VPDN LNS Address Checking
|
|
- Claud Lawson
- 6 years ago
- Views:
Transcription
1 First Published: Sept. 30, 2007 Last Updated: Aug. 28, 2008 The feature allows a Layer 2 Tunnel Protocol (L2TP) Access Concentrator (LAC), that is receiving data from an L2TP Network Server (LNS) to check if the IP addresses contained in the Start Control Connection Reply (SCCRP) and Start Control Connection Request (SCCRQ) messages are identical, prior to establishing an L2TP tunnel. If these IP addresses do not match, an L2TP tunnel is not established. This feature prevents any traffic from reaching the LNS when an ISP sends traffic back to an LNS using an alternate IP address. Finding Feature Information Your software release may not support all the features documented in this module. For the latest feature information and caveats, see the release notes for your platform and software release. To find information about the features documented in this module, and to see a list of the releases in which each feature is supported, see the Feature Information for section on page 9. Use Cisco Feature Navigator to find information about platform support and Cisco IOS, Catalyst OS, and Cisco IOS XE software image support. To access Cisco Feature Navigator, go to An account on Cisco.com is not required. Contents Prerequisites for, page 2 Information About, page 2 Configuring, page 3 Configuration Examples for, page 4 Additional References, page 6 Command Reference, page 7 Feature Information for, page 9 Americas Headquarters: Cisco Systems, Inc., 170 West Tasman Drive, San Jose, CA USA
2 Prerequisites for Prerequisites for Before you can configure the LNS Address Checking feature, you must configure a VPDN deployment. For an overview of VPDN deployments, refer to the VPDN Technology Overview module. Information About To configure the LNS Address Checking feature, you should understand the following concepts: Benefits of, page 2 Using a RADIUS Server, page 2 Debugging Dropped Control Packets, page 2 Benefits of The LNS Address Checking feature allows a LAC to check the IP address of the LNS sending traffic to it during the setup of an L2TP tunnel, thus providing a check for uplink and downlink traffic arriving from different interfaces. The benefit of the LNS Address Checking feature is avoiding the loss of revenue from users sending back traffic through an alternate network. Using a RADIUS Server Use the Cisco attribute-value pair (AVP), downloaded from a RADIUS server during authentication, to enable IP address checking at the LAC. The Cisco AVP is: l2tp-security-ip-address-check=yes The following RADIUS profile example shows the LNS address checking enabled: example.com Password= example Service-Type=Outbound Cisco-Avpair= vpdn:tunnel-id=tunnel Cisco-Avpair= vpdn:tunnel-type=l2tp Cisco-Avpair= vpdn:ip-address= Cisco-Avpair= vpdn:l2tp-tunnel-password=example Cisco-Avpair= vpdn:l2tp-security-ip-address-check=yes Debugging Dropped Control Packets Use the LNS Address Checking feature to help troubleshoot dropped control packets. If you configure the debug vpdn 12x-error command, informational messages display for each control packet that is dropped in the following format: Tnl <tunnel-id> L2TP: Drop <L2TP-packet-name> from y.y.y.y (attempted) x.x.x.x 2
3 Configuring Configuring To configure the feature, follow this procedure. SUMMARY STEPS 1. enable 2. configure terminal 3. vpdn enable 4. vpdn group <vpdn-group-name> 5. l2tp security ip address-check 6. exit DETAILED STEPS Step 1 Step 2 Command or Action enable Router> enable configure terminal Purpose Enables privileged EXEC mode. Enter your password if prompted. Enters global configuration mode. Step 3 Step 4 Router# configure terminal vpdn enable Router(config)# vpdn enable vpdn group <vpdn-group-name> Enables virtual private dialup networking on the router and informs the router to look for tunnel definitions in a local database or on a remote authorization server (home gateway), if one is present. Creates a VPDN group and associates a name with it. Step 5 Step 6 Router(config)# vpdn group example l2tp security ip address-check Router(config-vpdn)# l2tp security ip address-check exit Configures the LNS to compare the IP addresses contained in the inbound and outbound message to ensure they are identical. If the IP addresses to not match, the L2TP tunnel is not established. Exits VPDN configuration mode. Router(config-vpdn)# exit 3
4 Configuration Examples for Example The following example shows the configuration for the LNS Address Checking feature. Router> enable Router# configure terminal Router(config)# vpdn enable Router(config)# vpdn-group example Router(config-vpdn)# l2tp security ip address-check Configuration Examples for The following shows an example configuration for the client router. hostname Client enable password example no aaa new-model vpdn enable bba-group pppoe 1 virtual-template 1 interface <interface toward LAC> pppoe enable group 1 interface Virtual-Template 1 ip unnumbered <interface> ppp pap sent-username@example.com end The following shows an example configuration for the LAC. hostname LAC enable password example no aaa new-model vpdn enable vpdn-group 1 request-dialin protocol l2tp domain example.com initiate-to ip <lns 1 IP address> l2tp tunnel password 0 example bba-group pppoe 1 virtual-template 1 interface Virtual-Template 1 no ip address ppp authentication pap interface <interface> pppoe enable group 1 4
