IRC Networks
Irc Logs Stats
Start date: 2007-09-27 02:48:27
Last update: 2008-10-24 20:19:38
Channels: 41
Logged Lines: 6230436
Size: 1822.62 MB
Powered by
Channel Info
Network: freenodeChannel: #cisco |
Search in www.irclog.org
Log from #cisco at freenode 2006-06-18
[00:16]<-- dvxn|syzzzyus xzs>http://www.bagdadsoftware.de")
[01:04]<vcul>I have these two routers connected to the same vlan yet show cdp neighbor detail from either router doesn't give out the details. But the switch does show. Also, L3 connectivity is fine so at least I can rule out L2 problems
[01:10]<bsdrgdjg|rwrd>is cdp enabled on all of em?
[01:11]<vwcd>tkup: so both routers are connected directly to each other?
[01:11]<vwcd>tkup: if not then they aren't cdp neighbors.
[01:13]<vcul>BSDaemon|away, the switch sees them and the routers see the switch so it's definitely enabled. It's the routers that can't see each other
[01:13]<vcul>twkm, through the switch while being on the same vlan
[01:13]<vcul>twkm, I see. so it has to be through cross over?
[01:13]<bsdrgdjg|rwrd>yes, the devices have to be directly connected.
[01:13]<vcul>ah that makes sense
[01:14]<vwcd>tkup: which is why the switch can see both routers, and no doubt each router can see the switch. (as cdp neighbors)
[01:15]<bsdrgdjg|rwrd>:)
[01:25]<vcul>this is it, I misread cdp multicast as L2 broadcast.
[02:08]<mrxmjum>lol, did cisco plan for this layer 1 switch attack? http://tomservo.cc/show.aspx/ethernetKiller.jpg
[02:09]<mw9>hehe
[02:09]<fjacmjwgq>wouldn't you start a fire if you plugged that in? ethernet cable is only rated for 5 volts
[02:10]<gzmgbzzgm>I've seen that before.
[02:12]<mrxmjum>so, cisco needs to think about this, becuase users may plug power cables into the switch port
[02:12]<mrxmjum>cisco planed for users puttting vouge switches or send fake BPDUs, they need to think beyond this :P
[02:17]<vcul>well that's why you should never give users access to the switch but rather uplink to it
[02:18]<fjacmjwgq>what if they plug that into a jack in their office...
[02:20]<vcul>it will fry the directly connected switch/patch panel. but at least your main "Lan room" switch wouldn't the excess current
[02:20]<vcul>*get*
[02:21]<mzcsxmw>The user will always win, when it comes to destroying hardware. It could be as simple as throwing a lit cigarette into a trashcan full of paper..
[02:23]<vcul>well, what's really important is the data not the hardware. most businesses don't care about gear as long as their data is safe.
[06:23]<vcul>I'm getting this error on my 4500: %LANCE-3-UNDERFLO: Unit 0, underflow error. Cisco's resolution is that I need to contact them. I don't have a contract with them so this doesn't help me. Anyone had to deal with a similar situation?
[06:26]<[mzvzyw]zsfnnl>Might check the prostate on that 4500 if it's having flow problems. <.<
[06:28]<gzmgbzzgm>lol
[06:34]<[dzvzyw]hjdn>According to the Cisco doc I found, that means your data transfer rate is exceeding the limitations of the router.
[06:36]<[dzvzyw]hjdn>http://www.cisco.com/en/US/products/sw/iosswrel/ps1818/products_system_message_guide_chapter09186a00800879c5.html
[06:36]<[dzvzyw]hjdn>better that one than the %QUICC-3-UNDERFLO though, which basically means your hardware failed. :-p
[07:07]<ydlnvyrj>anybody ever done an IOS update over PPP or Frame-relay ?
[07:07]<sazdn>whats to know
[07:08]<sazdn>its the same as any other medium
[07:08]<sazdn>copy tftp flash:
[07:08]<ydlnvyrj>well, but i just tried
[07:08]<ydlnvyrj>and got an error :S
[07:08]<ydlnvyrj>i wonder if i missed a step
[07:10]<ydlnvyrj>Sat Jun 17 21:28:17 2006: Failed ( Timeout Error ).
