/r/Cisco

Photograph via snooOG

Ask questions, create discussions or post news! This subreddit is for all things Cisco related!

New user accounts are moderated.

This subreddit is not affiliated with Cisco Systems.

Related subreddits:

/r/networking
/r/meraki

The Reddit Cisco Ring
- Cisco
- CCNA
- CCDA
- CCNP
- CCDP
- CCIE

Useful Links

Rules

  1. Be respectful to others.
  2. No questions about how to get Cisco software without a service contract.
  3. No posting or discussion of brain dumps.
  4. Stay on topic
  5. No sales or recruitment posts
  6. No homework help
  7. No low effort post

NOTE: The "Reddit Cisco Ring", its associates, subreddits, and creator "mechman991" are not endorsed, sponsored, or officially associated with Cisco Systems Inc. All opinions stated are those of the poster only, and do not reflect the opinion of Cisco Systems Inc., or its affiliates.

/r/Cisco

83,804 Subscribers

0

Should take the CCT?

I work at a company that has a learning center that offers it pro.tv classes for free. I have no working experience in IT but I want to work in IT. I am 46 and have worked with cad for about 24 years. I am burnt out in cad. Looking for a different career. Currently I have been watching the 2020 cct class and it was easy for the most part. They have everything that I have seen I need to take but I am wondering if I should do the CCT and then the CCNA cause my company uses Cisco. What y’all think?

2 Comments
2024/04/20
05:43 UTC

10 Comments
2024/04/19
19:36 UTC

2

Cisco Live 24 Guest Passes

Does anyone have any actual experience with the guest passes? I did not get one for the wife last year as it didn't seem to be as worth it, but then it appeared those with guest passes were also able to get breakfast and lunch meals, and go to the "social media" area with the cisco retail store. (But not able to go to the vendors area). Anyone have any experience with the guest pass?

6 Comments
2024/04/19
19:23 UTC

3

Cisco Live Vegas

Hi all,

I’ll be attending Cisco live Vegas for the first time this year after previously only attending European based shows.

Is there any tips anyone can share? Or anything vastly different compared to the EU shows?

Thanks in advance!

5 Comments
2024/04/19
17:18 UTC

1

Using flexible netflow layer2 to monitor vlan in/out traffic Cat 9200L

I need to monitor 6 vlan's via layer2, vl100-106 using iosXE16.12. The cisco documentation is sketchy about how to do this. Do I have to create an ingress and Egress flow exporter for each vlan? There are no layer3 interfaces on this switch and the flows where be forwarded to the management vrf.

Trying to get some stats on my internet edges switch.

Any links with examples appreciated!

1 Comment
2024/04/19
15:41 UTC

1

Confused on Jumbo Frame and Fibre Channel

Hi All,

Over the past month I have been working on deploying a Nexus VPC pair core network design using Nexus 5672UP 16G switches.

The VPC design works find, and defining the second module as Fibre channel ports works fine. I created the single initiator/target zoning and zoneset. Hosts successfully see the volumes without a problem.

The problem reared its head when I was making configurations on the switch to meet a requirement for compute vmotion on the hosts. I needed to enable Jumbo Frames on those interfaces, unfortunately this switch is not capable of configuring per-interface MTUs so I was left with the only option of doing a system qos that enables Jumbo frames to traverse the switch. For reference I used the following cisco document:

https://www.cisco.com/c/en/us/td/docs/switches/datacenter/nexus3000/sw/qos/503_u1_1/b_Cisco_nexus3000_qos_config_gd_503_u1_1/b_Cisco_nexus3000_qos_config_gd_503_u1_1_chapter_010.html#:~:text=Enabling%20the%20Jumbo%20MTU

As soon as I enabled this on the switches, the hosts lost connectivity to the target volumes and even after I reverted the configuration and rebooted the switches the issue persisted.

At this point I feel like a software bug on this NxOS version exists, but I am not 100% sure.

Does anyone have any ideas?

5 Comments
2024/04/19
15:40 UTC

5

10mb connections

Hello,

On the newer switches with 2.5/5gb ports how do you handle devices that only work with a 10mb NIC?

We have a HVAC controller that only has a 10mb NIc on it so the switch doesn’t detect it. Is there a device that will convert down to 10mb like a 1 port switch or something?