5 Configuration Examples for end The following shows an example configuration for the LNS 1. hostname LNS1 enable password example aaa authentication ppp default local vpdn enable vpdn-group 1 Default L2TP VPDN group accept-dialin protocol l2tp virtual-template 1 l2tp tunnel password 0 example vpdn-group 2 request-dialin protocol l2tp domain example.com initiate-to ip <lns 2 IP address> l2tp tunnel password 0 example interface Virtual-Template 1 ip unnumbered <interface> ppp authentication pap end 5
6 Additional References Additional References The following sections provide references related to the LNS Address Checking feature. Related Documents Related Topic L2TP Document Title Layer 2 Tunnel Protocol Technology Brief Standards Standard Title None MIBs MIB MIBs Link To locate and download MIBs for selected platforms, Cisco IOS releases, and feature sets, use Cisco MIB Locator found at the following URL: RFCs RFC RFC 2661 Title Layer Two Tunneling Protocol (L2TP) Technical Assistance Description The Cisco Support website provides extensive online resources, including documentation and tools for troubleshooting and resolving technical issues with Cisco products and technologies. Access to most tools on the Cisco Support website requires a Cisco.com user ID and password. If you have a valid service contract but do not have a user ID or password, you can register on Cisco.com. Link 6
7 Command Reference Command Reference The following commands are introduced or modified in the feature or features documented in this module. For information about these commands, see the Cisco IOS VPDN Command Reference at For information about all Cisco IOS commands, use the Command Lookup Tool at or the Cisco IOS Master Command List, All Releases, at l2tp security ip address-check 7
8 l2tp security ip address-check l2tp security ip address-check To enable the checking of an IP address from an L2TP Network Server (LNS) before the setup of an L2TP tunnel from the L2TP Access Concentrator (LAC) to the LNS, use the l2tp security ip address-check command in VPDN-group configuration mode. To disable the checking of an IP address from an LNS before the setup of an L2TP tunnel from the LAC to the LNS, use the no form of this command. l2tp security ip address-check no l2tp security ip address-check Syntax Description This command has no arguments or keywords. Command Default The command is disabled. Command Modes VPDN-group configuration (config-vpdn) Command History Release 12.2(31)ZV 12.2(34)SB Modification This command was introduced. This command was integrated in Cisco IOS Release 12.2SB. Usage Guidelines Use the l2tp security ip address-check command to enable or disable the matching, prior to an L2TP tunnel setup of an incoming transport IP address from a LNS against the output IP address of the LNS by the LAC. Once enabled, the LAC inspects, prior to establishing an L2TP tunnel if the IP addresses contained in the Start Control Connection Reply (SCCRP) and Start Control Connection Request (SCCRQ) messages, are identical. If these IP addresses do not match, an L2TP tunnel is not established. You can use the debug vpdn 12x-error command in conjunction with the l2tp security ip address-check command to display informational messages on each control packet dropped. Examples The following example shows how to enable the verification of an incoming transport IP address from an LNS against the output IP address of the LNS: Router> enable Router# configure terminal Router(config)# vpdn enable Router(config)# vpdn-group example Router(config-vpdn)# l2tp security ip address-check Related Commands Command debug vpdn 12x-error Description Displays a message for each control packet dropped. 8
9 Feature Information for Feature Information for Table 1 lists the release history for this feature. Not all commands may be available in your Cisco IOS software release. For release information about a specific command, see the command reference documentation. Use Cisco Feature Navigator to find information about platform support and software image support. Cisco Feature Navigator enables you to determine which Cisco IOS and Catalyst OS software images support a specific software release, feature set, or platform. To access Cisco Feature Navigator, go to An account on Cisco.com is not required. Note Table 1 lists only the Cisco IOS software release that introduced support for a given feature in a given Cisco IOS software release train. Unless noted otherwise, subsequent releases of that Cisco IOS software release train also support that feature. Table 1 Feature Information for LNS Address Checking Feature Name