Friday, August 16, 2013

BGP Processes in Cisco Router

BGP Processes:
  • BGP Open - responsible for BGP session establishment.
  • BGP I/O - handles queuing and processing updates and keep alive packets.
  • BGP Scanner - responsible for conditional route advertisements, route dampening, import and export of routes into VRF (MPLS), and confirms the reachability to the NEXT_HOP (the last one is handled now by BGP next-hop tracking).
  • BGP Router - calculates the best path, establishes peers, sends and receives routes and interacts with RIB.

BGP command's



router bgp 100
 no synchronization
 bgp log-neighbor-changes
 bgp scan-time 20                
 network 1.1.1.1 mask 255.255.255.255
 timers bgp 5 15
 neighbor 10.1.1.2 remote-as 300
 neighbor 10.2.1.2 remote-as 100
 no auto-summary






Logs


*Mar  1 00:24:00.811: BGP: 10.2.1.2 sending KEEPALIVE (io)
*Mar  1 00:24:00.903: BGP: 10.2.1.2 received KEEPALIVE, length (excl. header) 0
*Mar  1 00:24:01.807: BGP: 10.1.1.2 sending KEEPALIVE (io)
R1#
*Mar  1 00:24:01.895: BGP: 10.1.1.2 received KEEPALIVE, length (excl. header) 0
R1#
*Mar  1 00:25:00.807: BGP: 10.2.1.2 sending KEEPALIVE (io)
*Mar  1 00:25:00.895: BGP: 10.2.1.2 received KEEPALIVE, length (excl. header) 0
*Mar  1 00:25:01.807: BGP: 10.1.1.2 sending KEEPALIVE (io)
R1#
*Mar  1 00:25:01.895: BGP: 10.1.1.2 received KEEPALIVE, length (excl. header) 0
R1#
*Mar  1 00:26:00.807: BGP: 10.2.1.2 sending KEEPALIVE (io)
*Mar  1 00:26:00.911: BGP: 10.2.1.2 received KEEPALIVE, length (excl. header) 0
*Mar  1 00:26:01.807: BGP: 10.1.1.2 sending KEEPALIVE (io)
R1#
*Mar  1 00:26:01.887: BGP: 10.1.1.2 received KEEPALIVE, length (excl. header) 0
R1#
*Mar  1 00:27:00.807: BGP: 10.2.1.2 sending KEEPALIVE (io)
*Mar  1 00:27:00.867: BGP: 10.2.1.2 received KEEPALIVE, length (excl. header) 0
*Mar  1 00:27:01.811: BGP: 10.1.1.2 sending KEEPALIVE (io)
R1#
*Mar  1 00:27:01.891: BGP: 10.1.1.2 received KEEPALIVE, length (excl. header) 0
R1#
*Mar  1 00:28:00.807: BGP: 10.2.1.2 sending KEEPALIVE (io)
*Mar  1 00:28:00.915: BGP: 10.2.1.2 received KEEPALIVE, length (excl. header) 0
*Mar  1 00:28:01.811: BGP: 10.1.1.2 sending KEEPALIVE (io)
R1#
*Mar  1 00:28:01.911: BGP: 10.1.1.2 received KEEPALIVE, length (excl. header) 0
R1#
*Mar  1 00:29:00.807: BGP: 10.2.1.2 sending KEEPALIVE (io)
*Mar  1 00:29:00.903: BGP: 10.2.1.2 received KEEPALIVE, length (excl. header) 0
*Mar  1 00:29:01.807: BGP: 10.1.1.2 sending KEEPALIVE (io)
R1#
*Mar  1 00:29:01.867: BGP: 10.1.1.2 received KEEPALIVE, length (excl. header) 0

Wednesday, August 7, 2013

Sonicwall Vpn Client Download (VPN Client v.4.7.3.0403)

Wireless Speed

Wireless speed


IEEE Standards Speed (mbps) Mhz
802.11a                   54 
80211b                    11                          2.4
802.11g                  54                          2.4
802.11n                 72.2
802.11ac               866.7
802.11ad                7000

Thursday, August 1, 2013

Native vlan on Cisco

Cisco command's

switchport trunk allowed vlan remove/add 2-1001
switchport trunk allowed vlan add 2-3


HP command 

Interface gig 3/0/2
port link-type trunk
port trunk permit vlan 100 101
port trunk PVID vlan 12  (Equals to Native vlan command in cisco) 

Note:-


switchport trunk native vlan command for IOS switches to specify the native VLAN. Remember that the native VLAN must match on both sides of the trunk link for 802.1Q

By default, there is only a single VLAN for all ports. This VLAN is called default. You cannot rename or delete VLAN 1.

If you talk about a management VLAN is nothing more than a VLAN that is used for in-band management of your network switching devices.  In order to configure this on a switch you need to create a Switch Virtual Interface (SVI) that is mapped to that VLAN and then assign that virtual interface an IP address.  On a Cisco switch it would look like the following.