I’ve seen a few 2 or 3 port switches on Amazon but I don’t want to add any extra ports when not needed.

26 Comments
2024/04/19
14:58 UTC

0

Cisco 2960C-12PC-L making noise

Hello!

I have acuired 4 Cisco 2960C-12PC-L for my little lab. These small compact fanless switches are perfect for me. The problem is that all 4 of them makes a pretty quiet noise, almost like arching. Is this normal? I have seen it on atleast 10+ of these devices and I am really wondering if it is normal.

Thanks

10 Comments
2024/04/19
13:10 UTC

6

Going to Cisco Live 1st time

I’m registered. I just had a couple questions I’m not seeing in other threads:

I was wondering…

How do the walk in labs work? It says see the walk in lab desk so is that where they will give the location/time?

Any suggestions for stand out break outs (anything included in full conf really) that shouldn’t be missed? Any that were better than you expected?

Do you just wing the schedule and sign up for a couple of things? Or a seminar or two a day? I was going to give myself some structure to the week but don’t wanna set myself up for failure and just wanna fully enjoy my first conference.

Also do you guys bring your laptops? Personal or work? Im tempted to but dont want to lose it during the week I’ll be there. Not even sure about leaving it in the room when out to dinner. Tablets any better?

Any other warnings? Danke

14 Comments
2024/04/19
12:49 UTC

2

trouble to start ASA to FTD conversion tool

https://preview.redd.it/ij6oi22qfcvc1.png?width=1019&format=png&auto=webp&s=62139d1232e4bfd799a10de97b2653895687fa40

Just downloaded "Secure Firewall Migration Tool" from https://software.cisco.com/download/home/286331909/type/286321688/release/6.0.0, and installed it on my PC.

After I accept EULA, I saw above after redirecting to some CCO credential, and with my own account (I just verified it working with cisco login). I got above screen shot?

Am I missing something? I am pretty sure this is not from our site, because we never adopt anything from duosecurity.

2 Comments
2024/04/19
02:05 UTC

1

Odd Mac Address

Hi,

I just installed 3 Ecobee thermostats. I'm running a 3945e on -

Cisco IOS Software, C3900e Software (C3900e-UNIVERSALK9-M), Version 15.7(3)M8, RELEASE SOFTWARE (fc1)

When I check my dhcp, I see -

C3945e-1#sho ip dhcp bin

Bindings from all pools not associated with VRF:

IP address Client-ID/ Lease expiration Type

Hardware address/

User name

192.168.3.30ff32.153a.7400.0300. Apr 18 2024 09:56 PM Automatic

0144.6132.153a.74

192.168.3.31ff32.72cf.eb00.0300. Apr 18 2024 10:05 PM Automatic

0144.6132.72cf.eb

192.168.3.37ff32.dcf9.2a00.0300. Apr 18 2024 10:09 PM Automatic

0144.6132.dcf9.2a

Why such a long MAC address? I've never seen anything like that and Google doesn't seem to find anything about "FF32" and "MAC Address".

Thanks, Tuc

8 Comments
2024/04/19
01:56 UTC

16

Any Network Administrators who I can interview tomorrow?

Hello, my name is Matthew(19M). I have a First Year Experience class project where you are supposed to interview someone in the field that you want to partake in and mine happens to be a Network Administrator. I have tried for hours to find somebody to call, but to no avail. Are there any network administrators on this reddit forum who I can have an interview with at 1:35 PM(EST) tomorrow for my school project? It would mean a lot to me.

Thanks in advance,

Matthew

17 Comments
2024/04/19
00:40 UTC

1

CCST Networking resources

Hello everyone, I am currently using Kevin Wallaces Udemy course.

What worries me is that his course is SIGNIFICANTLY smaller than what Cisco netacad offer. (It's like 18 hours vs 70)

What is the best route to ensure I am prepared for the exam?

What did you all use?

Thanks!

0 Comments
2024/04/19
00:22 UTC

1

Uninstall Cisco Secure Client via Command Line

Good afternoon folks.

Does anyone know how to uninstall the Cisco Secure Client via command line on Mac?

I remember anyconnect shipped with an rcuninstall script, but since this one ships with uninstaller apps, I was wondering how we can target those via command.