Releases Feature Information 12.2(34)SB 12.2(31)ZV Allows an L2TP Access Concentrator (LAC), receiving data from a L2TP Network Server (LNS), to check the IP address of the LNS prior to establishing an L2TP tunnel. The following command was introduced by this feature: l2tp security ip address-check. Modified LNS Dead-Cache Handling VPDN Extended Failover 12.2(34)SB 12.2(31)ZV 12.2(34)SB 12.2(31)ZV Displays and clears (restarts) any LNS entry in a dead-cache (DOWN) state. The following commands were introduced by this feature: clear vpdn dead-cache and show vpdn dead-cache. The following commands were modified by this feature: snmp-server enable traps and vpdn logging. Enables a failover with an LNS, if the LNS receives a valid L2TP CDN or stopcnn message before the LNS establishes a session. CCDE, CCVP, Cisco Eos, Cisco StadiumVision, the Cisco logo, DCE, and Welcome to the Human Network are trademarks; Changing the Way We Work, Live, Play, and Learn is a service mark; and Access Registrar, Aironet, AsyncOS, Bringing the Meeting To You, Catalyst, CCDA, CCDP, CCIE, CCIP, CCNA, CCNP, CCSP, Cisco, the Cisco Certified Internetwork Expert logo, Cisco IOS, Cisco Press, Cisco Systems, Cisco Systems Capital, the Cisco Systems logo, Cisco Unity, Collaboration Without Limitation, Enterprise/Solver, EtherChannel, EtherFast, EtherSwitch, Event Center, Fast Step, Follow Me Browsing, FormShare, GigaDrive, HomeLink, Internet Quotient, IOS, iphone, IP/TV, iq Expertise, the iq logo, iq Net Readiness Scorecard, iquick Study, IronPort, the IronPort logo, LightStream, Linksys, MediaTone, MeetingPlace, MGX, Networkers, Networking Academy, Network Registrar, PCNow, PIX, PowerPanels, ProConnect, ScriptShare, SenderBase, SMARTnet, Spectrum Expert, StackWise, The Fastest Way to Increase Your Internet Quotient, TransPath, WebEx, and the WebEx logo are registered trademarks of Cisco Systems, Inc. and/or its affiliates in the United States and certain other countries. All other trademarks mentioned in this document or Website are the property of their respective owners. The use of the word partner does not imply a partnership relationship between Cisco and any other company. (0801R) Any Internet Protocol (IP) addresses used in this document are not intended to be actual addresses. Any examples, command display output, and figures included in the document are shown for illustrative purposes only. Any use of actual IP addresses in illustrative content is unintentional and coincidental Cisco Systems, Inc. All rights reserved. 9
10 Feature Information for 10
Modified LNS Dead-Cache Handling
First Published: Sept. 30, 2007 Last Updated: Aug. 28, 2008 The feature allows you to display and clear (restart) any Layer 2 Tunnel Protocol (L2TP) Network Server (LNS) entry in a dead-cache (DOWN) state.
More informationConfiguring an Intermediate IP Multicast Helper Between Broadcast-Only Networks
Configuring an Intermediate IP Multicast Helper Between Broadcast-Only Networks First Published: February 11, 2008 Last Updated: February 11, 2008 When a multicast-capable internetwork is between two subnets
More informationContextual Configuration Diff Utility
Contextual Configuration Diff Utility First Published: November 2003 Last Updated: May 2, 2008 The Contextual Configuration Diff Utility feature provides the ability to perform a line-by-line comparison
More informationVPDN Group Session Limiting
VPDN Group Session Limiting Feature History Release 12.2(1)DX 12.2(2)DD 12.2(4)B 12.2(27)SB Modification This feature was introduced. This feature was integrated into Cisco IOS Release 12.2(2)DD. This
More informationPPPoE Session Recovery After Reload
If the PPP keepalive mechanism is disabled on a customer premises equipment (CPE) device, a PPP over Ethernet (PPPoE) session will hang indefinitely after an aggregation device reload. The PPPoE Session
More informationBGP Enforce the First Autonomous System Path
BGP Enforce the First Autonomous System Path The BGP Enforce the First Autonomous System Path feature is used to configure a Border Gateway Protocol (BGP) routing process to discard updates received from
More informationRADIUS Tunnel Preference for Load Balancing and Fail-Over
RADIUS Tunnel Preference for Load Balancing and Fail-Over Feature History for RADIUS Tunnel Preference for Load Balancing and Fail-Over Release Modification 12.2(4)T This feature was introduced. 12.2(11)T
More informationRADIUS NAS-IP-Address Attribute Configurability
RADIUS NAS-IP-Address Attribute The RADIUS NAS-IP-Address Attribute feature allows you to configure an arbitrary IP address to be used as RADIUS attribute 4, NAS-IP-Address, without changing the source
More informationLogging to Local Nonvolatile Storage (ATA Disk)
Logging to Local Nonvolatile Storage (ATA Disk) First Published: August 26, 2003 Last Updated: June 28, 2007 The Logging to Local Nonvolatile Storage (ATA Disk) feature enables system logging messages
More informationThis feature was introduced. This feature was integrated into Cisco IOS Release 12.2(27)SBA.
