vlandatabase

Members
  • Content count

    3
  • Joined

  • Last visited

Community Reputation

0 Neutral

About vlandatabase

  • Rank
    Newbie
  1. So from the original question... is it possible to have two gre tunnels using same source but each tunnel has it's own destination?? My question is is it possible to have two gre tunnels using different source (RtrB =2xcircuit) but each tunnel has it's the same destination (RtrA = 1xcircuit) ??
  2. Hi, I would like to ask help for this setup. The scenario is like this. RtrA = 1xcircuit (f0/0) 163.81.217.138 RtrB=2xcircuit (f0/0 163.81.217.122), (f0/1 159.42.205.242) This is using GRE with IPSEC. From RtrB, currently there is a tunnel1 sourcing from 163.81.217.122 and the tunnel destination is 163.81.217.138 and this is working ok... Then we need to have a backup from RtrB. When I create a tunnel2 sourcing from 159.42.205.242 and the tunnel destination is the same as tunnel1 which is 163.81.217.138, it's not coming up. Is it possible for this design? RtrB - dual connection to RtrA but RtrA only have 1 connection to RtrB. Thank you
  3. Payo lang sir, nung ako ay nagccna, sa totoo lang kulang na kulang pa ang kaalaman ko... puro theory ako and less lab.... sa call center ako nagapply lol.... kapag makita ang cv mo na CISCO CERTIFIED NETWORK ASSOCIATE? naku! big points kana. nagaply ako nun sa callcenter as technical support rep... imagine tsr? ur a ccna? parang malayo diba? technical support not on data support but software support, pc support na ang cust ay americano. alam mo ba sir, ako sobrang tanga ko sa english, nagtataka ako kung bakit nung nagaply ako eh, nakapasok ako. siguro sa certified? or it graduate? sigro? then after that call center, another call center na ang nalipatan ko within one year, and nagapply ako sa sykes. sykes/gilmore at&T ang masasabi ko, ang napakalaking tulong para mapraktis ko ang ccna ko, and then,,, my tumatawag na and so on... offering a good compensation... iba sa pakiramdam.... then... napunta na ako sa magandang company na mas lalo ko pa napraktis ang ccna. wag ka lang pumirmi sa ccna kasi sobrang lawak ng cisco, kaya - ang best friend ko ngayon eh , DYNAMIPS... sobrang tulong sakin to... dami ko napagaralan. kaya sir, wag mawalan ng pagasa, kasi ako nun kapag di ako matangap sa isang company, halos umiyak na ako. hahaha... sige sir, good luck......................... Sir gusto ko rin mag apply dyan sa sykes, kaya lang di naman ako magaling sa english. Kailangan ba dapat magaling talaga sa english dyan at puro calls ba lagi dyan? siguro sir basta naiintindhan ka ng amerkano ok na un. wag mo intindhin ang calls, call center ? yap call center.
  4. Payo lang sir, nung ako ay nagccna, sa totoo lang kulang na kulang pa ang kaalaman ko... puro theory ako and less lab.... sa call center ako nagapply lol.... kapag makita ang cv mo na CISCO CERTIFIED NETWORK ASSOCIATE? naku! big points kana. nagaply ako nun sa callcenter as technical support rep... imagine tsr? ur a ccna? parang malayo diba? technical support not on data support but software support, pc support na ang cust ay americano. alam mo ba sir, ako sobrang tanga ko sa english, nagtataka ako kung bakit nung nagaply ako eh, nakapasok ako. siguro sa certified? or it graduate? sigro? then after that call center, another call center na ang nalipatan ko within one year, and nagapply ako sa sykes. sykes/gilmore at&T ang masasabi ko, ang napakalaking tulong para mapraktis ko ang ccna ko, and then,,, my tumatawag na and so on... offering a good compensation... iba sa pakiramdam.... then... napunta na ako sa magandang company na mas lalo ko pa napraktis ang ccna. wag ka lang pumirmi sa ccna kasi sobrang lawak ng cisco, kaya - ang best friend ko ngayon eh , DYNAMIPS... sobrang tulong sakin to... dami ko napagaralan. kaya sir, wag mawalan ng pagasa, kasi ako nun kapag di ako matangap sa isang company, halos umiyak na ako. hahaha... sige sir, good luck.........................
  5. musta padi?
  6. sir estong ano po ang pwedeng gawin kapag ganun? i know different public IP from 2 ISP. pwede sample config dyan? para makita at mapagaralan natin. dun sa tracking object nga pala just use ios ver 12.4
  7. sir estong ano po ang pwedeng gawin kapag ganun? i know different public IP from 2 ISP.
  8. @vlandatabase, Right now I have only one active link to our ISP (sister company), we have redundancy plan na dapat di mawawalan ng Internet connection ang services namin so we need to have another ISP as backup however etong backup ISP is via Satellite. Right now I have only 3825 Router connected to my core SW *3750, I haven't finalize pa kung I need additional router or not co'z we are just in planning stage of that redundant link. Napapansin ko mukhang interesting ang scenario na napost ko... maraming replies.. thanks a lot guys. to avoid SPOF, single point of failure, you use 2 different router, 2 interface connecting to diff ISPs on each routers. again, i don't agree na magkakaron ng "load-balancing" sa ganon scenario but "load-sharing". yon sinasabi mong "load-balancing" is to have the 2 exit interface utilized going to the internet? again, it will have only one exit to the internet and the other exit interface will be used as redundant should the other (primary) exit interface shuts down. yon "load-sharing" naman eh pwede isang exit interface (primary) all outgoing and the other to be used as for incoming traffic. Or, half of your network configured to use the primary exit interface and the other half of your network use the other exit interface. sir