2 Comments
2024/04/18
21:22 UTC

4

I dont understand how this happens? Google’s self-designed office swallows Wi-Fi

this is the article https://arstechnica.com/gadgets/2024/03/googles-self-designed-office-swallows-wi-fi-like-the-bermuda-triangle/

it says that the design of the dome swallows Wireless signal ? I dont get it, setting up access points with the orientation of the access point on the roof to emmit the signal to the bottom is not hard, or i am missing something here?

they say All those peaks and parabolic ceiling sections apparently aren't great for Wi-Fi propagation

how and why? I am asking to learn.

11 Comments
2024/04/18
20:33 UTC

3

Spanning Tree for NX-OS

We're spinning up a new vmware cluster with two Nexus 9300 switches. Upon reboot of one of the switches to test for connection to the cluster we notice around a 30 second connection loss (via ping).

When rebooting one of the switches I looked for spanning-tree reconvergence events and noticed that when the vPC-peer-link came back up was when the connection was lost. The peer-link was in a BLK state for a bit until it transitioned into the FWD state.

I also noticed that one of the NX switches has two root ports. One is the vpc-peer-link and one is the vpc-port-channel to an uplink switch.

What would be the correct spanning-tree configuration for this situation?

16 Comments
2024/04/18
20:21 UTC

1

Cisco courses

Is the Cisco course "ethical hacker" any good? Is a 70h long free course with a final test and certificate... Is it worth doing for a beginner like me? Is it something that could be "valid" to put in my CV? Thank you for your help!

(I know that there are more advanced and better courses but I'm doing it in my free time and this is a really "flexible" option since I can follow it whenever and wherever I want)

2 Comments
2024/04/18
19:23 UTC

0

Is there any way to get Cisco CE other than through Cisco directly?

I don't want to go through the (really frustrating) background BS, but my employer is having problems approving/paying for CE credits through the Cisco website, and I have like 45 days left to complete my CE or I'll have to sit a test or lose my CCNP. Does anyone know of any other way to get CE credits without having to go through the Cisco website?

3 Comments
2024/04/18
18:39 UTC

1

Catalyst 3850 48P - Noctua fan replacement?

I got a used 3850 48P that I'm running on the home network. for me, it's quite noisy (more of the whine sound over the loudness). I wanted to replace/modify the fan modules. If I pull one out, the other 2 go full blast (makes sense). So I could remove all 3 fan modules but risk not enough cooling. I could remove all the fans and just tape on some 12V fans on the back and use a AC/DC to 3pin adapter to power them, but that doesn't seem like a great solution.

I was thinking of just replacing the OEM fans in the fan modules with Noctua NF-A4x20 PWM.

The OEM fan is FFB0412UHN - DC 12V 0.81A, 40x40x28mm by Delta Electronics, while the Noctua NA-A4x20 PWM is 40x40x20mm DC 12V 0.05A with voltage PWM as 5V (I assume the Delta Electronics is the same). The Noctua comes with a resistor (called their Low-Noise Adaptor) which seems to be a 50ohm 1w that those who swapped the OEM for Noctua fans on their Cisco 3750 needed to use (different unit design for fan internal vs modules).

Other than I might need to 3D print a spacer (as it seems the OEM one is 28mm long vs 20mm Noctua) is there anything else that I'm missing? The unit is old and there's no warranty, so I'm not worried about voiding it.

1 Comment
2024/04/18
16:06 UTC

1

Logging Failed logins to AnyConnect using LDAP Auth to AD

Hi I have some ASA's set up to authenticate AnyConnect users to AD via LDAP. I was recently asked if we are seeing any high instances of failed login attempts to these gateways and was surprised that I'm unable to find anything in the logs, even when i simulate failed logins. I have tried searching ASDM monitoring for event 113005 as well as on the AD security event log for 4624. nothing appears when I simulate a failed attempt. Do i need to activate logging for this. I have searched and cant fin anything in ASDM along these lines

1 Comment
2024/04/18
15:59 UTC

0

IPv6 Wizards Help Pls!!

Alrighty so idk if this is possibly a bug within gns3 / my CSR1000v or something im doing wrong.....

So simple setup just trying to do nat66 translation and virtualizing google dns as the vpc.