PPPoE Relay The PPPoE Relay feature enables an L2TP access concentrator (LAC) to relay active discovery and service selection functionality for PPP over Ethernet (PPPoE), over a Layer 2 Tunneling Protocol
More informationExclusive Configuration Change Access and Access Session Locking
Exclusive Configuration Change Access and Access Session Locking First Published: February 28, 2005 Last Updated: May 4, 2009 Exclusive Configuration Change Access (also called the Configuration Lock feature)
More informationCisco Software Licensing Information for Cisco Unified Communications 500 Series for Small Business
Cisco Software Licensing Information for Cisco Unified Communications 500 Series for Small Business Feb. 06, 2008, This document describes the Cisco Software Licensing (CSL) information for the Cisco Unified
More informationIS-IS Incremental SPF
IS-IS Incremental SPF Integrated Intermediate System-to-Intermediate System (IS-IS) can be configured to use an incremental SPF algorithm for calculating the shortest path first routes. Incremental SPF
More informationOSPF Incremental SPF
OSPF Incremental SPF The Open Shortest Path First (OSPF) protocol can be configured to use an incremental SPF algorithm for calculating the shortest path first routes. Incremental SPF is more efficient
More informationDHCP Lease Limit per ATM/RBE Unnumbered Interface
DHCP Lease Limit per ATM/RBE Unnumbered Interface The DHCP Lease Limit per ATM/RBE Unnumbered Interface feature limits the number of Dynamic Host Configuration Protocol (DHCP) leases per subinterface offered
More informationPer IP Subscriber DHCP Triggered RADIUS Accounting
Per IP Subscriber DHCP Triggered RADIUS First Published: February 19, 2007 Last Updated: February 19, 2007 The Per IP Subscriber DHCP Triggered RADIUS feature enables system administrators to track IP
More informationRADIUS Logical Line ID
RADIUS Logical Line ID Feature History for RADIUS Logical Line ID Release Modification 12.2(13)T This feature was introduced. 12.2(15)B This feature was integrated into Cisco IOS Release 12.2(15)B. 12.2(27)SBA
More informationPPPoE Session Limits per NAS Port
PPPoE Session Limits per NAS Port The PPPoE Session Limit per NAS Port feature enables you to limit the number of PPP over Ethernet (PPPoE) sessions on a specific permanent virtual circuit (PVC) or VLAN
More informationSSG Service Profile Caching
SSG Service Profile Caching The SSG Service Profile Caching feature enhances the authentication process for Service Selection Gateway services by allowing users to authenticate a service using the service
More informationSuppress BGP Advertisement for Inactive Routes
Suppress BGP Advertisement for Inactive Routes The Suppress BGP Advertisements for Inactive Routes features allows you to configure the suppression of advertisements for routes that are not installed in
More informationPPPoE Service Selection
PPPoE Service Selection The PPPoE Service Selection feature uses service tags to enable a PPP over Ethernet (PPPoE) server to offer PPPoE clients a selection of services during call setup. The customer
More informationGeneric Routing Encapsulation Tunnel IP Source and Destination VRF Membership
Generic Routing Encapsulation Tunnel IP Source and Destination VRF Membership Last Updated: April, 2007 The feature allows you to configure the source and destination of a tunnel to belong to any virtual
More informationATM VP Average Traffic Rate
First Published: April, 2008 This document describes the feature. Finding Feature Information in This Module Your Cisco IOS software release may not support all of the features documented in this module.
More informationPPPoE Client DDR Idle Timer
The feature supports the dial-on-demand routing (DDR) interesting traffic control list functionality of the dialer interface with a PPP over Ethernet (PPPoE) client, but also keeps original functionality
More informationIP SLAs Random Scheduler
First Published: February 27, 2007 Last Updated: February 27, 2007 The feature is an enhancement to the existing IP SLAs Multiple Operation Scheduling feature. The IP SLAs Multiple Operation Scheduling
More informationPPP/MLP MRRU Negotiation Configuration
PPP/MLP MRRU Negotiation Configuration The PPP/MLP MRRU Negotiation Configuration feature allows a router to send and receive frames over Multilink PPP (MLP) bundles that are larger than the default Maximum
More informationMaintenance Checklists for Microsoft Exchange on a Cisco Unity System
Maintenance Checklists for Microsoft Exchange on a Cisco Unity System Published January 13, 2009 This document contains checklists for tasks required to ensure that the Cisco Unity system and Microsoft
More informationPPPoE Agent Remote-ID and DSL Line Characteristics Enhancement
PPPoE Agent Remote-ID and DSL Line Characteristics Enhancement First Published: December 5, 2006 Revised: August 29, 2008 The PPPoE Agent Remote-ID and DSL Line Characteristics Enhancement feature provides
More informationAutosense of MUX/SNAP Encapsulation and PPPoA/PPPoE on ATM PVCs
Autosense of MUX/SNAP Encapsulation and PPPoA/PPPoE on ATM PVCs Feature History for Autosense of MUX/SNAP Encapsulation and PPPoA/PPPoE on ATM PVCs Release Modification 12.2(15)B This feature was introduced.
