Configuration guides for IT Administrators

⏱︎
Read time:
To display Cisco debug output on the current SSH or Telnet session switch# logging on // enabled by default switch# logging monitor //command to enable logging on VTY lines switch# terminal monitor //unless you issue this command, you cannot see logs on your SSH or Telnet sessions. To turn off Cisco…

⏱︎
Read time:
On Oct 16th 2017, 7 vulnerabilities affecting both WPA and WPA2 were made publicly available. Additional research also led to discovery of 3 additional vulnerabilities. Among these 10 vulnerabilities, only one CVE-2017-13082 may affect wireless infrastructure, the other nine vulnerabilities affect client devices. There is also some good news, remote attacks won’t be possible in this…

⏱︎
Read time:
This happened today while setting up ESXi 6.5 on Cisco UCS C200 M4 Server. VMware crashed and throwing an error in the purple screen, Could not start pcpu 1; TSC sync timed out. If you come across similar situation, then try changing CPU settings in BIOS. It fixed the ESXi issue. Log in to BIOS…

⏱︎
Read time:
In a highly critical environment, we strongly recommend to setup Cisco ASAs in high availability mode. This way, if the Active ASA unit fails, the Standby unit takes over the role and becomes Active. Before we proceed, you need to ensure that following pre-requisites are met Both Cisco ASA units must be an identical hardware…
⏱︎
Read time:
On every purchase of ASA firewall, Cisco ships product authorization key known as PAK in printed format along with delivery. The steps remain same irrespective of ASA license feature. 1.Login to Cisco registration portal – http://www.cisco.com/go/license and enter PAK key and ASA serial number, then you will get the license key by registered email immediately. Caution: When…
⏱︎
Read time:
Even though, IPSec VPN is successfully established between 2 ends of your network, you can’t ping ASA inside over IPSec VPN from the other end. Basically, you cannot remotely manage Cisco ASA through the VPN tunnel. You also noticed that inside interface is reachable from LAN. The problem is with manual NAT statement that overlaps…

⏱︎
Read time:
Step 1: Reload router. If you do not know the password, just perform hard reboot. Step 2: Wait for 10 seconds of startup and send a break signal to terminal If you are using PUTTY, right click on the top of PUTTY Window, and select Special Command > Break *Jan 22 06:36:23.990: %SYS-5-RELOAD: Reload requested by cisco on…

⏱︎
Read time:
In this guide, we are configuring IKEV1 VPN between Cisco ASA and Paloalto firewall. This is applicable to all models of Cisco and PA firewalls. Configure Cisco ASA: 1) Phase 1: IKE policy ciscoasa(config)# crypto ikev1 policy 10 ciscoasa(config-ikev1-policy)# authentication pre-share ciscoasa(config-ikev1-policy)# encryption 3des ciscoasa(config-ikev1-policy)# hash sha ciscoasa(config-ikev1-policy)# group 2 ciscoasa(config-ikev1-policy)# lifetime 86400 ciscoasa(config)# crypto…

⏱︎
Read time:
Here is the solution to backup Cisco Mobility Express Configuration. If you are backing up the controller, you do not need to backup each AP. If you are working on standalone model, you need to backup each and every AP individually and the steps remain same. 1.Configure tftp as the transfer mode used to backup…

⏱︎
Read time:
You might be experiencing a similar issue while connecting through Cisco ASA AnyConnect to your remote network. Even though you have loaded the proper AnyConnect image to flash, reason for this problem is because Cisco ASA is unable to locate AnyConnect package in the device. In order to fix this issue, configure ASA WebVPN to locate AnyConnect…

I’m Lucas Brey, a travel blogger sharing practical guides, hidden gems, and honest tips from the road. Follow along for smart itineraries, great food finds, and stories worth bookmarking.