Interface Vlan99
ip address 192.16.10.1 255.255.255.0
exit

I also want to make something very clear.  Your management VLAN does not have to be the same as your Native VLAN.  Matter of fact, it is good practice to make sure that they are different.  Your management VLAN should only carry in-band management traffic and should not be the default VLAN.  By in-band management traffic I am referring to SSH or telnet (although telnet is not recommended because it is not secure).  Traffic such as BPDUs, PagP, CDP, use the native VLAN that is vlan 1.But if you change the native vlan then CDP/VTP/PagP will still use vlan 1 but the packets will be tagged.Only DTP uses the native vlan so if you changed the native vlan then DTP would use the new vlan to send frames.With PVST+ BPDUs obviously run on all vlans.


Friday, July 26, 2013

John Chambers (God of Networking)

John Chambers, Cisco Systems Inc. chairman and chief executive officer, challenged the audience attending DISA's 2011 Customer & Industry Forum Aug. 16 to embrace change and innovation, view collaboration as fundamental, and think outside of the box to develop new ideas. This is all to transform business, break down silos, and alter culture and processes



http://www.youtube.com/watch?v=keh-Zla06P0



Monday, July 15, 2013

A new software update is now available. HP 5800 Switch Series, HP 5820 Switch Series

Products: HP 5800 Switch Series, HP 5820 Switch Series
Description: A new software update is now available.

JC099A - HP A5800-24G-PoE+ Switch
JC100A - HP A5800-24G Switch
JC101A - HP A5800-48G-PoE+ Switch with 2 Interfaces
JC102A - HP A5820X-24XG-SFP+ Switch
JC103A - HP A5800-24G-SFP Switch with 1 Interface Slots
JC104A - HP A5800-48G-PoE+ Switch with 1 Interface Slot
JC105A - HP A5800-48G Switch with 1 Interface Slot
JC106A - HP A5820X-14XG-SFP+ Switch with 2 Interface Slots
JG225A - HP 5800AF-48G Switch
JG219A - HP 5820AF-24XG Switch
JG254A - HP 5800-24G-PoE+ TAA-compliant Switch
JG255A - HP 5800-24G TAA-compliant Switch
JG242A - HP 5800-48G-PoE+ TAA-compliant Switch with 2 Interface Slots
JG256A - HP 5800-24G-SFP TAA-compliant Switch with 1 Interface Slot
JG257A - HP 5800-48G-PoE+ TAA-compliant Switch with 1 Interface Slot
JG258A - HP 5800-48G TAA-compliant Switch with 1 Interface Slot
JG243A - HP 5820-24XG-SFP+ TAA-compliant Switch
JG259A - HP 5820X-14XG-SFP+ TAA-compliant Switch with 2 Interface Slots + 1 OAA Slot

The software version is R1808P08.

Site to site Vpn configuration for check point

Wednesday, July 10, 2013

HP 5500 EI Switch Series, HP 4800G Switch Series,A new software update is now available

Products: HP 5500 EI Switch Series, HP 4800G Switch Series
Description: A new software update is now available.

JD373A - HP A5500-24G DC EI Switch
JD374A - HP A5500-24G-SFP EI Switch
JD375A - HP A5500-48G EI Switch
JD376A - HP A5500-48G-PoE EI Switch
JD377A - HP A5500-24G EI Switch
JD378A - HP A5500-24G-PoE EI Switch
JD379A - HP A5500-24G-SFP DC EI Switch
JG240A - HP A5500-48G-PoE+ EI Switch w 2 Intf Slt
JG241A - HP A5500-24G-PoE+ EI Switch w 2 Intf Slt
JD007A - HP E4800-24G Switch
JD008A - HP E4800-24G-PoE Switch
JD009A - HP E4800-24G-SFP Switch
JD010A - HP E4800-48G Switch
JD011A - HP E4800-48G-PoE Switch
JG252A - HP 5500-24G-PoE+ EI TAA-compliant Switch with 2 Interface Slots
JG253A - HP 5500-48G-PoE+ EI TAA-compliant Switch with 2 Interface Slots
JG250A - HP 5500-24G EI TAA-compliant Switch with 2 Interface Slots
JG249A - HP 5500-24G-SFP EI TAA-compliant Switch with 2 Interface Slots
JG251A - HP 5500-48G EI TAA-compliant Switch with 2 Interface Slots

The software version is R2220P02.

STP command for HP 5500 switch

5500 switch command for STP Edge port



[Hp-SW5500]interface Ethernet 1/3
[Hp-SW5500-Ethernet1/3]stp edged-port enable (Only for Pc or for Laptops, To avoid the STP calculation)
[Hp-SW5500-Ethernet1/3]quit
[Hp-SW5500]stp bpdu-protection   (BPDU guard in cisco devices to prevent the Loops, Same command in Hp device)

Wednesday, July 3, 2013

HP Networking Routers Maintenance Software HP 6600 Router Series


Products: HP Router Processing Modules, HP 6600 Router Series
Description: A new software update is now available.

JC177A - HP 6608 Router
JC177B - HP 6608 Router Chassis
JC178A - HP 6604 Router Chassis
JC178B - HP 6604 Router Chassis
JC496A - HP 6616 Router Chassis
JC165A - HP RPE-X1 A6600 Module

The software version is R3103P03.

Optimization of fortigate IPS

IPS signature need select according to infrastructure environment  Eg:-  if  we are not have Linux servers this ips signature can disable (d...