More informationISSU and SSO DHCP High Availability Features
ISSU and SSO DHCP High Availability Features First Published: December 4, 2006 Last Updated: February 19, 2007 Cisco IOS Release 12.2(31)SB2 introduces the following series of Dynamic Host Configuration
More informationDHCP Option 82 Support for Routed Bridge Encapsulation
DHCP Option 82 Support for Routed Bridge Encapsulation Feature History for the Feature Release Modification 12.2(2)T This feature was introduced. 12.2(27)SBA This feature was integrated into Cisco IOS
More informationMPLS MTU Command Changes
MPLS MTU Command Changes First Published: August 11, 2004 Last Updated: June 19, 2007 This document explains the the behavior of the mpls mtu command in Cisco IOS Release 12.2(27)SBC, 12.2(33)SRA, 12.4(11)T,
More informationConfiguring Multiple Basic Service Set Identifiers and Microsoft WPS IE SSIDL
Configuring Multiple Basic Service Set Identifiers and Microsoft WPS IE SSIDL This module describes how to configure multiple basic service set identifiers (BSSID) on a Cisco 800, 1800, 2800, or 3800 series
More informationUsing Microsoft Outlook to Schedule and Join Cisco Unified MeetingPlace Express Meetings
Using Microsoft Outlook to Schedule and Join Cisco Unified MeetingPlace Express Meetings Cisco Unified MeetingPlace Express Release 2.x contains a plug-in that allows you to schedule, attend, and manage
More informationConnecting Cisco DSU/CSU High-Speed WAN Interface Cards
Connecting Cisco DSU/CSU High-Speed WAN Interface Cards Revised: April 15, 2008, Overview This document describes Cisco serial and DSU/CSU high-speed WAN interface cards (HWICs) and how to connect them
More informationConfiguration Replace and Configuration Rollback
Configuration Replace and Configuration Rollback First Published: March 3, 2004 Last Updated: May 4, 2009 The Configuration Replace and Configuration Rollback feature provides the capability to replace
More informationIMA Dynamic Bandwidth
IMA Dynamic Bandwidth The IMA Dynamic Bandwidth feature introduces the ability to configure Cisco IOS software to automatically manage changes in the total bandwidth of an Asynchronous Transfer Mode (ATM)
More informationExtended NAS-Port-Type and NAS-Port Support
Extended NAS-Port-Type and NAS-Port Support First Published: March 20, 2006 Last Updated: March 20, 2006 RADIUS attributes are used to define specific authentication, authorization, and accounting (AAA)
More informationOSPF RFC 3623 Graceful Restart Helper Mode
First Published: February 27, 2006 Last Updated: February 27, 2006 This document focuses on non-stop forwarding (NSF) helper mode for OSPFv2 in Cisco IOS software, using IETF standardized graceful restart
More informationFrame Relay Conditional Debug Support
Frame Relay Conditional Debug Support First Published: May 06, 2004 Last Updated: June 19, 2006 The Frame Relay Conditional Debug Support feature introduces a filter to limit the number of Frame Relay
More informationQoS Child Service Policy for Priority Class
First Published: November, 2006 The feature allows you to configure a child service policy with nonqueuing-based features and attach the child policy to a class. History of Release 12.2(31)SB2 Modification
More informationDHCP Relay MPLS VPN Support
DHCP Relay MPLS VPN Support Feature History Release 12.2(4)B 12.2(8)T 12.2(13)T 12.2(27)SBA Modification This feature was introduced. This feature was integrated into Cisco IOS Release 12.2(8)T The feature
More informationCisco Smart Business Communications System Teleworker Set Up
Cisco Smart Business Communications System Teleworker Set Up The Cisco Smart Business Communications System is a unified communications solution for small businesses that provides voice, data, video, security,
More informationConnecting Cisco WLAN Controller Enhanced Network Modules to the Network
Connecting Cisco WLAN Controller Enhanced Network Modules to the Network Revised: May 1, 2008, OL-16632-01 This guide describes how to connect Cisco wireless LAN (WLAN) controller enhanced network modules
More informationCisco Unity Express Voic System User s Guide
Cisco Unity Express Voice-Mail System User s Guide Release 2.1 This guide provides information about some advanced voice-mail features of your Cisco Unity Express voice-mail system. Use this guide together
More informationRelease Notes for Cisco ONS MA Release 9.01
Release Notes for Cisco ONS 15310-MA Release 9.01 Revised: July 2009, Release notes contain the new features and enhancements for the Cisco ONS 15310-MA platform. For detailed information regarding features,
More informationInstalling IEC Rack Mounting Brackets on the ONS SDH Shelf Assembly
Installing IEC Rack Mounting Brackets on the ONS 15454 SDH Shelf Assembly Product Name: 15454E-19IEC-KIT= This document provides installation procedures for installing mounting brackets on the ONS 15454
