some non-printable characters in your data fields. That may be causing the issue. Take a look at your text file. Look at all the records adn make sure that there are no spaces. Use a Notepad or Text viewer to check if you have any non-ascii characters instead of "white space". Please test your files before uploading. Any non-printable white space character will cause this error.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

%PM-4-ERR_DISABLE: loopback error detected on Gi0/2


We have configured a new cisco 2960 se Swtich on our LAN that is connected with another Cisco switch with trunk with crass cable. The backbone link is down frequtly since we have installed it on network follwing Eror has shown in log

%ETHCNTR-3-LOOP_BACK_DETECTED: Loop-back detected on GigabitEthernet0/2.

Can somebody help us resolve the issue?

Do check for the faulty cable, once you connect with a new cable then enable the ports on both the switches.

A loopback error occurs when the keepalive packet is looped back to the port that sent the keepalive.

The switch sends keepalives out all the interfaces by default. A device can loop the packets back to the source interface, which usually occurs because there is a logical loop in the network that the spanning tree has not blocked. The source interface receives the keepalive packet that it sent out, and the switch disables the interface (errdisable). This message occurs because the keepalive packet is looped back to the port that sent the keepalive:

Keepalives are sent on all interfaces by default in Cisco IOS Software Release 12.1EA-based software.

In Cisco IOS Software Release 12.2SE-based software and later, keepalives are not sent by default on fiber and uplink interfaces.

The suggested workaround is to disable keepalives and upgrade to Cisco IOS Software Release 12.2SE or later.

Please click here for more details on Errisable Port State Recovery on the Cisco IOS Platforms.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

FWSM, ERROR: Unable to add, access-list config limit reached.


We need to change the number of partitions because We are not able to add more ACL. We are using a FWSM with only one context and failover peer. To apply the change we need to reload: does the FWSM restart with the same context configuration?

Yes, after changing the partition, the configuration of your fwsm (inc. the user context configuration) will remain the same.

However, you have fail over configured when changing the partition is to change it on both fwsm, save the config on both, and most importantly "reload" both fwsm at the same time. If you reload 1 fwsm first and the fwsm does not have the same partition number, it will cause a lot of issue when failover synchronise the configuration when 1 has lower/higher partition number than the other.

Lastly, even though the context configuration will not change, please the configuration prior to the change.

Here are the steps that you can follow -
  1. change the partition number with hostname(config)# resource acl-partition number_of_partitions on primary FWSM;
  2. save the configuration with write memory /all;
  3. manually configure the command on both primary and secondary fwsm, and save the configuration on both
  4. reload both module at the same time;
  5. verify the new setting with show resource acl-partition.
Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Tuesday, May 18, 2010

%FHRP group not consistent with already configured groups on the switch stack


We get this error message if we try to do hsrp stanby group number over 999. Switch is 3750 stack. E.g syntax "standby 2844 ip x.x.x.x
does not work and error "%FHRP group not consistent with already configured groups on the switch stack" appears. If group number is lower than 1000 it goes OK to config. Any idea. Switch stack pair is WS-C3750G-24TS-E and ios c3750-ipservicesk9-mz.122-53.SE.bin.

The Catalyst 3550 can only support a maximum of 16 unique group numbers.Each of the 16 unique group numbers can be used by 16 consecutive Layer 3 interfaces, which gives a total maximum of 256 HSRP interfaces. The total number that is recommended is 64, but this number depends on the routing protocols and features that are configured on the box. If you configure too many HSRP interfaces, you could cause the CPU load on the switch to become too high, which can have unexpected side effects.

The HSRP group IDs do not have to be contiguous. You can pick any 16 group IDs in the allowed group ID range (0-255). Only 16 group IDs, however, can be used from that range.

Also there are a couple of restrictions on HSRP version 2.0.
HSRP version 2 is not available for ATM interfaces running LAN emulation.
HSRP version 2 will not inter-operate with HSRP version 1. An interface cannot operate both version 1 and version 2 because both versions are mutually exclusive. However, the different versions can be run on different physical interfaces of the same router. You cannot change from version 2 to version 1 if you have configured groups above the group number range allowed for version 1 (0 to 255).

Please click here for more details on these restrictions.

Here are some troubleshooting tips on HSRP v2.0
  1. If you configure more than 32 HSRP group instances, remove HSRP groups so that up to 32 group instances are configured.
  2. If you HSRP for IPv4 and HSRP for IPv6 at the same time then configure either HSRP for IPv4 or HSRP for IPv6 on the switch.
  3. If you configure group numbers that are not in valid ranges of 256 then configure group numbers in a valid range.
Please click here for more details on troubleshooting HSRP.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Friday, May 14, 2010

What is the Jumbo frames supported between 3560E & 6509?