rey and sir estong, nagkakaroon tayo dito ng topic na pinagkakabalahan. hehehe,,, what i suggest on this setup, to avoid spof, thats according to rey to use another router which is good! but you can do this without a second router. load balancing is possible? yes can use a dual isp without BGP? yes in one router, you should have 2 serial interface, right? s0/0 and s0/1 for example.. *first, you need to enable ip cef in global *second, you need to establish SLA monitors for use in tracking objects... *third, Configure Tracking objects referencing IP SLA monitor’s *fourth, Configure Interfaces with NAT so sa NAT natin, one ip nat inside to the fasthe right? two ip nat ouside to the 2 serial interface? right? since we have 2 ISP? *fifth, Configure gateway of last resort with tracking objects.... like these.... ip route 0.0.0.0 0.0.0.0 12.34.45.1 track 101 ip route 0.0.0.0 0.0.0.0 23.45.67.1 track 102 so pansin natin na ang AD is one for both default route right? *sixth, Configure NAT statements for most outbound traffic ip nat inside source route-map ISP1 interface s0/0 overload ip nat inside source route-map ISP2 interface s0/1 overload *configure access-list to allow your private network to get to the internet access-list 10 permit 192.168.1.0 0.0.0.255 *Configure route maps for reference in NAT statements route-map ISP2 permit 10 match ip address 10 ---> matching the acl 10 going to ISP 2 match interface s0/1 ! route-map ISP1 permit 10 match ip address 10 ---> matching the acl 10 going to ISP 1 match interface s0/0 ! ################ both exit links must be of equal cost (bandwidth) for this to make sense. otherwise you will be routed over the slower link. If you need to have a primary, and secondary only upon failure of the primary, then adding a higher AD to one of the default routes is the solution. Mga cisco hardcore dyan, eto lang po ang idea ko, marami pang way's para d2. pacencia na mga sir. Sana kahit papano nakatulong.
  9. XP, panu ba ung setup? ung switch mo connected to 2routers? or just 1 router? having 2 isp's?
  10. @xp ang pinakasimple na nakikita ko eh, static route to both ISP at secondary interface yon isa. so pag nag down ang primary saka palang papalo yon secondary interface. di ko pa natry pero i think possible sya. maraming way bagsik. pwede ang HSRP, VRRP and GLBP. @XP the same bandwidth ba sila? It would be best to apply a static route to both ISP. Pero yung secondary mo must be a floating static route. Kasi kung nde magiging active-active labas nyan doing load balancing(same bandwidth)...Since active-passive gus2 mo you need to set a floating static route to you secondary gateway floating static route means just adjusting the administrative distance of you secondary exit interface. so it will be on standby while the first exit interface is online. Pero kung may bandwidth mismatch no need to set it kasi automatic na best path yung may higher bandwidth. Kung isa lng gateway router mo HSRP, GLBP will not be an option since you dont really have redundant router in place. I assume na 2 gigabit interface connected to 2 routers going to 2 different ISP's.... well ung floating static route na yan pwede talaga yan by changing the AD of the other static route from 2-255... since default is one. pero kapag un ang gagawin, wala ng load balancing dun, correct me if im wrong.
  11. send mo sa vlandatabase@yahoo.com
  12. Sa tingin ko, ang solusyon diyan eh GLBP confguration. Hindi lang redundant ang feature kung di mayroon din sya automatic load sharing. I-track mo lang yung dalawang interface papuntang ISP at kung may bumagsak man, take kaagad yung isa. na simulate ko na to sa dynamips pero using routers instead sa switch. hope the link below helps. hxxp://www.ciscoblog.com/docstore/haipglbp.pdf If you have 2 ISP's you should use a bgp multihoming. GLBP I think you can use this if you have a 2 redundant links with 1 ISP. There is another way for a dual internet connections without BGP enabled on ISP. You need to establish 1. sla monitors for use in tracking objects 2. Configure tracking objects (referencing IP SLA monitor that you configure on step 1. 3. configure interfaces with NAT 4. Configure gateway of last resort with tracking objects 5. Configure NAT statements for most outbound traffic
  13. ##################################### hostname isdn2-2 ! username isdn2-3 password 0 cisco -------> host name of the remote router with same pass ! isdn switch-type basic-ni1 ------> you can put this in global or int bri0 interface ! interface BRI0 isdn switch-type basic-5ess ------> Note: AT&T basic rate switches (basic-5ess) do not require SPIDs. ip address 10.1.1.1 255.255.255.252 encapsulation ppp dialer string 96666600 dialer-group 1 isdn spid1 0146334600 4633460 isdn spid2 0146334610 4633461 ppp authentication chap ------> CHAP ! dialer-list 1 protocol ip permit ! ip route 0.0.0.0 0.0.0.0 10.1.1.2 ######################## hope this helps..
  14. baka makatulong... kung ang offer sa inyo sir eh 80-100K/month mag stay na lang sa pnas. if they offered you 150-175K or lets say 5k-6KS$ go. according to my source mga 40-50K gagastusin mo a month sa singapore. ang tax eh mababa but the cost of leaving is high. 3,500basic + OTpay ang offer sakin sir. tanggihan ko? go sir... makakaipon kana man nyan
  15. baka makatulong... kung ang offer sa inyo sir eh 80-100K/month mag stay na lang sa pnas. if they offered you 150-175K or lets say 5k-6KS$ go. according to my source mga 40-50K gagastusin mo a month sa singapore. ang tax eh mababa but the cost of leaving is high.