Archive for January, 2008
ISR has extra hole on it…
Ok so I’m in the lab today and noticed that a great many of the 2811’s I have in front of me have a small hole located just under the CF LED however a great many of other 2811’s do not have the same hole located on them…So I couldn’t figure out what the little [...]
31Jan2008 | Joe Harris | 0 comments | ContinuedDaily Trivia - 1/31
You have many established connections on your ASA and you need to modify a few access control lists (ACLs) configured on your box. Once you modify the ACLs and add a few new access control entries (ACEs), the ASA will do which of the following(s):
A) Drop all established connections
B) Keep all connections established
C) Reprocess the [...]
IntelliShield Cyber Risk Report
The IntelliShield Cyber Risk Report is a strategic intelligence product that highlights current security activity and mid- to long-range perspectives. The report addresses seven major risk management categories: vulnerability, physical, legal, trust, identity, human, and geopolitical. The Cyber Risk Reports are a result of collaborative efforts, information sharing, and collective security expertise of senior analysts [...]
30Jan2008 | Joe Harris | 0 comments | ContinuedDaily Trivia - 1/30
Sorry about missing the question for yesterday…So here is today’s question. Which two modes can be used by IKE when it negotiates IPSec SA’s for phase 1?
A) Quick
B) Main
C) Fast
D) Loose
E) Aggressive
Please email me your answer to be entered into a monthly drawing for a free itunes or starbucks gift card.
VLAN Mapping on the ASA
I get questions from customers and partners alike asking me what ASA VLAN mapping is and how to configure it because they either overheard someone discussing it or read about it somewhere…so I figured I would try and answer both questions here. The ASA VLAN mapping feature allows you to route your VPN traffic to a specific ASA [...]
30Jan2008 | Joe Harris | 0 comments | ContinuedHow to disable the —more— prompt
From time to time I get asked, “how do I get the PIX/ASA to stop producing the —more— prompt to me and how can I break out of a command?” well the answer is actually quote simple…If the ASA displays the more prompt and you want it to go away simple type:
pager line 0
You can [...]
A Saddened Heart - EoS/EoL Announcement - PIX Firewall
End of Sales Announcement for Cisco PIX Security Appliances
On January 28, 2008, Cisco announced the end-of-sale and end-of life dates for Cisco PIX Security Appliances, software, accessories, and licenses. The last day for purchasing Cisco PIX Security Appliance platforms/bundles will be July 28, 2008 and the last day to purchase accessories and licenses will [...]
EoL/EoS Announcement - Cisco 4215 Sensor
Cisco announces the end-of-sale and end-of life dates for the Cisco IDS 4215 Sensor. The last day to order the affected product(s) is July 29, 2008. Customers with active service contracts will continue to receive support from the Cisco Technical Assistance Center (TAC) as shown in Table 1 of the EoL bulletin. Table 1 describes [...]
29Jan2008 | Joe Harris | 0 comments | ContinuedThe Cisco Nexus 7000??? Yes I am…
In response to many many inquiries, I will be posting a tremendous amount of information related to Cisco’s Nexus 7000 series platform…Please bear with me as I put this information together over the coming days. Thanks in advance.
29Jan2008 | Joe Harris | 5 comments | ContinuedDaily Trivia - 1/28
How long does it take the Cisco Nexus 7000 to transmit the content within all of the U.S. Academic Research Libraries?
A) 1.07 secs
B) 25.37 mins
C) 1.6 mins
D) 12.4 mins
E) 2.14 sec
Please email me your answer to be entered into a monthly drawing for a free itunes or starbucks gift card.
28Jan2008 | Joe Harris | 0 comments | ContinuedDaily Trivia - 1/25
Which OSPF LSA is used to support MPLS Traffic Engineering?
A) Type 2
B) Type 3
C) Type 10
D) Type 11
E) Type 8
F) Type 7
Please email me your answer to be entered into a monthly drawing for a free itunes or starbucks gift card.
The Knack
My good friend Kevin Downes (CCIE# 1987) sent this to me and I thought I would pass it along as a nice Friday Funnies… Do You Have “The Knack”???
Daily Trivia - 1/23
Ok, so I’m running behind a few days on these…I’ll try and keep up from this point forward. Now on to the question.
True or False…When configuring MPLS Traffic Engineering, you must use the same loopback interface for your IGP RID, your BGP RID, and your MPLS TE RID?
Please email me your answer to be [...]
EoS/EoL Announcement for Cisco IOS Major Release 12.3
This is a reminder for the upcoming March 15, 2008 End of Software Maintenance (EoSW) milestone date for Cisco IOS Software Release 12.3 Mainline. The EoSW milestone denotes the last day Cisco Engineering will release any final software maintenance releases, rebuilds, or bug fixes for the Cisco IOS Release 12.3 Mainline. After this date, Cisco Engineering will no longer develop, repair, maintain, or test [...]