More informationMaintenance Checklists for Active Directory on a Cisco Unity System with Exchange as the Message Store
Maintenance Checklists for Active Directory on a Cisco Unity System with Exchange as the Message Store Published January 13, 2009 This document contains checklists for tasks required to ensure that the
More informationCisco Virtual Office End User Instructions for Cisco 1811 Router Set Up at Home or Small Office
Cisco Virtual Office End User Instructions for Cisco 1811 Router Set Up at Home or Small Office Introduction This document describes the end-user instructions to deploy the Cisco Virtual Office (CVO) for
More informationConfiguring ISG VRF Transfer (Cisco IOS Release 12.2(28)SB)
Configuring ISG VRF Transfer (Cisco IOS Release 12.2(28)SB) First Published: March 20, 2006 Last Updated: June 25, 2009 Intelligent Services Gateway (ISG) is a Cisco IOS software feature set that provides
More informationProtocol-Independent MAC ACL Filtering on the Cisco Series Internet Router
Protocol-Independent MAC ACL Filtering on the Cisco 12000 Series Internet Router Part Number OL-142368-01 (Rev A0), January 19, 2006 The Protocol-Independent MAC ACL Filtering feature allows you to create
More informationConfiguring Route Maps to Control the Distribution of MPLS Labels Between Routers in an MPLS VPN
Configuring Route Maps to Control the Distribution of MPLS Labels Between Routers in an MPLS VPN Route maps enable you to specify which routes are distributed with Multiprotocol Label Switching (MPLS)
More informationTroubleshooting ISA with Session Monitoring and Distributed Conditional Debugging
Troubleshooting ISA with Session Monitoring and Distributed Conditional Debugging The Intelligent Service Architecture (ISA) is a core set of Cisco IOS components that provide a structured framework in
More informationThis feature was introduced. This feature was integrated into Cisco IOS Release 12.2(27)SBA.
The feature allows an L2TP network server (LNS) participating in Stack Group Bidding Protocol (SGBP) to send a redirect message to the L2TP access concentrator (LAC) if another LNS wins the bid. The LAC
More informationDHCP ODAP Server Support
DHCP ODAP Server Support The DHCP ODAP Server Support feature introduces the capability to configure a Cisco IOS Dynamic Host Configuration Protocol (DHCP) server (or router) as a subnet allocation server.
More informationRelease Notes for Cisco ONS SDH Release 9.01
Release Notes for Cisco ONS 15454 SDH Release 9.01 Revised: July 2009, Release notes contain the new features and enhancements for the Cisco ONS 15454 SDH platform. For detailed information regarding features,
More informationCisco Video Surveillance Virtual Matrix Client Configuration Guide
Cisco Video Surveillance Virtual Matrix Client Configuration Guide Release 6.2 Americas Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tel: 408
More informationProtected URL Database
Revised: October, 2008, Contents Managing URL Blacklists Using the SCE 1 Configuring User Authorization 2 How to specify a new owner of the sce-url-database 2 How to configure the sce-url-database write-protection
More informationRoute Processor Redundancy Plus (RPR+)
Route Processor Redundancy (RPR) provides an alternative to the High System Availability (HSA) feature. HSA enables a system to reset and use a standby Route Switch Processor (RSP) if the active RSP fails.
More informationIP SLAs Proactive Threshold Monitoring
IP SLAs Proactive Threshold Monitoring First Published: May 2, 2005 Last Updated: July 18, 2008 This document describes the proactive monitoring capabilities of Cisco IOS IP Service Level Agreements (SLAs)
More informationPPPoE Agent Remote-ID and DSL Line Characteristics Enhancement
PPPoE Agent Remote-ID and DSL Line Characteristics Enhancement First Published: December 4, 2006 Last Updated: October 2, 2009 The PPPoE Agent Remote-ID and DSL Line Characteristics Enhancement feature
More informationUsing Application Level Gateways with NAT
Using Application Level Gateways with NAT Network Address Translation (NAT) performs translation service on any Transmission Control Protocol/User Datagram Protocol (TCP/UDP) traffic that does not carry
More informationBehavioral Change for Buffer Recarving
Part Number: OL-18534-01 First Published: December 8, 2008 Table 1 Feature History Cisco IOS Release 12.0(32.03)S03, 12.0(32)S08, 12.0(32)SY04 12.0(32)SY07, 12.0(32)S06c 12.0(32)SY07, 12.0(32)S06c, and
More informationBECN and FECN Marking for Frame Relay over MPLS
BECN and FECN Marking for Frame Relay over MPLS First Published: August 26, 2003 Last Updated: February, 2006 This feature explains how to configure backward explicit congestion notification (BECN) and