We are trying to enable jumbo frames between 3560E (Access) & 6509E (Core)

for 6509E jumbo frames support MTU size
(config)#system jumbomtu ?
<1500-9216> Jumbo mtu size in Bytes, default is 9216

for 3560E jumbo frames support MTU size
(config)#system mtu jumbo ?
<1500-9198> Jumbo MTU size in bytes

What is the jumbo fram size supported ? Is it 9216 or 9198?

The default MTU size is 9216 bytes after you enable jumbo frame support on the individual port for 6500 series switches and for 3560 switches All Gigabit Ethernet interfaces support jumbo frames up to 9000 bytes.

On the 3560E, you can set system MTU range between 1500 to 9198 bytes by use the "system mtu jumbo" command.

On the 6500 the WS-X6724-SFP line card the maximum frame size is 9216 bytes.

Please click here more information on Jumbo frame configuration on switches.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Does DMA Require Win2K OS Patch while upgrading a CallManager?


Upgrading a 4.1(3) cluster to version 7.1(3), using new servers and importing a DMA TAR file to restore db. We ran the Upgrade Assistant and it complained about memory and the OS version on the old CallManager. It's OS version 2000.4.2 and the Upgrade Assistant wants version 2000.4.6.

My question is, does it matter? We are going to pull off the TAR file and use it during the new Communications Manager installation on the new appliance servers. Will DMA run ok on the current OS version?

DMA doesn't care what CIPTOS version you're running, it only cares you're running 4.1(3) to migrate the data.
As long as you don't get errors in DMA which is the real important part of the upgrade you're good to go.

CCMUpgdAsstInstall.4-3-13.exe / Release Date: 19/Apr/2010
UA 4.3(13), is a universal version of non-intrusive upgrade tool that can detect the health of your servers before you upgrade to 3.3(5),4.0(2a),4.1(x),,4.2(x),4.3(x),5.0(x),5.1(x),6.0(x),6.1(x),7.0(x), & 7.1(x)

The Upgrade Assistant is not related in any way, shape, or form to DMA and is not checking for any pre-requisites related to DMA. It is a generic application for both Windows and Linux upgrades. The Windows OS is of no consequence when you are migrating to Linux. The system will get wiped out anyway. It is running pre-canned checks as they relate to CUCM upgrades.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

IP Communicator kills Anyconnect VPN Connection


Connecting with Anyconnect and can access myremote network ok. If we launch IP Communicator it fails to register and my remote access via Anyconnect stops working. We need to close IP Communicator and restart Anyconnect to get our connection back. IP Communicator works just fine with the ipsec client. Any ideas?

Anyconnect version 2.5.0217
ASA 8.0.5
IP Communicator 2.1.4

ASA with anyconnect DTLS connection, when tftp
inspection is enabled, if a TFTP file transfer is attempted
from the anyconnect client and if the file is not
found (or results in any TFTP error message returned), it
will intermittently disconnect the DTLS session also.

This will cause a temporary stoppage of traffic flow
as anyconnect client re-establishes the connection.

This is commonly seen in Cisco IP communicator when it tries to use
TFTP and the file is not on the TFTP server (call manager).

Conditions:

1) TFTP from client and results in a TFTP error message
2) TFTP inspection is enabled

Workaround:

1)Disable TFTP inspection
2) Use TLS intead of DTLS

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

How to modify Location parameter via SOAP in CUCM?


Does anyone knows how to modify Audio bandwidth parameter in Locations via SOAP? Is there any example?

You would need to issue a SOAP update Location request, as per the AXL spec. Please click here for more documentation - pick the appropriate spec for your CM version.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Issues with IP Phone SSL VPN to ASA using AnyConnect


Troubleshooting Steps
  1. Plug the phone in the same subnet as the inside interface. This will test whether the phone's configuration works prior to adding vpn
  2. Connect with AnyConnect on a PC. This will confirm that the ASA is configured correctly for Anyconnect
  3. From the connected PC try to ping the TFTP server and CUCM server. This will test basic ip connectivity to the two servers.
  4. From the PC try to download the TFTP config file for the phone in question "tftp -i GET SEP.cnf.xml. This will test that the tftp service is functional and reachable.
  5. From the PC try to telnet to TCP Port 2000 on the CUCM server "telnet 2000". This should immediately come back with a new line and a blank cursor. This will test connectivity to the sccp service, for SIP registrations use port 5060.
  6. Normal phone registering process testing.
Click here for the document that provides a complete set of configuration tasks required to configure CUCM for this feature.