[07:11]<sazdn>that means it cant reach the server
[07:11]<sazdn>try pinging it first
[07:11]<ydlnvyrj>bro , i saved the IOS i'm runnin' (old one)
[07:11]<ydlnvyrj>to the tftp server
[07:11]<ydlnvyrj>but, when i tried to do the opposite (grab new IOS from tftp)
[07:11]<ydlnvyrj>it kept timing out.
[07:12]<sazdn>ive had to set 'ip default-gateway 1.2.3.4' before
[07:12]<sazdn>but that was only in loading the image from tftp
[07:12]<sazdn>is your image new enough to beable to use ftp
[07:12]<ydlnvyrj>yeah ..
[07:13]<ydlnvyrj>i bought this unit with an older 11.something IOS
[07:13]<ydlnvyrj>i've got a 12.5 IOS to add to it
[07:13]<mzcsxmw>12.5? I thought 12.4T was latest
[07:13]<dzzc1lyvn>I think I want a Phd.
[07:13]<dzzc1lyvn>where can I buy one?
[07:13]<ydlnvyrj>well that's what i meant
[07:13]<sazdn>oh yeah, i got 12.6
[07:14]<dzzc1lyvn>note to the channel
[07:14]<dzzc1lyvn>don't believe anything Scrye says.....
[07:14]<ydlnvyrj>hahaha
[07:17]<ydlnvyrj>i remember having to save the config file, so the unit recognized it even when the old IOS was deleted, i gotta look that up.
[07:22]<gzmgbzzgm>I need to get an upgraded ios one of these days... (again)
[07:22]<gzmgbzzgm>I need some with crypto so I can setup ssh...
[07:22]<gzmgbzzgm>had it on my 1605R, but it lagged horribly when I connected with ssh. :-P
[07:23]<ydlnvyrj>i've heard
[07:24]<ydlnvyrj>access-class not enough security ?
[07:24]<gzmgbzzgm>but my 3640 shouldn't have that problem
[07:24]<gzmgbzzgm>setting up a backdoor from the internet, so any IP.
[07:24]<gzmgbzzgm>trying to set it up so I don't have to ssh to a box inside, and then telnet back.
[07:25]<ydlnvyrj>i see
[07:25]<ydlnvyrj>that's about the only crypto i've done on my labs
[07:26]<ydlnvyrj>since i'm not in production env i don't worry
[07:27]<gzmgbzzgm>well, I have several firewalling projects going atm, and it's a pain in the ass when you accidentilly firewall yourself out of the router when you are 700m away, and are home just over one day a week.
[07:27]<gzmgbzzgm>so I'm wanting to setup a backdoor kinda thing, so I can get in and fix the problem.
[07:28]<ydlnvyrj>u do need it badly
[07:28]<sazdn>700meters? walk it
[07:28]<gzmgbzzgm>and no, a dial-in backdoor isn't possible, as I've got no phone line.
[07:28]<gzmgbzzgm>700 miles
[07:28]<gzmgbzzgm>as in, the next time zone.
[07:29]<ydlnvyrj>what's holdin' u from gettin' crypto?
[07:29]<gzmgbzzgm>no service contract
[07:29]<gzmgbzzgm>and I don't have that nifty ccie
[07:30]<ydlnvyrj>aww
[07:30]<gzmgbzzgm>yea
[07:30]<ydlnvyrj>make your boss pay for a new cco account
[07:30]<ydlnvyrj>hehe
[07:30]<gzmgbzzgm>this is my personal stuff
[07:31]<gzmgbzzgm>and I have a job that's non-tech
[07:31]<ydlnvyrj>i see
[07:31]<ydlnvyrj>well, for my personal lab, loggin' to my SSL box worx just fine for now
[07:32]<ydlnvyrj>may be by the time i get my 2600 i might need some crypto freak
[07:32]<gzmgbzzgm>yeah, it does about 98% of the time here, but that one time I happen to be working on my acl's remotely and manage to block all traffic... thats when it'd be nice.
[07:33]<ydlnvyrj>:S
[07:33]<gzmgbzzgm>know anyone who'd be interested in a 1605R? 20meg ram, 8meg flash card, 4meg flash card, and 3 IOS's
[07:33]<ydlnvyrj>true.
[07:34]<ydlnvyrj>FE ? S0/0? s0?
[07:34]<gzmgbzzgm>thinkin bout getting rid of it
[07:34]<gzmgbzzgm>nope