More informationConfiguring Token Ring LAN Emulation for Multiprotocol over ATM
Configuring Token Ring LAN Emulation for Multiprotocol over ATM This chapter describes the required and optional tasks for configuring the MPOA for Token Ring Networks feature. For a complete description
More informationCisco BTS Softswitch Site Preparation and Network Communications Requirements, Release 6.0. Safety and Compliance
Cisco BTS 10200 Softswitch Site Preparation and Network Communications Requirements, Release 6.0.x This document explains the requirements for site preparation and network communications. Use this document
More informationConfiguring the Cisco IOS DHCP Relay Agent
Configuring the Cisco IOS DHCP Relay Agent Cisco routers running Cisco IOS software include Dynamic Host Configuration Protocol (DHCP) server and relay agent software. A DHCP relay agent is any host that
More informationConnecting Cisco 4-Port FXS/DID Voice Interface Cards
Connecting Cisco 4-Port FXS/DID Voice Interface Cards Revised: April 15, 2008, OL-15695-01 Overview This document provides an overview of Cisco interface cards and explains how to install the Cisco 4-port
More informationCisco Registered Envelope Recipient Guide
September 8, 2008 Americas Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tel: 408 526-4000 800 553-NETS (6387) Fax: 408 527-0883 Text Part Number:
More informationCisco Voice Applications OID MIB
Cisco Voice Applications OID MIB The Cisco Voice Applications OID MIB (ciscovoiceapplicationsoidmib) defines the object identifiers (OIDs) that are assigned to various Cisco voice applications, such as
More informationConfiguring LDAP. Finding Feature Information. Contents
Configuring LDAP First Published: March 19, 2010 Last Updated: March 19, 2010 Lightweight Directory Access Protocol (LDAP) is integrated into Cisco IOS software as a AAA protocol alongside the existing
More informationRelease Notes for Catalyst 6500 Series and Cisco 7600 Series Internet Router CEF720 Module ROMMON Software
Release Notes for Catalyst 6500 Series and Cisco 7600 Series Internet Router CEF720 Module ROMMON Software Current Release: 12.2(18r)S1 May 28, 2004 This publication describes how to upgrade the ROMMON
More informationCisco Aironet Directional Antenna (AIR-ANT-SE-WiFi-D)
Cisco Aironet Directional Antenna (AIR-ANT-SE-WiFi-D) This document describes the Cisco Directional Antenna (AIR-ANT-SE-WiFi-D) and provides instructions for mounting it. The antenna operates in the 2.4-GHz
More informationConfiguring ISA Accounting
Configuring ISA Accounting The Intelligent Service Architecture (ISA) is a core set of Cisco IOS components that provide a structured framework in which edge access devices can deliver flexible and scalable
More informationCisco Report Server Readme
Cisco Report Server Readme For Cisco Network Planning Solution 2.1, Cisco Network Planning Solution Service Provider 2.1, and Cisco Application Analysis Solution 2.1 Release 2.1 Americas Headquarters Cisco
More informationRAID Controller Firmware Upgrade Instructions for the Cisco WAE-7341, 7371, and 674
RAID Controller Firmware Upgrade Instructions for the Cisco WAE-7341, 7371, and 674 Revised: September 15, 2008, This document describes how to upgrade the RAID controller firmware in a Cisco Wide Area
More informationWireless LAN Error Messages
Wireless LAN s This module lists wireless LAN (WLAN) error messages for the Cisco 800, 1800, 2800, and 3800 series integrated services routers, hereafter referred to as an access point or AP. Module History
More informationChunk Validation During Scheduler Heapcheck
Chunk Validation During Scheduler Heapcheck First Published: May 16, 2006 Last Updated: May 16, 2006 The Chunk Validation During Scheduler Heapcheck feature enables you to check the memory chunk structures
More informationApplication Firewall Instant Message Traffic Enforcement
Application Firewall Instant Message Traffic Enforcement The Application Firewall Instant Message Traffic Enforcement feature enables users to define and enforce a policy that specifies which instant messenger
More informationLAN Emulation Overview
LAN Emulation Overview This overview chapter gives a high-level description of LAN Emulation (LANE). Procedures for configuring LANE are provided in the following chapters in this publication: Configuring
More informationThe CVD program consists of systems and solutions designed, tested, and documented to facilitate faster, more reliable, and more predictable customer
The CVD program consists of systems and solutions designed, tested, and documented to facilitate faster, more reliable, and more predictable customer deployments. For more information, visit: http://www.cisco.com/go/designzone.