Required Software Versions
CUCM >= 8.0.1.100000-4
IP Phone >= 9.0(2)SR1S
ASA >= 8.0.4
Anyconnect VPN Pkg >= 2.4.1012

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Wednesday, May 12, 2010

How to create Internal routes distributions in Roadwarrior VPN [PPTP]


We have configured in a Cisco 1841 a small VPN concentrator, using PPTP and authenticating users in Active Directory using RADIUS. Everything was simple and works great with the exception of one thing, distributing routes for the internal networks

In Windows Active Directory we configured for our users, (under the Dial In tab the option), routes for the users and added some routes for our internal networks. But they are not distribute to the clients? Should they be distributed? We are little confused with this because in Cisco we configure only the radius server for authentication, we find it strange that the same server will be used to distribute other information to the clients...like routing information.

Does anyone has a Roadwarrior vpn scenario similar to this? How did you solve it?

For VPN connections that have only one local network to be accessed through the VPN then under windows just disable the accept default gateway in TCP/IP options and everything works normal.

The real problem was when you access multiple network segments behind your VPN tunnel. You can try the following -

Instead of using in the virtual-template configuration a local pool (peer default ip address pool VPN_POOL) use a DHCP pool: peer default ip address dhcp-pool VPN_ROADWARRIORS

So when you connect now you should receive all the information for your connection from the DHCP pool.

In the DHCP pool add the option 249 ip 24.192.168.6 192.168.252.254 24.192.168.2 192.168.252.254. For more details on RFC click here.

This basically tells your DHCP clients that network 192.168.6.0/24 has gateway 192.168.252.254 (your VPN gateway local address ) and it then adds a second route to the same gateway for network 192.168.2.0/24.

The pool should look like this:

ip dhcp pool VPN_ROADWARRIORS
network 192.168.252.0 255.255.255.0
dns-server MYDNSSERVER
default-router 192.168.252.254
domain-name MYDOMAIN
option 249 ip 24.192.168.6 192.168.252.254 24.192.168.2 192.168.252.254
option 121 ip 24.192.168.6 192.168.252.254 24.192.168.2 192.168.252.254

When a windows users connects it receives the address and in a few seconds (not instantaneously) learns the routes you defined in the DHCP pool, and it should work perfectly! Internet access should remain in your local gateway, and your internal networks should go all the way in the VPN tunnel.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Client unable to get DHCP IP from 871W


We have the following configuration with an 871W router and have setup a local dhcp pool:

ip dhcp pool LAN_DHCP
import all
network 10.10.10.0 255.255.255.0
default-router 10.10.10.1

The laptop connected to it isn't able to receive an IP. Can someone help us out?

Change your config to the following and try again

ip dhcp excluded-address 10.10.10.1 10.10.10.X
ip dhcp smart-relay
!
ip dhcp pool LAN_DHCP
network 10.10.10.0 255.255.255.0
default-router 10.10.10.1
!

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Saturday, May 8, 2010

CUCM 7.1, AD Integration and DirSync


We have a new 3 server cluster, publisher (no Call Manager service) and 2 subscribers (running Call Manager service). Currently, we have the DirSync service running only on the publisher. From an HA perspective, is there a better strategy for how/where DirSync runs? Thanks.

Not really. You can have a second agreement setup as a redundant link to AD but the intent is to run directly from the Publisher as it does the background work to verify authentication (if you enable that) and etc.

The sync agreement can have three LDAP servers. This gives you redundancy for LDAP failures. If the CUCM Pub should fail, it wouldn't make any sense to synchronize LDAP data to the subscribers because the Cisco Informix database cannot be changed by the subscribers (aside from user facing features). That being said, authentication would still work. The subscribers will use LDAP to authenticate a user in the event the publisher is offline

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

IP phone ignoring URL for Directory XML


We need to use external source for directory XML ,we have set it in External Data Locations Information on IP phone settings on Call manager, or in Enterprise parameters on Call Manager. We can see that IP phone get the URL in HTTP configuration menu, but it still use default URL pointed to CCM.Strangely, when we try the same setting for Cisco softphone CIPC, everything works fine. All phones are localized in Czech except the CIPC so maybe this is the problem. How can we fix it and how does localization affects URL for XMLs and scripts?

CUCM version:7.1.3.32900-4

IP phones:7965,7975


The issue is that in 7.1.3 the provisioning of features like directories (corporate/personal/missed calls/received calls/placed calls/etc.) has changed quite a bit. Cisco introduced the concept of enterprise subscriptions for services (which are automatically provisioned on all phones). Coupled with this concept is a provisioning method. The provisioning method tells the phone can you access an enterprise level service via "Internal", "External", or "Both". You have to understand a few things about this new provisioning method and the enterprise service subscription to solve your issue.


Click here to access a great blog that describes this in detail.


Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Friday, May 7, 2010

What is the compatibility of SRST in the IOS 12.4 with the CUCM 7?


We plan to migrate a CUCM Cluster 4 to 7, we have 10 remote sites which have 2801 GW IOS 12.4 registred with H323 protocol. Do we need to migrate IOS of GWs before the migration of the CUCM cluser ? What is the compatibility of SRST in the IOS 12.4 with the CUCM 7?