22Jan2008 | Joe Harris | 0 comments | ContinuedAnnouncing the ACE 4710 Appliance
The Cisco ACE Application Control Engine 4710 Appliance, a member of the Cisco family of Data Center 3.0 solutions and a critical component of Cisco ACE product family, is a powerful new standalone application switching and optimization solution that:
Ensures business continuity by enhancing application availability
Improves business productivity by accelerating applications up to 500 [...]
Please welcome the ASA 5580 !!!
I have been waiting to make this announcement for some now time !!!
Cisco Launches Fastest Ever Adaptive Security Appliances – Cisco ASA 5580 Series
Cisco, the market leader in enterprise security, announces two super-high performance security appliances – Cisco ASA 5580-40 and Cisco ASA 5580-20 – with integrated firewall and SSL/IPsec VPN remote access services in a [...]
22Jan2008 | Joe Harris | 0 comments | ContinuedACL Limit on the ASA/PIX
Joe,
I have a question from one of our partners that was wondering if there is any software limitation on the configurable numbers of ACLs, object-groups, and/or names that can be configured on the ASA? They are using an ASA 5520 with 7.2.3 code on it. Thanks in advance.
Response:
Jason,
We don’t really publish maximum limits on [...]
Cisco Certified Design Expert
Introducing Cisco Certified Design Expert (CCDE) Certification
Responding to strong customer demand to assess and recognize Sr. Level Network Architecture skills in the market, Cisco is introducing a new premiere knowledge based certification focused on Network Infrastructure Design. - The Cisco Certified Design Expert (CCDE). The CCDE is an expert-level certification with content emphasis on expertise in network architecture, which is [...]
CISCO NM-CIDS EOS Announcement
Cisco® announces the end-of-sale and end-of-life dates for the Cisco Intrusion Detection System Network Module (NM-CIDS). The last day to order Cisco NM-CIDS is May 2, 2008. The following table details key Cisco NM-CIDS End-of-Life Milestones and Dates.
Table 1.
End-of-Life Milestones and Dates for the
Cisco Intrusion Detection System Network Module
EOL Announcement for release of new signatures in 4.x format for IOS IPS
Cisco announces the upcoming End-of-Life (EOL) for new signature updates in Cisco IPS version 4.x format for Cisco IOS IPS feature. No new signature releases (IOS-Sxxx.zip files) in 4.x format will be posted at http://www.cisco.com/cgi-bin/tablebuild.pl/ios-sigup after June 30, 2008. Also, no new updates to the pre-built Basic or Advanced signature sets (128MB.sdf and 256MB.sdf files) for IOS [...]
22Jan2008 | Joe Harris | 0 comments | ContinuedCCA Agent 4.1.3.1 Released
Cisco has announced the immediate availability of CCA Agent release 4.1.3.1. The ISO file and the upgrade kit can be downloaded from the following URL:
CCA Agent 4.1.3.1 Download
The overview of product features, open / closed caveats and the upgrade instructions can be found within the product release notes, which can be accessed using the [...]
IOS Software Release 12.2(44)SE for Catalyst Desktop Switches
Cisco announces Cisco IOS Software updates for the Cisco Catalyst 3750-E, 3750, 3560-E, 3560, 2960, and 2970 Series Switches. This release furthers Cisco leadership by providing integrated services for IPv6, secure voice, multicast, manageability for enterprise deployments and 20-watts of power per port on the E-series switches…Read more information regarding 12.2(44)SE code at the following [...]
15Jan2008 | Joe Harris | 2 comments | ContinuedIntellishield Cyber Risk Report
The IntelliShield Cyber Risk Report is a strategic intelligence product that highlights current security activity and mid- to long-range perspectives. The report addresses seven major risk management categories: vulnerability, physical, legal, trust, identity, human, and geopolitical. The Cyber Risk Reports are a result of collaborative efforts, information sharing, and collective security expertise of senior analysts [...]
15Jan2008 | Joe Harris | 0 comments | ContinuedDaily Trivia - 1/15
Which of the following configuration(s) is incorrect?
A)
router rip
!
address-family ipv4 vrf CCIE6200
network 10.0.0.0
version 2
no auto-summary
exit-address-family
B)
router eigrp 65535
auto-summary
autonomous-system 2
!
address-family ipv4 vrf CCIE6200
network 10.0.0.0
no auto-summary
eigrp log-neighbor-changes
exit-address-family
C)
router ospf 6 vrf CCIE6200
network 10.0.0.0 0.255.255.255 area 0
D)
router bgp 65535
!
address-family ipv4 vrf CCIE6200
neighbor 192.168.10.1 remote-as 10
neighbor 192.168.10.1 activate
network 10.0.0.0 mask 255.0.0.0
exit-address-family
Please email me your answer to be entered [...]
December Daily Trivia Winner
Congratulations to Neo Shi who was the lucky winner of the Daily Trivia Question drawing for December (I know..yes I’m just now getting around to it, but I’ve been real busy)…Neo had a choice of picking an iTunes gift card or a Starbucks gift and Neo decided on the iTunes gift card…Send in your answers [...]
10Jan2008 | Joe Harris | 1 comment | Continued
