I ping between all links on the global v6 ip. I have static routes to point cor2 to inet and inet to ipv6. I can ping the vpc via the 2601::1:1 consistently. Working as expected.

https://preview.redd.it/590xzaog99vc1.png?width=490&format=png&auto=webp&s=2959101b4cd06c73a16f6898b123f742af3cfca2

I set up nat66 on inet router to translate fc00::/64 -> 2601::64. I get translations on the router. I pull up wireshark on the link to the vpc from the ipv6 router and see echo's and replies but also getting a destination unreachable ?

I can't ping the vpc from 2601::1:1 anymore either....

https://preview.redd.it/xsltojfca9vc1.png?width=2069&format=png&auto=webp&s=dddf99c1e073e87b2ef958eac849e5cd0fa06f86

Am I doing something wrong or missing some **note somewhere about doing nat66 ??

1 Comment
2024/04/18
15:28 UTC

1

Cucm voip configuration

Hello everyone, Im having an issue with cucm voip configuration :

I configured through cucm voip , the voip is connected , the network isnt the issue for sure , its something about the configuration, but it says : Phone is registering for hours Does anyone have any idea what could lead to this problem? Thanks

3 Comments
2024/04/18
14:49 UTC

0

Any way to recover Webex meeting older than 30 days?

So a recording of a meeting was more than 30 days ago and has been deleted. Is there any way I can dig this up and get my hands on it? Thanks for any help.

0 Comments
2024/04/18
14:27 UTC

1

C1000 "stack" and LAG

Hi everyone

We are looking for some new access switches and came across the C1000 series. There is a "single IP management" descriped, but not very extensive. If I "stack" two C1000 switches, will it be possible to connect a cross stack LACP to the uplink switch -> putting port 1/1/24 and 2/1/24 in the same etherchannel? Haven't found a clear answer yet.

Thanks for your help :)

6 Comments
2024/04/18
13:14 UTC

1

Issues migrating APs from 1 WLC to another

I need to upgrade the software on an AIROS WLC. We have a backup WLC that already has the new code. My plan was to upload the new code to WLC 1, predownload code to all 2,000 APs, then migrate all the APs to WLC 2 by using a DNAC job to tell the APs to use WLC 2 as the primary controller, and WLC 1 as the secondary controller in the HA settings. The issue is that for some reason, only about 300 of the 2,000 APs will migrate to WLC 2 after this change. At my disposal I have 2 cisco wireless engineers who didn't know why the rest were not migrating, so I'm turning to reddit. The only other option i know that works is to bounce the APs, but manually bouncing 2000+ APs is a task.

14 Comments
2024/04/18
12:13 UTC

2

ISR 1100 Licensing

Picked up an ISR 1100 2nd hand for the lab, Will it functionally work without smart licensing being activated or will it run on an eval licence? Being a while since i touched smart licensing but last time i used it Cisco weren't enforcing it.

Or should i downgrade to 16.8

1 Comment
2024/04/18
05:03 UTC

3

Nexus 9300s - Connecting FortiGates

Best Practices?

I am getting ready to deploy 2 pairs of Fortinet FortiGate 201fs in passive/active pairs at separate collocations. These devices will act as our perimeter firewalls. They will be connected to our core nexus 9300s via trunked vpc on the nexus side, sub interfaces on the firewall side. We’ve been assigned a /28 public block from the DC as we’re working to get our own block of addresses; however, the peering network between us and the dc is a rfc1918 /29.

Is this best practice for this design? Since all we really need from the dc is a default route, is there any sense in bgp peering with them? We run bgp between the data centers (evpn to stretch vlans) and could peer the firewalls or the switches just trying to figure out what makes the most sense.

1 Comment
2024/04/18
03:44 UTC

0

Power consumption (POE) of Cisco 9120 AP (C9120AXI-B)

There are 2 sections in the datasheet for 9120AXI

One says it used POE and the other POE+

Does anyone know which one is correct?

https://www.cisco.com/c/en/us/products/collateral/wireless/catalyst-9120ax-series-access-points/datasheet-c78-742115.html

3 Comments
2024/04/18
00:56 UTC

2

CLI Command to see patch version on ISE V2.6 and V2.7

Does anyone know the CLI command to view patch version on ISE.

Initially, I thought "show node status" and "show application version" does not really give the patch version.

6 Comments
2024/04/17
21:47 UTC

Back To Top