Here is the Upgrade Matrix spreadsheet with details of all the relevant items - Compatibility, Device Defaults, Support etc. Included are current CUCM version along with 8.0(x), 7.1(3) and 7.1(2).

SRST/IOS 7.1/IOS 15.0(1)M1 8.0 / IOS 15.1(1)T 7.2/IOS 15.(0)1M 7.1/IOS 12.4(24)T1
SRST 7914 Expansion 14 Keys Supported S00105000300 S00105000400 ? S00105000300
SRST 7915 Expansion 14 Keys Supported B015-1-0-3** B015-1-0-3** ? B015-1-0-3**
SRST 7915 Expansion 24 Keys Supported B015-1-0-3** B015-1-0-3** ? B015-1-0-3**
SRST 7916 Expansion 14 Keys Supported B016-1-0-3** B016-1-0-3** ? B016-1-0-3**
SRST 7916 Expansion 24 Keys Supported B016-1-0-3** B016-1-0-3** ? B016-1-0-3**
SRST supported 7940G image P00308000900 P00308000900 ? P00308000900
SRST supported 7960G image P00308000900 P00308000900 ? P00308000900
SRST supported 7941G image SCCP41.8-4-1-23 SCCP41.8-5-3S ? SCCP41.8-4-1-23
SRST supported 7961G image SCCP41.8-4-1-23 SCCP41.8-5-3S ? SCCP41.8-4-1-23
SRST supported 7962G image SCCP42.8-4-1-23 SCCP42.8-5-3S ? SCCP42.8-4-1-23
* Version not included in default load page
** To support 7915/7916 extenstion modules, the IP phones need to have firmware 8-3-5 onward (CSCsl88522), the fix will be available with 8-4-1 firmware.
Useful Links:
Click here for Unity Connection Supported CUCM versions
Click here for Default Load/Version
Click here for Cisco Unified Communications Compatiblity Tool

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Wednesday, May 5, 2010

"Strange packet received: type 3" error when using Putty


When we use putty 0.60 to connect to the router via ssh: putty occasionally opens a window with error the following message: "Strange Packet Received: type 3" and terminatig comunication with router. The problem occurs on some recent versions of IOS, in particular the 12.4 (24) and various hardware platforms.

Any idea to solve this annoying problem?

Unfortunately most IOS versions have this problem. One possible workaround is to use telenet instead.

Alternatively, in putty config go in Connection->SSH->Kex

Change

Max minutes before rekey to 0

Max data before rekey to 0

The strange packet type 3 error happen on rekey...

You can set it to 1min to see it happen faster.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

How do you share DN between 3rd Party SIP Droid and SCCP - Cisco CME


We are using SIPDroid on my Droid to connect to our CME. We woudl like for calls to my extension, 168, to ring both our SCCP desk phone and the SIP client on my Droid. Can this be done? We are able to register our SIP client to CME successfully on an differnet DN. We used CFNA to get calls forwarded to our Droid, but we would rather just have both ring simultaneously like an overlay.

There is not formal recommended way to do this. But here are some workarounds to achieve it.

Configure it as voice hunt pilot.

If you register a SIP phone with the same number as an SCCP phone, or two SIP one, or two SCCP ones, it will ring only the one with better preference, and if preference is set equal, will ring them round-robin.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.

Tuesday, May 4, 2010

A user deletes an EMAIL and it goes to Unity's deleted box


We have a user that deletes normal email and it goes to their deleted box in their Unity VM box. We use Unified Messaging configuration and version numbers are as follows -

CCM 4.1.3

Unity 4.0.3

Exchange server


In a Unified Messaging configuration, when a user plays their Deleted Items, Unity will announcing both email and voicemail messages.

Is the bulk of the messages are email messages? Most people find that the Deleted Items folder in their Outlook client often fills up quickly, and in most cases with deleted emails. This folder is where deleted voicemails are also sent. It is one and the same folder. When one logs into Unity and goes into the deleted messages conversation, Unity announces the both the email and voicemail messages in the Deleted Items folder.

If Unity could be configured to only announce the voicemail messages when one goes into the deleted messages conversation in a UM configuration, this question might not arise. However, the cost to Unity for implementing such an ability to sort through this folder thats often full, and distinguish voicemail from email, would likely be so significant as to impair Unity's functionality.

Also in the Subscriber Template within the Messages tab, there is a checkbox for what messages to announce. If Email is checked, it will announce email messages to users they'll be accessible via the TUI.

Citation - This blog post does not reflect original content from the author. Rather it summarizes content that are relevant to the topic from different sources in the web. The sources might include any online discussion boards, forums, websites and others.
 
/* Google Analytics begin ----------------------------------------------- */ /* Google Analytics end ----------------------------------------------- */