More informationCisco WAAS Mobile User Guide
Cisco WAAS Mobile User Guide Software Version 3.5 April 2010 Americas Headquarters Cisco Systems, Inc. 170 West Tasman Drive San Jose, CA 95134-1706 USA http://www.cisco.com Tel: 408 526-4000 800 553-NETS
More informationMaintenance Checklists for Cisco Unity VPIM Networking (with Microsoft Exchange)
Maintenance Checklists for Cisco Unity VPIM Networking (with Microsoft Exchange) Published December 10, 2007 This document contains checklists for tasks required to ensure that Cisco Unity VPIM Networking
More informationRelease Notes for Cisco Video Surveillance Manager 4.1/6.1
Release Notes for Cisco Video Surveillance Manager 4.1/6.1 February, 2009 These release notes provide important information for the following Cisco Video Surveillance Manager (Cisco VSM) products: Cisco
More informationCisco BTS Softswitch Turkish ISUP Feature Module
Cisco BTS 10200 Softswitch Turkish ISUP Feature Module Revised: July 31, 2008 This document describes the Turkish ISUP feature for of the Cisco BTS 10200 Softswitch and explains how to use this feature.
More informationWireless LAN Overview
A wireless LAN (WLAN) is, in some sense, nothing but a radio with different frequencies and characteristics acting as a medium for networks. The Cisco 800, 1800, 2800, and 3800 series integrated services
More informationMPLS VPN: VRF Selection Based on Source IP Address
MPLS VPN: VRF Selection Based on Source IP Address The VPN Routing and Forwarding (VRF) Selection feature allows a specified interface on a provider edge (PE) router to route packets to different Virtual
More informationCisco Unified Web and Interaction Manager Browser Settings Guide
Cisco Unified Web and E-Mail Interaction Manager Browser Settings Guide For Unified Contact Center Enterprise and Hosted and Unified ICM Release 4.2(5) October 2008 Americas Headquarters Cisco Systems,
More information7825-I4, 7828-I4 Hard Disk Firmware Update
7825-I4, 7828-I4 Hard Disk Firmware Update October 6, 2010 Document Revision 2 A firmware solution for a hard disk drive issue on the MCS 7825-I4, and 7828-I4 models Contents This document discuss the
More informationIP Event Dampening. Feature History for the IP Event Dampening feature
IP Event Dampening The IP Event Dampening feature introduces a configurable exponential decay mechanism to suppress the effects of excessive interface flapping events on routing protocols and routing tables
More informationConfiguring MPLS Multi-VRF (VRF-lite)
Configuring MPLS Multi-VRF (VRF-lite) MPLS Multi-VRF provides the ability to configure and maintain more than one instance of a routing and forwarding table within the same CE router. History of the MPLS
More informationWireless-G IP Phone QUICK INSTALLATION GUIDE. Package Contents
QUICK INSTALLATION GUIDE Wireless-G IP Phone Model: WIP310 Package Contents Handset Phone Charger Power Adapter Li-ion Battery USB Cable Quick Installation Guide Read Me First Card 1 Installation A. Insert
More informationCisco 806, Cisco 820 Series, Cisco 830 Series, SOHO 70 Series and SOHO 90 Series Routers ROM Monitor Download Procedures
Cisco 806, Cisco 820 Series, Cisco 830 Series, SOHO 70 Series and SOHO 90 Series Routers ROM Monitor Download Procedures November 18, 2004 This document contains procedures for downloading ROM Monitor
More informationInstalling the Cisco ONS Deep Door Kit
Product Number: 15454-DOOR-KIT This document describes how to install the deep door kit for the Cisco ONS 15454. A door is pre-installed on the ONS 15454 but the 15454-DOOR-KIT provides a deeper door and
More informationRelease Notes for Cisco Small Business Pro ESW 500 Series Switches
Release Notes for Cisco Small Business Pro ESW 500 Series Switches October, 2009 These Release Notes describe the recommended practices and known issues that apply to the ESW 500 Series of Switches for
More informationCisco Unified Web and Interaction Manager Browser Settings Guide
Cisco Unified Web and E-Mail Interaction Manager Browser Settings Guide For Unified Contact Center Enterprise and Hosted and Unified ICM Release 4.3(1) September 2009 Americas Headquarters Cisco Systems,
More informationCisco Aironet Very Short 5-GHz Omnidirectional Antenna (AIR-ANT5135SDW-R)
Cisco Aironet Very Short 5-GHz Omnidirectional Antenna (AIR-ANT5135SDW-R) This document outlines the specifications for the Cisco Aironet Very Short 5-GHz Omnidirectional Antenna (AIR-ANT5135SDW-R) and
More informationPacket Classification Using the Frame Relay DLCI Number
Packet Classification Using the Frame Relay DLCI Number The Packet Classification Using the Frame Relay DLCI Number feature allows customers to match and classify traffic on the basis of one or more Frame
More informationLow Latency Queueing with Priority Percentage Support
Low Latency Queueing with Priority Percentage Support First Published: 12.2(2)T Last Updated: February 28, 2006 This feature allows you to configure bandwidth as a percentage within low latency queueing
More informationPPPoE on ATM. Finding Feature Information. Contents
PPPoE on ATM First Published: March 27, 2000 Last Updated: November 20, 2009 The PPPoE on ATM feature provides the ability to connect a netwk of hosts over a simple bridging-access device to a remote access
More information