Main Menu
Menu

Show posts

This section allows you to view all posts made by this member. Note that you can only see posts made in areas you currently have access to.

Show posts Menu

Messages - mlan

#1
Quote from: wintermute000 on May 01, 2018, 06:39:08 PM
are you sure it was a bit flip or was that a random guess by a TAC guy wanting to close it out?

I still have the SP and RP crashfiles... here are the relevant bits from the SP crashfile:

Cache error detected!
  CPO_ECC     (reg 26/0): 0x00000089
  CPO_CACHERI (reg 27/0): 0xA0000000
  CP0_CAUSE   (reg 13/0): 0x00001C00

Real cache error detected.  System will be halted.

Error: Primary data cache, fields: data,
Actual physical addr 0x00000000,
virtual address is imprecise.

Imprecise Data Parity Error

Imprecise Data Parity Error

08:58:20 PDT Wed Jul 13 2011: Interrupt exception, CPU signal 20, PC = 0x40FEA860



--------------------------------------------------------------------
   Possible software fault. Upon reccurence, please collect
   crashinfo, "show tech" and contact Cisco Technical Support.
--------------------------------------------------------------------


-Traceback= 417BEE50
$0 : 00000000, AT : 42640000, v0 : 52D11A90, v1 : 45BF04F8
a0 : 52D11AC4, a1 : 52D44E3C, a2 : 40FEA848, a3 : 52D44E3C
t0 : 408B5698, t1 : 3400FF01, t2 : 3400F100, t3 : FFFF00FF
t4 : 417B13A8, t5 : 0000FFFF, t6 : 00000004, t7 : 0000030D
s0 : 52D44E3C, s1 : 00000002, s2 : 40FEA848, s3 : 52D44E3C
s4 : 43ECEF90, s5 : 00000004, s6 : 00000000, s7 : EFFFFFFA
t8 : 55BB5088, t9 : 00000000, k0 : 55B8DC94, k1 : 408EAE50
gp : 42647238, sp : 52D44D90, s8 : 9FBF04BE, ra : 40FEA860
EPC  : 417BEE50, ErrorEPC : 40FEA860, SREG     : 3400FF05
MDLO : 3B13B68E, MDHI     : 00000719, BadVaddr : 00000000
DATA_START : 0x42322420
Cause 00000000 (Code 0x0): Interrupt exception



The SP crash forced the RP to reload and then all hell broke loose....   more info
#2
The best crash I have ever experienced was a memory bit flip that forced a reload of a 6500 supervisor in a VSS pair.  The ensuing network destruction that resulted from that crash was a sight to behold.  Root cause was possibly a solar flare?  Haha...
#3
Security / Re: If you are running Cisco WebVPN
February 06, 2018, 01:53:58 PM
@Wintermute000 - Appreciate reading your thoughts on Fortinet.

re: this exploit

I have been running 9.1.7.21 for the last week, now will be testing 9.1.7.23 in the lab today.
#4
Security / Re: If you are running Cisco WebVPN
February 01, 2018, 12:14:58 PM
Quote from: wintermute000 on February 01, 2018, 05:10:37 AM
I suppose they are usually very stable, that's all the good things I have to say about ASAs.

Based on that, still better that Fortinet? ;)
#5
https://www.nautilusdt.com/ 

They just need to make them mobile and storm-resistant.
#6
Forum Lobby / Re: Cloud cloud cloud
January 03, 2018, 05:30:29 PM
My underfunded org is currently dealing with sticker shock of complete on-prem data center refresh vs. sticker shock of a full cloud migration.  The articles on the reverse cloud migrations are of interest, and I'm pleased to report that we at least have management paying attention to the workload pricing calculators before they make any decisions.
#7
Quote from: deanwebb on December 29, 2017, 11:23:15 AMAs network engineers, we have to be able to look beyond ideological purity of thought and examine facts at hand.

Well said, Dean.
#8
Wireless / Re: KRACK Attack Summary
October 20, 2017, 03:39:10 PM
I have heard from our Cisco SE that is only affects the WLC if you have 802.11r enabled (aka "Fast Transition").
#9
Management Tools / Re: Auditing
October 05, 2017, 12:07:55 PM
We are currently using Solarwinds Orion modules for many of these auditing and alerting requirements.
#10
Security / Re: Bring Your Own Identity
September 27, 2017, 05:51:44 PM
I have been hearing more about this, especially in higher-ed organizations.  The case I hear is that "typically" companies like Google and Facebook are better at securing their identity stores than a random college's Active Directory team, so why not?  Interesting to think about it as a concept.
#11
It would be ideal if we could run the Aerohive cloud/local WLC or even the Cisco AIR-CTVM-K9 in some kind of home lab/demo license.
#12
Quote from: deanwebb on July 28, 2017, 10:03:39 AMat which point the CIO goes back to the C-level merry-go-round to wreck things at another company.

I believe that is called CaaS = CIO as a Service
#13
Security / Re: ASA order of operatgions
July 28, 2017, 02:59:40 PM
@ristau - Stepping through the packet tracer GUI output might also inform the discussion.
#14
We have dabbled in EEM scripting, and have seen random failures where the switch fails to execute the commands properly.  We had difficulty pinning a root cause, but I wonder if the switch CPU is busy at the time, and the command script times out waiting for a response.
#15
Forum Lobby / Re: Support renewals
June 26, 2017, 03:12:52 PM
I found a third party support vendor for Riverbed:

https://www.xsnet.com/supported-oems-cisco-juniper-brocade-f5-nortel-avaya-enterasys-networks

I'm not seeing any others, so I'm guessing Riverbed's lawyers stay pretty busy...